Bip Bip - Information Security News
Hackers change grades at Fort Bend ISD high school
Source: NetworkStrike
Publish date: Monday, May 5th, 2008

InfoSec News: Hackers change grades at Fort Bend ISD high school: http://www.chron.com/disp/story.mpl/front/5750954.html

By ERIC HANSON
Copyright 2008 Houston Chronicle
May 3, 2008

SUGAR LAND — Four high school students are being investigated on
suspicion of breaking into the Fort Bend Independent School District's [...]

Intelligence Bureau Rejects RIM Proposal
Source: NetworkStrike
Publish date: Monday, May 5th, 2008

InfoSec News: Intelligence Bureau Rejects RIM Proposal: http://www.techtree.com/India/News/Intelligence_Bureau_Rejects_RIM_Propo...

Techtree News Staff
May 2, 2008

Here's the next episode of the ongoing Blackberry saga... Word has it
that the Intelligence Bureau (IB) has rejected RIM's (Research in [...]

Alpha males square up at Infosec
Source: NetworkStrike
Publish date: Monday, May 5th, 2008

InfoSec News: Alpha males square up at Infosec: http://www.pcw.co.uk/crn/analysis/2215678/alpha-males-square-infosec-397...

By Doug Woodburn
CRN
01 May 2008

The great and the good of the IT security channel descended upon
London’s Olympia late last month for Infosec 2008, but some left in two [...]

Kraken bot dissected and some related tools
Source: Security4all
Website Security Strategies that work
Source: Security4all
Security pros focused on internal threat, training
Source: Security Wire Daily News
Marcia Savage, Features Editor
Publish date: Monday, May 5th, 2008
A recent survey shows organizations are worried about risks posed by employees and increasingly interested in training as the network perimeter continues to crumble.

Live Mesh - Good or Bad Idea?
Source: GNUCITIZEN
Publish date: Sunday, May 4th, 2008
I huge part of what we do is to spot trends and have a look at them before it is too late. Today I would like to talk about Live Mesh, a technology you are probably not very familiar with but it is a brand new thing and it will hit the streets in the next couple of months. Therefore, it is a good candidate for abuse from attackers, bot masters and other friendly inhabitants of the Undernet. The idea is very simple. [...]
Off the wire: Protecting yourself from suspicionless searches while traveling
Source: NetworkStrike
Publish date: Saturday, May 3rd, 2008

The Ninth Circuit's recent ruling in United States v. Arnold allows border patrol agents to search your laptop or other digital device without limitation when you are entering the country.

How Not to Hire an Information Security Officer Who's on Parole
Source: NetworkStrike
Publish date: Saturday, May 3rd, 2008

InfoSec News: How Not to Hire an Information Security Officer Who's on Parole: http://csoonline.com/article/340113/How_Not_to_Hire_an_Information_Secur...

By Anonymous
CSO Online
April 23, 2008

I was having lunch last week with the senior executive for one of the
large agencies in the government organization where I work, when I asked [...]

Cyberwarfare: Darpa's New 'Space Race'
Source: NetworkStrike
Publish date: Saturday, May 3rd, 2008

InfoSec News: Cyberwarfare: Darpa's New 'Space Race': http://blog.wired.com/defense/2008/05/the-pentagon-wa.html

By Sharon Weinberger
Danger Room
Wired.com
May 01, 2008

The Defense Advance Research Projects Agency, or Darpa, was created 50
years ago, in response to the Soviets' launch of Sputnik. In less than a [...]

Chinese hacking in Belgian media
Source: Security4all
News: Groups warn travelers to limit laptop data
Source: SecurityFocus
Publish date: Friday, May 2nd, 2008
Groups warn travelers to limit laptop data
Secunia Weekly Summary - Issue: 2008-18
Source: NetworkStrike
Publish date: Monday, May 5th, 2008

InfoSec News: Secunia Weekly Summary - Issue: 2008-18: ========================================================================

The Secunia Weekly Advisory Summary
2008-04-25 - 2008-05-02

This week: 63 advisories
[...]

Linux Advisory Watch: May 2nd, 2008
Source: NetworkStrike
Publish date: Monday, May 5th, 2008

InfoSec News: Linux Advisory Watch: May 2nd, 2008: +------------------------------------------------------------------------+
| LinuxSecurity.com Weekly Newsletter |
| May 2nd, 2008 Volume 9, Number 18 |
| | [...]

Pikoli's hacker 'willing to negotiate'
Source: NetworkStrike
Publish date: Monday, May 5th, 2008

InfoSec News: Pikoli's hacker 'willing to negotiate': http://www.iol.co.za/index.php?set_id=1&click_id=15&art_id=vn20080503083...

By Karyn Maughan
Independent Online
May 03 2008

A hacker is threatening to release sensitive documents stolen from Vusi
Pikoli's computer to the press - if the suspended National Prosecuting [...]

Catching up on virtualization security
Source: Security4all
The Dirty Secrets Of The Security Industry
Source: Security4all
Landing House of Hackers
Source: GNUCITIZEN
Publish date: Monday, May 5th, 2008
House of Hackers is an exclusive, hacker community network. The House of Hackers community is established to support the hacker culture, mindset, way of life, ideologies, political views, vision, etc. Members of the community are able to exchange ideas with each other, communicate, form groups, elite circles and tiger/red teams, conglomerate around projects and participate in the independent, hacker recruitment market. [...]
Spammers Hurt The Blind
Source: ha.ckers
Publish date: Monday, May 5th, 2008
There’s an interesting link talking about the lawsuit that Rite Aid just settled regarding their accessibility issues. In part it was in regards to their in-store issues, but it was also about their online accessibility, specifically around CAPTCHAs. So I spent a little time doing some more research into other issues around CAPTCHAs [...]
Experts struggle with cybersecurity agenda
Source: NetworkStrike
Publish date: Saturday, May 3rd, 2008

InfoSec News: Experts struggle with cybersecurity agenda: http://www.gcn.com/online/vol1_no1/46189-1.html

By William Jackson
GCN Staff
04/28/08

Whoever becomes our next president will inherit a cyber infrastructure
under almost constant attack and at greater risk than eight years ago,
and a handful of experts and legislators have come together to ensure
that cybersecurity has a high priority in his or her administration.

read more

LayerOne 2008 - Final Update
Source: NetworkStrike
Publish date: Saturday, May 3rd, 2008

InfoSec News: LayerOne 2008 - Final Update: Forwarded from: Layer One <layeronecfp (at) gmail.com>

LayerOne
May 17-18, 2008
Pasadena Hilton, Pasadena, CA
http://layerone.info

We are now just weeks away from this years LayerOne event and we wanted
to share some of the great things we have going on with you. [...]

Security vendors slam Defcon virus contest
Source: NetworkStrike
Publish date: Saturday, May 3rd, 2008

InfoSec News: Security vendors slam Defcon virus contest: Forwarded from: Paul Ferguson <fergdawg (at) netzero.net>
Cc: jericho (at) attrition.org

- -- security curmudgeon <jericho (at) attrition.org> wrote:

[...]

saying for a long time; Anti-Virus as it exists today is an entirely
reactionary protection mechanism. [...]

DR's 10 Most Popular Stories Ever (Second Edition)
Source: Dark Reading
Publish date: Friday, May 2nd, 2008
A look at the top stories from our first two years, including coolest hacks, biggest botnets, and a thumb drive exploit that readers just can't put down
Former UCLA employee indicted for snooping celebrity medical records
Source: NetworkStrike
Publish date: Monday, May 5th, 2008

InfoSec News: Former UCLA employee indicted for snooping celebrity medical records: http://www.tgdaily.com/content/view/37197/118/

By Humphrey Cheung
TG Daily
April 30, 2008

Los Angeles (CA) – A former UCLA Medical Center employee has been
indicted for allegedly illegally accessing the computerized medical
records of celebrities. [...]

What's Up with the Secret Cybersecurity Plans, Senators Ask DHS
Source: NetworkStrike
Publish date: Monday, May 5th, 2008

InfoSec News: What's Up with the Secret Cybersecurity Plans, Senators Ask DHS: http://blog.wired.com/27bstroke6/2008/05/senate-panel-qu.html

By Ryan Singel
Threat Level
Wired.com
May 02, 2008

The government's new cyber-security "Manhattan Project" is so secretive
that a key Senate oversight panel has been reduced to writing a letter [...]

Botnet attacks military systems
Source: NetworkStrike
Publish date: Monday, May 5th, 2008

InfoSec News: Botnet attacks military systems: http://www.techworld.com/security/news/index.cfm?newsID=12148

By Matthew Broersma
Techworld
02 May 2008

Security researchers have discovered a complex spamming scheme that
hijacks users' PCs in order to attempt to send junk mail via university
and military systems. [...]

Fun: Vista SP1 Release notes, the toilet paper
Source: Security4all
Verizon issues PCI self-assessment, support docs
Source: Security Wire Daily News
Neil Roiter, Senior Technology Editor
Publish date: Monday, May 5th, 2008
Verizon Business is issuing a PCI self-assessment questionnaire and support documentation as part of its Partner Security Program (PSP).

With all the Web2.0 something bad will happen!
Source: GNUCITIZEN
Publish date: Monday, May 5th, 2008
I was going though some feeds that have been aggregating for a few weeks without my supervision and I came to realize that the Web is on fire. It is not just the hype which is obvious when it comes to things such as AJAX and Web2.0 but it is also about the other things yet to be seen. I see social networks that serve all kinds of purposes popping everywhere. Commercial, private, open, whatever, they all agglomerate people in a very, very rapidly. [...]
Security World: Three steps for PCI DSS Compliance on Wi-Fi devices
Source: NetworkStrike
Publish date: Saturday, May 3rd, 2008

A new white paper from Summit Data Communications reveals three best practices for ensuring that Wi-Fi client devices are compliant with the Payment Card Industry Data Security Standard. The best prac...

Oracle Database Susceptible To Rare Attack
Source: NetworkStrike
Publish date: Saturday, May 3rd, 2008

InfoSec News: Oracle Database Susceptible To Rare Attack: http://www.informationweek.com/news/software/database_apps/showArticle.j...

By Charles Babcock
InformationWeek
April 29, 2008

A SQL injection attack that may be executed against the Oracle (NSDQ:
ORCL) database was recently documented by database security researcher [...]

Security gets into the mix
Source: NetworkStrike
Publish date: Saturday, May 3rd, 2008

InfoSec News: Security gets into the mix: http://www.gcn.com/print/27_9/46166-1.html

By William Jackson
GCN Interview
04/28/08 issue

Natalie Givans, a vice president at Booz Allen Hamilton.s information
and mission assurance and resilience group, has gained experience during
her career in analyzing and designing security for a variety of
government and commercial information and communication systems.

read more

What is Black PR? A tour of the black arts.
Source: Security4all
Health Insurer's SIM Eases HIPAA Compliance
Source: Dark Reading
Publish date: Friday, May 2nd, 2008
Priority Health's security information management architecture streamlines security alert-gathering, analysis