<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>IT Defense Solutions &#187; erwin@itdefensesolutions.com</title>
	<atom:link href="http://itdefensesolutions.com/author/erwin/feed/" rel="self" type="application/rss+xml" />
	<link>http://itdefensesolutions.com</link>
	<description>Providing Security Solutions, News and Services</description>
	<lastBuildDate>Fri, 20 Jan 2012 14:06:33 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Cyber Security News &#8211;  January 20, 2012</title>
		<link>http://itdefensesolutions.com/2012/01/cyber-security-news-january-20-2012/</link>
		<comments>http://itdefensesolutions.com/2012/01/cyber-security-news-january-20-2012/#comments</comments>
		<pubDate>Fri, 20 Jan 2012 14:06:33 +0000</pubDate>
		<dc:creator>erwin@itdefensesolutions.com</dc:creator>
				<category><![CDATA[Security News]]></category>

		<guid isPermaLink="false">http://itdefensesolutions.com/2012/01/cyber-security-news-january-20-2012/</guid>
		<description><![CDATA[NSA Releases SE Android With Better Sandboxing, Access-Control Policies Based on SE Linux, SE Android developed by the U.S. National Security Agency is a security-enhanced version of Google&#8217;s mobile platform with stricter access-control policies. &#8211; The National Security Agency has publicly released SE Android, a secure version of Google&#8217;s mobile operating system. A security-enhanced version [...]]]></description>
			<content:encoded><![CDATA[<ul class="scrd_digest">
<li><a href="http://www.eweek.com/c/a/Security/NSA-Releases-SE-Android-With-Better-Sandboxing-Access-Control-Policies-324639/?kc=rss" rel="external">NSA Releases SE Android With Better Sandboxing, Access-Control Policies</a>
<div>Based on SE Linux, SE Android developed by the U.S. National Security Agency is a security-enhanced version of Google&#8217;s mobile platform with stricter access-control policies.   &#8211;  The National<br />
Security Agency has publicly released SE Android, a secure version of Google&#8217;s<br />
mobile operating system.<br />
A<br />
security-enhanced version of Android, SE Android would enforce stricter access-control<br />
policies and better sandboxing than what is currently available in the most<br />
up-to-date v&#8230;</div>
</li>
</ul>
<p class="scrd_credit">Digest powered by <a href="http://www.rssdigestpro.com">RSS Digest</a></p>
]]></content:encoded>
			<wfw:commentRss>http://itdefensesolutions.com/2012/01/cyber-security-news-january-20-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security News &#8211;  January 7, 2012</title>
		<link>http://itdefensesolutions.com/2012/01/cyber-security-news-january-7-2012/</link>
		<comments>http://itdefensesolutions.com/2012/01/cyber-security-news-january-7-2012/#comments</comments>
		<pubDate>Sat, 07 Jan 2012 13:46:46 +0000</pubDate>
		<dc:creator>erwin@itdefensesolutions.com</dc:creator>
				<category><![CDATA[Security News]]></category>

		<guid isPermaLink="false">http://itdefensesolutions.com/2012/01/cyber-security-news-january-7-2012/</guid>
		<description><![CDATA[Hackers Get Symantec Anti-Virus Source Code Symantec has confirmed that hackers obtained source code to two of its enterprise security products and have released portions of it on the web, portending a worst-case scenario where its security software could be perused by hackers to devise ways to circumvent it. “Symantec can confirm that a segment [...]]]></description>
			<content:encoded><![CDATA[<ul class="scrd_digest">
<li><a href="http://feeds.wired.com/~r/wired27b/~3/aNeF_qPrKYE/" rel="external">Hackers Get Symantec Anti-Virus Source Code</a>
<div>
<p><a href="http://www.wired.com/images_blogs/threatlevel/2012/01/Symantec-World-Headquarters.jpg"><img src="http://www.wired.com/images_blogs/threatlevel/2012/01/Symantec-World-Headquarters-300x200.jpg" alt="" width="300" height="200" /></a>Symantec has confirmed that hackers obtained source code to two of its enterprise security products and have released portions of it on the web, portending a worst-case scenario where its security software could be perused by hackers to devise ways to circumvent it.</p>
<p>“Symantec can confirm that a segment of its source code has been accessed,” the company said in a statement released Friday. “Symantec’s own network was not breached, but rather that of a third party entity.”</p>
<p>A hacker group calling itself the Lords of Dharmaraja claimed it uncovered the source code on servers belonging to India’s military intelligence agency. </p>
<p>“We have discovered within the Indian Spy Program source codes of a dozen software companies which have signed agreements with Indian TANCS programme and CBI,” the hackers claimed in <a href="http://pastebin.com/7Yq5QREz">post published on Pastebin</a>.</p>
<p>Symantec acknowledged that segments of source code that the hackers posted online and passed to reporters belonged to Symantec’s 2006 Endpoint Protection 11.0 and its discontinued Symantec Antivirus 10.2. Symantec’s Endpoint Protection is currently at version 12.0.</p>
<p>Although the products are not the most recent releases and are not the company’s flagship consumer products, if hackers obtained all of the source code and released it, it could be valuable to Symantec competitors and could also be used by hackers to search for vulnerabilities in the products that may be unpatched and therefore exploited.</p>
<p>Stuxnet, a sophisticated worm that sabotaged Iran’s uranium enrichment program, contained code that conducted extensive checks to determine what anti-virus products were installed on targeted machines in order to bypass them.</p>
<p><em>Photo: <a href="http://www.flickr.com/photos/cytech/4108660922/sizes/z/in/photostream/">cytech</a>/flickr</em></p>
</p>
<div>
<a href="http://feeds.wired.com/~ff/wired27b?a=aNeF_qPrKYE:SzfppOR5hMI:cGdyc7Q-1BI"><img src="http://feeds.feedburner.com/~ff/wired27b?d=cGdyc7Q-1BI" border="0" /></a> <a href="http://feeds.wired.com/~ff/wired27b?a=aNeF_qPrKYE:SzfppOR5hMI:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/wired27b?i=aNeF_qPrKYE:SzfppOR5hMI:V_sGLiPBpWU" border="0" /></a> <a href="http://feeds.wired.com/~ff/wired27b?a=aNeF_qPrKYE:SzfppOR5hMI:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/wired27b?i=aNeF_qPrKYE:SzfppOR5hMI:gIN9vFwOqvQ" border="0" /></a> <a href="http://feeds.wired.com/~ff/wired27b?a=aNeF_qPrKYE:SzfppOR5hMI:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/wired27b?d=yIl2AUoC8zA" border="0" /></a>
</div>
<p><img src="http://feeds.feedburner.com/~r/wired27b/~4/aNeF_qPrKYE" height="1" width="1" /></div>
</li>
<li><a href="http://news.cnet.com/8301-1009_3-57353528-83/worm-steals-more-than-45000-facebook-logins/?part=rss&amp;tag=feed&amp;subj=News-Security" rel="external">Worm steals more than 45,000 Facebook logins</a>
<div>Malware makes off with the usernames and passwords of more than 45,000 users of the social network, mostly in France and the United Kingdom.</div>
</li>
</ul>
<p class="scrd_credit">Digest powered by <a href="http://www.rssdigestpro.com">RSS Digest</a></p>
]]></content:encoded>
			<wfw:commentRss>http://itdefensesolutions.com/2012/01/cyber-security-news-january-7-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security News &#8211;  December 26, 2011</title>
		<link>http://itdefensesolutions.com/2011/12/cyber-security-news-december-26-2011/</link>
		<comments>http://itdefensesolutions.com/2011/12/cyber-security-news-december-26-2011/#comments</comments>
		<pubDate>Mon, 26 Dec 2011 13:48:20 +0000</pubDate>
		<dc:creator>erwin@itdefensesolutions.com</dc:creator>
				<category><![CDATA[Security News]]></category>

		<guid isPermaLink="false">http://itdefensesolutions.com/2011/12/cyber-security-news-december-26-2011/</guid>
		<description><![CDATA[Anonymous claims hack on security think tank A series of tweets claim that Anonymous has hacked Stratfor&#8217;s e-mail and client list, including snagging credit card numbers. Stratfor&#8217;s site is &#8220;undergoing maintenance.&#8221; Better Business Bureau cautions Wi-Fi hotspot users Wi-Fi hotspots are popping up everywhere, from coffee shops and libraries to airports and hotel rooms. Digest [...]]]></description>
			<content:encoded><![CDATA[<ul class="scrd_digest">
<li><a href="http://news.cnet.com/8301-1009_3-57348300-83/anonymous-claims-hack-on-security-think-tank/?part=rss&amp;tag=feed&amp;subj=News-Security" rel="external">Anonymous claims hack on security think tank</a>
<div>A series of tweets claim that Anonymous has hacked Stratfor&#8217;s e-mail and client list, including snagging credit card numbers. Stratfor&#8217;s site is &#8220;undergoing maintenance.&#8221;</div>
</li>
<li><a href="http://www.topix.net/tech/computer-security/2011/12/better-business-bureau-cautions-wi-fi-hotspot-users?fromrss=1" rel="external">Better Business Bureau cautions Wi-Fi hotspot users</a>
<div>
<p>Wi-Fi hotspots are popping up everywhere, from coffee shops and libraries to airports and hotel rooms.</p>
</div>
</li>
</ul>
<p class="scrd_credit">Digest powered by <a href="http://www.rssdigestpro.com">RSS Digest</a></p>
]]></content:encoded>
			<wfw:commentRss>http://itdefensesolutions.com/2011/12/cyber-security-news-december-26-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security News &#8211;  December 21, 2011</title>
		<link>http://itdefensesolutions.com/2011/12/cyber-security-news-december-21-2011/</link>
		<comments>http://itdefensesolutions.com/2011/12/cyber-security-news-december-21-2011/#comments</comments>
		<pubDate>Wed, 21 Dec 2011 13:44:57 +0000</pubDate>
		<dc:creator>erwin@itdefensesolutions.com</dc:creator>
				<category><![CDATA[Security News]]></category>

		<guid isPermaLink="false">http://itdefensesolutions.com/2011/12/cyber-security-news-december-21-2011/</guid>
		<description><![CDATA[Git Friendly The Metasploit project recently switched to Git/GitHub for source code management. Since then, there have been a number of questions from the community about using Git &#8212; both in general and in the context of the framework.  Let&#039;s try shining a little light.   Why did we change? Git makes it easier to [...]]]></description>
			<content:encoded><![CDATA[<ul class="scrd_digest">
<li><a href="https://community.rapid7.com/community/solutions/metasploit/blog/2011/12/20/git-friendly" rel="external">Git Friendly</a>
<div>
<div>
<p>The Metasploit project recently switched to Git/GitHub for source code management. Since then, there have been a number of questions from the community about using Git &#8212; both in general and in the context of the framework.  Let&#039;s try shining a little light.</p>
<p> </p>
<h3>Why did we change?</h3>
<p>Git makes it easier to collaborate and to implement complex workflows among developers, which is ideal both for open-source projects and for Agile/Scrum/XP-oriented teams.  As a commercial open-source operation, Rapid7 fits both these descriptions.  There&#039;s also a decent argument to be made for the idea that Git is simply a *better* way to manage source code than Subversion &#8212; that it represents an evolutionary leap forward in source control, and that any pain devs feel in switching to it will rapidly be forgotten as soon as they start making use of its many advantageous features. </p>
<p> </p>
<p>In the last four years or so, I&#039;ve converted several projects and several dozen devs to using Git.  Not one of them has ever felt like going back to SVN.</p>
<p> </p>
<h3>How is Metasploit using GitHub?</h3>
<p>The most important thing that contributors need to be aware of us the concept of the <a href="http://help.github.com/send-pull-requests/">Pull Request</a>.  This is how your code patches can make it into the framework.  The Pull Request is not part of Git itself, but rather a workflow for code collaboration that GitHub has built into their system.  As a way to integrate multiple contributors into the process of improving Metasploit, it is invaluable.</p>
<p> </p>
<p> </p>
<h3>First things to do when switching to Git</h3>
<p> </p>
<p>     <strong>1. Install the cheat gem</strong>:</p>
<p> </p>
<p><span>     gem install cheat</span>
<p> </p>
<p> </p>
<p>     <strong>2. Colorize and customize ~/.gitconfig per the great stuff in the cheat sheet:</strong></p>
<p> </p>
<p><span>     cheat git</span>
<p> </p>
<p> </p>
<p>     <strong>3. Make yourself aliases for common commands</strong>, either with bash directly or with the alias feature of git config (outlined in cheat sheet).</p>
<p> </p>
<p> </p>
<p>     <strong>4. Bookmark these things:</strong></p>
<ul>
<li><a href="https://github.com/rapid7/metasploit-framework/wiki/Using-Git">Rapid7&#8242;s Git Resources</a></li>
<li><a href="http://help.github.com/">GitHub user guide</a></li>
<li><a href="http://progit.org/book/">&#8220;Pro Git&#8221; (online book)</a></li>
</ul>
<p> </p>
<p>     Start w/ the Rapid7 resources.  There&#039;s a <a href="https://github.com/rapid7/metasploit-framework/wiki/Git-cheatsheet">&#8220;survival guide&#8221; cheatsheet</a> in there that we put together with the most-common git commands broken down by scenario, as well as a link to the excellent <a href="http://git.or.cz/course/svn.html">Git SVN Crash Course</a>, which is probably the fastest way for SVN-savvy devs to come up-to-speed on Git.</p>
<p> </p>
<p>      <strong>5. Get comfortable with a graphical merge tool</strong> for fixing conflicts in merges (Linux: <a href="http://kdiff3.sourceforge.net/">kdiff3</a> or <a href="http://meld.sourceforge.net/">Meld</a>, OS X: default is FileMerge)</p>
<p> </p>
<h3>Warning and Encouragement</h3>
<p> </p>
<p>Like any super-powerful, paradigm-shattering piece of software, Git has a learning curve.  You will need to spend *some* time understanding it in order to be able to use it, as many of the SCM concepts you&#039;re used to simply won&#039;t apply, and there are also many new concepts specific to Git.  Don&#039;t let this get you down.  You will soon wonder how you ever used anything else.</p>
</div>
</div>
</li>
</ul>
<p class="scrd_credit">Digest powered by <a href="http://www.rssdigestpro.com">RSS Digest</a></p>
]]></content:encoded>
			<wfw:commentRss>http://itdefensesolutions.com/2011/12/cyber-security-news-december-21-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security News &#8211;  December 7, 2011</title>
		<link>http://itdefensesolutions.com/2011/12/cyber-security-news-december-7-2011/</link>
		<comments>http://itdefensesolutions.com/2011/12/cyber-security-news-december-7-2011/#comments</comments>
		<pubDate>Wed, 07 Dec 2011 13:43:13 +0000</pubDate>
		<dc:creator>erwin@itdefensesolutions.com</dc:creator>
				<category><![CDATA[Security News]]></category>

		<guid isPermaLink="false">http://itdefensesolutions.com/2011/12/cyber-security-news-december-7-2011/</guid>
		<description><![CDATA[Facebook Security Flaw Exposed Users, Zuckerberg&#8217;s Private Photos Ironically, the very tool that was intended to help users police inappropriate and offensive content on Facebook was exploited to access images that users had marked private. &#8211; Some Facebook users gleefully exploited a security flaw in Facebook&#8217;s mechanism for reporting inappropriate or offensive images posted on [...]]]></description>
			<content:encoded><![CDATA[<ul class="scrd_digest">
<li><a href="http://feeds.ziffdavisenterprise.com/~r/RSS/eweeksecurity/~3/Bux4SW87hqU/" rel="external">Facebook Security Flaw Exposed Users, Zuckerberg&#8217;s Private Photos</a>
<div>Ironically, the very tool that was intended to help users police inappropriate and offensive content on Facebook was exploited to access images that users had marked private.   &#8211;  Some Facebook users gleefully exploited a security flaw in Facebook&#8217;s mechanism for reporting inappropriate or offensive images posted on the social networking site to access and publish Facebook CEO Mark Zuckerberg&#8217;s private photos. Facebook moved quickly to close the hole.</p>
<p>On Nov. 27, an anonym&#8230;</p>
<p><a href="http://ads.pheedo.com/click.phdo?s=4122bdee13da248643cb1625d34cea55&amp;p=1"><img alt="" border="0" src="http://ads.pheedo.com/img.phdo?s=4122bdee13da248643cb1625d34cea55&amp;p=1" /></a><br />
<img alt="" height="0" width="0" border="0" src="http://segment-pixel.invitemedia.com/pixel?code=TechBiz&amp;partnerID=167&amp;key=segment" /><img alt="" height="0" width="0" border="0" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&amp;adv=wouzn4v&amp;fmt=3" />
<div>
<a href="http://feeds.ziffdavisenterprise.com/~ff/RSS/eweeksecurity?a=Bux4SW87hqU:DZCbTAjyjlw:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/RSS/eweeksecurity?d=yIl2AUoC8zA" border="0" /></a> <a href="http://feeds.ziffdavisenterprise.com/~ff/RSS/eweeksecurity?a=Bux4SW87hqU:DZCbTAjyjlw:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/RSS/eweeksecurity?i=Bux4SW87hqU:DZCbTAjyjlw:V_sGLiPBpWU" border="0" /></a> <a href="http://feeds.ziffdavisenterprise.com/~ff/RSS/eweeksecurity?a=Bux4SW87hqU:DZCbTAjyjlw:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/RSS/eweeksecurity?d=7Q72WNTAKBA" border="0" /></a> <a href="http://feeds.ziffdavisenterprise.com/~ff/RSS/eweeksecurity?a=Bux4SW87hqU:DZCbTAjyjlw:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/RSS/eweeksecurity?d=dnMXMwOfBR0" border="0" /></a>
</div>
<p><img src="http://feeds.feedburner.com/~r/RSS/eweeksecurity/~4/Bux4SW87hqU" height="1" width="1" /></div>
</li>
<li><a href="http://taosecurity.blogspot.com/2011/12/mandiant-webinar-wednesday-help-us.html" rel="external">Mandiant Webinar Wednesday; Help Us Break a Record!</a>
<div><img src="http://3.bp.blogspot.com/-1JZ-6U0gzVE/TYIFINyqdkI/AAAAAAAACMc/h2Jkgl1vCY8/s400/mandiant_logo.png" align="left" />I&#8217;m back for the last Mandiant Webinar of the year, titled <a href="https://cc.readytalk.com/cc/s/showReg?udc=i8jj0oclzrs5">State of the Hack: It&#8217;s The End of The Year As We Know It &#8211; 2011</a>.  And you know what?  We feel fine!  That&#8217;s right, join Kris Harms and me Wednesday at 2 pm eastern as we discuss our reactions to noteworthy security stories from 2011.  </p>
<p><a href="https://cc.readytalk.com/cc/s/showReg?udc=i8jj0oclzrs5">Register now</a> and help Kris and me beat the attendee count from last month&#8217;s record-setting Webinar.  </p>
<p>If you have questions about and during the Webinar, you can always send them via Twitter to <a href="http://www.twitter.com/mandiant">@mandiant</a> and use the hashtag <a href="https://twitter.com/#!/search?q=%23m_soh">m_soh</a>.</p>
<p><a href="http://twitter.com/share">Tweet</a>
<div>Copyright 2003-2011 Richard Bejtlich and TaoSecurity (taosecurity.blogspot.com and www.taosecurity.com)<img width="1" height="1" src="https://blogger.googleusercontent.com/tracker/4088979-2879193110665395747?l=taosecurity.blogspot.com" alt="" /></div>
</div>
</li>
<li><a href="http://rss.slashdot.org/~r/Slashdot/slashdot/~3/tBJRTXFI98M/adobe-warns-of-critical-zero-day-vulnerability" rel="external">Adobe Warns of Critical Zero Day Vulnerability</a>
<div>
<p><a href="http://feedads.g.doubleclick.net/~at/lYPQxV0S7PWXkePwkwqYEyO-NEY/0/da"><img src="http://feedads.g.doubleclick.net/~at/lYPQxV0S7PWXkePwkwqYEyO-NEY/0/di" border="0" /></a><br />
<a href="http://feedads.g.doubleclick.net/~at/lYPQxV0S7PWXkePwkwqYEyO-NEY/1/da"><img src="http://feedads.g.doubleclick.net/~at/lYPQxV0S7PWXkePwkwqYEyO-NEY/1/di" border="0" /></a></p>
<p>wiredmikey writes &#8220;Adobe issued an advisory today on a zero-day vulnerability (CVE-2011-2462) that has come under attack in the wild. According to Adobe, the issue is a U3D memory corruption vulnerability that can be exploited to cause a crash and permit an attacker to hijack a system. So far, there are reports the vulnerability is being exploited in limited, targeted attacks against Adobe Reader 9.x on Windows. However, the bug also affects Adobe Reader and Acrobat 9.4.6 and earlier 9.x versions for UNIX and Macintosh computers, as well as Adobe Reader X (10.1.1) and Acrobat X (10.1.1) and earlier 10.x versions on Windows and Mac. Patches for Windows and Mac users of Adobe Reader X and Acrobat X will come on the next quarterly update, scheduled for Jan. 10, 2012.&#8221;
<p><a href="http://www.facebook.com/sharer.php?u=http://news.slashdot.org/story/11/12/07/0057227/adobe-warns-of-critical-zero-day-vulnerability?utm_source=slashdot&amp;utm_medium=facebook" title="Share on Facebook"><img src="http://a.fsdn.com/sd/facebook_icon_large.png" /></a></p>
<p>      <a href="http://twitter.com/home?status=Adobe+Warns+of+Critical+Zero+Day+Vulnerability:+http://bit.ly/sVjKBG" title="Share on Twitter"><img src="http://a.fsdn.com/sd/twitter_icon_large.png" /></a></p>
<p><a href="http://news.slashdot.org/story/11/12/07/0057227/adobe-warns-of-critical-zero-day-vulnerability?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>
<p><img src="http://feeds.feedburner.com/~r/Slashdot/slashdot/~4/tBJRTXFI98M" height="1" width="1" /></div>
</li>
</ul>
<p class="scrd_credit">Digest powered by <a href="http://www.rssdigestpro.com">RSS Digest</a></p>
]]></content:encoded>
			<wfw:commentRss>http://itdefensesolutions.com/2011/12/cyber-security-news-december-7-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security News &#8211;  December 1, 2011</title>
		<link>http://itdefensesolutions.com/2011/12/cyber-security-news-december-1-2011/</link>
		<comments>http://itdefensesolutions.com/2011/12/cyber-security-news-december-1-2011/#comments</comments>
		<pubDate>Thu, 01 Dec 2011 13:59:39 +0000</pubDate>
		<dc:creator>erwin@itdefensesolutions.com</dc:creator>
				<category><![CDATA[Security News]]></category>

		<guid isPermaLink="false">http://itdefensesolutions.com/2011/12/cyber-security-news-december-1-2011/</guid>
		<description><![CDATA[CIO Letter: Top Ten Tech Predictions for 2012 Michael Friedenberg, President and CEO of CIO magazine, weighs in with his top ten predictions for what will impact the IT-business landscape in 2012. New Facebook worm spreading Researchers from the Danish security firm CSIS, have intercepted a currently spreading Facebook worm. brycegalbraith: RT @chadtilbury: Build your [...]]]></description>
			<content:encoded><![CDATA[<ul class="scrd_digest">
<li><a href="http://rss.computerworld.com/~r/computerworld/news/feed/~3/hz517bvawl4/CIO_Letter_Top_Ten_Tech_Predictions_for_2012" rel="external">CIO Letter: Top Ten Tech Predictions for 2012</a>
<div>Michael Friedenberg, President and CEO of CIO magazine, weighs in with his top ten predictions for what will impact the IT-business landscape in 2012.<img src="http://feeds.feedburner.com/~r/computerworld/news/feed/~4/hz517bvawl4" height="1" width="1" /></div>
</li>
<li><a href="http://feedproxy.google.com/~r/zdnet/security/~3/9TqNMzPqs6A/9825" rel="external">New Facebook worm spreading</a>
<div>
<p>Researchers from the Danish security firm CSIS, have intercepted a currently spreading Facebook worm.</p>
<p><a href="http://ads.pheedo.com/click.phdo?s=720a7169e0317a5f97010be45fd93dcc&amp;p=1"><img alt="" border="0" src="http://ads.pheedo.com/img.phdo?s=720a7169e0317a5f97010be45fd93dcc&amp;p=1" /></a><br />
<img alt="" height="0" width="0" border="0" src="http://segment-pixel.invitemedia.com/pixel?code=TechBiz&amp;partnerID=167&amp;key=segment" /><img alt="" height="0" width="0" border="0" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&amp;adv=wouzn4v&amp;fmt=3" /><img src="http://feeds.feedburner.com/~r/zdnet/security/~4/9TqNMzPqs6A" height="1" width="1" /></div>
</li>
<li><a href="http://twitter.com/brycegalbraith/statuses/141914983285014528" rel="external">brycegalbraith: RT @chadtilbury: Build your own password cracking server step-by-step | http://t.co/hhOPwHI1  #security #dfir</a>
<div>brycegalbraith: RT @chadtilbury: Build your own password cracking server step-by-step | http://t.co/hhOPwHI1  #security #dfir</div>
</li>
<li><a href="http://blog.ncircle.com/blogs/vert/archives/2011/11/pdf_sandbox_a_must_have.html" rel="external">PDF Sandbox: A Must Have</a>
<div>Building sandbox functionality into applications is the new standard. Examples include: Office 2010 Protected View and the Chrome sandbox. Even the HTML5 standard includes sandboxing capabilities for iframes. This is a great way to mitigate the number of attacks that&#8230;</div>
</li>
<li><a href="http://twitter.com/brycegalbraith/statuses/141872599318798336" rel="external">brycegalbraith: RT @SecurityTube: [Video] Session Hijacking &#8211; SSL Session Sidejacking (SSLStrip, Hamster, Ferret) http://t.co/1qBCfgDx by LionelSecurityTube</a>
<div>brycegalbraith: RT @SecurityTube: [Video] Session Hijacking &#8211; SSL Session Sidejacking (SSLStrip, Hamster, Ferret) http://t.co/1qBCfgDx by LionelSecurityTube</div>
</li>
<li><a href="http://twitter.com/brycegalbraith/statuses/141872207038124033" rel="external">brycegalbraith: RT @armitagehacker: Video demonstration of multi/browser/java_rhino (new Java exploit in MSF) against Windows and MacOS X: http://t.co/1 &#8230;</a>
<div>brycegalbraith: RT @armitagehacker: Video demonstration of multi/browser/java_rhino (new Java exploit in MSF) against Windows and MacOS X: http://t.co/1 &#8230;</div>
</li>
</ul>
<p class="scrd_credit">Digest powered by <a href="http://www.rssdigestpro.com">RSS Digest</a></p>
]]></content:encoded>
			<wfw:commentRss>http://itdefensesolutions.com/2011/12/cyber-security-news-december-1-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security News &#8211;  November 29, 2011</title>
		<link>http://itdefensesolutions.com/2011/11/cyber-security-news-november-29-2011/</link>
		<comments>http://itdefensesolutions.com/2011/11/cyber-security-news-november-29-2011/#comments</comments>
		<pubDate>Tue, 29 Nov 2011 14:03:11 +0000</pubDate>
		<dc:creator>erwin@itdefensesolutions.com</dc:creator>
				<category><![CDATA[Security News]]></category>

		<guid isPermaLink="false">http://itdefensesolutions.com/2011/11/cyber-security-news-november-29-2011/</guid>
		<description><![CDATA[New Java Vulnerability Coming Bundled With Exploit Kits A recently discovered Java vulnerability that’s been circulating throughout the hacking underground has begun to show up alongside the BlackHole exploit kit, according to a post on Brian Krebs’ KrebsonSecurity blog. read more Digest powered by RSS Digest]]></description>
			<content:encoded><![CDATA[<ul class="scrd_digest">
<li><a href="http://threatpost.com/en_us/blogs/new-java-vulnerability-coming-bundled-exploit-kits-112811" rel="external">New Java Vulnerability Coming Bundled With Exploit Kits</a>
<div>
<p><a href="https://threatpost.com/en_us/blogs/new-java-vulnerability-coming-bundled-exploit-kits-112811"><img src="https://threatpost.com/sites/default/files/java_bug2.jpg" alt="Java flaw" border="0" height="100" width="100" /></a>A recently discovered Java vulnerability that’s been circulating throughout the hacking underground has begun to show up alongside the BlackHole exploit kit, according to a post on Brian Krebs’ <a href="http://krebsonsecurity.com/2011/11/new-java-attack-rolled-into-exploit-kits/">KrebsonSecurity blog</a>.</p>
<p><a href="http://threatpost.com/en_us/blogs/new-java-vulnerability-coming-bundled-exploit-kits-112811">read more</a></p>
</div>
</li>
</ul>
<p class="scrd_credit">Digest powered by <a href="http://www.rssdigestpro.com">RSS Digest</a></p>
]]></content:encoded>
			<wfw:commentRss>http://itdefensesolutions.com/2011/11/cyber-security-news-november-29-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security News &#8211;  November 27, 2011</title>
		<link>http://itdefensesolutions.com/2011/11/cyber-security-news-november-27-2011/</link>
		<comments>http://itdefensesolutions.com/2011/11/cyber-security-news-november-27-2011/#comments</comments>
		<pubDate>Sun, 27 Nov 2011 13:54:56 +0000</pubDate>
		<dc:creator>erwin@itdefensesolutions.com</dc:creator>
				<category><![CDATA[Security News]]></category>

		<guid isPermaLink="false">http://itdefensesolutions.com/2011/11/cyber-security-news-november-27-2011/</guid>
		<description><![CDATA[New Apache Reverse Proxy Issue Uncovered A new reverse proxy issue affecting Apache HTTP server can be used by attackers to access internal systems if certain rules are improperly configured, a security researcher said. read more brycegalbraith: HTTPS-enabled Google services now implement a special encryption technique to mitigate future key recovery attacks &#8211; http://t.co/KoCcPJBw brycegalbraith: HTTPS-enabled [...]]]></description>
			<content:encoded><![CDATA[<ul class="scrd_digest">
<li><a href="http://threatpost.com/en_us/blogs/new-apache-reverse-proxy-issue-uncovered-112611" rel="external">New Apache Reverse Proxy Issue Uncovered</a>
<div>
<p><span>A new reverse proxy issue affecting Apache HTTP server can be used by attackers to access internal systems if certain rules are improperly configured, a security researcher said.</span></p>
<p><a href="http://threatpost.com/en_us/blogs/new-apache-reverse-proxy-issue-uncovered-112611">read more</a></p>
</div>
</li>
<li><a href="http://twitter.com/brycegalbraith/statuses/140506454762328064" rel="external">brycegalbraith: HTTPS-enabled Google services now implement a special encryption technique to mitigate future key recovery attacks &#8211; http://t.co/KoCcPJBw</a>
<div>brycegalbraith: HTTPS-enabled Google services now implement a special encryption technique to mitigate future key recovery attacks &#8211; http://t.co/KoCcPJBw</div>
</li>
<li><a href="http://www.topix.net/tech/computer-security/2011/11/cyber-monday-6-tips-to-avoid-hackers-and-scammers?fromrss=1" rel="external">Cyber Monday: 6 Tips to Avoid Hackers and Scammers</a>
<div>
<p>Cyber Monday &#8212; which for many stores begins Sunday &#8212; is almost upon us. That means that more than any other time of year, we&#8217;ll be bombarded with sales and deals and notices and ads.</p>
</div>
</li>
</ul>
<p class="scrd_credit">Digest powered by <a href="http://www.rssdigestpro.com">RSS Digest</a></p>
]]></content:encoded>
			<wfw:commentRss>http://itdefensesolutions.com/2011/11/cyber-security-news-november-27-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security News &#8211;  November 25, 2011</title>
		<link>http://itdefensesolutions.com/2011/11/cyber-security-news-november-25-2011/</link>
		<comments>http://itdefensesolutions.com/2011/11/cyber-security-news-november-25-2011/#comments</comments>
		<pubDate>Fri, 25 Nov 2011 13:35:18 +0000</pubDate>
		<dc:creator>erwin@itdefensesolutions.com</dc:creator>
				<category><![CDATA[Security News]]></category>

		<guid isPermaLink="false">http://itdefensesolutions.com/2011/11/cyber-security-news-november-25-2011/</guid>
		<description><![CDATA[3 Ways to Protect Your Mobile Phone During Black Friday and Cyber Monday Mobile shopping is on the rise. In fact, nearly 60 million users will shop on their mobile phone for Black Friday and Cyber Monday sales this year. The Conficker worm, three years and counting This week marks the third anniversary of Conficker&#8217;s [...]]]></description>
			<content:encoded><![CDATA[<ul class="scrd_digest">
<li><a href="http://www.topix.net/tech/computer-security/2011/11/3-ways-to-protect-your-mobile-phone-during-black-friday-and-cyber-monday?fromrss=1" rel="external">3 Ways to Protect Your Mobile Phone During Black Friday and Cyber Monday</a>
<div>
<p>Mobile shopping is on the rise. In fact, nearly 60 million users will shop on their mobile phone for Black Friday and Cyber Monday sales this year.</p>
</div>
</li>
<li><a href="http://feedproxy.google.com/~r/nakedsecurity/~3/GPufMEgtkbM/" rel="external">The Conficker worm, three years and counting</a>
<div>This week marks the third anniversary of Conficker&#8217;s assault on our PCs. Where do we stand after doing 36 months of battle with this worm?<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nakedsecurity.sophos.com&amp;blog=15254721&amp;post=103117&amp;subd=sophosnews&amp;ref=&amp;feed=1" width="1" height="1" /><img src="http://feeds.feedburner.com/~r/nakedsecurity/~4/GPufMEgtkbM" height="1" width="1" /></div>
</li>
<li><a href="http://isc.sans.edu/diary.html?storyid=12091&amp;rss" rel="external">Quick Tip: Pastebin Monitoring &amp; Recon, (Thu, Nov 24th)</a>
<div>Happy Thanksgiving!<br />
On the heels of Dr. Ullrich&#8217;s diary regardingSCADA hacks published on Pas &#8230;(more)&#8230;</div>
</li>
<li><a href="http://feedproxy.google.com/~r/nakedsecurity/~3/RF1Ux57Yi9U/" rel="external">Phone hacking scandal: computer hacker suspect arrested</a>
<div>Yesterday, British police arrested an unnamed 52-year-old man in Milton Keynes for computer hacking related to the News of the World phone hacking fiasco. <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nakedsecurity.sophos.com&amp;blog=15254721&amp;post=103007&amp;subd=sophosnews&amp;ref=&amp;feed=1" width="1" height="1" /><img src="http://feeds.feedburner.com/~r/nakedsecurity/~4/RF1Ux57Yi9U" height="1" width="1" /></div>
</li>
<li><a href="http://rss.computerworld.com/~r/computerworld/news/feed/~3/1r5IdGnJXuw/Largest_DDoS_attack_so_far_this_year_peaked_at_45Gbps_says_company" rel="external">Largest DDoS attack so far this year peaked at 45Gbps, says company</a>
<div>A week-long DDoS attack that launched a flood of traffic at an Asian e-commerce company in early November was the biggest such incident so far this year, according to Prolexic, a company that defends websites against such attacks.<img src="http://feeds.feedburner.com/~r/computerworld/news/feed/~4/1r5IdGnJXuw" height="1" width="1" /></div>
</li>
</ul>
<p class="scrd_credit">Digest powered by <a href="http://www.rssdigestpro.com">RSS Digest</a></p>
]]></content:encoded>
			<wfw:commentRss>http://itdefensesolutions.com/2011/11/cyber-security-news-november-25-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security News &#8211;  November 24, 2011</title>
		<link>http://itdefensesolutions.com/2011/11/cyber-security-news-november-24-2011/</link>
		<comments>http://itdefensesolutions.com/2011/11/cyber-security-news-november-24-2011/#comments</comments>
		<pubDate>Thu, 24 Nov 2011 13:31:10 +0000</pubDate>
		<dc:creator>erwin@itdefensesolutions.com</dc:creator>
				<category><![CDATA[Security News]]></category>

		<guid isPermaLink="false">http://itdefensesolutions.com/2011/11/cyber-security-news-november-24-2011/</guid>
		<description><![CDATA[TheHackersNews: #Security #Infosec ☛ SecurityTube Metasploit Framework Expert Certification Launched ! http://t.co/EXQlGgtn #news TheHackersNews: #Security #Infosec ☛ SecurityTube Metasploit Framework Expert Certification Launched ! http://t.co/EXQlGgtn #news Fake iTunes gift certificate delivers a load of malware for Black Friday shoppers Watch out for shopping scams as the seaonal shopping frenzy ramps up over the US Thanksgiving [...]]]></description>
			<content:encoded><![CDATA[<ul class="scrd_digest">
<li><a href="http://twitter.com/TheHackersNews/statuses/139540663397130240" rel="external">TheHackersNews: #Security #Infosec ☛ SecurityTube Metasploit Framework Expert Certification Launched ! http://t.co/EXQlGgtn #news</a>
<div>TheHackersNews: #Security #Infosec ☛ SecurityTube Metasploit Framework Expert Certification Launched ! http://t.co/EXQlGgtn #news</div>
</li>
<li><a href="http://feedproxy.google.com/~r/nakedsecurity/~3/KDyJXroGBV0/" rel="external">Fake iTunes gift certificate delivers a load of malware for Black Friday shoppers</a>
<div>Watch out for shopping scams as the seaonal shopping frenzy ramps up over the US Thanksgiving weekend.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nakedsecurity.sophos.com&amp;blog=15254721&amp;post=102664&amp;subd=sophosnews&amp;ref=&amp;feed=1" width="1" height="1" /><img src="http://feeds.feedburner.com/~r/nakedsecurity/~4/KDyJXroGBV0" height="1" width="1" /></div>
</li>
<li><a href="http://twitter.com/brycegalbraith/statuses/139523723022700544" rel="external">brycegalbraith: Sovereign Keys: A Proposal to Make HTTPS and Email More Secure &#8211; http://t.co/FB6mRcrp</a>
<div>brycegalbraith: Sovereign Keys: A Proposal to Make HTTPS and Email More Secure &#8211; http://t.co/FB6mRcrp</div>
</li>
<li><a href="http://feedproxy.google.com/~r/SunbeltBlog/~3/PlhxiU0uSh0/phish-for-thanksgiving.html" rel="external">Phish for Thanksgiving?</a>
<div>Over the previous few days, our research team here at GFI has noticed an uptick in bank phishes winding up in a few of our spam traps. This particular scam is unique in that it comes with an html file attachment which leads to a form that attempts to steal from the unsuspecting victim all types of identifying information from the standard pin and password to their Driver’s License number and even a (fake) description of the last transaction made on the account.
<div><a href="http://2.bp.blogspot.com/-KY16P-Lohzg/Ts2fs4hPlTI/AAAAAAAAADQ/VhWRziUCLQ4/s1600/SunTrust_Phish_11_23_2.png"><img src="http://2.bp.blogspot.com/-KY16P-Lohzg/Ts2fs4hPlTI/AAAAAAAAADQ/VhWRziUCLQ4/s400/SunTrust_Phish_11_23_2.png" border="0" alt="" /></a><br />As of this posting, we have seen e-mails targeting Bank of America and SunTrust customers and surely more will follow.</div>
<div><a href="http://4.bp.blogspot.com/-j02i2CO5T1Y/Ts2jqDlow2I/AAAAAAAAADo/aAOHcf0OGc4/s1600/BOA_Phish_11_22_3.png"><img src="http://4.bp.blogspot.com/-j02i2CO5T1Y/Ts2jqDlow2I/AAAAAAAAADo/aAOHcf0OGc4/s400/BOA_Phish_11_22_3.png" border="0" alt="" /></a><br />As always, please be wary of e-mails from financial institutions asking for identifying information. When in doubt, call the official phone number listed on the back of your credit card or the known customer service line for your bank.</p>
<p>So, while &#8220;fish&#8221; was likely a <a href="http://en.wikipedia.org/wiki/Thanksgiving_dinner#Historical_menus">staple eaten</a> during the days of the pilgrams, we here in the lab are going to stick to good ol&#8217; turkey this year.</p>
<p>Stay safe,</p>
<p>Robert Stetson<br />Malware Research Team</div>
<div><img width="1" height="1" src="https://blogger.googleusercontent.com/tracker/10854312-6044252047859890824?l=sunbeltblog.blogspot.com" alt="" /></div>
<div>
<a href="http://feeds.feedburner.com/~ff/SunbeltBlog?a=PlhxiU0uSh0:8Tb6RsRqM7Q:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/SunbeltBlog?d=yIl2AUoC8zA" border="0" /></a> <a href="http://feeds.feedburner.com/~ff/SunbeltBlog?a=PlhxiU0uSh0:8Tb6RsRqM7Q:63t7Ie-LG7Y"><img src="http://feeds.feedburner.com/~ff/SunbeltBlog?d=63t7Ie-LG7Y" border="0" /></a> <a href="http://feeds.feedburner.com/~ff/SunbeltBlog?a=PlhxiU0uSh0:8Tb6RsRqM7Q:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/SunbeltBlog?d=7Q72WNTAKBA" border="0" /></a> <a href="http://feeds.feedburner.com/~ff/SunbeltBlog?a=PlhxiU0uSh0:8Tb6RsRqM7Q:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/SunbeltBlog?i=PlhxiU0uSh0:8Tb6RsRqM7Q:V_sGLiPBpWU" border="0" /></a> <a href="http://feeds.feedburner.com/~ff/SunbeltBlog?a=PlhxiU0uSh0:8Tb6RsRqM7Q:wF9xT3WuBAs"><img src="http://feeds.feedburner.com/~ff/SunbeltBlog?i=PlhxiU0uSh0:8Tb6RsRqM7Q:wF9xT3WuBAs" border="0" /></a> <a href="http://feeds.feedburner.com/~ff/SunbeltBlog?a=PlhxiU0uSh0:8Tb6RsRqM7Q:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/SunbeltBlog?i=PlhxiU0uSh0:8Tb6RsRqM7Q:F7zBnMyn0Lo" border="0" /></a> <a href="http://feeds.feedburner.com/~ff/SunbeltBlog?a=PlhxiU0uSh0:8Tb6RsRqM7Q:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/SunbeltBlog?d=qj6IDK7rITs" border="0" /></a> <a href="http://feeds.feedburner.com/~ff/SunbeltBlog?a=PlhxiU0uSh0:8Tb6RsRqM7Q:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/SunbeltBlog?i=PlhxiU0uSh0:8Tb6RsRqM7Q:gIN9vFwOqvQ" border="0" /></a>
</div>
</div>
</li>
<li><a href="http://www.securiteam.com/securitynews/6U03H0U35E.html" rel="external">Adobe Flash Player BitmapData.scroll Integer Overflow Code Execution Vulnerability</a>
<div>This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of the Adobe Flash Player.
<p>-</p>
<p>Make your website safer. Use external <a href="http://www.beyondsecurity.com/penetration-testing.html">penetration testing</a> service. First report ready in one hour!</p>
</div>
</li>
</ul>
<p class="scrd_credit">Digest powered by <a href="http://www.rssdigestpro.com">RSS Digest</a></p>
]]></content:encoded>
			<wfw:commentRss>http://itdefensesolutions.com/2011/11/cyber-security-news-november-24-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

