Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar Mark Forums Read
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 11-12-2004, 08:45 PM   #1
xlogger
Confirmed User
 
Join Date: Jul 2004
Location: NY
Posts: 9,507
:stoned Ten New Security Holes in Windows XP SP2

maybe this is a repost... but what the hell... if you are in to the security shit like me read on..

http://www.winnetmag.net/Article/Art...502/44502.html

Quote:
Ten new security holes in Windows XP Service Pack 2 have been discovered, so get ready to insert new patches into your patch management schedule. Microsoft recently announced their Security Bulletin Advance Notification Program, which gives administrators a several days advance notice of upcoming patches, however these new security holes were announced by security product maker Finjan Software.

Finjan said their Malicious Code Research Center discovered the new vulnerabilities, at least some of which are very dangerous. A spokesperson for the company said "Finjan has provided Microsoft with full technical details concerning the vulnerabilities [... ]and has been assisting Microsoft to patch these holes. In order to prevent the creation of malicious viruses and worms, Finjan will not release any
technical details about these vulnerabilities until they are fully patched by Microsoft."

Shlomo Touboul, CEO and Founder of Finjan Software, said "Windows XP SP2 operating system is a continuation of the same Windows XP Operating System and Windows Kernel. All Windows versions have been developed with requirements for highest backward compatibility and open architecture, with maximum productivity and ease of use. In addition, Windows applications typically run with administrative permission with full and unlimited access to computer resources."

"This, together with the emerging technology of mobile code has created a situation in which active content travels freely over the web and gains full control of host computers. These fundamentals create a green field for hackers shown by constantly increasing attacks and damage over the last few years. A security patch of Windows operating system without changing the rules of the game will not be enough to fight the recent complex malicious code attacks such as Scob, Mydoom, and others. End users and Enterprises must add an independent security layer that is not dependent on the above fundamentals. Application level behavior blocking is the leading technology designed to immunize systems from both known and unknown vulnerabilities and exploits; viruses, worms, Trojans, spyware, phishing and other threats," Touboul continued.

The vulnerabilities discovered at Finjan could allow attackers to "silently and remotely" take control over an affected system when a user visits a malicious Web page. As you well know, enticing someone to visit a Web page is relatively easy to do.

The company outlined several scenarios to better explain the risks:

Hackers can remotely access users' local files Windows(R) XP SP2 is designed to deny access to a local file in the course of Internet browsing. Therefore, any attempt by a remote web page to access a local file in any way other than downloading a file, is denied. Finjan has shown that this feature can be remotely compromised by hackers.

Hackers can switch between Internet Explorer Security Zones to obtain rights of local zone Internet Explorer uses the notion of security zones to differentiate between mobile codes by their origin. In this way, for example, the permissions of files running from the local hard drive are much higher than the permissions of code downloaded from the Internet. Finjan has shown that it is possible to elevate the privilege level of mobile code downloaded from the Internet. By gaining additional privileges, the remote code could read, write and execute files on the user's hard drive.

Hackers can bypass SP2's notification mechanism on the download and execution of EXE files and therefore download files without any warning or notification One of the mechanisms that have been implemented in SP2 is the verification of the download and the execution of content arriving from the Internet. This mechanism is implemented by three new features - an information bar inside Internet Explorer which filters and blocks unauthorized operations performed by web pages, a file download dialog which requires the user's confirmation for file save and execution operations, and
an execution verification dialog. These features are important to prevent unauthorized silent "drive-by" installations of malicious software.
Upon learning of this news story a spokesperson for Microsoft said the company "is aware of the claims by Finjan Software and at this time cannot confirm Finjan's claims of "ten new vulnerabilities" in Windows XP SP2. Moreover, Microsoft is currently unaware of active attacks against customers
attempting to utilize the alleged vulnerabilities as reported by Finjan. We have been contacted by Finjan regarding various potential issues as part of the usual responsible disclosure protocol and are actively investigating those issues through our security response process to determine the validity and accuracy of the reported issues."

"Our early analysis indicates that Finjan's claims are potentially misleading and possibly erroneous regarding the breadth and severity of the alleged vulnerabilities in Windows XP SP2. Once Microsoft concludes investigating Finjan's claims and if Microsoft finds any valid vulnerability in Windows XP SP2, Microsoft will take immediate and appropriate action to help protect customers. "

Other vendors also offer advance notice of unpatched security holes in Windows platforms and related services. For example, eEye Digital Security maintains a Web page of upcoming advisories on their Research site. As of November 10 the page lists one upcoming advisory that relates to remote code execution, which eEye given its highest severity rating. The company notifies the vendor (in this case Microsoft) of vulnerabilities and when the vendor releases a patch then eEye releases its own advisory to the public. Often times knowledge of still other unpatched vulnerabilities can be gathered from intrusion detection systems, which store signatures to recognize attacks.

The practice of notifying the public about the mere existance of security vulnerabilities (not to mention any significant details) is a sore spot in many people's minds. Researchers gain publicity for themselves and their products, and at the same time some claim they offer advance notice in order to keep a tiny bit of pressure on vendors to work quickly to produce patches. Striking a balance in that sort of act is difficult at best since it's not likely that everyone can be pleased all of the time and invariably it's the end users of products who suffer most in the event that too much information is released too soon.

__________________

----------
XLOGGER [REFLECTED] [OH]
xlogger is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-12-2004, 08:46 PM   #2
body
Confirmed User
 
Industry Role:
Join Date: Oct 2002
Posts: 5,016
Never ending story, time for Mr. Bill to sell Windows XP 2k5 LOL
__________________
The Goddess Of Steps
body is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-12-2004, 08:58 PM   #3
TurboTrucker
Confirmed User
 
Join Date: Jan 2003
Location: Phoenix Arizona
Posts: 2,363
Hmm when will the next Windows be out? I haven't heard anything about what's after XP.

Quote:
Originally posted by body
Never ending story, time for Mr. Bill to sell Windows XP 2k5 LOL
__________________
TurboTrucker is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-12-2004, 10:51 PM   #4
erehwon
Confirmed User
 
erehwon's Avatar
 
Industry Role:
Join Date: Nov 2003
Location: A secure undisclosed location...
Posts: 3,759
Just remember when it comes to Windows, its not a bug, its an undocumented feature!
__________________
Money NEVER $leep$...
erehwon is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-13-2004, 02:48 AM   #5
megatgpdotnet
Confirmed User
 
Join Date: Jun 2004
Location: EU
Posts: 1,296
Why still ppl using that system? :D
__________________
ICQ: 343 896 902 | Traffic: Buy and Sell | My top sponsors: Dating (1:26 fs) | Webcams (20% lifetime) | $25 / free signup | Paysites (trials, crossells, alternative billing) | Other Stuff .com domains $7.99 | Dreamhost promo codes | Cheap quality content | Embed Tube Script Toplists: 1 | 2
megatgpdotnet is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-13-2004, 03:08 AM   #6
More Booze
Confirmed User
 
Join Date: Mar 2004
Posts: 5,116
Quote:
Originally posted by megatgpdotnet
Why still ppl using that system? :D
because most applications is made for windows.
More Booze is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-13-2004, 04:47 AM   #7
Sarma
Confirmed User
 
Join Date: Jun 2004
Location: Europe
Posts: 715
stupid M$
__________________
I make up to $175 per sale, how about you? -> MoreNiche.com
Sarma is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 11-13-2004, 04:50 AM   #8
bigdog
Confirmed User
 
Join Date: Jul 2001
Posts: 6,964
time to switch http://www.apple.com
i think many webmasters would switch to mac, if a couple of pc only webmasters tools could be found on the mac, like snatchit, avi splitter and a decent tgp submitter

Last edited by bigdog; 11-13-2004 at 04:54 AM..
bigdog is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks
Thread Tools



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.