<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Security Blog di Feliciano Intini : 2.1.1 Security Bulletin Risk Analysis</title><link>http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx</link><description>Tags: 2.1.1 Security Bulletin Risk Analysis</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>Security Advisory 956187 sulla vulnerabilità DNS: l'exploit è pubblico, affrettarsi all'aggiornamento!</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/07/28/security-advisory-956187-sulla-vulnerabilit-dns-l-exploit-pubblico-affrettarsi-all-aggiornamento.aspx</link><pubDate>Mon, 28 Jul 2008 08:43:12 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3094690</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>2</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3094690.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3094690</wfw:commentRss><description>La situazione si fa calda: da alcuni giorni abbiamo letto di come siano stati diffusi i dettagli della vulnerabilit&amp;#224; DNS prima di quanto Dan Kamisky avesse in mente di fare. Dai dettagli della vulnerabilit&amp;#224; alla realizzazione di un exploit il...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/07/28/security-advisory-956187-sulla-vulnerabilit-dns-l-exploit-pubblico-affrettarsi-all-aggiornamento.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3094690" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category></item><item><title>Aggiornamenti vari a bollettini e advisory, su MS08-037 (DNS), WSUS, Apple Safari 3.1.2</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/07/11/aggiornamenti-vari-a-bollettini-e-advisory-su-ms08-037-dns-wsus-apple-safari-3-1-2.aspx</link><pubDate>Fri, 11 Jul 2008 10:03:30 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3087278</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>2</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3087278.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3087278</wfw:commentRss><description>Volevo segnalarvi che sono stati effettuati in questi giorni una serie significativa di aggiornamenti alle diverse notifiche di sicurezza, ed &amp;#232; importante che ne siate a conoscenza: se siete interessati ai dettagli e alle evoluzioni delle singole...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/07/11/aggiornamenti-vari-a-bollettini-e-advisory-su-ms08-037-dns-wsus-apple-safari-3-1-2.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3087278" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Apple+Security/default.aspx">Apple Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category></item><item><title>Security Advisory 953635 su Microsoft Word</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/07/09/security-advisory-953635-su-microsoft-word.aspx</link><pubDate>Wed, 09 Jul 2008 13:03:39 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3086148</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3086148.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3086148</wfw:commentRss><description>E' stato pubblicato un nuovo advisory &amp;quot; Microsoft Security Advisory (953635) - Vulnerability in Microsoft Word Could Allow Remote Code Execution &amp;quot; per segnalare la fase di investigazione di una nuova vulnerabilit&amp;#224;, per il momento apparentemente...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/07/09/security-advisory-953635-su-microsoft-word.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3086148" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0-Application+Security/default.aspx">3.0-Application Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.2-Office+Security/default.aspx">3.2-Office Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category></item><item><title>Analisi di rischio sui Bollettini di sicurezza Microsoft - luglio 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/07/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-luglio-2008.aspx</link><pubDate>Wed, 09 Jul 2008 11:53:40 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3086111</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>8</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3086111.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3086111</wfw:commentRss><description>Rieccoci al consueto appuntamento di analisi dei bollettini di sicurezza Microsoft: come gi&amp;#224; anticipato venerd&amp;#236; scorso , questo mese vede l'emissione di 4 bollettini , tutti con rating Important , che risolvono un totale di 9 vulnerabilit&amp;#224;...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/07/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-luglio-2008.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3086111" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0-Application+Security/default.aspx">3.0-Application Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.4-SQL+Security/default.aspx">3.4-SQL Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.7-Exchange+Security/default.aspx">3.7-Exchange Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Security Advisory 955179 sull'ActiveX di "Snapshot Viewer for Microsoft Access"</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/07/08/security-advisory-955179-sull-activex-di-snapshot-viewer-for-microsoft-access.aspx</link><pubDate>Tue, 08 Jul 2008 09:31:40 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3085416</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3085416.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3085416</wfw:commentRss><description>Stanotte &amp;#232; stato emesso il &amp;quot; Microsoft Security Advisory (955179) - Vulnerability in the ActiveX Control for the Snapshot Viewer for Microsoft Access Could Allow Remote Code Execution &amp;quot; per segnalare la conoscenza di alcuni attacchi limitati...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/07/08/security-advisory-955179-sull-activex-di-snapshot-viewer-for-microsoft-access.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3085416" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0-Application+Security/default.aspx">3.0-Application Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.2-Office+Security/default.aspx">3.2-Office Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category></item><item><title>4 bollettini di sicurezza Microsoft in arrivo per luglio 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/07/04/4-bollettini-di-sicurezza-microsoft-in-arrivo-per-luglio-2008.aspx</link><pubDate>Fri, 04 Jul 2008 09:01:34 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3083507</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>3</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3083507.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3083507</wfw:commentRss><description>Approccio per cos&amp;#236; dire... semi-estivo... al rilascio dei bollettini di sicurezza Microsoft previsti per il prossimo 8 luglio: sono attesi solo 4 bollettini e solo con rating Important , come potete osservare dalla tabella di sintesi Maggiori dettagli...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/07/04/4-bollettini-di-sicurezza-microsoft-in-arrivo-per-luglio-2008.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3083507" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.4-SQL+Security/default.aspx">3.4-SQL Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.7-Exchange+Security/default.aspx">3.7-Exchange Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Vulnerabilità critica in Adobe Reader e Acrobat 8.1.2: aggiornateli appena possibile, manualmente...</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/24/vulnerabilit-critica-in-adobe-reader-e-acrobat-8-1-2-aggiornateli-appena-possibile-manualmente.aspx</link><pubDate>Tue, 24 Jun 2008 13:12:49 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3077180</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>10</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3077180.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3077180</wfw:commentRss><description>Sono sempre stato restio ad usare il mio security blog, dichiaratamente focalizzato sulla piattaforma Microsoft, per avvisarvi di vulnerabilit&amp;#224; critiche di altri vendor. Il motivo di fondo &amp;#232; semplice ed &amp;#232; sicuramente chiaro a chi mi legge...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/24/vulnerabilit-critica-in-adobe-reader-e-acrobat-8-1-2-aggiornateli-appena-possibile-manualmente.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3077180" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Adobe+Security/default.aspx">Adobe Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category></item><item><title>Corretto il problema di SCCM 2007... tra un goal e l'altro di Italia-Francia (2-0)</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/18/corretto-il-problema-di-sccm-2007-tra-un-goal-e-l-altro-di-italia-francia-2-0.aspx</link><pubDate>Wed, 18 Jun 2008 09:03:21 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3073352</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3073352.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3073352</wfw:commentRss><description>Mi scuserete se vi avviso solo stamattina dell'avvenuta correzione del problema di System Center Configuration Manager 2007 che impediva la corretta gestione degli aggiornamenti verso i sistemi client SMS 2003 , di cui vi avevo detto nel post precedente...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/18/corretto-il-problema-di-sccm-2007-tra-un-goal-e-l-altro-di-italia-francia-2-0.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3073352" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/5.3.0-SCCM+2007+_2800_DCM_2900_/default.aspx">5.3.0-SCCM 2007 (DCM)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Simpaticone/default.aspx">Simpaticone</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category></item><item><title>Security Advisory 954474 su SCCM 2007, poco security e molto advisory</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/14/security-advisory-954474-su-sccm-2007-poco-security-e-molto-advisory.aspx</link><pubDate>Sat, 14 Jun 2008 18:56:18 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3070998</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>4</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3070998.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3070998</wfw:commentRss><description>E' la prima volta che assisto all'emissione di un Security Advisory, per cos&amp;#236; dire... poco security e molto advisory... :-)... ma apprezzo l'iniziativa, dal momento che esprime un atteggiamento di attenzione e sollecitudine nei confronti delle necessit&amp;#224;...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/14/security-advisory-954474-su-sccm-2007-poco-security-e-molto-advisory.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3070998" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/5.3.0-SCCM+2007+_2800_DCM_2900_/default.aspx">5.3.0-SCCM 2007 (DCM)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category></item><item><title>Analisi di rischio sui Bollettini di sicurezza Microsoft - giugno 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-giugno-2008.aspx</link><pubDate>Fri, 13 Jun 2008 10:30:50 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3070425</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3070425.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3070425</wfw:commentRss><description>Lo so, lo so... vi stavate domandando dove fossi finito e cosa fosse successo di tanto importante da impedirmi di postare la consueta analisi di rischio sui bollettini di sicurezza Microsoft durante la classica notte del secondo marted&amp;#236; del mese....(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-giugno-2008.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3070425" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>7 bollettini di sicurezza Microsoft in arrivo per giugno 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/06/7-bollettini-di-sicurezza-microsoft-in-arrivo-per-giugno-2008.aspx</link><pubDate>Fri, 06 Jun 2008 12:02:36 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3066986</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3066986.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3066986</wfw:commentRss><description>Ecco la puntuale anticipazione sui bollettini di sicurezza Microsoft per il mese di giugno, questa volta tutti dedicati alla famiglia Windows (lo so che vi viene facile una battuta: che il team di Office sia andato in vacanza?... :-)), in particolare...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/06/7-bollettini-di-sicurezza-microsoft-in-arrivo-per-giugno-2008.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3066986" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Security Advisory 953818 correlato al problema "carpet bomb" di Safari</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/03/security-advisory-953818-correlato-al-problema-carpet-bomb-di-safari.aspx</link><pubDate>Tue, 03 Jun 2008 10:56:38 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3065330</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>3</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3065330.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3065330</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Comincio a pensare che i miei colleghi del &lt;a href="http://blogs.technet.com/msrc" target="_blank"&gt;&lt;strong&gt;MSRC&lt;/strong&gt;&lt;/a&gt; in Corp (... noi usiamo dire cos&amp;#236; per riferirci alla Microsoft di Redmond, che &amp;#232; appunto la CORPoration) utilizzino &lt;a href="http://www.microsoft.com/uc/products/oc2007.mspx" target="_blank"&gt;l'Office Communicator&lt;/a&gt; (il nostro instant messenger interno) come rilevatore di presenza per decidere quando pubblicare i security advisory... :-(&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Vabb&amp;#232;... fatto sta che proprio all'inizio di questo weekend lungo per l'Italia, Microsoft ha emesso il &amp;quot;&lt;a href="http://www.microsoft.com/technet/security/advisory/953818.mspx" target="_blank"&gt;Microsoft Security Advisory (953818) - Blended Threat from Combined Attack Using Apple&amp;#8217;s Safari on the Windows Platform&lt;/a&gt;&amp;quot; per segnalare che esiste una possibile minaccia di attacco per gli utenti di Windows (in particolare di tutte le versioni supportate di &lt;strong&gt;Windows XP&lt;/strong&gt; e &lt;strong&gt;Windows Vista&lt;/strong&gt;) che usano il browser &lt;strong&gt;Safari&lt;/strong&gt; di Apple per la navigazione Internet.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Come riporta l'advisory, l'attacco &amp;#232; reso possibile dalla combinazione di due problemi (da qui il nome di &amp;quot;&lt;em&gt;Blended Threat&lt;/em&gt;&amp;quot;), la modalit&amp;#224; con cui Safari gestisce il download di contenuti sul file system e quella con cui Windows gestisce i file eseguibili sul Desktop: questa situazione congiunta permetterebbe di scaricare file sul Desktop di Windows ed eseguirli all'insaputa dell'utente nel suo contesto di sicurezza (quindi con i suoi privilegi - che le &lt;em&gt;best practice&lt;/em&gt; raccomandano essere sempre i pi&amp;#249; limitati possibile...)&lt;/font&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Vi faccio notare che ho scritto &amp;quot;problemi&amp;quot; e non &amp;quot;vulnerabilit&amp;#224;&amp;quot; non a caso: il problema di Safari a cui fa riferimento questo advisory &amp;#232; quello denominato &amp;quot;&lt;strong&gt;&lt;em&gt;Carpet Bombing&lt;/em&gt;&lt;/strong&gt;&amp;quot; che &amp;#232; al centro di una piccola bufera, e che merita qualche riflessione di merito: &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/03/apple-continua-ad-avere-un-approccio-miope-ed-anacronistico-sugli-aspetti-di-sicurezza.aspx" target="_blank"&gt;Apple continua ad avere un approccio miope ed anacronistico sugli aspetti di Sicurezza&lt;/a&gt;&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Diversamente dall'approccio di Apple che potete leggere al post appena citato, Microsoft ha riconosciuto la necessit&amp;#224; di approfondire la problematica dal suo lato (per accertare eventuali vulnerabilit&amp;#224; su Windows e determinarne l'impatto) e di avvisare subito gli utenti del possibile rischio (e del possibile workaround) di questo attacco combinato: da qui la pubblicazione di questo advisory.&lt;/font&gt;&lt;font face="Calibri" size="3"&gt;&amp;#160;&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;font color="#ff0000"&gt;&lt;u&gt;Aggiornamento del 2/07/2008&lt;/u&gt;&lt;/font&gt;: Apple ha aggiornato Safari alla versione 3.1.2 e documentato i relativi aspetti di sicurezza in questo suo &lt;a href="http://support.apple.com/kb/HT2092" target="_blank"&gt;security advisory&lt;/a&gt;.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/06/03/security-advisory-953818-correlato-al-problema-carpet-bomb-di-safari.aspx&amp;amp;;title=Security Advisory 953818 correlato al problema " target="_blank" carpet="carpet" bomb?="bomb?" di="di" safari?="Safari?"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/06/03/security-advisory-953818-correlato-al-problema-carpet-bomb-di-safari.aspx&amp;amp;title=Security Advisory 953818 correlato al problema " target="_blank" carpet="carpet" bomb?="bomb?" di="di" safari?="Safari?"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/06/03/security-advisory-953818-correlato-al-problema-carpet-bomb-di-safari.aspx&amp;amp;title=Security Advisory 953818 correlato al problema " target="_blank" carpet="carpet" bomb?="bomb?" di="di" safari?="Safari?"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/06/03/security-advisory-953818-correlato-al-problema-carpet-bomb-di-safari.aspx&amp;amp;title=Security Advisory 953818 correlato al problema " target="_blank" carpet="carpet" bomb?="bomb?" di="di" safari?="Safari?"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/06/03/security-advisory-953818-correlato-al-problema-carpet-bomb-di-safari.aspx&amp;amp;t=Security Advisory 953818 correlato al problema " target="_blank" carpet="carpet" bomb?="bomb?" di="di" safari?="Safari?"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3065330" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Apple+Security/default.aspx">Apple Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.4-Malware+and+Attack+analysis/default.aspx">2.4-Malware and Attack analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>I numeri sulle vulnerabilità di Windows Vista? Ottimi ma noiosi... parliamo invece di Apple</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/19/i-numeri-sulle-vulnerabilit-di-windows-vista-ottimi-ma-noiosi-parliamo-invece-di-apple.aspx</link><pubDate>Mon, 19 May 2008 16:11:05 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3057378</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>4</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3057378.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3057378</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Jeff Jones ha pubblicato un nuovo &lt;a href="http://blogs.technet.com/security/archive/2008/05/15/q1-2008-client-os-vulnerability-scorecard.aspx" target="_blank"&gt;breve paper&lt;/a&gt; di confronto delle vulnerabilit&amp;#224;, questa volta focalizzato sul &lt;u&gt;primo trimestre del 2008&lt;/u&gt; e i numeri danno ancora ragione inequivocabile alle considerazioni che ho pi&amp;#249; volte espresso a favore dell'efficacia del &lt;a href="http://blogs.technet.com/feliciano_intini/archive/tags/3.1-Security+Development+Lifecycle+_2800_SDL_2900_/default.aspx" target="_blank"&gt;Microsoft &lt;strong&gt;Security Development Lifecycle (SDL)&lt;/strong&gt;&lt;/a&gt;, e su come i benefici di questo processo si stiano riflettendo sui risultati di Windows Vista rispetto a tutti: &lt;u&gt;&lt;strong&gt;Windows Vista&lt;/strong&gt; rimane il sistema operativo con meno vulnerabilit&amp;#224; sia rispetto a &lt;strong&gt;Windows XP SP2&lt;/strong&gt;&amp;#160;&lt;/u&gt;&lt;/font&gt;&lt;font face="Calibri" size="3"&gt;&lt;u&gt;che rispetto agli altri sistemi operativi&lt;/u&gt; (notate che non ho detto &amp;quot;pi&amp;#249; sicuro&amp;quot;, non mancate di leggere l'appendice A in cui Jones spiega l'interpretazione dei dati):&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/Inumerisullevulner.parliamoinvecediApple_FFB3/q108-client-scorecard-chart_1_2.png"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="350" alt="q108-client-scorecard-chart_1" src="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/Inumerisullevulner.parliamoinvecediApple_FFB3/q108-client-scorecard-chart_1_thumb.png" width="507" border="0" /&gt;&lt;/a&gt; &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;(Ricordo che la fonte dati &amp;#232; il &lt;strong&gt;&lt;a href="http://nvd.nist.gov/" target="_blank"&gt;National Vulnerability Database (NVD)&lt;/a&gt;&lt;/strong&gt; curato dal &lt;strong&gt;National Institute of Standards (NIST)&lt;/strong&gt; utilizzando il &lt;strong&gt;Common Vulnerability Scoring System Version 2 (CVSSv2)&lt;/strong&gt; come metodo di rating delle vulnerabilit&amp;#224;).&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Non ci crederete, ma quando venerd&amp;#236; ho letto questo post e le relative tabelle mi sono chiesto per la prima volta... e ora? Cosa c'&amp;#232; di nuovo e interessante da segnalare all'attenzione dei miei lettori? Possibile che questi grandiosi risultati in area sicurezza da parte di Microsoft siano quasi quasi diventati noiosi??? Incredibile... eppure sembra proprio cos&amp;#236;... &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Un aspetto su cui vorrei stuzzicarvi per&amp;#242; c'&amp;#232;: riguardando la tabella che mostra meglio il confronto delle vulnerabilit&amp;#224; critiche... &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/Inumerisullevulner.parliamoinvecediApple_FFB3/q108-client-scorecard-highsevonly_2.png"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="311" alt="q108-client-scorecard-highsevonly" src="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/Inumerisullevulner.parliamoinvecediApple_FFB3/q108-client-scorecard-highsevonly_thumb.png" width="509" border="0" /&gt;&lt;/a&gt; &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;...mi &amp;#232; saltata all'occhio la &amp;quot;stranezza&amp;quot; della colonnina di &lt;strong&gt;Mac OS X 10.5&lt;/strong&gt; superiore a quella di &lt;strong&gt;Mac OS X 10.4&lt;/strong&gt;, ed entrambe superiori a quelle degli altri OS... secondo voi come si spiega? Forse che vale quanto detto nel mio &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/04/01/quale-tra-windows-mac-os-e-linux-il-sistema-pi-sicuro.aspx" target="_blank"&gt;post&lt;/a&gt; e ribadito in questo &lt;a href="http://blogs.zdnet.com/security/?p=995" target="_blank"&gt;articolo Zero Day&lt;/a&gt; a proposito del famoso CanSecWest: &amp;quot;...&lt;em&gt;&lt;strong&gt;vulnerabilities follows success&lt;/strong&gt;&lt;/em&gt;...&amp;quot;??? Che &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/03/31/non-godo-dei-tempi-duri-che-sta-attraversando-la-sicurezza-di-apple.aspx" target="_blank"&gt;riflessioni&lt;/a&gt; vengono da fare sui processi di revisione del codice da parte di Apple? A voi la parola...&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/19/i-numeri-sulle-vulnerabilit-di-windows-vista-ottimi-ma-noiosi-parliamo-invece-di-apple.aspx&amp;amp;;title=I numeri sulle vulnerabilit&amp;agrave; di Windows Vista? Ottimi ma noiosi... parliamo invece di Apple" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/19/i-numeri-sulle-vulnerabilit-di-windows-vista-ottimi-ma-noiosi-parliamo-invece-di-apple.aspx&amp;amp;title=I numeri sulle vulnerabilit&amp;agrave; di Windows Vista? Ottimi ma noiosi... parliamo invece di Apple" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/19/i-numeri-sulle-vulnerabilit-di-windows-vista-ottimi-ma-noiosi-parliamo-invece-di-apple.aspx&amp;amp;title=I numeri sulle vulnerabilit&amp;agrave; di Windows Vista? Ottimi ma noiosi... parliamo invece di Apple" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/19/i-numeri-sulle-vulnerabilit-di-windows-vista-ottimi-ma-noiosi-parliamo-invece-di-apple.aspx&amp;amp;title=I numeri sulle vulnerabilit&amp;agrave; di Windows Vista? Ottimi ma noiosi... parliamo invece di Apple" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/19/i-numeri-sulle-vulnerabilit-di-windows-vista-ottimi-ma-noiosi-parliamo-invece-di-apple.aspx&amp;amp;t=I numeri sulle vulnerabilit&amp;agrave; di Windows Vista? Ottimi ma noiosi... parliamo invece di Apple" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3057378" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Rilasciato il Microsoft Baseline Security Analyzer 2.1</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx</link><pubDate>Fri, 16 May 2008 10:27:05 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3056180</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>2</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3056180.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3056180</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;L'amicollega (ho coniato un neologismo!) &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2007/06/29/Stirling-la-prossima-versione-della-suite-Forefront.aspx" target="_blank"&gt;Andrea Piazza&lt;/a&gt; del mio security team &lt;strong&gt;&lt;em&gt;Microsoft Premier Center for Security&lt;/em&gt;&lt;/strong&gt; &lt;strong&gt;&lt;em&gt;(PCfS)&lt;/em&gt;&lt;/strong&gt; mi ha segnalato un rilascio importante per gli amministratori di sicurezza su piattaforma Microsoft:&lt;/font&gt;&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;&lt;font face="Calibri" size="3"&gt;il tool &lt;a href="http://www.microsoft.com/technet/security/tools/mbsa2_1/default.mspx" target="_blank"&gt;&lt;strong&gt;Microsoft Baseline Security Analyzer 2.1&lt;/strong&gt;&lt;/a&gt;&lt;/font&gt;&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Per coloro che ancora non conoscessero &lt;a href="http://www.microsoft.com/technet/Security/tools/mbsahome.mspx" target="_blank"&gt;&lt;strong&gt;MBSA&lt;/strong&gt;&lt;/a&gt;: &amp;#232; il tool gratuito che permette di operare la scansione remota/locale dei sistemi Windows per individuare le security patch mancanti e per verificare lo stato di alcune importanti configurazioni di sicurezza. Il tool si &amp;#232; evoluto nel tempo migliorando via via la sua integrazione con la contemporanea evoluzione delle soluzioni e dei servizi di &lt;a href="http://www.microsoft.com/technet/security/tools/default.mspx#EPC" target="_blank"&gt;Security Patch Management&lt;/a&gt; di Microsoft. L'ultima versione rilasciata ha queste novit&amp;#224;:&lt;/font&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;font color="#0000ff"&gt;Support for Windows Vista and Windows Server 2008&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Updated graphical user interface&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Full support for 64-bit platforms and vulnerability assessment (VA) checks against 64-bit platforms and components&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Improved support for Windows XP Embedded platform&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Improved support for SQL Server 2005 vulnerability assessment (VA) checks&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Automatic Microsoft Update registration and agent update (if selected) using the graphical interface or from the command-line tool using the /ia feature&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;New feature to output completed scan reports to a user-selected directory path or network share (command-line /rd feature)&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Windows Server Update Services 2.0 and 3.0 compatibility&lt;/font&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Approfittando del ripasso su MBSA ho anche appreso della presenza di una versione gratuita del tool &lt;a href="http://www.shavlik.com/products/netchk-limited.aspx" target="_blank"&gt;&lt;strong&gt;NetChk Limited&lt;/strong&gt; della &lt;strong&gt;Shavlik&lt;/strong&gt;&lt;/a&gt; (MBSA &amp;#232; nato dalla collaborazione con la Shavlik) che permette di operare la scansione di quei prodotti Microsoft che non sono supportati da MBSA 2.0 e successive versioni: segnatevi &lt;a href="http://support.microsoft.com/kb/895660" target="_blank"&gt;questo fondamentale articolo &lt;strong&gt;895660&lt;/strong&gt;&lt;/a&gt; della Microsoft Knowledge Base dove c'&amp;#232; &lt;u&gt;la tabella comparativa dei prodotti supportarti dalla varie versioni MBSA e dal tool integrativo EST&lt;/u&gt; (&amp;#232; una tabella da tenere sempre a portata di mano per chi si occupa di Security Patch Management). I prodotti supportati da NetChk Limited sono a questo &lt;a href="http://www.shavlik.com/netchk-limited-supported-products.aspx" target="_blank"&gt;link&lt;/a&gt;.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;;title=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;title=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;title=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;title=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;t=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3056180" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx</link><pubDate>Tue, 13 May 2008 20:12:08 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3054728</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3054728.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3054728</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Dopo avervi fornito su &lt;a href="http://www.mclips.it/archive/2008/05/13/bollettini-di-sicurezza-di-maggio-pochi-ma-buoni.aspx" target="_blank"&gt;&lt;strong&gt;MClips&lt;/strong&gt;&lt;/a&gt; le considerazioni pi&amp;#249; generali dell'emissione di bollettini di sicurezza di maggio, eccovi un'analisi pi&amp;#249; di dettaglio:&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://blogs.technet.com/photos/pcfs-gallery/images/3054727/original.aspx" target="_blank"&gt;&lt;img src="http://blogs.technet.com/photos/pcfs-gallery/images/3054727/secondarythumb.aspx" /&gt;&lt;/a&gt;&amp;#160; &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;/font&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-026.mspx" target="_blank"&gt;MS08-026&lt;/a&gt;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt; su &lt;strong&gt;Word&lt;/strong&gt;: due vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; relative &lt;u&gt;a tutte le versioni attualmente supportate di &lt;strong&gt;Office&lt;/strong&gt;&lt;/u&gt; che permetterebbero di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato. Il vettore di attacco &amp;#232; diverso per le due vulnerabilit&amp;#224;: per la prima consiste in file/email di tipo RTF (&lt;em&gt;Rich Text Format&lt;/em&gt;), per la seconda consiste in file di Word. In virt&amp;#249; di quanto detto questo bollettino merita una sollecitudine particolare all'aggiornamento da parte degli utenti dotati di &lt;strong&gt;Outlook 2007&lt;/strong&gt; e &lt;strong&gt;Outlook 2007 SP1&lt;/strong&gt;: queste versioni utilizzano nativamente Word come editor predefinito e quindi sono soggette all'attacco da parte di email malformate ad-hoc in formato RTF se vengono visualizzate (anche in preview) in formato RTF/HTML (in queste situazioni la visualizzazione in formato solo testo &amp;#232; un valido workaround in attesa dell'aggiornamento).         &lt;br /&gt;&lt;strong&gt;Questo aggiornamento introduce inoltre un miglioramento funzionale di sicurezza&lt;/strong&gt;: all'utente ora viene chiesta una conferma esplicita prima di procedere all'esecuzione di comandi/query SQL in caso di database Jet inclusi in documenti Word (per irrobustire la protezione da attacchi segnalati dal &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/03/22/security-advisory-950627-relativo-ad-una-vulnerabilit-in-jet.aspx" target="_blank"&gt;Security Advisory 950627&lt;/a&gt; e indirizzati dal bollettino &lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-028.mspx" target="_blank"&gt;MS08-028&lt;/a&gt;).&lt;/font&gt; &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-027.mspx" target="_blank"&gt;MS08-027&lt;/a&gt;&amp;#160;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt;su &lt;strong&gt;Publisher&lt;/strong&gt;: una vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; relativa &lt;u&gt;a tutte le versioni attualmente supportate di &lt;strong&gt;Office&lt;/strong&gt;&lt;/u&gt; che permetterebbero di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato tramite l'apertura di file di Publisher malformati ad-hoc.&lt;/font&gt; &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-028.mspx" target="_blank"&gt;MS08-028&lt;/a&gt;&amp;#160;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt;sul &lt;strong&gt;Microsoft Jet 4.0 Database Engine (Jet)&lt;/strong&gt; in &lt;strong&gt;Windows&lt;/strong&gt;: una vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; (gi&amp;#224; nota pubblicamente, e di cui era gi&amp;#224; nota la presenza di exploit) relativa &lt;u&gt;solo alle versioni meno recenti e meno aggiornate di Windows&lt;/u&gt; (&lt;strong&gt;Windows 2000 SP4, Windows XP SP2 e Windows Server 2003 SP1&lt;/strong&gt;) che permetterebbero di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato tramite l'invio di query malformate ad-hoc ad applicazioni che utilizzano JET (il vettore di attacco tipico &amp;#232; l'invio di file MDB, direttamente o inclusi in documenti Word/email; gli utenti dotati di Outlook 2003/2007 sono a rischio anche rispetto alla visualizzazione in HTML in preview).&lt;/font&gt; &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-029.mspx" target="_blank"&gt;MS08-029&lt;/a&gt;&amp;#160;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt;sul &lt;strong&gt;Microsoft Malware Protection Engine&lt;/strong&gt; incluso in &lt;strong&gt;Windows Live OneCare&lt;/strong&gt;, &lt;strong&gt;Microsoft Antigen for Exchange&lt;/strong&gt;, &lt;strong&gt;Microsoft Antigen for SMTP Gateway&lt;/strong&gt;, &lt;strong&gt;Microsoft Windows Defender&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Client Security&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Security for Exchange Server&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Security for SharePoint&lt;/strong&gt;, &lt;strong&gt;Standalone System Sweeper&lt;/strong&gt; presente in &lt;strong&gt;Diagnostics and Recovery Toolset 6.0 (DaRT&lt;/strong&gt;): due vulnerabilit&amp;#224; &lt;em&gt;Moderate&lt;/em&gt; di tipo &lt;em&gt;Denial of Service&lt;/em&gt; che permetterebbero di far smettere di funzionare (e di far ripartire automaticamente) i suddetti prodotti tramite l'invio di un file malformato ad-hoc e sottoposto a scansione da parte del Malware Protection Engine. &lt;/font&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Ho anche aggiornato il &lt;/font&gt;&lt;a href="http://blogs.technet.com/feliciano_intini/pages/riepilogo-analisi-e-risorse-su-security-bulletin-e-security-advisory-di-microsoft.aspx"&gt;&lt;font face="Calibri" size="3"&gt;mini-portale tematico&lt;/font&gt;&lt;/a&gt;&lt;font face="Calibri" size="3"&gt; che raccoglie le risorse sui Security Bulletin.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;t=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3054728" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0-Application+Security/default.aspx">3.0-Application Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.2-Office+Security/default.aspx">3.2-Office Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.3-Forefront+Client+Security/default.aspx">2.3-Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.4-Malware+and+Attack+analysis/default.aspx">2.4-Malware and Attack analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item></channel></rss>