PC World posted a news story that Adobe today confirmed that attackers are exploiting an unpatched bug in Flash Player using Microsoft Excel documents.
PC World posted a news story that an Internet Explorer flaw made public by a Google security researcher two months ago is now being used in online attacks.
Threatpost reports that Internet Explorer 9 comes with an Application Reputation Filter
Microsoft updated the following security bulletins:
- MS11-017 - Important: Vulnerability in Remote Desktop Client Could Allow Remote Code Execution (2508062) - Version:1.2
- MS11-015 - Critical: Vulnerabilities in Windows Media Could Allow Remote Code Execution (2510030) - Version:1.1
- MS11-017 - Important: Vulnerability in Remote Desktop Client Could Allow Remote Code Execution (2508062) - Version:1.2
- MS11-015 - Critical: Vulnerabilities in Windows Media Could Allow Remote Code Execution (2510030) - Version:1.1
Microsoft has released a DVD5 ISO image file contains the security updates for Windows released on Windows Update on March 11th, 2011.
Microsoft has released the following security updates:
- Security Update for Windows XP Media Center Edition 2005 Update Rollup 2 X86 Edition (KB2502898)
- Security Update for Windows Server 2008 R2 x64 Edition (KB2479943)
- Security Update for Windows Vista for x64-based Systems (KB2481109)
- Security Update for Windows XP (KB2479943)
- Security Update for Windows Vista Media Center TVPack 2008 (KB2494132)
- Security Update for Windows Vista (KB2481109)
- Security Update for Windows Vista (KB2479943)
- Security Update for Windows Embedded Standard 7 (KB2479943)
- Security Update for Windows Embedded Standard 7 (KB2483614)
- Security Update for Windows Server 2008 for Itanium-based Systems (KB2481109)
- Security Update for Windows Server 2003 x64 Edition (KB2481109)
- Security Update for Windows XP (KB2483618)
- Security Update for Windows Server 2008 R2 for Itanium-based Systems (KB2483614)
- Security Update for Windows Server 2008 R2 x64 Edition (KB2483614)
- Security Update for Windows Vista for x64-based Systems (KB2479943)
- Security Update for Windows Vista for x64-based Systems (KB2483614)
- Security Update for Windows 7 Service Pack 1 Release Candidate (KB2479943)
- Security Update for Windows 7 for x64-based Systems (KB2479943)
- Security Update for Windows XP (KB2483614)
- Security Update for Windows 7 Service Pack 1 Release Candidate for x64-based Systems (KB2479943)
- Security Update for Windows XP x64 Edition (KB2481109)
- Security Update for Windows Vista Media Center TVPack 2008 for x64-based Systems (KB2494132)
- Security Update for Windows XP x64 Edition (KB2479943)
- Security Update for Windows Server 2008 x64 Edition (KB2481109)
- Security Update for Windows 7 (KB2479943)
- Security Update for Windows Vista (KB2483614)
- Security Update for Windows Embedded Standard 7 for x64-based Systems (KB2483614)
- Security Update for Windows 7 for x64-based Systems (KB2483614)
- Security Update for Windows Embedded Standard 7 for x64-based Systems (KB2479943)
- Security Update for Windows Server 2003 (KB2483619)
- Security Update for Windows Server 2003 (KB2481109)
- Security Update for Windows XP (KB2481109)
- Security Update for Windows Server 2008 (KB2481109)
- Security Update for Windows 7 (KB2483614)
- Security Update for Windows XP Media Center Edition 2005 Update Rollup 2 X86 Edition (KB2502898)
- Security Update for Windows Server 2008 R2 x64 Edition (KB2479943)
- Security Update for Windows Vista for x64-based Systems (KB2481109)
- Security Update for Windows XP (KB2479943)
- Security Update for Windows Vista Media Center TVPack 2008 (KB2494132)
- Security Update for Windows Vista (KB2481109)
- Security Update for Windows Vista (KB2479943)
- Security Update for Windows Embedded Standard 7 (KB2479943)
- Security Update for Windows Embedded Standard 7 (KB2483614)
- Security Update for Windows Server 2008 for Itanium-based Systems (KB2481109)
- Security Update for Windows Server 2003 x64 Edition (KB2481109)
- Security Update for Windows XP (KB2483618)
- Security Update for Windows Server 2008 R2 for Itanium-based Systems (KB2483614)
- Security Update for Windows Server 2008 R2 x64 Edition (KB2483614)
- Security Update for Windows Vista for x64-based Systems (KB2479943)
- Security Update for Windows Vista for x64-based Systems (KB2483614)
- Security Update for Windows 7 Service Pack 1 Release Candidate (KB2479943)
- Security Update for Windows 7 for x64-based Systems (KB2479943)
- Security Update for Windows XP (KB2483614)
- Security Update for Windows 7 Service Pack 1 Release Candidate for x64-based Systems (KB2479943)
- Security Update for Windows XP x64 Edition (KB2481109)
- Security Update for Windows Vista Media Center TVPack 2008 for x64-based Systems (KB2494132)
- Security Update for Windows XP x64 Edition (KB2479943)
- Security Update for Windows Server 2008 x64 Edition (KB2481109)
- Security Update for Windows 7 (KB2479943)
- Security Update for Windows Vista (KB2483614)
- Security Update for Windows Embedded Standard 7 for x64-based Systems (KB2483614)
- Security Update for Windows 7 for x64-based Systems (KB2483614)
- Security Update for Windows Embedded Standard 7 for x64-based Systems (KB2479943)
- Security Update for Windows Server 2003 (KB2483619)
- Security Update for Windows Server 2003 (KB2481109)
- Security Update for Windows XP (KB2481109)
- Security Update for Windows Server 2008 (KB2481109)
- Security Update for Windows 7 (KB2483614)
Microsoft published the Microsoft Security Bulletin Advance Notification for March 2011. Microsoft will address this month one critical security update for Windows and two important updates for Windows and Office.
Microsoft updated the following security bulletins:
- MS11-011 - Important: Vulnerabilities in Windows Kernel Could Allow Elevation of Privilege (2393802) - Version:1.1
- MS10-092 - Important: Vulnerability in Task Scheduler Could Allow Elevation of Privilege (2305420) - Version:1.1
- Microsoft Security Advisory (2491888): Vulnerability in Microsoft Malware Protection Engine Could Allow Elevation of Privilege
- MS11-011 - Important: Vulnerabilities in Windows Kernel Could Allow Elevation of Privilege (2393802) - Version:1.1
- MS10-092 - Important: Vulnerability in Task Scheduler Could Allow Elevation of Privilege (2305420) - Version:1.1
- Microsoft Security Advisory (2491888): Vulnerability in Microsoft Malware Protection Engine Could Allow Elevation of Privilege
PCWorld reports that Microsoft has patched a bug in its malware scanning engine that could be used as a stepping stone for an attacker looking to seize control of a Windows box.
Microsoft has updated the following two security bulletins:
- MS10-077 - Critical: Vulnerability in .NET Framework Could Allow Remote Code Execution (2160841) - Version:3.0
- MS10-070 - Important: Vulnerability in ASP.NET Could Allow Information Disclosure (2418042) - Version:4.0
- MS10-077 - Critical: Vulnerability in .NET Framework Could Allow Remote Code Execution (2160841) - Version:3.0
- MS10-070 - Important: Vulnerability in ASP.NET Could Allow Information Disclosure (2418042) - Version:4.0
PCWorld posted a news story that Microsoft is downplaying the threat posed to Windows users by a recently-revealed vulnerability, saying an exploit is unlikely.
PC World reports that a security researcher yesterday disclosed a new unpatched bug in Windows that some experts believe could be used to remotely hijack a PC.
Microsoft has updated the following security bulletin:
- MS11-006 - Critical: Vulnerability in Windows Shell Graphics Processing Could Allow Remote Code Execution (2483185) - Version:1.1
- MS11-006 - Critical: Vulnerability in Windows Shell Graphics Processing Could Allow Remote Code Execution (2483185) - Version:1.1
Microsoft has released an ISO image with all security updates for Windows released on Windows Update on February 8th, 2011.
Microsoft has released the following 26 security updates:
- Security Update for Windows Server 2003 (KB2483185)
- Security Update for Windows Server 2003 for Itanium-based Systems (KB2483185)
- Security Update for IIS FTP 7.5 for Windows Server 2008 x64 Edition (KB2489256)
- Security Update for Windows Server 2003 (KB2478971)
- Security Update for Windows XP x64 Edition (KB2478971)
- Security Update for Windows Embedded Standard 7 for x64-based Systems (KB2485376)
- Security Update for Windows Server 2003 for Itanium-based Systems (KB2478960)
- Security Update for Windows Server 2003 x64 Edition (KB2483185)
- Security Update for Windows XP x64 Edition (KB2479628)
- Security Update for Windows Embedded Standard 7 (KB2479628)
- Security Update for Windows Embedded Standard 7 for x64-based Systems (KB2479628)
- Security Update for Windows XP x64 Edition (KB2478960)
- Security Update for IIS FTP 7.0 for Windows Vista for x64-based Systems (KB2489256)
- Security Update for Windows Server 2003 x64 Edition (KB2478953)
- Security Update for IIS FTP 7.5 for Windows Vista for x64-based Systems (KB2489256)
- Security Update for Windows Server 2003 for Itanium-based Systems (KB2479628)
- Security Update for Windows Server 2003 (KB2478953)
- Security Update for Windows Vista (KB2483185)
- Security Update for Windows XP x64 Edition (KB2476687)
- Security Update for Windows Server 2008 R2 Service Pack 1 Release Candidate for Itanium-based Systems (KB2485376)
- Security Update for IIS FTP 7.0 for Windows Server 2008 x64 Edition (KB2489256)
- Security Update for Windows Server 2003 for Itanium-based Systems (KB2476687)
- Security Update for Windows Server 2008 for Itanium-based Systems (KB2479628)
- Security Update for Windows Server 2003 for Itanium-based Systems (KB2478971)
- Security Update for Windows Server 2008 (KB2483185)
- Security Update for Windows 7 for x64-based Systems (KB2489256)
- Security Update for Windows Server 2003 (KB2483185)
- Security Update for Windows Server 2003 for Itanium-based Systems (KB2483185)
- Security Update for IIS FTP 7.5 for Windows Server 2008 x64 Edition (KB2489256)
- Security Update for Windows Server 2003 (KB2478971)
- Security Update for Windows XP x64 Edition (KB2478971)
- Security Update for Windows Embedded Standard 7 for x64-based Systems (KB2485376)
- Security Update for Windows Server 2003 for Itanium-based Systems (KB2478960)
- Security Update for Windows Server 2003 x64 Edition (KB2483185)
- Security Update for Windows XP x64 Edition (KB2479628)
- Security Update for Windows Embedded Standard 7 (KB2479628)
- Security Update for Windows Embedded Standard 7 for x64-based Systems (KB2479628)
- Security Update for Windows XP x64 Edition (KB2478960)
- Security Update for IIS FTP 7.0 for Windows Vista for x64-based Systems (KB2489256)
- Security Update for Windows Server 2003 x64 Edition (KB2478953)
- Security Update for IIS FTP 7.5 for Windows Vista for x64-based Systems (KB2489256)
- Security Update for Windows Server 2003 for Itanium-based Systems (KB2479628)
- Security Update for Windows Server 2003 (KB2478953)
- Security Update for Windows Vista (KB2483185)
- Security Update for Windows XP x64 Edition (KB2476687)
- Security Update for Windows Server 2008 R2 Service Pack 1 Release Candidate for Itanium-based Systems (KB2485376)
- Security Update for IIS FTP 7.0 for Windows Server 2008 x64 Edition (KB2489256)
- Security Update for Windows Server 2003 for Itanium-based Systems (KB2476687)
- Security Update for Windows Server 2008 for Itanium-based Systems (KB2479628)
- Security Update for Windows Server 2003 for Itanium-based Systems (KB2478971)
- Security Update for Windows Server 2008 (KB2483185)
- Security Update for Windows 7 for x64-based Systems (KB2489256)
Microsoft has released version 3.16 of their Malicious Software Removal Tool
Microsoft published the Microsoft Security Bulletin Advance Notification for February 2011
GHacks.net posted a news story that Microsoft has published a workaround for the 0-day Windows vulnerability that has been has confirmed yesterday
PC World posted a news story of a new zero-day Windows XSS vulnerability
Threatpost reports that a critical bug has been found in Opera