<?xml version="1.0"?>
<?xml-stylesheet title="XSL_formatting" type="text/xsl" href="/_common/xslt/rss.xslt"?>
<rss version="2.0">
<channel>
<title>Infosecurity (USA) - Latest News</title>
<link>http://www.infosecurity-us.com/</link>
<description></description>
<copyright>Copyright Elsevier Ltd</copyright>
<generator>Intuitiv Ltd (www.intuitiv.net)</generator>
<lastBuildDate>Sun, 14 Mar 2010 00:24:49 GMT</lastBuildDate>
<image>
<title>Infosecurity (USA) - Latest News</title>
<link>http://www.infosecurity-us.com/</link>
<url>http://www.infosecurity-us.com/_common/img/template/infosec-us/site-logo.gif</url>
</image>
<item>
<title>US is malicious server leader, says AVG</title>
<link>http://www.infosecurity-us.com/view/8025/us-is-malicious-server-leader-says-avg/</link>
<description>The US plays host to the largest number of malicious web servers, according to a study released by anti-malware company AVG.</description>
<pubDate>Sat, 13 Mar 2010 07:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/8025/us-is-malicious-server-leader-says-avg/</guid>
</item>
<item>
<title>Aetna boots data breach class action suit</title>
<link>http://www.infosecurity-us.com/view/8024/aetna-boots-data-breach-class-action-suit/</link>
<description>Health insurer Aetna has succeeded in having a class-action lawsuit over an alleged security breach dismissed.</description>
<pubDate>Fri, 12 Mar 2010 21:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/8024/aetna-boots-data-breach-class-action-suit/</guid>
</item>
<item>
<title>Facebook users subject to yet another malware attack</title>
<link>http://www.infosecurity-us.com/view/8021/facebook-users-subject-to-yet-another-malware-attack/</link>
<description>Researchers from web security firm Websense warned Facebook users earlier today to refrain from clicking on URLs posted on the pages of some famous celebrities – or even people on their friend list – as links to alleged videos were actually portals to malware infection. </description>
<pubDate>Fri, 12 Mar 2010 20:11:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/8021/facebook-users-subject-to-yet-another-malware-attack/</guid>
</item>
<item>
<title>Russian brides attempt to thaw the ice for winter spammers</title>
<link>http://www.infosecurity-us.com/view/7994/russian-brides-attempt-to-thaw-the-ice-for-winter-spammers/</link>
<description>The latest monthly spam report shows that, regardless of the world economy, there is one item that is particularly hot this winter: Russian mail-order brides. This is according to newly released figures from McAfee.</description>
<pubDate>Thu, 11 Mar 2010 20:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7994/russian-brides-attempt-to-thaw-the-ice-for-winter-spammers/</guid>
</item>
<item>
<title>Provider takedown guts Zeus infrastructure</title>
<link>http://www.infosecurity-us.com/view/7992/provider-takedown-guts-zeus-infrastructure/</link>
<description>Yet another botnet suffered severe losses to its functionality this week, in what appears to be a growing campaign among the white hat community to take down these virulent networks. Troyak-AS, which was the upstream provider for the six worst Zeus hosting ISPs, has been taken offline.</description>
<pubDate>Thu, 11 Mar 2010 19:19:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7992/provider-takedown-guts-zeus-infrastructure/</guid>
</item>
<item>
<title>Lack of precise definitions plagues cybersecurity legislation</title>
<link>http://www.infosecurity-us.com/view/7960/lack-of-precise-definitions-plagues-cybersecurity-legislation/</link>
<description>According to one security expert, anywhere from 14 to 35 pieces of legislation aiming to effect cybersecurity are in the works, depending on how one defines its role within the genre. These bills range from comprehensive to very focused, but, as some security experts claim, they all have common drawbacks.</description>
<pubDate>Wed, 10 Mar 2010 21:51:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7960/lack-of-precise-definitions-plagues-cybersecurity-legislation/</guid>
</item>
<item>
<title>LifeLock hit with $12m settlement payment</title>
<link>http://www.infosecurity-us.com/view/7959/lifelock-hit-with-12m-settlement-payment/</link>
<description>Identity theft protection company LifeLock will pay $12 million to settle charges of false claims made over its services.</description>
<pubDate>Wed, 10 Mar 2010 21:31:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7959/lifelock-hit-with-12m-settlement-payment/</guid>
</item>
<item>
<title>Twitter launches anti-phishing offensive</title>
<link>http://www.infosecurity-us.com/view/7958/twitter-launches-antiphishing-offensive/</link>
<description>Popular micro blogging site Twitter has launched a service designed to stop phishing scams from victimizing its users. </description>
<pubDate>Wed, 10 Mar 2010 21:12:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7958/twitter-launches-antiphishing-offensive/</guid>
</item>
<item>
<title>Ubisoft servers go down, DRM blamed</title>
<link>http://www.infosecurity-us.com/view/7957/ubisoft-servers-go-down-drm-blamed/</link>
<description>Computer games giant Ubisoft had to apologize to users after its online gaming service collapsed over the weekend. Ubisoft executives said that &quot;exceptional demand&quot; was to blame for the problem before the company blamed the downtime on an attack, the following day.</description>
<pubDate>Wed, 10 Mar 2010 20:50:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7957/ubisoft-servers-go-down-drm-blamed/</guid>
</item>
<item>
<title>RSA: IdentityFinder announces social networking ID theft product </title>
<link>http://www.infosecurity-us.com/view/7945/rsa-identityfinder-announces-social-networking-id-theft-product-/</link>
<description>IdentityFinder, the identity theft prevention company, are set to offer protection for social networking sites later this year. </description>
<pubDate>Wed, 10 Mar 2010 12:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7945/rsa-identityfinder-announces-social-networking-id-theft-product-/</guid>
</item>
<item>
<title>Brocade: Half of network solutions only stop one in four network attacks</title>
<link>http://www.infosecurity-us.com/view/7925/brocade-half-of-network-solutions-only-stop-one-in-four-network-attacks/</link>
<description>Almost one in five participants at the RSA conference last week believe that their companies' security policies are being effectively enforced, according to figures released by data center fabric company Brocade. That said, at least half of them seem to be unhappy with their companies' security technology solutions.</description>
<pubDate>Wed, 10 Mar 2010 09:56:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7925/brocade-half-of-network-solutions-only-stop-one-in-four-network-attacks/</guid>
</item>
<item>
<title>Microsoft suffers continued Internet Explorer hits on patch Tuesday</title>
<link>http://www.infosecurity-us.com/view/7924/microsoft-suffers-continued-internet-explorer-hits-on-patch-tuesday/</link>
<description>Microsoft took customers through a fairly sedate patch Tuesday this week, releasing just two bulletins addressing issues in its applications. However, all did not go without a hitch, as yet another zero-day vulnerability emerged for Internet Explorer.</description>
<pubDate>Wed, 10 Mar 2010 09:51:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7924/microsoft-suffers-continued-internet-explorer-hits-on-patch-tuesday/</guid>
</item>
<item>
<title>US government not properly coordinating cybersecurity efforts, warns GAO</title>
<link>http://www.infosecurity-us.com/view/7923/us-government-not-properly-coordinating-cybersecurity-efforts-warns-gao/</link>
<description>The US government is still failing on cybersecurity thanks to a lack of clear definitions among different agencies, the US Government Accountability Office has warned.</description>
<pubDate>Tue, 09 Mar 2010 21:23:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7923/us-government-not-properly-coordinating-cybersecurity-efforts-warns-gao/</guid>
</item>
<item>
<title>Florida couple indicted for data theft</title>
<link>http://www.infosecurity-us.com/view/7880/florida-couple-indicted-for-data-theft/</link>
<description>A husband-and-wife team from Coral Gables has been indicted for the second time in a year for the theft and sale of privacy data. Authorities claim that in both cases, the couple received payments from personal injury lawyers in exchange for patients’ personal privacy data from a local ambulance company. </description>
<pubDate>Tue, 09 Mar 2010 07:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7880/florida-couple-indicted-for-data-theft/</guid>
</item>
<item>
<title>Westin is latest hotel to be hit by hackers</title>
<link>http://www.infosecurity-us.com/view/7881/westin-is-latest-hotel-to-be-hit-by-hackers/</link>
<description>In further proof that the hospitality industry is becoming a prime target for hackers, The Westin Bonaventure Hotel and Suites has admitted a likely data security breach.</description>
<pubDate>Mon, 08 Mar 2010 20:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7881/westin-is-latest-hotel-to-be-hit-by-hackers/</guid>
</item>
<item>
<title>Staff put on leave in Merion 'spy cam' case</title>
<link>http://www.infosecurity-us.com/view/7882/staff-put-on-leave-in-merion-spy-cam-case/</link>
<description>Police are reviewing pictures from web cams in the Lower Merion School District spying case, it was revealed over the weekend, as two IT staff were put on leave pending further investigation.</description>
<pubDate>Mon, 08 Mar 2010 20:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7882/staff-put-on-leave-in-merion-spy-cam-case/</guid>
</item>
<item>
<title>Weekly Brief, March 8, 2010</title>
<link>http://www.infosecurity-us.com/view/7871/weekly-brief-march-8-2010/</link>
<description>Infosecurity US rounds up the significant events from the last week.</description>
<pubDate>Mon, 08 Mar 2010 18:47:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7871/weekly-brief-march-8-2010/</guid>
</item>
<item>
<title>RSA rewind: National security heavyweights talk cybersecurity</title>
<link>http://www.infosecurity-us.com/view/7837/rsa-rewind-national-security-heavyweights-talk-cybersecurity/</link>
<description>In what may have been the most star-studded event of last week’s RSA Conference in San Francisco, a panel of experts gathered during one keynote to discuss how governments can come together to combat cybersecurity threats without compromising individual liberties. </description>
<pubDate>Mon, 08 Mar 2010 07:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7837/rsa-rewind-national-security-heavyweights-talk-cybersecurity/</guid>
</item>
<item>
<title>(ISC)&#178; survey shows IT professionals weathered the recession in fairly good shape</title>
<link>http://www.infosecurity-us.com/view/7836/isc-survey-shows-it-professionals-weathered-the-recession-in-fairly-good-shape/</link>
<description>Although the IT profession is not exactly immune from recent economic troubles, freshly revealed polling results from (ISC)&#178; – the non-profit IT security trade group – indicate that security personnel are still in demand and, for the most part, gainfully employed. </description>
<pubDate>Fri, 05 Mar 2010 22:31:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7836/isc-survey-shows-it-professionals-weathered-the-recession-in-fairly-good-shape/</guid>
</item>
<item>
<title>RSA: Napolitano issues DHS national cybersecurity challenge to security community</title>
<link>http://www.infosecurity-us.com/view/7797/rsa-napolitano-issues-dhs-national-cybersecurity-challenge-to-security-community/</link>
<description>Department of Homeland Security Secretary Janet Napolitano delivered one of the Wednesday keynote addresses, which focused on cybersecurity, at this year’s RSA Conference in San Francisco. She would close her remarks by issuing a challenge to the security community to help raise public awareness of cybersecurity issues. </description>
<pubDate>Thu, 04 Mar 2010 00:36:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7797/rsa-napolitano-issues-dhs-national-cybersecurity-challenge-to-security-community/</guid>
</item>
<item>
<title>RSA: (ISC)&#178; cyber security awareness for kids </title>
<link>http://www.infosecurity-us.com/view/7796/rsa-isc-cyber-security-awareness-for-kids-/</link>
<description>At the RSA Conference 2010 in San Francisco, (ISC)&#178;,Microsoft, and RSA conference co-sponsor a session to train member volunteers for its Safe and Secure online programme.</description>
<pubDate>Wed, 03 Mar 2010 19:50:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7796/rsa-isc-cyber-security-awareness-for-kids-/</guid>
</item>
<item>
<title>RSA: Qualys teams with Imperva on website security</title>
<link>http://www.infosecurity-us.com/view/7794/rsa-qualys-teams-with-imperva-on-website-security/</link>
<description>Hard on the heels of announcing a free website infection scanning service, Qualys has teamed up with fellow IT security vendor Imperva to integrate some of their respective software offerings.</description>
<pubDate>Wed, 03 Mar 2010 18:57:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7794/rsa-qualys-teams-with-imperva-on-website-security/</guid>
</item>
<item>
<title>RSA: Solera networks partners with EMC </title>
<link>http://www.infosecurity-us.com/view/7762/rsa-solera-networks-partners-with-emc-/</link>
<description>Active network forensics company Solera Networks announced its partnership with EMC at RSA Conference 2010 on March 2 in San Francisco. </description>
<pubDate>Wed, 03 Mar 2010 00:53:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7762/rsa-solera-networks-partners-with-emc-/</guid>
</item>
<item>
<title>Hot topic at RSA: The pitfalls and promise of social networking</title>
<link>http://www.infosecurity-us.com/view/7761/hot-topic-at-rsa-the-pitfalls-and-promise-of-social-networking/</link>
<description>A unique panel session convened at the RSA Conference in San Francisco today to discuss the pros and cons of social networking on the job, specifically by the under-30 set. </description>
<pubDate>Tue, 02 Mar 2010 22:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7761/hot-topic-at-rsa-the-pitfalls-and-promise-of-social-networking/</guid>
</item>
<item>
<title>RSA: Schmidt announces transparent national US cybersecurity strategy</title>
<link>http://www.infosecurity-us.com/view/7760/rsa-schmidt-announces-transparent-national-us-cybersecurity-strategy/</link>
<description>Howard Schmidt, Cyber security advisor to President Obama, announced the launch of www.whitehouse.org/cybersecurity - a brand new web page launched to prove the commitment of the US government to its transparent cybersecurity strategy - during his keynote at RSA conference 2010 in San Francisco. </description>
<pubDate>Tue, 02 Mar 2010 21:53:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7760/rsa-schmidt-announces-transparent-national-us-cybersecurity-strategy/</guid>
</item>
<item>
<title>RSA: Microsoft reveal plans for a safer internet  </title>
<link>http://www.infosecurity-us.com/view/7758/rsa-microsoft-reveal-plans-for-a-safer-internet-/</link>
<description>In his keynote address at the RSA Conference 2010 in San Francisco, Scott Charney, corporate vice president of Microsoft’s Trustworthy Computing Group, outlined how Microsoft will apply its end to end trust vision to cloud computing. </description>
<pubDate>Tue, 02 Mar 2010 20:51:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7758/rsa-microsoft-reveal-plans-for-a-safer-internet-/</guid>
</item>
<item>
<title>RSA: Securing cloud computing is industry responsibility says Art Coviello</title>
<link>http://www.infosecurity-us.com/view/7755/rsa-securing-cloud-computing-is-industry-responsibility-says-art-coviello/</link>
<description>In his keynote at RSA 2010, San Francisco, RSA President Art Coviello spoke of the industry’s latest and greatest challenge: securing cloud computing. </description>
<pubDate>Tue, 02 Mar 2010 18:37:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7755/rsa-securing-cloud-computing-is-industry-responsibility-says-art-coviello/</guid>
</item>
<item>
<title>RSA: M86 introduces one-stop appliance technology and launches into cloud</title>
<link>http://www.infosecurity-us.com/view/7754/rsa-m86-introduces-onestop-appliance-technology-and-launches-into-cloud/</link>
<description>M86 Security has taken the wraps off a one-stop integrated security appliance that combines its threat analysis technology with a drill-down dashboard interface. At the same time the company has extended its web gateway technology into the cloud computing environment.</description>
<pubDate>Tue, 02 Mar 2010 18:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7754/rsa-m86-introduces-onestop-appliance-technology-and-launches-into-cloud/</guid>
</item>
<item>
<title>RSA: PCI DSS survey shows that encryption is tops when it comes to end-to-end security</title>
<link>http://www.infosecurity-us.com/view/7752/rsa-pci-dss-survey-shows-that-encryption-is-tops-when-it-comes-to-endtoend-security/</link>
<description>According to a survey of qualified security assessors (QSA), the optimum methodology for end-to-end security protection is encryption.</description>
<pubDate>Tue, 02 Mar 2010 17:41:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7752/rsa-pci-dss-survey-shows-that-encryption-is-tops-when-it-comes-to-endtoend-security/</guid>
</item>
<item>
<title>RSA: Check Point unveils secure USB drive technology</title>
<link>http://www.infosecurity-us.com/view/7751/rsa-check-point-unveils-secure-usb-drive-technology/</link>
<description>Check Point Software Technologies has taken the wraps off a secure USB drive system. Known as Abra, the unit is designed to offer PC or Windows-based terminal users a secure virtualised workspace that is highly portable between machines.</description>
<pubDate>Tue, 02 Mar 2010 17:35:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7751/rsa-check-point-unveils-secure-usb-drive-technology/</guid>
</item>
<item>
<title>Veracode report exposes application security failures</title>
<link>http://www.infosecurity-us.com/view/7721/veracode-report-exposes-application-security-failures/</link>
<description>According to the Veracode ‘State of Software Security’ report, between 58 and 88 percent of all applications submitted to Veracode for verification did not achieve an acceptable security score upon first submission. The exact percentage depends on the standard applied, based on application criticality. </description>
<pubDate>Tue, 02 Mar 2010 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7721/veracode-report-exposes-application-security-failures/</guid>
</item>
<item>
<title>Time for cloud computing says Webroot CTO</title>
<link>http://www.infosecurity-us.com/view/7716/time-for-cloud-computing-says-webroot-cto/</link>
<description>Gerhard Eschelbeck, CTO of Webroot, tells Infosecurity’s Eleanor Dallaway that “2010 is the right time to engage in cloud computing”, as they catch up in Silicon Valley.</description>
<pubDate>Mon, 01 Mar 2010 20:18:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7716/time-for-cloud-computing-says-webroot-cto/</guid>
</item>
<item>
<title>RSA: Qualys introduces free malware detection </title>
<link>http://www.infosecurity-us.com/view/7696/rsa-qualys-introduces-free-malware-detection-/</link>
<description>Qualys has become the first on-demand network and site vulnerability company to launch a free malware detection service, designed to protect websites from malicious activities and stop visitors from being infected by malware.</description>
<pubDate>Mon, 01 Mar 2010 12:35:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7696/rsa-qualys-introduces-free-malware-detection-/</guid>
</item>
<item>
<title>Mykonos to launch counter-hacker tool</title>
<link>http://www.infosecurity-us.com/view/7648/mykonos-to-launch-counterhacker-tool/</link>
<description>Web application security company Mykonos Software has launched an appliance designed to watch what hackers are doing and take counter measures to confuse and divert them.</description>
<pubDate>Fri, 26 Feb 2010 00:35:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7648/mykonos-to-launch-counterhacker-tool/</guid>
</item>
<item>
<title>Microsoft topples Waledec botnet, for now</title>
<link>http://www.infosecurity-us.com/view/7649/microsoft-topples-waledec-botnet-for-now/</link>
<description>The Waledec network is down – at least temporarily – thanks to an injunction sought by Microsoft and awarded by a federal judge, forcing registrars to shut down command-and-control domains. </description>
<pubDate>Fri, 26 Feb 2010 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7649/microsoft-topples-waledec-botnet-for-now/</guid>
</item>
<item>
<title>X-Force: Document vulnerabilities on the rise</title>
<link>http://www.infosecurity-us.com/view/7650/xforce-document-vulnerabilities-on-the-rise/</link>
<description>Adobe's PDF document format continued to take a bashing this week, after a report from IBM's X-Force security consulting arm singled out readers supporting the software company's de facto standard document format as a particular security worry.</description>
<pubDate>Fri, 26 Feb 2010 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7650/xforce-document-vulnerabilities-on-the-rise/</guid>
</item>
<item>
<title>FTC warns organizations about data breach risks from P2P file sharing</title>
<link>http://www.infosecurity-us.com/view/7638/ftc-warns-organizations-about-data-breach-risks-from-p2p-file-sharing/</link>
<description>The Federal Trade Commission sent letters to nearly 100 organizations this week, warning them that customer and/or employee data are currently available on P2P networks according to its recent probe. </description>
<pubDate>Thu, 25 Feb 2010 15:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7638/ftc-warns-organizations-about-data-breach-risks-from-p2p-file-sharing/</guid>
</item>
<item>
<title>Researchers identify anonymous users through web browser history and social networks</title>
<link>http://www.infosecurity-us.com/view/7605/researchers-identify-anonymous-users-through-web-browser-history-and-social-networks/</link>
<description>Researchers have combined stolen web browser history data with membership of social networking groups to identify large numbers of users who would otherwise be anonymous, it was revealed this week.</description>
<pubDate>Thu, 25 Feb 2010 00:35:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7605/researchers-identify-anonymous-users-through-web-browser-history-and-social-networks/</guid>
</item>
<item>
<title>Comcast will transition to DNSSEC </title>
<link>http://www.infosecurity-us.com/view/7606/comcast-will-transition-to-dnssec-/</link>
<description>Following an 18-month testing period, giant US ISP Comcast has announced plans to transition to the DNSSEC secure DNS standard by the end of next year. </description>
<pubDate>Thu, 25 Feb 2010 00:24:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7606/comcast-will-transition-to-dnssec-/</guid>
</item>
<item>
<title>Understaffed companies putting IT security at risk, says Symantec</title>
<link>http://www.infosecurity-us.com/view/7567/understaffed-companies-putting-it-security-at-risk-says-symantec/</link>
<description>A lack of IT staff resources is hindering corporate security, according to a study released by Symantec this week. And companies are exacerbating the issue by embarking on new IT projects that create security problems.</description>
<pubDate>Wed, 24 Feb 2010 00:33:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7567/understaffed-companies-putting-it-security-at-risk-says-symantec/</guid>
</item>
<item>
<title>Adobe fixes Adobe Download Manager flaw – by deleting the software</title>
<link>http://www.infosecurity-us.com/view/7569/adobe-fixes-adobe-download-manager-flaw-by-deleting-the-software/</link>
<description>Adobe has taken the easy option to fix the zero-day remote execution flaw discovered in its Adobe Download Manager last week. It advised users to simply delete the software so that it wouldn't come back again.</description>
<pubDate>Wed, 24 Feb 2010 00:27:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7569/adobe-fixes-adobe-download-manager-flaw-by-deleting-the-software/</guid>
</item>
<item>
<title>Intel targeted by January cyberattack</title>
<link>http://www.infosecurity-us.com/view/7568/intel-targeted-by-january-cyberattack/</link>
<description>Intel was the target of a concerned cyberattack in January – around the same time that Google identified the Operation Aurora attack, according to a 10-K filing that the chip maker made to the SEC.</description>
<pubDate>Wed, 24 Feb 2010 00:10:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7568/intel-targeted-by-january-cyberattack/</guid>
</item>
<item>
<title>Rutgers team demonstrates new smart phone security threat</title>
<link>http://www.infosecurity-us.com/view/7566/rutgers-team-demonstrates-new-smart-phone-security-threat/</link>
<description>A team of investigators at Rutgers University has revealed research indicating that smart phones can be compromised by sophisticated rootkits. </description>
<pubDate>Tue, 23 Feb 2010 20:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7566/rutgers-team-demonstrates-new-smart-phone-security-threat/</guid>
</item>
<item>
<title>No expectation of privacy for P2P files says 9th Circuit Court of Appeals</title>
<link>http://www.infosecurity-us.com/view/7554/no-expectation-of-privacy-for-p2p-files-says-9th-circuit-court-of-appeals/</link>
<description>A Nevada man had his appeal of a child pornography conviction denied last week by the 9th Circuit Court in San Francisco. The defendant, Charles A. Borowy, claimed that his fourth amendment right prohibiting unlawful search and seizure was violated by an FBI agent who downloaded and viewed files from the man’s computer using the LimeWire P2P service. </description>
<pubDate>Tue, 23 Feb 2010 15:16:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7554/no-expectation-of-privacy-for-p2p-files-says-9th-circuit-court-of-appeals/</guid>
</item>
<item>
<title>Weekly brief February 22, 2009</title>
<link>http://www.infosecurity-us.com/view/7529/weekly-brief-february-22-2009/</link>
<description>Infosecurity rounds up some of the week's security news</description>
<pubDate>Tue, 23 Feb 2010 08:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7529/weekly-brief-february-22-2009/</guid>
</item>
<item>
<title>Spybot worm spreads via direct P2P file sharing</title>
<link>http://www.infosecurity-us.com/view/7528/spybot-worm-spreads-via-direct-p2p-file-sharing/</link>
<description>Researchers have identified Spybot.AKB, a worm that spreads across P2P networks and email systems.</description>
<pubDate>Mon, 22 Feb 2010 23:32:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7528/spybot-worm-spreads-via-direct-p2p-file-sharing/</guid>
</item>
<item>
<title>Pennsylvania school district hit by injunction, FBI investigation after web cam incident</title>
<link>http://www.infosecurity-us.com/view/7527/pennsylvania-school-district-hit-by-injunction-fbi-investigation-after-web-cam-incident/</link>
<description>A federal judge has ordered a suburban Philadelphia school not to reactivate a security system that enabled it to monitor students in their homes without their knowledge. The judge made the emergency ruling after a student sued the school, alleging an invasion of privacy after someone at the school took a picture of him in his home.</description>
<pubDate>Mon, 22 Feb 2010 22:41:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7527/pennsylvania-school-district-hit-by-injunction-fbi-investigation-after-web-cam-incident/</guid>
</item>
<item>
<title>Fortify and HP attack hybrid web software testing market</title>
<link>http://www.infosecurity-us.com/view/7524/fortify-and-hp-attack-hybrid-web-software-testing-market/</link>
<description>Fortify Software and HP have teamed up to release Hybrid 2.0, a tool designed to test web applications for security flaws.</description>
<pubDate>Mon, 22 Feb 2010 22:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7524/fortify-and-hp-attack-hybrid-web-software-testing-market/</guid>
</item>
<item>
<title>PGP upgrades encryption and key management server porfolio</title>
<link>http://www.infosecurity-us.com/view/7491/pgp-upgrades-encryption-and-key-management-server-porfolio/</link>
<description>PGP has released a new version of its Key Management Server designed to pull together disparate key management systems for enterprise customers.</description>
<pubDate>Mon, 22 Feb 2010 08:27:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7491/pgp-upgrades-encryption-and-key-management-server-porfolio/</guid>
</item>
<item>
<title>Adobe download manager row escalates with new vulnerability</title>
<link>http://www.infosecurity-us.com/view/7490/adobe-download-manager-row-escalates-with-new-vulnerability/</link>
<description>Adobe continued to fight fires on the security front last week, as a researcher discovered a second flaw in its Adobe Download Manager software tool.</description>
<pubDate>Mon, 22 Feb 2010 08:21:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7490/adobe-download-manager-row-escalates-with-new-vulnerability/</guid>
</item>
<item>
<title>School linked to Operation Aurora attack is tied indirectly to hacktivist group</title>
<link>http://www.infosecurity-us.com/view/7486/school-linked-to-operation-aurora-attack-is-tied-indirectly-to-hacktivist-group/</link>
<description>Two schools in China have been linked to the Operation Aurora attack that targeted Google and other companies last year – and one of them has been tied to a national network of hacktivist groups.</description>
<pubDate>Fri, 19 Feb 2010 21:46:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7486/school-linked-to-operation-aurora-attack-is-tied-indirectly-to-hacktivist-group/</guid>
</item>
<item>
<title>PleaseRobMe gathers web 2.0 data to make a point</title>
<link>http://www.infosecurity-us.com/view/7444/pleaserobme-gathers-web-20-data-to-make-a-point/</link>
<description>A playful new website is trying to raise awareness about personal and home security issues online. PleaseRobMe gathers location information from web 2.0 websites that geotag content for mobile users, presenting them as a list of users who are not at home.</description>
<pubDate>Thu, 18 Feb 2010 23:46:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7444/pleaserobme-gathers-web-20-data-to-make-a-point/</guid>
</item>
<item>
<title>Zeus gang hits 75 000 computers</title>
<link>http://www.infosecurity-us.com/view/7443/zeus-gang-hits-75-000-computers/</link>
<description>The same criminal gang that targeted government and military computers with its malware has also infected 75 000 computers in almost 200 countries with a virulent strain of the banking trojan, according to research from network monitoring company NetWitness.</description>
<pubDate>Thu, 18 Feb 2010 22:33:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7443/zeus-gang-hits-75-000-computers/</guid>
</item>
<item>
<title>New York State holds software developers accountable</title>
<link>http://www.infosecurity-us.com/view/7442/new-york-state-holds-software-developers-accountable/</link>
<description>The state of New York is proposing language for inclusion in procurement documents that it hopes will help to enforce secure application development practices among suppliers.</description>
<pubDate>Thu, 18 Feb 2010 21:53:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7442/new-york-state-holds-software-developers-accountable/</guid>
</item>
<item>
<title>Spam, shortened URLs, and software vulnerabilities highlight latest security threat report</title>
<link>http://www.infosecurity-us.com/view/7445/spam-shortened-urls-and-software-vulnerabilities-highlight-latest-security-threat-report/</link>
<description>Rebounding spam traffic, increased use of shortened URLs to deliver malicious payloads, and continued vulnerabilities among some of the most popular software applications were among the most serious security threats over the last six months 2009 according to data from M86 Security. </description>
<pubDate>Thu, 18 Feb 2010 19:59:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7445/spam-shortened-urls-and-software-vulnerabilities-highlight-latest-security-threat-report/</guid>
</item>
<item>
<title>US loses cyberwarfare game</title>
<link>http://www.infosecurity-us.com/view/7412/us-loses-cyberwarfare-game/</link>
<description>A simulated cyber attack has shown once again that the US is unprepared for cyberwarfare, a year after the federal government conducted an extensive review of its cyber security stance.</description>
<pubDate>Thu, 18 Feb 2010 00:54:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7412/us-loses-cyberwarfare-game/</guid>
</item>
<item>
<title>Security groups outline top 25 programming errors for 2010</title>
<link>http://www.infosecurity-us.com/view/7413/security-groups-outline-top-25-programming-errors-for-2010/</link>
<description>The SANS Institute and Mitre have come together to update their annual list of top 25 software programming security bugs. SQL injection is the number one danger to software customers, according to the organizations.</description>
<pubDate>Thu, 18 Feb 2010 00:30:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7413/security-groups-outline-top-25-programming-errors-for-2010/</guid>
</item>
<item>
<title>3000 Small Dog Electronics customers' credit card details compromised</title>
<link>http://www.infosecurity-us.com/view/7411/3000-small-dog-electronics-customers-credit-card-details-compromised/</link>
<description>Electronics retailer Small Dog Electronics has suffered from a systems breach that left 3000 customers' credit card details compromised.</description>
<pubDate>Thu, 18 Feb 2010 00:18:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7411/3000-small-dog-electronics-customers-credit-card-details-compromised/</guid>
</item>
<item>
<title>Hotmail outage leads to contaminated search results</title>
<link>http://www.infosecurity-us.com/view/7409/hotmail-outage-leads-to-contaminated-search-results/</link>
<description>Yesterday’s outage of Windows Live caused a disruption in the web-based Hotmail email service. This presented a golden opportunity for online crooks to poison search results related to the incident. </description>
<pubDate>Wed, 17 Feb 2010 20:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7409/hotmail-outage-leads-to-contaminated-search-results/</guid>
</item>
<item>
<title>Comodo unveils Chromium-based browser</title>
<link>http://www.infosecurity-us.com/view/7362/comodo-unveils-chromiumbased-browser/</link>
<description>Internet security software and whitelisting firm Comodo has unveiled a secure browser designed to compete with Google's Chrome.</description>
<pubDate>Tue, 16 Feb 2010 22:32:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7362/comodo-unveils-chromiumbased-browser/</guid>
</item>
<item>
<title>Symantec to unveil data indexing technology</title>
<link>http://www.infosecurity-us.com/view/7361/symantec-to-unveil-data-indexing-technology/</link>
<description>At the RSA security show next month, Symantec will unveil a data indexing technology designed to identify the owners of files by querying enterprise storage systems. Called Data Insight, the product will have multiple applications, including cost reduction, data leakage prevention, and even IT forensics.</description>
<pubDate>Tue, 16 Feb 2010 22:23:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7361/symantec-to-unveil-data-indexing-technology/</guid>
</item>
<item>
<title>New Hampshire seeks to outlaw biometric IDs</title>
<link>http://www.infosecurity-us.com/view/7360/new-hampshire-seeks-to-outlaw-biometric-ids/</link>
<description>Some Granite State lawmakers are not too keen on the use biometric data for identity verification, as the New Hampshire House of Representatives is currently considering a bill that would block its use in nearly all state- and privately issued identification. </description>
<pubDate>Tue, 16 Feb 2010 19:36:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7360/new-hampshire-seeks-to-outlaw-biometric-ids/</guid>
</item>
<item>
<title>Weekly brief February 16, 2009</title>
<link>http://www.infosecurity-us.com/view/7322/weekly-brief-february-16-2009/</link>
<description>Infosecurity covers the news that didn't make it into our top stories last week.</description>
<pubDate>Tue, 16 Feb 2010 00:40:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7322/weekly-brief-february-16-2009/</guid>
</item>
<item>
<title>Military and intelligence personnel targeted again by Zeus trojan</title>
<link>http://www.infosecurity-us.com/view/7320/military-and-intelligence-personnel-targeted-again-by-zeus-trojan/</link>
<description>Some rather industrious spammers have targeted military and intelligence employees for the second time in a week. But this time they used the pretense of the previous attack in an attempt to deliver the Zeus trojan.</description>
<pubDate>Mon, 15 Feb 2010 23:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7320/military-and-intelligence-personnel-targeted-again-by-zeus-trojan/</guid>
</item>
<item>
<title>Adobe issues another out-of-band patch</title>
<link>http://www.infosecurity-us.com/view/7296/adobe-issues-another-outofband-patch/</link>
<description>Adobe  plans an out-of-band patch to resolve yet another critical security flaw across multiple products.</description>
<pubDate>Mon, 15 Feb 2010 08:37:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7296/adobe-issues-another-outofband-patch/</guid>
</item>
<item>
<title>Microsoft patch causes blue screen of death on infected machines</title>
<link>http://www.infosecurity-us.com/view/7295/microsoft-patch-causes-blue-screen-of-death-on-infected-machines/</link>
<description>Microsoft found itself in patch hell this week, withdrawing an update resolving an important vulnerability in Windows. The company found that some users infected with malware experienced problems restarting their machines after installing the bug fix. </description>
<pubDate>Fri, 12 Feb 2010 19:12:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7295/microsoft-patch-causes-blue-screen-of-death-on-infected-machines/</guid>
</item>
<item>
<title>Google Buzz attacked for privacy violation</title>
<link>http://www.infosecurity-us.com/view/7288/google-buzz-attacked-for-privacy-violation/</link>
<description>Google was fighting security, privacy, and censorship issues this week following the launch of Buzz, its social networking service. As Iran reportedly shut down Gmail, others reported that the service was revealing who Buzz users had the most contact with, leading to potential personal security issues.</description>
<pubDate>Fri, 12 Feb 2010 17:38:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7288/google-buzz-attacked-for-privacy-violation/</guid>
</item>
<item>
<title>US to be hit by simulated cyberattack</title>
<link>http://www.infosecurity-us.com/view/7285/us-to-be-hit-by-simulated-cyberattack/</link>
<description>On Tuesday, the US will undergo a simulated cyberattack to help policymakers decide how well the country would cope.</description>
<pubDate>Fri, 12 Feb 2010 16:54:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7285/us-to-be-hit-by-simulated-cyberattack/</guid>
</item>
<item>
<title>Warnings issued for Valentine’s spam and malware</title>
<link>http://www.infosecurity-us.com/view/7257/warnings-issued-for-valentines-spam-and-malware/</link>
<description>As is often the case around major holidays, especially those where giving gifts seems compulsory, most major security vendors are warning about scam emails focused on Valentine’s Day. </description>
<pubDate>Thu, 11 Feb 2010 21:47:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7257/warnings-issued-for-valentines-spam-and-malware/</guid>
</item>
<item>
<title>Mozilla backtracks on add-on malware claim</title>
<link>http://www.infosecurity-us.com/view/7252/mozilla-backtracks-on-addon-malware-claim/</link>
<description>Mozilla has apologized for its existing apology concerning a malware-infected add-on for Firefox. Last week, the company reported that a second experimental add-on for the browser had been infected by malware. After working with McAfee, it now says that the detection was a false positive.</description>
<pubDate>Thu, 11 Feb 2010 17:15:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7252/mozilla-backtracks-on-addon-malware-claim/</guid>
</item>
<item>
<title>Pump-and-dump hacker pleads guilty</title>
<link>http://www.infosecurity-us.com/view/7251/pumpanddump-hacker-pleads-guilty/</link>
<description>An Indian resident has pleaded guilty to conspiracy and aggravated identity theft after engineering an international fraud scheme to hack online brokerage accounts in the US.</description>
<pubDate>Thu, 11 Feb 2010 17:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7251/pumpanddump-hacker-pleads-guilty/</guid>
</item>
<item>
<title>Nigerian government uses music in cybercrime fight</title>
<link>http://www.infosecurity-us.com/view/7244/nigerian-government-uses-music-in-cybercrime-fight/</link>
<description>The Nigerian Government is working with Microsoft on a public awareness program that uses music to fight cybercrime in the country.</description>
<pubDate>Thu, 11 Feb 2010 15:42:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7244/nigerian-government-uses-music-in-cybercrime-fight/</guid>
</item>
<item>
<title>Three botnets responsible for half of all computer infections</title>
<link>http://www.infosecurity-us.com/view/7242/three-botnets-responsible-for-half-of-all-computer-infections/</link>
<description>Fewer botnets are becoming responsible for more infected machines, according to a report from McAfee. </description>
<pubDate>Thu, 11 Feb 2010 15:29:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7242/three-botnets-responsible-for-half-of-all-computer-infections/</guid>
</item>
<item>
<title>Number of victims grows for BlueCross data breach</title>
<link>http://www.infosecurity-us.com/view/7241/number-of-victims-grows-for-bluecross-data-breach/</link>
<description>The number of victims affected by a data theft from Chattanooga-based health insurer BlueCross BlueShield has ballooned, following a decision by the company to notify family members of customers that are covered by a group plan.</description>
<pubDate>Thu, 11 Feb 2010 15:20:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7241/number-of-victims-grows-for-bluecross-data-breach/</guid>
</item>
<item>
<title>SpyEye continues battle of the botnets</title>
<link>http://www.infosecurity-us.com/view/7218/spyeye-continues-battle-of-the-botnets/</link>
<description>Researchers have identified another example of a botnet that attempts to neutralize other botnet software. Peter Coogan, a researcher at Symantec, noticed a crimeware toolkit from Russia called SpyEye, which appears to neutralize the competing Zeus crimeware kit.</description>
<pubDate>Thu, 11 Feb 2010 00:24:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7218/spyeye-continues-battle-of-the-botnets/</guid>
</item>
<item>
<title>Government employees targeted by Zeus trojan </title>
<link>http://www.infosecurity-us.com/view/7215/government-employees-targeted-by-zeus-trojan-/</link>
<description>Defense and intelligence agencies in the US and UK were among the intended targets of a Zeus trojan campaign, according to findings by Websense. </description>
<pubDate>Wed, 10 Feb 2010 20:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7215/government-employees-targeted-by-zeus-trojan-/</guid>
</item>
<item>
<title>Identity fraud soars in US as criminals get more sophisticated</title>
<link>http://www.infosecurity-us.com/view/7216/identity-fraud-soars-in-us-as-criminals-get-more-sophisticated/</link>
<description>Identity fraud in the United States has risen to an all time high, according to a report from Javelin Strategy and Research. The 2010 Identity Fraud Survey Report reveals that the number of identity fraud victims in the country has risen by the highest amount in a single year since the survey started seven years ago.</description>
<pubDate>Wed, 10 Feb 2010 20:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7216/identity-fraud-soars-in-us-as-criminals-get-more-sophisticated/</guid>
</item>
<item>
<title>Adobe sorry for late Flash bug patch</title>
<link>http://www.infosecurity-us.com/view/7185/adobe-sorry-for-late-flash-bug-patch/</link>
<description>Adobe has apologized for a bug in its Flash Player that it has only just patched, 16 months after it was originally filed.</description>
<pubDate>Wed, 10 Feb 2010 11:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7185/adobe-sorry-for-late-flash-bug-patch/</guid>
</item>
<item>
<title>Stakkato to be tried in Sweden for Cisco hack</title>
<link>http://www.infosecurity-us.com/view/7184/stakkato-to-be-tried-in-sweden-for-cisco-hack/</link>
<description>The US Government has handed over responsibility for the trial of a young hacker accused of stealing Cisco source code to Sweden, his home country.</description>
<pubDate>Wed, 10 Feb 2010 10:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7184/stakkato-to-be-tried-in-sweden-for-cisco-hack/</guid>
</item>
<item>
<title>ENISA issues ‘golden rules’ for mobile social networking </title>
<link>http://www.infosecurity-us.com/view/7183/enisa-issues-golden-rules-for-mobile-social-networking-/</link>
<description>Today the European Network and Information Security Agency (ENISA) released a report on social networking via mobile devices. In honor of Safer Internet Day, and in an effort to remain unencumbered by our location here in the US, Infosecurity would like to share ENISA’s tips for more secure navigation of mobile social media. </description>
<pubDate>Tue, 09 Feb 2010 20:22:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7183/enisa-issues-golden-rules-for-mobile-social-networking-/</guid>
</item>
<item>
<title>IT spending poised for increase in President Obama’s proposed 2011 budget</title>
<link>http://www.infosecurity-us.com/view/7177/it-spending-poised-for-increase-in-president-obamas-proposed-2011-budget/</link>
<description>Infosecurity reviewed spending on IT investments in President Obama’s proposed fiscal year 2011 budget. The Administration claims it will continue to support increased IT and information security outlays, but a look at IT spending from 2009 through the projected 2011 budget does not exactly support this assertion.  </description>
<pubDate>Tue, 09 Feb 2010 16:28:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7177/it-spending-poised-for-increase-in-president-obamas-proposed-2011-budget/</guid>
</item>
<item>
<title>Penn State researchers hinder worm propagation</title>
<link>http://www.infosecurity-us.com/view/7122/penn-state-researchers-hinder-worm-propagation/</link>
<description>Researchers at Penn State University have devised an algorithm designed to slow down the kind of rapidly-spreading network worm that can infect large portions of the internet quickly.</description>
<pubDate>Mon, 08 Feb 2010 20:32:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7122/penn-state-researchers-hinder-worm-propagation/</guid>
</item>
<item>
<title>IRS phishing scam targets corporate email</title>
<link>http://www.infosecurity-us.com/view/7121/irs-phishing-scam-targets-corporate-email/</link>
<description>Security firm eSoft is warning clients about an IRS phishing con that is specifically targeting businesses and corporate email accounts.</description>
<pubDate>Mon, 08 Feb 2010 19:12:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7121/irs-phishing-scam-targets-corporate-email/</guid>
</item>
<item>
<title>Research shows China was the internet’s largest malware source in January</title>
<link>http://www.infosecurity-us.com/view/7120/research-shows-china-was-the-internets-largest-malware-source-in-january/</link>
<description>A report from security vendor Kaspersky Lab shows that malware originating from China topped its monthly report of digital pollution providers, broken down by country of origin, for January 2010. </description>
<pubDate>Mon, 08 Feb 2010 17:19:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7120/research-shows-china-was-the-internets-largest-malware-source-in-january/</guid>
</item>
<item>
<title>Microsoft prepares for patch Tuesday</title>
<link>http://www.infosecurity-us.com/view/7118/microsoft-prepares-for-patch-tuesday/</link>
<description>Microsoft will not be patching last week's Internet Explorer vulnerability with this month's patch Tuesday releases, which are scheduled for tomorrow.</description>
<pubDate>Mon, 08 Feb 2010 17:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7118/microsoft-prepares-for-patch-tuesday/</guid>
</item>
<item>
<title>Weekly Brief, February 8, 2009</title>
<link>http://www.infosecurity-us.com/view/7111/weekly-brief-february-8-2009/</link>
<description>Infosecurity rounds up the week's news</description>
<pubDate>Mon, 08 Feb 2010 16:29:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7111/weekly-brief-february-8-2009/</guid>
</item>
<item>
<title>iPhone backup cracker launched</title>
<link>http://www.infosecurity-us.com/view/7085/iphone-backup-cracker-launched/</link>
<description>Moscow-based password cracking software company ElcomSoft has released a password breaker for iPhone backups.</description>
<pubDate>Fri, 05 Feb 2010 21:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7085/iphone-backup-cracker-launched/</guid>
</item>
<item>
<title>Firefox pulls two infected add-ons from site</title>
<link>http://www.infosecurity-us.com/view/7084/firefox-pulls-two-infected-addons-from-site/</link>
<description>Mozilla has had to pull two experimental add-ons for the Firefox browser from its website. The add-ons, which somehow made it through the quality control process, target Windows users with trojan malware.</description>
<pubDate>Fri, 05 Feb 2010 20:36:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7084/firefox-pulls-two-infected-addons-from-site/</guid>
</item>
<item>
<title>Infosecurity virtual conference on end point security offers a range of expert viewpoints</title>
<link>http://www.infosecurity-us.com/view/7078/infosecurity-virtual-conference-on-end-point-security-offers-a-range-of-expert-viewpoints/</link>
<description>Infosecurity is pleased to report that a prestigious array of presenters have been lined up for the latest virtual conference, due to take place on February 25.</description>
<pubDate>Fri, 05 Feb 2010 16:27:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7078/infosecurity-virtual-conference-on-end-point-security-offers-a-range-of-expert-viewpoints/</guid>
</item>
<item>
<title>Post reports on partnership between Google and the NSA to prevent cyberattacks</title>
<link>http://www.infosecurity-us.com/view/7044/post-reports-on-partnership-between-google-and-the-nsa-to-prevent-cyberattacks/</link>
<description>An article in today’s Washington Post uncovers a somewhat hush-hush collaboration between Google and the National Security Agency in an effort to prevent future cyberattacks.</description>
<pubDate>Thu, 04 Feb 2010 21:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7044/post-reports-on-partnership-between-google-and-the-nsa-to-prevent-cyberattacks/</guid>
</item>
<item>
<title>US named country with most malware</title>
<link>http://www.infosecurity-us.com/view/7043/us-named-country-with-most-malware/</link>
<description>Information security and data protection vendor Sophos has released a list of the top 10 countries hosting malware. The report reveals that websites in the US are accountable for hosting 37.4% of malware worldwide. </description>
<pubDate>Thu, 04 Feb 2010 20:57:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7043/us-named-country-with-most-malware/</guid>
</item>
<item>
<title>House passes cybersecurity research bill</title>
<link>http://www.infosecurity-us.com/view/7042/house-passes-cybersecurity-research-bill/</link>
<description>The House of Representatives has passed legislation designed to enhance cybersecurity research and development in the US.</description>
<pubDate>Thu, 04 Feb 2010 20:15:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7042/house-passes-cybersecurity-research-bill/</guid>
</item>
<item>
<title>US ill-equipped to cope with mounting cyberattack threat</title>
<link>http://www.infosecurity-us.com/view/7041/us-illequipped-to-cope-with-mounting-cyberattack-threat/</link>
<description>The US is at risk of a crippling cyberattack and is currently unable to defend itself adequately, according to testimony given before Congress yesterday.</description>
<pubDate>Thu, 04 Feb 2010 19:35:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7041/us-illequipped-to-cope-with-mounting-cyberattack-threat/</guid>
</item>
<item>
<title>New Internet Explorer bug allows personal information to be stolen</title>
<link>http://www.infosecurity-us.com/view/7040/new-internet-explorer-bug-allows-personal-information-to-be-stolen/</link>
<description>Microsoft has discovered another flaw in Internet Explorer. The latest vulnerability could allow attackers to harvest any files from a victim's hard drive.</description>
<pubDate>Thu, 04 Feb 2010 19:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7040/new-internet-explorer-bug-allows-personal-information-to-be-stolen/</guid>
</item>
<item>
<title>Researchers develop way to catch online gaming cheats</title>
<link>http://www.infosecurity-us.com/view/7010/researchers-develop-way-to-catch-online-gaming-cheats/</link>
<description>Researchers have formulated a way to identify cheating in online games in a discovery that could revolutionize the growing market for virtual gaming assets.</description>
<pubDate>Wed, 03 Feb 2010 20:56:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7010/researchers-develop-way-to-catch-online-gaming-cheats/</guid>
</item>
<item>
<title>McAfee targets small to medium-sized businesses with QuickStart service</title>
<link>http://www.infosecurity-us.com/view/7011/mcafee-targets-small-to-mediumsized-businesses-with-quickstart-service/</link>
<description>McAfee has announced a service to help get SMBs up to speed with their security needs. Security Quickstart Services specifically targets small to medium-sized businesses, providing help with implementing, maintaining and optimizing security best practices.</description>
<pubDate>Wed, 03 Feb 2010 20:40:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7011/mcafee-targets-small-to-mediumsized-businesses-with-quickstart-service/</guid>
</item>
<item>
<title>Internet Explorer 8 reaches top browser spot</title>
<link>http://www.infosecurity-us.com/view/7009/internet-explorer-8-reaches-top-browser-spot/</link>
<description>Internet Explorer 8 is now the world's most-used browser, according to the latest figures from Network Applications. </description>
<pubDate>Wed, 03 Feb 2010 20:36:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7009/internet-explorer-8-reaches-top-browser-spot/</guid>
</item>
<item>
<title>US Navy unveils new cyber command</title>
<link>http://www.infosecurity-us.com/view/7008/us-navy-unveils-new-cyber-command/</link>
<description>Last week Adm. Gary Roughead, chief of US naval operations, officially announced the creation of the US Navy’s new Fleet Cyber Command, which aims to integrate the weapons of cyberspace and information within the Navy’s arsenal. The Fleet Cyber Command was formed in conjunction with re-establishment of the US 10th Fleet during a ceremony held at Ft. Meade, Maryland, on Jan. 29. </description>
<pubDate>Wed, 03 Feb 2010 18:17:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/7008/us-navy-unveils-new-cyber-command/</guid>
</item>
<item>
<title>Trustwave report reveals companies making same old mistakes</title>
<link>http://www.infosecurity-us.com/view/6979/trustwave-report-reveals-companies-making-same-old-mistakes/</link>
<description>Compliance and security service provider Trustwave has released its 2010 Global Security Report. The company has found that companies are still suffering from attacks using familiar exploit types that have been around for years. Organizations are implementing new technologies without securing existing ones, the report found.</description>
<pubDate>Tue, 02 Feb 2010 20:57:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6979/trustwave-report-reveals-companies-making-same-old-mistakes/</guid>
</item>
<item>
<title>Attack fools iPhone into trusting fake certificates</title>
<link>http://www.infosecurity-us.com/view/6977/attack-fools-iphone-into-trusting-fake-certificates/</link>
<description>An anonymous researcher has posted a proof-of-concept attack that fakes a trusted root certificate on the iPhone. Researchers have confirmed that the attack works, making it possible for anyone to create a web page that is deemed to be trusted by Apple.</description>
<pubDate>Tue, 02 Feb 2010 20:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6977/attack-fools-iphone-into-trusting-fake-certificates/</guid>
</item>
<item>
<title>Microsoft enhances SDL</title>
<link>http://www.infosecurity-us.com/view/6976/microsoft-enhances-sdl/</link>
<description>Microsoft announced three enhancements to its secure development lifecycle (SDL) initiative at the BlackHat DC conference this week.</description>
<pubDate>Tue, 02 Feb 2010 19:21:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6976/microsoft-enhances-sdl/</guid>
</item>
<item>
<title>Report shows a 70% surge in malware and spam on web 2.0 services</title>
<link>http://www.infosecurity-us.com/view/6974/report-shows-a-70-surge-in-malware-and-spam-on-web-20-services/</link>
<description>Research just published by Sophos claims to show a 70% increase in the number of companies reporting spam and malware attacks via social networks.</description>
<pubDate>Tue, 02 Feb 2010 18:33:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6974/report-shows-a-70-surge-in-malware-and-spam-on-web-20-services/</guid>
</item>
<item>
<title>Weekly brief February 2, 2010</title>
<link>http://www.infosecurity-us.com/view/6946/weekly-brief-february-2-2010/</link>
<description>Infosecurity rounds up the week's news</description>
<pubDate>Tue, 02 Feb 2010 10:27:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6946/weekly-brief-february-2-2010/</guid>
</item>
<item>
<title>US House websites hacked after state of the union </title>
<link>http://www.infosecurity-us.com/view/6936/us-house-websites-hacked-after-state-of-the-union-/</link>
<description>Websites for 49 members of the US House of Representatives were hacked shortly after President Obama’s State of the Union address last Wednesday night. The attacks appear to have been carried out by the Red Eye Crew according to researchers at security consultant Praetorian Security Group. </description>
<pubDate>Mon, 01 Feb 2010 18:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6936/us-house-websites-hacked-after-state-of-the-union-/</guid>
</item>
<item>
<title>Google and Neustar propose security fix for DNS geolocation technology</title>
<link>http://www.infosecurity-us.com/view/6920/google-and-neustar-propose-security-fix-for-dns-geolocation-technology/</link>
<description>Google and DNS provider Neustar have jointly proposed an extension to the DNS protocol that would fix many of its security problems.</description>
<pubDate>Mon, 01 Feb 2010 14:19:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6920/google-and-neustar-propose-security-fix-for-dns-geolocation-technology/</guid>
</item>
<item>
<title>EFF launches web browser entropy tool</title>
<link>http://www.infosecurity-us.com/view/6915/eff-launches-web-browser-entropy-tool/</link>
<description>A new tool released by privacy advocacy group EFF is designed to help users find out how identifiable their web browsers are online.</description>
<pubDate>Mon, 01 Feb 2010 13:51:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6915/eff-launches-web-browser-entropy-tool/</guid>
</item>
<item>
<title>Facebook users plagued by rogue application</title>
<link>http://www.infosecurity-us.com/view/6896/facebook-users-plagued-by-rogue-application/</link>
<description>Facebook was plagued by security and privacy issues both real and imagined in the last week, as a real-life worm battled with an imaginary one in a competition to see which could petrify the service's users the most.</description>
<pubDate>Fri, 29 Jan 2010 21:40:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6896/facebook-users-plagued-by-rogue-application/</guid>
</item>
<item>
<title>PricewaterhouseCoopers loses personal records of Alaska public employees</title>
<link>http://www.infosecurity-us.com/view/6895/pricewaterhousecoopers-loses-personal-records-of-alaska-public-employees/</link>
<description>PricewaterhouseCoopers has lost the personal records of 77 000 former and current public employees of the state of Alaska, it emerged this week.</description>
<pubDate>Fri, 29 Jan 2010 21:15:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6895/pricewaterhousecoopers-loses-personal-records-of-alaska-public-employees/</guid>
</item>
<item>
<title>Google Chrome web browser gets more security features</title>
<link>http://www.infosecurity-us.com/view/6894/google-chrome-web-browser-gets-more-security-features/</link>
<description>Google Chrome, the internet browser launched in late 2008, has been enhanced with a selection of new security features designed to make it harder for malware writers to infect client machines.</description>
<pubDate>Fri, 29 Jan 2010 20:33:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6894/google-chrome-web-browser-gets-more-security-features/</guid>
</item>
<item>
<title>iPhone cracker repeats exploit on Playstation 3</title>
<link>http://www.infosecurity-us.com/view/6890/iphone-cracker-repeats-exploit-on-playstation-3/</link>
<description>George Hotz, the first iPhone cracker – and who reportedly spent more than 500 hours developing the first jailbreak application for the Apple's iPhone back in 2007 – has apparently cracked the Sony Playstation 3.</description>
<pubDate>Fri, 29 Jan 2010 15:49:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6890/iphone-cracker-repeats-exploit-on-playstation-3/</guid>
</item>
<item>
<title>Oil and gas companies hit hardest by cyberwarfare</title>
<link>http://www.infosecurity-us.com/view/6872/oil-and-gas-companies-hit-hardest-by-cyberwarfare/</link>
<description>The oil and gas sector has been the hardest hit by stealthy infiltration, according to a report from the Center for Strategic and International Studies (CSIS). The sector was hit by stealth attacks 17% more than the cross-sector average, with almost three oil companies in four having had hackers fly under their radar.</description>
<pubDate>Thu, 28 Jan 2010 22:42:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6872/oil-and-gas-companies-hit-hardest-by-cyberwarfare/</guid>
</item>
<item>
<title>PlainsCapital bank sues customer in liability over account security</title>
<link>http://www.infosecurity-us.com/view/6871/plainscapital-bank-sues-customer-in-liability-over-account-security/</link>
<description>A legal case filed by a bank against a customer in the US promises to test the liability of customers in the event of security breaches. Dallas, Texas-based PlainsCapital bank is suing a business customer, Hillary Machinery, for not taking adequate measures to protect its banking details.</description>
<pubDate>Thu, 28 Jan 2010 22:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6871/plainscapital-bank-sues-customer-in-liability-over-account-security/</guid>
</item>
<item>
<title>All is not OK in Oklahoma: State tax website victim of hack</title>
<link>http://www.infosecurity-us.com/view/6869/all-is-not-ok-in-oklahoma-state-tax-website-victim-of-hack/</link>
<description>The website of the Oklahoma Tax Commission was the apparent victim of a hack yesterday, one in which visitors to the website were prompted to accept an Adobe license agreement and download software. The hack could not come a worse time for the Commission, whose site is undoubtedly experiencing an uptick in visitors as tax season approaches.  </description>
<pubDate>Thu, 28 Jan 2010 20:16:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6869/all-is-not-ok-in-oklahoma-state-tax-website-victim-of-hack/</guid>
</item>
<item>
<title>Software and application evaluator WhatApp nears public release</title>
<link>http://www.infosecurity-us.com/view/6868/software-and-application-evaluator-whatapp-nears-public-release/</link>
<description>This spring, a project under development to help assess the security and privacy of software applications will go public. WhatApp, an online resource where experts and the public alike can rate applications based on how well-behaved they are, will help consumers to exercise their privacy rights, said its project manager.</description>
<pubDate>Thu, 28 Jan 2010 19:15:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6868/software-and-application-evaluator-whatapp-nears-public-release/</guid>
</item>
<item>
<title>Security and malware threats to Mac and Apple products are on the rise </title>
<link>http://www.infosecurity-us.com/view/6841/security-and-malware-threats-to-mac-and-apple-products-are-on-the-rise-/</link>
<description>An annual report from security software provider Intego acknowledges it was a busy year for security threats to Apple devices, including the Mac OS X and iPhones. And while the Mac OS may be a less frequent target of malware authors, security threats to Apple products are proliferating as these devices land in the hands of more and more users. </description>
<pubDate>Wed, 27 Jan 2010 19:23:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6841/security-and-malware-threats-to-mac-and-apple-products-are-on-the-rise-/</guid>
</item>
<item>
<title>US oil companies hacked; report links attack to sources within China</title>
<link>http://www.infosecurity-us.com/view/6807/us-oil-companies-hacked-report-links-attack-to-sources-within-china/</link>
<description>Reports in the Christian Science Monitor suggest that at least three large US oil companies have been the victims of targeted attacks. The custom-made spyware used in the attack appears to have sent the information to China, at least in one case. </description>
<pubDate>Tue, 26 Jan 2010 21:46:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6807/us-oil-companies-hacked-report-links-attack-to-sources-within-china/</guid>
</item>
<item>
<title>Healthcare hacks on the rise</title>
<link>http://www.infosecurity-us.com/view/6806/healthcare-hacks-on-the-rise/</link>
<description>Attempts to hack healthcare organizations doubled in the fourth quarter of last year, according to Atlanta-based managed security firm SecureWorks, setting the sector aside from others.</description>
<pubDate>Tue, 26 Jan 2010 21:13:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6806/healthcare-hacks-on-the-rise/</guid>
</item>
<item>
<title>Technology site TechCrunch hacked</title>
<link>http://www.infosecurity-us.com/view/6805/technology-site-techcrunch-hacked/</link>
<description>Technology pundit site TechCrunch was victim of a hack over the weekend by attackers who defaced it, just days before Apple's release of its tablet device – arguably the most anticipated product in recent history.</description>
<pubDate>Tue, 26 Jan 2010 20:49:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6805/technology-site-techcrunch-hacked/</guid>
</item>
<item>
<title>Mixed predictions on anticipated IT spending for 2010</title>
<link>http://www.infosecurity-us.com/view/6803/mixed-predictions-on-anticipated-it-spending-for-2010/</link>
<description>Recent reports indicate that IT spending is set to increase in 2010. This comes on the heels of 2009, which saw negative IT spending growth worldwide and may have been the worst year on record for IT spending. </description>
<pubDate>Tue, 26 Jan 2010 16:50:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6803/mixed-predictions-on-anticipated-it-spending-for-2010/</guid>
</item>
<item>
<title>2010 Virtual Conference on Endpoint Security - Beyond the Perimeter - Full conference programme revealed</title>
<link>http://www.infosecurity-us.com/view/6788/2010-virtual-conference-on-endpoint-security-beyond-the-perimeter-full-conference-programme-revealed/</link>
<description>Infosecurity US magazine is excited to announce the 2010 virtual conference on endpoint security, to be held on February 25, 2010. This one-day event brings a series of topical keynote sessions direct to your computer, giving you the flexibility to learn about the latest information security trends and challenges from wherever you are in the world.</description>
<pubDate>Tue, 26 Jan 2010 16:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6788/2010-virtual-conference-on-endpoint-security-beyond-the-perimeter-full-conference-programme-revealed/</guid>
</item>
<item>
<title>Kaspersky inadvertently blocks Google ads</title>
<link>http://www.infosecurity-us.com/view/6777/kaspersky-inadvertently-blocks-google-ads/</link>
<description>Kaspersky provoked a flurry of complaints from irate users after its anti-malware tool began blocking sites with Google advertisements yesterday.</description>
<pubDate>Mon, 25 Jan 2010 22:43:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6777/kaspersky-inadvertently-blocks-google-ads/</guid>
</item>
<item>
<title>Weekly brief, January 25, 2010</title>
<link>http://www.infosecurity-us.com/view/6776/weekly-brief-january-25-2010/</link>
<description>Infosecurity rounds up the week's news</description>
<pubDate>Mon, 25 Jan 2010 21:33:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6776/weekly-brief-january-25-2010/</guid>
</item>
<item>
<title>Economy forces down prices for dodgy Viagra</title>
<link>http://www.infosecurity-us.com/view/6775/economy-forces-down-prices-for-dodgy-viagra/</link>
<description>Prices for male impotency drugs sold by spammers aren't as stiff as they once were, according to a new report from Messagelabs. The asking price for 'little blue pills' have softened up, as the economy has lost its staying power.</description>
<pubDate>Mon, 25 Jan 2010 21:23:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6775/economy-forces-down-prices-for-dodgy-viagra/</guid>
</item>
<item>
<title>Prank malware spreads across internet</title>
<link>http://www.infosecurity-us.com/view/6704/prank-malware-spreads-across-internet/</link>
<description>Anti-virus company ESET has discovered what it thinks is a prank gone wrong. The company suspects that Win32/Zimuse, which has swept the US, was originally intended as a localized malware attack against a group of Slovakian bikers.</description>
<pubDate>Fri, 22 Jan 2010 20:50:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6704/prank-malware-spreads-across-internet/</guid>
</item>
<item>
<title>More details emerge on Hydraq trojan</title>
<link>http://www.infosecurity-us.com/view/6703/more-details-emerge-on-hydraq-trojan/</link>
<description>Hydraq, the trojan delivered by the Operation Aurora attackers, uses VNC techniques to stream live video from victims' machines, said Symantec in an analysis of the malware.</description>
<pubDate>Fri, 22 Jan 2010 20:20:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6703/more-details-emerge-on-hydraq-trojan/</guid>
</item>
<item>
<title>Websense protects Facebook users against malware</title>
<link>http://www.infosecurity-us.com/view/6664/websense-protects-facebook-users-against-malware/</link>
<description>Websense has relaunched a spam protection service with a new feature set that protects Facebook users against malware.</description>
<pubDate>Thu, 21 Jan 2010 23:35:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6664/websense-protects-facebook-users-against-malware/</guid>
</item>
<item>
<title>Microsoft, Marlinspike threaten Google data gathering policy</title>
<link>http://www.infosecurity-us.com/view/6663/microsoft-marlinspike-threaten-google-data-gathering-policy/</link>
<description>Google faced challenges to its search engine's data gathering policy this week from two sides. Microsoft bettered the search engine giant by revising its own search privacy policy, while security researcher Moxie Marlinspike delivered a service that allows users to bypass Google's data gathering procedures altogether.</description>
<pubDate>Thu, 21 Jan 2010 22:31:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6663/microsoft-marlinspike-threaten-google-data-gathering-policy/</guid>
</item>
<item>
<title>RockYou users display poor password skills</title>
<link>http://www.infosecurity-us.com/view/6662/rockyou-users-display-poor-password-skills/</link>
<description>Social media site RockYou may be the subject of a lawsuit from disgruntled customers after it allowed 32 million of their accounts to be compromised, but new data suggest that many of its users are equally unsavvy when it comes to security, especially password security.</description>
<pubDate>Thu, 21 Jan 2010 21:48:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6662/rockyou-users-display-poor-password-skills/</guid>
</item>
<item>
<title>Further evidence links Aurora attack to China</title>
<link>http://www.infosecurity-us.com/view/6624/further-evidence-links-aurora-attack-to-china/</link>
<description>Further evidence has emerged suggesting that the Operation Aurora attack exploiting a zero-day flaw in Internet Explorer came from within the People's Republic of China.</description>
<pubDate>Thu, 21 Jan 2010 00:13:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6624/further-evidence-links-aurora-attack-to-china/</guid>
</item>
<item>
<title>Internet Explorer zero-day vulnerability spreads to Microsoft Office as fixes surface</title>
<link>http://www.infosecurity-us.com/view/6623/internet-explorer-zeroday-vulnerability-spreads-to-microsoft-office-as-fixes-surface/</link>
<description>Microsoft has scheduled an out-of-band patch for the zero-day vulnerability in Internet Explorer, just as other fixes for the problem began to surface. The company has also admitted for the first time that the attack could be used to compromise a computer using Microsoft Office.</description>
<pubDate>Wed, 20 Jan 2010 19:27:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6623/internet-explorer-zeroday-vulnerability-spreads-to-microsoft-office-as-fixes-surface/</guid>
</item>
<item>
<title>Sourcefire launches faster IPS configuration</title>
<link>http://www.infosecurity-us.com/view/6622/sourcefire-launches-faster-ips-configuration/</link>
<description>Sourcefire has increased the speed of its intrusion prevention system, or IPS, announcing support for a 20 Gbit/sec clustered model.</description>
<pubDate>Wed, 20 Jan 2010 19:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6622/sourcefire-launches-faster-ips-configuration/</guid>
</item>
<item>
<title>Microsoft promises Internet Explorer patch as Windows zero-day surfaces</title>
<link>http://www.infosecurity-us.com/view/6585/microsoft-promises-internet-explorer-patch-as-windows-zeroday-surfaces/</link>
<description>Microsoft has promised an Internet Explorer out-of-band patch for the zero-day vulnerability discovered earlier this month. In the meantime, a trusted researcher has highlighted a flaw in all versions of Microsoft Windows that could lead to privilege escalation.</description>
<pubDate>Tue, 19 Jan 2010 22:25:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6585/microsoft-promises-internet-explorer-patch-as-windows-zeroday-surfaces/</guid>
</item>
<item>
<title>PhoneFactor develops biometric verification system for phone-based authentication </title>
<link>http://www.infosecurity-us.com/view/6584/phonefactor-develops-biometric-verification-system-for-phonebased-authentication-/</link>
<description>Multi-factor mobile authentication firm PhoneFactor has developed a biometric verification system for its phone-based authentication platform. The system uses biometric validation of a user's voiceprint to provide what it says is three-factor authentication.</description>
<pubDate>Tue, 19 Jan 2010 21:39:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6584/phonefactor-develops-biometric-verification-system-for-phonebased-authentication-/</guid>
</item>
<item>
<title>Blackhats replace brawn with brain in attacking networks</title>
<link>http://www.infosecurity-us.com/view/6583/blackhats-replace-brawn-with-brain-in-attacking-networks/</link>
<description>Blackhats are working smarter rather than harder in attacks on network infrastructure, according to a comprehensive report on internet infrastructure security from Arbor Networks.</description>
<pubDate>Tue, 19 Jan 2010 21:32:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6583/blackhats-replace-brawn-with-brain-in-attacking-networks/</guid>
</item>
<item>
<title>FireEye claims protection against Internet Explorer zero-day attack</title>
<link>http://www.infosecurity-us.com/view/6540/fireeye-claims-protection-against-internet-explorer-zeroday-attack/</link>
<description>Security appliance company FireEye has said that its products can detect the latest zero-day vulnerability in Internet Explorer without any software patches. </description>
<pubDate>Mon, 18 Jan 2010 22:45:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6540/fireeye-claims-protection-against-internet-explorer-zeroday-attack/</guid>
</item>
<item>
<title>PDF attacks target defense community</title>
<link>http://www.infosecurity-us.com/view/6539/pdf-attacks-target-defense-community/</link>
<description>Evidence of further targeted attacks are surfacing, just days after Google and other technology companies announced that they had been the victims of a concerted campaign. This time, the attacks targeted PDFs of those in the US defense community, and occurred more recently.</description>
<pubDate>Mon, 18 Jan 2010 18:51:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6539/pdf-attacks-target-defense-community/</guid>
</item>
<item>
<title>Internet Explorer zero-day code goes public</title>
<link>http://www.infosecurity-us.com/view/6537/internet-explorer-zeroday-code-goes-public/</link>
<description>The Internet Explorer exploit code used in the Operation Aurora attack against Google and other technology companies has made it into the public domain, and has been incorporated into the Metasploit penetration testing tool, it was revealed this weekend.</description>
<pubDate>Mon, 18 Jan 2010 18:19:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6537/internet-explorer-zeroday-code-goes-public/</guid>
</item>
<item>
<title>Internal security risks webinar this Wednesday</title>
<link>http://www.infosecurity-us.com/view/6513/internal-security-risks-webinar-this-wednesday/</link>
<description>The internal security risk issue is fast becoming a boardroom topic in most organizations, especially now that relatively rare road warriors have given way to a truly mobile workforce, able to work from almost anywhere, in most businesses.</description>
<pubDate>Mon, 18 Jan 2010 00:45:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6513/internal-security-risks-webinar-this-wednesday/</guid>
</item>
<item>
<title>Time Inc employee fired over customer credit card issue </title>
<link>http://www.infosecurity-us.com/view/6509/time-inc-employee-fired-over-customer-credit-card-issue-/</link>
<description>Time Inc has written to customers and the New Hampshire Attorney General's office, warning of a potential security breach following the possible misuse of customer credit card information by an employee.</description>
<pubDate>Sun, 17 Jan 2010 23:23:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6509/time-inc-employee-fired-over-customer-credit-card-issue-/</guid>
</item>
<item>
<title>Weekly brief, January 18 2010</title>
<link>http://www.infosecurity-us.com/view/6508/weekly-brief-january-18-2010/</link>
<description>Infosecurity rounds up the security news from the past week.</description>
<pubDate>Sun, 17 Jan 2010 20:43:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6508/weekly-brief-january-18-2010/</guid>
</item>
<item>
<title>Blackhats and whitehats react to Haiti tragedy</title>
<link>http://www.infosecurity-us.com/view/6502/blackhats-and-whitehats-react-to-haiti-tragedy/</link>
<description>Blackhats and whitehats reacted with typical polarity to the disastrous Haiti earthquake this week. One faction unleashed a torrent of malware capitalizing on the tragedy, while the other organized a series of 'hackathons' to help develop technologies that would assist the humanitarian mission.</description>
<pubDate>Fri, 15 Jan 2010 22:34:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6502/blackhats-and-whitehats-react-to-haiti-tragedy/</guid>
</item>
<item>
<title>Online criminals looking to profit from Haiti earthquake </title>
<link>http://www.infosecurity-us.com/view/6493/online-criminals-looking-to-profit-from-haiti-earthquake-/</link>
<description>Proving that there is no situation too tragic to exploit, cyber scofflaws have been quick to capitalize on the world’s interest in the recent earthquake in Haiti. With so many people looking to reach out and donate to victims of the tragedy, one group of black hats are attempting to rake in some of that cash by exploiting search engine optimization (SEO) techniques. </description>
<pubDate>Fri, 15 Jan 2010 16:21:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6493/online-criminals-looking-to-profit-from-haiti-earthquake-/</guid>
</item>
<item>
<title>ISACA launches risk management certification</title>
<link>http://www.infosecurity-us.com/view/6474/isaca-launches-risk-management-certification/</link>
<description>Security organization ISACA has launched a new risk management qualification for information security professionals. The Certified in Risk and Information Systems Control (CRISC) certification targets professionals in the IT area who use information security controls to manage risk in technology environments.</description>
<pubDate>Fri, 15 Jan 2010 00:33:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6474/isaca-launches-risk-management-certification/</guid>
</item>
<item>
<title>DARPA enters second leg of cybersecurity testing project</title>
<link>http://www.infosecurity-us.com/view/6473/darpa-enters-second-leg-of-cybersecurity-testing-project/</link>
<description>The Defense Advanced Research Projects Agency, or DARPA, has awarded $55.5m in contracts to bolster a secretive cybersecurity monitoring system, it was announced this week.</description>
<pubDate>Fri, 15 Jan 2010 00:12:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6473/darpa-enters-second-leg-of-cybersecurity-testing-project/</guid>
</item>
<item>
<title>Internet Explorer vulnerability used in Google attack</title>
<link>http://www.infosecurity-us.com/view/6472/internet-explorer-vulnerability-used-in-google-attack/</link>
<description>More details are emerging concerning the concerted attacks on over 20 technology companies, including Google, that were revealed earlier this week. The attackers targeted a vulnerability in Internet Explorer, according to Microsoft. It is now investigating the flaw, which could allow attackers to execute arbitrary code.</description>
<pubDate>Fri, 15 Jan 2010 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6472/internet-explorer-vulnerability-used-in-google-attack/</guid>
</item>
<item>
<title>Hacked Google threatens to pull plug in China</title>
<link>http://www.infosecurity-us.com/view/6431/hacked-google-threatens-to-pull-plug-in-china/</link>
<description>Google is threatening to unplug its controversial Chinese search engine, following a massive hacker attack on its infrastructure that it says was designed to access the accounts of human rights activists. And the company was not the attackers’ only target, it claims.</description>
<pubDate>Thu, 14 Jan 2010 00:32:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6431/hacked-google-threatens-to-pull-plug-in-china/</guid>
</item>
<item>
<title>Connecticut goes after Health Net for breach</title>
<link>http://www.infosecurity-us.com/view/6432/connecticut-goes-after-health-net-for-breach/</link>
<description>The state of Connecticut is suing health insurer Health Net, following a data breach that saw 446 000 Connecticut residents’ records compromised, it said yesterday.</description>
<pubDate>Thu, 14 Jan 2010 00:30:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6432/connecticut-goes-after-health-net-for-breach/</guid>
</item>
<item>
<title>Security tops datacenter agenda in 2010</title>
<link>http://www.infosecurity-us.com/view/6430/security-tops-datacenter-agenda-in-2010/</link>
<description>Security is the most important initiative for datacenter managers for the coming year, according to Symantec’s latest State of the Datacenter report.</description>
<pubDate>Thu, 14 Jan 2010 00:26:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6430/security-tops-datacenter-agenda-in-2010/</guid>
</item>
<item>
<title>Facebook and McAfee team up on security</title>
<link>http://www.infosecurity-us.com/view/6415/facebook-and-mcafee-team-up-on-security/</link>
<description>Facebook has signed McAfee as a supplier to help protect its user base. The two companies have worked on a custom scanning and repair tool, along with education materials that will target the social networking giant's 350 million users. </description>
<pubDate>Wed, 13 Jan 2010 12:18:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6415/facebook-and-mcafee-team-up-on-security/</guid>
</item>
<item>
<title>Employees downloading more illegal files</title>
<link>http://www.infosecurity-us.com/view/6412/employees-downloading-more-illegal-files/</link>
<description>Software as a service company ScanSafe has found a 55% increase in illegal download attempts over corporate networks.</description>
<pubDate>Wed, 13 Jan 2010 11:54:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6412/employees-downloading-more-illegal-files/</guid>
</item>
<item>
<title>Adobe issues quarterly patch</title>
<link>http://www.infosecurity-us.com/view/6391/adobe-issues-quarterly-patch/</link>
<description>Adobe distributed its first quarterly critical security update yesterday, finally patching a vulnerability that had been targeted by a zero day attack.</description>
<pubDate>Wed, 13 Jan 2010 00:34:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6391/adobe-issues-quarterly-patch/</guid>
</item>
<item>
<title>Maryland seeking to become a cybersecurity hub</title>
<link>http://www.infosecurity-us.com/view/6390/maryland-seeking-to-become-a-cybersecurity-hub/</link>
<description>The Governor of Maryland set out an aggressive campaign to position the state as a national hub for cybersecurity this week, launching a report cataloging Maryland's current efforts in the cybersecurity and electronic intelligence space.</description>
<pubDate>Wed, 13 Jan 2010 00:29:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6390/maryland-seeking-to-become-a-cybersecurity-hub/</guid>
</item>
<item>
<title>MBA in cybersecurity launched</title>
<link>http://www.infosecurity-us.com/view/6389/mba-in-cybersecurity-launched/</link>
<description>The University of Dayton, Ohio, and the Advanced Technical Intelligence Center (ATIC) are partnering to offer an MBA in cybersecurity management.</description>
<pubDate>Wed, 13 Jan 2010 00:24:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6389/mba-in-cybersecurity-launched/</guid>
</item>
<item>
<title>Suffolk County National Bank hacked</title>
<link>http://www.infosecurity-us.com/view/6388/suffolk-county-national-bank-hacked/</link>
<description>Suffolk County National Bank received a nasty Christmas present on December 24th after discovering a hack that saw over 8,000 customers' accounts compromised. The breach is estimated to have cost $351 000, it warned investors.</description>
<pubDate>Wed, 13 Jan 2010 00:16:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6388/suffolk-county-national-bank-hacked/</guid>
</item>
<item>
<title>Report reveals hacking to be top cause of data breaches in 2009</title>
<link>http://www.infosecurity-us.com/view/6378/report-reveals-hacking-to-be-top-cause-of-data-breaches-in-2009/</link>
<description>Although the total number of reported data breach incidents fell year over year in 2009, the number of compromised records was still estimated at over 222 million. For the first time this past year, malicious attacks, which include hacking and insider theft, overtook human error as the leading cause of data breach in the US. This is according to a recent report compiled by the Identity Theft Resource Center, a San Diego-based non-profit that tracks occurrences of identity theft. </description>
<pubDate>Tue, 12 Jan 2010 16:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6378/report-reveals-hacking-to-be-top-cause-of-data-breaches-in-2009/</guid>
</item>
<item>
<title>Microsoft targets security issues with policy site</title>
<link>http://www.infosecurity-us.com/view/6344/microsoft-targets-security-issues-with-policy-site/</link>
<description>Microsoft has launched a technology policy website designed to encourage policy debates in key areas such as cloud computing, security, and privacy.</description>
<pubDate>Mon, 11 Jan 2010 16:29:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6344/microsoft-targets-security-issues-with-policy-site/</guid>
</item>
<item>
<title>Massive cyber-fraud ring exposed</title>
<link>http://www.infosecurity-us.com/view/6318/massive-cyberfraud-ring-exposed/</link>
<description>Nineteen individuals have been charged with conspiracy to commit wire fraud after the FBI alleged a cybercrime conspiracy costing victims more than $15 million.</description>
<pubDate>Mon, 11 Jan 2010 00:57:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6318/massive-cyberfraud-ring-exposed/</guid>
</item>
<item>
<title>Weekly brief January 11 2009</title>
<link>http://www.infosecurity-us.com/view/6319/weekly-brief-january-11-2009/</link>
<description>Infosecurity rounds up the week's security news</description>
<pubDate>Mon, 11 Jan 2010 00:18:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6319/weekly-brief-january-11-2009/</guid>
</item>
<item>
<title>Adobe finally jumps on silent update bandwagon</title>
<link>http://www.infosecurity-us.com/view/6316/adobe-finally-jumps-on-silent-update-bandwagon/</link>
<description>It's official — Adobe is releasing an automatic silent updater for its PDF Reader product on April 13. The company confirmed the news to Infosecurity US this week.</description>
<pubDate>Fri, 08 Jan 2010 16:54:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6316/adobe-finally-jumps-on-silent-update-bandwagon/</guid>
</item>
<item>
<title>Malware threat reports fail to add up</title>
<link>http://www.infosecurity-us.com/view/6314/malware-threat-reports-fail-to-add-up/</link>
<description>The December malware threat reports are trickling in from vendors — and they all appear to be different. Fortinet, Sunbelt Software, and Kaspersky all published their lists of the most prevalent malware strains for the last month of 2009, but they didn't match up, leading to an admission that users will inevitably be confused by the results.</description>
<pubDate>Fri, 08 Jan 2010 16:24:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6314/malware-threat-reports-fail-to-add-up/</guid>
</item>
<item>
<title>2009 was a record year for malware</title>
<link>http://www.infosecurity-us.com/view/6280/2009-was-a-record-year-for-malware/</link>
<description>A PandaLabs report claims that 2009 will go down as perhaps the most prolific in malware history. In 2009, malware creators tapped into search tools used by the majority of web surfers, and exploited current events and popular culture. </description>
<pubDate>Thu, 07 Jan 2010 16:54:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6280/2009-was-a-record-year-for-malware/</guid>
</item>
<item>
<title>Organizations stumped on compromised device containment</title>
<link>http://www.infosecurity-us.com/view/6262/organizations-stumped-on-compromised-device-containment/</link>
<description>Over 40% of executives don't know how to stop compromised devices from polluting their networks, according to a poll conducted by Deloitte.</description>
<pubDate>Wed, 06 Jan 2010 16:28:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6262/organizations-stumped-on-compromised-device-containment/</guid>
</item>
<item>
<title>CYBERsitter sues China for $2.2 billion</title>
<link>http://www.infosecurity-us.com/view/6260/cybersitter-sues-china-for-22-billion/</link>
<description>US security firm CYBERsitter is suing the Chinese government for $2.2 billion for software piracy, after it allegedly used the company's source code as part of its controversial Green Dam project.</description>
<pubDate>Wed, 06 Jan 2010 15:25:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6260/cybersitter-sues-china-for-22-billion/</guid>
</item>
<item>
<title>Pharma victims targeted for extortion according to FDA</title>
<link>http://www.infosecurity-us.com/view/6259/pharma-victims-targeted-for-extortion-according-to-fda/</link>
<description>Online scammers are re-scamming Internet pharmaceutical customers with a new ploy: posing as government agents and extorting money from them, says the US Food and Drug Administration.</description>
<pubDate>Wed, 06 Jan 2010 14:56:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6259/pharma-victims-targeted-for-extortion-according-to-fda/</guid>
</item>
<item>
<title>Cracked USB drives show NIST certification is not so secure</title>
<link>http://www.infosecurity-us.com/view/6256/cracked-usb-drives-show-nist-certification-is-not-so-secure/</link>
<description>Vendors of encrypted USB drives are recalling their NIST-certified products and issuing security updates after a fundamental flaw was found in the way that information is accessed. The flaw enables attackers to access encrypted data without trying to tackle the AES256 encryption algorithm used by the drives.</description>
<pubDate>Wed, 06 Jan 2010 14:29:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6256/cracked-usb-drives-show-nist-certification-is-not-so-secure/</guid>
</item>
<item>
<title>Home Depot fraudsters charged, sentenced</title>
<link>http://www.infosecurity-us.com/view/6241/home-depot-fraudsters-charged-sentenced/</link>
<description>A Pennsylvania woman has been charged with identity theft and device fraud after forging driver's licenses and selling them on to third parties.</description>
<pubDate>Tue, 05 Jan 2010 17:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6241/home-depot-fraudsters-charged-sentenced/</guid>
</item>
<item>
<title>Sophisticated zero-day hits Adobe Reader</title>
<link>http://www.infosecurity-us.com/view/6240/sophisticated-zeroday-hits-adobe-reader/</link>
<description>More details are emerging of a zero-day attack on Adobe's PDF reader and Acrobat applications, and security experts are calling it highly sophisticated.  Moreover, anti-malware tools have been woefully poor at spotting it.</description>
<pubDate>Tue, 05 Jan 2010 16:29:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6240/sophisticated-zeroday-hits-adobe-reader/</guid>
</item>
<item>
<title>McAfee: Hybrid apps will be hacker target</title>
<link>http://www.infosecurity-us.com/view/6184/mcafee-hybrid-apps-will-be-hacker-target/</link>
<description>Applications that blur the boundaries between online and offline software will be a primary hacker target this year, according to McAfee.</description>
<pubDate>Mon, 04 Jan 2010 00:38:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6184/mcafee-hybrid-apps-will-be-hacker-target/</guid>
</item>
<item>
<title>EWU exposes 130 000 student records</title>
<link>http://www.infosecurity-us.com/view/6183/ewu-exposes-130-000-student-records/</link>
<description>Eastern Washington University has notified present and former students of a massive data breach of its systems that could affect up to 130 000 people.</description>
<pubDate>Mon, 04 Jan 2010 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6183/ewu-exposes-130-000-student-records/</guid>
</item>
<item>
<title>Weekly brief Janary 4 2010</title>
<link>http://www.infosecurity-us.com/view/6182/weekly-brief-janary-4-2010/</link>
<description>Infosecurity rounds up the information security news from the holiday season.</description>
<pubDate>Sun, 03 Jan 2010 22:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6182/weekly-brief-janary-4-2010/</guid>
</item>
<item>
<title>ISF’s Howard Schmidt becomes US cybersecurity czar</title>
<link>http://www.infosecurity-us.com/view/6155/isfs-howard-schmidt-becomes-us-cybersecurity-czar/</link>
<description>Howard Schmidt, president and CEO of the Information Security Forum (ISF) was appointed White House Cybersecurity Coordinator just before the Holidays.</description>
<pubDate>Tue, 29 Dec 2009 17:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6155/isfs-howard-schmidt-becomes-us-cybersecurity-czar/</guid>
</item>
<item>
<title>Weekly brief, December 21, 2009</title>
<link>http://www.infosecurity-us.com/view/6082/weekly-brief-december-21-2009/</link>
<description>Infosecurity rounds up the week's information security news. </description>
<pubDate>Mon, 21 Dec 2009 10:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6082/weekly-brief-december-21-2009/</guid>
</item>
<item>
<title>VoIP vulnerabilities on the rise</title>
<link>http://www.infosecurity-us.com/view/6084/voip-vulnerabilities-on-the-rise/</link>
<description>The number of known vulnerabilities in VoIP products have almost tripled since 2006, according to a report from McAfee.</description>
<pubDate>Mon, 21 Dec 2009 09:55:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6084/voip-vulnerabilities-on-the-rise/</guid>
</item>
<item>
<title>Conficker still rampant in some countries' networks</title>
<link>http://www.infosecurity-us.com/view/6083/conficker-still-rampant-in-some-countries-networks/</link>
<description>The Conficker worm is still thriving on networks in India, Chile, Russia and the Ukraine, where infection rates are up to 16%.</description>
<pubDate>Mon, 21 Dec 2009 09:45:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6083/conficker-still-rampant-in-some-countries-networks/</guid>
</item>
<item>
<title>WatchGuard offers managed services package for channel partners</title>
<link>http://www.infosecurity-us.com/view/6086/watchguard-offers-managed-services-package-for-channel-partners/</link>
<description>Unified threat management vendor WatchGuard Technologies has enhanced its managed security offering with its Managed Security Services Program (MSSP). </description>
<pubDate>Mon, 21 Dec 2009 09:40:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6086/watchguard-offers-managed-services-package-for-channel-partners/</guid>
</item>
<item>
<title>Identity thief gets nine years</title>
<link>http://www.infosecurity-us.com/view/6085/identity-thief-gets-nine-years/</link>
<description>An identity thief who used victims' credentials to register credit cards fraudulently was sentenced to more than nine years in prison wihout parole late last week.</description>
<pubDate>Mon, 21 Dec 2009 09:33:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6085/identity-thief-gets-nine-years/</guid>
</item>
<item>
<title>Adobe admits to another PDF security vulnerability</title>
<link>http://www.infosecurity-us.com/view/6025/adobe-admits-to-another-pdf-security-vulnerability/</link>
<description>Adobe has announced its latest zero-day security vulnerability in what has become a litany of such flaws this year - and this one won't be patched until halfway through January.</description>
<pubDate>Thu, 17 Dec 2009 19:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6025/adobe-admits-to-another-pdf-security-vulnerability/</guid>
</item>
<item>
<title>Firefox tops apps security vulnerability list for 2009</title>
<link>http://www.infosecurity-us.com/view/6028/firefox-tops-apps-security-vulnerability-list-for-2009/</link>
<description>The Firefox browser topped the list of software applications with most security vulnerabilities in 2009, according to a report from application whitelisting firm Bit9.</description>
<pubDate>Thu, 17 Dec 2009 17:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6028/firefox-tops-apps-security-vulnerability-list-for-2009/</guid>
</item>
<item>
<title>Secure DNS server launched</title>
<link>http://www.infosecurity-us.com/view/6023/secure-dns-server-launched/</link>
<description>Secure64 Software has released a DNS cache server that is designed to protect against cache poisoning attacks.</description>
<pubDate>Thu, 17 Dec 2009 15:15:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/6023/secure-dns-server-launched/</guid>
</item>
<item>
<title>Rogue anti-virus tired, Google Wave wired, says Kaspersky</title>
<link>http://www.infosecurity-us.com/view/5984/rogue-antivirus-tired-google-wave-wired-says-kaspersky/</link>
<description>Rogue anti-virus programs will become far less prevalent next year as other technologies such as Google Wave attract malware vendors' attention, said a forecast from Kaspersky this week.</description>
<pubDate>Thu, 17 Dec 2009 13:59:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5984/rogue-antivirus-tired-google-wave-wired-says-kaspersky/</guid>
</item>
<item>
<title>Botnet numbers growing fourfold each year</title>
<link>http://www.infosecurity-us.com/view/5985/botnet-numbers-growing-fourfold-each-year/</link>
<description>The number of computers infected by botnet malware has almost quadrupled each year since 2004, according to a report to be released by Project Honey Pot next week.</description>
<pubDate>Wed, 16 Dec 2009 21:51:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5985/botnet-numbers-growing-fourfold-each-year/</guid>
</item>
<item>
<title>Fortinet ships secure email appliances</title>
<link>http://www.infosecurity-us.com/view/5980/fortinet-ships-secure-email-appliances/</link>
<description>Unified threat management company Fortinet is shipping two new secure email appliances. The appliances, called FortiMail-5001A and -2000B, are aimed at high-volume carrier and managed service provider companies.</description>
<pubDate>Tue, 15 Dec 2009 18:36:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5980/fortinet-ships-secure-email-appliances/</guid>
</item>
<item>
<title>Researcher documents Koobface Google Reader trick</title>
<link>http://www.infosecurity-us.com/view/5951/researcher-documents-koobface-google-reader-trick/</link>
<description>A Webroot researcher has documented the process that the Koobface malware uses to create malicious Google Reader pages.</description>
<pubDate>Tue, 15 Dec 2009 06:46:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5951/researcher-documents-koobface-google-reader-trick/</guid>
</item>
<item>
<title>Google Chrome in anonymity blunder</title>
<link>http://www.infosecurity-us.com/view/5950/google-chrome-in-anonymity-blunder/</link>
<description>The latest version of the Google Chrome browser is negating the efforts of anonymous browsing services to protect users' identities, according to bug reports.</description>
<pubDate>Tue, 15 Dec 2009 06:35:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5950/google-chrome-in-anonymity-blunder/</guid>
</item>
<item>
<title>Spam volumes exceeded pre-McColo levels this year</title>
<link>http://www.infosecurity-us.com/view/5949/spam-volumes-exceeded-premccolo-levels-this-year/</link>
<description>One year after the McColo shutdown, spam volumes have not only recovered, but have grown beyond what they were before the rogue ISP was taken offline.</description>
<pubDate>Tue, 15 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5949/spam-volumes-exceeded-premccolo-levels-this-year/</guid>
</item>
<item>
<title>Weekly brief, December 14, 2009</title>
<link>http://www.infosecurity-us.com/view/5920/weekly-brief-december-14-2009/</link>
<description>Infosecurity sums up the week's information security news.</description>
<pubDate>Mon, 14 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5920/weekly-brief-december-14-2009/</guid>
</item>
<item>
<title>Pentagon site still at risk</title>
<link>http://www.infosecurity-us.com/view/5892/pentagon-site-still-at-risk/</link>
<description>A Romanian hacker has exposed security flaws in the Pentagon’s public website that have remained unfixed despite warnings of their existence at least nine months ago.</description>
<pubDate>Fri, 11 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5892/pentagon-site-still-at-risk/</guid>
</item>
<item>
<title>Microsoft fixes browser flaw</title>
<link>http://www.infosecurity-us.com/view/5893/microsoft-fixes-browser-flaw/</link>
<description>Microsoft’s last Patch Tuesday of the year saw the release of fixes for five flaws in its Internet Explorer browser, including a critical zero-day security vulnerability that was first publicly disclosed three weeks ago.</description>
<pubDate>Fri, 11 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5893/microsoft-fixes-browser-flaw/</guid>
</item>
<item>
<title>Hacker makes plea bargain</title>
<link>http://www.infosecurity-us.com/view/5894/hacker-makes-plea-bargain/</link>
<description>The hacker accused of helping to perpetrate the largest credit card theft in US history has agreed to plead guilty as part of a plea bargaining deal with federal prosecutors.</description>
<pubDate>Fri, 11 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5894/hacker-makes-plea-bargain/</guid>
</item>
<item>
<title>Cybersecurity task force established</title>
<link>http://www.infosecurity-us.com/view/5836/cybersecurity-task-force-established/</link>
<description>The Senate Select Committee on Intelligence has set up a bi-partisan taskforce on cybersecurity to evaluate potential online threats and provide recommendations for action to the US intelligence community.</description>
<pubDate>Thu, 10 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5836/cybersecurity-task-force-established/</guid>
</item>
<item>
<title>Financial institutions battered by phishing attacks</title>
<link>http://www.infosecurity-us.com/view/5837/financial-institutions-battered-by-phishing-attacks/</link>
<description>Financial institutions are subjected to an average of 16 phishing attacks per week, costing them between $2.4 and $9.4 million in losses each year.</description>
<pubDate>Thu, 10 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5837/financial-institutions-battered-by-phishing-attacks/</guid>
</item>
<item>
<title>Firms failing on PCI DSS</title>
<link>http://www.infosecurity-us.com/view/5838/firms-failing-on-pci-dss/</link>
<description>A huge 81% of organizations that are subject to the Payment Card Industry’s Data Security Standard (PCI DSS) were found to be non-compliant prior to a data breach, according to a new study.</description>
<pubDate>Thu, 10 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5838/firms-failing-on-pci-dss/</guid>
</item>
<item>
<title>Cloud based wireless password crack service launches</title>
<link>http://www.infosecurity-us.com/view/5778/cloud-based-wireless-password-crack-service-launches/</link>
<description>A hacker who found a  flaw in the SSL protocol last year has launched a new project that cracks wireless network passwords using a cloud based computing service.</description>
<pubDate>Tue, 08 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5778/cloud-based-wireless-password-crack-service-launches/</guid>
</item>
<item>
<title>ISA: Stimulus, not regulation, to spur cybersecurity</title>
<link>http://www.infosecurity-us.com/view/5806/isa-stimulus-not-regulation-to-spur-cybersecurity/</link>
<description>Market stimulus, not regulation, is the key to enhancing cybersecurity at a national level, according to a report issued by a cybersecurity advocacy group last week.</description>
<pubDate>Tue, 08 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5806/isa-stimulus-not-regulation-to-spur-cybersecurity/</guid>
</item>
<item>
<title>Facebook bolsters online safety efforts</title>
<link>http://www.infosecurity-us.com/view/5809/facebook-bolsters-online-safety-efforts/</link>
<description>Facebook is trying to quash concerns over the privacy and safety of its online users, by pulling together several advocacy groups to form a safety advisory board. </description>
<pubDate>Tue, 08 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5809/facebook-bolsters-online-safety-efforts/</guid>
</item>
<item>
<title>Webinar: Data leak prevention, security and log management webinar scheduled</title>
<link>http://www.infosecurity-us.com/view/5753/webinar-data-leak-prevention-security-and-log-management-webinar-scheduled/</link>
<description>The issue of data leaks have been in the news constantly these last 12 months, with a litany of companies hit by publicly embarrassing leaks, losses and thefts.</description>
<pubDate>Mon, 07 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5753/webinar-data-leak-prevention-security-and-log-management-webinar-scheduled/</guid>
</item>
<item>
<title>Weekly brief - December 7</title>
<link>http://www.infosecurity-us.com/view/5764/weekly-brief-december-7/</link>
<description>Infosecurity magazine reviews the past week`s information security news.</description>
<pubDate>Mon, 07 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5764/weekly-brief-december-7/</guid>
</item>
<item>
<title>Adobe to patch mystery flaw tomorrow</title>
<link>http://www.infosecurity-us.com/view/5769/adobe-to-patch-mystery-flaw-tomorrow/</link>
<description>Adobe has announced that it will be issuing a critical update for its Flash and Air products tomorrow - but isn't telling us what the vulnerabilities are. </description>
<pubDate>Mon, 07 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5769/adobe-to-patch-mystery-flaw-tomorrow/</guid>
</item>
<item>
<title>Google launches DNS service</title>
<link>http://www.infosecurity-us.com/view/5774/google-launches-dns-service/</link>
<description>Google is hoping to beef up the web's security by providing its own domain name service (DNS). The search engine giant is asking companies to point their computers at its own DNS servers to get extra protection from DNS attacks, and to speed up their browsing. </description>
<pubDate>Mon, 07 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5774/google-launches-dns-service/</guid>
</item>
<item>
<title>Malware rebounds as cause of data loss</title>
<link>http://www.infosecurity-us.com/view/5718/malware-rebounds-as-cause-of-data-loss/</link>
<description>Malware has rebounded to become the biggest cause of data loss in organizations, according to a report from the Computer Security Institute (CSI). Malware infections far exceed the next most common cause - laptop and mobile hardware theft - said the 2009 CSI Computer Crime and Security Survey.</description>
<pubDate>Fri, 04 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5718/malware-rebounds-as-cause-of-data-loss/</guid>
</item>
<item>
<title>Email Zeus trojan scams on the rise</title>
<link>http://www.infosecurity-us.com/view/5730/email-zeus-trojan-scams-on-the-rise/</link>
<description>Online criminals are stepping up their campaign to infectInternet users with the Zeus trojan, according to new research published by Atlanta-based managed security firm SecureWorks. Email campaigns in particular are on the rise, the company has said.</description>
<pubDate>Fri, 04 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5730/email-zeus-trojan-scams-on-the-rise/</guid>
</item>
<item>
<title>Cameroon is worst neighborhood on web for cybersecurity</title>
<link>http://www.infosecurity-us.com/view/5739/cameroon-is-worst-neighborhood-on-web-for-cybersecurity/</link>
<description>The Cameroon '.CM' domain tops the list of the riskiest top-level domains in terms of cybersecurity, according to a report from McAfee. </description>
<pubDate>Fri, 04 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5739/cameroon-is-worst-neighborhood-on-web-for-cybersecurity/</guid>
</item>
<item>
<title>Feds tighten up cybersecurity hiring policies</title>
<link>http://www.infosecurity-us.com/view/5641/feds-tighten-up-cybersecurity-hiring-policies/</link>
<description>The federal government is tightening up hiring policies for cybersecurity professionals by launching cybersecurity competency models for its employees.</description>
<pubDate>Wed, 02 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5641/feds-tighten-up-cybersecurity-hiring-policies/</guid>
</item>
<item>
<title>Bit.ly tools up to stop spam</title>
<link>http://www.infosecurity-us.com/view/5649/bitly-tools-up-to-stop-spam/</link>
<description>URL shortening service Bit.ly has announced that it will be using three new services to help secure its service from spam and malware.</description>
<pubDate>Wed, 02 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5649/bitly-tools-up-to-stop-spam/</guid>
</item>
<item>
<title>Flu spoof delivers trojan</title>
<link>http://www.infosecurity-us.com/view/5664/flu-spoof-delivers-trojan/</link>
<description>The inevitable H1N1 flu trojan attacks have started. Yesterday, McAfee detected a new H1N1-related spam campaign, spoofing emails from the Center for Disease Control (CDC) and asking victims to fill out a 'vaccination profile' as part of a state-wide flu vaccination program.</description>
<pubDate>Wed, 02 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5664/flu-spoof-delivers-trojan/</guid>
</item>
<item>
<title>Prevx apologizes over Microsoft black screen claim</title>
<link>http://www.infosecurity-us.com/view/5665/prevx-apologizes-over-microsoft-black-screen-claim/</link>
<description>Anti-malware firm Prevx has apologized to Microsoft after admitting that the 'black screen of death' - a condition that renders Windows unusable after bootup - was not caused by faulty system patches after all. </description>
<pubDate>Wed, 02 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5665/prevx-apologizes-over-microsoft-black-screen-claim/</guid>
</item>
<item>
<title>Webroot stores email in cloud</title>
<link>http://www.infosecurity-us.com/view/5667/webroot-stores-email-in-cloud/</link>
<description>Boulder, Colorado-based web security firm Webroot has expanded its range of cloud based security services with a software as a service (Saas) based email archiving offering. </description>
<pubDate>Wed, 02 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5667/webroot-stores-email-in-cloud/</guid>
</item>
<item>
<title>Weekly brief December 1, 2009</title>
<link>http://www.infosecurity-us.com/view/5614/weekly-brief-december-1-2009/</link>
<description>Infosecurity reports on the past week's news</description>
<pubDate>Tue, 01 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5614/weekly-brief-december-1-2009/</guid>
</item>
<item>
<title>IBM snaps up Guardium</title>
<link>http://www.infosecurity-us.com/view/5647/ibm-snaps-up-guardium/</link>
<description>IBM has acquired Guardium, a company that sells enterprise database monitoring and security software. The acquisition gives IBM a software product that helps automate security compliance tasks, the companies said.</description>
<pubDate>Tue, 01 Dec 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5647/ibm-snaps-up-guardium/</guid>
</item>
<item>
<title>Air Force cybersecurity unit prepares operations</title>
<link>http://www.infosecurity-us.com/view/5549/air-force-cybersecurity-unit-prepares-operations/</link>
<description>The newly-created 24 U.S. Air Force is about to bring limited aspects of its cybersecurity command operations center online.</description>
<pubDate>Mon, 30 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5549/air-force-cybersecurity-unit-prepares-operations/</guid>
</item>
<item>
<title>ATM skimming sentenced</title>
<link>http://www.infosecurity-us.com/view/5605/atm-skimming-sentenced/</link>
<description>Romanian fraudster Tibenu Szebeni has been given 27 months in prison and made to pay back $52 000 in ill-gotten gains after being convicted of ATM skimming.</description>
<pubDate>Mon, 30 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5605/atm-skimming-sentenced/</guid>
</item>
<item>
<title>Bots used as password crackers</title>
<link>http://www.infosecurity-us.com/view/5610/bots-used-as-password-crackers/</link>
<description>Botnet machines are being used as password crackers, according to data released by Microsoft on Friday.</description>
<pubDate>Mon, 30 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5610/bots-used-as-password-crackers/</guid>
</item>
<item>
<title>Microsoft publishes heap-spraying protection research</title>
<link>http://www.infosecurity-us.com/view/5546/microsoft-publishes-heapspraying-protection-research/</link>
<description>Microsoft has published an article describing a new tool that it hopes will thwart memory-based heap-spraying attacks on software.</description>
<pubDate>Thu, 26 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5546/microsoft-publishes-heapspraying-protection-research/</guid>
</item>
<item>
<title>Allot web filtering helps ISPs lock out child pornography</title>
<link>http://www.infosecurity-us.com/view/5547/allot-web-filtering-helps-isps-lock-out-child-pornography/</link>
<description>Allot Communications has launched WebSafe, a web filtering service targeting broadband service providers to help protect against illegal content such as child pornography.</description>
<pubDate>Thu, 26 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5547/allot-web-filtering-helps-isps-lock-out-child-pornography/</guid>
</item>
<item>
<title>Symantec hacked in SQL attack</title>
<link>http://www.infosecurity-us.com/view/5502/symantec-hacked-in-sql-attack/</link>
<description>Symantec's Japanese support website has been hacked using an SQL injection attack, the company confirmed yesterday.</description>
<pubDate>Wed, 25 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5502/symantec-hacked-in-sql-attack/</guid>
</item>
<item>
<title>Godfather of spam Ralsky goes down</title>
<link>http://www.infosecurity-us.com/view/5503/godfather-of-spam-ralsky-goes-down/</link>
<description>Spam king Alan Ralsky was sentenced to four years in jail this week, for pump-and-dump stock spamming. Nine other spammers were also sent to jail for the same crime.</description>
<pubDate>Wed, 25 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5503/godfather-of-spam-ralsky-goes-down/</guid>
</item>
<item>
<title>Easing economy changes spam content</title>
<link>http://www.infosecurity-us.com/view/5504/easing-economy-changes-spam-content/</link>
<description>Better economic conditions mean that spammers are once again advertising third party products and services, rather than mounting spam campaigns attempting to garner business for themselves, a new report from Kaspersky said this week.</description>
<pubDate>Wed, 25 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5504/easing-economy-changes-spam-content/</guid>
</item>
<item>
<title>Employees ready to steal data during economic crunch</title>
<link>http://www.infosecurity-us.com/view/5453/employees-ready-to-steal-data-during-economic-crunch/</link>
<description>Economically challenged employees are likely to abandon their ethics in pursuit of new jobs by stealing corporate data, according to a survey from security firm Cyber-Ark.</description>
<pubDate>Tue, 24 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5453/employees-ready-to-steal-data-during-economic-crunch/</guid>
</item>
<item>
<title>iPhone banking trojan creates botnet from Apple devices</title>
<link>http://www.infosecurity-us.com/view/5478/iphone-banking-trojan-creates-botnet-from-apple-devices/</link>
<description>A third piece of iPhone malware has appeared, pushing the envelope further than ever before by creating a botnet of infected devices and acting as a banking trojan.</description>
<pubDate>Tue, 24 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5478/iphone-banking-trojan-creates-botnet-from-apple-devices/</guid>
</item>
<item>
<title>China engaged in long-term information warfare activity, says US government</title>
<link>http://www.infosecurity-us.com/view/5479/china-engaged-in-longterm-information-warfare-activity-says-us-government/</link>
<description>China is waging a long-term sustained information warfare campaign against the US, according to a report by the US-China Economic and Security Review Commission (USCC).</description>
<pubDate>Tue, 24 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5479/china-engaged-in-longterm-information-warfare-activity-says-us-government/</guid>
</item>
<item>
<title>Mobile working raises information security issues for government</title>
<link>http://www.infosecurity-us.com/view/5419/mobile-working-raises-information-security-issues-for-government/</link>
<description>Mobile working and online collaboration are two of the most threatening trends when it comes to information security in the federal government, according to a report released by the Ponemon Institute.</description>
<pubDate>Mon, 23 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5419/mobile-working-raises-information-security-issues-for-government/</guid>
</item>
<item>
<title>Canadians too privacy intrusive on financial data logging</title>
<link>http://www.infosecurity-us.com/view/5420/canadians-too-privacy-intrusive-on-financial-data-logging/</link>
<description>The Canadian government is collecting more personal financial information on citizens than the law allows, according to the country's federal Privacy Commissioner.</description>
<pubDate>Mon, 23 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5420/canadians-too-privacy-intrusive-on-financial-data-logging/</guid>
</item>
<item>
<title>Infosecurity US weekly brief - November 23, 2009</title>
<link>http://www.infosecurity-us.com/view/5421/infosecurity-us-weekly-brief-november-23-2009/</link>
<description>Infosecurity US rounds up the last week's information security news.</description>
<pubDate>Mon, 23 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5421/infosecurity-us-weekly-brief-november-23-2009/</guid>
</item>
<item>
<title>Health Net comes under scrutiny for data loss</title>
<link>http://www.infosecurity-us.com/view/5422/health-net-comes-under-scrutiny-for-data-loss/</link>
<description>Medical insurance firm Health Net is under investigation by at least two Attorney Generals, following a data loss that has exposed up to 1.5 million customer records</description>
<pubDate>Mon, 23 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5422/health-net-comes-under-scrutiny-for-data-loss/</guid>
</item>
<item>
<title>Imation ships wireless USB drive</title>
<link>http://www.infosecurity-us.com/view/5382/imation-ships-wireless-usb-drive/</link>
<description>Imation has announced what it says is the world's first wireless USB external hard drive. </description>
<pubDate>Fri, 20 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5382/imation-ships-wireless-usb-drive/</guid>
</item>
<item>
<title>Rogue blogs pollute Google results</title>
<link>http://www.infosecurity-us.com/view/5402/rogue-blogs-pollute-google-results/</link>
<description>Another round of SEO attacks has been discovered targeting Google. Criminals are crafting custom  rogue blogs designed to target the 'long tail' of obscure Google searches to avoid having to compete with more popular searches in Google results, according to cyber intelligence company Cyveillance.</description>
<pubDate>Fri, 20 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5402/rogue-blogs-pollute-google-results/</guid>
</item>
<item>
<title>Smart grid could lead to privacy stupidity, warns Commissioner</title>
<link>http://www.infosecurity-us.com/view/5346/smart-grid-could-lead-to-privacy-stupidity-warns-commissioner/</link>
<description>A smart electricity grid could lead to some stupid privacy decisions, according to a report issued by the Information and Privacy Commissioner of Ontario, Canada.</description>
<pubDate>Thu, 19 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5346/smart-grid-could-lead-to-privacy-stupidity-warns-commissioner/</guid>
</item>
<item>
<title>DNSSEC encrypted domain technology gets welcome boost</title>
<link>http://www.infosecurity-us.com/view/5378/dnssec-encrypted-domain-technology-gets-welcome-boost/</link>
<description>Things appear to be moving ahead for DNSSEC, the encrypted domain technology designed to protect the domain name system from spoofing and other hacks. Nominum, which supplies DNS systems, announced new capabilities in its products designed to eliminate barriers to DNSSEC deployment.</description>
<pubDate>Thu, 19 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5378/dnssec-encrypted-domain-technology-gets-welcome-boost/</guid>
</item>
<item>
<title>Gumblar goes into overdrive</title>
<link>http://www.infosecurity-us.com/view/5380/gumblar-goes-into-overdrive/</link>
<description>The Gumblar botnet has moved into overdrive, changing its operating model to dramatically increase its infection rates, according to the latest monthly threat report from ScanSafe.</description>
<pubDate>Thu, 19 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5380/gumblar-goes-into-overdrive/</guid>
</item>
<item>
<title>Defense contractor gets serious about information security</title>
<link>http://www.infosecurity-us.com/view/5323/defense-contractor-gets-serious-about-information-security/</link>
<description>Lockheed Martin has formed an information security alliance with a collection of technology providers that will focus on self-healing systems to help solve information security problems.</description>
<pubDate>Wed, 18 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5323/defense-contractor-gets-serious-about-information-security/</guid>
</item>
<item>
<title>McAfee: Nations engaged in cold war-style cyberwarfare</title>
<link>http://www.infosecurity-us.com/view/5324/mcafee-nations-engaged-in-cold-warstyle-cyberwarfare/</link>
<description>Nations are secretly stockpiling tools and techniques in preparation for sophisticated cyberwarfare against each other, McAfee said in its annual Virtual Criminology report yesterday.</description>
<pubDate>Wed, 18 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5324/mcafee-nations-engaged-in-cold-warstyle-cyberwarfare/</guid>
</item>
<item>
<title>Los Alamos fails to toe information security line again</title>
<link>http://www.infosecurity-us.com/view/5325/los-alamos-fails-to-toe-information-security-line-again/</link>
<description>Los Alamos National Laboratory has spent $45 million on information security for its classified computer network in the past eight years, but it is still inadequate, according to a report from the Government Accountability Office.</description>
<pubDate>Wed, 18 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5325/los-alamos-fails-to-toe-information-security-line-again/</guid>
</item>
<item>
<title>Network IPS far from adequate, says ICSA Labs</title>
<link>http://www.infosecurity-us.com/view/5276/network-ips-far-from-adequate-says-icsa-labs/</link>
<description>Seven in every 10 network IPS products never attain security certification because they are inadequate, according to a damning report from ICSA Labs, a division of Verizon business.</description>
<pubDate>Tue, 17 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5276/network-ips-far-from-adequate-says-icsa-labs/</guid>
</item>
<item>
<title>Astaro offers free firewall version of its UTM system</title>
<link>http://www.infosecurity-us.com/view/5281/astaro-offers-free-firewall-version-of-its-utm-system/</link>
<description>Unified threat management firm Astaro is offering a free version of its UTM product, focusing on firewall functions and targeting SMBs.</description>
<pubDate>Tue, 17 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5281/astaro-offers-free-firewall-version-of-its-utm-system/</guid>
</item>
<item>
<title>Microsoft discovers Windows 7 zero-day flaw</title>
<link>http://www.infosecurity-us.com/view/5289/microsoft-discovers-windows-7-zeroday-flaw/</link>
<description>Microsoft has discovered a zero-day denial of service vulnerability in the server message block (SMB) protocol used in Windows 7.</description>
<pubDate>Tue, 17 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5289/microsoft-discovers-windows-7-zeroday-flaw/</guid>
</item>
<item>
<title>Sophos warns against Tamiflu scam</title>
<link>http://www.infosecurity-us.com/view/5290/sophos-warns-against-tamiflu-scam/</link>
<description>Sophos has warned internet users against buying Tamiflu online, the drug designed to help stop people getting infected by the H1N1 virus also known as the swine flu.</description>
<pubDate>Tue, 17 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5290/sophos-warns-against-tamiflu-scam/</guid>
</item>
<item>
<title>Misconfigured modems leave web open to DDoS attacks</title>
<link>http://www.infosecurity-us.com/view/5291/misconfigured-modems-leave-web-open-to-ddos-attacks/</link>
<description>Poorly configured cable and DSL modems are leaving the internet open to distributed denial of service (DDoS) attacks based on rogue DNS queries, according to research to be released this week by Infoblox.</description>
<pubDate>Tue, 17 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5291/misconfigured-modems-leave-web-open-to-ddos-attacks/</guid>
</item>
<item>
<title>Weekly brief - November 16, 2009</title>
<link>http://www.infosecurity-us.com/view/5252/weekly-brief-november-16-2009/</link>
<description>Infosecurity rounds up this week's information security news.</description>
<pubDate>Mon, 16 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5252/weekly-brief-november-16-2009/</guid>
</item>
<item>
<title>Microsoft gets agile with Security Development Lifecycle</title>
<link>http://www.infosecurity-us.com/view/5222/microsoft-gets-agile-with-security-development-lifecycle/</link>
<description>Microsoft has announced guidance for applying secure programming techniques for agile software developers. The company rolled out new guidelines that will enable agile software developers to apply its Security Development Lifecycle (SDL) guidelines.</description>
<pubDate>Fri, 13 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5222/microsoft-gets-agile-with-security-development-lifecycle/</guid>
</item>
<item>
<title>Trustwave enters incident management business</title>
<link>http://www.infosecurity-us.com/view/5223/trustwave-enters-incident-management-business/</link>
<description>Security and PCI compliance tools vendor Trustwave has launched an Incident Readiness Service to prepare and help protect organizations from security incidents, and help test incident response plans. </description>
<pubDate>Fri, 13 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5223/trustwave-enters-incident-management-business/</guid>
</item>
<item>
<title>Mega-D spam count zeroes out after FireEye botnet takedown</title>
<link>http://www.infosecurity-us.com/view/5224/megad-spam-count-zeroes-out-after-fireeye-botnet-takedown/</link>
<description>Spam sent by the Mega-D botnet has almost entirely disappeared, after US-based anti-malware appliance firm FireEye took it down.</description>
<pubDate>Fri, 13 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5224/megad-spam-count-zeroes-out-after-fireeye-botnet-takedown/</guid>
</item>
<item>
<title>InDorse beefs up image watermarking</title>
<link>http://www.infosecurity-us.com/view/5187/indorse-beefs-up-image-watermarking/</link>
<description>InDorse Technologies has released a software program that embeds policy information directly within its watermarking designed to protect image data. The watermarking product, called InDorse Image Assurance (InDIA), is designed to prevent the distribution of pirated photos and video gaming images to unauthorized personnel.</description>
<pubDate>Thu, 12 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5187/indorse-beefs-up-image-watermarking/</guid>
</item>
<item>
<title>iPhone hacker tool unveiled</title>
<link>http://www.infosecurity-us.com/view/5188/iphone-hacker-tool-unveiled/</link>
<description>Just days after an iPhone worm was discovered in the wild, Mac security firm Intego has discovered a hacker tool targeting the iPhone that exploits the same vulnerability.</description>
<pubDate>Thu, 12 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5188/iphone-hacker-tool-unveiled/</guid>
</item>
<item>
<title>Report: Federal agencies overstretched on cybersecurity</title>
<link>http://www.infosecurity-us.com/view/5189/report-federal-agencies-overstretched-on-cybersecurity/</link>
<description>Only half of the federal government's agencies feel that they have an adequate security budget, according to a report released this week. And yet, cybersecurity incidents are on the rise.</description>
<pubDate>Thu, 12 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5189/report-federal-agencies-overstretched-on-cybersecurity/</guid>
</item>
<item>
<title>Facebook hits back at hacked Groups claims</title>
<link>http://www.infosecurity-us.com/view/5150/facebook-hits-back-at-hacked-groups-claims/</link>
<description>Facebook hit back at a grassroots digital privacy group this week, after it criticized the social media giant's handling of its Groups functionality. Control Your Info, a group hoping to highlight information privacy flaws in social media applications, revealed that it is possible for anyone to take over ownership of a Facebook group that has no administrators.</description>
<pubDate>Wed, 11 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5150/facebook-hits-back-at-hacked-groups-claims/</guid>
</item>
<item>
<title>Unisys adds more secure cloud options</title>
<link>http://www.infosecurity-us.com/view/5151/unisys-adds-more-secure-cloud-options/</link>
<description>Unisys has announced a locally-hosted version of its secure cloud computing system, along with updates to its existing managed public cloud offering.</description>
<pubDate>Wed, 11 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5151/unisys-adds-more-secure-cloud-options/</guid>
</item>
<item>
<title>Phishers prepare Christmas campaign</title>
<link>http://www.infosecurity-us.com/view/5153/phishers-prepare-christmas-campaign/</link>
<description>Phishers are gearing up for the Christmas holiday season, according to the latest report from Symantec. Phishing attacks were up 17% in October compared to the previous month, and phishers continue to automate their attacks by increasingly resourcing to phishing toolkits.</description>
<pubDate>Wed, 11 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5153/phishers-prepare-christmas-campaign/</guid>
</item>
<item>
<title>Google cloud platform used for botnet control</title>
<link>http://www.infosecurity-us.com/view/5115/google-cloud-platform-used-for-botnet-control/</link>
<description>Botnet controllers have been using cloud based systems such as the Google cloud platform as command and control nodes for infected PCs, said a researcher at Arbor Networks. </description>
<pubDate>Tue, 10 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5115/google-cloud-platform-used-for-botnet-control/</guid>
</item>
<item>
<title>Spam king Sanford Wallace owes Facebook US$10.7m</title>
<link>http://www.infosecurity-us.com/view/5068/spam-king-sanford-wallace-owes-facebook-us107m/</link>
<description>Spam king Sanford Wallace has been ordered to pay US$710.7 million to social networking company Facebook following a federal court case. Wallace is said to have compromised Facebook accounts using phishing emails, and used them to send spam to other members.</description>
<pubDate>Mon, 09 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5068/spam-king-sanford-wallace-owes-facebook-us107m/</guid>
</item>
<item>
<title>Weekly brief November 9, 2009</title>
<link>http://www.infosecurity-us.com/view/5092/weekly-brief-november-9-2009/</link>
<description>Breaches, Certifications, Charges, Vulnerabilities, and Acquisitions. Infosecurity sums up the past week's news.</description>
<pubDate>Mon, 09 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5092/weekly-brief-november-9-2009/</guid>
</item>
<item>
<title>Open source software in US government</title>
<link>http://www.infosecurity-us.com/view/5066/open-source-software-in-us-government/</link>
<description>The Department of Defense has updated its guidance on open source software for the first time since 2003.</description>
<pubDate>Sun, 08 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5066/open-source-software-in-us-government/</guid>
</item>
<item>
<title>Pirate Bay clampdown saw illegal file sharing sites rocket</title>
<link>http://www.infosecurity-us.com/view/5067/pirate-bay-clampdown-saw-illegal-file-sharing-sites-rocket/</link>
<description>The closure of the popular Pirate Bay torrent tracking service earlier this year created a flood of alternative illegal file sharing sites and malware distribution hubs, according to a report released by McAfee.</description>
<pubDate>Sun, 08 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5067/pirate-bay-clampdown-saw-illegal-file-sharing-sites-rocket/</guid>
</item>
<item>
<title>Swine flu could give internet a cold</title>
<link>http://www.infosecurity-us.com/view/5063/swine-flu-could-give-internet-a-cold/</link>
<description>A physical pandemic such as the swine flu (H1N1) could swamp internet service providers serving residential users, according to a report from the Government Accountability Office – and the Department Of Homeland Security doesn't have a plan to deal with it.</description>
<pubDate>Sat, 07 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5063/swine-flu-could-give-internet-a-cold/</guid>
</item>
<item>
<title>UFO hacker Gary Mckinnon gets last-minute relief</title>
<link>http://www.infosecurity-us.com/view/5065/ufo-hacker-gary-mckinnon-gets-lastminute-relief/</link>
<description>UK UFO hacker Gary McKinnon has been thrown a lifeline by UK home Secretary Alan Johnson following the production of medical evidence which suggests that his health could be at risk if extradited.</description>
<pubDate>Sat, 07 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5065/ufo-hacker-gary-mckinnon-gets-lastminute-relief/</guid>
</item>
<item>
<title>Spearphishing emails target customers of ill-equipped banks.</title>
<link>http://www.infosecurity-us.com/view/5052/spearphishing-emails-target-customers-of-illequipped-banks/</link>
<description>The FBI has slammed poor security in financial institutions, after identifying a drastic rise in money being stolen from small to medium-sized businesses via spearphishing emails, it said in an intelligence note early this week.</description>
<pubDate>Fri, 06 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5052/spearphishing-emails-target-customers-of-illequipped-banks/</guid>
</item>
<item>
<title>Anti-virus vendors stony-faced at Lose/Lose </title>
<link>http://www.infosecurity-us.com/view/5053/antivirus-vendors-stonyfaced-at-loselose-/</link>
<description>Anti-virus companies are failing to get the joke after the release of a free arcade game for the Mac that deletes the users' files during play. Lose/Lose warns 'victims' that it is about to delete files on their hard drives before they begin playing, and it keeps its word.</description>
<pubDate>Fri, 06 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5053/antivirus-vendors-stonyfaced-at-loselose-/</guid>
</item>
<item>
<title>Microsoft releases SIRv7 - network worms on the rise</title>
<link>http://www.infosecurity-us.com/view/5060/microsoft-releases-sirv7-network-worms-on-the-rise/</link>
<description>Network worms are on the rise again thanks to poor IT management in the enterprise, according to the latest Security Intelligence Report (SIR) from Microsoft. Dramatic successes among worms in enterprises have caused this category of malware to move from fifth place to second place worldwide.</description>
<pubDate>Fri, 06 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/5060/microsoft-releases-sirv7-network-worms-on-the-rise/</guid>
</item>
<item>
<title>Weekly brief, Nov 2 2009</title>
<link>http://www.infosecurity-us.com/view/4915/weekly-brief-nov-2-2009/</link>
<description>Spammers, breaches, cloud concerns, and government moves make this week's headlines in our infosecurity weekly brief.</description>
<pubDate>Mon, 02 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4915/weekly-brief-nov-2-2009/</guid>
</item>
<item>
<title>US opens cyber security command centre</title>
<link>http://www.infosecurity-us.com/view/4922/us-opens-cyber-security-command-centre/</link>
<description>The US has officially opened a state-of-the-art unified command center for government cybersecurity in Arlington, Virginia.</description>
<pubDate>Mon, 02 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4922/us-opens-cyber-security-command-centre/</guid>
</item>
<item>
<title>Window 7 users struggle to boot up</title>
<link>http://www.infosecurity-us.com/view/4924/window-7-users-struggle-to-boot-up/</link>
<description>Windows 7 owners are having problems installing their new operating system, especially over Vista, according to comments on Microsoft's support site.</description>
<pubDate>Mon, 02 Nov 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4924/window-7-users-struggle-to-boot-up/</guid>
</item>
<item>
<title>Twitter not adequately checking URLs, says Kaspersky</title>
<link>http://www.infosecurity-us.com/view/4890/twitter-not-adequately-checking-urls-says-kaspersky/</link>
<description>Twitter is failing to block malicious websites that are being posted to it via URL shortening services, according to researchers from Kaspersky, who have applied their own back-end service to help solve the problem.</description>
<pubDate>Fri, 30 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4890/twitter-not-adequately-checking-urls-says-kaspersky/</guid>
</item>
<item>
<title>Tipping Point gets multi-threaded with intrusion prevention system launch</title>
<link>http://www.infosecurity-us.com/view/4859/tipping-point-gets-multithreaded-with-intrusion-prevention-system-launch/</link>
<description>Tipping Point unveiled its latest intrusion prevention system this week, featuring an updated software / hardware combo that the company said is better at handling many tasks at once.</description>
<pubDate>Thu, 29 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4859/tipping-point-gets-multithreaded-with-intrusion-prevention-system-launch/</guid>
</item>
<item>
<title>Experts downplay cyberwarfare </title>
<link>http://www.infosecurity-us.com/view/4824/experts-downplay-cyberwarfare-/</link>
<description>A prominent strategic think tank published a report downplaying the potential for conflict in cyberspace, adding to influential voices that question the role of cyberwarfare.</description>
<pubDate>Wed, 28 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4824/experts-downplay-cyberwarfare-/</guid>
</item>
<item>
<title>FBI director almost fell for phishing attack</title>
<link>http://www.infosecurity-us.com/view/4842/fbi-director-almost-fell-for-phishing-attack/</link>
<description>The director of the FBI and the man charged with protecting the US from cyberthreats, Rober Mueller, has given up online banking after a phishing scare.</description>
<pubDate>Wed, 28 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4842/fbi-director-almost-fell-for-phishing-attack/</guid>
</item>
<item>
<title>Weekly brief October 26, 2009</title>
<link>http://www.infosecurity-us.com/view/4754/weekly-brief-october-26-2009/</link>
<description>Information security: Breaches, walls, charges, tools, and deals.</description>
<pubDate>Mon, 26 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4754/weekly-brief-october-26-2009/</guid>
</item>
<item>
<title>Man jailed for selling pirated software on eBay</title>
<link>http://www.infosecurity-us.com/view/4761/man-jailed-for-selling-pirated-software-on-ebay/</link>
<description>A US court has sentenced a man to three years in jail for selling more than $1m worth of pirated software on eBay.</description>
<pubDate>Mon, 26 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4761/man-jailed-for-selling-pirated-software-on-ebay/</guid>
</item>
<item>
<title>RSA Europe: FBI and Soca need help</title>
<link>http://www.infosecurity-us.com/view/4762/rsa-europe-fbi-and-soca-need-help/</link>
<description>The US Federal Bureau of Investigation (FBI) and the UK Serious Organised Crime Agency (Soca) have called for greater collaboration with the IT security industry in fighting cybercrime.</description>
<pubDate>Mon, 26 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4762/rsa-europe-fbi-and-soca-need-help/</guid>
</item>
<item>
<title>Rapid7 acquires Metasploit open source project</title>
<link>http://www.infosecurity-us.com/view/4693/rapid7-acquires-metasploit-open-source-project/</link>
<description>Rapid7, the vulnerability management security specialist, has acquired Metasploit, the ongoing open source security project that developed the Metasploit Framework. The move is billed as allowing Rapid7 to enhance its penetration testing technologies.</description>
<pubDate>Wed, 21 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4693/rapid7-acquires-metasploit-open-source-project/</guid>
</item>
<item>
<title>Symantec says internet users plagued by fake anti-virus software</title>
<link>http://www.infosecurity-us.com/view/4659/symantec-says-internet-users-plagued-by-fake-antivirus-software/</link>
<description>Research just published by Symantec claims to show that users are increasingly being fooled into installing fake anti-virus software - aka scamware - onto their machines.</description>
<pubDate>Tue, 20 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4659/symantec-says-internet-users-plagued-by-fake-antivirus-software/</guid>
</item>
<item>
<title>Find out how to implement least-privilege security management for Linux and UNIX</title>
<link>http://www.infosecurity-us.com/view/4627/find-out-how-to-implement-leastprivilege-security-management-for-linux-and-unix/</link>
<description>A least-privilege security model has its merits, but it can be challenging to implement in for example Linux and UNIX environments where administrators often share passwords to root- or other superuser accounts. Find out how to implement least-privilege security management for Linux and UNIX for free on October 27 at 10am Pacific Time.</description>
<pubDate>Mon, 19 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4627/find-out-how-to-implement-leastprivilege-security-management-for-linux-and-unix/</guid>
</item>
<item>
<title>Microsoft Security Essentials gets 1.5 million downloads in first week</title>
<link>http://www.infosecurity-us.com/view/4633/microsoft-security-essentials-gets-15-million-downloads-in-first-week/</link>
<description>More than 1.5 million Windows users downloaded Microsoft's free anti-virus and anti-malware tool, Security Essentials in the week after it was released, the software firm has claimed.</description>
<pubDate>Mon, 19 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4633/microsoft-security-essentials-gets-15-million-downloads-in-first-week/</guid>
</item>
<item>
<title>Google Apps ad campaign goes global</title>
<link>http://www.infosecurity-us.com/view/4636/google-apps-ad-campaign-goes-global/</link>
<description>Google is to expand a mass-market advertising campaign for its cloud-based office software services beyond the US today.</description>
<pubDate>Mon, 19 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4636/google-apps-ad-campaign-goes-global/</guid>
</item>
<item>
<title>Weekly brief - October 19, 2009</title>
<link>http://www.infosecurity-us.com/view/4638/weekly-brief-october-19-2009/</link>
<description>US$4000 lost in Facebook scam; Michigan's airport website closed due to malware; the first Windows 7 security patches appear; and more. We report on the IT security news...</description>
<pubDate>Mon, 19 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4638/weekly-brief-october-19-2009/</guid>
</item>
<item>
<title>Wal-Mart EPOS system source code hacked - how secure is the payment card data?</title>
<link>http://www.infosecurity-us.com/view/4579/walmart-epos-system-source-code-hacked-how-secure-is-the-payment-card-data/</link>
<description>Reports are coming in that the source code of the Wal-Mart highly customized point-of-sale (EPOS) computer system - used in almost 900 of its stores across the US - has been hacked. </description>
<pubDate>Fri, 16 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4579/walmart-epos-system-source-code-hacked-how-secure-is-the-payment-card-data/</guid>
</item>
<item>
<title>Lawsuits fly over T-Mobile Sidekick cloud data loss</title>
<link>http://www.infosecurity-us.com/view/4600/lawsuits-fly-over-tmobile-sidekick-cloud-data-loss/</link>
<description>T-Mobile has reportedly been hit by two class action lawsuits alleging that the cellular carrier misled consumers into believing that their data was secure after data was lost in the cloud</description>
<pubDate>Fri, 16 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4600/lawsuits-fly-over-tmobile-sidekick-cloud-data-loss/</guid>
</item>
<item>
<title>Report: The Department of Homeland Security could try harder on web security</title>
<link>http://www.infosecurity-us.com/view/4539/report-the-department-of-homeland-security-could-try-harder-on-web-security/</link>
<description>The Department of Homeland Security is putting its websites at risk by failing to patch software and conduct regular security assessments, according to a report from the inspector general, Richard Skinner.</description>
<pubDate>Wed, 14 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4539/report-the-department-of-homeland-security-could-try-harder-on-web-security/</guid>
</item>
<item>
<title>US phishing attacks decline in third quarter</title>
<link>http://www.infosecurity-us.com/view/4549/us-phishing-attacks-decline-in-third-quarter/</link>
<description>The third quarter security trends report from Commtouch and its security alliance partners suggests that phishing is now on the decline, after peaking in the summer.</description>
<pubDate>Wed, 14 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4549/us-phishing-attacks-decline-in-third-quarter/</guid>
</item>
<item>
<title>QSA system is broken, says Heartland CEO</title>
<link>http://www.infosecurity-us.com/view/4562/qsa-system-is-broken-says-heartland-ceo/</link>
<description>In a session titled ‘Enhancing payment security in 2010’, Robert O. Carr, Chairman and CEO or Heartland Payment Systems - the subject of potentially the world’s biggest data security breach earlier this year - declared that the model used by quality security assessors (QSA) is “broken”. </description>
<pubDate>Wed, 14 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4562/qsa-system-is-broken-says-heartland-ceo/</guid>
</item>
<item>
<title>Weekly brief - October 13, 2009</title>
<link>http://www.infosecurity-us.com/view/4512/weekly-brief-october-13-2009/</link>
<description>Trends, Tussles, Tools, and Attacks: We round up the last week's information security news.</description>
<pubDate>Tue, 13 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4512/weekly-brief-october-13-2009/</guid>
</item>
<item>
<title>Google Voice under US federal spotlight</title>
<link>http://www.infosecurity-us.com/view/4498/google-voice-under-us-federal-spotlight/</link>
<description>US communication authorities are investigating allegations by telecoms group AT&amp;T that Google has an unfair advantage because Google Voice is not covered by federal rules that govern phone service providers.</description>
<pubDate>Mon, 12 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4498/google-voice-under-us-federal-spotlight/</guid>
</item>
<item>
<title>FBI nets 100 in Operation Phish Phry</title>
<link>http://www.infosecurity-us.com/view/4500/fbi-nets-100-in-operation-phish-phry/</link>
<description>Police and FBI agents yesterday charged nearly 100 people in the US and Egypt as part of Operation Phish Phry, one the largest cyber fraud phishing cases to date.</description>
<pubDate>Mon, 12 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4500/fbi-nets-100-in-operation-phish-phry/</guid>
</item>
<item>
<title>Comcast gets proactive with malware infected customers</title>
<link>http://www.infosecurity-us.com/view/4453/comcast-gets-proactive-with-malware-infected-customers/</link>
<description>Comcast is piloting a service that will notify customers that have been infected with malware, the company said this week.</description>
<pubDate>Fri, 09 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4453/comcast-gets-proactive-with-malware-infected-customers/</guid>
</item>
<item>
<title>Adobe Reader struck by yet another zero-day security flaw</title>
<link>http://www.infosecurity-us.com/view/4454/adobe-reader-struck-by-yet-another-zeroday-security-flaw/</link>
<description>Adobe is warning that a critical security vulnerability in its Adobe Reader and Acrobat programs are being exploited in the wild.</description>
<pubDate>Fri, 09 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4454/adobe-reader-struck-by-yet-another-zeroday-security-flaw/</guid>
</item>
<item>
<title>Football and hockey seasons off to a malicious start on web, says eSoft </title>
<link>http://www.infosecurity-us.com/view/4444/football-and-hockey-seasons-off-to-a-malicious-start-on-web-says-esoft-/</link>
<description>Research revealed by eSoft, the web content filtering company, suggests there has a been a &quot;startling increase&quot; in compromised sports websites, including Fox Sports, the popular sports portal operated by Fox News.</description>
<pubDate>Thu, 08 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4444/football-and-hockey-seasons-off-to-a-malicious-start-on-web-says-esoft-/</guid>
</item>
<item>
<title>IBM offers SME cloud email for just $3.00 per user</title>
<link>http://www.infosecurity-us.com/view/4365/ibm-offers-sme-cloud-email-for-just-300-per-user/</link>
<description>IBM has surprised the cloud computing industry by launching a cloud-based email service - claiming to offer &quot;reliability, privacy and security&quot; - for just $3.00 per user per month.</description>
<pubDate>Tue, 06 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4365/ibm-offers-sme-cloud-email-for-just-300-per-user/</guid>
</item>
<item>
<title>Weekly brief - October 5 2009</title>
<link>http://www.infosecurity-us.com/view/4346/weekly-brief-october-5-2009/</link>
<description>Deviousness, Defenses, and Disappointments - read all about the week's security news in our weekly brief.</description>
<pubDate>Mon, 05 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4346/weekly-brief-october-5-2009/</guid>
</item>
<item>
<title>Rogue malware explodes in 2009</title>
<link>http://www.infosecurity-us.com/view/4370/rogue-malware-explodes-in-2009/</link>
<description>Business in rogue anti-virus software is booming, according to a new report from the Anti Phishing Working Group (APWG). In the first half of this year, the number of such programs plaguing internet users increased by 585%.</description>
<pubDate>Mon, 05 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4370/rogue-malware-explodes-in-2009/</guid>
</item>
<item>
<title>Researchers turn wireless network into X-ray tool</title>
<link>http://www.infosecurity-us.com/view/4306/researchers-turn-wireless-network-into-xray-tool/</link>
<description>Researchers at the University of Utah have devised a way to visually monitor a room using cheap wireless sensors. The technique, known as ' variance-based radio tomography', effectively enables its users to see through walls, explain Jerry Wilson and Neal Patwari, authors of a paper on the subject.</description>
<pubDate>Fri, 02 Oct 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4306/researchers-turn-wireless-network-into-xray-tool/</guid>
</item>
<item>
<title>Microsoft ships free anti-virus tool</title>
<link>http://www.infosecurity-us.com/view/4252/microsoft-ships-free-antivirus-tool/</link>
<description>Microsoft officially shipped Microsoft Security Essentials, its free anti-virus product, yesterday. The product, which had been beta tested under the codename Morro, is designed as a free software offering specifically for home users.</description>
<pubDate>Wed, 30 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4252/microsoft-ships-free-antivirus-tool/</guid>
</item>
<item>
<title>Google deactivates Gmail email account after US bank error</title>
<link>http://www.infosecurity-us.com/view/4262/google-deactivates-gmail-email-account-after-us-bank-error/</link>
<description>In an interesting turn of events, a small bank in the US inadvertently emailed data on around 1300 of its customers to a random Gmail account. Then, after failing to contact the owner of the Gmail account, successfully requested a court to order Google to deactivate the Gmail account in question.</description>
<pubDate>Wed, 30 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4262/google-deactivates-gmail-email-account-after-us-bank-error/</guid>
</item>
<item>
<title>Netflix' second data challenge on revealing customers DVD rental habits has privacy experts hopping mad</title>
<link>http://www.infosecurity-us.com/view/4226/netflix-second-data-challenge-on-revealing-customers-dvd-rental-habits-has-privacy-experts-hopping-mad/</link>
<description>Privacy advocates are furious at plans by DVD rental service Netflix to unveil more data about the rental habits of its customers. Experts argue that the data could easily be used to identify customers and draw inferences about their lifestyles.</description>
<pubDate>Tue, 29 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4226/netflix-second-data-challenge-on-revealing-customers-dvd-rental-habits-has-privacy-experts-hopping-mad/</guid>
</item>
<item>
<title>Weekly brief - September 28, 2009</title>
<link>http://www.infosecurity-us.com/view/4220/weekly-brief-september-28-2009/</link>
<description>Takedowns, Tools, Threats, and Tsk, Tsk! We review the week's information security news.</description>
<pubDate>Mon, 28 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4220/weekly-brief-september-28-2009/</guid>
</item>
<item>
<title>Malicious advertising malware hit popular websites</title>
<link>http://www.infosecurity-us.com/view/4168/malicious-advertising-malware-hit-popular-websites/</link>
<description>Popular websites have been made to serve up malware via malicious advertising delivered by advertising banner services.</description>
<pubDate>Fri, 25 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4168/malicious-advertising-malware-hit-popular-websites/</guid>
</item>
<item>
<title>Hackers pose as internet telephony firm in New York Times ad scam</title>
<link>http://www.infosecurity-us.com/view/4131/hackers-pose-as-internet-telephony-firm-in-new-york-times-ad-scam/</link>
<description>The New York Times has admitted it has been the victim of a complex scam, in which a group of hackers purchased ad space on the famous publisher's website, then posed as internet telephony company Vonage, to infect users with malware.</description>
<pubDate>Thu, 24 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4131/hackers-pose-as-internet-telephony-firm-in-new-york-times-ad-scam/</guid>
</item>
<item>
<title>Canon printer protects data in copied documents</title>
<link>http://www.infosecurity-us.com/view/4095/canon-printer-protects-data-in-copied-documents/</link>
<description>Printer company Canon has unveiled a printer that can automatically protect the data in copied documents. The Canon ImageRunner Advance printer, targeted at medium to large enterprises, features Scan Lock, a system which superimposes a watermark on copied documents, coded as a series of microdots.</description>
<pubDate>Wed, 23 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4095/canon-printer-protects-data-in-copied-documents/</guid>
</item>
<item>
<title>Chat-in-the-middle phishing attack targets online banking</title>
<link>http://www.infosecurity-us.com/view/4122/chatinthemiddle-phishing-attack-targets-online-banking/</link>
<description>RSA, the security division of EMC has discovered a phishing attack it calls ‘chat-in-the-middle’, which targets online banking customers tricking them into divulging username and passwords.</description>
<pubDate>Wed, 23 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4122/chatinthemiddle-phishing-attack-targets-online-banking/</guid>
</item>
<item>
<title>MIT projects raise privacy questions</title>
<link>http://www.infosecurity-us.com/view/4068/mit-projects-raise-privacy-questions/</link>
<description>Two experiments conducted at MIT are raising questions about the level of privacy among those who use modern tools such as mobile phones and social networks - and suggesting that there is even less of it than most of us already thought.</description>
<pubDate>Tue, 22 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4068/mit-projects-raise-privacy-questions/</guid>
</item>
<item>
<title>Weekly brief - September 21. 2009</title>
<link>http://www.infosecurity-us.com/view/4047/weekly-brief-september-21-2009/</link>
<description>Talk, Tools, Techniques, Trials, and Traps - get the lowdown on the week's security news in our weekly brief.</description>
<pubDate>Mon, 21 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4047/weekly-brief-september-21-2009/</guid>
</item>
<item>
<title>EPIC: Obama must try harder on electronic privacy</title>
<link>http://www.infosecurity-us.com/view/4025/epic-obama-must-try-harder-on-electronic-privacy/</link>
<description>Eight months into its first year, the Obama administration could still try harder when it comes to electronic privacy and digital rights, according to a report card issued by an advocacy group.</description>
<pubDate>Fri, 18 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4025/epic-obama-must-try-harder-on-electronic-privacy/</guid>
</item>
<item>
<title>Mobile/cloud workforce security issues covered in webinar recording</title>
<link>http://www.infosecurity-us.com/view/4031/mobilecloud-workforce-security-issues-covered-in-webinar-recording/</link>
<description>An informative webinar - in which BigFix, Trend Micro and one of their joint customers in the healthcare sector looked at some of the problems in the mobile workforce and allied IT security sectors - was a great success this Thursday.</description>
<pubDate>Fri, 18 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/4031/mobilecloud-workforce-security-issues-covered-in-webinar-recording/</guid>
</item>
<item>
<title>IT security priorities all wrong, according to SANS </title>
<link>http://www.infosecurity-us.com/view/3993/it-security-priorities-all-wrong-according-to-sans-/</link>
<description>IT managers are focusing on the wrong security threats, according to a report from the SANS Institute.</description>
<pubDate>Wed, 16 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3993/it-security-priorities-all-wrong-according-to-sans-/</guid>
</item>
<item>
<title>US electricity grid could suffer cascading blackouts from small attacks</title>
<link>http://www.infosecurity-us.com/view/3996/us-electricity-grid-could-suffer-cascading-blackouts-from-small-attacks/</link>
<description>A Chinese researcher has discovered weaknesses in the US electricity grid that could enable attacks causing cascading blackouts by attacking relatively small parts of the network.</description>
<pubDate>Wed, 16 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3996/us-electricity-grid-could-suffer-cascading-blackouts-from-small-attacks/</guid>
</item>
<item>
<title>Infosecurity weekly brief - September 15, 2009</title>
<link>http://www.infosecurity-us.com/view/3963/infosecurity-weekly-brief-september-15-2009/</link>
<description>Breaches, threats, protections and security directions - we summarise what's been happening in the world of information security over the past week.</description>
<pubDate>Tue, 15 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3963/infosecurity-weekly-brief-september-15-2009/</guid>
</item>
<item>
<title>Commuter matching website highly vulnerable to SQL injections</title>
<link>http://www.infosecurity-us.com/view/3937/commuter-matching-website-highly-vulnerable-to-sql-injections/</link>
<description>RideMatch.info, a website used by several California-based companies and transportation boards to match commuters on similar routes, has been found to be potentially vulnerable to massive SQL injections that could result in the disclosure of users' personal data.</description>
<pubDate>Mon, 14 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3937/commuter-matching-website-highly-vulnerable-to-sql-injections/</guid>
</item>
<item>
<title>Deploying effective IT security on a tight budget - webinar</title>
<link>http://www.infosecurity-us.com/view/3951/deploying-effective-it-security-on-a-tight-budget-webinar/</link>
<description>This week promises to be an exciting one for Infosecurity and its readers as, while President Obama is reportedly close to appointing a Frank Kramer, former assistant defense secretary under President Bill Clinton, as his new cybersecurity chief, we will be hosting a topical IT security webinar looking at how to protect your critical data on a budget.</description>
<pubDate>Mon, 14 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3951/deploying-effective-it-security-on-a-tight-budget-webinar/</guid>
</item>
<item>
<title>Fake anti-virus team exploits September 11 anniversary </title>
<link>http://www.infosecurity-us.com/view/3945/fake-antivirus-team-exploits-september-11-anniversary-/</link>
<description>Online scams related to holidays, global events, and popular news stories are common, but September 11 scammers really scraped the bottom of the moral barrel last week. Scareware scammers are using the eighth anniversary of the September 11 attacks to sell their fake anti-virus software to unsuspecting users.</description>
<pubDate>Sun, 13 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3945/fake-antivirus-team-exploits-september-11-anniversary-/</guid>
</item>
<item>
<title>Identity Theft 911 looks at identity theft in educational environments</title>
<link>http://www.infosecurity-us.com/view/3922/identity-theft-911-looks-at-identity-theft-in-educational-environments/</link>
<description>Lapses in data security at major colleges and universities across the USA over the past four years have exposed tens of millions of personal records of students, alumni, faculty and staff and put them at risk of identity fraud and theft, according to a report from Identity Theft 911, the ID theft resolution service.</description>
<pubDate>Fri, 11 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3922/identity-theft-911-looks-at-identity-theft-in-educational-environments/</guid>
</item>
<item>
<title>Astaro offers free business firewall for VMware</title>
<link>http://www.infosecurity-us.com/view/3864/astaro-offers-free-business-firewall-for-vmware/</link>
<description>Astaro Corp., has released a free business firewall for the VMware environment. The IT security vendor says that the firewall - which offers the base functionality of its Astaro Security Gateway Virtual Appliance by using a special license key - will allow organizations with virtual environments to secure their network from external threats.</description>
<pubDate>Thu, 10 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3864/astaro-offers-free-business-firewall-for-vmware/</guid>
</item>
<item>
<title>Congress weighs changes in web advertising privacy</title>
<link>http://www.infosecurity-us.com/view/3831/congress-weighs-changes-in-web-advertising-privacy/</link>
<description>Congress is working on proposed privacy legislation that would give consumers much more control over the personal and private information they generate and share with third-party companies on the internet during their everyday online activities.</description>
<pubDate>Wed, 09 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3831/congress-weighs-changes-in-web-advertising-privacy/</guid>
</item>
<item>
<title>Microsoft faces two zero-day security flaws</title>
<link>http://www.infosecurity-us.com/view/3862/microsoft-faces-two-zeroday-security-flaws/</link>
<description>Microsoft may be forced to release an out-of-cycle security update for a vulnerability published the same day as the firm released its September Patch Tuesday update.</description>
<pubDate>Wed, 09 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3862/microsoft-faces-two-zeroday-security-flaws/</guid>
</item>
<item>
<title>US academics develop cloud attack methodology </title>
<link>http://www.infosecurity-us.com/view/3832/us-academics-develop-cloud-attack-methodology-/</link>
<description>A group of academics with the University of California in San Diego and MIT claim to have discovered a cloud attack methodology called a side channel attack. By signing up to Amazon's cloud computing service and placing a virtual machine on the same physical machine as a target application, they claim the security of the cloud application can be compromized.</description>
<pubDate>Tue, 08 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3832/us-academics-develop-cloud-attack-methodology-/</guid>
</item>
<item>
<title>Weekly brief – September 7, 2009</title>
<link>http://www.infosecurity-us.com/view/3809/weekly-brief-september-7-2009/</link>
<description>In this week’s information security news:  Marshal8e6 rebrands as M86 Security; Australian federal police mock hackers - and are hacked in return; Raytheon releases industry's fastest cross-domain sharing solution; and more...</description>
<pubDate>Mon, 07 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3809/weekly-brief-september-7-2009/</guid>
</item>
<item>
<title>How is the information security industry coping in the economic downturn?</title>
<link>http://www.infosecurity-us.com/view/3813/how-is-the-information-security-industry-coping-in-the-economic-downturn/</link>
<description>As the recession continues to chew into budgets, and cybercriminals see increased opportunity for looting, CISOs need to ensure that their information security defences remain strong but affordable. Find out more for free!</description>
<pubDate>Mon, 07 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3813/how-is-the-information-security-industry-coping-in-the-economic-downturn/</guid>
</item>
<item>
<title>How to protect critical data on a tight budget</title>
<link>http://www.infosecurity-us.com/view/3798/how-to-protect-critical-data-on-a-tight-budget/</link>
<description>Whilst threats against business critical data have been rising steadily in recent times, almost all companies have had their IT security budgets cut or placed under intense scrutiny.</description>
<pubDate>Sat, 05 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3798/how-to-protect-critical-data-on-a-tight-budget/</guid>
</item>
<item>
<title>Toll-free PBX hack highlights need for code auditing </title>
<link>http://www.infosecurity-us.com/view/3761/tollfree-pbx-hack-highlights-need-for-code-auditing-/</link>
<description>Reports that a North Carolina business has been left with a US$2500 phone bill after phone phreakers hacked its PBX via the firm's toll-free number shows the danger of failing to audit all aspects of a systems' software, said Fortify, the application vulnerability specialist. </description>
<pubDate>Fri, 04 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3761/tollfree-pbx-hack-highlights-need-for-code-auditing-/</guid>
</item>
<item>
<title>Learn about how to keep security and IT ready for a pandemic</title>
<link>http://www.infosecurity-us.com/view/3769/learn-about-how-to-keep-security-and-it-ready-for-a-pandemic/</link>
<description>With the recent scares about the swine flu, more and more businesses feel the need to plan for a pandemic, but are their security and IT up to the challenge?</description>
<pubDate>Fri, 04 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3769/learn-about-how-to-keep-security-and-it-ready-for-a-pandemic/</guid>
</item>
<item>
<title>Virtualization could double in 2010, but what about security?</title>
<link>http://www.infosecurity-us.com/view/3734/virtualization-could-double-in-2010-but-what-about-security/</link>
<description>The number of organizations with at least half of their servers virtualized is expected to double in 2010 to 51%, according to a survey of 480 IT professionals about virtualization conducted by identity and access management vendor Centrify Corporation.</description>
<pubDate>Thu, 03 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3734/virtualization-could-double-in-2010-but-what-about-security/</guid>
</item>
<item>
<title>US could get slower broadband than the UK</title>
<link>http://www.infosecurity-us.com/view/3737/us-could-get-slower-broadband-than-the-uk/</link>
<description>The US could end up with slower broadband speeds than the UK if the Federal Communications Commission (FCC) accepts submissions on the definition of broadband from US internet service providers (ISPs).</description>
<pubDate>Thu, 03 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3737/us-could-get-slower-broadband-than-the-uk/</guid>
</item>
<item>
<title>Windows Mobile refresh to launch in October</title>
<link>http://www.infosecurity-us.com/view/3701/windows-mobile-refresh-to-launch-in-october/</link>
<description>Microsoft will launch the latest version of its operating system for mobile devices next month.</description>
<pubDate>Wed, 02 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3701/windows-mobile-refresh-to-launch-in-october/</guid>
</item>
<item>
<title>Network Box looks at the problem of authentication</title>
<link>http://www.infosecurity-us.com/view/3706/network-box-looks-at-the-problem-of-authentication/</link>
<description>Many authentication systems are not secure, especially as users often fail to remember a multiple of usernames and passwords, according to security company Network Box’s latest white paper Authentication, Who Are you?</description>
<pubDate>Wed, 02 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3706/network-box-looks-at-the-problem-of-authentication/</guid>
</item>
<item>
<title>Weekly brief – September 1, 2009</title>
<link>http://www.infosecurity-us.com/view/3672/weekly-brief-september-1-2009/</link>
<description>In this week’s information security news: Trojan eavesdrops on Skype; Snow Leopard only recognizes two Trojans; private messages are sent to wrong recipients; search warrants are needed for digital data; and more…</description>
<pubDate>Tue, 01 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3672/weekly-brief-september-1-2009/</guid>
</item>
<item>
<title>Web 2.0 - No! A business enabled or a security nightmare?: Find out more later this month!</title>
<link>http://www.infosecurity-us.com/view/3674/web-20-no-a-business-enabled-or-a-security-nightmare-find-out-more-later-this-month/</link>
<description>Whilst Web 2.0-driven websites and services have made the mobile internet almost as popular as the desktop web, the technology is an information security manager's nightmare, with code extensibility, IP interactions and website flexibility driving a steamroller through traditional information security systems. So what are IT managers to do?</description>
<pubDate>Tue, 01 Sep 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3674/web-20-no-a-business-enabled-or-a-security-nightmare-find-out-more-later-this-month/</guid>
</item>
<item>
<title>Google patches two serious flaws in Chrome</title>
<link>http://www.infosecurity-us.com/view/3619/google-patches-two-serious-flaws-in-chrome/</link>
<description>Google has patched two serious security holes in its Javascript and XML engines, according to a blog post on the Google Chrome website.</description>
<pubDate>Fri, 28 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3619/google-patches-two-serious-flaws-in-chrome/</guid>
</item>
<item>
<title>Facebook shuts apps privacy loophole</title>
<link>http://www.infosecurity-us.com/view/3639/facebook-shuts-apps-privacy-loophole/</link>
<description>Facebook has amended its privacy practices and policies to give users more control over the information they keep on the social networking site, following a report from the Canadian Privacy Commissioner.</description>
<pubDate>Fri, 28 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3639/facebook-shuts-apps-privacy-loophole/</guid>
</item>
<item>
<title>US Civil Liberties Union tells UK to defend McKinnon</title>
<link>http://www.infosecurity-us.com/view/3641/us-civil-liberties-union-tells-uk-to-defend-mckinnon/</link>
<description>The American Civil Liberties Union has called on the UK foreign secretary to review the &quot;lopsided&quot; extradition treaty to prevent people like UFO hacker Gary McKinnon being &quot;unfairly&quot; removed from their home country to stand trial abroad.</description>
<pubDate>Fri, 28 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3641/us-civil-liberties-union-tells-uk-to-defend-mckinnon/</guid>
</item>
<item>
<title>PhoneFactor allows trade-in of two-factor security tokens</title>
<link>http://www.infosecurity-us.com/view/3552/phonefactor-allows-tradein-of-twofactor-security-tokens/</link>
<description>Two-factor security vendor PhoneFactor is taking its clue from the CARS Cash for Clunkers rebate announcing a Cash for Security Clunkers program where organisations can trade in their security tokens for a phone authentication platform.</description>
<pubDate>Tue, 25 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3552/phonefactor-allows-tradein-of-twofactor-security-tokens/</guid>
</item>
<item>
<title>Weekly brief – August 24, 2009</title>
<link>http://www.infosecurity-us.com/view/3511/weekly-brief-august-24-2009/</link>
<description>In this week’s information security news: Microsoft patch exploited by hackers; Office 2010 sandbox security welcomed by security industry; hackers get their revenge on police; and more…</description>
<pubDate>Mon, 24 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3511/weekly-brief-august-24-2009/</guid>
</item>
<item>
<title>Data breaches: Who has been named and shamed in the last year?: Find out more on 24 September!</title>
<link>http://www.infosecurity-us.com/view/3516/data-breaches-who-has-been-named-and-shamed-in-the-last-year-find-out-more-on-24-september/</link>
<description>Infosecurity Magazine’s 2009 Virtual Conference on Information Security will look at recent data breaches in both public and private sectors in a session headed by Bloor Research, CheckPoint and the Open Security Foundation.</description>
<pubDate>Mon, 24 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3516/data-breaches-who-has-been-named-and-shamed-in-the-last-year-find-out-more-on-24-september/</guid>
</item>
<item>
<title>US largest card incident hacker has track record says Miami Herald</title>
<link>http://www.infosecurity-us.com/view/3453/us-largest-card-incident-hacker-has-track-record-says-miami-herald/</link>
<description>As the fall-out in the Albert Gonzalez credit card hacking case - in which the card hacker was charged earlier this week with gaining unauthorized access to 130 million people's card details from major merchants - continues, the Miami Herald has published an interesting profile of the person that many are calling a super-hacker.</description>
<pubDate>Fri, 21 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3453/us-largest-card-incident-hacker-has-track-record-says-miami-herald/</guid>
</item>
<item>
<title>Radisson database hacked</title>
<link>http://www.infosecurity-us.com/view/3368/radisson-database-hacked/</link>
<description>Radisson Hotels &amp; Resorts has announced that its computer systems have been accessed without authorisation between November 2008 and May 2009. Radisson is not saying, however, whether the unauthorised incursion was caused by hackers or an internal security issue, nor how many customers are affected by the incident.</description>
<pubDate>Thu, 20 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3368/radisson-database-hacked/</guid>
</item>
<item>
<title>US man charged with stealing 130 million payment card details</title>
<link>http://www.infosecurity-us.com/view/3356/us-man-charged-with-stealing-130-million-payment-card-details/</link>
<description>In what security experts are calling 'the largest ever identity theft case in modern history', a US man has been charged with stealing data relating to 130 million payment cards.</description>
<pubDate>Wed, 19 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3356/us-man-charged-with-stealing-130-million-payment-card-details/</guid>
</item>
<item>
<title>Advance Internet's Microsoft deal shows local ad sales free-for-all</title>
<link>http://www.infosecurity-us.com/view/3359/advance-internets-microsoft-deal-shows-local-ad-sales-freeforall/</link>
<description>Advance Internet, the division representing 36 newspaper websites owned by the Newhouse family, has entered into a ground-breaking deal with Microsoft.</description>
<pubDate>Wed, 19 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3359/advance-internets-microsoft-deal-shows-local-ad-sales-freeforall/</guid>
</item>
<item>
<title>Delaware man fined $210 000 for selling pirate software online</title>
<link>http://www.infosecurity-us.com/view/3296/delaware-man-fined-210-000-for-selling-pirate-software-online/</link>
<description>Whilst eBay and other major internet auction sites appear to have cleaned up their acts on the pirate software front, smaller sites are still letting some postings through.</description>
<pubDate>Tue, 18 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3296/delaware-man-fined-210-000-for-selling-pirate-software-online/</guid>
</item>
<item>
<title>NCSA preps for national cybersecurity awareness month</title>
<link>http://www.infosecurity-us.com/view/3194/ncsa-preps-for-national-cybersecurity-awareness-month/</link>
<description>The National Cyber Security Alliance (NCSA) - one of the primary promoters of National Cyber Security Awareness Month each October - has launched a website to encourage broad-based participation in education and awareness activities on cybersecurity this year.</description>
<pubDate>Mon, 17 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3194/ncsa-preps-for-national-cybersecurity-awareness-month/</guid>
</item>
<item>
<title>Campaign Monitor hit by hacker server incursion</title>
<link>http://www.infosecurity-us.com/view/3197/campaign-monitor-hit-by-hacker-server-incursion/</link>
<description>Campaign Monitor, the Australia-based email marketing software developer, has warned users of compromise to its servers that took place over last weekend.</description>
<pubDate>Mon, 17 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3197/campaign-monitor-hit-by-hacker-server-incursion/</guid>
</item>
<item>
<title>BigFix podcasts talk about security compliance issues, Black Hat and Defcon </title>
<link>http://www.infosecurity-us.com/view/3238/bigfix-podcasts-talk-about-security-compliance-issues-black-hat-and-defcon-/</link>
<description>If you want to hear an eclectic mix of views on recent events in the world of IT security, you could do worse that visit the Bigfix blog site, where Amrit Williams, the firm's chief technology officer, has been talking with industry luminary Ryan Russell in his latest podcast.</description>
<pubDate>Mon, 17 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3238/bigfix-podcasts-talk-about-security-compliance-issues-black-hat-and-defcon-/</guid>
</item>
<item>
<title>Web-based malware attacks soaring says ScanSafe</title>
<link>http://www.infosecurity-us.com/view/3240/webbased-malware-attacks-soaring-says-scansafe/</link>
<description>In its second quarterly report on IT security threats of 2008, software-as-a-service (SaaS) specialist ScanSafe reported that web-based malware had surged by over a third when compared to the first quarter of the year.</description>
<pubDate>Mon, 17 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3240/webbased-malware-attacks-soaring-says-scansafe/</guid>
</item>
<item>
<title>Weekly brief - August 17, 2009 </title>
<link>http://www.infosecurity-us.com/view/3277/weekly-brief-august-17-2009-/</link>
<description>In this week's information security briefs: Poor password management a rising problem; Gartner says that IT products and services are heading for regulation by 2015; how Google helped Twitter fend off its DDOS attacks, and more...</description>
<pubDate>Mon, 17 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3277/weekly-brief-august-17-2009-/</guid>
</item>
<item>
<title>Voice biometrics: The challenges and opportunities: Find out more for free! </title>
<link>http://www.infosecurity-us.com/view/3283/voice-biometrics-the-challenges-and-opportunities-find-out-more-for-free-/</link>
<description>Infosecurity’s 2009 Virtual Conference on Information Security on 24 September includes a session on `Voice Biometrics - a new IT security technology entering the fast lane'.</description>
<pubDate>Mon, 17 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3283/voice-biometrics-the-challenges-and-opportunities-find-out-more-for-free-/</guid>
</item>
<item>
<title>China drops internet censorship software plan</title>
<link>http://www.infosecurity-us.com/view/3289/china-drops-internet-censorship-software-plan/</link>
<description>China has dropped controversial plans to force PC makers to install internet filtering software on all new computers. </description>
<pubDate>Mon, 17 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3289/china-drops-internet-censorship-software-plan/</guid>
</item>
<item>
<title>Mobile laptop usage soaring - but what about company security?</title>
<link>http://www.infosecurity-us.com/view/3180/mobile-laptop-usage-soaring-but-what-about-company-security/</link>
<description>The amusing tale of how New York coffee shops - apparently fed up with laptop users hogging their table space and using up electricity for hours on end - has a much darker message, according to Sean Glynn, Director at security vendor Credant Technologies.</description>
<pubDate>Wed, 12 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3180/mobile-laptop-usage-soaring-but-what-about-company-security/</guid>
</item>
<item>
<title>The iPod and iPhone could be used for hacking</title>
<link>http://www.infosecurity-us.com/view/3181/the-ipod-and-iphone-could-be-used-for-hacking/</link>
<description>Applications on the Apple iTunes website are arguably what makes the iPhone so popular in mobile phone circles, but a growing number of users are unlocking (jailbreaking) their iPhones, for the simple reason that it opens up the mobile to third-party applications. This means the iPod and iPhone could be used for hacking.</description>
<pubDate>Wed, 12 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3181/the-ipod-and-iphone-could-be-used-for-hacking/</guid>
</item>
<item>
<title>Advice for safer access to Facebook, Twitter, and other social networking sites</title>
<link>http://www.infosecurity-us.com/view/3182/advice-for-safer-access-to-facebook-twitter-and-other-social-networking-sites/</link>
<description>As many readers of Infosecurity may have noticed, Web 2.0-driven  social networking sites like Facebook and Twitter have become attractive targets for phishing and scamming attacks as online criminals follow the latest internet trends that are attracting the most users.</description>
<pubDate>Wed, 12 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3182/advice-for-safer-access-to-facebook-twitter-and-other-social-networking-sites/</guid>
</item>
<item>
<title>Hold software providers accountable for IT failures</title>
<link>http://www.infosecurity-us.com/view/3145/hold-software-providers-accountable-for-it-failures/</link>
<description>Regulation could protect businesses and governments from poor IT implementations that have cost billions of dollars. But at present, software is generally shipped with a disclaimer which states that the manufacturer does not guarantee it will work, unlike regulated industries such as pharmaceuticals where the supplier is held accountable for a failure in manufacturing.</description>
<pubDate>Tue, 11 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3145/hold-software-providers-accountable-for-it-failures/</guid>
</item>
<item>
<title>Government cybersecurity guidelines lacking </title>
<link>http://www.infosecurity-us.com/view/3147/government-cybersecurity-guidelines-lacking-/</link>
<description>A new set of cybersecurity guidelines - released by NIST - the National Institute of Standards and Technology - leaves a lot to be desired when it comes to the protection needed for government agency computers, said the Cyber Secure Institute.</description>
<pubDate>Tue, 11 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3147/government-cybersecurity-guidelines-lacking-/</guid>
</item>
<item>
<title>Koobface social networking worm gets a facelift</title>
<link>http://www.infosecurity-us.com/view/3127/koobface-social-networking-worm-gets-a-facelift/</link>
<description>Koobface, the first - and arguably the most successful of the social networking worms - is back, having been significantly tweaked by black hat hackers on the internet, reports Kaspersky Lab, the anti-malware and IT security vendor.</description>
<pubDate>Mon, 10 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3127/koobface-social-networking-worm-gets-a-facelift/</guid>
</item>
<item>
<title>Twitter, Facebook still suffering from internet packet delays</title>
<link>http://www.infosecurity-us.com/view/3129/twitter-facebook-still-suffering-from-internet-packet-delays/</link>
<description>The hacker attack on Twitter on Thursday afternoon UK time - which appears to have also spilled over to the Facebook social networking site - is now thought to have been the work of political activists who wanted to stop a pro-Georgian blogger - Cyxymu - from making his/her postings on the sites.</description>
<pubDate>Mon, 10 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3129/twitter-facebook-still-suffering-from-internet-packet-delays/</guid>
</item>
<item>
<title>Weekly Brief - August 10 2009</title>
<link>http://www.infosecurity-us.com/view/3131/weekly-brief-august-10-2009/</link>
<description>In this week's information security briefs: ISPs team up in bid to tackle botnet problem; Former superhacker Kevin Mitnick dumped by ISP; US cyber-security tsar steps down; US military worried over Twitter security and more... </description>
<pubDate>Mon, 10 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3131/weekly-brief-august-10-2009/</guid>
</item>
<item>
<title>What’s going wrong with information security in government? – Infosecurity’s Virtual Conference</title>
<link>http://www.infosecurity-us.com/view/3142/whats-going-wrong-with-information-security-in-government-infosecuritys-virtual-conference/</link>
<description>Infosecurity is pleased to confirm further details of the 2009 Virtual Conference on Information Security, which takes place online on 24 September.</description>
<pubDate>Mon, 10 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3142/whats-going-wrong-with-information-security-in-government-infosecuritys-virtual-conference/</guid>
</item>
<item>
<title>US phishing attacks soared 50% plus during July </title>
<link>http://www.infosecurity-us.com/view/3093/us-phishing-attacks-soared-50-plus-during-july-/</link>
<description>Research just released by Symantec shows that phishing attacks rose 52% in July while spam - as a percentage of all email - stayed about the same compared as the previous month.</description>
<pubDate>Fri, 07 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3093/us-phishing-attacks-soared-50-plus-during-july-/</guid>
</item>
<item>
<title>Symantec teams up with LifeLock to expand offline</title>
<link>http://www.infosecurity-us.com/view/3069/symantec-teams-up-with-lifelock-to-expand-offline/</link>
<description>After 27 years in the online and IT world, Symantec is moving into the offline/off-computer world thanks to a partnership with LifeLock Inc., a proactive provider of identify theft protection.</description>
<pubDate>Thu, 06 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3069/symantec-teams-up-with-lifelock-to-expand-offline/</guid>
</item>
<item>
<title>Managed wireless security set to hit $1 billion by 2014</title>
<link>http://www.infosecurity-us.com/view/3071/managed-wireless-security-set-to-hit-1-billion-by-2014/</link>
<description>A study just released by ABI Research predicts a period of healthy growth for managed wireless security solutions, with growth averaging 27% a year for the period 2008 to 2014.</description>
<pubDate>Thu, 06 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3071/managed-wireless-security-set-to-hit-1-billion-by-2014/</guid>
</item>
<item>
<title>Twitter goes down under a sustained DDOS attack</title>
<link>http://www.infosecurity-us.com/view/3085/twitter-goes-down-under-a-sustained-ddos-attack/</link>
<description>At around 3:00 pm on Thursday afternoon, Twitter, the extraordinarily popular microblogging portal, fell silent, apparently the victim of a sustained distributed denial of service (DDOS) attack.</description>
<pubDate>Thu, 06 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3085/twitter-goes-down-under-a-sustained-ddos-attack/</guid>
</item>
<item>
<title>Companies invest in IT, but do not measure IT value</title>
<link>http://www.infosecurity-us.com/view/3046/companies-invest-in-it-but-do-not-measure-it-value/</link>
<description>Despite 30% of IT security companies increasing their investments in IT this year, fewer than half have a shared understanding of IT value across the enterprise and two-thirds fail to fully measure it, according to ISACA.</description>
<pubDate>Wed, 05 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3046/companies-invest-in-it-but-do-not-measure-it-value/</guid>
</item>
<item>
<title>WatchGuard acquires BorderWare in private transaction</title>
<link>http://www.infosecurity-us.com/view/3050/watchguard-acquires-borderware-in-private-transaction/</link>
<description>Seattle-based WatchGuard Technologies - the unified threat management (USM) security vendor - has announced plans to buy privately-held BorderWare Technology, which employs around 90 staff, for an undisclosed sum.</description>
<pubDate>Wed, 05 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3050/watchguard-acquires-borderware-in-private-transaction/</guid>
</item>
<item>
<title>Mozilla moves swiftly to patch SSL loophole in Firefox</title>
<link>http://www.infosecurity-us.com/view/3052/mozilla-moves-swiftly-to-patch-ssl-loophole-in-firefox/</link>
<description>Programmers with the Mozilla Foundation have moved rapidly to patch one of the two SSL security flaws in web browsers, such as Firefox, identified by researchers at the Black Hat security briefings in Las Vegas late last week.</description>
<pubDate>Wed, 05 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3052/mozilla-moves-swiftly-to-patch-ssl-loophole-in-firefox/</guid>
</item>
<item>
<title>Twitter quietly checks tweeted URLs - draws criticism</title>
<link>http://www.infosecurity-us.com/view/3053/twitter-quietly-checks-tweeted-urls-draws-criticism/</link>
<description>Twitter has quietly started checking URLs entered into tweets (user messages) on its microblogging service and immediately flown into a barrage of criticism about its checking methodology.</description>
<pubDate>Wed, 05 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3053/twitter-quietly-checks-tweeted-urls-draws-criticism/</guid>
</item>
<item>
<title>Arbor Networks shows how Iran filters and blocks internet traffic</title>
<link>http://www.infosecurity-us.com/view/3028/arbor-networks-shows-how-iran-filters-and-blocks-internet-traffic/</link>
<description>Arbor Networks has published internet bandwidth usage figures from June and July that make fascinating reading if you ever wondered how less democratic governments such as Iran filters and blocks internet traffic for their citizens.</description>
<pubDate>Tue, 04 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3028/arbor-networks-shows-how-iran-filters-and-blocks-internet-traffic/</guid>
</item>
<item>
<title>Defcon: Researchers warn software updates can be hijacked</title>
<link>http://www.infosecurity-us.com/view/3030/defcon-researchers-warn-software-updates-can-be-hijacked/</link>
<description>Researchers with Radware were busy over the weekend showing a Defcon audience how a classic man-in-the-middle attack could be engineered when notebook computers attempt to seek out updates for their software across public access WiFi networks.</description>
<pubDate>Tue, 04 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3030/defcon-researchers-warn-software-updates-can-be-hijacked/</guid>
</item>
<item>
<title>Zeus botnet traced to Latvian operation</title>
<link>http://www.infosecurity-us.com/view/3031/zeus-botnet-traced-to-latvian-operation/</link>
<description>Researchers have been busy over the last few days tracing where the Zeus botnet is being controlled from, following investigations by the University of Alabama in the US, which tracked down the Zeus Bot virus to a raft of fake internet postcards circulating on the internet.</description>
<pubDate>Tue, 04 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/3031/zeus-botnet-traced-to-latvian-operation/</guid>
</item>
<item>
<title>Businesses cough up &#163;6m for unlicensed software</title>
<link>http://www.infosecurity-us.com/view/2966/businesses-cough-up-6m-for-unlicensed-software/</link>
<description>Businesses across Europe, the Middle East and Africa have paid out &#163;6 million this year to settle disputes with the Business Software Alliance.</description>
<pubDate>Mon, 03 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2966/businesses-cough-up-6m-for-unlicensed-software/</guid>
</item>
<item>
<title>Weekly Brief - August 3 2009</title>
<link>http://www.infosecurity-us.com/view/2976/weekly-brief-august-3-2009/</link>
<description>In this week's information security briefs: AVG flags up iTunes as malware; hackers score $219 000 from city; Microsoft's sandboxing criticised, and more...</description>
<pubDate>Mon, 03 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2976/weekly-brief-august-3-2009/</guid>
</item>
<item>
<title>Apple moves swiftly to fix iPhone security flaws</title>
<link>http://www.infosecurity-us.com/view/2983/apple-moves-swiftly-to-fix-iphone-security-flaws/</link>
<description>A potentially serious iPhone security flaw identified by researchers at the Black Hat security briefings in Las Vegas last week has been quickly patched by Apple Computer.</description>
<pubDate>Mon, 03 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2983/apple-moves-swiftly-to-fix-iphone-security-flaws/</guid>
</item>
<item>
<title>US credit reporting system flawed claims information security researcher</title>
<link>http://www.infosecurity-us.com/view/2985/us-credit-reporting-system-flawed-claims-information-security-researcher/</link>
<description>Clever hackers are exploiting a number of loopholes in US credit reporting systems to substantially improve their credit rating and so gain access to zero percent loans and low-cost credit cards, an information security researcher said over the weekend.</description>
<pubDate>Mon, 03 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2985/us-credit-reporting-system-flawed-claims-information-security-researcher/</guid>
</item>
<item>
<title>Programme available for the Virtual Conference on Information Security 2009</title>
<link>http://www.infosecurity-us.com/view/2987/programme-available-for-the-virtual-conference-on-information-security-2009/</link>
<description>The programme for Infosecurity Magazine’s Virtual Conference on Information Security 2009 is now available with an exciting line-up of speakers from the IT security industry.</description>
<pubDate>Mon, 03 Aug 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2987/programme-available-for-the-virtual-conference-on-information-security-2009/</guid>
</item>
<item>
<title>NASA hacker McKinnon loses extradition appeal</title>
<link>http://www.infosecurity-us.com/view/2921/nasa-hacker-mckinnon-loses-extradition-appeal/</link>
<description>The UK hacker Gary McKinnon who became famous for hacking US military and NASA computers in 2001 and 2002 looking for evidence of UFOs, has lost his appeal against extradition to the USA.</description>
<pubDate>Fri, 31 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2921/nasa-hacker-mckinnon-loses-extradition-appeal/</guid>
</item>
<item>
<title>Black Hat: San Francisco meters hacked for free parking</title>
<link>http://www.infosecurity-us.com/view/2946/black-hat-san-francisco-meters-hacked-for-free-parking/</link>
<description>At the Black Hat security conference in Las Vegas, researchers have revealed how the security of San Francisco's plans to become a showcase for the US on computerised parking has been compromised.</description>
<pubDate>Fri, 31 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2946/black-hat-san-francisco-meters-hacked-for-free-parking/</guid>
</item>
<item>
<title>Black Hat: Researchers reveal more flaws in secure sockets layer</title>
<link>http://www.infosecurity-us.com/view/2948/black-hat-researchers-reveal-more-flaws-in-secure-sockets-layer/</link>
<description>Researchers at the Black Hat security briefings in Las Vegas this week revealed a number of flaws that affect the secure sockets layer (SSL) system for secure internet web browsing.</description>
<pubDate>Fri, 31 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2948/black-hat-researchers-reveal-more-flaws-in-secure-sockets-layer/</guid>
</item>
<item>
<title>Apple claims unlocking iPhones could knock out cell sites</title>
<link>http://www.infosecurity-us.com/view/2837/apple-claims-unlocking-iphones-could-knock-out-cell-sites/</link>
<description>Apple has reportedly caused a stir in copyright circles over claims that unlocking its iPhone handset from the partner network could cause the mobile to crash cellular base stations and even allow users to make free phone calls.</description>
<pubDate>Thu, 30 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2837/apple-claims-unlocking-iphones-could-knock-out-cell-sites/</guid>
</item>
<item>
<title>Black Hat: major iPhone hack to be revealed today</title>
<link>http://www.infosecurity-us.com/view/2864/black-hat-major-iphone-hack-to-be-revealed-today/</link>
<description>You could never describe the Apple iPhone as totally secure, given the number of jailbreaks that crackers have developed to unlock the popular handset from its partner networks, but researchers at the Black Hat security conference are scheduled to reveal a serious chink in the mobile's armour today.</description>
<pubDate>Thu, 30 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2864/black-hat-major-iphone-hack-to-be-revealed-today/</guid>
</item>
<item>
<title>Black Hat: Security is not the security team’s problem says Black Hat keynote speaker Douglas Merrill </title>
<link>http://www.infosecurity-us.com/view/2867/black-hat-security-is-not-the-security-teams-problem-says-black-hat-keynote-speaker-douglas-merrill-/</link>
<description>This morning, 29th July 2009, at the Black Hat briefings in Las Vegas, Nevada, keynote speaker Douglas Merrill, told his audience that CISOs are getting information security wrong. </description>
<pubDate>Thu, 30 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2867/black-hat-security-is-not-the-security-teams-problem-says-black-hat-keynote-speaker-douglas-merrill-/</guid>
</item>
<item>
<title>Black Hat: Information security trade press are bound to Google </title>
<link>http://www.infosecurity-us.com/view/2902/black-hat-information-security-trade-press-are-bound-to-google-/</link>
<description>At the BlackHat conference in Las Vegas, 29 July 2009, one conference session addressed the changing nature of the information security trade press. A panel of experienced journalists answered questions on the relationship between trade and mainstream media, the rise of Google news, and the financial challenges affecting the publishing industry. </description>
<pubDate>Thu, 30 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2902/black-hat-information-security-trade-press-are-bound-to-google-/</guid>
</item>
<item>
<title>Black Hat: Legal issues come free with cloud computing</title>
<link>http://www.infosecurity-us.com/view/2907/black-hat-legal-issues-come-free-with-cloud-computing/</link>
<description>The complications and concerns around cloud computing should not be underestimated, argued Alex Stamos, co-founder and partner of iSEC Partners, at the Black Hat conference in Las Vegas, 30 July 2009. </description>
<pubDate>Thu, 30 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2907/black-hat-legal-issues-come-free-with-cloud-computing/</guid>
</item>
<item>
<title>Black Hat: Department of Defense call for three cyber-czars</title>
<link>http://www.infosecurity-us.com/view/2908/black-hat-department-of-defense-call-for-three-cyberczars/</link>
<description>This morning, 30 July, at the Black Hat conference in Las Vegas, Robert Lentz, Senior Information Assurance Official for the Department of Defense, declared the need for two extra cyber-czar roles: one for identity, and one for information security training and education. </description>
<pubDate>Thu, 30 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2908/black-hat-department-of-defense-call-for-three-cyberczars/</guid>
</item>
<item>
<title>IBM acquires Ounce Labs - boosts application security</title>
<link>http://www.infosecurity-us.com/view/2829/ibm-acquires-ounce-labs-boosts-application-security/</link>
<description>IBM has acquired another IT security development firm - Ounce Labs - to add to its ITsec research and development efforts. </description>
<pubDate>Wed, 29 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2829/ibm-acquires-ounce-labs-boosts-application-security/</guid>
</item>
<item>
<title>Symantec develops pooled high-end cyberthreat analysis service</title>
<link>http://www.infosecurity-us.com/view/2831/symantec-develops-pooled-highend-cyberthreat-analysis-service/</link>
<description>Symantec has joined the growing ranks of IT security vendors that are offering their pooled information on the latest ITsec threats as a value-added outsourced option for major corporates.</description>
<pubDate>Wed, 29 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2831/symantec-develops-pooled-highend-cyberthreat-analysis-service/</guid>
</item>
<item>
<title>Forensics links fake online postcards to Zeus Bot</title>
<link>http://www.infosecurity-us.com/view/2817/forensics-links-fake-online-postcards-to-zeus-bot/</link>
<description>The Computer forensics department at the University of Alabama has tracked down the Zeus Bot virus to a raft of fake internet postcards circulating on the Internet.</description>
<pubDate>Tue, 28 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2817/forensics-links-fake-online-postcards-to-zeus-bot/</guid>
</item>
<item>
<title>Weekly Brief - July 27 2009</title>
<link>http://www.infosecurity-us.com/view/2737/weekly-brief-july-27-2009/</link>
<description>Information security: Fox News, Eugene Kaspersky reveals all, Marshal8e6's new hosted email service and more...</description>
<pubDate>Mon, 27 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2737/weekly-brief-july-27-2009/</guid>
</item>
<item>
<title>Cloud security examined in Thursday webinar </title>
<link>http://www.infosecurity-us.com/view/2782/cloud-security-examined-in-thursday-webinar-/</link>
<description>Cloud computing, along with the growing number of web 2.0-enabled sites and services many of us now access on a regular basis, is changing the face of IT security.</description>
<pubDate>Mon, 27 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2782/cloud-security-examined-in-thursday-webinar-/</guid>
</item>
<item>
<title>Free white paper and webinar explain how to source access assurance technology on a tight budget</title>
<link>http://www.infosecurity-us.com/view/2728/free-white-paper-and-webinar-explain-how-to-source-access-assurance-technology-on-a-tight-budget/</link>
<description> Access assurance is fast becoming a hot topic in regulatory and best practice circles, for the simple reason the technology that drives it can save a company a significant fine for failing to comply with the latest data protection.</description>
<pubDate>Sat, 25 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2728/free-white-paper-and-webinar-explain-how-to-source-access-assurance-technology-on-a-tight-budget/</guid>
</item>
<item>
<title>Novell to hop securely into the cloud next week</title>
<link>http://www.infosecurity-us.com/view/2698/novell-to-hop-securely-into-the-cloud-next-week/</link>
<description>Novell is about to join the growing list of companies developing its security-enabled products for the cloud.</description>
<pubDate>Fri, 24 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2698/novell-to-hop-securely-into-the-cloud-next-week/</guid>
</item>
<item>
<title>Vietnamese CERT operation in trouble for tracking hackers</title>
<link>http://www.infosecurity-us.com/view/2702/vietnamese-cert-operation-in-trouble-for-tracking-hackers/</link>
<description>Reports on the Australasian newswires say that Vietnam Computer Emergency Response Team (CERT) has received an &quot;official complaint&quot; from its South Korean counterpart KrCERT, claiming the South Korean agency had never requested any help to investigate the attacks.</description>
<pubDate>Fri, 24 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2702/vietnamese-cert-operation-in-trouble-for-tracking-hackers/</guid>
</item>
<item>
<title>Privacy rankings: LinkedIn and Bebo high, Facebook and MySpace average, Badoo low</title>
<link>http://www.infosecurity-us.com/view/2703/privacy-rankings-linkedin-and-bebo-high-facebook-and-myspace-average-badoo-low/</link>
<description>Cambridge academics have revealed that social networks that promote their security controls are likely to deter users from joining, and as a result privacy guidelines are inaccessible.</description>
<pubDate>Fri, 24 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2703/privacy-rankings-linkedin-and-bebo-high-facebook-and-myspace-average-badoo-low/</guid>
</item>
<item>
<title>ISACA leader calls for fundamental changes to IT security</title>
<link>http://www.infosecurity-us.com/view/2666/isaca-leader-calls-for-fundamental-changes-to-it-security/</link>
<description>John Pironti, a senior member of ISACA, the not-for-profit IT security association with 86 000 members worldwide, has called for sweeping changes in the way enterprises across the US deal with information security.</description>
<pubDate>Thu, 23 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2666/isaca-leader-calls-for-fundamental-changes-to-it-security/</guid>
</item>
<item>
<title>TuCows review shows how to start WinXP without a password</title>
<link>http://www.infosecurity-us.com/view/2667/tucows-review-shows-how-to-start-winxp-without-a-password/</link>
<description>If you ever wondered how to start Windows XP without a password and without going down to source code level, wonder no more, as Butterscotch's content producer Stacey Reed has posted an informative video tutorial showing how it's done.</description>
<pubDate>Thu, 23 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2667/tucows-review-shows-how-to-start-winxp-without-a-password/</guid>
</item>
<item>
<title>Secure cloud login technology to be unveiled next week</title>
<link>http://www.infosecurity-us.com/view/2669/secure-cloud-login-technology-to-be-unveiled-next-week/</link>
<description>California's TriCipher has announced plans to unveil its myOneLogin authentication and identification technology on day three of the Cloud SSO event in San Diego on July 29th.</description>
<pubDate>Thu, 23 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2669/secure-cloud-login-technology-to-be-unveiled-next-week/</guid>
</item>
<item>
<title>Fed to invest $55 billion in cybersecurity over next six years</title>
<link>http://www.infosecurity-us.com/view/2643/fed-to-invest-55-billion-in-cybersecurity-over-next-six-years/</link>
<description>A report on US government cybersecurity pending predicts that the US government will spend around $55 billion on cybersecurity issues over the next six years.</description>
<pubDate>Wed, 22 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2643/fed-to-invest-55-billion-in-cybersecurity-over-next-six-years/</guid>
</item>
<item>
<title>Smartphone security has privacy problems </title>
<link>http://www.infosecurity-us.com/view/2622/smartphone-security-has-privacy-problems-/</link>
<description>WXPI, a Pittsburgh, Pennylvania-based TV station has quietly broken a story which could have profound repercusions on the security of so-called smartphones - mobile phones with computer-like qualities.</description>
<pubDate>Tue, 21 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2622/smartphone-security-has-privacy-problems-/</guid>
</item>
<item>
<title>Weekly Brief - July 20 2009</title>
<link>http://www.infosecurity-us.com/view/2603/weekly-brief-july-20-2009/</link>
<description>Information security: Microsoft, South Korea, China, Twitter, Facebook in the news... </description>
<pubDate>Mon, 20 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2603/weekly-brief-july-20-2009/</guid>
</item>
<item>
<title>Botnets arrive on mobile phones - first worm has been spotted</title>
<link>http://www.infosecurity-us.com/view/2604/botnets-arrive-on-mobile-phones-first-worm-has-been-spotted/</link>
<description>A mobile phone worm called Sexy Space has been spotted by Trend Micro and is the first, the IT security vendor says, to spread itself by spamming text (SMS) messages.</description>
<pubDate>Mon, 20 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2604/botnets-arrive-on-mobile-phones-first-worm-has-been-spotted/</guid>
</item>
<item>
<title>One in six spam emails from USA</title>
<link>http://www.infosecurity-us.com/view/2609/one-in-six-spam-emails-from-usa/</link>
<description>The USA continued to be the top email spam country in the second quarter of 2009 making up 15.6% of global spam traffic, according to a report on the latest trends in spam from IT security and data protection firm Sophos.</description>
<pubDate>Mon, 20 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2609/one-in-six-spam-emails-from-usa/</guid>
</item>
<item>
<title>New Trojan malware variants evade major anti-virus engines claims CommTouch </title>
<link>http://www.infosecurity-us.com/view/2568/new-trojan-malware-variants-evade-major-antivirus-engines-claims-commtouch-/</link>
<description>Based on an analysis of two billion emails and internet transactions processed by its OEM anti-spam and anti-malware customers every day, CommTouch says that millions of email-borne malware such as Trojans and viruses bypassed several major anti-virus engines during the second quarter of 2009.</description>
<pubDate>Fri, 17 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2568/new-trojan-malware-variants-evade-major-antivirus-engines-claims-commtouch-/</guid>
</item>
<item>
<title>Cybercriminals adopt business strategies</title>
<link>http://www.infosecurity-us.com/view/2550/cybercriminals-adopt-business-strategies/</link>
<description>Online criminals are using state of the art business strategies to commit cybercrimes, says network equipment maker Cisco.</description>
<pubDate>Thu, 16 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2550/cybercriminals-adopt-business-strategies/</guid>
</item>
<item>
<title>Businesses face deluge of patches from Microsoft and Oracle</title>
<link>http://www.infosecurity-us.com/view/2551/businesses-face-deluge-of-patches-from-microsoft-and-oracle/</link>
<description>IT security administrators will have to deal with more than 10 security patches from Oracle and nine from Microsoft this week.</description>
<pubDate>Thu, 16 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2551/businesses-face-deluge-of-patches-from-microsoft-and-oracle/</guid>
</item>
<item>
<title>Twitter company files leaked in Cloud Computing security failure</title>
<link>http://www.infosecurity-us.com/view/2554/twitter-company-files-leaked-in-cloud-computing-security-failure/</link>
<description>Twitter has once again been hit by a lapse of security, this time with a hacker posting a set of internal company documents from the Twitter site and service, lifted from the GoogleApps online data sharing and collaboration system.</description>
<pubDate>Thu, 16 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2554/twitter-company-files-leaked-in-cloud-computing-security-failure/</guid>
</item>
<item>
<title>Obama Administration defends Bush warrantless wiretapping program</title>
<link>http://www.infosecurity-us.com/view/2562/obama-administration-defends-bush-warrantless-wiretapping-program/</link>
<description>President Obama is maintaining the secrecy of a wiretapping program authorised by his predecessor, George W Bush, a Department of Justice lawyer told a San Francisco courtroom on Wednesday.</description>
<pubDate>Thu, 16 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2562/obama-administration-defends-bush-warrantless-wiretapping-program/</guid>
</item>
<item>
<title>Firefox' reputation takes a battering on the security front</title>
<link>http://www.infosecurity-us.com/view/2536/firefox-reputation-takes-a-battering-on-the-security-front/</link>
<description>The reputation of Mozilla's popular Firefox web browsing software - now into version 3.5 - took a battering this week as the Secunia security research advisory team revealed a flaw in the way the browser handles Javascript calls.</description>
<pubDate>Wed, 15 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2536/firefox-reputation-takes-a-battering-on-the-security-front/</guid>
</item>
<item>
<title>iPhone may be weak link in company information security defences</title>
<link>http://www.infosecurity-us.com/view/2537/iphone-may-be-weak-link-in-company-information-security-defences/</link>
<description>Research commissioned by DeviceLock, the end point security company, claims to show that many firms are failing to act on the information security risks that the Apple iPhone poses to their IT resources.</description>
<pubDate>Wed, 15 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2537/iphone-may-be-weak-link-in-company-information-security-defences/</guid>
</item>
<item>
<title>Swine flu – influx of roaming and home workers</title>
<link>http://www.infosecurity-us.com/view/2544/swine-flu-influx-of-roaming-and-home-workers/</link>
<description>With the growing threat of swine flu, more and more employees are working from home, says Californian online security provider ScanSafe.</description>
<pubDate>Wed, 15 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2544/swine-flu-influx-of-roaming-and-home-workers/</guid>
</item>
<item>
<title>Microsoft warns IE users of another ActiveX vulnerability</title>
<link>http://www.infosecurity-us.com/view/2531/microsoft-warns-ie-users-of-another-activex-vulnerability/</link>
<description>Microsoft is warning Internet Explorer users of attacks that attempt to exploit an ActiveX vulnerability affecting MS Office and ISA Server.</description>
<pubDate>Tue, 14 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2531/microsoft-warns-ie-users-of-another-activex-vulnerability/</guid>
</item>
<item>
<title>Google Chrome OS: no viruses, malware or security updates…</title>
<link>http://www.infosecurity-us.com/view/2496/google-chrome-os-no-viruses-malware-or-security-updates/</link>
<description>As Google announced the future launch of its Google Chrome operating system (OS) based on an open source Linux kernel, it also claimed that “users don’t have to deal with viruses, malware and security updates. It should just work”, but is that possible?</description>
<pubDate>Mon, 13 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2496/google-chrome-os-no-viruses-malware-or-security-updates/</guid>
</item>
<item>
<title>575 variants of Koobface detected during June says Kaspersky Lab</title>
<link>http://www.infosecurity-us.com/view/2505/575-variants-of-koobface-detected-during-june-says-kaspersky-lab/</link>
<description>Researchers with Russian IT security vendor Kaspersky Lab say they detected 575 new variants of the Koobface worm during June.</description>
<pubDate>Mon, 13 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2505/575-variants-of-koobface-detected-during-june-says-kaspersky-lab/</guid>
</item>
<item>
<title>More weaknesses in e-commerce and SSL-VPN connections revealed</title>
<link>http://www.infosecurity-us.com/view/2507/more-weaknesses-in-ecommerce-and-sslvpn-connections-revealed/</link>
<description>A report just published by Ben Chai - a director with Incoming Thought Limited and editor of the SecurityVibes portal - claims to show that a security flaw in the secure sockets layer (SSL) internet protocol has been used by criminals to circumvent supposed secure e-commerce website.</description>
<pubDate>Mon, 13 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2507/more-weaknesses-in-ecommerce-and-sslvpn-connections-revealed/</guid>
</item>
<item>
<title>Net hacks and hoaxes more sophisticated than ever says Network Box</title>
<link>http://www.infosecurity-us.com/view/2495/net-hacks-and-hoaxes-more-sophisticated-than-ever-says-network-box/</link>
<description>Network Box, the managed security internet service provider, has published a free guide explaining - in plain English - a guide to spotting common hoaxes, hacks and other internet horrors.</description>
<pubDate>Fri, 10 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2495/net-hacks-and-hoaxes-more-sophisticated-than-ever-says-network-box/</guid>
</item>
<item>
<title>South Korea and US sites under internet assault</title>
<link>http://www.infosecurity-us.com/view/2484/south-korea-and-us-sites-under-internet-assault/</link>
<description>South Korea - which has the largest number of DSL broadband connections per head of population in the world - is under a sustained internet attack </description>
<pubDate>Thu, 09 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2484/south-korea-and-us-sites-under-internet-assault/</guid>
</item>
<item>
<title>Social security numbers guessable, say academics</title>
<link>http://www.infosecurity-us.com/view/2466/social-security-numbers-guessable-say-academics/</link>
<description>Two researchers from Carnegie Mellon University claim that it is possible to predict a person's social security number by using statistical analysis, throwing the security of a key personal identifier into doubt.</description>
<pubDate>Wed, 08 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2466/social-security-numbers-guessable-say-academics/</guid>
</item>
<item>
<title>Waledec botnet sweeps web in July 4 campaign</title>
<link>http://www.infosecurity-us.com/view/2448/waledec-botnet-sweeps-web-in-july-4-campaign/</link>
<description>The team behind the Waledec botnet mounted a new malware campaign over the July 4 weekend that has infected thousands of PCs.</description>
<pubDate>Tue, 07 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2448/waledec-botnet-sweeps-web-in-july-4-campaign/</guid>
</item>
<item>
<title>Internet luring law to include sending of sexually explicit messages - 'sexting'</title>
<link>http://www.infosecurity-us.com/view/2450/internet-luring-law-to-include-sending-of-sexually-explicit-messages-sexting/</link>
<description>The state of Colorado has updated a law designed to protect children on the internet from sending of sexually explicit messages, known as 'sexting', to include cell phones too.</description>
<pubDate>Tue, 07 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2450/internet-luring-law-to-include-sending-of-sexually-explicit-messages-sexting/</guid>
</item>
<item>
<title>Gartner expects IT spending to fall 6% in 2009</title>
<link>http://www.infosecurity-us.com/view/2453/gartner-expects-it-spending-to-fall-6-in-2009/</link>
<description>Worlwide IT spending could fall 6% to US$3.2 trillion in 2009, according to Connecticut-based IT research and advisory company Gartner.</description>
<pubDate>Tue, 07 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2453/gartner-expects-it-spending-to-fall-6-in-2009/</guid>
</item>
<item>
<title>Online game EVE sees virtual EBank robbed by CEO</title>
<link>http://www.infosecurity-us.com/view/2456/online-game-eve-sees-virtual-ebank-robbed-by-ceo/</link>
<description>The CEO of a virtual gaming bank within the space trading game EVE Online, has run off with 200bn of virtual credits trading them in for real world cash of &#163;3115 (US$5100) through the black market.</description>
<pubDate>Tue, 07 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2456/online-game-eve-sees-virtual-ebank-robbed-by-ceo/</guid>
</item>
<item>
<title>Quocirca releases encryption value analysis report</title>
<link>http://www.infosecurity-us.com/view/2438/quocirca-releases-encryption-value-analysis-report/</link>
<description>Quocirca, the business and IT research analysis company, has released a report looking at how encryption can add value to an organisation.</description>
<pubDate>Mon, 06 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2438/quocirca-releases-encryption-value-analysis-report/</guid>
</item>
<item>
<title>Weekly Brief - July 6 2009</title>
<link>http://www.infosecurity-us.com/view/2436/weekly-brief-july-6-2009/</link>
<description>Techniques, Tools, Concerns, Crimes, and Crashes</description>
<pubDate>Sun, 05 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2436/weekly-brief-july-6-2009/</guid>
</item>
<item>
<title>ColdFusion sites under attack</title>
<link>http://www.infosecurity-us.com/view/2437/coldfusion-sites-under-attack/</link>
<description>An attack is sweeping sites using Adobe's ColdFusion scripting system, according to information received by the SANS Institute.</description>
<pubDate>Sun, 05 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2437/coldfusion-sites-under-attack/</guid>
</item>
<item>
<title>New trojan causes problems for Google AdSense advertisers</title>
<link>http://www.infosecurity-us.com/view/2419/new-trojan-causes-problems-for-google-adsense-advertisers/</link>
<description>A nasty new trojan that triggers multiple click-throughs on Google AdSense - the pay-per-click sponsored web search service operated by Google - has been discovered by SecureWorks.</description>
<pubDate>Thu, 02 Jul 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2419/new-trojan-causes-problems-for-google-adsense-advertisers/</guid>
</item>
<item>
<title>Phone phreaker sentenced</title>
<link>http://www.infosecurity-us.com/view/2359/phone-phreaker-sentenced/</link>
<description>An 18-year-old, legally blind hacker has been sentenced to 11 years in jail following a string of crimes revolving around phone phreaking.</description>
<pubDate>Tue, 30 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2359/phone-phreaker-sentenced/</guid>
</item>
<item>
<title>Jackson's death rocks net</title>
<link>http://www.infosecurity-us.com/view/2360/jacksons-death-rocks-net/</link>
<description>Never one to miss a trick, the blackhat community capitalised on the death of Michael Jackson over the weekend by seeding the web with spam and malware designed to steal email addresses and join the troubled star's fans to botnets.</description>
<pubDate>Tue, 30 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2360/jacksons-death-rocks-net/</guid>
</item>
<item>
<title>Weekly Brief - June 30 2009</title>
<link>http://www.infosecurity-us.com/view/2361/weekly-brief-june-30-2009/</link>
<description>Danny Bradbury explores some of the more interesting stories in the security field from the last week.</description>
<pubDate>Tue, 30 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2361/weekly-brief-june-30-2009/</guid>
</item>
<item>
<title>Java delays approval of Oracle’s Sun takeover</title>
<link>http://www.infosecurity-us.com/view/2362/java-delays-approval-of-oracles-sun-takeover/</link>
<description>The US Department of Justice (DoJ) wants more time to consider Oracle's $7.4bn Sun deal before giving its approval.</description>
<pubDate>Tue, 30 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2362/java-delays-approval-of-oracles-sun-takeover/</guid>
</item>
<item>
<title>Sanford's mistress: my Hotmail account was hacked.</title>
<link>http://www.infosecurity-us.com/view/2380/sanfords-mistress-my-hotmail-account-was-hacked/</link>
<description>The Argentinian woman at the centre of the Mark Sanford scandal has said that her Hotmail account was hacked.</description>
<pubDate>Tue, 30 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2380/sanfords-mistress-my-hotmail-account-was-hacked/</guid>
</item>
<item>
<title>US cyberwarfare unit now official</title>
<link>http://www.infosecurity-us.com/view/2311/us-cyberwarfare-unit-now-official/</link>
<description>The Pentagon has officially ratified the US cyber warfare unit first rumoured in April. US defense secretary Robert Gates issued a memo this week creating the unit, which will be known as USCYBERCOMM.</description>
<pubDate>Thu, 25 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2311/us-cyberwarfare-unit-now-official/</guid>
</item>
<item>
<title>Facebook plugs hole in profile security</title>
<link>http://www.infosecurity-us.com/view/2295/facebook-plugs-hole-in-profile-security/</link>
<description>Facebook has plugged a major security hole that researchers say enabled any member of the site to view other users' personal information.</description>
<pubDate>Wed, 24 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2295/facebook-plugs-hole-in-profile-security/</guid>
</item>
<item>
<title>ATM malware likely to spread</title>
<link>http://www.infosecurity-us.com/view/2289/atm-malware-likely-to-spread/</link>
<description>The malware that has been infecting automated teller machines in eastern Europe could be about to spread to other places in the world, according to the company that uncovered the fraud. Experts at SpiderLab, the research arm of security firm Trustwave, say that there is &quot;increased activity&quot; around this particular strain of malware in other parts of the world.</description>
<pubDate>Tue, 23 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2289/atm-malware-likely-to-spread/</guid>
</item>
<item>
<title>CISOs not ready to deperimeterize, say experts.</title>
<link>http://www.infosecurity-us.com/view/2290/cisos-not-ready-to-deperimeterize-say-experts/</link>
<description>Chief information security officers are still ignoring the need for deperimeterization, according to a survey carried out by security firm Netwitness, and the MIS Training Institute.</description>
<pubDate>Tue, 23 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2290/cisos-not-ready-to-deperimeterize-say-experts/</guid>
</item>
<item>
<title>Researchers build browser-based darknet</title>
<link>http://www.infosecurity-us.com/view/2291/researchers-build-browserbased-darknet/</link>
<description>Researchers have developed technology that enables users to participate in an anonymous, private communication session using nothing but an HTML 5-compliant web browser.</description>
<pubDate>Tue, 23 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2291/researchers-build-browserbased-darknet/</guid>
</item>
<item>
<title>Weekly Brief - June 22 2009</title>
<link>http://www.infosecurity-us.com/view/2261/weekly-brief-june-22-2009/</link>
<description>Danny Bradbury documents Tools, Twitter, Law, Hacked, Patched, and the Totally Whacked this week.</description>
<pubDate>Mon, 22 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2261/weekly-brief-june-22-2009/</guid>
</item>
<item>
<title>‘Brad Pitt’ more dangerous than ‘Hugh Jackman’ – McAfee rates risky search terms online</title>
<link>http://www.infosecurity-us.com/view/2240/brad-pitt-more-dangerous-than-hugh-jackman-mcafee-rates-risky-search-terms-online/</link>
<description>Searching for ‘Brad Pitt’ is riskier than searching for ‘Hugh Jackman’ according to a McAfee study on the most dangerous search terms online.</description>
<pubDate>Fri, 19 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2240/brad-pitt-more-dangerous-than-hugh-jackman-mcafee-rates-risky-search-terms-online/</guid>
</item>
<item>
<title>GoldenCashWorld botnet, malware and hacker data exchange portal revealed</title>
<link>http://www.infosecurity-us.com/view/2231/goldencashworld-botnet-malware-and-hacker-data-exchange-portal-revealed/</link>
<description>Security researchers with Finjan have uncovered a highly sophisticated online botnet, malware and hacker exchange network for buying and selling access to infected PCs.</description>
<pubDate>Wed, 17 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2231/goldencashworld-botnet-malware-and-hacker-data-exchange-portal-revealed/</guid>
</item>
<item>
<title>Lawmakers seek to revamp REAL ID</title>
<link>http://www.infosecurity-us.com/view/2196/lawmakers-seek-to-revamp-real-id/</link>
<description>Lawmakers in the US have introduced a bill that they hope will fix what they see as flaws in the controversial 2005 REAL ID act. The new bill introduces checks and balances to protect consumer privacy, according to congressional leaders and privacy watchdogs.</description>
<pubDate>Tue, 16 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2196/lawmakers-seek-to-revamp-real-id/</guid>
</item>
<item>
<title>Chinese computer protection system against malware insecure, say researchers</title>
<link>http://www.infosecurity-us.com/view/2197/chinese-computer-protection-system-against-malware-insecure-say-researchers/</link>
<description>Researchers at the University of Michigan have criticized an alleged initiative by the Chinese government to protect the public's computers from malware, arguing that it creates significant vulnerabilities on users' machines.</description>
<pubDate>Tue, 16 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2197/chinese-computer-protection-system-against-malware-insecure-say-researchers/</guid>
</item>
<item>
<title>Learn about resilience and optimization on IBM power systems</title>
<link>http://www.infosecurity-us.com/view/2203/learn-about-resilience-and-optimization-on-ibm-power-systems/</link>
<description>Vision Solution’s explores the data protection, recovery and optimization technologies and strategies for running AIX and IBM i (i5/OS) environments in its white paper State of Resilience &amp; Optimization on IBM Power Systems.</description>
<pubDate>Tue, 16 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2203/learn-about-resilience-and-optimization-on-ibm-power-systems/</guid>
</item>
<item>
<title>Weekly Brief - June 15 2009</title>
<link>http://www.infosecurity-us.com/view/2176/weekly-brief-june-15-2009/</link>
<description>Information Security - Tools, Law, Techniques, Attacks, and Defenses</description>
<pubDate>Mon, 15 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2176/weekly-brief-june-15-2009/</guid>
</item>
<item>
<title>PBX hacking moves into the professional domain as arrests stack up </title>
<link>http://www.infosecurity-us.com/view/2182/pbx-hacking-moves-into-the-professional-domain-as-arrests-stack-up-/</link>
<description>PBX hacking - the act of cracking into a company PBX and selling long distance/international telephone time to third parties at a discount - is alive and well, despite several years of being out of the news.</description>
<pubDate>Mon, 15 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2182/pbx-hacking-moves-into-the-professional-domain-as-arrests-stack-up-/</guid>
</item>
<item>
<title>Apple releases Safari 4.0 to counter security flaws</title>
<link>http://www.infosecurity-us.com/view/2121/apple-releases-safari-40-to-counter-security-flaws/</link>
<description>Apple Computer has released v 4.0 of its increasingly popular Safari web browser for Windows and Mac OSX-based computers. The release counters the recent security flaws reported in CFNetwork, CoreGraphics, ImageIO, International Components for Unicode, libxml, Safari, Safari Windows Installer, and webKit</description>
<pubDate>Wed, 10 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2121/apple-releases-safari-40-to-counter-security-flaws/</guid>
</item>
<item>
<title>Majority break information security policies – survey</title>
<link>http://www.infosecurity-us.com/view/2123/majority-break-information-security-policies-survey/</link>
<description>The majority of employees admit to serious non-compliant workplace behaviour when it comes to information security, according to a study from the Ponemon Institute and sponsored by Californian secure flash drive provider IronKey.</description>
<pubDate>Wed, 10 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2123/majority-break-information-security-policies-survey/</guid>
</item>
<item>
<title>Learn about PDF security</title>
<link>http://www.infosecurity-us.com/view/2096/learn-about-pdf-security/</link>
<description>LockLizard explores the pitfalls of PDF security in its white paper 10 Things You Really Wished You Had Known About PDF Security.</description>
<pubDate>Tue, 09 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2096/learn-about-pdf-security/</guid>
</item>
<item>
<title>Indian authorities taking no chances with cybercafe users</title>
<link>http://www.infosecurity-us.com/view/2050/indian-authorities-taking-no-chances-with-cybercafe-users/</link>
<description>The anonymity of cybercafe users in India is being severely curtailed, in a bid to stamp out illegal, fraudulent and terrorist usage of this popular method of gaining internet access.</description>
<pubDate>Mon, 08 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2050/indian-authorities-taking-no-chances-with-cybercafe-users/</guid>
</item>
<item>
<title>Weekly Brief - June 8 2009</title>
<link>http://www.infosecurity-us.com/view/2052/weekly-brief-june-8-2009/</link>
<description>Information security: Privacy, enforcement, attacks, and defenses</description>
<pubDate>Mon, 08 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2052/weekly-brief-june-8-2009/</guid>
</item>
<item>
<title>Infosecurity experts hard to get despite economic downturn</title>
<link>http://www.infosecurity-us.com/view/2030/infosecurity-experts-hard-to-get-despite-economic-downturn/</link>
<description>Hiring managers are struggling to fill infosecurity positions due to a mismatch between salary expectations and skill levels, and current demand, information security education and certification organisation (ISC)2 has found it its latest jobs survey.</description>
<pubDate>Fri, 05 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2030/infosecurity-experts-hard-to-get-despite-economic-downturn/</guid>
</item>
<item>
<title>(ISC)2 offers live online CISSP review seminar</title>
<link>http://www.infosecurity-us.com/view/2017/isc2-offers-live-online-cissp-review-seminar/</link>
<description>Florida-based information security education and certification provider (ISC)2 has introduced Live OnLine Official (ISC)2 CISSP CBK Review Seminar, said to be the first online certified information systems security professional (CISSP) learning courses with live instructions.</description>
<pubDate>Thu, 04 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2017/isc2-offers-live-online-cissp-review-seminar/</guid>
</item>
<item>
<title>Prepare for end of Office 2000 security updates</title>
<link>http://www.infosecurity-us.com/view/2009/prepare-for-end-of-office-2000-security-updates/</link>
<description>Users of Office 2000 should start preparing for Microsoft’s withdrawal of its security update service for Office 2000 from 14 July this year, warns California-based security software provider Fortify Software.</description>
<pubDate>Wed, 03 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/2009/prepare-for-end-of-office-2000-security-updates/</guid>
</item>
<item>
<title>Obama: Cyber-czar to be hand-picked</title>
<link>http://www.infosecurity-us.com/view/1964/obama-cyberczar-to-be-handpicked/</link>
<description>President Obama finally announced the results of Melissa Hathaway's 60-day cybersecurity review on Friday, and unveiled plans to hand pick a senior official responsible for cybersecurity policy.</description>
<pubDate>Mon, 01 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1964/obama-cyberczar-to-be-handpicked/</guid>
</item>
<item>
<title>Booby-trapped DirectX files now being used by hackers</title>
<link>http://www.infosecurity-us.com/view/1972/boobytrapped-directx-files-now-being-used-by-hackers/</link>
<description>Microsoft has warned about hackers starting to use DirectX-enabled files to give them remote access to users' PCs across the internet.</description>
<pubDate>Mon, 01 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1972/boobytrapped-directx-files-now-being-used-by-hackers/</guid>
</item>
<item>
<title>Weekly Brief - June 1 2009</title>
<link>http://www.infosecurity-us.com/view/1984/weekly-brief-june-1-2009/</link>
<description>Information security: Tools, Techniques, Law, Attacks and Defenses</description>
<pubDate>Mon, 01 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1984/weekly-brief-june-1-2009/</guid>
</item>
<item>
<title>Twitter worm steals user details</title>
<link>http://www.infosecurity-us.com/view/1990/twitter-worm-steals-user-details/</link>
<description>A worm on Twitter is tricking users into giving up their user details at the same time as redirecting victims to a dating website where the aggregate number of views result in affiliate revenue.</description>
<pubDate>Mon, 01 Jun 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1990/twitter-worm-steals-user-details/</guid>
</item>
<item>
<title>Kaspersky researcher criticizes Facebook developer policy </title>
<link>http://www.infosecurity-us.com/view/1938/kaspersky-researcher-criticizes-facebook-developer-policy-/</link>
<description>Malware attacks are becoming more targeted and more focused on social networks, according to a researcher at Kaspersky, who slammed Facebook for problems with its application certification process.</description>
<pubDate>Fri, 29 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1938/kaspersky-researcher-criticizes-facebook-developer-policy-/</guid>
</item>
<item>
<title>Open Group advises on risk management methods</title>
<link>http://www.infosecurity-us.com/view/1922/open-group-advises-on-risk-management-methods/</link>
<description>Independent consortium the Open Group is trying to resolve what it sees as confusion about risk management in the industry by publishing a guide to choosing a risk management methodology.</description>
<pubDate>Wed, 27 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1922/open-group-advises-on-risk-management-methods/</guid>
</item>
<item>
<title>Weekly Brief - May 26 2009</title>
<link>http://www.infosecurity-us.com/view/1880/weekly-brief-may-26-2009/</link>
<description>Information security attacks, defenses, vulnerabilities, and losses</description>
<pubDate>Tue, 26 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1880/weekly-brief-may-26-2009/</guid>
</item>
<item>
<title>Anti-malware groups align themselves</title>
<link>http://www.infosecurity-us.com/view/1856/antimalware-groups-align-themselves/</link>
<description>Anti-malware efforts took a significant step forward this week with the announcement of an initiative to try and bring legitimate software businesses together and lock out malware writers. </description>
<pubDate>Fri, 22 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1856/antimalware-groups-align-themselves/</guid>
</item>
<item>
<title>GAO slams Federal agencies for poor information security</title>
<link>http://www.infosecurity-us.com/view/1840/gao-slams-federal-agencies-for-poor-information-security/</link>
<description>The Government Accountability Office criticised Federal agencies this week for poorly implementing information security controls, arguing that most of them were deficient.</description>
<pubDate>Thu, 21 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1840/gao-slams-federal-agencies-for-poor-information-security/</guid>
</item>
<item>
<title>Survey shows information security awareness is high, yet compliance is low </title>
<link>http://www.infosecurity-us.com/view/1844/survey-shows-information-security-awareness-is-high-yet-compliance-is-low-/</link>
<description>SAI Global’s Benchmarking Survey 2008 finds that 95% of employees believe information security is important, but that there is a lack of knowledge and training surrounding how to identify and report incidents.</description>
<pubDate>Thu, 21 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1844/survey-shows-information-security-awareness-is-high-yet-compliance-is-low-/</guid>
</item>
<item>
<title>McAfee acquires Solidcore for whitelisting technology</title>
<link>http://www.infosecurity-us.com/view/1820/mcafee-acquires-solidcore-for-whitelisting-technology/</link>
<description>McAfee will acquire Solidcore Systems, a whitelisting specialist, in a US$33m deal which will allow McAfee to integrate Solidcore's technology into its blacklisting malware detection and prevention products, as well as to bolster its high-end corporate IT security offerings.</description>
<pubDate>Wed, 20 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1820/mcafee-acquires-solidcore-for-whitelisting-technology/</guid>
</item>
<item>
<title>Gumblar malware attack sweeps web</title>
<link>http://www.infosecurity-us.com/view/1833/gumblar-malware-attack-sweeps-web/</link>
<description>A modified attack that alters Google searches is taking the web by storm according to security researchers, who have identified more malware domains being used in the attack.</description>
<pubDate>Wed, 20 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1833/gumblar-malware-attack-sweeps-web/</guid>
</item>
<item>
<title>Infosecurity Weekly Brief - May 18 2009</title>
<link>http://www.infosecurity-us.com/view/1792/infosecurity-weekly-brief-may-18-2009/</link>
<description>Infections, Intrusions, Protections and Misdirections</description>
<pubDate>Mon, 18 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1792/infosecurity-weekly-brief-may-18-2009/</guid>
</item>
<item>
<title>Unlimited online backup from F-Secure</title>
<link>http://www.infosecurity-us.com/view/1788/unlimited-online-backup-from-fsecure/</link>
<description>An unlimited online backup solution, which works automatically in the background, has been launched by Finnish IT security service provider F-Secure.</description>
<pubDate>Fri, 15 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1788/unlimited-online-backup-from-fsecure/</guid>
</item>
<item>
<title>Pentagon security cleared worker charged with cyber espionage</title>
<link>http://www.infosecurity-us.com/view/1777/pentagon-security-cleared-worker-charged-with-cyber-espionage/</link>
<description>A US defense worker who had a Pentagon security clearance has been charged with providing classified information to Chinese officials.</description>
<pubDate>Thu, 14 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1777/pentagon-security-cleared-worker-charged-with-cyber-espionage/</guid>
</item>
<item>
<title>Software piracy on the rise</title>
<link>http://www.infosecurity-us.com/view/1769/software-piracy-on-the-rise/</link>
<description>Worldwide software piracy is on the rise, according to a study by the Business Software Alliance and analyst firm IDC.</description>
<pubDate>Wed, 13 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1769/software-piracy-on-the-rise/</guid>
</item>
<item>
<title>Forrester questions the security of cloud computing</title>
<link>http://www.infosecurity-us.com/view/1767/forrester-questions-the-security-of-cloud-computing/</link>
<description>With the economic downturn, cloud computing is seen as a way to improve operational efficiency, reduce headcounts and help with the bottom line, but according to the report from Massachusetts-based Forrester Research on cloud computing, organisations should not jump on the ‘cloud wagon’ before considering security and privacy concerns.</description>
<pubDate>Tue, 12 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1767/forrester-questions-the-security-of-cloud-computing/</guid>
</item>
<item>
<title>Estonia now firmly on the FBI cybercrime map</title>
<link>http://www.infosecurity-us.com/view/1768/estonia-now-firmly-on-the-fbi-cybercrime-map/</link>
<description>The importance of Estonia, one of the most Internet-connected and e-trading nations on earth, has ramped up a notch or two with the FBI, which has announced plans to station a cybercrime expert and his/her team in the country later this year.</description>
<pubDate>Tue, 12 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1768/estonia-now-firmly-on-the-fbi-cybercrime-map/</guid>
</item>
<item>
<title>Governments must cooperate on cyber security – report</title>
<link>http://www.infosecurity-us.com/view/1746/governments-must-cooperate-on-cyber-security-report/</link>
<description>Governments around the world must work together to address the issue of cyber security, according to a report from Deloitte.</description>
<pubDate>Mon, 11 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1746/governments-must-cooperate-on-cyber-security-report/</guid>
</item>
<item>
<title>Infosecurity Weekly Brief - May 12th 2009</title>
<link>http://www.infosecurity-us.com/view/1757/infosecurity-weekly-brief-may-12th-2009/</link>
<description>Danny Bradbury rounds up the most important news in the security space from the last week. </description>
<pubDate>Mon, 11 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1757/infosecurity-weekly-brief-may-12th-2009/</guid>
</item>
<item>
<title>Heartland takes US$12.6m hit for breach</title>
<link>http://www.infosecurity-us.com/view/1731/heartland-takes-us126m-hit-for-breach/</link>
<description>Heartland Payment Systems has revealed that it lost US$12.6m as a result of its 2008 data breach, in the same week that it finally regained official Payment Card Industry Data Security standard (PCI DSS) compliance.</description>
<pubDate>Fri, 08 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1731/heartland-takes-us126m-hit-for-breach/</guid>
</item>
<item>
<title>BT investigation into eBay hard drives reveals US air defence launch secrets </title>
<link>http://www.infosecurity-us.com/view/1738/bt-investigation-into-ebay-hard-drives-reveals-us-air-defence-launch-secrets-/</link>
<description>The latest annual BT investigation into the sale of second-hand hard drives on the internet has turned up trumps, with researchers buying a hard drive on the internet auction website eBay, containing the launch procedures for a US military air defence system.</description>
<pubDate>Fri, 08 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1738/bt-investigation-into-ebay-hard-drives-reveals-us-air-defence-launch-secrets-/</guid>
</item>
<item>
<title>Web 2.0 sites prime hacker target says report</title>
<link>http://www.infosecurity-us.com/view/1739/web-20-sites-prime-hacker-target-says-report/</link>
<description>Web 2.0-driven websites are now a premier target for hackers, amounting to 21% of all reported hacking incidents, according to an IT security report from the Secure Enterprise 2.0 Forum.</description>
<pubDate>Fri, 08 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1739/web-20-sites-prime-hacker-target-says-report/</guid>
</item>
<item>
<title>Fake search engines used to divert users to malware infected websites</title>
<link>http://www.infosecurity-us.com/view/1724/fake-search-engines-used-to-divert-users-to-malware-infected-websites/</link>
<description>Hackers are starting to create fake search engine sites to divert hapless internet users to malware infected websites, says PandaLabs, the research operation of Panda Security.</description>
<pubDate>Thu, 07 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1724/fake-search-engines-used-to-divert-users-to-malware-infected-websites/</guid>
</item>
<item>
<title>Google Chrome trumps browser pack in update test</title>
<link>http://www.infosecurity-us.com/view/1703/google-chrome-trumps-browser-pack-in-update-test/</link>
<description>Users of Google's Chrome browser are the most likely to be running the latest version of the software compared to other browsers, according to a study released this week. </description>
<pubDate>Wed, 06 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1703/google-chrome-trumps-browser-pack-in-update-test/</guid>
</item>
<item>
<title>Parabon's grid technology simulates DDoS site attacks</title>
<link>http://www.infosecurity-us.com/view/1711/parabons-grid-technology-simulates-ddos-site-attacks/</link>
<description>Parabon Computation has launched a new service that simulates a distributed denial of service (DDoS) attack on a company Web site.</description>
<pubDate>Wed, 06 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1711/parabons-grid-technology-simulates-ddos-site-attacks/</guid>
</item>
<item>
<title>Global Security Challenge Competition open for entries</title>
<link>http://www.infosecurity-us.com/view/1713/global-security-challenge-competition-open-for-entries/</link>
<description>The fourth annual Global Security Challenge Competition where security entrepreneurs compete for up to US$500 000 in cash grants, is open for entries until 15 June 2009.</description>
<pubDate>Wed, 06 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1713/global-security-challenge-competition-open-for-entries/</guid>
</item>
<item>
<title>RSA: Splunk’s sales benefit from economic downturn </title>
<link>http://www.infosecurity-us.com/view/1716/rsa-splunks-sales-benefit-from-economic-downturn-/</link>
<description>Splunk, the vendor who calls itself “the google for data centres” are seeing an increase in sales due to the high crime that comes hand in hand with an economic downturn. </description>
<pubDate>Wed, 06 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1716/rsa-splunks-sales-benefit-from-economic-downturn-/</guid>
</item>
<item>
<title>Palo Alto networks formally launches in the UK</title>
<link>http://www.infosecurity-us.com/view/1691/palo-alto-networks-formally-launches-in-the-uk/</link>
<description>After several years of offering its products via a few specialist systems integrators in the UK, California's Palo Alto Networks has established a formal presence in the country.</description>
<pubDate>Tue, 05 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1691/palo-alto-networks-formally-launches-in-the-uk/</guid>
</item>
<item>
<title>Conficker and Facebook / Twitter attacks dominate Q1 email threats</title>
<link>http://www.infosecurity-us.com/view/1698/conficker-and-facebook-twitter-attacks-dominate-q1-email-threats/</link>
<description>The Conficker worm and attackers’ social engineering techniques exploiting users on Facebook, Myspace and Twitter, dominated the email threats in the first quarter (Q1) of 2009, according to identity-based unified threat management (UTM) solutions provider Cyberoam and its Israeli messaging and web security partner Commtouch.</description>
<pubDate>Tue, 05 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1698/conficker-and-facebook-twitter-attacks-dominate-q1-email-threats/</guid>
</item>
<item>
<title>Infosecurity Europe: firms get access to military grade forensics</title>
<link>http://www.infosecurity-us.com/view/1679/infosecurity-europe-firms-get-access-to-military-grade-forensics/</link>
<description>It's not often that firms supplying specialist network forensics technology to US government agencies are allowed to supply their systems software to civilian companies, especially outside of the United States, but Utah-based Solera Networks has achieved this.</description>
<pubDate>Fri, 01 May 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1679/infosecurity-europe-firms-get-access-to-military-grade-forensics/</guid>
</item>
<item>
<title>FISMA inches closer to reform</title>
<link>http://www.infosecurity-us.com/view/1670/fisma-inches-closer-to-reform/</link>
<description>Legislation has been introduced into the US Senate that would reform existing cybersecurity regulations, just as federal CISOs condemned existing rules as out of touch with current security concerns.</description>
<pubDate>Thu, 30 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1670/fisma-inches-closer-to-reform/</guid>
</item>
<item>
<title>Adobe Reader hit by more zero-day flaws</title>
<link>http://www.infosecurity-us.com/view/1596/adobe-reader-hit-by-more-zeroday-flaws/</link>
<description>Two more zero-day flaws have been found in Adobe Reader that could lead to users' machines being compromised.</description>
<pubDate>Wed, 29 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1596/adobe-reader-hit-by-more-zeroday-flaws/</guid>
</item>
<item>
<title>Pentagon readies cyber warfare unit</title>
<link>http://www.infosecurity-us.com/view/1557/pentagon-readies-cyber-warfare-unit/</link>
<description>The Obama administration is setting up a new unit inside the Pentagon that will be responsible for offensive cyber warfare, according to reports in the Wall Street Journal - and the unit will be headed by the current director of the National Security Agency.</description>
<pubDate>Tue, 28 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1557/pentagon-readies-cyber-warfare-unit/</guid>
</item>
<item>
<title>Infosecurity Europe: President Obama's Blackberry revealed</title>
<link>http://www.infosecurity-us.com/view/1593/infosecurity-europe-president-obamas-blackberry-revealed/</link>
<description>The guys on the Blackberry stand at the Infosecurity Europe show weren't willing to talk specifically about it, but it looks like the White House has taken delivery of a custom Blackberry smartphone for President Obama.</description>
<pubDate>Tue, 28 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1593/infosecurity-europe-president-obamas-blackberry-revealed/</guid>
</item>
<item>
<title>Infosecurity Weekly Brief - April 27</title>
<link>http://www.infosecurity-us.com/view/1491/infosecurity-weekly-brief-april-27/</link>
<description>Last week, Infosecurity Magazine was at the RSA show in San Francisco. A variety of vendors launched new products. </description>
<pubDate>Mon, 27 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1491/infosecurity-weekly-brief-april-27/</guid>
</item>
<item>
<title>RSA: Recession will hit small information security companies hard say experts </title>
<link>http://www.infosecurity-us.com/view/1541/rsa-recession-will-hit-small-information-security-companies-hard-say-experts-/</link>
<description>Despite the need for security being exaggerated in an economic downturn, smaller IT security companies will suffer, says Dave Hansen, Corporate SVP &amp;GM Security Business Unit at CA, speaking to Infosecurity at the RSA conference in San Francisco. </description>
<pubDate>Mon, 27 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1541/rsa-recession-will-hit-small-information-security-companies-hard-say-experts-/</guid>
</item>
<item>
<title>RSA: Lumension and Microsoft ink whitelisting deal</title>
<link>http://www.infosecurity-us.com/view/1422/rsa-lumension-and-microsoft-ink-whitelisting-deal/</link>
<description>Endpoint security company Lumension teamed up with Microsoft at the RSA show to launch a software whitelisting service. The move, which sees the companies sharing information about legitimate software applications, lends increasing credence to the idea that blacklisting malicious software by signature is becoming less tenable as the number of malware variants increases.</description>
<pubDate>Wed, 22 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1422/rsa-lumension-and-microsoft-ink-whitelisting-deal/</guid>
</item>
<item>
<title>Finjan uncovers one of world's largest botnets</title>
<link>http://www.infosecurity-us.com/view/1424/finjan-uncovers-one-of-worlds-largest-botnets/</link>
<description>Finjan has uncovered what appears to be one of the largest bot networks controlled by a single cybercrime gang, with 1.9 million infected zombie computers forming the swarm.</description>
<pubDate>Wed, 22 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1424/finjan-uncovers-one-of-worlds-largest-botnets/</guid>
</item>
<item>
<title>RSA: Symantec CEO Enrique Salem calls for automated information security  </title>
<link>http://www.infosecurity-us.com/view/1436/rsa-symantec-ceo-enrique-salem-calls-for-automated-information-security-/</link>
<description> In his keynote at RSA in San Francisco, Symantec CEO Enrique Salem called for a significant shift in the way vendors and end-users approach information security. Change, said Salem, is needed to fight the current targeted threat landscape. </description>
<pubDate>Wed, 22 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1436/rsa-symantec-ceo-enrique-salem-calls-for-automated-information-security-/</guid>
</item>
<item>
<title>RSA: NSA director Lieutenant General Alexander asks RSA conference to work with NSA to secure nation </title>
<link>http://www.infosecurity-us.com/view/1421/rsa-nsa-director-lieutenant-general-alexander-asks-rsa-conference-to-work-with-nsa-to-secure-nation-/</link>
<description>Director of NSA, Lieutenant General Keith B Alexander, congratulated the information security industry on its excellent work in his keynote address to RSA conference attendees in San Francisco on 21 April 2009. </description>
<pubDate>Tue, 21 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1421/rsa-nsa-director-lieutenant-general-alexander-asks-rsa-conference-to-work-with-nsa-to-secure-nation-/</guid>
</item>
<item>
<title>Infosecurity Weekly Brief - April 20 2009</title>
<link>http://www.infosecurity-us.com/view/1383/infosecurity-weekly-brief-april-20-2009/</link>
<description>Government, Twitter, Tools and the law.</description>
<pubDate>Mon, 20 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1383/infosecurity-weekly-brief-april-20-2009/</guid>
</item>
<item>
<title>E-mail authentication needs to be taken seriously - OTA</title>
<link>http://www.infosecurity-us.com/view/1403/email-authentication-needs-to-be-taken-seriously-ota/</link>
<description>Research from the Online Trust Alliance (OTA) claims to show that companies need to take email authentication a lot more seriously than they presently do, as well as implement the technology on much more widespread basis.</description>
<pubDate>Mon, 20 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1403/email-authentication-needs-to-be-taken-seriously-ota/</guid>
</item>
<item>
<title>Skype - not as secure as you might think</title>
<link>http://www.infosecurity-us.com/view/1331/skype-not-as-secure-as-you-might-think/</link>
<description>Although VOIP afficionadoes are wont to promote the encrypted nature of Skype Internet telephony calls, it's now becoming accepted that the use of a compressed data mode within Skype opens the gates to pattern recognition and slow, but steady, text-based decoding of the voice transmissions as a result.</description>
<pubDate>Wed, 15 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1331/skype-not-as-secure-as-you-might-think/</guid>
</item>
<item>
<title>Symantec report observes surge in malicious code for 2008</title>
<link>http://www.infosecurity-us.com/view/1334/symantec-report-observes-surge-in-malicious-code-for-2008/</link>
<description>Security provider, Symantec, found that malicious code activity continued to grow at a record pace throughout 2008, with the most prominent target being confidential information, according to the Symantec Internet Security Threat Report Volume XIV.</description>
<pubDate>Wed, 15 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1334/symantec-report-observes-surge-in-malicious-code-for-2008/</guid>
</item>
<item>
<title>Infosecurity Weekly Brief - April 13 2009</title>
<link>http://www.infosecurity-us.com/view/1295/infosecurity-weekly-brief-april-13-2009/</link>
<description>Powerpoint, Porn and Twitter</description>
<pubDate>Tue, 14 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1295/infosecurity-weekly-brief-april-13-2009/</guid>
</item>
<item>
<title>McCartney site serves up Zeus malware</title>
<link>http://www.infosecurity-us.com/view/1178/mccartney-site-serves-up-zeus-malware/</link>
<description>Paul McCartney's site was serving up the Zeus trojan for three days, according to UK security firm ScanSafe. The attack, in which paulmccartney.com was compromised with malicious Javascript, appears to have been tailored to coincide with interest in his New York reunion concert last weekend.</description>
<pubDate>Wed, 08 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1178/mccartney-site-serves-up-zeus-malware/</guid>
</item>
<item>
<title>Infosecurity gets twittered up</title>
<link>http://www.infosecurity-us.com/view/1251/infosecurity-gets-twittered-up/</link>
<description>Infosecurity magazine are now on Twitter. Please ‘follow’ us to receive our latest news, views and industry comments. </description>
<pubDate>Wed, 08 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1251/infosecurity-gets-twittered-up/</guid>
</item>
<item>
<title>Infosecurity - the Week in Brief</title>
<link>http://www.infosecurity-us.com/view/1008/infosecurity-the-week-in-brief/</link>
<description>Ghost in the machine  The Information Warfare Monitor published a report on GhostNet, a cyber-espionage network that it discovered after conducting a security audit for the Dalai Lama's Tibetan Government in Exile. Almost 1300 machines were discovered in a micro-botnet controlled from servers mainly in Chinese IP blocks. The 30% of machines that it identified were of high importance to Chinese interests, it found. The Dalai Lama has condemned the whole affair, and the Chinese government is denying everything. </description>
<pubDate>Mon, 06 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1008/infosecurity-the-week-in-brief/</guid>
</item>
<item>
<title>SQL injection attack leads to command execution</title>
<link>http://www.infosecurity-us.com/view/1047/sql-injection-attack-leads-to-command-execution/</link>
<description>SQL injection will take a new turn later this month at Black Hat Europe, when a security researcher shows how to take control of a database server using the technique.</description>
<pubDate>Fri, 03 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1047/sql-injection-attack-leads-to-command-execution/</guid>
</item>
<item>
<title>US cybercrimes soar by 33% in 2008</title>
<link>http://www.infosecurity-us.com/view/1016/us-cybercrimes-soar-by-33-in-2008/</link>
<description>Cybercrimes in the United States hit record numbers last year, according to a report from the Internet Crime Complaint Centre (IC3), a partnership between the FBI and the National White Collar Crime Centre.</description>
<pubDate>Thu, 02 Apr 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1016/us-cybercrimes-soar-by-33-in-2008/</guid>
</item>
<item>
<title>Week in Brief - 30.03.2009</title>
<link>http://www.infosecurity-us.com/view/1267/week-in-brief-30032009/</link>
<description>Conflicker, Congress and Pink Floyd </description>
<pubDate>Mon, 30 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1267/week-in-brief-30032009/</guid>
</item>
<item>
<title>Another Firefox flaw emerges</title>
<link>http://www.infosecurity-us.com/view/1266/another-firefox-flaw-emerges/</link>
<description>Mozilla's Firefox browser has been hit by a zero-day bug that could enable attackers to execute arbitrary code. The bug, issued by security researcher Guido Landi, can corrupt the browser's memory using a maliciously-crafted file. </description>
<pubDate>Fri, 27 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1266/another-firefox-flaw-emerges/</guid>
</item>
<item>
<title>Mac OS X attacked</title>
<link>http://www.infosecurity-us.com/view/1265/mac-os-x-attacked/</link>
<description>Anti-virus firm Sophos has identified a new infection vector for RSPlug, a Trojan horse targeting OS X. Graham Cluley, senior technology consultant for the company, has demonstrated an attack in which the malware is downloaded as part of a malicious high definition media player application. </description>
<pubDate>Thu, 26 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1265/mac-os-x-attacked/</guid>
</item>
<item>
<title>Researcher to blow lid off 'secure' retail networks</title>
<link>http://www.infosecurity-us.com/view/1264/researcher-to-blow-lid-off-secure-retail-networks/</link>
<description>Next month, a security researcher will unveil a hack that he says could provide backdoor access into thousands of US networks. Rob Havelt, practice manager for the Spider Labs penetration testing laboratory within security firm Trustwave, will demonstrate how to hack into the frequency hopping spread spectrum (FHSS) networks that underpin everything from barcode scanning systems in retail through to some mobile IP phones. </description>
<pubDate>Wed, 25 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1264/researcher-to-blow-lid-off-secure-retail-networks/</guid>
</item>
<item>
<title>Infosecurity - the week in brief </title>
<link>http://www.infosecurity-us.com/view/812/infosecurity-the-week-in-brief-/</link>
<description>Bugs, browsers, bureaucracy, backtracks and busts.</description>
<pubDate>Mon, 23 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/812/infosecurity-the-week-in-brief-/</guid>
</item>
<item>
<title>Grey Goose 2 ties Kremlin more closely to Georgia cyber-attacks</title>
<link>http://www.infosecurity-us.com/view/761/grey-goose-2-ties-kremlin-more-closely-to-georgia-cyberattacks/</link>
<description>The follow-up to the Grey Goose cyberwar document has more closely linked Russia to the cyberwar against Georgia. The Kremlin's FSB tried to cloak its operations by mimicking the activities of loosely-connected criminal group the Russian Business Network, claims the explosive report, released today. </description>
<pubDate>Fri, 20 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/761/grey-goose-2-ties-kremlin-more-closely-to-georgia-cyberattacks/</guid>
</item>
<item>
<title>Worm attacks Windows RPC flaw</title>
<link>http://www.infosecurity-us.com/view/781/worm-attacks-windows-rpc-flaw/</link>
<description>More worm activity has been spotted targeting a recently discovered Windows flaw. </description>
<pubDate>Fri, 20 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/781/worm-attacks-windows-rpc-flaw/</guid>
</item>
<item>
<title>Microsoft to launch exploitability analysis tool</title>
<link>http://www.infosecurity-us.com/view/742/microsoft-to-launch-exploitability-analysis-tool/</link>
<description>Microsoft will announce an open source tool on Friday designed to help programmers filter out serious security flaws in their programs before they ship. Members of the company's Trustworthy Computing team, speaking at Vancouver-based security conference CanSecWest, will unveil !exploitable, a software tool that analyses crash data from programs and prioritizes key security flaws.  </description>
<pubDate>Thu, 19 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/742/microsoft-to-launch-exploitability-analysis-tool/</guid>
</item>
<item>
<title>InDorse launches rights management system</title>
<link>http://www.infosecurity-us.com/view/710/indorse-launches-rights-management-system/</link>
<description>InDorse Technologies has launched a rights management system designed to discover and semi-automatically tag data with usage policies. </description>
<pubDate>Wed, 18 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/710/indorse-launches-rights-management-system/</guid>
</item>
<item>
<title>Anti-phishing group in info-sharing move</title>
<link>http://www.infosecurity-us.com/view/685/antiphishing-group-in-infosharing-move/</link>
<description>The Anti-Phishing Working Group (APWG) is preparing a common cyber-crime reporting system that will include a hosted database and a universal crime reporting format. The non-profit group is hoping to make it easier for private and public sector groups to work together on tracking online criminals. </description>
<pubDate>Mon, 16 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/685/antiphishing-group-in-infosharing-move/</guid>
</item>
<item>
<title>Infosecurity Weekly Brief - March 16 2009</title>
<link>http://www.infosecurity-us.com/view/687/infosecurity-weekly-brief-march-16-2009/</link>
<description>Palin, patches and Mac hack. This week in brief.</description>
<pubDate>Mon, 16 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/687/infosecurity-weekly-brief-march-16-2009/</guid>
</item>
<item>
<title>Expert calls for cyberspace &quot;Monroe doctrine&quot;</title>
<link>http://www.infosecurity-us.com/view/646/expert-calls-for-cyberspace-monroe-doctrine/</link>
<description>A mixture of private sector and congressional witnesses slammed the US for a lack of cohesion in its cyber security stance this week, calling for better leadership in the defense of the country's &quot;cyber turf&quot;.</description>
<pubDate>Thu, 12 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/646/expert-calls-for-cyberspace-monroe-doctrine/</guid>
</item>
<item>
<title>Microsoft Preps Global Anti-Cyber Crime Push</title>
<link>http://www.infosecurity-us.com/view/626/microsoft-preps-global-anticyber-crime-push/</link>
<description>Microsoft has teamed up with academia and law enforcers to create an initiative that it hopes will formalize cyber security training worldwide.</description>
<pubDate>Wed, 11 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/626/microsoft-preps-global-anticyber-crime-push/</guid>
</item>
<item>
<title>The week in brief</title>
<link>http://www.infosecurity-us.com/view/557/the-week-in-brief/</link>
<description>Cyber intelligence There were big shakeups afoot in the US cyberintelligence community. Rod Beckstr&#246;m, last year's controversial pick for head of the secretive National Cybersecurity Center, resigned amid stormy allegations of bureacratic roadblocks.</description>
<pubDate>Mon, 09 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/557/the-week-in-brief/</guid>
</item>
<item>
<title>Mahalo employee nailed for botnet crime</title>
<link>http://www.infosecurity-us.com/view/556/mahalo-employee-nailed-for-botnet-crime/</link>
<description>An employee of the human-powered search engine Mahalo[http://www.mahalo.com/] was sentenced to four years in prison this week for operating a botnet.</description>
<pubDate>Fri, 06 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/556/mahalo-employee-nailed-for-botnet-crime/</guid>
</item>
<item>
<title>Conficker concern continues</title>
<link>http://www.infosecurity-us.com/view/549/conficker-concern-continues/</link>
<description>Conficker continued to garner attention from security vendors this month as it spread across the internet.</description>
<pubDate>Thu, 05 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/549/conficker-concern-continues/</guid>
</item>
<item>
<title>Heartland breach generates storm of lawsuits</title>
<link>http://www.infosecurity-us.com/view/550/heartland-breach-generates-storm-of-lawsuits/</link>
<description>Embarrassment over the massive data breach suffered by Heartland Payment Systems has turned out to be only the start of the firm's problems. The company, which announced the potential compromise of an as-yet undisclosed number of card records, is now on the receiving end of lawsuits from at least eight banks and credit unions.</description>
<pubDate>Thu, 05 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/550/heartland-breach-generates-storm-of-lawsuits/</guid>
</item>
<item>
<title>Phishing sites hacked into via Google</title>
<link>http://www.infosecurity-us.com/view/551/phishing-sites-hacked-into-via-google/</link>
<description>Phishing sites are mainly legitimate web sites that are being hacked via 'evil' web searches, reveals a report by a trans-Atlantic team of researchers.</description>
<pubDate>Thu, 05 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/551/phishing-sites-hacked-into-via-google/</guid>
</item>
<item>
<title>Ponemon: Cost of breaches rising</title>
<link>http://www.infosecurity-us.com/view/553/ponemon-cost-of-breaches-rising/</link>
<description>The Ponemon Institute has published its annual survey analyzing the cost of data breaches, and has found them rising. Its report, 2008 Annual Study: The Cost of a Data Breach, analyzed input from 43 US firms and found that the cost of the average breach was up 2.5% from last year. It had risen even more sharply since 2006, climbing 11%.</description>
<pubDate>Thu, 05 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/553/ponemon-cost-of-breaches-rising/</guid>
</item>
<item>
<title>NYPD victim of data theft </title>
<link>http://www.infosecurity-us.com/view/555/nypd-victim-of-data-theft-/</link>
<description>The New York Police Department's Pension Fund has admitted that the personal records of up to 80,000 police officers may have been compromised, following the theft of unencrypted data tapes from a disaster recovery facility.</description>
<pubDate>Thu, 05 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/555/nypd-victim-of-data-theft-/</guid>
</item>
<item>
<title>Damballa updates botnet detection </title>
<link>http://www.infosecurity-us.com/view/548/damballa-updates-botnet-detection-/</link>
<description>Damballa has updated its botnet detection product with a host of new features, while slamming other anti-virus vendors for failing to spot large percentages of malware. </description>
<pubDate>Tue, 03 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/548/damballa-updates-botnet-detection-/</guid>
</item>
<item>
<title>Infosecurity - the week in brief</title>
<link>http://www.infosecurity-us.com/view/547/infosecurity-the-week-in-brief/</link>
<description>Arrests A Chinese official has reportedly been arrested for taking backhanders to help one local anti-virus company disrupt the business of another. Yu Bing, director of the internet monitoring department of Beijing’s Public Security Bureau, allegedly took 4.5m Yuan ($657,000) to frame executives at antivirus company Micropoint and stop its products reaching the market. The money was said to have come from antivirus firm Rising, according to reports.</description>
<pubDate>Mon, 02 Mar 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/547/infosecurity-the-week-in-brief/</guid>
</item>
<item>
<title>Update: DPP has insufficient evidence to prosecute McKinnon in UK</title>
<link>http://www.infosecurity-us.com/view/542/update-dpp-has-insufficient-evidence-to-prosecute-mckinnon-in-uk/</link>
<description>Karen Todner, solicitor for NASA hacker Gary McKinnon has issued a statement disclosing that the Office of the Director of Public Prosecutions (DPP) “do not consider that they have sufficient evidence before them to prosecute Mr McKinnon in the United Kingdom.”</description>
<pubDate>Fri, 27 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/542/update-dpp-has-insufficient-evidence-to-prosecute-mckinnon-in-uk/</guid>
</item>
<item>
<title>CansecWest's Pwn2Own cracking contest goes twin-track</title>
<link>http://www.infosecurity-us.com/view/544/cansecwests-pwn2own-cracking-contest-goes-twintrack/</link>
<description>The three-day Pwn2Own cracking contest - which kicks off on March 18 at the CanSecWest security conference in Vancouver - is always a popular headliner, mainly because of its healthy reward for great system and software hacks.</description>
<pubDate>Fri, 27 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/544/cansecwests-pwn2own-cracking-contest-goes-twintrack/</guid>
</item>
<item>
<title>ID theft tops consumer complaint list</title>
<link>http://www.infosecurity-us.com/view/546/id-theft-tops-consumer-complaint-list/</link>
<description>Identity theft continues to be the top consumer complaint in the US, according to the Federal Trade Commission. </description>
<pubDate>Fri, 27 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/546/id-theft-tops-consumer-complaint-list/</guid>
</item>
<item>
<title>Microsoft Admits Excel Zero-Day Flaw</title>
<link>http://www.infosecurity-us.com/view/539/microsoft-admits-excel-zeroday-flaw/</link>
<description>Microsoft has warned customers about a zero-day flaw in Excel that could allow for remote code execution if specially-crafted files are opened in the spreadsheet program.</description>
<pubDate>Thu, 26 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/539/microsoft-admits-excel-zeroday-flaw/</guid>
</item>
<item>
<title>Infosecurity - the week in brief</title>
<link>http://www.infosecurity-us.com/view/538/infosecurity-the-week-in-brief/</link>
<description>Black Hat DC This week, Black Hat DC was on in Arlington, VA. Moxie Marlinspike announced a new attack against SSL that forces HTTPS traffic into HTTP to allow a man in the middle attack. Dan Kaminsky, who discovered the infamous DNS flaw last year and criticized SSL at the the time, reacts here. He also resolved at the conference to take two months off work to promote the adoption of DNSSEC - a more secure DNS standard that has not been widely implemented.</description>
<pubDate>Mon, 23 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/538/infosecurity-the-week-in-brief/</guid>
</item>
<item>
<title>Facebook moves to save face on T&amp;Cs</title>
<link>http://www.infosecurity-us.com/view/536/facebook-moves-to-save-face-on-tcs/</link>
<description>Social networking giant Facebook has back-tracked on a controversial decision to retain users' information, even when they close their accounts.</description>
<pubDate>Fri, 20 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/536/facebook-moves-to-save-face-on-tcs/</guid>
</item>
<item>
<title>Microsoft Conficker</title>
<link>http://www.infosecurity-us.com/view/535/microsoft-conficker/</link>
<description>Microsoft's Conficker Cabal has been steadily registering domain names targeted by the Downadup/Conficker worm in a bid to choke off its update mechanism.</description>
<pubDate>Wed, 18 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/535/microsoft-conficker/</guid>
</item>
<item>
<title>Arrests made in Heartland breach</title>
<link>http://www.infosecurity-us.com/view/533/arrests-made-in-heartland-breach/</link>
<description>Timothy J. Johns, Jeremy A. Frazier and Tony Acreus, all in their early twenties, were arrested while using stolen credit card numbers to make purchases in Leon County, Tallahassee.</description>
<pubDate>Tue, 17 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/533/arrests-made-in-heartland-breach/</guid>
</item>
<item>
<title>Los Alamos in hot water over computer loss</title>
<link>http://www.infosecurity-us.com/view/532/los-alamos-in-hot-water-over-computer-loss/</link>
<description>The Department of Energy has slammed Los Alamos National Laboratory (LANL) for lax cybersecurity following the revelation last week that 69 computers are missing from the nuclear laboratory.</description>
<pubDate>Mon, 16 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/532/los-alamos-in-hot-water-over-computer-loss/</guid>
</item>
<item>
<title>Obama orders cybersecurity review</title>
<link>http://www.infosecurity-us.com/view/531/obama-orders-cybersecurity-review/</link>
<description>President Obama has ordered a 60-day review of federal cybersecurity, appointing a former key executive in the Bush administration to lead the charge.</description>
<pubDate>Thu, 12 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/531/obama-orders-cybersecurity-review/</guid>
</item>
<item>
<title>Hackers hit the road</title>
<link>http://www.infosecurity-us.com/view/529/hackers-hit-the-road/</link>
<description>In a fresh case of social engineering, ever-resourceful hackers in the US have found a new way to direct unsuspecting users into downloading a virus, through fake parking tickets. </description>
<pubDate>Tue, 10 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/529/hackers-hit-the-road/</guid>
</item>
<item>
<title>More details emerge on Kaspersky hack</title>
<link>http://www.infosecurity-us.com/view/530/more-details-emerge-on-kaspersky-hack/</link>
<description>As more details of the Kaspersky web site hack came to light yesterday, the same hacking forum posted details of a similar SQL injection attack, this time on a Portugese reseller for anti-malware firm BitDefender.</description>
<pubDate>Tue, 10 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/530/more-details-emerge-on-kaspersky-hack/</guid>
</item>
<item>
<title>Mac Trojans Proliferate</title>
<link>http://www.infosecurity-us.com/view/521/mac-trojans-proliferate/</link>
<description>Malware writers must be celebrating the 25th anniversary of the Mac. Intego, which produces antivirus software for the OS X. platform, noticed two Trojan programs circulating in the past week on peer-to-peer sites, buried within pirated copies of high-value Mac programs.</description>
<pubDate>Wed, 04 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/521/mac-trojans-proliferate/</guid>
</item>
<item>
<title>Data Breach Costs Rising</title>
<link>http://www.infosecurity-us.com/view/522/data-breach-costs-rising/</link>
<description>The average cost of data breaches are rising, according to a report from the Ponemon Institute, which says that lost business is the biggest expense for companies that have their data pilfered.</description>
<pubDate>Wed, 04 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/522/data-breach-costs-rising/</guid>
</item>
<item>
<title>$9m lifted in RBS Worldpay ATM heist</title>
<link>http://www.infosecurity-us.com/view/524/9m-lifted-in-rbs-worldpay-atm-heist/</link>
<description>The FBI is investigating a $9m large-scale ATM fraud using cards cloned from US card processor RBS Worldpay.</description>
<pubDate>Wed, 04 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/524/9m-lifted-in-rbs-worldpay-atm-heist/</guid>
</item>
<item>
<title>Kaspersky site hacked over weekend</title>
<link>http://www.infosecurity-us.com/view/525/kaspersky-site-hacked-over-weekend/</link>
<description>Anti-malware vendor Kaspersky's site was hacked over the weekend, using an SQL injection attack. While admitting that the site was vulnerable, Kaspersky is denying that the vulnerabiity was critical. The hacker nevertheless listed what he said was the full set of tables from the firm's MySQL database.</description>
<pubDate>Wed, 04 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/525/kaspersky-site-hacked-over-weekend/</guid>
</item>
<item>
<title>Google falls victim to human error</title>
<link>http://www.infosecurity-us.com/view/520/google-falls-victim-to-human-error/</link>
<description>On Saturday, Google users were warned that all their search results were potentially harmful, due to a widespread result of human error.</description>
<pubDate>Tue, 03 Feb 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/520/google-falls-victim-to-human-error/</guid>
</item>
<item>
<title>Hackers run up $207 000 phone bill for Canadian law firm</title>
<link>http://www.infosecurity-us.com/view/517/hackers-run-up-207-000-phone-bill-for-canadian-law-firm/</link>
<description>If you've had a high company phone bill recently, spare a thought for Martin &amp; Hillyer, a law firm in Burlington, Ontario.</description>
<pubDate>Thu, 29 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/517/hackers-run-up-207-000-phone-bill-for-canadian-law-firm/</guid>
</item>
<item>
<title>Kyrgyzstan Goes Offline - Russia Blamed</title>
<link>http://www.infosecurity-us.com/view/518/kyrgyzstan-goes-offline-russia-blamed/</link>
<description>The former Soviet state of Kyrgyzstan has been under cyber attack since January 18, it was revealed yesterday - and security experts believe that the Russian Government is indirectly responsible.</description>
<pubDate>Thu, 29 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/518/kyrgyzstan-goes-offline-russia-blamed/</guid>
</item>
<item>
<title>Monster.com hit by new breach</title>
<link>http://www.infosecurity-us.com/view/519/monstercom-hit-by-new-breach/</link>
<description>Online recruitment website monster.com has suffered from another major data breach.</description>
<pubDate>Thu, 29 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/519/monstercom-hit-by-new-breach/</guid>
</item>
<item>
<title>Cyber criminals to Cash in on Credit Crunch</title>
<link>http://www.infosecurity-us.com/view/512/cyber-criminals-to-cash-in-on-credit-crunch/</link>
<description>Cyber-criminals are exploiting the economic downturn to scam users, according to the 2009 threat report from security firm McAfee. </description>
<pubDate>Mon, 26 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/512/cyber-criminals-to-cash-in-on-credit-crunch/</guid>
</item>
<item>
<title>Heartland Discovers Card Heist</title>
<link>http://www.infosecurity-us.com/view/513/heartland-discovers-card-heist/</link>
<description>Payment processing company Heartland Payment Systems was red-faced last week after the disclosure of a data breach that took place in 2008. </description>
<pubDate>Mon, 26 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/513/heartland-discovers-card-heist/</guid>
</item>
<item>
<title>Warrantless Wiretapping A-OK, says US Court</title>
<link>http://www.infosecurity-us.com/view/515/warrantless-wiretapping-aok-says-us-court/</link>
<description>The FISA Court of Review (FISCR) has released an opinion concerning warrantless wiretapping by the US government. </description>
<pubDate>Mon, 26 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/515/warrantless-wiretapping-aok-says-us-court/</guid>
</item>
<item>
<title>Downadup Gathers Steam Amid Vendor Confusion</title>
<link>http://www.infosecurity-us.com/view/516/downadup-gathers-steam-amid-vendor-confusion/</link>
<description>As the Downadup worm continued its inexorable spread across the Internet last week, US-CERT issued an advisory claiming that Microsoft instructions for stopping one of its infection techniques were inadequate.</description>
<pubDate>Mon, 26 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/516/downadup-gathers-steam-amid-vendor-confusion/</guid>
</item>
<item>
<title>Update: McKinnon Wins Permission for Judicial Review</title>
<link>http://www.infosecurity-us.com/view/511/update-mckinnon-wins-permission-for-judicial-review/</link>
<description>'NASA hacker' Gary McKinnon has won permission from the High Court to apply for a judicial review against his extradition to the United States.</description>
<pubDate>Fri, 23 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/511/update-mckinnon-wins-permission-for-judicial-review/</guid>
</item>
<item>
<title>Update: Lifeline for McKinnon</title>
<link>http://www.infosecurity-us.com/view/510/update-lifeline-for-mckinnon/</link>
<description>According to his lawyer, Karen Todner, Gary McKinnon, who may be facing extradition after confessing to hacking into US military computers, was told yesterday that the UK High Court would delay his hearing until the director for public prosecutions had considered the case following McKinnon's diagnosis with Asperger's syndrome; a procedure which is expected to take four weeks.</description>
<pubDate>Wed, 21 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/510/update-lifeline-for-mckinnon/</guid>
</item>
<item>
<title>Extradition Looms as the ‘Fires of Hell’ Burn for Gary McKinnon</title>
<link>http://www.infosecurity-us.com/view/502/extradition-looms-as-the-fires-of-hell-burn-for-gary-mckinnon/</link>
<description>At the time of writing, the NASA hacker Gary McKinnon, who reportedly perpetrated the biggest military hack on record, was awaiting a decision from the Crown Prosecution Service on whether a recent signed confession, along with his diagnosis with Asperger’s syndrome, would help him to avoid extradition to the US and a potential 70 year prison sentence.</description>
<pubDate>Fri, 16 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/502/extradition-looms-as-the-fires-of-hell-burn-for-gary-mckinnon/</guid>
</item>
<item>
<title>One in Four Stalking Victims Targeted Online</title>
<link>http://www.infosecurity-us.com/view/503/one-in-four-stalking-victims-targeted-online/</link>
<description>Approximately one quarter of stalking or harassment cases in the US include an element of cyberstalking, according to a report from the Bureau of Justice statistics this week.</description>
<pubDate>Fri, 16 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/503/one-in-four-stalking-victims-targeted-online/</guid>
</item>
<item>
<title>Privacy Groups Sue FBI for Activist Raid</title>
<link>http://www.infosecurity-us.com/view/504/privacy-groups-sue-fbi-for-activist-raid/</link>
<description>The Electronic Frontier Foundation and the American Civil Liberties Union of Northern California are suing the FBI over computer searches conducted at two activist organizations' offices.</description>
<pubDate>Fri, 16 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/504/privacy-groups-sue-fbi-for-activist-raid/</guid>
</item>
<item>
<title>Safari File Access Bug Discovered</title>
<link>http://www.infosecurity-us.com/view/506/safari-file-access-bug-discovered/</link>
<description>Security researcher Brian Mastenbrook claims to have discovered a flaw in the Safari web browser that makes it possible for a malicious website to read files on a user's hard drive without their permission. Users of the browser on both the Windows and Mac OS X operating systems are affected. The workaround, posted on his blog, suggests that the problem lies with the browser's RSS capabilities, although he adds that users of OS X 10.5 (Leopard) are affected by the problem whether or not they use the RSS feeds.</description>
<pubDate>Fri, 16 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/506/safari-file-access-bug-discovered/</guid>
</item>
<item>
<title>New Botnets on the Prowl</title>
<link>http://www.infosecurity-us.com/view/507/new-botnets-on-the-prowl/</link>
<description>Two new botnets have emerged in the past few weeks, and at least one shows signs of being an upgrade to a previous botnet that wreaked havoc in the wild.</description>
<pubDate>Fri, 16 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/507/new-botnets-on-the-prowl/</guid>
</item>
<item>
<title>Organizations Counsel New President on Privacy Issues</title>
<link>http://www.infosecurity-us.com/view/508/organizations-counsel-new-president-on-privacy-issues/</link>
<description>President Obama has yet another set of technological recommendations to mull over following his inauguration today. The National Institute of Standards and Technology (NIST) published a draft set of recommendations for protecting personal information, while the Future of Privacy Forum (FPF) provided its own list of requirements for protecting consumer privacy.</description>
<pubDate>Fri, 16 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/508/organizations-counsel-new-president-on-privacy-issues/</guid>
</item>
<item>
<title>Downadup Worm goes Nuclear</title>
<link>http://www.infosecurity-us.com/view/509/downadup-worm-goes-nuclear/</link>
<description>A network worm that began to spread late last year has turned into a epidemic. The Downadup worm, which we reported on last week, has infected around 3.5m PCs, according to F-Secure.</description>
<pubDate>Fri, 16 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/509/downadup-worm-goes-nuclear/</guid>
</item>
<item>
<title>Downadup Worm Continues to Spread</title>
<link>http://www.infosecurity-us.com/view/496/downadup-worm-continues-to-spread/</link>
<description>More evidence has appeared of the spread of a network work based on the RPC vulnerability that was found in Microsoft Windows in October. The network worm Downadup has failed to gain much traction on the open internet, according to anti-virus firm F-Secure, but is getting into corporate networks on a consistent basis.</description>
<pubDate>Mon, 12 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/496/downadup-worm-continues-to-spread/</guid>
</item>
<item>
<title>DoJ memo gaffe reveals informant IDs</title>
<link>http://www.infosecurity-us.com/view/497/doj-memo-gaffe-reveals-informant-ids/</link>
<description>The office of an attorney working at the US Department of Justice made the biggest email mistake of his life last week, sending out information revealing the names of 25 anonymous witnesses in a financial fraud investigation.</description>
<pubDate>Mon, 12 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/497/doj-memo-gaffe-reveals-informant-ids/</guid>
</item>
<item>
<title>New Mac Tracking, iPhone Smartcard Debut at MacWorld</title>
<link>http://www.infosecurity-us.com/view/498/new-mac-tracking-iphone-smartcard-debut-at-macworld/</link>
<description>Apple's own announcements at the MacWorld show last week may have been relatively underwhelming, but several companies rolled out new security technologies at the event. A stolen computer tracker accompanied a two-factor authentication system for the iPhone.</description>
<pubDate>Mon, 12 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/498/new-mac-tracking-iphone-smartcard-debut-at-macworld/</guid>
</item>
<item>
<title>Hamas, Israel Conflict goes Cyber</title>
<link>http://www.infosecurity-us.com/view/500/hamas-israel-conflict-goes-cyber/</link>
<description>The ongoing battle between Israel and Hamas in the Gaza strip is creating a widening online cyber-conflict, according to reports last week. US Government web sites are the latest among hundreds that have reportedly been defaced by activists protesting the war.</description>
<pubDate>Mon, 12 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/500/hamas-israel-conflict-goes-cyber/</guid>
</item>
<item>
<title>McKinnon confesses to NASA hacks</title>
<link>http://www.infosecurity-us.com/view/501/mckinnon-confesses-to-nasa-hacks/</link>
<description>Gary McKinnon, the notorious ‘NASA hacker’ has signed a confession relating to a charge under the Misuse of Computers Act in an attempt to remain in the UK. </description>
<pubDate>Mon, 12 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/501/mckinnon-confesses-to-nasa-hacks/</guid>
</item>
<item>
<title>Proof of Concept Attack Further Discredits MD5 </title>
<link>http://www.infosecurity-us.com/view/494/proof-of-concept-attack-further-discredits-md5-/</link>
<description>Researchers put the final nail in the coffin of the MD5 encryption algorithm this week after using 200 PS3 consoles to fake a real-world SSL certificate.</description>
<pubDate>Wed, 07 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/494/proof-of-concept-attack-further-discredits-md5-/</guid>
</item>
<item>
<title>Obama's Twitter Account Hacked </title>
<link>http://www.infosecurity-us.com/view/495/obamas-twitter-account-hacked-/</link>
<description>President-elect Obama was among 33 celebrities whose Twitter accounts were hacked this week. Attackers managed to compromise the accounts on the microblogging service by hacking into the company's support tools.</description>
<pubDate>Wed, 07 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/495/obamas-twitter-account-hacked-/</guid>
</item>
<item>
<title>Microsoft patches critical Internet Explorer flaw</title>
<link>http://www.infosecurity-us.com/view/490/microsoft-patches-critical-internet-explorer-flaw/</link>
<description>Microsoft has posted an emergency security patch for Internet Explorer after a critical zero-day flaw was discovered in the browser. Users have been advised to download the patch via Windows Automated Updated. </description>
<pubDate>Mon, 05 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/490/microsoft-patches-critical-internet-explorer-flaw/</guid>
</item>
<item>
<title>US and Europe agree data protection principles </title>
<link>http://www.infosecurity-us.com/view/491/us-and-europe-agree-data-protection-principles-/</link>
<description>The US and Europe have agreed on a set of high-level principles designed to protect personal data gathered during law enforcement procedures.</description>
<pubDate>Mon, 05 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/491/us-and-europe-agree-data-protection-principles-/</guid>
</item>
<item>
<title>'Drop zones' hold treasure trove of stolen goods</title>
<link>http://www.infosecurity-us.com/view/492/drop-zones-hold-treasure-trove-of-stolen-goods/</link>
<description>Millions of dollars-worth of stolen financial information harvested from nearly 200,000 computers is likely to be just the tip of the iceberg, according to a report from researchers at the University of Mannheim, Germany. The information was detected by the security team as part of an automated data analysis project designed to determine the size of the underground economy.</description>
<pubDate>Mon, 05 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/492/drop-zones-hold-treasure-trove-of-stolen-goods/</guid>
</item>
<item>
<title>iPhone spyware surfaces </title>
<link>http://www.infosecurity-us.com/view/493/iphone-spyware-surfaces-/</link>
<description>Retina-X Studios has released the first software designed to secretly spy on iPhone users. The iPhone version of the Mobile Spy software can log phone activity including calls and SMS mesages in stealth mode, without showing up in the device's process list. </description>
<pubDate>Mon, 05 Jan 2009 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/493/iphone-spyware-surfaces-/</guid>
</item>
<item>
<title>FBI Warns of 'Vishing' Attacks using VoIP Software </title>
<link>http://www.infosecurity-us.com/view/790/fbi-warns-of-vishing-attacks-using-voip-software-/</link>
<description>The FBI has identified a new technique used to conduct &quot;vishing&quot; attacks, where hackers exploit a known security vulnerability in Asterisk phone software. </description>
<pubDate>Fri, 12 Dec 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/790/fbi-warns-of-vishing-attacks-using-voip-software-/</guid>
</item>
<item>
<title>FTC Pursues Alleged Scareware Firms </title>
<link>http://www.infosecurity-us.com/view/794/ftc-pursues-alleged-scareware-firms-/</link>
<description>The Federal Trade Commission has filed a complaint against two companies that it says operate 'scareware' scams that have scammed users into buying their software. </description>
<pubDate>Fri, 12 Dec 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/794/ftc-pursues-alleged-scareware-firms-/</guid>
</item>
<item>
<title>Network Worms are Back</title>
<link>http://www.infosecurity-us.com/view/775/network-worms-are-back/</link>
<description>If you thought the age of mass infections via network worm was over, think again. A worm exploiting a recently-announced Windows flaw has infected at least half a million machines in just a couple of weeks, according to experts.</description>
<pubDate>Fri, 05 Dec 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/775/network-worms-are-back/</guid>
</item>
<item>
<title>WPA Cracked</title>
<link>http://www.infosecurity-us.com/view/783/wpa-cracked/</link>
<description>A newly-discovered vulnerability in a common wireless network encryption standard is a timely warning to business to upgrade to the latest encryption version, say security experts.</description>
<pubDate>Fri, 05 Dec 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/783/wpa-cracked/</guid>
</item>
<item>
<title>McAfee Calls for More Legal Measures on Cybercrime</title>
<link>http://www.infosecurity-us.com/view/789/mcafee-calls-for-more-legal-measures-on-cybercrime/</link>
<description>ISPs, banks and software vendors must be legally persuaded to take a more prominent role in fighting cybercrime, warns a report from McAfee released Tuesday 9 December. The firm's Virtual Criminology Report calls for more law enforcement training and more liability for software vendors, along with legal incentives for ISPs as the 'front line' for anti-cybercrime measures.</description>
<pubDate>Fri, 05 Dec 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/789/mcafee-calls-for-more-legal-measures-on-cybercrime/</guid>
</item>
<item>
<title>More Research Needed to Understand hacker Techniques, say Experts</title>
<link>http://www.infosecurity-us.com/view/785/more-research-needed-to-understand-hacker-techniques-say-experts/</link>
<description>IT security defences are unable to cope with e-crime operations that are now at the heart of a professional and well organised underground economy.</description>
<pubDate>Fri, 28 Nov 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/785/more-research-needed-to-understand-hacker-techniques-say-experts/</guid>
</item>
<item>
<title>Congress concerns over China cyberwarefare program</title>
<link>http://www.infosecurity-us.com/view/786/congress-concerns-over-china-cyberwarefare-program/</link>
<description>A Congressional Panel of six Democrats and six Republicans has concluded that China has developed a highly sophisticated cyberwarfare program and is ramping up its capacity to penetrate US computer networks.</description>
<pubDate>Mon, 24 Nov 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/786/congress-concerns-over-china-cyberwarefare-program/</guid>
</item>
<item>
<title>F-Secure Adds Remote Locking and Wiping Technology To Mobile Phones</title>
<link>http://www.infosecurity-us.com/view/788/fsecure-adds-remote-locking-and-wiping-technology-to-mobile-phones/</link>
<description>F-Secure has added data protection technology to its mobile security software system to protect information held on stolen smart phones.</description>
<pubDate>Mon, 24 Nov 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/788/fsecure-adds-remote-locking-and-wiping-technology-to-mobile-phones/</guid>
</item>
<item>
<title>ICANN cans Estonian registrar's credentials</title>
<link>http://www.infosecurity-us.com/view/802/icann-cans-estonian-registrars-credentials/</link>
<description>For a while it looked like the not-for-profit Internet registrar of registrars might waver in its plans to revoke the credentials of EstDomains, a domain name registrar with a reported reputation for dealing with spam generators and similar internet companies.</description>
<pubDate>Fri, 14 Nov 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/802/icann-cans-estonian-registrars-credentials/</guid>
</item>
<item>
<title>Spammers Launch Presidential Campaign</title>
<link>http://www.infosecurity-us.com/view/796/spammers-launch-presidential-campaign/</link>
<description>A malicious spam campaign is exploiting the excitement surrounding Barrack Obama’s success in the presidential elections.</description>
<pubDate>Thu, 06 Nov 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/796/spammers-launch-presidential-campaign/</guid>
</item>
<item>
<title>Quocirca Report Quantifies Outsourcing Risk for the First Time</title>
<link>http://www.infosecurity-us.com/view/780/quocirca-report-quantifies-outsourcing-risk-for-the-first-time/</link>
<description>Business and IT research firm Quocirca has released a report which, for the first time, quantifies the risk that companies face when they outsource the various elements of their IT functions.</description>
<pubDate>Wed, 05 Nov 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/780/quocirca-report-quantifies-outsourcing-risk-for-the-first-time/</guid>
</item>
<item>
<title>Microsoft predicts IT security threats will rise in H2 of 2008</title>
<link>http://www.infosecurity-us.com/view/801/microsoft-predicts-it-security-threats-will-rise-in-h2-of-2008/</link>
<description>Microsoft has released the findings of the fifth volume of its Security Intelligence Report, which claims to provides an in-depth view of the threat landscape based on data derived from hundreds of millions of computers around the world for the first half of 2008.</description>
<pubDate>Wed, 05 Nov 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/801/microsoft-predicts-it-security-threats-will-rise-in-h2-of-2008/</guid>
</item>
<item>
<title>Russian Fake Antivirus Software Firm Rakes in $5 Million</title>
<link>http://www.infosecurity-us.com/view/798/russian-fake-antivirus-software-firm-rakes-in-5-million/</link>
<description>A Russian firm at the heart of fake anti-virus software, which allegedly generates false virus and malware alerts when the package is loaded, has boasted of making $5 million a year.</description>
<pubDate>Mon, 03 Nov 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/798/russian-fake-antivirus-software-firm-rakes-in-5-million/</guid>
</item>
<item>
<title>Airline E-ticket Scam Infects Tens of Thousands of Users</title>
<link>http://www.infosecurity-us.com/view/776/airline-eticket-scam-infects-tens-of-thousands-of-users/</link>
<description>As the holiday season approaches, millions of Americans are making their travel preparations, so it's hardly surprising that a large number have `clicked through' on an email that purports to be an airline e-ticket and boarding pass.</description>
<pubDate>Fri, 24 Oct 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/776/airline-eticket-scam-infects-tens-of-thousands-of-users/</guid>
</item>
<item>
<title>Airline E-ticket Scam Infects Tens of Thousands of Users</title>
<link>http://www.infosecurity-us.com/view/779/airline-eticket-scam-infects-tens-of-thousands-of-users/</link>
<description>As the holiday season approaches, millions of Americans are making their travel preparations, so it's hardly surprising that a large number have `clicked through' on an email that purports to be an airline e-ticket and boarding pass.</description>
<pubDate>Fri, 24 Oct 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/779/airline-eticket-scam-infects-tens-of-thousands-of-users/</guid>
</item>
<item>
<title>Texas National Guard Web Site Hacked; Used To Launch Malware Attacks</title>
<link>http://www.infosecurity-us.com/view/797/texas-national-guard-web-site-hacked-used-to-launch-malware-attacks/</link>
<description>Officials with the Texas National Guard took their Web site offline overnight on Thursday, after it became clear the site had been hacked and was being used to offer fake (and possibly infected) IT security software, as well as planting rootkits on unsuspecting visitor's PCs.</description>
<pubDate>Mon, 22 Sep 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/797/texas-national-guard-web-site-hacked-used-to-launch-malware-attacks/</guid>
</item>
<item>
<title>German Firm Develops World's First &quot;Trojan-proof&quot; Password System</title>
<link>http://www.infosecurity-us.com/view/1228/german-firm-develops-worlds-first-trojanproof-password-system/</link>
<description>Global IP Communications claims to have developed the world's first Trojan-proof password dialog system for Windows PCs.</description>
<pubDate>Wed, 17 Sep 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1228/german-firm-develops-worlds-first-trojanproof-password-system/</guid>
</item>
<item>
<title>Countrywide Home Loans Loses Data on Two Million</title>
<link>http://www.infosecurity-us.com/view/1233/countrywide-home-loans-loses-data-on-two-million/</link>
<description>A rogue employee has been blamed for one of the largest data thefts in the United States in recent times, affecting as many as two million- plus customers of Countrywide home loans.</description>
<pubDate>Fri, 12 Sep 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1233/countrywide-home-loans-loses-data-on-two-million/</guid>
</item>
<item>
<title>Breakthrough security Firefox plug-in stops man-in-the-middle attacks</title>
<link>http://www.infosecurity-us.com/view/1223/breakthrough-security-firefox-plugin-stops-maninthemiddle-attacks/</link>
<description>Researchers at Carnegie Mellon University have released a security plug-in for Firefox 3 that can detect – and block – access to a Web site that has problems with its security certificate.</description>
<pubDate>Fri, 05 Sep 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1223/breakthrough-security-firefox-plugin-stops-maninthemiddle-attacks/</guid>
</item>
<item>
<title>Satan is on my Friends List</title>
<link>http://www.infosecurity-us.com/view/793/satan-is-on-my-friends-list/</link>
<description>ID theft via social networking sites is all media hype according to Shawn Moyer and Nathan Hamiel. In their session on social networking at Black Hat, Las Vegas, the duo insisted that ID theft via social networking sites is not a problem. </description>
<pubDate>Mon, 18 Aug 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/793/satan-is-on-my-friends-list/</guid>
</item>
<item>
<title>Cyber-attack in Georgia</title>
<link>http://www.infosecurity-us.com/view/782/cyberattack-in-georgia/</link>
<description>While war was breaking out over South Ossetia on 8 August, Georgia’s Government website fell victim to cyber-attack.</description>
<pubDate>Fri, 15 Aug 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/782/cyberattack-in-georgia/</guid>
</item>
<item>
<title>Microsoft to Give Partners Early Info on Security</title>
<link>http://www.infosecurity-us.com/view/787/microsoft-to-give-partners-early-info-on-security/</link>
<description>Microsoft has introduced new security-related programs that share early information with partners to help them protect customers quickly and effectively. </description>
<pubDate>Fri, 08 Aug 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/787/microsoft-to-give-partners-early-info-on-security/</guid>
</item>
<item>
<title>Ex-Countrywide Employee Arrested over Massive Info Theft</title>
<link>http://www.infosecurity-us.com/view/1239/excountrywide-employee-arrested-over-massive-info-theft/</link>
<description>The FBI has arrested a former Countrywide Financial Corp. employee and another man in an alleged scheme to steal and sell the sensitive personal information, including Social Security numbers, of as many as two million mortgage applicants, the Los Angeles Times has reported.</description>
<pubDate>Mon, 04 Aug 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1239/excountrywide-employee-arrested-over-massive-info-theft/</guid>
</item>
<item>
<title>“Spam Kings”: One Jailed; One Escapes and Kills Family</title>
<link>http://www.infosecurity-us.com/view/1238/spam-kings-one-jailed-one-escapes-and-kills-family/</link>
<description>This week the media spotlight was turned towards “spam kings.” One was sent to jail while another escaped from his minimum security prison before killing his family and himself.</description>
<pubDate>Fri, 25 Jul 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1238/spam-kings-one-jailed-one-escapes-and-kills-family/</guid>
</item>
<item>
<title>Angry Employee Disables San Francisco Network</title>
<link>http://www.infosecurity-us.com/view/792/angry-employee-disables-san-francisco-network/</link>
<description>A disgruntled San Francisco computer engineer is still in jail five days after blocking access to the city’s system to everyone except himself. On Thursday he pleaded not guilty today to four counts of computer tampering and remains behind bars on $5 million bail.</description>
<pubDate>Fri, 18 Jul 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/792/angry-employee-disables-san-francisco-network/</guid>
</item>
<item>
<title>Computerworld Casts Doubt on Lost Laptops Study</title>
<link>http://www.infosecurity-us.com/view/1242/computerworld-casts-doubt-on-lost-laptops-study/</link>
<description>A study regarding lost and stolen laptops at US airports, which must have sent shivers down the spines of computer security executives, has been put into doubt by news magazine, Computerworld.</description>
<pubDate>Fri, 11 Jul 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1242/computerworld-casts-doubt-on-lost-laptops-study/</guid>
</item>
<item>
<title>Big Five IT Vendors Announce Focus on Security</title>
<link>http://www.infosecurity-us.com/view/1237/big-five-it-vendors-announce-focus-on-security/</link>
<description>Five of the world’s leading IT vendors have announced the creation of the Industry Consortium for Advancement of Security on the Internet (ICASI).</description>
<pubDate>Fri, 04 Jul 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1237/big-five-it-vendors-announce-focus-on-security/</guid>
</item>
<item>
<title>New Efforts to Battle Botnet-Driven Spam</title>
<link>http://www.infosecurity-us.com/view/1241/new-efforts-to-battle-botnetdriven-spam/</link>
<description>Network operators and ISPs from around the world are working together to address issues that will help block botnet-induced spam.</description>
<pubDate>Fri, 27 Jun 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1241/new-efforts-to-battle-botnetdriven-spam/</guid>
</item>
<item>
<title>Plenty to worry growing infosec profession</title>
<link>http://www.infosecurity-us.com/view/784/plenty-to-worry-growing-infosec-profession/</link>
<description>An in-depth look at the results of the 2008 version of the annual ISC2 Global Information Security Workforce Study reveals the growth both in size and influence of the profession. It reveals also what is worrying security professionals … and the answer to that is plenty.</description>
<pubDate>Tue, 24 Jun 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/784/plenty-to-worry-growing-infosec-profession/</guid>
</item>
<item>
<title>Spear-phishing Attacks Attain Record Levels</title>
<link>http://www.infosecurity-us.com/view/1243/spearphishing-attacks-attain-record-levels/</link>
<description>Targeted social engineering attacks, also referred to as spear phishing, are on the rise.</description>
<pubDate>Fri, 13 Jun 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1243/spearphishing-attacks-attain-record-levels/</guid>
</item>
<item>
<title>Credit Agency Gives Free Monitoring to Millions</title>
<link>http://www.infosecurity-us.com/view/1235/credit-agency-gives-free-monitoring-to-millions/</link>
<description>As part of a preliminary settlement of a $10 billion class action suit, millions of US consumers will soon be eligible for free credit monitoring.</description>
<pubDate>Fri, 06 Jun 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1235/credit-agency-gives-free-monitoring-to-millions/</guid>
</item>
<item>
<title>US Government Receives Grade C in IT Security</title>
<link>http://www.infosecurity-us.com/view/1226/us-government-receives-grade-c-in-it-security/</link>
<description>The US federal government improved slightly in its ability to secure its computer systems and networks, from a C- to C.</description>
<pubDate>Fri, 30 May 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1226/us-government-receives-grade-c-in-it-security/</guid>
</item>
<item>
<title>Insider Threats Keeping IT Directors Awake At Night</title>
<link>http://www.infosecurity-us.com/view/1230/insider-threats-keeping-it-directors-awake-at-night/</link>
<description>The leaking of sensitive information through the email system was ranked far ahead of the threat from external hackers, according to a new study.c</description>
<pubDate>Fri, 30 May 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1230/insider-threats-keeping-it-directors-awake-at-night/</guid>
</item>
<item>
<title>Mobile Devices Raise Security Concerns</title>
<link>http://www.infosecurity-us.com/view/1234/mobile-devices-raise-security-concerns/</link>
<description>As mobile devices like the iPhone and BlackBerry become increasingly popular among end users, enterprises are worried about ensuring the security of their data.</description>
<pubDate>Fri, 30 May 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1234/mobile-devices-raise-security-concerns/</guid>
</item>
<item>
<title>Computer Crime Needs Management and Education</title>
<link>http://www.infosecurity-us.com/view/1236/computer-crime-needs-management-and-education/</link>
<description>A US university researcher has devised an antifraud strategy for business, indicating that reports of computer fraud only represent a tip of a potentially large iceberg.</description>
<pubDate>Fri, 30 May 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1236/computer-crime-needs-management-and-education/</guid>
</item>
<item>
<title>Largest US Power Company “Vulnerable To Hacking”</title>
<link>http://www.infosecurity-us.com/view/1231/largest-us-power-company-vulnerable-to-hacking/</link>
<description>The US Government Accountability Office (GAO) warned the nation’s largest public power company is vulnerable to computer hackers and terrorists ready to disrupt America’s power grid.</description>
<pubDate>Thu, 29 May 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1231/largest-us-power-company-vulnerable-to-hacking/</guid>
</item>
<item>
<title>Government meets with cynicism after revealing plans for ‘giant database’</title>
<link>http://www.infosecurity-us.com/view/220/government-meets-with-cynicism-after-revealing-plans-for-giant-database/</link>
<description>The government faces sceptisicm after revealing plans to implement a huge database storing citizens’ phone and web records.</description>
<pubDate>Fri, 23 May 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/220/government-meets-with-cynicism-after-revealing-plans-for-giant-database/</guid>
</item>
<item>
<title>Social Network For Hackers Launched</title>
<link>http://www.infosecurity-us.com/view/1186/social-network-for-hackers-launched/</link>
<description>A computer security consultancy has set up a social network for hackers, called House of Hackers.</description>
<pubDate>Mon, 19 May 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1186/social-network-for-hackers-launched/</guid>
</item>
<item>
<title>FBI Probes Counterfeit Network Hardware</title>
<link>http://www.infosecurity-us.com/view/1216/fbi-probes-counterfeit-network-hardware/</link>
<description>The FBI have revealed that the US government has purchased counterfeit networking equipment that could jeopardize the security of its military and other government systems.</description>
<pubDate>Mon, 19 May 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1216/fbi-probes-counterfeit-network-hardware/</guid>
</item>
<item>
<title>Hackers Indicted For Stealing More Than 5 000 Account Numbers at Dave &amp; Buster’s</title>
<link>http://www.infosecurity-us.com/view/1215/hackers-indicted-for-stealing-more-than-5-000-account-numbers-at-dave-busters/</link>
<description>A US federal grand jury has indicted three alleged hackers charged with stealing credit and debit card numbers from a national restaurant chain, Dave &amp; Buster’s.</description>
<pubDate>Fri, 16 May 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1215/hackers-indicted-for-stealing-more-than-5-000-account-numbers-at-dave-busters/</guid>
</item>
<item>
<title>Senators want answers on President Bush’s secret cyber security initiative</title>
<link>http://www.infosecurity-us.com/view/1201/senators-want-answers-on-president-bushs-secret-cyber-security-initiative/</link>
<description>Two influential US senators are demanding more information about the so-far, ultra-secret Comprehensive National Cybersecurity Initiative (CNCI), which is being put in place to protect the nation’s infrastructure against cyber terrorists and criminals.</description>
<pubDate>Fri, 09 May 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1201/senators-want-answers-on-president-bushs-secret-cyber-security-initiative/</guid>
</item>
<item>
<title>Facebook applications exposed as security risk</title>
<link>http://www.infosecurity-us.com/view/1218/facebook-applications-exposed-as-security-risk/</link>
<description>Speculation on the security of social networking has increased amid reports that applications on Facebook are capable of collecting personal information.</description>
<pubDate>Thu, 01 May 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1218/facebook-applications-exposed-as-security-risk/</guid>
</item>
<item>
<title>Show floor security software is “snake oil”</title>
<link>http://www.infosecurity-us.com/view/1192/show-floor-security-software-is-snake-oil/</link>
<description>BT’s security expert Bruce Schneier was scathing about lots of security software calling it “snake oil” in an interview this week.</description>
<pubDate>Thu, 24 Apr 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1192/show-floor-security-software-is-snake-oil/</guid>
</item>
<item>
<title>Jericho Forum unveils new security framework for online usage</title>
<link>http://www.infosecurity-us.com/view/1222/jericho-forum-unveils-new-security-framework-for-online-usage/</link>
<description>The Jericho Forum has unveiled a new security framework for interactive business Internet users.</description>
<pubDate>Wed, 23 Apr 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1222/jericho-forum-unveils-new-security-framework-for-online-usage/</guid>
</item>
<item>
<title>Customers “clamoring” for self-encrypting hard drives</title>
<link>http://www.infosecurity-us.com/view/1224/customers-clamoring-for-selfencrypting-hard-drives/</link>
<description>Seagate Technology has debuted a new breed of self-encrypting hard drives for mission-critical servers and storage arrays.</description>
<pubDate>Wed, 16 Apr 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1224/customers-clamoring-for-selfencrypting-hard-drives/</guid>
</item>
<item>
<title>Security Officer should have more strategic role</title>
<link>http://www.infosecurity-us.com/view/1227/security-officer-should-have-more-strategic-role/</link>
<description>When it comes to defining what a Chief Security Officer does in an enterprise think less of a corporate cop and more of a business enabler. That was the message at the RSA Conference from Dave Hansen, former CIO at CA and now a senior vice president and general manager of the company’s Security Management business.</description>
<pubDate>Wed, 16 Apr 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1227/security-officer-should-have-more-strategic-role/</guid>
</item>
<item>
<title>IT lobbying groups merge</title>
<link>http://www.infosecurity-us.com/view/1219/it-lobbying-groups-merge/</link>
<description>Building a powerhouse cyber security public advocacy group, two leading technology lobbying groups, the Information technology Association of America (ITAA) and the Cyber Security Industry Alliance (CSIA), announced their intent to merge.</description>
<pubDate>Mon, 14 Apr 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1219/it-lobbying-groups-merge/</guid>
</item>
<item>
<title>Microsoft joins MIT Kerberos Consortium</title>
<link>http://www.infosecurity-us.com/view/1225/microsoft-joins-mit-kerberos-consortium/</link>
<description>Microsoft has joined the MIT Kerberos Consortium as a founding sponsor, joining Sun Microsystems, Google and Apple on the consortium’s executive board. </description>
<pubDate>Fri, 04 Apr 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1225/microsoft-joins-mit-kerberos-consortium/</guid>
</item>
<item>
<title>US lawmakers upset at breach news delay</title>
<link>http://www.infosecurity-us.com/view/1188/us-lawmakers-upset-at-breach-news-delay/</link>
<description>US lawmakers are asking why a stolen laptop, which had medical test results for 2,500 patients in a National Institute of Health study, was not encrypted.</description>
<pubDate>Wed, 26 Mar 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1188/us-lawmakers-upset-at-breach-news-delay/</guid>
</item>
<item>
<title>Secure Computing delivers new generation of email security appliances </title>
<link>http://www.infosecurity-us.com/view/1208/secure-computing-delivers-new-generation-of-email-security-appliances-/</link>
<description>Secure Computing has announced a new version of its on-premise email security product, Secure Mail (formerly known as IronMail). This new version is capable of processing more than 7 million unique messages per day on a single appliance, resulting in a price performance improvement of up to 700 percent.</description>
<pubDate>Wed, 26 Mar 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1208/secure-computing-delivers-new-generation-of-email-security-appliances-/</guid>
</item>
<item>
<title>Tech entrepreneur takes on cybersecurity reins</title>
<link>http://www.infosecurity-us.com/view/1209/tech-entrepreneur-takes-on-cybersecurity-reins/</link>
<description>The Bush Administration has tapped Silicon Valley entrepreneur Rod Beckstrom as the first Director of the National Security Center (NCSC), which was created in January.</description>
<pubDate>Tue, 25 Mar 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1209/tech-entrepreneur-takes-on-cybersecurity-reins/</guid>
</item>
<item>
<title>Sun and NSA to beef up OpenSolaris security</title>
<link>http://www.infosecurity-us.com/view/1207/sun-and-nsa-to-beef-up-opensolaris-security/</link>
<description>The US National Security Agency (NSA) and Sun Microsystems have agreed to jointly work within the OpenSolaris community to develop new security mechanisms for the operating system.</description>
<pubDate>Thu, 20 Mar 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1207/sun-and-nsa-to-beef-up-opensolaris-security/</guid>
</item>
<item>
<title>Two US companies own up to breaches</title>
<link>http://www.infosecurity-us.com/view/1211/two-us-companies-own-up-to-breaches/</link>
<description>On a regular basis, companies are having to own up to data breaches. HealthNow New York and MTV Networks are just the latest two making security gaffes.</description>
<pubDate>Fri, 14 Mar 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1211/two-us-companies-own-up-to-breaches/</guid>
</item>
<item>
<title>Two US companies own up to breaches</title>
<link>http://www.infosecurity-us.com/view/1245/two-us-companies-own-up-to-breaches/</link>
<description>On a regular basis, companies are having to own up to data breaches. HealthNow New York and MTV Networks are just the latest two making security gaffes.</description>
<pubDate>Fri, 14 Mar 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1245/two-us-companies-own-up-to-breaches/</guid>
</item>
<item>
<title>Cyber security lacking at airports </title>
<link>http://www.infosecurity-us.com/view/1206/cyber-security-lacking-at-airports-/</link>
<description>Fourteen airports in the US, Canada and Asia, are using open or poorly secured wireless networks, according to a study by Gartner Mobile and wireless provider AirTight Networks.</description>
<pubDate>Fri, 07 Mar 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1206/cyber-security-lacking-at-airports-/</guid>
</item>
<item>
<title>Federal agencies need to bolster information security</title>
<link>http://www.infosecurity-us.com/view/1202/federal-agencies-need-to-bolster-information-security/</link>
<description>Despite some progress, many US federal agencies continue to experience significant information security control deficiencies, according to a new report.</description>
<pubDate>Fri, 29 Feb 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1202/federal-agencies-need-to-bolster-information-security/</guid>
</item>
<item>
<title>Malware protection before infection</title>
<link>http://www.infosecurity-us.com/view/1210/malware-protection-before-infection/</link>
<description>A US Department of Homeland Security-funded research program will help deliver Endeavor Security’s new method of targeting botnet and malware attacks before hosts are infected.</description>
<pubDate>Fri, 22 Feb 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1210/malware-protection-before-infection/</guid>
</item>
<item>
<title>Fewer victims of identity fraud suffer greater losses</title>
<link>http://www.infosecurity-us.com/view/1205/fewer-victims-of-identity-fraud-suffer-greater-losses/</link>
<description>Identity theft and fraud in the US fell by 12% in 2007 as it fraudsters apparently relied on offline channels for their attacks.</description>
<pubDate>Thu, 14 Feb 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1205/fewer-victims-of-identity-fraud-suffer-greater-losses/</guid>
</item>
<item>
<title>Getting real over Real ID</title>
<link>http://www.infosecurity-us.com/view/1204/getting-real-over-real-id/</link>
<description>With a key deadline rapidly approaching, will there be rapprochement between the Federal Government and a group of individual states over the implementation of the Real ID Act?</description>
<pubDate>Fri, 08 Feb 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1204/getting-real-over-real-id/</guid>
</item>
<item>
<title>ChoicePoint settles class action suit for $10m</title>
<link>http://www.infosecurity-us.com/view/1199/choicepoint-settles-class-action-suit-for-10m/</link>
<description>Data broker ChoicePoint has agreed to pay $10 million to settle a class-action lawsuit brought against it over the three-year old data breach which exposed 163 000 personal information records.</description>
<pubDate>Fri, 01 Feb 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1199/choicepoint-settles-class-action-suit-for-10m/</guid>
</item>
<item>
<title>CIA claims hackers attack global power grid</title>
<link>http://www.infosecurity-us.com/view/1194/cia-claims-hackers-attack-global-power-grid/</link>
<description>The US Central Intelligence Agency (CIA) says criminals hacked into the computer systems of utilities, cutting the power to several international cities.</description>
<pubDate>Fri, 25 Jan 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1194/cia-claims-hackers-attack-global-power-grid/</guid>
</item>
<item>
<title>Many Oracle enterprises ignore its patches, says study</title>
<link>http://www.infosecurity-us.com/view/1200/many-oracle-enterprises-ignore-its-patches-says-study/</link>
<description>Most database administrators do not apply the Critical Patch Updates (CPUs) that Oracle issues on a quarterly basis, a new study finds.</description>
<pubDate>Fri, 18 Jan 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1200/many-oracle-enterprises-ignore-its-patches-says-study/</guid>
</item>
<item>
<title>FAA Plays Down Boeing 787 Security Concerns </title>
<link>http://www.infosecurity-us.com/view/1196/faa-plays-down-boeing-787-security-concerns-/</link>
<description>A Federal Aviation Administration (FAA) document warns that Boeing’s new 787 passenger jet flight control systems may result in security vulnerabilities as it connects the passenger network with the flight-safety, control and navigation network.</description>
<pubDate>Thu, 10 Jan 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1196/faa-plays-down-boeing-787-security-concerns-/</guid>
</item>
<item>
<title>TV presenter “wrong” after bank account scam</title>
<link>http://www.infosecurity-us.com/view/1198/tv-presenter-wrong-after-bank-account-scam/</link>
<description>The star of the popular BBC America show Top Gear has had his bank account hacked after publicly revealing his details in a newspaper article.</description>
<pubDate>Tue, 08 Jan 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1198/tv-presenter-wrong-after-bank-account-scam/</guid>
</item>
<item>
<title>Better job prospects for infosecurity staff, says SANS</title>
<link>http://www.infosecurity-us.com/view/1214/better-job-prospects-for-infosecurity-staff-says-sans/</link>
<description>Infosecurity professionals will see improved job opportunities in 2008, according to the SANS Institute. The US-based organisation believes that as senior executives in government realise that their systems have already been compromised, and that they do not control those systems, they will react by creating new jobs. </description>
<pubDate>Wed, 02 Jan 2008 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1214/better-job-prospects-for-infosecurity-staff-says-sans/</guid>
</item>
<item>
<title>SANS: crooks turn fire on users and custom software</title>
<link>http://www.infosecurity-us.com/view/1213/sans-crooks-turn-fire-on-users-and-custom-software/</link>
<description>Cyber criminals have shifted their aim from flaws in commonly-used software to problems with custom-built applications, and are also targeting easily-misled users, according to the SANS Institute’s revised top 20 internet security risks.</description>
<pubDate>Fri, 07 Dec 2007 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1213/sans-crooks-turn-fire-on-users-and-custom-software/</guid>
</item>
<item>
<title>UK government loses data on 25m Britons</title>
<link>http://www.infosecurity-us.com/view/1212/uk-government-loses-data-on-25m-britons/</link>
<description>The UK government has lost personal data on every child in the country, as well as national insurance numbers and bank account details of parents and carers claiming child benefit, on two password-protected CDs sent through an internal mail service.</description>
<pubDate>Tue, 20 Nov 2007 00:00:00 GMT</pubDate>
<guid>http://www.infosecurity-us.com/view/1212/uk-government-loses-data-on-25m-britons/</guid>
</item>
</channel>
</rss>
