General Security
April's Patch Tuesday from Microsoft includes another Internet Explorer patch

An posting from SC Magzine on Microsft patch: Microsoft is readying nine patches to be released Tuesday as part of the software giant's monthly security update. Two of the nine fixes address vulnerabilities rated "critical," meaning they could be exploited to execute remote code, while the remaining seven patches attend to flaws deemed "important," according […]

Read more
General Security
Five Hurdles That Slow Database Security Adoption

An article from dark reading in there Database Security section:  In spite of a fairly mature product set and boardroom directives to protect sensitive databases, the average enterprise today still has a long way to go before it'll apply comprehensive database security technology and processes to all of their critical databases, let alone all of […]

Read more
General Security
'Chameleon Botnet' takes $6-million-a-month in ad money

An article from Cnet news  about Botnet : A newly discovered botnet has found a way to siphon cash from advertisers. Spider.io, a security researcher, yesterday announced that it has discovered a new botnet, called Chameleon, that's targeting "at least" 202 Web sites. The botnet is made up of over 120,000 host machines running Windows, […]

Read more
General Security
Hackers launch DDoS attack on security blogger's site, send SWAT team to his home

An article from naked security about a hacker launch DDOS on a security  blogger web site: Given a DOSed website, a fake and libelous FBI letter sent to his website host, and a dinner party delayed by a SWAT team training guns on him and ordering him to "Put your hands in the air!", Krebs […]

Read more
General Security
Denial-of-service attack takes down JP Morgan Chase sites

An posting from New Cnet about Chase web site being take down by DOS: The Web sites for banking giant JP Morgan Chase are offline this afternoon as the result of a distributed-denial-of-service attack, a representative told CNET. The site's usual banking tools and content were replaced this afternoon with a message that said: Our […]

Read more
General Security
Obama to Talk Cybersecurity With Top Business Leaders

President Barack Obama will meet with various CEOs Wednesday afternoon to discuss cybersecurity during a week in which administration officials have been putting an intense spotlight on the issue.

Obama will sit down with corporate leaders in the Situation Room of the White House to share ideas for how the government and private businesses can best work together to improve the country's defense against cyberattacks. Such cooperation is the focus of Obama's recent executive order on cybersecurity, which instructed federal agencies to notify private businesses of potential threats in a timely and declassified fashion.

Wednesday's meeting will likely focus on economic cybersecurity — that is, the prevention of hackers targeting American firms to steal corporate secrets and intellectual property. Ideas for keeping critical American infrastructure safe from disruption or destruction by hackers may also be part of the discussion.

The White House has not made public the list of CEOs who will be meeting with the president. The event is closed to press.

Obama doesn't believe his executive order is enough to fully bolster the United States' defense against cyberattacks, evident by his urging of Congress to act on cybersecurity during a Wednesday interview with ABC.

"We’ve put before Congress what exactly we need that will protect people’s privacy and civil liberties, but will also make sure that our overall system, both public and private, are protected from these kinds of attacks," said Obama.

Read more
General Security
China claims it's willing to talk to U.S. about cybersecurity

An article form Cnet about China and the U.S.  on cybersecurity  : The U.S. and China both say they want to directly discuss the issue of cybersecurity, but the odds of an open discussion are slim at best. The Chinese government today responded to a U.S. invitation to enter into a dialogue with the U.S. […]

Read more
General Security
Five Ways To Better Hunt The Zebras In Your Network

An article from dark reading about  employees, and their computers, who are doing something odd: At the recent RSA Conference in San Francisco, Chris Larsen, a malware researcher at Web security firm Blue Coat Systems, talked about zebras. Not the kind on that roam the African savannah, but the kind that sit at computers behind […]

Read more
General Security
Revealed: Stuxnet “beta’s” devious alternate attack on Iran nuke program

Revealed: Stuxnet “beta’s” devious alternate attack on Iran nuke program

Read more
General Security
Mandiant Exposes APT1 – One of China’s Cyber Espionage Units & Releases 3,000 Indicators

An interesting article by By Dan Mcwhorter on the Mandiant Blog Today, The Mandiant® Intelligence Center™ released an unprecedented report exposing APT1′s multi-year, enterprise-scale computer espionage campaign.  APT1 is one of dozens of threat groups Mandiant tracks around the world and we consider it to be one of the most prolific in terms of the […]

Read more