PDA

View Full Version : UnPlug n' Pray


billg2911
28th December 2001, 04:02 PM
The FBI has Strongly Recommended that
All Users Immediately Disable Windows'
Universal Plug n' Play Support

this is from Gibson Research Corporation, I though i pass this along
check it out here
http://grc.com/UnPnP/UnPnP.htm

also check this out

Simple-to-use Internet Server Identification Utility
http://grc.com/id/IDServe.htm

Berkswolf
28th December 2001, 08:58 PM
Hmmmmm, well using only XPs built in firewall, I managed to get a stealth rating in all the tests which would indicate that I am invisible to probes. Now I know its not a total test, but if Steve Gibsons own tests can find no entry, why is he beating the drum so much?

mackerel
28th December 2001, 09:16 PM
IMHO he's very paranoid about security. I'm surprised he doesn't just tell everyone to unplug their machines from the net and bury it in molten lead.

billg2911
28th December 2001, 09:17 PM
Your right Berkswolf, I never thought about it like that how can someone use this against me if thay can't see me??

here is what Microsoft has to say

http://support.microsoft.com/directory/article.asp?ID=kb;en-us;Q309073

Berkswolf
28th December 2001, 11:52 PM
Well obviously there is some cause for concern as MS acknowledge. Now the thing is, will I have already implemented the update using auto update in XP or do I have to grab it and install it?

billg2911
29th December 2001, 01:23 AM
Hi all, I did some checking and found out the Windows XP Update Package, October 25, 2001 fixes this.

to check if you have install the update go to windows update and click on install history if Windows XP Update Package, October 25 is there you are all set

tripodal
29th December 2001, 01:40 AM
better safe than sorry i say, just grab it and it will most likely erroor if already installed


unless someone already took advantage of it in your system and uploaded a proggy to block the installation of the update

wouldnt that be crappy?

Berkswolf
29th December 2001, 09:14 AM
Hmmm. Well after checking I didn't have auto update installed as i thought I did. Anyways, I have now grabbed and installed all the updates and am back up to speed again. Welll at least untill the next security alert!!:rolleyes:

Surgeon General
29th December 2001, 05:40 PM
Originally posted by Berkswolf
Welll at least untill the next security alert!!:rolleyes:
So you are saying that you are good for about 2 weeks?:rolleyes:

tripodal
30th December 2001, 01:22 AM
Originally posted by Surgeon General

So you are saying that you are good for about 2 weeks?:rolleyes:

well if microsoft wouldnt sit on thier hands and wait for someone else to notice thier flaws.. they could probably have us do an update a day untill windows 2003 comes out

mackerel
1st January 2002, 05:31 PM
Interesting article here, suggesting that the FBI and GRC jumped too quickly and may have given incorrect information.

http://www.theregister.co.uk/content/4/23517.html

I love this phrase :D

And of course Steve Gibson jumped on the bandwagon with a page dedicated to saturating the issue with his own special blend of FUD that is almost elevated to an art form.

tripodal
2nd January 2002, 07:34 AM
quite an interesting article, seems somebody goofed up for sure.
so what happens now?