Sponsored White Papers, Webcasts, and Downloads
ZDNet Resources
- Hacker finds 492,000 unprotected Oracle, SQL database servers
- Hacker finds 492,000 unprotected Oracle, SQL database serversAnd yet...People shake together databases and other stuff all the time because [i]"it is so easy to do, and the wizards are so helpful."[/i] Welcome to the world of [i]"it's so easy an American can do it."[/i]Now I will run for cover :PI...
- Tags: PRODUCTIVITY, Servers, Web browsers, administrative privilege, server, Oracle Corp., Microsoft Corp., database server
- Discussion threads 2007-11-14
- Vista standard users need way to install software
- Microsoft Windows Vista will be the first Windows operating system to only assign standard user privileges by default. While that's wonderful for security, it will likely run in to serious practical issues for many users who need to be able to install their own software from time to time....
- Tags: standard user, software
- Blog posts 2006-06-12
- A fresh look at Vista's User Account Control
- A fresh look at Vista's User Account ControlExcellent articleLooking for more reading on this topic.Nice irony hereSo, in other words, Windows's history of running with no security provisions has the following consequences:1. Old, and even many current, applications do things in a stupid fashion so that they have to be...
- Tags: Microsoft Windows Vista (Longhorn), Operating systems, password, administrative privilege, UAC, security, Microsoft Windows Vista, Microsoft Windows
- Discussion threads 2006-05-04
- Viral movies possible with RealPlayer flaw
- Viral movies possible with RealPlayer flawLuckily for Linux, it will be user-level access only..But a flawed Operating System like Windows will let a program run with administrative privileges..Real Player bug... yes...Maximum damage running a flawed operating system.. only Windows..!has anyone trusted real after they installed spywareon you system like commet...
- Tags: Operating systems, UNIX, OPEN SOURCE, Digital media, Digital music, Linux, Microsoft Windows, flaw, administrative privilege, RealNetworks RealPlayer, Viral movy
- Discussion threads 2004-10-01
- Microsoft finds more 'critical' flaws in Windows
- Microsoft finds more 'critical' flaws in WindowsMicrosoft trapped in the hole they dug themselves[i]"Microsoft said that [b]if a user is logged on with administrative privileges[/b], an attacker who successfully exploited this vulnerability could take complete control of an affected system, including installing programs, deleting data, or creating new accounts with...
- Tags: SECURITY, Microsoft Windows, Microsoft Corp., administrative privilege, vulnerability, attacker, affected system
- Discussion threads 2004-07-13
Additional Resources
- Root Access Risk Control for the Enterprise
- Compliance efforts and security concerns have driven businesses to make substantial investments in threat control. Too often, however, these efforts pay far too little heed to the risks posed by poorly controlled access to administrative privilege in IT, which can have a hugely disproportionate impact on the business. In...
- Tags: Microsoft Access, Enterprise, BeyondTrust, Security, Strategy, Management
- White papers 2009-10-14
- Deconstructing United Airlines: Where Customers are Transactions
- United Airlines: Customers are Merely Transactions If you're a loyalty marketer and look at my United profile, you find something that would make you 4.5 on a scale of 5.0 when it comes to warm and fuzzy.  You'd see hundreds of thousands of United Airlines frequent flier FF miles;...
- Tags: Customers Ltd., Mile, Customer, United Corp., United Airlines, Corporate Communications, Workforce Management, Training And Certification, Marketing, Human Resources, Paul Greenberg
- Blog posts 2009-08-20
- Attackers pounce on Microsoft PowerPoint zero-day
- Attackers pounce on Microsoft PowerPoint zero-dayVulnerability patch cycle unacceptableMS would be better spending the $600M advertising (See Mary's blog) waste of money on strengthening the threat response team as several months for an already exploited hole is insane and does not do their reputation any favours.Eg: For Excel 2000...
- Tags: SECURITY, Microsoft Corp., Microsoft Office, MOICE, Microsoft PowerPoint, user right
- Discussion threads 2009-04-03
- Report: 92% of critical Microsoft vulnerabilities mitigated by Least Privilege accounts
- Report: 92% of critical Microsoft vulnerabilities mitigated by Least Privilege accountsRe:using pirated windowsThere is no reason that pirated versions of windows should be more vulnerable than genuine ones, this statistic only shows the lack of knowledge and common sense that the people using pirated windows have, since they don't seem...
- Tags: Least Privilege account, standard user, Least Privilege, UAC, critical Microsoft vulnerability, Microsoft Vulnerabilities, standard User Account, Microsoft Corp., Microsoft Windows
- Discussion threads 2009-02-10
- Cisco warning: Serious flaws in Wireless LAN controllers
- Routing and switching giant Cisco has released an alert to warn of multiple security flaws in some of its Wireless LAN controllers. The company documented at least four vulnerabilities that could lead to denial-of-service or privilege escalation attacks. Affected product lines include Cisco Wireless LAN Controllers ...
- Tags: Cisco Systems Inc., Flaw, IP, LANs, Networking, Ryan Naraine, Security, Wi-Fi, Wireless, Wireless And Mobility, Wireless LANs, WLAN
- Blog posts 2009-02-04
- 'Extremely severe' vulnerabilities in Opera browser
- 'Extremely severe' vulnerabilities in Opera browserNow I could have sworn......that on the thread listing FF as insecure that someone said FF had been exposed and Opera was the real secure browser lol.Just shows that even the supposedly most secure browser has flawsBrowsers, by dint of their job, interact with insecure...
- Tags: browser version, Mozilla Firefox, Opera browser, Opera Software ASA, vulnerability, Web browser
- Discussion threads 2008-12-16
- MS Patch Tuesday whopper: 28 vulnerabilities in Windows, IE, Office
- Microsoft today dropped a monster Patch Tuesday release with fixes for at least 28 vulnerabilities affecting Windows, Office, Internet Explorer, Visual Basic Active Controls and Windows Media Player. Of the 28 flaws, 23 carry a "critical" rating, meaning they could be used to launch remote code execution...
- Tags: Microsoft Office, Vulnerability, Microsoft Windows, Microsoft Internet Explorer, Microsoft Corp., Security, Ryan Naraine
- Blog posts 2008-12-09
- Microsoft: Third party apps killing our security
- Microsoft: Third party apps killing our securityI use Youtube oftenand what they did is good. I really disliked the whole real player thing as well.It was a horrid thing. Aside from which platform it was run on.Tell That To Some Web SeminarsI had to attend one last week, one of...
- Tags: Operating systems, Microsoft Windows Vista (Longhorn), Digital media, Digital music, Construction, Microsoft Corp., Microsoft Windows, RealNetworks RealPlayer, Microsoft Windows Vista, security
- Discussion threads 2008-11-03
- From Trust to Process: Closing the Risk Gap in Privileged Access Control
- High-privilege administrative accounts hold the keys to gain access to the most sensitive IT processes and proprietary data--yet this level of access is far too often based on little more than trust alone. In this whitepaper, Enterprise Management Associates EMA examines this critical issue in IT security administration to...
- Tags: Symark Software, Information Technology, Access Control, Strategy, Security, Management
- White papers 2008-11-01
- How to read your FBI file
- As part of the occasional series Life in post-Constitutional America I'm pleased to offer a brief primer on How to read your FBI file. It isn't as easy as you'd think, since the FBI has failed several times to create a modern data management system - which may not be...
- Tags: FBI, File, Mistakes, Federal Government, Government, Data Management, Robin Harris
- Blog posts 2008-10-01
- DoS vulnerability hits Google's Chrome, crashes with all tabs
- DoS vulnerability hits Google's Chrome, crashes with all tabsChrome will have security problems, and they will NOT all of a sudden gainshare. That said, the Google brand is very powerful, and people use it every day to search, and there will be lest resistance to trying Chrome than there was...
- Tags: Web browsers, SECURITY, Google Chrome, Chrome, DoS vulnerability, Google Inc., DOS, vulnerability
- Discussion threads 2008-09-03
- Intel ships BIOS fix for Rutkowska's Black Hat flaw
- Intel has shipped a BIOS update with a fix for a privilege escalation vulnerability that was used by rootkit researcher Joanna Rutkowska to bluepill the Xen hypervisor. The vulnerability was discussed by Rutkowska at the Black Hat briefings earlier this month but details on the exploit were...
- Tags: Black Hat, Hypervisor, Motherboard, BIOS Update, Intel Corp., Flaw, System Management Mode, Level Privilege, BIOS, Virtualization, Hardware, Components, Ryan Naraine
- Blog posts 2008-08-27
- Linux under attack: Compromised SSH keys lead to rootkit
- Linux under attack: Compromised SSH keys lead to rootkitLinux under attack: Compromised SSH keys lead to rootkitLOL! And the hits to linux just keep coming! So thats 4 different incidents within a week's time of how badly linux sucks. Poor linus must be hiding under his bed trying...
- Tags: Operating systems, UNIX, Rootkits, OPEN SOURCE, Linux, SSH, attack, Compromised SSH, Compromised, Microsoft Windows, rootkit, security
- Discussion threads 2008-08-26
- Windows security rendered useless? Uh, not exactly
- Windows security rendered useless? Uh, not exactlyOh no!!Another Bott post!!!! I glad there is no more nonsense comparison between two different things.Um, Ed ...... I know you read the paper because I sent you the PDF, but it seems you failed to notice a few things.You accuse me of "alarming...
- Tags: Web browsers, Defense-in-Depth, exploitation, Microsoft Windows, memory corruption vulnerability, Web browser, security
- Discussion threads 2008-08-11
- 2008 Pwnie Award nominees announced
- 2008 Pwnie Award nominees announcedNot bad butI have to give Lamest Vendor Response to Apple for the Safari carpet bomb flaw.Ok, Nate, so here's a solution to your QuickTime problemDon't run your browser with administrative credentials... yeah, yeah you're going to counter with something that is probably mostly FUD based....
- Tags: Digital music, SECURITY, Operating systems, Nate, Pwnie Award
- Discussion threads 2008-07-21
- << Previous
- page 1 of 1
- Next >>
White Papers and Webcasts