No. 1 Story

ACCC clears Optus to scrap HFC network and use NBN instead

The ACCC has cleared, provisionally, the proposed deal between Optus and NBN Co under which Optus is to be paid around $800m to shut down its HFC network and transfer customers onto the NBN. read more

Related Articles

Microsoft, admits, Windows, under, attack
Today's release of the report "In the Crossfire: Critical Infrastructure in the Age of...
In what is one of the most potentially serious zero-day Microsoft Windows bugs this...
A buffer overflow vulnerability in Snort, the popular open-source intrusion detection system for Linux...
Microsoft has joined forces with Celestix Networks and Network Engines to deliver appliances running...
Russian hackers have used phishing techniques to get hundreds of customers of Sweden’s largest...

Microsoft admits Windows XP is under attack!

Business IT - Security

A no-click vulnerability which impacts Windows XP users has been revealed by Microsoft which admits it is already being exploited in the wild.

With the Russian government gunning for Microsoft because of it, and cash machines using it revealed to be stealing PIN codes, things couldn't get much worse for Windows XP right now could they?

Well, yes, actually they could. A lot worse. Microsoft has issued a Security Advisory (972890) which details a vulnerability for the Microsoft Video ActiveX Control in Windows XP that could allow 'no-click' remote code execution.

Microsoft, which admits to being "aware of attacks attempting to exploit the vulnerability" says that an attacker who is successful in exploiting the vulnerability could gain the same user rights as the local user.

When you combine Windows XP (and Windows Server 2003 for that matter) with Internet Explorer 6 or 7 (although security analysts suggest that IE 8 is OK) that code execution becomes remote and does not require any user intervention.

Although Microsoft does say that there are "no by-design uses for this ActiveX Control in Internet Explorer which includes all of the Class Identifiers within the msvidctl.dll that hosts this ActiveX Control" it is recommending removing support for this ActiveX Control within Internet Explorer.

Indeed, it is even recommending that Windows Vista and Windows Server 2008 customers remove support as well, even though there is no evidence to suggest they are impacted by the vulnerability, as a defense-in-depth measure.

Microsoft is working on a security update to address the vulnerability, but in the meantime, instructions to remove support can be found in Knowledge Base Article 972890.