New tools to block and eradicate SQL injection

Tuesday, June 24th, 2008

The MSRC released an advisory today that discusses the recent SQL injection attacks and announces three new tools to help identify and block these types of vulnerabilities. The advisory discusses the new tools, the purpose of each, and the way each complements the others. The goal of this blog post is ...

Apple defuses Safari “Carpet Bomb”

Friday, June 20th, 2008

Apple has closed four security holes in the Windows version of its Safari browser with the release of version 3.1.2. The fixes include the browser's "Carpet Bomb" behaviour of placing downloaded files on the desktop by default and without asking the user's permission. In association with with Internet Explorer – ...

Details emerge of Safari “carpet bomb” flaw

Monday, June 16th, 2008

The vulnerability known as the Safari carpet bomb has still not been fixed, despite Microsoft releasing a security update for Internet Explorer last Tuesday evening. The consensus is that Microsoft's browser is the main cause of the problem, which can create a security hole in combination with Apple's Safari.When Internet ...

Microsoft Extends XP Deadline for Low-Cost Machines

Tuesday, June 3rd, 2008

Microsoft has further extended the life of Windows XP so that computer makers can include the operating system on low-cost desktop PCs, the company announced at the Computex trade show on Tuesday.Microsoft has been under pressure from computer makers to provide a version of its OS for an emerging class ...

Microsoft urges Windows users to shut down Safari

Sunday, June 1st, 2008

In an unusual move, Microsoft Corp. on Friday warned Windows users to swear off Apple Inc.'s Safari Web browser until a patch is available that plugs holes that could let attackers to compromise computers.One security researcher noted that Microsoft's public warning -- and Apple's silence on the subject -- are ...