2007.11.09 Daily Security Reading

Solaris 10 Security Best Practices

Sun and the Center for Internet Security working together, in concert with representatives from academia, industry and government, have published security guidance for Solaris 10 11/06 and 8/07.

Russian Business Network - Down, But Not Out

A major Russian Internet service provider whose client list amounted to a laundry list of organized cyber crime operations appears to have closed shop. But security experts caution that there are signs that the highly profitable network may already be building a new home for itself elsewhere on the Web.

Most consumers clueless about online tracking

Average users largely unaware of extent to which online marketers and advertisers are tracking their movements.

Share and Enjoy:
  • Digg
  • Netscape
  • Technorati
  • del.icio.us
  • StumbleUpon
  • Reddit
  • Slashdot
  • BlinkList
  • Fark
  • NewsVine
  • Furl
  • Spurl
  • Facebook
  • Google
  • LinkedIn

2007.11.05 Daily Security Reading

When AntiVirus Products (and Internet Explorer) Fail you

Didier Stevens recently took a closer look at some Internet Explorer malware that he had uncovered and found that most antivirus products that it was tested against failed to identify the malware through one of the most basic and straight forward obfuscation techniques — the null-byte. With enough null-bytes between each character of code, it is possible to fool all antivirus products (though additional software will trap it), yet Internet Explorer was quite happy to render the code.

OSX.RSPlug.A Trojan Horse Changes Local DNS Settings to Redirect to Malicious DNS Servers

A malicious Trojan Horse has been found on several pornography web sites, claiming to install a video codec necessary to view free pornographic videos on Macs. A great deal of spam has been posted to many Mac forums, in an attempt to lead users to these sites.

One-Third of Employees Violate Company IT Policies

A national survey of U.S. white-collar workers commissioned by the nonprofit, independent organization ISACA (formerly the Information Systems Audit and Control Association) has found that more than one-third (35%) of employees have violated their company’s IT policies at least once and that nearly one-sixth (15%) of employees have used peer-to-peer file sharing at least once at their place of business, opening the door to security breaches and placing sensitive business and personal information at risk.


Employee Monitoring: Highlighting the Issues

While there is no doubt that employee monitoring is becoming standard practice, companies need to ensure that it complies with legal requirements and does not unduly affect the employment relationship. This feature outlines the law governing employee monitoring in various jurisdictions in Europe, the US and Asia-Pacific and provides some practical guidance on achieving compliance.

Share and Enjoy:
  • Digg
  • Netscape
  • Technorati
  • del.icio.us
  • StumbleUpon
  • Reddit
  • Slashdot
  • BlinkList
  • Fark
  • NewsVine
  • Furl
  • Spurl
  • Facebook
  • Google
  • LinkedIn

2007.10.29 Daily Security Reading

Identity thieves likely to be first-timers, strangers

An analysis of identity-theft cases closed by the U.S. Secret Service in the past six years has found that identity thieves typically do not have a criminal record and are generally not known by their victims.

DNS Recursion bandwidth amplification Denial of Service PoC

Facebook used against you!

Two pupils have been suspended from a private school after they were found to be members of a ‘dogging’ group featured in facebook.

Storm worm can befuddle NAC

Users will see that, for example, antivirus is turned on, but actually it isn’t scanning for viruses.

Share and Enjoy:
  • Digg
  • Netscape
  • Technorati
  • del.icio.us
  • StumbleUpon
  • Reddit
  • Slashdot
  • BlinkList
  • Fark
  • NewsVine
  • Furl
  • Spurl
  • Facebook
  • Google
  • LinkedIn

2007.10.22 Daily Security Reading

10 IT security companies to watch

Data-leak prevention, behavior-based malware detection among focus areas.

Research Shows Image-Based Threat on the Rise

New Purdue University research shows steganography, long considered a minor threat, may be on the rise.

Patent filed for revolutionary technique to quickly recover lost passwords

ElcomSoft has harnessed the combined power of a PC’s Central Processing Unit and its video card’s Graphics Processing Unit.

I Was a Hacker for the MPAA

In an exclusive interview with Wired News, gun-for-hire hacker Robert Anderson tells for the first time how the Motion Picture Association of America promised him money and power if he provided confidential information on TorrentSpy, a popular BitTorrent search site.

Share and Enjoy:
  • Digg
  • Netscape
  • Technorati
  • del.icio.us
  • StumbleUpon
  • Reddit
  • Slashdot
  • BlinkList
  • Fark
  • NewsVine
  • Furl
  • Spurl
  • Facebook
  • Google
  • LinkedIn

2007.10.15 Daily Security Reading

DNS Cache Poison (BIND 9)

A vulnerability in BIND 9 allows remote attackers to cause a cache poisoning attack against it.

Check Point Secure Platform Hack (pdf)

An uncensored real-time how I exploited a vulnerability in a kernel hardened EAL4+ certified firewall.

Analyzing the Effectiveness and Coverage of Web Application Security Scanners (pdf)

The study centered around testing the effectiveness of the top three web application scanners in the following 4 areas. Links crawled, Coverage of the applications tested using Fortify Tracer, Number of verified vulnerability findings and Number of false positives.

The Changing Storm

The latest Storm variants have a new twist. They now use a 40-byte key to encrypt their Overnet P2P traffic.

The Russian Business Network Responds

An individual claiming to represent the Russian Business Network has denied media reports the company provides Web hosting services to numerous cyber criminal operations.

How to Turn Your Browser Into a Weapon

Add these extensions to Firefox when you’re looking to do some hacking.

HD Moore takes iPhone exploits public

He says the device will still be vulnerable even after Apple patches it.

Share and Enjoy:
  • Digg
  • Netscape
  • Technorati
  • del.icio.us
  • StumbleUpon
  • Reddit
  • Slashdot
  • BlinkList
  • Fark
  • NewsVine
  • Furl
  • Spurl
  • Facebook
  • Google
  • LinkedIn