New EMET Version

Last October I blogged about EMET–Protection Against Zero-Days – a really great tool to protect your environment.

We just released a new version, which can be downloaded here: Enhanced Mitigation Experience Toolkit v3.0.

Before you test it, make sure you have your Bitlocker recovery key ready (or – before the next reboot, suspend Bitlocker . . . → Read More: New EMET Version

What Microsoft can teach Apple about security response

I guess, I do not have to comment this – right?

What Microsoft can teach Apple about security response

To quote the summary:

Microsoft just released seven security updates to fix 23 vulnerabilities in Windows and other products. In February, Apple released a massive update that covered 51 vulnerabilities and also introduced an embarrassing . . . → Read More: What Microsoft can teach Apple about security response

Windows Defender Offline

A few days ago, Windows Defender Offline was released. This is basically the tool to use, if you are unable to remove malware from a running PC.

To quote the website:

Sometimes, malicious and other potentially unwanted software, including rootkits, try to install themselves on your PC. This can happen when you connect to the . . . → Read More: Windows Defender Offline

Consumerization of IT–How to address this

Bring Your Own Device or Consumerization of IT are fairly hot themes in a lot of customer organizations. When I talk to customers, there are typically different reactions, once we bring this up. Some tell us, that it is not part of their strategy; some tell us that they plan to do it but that . . . → Read More: Consumerization of IT–How to address this

Q1 Software Vulnerabilities

This was an interesting article on cio.com: Apple, Oracle, Google Lead Major Vendors with Software Vulnerabilities in Q1, Security Report Says – by TrendMicro. Now, these stats are always a bit a challenge: They make a really good headline but if the statistics does not include the severity of the vulnerabilities, it is hard to . . . → Read More: Q1 Software Vulnerabilities

Keep all your software updated and current

I know that I keep going and going on that. When I talk to customers and mainly to providers of the critical infrastructure about security, one of the key things to me is to keep the software updated. It is about patching and it is about staying on the latest version of your software. To . . . → Read More: Keep all your software updated and current

Selecting the right Cloud partner

One of the challenges customers always have is, how to select the right cloud partner and fairly often security drives this selection. The Cloud Security Alliance published the Cloud Controls Matrix quite a while ago and in addition a Consensus Assessments Initiative Questionnaire and a lot of request for information/proposal are based on this material.

. . . → Read More: Selecting the right Cloud partner

Security Updates and Exploit Code

CORRECTION:So far there is “only” Proof of Concept code in the wild, no real exploit.

In our last update cycle we published the security bulletin MS12-020 Vulnerabilities in Remote Desktop Could Allow Remote Code Execution. Relatively soon after the release, there was a public exploit code available – we informed here: Proof-of-Concept Code available for . . . → Read More: Security Updates and Exploit Code

Office 365 Single Sign-On with AD FS 2.0 whitepaper

Sorry, I did not blog for quite a while.

When looking at the Cloud, one of the key challenges to address – in my opinion – is how to manage the identity of the different users. If you have to add an additional identity to all the logons you already have, the Cloud will . . . → Read More: Office 365 Single Sign-On with AD FS 2.0 whitepaper

Internet Explorer aces security test as Google faces accusations

I mean, I obviously like this article: Internet Explorer aces security test as Google faces accusations as it has a nice quote to start with:

Internet Explorer 9 should be the go-to browser for organizations concerned about protecting machines from malicious downloads, according to a new study from NSS Labs: Microsoft’s browser trounced rivals Chrome, . . . → Read More: Internet Explorer aces security test as Google faces accusations

Calendar

May 2012
M T W T F S S
« Apr    
 123456
78910111213
14151617181920
21222324252627
28293031