<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: massive]]></title>
    <link>http://securityratty.com/tag/massive</link>
    <description></description>
    <pubDate>Tue, 12 Aug 2008 11:13:54 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Upcoming Microsoft patch lineup could be 'massive,' says researcher]]></title>
      <link>http://securityratty.com/article/ef2867505c98129d17695f92baa0750d</link>
      <guid>http://securityratty.com/article/ef2867505c98129d17695f92baa0750d</guid>
      <description><![CDATA[Microsoft next Tuesday will ship four security updates to fix critical flaws in Windows, Office, Windows Media Player and other parts of the company's software...]]></description>
      <content:encoded><![CDATA[Microsoft next Tuesday will ship four security updates to fix critical flaws in Windows, Office, Windows Media Player and other parts of the company's software portfolio.
<p><a href="http://feeds.computerworld.com/~a/Computerworld/Security/News?a=D0Dxwm"><img src="http://feeds.computerworld.com/~a/Computerworld/Security/News?i=D0Dxwm" border="0"></img></a></p><img src="http://feeds.computerworld.com/~r/Computerworld/Security/News/~4/383533778" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 04 Sep 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/windows">windows</category>
      <category domain="http://securityratty.com/tag/windows media player">windows media player</category>
      <category domain="http://securityratty.com/tag/fix critical flaws">fix critical flaws</category>
      <category domain="http://securityratty.com/tag/microsoft">microsoft</category>
      <category domain="http://securityratty.com/tag/software portfolio">software portfolio</category>
      <category domain="http://securityratty.com/tag/tuesday">tuesday</category>
      <category domain="http://securityratty.com/tag/ship">ship</category>
      <category domain="http://securityratty.com/tag/office">office</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <source url="http://feeds.computerworld.com/~r/Computerworld/Security/News/~3/383533778/article.do">Upcoming Microsoft patch lineup could be 'massive,' says researcher</source>
    </item>
    <item>
      <title><![CDATA[Upcoming Microsoft patch lineup could be 'massive,' says researcher]]></title>
      <link>http://securityratty.com/article/6d15b18731bd50db45491f19f43d8388</link>
      <guid>http://securityratty.com/article/6d15b18731bd50db45491f19f43d8388</guid>
      <description><![CDATA[Microsoft next Tuesday will ship four security updates to fix critical flaws in Windows, Office, Windows Media Player and other parts of the company's software...]]></description>
      <content:encoded><![CDATA[Microsoft next Tuesday will ship four security updates to fix critical flaws in Windows, Office, Windows Media Player and other parts of the company's software portfolio.<br style="clear: both;"/>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v2:ed3d10dc114a9c919881aa34f2163b82:Jbw2mlNLEb4CW3UDwYXhNMA3lPK4NlW5wzN9Fmo1Um6YvVpzbI6%2Fm1y1eRYa9JO574QYDl7g8K6yWv%2BmwDIRWVC1Az6KLP7JclFztKAcO9E%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://www.pheedo.com/images/mm/digg.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v2:21921ea7057af312425ef5eb4d358a0a:fZcpGd66x%2FLahG68bpW4o%2BJ9rrTy1VtIBbeoPqikwWTo7rwddfnzPczYPgNhua2IE7jehGTxwH8zmAdIrJxJKRVC3h6FYP7sfYjjX%2FabzLE%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://www.pheedo.com/images/mm/stumbleit.gif'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v2:cae4e74cf5ba2ce38a5b6dc56fc25395:B2KLjMUxaEeiK%2BPmw2bmoHX1kVDa3vP1dTryHdxq1sLF031J4mLjRw1uKPE1lwxwZyY%2BeBHMCWBoycuLTTzNY9KDa5dEXHJquH%2FqYgc9m0w%3D'><img border='0' title='Add to Twitter' alt='Add to Twitter' src='http://www.pheedo.com/images/mm/twitter.png'/></a>
    <a style='font-size: 10px; color: maroon;' href='http://www.pheedo.com/hostedMorselClick.php?hfmm=v2:deea14778eb2c5a83c3dcc3815020937:VmEtpo4%2Fkp%2F8whddVTmqu7Vv04R4QX6POld%2F4nLWWe0IghrqYy9PjGiStQiM%2Fiy14bBkDy%2FICTXUQfkVkLpujJhfHQg6dq0hMge8LnLJgJA%3D'><img border='0' title='Add to Slashdot' alt='Add to Slashdot' src='http://www.pheedo.com/images/mm/slashdot.png'/></a>
<br style="clear: both;"/>  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=a81acc584ddca8b38a67238a0fc7ec0c" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=a81acc584ddca8b38a67238a0fc7ec0c" style="display: none;" border="0" height="1" width="1" alt=""/>]]></content:encoded>
      <pubDate>Thu, 04 Sep 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/windows">windows</category>
      <category domain="http://securityratty.com/tag/windows media player">windows media player</category>
      <category domain="http://securityratty.com/tag/fix critical flaws">fix critical flaws</category>
      <category domain="http://securityratty.com/tag/microsoft">microsoft</category>
      <category domain="http://securityratty.com/tag/software portfolio">software portfolio</category>
      <category domain="http://securityratty.com/tag/tuesday">tuesday</category>
      <category domain="http://securityratty.com/tag/ship">ship</category>
      <category domain="http://securityratty.com/tag/office">office</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <source url="http://feeds.computerworld.com/click.phdo?i=a81acc584ddca8b38a67238a0fc7ec0c">Upcoming Microsoft patch lineup could be 'massive,' says researcher</source>
    </item>
    <item>
      <title><![CDATA[Best Western Rebuts Claims of Massive Data Breach]]></title>
      <link>http://securityratty.com/article/1f08218d0cf9d08a50a56ca3c551ece6</link>
      <guid>http://securityratty.com/article/1f08218d0cf9d08a50a56ca3c551ece6</guid>
      <description><![CDATA[Best Western International and the Sunday Herald newspaper of Scotland are duking it out over a story which reports that a hacker stole the records of 8 million customers from the hotel chain's global...]]></description>
      <content:encoded><![CDATA[Best Western International and the Sunday Herald newspaper of Scotland are duking it out over a story which reports that a hacker stole the records of 8 million customers from the hotel chain's global network in the "the greatest cyber-heist in world history." Best Western says 10 people were affected at one hotel.<br style="clear: both;"/>
  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=b4a67e5ea9cc98c6e9393c741fea0fdd" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=b4a67e5ea9cc98c6e9393c741fea0fdd" style="display: none;" border="0" height="1" width="1" alt=""/><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=TLFKNK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=TLFKNK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=rGFaWk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=rGFaWk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=IwFkSk"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=IwFkSk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/wired/politics/privacy?a=AmXXuK"><img src="http://feeds.feedburner.com/~f/wired/politics/privacy?i=AmXXuK" border="0"></img></a>
 <a href="http://feeds.wired.com/~f/wired/politics/security?a=Guh3jK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=Guh3jK" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=IFYaBk"><img src="http://feeds.wired.com/~f/wired/politics/security?i=IFYaBk" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=sOvMck"><img src="http://feeds.wired.com/~f/wired/politics/security?i=sOvMck" border="0"></img></a> <a href="http://feeds.wired.com/~f/wired/politics/security?a=qFUDqK"><img src="http://feeds.wired.com/~f/wired/politics/security?i=qFUDqK" border="0"></img></a> </div><img src="http://feeds.feedburner.com/~r/wired/politics/privacy/~4/376205367" height="1" width="1"/><img src="http://feeds.wired.com/~r/wired/politics/security/~4/376205368" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 27 Aug 2008 09:45:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/western">western</category>
      <category domain="http://securityratty.com/tag/hotel chain">hotel chain</category>
      <category domain="http://securityratty.com/tag/western international">western international</category>
      <category domain="http://securityratty.com/tag/hotel">hotel</category>
      <category domain="http://securityratty.com/tag/sunday herald newspaper">sunday herald newspaper</category>
      <category domain="http://securityratty.com/tag/global network">global network</category>
      <category domain="http://securityratty.com/tag/million customers">million customers</category>
      <category domain="http://securityratty.com/tag/world history">world history</category>
      <category domain="http://securityratty.com/tag/story">story</category>
      <source url="http://feeds.wired.com/~r/wired/politics/security/~3/376205368/DATA_BREACH_DISPUTE">Best Western Rebuts Claims of Massive Data Breach</source>
    </item>
    <item>
      <title><![CDATA[Best Western refutes story claiming 8 million customer records were breached]]></title>
      <link>http://securityratty.com/article/a52c01a0e459faa2ba28a74ad715e34d</link>
      <guid>http://securityratty.com/article/a52c01a0e459faa2ba28a74ad715e34d</guid>
      <description><![CDATA[The Best Western hotel chain said that a story published by a Scottish newspaper, reporting that it had been hit by a massive system intrusion, was inaccurate and 'grossly...]]></description>
      <content:encoded><![CDATA[The Best Western hotel chain said that a story published by a Scottish newspaper, reporting that it had been hit by a massive system intrusion, was inaccurate and 'grossly unsubstantiated.'
<p><a href="http://feeds.computerworld.com/~a/Computerworld/Security/News?a=MeSGOj"><img src="http://feeds.computerworld.com/~a/Computerworld/Security/News?i=MeSGOj" border="0"></img></a></p><img src="http://feeds.computerworld.com/~r/Computerworld/Security/News/~4/374558277" height="1" width="1"/>]]></content:encoded>
      <pubDate>Mon, 25 Aug 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/massive system intrusion">massive system intrusion</category>
      <category domain="http://securityratty.com/tag/western hotel chain">western hotel chain</category>
      <category domain="http://securityratty.com/tag/scottish newspaper">scottish newspaper</category>
      <category domain="http://securityratty.com/tag/story">story</category>
      <category domain="http://securityratty.com/tag/grossly">grossly</category>
      <category domain="http://securityratty.com/tag/hit">hit</category>
      <source url="http://feeds.computerworld.com/~r/Computerworld/Security/News/~3/374558277/article.do">Best Western refutes story claiming 8 million customer records were breached</source>
    </item>
    <item>
      <title><![CDATA[IBM Raises The Stakes In Business and IT Continuity Services]]></title>
      <link>http://securityratty.com/article/a92cdf5dd8f2018462a4657fa7e717b8</link>
      <guid>http://securityratty.com/article/a92cdf5dd8f2018462a4657fa7e717b8</guid>
      <description><![CDATA[IBM announced today that it was spending US$300 million to build out 13 data centers in 10 countries in 2008 - IBM refers to these sites as &quot;Business Resilience service delivery centers&quot;. These...]]></description>
      <content:encoded><![CDATA[<p><img title="Stephanie Balaouras" alt="Stephanie Balaouras" src="http://www.forrester.com/role_based/images/author/imported/forresterDotCom/Analyst_Photos/Silhouette/Color/Stephanie-Balaouras.gif" border="0" style="FLOAT: left; MARGIN: 0px 5px 5px 0px" /></p>

<p><a href="http://www-03.ibm.com/press/us/en/pressrelease/24957.wss">IBM announced today that it was spending US$300 million to build out 13 data centers in 10 countries in 2008 - IBM refers to these sites as &quot;Business Resilience service delivery centers&quot;.</a> These centers will certainly help IBM deliver more of its traditional IT recovery services but they will also support the next generation of IT continuity services - repeatable, scalable, productize services such as online backup and virtual recovery.&nbsp; These types of services don't require massive capital investment in an inventory of heterogeneous server and storage platforms, instead the service provider can focus its efforts on building a scalable pool of virtualized servers and shared storage built with industry standard components.</p>

<p><a href="http://www.forrester.com/go?docid=42947">Online backup is an important service because it provides an affordable information protection service for small and medium businesses and it's even useful for enterprises as a means to backup PCs corporate-wide as well as small servers at remote locations.</a> In addition to the $300 million that IBM is spending on its new resiliency centers, late in 2008, it acquired <a href="http://blogs.forrester.com/it_infrastructure/2007/12/online-backup-m.html">Arsenal Digital Solutions</a>, one of the major players in online backup. </p>

<p>In addition to online backup, recovery services using software-based replication to a cloud infrastructure will also open up new opportunities. These services will provide a much a better recovery time and recovery point than tape-based services but won't cost nearly as much as custom services based on storage-based replication and dedicated hardware. The cost of these services is more than most small and medium, even some large enterprises can or are willing to pay for. SunGard was the first to announce such a productized service, <a href="http://blogs.forrester.com/srm/2008/08/traditional-dis.html">Forrester expects all the traditional DR service providers to bring similar offerings to market over time.</a></p>

<p>These cloud-based service offerings are important for several other reasons, first, it could help stem the tide of enterprises who are just so fed up with the traditional disaster recovery services model that they take DR back in house, second, it could convince, more medium size businesses that they can afford more advanced IT continuity solutions and lastly, it will help protect their market against new competitors who can simply partner with cloud providers such as Amazon S3 and Google to offer similar services.</p>

<p>IBM is not only using its expansion and acquisitions to stay competitive, it's also also hoping that customers will recognize the value of IBM expertise, process and best practices in BC. </p>

<p>What do you think? Does the reputation and expertise of BC and IT Continuity service providers like IBM and SunGard critical in your decision-making or can new players enter the market? Do these lower cost services that offer better RTO and RPO renew your interest in service providers or do you still plan to keep DR in-house?</p>

<p>I welcome your thoughts.</p>]]></content:encoded>
      <pubDate>Fri, 22 Aug 2008 11:38:40 +0000</pubDate>
      <category domain="http://securityratty.com/tag/services">services</category>
      <category domain="http://securityratty.com/tag/recovery">recovery</category>
      <category domain="http://securityratty.com/tag/recovery services">recovery services</category>
      <category domain="http://securityratty.com/tag/continuity services">continuity services</category>
      <category domain="http://securityratty.com/tag/service">service</category>
      <category domain="http://securityratty.com/tag/ibm">ibm</category>
      <category domain="http://securityratty.com/tag/service provider">service provider</category>
      <category domain="http://securityratty.com/tag/service offerings">service offerings</category>
      <category domain="http://securityratty.com/tag/cost">cost</category>
      <source url="http://blogs.forrester.com/srm/2008/08/ibm-raises-the.html">IBM Raises The Stakes In Business and IT Continuity Services</source>
    </item>
    <item>
      <title><![CDATA[Compromised Cpanel Accounts For Sale]]></title>
      <link>http://securityratty.com/article/6228ebb081126296ff70b5f6268fd2a3</link>
      <guid>http://securityratty.com/article/6228ebb081126296ff70b5f6268fd2a3</guid>
      <description><![CDATA[Is the once popular in the second quarter of 2007, embedded malware tactic on the verge of irrelevance, and if so, what has contributed to its decline? Have SQL injections executed through botnets...]]></description>
      <content:encoded><![CDATA[<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://4.bp.blogspot.com/_wICHhTiQmrA/SKlq1uSeDFI/AAAAAAAACDM/l4bxcru-BQk/s1600-h/cpanel_multiple_domains1.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://4.bp.blogspot.com/_wICHhTiQmrA/SKlq1uSeDFI/AAAAAAAACDM/ho301JgoMUs/s200-R/cpanel_multiple_domains1.png" /></a> Is the once popular in the second quarter of 2007, embedded malware tactic on the verge of irrelevance, and if so, what has contributed to its decline? Have SQL injections executed through botnets turned into the most efficient way to infect hundreds of thousands of legitimate web sites? Depends on who you're dealing with.<br />
<br />
A cyber criminal's position in the "underground food chain" can be easily tracked down on the basis of tools and tactics that he's taking advantage of, in fact, some would on purposely misinform on what their actual capabilities are in order not to attract too much attention to their real ones, consisting of high-profile compromises at hundreds of high-profile web sites.<br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://3.bp.blogspot.com/_wICHhTiQmrA/SKmDVdDGnPI/AAAAAAAACDU/qNbLBUKlHp0/s1600-h/cpanel_multiple_domains3.jpg" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://3.bp.blogspot.com/_wICHhTiQmrA/SKmDVdDGnPI/AAAAAAAACDU/ZsmcK9HMeUs/s200-R/cpanel_multiple_domains3.jpg" /></a>Embedded malware may not be as hot as it used to be in the last quarter of 2007, but thanks to the oversupply of stolen accounting data, certain individuals within the underground ecosystem seem to be abusing entire portfolios of domains on the basis of purchasing access to the compromised accounts. In fact, the oversupply of compromised Cpanel accounts is logically resulting in their decreasing price, with the sellers differentiating their propositions, and charging premium prices based on the site's page ranks and traffic, measured through publicly available services, or through the internal statistics.<br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://4.bp.blogspot.com/_wICHhTiQmrA/SKmMyr4CWEI/AAAAAAAACDc/UafOTCKAb-0/s1600-h/cpanel_multiple_domains22.JPG" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://4.bp.blogspot.com/_wICHhTiQmrA/SKmMyr4CWEI/AAAAAAAACDc/7IRBMNndy-w/s200-R/cpanel_multiple_domains22.JPG" /></a><br />
SQL injections may be the tactic of choice for the time being, but as long as stolen accounting data consisting of Cpanel logins, and web shells access to misconfigured web servers remain desired underground goods, goold old fashioned embedded malware will continue taking place.<br />
<br />
Interestingly, from an economic perspective, the way the seller markets his goods, can greatly influence the way they get abused given he continues offering after-sale services and support. It's blackhat search engine optimization I have in mind, sometimes the tactic of choice especially given its high liquidity in respect to monetizing the compromised access.<br />
<br />
The bottom line - for the time being, there's a higher probability that your web properties will get SQL injected, than IFRAME-ed, as it used to be half a year ago, and that's because what used to be a situation where malicious parties would aim at launching a targeted attack at high profile site and abuse the huge traffic it receives, is today's pragmatic reality where a couple of hundred low profile web sites can in fact return more traffic to the cyber criminals, and greatly extend the lifecycle of their campaign taking advantage of the fact the the low profile site owners would remain infected and vulnerable for months to come.<br />
<br />
<b>Related posts:</b><br />
<a href="http://ddanchev.blogspot.com/2008/03/embedding-malicious-iframes-through.html">Embedding Malicious IFRAMEs Through Stolen FTP Accounts</a><br />
<a href="http://ddanchev.blogspot.com/2008/03/injecting-iframes-by-abusing-input.html">Injecting IFRAMEs by Abusing Input Validation</a><br />
<a href="http://ddanchev.blogspot.com/2008/07/money-mule-recruiters-use-asproxs-fast.html">Money Mule Recruiters use ASProx's Fast-flux Services</a><br />
<a href="http://ddanchev.blogspot.com/2008/05/malware-domains-used-in-sql-injection.html">Malware Domains Used in the SQL Injection Attacks</a><br />
<a href="http://ddanchev.blogspot.com/2008/07/obfuscating-fast-fluxed-sql-injected.html">Obfuscating Fast-fluxed SQL Injected Domains</a><br />
<a href="http://ddanchev.blogspot.com/2008/07/sql-injecting-malicious-doorways-to.html">SQL Injecting Malicious Doorways to Serve Malware </a><br />
<a href="http://ddanchev.blogspot.com/2008/05/yet-another-massive-sql-injection.html">Yet Another Massive SQL Injection Spotted in the Wild</a><br />
<a href="http://ddanchev.blogspot.com/2008/05/malware-domains-used-in-sql-injection.html">Malware Domains Used in the SQL Injection Attacks</a><br />
<a href="http://ddanchev.blogspot.com/2007/07/sql-injection-through-search-engines.html">SQL Injection Through Search Engines Reconnaissance</a><br />
<a href="http://ddanchev.blogspot.com/2007/05/google-hacking-for-vulnerabilities.html">Google Hacking for Vulnerabilities</a><br />
<a href="http://blogs.zdnet.com/security/?p=1122">Fast-Fluxing SQL injection attacks executed from the Asprox botnet</a><br />
<a href="http://blogs.zdnet.com/security/?p=1394">Sony PlayStation's site SQL injected, redirecting to rogue security software</a><br />
<a href="http://blogs.zdnet.com/security/?p=1118">Redmond Magazine Successfully SQL Injected by Chinese Hacktivists</a><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=ExzKaK"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=ExzKaK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=AgwoKK"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=AgwoKK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=5JjO7k"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=5JjO7k" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=5Z85mk"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=5Z85mk" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=s4xhGK"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=s4xhGK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=ReebmK"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=ReebmK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=T0yjTk"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=T0yjTk" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/368194376" height="1" width="1"/>]]></content:encoded>
      <pubDate>Mon, 18 Aug 2008 06:42:50 +0000</pubDate>
      <category domain="http://securityratty.com/tag/sql">sql</category>
      <category domain="http://securityratty.com/tag/sql injections">sql injections</category>
      <category domain="http://securityratty.com/tag/sql injection attacks">sql injection attacks</category>
      <category domain="http://securityratty.com/tag/massive sql injection">massive sql injection</category>
      <category domain="http://securityratty.com/tag/profile site">profile site</category>
      <category domain="http://securityratty.com/tag/site">site</category>
      <category domain="http://securityratty.com/tag/site sql">site sql</category>
      <category domain="http://securityratty.com/tag/sql injection">sql injection</category>
      <category domain="http://securityratty.com/tag/tactic">tactic</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/368194376/compromised-cpanel-accounts-for-sale.html">Compromised Cpanel Accounts For Sale</source>
    </item>
    <item>
      <title><![CDATA[Corporate Identity Theft]]></title>
      <link>http://securityratty.com/article/57c21b4d57a8ae63a7ec8f43043877e8</link>
      <guid>http://securityratty.com/article/57c21b4d57a8ae63a7ec8f43043877e8</guid>
      <description><![CDATA[I remember a talk by the value investor Mason Hawkins (Longleaf Funds) where someone asked him about investing overseas. He answered that he does, but mainly in places where the British flag flew at...]]></description>
      <content:encoded><![CDATA[<p>I remember a <a href="http://www.bengrahaminvesting.ca/Resources/videos.htm#hawkins">talk</a>&#160;by the value investor&#160;<a href="http://en.wikipedia.org/wiki/Mason_Hawkins">Mason Hawkins</a>&#160;(Longleaf Funds) where someone asked him about investing overseas. He answered that he does, but mainly in places where the British flag flew at some point, where there is a rule of law. Here is one example of what he is worried about and why investing in places where your assets have no legal protection does not give the investor a margin of safety.</p><div>Hermitage Fund was until recently the largest fund in Russia. From the Business Week story<a href="http://hermitagefund.com/index.pl/news/article.html?id=895"> &quot;Hijacking the Hermitage Fund&quot;</a></div><br /><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><p>Corruption, intimidation, robbery, violent assault, forgery, large-scale fraud. No, not the subject of the latest John Grisham novel, but sensational allegations, made public Apr. 4 by Hermitage Capital Management -- until recently the largest foreign portfolio investor in Russia. In a detailed and damning report, titled Criminal Justice -- Russian-Style, Hermitage alleges the fund&#39;s Russian subsidiaries have fallen victim to an elaborate con designed to defraud the fund of hundreds of millions of dollars.&#160;<br />&#160;&#160;<br />The most sensational part of Hermitage&#39;s allegations is that the attempted larceny was carried out with the direct connivance of officials in the Russian police. Hermitage alleges the police seized documents and equipment that were instrumental to the attempted fraud, which involved bogus court cases based on forged documents, the aim of which was to sue Hermitage subsidiaries for hundreds of millions of dollars. &quot;The most shocking thing is not that there are corporate raiders in Russia who attempt to steal your shares,&quot; says Jamison Firestone, managing partner of Firestone Duncan, Hermitage&#39;s law firm. &quot;The shocking thing is that the police worked hand-in-hand with them, and actually performed the theft of the documents so that the corporate raiders could then do their work.&quot;</p></blockquote><div><br /><div>From the most recent Hermitage Fund letter, here is the current state:</div><br /><br /></div><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><p>So the two-pronged scam worked in one area and failed in another. The perpetrators weren’t able to steal the assets from us based on the fake court claims, but they were able to steal $230 million from the Russian government by filing amended tax returns on behalf of our stolen companies. What makes this story even more shocking is that we filed six 255-page criminal complaints with the Russian authorities in December last year, one month before the tax fraud took place, and they did nothing to stop it. Two complaints were sent to the Russian General Prosecutor, two to the Russian State Investigative Committee and two to the Internal Affairs Department of the Interior Ministry. There was enough information to prevent the fraud and indict a number of people behind it if the government had acted.&#160;</p><p>Instead of doing anything to save the Russian state from this highly sophisticated and organized looting, two of our complaints were thrown out immediately; two were returned to the same Interior Ministry official we were complaining about (essentially, he was being asked to “investigate himself”); and one was thrown out for “lack of any crime committed.” Only one complaint was taken seriously. It was taken up by the Russian State Investigative Committee in early February, but before it could get any traction, the case was lowered to the South region of the Moscow district of the State Investigative Committee (the lowest level of the Committee) and by June, another senior Interior Ministry official whom we had named in our complaint had joined the “investigation” team (again, to “investigate himself”). To this day there has been no serious response by the Russian authorities to this massive fraud against the Russian state.&#160;</p><p>As we described in our April letter, the problem of corporate “raiding” is now so endemic in Russia that President Medvedev speaks about it as one of the biggest problems faced by Russian businesses. In this case, raiders have taken this problem to a new and absurd extreme by “raiding” the Russian state itself and so far getting away with it. Together with HSBC, we will shortly be filing new criminal complaints with the Russian General Prosecutor and Russian State Investigative Committee as well as with many law enforcement authorities outside of Russia. It is hard to predict what will happen next in this unfolding and unbelievable saga, but as always we will keep you updated on any further developments as they arise.</p></blockquote><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><br /></blockquote><p>Of course we see individual identity theft on a regular basis (actually as Ross Anderson points out its not really identity theft but poor controls on the bank&#39;s parts using SSNs as secrets and so on), but you dont see a major corporation stolen every day.</p>]]></content:encoded>
      <pubDate>Sat, 16 Aug 2008 05:58:30 +0000</pubDate>
      <category domain="http://securityratty.com/tag/russian police">russian police</category>
      <category domain="http://securityratty.com/tag/police">police</category>
      <category domain="http://securityratty.com/tag/russian">russian</category>
      <category domain="http://securityratty.com/tag/russian government">russian government</category>
      <category domain="http://securityratty.com/tag/government">government</category>
      <category domain="http://securityratty.com/tag/identity theft">identity theft</category>
      <category domain="http://securityratty.com/tag/russian-style">russian-style</category>
      <category domain="http://securityratty.com/tag/hermitage">hermitage</category>
      <category domain="http://securityratty.com/tag/fund">fund</category>
      <source url="http://1raindrop.typepad.com/1_raindrop/2008/08/corporate-identity-theft.html">Corporate Identity Theft</source>
    </item>
    <item>
      <title><![CDATA[The Risk of Anthrax]]></title>
      <link>http://securityratty.com/article/96c08b49a95008d4904855cb113bf42e</link>
      <guid>http://securityratty.com/article/96c08b49a95008d4904855cb113bf42e</guid>
      <description><![CDATA[Some reality to counter the hype. The Bottom Line
While there has been much consternation and alarm-raising over the potential for widespread proliferation of biological weapons and the possible use...]]></description>
      <content:encoded><![CDATA[<p>Some <a href="http://www.stratfor.com/weekly/busting_anthrax_myth">reality</a> to counter the hype.</p>

<blockquote><strong>The Bottom Line</strong>

<p>While there has been much consternation and alarm-raising over the potential for widespread proliferation of biological weapons and the possible use of such weapons on a massive scale, there are significant constraints on such designs. The current dearth of substantial biological weapons programs and arsenals by governments worldwide, and the even smaller number of cases in which systems were actually used, seems to belie -- or at least bring into question -- the intense concern about such programs.</p>

<p>While we would like to believe that countries such as the United States, the United Kingdom and Russia have halted their biological warfare programs for some noble ideological or humanitarian reason, we simply can’t. If biological weapons were in practice as effective as some would lead us to believe, these states would surely maintain stockpiles of them, just as they have maintained their nuclear weapons programs. Biological weapons programs were abandoned because they proved to be not as effective as advertised and because conventional munitions proved to provide more bang for the buck. </blockquote></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=cDpkeK"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=cDpkeK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=nHCblK"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=nHCblK" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Wed, 13 Aug 2008 10:29:10 +0000</pubDate>
      <category domain="http://securityratty.com/tag/weapons">weapons</category>
      <category domain="http://securityratty.com/tag/biological weapons programs">biological weapons programs</category>
      <category domain="http://securityratty.com/tag/programs">programs</category>
      <category domain="http://securityratty.com/tag/nuclear weapons programs">nuclear weapons programs</category>
      <category domain="http://securityratty.com/tag/biological weapons">biological weapons</category>
      <category domain="http://securityratty.com/tag/biological warfare programs">biological warfare programs</category>
      <category domain="http://securityratty.com/tag/surely maintain stockpiles">surely maintain stockpiles</category>
      <category domain="http://securityratty.com/tag/noble ideological">noble ideological</category>
      <category domain="http://securityratty.com/tag/humanitarian reason">humanitarian reason</category>
      <source url="http://www.schneier.com/blog/archives/2008/08/the_risk_of_ant.html">The Risk of Anthrax</source>
    </item>
    <item>
      <title><![CDATA[Hackers spoof MSNBC alerts in new twist on massive malware ruse]]></title>
      <link>http://securityratty.com/article/8da128fc823587718e6bc7213808229c</link>
      <guid>http://securityratty.com/article/8da128fc823587718e6bc7213808229c</guid>
      <description><![CDATA[A group of hackers that last week was touting CNN to distribute malware this week changed its message to push stories said to be from rival network...]]></description>
      <content:encoded><![CDATA[A group of hackers that last week was touting CNN to distribute malware this week changed its message to push stories said to be from rival network MSNBC.
<p><a href="http://feeds.computerworld.com/~a/Computerworld/Security/News?a=RQX4ZZ"><img src="http://feeds.computerworld.com/~a/Computerworld/Security/News?i=RQX4ZZ" border="0"></img></a></p><img src="http://feeds.computerworld.com/~r/Computerworld/Security/News/~4/364182025" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 13 Aug 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/rival network msnbc">rival network msnbc</category>
      <category domain="http://securityratty.com/tag/push stories">push stories</category>
      <category domain="http://securityratty.com/tag/distribute malware">distribute malware</category>
      <category domain="http://securityratty.com/tag/week">week</category>
      <category domain="http://securityratty.com/tag/hackers">hackers</category>
      <category domain="http://securityratty.com/tag/cnn">cnn</category>
      <category domain="http://securityratty.com/tag/message">message</category>
      <source url="http://feeds.computerworld.com/~r/Computerworld/Security/News/~3/364182025/article.do">Hackers spoof MSNBC alerts in new twist on massive malware ruse</source>
    </item>
    <item>
      <title><![CDATA[Will Economic Slowdown Cause More Consumer Awareness of Security?]]></title>
      <link>http://securityratty.com/article/1ec87be1d566410ae3ffb4f67518a198</link>
      <guid>http://securityratty.com/article/1ec87be1d566410ae3ffb4f67518a198</guid>
      <description><![CDATA[The Consumerist has a post today exploring the possibility that consumers are more hesitant to get into credit card debts , and theyre realigning their needs and wants with a more realistic financial...]]></description>
      <content:encoded><![CDATA[<p>The Consumerist has a post today exploring the possibility that consumers are more hesitant to get into <a rel="nofollow" target="_blank" href="http://consumerist.com/5035769/are-we-nearing-the-end-of-credit-card-consumerism">credit card debts</a>, and they&#8217;re realigning their needs and wants with a more realistic financial outlook.</p>
<blockquote><p>Of course, if you&#8217;re broke and have no access to credit you don&#8217;t have much choice but to be frugal, but is that all that&#8217;s going on here? Or are consumers tired of being pressured to take on massive debt in order to &#8220;super size&#8221; and &#8220;bling&#8221; everything? What do you think? Is credit card consumerism over?</p></blockquote>
<p>I doubt consumerism is over entirely, but a slowdown seems inevitable in light of our current gloomy economic situation. What does this all mean for IT Security? Well, all the credit accounts are still out there, so there&#8217;s still plenty of information that is available to be exploited.</p>
<p>But will consumers&#8217; hesitance to go into debt also make them more watchful for ID Theft and other fraud-related crime, and more afraid of hackers online? In other words, is it possible the economic slowdown may also make people more hesitant to use technology for their commerce, and encourage them to check their bank accounts more regularly and thoroughly for fraud, and to make them altogether more cautious about IT Security? What is your thought?</p>]]></content:encoded>
      <pubDate>Tue, 12 Aug 2008 11:13:54 +0000</pubDate>
      <category domain="http://securityratty.com/tag/credit card consumerism">credit card consumerism</category>
      <category domain="http://securityratty.com/tag/credit">credit</category>
      <category domain="http://securityratty.com/tag/slowdown">slowdown</category>
      <category domain="http://securityratty.com/tag/credit accounts">credit accounts</category>
      <category domain="http://securityratty.com/tag/economic slowdown">economic slowdown</category>
      <category domain="http://securityratty.com/tag/consumers hesitance">consumers hesitance</category>
      <category domain="http://securityratty.com/tag/consumers">consumers</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/credit card debts">credit card debts</category>
      <source url="http://feeds.feedburner.com/~r/itsecurity/~3/363340892/">Will Economic Slowdown Cause More Consumer Awareness of Security?</source>
    </item>
  </channel>
</rss>
