18 August 2008
Tracking Dots Raise Laser Printer Privacy Concerns
Leading printer companies are still using secret tracking dots which can identify which laser printer printed a document despite consistent concern from privacy organizations.
18 August 2008
Typo squatting targets presidential candidates
The US presidential election was a target for typosquatters, said Oliver Friedrichs at the Black Hat conference in Las Vegas.
18 August 2008
Technology will always fail, says Angell of doom
‘Technology is part of the problem, not part of the solution’. These were the words of Ian Angell, professor of information systems at the London school of economics, and also the keynote speaker at the Black Hat conference 2008.
18 August 2008
Phishy eco-system
Phishers are supported by an eco-system which allows even the least tech-savvy phishers to stay afloat, said Nitesh Dhanjani and Billy K Rios at their session ‘Bad Sushi: Beating phishers at their own game’ at Black Hat.
18 August 2008
Hackers and academics need to work together
Hackers and academics need to start talking and work together to benefit the industry, Jon Callas, CTO of PGP, told Eleanor Dallaway at Black Hat Las Vegas.
18 August 2008
Satan is on my friends list
ID theft via social networking sites is all media hype according to Shawn Moyer and Nathan Hamiel.
15 August 2008
Cyber-attack in Georgia
While war was breaking out over South Ossetia on 8 August, Georgia’s Government website fell victim to cyber-attack.
15 August 2008
Air Force Postpones Cyber Command for Reassessment
Just weeks before phase one of the much-vaunted Air Force Cyber Command was scheduled to go live, the service has announced it is reassessing its efforts.
12 August 2008
ISF President Announced
Howard Schmidt has been appointed president of the Information Security Forum (ISF).
08 August 2008
Microsoft to Give Partners Early Info on Security
Microsoft has introduced new security-related programs that share early information with partners to help them protect customers quickly and effectively.
08 August 2008
Missing “Registered Traveler” Laptop Found
The missing laptop that contained unencrypted information about members of the US Transportation Security Administration's Registered Traveler program has been found.
08 August 2008
Security conference expels three journalists for 'hack'
Three journalists working for a French security magazine were expelled from the Black Hat security conference after allegedly hacking into the press-room computer network.
06 August 2008
TJX thieves charged with world's biggest ID theft
US prosecutors yesterday charged 11 people on three continents with the theft last year of 45 million identities from credit and debit card deal with nine US retailers, including TJX.
04 August 2008
Ex-Countrywide Employee Arrested over Massive Info Theft
The FBI has arrested a former Countrywide Financial Corp. employee and another man in an alleged scheme to steal and sell the sensitive personal information, including Social Security numbers, of as many as two million mortgage applicants, the Los Angeles Times has reported.
25 July 2008
Laptops Lost at Britain’s Ministry of Silly Security
One laptop is lost every two days by bureaucrats at Britain’s Ministry of Defence with 659 reported stolen and 89 lost by the department in the past four years.
25 July 2008
“Spam Kings": One Jailed; One Escapes and Kills Family
This week the media spotlight was turned towards “spam kings.” One is sent to jail while another escapes from his minimum security prison and then kills his family and himself.
23 July 2008
Open source exposing businesses to significant risk
The most widely used open source software for the enterprise is exposing businesses to significant risk, according to a study by security firm Fortify Software.
18 July 2008
Angry Employee Disables San Francisco Network
A disgruntled San Francisco computer engineer is still in jail five days after blocking access to the city’s system to everyone except himself.
17 July 2008
Nigella website is cooked by hackers
Celebrity cook Nigella Lawson has had her website hacked by the increasingly dangerous SQL injection attacks.
16 July 2008
Spam accounts for 96.5% of business email, according to Sophos
A report carried out by Sophos on spam received between April and June of this year has revealed that 96.5% of all business email is likely to be spam, making just one in 28 emails legitimate.
11 July 2008
Computerworld Casts Doubt on Lost Laptops Study
A study regarding lost and stolen laptops at US airports, which must have sent shivers down the spines of computer security executives, has been put into doubt by news magazine, Computerworld.
09 July 2008
Iran invasion spam hoax spreads Trojan
Web security firm Sophos is warning of an attempt by hackers to infect computers using the guise of a news report claiming that the US has invaded Iran.
04 July 2008
Big Five IT Vendors Announce Focus on Security
Five of the world’s leading IT vendors have announced the creation of the Industry Consortium for Advancement of Security on the Internet (ICASI).
01 July 2008
New internet domains could pose new security risks
The Internet Corporation for Assigned Names and Numbers' (ICANN) decision yesterday to allow new domain names could open up new risks to internet users and companies running websites.
27 June 2008
Push to Remove Social Security Numbers from Medicare Cards
Aiming to prevent identity theft, US Senators are pushing a bi-partisan bill that would require the Medicare administration to issue new cards that do not contain Social Security numbers.
27 June 2008
New Efforts to Battle Botnet-Driven Spam
Network operators and ISPs from around the world are working together to address issues that will help block botnet-induced spam.
26 June 2008
E-crime to be the crime of choice for mobsters, says security forum
The Information Security Forum (ISF) is warning of an increase in malicious threats from organised crime and industrial espionage, along with a rise in mobile malware and Web 2.0 vulnerabilities.
26 June 2008
Sun aims to play a stronger identity management card
Sun Microsystems has launched Identity Manager 8.0, a role-based user provisioning system that the company says is targeted at enterprise and extranet environments where identity lifecycle management and auditing needs exist.
24 June 2008
Plenty to worry growing infosec profession
An in-depth look at the results of the 2008 version of the annual ISC2 Global Information Security Workforce Study reveals the growth both in size and influence of the profession. It reveals also what is worrying security professionals … and the answer to that is plenty.
20 June 2008
Worldwide Security Software Market Keeps Growing
The global security software market grew to $10.4 billion in 2007, a rise of 19.8 percent from the 2006 level of $8.7 billion, Gartner said.
18 June 2008
US embarrassed that UFO hacker could easily access military computers
The US government wanted a speedy resolution of its case against a self-confessed British hacker because it was embarrassed by the ease with which he was able to access federal computer systems, the House of Lords heard yesterday.
13 June 2008
Spear-phishing Attacks Attain Record Levels
Targeted social engineering attacks, also referred to as spear phishing, are on the rise.
13 June 2008
Enterprises Continue To Incur Risk
A new study revealed more US enterprises than ever before are taking action against leaks in email.
10 June 200
Most web malware on legitimate websites, says Scansafe
More than two thirds of web-based malware is now found on legitimate web sites, according to a report by security supplier Scansafe, an increase of 407% compared with May 2007.
06 June 2008
Credit Agency Gives Free Monitoring to Millions
As part of a preliminary settlement of a $10 billion class action suit, millions of US consumers will soon be eligible for free credit monitoring.
04 June 2008
Spam levels back on the rise
Spam levels are back on the rise, says security software firm MessageLabs.
30 May 2008
US Government Receives Grade C in IT Security
The US federal government improved slightly in its ability to secure its computer systems and networks, from a C- to C.
30 May 2008
Computer Crime Needs Management and Education
A US university researcher has devised an antifraud strategy for business, indicating that reports of computer fraud only represent a tip of a potentially large iceberg.
30 May 2008
Palo Alto to Sponsor Webinar on Risk Control
Palo Alto are to sponsor a live Webinar on enabling businesses to safely leverage a new generation of risk-carrying Internet applications.
30 May 2008
Mobile Devices Raise Security Concerns
As mobile devices like the iPhone and BlackBerry become increasingly popular among end users, enterprises are worried about ensuring the security of their data.
30 May 2008
Insider Threats Keeping IT Directors Awake At Night
The leaking of sensitive information through the email system was ranked far ahead of the threat from external hackers, according to a new study.
29 May 2008
Largest US Power Company “Vulnerable To Hacking”
The US Government Accountability Office (GAO) warned the nation’s largest public power company is vulnerable to computer hackers and terrorists ready to disrupt America’s power grid.
19 May 2008
Social Network For Hackers Launched
A computer security consultancy has set up a social network for hackers, called House of Hackers.
19 May 2008
FBI Probes Counterfeit Network Hardware
The FBI revealed the US government purchased counterfeit networking equipment that could jeopardize the security of its military and other government systems.
19 May 2008
Hackers catch a ride on Grand Theft Auto IV downloaders
Computer hackers have targeted Grand Theft Auto IV to spread destructive viruses across the web.
15 May 2008
Hackers Indicted For Stealing More Than 5,000 Account Numbers at Dave & Buster’s
A US federal grand jury has indicted three alleged hackers charged with stealing credit and debit card numbers from a national restaurant chain, Dave & Buster’s.
09 May 2008
Senators want answers on President Bush’s secret cyber security initiative
Two influential US senators are demanding more information about the so-far, ultra-secret Comprehensive National Cybersecurity Initiative (CNCI), which is being put in place to protect the nation’s infrastructure against cyber terrorists and criminals.
02 May 2008
Poor programming practices to blame for website hacks, analysts say
Security advisors have blamed sloppy work by programmers for the latest round of China-based hacker attacks on hundreds of thousands of websites.
01 May 2008
Facebook applications exposed as security risk
Speculation on the security of social networking has increased amid reports that applications on Facebook are capable of collecting personal information.
24 April 2008
Show floor security software is “snake oil”
BT’s security expert Bruce Schneier was scathing about lots of security software calling it “snake oil” in an interview this week.
23 April 2008
Jericho Forum unveils new security framework for online usage
The Jericho Forum has unveiled a new security framework for interactive business Internet users.
21 April 2008
Oklahoma Department of Corrections leaks personal data from website
Thousands of residents of Oklahoma state in the US have found their personal details have been freely available on the web for three years.
16 April 2008
Customers “clamoring”
for self-encrypting hard drives
Seagate Technology has debuted a new
breed of self-encrypting hard drives for mission-critical servers
and storage arrays.
16 April 2008
Security Officer should have more
strategic role
When it comes to defining what a Chief
Security Officer does in an enterprise think less of a corporate cop
and more of a business enabler. That was the message at the RSA Conference
from Dave Hansen, former CIO at CA and now a senior vice president
and general manager of the company’s Security Management business.
15 April 2008
Apacs says phishing scams up 200%
for first quarter
UK payments association Apacs has reported
more than 10,000 phishing incidents for the first quarter this year
- up 200% on the same quarter last year.
14 April 2008
Intel and partners working on 'Liberty
Sim' authentication
Chipmaker Intel is working on an identity
authentication system it will build into its products to provide what
it claims is vastly greater confidence in web-based transactions.
But it may be five years before it is commercially available.
14 April 2008
IT lobbying groups merge
Building a powerhouse cyber security public advocacy group, two leading technology lobbying groups, the Information technology Association of America (ITAA) and the Cyber Security Industry Alliance (CSIA), announced their intent to merge.
04 April 2008
Microsoft joins MIT Kerberos Consortium
Microsoft has joined the MIT Kerberos Consortium as a founding sponsor, joining Sun Microsystems, Google and Apple on the consortium’s executive board.
26 March 2008
US Lawmakers Upset at Breach News Delay
US lawmakers are asking why a stolen laptop, which had medical test results for 2,500 patients in a National Institute of Health study, was not encrypted.
26 March 2008
Secure Computing delivers new generation of email security appliances
Secure Computing has announced a new version of its on-premise email security product, Secure Mail (formerly known as IronMail).
25 March 2008
Tech entrepreneur takes on cybersecurity reins
The Bush Administration has tapped Silicon Valley entrepreneur Rod Beckstrom as the first Director of the National Security Center (NCSC), which was created in January.
25 March 2008
Cyber Storm 2 exercise reveals security preparedness
Cyber Storm II, the world's largest international cyber security exercise so far, ended on Friday (15 March 2008). Undoubtedly, the US Department of Homeland Security-sponsored event will report it as a resounding success and learning experience in its final report due in late summer.
20 March 2008
Sun and NSA to beef up OpenSolaris security
The US National Security Agency (NSA) and Sun Microsystems have agreed to jointly work within the OpenSolaris community to develop new security mechanisms for the operating system.
19 March 2008
IBM acquires Encentuate to extend network security offering
IBM has acquired enterprise identity and access management software firm Encentuate to extend its network security offering.
14 March 2008
Two US companies own up to breaches
On a regular basis, companies are having to own up to data breaches. HealthNow New York and MTV Networks are just the latest two making security gaffes.
14 March 2008
US Department of Homeland Security holds biggest ever cybersecurity exercise
The US Department of Homeland Security is this week conducting the largest cybersecurity exercise ever organised, with the UK participating.
11 March 2008
Financial services firms set to invest in IT risk management
Global financial firms will invest heavily this year in software to integrate risk management systems across their IT infrastructures, according to a study by Ernst & Young.
07 March 2008
Cyber security lacking at airports
Fourteen airports in the US, Canada and Asia, are using open or poorly secured wireless networks, according to a study by Gartner Mobile and wireless provider AirTight Networks.
04 March 2008
Counterfeit Cisco gear threatens network security
The seizure of £38m worth of counterfeit Cisco equipment has raised concerns over the security of networks.
29 February 2008
Federal agencies need to bolster information security
Many US federal agencies continue to experience significant information security control deficiencies
22 February 2008
Malware protection before infection
A US Department of Homeland Security-funded research program will help deliver Endeavor Security’s new method of targeting botnet and malware attacks before hosts are infected.
14 February 2008
Fewer victims of identity
fraud suffer greater losses
Cost of average incident rises by a quarter to $691
8 February 2008
Getting real
over Real ID
Analysis: No states have complied with the federal deadline
for new driving licenses, and five have refused outright. What next
for Real ID?
1 February 2008
ChoicePoint
settles class action suit for $10m
Personal data trader says SEC has concluded investigation
of three-year old data breach
25 January 2008
CIA
claims hackers attack global power grid
Analyst Ton Donahue tells SANS conference of extortion attempts
by cybercriminals
17 January 2008
Many Oracle
enterprises ignore its patches, says study
Two-thirds of attendees at US Oracle user group meetings have
never applies CPUs
14 January 2008
SANS Institute reveals
top 10 cyber threats for 2008
Trusted web sites will be exploited to spread malware, experts
believe
10 January 2008
FAA Plays Down Boeing
787 Security Concerns
Regulator points out link of passenger and operational networks
on new plane
8 January 2008
TV presenter “wrong”
after bank account scam
BBC America star hit by data theft
7 January 2008
Firefox flaw allows password hack,
says researcher
Israeli researcher says latest version of alternative browser
has problems with log-ons
7 January 2008
Flash users hit by cross-site scripting
flaw
US-Cert warns of input validation flaw
2 January 2008
Better job prospects for
infosecurity staff, says SANS
Mobile phones, social engineering and Olympics will add
to 2008 risks, according to industry
13 December 2007
US-CERT: hackers are attacking
flaw in Microsoft Access
Organisation warns of stack buffer overflow vulnerability
10 December 2007
A year of sophisticated web
threats
MP3 attachments make their debut, finds MessageLabs' security
report
7 December 2007
IBM buys Arsenal
Data protection firm follows Princeton Softech
7 December 2007
SANS: crooks turn fire on users and
custom software
Top 20 highlights spear phishing danger
29 November 2007
Government systems to be targeted
by cyber attacks
Report says UK, US and Germany state-sector bodies are likely
targets
28 November 2007
Webroot buys Email Systems
US firm promises it will support existing customers and
installations
26 November 2007
RSA standard vulnerable,
says founder
Adi Shamir says flaw in a widely-used microchip could allow
encryption to be "trivially broken"
20 November 2007
UK government loses data
on 25m Britons
HM Revenue and Customs chairman resigns over computer discs
lost in the post
15 November 2007
Google enhances Postini hosted
e-mail security offering
Search engine giant adds content-based policy option for
message-scanning
15 November 2007
Enhanced Sophos appliances block
e-mail data leaks
Hardware can scan and encrypt outbound content