Malware RSS Feed

Analysis: Application Control: the key to a secure network - Part 2

Malware Alerts - Tue, 02/19/2013 - 11:00
It’s brilliant - but is it user-friendly?

New Blog Entry: CERT Insider Threat Events at the RSA Conference

CERT Announcements - Tue, 02/19/2013 - 07:15
This blog entry provides you with an opportunity to meet members of the CERT Insider Threat Center at the RSA Conference and describes events supported by these members at the conference.

Blog: Trust but verify: when CAs fall short

Malware Alerts - Tue, 02/19/2013 - 03:31

We’ve recently experienced yet another case of a root certificate authority (CA from now on) losing control of its own certificates. And yet again, we have been waiting for either the CA or the browser to do something about it. This whole mess stems, once again, from both a governance and a technical problem. First, only the very same CA that issued a certificate can later revoke it. Second, although web browsers implement several techniques to check the certificate’s revocation status, errors in the procedure are rarely considered hard failures.

Analysis: Honey traps on the Internet

Malware Alerts - Thu, 02/14/2013 - 04:59
In the world of espionage, a ‘honey trap’ traditionally involves a seductive encounter designed to coax information out of an agent, or to compromise him in his work.

Blog: Cyber Attacks Against Uyghur Mac OS X Users Intensify

Malware Alerts - Wed, 02/13/2013 - 11:53
In partnership with researchers at AlienVault Labs, we’ve analysed a series of targeted attacks against Uyghur Mac OS X users which took place during the past months.

New Blog Entry: Common Sense Guide to Mitigating Insider Threats - Best Practice 19 (of 19)

CERT Announcements - Wed, 02/13/2013 - 07:39
This last of 19 blog posts about the fourth edition of the Common Sense Guide to Mitigating Insider Threats describes Practice 19: Close the doors to unauthorized data exfiltration.

Blog: February 2013 Microsoft Security Bulletins - Volume is High but a Handful are Critical

Malware Alerts - Tue, 02/12/2013 - 13:36

Today's February Microsoft Security Bulletin release patches a long list of vulnerabilities. However, only a subset of these vulnerabilities are critical. Four of them effect client side software and one effect server side - Internet Explorer, DirectShow media processing components (using web browsers or Office software as a vector of delivery), OLE automation components (APT related spearphish), and one effecting the specially licensed "Oracle Outside In" components hosted by Microsoft Exchange that could be used to attack OWA users.

Blog: Adobe Flash Player 0-day and HackingTeam's Remote Control System

Malware Alerts - Tue, 02/12/2013 - 10:01
Adobe Flash Player CVE-2013-0633 is a critical vulnerability that was discovered and reported to Adobe by Kaspersky Lab researchers Sergey Golovanov and Alexander Polyakov. The exploits for CVE-2013-0633 have been observed while monitoring the so-called ‘legal’ surveillance malware created by the Italian company HackingTeam. In this blog, we will describe some of the attacks and the usage of this 0-day to deploy malware from ‘HackingTeam’ marketed as Remote Control System.

New Blog Entry: Common Sense Guide to Mitigating Insider Threats - Best Practice 18 (of 19)

CERT Announcements - Mon, 02/11/2013 - 07:28
This eighteenth of 19 blog posts about the fourth edition of the Common Sense Guide to Mitigating Insider Threats describes Practice 18: Be especially vigilant regarding social media.

Pages

Subscribe to RIT Information Security aggregator