Old vulnerabilities die hard: researchers uncover 20-year-old code in Windows Print Spooler

Every Microsoft Windows operating system has a file that manages commands to print documents. It is ubiquitous to the point of going unnoticed. But when researchers from security firm SafeBreach took a closer look at the file, which is called a Print Spooler Service, they noticed that some of the code is two decades old. A denial of service vulnerability the researchers reported earlier this year, which crashes the spooler service, worked not on only Windows 10, the latest operating system, but also on Windows 2000. It’s a glaring example of the old code that is bequeathed to popular software programs we take for granted. But the researchers weren’t done dissecting the spooler service. “We got intrigued, so we continued to dive in,” said Peleg Hadar, senior security researcher at SafeBreach Labs. They found another bug in the spooler service that could allow an attacker to gain system privileges on […]

The post Old vulnerabilities die hard: researchers uncover 20-year-old code in Windows Print Spooler appeared first on CyberScoop.

Continue reading Old vulnerabilities die hard: researchers uncover 20-year-old code in Windows Print Spooler

USENIX Enigma 2020 – David Freeman’s ‘The Abuse Uncertainty Principle, And Other Lessons Learned From Measuring Abuse On The Internet’

Many thanks to USENIX Enigma 2020 for publishing their outstanding USENIX Enigma 2020 Conference Videos. Enjoy!
Permalink
The post USENIX Enigma 2020 – David Freeman’s ‘The Abuse Uncertainty Principle, And Other Lessons Learned From … Continue reading USENIX Enigma 2020 – David Freeman’s ‘The Abuse Uncertainty Principle, And Other Lessons Learned From Measuring Abuse On The Internet’

USENIX Enigma 2020 – Swathi Joshi’s ‘Reservist Model: Distributed Approach To Scaling Incident Response’

Many thanks to USENIX Enigma 2020 for publishing their outstanding USENIX Enigma 2020 Conference Videos. Enjoy!
Permalink
The post USENIX Enigma 2020 – Swathi Joshi’s ‘Reservist Model: Distributed Approach To Scaling Incident Respons… Continue reading USENIX Enigma 2020 – Swathi Joshi’s ‘Reservist Model: Distributed Approach To Scaling Incident Response’

USENIX Enigma 2020 – Birhanu Eshete’s ‘Adventures With Cybercrime Toolkits: Insights For Pragmatic Defense’

Many thanks to USENIX Enigma 2020 for publishing their outstanding USENIX Enigma 2020 Conference Videos. Enjoy!
Permalink
The post USENIX Enigma 2020 – Birhanu Eshete’s ‘Adventures With Cybercrime Toolkits: Insights For Pragmatic Def… Continue reading USENIX Enigma 2020 – Birhanu Eshete’s ‘Adventures With Cybercrime Toolkits: Insights For Pragmatic Defense’

USENIX Enigma 2020 – Mieke Eoyang’s ‘Cybercrime: Getting Beyond Analog Cops And Digital Robbers’

Many thanks to USENIX Enigma 2020 for publishing their outstanding USENIX Enigma 2020 Conference Videos. Enjoy!
Permalink
The post USENIX Enigma 2020 – Mieke Eoyang’s ‘Cybercrime: Getting Beyond Analog Cops And Digital Robbers’… Continue reading USENIX Enigma 2020 – Mieke Eoyang’s ‘Cybercrime: Getting Beyond Analog Cops And Digital Robbers’

USENIX Enigma 2020 – Eva Galperin’s ‘The State Of The Stalkerware’

Many thanks to USENIX Enigma 2020 for publishing their outstanding USENIX Enigma 2020 Conference Videos. Enjoy!
Permalink
The post USENIX Enigma 2020 – Eva Galperin’s ‘The State Of The Stalkerware’ appeared first on Security Bo… Continue reading USENIX Enigma 2020 – Eva Galperin’s ‘The State Of The Stalkerware’

USENIX Enigma 2020 – Laurin B. Weissinger’s ‘Internet Infrastructure Security: A Casualty Of Laissez-Faire And Multistakeholderism?’

Many thanks to USENIX Enigma 2020 for publishing their outstanding USENIX Enigma 2020 Conference Videos. Enjoy!
Permalink
The post USENIX Enigma 2020 – Laurin B. Weissinger’s ‘Internet Infrastructure Security: A Casualty Of Laissez-F… Continue reading USENIX Enigma 2020 – Laurin B. Weissinger’s ‘Internet Infrastructure Security: A Casualty Of Laissez-Faire And Multistakeholderism?’

USENIX Enigma 2020 – Joey Dodds’ ‘Trustworthy Elections’

Many thanks to USENIX Enigma 2020 for publishing their outstanding USENIX Enigma 2020 Conference Videos. Enjoy!
Permalink
The post USENIX Enigma 2020 – Joey Dodds’ ‘Trustworthy Elections’ appeared first on Security Boulevard.
Continue reading USENIX Enigma 2020 – Joey Dodds’ ‘Trustworthy Elections’

USENIX Enigma 2020 – Panel: Renee DiResta, Melanie Ensign and Andrea Limbago (Moderator) ‘Disinformation’

Many thanks to USENIX Enigma 2020 for publishing their outstanding USENIX Enigma 2020 Conference Videos. Enjoy!
Permalink
The post USENIX Enigma 2020 – Panel: Renee DiResta, Melanie Ensign and Andrea Limbago (Moderator) ‘Disinformation&#82… Continue reading USENIX Enigma 2020 – Panel: Renee DiResta, Melanie Ensign and Andrea Limbago (Moderator) ‘Disinformation’

USENIX Enigma 2020 – Jennifer Helsby’s ‘Next-Generation SecureDrop: Protecting Journalists from Malware’

Many thanks to USENIX Enigma 2020 for publishing their outstanding USENIX Enigma 2020 Conference Videos. Enjoy!
Permalink
The post USENIX Enigma 2020 – Jennifer Helsby’s ‘Next-Generation SecureDrop: Protecting Journalists from Malwar… Continue reading USENIX Enigma 2020 – Jennifer Helsby’s ‘Next-Generation SecureDrop: Protecting Journalists from Malware’