Newsletters Welcome, Guest Log In | Register
News:

Security

Subscribe

Sign up now and get the best business technology insights direct to your inbox.

  • Daily Edge
  • CTO Edge Update
  • Business Tools & Templates
  • Aligning IT & Business Goals
  • Maximizing IT Investments

Previous Next

Security

August 2009

August 31, 2009

Social Networkers Failing to Protect Themselves, Says AVG

PCWorld reports that a survey by security firm AVG shows that only 27 percent of social networkers are protecting themselves against online threats. Some interesting results from the survey includ... More >

Trend Micro: Users Ignoring Smartphone Dangers

According to research by Trend Micro, 44 percent of smartphone users are ignoring the potential dangers of malware and other targeted threats, reports V3.co.uk . While a third say they are less co... More >

Hackers Take Down Apache Site

Hackers were able to take down the Apache Software Foundation 's Web site last weekend after compromising the SSH key for one of its servers, reports V3.co.uk . The server was down for several hours... More >

Hacker Gonzalez to Plead Guilty

The Miami man accused of being the mastermind behind the largest identity fraud case in U.S. history will plead guilty to conspiracy , wire fraud and aggravated identity theft charges, reports The ... More >

August 28, 2009

FBI Investigating Mystery Laptops Sent to U.S. Governors

The FBI is looking into who is sending HP laptops to state governors . According to Computerworld , West Virginia, Wyoming and Vermont are among the recipients of four of the orders that were deliv... More >

Cisco Warns of Flaws in Unified Communications Manager

Cisco is warning about about two vulnerabilities in its Unified Communications Manager software, reports V3.co.uk . The bugs could allow an attacker to launch a DoS attack to bring down voice servi... More >

Symantec Discovers Skype Trojan

Symantec says it has found source code for a Trojan that goes after Skype users . According to V3.co.uk , the spyware, known as Trojan.Peskyspy, records a voice call and then saves the data as an M... More >

August 27, 2009

Twitter Cross-Site Scripting Bug Still There

Software developer James Slater says Twitter has yet to fix a cross-site scripting bug he disclosed yesterday, reports Computerworld . The vulnerability allows criminals to hijack accounts or redi... More >

Scientists Break WPA Encryption in One Minute

A pair of Japanese computer scientists claim to have developed a way to break the WPA encryption system used in wireless routers in about a minute, reports Computerworld . The attack, which only w... More >

New Security Issues Cropping up as Snow Leopard Approaches

With Apple's Mac OS X 10.6, also known as Snow Leopard, set to launch later this week , some security issues are starting to pop up.   According to InformationWeek , Trend Micro is warning tha... More >

August 26, 2009

IBM: Trojan Attacks up, Phishing Down

According to a report from IBM's X-Force, Trojans are behind more than half of all new malware attacks, reports Computer Business Review . In the first half of 2009, Trojans comprised 55 percent o... More >

Symantec Releases Fix for Buggy Update

According to InfoWorld , Symantec has released a software fix for "less than 1 percent" of users who reported problems with a buggy update of the company's Norton AntiVirus software.   The fl... More >

IT Leaders Confused About Internal Threat, Says Research

According to research commissioned by RSA Security, most IT decision-makers are unsure of the sources of internal risk and struggle to quantify the impact in financial and business terms, reports ... More >

Botnets More Resilient, Reports MessageLabs

V3.co.uk reports that according to MessageLabs' latest Intelligence report, botnets have become more resilient , springing back to life much faster than before. Compared to the weeks it took for bo... More >

New SQL Attack Compromises over 50,000 Sites

ScanSafe warns that over 50,000 legitimate sites have been hit by a new SQL injection attack , reports V3.co.uk .   The attack inserts a malicious iframe on the sites. Users that visit the sit... More >

August 25, 2009

Cisco AP Vulnerability Could Open Back Door

According to ITWorld , some of Cisco's wireless access points have a flaw that could allow an attacker to redirect traffic outside the enterprise or potentially gain access to an entire corporate ... More >

Personal Info Leaked from Social Networks

According to a report co-authored by researcher Balachander Krishnamurthy and professor Craig E. Wills, online s ocial networking sites leak personal information through a combination of HTTP heade... More >

Judge Dismisses Three of Four Charges Against SF Network Admin

Terry Childs, a former network administrator in San Francisco who was arrested last year for allegedly sabotaging a crucial city network , may have caught a lucky break when a judge dismissed three ... More >

Eastern European Gangs Targeting Banks, Warns Group

The Financial Services Information Sharing and Analysis Center is warning its members of a sharp rise in the number of attacks on the banking sector. According to the report, most of the attacks are... More >

August 24, 2009

E-Mail Client Spam Emerges

The fact that a Symantec report shows spam now comprises 89 percent of all e-mail messages shows that spammers are busy coming up with new avenues of attack.   The latest spam attack, accordin... More >

Trend Micro Shrinks Anti-Virus Footprint

Trend Micro hopes that by  by reducing the footprint of anti-virus software, its Internet Security 2010 will allow systems to run faster and with fewer interruptions.   According to V3.co.uk ... More >

August 21, 2009

Researcher Discloses New Facebook Attack

internetnews.com reports that security researcher Ronen Zilberman has disclosed a new Cross-Site Request Forgery attack that steals a Facebook user's information by using an HTML image tag. The at... More >

Hackers Use Opera

Computerworld reports that according to Purewire, hackers are more likely to use Opera . Why? It's because they know that other hackers don't target the browser, explains Paul Royal, a principal se... More >

Cisco Warns Routers, Switches Open to Attack

Cisco is warning of a vulnerability in several of its routers and switches.   According to V3.co.uk , the flaw could allow an attacker to cause a DoS crash on vulnerable hardware , which inclu... More >

August 20, 2009

Australian Police Screw up Major Cyber Crime Bust

Security experts are criticizing Australian police for a major cyber crime bust that seems to have backfired .   According to V3.co.uk , authorities were attempting to infiltrate the r00t-y0u ... More >

ID Theft Could Jump 600 Percent, Says PandaLabs

Researchers from PandaLabs warn that identity thefts from malware could skyrocket to 600 percent this year, reports V3.co.uk . Nearly 71 percent of the 35,000 new malware samples the company finds... More >

August 19, 2009

Radisson Suffers Security Breach

An unspecified number of Radisson hotels and customers have been affected by a security breach, reports the Seattle Post-Intelligencer .   Credit card numbers of guests may have been accessed... More >

Windows WINS Attacks Real, Coming from China

The Internet Storm Center believes that attacks on the WINS service vulnerability in Windows Server are originating in China, but are not yet widespread, reports NetworkWorld .   The vulnerab... More >

Adobe Issues Critical Security Updates

According to V3.co.uk , Adobe has issued patches to fix multiple vulnerabilities in its ColdFusion web development and JRun Java administration tools. The flaws could allow remote code execution o... More >

Motorola Product Secures Wireless Networks

In an effort to help enterprises secure their Wi-Fi networks, Motorola's AirDefense Wireless Vulnerability Assessment product allows IT departments to test security by simulating attacks from the h... More >

Report Shows Hackers Targeting Social Networks

According to The San Francisco Chronicle , a report from Breach Security shows that attacks on social networks rose 30 percent in the first half of 2009 compared to a year ago. VentureBeat , whic... More >

August 18, 2009

Kaspersky Issues False Alarm for HSBC Trojan

PC Advisor reports that some users of HSBC's personal Internet banking site were given a false warning by Kaspersky Internet Security software that they had been infected by the HTLM-Agent-CE Troj... More >

RIM Smart Card Reader Boosts Multi-Factor Authentication

Research in Motion has introduced a new version of its BlackBerry Smart Card Reader in an effort to improve security and make multi-factor authentication easier for organizations, reports V3.co.uk... More >

No Way to Delete iPhone OS 3.0 E-Mails

According to AppleInsider , Apple is aware of a flaw in its iPhone OS 3.0 that prevents an e-mail from being completely deleted. Even after the Mail trash can is emptied, e-mail messages are still... More >

Miami Man Charged in Largest ID Theft in History

According to the Justice Department, Albert Gonzalez of Miami and two unnamed Russian conspirators are the masterminds behind data thefts that gave them access to more than 130 million credit and d... More >

August 17, 2009

Test Shows IE8 Tops in Blocking Malware Sites

A report from NSS Labs shows that Microsoft's Internet Explorer 8 was able to catch 81 percent of attack-code-infected sites , an improvement of 17 percent since March, reports Computerworld . &nbs... More >

Hackers Use Twitter to Manage Botnets

According to security researcher Jose Nazario, hackers are using Twitter to keep their botnets up and running , reports Computerworld . Nazario discovers a Twitter account, called "Upd4t3," that wa... More >

Russia Linked to Georgian Cyber Attacks

According to a reports from the U.S. Cyber Consequences Unit, an independent nonprofit research institute that assesses the impact of cyber attacks, Russia was indeed behind the DoS attacks against ... More >

Yahoo Seeks to Stop Spam with Paid E-Mail

As a way to thwart the rising tide of spam, Yahoo is proposing a paid e-mail service.   According to V3.co.uk , Yahoo's new service, which is known as CentMail , allows users to buy packs of 5... More >

Rogue Facebook App Steals Credentials

Trend Micro is warning about a rogue Facebook app that is luring users to a site hosted on the fucabook.com domain that is set up to harvest their credentials, reports V3.co.uk .   The app, wh... More >

August 14, 2009

Sophos: Social Networks Need to Refocus on Security

Sophos' newest Security Threat Report says that online criminals have gone where the people are: social networks. As more employees share various types of personal information on these sites, IT te... More >

August 13, 2009

Only Half of All Malware Active More Than One Day

By design, many pieces of malware that are released have a very short life span, in order to avoid detection. PandaLabs researchers found that around half of all of that malware is not active or targ... More >

August 11, 2009

Survey Finds Recession Hurting Data Security

More than 34 percent of U.S. companies that responded to a Proofpoint survey on e-mail security and data loss prevention reported that they had had a leak of sensitive data in the last year, accord... More >

August 10, 2009

Fallout from Twitter DoS Attacks Continues

Twitter is still suffering from the denial-of-service attacks that began last week, reports V3.co.uk . Twitter co-founder Biz Stone says the attacks appear to be geo-political in nature, but stopp... More >

August 7, 2009

89 Percent of All E-Mail Spam, Says Symantec

FOX Business reports that spam made up 89 percent of all e-mail messages in July, according to Symantec. The report also shows that there was a 52 percent rise in phishing attacks in July from June... More >

Sun Issues Seven Java Patches

Sun Micrososytems is issuing a significant security update for Java SE 6 , reports internetnews.com . The vulnerabilities could allow an attacker to execute arbitrary code or bypass authentication ... More >

Nine Fixes in August Microsoft Patch Tuesday

According to V3.co.uk , users can expect nine security fixes in this month's patch Tuesday, scheduled for August 11.   Five of the fixes are rated as "critical," with three of those five affe... More >

Koobface Hits Twitter Again

It's been a bad couple of days for Twitter. Not only is the micro-blogging site battling a DoS attack , but now V3.co.uk reports that a variant of the Koobface worm is using Twitter to spread. T... More >

Politics Behind Twitter Attack?

Facebook and Google also were hit by the same DoS attack that shut down Twitter for a period of time yesterday, reports Bloomberg . The attacks had little effect on Google. Facebook says full acc... More >

August 6, 2009

Twitter Hit by DoS Attack

Twitter was down for hours this morning due to what is being referred to as an “ongoing” denial-of-service attack , reports Wired . Access to client applications also was affected. The outage was f... More >

Stolen Laptop Puts National Guard Members at Risk

The personal data of about 131,000 National Guardsmen has been compromised following the theft of a laptop from an Army Guard contractor on July 27, reports ArmyTimes . The laptop contained names,... More >

Symantec Partners with Lifelock for Bundled Security Product

Not only did Symantec participate in the recent $40 million fund raise by identity theft protection company Lifelock, but the two companies have formed a partnership, according to VentureBeat . The ... More >

18 Security Fixes in Mac OS X 10.5.8

Apple's newest version of Mac OS X patches 18 vulnerabilities , including six that could allow an attacker to hijack machines.   According to Computerworld , Mac OS X 10.5.8 fixes a Portable N... More >

August 5, 2009

Twitter Begins Filtering Bad URLs

Twitter has quietly started filtering URLs in an effort to weed out links to known malware sites, reports The Wall Street Journal . Now, if you post a link to a fraudulent site, the following messa... More >

Apps Built with Sun, Apache, Python Libraries at Risk from XML Flaw

Codenomicon is warning that applications built with XML libraries from Sun, Apache Software Foundation, Python Software Foundation and the GNOME Project could be at risk for denial-of-service attack... More >

Automated Software Updates Pose Risk to Public Wi-Fi Users

Radware security researchers Itzik Kotler and Tomer Bitton recently demonstrated at the DEFCON security conference how even cautious computer users are vulnerable on public Wi-Fi networks due to a f... More >

Three Men Sentenced for Tech Leaks to China

The U.S. has sentenced three Chinese men for trying to smuggle sensitive and advanced U.S. technology to China, reports PCWorld .   According to Computerworld , William Chi-Wai Tsu was sente... More >

Top Security Vendors Fail to Protect Vista

According to tests by Virus Bulletin, 12 out of the top 35 security vendors fail to protect Windows Vista , reports V3.co.uk .   The stringent test, which pits products against the publicly av... More >

Latvian ISP Cut Off from Internet

Real Host, an ISP based in Latvia, has been taken offline after a researcher discovered that the ISP controlled command-and-control servers for infected botnet PCs, reports Computerworld . Real Hos... More >

Mozilla e-Store Closed After Security Breach

According to Computerworld , Mozilla closed its online store after it found out that the firm it hired to run the backend operations of the e-store, GatewayCDI, had suffered a security breach. The... More >

August 4, 2009

Trend Micro Adds Free Tools to Threat Resource Site

Trend Micro has added new free tools to its online threat resource center.   According to V3.co.uk , TrendWatch now boasts VM Protection, a free tool that helps companies or service providers ... More >

Mozilla Patches Three Bugs in Firefox

Mozilla has updated Firefox  3.5 and Firefox 3.0 to address three security vulnerabilities , reports Computerworld .   Firefox 3.0.13 fixes two bugs that were disclosed last week by Dan Kamin... More >

August 3, 2009

New Jersey Man Charged with Stealing Domain Name

According to boston.com , Daniel Goncalves is accused of hacking into an online account of one of the owners of the P2P.com domain nam e and changing ownership to himself. He then allegedly resold... More >

Apple Releases Patch for iPhone SMS Flaw

PGMag.com reports that Apple has confirmed it has released a patch for the iPhone SMS vulnerability discovered by researcher Charlie Miller . The flaw could allow an attacker to remotely install ... More >

Malicious ATMs in Las Vegas

Malfunctioning ATMs in Las Vegas could be infected with malware.   According to PCWorld , the Secret Service is looking into ATMs at the Rio All-Suite Hotel and Casino that are debiting peopl... More >

Compliance and Risk Mitigation

Compliance and risk mitigation solutions that strengthen data security, automate compliance measures, and reduce TCO for a more viable business future.

Application Performance Management

Application delivery and performance tools for Web applications to insure high availability and productivity.

Business Intelligence

Best-practice tools, strategies and technologies for determining and managing the data you need to make better business decisions.

Data Center Management

Indispensable technologies and best practices to maintain your organization's most valuable asset.