TechNet
Products
IT Resources
Downloads
Training
Support
Products
Windows
Windows Server
System Center
Internet Explorer
Office
Office 365
Exchange Server
SQL Server
SharePoint Products
Lync
See all products »
Resources
Curah! curation service
Evaluation Center
Learning Resources
Microsoft Tech Companion App
Microsoft Technical Communities
Microsoft Virtual Academy
Script Center
Server and Tools Blogs
TechNet Blogs
TechNet Flash Newsletter
TechNet Gallery
TechNet Library
TechNet Magazine
TechNet Subscriptions
TechNet Video
TechNet Wiki
Windows Sysinternals
Virtual Labs
Solutions
Networking
Cloud and Datacenter
Security
Virtualization
Updates
Service Packs
Security Bulletins
Microsoft Update
Trials
Windows Server 2012 R2
System Center 2012 R2
Microsoft SQL Server 2012 SP1
Windows 8.1 Enterprise
See all trials »
Related Sites
Microsoft Download Center
TechNet Evaluation Center
Drivers
Windows Sysinternals
TechNet Gallery
Training
Training Catalog
Class Locator
Microsoft Virtual Academy
Free Windows Server 2012 courses
Free Windows 8 courses
SQL Server training
e-Learning overview
Certifications
Certification overview
MCSA: Windows 8
Windows Server Certification (MCSE)
Private Cloud Certification (MCSE)
SQL Server Certification (MCSE)
Other resources
TechNet Events
Second shot for certification
Born To Learn blog
Find technical communities in your area
Support options
For small and midsize businesses
For enterprises
For developers
For IT professionals
From partners
For technical support
Support offerings
For home users
More support
Microsoft Premier Online
Microsoft Fix It Center
TechNet Forums
MSDN Forums
Security Bulletins & Advisories
International support solutions
Log a support ticket
Not an IT pro?
Microsoft Customer Support
Microsoft Community Forums
Sign in
Microsoft Switzerland Security Blog
Security informations brought to you by the Swiss Security Team.
Options
About
RSS for posts
Atom
RSS for comments
OK
Search Blogs
Tags
Antimalware
Backup
Cloud
Consumer
Developer
email
Enterprise
Forensic
Fun
Guidance
Identity and Access Management
IE
Law Enforcment
Network
Office
OS
PKI
Policy
SQL
Strategy
Survey
trends
Virtualization
WiFi
Windows
Archive
Archives
May 2011
(1)
March 2011
(1)
January 2011
(2)
September 2010
(4)
August 2010
(2)
July 2010
(6)
June 2010
(4)
April 2010
(3)
March 2010
(15)
February 2010
(8)
December 2009
(1)
November 2009
(9)
October 2009
(1)
September 2009
(13)
July 2009
(2)
May 2009
(1)
March 2009
(3)
February 2009
(2)
January 2009
(3)
December 2008
(5)
November 2008
(1)
October 2008
(6)
September 2008
(1)
August 2008
(3)
July 2008
(2)
June 2008
(8)
May 2008
(18)
April 2008
(26)
March 2008
(24)
February 2008
(24)
January 2008
(12)
December 2007
(37)
November 2007
(27)
October 2007
(13)
September 2007
(6)
August 2007
(7)
July 2007
(10)
June 2007
(27)
May 2007
(2)
April 2007
(9)
March 2007
(10)
February 2007
(8)
January 2007
(11)
December 2006
(14)
November 2006
(9)
October 2006
(15)
September 2006
(7)
August 2006
(10)
July 2006
(8)
June 2006
(17)
May 2006
(18)
April 2006
(12)
March 2006
(13)
February 2006
(14)
January 2006
(12)
December 2005
(20)
November 2005
(13)
October 2005
(17)
September 2005
(21)
August 2005
(24)
July 2005
(25)
November, 2007
TechNet Blogs
»
Microsoft Switzerland Security Blog
»
November, 2007
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
German Proposal Gives A New Perspective On 'Spyware'
Posted
over 7 years ago
by
Microsoft Swiss Security Team
A VoIP expert has unveiled new proof-of-concept software that allows an attacker to monitor other peoples' VoIP calls and record them for later review. Unencrypted VoIP really isn't very secure; if you have access to the raw network traffic of a call...
Zero Days: How to protect yourself
Posted
over 7 years ago
by
Microsoft Swiss Security Team
The SANS Institute released its top 20 security risks for 2007, which documents the security arms race between cyber criminals and the folks playing defense. But let’s focus on the big scourge–zero day attacks: http://blogs.zdnet.com/security/?p=691 ...
Buffer Overflows Are Top Threat, Report Says
Posted
over 7 years ago
by
Microsoft Swiss Security Team
Research data says buffer overflow bugs outnumber Web app vulnerabilities, and some severe Microsoft bugs are on the decline. "And in case you were wondering, Microsoft's aggressive initiative to shore up its product security appears to be paying off...
Group Policy related changes in Windows Server 2008
Posted
over 7 years ago
by
Microsoft Swiss Security Team
WindowsSecurity.com article from Jakob H. Heidelberg on GPO stuff in Windows Server 2008: http://www.windowsecurity.com/articles/Group-Policy-related-changes-Windows-Server-2008-Part1.html http://www.windowsecurity.com/articles/Group-Policy-related...
Researchers warn of AV software risks
Posted
over 7 years ago
by
Microsoft Swiss Security Team
2
Comments
...and why also the development of an AV solution needs to go through a Security Development Lifecycle (SDL)! The vulnerabilities in antivirus software make the programs as much a threat, as a help, to corporate network security: http://www.securityfocus...
Yankee Group Study and People, Process and Technology
Posted
over 7 years ago
by
Microsoft Swiss Security Team
Roger has posted a very good article based on the Yankee group report. I especially like hes linking to existing (or almost existing) technology. I know, it's a bit long, but worthwile to read every word! ;-) http://blogs.technet.com/rhalbheer/archive...
Visual Studio 2008 and .NET Framework 3.5 released to manufacturing (RTM)
Posted
over 7 years ago
by
Microsoft Swiss Security Team
7
Comments
November 19 – Visual Studio 2008 and .NET Framework 3.5 RTM (Developer, Connected Systems Division) Microsoft made its flagship development tool, Visual Studio 2008, available for download to its developer subscribers. The release also includes technology...
Microsoft Windows OneCare 2.0 released
Posted
over 7 years ago
by
Microsoft Swiss Security Team
Many people don’t have the time or technical expertise to keep up on PC management and protection. Today Microsoft released the next version of Windows Live OneCare, which provides all-in-one, self-updating PC Care designed to help consumers and small...
Unpatched database servers on the Internet
Posted
over 7 years ago
by
Microsoft Swiss Security Team
3
Comments
In his most recent publication (“The Database Exposure Survey 2007 ”, November 12, 2007) , David Litchfield conducted a survey on how many database servers exist on the internet and are listening on their default TCP ports and are not protected by a firewall...
Microsoft PowerShell Security
Posted
over 7 years ago
by
Microsoft Swiss Security Team
1
Comment
Derek Melber on MicrosoftWindows Powershell: "If you have not heard of PowerShell you must be living under a rock. If you have heard about PowerShell, then you must have been wondering how and if PowerShell is secure. I saw PowerShell for the first...
Expect more PKI in 2008
Posted
over 7 years ago
by
Microsoft Swiss Security Team
"It really is difficult to imagine a "year of PKI" because PKI isn't your typical technology trend. PKI isn't a standalone security widget, it is a complex infrastructure that must be integrated into existing applications and business processes. Once...
2007 Microsoft Office Security Guide released
Posted
over 7 years ago
by
Microsoft Swiss Security Team
2
Comments
The 2007 Microsoft Office Security Guide provides IT professionals with best practices and automated tools to help strengthen the security of computers that run either Windows Vista or Windows XP SP2 and the following applications: Microsoft Office...
The World's Biggest Botnets
Posted
over 7 years ago
by
Microsoft Swiss Security Team
"You know about the Storm Trojan, which is spread by the world's largest botnet. But what you may not know is there's now a new peer-to-peer based botnet emerging that could blow Storm away..." http://www.darkreading.com/document.asp?doc_id=138610&WT...
Proactively Managing Security Risk
Posted
over 7 years ago
by
Microsoft Swiss Security Team
"The information technology revolution has changed the way business is transacted, governments operate, and national defense is conducted. Protection of these systems is essential and continuous efforts to protect them have resulted in exponential growth...
Protect Public Computers with Windows SteadyState
Posted
over 7 years ago
by
Microsoft Swiss Security Team
Whether you manage computers in a school computer lab or an Internet cafe, a library, or even in your home, Windows SteadyState helps make it easy for you to keep your computers running the way you want them to, no matter who uses them. Windows SteadyState...
Controlling Resource Permissions 101
Posted
over 7 years ago
by
Microsoft Swiss Security Team
"Everyone knows that it is important to lock down the resources on the network. The resources that need to be locked down include folders and the files that are contained in them, as well as some Registry keys that are located on servers and workstations...
Microsoft Malware Removal Starter Kit (MRST)
Posted
over 7 years ago
by
Microsoft Swiss Security Team
I just had to create a bootable CD/DVD to offline clean a PC of a friend of mine. So I installed and used the Microsoft Malware Removal Starter Kit: Based on the Windows Preinstallation Environment (Windows PE) kit, great collection for creating a...
Security Market Trends for 2007
Posted
over 7 years ago
by
Microsoft Swiss Security Team
A little late for changing the strategy for 2007, but I don't think that the hot topics for 2008 are so dfferent. ;-) http://www.windowsecurity.com/articles/Security-Market-Trends-2007.html Urs
The top 10 reasons why websites get hacked
Posted
over 7 years ago
by
Microsoft Swiss Security Team
Just found the following list on the internet: 1. Cross site scripting (XSS) 2. Injection flaws 3. Malicious file execution 4. Insecure direct object reference 5. Cross site request forgery 6. Information leakage and improper error handling 7. Broken...
Common Vulnerability Scoring System (CVSS) Explained
Posted
over 7 years ago
by
Microsoft Swiss Security Team
1
Comment
The Common Vulnerability Scoring System, or CVSS for short, is the first and only open framework for scoring the risk associated with vulnerabilities. CVSS is designed to rank information system vulnerabilities and provide an end user with a composite...
IBM Places $1.5B Bet on Security Push
Posted
over 7 years ago
by
Microsoft Swiss Security Team
I'm tempted to say: Interesting! ;-) http://www.technewsworld.com/story/60111.html Urs
The Increasing Complexity of the New Spyware Landscape
Posted
over 7 years ago
by
Microsoft Swiss Security Team
The ubiquity of computers, particularly home computers, has led owners to treat them like refrigerators or toasters -- plugging them in, adjusting some initial settings, and using them until they break or until a different set of features is desired....
Singing SPAM
Posted
over 7 years ago
by
Microsoft Swiss Security Team
Sounds like a funny idea, but no surprise that the spamming-industry is searching for new ways to "influence people! Security firm MessageLabs today reports that it has spotted a massive run of spam sent out in the form of MP3 files and masquerading...
Attack code out in the wild for critical Kodak bug in Windows
Posted
over 7 years ago
by
Microsoft Swiss Security Team
1
Comment
A hacker has released attack code that could be used to exploit a critical bug in some versions of the Windows operating system. Microsoft Windows Vista is not affected. The vulnerability has been patched in the October patch cycle: Microsoft Security...
Malicious Software Is the Real Pandemic
Posted
over 7 years ago
by
Microsoft Swiss Security Team
Interesting post summarizing the Security Intelligence Report (SIR). I definitely like the "Microsoft found that machines running Vista and Windows XP SP2 had "significantly" lower infection rates than older Windows operating systems." ;-) http://www...
>