Join us in New Orleans for your choice of 200- to 400-level ASP.NET sessions on using Microsoft SharePoint Server 2010, creating report subscriptions, deploying cohesive web service security and more.
Microsoft has released its latest round-up of security patches, and with ten bulletins covering a wide range of products and operating systems, system administrators hoping for an easy week may want to start revising their expectations.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-3488 Permissions, Privileges, and Access Controls vulnerability
5.8
PostgreSQL
Solaris 10
SPARC : 138822-11 , 138824-11 , 138826-11 x86 : 138823-11 , 138825-11 , 138827-11
CVE-2012-3489 Improper Input Validation vulnerability
5.0
This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.
<b>Simple Thoughts:</b> "There are five distributions to compare - Debian, CentOS, Slackware , Ubuntu and Gentoo. One of the main consideration for server use is stability and long term security support. After extensive research we queued up the top 5 free Linux distros for server in 2010."
<b>Help Net Security:</b> "The word about Immunet's free anti-virus solution is spreading fast. The agent installed on my computer tells me that there are currently 162,597 people in the Immunet Cloud, and that I'm protected from 12,637,576 threats"
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2011-2728 Denial of Service (DoS) vulnerability
4.3
Perl 5.6
Solaris 10
SPARC: 146032-03 X86: 146033-03
Solaris 9
Patches planned but not yet available
This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.
I have a 12 year old BC45 compiled 32 bit GUI utility that fails to load on XP and 2003 with a GPF. Worked find under 95, NT, 2000 and didn't expect anything to be different for other OSes. But it was reported this week and looking at our support logs, there were other reports last year on this as well. Testing it on XP and 2003 confirms this. I think it is related to either comctl32.dll, comdlg32...
Software giant's latest Security Intelligence Report found that the number of infected PCs rose by 1.7 million in the second half of 2009, but improved monitoring is helping flag and clean the corrupted systems.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-4244 Denial of Service vulnerability
7.8
BIND
Solaris 11
Contact Support
Solaris 10
SPARC : 119783-24 , x86 : 119784-24
Solaris 9
SPARC : 112837-28 , x86 : 114265-27
This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.
After a thick April patch, this month's security update, released today, is light with only two "critical" fixes....Did you know that DotNetSlackers also publishes .net articles written by top known .net Authors? We already have over 80 articles in several categories including Silverlight. Take a look: here.
Just wondering, assuming no security issues, that is, you're in total control of the command passed to exec(), is there a difference (in terms of speed or standards) between using exec() vs native PHP?
Example just to name a few use cases:
Using the DirectoryIterator vs exec(ls -1, $output), to list all files.
List 100 files from the 99th file onwards (that is, file 100 to 199)
Count total number of files in directory.
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2011-2791 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability
7.5
International Components for Unicode (ICU)
Solaris 10
SPARC: 119810-07 X86: 119811-07
Solaris 11
11/11 SRU 11.4
CVE-2011-4599 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability
7.5
This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.
Putting the security software offerings from 35 different vendors through their paces, researchers at Matousec conclude that all are susceptible to an exploit that could hobble Windows-based devices.
What we're looking for instead is an open source, preferably Web-based email marketing campaign that will give us the ability to create, send , track your bulk emails using creatively-designed templates to promote your business happenings, events, discounts and etc.
It can keep in contact with subscribers.It includes over 100 templates, bounce management, basic data tracking, A/B testing, and more.
Any effective recommendation?
The social networking site has plenty of security problems of its own making to resolve and, in the interim, professional cyber thieves are exploiting other vulnerabilities.
I've dabbled with PHP for a few years now and I'm capable of most of the basic things, building login forms etc but from my time on here I've noticed there's so much more I need to learn, like best practices, security issues etc and so I want to learn everything from the very basics.
In the past I've used forums and browsed the web for snippets of code only I think this has led to my bad practices, can anybody recommend books or Valid, recommended learning sources?
Thanks in advance!
CVE DescriptionCVSSv2 Base ScoreComponentProduct and Resolution
CVE-2012-2981 Improper Input Validation vulnerability
6.0
Webmin
Solaris 10
SPARC: 145006-04 X86: 145007-04
CVE-2012-2982 Arbitrary code execution vulnerability
6.5
CVE-2012-2983 Improper Authentication vulnerability
5.0
This notification describes vulnerabilities fixed in third-party components that are included in Oracle's product distributions.Information about vulnerabilities affecting Oracle products can be found on Oracle Critical Patch Updates and Security Alerts page.
Microsoft is preparing a security update in June for the IE XSS filter in Internet Explorer 8....Did you know that DotNetSlackers also publishes .net articles written by top known .net Authors? We already have over 80 articles in several categories including Silverlight. Take a look: here.
<b>Help Net Security: </b>"The recent Facebook privacy changes, the public outcry they caused and the petition by a group of U.S. senators to the Federal Trade Commission to restrict the amount of personal information that online social networks can use."
<b>Datamation:</b> "While I firmly believe that Android will challenge in the enterprise soon, it's just not happening now. The security and configuration features that IT departments demand simply aren't ready yet."
What do you use as your main operating system for developing software (you might use another for testing, gaming, entertainment etc.), and most importantly, why?
To speak for myself, I use Ubuntu and Kubuntu (it varies between those two Linux distributions), because it is easy to get stuff done with, has all the development tools I need, is fast, stable and safe. And I think I would never make it without the UNIX utilities anymore.
Latest threat of identity theft comes to Vanderbilt University in the form a stolen desktop computer that contained the names and Social Security numbers of more than 7,000 students.
msdev is about to launch a series of training courses for Master Data Services that covers early concepts, setup, model building, configuration, security model setup and the object model. This should be a great series and promises to be a solid introduction to the product. http://www.msdev.com/Directory/SeriesDescription.aspx?CourseId=155 If you haven’t noticed lately, there is a great set of entries up on the SSIS team blog now. These are quality blog entries that really get into the details of...(read more)