HomeBlogsSecurity Watch

Security Watch

PHP Security Guru Quits in Disgust

German researcher Stefan Esser has quit the PHP Security Response Team in disgust, accusing the open-source group of hiding the slow response time to...

UCLA Confirms Massive Database Breach

A "sophisticated computer hacker" has broken into a restricted UCLA campus database containing personal information about current and some former students, faculty, and staff,...

Where’s the MS Word Zero-Day AV Protection?

UPDATE: More than 48 hours after the confirmation of active exploits of a zero-day vulnerability in Microsoft Word, anti-virus protection remains largely nonexistent --...

Goatse Teaches Microsoft a Lesson

UPDATE: Microsoft's official RSS blog was temporarily defaced today with a semi-edited image of Goatse, a well-known Internet shock meme.

Podcast: Immunity’s Dave Aitel

The OnSecurity podcast this week is an interview I did with hackmeister Dave Aitel of @stake/Immunity/DailyDave fame. We talk about Halvar Flake's claim that...

Apple Bug Dispute; How Google Handles Hacked Sites

Links du jour: An assortment of security stories floating around blogland that you should be reading...

EveryDNS Under Botnet DDoS Attack

UPDATED: EveryDNS, a company that offers free domain name management services, has been hit by a massive DDoS (distributed denial-of-service attack) that affected thousands...

Anti-Virus Is Dead, D-E-A-D, Dead!

Outgoing Gartner analyst Amrit Williams is leaving with a bang, boldly declaring that stand-alone, signature-based anti-virus is dead.

Cracking the BlackBerry with a $100 Key

The security model of that BlackBerry on your hip isn't holding up very well to third-party scrutiny.According to a white paper by John O'Connor,...

Podcast: Symantec’s Doug Bowers

The latest installment of the eWEEK OnSecurity podcast is a sharp discussion between my colleague Matt Hines and Symantec's anti-spam guru Doug Bowers about...