Newsletters Welcome, Guest Log In | Register
News:

Security

Subscribe

Sign up now and get the best business technology insights direct to your inbox.

  • Daily Edge
  • CTO Edge Update
  • Business Tools & Templates
  • Aligning IT & Business Goals
  • Maximizing IT Investments

Previous Next

Security

July 2008

July 31, 2008

Identity-Theft Monitoring Services Offer False Sense of Security

If you think identity-theft monitoring services provide you with more protection, you're wrong, according to an online guide by the Privacy Rights Clearinghouse.   Monitoring services can dete... More >

July 30, 2008

IBM Report Says Security Researchers Helping Cybercrooks

A report from IBM's X-Force team says vulnerability researchers are helping attackers exploit code at record speeds, reports vnunet.com . According to " X-Force 2008 Mid-Year Trend Statistics ," 9... More >

DNS Attack Writer Gets Pwnd

The creator of the Metasploit hacking toolkit has just learned a thing or two about karma. H.D. Moore's company BreakingPoint was a victim of a cache poisoning attack on a DNS server on AT&T's ... More >

July 29, 2008

Trojan Travels Via Bogus Airline Invoice E-Mails

McAfee has confirmed a malware campaign using bogus e-mails claiming to be airline ticket invoices to distribute a Trojan horse. Delta and Northwest are among the airlines being targeted.   T... More >

Oregon Man Going to Prison for ID Theft, Software Piracy

Jeremiah Joseph Mondello , of Eugene, Ore., has been sentenced to four years in prison for using computer viruses to sell more than $1 million worth of pirated software, according to The Washington ... More >

July 28, 2008

DA's Office Put Passwords in Court Record

Just as the city of San Francisco has access back to its FiberWAN network, along comes another whoopsie.   Network administrator Terry Childs gave up codes to the system in a jail house visit ... More >

July 25, 2008

DNS Flaw Being 'Weaponized in the Field'

Security guru Dan Kaminsky is warning that the Domain Name System flaw he discovered is now being "weaponized out in the field."   BBC News reports there is anecdotal evidence that hackers hav... More >

Fugitive Spammer Dead in Apparent Murder-Suicide

Yesterday we reported that "spam king" Edward "Eddie" Davidson had escaped a minimum-security federal prison in Florence, Colo., and was still at large.   The bodies of Davidson, his wife and ... More >

July 24, 2008

Researchers Revamp Blacklisting Algorithm

Researchers at the SANS Institute and SRI International have completely revamped the way network blacklists are formulated and distributed , reports ZDNet .   Highly Predictive Blacklisting u... More >

Illinois Back-up Tapes Lost

Back-up tapes containing the Social Security, bank account and driver's license numbers of the residents of the Village of Tinley Park in Illinois have been lost, reports the SouthtownStar .  ... More >

July 23, 2008

E-Banking Sites Plagued by Design Flaws, Study Finds

A University of Michigan study shows that 75 percent of 214 banking Web sites surveyed in 2006 had at least one design flaw that could threaten security, reports Network World .   A key probl... More >

Naive SMBs Think Size Matters in Security Attacks

"Does Size Matter?" a new report by McAfee, shows that SMBs are naive about security threats.   While nearly a third of companies said they had been attacked, 52 percent believed they were too... More >

July 22, 2008

PhishMe Finds Gullible Employees

PhishMe is offering a service that lets IT administrators identify the most gullible message recipients.   The service, set to be released Tuesday, lets IT departments " emulate real phishing a... More >

July 18, 2008

Trojan Uses MP3s to Worm Its Way into PCs

MP3 users beware. A new worm poses a danger to Windows users who get their music from peer-to-peer networks, reports InfoWorld .   Infected music files contain a Trojan horse that allows hacke... More >

July 17, 2008

Gartner Says Cloud-Based Security Services to Triple

Everything is moving to the cloud , and that includes security applications, according to a report by Gartner. Gartner predicts that cloud-based security services will triple by 2013 .   What's... More >

July 16, 2008

Bogus UPS E-mail Contains Trojan

Panda Security says be wary of e-mails purporting to come from UPS with a subject line that says something like "UPS packet N3621583925." These bogus e-mails actually contain the Agent.JEN Trojan, ... More >

Symantec Improves Norton Performance

Symantec's Norton Internet Security 2009 and Norton AntiVirus 2009 boasts several performance improvements, reports Computerworld .   What can you expect: The new versions won't eat up as muc... More >

July 15, 2008

Four Minutes to be Compromised?

Four minutes. That's how long an unpatched Windows PC can be on the Internet before it will be attacked and compromised, according to SANS Institute's Internet Storm Center . That's without a networ... More >

Cyber Gangs Not Unlike the Mafia

A recent report by Web security vendor Finjan supports what IT Business Edge blogger Carl Weinschenk reported in April: The hacker community is evolving into well-structured organizations.   A... More >

Response to DNS Flaw Backlash: Get Busy

Paul Vixie, president of Internet Systems Consortium, had some blunt words in response to the backlash and skepticism that greeted researcher Dan Kaminsky's announcement of a flaw in the Domain Name ... More >

July 14, 2008

Hackers Trying New Tactic to Break into Linux Servers

Hackers are trying to break into Linux systems by flying below the radar of monitoring software or intrusion detection systems.   According to The Register , attackers are trying to go unnotic... More >

Researcher to Demonstrate Proof-of-Concept Attack on Intel Chips

Security researcher and author Kris Kaspersky says he will demonstrate a proof-of-concept attack against Intel's chips at the upcoming Hack In The Box Security Conference.   InfoWorld reports... More >

Radicati Names Websense, Secure Computing 'Top Players'

The Radicati Group has named Websense the top player in the corporate Web security market, according to this press release .   Websense got top marks in product functionality and market share. ... More >

Dealing with the DNS Flaw

News.com blogger Robert Vamosi praises security researcher Dan Kaminsky for the way he handled a flaw in the Domain Name System that could affect the entire Internet.       Kaminsky quietly worked... More >

July 10, 2008

ZoneAlarm Fix on the Way

Check Point has promised a fix later Thursday for the problem that locked ZoneAlarm firewall users out of the Internet, reports vnunet.com .   The problems began after ZoneAlarm users install... More >

July 9, 2008

Breach Exposes Personal Data of Supreme Court Justice, Others

Personal information on Supreme Court Justice Stephen G. Breyer and about 2,000 other people became exposed when an employee of Wagner Resource Group used file-sharing software on a company computer... More >

Vulnerability Found in Word

If you just got the latest Patch Tuesday updates installed, that doesn't mean all is well.   Microsoft is warning of a vulnerability in Word 2002 that could allow remote execution of code, r... More >

DNS Bug Triggers Largest Synchronized Update

Security researcher Dan Kaminsky has uncovered a major flaw in how the Internet works that could make millions of people vulnerable if hackers figure out a way to exploit it.   Guardian Unlimi... More >

July 8, 2008

Microsoft Issues Snapshot Bug Warning

Microsoft is warning users about a bug in the Snapshot Viewer ActiveX control that attackers are exploiting. Victims are lured to a malicious Web page that runs the attack code within Internet Expl... More >

July 7, 2008

Next Patch Tuesday 'Important,' Not 'Critical'

None of the four patches in Microsoft's next Patch Tuesday are rated as "critical," reports vnunet.com . This could be the first time since March 2007 that there were no "critical" updates.  ... More >

July 2, 2008

Study: Web Surfers Risk Peril

A recent study shows that most people surf the Web without a fully patched browser , reports PCWorld . According to research by The Swiss Federal Institute of Technology, Google and IBM, 59.1 perce... More >

July 1, 2008

McAfee Experiment Shows Spam Still a Problem

Spam is still a big problem , as IT Business Edge blogger Carl Weinschenk pointed out in his blog last week. McAfee couldn't agree more after just finishing a monthlong experiment known as the S.P... More >