BeyondTrust

Security in Context: The BeyondTrust Blog

Welcome to Security in Context

Bringing you news and commentary on solutions and strategies for protecting critical IT infrastructure in the context of your business.

Media RoundUp | Patch Tuesday June 2012

Posted June 14, 2012    Sarah Lieber

The June 2012 installment of Patch Tuesday was easily one of the most active of the year so far, in terms industry commentary and predictions, driven by the more than two-dozen security vulnerabilities across several of Microsoft’s products. As I’m sure many of you are still catching up on the news, for your convenience I’ve included some of the more insightful coverage from this month’s Patch Tuesday below.

I also encourage you to join us on a monthly basis for our Vulnerability Expert Forum (VEF) where we discuss in detail, that month’s Patch Tuesday and cover other relevant news and events surrounding the security landscape.

You can sign up for July’s VEF here.

PC Magazine | Patch Tuesday: Microsoft Updates IE, RDP, Certificate Tool
By: Fahmida Y. Rashid

“While any RDP vulnerability rated as “exploit code likely” by Microsoft should be taken very seriously, there is still more of a chance that the average IT environment will continue to be hit by drive-by client application style exploits,” said Marc Maiffret, CTO at BeyondTrust.

Read Entire Article

ComputerWorld | Microsoft scrambles as it patches 26 bugs, warns users of active attacks
By: Gregg Keizer

Another expert, Marc Maiffret, chief technology officer at BeyondTrust, chided Microsoft for the constant patching of the same bug.

“Here we are seven months after the original Duqu fix for TrueType font parsing and this same code reuse bug has reared its ugly head [again],” said Maiffret in an email.

Read Entire Article


ZDNet | Patch Tuesday: Microsoft raises alert for dangerous IE, Windows flaws

By: Ryan Naraine

According to Marc Maiffret, CTO at BeyondTrust, the Internet Explorer and RDP issues present the “more immediate

“Given the value of Remote Code Execution on RDP there will surely be a lot of folks trying to weaponize that vulnerability. Only time will tell if people are successful with this RDP flaw where they were not with the one in March,” Maiffret added.

Windows users and administrators will also want to treat the MS12-038 bulletin with the highest possible priority.

Read Entire Article


eWeek | Microsoft Patch Tuesday Release Fixes Flaws in Internet Explorer, Windows

By: Brian Prince

The MS12-037 bulletin, which contains 13 security fixes for Internet Explorer, is being regarded by Microsoft and some security researchers as one of the most important to deploy immediately. One of the vulnerabilities it fixes, CVE-2012-1875, is already being used in limited attacks in the wild. The bulletin also fixes CVE-2012-1876, which was used by VUPEN Security during the PWN2OWN contest held early this year at CanSecWest.

“This is probably one of the most severe bulletins because exploit code is likely to be created for one or more of these vulnerabilities, which leads to the potential for drive-by malware attacks across all versions of Internet Explorer,” said Marc Maiffret, CTO at BeyondTrust. “This, in our opinion, is one of the more important sets of patches to roll out as soon as possible.”

Read Entire Article

 

 

Tags:
, , , ,

Leave a Reply

Additional articles

How To Implement The Australian Signals Directorate’s Top 4 Strategies

Posted October 20, 2014    Morey Haber

The Australian Signals Directorate (ASD), also known as the Defence Signals Directorate, has developed a list of strategies to mitigate targeted cyber intrusions. The recommended strategies were developed through ASD’s extensive experience in operational cyber security, including responding to serious security intrusions and performing vulnerability assessments and penetration testing for Australian government agencies. These recommendations…

Tags:
, , , ,
asp-mvc

Exploiting MS14-059 because sometimes XSS is fun, sometimes…

Posted October 17, 2014    BeyondTrust Research Team

This October, Microsoft has provided a security update for System.Web.Mvc.dll which addresses a ‘Security Feature Bypass’. The vulnerability itself is in ASP.NET MVC technology and given its wide adoption we thought we would take a closer look. Referring to the bulletin we can glean a few useful pieces of information: “A cross-site scripting (XSS) vulnerability exists…

Tags:
4bestpracticesaudits-blog

Four Best Practices for Passing Privileged Account Audits

Posted October 16, 2014    Chris Burd

Like most IT organizations, your team may periodically face the “dreaded” task of being audited. Your process for delegating privileged access to desktops, servers, and infrastructure devices is a massive target for the auditor’s microscope. An audit’s findings can have significant implications on technology and business strategy, so it’s critical to make sure you’re prepared…

Tags:
, , , ,