Internet Security

Expert: Critical system flaws a 'ticking time bomb'

CNet Security - 8 hours 51 min ago
Combining legacy SCADA systems that have their own weaknesses with Internet technologies is a dangerous mix for protecting systems that provide energy, water and other basic needs, Black Hat presenter says.

Originally posted at InSecurity Complex

Categories: Internet Security

Black Hat shines light on security (roundup)

CNet Security - 10 hours 56 min ago
Las Vegas is the setting this week for two of the most popular annual security events. First comes Black Hat for the professional crowd, followed by the more antic Defcon gathering.
Categories: Internet Security

Hacker breaks into ATMs, dispenses cash remotely

Zero Day - ZDNet - 11 hours 19 min ago

Using home-brewed software tools and exploiting a gaping security hole in the authentication mechanism used to update the firmware on automated teller machines (ATMs), a security researcher hacked into ATMs made by Triton and Tranax and planted a rootkit that dispensed cash on demand.



Categories: Internet Security

Security researcher demonstrates ATM hacking

CNet Security - 11 hours 33 min ago
IOActive's Barnaby Jack reveals at Black Hat how he found ways to remotely log into ATMs without a password and force them to spit out cash.
Categories: Internet Security

Apple patches Safari Auto-Fill security hole

Zero Day - ZDNet - 16 hours 7 min ago

Apple has shipped a major Safari browser update to fix 15 documented security holes, including a known flaw in the browser’s AutoFill Web Forms feature that can be hacked to steal data from the computerâs address book.



Categories: Internet Security

Microsoft ships anti-exploit tool for IT admins

Zero Day - ZDNet - 16 hours 30 min ago

The tool, called Enhanced Mitigation Experience Toolkit (EMET) works by applying security mitigation technologies to arbitrary applications to block against exploitation through common attack vectors.



Categories: Internet Security

Middle East countries: the BlackBerry is a national security threat

Zero Day - ZDNet - 17 hours 8 min ago

The United Arab Emirates (UAE) has described RIM’s device as a threat posing “serious social, judicial and national security repercussions” due to the country’s inability to successfully eavesdrop on users, and the fact that transmitted data is stored offshore. Does the BlackBerry really pose a threat to national security?



Categories: Internet Security

Adobe joins Microsoft's vulnerability-sharing club

Zero Day - ZDNet - 17 hours 19 min ago

Adobe will give anti-virus, intrusion prevention/detection and corporate network security vendors a headstart to add signatures and filters to protect against security flaws in its widely deployed product suites.



Categories: Internet Security

Adobe to follow Microsoft plan of sharing security info

CNet Security - 19 hours 38 min ago
The company will begin sharing vulnerability information early with security vendors just as Microsoft does. Plus: a new toolkit from Redmond.

Originally posted at InSecurity Complex

Categories: Internet Security

Microsoft at Black Hat: Community-based defense in force

Zero Day - ZDNet - Wed, 07/28/2010 - 15:30

Microsoft’s Matt Thomlinson argues that community-based defense is important to fight cybercrime and stay ahead of malicious hacker attacks.



Categories: Internet Security

Check counterfeiting using botnets and money mules

CNet Security - Wed, 07/28/2010 - 12:00
SecureWorks uncovers bizarre criminal operation that uses digital techniques to aid in old-school check counterfeiting.

Originally posted at InSecurity Complex

Categories: Internet Security

Report: Most data breaches tied to organized crime

CNet Security - Wed, 07/28/2010 - 04:01
Verizon's annual data breach report combines data from the U.S. Secret Service and covers more than 143 million compromised records.

Originally posted at InSecurity Complex

Categories: Internet Security

Tabs get tweaked in Firefox 4 beta 2

CNet Security - Tue, 07/27/2010 - 21:34
Firefox 4 beta 2 continues Mozilla's push to release new features and under-the-hood improvements to beta testers faster.

Originally posted at The Download Blog

Categories: Internet Security

Google plugs 'high risk' Chrome security holes

Zero Day - ZDNet - Tue, 07/27/2010 - 21:19

Google has shipped a new version of its Chrome browser to fix three high-risk security holes that expose web surfers to malicious hacker attacks.



Categories: Internet Security

Juniper Networks to acquire SMobile Systems

CNet Security - Tue, 07/27/2010 - 21:09
Acquisition price for mobile security provider SMobile is about $70 million in cash, companies say.

Originally posted at InSecurity Complex

Categories: Internet Security

Indefinite vulnerability secrecy hurts us all

Zero Day - ZDNet - Tue, 07/27/2010 - 17:17

Michal Zalewski: Indefinite vulnerability secrecy hurts us all by removing all real incentives for improvement, and giving very little real security in return.



Categories: Internet Security

App Genome Project eyes iPhone, Android security

CNet Security - Tue, 07/27/2010 - 15:54
Researchers at mobile security firm Lookout say many security issues with Android and iPhone apps result from innocent coding mistakes in third-party software.

Originally posted at InSecurity Complex

Categories: Internet Security

Hackers to flock to Black Hat, Defcon this week

CNet Security - Tue, 07/27/2010 - 11:00
Researcher to give talk on ATM security holes that was canceled a year ago, but talk on Chinese cyber army is axed after Taiwan complains.

Originally posted at InSecurity Complex

Categories: Internet Security

Google fixes Chrome holes, seeks security reform

CNet Security - Tue, 07/27/2010 - 07:56
Seven holes are fixed, six researchers who found them are paid bounties, and Google urges all software makers to fix serious problems within 60 days.

Originally posted at Deep Tech

Categories: Internet Security