Syndicate content
    The security news site for systems administrators & hackers - keeping you informed about all the top security news stories updated daily
    Updated: 52 min 28 sec ago

    Rootsecure

      Wired: ACLU Sues Over Laptop Border Searches
      PC Pro: Dubais dubious internet censorship
      Wired: Court OKs Warrantless Cell-Site Tracking
      The Register: Wikileaks caught up in Swedish police raids "Pinter told The Local the raids were the culmination of a four-year investigation into a film sharing network called The Scene"
      Thinq: Pirate Bay down, police raids across Europe
      EETimes: Cryptography for embedded systems - Part 1 - Security level categories & hashing [Part 2 | Part 3]
      Net Security: Behind the scenes and inside workings of a CERT
      Slashdot: Sony Has Lost the PS3 Hacking War
      Sophos: TechCrunch Europe serves up malware attack
      Network World: Can a Relative or Roommate Spy on Me?
      CIO: Women did well on Defcon social engineering test
      arstechnica: Quantum key distribution in superposition of "insecure" and "unneeded"
      XSSed: Twitter developer platform search field vulnerable to XSS
      The Register: USB stick with anti-terror training found outside police station
      H Security: Flash Player as a spy system
      Wired: Insiders Doubt 2008 Pentagon Hack Was Foreign Spy Attack
      ha.ckers: The Effect of Snakeoil Security
      Krebs On Security: VISA Blocks ePassporte
      H Security: Microsoft hardening tool with graphical user interface
      CNN: Toshiba recalls 41,000 computers over risk of burns
      Slashdot: Major Battle Brewing Between French Gov't and ISPs
      Slate: The Internet's Secret Back Door "Web users in the United Arab Emirates have more to worry about than having just their BlackBerries cracked"
      The Local: New government ID cards easily hacked
      Invisible Things: About Apples Security Foundations, Or Lack Of Thereof...
      NewTeeVee: Flash on Android Is Shockingly Bad
      Wired: Murdoch Reporters Phone-Hacking Was Endemic, Victimized Hundreds
      Slashdot: Open Source PS3 Jailbreak Released
      Nature: Hacking commercial quantum cryptography systems by tailored bright illumination
      SC Magazine: Certain HP scanners can permit snooping and spying
      Network World: Deutsche Post kicks off bug bounty contest "Researchers can make up to $6,400 for finding flaws in German firm's secure message service"
      IT World: China demands real names from mobile phone users
      Threat Post: Google Code Discovered Serving Malware
      Darknet: Windows PowerShell DNS Server Blackhole Tool Blacklist Domains
      H Security: Secunia's PSI 2.0 beta tackles Windows update annoyances
      c|net: Cars - The next hacking frontier?
      Krebs On Security: MS Fix Shores Up Security for Windows Users
      Network World: Gmail promo for Priority Inbox creeps out Chrome users
      Net Security: Misconfigured networks main cause of breaches
      Bruce Schneier: Eavesdropping on Smart Homes with Distributed Wireless Sensors
      SANS: Interesting PHP injection
      Security-Shell: eBay Motors XSS vulnerability
      phpMyAdmin: Insufficient output sanitizing when generating configuration file
      Nature: Hackers blind quantum cryptographers "Lasers crack commercial encryption systems, leaving no trace"
      Guardian Unlimited: A working life - The computer virus expert
      Slashdot: Some Windows Apps Make GRUB 2 Unbootable
      Renesys: House of Cards "What do you think would happen if another large and unusual routing announcement was made on the Internet?"
      Sophos: Did Gmail make you look like a spammer this week?
      MSN News: BlackBerry says no 'master key' to access encrypted data
      The Register: RIM proposes crypto forum to dodge India BlackBerry ban
      ZDNet AU: Hackers accidentally give Microsoft their code "When hackers crash their systems while developing viruses, the code is often sent directly to Microsoft,"
      Security-Shell: Ebay XSS
      Security-Shell: Verizon website vulnerable to XSS and SQL Injection
      Net Security: 25% of new worms are designed to spread through USB devices
      Sprites mods: DiskGenie Review
      Prevx: TDL3 rootkit x64 goes in the wild
      H Security: US Deputy Secretary of Defense confirms virus attack
      Invisible Things: PDF signing and beyond
      The Atlantic: Analog Hacker Raises $20k to Make Handmade Lockpicking Tools
      Krebs On Security: Adobe, Apple Issue Security Updates
      Fast Company: Is U.K.'s New Passport Design More Secure Than the Last?
      Time: The Government Can Use GPS to Track Your Moves
      Network World: Pentagon official details U.S military net hack
      Server Fault: Should Developers have Access to Production?
      Android Developers: Google responds to Android DRM breach, promises how-to on obfuscating code
      Bruce Schneier: Social Steganography
      c|net: Google testing voice calling in Gmail
      c|net: Students spy on teachers, boast on Facebook
      Krebs On Security: MalCon - A Call for Ethical Malcoding
      Computer World: Hacking toolkit publishes DLL hijacking exploit
      The Register: Google Marketplace DRM broken
      CNN: New strategy game sheds unpopular anti-piracy system
      Aditya K Sood's Blog: Google Chrome HTTP AUTH Dialog Spoofing through Realm Manipulation
      Krebs On Security: Anti-virus Products Struggle Against Exploits
      H Security: Police confiscate hardware from VPN provider
      H Security: phpMyAdmin updates close vulnerabilities
      Slashdot: Germany To Grant Privacy At the Workplace
      The Register: Trojan-ridden warning system implicated in Spanair crash
      Technology Review: It's Gamers vs. Game Companies
      ha.ckers: MitM DNS Rebinding SSL/TLS Wildcards and XSS
      arstechnica: Newly detected SQL injection attack snags Apple in wide net
      International Business Times: Germany to roll out ID cards with embedded RFID
      Prevx: An old-new 0day Windows flaw on the horizon?
      eWeek: Facebook Places Privacy Controls Get EFF Approval "The Electronic Frontier Foundation said privacy controls in Facebook Places show a substantial improvement over those used in earlier products"
      Computer World: Google patches 10 Chrome bugs, pays out $10K in bounties
      H Security: Google closes critical vulnerabilities in Chrome 5
      PBS: Radio Frequency Identification Tags - Identity Theft Danger or Modern Aid?
      Invisible Things: The MS-DOS Security Model
      Slashdot: PS3 Hacked via USB Dongle
      Darknet: Tshark Network Protocol Analyzer & Traffic Dumper
      Slashdot: 1978 Cryptosystem Resists Quantum Attack
      Threat Post: Owning Virtual Worlds For Fun and Profit
      Slashdot: Linux Xorg Critical Security Flaw Silently Patched
      SANS Forensics: Benefits of using multiple timestamps during timeline analysis in digital forensics
      SANS Forensics: Digital Forensics - Introducing ForensicArtifacts.com
      The Register: Mozilla eases fears over phishy URL alert
      c|net: Social Engineering 101 (Q&A)
      H Security: Mud-slinging in the Warez scene
      O'Reilly Radar: On re-reading Steven Levy's Hackers
      Invisible Things: Skeletons Hidden in the Linux Closet - r00ting your Linux Desktop for Fun and Profit [pdf]
      Network World: EFF Warns of Untrustworthy SSL, Undetectable Surveillance
      Threat Post: New Firefox iFrame Bug Bypasses URL Protections
      Information Week: Passwords Quickly Hacked With PC Graphics Cards "Georgia Tech researchers find that high-end, readily available graphics processing units are powerful enough to easily crack secret codes"
      Net Security: SSL Labs - Researching the technology that protects the Internet
      IEBlog: Add-ons, and Opting out of Google Analytics Without Them
      BBC Watchdog: Cult of less - Living out of a hard drive
      The Register: Hackers - 'ColdFusion bug more serious than Adobe says'
      The Register: Android app secretly uploads GPS data, warns Symantec
      Info World: The Terry Childs case - San Francisco is just as guilty
      New York Times: Web Photos That Reveal Secrets, Like Where You Live
      Gigaom: Software Uses Twitter, Flickr to Let Dissidents Send Secret Messages
      Computer World: Stupid data center tricks "Sure, technology causes its share of headaches, but human error accounts for roughly 70% of all data-center problems"
      Wired: Cyberwar Against Wikileaks? Good Luck With That
      c|net: Feds still questioning AT&T iPad site hackers
      F-Secure: I possibly wont be back for a while...
      The Register: Skype and Google next against the wall in India "The Indian government is planning to take on Skype, Google and everyone else offering secure comms once it's brought RIM properly to heel"
      Oregon Live: Beaverton man steals thousands from stores by cloning gift cards "Zepeda cloned gift cards that others had purchased using a computer program he found online"
      The Register: NTLM authentication - still broken after all these years
      Wired: How Spies (And Counter Spies) Are Using The Cloud
      Network World: Workarounds - 5 ways employees try to access restricted sites
      Wired: Alleged Carder BadB Busted in France Watch His Cartoon
      H Security: Known by their wheels
      Bruce Schneier: Security Analysis of Smudges on Smart Phone Touch Screens [pdf]
      SANS Forensics: Computer Forensics - Identifying Disk Differences - Broken Mirrors
      Network World: 'Dangerous' iPhone exploit code goes public
      Net Security: An analysis of fuzzing 4 products with five lines of Python
      SANS Forensics: Digital Forensics Recertification (Beyond the Cert)
      The Register: Microsoft purges Windows of serious SSL vuln
      Mac World: Apple patches security hole in pair of iOS updates
      arstechnica: Cars hacked through wireless tire sensors
      Krebs On Security: Shunning and Stunning Malicious Networks
      BBC Watchdog: BBC Builds Smartphone Malware For Testing Purposes
      iDefense Labs: Microsoft Word RTF File Parsing Heap Buffer Overflow Vulnerability
      F-Secure: Questions and Answers on the JailbreakMe Vulnerability
      Slashdot: VideoLAN Announces libaacs on Tuesday August 10, @06 -51PM
      H Security: Vulnerability in OpenSSL 1.0.x
      H Security: First SMS trojan for Android detected
      Wired: John Doe Who Fought FBI Spying Freed From Gag Order After 6 Years
      Wired: Comcast.net Hijacker Gets 4 Months
      GCN: Zero-day Windows kernel flaw linked to Clipboard
      WSJ: Google Agonizes on Privacy as Ad World Vaults Ahead
      Net Security: Security B-Sides - The anti-conference
      Iron Geek: Barcode Fuzzer, Bruteforcer, SQL/XSS Injector using a flashing LED
      The Register: How an ancient printer can spill your most intimate secrets [pdf] "This so-called side-channel attack works by recording the acoustic emanations of a confidential document being printed"
      SANS Forensics: Review - Access Data Forensic Toolkit (FTK) Version 3 - Part 1
      Info Security: Google image search being infected by hackers
      i4U News: Easy Root Removed From Android Market
      Network World: Vary usernames and passwords on secure websites - study
      H Security: VxWorks flaws allow access to numerous network devices
      H Security: Critical or not - Opinions differ about Windows bug
      Net Security: How to render SSL useless
      Krebs On Security: Foxit Fix for Jailbreak PDF Flaw
      Slashdot: Cache On Delivery Memcached Opens an Accidental Security Hole
      Computer World: Mozilla plans to silently update Firefox "Joins Google, Adobe in auto-update movement to take patching out of users' hands"
      Forex Yard: Estonian extradited to US faces ATM hacking charges
      EFF: Court Rejects Warrantless GPS Tracking
      2600: Next Hope Videos and Audio Now Available
      The Register: Defcon speaker calls IPv6 a 'security nightmare'
      Wired: Appeals Court Rules Against Secret Police GPS Tracking
      SANS Forensics: Digital Forensics Case Leads Aug 5, 2010 - Decon 18 and more
      SC Magazine: Microsoft readies record 14 fixes, eight critical
      Krebs On Security: Crimepack - Packed with Hard Lessons
      SANS: Access Controls for Network Infrastructure
      Mac World: iPhone 4 carrier unlock released by Dev Team
      BBC Watchdog: Bank scam targets 100,000 people in the UK "A network of thousands of compromised computers that is being used to harvest online banking details has been uncovered in the UK"
      eWeek Europe: Most Consumers Support Government Cyber-Spying "Sixty-three percent of people believe that it is acceptable for their government to spy on another country's computer systems"
      Darknet: Peach Fuzzing Platform
      Net Security: Top 5 undiscovered vulnerabilities found on enterprise networks "non-traditional IP-enabled devices, such as smart phones, building controls, ATMs, POS devices, and medical equipment"
      Wired: CIA Software Developer Goes Open Source, Instead
      The Register: Botnet that pwned 100,000 UK PCs taken out
      Net Security: Six arrested for compromising 10,000 online bank accounts "Six people have been arrested on suspicion of stealing credit cards, personal information and banking details as part of a suspected online banking fraud"
      eWeek Europe: Smart Meters Will Be Hacked, Warn Researchers "The actual meters are a weak point between home networks and smart grid infrastructure that will be exploited"
      Net Security: How Web frameworks kill traditional security scanning
      Cryptome: Project Vigilant Is a Fraud
      Real Security: List of Online Anti-Malware (File) Scanners
      F-Secure: JailbreakMe 2.0 Uses PDF Exploit
      Krebs On Security: Anti-virus Products Mostly Ignore Windows Security Features
      Security Week: Hacker Uses XSS and Google Street View Data to Determine Physical Location
      c|net: DOE - Common security holes leave energy grid vulnerable
      Security-Shell: Black Hat Schedule website XSS vulnerability
      Games Beat: Live demos show how the Nintendo DS and the Wii can be hacked to spread malware
      Darknet: Weaknet Linux Penetration Testing & Forensic Analysis Linux Distribution
      SANS: When Lightning Strikes
      Wired: JailbreakMe Unlocks iPhone 4, iPad With Your Browser
      Net Security: BlindElephant - Open source web application fingerprinting engine
      Washington Post: WikiLeaks must be stopped
      Billy (BK) Rios: Stealing Files With Safari 5
      Krebs On Security: Texas Firm Blames Bank for $50,000 Cyber Heist
      Net Security: Project Vigilant searching for volunteer hackers at Defcon
      The Register: Cell phone eavesdropping enters script-kiddie phase
      Michael Coates: The Irony - Black Hat Video Stream Hack
      Bruce Schneier: Book Review - How Risky Is It, Really?
      c|net: Hackers release browser-based iPhone 4 jailbreak
      Packetstan: Potential Evasion Where IPS Fails to Validate TCP Checksums
      The Register: Ofcom prepares to open up on emissions
      Full Disclosure: Screen_unlock - Windows logon screen unlocker
      Reuters: Million BlackBerry users face hit after Gulf bans
      c|net: Researcher detained at U.S. border, questioned about Wikileaks
      c|net: Detergent uses GPS to stalk customers
      Wired: Hacker Spoofs Cell Phone Tower to Intercept Calls
      WSJ: The Web's New Gold Mine - Your Secrets
      Wired: Biometric and Other Locks Fail to Foil Hackers at DefCon
      WSJ: Wal-Mart Radio Tags to Track Clothing
      PC World: How to Steal Corporate Secrets in 20 Minutes - Ask
      Network World: FBI rings organizers over Defcon contest
      c|net: Report - Google, CIA fund predictive analytics firm
      cnet: Tighter security coming in Firefox 4
      Live Science: Internet 'Key Holders' Are Insurance Against Cyber Attack
      Krebs On Security: Microsoft to Issue Emergency Patch for Critical Windows Bug
      Light Blue Touchpaper: Passwords in the wild, part IV - the future
      Darknet: iKAT Interactive Kiosk Attack Tool v3
      SANS Forensics: Trusting Your Tools
      SANS: Web Traffic Analysis with httpry
      FBI: FBI, Slovenian and Spanish Police Arrests Mariposa Botnet Creator, Operators
      SC Magazine: Black Hat 2010 - Even with SSL/TLS, browsers still are susceptible to attack
      SC Magazine: Black Hat 2010 - Like Safari, Internet Explorer 6 and 7 suffer from auto-fill flaw
      Light Blue Touchpaper: Passwords in the wild, part III - password standards for the Web
      CFO: Copiers - How Great Are the Risks? "The current buzz is about their hard drives, but more crucial is to safeguard their operating systems"
      The Inquirer: Black Hat - ICANN says DIY DNS certification is revolutionary
      Network World: Google cleared over StreetView WiFi snooping
      Net Security: Google has two times more malware than Bing, Yahoo! and Twitter combined
      Wired: Exclusive - Google, CIA Invest in Future of Web Monitoring
      Washington Post: White House proposal would ease FBI access to records of Internet activity
      eCommerce Guide: FTC Leaning Toward Do-Not-Track List for Online Ads
      Info World: AT&T won't stop Black Hat demo of cell phone eavesdropping "The operator denies rumors it will try to block a hacker's demonstration of cell phone call interception at the Black Hat conference"
      Information Security Investigator: BlackHat 2010 Video! The ATM Hack and Jackpot
      Information Security Investigator: BlackHat Briefings 2010 - Day 1 LiveBlog
      Light Blue Touchpaper: Passwords in the wild, part II - failures in the market
      c|net: Security researcher demonstrates ATM hacking
      c|net: Black Hat shines light on security (roundup)
      H Security: Facebook crawler collects more than 170 million data sets
      Wired: Second Student Sues School District Over Webcam Spying
      Wired: Ukrainian Carding King Maksik Was Lured to Arrest
      Reg Hardware: UK bans Nintendo DS homebrew code installer
      F-Secure: Rogue AV Masquerades as a Firefox/Flash Update
      Network World: Black Hat - Most browsers can be made to give up personal data
      Light Blue Touchpaper: Passwords in the wild, part I - the gap between theory and implementation
      Krebs On Security: Rogue Antivirus Victims Seldom Fight Back
      The Register: Russian gang uses botnets to automate check counterfeiting
      The Register: UAE sees security threat in BlackBerrys
      The Register: Police force more suspects to give up crypto keys "Police have expanded their use of powers to force suspects to decrypt files by 50 per cent in the last year, figures released today reveal"
      Guardian Unlimited: US security chiefs tricked in social networking experiment "Fake analyst gained access to dozens of US security and intelligence officials"
      tuaw: Citibank says iPhone app has security flaw
      H Security: Anti-virus vendors offer free LNK protection
      Network World: The Next Big Privacy Concern - RFID Spychips
      Wired: Privacy Suit Targets Net Giants Over Zombie Cookies
      ISPreview: UK ISP TalkTalk Monitoring its Customers Online Activity Without Consent
      The Register: Battle joined for future of open source IPS
      c|net: Google fixes Chrome holes, seeks security reform "Just before the Black Hat security conference begins, Google has patched seven secuity holes in its stable version of Chrome"
      Tech Republic: Welcome to the future - cloud-based WPA cracking is here
      IT Jungle: Human Error the Number One Cause of Data Loss, Survey Says
      Light Blue Touchpaper: Who controls the off switch?
      The Register: AT&T delivers iPhone data choke relief
      Enterprise Networking Planet: Three Steps to a Cracked Android Device
      Slashdot: Jailbreaking iPhone Now Legal
      Chris Paget's Blog: Privacy concerns at Defcon "Im planning to give a pretty spectacular demonstration of cellphone insecurity at Defcon"
      Info World: The quiet threat - Cyber spies are already in your systems
      Economist: A tide turns "Technology used to help spies. Now it hinders them"
      Wired: U.S. Declares iPhone Jailbreaking Legal, Over Apples Objections
      Court House News: Court Rules Bypassing Dongles Not a DMCA Violation "General Electric did not infringe on a power supplier's digital copyrights when it used protected software unlocked through a hacked security key"
      Network World: WPA2 vulnerability found "'Hole 196' means malicious insiders could spoof WI-Fi packets, compromise WLAN"
      Computer World: Iran was prime target of SCADA worm
      Threat Post: Microsoft Says No to Paying Bug Bounties
      The Register: 'Freeware' phishing kit dupes s'kiddies
      GCN: Dell ships infected motherboards "If they will bug the bricks in our walls, I would expect them to do the same to our computers"
      Threat Post: Microsoft Shifts to 'Coordinated Vulnerability Disclosure' Policy
      PC World AU: New 'Kraken' GSM-cracking software is released
      Computer World: New 'Kraken' GSM-cracking software is released
      Darknet: Sagan - Real-time System & Event Log
      The Register: iPhone thief nabbed by GPS, cops say
      eWeek Europe: Digital Act To Create Pirate ISPs In UK "Service providers will split up to make smaller 'pirate' ISPs, in response to Ofcom's draconian file-sharing proposals"
      Network World: Is open source Snort dead? Depends who you ask "Open Information Security Foundation says it's so; Snort's creator disagrees"
      Forbes: Researchers Will Turn Google And Bing Into Web Bug Warning System
      Krebs On Security: Tool Blunts Threat from Windows Shortcut Flaw "Microsoft has released a stopgap fix to help Windows users protect themselves against threats that may try to target a newly discovered, critical security hole"
      Gizmodo: Wikileaks Critic Adrian Lamo Defends Manning Decision
      Forbes: Handy Light iPhone App -- Yanked From App Store -- Offered Secret Tethering Feature
      Engadget: Researcher will enable hackers to take over millions of home routers
      H Security: Auto-complete - browsers disclose private data "auto-complete data can reportedly be retrieved automatically via JavaScript in Safari 4 and 5"
      PC Pro: Is HSBC's security software more trouble than it's worth "Davey Winder wonders whether HSBC's Trusteer Rapport software is worth the hassle"
      Bruce Schneier: Economic Considerations of Website Password Policies "Two interesting research papers on website password policies"
      Krebs On Security: Skimmers Siphoning Card Data at the Pump "Bluetooth based wireless skimmers have been found attached to a slew of gas station pumps"
      Wired: SCADA Systems Hard-Coded Password Circulated Online for Years
      Lifehacker: TrueCrypt 7.0 Gets Intel Hardware Acceleration and Better Automatic Mounting
      H Security: Episode 3 - PDF time bomb
      Technology Review: Passwords that are Simple--and Safe "A new approach does away with the need for long strings of letters and numbers"
      c|net: Adobe Reader to block attacks with sandbox tech
      IT World: Apple lays out location collection policies "In response to questions from lawmakers, the iPhone maker details the kind of location data it collects"
      Info World: IT pros - Lurking legal gotchas and how to avoid them "Ignorance and seemingly innocent activities can subject you to fines, lawsuits, and even jail. Here's how to play it safe"
      GCN: DNSSEC now fully deployed on the Internet root
      Wired: Is Breaking CAPTCHA a Crime?
      Darknet: thc-ipv6 Toolkit - Attacking the IPV6 Protocol
      c|net: VeriSign adds malware scanning to SSL services
      Cryptome: Wikileaks Timeline Manning-Lamo-Poulsen Case
      H Security: Mozilla offers $3,000 for bug reports
      Threat Post: VeriSign Revokes Certificate Used to Sign Stuxnet Malware
      Textually: A new field of forensic study for iPhones
      Slashdot: TI vs. Calculator Hobbyists, Again
      ZDNet: Windows token kidnapping returns to haunt Microsoft
      c|net: Wikileaks editor skips NYC hacker event
      CSO: Black Hat, DefCon and B-Sides - A survival guide
      Network World: Researchers - Password crack could affect millions "A well-known cryptographic attack could be used by hackers to log into Web applications used by millions of u"
      F-Secure: More Analysis of Case LNK Exploit "targeting SCADA systems"
      ZDNet UK: Microsoft opens source code to Russian secret service "Microsoft has signed a deal to open its Windows 7 source code up to the Russian intelligence services"
      Computer World: Some experts question efforts to identify cyberattackers
      Netcraft: Firefox security test add-on was backdoored
      Mobile Crunch: Droid X actually self-destructs if you try to mod it
      Krebs On Security: Experts Warn of New Windows Shortcut Flaw
      Enterprise Networking Planet: Three Steps to a Cracked iPhone "All that's needed is the victim's phone number, the iPhone Configuration Utility available free from Apple for OS X or Windows, and a proxy server"
      The Register: Mozilla snuffs password pilfering Firefox add-on
      Krebs On Security: The Case for Cybersecurity Insurance, Part II
      H Security: Crypto tool predicts password cracking time
      H Security: Express patch for Windows Help Center
      Krebs On Security: Microsoft Security Updates, and a Farewell to Windows XP Service Pack 2
      BBC Watchdog: China Green Dam web filter teams 'face funding crisis' "Reports from China say a controversial government-backed software project to filter internet content could be on the brink of collapse"
      The Register: IBM employee sparks massive bank outage
      SANS Forensics: Linux Programming Tools
      Superstore Search: Top 10 Hottest Items Stolen Online
      Net Security: First embedded Linux OS to be accepted for EAL4+ certification
      The Register: Reverse engineer extracts Skype crypto secret recipe
      Cryptome: Conficker, Cyber Emergency, and the Internet Kill Switch
      TNW: Hacker Creates Plugin That Trashes Chromes Security
      Redmond Mag: What Does Microsoft Know About You?
      H Security: Symantec scores own goal - its World Cup web site is full of spam comments
      BBC News: BT and TalkTalk challenge Digital Economy Act
      New York Times: Credit Card Hackers Visit Hotels All Too Often
      Network World: The Robin Sage experiment - Fake profile fools security pros
      Network World: Cisco warns attendees that the Cisco Live database was hacked "Cisco says hack was quickly closed, but says some 'listings' were 'accessed'"
      H Security: Skype's encryption procedure partly exposed
      Network World: Poor SSL set-up can kill e-commerce
      Wired: FBI Raids Elektronic Tribulation Army Over Witness Intimidation
      Wired: NSA to Spy on Critical Infrastructure, Says WSJ
      Net Security: Q&A - BruCON security conference
      Wired: Crack the Code In US Cyber Command's Logo
      The Register: Symbian malware creates mighty zombie army
      Krebs On Security: Pirate Bay Hack Exposes User Booty
      H Security: A flood of new, stable, Linux kernels
      The Register: Professor warns Aus firewall is undemocratic
      Network World: Honeypots for hacker detection
      Techcrunch: Employees Challenged To Crack Facebook Security, Succeed
      H Security: Microsoft vulnerabilities - full disclosure and no disclosure
      Net Security: 41% of IT pros admit to snooping on confidential information
      PC Pro: The unstoppable "tech support" scam
      Slashdot: Microsoft Spurned Researchers Release 0-Day
      SANS Forensics: People Searches
      Slashdot: US Pirate Movie Site DNS Seizure Fail
      Wired: Army Intelligence Analyst Charged With Leaking Classified Information
      Darknet: Tabnapping Attack On The Increase
      Risky.biz: Big W infecting photo printing customers?
      Network World: Should You Trust Google?
      Net Security: Vacation security advice, caution with travel planning
      Net Security: ATM vendors threaten researcher, stop his presentation on ATM flaws
      H Security: CSI -Internet
      sify news: British teenagers held for online bank fraud
      Travis Goodspeed: Reversing an RF Clicker "it is possible to watch votes as they are being cast by students"
      Slashdot: YouTube Hit By HTML Injection Vulnerability
      Niels Teusink: Hacking wireless presenters with an Arduino and Metasploit [software]
      InSecurity Romania: Youtube HTML Code Injection
      CIO: Retired Stalker - Facebook, Foursquare Making Gen Y Stalkers Lazy
      Iron Geek: Locking down Windows Vista and Windows 7 against Malicious USB devices
      BBC News: Turkey goes into battle with Google
      Krebs On Security: Top Apps Largely Forgo Windows Security Protections
      Security Week: New Tool Reveals Internet Passwords
      The Register: 50 arrested in smartphone spyware dragnet
      Network World: Russian spy ring needed some serious IT help
      Sophos: Guest blog - Adobe, make my day. Disable JavaScript by default
      H Security: Geolocators become a privacy problem
      Information Security Investigator: Spies, Lies and Damned Help Desks
      Net Security: 10,000 XP machines attacked through 0-day flaw
      Google Code: Blind Sql Injection Brute Forcer version 2
      Wired: White Hat Uses Foursquare Privacy Hole to Capture 875K Check-Ins
      Wired: ACLU Study Highlights U.S. Surveillance Society
      SANS: How to be a better spy - Cyber security lessons from the recent russian spy arrests
      Net Security: Honeypot software for VoIP networks
      Krebs On Security: Security Updates for Adobe Acrobat, Reader
      Slashdot: Hack AT&T Voicemail With Android
      The Register: Google Chrome will block out-of-date plug-ins "Google will soon prevent insecure versions of plug-ins from running on top of its Chrome browser to make sure they don't contain security bugs that can be exploited by malicious websites"
      H Security: Passwords - The only constant in life
      H Security: Tricked again - Key combination opens Corsair's Padlock 2 flash drive without authorisation
      Krebs On Security: e-Banking Bandits Stole $465,000 From Calif. Escrow Firm
      Network World: Google moves encrypted search to a new site
      iDefense Labs: Multiple Vendor LibTIFF 3.9.2 Stack Buffer Overflow Vulnerability
      eSecurity Planet: SSL Certificates In Use Today Aren't All Valid
      Wired: FTC - Scammers Stole Millions Using Micro Charges to Credit Cards
      H Security: Norton produces false alarm after Firefox update
      Net Security: The longevity of computer worms
      H Security: Critical hole closed in PNG reference library
      redOrbit: Download full size image Hackers Target ATM Security Flaws
      XSSed: Persistent XSS vulnerability affecting Twitter promptly corrected
      IT Security: Hacker High - 10 Stories of Teenage Hackers Getting into the System
      Globo: Not even FBI was able to decrypt files of Daniel Dantas "Hard drives were seized by the feds during Operation Satyagraha, in 2008.Information is protected by sophisticated encryption system."
      c|net: Police push to continue warrantless cell tracking
      Torrent Freak: No Evidence Anti-Piracy Group Hacked FTP Server
      Marco Ramilli's Blog: iPhone Hides Geo Location into Images
      Fox News: 10 Everyday Items Hackers Are Targeting Right Now
      The Register: US lawmakers grill Apple on location tracking changes
      H Security: Google uses remote delete to remove Android apps from smartphones
      Ksplice: Attack of the Cosmic Rays!
      H Security: UK court sentences Chip & PIN skimmers "criminals burnt a hole in the rear of the terminals and inserted a memory device and Bluetooth receiver"
      GNUCITIZEN: 1ST European Edition of HITB Coming Up
      Krebs On Security: Exploiting the Exploiters
      Sky News: Teens Linked To Colossal Cyber Crime Network
      The Register: No secret to stopping XSS and SQL injection attacks
      Network World: Death of Windows XP SP2 Support a Security Risk, Says Report
      Information Week: iPhone Dev Team Releases iOS4 Hacking Tools
      Network World: VeriSign SSL Hackable - Comodo Exposes, VeriSign Denies
      SANS: IPv6 Support in iOS 4
      BBC News: US pirate hunters target movies
      Elpais: Fraudsters introduced "errors controlled" for the system to fail on a particular date
      Krebs On Security: Donรขt Need Java? Junk It.
      Krebs On Security: Cloud Keyloggers?
      H Security: Apple's iOS 4 update fixes 65 vulnerabilities
      Network World: 32% of laptop thefts happen at home
      The Register: Feds cuff man in ATM skimming case
      Information Week: Stock Manipulation Botnet Surfaces
      Los Angeles Times: Apple collecting, sharing iPhone users' precise locations
      Wired: NSA Gets Geeky After Dark, New Docs Show
      Wired UK: Huge privacy flaw found in VPN systems
      ha.ckers: Side Channel Attacks in SSL [pdf]
      Network World: How To use Gmail to safely access email from abroad
      Computer World: Wireless security myths 2010
      Wired: Targeted Ads Will Let You Spy on Them for a Change
      F-Secure: It's Signed, therefore it's Clean, right?
      H Security: Apple expands malware protection on Mac OS X
      Security-Shell: Norton Update Center XSS
      Torrent Freak: Three Arrested In Connection With Darkside File-Sharing Servers
      BBC News: Fighting back against web attacks "Hi-tech criminals are not very good at securing the tools they use to attack websites, suggests research"
      Engadget: Square working on 'a credit processing and risk issue' before shipping more card readers
      SANS: DNS Sinkhole ISO Available for Download
      Network World: WikiLeaks part II - Adrian Lamo responds
      Salon: The strange and consequential case of Bradley Manning, Adrian Lamo and WikiLeaks "Adrian Lamo and Kevin Poulsen have a long and strange history together"
      Torrent Freak: Huge Security Flaw Makes VPNs Useless for BitTorrent
      The Register: Oz Attorney-General wants ISPs to hold data for 2 years
      CNN: New tech moves beyond the mouse, keyboard and screen
      EFF: HTTPS Everywhere "encrypts your communications with a number of major websites"
      CNN: Mobile phones used to get past China's Internet censors
      BBC News: Fading data could improve privacy "Privacy could be enhanced if data was allowed to fade, suggests research"
      darkReading: The Next-Generation IPS "Intrusion prevention systems get closer to the client -- and, in some cases, further from the internal network"
      Wired: 3 Weeks After Arrest, Still No Charges in Wikileaks Probe
      H Security: WEP and TKIP Wi-Fi encryption methods to be discontinued
      Computer World: Mobile Security - Why I still want my iPad, iPhone "Jailbreaking wipes away 80 percent of the iPhone's security controls"
      ha.ckers: Using DNS to Find High Value Targets
      International Business Times: Location Services Raise Privacy Concerns
      Cryptome: Swiss Lawful Spying Guide (pdf)
      The Register: Eastern European banks under attack by next-gen crime app
      Computer World: Employee monitoring - When IT is asked to spy "They can even track employees' physical locations using the GPS feature on smartphones"
      The Register: Feds block sale of crooks' favourite messaging client
      Info World: Unintended cell phone calls put privacy at risk
      The Register: AT&T iPad 'hacker' arrested for 'drugs possession'
      ZDNet: Windows XP and Windows Server 2003 hit by "Zero-Day" vulnerability
      Packetstan: IDS/IPS Evasion - Step 1. Awareness
      Krebs On Security: Police Arrest 178 in U.S.-Europe Raid on Credit Card Cloning Labs
      darkReading: New Crypto-Cracking Tool To Target Databases
      H Security: Mass website hack aimed at online gamers
      The Register: GCHQ - The uncensored story of Britain's most secret intelligence agency
      SANS Forensics: Turning RegRipper into WindowsRipper
      ha.ckers: Turning XSS into Clickjacking
      Physorg: Online ads can get too close for comfort says new study
      Slashdot: The Truth About the Polygraph, According To the NSA
      Windows Security: Understanding Man-in-the-Middle Attacks ARP Cache Poisoning Part 1 | ARP Cache Poisoning Part 2 | Session Hijacking | SSL Hijacking
      Slashdot: Backdoor Found In UnrealIRCd Source Archive
      c|net: Soldier leaked Google attack investigation details, hacker says
      danah boyd: for the lolz - 4chan is hacking the attention economy
      Risks Digest: It's not just the camera in the laptop
      PC Magazine: Google Releases Wi-Fi Sniffing Audit, is Accused of 'Criminal Act' [pdf]
      Technology Review: Computing with Secrets, but Keeping them Safe [pdf] "A cryptographic method could see cloud services work with sensitive data without ever decrypting it"
      Threat Post: Mass SQL Injection Attack Hits Sites Running IIS
      ZDNet AU: Govt wants ISPs to record browsing history "Companies who provide customers with a connection to the internet may soon have to retain subscriber's private web browsing history for law enforcement to examine when requested"
      ZDNet: Googler releases Windows zero-day exploit, Microsoft unimpressed
      arstechnica: Cyber War - Microsoft a weak link in national security
      Wired: I Cant Believe What Im Confessing to You - The Wikileaks Chats
      Wired: Suspected Wikileaks Source Described Crisis of Conscience Leading to Leaks
      H Security: Google pays $2,000 for report of a vulnerability in Chrome
      Wired: State Department Anxious About Possible Leak of Cables to Wikileaks
      Offensive Security: Evocam Remote Buffer Overflow on OSX
      Full Disclosure: Websense Enterprise 6.3.3 Policy Bypass
      Info World: Windows 7 and Mac OS X both hit by fundamental flaws "Security holes are so close to the core OSes that fixing them will be hard"
      SANS: Adobe POC in the Wild
      IT Pro: IT professionals may not be following the Governments lead towards transparency
      BBC News: China defends internet censorship "China has defended its right to censor the internet in a document laying out the government's attitude towards the web"
      The Register: Adobe lines up emergency Flash fix
      H Security: Apple's Safari updates address 48 security vulnerabilities
      H Security: Tool for cracking encrypted session data
      Wired: Former Prosecutor - Google Wi-Fi Snafu Likely Illegal
      darkReading: Defcon To Host 'Capture The Flag' Social Engineering Contest
      Computer World: Researchers - Poor password practices hurt security for all "particular, the weak implementations of password-based authentication at lower-security sites compromises the protections offered at higher-security sites"
      The Register: $11m jackpot just a 'reset' message, says casino
      Errata Security: Cyberwar is fiction
      The Register: Researchers release point-and-click website exploitation tool
      Recon: 2010 Conference Details
      H Security: Skimming from the sofa
      Venture Beat: Hackers find holes in Sprints new 4G phone
      Games On: Devil's Advocate - Why Ubisoft's DRM worked
      Wired: U.S. Intelligence Analyst Arrested in Wikileaks Video Probe "Manning came to the attention of the FBI and Army investigators after he contacted former hacker Adrian Lamo"
      Cisco Zine: Two Cisco vulnerabilities
      Google Enterprise Blog: Security First - Protecting your data with Google Apps
      WSJ: Dark Side Arises for Phone Apps
      Computer World: Attackers exploiting new Flash bug, Adobe warns
      Developer: PHP Remains Strong Despite Security Flaws
      Computer World: How to Set Up a Secure Web Tunnel
      Krebs On Security: ATM Skimmers - Separating Cruft from Craft
      IT World: Google relents, will hand over European Wi-Fi data
      The Register: Facebook plugs email address indexing bug
      H Security: OpenOffice 3.2.1 fixes bugs, updates logo
      Wired: Lieberman Bill Gives Feds Emergency Powers to Secure Civilian Nets "Joe Lieberman wants to give the federal government the power to take over civilian networks security, if theres an imminent cyber threat"
      H Security: Kobil smartcard reader hacked
      H Security: OpenSSL updates fix vulnerabilities
      Darknet: sectool - Security Audit Tool & IDS
      Computer World: FTC cracks down on spyware seller
      H Security: Click-jacking for social networks - Like-jacking
      XSSed: Critical Ask.com frame redirect and XSS security issues
      Fox News: Glitch Reveals Military Reliance on GPS Tech "rendered as many as 10,000 U.S. military GPS receivers useless for days"
      H Security: Microsoft to improve Hotmail security
      H Security: Microsoft comments on Google's Windows ban
      The Register: Should we be encrypting backups?
      The Register: Mac spyware infiltrates popular download sites
      The Telegraph: Children, 4, 'to be fingerprinted to borrow school books from library' "Children as young as four could be fingerprinted to take out books from a school libaray"
      SANS Forensics: Protecting Admin Passwords During Remote Response and Forensics
      Light Blue Touchpaper: Digital Activism Decoded - The New Mechanics of Change [pdf]
      BBC News: Police investigate Habbo Hotel virtual furniture theft "The online thieves allegedly targeted users with fake web pages to capture usernames and passwords"
      Wired: WikiLeaks Was Launched With Documents Intercepted From Tor
      The Register: Met lab claims 'biggest breakthrough since Watergate' "scientists have created a database that has recorded these deviations once every one and a half seconds for the last five years"
      arstechnica: OpenStreetMap - Crowd-sourcing the world, a street at a time
      H Security: iPhone leak is getting bigger - Update
      Financial Times: Google ditches Windows on security concerns
      Adobe: Security update available for Adobe Photoshop CS4
      Information Security Investigator: The iPad - So Easy, A Monkey Can Use It "Can The iPad Can Be Used As A Security Testing Device"
      O'Reilly Radar: Putting Online Privacy in Perspective
      Exploit DB: Oscommerce Online Merchant v2.2 File Disclosure And Admin ByPass
      BBC News: Ofcom unveils anti-piracy policy "Lists of Britons who infringe copyright are to be drawn up by the UK's biggest ISPs, under proposals from the regulator Ofcom"
      Security-Shell: Tenable Network Security XSS Vulnerability
      Thinq: Blizzard boss says DRM is a waste of time
      The Register: UK jobs site suffers hack attack "Several job sites run by Trinity Mirror Group have suffered hack attacks"
      Symantec: 44 Million Stolen Gaming Credentials Uncovered
      XSSed: Vodafone.com XSS helps you trace unregistered Pay As You Go subscribers
      Bernd Marienfeldt: iPhone business security framework
      The Register: 15 a month for legal P2P?
      SANS Forensics: Digital Forensics Case Leads - The Gauntlet Edition
      IET: RFID virus scared 'hyped up' "Scientists should be responsible in how they present their research, rather than hyping up threats in order to get headlines"
      The Register: Cisco bugs surrender control of building's critical systems
      Forbes: Android App Aims to Allow Wiretap-Proof Cell Phone Calls
      darkReading: Researchers Find New Ways To Eavesdrop Via Mobile Devices "'Bugbots' could enable listeners to tap other users' devices to overhear conversations, study says"
      c|net: One-on-one with Facebook CEO Mark Zuckerberg
      H Security: Vulnerability in iPhone data encryption
      c|net: Microsoft warns on Windows 7 upgrade tool
      BBC News: Google faces German Street View data blunder deadline
      Network World: Facebook to simplify privacy settings Wednesday
      Darknet: Bruter v1.0 Final Released Parallel Network Login Brute Forcing Tool
      Stanford Security Laboratory: Busting frame busting - a study of clickjacking vulnerabilities at popular sites [pdf]
      Computer World: Lifelock worries after employee data leaked to Web
      c|net: Web hoster Media Temple hit with denial of service attack
      Light Blue Touchpaper: An old scam still works
      H Security: New phishing attack exploits tabbed browsing
      Wired: Spyware Installed on Student Laptops Has More Security Problems
      ZDNet UK: Botnet price for hourly hire on par with cost of two pints "Botnets are available for hire for as little as $8.94 per hour, emphasising how little financial muscle or technical expertise is needed to carry out attacks, according to VeriSign iDef
      The Register: Second man jailed over Scientology DDoS attacks
      The Register: Google's encrypted search casts shadow on web analytics "when SSL is turned on, your browser will stop sending referral data to any non-SSL sites you visit"
      Network World: Is Facebook truly sorry for its privacy sins?
      Computer World: Two years later, Apple still won't fix Safari hole
      Threat Post: Why Can't Johnny Have Privacy?
      Gideon T. Rasmussen: Information Security Professional
      Guardian Unlimited: US appoints first cyber warfare general "Pentagon creates specialist online unit to counter cyber attack amid growing fears of militarisation of the internet"
      XSSed: Skype.com SSL powered support page vulnerable to XSS
      Wired: Lost Hacking Documentary Surfaces on Pirate Bay
      The Register: Google halts deletion of Street View Wi-Fi data
      Computer World: Hackers can delete Facebook friends, thanks to flaw
      c|net: IBM - We distributed malware-ridden USB drives "IBM is apologizing for handing out USB drives at a security conference in Australia this week that had malware on them"
      Threat Post: Survey Shows Most Flaws Sold For $5,000 Or Less
      Google Blog: Search more securely with encrypted Google web search
      Wired: School Spy Program Used on Students Contains Hacker-Friendly Security Hole
      New York Times: Online, How Much Security Is Too Much?
      The Register: Most browsers silently expose intimate viewing habits
      WSJ: Facebook, MySpace Confront Privacy Loophole
      Ksplice: The wireless traffic of MIT students
      arstechnica: Facebook privacy coming to a head, changes may be imminent
      H Security: Metasploit 3.4 with extended brute force support
      arstechnica: Rogue ISP ordered to liquidate, pay FTC $1.08 million
      Network World: Microsoft chases 'click laundering'
      c|net: Can VeriSign deal make Symantec the Web's identity broker?
      The Register: Sergey Brin - 'We screwed up' on Street View Wi-Fi grab