Pages

Tuesday, April 29, 2008

Banks Told to Prep for New International ACH Rules - Bank Systems & Technology

HP ships USB sticks with malware - CNET News.com

Microsoft: Massive site attacks not our fault

Techworld.com - Xerox's PARC boffins show off new inventions

Techworld.com - Bank owns up to laptop disaster

PCI council clarifies impending application rule - SC Magazine US

Another Apple QuickTime bug reported - SC Magazine US

Skype users land in anti-malware net - SC Magazine US

Hacker denies using tool to break into Dish Network security - SC Magazine US

Massive hacker attack continues - SC Magazine US

Another college exposure, now in Colorado - SC Magazine US

"Highly critical" flaw in WordPress - SC Magazine US

Sunday, April 27, 2008

Thursday, April 17, 2008

Tuesday, April 08, 2008

Monday, April 07, 2008

PA-DSS secures payment applications

PA-DSS secures payment applications

Laptop theft easily preventable while on the road

un-excogitate.org � Blog Archive � Old School Biometrics Hacking And Enterprise Physical Access Control

2600: The Hacker Quarterly

The IT Security Guy: Spring 2600 Hits Newstands

IT 'Big Brothers' trying to keep internal users under control

Security chiefs urged to embrace risk

IT security budgets on the rise - vnunet.com

Remote workers ignoring security - vnunet.com

M&S rapped for Data Protection breach - vnunet.com

Watchdog slams Skipton over data loss - vnunet.com

Police lose yet more data - vnunet.com

HSBC loses 370,000 customer details - vnunet.com

Tuesday, March 18, 2008

Thursday, March 13, 2008

Wednesday, February 13, 2008

Wednesday, February 06, 2008

Tuesday, January 29, 2008

New data security breaches come in fours

Florida woman accused of deleting $2.5 million in data - SC Magazine US

Security tokens coming for eBay's PayPal customers - SC Magazine US

PayPal to acquire Fraud Sciences for $169 million - SC Magazine US

Western Union spam downloads keylogger - SC Magazine US

Super Bowl blitz begins: Bogus game sites with malware popping up - SC Magazine US

US

Security lessons from the top | InfoWorld | News | 2008-01-28 | By Matt Hines

Were People or Technology to Blame for Multibillion Dollar Societe General Fraud?

Security efforts hindered by untrained users

Metasploit attack app gets update

ChoicePoint to pay $10M to settle last breach-related lawsuit

Tuesday, January 22, 2008

Tuesday, December 11, 2007

Skype apologises for forgetting 'critical' patch News - PC Advisor

Techworld.com - Security concerns cloud virtualisation deployments

Techworld.com - Data put at risk by app testing naivety

Techworld.com - Coverity tool analyses application crashes

Techworld.com - Internet poisoned by open DNS servers

Fiserv Completes Acquisition of CheckFree - Bank Systems & Technology

Cisco warns of flaws in Security Agent for Windows, CiscoWorks Server - SC Magazine US

AdultFriendFinder.com settles with FTC - SC Magazine US

This summary is not available. Please click here to view the post.

Gartner: Victims of online phishing up nearly 40 percent in 2007 - SC Magazine US

Attackers hack into Oak Ridge National Laboratory - SC Magazine US

Monday, November 19, 2007

Wednesday, November 14, 2007

Monday, November 05, 2007

Wednesday, October 03, 2007

Thursday, August 23, 2007

Thursday, August 02, 2007

Monday, July 23, 2007

Tuesday, July 17, 2007

Oracle to release 46 security fixes - IT Security News - SC Magazine US

Computer security breach puts some records at risk

Unauthorized file-sharing software leads to Pfizer employees’ data exposure

Company Says Worker Stole, Sold Data - washingtonpost.com

Statement about stolen computer back-up tapes

Hackers steal data from PCs

HACKER ATTACK $HOCK

Sensitive data loss soars

University-owned laptop with student data stolen - Minnesota Daily

Confidential data revealed on Encinitas' Web site - North County Times - Coastal -

MSD worker fired in security breach

Monday, July 16, 2007

Cybersecurity realities hit financial firms - Austin Business Journal:

Cybersecurity realities hit financial firms
Austin Business Journal - July 13, 2007
by Ed Amoroso
Contributing Writer

Like it or not, we are reliant on computer and network systems for our business and personal financial needs. We enjoy greater access to near real-time financial data than ever before.
That's one reason I cringe when someone from the banking and finance industry claims to have never been hacked. I've seen plenty of overly confident information technology types wish they had taken a closer look. One reason attacks are fairly widespread is that when PCs are connected to networks, they are immediately exposed to all sorts of security threats. Moreover, the most common security initiatives, such as firewalls, can be penetrated or bypassed quite easily in many environments.

Disclosed secrets
The payment card industry has been especially challenged by disclosure of personal information. Unfortunately, very little progress has been made in prevention of disclosure threats on computers. While encryption works well for information in transit, it can be compromised when information is stored.

Theft
Stopping online fraud can be especially challenging because the identity and location of end points can be tough to accurately determine. The most common method of identity theft involves phishing scams in which individuals are convinced to supply personal information by an official-looking email. One promising technique to prevent phishing provides stronger forms of authentication through the use of tokens that randomly generate a different numeric password every minute.

Destroying and deleting assets
In a nationwide survey of 1,000 U.S.-based IT executives conducted by AT&T, 74 percent rated viruses and worms among the top three threats. Even so, most organizations rarely back up anything but the most critical information, which leaves the vast majority of their information at risk. To protect against PCs being corrupted, files being infected or system attributes being changed, it is essential to establish standards that ensure periodic backups. Using systems that enable audit trails and control access to individual devices and the network are also strongly recommended.

Denial of service
Denial of service in cybersecurity involves a malicious intruder intentionally blocking a computer of network service from its authorized users. To be frank, this is a capacity issue. If a system can only handle so much capacity, then attackers can simply initiate malicious activity that will exceed that capacity. In the financial services industry, the good news is that considerable emphasis has been directed toward reducing security risks. Massive investments have been made to reduce fraud and protect networks from hackers, criminals and cyber terrorists. Ultimately, there is no substitute for software developed with security in mind, improved system administration and reduced system complexity.

Ed Amoroso is senior vice president and chief security officer for AT&T and the author of "Cyber Security."
Contact the Editor
All contents of this article © American City Business Journals Inc. All rights reserved.

Monday, July 09, 2007

Financial systems 'riddled with security holes'

Talking Trojan says 'bye bye' to victims' data

Fraudsters use charities to test credit cards | InfoWorld | News | 2007-07-06 | By Robert McMillan, IDG News Service

PCI Data Security Standard compliance: Three steps to success

Microsoft Security Intelligence Report Fact Sheet

The Microsoft Security Intelligence Report provides customers and partners with a comprehensive understanding of the types of threats Windows customers face today so they can take appropriate action to help ensure they are better protected.

Thursday, June 28, 2007

State's Data Stolen In Ohio


Why PCI isn’t enough to ensure data security today?


New crimeware targeting companies


Startup Launches Multi-Factor Authentication Tool - Security News Wire


UC Davis vet school admission records hacked - MSN Money


People are the weakest link


Why We Click

Top 10 Stupid Surfing Habits -


Keeping Data Secure with Biometrics


Data Breaches Start at the Gas Station, Analyst Says - Security Feed - News - CSO Magazine


Woman told to repay $15,000 welfare fraud


Microsoft Security One of the Worst Jobs in Science - Security Feed - News - CSO Magazine


Man guilty of computer fraud


Personal data on 17,000 Pfizer employees exposed; P2P app blamed


Washington state works out $1M settlement with 'safe surf' vendor


Data breaches could take a toll on e-commerce


Monday, June 18, 2007

Wednesday, June 06, 2007

Wednesday, May 30, 2007

Wednesday, May 16, 2007