'unsurprisingly common' vulnerability

XSS – an Underestimated Threat?
Posted by jenett on 08/24/10

'sophisticated and dangerous'

New trojan virus Zeus v3 empties online bank accounts
How to protect yourself from trojans when banking online
  • Make sure your anti-virus software is up to date.
  • Keep firewalls set to the highest level.
  • Never open an e-mail attachment from someone you don't know.
  • Never double-click on an e-mail attachment that ends in .exe. It is an 'executable' file and can do what it likes in your system.
  • If you think your machine has already been infected, contact your bank immediately. If the bank thinks you are a genuine victim of fraud it will reimburse you.
Posted by jenett on 08/11/10

noteworthy traveling precautions

Summer Vacation - A Privacy and Identity Theft Primer
Posted by jenett on 05/24/10

important security fixes

Firefox 3.6.2 Released
Posted by jenett on 03/23/10

trojan-infected add-ons found

Please read: Security Issue on AMO « Mozilla Add-ons Blog
Posted by jenett on 02/05/10

Is your data safe? (2)

  • Official Google Blog: A new approach to China

    Like many other well-known organizations, we face cyber attacks of varying degrees on a regular basis. In mid-December, we detected a highly sophisticated and targeted attack on our corporate infrastructure originating from China that resulted in the theft of intellectual property from Google.

  • Official Google Enterprise Blog: Keeping your data safe

    This attack may understandably raise some questions, so we wanted to take this opportunity to share some additional information and assure you that Google is introducing additional security measures to help ensure the safety of your data.

Related (1/13/10):
  • Google's half-truths and a plea for perspective

    Coordinated enough to get at GMail’s internal data store, if only the one with e-mail headers. If that doesn’t scare you, it should. What Google does with their .cn site is relatively minor news.

Posted by jenett on 01/12/10

banking/e-commerce at risk

Creating a rogue CA certificate

This successful proof of concept shows that the certificate validation performed by browsers can be subverted and malicious attackers might be able to monitor or tamper with data sent to secure websites. Banking and e-commerce sites are particularly at risk because of the high value of the information secured with HTTPS on those sites. With a rogue CA certificate, attackers would be able to execute practically undetectable phishing attacks against such sites.

Posted by jenett on 12/22/09

'jail-break' with care

Worm attack bites at Apple iPhone

The worm, known as ikee, only affects "jail-broken" phones, where a user has removed Apple's protection mechanisms to allow the phone to run any software.

Posted by jenett on 11/09/09

Is your data safe?

Facebook and MySpace security: backdoor wide open, millions of accounts exploitable

Facebook and MySpace fixed this quickly after being notified...

[Simon Willison's Weblog]
Posted by jenett on 11/05/09

'subtle security holes'

Secure computers aren’t so secure
Posted by jenett on 10/30/09

'still in the works'

Mozilla: Plugin Check
[Mozilla Security Blog]
Posted by jenett on 10/14/09

(still) full of holes

Microsoft readies bumper update
Posted by jenett on 10/12/09

'sophisticated ways'

Online thieves step up bank raids
Posted by jenett on 09/29/09

Flash: Security and Privacy (2)

BetterPrivacy Firefox extension
Posted by jenett on 08/23/09

Flash: Security and Privacy

Adobe - Flash Player : Settings Manager
Posted by jenett on 08/11/09

gone phishing

URL bar spoofing vulnerability
Posted by jenett on 07/29/09

'users should exercise caution'

Security Advisory for Adobe Reader, Acrobat and Flash Player
Posted by jenett on 07/24/09

'surveillance solutions'

UAE Blackberry update was spyware
Posted by jenett on 07/21/09

new version fixes security issue

Mozilla Firefox 3.5.1 Release Notes
(see compiler bug post)
Posted by jenett on 07/17/09

'widespread computer attack'

Governments hit by cyber attack
Posted by jenett on 07/08/09

'new type of fraud'

Parking ticket leads to a virus
Posted by jenett on 02/06/09

'scam directed at Twitter users'

Twitter Blog: Gone Phishing
Posted by jenett on 01/04/09

don't click

Facebook users hit by virus – "The virus tricks users by telling them they're in a video..."
Posted by jenett on 12/09/08

a web of villians

Don't have security nightmares
Posted by jenett on 11/07/08

fakes selling fakes

Clipboards hijacked in web attack
Posted by jenett on 08/19/08

FBI Press Release - 7/30/08

FBI Warns of Storm Worm Virus
Posted by jenett on 07/30/08

the scum never sleeps

Spammers announce World War III

Yet another reminder to "never follow links in unsolicited email messages." (and beware of intrusive/annoying ad tactics if you visit the news site's home page)

Posted by jenett on 07/10/08

'Big Brother' indeed

Criticism for 'UK database' plan
Posted by jenett on 05/21/08

from BBC's 'Click' program

Identity 'at risk' on Facebook

Related: Click's Facebook security advice

Posted by jenett on 05/01/08

beware of 'fake E-shops'

Cybersquatting Security Vendors for Fraudulent Purposes

Don't be cheap, if you're to buy any kind of software, do so through the official site, and cut the fraudulent intermediaries like the ones in this case.

Posted by jenett on 03/29/08

no privacy here, thank you

Security Lapse Exposes Facebook Photos

Beware of links to other news sites with heavy and/or intrusive advertising.

Posted by jenett on 03/25/08

security and privacy concerns

Anger over pupils database plan
Posted by jenett on 02/14/08

'digg' danger?

'digg' danger?
Posted by jenett on 02/04/08

'mandatory update'

Movable Type Security Update
Posted by jenett on 01/16/08

here's your proof...

Clarkson stung after bank prank

TV presenter Jeremy Clarkson has lost money after publishing his bank details in his newspaper column.

The Top Gear host revealed his account numbers after rubbishing the furore over the loss of 25 million people's personal details on two computer discs.

He wanted to prove the story was a fuss about nothing...

Posted by jenett on 01/07/08

'unacceptable intrusion'

German spyware plans trigger row – "German government plans to spy on terror suspects by deploying malicious e-mails have drawn sharp criticism."
Posted by jenett on 09/02/07

how secure?

Bloggers battered by viral storm
Google's Blogger site is being used by malicious hackers who are posting fake entries to some blogs.

The fake entries contain weblinks that lead to booby-trapped downloads that could infect a Windows PC.
Posted by jenett on 08/30/07

illegal = immoral?

Is stealing wireless wrong?
Posted by jenett on 08/23/07

company denies security breach

Monster attack steals user data
US job website Monster.com has suffered an online attack with the personal data of hundreds of thousands of users stolen...
Posted by jenett on 08/21/07

cookie thieves

Warning of webmail wi-fi hijack
Posted by jenett on 08/03/07

'DomainKeys Identified Mail'

Backing for tool to battle spam
Posted by jenett on 05/25/07

attack of the botnets?

Estonia hit by 'Moscow cyber war'
Posted by jenett on 05/17/07

'JavaScript Hijacking'

Web 2.0 is vulnerable to attack
Posted by jenett on 04/03/07

'open to attack'

Users warned on Windows cursors – "Animated cursors could prove risky for Windows users, Microsoft has warned...."
Posted by jenett on 03/31/07

beware of IE7 promo

Today’s Other Malware Threat: IE7.0.exe
Posted by jenett on 03/30/07

'highly organised'

'Surge' in hijacked PC networks
Posted by jenett on 03/20/07

3 'key servers' targeted

Hackers attack heart of the net
Posted by jenett on 02/07/07

good to know...

Debit card versus credit card – "Your federal debit card legal rights are weaker than your credit card rights."
Posted by jenett on 01/31/07

simple advice worth repeating...

Security Response Weblog:
To protect yourself against these threats, do not trust unsolicited files or documents about “interesting” topics. Do not open attachments unless they are expected and come from a known and trusted source.
Posted by jenett on 01/26/07

'a worthwhile reminder'

Google Security Hole Allows Account Hijacking
Posted by jenett on 01/13/07

security warning - don't click!

Beware you morbid types...
It hasn't been long since reports surfaced that videos of Saddam Hussein’s execution are available for download on the Internet. It’s no surprise that enterprising malware creators have latched on to this latest news in an attempt to spread their wares...
Posted by jenett on 01/09/07

caution: plugin vulnerability

When PDFs Attack!
We have received reports of a significant problem relating to Adobe Acrobat files and Cross Site Scripting (XSS). A weakness was discovered in the way that the Adobe Reader browser plugin can be made to execute JavaScript code on the client side...

You can avoid this problem by implementing a work around in your browser so that it does not use the Acrobat Reader plugin.
See article for details.

Update (1/5/07): A supposedly more secure, new version of Adobe Reader is available. Beware of optional additional software installation, which is checked by default. [BBC]
Posted by jenett on 01/04/07

'ever-escalating cyber war'

Web attacks end anti-spam effort – "A series of web attacks by spammers have forced a security firm to end an initiative to curb junk mail..."
Posted by jenett on 05/17/06

for Wordpress

Spam Karma
[zengun]
Posted by jenett on 03/01/05
random ageless
Quantum Tea

daily pointers
In association with
AORTAL - the anti-portal,
here's today's daily pointers:

09/03/10
Özant Kamaci
Berlin guide
Sorry I Haven't Posted

(RSS)

[daily pointers archive]
other projects
special thanks


Validated XHTML 1.0
Validated CSS


2000-2009 © Joe Jenett.
Some rights reserved.