security

DHS Document Defends Border Searches of Electronic Devices Without Reasonable Suspicion (June 5 & 6, 2013)

SANS NewsBites - Fri, 2013-06-07 17:00

The American Civil Liberties Union (ACLU) obtained DHS's December 2011 Civil Rights/Civil Liberties Impact Assessment through a Freedom of Information Act (FOIA) request.......

Categories: security

Schneider Electric Releases Fixes for SCADA Vulnerability (June 4 & 5, 2013)

SANS NewsBites - Fri, 2013-06-07 17:00

Schneider Electric has released patches for vulnerabilities in its Quantum Ethernet Module.......

Categories: security

Judge Stays Decryption Order in Feldman Case (June 4 & 5, 2013)

SANS NewsBites - Fri, 2013-06-07 17:00

A federal judge in Wisconsin has stayed a magistrate's order that would have forced Jeffrey Feldman to decrypt 16 devices which authorities believe contain child pornography.......

Categories: security

Apple Issues Security Updates for OS X and Safari (June 4 & 5, 2013)

SANS NewsBites - Fri, 2013-06-07 17:00

Apple has issued an update for OS X that addresses 31 security issues.......

Categories: security

Machine-Readable Format Helps Disseminate Essential Information in Emergencies (June 4, 2013)

SANS NewsBites - Fri, 2013-06-07 17:00

Google and other technology companies told a panel of US lawmakers that providing emergency information in open formats will help drive it to top search results where people who need it will be most likely to find it.......

Categories: security

NetTraveler Espionage Malware (June 4, 2013)

SANS NewsBites - Fri, 2013-06-07 17:00

Malware known as NetTraveler has infiltrated more than 350 companies in 40 countries over the past eight years, according to researchers at Kaspersky Lab.......

Categories: security

Friday Squid Blogging: Squid Comic

Schneier on Security - Fri, 2013-06-07 16:35
A squid comic about the importance of precise language in security warnings. As usual, you can also use this squid post to talk about the security stories in the news that I haven't covered....
Categories: security

Audio Interview with Me

Schneier on Security - Fri, 2013-06-07 14:22
In this podcast interview, I talk about security, power, and the various things I have been thinking about recently....
Categories: security

A Really Good Article on How Easy it Is to Crack Passwords

Schneier on Security - Fri, 2013-06-07 06:41
Ars Technica gave three experts a 16,000-entry encrypted password file, and asked them to break them. The winner got 90% of them, the loser 62% -- in a few hours. The list of "plains," as many crackers refer to deciphered hashes, contains the usual list of commonly used passcodes that are found in virtually every breach involving consumer websites. "123456,"...
Categories: security

Also Revealed by Verizon Leak: How the NSA and FBI Lie With Numbers

LinuxSecurity.com - Fri, 2013-06-07 06:10
LinuxSecurity.com: At the same time, it reports the number of demands for "business records" in such cases, issued under Section 215 of the USA Patriot Act. And while the number of such orders has generally grown over the years, it has always managed to stay relatively low. In 2011, it was 205. There were 96 orders in 2010, and only 21 in 2009.
Categories: linux, news, security

Pirate Bay Warg accused of hacking international police database

LinuxSecurity.com - Fri, 2013-06-07 06:09
LinuxSecurity.com: Pirate Bay co-founder Gottfrid Svartholm Warg has been named as a suspect in the hacking of a European database containing data about wanted criminal suspects and missing people.
Categories: linux, news, security

White House defends snooping

LinuxSecurity.com - Fri, 2013-06-07 06:08
LinuxSecurity.com: The Obama administration calls the NSA's practice of gathering phone records "a critical tool in protecting the nation from terrorist threats," reports the AP and Reuters.
Categories: linux, news, security

The Cost of Terrorism in Pakistan

Schneier on Security - Thu, 2013-06-06 05:58
This study claims "terrorism has cost Pakistan around 33.02% of its real national income" between the years 1973 and 2008, or about 1% per year. The St. Louis Fed puts the real gross national income of the U.S. at about $13 trillion total, hand-waving an average over the past few years. The best estimate I've seen for the increased cost...
Categories: security

White-hat hacker fights cyber intrusions on NATO systems

LinuxSecurity.com - Thu, 2013-06-06 03:20
LinuxSecurity.com: Cyber attacks around the world are becoming more frequent, alarming and complex. Our interconnected societies depend on new technologies, which are constantly being probed for vulnerabilities to exploit. NATO calls on the skills of cyber-security experts to assess its computer networks and takes measures to avert and defend against cyber attacks.
Categories: linux, news, security

Secrets of a master hacker revealed at Gulf security conference

LinuxSecurity.com - Thu, 2013-06-06 03:19
LinuxSecurity.com: Sophisticated hackers now use "social engineering" - exploiting the psychological vulnerabilities of human users - rather than technological weaknesses in security systems, famous former hacker Kevin Mitnick told a cyber security conference in Dubai.
Categories: linux, news, security

How to Hack an iPhone With a USB Charger

LinuxSecurity.com - Thu, 2013-06-06 03:17
LinuxSecurity.com: When it comes to threats to mobile devices, most people don't think of chargers as a likely point of attack. But plugging in an iPhone - or any smartphone or tablet - could come at a price.
Categories: linux, news, security

Hacker Adrian Lamo testifies at WikiLeaks suspect Bradley Manning's court-martial

LinuxSecurity.com - Thu, 2013-06-06 03:16
LinuxSecurity.com: The hacker who alerted federal authorities to the alleged leak of classified documents by Pfc. Bradley E. Manning testified Tuesday that the young Army analyst never indicated any desire to help U.S. adversaries by releasing the material.
Categories: linux, news, security

Employment: Security Hacker

LinuxSecurity.com - Thu, 2013-06-06 03:09
LinuxSecurity.com: Jim Stickley is a professional hacker. Companies hire him to attempt to hack into their financial information, and identify weaknesses in their security practices.
Categories: linux, news, security

Eugene Spafford Answers Questions on CNN.com

Schneier on Security - Wed, 2013-06-05 13:11
Excellent interview....
Categories: security

Ubuntu: 1869-1: libxxf86dga vulnerabilities

LinuxSecurity.com - Wed, 2013-06-05 12:37
LinuxSecurity.com: Several security issues were fixed in libxxf86dga.
Categories: linux, news, security