HackersforCharity.org’s Johnny Long Interviewed at ShmooCon 2012
February 1, 2012 – 1:51 PM | No Comment

We had the opportunity to interview Johnny Long of HackersforCharity.org on the final day of ShmooCon 2012.

Hackers for Charity is a non-profit organization that leverages the skills of technologists. They solve technology challenges for various non-profits and provide food, equipment, job training and computer education to the world’s poorest citizens.

Share
Read the full story »
General Security

Information about general information security issues.

Mac OS X

Information about Mac/Apple related security issues

Privacy

Information about items pertaining to information privacy

Windows Security

Information about items pertaining to Windows Security

Mobile Security

Information about items pertaining to mobile security

Home » Archive by Category

Articles in Featured

Attacking Proximity Card Access Systems by Brad Antoniewicz at ShmooCon 2012
February 2, 2012 – 3:51 PM | One Comment
Attacking Proximity Card Access Systems by Brad Antoniewicz at ShmooCon 2012

From the card to the backend database, proximity card access systems contain a variety of components, all which are vulnerable to attack but have been rarely targeted. This demo-driven presentation explores and attacks each of the various components (RFID tags, controllers, and backend systems) of a popular deployment configuration.

Share
School Bullying Outbreak
February 2, 2012 – 11:54 AM | No Comment
School Bullying Outbreak

To create bully-free classrooms, it’s necessary that we educate teachers, students and parents about the prevalence and consequences of it. We all believe a school should be a safe place for the children, a place where they can learn without fear or apprehension.

Share
Dave Porcello, CEO and Technical Lead of Pwnie Express Talks about the Pwn Plug at ShmooCon 2012
February 1, 2012 – 3:21 PM | No Comment
Dave Porcello, CEO and Technical Lead of Pwnie Express Talks about the Pwn Plug at ShmooCon 2012

Pwnie Express delivers the bleeding-edge cyber security platforms and solutions required to meet this challenge.

Our initial hardware offering, the Pwn Plug, is the first-to-market commercial penetration testing drop box platform. This low-cost plug-and-play device is designed for remote security testing of corporate facilities, including branch offices and retail locations. A security professional or service provider can ship this device to a corporate facility and conduct a security test over the Internet without travel expenses. The Pwn Plug includes a full security auditing software suite and provides covert remote access over Ethernet, wireless, and 3G/GSM cell networks. In the mobile space, Pwnie Express has also developed the most comprehensive commercial security suite for the Nokia N900 mobile platform.

Share
New Variant of Zeus Malware Titled “GameOver” Sent via Phishing Scam
January 24, 2012 – 4:47 PM | No Comment
New Variant of Zeus Malware Titled “GameOver” Sent via Phishing Scam

The FBI has issued a warning about the latest identify theft/bank swindling malware, called “Gameover”. The “Gameover” scam is initiated through a phishing scheme that sends fictitious e-mails to a bunch of users from the National Automated Clearing House Association (NACHA), the Federal Reserve Bank, or the Federal Deposit Insurance Corporation (FDIC). After opening the email and selecting the hyperlink, the user is forwarded to a phony website that automatically installs the Trojan without their knowledge or assistance, then eventual access to the victim’s bank account becomes accessible to the scammer.

Share
Wipe Your Tech Devices Before Giving Them Away….
December 14, 2011 – 6:02 PM | No Comment
Wipe Your Tech Devices Before Giving Them Away….

As the holiday season steadily approaches, many individuals are planning to upgrade their current technology devices with the latest and greatest on the market. For example, individuals who currently possess an older iPhone such as the 3gs or iPhone 4 are eyeing the new iPhone 4s with the Siri feature. While android-based users have a tons of options to be excited about with the resent releases of the Nexus, RAZR and Galaxy smart phones totting the new Android 4.0 operating system titled Ice Cream sandwich. Then you have to take into consideration other tech gadgets and devices such as tablets, e-readers, netbooks, laptops and computers.

Share
Avoiding Phishing
December 14, 2011 – 2:32 PM | No Comment
Avoiding Phishing

Phishing is defined as the practice of using fraudulent e-mails and fake duplications of legitimate websites to extract financial data from computer users for purposes of identity theft.

Share
Enterprise Log Management: An Overview (Part 2) – – FOSE
August 8, 2011 – 7:21 PM | No Comment
Enterprise Log Management: An Overview (Part 2) – – FOSE

In part 1 of my guest post series for the FOSE Insights Blog, I talked about the importance of enterprise log management and the questions one should ask before implementing a log management solution. In this post, I’ll be covering the different types of log management solutions to help you determine the best one for [...]

Share
Enterprise Log Management: An Overview (Part 1) – - FOSE
August 7, 2011 – 12:50 PM | No Comment
Enterprise Log Management: An Overview (Part 1) – - FOSE

Log management is the collection of self-generated data from IT hardware devices and software applications. The collection of this data can contain useful information about business processes such as the number of errors on a website or even a security issue that displays the number of failed attempts to access a perimeter router.

Share
Information Privacy Issues with People Search Websites: What can you do to protect yourself?
February 3, 2011 – 12:55 PM | No Comment
Information Privacy Issues with People Search Websites: What can you do to protect yourself?

At one time, when you wanted to know something about someone you would use a search engine like Google or Yahoo, but that is not the case anymore. There are hundreds of websites with your personal information listed that will provide your information to someone for a fee and some even for free. Many people always ask, “How did my information get on this site?”, and I often state, “You put it there.” Maybe not directly, but through various online activities such as Facebook and Twitter updates as well as signing up to purchase items online. All of that information is eventually collected and stored in some company’s database.

Share
Cyber-Bullying Overview and Information
February 1, 2011 – 12:31 PM | No Comment
Cyber-Bullying Overview and Information

Cyber-bullying uses the new forms of digital communication technologies to repeatedly harass others. A cyber-bully is someone who uses technology to harass, embarrass, intimidate, or stalk someone else.

The methods used can include emails, instant messaging, text-messages, digital photos and all other means of electronic communications.

Share