CroatianEnglishMacedonian

Sigurnosno upozorenje

INFIGO IS Security Advisory #INFIGO-2012-05-01

A vulnerability has been identified in the built-in Windows firewall affecting Windows 7, Windows Vista, Windows Server 2008, Windows XP with Service Pack 2 and later, and Windows Server 2003 with Service Pack 1 and later. While an administrator can set detailed security policies for different profiles, when certain traffic is sent such as NBNS lookups, the rules are bypassed by Windows.

This enables an attacker to abuse this vulnerability in order to poison NetBIOS names. More information in the advisory.

Posljednja novost News

INFIGO Security Day

Each day we witness how information systems are becoming more vulnerable to various information security threats and cyber-attacks. Recent examples of attacks on companies like Sony or RSA Security are good examples which demonstrate that companies, even the biggest ones, are usually not well prepared to properly answer and deal with such attacks.
 
That was the main topic at INFIGO Security Day Conference, held in Skopje, Macedonia on the 9th of June which was entirely dedicated to information security and security measures which allow companies to raise the security level of their information systems.

Posljednji dokument Whitepapers

Advanced PostgreSQL SQL Injection and Filter Bypass Techniques

2009-06-17

According to the WhiteHat Website Security Statistics Report from 2009, SQL injection vulnerabilities make up to 17% of all web application vulnerabilities. Besides being very common, SQL injection vulnerabilities typically allow an attacker to read or even modify arbitrary data in the database used by the web application. This increases the risk resulting from such vulnerabilities.

In order to increase the overall security of web applications, companies today often implement web application firewalls or filters. While web application firewalls can indeed stop certain attacks, they are not a complete solution to web application vulnerabilities.

INfigo.hr © 2006 | design & development: Vega Intro