Email Alerts
-
Microsoft to issue Windows, SQL Server updates
Microsoft said it would repair vulnerabilities in SQL Server and Windows that could allow an elevation of privilege, spoofing and remote code execution. Article
-
Database patch denial: How 'critical' are Oracle's CPUs?
A recent survey found that a considerable number of users are outright rejecting Oracle's Critical Patch Updates, perhaps suggesting database administrators feel comfortable with their security defenses or find Oracle's patches to be more of a nuisan... Tip
-
Researchers defend study on patch distribution insecurities
A team of security researchers warn that a patch-based exploit generation technique could be easily carried out by an attacker. Article
-
Microsoft patches Bluetooth, Internet Explorer flaws
Dangerous holes in the Bluetooth stack in Windows could allow remote code execution. Article
-
Is attack code valuable for vulnerabilities or just a publicity stunt?
If a security company has developed attack code for a particular vulnerability, there will always be critics that cry "PR stunt." Expert Michael Cobb explains why the vulnerabilities should always be taken seriously. Ask the Expert
-
Microsoft Jet Database Engine update could be issue for admins
Deploying the updates for the Microsoft Jet Database Engine could be tricky for companies with homegrown applications. Experts are warning users to test those patches first. Article
-
Inside MSRC: Microsoft explains Word, Publisher flaws
Security patching programs are not much different than racquetball games, says Microsoft's Bill Sisk. It's all about devising a strategy early to maintain control. Column
-
Researchers warily watch for Microsoft GDI exploits
Symantec, US-CERT and other security organizations are tracking attempts to exploit the GDI flaw Microsoft addressed last week in its MS08-021 patch bulletin. Article
-
Oracle fixes 41 flaws in April CPU
Attackers could exploit several Oracle flaws to compromise the confidentiality and integrity of targeted systems, Symantec said hours after Oracle's April 2008 CPU was released. Article
-
Oracle preps CPU for 41 flaws
Oracle said Thursday that it is prepping a Critical Patch Bulletin (CPU) to address 41 security holes across its product line. News
Security Management Strategies for the CIO