Browse by Tags

Heads up - Microsoft IIS File Extension Processing Security Bypass Vulnerability
Update - 30th Dec MSRC response to the vulnerability claim. http://blogs.technet.com/msrc/archive/2009/12/29/results-of-investigation-into-holiday-iis-claim.aspx IIS team is working on a patch for this so called inconsistency feature :) >> Well...
IIS DebugDiag x64 is out
Previously, the x86 version you are able to debug 32bit worker processes running on 32/64bit OSes, with this release - you can now debug a full 64bit worker processes. Here's the link at Microsoft download, and addtional note for x64 release Notes...
Token Kidnapping - Fixed
A year ago... Cesar Cerrudo presented a serious vulnerability via evalvation of privilege involving the NetworkService or LocalService account specific to IIS worker process. Although Microsoft addressed this in April last year, but it was more towards...
Posted Tue, Apr 14 2009 by qbernard | with no comments
Filed under: , ,
IIS Insider - Zzz...
Errr.... 2 yrs ago I told you I wrote the last ever IIS Insider column for MS!!! Chris Adam back then even put up a notice to inform everyone. Believe me, the URL is valid back then.... after MS site reorg, yeah! happen every quarter you know :) so it...
Posted Thu, Jan 22 2009 by qbernard | 2 comment(s)
Filed under: ,
IIS Insider - September 2006 Issue - Repost
IIS Insider: September 2006 By Bernard Cheah, IIS Insider is a monthly column designed to answer your questions on how to troubleshoot and make the most of Microsoft Internet Information Services (IIS). The example companies, organizations, products,...
Posted Wed, Jan 21 2009 by qbernard | with no comments
Filed under: ,
How to Detect, Identify and Defend against SQL Injection?
SQL Injection has been around for many years :) and you probably get over 3 million results when you googled the term. so why is it so HOT now? Well, not so long ago some folks (don't ask me who!!, go read) were claiming that it was an IIS exploit...

News

Search

Go

This Blog

Tags

Archives

IIS Sites

MVPs - MVPs

IIS Related

Syndication