Microsoft Security Response Center is warning of a flaw in Windows 7-x64 and Windows Server 2008 R2-x64 that could permit remote code execution. Although the bug affects users of the “Aero” theme on either platform, since “Aero” is off by default in Windows 2008 Server R2, this is primarily a threat for Windows 7-x64, where it [...]

The Czechs were the first ones to notice the network of infected devices that became known as the Chuck Norris bot-net. What makes this bot-net noteworthy for us networking types is not the number of devices infected (although the number is astonishing) but rather which devices are being targeted, compromised, and used to nefarious purposes, chiefly routers, firewalls, and gateway devices.
And that is unique: Most bot-nets attack workstations, compromise them, and use them to send spam, conduct DDoS attacks, or commit other crimes, and that’s about the extent of it. Chuck Norris uses network devices not only to commit crimes, but to compromise workstations on your private network and prime them for infection with other malware.
That’s right folks, Chuck Norris has gone berserk–he’s no longer just a butt-kicking Texas Ranger who beats up the bad guys, makes the ladies swoon, and wears a very expensive hat, now he’s after your firewall!
Continue reading Chuck Norris (Bot-Net) Karate Chopped Me in the Firewall
Just in time for traditional fall pranking-season comes word of a zero-day exploit affecting all current versions of Windows (Vista, 2008 Server, and 7) that can cause the traditional “blue-screen of death” (BSOD) on any of the affected platforms–without credentials, physical access, or complicity by the victim.
In fact, this little hole is so nasty that it can be triggered using only one solitary TCP/IP packet.
Although easily prevented (by blocking Port 445 with a firewall) its yet another exploit–a black-eye for Microsoft who has been marketing Server 2008 and 7 as the penultimate releases of Windows, each containing oodles of new security features to shield users from the modern perils of life on the tubes.
Continue reading 1-Packet Borking of Vista, Server 2008, & 7