Security From the Cloud: Remote Vulnerability Scanning
White Papers Using Open Source Vulnerability Analysis tools the Security from the Cloud is peer reviewed, open and world class. This white paper describes advantages of using a remote Vulnerability Scanning Service that is contained within the "Cloud".
[May 14, 2009, 1:17]
Vulnerability auctions compromising security
News I would speculate that if I am a vulnerability researcher and I have the option of, for example, a nice mention from Microsoft on an advisory under 'responsible disclosure' or pay off my mortgage, which one do I choose?
[July 19, 2006, 16:35]
Microsoft Office 95 ODBC Driver Vulnerability Security
Downloads Microsoft has released a security update for Jet and ODBC that addresses the Office ODBC Driver Vulnerability for Microsoft Office 95. This patch updates Microsoft Jet 3.0 and associated ODBC database drivers to eliminate a vulnerability that could...
[January 19, 2000, 7:00]
Windows 98 Unchecked Buffer Help Security Vulnerability Patch
Downloads An attacker who successfully exploits the vulnerability can run code in the security context of the user, and as a result, an attacker can gain the same privileges as the user on the computer. The HTML Help facility in Windows includes an ActiveX...
[October 31, 2002, 7:44]
Vulnerability auctions compromising security
Talkback Tip of the iceberg really. If I remember correctly it wasn't the tip of the iceberg that sunk the Titanic. Actually, it wasn't the impact with the iceberg that let to the Titanic disaster but rather a couple of system wide design flaws.
[July 19, 2006, 23:07]
Enterprise Security & Vulnerability Managment: A Progress Report - How Does Your Enterprise Measure Up?
White Papers The presenter of this webcast discusses IDC's 2005 Enterprise Security Survey. The discussion probes how enterprises are planning, improving, and maintaining their protection against security threats - and how that has changed over the years.
[October 1, 2009, 1:24]
Cisco Security Advisory: Crafted IP Option Vulnerability
White Papers Exploitation of the vulnerability may potentially allow for arbitrary code execution. The vulnerability may be exploited after processing an Internet Control Message Protocol (ICMP) packet, Protocol Independent Multicast version 2 (PIMv2) packet...
[June 9, 2007, 1:00]
PwC Integrates AppScan Into Threat and Vulnerability Practice Enabling Rapid Application Security
White Papers PwC had growing demand from its clients to expand their risk assessment practice into web application vulnerability assessments and wanted an automated solution that would enable them to deliver its service efficiently.
[April 19, 2006, 0:00]
Microsoft Windows 2000 Patch: NetBIOS Name Server Protocol Spoofing
Downloads This update resolves the "NetBIOS Name Server Protocol Spoofing" security vulnerability in some Windows-based networks and is discussed in Microsoft Security Bulletin MS00-047. For more information about this vulnerability, read Microsoft Security...
[August 18, 2000, 8:00]
Internet Explorer 6 VBScript Handling Vulnerability Patch
Downloads This update resolves the ""Incorrect VBScript Handling in Internet Explorer can Allow Web Pages to Read Local Files"" security vulnerability in Internet Explorer, and is discussed in Microsoft Security Bulletin MS02-009.
[May 14, 2002, 8:35]
Microsoft Windows 2000 Patch: Hyperterminal Buffer Overflow
Downloads This update resolves the "HyperTerminal Buffer Overflow" security vulnerability in Windows 2000. If you receive and open an HTML e-mail message that contains a particularly malformed Web address (URL), the URL can be used to exploit this...
[October 24, 2000, 8:00]
Microsoft Windows 2000 Patch: Web Client NTLM Authentication
Downloads This update resolves the "Web Client NTLM Authentication" security vulnerability in Windows 2000 and Office 2000 and is discussed in Microsoft Security Bulletin MS01-001. The vulnerability exists because WEC, which allows Internet Explorer to view...
[January 16, 2001, 6:00]
Microsoft Windows 2000 Patch: Domain Account Lockout
Downloads This update resolves the "Domain Account Lockout" security vulnerability in Windows 2000 and is discussed in Microsoft Security Bulletin MS00-089. For more information about this vulnerability, read Microsoft Security Bulletin MS00-089.
[November 27, 2000, 6:00]
Microsoft windows NT 4.0 Unchecked Buffer in SNMP Service Could Enable Arbitrary Code to be Run
Downloads This update resolves the "Unchecked Buffer in SNMP Service Could Enable Arbitrary Code to be Run" security vulnerability in Windows NTŪ 4.0, and is discussed in Microsoft Security Bulletin MS02-006. For more information about this vulnerability...
[March 12, 2002, 7:00]
Microsoft Windows 2000 Patch: Logon Malformation Causes Telnet Access Violation
Downloads This update addresses the "Predicatable Name Pipes Could Enable Privilege Elevation via Telnet" security vulnerability in the Windows 2000 Telnet service that is discussed in Microsoft Security Bulletin MS01-031.
[June 7, 2001, 8:00]
Microsoft Windows NT 4.0 Patch: Unchecked Buffer in Index Server
Downloads This update resolves the "Unchecked Buffer in Index Server ISAPI Extension Could Enable Web Server Compromise" security vulnerability in Windows NTŪ 4.0 computers running Index Server 2.0, and is discussed in Microsoft Security Bulletin MS01-033.
[June 18, 2001, 8:00]
Microsoft Windows NT 4.0 Patch: Netmon Protocol Parsing
Downloads This update resolves the "NetMon Protocol Parsing" security vulnerability in Windows NTŪ 4.0, and Systems Management Server (SMS). For more information about this vulnerability, please read Microsoft Security Bulletin MS00-083.
[November 3, 2000, 6:00]
Attack code published for 'critical' Photoshop flaw
News Although a security researcher has published code to demonstrate how to exploit the vulnerability, Secunia has yet to detect any malicious use of the code, said Thomas Kristensen, Secunia's chief technology officer.
[April 27, 2007, 12:14]
Microsoft Windows 98 Patch: IP Fragment Reassembly
Downloads This update resolves the "IP Fragment Reassembly" security vulnerability in Windows 98 and Windows 98 Second Edition. The vulnerability does not allow a malicious user to compromise data on the computer or usurp administrative control over it.
[May 19, 2000, 8:00]
Microsoft Windows 95 Patch: IP Fragment Reassembly
Downloads This update resolves the "IP Fragment Reassembly" security vulnerability in Windows 95. The vulnerability would not allow a malicious user to compromise data on the computer or usurp administrative control over it.
[May 19, 2000, 8:00]



