Security is (and should be) a large concern for not only massive corporations, but home users.  We trust our computing platforms are secure, safe, and absent of any malware and other potentially harmful software and services.

Consumers voices are not always heard, and companies like Microsoft and Adobe have the tendency to take our concerns for granted and have been proven time and time again to overlook proper development in an effort to continuously provide new software feature sets and releases as required by the evolving landscape of computing.  This repetitive cycle yields flaws in software and security patching is necessary to recover the potential loss.

Home users and corporations want options which are not affiliated with major vendors. We have been asked time and time again to write code which will allow our 15 readers to quickly scan and report on vulnerabilities as they relate to the patches which are released on a monthly basis.  We have veered away from this task simply because there are so many competing products (free/licensed) out there which perform this exact task and have been doing it for quite some time.

We have heard your concerns friends! And as a result, we decided it would be a good idea to provide our 15 readers with a tool that will quickly scan your environment\network for hosts that do not have the appropriate security updates or are in an “at risk mode”. This utility is built off our wildly popular multi-threaded vulnerability scanner utility and offers users an open source highly configurable approach to patch/vulnerability management and reporting. Continue reading “1security patch vulnerability scanner” »

 

Okay, so check this out. How cool would it be to finally have one small application to optimize your VDI infrastructure? Wait no Underperforming VDI? We have a fix for that!more, because it’s here and step aside others. We took some of the more popular registry which should be managed by GPO plopped them into one console/form application.  This code is deployable, and can be run on one or many hosts (server and desktops).

As a system administrator or power home user, there are a plenty of settings to choose from in an effort to make your virtual assets perform slightly better. These optimizations can be highly complex and difficult to relate to your “specific” needs.  Each group of optimization settings is categorized by the Operating System. If you’re VDI or OS Version does not support the optimization setting, it will not be applied.

Here is an example of some of the more powerful settings that can be optimized. Remember – the goal here is to get out of the “physical asset” mindset and make the user experience better for your VDI end users. Teradici and VMware, you should pay more attention to these settings. XenDesktop – you are completely awesome! Keep on keeping it real Citrix and XenApp. Continue reading “VDI Optimization Tool” »

 

I find it quite interesting as this is the second time ISC has raised the yellow flag over a vulnerability and of all the various “security” focused organizations in the market, I would consider ISC to be the most reliable (and Secunia).

This time it’s a result of Microsoft Security Bulletin MS12-020 [CVE-2012-0002]. With proven Point of Concept code already available, its time to lock down your Terminal Servers and Citrix XenApp servers in preparation for a possible exploit. Corporations across the globe are buckling down their hatches and quickly deploying the Patch. RDP is used today now more than ever, especially with companies embracing the remote workforce more and more these days. And as a result, we decided it would be a good idea to provide our 15 readers with a  tool that will quickly scan your environment\network for hosts that do not have the MS12-020 patch or are in an “at risk mode”.  This scanner utility uses a multithreaded approach and allows you to scan the following the following modes.

  • Remotely scan an individual hostquickly target vulnerability servers and desktops
  • Scan a specific subnet
  • Scan a block of subnets
  • Scan an entire domain
  • Quickly identify gaps in SCCM/WSUS server and desktop deployments

As results are tallied in real-time, hosts are categorized in one of two categories. Tab 1 contains a listing of hosts and servers that are still vulnerable, and Tab 2 contains a list of hosts that are fully patched and considered safe.

To download the application, simply logon and click on the “downloads” link under your profile. The download is absolutly free to use and distribute. If you do not already have a profile, simply create one. It only takes 10 seconds.

[update 04/06/2012] due to the wild success of our vulnerability scanner, we have ported this code over to a new base that supports more products, and patches. The patch vulnerability scanner is still free and has even more features – read about it here: http://www.cibengineering.com/blog/security-patch-vulnerability-scanner/

© 2012 random technology [RT] technology documentation

Optimized by SEO Ultimate