Latest Posts

44a2e0804995faf8d2e3b084a1e2db1d

On Iran and Pre-Emptive Cyber Attacks

March 26, 2013 Added by:Don Eijndhoven

Some say that the 'right to strike pre-emptively' is a warning shot across the bow of China, but it cannot be said that it is a timely revelation in any respect. After all, not having formally asserted this right to strike pre-emptively did not deter the cyber attack against Iran's nuclear enrichment facilities in Natanz

Comments  (0)

76e662e7786bf88946bd6c010c03ac65

Silky Paws Need Claws – The Problems of Defensive Cyberstrategies

March 25, 2013 Added by:Jarno Limnéll

For societies and armed forces there is today no credible defense without cyber capabilities. The cyber arms race has started, and its speed is accelerating. Nations and other entities are using online weapons, because they are thousands of times cheaper than conventional armaments.

Comments  (1)

Bd07d58f0d31d48d3764821d109bf165

South Korean Attack & Malware Analysis

March 25, 2013 Added by:Tripwire Inc

From several samples of the malware and logs it has been found that the malware was designed to corrupt the Master Boot Record (MBR) as well as the Volume Boot Record (VMR). Once the corruption has taken place the system reboots leaving the system unusable as the MBR is missing .

Comments  (0)

66aba1b1a2bccb57f2459a04e2e49b0e

Chinese Whispers, Chinese Lies: Analyzing Mandiant's APT1 Report

March 25, 2013 Added by:Oliver Rochford

The foremost problem with the Mandiant report is that it relies on a view of China and the Chinese Cyber-Operations that has very little to do with situational conditions on the ground.

Comments  (0)

306708aaf995cf6a77d3083885b60907

Apple Makes Two Factor Authentication Available for Apple IDs

March 22, 2013 Added by:Mike Lennon

In an effort to increase security for user accounts, Apple on Thursday introduced a two-step verification option for Apple IDs.

Comments  (0)

5e402abc3fedaf8927900f014ccc031f

Email Security: It's Every Employee's Business

March 22, 2013 Added by:Allan Pratt, MBA

Email security has become part of the job description for every employee. All it takes is one employee to cause a breach that opens up the entire company.

Comments  (0)

66aba1b1a2bccb57f2459a04e2e49b0e

Security; The non-commodity

March 21, 2013 Added by:Oliver Rochford

In an enterprise environment, a computer comes preloaded with Antivirus. For businesses, this is of course a good thing. It has sadly also had some unintended consequences – mainly to be found in the perception and expectations that customers and end-users have developed because of the commoditization of antivirus.

Comments  (2)

7ddc1f3000a13e4dfec28074e9e7b658

Under CISPA, Who Can Get Your Data?

March 21, 2013 Added by:Electronic Frontier Foundation

Under CISPA, companies can collect your information in order to "protect the rights and property" of the company, and then share that information with third parties, including the government, so long as it is for "cybersecurity purposes."

Comments  (0)

Da3ca2c61c4790bcbd81ebf28318d10a

Sun Tzu and the Art of Cyber-War

March 21, 2013 Added by:Krypt3ia

The overall tactics put forth by the Art of War are applicable because this is warfare we are talking about no matter the landscape (electronic) that we are fighting it in.

Comments  (2)

53692ae1a8e713373b8a487ce89ee3e2

The New Facebook Graph Search: How to Protect Your Privacy

March 21, 2013 Added by:Tom Eston

The Facebook Graph has evolved over the years in order to correlate as much information as possible, making it very easy to search. The issue is that anything you’ve ever posted publically, “Liked,” or were ever tagged in can be quickly searched. Here is how you can protect your privacy...

Comments  (0)

1de705dde1cf97450678321cd77853d9

Hardening Is Hard If You're Doing It Right

March 20, 2013 Added by:Ian Tibble

The early days of deciding what to do with the risk will be slow and difficult and there might even be some feisty exchanges, but eventually, addressing the risk becomes a mature, documented process that almost melts into the background hum of the machinery of a business.

Comments  (0)

E595c1d49bf4a26f8e14ce59812af80e

Conducting Secure Transactions On-the-go with VPNs

March 20, 2013 Added by:Patrick Oliver Graf

The safeguarding of private customer information has become a top priority for many organizations, thanks in no small part to government regulation and industry oversight, as we move toward an increasingly digital world.

Comments  (0)

37d5f81e2277051bc17116221040d51c

Phony Identities Result in $200 Million Fraud

March 20, 2013 Added by:Robert Siciliano

Recently, the FBI arrested 13 people in four states. Their crime? Allegedly creating thousands of phony identities with which to steal at least $200 million in one of the largest credit card fraud schemes ever charged by the Department of Justice.

Comments  (0)

7ddc1f3000a13e4dfec28074e9e7b658

The Fight Against Secret Surveillance Law Continues: EFF Asks D.C. Circuit to Order Release of Secret Legal Opinion

March 19, 2013 Added by:Electronic Frontier Foundation

In a brief filed on Friday, EFF continued its fight against secret surveillance law, asking the D.C. Circuit Court of Appeals to order the release of a secret opinion of the Office of Legal Counsel (OLC).

Comments  (0)

94ae16c30d35ee7345f3235dfb11113c

Congress is Hurting the U.S. Regarding Cybersecurity

March 19, 2013 Added by:Joel Harding

If Congress doesn’t wake up and begin asking serious questions around cybersecurity, their inattention is going to cause us great harm in the coming years.

Comments  (0)

B64e021126c832bb29ec9fa988155eaf

Installing Kali Linux on a Raspberry Pi and Connecting to it Remotely

March 19, 2013 Added by:Dan Dieterle

Kali is the newest version of the Backtrack security penetration testing Linux platform. Wouldn’t it be cool if you could run Kali from a $35 Raspberry Pi computer? This tutorial explains how to install Kali Linux on a Raspberry Pi.

Comments  (0)

0a8cae998f9c51e3b3c0ccbaddf521aa

The Castle Has No Walls - Introducing Defensibility as an Enterprise Security Goal

March 19, 2013 Added by:Rafal Los

It's time to retire the "castle" analogy when it comes to talking about how real Information Security should behave. I still hear it used a lot, and if you walked around the show floor at RSA 2013 you noticed there is still a tremendous amount of focus and vendor push around 'keeping the bad guys out.'

Comments  (0)

Bd07d58f0d31d48d3764821d109bf165

Ben Rothke on the Five Habits of Highly Secure Organizations

March 18, 2013 Added by:Tripwire Inc

There are five habits of highly secure organizations, said Ben Rothke (@benrothke), Manager – Corporate Services Information Security at Wyndham Worldwide.

Comments  (1)

94c7ac665bbf77879483b04272744424

InfoSec Quotes of the Week

March 18, 2013 Added by:Marc Quibell

I thought it would be kind of fun to kick off the week with some quotes I've read throughout the week.

Comments  (1)

6d117b57d55f63febe392e40a478011f

Insecure Security Products, Krebs Gets Swatted

March 17, 2013 Added by:Anthony M. Freed

You want to secure your networks and systems, so you deploy solutions from well known vendors. Are those security appliances themselves secure? Not always, says researcher Ben Williams of NCC Group.

Comments  (0)