funsec mailing list archives

'Shocking Flaw' Leaves Microsoft Looking Like a Turkey


From: "Paul Ferguson" <fergdawg () netzero net>
Date: Mon, 26 Nov 2007 06:22:58 GMT

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Via The Sydney Morning Herald.

[snip]

Microsoft engineers worked frantically over the US Thanksgiving holiday to
fix a design flaw in Windows that has exposed millions of computers to
hijacking by computer criminals.

By exploiting the design flaw a lone miscreant could take control of vast
numbers of home or office PCs around the world in a single attack. They
could read data, steal passwords and monitor internet use or use them to
distribute spam or viruses.

The bug was demonstrated at the Kiwicon hacker conference in New Zealand
last week by an ethical hacker, Beau Butler.

While testing the flaw, Mr Butler found more than 160,000 computers in NZ
were vulnerable. Computers in the US are not vulnerable to the flaw, but
many countries are potentially wide open.

[snip]

More:
http://www.smh.com.au/news/technology/microsoft-flaw-a-massive-shock/2007/1
1/23/1195975914416.html

- - ferg

-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.6.3 (Build 3017)

wj8DBQFHSmY+q1pz9mNUZTMRAs36AKDCIA4zq/IQ6xtahJwwBfw9696b5ACfTYDq
ar11UXF05DhggcYySefXM20=
=DcVq
-----END PGP SIGNATURE-----


--
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawg(at)netzero.net
 ferg's tech blog: http://fergdawg.blogspot.com/


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: