stefan_pavikevik
Feb 20 2009, 04:43 PM
| | Microsoft, before some time, published a new web service (site) which with you can learn about security of your applications (developed by you) and how hackers can use them. This can be learnt through strip and videos. This site is strict educative. This site is an Idea of Kevlarr, an developer trained from 3 agents from SDL (Security Development Lifecycle), to fight against the league of Malicious Code. The strips are a little unusual and weird, but on this site, you can learn from professional developers about the mistakes and the bugs on the code, and how the developers repair them who describe their work. On one of the videos you can see Steve Lipner, who explains about the Code Red worm (see on wikipedia for more: http://en.wikipedia.org/wiki/Code_Red_(computer_worm))...
'Njoy!
|
Comment/Reply (w/o sign-up)
Similar Topics
Keywords : Baking Security Educative Site Security Microsoft- Microsoft Windows Dhcp Client Service Remote Code Execution Vulnerability
- (1)
What it is A exploit in the buggy OS of XP has been found, this one concering DHCP. OS effected
Microsoft Windows 2000 Advanced Server Microsoft Windows 2000 Advanced Server SP1 Microsoft Windows
2000 Advanced Server SP2 Microsoft Windows 2000 Advanced Server SP3 Microsoft Windows 2000 Advanced
Server SP4 Microsoft Windows 2000 Datacenter Server Microsoft Windows 2000 Datacenter Server SP1
Microsoft Windows 2000 Datacenter Server SP2 Microsoft Windows 2000 Datacenter Server SP3 Microsoft
Windows 2000 Datacenter Server SP4 Microsoft Windows 2000 Professional Microsof...
Microsoft To Provide Free Anti-virus Software
- (10)
Wireless Network Security
- (17)
Hello Everyone, I am setting up a wireless network for my house, im finally getting rid of the
dial-up (cost justified it). My cable line will be installed soon, and I am going to wireless
network it so my two desktop PCs can share the Internet access. I've heard the mysterious
security issues, but most of them seem pretty obvious that you have to be ignorant to overlook, like
changing the admin password on your router, etc. Anyway, what I am getting at here is a question:
do you have any tips for securing a wireless network? Thanks! ...
Is Symantec Really The Best In Security ?
- (8)
QUOTE INTRODUCTION Secunia has tested the ability of various high-profile Internet Security
Suites to detect exploitation of vulnerabilities. For a long time, we have been quite convinced that
anti-virus products would exhibit poor performance in this discipline, given the name
“anti-virus” which suggests a limited focus (though customers may still expect to be
protected). This is why secunia decided to test some more “high-end” product bundles
that are being marketed as comprehensive Internet Security Suites, thus leaving the impression tha...
Anyone Have Info On "spyhackerz.com"?
- failed hacking attempt at my site by these guys (18)
Hi all I just checked my site, hosted here at trap17.com, and my guestbook was full of html code,
when i checked the file used to store the content of the guestbook i notice the HTML was as follows
QUOTE Hacked By Spyhackerz.com www.spyhackerz.com
src=http://spyhackerz.com/music/index.mp3 width=20 height=15 autostart="true" loop="true">
So im just wondering if anyone has any info on these people. I recommend not going
on the website incase they trace your IP etc....I haven't visited yet eithe...
[ Aef ] Security Update For Aef Forum Software
- Highly recommended (1)
For the benefit of any or all AEF Forum Software users, there has been a Security Issue found in the
BBcode handling of the software. A Patch file is available and it is as simple as uploading a
replacement file to overwrite an existing file in the Install. File download and further
details are available here . The Update is highly recommended since the vulnerability is
now public and no telling what mischief could result on your Forums. ...
Windows 7-windows Live Ties
- Microsoft is at it again (0)
In an internal memo Microsoft detailed how it plans to tie Win7 and Windows Live. It seems these
guys never learn. They don't don't get tired of monopolizing everything. I just pray the
anti-trust guys will do a good job on this one. Below is part of the blog by Mary Jo Foley about the
memo titled " Microsoft internal memo details Windows 7-Windows Live ties ": " In
January, I mentioned an internal Microsoft memo I had seen which provided details of how Microsoft
plans to more tightly integrate its Windows 7 operating system with Windows Live service...
Xp Sp3
- Has microsoft delivered. (5)
I am one guy who has always beleaved that when MS made XPsp2 they raised the standards for them
selves. the package was just too good for their own good. When Sp3 came out I didnt hesitate to
download it and what did I get? The first thing that i noticed was I could no longer use remote
desktop. i'm sure this has since been rectified in RC2 but it realy turned me off. I never
realised any gains in the SP. Still on the subject I found Adrian Kingsley-Hughes' blog titled
' XP SP3 performance gains - Nothing to write home about ' interesting He wrote: QU...
Cpanel Exploit
- security hole in cPanel to hack the servers of a hosting company (8)
A pair days ago I read this new on Slashdot: cPanel Exploit Used to Circulate IE Exploit
QUOTE "In a dangerous combination of unpatched exploits, hackers have used a previously
undiscovered security hole in cPanel to hack the servers of a hosting company and use hundreds of
hijacked sites to infect Internet Explorer users with malware using the unpatched VML exploit.
cPanel, whose hosting automation software is used by many large hosting companies, has issued a fix.
It's a local exploit, meaning the attacker must control a cPanel account on the target hosti...
White Paper: Security Threat Report: 2008
- (0)
I saw this white paper and I thought I bring down some interesting information that has come from
2007 and leading into 2008. I have to say though that the information on this white paper is pretty
darn mind blowing as I bounce some facts to everyone. Of course since I been getting into this
since last year it is not all that surprising since I posted many topics about it as well.
-Sophos currently sees 6,000 new infected webpages each day -One infected page every 14 seconds
-Only about 1 in 5 of these sites is a hacker site -83 percent are hacked sites, or legitima...
Security Warning 2008: Top 11 Malware Threats To Watch Out For
- (0)
Before I go into this topic I have to say, stop making up these crazy names. I know I just getting
into the security side of things but still as long as there are computer problems and ways to sucker
someone into downloading the stuff, the crazy names will still live on. QUOTE Lieware
ADVERTISEMENT In 2007, there was a lot of "rogue anti-virus software," which is sometimes also
referred to as "fake anti-virus software." But these terms are confusing because there's too
much negation going on. Fake anti-virus software is not anti-virus software at all. So what ...
New Security Hole Discovered In Excel
- (0)
Well I have to same I am bit surprise on this security flaw especially what it can do; in which all
a user has to do is open a malicious Excel document and it allows the hackers to execute remote code
on to your system. As far as how wide spread this vulnerability is, it hits every excel software
from Excel 2000 to Excel 2003 SP2, and it also includes the Mac Version of Excel 2004 as well. OF
course with the disappointment of Office 2007 by some people will still be running the 2003 versions
on their computers. Right now the attacks are minimal and the question for t ...
Security Commom Sense
- (0)
A very good article titled "Security Common Sense" in gnucitizen.org Below is the link to that
article http://www.gnucitizen.org/blog/security-common-sense Website Link
http://www.gnucitizen.org "We basically train a bunch of monkeys to click the yes button for
every security warning." Don't you think many of us fall under the category? because most of
the time we do not see what the dialog says, but press Yes, which might not treat you well
sometimes... A good read....
Symantec's Top 10 Internet Security Trends Of 2007
- (3)
Well I saw this article and after reading it all just to find the top 10 security problems I thought
I share them and give my thoughts about them. I know I know its horrible but what can I say, its me
/laugh.gif" style="vertical-align:middle" emoid=":lol:" border="0" alt="laugh.gif" />. 1.) Data
Breaches For the most part I am not surprise especially the big stories of 2007 which include the
TJ Max breach of 45 million credit/debit cards; I believe that has been the biggest hack job ever in
terms of stolen cards and id theft (somewhat). Oh lets not forget the al...
Linux Security Tools
- (5)
Hi, I've posted some security tools and links in my last posts,I preferd to post new topic and
send he extra here : Network Sniffers # DSniff http://www.monkey.org/~dugsong/dsniff/ #
Ethereal - full network protocol sniffer/analyzer http://www.ethereal.com/ # IPTraf - curses based
IP LAN monitor http://iptraf.seul.org/ # TcpDump - network monitor and data acquisition
http://www.tcpdump.org/ # KISMET - 802.11 wireless network detector, sniffer and intrusion
detection system http://www.kismetwireless.net/ Online Tools # AutomatedScanning.com - commer...
Hole In Microsoft Messenger Program Requires A Immediate Update
- For Users of MSN Messenger 6.2, 7.0 and 7.5 versions of MSN Messenger (0)
SOURCE Well it seems that Microsoft found a huge hole in MSN Messenger that was bad enough that
they want people to upgrade to the current Messenger which is Live 8.1 or something like that. As
for details on the problem they just said the following, "..which let hackers embed malicious code
in Web chat invitations to users." and that they found this problem in "6.2, 7.0 and 7.5, as well as
Windows Live Messenger 8.0." Although it was interesting to know that people were actually
complaining about Live Messenger being a resource hog, well the last time I check msn w...
Security Firm Kaspersky Lab Creates Ipod Virus
- (1)
With the flood of news coming about the .ani exploits it seems the tech world is recieve more news
about new hacks, viruses and other bad stuff these days. Today Kaspersky Lab created a virus that
is able to affect the Ipod, however, it is only affecting Ipod's that have linux installed and
not the standard OS that comes with Ipod. The virus goes by the name of Podloso, although they say
it doesn't show a current threat this virus does show the possiblity to install malware into
devices such as the Ipod. They also mention that the virus does not copy it self...
Security Guidelines For Internet Users
- (6)
Security Guidelines for Internet Users 1. Install an anti-virus software, you can free ones like
AVG Free . Ensure that it's regularly updated - this is of the utmost importance. 2.
Anti-virus software is not enough, the security can be tightened using a firewall software which
will help you prevent unauthorized incoming and outgoing communications from your computer while
connected to the Internet. 3. Disconnect your computer from the Internet when not in use. The
longer you are connected to the Internet, the more opportunity you give for persons to gain un...
Php Security Vulnerability - Beware From Spammers
- If you notice your site becoming really slow, you may be a victim (1)
QUOTE PHP Security If you are using PHP on your website we ask that you please read the
following carefully. We have noticed a significant number of PHP websites are being compromised
due to vulnerable PHP code. Spammers are scanning millions of websites on the Internet looking for
PHP scripts that can be exploited to send spam. When they find a script that has a loophole they
send thousands of email messages through the script, often taking down the website or severely
impacting website performance. Generally these loopholes exploit code using paramet...
Major Flaw In .ani File Found In Windows 98 Through Vista Creates Major Security Risk
- Vista Aint that Secure at all (9)
I was able to browse around this and found it interesting since this vunerability is found in 4
Microsoft Operating Sytems, Windows 2000, Windows XP, Windows Vista, Windows 2003 Server. From the
article Microsoft stated that their is a hole in the .ani files, which happen to be related tothe
mouse cursor, when the mouse icon changes depending on what you do. They only mention that with
this flaw it always hackers to break into someone computer and do their thing. But in another
article relating to this attack it was mention that in order for this to happen a user has ...
Brand New Security Holes Found And Patch On This Month Updates And Office Exploits
- (0)
Even though the fiasco with the .ANI exploit is still going strong microsoft released it's month
updates this time they found 4 more critical breaches in it's systems (XP), most people should
have gotten the update pop up screen yesterday. So here is the info on these critical flaws.
http://go.microsoft.com/fwlink/?LinkId=84687 http://go.microsoft.com/fwlink/?LinkId=85130
http://go.microsoft.com/fwlink/?LinkID=85163 http://go.microsoft.com/fwlink/?LinkID=85164
http://go.microsoft.com/fwlink/?LinkId=80251 I don't know how reliable vista will be af...
Microsoft Rumor...
- From my Uncle. (17)
My uncle said Microsoft are going to be sending viruses out via Windows Updates, he said if you do
not have a genuine computer and you validate it you may get a virus. He said someone from PC World
told him. I'm not exactly sure so don't go crazy, but just to tell you it may be true, maybe
not....
A Very Simple Security Tip
- for Windows 2000/XP (13)
We all know the difference between a limited user and an administrator user under Win2k/XP - you
can't/can install major software, perform system maintainence, and other stuff. But using a
limited user on a day-to-day basis also provides you with decent protection from a bunch of threats:
if the malware is running under your limited-rights user, it can only do as much as you can. For
instance, a limited rights user can't edit the HKLM hive of the Registry, so any malware running
under the same user won't be able to touch that area. It's extremely simple t...
List Of Security Sites
- (7)
List of security sites, I'll try to update the list as soon as I can . with compilations of
recent security threats, Global Incident Analysis Center (GIAC), GIAC training, and Reading Room
http://www.sans.org/ http://www.infragard.net/ http://www.cert.org/security-improvement/
CERT Security Improvement Modules,including general information on firewalls and intrusion
detectors. excellent set of papers on firewalls, viruses, e-commerce, etc. http://www.icsa.net/
http://www.gocsi.com/ (Source of the annual "CSI/FBI Computer Crime and Security Su...
Security Not Safe
- (2)
Hi everyone!!!!!!! This is the last one!! /tongue.gif" style="vertical-align:middle" emoid=":P"
border="0" alt="tongue.gif" /> Ok guys, I heard somewhere that if we protect some page with
password, it is steel not safe at all, if we dont hace a secure connction (http s ://...) How is it
true? is there a posibility that some one can see a page, even if it is protected by password? (the
scrit in tha page don't allow IDs that didn't past from the login page) is that script
sufficent? thanks a lot to every one /biggrin.gif" style="vertical-align:middle" e...
Rootkits
- the security threats that no one's heard of (2)
a security threat to be concerned with is the increasing prevalence of viruses containing advanced
rootkits to hide their actions or data on the computer. even from the anti-stuff tools. a
rootkit was originally a name for tools that hackers/crackers would use to maintain root on
unix/linux machines. root is the uber user with all the permissions on a linux box. on windows
these tools can be used to hide data on the harddrive and in the registry by manipulating the way
the data is stored. THe windows api(the thing windows uses to communicate to the hardware) read...
Microsoft Warns Of Virus Entering Pcs Via Powerpoint
- (3)
QUOTE Microsoft has alerted users of a virus that enters PCs through the PowerPoint program. The
virus attaches itself to a contaminated presentation that when accessed installs a keylogging
software on a computer. Users are being warned to take precautions because Microsoft patch that
guards against the security loophole will still be tentatively released on August 8. Reports say
the virus has infected relatively few people with the poisoned presentation. Malicious hackers used
the bug found in PowerPoint 2000, 2002 and 2003. Security experts report that the vir...
Light To Heavy Security Tips
- Some (helpful?) Suggestions (4)
(excessively long intro, skip to 'suggestions' for immediate tips) Its almost 2 am and I
just finished an email detailing some ideas I had to keep systems a little more secure than usual (
tips that can be applied to most any Windows users system ). I dont feel like re-editing it so it
doesnt sound I copied and pasted it from my email, cause I did, and its late. Please note THIS IS
NOT SPAM. I did write all of this, just in an email before I copied and pasted it here. These are
entirely valid and ( I hope ) helpful tips for most anyone. Of course I hate just yap...
Microsoft Ships First Vista Security Patches
- yup, got that right -- VISTA (9)
Microsoft Ships First Vista Security Patches http://www.eweek.com/article2/0,1895,1911406,00.asp
QUOTE Microsoft Corp. has shipped the first critical security update for Windows Vista, the
next version of its flagship operating system. Over the weekend, the company released patches for
beta testers running the Windows Vista December CTP (Community Technology Preview) and Windows Vista
Beta 1, and warned that the new operating system was vulnerable to a remote code execution flaw in
the Graphics Rendering Engine. A Microsoft spokesperson told eWEEK that the Vi...
Manual Virus Removing And Security.
- (0)
Talking about manual removals of viruses I thought I better be a pioneer of this by sharing my
knowledge about a virus. I would like to tell the effects and manual removing technique of a very
common and irritating virus, that is HTML Redoff. First I would like to discuss its effects, HTML
Redoff virus infects kernel32.dll file which is installed in your “WINDOWS\SYSTEM” directory in case
you have Windows 98 and “WINDOWS\SYSTEM32” directory in case you have Windows XP and all the .htm,
.html, folder.htt and desktop.ini files on your PC thus it slows down your browsing ...
Looking for Baking, Security, In, -, Educative, Site, For, Security, From, Microsoft...
|
Searching Video's for Baking, Security, In, -, Educative, Site, For, Security, From, Microsoft...
See Also,
|
advertisement
|
|