Kees Leune – The Internet Storm Center has an interesting diary entry today. Maarten van Horenbeeck discusses targeted malware that scans the compromised host for encryption keys and also includes a key logger to retrieve passphrases. This is scary stuff when an attacker [...] read more

I was looking at a phishing email last night for OANDA FXTrade. At first glance I could see something a little different about it. Instead of linking directly to the phishing site in the email, it contained an attachment (an html file) that you are... (posted on 15 May 2008 by ha.ckers.org web application security lab)
By JR Raphael Contributing Writer, [GAS] Ever wonder how the record industry catches all those people trading music? Today, we’re getting some insight. The Record Industry Association of America (RIAA) says it uses the same exact tools familiar to file... (posted on 15 May 2008 by Geeks are Sexy Technology News)
One of the interesting potential applications for mobile data centers is disaster response: the ability to quickly deploy computing and communications infrastructure to assist local officials and relief workers in major disasters. This is one of the uses... (posted on 15 May 2008 by Data Center Knowledge)
As someone who has to keep tabs on several Windows servers, the best way to make sure everything is in order is through consistency and methodology. Basically, what you do to one, do to all (unless, of course, the needs are different for each... (posted on 15 May 2008 by PCMech)
I had dinner tonight with a vendor. They wanted to meet to talk about some of the challenges that I'm facing at work. We've had meetings before about what they can do for me and for my company to ease the pain of developing a security program and getting... (posted on 14 May 2008 by Andy ITGuy)

14 May 2008

OpenSSL bug and fix

Slashdot: “Debian bug leaves private SSL/SSH keys guessable.” I patched yesterday via the auto-update. (You could also run sudo apt-get update.) (posted on 14 May 2008 by ckunte.com)

Computerworld News