Loading...

Daily news and top headlines for electronic OEM design professionals

FREE Email Newsletter View Sample

MIcrosoft Sends Out Alert on New Security Hole

Must-read news, features and analysis for electronic OEM design pros - Sign up now!

Share:

E-mail:

Print:

Bookmark:

RSS:

[-] Text [+]

Featured In: Topics & Features | Industry News

JORDAN ROBERTSON | Tuesday, July 7, 2009

Double-click any word to search

Highlight any phrase & click HotSearch

Loading...

SAN JOSE, Calif. (AP)  - Microsoft Corp. has taken the rare step of warning about a serious computer security vulnerability it hasn't fixed yet.

The vulnerability disclosed Monday affects Internet Explorer users whose computers run the Windows XP or Windows Server 2003 operating software.

It can allow hackers to remotely take control of victims' machines. The victims don't need to do anything to get infected except visit a Web site that's been hacked.

Security experts say criminals have been attacking the vulnerability for nearly a week. Thousands of sites have been hacked to serve up malicious software that exploits the vulnerability. People are drawn to these sites by clicking a link in spam e-mail.

The so-called "zero day" vulnerability disclosed by Microsoft affects a part of its software used to play video. The problem arises from the way the software interacts with Internet Explorer, which opens a hole for hackers to tunnel into.

Microsoft urged vulnerable users to disable the problematic part of its software, which can be done from Microsoft's Web site, while the company works on a "patch" — or software fix — for the problem.

Microsoft rarely departs from its practice of issuing security updates the second Tuesday of each month. When the Redmond, Wash.-based company does issue security reminders at other times, it's because the vulnerabilities are very serious.

A recent example was the emergency patch Microsoft issued in October for a vulnerability that criminals exploited to infect millions of PCs with the Conficker worm. While initially feared as an all-powerful doomsday device, that network of infected machines was eventually used for mundane moneymaking schemes like sending spam and pushing fake antivirus software.

___

On the Net:

Microsoft support page: http://support.microsoft.com/kb/972890#FixItForMe

Most Popular Today on ECNmag.com:

Dungeons and Dragons Dice Gauntlet
Dungeons and Dragons Dice Gauntlet

Feb 3

The D&D bracer is a fairly quick, fun, nerdy LilyPad project. The final product is a wearable bracer with a display that will randomly generate numbers between 1 and 4, 6, 8, 10, 12, 20, or 100 in response to arm movement, so it can effectively replace all of the dice in your bag for a D&D session.

Sustainable?
Sustainable?

Feb 2

I'd like some genius to define sustainable. Could we count something that we can keep doing for 100 billion years - beyond the death of the Universe as we currently understand such things - as sustainable? How about a billion years?

TopicStarterLast Post
Digital watch voice recorderEdipo FerrariOct 1
HolidaysJason LombergMar 3
iPhone OwnerJason LombergNov 17
Video Game ViolenceJason LombergJan 6
Global Warming/Climate ChangeJason LombergAug 11
3D TechJason LombergNov 17
Medical ElectronicsJason LombergNov 17
The Incandescent BanJason LombergNov 17
Video of the Day


Free Electronic OEM Design
Industry Subscriptions

Magazine

ECN magazine

Newsletters

newsletters

Sign up now


Archived Issues

Top Stories and Headlines
EVERY DAY!

FREE Email Newsletter