One of the patches Microsoft Corp. issued last week is nothing of the sort, according to a researcher who today accused Microsoft of making functionality a higher priority than security.
According to Tyler Reguly, a senior security engineer at nCircle Network Security Inc., last Tuesday's MS09-008 update does not fix the problem for all users, many of whom may not realize that they're still vulnerable to attack. "When you get a patch from a vendor, you expect it to provide some level of security," said Reguly. "But MS09-008 only mitigates the problem, it doesn't patch it."
|