Archive for September, 2010
Tell Me Your Secrets
By Randy Abrams at 27 September, 2010, 11:34 am
An Associated Press release http://news.yahoo.com/s/ap/20100927/ap_on_hi_te/us_internet_wiretaps today indicates that the Obama administration is drafting legislation that would require companies to make it technically possible to intercept all electronic communications in the US. This would affect all of the US telephone companies, Skype, and also companies, such a RIM (Blackberry) that are based outside of the US.
According … Read More.
Iran Admits Stuxnet Infected Its Nuclear Power Plant
By Charles Jeter at 27 September, 2010, 9:55 am
While the defining research on the Stuxnet topic doesn’t go this far, Forbes writer Trevor Butterworth went out on a limb to name names along with detailing the warfare aspects:
As I noted last week – and as the news media have only begun to grasp – Stuxnet represents a conceptual change in the history of … Read More.
Read More >>Cyberwar, Cyberhysteria
By David Harley at 25 September, 2010, 11:06 am
This morning I wrote a long and - I hope - carefully-considered piece for Security Week on Stuxnet and the whether it constitutes a nation state attack on Iran. [Update, 26th September: I hear that article will be available today or tomorrow.]
Actually, I was asked on Friday for a quotable quote or two on the topic, but I … Read More.
Is Disney Flashing Minors?
By Randy Abrams at 24 September, 2010, 6:37 pm
Recently a lawsuit was filed against Walt Disney’s internet subsidiary and some of its partners as well. http://www.theregister.co.uk/2010/08/17/flash_cookie_lawsuit/ At issue is the use of a special kind of cookie that is used in conjunction with Adobe Flash. These “supercookies” are called Local Shared Objects or LSOs for short. LSOs are not deleted when you use … Read More.
Read More >>Stuxnet Update
By Craig Schmugar at 24 September, 2010, 5:30 pm
Stuxnet has received a lot of attention since McAfee first blogged about it in July. This post will answer some of the frequently asked questions we’ve received.
Q: What is Stuxnet?
A: Stuxnet is a highly complex virus targeting Siemens’ SCADA software. The threat exploits a previously unpatched vulnerability in Siemens SIMATIC WinCC/STEP 7 (CVE-2010-2772) and four vulnerabilities in [...]
ESET Stuxnet Paper
By David Harley at 23 September, 2010, 11:59 am
The Stuxnet saga rolls on. And while a lot of talented people have been poring over the code for a while, some questions are still unresolved at this time, despite all the coverage..
Who is responsible for it?
Was it really the work of a nation team rather than hackers? Well, our analysis of the code certainly … Read More.
Your Fantasy, A Criminal’s Dream
By Randy Abrams at 22 September, 2010, 5:56 pm
Fantasy sporting leagues have become very popular. A good friend of mine is into fantasy car racing teams. Other friends are into fantasy soccer (football elsewhere in the world). In the US a lot of people are into the fantasy NFL (National Football League –not soccer).
Recently a researcher, Gary Rios, joined an ESPN sponsored fantasy … Read More.
Facebook Competitor Faces Criticism – Is Diaspora DOA?
By Charles Jeter at 22 September, 2010, 5:02 pm
Really – should any Alpha version be fed through a chipper-shredder like Diaspora has? The basics are simple:
The basic premise behind Diaspora is that it will allow users to have social networking functionality similar to that offered by Facebook, but with far greater control over personal data.
Diaspora was born earlier this year largely in response … Read More.
MouseOver, Game Over
By Randy Abrams at 21 September, 2010, 10:06 am
In some computer programming languages there is an event called “mouseover”. This command is used to determine what happens when a user put the mouse over a specific object. When you put the mouse over a hyperlink and see where that link will take you, that is a “mouseover” command at work. When you place … Read More.
Read More >>Zeus Crimeware Toolkit
By Chintan Shah at 20 September, 2010, 6:02 am
The Zeus botnet has been in the wild since 2007 and it is among the top botnets active today. This bot has an amazing and rarely observed means of stealing personal information–by infecting users’ computers and capturing all the information entered on banking sites. Apart from stealing passwords, this bot has variety of methods implemented [...]
Read More >>

