Microsoft Updates Bug Reporting Process
In an effort to work more amicably with security researchers who feel Microsoft too often ignores them, the software giant announced it is tweaking its security approach regarding when security researchers disclose new exploits to vendors, hackers, and security administrators.
At the same time, Microsoft (NASDAQ: MSFT) released a "Fixit" program that will automatically implement one of the workarounds the company called out to address a security flaw released by hackers in mid-July that takes advantage of a newly discovered hole in the Windows Shell.
As soon as it surfaced, Microsoft issued a Security Advisory for systems administrators and PC help desk staffers. The company also has now provided a knowledgebase article that explains how to use the fixit program to disable the graphical representation of icons displayed on the Windows Task Bar and Start Menu, which effectively will plug the flaw.