<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Security Blog di Feliciano Intini : 2.5-Windows Server 2008 Security</title><link>http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx</link><description>Tags: 2.5-Windows Server 2008 Security</description><dc:language>en-US</dc:language><generator>CommunityServer 2.1 SP1 (Build: 61025.2)</generator><item><title>Nuovi video seminari Technet Spotlight sulla sicurezza</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/08/04/nuovi-video-seminari-technet-spotlight-sulla-sicurezza.aspx</link><pubDate>Mon, 04 Aug 2008 13:53:28 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3098263</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3098263.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3098263</wfw:commentRss><description>Sia che siate in vacanza, sia che siate ancora/gi&amp;#224; al lavoro, probabilmente in questo periodo avrete un po' di tempo libero in pi&amp;#249; del solito. Il mio personale invito &amp;#232; sicuramente quello di usarlo per ritemprarvi nel corpo e nello spirito,...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/08/04/nuovi-video-seminari-technet-spotlight-sulla-sicurezza.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3098263" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/4.3-Rights+Management+Services/default.aspx">4.3-Rights Management Services</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/z-Video/default.aspx">z-Video</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/1.0-Network+Security/default.aspx">1.0-Network Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/1.4-Forefront+Threat+Management+Gateway+_2800_TMG_2900_/default.aspx">1.4-Forefront Threat Management Gateway (TMG)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.4-Malware+and+Attack+analysis/default.aspx">2.4-Malware and Attack analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.6-Forefront+Stirling/default.aspx">2.6-Forefront Stirling</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Hacking/default.aspx">Hacking</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Virtualization+Security/default.aspx">Virtualization Security</category></item><item><title>Analisi di rischio sui Bollettini di sicurezza Microsoft - luglio 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/07/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-luglio-2008.aspx</link><pubDate>Wed, 09 Jul 2008 11:53:40 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3086111</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>8</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3086111.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3086111</wfw:commentRss><description>Rieccoci al consueto appuntamento di analisi dei bollettini di sicurezza Microsoft: come gi&amp;#224; anticipato venerd&amp;#236; scorso , questo mese vede l'emissione di 4 bollettini , tutti con rating Important , che risolvono un totale di 9 vulnerabilit&amp;#224;...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/07/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-luglio-2008.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3086111" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0-Application+Security/default.aspx">3.0-Application Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.4-SQL+Security/default.aspx">3.4-SQL Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.7-Exchange+Security/default.aspx">3.7-Exchange Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Adobe Reader 9: più sicuro o meno sicuro delle versioni precedenti?</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/07/04/adobe-reader-9-pi-sicuro-o-meno-sicuro-delle-versioni-precedenti.aspx</link><pubDate>Fri, 04 Jul 2008 14:20:52 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3083683</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>6</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3083683.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3083683</wfw:commentRss><description>... lascio a voi dare una risposta, dopo aver letto i due post che vi propongo di seguito. Il primo &amp;#232; quello del mio collega Robert Hensing , che ha verificato come la versione di Adobe Reader 9 abbia finalmente incluso il supporto (su Windows Vista...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/07/04/adobe-reader-9-pi-sicuro-o-meno-sicuro-delle-versioni-precedenti.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3083683" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Adobe+Security/default.aspx">Adobe Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category></item><item><title>4 bollettini di sicurezza Microsoft in arrivo per luglio 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/07/04/4-bollettini-di-sicurezza-microsoft-in-arrivo-per-luglio-2008.aspx</link><pubDate>Fri, 04 Jul 2008 09:01:34 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3083507</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>3</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3083507.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3083507</wfw:commentRss><description>Approccio per cos&amp;#236; dire... semi-estivo... al rilascio dei bollettini di sicurezza Microsoft previsti per il prossimo 8 luglio: sono attesi solo 4 bollettini e solo con rating Important , come potete osservare dalla tabella di sintesi Maggiori dettagli...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/07/04/4-bollettini-di-sicurezza-microsoft-in-arrivo-per-luglio-2008.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3083507" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.4-SQL+Security/default.aspx">3.4-SQL Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.7-Exchange+Security/default.aspx">3.7-Exchange Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Nuova guida su NAP nella serie delle nuove guide Microsoft Infrastructure Planning &amp; Design (IPD)</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/30/nuova-guida-su-nap-nella-serie-delle-nuove-guide-microsoft-infrastructure-planning-design-ipd.aspx</link><pubDate>Mon, 30 Jun 2008 16:06:55 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3080957</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3080957.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3080957</wfw:commentRss><description>In pieno stile serendipity , leggendo l'ultimo post sul blog di NAP non solo ho appreso di una nuova interessante guida che vi aiuta nelle scelte architetturali da prendere di fronte alla progettazione di una soluzione NAP: Selecting the Right NAP Architecture...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/30/nuova-guida-su-nap-nella-serie-delle-nuove-guide-microsoft-infrastructure-planning-design-ipd.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3080957" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/5.2.0-SCOM+2007+_2800_ACS_2900_/default.aspx">5.2.0-SCOM 2007 (ACS)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Active+Directory/default.aspx">Active Directory</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/1.0-Network+Security/default.aspx">1.0-Network Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/1.1-NAP/default.aspx">1.1-NAP</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category></item><item><title>Video e risorse sulla nuova funzionalità "fine-grained password policies" di Windows Server 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/30/video-e-risorse-sulla-nuova-funzionalit-fine-grained-password-policies-di-windows-server-2008.aspx</link><pubDate>Mon, 30 Jun 2008 12:52:36 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3080863</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3080863.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3080863</wfw:commentRss><description>In questi giorni, per puro caso, mi sono capitate tra le mani una serie di risorse che permettono di approfondire una tra le pi&amp;#249; attese funzionalit&amp;#224; di Active Directory (AD) , finalmente implementata in Windows Server 2008 : la possibilit&amp;#224;...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/30/video-e-risorse-sulla-nuova-funzionalit-fine-grained-password-policies-di-windows-server-2008.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3080863" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Account+Lockout/default.aspx">Account Lockout</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Active+Directory/default.aspx">Active Directory</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/Password/default.aspx">Password</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category></item><item><title>Analisi di rischio sui Bollettini di sicurezza Microsoft - giugno 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-giugno-2008.aspx</link><pubDate>Fri, 13 Jun 2008 10:30:50 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3070425</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3070425.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3070425</wfw:commentRss><description>Lo so, lo so... vi stavate domandando dove fossi finito e cosa fosse successo di tanto importante da impedirmi di postare la consueta analisi di rischio sui bollettini di sicurezza Microsoft durante la classica notte del secondo marted&amp;#236; del mese....(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-giugno-2008.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3070425" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>7 bollettini di sicurezza Microsoft in arrivo per giugno 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/06/06/7-bollettini-di-sicurezza-microsoft-in-arrivo-per-giugno-2008.aspx</link><pubDate>Fri, 06 Jun 2008 12:02:36 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3066986</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3066986.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3066986</wfw:commentRss><description>Ecco la puntuale anticipazione sui bollettini di sicurezza Microsoft per il mese di giugno, questa volta tutti dedicati alla famiglia Windows (lo so che vi viene facile una battuta: che il team di Office sia andato in vacanza?... :-)), in particolare...(&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/06/06/7-bollettini-di-sicurezza-microsoft-in-arrivo-per-giugno-2008.aspx"&gt;read more&lt;/a&gt;)&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3066986" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Nuovi whitepaper su Windows Server 2008 Certificate Services</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/26/nuovi-whitepaper-su-windows-server-2008-certificate-services.aspx</link><pubDate>Mon, 26 May 2008 15:43:41 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3061259</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3061259.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3061259</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Giorgio Malusardi riprende sul suo &lt;a href="http://blogs.technet.com/pgmalusardi/archive/2008/05/26/windows-server-2008-certification-authorityty.aspx" target="_blank"&gt;blog&lt;/a&gt; la notizia dei freschissimi whitepaper relativi ai &lt;strong&gt;Certificate Services&lt;/strong&gt; di &lt;strong&gt;Windows Server 2008&lt;/strong&gt; annunciati sul &lt;a href="http://blogs.technet.com/pki/archive/2008/05/25/new-whitepapers-about-windows-server-2008-certificate-services.aspx" target="_blank"&gt;Windows PKI blog&lt;/a&gt;:&lt;/font&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;a href="http://technet2.microsoft.com/windowsserver2008/en/library/fcb66b2a-2d32-405f-9ed1-b10d27e424c31033.mspx"&gt;Configuring and Troubleshooting Certification Authority Clustering in Windows Server 2008&lt;/a&gt;&lt;/li&gt;    &lt;li&gt;&lt;a href="http://technet2.microsoft.com/windowsserver2008/en/library/fcb66b2a-2d32-405f-9ed1-b10d27e424c31033.mspx?mfr=true"&gt;Active Directory Certificate Services Upgrade and Migration Guide&lt;/a&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;A breve verranno aggiunti al mio &lt;a href="http://blogs.technet.com/feliciano_intini/pages/microsoft-blogs-and-web-resources-about-security.aspx" target="_blank"&gt;Microsoft Security Portal&lt;/a&gt; (quasi pronta la versione 2.0!!).&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/26/nuovi-whitepaper-su-windows-server-2008-certificate-services.aspx&amp;amp;;title=Nuovi whitepaper su Windows Server 2008 Certificate Services" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/26/nuovi-whitepaper-su-windows-server-2008-certificate-services.aspx&amp;amp;title=Nuovi whitepaper su Windows Server 2008 Certificate Services" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/26/nuovi-whitepaper-su-windows-server-2008-certificate-services.aspx&amp;amp;title=Nuovi whitepaper su Windows Server 2008 Certificate Services" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/26/nuovi-whitepaper-su-windows-server-2008-certificate-services.aspx&amp;amp;title=Nuovi whitepaper su Windows Server 2008 Certificate Services" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/26/nuovi-whitepaper-su-windows-server-2008-certificate-services.aspx&amp;amp;t=Nuovi whitepaper su Windows Server 2008 Certificate Services" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3061259" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/5.0.0-Security+Foundations+_2800_Technology_2900_/default.aspx">5.0.0-Security Foundations (Technology)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/5.1.0-Identity+_2600_amp_3B00_+Access+Mgmt+_2800_IdA_2900_/default.aspx">5.1.0-Identity &amp;amp; Access Mgmt (IdA)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category></item><item><title>Rilasciato il Microsoft Baseline Security Analyzer 2.1</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx</link><pubDate>Fri, 16 May 2008 10:27:05 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3056180</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>2</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3056180.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3056180</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;L'amicollega (ho coniato un neologismo!) &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2007/06/29/Stirling-la-prossima-versione-della-suite-Forefront.aspx" target="_blank"&gt;Andrea Piazza&lt;/a&gt; del mio security team &lt;strong&gt;&lt;em&gt;Microsoft Premier Center for Security&lt;/em&gt;&lt;/strong&gt; &lt;strong&gt;&lt;em&gt;(PCfS)&lt;/em&gt;&lt;/strong&gt; mi ha segnalato un rilascio importante per gli amministratori di sicurezza su piattaforma Microsoft:&lt;/font&gt;&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;&lt;font face="Calibri" size="3"&gt;il tool &lt;a href="http://www.microsoft.com/technet/security/tools/mbsa2_1/default.mspx" target="_blank"&gt;&lt;strong&gt;Microsoft Baseline Security Analyzer 2.1&lt;/strong&gt;&lt;/a&gt;&lt;/font&gt;&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Per coloro che ancora non conoscessero &lt;a href="http://www.microsoft.com/technet/Security/tools/mbsahome.mspx" target="_blank"&gt;&lt;strong&gt;MBSA&lt;/strong&gt;&lt;/a&gt;: &amp;#232; il tool gratuito che permette di operare la scansione remota/locale dei sistemi Windows per individuare le security patch mancanti e per verificare lo stato di alcune importanti configurazioni di sicurezza. Il tool si &amp;#232; evoluto nel tempo migliorando via via la sua integrazione con la contemporanea evoluzione delle soluzioni e dei servizi di &lt;a href="http://www.microsoft.com/technet/security/tools/default.mspx#EPC" target="_blank"&gt;Security Patch Management&lt;/a&gt; di Microsoft. L'ultima versione rilasciata ha queste novit&amp;#224;:&lt;/font&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;font color="#0000ff"&gt;Support for Windows Vista and Windows Server 2008&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Updated graphical user interface&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Full support for 64-bit platforms and vulnerability assessment (VA) checks against 64-bit platforms and components&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Improved support for Windows XP Embedded platform&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Improved support for SQL Server 2005 vulnerability assessment (VA) checks&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Automatic Microsoft Update registration and agent update (if selected) using the graphical interface or from the command-line tool using the /ia feature&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;New feature to output completed scan reports to a user-selected directory path or network share (command-line /rd feature)&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font color="#0000ff"&gt;Windows Server Update Services 2.0 and 3.0 compatibility&lt;/font&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Approfittando del ripasso su MBSA ho anche appreso della presenza di una versione gratuita del tool &lt;a href="http://www.shavlik.com/products/netchk-limited.aspx" target="_blank"&gt;&lt;strong&gt;NetChk Limited&lt;/strong&gt; della &lt;strong&gt;Shavlik&lt;/strong&gt;&lt;/a&gt; (MBSA &amp;#232; nato dalla collaborazione con la Shavlik) che permette di operare la scansione di quei prodotti Microsoft che non sono supportati da MBSA 2.0 e successive versioni: segnatevi &lt;a href="http://support.microsoft.com/kb/895660" target="_blank"&gt;questo fondamentale articolo &lt;strong&gt;895660&lt;/strong&gt;&lt;/a&gt; della Microsoft Knowledge Base dove c'&amp;#232; &lt;u&gt;la tabella comparativa dei prodotti supportarti dalla varie versioni MBSA e dal tool integrativo EST&lt;/u&gt; (&amp;#232; una tabella da tenere sempre a portata di mano per chi si occupa di Security Patch Management). I prodotti supportati da NetChk Limited sono a questo &lt;a href="http://www.shavlik.com/netchk-limited-supported-products.aspx" target="_blank"&gt;link&lt;/a&gt;.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;;title=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;title=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;title=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;title=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/16/rilasciato-il-microsoft-baseline-security-analyzer-2-1.aspx&amp;amp;t=Rilasciato il Microsoft Baseline Security Analyzer 2.1" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3056180" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx</link><pubDate>Tue, 13 May 2008 20:12:08 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3054728</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3054728.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3054728</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Dopo avervi fornito su &lt;a href="http://www.mclips.it/archive/2008/05/13/bollettini-di-sicurezza-di-maggio-pochi-ma-buoni.aspx" target="_blank"&gt;&lt;strong&gt;MClips&lt;/strong&gt;&lt;/a&gt; le considerazioni pi&amp;#249; generali dell'emissione di bollettini di sicurezza di maggio, eccovi un'analisi pi&amp;#249; di dettaglio:&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://blogs.technet.com/photos/pcfs-gallery/images/3054727/original.aspx" target="_blank"&gt;&lt;img src="http://blogs.technet.com/photos/pcfs-gallery/images/3054727/secondarythumb.aspx" /&gt;&lt;/a&gt;&amp;#160; &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;/font&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-026.mspx" target="_blank"&gt;MS08-026&lt;/a&gt;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt; su &lt;strong&gt;Word&lt;/strong&gt;: due vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; relative &lt;u&gt;a tutte le versioni attualmente supportate di &lt;strong&gt;Office&lt;/strong&gt;&lt;/u&gt; che permetterebbero di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato. Il vettore di attacco &amp;#232; diverso per le due vulnerabilit&amp;#224;: per la prima consiste in file/email di tipo RTF (&lt;em&gt;Rich Text Format&lt;/em&gt;), per la seconda consiste in file di Word. In virt&amp;#249; di quanto detto questo bollettino merita una sollecitudine particolare all'aggiornamento da parte degli utenti dotati di &lt;strong&gt;Outlook 2007&lt;/strong&gt; e &lt;strong&gt;Outlook 2007 SP1&lt;/strong&gt;: queste versioni utilizzano nativamente Word come editor predefinito e quindi sono soggette all'attacco da parte di email malformate ad-hoc in formato RTF se vengono visualizzate (anche in preview) in formato RTF/HTML (in queste situazioni la visualizzazione in formato solo testo &amp;#232; un valido workaround in attesa dell'aggiornamento).         &lt;br /&gt;&lt;strong&gt;Questo aggiornamento introduce inoltre un miglioramento funzionale di sicurezza&lt;/strong&gt;: all'utente ora viene chiesta una conferma esplicita prima di procedere all'esecuzione di comandi/query SQL in caso di database Jet inclusi in documenti Word (per irrobustire la protezione da attacchi segnalati dal &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/03/22/security-advisory-950627-relativo-ad-una-vulnerabilit-in-jet.aspx" target="_blank"&gt;Security Advisory 950627&lt;/a&gt; e indirizzati dal bollettino &lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-028.mspx" target="_blank"&gt;MS08-028&lt;/a&gt;).&lt;/font&gt; &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-027.mspx" target="_blank"&gt;MS08-027&lt;/a&gt;&amp;#160;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt;su &lt;strong&gt;Publisher&lt;/strong&gt;: una vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; relativa &lt;u&gt;a tutte le versioni attualmente supportate di &lt;strong&gt;Office&lt;/strong&gt;&lt;/u&gt; che permetterebbero di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato tramite l'apertura di file di Publisher malformati ad-hoc.&lt;/font&gt; &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-028.mspx" target="_blank"&gt;MS08-028&lt;/a&gt;&amp;#160;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt;sul &lt;strong&gt;Microsoft Jet 4.0 Database Engine (Jet)&lt;/strong&gt; in &lt;strong&gt;Windows&lt;/strong&gt;: una vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; (gi&amp;#224; nota pubblicamente, e di cui era gi&amp;#224; nota la presenza di exploit) relativa &lt;u&gt;solo alle versioni meno recenti e meno aggiornate di Windows&lt;/u&gt; (&lt;strong&gt;Windows 2000 SP4, Windows XP SP2 e Windows Server 2003 SP1&lt;/strong&gt;) che permetterebbero di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato tramite l'invio di query malformate ad-hoc ad applicazioni che utilizzano JET (il vettore di attacco tipico &amp;#232; l'invio di file MDB, direttamente o inclusi in documenti Word/email; gli utenti dotati di Outlook 2003/2007 sono a rischio anche rispetto alla visualizzazione in HTML in preview).&lt;/font&gt; &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-029.mspx" target="_blank"&gt;MS08-029&lt;/a&gt;&amp;#160;&lt;/font&gt;&lt;/strong&gt;&lt;font face="Calibri" size="3"&gt;sul &lt;strong&gt;Microsoft Malware Protection Engine&lt;/strong&gt; incluso in &lt;strong&gt;Windows Live OneCare&lt;/strong&gt;, &lt;strong&gt;Microsoft Antigen for Exchange&lt;/strong&gt;, &lt;strong&gt;Microsoft Antigen for SMTP Gateway&lt;/strong&gt;, &lt;strong&gt;Microsoft Windows Defender&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Client Security&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Security for Exchange Server&lt;/strong&gt;, &lt;strong&gt;Microsoft Forefront Security for SharePoint&lt;/strong&gt;, &lt;strong&gt;Standalone System Sweeper&lt;/strong&gt; presente in &lt;strong&gt;Diagnostics and Recovery Toolset 6.0 (DaRT&lt;/strong&gt;): due vulnerabilit&amp;#224; &lt;em&gt;Moderate&lt;/em&gt; di tipo &lt;em&gt;Denial of Service&lt;/em&gt; che permetterebbero di far smettere di funzionare (e di far ripartire automaticamente) i suddetti prodotti tramite l'invio di un file malformato ad-hoc e sottoposto a scansione da parte del Malware Protection Engine. &lt;/font&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Ho anche aggiornato il &lt;/font&gt;&lt;a href="http://blogs.technet.com/feliciano_intini/pages/riepilogo-analisi-e-risorse-su-security-bulletin-e-security-advisory-di-microsoft.aspx"&gt;&lt;font face="Calibri" size="3"&gt;mini-portale tematico&lt;/font&gt;&lt;/a&gt;&lt;font face="Calibri" size="3"&gt; che raccoglie le risorse sui Security Bulletin.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/13/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-maggio-2008.aspx&amp;amp;t=Analisi di rischio sui Bollettini di sicurezza Microsoft - maggio 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3054728" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0-Application+Security/default.aspx">3.0-Application Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.2-Office+Security/default.aspx">3.2-Office Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.3-Forefront+Client+Security/default.aspx">2.3-Forefront Client Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.4-Malware+and+Attack+analysis/default.aspx">2.4-Malware and Attack analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Windows 2000 più sicuro di Vista? La matematica non è un'opinione...</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/05/12/windows-2000-pi-sicuro-di-vista-la-matematica-non-un-opinione.aspx</link><pubDate>Mon, 12 May 2008 10:23:33 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3054022</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>5</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3054022.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3054022</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;La notizia segnalata dal lettore nel &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/05/09/4-bollettini-in-arrivo-per-maggio-2008.aspx#comments" target="_blank"&gt;commento al mio ultimo post&lt;/a&gt; era effettivamente troppo succosa per non essere ripresa da un discreto numero di testate... visto che si poteva mettere in cattiva luce la sicurezza di Vista!&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;In sintesi: Simon Clausen, il CEO di PC Tools, ha commentato le statistiche di disinfezione del loro strumento anti-malware ThreatFire &lt;/font&gt;&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;&lt;em&gt;&amp;quot;Ironically, the new operating system has been hailed by Microsoft as the most secure version of Windows to date, however, recent research conducted with statistics from over 1.4 million computers within the ThreatFire community has shown that Windows Vista is more susceptible to malware than the eight year old Windows 2000 operating system, and only 37% more secure than Windows XP.&amp;quot;&lt;/em&gt;&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;E' un tema che questo mio blog dibatte &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/01/24/windows-vista-ancora-vincente-nel-report-sul-confronto-di-vulnerabilit-del-primo-anno.aspx" target="_blank"&gt;spesso e volentieri&lt;/a&gt;: &lt;u&gt;come si fa a dedurre considerazioni generali sulla sicurezza di un sistema operativo da queste metriche parziali (e spesso opinabili)&lt;/u&gt;? &lt;font face="Calibri" size="3"&gt;Con tutto il rispetto per PC Tools e per i suoi prodotti/servizi di sicurezza, &amp;#232; triste notare come il CEO di un'azienda di rilievo nel panorama informatico si presti a questi atteggiamenti di propaganda: avrei voglia di chiedere a Mr. Clausen, ma lei ci &amp;#232; o ci fa?&lt;/font&gt; Se crede davvero a quello che ha detto forse &amp;#232; meglio che si occupi di altro rispetto alla sicurezza, se invece (come credo) ha pensato utile metterla in quel modo per strategia marketing (il fatto che grazie a questa notizia si sia ottenuta pubblicit&amp;#224; gratuita ai servizi di sicurezza di PC Tools, non &amp;#232; un risultato da poco...) beh allora... siamo alla frutta!&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Questi risultati vanno presi come sono: indicazioni statistiche che possono mostrare dei trend, &lt;u&gt;se l'analisi dei dati viene fatta in modo serio&lt;/u&gt;.&lt;/font&gt; &lt;font face="Calibri" size="3"&gt;Qualcuno infatti ha poi recuperato i dati del recente &lt;font color="#000000"&gt;&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/04/23/pubblicata-la-4a-edizione-del-microsoft-security-intelligent-report.aspx" target="_blank"&gt;&lt;strong&gt;Microsoft Security Intelligence Report&lt;/strong&gt;&lt;/a&gt;&lt;/font&gt; trovando addirittura parziale conferma alle affermazioni di PC Tools, dicendo che &lt;em&gt;&amp;quot;...Windows 2000 &amp;#232; ancora pi&amp;#249; sicuro di un sistema con XP...&lt;/em&gt;&amp;quot; !!!&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;E qui, dopo aver contestato il metodo (induttivo, che usa questa equivalenza: meno malware rilevato = sistema pi&amp;#249; sicuro), vengo alla contestazione sul merito dei numeri.&lt;/font&gt;&lt;/p&gt;  &lt;ol&gt;   &lt;li&gt;&lt;font face="Calibri" size="3"&gt;Confrontate voi la valenza statistica di una ricerca fatta su 1.4 milioni di PC rispetto a quella Microsoft realizzata su 450 milioni di PC ...&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;Chi analizza i numeri dovrebbe almeno leggere il report per intero: da un lato i numeri normalizzati riportati da Microsoft sembrano dar adito all'affermazione virgolettata (Windows 2000 meglio di Windows XP), poich&amp;#233; a pag.48 si legge...       &lt;br /&gt;Windows Vista = 2,8%        &lt;br /&gt;Windows XP SP2 = 7,2%        &lt;br /&gt;Windows 2000 SP4 = 5,0%        &lt;br /&gt;Windows 2003 SP2 = 1,5%        &lt;br /&gt;... ma giusto nella pagina seguente (pag.49) si legge: &amp;quot;&lt;/font&gt;&lt;em&gt;The infection rate of Windows 2000 SP4, &lt;u&gt;which includes both server and client editions&lt;/u&gt;, falls between the infection rates of the pure server version (Windows Server 2003 SP2) and the client version (Windows XP SP2). Servers are typically accessed directly only by trained system administrators in controlled enterprise environments, so their effective attack surface tends to be much lower than computers running client operating systems&lt;/em&gt;&lt;font face="Calibri" size="3"&gt;&amp;quot;.&lt;/font&gt;&lt;/li&gt; &lt;/ol&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Ritenete che siano dati confrontabili? Ha senso sparare notizie sensazionalistiche se non si analizzano i dati? &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Quanta superficialit&amp;#224; sta emergendo nell'informazione... :-((((&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/05/12/windows-2000-pi-sicuro-di-vista-la-matematica-non-un-opinione.aspx&amp;amp;;title=Windows 2000 pi&amp;ugrave; sicuro di Vista? La matematica non &amp;egrave; un'opinione..." target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/12/windows-2000-pi-sicuro-di-vista-la-matematica-non-un-opinione.aspx&amp;amp;title=Windows 2000 pi&amp;ugrave; sicuro di Vista? La matematica non &amp;egrave; un'opinione..." target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/05/12/windows-2000-pi-sicuro-di-vista-la-matematica-non-un-opinione.aspx&amp;amp;title=Windows 2000 pi&amp;ugrave; sicuro di Vista? La matematica non &amp;egrave; un'opinione..." target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/05/12/windows-2000-pi-sicuro-di-vista-la-matematica-non-un-opinione.aspx&amp;amp;title=Windows 2000 pi&amp;ugrave; sicuro di Vista? La matematica non &amp;egrave; un'opinione..." target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/05/12/windows-2000-pi-sicuro-di-vista-la-matematica-non-un-opinione.aspx&amp;amp;t=Windows 2000 pi&amp;ugrave; sicuro di Vista? La matematica non &amp;egrave; un'opinione..." target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3054022" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/z-Anti-FUD/default.aspx">z-Anti-FUD</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.4-Malware+and+Attack+analysis/default.aspx">2.4-Malware and Attack analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Alcune risorse utili sul Security Auditing in Windows Vista e Windows Server 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/04/21/alcune-risorse-utili-sul-security-auditing-in-windows-vista-e-windows-server-2008.aspx</link><pubDate>Mon, 21 Apr 2008 11:40:23 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3041526</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>0</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3041526.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3041526</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Quando vi ho parlato della nuova proposizione strategica di Microsoft, &amp;quot;&lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/04/14/l-evoluzione-del-trustworthy-computing-end-to-end-trust-e2e.aspx" target="_blank"&gt;&lt;strong&gt;End to End Trust&lt;/strong&gt;&lt;/a&gt;&amp;quot;, vi ho riportato i due concetti cardine: maggiore &lt;strong&gt;Autenticazione&lt;/strong&gt; e miglior &lt;strong&gt;Audit&lt;/strong&gt;. L'ambito dell'Audit, se lo iniziamo ad osservare dal punto di vista tecnologico, &amp;#232; uno di quelli su cui la piattaforma Windows sta facendo i maggiori progressi rispetto agli albori. All'inizio (ai tempi di Windows NT) la generazione degli eventi di auditing in Windows non &amp;#232; stata pensata per essere esattamente uno strumento a supporto del professionista di sicurezza: l'obiettivo reale era quello di poter tracciare con il maggior livello di dettaglio il comportamento del sistema operativo per poter risolvere i suoi eventuali malfunzionamenti. Solo dopo si &amp;#232; compreso che era necessario modificare alcuni aspetti del meccanismo di &lt;em&gt;event logging&lt;/em&gt; anche a favore di una fruibilit&amp;#224; in area sicurezza, per realizzare un vero e proprio &lt;em&gt;security auditing&lt;/em&gt;. &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;strong&gt;Windows Vista&lt;/strong&gt; e &lt;strong&gt;Windows Server 2008&lt;/strong&gt; rappresentano le versioni su cui questa evoluzione ha raggiunto un livello, tanto atteso, di vera maturit&amp;#224;. A questo proposito, quindi, potrebbero interessarvi i riferimenti informativi che stanno gi&amp;#224; illustrando queste novit&amp;#224;:&lt;/font&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;font face="Calibri" size="3"&gt;Il blog &amp;quot;&lt;a href="http://blogs.msdn.com/ericfitz/default.aspx"&gt;Windows Security Logging and Other Esoterica&lt;/a&gt;&amp;quot; del team di Windows Auditing&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;Il blog &amp;quot;&lt;/font&gt;&lt;a href="http://blogs.technet.com/askds/default.aspx"&gt;&lt;font face="Calibri" size="3"&gt;Ask the Directory Services Team&lt;/font&gt;&lt;/a&gt;&lt;font face="Calibri" size="3"&gt;&amp;quot; del team Directory Services&lt;/font&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Ultima risorsa &lt;a href="http://blogs.technet.com/askds/archive/2008/03/27/one-stop-shop-for-auditing-in-windows-server-2008-and-windows-vista.aspx" target="_blank"&gt;segnalata&lt;/a&gt; &amp;#232; un utilissimo &lt;a href="http://support.microsoft.com/default.aspx?scid=kb;EN-US;947226" target="_blank"&gt;articolo di KB&lt;/a&gt; e un &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=82e6d48f-e843-40ed-8b10-b3b716f6b51b&amp;amp;DisplayLang=en" target="_blank"&gt;foglio Excel&lt;/a&gt; in cui sono &lt;u&gt;documentati tutti i circa 360 eventi di sicurezza di Windows Vista e Windows Server 2008&lt;/u&gt;.&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Buona consultazione!&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/04/21/alcune-risorse-utili-sul-security-auditing-in-windows-vista-e-windows-server-2008.aspx&amp;amp;;title=Alcune risorse utili sul Security Auditing in Windows Vista e Windows Server 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/04/21/alcune-risorse-utili-sul-security-auditing-in-windows-vista-e-windows-server-2008.aspx&amp;amp;title=Alcune risorse utili sul Security Auditing in Windows Vista e Windows Server 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/04/21/alcune-risorse-utili-sul-security-auditing-in-windows-vista-e-windows-server-2008.aspx&amp;amp;title=Alcune risorse utili sul Security Auditing in Windows Vista e Windows Server 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/04/21/alcune-risorse-utili-sul-security-auditing-in-windows-vista-e-windows-server-2008.aspx&amp;amp;title=Alcune risorse utili sul Security Auditing in Windows Vista e Windows Server 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/04/21/alcune-risorse-utili-sul-security-auditing-in-windows-vista-e-windows-server-2008.aspx&amp;amp;t=Alcune risorse utili sul Security Auditing in Windows Vista e Windows Server 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3041526" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category></item><item><title>Security Advisory 951306 relativo al privilegio SeImpersonatePrivilege di Windows</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/04/18/security-advisory-951306-relativo-al-privilegio-seimpersonateprivilege-di-windows.aspx</link><pubDate>Fri, 18 Apr 2008 10:13:04 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3039287</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>1</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3039287.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3039287</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;Microsoft ha emesso il &amp;quot;&lt;a href="http://www.microsoft.com/technet/security/advisory/951306.mspx" target="_blank"&gt;Microsoft Security Advisory (951306) - Vulnerability in Windows Could Allow Elevation of Privilege&lt;/a&gt;&amp;quot; per segnalare che vi sono approfondimenti in corso per correggere una vulnerabilit&amp;#224; che interessa praticamente &lt;u&gt;tutte le versioni attualmente supportate di Windows tranne Windows 2000 SP4&lt;/u&gt;. Potreste aver gi&amp;#224; letto di questa problematica, in quanto &amp;#232; stata oggetto di una presentazione del ricercatore Cesar Cerrudo ad una recente conferenza di sicurezza a Dubai. Ogni processo dotato del privilegio &lt;a href="http://support.microsoft.com/kb/821546" target="_blank"&gt;&lt;strong&gt;SeImpersonatePrivilege&lt;/strong&gt;&lt;/a&gt;, se opera in modo da caricare ed eseguire codice fornito dall'utente, potrebbe essere esposto e permettere l'innalzamento dei privilegi fino a quelli LocalSystem. E' indubbiamente un brutto difetto: vanifica, ad esempio, il beneficio dell'uso di un insieme ridotto di privilegi con cui sono stati pensati gli account di servizio &lt;strong&gt;NetworkService&lt;/strong&gt; e &lt;strong&gt;LocalService&lt;/strong&gt; proprio per evitare di fornire l'uso dell'account &lt;strong&gt;LocalSystem&lt;/strong&gt; ai processi che non hanno necessariamente bisogno dei massimi poteri sul sistema. &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Il consiglio &amp;#232; naturalmente di approfondire l'&lt;a href="http://www.microsoft.com/technet/security/advisory/951306.mspx" target="_blank"&gt;advisory&lt;/a&gt; per adottare, se necessario, gli accorgimenti di protezione (sezione &lt;em&gt;Suggested Actions-Workarounds&lt;/em&gt;) in attesa della correzione del problema.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/04/18/security-advisory-951306-relativo-al-privilegio-seimpersonateprivilege-di-windows.aspx&amp;amp;;title=Security Advisory 951306 relativo al privilegio SeImpersonatePrivilege di Windows" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/04/18/security-advisory-951306-relativo-al-privilegio-seimpersonateprivilege-di-windows.aspx&amp;amp;title=Security Advisory 951306 relativo al privilegio SeImpersonatePrivilege di Windows" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/04/18/security-advisory-951306-relativo-al-privilegio-seimpersonateprivilege-di-windows.aspx&amp;amp;title=Security Advisory 951306 relativo al privilegio SeImpersonatePrivilege di Windows" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/04/18/security-advisory-951306-relativo-al-privilegio-seimpersonateprivilege-di-windows.aspx&amp;amp;title=Security Advisory 951306 relativo al privilegio SeImpersonatePrivilege di Windows" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/04/18/security-advisory-951306-relativo-al-privilegio-seimpersonateprivilege-di-windows.aspx&amp;amp;t=Security Advisory 951306 relativo al privilegio SeImpersonatePrivilege di Windows" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3039287" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item><item><title>Analisi di rischio sui Bollettini di sicurezza Microsoft - aprile 2008</title><link>http://blogs.technet.com/feliciano_intini/archive/2008/04/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-aprile-2008.aspx</link><pubDate>Tue, 08 Apr 2008 23:05:08 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3032547</guid><dc:creator>Feliciano Intini</dc:creator><slash:comments>2</slash:comments><comments>http://blogs.technet.com/feliciano_intini/comments/3032547.aspx</comments><wfw:commentRss>http://blogs.technet.com/feliciano_intini/commentrss.aspx?PostID=3032547</wfw:commentRss><description>&lt;p&gt;&lt;font face="Calibri" size="3"&gt;L'emissione dei bollettini di questo mese, anche se risulta corposa con i suoi 8 bollettini che risolvono un totale di 10 vulnerabilit&amp;#224;, si presenta con caratteristiche di insieme che non rendono lo scenario di rischio diverso dal livello medio (e sinceramente non particolarmente preoccupante) a cui Microsoft ci ha abituato da diversi mesi a questa parte: tutte le vulnerabilit&amp;#224; risolte non erano note prima di questo rilascio e nessuna presenta caratteristiche tali da permettere la realizzazione di &lt;em&gt;malware&lt;/em&gt; di tipo &lt;em&gt;worm&lt;/em&gt;. Inoltre, come gi&amp;#224; accennato nel preavviso di &lt;a href="http://blogs.technet.com/feliciano_intini/archive/2008/04/04/8-bollettini-in-arrivo-per-aprile-2008.aspx" target="_blank"&gt;venerd&amp;#236; scorso&lt;/a&gt;, il minor impatto delle versioni pi&amp;#249; recenti di Windows continua a confermare la validit&amp;#224; del &lt;a href="http://blogs.technet.com/feliciano_intini/archive/tags/3.1-Security+Development+Lifecycle+_2800_SDL_2900_/default.aspx" target="_blank"&gt;processo di Security Development Lifecycle (SDL)&lt;/a&gt; di revisione del codice dal punto di vista della sicurezza:&lt;/font&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;font face="Calibri" size="3"&gt;&lt;strong&gt;Windows Server 2008&lt;/strong&gt; e &lt;strong&gt;Windows Vista SP1&lt;/strong&gt; interessati da &lt;strong&gt;4&lt;/strong&gt; bollettini&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;&lt;strong&gt;Windows Vista RTM&lt;/strong&gt; interessato da &lt;strong&gt;5&lt;/strong&gt; bollettini&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;&lt;strong&gt;Windows XP&lt;/strong&gt;, &lt;strong&gt;Windows Server 2003&lt;/strong&gt; e &lt;strong&gt;Windows 2000&lt;/strong&gt; interessati da &lt;strong&gt;6&lt;/strong&gt; bollettini.&lt;/font&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://blogs.technet.com/photos/pcfs-gallery/images/3032543/original.aspx" target="_blank"&gt;&lt;img src="http://blogs.technet.com/photos/pcfs-gallery/images/3032543/secondarythumb.aspx" /&gt;&lt;/a&gt; &lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Due aspetti meritano di essere segnalati questo mese:&lt;/font&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;font face="Calibri" size="3"&gt;il bollettino &lt;strong&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-023.mspx" target="_blank"&gt;MS08-023&lt;/a&gt;&lt;/strong&gt; rappresenta l'inizio di un nuovo approccio: a partire da questo mese le modifiche dei &lt;a href="http://support.microsoft.com/kb/240797" target="_blank"&gt;&lt;strong&gt;Kill Bit&lt;/strong&gt;&lt;/a&gt; relativi a controlli &lt;strong&gt;ActiveX&lt;/strong&gt; vulnerabili sia di Microsoft che di terze parti non saranno pi&amp;#249; incluse nel tipico bollettino cumulativo di Internet Explorer ma distribuiti in un aggiornamento separato che sar&amp;#224; a sua volta cumulativo d'ora in avanti. In questo modo si agevola il cliente nella gestione dei test di compatibilit&amp;#224; applicativa e &lt;u&gt;si contribuisce al miglioramento degli aspetti di sicurezza dell'ecosistema delle aziende partner grazie alla possibilit&amp;#224; di utilizzare in modo pi&amp;#249; esteso gli automatismi di aggiornamento per distribuire le segnalazioni di vulnerabilit&amp;#224; anche di ActiveX relativi a prodotti non-Microsoft&lt;/u&gt;.&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;il bollettino cumulativo di Internet Explorer (&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-024.mspx" target="_blank"&gt;&lt;strong&gt;MS08-024&lt;/strong&gt;&lt;/a&gt;) presenta una importante modifica di funzionalit&amp;#224;: &amp;#232; stato introdotto &lt;a href="http://msdn2.microsoft.com/en-us/bb969055.aspx" target="_blank"&gt;l'&lt;strong&gt;Automatic Component Activation&lt;/strong&gt;&lt;/a&gt; per rimuovere il comportamento (fastidioso) che richiedeva agli utenti di cliccare sui controlli ActiveX di una pagina web prima di poterli effettivamente utilizzare (modifica introdotta nell'aprile 2006).&lt;/font&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Maggiori dettagli sulle vulnerabilit&amp;#224;:&lt;/font&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-018.mspx" target="_blank"&gt;&lt;strong&gt;MS08-018&lt;/strong&gt;&lt;/a&gt; su &lt;strong&gt;Project&lt;/strong&gt;: una vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; che permetterebbe di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato tramite l'apertura di file di Project malformati ad-hoc. &lt;u&gt;Le versioni pi&amp;#249; recenti di Project non sono interessate da questa vulnerabilit&amp;#224;&lt;/u&gt;.&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-019.mspx" target="_blank"&gt;&lt;strong&gt;MS08-019&lt;/strong&gt;&lt;/a&gt; su &lt;strong&gt;Visio&lt;/strong&gt;: due vulnerabilit&amp;#224; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; che permetterebbero di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato tramite l'apertura di file di Visio (per la prima vulnerabilit&amp;#224;) e di file di Autocad di tipo .DFX (per la seconda vulnerabilit&amp;#224;)malformati ad-hoc. La severity aggregata &amp;#232; &lt;em&gt;Important&lt;/em&gt;.&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-020.mspx" target="_blank"&gt;&lt;strong&gt;MS08-020&lt;/strong&gt;&lt;/a&gt; sul &lt;strong&gt;DNS Client&lt;/strong&gt; di &lt;strong&gt;Windows&lt;/strong&gt;: una vulnerabilit&amp;#224; &lt;em&gt;Important&lt;/em&gt; di tipo &lt;em&gt;Spoofing&lt;/em&gt; che permetterebbe di inviare al sistema sotto attacco delle risposte DNS malformate in modo tale da dirottare il traffico Internet verso sistemi illegittimi. &lt;u&gt;&lt;strong&gt;Windows Vista SP1&lt;/strong&gt; e &lt;strong&gt;Windows Server 2008&lt;/strong&gt; non sono interessati da questa vulnerabilit&amp;#224;&lt;/u&gt;.&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-021.mspx" target="_blank"&gt;&lt;strong&gt;MS08-021&lt;/strong&gt;&lt;/a&gt; sul componente &lt;strong&gt;GDI&lt;/strong&gt; di &lt;strong&gt;Windows&lt;/strong&gt;: due vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; che permetterebbero di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato tramite l'apertura di immagini di tipo WMF/EMF (per la prima vulnerabilit&amp;#224;) e di immagini di tipo EMF (per la seconda vulnerabilit&amp;#224;) malformate ad-hoc.&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-022.mspx" target="_blank"&gt;&lt;strong&gt;MS08-022&lt;/strong&gt;&lt;/a&gt; su &lt;strong&gt;VBScript/JScript&lt;/strong&gt; di &lt;strong&gt;Windows&lt;/strong&gt;: una vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; che permetterebbe di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato, con contenuti web acceduti via Internet o fruiti tramite email HTML come vettori di attacco. &lt;u&gt;&lt;strong&gt;Windows Vista&lt;/strong&gt; e &lt;strong&gt;Windows Server 2008&lt;/strong&gt; non sono interessati da questa vulnerabilit&amp;#224;&lt;/u&gt;.&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-023.mspx" target="_blank"&gt;&lt;strong&gt;MS08-023&lt;/strong&gt;&lt;/a&gt; sull'&lt;strong&gt;ActiveX&lt;/strong&gt; &lt;strong&gt;hxvz.dll&lt;/strong&gt; in &lt;strong&gt;Windows&lt;/strong&gt; e sull'&lt;strong&gt;ActiveX&lt;/strong&gt; di &lt;strong&gt;Yahoo! Music Jukebox&lt;/strong&gt;: una vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote&lt;/em&gt; &lt;em&gt;Code Execution&lt;/em&gt; che permetterebbe di eseguire codice non autorizzato nel contesto di sicurezza dell'utente loggato, con contenuti web acceduti via Internet o fruiti tramite email HTML come vettori di attacco. &lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-024.mspx" target="_blank"&gt;&lt;strong&gt;MS08-024&lt;/strong&gt;&lt;/a&gt; su &lt;strong&gt;Internet Explorer&lt;/strong&gt; in &lt;strong&gt;Windows&lt;/strong&gt;: classica cumulativa che risolve una vulnerabilit&amp;#224; &lt;em&gt;Critical&lt;/em&gt; di tipo &lt;em&gt;Remote Code Execution&lt;/em&gt;, con privilegi sfruttabili pari a quelli dell'utente loggato e con contenuti web acceduti via Internet o fruiti tramite email HTML come vettori di attacco.&lt;/font&gt;&lt;/li&gt;    &lt;li&gt;&lt;font face="Calibri" size="3"&gt;&lt;a href="http://www.microsoft.com/technet/security/Bulletin/MS08-025.mspx" target="_blank"&gt;&lt;strong&gt;MS08-025&lt;/strong&gt;&lt;/a&gt; sul &lt;strong&gt;Kernel&lt;/strong&gt; di &lt;strong&gt;Windows&lt;/strong&gt;: una vulnerabilit&amp;#224; &lt;em&gt;Important&lt;/em&gt; di tipo &lt;em&gt;Elevation of Privilege&lt;/em&gt; che permetterebbe, ad un utente con valide credenziali di logon sul sistema Windows, di eseguire un'applicazione ad-hoc in grado di essere eseguita con i massimi privilegi.&lt;/font&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;font face="Calibri" size="3"&gt;Ho anche aggiornato il &lt;/font&gt;&lt;a href="http://blogs.technet.com/feliciano_intini/pages/riepilogo-analisi-e-risorse-su-security-bulletin-e-security-advisory-di-microsoft.aspx"&gt;&lt;font face="Calibri" size="3"&gt;mini-portale tematico&lt;/font&gt;&lt;/a&gt;&lt;font face="Calibri" size="3"&gt; che raccoglie le risorse sui Security Bulletin.&lt;/font&gt;&lt;/p&gt; &lt;span class="sbmLink"&gt;   &lt;table cellspacing="1" cellpadding="1"&gt;&lt;tbody&gt;       &lt;tr&gt;         &lt;td class="sbmText"&gt;Share this post : &lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to del.icio.us" onmouseout="mOut(this)" href="http://del.icio.us/post?url=http://blogs.technet.com/feliciano_intini/archive/2008/04/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-aprile-2008.aspx&amp;amp;;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - aprile 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/deliciou4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to digg" onmouseout="mOut(this)" href="http://digg.com/submit?phase=2&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/04/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-aprile-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - aprile 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/digg14.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to live" onmouseout="mOut(this)" href="https://favorites.live.com/quickadd.aspx?marklet=1&amp;amp;mkt=en-us&amp;amp;url=http://blogs.technet.com/feliciano_intini/archive/2008/04/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-aprile-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - aprile 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/live4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to technorati!" onmouseout="mOut(this)" href="http://technorati.com/faves/?add=http://blogs.technet.com/feliciano_intini/archive/2008/04/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-aprile-2008.aspx&amp;amp;title=Analisi di rischio sui Bollettini di sicurezza Microsoft - aprile 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/technora4.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;          &lt;td class="sbmDim" onmouseover="mOvr(this)" onmouseout="mOut(this)"&gt;&lt;a class="sbmDim" onmouseover="mOvr(this)" title="Post it to yahoo!" onmouseout="mOut(this)" href="http://myweb.yahoo.com/myresults/bookmarklet?u=http://blogs.technet.com/feliciano_intini/archive/2008/04/09/analisi-di-rischio-sui-bollettini-di-sicurezza-microsoft-aprile-2008.aspx&amp;amp;t=Analisi di rischio sui Bollettini di sicurezza Microsoft - aprile 2008" target="_blank"&gt;&lt;img src="http://blogs.msdn.com/blogfiles/rahulso/WindowsLiveWriter/IconsfordifferentSocialBookmarkingSites_B387/yahoo9.png" border="0" /&gt;&lt;/a&gt;&lt;/td&gt;       &lt;/tr&gt;     &lt;/tbody&gt;&lt;/table&gt; &lt;/span&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3032547" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.0-Application+Security/default.aspx">3.0-Application Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.1-Security+Development+Lifecycle+_2800_SDL_2900_/default.aspx">3.1-Security Development Lifecycle (SDL)</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.2-Office+Security/default.aspx">3.2-Office Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/3.5-Internet+Explorer+Security/default.aspx">3.5-Internet Explorer Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.0-Host+Security/default.aspx">2.0-Host Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.0-Security+Update+Mgmt/default.aspx">2.1.0-Security Update Mgmt</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.1.1+Security+Bulletin+Risk+Analysis/default.aspx">2.1.1 Security Bulletin Risk Analysis</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.2-Windows+Vista+Security/default.aspx">2.2-Windows Vista Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.5-Windows+Server+2008+Security/default.aspx">2.5-Windows Server 2008 Security</category><category domain="http://blogs.technet.com/feliciano_intini/archive/tags/2.8-Windows+XP+Security/default.aspx">2.8-Windows XP Security</category></item></channel></rss>