Posts tagged as:

Security

iPhone OS 3.1 Security Changes and Exchange ActiveSync Policy

September 16, 2009

Apple implemented device encryption in the iPhone 3GS, improving its odds of being considered for enterprise deployment. However, users using Exchange ActiveSync (EAS) to connect to their Exchange 2007 mailboxes couldn’t take advantage of it, even when encryption was required by an Exchange ActiveSync Mailbox Policy, because the device didn’t tell Exchange it can support [...]

Read the full article →

The ‘Catastrophic’ Windows 7 bug and security vulnerability that never was

August 10, 2009

Perhaps I should’ve used a different headline for this post. Something like “InfoWorld’s conspiracy to derail the Windows 7 product launch”. But that would be giving in to exactly the temptation I want to highlight— the one many bloggers, writers, and editors fall victim to, or otherwise find hard to resist in the quest for [...]

Read the full article →

Trust Thy Certificate? New SSL Vulnerabilities Revealed At BlackHat 2009

July 30, 2009

It’s BlackHat time in Vegas, and I was expecting some interesting security revelations to make headlines, but not as serious as the SSL vulnerability revealed by independent security researcher Moxie Marlinspike. Moxie showed a way to intercept SSL traffic using what he calls a null-termination certificate. Reportedly, some programs terminate processing of a certificate’s subject [...]

Read the full article →

UAE BlackBerry Update A Surveillance App

July 22, 2009

Unsuspecting BlackBerry customers in the UAE have been pushed out a surveillance app disguised as a BlackBerry update by telco Etisalat. Rather than improve BlackBerry handheld performance, the update emails received messages back to a central server! After downloading the app developed by Milpitas, CA-based SS8, a provider of communications intercept and surveillance solutions, users [...]

Read the full article →

Windows 7 and Direct Access: The Anywhere Experience

June 24, 2009

Over the past few weeks, Windows 7 Release Candidate has been widely downloaded, used, praised (including by some very vocal critics), and loved. It’s easy to fall in love with the Windows 7 user experience, and I don’t just mean the lovely wallpapers and themes that are in stark contrast to the kind of visual [...]

Read the full article →

ASN1 Bad Tag Error Installing an SSL Certificate in IIS 7

April 9, 2009

You’ve installed SSL certificates on previous versions of IIS more times than you care to remember. It’s no rocket science – you create a certificate request, request the certificate from a Certification Authority, get the certificate and complete your certificate request. Then there’s IIS 7. Modularized. Optimized. Secure. You follow the same procedure as you [...]

Read the full article →

Internet Explorer 8 and OWA: Where Are The Images?

March 24, 2009

Internet Explorer 8 was released last week at MIX09. It’s likely many users may already be running either the RTM version or one of the earlier betas. IE 8 is more secure than previous versions (see Stay Safer Online for a list of IE8′s security features), including some of the default settings. Here’s one of [...]

Read the full article →

Google Docs’ Privacy Blunder: Shares Your Docs Without Permission

March 9, 2009

Just as I was beginning to warm up to certain kinds of cloud computing comes news of Google Docs’ “privacy blunder”. Google has sent a notice to a number of users notifying them that it may have inadvertently shared some of their documents with contacts who were never granted access to them. Jason Kincaid writes [...]

Read the full article →

Released: Update Rollup 6 for Exchange 2007 Service Pack 1

February 10, 2009

Update Rollup 6 for Exchange Server 2007 SP1 has been released. Download it here. As noted in previous posts, Exchange 2007 updates are cumulative and release-specific. Additionally, as Ananth notes in the post on the Exchange team blog (read ‘Update Rollup 6 for Exchange Server 2007 Service Pack 1 Released‘), this update has a fix [...]

Read the full article →

McCain Campaign Sells Loaded BlackBerry Smartphones

December 15, 2008

As part of winding down operations, the McCain-Palin campaign ended up making yet another security foible – the campaign sold 10 BlackBerry smartphones without wiping them clean. According to Fox News, the devices with confidential campaign data on them were sold for $20 each. More in McCain Campaign Sells Info-Loaded Blackberry to FOX 5 Reporter.

Read the full article →