Last week, Israeli researchers found that there is a bug in Windows 2000 which makes it possible for a person to predict the output of the random-number generator for that particular operating system.
Today, The Register reports that this bug is also present on Windows XP operating systems. According to their article, Microsoft admitted that this bug exists but they will not release a patch for it until they have finished working on Service Pack 3 which will be released next year.
An attacker must already have administrator rights before he or she can exploit this bug, based on what the spokesman for Microsoft said.
Source: The Register

Articles
Blogs
Kits
Forums
Lee