Archive for April, 2007

ID theft task force recommends stronger laws

Monday, April 30th, 2007

The U.S. government plans to establish a national identity theft law enforcement center and create a multiyear public education campaign about the dangers of ID theft, as part of a series of recommendations released by a task force Monday. The President’s Identity Theft Task Force, created by George Bush in May 2006, also called for national data protection standards for private companies that collect and sell personal information, as well as a national law requiring companies to tell customers when their personal data has been compromised. Federal agencies should stop the unnecessary use of Social Security numbers, and the federal government should step up its efforts to educate agencies about data security best practices and regulations in place, the task force recommended.
Tag:adobe systems inc, content web, delivery mechanism, flash tool, interactive media experience, internet applications, microsoft, microsofts, new graphics, open source community, public relations firm, release beta, release source […]

Read more…

F1 engineers plan appeal in Ferrari espionage case

Monday, April 30th, 2007

In the pit
Two former Ferrari engineers accused of stealing trade secrets have been convicted of industrial espionage.…
Tag:aim, ani, bill subject, caller id data, caller id spoofing, committee head, development lifecycle, financial fraud, gurus, lessons learned, microsofts, postmortem, sdl, security development, senate floor, senate judiciary committee, spoof, violators, voice vote vulnerability

Read more…

Tools - Nipper version 0.94 released

Monday, April 30th, 2007

nipper processes network device configuration files, performs a security audit and outputs a security report with recommendations and a configuration report. nipper currently supports Cisco IOS, PIX, ASA, FWSM, NMP, CatOS and Juniper NetScreen devices.
Tag:accused, fisma, gary mckinnon, hackers, hardware platforms, industry international, information security management, infosec, international standards, management act, NIST, pentagon, pops, proprietary, radio frequency identification, rfid systems, security features, standards technology, statutory responsibilities systems applications

Read more…

Tools - AS/400 Auditing Framework Beta released

Monday, April 30th, 2007

AS/400 auditing toolkit has been released as a node of vulnerabilityassessment’s PTF project. Initial beta release - Added Remote tests (Nabil OUCHN, Thanks to Laurent Chouraki who provided us with a remote connection to his AS/400 servers) - Added local tests (Nabil OUCHN) Special thanks to Kev Orrey from Vulnerabilityassessment.co.uk for adding this toolkit to Penetration Tests Framework.
Tag:access systems, accused, boils, control scheme, gary mckinnon, global information, hackers, information security, infosec, infosecurity europe, management schemes, outsourced, paul simmonds, pentagon, pops, private public, problematic, public sector organisations, security experts zdnet uk

Read more…

Cyber-mobsters drop DoS attacks

Monday, April 30th, 2007

The practice of holding websites hostage under the threat of denial-of-service (DoS) attacks is declining, according to security researchers at Symantec. DoS attacks are carried out by botnet operators using armies of remotely controlled PCs to flood a site with traffic and information requests. The attacks can cause sites and web services to run slowly or shut down altogether. Criminals use the attacks to extort money from organisations by launching a first DoS attack and then threatening to launch further attacks unless the company pays up. The tactic has recently drawn the attention of legislators, who passed laws last November allowing for tougher punishments for the crime.
Tag:jobs, mx, new, news Spam

Read more…