• caglararli@hotmail.com
  • 05386281520

MS09-013 and MS09-014: NTLM Credential Reflection Updates for HTTP clients

Çağlar Arlı      -    1 Views

MS09-013 and MS09-014: NTLM Credential Reflection Updates for HTTP clients

This month we are taking another step towards blocking NTLM reflection attacks by releasing MS09-014 for Internet Explorer and MS09-013 for Windows. This is the third update related to NTLM credential reflection we have released, and I thought it would be good to go into a bit more detail on why this update was needed, how it relates to the previous updates (MS08-068 and MS08-076), and the severity of the issue.