-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Microsoft blames human error for critical security update failure
,----[ Quote ]
| "Human issues" are being blamed for a Microsoft security update failing to
| protect users of Windows XP SP2 and SP3 from a critical vulnerability. The
| Bluetooth flaw could allow remote execution of code on a targeted computer.
`----
http://www.itwire.com/content/view/18886/1054/
Microsoft re-releases security patch for Windows XP
,----[ Quote ]
| Microsoft on Thursday re-released a security patch from earlier this month
| that was supposed to fix a Bluetooth stack problem that could allow an
| attacker to take complete control of a computer running Windows XP.
`----
http://news.cnet.com/8301-10784_3-9973226-7.html?part=rss&subj=news&tag=2547-1_3-0-20
This flaw (or a similar one) was unptahced for years, IIRC. In other words, any
Windows user with Bluetooth enabled could become a zombie, user
intervention-free. Microsoft ignored the issue, hoping it would slip under the
carpet. It's just one example among others.
Related:
Bots rule in cyberspace
,----[ Quote ]
| USA TODAY REPORTS that on an average day, 40 per cent of the 800 million
| computers connected to the Internet are bots used to send out spam, viruses
| and to mine for sensitive personal data.
`----
http://www.theinquirer.net/gb/inquirer/news/2008/03/17/bots-rule-cyberspace
Alarm Raised for Critical Broadcom Wi-Fi Driver Flaw
,----[ Quote ]
| The vulnerability, which exposed as part of the MoKB (Month of Kernel Bugs)
| project, is a stack-based buffer overflow in the Broadcom BCMWL5.SYS
| wireless device driver that could be exploited by attackers to take
| complete control of a Wi-Fi-enabled laptop.
|
| [...]
|
| Microsoft's Windows operating system is exploitable without the
| existence of an access point or any interaction from the user.
`----
http://news.yahoo.com/s/zd/20061111/tc_zd/193827
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
iD8DBQFIW7jNU4xAY3RXLo4RAuvUAJ9GDSwmF3GfSlpomFDojWx3cLLRbgCgqqwt
v5AHCxTiD4kaDEso7YB9pjQ=
=MpvO
-----END PGP SIGNATURE-----
|
|