Microsoft

EFF asks US Copyright Office to exempt jailbreaking from DMCA

EFF-logo-250

The EFF is asking the US Copyright Office to expand exemptions for jailbreaking/rooting devices to include game consoles and other smart devices. We explore the security risks and benefits of their proposal.

Share

Microsoft announces workaround for the Duqu exploit

MSFixIt50792-250

Microsoft have released a security advisory for the vulnerability used in the Duqu Trojan. They are providing a workaround, but it disables the use of embedded True Type Fonts.

Share

New zero-day Windows kernel vulnerability associated with Duqu Trojan

iStockzerocupcake250

Another component of the Duqu malware was acquired by CrySyS and shared with security researchers. This newest component exploits a zero-day vulnerability in the Microsoft Windows kernel.

Share

Bundestrojaner, Sony breach, Duqu, OS X anti-anti-virus, MS hack - 60 Sec Security

60ss-20111026-250

Enjoy the latest security news in brief by watching 60 Second Security!

This episode: the German Bundestrojaner controversy, Sony breached (again!), Duqu dubbed "Son of Stuxnet", OS X anti-anti-virus and Microsoft videos hacked.

Share

Microsoft's YouTube channel has been hacked

Microsoft's YouTube channel has been hacked

Hackers have taken control of Microsoft's official YouTube channel, removing the company's videos and replaced them with their own.

Share

Duqu malware spurs new Stuxnet-style conspiracy theory

Duqu virus spurs new Stuxnet-style conspiracy theory

We might never find out what really happened in the Stuxnet case. But what about Duqu, the son of Stuxnet?

One writer already seems to know with certainty, and despite the absurdity of his claims, his story is getting picked up around the world.

Share

SSCC 75 - VB 2011, Apple updates, Microsoft Patch Tuesday and German R2D2 Trojan

Sophos Security Chet Chat

John Shier joined Chet this week as they discussed the death of UNIX and C co-creator Dennis Ritchie, the Virus Bulletin 2011 conference, Apple's release of iOS 5 and OS X 10.7.2, Microsoft Patch Tuesday, and the German R2D2 Trojan.

Share

Patch Tuesday October 2011 - 8 bulletins, 2 critical

vulnerability-thumb

Microsoft's Patch Tuesday bulletin for October 2011 covers 23 vulnerabilities in 8 patches. Affected software includes all supported versions of Windows, Internet Explorer, .NET, Silverlight and more.

Share

Nimda, Lion hole, scam bust, dot CZ dot CC and RIP Steve - 60 Sec Security

Nimda, Lion hole, scam bust, .CZ.CC  and RIP Steve - 60 Sec Security

Enjoy the latest security news in brief by watching 60 Second Security!

This episode: learning from the 10-year-old Nimda virus, finding a password hole in Lion, taking down support scammers and the dot CZ dot CC domain, and farewelling Steve Jobs.

Share

SSCC 74 - fighting hi-tech crime, Kelihos botnet, iCode for USA, Amazon Silk tablet, Mac malware and the BEAST

Sophos Security Chet Chat

This week, Chet and Paul Ducklin discuss the interesting and important topics of the past week: fighting hi-tech crime, tackling the Kelihos botnet, taking on zombified home users, examining the risks of Amazon's new Silk tablet, and understanding the BEAST!

Share

Windows 8 anti-virus has a long way to go

Win8logo250

When testing the included unmanaged anti-virus in Windows 8 I ran across an odd quirk. It doesn't detect EICAR properly. I present my results and what to expect in this article.

Share

Microsoft's botnet shutdown won't stop Mac malware

SophosWebLogo250

After Microsoft's shutdown of the Kelihos botnet on Monday some suggested it would slow down Mac malware purveyors. While the shutdown of the botnet and the cz.cc domain will help, it's only temporary.

Share

Microsoft dumps partner over telephone scam claims

Microsoft dumps partner over telephone scam claims

One of Microsoft's Gold Partners has had its relationship with the software giant unceremoniously terminated, after being revealed to be orchestrating a telephone support scam.

Share

Microsoft reissues update for Win XP/2003 for DigiNotar certificate revocation

XPWinUpdate250

Microsoft has reissued a security update to remove DigiNotar's certificates from Windows XP and Windows 2003 after a mistake in last week's Patch Tuesday failed to remove most important certificates that were being abused.

Share

Will Windows 8's new interface herald full-screen scareware?

Will Windows 8's new interface herald full-screen scareware?

Could the new simplified Windows 8 interface lead to a wave of new scareware/fake anti-virus attacks?

With Microsoft's Metro interface designed for full-screen apps, the temptation for hackers may be too great.

Share

SSCC 72 - DigiNotar, DNS hijacking and Firesheep v2

Sophos Security Chet Chat 41

Mike Wood a Senior Threat Researcher with SophosLabs is Chet's guest. They discuss the upcoming Patch Tuesday, the new Firesheep and go in depth on the recent troubles at certificate authority DigiNotar.

Share

Windows 8 to have built-in anti-virus - there's good and bad news

Windows 8 to have built-in anti-virus - there's good and bad news

Microsoft will ship Windows 8 with built-in anti-virus software.

Which is good news. And bad news. To find out who for, read on..

Share

Patch Tuesday for September - what you need to know

Patch Tuesday for September - what you need to know

We've just been hit with a double-barrelled Patch Tuesday, with both Microsoft and Adobe publishing security updates.

Learn what SophosLabs thinks you should do to stay secure.

Share

Microsoft revokes DigiNotar certificates from Windows, Mac users still vulnerable

MSKB2607712-200

Microsoft has permanently revoked all five certificates belonging to DigiNotar for Windows users. In addition to Windows 7 and Vista the new release also provides protection for users of Windows XP. Users of Windows should check for updates and apply this patch as soon as possible.

Share

Microsoft has $250,000 for you - some strings attached

Microsoft has $250,000 for you - some strings attached

Recently published on Microsoft's Technet Blogs site, you will find an unassumingly erudite, if lawyerly, posting.

You probably want to read it.

Share