April 24, 2008
Panda Security is warning administrators of a widespread SQL injection attack against IIS servers. The company said that so far about 282,000 Web pages have already been infected.
Windows IT Pro
September 12, 2007
eIQnetworks announced the availability of the new Open Log Format (OLF) specification - an open source event logging standard. The company hopes the new standard will be adopted to facilitate easier aggregation of security log information.
Windows IT Pro
August 15, 2007
GFI announced that it will acquire the technology assets of XEmplifyIT, an email management company. The acquisition will allow GFI to further empower its MailArchiver solution while at the same time removing a competitor from the marketplace.
Windows IT Pro
June 2006
You can prevent some problems when you install and configure Web applications, but you should also audit your system regularly to detect potential vulnerabilities and address them.
Windows IT Security
April 26, 2006
Taking database security a step further, Oracle's new Database Vault provides more granular control over access privileges. The company's new Secure Backup encrypts data written to tape.
WinInfo
April 10, 2006
A slip-up at Oracle led to the premature publication of exploit information regarding an unpatched vulnerability in the company's popular Oracle Database product.
WinInfo
March 2, 2006
The company's new Secure Enterprise Search 10g only returns results that a person is authorized to access.
WinInfo
January 26, 2006
Oracle's recently released quarterly security update package contained a huge number of security fixes. But at least one critical flaw remains unpatched.
WinInfo
December 5, 2005
Login names prefixed with null characters aren't visible to the SQL Profiler tool in SQL Server 2000.
Windows IT Security
January 18, 2005
Oracle Database 9i and 10g are vulnerable to PL/SQL injection and an unchecked buffer.
Windows IT Security
January 10, 2005
Multiple vulnerabilities have been discovered in IBM DB2, including numerous buffer overflows, weak shared memory permissions, and more.
Windows IT Security
January 6, 2005
If you use SQL Server as a backend for you applications then have you protected against injection attacks?
WinInfo
January 5, 2005
The Internet Storm Center (ISC) reports that attempts to penetrate WINS and SQL Server have been detected. Make sure your systems are protected!
WinInfo
May 21, 2004
eEye Digital Security announced they have released Retina Network Security Scanner to public beta testing.
WinInfo
March 17, 2004
Microsoft announced that Software Update Services (SUS) 2.0 has been renamed Windows Update Services (WUS); which was released to public beta testers and product evalulators on March 16.
WinInfo
February 11, 2004
The time frame of February 16 through February 20 is “Developer Security Webcast Week” at Microsoft.
WinInfo
October 22, 2003
Update Rollup 1 for Microsoft Windows XP is now available. Also, Yahoo! Groups now hosts a moderated SQL Server Security mailing list.
Windows IT Security
March 12, 2003
Mark Joseph Edwards discusses books and book chapters that offer timely online information to help you secure Windows Server 2003, Windows 2000 Server, Microsoft SQL Server, Microsoft Exchange Server, and other related technologies.
Windows IT Security
February 5, 2003
Mark Joseph Edwards discusses a recent security report from Symantec that notes cyber attacks on the rise and indicates new areas of risk--Instant Messaging (IM), peer-to-peer (P2P) applications, and mobile devices.
Windows IT Security
February 4, 2003
Microsoft has recently revised five security bulletins.
WinInfo
Add these Headlines to your Website