Telstra has revealed the addition of almost one million new mobile services in the six months to December 2011, but Sensis revenues plummeted 24 percent in 12 months.
The debate has flared up once again about whether users should wait for an official Microsoft patch to a vulnerability in its software or take their chances with a third party patch as a temporary measure.
The highly publicised actions of a group of
security professionals calling themselves ZERT (Zeroday Emergency
Response Team) have brought the issue to the fore by issuing fixes for
two separate vulnerabilities within two weeks.
The first patch issued by ZERT for an Internet Explorer and HTML email
flaw involving Vector markup anguage (VML) may well have embarrassed
Microsoft to issuing an official patch ahead of time last week, instead
of waiting until Patch Tuesday on October 10.
ZERT then followed its initial patch with another patch this week for a
vulnerability in the Windows Shell, which affects Windows 2000, Windows
XP and windows 2003 Server. If exploited by visiting a malicious
website using Internet Explorer the vulnerability could allow remote
code execution on the user's computer.
With the number of exploits mounting and a third party again issuing
its own fix to the flaw, Microsoft is once again considering issuing an
official patch ahead of its normal Patch Tuesday cycle.
Both user and security communities are divided over whether third party
vendors issuing patches to Windows and other Microsoft software is a
good idea, with some saying a third party patch could itself introduce
more problems than it fixes.
However, many agree that the increasing involvement of third party
security vendors is putting increasing pressure on Microsoft to release
patches faster and outside its usual monthly cycle.
Some say the monthly patching cycle is enabling attackers to time their
zero day exploits to be released in the days immediately following
Patch Tuesday, knowing that they have nearly a full month of a patch
free vulnerability to work with.
David Bass
| For the fourth year in a row, IDC has placed content security provider Websense (NASDAQ: WBSN) at the top of the IDC Worldwide Web Security 2011 –…
How to Make Business Discovery Work for Your Business
Business Discovery takes its cues from consumer apps. Like Google, it encourages us- ers to hunt for and explore data without worrying about or even noticing the underly- ing technology. Their entire experience is working within an intuitive interface to get real-time, self-service results with only minimal training. ...more
Try an easy-to-use set of web-enabled
tools for business-class productivity services. Office 365 provides
anywhere-access to email, important documents, contacts, and calendars
on almost any device.