June 23rd, 2010 . by DarkFiber Consulting
Microsoft has released updates to address vulnerabilities in Microsoft Windows, Internet Explorer, Office, SharePoint, and .NET Framework as part of the Microsoft Security Bulletin Summary for June 2010. These vulnerabilities may allow an attacker to execute arbitrary code or operate with elevated privileges.
DarkFiber Consulting encourages users and administrators to review the bulletins and follow best-practice security policies to determine which updates should be applied.
Posted in Security Alerts | No Comments »
Tagged With: Address • Arbitrary Code • Attacker • Bulletins • Internet Explorer • Microsoft • Microsoft Explorer • Microsoft Internet • Microsoft Security Bulletin • Microsoft Updates • Microsoft Windows • Privileges • Security Policies • Sharepoint • Vulnerabilities • Windows Explorer • Windows Internet
March 1st, 2010 . by DarkFiber Consulting
Microsoft has released an update to address vulnerabilities in Microsoft Windows and Office as part of the Microsoft Security Bulletin Summary for February 2010. These vulnerabilities may allow an attacker to execute arbitrary code, cause a denial-of-service condition, or operate with elevated privileges.
DarkFiber Consulting encourages users and administrators to review the bulletins and follow best-practice security policies to determine which updates should be applied.
Posted in Security Alerts | No Comments »
Tagged With: Address • Arbitrary Code • Attacker • Bulletins • Denial Of Service • Microsoft • Microsoft Office • Microsoft Security Bulletin • Microsoft Windows • Privileges • Security Policies • Vulnerabilities
October 14th, 2009 . by DarkFiber Consulting
Adobe has republished security bulletin APSB09-015 to address multiple vulnerabilities in Adobe Reader and Acrobat. These vulnerabilities may allow an attacker to execute arbitrary code, escalate local privileges, or cause a denial-of-service condition.
DarkFiber Consulting encourages users and administrators to review Adobe security bulletin APSB09-015 and apply any necessary updates.
Posted in Security Alerts | No Comments »
Tagged With: Acrobat Adobe • Acrobat Security • Adobe Acrobat • Adobe Reader • Arbitrary Code • Attacker • Denial Of Service • Necessary Updates • Privileges • Reader Acrobat • Security Bulletin • Vulnerabilities
October 14th, 2009 . by DarkFiber Consulting
Microsoft has released an update to address vulnerabilities in Microsoft Windows, Silverlight, Internet Explorer, .NET Framework, Office, SQL Server, Developer Tools, and Forefront as part of the Microsoft Security Bulletin Summary for October 2009. These vulnerabilities may allow an attacker to execute arbitrary code, operate with escalated privileges, cause a denial-of-service condition, or spoof an end user or website.
DarkFiber Consulting encourages users and administrators to review the bulletins and follow best-practice security policies to determine which updates should be applied.
Posted in Security Alerts | No Comments »
Tagged With: Address • Arbitrary Code • Attacker • Bulletins • Denial Of Service • Developer Tools • Forefront • Internet Explorer • Microsoft • Microsoft Internet • Microsoft Security Bulletin • Microsoft Windows • Privileges • Security Policies • Server Developer • Spoof • Vulnerabilities
July 2nd, 2009 . by DarkFiber Consulting
Microsoft has released an update to address vulnerabilities in Microsoft Windows, Office, and Internet Explorer as part of the Microsoft Security Bulletin Summary for June 2009. These vulnerabilities may allow an attacker to execute arbitrary code, operate with elevated privileges, or obtain sensitive information.
DarkFiber Consulting encourages users and administrators to review the bulletins and follow best-practice security policies to determine which updates should be applied. Additional information regarding these vulnerabilities can be found in Technical Cyber Security Alert TA09-160A.
Posted in Security Alerts | No Comments »
Tagged With: Address • Arbitrary Code • Attacker • Bulletins • Cyber Security • Internet Explorer • Microsoft • Microsoft Office • Microsoft Security Bulletin • Microsoft Windows • Privileges • Security Policies • Vulnerabilities • Windows Office
December 11th, 2008 . by DarkFiber Consulting
Microsoft has released Security Advisory 961051 to address reports of attacks against a new vulnerability in Internet Explorer 7. By convincing a user to view a specially crafted XML document, an attacker may be able to execute arbitrary code with the privileges of the user. Additionally, Microsoft indicates that it is aware of limited and targeted attacks using this vulnerability.
DarkFiber Consulting encourages users to review the Microsoft Security Advisory 961051 and implement any Suggested Actions to help mitigate the risks.
Additional information is available in the Vulnerability Notes database. DarkFiber Consulting will provide further details as they become available.
Posted in Security Alerts | No Comments »
Tagged With: Address • Arbitrary Code • Attacker • Internet Explorer 7 • Microsoft • Microsoft Releases Security Advisory • Microsoft Security Advisory • Nbsp • Privileges • Vulnerability Notes Database
December 9th, 2008 . by DarkFiber Consulting
Microsoft has released updates to address vulnerabilities in Microsoft Windows, Office, Internet Explorer, Developer Tools and Software, and Server Software as part of the Microsoft Security Bulletin Summary for December 2008. These vulnerabilities may allow an attacker to execute arbitrary code or escalate privileges.
DarkFiber Consulting encourages users and administrators to review the bulletins and follow best-practice security policies to determine which updates should be applied.
Posted in Security Alerts | No Comments »
Tagged With: Address • Arbitrary Code • Attacker • Bulletins • Developer Tools • Internet Explorer • Microsoft • Microsoft Internet • Microsoft Office • Microsoft Security Bulletin • Microsoft Updates • Microsoft Windows • Office Internet • Privileges • Security Policies • Server Software • Vulnerabilities • Windows Office
November 18th, 2008 . by DarkFiber Consulting
Adobe has released a security bulletin to address a vulnerability in Adobe AIR. This vulnerability can be triggered if an Adobe AIR application loads data from an untrusted source. Exploitation of this vulnerability may allow a remote attacker to execute JavaScript code with elevated privileges.
DarkFiber Consulting encourages users to review Adobe Security Bulletin APSB08-23 and upgrade to Adobe AIR 1.5 to help mitigate the risks.
Posted in Security Alerts | No Comments »
Tagged With: Adobe 5 • Adobe Update • Air 1 • Application Loads • Attacker • Privileges • Security Bulletin • Untrusted Source • Upgrade Adobe • Vulnerability
November 10th, 2008 . by DarkFiber Consulting
VMware has released Security Advisory VMSA-2008-0018 and has updated Security Advisory VMSA-2008-0016.1 to address multiple vulnerabilities. These vulnerabilities may allow an attacker to conduct directory traversal attacks, operate with escalated privileges, or obtain sensitive information.
DarkFiber Consulting encourages users and administrators to review VMware Security Advisories VMSA-2008-0018 and VMSA-2008-0016.1 and apply any necessary updates to help mitigate the risks.
Posted in Security Alerts | No Comments »
Tagged With: Address • Attacker • Directory Traversal • Necessary Updates • Privileges • Security Advisories • Security Advisory • Vmware
October 14th, 2008 . by DarkFiber Consulting
In April 2008, Microsoft released Security Advisory 951306 to alert users of a vulnerability in Microsoft Windows. This vulnerability may allow local users, or users who can legitimately run code in the context of IIS or SQL Server, to operate with elevated privileges. Recently, Microsoft Security Response Center (MSRC) posted several blog entries indicating that the Security Advisory was updated to reflect the availability of public exploit code. A patch or update is not available to correct this issue.
DarkFiber Consulting encourages users and administrators to do the following to help mitigate the risks:
Posted in Security Alerts | No Comments »
Tagged With: April • Exploit • Microsoft • Microsoft Security Response Center • Microsoft Updates • Microsoft Windows • Msrc • Privileges • Security Advisory • Security Response Center • Vulnerability