Infosecurity News

Chinese group hacks into US Chamber of Commerce networks
A Chinese group allegedly hacked into the US Chamber of Commerce networks last year and gained access to information on its three million members.

Hackerazzi use Lady Gaga’s Twitter account to scam her ‘little monsters’
Hackers broke into pop star Lady Gaga’s Twitter account and broadcasted a link to a scam offer for free iPad 2s to her 17 million fans, whom she calls “little monsters.”

Feds indict 55 people in New York cybercrime ring
The Manhattan District Attorney has indicted 55 individuals for operating a $2 million organized cybercrime ring that relied on corrupt employees at companies and institutions to steal personal information of victims.
APTs expected to grow in volume and sophistication, warns Fidelis chief
Nation-state-sponsored advanced persistent threats (APTs) are only going to increase in volume and sophistication over the next few years, and the US needs to take the offense in countering these threats, argues Peter George, president and chief executive officer of network security firm Fidelis.
Wisegate launches micro-community for privacy and compliance professionals
Wisegate, a newly formed social networking site for information security professionals, has added a privacy and compliance micro-community for senior-level privacy and compliance professionals.
CA/Browser Forum issues best practices for SSL/TLS certificates
The CA/Browser Forum, a consortium of certificate authorities (CAs), has released the first international baseline requirements for the operation of CAs issuing SSL/TLS certificates.

Mounties uncover link between data breach and violent crimes in British Columbia
The Royal Canadian Mounted Police (RCMP) is investigating a link between a data breach at the Insurance Corporation of British Columbia (ICBC) and drive-by shootings and arson in the Canadian province.

Not a KISS fan? FBI arrests hacker for DDoS attack on Gene Simmons’ website
The Federal Bureau of Investigation (FBI) has arrested a hacker associated with Anonymous for a distributed denial of service (DDoS) attack against the website of Gene Simmons, front man for the band KISS and reality TV celebrity.
Ancestry.com pulls Social Security numbers from website
Ancestry.com, the online commercial genealogy service, has decided to remove from its website Social Security numbers (SSNs) of individuals deceased in the last 10 years out of security concerns.

FCC asked to investigate Verizon Wireless over Google Wallet flap
Nonprofit advocacy group Free Press is asking the Federal Communications Commission (FCC) to investigate Verizon Wireless for blocking the Google Wallet application on the Android-powered Galaxy Nexus smartphone allegedly over security concerns.
NIST issues revised Electronic Authentication Guideline
The National Institute of Standards and Technology (NIST) has issued a revised version of its Electronic Authentication Guideline (now NIST SP 800-63-1), originally published in 2006 as NIST SP 800-63.

Popularity breeds malware for Android
The recent explosion in Android malware is due to the popularity of the mobile operating system and the shift in malware distribution methods from worms to applications, according to a recent white paper by security firm McAfee.
Symantec discovers another 11 malicious Android apps
Malware in Android apps is a growing concern among security researchers. Now Symantec has discovered 11 more malicious apps. We ask what Google should be doing.
Cyber attacks could cost lives, Shell tells oil industry
Cyber attacks could cost lives and cause huge damage, according to Ludolf Luehmann, an IT manager for Royal Dutch Shell.
RSA breach tops list of 2011's most significant cybercrimes
The RSA data breach tops the list of most significant cybercrime developments of the year, according to security monitoring and threat intelligence firm Vigilant.
Homeland Security releases roadmap to improve security in cyberspace
The US Department of Homeland Security (DHS) has issued a “blueprint” that outlines measures to secure cyberspace and protect US critical infrastructure.
GFI warns online shoppers about a new phishing campaign
Since criminals always follow the crowds, it should be no surprise that GFI is warning about a new phishing campaign aimed at Christmas online shoppers.
US Army activates first cyber brigade
The US Army has activated its first cyber brigade to provide a proactive cyber defense, the service announced last week.
Missing authentication token leads to security breach for a quarter of firms
Close to a quarter of UK organizations have suffered a security breach as a result of identity fraud linked to a lost or stolen authentication device, according to an Entrust survey.
GCHQ’s cryptanalysis code challenge cracked
The deadline on the apparent GCHQ code challenge, due to expire last night, has been extended by 24 hours.



