Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Comments
Feds Charge Wall Street Traders With Code Theft
Newest First  |  Oldest First  |  Threaded View
David F. Carr
50%
50%
David F. Carr,
User Rank: Apprentice
8/30/2013 | 1:26:24 PM
re: Feds Charge Wall Street Traders With Code Theft
If you're going to steal, steal BIG
Michael Endler
50%
50%
Michael Endler,
User Rank: Apprentice
8/28/2013 | 6:29:00 PM
re: Feds Charge Wall Street Traders With Code Theft
I'm oversimplifying the issue, but it's sort of ironic that prosecutions get stepped up when financial industry guys try to steal from one another. When the financial industry wrecks the economy for everyone else, though, not so much.
MedicalQuack
50%
50%
MedicalQuack,
User Rank: Apprentice
8/28/2013 | 4:50:43 PM
re: Feds Charge Wall Street Traders With Code Theft
I say prove it. The last case at Goldman was a farce and actually Goldman might want to look up old Sergey as I read he has some great engineering skills too:) If they found reworked code as they say, run it and see what it does. Also the traders unless they understand programming would have to be coached to determine what to share in Drop Box, a lot left out here and look at the reference to the Goldman/Sergey story from the FBI on "subversion"...if you are in tech you will laugh your fanny off at that one as the agent admits he had no clue what it was:) I wrote up my commentary on all of this...are we going to see another circus when it comes to proving theft here as a jury of peers in complex cases like this might be impossible to find and you have to watch the "experts" called in too as they can fabricate to win a case if no other experts dispute it:)

http://ducknetweb.blogspot.com...

Again find out who was "coaching" the traders on what code to put into Drop Box I say:)
RobPreston
50%
50%
RobPreston,
User Rank: Apprentice
8/28/2013 | 4:09:06 PM
re: Feds Charge Wall Street Traders With Code Theft
High-frequency trading algorithms aren't a bunch of credit card or social security numbers. Protecting (extremely valuable) intellectual property is the next frontier in information security.


COVID-19: Latest Security News & Commentary
Dark Reading Staff 10/1/2020
9 Tips to Prepare for the Future of Cloud & Network Security
Kelly Sheridan, Staff Editor, Dark Reading,  9/28/2020
Attacker Dwell Time: Ransomware's Most Important Metric
Ricardo Villadiego, Founder and CEO of Lumu,  9/30/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Special Report: Computing's New Normal
This special report examines how IT security organizations have adapted to the "new normal" of computing and what the long-term effects will be. Read it and get a unique set of perspectives on issues ranging from new threats & vulnerabilities as a result of remote working to how enterprise security strategy will be affected long term.
Flash Poll
How IT Security Organizations are Attacking the Cybersecurity Problem
How IT Security Organizations are Attacking the Cybersecurity Problem
The COVID-19 pandemic turned the world -- and enterprise computing -- on end. Here's a look at how cybersecurity teams are retrenching their defense strategies, rebuilding their teams, and selecting new technologies to stop the oncoming rise of online attacks.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-15664
PUBLISHED: 2020-10-01
By holding a reference to the eval() function from an about:blank window, a malicious webpage could have gained access to the InstallTrigger object which would allow them to prompt the user to install an extension. Combined with user confusion, this could result in an unintended or malicious extensi...
CVE-2020-15665
PUBLISHED: 2020-10-01
Firefox did not reset the address bar after the beforeunload dialog was shown if the user chose to remain on the page. This could have resulted in an incorrect URL being shown when used in conjunction with other unexpected browser behaviors. This vulnerability affects Firefox < 80.
CVE-2020-15666
PUBLISHED: 2020-10-01
When trying to load a non-video in an audio/video context the exact status code (200, 302, 404, 500, 412, 403, etc.) was disclosed via the MediaError Message. This level of information leakage is inconsistent with the standardized onerror/onsuccess disclosure and can lead to inferring login status t...
CVE-2020-15667
PUBLISHED: 2020-10-01
When processing a MAR update file, after the signature has been validated, an invalid name length could result in a heap overflow, leading to memory corruption and potentially arbitrary code execution. Within Firefox as released by Mozilla, this issue is only exploitable with the Mozilla-controlled ...
CVE-2020-15668
PUBLISHED: 2020-10-01
A lock was missing when accessing a data structure and importing certificate information into the trust database. This vulnerability affects Firefox < 80 and Firefox for Android < 80.