New Microsoft Word vulnerability

Technet link – specific wording: The vulnerability could allow remote code execution if a user opens a specially crafted RTF file using an affected version of Microsoft Word, or previews or opens a specially crafted RTF email message in Microsoft Outlook while using Microsoft Word as the email viewer. An attacker who successfully exploited the … Read more

WordPress DDOS potential overplayed?

That is what Jason Cohen (CTO of WP engine) is saying at blogs.csoonline.com He also said: (what the pingback function does, calling it “an altruistic, friendly, social system.”) What can happen is a lot of pingbacks with the links in the comments.  If done  on many pages with a lot of effort it can happen. … Read more

Was breach at Target internal or a vendor?

X-force has information on the specific malware that breached the Point of Sale terminals (POS). The Internet Storm Center has an interesting comment,which is discussed in their newssummary section. Is a refrigeration vendor ultimately to blame for the target breach? This brings up another point – your vendors better have good security, as the weakest … Read more