Emerging Threats

Encryption protecting most mobile phones cracked

January 04, 2010

Computer security researchers say they have cracked the encryption algorithm used to protect most cell phone communications, potentially allowing attackers to listen in on the calls of billions of individuals.
 

"Nine-Ball" mass injection attack compromised 40,000 sites

June 18, 2009

A new threat dubbed "Nine-Ball" has compromised up to 40,000 legitimate websites, which are, in turn, infecting users with an information-stealing Trojan, according to security vendor Websense.
 

New Sality variant contains moneymaking twist

Angela Moscaritolo February 23, 2009

Users should be cautious of a new virus variant that leverages the old technique of file infection with the modern-day desire for financial gain, security researchers have warned.
 

New Symbian mobile malware in the wild

Angela Moscaritolo February 23, 2009

A new worm targeting mobile devices running Nokia's Symbian OS is spreading in China in a unique way: through malicious links contained in text messages.
 

2008: A year of cybercriminal innovation

Angela Moscaritolo December 05, 2008

With the emergence of new attack techniques and the reinvention of old ones, 2008 has been a year of cybercriminal innovation.
 

X-Force at mid-year: Cybercriminals get faster

July 31, 2008

Cybercriminals are adopting new automation techniques and improving on strategies that enable them to exploit vulnerabilities rapidly, a new study reveals.
 

Multiple vendors cooperate to issue DNS design flaw fix

July 09, 2008

A massive domain name server (DNS) design vulnerability that could permit cache poisoning - effectively allowing an attacker to direct users to the website of his choosing - is set to be fixed by an unprecedented synchronized series of multivendor patches.
 

Steganography harnesses VoIP networks

Wojciech Mazurczyk and Krzysztof Szczypiorski July 04, 2008

Steganography is an established technique to hide secret data inside normal data transmissions, but new techniques are being developed to hide packets inside routine VoIP traffic, and escape detection
 

Steganography developers turn their attention to hiding information in VoIP

July 04, 2008

The abundance of voice over IP equipment has led researchers to develop a range of techniques which, instead of hiding information in standard data traffic, will allow individuals to instead hide information in VoIP streams
 

Data watchdog admits to deluge of Central Government breach info

July 03, 2008

The Information Commmissioner's Office has revealed it has been voluntarily informed of a huge number of security breaches - mostly in Westminster - while it eyes up plans for a new law which could make the reporting of such incidents compulsory
 

PCI standard widened to include unattended point-of-sale terminals

July 02, 2008

Terminals such as those found in vending machines and on fuel pumps are to be included in additional guidelines to be written by the PCI Security Standards Council, producing extra demands on retailers
 

US Army set to hire internet spies

July 02, 2008

The American military is to increase its intelligence on the internet by hiring a contractor to analyse web pages, chatrooms and blogs on pertinent threats 24 hours a day
 

Europe just "weeks" away from data sharing deal with FBI

July 01, 2008

Brussels insiders have confirmed that the European Commission is nearing the conclusion of talks with the Americans over the provision of citizens' personal information to the FBI for terrorism fighting purposes
 

Microsoft presses deeper into security space

June 30, 2008

The software giant is spearheading its second global security initiative in a week, this time aiming to co-ordinate security response systems with other vendors
 

Case study: Deep inside the Serious Fraud Office's digital forensics unit

June 26, 2008

The SFO invited SC Magazine for a sneak preview of its recently revamped digital forensics unit, where scientists were hard at work dissecting and interrogating the latest mobile devices
 

Oyster card hackers may have their research blocked

June 26, 2008

Two Dutch academics who came to London last week to prove they could break the cipher behind London's Oyster travel card have been warned by the country's Government not to expose any secrets in their upcoming paper on the subject
 

Pacific island knocked off internet by DDoS attack

June 26, 2008

The Marshall Islands have been subjected to a prolonged bout of unexpected email traffic, preventing citizens receiving emails, but the reason for the attack remains unclear
 

Vulnerability in Adobe Acrobat leads to public exploit

June 25, 2008

Adobe has updated its Reader and Acrobat products to shore up a major vulnerability that is already being exploited in the wild
 

ESET launches anti-malware for Windows Mobile

June 20, 2008

The security company has released a free beta version of a software product which aims to prevent malware from infecting Windows Mobile devices
 

Trend Micro takes security into the cloud

June 19, 2008

The software vendor has unveiled its new approach to internet security, which means transferring the workload off individual PCs and into the internet
 

Coffee drinkers in peril after espresso overspill attack

June 19, 2008

A geeky risk advisory manager from global accountancy firm BDO has hacked into a leading coffee machine, causing it to pour scalding water onto unsuspecting espresso lovers
 

Stolen data found on international crimeservers

June 19, 2008

Two crimeservers containing half a gigabyte of stolen data have been discovered in Argentina and Malaysia; the data was likely being made available to the highest bidder
 

Interview: Louise Bennett

June 17, 2008

As the chair of the security forum at the British Computer Society, Dr Louise Bennett has an excellent bird's eye view of what's going wrong with the nation's security, as she tells SC Magazine
 

Symantec pledges support to under-fire malware tests

June 16, 2008

The security vendor says it's "absolutely" committed to the VB100 anti-malware tests, following Trend Micro's announcement of a boycott earlier this month
 

Ministry of Defence to bolster internet intelligence

June 13, 2008

The MoD is increasing its focus on online intelligence gathering - partly by using information from newspapers and blogs - and admits it needs to start exploiting data held in networks owned by other countries
 

Securing businesses is "extremely challenging", claim UK bosses

June 10, 2008

British businesses are finding that protecting their organisations from hackers, social networking threats and browser vulnerabilities is an increasing struggle, according to research
 

Motorola RAZR found vulnerable to JPEG attack

May 29, 2008

Hackers could run malicious code on the RAZR device by sending a corrupt image by MMS, according to an advisory from TippingPoint
 

ENISA warns Europe to step up to prevent 'digital 9/11'

May 29, 2008

The European Commission's security advisor says that imbalances between member states must be ironed out and the reporting of security breaches must become mandatory in order to tackle the threat of cyberattacks
 

Brute-force SSH attacks surge

May 16, 2008

An incident handler from SANS' Internet Storm Center has warned businesses to ensure their servers are secure as SSH attacks rose five-fold early this week
 

EU Commission says payment fraud moving to the internet

April 30, 2008

In spite of efforts to halt electronic fraud, the internet has remained a dangerous place to do business, according to a report from the European Commission. It reported ten million fraudulent transactions that cost European Union merchants a cumulative 1.5 billion Euros (£1.1 billion) in losses each year.
 

SC Featured Webcast

Employee file sharing: the good, the bad and the ugly

Streaming live on 4th June 2013 at 3pm GMT

In a recent SC survey of information security professionals 99 per cent of those asked said it was 'important' that their organisation has secure file sharing, but 50 per cent said they had 'no real visibility' of how data is being sent within and outside the company. Tune in live to hear our experts discuss these and the other quite surprising results. To secure your free place, please click here.

SC Webcasts

Security beyond the (fire)wall

Streaming live on 6th June at 3pm BST

This webcast addresses the technological challenges of maintaining full control of your most sensitive information - even once it goes beyond the firewall - while maintaining the freedom and flexibility necessary to allow your staff and other stakeholders to work as efficiently as possible. Tune in for free to hear from our regular and popular guest speaker, Bola Rotibi from (ISC)2 application security advisory board. To secure your place, please click here.


2013's invisible network threats: Identify and respond

Streaming live on 11th June at 3pm BST

In a recent SC survey, when asked 'Do you think your current network is secure?' 43 per cent of IS professionals said they were not sure. Technology developments such as multi-point cloud solutions, consumerisation, BYOD uptake and even Windows 8 are a major headache in network security for IT leaders. So what can be done? SC's latest webcast shares practical advice from leading industry experts with examples of proven results in overcoming invisible threats. To secure your free place, please click here.

SC Whitepapers

DDoS and downtime: Considerations for risk management

The purpose of this paper is to start a conversation about the often overlooked risk of downtime caused by DDoS attacks and to provide sufficient content for risk managers to account for the DDoS threat as they evaluate risks to their day-to-day operations and long-term mission. To read the paper in full, please download it for free here.


Ponemon 2012 Global Encryption Trends Study

In Ponemon's recent Global Encryption Study, the organisation surveyed 4,205 information security professionals across seven countries to examine how encryption has evolved over the last eight years. The study focused on data protection priorities, budgeted expenditures for encryption and the types of encryption technologies involved, with the findings revealing some interesting insight into the relationship between encryption and its impact on the security position of organisations. To read the full report for free, please download it here.


Advanced spear phishing: The rise of industrial phishing attacks

With phishing still the most common form of attack, hackers are now engaging in industrial-scale phishing attacks that leverage sophisticated customisation and delivery techniques. Borrowing tactics from cloud computing and database marketing, this study looks at longline phishing - an advanced form of spear phishing, which has higher clickthrough and penetration rates than traditional attacks, potentially causing a higher risk to IT security departments across the world. To read the study for free, please click here.


SC Survey

Data on the move - How do you share your information?

Securing confidential information sent electronically can be a huge headache. With remote working on a sharp upward curve as cloud platforms and mobile devices rewrite the way in which people do business; do you know what's happening to your data amidst all this commotion? Take part now to be in with a chance of winning the latest Microsoft Surface Tablet, plus the full list of the survey responses.

Home | News | Products | Whitepapers | Jobs | Subscribe | Contact Us | About Us | Advertising | Sitemap | Editorial | Subscribe to our RSS feeds RSS

This material may not be published, broadcast, rewritten or redistributed in any form without prior authorization.

Your use of this website constitutes acceptance of Haymarket Media's Privacy Policy and Terms & Conditions