Archive for 2010

Inside The Nigerian 419 Scam

December 29, 2010 - The Nigerian 419 Scam is a form of advance-fee fraud, a confidence trick in which the target is persuaded to advance sums of money in the hope of realizing a significantly larger gain. “419″ refers to the article (continue reading...) Read more

10 great ways to get hacked in the New Year

December 29, 2010 - It’s that time of year for us to get inundated with all those Top 10 lists to help us achieve this, prevent that and so on. Those lists are valuable indeed, (continue reading...) Read more

Mobile Devices: The Weak Link for Security in 2011

December 28, 2010 - An article in the New York Times this week highlighted one of the growing cyber-security threats that we can expect to see in 2011. “Mobile Devices, Internet TV, & Geolocation Services Top Targets for Cyber Attacks in 2011” discusses (continue reading...) Read more

WikiLeaks, Gawker, OpenBSD, Lineage II – 90 Sec News – Dec 2010

December 28, 2010 - Don't just read the latest computer security news - watch it in 90 seconds! This month: the WikiLeaks show, massive Gawker password theft, an out-of-the-blue OpenBSD accusation, and virtual property stolen from Lineage II. (continue reading...) Read more

Honda hack: Millions of customers’ email addresses stolen

December 28, 2010 - American Honda says it has contacted millions of its customers after hackers stole a database containing names, email addresses, and VINs (the Vehicle Identification Number, or unique 17 character ID for your motor vehicle). The (continue reading...) Read more

Cyberbullying Discussion: Talking to Your Teens

December 28, 2010 - Talking to teens about cyberbullying is a different story. If you have a teen and haven’t already been discussing online safety, you should start. If my teens are any example of the “typical” teen, they already know everything there is (continue reading...) Read more

What is Adult Traffic Trading.

December 28, 2010 - This short video blog explains what “Adult Traffic Trading” is. This series of Video Blogs is in response to a study done about adult content web sites. This is a really, really short video, but the answer is simple enough (continue reading...) Read more

SSL Certificate Authority Auditing with Nessus

December 28, 2010 - Do you know where all of your organization’s SSL certificates are and if they are providing enough protection to you and your customers? Nessus can be used to identify all SSL certificates in use, test if they are expired and (continue reading...) Read more

Facebook scares users with account protection status warning

December 28, 2010 - Over the last few weeks we have been contacted by a number of members of the Sophos Facebook page, concerned by a message they saw on Facebook, warning them that their account protection was "very low". (continue reading...) Read more

Mozilla accidentally publishes user IDs and password hashes

December 28, 2010 - Note: I have made some edits for accuracy based upon input from my colleagues and commenters. First the bad new. On (continue reading...) Read more

Canada vows to be less spammy in 2011 – At least after September

December 27, 2010 - The Canadian Parliament finally passed bill C-28 after more than 18 months and a proroguing of Parliament. It was officially passed as the (continue reading...) Read more

Installation Protection Mechanisms of Phoenix Exploit’s Kit

December 27, 2010 - As part of my research within Websense Security Labs, I collaborate with a group of researchers tasked with profiling exploit kits.  This helps us refine the analytics used in ACE, our Advanced Classification Engine.  In this post I want (continue reading...) Read more

Owned and Exposed 2 – An unwanted Christmas gift for exploit-db, ettercap and others

December 26, 2010 - Many people around the world awoke on Christmas morning with anticipation of gifts under the tree. But that's not the only thing that was waiting (continue reading...) Read more

Spare a thought for those working this Christmas..

December 25, 2010 - For many of us, it's a day of putting our feet up, trying to calculate how long to leave the turkey in the oven, and hoping the relatives will have left before the "Doctor Who" Christmas special starts on BBC (continue reading...) Read more

Merry Christmas, grab some nog and listen to Chet Chat 40

December 24, 2010 - Security is important 365 days a year, so here at SophosLabs we must remain on duty, even on Christmas day. Hopefully it will be a quiet time (continue reading...) Read more

Data security breach at the North Pole! Santa’s Naughty/Nice list compromised

December 23, 2010 - Following attacks on Gawker, Walgreens and McDonalds, it seems hackers have set their eyes on a new target: Santa! Reports from the North Pole have confirmed that Santa's Naughty/Nice list has been compromised. The (continue reading...) Read more

New IE 0-day vulnerability

December 23, 2010 - Microsoft acknowledged a new 0-day vulnerability in Internet Explorer in advisory 2488013. The vulnerability requires the targeted user to access a website where the attacker has placed a maliciously formatted CSS (continue reading...) Read more

Quantifying The Financial Impact Of Security Incidents

December 23, 2010 - How much?  It’s a simple question really, and one that I know the security professional often finds very difficult to answer when trying to justify mitigating risks to business.  I mean what exactly is the financial impact of a virus outbreak?  (continue reading...) Read more

Wikileaks #SecChat: Lessons for the Enterprise on Hacktivism

December 23, 2010 - Our inaugural #SecChat in November raised questions on securing PHI, while our December discussion turned to the buzz and security debate around the recent Wikileaks saga. The conversation was certainly heated, with 70 contributors tuning in for the (continue reading...) Read more

VIDEO: How poor security helped a geek get his stolen computer back two years later (NSFW)

December 23, 2010 - Normally we advise you to secure your computer to prevent people from accessing it remotely. After all, you don't want them to see what you're doing, accessing your files or installing keylogging malware. But maybe things are different if it's (continue reading...) Read more

Copyright © 2012 The Security Blog. All rights reserved.