PDF Spam volume increased by 25%

July 19th, 2007

If you are like me and have several different mail accounts you have probably noticed an increase in new unfiltered spam massages in your inbox. The latest scam in spam technology is called pdf-spam. It’s the next generation of pump and dump schemes where spammers inject the content of a typical image-spam message into […]

The DBA Thief Who Knew Enough To Avoid His Own Network

July 6th, 2007

Fidelity National suffered the ultimate insider theft when an IT staffer sold about 2.3 million customer records to a marketing firm. But it’s the low-tech way this techie did it that makes it interesting.
When Fidelity National Information Services this week announced that about 2.3 million customer records had been illegally sold to a group of […]

Inside Job? TJX cost of breach estimated at $1.6 billion

April 12th, 2007

Over the last couple of days there have been rumors whether the massive breach at TJX might have been an “inside-job”. This is probably fueled by the fact that the attacker apparently had access to the crypto keys within TJX’s data center. Whether it was an inside-job or not, doesn’t really matter at this point.

Protegrity […]

Security 2007 - A look ahead

January 1st, 2007

First of, I want to wish all our readers, supporters and contributors a happy new year and all the best for 2007!
In the past I’ve challenged myself in predicting what kind of technologies, threats and solutions will make it big in the future. Until now I’ve only shared that with my friends and associates. This […]

Top Web Hacks of 2006

January 1st, 2007

Jeremiah Grossman has put together this interesting list of web based attacks and exploits:

Top 10
1. Web Browser Intranet Hacking / Port Scanning - (with JavaScript and with HTML-only and the improved model)
2. Internet Explorer 7 “mhtml:” Redirection Information Disclosure
3. Anti-DNS Pinning and Circumventing Anti-Anti DNS pinning
[…]

Skype Worm Downgraded

December 21st, 2006

The Skype “worm” has now been categorized as a rather harmless Trojan. Here’s the actual alert from Websense:

Yesterday Websense Security Labs reported on our blog that there was a potential Worm propagating via Skype (see: http://www.websense.com/securitylabs/blog/blog.php?BlogID=101). After investigation we have discovered that this is not a self propagating worm and is actually a Trojan Horse.
After […]

 
-->