Diaries by Keyword: oracle vulnerability patch

DateAuthorTitle

ORACLE VULNERABILITY PATCH

2008-07-15Maarten Van HorenbeeckOracle (and BEA, Hyperion and TimesTen) critical patch update July 15th, 2008

ORACLE

2014-07-15Daniel WesemannOracle July 2014 CPU (patch bundle)
2014-07-13Tony CarothersOracle July 2014 Update Pre-Notification
2014-04-16Johannes UllrichOracle Critical Patch Update for April 2014
2014-01-30Johannes UllrichOracle Reports Vulnerability
2014-01-14Johannes UllrichOracle Critical Patch Update January 2014
2013-02-20Johannes UllrichUpdate Palooza
2013-02-19Johannes UllrichOracle Updates Java (Java 7 Update 15, Java 6 update 41)
2013-01-12Stephen HallOracle Patch Tuesday Pre-Release
2012-10-17Mark HofmanOracle Critical Patch Update October
2012-09-23Tony CarothersUpdate for CVE-2012-3132
2012-07-25Johannes UllrichMicrosoft Exchange/Sharepoint and others: Oracle Outside In Vulnerability
2012-07-15Guy BruneauOracle July 2012 Critical Patch Pre-Release Announcement
2012-04-30Rob VandenBrinkPatch for Oracle TNS Listener issue released !
2012-04-27Johannes UllrichCritical Unpatched Oracle Vulnerability
2012-04-18Kevin ShorttOracle Critical Patch Update Advisory - April 2012: http://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.html
2012-04-13Daniel WesemannOracle CPU Patches announced for Apr 17
2012-02-16Tony CarothersJava Update for February
2012-02-01Russ McReeOracle Security Alert: http://www.oracle.com/technetwork/topics/security/alert-cve-2011-5035-1506603.html
2012-01-18Richard PorterOracle Quarterly Released, http://www.oracle.com/technetwork/topics/security/cpujan2012-366304.html
2011-10-22Guy BruneauOracle Java SE Critical Patch Update
2011-10-19Mark HofmanOracle Critical Patch Update
2011-04-16Scott FendleyOracle Patch Update Pre-Release Announcement
2011-03-07Bojan ZdrnjaOracle padding attacks (Codegate crypto 400 writeup)
2011-02-15Jason LamOracle Java 6 Update 24
2011-02-09Mark HofmanJava Floating point issue (CVE-2010-4476)
2011-01-18Daniel WesemannOracle Patches (Jan2011 CPU)
2010-10-12Scott FendleyOracle Critical Updates Released
2010-07-10Tony CarothersOracle July 2010 Pre-Release Announcement
2010-04-14Mark HofmanOracle has released 47 critical patches (Includes SUN patches)
2010-02-09Mark HofmanOracle has an unscheduled security alert and patch for CVE-2010-0073. The issue affects WebLogic Server and is remotely exploitable. Details and patch are here http://www.oracle.com/technology/deploy/security/alerts/alert-cve-2010-0073.html
2010-02-06Guy BruneauOracle WebLogic Server Security Alert
2010-01-12Johannes UllrichOracle Patches Relased
2009-10-20Raul SilesOracle Critical Patch Update (CPU) - October 2009
2009-10-16Adrien de BeaupreCyber Security Awareness Month - Day 16 - Port 1521 - Oracle TNS Listener
2009-07-14Swa FrantzenOracle Black Tuesday
2009-05-19Bojan ZdrnjaAdvanced blind SQL injection (with Oracle examples)
2009-04-14Swa FrantzenOracle quarterly patches
2008-10-14Swa FrantzenOracle quarterly patches on black tuesday
2008-07-30David GoldsmithSerious 0-Day Flaw in Oracle -- Patch Released
2008-07-15Maarten Van HorenbeeckOracle (and BEA, Hyperion and TimesTen) critical patch update July 15th, 2008
2006-11-29Toby KohlenbergWeek of Oracle bugs cancelled
2006-10-18Robert DanfordOracle Quarterly Critical Patch Update (Oct 2006)

VULNERABILITY

2014-08-16Lenny ZeltserWeb Server Attack Investigation - Installing a Bot and Reverse Shell via a PHP Vulnerability
2014-02-27Richard PorterCisco Prime Infrastructure Command Execution Vulnerability http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140226-pi
2014-02-07Rob VandenBrinkNew ISO Standards on Vulnerability Handling and Disclosure
2014-01-24Chris MohanSecurity Update for OS X for CVE-2014-1252 http://support.apple.com/kb/HT6117
2014-01-17Russ McReeMassive RFI scans likely a free web app vuln scanner rather than bots
2013-11-05Daniel WesemannTIFF images in MS-Office documents used in targeted attacks
2013-07-01Manuel Humberto Santander PelaezUsing nmap scripts to enhance vulnerability asessment results
2013-05-22Adrien de BeauprePrivilege escalation, why should I care?
2013-04-19Russ McReeJava 8 release schedule delayed for renewed focus on security
2013-01-19Guy BruneauJava 7 Update 11 Still has a Flaw
2013-01-05Guy BruneauAdobe ColdFusion Security Advisory
2012-12-03John BambenekJohn McAfee Exposes His Location in Photo About His Being on Run
2012-11-29Kevin ShorttNew Apple Security Update: APPLE-SA-2012-11-29-1 Apple TV 5.1.1
2012-11-28Mark HofmanMcAfee releases extraDAT for W32/Autorun.worm.aaeb-h
2012-11-28Mark HofmanNew version of wireshark is available (1.8.4), some security fixes included.
2012-11-27Chris MohanCan users' phish emails be a security admin's catch of the day?
2012-11-26John BambenekOnline Shopping for the Holidays? Tips, News and a Fair Warning
2012-11-20John BambenekBehind the Random NTP Bizarreness of Incorrect Year Being Set
2012-11-20John BambenekFirefox v 17.0 just released, more here: http://www.mozilla.org/en-US/firefox/17.0/releasenotes/
2012-11-19John BambenekMoneyGram fined $100 million for aiding wire fraud - http://krebsonsecurity.com/2012/11/moneygram-fined-100-million-for-wire-fraud/
2012-11-19John BambenekNew Poll: Top 5 Unresolved Security Problems of 2012
2012-11-17Manuel Humberto Santander PelaezNew Sysinternal Updates: AdExplorer v1.44, Contig v1.7, Coreinfo v3.2, Procdump v5.1. See http://blogs.technet.com/b/sysinternals/archive/2012/11/16/updates-adexplorer-v1-44-contig-v1-7-coreinfo-v3-2-procdump-v5-1.aspx?Redirected=true
2012-11-12John BambenekRequest for info: Robocall Phishing Against Local/Regional Banks
2012-11-09Mark BaggettRemote Diagnostics with PSR
2012-11-09Mark BaggettFresh batch of Microsoft patches next week
2012-11-07Mark BaggettHelp eliminate unquoted path vulnerabilities
2012-11-07Mark BaggettMultiple 0-Days Reported!
2012-11-07Mark BaggettCisco TACACS+ Authentication Bypass
2012-11-05Johannes UllrichReminder: Ongoing SMTP Brute Forcing Attacks
2012-11-05Johannes UllrichPossible Fake-AV Ads from Doubleclick Servers
2012-11-04Lorna HutchesonWhat's important on your network?
2012-10-31Johannes UllrichCyber Security Awareness Month - Day 31 - Business Continuity and Disaster Recovery
2012-10-30Johannes UllrichHurricane Sandy Update
2012-10-30Richard PorterSplunk 5.0 SP-CAAAHB4 http://www.splunk.com/view/SP-CAAAHB4
2012-10-28Tony CarothersFirefox 16.02 Released
2012-10-26Russ McReeCyber Security Awareness Month - Day 26 - Attackers use trusted domain to propagate Citadel Zeus variant
2012-10-25Richard PorterCyber Security Awareness Month - Day 25 - Pro Audio & Video Packets on the Wire
2012-10-24Russ McReeOngoing Windstream outage in the midwest - https://twitter.com/search?q=windstream
2012-10-21Johannes UllrichCyber Security Awareness Month - Day 22: Connectors
2012-10-21Lorna HutchesonPotential Phish for Regular Webmail Accounts
2012-10-19Johannes UllrichCyber Security Awareness Month - Day 19: Standard log formats and CEE.
2012-10-18Rob VandenBrinkCyber Security Awareness Month - Day 18 - Vendor Standards: The vSphere Hardening Guide
2012-10-17Mark HofmanNew Acrobat release (including reader) available. Version 11. Some security improvements more here -->http://blogs.adobe.com/adobereader/
2012-10-16Richard PorterCyberAwareness Month - Day 15, Standards Body Soup (pt2), Same Soup Different Cook.
2012-10-16Johannes UllrichCyber Security Awareness Month - Day 16: W3C and HTML
2012-10-14Pedro BuenoCyber Security Awareness Month - Day 14 - Poor Man's File Analysis System - Part 1
2012-10-09Johannes UllrichMicrosoft October 2012 Black Tuesday Update - Overview
2012-10-07Tony CarothersCyber Security Awareness Month - Day 7 - Rollup Review of CSAM Week 1
2012-10-05Johannes UllrichCyber Security Awareness Month - Day 5: Standards Body Soup, So many Flavors in the bowl.
2012-10-05Richard PorterVMWare Security Advisory: VMSA-2012-0014 - http://www.vmware.com/security/advisories/VMSA-2012-0014.html
2012-10-05Richard PorterReports of a Distributed Injection Scan
2012-10-04Mark HofmanAnd the SHA-3 title goes to .....Keccak
2012-10-02Russ McReeCyber Security Awareness Month - Day 2 - PCI Security Standard: Mobile Payment Acceptance Security Guidelines
2012-10-01Johannes UllrichCyber Security Awareness Month
2012-09-28Joel EslerAdobe certification revocation for October 4th
2012-09-26Johannes UllrichSome Android phones can be reset to factory default by clicking on links
2012-09-26Johannes UllrichMore Java Woes
2012-09-21Johannes UllrichiOS 6 Security Roundup
2012-09-20Russ McReeFlash Player update but no announcement, check your version http://www.adobe.com/software/flash/about/
2012-09-20Russ McReeApple and Cisco Security Advisories 19 SEP 2012
2012-09-20Russ McReeFinancial sector advisory: attacks and threats against financial institutions
2012-09-19Russ McReeScript kiddie scavenging with Shellbot.S
2012-09-17Rob VandenBrinkWhat's on your iPad?
2012-09-14Lenny ZeltserScam Report - Fake Voice Mail Email Notification Redirects to Malicious Site
2012-09-13Mark BaggettMicrosoft disrupts traffic associated with the Nitol botnet
2012-09-13Mark BaggettMore SSL trouble
2012-09-10Johannes UllrichMicrosoft Patch Tuesday Pre-Release
2012-09-10Johannes UllrichGodaddy DDoS Attack
2012-09-06Johannes UllrichSSL Requests sent to port 80 (request for help/input)
2012-09-04Johannes UllrichAnother round of "Spot the Exploit E-Mail"
2012-09-02Lorna HutchesonDemonstrating the value of your Intrusion Detection Program and Analysts
2012-09-01Russ McReeBlackhole targeting Java vulnerability via fake Microsoft Services Agreement email phish
2012-08-31Russ McReeNot so fast: Java 7 Update 7 critical vulnerability discovered in less than 24 hours
2012-08-30Johannes UllrichEditorial: The Slumlord Approach to Network Security http://isc.sans.edu/j/editorial
2012-08-29Johannes Ullrich"Data" URLs used for in-URL phishing
2012-08-27Johannes UllrichThe Good, Bad and Ugly about Assigning IPv6 Addresses
2012-08-27Johannes UllrichMalware Spam harvesting Facebook Information
2012-08-26Lorna HutchesonWho ya gonna contact?
2012-08-22Adrien de BeaupreApple Remote Desktop update fixes no encryption issue
2012-08-21Adrien de BeaupreRuggedCom fails key management 101 on Rugged Operating System (ROS)
2012-08-21Adrien de BeaupreYYABCAFU - Yes Yet Another Bleeping Critical Adobe Flash Update
2012-08-20Manuel Humberto Santander PelaezDo we need test procedures in our companies before implementing Antivirus signatures?
2012-08-19Manuel Humberto Santander PelaezAuthentication Issues between entities during protocol message exchange in SCADA Systems
2012-08-12Tony CarothersLayers of the Defense-in-Depth Onion
2012-08-12Tony CarothersOracle Security Alert for CVE-2012-3132
2012-08-09Mark HofmanZeus/Citadel variant causing issues in the Netherlands
2012-08-09Mark HofmanSQL Injection Lilupophilupop style, Part 2
2012-08-07Adrien de BeaupreWho protects small business?
2012-08-05Daniel WesemannPhishing for Payroll with unpatched Java
2012-08-04Kevin ListonVendors: More Patch-Release Options Please
2012-07-27Daniel WesemannCuckoo 0.4 is out - cool new features for malware analysis http://www.cuckoosandbox.org/
2012-07-24Richard PorterWireshark 1.8.1 Released http://www.wireshark.org/
2012-07-24Richard PorterReport of spike in DNS Queries gd21.net
2012-07-20Mark BaggettSyria Internet connection cut?
2012-07-19Mark BaggettDiagnosing Malware with Resource Monitor
2012-07-19Mark BaggettA Heap of Overflows?
2012-07-16Richard PorterSysinternals Update @ http://blogs.technet.com/b/sysinternals/archive/2012/07/16/updates-handle-v3-5-process-explorer-v15-22-process-monitor-v3-03-rammap-v1-21-zoomit-v4-3.aspx
2012-07-13Richard PorterYesterday (not as on the ball as Rob) at SANSFire
2012-07-13Russ McRee2 for 1: SANSFIRE & MSRA presentations
2012-07-13Russ McReeVMWare Security Advisory 12 JUL 2012
2012-07-13Russ McReeYahoo service SQL injection vuln leads to account exposure
2012-07-12Rick WannerCisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Multipoint Switch - http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120711-ctms
2012-07-12Rick WannerCisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Recording Server - http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120711-ctrs
2012-07-12Rick WannerCisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Immersive Endpoint Devices - http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120711-cts
2012-07-12Rick WannerCisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Manager - http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120711-ctsman
2012-07-09Johannes UllrichThe FBI will turn off the Internet on Monday (or not)
2012-07-09Manuel Humberto Santander PelaezInternet Storm Center panel tonight at SANSFIRE 2012!
2012-07-05Adrien de BeaupreMicrosoft advanced notification for July 2012 patch Tuesday
2012-07-02Joel EslerA rough guide to keeping your website up
2012-07-02Joel EslerLinux & Java leap second bug
2012-06-29Jim ClausingUpdated SysInternals tools - Autoruns, Process Explorer, Process Monitor, PSKill -- http://blogs.technet.com/b/sysinternals/archive/2012/06/28/updates-autoruns-v11-32-process-explorer-v15-21-process-monitor-v3-02-pskill-v1-15-rammap-v1-2.aspx
2012-06-22Kevin ListonUpdated Poll: Which Patch Delivery Schedule Works the Best for You?
2012-06-21Russ McReeAnalysis of drive-by attack sample set
2012-06-21Russ McReeWireshark 1.8.0 released 21 JUN 2012 http://www.wireshark.org/download.html
2012-06-19Daniel Wesemann Vulnerabilityqueerprocessbrittleness
2012-05-05Tony CarothersVulnerability Assessment Program - Discussions
2011-12-28Daniel WesemannHash collisions vulnerability in web servers
2011-12-08Adrien de BeaupreNewest Adobe Flash 11.1.102.55 and Previous 0 Day Exploit
2011-05-09Rick WannerSerious flaw in OpenID
2010-12-24Daniel WesemannA question of class
2010-12-10Mark HofmanEXIM MTA vulnerability
2010-09-14Adrien de BeaupreAdobe Flash v10.1.82.76 and earlier vulnerability in-the-wild
2010-09-08John BambenekAdobe Acrobat/Reader 0-day in Wild, Adobe Issues Advisory
2010-08-30Adrien de BeaupreApple QuickTime potential vulnerability/backdoor
2010-08-05Manuel Humberto Santander PelaezAdobe Acrobat Font Parsing Integer Overflow Vulnerability
2010-07-20Manuel Humberto Santander PelaezLNK vulnerability now with Metasploit module implementing the WebDAV method
2010-07-20Manuel Humberto Santander PelaeziTunes buffer overflow vulnerability
2010-07-20Manuel Humberto Santander PelaezLowering infocon back to green
2010-07-04Manuel Humberto Santander PelaezInteresting analysis of the PHP SplObjectStorage Vulnerability
2010-06-24Jason LamHelp your competitor - Advise them of vulnerability
2010-06-15Manuel Humberto Santander PelaezApple releases advisory for Mac OS X - Multiple vulnerabilities discovered
2010-05-23Manuel Humberto Santander PelaezOracle Java SE and Java for Business 'MixerSequencer' Remote Code Execution Vulnerability
2010-01-21Johannes UllrichNew Microsoft Advisory: Vulnerability in Windows Kernel Privilege Escalation (CVE-2010-0232)
2010-01-17Rick WannerBuffer overflow in Quicktime
2009-12-24Guy BruneauMicrosoft IIS File Parsing Extension Vulnerability
2009-11-24Rick WannerMicrosoft Security Advisory 977981 - IE 6 and IE 7
2009-11-16G. N. WhiteReports of a successful exploit of the SSL Renegotiation Vulnerability?
2009-11-13Adrien de BeaupreTLS & SSLv3 renegotiation vulnerability explained
2009-11-13Adrien de BeaupreFlash Origin Policy Attack
2009-11-05Swa FrantzenTLS Man-in-the-middle on renegotiation vulnerability made public
2009-10-08Johannes UllrichNew Adobe Vulnerability Exploited in Targeted Attacks
2009-09-08Adrien de BeaupreMicrosoft Security Advisory 975191 Revised
2009-09-04Adrien de BeaupreVulnerabilities (plural) in MS IIS FTP Service 5.0, 5.1. 6.0, 7.0
2009-07-13Adrien de BeaupreSecurity Update available for Wyse Device Manager
2009-07-13Adrien de BeaupreVulnerability in Microsoft Office Web Components Control Could Allow Remote Code Execution
2009-05-29Lorna HutchesonVMWare Patches Released
2009-05-10Mari NicholsIs your Symantec Antivirus Alerting working correctly?
2009-05-04Tom ListonAdobe Reader/Acrobat Critical Vulnerability
2009-02-11Robert DanfordProFTPd SQL Authentication Vulnerability exploit activity
2008-12-23Patrick NolanMS ACK's Vulnerability in SQL Server which Could Allow Remote Code Execution
2008-12-10Mark HofmanMicrosoft wordpad text converter issue
2008-09-29Daniel WesemannPatchbag: WinZip / MPlayer / RealWin SCADA vuln
2008-08-02Maarten Van HorenbeeckA little of that human touch
2008-07-17Mari NicholsFirefox Releases 3.0.1 and fixes 3 security vulnerabilities
2008-07-16Maarten Van HorenbeeckFirefox 2.0.0.16 fixes two security vulnerabilities
2008-07-15Maarten Van HorenbeeckOracle (and BEA, Hyperion and TimesTen) critical patch update July 15th, 2008
2008-07-15Maarten Van HorenbeeckBlackBerry PDF parsing vulnerability
2008-06-19William StearnsFirefox vunerability
2008-05-27Adrien de BeaupreAdobe flash player vuln
2008-05-06Marcus SachsIndustrial Control Systems Vulnerability
2007-01-03Toby KohlenbergVLC Media Player udp URL handler Format String Vulnerability
2006-10-05John BambenekThere are no more Passive Exploits

PATCH

2014-11-11Johannes UllrichAdobe Flash Update
2014-10-17Johannes UllrichApple Updates (not just Yosemite)
2014-10-14Johannes UllrichAdobe October 2014 Bulletins for Flash Player and Coldfusion
2014-09-29Johannes UllrichApple Released Update to Fix Shellshock Vulnerability http://support.apple.com/kb/DL1769
2014-07-15Daniel WesemannOracle July 2014 CPU (patch bundle)
2014-07-01Johannes UllrichApple Releases Patches for All Products
2014-06-06Johannes UllrichMicrosoft June Patch Tuesday Advance Notification
2014-05-01Johannes UllrichMicrosoft Announces Special Patch for IE 0-day (Win XP included!)
2014-04-22Johannes UllrichApple Patches for OS X, iOS and Apple TV.
2014-04-16Johannes UllrichOracle Critical Patch Update for April 2014
2014-03-21Johannes UllrichCisco AsyncOS Patch
2014-03-11Johannes UllrichAdobe Updates: Flash Player
2014-03-11Johannes UllrichMicrosoft Patch Tuesday March 2014
2014-03-08Guy BruneauMicrosoft March Patch Pre-Announcement
2014-02-25Alex StanfordApple releases OS X 10.9.2 patching SSL vulnerability and updates Safari
2014-02-11Johannes UllrichFebruary 2014 Microsoft Patch Tuesday
2014-02-11Johannes UllrichAdobe February 2014 Patch Tuesday
2014-02-07Johannes UllrichMicrosoft Advance Notification for February 2014
2014-02-04Johannes UllrichAdobe Flash Player Emergency Patch
2014-01-30Johannes UllrichOracle Reports Vulnerability
2014-01-14Johannes UllrichMicrosoft Patch Tuesday January 2014
2014-01-14Johannes UllrichAdobe Patch Tuesday January 2014
2014-01-14Johannes UllrichOracle Critical Patch Update January 2014
2014-01-10Basil Alawi S.TaherCisco Small Business Devices backdoor fix
2014-01-09Johannes UllrichMicrosoft Security Bulletin Advance Notification for January 2014 http://technet.microsoft.com/en-us/security/bulletin/ms14-jan
2013-12-07Guy BruneauMicrosoft December Patch Pre-Announcement
2013-12-04Adrien de BeaupreVMware Security Advisory VMSA-2013-0014
2013-11-12Johannes UllrichNovember 2013 Microsoft Patch Tuesday
2013-11-08Johannes UllrichMicrosoft Patch Tuesday Preview
2013-11-01Russ McReeSecunia's PSI Country Report - Q3 2013
2013-10-03Johannes UllrichOctober Patch Tuesday Preview (CVE-2013-3893 patch coming!)
2013-09-11Johannes UllrichReboot Wednesday: Yesterday's Patch Tuesday Aftermath
2013-09-10Swa FrantzenAdobe September 2013 Black Tuesday Overview
2013-09-10Swa FrantzenMicrosoft September 2013 Black Tuesday Overview
2013-09-10Swa FrantzenMacs need to patch too!
2013-09-07Guy BruneauMicrosoft September Patch Pre-Announcement
2013-08-19Johannes UllrichMicrosoft re-releases MS13-066: https://technet.microsoft.com/security/bulletin/MS13-066
2013-08-15Johannes UllrichMicrosoft Pulls MS013-061 due to problems with Exchange Server 2013 http://blogs.technet.com/b/exchange/archive/2013/08/14/exchange-2013-security-update-ms13-061-status-update.aspx
2013-08-13Swa FrantzenMicrosoft August 2013 Black Tuesday Overview
2013-07-09Swa FrantzenMicrosoft July 2013 Black Tuesday Overview
2013-07-09Swa FrantzenAdobe July 2013 Black Tuesday Overview
2013-07-06Guy BruneauMicrosoft July Patch Pre-Announcement
2013-06-26Adrien de BeaupreMultiple Cisco security advisories
2013-06-11Swa FrantzenMicrosoft June 2013 Black Tuesday Overview
2013-06-11Swa FrantzenAdobe June 2013 Black Tuesday Overview
2013-06-11Swa Frantzenvmware security advisory VMSA-2013-0008
2013-06-05Richard PorterBIND 9 Update fixing CVE-2013-3919
2013-05-22Adrien de BeauprePrivilege escalation, why should I care?
2013-05-14Swa FrantzenMicrosoft May 2013 Black Tuesday Overview
2013-05-14Swa FrantzenFirefox & Thunderbird released
2013-05-14Swa FrantzenAdobe May 2013 Black Tuesday Overview
2013-04-09Swa FrantzenMicrosoft April 2013 Black Tuesday Overview
2013-04-09Swa FrantzenAdobe April 2013 Black Tuesday Overview
2013-04-04Johannes UllrichMicrosoft April Patch Tuesday Advance Notification
2013-03-12Swa FrantzenMicrosoft March 2013 Black Tuesday Overview
2013-03-12Swa FrantzenAdobe March 2013 Black Tueday
2013-02-27Adam SwangerAdobe Flash Player Security Update - http://www.adobe.com/support/security/bulletins/apsb13-08.html
2013-02-22Chris MohanVMware releases new and updated security advisories
2013-02-14Adam SwangerISC Monthly Threat Update - February 2013 http://isc.sans.edu/podcastdetail.html?id=3121
2013-02-12Adam SwangerMicrosoft February 2013 Black Tuesday Update - Overview
2013-02-12Swa FrantzenAdobe Feb 2013 Black Tuesday patches
2013-02-08Johannes UllrichMicrosoft February Patch Tuesday Advance Notification
2013-01-22Richard PorterUsing Metasploit for Patch Sanity Checks
2013-01-14Richard PorterJanuary 2013 Microsoft Out of Cycle Patch
2013-01-10Adam SwangerISC Monthly Threat Update New Format
2013-01-09Rob VandenBrinkFirefox and Thunderbird Updates
2013-01-09Rob VandenBrinkSecurity Updates for Adobe Reader / Acrobat - http://www.adobe.com/support/security/bulletins/apsb13-02.html
2013-01-09Rob VandenBrinkSQL Injection Flaw in Ruby on Rails
2013-01-08Richard PorterMicrosoft January 2013 Black Tuesday Update - Overview
2013-01-08Richard PorterFirefox 18 Released, Security Fixes http://www.mozilla.org/security/known-vulnerabilities/firefox.html
2013-01-04Daniel WesemannPatch pre-notification from Adobe and Microsoft
2012-12-11John BambenekMicrosoft December 2012 Black Tuesday Update - Overview
2012-11-13Jim ClausingMicrosoft November 2012 Black Tuesday Update - Overview
2012-10-17Mark HofmanOracle Critical Patch Update October
2012-10-09Johannes UllrichAdobe Flash Player update http://www.adobe.com/support/security/bulletins/apsb12-22.html
2012-10-04Johannes UllrichMicrosoft October Patch Pre-Announcement
2012-09-11Adam SwangerMicrosoft September 2012 Black Tuesday Update - Overview
2012-08-14Rick WannerMicrosoft August 2012 Black Tuesday Update - Overview
2012-08-14Rick WannerAdobe Security Bulletins - http://blogs.adobe.com/psirt/2012/08/adobe-security-bulletins-posted-2.html
2012-08-04Kevin ListonVendors: More Patch-Release Options Please
2012-07-15Guy BruneauOracle July 2012 Critical Patch Pre-Release Announcement
2012-07-10Swa FrantzenMicrosoft July 2012 Black Tuesday Update - Overview
2012-07-05Adrien de BeaupreMicrosoft advanced notification for July 2012 patch Tuesday
2012-06-22Kevin ListonUpdated Poll: Which Patch Delivery Schedule Works the Best for You?
2012-06-12Swa FrantzenMicrosoft June 2012 Black Tuesday Update - Overview
2012-06-11Johannes UllrichMicrosoft Update Security
2012-06-07Johannes UllrichMicrosoft June Security Bulletin Advance Notification
2012-05-23Mark BaggettProblems with MS12-035 affecting XP, SBS and Windows 2003?
2012-05-08Adam SwangerMicrosoft May 2012 Black Tuesday Update - Overview
2012-04-15Rick Wanner.Net update affects printing from some applications
2012-04-13Daniel WesemannOracle CPU Patches announced for Apr 17
2012-04-10Swa FrantzenMicrosoft April 2012 Black Tuesday Update - Overview
2012-04-10Swa FrantzenAdobe April 2012 Black Tuesday Update
2012-04-06Johannes UllrichAnother OS X Java Patch
2012-04-06Johannes UllrichMicrosoft April Patch Tuesday Pre-Announcement (6 Patches): http://technet.microsoft.com/en-us/security/bulletin/ms12-apr
2012-04-06Johannes UllrichAdobe Patch Tuesday Prerelease (Reader/Acrobat) http://www.adobe.com/support/security/bulletins/apsb12-08.html
2012-03-12Johannes UllrichApple Released Safari 5.1.4
2012-03-08Johannes UllrichApple Patches
2012-03-08Johannes UllrichMicrosoft March Patch Tuesday Pre-Anouncement out. 6 patches, 1 critical: http://technet.microsoft.com/en-us/security/bulletin/ms12-mar
2012-03-05Johannes UllrichAdobe Flash Player Security Update
2012-02-16Tony CarothersJava Update for February
2012-02-14Johannes UllrichAdobe Shockwave Player and RoboHelp for Word Patches
2012-02-01Russ McReeOracle Security Alert: http://www.oracle.com/technetwork/topics/security/alert-cve-2011-5035-1506603.html
2012-01-31Russ McReeFirefox 10 and VMWare advisories and updates
2012-01-18Richard PorterOracle Quarterly Released, http://www.oracle.com/technetwork/topics/security/cpujan2012-366304.html
2012-01-10Adrien de BeaupreJanuary 2012 Microsoft Black Tuesday Summary
2012-01-06Guy BruneauJanuary 2012 Patch Tuesday Pre-release
2011-12-13Johannes UllrichDecember 2011 Microsoft Black Tuesday Summary
2011-11-08Swa FrantzenMicrosoft November 2011 Black Tuesday Overview
2011-11-08Swa FrantzenApple Black Tuesday
2011-11-03Guy BruneauNovember 2011 Patch Tuesday Pre-release
2011-10-19Mark HofmanOracle Critical Patch Update
2011-10-11Swa FrantzenMicrosoft Black Tuesday Overview October 2011
2011-10-11Swa FrantzenApple iTunes 10.5
2011-09-21Swa FrantzenEmergency patch expected for Flash Player
2011-09-13Swa FrantzenMicrosoft September 2011 Black Tuesday
2011-09-09Johannes UllrichEarly Patch Tuesday Today: Microsoft September 2011 Patches
2011-09-08Rob VandenBrinkShould We Still Test Patches?
2011-09-08Mark HofmanMicrosoft has released their advanced notification for patch Tuesday. 15 Vulnerabilities to be addressed. more here --> http://blogs.technet.com/b/msrc/archive/2011/09/08/advanced-notification-for-the-september-2011-bulletin-release.aspx
2011-08-31Johannes UllrichFirefox/Thunderbird 6.0.1 released to blacklist bad DigiNotar SSL certificates
2011-08-30Johannes UllrichApache patch out for "byte range" DoS vulnerability http://www.apache.org/dist/httpd/Announcement2.2.html
2011-08-09Swa FrantzenMicrosoft August 2011 Black Tuesday Overview
2011-08-09Swa FrantzenAdobe August 2011 Black Tuesday Overview
2011-08-05Johannes UllrichMicrosoft Patch Tuesday Advance Notification: 13 Bulletins coming http://www.microsoft.com/technet/security/Bulletin/MS11-aug.mspx
2011-07-12Swa FrantzenMicrosoft July 2011 Black Tuesday Overview
2011-07-07Rob VandenBrink"There's a Patch for that" (or maybe not)
2011-07-06Rob VandenBrink"Too Important to Patch" - Wait? What?
2011-06-28Johannes UllrichUpdate: Google Chrome 12.0.742.112 released http://googlechromereleases.blogspot.com/2011/06/stable-channel-update_28.html
2011-06-14Swa FrantzenMicrosoft June 2011 Black Tuesday Overview
2011-06-09Richard PorterChrome Version 12.0.742.91 Released
2011-05-10Swa FrantzenMay 2011 Microsoft Black Tuesday Overview
2011-05-06Richard PorterUpdated Exploit Index for Microsoft
2011-04-11Jim ClausingApril 2011 Microsoft Black Tuesday Summary
2011-04-08Johannes UllrichDark Black Tuesday Coming Up: 17 Microsoft Bulletins
2011-03-08Jim ClausingMarch 2011 Microsoft Black Tuesday Summary
2011-02-09Mark HofmanAdobe Patches (shockwave, Flash, Reader & Coldfusion)
2011-02-04Daniel WesemannBusy patch tuesday ahead
2011-01-18Daniel WesemannOracle Patches (Jan2011 CPU)
2011-01-13Rob VandenBrink
2011-01-08Guy BruneauJanuary 2011 Patch Tuesday Pre-release
2010-12-20Guy BruneauPatch Issues with Outlook 2007
2010-12-14Manuel Humberto Santander PelaezDecember 2010 Microsoft Black Tuesday Summary
2010-12-10Mark HofmanMicrosoft patches
2010-12-02Kevin JohnsonSQL Injection: Wordpress 3.0.2 released
2010-12-02Kevin JohnsonProFTPD distribution servers compromised
2010-11-29Stephen HallSun security updates
2010-11-04Johannes UllrichMicrosoft Patches Pre-Announcement
2010-10-12Adrien de BeaupreOctober 2010 Microsoft Black Tuesday Summary
2010-10-08Rick WannerPatch Tuesday Pre-release -- 16 updates
2010-09-30Pedro BuenoMS OOB .NET patch is now also available via Windows Update.
2010-09-28Daniel WesemannMS10-070 OOB Patch for ASP.NET vulnerability
2010-09-27Adrien de BeaupreMS OOB patch tomorrow for Security Advisory 2416728
2010-09-14Adrien de BeaupreSeptember 2010 Microsoft Black Tuesday Summary
2010-08-29Swa FrantzenDLL hijacking - what are you doing ?
2010-08-10Jason LamAdobe critical security updates
2010-08-10Jim ClausingAugust 2010 Micrsoft Black Tuesday Summary
2010-08-07Stephen HallCountdown to Tuesday...
2010-08-02Johannes UllrichMicrosoft Out-of-Band bulletin addresses LNK/Shortcut vulnerability
2010-07-13Jim ClausingJuly 2010 Microsoft Black Tuesday Summary
2010-06-08Manuel Humberto Santander PelaezJune 2010 Microsoft Black Tuesday Summary
2010-06-03Guy BruneauMicrosoft Patch Tuesday June 2010 Pre-Release
2010-05-11Scott FendleyMay 2010 Microsoft Patches
2010-05-08Guy BruneauMicrosoft Patch Tuesday May 2010 Pre-Release
2010-04-14Mark HofmanOracle has released 47 critical patches (Includes SUN patches)
2010-04-14Mark HofmanAnd let the patching games continue
2010-04-13Johannes UllrichMicrosoft April 2010 Patch Tuesday
2010-04-08Guy BruneauMicrosoft Patch Tuesday April 2010 Pre-Release
2010-04-02Guy BruneauOracle Java SE and Java for Business Critical Patch Update Advisory
2010-03-29Pedro BuenoMicrosoft to release out-of-band security bulletin tomorrow for IE6/IE7 with cumulative fix.
2010-03-29Adrien de BeaupreOOB Update for Internet Explorer MS10-018
2010-03-09John BambenekMarch 2010 - Microsoft Patch Tuesday Diary
2010-03-03Mark HofmanMS10-015 re-released
2010-02-17Rob VandenBrinkMultiple Security Updates for ESX 3.x and ESXi 3.x
2010-02-11Johannes UllrichMS10-015 may cause Windows XP to blue screen
2010-02-09Mark HofmanOracle has an unscheduled security alert and patch for CVE-2010-0073. The issue affects WebLogic Server and is remotely exploitable. Details and patch are here http://www.oracle.com/technology/deploy/security/alerts/alert-cve-2010-0073.html
2010-02-09Johannes UllrichFebruary 2010 Black Tuesday Overview
2010-02-04Johannes UllrichMicrosoft Patch Tuesday Pre-Release
2010-01-21Chris Carboni* Microsoft Out Of Band Patch Release
2010-01-21Johannes UllrichMicrosoft January Out of Band Patch
2010-01-21Chris CarboniSecurity Update Available for Shockwave Player
2010-01-12Johannes UllrichMicrosoft Security Bulletin: January 2010
2010-01-12Johannes UllrichOracle Patches Relased
2010-01-12Johannes UllrichPre-Announced Adobe Reader and Acrobat Patch Found!
2009-12-09Swa FrantzenAdobe flash player and air patched
2009-12-08Deborah HaleDecember 2009 Black Tuesday Overview
2009-12-03Mark HofmanApple released some Java updates today APPLE-SA-2009-12-03-1 & 2 (for 10.5 and 10.6). Fixes a number of security issues so updating is a good idea.
2009-12-03Mark HofmanNext week will be a big patch week - Adobe is also releasing patches "Adobe is planning to release an update for Adobe Flash Player 10.0.32.18 and earlier versions, and an update to Adobe AIR 1.5.2 and earlier versions, to resolve critical security issues
2009-11-21Mark HofmanVMware vCenter and ESX updates available http://lists.vmware.com/pipermail/security-announce/2009/000070.html
2009-11-13Adrien de BeaupreConficker patch via email?
2009-11-10Swa FrantzenMicrosoft November Black Tuesday Overview
2009-10-28Johannes UllrichFirefox 3.5.4 released. Lots of security bug fixes. (thanks Gilbert!)
2009-10-16Adrien de BeaupreDisable MS09-054 patch, or Firefox Plugin?
2009-10-13Johannes UllrichMicrosoft October 2009 Black Tuesday Overview
2009-10-13Daniel WesemannAdobe Reader and Acrobat - Black Tuesday continues
2009-09-08Guy BruneauMicrosoft September 2009 Black Tuesday Overview
2009-08-19Daniel WesemannChecking your protection
2009-08-11Swa FrantzenMicrosoft August 2009 Black Tuesday Overview
2009-07-31Deborah HaleThe iPhone patch is out
2009-07-30Mark HofmanHappy patching day
2009-07-28Adrien de BeaupreMS released two OOB bulletins and an advisory
2009-07-24Rick WannerMicrosoft Out of Band Patch
2009-07-14Swa FrantzenMicrosoft July Black Tuesday Overview
2009-07-14Swa FrantzenISC DHCP client updated
2009-07-14Swa FrantzenOracle Black Tuesday
2009-07-02Daniel WesemannTime to update updating on PCs for 3rd party apps
2009-07-02Daniel WesemannUnpatched Bloatware on new PCs
2009-06-23Bojan ZdrnjaNew Thunderbird out, patches couple of vulnerabilities
2009-06-09Swa FrantzenMicrosoft June Black Tuesday Overview
2009-05-29Lorna HutchesonBlackberry Server Vulnerability
2009-05-29Lorna HutchesonVMWare Patches Released
2009-05-22Mark HofmanPatching and Apple - Java issue
2009-05-22Mark HofmanPatching and Adobe
2009-05-12Swa FrantzenMay Black Tuesday Overview
2009-05-12Swa FrantzenApple patches and updates
2009-05-12Swa FrantzenAdobe Acrobat (reader) patches released
2009-04-14Swa FrantzenApril Black Tuesday Overview
2009-04-14Swa FrantzenOracle quarterly patches
2009-03-18Adrien de BeaupreAdobe Security Bulletin Adobe Reader and Acrobat
2009-03-10Swa FrantzenMarch black Tuesday overview
2009-03-10Swa FrantzenAdobe Acrobat 9.1 released
2009-02-25Andre LudwigAdobe flash player patch
2009-02-25donald smithAutoRun disabling patch released
2009-02-10Swa FrantzenFebruary Black Tuesday Overview
2009-02-06Adrien de BeaupreTime to patch your HP printers
2009-02-06Adrien de BeaupreOther patches and updates du jour...
2009-02-04Daniel WesemannFirefox 3.0.6
2009-02-03Swa FrantzenOn the importance of patching fast
2009-01-31Swa FrantzenVMware updates
2009-01-13Johannes UllrichJanuary Black Tuesday Overview
2008-12-17donald smithOpera 9.6.3 released with security fixes
2008-12-17donald smithInternet Explorer 960714 is released
2008-12-16donald smithMicrosoft announces an out of band patch for IE zero day
2008-12-09Swa FrantzenDecember Black Tuesday Overview
2008-11-11Swa FrantzenNovember Black Tuesday Overview
2008-10-23Mark HofmanMicrosoft out-of-band patch - Severity Critical
2008-10-21Johannes UllrichWireshark 1.0.4 released
2008-10-14Swa FrantzenOctober Black Tuesday Overview
2008-10-14Swa FrantzenOracle quarterly patches on black tuesday
2008-09-29Daniel WesemannPatchbag: WinZip / MPlayer / RealWin SCADA vuln
2008-09-09Swa FrantzenGoogle Chrome being polished
2008-09-09Swa FrantzenSeptember 2008 Black Tuesday Overview
2008-09-09Swa FrantzenApple updates iTunes+QuickTime
2008-08-20Adrien de BeaupreFrom the mailbag, Opera 9.52...
2008-08-01Swa FrantzenApple's Security Update 2008-005: DNS workaround finally included
2008-07-30David GoldsmithSerious 0-Day Flaw in Oracle -- Patch Released
2008-07-16Maarten Van HorenbeeckFirefox 2.0.0.16 fixes two security vulnerabilities
2008-07-15Maarten Van HorenbeeckOracle (and BEA, Hyperion and TimesTen) critical patch update July 15th, 2008
2008-06-10Swa FrantzenJune 2008 Black Tuesday Overview
2008-05-13Swa FrantzenMay 2008 black tuesday overview
2008-05-05John BambenekDefenses Against Automated Patch-Based Exploit Generation
2008-04-18John BambenekThe Patch Window is Gone: Automated Patch-Based Exploit Generation
2008-04-09Joel EslerISC Podcast Episode Number 2
2008-04-08Swa FrantzenApril 2008 - Black Tuesday Overview
2008-04-08Swa FrantzenNotes file viewer vulnerabilities
2006-12-12Swa FrantzenMicrosoft Black Tuesday - December 2006 overview
2006-12-12Robert DanfordMS06-078: 2 Windows Media Format Vulnerabilities (CVE-2006-4702, CVE-2006-6134)
2006-12-12Swa FrantzenOffline Microsoft Patching
2006-12-12Swa FrantzenThe missing Microsoft patches
2006-09-26Jim ClausingMS06-049 re-release
2006-09-12Swa FrantzenMicrosoft security patches for September 2006
2006-08-17Swa FrantzenMicrosoft August 2006 Patches: STATUS