We use cookies to ensure that we give you the best experience on our website. By continuing to browse, we are assuming that you have no objection in accepting cookies. You can change your cookie settings at any time.

全面的網際網路安全

您的電腦和行動裝置的簡單解決方案。

選擇針對惡意軟體的最可靠保護,以滿足您的安全需要。



top roundness

抱歉!


當前的頁面不是您所使用的語言所寫,請問您的下一步要怎麼做?

記住我的偏好

 

What are security holes?

 

 

Security holes are constantly discovered in all sorts of anti virus software and to plug them software vendors issue patches - also called "fixes" or just plainly "security updates" - to offer an immediate quick-repair solution for the problem and/or a general enhancement of the software.

 

Flaws in Microsoft's software seem to be the most popular to exploit, so the American software giant releases a lot of patches. But other common desktop applications like Firefox, QuickTime, RealPlayer, Adobe Reader, Adobe Flash Player, and Sun Java Runtime Environment also need to be patched often to fix security issues.

 


Patch tuesday


In 2003, Microsoft introduced Patch Tuesday to simplify patch management. Patch Tuesday is the second Tuesday of each month, when Microsoft releases the newest fixes for Windows and related software applications like Internet Explorer, the Office suite, and Windows Media Player.

 

Microsoft's patches are distributed via Automatic Updates and the company's Microsoft Update downloads website.

 

Unfortunately, releasing patches also means that cyber-criminals are able to analyse the patch code and exploit the vulnerabilities that the patches were intended to deal with. Therefore a lot of exploits are seen shortly after the release of a patch and the term "Exploit Wednesday" was coined for the day following Patch Tuesday. Malware authors also know that if they start exploiting a vulnerability not known to Microsoft right after Patch Tuesday, it will normally be an entire month before Microsoft releases a patch to fix it.

 

 

Fast working criminals


Today's cybercriminals are very fast at creating exploit code. When Microsoft issues patches, exploit code for the publicly disclosed vulnerabilities will usually appear the same or the next day. Hackers are able to do that through reverse engineering.

 

In April 2008, a group of computer researchers urged Microsoft to redesign the way it distributes patches, after they created a technique that automatically produces attack code by comparing the vulnerable and repaired versions of a program.

 

A well-known attack based on a security hole is Operation Aurora, a targeted malware attack against at least 30 major companies — including Google and Adobe — which exploited a zero-day flaw in Internet Explorer. The exploit allowed malware to load onto users' computers. Once loaded, the malware could take control of the computer to steal corporate intellectual property.

 

loaded, the malware could take control of the computer to steal corporate intellectual property.

 

In conclusion, using an automated tool, an exploit could be created in a few minutes or less after looking at the patch, according to the researchers. This means it is theoretically possible for hackers to start trying to exploit machines a short time after the attackers have received the patch, putting more PCs at risk of becoming infected with malicious software.

Have you ever felt like a mouse in a trap? Caught in a situation with no way out? The experience can be rather frustrating in real life, but online, it can turn really da... moreInfo


Picture this: you’ve just seen a great collection item on an online auction site and you want to place your bid. What if you actually get it at a cool price? That would b... moreInfo


Add mobile security to your mobile health

It’s not only about your mobile security anymore, it’s about your “mobile” health as well. The newest trend in health services and mobile developments is what experts ca... moreInfo


How important is your mobile data to you?

The mobile landscape is rapidly evolving. Mobile devices have become real hubs for all sorts of personal information, photos, work files, music, videos and so much more ... moreInfo




全天候無假日支援

 


我們專門的支援團隊全天候無假日以簡單易懂的英語提供專家建議,並在特定時間內提供其他語言服務。


立即獲得幫助


升級/續訂

 


已經在使用 BullGuard 嗎?


我們希望您盡情地享用我們的產品!

僅需執行幾個簡單的步驟,您即可免費升級至我們最新的版本或續訂您訂購的產品。


升級 續訂