NetSec
  corner   



HOME

LINUX

CYBERLAW

VIRTUALIZATION

Bugtraq

Packetstorm

FD

GrokLaw


RSS Feed


Netsec, comsec, infosec and IA news, research and trends

 

11.06.2009

 
New Security Certification On The Horizon For Cloud Services

 
New cybersecurity role for NIST?

 
Major SSL Flaw Find Prompts Protocol Update

 
Federal data protection law inches forward



11.05.2009

 
METASPLOIT UNLEASHED - MASTERING THE FRAMEWORK

 
Metasploit Rising: MSF gets corporate backing.



11.04.2009

 
E-voting system lets voters verify their ballots are counted

 
SP 800-53 is essential for security in federal government IT systems



11.03.2009

 
Wireless Penetration Testing Framework from Bill

 
Cisco, EMC, and VMware to form cloud computing coalition.

 
goosh.org - the unofficial google shell - from Tarik



11.02.2009

 
Defense Department issues clarifying guidance on open-source This will hopefully quell some resistance to OSS within the DoD

Link to memorandum



10.30.2009

 
Blade becomes first licensee of Juniper's Junos OS - Speaking to a friend at Jupiter the other day left me with the impression that there is soon to be even more openness in the future for JunOS. Watch your back, Cisco! JunOS is better, faster, cheaper, and kills IOS in every metric that I have seen.

 
Can the Cloud be Secured? - November 12, 2009 at 11:00 AM EST - from TR



10.28.2009

 
In Industry First, Voting Machine Company (Sequoia) to Publish Source Code



10.27.2009

 
Defense Department to partially lift flash drive ban



10.24.2009

 
Scan of Internet Uncovers Thousands of Vulnerable Embedded Devices

 
Aruba Labs Open Source Initiative



10.23.2009

 
RAND Corp - "Cyberdeterrence and Cyberwar" by Martin Libicki

Dave Aitel of Immunity calls it a big fail for stating absurd things like "The following hints may be indicative. Private hackers are more likely to use techniques that have been circulating throughout the hacker community. While it is not impossible that they have managed to generate a novel exploit to take advantage of a hitherto unknown vulnerability, they are unlikely to have more than one." Gunter Ollmann follows up with "Who writes this kind of drivel?"

 
Schneier on Security: "Evil Maid" Attacks on Encrypted Hard Drives



10.21.2009

 
Time Warner Cable Exposes 65,000 Customer Routers to Remote Hacks



10.20.2009

 
Leaking crypto keys from mobile devices

 
Microsoft to give investigators free COFEE

 
Hackers change tactics, Gumblar attacks surge again

 
CIA Building Secure Cloud-Based System



10.16.2009

 
Deep packet inspection engine goes open source

 
Microsoft exposes Firefox users to drive-by malware downloads



10.15.2009

 
Wi-Fi Direct Could Be the Death of Bluetooth



10.14.2009

 
VeriSign and RSA Form Security Alliance

 
Automation in creating exploits



10.12.2009

 
What Star Trek Predicts About The Future of Information Security - File under freaking hilarious.



10.06.2009

 
Daily Dave: Exploits matter.



10.03.2009

 
Through-Wall Tracking Using Variance-Based Radio Tomography Networks (aka Using Wireless Networking to See Through Walls)



10.01.2009

 
Charlie Miller says: Windows More Secure Than Mac OS X - From what I have learned about OS-X, I find myself increasingly amused by the myth of Mac OS "security".



9.28.2009

 
Hackin9 - 21st Century Hacking Techniques

 
The Difficulty of Un-Authentication

 
Hackers pay 43 cents per hijacked Mac



9.27.2009

 
Malware delivered over Google and Yahoo Ad's?

 
Ants Vs. Worms: New Computer Security Mimics Nature



9.25.2009

 
DOD repurposed IT equipment without scrubbing sensitive info, audit reveals

 
Password, ID Stealing Malware Volume Jumps 400%



9.24.2009

 
Cloud security through control vs.ownership

 
FAKEAV now spreading through search engine sponsored links

 
Contractor pleads guilty to SCADA tampering

 
Drudge, other sites flooded with malicious ads



9.23.2009

 
How secure is hardware?

 
Modern banker malware undermines two-factor authentication

 
Chinese Cyberattacks Target Media Ahead Of Anniversary



9.21.2009

 
Microsoft unveils shield for critical Windows flaw as attack code looms (Metasploit to add code this week)

 
Hacker forum got hacked

 
Click Forensics Detects Bahama Botnet



9.20.2009

 
PBS.org hacked, serving malware cocktail

 
MI5 ropes in teenage hackers to combat cyber terrorism



9.17.2009

 
Comments On Blogs Likely To Be Spam

 
Will security concerns darken Google's government cloud?



9.16.2009

 
"Chat-in-the-Middle" Phishing Attack Attempts to Steal Consumers' Data via Bogus Live-Chat Support

 
Microsoft: No TCP/IP patches will be issued for critical flaws announced in "MS09-048 - Critical Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution (967723)"- from Tarik. The Vista and Server 2008 severity is Critical-Remote Code Execution. The XP severity is currently considered Low-Denial of Service but the only difference between a DOS and remote code execution vulnerability is generally a bit of work.



9.15.2009

 
SecurityTubeCon - Call For Papers

Wow, an online Security/Hacker Conference!
6-8 Nov 2009



9.14.2009

 
Fake Flash For Firefox

 
FreeBSD bug grants local root access

 
Intelligence Analyst Charged With Hacking Top Secret, Anti-Terror Program

 
TC50: iTwin allows encrypted, cableless file-sharing

"You plug in one half to one computer and the other to another computer. After it syncs a private key, you can share files between machines even if one part of the pair is on the other side of the world. The founders say there’s no need to download software, configure settings or use a log-in ID."

 
New York Times warns readers of website virus

 
Microsoft Backports Windows 7 Security Change to XP, Vista

 
From Targeted PDF Attack to Backdoor in Five Stages

"a Flash vulnerability is being actively exploited by targeted attacks against Adobe Reader. Yes, embedding Flash movies in PDF documents is supported in Adobe Acrobat 9."

Labels:


 
How to short-circuit the US power grid

 
FTC forces Sears, Kmart out of the spyware business

 
Canvas SMBv2 Local Exploit Out - Soon to be Remote

 
Publicly available PCAP files

Happy pcaping :-)



9.13.2009

 
Linux webserver botnet pushes malware





This page is powered by Blogger.


Site Meter Locations of visitors to this page