Infosecurity News
Daily Telegraph third-party website hacked and defaced
A Daily Telegraph third-party website is the latest high-profile site to be defaced by hackers apparently unhappy about the news organisation referring to Romanians as gypsies.
Toshiba Research Europe announces breakthrough in ultra-secure computing
Ultra-secure encryption of sensitive data sent by banks, hospitals and government organisations could be a reality within three to five years, says Toshiba Research Europe.
Porn sites top drive-by download list
Porn sites are still the most likely online destinations to be compromised with malware, in spite of increasing attacks on legitimate non-porn websites, according to a report released by security company Commtouch this week.
Former NSA official indicted for information theft
A former National Security Agency senior executive has been indicted for retaining classified information, obstructing justice and making false statements.
Researchers reveal Internet Explorer 8 XSS filtering flaw
A pair of security researchers have identified a way to use security tools within Internet Explorer 8 to compromise a website. The attack uses cross-site scripting filters implemented in the latest version of the Microsoft browser to execute cross-site scripting attacks on sites that would normally be invulnerable to them.
Researcher releases malware hub forensics tool for Firefox
A Websense researcher has released a forensics tool designed to identify malicious web content from within the Firefox browser. Called Fireshark, the plug-in was released on Wednesday at the Black Hat security conference by Stephan Chenette, a principal security researcher at Websense.
Apache.org hit by XSS attack
The website for the open source Apache Web server at Apache.org was compromised this month by a targeted attack, said the Apache Software Foundation, which has provided a detailed blow-by-blow account of the hack.
Internet Explorer exploitation was most significant cybercrime issue during March
The latest monthly malware and vulnerability statistics released by Kaspersky Lab claims to show that the exploitation of vulnerability in Internet Explorer was the most significant cybercrime threat during the month of March.
Ministry of Defence: another day, another data loss
Detailed figures just released by the Ministry of Defence show that the military arm of the government had a total of 347 data loss incidents in 2009, with 71 further losses of confidential information in January plus February of this year alone.
Granular firewall environment needed for Facebook and Twitter
One of the least-reported areas of IT security in recent times is the topic of firewalls but, according to Gabi Reish, head of network security with Check Point, the technology is now into its fifth generation, largely as a result of the rise of the internet.
Attackers use PAC feature to redirect browsers
Brazilian malware writers are making use of a long-available feature within most modern browsers to launch attacks that redirect victims to malicious websites without their knowledge. The feature, known as proxy auto config, is turning up in banking trojans, according to researchers from Kaspersky.
Game consoles at work threaten corporate security
Games console in the workplace pose an increasingly serious threat to enterprise security, according to new research from Sunbelt Software. The anti-malware vendor said that almost 4 in 10 respondents to the survey had no idea about any of the documented threats relating to online console gaming.
Feds lagging on FDCC, watchdog says
Federal agencies are lagging behind in the implementation of the Federal Desktop Core Configuration (FDCC) requirements, according to the US Government Accountability Office.
Network Solutions fixes WordPress installations
Web hosting company Network Solutions has deployed a massive fix for a configuration flaw that led to hundreds of WordPress blogs being compromised.
IT job growth stagnates during March
Numbers from IT advocacy group TechServe Alliance show that IT job growth declined month-over-month in March, putting a halt to the uptick the industry has experienced since December of last year.
Weekly Brief, April 13, 2010
Infosecurity reviews the week's security news
EXIF mining tool released
EviGator has released TAG Examiner, a tool for examining large quantities of image files to recover metadata.
New York resident sentenced in Charles Schwab hacking scam
A Manhattan resident was sentenced last week for his part in an international money laundering and data theft scheme that hacked into accounts at brokerage firm Charles Schwab.
File sharing law firm bows out of mass copyright legal actions
The Consumer's Association has launched a publicity campaign against the law firms generating large numbers of copyright actions against alleged internet filesharers, and it appears to have paid off.
Windows mobile game offers free trojan
A new Windows Mobile game - apparently being offered free of charge - has a nasty surprise hidden inside; a trojan that makes very expensive international phone calls.



