Security News

Windows 8 and Later Fail to Properly Apply ASLR
2017-11-20 19:42

Address Space Layout Randomization (ASLR) isn’t properly applied on versions of Microsoft Windows 8 and newer, an alert from Carnegie Mellon University-run CERT Coordination Center (CERT/CC)...

Windows 10 Detects Reflective DLL Loading: Microsoft
2017-11-15 18:30

Windows 10 Creators Update can detect reflective Dynamic-Link Library (DLL) loading in a variety of high-risk processes, including browsers and productivity software, Microsoft says. read more

Windows Defender Immune to AVGater Quarantine Flaw: Microsoft
2017-11-14 15:37

A recently disclosed vulnerability that allows an attacker to abuse the quarantine feature of anti-virus products to escalate privileges doesn’t affect Windows Defender, Microsoft says. read more

Microsoft Publishes Standards for "Highly Secure" Windows 10 Devices
2017-11-07 16:17

Microsoft this week published information on the standards a Windows 10 device is required to meet to be considered highly secure. read more

Windows 10 Exploit Guard Boosts Endpoint Defenses
2017-11-01 17:24

Courtesy of the Windows Defender Exploit Guard that ships with Windows 10 Fall Creators Update, systems running Microsoft’s Windows 10 operating system can fend off emerging threats, Microsoft...

Week in review: Windows 10 anti-ransomware, secure remote browsing, infosec and media
2017-10-30 01:45

Here’s an overview of some of last week’s most interesting news and articles: NotPetya successor Bad Rabbit hits orgs in Russia, Ukraine Bad Rabbit ransomware, apparently modeled on NotPetya, has...

Is the Windows 10 controlled folder access anti-ransomware feature any good?
2017-10-25 12:30

With last week’s release of Windows 10 Fall Creators Update, users get a new feature aimed at stopping ransomware from encrypting their most important files. It’s called controlled folder access,...

BoundHook Hooking Is Invisible to Windows 10's PatchGuard
2017-10-19 18:29

A newly discovered hooking technique can go completely undetected by the current implementation of PatchGuard, CyberArk security researchers warn. read more

Hackers Can Execute Code on Windows via DNS Responses
2017-10-11 07:55

One of the 62 vulnerabilities patched by Microsoft with the October security updates is a critical Windows flaw that allows remote attackers to execute arbitrary code on a targeted machine via...

Bugs in Windows DNS client open millions of users to attack
2017-10-11 01:00

In this month’s Patch Tuesday, Microsoft has included fixes for multiple critical memory corruption vulnerabilities in the Windows DNS client, which could be exploited by attackers to gain access...