Wednesday, October 31, 2012

Researchers found Apache Server-Status Enabled Security Vulnerability in Popular sites

http://thehackernews.com/2012/10/researchers-found-apache-server-status.html

Multiplatform Java Jacksbot Malware infecting Windows, Linux and Mac


http://thehackernews.com/2012/10/multiplatform-java-jacksbot-malware.html

Nuclear power plant cybersecurity warnings silenced by legal threats




http://nakedsecurity.sophos.com/2012/10/31/nuclear-security-silence/

Deep Inside a DNS Amplification DDoS Attack

http://blog.cloudflare.com/deep-inside-a-dns-amplification-ddos-attack

Nuclear Exploit Pack goes 2.0

http://blog.webroot.com/2012/10/31/nuclear-exploit-pack-goes-2-0/

A Look Into The Russian Underground

http://blog.trendmicro.com/trendlabs-security-intelligence/a-look-into-the-russian-underground/

http://www.trendmicro.com/cloud-content/us/pdfs/security-intelligence/white-papers/wp-russian-underground-101.pdf

Monday, October 29, 2012

Malware Authors Using New Techniques to Evade Automated Threat Analysis Systems

http://www.symantec.com/connect/blogs/malware-authors-using-new-techniques-evade-automated-threat-analysis-systems

Rate Limiting With nginx

http://www.howtoforge.com/rate-limiting-with-nginx

Installing Nginx With PHP5 (And PHP-FPM) And MySQL Support (LEMP) On Ubuntu 12.10

http://www.howtoforge.com/installing-nginx-with-php5-and-php-fpm-and-mysql-support-lemp-on-ubuntu-12.10

LapPi - A Raspberry Pi Netbook

http://www.instructables.com/id/LapPi-A-Raspberry-Pi-Netbook/?ALLSTEPS

How Mobile Ads Abuse Permissions

http://blog.trendmicro.com/trendlabs-security-intelligence/how-mobile-ads-abuse-permissions/

Cybercriminals spamvertise millions of British Airways themed e-ticket receipts, serve malware

http://blog.webroot.com/2012/10/29/cybercriminals-spamvertise-millions-of-british-airways-themed-e-ticket-receipts-serve-malware/


https://www.virustotal.com/file/39f59152979aeb68c8a5e7e7dbc30ad06fe653a938124e2bd9c462fb7caa5c21/analysis/1350587254/

Anonymous leaks Classified Documents from Greek Finance Ministry server

http://thehackernews.com/2012/10/anonymous-leak-classified-documents.html#sthash.W0KfMpn1.dpbs

"STD-like" virus killing off Borderlands 2 video game characters

http://nakedsecurity.sophos.com/2012/10/29/std-virus-killing-off-borderlands-2-characters/

Reveton += HU, LV, SK, SL (!), TR (!), RO - So spreading accross Europe with 6 new Design

http://malware.dontneedcoffee.com/2012/10/reveton-hu-lv-sk-sl-tr-ro-so-spreading.html

Thursday, October 11, 2012

mDNS - Telling the world about you (and your device)

http://blog.spiderlabs.com/2012/10/still-writing-mdns-telling-the-world-about-you-and-your-device.html

Cool Exploit Kit - A new Browser Exploit Pack on the Battlefield with a "Duqu" like font drop

http://malware.dontneedcoffee.com/2012/10/newcoolek.html

Firefox browser in upgrade-downgrade confusion with version 16

http://nakedsecurity.sophos.com/2012/10/11/firefox-browser-in-version-16-upgrade-downgrade-confusion/

Drinking From the Caffeine Firehose 2: Accessing Private and Industrial Systems

http://privacy-pc.com/articles/drinking-from-the-caffeine-firehose-2-accessing-private-and-industrial-systems.html

Drinking From the Caffeine Firehose We Know as Shodan

http://privacy-pc.com/articles/drinking-from-the-caffeine-firehose-we-know-as-shodan.html

Watch out for new Skype virus – Worm.NgrBot (Dorkbot)!

http://privacy-pc.com/news/watch-out-for-new-skype-virus-worm-ngrbot-dorkbot.html

Critical Adobe Flash Player Update Nixes 25 Flaws

http://krebsonsecurity.com/2012/10/critical-adobe-flash-player-update-nixes-25-flaws/

‘Pinkie Pie’ discovered second Chrome exploit worth $60k at Pwnium 2

http://thehackernews.com/2012/10/pinkie-pie-discovered-second-chrome.html#sthash.u2vTclgx.dpbs

Monday, October 8, 2012

The open GSM future arrives

http://www.h-online.com/open/features/The-open-GSM-future-arrives-1723580.html

MegaDroid: 300,000 Androids clustered together to study network havoc

http://arstechnica.com/information-technology/2012/10/megadroid-300000-androids-clustered-together-to-study-network-havoc/

‘Project Blitzkrieg’ Promises More Aggressive Cyberheists Against U.S. Banks





http://krebsonsecurity.com/2012/10/project-blitzkrieg-promises-more-aggressive-cyberheists-against-u-s-banks/

Telecom Giant Orange Hacked, Data leaked by #NullCrew

http://www.cyberwarnews.info/2012/10/07/telecom-giant-orange-hacked-data-leaked-by-nullcrew/

Hackers deface Philippines Department of Environment website

thehackernews.com/2012/10/hackers-deface-philippines-department.html

Hackers disrupt Interpol website against Anti-Islam film

http://thehackernews.com/2012/10/hackers-disrupt-interpol-website.html

The H Roundup - Linux 3.6, Oracle's Java plans and hacked routers

http://www.h-online.com/security/news/item/The-H-Roundup-Linux-3-6-Oracle-s-Java-plans-and-hacked-routers-1724552.html

Huawei and ZTE pose security threat, warns US panel

http://www.bbc.co.uk/news/business-19867399

Bogus Bad Piggies Plugins Found on Google Chrome Web Store

http://paritynews.com/security/item/405-bogus-bad-piggies-chrome-plugins-found-on-google-chrome-web-store

Blizzard Acknowledges World of Warcraft in-Game Exploit, Fixes it

http://paritynews.com/security/item/404-blizzard-acknowledges-world-of-warcraft-in-game-exploit-fixes-it

Steal Everything, Kill Everyone, Cause Total Financial Ruin 6: Enforcing Security Awareness

http://privacy-pc.com/articles/steal-everything-kill-everyone-cause-total-financial-ruin-6-enforcing-security-awareness.html

Steal Everything, Kill Everyone, Cause Total Financial Ruin 5: Methods of Espionage

http://privacy-pc.com/articles/steal-everything-kill-everyone-cause-total-financial-ruin-5-methods-of-espionage.html

Steal Everything, Kill Everyone, Cause Total Financial Ruin 4: Workplace Violence Countermeasures

http://privacy-pc.com/articles/steal-everything-kill-everyone-cause-total-financial-ruin-4-workplace-violence-countermeasures.html

Monday review: the hot 21 stories of the week

http://nakedsecurity.sophos.com/2012/10/08/monday-review-the-hot-21-stories-of-the-week/

Friday, October 5, 2012

VB2012 Paper: Flashback OS X Malware

http://www.f-secure.com/weblog/archives/00002441.html

http://www.virusbtn.com/conference/vb2012/abstracts/Aquilino.xml

http://www.f-secure.com/weblog/archives/Aquilino-VB2012.pdf

CloudFlare and StopBadware partner to make the Web a better place

http://blog.cloudflare.com/cloudflare-and-stopbadware-partner-to-make-th

Annoying Tagging Warm-up for Gangnam Style Scam Ball

  http://www.hotforsecurity.com/blog/annoying-tagging-warm-up-for-gangnam-style-scam-ball-3758.html

Tosy's mROBO transforming robot dances to the beat of its own drum

http://www.gizmag.com/tosy-speaker-robot-dancing-mrobo/24433/

http://www.tosy.com/en/products/personal-robots/mrobo/

Adding Two-Factor Authentication To OpenVPN AS With The WiKID Strong Authentication Server

  http://www.howtoforge.com/adding-two-factor-authentication-to-openvpn-as-with-the-wikid-strong-authentication-server

Searching for images on Bing? Beware malicious Blackhat SEO poisoning

http://nakedsecurity.sophos.com/2012/10/05/bing-image-blackhat-seo-poisoning/

TinKode sentenced after hacking Oracle, NASA and others to expose weak security

http://nakedsecurity.sophos.com/2012/10/05/tinkode-hacking-sentence/

Apple Ships OS X v.10.8.2 Supplemental Update 1.0

http://www.macobserver.com/tmo/article/apple-ships-os-x-v.10.8.2-supplemental-update-1.0

CloudFlare Partners with Parallels To Bring Web Performance and Security to 10 Million SMBs

http://blog.cloudflare.com/cloudflare-partners-with-parallels-to-bring-w-68545

Microsoft to Fix Critical Word Flaw in October Patch Tuesday

http://threatpost.com/en_us/blogs/microsoft-fix-critical-word-flaw-october-patch-tuesday-100412

http://technet.microsoft.com/en-us/security/bulletin/ms12-oct

Update to Citadel : 1.3.5.1 Rain Edition.

http://malware.dontneedcoffee.com/2012/10/citadelupdate1.3.5.1.html