Nordstrom tracking customer movement via smartphones' WiFi sniffing
A posting from Naked Security: You've spent quite some time in the lingerie department, but you haven't even peeked at our display of Bose® 'OE2' Audio Headphones, which were $149.95 but are now ONLY $134.96! Can we talk?" OK, so that's not exactly what Nordstrom says it's planning to do with the information it gleans […]
Unpatched Remote Access Tools: Your Gift To Attackers
A posting from Information Week in there Security section: Help desk teams love remote-control software. When employees call with computer problems, the IT department can remotely take control of the user's machine, copy over files and set all application and operating system wrongs to right. Unfortunately, they're not the only group interested in putting TeamViewer, […]
Pentagon OKs Androids, BlackBerrys for soldiers
A posting from Naked Security about the Pentagon OKs Androids, BlackBerrys for soldiers: The US Department of Defense (DoD) announced on Thursday that it has approved the use of Samsung phones running a hardened version of Android. According to the BBC, the approval for other types of smartphones and mobile devices for use by US soldiers is […]
Metasploit Module Released For IE Zero-Day Flaw Used In Labor Attack
A posting from Dark reading: A targeted attack discovered last week serving up malware from the U.S. Department of Labor's (DOL) website employed a previously unknown vulnerability in Internet Explorer 8 that Microsoft says it will fix either with an emergency patch or via its monthly patch process. And as is tradition, Metasploit also has […]
5 Ways For SMBs To Boost Security But Not Costs
A posting from Dark reading: For many businesses, improving their security seems like the proverbial money pit: but it doesn't have to be that way. While the time crunch of attending to the demands of the daily business has typically created an accumulation of security problems for many businesses, information technology professionals at SMBs can improve […]
Sweet Password Security Strategy: Honeywords
A posting from Information Week in there security section: Businesses should seed their password databases with fake passwords and then monitor all login attempts for use of those credentials to detect if hackers have stolen stored user information. That's the thinking behind the "honeywords" concept first proposed this month in "Honeywords: Making Password-Cracking Detectable," a paper written by Ari Juels, chief scientist […]
Malicious link on Facebook distributing Fake Adobe Flash Player add-on; Hackers Hijacking your Online Accounts
A Malicious Link is nearby you on Facebook which claims to give you the info that who viewed your profile but on the name of that gives you the fake and Malware filled browser add-on of Adobe Flash Player.
IBM takes a big new step in cryptography: practical homomorphic encryption
A posting from Naked Security about IBM takes a big new step in cryptography: practical homomorphic encryption: IBM just released an open source software package called HELib. The HE stands for homomorphic encryption. Although it doesn't sound terribly sexy or impressive, HELib is actually an interesting and important milestone in cryptography. HE is also a surprisingly relevant topic right now, with […]
US nabs suspected programmer of bank Trojan that drained millions of dollars
A posting from NBC News in there Technology section: ATLANTA (AP) - An Algerian man accused of helping to develop and market a computer program that drained millions of dollars from bank accounts around the world pleaded not guilty Friday to nearly two dozen charges. A 23-count indictment charges Hamza Bendelladj, 24, with wire fraud, bank fraud, computer […]