<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Crenk Technology &#187; Vulnerabilities</title>
	<atom:link href="http://crenk.com/tag/vulnerabilities/feed/" rel="self" type="application/rss+xml" />
	<link>http://crenk.com</link>
	<description>Web Apps, Mobile Apps and Reviews</description>
	<lastBuildDate>Thu, 09 Feb 2012 14:07:29 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.3</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<item>
		<title>How to Easily Audit and Protect your Entire Network using GFI LANGuard</title>
		<link>http://crenk.com/2011/04/12/gfi-languard/</link>
		<comments>http://crenk.com/2011/04/12/gfi-languard/#comments</comments>
		<pubDate>Tue, 12 Apr 2011 16:31:12 +0000</pubDate>
		<dc:creator>Augusto Alvarez</dc:creator>
				<category><![CDATA[How-Tos]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[how-tos]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[uninstall]]></category>
		<category><![CDATA[Updates]]></category>
		<category><![CDATA[Vulnerabilities]]></category>

		<guid isPermaLink="false">http://crenk.com/?p=16353</guid>
		<description><![CDATA[GFI LANGuard offers an entire set of tools to audit, evaluate and remediate your network within just a few steps. With this suite you can complete full assessments in your organization about software and operating system vulnerabilities, security baselines and also provides you with the necessary instruments to solve them. Some of the most important [...]<p><a href="http://crenk.com/2011/04/12/gfi-languard/">How to Easily Audit and Protect your Entire Network using GFI LANGuard</a> originally appeared on: <a href="http://crenk.com">Crenk</a>
<br>
Join our Community: <a href="http://twitter.com/crenk">Twitter</a>, <a href="http://facebook.com/crenkcommunity">Facebook</a> 
</p>
]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.gfi.com/lannetscan">GFI LANGuard</a> offers an entire set of tools to audit, evaluate and remediate your network within just a few steps. With this suite you can complete full assessments in your organization about software and operating system vulnerabilities, security baselines and also provides you with the necessary instruments to solve them.</p>
<p>Some of the most important features in <a href="http://www.gfi.com/lannetscan">GFI LANGuard</a>:</p>
<ul>
<li><strong><img class="alignright size-full wp-image-16354" title="languard1" src="http://crenk.com/wp-content/uploads/2011/04/languard1.png" alt="" width="295" height="119" />Powerful network scanning options</strong> without the need to deploy agents.</li>
<li><strong>Reviews and controls vulnerabilities</strong>, updates/service packs status (for operating systems and applications), TCP and UDP ports open, and hardware and software inventory.</li>
<li><strong>Remediation</strong> options for deploying updates and service packs.</li>
<li><strong>Deploy applications</strong> in client machines and the possibility for <strong>removing unauthorized software.</strong></li>
<li>Detect and deploy <strong>non-Microsoft software</strong> to protect the entire operating system.</li>
<li>Supports <strong>UNIX/Linux</strong> machines.</li>
</ul>
<p>Installing and configuring <a href="http://www.gfi.com/lannetscan">GFI LANGuard</a> can be executed in simple steps since the product was made to facilitate the complex work usually represents audit and remediate your network from vulnerabilities.</p>
<p>To review detailed step-by-step procedures <strong>check <a href="http://blog.augustoalvarez.com.ar/2011/03/13/reviewing-gfi-languard/">this link</a></strong>. Here are some of the basic steps:</p>
<p><strong>1. </strong><a href="http://www.gfi.com/downloads/register.aspx?pid=lanss">Download GFI LANGuard.</a></p>
<p><strong>2. </strong><a href="http://www.gfi.com/lannetscan/lanscansystemrequirements.htm">Review GFI LANGuard system requirements.</a></p>
<p><strong>3. </strong>Install GFI LANGuard with the <strong>simple wizard.</strong></p>
<p><strong>4. </strong>Once the product is installed, we can easily run the “<strong>Scan</strong>” option that will retrieve all the necessary information from our network and as we said, agentless.</p>
<p><strong>a. </strong>We can select several types of scan: <strong>Quick, Full, Custom or Scheduled.</strong></p>
<p><strong><img class="aligncenter size-medium wp-image-16355" title="languard2" src="http://crenk.com/wp-content/uploads/2011/04/languard2-577x313.png" alt="" width="443" height="240" /><br />
</strong></p>
<p><strong>5. </strong>With the scan is complete, we’ll receive a full report about all vulnerabilities found in all OS in our network.</p>
<p><img class="aligncenter size-full wp-image-16356" title="languard3" src="http://crenk.com/wp-content/uploads/2011/04/languard3.png" alt="" width="203" height="234" /></p>
<p><strong>6. </strong>In the “Remediate” pane we have all the necessary options to solve the vulnerabilities found. Here we can execute immediate actions in clients like:</p>
<p>a.      Install/Uninstall Microsoft patches.</p>
<p>b.      Install/Uninstall non-Microsoft patches.</p>
<p>c.      Deploy custom software.</p>
<p>d.      Uninstall software.</p>
<p><img class="aligncenter size-medium wp-image-16357" title="languard4" src="http://crenk.com/wp-content/uploads/2011/04/languard4-577x265.png" alt="" width="577" height="265" /></p>
<p>Here are some valuable links about GFI LANGuard:</p>
<ul>
<li><a href="http://blog.augustoalvarez.com.ar/2011/03/13/reviewing-gfi-languard/">Reviewing GFI LANGuard</a></li>
<li><a href="http://www.gfi.com/lannetscan/lanscansystemrequirements.htm">GFI LANGuard system requirements.</a></li>
<li><a href="http://www.gfi.nl/lanss/lanscan9gsg.pdf">[PDF] GFI LANGuard Getting Started Guide.</a></li>
<li><a href="http://www.gfi.com/lanss/lanscan9manual.pdf">[PDF] GFI LANGuard Manual.</a></li>
<li><a href="http://www.gfi.com/lanss/lanscan9script.pdf">[PDF] GFI LANGuard Scripting Manual.</a></li>
</ul>
<ul class="related_post">
<li><a href="http://crenk.com/2011/02/09/gfi-vipre-antivirus/" title="How to Easily Implement a Centralized Antivirus Solution Using GFI VIPRE Antivirus">How to Easily Implement a Centralized Antivirus Solution Using GFI VIPRE Antivirus</a> &#8211; February 9, 2011</li>
<li><a href="http://crenk.com/2010/10/10/locate-a-stolen-notebook-mac-or-android-phone-with-prey/" title="Locate a Stolen Notebook, Mac or Android Phone with Prey">Locate a Stolen Notebook, Mac or Android Phone with Prey</a> &#8211; October 10, 2010</li>
<li><a href="http://crenk.com/2010/08/21/openoffice-3-3-beta-released/" title="OpenOffice 3.3 Beta Released">OpenOffice 3.3 Beta Released</a> &#8211; August 21, 2010</li>
<li><a href="http://crenk.com/2010/07/25/the-most-used-antivirus/" title="The Most Used Antivirus">The Most Used Antivirus</a> &#8211; July 25, 2010</li>
<li><a href="http://crenk.com/2011/12/08/windows-8-beta-late-february-2012-official-public-release-of-windows-8-in-january-2013/" title="Windows 8 Beta Late February 2012: Official Public Release of Windows 8 in January 2013">Windows 8 Beta Late February 2012: Official Public Release of Windows 8 in January 2013</a> &#8211; December 8, 2011</li>
</ul>
<img src="http://crenk.com/5d26c88b/266bb3db/CCBot/1.0 (+http://www.commoncrawl.org/bot.html).gif" /><p><a href="http://crenk.com/2011/04/12/gfi-languard/">How to Easily Audit and Protect your Entire Network using GFI LANGuard</a> originally appeared on: <a href="http://crenk.com">Crenk</a>
<br>
Join our Community: <a href="http://twitter.com/crenk">Twitter</a>, <a href="http://facebook.com/crenkcommunity">Facebook</a> 
</p>
]]></content:encoded>
			<wfw:commentRss>http://crenk.com/2011/04/12/gfi-languard/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Windows 7: Exploit Causes BSoD</title>
		<link>http://crenk.com/2009/09/09/windows-7-exploit-causes-bsod/</link>
		<comments>http://crenk.com/2009/09/09/windows-7-exploit-causes-bsod/#comments</comments>
		<pubDate>Wed, 09 Sep 2009 15:51:46 +0000</pubDate>
		<dc:creator>Augusto Alvarez</dc:creator>
				<category><![CDATA[Tech News]]></category>
		<category><![CDATA[Hacks]]></category>
		<category><![CDATA[SMB]]></category>
		<category><![CDATA[SMB2]]></category>
		<category><![CDATA[Vulnerabilities]]></category>
		<category><![CDATA[windows 7]]></category>
		<category><![CDATA[Windows 7 exploit]]></category>
		<category><![CDATA[Windows Server 2008]]></category>
		<category><![CDATA[Windows Server 2008 exploit]]></category>
		<category><![CDATA[Windows Vista]]></category>
		<category><![CDATA[Windows Vista exploit]]></category>

		<guid isPermaLink="false">http://crenk.com/?p=5539</guid>
		<description><![CDATA[Well I guess the timing couldn’t be more perfect, Microsoft released for partners a month ago Windows 7 and will be released to public n October 22; and we have already a big exploit going around. A report said that vulnerability was found using the Server Message Block 2.0 protocol (SMB2) that causes the one [...]<p><a href="http://crenk.com/2009/09/09/windows-7-exploit-causes-bsod/">Windows 7: Exploit Causes BSoD</a> originally appeared on: <a href="http://crenk.com">Crenk</a>
<br>
Join our Community: <a href="http://twitter.com/crenk">Twitter</a>, <a href="http://facebook.com/crenkcommunity">Facebook</a> 
</p>
]]></description>
			<content:encoded><![CDATA[<p><a href="http://crenk.com/wp-content/uploads/2009/09/w7logo.jpg"><img class="alignleft size-thumbnail wp-image-5541" title="w7logo" src="http://crenk.com/wp-content/uploads/2009/09/w7logo-150x150.jpg" alt="w7logo" width="79" height="77" /></a>Well I guess the timing couldn’t be more perfect, Microsoft released for partners a month ago Windows 7 and will be released to public n October 22; and we have already a <a href="http://seclists.org/fulldisclosure/2009/Sep/0039.html">big exploit</a> going around.</p>
<p>A <a href="http://seclists.org/fulldisclosure/2009/Sep/0039.html">report</a> said that vulnerability was found using the <a href="http://en.wikipedia.org/wiki/Windows_Vista_networking_technologies#Server_Message_Block_2.0">Server Message Block 2.0 protocol</a> (SMB2) that causes the one and only <a href="http://en.wikipedia.org/wiki/BSOD">BSoD</a> (Blue Screen of Death). That includes not only all Windows 7 versions (32 and 64 bits included), but Windows Vista and Windows Server 2008; since all of these operating systems are using the same protocol.</p>
<p><em>Picture taken from a Nine Inch Nails Concert</em></p>
<p><a href="http://crenk.com/wp-content/uploads/2009/09/bsod01.jpg"><img class="alignnone size-full wp-image-5540" title="bsod01" src="http://crenk.com/wp-content/uploads/2009/09/bsod01.jpg" alt="bsod01" width="500" height="375" /></a></p>
<p>On the good side, since the protocol it is commonly used only in LAN networks, the attacker should be in the same network segment as you. The funny thing is that this same exploit appeared in Windows 2000 and Windows XP, and Microsoft released of course an update to solve this security hole.</p>
<p>Even though Microsoft it is informed about this issue, there is no patch available to solve this inconvenient. Here’s a quick description about the exploit:</p>
<p><em>“SRV2.SYS fails to handle malformed SMB headers for the NEGOTIATE PROTOCOL REQUEST functionality. The NEGOTIATE PROTOCOL REQUEST is the first SMB query a client send to a SMB server, and it&#8217;s used to identify the SMB dialect that will be used for further communication.</em></p>
<p><em>An attacker can remotely crash without no user interaction, any Vista/Windows 7 machine with SMB enable. Windows Xp, 2k, are NOT affected as they don’t have this driver.”</em></p>
<p>And how can I <strong>disable SMB?</strong> Access the TCP/IP properties from your network adapter and uncheck the “<strong>File and Printer Sharing for Microsoft Networks</strong>”.
<ul class="related_post">
<li><a href="http://crenk.com/2010/06/10/windows-aero-in-a-jquery-plugin/" title="Windows Aero in a jQuery Plugin">Windows Aero in a jQuery Plugin</a> &#8211; June 10, 2010</li>
<li><a href="http://crenk.com/2011/09/27/dont-just-jump-ship-to-apple-so-easily/" title="Dont Just Jump Ship to Apple So Easily">Dont Just Jump Ship to Apple So Easily</a> &#8211; September 27, 2011</li>
<li><a href="http://crenk.com/2011/07/02/free-angry-birds-windows-7-theme/" title="Free Angry Birds Windows 7 Theme">Free Angry Birds Windows 7 Theme</a> &#8211; July 2, 2011</li>
<li><a href="http://crenk.com/2011/06/20/windows-7-themes-manager/" title="Windows 7 Themes Manager">Windows 7 Themes Manager</a> &#8211; June 20, 2011</li>
<li><a href="http://crenk.com/2011/06/18/transformers-3-theme-for-windows-7/" title="Transformers 3 Theme for Windows 7">Transformers 3 Theme for Windows 7</a> &#8211; June 18, 2011</li>
</ul>
<img src="http://crenk.com/5d26c88b/266bb3db/CCBot/1.0 (+http://www.commoncrawl.org/bot.html).gif" /><p><a href="http://crenk.com/2009/09/09/windows-7-exploit-causes-bsod/">Windows 7: Exploit Causes BSoD</a> originally appeared on: <a href="http://crenk.com">Crenk</a>
<br>
Join our Community: <a href="http://twitter.com/crenk">Twitter</a>, <a href="http://facebook.com/crenkcommunity">Facebook</a> 
</p>
]]></content:encoded>
			<wfw:commentRss>http://crenk.com/2009/09/09/windows-7-exploit-causes-bsod/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

