SEARCH RESULTS
 
Showing 1-10 of 67 records
 
Expand article

About the SDL Pro Network

2008-09-19 03:12:00 by sdl in The Security Development Lifecycle
 
Hello all, Dave here I expect that a number of you have seen the announcement and various press articles or Steve Lipner's Tuesday post about our launch of the SDL Threat Modeling Tool 3.0, the SDL Optimization Model and the SDL Pro Network . Since I was intimately involved with the creation of the SDL Pro Network, I thought I'd write a few...
 
 
 
 
 
Expand article

Pro-Serbian Hacktivists Attacking Albanian Web Sites

The Article has images
2008-05-20 15:21:47 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
The rise of pro-kosovo web site defacement groups was marked in April, 2008, with a massive web site defacement spreading pro-kosovo propaganda. The ongoing monitoring of pro-kosovo hacktivists indicates an ongoing cyberwar between pro-serbian supporting hacktivists successfully defacing Albanian sites, and building up capabilities by releasing...
 
 
 
 
 
Expand article

Reviewing the New MacBook Pro

2008-10-14 13:18:41 by Editor in IT Security - The IT Security Industry's Web Resource
 
I just read the Ars Technica update of the new Macbook Pro, announced by Apple yesterday Up first is a new MacBook Pro, with a buttonless trackpad, full glass screen (like the iMac), and all ports migrated to one side of the machine. The new buttonless trackpad adopts the iPhones multitouch functionality, offering a glass surface area that is...
 
 
 
 
 
Expand article

Espionage Against Pro-Tibet Groups, Others, Spurred Microsoft Patches

2008-04-10 22:40:00 by Ryan Singel in Wired Security
 
A previously unexplained spike in security patches issued for Microsoft Office in 2006 and 2007 was spurred by sophisticated hack attacks against pro-Tibet organizations and U.S. defense contractors, an insider claims
 
 
 
 
 
Expand article

Chinese Cyber Attacks

2008-07-14 07:08:18 by schneier in Schneier on Security
 
The popular media conception is that there is a coordinated attempt by the Chinese government to hack into U.S. computers -- military, government corporate -- and steal secrets. The truth is a lot more complicated. There certainly is a lot of hacking coming out of China. Any company that does security monitoring sees it all the time. These...
 
 
 
 
 
Expand article

Fake Celebrity Video Sites Serving Malware - Part Two

The Article has images
2008-08-21 01:52:00 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
Malicious parties remain busy crunching out domain portfolios of legitimately looking celebrity video sites. The very same templates used on the majority of fake celebrity video sites which I exposed in a previous post, remain in circulation with anecdotal situations where they aren't even bothering to match the site's logo with the domain name...
 
 
 
 
 
Expand article

A Diverse Portfolio of Fake Security Software - Part Ten

The Article has images
2008-10-22 08:49:20 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
Popping up like mushrooms, these are the very latest rogue security software domains for your case building, cross-checking, or blackholing pleasure. Interestingly, next to decentralizing the hosting locations, they're also using legitimate hosting providers, whose reputation they've also been abusing for spamming in the past go-scan-pro...
 
 
 
 
 
Expand article

SDL Announcements at TechEd EMEA

2008-11-10 22:25:00 by sdl in The Security Development Lifecycle
 
Hello all, Dave here I am in Barcelona, Spain with Michael Howard and Adam Shostack at the TechEd EMEA: Developers Conference In addition to teaching and attending security sessions, we are in Barcelona to formally announce the launch of the SDL Optimization Model, SDL Pro Network and the Microsoft SDL Threat Modeling Tool Beta! For those of...
 
 
 
 
 
Expand article

A Diverse Portfolio of Fake Security Software - Part Fourteen

The Article has images
2008-11-27 07:47:55 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
You didn't even think for a second that the supply of typosqutted domains serving packed and triple crypted to the point where the binary is not longer executing, fake security software domains is declining? With the upcoming holidays and the usual peak of web traffic, malicious activity on all fronts is prone to increase during December....