Sabpab, Another Mac OS X backdoor Trojan horse as been discovered
More malware for the Mac OS X platform has been discovered, hot on the heels of the revelation that some 600,000 Macs had been infected in the Flashback attack. And just like Flashback, the new Trojan...
View ArticleStiftung Warentest: consumer testing controversy
Stiftung Warentest in Germany is like Consumer Reports in the United States. Both magazines are assumed to represent the interests of the user/consumer and consumers take their reviews as gospel before...
View ArticleTaming the tablet
Without question, the iPad has been the most disruptive piece of technology released within the last decade for businesses. The speed of its uptake has surprised everybody, and its uptake in...
View ArticleThe Case of the Past Due Doctor Bill Phishing Call
A few weeks ago I received a call from the doctor’s office during a busy day. The nice women on the other end of the call mentioned that I had a past due balance and asked if I had received the bills...
View ArticleNew version of Sabpab Mac Trojan emerges, spread via Word documents
A new version of the Mac OS X Sabpab Trojan horse has come to light, and rather than relying upon a Java vulnerability - it appears to be exploiting malformed Word documents instead.
View Articlersyslog & elasticsearch: async replication and timeout
Today I have added the capability to specify asynchronous replication support and timeout settings to omelasticsearch. Code-wise it's a small change - it just passed the required parameters to...
View ArticleDefining the Hack: Insight into the Advanced Persistent Threat
Recently you may have heard comments to the effect that “Every major company in the United States has already been penetrated by China,” or “there are two kinds of Fortune 500 companies: those that...
View ArticlePaulDotCom Security Weekly Episode 283 – Gene Kim
Tune in to PaulDotCom Security Weekly TV, Hack Naked TV, and Hack Naked At Night episodes on our YouTube Channel or our Bliptv channel. Gene Kim Interview: The real story behind Goatse: Episode 283...
View ArticlePhony Verizon Wireless emails follow AT&T wireless emails attack
Less than 2 weeks ago we reported the use of perfectly formatted AT&T Wireless emails that included multiple links to malware infested sites. These have now been followed up with similar emails –...
View ArticleHardening your Systems is Job #1
Hardening your security configurations is job #1 in preventing breaches and detecting and correcting any subsequent changes that weaken them. Yet in complex corporate IT settings, it’s easy to...
View ArticlePassport Page Tearing Scare Story Rides Again
There’s a heavily liked / commented post on Facebook doing the rounds at the moment, and unfortunately it’s the latest reappearance of a very old spam missive related to passport page tearing...
View ArticleCaution: That New Angry Birds Game Could Be Malware – Dark Reading
http://www.darkreading.com/security/vulnerabilities/232900314/caution-that-new-angry-birds-game-could-be-malware.html
View ArticleFlyingPenguin: Message In A Bottle
Davi Ottenheimer's superb presentation at RSA 2012. Enjoy. ⎆
View ArticleWhy this Criticism of SpamCop is Wrong. #HPIO Uncharacteristically, security...
Why this Criticism of SpamCop is Wrong. #HPIO Uncharacteristically, security maven +alan shimel recently jumped to the wrong conclusion about the spam filtering blacklist/reputation-service, SpamCop....
View Article[Honeypot Alert] Joomla com_s5clanroster Local File Inclusion Attacks
Our web honeypots picked up some increased scanning for the following Exploit-DB vulnerability:...
View ArticleSecurity Misconceptions: 96% Of IT Staff Do Not Trust Their End users To Make...
Sophos survey results highlight need to educate employees on IT security issues and best practices
View ArticleYet more SabPab info…
Some more useful info from Graham Cluley on the SabPab/SabPub (how many silly names can one sappy example of malware attract anyway?!) variant that uses the Word vulnerability known to its friends as...
View ArticleWhere You Want to Be This Week for 04-16-2012
Where do you want to be this week? Now you’ll always know with our “Where You Want to Be This Week” feature, which will tell you about infosec meetups happening in your local area as of Sunday night....
View ArticleSourcefire Protects Against 99 Percent Of Attacks In Recent NSS Labs Test
FirePOWER appliances exceed Sourcefire’s previous industry record
View Article