ie8 fix

Consumer software and hardware

Microsoft probing Windows 7 zero-day hole

Microsoft said on Wednesday it is looking into a report of a vulnerability in Windows 7 and Server 2008 Release 2 that could be used by an attacker to remotely crash the computer.

The company is investigating claims of a "possible denial-of-service vulnerability in Windows Server Message Block (SMB)," the Microsoft spokesperson said, adding that the company was unaware of any attacks trying to exploit the hole.

The bug triggers an infinite loop on the Server Message Block (SMB) protocol used for sharing files in Windows, researcher Laurent Gaffié wrote in a posting on the Full-Disclosure mailing listRead more

Microsoft patches critical hole in Windows kernel

Microsoft on Tuesday issued six security bulletins fixing 15 vulnerabilities, including a critical patch for holes in the Windows kernel and other Windows and Office components that could allow an attacker to take control of a computer.

The critical bulletin affecting the Kernel-Mode Drivers was publicly disclosed and could be used to create a Web page with malware designed to exploit the hole on systems that visit the page, Microsoft said in a blog posting.

"MS09-065, a bug in the Windows kernel, is this month's most serious issue," said Andrew Storms, director of security operations at nCircle. &… Read more

Apple plugs holes for domain spoofing, other attacks

Apple on Monday released a large security update for Mac OS X that fixes dozens of vulnerabilities and provides protection against potential attacks exploiting a weakness in the protocol used to verify that a domain is legitimate.

There are 43 specific issues addressed in the 2009-006 update, released the same day as Mac OS X v.10.6.2.

It plugs a variety of holes for the Mac OS X v10.5.8, 10.6, 10.6.1, and Mac OS X Server v10.6 and 10.6.1, many of which could lead to arbitrary code execution and allow … Read more

Adobe's Photoshop app comes to Android

Adobe Systems on Friday introduced a new Photoshop app for Android users that lets them edit photos from their phone, as well as access their online photo collection on Photoshop.com.

The app comes just shy of a month after the release of the company's application for Apple iPhone and iPod Touch users, which quickly became the top free application in the App Store and grabbed a million downloads within a week of its release.

The version for Android shares the same, simple editing UI as the iPhone/iPod version, both of which let users make edits by sliding … Read more

Microsoft to fix holes in Windows, Office

Microsoft said on Thursday it will issue six patches next week for 15 vulnerabilities, including three critical bulletins affecting Windows and two important Office-related bulletins.

Affected software includes Windows 2000, XP, Server 2003, Vista, Server 2008, Office XP, Office 2003, 2007 Microsoft Office System, Office 2004 for Mac, and Office 2008 for Mac, the company said in an advisory.

November's Patch Tuesday is a contrast to the record number of fixes issued last month--13 bulletins for 34 vulnerabilities.

Updated 2:52 p.m. PST to correct that there will be six patches fixing 15 vulnerabilities.

Windows 7 sales outshine Vista

Judging by its initial sales, Windows 7 is certainly proving more popular than Vista.

Microsoft sold 234 percent more boxed editions of Windows 7 than it did Vista in the initial releases of both products, according to research released Thursday by NPD Group.

In actual dollars, Windows 7 has also been more successful than Vista. However, early discounts on pre-sales copies and a lack of a promotional boost behind Windows 7 Ultimate led to revenues only 82 percent greater than those of Vista.

"Ultimate was a much bigger part of what Microsoft did with Vista, whereas this time I … Read more

Mac Game: Art project or malware?

As part of his Master of Fine Arts thesis project, Zach Gage wrote a game to run on Macintosh computers that resembles Space Invaders but with a digital roulette twist--for every alien space ship the player destroys a random file on the computer is deleted.

"Lose/Lose is a video-game with real life consequences. Each alien in the game is created based on a random file on the player's computer. If the player kills the alien, the file it is based on is deleted. If the player's ship is destroyed, the application itself is deleted," the … Read more

Malwarebytes accuses rival of software theft

Malwarebytes is accusing China-based computer security firm IObit of intellectual property theft, but IObit denied the allegations and said there were problems with its malware submission site.

Malwarebytes claims IObit stole from its database of signatures of malicious applications that its software uses for detecting malware on customer computers.

Malwarebytes discovered that IObit's Security 360 free anti-malware software was flagging a specific key generator piece of code for Malwarebytes' Anti-Malware software and using the same naming scheme, which includes the phrase "Don't Steal Our Software," according to a blog post on the Malwarebytes.org site.

After … Read more

Spammy scams surfacing on Twitter, Facebook

Twitter and Facebook users were getting hit with scams on Monday.

Twitter users warned about direct messages that said, "I make money online with google. i learned how here [link]," according to Twitter users.

A Twitter representative said it was not a phishing scam because the site to which the spam links does not ask for a username and password, or look like a Twitter page.

"We're on it and fixing accounts as fast as possible," she wrote in an e-mail. "You can keep posted on known issues as well by checking in on … Read more