Month: August 2018

2018 年 10 月 Office 365 で TLS 1.0, 1.1 での接続無効化。 最終確認を!

2018 年 10 月 31 日より、Microsoft Office 365 では TLS 1.0 および 1.1 のサポート廃止を予定しています。
Office 365 サービスに正常に接続するためには、2018 年 10 月 31 日までに、クライアントとサーバー間、ブラウザーとサーバー間のすべての組み合わせで TLS バージョン 1.2 (またはそれ以降のバージョン) を使用するように設定する必要があります。期日までに、対応を行っていない場合、Office 365 に接続する際に、接続できないなどの問題が発生する可能性があります。

Vulnerability hunting with Semmle QL, part 1

Previously on this blog, we’ve talked about how MSRC automates the root cause analysis of vulnerabilities reported and found. After doing this, our next step is variant analysis: finding and investigating any variants of the vulnerability. It’s important that we find all such variants and patch them simultaneously, otherwise we bear the risk of these …

Vulnerability hunting with Semmle QL, part 1 Read More »

August 2018 Security Update Release

Today, we released security updates to provide additional protections against malicious attackers. As a best practice, we encourage customers to turn on automatic updates.  More information about this month’s security updates can be found on the Security Update Guide.   MSRC team 

Analysis and mitigation of L1 Terminal Fault (L1TF)

In January 2018, Microsoft released an advisory and security updates for a new class of hardware vulnerabilities involving speculative execution side channels (known as Spectre and Meltdown). In this blog post, we will provide a technical analysis of a new speculative execution side channel vulnerability known as L1 Terminal Fault (L1TF) which has been assigned …

Analysis and mitigation of L1 Terminal Fault (L1TF) Read More »

Microsoft’s Top 100 Security Researchers – Black Hat 2018 Edition

This morning we are excited to unveil the security researcher leaderboard at the Black Hat Security Conference.  This list recognizes the top security researchers who have contributed research to the Microsoft products and services.  If you are curious on how we build the list, check out our blog from last week on The Making of …

Microsoft’s Top 100 Security Researchers – Black Hat 2018 Edition Read More »