Microsoft is preparing for a relatively modest Patch Tuesday with only three security bulletins. Among the three there are only one rated “critical”, while the other two are “important”. The critical bulletin, as well as one of the bulletins classified as important, affects Microsoft Windows. The other bulletin affects Microsoft Office. “The upcoming Patch Tuesday [...]
Archive for the ‘Operating System’ Category
Microsoft About to Patch Last Year Vulnerability!
March 6th, 2011
Mourad Ben Lakhoua
Posted in Operating System, Software Security, Vulnerabilities
Tags: Operating System, patches, Windows & Microsoft
11 Comments »Attacking Windows Operating System over PowerShell
December 14th, 2010
Mourad Ben Lakhoua We already shared the PowerShell security policies and protection measures that are used by Microsoft, as a reminder there are 4 levels of execution policies that can help in securing different script execution. Now that post has been mostly focused on system security administrator benefit but what about hackers, do they have benefits for PowerShell [...]
Posted in Operating System, Pentesting, Vulnerabilities & attacks
Tags: DefCon, DefCon18, Metasploit, Pentesting, PowerShell
11 Comments »Microsoft PowerShell: Quicker and More Secure!
November 27th, 2010
Mourad Ben Lakhoua System administrators are faced with a lot of challenges and many different tasks, running across the company or from floor to another will not help in solving these tasks but it will make them more complicated. Now if your infrastructure is based on windows environment using remote desktop is not a good idea, you may [...]
Client-Side Vulnerabilities Extra Protection
November 24th, 2010
Mourad Ben Lakhoua Today using online resources with a vulnerable system can make you exposed for new malwares and attacks, windows or any other operating system provides the daily automatic update for the OS component but not to all browser plugins and programs. Your browser may be insecure for multiple reasons. It may contain a software issue that [...]
Posted in Operating System, Safety rules, Software Security, Vulnerabilities, Vulnerabilities & attacks
Tags: Client-Side Security, Panda ActiveScan 2.0, Plugin Check for Mozilla, Qualys BrowserCheck, Secunia Online Software Inspector (OSI), Vulnerabilities & attacks, Vulnerability management, Vulnerability Research
11 Comments »PoC For Windows 0day Publicly Released!
November 24th, 2010
Mourad Ben Lakhoua One month ago vulnerability has been identified in Microsoft Windows, which could be exploited by local attackers to take complete control of a vulnerable system. This bug caused by an access validation error in the Task Scheduler service that fails to prevent users from manipulating certain fields in schema XML files via the Component Object [...]
Fedora 14 More Developers Features
November 3rd, 2010
Mourad Ben Lakhoua The Fedora development community announced the official release of Fedora 14, the new version of one of the most popular Linux-distributions, sponsored by Red Hat and supported by the community, – Fedora 14, codenamed Laughlin. This release is a bit light on user-facing changes, but adds some useful features for developers. Some of the key [...]
Qubes OS: Security Over Virtualization
October 9th, 2010
Mourad Ben Lakhoua Qubes OS is a new operating system aims provide more safety measures to users; the idea behind this operating system is to protect users against new malware as it builds a Security Isolation technique based on the virtualization. To understand methods to secure OS Level there is three categories: 1) Security by Correctness (secure coding). [...]
Posted in Open-Source, Operating System
Tags: Linux, opensource, Qubes OS, Security, Virtualization
12 Comments »














