expand all items
FBI aims for world's largest biometrics database
The US agency has already started compiling data to be used in the planned $1bn project, according to a reportmore
McAfee tumbles after restatement
Computer security company records charges due to stock option accounting errors; delays buyback of shares until '08.more
Microsoft Office Publisher /Word DoS
Crash on malformed .pub file with WordArt object parsing.more
ZyXEL P-330W routers crossite scripting
Crossite scripting in Web administration interface. Applications: ZyXEL P-330W (26.12.2007)more
GMail Security Hole Allowed Malicious Hacker to Invade the Life of a Blogger
Mr. David Airey a blogger and designer from UK had his site Hacked by some useless bastard. This gmail hacker set up a malicious site that exploited a security flaw in gmail to set up an email filter that autoforwarded all David’s emails to another malicious email account. Although Google has appearently fixedmore
PGP and the 5th Amendment
Vermont federal judge has ruled that a person cannot be compelled by police to divulge his PGP key. This is by no means the end of the legal debate (Orin Kerr comments), but it's certainly good news....more
Cisco report predicts bigger attacks orchestrated from Storm botnet in 2008
In its first annual report on the overall state of internet security, Cisco is predicting bigger attacks in 2008 from the Storm botnet as its creators let criminals buy the use of Storm's millions of zombie computers to launch massive spam or DoS attacks.more
Herd intelligence benefits IT security
The rise of customized malware is forcing security software vendors to change their tactics quickly and begin using customers' machines as their initial line of threat detection intelligence, according to a new report from Yankee Group.more
Happy2008.exe
Storm action continues.
They were late for Christmas but early for New Year: We're already seeing New Year greeting card spam runs directing users to a malicious web site called uhavepostcard.com.more
Sarbanes-Oxley Compliance Issues
Compliance issues have always plagued businesses, but the Sarbanes-Oxley Act (SOA) increased the level of concern companies face concerning accounting regulations. Read the MessageLabs SOA report to learn how to better manage business communications.more
Pump-and-dump scam spam switches on video
The scamsters, who target get-rich-quick stock shoppers, have a new attention-getter in their pitch repertoire: high-quality video. (The quality of the pitches, alas, remains the same.)more
PCI Compliance Report: Cost Analysis Reveals Expense Justified
Fortrex, in conjunction with Solidcore and Emagined Security have compiled a PCI compliance report that reveals the cost of a breach can easily be 20 times the cost of PCI compliance, more than justifying the up-front investment. Published by: Solidcore Systemsmore
Yahoo, ESTsoft Offer Free Anti-Virus Programs
Common UNIX Printing System SNMP 'asn1_get_string()' Remote Buffer Overflow Vulnerability
Adobe Flash Content May Permit Cross-Site Scripting Attacks
Hackers Target Korean, Japanese Gamers
Live for Speed game buffer overflow