Cisco is warning of multiple vulnerabilities in its Firewall Services Module (FWSM) for the Cisco Catalyst 6500 Series Switches and Cisco 7600 Series Routers
Read more »Cisco security products vulnerable to DoS
KDE SC 4.5 release delayed
Originally scheduled to arrive yesterday (the 4th of August), the KDE Project release team have confirmed that version 4.5 of the KDE Software Compilation (KDE SC) is delayed by one week.
Read more »Five Windows 7 security features that businesses need to know about
The words Windows and security have not always been compatible. In the past, Microsoft's quest to make its operating system as easy to manage as possible for the "typical" user has often meant sacrificing adequate safeguards against intrusion and infection.
Read more »Botnet that pwned 100,000 UK PCs taken out
Security researchers have uncovered the command and control network of a Zeus 2 botnet sub-system targeted at UK surfers that controlled an estimated 100,000 computers.
Read more »Google kills Wave and chance to reinvent online communications
Google Wave, the online product that was supposed to change how we communicate and collaborate online, was killed by the company today, a victim of slow user adoption.
Read more »Six open source projects you should be using
The IT world has overcome much of its skittishness regarding the use of open source projects. It obviously wasn't always that way, and plenty of IT shops still refuse to consider open source alternatives to commercial solutions.
Read more »The H Week - Linux 2.6.35 approaches, GNOME 3 delayed
Leading up to the arrival of version 2.6.35 of the Linux kernel, The H published the final two parts of the Coming in 2.6.35 series, GNOME 3 was been delayed until March of 2011 and Oracle shut down PostgreSQL test servers. Anti-virus makers offered protection against LNK malware, 170 million Facebook data sets were collected and a hole in WPA2 was discovered
Read more »Free online SSL test for web sites
Qualys announced a free online SSL test for web sites at Qualys SSL Labs, which examines a web site’s SSL certificate chain to ensure it is trusted and serves as a good security foundation for communications over the Internet.
Read more »Black Hat USA 2010: A recession proof conference?
The conference features ten tracks covering a wide range of topics. It's been said time and time before that the security industry is recession proof so it's no wonder that unofficial data shows that attendance up 35% from last year. By looking at the halls, it's easy to believe those numbers since they are packed with attendees from all over the world.
Read more »Best practices for cleaning up your firewall rule base
When it comes to mature technology on your network, firewalls are right up there. You certainly have at least one, and possibly many more, and it's likely they have been in place just doing their job for quite a while.
Read more »Bugs Allowed Access to Black Hat Streams for Free
A Web application security researcher has uncovered several security issues in the Black Hat Uplink portal. The bugs allowed users to view the real-time video streams from the security conference without paying the access fee.
Read more »BlackBerry encryption 'too secure'
Research in Motion, the creator of the widely used enterprise-come-consumer BlackBerry device, has an uncertain position in India.
The Indian government’s internal security and intelligence services...
No more free bugs?
The recent announcements from Google and Mozilla that revealed their intent of paying up to $3,133 and $3,000 (respectively) for an eligible vulnerability discovered by outside researchers, has been welcome news to all those security researchers who would like to get more than a mention of their name as thanks for discovering a vulnerability that could affect millions of people.
Read more »Shortened URL Spam Increases
The tendency of spammers to use shortened URLs to evade detection has gone from last year's clever exploit to this year's mainstream tactic, MessageLabs has reported.
Read more »Cybercrims hit 1.2m computers using Eleonore Explots Toolkit
Security firm, AVG, says a two-month study has resulted in its discovery of a network of 1.2 million malware-infected computers controlled by cybercriminals who were using the Eleonore exploit toolkit, commercial attack software which enables cyber criminals to infect and monitor compromised PCs.
Read more »IE8 stops one billionth malware download
Internet Explorer 8's Smartscreen Filter, used to secure users from dodgy websites, has stopped its one billionth malware download, Microsoft has proudly announced.
Read more »Wikileaks releases massive set of Afghan war files
Wikileaks, the document-leaking organization that has previously released internal U.S. military videos, on Sunday disclosed more than 75,000 confidential files related to the war in Afghanistan.
Read more »Researchers discover WPA2 vulnerability
Researchers at wireless security company AirTight Networks have uncovered a vulnerability in the widely used WPA2 security protocol, part of the 802.11 standard. The vulnerability, termed "Hole 196", which can be exploited by attackers already authenticated to the network, allows decryption of data sent by other users across the network.
Read more »MS confirms Windows shortcut zero-day flaw
Microsoft has confirmed the presence of a zero-day vulnerability in Windows, following reports of sophisticated malware-based hacking attacks on industrial control systems that take advantage of the security flaw.
Read more »Identifying suspicious URLs
This video explores online learning approaches for detecting malicious Web sites (those involved in criminal scams) using lexical and host-based features of the associated URLs.
Read more »
