I was able to spend my weekend with some very nice and talented people at the HackMiami conference. This year (amongst many other great speakers) i heard Dave Marcus present a keynote about malware, Emilio Casbas showed off an online… Read more ›
- Hacker News
The scientists are highlighting ways to implement automated law enforcement without having to suffer the consequences of malfunction and possible abuse. Lisa Shay: So, what can we do about this? Obviously there are countermeasures that are available for all different kinds of problems. Greg and I gave a talk at the HOPE 9 conference earlier [...]
- Hacker News
I missed this last week, being at a couple of security workshops and cursed with a very erratic email connection, but F-Secure has reported an interesting item of spyware found on an African activist’s Mac at the Oslo Freedom Forum. According to VirusTotal, there is wide detection of the sample (19/47). While I don’t want […]
- Hacker News
On Thursday, May 16, 2013, a Turkish hacking group called Turkish Ajan hacked into the City of Akron and released a number of files that contain personal information on a number of Akron citizens. According to the city, the attackers were able to gain ...
- Hacker News
Recently I’ve started moving over my lab systems from my old faithful Mac Book Pro to a new Lenovo system. After receiving the new Lenovo and booting into Windows 8 pro for the first time, I did what any sane person would… formatted the thing and installed a usable operating system. After the usual tinkering […]
- Hacker News
Globo.com, one of the largest Brazilian web portals (ranked #107 on Alexa and #6 for Brazilian traffic) appears to be compromised and all visits to it are being redirected to a sub page inside pagesinxt.com. If you go to g1.globo.com (or any other of their sub domains), you will end up on a page full Read More
- Hacker News
Interesting article on the boardmember.com site by Trustwave’s Nicolas Percoco describing a targeted attack at a senior executive. Who’d a thunk sites catering to board members (and other mahogany row folks) would be publishing stuff from security folks. Oh how the times have changed, eh? Let’s dissect this attack starting from before you received the email early this morning. One of your competitors hired a hacker to obtain business plans, financial statements, price lists, etc. from your company. This activity is known as corporate espionage and has been going on since businesses started competing, just not in the same way it is happening today – through the click of a mouse. The post runs through a rather plausible scenario. Targeted email from a spoofed account. Zero day attack in the attachment. Total compromise and full access to the entire filesystem, allowing the theft of pretty much anything. Yup. When you opened that resume, the Zero Day exploited a problem in your document...
- Hacker News
Sunday Circle Share of Awesome... :: Hello to all the new Plussers I met last week (plus a few I reconnected with). Mainly, these folks are engagers, not passive consumers, so do add them if you're looking for interesting conversations here on G+. Also, feel free to share this with your circles. Spread the love! (Or not, as you wish.) [For previous shares, see #richisundaycircle]
- Hacker News
If you are interested in WiFi (Wireless) hacking and security then this is for you! Go and hit up hakin9.org and enjoy their huge resource of WiFi, Wireshark and Cyber Security articles and ‘how-to’s’ Here is the link. Seriously, if there is one edition or resource that we highly recommend, it’s this! Here is a ...Continue Reading The post The best hacking wireless hacking resource on the web: Hackin9 appeared first on Concise Courses Information Security Blog.
- Hacker News
It's almost time for the annual AusCERT conference in Queensland, Australia. And for everyone who's asked, the answer is, "Yes! There's a #sophospuzzle!" No, you don't have to there to join in...
- Hacker News
Google Glasses reviewed, often spiced with profanity A technology, profound, previews dystopic humanity Augmentation, extension, lensless optics you blink through Winking gestures, #hashtagged pictures, an earpiece you talk to It gives you directions, sends you tweets, you’ll hangout! Wifi and bluetooth, “PEACOCK!” its users all shout “Don’t diss the tech, man,” the [...]
- Hacker News
This week Microsoft released two critical Internet Explorer updates, and everyone should update IE as soon as possible. MS13-038 contains the fix for CVE-2013-1347, the bug first discovered in the Department of Labor hack earlier this month. “The vulnerability could allow remote code execution if a user views a specially crafted webpage using Internet Explorer.… Read More
- Hacker News
Third in the VisibleRisk series about Malicious PDF analysis. This post focuses on instrumenting Spidermonkey to benefit the analyst when identifying shellcode in javasript.
- Hacker News
Cornucopia Ecommerce Website Edition v1.00 was uploaded to the OWASP website in February and has now been upgraded to a full OWASP project. Today, I have completed the new OWASP Cornucopia Project pages which include: Description and obj...
- Hacker News
Prevent Data Leakage ESXi provides a useful and not so well known interface used to provide both support information and the configuration of your ESXi hosts through esxicli. This is accessed by connecting to your ESXi host using a web browser, the url syntax is:- Remediation If you don’t want this to be made available ...
- Hacker News
The researchers provide here an insight into whether perfect law enforcement is a good thing, and dwell on related issues from an automation perspective. Woody Hartzog: Some of the big questions, and I think the one that goes to the heart of our talk today, is whether we want perfect enforcement of the law. And [...]
- Hacker News
SCADA is constantly in the news these days. The latest news is that SCADA systems are getting smarter, and it appears, thanks to hard work from researchers from NC State University, industrial control systems can now even think for themselves! Researchers at NCSU have built a SCADA system that has peer-to-peer influence in that if ...Continue Reading The post SCADA and ICS systems are now self-healing! appeared first on Concise Courses Information Security Blog.
- Hacker News
The Syrian Electronic Army has claimed another victory by defacing the Financial Times website as well as several Twitter accounts run by the news organization. The group has had a run of luck recently with the compromise of the Associated Press Twitter account, where they tweeted a false story about President Barack Obama being injured and hacking… Read More
- Hacker News