Twitter users warned of new phishing scam

Thursday, May 21st, 2009

Security experts are warning Twitter users of a new phishing scam that could lead to their accounts being compromised. The typo-squatting site, which was discovered by Rik Ferguson, senior security advisor at Trend Micro, has been set up by phishers to look like Twitter, although the URL uses only two 't's ...

Enterprise Wi-Fi Gets a Security Boost

Tuesday, May 19th, 2009

The Wi-Fi Alliance has expanded its WPA2 certification program to include a tool for secure handoffs between Wi-Fi and 3G networks, as well as an authentication system that uses multiple secured tunnels. WPA2 (Wi-Fi Protected Access 2) is the most advanced security standard for Wi-Fi. The WPA2 certification program already included ...

Gumblar Malware Exploit Circulating

Monday, May 18th, 2009

US-CERT is aware of public reports of a malware exploit circulating. This is a drive-by-download exploit with multiple stages and is being referred to as Gumblar. The first stage of this exploit attempts to compromise legitimate websites by injecting malicious code into them. Reports indicate that these website infections occur ...

SSH flaw could still cause problems

Monday, May 18th, 2009

A highly dangerous SSH flaw discovered a few months ago could still cause your organisation headaches, according to security experts. The vulnerability was first made public when it emerged last November that researchers at Royal Holloway's Information Security Group had found the flaw, which could allow hackers access to sensntive data. SSH, ...

Samurai Web Testing Framework 0.6 Released

Monday, May 18th, 2009

The Samurai Web Testing Framework is a live linux environment that has been pre-configured to function as a web pen-testing environment. The CD contains the best of the open source and free tools that focus on testing and attacking websites. In developing this environment, we have based our tool selection ...