Information about general information security issues.

Report: Hacked Syrian officials used ‘12345’ as email password

/
After hundreds of emails from the office of Syrian President Bashar al-Assad were leaked on Monday, a report revealed that several of Assad's aides and advisers used the password "12345."

Hacker releases Symantec source code

/
A hacker released the source code for antivirus firm Symantec's pcAnywhere utility on Tuesday, raising fears that others could find security holes in the product and attempt takeovers of customer computers.

White House Presses For New Cybersecurity Laws

/
White House Presses For New Cybersecurity Laws The White House…

Cybersecurity Receives Emphasis in State of the Union Address

/
An interesting article by Mickey McCarter of Homeland Security…

Vulnerability Summary for the Week of January 16, 2012

/
This bulletin provides a summary of new vulnerabilities that have been recorded by the National Institute of Standards and Technology (NIST) National Vulnerability Database (NVD) the week of January 16, 2012. It is available here:

Congress withdraws SOPA and PIPA

/
Lawmakers on Friday indefinitely postponed anti-piracy legislation that pits Hollywood against Silicon Valley, two days after major Internet companies staged an online protest by blacking out parts of prominent websites. Senate Democratic leader Harry Reid postponed a showdown vote in his chamber on the Protect Intellectual Property Act, or PIPA for short, that had been scheduled for January 24.

Carberp Malware is Back in a New Form to Target Facebook users

/
"Carberp replaces any Facebook page the user navigates to with a fake page notifying the victim that his/her Facebook account is 'temporarily locked,'" says Trusteer CTO Amit Klein in his blog. "The page asks the user for their first name, last name, email, date of birth, password and a Ukash 20 euro [approximately $25 US] voucher number to 'confirm verification' of their identity and unlock the account.

Security Risk of Shortened URLs and How to Expand Them

/
Shortened URLs are a fixture in the social networking world. They are the cryptic URLs you normally see on your Twitter feed as well as on Facebook.

Effective password testing using Metasploit

/
Software vulnerabilities receive most of the limelight in network security, but weak, shared, and mismanaged passwords are often the biggest threat to most organizations.

Oracle Critical Patch Update (CPU) for Tues Jan 17th 2012

/
FYI for those running Oracle products such as OracleDB, Glassfish, MySQL, Solaris, etc. The following links will provide additional information to assist you. Oracle Critical Patch Update (CPU) Pre-Release Announcement - January 2012