RSS
Follow us on:

Stuart J. Johnston

Most Recent Posts by Stuart J. Johnston

Just What Color Is a Security Hole?

imageIllustration: Harry CampbellComputer attacks in space are no longer the stuff of science fiction: Recently, laptops on the International Space Station turned out to have computer viruses. NASA believes that the malware--a password stealer that targets online games--may have infected the laptops via a USB thumb drive that one of the astronauts carried aboard. While it wasn't much of a threat, it just goes to show that the little buggers are everywhere.

One flaw in the largely forgotten Windows Image Color Management (ICM) system allows a villain to take over your PC if you view a tainted image displayed on a Web page or embedded in an Office document or e-mail. This is one of 19 holes for which Microsoft issued six "critical" patches; attackers could use them for their malicious creations (no booster rocket required). Though ICM (meant to ensure that colors display correctly on different devices) never caught on, the insecure code still resides in Windows 2000 Service Pack 4 (SP4) through XP SP3 and Windows Server 2003. Vista users are safe.

  • Speed Up Everything!

    PCWorld shows you the secrets to improve performance on all your hardware.

Latest News
  • 10 Keys for Building Private Clouds One of the toughest parts about implementing a cloud strategy isn't choosing the underlying technology to power the deployment; it's having the processes in place to manage an effective migration to the cloud.
  • BYOD: Time to Adjust Your Privacy Expectations Bring your own device for work and you might give your employer permission to search it for pilfered secrets.
  • Windows 8, Ultrabooks to Get Top Billing at Giant Trade Show Windows 8 and ultrabooks are expected to take center stage at the Computex trade show in Taipei next week, as industry giants Microsoft and Intel try to develop...
  • Mobile Payments Still Slow to Catch on in U.S. Even if the next iPhone has a mobile wallet app and a Near Field Communication chip inside, don't expect contactless payments to suddenly explode in the U.S.
  • VMware VSphere 5.0 Gets Common Criteria Security Clearance VMware today said its virtual-machine infrastructure software, vSphere 5.0, has achieved certification under what's known as the Common Criteria program.
Today's Special Offers