April's Patch Tuesday from Microsoft includes another Internet Explorer patch
An posting from SC Magzine on Microsft patch: Microsoft is readying nine patches to be released Tuesday as part of the software giant's monthly security update. Two of the nine fixes address vulnerabilities rated "critical," meaning they could be exploited to execute remote code, while the remaining seven patches attend to flaws deemed "important," according […]
Five Hurdles That Slow Database Security Adoption
An article from dark reading in there Database Security section: In spite of a fairly mature product set and boardroom directives to protect sensitive databases, the average enterprise today still has a long way to go before it'll apply comprehensive database security technology and processes to all of their critical databases, let alone all of […]
'Chameleon Botnet' takes $6-million-a-month in ad money
An article from Cnet news about Botnet : A newly discovered botnet has found a way to siphon cash from advertisers. Spider.io, a security researcher, yesterday announced that it has discovered a new botnet, called Chameleon, that's targeting "at least" 202 Web sites. The botnet is made up of over 120,000 host machines running Windows, […]
Hackers launch DDoS attack on security blogger's site, send SWAT team to his home
An article from naked security about a hacker launch DDOS on a security blogger web site: Given a DOSed website, a fake and libelous FBI letter sent to his website host, and a dinner party delayed by a SWAT team training guns on him and ordering him to "Put your hands in the air!", Krebs […]
Denial-of-service attack takes down JP Morgan Chase sites
An posting from New Cnet about Chase web site being take down by DOS: The Web sites for banking giant JP Morgan Chase are offline this afternoon as the result of a distributed-denial-of-service attack, a representative told CNET. The site's usual banking tools and content were replaced this afternoon with a message that said: Our […]
China claims it's willing to talk to U.S. about cybersecurity
An article form Cnet about China and the U.S. on cybersecurity : The U.S. and China both say they want to directly discuss the issue of cybersecurity, but the odds of an open discussion are slim at best. The Chinese government today responded to a U.S. invitation to enter into a dialogue with the U.S. […]
Five Ways To Better Hunt The Zebras In Your Network
An article from dark reading about employees, and their computers, who are doing something odd: At the recent RSA Conference in San Francisco, Chris Larsen, a malware researcher at Web security firm Blue Coat Systems, talked about zebras. Not the kind on that roam the African savannah, but the kind that sit at computers behind […]
Revealed: Stuxnet “beta’s” devious alternate attack on Iran nuke program
Revealed: Stuxnet “beta’s” devious alternate attack on Iran nuke program
Mandiant Exposes APT1 – One of China’s Cyber Espionage Units & Releases 3,000 Indicators
An interesting article by By Dan Mcwhorter on the Mandiant Blog Today, The Mandiant® Intelligence Center™ released an unprecedented report exposing APT1′s multi-year, enterprise-scale computer espionage campaign. APT1 is one of dozens of threat groups Mandiant tracks around the world and we consider it to be one of the most prolific in terms of the […]