Archive for the 'Internet Scams' Category

The cost of bad security is higher than you think

Enterprise security today is in a sad, sad state. Cyber criminals are pulling off millions of dollars in heists on a daily basis. Tens of millions of corporate PCs are infected. Corporate networks are being pwned left and right. Although there is more than enough blame to spread for the situation — end-users certainly play [...]

SpyEye hacking kit adds Android infection to bag of tricks

The SpyEye hacking toolkit has added an Android component that collects the text messages some banks use as an extra security precaution, a researcher said today.
“The standard SpyEye now also entices a user to download an Android app, which is actually a component that’s Android-specific malware,” said Amit Klein, the chief technology officer of Boston-based [...]

SAP adds security, management for app stores

SAP customers looking to open iTunes-like enterprise app stores through Apple’s Volume Purchase Program (VPP) will soon have the ability to manage and deploy the software securely thanks to new VPP support in the Sybase Afaria platform, SAP said Tuesday at the Tech Ed conference in Las Vegas.
Afaria delivers mobile applications to devices and allows [...]

Microsoft’s Binary Planting Clean-Up Mission

Since our presentation of COM server-based binary planting exploits at the Hack in the Box conference in May this year, Microsoft has introduced a number of relevant changes to Windows and Internet Explorer.
To refresh our memory: in Windows, so-called “special folders” (e.g., Control Panel or My Computer) are implemented as in-process COM servers associated [...]

Survey shows Steve Jobs’s absence not deterring Apple’s customers

Steve Jobs’ resignation as CEO of Apple will have only a small impact on the company’s sales, a new study by ChangeWave Research has found.
According to the research firm, which surveyed 2,297 consumers between September 6 and September 12, just 4 percent of respondents said that they would be “less likely” to buy Apple products [...]

Google purchases Big Blue patents to defend Android

The intellectual property landscape in the mobile industry has posed some challenges for Google’s Android platform, pushing the company to seek patents to help defend Android against litigation from other major players. In addition to Google’s landmark $12.5 billion acquisition of Motorola, it turns out that the search giant has quietly been seeking out other [...]

Another Apache update due to byte range flaw

The Apache Foundation has announced that the newly released version 2.2.21 of its free web server is essentially a bug fix and security release. In particular, the developers focused on the vulnerability that makes servers susceptible to Denial-of-Service (DoS) attacks.
The new version corrects and complements the first fix, which was released only two weeks ago. [...]

Google to provide location service opt-out for Wi-Fi owners

On its European Public Policy Blog, Google has announced that it is to provide an option for wireless access point owners to opt-out from Google’s location services. The location of private Wi-Fi systems is used by Google, and other operators, as one means to help estimate a phone user’s location for the delivery of some [...]

Mysterious Multi-Restart Logins Plague File Vault MacBook Users

MacBook users are reporting that they are experiencing an issue after installing full disk encryption using File Vault. The problem manifests itself by automatically restarting the MacBook after it is turned on and restarted once already forcing the user to login twice before actually reaching their desk top.
Although the problem doesn’t seem wide-spread it is [...]

Aaron Barr is back - and he wants more cybersecurity offensives

Barr is back in business. Aaron Barr, the former CEO of HBGary Federal, memorably had his corporate e-mail exposed to the world by Anonymous earlier this year after attempting to expose the group’s “leadership.” Based on our reporting, comedian Stephen Colbert memorably summed up the encounter: “To put this in hacker terms, Anonymous is a [...]


wp