<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>True Insight &#187; Windows</title>
	<atom:link href="http://www.truedigitalsecurity.com/blog/category/windows/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.truedigitalsecurity.com/blog</link>
	<description>Information Security in Today&#039;s Digital Culture</description>
	<lastBuildDate>Thu, 02 Feb 2012 15:57:20 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>YAAV (Yet Another Adobe Vulnerability)</title>
		<link>http://www.truedigitalsecurity.com/blog/2009/10/08/yaav-yet-another-adobe-vulnerability/</link>
		<comments>http://www.truedigitalsecurity.com/blog/2009/10/08/yaav-yet-another-adobe-vulnerability/#comments</comments>
		<pubDate>Thu, 08 Oct 2009 21:13:12 +0000</pubDate>
		<dc:creator>Brett Edgar</dc:creator>
				<category><![CDATA[Advisories]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[adobe]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[security advisory]]></category>

		<guid isPermaLink="false">http://www.truedigitalsecurity.com/blog/?p=255</guid>
		<description><![CDATA[Another Adobe Acrobat vulnerability is being exploited in the wild. All versions up to and including 9.1.3 are vulnerable. The current exploit targets Acrobat and Acrobat Reader on Windows specifically, but all Acrobat variants (those for Linux and Mac OS X) are vulnerable. Apparently, using DEP (Data Execution Prevention) in Windows may thwart the attack &#8230; <a href="http://www.truedigitalsecurity.com/blog/2009/10/08/yaav-yet-another-adobe-vulnerability/">Read more <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<div id="tweetbutton255" class="tw_button" style=""><a href="http://twitter.com/share?url=http%3A%2F%2Fgoo.gl%2FD1Bcl&amp;via=lairofthewalrus&amp;text=YAAV%20%28Yet%20Another%20Adobe%20Vulnerability%29&amp;related=&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fwww.truedigitalsecurity.com%2Fblog%2F2009%2F10%2F08%2Fyaav-yet-another-adobe-vulnerability%2F" class="twitter-share-button"  style="width:55px;height:22px;background:transparent url('http://www.truedigitalsecurity.com/blog/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat  0 0;text-align:left;text-indent:-9999px;display:block;"></a></div><p>Another <a href="http://blogs.adobe.com/psirt/2009/10/adobe_reader_and_acrobat_issue_1.html">Adobe Acrobat vulnerability</a> is being exploited in the wild.  All versions up to and including 9.1.3 are vulnerable.  The current exploit targets Acrobat and Acrobat Reader on Windows specifically, but all Acrobat variants (those for Linux and Mac OS X) are vulnerable.  Apparently, using DEP (Data Execution Prevention) in Windows may thwart the attack (at the moment).  DEP is an optional setting.  Here is the <a href="http://support.microsoft.com/kb/875352">Microsoft KB</a> article about DEP, but their server is saying it&#8217;s &#8220;too busy&#8221; at the moment (4:11p).  More information from the ISC is <a href="http://isc.sans.org/diary.html?storyid=7300">here</a>.</p>
<p>Adobe is set to release an update on October 13.  Until then, keep on your toes!</p>
<p>TRUE Network Security Monitoring customers: rest easier: if your resources are successfully attacked, we should see the results.</p>
<div class="wp-about-author-containter-none" style="background-color:#edf0f7;"><div class="wp-about-author-pic"><img alt='Brett Edgar' src='http://www.truedigitalsecurity.com/blog/wp-content/uploads/2012/01/Kayna-Kelley_avatar.jpg' class='avatar avatar-100 photo' height='100' width='100' /></div><div class="wp-about-author-text"><h3><a href='http://www.truedigitalsecurity.com/blog/author/bredgar/' title='Brett Edgar'>Brett Edgar</a></h3><p>Brett is a Founder and the Director of Managed Security Services at TRUE.  He has been working in the system and network forensics field since graduating from the University of Tulsa with a B.S. Computer Science in 2003.  He speaks hexadecimal fluently and is TRUE's resident human Ethernet transceiver.  He holds CISSP, CSSLP, and CNSS 4011-4015 certificates, loves MLB and NCAA Football, and when he gets tired of hexadecimal, he goes home to hang out with his wife and kid.</p><p><a href='lairofthewalrus' title='Brett Edgaron Twitter'>Twitter</a> - <a href='http://www.truedigitalsecurity.com/blog/author/bredgar/' title='More posts by Brett Edgar'>More Posts</a> </p></div></div>]]></content:encoded>
			<wfw:commentRss>http://www.truedigitalsecurity.com/blog/2009/10/08/yaav-yet-another-adobe-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Vista SP2&#8230;it works</title>
		<link>http://www.truedigitalsecurity.com/blog/2009/05/27/vista-sp2_num2/</link>
		<comments>http://www.truedigitalsecurity.com/blog/2009/05/27/vista-sp2_num2/#comments</comments>
		<pubDate>Wed, 27 May 2009 16:59:01 +0000</pubDate>
		<dc:creator>Brett Edgar</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.truedigitalsecurity.com/blog/?p=228</guid>
		<description><![CDATA[Well, installation wasn&#8217;t too bad.  It took about 20 minutes or so.  As a bonus, all of my settings seem to be intact and all of my programs continue to function properly.  Even our corporate AV is working&#8230; I hope this isn&#8217;t premature, but: Good job, Microsoft. Brett EdgarBrett is a Founder and the Director &#8230; <a href="http://www.truedigitalsecurity.com/blog/2009/05/27/vista-sp2_num2/">Read more <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<div id="tweetbutton228" class="tw_button" style=""><a href="http://twitter.com/share?url=http%3A%2F%2Fgoo.gl%2FN6XnZ&amp;via=lairofthewalrus&amp;text=Vista%20SP2%26%238230%3Bit%20works&amp;related=&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fwww.truedigitalsecurity.com%2Fblog%2F2009%2F05%2F27%2Fvista-sp2_num2%2F" class="twitter-share-button"  style="width:55px;height:22px;background:transparent url('http://www.truedigitalsecurity.com/blog/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat  0 0;text-align:left;text-indent:-9999px;display:block;"></a></div><p>Well, installation wasn&#8217;t too bad.  It took about 20 minutes or so.  As a bonus, all of my settings seem to be intact and all of my programs continue to function properly.  Even our corporate AV is working&#8230; I hope this isn&#8217;t premature, but: Good job, Microsoft.</p>
<div class="wp-about-author-containter-none" style="background-color:#edf0f7;"><div class="wp-about-author-pic"><img alt='Brett Edgar' src='http://www.truedigitalsecurity.com/blog/wp-content/uploads/2012/01/Kayna-Kelley_avatar.jpg' class='avatar avatar-100 photo' height='100' width='100' /></div><div class="wp-about-author-text"><h3><a href='http://www.truedigitalsecurity.com/blog/author/bredgar/' title='Brett Edgar'>Brett Edgar</a></h3><p>Brett is a Founder and the Director of Managed Security Services at TRUE.  He has been working in the system and network forensics field since graduating from the University of Tulsa with a B.S. Computer Science in 2003.  He speaks hexadecimal fluently and is TRUE's resident human Ethernet transceiver.  He holds CISSP, CSSLP, and CNSS 4011-4015 certificates, loves MLB and NCAA Football, and when he gets tired of hexadecimal, he goes home to hang out with his wife and kid.</p><p><a href='lairofthewalrus' title='Brett Edgaron Twitter'>Twitter</a> - <a href='http://www.truedigitalsecurity.com/blog/author/bredgar/' title='More posts by Brett Edgar'>More Posts</a> </p></div></div>]]></content:encoded>
			<wfw:commentRss>http://www.truedigitalsecurity.com/blog/2009/05/27/vista-sp2_num2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Vista SP2</title>
		<link>http://www.truedigitalsecurity.com/blog/2009/05/27/vista-sp2/</link>
		<comments>http://www.truedigitalsecurity.com/blog/2009/05/27/vista-sp2/#comments</comments>
		<pubDate>Wed, 27 May 2009 16:34:48 +0000</pubDate>
		<dc:creator>Brett Edgar</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.truedigitalsecurity.com/blog/?p=225</guid>
		<description><![CDATA[So Vista SP2 is now available to the masses.  I&#8217;ve downloaded it and am in the process of installing it.  So far no problems, but it is claiming that my machine may reboot several times and the total installation time may be 1 hour or more.  Here&#8217;s hoping the upgrade goes smoothly and I still &#8230; <a href="http://www.truedigitalsecurity.com/blog/2009/05/27/vista-sp2/">Read more <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<div id="tweetbutton225" class="tw_button" style=""><a href="http://twitter.com/share?url=http%3A%2F%2Fgoo.gl%2FfO3KB&amp;via=lairofthewalrus&amp;text=Vista%20SP2&amp;related=&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fwww.truedigitalsecurity.com%2Fblog%2F2009%2F05%2F27%2Fvista-sp2%2F" class="twitter-share-button"  style="width:55px;height:22px;background:transparent url('http://www.truedigitalsecurity.com/blog/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat  0 0;text-align:left;text-indent:-9999px;display:block;"></a></div><p>So Vista SP2 is now available to the masses.  I&#8217;ve downloaded it and am in the process of installing it.  So far no problems, but it is claiming that my machine may reboot several times and the total installation time may be 1 hour or more.  Here&#8217;s hoping the upgrade goes smoothly and I still have full functionality when the process completes&#8230;I&#8217;ll post my results here later today.</p>
<div class="wp-about-author-containter-none" style="background-color:#edf0f7;"><div class="wp-about-author-pic"><img alt='Brett Edgar' src='http://www.truedigitalsecurity.com/blog/wp-content/uploads/2012/01/Kayna-Kelley_avatar.jpg' class='avatar avatar-100 photo' height='100' width='100' /></div><div class="wp-about-author-text"><h3><a href='http://www.truedigitalsecurity.com/blog/author/bredgar/' title='Brett Edgar'>Brett Edgar</a></h3><p>Brett is a Founder and the Director of Managed Security Services at TRUE.  He has been working in the system and network forensics field since graduating from the University of Tulsa with a B.S. Computer Science in 2003.  He speaks hexadecimal fluently and is TRUE's resident human Ethernet transceiver.  He holds CISSP, CSSLP, and CNSS 4011-4015 certificates, loves MLB and NCAA Football, and when he gets tired of hexadecimal, he goes home to hang out with his wife and kid.</p><p><a href='lairofthewalrus' title='Brett Edgaron Twitter'>Twitter</a> - <a href='http://www.truedigitalsecurity.com/blog/author/bredgar/' title='More posts by Brett Edgar'>More Posts</a> </p></div></div>]]></content:encoded>
			<wfw:commentRss>http://www.truedigitalsecurity.com/blog/2009/05/27/vista-sp2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Opens Its Protocols</title>
		<link>http://www.truedigitalsecurity.com/blog/2008/02/27/microsoft-opens-its-protocols/</link>
		<comments>http://www.truedigitalsecurity.com/blog/2008/02/27/microsoft-opens-its-protocols/#comments</comments>
		<pubDate>Tue, 26 Feb 2008 18:50:19 +0000</pubDate>
		<dc:creator>Michael Oglesby</dc:creator>
				<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[protocols]]></category>

		<guid isPermaLink="false">http://blog.truedigitalsecurity.com/2008/02/27/microsoft-opens-its-protocols/</guid>
		<description><![CDATA[Last week, in a surprise move, Microsoft announced Open Access to Protocol Documentation[microsoft.com]. Microsoft is releasing their protocol technical specifications for interoperability with Windows Vista, Windows Server 2008, Exchange, and others. This means third party and open source software will be able to &#8220;talk&#8221; directly with Windows components that had previously been closed to them. &#8230; <a href="http://www.truedigitalsecurity.com/blog/2008/02/27/microsoft-opens-its-protocols/">Read more <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<div id="tweetbutton25" class="tw_button" style=""><a href="http://twitter.com/share?url=http%3A%2F%2Fgoo.gl%2FXuPWq&amp;via=darkstructures&amp;text=Microsoft%20Opens%20Its%20Protocols&amp;related=&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fwww.truedigitalsecurity.com%2Fblog%2F2008%2F02%2F27%2Fmicrosoft-opens-its-protocols%2F" class="twitter-share-button"  style="width:55px;height:22px;background:transparent url('http://www.truedigitalsecurity.com/blog/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat  0 0;text-align:left;text-indent:-9999px;display:block;"></a></div><p>Last week, in a surprise move, Microsoft announced <a href="http://www.microsoft.com/about/legal/intellectualproperty/protocols/mcpp.mspx" title="Microsoft Protocol Documentation" target="_blank">Open Access to Protocol Documentation</a>[microsoft.com].  Microsoft is releasing their protocol technical specifications for interoperability with Windows Vista, Windows Server 2008, Exchange, and others.  This means third party and open source software will be able to &#8220;talk&#8221; directly with Windows components that had previously been closed to them.  This is quite a change for Microsoft, who until now kept their protocols propriety, forcing vendors to reverse-engineer the protocols.  This should result in greater support between open source products and Windows.  I hope other companies follow Microsoft&#8217;s lead.</p>
<div class="wp-about-author-containter-none" style="background-color:#edf0f7;"><div class="wp-about-author-pic"><img alt='Michael Oglesby' src='http://www.truedigitalsecurity.com/blog/wp-content/uploads/2011/08/ogs-bwcrop-100x100.jpg' class='avatar avatar-100 photo' height='100' width='100' /></div><div class="wp-about-author-text"><h3><a href='http://www.truedigitalsecurity.com/blog/author/mroglesby/' title='Michael Oglesby'>Michael Oglesby</a></h3><p>The Director of Tactical Security Services at TRUE, Michael specializes in security testing initiatives with vast network and application security assessment experience.  He oversees a team of analysts in conducting SAST- and DAST-based services.  Certifications include CISSP, CSSLP, QSA and CNSS 4011-4015.  He is also the Verizon 2010 Data Breach Investigation Report Cover Challenge Winner and second place finisher in the 2011 competition.</p><p><a href='darkstructures' title='Michael Oglesbyon Twitter'>Twitter</a> - <a href='http://www.truedigitalsecurity.com/blog/author/mroglesby/' title='More posts by Michael Oglesby'>More Posts</a> </p></div></div>]]></content:encoded>
			<wfw:commentRss>http://www.truedigitalsecurity.com/blog/2008/02/27/microsoft-opens-its-protocols/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Ugly pictures</title>
		<link>http://www.truedigitalsecurity.com/blog/2008/01/11/ugly-pictures/</link>
		<comments>http://www.truedigitalsecurity.com/blog/2008/01/11/ugly-pictures/#comments</comments>
		<pubDate>Thu, 10 Jan 2008 21:55:49 +0000</pubDate>
		<dc:creator>Dominic Schulte</dc:creator>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[autoplay]]></category>
		<category><![CDATA[autorun]]></category>
		<category><![CDATA[digital picture frame]]></category>
		<category><![CDATA[tweak ui]]></category>

		<guid isPermaLink="false">http://blog.truedigitalsecurity.com/2008/01/11/ugly-pictures/</guid>
		<description><![CDATA[Did anyone notice this story on SecurityFocus? It&#8217;s an article discribing a series of attempted malware infections that were first reported by the SANS Internet Storm Center over Christmas. Apparently, three people reported buying digital picture frames made by the same manufacturer from three different Sam&#8217;s Club stores. When plugged into a computer, the malware &#8230; <a href="http://www.truedigitalsecurity.com/blog/2008/01/11/ugly-pictures/">Read more <span class="meta-nav">&#8594;</span></a>]]></description>
			<content:encoded><![CDATA[<div id="tweetbutton9" class="tw_button" style=""><a href="http://twitter.com/share?url=http%3A%2F%2Fgoo.gl%2FmjWqM&amp;text=Ugly%20pictures&amp;related=&amp;lang=en&amp;count=horizontal&amp;counturl=http%3A%2F%2Fwww.truedigitalsecurity.com%2Fblog%2F2008%2F01%2F11%2Fugly-pictures%2F" class="twitter-share-button"  style="width:55px;height:22px;background:transparent url('http://www.truedigitalsecurity.com/blog/wp-content/plugins/wp-tweet-button/tweetn.png') no-repeat  0 0;text-align:left;text-indent:-9999px;display:block;"></a></div><p>Did anyone notice <a href="http://www.securityfocus.com/news/11499/1" title="SecurityFocus Picture Frame Malware Article" target="_blank">this</a> story on SecurityFocus?  It&#8217;s an article discribing a series of attempted malware infections that were first reported by the SANS Internet Storm Center over Christmas.  Apparently, three people reported buying digital picture frames made by the same manufacturer from three different Sam&#8217;s Club stores.  When plugged into a computer, the malware on the picture frames attempted to perform various nasty things.</p>
<p>This type of threat is likely to increase as more and more devices become digitally aware.  Your best bet for protecting yourself is to <a href="http://www.pcdoctor-guide.com/wordpress/?page_id=1546" title="How To Disable AutoPlay" target="_blank">disable the autorun feature</a> in Windows.  That way you can scan and examine the devices you attach to your computer before the malware they may be hosting has an opportunity to become a part of your digital life.</p>
<div class="wp-about-author-containter-none" style="background-color:#edf0f7;"><div class="wp-about-author-pic"><img alt='Dominic Schulte' src='http://www.truedigitalsecurity.com/blog/wp-content/uploads/2011/08/dom-bw-1-100x100.jpg' class='avatar avatar-100 photo' height='100' width='100' /></div><div class="wp-about-author-text"><h3><a href='http://www.truedigitalsecurity.com/blog/author/deschulte/' title='Dominic Schulte'>Dominic Schulte</a></h3><p>Dominic Schulte currently serves as the Managing Director of Security Services &amp; Consulting at TRUE, where he is responsible for the execution of a wide range of security and regulatory compliance services. Previously, Dominic worked with the National Security Agency (NSA) as a Global Network Exploitation and Vulnerability Analyst in the National Security Incident and Response Center (NSIRC). He holds CISSP, QSA and CNSS 4011-4015 certifications.</p></div></div>]]></content:encoded>
			<wfw:commentRss>http://www.truedigitalsecurity.com/blog/2008/01/11/ugly-pictures/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

