Windows 7 Hit By Zero-Day Exploit

Written by Saran on November 13, 2009

windows_7_previewWindows 7 fans were rejoicing when Microsoft released a patch on Tuesday because their system was not affected in any way by the six security issues. The rejoicing was short-lived, however, as news has been released that there IS a bug that can crash a Windows 7 system. The bug has been named Zero-Day Exploit and was discovered by Laurent Gaffie.

PC World provides further details:

The issue is in the SMB (Server Message Block) protocol that forms the backbone of Windows file sharing. When triggered, the flaw results in an infinite loop which renders the computer useless.

Tyler Reguly, Lead Security Research Engineer with nCircle, explains “Exploitation of this vulnerability occurs when a user attempts to browse to Windows Share hosted on the malicious server. On Windows 7, the DoS (denial of service) will occur as soon as you type ‘\\\’ in the search box. ” The vulnerability actually impacts both Windows 7 and Windows Server 2008 R2.

While the threat is very much real, experts say that the chances of the bug being exploited are quite low:

There are currently a couple different proof-of-concept exploits circulating, but there are no reported attacks in the wild at this point. Because the flaw only enables an attacker to crash the system, and doesn’t provide any unauthorized remote access that could lead to compromising information or performing other malicious activities, the odds of the exploit being actively used by attackers is fairly slim.

So what are Windows 7 users supposed to do now? Currently, Microsoft has not yet released a patch to deal with the threat. I suppose the only sensible thing to do is to be more careful with regard to visiting web sites, especially if you are unsure of its legitimacy.

Photo courtesy of Megaleecher

Tags: , , ,

Categories: Operating Systems

Leave a Comment

The Vulnerable Internet Explorer Browser

Written by Saran on April 21, 2007

By default, Internet Explorer is usually installed simultaneously with new installation of Microsoft Windows operating systems. This allows users to immediately access the web and browse websites or check their e-mail online.

Windows Updates

However, it is recommended that the required patch updates for windows components, Internet Explorer included, to ensure that versions are updated and secured to avoid any exposure of vulnerable exploits and issues that unpatched versions would be prone to. Unpatched versions are sure to be lacking in security issues known today, hence the need to acquire such updates and patches a definite must for people using the Microsoft Windows software today.

The patches and updates help ensure the overall safety of the workstation and the network it is connected to. With the rampant amount of exploits and issues that technology has been open to, it would be best to keep software and applications up to date, starting with the operating system in use.

[tags]operating systems, microsoft windows, microsoft vista, patches, updates[/tags]

Tags: , , , ,

Categories: IT Security Basics, Network Security, Operating Systems, Programming, Real-World Issues, Security Policies, Spyware, Tips

Comments Off

What are Intrusion Detection Systems?

Written by Saran on March 17, 2007

It has been a given that there are a lot of things that networks and workstations would be vulnerable to. At the top of the list are harmful files and sudden intrusions that are obviously up to no good. While resorting to firewalls may be seen as something that would prevent such attacks, intrusion detection systems cater more towards the inner system igniters, usually providing warnings prior to required action on the part of network administrators on the issue at hand.

Intrusion Detection Systems

Also, IDS monitors the behavior of the internal system since attacks of any sort may occur from files that can be initiated at any time or have already passed through the firewall for some reason beyond the set security policies.

It is a good practice to always check the network communications and identify possible security breaches. While intrusion detection systems can be able to apprehend abnormal processes, the presence of such intrusions within the internal system only proves that system and network security should be re-evaluated for stricter measures.

[tags]intrusion detection systems, network security, operating systems[/tags]

Tags: , ,

Categories: IT Security Basics, Network Security, Operating Systems, Security Policies, Tips, Wireless Security

Comments Off

Despising the Dreaded Blue Screen

Written by Saran on March 3, 2007

Blue screen errors

For most computer owners, experiencing that sudden blue screen in their workstations may be a sign of worse things to come. Programming conflicts, missing or corrupt files or infected system resources are sure to be the immediate thoughts that would come into mind.

No system is full-proof. Everything would indeed come to a point where the need to address such situations is evident. Formatting, re-programming and re-installations are alternative courses of action. There may be some good ways to refrain from a total wipe-out and clean installation of operating systems and programs but this would entail the expertise of seasoned technicians as well as broader understanding of why blue screens occur.

Taken into consideration, a need to check on the problem persists. Users will not be productive every time this would appear. The best way is to identify the problem through the web or by testing hardware and software functions part by part. Tracing it will evidently lead to feasible solutions for the workstation concerned.

[tags]blue screen, computer errors, operating systems, system errors, conflicts, configurations[/tags]

Tags: , , , , ,

Categories: IT Security Basics, Network Security, Operating Systems, Programming, Tips

Comments Off

Firewalls and Wide Area Network (WAN ) Intrusions

Written by Saran on January 18, 2007

Experiencing connection problems and slow transfer of data may occur at any given time for most networks. While most would immediately identify the network cards, computers, cabling or network configuration at first, the presence of unknown processes of the operating system or possible intrusions such as DOS or Ping attacks can also be considered as possible factors for the deteriorating speed issues for network administrators.

Firewalls

Such instances are only normal, especially for wide area networks, or networks exposed to the Internet. The mischief caused by such people can be expected, especially for people who love to try their talent in hacking and network intrusions. The prize of which is that of creating discomfort and headaches for companies that thrive on networks for business and profit.

While there are network monitors available, it would be best to get the best firewall software there is today. Some do not value the firewalls and their use until such issues arise, but just like the war on terrorism, it would be best to take on security measures before they occur to avoid bigger problems once their mischief succeeds.

Tags: , , , , , , ,

Categories: IT Security Basics, Network Security, Operating Systems, Physical Security, Programming, Real-World Issues, Security Policies, Wireless Security

Comments Off

Unveiling Operating System Secrets

Written by Saran on January 16, 2007

The complete commands and processes to which a computer operates cannot be covered in a day nor will be remembered in one sitting. Ideally, only the important things for consideration such as that of user friendly commands to allow proper interface between the computer and the user behind the keyboard will always be the only know-how that would remain.

Computer Secrets

Computer operating systems such as Linux and Windows offer a wide variety of benefits for people, especially in maximizing the capabilities of a computer and the installed software. Speed and reliability are among the important aspects that computer owner will always want and to be able to perform them, proper identification and references would need to be researched on.

It is a given that most people would not spend time studying all the aspects of a computer system. However, there will be instances when such accidental discoveries from exploring the computer operating system and its resources would ignite interest and push a person into further exploring information surrounding the issue and perhaps look at other benefits that operating systems provide but are not given much attention.

[tags]windows, linux, secrets, system hints, system resources[/tags]

Tags: , , , , , , , , ,

Categories: Cryptography, IT Security Basics, Operating Systems, Programming, Tips

Comments Off

Checking the Registry Integrity of your Computer

Written by Saran on January 6, 2007

Ordinarily, all computers would evidently slow down owing to the number of programs installed and running and exposure over the web which injects some files for proper browsing of sites. At some point, boot-up speed of most computers as well as immediate shutdowns as performed by users may encounter some delays. These are only proper since the registry would be open to a lot of modifications from such activities.

Fixing Registries

This is why some companies have developed registry checkers and cleaners such as Registry Mechanic, to be able to determine the modifications and problems that have affected certain areas of the computer. Among the known issues would be improper deletion of shortcuts or programs without using the add/remove option on the control panel of the Windows operating system. This alone leaves a conflict that makes computers adjust to such occurrences.

Another thing is that of cookies gathered from the web. While cookies are stored in the temporary IE folder of a computer, some may tend to change some configurations on the machine and thus slow it down.

Registry cleaners are not guaranteed to speed up a computer speed at an instant. A user must also thoroughly evaluate if such modifications are okay for removal. A wrong decision may eventually make things worse, hence if a person is unsure, consulting computer experts or even the web for advice prior to action would be advisable.

Tags: , , , ,

Categories: Malware, Operating Systems, Programming, Spyware, Tips

Comments Off

The Bearing of an Internet Gateway’s Malfunction or Breakdown

Written by Saran on January 4, 2007

Broken Chain in the Web

A lot of people have probably heard about now about the earthquake that hit Taiwan during the holiday break. While the natural disaster caused a lot of discomfort to the Taiwanese community, the world has suffered as well in terms of Internet connection speed.

Taiwan is among the chains or gateways to which the Internet also passes through. Similar to that of a hose that allows water to pass through from one point to another; one hole in it will lower the pressure of the amount of water that should be traveling. In the same way, the underground cables to which help transmit Internet connections from one point to another were damaged and thus today, many are experiencing lousy connection speeds. This has thoroughly disrupted the flow of operations, becoming a discomfort that has left surfers and professionals totally helpless.

Natural disasters are hard to predict. The best that technology personnel can do is come up with better cable durability, but this is no promise for disruptions as we are experiencing today. Among the millions that have been damaged by this untimely event, technology based companies and organizations are surely suffering the most for the gapping whole in the entire connection the web provides.

[tags]internet, gateway, connection, fiber optic, cabling[/tags]

Tags: , , , , , , , , , ,

Categories: Network Security, News, Operating Systems, Physical Security, Real-World Issues, Wireless Security

Comments Off

Scheduling Software Patch Updates and Upgrades

Written by Saran on January 4, 2007

Computer Programmer

Most software tools that are used today are not perfect. Weaknesses and loopholes that may encounter system operation conflicts and problems will only be natural, especially for programs that are either not immediately compatible or are prone to breakdowns every now and then. The need for a continuous development as far as applying patches and updates towards such software, such as programming languages and operating systems like Windows and Linux, is a necessity.

This is only normal considering that chinks in the armor of anything will always be revealed at times when people least expect it. This is a continuing and ongoing trend that all software developers and administrators need to attend to, considering that as the height of demand for accurate programs are increasing, the same holds true for the need to provide features and flexibility on the programming aspect of installed systems for smooth flow of automations in most business organizations and entrepreneurial undertakings.

[tags]programmer, patch updates, systems, operating system, windows, linux [/tags]

Tags: , , , , , , , , , , ,

Categories: IT Security Basics, Operating Systems, Programming, Security Policies, Storage, Tips

Comments Off

The Deal with Linux and Windows Operating Systems

Written by Saran on January 2, 2007

Operatings Systems Layout

A lot of workstations and servers will always have the choice of selecting which operating system to used. Without question, Microsoft’s Windows Server Operating Systems is the first thing in mind to be used although Linux has had its share of being the best alternative operating system today.

The deal here would be efficiency and reliability. This is just the backend of most systems and the choice for which operating system to use would all depend on the programming language and database compatibility with regards to OS preference.

There has been a number of programming softwares that are developed and used today. For each one, like Sybase and Visual Basic, software developing companies have gone to the extent of even making special compatibility towards preferred OS of end-users. This serves as a basis for comparison in determining on which platform that preferred programming software would be entirely performing better. This allows flexibility for users and a wider array of possibilities for systems administrators and developers who compile useful executable programs today.

Tags: , , ,

Categories: Operating Systems, Privacy & Anonymity, Programming, Tips

Comments Off