Showing 46–60 of 88 posts

Dutch ISP KPN hacked, credentials and personal information leaked

Published: February 11, 2012 Reading time: 2 min

SophosLabs: One of the largest ISPs in The Netherlands has shut down its email services after hackers posted usernames, passwords, phone numbers, addresses and more of more than 500 customers on the internet. KPN discovered the attackers on its network January 27th, but decided not to disclose the information immediately after consulting with the Dutch government and law enforcement agencies. Presumably this was intended to allow them to monitor the attacker and gather evidence that might be used to apprehend and prosecute them. ...

Continue Reading

Is Waledac spam dirtying the Russian 2012 elections?

Published: February 10, 2012 Reading time: 2 min

Symantec Connect: Recently there have been several reports about the re-emergence of a botnet variant (Kelihos), which Symantec detects as W32.Waledac.C. The Waledac family is a threat that has been monitored by Symantec for many years and was featured in numerous blogs as well as a white paper. In the past, Waledac gained its infamy as a spamming botnet that utilized compromised systems to send out spam. The purpose of these spamming campaigns had usually been for self-propagation of the threat through spam emails containing a link, often (but not always) pointing to a Waledac binary file hosted on a malicious website. The variant W32.Waledac.C is also sending out spam emails, but with a twist. ...

Continue Reading

Mozilla Firefox 10.0.1 Update About To Be Released

Published: February 10, 2012 Reading time: 2 min

gHacks: Mozilla, developers of the popular Firefox web browser, have just released an update for the browser’s stable branch that moves the version to 10.0.1. The release may come as a surprise to users of Firefox 10, who were updated to that version only ten days ago. This is not the first occurrence that a critical update is released shortly after a major version upgrade of the web browser. Similar updates had to be delivered after the release of Firefox 9 and Firefox 8. ...

Continue Reading

Boston Police hits back at Anonymous with sarcasm

Published: February 10, 2012 Reading time: 1 min

SophosLabs: Is it possible to fight Anonymous? The movement is proud of saying that an idea can’t be arrested or killed, but it seems like the Boston Police Department has thought of one way of fighting back: sarcasm. A week ago, the BPDNews.com website which provides news about the Boston police and crime in the area was hacked by Anonymous. The hackers replaced the home page of the site with a message and a video of American rapper KRS-One performing his song “Sound of Da Police”. ...

Continue Reading

No further updates for Debian 5.0 Lenny

Published: February 10, 2012 Reading time: 1 min

The H-Online: The Debian developers have pointed out, in an announcement on the debian-announce mailing list, that – three years after it was released –Debian GNU/Linux 5.0 (Lenny) has reached its “End of Life”. Debian GNU/Linux 5.0 was originally released in February 2009 and on 6 February 2012, the developers stopped providing security updates for that version of the distribution. Users have now had a year to update their systems to Lenny’s successor, Squeeze, which was released on 6 February 2011. The Debian developers recommend that any installations that are still using Debian 5.0 should be updated to version 6 of the distribution immediately. The Debian community recently released version 6.0.4 of Debian Squeeze which includes all the updates that have been released for Squeeze since its release.

Continue Reading

63 Vulnerabilities on United Nation Website Exposed Online

Published: February 10, 2012 Reading time: 2 min

The Hacker News: Latest Notification in The Hacker News Vault by a Hacker named “Xenu (Casi)” from r00tw0rm Team that There are 63 Blind SQL injection Vulnerabilities exist on United Nation’s Website (www.un.org). Blind SQL injection is identical to normal SQL Injection except that when an attacker attempts to exploit an application rather then getting a useful error message they get a generic page specified by the developer instead. This makes exploiting a potential SQL Injection attack more difficult but not impossible. An attacker can still steal data by asking a series of True and False questions through sql statements. ...

Continue Reading

Google: No, We’re Not Launching Retail Stores Yet

Published: February 10, 2012 Reading time: 2 min

Mashable: Google planned to open its first-ever public store at its European headquarters in Dublin, if you believed a rumor reported by Bloomberg. But according to a company spokesperson, no plans are definite right now. A Google planning application for an expansion of its Dublin office indicated plans for an employee swimming pool, a restaurant and a store. But Google says the company doesn’t have plans to get into the retail business right now. ...

Continue Reading

Love-Seekers Beware: Online Dating Fraud Rose 150% Last Year

Published: February 10, 2012 Reading time: 2 min

Mashable: Lonely hearts seeking love this Valentine’s Day, be wary. Online dating fraud rose by 150% percent in 2011 as scammers and hucksters turned up the false charm and predatory trolling. That’s according to data shared with Mashable by fraud protection agency Iovation, which works with several major Internet dating services. Iovation reached that number by employing patented technology that analyzes hardware and software, rather than mine for personal information, says Molly O’Hearn, vice president of operations. ...

Continue Reading

LinkedIn Hits 150 Million Members

Published: February 10, 2012 Reading time: 1 min

Mashable: LinkedIn on Thursday announced it has 150 million members in its network, a 20 million increase over November. The figure was disclosed in a press release the company issued Thursday announcing its fourth quarter and full-year 2011 results. The company posted revenues of $167.7 million, beating the analysts’ consensus of $160 million for Q4. Adjusted profit was $0.12 cents per share, which beat analysts’ projections of 7 cents a share. LinkedIn’s stock was up more than 5% in after-hours trading. ...

Continue Reading

Is Digital Pearl Harbor THE most tasteless term in IT security?

Published: February 10, 2012 Reading time: 3 min

SophosLabs: Can hackers really cause as much bloodshed as 353 Imperial Japanese Navy fighters, bombers and torpedo planes launched from six aircraft carriers? Can hackers really kill 2,402 U.S. citizens, leave 1,282 wounded, lose 65 of their own attackers in the process, and plunge the United States into a World War? Heaven only knows. Maybe they can. The lack of security around Supervisory Control And Data Acquisition (SCADA) systems is scary. ...

Continue Reading

Iran increasingly controls its Internet [Update 6]

Published: February 9, 2012 Reading time: 2 min

Washington Post wrote: TEHRAN — Whenever an Iranian blogger, connects to the Internet from his office, they switches on a special connection that for years would bypass the Islamic republic’s increasingly effective firewall. But recently the software, which allowed them to go online through portals elsewhere in the world, stopped working. When it sporadically returns, speeds are so excruciatingly slow that sites such as Facebook become unusable. [SNIP] ...

Continue Reading

Foxconn hacked by Swagg Security

Published: February 9, 2012 Reading time: 2 min

The H-Online: Hackers operating under the name Swagg Security have said they were responsible for breaching the security of Chinese electronics manufacturer Foxconn. In a posting on Pastebin, the group took credit for penetrating the systems, noting that “Foxconn did have an appropriate firewall, but fortunately to our intent, we were able to bypass it almost flawlessly”. The posting pointed to a 6.5 MB torrent on The Pirate Bay which contained what appears to be CSV file dumps of database tables and other text files. The files included lists of what look like customer names, accounts and plain text passwords though many of those passwords are “foxconn” or “foxconn2”. ...

Continue Reading

A Valentine’s Day Sweepstakes: Win a Pink SONY VAIO Y

Published: February 8, 2012 Reading time: 1 min

Windows Experience Blog wrote: If you’ve been reading the blog lately, you know that I’m trying to bring back Valentine’s Day as a cool hip holiday. It’s not my fault; really, I’m just a sucker for a love note. The best thing about a Valentine’s Day card, to be honest, isn’t the words (they are always cheesy) – it’s the thought. With that thought in mind, we headed to the wilderness to create this card for you. ...

Continue Reading

Russian Spammers Eye World Content Show

Published: February 8, 2012 Reading time: 1 min

Symantec Connect: Television channels across the world are set to be at the 14th International Exhibition and Forum, World Content Show, held Feb 7- 9, 2012, in Russia. The exhibition showcases the latest technologies and trends in the TV and telecommunication industry. This techno-fair will be attended in large numbers by leading media businesses, and spammers don’t want to miss the opportunity to circulate spam around the event. In a bid to catch the reader’s attention, one such spam email reveals some appealing facts about the event, such as Interactive Elements, Prize Drawings, Performance of Popular Leader/Star, and Colorful Musical Concerts. ...

Continue Reading

Chrome Updates for Faster Browsing and Increased Security

Published: February 8, 2012 Reading time: 1 min

LifeHacker: Google is releasing a major update to Chrome today that will make browsing the web seem faster and also add security protections. Chrome 17 (17.0.963.46) pre-renders pages in the background when you type in the URL in the omnibox address bar so the site will appear to come up almost instantaneously. Chrome also now scans download executable-s (e.g., “.exe” and “.msi” files) and warns you if it thinks the file is malicious. ...

Continue Reading