<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-7583874337261306147</id><updated>2011-11-27T19:15:47.844-05:00</updated><title type='text'>Aurora Report</title><subtitle type='html'>The problem is what you don't know is what you don't know and what you heard me say is not what I said.</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><link rel='next' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default?start-index=101&amp;max-results=100'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>184</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-9107779860431434309</id><published>2010-03-13T21:47:00.000-05:00</published><updated>2010-03-13T21:47:54.048-05:00</updated><title type='text'>Phone Blogging</title><summary type='text'>I am watching the Redwings and the Sabers skate to a 2-2 stalemate. So I have been multi-tasking, pondering opportunities gained and those lost and decided to catch up on some of my blog reading. Reading other peoples blogs always makes me want to post to my own blog. 

This post is going to be the non-linear human thought that is the result of todays events and the experiences of the last week. </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/9107779860431434309/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2010/03/phone-blogging.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/9107779860431434309'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/9107779860431434309'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2010/03/phone-blogging.html' title='Phone Blogging'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-9090783994814257569</id><published>2010-02-25T04:50:00.001-05:00</published><updated>2010-02-25T04:50:42.855-05:00</updated><title type='text'>Event Data Sources, Haystacks and Needles</title><summary type='text'>What are your uses cases, the chicken or the egg?  I have been asked on a recurring theme what my use cases are for the security related products I am deploying.  The more I have put concerted thought to this question the more I realize that it is very much a chicken and egg proposition.  In security we are effectively trying to protect the confidentiality, integrity and availability of our </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/9090783994814257569/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2010/02/event-data-sources-haystacks-and.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/9090783994814257569'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/9090783994814257569'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2010/02/event-data-sources-haystacks-and.html' title='Event Data Sources, Haystacks and Needles'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-8245760689067258197</id><published>2010-02-15T21:27:00.001-05:00</published><updated>2010-02-15T21:27:39.077-05:00</updated><title type='text'>Drive By Download Antidote=InPrivateFiltering</title><summary type='text'>Virus Removal Is Not Fun  I just spent the better part of a Sunday doing damage control. I got the call early, my eyes were open but just to imperceptible slits. It turned out that one of my machines caused my router to balk at its traffic and my customer was freaked by the message on her browser. Did we really have a problem, I hoped not, but I was relying on Microsoft Security Essentials to </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/8245760689067258197/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2010/02/drive-by-download-antidoteinprivatefilt.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8245760689067258197'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8245760689067258197'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2010/02/drive-by-download-antidoteinprivatefilt.html' title='Drive By Download Antidote=InPrivateFiltering'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://lh6.ggpht.com/_j3uvRj64M_Q/S3oCjZrSChI/AAAAAAAAACs/mwp9vZk-hZs/s72-c/image_thumb%5B5%5D.png?imgmax=800' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-5692801003711033825</id><published>2010-02-09T21:54:00.000-05:00</published><updated>2010-02-09T21:54:59.346-05:00</updated><title type='text'>A Change In Tactics</title><summary type='text'>Aurora Report Mission
The original mission of Aurora Report was to monitor daily security news and report on the aspects of that news that was relevant to my current work situation.  Since the begining of this effort I have attempted to proliferate the global security events that are/were occuring to as many colleagues as would listen.  At times I felt quite the boy calling wolf, and yet in </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/5692801003711033825/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2010/02/change-in-tactics.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5692801003711033825'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5692801003711033825'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2010/02/change-in-tactics.html' title='A Change In Tactics'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-6500330211436992621</id><published>2010-02-03T16:22:00.001-05:00</published><updated>2010-02-09T09:11:57.853-05:00</updated><title type='text'>Around The Horn vol.2,5</title><summary type='text'>Zero Day 

Tracking the hackers 

Code execution holes in iPhone OS, iPod Touch 

By Ryan Naraine on iPhone 
The most serious flaw could allow remote code execution if an iPhone/iPod Touch user opens audio and image files. 
Report: 48% of 22 million scanned computers infected with malware 

By Dancho Danchev on Viruses and Worms 
The recently released APWG report shows that 48% of the 22 million </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/6500330211436992621/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2010/02/around-horn-vol25.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6500330211436992621'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6500330211436992621'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2010/02/around-horn-vol25.html' title='Around The Horn vol.2,5'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-6432182844242003479</id><published>2010-01-29T10:39:00.000-05:00</published><updated>2010-01-29T10:41:00.524-05:00</updated><title type='text'>Around The Horn vol.2,4</title><summary type='text'>  Zero Day   Tracking the hackers  Bogus IQ test with destructive payload in the wild  By Dancho Danchev on Windows Vista   Researchers from ESET and BitDefender have intercepted two destructive malware variants (Win32/Zimuse.A, Win32/Zimuse.B/zipsetup.exe), posing as an IQ test, and currently spreading in the wild.     Yahoo! News: Security News   Security News  Scammers Hop on iPad Bandwagon (</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/6432182844242003479/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2010/01/around-horn-vol24.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6432182844242003479'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6432182844242003479'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2010/01/around-horn-vol24.html' title='Around The Horn vol.2,4'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-4676259758635053839</id><published>2010-01-27T09:08:00.000-05:00</published><updated>2010-01-27T09:09:36.529-05:00</updated><title type='text'>Around The Horn vol.2,3</title><summary type='text'>  Zero Day   Tracking the hackers   Tor Project suffers hack attack  By Ryan Naraine on Zero-day attacks   Hackers broke into two of Tor Project servers and used the CPU and bandwidth to launch additional attacks.   RealPlayer haunted by 11 critical vulnerabilities  By Ryan Naraine on Viruses and Worms   RealNetworks released an advisory to warn of the vulnerabilities, which could be exploited </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/4676259758635053839/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2010/01/around-horn-vol23.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4676259758635053839'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4676259758635053839'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2010/01/around-horn-vol23.html' title='Around The Horn vol.2,3'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-3909005571281716604</id><published>2010-01-24T11:08:00.001-05:00</published><updated>2010-01-24T11:08:50.771-05:00</updated><title type='text'>Around The Horn vol.2,2</title><summary type='text'>  Zero Day   Tracking the hackers    Microsoft confirms 17-year-old Windows vulnerability  By Ryan Naraine on Windows Vista   Microsoft warns that a malicious hacker could exploit this vulnerability to run arbitrary code in kernel mode.     Following the Google attack malware trail  By Ryan Naraine on People's Republic of China   A researcher discovers that several components of the malware were </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/3909005571281716604/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2010/01/around-horn-vol22.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3909005571281716604'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3909005571281716604'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2010/01/around-horn-vol22.html' title='Around The Horn vol.2,2'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_Z-tqVTd9fPI/S1KHYGoUtnI/AAAAAAAABsw/fTl0YajolQk/s72-c/Chinese_draak.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-2743844270559333253</id><published>2010-01-15T07:28:00.001-05:00</published><updated>2010-01-15T07:28:06.241-05:00</updated><title type='text'>Around The Horn vol.2,1</title><summary type='text'>  Zero Day   Tracking the hackers    Google (finally) enables default "https" access for GMail  By Ryan Naraine on People's Republic of China   A day after confirming a major security breach by Chinese hackers looking for GMail account information, Google has turned on default "https:" access for its popular Web mail service.     Adobe plugs PDF zero-day flaw in latest security makeover  By Ryan </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/2743844270559333253/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2010/01/around-horn-vol21.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2743844270559333253'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2743844270559333253'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2010/01/around-horn-vol21.html' title='Around The Horn vol.2,1'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_Z-tqVTd9fPI/S00vSryaWuI/AAAAAAAABsA/9XOPLTGyTng/s72-c/mechagodzilla.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-6011549942150189588</id><published>2010-01-07T23:03:00.001-05:00</published><updated>2010-01-07T23:03:56.471-05:00</updated><title type='text'>Around The Horn vol.1,166</title><summary type='text'>  Zero Day   Tracking the hackers    Adobe working on new automatic (silent) updater  By Ryan Naraine on Responsible disclosure   The new update will give end users an automatic download in the background and will install the updates with no user interaction option.        Yahoo! News: Security News   Security News    Hacker Pleads Guilty in Massive Fraud Case (PC World)  In technology   PC World</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/6011549942150189588/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2010/01/around-horn-vol1166.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6011549942150189588'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6011549942150189588'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2010/01/around-horn-vol1166.html' title='Around The Horn vol.1,166'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_Z-tqVTd9fPI/SzvMEMeK8XI/AAAAAAAABr4/_0Aa3kDWZ4Y/s72-c/sourcefire_logo.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-3282187912735744298</id><published>2009-12-24T11:58:00.001-05:00</published><updated>2009-12-24T11:58:33.284-05:00</updated><title type='text'>Around The Horn vol.1,165</title><summary type='text'>Zero Day   Tracking the hackers    Adobe plugs gaping holes in Flash Media Server  By Ryan Naraine on Web Applications   The patch addresses issues that allow an attacker to run malicious code on the affected system.     Cisco patches critical WebEx security holes  By Ryan Naraine on Zero-day attacks   Cisco WebEx WRF Player vulnerable to six code execution vulnerabilities.     Adobe PDF attack </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/3282187912735744298/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/12/around-horn-vol1165.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3282187912735744298'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3282187912735744298'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/12/around-horn-vol1165.html' title='Around The Horn vol.1,165'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://bp0.blogger.com/_Z-tqVTd9fPI/R4_4pDL3mnI/AAAAAAAAARg/2BJsXzFO9s0/s72-c/blackhat.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-2558617300285303685</id><published>2009-12-24T11:00:00.001-05:00</published><updated>2009-12-24T11:00:18.404-05:00</updated><title type='text'>Around The Horn vol.1,164</title><summary type='text'>Zero Day   Tracking the hackers     FBI: Scareware distributors stole $150M  By Dancho Danchev on Web 2.0   According to an intelligence note posted by the Internet Crime Complaint Center (IC3), the FBI is aware of an estimated scareware loss to victims in excess of $150 million.     Mozilla patches critical, high-risk Firefox vulnerabilities  By Ryan Naraine on Vulnerability research   The most </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/2558617300285303685/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/12/around-horn-vol1164.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2558617300285303685'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2558617300285303685'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/12/around-horn-vol1164.html' title='Around The Horn vol.1,164'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_Z-tqVTd9fPI/SyRSCPIP9AI/AAAAAAAABrg/09jlXmsFMFs/s72-c/bsd-mag-2010.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-409515091198724452</id><published>2009-12-13T12:26:00.001-05:00</published><updated>2009-12-13T12:26:23.922-05:00</updated><title type='text'>Around The Horn vol.1,163</title><summary type='text'>Microsoft Security Bulletins   Microsoft Security Bulletins     MS09-074 - Critical: Vulnerability in Microsoft Office Project Could Allow Remote Code Execution (967183)  Bulletin Severity Rating:Critical - This security update resolves a privately reported vulnerability in Microsoft Office Project. The vulnerability could allow remote code execution if a user opens a specially crafted Project </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/409515091198724452/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/12/around-horn-vol1163.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/409515091198724452'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/409515091198724452'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/12/around-horn-vol1163.html' title='Around The Horn vol.1,163'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-5142183630828246130</id><published>2009-12-06T12:40:00.001-05:00</published><updated>2009-12-06T12:40:57.249-05:00</updated><title type='text'>Around The Horn vol.1,162</title><summary type='text'>Zero Day   Tracking the hackers    How many people fall victim to phishing attacks?  By Dancho Danchev on Spam and Phishing   According to a recently released report, based on a sample of 3 million users collected over a period of 3 months, approximately 45% of the time, users submitted their login information to the phishing site they visited.     SpyPhone app harvests personal data from stock </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/5142183630828246130/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/12/around-horn-vol1162.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5142183630828246130'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5142183630828246130'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/12/around-horn-vol1162.html' title='Around The Horn vol.1,162'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://lh3.ggpht.com/_Z-tqVTd9fPI/Rx9IRcGKlWI/AAAAAAAAANY/dyCTpsdZCkw/s72-c/freebsd.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-5324436326793204958</id><published>2009-11-24T10:35:00.001-05:00</published><updated>2009-11-24T10:35:32.015-05:00</updated><title type='text'>Around The Horn vol.1,161</title><summary type='text'>Zero Day   Tracking the hackers    Exploit published for critical IE 7 zero-day flaw  By Ryan Naraine on Responsible disclosure   The vulnerability could be used in malware attacks to take complete control of a Windows machine running IE 6 or IE 7.     Inside the Google Chrome OS security model  By Ryan Naraine on iPhone   Google will use a combination of system hardening, process isolation, </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/5324436326793204958/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/11/around-horn-vol1161.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5324436326793204958'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5324436326793204958'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/11/around-horn-vol1161.html' title='Around The Horn vol.1,161'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_Z-tqVTd9fPI/R0uEizQXiGI/AAAAAAAAAPU/E1t80qvcTBc/s72-c/controls_not_solution.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-2760979972713876925</id><published>2009-11-17T22:26:00.001-05:00</published><updated>2009-11-17T22:26:49.736-05:00</updated><title type='text'>Around The Horn vol.1,160</title><summary type='text'>Zero Day   Tracking the hackers    Thousands of web sites compromised, redirect to scareware  By Dancho Danchev on Web 2.0   Security researchers have detected a massive blackhat SEO (search engine optimization) campaign consisting of over 200,000 compromised web sites, all redirecting to fake security software, commonly refered to as scareware.    Microsoft confirms 'detailed' Windows 7 exploit</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/2760979972713876925/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/11/around-horn-vol1160.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2760979972713876925'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2760979972713876925'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/11/around-horn-vol1160.html' title='Around The Horn vol.1,160'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_Z-tqVTd9fPI/SRMHx4B2MQI/AAAAAAAAAwA/ylXA0L2546k/s72-c/Screenshot.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-8285628701895720720</id><published>2009-11-10T22:17:00.001-05:00</published><updated>2009-11-10T22:17:22.247-05:00</updated><title type='text'>Around The Horn vol.1,159</title><summary type='text'>    Microsoft Security Content: Comprehensive Edition   Microsoft Security Content: Comprehensive Edition  Microsoft Security Bulletin Summary for November 2009  Revision Note: Bulletin Summary published.Summary: This bulletin summary lists security bulletins released for November 2009.    MS09-068 - Important: Vulnerability in Microsoft Office Word Could Allow Remote Code Execution (976307) - </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/8285628701895720720/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/11/around-horn-vol1159.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8285628701895720720'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8285628701895720720'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/11/around-horn-vol1159.html' title='Around The Horn vol.1,159'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_Z-tqVTd9fPI/SvY5mEJldyI/AAAAAAAABns/g-_rh4RwnQU/s72-c/bejtlich_hayden_netwitness_conf.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-5128458656200488692</id><published>2009-11-05T14:48:00.001-05:00</published><updated>2009-11-05T14:48:44.560-05:00</updated><title type='text'>Around The Horn vol.1,158</title><summary type='text'>Ars Technica - Security  Dutch hacker holds jailbroken iPhones "hostage" for €5 (Updated)  By chris.foresman@arstechnica.com (Chris Foresman) on port scanning     Though jailbreaking an iPhone certainly opens up opportunities to add functionality that Apple doesn't approve of, it can also make an iPhone less secure. Several Dutch iPhone users found that out the hard way after a hacker attacked a </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/5128458656200488692/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/11/around-horn-vol1158.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5128458656200488692'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5128458656200488692'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/11/around-horn-vol1158.html' title='Around The Horn vol.1,158'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-1711221856197777197</id><published>2009-10-28T22:17:00.001-04:00</published><updated>2009-10-28T22:17:05.284-04:00</updated><title type='text'>Around The Horn vol.1,157</title><summary type='text'>Ars Technica - Security     Cyberattacks: Espionage now, sabotage soon  By jtimmer@arstechnica.com (John Timmer) on cyberattacks     In April 2009, the US National Academies of Science suggested that it was time for the US to get serious about cyberwarfare, setting official policy for its offensive use and spearheading the development of international norms governing its deployment. Less than </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/1711221856197777197/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/10/around-horn-vol1157.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1711221856197777197'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1711221856197777197'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/10/around-horn-vol1157.html' title='Around The Horn vol.1,157'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_Z-tqVTd9fPI/SAfqx5o5BwI/AAAAAAAAAas/59v5DL-ueFY/s72-c/cloud%5B1%5D.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-9150636850264190063</id><published>2009-10-22T08:13:00.001-04:00</published><updated>2009-10-22T08:13:21.138-04:00</updated><title type='text'>Around The Horn vol.1,156</title><summary type='text'>  Ars Technica - Security     4chan prank morphs into malware attack in Kanye death hoax  By jacqui@arstechnica.com (Jacqui Cheng) on scareware     Fake celebrity death reports are nothing new to the Internet—a quick search shows that in just the last few years, there have been rumors spread about the death of Britney Spears, Michael Jackson (uh, before he actually died), Justin Timberlake, Will </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/9150636850264190063/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/10/around-horn-vol1156.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/9150636850264190063'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/9150636850264190063'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/10/around-horn-vol1156.html' title='Around The Horn vol.1,156'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-4064839640168329871</id><published>2009-10-13T08:35:00.001-04:00</published><updated>2009-10-13T08:35:51.533-04:00</updated><title type='text'>Around The Horn vol.1,155</title><summary type='text'>  Ars Technica - Security     AntiVir, 10 others, fail Virus Bulletin's latest tests  By emil.protalinski@arstechnica.com (Emil Protalinski) on Virus Bulletin     Virus Bulletin (VB) conducted its latest test in August, posting the results this month. The security research company evaluated 26 anti-malware products (product submission deadline was August 22) for the 32-bit version of Windows </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/4064839640168329871/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/10/around-horn-vol1155.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4064839640168329871'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4064839640168329871'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/10/around-horn-vol1155.html' title='Around The Horn vol.1,155'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_Z-tqVTd9fPI/RqX55IufhII/AAAAAAAAABo/AsSmSRMfJVE/s72-c/i_want_visibility.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-8653823024508328992</id><published>2009-10-04T12:54:00.001-04:00</published><updated>2009-10-04T12:54:39.803-04:00</updated><title type='text'>Around The Horn vol.1,154</title><summary type='text'>  Symantec study: Norton beats MS Security Essentials  By emil.protalinski@arstechnica.com (Emil Protalinski) on Symantec     When we contacted a few antivirus makers earlier this week to find out their thoughts about the release of Microsoft Security Essentials (MSE), Redmond's free anti-malware solution, some were more prepared than others. Two were fine with Microsoft's foray into the free </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/8653823024508328992/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/10/around-horn-vol1154.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8653823024508328992'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8653823024508328992'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/10/around-horn-vol1154.html' title='Around The Horn vol.1,154'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://bp1.blogger.com/_Z-tqVTd9fPI/SJcMfc8fIXI/AAAAAAAAAiI/xn2nXkhrjbY/s72-c/traffic_lights.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-8302000314929078015</id><published>2009-09-25T09:21:00.001-04:00</published><updated>2009-09-25T09:21:27.328-04:00</updated><title type='text'>Around The Horn vol.1,153</title><summary type='text'>  Social networks make it easy for 3rd parties to identify you  By jacqui@arstechnica.com (Jacqui Cheng) on Twitter     By now, it's no secret that social networks (or really any websites) are sharing some of your usage data with advertising partners in order to provide more targeted ads. Most of the time, this data gets anonymized when it gets passed on so that there's no personally identifiable</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/8302000314929078015/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/09/around-horn-vol1153.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8302000314929078015'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8302000314929078015'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/09/around-horn-vol1153.html' title='Around The Horn vol.1,153'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-4187002735949253858</id><published>2009-09-20T15:39:00.001-04:00</published><updated>2009-09-20T15:39:09.005-04:00</updated><title type='text'>Around The Horn vol.1,152</title><summary type='text'>    CGISecurity - Website and Application Security News   All things related to website, database, SDL, and application security since 2000.    Microsoft publishes BinScope and MiniFuzz  By Robert A. on Tools   From the download pages. BinScope "BinScope is a Microsoft verification tool that analyzes binaries on a project-wide level to ensure that they have been built in compliance with Microsoft</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/4187002735949253858/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/09/around-horn-vol1152.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4187002735949253858'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4187002735949253858'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/09/around-horn-vol1152.html' title='Around The Horn vol.1,152'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-7624699393240105091</id><published>2009-09-18T10:49:00.001-04:00</published><updated>2009-09-18T10:49:02.687-04:00</updated><title type='text'>Around The Horn vol.1,151</title><summary type='text'>  Chrome adds defence for cross-site scripting attacks, already busted  By Robert A. on XSS   "The 4.0.207.0 release uses a reflective XSS filter that checks each script before it executes to check if the script appears in the request that generated the page. Should it find a match, the script will be blocked. According to Chromium developer Adam Barth, the developers plan to post an academic...</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/7624699393240105091/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/09/around-horn-vol1151.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7624699393240105091'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7624699393240105091'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/09/around-horn-vol1151.html' title='Around The Horn vol.1,151'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_Z-tqVTd9fPI/SMVOa_6spbI/AAAAAAAAAn0/omYjihSfwrk/s72-c/tagline.gif' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-810096688661076016</id><published>2009-09-11T23:10:00.001-04:00</published><updated>2009-09-11T23:10:40.339-04:00</updated><title type='text'>Around The Horn vol.1,150</title><summary type='text'>  10.6.1 released with Flash fix, Leopard gets security update  By chris.foresman@arstechnica.com (Chris Foresman) on update     Apple has released a slew of OS updates this afternoon. Snow Leopard and Snow Leopard server get a bump to 10.6.1, including the latest Flash Player installer which caused quite a row last week. Security update 2009-005 is also available for client and server version of</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/810096688661076016/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/09/around-horn-vol1150.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/810096688661076016'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/810096688661076016'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/09/around-horn-vol1150.html' title='Around The Horn vol.1,150'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_Z-tqVTd9fPI/SMVOa_6spbI/AAAAAAAAAn0/omYjihSfwrk/s72-c/tagline.gif' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-7842279832238300297</id><published>2009-09-10T19:45:00.001-04:00</published><updated>2009-09-10T19:45:03.903-04:00</updated><title type='text'>Around The Horn vol.1,149</title><summary type='text'>  Microsoft Security Advisory 975497 Released  By MSRCTEAM on Zero-Day Exploit   We’ve just released Microsoft released Security Advisory 975497 that provides information about a new, irresponsibly reported vulnerability in SMB 2.0. Our investigation has shown that Windows Vista, Windows Server 2008 and Windows 7 RC are affected by this vulnerability. Windows 7 RTM, Windows Server 2008 R2, </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/7842279832238300297/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/09/around-horn-vol1149.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7842279832238300297'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7842279832238300297'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/09/around-horn-vol1149.html' title='Around The Horn vol.1,149'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-81055167185124367</id><published>2009-09-09T23:00:00.001-04:00</published><updated>2009-09-09T23:00:17.545-04:00</updated><title type='text'>Around The Horn vol.1,148</title><summary type='text'>  MS09-049 - Critical: Vulnerability in Wireless LAN AutoConfig Service Could Allow Remote Code Execution (970710) - Version:1.0  Severity Rating: Critical - Revision Note: V1.0 (September 8, 2009): Bulletin published.Summary: This security update resolves a privately reported vulnerability in Wireless LAN AutoConfig Service. The vulnerability could allow remote code execution if a client or </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/81055167185124367/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/09/around-horn-vol1148.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/81055167185124367'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/81055167185124367'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/09/around-horn-vol1148.html' title='Around The Horn vol.1,148'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_Z-tqVTd9fPI/SqFi-D2u78I/AAAAAAAABkU/f_XYnwlJ4zk/s72-c/tdbz.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-204317694708694028</id><published>2009-09-09T22:50:00.001-04:00</published><updated>2009-09-09T22:50:38.390-04:00</updated><title type='text'>Around The Horn vol.1,147</title><summary type='text'>  Game server admins arrested for Chinese DNS attacks  By jacqui@arstechnica.com (Jacqui Cheng) on security     A denial of service attack that took down Internet access in parts of China earlier this year has been attributed to an over-enthusiastic game provider trying to take down rivals. Police in Foshan, a city in Guangdong, have announced that they arrested four individuals for the attack, </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/204317694708694028/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/09/around-horn-vol1147.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/204317694708694028'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/204317694708694028'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/09/around-horn-vol1147.html' title='Around The Horn vol.1,147'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://lh3.ggpht.com/_Z-tqVTd9fPI/Rx9IRcGKlWI/AAAAAAAAANY/dyCTpsdZCkw/s72-c/freebsd.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-7041372264080732456</id><published>2009-08-17T22:23:00.001-04:00</published><updated>2009-08-17T22:23:19.377-04:00</updated><title type='text'>Around The Horn vol.1,146</title><summary type='text'>    An Interview with Ron Gula from Tenable about the role of a vulnerability scanner in protecting sensitive information  Tenable's Ron Gula gives us an update on Nessus which now performs many of the industry standard web application tests such as SQL injection and Cross Site Scripting analysis. This, combined with Tenable's database, application and operating system configuration audits, can </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/7041372264080732456/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/08/around-horn-vol1146.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7041372264080732456'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7041372264080732456'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/08/around-horn-vol1146.html' title='Around The Horn vol.1,146'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-2476125775611795804</id><published>2009-08-07T20:00:00.001-04:00</published><updated>2009-08-07T20:00:30.160-04:00</updated><title type='text'>Around The Horn vol.1,145</title><summary type='text'>  Microsoft Patch Tuesday for August 2009: nine bulletins  By emil.protalinski@arstechnica.com (Emil Protalinski) on Patch Tuesday   According to the Microsoft Security Response Center, Microsoft will issue nine Security Bulletins on Tuesday, and it will host a webcast to address customer questions on the bulletin the following day (August 12 at 11:00am PST, if you're interested). Five of the </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/2476125775611795804/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/08/around-horn-vol1145.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2476125775611795804'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2476125775611795804'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/08/around-horn-vol1145.html' title='Around The Horn vol.1,145'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-2161581490908252456</id><published>2009-08-07T00:10:00.001-04:00</published><updated>2009-08-07T00:10:19.433-04:00</updated><title type='text'>Around The Horn vol.1,144</title><summary type='text'>  Exploit allows Apple keyboard ownage through firmware  By jeff.smykil@gmail.com (Jeff Smykil) on security   One of the Apple-related talks given at this year's Black Hat security conference dealt with keyboard firmware. Given by "KChen," the talk discussed "Reversing and Exploiting an Apple Firmware Update." While it may not seem like much on the surface, the truth quickly becomes apparent: if </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/2161581490908252456/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/08/around-horn-vol1144.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2161581490908252456'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2161581490908252456'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/08/around-horn-vol1144.html' title='Around The Horn vol.1,144'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-1691425393979669934</id><published>2009-08-01T12:15:00.001-04:00</published><updated>2009-08-01T12:15:26.442-04:00</updated><title type='text'>Around The Horn vol.1,143</title><summary type='text'>  iPhone/GSM phones vulnerable to SMS hacks, patch coming soon  By chris.foresman@arstechnica.com (Chris Foresman) on Windows Mobile   As promised, iPhone security expert Charlie Miller, along with colleague Collin Mulliner, demonstrated a vulnerability in the SMS messaging system which can ultimately lead to hacking of an iPhone. Miller and his cohorts identified similar flaws in the Android and</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/1691425393979669934/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/08/around-horn-vol1143.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1691425393979669934'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1691425393979669934'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/08/around-horn-vol1143.html' title='Around The Horn vol.1,143'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-5424742476443530925</id><published>2009-07-30T08:40:00.001-04:00</published><updated>2009-07-30T08:40:43.678-04:00</updated><title type='text'>Around The Horn vol.1,142</title><summary type='text'>  Congressman calls for P2P ban after sensitive data leaks  By ars@lasarletter.net (Matthew Lasar) on Thomas Sydnor   When he opened Wednesday's hearing on the hazards of inadvertent file sharing via peer-to-peer software, Representative Edolphus Towns (D-NY) said he was done with letting the industry solve the problem. By the end of the hearing Towns had lowered the boom, announcing that he </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/5424742476443530925/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1142.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5424742476443530925'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5424742476443530925'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1142.html' title='Around The Horn vol.1,142'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-8176272763041673299</id><published>2009-07-23T22:45:00.001-04:00</published><updated>2009-07-23T22:45:02.159-04:00</updated><title type='text'>Around The Horn vol.1,141</title><summary type='text'>  UAE cellular carrier rolls out spyware as a 3G "update"  By jtimmer@arstechnica.com (John Timmer) on Spyware   With the proliferation of ever more capable smart phones, many security experts are predicting that the cellular world will be the new malware frontier. Always-on Internet connections and direct SMS messages do provide a lot of opportunities for external parties to inject malware into </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/8176272763041673299/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1141.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8176272763041673299'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8176272763041673299'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1141.html' title='Around The Horn vol.1,141'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-3839581857113782908</id><published>2009-07-22T22:37:00.001-04:00</published><updated>2009-07-22T22:37:42.450-04:00</updated><title type='text'>Around The Horn vol.1,140</title><summary type='text'>  Mission possible: researchers make online text self-destruct  By jtimmer@arstechnica.com (John Timmer) on Vanish   As users flock to Web-based mail and social sites, more and more of their data is stored in cloud systems. As we've seen, some of that data can persist long after a user hits the delete button on it. Now, computer scientists have come up with a way to encrypt data so that it </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/3839581857113782908/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1140.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3839581857113782908'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3839581857113782908'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1140.html' title='Around The Horn vol.1,140'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-504702354172561696</id><published>2009-07-21T04:31:00.001-04:00</published><updated>2009-07-21T04:31:42.516-04:00</updated><title type='text'>Around The Horn vol.1,139</title><summary type='text'>  Firefox 3.5.1 released to patch TraceMonkey vulnerability  By segphault@arstechnica.com (Ryan Paul) on vulnerability   Mozilla has announced the availability of Firefox 3.5.1, the first minor point release in the 3.5 series. The purpose of this release was largely to patch a critical security vulnerability that was found in the browser's new TraceMonkey JavaScript engine.    Linux exploit gets </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/504702354172561696/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1139.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/504702354172561696'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/504702354172561696'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1139.html' title='Around The Horn vol.1,139'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-5048408252445141398</id><published>2009-07-19T23:01:00.001-04:00</published><updated>2009-07-19T23:01:25.515-04:00</updated><title type='text'>Around The Horn vol.1,138</title><summary type='text'>  Microsoft warns of flaw in OWC, Office 2007 unaffected  By emil.protalinski@arstechnica.com (Emil Protalinski) on Office Web Components   Microsoft has posted Security Advisory 9737472 to warn its users that it is responding to a privately reported flaw in Microsoft Office Web Components (OWC) that hackers are actively attempting to exploit. The vulnerability could allow for an attacker to gain</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/5048408252445141398/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1138.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5048408252445141398'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5048408252445141398'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1138.html' title='Around The Horn vol.1,138'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-3893712920669064957</id><published>2009-07-14T16:10:00.001-04:00</published><updated>2009-07-14T16:14:39.057-04:00</updated><title type='text'>Around The Horn vol.1,137</title><summary type='text'>  Ksplice: Update computers without rebooting  By segphault@arstechnica.com (Ryan Paul) on update   Every enterprise wants to harden its servers and increase uptime, but security updates often require reboots. Companies that want to please their customers need a better way to apply software updates. One potential solution for Linux servers is Ksplice, which can seamlessly apply live updates while</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/3893712920669064957/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1136_14.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3893712920669064957'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3893712920669064957'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1136_14.html' title='Around The Horn vol.1,137'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-2867740411935365854</id><published>2009-07-13T08:44:00.001-04:00</published><updated>2009-07-13T08:44:15.084-04:00</updated><title type='text'>Around The Horn vol.1,136</title><summary type='text'>  ImageShack hacked by cyber survivalists.  By Rik Ferguson on web   Earlier today, the popular image hosting site ImageShack appears to have been compromised by a group calling itself Anti-Sec. The exploit was also posted to the Full Disclosure mailing list, eliciting some interesting responses. This is the same group that attacked the website of astalavista.com in June of this year.   The </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/2867740411935365854/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1136.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2867740411935365854'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2867740411935365854'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1136.html' title='Around The Horn vol.1,136'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-4225013420499849162</id><published>2009-07-11T11:49:00.001-04:00</published><updated>2009-07-11T11:49:12.393-04:00</updated><title type='text'>Around The Horn vol.1,135</title><summary type='text'>  Microsoft Patch Tuesday for July 2009: six bulletins  By emil.protalinski@arstechnica.com (Emil Protalinski) on Patch Tuesday   According to the Microsoft Security Response Center, Microsoft will issue six Security Bulletins on Tuesday, and it will host a webcast to address customer questions on the bulletin the following day (July 15 at 11:00am PST, if you're interested). Three of the </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/4225013420499849162/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1135.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4225013420499849162'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4225013420499849162'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1135.html' title='Around The Horn vol.1,135'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-4207791647213761698</id><published>2009-07-09T09:02:00.001-04:00</published><updated>2009-07-09T09:02:25.413-04:00</updated><title type='text'>Around The Horn vol.1,134</title><summary type='text'>  Session Attacks and ASP.NET - Part 1  By Robert A. on Vulns   Sans has published part 1 of an article discussing Session Fixation attacks against .NET applications. "I’ve spent some time recently looking for updated information regarding session attacks as they apply to ASP.NET and am still not completely satisfied with how Microsoft has decided to implement session management in ASP.NET 2.0+ (</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/4207791647213761698/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1134.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4207791647213761698'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4207791647213761698'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1134.html' title='Around The Horn vol.1,134'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-7823312843684925256</id><published>2009-07-07T10:19:00.001-04:00</published><updated>2009-07-07T10:19:21.435-04:00</updated><title type='text'>Around The Horn vol.1,133</title><summary type='text'>  Microsoft warns of Video ActiveX flaw; Vista unaffected  By emil.protalinski@arstechnica.com (Emil Protalinski) on Internet Explorer   Microsoft has posted Security Advisory   972890 to warn its users that it is responding to a privately reported vulnerability in the Microsoft Video ActiveX Control that hackers are actively attempting to exploit. The vulnerability could allow for an attacker to</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/7823312843684925256/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1133.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7823312843684925256'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7823312843684925256'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1133.html' title='Around The Horn vol.1,133'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-3092238922877882819</id><published>2009-07-05T18:25:00.001-04:00</published><updated>2009-07-05T18:25:45.863-04:00</updated><title type='text'>Around The Horn vol.1,132</title><summary type='text'>  Apple patching critical SMS vulnerability in iPhone OS  By chris.foresman@arstechnica.com (Chris Foresman) on vulnerability   Security researcher Charlie Miller has revealed that Apple is working on a patch for a security flaw he identified in the iPhone's SMS implementation. The flaw can actually lead to arbitrary code execution, as he explained to Ars last month. Miller hasn't yet detailed </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/3092238922877882819/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1132.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3092238922877882819'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3092238922877882819'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1132.html' title='Around The Horn vol.1,132'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-5877254020947890176</id><published>2009-07-04T12:47:00.001-04:00</published><updated>2009-07-04T12:47:03.725-04:00</updated><title type='text'>Around The Horn vol.1,131</title><summary type='text'>  Apple fixing iPhone SMS security hole  By Elinor Mills   Apple expects to have a fix later this month for a vulnerability in the iPhone that could allow an attacker to gain control of the device remotely via SMS, a security researcher said on Thursday.  An attacker could exploit a weakness in the way iPhones handle SMS (short message service) ...    Waledac worm targeting July 4 spam offensive</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/5877254020947890176/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1131.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5877254020947890176'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5877254020947890176'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1131.html' title='Around The Horn vol.1,131'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-2471653497437231820</id><published>2009-07-01T22:34:00.001-04:00</published><updated>2009-07-01T22:34:27.921-04:00</updated><title type='text'>Around The Horn vol.1,130</title><summary type='text'>  Report: botnets sent over 80% of all June spam  By jacqui@arstechnica.com (Jacqui Cheng) on spam   There's a ton of spam on the Internet—we all are painfully aware of this already. However, what once required an actual person to send is increasingly being taken over by botnets. A new report (PDF) from Symantec's MessageLabs says that more than 80 percent of all spam sent today comes from </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/2471653497437231820/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1130.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2471653497437231820'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2471653497437231820'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/07/around-horn-vol1130.html' title='Around The Horn vol.1,130'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-7484378825461738148</id><published>2009-06-30T07:04:00.001-04:00</published><updated>2009-06-30T07:04:36.909-04:00</updated><title type='text'>Edition 1.3 Googled Security Events Corner</title><summary type='text'>Google News Search  Sorted by relevance  Sort by date Sort by date with duplicates included  LIGATT Security International Signs Letter of Intent to Purchase ...  MarketWatch - ‎20 hours ago‎  This purchase will help assist LIGATT Security in the distribution of computer security and cyber crime products and services. ...  PINK:LGTT - OTC:CYDM  Cyber security minister ridiculed over s'kiddie hire</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/7484378825461738148/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/edition-13-googled-security-events.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7484378825461738148'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7484378825461738148'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/edition-13-googled-security-events.html' title='Edition 1.3 Googled Security Events Corner'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-9026334261211656418</id><published>2009-06-30T06:58:00.001-04:00</published><updated>2009-06-30T06:58:49.495-04:00</updated><title type='text'>Around The Horn vol.1,129</title><summary type='text'>  'Iceman' pleads guilty in credit card theft case  By Elinor Mills  Max Ray Vision, aka "Iceman," pleaded guilty on Monday to two counts of wire fraud stemming from the theft of nearly 2 million credit card numbers and $86 million in alleged fraudulent purchases.  Vision faces up to 60 years ...    Michael Jackon Spam/Malware – RIP The King Of Pop  By Darknet on viruses   For people of my age </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/9026334261211656418/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1129.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/9026334261211656418'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/9026334261211656418'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1129.html' title='Around The Horn vol.1,129'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-2545880041898970759</id><published>2009-06-28T22:36:00.001-04:00</published><updated>2009-06-28T22:36:01.557-04:00</updated><title type='text'>Edition 1.2 Googled Security Events Corner</title><summary type='text'>Google News Search  US Cyber Command: 404 Error, Mission Not (Yet) Found  Wired News - Noah Shachtman - ‎Jun 26, 2009‎  (Another: what does a recent and classified National Intelligence Estimate on cyber security recommend.) But already, there's tough talk in and around the ...      Video: Britain launches cyber-terror strategy  ITN NEWS  Britain says facing growing cyber security threat Reuters</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/2545880041898970759/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/edition-12-googled-security-events.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2545880041898970759'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2545880041898970759'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/edition-12-googled-security-events.html' title='Edition 1.2 Googled Security Events Corner'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-6864529792486228469</id><published>2009-06-28T22:19:00.001-04:00</published><updated>2009-06-28T22:19:38.233-04:00</updated><title type='text'>Around The Horn vol.1,128</title><summary type='text'>  Internet scareware scammers settle with FTC for $100,000  By jacqui@arstechnica.com (Jacqui Cheng) on security   The Federal Trade Commission has settled a case involving two scareware scammers. The settlement will relieve the two defendants of having to fork over almost $1.9 million as part of a judgment made against them, but will still require them to forfeit $116,697 in assets to the FTC.</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/6864529792486228469/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1128.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6864529792486228469'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6864529792486228469'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1128.html' title='Around The Horn vol.1,128'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_Z-tqVTd9fPI/SkfRdvkdEJI/AAAAAAAABfU/rTdUn3-gb0A/s72-c/wsiconinst72.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-6785602008887371501</id><published>2009-06-24T18:39:00.001-04:00</published><updated>2009-06-24T18:39:05.371-04:00</updated><title type='text'>Edition 1.1 Googled Security Events Corner</title><summary type='text'>Google NEWS Search   Seattle Post Intelligencer  Military Command Is Created for Cyber Security  Wall Street Journal - Siobhan Gorman, Yochi Dreazen - ‎22 hours ago‎  Maren Leed, a cyber-security expert at the Center for Strategic and International Studies, said the military's closed computer networks could make it easier ...  Gates Creates Cyber-Defense Command Washington Post  Its Official! </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/6785602008887371501/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/edition-11-googled-security-events.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6785602008887371501'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6785602008887371501'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/edition-11-googled-security-events.html' title='Edition 1.1 Googled Security Events Corner'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-4579195825383288240</id><published>2009-06-24T18:29:00.001-04:00</published><updated>2009-06-24T18:29:06.180-04:00</updated><title type='text'>Around The Horn vol.1,127</title><summary type='text'>  China not backing off despite filter code post on Wikileaks  By jacqui@arstechnica.com (Jacqui Cheng) on security   China is filtering out criticism and diving in headfirst with its plan to roll out controversial filtering software on all PCs sold in China. The Chinese media quoted an unnamed source inside the Ministry of Industry and Information Technology, saying that the software will still </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/4579195825383288240/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1127.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4579195825383288240'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4579195825383288240'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1127.html' title='Around The Horn vol.1,127'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-8277244266290641769</id><published>2009-06-24T08:40:00.001-04:00</published><updated>2009-06-24T08:40:48.909-04:00</updated><title type='text'>Around The Horn vol.1,126</title><summary type='text'>  New Facebook blog: We can hack into your profile  By Caroline McCarthy   Well, here's an innovative way to get some buzz: FBHive, a new blog devoted to the discussion of all things Facebook, has debuted with the revelation that its creators have discovered a hack that can expose some crucial profile data.  No, it won't expose your personal photos or ...  Originally posted at The Social     Q&amp;A:</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/8277244266290641769/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1126.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8277244266290641769'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8277244266290641769'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1126.html' title='Around The Horn vol.1,126'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-410070939331436482</id><published>2009-06-22T09:25:00.001-04:00</published><updated>2009-06-22T09:25:00.341-04:00</updated><title type='text'>Around The Horn vol.1,125</title><summary type='text'>  Apache HTTP DoS tool mitigation, (Sun, Jun 21st)  If you've been following our diaries or any other IT Security related news, you probably know about ...(more)...     Situational Awareness: Spam Crisis and China, (Sat, Jun 20th)  Gary Warner, Director of Research at the UAB Computer Forensics, posted a very interesting analysis ...(more)...    G'day from Sansfire2009, (Sat, Jun 20th)  Well </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/410070939331436482/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1125.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/410070939331436482'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/410070939331436482'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1125.html' title='Around The Horn vol.1,125'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_Z-tqVTd9fPI/Sj7RPiSR1TI/AAAAAAAABds/TLQyYEEMebw/s72-c/offense_and_defense_inform_each_other_21jun09a.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-7869344805009982942</id><published>2009-06-20T08:45:00.001-04:00</published><updated>2009-06-20T08:45:46.597-04:00</updated><title type='text'>Around The Horn vol.1,124</title><summary type='text'>  iPhone OS 3.0 patches 46 known security vulnerabilities  By chris.foresman@arstechnica.com (Chris Foresman) on software   Earlier this week we spoke with security researcher Charlie Miller, who plans to detail a possible method that could allow a hacker to remotely execute arbitrary code on an iPhone. He noted that his method would need to be combined with an exploit of a known vulnerability in</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/7869344805009982942/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1124.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7869344805009982942'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7869344805009982942'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1124.html' title='Around The Horn vol.1,124'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-5518076851963993779</id><published>2009-06-19T10:59:00.001-04:00</published><updated>2009-06-19T10:59:51.647-04:00</updated><title type='text'>Around Then Horn vol.1,123</title><summary type='text'>  Microsoft announces free antivirus, limited public beta  By emil.protalinski@arstechnica.com (Emil Protalinski) on Microsoft Security Essentials   Microsoft today officially announced Microsoft Security Essentials (MSE), its free, real-time consumer antimalware solution for fighting viruses, spyware, rootkits, and trojans. Currently being tested by Microsoft employees and a select few testers, </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/5518076851963993779/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-then-horn-vol1123.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5518076851963993779'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5518076851963993779'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-then-horn-vol1123.html' title='Around Then Horn vol.1,123'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-7778548175409797404</id><published>2009-06-18T09:19:00.001-04:00</published><updated>2009-06-18T09:19:45.007-04:00</updated><title type='text'>Around The Horn vol.1,122</title><summary type='text'>  Leaked: screenshots of Morro, Microsoft's free antivirus  By emil.protalinski@arstechnica.com (Emil Protalinski) on Morro   Morro is the codename for a free, real-time antimalware solution for consumers to be released in the second half of 2009. It will offer basic features for fighting viruses, spyware, rootkits, and trojans. Microsoft is getting ready to put Morro into testing over the next </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/7778548175409797404/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1122.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7778548175409797404'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7778548175409797404'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1122.html' title='Around The Horn vol.1,122'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-8793510545123943112</id><published>2009-06-16T09:49:00.001-04:00</published><updated>2009-06-16T09:50:00.044-04:00</updated><title type='text'>Around The Horn vol.1,121</title><summary type='text'>  Apple finally issues patch for "critical" Java vulnerability  By jacqui@arstechnica.com (Jacqui Cheng) on vulnerability   Apple has finally issued a patch for a critical Java vulnerability in Mac OS X that made headlines last month. The update comes as part of Java for Mac OS X 10.5 Update 4, a 158MB download from both Apple's website and Software Update and requires Mac OS X 10.5.7.  According</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/8793510545123943112/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1121.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8793510545123943112'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8793510545123943112'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1121.html' title='Around The Horn vol.1,121'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-5195170136443432559</id><published>2009-06-15T09:37:00.001-04:00</published><updated>2009-06-15T09:37:08.263-04:00</updated><title type='text'>Around The Horn vol.1,120</title><summary type='text'>  IT staff snooping HR and layoff lists, taking data with them  By jacqui@arstechnica.com (Jacqui Cheng) on sysadmin   It's no secret that the IT staff can see things like your on-the-job porn surfing habits, your e-mail exchanges, and whatever else you're doing on your PC during work hours. But, according to a new report by Cyber-Ark Software, the IT department may be snooping a little deeper </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/5195170136443432559/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1120.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5195170136443432559'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5195170136443432559'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1120.html' title='Around The Horn vol.1,120'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-7374238062708210539</id><published>2009-06-12T15:48:00.001-04:00</published><updated>2009-06-12T15:48:22.601-04:00</updated><title type='text'>Around The Horn vol.1,119</title><summary type='text'>  Forefront Threat Management Gateway Beta 3 arrives  By emil.protalinski@arstechnica.com (Emil Protalinski) on Microsoft Forefront   Microsoft Forefront Threat Management Gateway (TMG) is a secure Web gateway that helps protect corporate assets and employees from Web threats while also delivering unified perimeter security to protect networks from attack. Beta 3 of Forefront TMG is available for</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/7374238062708210539/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1119.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7374238062708210539'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7374238062708210539'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1119.html' title='Around The Horn vol.1,119'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-6626156536545686454</id><published>2009-06-10T10:20:00.001-04:00</published><updated>2009-06-10T10:20:13.808-04:00</updated><title type='text'>Around The Horn vol.1,118</title><summary type='text'>  Microsoft Security Bulletin Summary for June 2009  By Robert A.   Patch Tuesday is here again. Here's the rundown of what was fixed. MS09-018 Vulnerabilities in Active Directory Could Allow Remote Code Execution (971055) This security update resolves two privately reported vulnerabilities in implementations of Active Directory on Microsoft Windows 2000 Server and Windows Server 2003, and Active</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/6626156536545686454/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1118.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6626156536545686454'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6626156536545686454'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1118.html' title='Around The Horn vol.1,118'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-8446867159229111350</id><published>2009-06-09T09:39:00.001-04:00</published><updated>2009-06-09T09:39:34.767-04:00</updated><title type='text'>Around The Horn vol.1,117</title><summary type='text'>  Twitter user says vacation tweets led to burglary  By Elinor Mills   Twitter user's tweets revealed he was out of town. Did that tip off a burglar?  Here's either a cautionary tale or an example of social-media paranoia. An Arizona man believes that his Twitter messages about going out of town led to a burglary at his ...    T-Mobile investigates possible security breach  By Marguerite Reardon</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/8446867159229111350/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1117.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8446867159229111350'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8446867159229111350'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1117.html' title='Around The Horn vol.1,117'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-5662768204973295470</id><published>2009-06-08T12:40:00.001-04:00</published><updated>2009-06-08T12:40:25.560-04:00</updated><title type='text'>Around The Horn vol.1,116</title><summary type='text'>  When XSS can cost you $10,000  By Robert A. on XSS   "Did you hear the one about the hacker-free e-mail service that was so confident about its enhanced security measure that it offered up $10,000 to anyone who could hack into it? It got hacked. Here’s the part that’s really crazy, though. There was initially some question as to whether or not...    Astalavista.com hacked  By Robert A. on </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/5662768204973295470/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1116.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5662768204973295470'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5662768204973295470'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1116.html' title='Around The Horn vol.1,116'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://lh6.ggpht.com/_Z-tqVTd9fPI/Sil7y39poeI/AAAAAAAABb0/CZEKLwowbV8/s72-c/information_security_incident_classification_05jun09a.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-2914280673777148518</id><published>2009-06-05T11:21:00.001-04:00</published><updated>2009-06-05T11:21:43.161-04:00</updated><title type='text'>Around The Horn vol.1,115</title><summary type='text'>  Microsoft Patch Tuesday for June 2009: 10 bulletins  By emil.protalinski@arstechnica.com (Emil Protalinski) on Patch Tuesday   According to the Microsoft Security Response Center, Microsoft will issue 10 Security Bulletins on Tuesday, and it will host a webcast to address customer questions on the bulletin the following day (June 10 at 11:00am PST, if you're interested). Six of the </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/2914280673777148518/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1115.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2914280673777148518'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2914280673777148518'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1115.html' title='Around The Horn vol.1,115'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-3787213027451042417</id><published>2009-06-03T13:25:00.001-04:00</published><updated>2009-06-03T13:25:41.316-04:00</updated><title type='text'>Around The Horn vol.1,114</title><summary type='text'>  Report: Mass Injection Attack Affects 40,000 Websites  By Robert A. on IndustryNews   "Researchers at Websense have discovered a mass injection attack that is redirecting Web browsers to a malware-bearing site. According to a weekend report by researchers at Websense, thousands of legitimate Web sites have been discovered to be injected with malicious Javascript, obfuscated code that leads to </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/3787213027451042417/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1114.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3787213027451042417'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3787213027451042417'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1114.html' title='Around The Horn vol.1,114'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-2078947138076818188</id><published>2009-06-02T10:42:00.001-04:00</published><updated>2009-06-02T10:42:29.281-04:00</updated><title type='text'>Around The Horn vol.1,113</title><summary type='text'>  AV-Comparatives May 2009 report: three winners  By emil.protalinski@arstechnica.com (Emil Protalinski) on Av-Comparatives   AV-Comparatives is known for the thorough tests it does on security software. Following its February 2009 on-demand report, the company has released its May 2009 retrospective/proactive test. It is the second part of the previous report: the same 16 products (Command </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/2078947138076818188/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1113.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2078947138076818188'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2078947138076818188'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1113.html' title='Around The Horn vol.1,113'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-6563295815467079843</id><published>2009-06-01T08:38:00.001-04:00</published><updated>2009-06-01T08:38:24.988-04:00</updated><title type='text'>Around The Horn vol.1,112</title><summary type='text'>  Microsoft warns of DirectX flaw; Vista users unaffected  By emil.protalinski@arstechnica.com (Emil Protalinski) on Windows XP   Microsoft has posted Security Advisory 971778 to warn its users that it is investigating public reports of a new vulnerability in Microsoft DirectX (versions 7.0 through 9.0) that hackers are actively exploiting. The vulnerability could allow for remote code execution </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/6563295815467079843/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1112.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6563295815467079843'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6563295815467079843'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/06/around-horn-vol1112.html' title='Around The Horn vol.1,112'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-684477201548238636</id><published>2009-05-29T13:53:00.001-04:00</published><updated>2009-05-29T13:53:52.135-04:00</updated><title type='text'>Around The Horn vol.1,111</title><summary type='text'>  Experts: Gumblar attack is alive, worse than Conficker  By Elinor Mills   The Web site compromise attack known as Gumblar has added new domain names that are downloading malware onto unsuspecting computers, stealing FTP credentials to compromise more sites, and tampering with Web traffic, a security firm said on Thursday.  The Gumblar attack started in March with Web sites being compromised and</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/684477201548238636/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1111.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/684477201548238636'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/684477201548238636'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1111.html' title='Around The Horn vol.1,111'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-3124535222341596729</id><published>2009-05-28T15:53:00.001-04:00</published><updated>2009-05-28T15:53:53.443-04:00</updated><title type='text'>Around The Horn vol.1,110</title><summary type='text'>  Report: spam-wielding botnets are working 9 to 5  By jacqui@arstechnica.com (Jacqui Cheng) on Symantec   Spam levels have risen over the past month to more than 90 percent of all corporate e-mail, according to Symantec’s May 2009 MessageLabs Intelligence Report (PDF). The latest report effectively communicates the concept of "spam, boy there sure is a lot of it," but goes into detail about the </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/3124535222341596729/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1110.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3124535222341596729'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3124535222341596729'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1110.html' title='Around The Horn vol.1,110'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-9113420492045485147</id><published>2009-05-27T09:54:00.001-04:00</published><updated>2009-05-27T09:54:50.672-04:00</updated><title type='text'>Around The Horn vol.1,109</title><summary type='text'>  Report: Spam now 90 percent of all e-mail  By Lance Whitney   Spam now accounts for 90.4 percent of all e-mail, according to a report released Monday from security vendor Symantec. This means that 1 out of every 1.1 e-mails is junk. The report also notes that spam shot up 5.1 percent just from April to May.    Spam on ...     Obama To Create Cyber Security Czar In White House  By Darknet on </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/9113420492045485147/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1109.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/9113420492045485147'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/9113420492045485147'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1109.html' title='Around The Horn vol.1,109'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-1876046639474099496</id><published>2009-05-26T08:49:00.001-04:00</published><updated>2009-05-26T08:49:54.408-04:00</updated><title type='text'>Around The Horn vol.1,108</title><summary type='text'>  Technitium FREE MAC Address Changer v5 R2 Released for Windows  By Darknet on windows 7 rc   It’s been a while since the last update of Technitium back in June 2008, the latest release is v5 R2 with support for Windows 7 RC. Technitium MAC Address Changer allows you to change Media Access Control (MAC) Address of your Network Interface Card (NIC) irrespective to your NIC manufacturer or its </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/1876046639474099496/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1108.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1876046639474099496'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1876046639474099496'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1108.html' title='Around The Horn vol.1,108'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-5379701146899388474</id><published>2009-05-25T08:55:00.001-04:00</published><updated>2009-05-25T08:55:38.994-04:00</updated><title type='text'>Around The Horn vol.1,107</title><summary type='text'>—Happy Memorial Day! Semper Fi!    Orange.fr compromised - 245,000 clear text passwords exposed?  By Rik Ferguson on SQL Injection   Treat your password like your toothbrush, don’t let anyone else use it and change it every six months. (Clifford Stoll)   It looks like HackersBlog have come out of retirement, and with a bang. (see here for an earlier interview I did with HackersBlog)   They have </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/5379701146899388474/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1107.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5379701146899388474'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5379701146899388474'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1107.html' title='Around The Horn vol.1,107'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_Z-tqVTd9fPI/ShhtT2JcQHI/AAAAAAAABWo/oAN2D3ZFRYY/s72-c/defenders_dilemma.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-9144454495638285095</id><published>2009-05-23T09:49:00.001-04:00</published><updated>2009-05-23T09:49:58.942-04:00</updated><title type='text'>Around The Horn vol.1,106</title><summary type='text'>Compromising web content served over SSL via malicious proxies  By Robert A. on Vulns   Microsoft research has published an excellent paper describing many browser flaws. The use case primary involves an attacker hijacking the explicitly configured proxy used by the user and via HTTP code trickery they can access the content on an HTTPS established connection. It also outlines browser flaws </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/9144454495638285095/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1106.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/9144454495638285095'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/9144454495638285095'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1106.html' title='Around The Horn vol.1,106'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-1534819381057227089</id><published>2009-05-22T09:56:00.001-04:00</published><updated>2009-05-22T10:09:33.574-04:00</updated><title type='text'>Around The Horn vol.1,105</title><summary type='text'>  Microsoft cleans password stealer tools from 859,842 PCs  By emil.protalinski@arstechnica.com (Emil Protalinski) on malware   The Malicious Software Removal Tool (MSRT) is a small program Microsoft pushes out to computers on Patch Tuesday to clean out a list of malware. Each month, the company adds removal information for more threats. On this month's Patch Tuesday, Microsoft added scans for </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/1534819381057227089/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1105.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1534819381057227089'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1534819381057227089'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1105.html' title='Around The Horn vol.1,105'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_Z-tqVTd9fPI/ShX3u-4sd7I/AAAAAAAABWQ/jyTw72e_ftM/s72-c/allen_fig01_04.gif' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-5028633261887341426</id><published>2009-05-21T16:40:00.001-04:00</published><updated>2009-05-21T16:40:17.739-04:00</updated><title type='text'>Around The Horn vol.1,104</title><summary type='text'>  Apple has yet to patch "critical" Java vulnerability  By chris.foresman@arstechnica.com (Chris Foresman) on web browser   Mac OS X contains a serious security vulnerability in its implementation of Java, according to several security experts. The vulnerability remains in the software even after Sun had disclosed and patched the problem and Apple had been notified of the issue by at least one </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/5028633261887341426/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1104.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5028633261887341426'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/5028633261887341426'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1104.html' title='Around The Horn vol.1,104'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-7386025872507006088</id><published>2009-05-20T08:52:00.001-04:00</published><updated>2009-05-20T08:52:58.941-04:00</updated><title type='text'>Around The Horn vol.1,103</title><summary type='text'>  Password reminders: hard to remember, but easy to hack  By jtimmer@arstechnica.com (John Timmer) on web   Forgetting which password you used for a rarely used shopping site can be a pain, one that's often made worse by the fallback authentication method. If you're like me, you're often stumped by which of your past pets you considered your favorite two years ago, or whether you put a "the" in </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/7386025872507006088/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1103.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7386025872507006088'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7386025872507006088'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1103.html' title='Around The Horn vol.1,103'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-1026116374188865893</id><published>2009-05-19T15:15:00.001-04:00</published><updated>2009-05-19T15:15:38.307-04:00</updated><title type='text'>Around The Horn vol.1,102</title><summary type='text'>  IIS6.0 WebDav Unicode Remote Auth Bypass  By Robert A. on Vulns   Update: Microsoft has posted some additional information in multiple entries. A new unicode bug in IIS has been discovered which allows an attacker access to resources behind password protected sites. This issue only seems to affect IIS 6 (5 and 7 seem immune) and no fix has been issued at this...     Microsoft warns of new </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/1026116374188865893/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1102.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1026116374188865893'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1026116374188865893'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1102.html' title='Around The Horn vol.1,102'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-2703980058504143179</id><published>2009-05-18T10:42:00.001-04:00</published><updated>2009-05-18T10:42:05.576-04:00</updated><title type='text'>Around The Horn vol.1,101</title><summary type='text'>  Hackers crack flight sim community site, ruin it for everyone  By chris.foresman@arstechnica.com (Chris Foresman) on hackers   A website for flight simulator enthusiasts, originally launched in 1996, has been essentially "destroyed" by the shenanigans of hackers. Avsim had become an important resource for flight sim users over the last 13 years, but the site has been completely shut down after </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/2703980058504143179/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1101.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2703980058504143179'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2703980058504143179'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1101.html' title='Around The Horn vol.1,101'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-1740076164570174246</id><published>2009-05-16T11:00:00.001-04:00</published><updated>2009-05-16T11:00:39.340-04:00</updated><title type='text'>Around The Horn vol.1,100</title><summary type='text'>  Microsoft bans Memcpy() in their SDL program  By Robert A. on Security Tools   "Memcpy() and brethren, your days are numbered. At least in development shops that aspire to secure coding. Microsoft plans to formally banish the popular programming function that's been responsible for an untold number of security vulnerabilities over the years, not just in Windows but in countless other </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/1740076164570174246/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1100.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1740076164570174246'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1740076164570174246'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol1100.html' title='Around The Horn vol.1,100'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-1886755571431453918</id><published>2009-05-15T09:18:00.001-04:00</published><updated>2009-05-15T09:18:03.466-04:00</updated><title type='text'>Around The Horn vol.1,99</title><summary type='text'>  Analyst: cyberwarfare arms race with China imminent  By segphault@arstechnica.com (Ryan Paul) on security   A congressional commission that reviews economic and security relations between the United States and China held a hearing last month on Chinese intelligence activities that impact national security. During this hearing, security expert Kevin G. Coleman of the Technolytics Institute think</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/1886755571431453918/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol199.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1886755571431453918'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1886755571431453918'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol199.html' title='Around The Horn vol.1,99'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-8834092353855422668</id><published>2009-05-11T19:56:00.001-04:00</published><updated>2009-05-11T19:58:26.964-04:00</updated><title type='text'>Around The Horn vol.1,98</title><summary type='text'>  Researchers: image spam making unexpected return  By jacqui@arstechnica.com (Jacqui Cheng) on study   Don't call it a comeback, but image-based spam is on the rise once again after hitting near-extinction late last year. Ralf Iffert and Holly Stewart of IBM's X-Force team detailed the phenomenon in a blog post last week, noting that the techniques used in the latest waves of image spam aren't </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/8834092353855422668/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol198.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8834092353855422668'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8834092353855422668'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol198.html' title='Around The Horn vol.1,98'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-714302709875780981</id><published>2009-05-10T08:52:00.001-04:00</published><updated>2009-05-10T08:52:57.924-04:00</updated><title type='text'>Around The Horn vol.1,97</title><summary type='text'>  Botnet master hits the kill switch, takes down 100,000 PCs  By jacqui@arstechnica.com (Jacqui Cheng) on Zeus   Botnets aren't just dangerous because they can steal massive amounts of personal data and launch denial-of-service attacks—they can also self-destruct, leaving the owners of affected machines in the dust. The controllers of one such botnet recently hit the kill switch for one reason or</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/714302709875780981/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol197.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/714302709875780981'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/714302709875780981'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol197.html' title='Around The Horn vol.1,97'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-7492493003185781575</id><published>2009-05-10T07:41:00.001-04:00</published><updated>2009-05-10T07:41:41.844-04:00</updated><title type='text'>My Blogroll</title><summary type='text'>      MisCellany             Engadget        Gizmodo        Aurora Report        imagenique        Slate Magazine        New Urban Legends        Dilbert Daily Strip        Slow Down Fast Personal Coaching and Lifestyle Design        Zen Habits            TekNoLog             Wired Top Stories        PC Magazine Tips and Solutions        PC World Latest Technology News            SANS</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/7492493003185781575/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/my-blogroll.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7492493003185781575'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7492493003185781575'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/my-blogroll.html' title='My Blogroll'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-66968909629388590</id><published>2009-05-08T10:50:00.001-04:00</published><updated>2009-05-08T10:50:32.524-04:00</updated><title type='text'>Around The Horn vol.1,96</title><summary type='text'>  Firefox, Chrome users more up to date than Safari and Opera  By jacqui@arstechnica.com (Jacqui Cheng) on vulnerability   Those who use Firefox and Chrome are inherently more up-to-date—and therefore more secure—than those who run Safari and Opera, according to researchers from the Swiss Federal Institute of Technology (ETH Zurich) and Google Switzerland. But it's not the browsers themselves </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/66968909629388590/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol196.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/66968909629388590'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/66968909629388590'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol196.html' title='Around The Horn vol.1,96'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_Z-tqVTd9fPI/SgLsTWN3SLI/AAAAAAAABTY/055M5lTjEOM/s72-c/Logging.gif' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-3025461058142024528</id><published>2009-05-07T07:28:00.001-04:00</published><updated>2009-05-07T07:28:45.682-04:00</updated><title type='text'>Around The Horn vol.1,95</title><summary type='text'>  Swede charged in cisco hack involving theft of trade secrets  By Robert A. on IndustryNews   "A 21-year-old Swede has been charged with hacking into Cisco Systems Inc. (NASDAQ:CSCO)'s computers and stealing trade secrets, U.S. officials say. Philip Gabriel Pettersson, also known as "Stakkato," was named in a five-count indictment that includes one count of intrusion and two of trade secret </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/3025461058142024528/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol195.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3025461058142024528'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3025461058142024528'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol195.html' title='Around The Horn vol.1,95'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-124619771652551906</id><published>2009-05-06T06:48:00.001-04:00</published><updated>2009-05-06T06:48:04.157-04:00</updated><title type='text'>Around The Horn vol.1,94</title><summary type='text'>  Hackers Break Into Virginia Health Professions Database, Demand Ransom  By Robert A. on IndustryNews   "Hackers last week broke into a Virginia state Web site used by pharmacists to track prescription drug abuse. They deleted records on more than 8 million patients and replaced the site's homepage with a ransom note demanding $10 million for the return of the records, according to a posting on </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/124619771652551906/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol194.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/124619771652551906'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/124619771652551906'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol194.html' title='Around The Horn vol.1,94'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-402736146670407262</id><published>2009-05-05T08:22:00.001-04:00</published><updated>2009-05-05T08:22:19.193-04:00</updated><title type='text'>Around The Horn vol.1,93</title><summary type='text'>  Researchers hijack botnet, score 56,000 passwords in an hour  By jacqui@arstechnica.com (Jacqui Cheng) on Trojan   Researchers at the University of California Santa Barbara have published a paper (PDF) detailing their findings after hijacking a botnet for ten days earlier this year. Among other things, the researchers were able to collect 70GB of data that the bots stole from users, including </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/402736146670407262/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol193.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/402736146670407262'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/402736146670407262'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol193.html' title='Around The Horn vol.1,93'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-7918605420029317199</id><published>2009-05-02T19:23:00.001-04:00</published><updated>2009-05-02T19:23:26.201-04:00</updated><title type='text'>Around The Horn vol.1,92</title><summary type='text'>  Twitter hacked again....  By Robert A. on IndustryNews   Twitter has been hacked again and had it's administrative panel (which shouldn't be web accessible) breached. "This week, unauthorized access to Twitter was gained by an outside party. Our initial security reviews and investigations indicate that no account information was altered or removed in any way. However, we discovered that 10...</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/7918605420029317199/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol192.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7918605420029317199'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/7918605420029317199'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/05/around-horn-vol192.html' title='Around The Horn vol.1,92'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-9020312652053290726</id><published>2009-04-29T06:26:00.001-04:00</published><updated>2009-04-29T06:26:11.382-04:00</updated><title type='text'>Around The Horn vol.1,91</title><summary type='text'>  Finovate: Privacy is dead, long live the PIN  By Josh Lowensohn   What's something we often use for security in the real world but not online? PIN codes. We use them at stores, banks, and ATMs, so why not use them online? For one, a QWERTY keyboard lets you create a much stronger, and often easier-to-remember password than you could with ...  Originally posted at Webware    Microsoft tightens </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/9020312652053290726/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol191.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/9020312652053290726'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/9020312652053290726'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol191.html' title='Around The Horn vol.1,91'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-570375232051317494</id><published>2009-04-28T08:23:00.001-04:00</published><updated>2009-04-28T08:23:44.235-04:00</updated><title type='text'>Around The Horn vol.1,90</title><summary type='text'>SB09-117: Vulnerability Summary for the Week of April 20, 2009  Vulnerability Summary for the Week of April 20, 2009    Google Chrome Universal XSS Vulnerability  By Robert A. on XSS   "During unrelated research, I came across a number of security issues that reside in various parts of Google's web browser - Google Chrome. These issues pose a major threat to any user that browses a maliciously </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/570375232051317494/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol190.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/570375232051317494'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/570375232051317494'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol190.html' title='Around The Horn vol.1,90'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-2655777043754078388</id><published>2009-04-27T07:56:00.001-04:00</published><updated>2009-04-27T07:56:01.241-04:00</updated><title type='text'>Around The Horn vol.1,89</title><summary type='text'>  RSA 2009: A yawner at best  By Jon Oltsik   In my humble opinion, the RSA 2009 security conference, held this week in San Francisco, was extremely flat compared with past years. Yes, the economy had a lot to do with it. I believe last year's attendance was around 17,000 people, and I've heard that this year ...     Salma Hayek’s Email Account Hacked.  By Rik Ferguson on Salma Hayek     The </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/2655777043754078388/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol189.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2655777043754078388'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/2655777043754078388'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol189.html' title='Around The Horn vol.1,89'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-3644259868473150704</id><published>2009-04-24T08:42:00.001-04:00</published><updated>2009-04-24T08:42:42.787-04:00</updated><title type='text'>Around The Horn vol.1,88</title><summary type='text'>  OAuth Session Fixation Security Flaw Discovered  By Robert A. on Vulns   From the advisory "The attack starts with the attacker logging into an account he owns at the (honest) Consumer site. The attacker initiates the OAuth authorization process but rather than follow the redirect from the Consumer to obtain authorization, the attacker instead saves the authorization request URI (which includes</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/3644259868473150704/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol188.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3644259868473150704'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/3644259868473150704'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol188.html' title='Around The Horn vol.1,88'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-4983241950046021345</id><published>2009-04-23T07:13:00.002-04:00</published><updated>2009-04-23T07:43:15.227-04:00</updated><title type='text'>Around The Horn vol.1,87</title><summary type='text'>Understanding Microsoft's Secure Remote Access OfferingsBy tshinder@tacteam.net (Thomas Shinder) The secure remote access options currently available to Microsoft networks.Database Sizing Charts for vSphere 4.0By vmtn@vmware.com (VMTN) on VMTN Blogs Many of our customers have databases running on proprietary hardware that is approaching end of life. Often these databases are not considered as </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/4983241950046021345/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol187.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4983241950046021345'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4983241950046021345'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol187.html' title='Around The Horn vol.1,87'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_Z-tqVTd9fPI/Se32PlXvV1I/AAAAAAAABSA/QRG3j6lVwwM/s72-c/ids_v_nsm_p1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-8491797247998976632</id><published>2009-04-21T07:00:00.002-04:00</published><updated>2009-04-23T07:42:52.125-04:00</updated><title type='text'>Around The Horn vol.1,86</title><summary type='text'>SB09-110: Vulnerability Summary for the Week of April 13, 2009Vulnerability Summary for the Week of April 13, 2009Security Bulletin Webcast Questions and Answers - April 2009By MSRCTEAM on Webcast Q&amp;A Hi, During this month’s webcast we were able to address 15 questions in the time allotted, but have included the additional questions asked in this QA post. Most of the questions centered on the </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/8491797247998976632/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol186.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8491797247998976632'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8491797247998976632'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol186.html' title='Around The Horn vol.1,86'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-4157819560596147789</id><published>2009-04-20T06:57:00.002-04:00</published><updated>2009-04-23T07:42:02.724-04:00</updated><title type='text'>Around The Horn vol.1,85</title><summary type='text'>Providing Accurate Risk Assessments , (Sun, Apr 19th)Normal 0 false false false MicrosoftInternetExplorer4 ...(more)...Twitter Packet Challenge Solution, (Sat, Apr 18th)Yesterday, I posted the packet below as my twitter feed to see how the packet skills are among my fo ...(more)... FBI CIPAV Spyware Snaring Extortionists and Hackers for Years (CGISecurity.com)CVE-2009-1324 (asxtomp3converter) (</summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/4157819560596147789/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol185.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4157819560596147789'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4157819560596147789'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol185.html' title='Around The Horn vol.1,85'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-4408896104082919897</id><published>2009-04-18T00:41:00.001-04:00</published><updated>2009-04-18T00:41:06.997-04:00</updated><title type='text'>Around The Horn vol.1,84</title><summary type='text'>  Microsoft Security Advisory (969136): Vulnerability in Microsoft Office PowerPoint Could Allow Remote Code Execution  Revision Note: Advisory publishedSummary: Microsoft is investigating new reports of a vulnerability in Microsoft Office PowerPoint that could allow remote code execution if a user opens a specially crafted PowerPoint file. At this time, we are aware only of limited and targeted </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/4408896104082919897/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol184.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4408896104082919897'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4408896104082919897'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol184.html' title='Around The Horn vol.1,84'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_Z-tqVTd9fPI/SeYig35D5MI/AAAAAAAABRw/UKks5LDwgJE/s72-c/sans_forensics_and_ir.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-8831623161162799945</id><published>2009-04-14T23:16:00.001-04:00</published><updated>2009-04-14T23:16:23.524-04:00</updated><title type='text'>Around The Horn vol.1,83</title><summary type='text'>  MS09-016 - Important: Vulnerabilities in Microsoft ISA Server and Forefront Threat Management Gateway (Medium Business Edition) Could Cause Denial of Service (961759) - Version:1.0  Severity Rating: Important - Revision Note: Bulletin published.Summary: This security update resolves a privately reported vulnerability and a publicly disclosed vulnerability in Microsoft Internet Security and </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/8831623161162799945/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol183.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8831623161162799945'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/8831623161162799945'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol183.html' title='Around The Horn vol.1,83'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-4176566102451099992</id><published>2009-04-12T22:31:00.001-04:00</published><updated>2009-04-12T22:31:18.308-04:00</updated><title type='text'>Around The Horn vol.1,82</title><summary type='text'>Microsoft Security Bulletin Advance Notification for April 2009  Revision Note: Advance Notification published.Summary: This bulletin summary lists security bulletins released for April 2009  My recent alerts from HP  - Advisory: Run the threat removal tool if you have the Conficker worm virus!  Virus Threat: Conficker; Advisory: Run the threat removal tool if you have the Conficker worm virus! </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/4176566102451099992/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol182.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4176566102451099992'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/4176566102451099992'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol182.html' title='Around The Horn vol.1,82'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-6658627552556038282</id><published>2009-04-10T09:08:00.001-04:00</published><updated>2009-04-10T09:15:49.309-04:00</updated><title type='text'>Around The Horn vol.1,81</title><summary type='text'>  Microsoft Security Bulletin Advance Notification for April 2009  Revision Note: Advance Notification published.Summary: This advance notification lists security bulletins to be released for April 2009.  Conficker.E  By MSRCTEAM   We’ve seen some activity in the Conficker space in the past two days and this has caused some questions from customers. Specifically, there have been reports of two </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/6658627552556038282/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol181.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6658627552556038282'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/6658627552556038282'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol181.html' title='Around The Horn vol.1,81'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7583874337261306147.post-1138804652827986738</id><published>2009-04-09T08:15:00.001-04:00</published><updated>2009-04-09T08:15:42.165-04:00</updated><title type='text'>Around The Horn vol.1,80</title><summary type='text'>  New Downad/Conficker variant spreading over P2P  By Rik Ferguson on worm_downad  TrendLabs researcher Ivan Macalintal has this evening discovered a new variant of Downad/Conficker called WORM_DOWNAD.E spreading over the peer-to-peer functionality of the previous version of this now infamous worm. As well as reactivating the original propogation functionality, this new variant sheds some extra </summary><link rel='replies' type='application/atom+xml' href='http://aurorareport.blogspot.com/feeds/1138804652827986738/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol180.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1138804652827986738'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7583874337261306147/posts/default/1138804652827986738'/><link rel='alternate' type='text/html' href='http://aurorareport.blogspot.com/2009/04/around-horn-vol180.html' title='Around The Horn vol.1,80'/><author><name>Jayson Cavendish</name><uri>http://www.blogger.com/profile/01935196570713592495</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
