Featured Stories
Google  Project Vs Facebook Safety Features This is how hacker steal your Facebook password
 
Facebook Security

Google+ Project Vs Facebook Safety Features

Today there are many social networks on the internet and everyday new ones are being introduced with new and better features. They have unique and useful features, which makes it easy for users to remain updated with friends. They also offer apps for different smartphones providing even easier access to friends and other useful information. [...]

This is how hacker steal your Facebook password

There’s many attackers out there who want to steal your credential information. And no doubt, Facebook as one of the largest Social Networking sites in the world, always been a target of attack from the bad guys. Let’s take an example from the following message: Your facebook account will be closed for security reasons, because [...]

Microsoft says ‘Good riddance’ to USB Autorun

USB stick

Here’s some good news for anyone who has been struck by auto-running malware from a USB stick in the past. Microsoft has rolled-out an “important, non-security update” through Windows Update, changing the behaviour of Autorun when you plug a USB stick into your computer. Not sure what Autorun is? It’s the technology which causes a [...]

Read the full story

09 February 2011

Blackhat spam SEO: which sites get hijacked?

I have looked at 1,123 legitimate sites which have been hijacked to host spam pages redirecting users to a fake AV page. I’d assumed that most of them would be running WordPress, Joomla!, OSCommerce and other open source software known to have a history of security issues. In reality, these software packages actually represent less than [...]

Read the full story

09 February 2011

Avira Antivir Premium

“Most organizations focus the majority of their security budgets and efforts on prevention techniques…”

““Most organizations focus the majority of their security budgets and efforts on prevention techniques while largely ignoring response activities (detection and response).”” – Mandiant, when discussions observations from investigating Advanced Persistent Threat (APT) activities in their M-Trends 2011 report. (Lenny Zeltser on Information Security)

Read the full story

09 February 2011

Viral and Malicious Facebook application for $25

During last weekend a viral rogue app campaign hit Facebook again. This time the application was called "Profile Creeps" which, like many other rogue applications before it, promises to do what Facebook simply doesn't allow *ANY* app to do – let us know who looks at our profile. But users are still tricked into installing [...]

Read the full story

09 February 2011

Improve your Security #2: Securing your notebook

Quite a lot of people take now their netbook or smartphone with them when travelling. Because of this, almost every quarter of the year we read stories about sensitive personal data was lost because some laptop or USB stick got stolen. Moreover, with the rise of the mobile devices like smartphones, tablets and pads, anyone [...]

Read the full story

09 February 2011

Vote for Websense Security Labs for Best Corporate Security Blog!

Today we were happy to find out that our blog is a finalist for Best Corporate Security Blog in the 2011 SC Magazine Social Media Awards. You can vote for us, as well as your favorite security bloggers, here. Look for the “Second Annual SC Social Media Awards Voting” headline. If you like our updates [...]

Read the full story

09 February 2011

Busy Patchday: Updates for almost everything

Today seems to be administrators nightmare day: Not only Microsoft released the announced updates on the regular Patch Tuesday, but also Adobe for Reader and Flash Player and Google for the Chrome web browser. And even worse, this doesn’t make the computers 100 % secure again as security company TippingPoint yesterday released information about security [...]

Read the full story

09 February 2011

Malware 2010 chart

Graph1

January 11, 2010 Last year could be called “the year of cyber fraud.” Today there are few users who’ve never heard of it. While developers of security software keep working to improve their products, and law enforcement agencies keep cracking down on fraudsters, new fraud schemes continue to surface. The only solution to the problem [...]

Read the full story

09 February 2011

How to remove Smart Internet Protection 2011

Smart Internet Protection 2011 is a rogue security product that pretends to find malicious code on a victim’s machine in order to frighten him or her into purchasing this useless application. It replaces the Personal Internet Security 2011 in the FakeVimes family. VIPRE detection name: SmartInternetProtection2011.FakeVimes SmartInternetProtection2011 graphic interface ( (Click graphic to enlarge) How [...]

Read the full story

09 February 2011

Heads up… 0-day in an exploit kit

Hi folks, It’s fairly well known (well, well-known if you’re a security geek) that CVE-2010-3962 is in the Wild, but over the last couple of days, we’ve begun detecting it in the Eleonore Exploit Kit. This raises the stakes considerably, as it means that anyone can buy the kit for a few hundred bucks, and they have a [...]

Read the full story

09 February 2011

How to Defeat Koobface

As published in the previous blog post, analysis of the current version of Koobface uncovered a very interesting part about it – its “ability” to resolve CAPTCHA protection at the Facebook web site. To put it simply, if Koobface was unable to resolve Facebook’s CAPTCHA protection, it would’ve been unable replicating because in order to [...]

Read the full story

09 February 2011

Sour Marketing?

I received an newsletter from eEye yesterday. Normally I just dismiss those without taking a second look but this time I actually got pretty pissed. (more…) View full post on MW-Blog

Read the full story

09 February 2011

Least Expensive Internet Security Device For Home Users

$  5.00 lamp timer

   $ 5.00 LAMP TIMER If you have kids who own their own computers, an inexpensive lamp timer is an excellent way to enforce a digital curfew. I can assure you that your child is occasionally using the Internet at 3:00 am, and this is not helping him or her stay focused in class. There [...]

Read the full story

09 February 2011

SSCC47- Now with transcript! Patch Tuesday, HBGary, Nasdaq hack, RBS WorldPay hacker and Pwn2Own

Sophos Security Chet Chat logo

Michael Argast is my guest on this weeks Chet Chat as we discuss the weeks news you can use. I have transcribed this episode (by hand) for the hearing impaired and those of you who prefer text to audio. Please send feedback to studio@sophos.com if you find this helpful. It is a lot of extra [...]

Read the full story

09 February 2011

Top Abuses of Open Web Proxies

While there is nothing new or Earth-shattering in this post, I thought I’d share what I have seen as the top abuses of open web proxies – as this is an everyday occurrence involving a large volume of web transactions and is a constant annoyance on the Internet. An “open proxy” is…In other-words a server [...]

Read the full story

09 February 2011

Are you sure SHA-1+salt is enough for passwords?

I

The anarchic Internet group called Anonymous recently hacked HBGary Federal and rootkit.com, an online forum dedicated to analyzing and developing rootkit technologies. All user passwords at rootkit.com have been compromised. Given this compromise, I’d like to point out one of my favorite topics in application security — password hashing. It’s all too common that Web [...]

Read the full story

09 February 2011

Next AMTSO meeting

The next AMTSO meeting is about to begin in two weeks! It’s in San Mateo, CA on February 10th and 11th and you can find more details as well as preliminary agenda here. If you would like to join and are not an AMTSO member, feel free to contact me!  (AVG Blogs | Karel Obluk)

Read the full story

09 February 2011

Happy Birthday, Data Protection

Exactly 30 years ago, the European Union Convention 108 about data privacy has been accepted. It is truly amazing that the ground works for data privacy legislation were laid such a long time ago, at a time when there were no mobile phones and almost no personal computers, and it still applies! Of course, the [...]

Read the full story

09 February 2011

“The Road to Hell Is Paved With Good Intentions”, Part II

It’s been a while since the previous post discussed commercial “intelligence gathering tool”. It would have seemed ridiculous, if this time it wasn’t UK government who thinks it’s acceptable to hack into home computers, spread malware via email, log users’ keystrokes, or sniff users’ traffic, if it “believes” that it is “proportionate” and necessary to [...]

Read the full story

09 February 2011

Hacktivism on Display: Operation Payback and the Wikilkeaks Saga

hack verb \ˈhak\ a : to write computer programs for enjoyment b : to gain access to a computer illegally   ac·tiv·ism noun \ˈak-ti-ˌvi-zəm\ a : a doctrine or practice that emphasizes direct vigorous action especially in support of or opposition to one side of a controversial issue hacktivism – hacking meets activism Anonymous Logo The [...]

Read the full story

09 February 2011

From Brain to Stuxnet: 25 Years of Computer Viruses

We’ve just published a video going through the last 25 years of PC malware history in 9 minutes. The video contains several demos of what old viruses used to look like. Check it out here. On 09/02/11 At 07:57 AM (F-Secure Antivirus Research Weblog)

Read the full story

09 February 2011

“Worst trip ever” email scam

This wandered into a spamtrap last night, and you should consider firing it into the heart of the Sun: “Am sorry for not informing you about my propose trip to UK and presently I’m writing this with tears in my eyes,my family and I came down here to Cardiff,United Kingdom for a short vacation unfortunately [...]

Read the full story

09 February 2011

The Show Must Go On…

image

Flickr Credit: Raqib Our security research team is constantly monitoring what is happening on the Web that we at AVG should be aware of. Looking for malicious URLs, exploits, new obfuscation techniques are just a few of the tasks we are doing 24×7 to ensure we provide you the best security. However, fun is also [...]

Read the full story

09 February 2011

Removing Persistent Malware

This blog post is not for the technical guru! While it’s not for mums and dads either, its main purpose is to explain to an average user how to manually remove persistent malware that cannot be easily deleted otherwise. A reader who starts shivering from hearing the words “Linux” or “Ubuntu” could find this post [...]

Read the full story

09 February 2011

Security Status

Beware Facebook "Timeline" scams http://t.co/W5EW0cVv
5 months ago
Nigerian government (unknowingly) hosts phishing website http://t.co/uQd42ENw
5 months ago
PCMag Awards McAfee All Access its Editors’ Choice: SANTA CLARA, Calif.--(BUSINESS WIRE)--McAfee today announced... http://t.co/FakV7Vd8
5 months ago
RT @mikko: I hadn't noticed Google Maps has added 3D models of buildings. Here's a (very accurate) view of F-Secure HQ in Helsinki http://t.co/IKfAZlak
5 months ago
North Koreans aren't known for their online presence. But others may be lured into clicking Kim Jong-Il 'videos' too http://t.co/yQOon6YT
5 months ago
How to Protect Your Professional Reputation on Facebook Timeline http://t.co/I4bcR2VN
5 months ago
This is pretty impressive from @Softpedia: Facebook scans 2 trillion link clicks and blocks 220 million posts each day http://t.co/vKsn9gNl
5 months ago
Need for integrated approach to security in industrial control systems - http://t.co/tPBCNOow with @PikeResearch
5 months ago
Some free-based music we play at work http://t.co/xu5agZfc
5 months ago
Japan’s cyber defense weapon: a virus. It includes quotes by @Luis_Corrons via @InfosecurityMag
5 months ago