Site Statistics
 
Threads: 3,718
Posts: 16,702
Members: 2,843
Users Online: 13
Newest Member: john253


Go Back   PC101 > PC Software > Windows Vista, XP, 2000, 98, etc...

Windows Vista, XP, 2000, 98, etc... Questions, comments, news about Windows Vista, XP, 2000, ME and all the rest!

Reply
 
LinkBack Thread Tools Display Modes
Old 01-03-2006, 09:09 AM   #1
Will.Spencer
Distinguished Member
 
Join Date: Jul 2005
Posts: 2,208
Rep Power: 5 Will.Spencer is on a distinguished road
'Extremely Critical Flaw' in Windows Discovered

'Extremely Critical Flaw' in Windows Discovered, Already Exploited
Tuesday, January 03, 2006

Microsoft Corp. has issued a security advisory for what Secunia is deeming an "extremely critical flaw" in Windows Metafile Format (.wmf) that is now being exploited on fully patched systems by malicious attackers.

Websense Security Labs is tracking thousands of sites distributing the exploit code from a site called iFrameCASH BUSINESS.

That site and numerous others are distributing spyware and other unwanted software, replacing users' desktop backgrounds with a message that warns of spyware infection and which prompts the user to enter credit card information to pay for a "spyware cleaning" application to remove the detected spyware.

Vulnerable operating systems include a slew of Windows Server 2003 editions: Datacenter Edition, Enterprise Edition, Standard Edition and Web Edition.

Also at risk are Windows XP Home Edition and Windows XP Professional, making both home users and businesses open to attack.

In this fluid attack, researchers have kept up a steady stream of new details about the extent of the exploit's reach, with Google Desktop being the latest reported vector.

F-Secure reported on Wednesday that Google Desktop tries to index image files with the exploit, executing it in the process. F-Secure reports that this exploitation-via-indexing may wind up occurring with other desktop search engines as well.

Google had no immediate comment. To avoid the problem, security experts suggest disabling the feature's indexing of media files, or to remove Google Desktop altogether.

A workaround called REGSVR32 has been posted and was included in Microsoft's advisory. However, it should be noted that as of Thursday evening, some security researchers were reporting that the workaround is not fully successful.

...
Will.Spencer is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 01-08-2006, 03:52 AM   #2
XxEtrnlDeathXx
Member
 
Join Date: Jan 2006
Posts: 53
Rep Power: 3 XxEtrnlDeathXx is on a distinguished road
Hacking:

Finding Holes and Exploiting them.

One would think that hacking would end soon because exploits are easily found if one is exploited, and it could be patched up in a jiffy.
XxEtrnlDeathXx is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Top Ten New Features in Windows Vista Cedric Windows Vista, XP, 2000, 98, etc... 0 01-10-2007 04:29 PM
Makling your computer Windows Vista Capable!! Lyte Windows Vista, XP, 2000, 98, etc... 1 12-25-2006 09:38 AM
Windows XP Errors & Fixes ( most common errors ) asterix Windows Vista, XP, 2000, 98, etc... 4 08-21-2006 09:09 AM
"Why Windows Vista Won't Suck" Lyte News, events, alerts and more! 1 03-12-2006 02:35 PM
Ten Reasons to Buy Windows Vista Lyte News, events, alerts and more! 6 03-01-2006 06:29 PM



Flex Development


Our partners:



All times are GMT -5. The time now is 08:13 PM.

Powered by vBulletin Version 3.6.7
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.0.0
Design by vBSkinworks

Copyright © PC101 and PC101.com Computer Forum. All rights reserved.