Click here

Network Security: Archive: March 2012 

How to Secure Your Company's Videoconferencing System

Could hackers use your company's videoconferencing equipment to spy on your meetings? Yes, quite possibly – but it's easy to prevent. Here's how to lock down your system right now.

California DCSS Suffers Security Breach

Storage devices containing data on approximately 800,000 people were misplaced.

Researchers Find Xbox 360 Privacy Flaw

Credit card data can still be accessed on a console following a factory reset.

Global Payments Hit by Massive Security Breach

The breach may have resulted in the compromise of more than 10 million credit card numbers.

MilitarySingles.com Denies Security Breach

The dating site says the number of records published doesn't match the number in its database.

Europe Plans Cybercrime Center

The center will be based at the European Police Office in The Hague.

Kaspersky Takes Down Kelihos Botnet Again

Dell SecureWorks and CrowdStrike, Inc. were also involved in the operation.

RockYou to Pay $250,000 Fine for Massive Security Breach

Under the terms of a settlement with the FTC, the company will also be required to implement a data security program.

AVG Expands Functionality of Security Suites

A new 'Do Not Track' feature enables users to block all tracking requests.

Oxford University Launches Cyber Security Center

The center was launched with an investment of £5 million towards research activity.

Pentagon Developing Rules of Engagement for Cyberwar

The DoD is working with the Joint Chiefs of Staff to develop a decision framework, according to Gen. Keith Alexander.

CA Acknowledges Security Flaw in ARCserve Backup Software

The vulnerability can allow a remote attacker to cause a denial of service condition, according to the company.

Google Sued Over Changes to Privacy Policy

Two lawsuits claim the changes are a violation of users' privacy rights.

Kaiser Permanente Suffers Security Breach

Employee names, phone numbers and social security numbers were found on a used hard drive.

Call Centers Present Data Breach Threat

Indian call center workers are selling names, addresses, phone numbers and credit card data for as little as $0.03 per record.

Data Breaches Led to 174 Million Records Stolen in 2011

Ninety-five percent of the compromised records included individuals' personal information.

Norwegian Government Site Suffers Security Breach

Everyone is now named Kenneth.

Blue Coat Intros Web-Based Security Solution

The new product is called Unified Security.

Security Flaws Found in SSO Web Services

The vulnerabilities could provide hackers with access to users' accounts.

Are Data Breaches Becoming Less Costly?

The financial cost of lost and stolen data is declining overall -- but malicious attacks remain more expensive than breaches caused by negligence.

Enterprise E-mail Filters Are Losing the Spam War

Virus Bulletin's latest tests found that spam filters were missing twice as much junk mail as they had in previous tests.

China Targeting Tibetan Groups with Cyber Attacks

The attacks were linked to a recent Tibetan religious festival.

University of Tampa Acknowledges Security Breach

Student and staff identification numbers, social security numbers, names and dates of birth were made available online.

Blue Cross Fined $1.5 Million for Data Breach

Unencrypted hard drives containing more than a million individuals' protected health information were stolen.

Cisco Patches Critical Vulnerability in Security Appliances

The flaw in the ASA Series Adaptive Security Appliances could be used to execute arbitrary code.

BBC Hit by Iranian Cyber Attack

The attack appeared to be an attempt to disrupt the BBC Persian Service.

Phishing Site Targets FC Barcelona Fans

A new Web page was specifically designed to trick supporters of the soccer team into disclosing their Facebook login credentials.

Dell Buys SonicWALL

Although financial terms weren't disclosed, the price was likely between $1 and $1.5 billion.

TeamHav0k Warns of Ancestry.com Security Flaw

The group found a SQL injection vulnerability in the popular genealogy site.

SafeNet Buys Authentication Provider Cryptocard

The company will combine its existing solutions with Cryptocard's Blackshield Cloud Platform.

Teen Named UK Cyber Security Champion

Jonathan Millican is a first year student at the University of Cambridge.

Fewer Universities Were Hacked in 2011

Still, Virginia Commonwealth University had the largest reported breach, affecting 176,567 records.

XSS Vulnerability Found in PayPal's Web Site

The flaw could enable a hacker to add arbitrary JavaScript.

McCain Proposes Cyber Security Legislation

The bill would significantly expand the reach of U.S. intelligence agencies.

Report: Healthcare Industry Must Improve Cyber Security

Almost 39.5 million electronic health records were breached between 2005 and 2008.

Northrop Grumman Gets $189 Million for Military Network Security

The task order was awarded under the Encore 2 contract vehicle.

Trustwave Buys M86 Security

The deal is expected to close within the next few weeks.

Panda Security Hacked: Is Your Company's Website Safe?

Attack on security vendor offers lessons on website security.

Thousands of WordPress Sites Compromised to Distribute Malware

More than 200,000 infected pages redirect visitors to Web sites pushing fake anti-virus software.

RSA: Hackers Can Help You Improve Security

Businesses should enlist the help of hackers to secure their systems, says WhiteHat Security's CTO.

Pulling Your Private Cloud out of the Shadows

Virtualization solves many problems at the server and application layer but it does open up holes in the network that must be secured.

Identity Management: Enable More, Block Less

Securing infrastructure and applications is all about understanding and identifying who your users are, says CA's Mike Denning at RSA Conference 2012.

RSA: Don't Forget to Secure Your API

APIs can be attack vectors for SQL injection and exploitation, says Layer 7's Scott Morrison at RSA Conference 2012.

Durham University Suffers Security Breach

Leaked data included names, addresses and dates of birth.

Researcher Warns of Internet Voting Security Flaws

David Jefferson says the voting systems are too insecure to be used.

NASA Acknowledges Ongoing Security Problems

5,408 security incidents in the last two years cost the agency $7 million.

Social Engineering Attack Nets $2.1 Million from Wells Fargo Bank

A scammer persuaded the bank to wire the money from Catholic Healthcare West's account.

Can the Internet Be Made Trustworthy?

Speaking at RSA Conference 2012, the CEO of Qualys points to SSL flaws, malware in third-party ads, and insecure browsers as signs that the Internet needs a fundamental overhaul of trustworthiness.