Subscribe to Windows IT Pro

 

Get Newsletters

  • Get the Latest News
  • Product Updates
  • Helpful Tricks
  • Productivity Tips

Subscribe Now!

Ken Pfeil

Ken Pfeil is chief security officer at Capital IQ, a provider of Web-based financial information and services in New York. He has also served with companies such as Microsoft, Dell, Avaya, and Merrill Lynch. He specializes in Windows 2000 and Windows NT and is coauthor of "Stealing the Network--How to Own the Box" and "Hack Proofing Your Network," 2nd Edition (Syngress Publishing).

Email: ken@winnetmag.com

My Latest Content
My Latest Comments



Author Articles

Windows 2000 Security Handbook

By Ken Pfeil, 10/06/2010

Windows 2000 Security Handbook is an excellent all-around reference for tightening security on Windows 2000 systems.

Arbitrary Code Execution in Microsoft Internet Explorer

By Ken Pfeil, 12/18/2004

A vulnerability exists in Microsoft Internet Explorer (IE) that could result in the execution of arbitrary code on the vulnerable system.

Multiple Vulnerabilities in Microsoft WordPad

By Ken Pfeil, 12/18/2004

Two vulnerabilities exist in Microsoft WordPad, both of which could result in the execution of arbitrary code on the vulnerable system.

Multiple Vulnerabilities in Microsoft Windows NT 4.0 DHCP

By Ken Pfeil, 12/18/2004

Two vulnerabilities exist in DHCP, the more serious of which could result in the execution of arbitrary code on the vulnerable system.

Arbitrary Code Execution in Microsoft HyperTerminal

By Ken Pfeil, 12/18/2004

A vulnerability exists in Microsoft HyperTerminal that could result in the execution of arbitrary code on the vulnerable system.

Multiple Vulnerabilities in Microsoft Windows

By Ken Pfeil, 12/18/2004

Two new vulnerabilities exist in Microsoft Windows, both of which could result in escalation of privileges on the vulnerable system.

Multiple Vulnerabilities in Microsoft WINS

By Ken Pfeil, 12/18/2004

Two new vulnerabilities exist in Microsoft WINS.

Arbitrary Code Execution in Microsoft WINS

By Ken Pfeil, 12/01/2004

A vulnerability exists in Microsoft WINS that could result in the remote execution of arbitrary code on the vulnerable system.

Arbitrary Code Execution in Sun Java 2 Platform, Standard Edition (J2SE) 1.4.2_01 and 1.4.2_04

By Ken Pfeil, 12/01/2004

A vulnerability exists in Sun Java 2 Platform, Standard Edition (J2SE) 1.4.2_01 and 1.4.2_04 that could result in the remote execution of arbitrary code on the vulnerable system.

Buffer Overflow in Digital Mapping System's POP3 Server

By Ken Pfeil, 11/24/2004

A vulnerability exists in Digital Mapping Systems (DMS) POP3 Server version 1.5.3 build 37 that could result in the remote execution of arbitrary code on the vulnerable system.

Multiple Vulnerabilities in Microsoft Internet Explorer 6

By Ken Pfeil, 11/19/2004

Two vulnerabilities have been discovered in IE that can be used to bypass a security feature in Windows XP Service Pack 2 (SP2).

Denial of Service in Cisco IOS

By Ken Pfeil, 11/19/2004

Denial of Service (DoS) vulnerability exists in Cisco IOS devices running branches of IOS version 12.2S that have DHCP server or relay agent enabled.

Spoofing Vulnerability in Microsoft Proxy Server 2.0 and Microsoft Internet Security and Acceleration (ISA) Server 2000

By Ken Pfeil, 11/10/2004

A spoofing vulnerability exists in Microsoft Proxy Server 2.0 and Microsoft Internet Security and Acceleration (ISA) Server 2000.

Denial of Service in Kerio Personal Firewall 4.1.1

By Ken Pfeil, 11/10/2004

A Denial of Service (DoS) vulnerability has been discovered in Kerio Personal Firewall 4.1.1.

Denial of Service (DoS) in Software602's 602LAN SUITE

By Ken Pfeil, 11/10/2004

Multiple Denial of Service (DoS) vulnerabilities have been discovered in Software602's 602LAN SUITE version 2004.0.04.0909 and prior.

Arbitrary Code Execution in PuTTY for Windows

By Ken Pfeil, 10/28/2004

A vulnerability in the Telnet/Secure Shell (SSH) program PuTTY could result in the remote execution of arbitrary code on the vulnerable system.

Arbitrary Code Execution Vulnerability in RealPlayer

By Ken Pfeil, 10/28/2004

A vulnerability in RealPlayer could result in the remote execution of arbitrary code on the vulnerable system.

Arbitrary Code Execution in Microsoft Windows

By Ken Pfeil, 10/18/2004

Four new vulnerabilities have been discovered in various versions of Windows that result in the arbitrary execution of code on the vulnerable system.

Arbitrary Code Execution in Microsoft Excel

By Ken Pfeil, 10/18/2004

A vulnerability in the Microsoft Excel could result in the arbitrary execution of code on the vulnerable system.

Denial of Service in Windows NT4.0

By Ken Pfeil, 10/13/2004

A vulnerability in NT 4.0's remote procedure call (RPC) runtime library could result in a Denial of Service (DoS) condition or the leakage of active memory content.



White Papers

Get your Windows 7 deployment off to the right start by implementing PC lockdown. A locked-down environment is easier and cheaper to support since users are less likely to make unnecessary changes to the core system configuration - read more here!

Essential Guides

Is your iSCSI "lossy"? The reality is that most off-the-shelf Ethernet hardware deployed for iSCSI can lose packets, resulting in slow performance or application downtime. Learn how to assess your current iSCSI infrastructure and engineer an advanced iSCSI SAN infrastructure.

Web Seminars

What's the best way to keep your network safe from malware? In this web seminar, security expert Greg Shields suggests an alternative method to the traditional blacklisting approach that is common with anti-virus and anti-malware solutions.

eLearning Series

We bring the experts direct to you to share their real-world perspective and expertise. During each event, three sessions stream in real time, so you can learn, ask questions, and get solutions.
Upcoming event: Getting the Most with Exchange 2010 with Paul Robichaux

Subscribe to Windows IT Pro!

Windows is a trademark of the Microsoft group of companies. Windows IT Pro is used by Penton Media Inc. under license from owner.