Click here to Skip to main content
15,886,919 members

The Insider News

   

The Insider News is for breaking IT and Software development news. Post your news, your alerts and your inside scoops. This is an IT news-only forum - all off-topic, non-news posts will be removed. If you wish to ask a programming question please post it here.

Get The Daily Insider direct to your mailbox every day. Subscribe now!

 
GeneralRe: New ham radio onboard the ISS is on the air Pin
jeron116-Sep-20 7:28
jeron116-Sep-20 7:28 
NewsDisassembly improvements for optimized managed debugging Pin
Kent Sharkey15-Sep-20 10:30
staffKent Sharkey15-Sep-20 10:30 
NewsMicrosoft submits Linux kernel patches for a 'complete virtualization stack' with Linux and Hyper-V Pin
Kent Sharkey15-Sep-20 10:30
staffKent Sharkey15-Sep-20 10:30 
GeneralRe: Microsoft submits Linux kernel patches for a 'complete virtualization stack' with Linux and Hyper-V Pin
Nelek15-Sep-20 11:00
protectorNelek15-Sep-20 11:00 
GeneralRe: Microsoft submits Linux kernel patches for a 'complete virtualization stack' with Linux and Hyper-V Pin
trønderen15-Sep-20 11:05
trønderen15-Sep-20 11:05 
NewsTypeScript creator: How the programming language beat Microsoft's open-source fears Pin
Kent Sharkey15-Sep-20 9:15
staffKent Sharkey15-Sep-20 9:15 
NewsNew Windows exploit lets you instantly become admin. Have you patched? Pin
Kent Sharkey15-Sep-20 8:15
staffKent Sharkey15-Sep-20 8:15 
GeneralRe: New Windows exploit lets you instantly become admin. Have you patched? Pin
Nelek15-Sep-20 11:14
protectorNelek15-Sep-20 11:14 
Kent Sharkey wrote:
Beware of hackers already in your system
Quote:
Exploits require that an attacker already have a foothold inside a targeted network, either as an unprivileged insider or through the compromise of a connected device.
A bit of social engineering, a bit of blackmailing, a bit of greed of a unhappy / upset employee...

Actually not that difficult to get the first step.
Quote:
“It basically allows any attacker on the local network (such as a malicious insider or someone who simply plugged in a device to an on-premise network port) to completely compromise the Windows domain. The attack is completely unauthenticated: the attacker does not need any user credentials.”

And again... Everytime you think it could not be worst... Microsoft does a great job showing us how far from right we are... Sigh | :sigh: D'Oh! | :doh:

Quote:
they aren’t releasing it until they’re confident Microsoft’s patch has been widely installed on vulnerable servers.
Then... probably never, because there are a lot of lazy admins or admins buried in corporated crap that can't really do things without getting approval from 3 comitees, 4 CEx and a disclaimer selling them half soul Sigh | :sigh: D'Oh! | :doh:

Quote:
The researchers, however, warned that it’s not hard to use Microsoft’s patch to work backwards and develop an exploit.
So... if that was not noticed yet... it is going to be really nasty soon enough

Quote:
Meanwhile, separate researchers from other security firms have published their own proofs-of-concept attack code here, here, and here.
Perfect... Hackers not even need to work, these "researchers" are doing the difficult part for them, they just have to cook popcorn and wait.

Quote:
The release and description of exploit code quickly caught the attention of the US Cybersecurity and Infrastructure Security Agency, which works to improve cybersecurity across all levels of government.
And I suppose that the other acronim agencies have not been "heads up" by it, because they are so nice and would never misuse such a nasty bug. D'Oh! | :doh:

As Phill Collins said:
Quote:
Oh, think twice, 'cause it's another day for you and me in paradise

Dead | X| Dead | X| Dead | X|
M.D.V. Wink | ;)

If something has a solution... Why do we have to worry about?. If it has no solution... For what reason do we have to worry about?
Help me to understand what I'm saying, and I'll explain it better to you
Rating helpful answers is nice, but saying thanks can be even nicer.

NewsThe arrival of Java 15 Pin
Kent Sharkey15-Sep-20 8:15
staffKent Sharkey15-Sep-20 8:15 
NewsWindows 10 ‘Finger’ command can be abused to download or steal files Pin
Kent Sharkey15-Sep-20 8:00
staffKent Sharkey15-Sep-20 8:00 
GeneralRe: Windows 10 ‘Finger’ command can be abused to download or steal files Pin
Nelek15-Sep-20 9:09
protectorNelek15-Sep-20 9:09 
GeneralRe: Windows 10 ‘Finger’ command can be abused to download or steal files Pin
Nelek15-Sep-20 11:22
protectorNelek15-Sep-20 11:22 
NewsMicrosoft announces new Project OneFuzz framework, an open source developer tool to find and fix bugs at scale Pin
Kent Sharkey15-Sep-20 8:00
staffKent Sharkey15-Sep-20 8:00 
NewsKB4576754 update force installs new Edge on Windows 10 2004 Pin
Kent Sharkey14-Sep-20 11:30
staffKent Sharkey14-Sep-20 11:30 
GeneralRe: KB4576754 update force installs new Edge on Windows 10 2004 Pin
Richard Andrew x6416-Sep-20 6:42
professionalRichard Andrew x6416-Sep-20 6:42 
GeneralRe: KB4576754 update force installs new Edge on Windows 10 2004 Pin
trønderen16-Sep-20 7:17
trønderen16-Sep-20 7:17 
NewsResearch: One in four people learnt to code during COVID-19 lockdown Pin
Kent Sharkey14-Sep-20 10:15
staffKent Sharkey14-Sep-20 10:15 
GeneralRe: Research: One in four people learnt to code during COVID-19 lockdown Pin
Eddy Vluggen14-Sep-20 11:31
professionalEddy Vluggen14-Sep-20 11:31 
GeneralRe: Research: One in four people learnt to code during COVID-19 lockdown Pin
Greg Utas14-Sep-20 13:05
professionalGreg Utas14-Sep-20 13:05 
GeneralRe: Research: One in four people learnt to code during COVID-19 lockdown Pin
Kornfeld Eliyahu Peter14-Sep-20 23:14
professionalKornfeld Eliyahu Peter14-Sep-20 23:14 
NewsC11 and C17 Standard support arriving in MSVC Pin
Kent Sharkey14-Sep-20 10:15
staffKent Sharkey14-Sep-20 10:15 
GeneralRe: C11 and C17 Standard support arriving in MSVC Pin
Daniel Pfeffer15-Sep-20 5:52
professionalDaniel Pfeffer15-Sep-20 5:52 
GeneralRe: C11 and C17 Standard support arriving in MSVC Pin
Kent Sharkey15-Sep-20 12:47
staffKent Sharkey15-Sep-20 12:47 
NewsProject Natick Undwerwater Data Center: success Pin
raddevus14-Sep-20 8:38
mvaraddevus14-Sep-20 8:38 
NewsExperience Rot Pin
Kent Sharkey14-Sep-20 8:30
staffKent Sharkey14-Sep-20 8:30 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.