Newsletters Welcome, Guest Log In | Register
News:

Security

Subscribe

Sign up now and get the best business technology insights direct to your inbox.

  • Daily Edge
  • Business Tools & Templates
  • Aligning IT & Business Goals
  • Maximizing IT Investments
  • IT Careers

Previous Next

Security

July 2010

July 30, 2010

Microsoft Offers Free Security Mitigation Tool

In an effort to address the shift by attackers from targeting operating systems to targeting applications Microsoft is offering the Enhanced Mitigation Experience Toolkit . According to V3.co.uk , ... More >

Security Firm Discovers Android Apps Collecting Personal Info

U.S.-based security firm Lookout warns that more than 80 Google Android wallpaper apps were gathering mobile phone numbers and other personal details. According to Telegraph.co.uk , many of the app... More >

July 29, 2010

Researcher: SAP Vulnerable to Backdoor Attacks

During a talk at the Black Hat security conference, researcher Mariano Nunez Di Croce warned that SAP software is at risk from backdoor attacks   Part of the problem, notes eCRM Guide , is tha... More >

Adobe to Join Microsoft's MAPP Program

In an effort to better share details on its bug patching efforts, Adobe will start using the Microsoft Active Protections Program by year's end. This will be the first time that another company's p... More >

100 Million Facebook Users' Data 'Leaked'

Security consultant Ron Bowes has published the personal details of 100 million Facebook users . According to BBC News, the list is being shared as a downloadable file and contains the URL of ever... More >

Researcher Demos ATM Hack at Black Hat

At this year's Black Hat conference, Barnaby Jack, director of security testing at IOActive, demonstrated that it's possible to hack into an ATM.   CNET News reports that Jack unearthed a numb... More >

Apple Patches Safari Autofill Bug

According to eWEEK , Apple has patched a bug in Safari just a day before a researcher's presentation about the issue.   Among the 15 fixes is one for the Safari Autofill flaw, which WhiteHa... More >

July 28, 2010

Verizon Business: Organized Crime Behind Most Security Breaches

A report carried out by Verizon Business in conjunction with the U.S. Secret Service found that organized crime was behind 85 percent of all data stolen in external attacks on companies, according ... More >

Researchers Uncover WPA2 Vulnerability

According to PCWorld.com , wireless security researchers have discovered a vulnerability in the WPA2 security protocol .   An AirTight researcher who uncovered the flaw has dubbed it "Hole 196... More >

Slovenian Police Arrest Suspected Mariposa Mastermind

According to The Register , Slovenian police have arrested a 23-year-old hacker suspected of creating the code behind the infamous Mariposa botnet. The suspect, known only by his hacker handle of ... More >

July 27, 2010

Google Addresses Critical Vulnerabilities in Chrome 5

Google has fixed five vulnerabilities in Chrome 5. According to Softpedia , three are pegged as high, one medium and one low risk.   As The H Security reports, three security researchers, Jo... More >

Mozilla Patches Its Patch

Just days after releasing 14 security updates to address bugs in Firefox, Mozilla has released a patch to fix one of its patches. InformationWeek reports that Security Advisory 2010-48, which wa... More >

Citibank Confirms Security Flaw in iPhone App

According to CNET News , Citibank has addressed a flaw in its mobile banking iPhone app that was accidentally storing customer account data on the mobile devices. In a statement, the company said:... More >

July 26, 2010

Yahoo to Invest in Hackers?

Because Open Hack Days have proven to be important sources of new ideas and technologies for Yahoo, the company is considering investing in hackers with good ideas and technologies, reports Comput... More >

Maryland State Employee Fired After Security Breach

According to Gazette.net , a Maryland Department of Human Resources employee has been fired for posting about 3,000 names, Social Security numbers and other personal information on his personal we... More >

July 23, 2010

Microsoft Pitches 'Coordinated Disclosure' of Bugs

Following Google's request that the security community redefine "responsible disclosure," Microsoft has pitched its own proposal for how software makers react to bugs reported by researchers in an ... More >

Cisco: Beware of Flaw in Content Delivery System

V3.co.uk reports that Cisco is warning that a flaw in its Content Delivery System could allow an attacker to remotely access a targeted system.   According to the security advisory : The Cis... More >

Safari Autofill Can Expose Personal Info

According to Computerworld , Safari's AutoFill feature , which is supposed to make it easier to fill out forms, could by abused by hackers to harvest personal information.   Techtree.com repo... More >

DHS Unveils Intrusion-Detection Software

InformationWeek reports that the Open Information Security Foundation, a Department of Homeland Security-funded foundation, has released source code for the Suricata Engine , an open source softwar... More >

July 22, 2010

Researchers Release 'Kraken' GSM-Cracking Software

Computerworld reports that a group of researchers claim to have developed software that cracks the A5/1 encryption algorithm used by some GSM networks. Dubbed Kraken, the software can break A5/1 e... More >

Microsoft Launches Automated Fix for .LNK Flaw

Microsoft is attempting to temporarily plug a critical .LNK vulnerability with an automated "Fix It" tool , reports ChannelWeb .   As we reported on our Network Security Edge site, a securit... More >

July 21, 2010

Dell: Beware of Malware on PowerEdge Servers

Dell has issued a warning that "a small number" of its PowerEdge R410 server motherboards may contain malware , according to Computerworld . Apparently, the "malware code has been detected on the e... More >

Microsoft Offers Microsoft Security Essentials Beta

According to PCMag.com , the first beta of the next version of Microsoft Security Essentials is now available.   This next version will be more tightly integrated with Internet Explorer. Not ... More >

Adobe Adds Sandbox Technology to Reader

In an effort to provide more protection against attacks, Adobe is adding a "Protected Mode" to the next release of Adobe Reader for Windows, according to CNET News . As the article explains: The s... More >

Mozilla Releases Security Updates for Firefox, Thunderbird

CNET News reports the Mozilla has released security fixes for Firefox and Thunderbird that also include updates for the legacy versions of both.   Firefox 3.6.7 for Windows, Mac, and Linux ad... More >

July 20, 2010

Siemens: Don't Change Passwords

Despite the discovery of a worm that allows criminals to break into Siemens' industrial automation systems using a default password, Siemens is telling customers not to change their passwords , ac... More >

Zscaler Delivers Cloud-Based E-mail Security Application

Zscaler's latest cloud-based e-mail security application scans and secures messages sent from any device before it enters or leaves a customer's e-mail system.   According to eSecurity Planet ... More >

Mass. Hospital Missing 800,000 Files

Information on nearly 800,000 people associated with South Shore Hospital in Weymouth, Mass., may be at risk after computer files went missing when they were shipped to a contractor to be destroyed,... More >

July 19, 2010

Malware Scanning Now Included in VeriSign SSL Program

VeriSign has expanded its SSL certification program to include malware scanning . According to V3.co.uk , administrators can now display a certification confirming that the site is free of malware ... More >

Siemens Warns of Industrial Virus

Beware of a new and highly sophisticated virus that goes after computers used to manage large-scale industrial control systems used by manufacturing and utility companies, warns Siemens.   Acco... More >

Colorado: Beware of Major Corporate ID Theft Scheme

Colorado's Secretary of State and other officials are telling the state's 800,000 or so registered businesses to beware of scammers who have recently been fabricating business identities to make fr... More >

Mozilla Raises Bug Bounty

According to PCWorld.com , Mozilla has increased the bounty it will pay security researchers for information on security flaws in its products from $500 to $3,000.   The reward program applie... More >

July 15, 2010

Connecticut AG Wants Teachers Board to Explain Data Loss

Connecticut Attorney General Richard Blumenthal wants the state Teachers' Retirement Board to explain why it waited six months to inform its members of a lost flash drive containing retirement data... More >

Sophos: U.S. Leader in Spam

A Sophos study found that 15.2 percent of all global spam messages came from the United States during the second quarter of 2010, compared to 13.1 percent in the first quarter. Behind the United St... More >

M86: Cyber Crime Gaining Complexity

According to InformationWeek , a new study conducted by M86 Security found that while traditional online attacks are becoming less effective, attackers are combining these attacks in unexpected wa... More >

Zeus Exploiting Verified by Visa, Mastercard SecureCode

Trusteer is warning that the Zeus botnet has started harvesting bank data by posing as a credit card verification scheme. V3.co.uk reports that the malware has been injecting phishing pages into s... More >

Mozilla Pulls Password-Stealing Firefox Add-On

According to Computerworld , Mozilla has pulled a password-stealing add-on that slipped into Firefox's extension gallery more than a month ago. In a blog post , Mozilla says: It was discovered th... More >

July 14, 2010

Google Enhances Mobile Device Security

EnterpriseMobileToday reports that Google is offering enhanced mobile device security options for iPhone, Nokia Series E and Windows Mobile devices.   Included in the options is the ability t... More >

Microsoft Warns of Rise in Windows XP Attacks

Microsoft says it has seen a surge in attacks leveraging one of the critical bugs fixed in July's monthly security patches , and is urging users to update their software.   According to Comput... More >

July 13, 2010

Secunia: Apple Ranks First in Security Bug Count

AfterDawn reports that according to a report from Secunia, Apple takes first place in the list of companies whose software for PCs has the most security vulnerabilities in the first half of 2010. ... More >

Oracle to Release 59 Critical Patches

According to Computerworld , Oracle plans to release 59 patches to fix security flaws affecting hundreds of products.   Twenty-one of the vulnerabilities affect Solaris products; seven of the... More >

July 12, 2010

Maine Legislature, University Victims of Hackers

According to SPAMfighter , the Maine Legislature and the University of Maine are the victims of hackers , although the two incidents do not seem to be related.   University police say that hac... More >

Symantec: Beware of Trojan.Sasfis

Symantec is warning of a recurrence of the Trojan.Sasfis malware .   According to V3.co.uk , the Trojan attempts to trick users into opening an attachment that appears to be an official lookin... More >

July 9, 2010

Four Bulletins for July's Patch Tuesday

According to CNET News , Microsoft's July Patch Tuesday will include four security bulletins patching a total of five vulnerabilities. A critical patch for Windows XP and one for the Access databa... More >

July 8, 2010

DoS Attacks Strike South Korea, U.S. Again

A repeat of a wave of outages that struck U.S. and South Korean government websites last July caused no major interference, reports boston.com .   Police say hundreds of computers were designe... More >

Google Address Nine Vulnerabilities in Chrome Update

According to V3.co.uk , Google has issued a security update that addresses nine vulnerabilities in the Mac, Linux and Windows versions of its Chrome browser. Successful exploits of the flaws could... More >

July 7, 2010

McAfee Inks Deals to Secure USB Drives

Looking to prevent malware from spreading via USB devices, McAfee has inked deals with a number of secure USB manufacturers to ship McAfee security software on their devices.   InformationWeek... More >

NetQin: New Viruses Targeting Symbian Smartphones

NetQin is warning of new viruses targeting Symbian smartphones .   According to InformationWeek , the viruses -- Dubbed ShadowSrv.A, FC.Downsis.A, BIT.N and MapPlug.A -- come hidden in games d... More >

Angry Researchers Publish Windows Zero-Day Bug

In retaliation for Microsoft's treatment of a colleague, an anonymous group of security researchers has published information about an unpatched Windows bug , according to Computerworld .   A ... More >

Apple Bans Fraudulent iTunes Developer

According to BBC News , Apple has banned Vietnamese developer Thuat Nguyen from its app store for fraudulently pushing his titles to its best-seller list.   The Register reports that Nguyen ... More >

July 6, 2010

Former Bank Employee Pleads Guilty to Data Theft

Adeniyi Adeyemi, a former IT staffer with the Bank of New York Mellon, pleaded guilty to stealing sensitive information on 2,000 bank employees and then using that data to bilk charities out of $1 ... More >

Connecticut to Investigate WellPoint Data Breach

The Wall Street Journal reports that Connecticut is looking into a security breach that may have exposed information on some 470,000 people who applied for health insurance from WellPoint.   ... More >

American Airlines Parent Admits Worker Data Compromised

According to Reuters , data on 79,000 retirees, former employees, and current employees could be at risk after a hard drive containing personal information was stolen from the AMR Corp.'s pension ... More >

July 2, 2010

Microsoft Reveals Increase in Windows XP Zero-Day Attacks

According to V3.co.uk , Microsoft has admitted that more than 10,000 Windows XP PCs have been struck by attacks exploiting a publicized vulnerability in the Windows Help and Support Center.  ... More >

Malware Targets Defense Contractors

Researchers at Symantec Hosted Services have discovered a sophisticated malware operation targeting defense contractors .   According to V3.co.uk , the scheme involved compromising the site of... More >

July 1, 2010

Adobe Issues Out-of-Cycle Updates for Acrobat, Reader

Here we go again: On Tuesday, Adobe patched 17 critical vulnerabilities in Reader and Acrobat in an out of cycle update, according to Computerworld . Adobe says 16 of the 17 patches could lead to ... More >

WellPoint Blames Security Glitch for Exposing Applicant Data

Reuters reports that some 470,000 people who applied for health insurance from WellPoint may have had their personal information exposed due to a website security glitch. The company is blaming th... More >

Tape and Archive Storage

Oracle’s proven StorageTek tape and library solutions help you manage complexity, control costs, and deliver on service level agreements.

Enterprise Manager

Tools, best practices and expert advice on managing your enterprise IT infrastructure, databases, and Web service components.

Application Infrastructure

Learn more about this middleware layer that pools and dynamically provisions infrastruction application delivery resources to lower costs and improve efficiency.

Data Center Management

Indispensable technologies and best practices to maintain your organization's most valuable asset.