BeyondTrust

Security in Context: The BeyondTrust Blog

Welcome to Security in Context

Bringing you news and commentary on solutions and strategies for protecting critical IT infrastructure in the context of your business.

Microsoft Revises MS10-025 – Says “Please Stand By”

Posted April 22, 2010    Chris Silva

Yesterday, Microsoft released a major revision to MS10-025 (Vulnerability in Microsoft Windows Media Services Could Allow Remote Code Execution).

While Microsoft revises security bulletins frequently, rarely do you see a major revision within a week of the original release.

The reason for this revision is that “the original security update did not protect systems from the vulnerability described in this bulletin.” As of this writing, Microsoft has pulled down the patch for MS10-025 (KB980858) and requested customers follow one of the following mitigation steps:

– Stop and disable Windows Media Unicast Service
– Uninstall the Windows Media Services component using Windows Component Wizard

This vulnerability only affects Windows 2000 Servers that have Windows Media Services running. As such its attack surface should be fairly small.

According to MSRC, Microsoft plans to re-release MS10-025 sometime next week with the proper fix in place.

Leave a Reply

Additional articles

Cavalancia-Headshot - Medium

Making Windows Endpoints the Least of your Worries

Posted September 2, 2015    Nick Cavalancia

We’re all concerned that someday an external hacker will try to gain access to your company’s critical data and systems. The problem? Your endpoints – both your workstations and servers – bypass (and often leave) the safety and security of your environment daily.

Tags:
, ,
powerbroker-difference-2

Why Customers Choose PowerBroker: Low Total Cost of Ownership

Posted September 2, 2015    Scott Lang

In a survey of more than 100 customers, those customers indicated that BeyondTrust’s low powerbroker-difference-2total cost of ownership was a competitive differentiator versus other options in the privileged account management market.

Tags:
, , ,
Larry-Brock-CISO

Passwords: A Hacker’s Best Friend

Posted September 1, 2015    Larry Brock

After all the years of talk about biometrics and multi-factor authentication, we still have passwords and will likely have them for a long time. Because many “high risk” systems require complex passwords (zk7&@1c6), most people that use them believe their passwords are secure. But they aren’t.

Tags:
, ,