<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Security Blog di Feliciano Intini : 2.2-Windows Vista Security</title><link>http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx</link><description>Tags: 2.2-Windows Vista Security</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>Nuovi video seminari Technet Spotlight sulla sicurezza</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/08/04/nuovi-video-seminari-technet-spotlight-sulla-sicurezza.aspx</link><pubDate>Mon, 04 Aug 2008 13:53:28 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3098263</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3098263.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3098263</wfw:commentRss><description>Sia che siate in vacanza, sia che siate ancora/gi&amp;#224; al lavoro, probabilmente in questo periodo avrete un po' di tempo libero in pi&amp;#249; del solito. Il mio personale invito &amp;#232; sicuramente quello di usarlo per ritemprarvi nel corpo e nello spirito,...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/08/04/nuovi-video-seminari-technet-spotlight-sulla-sicurezza.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3098263" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/4.3-Rights+Management+Services/default.aspx">4.3-Rights Management Services</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/z-Video/default.aspx">z-Video</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/1.0-Network+Security/default.aspx">1.0-Network Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/1.4-Forefront+Threat+Management+Gateway+_2800_TMG_2900_/default.aspx">1.4-Forefront Threat Management Gateway (TMG)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.4-Malware+and+Attack+analysis/default.aspx">2.4-Malware and Attack analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.6-Forefront+Stirling/default.aspx">2.6-Forefront Stirling</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Hacking/default.aspx">Hacking</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Virtualization+Security/default.aspx">Virtualization Security</category></item><item><title>Le vulnerabilità DNS come l'asteroide di Armageddon</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/07/11/le-vulnerabilit-dns-come-l-asteroide-di-armageddon.aspx</link><pubDate>Fri, 11 Jul 2008 15:10:57 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3087392</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>7</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3087392.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3087392</wfw:commentRss><description>Vi confesso che il lavoro segreto di collaborazione (di cui ho appena parlato nel mio freschissimo post su MClips: &amp;quot; Una svolta nella security cooperation: le vulnerabilit&amp;#224; DNS uniscono i vendor nella difesa di Internet &amp;quot;) che ha coinvolto...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/07/11/le-vulnerabilit-dns-come-l-asteroide-di-armageddon.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3087392" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.4-Malware+and+Attack+analysis/default.aspx">2.4-Malware and Attack analysis</category></item><item><title>Analisi di rischio sui Bollettini di sicurezza Microsoft - luglio 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/07/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-luglio-2008.aspx</link><pubDate>Wed, 09 Jul 2008 11:53:40 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3086111</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>8</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3086111.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3086111</wfw:commentRss><description>Rieccoci al consueto appuntamento di analisi dei bollettini di sicurezza Microsoft: come gi&amp;#224; anticipato venerd&amp;#236; scorso , questo mese vede l'emissione di 4 bollettini , tutti con rating Important , che risolvono un totale di 9 vulnerabilit&amp;#224;...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/07/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-luglio-2008.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3086111" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0-Application+Security/default.aspx">3.0-Application Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.4-SQL+Security/default.aspx">3.4-SQL Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.7-Exchange+Security/default.aspx">3.7-Exchange Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Adobe Reader 9: più sicuro o meno sicuro delle versioni precedenti?</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/07/04/adobe-reader-9-pi-sicuro-o-meno-sicuro-delle-versioni-precedenti.aspx</link><pubDate>Fri, 04 Jul 2008 14:20:52 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3083683</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>6</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3083683.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3083683</wfw:commentRss><description>... lascio a voi dare una risposta, dopo aver letto i due post che vi propongo di seguito. Il primo &amp;#232; quello del mio collega Robert Hensing , che ha verificato come la versione di Adobe Reader 9 abbia finalmente incluso il supporto (su Windows Vista...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/07/04/adobe-reader-9-pi-sicuro-o-meno-sicuro-delle-versioni-precedenti.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3083683" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Adobe+Security/default.aspx">Adobe Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category></item><item><title>4 bollettini di sicurezza Microsoft in arrivo per luglio 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/07/04/4-bollettini-di-sicurezza-microsoft-in-arrivo-per-luglio-2008.aspx</link><pubDate>Fri, 04 Jul 2008 09:01:34 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3083507</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>3</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3083507.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3083507</wfw:commentRss><description>Approccio per cos&amp;#236; dire... semi-estivo... al rilascio dei bollettini di sicurezza Microsoft previsti per il prossimo 8 luglio: sono attesi solo 4 bollettini e solo con rating Important , come potete osservare dalla tabella di sintesi Maggiori dettagli...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/07/04/4-bollettini-di-sicurezza-microsoft-in-arrivo-per-luglio-2008.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3083507" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.4-SQL+Security/default.aspx">3.4-SQL Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.7-Exchange+Security/default.aspx">3.7-Exchange Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Analisi di rischio sui Bollettini di sicurezza Microsoft - giugno 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-giugno-2008.aspx</link><pubDate>Fri, 13 Jun 2008 10:30:50 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3070425</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3070425.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3070425</wfw:commentRss><description>Lo so, lo so... vi stavate domandando dove fossi finito e cosa fosse successo di tanto importante da impedirmi di postare la consueta analisi di rischio sui bollettini di sicurezza Microsoft durante la classica notte del secondo marted&amp;#236; del mese....(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-giugno-2008.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3070425" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Rilasciata la versione definitiva del Security Compliance Management toolkit</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/08/rilasciata-la-versione-definitiva-del-security-compliance-management-toolkit.aspx</link><pubDate>Sun, 08 Jun 2008 16:53:07 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3067699</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3067699.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3067699</wfw:commentRss><description>Vi segnalo il rilascio definitivo della soluzione gratuita dei &amp;quot; Solution Accelerators &amp;quot;: Security Compliance Management toolkit di cui vi avevo parlato in questo mio post al lancio della versione beta. Share this post : &amp;#160;...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/08/rilasciata-la-versione-definitiva-del-security-compliance-management-toolkit.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3067699" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/5.0.0-Security+Foundations+_2800_Technology_2900_/default.aspx">5.0.0-Security Foundations (Technology)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/5.3.0-SCCM+2007+_2800_DCM_2900_/default.aspx">5.3.0-SCCM 2007 (DCM)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/6.0-Security+Foundations+_2800_Processes_2900_/default.aspx">6.0-Security Foundations (Processes)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/6.1.0-Sec+Management/default.aspx">6.1.0-Sec Management</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/6.1.2-Security+Compliance+Management/default.aspx">6.1.2-Security Compliance Management</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category></item><item><title>Sul presunto attacco a Windows Cardspace e all'Identity Metasystem: vi prego, prendiamo la sicurezza sul serio...</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/06/sul-presunto-attacco-a-windows-cardspace-e-all-identity-metasystem-vi-prego-prendiamo-la-sicurezza-sul-serio.aspx</link><pubDate>Fri, 06 Jun 2008 18:20:54 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3067162</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>4</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3067162.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3067162</wfw:commentRss><description>Riesco a stento a trattenere il mio disappunto: questa notizia di cui sto per raccontarvi sembra l'epilogo perfetto della mia rubrica Anti-FUD , un vero e proprio capolavoro di dinformazione informatica sul tema sicurezza... e come tale non dovete perderla!...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/06/sul-presunto-attacco-a-windows-cardspace-e-all-identity-metasystem-vi-prego-prendiamo-la-sicurezza-sul-serio.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3067162" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/5.0.0-Security+Foundations+_2800_Technology_2900_/default.aspx">5.0.0-Security Foundations (Technology)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/5.1.0-Identity+_2600_amp_3B00_+Access+Mgmt+_2800_IdA_2900_/default.aspx">5.1.0-Identity &amp;amp; Access Mgmt (IdA)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/5.1.2-Identity+Metasystem+_2600_amp_3B00_+Windows+CardSpace/default.aspx">5.1.2-Identity Metasystem &amp;amp; Windows CardSpace</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/z-Anti-FUD/default.aspx">z-Anti-FUD</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.4-Malware+and+Attack+analysis/default.aspx">2.4-Malware and Attack analysis</category></item><item><title>7 bollettini di sicurezza Microsoft in arrivo per giugno 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/06/7-bollettini-di-sicurezza-microsoft-in-arrivo-per-giugno-2008.aspx</link><pubDate>Fri, 06 Jun 2008 12:02:36 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3066986</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3066986.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3066986</wfw:commentRss><description>Ecco la puntuale anticipazione sui bollettini di sicurezza Microsoft per il mese di giugno, questa volta tutti dedicati alla famiglia Windows (lo so che vi viene facile una battuta: che il team di Office sia andato in vacanza?... :-)), in particolare...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/06/7-bollettini-di-sicurezza-microsoft-in-arrivo-per-giugno-2008.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3066986" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Security Advisory 953818 correlato al problema "carpet bomb" di Safari</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/03/security-advisory-953818-correlato-al-problema-carpet-bomb-di-safari.aspx</link><pubDate>Tue, 03 Jun 2008 10:56:38 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3065330</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>3</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3065330.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3065330</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Comincio a pensare che i miei colleghi del &lt;a href="http://blogs.technet.com/msrc" target="_blank"&gt;&lt;strong&gt;MSRC&lt;/strong&gt;&lt;/a&gt; in Corp (... noi usiamo dire cos&amp;#236; per riferirci alla Microsoft di Redmond, che &amp;#232; appunto la CORPoration) utilizzino &lt;a href="http://www.microsoft.com/uc/products/oc2007.mspx" target="_blank"&gt;l'Office Communicator&lt;/a&gt; (il nostro instant messenger interno) come rilevatore di presenza per decidere quando pubblicare i security advisory... :-(&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Vabb&amp;#232;... fatto sta che proprio all'inizio di questo weekend lungo per l'Italia, Microsoft ha emesso il &amp;quot;&lt;a href="http://www.microsoft.com/technet/security/advisory/953818.mspx" target="_blank"&gt;Microsoft Security Advisory (953818) - Blended Threat from Combined Attack Using Apple&amp;#8217;s Safari on the Windows Platform&lt;/a&gt;&amp;quot; per segnalare che esiste una possibile minaccia di attacco per gli utenti di Windows (in particolare di tutte le versioni supportate di &lt;strong&gt;Windows XP&lt;/strong&gt; e &lt;strong&gt;Windows Vista&lt;/strong&gt;) che usano il browser &lt;strong&gt;Safari&lt;/strong&gt; di Apple per la navigazione Internet.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Come riporta l'advisory, l'attacco &amp;#232; reso possibile dalla combinazione di due problemi (da qui il nome di &amp;quot;&lt;em&gt;Blended Threat&lt;/em&gt;&amp;quot;), la modalit&amp;#224; con cui Safari gestisce il download di contenuti sul file system e quella con cui Windows gestisce i file eseguibili sul Desktop: questa situazione congiunta permetterebbe di scaricare file sul Desktop di Windows ed eseguirli all'insaputa dell'utente nel suo contesto di sicurezza (quindi con i suoi privilegi - che le &lt;em&gt;best practice&lt;/em&gt; raccomandano essere sempre i pi&amp;#249; limitati possibile...)&lt;/font&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Vi faccio notare che ho scritto &amp;quot;problemi&amp;quot; e non &amp;quot;vulnerabilit&amp;#224;&amp;quot; non a caso: il problema di Safari a cui fa riferimento questo advisory &amp;#232; quello denominato &amp;quot;&lt;strong&gt;&lt;em&gt;Carpet Bombing&lt;/em&gt;&lt;/strong&gt;&amp;quot; che &amp;#232; al centro di una piccola bufera, e che merita qualche riflessione di merito: &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/03/apple-continua-ad-avere-un-approccio-miope-ed-anacronistico-sugli-aspetti-di-sicurezza.aspx" target="_blank"&gt;Apple continua ad avere un approccio miope ed anacronistico sugli aspetti di Sicurezza&lt;/a&gt;&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Diversamente dall'approccio di Apple che potete leggere al post appena citato, Microsoft ha riconosciuto la necessit&amp;#224; di approfondire la problematica dal suo lato (per accertare eventuali vulnerabilit&amp;#224; su Windows e determinarne l'impatto) e di avvisare subito gli utenti del possibile rischio (e del possibile workaround) di questo attacco combinato: da qui la pubblicazione di questo advisory.&lt;/font&gt;&lt;font face="Calibri" size="3"&gt;&amp;#160;&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;font color="#ff0000"&gt;&lt;u&gt;Aggiornamento del 2/07/2008&lt;/u&gt;&lt;/font&gt;: Apple ha aggiornato Safari alla versione 3.1.2 e documentato i relativi aspetti di sicurezza in questo suo &lt;a href="http://support.apple.com/kb/HT2092" target="_blank"&gt;security advisory&lt;/a&gt;.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/06/03/security-advisory-953818-correlato-al-problema-carpet-bomb-di-safari.aspx&amp;amp;;title=Security Advisory 953818 correlato al problema " target="_blank" carpet="carpet" bomb?="bomb?" di="di" safari?="Safari?"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/06/03/security-advisory-953818-correlato-al-problema-carpet-bomb-di-safari.aspx&amp;amp;title=Security Advisory 953818 correlato al problema " target="_blank" carpet="carpet" bomb?="bomb?" di="di" safari?="Safari?"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/06/03/security-advisory-953818-correlato-al-problema-carpet-bomb-di-safari.aspx&amp;amp;title=Security Advisory 953818 correlato al problema " target="_blank" carpet="carpet" bomb?="bomb?" di="di" safari?="Safari?"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/06/03/security-advisory-953818-correlato-al-problema-carpet-bomb-di-safari.aspx&amp;amp;title=Security Advisory 953818 correlato al problema " target="_blank" carpet="carpet" bomb?="bomb?" di="di" safari?="Safari?"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/06/03/security-advisory-953818-correlato-al-problema-carpet-bomb-di-safari.aspx&amp;amp;t=Security Advisory 953818 correlato al problema " target="_blank" carpet="carpet" bomb?="bomb?" di="di" safari?="Safari?"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3065330" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Apple+Security/default.aspx">Apple Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.4-Malware+and+Attack+analysis/default.aspx">2.4-Malware and Attack analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Whitepaper di confronto tra Windows XP SP3 (ora si può ordinare il CD) e Windows Vista SP1</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/26/whitepaper-di-confronto-tra-windows-xp-sp3-ora-si-pu-ordinare-il-cd-e-windows-vista-sp1.aspx</link><pubDate>Mon, 26 May 2008 09:50:34 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3061110</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>6</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3061110.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3061110</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Uno dei lati pi&amp;#249; interessanti dell'essere dipendente Microsoft &amp;#232; quello di non poter facilmente scindere la tua vita privata da quella professionale, nel senso che quando parenti, amici e semplici conoscenti apprendono che lavori nell'azienda (&amp;quot;...s&amp;#236;, quella l&amp;#236;, quella di Windows e di Bill Gates, hai presente l'uomo (che era) l'uomo pi&amp;#249; ricco del mondo??&amp;quot;... solo cos&amp;#236; a volte si riesce a far capire la &amp;quot;&lt;em&gt;maicrosoft&lt;/em&gt;&amp;quot; ai non addetti ai lavori... come faremo ora che Bill si ritira??) si sentono autorizzati a 1) chiederti informazioni di supporto su tutto l'universo Microsoft (dico tutto! Flight Simulator non esclusooo!), 2) stuzzicarti sulle notizie pi&amp;#249; piccanti che sentono al tigg&amp;#236; o leggono sul giornale (ora il tira e molla con Yahoo, un tempo erano le multe dell'EU...). Vi dir&amp;#242;, alla fine vivo tutto questo con divertimento e piacere, con estrema disponibilit&amp;#224; e pazienza (anzi direi proprio con &amp;quot;spirito di servizio&amp;quot;.. :-)...) fino a quando incrocio persone che, con arroganza, pretendono di sapere tutto loro solo perch&amp;#233; provano a smanettare qualche mezz'ora a settimana con il PC a casa, oppure quelli che si fidano ciecamente di quello &amp;quot;sentono in giro&amp;quot; o che leggono sui forum... &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;L'ultima in tal senso &amp;#232; di un conoscente che mi chiedeva lumi sulla configurazione hardware da adottare per il suo nuovo PC: avendo lui scelto di optare per Windows, davo per scontato che adottasse Windows Vista; quando &amp;#232; venuto fuori che intendeva installare Windows XP, gli ho chiesto &amp;quot;perch&amp;#233; non Windows Vista??&amp;quot;. Risposta: &amp;quot;... &lt;u&gt;ho sentito dire&lt;/u&gt; che non va proprio bene... e cos&amp;#236; ... e col&amp;#224;...(con considerazioni inconcludenti)&amp;quot;. E io. &amp;quot;... s&amp;#236; , ok, ma tu l'hai provato?&amp;quot;. &amp;quot;No, in realt&amp;#224; no...&amp;quot;. &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Ecco i risultati del &lt;a href="http://blogs.technet.com/feliciano_intini/archive/tags/z-Anti-FUD/default.aspx" target="_blank"&gt;FUD&lt;/a&gt;: ormai c'&amp;#232; tanta di quella disinformazione in giro che vuole dare addosso a Windows Vista, che la percezione comune dell'utente non tecnico &amp;#232; necessariamente influenzata a senso unico... vede solo i problemi (per sentito dire) e neanche immagina i vantaggi che innegabilmente derivano da una versione nuova! &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Al riguardo ho letto con piacere e condivido le considerazioni di Enrico Giordani che nel suo ultimo post &amp;quot;&lt;a href="http://imieiguaiconvista.blogspot.com/2008/05/congedo.html" target="_blank"&gt;Congedo?&lt;/a&gt;&amp;quot; del blog dal titolo &amp;quot;I miei guai con Vista&amp;quot; (significativo, no?) fa un importante consuntivo della sua esperienza, di fatto ricredendosi.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Forse &amp;#232; anche per questo che Microsoft ha pubblicato di recente un &lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=37d0c614-9c06-4b61-bb2e-6ab9953a14ab&amp;amp;displaylang=en&amp;amp;tm" target="_blank"&gt;whitepaper di confronto delle funzionalit&amp;#224; tra &lt;strong&gt;Windows Vista SP1&lt;/strong&gt; e &lt;strong&gt;Windows XP SP3&lt;/strong&gt;&lt;/a&gt;: non fa male iniziare a guardare &lt;em&gt;side-by-side&lt;/em&gt; cosa si stanno perdendo coloro che rimangono legati a XP... soprattutto in ambito sicurezza!&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;P.S.: Approfitto dell'occasione per segnalarvi (era una richiesta di un mio lettore in un &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/05/07/definitivamente-disponibile-il-windows-xp-service-pack-3-sp3-anche-in-italiano-non-poche-le-novit-in-area-sicurezza.aspx" target="_blank"&gt;post recente&lt;/a&gt;) della possibilit&amp;#224; di &lt;strong&gt;&lt;a href="https://om2.one.microsoft.com/opa/Validation.aspx?StoreID=7B7AA929-BD0A-487A-BC7E-DF7631FEE660&amp;amp;LocaleCode=it-it" target="_blank"&gt;ordinare il CD con il Service Pack 3 di Windows XP&lt;/a&gt;&lt;/strong&gt; per coloro che non avessero la possibilit&amp;#224; di scaricarlo da Internet.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/26/whitepaper-di-confronto-tra-windows-xp-sp3-ora-si-pu-ordinare-il-cd-e-windows-vista-sp1.aspx&amp;amp;;title=Whitepaper di confronto tra Windows XP SP3 (ora si pu&amp;ograve; ordinare il CD) e Windows Vista SP1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/26/whitepaper-di-confronto-tra-windows-xp-sp3-ora-si-pu-ordinare-il-cd-e-windows-vista-sp1.aspx&amp;amp;title=Whitepaper di confronto tra Windows XP SP3 (ora si pu&amp;ograve; ordinare il CD) e Windows Vista SP1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/26/whitepaper-di-confronto-tra-windows-xp-sp3-ora-si-pu-ordinare-il-cd-e-windows-vista-sp1.aspx&amp;amp;title=Whitepaper di confronto tra Windows XP SP3 (ora si pu&amp;ograve; ordinare il CD) e Windows Vista SP1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/26/whitepaper-di-confronto-tra-windows-xp-sp3-ora-si-pu-ordinare-il-cd-e-windows-vista-sp1.aspx&amp;amp;title=Whitepaper di confronto tra Windows XP SP3 (ora si pu&amp;ograve; ordinare il CD) e Windows Vista SP1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/26/whitepaper-di-confronto-tra-windows-xp-sp3-ora-si-pu-ordinare-il-cd-e-windows-vista-sp1.aspx&amp;amp;t=Whitepaper di confronto tra Windows XP SP3 (ora si pu&amp;ograve; ordinare il CD) e Windows Vista SP1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3061110" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>I numeri sulle vulnerabilità di Windows Vista? Ottimi ma noiosi... parliamo invece di Apple</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/19/i-numeri-sulle-vulnerabilit-di-windows-vista-ottimi-ma-noiosi-parliamo-invece-di-apple.aspx</link><pubDate>Mon, 19 May 2008 16:11:05 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3057378</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>4</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3057378.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3057378</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Jeff Jones ha pubblicato un nuovo &lt;a href="http://blogs.technet.com/security/archive/2008/05/15/q1-2008-client-os-vulnerability-scorecard.aspx" target="_blank"&gt;breve paper&lt;/a&gt; di confronto delle vulnerabilit&amp;#224;, questa volta focalizzato sul &lt;u&gt;primo trimestre del 2008&lt;/u&gt; e i numeri danno ancora ragione inequivocabile alle considerazioni che ho pi&amp;#249; volte espresso a favore dell'efficacia del &lt;a href="http://blogs.technet.com/feliciano_intini/archive/tags/3.1-Security+Development+Lifecycle+_2800_SDL_2900_/default.aspx" target="_blank"&gt;Microsoft &lt;strong&gt;Security Development Lifecycle (SDL)&lt;/strong&gt;&lt;/a&gt;, e su come i benefici di questo processo si stiano riflettendo sui risultati di Windows Vista rispetto a tutti: &lt;u&gt;&lt;strong&gt;Windows Vista&lt;/strong&gt; rimane il sistema operativo con meno vulnerabilit&amp;#224; sia rispetto a &lt;strong&gt;Windows XP SP2&lt;/strong&gt;&amp;#160;&lt;/u&gt;&lt;/font&gt;&lt;font face="Calibri" size="3"&gt;&lt;u&gt;che rispetto agli altri sistemi operativi&lt;/u&gt; (notate che non ho detto &amp;quot;pi&amp;#249; sicuro&amp;quot;, non mancate di leggere l'appendice A in cui Jones spiega l'interpretazione dei dati):&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/Inumerisullevulner.parliamoinvecediApple_FFB3/q108-client-scorecard-chart_1_2.png"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="350" alt="q108-client-scorecard-chart_1" src="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/Inumerisullevulner.parliamoinvecediApple_FFB3/q108-client-scorecard-chart_1_thumb.png" width="507" border="0" /&gt;&lt;/a&gt; &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;(Ricordo che la fonte dati &amp;#232; il &lt;strong&gt;&lt;a href="http://nvd.nist.gov/" target="_blank"&gt;National Vulnerability Database (NVD)&lt;/a&gt;&lt;/strong&gt; curato dal &lt;strong&gt;National Institute of Standards (NIST)&lt;/strong&gt; utilizzando il &lt;strong&gt;Common Vulnerability Scoring System Version 2 (CVSSv2)&lt;/strong&gt; come metodo di rating delle vulnerabilit&amp;#224;).&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Non ci crederete, ma quando venerd&amp;#236; ho letto questo post e le relative tabelle mi sono chiesto per la prima volta... e ora? Cosa c'&amp;#232; di nuovo e interessante da segnalare all'attenzione dei miei lettori? Possibile che questi grandiosi risultati in area sicurezza da parte di Microsoft siano quasi quasi diventati noiosi??? Incredibile... eppure sembra proprio cos&amp;#236;... &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Un aspetto su cui vorrei stuzzicarvi per&amp;#242; c'&amp;#232;: riguardando la tabella che mostra meglio il confronto delle vulnerabilit&amp;#224; critiche... &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/Inumerisullevulner.parliamoinvecediApple_FFB3/q108-client-scorecard-highsevonly_2.png"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="311" alt="q108-client-scorecard-highsevonly" src="http://blogs.technet.com/blogfiles/feliciano_intini/WindowsLiveWriter/Inumerisullevulner.parliamoinvecediApple_FFB3/q108-client-scorecard-highsevonly_thumb.png" width="509" border="0" /&gt;&lt;/a&gt; &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;...mi &amp;#232; saltata all'occhio la &amp;quot;stranezza&amp;quot; della colonnina di &lt;strong&gt;Mac OS X 10.5&lt;/strong&gt; superiore a quella di &lt;strong&gt;Mac OS X 10.4&lt;/strong&gt;, ed entrambe superiori a quelle degli altri OS... secondo voi come si spiega? Forse che vale quanto detto nel mio &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/04/01/quale-tra-windows-mac-os-e-linux-il-sistema-pi-sicuro.aspx" target="_blank"&gt;post&lt;/a&gt; e ribadito in questo &lt;a href="http://blogs.zdnet.com/security/?p=995" target="_blank"&gt;articolo Zero Day&lt;/a&gt; a proposito del famoso CanSecWest: &amp;quot;...&lt;em&gt;&lt;strong&gt;vulnerabilities follows success&lt;/strong&gt;&lt;/em&gt;...&amp;quot;??? Che &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/03/31/non-godo-dei-tempi-duri-che-sta-attraversando-la-sicurezza-di-apple.aspx" target="_blank"&gt;riflessioni&lt;/a&gt; vengono da fare sui processi di revisione del codice da parte di Apple? A voi la parola...&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/19/i-numeri-sulle-vulnerabilit-di-windows-vista-ottimi-ma-noiosi-parliamo-invece-di-apple.aspx&amp;amp;;title=I numeri sulle vulnerabilit&amp;agrave; di Windows Vista? Ottimi ma noiosi... parliamo invece di Apple" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/19/i-numeri-sulle-vulnerabilit-di-windows-vista-ottimi-ma-noiosi-parliamo-invece-di-apple.aspx&amp;amp;title=I numeri sulle vulnerabilit&amp;agrave; di Windows Vista? Ottimi ma noiosi... parliamo invece di Apple" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/19/i-numeri-sulle-vulnerabilit-di-windows-vista-ottimi-ma-noiosi-parliamo-invece-di-apple.aspx&amp;amp;title=I numeri sulle vulnerabilit&amp;agrave; di Windows Vista? Ottimi ma noiosi... parliamo invece di Apple" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/19/i-numeri-sulle-vulnerabilit-di-windows-vista-ottimi-ma-noiosi-parliamo-invece-di-apple.aspx&amp;amp;title=I numeri sulle vulnerabilit&amp;agrave; di Windows Vista? Ottimi ma noiosi... parliamo invece di Apple" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/19/i-numeri-sulle-vulnerabilit-di-windows-vista-ottimi-ma-noiosi-parliamo-invece-di-apple.aspx&amp;amp;t=I numeri sulle vulnerabilit&amp;agrave; di Windows Vista? Ottimi ma noiosi... parliamo invece di Apple" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3057378" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Rilasciato il Microsoft Baseline Security Analyzer 2.1</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx</link><pubDate>Fri, 16 May 2008 10:27:05 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3056180</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>2</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3056180.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3056180</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;L'amicollega (ho coniato un neologismo!) &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2007/06/29/Stirling-la-prossima-versione-della-suite-Forefront.aspx" target="_blank"&gt;Andrea Piazza&lt;/a&gt; del mio security team &lt;strong&gt;&lt;em&gt;Microsoft Premier Center for Security&lt;/em&gt;&lt;/strong&gt; &lt;strong&gt;&lt;em&gt;(PCfS)&lt;/em&gt;&lt;/strong&gt; mi ha segnalato un rilascio importante per gli amministratori di sicurezza su piattaforma Microsoft:&lt;/font&gt;&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;&lt;font face="Calibri" size="3"&gt;il tool &lt;a href="http://www.microsoft.com/technet/security/tools/mbsa2_1/default.mspx" target="_blank"&gt;&lt;strong&gt;Microsoft Baseline Security Analyzer 2.1&lt;/strong&gt;&lt;/a&gt;&lt;/font&gt;&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Per coloro che ancora non conoscessero &lt;a href="http://www.microsoft.com/technet/Security/tools/mbsahome.mspx" target="_blank"&gt;&lt;strong&gt;MBSA&lt;/strong&gt;&lt;/a&gt;: &amp;#232; il tool gratuito che permette di operare la scansione remota/locale dei sistemi Windows per individuare le security patch mancanti e per verificare lo stato di alcune importanti configurazioni di sicurezza. Il tool si &amp;#232; evoluto nel tempo migliorando via via la sua integrazione con la contemporanea evoluzione delle soluzioni e dei servizi di &lt;a href="http://www.microsoft.com/technet/security/tools/default.mspx#EPC" target="_blank"&gt;Security Patch Management&lt;/a&gt; di Microsoft. L'ultima versione rilasciata ha queste novit&amp;#224;:&lt;/font&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;font color="#0000ff"&gt;Support for Windows Vista and Windows Server 2008&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Updated graphical user interface&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Full support for 64-bit platforms and vulnerability assessment (VA) checks against 64-bit platforms and components&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Improved support for Windows XP Embedded platform&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Improved support for SQL Server 2005 vulnerability assessment (VA) checks&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Automatic Microsoft Update registration and agent update (if selected) using the graphical interface or from the command-line tool using the /ia feature&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;New feature to output completed scan reports to a user-selected directory path or network share (command-line /rd feature)&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Windows Server Update Services 2.0 and 3.0 compatibility&lt;/font&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Approfittando del ripasso su MBSA ho anche appreso della presenza di una versione gratuita del tool &lt;a href="http://www.shavlik.com/products/netchk-limited.aspx" target="_blank"&gt;&lt;strong&gt;NetChk Limited&lt;/strong&gt; della &lt;strong&gt;Shavlik&lt;/strong&gt;&lt;/a&gt; (MBSA &amp;#232; nato dalla collaborazione con la Shavlik) che permette di operare la scansione di quei prodotti Microsoft che non sono supportati da MBSA 2.0 e successive versioni: segnatevi &lt;a href="http://support.microsoft.com/kb/895660" target="_blank"&gt;questo fondamentale articolo &lt;strong&gt;895660&lt;/strong&gt;&lt;/a&gt; della Microsoft Knowledge Base dove c'&amp;#232; &lt;u&gt;la tabella comparativa dei prodotti supportarti dalla varie versioni MBSA e dal tool integrativo EST&lt;/u&gt; (&amp;#232; una tabella da tenere sempre a portata di mano per chi si occupa di Security Patch Management). I prodotti supportati da NetChk Limited sono a questo &lt;a href="http://www.shavlik.com/netchk-limited-supported-products.aspx" target="_blank"&gt;link&lt;/a&gt;.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;;title=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;title=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;title=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;title=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;t=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3056180" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx</link><pubDate>Tue, 13 May 2008 20:12:08 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3054728</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3054728.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3054728</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Dopo avervi fornito su &lt;a href="http://www.mclips.it/archive/2008/05/13/bollettini-di-sicurezza-di-maggio-pochi-ma-buoni.aspx" target="_blank"&gt;&lt;strong&gt;MClips&lt;/strong&gt;&lt;/a&gt; le considerazioni pi&amp;#249; generali dell'emissione di bollettini di sicurezza di maggio, eccovi un'analisi pi&amp;#249; di dettaglio:&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://blogs.technet.com/photos/pcfs-gallery/images/3054727/original.aspx" target="_blank"&gt;&lt;img src="http://blogs.technet.com/photos/pcfs-gallery/images/3054727/secondarythumb.aspx" /&gt;&lt;/a&gt;&amp;#160; &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;/font&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-026.mspx" target="_blank"&gt;MS08-026&lt;/a&gt;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt; su &lt;strong&gt;Word&lt;/strong&gt;: due vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; relative &lt;u&gt;a tutte le versioni attualmente supportate di &lt;strong&gt;Office&lt;/strong&gt;&lt;/u&gt; che permetterebbero di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato. Il vettore di attacco &amp;#232; diverso per le due vulnerabilit&amp;#224;: per la prima consiste in file/email di tipo RTF (&lt;em&gt;Rich Text Format&lt;/em&gt;), per la seconda consiste in file di Word. In virt&amp;#249; di quanto detto questo bollettino merita una sollecitudine particolare all'aggiornamento da parte degli utenti dotati di &lt;strong&gt;Outlook 2007&lt;/strong&gt; e &lt;strong&gt;Outlook 2007 SP1&lt;/strong&gt;: queste versioni utilizzano nativamente Word come editor predefinito e quindi sono soggette all'attacco da parte di email malformate ad-hoc in formato RTF se vengono visualizzate (anche in preview) in formato RTF/HTML (in queste situazioni la visualizzazione in formato solo testo &amp;#232; un valido workaround in attesa dell'aggiornamento).         &lt;br /&gt;&lt;strong&gt;Questo aggiornamento introduce inoltre un miglioramento funzionale di sicurezza&lt;/strong&gt;: all'utente ora viene chiesta una conferma esplicita prima di procedere all'esecuzione di comandi/query SQL in caso di database Jet inclusi in documenti Word (per irrobustire la protezione da attacchi segnalati dal &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/03/22/security-advisory-950627-relativo-ad-una-vulnerabilit-in-jet.aspx" target="_blank"&gt;Security Advisory 950627&lt;/a&gt; e indirizzati dal bollettino &lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-028.mspx" target="_blank"&gt;MS08-028&lt;/a&gt;).&lt;/font&gt; &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-027.mspx" target="_blank"&gt;MS08-027&lt;/a&gt;&amp;#160;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt;su &lt;strong&gt;Publisher&lt;/strong&gt;: una vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; relativa &lt;u&gt;a tutte le versioni attualmente supportate di &lt;strong&gt;Office&lt;/strong&gt;&lt;/u&gt; che permetterebbero di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato tramite l'apertura di file di Publisher malformati ad-hoc.&lt;/font&gt; &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-028.mspx" target="_blank"&gt;MS08-028&lt;/a&gt;&amp;#160;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt;sul &lt;strong&gt;Microsoft Jet 4.0 Database Engine (Jet)&lt;/strong&gt; in &lt;strong&gt;Windows&lt;/strong&gt;: una vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; (gi&amp;#224; nota pubblicamente, e di cui era gi&amp;#224; nota la presenza di exploit) relativa &lt;u&gt;solo alle versioni meno recenti e meno aggiornate di Windows&lt;/u&gt; (&lt;strong&gt;Windows 2000 SP4, Windows XP SP2 e Windows Server 2003 SP1&lt;/strong&gt;) che permetterebbero di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato tramite l'invio di query malformate ad-hoc ad applicazioni che utilizzano JET (il vettore di attacco tipico &amp;#232; l'invio di file MDB, direttamente o inclusi in documenti Word/email; gli utenti dotati di Outlook 2003/2007 sono a rischio anche rispetto alla visualizzazione in HTML in preview).&lt;/font&gt; &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-029.mspx" target="_blank"&gt;MS08-029&lt;/a&gt;&amp;#160;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt;sul &lt;strong&gt;Microsoft Malware Protection Engine&lt;/strong&gt; incluso in &lt;strong&gt;Windows Live OneCare&lt;/strong&gt;, &lt;strong&gt;Microsoft Antigen for Exchange&lt;/strong&gt;, &lt;strong&gt;Microsoft Antigen for SMTP Gateway&lt;/strong&gt;, &lt;strong&gt;Microsoft Windows Defender&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Client Security&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Security for Exchange Server&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Security for SharePoint&lt;/strong&gt;, &lt;strong&gt;Standalone System Sweeper&lt;/strong&gt; presente in &lt;strong&gt;Diagnostics and Recovery Toolset 6.0 (DaRT&lt;/strong&gt;): due vulnerabilit&amp;#224; &lt;em&gt;Moderate&lt;/em&gt; di tipo &lt;em&gt;Denial of Service&lt;/em&gt; che permetterebbero di far smettere di funzionare (e di far ripartire automaticamente) i suddetti prodotti tramite l'invio di un file malformato ad-hoc e sottoposto a scansione da parte del Malware Protection Engine. &lt;/font&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Ho anche aggiornato il &lt;/font&gt;&lt;a href="http://blogs.technet.com/feliciano_intini/pages/riepilogo-analisi-e-risorse-su-security-bulletin-e-security-advisory-di-microsoft.aspx"&gt;&lt;font face="Calibri" size="3"&gt;mini-portale tematico&lt;/font&gt;&lt;/a&gt;&lt;font face="Calibri" size="3"&gt; che raccoglie le risorse sui Security Bulletin.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;t=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3054728" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0-Application+Security/default.aspx">3.0-Application Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.2-Office+Security/default.aspx">3.2-Office Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.3-Forefront+Client+Security/default.aspx">2.3-Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.4-Malware+and+Attack+analysis/default.aspx">2.4-Malware and Attack analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Windows 2000 più sicuro di Vista? La matematica non è un'opinione...</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/12/windows-2000-pi-sicuro-di-vista-la-matematica-non-un-opinione.aspx</link><pubDate>Mon, 12 May 2008 10:23:33 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3054022</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>5</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3054022.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3054022</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;La notizia segnalata dal lettore nel &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/05/09/4-bollettini-in-arrivo-per-maggio-2008.aspx#comments" target="_blank"&gt;commento al mio ultimo post&lt;/a&gt; era effettivamente troppo succosa per non essere ripresa da un discreto numero di testate... visto che si poteva mettere in cattiva luce la sicurezza di Vista!&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;In sintesi: Simon Clausen, il CEO di PC Tools, ha commentato le statistiche di disinfezione del loro strumento anti-malware ThreatFire &lt;/font&gt;&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;&lt;em&gt;&amp;quot;Ironically, the new operating system has been hailed by Microsoft as the most secure version of Windows to date, however, recent research conducted with statistics from over 1.4 million computers within the ThreatFire community has shown that Windows Vista is more susceptible to malware than the eight year old Windows 2000 operating system, and only 37% more secure than Windows XP.&amp;quot;&lt;/em&gt;&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;E' un tema che questo mio blog dibatte &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/01/24/windows-vista-ancora-vincente-nel-report-sul-confronto-di-vulnerabilit-del-primo-anno.aspx" target="_blank"&gt;spesso e volentieri&lt;/a&gt;: &lt;u&gt;come si fa a dedurre considerazioni generali sulla sicurezza di un sistema operativo da queste metriche parziali (e spesso opinabili)&lt;/u&gt;? &lt;font face="Calibri" size="3"&gt;Con tutto il rispetto per PC Tools e per i suoi prodotti/servizi di sicurezza, &amp;#232; triste notare come il CEO di un'azienda di rilievo nel panorama informatico si presti a questi atteggiamenti di propaganda: avrei voglia di chiedere a Mr. Clausen, ma lei ci &amp;#232; o ci fa?&lt;/font&gt; Se crede davvero a quello che ha detto forse &amp;#232; meglio che si occupi di altro rispetto alla sicurezza, se invece (come credo) ha pensato utile metterla in quel modo per strategia marketing (il fatto che grazie a questa notizia si sia ottenuta pubblicit&amp;#224; gratuita ai servizi di sicurezza di PC Tools, non &amp;#232; un risultato da poco...) beh allora... siamo alla frutta!&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Questi risultati vanno presi come sono: indicazioni statistiche che possono mostrare dei trend, &lt;u&gt;se l'analisi dei dati viene fatta in modo serio&lt;/u&gt;.&lt;/font&gt; &lt;font face="Calibri" size="3"&gt;Qualcuno infatti ha poi recuperato i dati del recente &lt;font color="#000000"&gt;&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/04/23/pubblicata-la-4a-edizione-del-microsoft-security-intelligent-report.aspx" target="_blank"&gt;&lt;strong&gt;Microsoft Security Intelligence Report&lt;/strong&gt;&lt;/a&gt;&lt;/font&gt; trovando addirittura parziale conferma alle affermazioni di PC Tools, dicendo che &lt;em&gt;&amp;quot;...Windows 2000 &amp;#232; ancora pi&amp;#249; sicuro di un sistema con XP...&lt;/em&gt;&amp;quot; !!!&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;E qui, dopo aver contestato il metodo (induttivo, che usa questa equivalenza: meno malware rilevato = sistema pi&amp;#249; sicuro), vengo alla contestazione sul merito dei numeri.&lt;/font&gt;&lt;/p&gt;  &lt;ol&gt;   &lt;li&gt;&lt;font face="Calibri" size="3"&gt;Confrontate voi la valenza statistica di una ricerca fatta su 1.4 milioni di PC rispetto a quella Microsoft realizzata su 450 milioni di PC ...&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;Chi analizza i numeri dovrebbe almeno leggere il report per intero: da un lato i numeri normalizzati riportati da Microsoft sembrano dar adito all'affermazione virgolettata (Windows 2000 meglio di Windows XP), poich&amp;#233; a pag.48 si legge...       &lt;br /&gt;Windows Vista = 2,8%        &lt;br /&gt;Windows XP SP2 = 7,2%        &lt;br /&gt;Windows 2000 SP4 = 5,0%        &lt;br /&gt;Windows 2003 SP2 = 1,5%        &lt;br /&gt;... ma giusto nella pagina seguente (pag.49) si legge: &amp;quot;&lt;/font&gt;&lt;em&gt;The infection rate of Windows 2000 SP4, &lt;u&gt;which includes both server and client editions&lt;/u&gt;, falls between the infection rates of the pure server version (Windows Server 2003 SP2) and the client version (Windows XP SP2). Servers are typically accessed directly only by trained system administrators in controlled enterprise environments, so their effective attack surface tends to be much lower than computers running client operating systems&lt;/em&gt;&lt;font face="Calibri" size="3"&gt;&amp;quot;.&lt;/font&gt;&lt;/li&gt; &lt;/ol&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Ritenete che siano dati confrontabili? Ha senso sparare notizie sensazionalistiche se non si analizzano i dati? &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Quanta superficialit&amp;#224; sta emergendo nell'informazione... :-((((&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/12/windows-2000-pi-sicuro-di-vista-la-matematica-non-un-opinione.aspx&amp;amp;;title=Windows 2000 pi&amp;ugrave; sicuro di Vista? La matematica non &amp;egrave; un'opinione..." target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/12/windows-2000-pi-sicuro-di-vista-la-matematica-non-un-opinione.aspx&amp;amp;title=Windows 2000 pi&amp;ugrave; sicuro di Vista? La matematica non &amp;egrave; un'opinione..." target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/12/windows-2000-pi-sicuro-di-vista-la-matematica-non-un-opinione.aspx&amp;amp;title=Windows 2000 pi&amp;ugrave; sicuro di Vista? La matematica non &amp;egrave; un'opinione..." target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/12/windows-2000-pi-sicuro-di-vista-la-matematica-non-un-opinione.aspx&amp;amp;title=Windows 2000 pi&amp;ugrave; sicuro di Vista? La matematica non &amp;egrave; un'opinione..." target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/12/windows-2000-pi-sicuro-di-vista-la-matematica-non-un-opinione.aspx&amp;amp;t=Windows 2000 pi&amp;ugrave; sicuro di Vista? La matematica non &amp;egrave; un'opinione..." target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3054022" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/z-Anti-FUD/default.aspx">z-Anti-FUD</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.4-Malware+and+Attack+analysis/default.aspx">2.4-Malware and Attack analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item></channel></rss>