Category Archives: Uncategorized

Mastercard, Visa Warn of Possible Security Breach: CNBC

MasterCard and Visa are warning banks about a possible security breach at a U.S.-based processor that could affect millions of credit-card holders

via Mastercard, Visa Warn of Possible Security Breach: Report   – US  Business News – CNBC.

Researchers find new type of ‘fileless’ malware

Researchers have discovered an extremely rare and possibly unique form of “fileless” malware that executes entirely in memory without the need to save any files to the hard drive of a victim’s PC.

The latest discovery was made by Kaspersky Lab, which received reports of a malware attack hitting a common Java vulnerability (CVE-2011-3544) on Russian websites, but without appearing to drop any files in order to instigate a conventional Trojan attack

via Researchers find new type of ‘fileless’ malware.

40% of U.S. government Web sites fail security test

Approximately 40% of federal government agencies are out of compliance with a regulation that requires them to deploy an extra layer of authentication on their Web sites to prevent hackers from hijacking Web traffic and redirecting it to bogus sites

via 40% of U.S. government Web sites fail security test.

Fewer Than 150 HIPAA Audits Expected

“I don’t think its actually going to be quite 150,” says Rodriguez, director of the Department of Health and Human Services’ Office for Civil Rights. “It will be something close to that.” That’s because of the office’s funding level and the capacity of KPMG, the firm hired to conduct the audits, Rodriguez explains in an exclusive interview with HealthcareInfoSecurity

via Fewer Than 150 HIPAA Audits Expected.

Video conferencing mistakes make espionage easy, say researchers

Tens of thousands of video conferencing setups, including some in corporate meeting rooms where the most confidential information is discussed, are vulnerable to spying attacks

via Video conferencing mistakes make espionage easy, say researchers.

Facebook, Washington state sue alleged ad scammer

Washington’s attorney general announced two new lawsuits against Adscend Media, a company that allegedly has been earning US$20 million a year using a Facebook scam

via Facebook, Washington state sue alleged ad scammer.

Hacking stunt: Stealing smartphone crypto keys using plain old radio

Encryption keys on smartphones can be stolen via a technique using radio waves, says one of the world’s foremost crypto experts, Paul Kocher, whose firm Cryptography Research will demonstrate the hacking stunt with several types of smartphones at the upcoming RSA Conference in San Francisco next month

via Hacking stunt: Stealing smartphone crypto keys using plain old radio.

Symantec: Users Should Disable PCAnywhere Now

The recommendation that users disable or delete the software is the takeaway from a surprise security advisory issued by Symantec late Tuesday, which warns customers to “only use pcAnywhere for business-critical purposes,” and even then, only after configuring the software “in a way that minimizes potential risks.”

via Symantec: Users Should Disable PCAnywhere Now – Security – Vulnerabilities and threats – Informationweek.

FBI Seeks Data-Mining App for Social Media

The FBI is looking for a “geospatial alert and analysis mapping application” that will allow its Strategic Information and Operations Center SIOC to “quickly vet, identify and geo-locate breaking events, incidents and emerging threats

via FBI Seeks Data-Mining App for Social Media – Government – Security – Informationweek.

Anonymous dupes users into joining Metaupload attack – Computerworld

he Anonymous hacking group recruited unwitting accomplices in Thursday’s attacks against U.S. government sites

via Anonymous dupes users into joining Metaupload attack – Computerworld.