Archive for 2010

Weekly Security News – December 20, 2010

December 20, 2010 - 1. NSA considers its networks compromisedRead More 2.  Top Five Vishing TechniquesRead More 3. New Google service identifies hacked sitesRead More 4. Your Apps Are Watching YouRead More 5. FarmVille players lured with fake "farm cash" offer (continue reading...) Read more

Interview with Rubén Santamarta about security in SCADA systems

December 20, 2010 - Luis Corrons – Rubén, could you first tell the readers of the blog a little bit about yourself. Despite being quite young, you’ve been involved in the world of security for some years and in some circles you’re practically considered (continue reading...) Read more

How to clean-up your profile after a Facebook survey scam

December 20, 2010 - Facebook survey scams continue to be a big problem. Just this weekend we estimate that hundreds of thousands of Facebook users have been hit by a resurgence of the "Girl killed herself" scam. Judging by messages we're receiving from (continue reading...) Read more

Acunetix WVS Version 7 build 20101216 released

December 20, 2010 - An updated build of Acunetix WVS Version 7 was released, featuring further DOM XSS checks improvements and addresses a number of bug fixes. New features: DOM XSS will now report the filename in which the attack was executed DOM XSS checks (continue reading...) Read more

First, Catch Your Botnet

December 19, 2010 - Our own Pierre-Marc Bureau was heavily quoted in an article by Tom Simonite on the use by the École Polytechnique de Montreal (in collaboration with researchers from Nancy University, France, and Carlton University, Canada), of a cluster of servers used (continue reading...) Read more

Assessing the “Hidden” Dangers of Application Security

December 18, 2010 - By Greg Reber, CEO, AsTech ConsultingAlthough the gulf oil spill is fading from public consciousness, it is an apt metaphor for IT professionals who ignore application security at their peril. In the case of the spill, the scope of the (continue reading...) Read more

Network Security Check-Up for Health Care Networks

December 17, 2010 - Health care providers are an interesting situation with regard to network security.  Like many industries, they’re dealing with rapid technological change in the face of a variety of regulations – in the U.S. health care industry it’s HIPAA and HITECH, (continue reading...) Read more

Network Security Check-Up for Health Care Networks

December 17, 2010 - Health care providers are an interesting situation with regard to network security.  Like many industries, they’re dealing with rapid technological change in the face of a variety of regulations – in the U.S. health care industry it’s HIPAA and HITECH, (continue reading...) Read more

Q&A from the December 2010 Security Bulletin Webcast

December 17, 2010 - Hello, Today we published the December 2010 Security Bulletin Webcast Questions & Answers page. We fielded 17 questions, most concerning the Internet Explorer update and the re-releases of bulletins this month. We invite our customers to join us for (continue reading...) Read more

Five Security Predictions for 2011

December 17, 2010 - It's that time of the year again where we peak into what we believe will be the top threats for the next 12 months....(read more) Read more

Canada Passes Long-awaited Anti-spam Law

December 17, 2010 - Posted on behalf of Matt Sergeant, Senior Anti-spam Technologist, Symantec Hosted Services As of this week, Canada joins the rest of the G8 countries with its very own anti-spam law. Until now, Canada has been the only G8 country without anti-spam (continue reading...) Read more

Survey Results: Here Are Your Predictions for Internet Security in 2011

December 17, 2010 - Bad predictions are soon forgotten. This can be a blessing for those in the prediction business. The guy on the local news that predicts the weather doesn’t always get it right, but we still tune in the next night for the (continue reading...) Read more

Miley Cyrus smoking a bong video hides Facebook survey scam

December 17, 2010 - The survey scammers just won't stop, will they? Here's the latest one that some Facebook users have fallen for, believing that a friend is sharing with them a video of pop star Miley Cyrus taking drugs. The surfeit of scams (continue reading...) Read more

Have You Got An Extra Few Million Dollars Laying Around?

December 17, 2010 - I am always worried/disturbed when I see reports of data breaches. This particularly the case when it involves a higher education institution. The have been three recently reported: the University of Hawaii (which I previously wrote about (continue reading...) Read more

Amazon shipping update email spreads malware attack in time for Christmas

December 17, 2010 - With Christmas just around the corner, plenty of people will be buying last minute presents from online stores like Amazon. As you buy presents for loved ones online, you're always slightly nervous if the gift is going to arrive (continue reading...) Read more

Dream Loader: the new bot C&C engine of your dreams

December 17, 2010 - We have recently found samples of a new C&C (command-and-control) engine, named Dream Loader, and detected as Trojan.Karagany by Symantec products, that is being used in the wild. The engine comes in a pack that contains both a builder (continue reading...) Read more

2014 FIFA World Cup Already the Centerpiece of 419 Scams

December 17, 2010 - Posted on behalf of Nicholas Johnston, Senior Software Engineer, Symantec Hosted Services This year's soccer FIFA World Cup in South Africa, enjoyed by millions, was also used by both 419/advance fee fraud scammers and malware authors to lure unsuspecting victims into (continue reading...) Read more

Spoof Your Caller ID With an iPhone Web App

December 17, 2010 - For those of you that think every iPhone application must be approved by Apple's App Store guardians… think again.Here's an application called SpoofCard:SpoofCard allows smartphone users (continue reading...) Read more

Crowd sourcing the fight against cybercrime?

December 17, 2010 - The European Union (EU) is examining a plan to use "crowd sourcing" to fight internet crime, allowing members of the public to connect directly with police and report internet security attacks and (continue reading...) Read more

Creeper Tracker Pro creeps around on Facebook

December 17, 2010 - Is it time to examine another Facebook scam?Why yes, it is.Located at…deep breath…99percentofgirlswouldkilltheirboyfriends(dot)info, this website takes the form of the familiar “find out who is watching you” wheeze so beloved by scammers everywhere. (continue reading...) Read more

Copyright © 2012 The Security Blog. All rights reserved.