Showing posts with label security. Show all posts
Showing posts with label security. Show all posts

Wednesday, June 04, 2008

Simplicity, shame work best in securing Craigslist

Craigslist often relies on very simple mechanisms and the kindness of honest users to combat fraud on its pages, the site's founder said on Wednesday. ...continue reading 'Simplicity, shame work best in securing Craigslist'

Tuesday, June 03, 2008

Windows XP SP3 includes vulnerable Flash Player

Microsoft Corp.'s Windows XP Service Pack 3 (SP3) ships with an out-of-date version of Adobe's Flash Player that's vulnerable to recently-spotted attacks, according to Microsoft's support documentation. ...continue reading 'Windows XP SP3 includes vulnerable Flash Player'

Microsoft: CardSpace attack works but was too rigged

Microsoft is disputing that its CardSpace authentication management technology can be hacked despite a research paper that outlines a proof-of-concept attack. ...continue reading 'Microsoft: CardSpace attack works but was too rigged'

Hackers hit Mars lander's Web site

The Web site for the Phoenix Mars Mission, NASA's most recent arrival on the Red Planet, was hacked over the weekend by a Turkish crew, according to a defacement database. ...continue reading 'Hackers hit Mars lander's Web site'

Wednesday, May 28, 2008

Symantec backtracks on Adobe Flash warning

After warning on Tuesday that hackers were exploiting an unpatched bug in Adobe Systems' Flash Player software, Symantec has backtracked from this claim, saying the flaw is 'very similar' to another vulnerability that was patched last month. ...continue reading 'Symantec backtracks on Adobe Flash warning'

Apple fixes 70 issues with Mac OS X 10.5.3 update

Apple on Wednesday update Mac OS X fixing 70 issues with the operating system and its components. ...continue reading 'Apple fixes 70 issues with Mac OS X 10.5.3 update'

Tuesday, May 27, 2008

Mozilla makes Firefox 3.0 bug-fix decision

Mozilla decided Tuesday to roll out a second release candidate for Firefox 3.0 that will include fixes for about 40 bugs. The alternative was to declare the open-source browser good "as is," then patch the problems with a later update. ...continue reading 'Mozilla makes Firefox 3.0 bug-fix decision'

New Adobe flaw being used in attacks, says Symantec

An unpatched bug in Adobe Systems' Flash Player software is being exploited by online criminals, Symantec reported Monday. ...continue reading 'New Adobe flaw being used in attacks, says Symantec'

TJX staffer sacked after talking about security problems

A low-level TJX employee has lost his job for speaking in public about information security problems he uncovered while working for the company. ...continue reading 'TJX staffer sacked after talking about security problems'

Friday, May 23, 2008

Facebook security flaw could compromise accounts

A researcher has spotted a security problem in Facebook that could lead to hackers taking control of user accounts. ...continue reading 'Facebook security flaw could compromise accounts'

Monday, May 19, 2008

Mass SQL injection attack targets Chinese Web sites

Web sites across China and Taiwan are being hit by a mass SQL injection attack that has implanted malware in thousands of Web sites, according to a security company in Taiwan. ...continue reading 'Mass SQL injection attack targets Chinese Web sites'

Monday, May 12, 2008

FBI worried as DoD sold counterfeit networking gear

The U.S. Federal Bureau of Investigation is taking the issue of counterfeit Cisco equipment very seriously, according to a leaked FBI presentation that underscores problems in the Cisco supply chain. ...continue reading 'FBI worried as DoD sold counterfeit networking gear'

Hackers find a new place to hide rootkits

Security researchers have developed a new type of malicious rootkit software that hides itself in an obscure part of a computer's microprocessor, hidden from current antivirus products. ...continue reading 'Hackers find a new place to hide rootkits'

Wednesday, May 07, 2008

Trojan adware hiding in MP3s, McAfee says

Security vendor McAfee reported Tuesday that it's seen a huge spike in fake MP3 files spreading on peer-to-peer networks. Although the files have names that make them look like audio recordings, they're really Trojan horse programs that try to install a shoddy media player and adware on your computer. ...continue reading 'Trojan adware hiding in MP3s, McAfee says'

Tuesday, May 06, 2008

Google backs open-source CERT group

Google has thrown its weight behind a fledgling security reporting group for the open-source community. ...continue reading 'Google backs open-source CERT group'

Monday, May 05, 2008

100 e-mail bouncebacks? You've been backscattered.

The bounceback e-mail messages come in at a trickle, maybe one or two every hour. The subject lines are disquieting: 'Cyails, Vygara nad Levytar,' 'UNSOLICITED BULK EMAIL, apparently from you.' What's going on? Have you been hacked? Nope, you're just getting a little backscatter. ...continue reading '100 e-mail bouncebacks? You've been backscattered.'

Tuesday, April 29, 2008

Microsoft botnet-hunting tool helps bust hackers

Microsoft is giving law enforcers access to a special tool that keeps tabs on botnets, using data compiled from the 450 million computer users who have installed the Malicious Software Removal tool that ships with Windows. ...continue reading 'Microsoft botnet-hunting tool helps bust hackers'

Microsoft highlights efforts to police the Net

Microsoft spends millions of dollars each year developing security products that it gives to law enforcement agencies, knowing that it may not make any money directly in return. The work is part of the company's efforts to be a good corporate citizen, although there are also some business benefits from the work it does. ...continue reading 'Microsoft highlights efforts to police the Net'

Security vendors slam Defcon virus contest

There will be a new contest at the Defcon hacker conference this August, inviting hackers to find new ways of beating antivirus software. Contestants will get some sample virus code that they must modify and try to sneak past the antivirus products. ...continue reading 'Security vendors slam Defcon virus contest'

Monday, April 28, 2008

Bank of Ireland data loss toll reaches 31,500 policies

The Bank of Ireland has admitted that the unencrypted personal details of 31,500 customers - three times as many as previously disclosed - went missing with the theft of four laptops last year. ...continue reading 'Bank of Ireland data loss toll reaches 31,500 policies'