<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://msmvps.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Kurbli : Security</title><link>http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx</link><description>Tags: Security</description><dc:language>en</dc:language><generator>CommunityServer 2008.5 SP2 (Build: 40407.4157)</generator><item><title>Microsoft Security Essentials</title><link>http://msmvps.com/blogs/kurbli/archive/2009/06/23/microsoft-security-essentials.aspx</link><pubDate>Tue, 23 Jun 2009 18:50:30 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1696423</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=1696423</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2009/06/23/microsoft-security-essentials.aspx#comments</comments><description>&lt;p&gt;Letöltöttem &lt;a href="http://go.microsoft.com/fwlink/?LinkID=153446" target="_blank"&gt;innen&lt;/a&gt; a Microsoft új biztonsági programjának BETA változatát (antivirus és antispyware).&lt;/p&gt;  &lt;p&gt;&lt;a href="http://msmvps.com/cfs-file.ashx/__key/CommunityServer.Blogs.Components.WeblogFiles/kurbli.metablogapi/7851.MSE_5F00_42612A8E.png"&gt;&lt;img style="border-right-width:0px;display:inline;border-top-width:0px;border-bottom-width:0px;border-left-width:0px;" title="MSE" border="0" alt="MSE" src="http://msmvps.com/cfs-file.ashx/__key/CommunityServer.Blogs.Components.WeblogFiles/kurbli.metablogapi/6371.MSE_5F00_thumb_5F00_5D7BC8A6.png" width="244" height="203" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Gond nélkül felment a Windows 7 RC-re.&lt;/p&gt;  &lt;p&gt;Most a tesztelése következik.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1696423" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>IE8 issues if immunization by Spybot-S&amp;D is enabled</title><link>http://msmvps.com/blogs/kurbli/archive/2009/03/21/ie8-issues-if-immunization-by-spybot-s-amp-d-is-enabled.aspx</link><pubDate>Sat, 21 Mar 2009 03:11:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1680166</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=1680166</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2009/03/21/ie8-issues-if-immunization-by-spybot-s-amp-d-is-enabled.aspx#comments</comments><description>&lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;E-társak, gáz van!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;There are reports that IE8 will not start fast if user’s system is immunized using Spybot S&amp;amp;D.&amp;#160; I able to reproduce this in Vista and XP.&lt;/p&gt;    &lt;p&gt;There is report of high-CPU usage when Spybot –S&amp;amp;D immunization is enabled. I able to reproduce this in XP.&lt;/p&gt;    &lt;p&gt;There is also report that IE8 will not load fast or it will hang if restricted sites exists in IE Restricted Sites zone, e.g. using IE-SPYAD and I able to reproduce this also in XP and Vista.&lt;/p&gt;    &lt;p&gt;Time for the authors to check their protection tools for IE8 compatibility.&amp;#160; For now, users who want IE8… should disable the immunization and IE-SPYAD.&amp;#160; For users who prefer the protection over IE8, stay first with IE7.&lt;/p&gt;    &lt;p&gt;Discussion at &lt;a href="http://www.calendarofupdates.com/updates/index.php?showtopic=17654"&gt;http://www.calendarofupdates.com/updates/index.php?showtopic=17654&lt;/a&gt;&lt;/p&gt;    &lt;p&gt;Related blog:&amp;#160; &lt;a href="http://blogs.msdn.com/ie/archive/2009/03/19/internet-explorer-8-final-available-now.aspx"&gt;http://blogs.msdn.com/ie/archive/2009/03/19/internet-explorer-8-final-available-now.aspx&lt;/a&gt;&lt;/p&gt;    &lt;p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1679937" width="1" height="1" alt="" /&gt; &lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;&lt;a href="http://msmvps.com/blogs/donna/archive/2009/03/20/ie8-issues-if-immunization-by-spybot-s-amp-d-is-enabled.aspx"&gt;IE8 issues if immunization by Spybot-S&amp;amp;D is enabled&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;2009.03.25:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.safer-networking.org/en/news/2009-03-25.html" target="_blank"&gt;Spybot S&amp;amp;D Team’s response on IE8 issues&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;2009.03.28:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://msmvps.com/blogs/donna/archive/2009/03/28/work-around-by-users-on-slow-startup-of-ie-with-immunization.aspx"&gt;Work-around by users on slow startup of IE with immunization&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;2009.04.08:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://support.microsoft.com/kb/969938/en-us"&gt;New MS KB&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1680166" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category><category domain="http://msmvps.com/blogs/kurbli/archive/tags/IE8/default.aspx">IE8</category></item><item><title>Automatic Scan for Virus When Plug in USB Flash Drive » Raymond.CC Blog</title><link>http://msmvps.com/blogs/kurbli/archive/2008/04/13/automatic-scan-for-virus-when-plug-in-usb-flash-drive-187-raymond-cc-blog.aspx</link><pubDate>Sun, 13 Apr 2008 08:50:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1585233</guid><dc:creator>Kurbli</dc:creator><slash:comments>2</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=1585233</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2008/04/13/automatic-scan-for-virus-when-plug-in-usb-flash-drive-187-raymond-cc-blog.aspx#comments</comments><description>&lt;blockquote&gt;
&lt;p&gt;Since manually scanning USB flash drive is troublesome, I found a way to automatically scan the USB flash drive whenever it is inserted or plugged in to a Windows computer.&lt;br /&gt;&lt;strong&gt;USBVirusScan&lt;/strong&gt; is a small program that will launch any program you provide as a command line parameter each time a USB stick is inserted. The author use it to start a full virus scan on the inserted USB drive, hence the name.&lt;/p&gt;&lt;/blockquote&gt;
&lt;p&gt;Ragyogó megoldás az USB flash drive-okon tenyésző vírusok ellen!&lt;/p&gt;
&lt;p&gt;Link: &lt;a href="http://www.raymond.cc/blog/archives/2008/04/13/automatic-scan-for-virus-when-plug-in-usb-flash-drive/"&gt;http://www.raymond.cc/blog/archives/2008/04/13/automatic-scan-for-virus-when-plug-in-usb-flash-drive/&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1585233" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>Virtualization Support for ISA and RRAS (A frustrated reader gets a response from Microsoft)</title><link>http://msmvps.com/blogs/kurbli/archive/2007/09/27/virtualization-support-for-isa-and-rras-a-frustrated-reader-gets-a-response-from-microsoft.aspx</link><pubDate>Thu, 27 Sep 2007 09:21:47 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1218983</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=1218983</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2007/09/27/virtualization-support-for-isa-and-rras-a-frustrated-reader-gets-a-response-from-microsoft.aspx#comments</comments><description>&lt;p&gt;Rendkívül érdekes történet. A biztonsággal és virtualizálással foglalkozóknak el kell olvasni. &lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;Over the past few months, I&amp;#39;ve been doing a lot of traveling and I&amp;#39;ve neglected this blog. (If for some reason, anybody is interested in how I spent my summer, see the end of this post for my quick summary. It feels odd to be writing about myself, but I guess that&amp;#39;s what people do in blogs.) Anyway, I&amp;#39;m back now and have a million things to write about. Microsoft has been incredibly busy!&lt;br /&gt;I&amp;#39;ll start by sharing a letter from a reader, Jeff Vandervoort, who asked me to get a response from Microsoft. At the end of Jeff&amp;#39;s letter, you&amp;#39;ll see the response Microsoft gave me. I&amp;#39;ll be eager to hear what you think.  &lt;p&gt;...&lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;&lt;a href="http://www.windowsitpro.com/Articles/ArticleID/97153/97153.html?Ad=1"&gt;Virtualization Support for ISA and RRAS&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1218983" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/opsys/default.aspx">opsys</category><category domain="http://msmvps.com/blogs/kurbli/archive/tags/virtualization/default.aspx">virtualization</category><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>Security Update for the 2007 Microsoft Office System (KB936960)</title><link>http://msmvps.com/blogs/kurbli/archive/2007/08/14/security-update-for-the-2007-microsoft-office-system-kb936960.aspx</link><pubDate>Tue, 14 Aug 2007 19:39:22 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1111427</guid><dc:creator>Kurbli</dc:creator><slash:comments>4</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=1111427</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2007/08/14/security-update-for-the-2007-microsoft-office-system-kb936960.aspx#comments</comments><description>&lt;ol&gt; &lt;li&gt;WindowsUpdate.log:&lt;/li&gt; &lt;ol&gt; &lt;blockquote dir="ltr" style="margin-right:0px;"&gt; &lt;p&gt;2007-08-14&amp;nbsp;&amp;nbsp;&amp;nbsp; 20:26:59:486&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 912&amp;nbsp;&amp;nbsp;&amp;nbsp; bf0&amp;nbsp;&amp;nbsp;&amp;nbsp; Report&amp;nbsp;&amp;nbsp;&amp;nbsp; REPORT EVENT: {EBD00822-A710-49F6-81C1-5AEA5E368FC0}&amp;nbsp;&amp;nbsp;&amp;nbsp; 2007-08-14 20:26:54:469+0200&amp;nbsp;&amp;nbsp;&amp;nbsp; 1&amp;nbsp;&amp;nbsp;&amp;nbsp; 182&amp;nbsp;&amp;nbsp;&amp;nbsp; 101&amp;nbsp;&amp;nbsp;&amp;nbsp; {9FF36D09-9505-46AF-8B21-5EBEB95AE7D4}&amp;nbsp;&amp;nbsp;&amp;nbsp; 100&amp;nbsp;&amp;nbsp;&amp;nbsp; 80070643&amp;nbsp;&amp;nbsp;&amp;nbsp; MicrosoftUpdate&amp;nbsp;&amp;nbsp;&amp;nbsp; Failure&amp;nbsp;&amp;nbsp;&amp;nbsp; Content Install&amp;nbsp;&amp;nbsp;&amp;nbsp; Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for the 2007 Microsoft Office System (KB936960).&lt;/p&gt;&lt;/blockquote&gt;&lt;/ol&gt; &lt;li&gt;Direct download KB936960 and install failed.&lt;/li&gt; &lt;li&gt;officeupdate.microsoft.com -&amp;gt; officeupdate success.&lt;/li&gt;&lt;/ol&gt; &lt;p&gt;Újabban csak én szaladok bele a Microsoft Update&amp;nbsp;hibáiba? &lt;/p&gt; &lt;p&gt;És még mindig nem tudom miért keletkezett a hiba.&amp;nbsp;A fenti workaround megoldotta.&lt;/p&gt; &lt;ol&gt; &lt;ol&gt; &lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;/ol&gt;&lt;/ol&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1111427" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>Preventing an internal spammer - E-Bitz - SBS MVP the Official Blog of the SBS "Diva"</title><link>http://msmvps.com/blogs/kurbli/archive/2007/08/13/preventing-an-internal-spammer-e-bitz-sbs-mvp-the-official-blog-of-the-sbs-quot-diva-quot.aspx</link><pubDate>Mon, 13 Aug 2007 11:08:12 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1108712</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=1108712</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2007/08/13/preventing-an-internal-spammer-e-bitz-sbs-mvp-the-official-blog-of-the-sbs-quot-diva-quot.aspx#comments</comments><description>&lt;p&gt;Avagy: a spammerek már a spájzban&amp;nbsp;vannak.&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;So what can you do to proactively prevent a client&amp;#39;s workstation to be turned into a spam spewing beast? &lt;p&gt;Les Connor and ISA Server 2004&amp;nbsp;once again to the rescue: &lt;p&gt;He builds a rule to deny any port 25 transmissions from anything other than the server itself and an internal scanner.&lt;pre&gt;&lt;em&gt;Action: Deny, log requests
Protocols: Selected : SMTP
From: The lan (defined IP address range)
Exceptions: SBS, Printer and Scanner IP&amp;#39;s, which are defined specific IP
addresses.
To: Anywhere (pre-existing destination)
Users: All
Schedule: Always

Caveat, this blocks the use of telnet &amp;lt;external host&amp;gt; 25 from any local
machine for troubleshooting purposes, so beware of this if you use it on
your &lt;b&gt;*own*&lt;/b&gt; network for testing SMTP&lt;/em&gt;.
&lt;br /&gt;&lt;br /&gt;&lt;/pre&gt;&lt;pre&gt;You might also want to build an alert rule when this deny rule kicks in as it would be a sign of infestation.&lt;/pre&gt;&lt;/blockquote&gt;
&lt;p&gt;&lt;a href="http://msmvps.com/blogs/bradley/archive/2007/08/12/preventing-an-internal-spammer.aspx"&gt;Preventing an internal spammer - E-Bitz - SBS MVP the Official Blog of the SBS &amp;quot;Diva&amp;quot;&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1108712" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category><category domain="http://msmvps.com/blogs/kurbli/archive/tags/ISA+Server/default.aspx">ISA Server</category></item><item><title>Most Computer Attacks Originate in U.S.</title><link>http://msmvps.com/blogs/kurbli/archive/2007/03/19/most-computer-attacks-originate-in-u-s.aspx</link><pubDate>Mon, 19 Mar 2007 08:39:53 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:693001</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=693001</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2007/03/19/most-computer-attacks-originate-in-u-s.aspx#comments</comments><description>&lt;p&gt;A spájzban lévő ruszkik műve. &lt;img src="http://spaces.live.com/rte/emoticons/smile_teeth.gif"&gt;&amp;nbsp;&lt;/p&gt; &lt;blockquote&gt;The United States generates more malicious computer activity than any other country, and sophisticated hackers worldwide are banding together in highly efficient crime rings, according to a new report. Researchers at Cupertino-based Symantec Corp. also found that fierce competition in the criminal underworld is driving down prices for stolen financial information. Criminals may purchase verified credit card numbers for as little as $1, and they can buy a complete identity _ a date of birth and U.S....(&lt;a href="http://msmvps.com/blogs/donna/archive/2007/03/19/most-computer-attacks-originate-in-u-s.aspx"&gt;read more&lt;/a&gt;)&lt;img height="1" src="http://msmvps.com/aggbug.aspx?PostID=692782" width="1"&gt; &lt;/blockquote&gt; &lt;p&gt;Source: &lt;a href="http://msmvps.com/blogs/donna/archive/2007/03/19/most-computer-attacks-originate-in-u-s.aspx"&gt;Most Computer Attacks Originate in U.S.&lt;/a&gt;&lt;/p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=693001" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>Tools to scan for missing patches and insecure versions - Calendar Of Updates</title><link>http://msmvps.com/blogs/kurbli/archive/2007/03/17/tools-to-scan-for-missing-patches-and-insecure-versions-calendar-of-updates.aspx</link><pubDate>Sat, 17 Mar 2007 16:17:26 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:688766</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=688766</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2007/03/17/tools-to-scan-for-missing-patches-and-insecure-versions-calendar-of-updates.aspx#comments</comments><description>&lt;p&gt;&lt;a href="http://www.msmvps.com/blogs/donna/" target="_blank"&gt;Donna&lt;/a&gt; összeírta a használható eszközöket:&lt;/p&gt; &lt;p&gt;1. &lt;a href="http://update.microsoft.com/microsoftupdate"&gt;&lt;b&gt;Microsoft Update&lt;/b&gt;&lt;/a&gt; or &lt;a href="http://www.windowsupdate.com/"&gt;&lt;b&gt;Windows Update&lt;/b&gt;&lt;/a&gt; and &lt;a href="http://office.microsoft.com/OfficeUpdate/"&gt;&lt;b&gt;Office Update&lt;/b&gt;&lt;/a&gt;&lt;br&gt;2. &lt;a href="http://www.microsoft.com/technet/security/tools/mbsahome.mspx"&gt;&lt;b&gt;Microsoft Baseline Security Analyzer&lt;/b&gt;&lt;/a&gt;&lt;br&gt;3. &lt;a href="http://secunia.com/software_inspector/"&gt;&lt;b&gt;Secunia Software Inspector&lt;/b&gt;&lt;/a&gt;&lt;br&gt;4. &lt;a href="http://www.belarc.com/free_download.html"&gt;&lt;b&gt;Belarc Advisor&lt;/b&gt;&lt;/a&gt;&lt;br&gt;5. &lt;a href="http://www.pedestalsoftware.com/products/se/downloads/webscan/"&gt;&lt;b&gt;SecurityExpressions&lt;/b&gt;&lt;/a&gt;&lt;br&gt;6. &lt;a href="http://www.radarsync.com/"&gt;&lt;b&gt;RadarSync 2007 &lt;/b&gt;&lt;/a&gt;&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;&lt;b&gt;Tools to scan for missing patches and insecure versions&lt;/b&gt;&lt;br&gt;One of the important tasks to help protect our computers from exploits and bugs is to update the applications. An up-to-date antivirus and anti-spyware will not always protect a user from attacks and infection if the system is not fully patched.&lt;br&gt;Even antivirus vendors recommend to user to always keep a patched systems and applications.&lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;Source: &lt;a href="http://www.dozleng.com/updates/index.php?showtopic=13587"&gt;Tools to scan for missing patches and insecure versions - Calendar Of Updates&lt;/a&gt; &lt;/p&gt; &lt;p&gt;&lt;em&gt;I'm rocking out to &lt;a title="Rhapsody Song Search for Whisky In The Jar" href="http://www.rhapsody.com/-search?searchtype=RhapTrack&amp;amp;query=WhiskyInTheJar"&gt;Whisky In The Jar&lt;/a&gt; by &lt;a title="Rhapsody Artist Search for Thin Lizzy" href="http://www.rhapsody.com/-search?searchtype=RhapArtist&amp;amp;query=ThinLizzy"&gt;Thin Lizzy&lt;/a&gt; from the album &lt;a title="Rhapsody Album Search for Greatest Hits" href="http://www.rhapsody.com/-search?searchtype=RhapAlbum&amp;amp;query=GreatestHits"&gt;Greatest Hits&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=688766" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Tools/default.aspx">Tools</category><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>Microsoft allows bypass of Vista activation</title><link>http://msmvps.com/blogs/kurbli/archive/2007/03/16/microsoft-allows-bypass-of-vista-activation.aspx</link><pubDate>Fri, 16 Mar 2007 11:20:26 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:685599</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=685599</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2007/03/16/microsoft-allows-bypass-of-vista-activation.aspx#comments</comments><description>&lt;p&gt;Rossz fiúk! Nóta, vidámság!&amp;nbsp;&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;In its TechNet documents, Microsoft recommends the repeated use of &lt;b&gt;SkipRearm.&lt;/b&gt; How many times is "multiple times"? My testing revealed that the answer is, well, indefinite.&lt;br&gt;• &lt;b&gt;On a copy of Vista Ultimate&lt;/b&gt; that Microsoft released in New York City on Jan. 29, I found that changing &lt;b&gt;SkipRearm&lt;/b&gt; from 0 to 1 allowed the command &lt;b&gt;slmgr -rearm&lt;/b&gt; to postpone Vista's activation deadline eight separate times. After that, changing the 0 to 1 had no effect, preventing &lt;b&gt;slmgr -rearm&lt;/b&gt; from moving the deadline. The use of &lt;b&gt;slmgr -rearm&lt;/b&gt; 3 times, plus using &lt;b&gt;SkipRearm&lt;/b&gt; 8 times would eliminate Vista's activation nag screens for about one year (12 periods of 30 days).&lt;br&gt;• &lt;b&gt;On a copy of the upgrade version of Vista Home Premium&lt;/b&gt; that I bought in a retail store on Jan. 30, &lt;b&gt;slmgr -rearm&lt;/b&gt; also worked 3 times and &lt;b&gt;SkipRearm&lt;/b&gt; worked 8 times before losing their effect. This combination would, as with Vista Ultimate, permit a one-year use of Vista without nag screens appearing.&lt;br&gt;• &lt;b&gt;On a copy of the full version of Vista Home Premium&lt;/b&gt; that I bought in a retail store on Mar. 14, &lt;b&gt;SkipRearm&lt;/b&gt; had no effect on extending the use of &lt;b&gt;slmgr -rearm&lt;/b&gt; at all. This suggests that Microsoft has slipstreamed a new version into stores, eliminating the &lt;b&gt;SkipRearm&lt;/b&gt; feature in Vista Home. That could mean that changing the key from 0 to 1 will now work only in the business editions of Vista — Business, Enterprise, and Ultimate — so corporations can use the loophole.&lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;Source: &lt;a href="http://www.windowssecrets.com/comp/070315/#story1"&gt;Microsoft allows bypass of Vista activation&lt;/a&gt;&lt;/p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=685599" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>Security attacks you can’t stop: browser patch delays</title><link>http://msmvps.com/blogs/kurbli/archive/2007/03/14/security-attacks-you-can-t-stop-browser-patch-delays.aspx</link><pubDate>Wed, 14 Mar 2007 08:54:19 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:678740</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=678740</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2007/03/14/security-attacks-you-can-t-stop-browser-patch-delays.aspx#comments</comments><description>&lt;p&gt;És mint tudjuk, a legtöbb nyavalyát a webről szedhetjük össze. Nem kéne egy picit igyekezni MS, a nagy tömeggyűlések közti szünetekben?&amp;nbsp;&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;“Delays in updating browsers can leave users vulnerable to attack. &lt;p&gt;But, in updating browsers–especially when a zero-day attack was in progress–Microsoft trailed Apple, Mozilla and Opera in providing fixes. On average, IE patches appeared ten days after the flaw was reported, while Opera, Mozilla and Safari browsers were patched, on average, in two, three, and five days, respectively.”&amp;nbsp;&lt;a href="http://feeds.feedburner.com/~f/flyinghamster?a=mUoFpUHX"&gt;&lt;img src="http://feeds.feedburner.com/~f/flyinghamster?i=mUoFpUHX" border="0"&gt;&lt;/a&gt; &lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;Source: &lt;a href="http://feeds.feedburner.com/~r/flyinghamster/~3/101420674/35511"&gt;Security attacks you can’t stop: browser patch delays&lt;/a&gt;&lt;/p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=678740" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>No Microsoft security patches today, but two Vista fixes released</title><link>http://msmvps.com/blogs/kurbli/archive/2007/03/14/no-microsoft-security-patches-today-but-two-vista-fixes-released.aspx</link><pubDate>Wed, 14 Mar 2007 08:32:06 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:678696</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=678696</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2007/03/14/no-microsoft-security-patches-today-but-two-vista-fixes-released.aspx#comments</comments><description>&lt;p&gt;Nincs nagy peccs, csak ki peccsek.&amp;nbsp;&lt;/p&gt; &lt;blockquote&gt;The rare no-patch Tuesday caught some security analysts and professionals trying to figure out how to spend their free time. "Relax, take a breath," suggested Minoo Hamilton, senior security researcher with patch management vendor nCircle Network Security Inc.&lt;/blockquote&gt; &lt;p&gt;Source: &lt;a href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;amp;articleId=9013024&amp;amp;source=rss_topic17"&gt;No Microsoft security patches today, but two Vista fixes released&lt;/a&gt;&lt;/p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=678696" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>Unpatched Vulnerabilities page</title><link>http://msmvps.com/blogs/kurbli/archive/2007/02/15/unpatched-vulnerabilities-page.aspx</link><pubDate>Thu, 15 Feb 2007 10:27:41 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:581758</guid><dc:creator>Kurbli</dc:creator><slash:comments>1</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=581758</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2007/02/15/unpatched-vulnerabilities-page.aspx#comments</comments><description>&lt;p&gt;Ha egy ilyen To Do List-em lenne, elmennék nyaralni, mert&amp;nbsp;vagy elintéződik magától, vagy bedől az oldala, de a vége nem látszik.&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;The &lt;a href="http://www.dozleng.com/updates/index.php?act=module&amp;amp;module=pages&amp;amp;pg=vuln"&gt;&lt;b&gt;Not So Real Time Monitoring of Reported Unpatched Vulnerabilities&lt;/b&gt;&lt;/a&gt; page here in CoU has been updated today.&lt;br&gt;&lt;b&gt;Changes&lt;/b&gt;&lt;br&gt;Adjustment on number of unpatched advisories for the following products:  &lt;ul&gt; &lt;li&gt;Windows Vista - 1 out of 0 to &lt;b&gt;1 out of 2&lt;/b&gt; &lt;li&gt;Windows XP Pro - 32 out of 170 to &lt;b&gt;32 out of 177&lt;/b&gt; &lt;li&gt;Windows XP Home - 29 out of 155 to &lt;b&gt;29 out of 161&lt;/b&gt; &lt;li&gt;Windows 2000 - 24 out of 146 to &lt;b&gt;24 out of 151&lt;/b&gt; &lt;li&gt;Outlook 2003 - 1 out of 12 to &lt;b&gt;1 out of 14&lt;/b&gt; &lt;li&gt;IE 7 - 3 out of 4 to &lt;b&gt;4 out of 6&lt;/b&gt; &lt;li&gt;IE 6 - 19 out of 110 to &lt;b&gt;19 out of 111&lt;/b&gt; &lt;li&gt;Firefox 2 - 1 out of 2 to &lt;b&gt;2 out of 3&lt;/b&gt; &lt;li&gt;Office 2003 Pro - 8 out of 31 to &lt;b&gt;5 out of 32&lt;/b&gt; &lt;li&gt;Office XP - 6 out of 35 to &lt;b&gt;3 out of 35&lt;/b&gt; &lt;li&gt;Windows Defender - &lt;b&gt;0 out of 1&lt;/b&gt; (added in the list)  &lt;li&gt;Live OneCare - &lt;b&gt;0 out of 1&lt;/b&gt; (added in the list)  &lt;li&gt;Trend Micro Anti-spyware - &lt;b&gt;0 out of 1&lt;/b&gt; (added in the list)&lt;/li&gt;&lt;/ul&gt; &lt;p&gt;Single Day Event On: 2/14/2007 &lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;Source: &lt;a href="http://www.dozleng.com/updates/index.php?act=calendar&amp;amp;code=showevent&amp;amp;calendar_id=1&amp;amp;event_id=35205"&gt;Unpatched Vulnerabilities page&lt;/a&gt;&lt;/p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=581758" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/CP/default.aspx">CP</category><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>IBM announces sHype</title><link>http://msmvps.com/blogs/kurbli/archive/2007/02/13/ibm-announces-shype.aspx</link><pubDate>Tue, 13 Feb 2007 00:20:59 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:572487</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=572487</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2007/02/13/ibm-announces-shype.aspx#comments</comments><description>&lt;p&gt;Vesd össze: &lt;br&gt;Robert McMillan, IDG News Service&lt;br&gt;Friday, February 09, 2007 12:00 PM PST&lt;br&gt;&lt;a href="http://www.pcworld.com/article/id,128888-c,vistalonghorn/article.html" target="_blank"&gt;http://www.pcworld.com/article/id,128888-c,vistalonghorn/article.html&lt;/a&gt;&amp;nbsp;elképzeléseivel az IBM announcement-et. A vágy és a tett esete.&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;"We're going to look at a fundamental piece of enabling technology. Maybe its hypervisors, I don't know what it is," he said. "Maybe it's a new user interface paradigm for consumers."&lt;/p&gt; &lt;p&gt;"It's too early for me to talk about it," he added. "But over the next few months I think you're going to start hearing more and more."&lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;&lt;a&gt;&lt;/a&gt;&lt;a href="http://www.pcworld.com/printable/article/id,128888/printable.html"&gt;&lt;/a&gt;&lt;a href="http://www.pcworld.com/emailfriend?aid=128888"&gt;&lt;/a&gt;&lt;a&gt;&lt;/a&gt;&lt;a href="http://www.pcworld.com/resource/rss.html"&gt;&lt;/a&gt; &lt;blockquote&gt; &lt;p&gt;Quoting from the IBM &lt;a href="http://www-03.ibm.com/press/us/en/pressrelease/21028.wss"&gt;official announcement&lt;/a&gt;: &lt;blockquote&gt; &lt;p&gt;The IBM secure hypervisor architecture, or "sHype," is a Research technology designed to run in conjunction with commercial and open source hypervisors that control servers and data in a shared environment. sHype aims to provide a security "wrapper" around distributed workloads in the data center, extending mainframe-like security to pooled data and resources across multiple IBM and non-IBM systems. &lt;p&gt;sHype is designed to bring stronger security guarantees to popular x86 and blade servers. As is increasingly common, IBM Research developed the sHype technology not just in its own labs, but implementing early versions of sHype with customers to test and evaluate the code. Additionally, portions of sHype have been contributed to the Open Source community and are being used, for example, as part of the open source Xen hypervisor kernel. &lt;p&gt;... &lt;p&gt;sHype works in conjunction with hypervisors by establishing a virtual machine to act as a data center "security foreman." The foreman uses preset configurations, business policies and exceptions set by the customer to lock down all content of the data center. It then automatically sets policies that evaluate, rank and code workloads as well as the physical and virtual resources needed to run each workload. Once workloads and resources are locked together, the integrity of the data and resources is assured and can be better managed by hypervisors accordingly...&lt;/p&gt;&lt;/blockquote&gt;&lt;a href="http://technorati.com/tag/Alessandro+Perilli"&gt;&lt;/a&gt;&lt;a href="http://technorati.com/tag/virtualization.info"&gt;&lt;/a&gt;&lt;a href="http://technorati.com/tag/virtualization"&gt;&lt;/a&gt;&lt;a href="http://technorati.com/tag/Virtualisierung"&gt;&lt;/a&gt;&lt;a href="http://technorati.com/tag/virtualisation"&gt;&lt;/a&gt;&lt;a href="http://technorati.com/tag/virtualizaci&amp;oacute;n"&gt;&lt;/a&gt;&lt;a href="http://technorati.com/tag/virtualizzazione"&gt;&lt;/a&gt;&lt;a href="http://technorati.com/tag/%D0%B2%D0%B8%D1%80%D1%82%D1%83%D0%B0%D0%BB%D0%B8%D0%B7%D0%B0%D1%86%D0%B8%D1%8F"&gt;&lt;/a&gt;&lt;a href="http://technorati.com/tag/IBM"&gt;&lt;/a&gt;&lt;a href="http://technorati.com/tag/sHype"&gt;&lt;/a&gt;&lt;/blockquote&gt; &lt;p&gt;Source: &lt;a href="http://www.virtualization.info/2007/02/ibm-announces-shype.html"&gt;IBM announces sHype&lt;/a&gt;&lt;/p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=572487" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/CP/default.aspx">CP</category><category domain="http://msmvps.com/blogs/kurbli/archive/tags/virtualization/default.aspx">virtualization</category><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>Mennyibe kerül?</title><link>http://msmvps.com/blogs/kurbli/archive/2007/02/11/mennyibe-ker-l.aspx</link><pubDate>Sun, 11 Feb 2007 10:22:59 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:565045</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=565045</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2007/02/11/mennyibe-ker-l.aspx#comments</comments><description>&lt;p&gt;Derekas méretű hosts file-ok (pl.: a &amp;nbsp;hpHOSTS &lt;b&gt;59,279&lt;/b&gt; host nevet tartalmaz). w2k és xp esetében, ha nem tesszük disable állapotba a DNS client service-t, akkor jelentős lassulást okozhat a nagyméretű host file. w9x és home esetében nem. Vista esetében csak administrator-i joggal lehet a hosts file-t módosítani.&lt;br&gt;Ezeket az host neveket számos szűrőprogram is vizsgálja, szűri&amp;nbsp;(AD Muncher, SpywareBlaster, stb.).&lt;br&gt;Külön mise, hogy a hazai gané oldalak nem szerepelnek a listában. &lt;br&gt;Lassacskán felmerülhet a kérdés, mennyiért védekezünk és mi ellen?&lt;/p&gt; &lt;blockquote&gt; &lt;ul&gt; &lt;li&gt;MVPS - &lt;a href="http://mvps.org/winhelp2002/hosts.htm"&gt;http://mvps.org/winhelp2002/hosts.htm&lt;/a&gt; &lt;li&gt;McRae - &lt;a href="http://pgl.yoyo.org/as/"&gt;http://pgl.yoyo.org/as/&lt;/a&gt; &lt;li&gt;Mike Skallas - &lt;a href="http://everythingisnt.com/hosts.html"&gt;http://everythingisnt.com/hosts.html&lt;/a&gt; &lt;li&gt;Stuart Hanzlik - &lt;a href="http://accs-net.com/hosts/"&gt;http://accs-net.com/hosts/&lt;/a&gt; (last updated August 2003) &lt;li&gt;hpHOSTS - &lt;a href="http://www.hosts-file.net/" target="_blank"&gt;http://www.hosts-file.net/&lt;/a&gt;&lt;/li&gt;&lt;/ul&gt;&lt;/blockquote&gt; &lt;p&gt;Source: &lt;a href="http://www.dozleng.com/updates/index.php?act=calendar&amp;amp;code=showevent&amp;amp;calendar_id=1&amp;amp;event_id=35073"&gt;Calendar Of Updates Calendar&lt;/a&gt;&lt;/p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=565045" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>ie7 Developer Toolbar 1.0.1517 error?</title><link>http://msmvps.com/blogs/kurbli/archive/2007/01/29/ie7-developer-toolbar-1-0-1517-error.aspx</link><pubDate>Mon, 29 Jan 2007 16:33:38 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:527151</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=527151</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2007/01/29/ie7-developer-toolbar-1-0-1517-error.aspx#comments</comments><description>&lt;p&gt;&lt;a href="http://www.inetpub.hu/kurbli/ie7DeveloperToolbar1.0.1517error_F6F5/ie7devtoolbar2.png"&gt;&lt;img style="border-right:0px;border-top:0px;border-left:0px;border-bottom:0px;" height="318" src="http://www.inetpub.hu/kurbli/ie7DeveloperToolbar1.0.1517error_F6F5/ie7devtoolbar_thumb.png" width="462" border="0"&gt;&lt;/a&gt; &lt;/p&gt; &lt;p&gt;Ilyenekkel örvendeztet meg a legfrissebb verzió. Úgyhogy uninstall...&lt;/p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=527151" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>Mindentudás Egyeteme</title><link>http://msmvps.com/blogs/kurbli/archive/2007/01/28/mindentud-s-egyeteme.aspx</link><pubDate>Sun, 28 Jan 2007 01:07:47 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:524292</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=524292</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2007/01/28/mindentud-s-egyeteme.aspx#comments</comments><description>&lt;p&gt;Lovász akadémikus - általam önkényesen kiemelt - megjegyzése&amp;nbsp;elgodolkodtató. Nem úgy vagyunk-e mi is (informatikusok), hogy elhisszük a marketingeseknek egy-egy termék milyen nagyszerűen biztonságos? Miért nem követeljük a matematikai bizonyítást? Esetleg nem tudjuk a matematika nyelvén megfogalmazni kérdéseinket? Netán tudjuk-e modellezni egy program részeit, vagy egy adott&amp;nbsp;protokollt?&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;&lt;strong&gt;...&lt;/strong&gt; &lt;p&gt;&lt;strong&gt;IV. A bizonyítás új fogalma&lt;/strong&gt; &lt;p&gt;A bizonyítás a matematika lelke, a görög tudomány talán legfontosabb alkotása. Mégis, az iskolai matematikatanításból sokszor kimarad. Még egyetemi hallgatók is gyakran nem értik, miért van rá szükség: "Elhisszük mi a tanár úrnak, minek azt bizonygatni.'' (Remélem, ez csak amerikai tapasztalatom.) &lt;p&gt;A Pitagorasz-tételre már nagyon-nagyon sok bizonyítást talált az emberiség, és világos, hogy a bizonyításon nem azért kell végigmenni, hogy a tétel helyességéről még jobban meg legyünk győzve, hanem azért, hogy a bizonyításban szereplő matematikai módszereket elsajátítsuk. &lt;strong&gt;&lt;em&gt;&lt;font color="#ff0080"&gt;A programok helyessége, a kommunikációs protokollok biztonsága azonban nap mint nap bizonyítást igényel(ne)&lt;/font&gt;&lt;/em&gt;&lt;/strong&gt;.&amp;nbsp;(kiemelés tőlem, Kurbli)&lt;br&gt;...&lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;Source: &lt;a href="http://www.mindentudas.hu/mindentudasegyeteme/lovasz/20030630lovasz21.html?pIdx=5"&gt;Mindentudás Egyeteme&lt;/a&gt;&lt;/p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=524292" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>IT's Showtime - Advanced Malware Cleaning</title><link>http://msmvps.com/blogs/kurbli/archive/2006/12/23/it-s-showtime-advanced-malware-cleaning.aspx</link><pubDate>Sat, 23 Dec 2006 20:27:27 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:445815</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=445815</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2006/12/23/it-s-showtime-advanced-malware-cleaning.aspx#comments</comments><description>&lt;p&gt;Mark Russinovich kitűnő előadása.&amp;nbsp;Ajánlom.&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;&lt;b&gt;Advanced Malware Cleaning&lt;/b&gt;&lt;/p&gt; &lt;p&gt;...&lt;br&gt;Today's IT administrator needs to be prepared to identify, analyze, and remediate malware that slips through layered defences since most anti-malware solutions depend on signatures of known threats. This session takes you on a tour of malware infection and persistence technologies, including rootkits, and shows you on real malware infections how to use sophisticated tools like Sysinternals.com freeware tools Process Explorer, Autoruns, and RootkitRevealer to clean malware.&lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;Source: &lt;a href="http://www.microsoft.com/emea/itsshowtime/sessionh.aspx?videoid=359"&gt;IT's Showtime&lt;/a&gt; &lt;/p&gt; &lt;p&gt;Titkos kérdésem: Ezt a bemutató technológiát lehetne-e használni a magyar webcast-ok, TechNet előadások publikálására?&lt;/p&gt; &lt;p&gt;P.S.: A Sysinternals nevet de jó lenne pontosan leírni! (ld.: Freeware Sisinternals)&lt;br&gt;&lt;a href="http://www.inetpub.hu/kurbli/ITsShowtime_12D25/showtime7.png"&gt;&lt;img style="border-right:0px;border-top:0px;margin:5px 0px 0px 5px;border-left:0px;border-bottom:0px;" height="157" src="http://www.inetpub.hu/kurbli/ITsShowtime_12D25/showtime_thumb5.png" width="412" border="0"&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=445815" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Tools/default.aspx">Tools</category><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>Hiding .exe inside a .jpg file is possible</title><link>http://msmvps.com/blogs/kurbli/archive/2006/12/20/hiding-exe-inside-a-jpg-file-is-possible.aspx</link><pubDate>Wed, 20 Dec 2006 21:56:25 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:437762</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=437762</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2006/12/20/hiding-exe-inside-a-jpg-file-is-possible.aspx#comments</comments><description>&lt;p&gt;Olvasd el, hogyan lehetséges (ki is próbálhatod)&amp;nbsp;és ettől kezdve tudatosan&amp;nbsp;scannelj minden .jpg file-t, vagy ráfázol.&lt;/p&gt; &lt;blockquote&gt;Forum: Cryptography, Steganography, etc. Posted By: haxor500 Post Time: 12-20-2006 at 04:04 PM &lt;/blockquote&gt; &lt;p&gt;Source: &lt;a href="http://antionline.com/showthread.php?t=274309&amp;amp;goto=newpost"&gt;Hiding .exe inside a .jpg file is possible&lt;/a&gt;&lt;/p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=437762" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>Demonstrating the consequences of XSS vulnerabilities</title><link>http://msmvps.com/blogs/kurbli/archive/2006/12/20/demonstrating-the-consequences-of-xss-vulnerabilities.aspx</link><pubDate>Wed, 20 Dec 2006 16:25:33 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:436230</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=436230</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2006/12/20/demonstrating-the-consequences-of-xss-vulnerabilities.aspx#comments</comments><description>&lt;p&gt;A Link a &lt;a href="http://www.oreillynet.com/onlamp/blog/2006/12/demonstrating_the_consequences.html" target="_blank"&gt;http://www.oreillynet.com&lt;/a&gt;&amp;nbsp;-on található, amely oldal egy csomó érdekes, tanulságos dolgat tartalmaz. E blogpost éppen a &lt;a href="http://www.bindshell.net/tools/beef/"&gt;BeEf tool&lt;/a&gt;&amp;nbsp;-t. (&lt;i&gt;BeEF is the browser exploitation framework.)&lt;/i&gt;&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;High risk vulnerabilities such as SQL Injection can be easily demonstrated by security analysts to developers or business executives. For example, a xp_cmdshell request injected into an application vulnerable to SQL Injection can be used to demonstrate how an attacker can abuse SQL injection to obtain a command prompt from the host running the (Microsoft) SQL server. Such demonstrations have major visual impact and the consequences of the vulnerabilities are clear. &lt;br&gt;&lt;a href="http://www.oreillynet.com/onlamp/blog/2006/12/demonstrating_the_consequences.html"&gt;Link&lt;/a&gt; &lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;Source: &lt;a href="http://www.securitycrawler.com/2006/12/19/3414-demonstrating-the-consequences-of-xss-vulnerabilities"&gt;Demonstrating the consequences of XSS vulnerabilities&lt;/a&gt;&lt;/p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=436230" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category></item><item><title>Dear Santa Bill and Santa Ozzie</title><link>http://msmvps.com/blogs/kurbli/archive/2006/12/20/dear-santa-bill-and-santa-ozzie.aspx</link><pubDate>Wed, 20 Dec 2006 14:57:07 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:436106</guid><dc:creator>Kurbli</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/kurbli/rsscomments.aspx?PostID=436106</wfw:commentRss><comments>http://msmvps.com/blogs/kurbli/archive/2006/12/20/dear-santa-bill-and-santa-ozzie.aspx#comments</comments><description>&lt;p&gt;Felőlem hozhatná Bill Haley (vagy Ozzy Osbourne)&amp;nbsp;is, csak a &lt;a href="http://www.microsoft.com/downloads/" target="_blank"&gt;http://www.microsoft.com/downloads/&lt;/a&gt;&amp;nbsp;-ról legyen letölthető minden decemberben az összes lokalizált változaté tárgyévi összes patch-e egy ISO file-ban.&lt;br&gt;&lt;a href="http://www.inetpub.hu/kurbli/DearSantaBillandSantaOzzie_DB10/Coca_Cola_Cherry2.jpg"&gt;&lt;img style="border-top-width:0px;border-left-width:0px;border-bottom-width:0px;margin:5px;border-right-width:0px;" height="240" alt="We'll even leave cookies and milk (and Cherry Coke) under the tree for you." src="http://www.inetpub.hu/kurbli/DearSantaBillandSantaOzzie_DB10/Coca_Cola_Cherry_thumb.jpg" width="132" align="left" border="0"&gt;&lt;/a&gt; Cherry Coke is lesz egy kartonnal.&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;&lt;em&gt;Susan,&lt;/em&gt;  &lt;p&gt;&lt;em&gt;&lt;/em&gt; &lt;p&gt;&lt;em&gt;I have just installed WXP Pro SP2 on my newly rebuilt machine.&amp;nbsp; Do you have any words of wisdom with regard to how I can make sure that I have all of the critical patches up to date without going through everything that has been released over the past 3 or 4 years?&amp;nbsp; I don’t want to spend two weeks of work time installing patches.&lt;/em&gt;  &lt;p&gt;Dear Santa Bill (or Ozzie):  &lt;p&gt;I know what you'd like me to answer that with... "Buy Vista!" but the reality is that Vista isn't out for the retail marketplace yet. Now hopefully the inlaws will be over during Christmas so it will give this person an excuse to be in their home office and take the eons of time to go from XP sp2 to final patched up versions.&amp;nbsp; The reality is that you haven't made it easy for the home user to take a XP sp2 machine up to full patch status for one machines.&amp;nbsp; Oh sure, you've given us admins things like WSUS and what not..but for the one machines that we have to deal with, or that hopefully you'll have to deal with over your Christmas vacations with your families..... how about reconsidering once again a roll up cdrom.  &lt;p&gt;&lt;a href="http://www.incidents.org/diary.php?storyid=1939&amp;amp;isc=83521d98ca25d669c73156778eb3e00e"&gt;http://www.incidents.org/diary.php?storyid=1939&amp;amp;isc=83521d98ca25d669c73156778eb3e00e&lt;/a&gt;&amp;nbsp;While that gives us some idea.... What I'd really like from Santa Bill or Santa Ozzie is an official Microsoft ISO available in December of each year&amp;nbsp;of "fill in the blank" supported consumer operating systems so that we as sons and daughters of folks that use us a tech support at home can do it easily, or, as in the case of the person who asked, someone trying to get one business system up to full patch state quickly.  &lt;p&gt;P.S.&amp;nbsp; I'll even leave cookies and milk under the tree for you.  &lt;p&gt;&lt;strong&gt;...&lt;/strong&gt;  &lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;Source: &lt;a href="http://msmvps.com/blogs/bradley/archive/2006/12/19/dear-santa-bill-and-santa-ozzie.aspx"&gt;Dear Santa Bill and Santa Ozzie&lt;/a&gt;&lt;/p&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=436106" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/kurbli/archive/tags/opsys/default.aspx">opsys</category><category domain="http://msmvps.com/blogs/kurbli/archive/tags/CP/default.aspx">CP</category><category domain="http://msmvps.com/blogs/kurbli/archive/tags/Security/default.aspx">Security</category><category domain="http://msmvps.com/blogs/kurbli/archive/tags/support/default.aspx">support</category><category domain="http://msmvps.com/blogs/kurbli/archive/tags/_26002300_233_3B00_let_2F00_life_2F003604380437043D044C04_/default.aspx">&amp;#233;let/life/жизнь</category></item></channel></rss>