Thursday, March 28, 2013

Cracking IKE Mission:Improbable (Part 1)

http://blog.spiderlabs.com/2013/03/cracking-ike-aggressive-mode-hashes-part-1.html

Anti-cyber threat alliance formed in the UK

http://www.h-online.com/security/news/item/Anti-cyber-threat-alliance-formed-in-the-UK-1832044.html

http://www.bbc.co.uk/news/uk-21945702

Many S3 buckets leak corporate data

http://www.h-online.com/security/news/item/Many-S3-buckets-leak-corporate-data-1832034.html

https://community.rapid7.com/community/infosec/blog/2013/03/27/1951-open-s3-buckets

Amazon announces new security tool for its cloud services

http://www.h-online.com/security/news/item/Amazon-announces-new-security-tool-for-its-cloud-services-1831984.html

How To Run Your Own Web SMS Portal With PointSMS

http://www.howtoforge.com/how-to-run-your-own-web-sms-portal-with-pointsms

Create an Instant Notepad in Any Web Browser Window

http://osxdaily.com/2013/03/27/create-an-instant-notepad-in-any-web-browser-window/

Backdoor Uses Evernote as Command-and-Control Server

http://blog.trendmicro.com/trendlabs-security-intelligence/backdoor-uses-evernote-as-command-and-control-server/

Spamhaus DDoS grows to Internet-threatening size

http://arstechnica.com/security/2013/03/spamhaus-ddos-grows-to-internet-threatening-size/

How are Java attacks getting through?

http://community.websense.com/blogs/securitylabs/archive/2013/03/25/how-are-java-attacks-getting-through.aspx

Tuesday, March 19, 2013

The Perfect Hardware Spy Tool for $35 Plus Change

http://www.hotforsecurity.com/blog/the-perfect-hardware-spy-tool-for-35-plus-change-5680.html

Gapz and Redyms droppers based on Power Loader code

http://www.welivesecurity.com/2013/03/19/gapz-and-redyms-droppers-based-on-power-loader-code/

Trend Micro analyses attacks on industrial control systems

http://www.h-online.com/security/news/item/Trend-Micro-analyses-attacks-on-industrial-control-systems-1824655.html

http://www.trendmicro.com/cloud-content/us/pdfs/security-intelligence/white-papers/wp-whos-really-attacking-your-ics-equipment.pdf

Professional videoconferencing system as a spy

http://www.h-online.com/security/news/item/Professional-videoconferencing-system-as-a-spy-1824707.html

Huawei 3G/4G USB sticks put users' security at risk

http://www.h-online.com/security/news/item/Huawei-3G-4G-USB-sticks-put-users-security-at-risk-1823894.html

CVE-2013-1493 (jre17u15 - jre16u41) integrating Exploit Kits

http://malware.dontneedcoffee.com/2013/03/cve-2013-1493-jre17u15-jre16u41.html

Hello Neutrino ! (just one more Exploit Kit)

  http://malware.dontneedcoffee.com/2013/03/hello-neutrino-just-one-more-exploit-kit.html

Details on the denial of service attack that targeted Ars Technica

http://arstechnica.com/security/2013/03/details-on-the-denial-of-service-attack-that-targeted-ars-technica/

Cybercrime-friendly community branded HTTP/SMTP based keylogger spotted in the wild

http://blog.webroot.com/2013/03/19/cybercrime-friendly-community-branded-httpsmtp-based-keylogger-spotted-in-the-wild/

California duo charged with selling ready-to-hack Point-of-Sale systems to Subway branches

http://nakedsecurity.sophos.com/2013/03/18/california-duo-charged-with-selling-ready-to-hack-pos-systems/

High-rolling gambler uses casino's own surveillance system to scoop $32 million...

http://nakedsecurity.sophos.com/2013/03/17/high-rolling-gambler-uses-casinos-own-surveillance/

Hackers launch DDoS attack on security blogger's site, send SWAT team to his home

http://nakedsecurity.sophos.com/2013/03/17/swat-ddos-brian-krebs/

http://krebsonsecurity.com/2013/03/the-obscurest-epoch-is-today/

http://arstechnica.com/security/2013/03/security-reporter-tells-ars-about-hacked-911-call-that-sent-swat-team-to-his-house/

Has HTTPS finally been cracked? Five researchers deal SSL/TLS a biggish blow...

http://nakedsecurity.sophos.com/2013/03/16/has-https-finally-been-cracked/

Travnet Trojan Could Be Part of APT Campaign

http://blogs.mcafee.com/mcafee-labs/travnet-trojan-could-be-part-of-apt-campaign

AT&T Hacker Andrew Auernheimer sentenced to 3.5 Years in prison

http://thehackernews.com/2013/03/at-hacker-andrew-auernheimer-sentenced.html

Android Malware Spams Victim’s Contacts

http://www.symantec.com/connect/blogs/android-malware-spams-victim-s-contacts

Gaming Platforms as an attack vector against remote systems

http://thehackernews.com/2013/03/gaming-platforms-as-attack-vector.html