Well the source code for the vulnerability, MS06-040, has been out publicly for a while now. Have any of you bothered downloading the code and played in the lab with it yet? Always a good thing to do so once the code is available as it will give you a better understanding of how the exploit works. Not only that but also perhaps build a better Intrusion Detection System (IDS) signature for it then the one provided by your vendor. Anyone?
About The Author
Read Next
VPN’s and fragmentation
Well I would imagine most of you have Virtual Private Network’s (VPN) on your corporate network. That plus the use of an IDS can potentially…
2007 e-Crime Survey
2007 e-Crime Watch Survey and the 5th Annual Global State of Information Security Awareness of information security and identity theft issues is at an all-time…
More Microsoft patching
A good number of you are likely aware that Microsoft just issued another series of patches recently. I’m curious though to know if any of…
ISP Abuse departments
Well I have always known that ISP abuse departments are generally very lame. They never seem to bother returning any darn email that you send…