Search

Archive for the 'security' Category

Irving Popovetsky explains how to change the local Administrator account on all machines in a Windows Domain to a unique, strong password using VBscript scripting.

Interviewed for Inc. Technology

Posted by Irving Popovetsky on September 19th, 2008

I was recently interviewed by Michelle Rafter for Inc. Technology about best practices for Administrative Passwords.
Article link:  Psst! Whats the Password?

ASP and ASP.NET: Still easy targets for SQL injection

Posted by Irving Popovetsky on June 25th, 2008

Microsoft has released a security advisory (954462) warning users that automated SQL injection attacks against ASP and ASP.NET based sites are escalating.  Unlike about 5 years ago, most web developers I talk to today understand what SQL injection is and how to defend against it.
The new automated attacks are mostly focused on Content Management System [...]

Heads Up! Big vulnerabilities in Cisco PIX, VMware and Mac OSX

Posted by Irving Popovetsky on June 9th, 2008

Last week, quite a few major vulnerabilities were discovered in some of our customer’s favorite products, namely:

VMWare (all products, from ESX Server all the way down to VMware Player)
Cisco PIX and ASA (versions 7.1, 7.2, 8.0 and 8.1)
Mac OS X (Both Server and Client editions, 10.4 and 10.5 are affected)

Quite a few of these [...]