Friday, February 13, 2009

Trend Micro Top 20 Security Vulnerabilities

20 อันดับช่องโหว่ความปลอดภัยในด้านไอที
ในโอกาสครบรอบ 20 ปี ของ Trend Micro (http://www.trendmicro.com/) หนึ่งในบริษัทด้านความปลอดภัยด้านไอทีรายใหญ่จึงได้จัดทำรายงานสรุป 20 อันดับช่องโหว่ความปลอดภัยในด้านไอทีที่พบบ่อย รายละเอียดดังนี้

1. เว็บเบราว์เซอร์ที่ไม่ได้ทำการติดตั้งแพตช์ หรืออัพเดทหรือมีช่องโหว่ความปลอดภัย โดยเฉพาะ Internet Explorer
2. ระบบปฏิบัติการที่ไม่ได้ทำการติดตั้งแพตช์ หรืออัพเดทหรือมีช่องโหว่ความปลอดภัย โดยเฉพาะวินโดวส์
3. เว็บไซต์/เว็บเพจ ที่ไม่ได้ทำการติดตั้งแพตช์หรืออัพเดท
4. จาวาสคริปต์ที่มีช่องโหว่ความปลอดภัย
5. ซอฟต์แวร์สำรองข้อมูล
6. ซอฟต์แวร์ฐานข้อมูล
7. อีเมลไคลเอ็นต์
8. ผู้ใช้ที่ได้รับสิทธิ์การใช้งานต่างๆ มากเกินความจำเป็น
9. โปรแกรมสนทนาออนไลน์ (IM)
10. เซิร์ฟเวอร์ที่ทำหน้าที่ในการบริหารจัดการระบบไอที
11. โปรแกรมเล่นไฟล์มีเดียต่างๆ เพื่อความบันเทิง เช่น โปรแกรมสำหรับดูหนัง ฟังเพลง เป็นต้น
12. ซอฟต์แวร์สำหรับใช้ในงานสำนักงาน
13. โปรแกรมแบบเพียร์ทูเพียร์ เพื่อแชร์ไฟล์ หรือข้อมูล
14. ซอฟต์แวร์ด้านการรักษาความปลอดภัย
15. วิศวกรรมสังคมของผู้ใช้บนเครือข่ายสังคมออนไลน์
16. การเชื่อมต่ออุปกรณ์ที่ไม่ได้รับอนุญาตเข้ากับระบบไอที
17. การใช้งานคอมพิวเตอร์แล็ปท็อปโดยไม่ได้ทำการเข้ารหัสข้อมูล
18. การใช้งานสื่อเก็บข้อมูลแบบพกพาโดยไม่ได้ทำการเข้ารหัสข้อมูล
19. บริการต่างๆ ของระบบปฏิบัติการยูนิกซ์ (Unix)
20. เซิร์ฟเวอร์และโทรศัพท์ในระบบ VoIP

แหล่งข้อมูลอ้างอิง
• http://us.trendmicro.com/us/about-us/company/20th-anniversary/

Copyright ©2009 TWA Blog. All Rights Reserved.

Thursday, February 12, 2009

Gmail เปิดบริการแจ้งที่อยู่ผู้ส่งอีเมล

Gmail เปิดให้บริการฟีเจอร์ใหม่ คราวนี้เป็นฟีเจอร์แจ้งที่อยู่ของผู้ส่งอีเมลแนบไปกับลายเซ็นต์ โดยฟีเจอร์นี่มีชื่อในภาษาอังกฤษว่า "Location in Signature"

วิธีการใช้งานฟีเจอร์ Location in Signature
วิธีการใช้งานฟีเจอร์ Location in Signature มีขั้นตอนดังนี้
1.ล็อกออนเข้า Gmail แล้วคลิกเมนู Settings จากนั้นในหน้าต่าง Settings ให้คลิก Labs ในหัวข้อ Location in Signature เลือกเป็น Enable แล้วเลื่อนกลับไปบนสุด เสร็จแล้วคลิก Save Changes
2. คลิกเมนู Settings จากนั้นในหน้าต่าง Settings เลื่อนไปจนถึงหัวข้อ Signature ให้เลือกเช็คบ็อกซ์ Append your location to the signature (สำหรับส่วนบนจะเลือกเป็น No signature ก็ได้แต่แนะนำให้ใส่ Signature)


เมื่อทำการส่งอีเมล ผู้รับอีเมลก็จะเห็นว่าอีเมลนั้นส่งมาจากไหนดังรูปด้านล่าง

Location in Signature
อีเมลที่ส่งมาจากผู้ส่งที่เปิดใช้งานฟีเจอร์ Location in Signature


Copyright © 2009 Thai Windows Administrator, All Rights Reserved.

February 2009 Security Release ISO Image

ไฟล์อิมเมจของไมโครซอฟท์ซีเคียวริตี้อัพเดทของเดือนกุมภาพันธ์ 2552
ไมโครซอฟท์ได้ออกไฟล์อิมเมจของการอัพเดทของเดือนกุมภาพันธ์ 2552 ซึ่งจะรวมซีเคียวริตี้อัพเดทหมายเลข MS09-004 ซึ่งเป็นอัพเดทของ SQL Server บน Windows Server 2003 และ Windows Server 2008 ที่ออกเมื่อวันที่ 10 กุมภาพันธ์ ที่ผ่านมา เพื่อให้ผู้ใช้ทำการดาวน์โหลดนำไปทำการอัพเดทเครื่องคอมพิวเตอร์ที่เชื่อมต่อกับอินเทอร์เน็ตแบบความเร็วต่ำ หรือไม่ได้เชื่อมต่อกับอินเทอร์เน็ต

ไฟล์อิมเมจของซีเคียวริตี้อัพเดทนี้จะอยู่ในรูปแบบ DVD5 ISO และสามารถดาวน์โหลดได้จากเว็บไซต์ของไมโครซอฟท์ตามรายละเอียดด้านล่าง หลังจากดาวน์โหลดเสร็จแล้วจะต้องทำการเบิร์นลงแผ่น DVD ก่อนที่จะนำไปใช้อัพเดทเครื่องคอมพิวเตอร์ได้

รายละเอียดไฟล์อิมเมจของไมโครซอฟท์ซีเคียวริตี้อัพเดทของเดือนกุมภาพันธ์ 2552
ชื่อไฟล์: Windows-KB913086-200902.iso
เวอร์ชัน: 913086
หมายเลขของการอัพเดท: MS08-004
หมายเลข Knowledge Base (KB): KB960082, KB960089
ขนาดของไฟล์: 1911.2 MB
เวลาในการดาวน์โหลดโดยประมาณ: 77 ชั่วโมง 40 นาที (Dial-up 56K)
ฟอร์แมต: ISO-9660 DVD5
วันที่ออก: 2/9/2009
ภาษา: English และภาษาอื่นๆ อีก 23 ภาษา
เว็บไซต์ดาวน์โหลด: http://www.microsoft.com/downloads/details.aspx?FamilyID=b298d437-0284-48a7-ae4a-df7fe948d133&DisplayLang=en หรือ คลิกที่นี่ เพื่อดาวน์โหลดไฟล์อิมเมจของไมโครซอฟท์ซีเคียวริตี้อัพเดทของเดือนกุมภาพันธ์ 2552

ซีเคียวริตี้อัพเดทที่บรรจุในอยู่ไฟล์อิมเมจ
ในฟล์อิมเมจของเดือนกุมภาพันธ์นี้ จะบรรจุซีเคียวริตี้อัพเดทต่างๆ ดังนี้

• KB960082 / (MS09-004)
- Windows Server 2003 - 12 languages
- Windows Server 2003 x64 Edition - 12 languages

• KB960089 / (MS09-004)
- Windows Server 2003 - 1 language
- Windows Server 2003 x64 Edition - 1 language
- Windows Server 2008 - 1 language
- Windows Server 2008 x64 Edition - 1 language

ความต้องการระบบ:
ไฟล์อิมเมจของไมโครซอฟท์ซีเคียวริตี้อัพเดทสามารถใช้งานได้บนระบบปฏิบัติการต่างๆ ดังนี้
- Windows 2000 Service Pack 4
- Windows Server 2003 Service Pack 1
- Windows Server 2003 Service Pack 1 for Itanium-based Systems
- Windows Server 2003 Service Pack 2
- Windows Server 2003 Service Pack 2 for Itanium-based Systems
- Windows Server 2003 Service Pack 2 x64 Edition
- Windows Server 2003, Datacenter x64 Edition
- Windows Server 2003, Enterprise x64 Edition
- Windows Server 2003, Standard x64 Edition
- Windows Server 2008
- Windows Server 2008 for Itanium-based Systems
- Windows Vista
- Windows Vista 64-bit Editions Service Pack 1
- Windows Vista Business 64-bit edition
- Windows Vista Enterprise 64-bit edition
- Windows Vista Home Basic 64-bit edition
- Windows Vista Home Premium 64-bit edition
- Windows Vista Service Pack 1
- Windows Vista Ultimate 64-bit edition
- Windows XP Professional x64 Edition
- Windows XP Service Pack 2
- Windows XP Service Pack 3

แหล่งข้อมูลอ้างอิง
• http://support.microsoft.com/kb/913086


February 2009 Security ISO Image Windows-KB913086-200902.iso

Copyright © 2009 All Rights Reserved.

ไมโครซอฟท์เตือนให้ระวังการโจมตี SQL Server

ไมโครซอฟท์เตือนให้ระวังการโจมตี Microsoft SQL Server
ไมโครซอฟท์ได้อัพเดท Microsoft Security Advisory (961040) Vulnerability in SQL Server Could Allow Remote Code Execution (เว็บไซต์: http://www.microsoft.com/technet/security/advisory/961040.mspx) เพื่อแจ้งให้ผู้ใช้ Microsoft SQL Server ทราบว่าไมโครซอฟท์ได้ออกอัพเดทหมายเลข MS09-004 เพื่อแก้ไขจุดบกพร่องที่ผู้บุกรุกสามารถใช้ทำการเอ็กซีคิวท์โค้ดบนระบบจากระยะไกลได้ โดยเวอร์ชันที่มีช่องโหว่ได้แก่ Microsoft SQL Server 2000, Microsoft SQL Server 2005, Microsoft SQL Server 2005 Express Edition, Microsoft SQL Server 2000 Desktop Engine (MSDE 2000), Microsoft SQL Server 2000 Desktop Engine (WMSDE) และ Windows Internal Database (WYukon) สำหรับเวอร์ชันที่ไม่มีผลกระทบ ได้แก่ Microsoft SQL Server 7.0 Service Pack 4, Microsoft SQL Server 2005 Service Pack 3 และ Microsoft SQL Server 2008 และให้ผู้ใช้ทำการติดตั้งอัพเดทในทันทีที่ทำได้เนื่องจากปัจจุบันมีการเผยแพร่โค้ดสำหรับใช้โจมตีระบบบนอินเทอร์เน็ตแล้ว

สำหรับการติดตั้งนั้น ผู้ใช้สามารถทำการติดตั้งอัพเดทได้ 3 ทาง
1. จากเว็บไซต์ไมโครซอฟท์อัพเดท (http://update.microsoft.com/) ผ่านทางอินเทอร์เน็ต
2. ดาวน์โหลดไฟล์อิมเมจของการอัพเดทของเดือนกุมภาพันธ์ 2552 มาติดตั้งแบบแมนนวล อ่านรายละเอียดได้ที่ ไฟล์อิมเมจของไมโครซอฟท์ซีเคียวริตี้อัพเดทของเดือนกุมภาพันธ์ 2552 http://thaiwinadmin.blogspot.com/2009/02/february-2009-security-release-iso.html
3. ดาวน์โหลดอัพเดทมาติดตั้งแบบแมนนวล อ่านรายละเอียดได้ที่ http://www.microsoft.com/technet/security/bulletin/ms09-004.mspx

แหล่งข้อมูลอ้างอิง
• http://www.microsoft.com/technet/security/advisory/961040.mspx


Copyright © 2009 Thai Windows Administrator, All Rights Reserved.

Wednesday, February 11, 2009

Microsoft Security Update for February 2009

แก้ไขล่าสุด: 10 มีนาคม 2552

ซีเคียวริตี้อัพเดทของเดือนกุมภาพันธ์ ถือว่าไม่หนักแต่ก็ไม่เบาสำหรับ Admin เนื่องจากไมโครซอฟท์ออกอัพเดท 4 ตัว โดยเป็นอัพเดทสำหรับแก้ไขจุดบกพร่องของ Internet Explorer จำนวน 1 ตัว แอดมินทุกท่านรวมถึงผู้ใช้ทั่วไปก็อย่าลืมทำการอัพเดทกันนะครับ

ไมโครซอฟต์ซีเคียวริตี้อัพเดทของเดือนกุมภาพันธ์ 2552
เมื่อวันที่ 10 กุมภาพันธ์ 2552 ไมโครซอฟท์ได้ออก "อัพเดทความปลอดภัยของเดือนกุมภาพันธ์ (Microsoft Security Update for February 2009)" จำนวน 4 ตัว โดยมี 2 อัพเดทที่มีความร้ายแรงระดับวิกฤติ (Critical) และ 2 อัพเดทที่มีความร้ายแรงสูง (Important) สำหรับรายละเอียดการอัพเดทและรายชื่อโปรแกรมที่ได้รับผลกระทบ มีดังนี้

อัพเดทที่มีความร้ายแรงระดับวิกฤติ (Critical)
• MS09-002 สำหรับแก้ไขจุดบกพร่องของโปรแกรม Internet Explorer
• MS09-003 สำหรับแก้ไขจุดบกพร่องของโปรแกรม Microsoft Exchange

Microsoft Security Bulletin 1: IE Bulletin
MS09-002: Cumulative Security Update for Internet Explorer (961260)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms09-002.mspx
ผลกระทบ: Remote Code Execution
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Internet Explorer 7 สำหรับ Windows XP Service Pack 2 และ Windows XP Service Pack 3
- Internet Explorer 7 สำหรับ Windows XP Professional x64 Edition และ Windows XP Professional x64 Edition Service Pack 2
- Internet Explorer 7 สำหรับ Windows Server 2003 Service Pack 1 และ Windows Server 2003 Service Pack 2
- Internet Explorer 7 สำหรับ Windows Server 2003 x64 Edition และ Windows Server 2003 x64 Edition Service Pack 2
- Internet Explorer 7 สำหรับ Windows Server 2003 with SP1 สำหรับ Itanium-based Systems และ Windows Server 2003 with SP2 สำหรับ Itanium-based Systems
- Internet Explorer 7 ใน Windows Vista และ Windows Vista Service Pack 1
- Internet Explorer 7 ใน Windows Vista x64 Edition และ Windows Vista x64 Edition Service Pack 1
- Internet Explorer 7 ใน Windows Server 2008 for 32-bit Systems (Windows Server 2008 Server Core installation ไม่ได้รับผลกระทบ)
- Internet Explorer 7 ใน Windows Server 2008 for x64-based Systems (Windows Server 2008 Server Core installation ไม่ได้รับผลกระทบ)
- Internet Explorer 7 ใน Windows Server 2008 สำหรับ Itanium-based Systems

Microsoft Security Bulletin 2: Exchange Bulletin
MS09-003: Vulnerabilities in Microsoft Exchange Could Allow Remote Code Execution (959239)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms09-003.mspx
ผลกระทบ: Remote Code Execution
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft Exchange 2000 Server Service Pack 3 with the UpdateRollup of August 2004
- Microsoft Exchange Server 2003 Service Pack 2
- Microsoft Exchange Server 2007 Service Pack 1(Includes 32-bit and x64-based editions)

อัพเดทที่มีความร้ายแรงสูง (Important)
• MS09-004 สำหรับแก้ไขจุดบกพร่องของโปรแกรม Microsoft SQL Server
• MS09-005 สำหรับแก้ไขจุดบกพร่องของโปรแกรม Microsoft Visio

Microsoft Security Bulletin 3: SQL Bulletin
MS09-004: Vulnerability in Microsoft SQL Server Could Allow Remote Code Execution (959420)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms09-004.mspx
ผลกระทบ: Remote Code Execution
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft SQL Server 2000 Desktop Engine (WMSDE) บน Microsoft Windows 2000 Service Pack 4
- Microsoft SQL Server 2000 Desktop Engine (WMSDE) บน Windows Server 2003 Service Pack 1 and Windows Server 2003 Service Pack 2
- Windows Internal Database (WYukon) Service Pack 2 บน Windows Server 2003 Service Pack 1 and Windows Server 2003 Service Pack 2
- Microsoft SQL Server 2000 Desktop Engine (WMSDE) บน Windows Server 2003 x64 Edition and Windows Server 2003 x64 Edition Service Pack 2
- Windows Internal Database (WYukon) x64 Edition Service Pack 2 บน Windows Server 2003 x64 Edition and Windows Server 2003 x64 Edition Service Pack 2
- Windows Internal Database (WYukon) Service Pack 2 บน Windows Server 2008 for 32-bit Systems (Windows Server 2008 Server Core installation affected)
- Windows Internal Database (WYukon) x64 Edition Service Pack 2 บน Windows Server 2008 for x64-based Systems (Windows Server 2008 Server Core installation affected)
- GDR update for SQL Server 2000 Service Pack 4
- QFE update for SQL Server 2000 Service Pack 4
- GDR update for SQL Server 2000 Itanium-based Edition Service Pack 4
- QFE update for SQL Server 2000 Itanium-based Edition Service Pack 4
- GDR update for SQL Server 2005 Service Pack 2
- QFE update for SQL Server 2005 Service Pack 2
- GDR update for SQL Server 2005 x64 Edition Service Pack 2
- QFE update for SQL Server 2005 x64 Edition Service Pack 2
- GDR update for SQL Server 2005 with SP2 สำหรับ Itanium-based Systems
- QFE update for SQL Server 2005 with SP2 สำหรับ Itanium-based Systems
- GDR update for Microsoft SQL Server 2000 Desktop Engine (MSDE 2000) Service Pack 4
- QFE update for Microsoft SQL Server 2000 Desktop Engine (MSDE 2000) Service Pack 4
- GDR update for SQL Server 2005 Express Edition Service Pack 2
- QFE update for SQL Server 2005 Express Edition Service Pack 2
- GDR update for SQL Server 2005 Express Edition with Advanced Services Service Pack 2
- QFE update for SQL Server 2005 Express Edition with Advanced Services Service Pack 2

Microsoft Security Bulletin 4: Visio Bulletin
MS09-005: Vulnerabilities in Microsoft Office Visio Could Allow Remote Code Execution (957634)
อัพเดทลิงค์: http://www.microsoft.com/technet/security/bulletin/ms09-005.mspx
ผลกระทบ: Remote Code Execution
ซอฟต์แวร์ที่ได้รับผลกระทบ:
- Microsoft Office Visio 2002 Service Pack 2
- Microsoft Office Visio 2003 Service Pack 3
- Microsoft Office Visio 2007 Service Pack 1

การอัพเดทระบบ
ผู้ใช้ทั่วไปสามารถทำการอัพเดทจากเว็บไซต์ไมโครซอฟท์อัพเดท (http://update.microsoft.com/) ผ่านทางอินเทอร์เน็ต หรือทำการอัพเดทผ่านทาง WSUS สำหรับผู้ใช้ในองค์กรที่มีการใช้ระบบ Windows Server Update Services (WSUS) ตั้งแต่วันที่ 10 กุมภาพันธ์ 2552 เป็นต้นไป

แหล่งข้อมูลอ้างอิง
• Microsoft Security Bulletin Bulletin Summary for February 2009: http://www.microsoft.com/technet/security/bulletin/ms09-feb.mspx

ลิงค์ที่เกี่ยวข้อง
• Microsoft Technet Security: http://www.microsoft.com/technet/security/default.mspx
• Microsoft Security Center: http://www.microsoft.com/security/default.mspx


Microsoft Security Update for February 2009

© 2009 Thai Windows Administrator, All Rights Reserved.