I generally try and avoid short posts on the blindingly obvious, but it’s clear there’s a lot of focus on the Microsoft IGMP vulnerability- from both sides (good guys and bad guys).

SANS is starting to put some recommendations up, and unless you’re absolutely sure you have perfect patch management and everything is updated, it’s time to keep your eyes open.

For the non-geeks, Microsoft released a patch yesterday for a serious vulnerability in most versions of Windows that could allow someone to take over your system. Make sure you update.

There aren’t any known exploits in the wild, but that won’t last. Rumor is some of the consumer software firewalls won’t block this, so that isn’t enough protection.


