Best Of Web
Best Of The Web
THE ECONOMIST
Batten Down The Cyber-Hatches
European Union works to close vulnerabilities in networks across the continent
SOPHOS BLOG
Twitter Security Breach Exposes Accounts To Hackers
Hacker claims to have broken into Twitter administrative system, exposing celebrity data
SOPHOS
Nugache Botnet Mastermind Escapes Jail
Twenty-year-old hacker cooperates with authorities, will not do time
NATIONAL JOURNAL
The Cyber Defense Perimeter
Defense contractors are quietly getting classified information about threats to their computers
NETWORK WORLD
Mac Bomb Ticks For Security-Smug Users
Attackers may be saving up vulnerabilities for future exploits, researchers say
NEW YORK TIMES
Panel Advises Clarifying U.S. Plans On Cyberwar
Nation needs military plan for responding to cyberattack, experts say
INTERNET NEWS
FTC Red Flags Rule Enforcement Starts Friday
New rules on handling of personal information are designed to reduce identity theft
YAHOO!
Four Indicted In Giant College Spam Operation
Campaign allegedly affected virtually every university in the U.S.
SC MAGAZINE AUSTRALIA
Many companies still don't know how or where their breaches occur
ZDNET
International Experts Launch Anti-Cybercrime Plan
Road map outlined at InfoSec conference
SC MAGAZINE
Identity Thieves Advertising On YouTube
Video site struggles to pull ads down as fast as they go up
SEARCH SECURITY
Encryption In Data Management Should Never Be Ignored, Expert Says
Cutting corners on data encryption could be a dangerous mistake, forensic specialist warns
COMPUTERWORLD UK
InfoSec: Companies Dragging Their Feet With Patches
Enterprises patching no faster than they were five years ago, study says
TECH CRUNCH
Phishing Attack Under Way At Facebook
Experts warn users not to sign in to fbactionnet
NEW YORK TIMES
U.S. Steps Up Effort On Cyberdefenses
Government leaders discuss U.S. position on offensive tactics
CIOL
Legacy Industrial Networks Vulnerable To Hacking
Legacy systems may fall victim to old-school attacks, report says
IDENTITY THEFT.INFO
Small Breaches Can Have Big Consequences
They might not make the news, but these breaches may lead to major financial losses
HELP NET SECURITY
Corporate Security Under Threat From Converged Risks
New and old attacks create lethal mix of problems for IT
VNUnet
InfoSec 2009: Experts Discuss The Cybercrime Landscape
Government can't police the Internet by itself, observers say
BROADBAND FINDER
Consumers Advised On Cybercrime
Economic woes will lead to greater threats on the Web, Unisys expert says
McAFEE AVERT LABS BLOG
Laundering As A Service
Cybercriminals explore methods for handling money-laundering online
HERALD SUN
Billions At Risk As Online Trader CommSec Exposed To Hackers
Nearly 2 million customers urged to change passwords after vulnerabilities are discovered
WIRED
Pirate Bay Opponents Hit By Denial-Of-Service Attacks
Law firm that prosecuted Pirate Bay founders is forced to shutter Website
CNET
Puerto Rico Sites Redirected In DNS Attack
Queries to major Websites are sent to defaced Website, report says
THE JOURNAL
Internet Privacy: Mind Your Own Business
Individual privacy increasingly at risk from data collection creep
CIO
Security Pro To Companies: Assume You're Owned
Enterprises should divert resources from attack prevention to ferreting out existing invasions, expert says
PC WORLD
DNS Plays Role In Craigslist Killer Case
Network technology helps law enforcement catch alleged killer before he can strike again
HELP NET SECURITY
First Online Center To Assist Victims Of Cybercrime
McAfee sets up crime center
MARSHAL8e6
Swine Flu Spam
Rustock botnet pumps out spam that leverages users' fears about disease outbreak
REUTERS
Conficker Virus Begins To Attack PCs: Experts
Conficker is quietly infecting thousands of machines and turning them into bots
FINEXTRA.COM
Fed Bank IT Worker Charged With ID Theft And Fraud
Former IT worker at the Federal Reserve Bank of New York and his brother have been arrested for allegedly stealing personal information of bank employees in order to get loans
CNET
Conficker Infected Critical Hospital Equipment, Expert Says
Several hundred machines and critical medical equipment in an undisclosed number of U.S. hospitals were recently infected with Conficker
COMPUTING
Blunkett Warns Of Cyber Terrorist Threat
Former home secretary David Blunkett today at Infosec said the London 2012 Olympics are at risk of cyberterrorism
ABCNEWS.COM
ATM Skimming 101: How to Keep Safe
Bank ATMs are becoming more of a target now
THE REGISTER
After Mass Security Lapse, RBS Worldpay Gets IRS Contract
RBS WorldPay has won a contract with the Internal Revenue Service to process tax return payments next year
TIMESONLINE.COM
British Spy Loses Secrets In A Handbag
A British agent lost a memory stick with names of undercover agents' and details of intelligence work on anti-drug trafficking operations
NEWSWEEK
The Fog Of Cyberwar
NATO military strategists are beginning to recognize the Internet is a new battleground that it requires a military strategy
TG DAILY
White House May Take Control Of Cybersecurity
Melissa Hathaway calls for collaboration between the White House, security experts, and the private sector
CIO
U.S. Lawmakers Target Deep Packet Inspection In Privacy Bill
New privacy legislation in the works would limit how ISPs track users
NZ HERALD
Angry China Denies Hacking U.S. Jet Program
China says it did not hack the U.S. F-35 jet program, calling allegations "irresponsible" and "made up"
Best Of Web Archive:
Most Recent | 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 | 15 | 16 | 17 | 18 | 19 | 20 | 21 | 22 | 23 | 24 | 25 | 26 | 27 | 28 | 29 | 30 | 31 | 32 | 33 | 34 | 35 | 36 | 37 | 38 | 39 | 40 | 41 | 42 | 43 | 44 | 45 | 46 | 47 | 48 | 49 | 50 | 51 | 52 | 53 | 54 | 55 | 56 | 57 | 58 | 59 | 60 | 61 | 62 | 63 | 64 | 65 | 66 | 67 | 68 | 69 | 70 | 71 | 72 | 73 | 74 | 75 | 76 | 77 | 78 | 79 | 80 | 81 | 82 | 83 | 84 | 85 | 86 | 87 | 88 | 89 | 90 | 91 | 92 | 93 | 94 | 95 | 96 | 97 | 98 | 99 | 100 | 101 | 102 | 103 | 104 | 105 | 106 | 107 | 108 | 109 | 110 | 111 | 112 | 113 | 114 | 115 | 116 | 117 | 118 | 119 | 120 | 121 | 122 | 123 | 124 | 125 | 126 | 127 | 128 | 129 | 130 | 131 | 132 | 133 | 134 | 135 | 136 | 137 | 138 | 139 | 140 | 141 | 142 | 143 | 144 | 145 | 146 | 147 | 148 | 149 | 150 | 151 | 152 | 153 | 154 | 155 | 156 | 157 | 158 | 159 | 160 | 161 | 162 | 163 | 164 | 165 | 166 | 167 | 168 | 169 | 170 | 171 | 172 | 173 | 174 | 175 | 176 | 177 | 178 | 179 | 180 | 181 | 182 | 183 | 184 | 185 | 186 | 187 | 188 | 189 | 190 | 191 | 192 | 193 | 194 | 195 | 196 | 197 | 198 | 199 | 200 | 201 | 202 | 203 | 204 | 205 | 206 | 207 | 208 | 209 | 210 | 211 | 212 | 213 | 214 | 215 | 216
Free Research and Reports
Whitepapers
Upcoming Events
Dark Reading Digital Magazine
In This Issue
- The Future Of Web Authentication: Password technology is out of steam. We need safer ways to prove who's who online.
- Rethink ID Management: If the technology continues to improve, it might soon be OK for all of us to be one person on the Web.
Tech Insight
Bugs
Enterprise Vulnerabilities From DHS/US-CERT's National Vulnerability Database
CVE-2013-3562
Multiple integer signedness errors in the tvb_unmasked function in epan/dissectors/packet-websocket.c in the Websocket dissector in Wireshark 1.8.x before 1.8.7 allow remote attackers to cause a denial of service (application crash) via a malformed packet.
CVE-2013-3561
Multiple integer overflows in Wireshark 1.8.x before 1.8.7 allow remote attackers to cause a denial of service (loop or application crash) via a malformed packet, related to a crash of the Websocket dissector, an infinite loop in the MySQL dissector, and a large loop in the ETCH dissector.
CVE-2013-3560
The dissect_dsmcc_un_download function in epan/dissectors/packet-mpeg-dsmcc.c in the MPEG DSM-CC dissector in Wireshark 1.8.x before 1.8.7 uses an incorrect format string, which allows remote attackers to cause a denial of service (application crash) via a malformed packet.
CVE-2013-3559
epan/dissectors/packet-dcp-etsi.c in the DCP ETSI dissector in Wireshark 1.8.x before 1.8.7 uses incorrect integer data types, which allows remote attackers to cause a denial of service (integer overflow, and heap memory corruption or NULL pointer dereference, and application crash) via a malformed packet.
CVE-2013-3558
The dissect_ccp_bsdcomp_opt function in epan/dissectors/packet-ppp.c in the PPP CCP dissector in Wireshark 1.8.x before 1.8.7 does not terminate a bit-field list, which allows remote attackers to cause a denial of service (application crash) via a malformed packet.


