Friday, July 31st, 2009
We’ve gotten questions from security researchers and malware protection vendors about the binary file format used by Microsoft Word, PowerPoint, and Excel. The format specification is open and we have spoken at several conferences ( 1 , 2 , 3 ) about detecting malicious docs but we wanted to do more to help... »
Tags: engineering, microsoft office, mitigations, network, object, office, over-the-past, power, s09-035-there, security, security science, shared-the-tool, tool, tree
Posted in Microsoft Research & Defense | No Comments »
Friday, July 31st, 2009
I've been waiting on this announcement so I could update my WUA feature focus for RTM; I'll do that over the weekend. Here's the scoop: Most people buy a PC preinstalled with the edition of Windows that meets their unique needs. However, for some customers their needs may change over time. »
Tags: complexity, edition, family-pack, later-replace, Microsoft Security Advisories, over-the-past, premium, rest, ship-the-same, silliness, sweden, the-complexity, vista
Posted in All About Microsoft | No Comments »
Friday, July 31st, 2009
I'm embarrassed to say I missed this last week, but when Microsoft announced its proposal to let EU customers choose a browser via a so-called ballot screen, they also provided an image of what that screen could look like. Here it is. Under our new proposal, among other things, European consumers who buy... »
Tags: browsers, easily-install, edition, europe, inspiration, internet, later-replace, over-the-past, silliness
Posted in All About Microsoft | No Comments »
Thursday, July 30th, 2009
Or, to be more specific, for Amsterdam. The Red Light District of Amsterdam »
Tags: amsterdam-, browsers, europe, humor, inspiration, kids, more-specific, over-the-past
Posted in All About Microsoft | No Comments »
Thursday, July 30th, 2009
I think we all realize the Zune isn't exactly setting the world on fire. But in these days leading up to the release of the Zune HD, things have apparently gotten worse than ever »
Tags: apple, browsers, entertainment, exactly-setting, iphone, itunes, like-the-itunes, Microsoft Security Advisories, more-specific, non-gaming-side, revenue-at-its, tunes-store-, windows-media, zune
Posted in All About Microsoft | No Comments »
Tuesday, July 28th, 2009
Today we released Security Advisory 973882 and with it, two out-of-band security bulletins. »
Tags: controls, microsoft office, mitigations, network, power, security-advisory, security-update, vulnerability, vulnerable
Posted in Microsoft Research & Defense | No Comments »
Tuesday, July 28th, 2009
IE security update MS09-034 implements two defense-in-depth measures intended to mitigate the threat of attacks which attempt to exploit the Microsoft Active Template Library (ATL) vulnerabilities described in Security Advisory 973882 and MS09-034 . »
Tags: atl, explorer-main, internet, ipersiststream, microsoft, mitigation, security, security-update
Posted in Microsoft Research & Defense | No Comments »
Tuesday, July 28th, 2009
This morning we released MS09-035 to address ATL vulnerabilities in Visual Studio. This blog post will help you answer the following questions: What are the ATL vulnerabilities? Which versions of ATL are vulnerable »
Tags: atl, information, killbit, ms09-034, ms09-035, msvidctl, source, studio, visual-studio
Posted in Microsoft Research & Defense | No Comments »
Tuesday, July 28th, 2009
Today we have released Security Advisory 973882 that describes vulnerabilities in the Microsoft Active Template Library (ATL), as well as security updates for Internet Explorer ( MS09-034 ) and Visual Studio ( MS09-035 ). The Visual Studio update addresses several vulnerabilities in the public versions of the ATL headers and libraries. »
Tags: against-the-atl, atl, fully-updated-, microsoft, ms09-034, ms09-035, msvidctl, public, security-advisory, studio, update-contains, visual-studio
Posted in Microsoft Research & Defense | No Comments »
Tuesday, July 28th, 2009
Bulletin Severity Rating:Critical - This security update is being released out of band in conjunction with Microsoft Security Bulletin MS09-035, which describes vulnerabilities in those components and controls that have been developed using vulnerable versions of the Microsoft Active Template Library (ATL). As a defense-in-depth measure, this Internet Explorer security update helps mitigate known... »
Tags: and-controls, been-developed, being-released, microsoft-windows-, net, public, security, security-update, which-describes
Posted in Microsoft Security Bulletins | No Comments »