Security News |
 |
| 08 Dec 2009 |
 |
| |
RSA's Coviello declines cybersecurity coordinator post
The federal cybersecurity coordinator position remains vacant more than six months after the Obama administration announced it. |
 |
 |
| |
Cybercriminals invest in social networking attacks
The Cisco Annual Security Report highlights the best and worst in the cybercriminal investment portfolio for 2010. |
 |
 |
| 07 Dec 2009 |
 |
| |
Yahoo login credentials at risk to hijacking attack
Cybercriminals target Yahoo and other hosting services using a new phishing campaign to hijack accounts and commit bank fraud. |
 |
 |
| 04 Dec 2009 |
 |
| |
The world's top 5 riskiest domains
(Security Bytes blog)
McAfee's 3rd Annual "Mapping the Mal Web" report highlights the domains with the most road hazards. |
 |
 |
| 03 Dec 2009 |
 |
| |
Microsoft releases Forefront Threat Management Gateway
(SearchMidmarketSecurity.com)
Microsoft introduces the successor to the ISA Server, the Forefront Threat Management Gateway. TMG introduce Web security to the ISA line, which was long used as a proxy server. |
 |
 |
| |
Microsoft to address 12 vulnerabilities, IE display zero-day
A Patch Tuesday bulletin is expected to address an Internet Explorer display error that could be targeted by attackers using a publicly available proof-of-concept exploit. |
 |
 |
| |
Software piracy group offers cash to whistleblowers
An industry group made up of software companies is offering workers in the U.K. more than $30,000 to blow the whistle on pirated software in their workplace. |
 |
 |
| 02 Dec 2009 |
 |
| |
Bit.ly boosts malware protection
(Security Bytes blog)
The popular link shortening service will use VeriSign's iDefense IP reputation service to detect URLs, domains and IP addresses that host malicious code. |
 |
 |
| 01 Dec 2009 |
 |
| |
Cybersecurity grant to fund research into critical infrastructure threats
University consortium will research threats to software and data storage systems and better understand cloud-based attacks with funding from defense contractor Northrop Grumman. |
 |
 |
| |
Hackers use Tiger Woods saga to conduct search attacks
(Security Bytes blog)
People searching for news about Tiger Woods' personal problems could find themselves in a world of hurt. |
 |
 |
| |
Microsoft, security firms warn of password meltdown
An increase in online shopping this season would be a boon to cybercriminals, who are conducting phishing and drive-by attacks in an attempt to profit from the holiday spirit. |
 |
 |
| |
US CERT warns of clientless SSL VPN vulnerability
VPN software from Cisco Systems, Juniper and others make users susceptible to Web-based attacks, according to an advisory from the U.S. Computer Emergency Readiness Team. |
 |
 |
| 30 Nov 2009 |
 |
| |
Should cities demand data breach penalties?
(Security Squad podcast)
SearchSecurity.com editors discuss a city's cloud contract data breach clause. Also, the value of vendor security threat reports and the Web security gateway market. |
 |
 |
| |
IBM to acquire database security firm Guardium
Deal reportedly worth $225 million. |
 |
 |
| 27 Nov 2009 |
 |
| |
Top spammer gets four years in jail for stock fraud scheme
Alan Ralsky, the self-proclaimed "Godfather of Spam," was jailed for his role in a stock fraud spam scheme. |
 |
 |
| |
Health Net breach failure of security policy, technology
Investigators should question why an external hard drive contained seven years of data, but IT security should have had the appropriate security policies and technologies in place ... |
 |
 |
| 24 Nov 2009 |
 |
| |
Cost of security, IT management add up at healthcare facilities, study finds
Digitalizing healthcare records and new health systems fail to cut costs, according to new research from Harvard University. Security and other management costs add up. |
 |
 |
| |
New Zeus spam poses as Social Security statements
(Security Bytes blog)
Trojan steals banking credentials at small and midsize businesses. |
 |
 |
| 23 Nov 2009 |
 |
| |
New Facebook worm propagates using sexy model
(Security Bytes blog)
Facebook worm uses a cross-site request forgery attack to spread via the victim's wall posting. |
 |
 |
| |
Exploit code targets Internet Explorer zero-day display flaw
Exploit code is publically available targeting an Internet Explorer cascading style sheet (CSS) handling error, according to Symantec. |
 |
 |
Security News Archive |