Exploit Theater : MS11-083 and Defense-in-Depth

images

A very interesting (OK, it was pretty cool) vulnerability in the TCP stack of Windows Vista and above (including 32-bit and 64-bit versions and Windows Server 2008) was recently announced and patched. This vulnerability is of particular note not just because of the wide range of products that it affected, but because of how the vulnerability worked. Microsoft published this in its advisory on the vulnerability: "A remote code execution vulnerability … [Read more...]

Security Development Lifecycle Webinar with Michael Howard

sdl

On Friday, December 16th, 2011, FedCyber.com will host a webinar featuring one of the great champions of secure code, Mr. Michael Howard. For more information and to register for this event see: https://www3.gotomeeting.com/register/551297622 More on the webinar:  FedCyber.com is pleased to announce a special opportunity to interact with Mr. Michael Howard, author of the Security Development Lifecycle process improvements and lead security … [Read more...]