Tuesday, October 28, 2008

Security holes


Two of IT’s big players are/were a little vulnerable



Last week, Microsoft issued a security patch that fixes a flaw in the Windows Server service for Vista. There has been some speculation about whether the fix was similar to another patch issued in 2006.


Securities personnel going over the code stated that the flaws would have generated the same end result but the method of exploiting the holes were radically different to execute.



Google’s smart phone is also undergoing some scrutiny at the moment with concerns being raised over vulnerabilities in the operating software.



The Android software that powers Google’s T-Mobile G1 phone has security flaws that would allow attacks to be launched by infected web pages.


The Android phones will be shipping with the flaws intact however and will remain that way until an update for the software becomes available to close the security hole. In the meantime, infected phones could possibly access personal information such as passwords and browsing histories. Even bank account numbers would be open, should users utilise the G1 for their banking.


Brett Venter