Microsoft’s Security Bulletin MS12-020 published on March 13, 2012 fixes a critical vulnerability (CVE-2012-0002) in Microsoft's implementation of RDP.
Welcome to Firewalls.com.
Microsoft’s Security Bulletin MS12-020 published on March 13, 2012 fixes a critical vulnerability (CVE-2012-0002) in Microsoft's implementation of RDP.
![]() |
Attackers use client-side attacks to gain access to critical assets and information. Client-side attacks are not something new and get better and better as time goes by now that the perimeter is hardened. They are no longer centered on OS(e.g. Microsoft Windows) and target many third-party applications. If not taken into serious consideration, they can lead to a total internal network compromise. |
![]() |
SQL injection exploits vulnerabilities that exist in a web application. This technique can be used to gain access to web servers, extract, modify databases, information and run commands remotely. SQL injection exists due to carelessness of the web application programmer. The technique involves inserting or “injecting” SQL queries into user input areas such as textboxes, address bar etc. |
|
One popular usage of SSH is to allow users to access a command shell on a remote computer for administrative purposes. It’s often used for the administration of Linux-based systems, routers or firewalls. The latest version of SSH is 2; normally TCP port 22 is used by it. In this article we will discuss how SSH brute force attacks work, how we can test and defend our systems against such attacks. |
![]() |
A new worm called Morto targeting Microsoft Remote Desktop services (RDP), is making waves on the Internet. For the moment, according to Microsoft, the worm is using a list of passwords for the default administrator user name to attempt to gain access to a system. This worm right now takes advantage of weak password, please read our recomandation about how to fight with Morto Worm |
![]() |
Distributed Denial of Service (DDoS) attacks are undeniably the most dangerous and devastating known in network security. Usually these attacks are targeted on high profile web servers; Yahoo, eBay, PayPal and many others have been targeted in the past. DoS attacks are basically packet storms that are targeted over to the victim. |
![]() | DNS Zone Transfer is a mechanism to share DNS information between Name Servers. This process can be exploited to reveal sensitive information related to an organization’s network assets. If you come across such an incorrectly configured DNS server, you can extract all the zone information with a single command. Hackers use this information to form a topological map of their victim's network. |
![]() | SonicWALL seamlessly integrates Application Intelligence with Intrusion Prevention and industry-leading firewall defenses, forming a unified and comprehensive network security solution that is also easy to deploy and manage. Continuously leveraging and updating over 3,000 unique application signatures, SonicWALL Application Intelligence can identify and control application traffic regardless or port, protocol, device platform or encryption, delivering comprehensive: Application Visualization and Control, Application Data Leakage Protection, Application Threat Protection, Application Bandwidth Management |
![]() | SonicWALL, Inc. announced SonicOS 5.8 for its Next-Generation Firewall product lines. The new release enhances its existing application intelligence and control capabilities by integrating a real-time application visualization dashboard and analysis tools, enabling IT managers to visualize all application traffic and determine application bandwidth consumption based on real-time information. Administrators can immediately control and allocate resources for critical applications and users to drive productivity, while blocking or controlling inappropriate activities. All controls operate on specific applications rather than trying to rely on generic port or protocols often used by stateful packet inspection firewalls. |
![]() | NSA 3500 is an ideal solution for corporate perimeter protection and remote access connectivity. The NSA 3500 also supports virtual local area networks (VLANs), enterprise-class routing and QoS features, further extending security and performance throughout the network. the NSA 3500 proves to be an excellent starting point to bring smaller enterprises up to speed with UTM |