Get up-to-the-minute news and opinions, plus access to a wide assortment of IT security resources that will keep you current and informed.

Keep me logged in Forgot your password?

Please wait...

Please wait...

 Patch Management

Apple releases Safari, OS X fixes

May 11, 2012

Apple and Adobe this week released patches for vulnerabilities that could enable attackers to execute malicious code.
 

Microsoft hands out more Duqu fixes despite prior patch

May 08, 2012

Just when you thought all of the windows that control system recon trojan Duqu used to propagate had been roped off, the software giant releases a new set of fixes.
 

Major software flaws in iPhones, iPads fixed in update

May 07, 2012

A difficult-to-find vulnerability, disclosed in March at Google's inaugural hacker competition, was among the iOS fixes.
 

Twenty-three Microsoft fixes set for Patch Tuesday

May 04, 2012

Microsoft on Tuesday plans to dispense seven patches to correct 23 security vulnerabilities.
 

Flash flaw being used to deliver email based attacks

May 04, 2012

Adobe on Friday issued an emergency patch for a critical bug in its Flash Player software that is being used in targeted malware attacks.
 

Chinese firewall maker booted from Microsoft sharing program

May 03, 2012

The leak of details regarding a major Windows bug, which resulted in the removal of DPTech Technologies as a trusted Microsoft partner, calls into question how impervious a vulnerability sharing program can be.
 

Oracle lists workarounds following zero-day disclosure

May 01, 2012

Oracle on Monday urged customers to apply a number of technical measures so organizations can avoid falling victim to a zero-day vulnerability for which proof-of-concept code has been posted.
 

Researcher confused over handling of Oracle database bug

April 26, 2012

A security researcher who reported a vulnerability in the popular Oracle database product said Thursday that his discovery was never patched and remains wide open to attack.
 

Firefox and Opera unveil new security, privacy features

April 26, 2012

Firefox's update includes a new auto-update capability, while Opera's new release contains functionality to prevent the tracking of online users by websites.
 

Third Apple Java update rids infections and turns off Java

April 13, 2012

Apple has released a third update related to Flashback, but this time, the patch comes with a detection and removal capability for the prolific trojan, and disables Java by default.
 

Oracle to issue quarterly patches next week

April 13, 2012

Oracle next week will release 88 new security vulnerability fixes across hundreds of its products.
 

Apple says it is working to shut down Flashback infections

April 11, 2012

The company said it is creating software that will detect and remove Flashback, as well as coordinating with global ISPs to dismantle the botnet's infrastructure.
 

Microsoft patches 11 security issues, attacks underway

April 10, 2012

Administrators better hurry to patch at least one vulnerability, in Windows Common Controls, that is being used in limited but targeted exploits.
 

Microsoft to sew up 11 security vulnerabilities next week

April 05, 2012

Get ready IT administrators: Scheduled patches from Microsoft -- and Adobe -- are set to arrive on Tuesday.
 

Adobe patches Flash, includes automatic update option

March 28, 2012

Adobe on Wednesday released an update for its Flash Player, which includes a capability for users to receive future updates automatically.
 

Exploit for gaping Microsoft RDP hole may have gotten help

March 16, 2012

A proof-of-concept that has emerged and takes advantage of a very serious Windows vulnerability may have been the result of a leak, said the researcher who first discovered the bug.
 

Wormable Microsoft RDP flaw appears closer to exploit

March 15, 2012

The race appears to be on to develop a working exploit for a serious Windows vulnerability patched earlier this week by Microsoft.
 

Flaw in Microsoft tool that enables remote connect is patched

March 13, 2012

A severe vulnerability in the Remote Desktop Protocol, which was patched by Microsoft on Tuesday along with six other bugs, affects all versions of Windows and could result in a worm.
 

Microsoft to patch seven security issues with six bulletins

March 08, 2012

Microsoft next week plans to release six patches, including one for a "critical" vulnerability affecting all supported versions of the software giant's operating system.
 

Adobe Reader attacks continue two years after patch

February 23, 2012

JavaScript-based attacks taking advantage of an Adobe Reader and Acrobat vulnerability patched in 2010 are continuing in waves, Symantec researchers said this week.
 

Oracle patches highly exploited Java for 14 flaws

February 16, 2012

Oracle on Wednesday pushed updates for its Java Standard Edition (SE) to address 14 vulnerabilities
 

Adobe patches Flash because of ongoing attacks

February 15, 2012

A cross-site scripting vulnerability being exploited in the wild has prompted Adobe to issue an update to its Flash Player, a move that may catch security pros off guard.
 

Internet Explorer patch heads Microsoft security update

February 14, 2012

Happy Valentine's Day, IT administrators. Microsoft has showered you with nine security patches to remedy 21 vulnerabilities.
 

Adobe patches Shockwave Player, RoboHelp

February 14, 2012

Adobe on Tuesday released security updates for its multimedia platform Shockwave Player and RoboHelp for Word, a tool used to author content for online help systems.
 

Trojan appears that leverages patched Microsoft Office flaw

February 09, 2012

The exploit, which is being used in targeted attacks, arrives as an email that contains a Microsoft Word file and a separate DLL file, a rare combination considering DLL files are not typically sent over email.
 

Microsoft issues patch plans, includes Internet Explorer fix

February 09, 2012

Tuesday's monthly patch batch from Microsoft will be relatively light, with the software giant planning nine fixes -- four rated "critical" -- to address 21 vulnerabilities.
 

Security vendors can no longer ignore patch management

Scott Hagenus, VP, strategic relationships, GFI Software • February 03, 2012

While AV software derails a lot of potentially harmful attacks, it is only one component of a comprehensive security solution.
 

Adobe patches Reader bugs, releases new JavaScript feature

January 10, 2012

Adobe joined Microsoft with software updates on Tuesday for Reader and Acrobat. In addition, the PDF software company released a new capability that allows JavaScript to run based on document trust.
 

Microsoft issues seven security patches, BEAST fix included

January 10, 2012

While Tuesday's security update only contains one fix for a "critical" issue, it addresses a number of issues that could lead to malware infestations.
 

Adobe to release quarterly updates to address critical bugs

January 06, 2012

Adobe announced Friday that it intends to release its quarterly updates next week.