Telling the difference between firewall block or external problem with Page Cannot be Displayed (IE) [on hold]

In our organization, when users run up against the firewall in Internet Explorer, this is what they see:

The classic IE “Page Cannot Be Displayed”.

Of course, this is also what you see when it’s the external site having … Continue reading Telling the difference between firewall block or external problem with Page Cannot be Displayed (IE) [on hold]

Microsoft plugs 53 security holes in July 2018 Patch Tuesday

For its July 2018 Patch Tuesday, Microsoft has patched 53 vulnerabilities. 17 of them are critical and 16 of those affect Internet Explorer and Edge. Microsoft updates “The 16 CVEs covering browsers should be prioritized for workstation type devi… Continue reading Microsoft plugs 53 security holes in July 2018 Patch Tuesday

July 2018 Patch Tuesday forecast: The fireworks and the finally

Patch management is kind of like fireworks around the fourth of July. Momentary excitement with lulls that repeat several times until the culminate in a finally! Well there are a number of patches that come out a little at a time with a few days betwee… Continue reading July 2018 Patch Tuesday forecast: The fireworks and the finally

The Shared Security Weekly Blaze – Recent Windows Vulnerabilities, Exposed Passwords, Credit Freeze Controversy

This is the Shared Security Weekly Blaze for May 14, 2018 sponsored by Security Perspectives – Your Source for Tailored Security Awareness Training and Assessment Solutions, Silent Pocket and CISOBox.  This episode was hosted … Continue reading The Shared Security Weekly Blaze – Recent Windows Vulnerabilities, Exposed Passwords, Credit Freeze Controversy

Zero-day flaw exploited in targeted attacks is fixed by Microsoft

This month’s Patch Tuesday bundle of updates from Microsoft included a fix for a critical vulnerability that has been actively exploited by at least one hacking gang in targeted attacks.
Read more in my article on the Tripwire State of Security blog.
Continue reading Zero-day flaw exploited in targeted attacks is fixed by Microsoft

Microsoft Patches Two Actively Exploited Zero-Day Vulnerabilities

Microsoft fixed 67 vulnerabilities across its products May 8, including two vulnerabilities that were already being exploited in the wild. The most serious and urgent issue was a remote code execution vulnerability in the Windows VBScript engine track… Continue reading Microsoft Patches Two Actively Exploited Zero-Day Vulnerabilities

Internet Explorer Zero-Day Exploit Reportedly Exploited in Targeted Attacks

Researchers from Chinese internet security firm Qihoo 360 have uncovered a sophisticated targeted attack which, according to them, exploits an unpatched vulnerability in Microsoft’s Internet Explorer browser. The company made the announcement in… Continue reading Internet Explorer Zero-Day Exploit Reportedly Exploited in Targeted Attacks

Microsoft Fixes 66 Bugs in April Patch Tuesday Release

Microsoft’s April Patch Tuesday release includes fixes for 66 bugs, 24 of which are rated critical. Continue reading Microsoft Fixes 66 Bugs in April Patch Tuesday Release