ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Exploit code quick to follow Microsoft patches

Greg Sandoval CNET News.com

Published: 15 Jun 2006 09:55 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Just a day after Microsoft released patches for vulnerabilities in some of its software, code designed to take advantage of those weaknesses appeared on the Internet.

Most of the patches that Microsoft issued were for flaws that were widely known. But at least two flaws were made public for the first time on Tuesday as part of the company's monthly security update.

Security firms reported finding the code in Wednesday. The exploit code for previously unknown flaws means hackers could use the code to pounce on computer systems where managers are slow to apply patches.

"Microsoft is aware that detailed exploit code was published on the Internet for some of the vulnerabilities," the software maker said in a statement. "With the exception of MS06-027 (the Word malware that began circulating last month), Microsoft is not currently aware of any active attacks utilizing this exploit code...the exploit code does not affect users who have installed all June security updates."

In all, Microsoft issued patches for 21 flaws in its security update, saying all but two of them could let an intruder run malicious code on a compromised computer.

Some of the exploits that appear on the Web are for "critical" flaws in Windows Media Player and for "routing and remote access." The SANS Internet Storm Center reported that two exploits were for the "routing and remote access."

Verisign's iDefense team also announced that it had developed a "proof of concept" exploit code for a security hole in the ".ART" file, a file type used often for AOL services and Web sites, according to iDefense.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
69 out of 148 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:



Related Jobs

Sharepoint/Moss 2007 Development Lead - Tier 1 Bank

They require a Sharepoint subject matter expert to analyse the requirements of the business, design and plan for a solution that adequately meets ...

Enterprise Applications Finance Oracle - Manager - London

We provide consultancy services to some the strongest brand names globally, plus a variety of small and dynamic mid-market firms. It is vital that ...

Data Warehouse Developer - C#.Net and SQL - Contract Tier 1 Bank

The role will involve developing a C# .Net based data warehouse proof of concept. My client, a leading international investment bank located in the ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment