<?xml version="1.0"?>
<?xml-stylesheet title="XSL_formatting" type="text/xsl" href="/_common/xslt/rss.xslt"?>
<rss version="2.0">
<channel>
<title>Infosecurity - Latest News</title>
<link>http://www.infosecurity-magazine.com/</link>
<description></description>
<copyright>Copyright Elsevier Ltd</copyright>
<generator>Intuitiv Ltd (www.intuitiv.net)</generator>
<lastBuildDate>Sat, 18 May 2013 15:26:59 GMT</lastBuildDate>
<image>
<title>Infosecurity - Latest News</title>
<link>http://www.infosecurity-magazine.com/</link>
<url>http://www.infosecurity-magazine.com/_common/img/template/infosec-uk/site-logo.gif</url>
</image>
<item>
<title>Apple fixes 41 flaws in iTunes</title>
<link>http://www.infosecurity-magazine.com/view/32495/apple-fixes-41-flaws-in-itunes/</link>
<description>Apple has patched 41 vulnerabilities in iTunes with version 11.0.3 of the digital store for OS X and Windows, including the one that Pinkie Pie rode to a $60,000 prize in the Google Pwnium 2 hackathon.</description>
<pubDate>Fri, 17 May 2013 19:53:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32495/apple-fixes-41-flaws-in-itunes/</guid>
</item>
<item>
<title>Syrian activists hack Financial Times Twitter feed: Time for new password approaches?</title>
<link>http://www.infosecurity-magazine.com/view/32494/syrian-activists-hack-financial-times-twitter-feed-time-for-new-password-approaches/</link>
<description>The Syrian Electronic Army is continuing its campaign to highjack the Twitter accounts of high-profile media outlets, with the Financial Times becoming its latest victim.</description>
<pubDate>Fri, 17 May 2013 19:46:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32494/syrian-activists-hack-financial-times-twitter-feed-time-for-new-password-approaches/</guid>
</item>
<item>
<title>The APPS Act – a proposal to protect users’ mobile privacy</title>
<link>http://www.infosecurity-magazine.com/view/32482/the-apps-act-a-proposal-to-protect-users-mobile-privacy/</link>
<description>Rep. Hank Johnson, D-Ga, has introduced the bipartisan Application Privacy, Protection and Security (APPS) Act of 2013 (H.R. 1913). Its purpose is to require app developers to maintain privacy policies, obtain consent from consumers before collecting data, and securely maintain the data they collect.</description>
<pubDate>Fri, 17 May 2013 12:52:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32482/the-apps-act-a-proposal-to-protect-users-mobile-privacy/</guid>
</item>
<item>
<title>Indian malware campaign targeting Pakistan uncovered</title>
<link>http://www.infosecurity-magazine.com/view/32478/indian-malware-campaign-targeting-pakistan-uncovered/</link>
<description>A leading anti-malware company has uncovered a wide-ranging malware campaign that appears to originate in India and seems primarily to target Pakistan with data-stealing malware.</description>
<pubDate>Fri, 17 May 2013 11:35:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32478/indian-malware-campaign-targeting-pakistan-uncovered/</guid>
</item>
<item>
<title>New Mac malware discovered live on stage</title>
<link>http://www.infosecurity-magazine.com/view/32473/new-mac-malware-discovered-live-on-stage/</link>
<description>Proving that not all demonstrations are staged, a previously unknown Mac backdoor was discovered during a live presentation at the Oslo Freedom Forum earlier this week.</description>
<pubDate>Fri, 17 May 2013 10:22:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32473/new-mac-malware-discovered-live-on-stage/</guid>
</item>
<item>
<title>DHS: Critical infrastructure threats up 68% in 2012</title>
<link>http://www.infosecurity-magazine.com/view/32469/dhs-critical-infrastructure-threats-up-68-in-2012/</link>
<description>Critical infrastructure threats are up significantly according to US officials – a worrying state of affairs that spans a wide range of threat vectors and potential participants.</description>
<pubDate>Thu, 16 May 2013 22:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32469/dhs-critical-infrastructure-threats-up-68-in-2012/</guid>
</item>
<item>
<title>Cloud Security Readiness Tool Results Show Overwhelming Lack of Maturity </title>
<link>http://www.infosecurity-magazine.com/view/32470/cloud-security-readiness-tool-results-show-overwhelming-lack-of-maturity-/</link>
<description>Since its launch in October 2012, 5,700 people have used the Microsoft Cloud Security Readiness Tool (CSRT). The tool asks 27 questions regarding the current state of an organisation’s security posture and cloud readiness. The results have been anonymised and analysed, and the overarching conclusion is that most organisations are relatively immature across almost all control areas represented by the CSRT.</description>
<pubDate>Thu, 16 May 2013 21:37:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32470/cloud-security-readiness-tool-results-show-overwhelming-lack-of-maturity-/</guid>
</item>
<item>
<title>Barracuda ups secure storage capacity to 15GB</title>
<link>http://www.infosecurity-magazine.com/view/32468/barracuda-ups-secure-storage-capacity-to-15gb/</link>
<description>Barracuda Networks, eyeing Google’s move to unify storage across its products, has increased the amount of free cloud storage for its own Copy online file syncing users, from 5GB to 15GB.</description>
<pubDate>Thu, 16 May 2013 19:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32468/barracuda-ups-secure-storage-capacity-to-15gb/</guid>
</item>
<item>
<title>EU may consider 'hack-back' legislation</title>
<link>http://www.infosecurity-magazine.com/view/32467/eu-may-consider-hackback-legislation/</link>
<description>The European Union could soon consider a proposal that would give law enforcement the ability to engage in “offensive hacking,” i.e., compromise private infrastructure and systems to gather information via spyware, delete data or even take servers offline completely when there is probable cause to suspect cybercriminal activity. </description>
<pubDate>Thu, 16 May 2013 18:46:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32467/eu-may-consider-hackback-legislation/</guid>
</item>
<item>
<title>Did Stuxnet help rather than hinder Iran’s nuclear program?</title>
<link>http://www.infosecurity-magazine.com/view/32455/did-stuxnet-help-rather-than-hinder-irans-nuclear-program/</link>
<description>Stuxnet is often cited as history’s first true cyber weapon. By common consensus it was developed and used by the US and Israel to successfully disrupt Iran’s nuclear program – but a new report questions its success.</description>
<pubDate>Thu, 16 May 2013 13:26:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32455/did-stuxnet-help-rather-than-hinder-irans-nuclear-program/</guid>
</item>
<item>
<title>CISO: Chief Infosec Scapegoat Officer</title>
<link>http://www.infosecurity-magazine.com/view/32453/ciso-chief-infosec-scapegoat-officer/</link>
<description>CISOs are often the first victim following a major security breach. Given the prevalence of such breaches, the average tenure of a CISO is now just 18 months; and this is likely to worsen if corporate security doesn’t improve.</description>
<pubDate>Thu, 16 May 2013 11:51:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32453/ciso-chief-infosec-scapegoat-officer/</guid>
</item>
<item>
<title>Enhanced and advanced Pushdo botnet is back</title>
<link>http://www.infosecurity-magazine.com/view/32447/enhanced-and-advanced-pushdo-botnet-is-back/</link>
<description>Pushdo, one of the more enduring and resilient botnets, has already survived four takedowns in five years. Now a new variant with new evasion techniques has been detected.</description>
<pubDate>Thu, 16 May 2013 10:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32447/enhanced-and-advanced-pushdo-botnet-is-back/</guid>
</item>
<item>
<title>Twitter Uses Automation to Improve Security </title>
<link>http://www.infosecurity-magazine.com/view/32445/twitter-uses-automation-to-improve-security-/</link>
<description>The Twitter product security team are improving the security of their code by adopting more security automation. </description>
<pubDate>Thu, 16 May 2013 07:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32445/twitter-uses-automation-to-improve-security-/</guid>
</item>
<item>
<title>LulzSec 'pirates' plead guilty to hacking </title>
<link>http://www.infosecurity-magazine.com/view/32444/lulzsec-pirates-plead-guilty-to-hacking-/</link>
<description>Four LulzSec members who claim to be &quot;latter-day pirates&quot; have plead guilty to hacking charges and compromising millions of people's information.</description>
<pubDate>Wed, 15 May 2013 20:27:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32444/lulzsec-pirates-plead-guilty-to-hacking-/</guid>
</item>
<item>
<title>Game-changer: Android malware moves beyond apps</title>
<link>http://www.infosecurity-magazine.com/view/32443/gamechanger-android-malware-moves-beyond-apps/</link>
<description>Android malware authors have officially turned the complexity corner, according to an analysis of mobile malware for the first quarter of 2013. The size and scope of the Android threatscape is evolving, adding new tactics and advanced approaches that extend beyond malicious applications.</description>
<pubDate>Wed, 15 May 2013 19:56:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32443/gamechanger-android-malware-moves-beyond-apps/</guid>
</item>
<item>
<title>Industry groups join forces on smart fare security for public transportation</title>
<link>http://www.infosecurity-magazine.com/view/32442/industry-groups-join-forces-on-smart-fare-security-for-public-transportation/</link>
<description>Smart ticketing and electronic fare sales for public transportion may not seem an obvious target for a cyber-crook at first glance, but when you consider all the credit card transactions and contactless payments flying around, e-security emerges as a big concern, particularly when it comes to the cards themselves.</description>
<pubDate>Wed, 15 May 2013 19:43:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32442/industry-groups-join-forces-on-smart-fare-security-for-public-transportation/</guid>
</item>
<item>
<title>Why is Microsoft reading users’ Skype messages?</title>
<link>http://www.infosecurity-magazine.com/view/32434/why-is-microsoft-reading-users-skype-messages/</link>
<description>Heise Security published a suggestion that Microsoft is reading users’ Skype messages, but Microsoft maintains automated scanning  is used to identify suspected spam and phishing links.</description>
<pubDate>Wed, 15 May 2013 15:44:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32434/why-is-microsoft-reading-users-skype-messages/</guid>
</item>
<item>
<title>More than 13,000 visitors attended Infosecurity Europe 2013</title>
<link>http://www.infosecurity-magazine.com/view/32419/more-than-13000-visitors-attended-infosecurity-europe-2013/</link>
<description>Infosecurity Europe has released basic figures on last month’s eighteenth annual exhibition and conference: pre-ABC audit figures show a 6% increase in visitors over 2012 to 13,200, with more than 70 new exhibitors.</description>
<pubDate>Wed, 15 May 2013 12:15:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32419/more-than-13000-visitors-attended-infosecurity-europe-2013/</guid>
</item>
<item>
<title>Browsers’ ability to block malware downloads analyzed and compared</title>
<link>http://www.infosecurity-magazine.com/view/32417/browsers-ability-to-block-malware-downloads-analyzed-and-compared/</link>
<description>The five leading browsers – Chrome, Firefox, Internet Explorer, Safari and Opera – were tested against 754 samples of real-world malicious software. The results show a marked difference in the browsers’ ability to act as a first line of defense against malware.</description>
<pubDate>Wed, 15 May 2013 11:32:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32417/browsers-ability-to-block-malware-downloads-analyzed-and-compared/</guid>
</item>
<item>
<title>Application vulnerabilities remain security’s biggest concern</title>
<link>http://www.infosecurity-magazine.com/view/32409/application-vulnerabilities-remain-securitys-biggest-concern/</link>
<description>The latest Global Information Security Workforce Study (GISWS) shows that application vulnerabilities continue to be the biggest concern for security professionals, with 69% of participants indicating it is the number one security threat.</description>
<pubDate>Wed, 15 May 2013 09:13:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32409/application-vulnerabilities-remain-securitys-biggest-concern/</guid>
</item>
<item>
<title>Microsoft’s Lipner Declares Cost and Lack of Management Approval Secure Development Roadblocks </title>
<link>http://www.infosecurity-magazine.com/view/32406/microsofts-lipner-declares-cost-and-lack-of-management-approval-secure-development-roadblocks-/</link>
<description>Cost and lack of support, training, and management approval are the roadblocks standing in the way of secure development, said Steve Lipner, partner director of programme management in Trustworthy Computing Security at Microsoft, in a press conference at Security Development Conference in San Francisco, May 14 2013. </description>
<pubDate>Wed, 15 May 2013 02:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32406/microsofts-lipner-declares-cost-and-lack-of-management-approval-secure-development-roadblocks-/</guid>
</item>
<item>
<title>DDoS-for-hire sevices turn to mainstream advertising</title>
<link>http://www.infosecurity-magazine.com/view/32403/ddosforhire-sevices-turn-to-mainstream-advertising/</link>
<description>DDoS services for hire – so-called “booters” that can be hired to knock, or boot, a website offline  – are making their way out of the dark shadow-world of hacker message boards and forums, instead taking payments via PayPal and advertising in mainstream venues like YouTube with handy videos featuring hired actors.</description>
<pubDate>Tue, 14 May 2013 20:45:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32403/ddosforhire-sevices-turn-to-mainstream-advertising/</guid>
</item>
<item>
<title>Microsoft Declares Conformity to ISO 27034-1 and Scott Charney Calls for Industry to Follow </title>
<link>http://www.infosecurity-magazine.com/view/32405/microsoft-declares-conformity-to-iso-270341-and-scott-charney-calls-for-industry-to-follow-/</link>
<description>Opening the Security Development Conference in San Francisco, May 14 2013, Microsoft’s corporate vice president of Trustworthy Computing, Scott Charney, called for vendors and governments to follow Microsoft’s lead in conforming to the ISO 27034-1 standard. </description>
<pubDate>Tue, 14 May 2013 20:39:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32405/microsoft-declares-conformity-to-iso-270341-and-scott-charney-calls-for-industry-to-follow-/</guid>
</item>
<item>
<title>Howard Schmidt Announces SAFECode secure software development training</title>
<link>http://www.infosecurity-magazine.com/view/32404/howard-schmidt-announces-safecode-secure-software-development-training/</link>
<description>At the Security Development Conference in San Francisco, Howard Schmidt, executive director, SAFECode, announced that the non-for-profit organization is tackling software development and engineering security with a set of free online training courses, available via on-demand webcasts and covering a range of issues, from preventing SQL injection to avoiding cross-site request forgery.</description>
<pubDate>Tue, 14 May 2013 20:13:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32404/howard-schmidt-announces-safecode-secure-software-development-training/</guid>
</item>
<item>
<title>Morrocan Ghosts web hosting hack opens up dozens of Israeli targets</title>
<link>http://www.infosecurity-magazine.com/view/32402/morrocan-ghosts-web-hosting-hack-opens-up-dozens-of-israeli-targets/</link>
<description>A full 52 Israeli websites were hit this week by a group calling themselves the Moroccan Ghosts. The hacktivists defaced Israeli sites by replacing the homepages with political propaganda pages and played Moroccan music over the images.</description>
<pubDate>Tue, 14 May 2013 19:33:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32402/morrocan-ghosts-web-hosting-hack-opens-up-dozens-of-israeli-targets/</guid>
</item>
<item>
<title>Video interview: “Off the Shelf” cyber threats increasingly complicate the security landscape</title>
<link>http://www.infosecurity-magazine.com/view/32401/video-interview-off-the-shelf-cyber-threats-increasingly-complicate-the-security-landscape/</link>
<description>IBM's Tom Turner talks to Drew Amorosi, deputy editor of Infosecurity magazine, at the recent Infosecurity Europe conference in London.</description>
<pubDate>Tue, 14 May 2013 18:48:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32401/video-interview-off-the-shelf-cyber-threats-increasingly-complicate-the-security-landscape/</guid>
</item>
<item>
<title>ICO publishes confused and confusing report on GDPR</title>
<link>http://www.infosecurity-magazine.com/view/32383/ico-publishes-confused-and-confusing-report-on-gdpr/</link>
<description>The EC has proposed a standardized General Data Protection Regulation (GDPR) across Europe, claiming it will save business &#163;billions. The UK says it will cost business &#163;millions. The ICO commissioned London Economics to find out who is right.</description>
<pubDate>Tue, 14 May 2013 13:54:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32383/ico-publishes-confused-and-confusing-report-on-gdpr/</guid>
</item>
<item>
<title>Judge allows redacted disclosure of Reddit co-founder's documents</title>
<link>http://www.infosecurity-magazine.com/view/32374/judge-allows-redacted-disclosure-of-reddit-cofounders-documents/</link>
<description>The US government and MIT/JSTOR had agreed that documents concerning the prosecution of Aaron Swartz could, in part, be made public. The Swartz estate asked for the documents in full. The court has denied the estate and allowed the government and MIT/JSTOR to redact certain information.</description>
<pubDate>Tue, 14 May 2013 11:54:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32374/judge-allows-redacted-disclosure-of-reddit-cofounders-documents/</guid>
</item>
<item>
<title>Mideast sabotage threats target US energy sector</title>
<link>http://www.infosecurity-magazine.com/view/32369/mideast-sabotage-threats-target-us-energy-sector/</link>
<description>A new crop of Mideast-originated cyberattacks are targeting the American energy sector, with the intent of sabotage, not just espionage.</description>
<pubDate>Mon, 13 May 2013 19:57:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32369/mideast-sabotage-threats-target-us-energy-sector/</guid>
</item>
<item>
<title>Consumers still ignoring malware protection </title>
<link>http://www.infosecurity-magazine.com/view/32368/consumers-still-ignoring-malware-protection-/</link>
<description>As many as 58.2 million American adults had at least one malware infection that affected their home PCs’ features or performance in the past year – a fact that collectively cost nearly $4 billion for repairs.</description>
<pubDate>Mon, 13 May 2013 19:28:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32368/consumers-still-ignoring-malware-protection-/</guid>
</item>
<item>
<title>Car-wrapper scam claiming more victims via email</title>
<link>http://www.infosecurity-magazine.com/view/32367/carwrapper-scam-claiming-more-victims-via-email/</link>
<description>A long-running spam campaign offering money in return for consumers helping to advertise an array of products with “car wrappers” is gathering steam of late, thanks to its plausible premise.</description>
<pubDate>Mon, 13 May 2013 19:24:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32367/carwrapper-scam-claiming-more-victims-via-email/</guid>
</item>
<item>
<title>Surveillance software targeted British/Bahraini citizen</title>
<link>http://www.infosecurity-magazine.com/view/32364/surveillance-software-targeted-britishbahraini-citizen/</link>
<description>A witness statement filed in the high court London claims that Gamma International’s FinFisher (FinSpy) covert surveillance software targeted the computer of a leading Bahraini activist who holds dual British and Bahraini citizenship.</description>
<pubDate>Mon, 13 May 2013 16:16:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32364/surveillance-software-targeted-britishbahraini-citizen/</guid>
</item>
<item>
<title>Video interview: (ISC)&#178; broadens certification offerings to forensics and cloud security</title>
<link>http://www.infosecurity-magazine.com/view/32365/video-interview-isc-broadens-certification-offerings-to-forensics-and-cloud-security/</link>
<description>Deputy editor of Infosecurity magazine, Drew Amorosi, talks to (ISC)&#178;'s new chief operating officer at Infosecurity Europe 2013.</description>
<pubDate>Mon, 13 May 2013 16:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32365/video-interview-isc-broadens-certification-offerings-to-forensics-and-cloud-security/</guid>
</item>
<item>
<title>Telecom fraud: a Chinese variant on the Police Trojan explained</title>
<link>http://www.infosecurity-magazine.com/view/32358/telecom-fraud-a-chinese-variant-on-the-police-trojan-explained/</link>
<description>Fraud is big business in China. Last year there were more than 170,000 cases causing losses of more than $12.5 billion. New evidence suggests this might be getting worse with increasingly sophisticated cyber fraud.</description>
<pubDate>Mon, 13 May 2013 12:46:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32358/telecom-fraud-a-chinese-variant-on-the-police-trojan-explained/</guid>
</item>
<item>
<title>Chrome and Firefox extension hijacks Facebook accounts</title>
<link>http://www.infosecurity-magazine.com/view/32353/chrome-and-firefox-extension-hijacks-facebook-accounts/</link>
<description>First discovered in April this year, Trojan:JS/Febipos.A is a malicious browser extension specifically targeting Chrome and Mozilla Firefox and designed to hijack the victim’s Facebook account.</description>
<pubDate>Mon, 13 May 2013 10:12:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32353/chrome-and-firefox-extension-hijacks-facebook-accounts/</guid>
</item>
<item>
<title>Snapchat’s expired snaps are not deleted, just hidden</title>
<link>http://www.infosecurity-magazine.com/view/32350/snapchats-expired-snaps-are-not-deleted-just-hidden/</link>
<description>Snapchat doesn’t delete expired photos on Android phones – it merely tells the operating system to ignore them. That means they are still available for retrieval with the right forensic software.</description>
<pubDate>Mon, 13 May 2013 08:52:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32350/snapchats-expired-snaps-are-not-deleted-just-hidden/</guid>
</item>
<item>
<title>Hackers looted $45 million in global ATM heist</title>
<link>http://www.infosecurity-magazine.com/view/32348/hackers-looted-45-million-in-global-atm-heist/</link>
<description>A global gang of hackers managed to siphon off $45 million from ATMs thanks to outdated US credit card technology.</description>
<pubDate>Fri, 10 May 2013 20:14:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32348/hackers-looted-45-million-in-global-atm-heist/</guid>
</item>
<item>
<title>Almost half of employees admit to bypassing security controls</title>
<link>http://www.infosecurity-magazine.com/view/32346/almost-half-of-employees-admit-to-bypassing-security-controls/</link>
<description>Security shouldn’t get in the way of doing business and closing sales, but many organizations are wrestling with data protection strategies that block employees' ability to get the information they need to do their jobs. Almost half of all employees in a recent survey admitted to bypassing security regulations in order to get their job done. That's breeding apathy, too: 40% admitted that if they were breached no one would notice.</description>
<pubDate>Fri, 10 May 2013 19:52:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32346/almost-half-of-employees-admit-to-bypassing-security-controls/</guid>
</item>
<item>
<title>Data breach at Washington State courts exposes info on 1 million people</title>
<link>http://www.infosecurity-magazine.com/view/32345/data-breach-at-washington-state-courts-exposes-info-on-1-million-people/</link>
<description>Attackers exploiting Adobe’s ColdFusion app server made off with 160,000 Social Security numbers, and gained access to the driver’s license numbers and names of up to 1 million people logged in the Washington State court system in a data breach that was recorded over February and March.</description>
<pubDate>Fri, 10 May 2013 19:34:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32345/data-breach-at-washington-state-courts-exposes-info-on-1-million-people/</guid>
</item>
<item>
<title>Video interview: Unpatched vulnerabilities remain a primary security challenge</title>
<link>http://www.infosecurity-magazine.com/view/32339/video-interview-unpatched-vulnerabilities-remain-a-primary-security-challenge/</link>
<description>Eleanor Dallaway, editor of Infosecurity magazine, interviews Mark Raeburn of Context Information Security at Infosecurity Europe 2013 in London.</description>
<pubDate>Fri, 10 May 2013 15:29:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32339/video-interview-unpatched-vulnerabilities-remain-a-primary-security-challenge/</guid>
</item>
<item>
<title>Chrome extension briefly allows DRM-free downloads from Spotify: Encryption may not be the answer </title>
<link>http://www.infosecurity-magazine.com/view/32336/chrome-extension-briefly-allows-drmfree-downloads-from-spotify-encryption-may-not-be-the-answer-/</link>
<description>A Chrome extension called Downloadify allowed DRM-free downloads from Spotify’s library of 20 million songs before remedial action by Spotify and withdrawal from the Chrome store by Google.</description>
<pubDate>Fri, 10 May 2013 13:43:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32336/chrome-extension-briefly-allows-drmfree-downloads-from-spotify-encryption-may-not-be-the-answer-/</guid>
</item>
<item>
<title>May 2013 Patch Tuesday Preview</title>
<link>http://www.infosecurity-magazine.com/view/32331/may-2013-patch-tuesday-preview/</link>
<description>Next week’s Microsoft patch releases will comprise 10 bulletins: 2 critical and 8 important. The two critical updates involve Internet Explorer and are thought to fix the vulnerabilities used in the recent Labor Department water-hole attack, and the successful attack employed at Pwn2Own earlier this year.</description>
<pubDate>Fri, 10 May 2013 11:18:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32331/may-2013-patch-tuesday-preview/</guid>
</item>
<item>
<title>Video interview: Cyber battles more important than cyber war</title>
<link>http://www.infosecurity-magazine.com/view/32326/video-interview-cyber-battles-more-important-than-cyber-war/</link>
<description>Drew Amorosi, deputy editor of Infosecurity magazine, interviews Canon Europe's director of information security at Infosecurity Europe 2013.</description>
<pubDate>Fri, 10 May 2013 11:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32326/video-interview-cyber-battles-more-important-than-cyber-war/</guid>
</item>
<item>
<title>Privileged account insecurity opens door wide to APTs</title>
<link>http://www.infosecurity-magazine.com/view/32325/privileged-account-insecurity-opens-door-wide-to-apts/</link>
<description>Despite high-profile warnings by security researchers, a majority of organizations are failing to enact recommended best practice security policies around one of the primary targets of advanced attacks – privileged accounts.</description>
<pubDate>Thu, 09 May 2013 19:40:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32325/privileged-account-insecurity-opens-door-wide-to-apts/</guid>
</item>
<item>
<title>Despite widespread adoption, companies fail to implement BYOD policy</title>
<link>http://www.infosecurity-magazine.com/view/32324/despite-widespread-adoption-companies-fail-to-implement-byod-policy/</link>
<description>As the influx of personal mobile devices into the workplace continues apace, a new survey shows that security is both the top concern and top measure for success for enterprises implementing bring-your-own-device (BYOD) programs.</description>
<pubDate>Thu, 09 May 2013 19:21:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32324/despite-widespread-adoption-companies-fail-to-implement-byod-policy/</guid>
</item>
<item>
<title>ISO approves eDiscovery standards development</title>
<link>http://www.infosecurity-magazine.com/view/32323/iso-approves-ediscovery-standards-development/</link>
<description>The International Organisation for Standardisation has given its final approval for the development of an international standard for the discovery of electronically stored information (ESI), aimed at giving greater credibility to digital evidence in legal matters and forensics through the implementation of a secure framework and guidelines for the process.</description>
<pubDate>Thu, 09 May 2013 19:16:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32323/iso-approves-ediscovery-standards-development/</guid>
</item>
<item>
<title>SMS phishing leads to an advance fee spam scam across Europe</title>
<link>http://www.infosecurity-magazine.com/view/32319/sms-phishing-leads-to-an-advance-fee-spam-scam-across-europe/</link>
<description>A web text phishing scam is spreading across Europe, with users being tricked into allowing thousands of spam text messages to be sent from their accounts – and sometimes resulting in huge phone bills.</description>
<pubDate>Thu, 09 May 2013 13:31:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32319/sms-phishing-leads-to-an-advance-fee-spam-scam-across-europe/</guid>
</item>
<item>
<title>Video interview: Web browsers responsible for majority of malware infections</title>
<link>http://www.infosecurity-magazine.com/view/32312/video-interview-web-browsers-responsible-for-majority-of-malware-infections/</link>
<description>Eleanor Dallaway, editor of Infosecurity magazine, sits down with Qualys’ Wolfgang Kandek at the recent Infosecurity Europe conference in London to discuss the information security threat landscape.</description>
<pubDate>Thu, 09 May 2013 13:30:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32312/video-interview-web-browsers-responsible-for-majority-of-malware-infections/</guid>
</item>
<item>
<title>Video interview: Experts discuss state-sponsored cyber attacks</title>
<link>http://www.infosecurity-magazine.com/view/32311/video-interview-experts-discuss-statesponsored-cyber-attacks/</link>
<description>At Infosecurity Europe 2013, Drew Amorosi – deputy editor of Infosecurity – assembled a panel of industry experts to discuss state-sponsored cyber attacks, and the legal frameworks that govern them.</description>
<pubDate>Thu, 09 May 2013 12:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32311/video-interview-experts-discuss-statesponsored-cyber-attacks/</guid>
</item>
<item>
<title>&#163;7.5m university fund to train cybersecurity experts </title>
<link>http://www.infosecurity-magazine.com/view/32318/75m-university-fund-to-train-cybersecurity-experts-/</link>
<description>Royal Holloway (University of London) and Oxford University have each received funding of almost &#163;4 million to provide new centers for doctoral training (CDT) to address the UK’s national need for cyber security expertise.</description>
<pubDate>Thu, 09 May 2013 11:44:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32318/75m-university-fund-to-train-cybersecurity-experts-/</guid>
</item>
<item>
<title>Queen’s Speech keeps the Communications Data Bill alive</title>
<link>http://www.infosecurity-magazine.com/view/32314/queens-speech-keeps-the-communications-data-bill-alive/</link>
<description>“In relation to the problem of matching internet protocol addresses, my Government will bring forward proposals to enable the protection of the public and the investigation of crime in cyberspace”, says the Queen’s Speech, May 2013.</description>
<pubDate>Thu, 09 May 2013 10:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32314/queens-speech-keeps-the-communications-data-bill-alive/</guid>
</item>
<item>
<title>Data breaches loom in the face of business transformation</title>
<link>http://www.infosecurity-magazine.com/view/32310/data-breaches-loom-in-the-face-of-business-transformation/</link>
<description>The move to cloud applications, ever-present mobility, Big Data and an escalating set of complex cyber-attack vectors and malware are all conspiring to overwhelm security professionals, leaving the door for many businesses wide open to data breaches.</description>
<pubDate>Wed, 08 May 2013 20:11:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32310/data-breaches-loom-in-the-face-of-business-transformation/</guid>
</item>
<item>
<title>Senate introduces cyber-espionage bill</title>
<link>http://www.infosecurity-magazine.com/view/32308/senate-introduces-cyberespionage-bill/</link>
<description>As CISPA languishes in the US Senate, likely never to see the light of day in that chamber, a bipartisan group of lawmakers have introduced a different cybersecurity bill aimed at thwarting corporate espionage.</description>
<pubDate>Wed, 08 May 2013 19:44:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32308/senate-introduces-cyberespionage-bill/</guid>
</item>
<item>
<title>Fake AV attack on DC-area media shows rise of mass compromises</title>
<link>http://www.infosecurity-magazine.com/view/32302/fake-av-attack-on-dcarea-media-shows-rise-of-mass-compromises/</link>
<description>Two local Washington DC media outlets – WTOP and sister station Federal News Radio, and the Dvorak Uncensored pundit blog – all became the victims of bad actors looking to make a buck with scareware earlier this week. The stunt is indicative of a rising tide of mass compromises, researchers said.</description>
<pubDate>Wed, 08 May 2013 19:22:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32302/fake-av-attack-on-dcarea-media-shows-rise-of-mass-compromises/</guid>
</item>
<item>
<title>Is it time to dump anti-virus?</title>
<link>http://www.infosecurity-magazine.com/view/32284/is-it-time-to-dump-antivirus/</link>
<description>If Saturday was Star Wars day (May the Fourth be with you), yesterday was the day the Empire strikes back: Long live endpoint protection! says Trend Micros’s chief technology officer.</description>
<pubDate>Wed, 08 May 2013 12:33:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32284/is-it-time-to-dump-antivirus/</guid>
</item>
<item>
<title>Video interview: Challenges facing information security professionals</title>
<link>http://www.infosecurity-magazine.com/view/32268/video-interview-challenges-facing-information-security-professionals/</link>
<description>Infosecurity magazine’s Eleanor Dallaway sits down with representatives of ISACA, (ISC)&#178;, and the ISSA at the recent Infosecurity Europe conference in London.</description>
<pubDate>Wed, 08 May 2013 12:15:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32268/video-interview-challenges-facing-information-security-professionals/</guid>
</item>
<item>
<title>All kidding aside, the Syrian Electronic Army hacks The Onion</title>
<link>http://www.infosecurity-magazine.com/view/32265/all-kidding-aside-the-syrian-electronic-army-hacks-the-onion/</link>
<description>The Syrian Electronic Army apparently has a humorous side. Hackers supporting the regime of Syrian president Bashar al-Assad hijacked the Twitter account of The Onion, the well-known parody news website, issuing joke-tastic tweets of their own before The Onion itself struck back, with a series of tweets revolving around impending executions.</description>
<pubDate>Wed, 08 May 2013 12:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32265/all-kidding-aside-the-syrian-electronic-army-hacks-the-onion/</guid>
</item>
<item>
<title>Syria's internet connection is turned off..Again</title>
<link>http://www.infosecurity-magazine.com/view/32274/syrias-internet-connection-is-turned-offagain/</link>
<description>Syria’s connection to the internet was turned off at 18:48 UTC yesterday. This was done by withdrawing the BGP (Border Gateway Protocol) routes from the country's border routers, making the country’s two TLD servers (ns1.tld.sy and ns2.tld.sy) inaccessible. Mobile connections also seem to be cut.</description>
<pubDate>Wed, 08 May 2013 10:45:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32274/syrias-internet-connection-is-turned-offagain/</guid>
</item>
<item>
<title>Video interview: Educating information security professionals</title>
<link>http://www.infosecurity-magazine.com/view/32267/video-interview-educating-information-security-professionals/</link>
<description>Infosecurity magazine's Drew Amorosi interviews Kevin Jones of City University London at the recent Infosecurity Europe conference.</description>
<pubDate>Wed, 08 May 2013 10:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32267/video-interview-educating-information-security-professionals/</guid>
</item>
<item>
<title>Is the White House recruiting Twitter’s legal director?</title>
<link>http://www.infosecurity-magazine.com/view/32269/is-the-white-house-recruiting-twitters-legal-director/</link>
<description>Rumors started circulating in Washington yesterday that president Obama may be on the verge of appointing a new chief privacy officer: Twitter’s legal director Nicole Wong.</description>
<pubDate>Wed, 08 May 2013 09:17:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32269/is-the-white-house-recruiting-twitters-legal-director/</guid>
</item>
<item>
<title>AutoIT makes malware &quot;outrageously easy&quot;</title>
<link>http://www.infosecurity-magazine.com/view/32264/autoit-makes-malware-outrageously-easy/</link>
<description>AutoIT, a flexible coding language that’s been used since 1999 for scripting in Windows, is on the rise as a go-to development language for malware.</description>
<pubDate>Tue, 07 May 2013 19:22:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32264/autoit-makes-malware-outrageously-easy/</guid>
</item>
<item>
<title>DoD approves Android, BlackBerry 10 smartphones for use by soldiers</title>
<link>http://www.infosecurity-magazine.com/view/32263/dod-approves-android-blackberry-10-smartphones-for-use-by-soldiers/</link>
<description>US soldiers will soon be able to get their Android on…sort of. The US Department of Defense has approved the use of Samsung’s hardened, secure version of Android in smartphones used by the military, along with BlackBerry 10 devices.</description>
<pubDate>Tue, 07 May 2013 19:15:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32263/dod-approves-android-blackberry-10-smartphones-for-use-by-soldiers/</guid>
</item>
<item>
<title>Researchers hack Google’s Australian office building</title>
<link>http://www.infosecurity-magazine.com/view/32250/researchers-hack-googles-australian-office-building/</link>
<description>“If Google can fall victim to an ICS attack, anyone can,” say researchers after taking over the building control system of Google’s Sydney, Australia offices.</description>
<pubDate>Tue, 07 May 2013 13:34:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32250/researchers-hack-googles-australian-office-building/</guid>
</item>
<item>
<title>McAfee to acquire Stonesoft</title>
<link>http://www.infosecurity-magazine.com/view/32248/mcafee-to-acquire-stonesoft/</link>
<description>McAfee, owned by Intel, announced yesterday that it intends to buy Finnish firewall and anti-evasion technique firm Stonesoft for a fee of approximately $389 million.</description>
<pubDate>Tue, 07 May 2013 12:30:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32248/mcafee-to-acquire-stonesoft/</guid>
</item>
<item>
<title>Video interview: Symantec crowns winner of latest Cyber Readiness Challenge</title>
<link>http://www.infosecurity-magazine.com/view/32236/video-interview-symantec-crowns-winner-of-latest-cyber-readiness-challenge/</link>
<description>Eleanor Dallaway, editor of Infosecurity, interviews Sian John about the Symantec Cyber Readiness Challenge at Infosecurity Europe 2013.</description>
<pubDate>Tue, 07 May 2013 11:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32236/video-interview-symantec-crowns-winner-of-latest-cyber-readiness-challenge/</guid>
</item>
<item>
<title>Los Alamos National Labs has been operating quantum cryptography for more than 2 years</title>
<link>http://www.infosecurity-magazine.com/view/32245/los-alamos-national-labs-has-been-operating-quantum-cryptography-for-more-than-2-years/</link>
<description>The irony for government is that while some agencies seek total communications surveillance, other agencies are seeking perfect communications security. TIA is an example of the former; Los Alamos’ quantum internet is an example of the latter.</description>
<pubDate>Tue, 07 May 2013 11:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32245/los-alamos-national-labs-has-been-operating-quantum-cryptography-for-more-than-2-years/</guid>
</item>
<item>
<title>Accused of stealing millions, SpyEye developer extradited to US</title>
<link>http://www.infosecurity-magazine.com/view/32239/accused-of-stealing-millions-spyeye-developer-extradited-to-us/</link>
<description>The 24-year-old Algerian man allegedly responsible for stealing tens of millions of dollars with the SpyEye banking trojan has been extradited to the US, where he faces a 23-count indictment for conspiracy to commit wire and bank fraud, stemming from the hijacking of bank accounts at more than 200 financial institutions.</description>
<pubDate>Mon, 06 May 2013 20:42:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32239/accused-of-stealing-millions-spyeye-developer-extradited-to-us/</guid>
</item>
<item>
<title>Internet Explorer zero-day blamed for Department of Labor website attack</title>
<link>http://www.infosecurity-magazine.com/view/32238/internet-explorer-zeroday-blamed-for-department-of-labor-website-attack/</link>
<description>The watering hole campaign that targeted a US Department of Labor website was the result of a brand-new zero-day vulnerability affecting Internet Explorer 8 (CVE-2013-1347), and not a patched, known quantity as originally thought.</description>
<pubDate>Mon, 06 May 2013 20:34:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32238/internet-explorer-zeroday-blamed-for-department-of-labor-website-attack/</guid>
</item>
<item>
<title>New online backup service scans for malware before saving files</title>
<link>http://www.infosecurity-magazine.com/view/32237/new-online-backup-service-scans-for-malware-before-saving-files/</link>
<description>Consumers often look to protect their assets in the event of computer theft, loss or an “incident” that wipes out files and requires a complete restoration. </description>
<pubDate>Mon, 06 May 2013 19:59:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32237/new-online-backup-service-scans-for-malware-before-saving-files/</guid>
</item>
<item>
<title>Latest iPhone update fails to fix lock-screen bypass flaw</title>
<link>http://www.infosecurity-magazine.com/view/32233/latest-iphone-update-fails-to-fix-lockscreen-bypass-flaw/</link>
<description>Apple has shipped iOS 6.1.4, an update for the iPhone 5 that, contrary to expectation, does not fix the known lock-screen bypass vulnerability introduced to the platform with an OS update in March.</description>
<pubDate>Fri, 03 May 2013 19:28:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32233/latest-iphone-update-fails-to-fix-lockscreen-bypass-flaw/</guid>
</item>
<item>
<title>Report: Chinese hackers drained secrets from top US military and spy contractor</title>
<link>http://www.infosecurity-magazine.com/view/32232/report-chinese-hackers-drained-secrets-from-top-us-military-and-spy-contractor/</link>
<description>Spies like us? Apparently so, as in, they’re just as vulnerable to Chinese hackers as anyone else. One of the top espionage and military contractors for the US, QinetiQ North America, has been successfully compromised and its information siphoned off, according to a Bloomberg report.</description>
<pubDate>Fri, 03 May 2013 18:41:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32232/report-chinese-hackers-drained-secrets-from-top-us-military-and-spy-contractor/</guid>
</item>
<item>
<title>Trojans cause 80% of worldwide malware infections</title>
<link>http://www.infosecurity-magazine.com/view/32231/trojans-cause-80-of-worldwide-malware-infections/</link>
<description>When it comes to malware, the spawning rate of new threats does not appear to be slowing down at all: In the first quarter of 2013 alone, more than six and a half million new malware samples were created, according to Panda Security’s latest malware report.</description>
<pubDate>Fri, 03 May 2013 18:33:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32231/trojans-cause-80-of-worldwide-malware-infections/</guid>
</item>
<item>
<title>Hacker tells Google how to secure Glass</title>
<link>http://www.infosecurity-magazine.com/view/32227/hacker-tells-google-how-to-secure-glass/</link>
<description>Last week, saurik (legendary jailbreaker and founder of Cydia) announced that he had rooted Google’s Glass, leading to an instant and somewhat petulant response from some quarters of Google.</description>
<pubDate>Fri, 03 May 2013 15:32:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32227/hacker-tells-google-how-to-secure-glass/</guid>
</item>
<item>
<title>Video interview: Amar Singh, CISO, News International</title>
<link>http://www.infosecurity-magazine.com/view/32221/video-interview-amar-singh-ciso-news-international/</link>
<description>At last week’s Infosecurity Europe show in London, Drew Amorosi, deputy editor of Infosecurity magazine, sat down with Amar Singh, News International’s chief information security officer.</description>
<pubDate>Fri, 03 May 2013 13:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32221/video-interview-amar-singh-ciso-news-international/</guid>
</item>
<item>
<title>US National Inventory of Dams database breached</title>
<link>http://www.infosecurity-magazine.com/view/32223/us-national-inventory-of-dams-database-breached/</link>
<description>Claims that China is planning an attack on the US power grid through data stolen from a database of more than 8000 US dams may be a little premature.</description>
<pubDate>Fri, 03 May 2013 11:29:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32223/us-national-inventory-of-dams-database-breached/</guid>
</item>
<item>
<title>Video interview: Re-inventing security vulnerability management</title>
<link>http://www.infosecurity-magazine.com/view/32220/video-interview-reinventing-security-vulnerability-management/</link>
<description>Eleanor Dallaway, editor of Infosecurity, interviews Michelle Johnson Cobb of Skybox Security at last week’s Infosecurity Europe 2013 show in London.</description>
<pubDate>Fri, 03 May 2013 11:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32220/video-interview-reinventing-security-vulnerability-management/</guid>
</item>
<item>
<title>58% Information Security Incidents Attributed to Insider Threat </title>
<link>http://www.infosecurity-magazine.com/view/32222/58-information-security-incidents-attributed-to-insider-threat-/</link>
<description>The consumerization of computing has changed the IT landscape. Employees can and do now access corporate data from a multitude of devices in a multitude of locations. Where the ‘insider threat’ was once posed only by the occasional malcontent employee, it is now comes from every naive employee on the payroll.</description>
<pubDate>Fri, 03 May 2013 10:12:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32222/58-information-security-incidents-attributed-to-insider-threat-/</guid>
</item>
<item>
<title>In the wake of hacks, Twitter issues security advice to media</title>
<link>http://www.infosecurity-magazine.com/view/32217/in-the-wake-of-hacks-twitter-issues-security-advice-to-media/</link>
<description>Following several high-profile account hacks targeting media companies, Twitter has issued security advice for preventing hijacking. “We expect these attacks to continue,” the social media site warned.</description>
<pubDate>Thu, 02 May 2013 19:49:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32217/in-the-wake-of-hacks-twitter-issues-security-advice-to-media/</guid>
</item>
<item>
<title>NIST revises security guidelines to address cloud, mobile and APTs</title>
<link>http://www.infosecurity-magazine.com/view/32216/nist-revises-security-guidelines-to-address-cloud-mobile-and-apts/</link>
<description>The US National Institute of Standards and Technology (NIST) has published the fourth revision of the government's foundational computer security guide, 'Security and Privacy Controls for Federal information Systems and Organizations', spurred on by the new normal of cloud, mobility and ever more sophisticated hackers.</description>
<pubDate>Thu, 02 May 2013 19:40:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32216/nist-revises-security-guidelines-to-address-cloud-mobile-and-apts/</guid>
</item>
<item>
<title>50% of enterprises will mandate BYOD by 2017</title>
<link>http://www.infosecurity-magazine.com/view/32215/50-of-enterprises-will-mandate-byod-by-2017/</link>
<description>Mobility is a part of nearly everyone’s life, and using personal devices for work functionality is a rather inexorable phenomenon, according to research by analyst firm Gartner. But it appears that enterprise IT departments are finally embracing the reality of it, with 38% of companies expected to stop providing devices to workers by 2016, and half of them expected to mandate a bring your own device (BYOD) program by 2017. Security, in turn, is evolving as well.</description>
<pubDate>Thu, 02 May 2013 19:32:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32215/50-of-enterprises-will-mandate-byod-by-2017/</guid>
</item>
<item>
<title>Video interview: NAC, BYOD, and advanced threat protection</title>
<link>http://www.infosecurity-magazine.com/view/32219/video-interview-nac-byod-and-advanced-threat-protection/</link>
<description>Drew Amorosi, deputy editor of Infosecurity, interviews ForeScout’s Scott Gordon at last week’s Infosecurity Europe 2013 show in London.</description>
<pubDate>Thu, 02 May 2013 17:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32219/video-interview-nac-byod-and-advanced-threat-protection/</guid>
</item>
<item>
<title>Adobe adds security post to its executive management team</title>
<link>http://www.infosecurity-magazine.com/view/32212/adobe-adds-security-post-to-its-executive-management-team/</link>
<description>It’s an old face in a new place, as Adobe has promoted Brad Arkin to become the company’s first chief security officer.</description>
<pubDate>Thu, 02 May 2013 16:44:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32212/adobe-adds-security-post-to-its-executive-management-team/</guid>
</item>
<item>
<title>Video interview: Infosecurity Europe 2013 Hall of Fame inductees</title>
<link>http://www.infosecurity-magazine.com/view/32209/video-interview-infosecurity-europe-2013-hall-of-fame-inductees/</link>
<description>Eleanor Dallaway, editor of Infosecurity, interviews Mikko Hypponen and Shlomo Kramer at Infosecurity Europe 2013 in London, immediately following their inductions into the Hall of Fame.</description>
<pubDate>Thu, 02 May 2013 15:52:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32209/video-interview-infosecurity-europe-2013-hall-of-fame-inductees/</guid>
</item>
<item>
<title>New report demonstrates that compliance can harm security</title>
<link>http://www.infosecurity-magazine.com/view/32201/new-report-demonstrates-that-compliance-can-harm-security/</link>
<description>The Website Security Statistics Report demonstrates that security requires accountability, that ‘best practices’ is a difficult concept, and that ‘what’s needed is more secure software, not more security software.’</description>
<pubDate>Thu, 02 May 2013 12:55:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32201/new-report-demonstrates-that-compliance-can-harm-security/</guid>
</item>
<item>
<title>Department of Labor website delivered malware to visitors</title>
<link>http://www.infosecurity-magazine.com/view/32198/department-of-labor-website-delivered-malware-to-visitors/</link>
<description>Europeans – not so much Americans – will not miss the irony of a US Department of Labor website serving malware apparently aimed at its own labor force on May 1: International Worker’s Day.</description>
<pubDate>Thu, 02 May 2013 11:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32198/department-of-labor-website-delivered-malware-to-visitors/</guid>
</item>
<item>
<title>Video interview: Top analysts discuss latest security threats</title>
<link>http://www.infosecurity-magazine.com/view/32190/video-interview-top-analysts-discuss-latest-security-threats/</link>
<description>Eleanor Dallaway, editor of Infosecurity, quizzes three of the information security industry's top European analysts on the current trends in the industry.</description>
<pubDate>Thu, 02 May 2013 10:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32190/video-interview-top-analysts-discuss-latest-security-threats/</guid>
</item>
<item>
<title>e-skills research demonstrates need for entry routes into cybersecurity careers</title>
<link>http://www.infosecurity-magazine.com/view/32192/eskills-research-demonstrates-need-for-entry-routes-into-cybersecurity-careers/</link>
<description>An information skills shortage in the UK is not disputed. Why that skills shortage exists and what can be done about it is the issue. Today a high-power (general) forum at The Spectator will seek answers, coinciding with a new (specialist) analysis published by Alderbridge and e-skills UK.</description>
<pubDate>Thu, 02 May 2013 09:39:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32192/eskills-research-demonstrates-need-for-entry-routes-into-cybersecurity-careers/</guid>
</item>
<item>
<title>Feds look to extend wiretapping mandate to online services</title>
<link>http://www.infosecurity-magazine.com/view/32189/feds-look-to-extend-wiretapping-mandate-to-online-services/</link>
<description>Even as online privacy continues to be in the spotlight, a government task force is reportedly prepping legislation that would enable law enforcement officials to intercept online communications in real-time, via companies like Facebook and Google, in what is basically an extension of the CALEA wiretapping act.</description>
<pubDate>Wed, 01 May 2013 19:45:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32189/feds-look-to-extend-wiretapping-mandate-to-online-services/</guid>
</item>
<item>
<title>Phishing attack targets Apple IDs</title>
<link>http://www.infosecurity-magazine.com/view/32188/phishing-attack-targets-apple-ids/</link>
<description>Apple IDs can be a plum target for a hacker: they are, of course, the keys to the Apple ecosystem and the iCloud digital locker. Trend Micro has found phishers recently concentrating their fire on stealing Apple IDs, and are tracking a spike in activity that translates into hundreds of live phishing sites.</description>
<pubDate>Wed, 01 May 2013 19:38:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32188/phishing-attack-targets-apple-ids/</guid>
</item>
<item>
<title>EFF: Online data protection is a mixed bag</title>
<link>http://www.infosecurity-magazine.com/view/32187/eff-online-data-protection-is-a-mixed-bag/</link>
<description>Consumers and businesses alike, often unwittingly, leave a wealth of information behind as they move through the digital world. Every internet search, every website visit, every social media update is essentially another piece of data that’s being entrusted to a service provider like Google, Facebook or AT&amp;T. </description>
<pubDate>Wed, 01 May 2013 19:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32187/eff-online-data-protection-is-a-mixed-bag/</guid>
</item>
<item>
<title>Video interview: Ian Mann and “Hacking the Human”</title>
<link>http://www.infosecurity-magazine.com/view/32186/video-interview-ian-mann-and-hacking-the-human/</link>
<description>Drew Amorosi, deputy editor of Infosecurity, interviews Ian Mann, author of “Hacking the Human II” at Infosecurity Europe 2013 in London.</description>
<pubDate>Wed, 01 May 2013 17:43:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32186/video-interview-ian-mann-and-hacking-the-human/</guid>
</item>
<item>
<title>Data sharing by EU law enforcement: beware of mission creep</title>
<link>http://www.infosecurity-magazine.com/view/32182/data-sharing-by-eu-law-enforcement-beware-of-mission-creep/</link>
<description>Peter Hustinx, the European Data Protection Supervisor (EDPS) has delivered his official Opinion on the Commission's Communication to Parliament and the Council titled 'Strengthening law enforcement cooperation in the EU: the European Information Exchange Model (EIXM)'; and warns on the potential for mission creep.</description>
<pubDate>Wed, 01 May 2013 15:55:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32182/data-sharing-by-eu-law-enforcement-beware-of-mission-creep/</guid>
</item>
<item>
<title>CISPA co-author: 'Anonymous threatened us'</title>
<link>http://www.infosecurity-magazine.com/view/32151/cispa-coauthor-anonymous-threatened-us/</link>
<description>As it languishes in the US Senate, the Cyber Intelligence Sharing and Protection Act (CISPA) has spurred hacktivist group Anonymous to threaten Congressional supporters of the bill, claims co-author Rep. Dutch Ruppersberger (D-Md.).</description>
<pubDate>Wed, 01 May 2013 14:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32151/cispa-coauthor-anonymous-threatened-us/</guid>
</item>
<item>
<title>Three-fourths of organizations lack app component policy</title>
<link>http://www.infosecurity-magazine.com/view/32150/threefourths-of-organizations-lack-app-component-policy/</link>
<description>When it comes to developing applications, open-source component use continues to skyrocket. And like operating systems or databases, open-source components represent a rich attack vector for hackers to exploit given their commonality across organizations and applications. </description>
<pubDate>Wed, 01 May 2013 13:30:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32150/threefourths-of-organizations-lack-app-component-policy/</guid>
</item>
<item>
<title>Russian-Ukrainian cyber-gang steals millions to launder through money mules</title>
<link>http://www.infosecurity-magazine.com/view/32149/russianukrainian-cybergang-steals-millions-to-launder-through-money-mules/</link>
<description>A Russian-Ukrainian cyber-gang going by the name Best Inc. has managed to steal more than $1 million from a public hospital in Washington State. It carried out the heist by recruiting nearly 100 unwitting accomplices in the US who were hired through work-at-home job scams. </description>
<pubDate>Wed, 01 May 2013 13:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32149/russianukrainian-cybergang-steals-millions-to-launder-through-money-mules/</guid>
</item>
<item>
<title>Firefox sends FinFisher authors a cease and desist letter</title>
<link>http://www.infosecurity-magazine.com/view/32171/firefox-sends-finfisher-authors-a-cease-and-desist-letter/</link>
<description>FinFisher is a commercial spyware product produced by the UK’s Gamma International. It is widely implicated in government surveillance of national dissidents in countries with poor human rights records.</description>
<pubDate>Wed, 01 May 2013 12:17:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32171/firefox-sends-finfisher-authors-a-cease-and-desist-letter/</guid>
</item>
<item>
<title>Recycled tablets need to be wiped</title>
<link>http://www.infosecurity-magazine.com/view/32152/recycled-tablets-need-to-be-wiped/</link>
<description>According to IDC, worldwide sales of tablets will surpass those of desktop PCs by the end of 2013, and laptops by the end of 2014. This will likely result in a new second-owner tablet market – which means that security and privacy officers now need to factor in wiping old tablets just as thoroughly as old hard disks.</description>
<pubDate>Wed, 01 May 2013 08:40:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32152/recycled-tablets-need-to-be-wiped/</guid>
</item>
<item>
<title>Kuluoz-loaded spam shines in April</title>
<link>http://www.infosecurity-magazine.com/view/32122/kuluozloaded-spam-shines-in-april/</link>
<description>As April draws to a close, its predominant malware distribution trend lies in the proliferation of spam email purporting to link to an invoice, receipt, airline ticket or other confirmation document for a large purchase. The initial payload of this campaign has been a malware trojan called Kuluoz, which uses an icon that resembles a Microsoft Office application document.</description>
<pubDate>Tue, 30 Apr 2013 19:30:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32122/kuluozloaded-spam-shines-in-april/</guid>
</item>
<item>
<title>Taiwan: Chinese cyber-army swells to 100K, hits Taipei hundreds of times per day</title>
<link>http://www.infosecurity-magazine.com/view/32116/taiwan-chinese-cyberarmy-swells-to-100k-hits-taipei-hundreds-of-times-per-day/</link>
<description>Taiwan’s National Security Bureau (NSB) said that the Chinese government continues to target its assets, and has extended its cyber-army to more than 100,000 people, with a budget in excess of $2.71 million per year to carry out hacking activities. </description>
<pubDate>Tue, 30 Apr 2013 13:15:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32116/taiwan-chinese-cyberarmy-swells-to-100k-hits-taipei-hundreds-of-times-per-day/</guid>
</item>
<item>
<title>NASA wraps up the International Space Apps Challenge</title>
<link>http://www.infosecurity-magazine.com/view/32108/nasa-wraps-up-the-international-space-apps-challenge/</link>
<description>NASA has closed its second-annual International Space Apps Challenge, a hack-a-thon that took place on April 20–21, and is now sifting through the more than 770 submissions and assembling a panel of judges to determine five global winners, to be announced in May.</description>
<pubDate>Tue, 30 Apr 2013 13:00:00 GMT</pubDate>
<guid>http://www.infosecurity-magazine.com/view/32108/nasa-wraps-up-the-international-space-apps-challenge/</guid>
</item>
</channel>
</rss>
