Subscribe to Windows IT Pro

Ken Pfeil

Ken Pfeil is chief security officer at Capital IQ, a provider of Web-based financial information and services in New York. He has also served with companies such as Microsoft, Dell, Avaya, and Merrill Lynch. He specializes in Windows 2000 and Windows NT and is coauthor of "Stealing the Network--How to Own the Box" and "Hack Proofing Your Network," 2nd Edition (Syngress Publishing).
Email: ken@winnetmag.com

My Latest Content
My Latest Comments



Author Articles

Windows 2000 Security Handbook

By Ken Pfeil, 10/06/2010

Windows 2000 Security Handbook is an excellent all-around reference for tightening security on Windows 2000 systems.

Arbitrary Code Execution in Microsoft Internet Explorer

By Ken Pfeil, 12/18/2004

A vulnerability exists in Microsoft Internet Explorer (IE) that could result in the execution of arbitrary code on the vulnerable system.

Multiple Vulnerabilities in Microsoft WordPad

By Ken Pfeil, 12/18/2004

Two vulnerabilities exist in Microsoft WordPad, both of which could result in the execution of arbitrary code on the vulnerable system.

Multiple Vulnerabilities in Microsoft Windows NT 4.0 DHCP

By Ken Pfeil, 12/18/2004

Two vulnerabilities exist in DHCP, the more serious of which could result in the execution of arbitrary code on the vulnerable system.

Arbitrary Code Execution in Microsoft HyperTerminal

By Ken Pfeil, 12/18/2004

A vulnerability exists in Microsoft HyperTerminal that could result in the execution of arbitrary code on the vulnerable system.

Multiple Vulnerabilities in Microsoft Windows

By Ken Pfeil, 12/18/2004

Two new vulnerabilities exist in Microsoft Windows, both of which could result in escalation of privileges on the vulnerable system.

Multiple Vulnerabilities in Microsoft WINS

By Ken Pfeil, 12/18/2004

Two new vulnerabilities exist in Microsoft WINS.

Arbitrary Code Execution in Microsoft WINS

By Ken Pfeil, 12/01/2004

A vulnerability exists in Microsoft WINS that could result in the remote execution of arbitrary code on the vulnerable system.

Arbitrary Code Execution in Sun Java 2 Platform, Standard Edition (J2SE) 1.4.2_01 and 1.4.2_04

By Ken Pfeil, 12/01/2004

A vulnerability exists in Sun Java 2 Platform, Standard Edition (J2SE) 1.4.2_01 and 1.4.2_04 that could result in the remote execution of arbitrary code on the vulnerable system.

Buffer Overflow in Digital Mapping System's POP3 Server

By Ken Pfeil, 11/24/2004

A vulnerability exists in Digital Mapping Systems (DMS) POP3 Server version 1.5.3 build 37 that could result in the remote execution of arbitrary code on the vulnerable system.

Multiple Vulnerabilities in Microsoft Internet Explorer 6

By Ken Pfeil, 11/19/2004

Two vulnerabilities have been discovered in IE that can be used to bypass a security feature in Windows XP Service Pack 2 (SP2).

Denial of Service in Cisco IOS

By Ken Pfeil, 11/19/2004

Denial of Service (DoS) vulnerability exists in Cisco IOS devices running branches of IOS version 12.2S that have DHCP server or relay agent enabled.

Spoofing Vulnerability in Microsoft Proxy Server 2.0 and Microsoft Internet Security and Acceleration (ISA) Server 2000

By Ken Pfeil, 11/10/2004

A spoofing vulnerability exists in Microsoft Proxy Server 2.0 and Microsoft Internet Security and Acceleration (ISA) Server 2000.

Denial of Service in Kerio Personal Firewall 4.1.1

By Ken Pfeil, 11/10/2004

A Denial of Service (DoS) vulnerability has been discovered in Kerio Personal Firewall 4.1.1.

Denial of Service (DoS) in Software602's 602LAN SUITE

By Ken Pfeil, 11/10/2004

Multiple Denial of Service (DoS) vulnerabilities have been discovered in Software602's 602LAN SUITE version 2004.0.04.0909 and prior.

Arbitrary Code Execution in PuTTY for Windows

By Ken Pfeil, 10/28/2004

A vulnerability in the Telnet/Secure Shell (SSH) program PuTTY could result in the remote execution of arbitrary code on the vulnerable system.

Arbitrary Code Execution Vulnerability in RealPlayer

By Ken Pfeil, 10/28/2004

A vulnerability in RealPlayer could result in the remote execution of arbitrary code on the vulnerable system.

Arbitrary Code Execution in Microsoft Windows

By Ken Pfeil, 10/18/2004

Four new vulnerabilities have been discovered in various versions of Windows that result in the arbitrary execution of code on the vulnerable system.

Arbitrary Code Execution in Microsoft Excel

By Ken Pfeil, 10/18/2004

A vulnerability in the Microsoft Excel could result in the arbitrary execution of code on the vulnerable system.

Denial of Service in Windows NT4.0

By Ken Pfeil, 10/13/2004

A vulnerability in NT 4.0's remote procedure call (RPC) runtime library could result in a Denial of Service (DoS) condition or the leakage of active memory content.



Windows is a trademark of the Microsoft group of companies. Windows IT Pro is used by Penton Media Inc. under license from owner.