ISPs accused of tampering with web pages

Wednesday, April 16th, 2008

About one percent of the Internet web pages are being changed in transit, sometimes in a harmful way, according to researchers at the University of Washington. In a paper, set to be delivered Wednesday, the researchers document some troubling practices. In July and August they tested data sent to about 50,000 ...

Why Small and Medium Enterprises don’t use 802.1x

Wednesday, April 16th, 2008

With JJ blogging about 802.1x, I thought it would be timely to talk about why I think small and medium sized enterprises (SMEs) do not and probably never will deploy 802.1x for wired networks. I make a point of meeting with customers whenever I can. Amongst the small and medium ...

Researchers uncover undetectable chip hack

Wednesday, April 16th, 2008

For years, hackers have focused on finding bugs in computer software that give them unauthorised access to computer systems, but now there's another way to break in: hack the microprocessor. Researchers at the University of Illinois at Urbana-Champaign demonstrated how they altered a computer chip to grant attackers back-door access to ...

PayPal Outlines Strategy to Slow Phishing

Tuesday, April 15th, 2008

Over the last few years, security researchers have estimated that fake messages from PayPal and its parent company, eBay, make up more than half of all the spam sent over the Internet. So why, you may ask, isn't PayPal doing something about it? Last week at the RSA 2008 conference ...

Quarterly VoIP Vulnerabilities

Tuesday, April 15th, 2008

While most VoIP-related vulnerabilities are posted to the VOIPSA mailing list or blog, I thought it might be useful to have a informal quarterly summary of sorts among VoIP devices per searches from NIST.  I hope folks find it helpful, and of course post comments if I’ve overlooked anything from ...