Monday, July 31, 2006

US unprepared for cyberattack / JavaScript bypasses firewalls / Patch-exploit is new flaw

JavaScript opens doors to browser-based attacks
A maliciuos JavaScript loaded from a website could be used to scan the user's network and open it up for attacks. - CNET News.com

Stopping fraud by blackballing PCs
Blocking PCs that have previously been used in fraud from accessing certain websites may help stop fraud with stolen credit cards. - CNET News.com

Senator blasts Homeland Security's Net efforts
U.S. Republican senator Tom Coburn claims that the Department of Homeland Security has made no progress in protecting the country from cyberattacks. - CNET News.com

Efficient firms will enjoy drop in security spend
Organizations with mature IT security practices will be able to lower their spendings, while those lacking must increase their's, Gartner advises - Computer Weekly

No data left behind: Dealing with disposal

Dealing with disposal of old disks for recycling, but still complying with security requirements is. - Computerworld

Banks face web security deadline
The deadline is coming closer for U.S. banks to adopt new required strong authentication measures. - Computerworld

Did Microsoft patch miss the mark?
Microsoft now says that an exploit released for a recently patched vulnerability is actually using a new flaw and not the one fixed by the patch. - eWEEK

Vista, rootkits headline hacker confab
While independent security researchers fear that the Black Hat Briefings are turning into a product demo, Microsoft plans to show off Vista in Las Veges. - eWEEK

GAO: DHS public/private cyber plan incomplete
A new report finds that the U.S. Department of Homeland Security is still not ready for a major Internet disruption caused by a natural disaster or a cyberattack. - Federal Computer Week

GSA warns public of email scam
The U.S. General Services Administration has issued a warning about a phishing scam using the department as bait. - Government Computer News

DDoS attacks may be behind MySpace, AOL problems
Problems with user logins at multiple webbased services may have been the effect of a distributed denial-of-service attack. - InformationWeek

Zango blasted for targeting MySpace as adware channel

A security expert claims that adware company Zango is targeting popular social networking site MySpace as a distribution channel. - InformationWeek

Black Hat 2006: Feeling insecure in Sin City
Various forms of webbased attacks are topping the buzz of the Black Hat security conference in Las Vegas this week. - Internetnews.com

5 ways to get Vista's security now
Five strategies for beefing up the security in Windows XP. - InternetWeek.com

Ternary sorting aims to stop false positives
Adding a third category for sorting phishing emails and spam from the real emails can help improve spamfilters. - Network World Fusion

The challenge in selling security
Chief Security Officers can have a hard time selling the concepts of IT security to the board. - Network World Fusion

Browser-based network attack discovered
JavaScript code may be used to bypass firewalls through the user's browser, security researchers have found. - NewScientist

Senate minority leader victimized by ID theft
U.S. Senate minority leader Democrat Harry Reid has found himself victim of identity theft. - SC Magazine UK/US

Victoria's (malicious) Secret: A information-stealing trojan
Antivirus firm Sophos warns about an email trojan that masks itself as a slideshow of a russian woman. - SC Magazine UK/US

0 Comments:

Post a Comment

<< Home