Virus
& Security News
Experts raise Windows security alarm
Code that exploits a "critical" Windows flaw has been posted on the Net, opening the door for a worm to be created.
Software maker in data leak makes deal with feds
Guidance Software, which exposed data on its government and law enforcement customers, agrees to install tighter security safeguards.
SANS names top hacker targets
Microsoft's IE and Office, Apple's Mac OS X and people themselves are among the Internet's weak links, the security group says.
Microsoft plugs Windows worm holes
Fixes are in for eight flaws related to Windows, including three holes that could compromise PCs without the user having to do anything.
Microsoft offers businesses a security test drive
Forefront Client Security will go up against established security products from companies such as Cisco Systems, Symantec and McAfee.
Microsoft flags Gmail as a virus
An error in Microsoft's Windows Live OneCare security product caused it to flag Google's Gmail service as a virus.
Broadcom flaw could allow Wi-Fi hijacks
Vulnerable software was shipped in PCs and networking gear from HP, Dell, Gateway, eMachines and others.
With IE 7, green means go for legit sites
The Microsoft browser will soon use a green address bar to indicate that you can trust a Web site--but it will leave some smaller businesses out.
Phishers chase the well-heeled
People with high incomes attract more scam e-mails, and they lose more cash when they're duped, according to a Gartner report.
Microsoft to patch zero-day XML flaw
Fix for XML Core Services to arrive in one of six security bulletins expected on next week's Patch Tuesday.
|
#1
Recommended
internet protocol security
Site:
Internet Security Solutions by Symantec, EZ Trust, Trend Micro to keep your PC clean
Internet Security Solutions, Anti Virus Software by Symantec, EZ Trust, Trend Micro and many others. Free utilities and downloads provided by Trig Enterprises
www.aplustechservice.com/symantec.htm
|
|
 |
internet protocol security
on 
IBM Internet Security Systems Shields Customers from Critical Microsoft Vulnerabilities (Business Wire via Yahoo! Finance)
ARMONK, N.Y.----IBM today announced its Internet Security Systems division is keeping customers ahead of threats posed by the most recent Microsoft vulnerabilities. Earlier this month, IBM Internet Security Systems discovered active exploitation of a vulnerability in Microsoft's XML HTTP request handling through Internet Explorer, which Microsoft provided a patch for today.
FaceTime Delivers Total Security and Control for Enterprise Internet Use (PR Newswire via Yahoo! Finance)
FaceTime Communications, the leading provider of solutions for securing and managing greynets, today announced FaceTime Internet Security Edition to provide enterprises with total security and control over Web and real-time Internet communications.
Humans Called Weak Link in Tech Security (PC World via Yahoo! News)
Researchers cite phishing, other scams as toughest security threats.
Polite Hackers Kick It in Korea (Wired News)
Security researchers at South Korea's first international hacker conference rip holes in Linux and VOIP. But where are the drinking games? Quinn Norton reports from Seoul.
Steelcape Announces First Deployment of New Breed of Security Software for TCP/IP Networks (Business Wire via Yahoo! Finance)
LOS ANGELES----Steelcape, Inc., a new provider of next-generation network protocol technology that augments security in TCP/IP environments, today announced that the company has successfully deployed the first version of its Steelcape Gateway software at SEALS Healthcare, a large healthcare products provider based in Costa Mesa, California.
SANS names top hacker targets (CNET)
Microsoft's IE and Office, Apple's Mac OS X and people themselves are among the Internet's weak links, the security group says.
Nokia releases Sourcefire-based security appliance (InfoWorld)
( InfoWorld ) - Nokia has introduced a security appliance aimed at helping enterprises keep their networks secure, particularly in the face of threats that arise as more employees access corporate data remotely from devices like smartphones and laptops. The appliance, announced on Wednesday, combines Nokia's existing security platform with Sourcefire , the intrusion prevention software
Security group ranks human error as top security worry (InfoWorld)
( InfoWorld ) - The SANS Institute has some controversial advice for computer security professionals looking to lock down their networks: spear-phish your employees. That's what the U.S. Military Academy at West Point did in 2004 to a group of 512 cadets, selected at random for a test called the Carronade. The cadets were sent a bogus e-mail that looked like it came from a fictional
Motorola to Buy Netopia for 8 Million (TechNewsWorld.com)
Cell phone maker Motorola said Tuesday it is buying Netopia, which provides DSL gear and routing equipment to telecommunications companies, for US per share, or 8 million in cash. Netopia's products include wired and wireless modems and routers. Motorola said the deal will help boost its Internet Protocol TV offerings and complement its video, voice and data portfolio.
SANS names top hacker targets (ZDNet Australia)
Microsoft's Internet Explorer has been named one of the Internet's top 20 hacker targets by a leading security organisation.
|
|
Spyware
News
Zango, the FTC, MySpace and You Tube
This past Friday, the FTC announced a million dollar settlement with Zango, formerly named 180solutions, in a lawsuit charging Zango with unfair and deceptive business practices, among other things. See ZDNet story here with more details. FTC announcement here. Case documents can be downloaded here.As usual Zango refuses to take responsibility for anything, again blaming [...]
Halloween sites tricking users with malware
Update October 27: This morning I contacted the owner of the listed sites. The sites were indeed hacked, and the owner has since removed the malicious code from the web pages. This is a nasty trick! There are a few Halloween sites being used to distribute malware, right at the time when unsuspecting web users might be searching [...]
Scary malware tricks part 1
In keeping with the Halloween season, I'm starting a series on scary malware tricks, similar to last year's series on spyware tricks. Perhaps my personal focus has changed, but it seems to me spyware tricks are becoming far more devious and destructive. Last year I was testing mostly adware, whereas this year I'm testing more [...]
Edelman on ‘Deceptive Door Openers’ and Ask toolbars
In a new article posted this morning, Ben Edelman continues his investigation of high-profile companies clogging users' computers with junk. Today's target: InterActiveCorp's Ask.com, known for its widespread "smiley" toolbars.Last year I blogged about Ask's various toolbars and the trinkets Ask uses to get users to install them. But Ben thinks there's a bigger problem here. [...]
Is Zango stealing affiliate commissions from adult webmasters?
It seems that Zango, formerly known as 180solutions, the company we all love to hate, has royally ticked off a bunch of adult webmasters. Paperghost, aka Chris Boyd, has the story, complete with links to forums where the adult webmasters discuss Zango allegedly stealing affiliate commissions. True? I don't know, but considering some of Zango/180solutions' past questionable business practices, [...]
So what about user education on security?
CNET's Joris Evers writes about one security expert who says education users on computer security in the enterprise setting is "pointless". Doctoral candidate Stefan Gorling, speaking at the Virus Bulletin Conference, said:"I don't believe user education will solve problems with security because security will always be a secondary goal for users," Gorling said. "In order [...]
Malware being spammed as PDF from retail stores
Reports surfaced today of spam purporting to be from Dell, Walmart, Circuit City or Sony confirming an order for a Sony Vaio computer with a PDF attachment, but the attachment is, in fact, a very nasty piece of malware named Haxdoor. Text of email:Subject: Order ID : 37679041Dear Customer,Thank you for ordering from our internet shop. If [...]
MVP awards, Messenger Plus! and adware — a good combination?
A controversy has been raging in certain circles the last few days over a MVP award, which has now been rescinded, to an adware pusher known as Patchou, Cyril Paciullo, the author of Messenger Plus!. There's a lot of nonsense going around and I'd like to clear some of that up.
Spyware pushers cash in big on zero day exploit
Nearly 50 malware threats being installed though the VML zero day exploit, including familiar names like Virtumonde, BookedSpace, webHancer, SurfSideKick, Qoologic (also known as Qoolaid), Zenotecnico, TagAsaurus, with some trojan downloaders and a backdoor thrown in the mix. Many of these use affiliate programs where the affiliate gets paid per install, so somewhere affiliates of these adware/spyware companies are making a killing off this zero day exploit, trashing computers with their crapware.
Should anti-spyware programs remove cookies?
Spyware expert Ben Edelman has written a great piece on anti-spyware programs and cookies. He tested eleven different anti-spyware programs against cookies from 50 advertising systems and posted detailed results including which anti-spyware programs detected which cookies and which programs detected the most cookies.
|