Newsletters Welcome, Guest Log In | Register
News:

Security

Subscribe

Sign up now and get the best business technology insights direct to your inbox.

  • Daily Edge
  • Business Tools & Templates
  • Aligning IT & Business Goals
  • Maximizing IT Investments
  • IT Careers

Previous Next

Security

August 2010

August 31, 2010

Google Questions IBM's Bug Patching Report

Google disputes a recent report that claimed it failed to patch a third of the serious bugs in its software, says Computerworld .   IBM's annual X-Force 2010 Mid-Year Trend and Risk Report or... More >

Scammers Trying to Cash in on TweetDeck Update

A new scam is trying to take advantage of a required update of the TweetDeck Twitter software, according to Computerworld .   TweetDeck is warning users about Twitter messages telling people to... More >

Cisco Patches IOS Bug

Cisco has patched a bug in its IOS (Internetwork Operating System) router software that caused a brief Internet blackout last week, possibly affecting about 1 percent of the Internet.   As Com... More >

August 30, 2010

Kaspersky Labs: Beware of New Breed of IM Worm

Kaspersky Labs is telling users to beware of a new family of computer worms spreading on a variety of instant messaging clients . According to V3.co.uk , researchers have discovered four variants o... More >

uTorrent Updates Application to Protect Against DLL Vulnerability

The developers of the uTorrent file-sharing application have released a new version of its application that addresses problem that could allow an attacker to load malicious code onto a user's compu... More >

Deutsche Post to Offer Bounties for Bugs

According to Computerworld , Deutsche Post will award bounties for bugs researchers find in its E-Postbrief secure message service.   In what is being called the Deutsche Post Security Cup, r... More >

August 27, 2010

UConn Breach Exposes More Than 10,000 Applicants

The University of Connecticut's West Hartford campus was the victim of a security breach after a laptop containing names, Social Security numbers and other personal information was stolen from a sto... More >

AVG: Users in Russia, Turkey at Greatest Risk of Attack

According to a report by security firm AVG, users in Turkey and Russia face the greatest risk of online attacks. V3.co.uk says the report found that one in 10 of its Turkish users had been the vi... More >

PandaLabs: 25 Percent of Worms Spread Via USB Devices

On the heels of a confirmation that a USB drive was used to infect military computers in 2008 , PandaLabs reports that 25 percent of all new worms are designed to propagate through portable storag... More >

Alureon Rootkit Now Targets 64-Bit Windows

A new version of malware that originally crippled 32-bit Windows machines last February now targets machines running 64-bit editions of Windows.   According to Computerworld , the updated roo... More >

August 26, 2010

Free iPad Scam Hits Facebook, Twitter

Computerworld says a free iPad scam is making the rounds on Facebook and Twitter.   Twitter has warned users: If you've received a message promising you a new iPad, not only is there no iPad,... More >

IBM: Web Application Vulnerabilities Top Threat

According to Computer Business Review , IBM's annual X-Force 2010 Mid-Year Trend and Risk Report found that new Web application vulnerabilities made up more than half of all public disclosures, re... More >

August 25, 2010

Zeus Lays Trap with Dead Celeb Tales

Symantec reports that hackers are using bogus stories of celebrities' deaths to build out the Zeus botnet.   Computerworld reports that the spam contains messages about celebrities dying in a... More >

Adobe Patches 20 Bugs in Shockwave Player

Adobe Systems has fixed 20 security vulnerabilities in its Shockwave Player that could allow attackers to run their own code on an affected computer, according to Computerworld .   Versions up... More >

Visa Announces Best Practices for Securing Payment Applications

Vendors of payment applications and the systems integrators and resellers responsible for implementing and managing them can now look to a set of best practices from Visa to address continuing vuln... More >

Apple Fixes 13 Mac OS X Bugs

PCMag.com reports that Apple has released a security update that addresses 13 vulnerabilities, many with critical implications. As PCWorld.com notes, Security Update 2010-005 contains fixes for ... More >

August 24, 2010

Survey: Cloud to Open up Hacking Opportunities

According to a press release , a whopping 96 percent of 100 of the elite IT professionals attending this year's DEF CON 2010 Hacker conference believe the cloud would open up more hacking opportunit... More >

iTunes Users Victims of PayPal Phishing Scam

Numerous iTunes users have reported being victims of a scam that charges them thousands of dollars through PayPal, reports AppleInsider . John Paczkowski of Digital Daily says the scam is actua... More >

Microsoft Releases Tool to Address Windows Apps Bug

Following reports that a large number of different Windows applications have a critical flaw that attackers can use to hijack PCs and infect them with malware, Microsoft has released a tool it sa... More >

August 23, 2010

Google Imposes Developer Fee to Improve Extension Security

To improve security of its developer ecosystem, Google has decided to impose a $5 fee for developers of Chrome Extension, Themes, and (soon) Apps who want to host their content in Google's gallerie... More >

Google Patches 11 Chrome Vulnerabilities

Google's newest version of Chrome patched 11 vulnerabilities . According to CNET News , three are pegged as critical, seven high risk, and one medium. One of the critical fixes is a workaround for ... More >

August 19, 2010

BitDefender: Beware of New DIY Facebook Malware Kit

BitDefender is telling Facebook users to be on the lookout for a new do-it-yourself malware kit called Facebook Hacker that allows attackers to easily snag login and password credentials, as well a... More >

Researcher Warns of Critical Flaw in 40 Windows Apps

According to HD Moore, the chief security officer of Rapid7 and creator of the Metasploit penetration testing toolkit, 40 different Windows applications have a critical flaw that attackers can use ... More >

August 18, 2010

NSS Labs: Most AV Suites Fail to Detect Exploits

Recent tests by NSS Labs showed that a majority of security software suites still do not detect attacks on PCs even after a particular style of attack has been known for some time.   According... More >

Adobe's Zero-Day Reader Patch Coming Thursday

Two weeks ago , Adobe promised to release an emergency fix during the week of Aug. 16 for a critical hole in Reader and Acrobat. Users can expect the patch on Thursday, Aug. 19 , according to Compu... More >

Security Vendors Warn About Android Gaming App

Both Symantec and F-Secure are cautioning users about a free gaming application for Google's Android OS called Tap Snake that can be used to track and monitor a user's location .   Computerworl... More >

August 17, 2010

Symantec Warns of New Trojan Spam Campaign

Symantec says there is a new spam campaign making the rounds that features features a credential-stealing Trojan hidden in attachments with innocuous subject titles, such as "First Birthday Invitat... More >

Millions of Websites Hacked by Malicious Widget?

A security expert with Armorize Technologies believes that as many as 5 million Web sites hosted by Network Solutions have been pushing malware.   Wayne Huang, co-founder and CTO of Armorize, ... More >

August 16, 2010

Hackers Access Red Cross Website

Zscaler says hackers were able to inject a malicious JavaScript file, "hxxp://obsurewax.ru/Kbps.js" into several pages on the Red Cross of Serbia's homepage . Even though most anti-virus software no... More >

Sophos: Beware of Facebook 'Dislike' Button Scam

Sophos says beware of new Facebook "dislike" button scam . The link reads: "I just got the Dislike button, so now I can dislike all of your dumb posts lol!!"   Falling for the scam will give th... More >

Research: GPU Acceleration Could Increase Password Cracking

According to research from the Georgia Tech Research Institute, the increasing use of graphics processors in normal computational tasks could bring new security risks.   V3.co.uk reports that g... More >

August 13, 2010

Symantec: Spam 92 Percent of All E-Mail

InformationWeek reports that as of July 2010, spam made up 92 percent of of all e-mail messages , up from 89 percent a year ago, according to a new study by Symantec.   Symantec also uncovered... More >

Over a Third of Security Suites Fail Virus Bulletin Test on Windows Vista

Virus Bullentin recently tested 54 security suites on Windows Vista Business Edition SP2 and found that 19 were inadequate for VB100 status, reports V3.co.uk .   John Hawes, Virus Bulletin's ... More >

Heartland Linked to New Data Breach

Computerworld reports that Heartland Payment Systems is downplaying reports out of Austin, Texas, that links the payment processor to a data breach at a local restaurant chain. Heartland CIO Steve... More >

August 12, 2010

McAfee: Malware Sets Record in First Half of Year

According to McAfee's Q2 2010 Threats Report , the first half of 2010 marked "the most active half-year ever for total malware production." eSecurity Planet reports that McAfee found that more th... More >

Russian Man Arrested for Selling Stolen Credit Card Numbers Online

According to Computerworld , French authorities have arrested a Russian man accused of selling stolen credit card numbers online for nearly a decade.   The U.S. Department of Justice says Vla... More >

Apple Releases Patch to Fix PDF Vulnerability

eWEEK reports that Apple has patched two vulnerabilities used to jailbreak the iPhone. The bugs existed in in Apple iOS and could have been used by attackers to take over the iPhone, iPod Touch an... More >

August 11, 2010

MWR Labs Warns of Vulnerabilities in Palm Pre, Android

Research by MWR Labs has found major vulnerabilities in the Palm Pre and Android smartphones.   SC Magazine reports that a flaw in the Palm Pre could allow conversations to be intercepted, wh... More >

Researchers Report Another Microsoft Zero-Day Vulnerability

Just a week after Microsoft issued an emergency patch for a Windows shortcut hole, Secunia and some other researchers have reported another zero-day vulnerability in the kernel of all supported v... More >

HostExploit: Demand Media Home to Badware

According to a report by HostExploit, a volunteer badware-tracking group, Demand Media's Internet service provider business is hosting an unusually large number of malicious Web pages. Computerwor... More >

Adobe Patches Six Critical Flash Bugs

Adobe has patched six critical vulnerabilities in Flash Player , reports Computerworld . The update comes just as Microsoft patched a record-tying 34 vulnerabilities in Windows, Internet Explorer... More >

Kaspersky Discovers First Google Android SMS Trojan

Kaspersky Lab says it has uncovered the first malicious software program to target Google's Android mobile operating system.   According to Computerworld , the application, dubbed "Trojan-SMS... More >

August 10, 2010

Sophos Warns of Another Rogue Facebook App

Sophos is warning about another rogue Facebook application that could give hackers access to compromised accounts, according to V3.co.uk .   Sophos senior technology consultant Graham Cluley ... More >

Windows XP SP2 Hack Allows Patching

Computerworld reports that Windows XP Service Pack 2 users can fool the operating system into installing security updates , says Sean Sullivan, a security adviser with F-Secure.   Sullivan exp... More >

August 9, 2010

Firefox 4 to Offer New Security Features

Mozilla is set to release the third beta of Firefox 4 this week, and it is expected to contain a number of new security features .   According to eSecurity Planet , one of the new security fea... More >

Researchers: 'Secure Browsing' Not So Secure

Researchers at Stanford University are warning that claims about "secure browsing" may be overstated , reports V3.co.uk .   According to the report, the top four browsers -- Internet Explorer,... More >

SF Network Admin Sentenced to Four Years

Terry Childs , the City of San Francisco network administrator who refused to hand over administrative passwords to the city's network, has been sentenced to four years in state prison , according t... More >

August 6, 2010

Laptop Theft at Philly Hospital Affects Thousands

Approximately 21,000 patients of Thomas Jefferson University Hospital in Philadelphia have been put at risk following the theft of a personal laptop.   According to eSecurity Planet , the lapt... More >

Hackers Target Regeneron's Ceridian Payroll System

Criminals may have found a new target in payroll processing. Computerworld reports that sometime around June 18, criminals hacked into a desktop computer belonging to Regeneron Pharmaceuticals in... More >

Trend Micro: Zeus Used Stolen Digital Certificate

Trend Micro says it has discovered a version of the Zeus malware that used a digital certificate from a competing security company's product in an attempt to look legitimate.   According to Com... More >

Apple to Fix iPhone Security Flaw

Apple says a fix for a security flaw that lets attackers install unwanted applications onto iPhones will be available in an update to the device’s software, reports BusinessWeek .   This week... More >

Microsoft Sets Records with August Patch Tuesday

According to Computerworld , August's Patch Tuesday will see a record 14 security updates addressing a record-tying 34 vulnerabilities in Windows, Internet Explorer, Office and Silverlight.  ... More >

August 5, 2010

Symantec Warns of Vulnerability in New iPhone

Symantec is warning of a new security flaw in Apple's newest iPhone . According to a Bloomberg News report on boston.com, attackers can exploit the bug to install unwanted applications and obtain ... More >

UK Police Nab Six for Banking Fraud

Computerworld reports that London's Metropolitan Police have arrested six people in connection with a phishing operation that netted at least $569,000 and compromised more than 20,000 bank account... More >

August 4, 2010

Survey: Most Think Cyber Espionage Acceptable

According to the Sophos 2010 Security Threat Report, most people think it's OK for their country to spy on other nations by hacking or installing malware . eSecurity Planet reports that 23 percent ... More >

TippingPoint Announces Zero Day Initiative

TippingPoint, a subsidiary of HP, has announced the Zero Day Initiative , under which it will release data on software flaws six months after notifying the vendor.   V3.co.uk says the vulnerab... More >

Google Patches Audio CAPTCHA Flaw

According to Computerworld , Google has patched a flaw in its Audio CAPTCHA software that could have allowed scammers a way to automatically set up fake accounts with the company's services.  ... More >

August 3, 2010

Survey: Web 2.0 Poses Significant Security Risk

According to a survey by the Ponemon Institute and sponsored by Check Point Software Technologies, 80 percent of security administrators think that Web 2.0 applications pose a significant security r... More >

JailbreakMe Exploits iPhone Vulnerability

Following a ruling by the Library of Congress that it is lawful to hack or "jailbreak" an iPhone, JailbreakMe.com was released this week. However, ChannelWeb reports that the offering introduces ... More >

August 2, 2010

AVG Discovers Mumba Botnet

Researchers at AVG have uncovered a botnet that makes use of at least four variants of Zeus to harvest personal information, according to an IDG News Service article on The New York Times.   ... More >

Hacker Spoofs Cell Phone Tower for Only $1,500

With just $1,500 and a laptop, security researcher Chris Paget can create a cell phone base station that tricks cell phones into routing their outbound calls through his device, allowing him to int... More >

Microsoft to Issue Emergency Patch for Windows Shortcut Hole

Today, according to InformationWeek , Microsoft plans to release an "out-of-band" emergency update to address a critical Windows vulnerability that can be used to automatically run malware simpl... More >

Database Management

Data management tips and techniques that insure ease of access, comprehensive security and absolute privacy for your invaluable company information.

Service-Oriented Architecture (SOA)

Service-oriented architecture is the catalyst that allows today's companies to respond to business demands faster and more effectively than ever.

Enterprise Manager

Tools, best practices and expert advice on managing your enterprise IT infrastructure, databases, and Web service components.

Tape and Archive Storage

Oracle’s proven StorageTek tape and library solutions help you manage complexity, control costs, and deliver on service level agreements.