Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
15-year-old bug allows malicious code execution in all versions of Windows (arstechnica.com)
10 points by canvia on Feb 10, 2015 | hide | past | favorite | 1 comment


I have no experience using Active Directory. Is this common practice? I would personally not even classify this as a bug; it seems like common sense that running code downloaded from an unauthenticated connection is bad. How is this different from saying there are critical security bugs in http/ftp, since the same type of attack is possible (but well known)?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: