Microsoft Secures Vista With LSD
,----[ Quote ]
| In 2003, the group of four Polish security researchers discovered
| the vulnerability that would later be used by others to unleash the
| Blaster worm, but because of distrust over Microsoft's willingness
| to address software flaws at the time, members had to be coaxed
| into sharing their findings.
|
| The group, known as LSD, is now on Microsoft's payroll...
`----
http://www.eweek.com/article2/0,1759,2001963,00.asp?kc=EWRSS03119TX1K0000594
I don't fancy the title of this article. It gives the reader the illusion
that Vista might be secure. Below are some relevant links, referring to
articles I have accumulated in the past couple of months.
____
Symantec sees an Achilles' heel in Vista
http://news.zdnet.com/2100-1009_22-6095119.html
Symantec Says Windows Vista Will be Less Secure than XP
http://www.dailytech.com/article.aspx?newsid=3389
Symantec Finds Flaws In Vista's Network Stack
http://www.techweb.com/wire/security/190700049;jsessionid=MWLALDT21M10GQSNDLPSKHSCJUNN2JVN
Symantec continues Vista bug hunt
,----[ Quote ]
| After poking around the Windows Vista networking stack, Symantec
| researchers have tried out privilege-escalation attacks on an early
| version of the Windows XP successor.
|
| "We discovered a number of implementation flaws that continued to allow
| a full machine compromise to occur," Matthew Conover, principal
| security researcher at Symantec, wrote in the report titled "Attacks
| against Windows Vista's Security Model." The report was made available
| to Symantec customers last week and is scheduled for public release
| sometime before Vista ships, a Symantec representative said Monday.
`----
http://news.zdnet.com/2100-1009_22-6097976.html
Symantec highlights Windows Vista user vulnerabilities
http://www.theregister.co.uk/2006/08/02/symantec_windows_vista_security/
Symantec picks away at Vista's core
,----[ Quote ]
| In a third and final report on Windows Vista, Symantec examined the
| security of the operating system core and found some vulnerabilities.
`----
http://news.zdnet.com/2100-1009_22-6103949.html
Black Hat Takes Vista to Task
,----[ Quote ]
| She demonstrated two potential attack vectors. One could allow unsigned
| code to be loaded into the Vista kernel. The second vector involved
| taking advantage of AMD's Pacific Hardware Virtualization to inject a
| new form of super malware that Rutkowska claimed to be undetectable.
`----
http://www.internetnews.com/security/article.php/3624861
Perspective: Why Internet security continues to fail
,----[ Quote ]
| Failing to acknowledge or fix an infrastructure plagued with problems
| raises many doubts about any security product's ability to function in
| such a foundation. Placing more complexity on top of existing
| (and flawed) complexity does not lead to increased protection, but
| rather, fosters a false sense of increased protection.
`----
http://news.com.com/2010-7355_3-6104903.html?part=rss&tag=6104903&subj=news
|
|