Click here

Network Security: Archive: August 2011 

Survey: APT Attacks Lead Enterprise Security Concerns

According to Bit9's third annual Endpoint Security Survey, 60 percent of IT executives say their main concern is being hit by advanced persistent threat attacks.

Symantec: Number and Frequency of Attacks Declining

But the sophistication of attacks is on the rise and companies are losing big money on data breaches.

Trend Micro Intros Deep Security 8

Version 8 adds a new agentless integrity monitoring capability to the platform.

Facebook Pays $40,000 for Security Flaws

The bug bounty program was first launched at the end of last month.

Xbox 360 Hacked Permanently

The hackers say the attack can't be blocked by future Microsoft software updates.

New Spam Campaign Targets Facebook Users

The e-mails feature links to malware sites.

Nokia Acknowledges Security Breach

The company warned users of its developer forum that their e-mail addresses and other data may have been accessed.

Fake FDIC E-mails Deliver Trojan

The e-mails contain a malicious attachment called FDIC_document.zip.

Operation Shady RAT Pointing the Way

Future hackers are no doubt taking notice of the lessons learned from the five year hack that Operation Shady RAT perpetrated on some of the most sophisticated security organizations on the planet.

Information Security Routinely Understaffed

Ninety percent of organizations have only one to five employees handling security.

Defending Against The 'Apache Killer' Exploit

An HTTP attack emerged this week against Apache Web servers; but just because there is an attack in the wild, doesn't mean you have to be defenseless.

Facebook Announces Privacy Enhancements

Members can now choose whether or not they want to be tagged in a photo.

The Pros and Cons of Opal Compliant Drives

Securing data-at-rest using hardware encrypted hard drives is becoming a popular option to keep information where it belongs.

ComScore Sued Over Alleged Privacy Violations

The lawsuit accuses comScore of secretly collecting Social Security numbers, credit numbers, passwords and other data.

Yale University Acknowledges Security Lapse

The names and Social Security numbers of 43,000 faculty, staff, students and alumni have been viewable on Google for the past 10 months.

Is IT Security Just an Illusion?

Nothing is in IT security is bullet-proof. But you can do much to mitigate cyber threats.

Password Roulette: Betting on Password Storage Apps

As the smartphone and tablet become our de facto end-points, app builders need to step up the security of their offerings.

Libyan Domain Name Registry Hacked

The nic.ly home page was recently defaced.

IT Pros Worry About Smart Grid Security

Seventy-seven percent of IT professionals say they're concerned about the security of smart meters.

Facebook Publishes Security Guide

The 14-page PDF offers a combination of well-known security recommendations and new advice.

Thwarting the Age Old Man in the Middle

Man in the middle attacks are morphing to keep pace with mobile, VoIP, browsers ... you name it and financial institutions are on alert.

Incident Response Lacking in the Enterprise

Everyone agrees having an incidence response team on hand is a good idea. It's just not practical for most companies.

Webroot: More Cyber Attacks Targeting Social Networks

The number of people hit by social networking malware reached 18 percent this year.

WordPress Cyber Attacks Continue

According to Websense researchers, the number of attacks exploiting a TimThumb vulnerability is increasing.

RSA Enhances CyberCrime Intelligence Service

The service now includes malicious domain blacklists.

Former IT Admin Pleads Guilty to Cyber Attack

The attack froze the company's operations for several days, according to prosecutors.

NIST Unveils Cyber Security Education Plan

Public comments on the draft strategic plan are due by September 12.

BART Hacked

Personal information on 2,400 customers was published online.

Security Breach at Cybercrime Web Site

A database of more than 81,000 stolen credit and debit card numbers was backed up to an unencrypted third party server.

Dell SecureWorks: Inside the APT Threat

Advanced persistent threats (APT) aren't like regular malware attacks and they require a different approach to detect and mitigate.

RIM Warns of BES Security Vulnerabilities

Research In Motion has shipped a patch to fix five documented security flaws.

Hacked WordPress Sites Poison Google Image Search

Researcher Denis Sinegubko has found 4,358 WordPress blogs being used to redirect visitors to malicious Web sites.

Hackers Demo Attack on Home Automation Systems

Dave Kennedy and Rob Simon demonstrated two tools designed to hack systems that operate over power lines.

Hackers Publish Data from 70 Law Enforcement Agencies

The 7.4 GB file contains user names, passwords, home addresses, phone numbers and Social Security numbers.

Researchers Demo Square Security Flaw

Adam Laurie and Zac Franken demontrated a way of transferring money from a stolen card without having to swipe the card itself.

Researcher Warns of SAP Security Vulnerability

Alexander Polyakov says the company plans to release a patch within a week.

Cyber Security Top of Mind at CompTIA's Breakaway

From securing Android apps to establishing a national standard for data breaches, CompTIA is all over security this year.