Azure Web Application Firewall Blocks Cyber-Threats on Microsoft Cloud

執筆者
eWEEK Staff
eWEEK Staff
Published: Apr 5, 2017
Updated: Feb 2, 2021
2 minute read
Daily Video 404
eWeek のコンテンツおよび製品のおすすめは、編集上の独立性を保っています。パートナーへのリンクをクリックすると、当社が報酬を得る場合があります。 詳細を見る

Today’s topics include Microsoft deflecting cyber-attacks with its Azure Web Application Firewall, Microsoft offering early access to the Windows 10 Creators Update, VMware’s latest security vulnerability patches and the return of cyber-threats from the 1990s such as macro malware.

Microsoft has launched its Azure Web Application Firewall, making it more difficult for cyber-attackers to attack applications hosted on the company’s Azure cloud computing platform.

With the Web Application Firewall, which is available in all public Azure data center regions, customers can now fortify their applications, making them less susceptible to cross-site scripting attacks, SQL injection and other methods of exploiting or disrupting web applications. The firewall provides protection for up to 20 websites per gateway.

Microsoft will begin a phased rollout of its Windows 10 Creators Update on April 11. However, experienced users can get access to the software before then, as a manual update will be available starting April 5, according to John Cable, director of Program Management at Microsoft Windows Servicing and Delivery.

“This option is intended for advanced users on devices running a licensed version of Windows 10,” Cable said. Updates include a unified security settings hub, a Paint 3D app and support for a new breed of affordable mixed reality headsets.

VMware has released an update fixing four security vulnerabilities that could enable an attacker to escape the isolation of a virtual machine and attack a host operating system.

These weaknesses were first demonstrated on March 17 at the Pwn2Own hacking competition. The event awards security researchers for demonstrating zero-day vulnerabilities in software.

VMware is not the only vendor that has already publicly patched flaws that were first demonstrated at the Pwn2Own event. Linux kernel developers have also patched a flaw, as has Mozilla with a patch for an exploit to its Firefox web browser.

Macro malware, which uses the scripting language in Microsoft Office to infect and attack applications, may be so 1990s, but unfortunately it’s still hanging around.

Even though macro malware and worms may be a couple decades old, they remain significant security threats and even top some security threat lists.

Advertisement

Today, attackers are increasingly turning to new techniques, such as ransomware and denial-of-service attacks; however, older types of malware have persisted and are even making a comeback, according to two reports released by network-security firms.

One reason for the comeback? Defenders are often lax about looking for older threats, Corey Nachreiner, chief technology officer at WatchGuard, told eWEEK.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

TechnologyAdvice が所有・運営しています。 © 2026 TechnologyAdvice. 無断転載を禁じます

広告主に関する開示:このサイトに掲載されている製品の一部は、TechnologyAdvice が報酬を受け取っている企業のものです。この報酬は、製品がこのサイトのどこにどのように表示されるか(表示される順序など)に影響する場合があります。TechnologyAdvice は、市場で入手可能なすべての企業やすべての種類の製品を掲載しているわけではありません。