Security News


Former Microsoft Program Manager Accused of Stealing +$1M

Carolyn M. Gudmundson, a former Microsoft program manager for MSDN, faces arraignment this week on 18 felony counts of wire and mail fraud in the U.S. District Court of Washington, Western District of Washington, Seattle.

Seven Fixes for Final Patch Tuesday of 2007

Patches mainly affect Windows servers and desktops.

New Exploit Targets Internet Explorer

Windows XP, Windows Server 2003 also at risk.

Vista SP1 To Enhance Security, Block Piracy

Service pack expected early next year for the OS.

Exchange Server 2007 SP1 Coming Friday

Service pack will be released about a year after the server first shipped.

Hedgehog 1.2 Adds Context-Based SQL Injection Security

Solution helps prevent "zero-day" attacks.

Microsoft Not Giving Thanks for Vulnerabilities

QuickTime and WPAD flaws announced over holiday weekend.

Coverity Adds Java Support to OSS Scan Service

Users can check Java- and C/C++-based software for potential security and quality problems before compiling code.

Symantec: Elections, Mobile Computing Among 2008 Security Threats

Phishing, spam attacks will continue to evolve.

Unified Threat Management Platform Expands Mail Security

Check Point enhanced e-mail protections in latest security solution.

MXLogic Expects Spam Volumes to Jump for the Holidays

New delivery methods, malware payloads drive surge in spam.

Security Experts Alarmed by Exposed Database Servers

Number of unprotected SQL servers continues to rise.

Two Hot-Fixes for Patch Tuesday

Microsoft also re-released an older patch and plans to roll out nonsecurity fixes.

Nonsecurity Vista Updates Released

Microsoft added three updates to various components in its Patch Tuesday release.

Light 'Patch Tuesday' On Tap

Critical update addresses remote code execution vulnerability in XP and Windows Server 2003.

Symphoniq and F5 Offer User Monitoring Solution

Companies partner on real-time monitoring solution that helps detect client-side problems in service-oriented architectures.

Open Source Adoption Low but Growing

Security and support were key concerns in Independent Oracle User's Group survey.

Web 2.0 Entails 'Sleeping Giant' Security Risk

The cross-site request forgery attack can wreak havoc on Web 2.0 apps, security expert says.

IBM Targets Problematic SOAs

The company launched a consulting initiative to address service-oriented architectures that have gone awry.

Windows Security Program Accused of Changing Update Settings

OneCare may be behind Auto Updates snafu.