Microsoft warns of new Trojan hijacking Facebook accounts
A posting from Cnet News in there Security & Privacy section: Microsoft has issued a warning that a new piece of malware masquerading as a Google Chrome extension and Firefox add-on is making the rounds, threatening to hijack Facebook accounts. First detected in Brazil, Trojan:JS/Febipos.A attempts to keep itself updated, just like normal, legitimate browser extensions, […]
Outbreak! Fake Amazon UK emails spammed out, delivering malware
A posting from Naked Security about malware : Beware! A spate of malicious emails have been spammed out by online criminals, disguised as legitimate communications from the UK branch of online retail giant Amazon. In a widespread attack, email messages have been distributed designed to trick computer users into opening an attachment disguised as information about an order for an […]
3 Big Mistakes In Incident Response
A posting from DarkReading from there Security monitoring section: The incident response specialist investigating a recent breach of a government services firm was convinced the attack he was investigating was the handiwork of a group of Chinese hackers. The type of malware he found was commonly associated with that group of attackers, so he concentrated his efforts on cleanup and analysis […]
Is Application Sandboxing The Next Endpoint Security Must-Have?
A posting from Dark Reading in there Endpoint Security section : With the onslaught of zero-day attacks continuing to increase the barrage of unanswered threats against endpoints, there's a growing contingent of security advocates championing the addition of a virtualized container layer in the endpoint security mix. Analyst predictions are rosy for the virtual containerization […]
Sony hacking suspect smashes computers to get out of prosecution
A posting from Naked Security: A 23-year-old man suspected of helping to hack into Sony's PlayStation Network got out of being penalized for the crime by smashing his computers and making his hard drives disappear. Todd M. Miller, of Columbus, in the US state of Ohio, was sentenced on Thursday to a year on house arrest for obstructing […]
May Patch Tuesday coming up - Microsoft still not sure if latest 0-day fix will make the cut
A posting from Naked Security on patch Tuesday : Microsoft's Patch Tuesday for May 2013 will be published in the coming week. It'll be out on Tuesday 14 May 2013. (Wednesday 14 May for everywhere from about Malaysia eastwards.) Here's the elevator pitch: 33 vulnerabilities identified and fixed. Ten separate patches. Eight rated Important. (Apply ASAP.) Two rated Critical. (Apply […]
Indian government investigates firms at center of global cyber heist
A posting from NBCNEWS in there technology section about Indian's government investigates firms at center of global cyber heist: MUMBAI/BANGALORE, May 12 (Reuters) - The Indian government's cyber watchdog is investigating how security at two companies that are part of the country's vast IT services industry was breached in a global ATM heist that saw $45 million stolen […]
US cyberwar strategy stokes fear of blowback
A posting from NBC NEWS in there technology section: WASHINGTON (Reuters) - Even as the U.S. government confronts rival powers over widespread Internet espionage, it has become the biggest buyer in a burgeoning gray market where hackers and security firms sell tools for breaking into computers. The strategy is spurring concern in the technology industry and intelligence community […]
WordPress and Internet Security with Kellep Charles
Scott talks to Security Consultant Kellep Charles about WordPress and public website security. What can you do to protect yourself? Where does internet security break down?
Microsoft rushes out CVE-2013-1347 "Fix it" for the latest Internet Explorer zero-day
A posting from Naked Security: Remember the US Department of Labor hackwe wrote about at the beginning of the month? A microsite off the main web page was compromised and used to serve up a drive-by download cocktail that aimed to infect your computer surreptitiously. The vulnerability that was exploited in the drive-by turned out to […]