Hack
Syrian Hacktivists Hit Guardian Twitter Feeds

An article form Information week about Syrian Hacktivists Hit Guardian Twitter Feeds:  The Syrian Electronic Army (SEA) announced Sunday that it took over 11 Twitter feeds belonging to Britain's Guardian newspaper, including its book, film, photography and travel feeds, as well as multiple journalists' accounts. It also posted passwords -- composed of 15 randomized characters -- it claimed […]

Read more
Vulnerability
Twitter Two-Factor Authentication: Too Little, Too Late?

A posting from Information week in there security section:  Can you feel the two-factor fever? Following in the footsteps of Microsoft this month, Apple in March, and Facebook and Google before them,Twitter is now testing a two-factor authentication system to make it more difficult for attackers to hijack people's accounts. That's welcome news in the wake of […]

Read more
Hack
50,000,000 usernames and passwords lost as LivingSocial "special offers" site hacked

A posting from Naked Security about 50,000,000 usernames and passwords lost as LivingSocial "special offers" site hacked: LivingSocial, the online offers site owned in largish part by Amazon, has just emailed its userbase, said to be 50,000,000-strong, to fess up to a data breach. That's right: another day, another shed-load of password hashes in the hands of […]

Read more
Hack
AP Twitter Hack: Lessons Learned

An posting from Information Week security in there security section: Would you trust an email that says: "Please read the following article, it's very important: www.washinqtonpost.com/blogs/worldviews/wp/2013/04/23/"? So went a phishing email reportedly sent to multiple employees at the Associated Press, less than an hour before the company's Twitter feed was taken over and used to issue multiple tweets, […]

Read more
Vulnerability
How Lockheed Martin Phishes Its Own

An posting From Dark Reading about How Lockheed Martin Phishes Its Own: On several occasions over the past couple of years, employees at Lockheed Martin have flagged suspicious emails that turned out to be previously unknown targeted attack campaigns aimed at the defense contractor. This additional pair of eyes in security is one of the bonuses of […]

Read more
Hack
XSS Vulnerability in Cisco sub domain found by 14 Years Old security researcher

A Cross Site Scripting Vulnerability found in Cisco sub domain newsroom.cisco.com by a 14 Year Youngest security researcher Ali Hasan Gauri, today he reported us about his Latest vulnerability he found in Cisco sub domain.

Read more
General Security
Nessus® 5.2 Vulnerability Scanner is Now Available

Tenable is pleased to announce the availability of the Nessus® 5.2 vulnerability scanner. This release provides expanded platform support and integration, enhanced analysis and reporting capabilities, and improved usability. Nessus 5.2 is available now to Nessus ProfessionalFeed®, Nessus Perimeter Service™, and Nessus HomeFeed® users at no additional cost.

Read more
Malware
Mac malware found in malformed Word documents - is China to blame?

An posting  from  Naked security about Mac malware found in malformed Word documents - is China to blame:  Our friends at F-Secure have blogged today about a boobytrapped Word document, that appears to be designed to infect computer systems running Mac OS X. The malicious Word file, examined by the experts in SophosLabs, claims to be about the […]

Read more
Vulnerability Assessment
How To Stop Making Excuses For Poor Application Security Testing

An posting from Dark reading about How To Stop Making Excuses For Poor Application Security Testing: just as the old carpenter axiom warns to measure twice and cut once, the effort of putting in effective security testing practices earlier in the application development process saves many more headaches later in the application lifecycle. "We want to […]

Read more
Vulnerability
Security Vendors In The Aftermath Of Targeted Attacks

An posting from Dark reading about Security Vendors In The Aftermath Of Targeted Attacks: It has been months now since any word of a security company getting hacked has surfaced, but security vendors are still getting targeted on a daily basis by attackers ultimately after their customers -- or their intellectual property. "It certainly has not […]

Read more