Featured Stories
Google  Project Vs Facebook Safety Features This is how hacker steal your Facebook password
 
Facebook Security

Google+ Project Vs Facebook Safety Features

Today there are many social networks on the internet and everyday new ones are being introduced with new and better features. They have unique and useful features, which makes it easy for users to remain updated with friends. They also offer apps for different smartphones providing even easier access to friends and other useful information. [...]

This is how hacker steal your Facebook password

There’s many attackers out there who want to steal your credential information. And no doubt, Facebook as one of the largest Social Networking sites in the world, always been a target of attack from the bad guys. Let’s take an example from the following message: Your facebook account will be closed for security reasons, because [...]

More Metrics for Measuring Enterprise Malware Defenses

My initial post on measuring the effectiveness of enterprise malware defenses generated very helpful feedback, which I’d like to share in this note. Good metrics provide an objective way of understanding the extent to which the measured security controls are working. I proposed a number of metrics that would help the organization to keep an [...]

Read the full story

10 February 2011

OSS Secret Weapon Deployed

OSS Secret Weapon Deployed

The open source security community through the auspices of the Open Information Security Foundation (OISF) http://www.openinfosecfoundation.org have released the beta version of the next generation intrusion prevention system, Meerkat. The Suricata Engine will run on multiple platforms, and will change the paradigm in malware detection. Will Metcalf, the maintainer of the Snort Inline project, today [...]

Read the full story

10 February 2011

Avira Antivir Premium

Patch Tuesday

Microsoft has issued 12 security bulletins making fixes in Windows, Office and Internet explorer. MS11-003 — Cumulative Security Update for Internet Explorer Critical (Remote Code Execution) Microsoft Windows, Internet Explorer MS11-004 — Vulnerability in Internet Information Services (IIS) FTP Service Could Allow Remote Code Execution Important (Remote Code Execution) Microsoft Windows MS11-005 — Vulnerability in [...]

Read the full story

10 February 2011

Hacking facebook – the infrastructure way

Https

This post is actually not as much about hacking facebook – or facebook specifically. It is much more about what can happen when you cannot trust the infrastructure, your connection to the Internet, and the implications. Almost a year ago, a group of researchers discovered a botnet that they named after Chuck Norris. This botnet [...]

Read the full story

10 February 2011

Russians Stage Large-scale, Successful Attack on U.S. and State Governments Computers

The Criminal Behind the Attack Brian Krebs today posted a story on his excellent blog, “Zeus Attack Spoofs NSA, Targets .gov and .mil” (http://www.krebsonsecurity.com/2010/02/zeus-attack-spoofs-nsa-targets-gov-and-mil/) which discusses an attack in which “a relatively large number of recipients were taken in”. “The messages are spoofed so that they appear to have been sent by the National Intelligence [...]

Read the full story

10 February 2011

400,000 email addresses exposed by Irish recruitment website hack

Front page of RecruitIreland.com

Irish job website RecruitIreland.com is currently offline after being hit by hackers who breached their systems, and stole the names and email addresses of 400,000 users. A statement elsewhere on the website says that the authorities have been informed, and that some users have received spam emails claiming to offer a job. Although in reality [...]

Read the full story

10 February 2011

Computer Threats Evolve Towards Focused, Nimble Tactics

As the role that computer-based systems play in our lives continues to evolve, so do the tactics and strategies of computer attackers. While early data breaches seemed to be mostly motivated by curiosity, fun, fame and poor judgement, modern intrusions are dominated by premeditated financial and, sometimes, political goals. The manner in which attackers execute their campaigns [...]

Read the full story

10 February 2011

MS Tuesday – February 2011

System administrators and security experts are focusing on Patch Tuesday every month (also known as Microsoft Black Tuesday or MS Tuesday). This time Microsoft patched many important vulnerabilities, but have they fixed all currently known zero days? Let's find out. This time, on February 8th, Microsoft released 12 security bulletins fixing various vulnerabilities, including three critical ones. Possibly the most important is the [...]

Read the full story

10 February 2011

How to remove AntiVira AV

AntiVira AV is a rogue security product in the FakeSpyPro family that pretends to find malicious code on a victim’s machine in order to frighten him or her into purchasing this useless application. VIPRE detection name: Trojan.Win32.Generic.pak!cobra AntiVira AV graphic interface (Click on graphic to enlarge) How to remove AntiVira AV: If  AntiVira AV has [...]

Read the full story

10 February 2011

HOW TO REPORT INTERNET CRIME

With the globalization of organized crime via the Internet, increasing numbers of people are being subjected to crime. The resources available to local law enforcement organizations to respond to these crimes is often limited. If you would like to report a crime, the following list may be helpful: Computer Crime & Intellectual Property SectionUnited States [...]

Read the full story

10 February 2011

Adobe Patch Tuesday

Adobe has issued patches to fix a number of vulnerabilities in: – Adobe Reader X (10.0) for Windows and Macintosh; – Adobe Reader 9.4.1 (and earlier) for Windows, Macintosh and UNIX – Adobe Acrobat X (10.0) and earlier versions for Windows and Macintosh. The vulnerabilities could crash the applications and enable an intruder to take [...]

Read the full story

09 February 2011

Matter of trust…

IMG_0358

Travelling a lot these days and sometimes I encounter really interesting things. Like this ATM – in Austin, Texas. Would you trust it and insert your debit card in it? I would not – but then, maybe I am just too paranoid   (AVG Blogs | Karel Obluk)

Read the full story

09 February 2011

Chrome Gets Shinier: Google Browser Tightens Security Screws

Google has updated its Chrome Web browser and fixed nine of the browser’s security vulnerabilities in the process. The updated Chrome version 9 was rolled out last week, and includes patches for nine defects, including faulty PDF software and secure sockets layer (SSL) libraries that left Chrome open to cyberattack. The Chrome update also addressed [...]

Read the full story

09 February 2011

Malicious Facebook trick has victims create own scam

A new malicious Facebook campaign comes with an extra added bonus — the chance to spread your very own scam. Scams advertising applications such as “Profile Creeps” and “Creeper Tracker” are luring in Facebook users interested in finding out who is viewing their profiles. “I just saw who STALKS me on Facebook! You can see [...]

Read the full story

09 February 2011

WebRep and long, hot legs

I don’t know about you, but I really like taking the new avast! 6.0 features – WebRep, for example — for a test drive. With the beta 6.0 installed, I opened Google.com and quickly typed in “Longhotlegs” to see what would pop up. I even forgot to add the spaces. In my top five results, [...]

Read the full story

09 February 2011

Spam or scam messages. Beware! [02-09-2011]

The following is spam or scam message that sent via email or a site/blog comment. If you receive this, just ignore it, and please don’t execute the attachment if any. 1. Do you need a loan or funding for any reason such as a) Personal Loan, Business Expansion, b) Business Start-up, Education, c) Debt Consolidation [...]

Read the full story

09 February 2011

Who Is Responsible For Malware On U.S.-based Servers

Damage Index by Actor Nationality

Jeffrey Carr at IntelFusion has an interesting article “Imagine if Russia or China announced a formal policy of using non-state actors in cyber deterrence“ He notes that, “Many other nations in the world community see the U.S. in a more negative way already because 20 of the world’s top 50 worst ISPs for serving malware [...]

Read the full story

09 February 2011

Security Threat Report 2011 web seminar – now online

Dark Reading web seminar

Last month Sophos published its annual threat report, looking back over the biggest security stories of 2010 and ahead to some of the challenges companies may face in protecting their systems in the year ahead. I was lucky enough to do an hour long web seminar with the folks from Dark Reading about the threat [...]

Read the full story

09 February 2011

Blackhat spam SEO & Fake AV: they are still there

It’s quite depressing to see that Google still contains numerous links to spam pages which lead to fake AV sites. While there are fewer of them, they are still there. This, despite the fact that attackers have not significantly changed their techniques in many months. They still hijack vulnerable sites and create spam pages with [...]

Read the full story

09 February 2011

Restrict USB Autorun: Update for Windows (KB971029)

Optional software updates

Among yesterday’s optional software updates from Microsoft was Update for Windows XP/Vista/non-Windows 7 (KB971029). It’s an “important, non-security update” that restricts “AutoRun entries in the AutoPlay dialog to only CD and DVD drives”. Excellent. This could really help curb AutoRun worms. If you’re using an older Windows computer, we highly recommend you go and apply [...]

Read the full story

09 February 2011

How to remove Windows Care Tool

Windows Care Tool is a rogue security product in the Privacy Center family that pretends to find system and registry errors on a victim’s machine in order to frighten him or her into purchasing this useless application. Windows Care Tool graphic interface (Click on graphic to enlarge) Windows Care Tool install screen (Click on graphic [...]

Read the full story

09 February 2011

SpyEye, the infostealing trojan leader

Everyone is talking about the SpyEye Trojan, the info stealer malware that gained all the attention after the author of ZeuS left the underground market and sold ZeuS sources to the SpyEye team. We already wrote about SpyEye last year, when we focused on the threat claiming that it could potentially become one of the [...]

Read the full story

09 February 2011

More interesting things…Mac version of Koobface trojan

Hi folks, As the title says, there are many more interesting things today. Firstly, there’s evidently a Mac version of the Koobface trojan circulating. Readers of this blog will recall that I have often said that Mac is not invulnerable, merely un-targeted. As John Dillinger said when asked “Why do you rob banks?”, he replied, [...]

Read the full story

09 February 2011

President Obama receives “thunderous applause” at Bagram Air Base

http://online.wsj.com/article/SB10001424052702304434404575149792396667322.html?mod=WSJ_newsreel_worldObama Rallies Troops in AfghanistanTrip Caps a String of Successes, Gives the President a ‘Hard Pivot’ from Health Care to Foreign and Domestic Issues BY PETER SPIEGEL AND JONATHAN WEISMAN WASHINGTON—President Barack Obama’s unannounced trip to Afghanistan capped the most eventful week of his presidency, a week that saw victory on his signature domestic initiative, [...]

Read the full story

09 February 2011

Security Status

Beware Facebook "Timeline" scams http://t.co/W5EW0cVv
1 month ago
Nigerian government (unknowingly) hosts phishing website http://t.co/uQd42ENw
1 month ago
PCMag Awards McAfee All Access its Editors’ Choice: SANTA CLARA, Calif.--(BUSINESS WIRE)--McAfee today announced... http://t.co/FakV7Vd8
1 month ago
RT @mikko: I hadn't noticed Google Maps has added 3D models of buildings. Here's a (very accurate) view of F-Secure HQ in Helsinki http://t.co/IKfAZlak
1 month ago
North Koreans aren't known for their online presence. But others may be lured into clicking Kim Jong-Il 'videos' too http://t.co/yQOon6YT
1 month ago
How to Protect Your Professional Reputation on Facebook Timeline http://t.co/I4bcR2VN
1 month ago
This is pretty impressive from @Softpedia: Facebook scans 2 trillion link clicks and blocks 220 million posts each day http://t.co/vKsn9gNl
1 month ago
Need for integrated approach to security in industrial control systems - http://t.co/tPBCNOow with @PikeResearch
1 month ago
Some free-based music we play at work http://t.co/xu5agZfc
1 month ago
Japan’s cyber defense weapon: a virus. It includes quotes by @Luis_Corrons via @InfosecurityMag
1 month ago