Infosecurity News

  1. Pastebin shut down twice in a week by DDoS attacks

    Pastebin.com, a favorite venue for hacktivists, was shut down twice this week by distributed denial-of-service (DDoS) attacks.

  2. Google plugs three high-risk holes in latest Chrome browser

    Google has fixed three high-risk vulnerabilities in the latest version of its Chrome browser.

  3. Vietnam doles out fines for theft of personal information

    The Vietnamese Communication Security Agency has fined three individuals for stealing personal information on millions of people and selling it online, the first time fines have been issued for such activity in the country.

  4. New variant of Ramnit financial malware targeting Facebook users

    Ramnit is not a new worm, as it was first reported back in April 2010. Last summer it evolved into financial malware. Now its developers are specifically targeting Facebook users.

  5. BAE Systems Detica becomes a strategic partner with CEOP

    BAE Systems Detica has become a strategic partner of the Child Exploitation and Online Protection (CEOP) Centre. This is a special relationship reserved for organizations that have provided a real contribution toward CEOP’s role in protecting children online. Other strategic partners are Microsoft, the NSPCC and Visa Europe.

  6. Most users have not installed security software on their smartphones, survey finds

    Nearly three-quarters of Americans have never installed data protection applications or security software on their smartphones to protect against data loss or malware, according to a survey sponsored by the National Cyber Security Alliance (NCSA) and McAfee.

  7. Anonymous threatens Sony over SOPA support

    Anonymous is entering the US legislative fray by targeting Sony over its support of the Stop Online Piracy Act (SOPA) being considered by the US House.

  8. Law enforcement union calls for legislative probe into Anonymous hack

    The Peace Officers of California (POC) group is demanding a legislative investigation into the handling of an Anonymous hack of the California State Law Enforcement Association (CSLEA) website.

  9. Lilupophilupop: Tongue-twister SQL injection attacks pass one million mark

    The lilupophilupop.com SQL injection attacks, first analyzed by the SANS Internet Storm Center in early December, have topped one million infected pages.

  10. WordPress 3.3 has XSS vulnerability, say Indian researchers

    Indian researchers Aditya Modha and Samir Shah have uncovered a cross-site scripting (XSS) vulnerability in WordPress 3.3.

  11. Stuxnet and Duqu were produced by the same malware team

    Kaspersky’s lengthy investigation into the Duqu worm concludes that it comes from the same developers as Stuxnet. This, potentially, has serious implications.

  12. Leveson Inquiry shows government should concentrate RIPA reforms on the media

    A UK lawyer has called on the government to redirect its reforms of the Regulation of Investigatory Powers Act (RIPA) away from local authorities and toward journalism.

  13. Care2 fails to take care of members' personal information

    Online community Care2 has notified its close to 18 million members that the site’s servers were attacked, resulting in a security breach.

  14. Hackers celebrate New Year's by breaching Philippine government websites

    The PrivateX hacker group breached two Philippine government websites, the Office of the Vice President (OVP) and the Philippine Nuclear Research Institute (PNRI), on New Year’s Day.

  15. Service wipes data from government PCs with degaussing

    PC Recycler provides electronics recycling services to a number of US government agencies, using degaussing to wipe data from the devices before destruction.

  16. Saudi hackers publish personal data Israeli sports site subscribers

    Saudi hackers who claim they are members of Anonymous have breached the Israeli ONE sports website and leaked personal information on 400,000 subscribers.

  17. Raytheon goes on cybersecurity buying spree

    Last month, US defense contractor Raytheon acquired two companies that supply cybersecurity products and services to the US military: Henggeler Computer Consultants and Pikewerks Corp.

  18. Critical infrastructure firms should update cybersecurity infrastructure, McAfee advises

    Based on its assessment that cyberattacks against critical infrastructure will increase next year, McAfee advises critical infrastructure companies to upgrade their cybersecurity infrastructure.

  19. No rogue certificates were issued by Comodohacker, says GlobalSign

    After an extensive review, Belgian certificate authority (CA) GlobalSign said that no rogue certificates were issued and no customer data were exposed as the result of a breach disclosed in September.

  20. India's Paladion to set up cybercrime monitoring hub in Oman

    Indian information security firm Paladion Networks has announced plans to set up a dedicated hub in Oman to monitor and respond to cybercrime in the sultanate.

What’s hot on Infosecurity Magazine?