Brian Prince

Bredolab Down but Far from Out After Botnet Takedown

Authorities in the Netherlands made a media splash earlier this week when they announced the arrest of a man accused of running a massive botnet of Bredolab-infected PCs. But the impact of the takedown is not destined to last. Symantec told eWEEK Oct. 27 the company was still seeing e-mails containing the malware being spammed […]

Facebook, Twitter Security Tips: Dont Fall Victim to Identity Thieves

Facebook, Twitter Security Tips: Dont Fall Victim to Identity Thieves by Brian Prince Anybody Home? According to experts, users should be careful about posting messages indicating exactly when they will be on vacation, as that could potentially provide burglars an idea of when they should strike. Your Mama Certain information is commonly used as a […]

PCI Compliance Changes Promote Log Management

The PCI Security Standards Council officially unveiled updated versions of compliance regulations Oct. 28 with minor changes meant to clarify the requirements organizations face. The revisions to the PCI DSS (Payment Card Industry Data Security Standard) and the PCI PA-DSS (Payment Card Industry Payment Application Data Security) are largely language changes and clarifications. The new […]

Critical Firefox Security Zero-Day Under Attack

A critical Mozilla Firefox zero-day has surfaced in the wild. According to security researchers, an attack using the bug was spotted Oct. 26, when the vulnerability was seen being exploited to drop malware on unsuspecting visitors to the Nobel Peace Prize Website. Researchers at Norman ASA reported that the malware tries to connect to two […]

Adobe Shockwave Player Patch Coming Oct. 28

Adobe Systems is planning to patch a critical vulnerability Oct. 28 in response to the appearance of attacks. Adobe originally issued an advisory on the bug Oct. 21. The vulnerability exists in Shockwave Player 11.5.8.612 and earlier, and affects both Windows and Macintosh computers. Attackers can exploit the issue to cause a crash and allow […]

Koobface Targets Mac Users on Social Networks

A Mac version of the infamous Koobface worm is making the rounds on social networking sites, according to security researchers. Koobface has a long history on enmity among users of social networking sites, having first appeared in 2008. Traditionally, Koobface targets Windows users on Facebook, Twitter, MySpace and other popular sites. This time, according to […]

New Twitter Session Hijacking Tool Follows Firesheep

A London software developer has followed in the footsteps of the Firesheep extension for Firefox with his own tool targeting Twitter users leveraging open WiFi. Jonty Wareing’s tool is called “Idiocy,” which he describes in a blog post as “a warning shot to people browsing the internet insecurely.” Unlike Firesheep, which targets a number of […]

Cloud Security Survey Shows Way to Go

A survey from access governance vendor Courion underscored that security cloud has a ways to go. In a survey of 384 business managers (86 percent of which came from companies with at least 1,000 employees), Courion found disagreement over who is in charge of data. More than 65 percent said the cloud service provider, application […]

McAfee: The Most Dangerous Top-Level Internet Domains

McAfee: The Most Dangerous Top-Level Internet Domains by Brian Prince .com Takes Command The most heavily trafficked domain in the world went from No. 2 to No. 1 this year, with a weighted risk of 31.3 percent. Slightly more than 6 percent of the 15.5 million, .com sites McAfee analyzed were risky, but when weighted […]

Bredolab Botnet Suspect Busted in Takedown

Law enforcement officials in Armenia arrested a man Oct. 26 accused of masterminding a massive botnet operation. According to reports, the 27-year-old suspect was arrested on suspicions of running the Bredolab botnet. Bredolab is a popular Trojan downloader used by cyber-criminals to infect Windows machines via drive-by downloads and spam e-mails. In a takedown operation, […]