From the category archives:

News

» News

FireFox Fixed by Mozilla

Mozilla released two new versions of its browser, Firefox 3.6.9 and Firefox 3.5.12, to close 10 critical security vulnerabilities in each and to block clickjacking. Firefox 3.6 also gets a new general approach to cut down browsing risks: support for X-Frame-Options HTTP response header. Web developers can use it to block browsers from showing their [...]

Read Ahead →

» News

Police carry out raids against suspected file-sharing servers across Europe

Police in up to 14 European countries are said to be involved in an operation, targeting the Warez Scene, the network of individuals and servers at the top of the so-called ‘Piracy Pyramid’. Details are insufficient at the moment, but it is believed that at the request of Belgian authorities, raids have gone ahead in [...]

Read Ahead →

» News

Bollywood employing cyber hitmen to combat piracy

The most recent film to deploy was Peepli Live. Girish Kumar, managing director, Aiplex Software, which managed the Peepli Live account, said, “When we detect a website offering a link or a download, we contact the server hosts and intimate them about the illegal activity. They issue a notice to the site owner. If the [...]

Read Ahead →

» News

US & UK Govt. backed Cyber Security Games

In July we all heard about the UK govt backed Cyber Security Challenge game which was lauched by Baroness Neville-Jones, the Minister of State for Security at the Home Office. Now we have a game by US govt called as Cyber Protect hosted on the DoD Information Assurance portal. The first look of Cyber Protect seems inclusion security [...]

Read Ahead →

» News

Twitter XSS vulnerability identified in the wild

Malicious links leading to the download of a malicious JavaScript payload have been popping up on various Twitter accounts, warns Kaspersky’s Stefan Tanase. The harmful JavaScript payload that’s being distributed uses an XSS (Cross-Site Scripting) vulnerability to steal the cookie of the Twitter user, which is transferred to two specific servers. Essentially, any account which [...]

Read Ahead →

» News

Apple’s Ping social network attacked by spammers

Sophos researchers have found that Ping is being over-run by scams and spam messages, some of which try and direct users into believing they will receive a free iPhone if they complete online surveys. “We’re used to survey scams like this being spread far and wide via sites like Facebook, but clearly the lack of [...]

Read Ahead →

» News

Be careful as certain HP scanners can permit snooping and spying

Certain models of HP combination printer and scanner devices contain a feature that could allow for corporate espionage, according to researchers at web security firm Zscaler. The feature, called WebScan, allows a user to remotely trigger the scanning functionality and retrieve scanned images via a web browser. This capability could allow anyone on the local [...]

Read Ahead →

» News

Beware! Google Code is hosting malware-spreading project

Zscaler pointed out  that even though Google claims that any project including malicious files will be taken down, it takes the Google Code team a rather long time to detect them by scanning the hosted content. Most of the files are executables or .rar archives. Further analysis showed that if xin.exe was executed on a [...]

Read Ahead →

» News

Only 5 women contestants of 135 pass Defcon social engineering test

Of the 135 Fortune 500 employees targeted by social engineering hackers in a recent Defcon social engineering contest only five of them refused to give up any corporate information whatsoever. The contestants were extremely successful, said Chris Hadnagy, one of the event’s organizers. Just one company didn’t divulge the secrets participants were told to dig [...]

Read Ahead →

» News

Facebook boosts its security by adding remote logout feature

Facebook announced a security feature that will allow users to remotely logout from their account.  The information provided for each active session will consist of the login time, device name (if one has named it), a ballpark location derived from the IP address, and the browser and operating system on the used device. This way, even if [...]

Read Ahead →