No. 1 Story

HP job cuts loom for Australian employees

A number of Australian employees of Hewlett-Packard are facing the loss of their jobs as the global computer giant looks to slash its worldwide workforce by up to 30,000.

read more

Related Articles

Adoption of cloud computing has reached a tipping point  - but don’t expect legacy...
In yet another blow to the Facebook IPO this week, following the withdrawal of...
Recruitment technology and social media have played a significant role in growing business in...
Perhaps this explains the problems with getting online:  Diablo III has become the fastest...
Those elusive pocket monsters, the Pokémon are becoming more numerous.  Nintendo announce two new...

Vista "no silver bullet" says Symantec

Your IT - Home IT

While Windows Vista is more secure than its predecessors, it still has its weaknesses, security vendor Symantec has warned.

In a research paper titled 'Security Implications of Microsoft Windows Vista', Symantec notes that technologies introduced in the new operating system "are very effective at protecting the core Windows operating system as well as Microsoft compiled applications" from exploiting memory corruption or manipulation vulnerabilities. Buffer overflows (one example of such issues) have been frequently exploited.

But other technologies don't automatically materialise with Vista - it's up to developers to take advantage of them by either rewriting their code or in some cases recompiling it with Microsoft's latest developer tools. Until applications are updated to take advantage of them, the vulnerabilities will remain. A few Vista components do not yet fully utilise the available technologies.

Furthermore, the implementation of at least of these technologies is flawed. Address Space Layout Randomisation (ASLR) is supposed to randomly locate programs in memory, making it harder for an attacker to target memory corruption or manipulation vulnerabilities. Symantec has determined that randomness is far from uniform, and certain addresses are far more likely to be used than others, increasing the probability of successfully guessing the location.

This problem should be fixed in Vista SP1, but there's more.