<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Info Security News</title>
    <link>http://seclists.org/#isn</link>
    <atom:link href="http://seclists.org/rss/isn.rss" rel="self" type="application/rss+xml" />
    <language>en-us</language>
    <description>Carries news items (generally from mainstream sources) that relate to security.</description>
    <pubDate>Tue, 09 Feb 2010 07:00:08 GMT</pubDate>
    <lastBuildDate>Tue, 09 Feb 2010 07:00:08 GMT</lastBuildDate>
<!-- MHonArc v2.6.16 -->

 

  <item>
    <title>University worker accused of extorting student file sharers</title>
    <link>http://seclists.org/isn/2010/Feb/37</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 08&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://news.cnet.com/8301-31001_3-10449583-261.html&quot;&gt;http://news.cnet.com/8301-31001_3-10449583-261.html&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
By Greg Sandoval&lt;br&gt;
Media Maverick &lt;br&gt;
CNET News&lt;br&gt;
February 8, 2010&lt;br&gt;
&lt;br&gt;
If you thought the Recording Industry Association of America was hard on &lt;br&gt;
illegal file sharing, consider Dorin Dehelean.&lt;br&gt;
&lt;br&gt;
Dehelean, an Internet security analyst, was in charge of tracking &lt;br&gt;
illegal file sharing at the University of Georgia until he tried to &lt;br&gt;
shake down the student downloaders he caught.&lt;br&gt;
&lt;br&gt;
Last week, police arrested the...&lt;br&gt;</description>
    <pubDate>Tue, 09 Feb 2010 06:53:52 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/37</guid>
  </item>
  <item>
    <title>Open Security Foundation - State of the Union 2010</title>
    <link>http://seclists.org/isn/2010/Feb/36</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 08&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://blog.osvdb.org/2010/02/06/open-security-foundation-state-of-the-union-2010&quot;&gt;http://blog.osvdb.org/2010/02/06/open-security-foundation-state-of-the-union-2010&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
By jkouns&lt;br&gt;
&lt;br&gt;
The Open Security Foundation (OSF) has grown from a humble beginning in &lt;br&gt;
2004 to an internationally recognized 501(c)(3) non-profit public &lt;br&gt;
organization. Through the work of a small team of dedicated information &lt;br&gt;
security enthusiasts, the Open Source Vulnerability Database (OSVDB) and &lt;br&gt;
DataLossDB projects have provided organizations of all sizes with the...&lt;br&gt;</description>
    <pubDate>Tue, 09 Feb 2010 06:52:13 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/36</guid>
  </item>
  <item>
    <title>Poughkeepsie, N.Y., slams bank for $378,000 online theft</title>
    <link>http://seclists.org/isn/2010/Feb/35</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 08&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.computerworld.com/s/article/9153598/Poughkeepsie_N.Y._slams_bank_for_378_000_online_theft?taxonomyId=17&quot;&gt;http://www.computerworld.com/s/article/9153598/Poughkeepsie_N.Y._slams_bank_for_378_000_online_theft?taxonomyId=17&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
By Jaikumar Vijayan&lt;br&gt;
Computerworld&lt;br&gt;
February 8, 2010&lt;br&gt;
&lt;br&gt;
The theft of $378,000 from the town of Poughkeepsie, N.Y., is prompting &lt;br&gt;
questions about the responsibility of banks to protect customer accounts &lt;br&gt;
from online criminals.&lt;br&gt;
&lt;br&gt;
In a statement last week, a Poughkeepsie town official revealed that &lt;br&gt;
thieves had broken into the town's TD...&lt;br&gt;</description>
    <pubDate>Tue, 09 Feb 2010 06:50:31 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/35</guid>
  </item>
  <item>
    <title>ShmooCon | Your iPhone's Dirty Little Security Secret</title>
    <link>http://seclists.org/isn/2010/Feb/34</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 08&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.csoonline.com/article/533163/ShmooCon_Your_iPhone_s_Dirty_Little_Security_Secret&quot;&gt;http://www.csoonline.com/article/533163/ShmooCon_Your_iPhone_s_Dirty_Little_Security_Secret&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
By Bill Brenner&lt;br&gt;
Senior Editor&lt;br&gt;
CSO&lt;br&gt;
February 06, 2010&lt;br&gt;
&lt;br&gt;
WASHINGTON D.C. -- We've heard much about how our PCs and laptops can be &lt;br&gt;
compromised through malware and insecure wireless access points and &lt;br&gt;
often comfort ourselves with the knowledge that our smart phones are &lt;br&gt;
safe from such things.&lt;br&gt;
&lt;br&gt;
But the smarter these phones become, the more susceptible they...&lt;br&gt;</description>
    <pubDate>Tue, 09 Feb 2010 06:48:39 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/34</guid>
  </item>
  <item>
    <title>Sweden Probing Cisco, NASA Hacks</title>
    <link>http://seclists.org/isn/2010/Feb/33</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 08&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.wired.com/threatlevel/2010/02/sweden-probing-cisco-nasa-hacks/&quot;&gt;http://www.wired.com/threatlevel/2010/02/sweden-probing-cisco-nasa-hacks/&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
By David Kravets&lt;br&gt;
Threat Level&lt;br&gt;
Wired.com&lt;br&gt;
February 8, 2010&lt;br&gt;
&lt;br&gt;
Swedish investigators are probing a hacker U.S. authorities accuse of &lt;br&gt;
unlawfully intruding into Cisco Systems, NASA.s Ames Research Center and &lt;br&gt;
NASA's Advanced Supercomputing Division, the authorities said Monday.&lt;br&gt;
&lt;br&gt;
Philip Gabriel Pettersson, known in the hacking world as &amp;quot;Stakkato,&amp;quot; &lt;br&gt;
allegedly seized...&lt;br&gt;</description>
    <pubDate>Tue, 09 Feb 2010 06:46:56 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/33</guid>
  </item>
  <item>
    <title>Oracle issues emergency security patch for WebLogic</title>
    <link>http://seclists.org/isn/2010/Feb/32</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 08&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.theregister.co.uk/2010/02/08/oracle_weblogic_update/&quot;&gt;http://www.theregister.co.uk/2010/02/08/oracle_weblogic_update/&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
By Dan Goodin&lt;br&gt;
The Register&lt;br&gt;
8th February 2010&lt;br&gt;
&lt;br&gt;
Oracle issued an emergency patch for its WebLogic Server almost two &lt;br&gt;
weeks after a white-hat hacker disclosed a vulnerability that allows &lt;br&gt;
criminals to remotely execute commands on the webserver with no &lt;br&gt;
authentication necessary.&lt;br&gt;
&lt;br&gt;
The vulnerability in the Node Manager component of Oracle WebLogic &lt;br&gt;
Server can be exploited by carrying out...&lt;br&gt;</description>
    <pubDate>Tue, 09 Feb 2010 06:45:11 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/32</guid>
  </item>
  <item>
    <title>Indian pleads guilty in international online brokerage	hacking scheme</title>
    <link>http://seclists.org/isn/2010/Feb/31</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 08&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://timesofindia.indiatimes.com/world/indians-abroad/Indian-pleads-guilty-international-online-brokerage-hacking-scheme/articleshow/5544566.cms&quot;&gt;http://timesofindia.indiatimes.com/world/indians-abroad/Indian-pleads-guilty-international-online-brokerage-hacking-scheme/articleshow/5544566.cms&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
The Times of India&lt;br&gt;
7 February 2010&lt;br&gt;
&lt;br&gt;
CHICAGO: An Indian man has pleaded guilty to participating in an international &lt;br&gt;
fraud scheme to hack online brokerage accounts in the US and use them to &lt;br&gt;
manipulate stock prices to reap thousands of dollars in illegal profits &lt;br&gt;
and faces up to 7 years in prison...&lt;br&gt;</description>
    <pubDate>Tue, 09 Feb 2010 06:43:18 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/31</guid>
  </item>


  <item>
    <title>BlackBerry has spyware risk too, researcher says</title>
    <link>http://seclists.org/isn/2010/Feb/30</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 07&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://news.cnet.com/8301-27080_3-10448545-245.html&quot;&gt;http://news.cnet.com/8301-27080_3-10448545-245.html&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
By Elinor Mills&lt;br&gt;
InSecurity Complex &lt;br&gt;
CNET News&lt;br&gt;
February 7, 2010&lt;br&gt;
&lt;br&gt;
We've heard a lot about security issues with the iPhone, but the &lt;br&gt;
BlackBerry isn't immune to threats from malicious apps.&lt;br&gt;
&lt;br&gt;
Tyler Shields, a senior researcher at the Veracode Research Lab, has &lt;br&gt;
written a piece of spyware that allowed me to shoot an SMS command to &lt;br&gt;
his phone and have his contact list forwarded to my e-mail address in...&lt;br&gt;</description>
    <pubDate>Mon, 08 Feb 2010 06:46:23 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/30</guid>
  </item>
  <item>
    <title>IDF considers using BlackBerry</title>
    <link>http://seclists.org/isn/2010/Feb/29</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 07&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.jpost.com/Israel/Article.aspx?id=167988&quot;&gt;http://www.jpost.com/Israel/Article.aspx?id=167988&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
By Yaakov Katz&lt;br&gt;
The Jerusalem Post&lt;br&gt;
07/02/2010&lt;br&gt;
&lt;br&gt;
When Barack Obama was elected president of the United States, he was &lt;br&gt;
told he could no longer use his personal BlackBerry to receive e-mails, &lt;br&gt;
as it is not secure. Shortly after he took office, though, press reports &lt;br&gt;
emerged that one of America’s government agencies had succeeded in &lt;br&gt;
creating an encrypted BlackBerry specially designed for Obama....&lt;br&gt;</description>
    <pubDate>Mon, 08 Feb 2010 06:44:53 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/29</guid>
  </item>
  <item>
    <title>Why CSOs Should Care About ShmooCon</title>
    <link>http://seclists.org/isn/2010/Feb/28</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 07&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.csoonline.com/article/533363/Why_CSOs_Should_Care_About_ShmooCon_&quot;&gt;http://www.csoonline.com/article/533363/Why_CSOs_Should_Care_About_ShmooCon_&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
By Bill Brenner&lt;br&gt;
Senior Editor&lt;br&gt;
CSO&lt;br&gt;
February 07, 2010 &lt;br&gt;
&lt;br&gt;
WASHINGTON, D.C. -- Many CSOs view ShmooCon as an event of small &lt;br&gt;
importance. You don't see the suits and ties that are on display at RSA. &lt;br&gt;
In fact, to those who haven't attended, this conference is just a place &lt;br&gt;
where twenty-something hackers come to get drunk and throw TVs out hotel &lt;br&gt;
windows. Another crazy Black...&lt;br&gt;</description>
    <pubDate>Mon, 08 Feb 2010 06:43:24 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/28</guid>
  </item>
  <item>
    <title>Biggest hacker training site shut down</title>
    <link>http://seclists.org/isn/2010/Feb/27</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 07&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.chinadaily.com.cn/china/2010-02/08/content_9440667.htm&quot;&gt;http://www.chinadaily.com.cn/china/2010-02/08/content_9440667.htm&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
By Wu Yiyao &lt;br&gt;
China Daily&lt;br&gt;
2010-02-08&lt;br&gt;
&lt;br&gt;
What is believed to be the country's biggest hacker training site has &lt;br&gt;
been shut down by police in Central China's Hubei province.&lt;br&gt;
&lt;br&gt;
Three people were also arrested, local media reported yesterday.&lt;br&gt;
&lt;br&gt;
The three, who ran Black Hawk Safety Net, are suspected of offering &lt;br&gt;
others online attacking programs and software, a crime recently added to &lt;br&gt;
the...&lt;br&gt;</description>
    <pubDate>Mon, 08 Feb 2010 06:41:52 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/27</guid>
  </item>
  <item>
    <title>CSIIRW Sixth Cyber Security and Information Intelligence Research Workshop</title>
    <link>http://seclists.org/isn/2010/Feb/26</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 07&lt;/p&gt;Forwarded from: Frederick Sheldon &amp;lt;sheldonft (at) ornl.gov&amp;gt;&lt;br&gt;
&lt;br&gt;
CALL FOR ABSTRACTS*&lt;br&gt;
&lt;br&gt;
CSIIRW-10&lt;br&gt;
&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.csiir.ornl.gov/csiirw&quot;&gt;http://www.csiir.ornl.gov/csiirw&lt;/a&gt;&lt;br&gt;
 &lt;br&gt;
April 21-23, 2010&lt;br&gt;
 &lt;br&gt;
Sixth Cyber Security and Information Intelligence Research Workshop &lt;br&gt;
Oak Ridge National Laboratory&lt;br&gt;
CSIIRW-09 Proceedings&lt;br&gt;
&lt;br&gt;
*My Apology for multiple postings;&lt;br&gt;
I've endeavored to not duplicate recipient addresses &lt;br&gt;</description>
    <pubDate>Mon, 08 Feb 2010 06:40:01 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/26</guid>
  </item>
  <item>
    <title>GAO Report: NASA Still Facing Weaknesses In IT Security</title>
    <link>http://seclists.org/isn/2010/Feb/25</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 07&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.darkreading.com/vulnerability_management/security/management/showArticle.jhtml?articleID=222700163&quot;&gt;http://www.darkreading.com/vulnerability_management/security/management/showArticle.jhtml?articleID=222700163&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
By Tim Wilson&lt;br&gt;
DarkReading&lt;br&gt;
Feb 05, 2010&lt;br&gt;
&lt;br&gt;
NASA made history earlier this week by releasing up-close pictures of &lt;br&gt;
Pluto. Here on Earth, however, it's the space agency's IT systems and &lt;br&gt;
security practices that need a closer look.&lt;br&gt;
&lt;br&gt;
That's the conclusion of testimony (PDF) [1] offered to the U.S. House &lt;br&gt;
of Representatives Wednesday by Cristina...&lt;br&gt;</description>
    <pubDate>Mon, 08 Feb 2010 06:38:24 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/25</guid>
  </item>
  <item>
    <title>Secunia Weekly Summary - Issue: 2010-05</title>
    <link>http://seclists.org/isn/2010/Feb/24</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 07&lt;/p&gt;========================================================================&lt;br&gt;
&lt;br&gt;
                  The Secunia Weekly Advisory Summary                  &lt;br&gt;
                        2010-01-28 - 2010-02-04                        &lt;br&gt;
&lt;br&gt;
                       This week: 60 advisories                        &lt;br&gt;
&lt;br&gt;
========================================================================&lt;br&gt;
Table of Contents:&lt;br&gt;
&lt;br&gt;
1.....................................................Word From...&lt;br&gt;</description>
    <pubDate>Mon, 08 Feb 2010 06:36:42 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/24</guid>
  </item>
  <item>
    <title>Fugitive VoIP hacker admits 10 million minute spree</title>
    <link>http://seclists.org/isn/2010/Feb/23</link>
    <description>&lt;p&gt;Posted by InfoSec News on Feb 07&lt;/p&gt;&lt;a  rel=&quot;nofollow&quot; href=&quot;http://www.theregister.co.uk/2010/02/03/voip_hacker_guilty/&quot;&gt;http://www.theregister.co.uk/2010/02/03/voip_hacker_guilty/&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
By Dan Goodin in San Francisco&lt;br&gt;
The Register&lt;br&gt;
3rd February 2010&lt;br&gt;
&lt;br&gt;
A Miami hacker has admitted he pocketed more than $1m by selling &lt;br&gt;
millions of minutes of voice over IP calls and surreptitiously routing &lt;br&gt;
them through the networks of telecommunications companies.&lt;br&gt;
&lt;br&gt;
Edwin Andrew Pena pleaded guilty to two felonies in connection with the &lt;br&gt;
hacking spree, which spanned the years 2004 through...&lt;br&gt;</description>
    <pubDate>Mon, 08 Feb 2010 06:34:48 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/isn/2010/Feb/23</guid>
  </item>

 

<!-- MHonArc v2.6.16 -->
  </channel>
</rss>
