<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>security flaw Archives - Foster Institute</title>
	<atom:link href="https://fosterinstitute.com/tag/security-flaw/feed/" rel="self" type="application/rss+xml" />
	<link>https://fosterinstitute.com/tag/security-flaw/</link>
	<description>Cybersecurity Experts</description>
	<lastBuildDate>Mon, 28 Apr 2014 17:38:40 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.1</generator>

<image>
	<url>https://fosterinstitute.com/wp-content/uploads/2021/02/Favicon.png</url>
	<title>security flaw Archives - Foster Institute</title>
	<link>https://fosterinstitute.com/tag/security-flaw/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>As if Heartbleed Wasn’t Enough, Here is Another Emergency:</title>
		<link>https://fosterinstitute.com/as-if-heartbleed-wasnt-enough-here-is-another-emergency/</link>
		
		<dc:creator><![CDATA[Mike Foster]]></dc:creator>
		<pubDate>Mon, 28 Apr 2014 17:38:40 +0000</pubDate>
				<category><![CDATA[Best Practices]]></category>
		<category><![CDATA[browser security]]></category>
		<category><![CDATA[Cybersecurity]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Heartbleed]]></category>
		<category><![CDATA[Security Breach]]></category>
		<category><![CDATA[Technology Tips]]></category>
		<category><![CDATA[ie]]></category>
		<category><![CDATA[internet explorer]]></category>
		<category><![CDATA[internet safety]]></category>
		<category><![CDATA[IT attack]]></category>
		<category><![CDATA[it best practices]]></category>
		<category><![CDATA[IT Security]]></category>
		<category><![CDATA[it security audit]]></category>
		<category><![CDATA[it security breach]]></category>
		<category><![CDATA[IT security consultant]]></category>
		<category><![CDATA[it security expert]]></category>
		<category><![CDATA[IT security procedures]]></category>
		<category><![CDATA[security flaw]]></category>
		<category><![CDATA[website security]]></category>
		<guid isPermaLink="false">https://fosterinstitute.com/blog//?p=1888</guid>

					<description><![CDATA[<p>Please forward this to your IT Techs immediately. As with Heartbleed, this is a vulnerability that attackers are already using against you and nobody knew until right now. These are called “zero-day attacks.” This blog is aimed at non-technical executives and owners, and this “technical” release is so that you can forward this to your [&#8230;]</p>
<p>The post <a href="https://fosterinstitute.com/as-if-heartbleed-wasnt-enough-here-is-another-emergency/">As if Heartbleed Wasn’t Enough, Here is Another Emergency:</a> appeared first on <a href="https://fosterinstitute.com">Foster Institute</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Please forward this to your IT Techs immediately. As with Heartbleed, this is a vulnerability that attackers are already using against you and nobody knew until right now. These are called “zero-day attacks.”<span id="more-1888"></span></p>
<p>This blog is aimed at non-technical executives and owners, and this “technical” release is so that you can forward this to your IT Pros. Forward it to every one you care about “not getting hacked” because you and they may already be.</p>
<p>The good news is – you can “turn off the vulnerability” like a light switch.</p>
<p>Credit for this alert goes to our resident Citrix and VMware “Virtualization Guru.” He explains:</p>
<p>A security flaw has been found in all versions of Internet Explorer and this flaw has already been exploited by cyber criminals. <u>At this time, no patch has been provided by Microsoft</u>.</p>
<p>This excerpt from the <a title="Microsoft article" href="https://technet.microsoft.com/en-US/library/security/2963983">Microsoft article</a> explaining the exploit provides the pertinent facts:</p>
<p>&#8220;…The vulnerability may corrupt memory in a way that could allow an attacker to execute arbitrary code in the context of the current user within Internet Explorer. An attacker could host a specially crafted website that is designed to exploit this vulnerability through Internet Explorer and then convince a user to view the website…&#8221;</p>
<p><u><b>Customers should protect their own Windows computers from this flaw by following these steps:</u></b></p>
<ul>
<li>Open a Command Prompt window (hold the Windows key on your keyboard and type &#8220;r&#8221;, then type CMD in the &#8220;Open:&#8221; box</li>
<p><a href="https://fosterinstitute.com/blog//wp-content/uploads/2014/04/keyboard.png"><img loading="lazy" decoding="async" src="https://fosterinstitute.com/blog//wp-content/uploads/2014/04/keyboard-300x218.png" alt="keyboard" width="300" height="218" class="alignnone size-medium wp-image-1892" /></a></p>
<p><a href="https://fosterinstitute.com/blog//wp-content/uploads/2014/04/run.png"><img loading="lazy" decoding="async" src="https://fosterinstitute.com/blog//wp-content/uploads/2014/04/run-300x176.png" alt="run" width="300" height="176" class="alignnone size-medium wp-image-1893" /></a></p>
<li>In the Command Prompt window that opens up, type the following (it&#8217;s probably easiest to copy and paste from this blog): regsvr32 -u &#8220;%CommonProgramFiles%\Microsoft Shared\VGX\vgx.dll&#8221;</li>
</ul>
<p>	 <a href="https://fosterinstitute.com/blog//wp-content/uploads/2014/04/CMD.png"><img loading="lazy" decoding="async" src="https://fosterinstitute.com/blog//wp-content/uploads/2014/04/CMD-300x124.png" alt="CMD" width="300" height="124" class="alignnone size-medium wp-image-1900" /></a></p>
<p><u>As mentioned before, Microsoft has not made public a patch to fix the bug.</u> When a patch is made available, install the patch and then reverse the above command, running cmd admin, by re-registering the vgx.dll file: regsvr32 &#8220;%CommonProgramFiles%\Microsoft Shared\VGX\vgx.dll&#8221;</p>
<p>Please post your comments below&#8230;.</p>
<p>The post <a href="https://fosterinstitute.com/as-if-heartbleed-wasnt-enough-here-is-another-emergency/">As if Heartbleed Wasn’t Enough, Here is Another Emergency:</a> appeared first on <a href="https://fosterinstitute.com">Foster Institute</a>.</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
