Takedown of the plitfi Citadel botnet report
At the end of February 2013 NASK (Research and Academic Computer Network) { the .plccTLD Registry { and CERT Polska (an incident response team operated by NASK) tookover 3 .pl domains used by one of...
View ArticleOracle Java SE Critical Patch Update Pre-Release Announcement - April 2013...
DescriptionThis Critical Patch Update Pre-Release Announcement provides advance information about the Oracle Java SE Critical Patch Update for April 2013, which will be released on Tuesday, April 16,...
View ArticleRecursor 3.5 is now available!
-----BEGIN PGP SIGNED MESSAGE-----Hash: SHA1Hi everybody,version 3.5 of the PowerDNS Recursor is now available fromhttps://www.powerdns.com/downloads.htmlKees Monshouwer provides native RHEL5/6...
View ArticleUS-CERT Current Activity - WordPress Sites Targeted by Mass Brute-force...
-----BEGIN PGP SIGNED MESSAGE-----Hash: SHA1National Cyber Awareness SystemWordPress Sites Targeted by Mass Brute-force Botnet AttackOriginal release date: April 15, 2013US-CERT is aware of an ongoing...
View ArticleThreat Outbreak Alert: Fake Tax Return Submission Notification E-mail Messages
DescriptionCisco Security Intelligence Operations has detected significant activity related to spam e-mail messages that claim to contain an online tax refund submission notification for the recipient....
View ArticleXen Security Advisory 48 (CVE-2013-1922) - qemu-nbd format-guessing due to...
Xen Security Advisory CVE-2013-1922 / XSA-48 version 2 qemu-nbd format-guessing due to missing format specificationUPDATES IN VERSION...
View ArticleJSON Diff - JSON Patch Generator
CodeNetworkPull Requests 0Issues 0GraphsRubyA JSON patch generator in Ruby — Read moreClone in Windows ZIPHTTPSSHGit Read-OnlyRead-Only accessTags 2 branch: master Files Commits Branches 2 18...
View Article[RHSA-2013:0743-01] Important: JBoss Enterprise BRMS Platform 5.3.1 update
----BEGIN PGP SIGNED MESSAGE-----Hash: SHA1===================================================================== Red Hat Security AdvisorySynopsis: Important: JBoss...
View Article[RHSA-2013:0742-01] Low: 389-ds-base security and bug fix update
-----BEGIN PGP SIGNED MESSAGE-----Hash: SHA1===================================================================== Red Hat Security AdvisorySynopsis: Low: 389-ds-base security...
View ArticleDissecting a Malicious Word Document
In a recent spearphish campaign, a malicious Word document was used to infect the email recipient. I was able to find an interesting tool and used it to recreate the Word document. Before we get to...
View Articlelinode security incident update
April 16, 2013 2:55 amYesterday, a group named HTP claimed responsibility for accessing Linode Manager web servers, we believe by exploiting a previously unknown zero-day vulnerability in Adobe’s...
View Articlewebcam-pulse-detector
webcam-pulse-detectorA python application that detects the heart-rate of an individual using their computer's webcam. Tested on OSX 10.7 (Lion), Ubuntu 13.04 (Ringtail), and Windows 7.Inspired by...
View ArticleSchnuck Markets, Inc., announces that between December 2012 and March 29,...
SCHNUCKS RELEASES DETAILS OF CARD ISSUE AS INVESTIGATION NEARS ENDST. LOUIS – Leaders of St. Louis-based Schnuck Markets, Inc., today announced that between December 2012 and March 29, 2013,...
View ArticleSymantec Internet Security Threat Report Reveals Increase in Cyberespionage...
LAS VEGAS, NV--(Marketwired - Apr 16, 2013) - Symantec Vision 2013 -- Symantec Corp.'s Internet Security Threat Report, Volume 18 (ISTR) today revealed a 42 percent surge during 2012 in targeted...
View ArticleInsider Threats and Employee-Owned Devices Identified as the Greatest Risks...
New Findings From Network Security Management Provider AlgoSec Also Indicate Poor Change Management Processes Lead to Network and Application OutagesBOSTON, MA--(Marketwired - Apr 16, 2013) - AlgoSec,...
View ArticleWisegate to Host CISO Webinar on Most Hyped Info Security Issues of 2013
Thought-Leadership Event Features Distinguished Chief Information Security Officers (CISOs) from Brown University, the Government of Alberta and W.L. Gore & Associates, Inc. with Special Guest...
View ArticleCertificate revocation and the performance of OCSP
Certificate revocation is a critical aspect of maintaining the security of the third-party Certificate Authority (CA) infrastructure which underpins secure communication on the internet using SSL/TLS....
View ArticleFooling malware like a boss with Cuckoo Sandbox
After several months of work, we finally released Cuckoo Sandbox 0.6.This release represents an important step forward in the growth of the project; several new features have been introduced, along...
View ArticleA System Call-Centric Analysis and Stimulation Technique to Automatically...
ABSTRACTWith more than 500 million of activations reported in Q32012, Android mobile devices are becoming ubiquitous andtrends con rm this is unlikely to slow down. App stores,such as Google Play,...
View ArticleMicrosoft Security Bulletin Revision for Microsoft Antimalware Client
********************************************************************Title: Microsoft Security Bulletin Minor RevisionsIssued: April 16,...
View Article