Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | RE: New article on SecurityFocus |
|---|---|
| Date: | Mon, 9 Jan 2006 09:48:44 -0500 |
-----Original Message----- From: Susan Bradley, CPA aka Ebitz - SBS Rocks [MVP]
[snip]
What we need here is education of why we shouldn't be blindly clicking like we are. When you buy a new computer...where is the security education from the Best Buy or Dell?
If users could be educated it would have already been done by now. I can't take credit for that opinion as Marcus Ranum (http://www.ranum.com/security/computer_security/editorials/dumb/) said it first. I think it's funny that you bring up Dell and Best Buy when Microsoft is the one with an EXECUTABLE image format. There have been quite a few image vulnerabilities in the last year or so but I don't remember any of them resulting from the built-in ability to execute code.
But to say this is "It's probably bigger than for any other vulnerability we've seen" http://money.cnn.com/2006/01/03/technology/windows_virusthreat /index.htm?cnn=yes Gimme a break... it didn't stop the Internet [SQL Slammer], it didn't shut down entire businesses [Blaster], but it did freak out the Security community.
From what I can tell, Slammer wasn't a 0-day and neither was Blaster (at
least the first set of worms). If memory serves, Slammer was the result of admins not applying a patch from Microsoft available months before the worm was released. Since then Microsoft patching has vastly improved and admin paranoia has gotten worse. The scariest thing about WMF is that it targets user interaction using what used to be the most innocuous file format besides plain text. Users are the hardest part of the network to secure - and with WMF it just takes one click. Derick Anderson --------------------------------------------------------------------------- ---------------------------------------------------------------------------
| Previous by Date: | Re: audit trails for file access, Nicolas RUFF |
|---|---|
| Next by Date: | RE: New article on SecurityFocus, Murad Talukdar |
| Previous by Thread: | RE: New article on SecurityFocus, matthew patton |
| Next by Thread: | RE: New article on SecurityFocus, Brady McClenon |
| Indexes: | [Date] [Thread] [Top] [All Lists] |