<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: week]]></title>
    <link>http://securityratty.com/tag/week</link>
    <description></description>
    <pubDate>Wed, 02 Jul 2008 09:20:43 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Russian Hackers To Lithuania: All Your Base Are Belong To Us]]></title>
      <link>http://securityratty.com/article/e13cd6fa18a684c1925f2d4bd1987d44</link>
      <guid>http://securityratty.com/article/e13cd6fa18a684c1925f2d4bd1987d44</guid>
      <description><![CDATA[Hundreds of Lithuanian government and corporate Web sites were hacked and plastered with Soviet-era symbols and other digital graffiti this week in what appears to be a coordinated cyber attack...]]></description>
      <content:encoded><![CDATA[Hundreds of Lithuanian government and corporate Web sites were hacked and plastered with Soviet-era symbols and other digital graffiti this week in what appears to be a coordinated cyber attack launched by Russian hacker groups.]]></content:encoded>
      <pubDate>Sat, 05 Jul 2008 14:36:26 +0000</pubDate>
      <category domain="http://securityratty.com/tag/russian hacker">russian hacker</category>
      <category domain="http://securityratty.com/tag/cyber attack">cyber attack</category>
      <category domain="http://securityratty.com/tag/soviet-era symbols">soviet-era symbols</category>
      <category domain="http://securityratty.com/tag/web sites">web sites</category>
      <category domain="http://securityratty.com/tag/digital graffiti">digital graffiti</category>
      <category domain="http://securityratty.com/tag/lithuanian government">lithuanian government</category>
      <category domain="http://securityratty.com/tag/week">week</category>
      <category domain="http://securityratty.com/tag/appears">appears</category>
      <category domain="http://securityratty.com/tag/hundreds">hundreds</category>
      <source url="http://digg.com/security/Russian_Hackers_To_Lithuania_All_Your_Base_Are_Belong_To_Us">Russian Hackers To Lithuania: All Your Base Are Belong To Us</source>
    </item>
    <item>
      <title><![CDATA[Daily Mail publisher admits to stolen laptop]]></title>
      <link>http://securityratty.com/article/9af68c57ed3f10d814be79e5d395b72b</link>
      <guid>http://securityratty.com/article/9af68c57ed3f10d814be79e5d395b72b</guid>
      <description><![CDATA[Technorati Tag: Security Breach

Date Reported
7/4/08

Organization
Daily Mail and General Trust plc

Contractor/Consultant/Branch
Northcliffe Media
Associated Newspapers Ltd

Victims
Staff, suppliers...]]></description>
      <content:encoded><![CDATA[Technorati Tag: <a href="http://technorati.com/tag/security+breach" rel="tag">Security Breach</a><br><br>
<img src="http://breachblog.com/images/95781-88451/dailymail.jpg" width="203" align="right" height="43"><font size="2"><b>Date Reported: </b><br>7/4/08<br><br><b>Organization: </b><br><a href="http://www.dmgt.co.uk/">Daily Mail and General Trust plc</a> <br><br><span style="font-weight: bold;">Contractor/Consultant/Branch:</span><br><a href="http://www.thisisnorthcliffe.co.uk/">Northcliffe Media</a> <br><a href="http://www.associatednewspapers.com/">Associated Newspapers Ltd</a> <br><br><span style="font-weight: bold;">Victims:</span><br>Staff, suppliers and contributors<br><br><span style="font-weight: bold;">Number Affected:</span><br>"thousands"<br><br><span style="font-weight: bold;">Types of Data:</span><br>"name, address, bank account number and bank sort code"<br><br><span style="font-weight: bold;">Breach Description:</span><br>"Daily Mail publisher Associated Newspapers has admitted that a laptop containing financial and personal details of thousands of staff, suppliers and contributors has been stolen."<br><br><span style="font-weight: bold;">Reference URL:</span><br><a href="http://www.computerworlduk.com/management/security/data-control/news/index.cfm?newsid=9904">ComputerWorldUK</a> <br><a href="http://www.guardian.co.uk/media/2008/jul/04/dailymail.dmgt1?gusrc=rss&amp;feed=media">Guardian News (UK)</a> <br><a href="http://www.guardian.co.uk/media/2008/jul/04/dailymail.dmgt?gusrc=rss&amp;feed=media">Guardian News (UK) additional info</a> <br><br><span style="font-weight: bold;">Report Credit:</span><br>Guardian Newspaper<br><br><span style="font-weight: bold;">Response:</span><br>From the online sources cited above:<br><br>Daily Mail publisher Associated Newspapers has admitted that a laptop containing financial and personal details of thousands of staff, suppliers and contributors has been stolen.<br><br>A Daily Mail &amp; General Trust spokeswoman said: "DMGT confirms that a laptop company computer containing certain confidential information was stolen last week.<br><br>After months of criticising "criminally careless" government departments for losing confidential records, the company has been forced to send out an embarrassing letter telling journalists they may now be at risk of identity theft<br><span style="font-style: italic;">[Evan] This is the same Daily Mail managed by Associated Newspapers that according to The Guardian "has been at the forefront of coverage of the recent bank and government department missing data scandals".&nbsp; It would be very difficult for Associated Newspapers to claim that they didn't know any better than to store confidential information on a poorly protected laptop.</span><br><br>Details such as names, addresses, bank account numbers and sort codes were on the laptop<br><br>the laptop was "password protected" but tell recipients to contact their banks and also "consult the government website ... for advice on avoiding or dealing with identity theft"<br><span style="font-style: italic;">[Evan] The mention of password protection is nothing more than an effort to minimize the effect of the breach.&nbsp; It does very little (if anything) to protect the personal information.</span><br><br>In a letter to those who details were affected, Simon Dyson, finance director at Daily Mail publisher Associated Newspapers, and Martyn Hindley, his counterpart at sister company Northcliffe, said it was likely that the details had been erased by the thief.<br><span style="font-style: italic;">[Evan] How is the conclusion drawn?&nbsp; I don't see how there could be enough information to determine what the thief was likely to do.</span><br><br>From the letter to affected persons from the Associated Newspapers group finance director, Simon Dyson, and his Northcliffe counterpart, Martyn Hindley:<br><br>"Unfortunately one of the company's laptops has been stolen."<br><br>"The contents included personal data, some of which related to you."<br><br>"The laptop was password-protected. "<br><span style="font-style: italic;">[Evan] So what?&nbsp; This won't adequately protect the information on the laptop, so why mention it?</span><br><br>"We are writing to you as quickly as possible to alert you to the fact that the theft has happened and to inform you of the data types lost, so that you can take appropriate action."<br><span style="font-style: italic;">[Evan] I guess we should give some credit for the quick notification, if nothing else.</span><br><br>"In your case, your name, address, bank account number and bank sort code were the sensitive information lost."<br><br>"The likelihood is that this theft was carried out in an opportunistic manner by a thief who will not realise that there is any personal data on the laptop and who may just erase what is on the hard disk in order to disguise the fact that the laptop is stolen."<br><span style="font-style: italic;">[Evan] This is nothing more than speculation.&nbsp; I can't imagine that there are any specific facts for which this conclusion is based on.</span><br><br>"We have, of course, notified the police of the theft of the laptop and are talking to the Office of the Information Commissioner about what has happened."<br><br>"On behalf of the company, I would like to offer my sincere apologies for any annoyance and inconvenience to you that this breach of security may cause."<br><br>"I can assure you that we take security of personal data very seriously and have, since this incident, which was inadvertently caused by a technical issue, already further strengthened procedures."<br><span style="font-style: italic;">[Evan] This breach was caused by a "technical issue"?&nbsp; Like what?&nbsp; I presume that the technical aspects surrounding this breach were working exactly as they were designed to in the manner of which that they were implemented.&nbsp; Without further elaboration, "strengthened procedures" is subjective and means little.&nbsp; Organizations should offer details, instead of general statements in order to bolster some sense of confidence.</span><br><br><span style="font-weight: bold;">Commentary:</span><br>This breach must be embarrassing for Associated Newspapers.&nbsp; A breach like this should be embarrassing for any organizations.&nbsp; Unencrypted lost of stolen laptops storing personal (or other confidential) information is a pretty well-known risk nowadays.&nbsp; An unacceptable risk for most. <br><br><span style="font-weight: bold;">Past Breaches:</span><br>Unknown<br></font><br>
<script src="http://feeds.feedburner.com/%7Es/breachblog?i=http://breachblog.com/2008/07/05/dailymail.aspx" type="text/javascript" charset="utf-8"></script>]]></content:encoded>
      <pubDate>Sat, 05 Jul 2008 08:55:49 +0000</pubDate>
      <category domain="http://securityratty.com/tag/information">information</category>
      <category domain="http://securityratty.com/tag/personal information">personal information</category>
      <category domain="http://securityratty.com/tag/daily mail publisher">daily mail publisher</category>
      <category domain="http://securityratty.com/tag/daily mail">daily mail</category>
      <category domain="http://securityratty.com/tag/personal">personal</category>
      <category domain="http://securityratty.com/tag/store confidential information">store confidential information</category>
      <category domain="http://securityratty.com/tag/laptop">laptop</category>
      <category domain="http://securityratty.com/tag/personal data">personal data</category>
      <category domain="http://securityratty.com/tag/laptop company computer">laptop company computer</category>
      <source url="http://breachblog.com/2008/07/05/dailymail.aspx">Daily Mail publisher admits to stolen laptop</source>
    </item>
    <item>
      <title><![CDATA[Lithuania: Attacks focused on hosting company]]></title>
      <link>http://securityratty.com/article/c7aaf2f38be7adc78d75cad984cdd1e4</link>
      <guid>http://securityratty.com/article/c7aaf2f38be7adc78d75cad984cdd1e4</guid>
      <description><![CDATA[A vulnerability in a Web server contributed to attacks on some 300 Web sites in Lithuania earlier this week,...]]></description>
      <content:encoded><![CDATA[<p>A vulnerability in a Web server contributed to attacks on some 300 Web sites in Lithuania earlier this week, a ...
<p><a href="http://feeds.computerworld.com/~a/Computerworld/Security/News?a=jkD3do"><img src="http://feeds.computerworld.com/~a/Computerworld/Security/News?i=jkD3do" border="0"></img></a></p><img src="http://feeds.computerworld.com/~r/Computerworld/Security/News/~4/326713195" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 04 Jul 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/attacks">attacks</category>
      <category domain="http://securityratty.com/tag/lithuania">lithuania</category>
      <category domain="http://securityratty.com/tag/web sites">web sites</category>
      <category domain="http://securityratty.com/tag/web server">web server</category>
      <category domain="http://securityratty.com/tag/week">week</category>
      <category domain="http://securityratty.com/tag/vulnerability">vulnerability</category>
      <source url="http://feeds.computerworld.com/~r/Computerworld/Security/News/~3/326713195/article.do">Lithuania: Attacks focused on hosting company</source>
    </item>
    <item>
      <title><![CDATA[Hundreds of Thousands of Laptops Lost at U.S. Airports Annually]]></title>
      <link>http://securityratty.com/article/c9073d10b076742bcd87430314c09618</link>
      <guid>http://securityratty.com/article/c9073d10b076742bcd87430314c09618</guid>
      <description><![CDATA[This is a weird statistic : Some of the largest and medium-sized U.S. airports report close to 637,000 laptops lost each year, according to the Ponemon Institute survey released Monday. Laptops are...]]></description>
      <content:encoded><![CDATA[This is a <a href="http://www.pcworld.com/businesscenter/article/147739/laptops_lost_like_hot_cakes_at_us_airports.html_">weird statistic</a>:

<blockquote>Some of the largest and medium-sized U.S. airports report close to 637,000 laptops lost each year, according to the Ponemon Institute survey released Monday. Laptops are most commonly lost at security checkpoints, according to the survey.

Close to 10,278 laptops are reported lost every week at 36 of the largest U.S. airports, and 65 percent of those laptops are not reclaimed, the survey said. Around 2,000 laptops are recorded lost at the medium-sized airports, and 69 percent are not reclaimed.

Travelers seem to lack confidence that they will recover lost laptops. About 77 percent of people surveyed said they had no hope of recovering a lost laptop at the airport, with 16 percent saying they wouldn't do anything if they lost their laptop during business travel. About 53 percent said that laptops contain confidential company information, with 65 percent taking no steps to protect the information.</blockquote>

I don't know how to generalize that to a total number of lost laptops in the U.S.; let's call it 750,000.  At $1,000 per laptop -- a very conservative estimate -- that's $750 million in lost laptops annually.  Most are lost at security checkpoints, and I'm sure the numbers went up considerably since those checkpoints got more annoying after 9/11.

There aren't a lot of real numbers about the costs of increased airport security.  We pay in time, in anxiety, in inconvenience.  But we also pay in goods.  TSA employees <a href="http://www.cbsnews.com/stories/2004/09/13/eveningnews/main643165.shtml">steal out of suitcases</a>.  And opportunists steal hundreds of millions of dollars of laptops annually.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=LSh7nJ"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=LSh7nJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=DT8VQJ"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=DT8VQJ" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Fri, 04 Jul 2008 04:20:38 +0000</pubDate>
      <category domain="http://securityratty.com/tag/laptops">laptops</category>
      <category domain="http://securityratty.com/tag/recover lost laptops">recover lost laptops</category>
      <category domain="http://securityratty.com/tag/lost laptops">lost laptops</category>
      <category domain="http://securityratty.com/tag/lost">lost</category>
      <category domain="http://securityratty.com/tag/laptops lost">laptops lost</category>
      <category domain="http://securityratty.com/tag/commonly lost">commonly lost</category>
      <category domain="http://securityratty.com/tag/airports">airports</category>
      <category domain="http://securityratty.com/tag/lost laptop">lost laptop</category>
      <category domain="http://securityratty.com/tag/percent">percent</category>
      <source url="http://www.schneier.com/blog/archives/2008/07/hundreds_of_tho.html">Hundreds of Thousands of Laptops Lost at U.S. Airports Annually</source>
    </item>
    <item>
      <title><![CDATA[Lithuania: Attacks focused on hosting company]]></title>
      <link>http://securityratty.com/article/e46c46b91c606612b837d2cbb11d5c78</link>
      <guid>http://securityratty.com/article/e46c46b91c606612b837d2cbb11d5c78</guid>
      <description><![CDATA[A vulnerability in a Web server contributed to attacks on some 300 Web sites in Lithuania earlier this week, a computer security expert said on...]]></description>
      <content:encoded><![CDATA[A vulnerability in a Web server contributed to attacks on some 300 Web sites in Lithuania earlier this week, a computer security expert said on Friday.]]></content:encoded>
      <pubDate>Thu, 03 Jul 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/computer security expert">computer security expert</category>
      <category domain="http://securityratty.com/tag/attacks">attacks</category>
      <category domain="http://securityratty.com/tag/lithuania">lithuania</category>
      <category domain="http://securityratty.com/tag/web sites">web sites</category>
      <category domain="http://securityratty.com/tag/web server">web server</category>
      <category domain="http://securityratty.com/tag/friday">friday</category>
      <category domain="http://securityratty.com/tag/week">week</category>
      <category domain="http://securityratty.com/tag/vulnerability">vulnerability</category>
      <source url="http://www.networkworld.com/news/2008/070408-lithuania-attacks-focused-on-hosting.html?fsrc=rss-security">Lithuania: Attacks focused on hosting company</source>
    </item>
    <item>
      <title><![CDATA[Visualized Storm fireworks for your 4th of July]]></title>
      <link>http://securityratty.com/article/cd69cdbb404159575b86657784e007bb</link>
      <guid>http://securityratty.com/article/cd69cdbb404159575b86657784e007bb</guid>
      <description><![CDATA[As expected, the Storm botnet maestros have queued up some pwnage for your 4th of July
See the SANS diary for all the details
Upon receipt of my first fireworks.exe sample this evening, I went through...]]></description>
      <content:encoded><![CDATA[As expected, the Storm botnet maestros have queued up some pwnage for your 4th of July. <br />See the SANS <a href="http://isc.sans.org/diary.html?storyid=4669" target="_blank">diary</a> for all the details.<br />Upon receipt of my first fireworks.exe sample this evening, I went through the standard routine and ran it through the analysis mill. Like the ISC said, not much new here, but if you'd like the nitty-gritty, I've put the analysis report <a href="http://holisticinfosec.org/analysis/storm/fireworks/fireworks_storm.txt" target="_blank">here</a>, the peers config list <a href="http://holisticinfosec.org/analysis/storm/fireworks/peers.txt" target="_blank">here</a>, and the pcap <a href="http://holisticinfosec.org/analysis/storm/fireworks/fireworks.pcap" target="_blank">here</a>.<br />However, what I was really inspired to do this evening was visualize the pcap with Raffael Marty's AfterGlow. His new <a href="http://www.amazon.com/Applied-Security-Visualization-Raffael-Marty/dp/0321510100" target="_blank">book</a>, Applied Security Visualization, is coming out next month, so we can turn old Storm news into a celebration of the 4th and the pending release of Applied Security Visualization. By the way, Raffael's visualization workshop slides from the 20th Annual <a href="http://www.first.org/" target="_blank">FIRST</a> Conference in Vancouver, B.C. last week are <a href="http://www.secviz.org/content/applied-security-visualization-first-2008-talk" target="_blank">here</a>, and mine regarding Malcode Analysis for Incident Handlers are <a href="http://holisticinfosec.org/publications/McRee_MATFIH_FIRST_final.pdf" target="_blank">here</a>.<br />So, a little AfterGlow magic,<br /><span style="font-style:italic;">tcpdump -vttttnnelr /home/rmcree/pcap/fireworks.pcap | ./tcpdump2csv.pl "sip dip ttl" | perl ../graph/afterglow.pl -c /home/rmcree/afterglow/src/perl/graph/color.properties -p 2 | neato -Tgif -o fireworks.gif</span>, and the results look just like the fireworks we hoped they would. <br />Happy 4th of July everyone! <br />Except you Storm a$$hat$. ;-)<br /><br /><a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://holisticinfosec.org/analysis/storm/fireworks/fireworks.gif" target="_blan"><img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px;" src="http://holisticinfosec.org/analysis/storm/fireworks/fireworks.gif" border="0" alt="" /></a><br /><br /><a href="http://del.icio.us/post?url=http://holisticinfosec.blogspot.com/2008/07/visualized-storm-fireworks-for-your-4th.html&title=Visualized%20Storm%20fireworks%20for%20your%204th%20of%20July " title="Visualized Storm fireworks for your 4th of July ">del.icio.us</a> | <a href="http://digg.com/submit?phase=2&amp;url=http://holisticinfosec.blogspot.com/2008/07/visualized-storm-fireworks-for-your-4th.html" title="Visualized Storm fireworks for your 4th of July ">digg</a>]]></content:encoded>
      <pubDate>Thu, 03 Jul 2008 16:54:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/4th">4th</category>
      <category domain="http://securityratty.com/tag/fireworks">fireworks</category>
      <category domain="http://securityratty.com/tag/july">july</category>
      <category domain="http://securityratty.com/tag/security visualization">security visualization</category>
      <category domain="http://securityratty.com/tag/happy 4th">happy 4th</category>
      <category domain="http://securityratty.com/tag/peers config list">peers config list</category>
      <category domain="http://securityratty.com/tag/afterglow">afterglow</category>
      <category domain="http://securityratty.com/tag/visualization workshop slides">visualization workshop slides</category>
      <category domain="http://securityratty.com/tag/raffael marty">raffael marty</category>
      <source url="http://holisticinfosec.blogspot.com/2008/07/visualized-storm-fireworks-for-your-4th.html">Visualized Storm fireworks for your 4th of July</source>
    </item>
    <item>
      <title><![CDATA[Why I welcome the Hannigan Report]]></title>
      <link>http://securityratty.com/article/35f4d64cc445808628c58256670b07cd</link>
      <guid>http://securityratty.com/article/35f4d64cc445808628c58256670b07cd</guid>
      <description><![CDATA[As an RSA 'Evangelist' with pan-EMEA responsibilities, I obviously take a special interest in what's happening in the information security world that pertains to this region. Last week saw the...]]></description>
      <content:encoded><![CDATA[As an RSA 'Evangelist' with pan-EMEA responsibilities, I obviously take a special interest in what's happening in the information security world that pertains to this region. Last week saw the publication in the UK of the long-awaited <a href="http://www.cabinetoffice.gov.uk/~/media/assets/www.cabinetoffice.gov.uk/csia/dhr/dhr080625%20pdf.ashx" target=_blank>Hannigan Report</a> -- detailing the steps that UK Government departments have taken -- and are expected to take -- to mitigate recent data leakage events which have occurred, most notably in the instance of <a href="http://news.bbc.co.uk/2/hi/uk_news/politics/7104368.stm" target=_blank>HMRC</a>.
<P>
It's a cracking read and one I'd recommend to all insomniacs with an penchant for such topics, but <b>I have to say, I'm actually pretty encouraged by what I read...</b>
]]></content:encoded>
      <pubDate>Thu, 03 Jul 2008 14:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/hannigan report">hannigan report</category>
      <category domain="http://securityratty.com/tag/information security world">information security world</category>
      <category domain="http://securityratty.com/tag/government departments">government departments</category>
      <category domain="http://securityratty.com/tag/steps">steps</category>
      <category domain="http://securityratty.com/tag/notably">notably</category>
      <category domain="http://securityratty.com/tag/recommend">recommend</category>
      <category domain="http://securityratty.com/tag/insomniacs">insomniacs</category>
      <category domain="http://securityratty.com/tag/pan-emea">pan-emea</category>
      <category domain="http://securityratty.com/tag/special">special</category>
      <source url="http://www.rsa.com/blog/blog_entry.aspx?id=1302">Why I welcome the Hannigan Report</source>
    </item>
    <item>
      <title><![CDATA[Expect iPhone, Fourth of July scams, security firm says]]></title>
      <link>http://securityratty.com/article/9e827df806e25f04f4cf1ac4c04a8c85</link>
      <guid>http://securityratty.com/article/9e827df806e25f04f4cf1ac4c04a8c85</guid>
      <description><![CDATA[Next week's launch of Apple's new iPhone, coupled with the Fourth of July holiday in the U.S. on Friday, is likely to lead to more malware spam over the coming...]]></description>
      <content:encoded><![CDATA[Next week's launch of Apple's new iPhone, coupled with the Fourth of July holiday in the U.S. on Friday, is likely to lead to more malware spam over the coming days.
<p><a href="http://feeds.computerworld.com/~a/Computerworld/Security/News?a=3fLixG"><img src="http://feeds.computerworld.com/~a/Computerworld/Security/News?i=3fLixG" border="0"></img></a></p><img src="http://feeds.computerworld.com/~r/Computerworld/Security/News/~4/325841331" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 03 Jul 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/iphone">iphone</category>
      <category domain="http://securityratty.com/tag/july holiday">july holiday</category>
      <category domain="http://securityratty.com/tag/fourth">fourth</category>
      <category domain="http://securityratty.com/tag/malware spam">malware spam</category>
      <category domain="http://securityratty.com/tag/lead">lead</category>
      <category domain="http://securityratty.com/tag/friday">friday</category>
      <category domain="http://securityratty.com/tag/apple">apple</category>
      <category domain="http://securityratty.com/tag/week">week</category>
      <category domain="http://securityratty.com/tag/launch">launch</category>
      <source url="http://feeds.computerworld.com/~r/Computerworld/Security/News/~3/325841331/article.do">Expect iPhone, Fourth of July scams, security firm says</source>
    </item>
    <item>
      <title><![CDATA[Your 419 Mail Roundup]]></title>
      <link>http://securityratty.com/article/cac739eb23af3ee3d5ecd500b5815c6f</link>
      <guid>http://securityratty.com/article/cac739eb23af3ee3d5ecd500b5815c6f</guid>
      <description><![CDATA[A handful of scam mails currently in circulation, including one mention of &quot;groundnut oil&quot; that seems so bizarre I had to highlight it in bold text. All this and more, after the jump
Subject
FROM THE...]]></description>
      <content:encoded><![CDATA[
        A handful of scam mails currently in circulation, including one mention of "groundnut oil" that seems so bizarre I had to highlight it in bold text. All this and more, after the jump...<br />  
        Subject:<br />FROM THE DESK OF MR. STEVEN JAMES<br />From:<br />"Steven James"&lt;steven@fristbnkngplc.net&gt;<br />Date:<br />Mon, 30 Jun 2008 19:17:03 +0100<br />BCC:<br /><br />FROM THE DESK OF MR. STEVEN JAMES<br />CHAIRMAN INTERNATIONAL RELATION<br />FIRST BANK OF NIGERIA PLC<br /># 1 BANK ROAD WUSE FCT <br />ABUJA-NIGERIA.<br />PHONE: +234-80-66520277<br />Email: stevenjames809@live.co.uk&nbsp; <br /><br /><br />Very Urgent Attention,<br /><br />Please permit me to introduce my humble self to you, my name is Mr. Steven James, I am the Manager of International Relation with First Bank of Nigeria Plc, I 'm 38yrs old, and I got your email address from a friend of mine, and my confidence reposed on you. I hope you read this message carefully and reply me immediately. Although we have not met before, but I suggest that this transaction will bring us together.<br /><br />My dear, we had a customer, a foreigner but base here in Nigeria, his Name was Mr. Hamilton Creek. He is from Atlanta Georgia United State of America, but based here with his wife and his two children, Mr. Hamilton has being banking with us for the past 4yrs and some time in August 2002, Mr. Hamilton was on his way to his house, and <b>unfortunately ran into a Trailer load of Groundnut Oil, and died&nbsp;&nbsp; immediately, Their car got burnt, no single soul was saved, Mr. Hamilton Creek and His entire family was confirmed dead.</b><br /><br />My Board of Directors and the Management of First Bank has mandated and instructed me to look for Mr. Hamilton Creek? Relation(s) and his Next of&nbsp; Kin to come and claim his fund, Since August 2003 till date, I have been looking for his relation's or his next of Kin to come and claim his fund which he Deposited with our bank, I have contacted his Embassy and after 3days, his Ambassador told me that Mr. Hamilton Creek has no relation and no next of Kin, their Ambassador told me that he used his first son as His next of kin, but it is quite unfortunate that Mr. Hamilton Creek Died with all his family members.<br /><br />The reason why I contacted you is thus, Mr. Hamilton is dead, and his only son who supposed to inherit his properties and money also died with him. As at this moment, nobody or person[s] is coming to&nbsp;&nbsp; claim this Money from our bank. The Board of Directors and management of our bank told me that if nobody or person[s] apply for the claim of Mr. Hamilton Fund, the bank will return the entire Fund into our Federal reserve. In the Light of the above, I want you to stand as the next of kin to Late Mr. Hamilton Creek; it might interest you to know that he had a Domiciliary Bank Account with our Bank and he has a total sum of US$9.2M Nine Million Two Hundred thousand Dollars, this is the exact amount which he had in his domiciliary account before the ugly incident occurred, and this money is still in his account as unclaimed money.<br /><br />This transaction is very easy and simple, and it is 100% risk free, I'm the Manager for International Relations with First Bank of Nigeria Plc, and the Management and Board of Directors of the Bank are waiting for me to provide to them the Relation or next of Kin to late Mr. Hamilton Creek, of which I told them that I am still searching the next of kin to the deceased. Finally, if you are interested with this transaction, I will front you to the bank as the only next of kin to late Mr. Hamilton Creek, and I will let the bank know that you are the only right person to inherit Late Mr. Hamilton Funds and properties. If you are interested, just email me or call me on my&nbsp;&nbsp; direct and private line#: +234-80-27536038 and late Mr. Hamilton's Funds will be credited into your account and all his Properties will be released to you either through Courier Services or the Bank will Cargo all his properties to you in any were you want it.<br /><br />So reply me immediately and feel free to ask any question with regards to this transaction. You will take 50% of the US$9.2M. Which is? US$4.600, 000.00 Four Million Six Hundred Thousand Dollars, while the Balance of the same amount will be mine.<br /><br />Your swift response will be highly appreciated.<br /><br />Thanks and have a nice day.<br /><br />Friendly Regards<br /><br />Mr. Steven James<br /><br />*******************************************************************************************<br /><br />Subject:<br />REPRESENTATIVE NEEDED<br />From:<br />DFS SALES LTD UK &lt;info@dfs.net&gt;<br />Date:<br />Tue, 01 Jul 2008 23:00:55 +0800<br />To:<br />undisclosed-recipients: ;<br /><br /><br />COMPLIMENT OF THE DAY TO YOU.<br /><br />I am PETER WOODS from DFS SALES LTD UK.(<br />Website: www.dfs-online.co.uk ) Visit our site<br /><br />We are into&nbsp; furnitures and we sell shares to people in<br />Canada,America, Australia and Europe.<br /><br />We are in need of a book keeper. someone who can represent our company<br />in his/her country.<br /><br />Our client in your location will contact you and make the company<br />payment to you.<br /><br />You will be entitle to 11% of every payment been made out to you.<br /><br />This is because most of our officer are from china and they do not<br /><br />understand english very well.its hard for them to contact our<br />customers.<br /><br />Our head office is located in CHINA. But we have a sub-office in the<br />uk.<br /><br />If you are interested, Kindly send the entries for more understanding.<br /><br />NAME IN FULL :.........<br />COMPANY NAME: .....<br />POSITION:......<br />FULL ADDRESS: .......<br />CITY/TOWN:........<br />STATE:............<br />ZIP CODE:........<br />COUNTRY:.......<br />MOBILE:.......<br />HOME TEL: .....<br />EMAIL ADDRESS: ........<br />OCCUPATION: ...........<br />BANK NAME :.......<br />AGE:............<br /><br />You are to send the above details to<br /><br />NAME : PETER WOODS.<br />EMAIL : dfs_woods@yahoo.co.uk<br />PHONE NUMBER : +44-704-575-0212<br /><br />HOPE TO HEAR FROM YOU<br /><br /><br />*****************************************************************************************<br /><br />To:<br />undisclosed-recipients:;<br /><br />Good day!!!<br /><br />&nbsp;We have been waiting for you since to contact me for your Confirmable Bank Draft of ?18 Million (Eighteen Million Pounds sterling) but we did not hear from you since for a couple of weeks now. Then we went to the bank to confirm if the draft that expired or getting near to expire and Metropolitan Police Uk told us that before the funds will get to your hand that it will expire.So I told him to cash the ?18 Million (Eighteen Million Pounds sterling) to cash payment to avoid losing this fund under expiration as I will be out of the country for a 6 Months Course.<br /><br />&nbsp;What you have to do now is to contact FED EX COURIER SERVICES as soon as possible to know when they will deliver of your funds to you because of the expiring date. For your information we have paid for the delivering Charge Insurance premium. The only money you will send to the FED EX COURIER SERVICES to deliver your cheque direct to your postal Address in your country is ?250.00 being Security Keeping Fee of the Courier Company so far. Again don't be deceived by anybody to pay any other money except ?250.00 for the Security Keeping Fee.We would have paid that but they said no because they don't know when you will contact them and in case of demurrage. You have to contact FED EX COURIER SERVICES now for the delivery of your Draft with this<br />information below:<br /><br />&nbsp;CONTROLLER: Mrs.Helen Williams<br />&nbsp;NAME: FED EX COURIER SERVICES<br />&nbsp;ADDRESS: fedexofficeuk@gmail.com<br />&nbsp;PHONE NUMBER: +447024080684<br /><br />&nbsp;IF YOU ARE THE OWENER OF THE FUNDS AND YOU WILL SEND YOUR INFORMATION TO US SO THAT WE CAN DELIVERY YOUR FUNDS TO YOU WITHIN THE NEXT 84HRS TIME.IF YOU DO NOT RECEIVED YOUR FUNDS WITHIN THE NEXT 72HRS TIME AND YOU REPORT US THE UK FBI AND THE METROPOLITAN POLICE (SCOTLAND YARD) or YOU CONTACT YOUR LAWYER TO TAKE UP PROCEDURES AGAINST US.<br /><br />&nbsp;Let me repeat again try to contact them as soon as you receive this mail to avoid any further delay and remember to pay them their Security keeping fee of ?250.00 for their immediate action. The FED EX COURIER SERVICES don't know the contents of the funds. This is to avoid them delaying with the funds.<br /><br />&nbsp;Thanks as you contact them today.<br /><br />&nbsp;Yours Faithfully<br /><br />&nbsp;Mrs Helen Williams.<br /><br /><b>(The above actually comes with a nifty graphic that they've thrown in, thinking it makes it all look more legitimate. It doesn't, but here it is anyway):</b><br /><br /><span class="mt-enclosure mt-enclosure-image" style="display: inline;"><img alt="fedx1.jpg" src="http://blog.spywareguide.com/images/fedx1.jpg" class="mt-image-none" style="" height="64" width="472" /></span>
<br /><br />....altogether now: oooooh. A slightly shorter 419 roundup than usual, but I'm sure I'll have piles of the things next week.<br /><br /><br /><div class="moz-text-plain" wrap="true" graphical-quote="true" style="font-family: -moz-fixed; font-size: 13px;" lang="x-cyrillic"><pre wrap=""><br /><br /><br /><br /><br /></pre></div><div><br /></div>
    ]]></content:encoded>
      <pubDate>Wed, 02 Jul 2008 13:11:42 +0000</pubDate>
      <category domain="http://securityratty.com/tag/hamilton fund">hamilton fund</category>
      <category domain="http://securityratty.com/tag/hamilton">hamilton</category>
      <category domain="http://securityratty.com/tag/hamilton creek">hamilton creek</category>
      <category domain="http://securityratty.com/tag/draft">draft</category>
      <category domain="http://securityratty.com/tag/confirmable bank draft">confirmable bank draft</category>
      <category domain="http://securityratty.com/tag/account">account</category>
      <category domain="http://securityratty.com/tag/domiciliary bank account">domiciliary bank account</category>
      <category domain="http://securityratty.com/tag/bank">bank</category>
      <category domain="http://securityratty.com/tag/hamilton funds">hamilton funds</category>
      <source url="http://blog.spywareguide.com/2008/07/your-419-mail-roundup-1.html">Your 419 Mail Roundup</source>
    </item>
    <item>
      <title><![CDATA[Security Briefing: July 2nd]]></title>
      <link>http://securityratty.com/article/86b6637d849af0ba574d4cc66c7b29f3</link>
      <guid>http://securityratty.com/article/86b6637d849af0ba574d4cc66c7b29f3</guid>
      <description><![CDATA[Back in the saddle again. Its a short week for both sides of the border here in North America. Happy post Canada Day to my brethren and a Happy (and approaching) July 4th to our cousins to the south...]]></description>
      <content:encoded><![CDATA[<p><center><img src='http://www.liquidmatrix.org/blog/wp-content/uploads/2007/09/newspapera.jpg' alt='newspapera.jpg' /></center></p>
<p>Back in the saddle again. It&#8217;s a short week for both sides of the border here in North America. Happy post Canada Day to my brethren and a Happy (and approaching) July 4th to our cousins to the south.</p>
<p>Click here to <a href="http://feeds.feedburner.com/Liquidmatrix">subscribe to Liquidmatrix Security Digest!</a>. </p>
<p>And now, the news&#8230;</p>
<ol>
<li><a href="http://news.cnet.com/8301-13554_3-9982240-33.html">2600 HOPE conference bringing hacking to New York City</a> (<i>and we&#8217;ll see you there</i>) | CNET</li>
<li><a href="http://www.lasvegasnow.com/Global/story.asp?S=8588929&amp;nav=menu102_2">FBI Investigating Major ATM Hacking Ring</a> | Las Vegas Now</li>
<li><a href="http://www.pcworld.com/businesscenter/article/147776/study_unpatched_web_browsers_prevalent_on_the_internet.html">Study: Unpatched Web Browsers Prevalent on the Internet</a> | PC World</li>
<li><a href="http://security.itproportal.com/articles/2008/07/01/netherlands-man-arrested-hacking-50000-credit-cards/">Netherlands man arrested for hacking 50,000 credit cards</a> | Security Pro Portal</li>
<li><a href="http://www.informationweek.com/blog/main/archives/2008/07/vint_cerf_the_i.html">Vint Cerf Says Government Needs To Encourage Internet Competition</a> | Information Week</li>
<li><a href="http://www.veracode.com/blog/?p=117">The Government’s Top Hackers?</a> | Veracode</li>
<li><a href="http://blogs.zdnet.com/security/?p=1365">HSBC sites vulnerable to XSS flaws, could aid phishing attacks</a> | ZDNet</li>
<li><a href="http://www.independent.co.uk/news/business/news/hmrc-goes-capinhand-to-americans-for-help-with-fraud-856441.html">HMRC goes cap-in-hand to Americans for help with fraud</a> | The Independent</li>
</ol>
<p> Tags: <a href="http://technorati.com/tag/News" rel="tag">News</a>, <a href="http://technorati.com/tag/Daily+Links" rel="tag"> Daily Links</a>, <a href="http://technorati.com/tag/Security+Blog" rel="tag"> Security Blog</a>, <a href="http://technorati.com/tag/Information+Security" rel="tag"> Information Security</a>, <a href="http://technorati.com/tag/Security+News" rel="tag"> Security News</a></p>

<p><a href="http://feeds.feedburner.com/~a/Liquidmatrix?a=2pAYAk"><img src="http://feeds.feedburner.com/~a/Liquidmatrix?i=2pAYAk" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=5iYstJ"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=5iYstJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=63CuEj"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=63CuEj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=0y8XEj"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=0y8XEj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=ubLELj"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=ubLELj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Liquidmatrix?a=cNE8Gj"><img src="http://feeds.feedburner.com/~f/Liquidmatrix?i=cNE8Gj" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Liquidmatrix/~4/324886536" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 02 Jul 2008 09:20:43 +0000</pubDate>
      <category domain="http://securityratty.com/tag/encourage internet competition">encourage internet competition</category>
      <category domain="http://securityratty.com/tag/internet">internet</category>
      <category domain="http://securityratty.com/tag/security news">security news</category>
      <category domain="http://securityratty.com/tag/news">news</category>
      <category domain="http://securityratty.com/tag/hsbc sites vulnerable">hsbc sites vulnerable</category>
      <category domain="http://securityratty.com/tag/web browsers prevalent">web browsers prevalent</category>
      <category domain="http://securityratty.com/tag/governments top hackers">governments top hackers</category>
      <category domain="http://securityratty.com/tag/security pro portal">security pro portal</category>
      <category domain="http://securityratty.com/tag/north america">north america</category>
      <source url="http://feeds.feedburner.com/~r/Liquidmatrix/~3/324886536/">Security Briefing: July 2nd</source>
    </item>
  </channel>
</rss>
