techkenyot.com
techkenyot.com May 26, 2019


Microsoft offers security update to fix critical issue in older Windows systems

15 May 2019, 04:10 | Casey Mitchell

Microsoft issues new patch for Windows XP to fight a dangerous 'wormable' vulnerability

Microsoft Patches 'Wormable' Flaw in Windows XP, 7 and Windows 2003

On Tuesday, the company said it discovered a serious flaw in Windows 7, Windows XP and Windows Server 2003 and 2008 systems, which can be exploited to create malware capable of automatically spreading from one vulnerable machine to another.

"This vulnerability is pre-authentication and requires no user interaction", the MSRC blog post says. While Microsoft has not yet seen any case of this vulnerability being exploited, it is likely that hackers will incorporate an exploit for this vulnerability into new malware.

Basically, find one of countless vulnerable Windows boxes facing the internet or on a network, and send carefully crafted packets to its remote desktop service, if running, to start executing malicious code on the machine. The latter, CVE-2019-0725, is a particularly nasty memory corruption vulnerability, since all that is needed to exploit it is a well-crafted packet sent to a DHCP server and affects all now supported versions of Windows, client and server.

Alabama Senate approves country’s most restrictive abortion ban
Abortion rights advocates have promised to challenge the controversial legislation if Governor Ivey signs the bill into law. The American Civil Liberties Union of Alabama said a complaint is being drafted to challenge the ban.

Windows phone handsets running Windows 10 Mobile received an operating system update today.

"Microsoft invests heavily in strengthening the security of its products, often through major architectural improvements that are not possible to backport to earlier versions of Windows". It also is present in computers powered by Windows XP and Windows 2003, operating systems for which Microsoft long ago stopped shipping security updates.

Of these, 18 patches deal with vulnerabilities in the Windows Scripting Engine and web browsers.

USA attorney general launches fresh review of origins of Russian Federation probe
The president also commented on the recent congressional subpoena of his son Donald Trump Jr., saying his son already offered about 20-hours of testimony in the Mueller probe.

Microsoft says that the critical RDS vulnerability tracked as CVE-2019-0708 impacts only older in-support versions of Windows (i.e. Windows 7, Windows Server 2008 R2, and Windows Server 2008), with security updates for the affected versions being available via the Microsoft Security Update Guide.

A patch is now available for a privilege escalation vulnerability exploited in the wild that affects the way Windows Error Reporting handles files.

Microsoft included several fixes for critical vulnerabilities that could enable an attacker to run code remotely on a target system. In particular there's fixes out for the information-leaking family of Microarchitectural Data Sampling (MDS) security flaws in Intel processors revealed this week.

Arthur Reveals Mr. Ratburn Is Gay, and Twitter Has Feelings About It
Children's show Arthur has been all over the internet lately after revealing that one of the main character's in the show is gay . Ratburn and an uptight woman named Patty (voiced by Jane Lynch ), who they mistake for Ratburn's bride-to-be.

Fallout breaks the kernel address space layout randomisation (KASLR) security feature that makes it harder for attackers to guess where in memory data is stored.



Other News

Trending Now

Thanks to Google, we'll see more interactive ads on our mobile phones
The company will continue to use the Shopping service to take orders for in-store pick up or delivery from a variety of shops. It's even devoting some workers to customer service to back up the products it features with shipping and other guarantees.

Ariana Grande is being sued for posting photos of herself without permission
She posted them to her account on August 17 a year ago , the day the album was released, with the caption: "Happy sweetener day". Grande is being sued for using this image not once, but twice in her post.

Lindsey Graham Advises Trump Jr to Ignore His Senate Subpoena
But this week he is directing the president's son to at least show up, but then refuse to answer the panel's questions. Trump Jr. has not commented on Twitter about the subpoena, but has retweeted dozens of posts slamming the development.

LEGO Goes Hard With New "Stranger Things" Upside-Down Set
The design of the model's building instructions makes it a great shared building experience with friends and family. The Lego set goes on sale June 1, 2019 , a month ahead of the "Stranger Things" season 3 debut on July 4 .

Madonna Defends Decision to Perform at Eurovision in Israel
Eurovision has become a much-loved annual event across Europe since it began in 1956 with just seven countries participating. Security has been tight in Tel Aviv amid fears that activists may seek to disrupt the competition.

Pompeo, Russia's Lavrov see hope for improved US-Russia ties
He also said the two sides disagree on Venezuela and urged Russian Federation to end its support for President Nicolas Maduro. Moscow is a key ally of President Nicolas Maduro whereas Washington backs opposition leader Juan Guaido.

WWE Smackdown Live Open Discussion Thread 5/14/19
Find out tonight at 8/7 C on USA Network! Fightful will have full results and highlights from the event as they happen. WWE Champion Kofi Kingston makes his entrance to the ring and they exchange words while Owens is still backstage.

Felicity Huffman pleads guilty in college admissions scandal
The Emmy-award winning actress was accused of paying $15,000 to have a proctor correct the answers on daughter's SAT exam. She walked into court with her brother, Moore , by her side, though there was no sign of husband William H.

Jeremy Kyle show 'should be axed'
The broadcaster said the episode featuring the participant who died will be submitted for a review due to the "seriousness of this event".

Photo of baby Archie shared by Harry and Meghan on Instagram
Earlier in the day, Prince Harry showed no signs of "the sleep deprivation society" as he visited the Oxford Children's Hospital . Several senior royals, including his father Prince Charles and brother Prince William , are due to meet Archie this week.