Wednesday, December 2, 2009

Tiger Woods Affair Increases Hackers Success in Malware Attack

Hackers have continued the routine of using current event and high profile news stories to continue Search Engine Optimization (SEO) to spread Malware.

Users searching keywords related to Tiger Woods will discover several sites hosting “videos” and "Pictures" that will offer details about the accident, Rachel Uchitel and Tiger’s relationship.

The videos, as expected for anyone following the malicious SEO trends, will only “work” if you download and install a “required plugin”. This plugin is a Trojan, and according to SecurityOrb.com it is used to send Spam from infected systems.

Monday, November 23, 2009

Cyber Forensics: Digital CSI

Cyber Forensics: Digital CSI
Tuesday, 1 December; 6:30 pm

Imagine a crime scene: a victim, a perp, the evidence... and the forensic investigators who add it all up. Translate that to the cyberspace world—cyber forensic experts ask: Why were you targeted? How did the perp break in? What did he do? Where did he go next? To recreate the chain of evidence that will lead to the hacker, these cyber sleuths do everything from piecing together networks to reassembling broken disks scavenged from the trash. A panel of leading experts will shed light on the growing threat of cyber crime, highlighting recent attack cases and how investigators went after the hackers, along with best practices to protect our government or your company. Speakers include:

* Robert Carr, Chairman and CEO of Heartland Payment Systems, a company that processes billions of dollars of bank card payments to merchants and was the victim of a cyber attack;
* Jim Jaeger, Director, Cyber Defense and Forensics at General Dynamics Advanced Information Systems and former Director of Intelligence (J2) for the U.S. Atlantic Command and Assistant Deputy Director of Operations at the National Security Agency;
* Dan Kaminsky, computer security expert renowned for discovering one of the largest security flaws in the Internet’s infrastructure, is currently director of Penetration Testing at IOActive, where he specializes in design-level fault analysis;
* James Christy, a cyber forensic pioneer, is director of Futures Exploration for DC3 (Department of Defense Cyber Crime Center), and was founder and chief of the Air Force Office of Special Investigations computer crime investigations, the world’s largest digital forensics shop.
* Shane Harris, program moderator, is staff correspondent for National Journal, covering intelligence, homeland security, and counterterrorism; he is the author of The Watchers, an upcoming book about terrorism surveillance in the U.S.

Please join the speakers for a post-panel reception sponsored by:

general dynamics information systems logo

Tickets: $15 per person • Members of The Spy Ring ® (Join Today!): $12 per person

Friday, November 13, 2009

SecurityOrb.com Interviews Glen of HackersforCharity at DoJoCon 2009

SecurityOrb.com Interview Glen from HFC from SecurityOrb on Vimeo.

Sunday, November 1, 2009

Windows 7: You Should Wait...


Friday, October 30, 2009

SecurityOrb.com is recommending delay to Windows 7

SecurityOrb.com is recommending that users delay any early migration to Windows 7 until more information is collected and Microsoft works out the bugs. It is our experience, with any new operating system (OS), especially Microsoft based operating systems, there is always a painful period before they work out the kinks.

There are many risk attributed to upgrading to a new OS, they are listed below:

  1. Lost of data
  2. Incompatible hardware
  3. Terrible performance
  4. Security related issues

Thursday, October 22, 2009

Google News Alert for: linux desktop

Google News Alert for: linux desktop

LXer Weekly Roundup for 18-Oct-2009
LXer (press release)
ARMing desktop Linux: For a brief time in 2008, the Linux desktop actually owned a segment of the desktop industry: netbooks. When netbooks first showed up, ...
See all stories on this topic
Hulu desktop for Linux
Ghacks Technology News
This desktop widget is now available for Windows, Mac, and (are you ready for it?) Linux! Yes, it's available for Linux, so all of us Penguinistas can enjoy ...
See all stories on this topic
CNET News
Microsoft's Windows 7 launch: Deals, deals, deals
CNET News
... AM PDT I think the story that no one is writing is that Win 7 and Snow Leopard cement that fate of Linux on the desktop as a mainstream OS for homes. ...
See all stories on this topic
2009's Top 10 Reader's Choice Linux Distributions
DaniWeb (blog)
Tinycore - Tiny Core Linux is a very small (10 MB) minimal Linux GUI Desktop. It is based on Linux 2.6 kernel, Busybox, Tiny X, and Fltk. The core runs ...
See all stories on this topic
Teeth-Gnashing and Tongue-Lashing Over Desktop Linux Foot-Shooting
LinuxInsider.com
By Katherine Noyes Desktop Linux has been driving a lot of debate in the Linux blogosphere of late, much of it in response to a post about the five ways ...
See all stories on this topic
No Linux Finger Pointing, Please
InformationWeek
(Apple is scarcely mentioned, even if Apple effectively commands five to ten times Linux's desktop slice.) Or hardware manufacturers are blamed, ...
See all stories on this topic
On Mobile Phones, Firefox's Big Bet Is Nokia & Android
GigaOm (blog)
“It is a different day, same story on the mobile as it was on the desktop,” Lilly quipped. On the desktop, Firefox continues to try to disrupt the ...
See all stories on this topic

Google News Alert for: Computer Forensics News

Google News Alert for: Computer Forensics News

Computer Forensics Proves “Balloon Boy” a Hoax
NewsReleaseWire.com (press release)
The Heene family's e-mails secured by computer forensic engineers have proven the "Balloon Boy" stunt a hoax. The e-mails sent months before the event show ...
See all stories on this topic
E-Banking on a Locked Down PC, Part II
Washington Post
A local computer forensics expert later determined that an infection from the "Zbot Trojan" (aka, "Zeus") had allowed the attackers to re-write the bank's ...
See all stories on this topic
Email is most common method employees use...
Siliconrepublic.com
20.10.2009 Email is the most-used method to steal information from companies by employees, according to Ireland's leading computer forensics and information ...
See all stories on this topic
How to copy a live server to enable investigation of a security incident
Search Security
For DD we'll use DCFLDD -- this version of DD was created by the US Department of Defense Computer Forensics Lab. It is functionally identical to the normal ...
See all stories on this topic
Candis
Preparation is needed to beat scareware
Candis
Jens Kirschner, training manager for computer forensics courses at 7Safe, said that scareware creators are producing more sophisticated viruses which are ...
See all stories on this topic