-
Trend Micro customers suffer weekend mayhem
Date: 04/25/05
(Security) Keywords: security
IT workers are furious after working extra hours to fix an SP2 slip-up by the security company.
Source: http://news.zdnet.com/Trend+Micro+customers+suffer+weekend+mayhem/2100-1009_22-5683219.html?part=rss&tag=feed&subj=zdnn
-
McAfee: Vulnerabilities still worst threat
Date: 04/25/05
(Security) Keywords: software, security
Unpatched PCs represent biggest security problem, keeping threats that target software vulnerabilities at top of McAfee's list.
Source: http://news.zdnet.com/McAfee%3A+Vulnerabilities+still+worst+threat/2100-1009_22-5683272.html?part=rss&tag=feed&subj=zdnn
-
Is open soure more secure?
Date: 04/25/05
(Open Source) Keywords: security
Right now open source security is symmetrical. Closed source security is asymmetrical. Who will win?
Source: http://blogs.zdnet.com/open-source/?p=251
-
'Highly critical' flaw reported for Netscape software
Date: 04/27/05
(Security) Keywords: security
Security company says Netscape versions are vulnerable to exploitation and the solution is to "use another product."
Source: http://news.zdnet.com/%27Highly+critical%27+flaw+reported+for+Netscape+software/2100-1009_22-5685688.html?part=rss&tag=feed&subj=zdnn
-
Experts: End of e-mail viruses is nigh
Date: 04/28/05
(Security) Keywords: security, virus, spyware
Mass-mailing viruses are on their way out, some security execs say, and spyware is set to take their place as a key pest.
Source: http://news.zdnet.com/Experts%3A+End+of+e-mail+viruses+is+nigh/2100-1009_22-5688726.html?part=rss&tag=feed&subj=zdnn
-
SANS Rocky Mountain 2005
Date: 04/29/05
(IT Professionals) Keywords: security
This is a call out to anyone who will be attending Rocky Mountain SANS in Denver the second week in May 2005.
For other activities that are going on in the area that week, I know that the Second Annual Modern Drunkard Convention is going on the 13th through Sunday, May 15.
x-posted to infosec, itprofessionals, itsecurity
Source: http://www.livejournal.com/community/itprofessionals/9816.html
-
Is open soure more secure?
Date: 04/25/05
(Open Source) Keywords: security
Right now open source security is symmetrical. Closed source security is asymmetrical. Who will win?
Source: http://blogs.zdnet.com/open-source/?p=251&part=rss&tag=feed&subj=zdblog
-
Tired
Date: 05/03/05
(Computer Geeks) Keywords: security, virus
I am tired of trying to figure out what in the computer industry I want to do. When I ask for advice, my profs tell me to do in computers what interests you.
So, when I ask questions about security, virus protection, why virus protection is so re-active and not pro-active, why the school seems to leave such HUGE holes open in there network ( and I see these and I have only really been "into" computers for 2 semesters, but reading for a year or so)
Case in point, networking class. My prof is lecturing on how to install a windows OS. (Snooze time) Then he gets to the admin settings, and sets the one user as admin and one user as a limited user. Ok, I think, now talk about the Admin setting you get in safe mode......waiting...waiting......next topic. GREAT, I raise my hand, and ask.
"No we set that already"
No you didnt"
Yes I did, see it here, see how it says ADMIN"
"Yes, I see that but what happens when you start in safe mode and the Admin account is there with no password?"
"That isn't the case, moving on"
So, on our 15 min break I go up, restart the computer in safe mode, and leave it there, his admin, and the OTHER admin. He was shocked.........and all I can think is, great here comes the comment I get all the time.
Prof.."I have to keep my eye on you, are you some sort of hacker?"
NO idiot, I just read, and want to know what people know that exploit the system, and shouldn't you think the same way?????
sigh.......
Source: http://www.livejournal.com/community/computergeeks/676650.html
-
Phishing attacks take a new twist
Date: 05/05/05
(Security) Keywords: security, web
Schemes involving malicious code that intercepts passwords and usernames are on the rise, Websense Security Labs reports.
Source: http://news.zdnet.com/Phishing+attacks+take+a+new+twist/2100-1009_22-5695874.html?part=rss&tag=feed&subj=zdnn
-
Sober worm spreads like wildfire
Date: 05/03/05
(Security) Keywords: security, virus
Latest variant of the long-lived pest is propagating so rapidly it now makes up two-thirds of all virus traffic, security experts say.
Source: http://news.zdnet.com/Sober+worm+spreads+like+wildfire/2100-1009_22-5693981.html?part=rss&tag=feed&subj=zdnn
-
Sober worm makes a comeback
Date: 05/07/05
(Security) Keywords: security, spam
Mass-mailing pest is spreading again, harvesting e-mail addresses for spammers, security companies have warned.
Source: http://news.zdnet.com/Sober+worm+makes+a+comeback/2100-1009_22-5698411.html?part=rss&tag=feed&subj=zdnn
-
Google speed bump draws scorn
Date: 05/07/05
(Web Technology) Keywords: security, web
Search giant raises privacy and security hackles with its application that accelerates Web surfing.
Source: http://news.zdnet.com/Google+speed+bump+draws+scorn/2100-9588_22-5698447.html?part=rss&tag=feed&subj=zdnn
-
FAQ: How Real ID will affect you
Date: 05/06/05
(Web Technology) Keywords: security
In 2008, a federally approved ID card may be required to travel, open a bank account, even collect Social Security.
Photos: Electronic IDs are catching on
Source: http://news.zdnet.com/FAQ%3A+How+Real+ID+will+affect+you/2100-9588_22-5697111.html?part=rss&tag=feed&subj=zdnn
-
New Security Vulnerabilities
Date: 05/09/05
(Mozilla) Keywords: software, java, security
As I posted in firefoxusers, new security vulnerabilities have been discovered in Mozilla-based products. The first is a cross-site scripting vulnerability which allows sites to execute code in the context of another site. The second, which only affects Firefox, allows arbitrary code execution through the software installation mechanism. Normally this would only be exploitable from sites that are allowed to install extensions (i.e. sites on your whitelist, which by default is only Mozilla Update), but when the two vulnerabilities are used together any site could trigger the execution of arbitrary code.
Patches (updated versions) are not yet available (but are expected soon), as these flaws were prematurely disclosed to the public. For now, the best temporary solution is to disable both JavaScript and Software Installation. See my original post in firefoxusers for more details. Also see these advisories:
Source: http://www.livejournal.com/community/mozilla/281543.html
-
OS makers: Security is job No. 1
Date: 05/10/05
(Security) Keywords: software, security, virus
New generation of software focuses as much on security as on glitzy features, as consumers get frustrated by viruses and fraud threats.
Source: http://news.zdnet.com/OS+makers%3A+Security+is+job+No.+1/2100-1009_22-5697133.html?part=rss&tag=feed&subj=zdnn
-
LAMP vs. Microsoft
Date: 05/11/05
(Web Development) Keywords: php, mysql, asp, sql, security, linux, microsoft, apache
I have to do a report my class Technical Writing. I have chosen to do a report on the LAMP Architecture vs. Microsoft Line of products. LAMP being Linux, Apache Server, MySQL, and PHP. Microsoft being Microsoft Windows, IIS Server, MS SQL Server, and ASP.NEt. What do you guys think is best? Are there any security flaws in one or the other? Which is more efficient altogether?
If you could help me with this, I would be very appreciative.
Source: http://www.livejournal.com/community/webdev/197774.html
-
Novell acquires Linux security company
Date: 05/11/05
(Security) Keywords: software, security, linux
Snags Immunix, a small company that sells software designed to improve the security of programs running on Linux servers.
Source: http://news.zdnet.com/Novell+acquires+Linux+security+company/2100-1009_22-5702398.html?part=rss&tag=feed&subj=zdnn
-
Fix in for Windows flaw
Date: 05/10/05
(Security) Keywords: security, microsoft
Microsoft patches "important" security hole in the OS and publishes two early alerts in its new advisory program.
Source: http://news.zdnet.com/Fix+in+for+Windows+flaw/2100-1009_22-5701804.html?part=rss&tag=feed&subj=zdnn
-
Outlook 2000 and XP SP 2 Intranet Prompting
Date: 05/11/05
(IT Professionals) Keywords: security, web
I have an Exchange 5.5 (Yes! We are upgrading within days) and Outlook 2000 environment at work.
Recently a few users including myself upgraded to XP Sp2. Suddenly, we are being prompted for a domain login/pass when we open emails that contain images on the intranet webserver. Prior, it automatically authenticated. IE does not currently prompt (for most people). I made sure the Intranet server was added to the Intranet Sites in the IE Security tab.
I've looked all around the web but can't even find anyone else that has this problem. Any of you have any insight?
Source: http://www.livejournal.com/community/itprofessionals/11285.html
-
New Security Updates Now Available
Date: 05/12/05
(Mozilla) Keywords: security
Firefox 1.0.4 and Mozilla 1.7.8 are now available. These new versions fix the critical vulnerabilities that were disclosed earlier in the week. Everyone should upgrade ASAP, especially Firefox users (since they suffer from both vulnerabilities)! For more information on the vulnerabilities, see Mozilla's security advisory on the issue, or one of my earlier posts here or in firefoxusers.
Source: http://www.livejournal.com/community/mozilla/282433.html