<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
    <channel>
        <title>security_watchdog</title>
        <link>http://www.security-watchdog.co.uk/</link>
        <description>All the IT security issues that affect you and your business. Direct reports from all the security conferences throughout the year, including RSA conference and Infosec.</description>
        <language>en</language>
        <copyright>Copyright 2010</copyright>
        <lastBuildDate>Tue, 31 Aug 2010 16:49:04 +0000</lastBuildDate>
        <generator>http://www.sixapart.com/movabletype/</generator>
        <docs>http://www.rssboard.org/rss-specification</docs>
        
        <item>
            <title>UK and US drop down virus source list</title>
            <description><![CDATA[<p>There was good news for US and UK security chiefs today with the latest stats from managed security firm Network Box showing that India and Russia have both leapfrogged them in the list of top virus sources.</p>

<p>India is now the world's single biggest producer of viruses, accounting for 13.74 per cent, while Russia comes next, producing just over 11 per cent. The US now accounts for just over eight per cent, an impressive decrease from 14.65 per cent last month.</p>

<p>The UK dropped down from fourth to seventh on the list.</p>

<p>However, there was bad news for the US in the spam list, with the latest stats showing it came out as number one source for worldwide spam, at just over 12 per cent. India came second with Brazil in third and the UK in fourth with five per cent. </p>

<p>The stats <a href="http://www.v3.co.uk/v3/news/2268637/spam-botnets-hold-uk-pcs">echo those form Symantec Hosted Services </a>which last week declared the UK also in fourth place with around 4.5 per cent of the world's share of spam.</p>

<p>However, Network Box warned that the trends are unlikely to continue in the same vein next month, given the agility of cyber criminals.</p>

<p>"The country sources of these internet threats shifts each month, which shows how quickly internet criminals can move their operations round the world and launch attacks," said Network Box internet security analyst, Simon Heron. </p>

<p>"Businesses need to be vigilant and ensure they are not opening up the back door to a hacker when they use new applications or technologies."<br />
</p>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/08/uk-and-us-drop.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/08/uk-and-us-drop.html</guid>
            
            
            <pubDate>Tue, 31 Aug 2010 16:49:04 +0000</pubDate>
        </item>
        
        <item>
            <title>Microsoft&apos;s free security tool gets the thumbs up</title>
            <description><![CDATA[Some good news for Windows users for a change; Microsoft's free-to-download <a href="http://www.microsoft.com/security/products/mse.aspx">Security Essentials</a> tool has been certified by anti-virus research organisation AV-Test as part of an in-depth study of 19 security products.

<br /><br />Security Essentials was <a href="http://www.v3.co.uk/v3/news/2250248/microsoft-release-free">launched last year</a> as a replacement for the scrapped Windows Live OneCare subscription service, and is a free download for consumers running Windows 7, Windows Vista and Windows XP SP2 or higher.

<br /><br />At the time, questions were raised about whether a free security product could really prove effective in protecting Windows computers, especially when compared against full-blown security suites from established vendors such as Symantec and McAfee.

<br /><br />However, Security Essentials seems to have fared well in <a href="http://www.av-test.org/certifications.php">AV-Test's study</a>, especially in the usability category which examines how much a particular tool impacts on the performance of the computer it is running on.<br /><br />This tallies with feedback from reviewers and testers, who have previously praised the tool for its unobtrusive operation. Some security suites can slow down a PC alarmingly.

<br /><br />In terms of protection, Security Essentials was still rated as less effective than Symantec's Norton Internet Security 2010 or AVG: Internet Security 9.0, both of which are paid-for suites, but Microsoft has always maintained that the product is aimed at those users who would otherwise have no protection at all, rather than at taking market share from other security vendors.


<div style="margin-top: 10px; height: 15px;" class="zemanta-pixie"><a class="zemanta-pixie-a" href="http://www.zemanta.com/" title="Enhanced by Zemanta"><img style="border: medium none; float: right;" class="zemanta-pixie-img" src="http://img.zemanta.com/zemified_e.png?x-id=3ecd0342-b884-4137-ac90-55c418c7de11" alt="Enhanced by Zemanta" /></a><span class="zem-script more-related pretty-attribution"><script type="text/javascript" src="http://static.zemanta.com/readside/loader.js" defer="defer"></script></span></div>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/08/microsofts-free.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/08/microsofts-free.html</guid>
            
                <category domain="http://www.sixapart.com/ns/types#category">IT Security</category>
            
            
                <category domain="http://www.sixapart.com/ns/types#tag">Microsoft Security Essentials</category>
            
                <category domain="http://www.sixapart.com/ns/types#tag">Windows Live OneCare</category>
            
            <pubDate>Thu, 19 Aug 2010 11:12:03 +0000</pubDate>
        </item>
        
        <item>
            <title>Justin Bieber used as malware lure</title>
            <description><![CDATA[<p>Omnipresent <a href="http://itsneak.v3.co.uk/2010/08/justin-bieber-b.html">cyberstar Justin Bieber</a> is the fishing bait of choice for malware distributors, according to Panda Labs.</p>

<p>The security firm said that blackhat search engine optimisation attacks were being used to distribute malware, and added that it had found as many as 200 different web addresses that exploit the teen singer's name. </p>

<p>Panda found a number of references to Bieber on the links it studied, and these ranged from 'justin bieber takes estrogen pills', to 'justin bieber smoking weed', 'justin bieber pregnant', and 'justin bieber removes left testicle'.</p>

<p>Although this technique is not new - the last episode of meandering confusathon Lost prompted a similar blooming of sites, for example - it is still annoying. Panda said that the fake web sites appeared high in search rankings, and once clicked prompted the user to download a file which turns out to be fake anti virus software.</p>

<p>"These types of activities have become increasingly common  and any popular topic or issue is used by cyber-crooks to spread their creations," said Luis Corrons, technical director of Panda Labs. </p>

<p>"By positioning web sites used to distribute malware among the first results in search engines, they can be sure that numerous internet users will inadvertently download the fake antivirus."<br />
</p>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/08/justin-bieber-u.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/08/justin-bieber-u.html</guid>
            
            
            <pubDate>Wed, 18 Aug 2010 15:29:18 +0000</pubDate>
        </item>
        
        <item>
            <title>Largest ever drive-by download discovered?</title>
            <description><![CDATA[<p>An infected widget from web hosting firm Network Solutions could have affected over five million separate domains, according to <a href="http://blog.armorize.com/2010/08/more-than-500000-network-solutions.html">new research from web app security firm Armorize.</a></p>

<p>The security firm revealed that the 'Small Business Success Index' widget was infected last week, but the malware could have been operating in some form for months. It soon realised that the problem was much more widespread than at first thought.</p>

<p>"Yesterday I had some time to sit down and study this widget further, and discovered something critical - it's a part of the standard domain parking page of Network Solutions," explained co-founder Wayne Huang.</p>

<p>According to a Google search, the widget in question was available and serving malware on more than 500,000 domains, but according to Yahoo that number rose to over five million, he said.</p>

<p>"I didn't have time to click on every single one of them, but I clicked on enough to conclude that, all of them are indeed infected, via the same widget we blogged about a few days ago," wrote Huang.</p>

<p>"Also, neither Google or Yahoo actually shows all results. Google shows the first 45 pages only, and Yahoo shows the first 100 only. So we couldn't really go through all the domains one by one...and 5 million is too large a number for manual verification anyways."</p>

<p>The drive-by-malware in question, when downloaded, redirects user searches and monitors various search terms, automatically popping up advertising on the user's screen, for which the malware writer will get a fee.</p>

<p>According to Armorize, Network Solutions took down the widget within three hours of being contacted. However it remains worrying how such a large scale drive-by download remained under the radar for so long.<br />
</p>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/08/largest-ever-dr.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/08/largest-ever-dr.html</guid>
            
            
            <pubDate>Tue, 17 Aug 2010 13:00:42 +0000</pubDate>
        </item>
        
        <item>
            <title>Japanese hacker arrested for fishy malware</title>
            <description><![CDATA[<p>A Japanese hacker has been arrested on suspicion of creating malware which deletes a user's computer files and replaces them with manga-style images of octopuses and squid.</p>

<p>Up to 50,000 computers may have been infected by Masato Nakatsuji, 27, of Izumisano, Osaka Prefecture, the <em>Asahi Shinbun</em> <a href="http://www.asahi.com/english/TKY201008040281.html">reported today</a>.</p>

<p>High-tech crime officers said Nakatsuji is suspected of writing the Ikatako (squid-octopus) virus, which was distributed on the Winny file-sharing site in May, disguised as a file for anime songs, according to the report.</p>

<p>He was arrested whilst serving a suspended sentence for a previous offence and reportedly told police: "I wanted to see how much my computer programming skills had improved since the last time I was arrested."</p>

<p>Police arrested Nakatsuji in 2008 for violating copyright laws by writing a virus which replaced user files with anime images.<br />
</p>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/08/japanese-hacker.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/08/japanese-hacker.html</guid>
            
            
            <pubDate>Thu, 05 Aug 2010 15:12:54 +0000</pubDate>
        </item>
        
        <item>
            <title>European Commission rejected BlackBerrys</title>
            <description><![CDATA[<p>As the row over BlackBerry security continues to rumble on, there was more bad news for Research In Motion today with news emerging that the European Commission rejected use of the devices in favour of the iPhone and HTC handsets.</p>

<p>The European Union's executive body reviewed the use of smartphones by its staff, which number over 30,000, two years ago, according to a <a href="http://www.reuters.com/article/idUSTRE6731VC20100804"><em>Reuters</em></a> report today.</p>

<p>"Following this evaluation, the HTC and the iPhones emerged as the most suitable platforms for voice/mail-centric mobile devices," a Commission spokesman told <em>Reuters</em> in an email. </p>

<p>"As a result, the Commission currently supports these two platforms."</p>

<p>The news will be a blow to RIM as it struggles to fend off strong competition from Apple and phones running Google's Android operating system.</p>

<p>Apple <a href="http://www.v3.co.uk/v3/news/2263229/bankers-set-swap-blackberrys">pulled off a coup in May</a> when UK bank Standard Chartered offered its worldwide workforce the chance to switch from BlackBerry to iPhone.</p>

<p>The decision by <a href="http://www.v3.co.uk/v3/news/2267609/saudi-arabia-prepares-block">Saudi Arabia</a> and the <a href="http://www.v3.co.uk/v3/news/2267416/uae-set-ban-blacberry-services">United Arab Emirates</a> this week to ban key BlackBerry services has added to RIM's woes.</p>

<p>However, somewhat ironically, these "security concerns" appear more to be due to the fact that BlackBerrys are too secure, with both authorities expressing concerns that they can't monitor encrypted communications made over the devices.</p>

<p>For its part, the <a href="http://www.v3.co.uk/v3/news/2264869/blackberry-scores-victory-apple">UK government remains convinced</a> that BlackBerrys are the most secure smartphone around, saying in June that it would not sanction ministerial use of iPhones for official business due to security concerns.</p>

<p>"The only mobile telecoms or personal digital assistant devices that have been issued to ministers of the department are BlackBerrys," said health secretary Simon Burns.</p>

<p>"The department does not issue Apple iPhones to staff as these are not approved for government use by the Communications-Electronics Security Group [CESG]."<br />
</p>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/08/european-commis.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/08/european-commis.html</guid>
            
            
            <pubDate>Wed, 04 Aug 2010 14:39:01 +0000</pubDate>
        </item>
        
        <item>
            <title>How hacking works and steps to combat it</title>
            <description><![CDATA[<p><em>V3.co.uk </em>entered the world of hacking yesterday by participating in a 'Hack the Lab' session arranged by network security firm <a href="http://www.stonesoft.com/en/">Stonesoft</a>.</p>

<p>A fictitious web site was created especially for participants to hack into and the results were interesting and a little frightening. </p>

<p>Using tools such as Nmap (port scanner), Netcat (multi-purpose tool), Metasploit (command line tool) and John the Ripper (password cracker), which are all freely available on the internet, we had a crack.</p>

<p>We successfully managed to hack into the fabricated web site and obtained not only admin login details, but credit card details of the owners and customers in under just under half an hour.</p>

<p>This was done using a Virtual Network Computing (VNC) tool, which we installed on the fictitious admin machine to gain remote desktop access.</p>

<p>Alan Cottom, technical engineering specialist at Stonesoft, was on hand to explain the principles.</p>

<p>There are usually five steps that an attacker goes through when looking to carry out a hack:</p>

<p>1. <strong>Selecting the target</strong>: There are mainly two types of hackers. Those who focus on an individual or organisation for financial/political gain and those who are opportunistic, who scan ports looking to find vulnerable systems.</p>

<p>2.	<strong>Gathering information</strong>: Once a target has been selected, the hacker embarks on the most important process which is the research phase. Attackers aim to gather as much information as possible, including business/domain/contact names, web site addresses, phone numbers and emails. These are all primary pieces of information that a hacker is eager to acquire. The more information an attacker has, the easier it is to gain access into a system.</p>

<p>Individuals must be careful about posting computer details on forums as hackers commonly browse these to pick up information about potential targets.</p>

<p>Hackers are always on the look out for mergers and acquisitions as these are seen as 'soft targets' because businesses usually want to link IT systems quickly and may sacrifice security, Cottom said.</p>

<p>3. <strong>Exploiting vulnerabilities</strong>: Hackers do not waste their time breaking into firewalls, they look to exploit vulnerable areas of a system i.e. through a web server that may not have been patched properly or a test machine that has remained connected.</p>

<p>4. <strong>Leaving a back door</strong>: After access has been found, a hacker always leaves a back door to regain entry, by planting a root kit or a remote shell. Some may even modify access rules.</p>

<p>5. <strong>Covering tracks</strong>: The best attackers will look to disable auditing processes and delete event logs. </p>

<p>The first thing a good administrator will do if he/she suspects there has been an attack is check the logs, so hackers will want to cover their tracks by disabling these, Cottom said.</p>

<p>There have been several high profile hacks recently including the infiltration of <a href="http://www.v3.co.uk/v3/news/2261640/google-hacks-took-sign-tech">Google's Gaia password system </a>in January. This occurred when an employee clicked on an MMS link and had their machine infiltrated, which was used to gain access to the firm's admin system.  </p>

<p>However, Twitter experienced one of the most embarrassingly simple hacks last year when a user used a brute force password cracker to <a href="http://www.v3.co.uk/v3/news/2253083/verified-twitter-account-hacked">gain admin access</a>. Passwords were changed, private information was viewed, and tweets were sent out from users such as Britney Spears. </p>

<p>Twitter could have avoided this by simple employing a lockout of accounts after three-password attempts.</p>

<p><strong>Essential Security Tips from Stonesoft</strong><br />
-	Use alphanumeric passwords, but not ones that are so complicated that you need to write them down.<br />
-	Keep anti-virus software and patches up-to-date.<br />
-	Do not click on suspicious links in emails or instant messages.<br />
-	Turn office hardware off at night.<br />
-	Take a look at some Intrusion Prevention Software.</p>

<p><em>V3.co.uk</em> will post a video demo of Alan Cottom explaining the stages of hacking soon.<br />
</p>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/07/v3couk-was-intr.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/07/v3couk-was-intr.html</guid>
            
                <category domain="http://www.sixapart.com/ns/types#category">IT Security</category>
            
                <category domain="http://www.sixapart.com/ns/types#category">Viruses</category>
            
                <category domain="http://www.sixapart.com/ns/types#category">Web/Tech</category>
            
            
            <pubDate>Thu, 29 Jul 2010 10:43:22 +0000</pubDate>
        </item>
        
        <item>
            <title>WPA2 and private browsing called into question</title>
            <description><![CDATA[<p>With the Black Hat conference taking place later this week it seems apt that there are some interesting security problems being announced that are worth keeping an eye on.</p>

<p>Firstly, it's been discovered that many "private" browser sessions are in fact nothing of the sort, and that hackers could gain access to sites visited, despite claims to the contrary by many firms.</p>

<p>A <a href="http://www.newscientist.com/article/dn19217-ways-to-snoop-private-web-sessions-identified.html?DCMP=OTC-rss&nsref=online-news">report on the <em>New Scientist</em> web site</a> claims that researcher Collin Jackson from the Carnegie Mellon University in Pittsburgh found ways that hackers could detect which sites were visited even with the security mode enabled.</p>

<p>A hacker could, "guess what sites you've been to based on traces left behind", Jackson is reported as saying.</p>

<p>Secondly, a wireless security researcher from AirTight Networks claims to have discovered a vulnerability in the WPA2 security protocol for Wi-Fi protection that compromises user security, which has been termed <a href="http://www.airtightnetworks.com/home/airtight-media/webinars/wpa2-hole196-vulnerability.html">Hole 196</a>.</p>

<p>Md Sohail Ahmad explained that the Hole 196 loophole allows malicious users to bypass private key encryption and authentication to sniff and decrypt data from other users, scan Wi-Fi devices and install malware.</p>

<p>Although AirTight acknowledged that to exploit this vulnerability a hacker would have to be on the same network, corporate thieving and espionage is a key concern to many large corporations, making the threat very real.</p>

<p>The vulnerability has been given the name Hole 196 as it relates to a line on page 196 of the IEEE 802.11 Revised Standard published in 2007 from which the exploit is made possible.  <br />
Ahmad will be demonstrating the vulnerability at the <a href="http://blackhat.com/html/bh-us-10/bh-us-10-specialevents_arsenal.html">Black Hat Arsenal</a> (and again at DEFCON18) in a presentation wonderfully titled "WPA Too?!" on 29 July.<br />
</p>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/07/security-issues.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/07/security-issues.html</guid>
            
            
                <category domain="http://www.sixapart.com/ns/types#tag">AirTight Networks</category>
            
                <category domain="http://www.sixapart.com/ns/types#tag">BlackHat</category>
            
                <category domain="http://www.sixapart.com/ns/types#tag">Hacker</category>
            
                <category domain="http://www.sixapart.com/ns/types#tag">Hacking</category>
            
                <category domain="http://www.sixapart.com/ns/types#tag">Security</category>
            
                <category domain="http://www.sixapart.com/ns/types#tag">Wi-Fi</category>
            
            <pubDate>Mon, 26 Jul 2010 13:12:44 +0000</pubDate>
        </item>
        
        <item>
            <title>Google increases payment to bug hunters</title>
            <description><![CDATA[<p>Google has increased the maximum payment for those who find a bug in its Chromium web browser to $3,133.7.</p>

<p>The <a href="http://blog.chromium.org/2010/01/encouraging-more-chromium-security.html">Chromium Security Reward</a> scheme was launched in January and Google claims that the program has been a success. </p>

<p>"We have been notified of numerous bugs, and some of the participants have made it clear that it was the reward program that motivated them to get involved with Chromium security," Google said in a <a href="http://blog.chromium.org/2010/07/celebrating-six-months-of-chromium.html">blog post</a> this week.</p>

<p>"Whilst the base reward for less serious bugs remains at $500, the panel will consider rewarding more for high-quality bug reports. Factors indicating a high-quality bug report might include a careful test case reduction, an accurate analysis of root cause, or productive discussion towards resolution."</p>

<p>The maximum reward for a single bug has been increased substantially from $1,337 to $3,133.7. But this will only be paid to those who find <a href="http://dev.chromium.org/developers/severity-guidelines">critical</a> bugs in Chromium, the company said.</p>

<p>The increased reward reflects the fact that <a href="http://seclab.stanford.edu/websec/chromium/chromium-security-architecture.pdf">the sandbox</a> makes it harder to find bugs of this severity, Google added.</p>

<p>Google follows in the tracks of Mozilla, which <a href="http://blog.mozilla.com/security/2010/07/15/refresh-of-the-mozilla-security-bug-bounty-program/">upped </a>its bounty payment to $3,000 last week.</p>

<p>Even though Google has added $3,000 to the reward, not all users are happy, however. </p>

<p>"I highly doubt a $3,133.7 payoff is justifiable. If you figure an individual (or team) put in a combined effort of 160 hours, you're getting paid roughly $19 per hour," noted one commenter on the Google blog. </p>

<p>"I personally wouldn't waste my resources on someone who can not be justified being paid more than $19/hr. Neither would I waste my time providing any information to anyone who values their operating budget for security at $19/hour per incident." </p>

<p>Looks like someone woke up on the wrong side of bed.....or maybe he was just upset that the reward is no longer code for <a href="http://en.wikipedia.org/wiki/Leet">elite</a>.<br />
</p>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/07/google-increase.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/07/google-increase.html</guid>
            
                <category domain="http://www.sixapart.com/ns/types#category">IT Security</category>
            
                <category domain="http://www.sixapart.com/ns/types#category">Web/Tech</category>
            
            
            <pubDate>Wed, 21 Jul 2010 13:23:38 +0000</pubDate>
        </item>
        
        <item>
            <title>Mozilla blocks password thieving add-on</title>
            <description><![CDATA[<p>Mozilla has disabled a malicious password stealing add-on known as Mozilla Sniffer, which was uploaded on 6 June and downloaded by 1,800 users.</p>

<p>The add-on contained code that intercepted login data submitted to any web site, and sent this data to a remote location.</p>

<p>Mozilla discovered the bug on 12 July, and added it to its block list prompting the add-on to be uninstalled. </p>

<p>"All current users should receive an uninstall notification within a day or so. The site this add-on sends data to seems to be down at the moment, so it is unknown if data is still being collected," Mozilla said in a <a href="http://blog.mozilla.com/addons/2010/07/13/add-on-security-announcement/">blog post</a>. </p>

<p>Mozilla Sniffer was not developed or reviewed by Mozilla. It was in an experimental state, and all users that installed it should have seen a warning indicating it is was not reviewed, Mozilla said.</p>

<p>A security flaw was also discovered in version 3.0.1 of the <a href="https://addons.mozilla.org/en-US/firefox/addon/2207/">CoolPreviews</a> add-on. </p>

<p>The vulnerability is triggered using a specially crafted hyperlink. If the user hovers the cursor over this link, the attacking script is given control over the host computer.</p>

<p>So far 177,000 users have a vulnerable version installed. This is less than 25 per cent of the install base and it will continue to decrease as more users are prompted to update to a new version, Mozilla noted. <br />
</p>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/07/mozilla-block-p.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/07/mozilla-block-p.html</guid>
            
                <category domain="http://www.sixapart.com/ns/types#category">Viruses</category>
            
                <category domain="http://www.sixapart.com/ns/types#category">Web/Tech</category>
            
            
                <category domain="http://www.sixapart.com/ns/types#tag">Mozilla</category>
            
            <pubDate>Thu, 15 Jul 2010 10:59:05 +0000</pubDate>
        </item>
        
        <item>
            <title>Oracle patches 59 flaws</title>
            <description><![CDATA[<p>Oracle has excelled itself again with a mammoth Critical Patch Update (CPU), releasing a <a href="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujul2010.html">whopping 59 fixes yesterday</a>, including 21 for its Sun Products Suite.</p>

<p>Among the highest severity vulnerabilities, given a CVSS base score of 10.0, are a flaw in the TimesTen In-Memory Database and two in the Oracle Secure Backup product. </p>

<p>There were 17 fixes in total scheduled for Oracle applications including PeopleSoft and JDEdwards suite, the Supply Chain Products suite and the E-Business suite.</p>

<p>However, the biggest set of fixes was reserved for Sun's Solaris products.</p>

<p>"Due to the threat posed by a successful attack, Oracle strongly recommends that customers apply CPU fixes as soon as possible," noted the CPU. </p>

<p>"Until you apply the CPU fixes, it may be possible to reduce the risk of successful attack by restricting network protocols required by an attack."</p>

<p>Removing user privileges or the ability to access certain packages from users that do not need the privileges may help reduce the risk of successful attack, although must only be seen as a temporary solution, said Oracle.</p>

<p>It will be a busy time for security administrators, who also had to cope with the <a href="http://www.v3.co.uk/v3/news/2266417/microsoft-delivers-four-patches">latest Patch Tuesday from Microsoft</a>, which saw the release of four fixes for five vulnerabilities capable of allowing remote code execution attacks.</p>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/07/oracle-patches.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/07/oracle-patches.html</guid>
            
            
            <pubDate>Wed, 14 Jul 2010 12:44:55 +0000</pubDate>
        </item>
        
        <item>
            <title>Adobe details Reader and Acrobat updates</title>
            <description><![CDATA[<p>Adobe has announced it will finally <a href="http://blogs.adobe.com/psirt/2010/06/pre-notification_-_quarterly_s_3.html">release updates </a>for its Reader and Acrobat products set to  fix critical issues which are already being exploited in the wild.</p>

<p>One of the issues set to be addressed was a <a href="http://www.v3.co.uk/v3/news/2264261/adobe-points-critical-flaw">flaw first disclosed by Adobe</a> early on this month alongside a problem with Flash Player, which was subsequently fixed.</p>

<p>The issue relates to the authplay.dll component that ships with Adobe Reader and Acrobat 9.x for Windows, Macintosh and Unix and could cause a crash and potentially allow an attacker to take control of the affected system.</p>

<p>"Note that the 29 June 2010 updates represent an accelerated release of the next quarterly security update originally scheduled for 13 July 2010," noted an Adobe <a href="http://blogs.adobe.com/psirt/2010/06/pre-notification_-_quarterly_s_3.html">security blog post</a></p>

<p>"With this accelerated schedule, Adobe will not release additional updates for Adobe Reader and Acrobat on 13 July 2010."</p>

<p>Although Adobe is right to accelerate its update schedule for this flaw, given that it is being actively exploited in the wild, the firm will be angry that its products are receiving yet more bad publicity, given the long-running dispute with Apple over the security and stability issues of Flash.</p>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/06/adobe-details-r.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/06/adobe-details-r.html</guid>
            
            
            <pubDate>Fri, 25 Jun 2010 12:48:56 +0000</pubDate>
        </item>
        
        <item>
            <title>Tory MP has Twitter, Facebook account hacked</title>
            <description><![CDATA[<p>Social networking users were warned of the perils of not protecting their accounts properly yesterday as news emerged that Tory MP Therese Coffey's Facebook and Twitter accounts had been hacked.</p>

<p>Tory blog <a href="http://www.londonspinonline.com/2010/06/exclusive-hackers-seize-top-torys.html">London Spin</a> revealed the Conservative MP for Suffolk Coastal also had her blog hacked - presumably all three accounts shared the same log-in credentials - with attackers posting "sexually explicit messages and comments".</p>

<p>On Wednesday evening Coffey <a href="http://www.theresecoffey.com/">wrote on her blog</a> "My account has been hacked - am trying to rectify the problem now". In a tweet later she wrote: "I have the email of the person who has hacked in, so hopefully I can do something about it."</p>

<p>It remains to be seen how the attacker managed to hack into Coffey's account, although it's a timely reminder, especially for those with official Twitter accounts, to keep a close eye on account activity, and ensure passwords for different accounts are kept separate. </p>

<p>It seems even those with Verified Twitter accounts are not guaranteed a secure account, with Britney Spears <a href="http://www.v3.co.uk/v3/news/2253083/verified-twitter-account-hacked">falling victim late last year</a>.<br />
</p>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/06/tory-mp-has-twi.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/06/tory-mp-has-twi.html</guid>
            
            
            <pubDate>Fri, 18 Jun 2010 14:07:48 +0000</pubDate>
        </item>
        
        <item>
            <title>Trend Micro spots trouble ahead for all browsers</title>
            <description><![CDATA[<p>Trend Micro's <a href="http://us.trendmicro.com/imperia/md/content/us/trendwatch/researchandanalysis/05_may_2010_threat_roundup.pdf">latest monthly threat roundup</a> has illuminated some interesting trends in cyber crime - notably that criminals are now looking to exploit the popularity of previously less well known browsers.</p>

<p>The security vendor revealed in its May roundup that Apple's Safari browser fell prey to a vulnerability that allowed cybercriminals to execute arbitrary code if users visited a malicious site. Opera was found to have a similar vulnerability.</p>

<p>These browsers, along with Google's Chrome and others, are likely to be targeted in increasingly large numbers as the traditional dominance of Internet Explorer, and to an extent Firefox, crumbles in the aftermath of the EU's browser ballot decision.</p>

<p>Trend Micro also showed a predictable increase in FIFA World Cup 2010 related spam, while PayPal remained the number one phishing target in terms of site and email spoofing.</p>

<p>"These statistics really demonstrate that attacks are increasingly regional and targeted in nature", said Rik Ferguson, senior security advisor at Trend Micro. </p>

<p>"The limited mitigation afforded by using a less widespread browser is increasingly sidelined by criminals all too aware that the browser market has changed for good."<br />
</p>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/06/trend-micro-spo.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/06/trend-micro-spo.html</guid>
            
            
            <pubDate>Tue, 15 Jun 2010 15:46:38 +0000</pubDate>
        </item>
        
        <item>
            <title>Kasperky offers World Cup fans free mobile security</title>
            <description><![CDATA[<p>Kaspersky Lab has become the latest tech firm to capitalise on World Cup fever and engage in a bit of canny marketing, by offering customers free mobile security for the duration of the tournament.</p>

<p>The rationale is that with Kaspersky Mobile Security 9 software installed, users can block the phone if it is stolen. </p>

<p>The location of a lost smartphone can also be tracked using built-in GPS technology, and if the SIM is replaced, the owner will receive immediate notification of the phone's new number, according to the vendor.</p>

<p>Kaspersky Lab is not the only vendor looking to use the global passion for the beautiful game to promote its own products and services - Twitter and Facebook have both sought to<a href="http://thefrontline.v3.co.uk/2010/06/world-cup-2010.html"> jump on the World Cup bandwagon </a>with new offerings.</p>

<p>However, ITV's attempts to screen the matches live on its site seem to have hit a technical hurdle after the <a href="http://www.v3.co.uk/v3/news/2264668/sites-crash-under-world-cup">site crashed </a>during the first match of the tournament and users watching on Saturday missed England's opening goal.<br />
</p>]]></description>
            <link>http://www.security-watchdog.co.uk/2010/06/kasperky-offers.html</link>
            <guid>http://www.security-watchdog.co.uk/2010/06/kasperky-offers.html</guid>
            
            
            <pubDate>Mon, 14 Jun 2010 12:09:18 +0000</pubDate>
        </item>
        
    </channel>
</rss>
