找回密码
 注册账户
查看: 338|回复: 0

Microsoft’s OneCare Firewall Draws Fire

[复制链接]
admin 发表于 2012-3-21 16:42:14 | 显示全部楼层 |阅读模式
The firewall component in Microsoft’s Windows OneCare security bundle has holes, experts have warned.The security software, available in a public beta version, by default allows applications that use the Java Virtual Machine or have a digital signature to connect to the Internet. Like any blanket security-bypass rule, these default settings are a bad idea, said Mark Curphey, vice president at vulnerability management specialist Foundstone, a part of McAfee.

"Any firewall, any security device should have a default deny," Curphey said in an interview Tuesday. "Any door should always be closed." Curphey discovered the issue when running software on his wife’s computer, on which he had installed OneCare. He informed Foundstone security consultant Roger Grimes, who subsequently blogged about it on the InfoWorld Web site. Grimes also blasted the default bypass settings.

News source: ZDNet
您需要登录后才可以回帖 登录 | 注册账户

本版积分规则

存档|黑屋|手机|网络实验室 本站服务器由美国合租以及IDCLayer国际数据提供!!!

GMT+8, 2026-6-9 08:14 , Processed in 0.011937 second(s), 7 queries , Gzip On, Redis On.

Powered by Discuz! X3.5

© 2001-2025 Discuz! Team.

快速回复 返回顶部 返回列表