Monday, July 13, 2009

Around The Horn vol.1,136

ImageShack hacked by cyber survivalists.

By Rik Ferguson on web

Earlier today, the popular image hosting site ImageShack appears to have been compromised by a group calling itself Anti-Sec. The exploit was also posted to the Full Disclosure mailing list, eliciting some interesting responses. This is the same group that attacked the website of astalavista.com in June of this year.   The effect of the attack was [...]

Confidence in the Cloud

Cloud storage is pay as you go, with no capital outlay and no need to buy extra equipment for future storage needs. But will IT managers trust their data to the cloud?

Researcher Says IE Bug Could Spread Quickly

A security analyst warns that a critical IE flaw that Microsoft has confirmed -- but has yet to patch -- is a prime candidate for another Conficker-scale attack

Five of the biggest IPv6-based threats facing CIOs

The IETF has identified many security threats related to IPv6, the long-anticipated upgrade to the Internet's main communications protocol.

Invisible IPv6 traffic poses serious network threat

IPv6 — the next-generation Internet protocol — isn't keeping too many U.S. CIOs and network managers up worrying at night. But perhaps it should.

CA Apologizes for False Positive , (Sun, Jul 12th)

One of our readers, Melvin, was kind enough to send us a heads up on an issue with CA DAT files.&nbs ...(more)...

Must-Read Verizon Post Demolishes More Myths

By Richard Bejtlich

I'm a big fan of the 2009 Verizon Data Breach Report. Today I read Compromised Assets & Data: But our company doesn’t handle credit cards... by Verizon's Bryan Sartin. It's an excellent post. I'd like to post several excerpts, emphasizing and expanding on certain points.

Report: N. Korean army suspected over cyberattacks (AP)

In technology

AP - South Korea has obtained intelligence that North Korea last month ordered a military institute of computer hackers — known as Lab 110 — to "destroy" South Korean communications networks, news reports said Saturday.

So-called cyberattack was overblown

Posted by InfoSec News on Jul 13

http://minnesota.publicradio.org/display/web/2009/07/10/schneier/

By Bruce Schneier
Minnesota Public Radio
July 13, 2009

To hear the media tell it, the United States suffered a major
cyberattack last week. Stories were everywhere. "Cyber Blitz hits U.S.,
Korea" was the headline...

South Koreas government had advance warning of the DDOS attack in the U.S.

Posted by InfoSec News on Jul 13

http://english.hani.co.kr/arti/english_edition/e_national/365242.html

The Hankyoreh
July 11, 2009

It has been revealed that the South Korean government knew in advance
that the distributed denial of service (DDOS) attacks that paralyzed web
sites for major institutions in South Korea and...

Prosecutor: Cloud computing is securitys frontier

Posted by InfoSec News on Jul 13

http://news.cnet.com/8301-1009_3-10284361-83.html

By Elinor Mills
Security
CNet News
July 10, 2009

FORT BAKER, Calif.-- As data moves to the cloud, attackers and thieves
will follow, a federal prosecutor said on Friday.

The days of tracking down software counterfeiters in other countries...

Cyber Attack Code Starts Killing Infected PCs

Posted by InfoSec News on Jul 13

http://www.informationweek.com/news/showArticle.jhtml?articleID=218401559

By Thomas Claburn
InformationWeek
July 10, 2009

The botnet-driven cyber attack on government, financial, and media sites
in the U.S and South Korea includes a newly discovered danger: The
malicious code responsible...

How to use electrical outlets and cheap lasers to steal data

Posted by InfoSec News on Jul 13

http://www.networkworld.com/news/2009/070909-electrical-data-theft.html

By Tim Greene
Network World
07/09/2009

If attackers intent on data theft can tap into an electrical socket near
a computer or if they can draw a bead on the machine with a laser, they
can steal whatever is being...

DHS earns kudos for tightening security on intelligence systems

Posted by InfoSec News on Jul 13

http://fcw.com/articles/2009/07/10/web-dhs-ig-intelligence-system-management.aspx

By Ben Bain
FCW.com
July 10, 2009

The Homeland Security Department has significantly minimized the
security risks with its intelligence systems, according to a report from
the department's inspector general....

Fourth State Department worker pleads guilty to passport snooping

Posted by InfoSec News on Jul 13

http://www.computerworld.com/s/article/9135413/Fourth_State_Department_worker_pleads_guilty_to_passport_snooping

By Grant Gross
IDG News Service
July 10, 2009

A fourth person who has worked for the U.S. Department of State has
pleaded guilty to a charge connected to illegally accessing...

Most Users Clueless about Cybersecurity, FBI Says

Law enforcement officials urge basic education in online security issues for anyone using the Internet.

Online Shoppers Still Don't Get Security, Research Shows

Security concerns aren't deterring online shoppers, but they still don't know how to protect themselves, study reveals.

Cyberattacks Show Need to Protect Federal Sites

Analysis: The recend DDoS attacks highlight the need to reduce government Internet access points, say security experts.

F-Secure grabs online storage firm in cloud security push
Steek and you shall find

Net security firm F-Secure has bought privately-held online storage and data management firm Steek in a deal designed to improve its sales to telcos.…

ImageShack hacked in oddball security protest
Anti-Sec in erratic war declaration on full disclosure

A hacking group has broken into one of the biggest image hosting websites on the net before uploading its manifesto.…

No comments:

Post a Comment

My Blog List