Category: Office


Pwnie Award Winners.

I like this.  It shows that nothing is sacred when it comes to security..:)

Researcher Shows Killbit is No Defense on MsVidCtl Flaw | threatpost.

When you have a technology(Activex) that allows access directly to the kernel there is only one way to secure it..remove it.  I have posted about this multiple times.  Microsoft it is time for you to realize your java killer called Activex is not killing java and the though of letting code on the internet run at the system user level is a horrendously bad idea.

Vulnerability in Microsoft Office Web Components Control Could Allow Remote Code Execution.

*sigh* When will ms and others learn?

Head to this page for the fix. Head to the fix it for me section and click on the fix it icon under enable workaround.  Download and install that file.

The Complete Guide To Microsoft’s Office 2010.

All cloud computing is the re-emergence of the mainframe to terminal model using hte internet as the mainframe.  However unlike the mainframe the cloud is inherently insecure(I don’t care what these folks say) and if your internet connection goes down OR there is an internet issue in transit you loose access to your data.  This is simply not a good idea from a company known for bad implementations, poor security, and anti-competitive tactics.  MS aside this is sitll not a good idea and I will never be an advocate of putting critical and/or sensitive company data of any kind in “the Cloud”.