<?phpxml version="1.0" encoding="utf-8"?>
<rss version="2.0" 
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
>
<channel>
<title>Best of Security / Published News / news</title>
<link>http://bestofsecurity.net</link>
<description>Best of Security Portal  votes</description>
<pubDate>Fri, 29 Aug 2008 13:00:19 PDT</pubDate>
<language>en</language>
<item>
<title><![CDATA[Comcast sets monthly bandwidth limit for customers]]></title>
<link>http://bestofsecurity.net/news/Comcast_sets_monthly_bandwidth_limit_for_customers/</link>
<comments>http://bestofsecurity.net/news/Comcast_sets_monthly_bandwidth_limit_for_customers/</comments>
<pubDate>Fri, 29 Aug 2008 13:00:19 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Comcast_sets_monthly_bandwidth_limit_for_customers/</guid>
<description><![CDATA[Comcast, the largest provider of cable-based broadband service in the U.S., will limit residential customers to 250GB of bandwidth a month beginning Oct. 1, the company announced late Thursday.<br/><br/>166 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Cloned US ATM cards: Can they fool Brit self-service checkouts?]]></title>
<link>http://bestofsecurity.net/news/Cloned_US_ATM_cards_Can_they_fool_Brit_self-service_checkouts/</link>
<comments>http://bestofsecurity.net/news/Cloned_US_ATM_cards_Can_they_fool_Brit_self-service_checkouts/</comments>
<pubDate>Fri, 29 Aug 2008 09:00:08 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Cloned_US_ATM_cards_Can_they_fool_Brit_self-service_checkouts/</guid>
<description><![CDATA[Carder crooks say they canCybercrooks are targeting self-service checkout systems in UK supermarkets to cash-out compromised US credit and debit card accounts.…<br/><br/>112 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Secunia Weekly Summary - Issue: 2008-35]]></title>
<link>http://bestofsecurity.net/news/ISN_Secunia_Weekly_Summary_-_Issue_2008-35/</link>
<comments>http://bestofsecurity.net/news/ISN_Secunia_Weekly_Summary_-_Issue_2008-35/</comments>
<pubDate>Fri, 29 Aug 2008 07:00:48 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Secunia_Weekly_Summary_-_Issue_2008-35/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Fri, 29 Aug 2008 05:07:57 -0500 (CDT)========================================================================                  The Secunia Weekly Advisory Summary                                          2008-08-21 - 2008-08-28                                               This week: 77 advisories                        ========================================================================Table of Contents:1................................................<br/><br/>130 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] British hacker Gary McKinnon in final appeal to Home Secretary over extradition]]></title>
<link>http://bestofsecurity.net/news/ISN_British_hacker_Gary_McKinnon_in_final_appeal_to_Home_Secretary_over_extradition/</link>
<comments>http://bestofsecurity.net/news/ISN_British_hacker_Gary_McKinnon_in_final_appeal_to_Home_Secretary_over_extradition/</comments>
<pubDate>Fri, 29 Aug 2008 07:00:33 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_British_hacker_Gary_McKinnon_in_final_appeal_to_Home_Secretary_over_extradition/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Fri, 29 Aug 2008 05:07:41 -0500 (CDT)http://business.timesonline.co.uk/tol/business/law/article4628575.eceBy David BrownThe TimesAugust 29, 2008A UFO enthusiast who hacked into top-secret US military computers appealed to the Home Secretary yesterday to stop his extradition after losing a legal appeal.Gary McKinnon is due to be extradited to the United States within two weeks and could face a sentence of up to 80 years in a maximum-security prison if found <br/><br/>114 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Common usernames get more spam]]></title>
<link>http://bestofsecurity.net/news/Common_usernames_get_more_spam/</link>
<comments>http://bestofsecurity.net/news/Common_usernames_get_more_spam/</comments>
<pubDate>Fri, 29 Aug 2008 07:00:10 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Common_usernames_get_more_spam/</guid>
<description><![CDATA[Time to evolve, aardvarksThe use by spammers of dictionary attacks means those whose email address begins with a less common first character are liable to get less spam.…<br/><br/>147 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Cross-site hacks and the art of self defence]]></title>
<link>http://bestofsecurity.net/news/Cross-site_hacks_and_the_art_of_self_defence/</link>
<comments>http://bestofsecurity.net/news/Cross-site_hacks_and_the_art_of_self_defence/</comments>
<pubDate>Fri, 29 Aug 2008 07:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Cross-site_hacks_and_the_art_of_self_defence/</guid>
<description><![CDATA[The new browser warsHackers can force your browser to send requests to any site they want. It's not even hard - all they have to do is get you to view an email or a web page.…<br/><br/>89 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Fog of attack clouds Best Western hack]]></title>
<link>http://bestofsecurity.net/news/Fog_of_attack_clouds_Best_Western_hack/</link>
<comments>http://bestofsecurity.net/news/Fog_of_attack_clouds_Best_Western_hack/</comments>
<pubDate>Fri, 29 Aug 2008 05:00:06 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Fog_of_attack_clouds_Best_Western_hack/</guid>
<description><![CDATA[Are you local? Really?Analysis Conflicting claims by Best Western and Glasgow's Sunday Herald over the scope of a recent security breach have been put under the microscope by security watchers. The paper claims that eight million records were potentially exposed, while the hotel insists only ten records were accessed.…<br/><br/>151 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Apple promises September fix for iPhone security flaw]]></title>
<link>http://bestofsecurity.net/news/Apple_promises_September_fix_for_iPhone_security_flaw/</link>
<comments>http://bestofsecurity.net/news/Apple_promises_September_fix_for_iPhone_security_flaw/</comments>
<pubDate>Thu, 28 Aug 2008 21:00:08 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Apple_promises_September_fix_for_iPhone_security_flaw/</guid>
<description><![CDATA[A recently discovered security flaw that would allow access to a locked iPhone will be fixed next month, Apple said on Thursday.<br/><br/>123 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Accused British Hacker Gary McKinnon Loses Appeal to Block Extradition]]></title>
<link>http://bestofsecurity.net/news/Accused_British_Hacker_Gary_McKinnon_Loses_Appeal_to_Block_Extradition/</link>
<comments>http://bestofsecurity.net/news/Accused_British_Hacker_Gary_McKinnon_Loses_Appeal_to_Block_Extradition/</comments>
<pubDate>Thu, 28 Aug 2008 19:00:39 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Accused_British_Hacker_Gary_McKinnon_Loses_Appeal_to_Block_Extradition/</guid>
<description><![CDATA[A British man accused of hacking into U.S. military computers lost a major court battle today and could be extradited to the United States within weeks. Gary McKinnon is alleged to have illegally accessed computers belonging to the Pentagon, NASA and the U.S. Army and Navy in 2001 and 2002. McKinnon lost his appeal today to the European Court of Human Rights to block his extradition.   -  A British man accused by the United States of  quot;the biggest military hack of all time quot; lost an appeal on Thurs<br/><br/>74 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[iPhone Security Flaw Exposes Private Data]]></title>
<link>http://bestofsecurity.net/news/iPhone_Security_Flaw_Exposes_Private_Data/</link>
<comments>http://bestofsecurity.net/news/iPhone_Security_Flaw_Exposes_Private_Data/</comments>
<pubDate>Thu, 28 Aug 2008 19:00:24 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/iPhone_Security_Flaw_Exposes_Private_Data/</guid>
<description><![CDATA[A security flaw in the Apple iPhone allows unauthorized users to gain easy access to private contacts and e-mails even when the device is locked, but the company said a fix is on the way. Popular technology blog Gizmodo and an online forum run by the Mac Rumors site showed that it took only three taps to gain access to locked iPhones, which run the latest 2.02 Apple iPhone software. A spokeswoman said in an e-mail that Apple was aware of the problem and was readying a software update to fix it. In the mean<br/><br/>103 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Internet Explorer 8 Beta 2 Privacy Features Win User Support]]></title>
<link>http://bestofsecurity.net/news/Internet_Explorer_8_Beta_2_Privacy_Features_Win_User_Support/</link>
<comments>http://bestofsecurity.net/news/Internet_Explorer_8_Beta_2_Privacy_Features_Win_User_Support/</comments>
<pubDate>Thu, 28 Aug 2008 19:00:14 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Internet_Explorer_8_Beta_2_Privacy_Features_Win_User_Support/</guid>
<description><![CDATA[Microsoft Internet Explorer 8 Beta 2 includes a number of security and privacy features that allow it to keep pace with competing browsers such as Firefox and Safari. Many users of Internet Explorer seem to appreciate Microsoft's privacy protections, which are designed to protect users' browsing information. The most talked-about features are InPrivate Browsing and InPrivate Blocking.   -  Much has been made of the new security features in MicrosoftInternet Explorer 8 Beta 2. As users and testers bang on t<br/><br/>194 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Nortel uses USB drive to secure remote work]]></title>
<link>http://bestofsecurity.net/news/Nortel_uses_USB_drive_to_secure_remote_work/</link>
<comments>http://bestofsecurity.net/news/Nortel_uses_USB_drive_to_secure_remote_work/</comments>
<pubDate>Thu, 28 Aug 2008 13:00:16 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Nortel_uses_USB_drive_to_secure_remote_work/</guid>
<description><![CDATA[Nortel hopes to tackle the security of remote work with an &amp;quot;office on a stick,&amp;quot; a USB drive that can link an employee&amp;#39;s PC with a corporate VPN and keep all the information from a session encrypted.<br/><br/>177 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[European court won't stop U.K. hacker's extradition to U.S.]]></title>
<link>http://bestofsecurity.net/news/European_court_wont_stop_U-K-_hackers_extradition_to_U-S-/</link>
<comments>http://bestofsecurity.net/news/European_court_wont_stop_U-K-_hackers_extradition_to_U-S-/</comments>
<pubDate>Thu, 28 Aug 2008 13:00:14 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/European_court_wont_stop_U-K-_hackers_extradition_to_U-S-/</guid>
<description><![CDATA[The European Court of Human Rights has refused U.K. hacker Gary McKinnon&amp;#39;s appeal against demands for his extradition to the U.S.<br/><br/>98 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[McAfee SiteAdvisor sued over 'spyware' tag]]></title>
<link>http://bestofsecurity.net/news/McAfee_SiteAdvisor_sued_over_spyware_tag/</link>
<comments>http://bestofsecurity.net/news/McAfee_SiteAdvisor_sued_over_spyware_tag/</comments>
<pubDate>Thu, 28 Aug 2008 13:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/McAfee_SiteAdvisor_sued_over_spyware_tag/</guid>
<description><![CDATA[If 7Search wins, you loseIn a case that could tie the hands of companies trying to protect their customers from internet threats, a website owner with past ties to a notorious piece of spyware has filed a lawsuit claiming it is being unfairly maligned by warnings from McAfee that the site poses a risk to its customers.…<br/><br/>143 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Taiwan busts hacking ring]]></title>
<link>http://bestofsecurity.net/news/ISN_Taiwan_busts_hacking_ring/</link>
<comments>http://bestofsecurity.net/news/ISN_Taiwan_busts_hacking_ring/</comments>
<pubDate>Thu, 28 Aug 2008 07:00:57 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Taiwan_busts_hacking_ring/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Thu, 28 Aug 2008 00:33:55 -0500 (CDT)http://www.theinquirer.net/gb/inquirer/news/2008/08/27/taiwan-busts-hacking-ringBy Egan OrionThe Inquirer27 August 2008INSPECTOR KNACKER of the Taiwan yard has swooped down on a ring of cyber-thiefs who had been targeting government and corporate data stores.The six individuals arrested allegedly had attacked various government agencies, state-run companies, telecom corporations and a television shopping network.Investig<br/><br/>65 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Security hole opens up password protected iPhones]]></title>
<link>http://bestofsecurity.net/news/ISN_Security_hole_opens_up_password_protected_iPhones/</link>
<comments>http://bestofsecurity.net/news/ISN_Security_hole_opens_up_password_protected_iPhones/</comments>
<pubDate>Thu, 28 Aug 2008 07:00:52 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Security_hole_opens_up_password_protected_iPhones/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Thu, 28 Aug 2008 00:34:06 -0500 (CDT)http://news.cnet.com/8301-1009_3-10027479-83.htmlBy Elinor MillsSecurityCNET NewsAugust 27, 2008A serious security hole in the latest iPhone software exposes e-mail, text, and voice messages to whoever gets a hold of the device despite it being password-protected.Basically, clicking emergency call and double-clicking the &amp;quot;home&amp;quot; button brings up the favorites on iPhone 2.0.2, which opens up the address book, the<br/><br/>133 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Revealed: The Internet's Biggest Security Hole]]></title>
<link>http://bestofsecurity.net/news/ISN_Revealed_The_Internets_Biggest_Security_Hole/</link>
<comments>http://bestofsecurity.net/news/ISN_Revealed_The_Internets_Biggest_Security_Hole/</comments>
<pubDate>Thu, 28 Aug 2008 07:00:47 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Revealed_The_Internets_Biggest_Security_Hole/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Thu, 28 Aug 2008 00:34:28 -0500 (CDT)http://blog.wired.com/27bstroke6/2008/08/revealed-the-in.htmlBy Kim Zetter Threat LevelWired.comAugust 26, 2008Two security researchers have demonstrated a new technique to stealthily intercept internet traffic on a scale previously presumed to be unavailable to anyone outside of intelligence agencies like the National Security Agency.The tactic exploits the internet routing protocol BGP (Border Gateway Protocol) to let <br/><br/>86 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Ubuntu gets major security fix]]></title>
<link>http://bestofsecurity.net/news/ISN_Ubuntu_gets_major_security_fix/</link>
<comments>http://bestofsecurity.net/news/ISN_Ubuntu_gets_major_security_fix/</comments>
<pubDate>Thu, 28 Aug 2008 07:00:42 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Ubuntu_gets_major_security_fix/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Thu, 28 Aug 2008 00:34:17 -0500 (CDT)http://www.vnunet.com/vnunet/news/2224707/ubuntu-gets-major-security-fixBy Shaun Nichols in San Franciscovnunet.com26 Aug 2008Ubuntu users are being advised to update their systems after the release of a patch for the operating system's Linux kernel.The open-source group sent out an advisory to users warning that, if left unpatched, the flaws could allow an attacker execute malicious code or cause a denial of service err<br/><br/>62 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] MIT Lincoln Laboratory software aims to thwart cyber hackers]]></title>
<link>http://bestofsecurity.net/news/ISN_MIT_Lincoln_Laboratory_software_aims_to_thwart_cyber_hackers/</link>
<comments>http://bestofsecurity.net/news/ISN_MIT_Lincoln_Laboratory_software_aims_to_thwart_cyber_hackers/</comments>
<pubDate>Thu, 28 Aug 2008 07:00:29 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_MIT_Lincoln_Laboratory_software_aims_to_thwart_cyber_hackers/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Thu, 28 Aug 2008 00:33:45 -0500 (CDT)http://web.mit.edu/newsoffice/2008/security-0827.htmlMIT NewsAugust 27, 2008In response to the chronic cyber threat of hackers, MIT Lincoln Laboratory researchers are developing a software tool to identify the most vulnerable points in a computer network. The tool aims to make it possible for system administrators to focus on parts of a network that are most prone to attack, instead of securing all parts of the network.U<br/><br/>119 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[French train tickets go USB]]></title>
<link>http://bestofsecurity.net/news/French_train_tickets_go_USB/</link>
<comments>http://bestofsecurity.net/news/French_train_tickets_go_USB/</comments>
<pubDate>Thu, 28 Aug 2008 05:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/French_train_tickets_go_USB/</guid>
<description><![CDATA[We don't need no stinkin' ISO7816The French National Railway Company is trialling contactless tickets with USB connections, replacing the ubiquitous ISO7816 for online top-ups and data storage.…<br/><br/>71 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[McKinnon heads for the last chance saloon]]></title>
<link>http://bestofsecurity.net/news/McKinnon_heads_for_the_last_chance_saloon/</link>
<comments>http://bestofsecurity.net/news/McKinnon_heads_for_the_last_chance_saloon/</comments>
<pubDate>Thu, 28 Aug 2008 03:00:11 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/McKinnon_heads_for_the_last_chance_saloon/</guid>
<description><![CDATA[Pentagon hacker's final appealAccused Pentagon hacker Gary McKinnon is approaching his own D-Day, with his fate due to be sealed in the European Court of Human Rights in Strasbourg.…<br/><br/>64 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Private Browsing and the Enterprise]]></title>
<link>http://bestofsecurity.net/news/Private_Browsing_and_the_Enterprise/</link>
<comments>http://bestofsecurity.net/news/Private_Browsing_and_the_Enterprise/</comments>
<pubDate>Wed, 27 Aug 2008 19:00:15 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Private_Browsing_and_the_Enterprise/</guid>
<description><![CDATA[In an enterprise, privacy is good in moderation. But new hyperprivacy features need IT's control.   -  The rumors were right: Internet Explorer 8 will have new privacy features akin to those in Apple Safari. What role should they play in the enterprise?InPrivate Browsing ( quot;Private Browsing quot; was already taken by Apple) lets the user control whether or not IE saves potentially privacy-rel...   <br/><br/>145 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Apple iPhone Passcode Bypass Made Public]]></title>
<link>http://bestofsecurity.net/news/Apple_iPhone_Passcode_Bypass_Made_Public/</link>
<comments>http://bestofsecurity.net/news/Apple_iPhone_Passcode_Bypass_Made_Public/</comments>
<pubDate>Wed, 27 Aug 2008 19:00:12 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Apple_iPhone_Passcode_Bypass_Made_Public/</guid>
<description><![CDATA[The passcode feature on the latest version of Apple's iPhone can be bypassed in a few simple steps. Apple issued a fix for the issue when it released iPhone v1.1.3 back in January. While iPhone users wait for another fix, information about an easy workaround has been made available.   -  The passcode feature on the latest version of  Apples iPhone can be bypassed, potentially allowing an unauthorized person  to access data on the device if it is lost or stolen. The issue was posted to a MacRumors.com discu<br/><br/>166 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[WhiteHat Report Finds Web Site Security Vulnerabilities Persist]]></title>
<link>http://bestofsecurity.net/news/WhiteHat_Report_Finds_Web_Site_Security_Vulnerabilities_Persist/</link>
<comments>http://bestofsecurity.net/news/WhiteHat_Report_Finds_Web_Site_Security_Vulnerabilities_Persist/</comments>
<pubDate>Wed, 27 Aug 2008 19:00:10 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/WhiteHat_Report_Finds_Web_Site_Security_Vulnerabilities_Persist/</guid>
<description><![CDATA[WhiteHat Security's latest report on Web site security shows cross-site scripting remains the most common Web site vulnerability. But cross-site forgery requests also made WhiteHat's list of top 10 Web site security flaws. On a positive note, the majority of the vulnerabilities discovered by WhiteHat were remediated.   -  WhiteHat Security's latest report on Web site vulnerabilities has found theInternet in slightly better shape emphasis on slightly.In the fifth installment of the  quot;WhiteHat Website Se<br/><br/>139 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Hackers resort to 'sick' kidnap spam]]></title>
<link>http://bestofsecurity.net/news/Hackers_resort_to_sick_kidnap_spam/</link>
<comments>http://bestofsecurity.net/news/Hackers_resort_to_sick_kidnap_spam/</comments>
<pubDate>Wed, 27 Aug 2008 17:00:14 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Hackers_resort_to_sick_kidnap_spam/</guid>
<description><![CDATA[Hackers are claiming they have kidnapped children in a bid to infect PCs with a Trojan Horse virus, says Sophos.<br/><br/>91 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Hijacking huge chunks of the internet - a new How To]]></title>
<link>http://bestofsecurity.net/news/Hijacking_huge_chunks_of_the_internet_-_a_new_How_To/</link>
<comments>http://bestofsecurity.net/news/Hijacking_huge_chunks_of_the_internet_-_a_new_How_To/</comments>
<pubDate>Wed, 27 Aug 2008 15:00:11 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Hijacking_huge_chunks_of_the_internet_-_a_new_How_To/</guid>
<description><![CDATA[It's easy. Those tubes are bustedMore evidence that the intertubes are fundamentally broken has been served up by Wired.com in an article laying out a technique to surreptitiously hijack huge chunks of the internet and monitor or even modify unencrypted traffic before it reaches its intended destination.…<br/><br/>155 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Locked iPhones can be unlocked without a password]]></title>
<link>http://bestofsecurity.net/news/Locked_iPhones_can_be_unlocked_without_a_password/</link>
<comments>http://bestofsecurity.net/news/Locked_iPhones_can_be_unlocked_without_a_password/</comments>
<pubDate>Wed, 27 Aug 2008 13:00:26 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Locked_iPhones_can_be_unlocked_without_a_password/</guid>
<description><![CDATA[Private information stored in Apple&amp;#39;s iPhone and protected by a lock code can be accessed by anyone with just a few button presses.<br/><br/>180 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] A New Breed Of Hackers Tracks Online Acts of War]]></title>
<link>http://bestofsecurity.net/news/ISN_A_New_Breed_Of_Hackers_Tracks_Online_Acts_of_War/</link>
<comments>http://bestofsecurity.net/news/ISN_A_New_Breed_Of_Hackers_Tracks_Online_Acts_of_War/</comments>
<pubDate>Wed, 27 Aug 2008 07:00:55 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_A_New_Breed_Of_Hackers_Tracks_Online_Acts_of_War/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Wed, 27 Aug 2008 00:28:36 -0500 (CDT)http://www.washingtonpost.com/wp-dyn/content/article/2008/08/26/AR2008082603128.htmlBy Kim HartWashington Post Staff WriterAugust 27, 2008; TORONTO -- Here in the Citizen Lab at the University of Toronto, a new breed of hackers is conducting digital espionage.They are among a growing number of investigators who monitor how traffic is routed through countries, where Web sites are blocked and why it's all happening. Now th<br/><br/>110 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] US data breaches booming in '08]]></title>
<link>http://bestofsecurity.net/news/ISN_US_data_breaches_booming_in_08/</link>
<comments>http://bestofsecurity.net/news/ISN_US_data_breaches_booming_in_08/</comments>
<pubDate>Wed, 27 Aug 2008 07:00:50 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_US_data_breaches_booming_in_08/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Wed, 27 Aug 2008 00:28:27 -0500 (CDT)http://www.theregister.co.uk/2008/08/27/itrc_data_breaches_2008_beat_2007/By Austin Modine The Register27th August 2008The number of personal information leaks reported in the US this year have already exceeded the total amount in all of 2007, San Diego-based Identity Theft Resource Center said today.With four months left in 2008, the firm found that 449 US businesses and government agencies have thus far reported lost o<br/><br/>172 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] PacSec 2008 CFP (Deadline Sept. 1, Conference Nov. 12/13) and BA-Con 2008 Speakers (Sept. 30/ Oct. 1)]]></title>
<link>http://bestofsecurity.net/news/ISN_PacSec_2008_CFP_Deadline_Sept-_1_Conference_Nov-_1213_and_BA-Con_2008_Speakers_Sept-_30_Oct-_1/</link>
<comments>http://bestofsecurity.net/news/ISN_PacSec_2008_CFP_Deadline_Sept-_1_Conference_Nov-_1213_and_BA-Con_2008_Speakers_Sept-_30_Oct-_1/</comments>
<pubDate>Wed, 27 Aug 2008 07:00:47 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_PacSec_2008_CFP_Deadline_Sept-_1_Conference_Nov-_1213_and_BA-Con_2008_Speakers_Sept-_30_Oct-_1/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Wed, 27 Aug 2008 00:29:12 -0500 (CDT)Forwarded from: Dragos Ruiu &amp;lt;dr (at) kyx.net&amp;gt;Spanish url: http://ba-con.com.ar/speakers.html?language=esSpeaker list and Dojos for BA-Con, September 30, October 1st.(all presentations in both Spanish and English)  Presentations:  WPA/WPA2: how long is it gonna make it - Cdric Blancher &amp;amp; Simon   Marchal, EADS &amp;amp; SGDN  Security Concerns of Firmware Updates (SPI System BIOS and Embedded    Controller) - Sun Bin<br/><br/>72 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Attackers Targeting Linux Infrastructures With Rootkit to Steal SSH Keys]]></title>
<link>http://bestofsecurity.net/news/ISN_Attackers_Targeting_Linux_Infrastructures_With_Rootkit_to_Steal_SSH_Keys/</link>
<comments>http://bestofsecurity.net/news/ISN_Attackers_Targeting_Linux_Infrastructures_With_Rootkit_to_Steal_SSH_Keys/</comments>
<pubDate>Wed, 27 Aug 2008 07:00:41 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Attackers_Targeting_Linux_Infrastructures_With_Rootkit_to_Steal_SSH_Keys/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Wed, 27 Aug 2008 00:28:14 -0500 (CDT)http://www.eweek.com/c/a/Security/Attackers-Targeting-Linux-Infrastructures-With-Rootkit-to-Steal-SSH-Keys/By Brian PrinceeWEEK.com2008-08-26 U.S.-CERT is warning of attacks targeting Linux-based infrastructures using compromised SSH keys. After access is gained to the system, local kernel exploits are used to gain root access. A rootkit is then installed to steal more SSH keys. The attack could be related to a flaw affe<br/><br/>77 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Fatah hackers breach Hamas website]]></title>
<link>http://bestofsecurity.net/news/ISN_Fatah_hackers_breach_Hamas_website/</link>
<comments>http://bestofsecurity.net/news/ISN_Fatah_hackers_breach_Hamas_website/</comments>
<pubDate>Wed, 27 Aug 2008 07:00:38 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Fatah_hackers_breach_Hamas_website/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Wed, 27 Aug 2008 00:28:47 -0500 (CDT)http://www.ynetnews.com/articles/0,7340,L-3588203,00.htmlBy Roee Nahmias08.26.08Israel NewsFatah hackers brought down Tuesday a website belonging to Izz al-Din al-Qassam, Hamas' military wing, precisely two months after the site was breached by the Israeli Fanat Al Radical group.&amp;quot;Don't say this is the work of the intelligence services. This is only Fatah youth and the hackers of Palestine,&amp;quot; said a message plant<br/><br/>149 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Virus Infects Space Station Laptops (Again)]]></title>
<link>http://bestofsecurity.net/news/ISN_Virus_Infects_Space_Station_Laptops_Again/</link>
<comments>http://bestofsecurity.net/news/ISN_Virus_Infects_Space_Station_Laptops_Again/</comments>
<pubDate>Wed, 27 Aug 2008 07:00:35 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Virus_Infects_Space_Station_Laptops_Again/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Wed, 27 Aug 2008 00:28:03 -0500 (CDT)http://blog.wired.com/27bstroke6/2008/08/virus-infects-s.htmlBy Ryan Singel Threat LevelWired.comAugust 26, 2008 Viruses intended to steal passwords and send them to a remote server infected laptops in the International Space Station in July, NASA confirmed Tuesday.And according to NASA, this wasn't the first infection.&amp;quot;This is not the first time we have had a worm or a virus,&amp;quot; NASA spokesman Kelly Humphries sa<br/><br/>181 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Needham schools say system was breached]]></title>
<link>http://bestofsecurity.net/news/ISN_Needham_schools_say_system_was_breached/</link>
<comments>http://bestofsecurity.net/news/ISN_Needham_schools_say_system_was_breached/</comments>
<pubDate>Wed, 27 Aug 2008 07:00:29 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Needham_schools_say_system_was_breached/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Wed, 27 Aug 2008 00:28:57 -0500 (CDT)http://www.boston.com/news/education/k_12/articles/2008/08/26/needham_schools_say_system_was_breached/By Peter SchwormGlobe Staff August 26, 2008 A junior at Needham High School posted students' schedules and identification numbers and teachers' classroom rosters on his Facebook account after hacking into an online student information system, school officials said yesterday.In an e-mail sent yesterday morning to high sch<br/><br/>181 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Microsoft dishes dirt on IE8 'pr0n mode']]></title>
<link>http://bestofsecurity.net/news/Microsoft_dishes_dirt_on_IE8_pr0n_mode/</link>
<comments>http://bestofsecurity.net/news/Microsoft_dishes_dirt_on_IE8_pr0n_mode/</comments>
<pubDate>Wed, 27 Aug 2008 05:00:11 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Microsoft_dishes_dirt_on_IE8_pr0n_mode/</guid>
<description><![CDATA['Off the record' browsing is goMicrosoft has outlined the new privacy tools available in its forthcoming browser Internet Explorer 8 (IE8).…<br/><br/>182 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Four quick tips for choosing an IM security product]]></title>
<link>http://bestofsecurity.net/news/Four_quick_tips_for_choosing_an_IM_security_product/</link>
<comments>http://bestofsecurity.net/news/Four_quick_tips_for_choosing_an_IM_security_product/</comments>
<pubDate>Tue, 26 Aug 2008 21:00:12 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Four_quick_tips_for_choosing_an_IM_security_product/</guid>
<description><![CDATA[Instant messaging (IM) has become an increasingly useful business tool for modern corporations. Data from a Forrester Research survey suggests that 71 percent of businesses will invest in real-time messaging this year.<br/><br/>98 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[MessageLabs Buys Image Analysis Vendor for E-Mail Security]]></title>
<link>http://bestofsecurity.net/news/MessageLabs_Buys_Image_Analysis_Vendor_for_E-Mail_Security/</link>
<comments>http://bestofsecurity.net/news/MessageLabs_Buys_Image_Analysis_Vendor_for_E-Mail_Security/</comments>
<pubDate>Tue, 26 Aug 2008 19:00:31 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/MessageLabs_Buys_Image_Analysis_Vendor_for_E-Mail_Security/</guid>
<description><![CDATA[MessageLabs has purchased a provider of image analysis technology to improve its e-mail security offerings. The company says technology from Fortium ICA will help secure e-mail by preventing unauthorized images from entering or leaving enterprise networks.   -  MessageLabs has acquired United Kingdom-based Fortium ICA Limited in a bid to broaden its ability to enforce e-mail security policies  using image composition analysis. The acquisition, made for an undisclosed sum, is intended to strengthen MessageL<br/><br/>144 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Laptop Sold on eBay Exposes 1M Royal Bank of Scotland (RBS), American Express and NatWest Customers]]></title>
<link>http://bestofsecurity.net/news/Laptop_Sold_on_eBay_Exposes_1M_Royal_Bank_of_Scotland_RBS_American_Express_and_NatWest_Customers/</link>
<comments>http://bestofsecurity.net/news/Laptop_Sold_on_eBay_Exposes_1M_Royal_Bank_of_Scotland_RBS_American_Express_and_NatWest_Customers/</comments>
<pubDate>Tue, 26 Aug 2008 19:00:27 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Laptop_Sold_on_eBay_Exposes_1M_Royal_Bank_of_Scotland_RBS_American_Express_and_NatWest_Customers/</guid>
<description><![CDATA[Personal details of more than 1 million customers of Royal Bank of Scotland, American Express and NatWest are found on a computer sold on auction site eBay. RBS said the information included historical data related to credit card applications and data from other banks, but would not disclose further details.The information was being held by archiving firm Graphic Data, which copies paperwork from some of Britain's biggest financial organisations and stores it digitally.   -  LONDON (Reuters) - Account hold<br/><br/>76 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Why Can't Google Stop Malware Ads on Adwords?]]></title>
<link>http://bestofsecurity.net/news/Why_Cant_Google_Stop_Malware_Ads_on_Adwords/</link>
<comments>http://bestofsecurity.net/news/Why_Cant_Google_Stop_Malware_Ads_on_Adwords/</comments>
<pubDate>Tue, 26 Aug 2008 19:00:23 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Why_Cant_Google_Stop_Malware_Ads_on_Adwords/</guid>
<description><![CDATA[There has recently been an unfettered flow of advertising for malicious software on Google's AdWords networks. How come Google can't stop the malware?   -  People make much of technical matters in security, but the most importantforce behind malware is social engineering, not some vulnerability or baddesign. The current hot malware is a textbook case of social engineering and anaggressive marketing campaign.You must have seen them by now: ads f...   <br/><br/>189 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Attackers Targeting Linux Infrastructures With Rootkit to Steal SSH Keys]]></title>
<link>http://bestofsecurity.net/news/Attackers_Targeting_Linux_Infrastructures_With_Rootkit_to_Steal_SSH_Keys/</link>
<comments>http://bestofsecurity.net/news/Attackers_Targeting_Linux_Infrastructures_With_Rootkit_to_Steal_SSH_Keys/</comments>
<pubDate>Tue, 26 Aug 2008 19:00:19 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Attackers_Targeting_Linux_Infrastructures_With_Rootkit_to_Steal_SSH_Keys/</guid>
<description><![CDATA[U.S.-CERT is warning of attacks targeting Linux-based infrastructures using compromised SSH keys. After access is gained to the system, local kernel exploits are used to gain root access. A rootkit is then installed to steal more SSH keys. The attack could be related to a flaw affecting Debian-based encryption keys discovered earlier this year.   -  Hackers are launching attacks against Linux-based computing infrastructures using compromised SSH keys and installing rootkits, according to a warning by the U<br/><br/>169 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[CERT: Linux servers under 'Phalanx' attack]]></title>
<link>http://bestofsecurity.net/news/CERT_Linux_servers_under_Phalanx_attack/</link>
<comments>http://bestofsecurity.net/news/CERT_Linux_servers_under_Phalanx_attack/</comments>
<pubDate>Tue, 26 Aug 2008 19:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/CERT_Linux_servers_under_Phalanx_attack/</guid>
<description><![CDATA[Stolen keys unlock back doorAttacks in the wild are under way against Linux systems with compromised SSH keys, the US Computer Emergency Readiness Team is warning.…<br/><br/>57 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[US data breaches booming in '08]]></title>
<link>http://bestofsecurity.net/news/US_data_breaches_booming_in_08/</link>
<comments>http://bestofsecurity.net/news/US_data_breaches_booming_in_08/</comments>
<pubDate>Tue, 26 Aug 2008 19:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/US_data_breaches_booming_in_08/</guid>
<description><![CDATA[Have you seen my identity?The number of personal information leaks reported in the US this year have already exceeded the total amount in all of 2007, San Diego-based Identity Theft Resource Center said today.…<br/><br/>180 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Update: U.S. border-crossing database raises concerns]]></title>
<link>http://bestofsecurity.net/news/Update_U-S-_border-crossing_database_raises_concerns/</link>
<comments>http://bestofsecurity.net/news/Update_U-S-_border-crossing_database_raises_concerns/</comments>
<pubDate>Tue, 26 Aug 2008 17:00:14 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Update_U-S-_border-crossing_database_raises_concerns/</guid>
<description><![CDATA[A plan by U.S. Customs and Border Protection (CBP) to collect personal information on every traveler coming into the country and keep that information in a database for 15 years could have huge privacy implications for U.S. residents, one privacy group said.<br/><br/>192 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Call out a phisher, get attacked by malware]]></title>
<link>http://bestofsecurity.net/news/Call_out_a_phisher_get_attacked_by_malware/</link>
<comments>http://bestofsecurity.net/news/Call_out_a_phisher_get_attacked_by_malware/</comments>
<pubDate>Tue, 26 Aug 2008 17:00:11 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Call_out_a_phisher_get_attacked_by_malware/</guid>
<description><![CDATA[Users tired of phishing attacks who retaliate by talking back are being targeted with exploits designed to hijack their computers, a security researcher said Tuesday.<br/><br/>171 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Houston, we have a virus]]></title>
<link>http://bestofsecurity.net/news/Houston_we_have_a_virus/</link>
<comments>http://bestofsecurity.net/news/Houston_we_have_a_virus/</comments>
<pubDate>Tue, 26 Aug 2008 17:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Houston_we_have_a_virus/</guid>
<description><![CDATA[Worm infects International Space Station laptopsA computer worm that ferrets out passwords managed to stow away on laptops aboard the International Space Station, NASA has confirmed. It is not the first time a NASA computer has become infected.…<br/><br/>134 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Scumbags punt Trojan with baby kidnap lure]]></title>
<link>http://bestofsecurity.net/news/Scumbags_punt_Trojan_with_baby_kidnap_lure/</link>
<comments>http://bestofsecurity.net/news/Scumbags_punt_Trojan_with_baby_kidnap_lure/</comments>
<pubDate>Tue, 26 Aug 2008 11:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Scumbags_punt_Trojan_with_baby_kidnap_lure/</guid>
<description><![CDATA[A new lowWith a sick email malware campaign, pond dwelling scumbags are claiming to have kidnapped the children of would-be targets of infection.…<br/><br/>62 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Crypto guru thinks outside the box with Cube attack]]></title>
<link>http://bestofsecurity.net/news/Crypto_guru_thinks_outside_the_box_with_Cube_attack/</link>
<comments>http://bestofsecurity.net/news/Crypto_guru_thinks_outside_the_box_with_Cube_attack/</comments>
<pubDate>Tue, 26 Aug 2008 11:00:03 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Crypto_guru_thinks_outside_the_box_with_Cube_attack/</guid>
<description><![CDATA[Stream ciphers easily split (maybe)Senior cryptologist Adi Shamir is developing a new attack for rooting out potential weaknesses in encryption ciphers, dubbed the Cube Attack.…<br/><br/>124 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Minister warns of national grid hack threat]]></title>
<link>http://bestofsecurity.net/news/Minister_warns_of_national_grid_hack_threat/</link>
<comments>http://bestofsecurity.net/news/Minister_warns_of_national_grid_hack_threat/</comments>
<pubDate>Tue, 26 Aug 2008 09:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Minister_warns_of_national_grid_hack_threat/</guid>
<description><![CDATA[And theft of commercial secretsA UK government minister has warned that cyber-terrorists were attempting to take out the national grid.…<br/><br/>183 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Red Hat hack prompts critical OpenSSH update]]></title>
<link>http://bestofsecurity.net/news/ISN_Red_Hat_hack_prompts_critical_OpenSSH_update/</link>
<comments>http://bestofsecurity.net/news/ISN_Red_Hat_hack_prompts_critical_OpenSSH_update/</comments>
<pubDate>Tue, 26 Aug 2008 07:00:32 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Red_Hat_hack_prompts_critical_OpenSSH_update/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Tue, 26 Aug 2008 04:31:36 -0500 (CDT)http://www.theregister.co.uk/2008/08/22/red_hat_systems_hacked/By John LeydenThe Register22nd August 2008Red Hat has warned that hackers were able to commandeer its systems and tamper with code - but said that since its content distribution was not hit, it is confident that polluted code has not served up to users.The first hint that something was wrong came last week when Fedora rebuilt its systems, a reconstruction tha<br/><br/>125 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Cybersecurity lacking in Africa, official says]]></title>
<link>http://bestofsecurity.net/news/ISN_Cybersecurity_lacking_in_Africa_official_says/</link>
<comments>http://bestofsecurity.net/news/ISN_Cybersecurity_lacking_in_Africa_official_says/</comments>
<pubDate>Tue, 26 Aug 2008 07:00:29 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Cybersecurity_lacking_in_Africa_official_says/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Tue, 26 Aug 2008 04:32:08 -0500 (CDT)http://www.networkworld.com/news/2008/082508-cybersecurity-lacking-in-africa-official.htmlBy Brenda Zulu IDG News Service 08/25/2008 Africa will not realize the benefits of IT without improvements in cybersecurity, the secretary general of the Common Market for Eastern and Southern Africa (COMESA) said today.Speaking at the International Telecommunication Union's (ITU's) regional Cybersecurity Forum being held here this <br/><br/>125 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Personal data of 1m bank customers found on secondhand computer sold on eBay for 35UKP]]></title>
<link>http://bestofsecurity.net/news/ISN_Personal_data_of_1m_bank_customers_found_on_secondhand_computer_sold_on_eBay_for_35UKP/</link>
<comments>http://bestofsecurity.net/news/ISN_Personal_data_of_1m_bank_customers_found_on_secondhand_computer_sold_on_eBay_for_35UKP/</comments>
<pubDate>Tue, 26 Aug 2008 07:00:25 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Personal_data_of_1m_bank_customers_found_on_secondhand_computer_sold_on_eBay_for_35UKP/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Tue, 26 Aug 2008 04:32:50 -0500 (CDT)http://www.dailymail.co.uk/news/article-1049121/Personal-data-1m-bank-customers-secondhand-sold-eBay-35.htmlBy Dan Newlingdailymail.co.uk25th August 2008Personal details of more than a million bank customers have been found on a computer sold on eBay.Highly- sensitive information on American Express, NatWest and Royal Bank of Scotland customers was stored on the machine's hard drive.It includes names, addresses, mobile p<br/><br/>163 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Thousands of cyber attacks each day on key utilities]]></title>
<link>http://bestofsecurity.net/news/ISN_Thousands_of_cyber_attacks_each_day_on_key_utilities/</link>
<comments>http://bestofsecurity.net/news/ISN_Thousands_of_cyber_attacks_each_day_on_key_utilities/</comments>
<pubDate>Tue, 26 Aug 2008 07:00:22 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Thousands_of_cyber_attacks_each_day_on_key_utilities/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Tue, 26 Aug 2008 04:31:55 -0500 (CDT)http://www.timesonline.co.uk/tol/news/uk/crime/article4592677.eceBy Jonathan Richards The TimesAugust 23, 2008Computer networks controlling electricity supplies, telecommunications and banking are being attacked thousands of times a day in a new cyberwar against Britain waged by criminals and terrorists - some of them backed by foreign states - the Government has said.Lord West of Spithead, the Security Minister, told Th<br/><br/>56 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Public, private sectors at odds over cyber security]]></title>
<link>http://bestofsecurity.net/news/ISN_Public_private_sectors_at_odds_over_cyber_security/</link>
<comments>http://bestofsecurity.net/news/ISN_Public_private_sectors_at_odds_over_cyber_security/</comments>
<pubDate>Tue, 26 Aug 2008 07:00:17 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Public_private_sectors_at_odds_over_cyber_security/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Tue, 26 Aug 2008 04:32:23 -0500 (CDT)http://www.latimes.com/business/la-fi-security26-2008aug26,0,2021258.storyBy Joseph Menn, Los Angeles Times Staff WriterAugust 26, 2008Three very big and very different computer security breaches that have dominated recent headlines did more than show how badly the Internet needs major repairs. They also exposed the huge rift between corporate America and the federal government over who should fix it, cyber-security expe<br/><br/>115 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Best Western plays down impact of hack attack]]></title>
<link>http://bestofsecurity.net/news/Best_Western_plays_down_impact_of_hack_attack/</link>
<comments>http://bestofsecurity.net/news/Best_Western_plays_down_impact_of_hack_attack/</comments>
<pubDate>Tue, 26 Aug 2008 05:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Best_Western_plays_down_impact_of_hack_attack/</guid>
<description><![CDATA[8 million records? Huh, more like 10Hotel chain Best Western has denied falling victim to a large-scale hacking attack.…<br/><br/>91 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Million bank details sold on eBay]]></title>
<link>http://bestofsecurity.net/news/Million_bank_details_sold_on_eBay/</link>
<comments>http://bestofsecurity.net/news/Million_bank_details_sold_on_eBay/</comments>
<pubDate>Tue, 26 Aug 2008 03:00:03 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Million_bank_details_sold_on_eBay/</guid>
<description><![CDATA[And a few more gone AWOLA computer hard disc containing one million sets of bank details was bought on eBay for just £35.…<br/><br/>133 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[E-voting outfit confesses vote-dropping software bug]]></title>
<link>http://bestofsecurity.net/news/E-voting_outfit_confesses_vote-dropping_software_bug/</link>
<comments>http://bestofsecurity.net/news/E-voting_outfit_confesses_vote-dropping_software_bug/</comments>
<pubDate>Mon, 25 Aug 2008 21:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/E-voting_outfit_confesses_vote-dropping_software_bug/</guid>
<description><![CDATA[Ten years laterElectronic voting machine manufacturer Premier Elections Solutions has warned government officials of a critical programming error that can drop votes before they are tallied.…<br/><br/>115 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[IE8 to get privacy features]]></title>
<link>http://bestofsecurity.net/news/IE8_to_get_privacy_features/</link>
<comments>http://bestofsecurity.net/news/IE8_to_get_privacy_features/</comments>
<pubDate>Mon, 25 Aug 2008 20:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/IE8_to_get_privacy_features/</guid>
<description><![CDATA[Microsoft on Monday described some new privacy features that will come with IE8, the next release of its browser. The features are designed to make it easier for people to delete and control information about their Web browsing history.<br/><br/>76 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Phishers Bite Back with Malware Exploits Linked to Keywords]]></title>
<link>http://bestofsecurity.net/news/Phishers_Bite_Back_with_Malware_Exploits_Linked_to_Keywords/</link>
<comments>http://bestofsecurity.net/news/Phishers_Bite_Back_with_Malware_Exploits_Linked_to_Keywords/</comments>
<pubDate>Mon, 25 Aug 2008 19:00:16 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Phishers_Bite_Back_with_Malware_Exploits_Linked_to_Keywords/</guid>
<description><![CDATA[The minds behind the Asprox botnet are retaliating against visitors to their phishing page who put profanity or other flagged keywords into the phishers' phony log-in form instead of legitimate data. The phishing page contains logic that recognizes words like  phish  and retaliates with exploits targeting vulnerabilities in Microsoft Windows, according to a security researcher.   -  Criticize the people behind the Asprox botnet, and they take it personal so much so that they will bombard you with malware, <br/><br/>118 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Microsoft completes Small Business Server 2008]]></title>
<link>http://bestofsecurity.net/news/Microsoft_completes_Small_Business_Server_2008/</link>
<comments>http://bestofsecurity.net/news/Microsoft_completes_Small_Business_Server_2008/</comments>
<pubDate>Mon, 25 Aug 2008 16:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Microsoft_completes_Small_Business_Server_2008/</guid>
<description><![CDATA[Microsoft on Friday said it has completed development on Small Business Server 2008 and that the software will hit its targeted ship date of Nov. 12.<br/><br/>100 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Facebook summarily denies undeniable user-menacing security hole]]></title>
<link>http://bestofsecurity.net/news/Facebook_summarily_denies_undeniable_user-menacing_security_hole/</link>
<comments>http://bestofsecurity.net/news/Facebook_summarily_denies_undeniable_user-menacing_security_hole/</comments>
<pubDate>Mon, 25 Aug 2008 15:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Facebook_summarily_denies_undeniable_user-menacing_security_hole/</guid>
<description><![CDATA['It doesn't exist...bitch'Exclusive Facebook's hip new application platform contains a gaping hole that allows attackers to run malicious javascript on unsuspecting users' machines, a developer has demonstrated.…<br/><br/>125 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Revealed: 8 million victims in the world's biggest cyber heist]]></title>
<link>http://bestofsecurity.net/news/ISN_Revealed_8_million_victims_in_the_worlds_biggest_cyber_heist/</link>
<comments>http://bestofsecurity.net/news/ISN_Revealed_8_million_victims_in_the_worlds_biggest_cyber_heist/</comments>
<pubDate>Mon, 25 Aug 2008 07:01:36 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Revealed_8_million_victims_in_the_worlds_biggest_cyber_heist/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Mon, 25 Aug 2008 04:17:28 -0500 (CDT)http://www.sundayherald.com/news/heraldnews/display.var.2432225.0.revealed_8_million_victims_in_the_worlds_biggest_cyber_heist.phpBy Iain S BruceSunday HeraldAugust 24, 2008 AN INTERNATIONAL criminal gang has pulled off one of the most audacious cyber-crimes ever and stolen the identities of an estimated eight million people in a hacking raid that could ultimately net more than 2.8billion in illegal funds.A Sunday Herald<br/><br/>159 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Linux Advisory Watch: August 22nd, 2008]]></title>
<link>http://bestofsecurity.net/news/ISN_Linux_Advisory_Watch_August_22nd_2008/</link>
<comments>http://bestofsecurity.net/news/ISN_Linux_Advisory_Watch_August_22nd_2008/</comments>
<pubDate>Mon, 25 Aug 2008 07:01:26 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Linux_Advisory_Watch_August_22nd_2008/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Mon, 25 Aug 2008 04:16:46 -0500 (CDT)+----------------------------------------------------------------------+| LinuxSecurity.com                                  Weekly Newsletter || August 22nd, 2008                                Volume 9, Number 34 ||                                                                      || Editorial Team:              Dave Wreski &amp;lt;dwreski_at_private&amp;gt; ||                       Benjamin D. Thomas &amp;lt;bthomas_at_private<br/><br/>152 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Data on 130,000 criminals lost]]></title>
<link>http://bestofsecurity.net/news/ISN_Data_on_130000_criminals_lost/</link>
<comments>http://bestofsecurity.net/news/ISN_Data_on_130000_criminals_lost/</comments>
<pubDate>Mon, 25 Aug 2008 07:01:22 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Data_on_130000_criminals_lost/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Mon, 25 Aug 2008 04:16:59 -0500 (CDT)http://www.telegraph.co.uk/news/newstopics/politics/2601056/Data-on-130000-criminals-lost.htmlBy Robert Winnett and Jon SwaineTelegraph.co.ukAugust 22, 2008Confidential information on almost 130,000 prisoners and dangerous criminals has been lost by the Home Office, sparking yet another Government data crisis.The loss of the details, which were stored on an unencypted computer memory stick, has raised fears that the taxp<br/><br/>73 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] ID scam from McDonald's drive-through]]></title>
<link>http://bestofsecurity.net/news/ISN_ID_scam_from_McDonalds_drive-through/</link>
<comments>http://bestofsecurity.net/news/ISN_ID_scam_from_McDonalds_drive-through/</comments>
<pubDate>Mon, 25 Aug 2008 07:01:16 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_ID_scam_from_McDonalds_drive-through/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Mon, 25 Aug 2008 04:16:16 -0500 (CDT)Forwarded from: Thomas J. Hofstetter &amp;lt;THofstetter (at) midwestiso.org&amp;gt;http://www.tribtoday.com/page/content.detail/id/509724.html?nav=5021By RAYMOND L. SMITH Tribune ChronicleAugust 22, 2008 LIBERTY - Police claim an identity fraud scam that began on July 20 wasbroken up when several people were arrested in connection with the useof credit and debit cards that did not belong to them.Arrested and arraigned in Girard<br/><br/>130 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] TSA Memo Suggests That Agency 'Encourages' Damaging Behavior]]></title>
<link>http://bestofsecurity.net/news/ISN_TSA_Memo_Suggests_That_Agency_Encourages_Damaging_Behavior/</link>
<comments>http://bestofsecurity.net/news/ISN_TSA_Memo_Suggests_That_Agency_Encourages_Damaging_Behavior/</comments>
<pubDate>Mon, 25 Aug 2008 07:01:12 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_TSA_Memo_Suggests_That_Agency_Encourages_Damaging_Behavior/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Mon, 25 Aug 2008 04:17:42 -0500 (CDT)http://www.aero-news.net/news/genav.cfm?ContentBlockID=ae0f320a-39c0-4684-99d4-503a300a5a00&amp;amp;Dynamic=1By Jim CampbellEditor-In-ChiefANN/Aero-TVAugust 20, 2008The great TSA-ORD Inspector scandal seems to be but the tip of the proverbial iceberg... and the theme song from the Titanic is playing in the background. ANN has learned that the Inspector that instigated the inspections of nine American Eagle ERJs and created i<br/><br/>84 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Spy vs. Spy]]></title>
<link>http://bestofsecurity.net/news/ISN_Spy_vs-_Spy/</link>
<comments>http://bestofsecurity.net/news/ISN_Spy_vs-_Spy/</comments>
<pubDate>Mon, 25 Aug 2008 07:01:02 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Spy_vs-_Spy/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Mon, 25 Aug 2008 04:14:03 -0500 (CDT)http://spectrum.ieee.org/aug08/6593By Sally AdeeFirst Published August 2008IEEE SpectrumEarlier this year, someone at the United States Department of Justice smuggled sensitive financial data out of the agency by embedding the data in several image files. Defeating this exfiltration method, called steganography, has proved particularly tricky, but one engineering student has come up with a way to make espionage work agai<br/><br/>198 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Firm Hired After Security Breach Faces State Probe]]></title>
<link>http://bestofsecurity.net/news/ISN_Firm_Hired_After_Security_Breach_Faces_State_Probe/</link>
<comments>http://bestofsecurity.net/news/ISN_Firm_Hired_After_Security_Breach_Faces_State_Probe/</comments>
<pubDate>Mon, 25 Aug 2008 07:00:55 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Firm_Hired_After_Security_Breach_Faces_State_Probe/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Mon, 25 Aug 2008 04:17:13 -0500 (CDT)http://www.courant.com/business/hc-debix0822.artaug22,0,3146872.storyBy JANICE PODSADA Courant Staff WriterAugust 22, 2008Gov. M. Jodi Rell said Thursday that she wants an investigation into a company the state hired to offer credit monitoring to people affected by a security breach involving a stolen Department of Revenue Services laptop computer.The laptop contained Social Security numbers and bank account information <br/><br/>140 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[How to Increase Application Security through Secure Software Development]]></title>
<link>http://bestofsecurity.net/news/How_to_Increase_Application_Security_through_Secure_Software_Development/</link>
<comments>http://bestofsecurity.net/news/How_to_Increase_Application_Security_through_Secure_Software_Development/</comments>
<pubDate>Mon, 25 Aug 2008 07:00:45 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/How_to_Increase_Application_Security_through_Secure_Software_Development/</guid>
<description><![CDATA[The lack of software security and application security is becoming a greater source of network vulnerability for many companies. In order to strengthen network security, its important to adopt a security-enhanced software development process. Companies should reduce exploitable weaknesses by integrating software security practices throughout the software development life cycle. Knowledge Center contributor Julia Allen explains just how to do this, and spells out why increasing application security should m<br/><br/>64 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[How to Use Honeypots to Improve Your Network Security]]></title>
<link>http://bestofsecurity.net/news/How_to_Use_Honeypots_to_Improve_Your_Network_Security/</link>
<comments>http://bestofsecurity.net/news/How_to_Use_Honeypots_to_Improve_Your_Network_Security/</comments>
<pubDate>Mon, 25 Aug 2008 07:00:27 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/How_to_Use_Honeypots_to_Improve_Your_Network_Security/</guid>
<description><![CDATA[Traditionally, maintaining network security has involved acting defensively, using network-based defense techniques like firewalls, intrusion detection systems and encryption. Now more than ever, proactive techniques are needed to detect, deflect and counteract attempts at unauthorized use of information systems. The use of honeypots is a proactive, promising approach to fighting off network security threats. Knowledge Center contributors Niels Provos and Thorsten Holz explain what honeypots are, and how h<br/><br/>167 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Red Hat admits breach of its servers, Fedora]]></title>
<link>http://bestofsecurity.net/news/Red_Hat_admits_breach_of_its_servers_Fedora/</link>
<comments>http://bestofsecurity.net/news/Red_Hat_admits_breach_of_its_servers_Fedora/</comments>
<pubDate>Fri, 22 Aug 2008 20:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Red_Hat_admits_breach_of_its_servers_Fedora/</guid>
<description><![CDATA[Red Hat confirmed Friday that hackers compromised infrastructure servers belonging to the company and the Fedora Project, including systems used to sign Fedora packages.<br/><br/>146 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Microsoft confesses to posting a flawed update]]></title>
<link>http://bestofsecurity.net/news/Microsoft_confesses_to_posting_a_flawed_update/</link>
<comments>http://bestofsecurity.net/news/Microsoft_confesses_to_posting_a_flawed_update/</comments>
<pubDate>Fri, 22 Aug 2008 20:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Microsoft_confesses_to_posting_a_flawed_update/</guid>
<description><![CDATA[Microsoft Corp. re-released one of its Aug. 11 security updates yesterday, explaining that it had posted an incomplete version to its own download center last week.<br/><br/>153 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Brazilian Man Charged in Botnet Conspiracy]]></title>
<link>http://bestofsecurity.net/news/Brazilian_Man_Charged_in_Botnet_Conspiracy/</link>
<comments>http://bestofsecurity.net/news/Brazilian_Man_Charged_in_Botnet_Conspiracy/</comments>
<pubDate>Fri, 22 Aug 2008 19:00:27 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Brazilian_Man_Charged_in_Botnet_Conspiracy/</guid>
<description><![CDATA[A federal grand jury has indicted a Brazilian man for selling the Shadow botnet as well as the underlying bot code. Federal authorities allege the man was a key figure in the operation of the Shadow botnet, which infected more than 100,000 computers worldwide.   -  A federal grand jury has indicted  a Brazilian man  for his role in the proliferation of  the infamous Shadow botnet. Leni de Abreu Neto of Taubate, Brazil, was indicted on  one count of conspiracy to cause damage to computers worldwide by a fed<br/><br/>166 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Vendor Pushes DNSSEC as a Fix for DNS Security]]></title>
<link>http://bestofsecurity.net/news/Vendor_Pushes_DNSSEC_as_a_Fix_for_DNS_Security/</link>
<comments>http://bestofsecurity.net/news/Vendor_Pushes_DNSSEC_as_a_Fix_for_DNS_Security/</comments>
<pubDate>Fri, 22 Aug 2008 19:00:25 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Vendor_Pushes_DNSSEC_as_a_Fix_for_DNS_Security/</guid>
<description><![CDATA[Secure64 Software is releasing software it says will drastically reduce the complexity, security and scalability issues that have slowed the implementation of DNSSEC. The recent discovery of a flaw in the DNS protocol by security researcher Dan Kaminsky has led to revived public discussion of DNSSEC as a solution to DNS cache poisoning attacks.   -  Between the press attention and the release of attack code for the Domain Name System protocol flaw revealed in July, DNS security has been front and center fo<br/><br/>56 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Red Hat Digital Keys Violated by Intruder]]></title>
<link>http://bestofsecurity.net/news/Red_Hat_Digital_Keys_Violated_by_Intruder/</link>
<comments>http://bestofsecurity.net/news/Red_Hat_Digital_Keys_Violated_by_Intruder/</comments>
<pubDate>Fri, 22 Aug 2008 19:00:22 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Red_Hat_Digital_Keys_Violated_by_Intruder/</guid>
<description><![CDATA[Just about the most serious breach of security possible at an OS vendor happened to this company. Red Hat is releasing updated OpenSSH packages to address the compromise of its internal systems.   -  In perhaps the most appalling breach of security at a major operating systemvendor, Red Hat has revealed that a compromise of its internal systems includedthe digital signing keys for its distributions. An Aug. 22 advisoryfrom Red Hat announces new OpenSSH packages to deal with the problem: ...   <br/><br/>110 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Eight crazy e-mail hoaxes millions have fallen for]]></title>
<link>http://bestofsecurity.net/news/Eight_crazy_e-mail_hoaxes_millions_have_fallen_for/</link>
<comments>http://bestofsecurity.net/news/Eight_crazy_e-mail_hoaxes_millions_have_fallen_for/</comments>
<pubDate>Fri, 22 Aug 2008 16:00:11 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Eight_crazy_e-mail_hoaxes_millions_have_fallen_for/</guid>
<description><![CDATA[Congratulations, you won the lottery in a country whose name you can&amp;#39;t even pronounce! A wealthy oil executive in a far-off land wants to give you millions of dollars, right now! Sexy girls want to meet you!<br/><br/>197 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[That password-protected site of yours - it ain't]]></title>
<link>http://bestofsecurity.net/news/That_password-protected_site_of_yours_-_it_aint/</link>
<comments>http://bestofsecurity.net/news/That_password-protected_site_of_yours_-_it_aint/</comments>
<pubDate>Fri, 22 Aug 2008 13:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/That_password-protected_site_of_yours_-_it_aint/</guid>
<description><![CDATA[Google exposes the Net's dirty secretsIt's one of the simplest hacks we've seen in a long time, and the more elite computer users have known about it for a while, but it's still kinda cool and just a little bit unnerving: A hacker has revealed a way to use Google and other search engines to gain unauthorized access to password-protected content on a dizzying number of websites.…<br/><br/>141 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Anatomy of a malware scam]]></title>
<link>http://bestofsecurity.net/news/Anatomy_of_a_malware_scam/</link>
<comments>http://bestofsecurity.net/news/Anatomy_of_a_malware_scam/</comments>
<pubDate>Fri, 22 Aug 2008 13:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Anatomy_of_a_malware_scam/</guid>
<description><![CDATA[The evil genius of XP Antivirus 2008Anyone who has a blog has probably seen blog spam; comments to the blog that simply try to entice people to go to some other site. Most of the time the site being advertised is simply trying to boost its search engine rankings to generate more ad revenue.…<br/><br/>92 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[SSDs are hot, but not without security risks]]></title>
<link>http://bestofsecurity.net/news/SSDs_are_hot_but_not_without_security_risks/</link>
<comments>http://bestofsecurity.net/news/SSDs_are_hot_but_not_without_security_risks/</comments>
<pubDate>Fri, 22 Aug 2008 12:00:08 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/SSDs_are_hot_but_not_without_security_risks/</guid>
<description><![CDATA[Solid-state drives are fast becoming popular replacements for hard drives, especially in laptops, but experts caution that SSDs aren&amp;#39;t as secure as commonly thought.<br/><br/>84 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Brazilian charged in botnet scheme, will be extradited to U.S.]]></title>
<link>http://bestofsecurity.net/news/Brazilian_charged_in_botnet_scheme_will_be_extradited_to_U-S-/</link>
<comments>http://bestofsecurity.net/news/Brazilian_charged_in_botnet_scheme_will_be_extradited_to_U-S-/</comments>
<pubDate>Fri, 22 Aug 2008 12:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Brazilian_charged_in_botnet_scheme_will_be_extradited_to_U-S-/</guid>
<description><![CDATA[A Brazilian man has been charged for trying to rent out a botnet that would be used to send spam, U.S. authorities said Thursday.<br/><br/>106 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Red Hat hack prompts critical OpenSSH update]]></title>
<link>http://bestofsecurity.net/news/Red_Hat_hack_prompts_critical_OpenSSH_update/</link>
<comments>http://bestofsecurity.net/news/Red_Hat_hack_prompts_critical_OpenSSH_update/</comments>
<pubDate>Fri, 22 Aug 2008 11:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Red_Hat_hack_prompts_critical_OpenSSH_update/</guid>
<description><![CDATA[Poisoned code never entered our bloodstream, says Linux distroRed Hat has warned that hackers were able to commandeer its systems and tamper with code - but said that since its content distribution was not hit, it is confident that polluted code has not served up to users.…<br/><br/>155 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Mutually assured destruction in cyberspace]]></title>
<link>http://bestofsecurity.net/news/ISN_Mutually_assured_destruction_in_cyberspace/</link>
<comments>http://bestofsecurity.net/news/ISN_Mutually_assured_destruction_in_cyberspace/</comments>
<pubDate>Fri, 22 Aug 2008 07:01:39 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Mutually_assured_destruction_in_cyberspace/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Fri, 22 Aug 2008 00:08:10 -0500 (CDT)http://www.ft.com/cms/s/0/553ea4ca-6f18-11dd-a80a-0000779fd18c.htmlBy Victor MalletFT.comAugust 21 2008The crisis in Georgia has not only stoked fears of a belligerent Russia. It has also served as a reminder that a new style of warfare - potentially as devastating as those that terrified previous generations- is almost upon us: cyberwar.Before Russia invaded Georgia, co-ordinated attacks were launched against Georgian g<br/><br/>99 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Nokia admits mobile phone security flaws]]></title>
<link>http://bestofsecurity.net/news/ISN_Nokia_admits_mobile_phone_security_flaws/</link>
<comments>http://bestofsecurity.net/news/ISN_Nokia_admits_mobile_phone_security_flaws/</comments>
<pubDate>Fri, 22 Aug 2008 07:01:35 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Nokia_admits_mobile_phone_security_flaws/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Fri, 22 Aug 2008 00:08:54 -0500 (CDT)http://www.techworld.com/security/news/index.cfm?newsID=103368By Jeremy KirkIDG news service21 August 2008Nokia has confirmed that its widely used Series 40 operating system has security vulnerabilities that could allow stealth installation and activation of applications.But the company is evasive on whether it paid €20,000 (£15,854) to researcher Adam Gowdiak of Security Explorations, who wanted payment for the six-mont<br/><br/>143 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Hacker Court 2008 Post Mortem]]></title>
<link>http://bestofsecurity.net/news/ISN_Hacker_Court_2008_Post_Mortem/</link>
<comments>http://bestofsecurity.net/news/ISN_Hacker_Court_2008_Post_Mortem/</comments>
<pubDate>Fri, 22 Aug 2008 07:01:32 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Hacker_Court_2008_Post_Mortem/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Fri, 22 Aug 2008 00:07:25 -0500 (CDT)http://blog.tenablesecurity.com/2008/08/hacker-court-20.htmlBy Carole Fennelly August 21, 2008Another Black Hat conference for the record books! It.s traditional for me to have a panic attack on the eve of Black Hat, trying to pull the Hacker Court team together to work on our presentation (&amp;quot;Hack MyFace&amp;quot;) and swearing I'm never doing this again. This year was even worse: the defendant, Simple Nomad, and the jud<br/><br/>103 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Spammers prepare new anti-Georgia botnet onslaught]]></title>
<link>http://bestofsecurity.net/news/ISN_Spammers_prepare_new_anti-Georgia_botnet_onslaught/</link>
<comments>http://bestofsecurity.net/news/ISN_Spammers_prepare_new_anti-Georgia_botnet_onslaught/</comments>
<pubDate>Fri, 22 Aug 2008 07:01:29 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Spammers_prepare_new_anti-Georgia_botnet_onslaught/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Fri, 22 Aug 2008 00:07:38 -0500 (CDT)http://www.computerweekly.com/Articles/2008/08/20/231916/spammers-prepare-new-anti-georgia-botnet-onslaught.htmBy Edward ParshotamComputerweekly.com20 Aug 2008Cybercriminals are attempting to create a botnet network to launch cyber attacks against Georgian Government computers, according to Gary Warner, director of computer research and forensics at the University of Alabama at Birmingham.Spam e-mails sent by the crimina<br/><br/>75 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Cyberwar isn't a grand struggle - it's a scary prospect of pure chaos]]></title>
<link>http://bestofsecurity.net/news/ISN_Cyberwar_isnt_a_grand_struggle_-_its_a_scary_prospect_of_pure_chaos/</link>
<comments>http://bestofsecurity.net/news/ISN_Cyberwar_isnt_a_grand_struggle_-_its_a_scary_prospect_of_pure_chaos/</comments>
<pubDate>Fri, 22 Aug 2008 07:01:15 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Cyberwar_isnt_a_grand_struggle_-_its_a_scary_prospect_of_pure_chaos/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Fri, 22 Aug 2008 00:08:27 -0500 (CDT)http://www.guardian.co.uk/technology/2008/aug/21/blogging.internetBy Bobbie JohnsonThe Guardian,August 21 2008When Russian tanks rolled into Georgia, it brought back memories of Soviet-era military conquest - a reminder of the cold war. But whether by accident or design, the fight for South Ossettia appears to have given us a taste of the future as well, with internet attacks on Georgian computer systems resulting in the<br/><br/>146 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] FEMA's Phone System Hacked]]></title>
<link>http://bestofsecurity.net/news/ISN_FEMAs_Phone_System_Hacked/</link>
<comments>http://bestofsecurity.net/news/ISN_FEMAs_Phone_System_Hacked/</comments>
<pubDate>Fri, 22 Aug 2008 07:01:10 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_FEMAs_Phone_System_Hacked/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Fri, 22 Aug 2008 00:08:41 -0500 (CDT)http://www.informationweek.com/news/security/government/showArticle.jhtml?articleID=210200102By Thomas ClaburnInformationWeekAugust 21, 2008A hacker hijacked the Federal Emergency Management Agency (FEMA) phone system over the weekend, leaving the agency with bill of about $12,000.According to the Associated Press, someone placed over 400 calls through FEMA's National Emergency Training Center in Emmitsburg, Md., to seve<br/><br/>116 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Secunia Weekly Summary - Issue: 2008-34]]></title>
<link>http://bestofsecurity.net/news/ISN_Secunia_Weekly_Summary_-_Issue_2008-34/</link>
<comments>http://bestofsecurity.net/news/ISN_Secunia_Weekly_Summary_-_Issue_2008-34/</comments>
<pubDate>Fri, 22 Aug 2008 07:01:02 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Secunia_Weekly_Summary_-_Issue_2008-34/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Fri, 22 Aug 2008 00:07:13 -0500 (CDT)========================================================================                  The Secunia Weekly Advisory Summary                                          2008-08-14 - 2008-08-21                                               This week: 48 advisories                        ========================================================================Table of Contents:1................................................<br/><br/>181 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Security expert: DNS attacks are happening]]></title>
<link>http://bestofsecurity.net/news/ISN_Security_expert_DNS_attacks_are_happening/</link>
<comments>http://bestofsecurity.net/news/ISN_Security_expert_DNS_attacks_are_happening/</comments>
<pubDate>Fri, 22 Aug 2008 07:00:34 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Security_expert_DNS_attacks_are_happening/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Fri, 22 Aug 2008 00:07:56 -0500 (CDT)http://news.cnet.com/8301-1009_3-10022303-83.htmlBy Elinor MillsSecurity - CNet News.comAugust 21, 2008A fatal flaw with the DNS (Domain Name System) is being exploited in Internet attacks and more attacks are likely, the security researcher who discovered the flaw said on Thursday.&amp;quot;I do think we are going to see attacks. I think we have been seeing attacks already going on in the field,&amp;quot; said Dan Kaminsky, dir<br/><br/>77 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Sorenson's plans include a focus on cyber ops and knowledge management]]></title>
<link>http://bestofsecurity.net/news/ISN_Sorensons_plans_include_a_focus_on_cyber_ops_and_knowledge_management/</link>
<comments>http://bestofsecurity.net/news/ISN_Sorensons_plans_include_a_focus_on_cyber_ops_and_knowledge_management/</comments>
<pubDate>Fri, 22 Aug 2008 07:00:23 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Sorensons_plans_include_a_focus_on_cyber_ops_and_knowledge_management/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Fri, 22 Aug 2008 00:06:52 -0500 (CDT)http://www.gcn.com/online/vol1_no1/46940-1.htmlBy Wyatt KashGCN.com08/20/08 A year into his role as the Army's chief information officer, Lt. Gen. Jeffrey Sorenson is pushing to sharpen and shift the focus of the Army's information technology operations.The new emphasis is on building the Army's enterprisewide information technology capabilities as quickly as possible, he said at the LandWarNet conference this week.Altho<br/><br/>175 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Alleged Brazilian botnet herder faces US extradition]]></title>
<link>http://bestofsecurity.net/news/Alleged_Brazilian_botnet_herder_faces_US_extradition/</link>
<comments>http://bestofsecurity.net/news/Alleged_Brazilian_botnet_herder_faces_US_extradition/</comments>
<pubDate>Fri, 22 Aug 2008 07:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Alleged_Brazilian_botnet_herder_faces_US_extradition/</guid>
<description><![CDATA[Zombie farmer suspects sent to the penA Brazilian man who allegedly sold access to a huge network of compromised PCs has been charged with computer hacking offences in the US.…<br/><br/>95 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Card fraud-fearing Brit tourists carry cash]]></title>
<link>http://bestofsecurity.net/news/Card_fraud-fearing_Brit_tourists_carry_cash/</link>
<comments>http://bestofsecurity.net/news/Card_fraud-fearing_Brit_tourists_carry_cash/</comments>
<pubDate>Fri, 22 Aug 2008 05:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Card_fraud-fearing_Brit_tourists_carry_cash/</guid>
<description><![CDATA[Plastic ain't fantasticFour in five of Brits are worried about possible fraud if they use their cards overseas with many (60 per cent) choosing to carry cash instead.…<br/><br/>108 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Apple's MobileMe plays into hands of spammers]]></title>
<link>http://bestofsecurity.net/news/Apples_MobileMe_plays_into_hands_of_spammers/</link>
<comments>http://bestofsecurity.net/news/Apples_MobileMe_plays_into_hands_of_spammers/</comments>
<pubDate>Fri, 22 Aug 2008 05:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Apples_MobileMe_plays_into_hands_of_spammers/</guid>
<description><![CDATA[Address harvesting all too easyApple has inadvertently made it easy for spammers to create a database of MobileMe email addresses.…<br/><br/>190 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Firefox SSL-certificate debate grows]]></title>
<link>http://bestofsecurity.net/news/Firefox_SSL-certificate_debate_grows/</link>
<comments>http://bestofsecurity.net/news/Firefox_SSL-certificate_debate_grows/</comments>
<pubDate>Thu, 21 Aug 2008 20:00:11 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Firefox_SSL-certificate_debate_grows/</guid>
<description><![CDATA[Debate is reaching a fever pitch over a new security feature in Firefox 3.0 that throws out a warning page to users when a Web site&amp;#39;s SSL certificate is expired or has not been issued by a trusted third party.<br/><br/>109 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[McAfee, Wave Systems Target Data Protection for Intel-based Mobile Devices]]></title>
<link>http://bestofsecurity.net/news/McAfee_Wave_Systems_Target_Data_Protection_for_Intel-based_Mobile_Devices/</link>
<comments>http://bestofsecurity.net/news/McAfee_Wave_Systems_Target_Data_Protection_for_Intel-based_Mobile_Devices/</comments>
<pubDate>Thu, 21 Aug 2008 19:00:14 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/McAfee_Wave_Systems_Target_Data_Protection_for_Intel-based_Mobile_Devices/</guid>
<description><![CDATA[McAfee and Wave Systems announced plans this week to help secure devices based on Intel's technology. McAfee is  extending its data security technology to laptops and mobile Internet devices, while Wave Systems is focused on devices leveraging Intel vPro technology. Both Wave Systems and McAfee made the announcements during the Intel Developer Forum in San Francisco.   -  Data protection providers McAfee and Wave Systems  have their eyes on Intel-based devices this week during the Intel Developer Forum in <br/><br/>116 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Legal group releases guide to GPL compliance]]></title>
<link>http://bestofsecurity.net/news/Legal_group_releases_guide_to_GPL_compliance/</link>
<comments>http://bestofsecurity.net/news/Legal_group_releases_guide_to_GPL_compliance/</comments>
<pubDate>Thu, 21 Aug 2008 16:00:16 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Legal_group_releases_guide_to_GPL_compliance/</guid>
<description><![CDATA[The Software Freedom Law Center, which provides legal help to the free and open-source software community, has released a detailed document that describes how users and vendors can ensure they are in compliance with the open-source GNU General Public License (GPL) .<br/><br/>126 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Comcast: No new traffic management plan yet]]></title>
<link>http://bestofsecurity.net/news/Comcast_No_new_traffic_management_plan_yet/</link>
<comments>http://bestofsecurity.net/news/Comcast_No_new_traffic_management_plan_yet/</comments>
<pubDate>Thu, 21 Aug 2008 16:00:12 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Comcast_No_new_traffic_management_plan_yet/</guid>
<description><![CDATA[Comcast has made no final decisions on how to manage network congestion, despite news reports Wednesday that it will slow traffic for heavy users for up to 20 minutes during times of peak network use.<br/><br/>122 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Phreakers seize government phone system]]></title>
<link>http://bestofsecurity.net/news/Phreakers_seize_government_phone_system/</link>
<comments>http://bestofsecurity.net/news/Phreakers_seize_government_phone_system/</comments>
<pubDate>Thu, 21 Aug 2008 13:00:11 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Phreakers_seize_government_phone_system/</guid>
<description><![CDATA[Department of Homeland (in)SecurityInformation technology workers at the US Department of Homeland Security are busy scraping egg off their collective faces after unknown hackers broke into their telephone system and racked up $12,000 in calls to the Middle East and Asia.…<br/><br/>54 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Update: Did Nokia pay for vulnerability information?]]></title>
<link>http://bestofsecurity.net/news/Update_Did_Nokia_pay_for_vulnerability_information/</link>
<comments>http://bestofsecurity.net/news/Update_Did_Nokia_pay_for_vulnerability_information/</comments>
<pubDate>Thu, 21 Aug 2008 12:00:06 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Update_Did_Nokia_pay_for_vulnerability_information/</guid>
<description><![CDATA[Nokia confirmed Thursday its widely used Series 40 operating system has security vulnerabilities that could allow stealth installation and activation of applications.<br/><br/>78 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Dabs.com founder accused of attempted rape, drugs offences]]></title>
<link>http://bestofsecurity.net/news/Dabs-com_founder_accused_of_attempted_rape_drugs_offences/</link>
<comments>http://bestofsecurity.net/news/Dabs-com_founder_accused_of_attempted_rape_drugs_offences/</comments>
<pubDate>Thu, 21 Aug 2008 11:00:09 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Dabs-com_founder_accused_of_attempted_rape_drugs_offences/</guid>
<description><![CDATA[Remanded in custodyThe founder of Dabs.com, David Atherton, has been charged with attempted rape and possession of Class A drugs.…<br/><br/>118 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Ecommerce millionaire remanded in custody]]></title>
<link>http://bestofsecurity.net/news/Ecommerce_millionaire_remanded_in_custody/</link>
<comments>http://bestofsecurity.net/news/Ecommerce_millionaire_remanded_in_custody/</comments>
<pubDate>Thu, 21 Aug 2008 09:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Ecommerce_millionaire_remanded_in_custody/</guid>
<description><![CDATA[Dabs.com founder accused of attempted rape, drugs offencesThe founder of Dabs.com, David Atherton, has been charged with attempted rape and possession of Class A drugs.…<br/><br/>140 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Anti-Terrorism Cloaking Device...For Pacemakers?]]></title>
<link>http://bestofsecurity.net/news/ISN_Anti-Terrorism_Cloaking_Device---For_Pacemakers/</link>
<comments>http://bestofsecurity.net/news/ISN_Anti-Terrorism_Cloaking_Device---For_Pacemakers/</comments>
<pubDate>Thu, 21 Aug 2008 07:01:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Anti-Terrorism_Cloaking_Device---For_Pacemakers/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Thu, 21 Aug 2008 02:10:11 -0500 (CDT)http://www.g4tv.com/thefeed/blog/post/688451/AntiTerrorism_Cloaking_DeviceFor_Pacemakers.htmlBy Frank Meyer G4tv.comAugust 20, 2008So what do you think could be the latest high-tech development in terrorist tactics?Satellite assassins? Stealth bullets? Mind bombs?Nope.How about using the radio signals emitting from pacemakers to shut them down or deliver potentially lethal electric shocks to millions of heart patients?Wh<br/><br/>58 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Army cyber ops faces forensic backlog]]></title>
<link>http://bestofsecurity.net/news/ISN_Army_cyber_ops_faces_forensic_backlog/</link>
<comments>http://bestofsecurity.net/news/ISN_Army_cyber_ops_faces_forensic_backlog/</comments>
<pubDate>Thu, 21 Aug 2008 07:01:02 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Army_cyber_ops_faces_forensic_backlog/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Thu, 21 Aug 2008 02:13:15 -0500 (CDT)http://www.gcn.com/online/vol1_no1/46946-1.htmlBy Wyatt KashGCN.com08/20/08As the number of potential assaults on military information technology networks continues to escalate, so does the challenge of conducting forensic and attribution analysis in order to respond appropriately, said Col. Barry Hensley at the 2008 LandWarNet conference in Fort Lauderdale, Fla., this week.&amp;quot;There are 360 million scans or attempted <br/><br/>132 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Boston Court's Meddling With 'Full Disclosure' Is Unwelcome]]></title>
<link>http://bestofsecurity.net/news/ISN_Boston_Courts_Meddling_With_Full_Disclosure_Is_Unwelcome/</link>
<comments>http://bestofsecurity.net/news/ISN_Boston_Courts_Meddling_With_Full_Disclosure_Is_Unwelcome/</comments>
<pubDate>Thu, 21 Aug 2008 07:00:58 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Boston_Courts_Meddling_With_Full_Disclosure_Is_Unwelcome/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Thu, 21 Aug 2008 02:10:25 -0500 (CDT)http://www.wired.com/politics/security/commentary/securitymatters/2008/08/securitymatters_0821By Bruce SchneierSecurity MattersWired.comAugust 20, 2008In eerily similar cases in the Netherlands and the United States, courts have recently grappled with the computer-security norm of &amp;quot;full disclosure,&amp;quot; asking whether researchers should be permitted to disclose details of a fare-card vulnerability that allows peopl<br/><br/>140 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Swindler swipes ID of bank boss]]></title>
<link>http://bestofsecurity.net/news/ISN_Swindler_swipes_ID_of_bank_boss/</link>
<comments>http://bestofsecurity.net/news/ISN_Swindler_swipes_ID_of_bank_boss/</comments>
<pubDate>Thu, 21 Aug 2008 07:00:55 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Swindler_swipes_ID_of_bank_boss/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Thu, 21 Aug 2008 02:09:56 -0500 (CDT)http://www.thesun.co.uk/sol/homepage/news/money/article1580495.eceBy BRIAN FLYNNInvestigative ReporterThe Sun20 Aug 2008THE boss of banking giant HBOS has had HIS accounts frozen after a thief stole his ID and withdrew thousands in cash.Staff broke the news to shocked chief executive Andy Hornby when he was on holiday after one twigged.Fraud investigators are now scouring his accounts to work out how much was nicked.The <br/><br/>64 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] UK.gov loses 29 million personal records]]></title>
<link>http://bestofsecurity.net/news/ISN_UK-gov_loses_29_million_personal_records/</link>
<comments>http://bestofsecurity.net/news/ISN_UK-gov_loses_29_million_personal_records/</comments>
<pubDate>Thu, 21 Aug 2008 07:00:48 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_UK-gov_loses_29_million_personal_records/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Thu, 21 Aug 2008 02:09:36 -0500 (CDT)http://www.theregister.co.uk/2008/08/20/uk_gov_lost_records/By John LeydenThe Register20th August 2008UK government departments have managed to leak a total of 29 million personal records over a single year.In addition to the 25 million records spilled in the infamous lost child benefit CDs debacle, another four million records went astray in other stuff-ups, some of which have previously gone unreported.Since the HMRC d<br/><br/>200 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Commuter Flights Grounded Thanks To Bumbling TSA Inspector]]></title>
<link>http://bestofsecurity.net/news/ISN_Commuter_Flights_Grounded_Thanks_To_Bumbling_TSA_Inspector/</link>
<comments>http://bestofsecurity.net/news/ISN_Commuter_Flights_Grounded_Thanks_To_Bumbling_TSA_Inspector/</comments>
<pubDate>Thu, 21 Aug 2008 07:00:45 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Commuter_Flights_Grounded_Thanks_To_Bumbling_TSA_Inspector/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Thu, 21 Aug 2008 02:09:17 -0500 (CDT)http://www.aero-news.net/index.cfm?ContentBlockID=340a79d6-839a-470d-b662-944325cea23dBy Jim Campbellaero-news.netAugust 20, 2008Damaged TAT Probes On Nine Jets While Conducting 'Security Checks'They're the government... and remember, they're here to help. A bumbling inspector with the Transportation Safety Administration apparently has some explaining to do, after nine American Eagle regional jets were grounded at Chica<br/><br/>120 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[The Untrustworthiness of Self-Signed Certificates]]></title>
<link>http://bestofsecurity.net/news/The_Untrustworthiness_of_Self-Signed_Certificates/</link>
<comments>http://bestofsecurity.net/news/The_Untrustworthiness_of_Self-Signed_Certificates/</comments>
<pubDate>Thu, 21 Aug 2008 07:00:38 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/The_Untrustworthiness_of_Self-Signed_Certificates/</guid>
<description><![CDATA[SSL pages with self-signed certificates are less trustworthy. But does Mozilla's Firefox go overboard with this issue? Making the Web  safe by default,  Web browsers are suspicious of SSL Web sites (those that use an https:// prefix) that use certificates not signed by a trusted certificate authority, such as VeriSign, GlobalSign, GoDaddy or Thawte. Firefox 3 in particular makes you jump through hoops in order to view such a page. This has caused some in the Web security community to question the importanc<br/><br/>51 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Browsers And Unsigned Certificates]]></title>
<link>http://bestofsecurity.net/news/Browsers_And_Unsigned_Certificates/</link>
<comments>http://bestofsecurity.net/news/Browsers_And_Unsigned_Certificates/</comments>
<pubDate>Thu, 21 Aug 2008 07:00:28 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Browsers_And_Unsigned_Certificates/</guid>
<description><![CDATA[Recent releases of browsers have users jumping through hoops to view self-signed SSL certificates.   -  by Larry SeltzerRead Larry Seltzer's article on The Untrustworthiness of Self-Signed Certificates.    Making the Web  quot;safe by default, quot; browsers are suspicious of SSL Web sites (those with a https:// prefix) that use certificates not signed by a trusted authority - VeriSign, Glob...   <br/><br/>136 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Fighting Identity Theft with Analytics]]></title>
<link>http://bestofsecurity.net/news/Fighting_Identity_Theft_with_Analytics/</link>
<comments>http://bestofsecurity.net/news/Fighting_Identity_Theft_with_Analytics/</comments>
<pubDate>Thu, 21 Aug 2008 07:00:25 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Fighting_Identity_Theft_with_Analytics/</guid>
<description><![CDATA[Security vendor Guardian Analytics is using behavioral modeling to prevent online identity theft and bank fraud. The small security vendor is entering a crowded market for authentication technologies and is banking on its ability to build models based on user behavior to predict user activity and thereby detect fraud.   -  Security firm Guardian Analytics is banking on behavioral modeling to beef up authentication and protect online financial transactions against fraud  and identity theft.The company has e<br/><br/>74 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Opera update draws the curtain on seven security vulns]]></title>
<link>http://bestofsecurity.net/news/Opera_update_draws_the_curtain_on_seven_security_vulns/</link>
<comments>http://bestofsecurity.net/news/Opera_update_draws_the_curtain_on_seven_security_vulns/</comments>
<pubDate>Thu, 21 Aug 2008 07:00:10 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Opera_update_draws_the_curtain_on_seven_security_vulns/</guid>
<description><![CDATA[Keeping schtum on XSS bug details, thoughOpera users should upgrade their browser software following the discovery of multiple security bugs.…<br/><br/>58 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[UK fraudster gang go PIN sniffing]]></title>
<link>http://bestofsecurity.net/news/UK_fraudster_gang_go_PIN_sniffing/</link>
<comments>http://bestofsecurity.net/news/UK_fraudster_gang_go_PIN_sniffing/</comments>
<pubDate>Thu, 21 Aug 2008 05:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/UK_fraudster_gang_go_PIN_sniffing/</guid>
<description><![CDATA[Portsmouth Asda links to credit card hackAnalysis The organised tampering of PIN entry devices to commit credit card fraud, which led to arrests in Birmingham last week, has been linked to a breach in an Asda store on the outskirts of Portsmouth.…<br/><br/>150 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Details of chartered accountants on website]]></title>
<link>http://bestofsecurity.net/news/ISN_Details_of_chartered_accountants_on_website/</link>
<comments>http://bestofsecurity.net/news/ISN_Details_of_chartered_accountants_on_website/</comments>
<pubDate>Wed, 20 Aug 2008 19:00:40 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Details_of_chartered_accountants_on_website/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Wed, 20 Aug 2008 06:36:48 -0500 (CDT)http://www.irishtimes.com/newspaper/finance/2008/0819/1218868113806.htmlBy JOHN COLLINSThe Irish TimesAugust 19, 2008CONTACT DETAILS for more than 17,000 members of the Institute of Chartered Accountants in Ireland have been inadvertently published on the web in the latest data security breach to hit a high-profile organisation.The information includes members' personal addresses, contact details including e-mail address<br/><br/>168 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Romanian hackers stripped foreign companies of over 150 million dollars in 2008 alone]]></title>
<link>http://bestofsecurity.net/news/ISN_Romanian_hackers_stripped_foreign_companies_of_over_150_million_dollars_in_2008_alone/</link>
<comments>http://bestofsecurity.net/news/ISN_Romanian_hackers_stripped_foreign_companies_of_over_150_million_dollars_in_2008_alone/</comments>
<pubDate>Wed, 20 Aug 2008 19:00:38 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Romanian_hackers_stripped_foreign_companies_of_over_150_million_dollars_in_2008_alone/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Wed, 20 Aug 2008 06:37:26 -0500 (CDT)http://www.emportal.co.yu/en/news/region/60001.html20. August 2008EMportalRomanian hackers stripped foreign companies of over 150 million dollars in 2008 alone, Romania's Police representatives declared quoted by Romanian news television Realitatea TV.Romanian hackers stripped foreign companies of over 150 million dollars in 2008 alone, Romania's Police representatives declared quoted by Romanian news television Realitat<br/><br/>53 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Black Hat 2008 Aftermath]]></title>
<link>http://bestofsecurity.net/news/ISN_Black_Hat_2008_Aftermath/</link>
<comments>http://bestofsecurity.net/news/ISN_Black_Hat_2008_Aftermath/</comments>
<pubDate>Wed, 20 Aug 2008 19:00:35 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Black_Hat_2008_Aftermath/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Wed, 20 Aug 2008 06:37:09 -0500 (CDT)http://www.law.com/jsp/legaltechnology/pubArticleLT.jsp?id=1202423911432By Keith Jones and Brian DykstraSpecial to Law.comAugust 20, 2008As always, the 2008 Black Hat security conference in Las Vegas, N.V., was full of cutting-edge computer security research, the latest in computer security vulnerabilities, and more than a little controversy.Since the beginning of the Black Hat conference 15 years ago, the show has alway<br/><br/>66 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Student Files Are Exposed on Web Site]]></title>
<link>http://bestofsecurity.net/news/ISN_Student_Files_Are_Exposed_on_Web_Site/</link>
<comments>http://bestofsecurity.net/news/ISN_Student_Files_Are_Exposed_on_Web_Site/</comments>
<pubDate>Wed, 20 Aug 2008 19:00:28 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Student_Files_Are_Exposed_on_Web_Site/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Wed, 20 Aug 2008 06:37:51 -0500 (CDT)http://www.nytimes.com/2008/08/19/technology/19review.htmlBy BRAD STONEThe New York TimesAugust 18, 2008The Princeton Review, the test-preparatory firm, accidentally published the personal data and standardized test scores of tens of thousands of Florida students on its Web site, where they were available for seven weeks.A flaw in configuring the site allowed anyone to type in a relatively simple Web address and have unf<br/><br/>199 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Federal Judge Throws Out Gag Order Against Boston Students in Subway Case]]></title>
<link>http://bestofsecurity.net/news/ISN_Federal_Judge_Throws_Out_Gag_Order_Against_Boston_Students_in_Subway_Case/</link>
<comments>http://bestofsecurity.net/news/ISN_Federal_Judge_Throws_Out_Gag_Order_Against_Boston_Students_in_Subway_Case/</comments>
<pubDate>Wed, 20 Aug 2008 19:00:25 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Federal_Judge_Throws_Out_Gag_Order_Against_Boston_Students_in_Subway_Case/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Wed, 20 Aug 2008 06:38:03 -0500 (CDT)http://blog.wired.com/27bstroke6/2008/08/federal-judge-t.htmlBy Kim Zetter Threat LevelWired.comAugust 19, 2008A federal judge in Boston this morning let expire a temporary gag order against three MIT students who were prevented from presenting a talk on security vulnerabilities in the Boston subway's fare tickets and cards.U.S. District Judge George A. O'Toole, Jr., vacated the temporary 10-day restraining order that an<br/><br/>122 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Georgia Cyberwar Overblown]]></title>
<link>http://bestofsecurity.net/news/ISN_Georgia_Cyberwar_Overblown/</link>
<comments>http://bestofsecurity.net/news/ISN_Georgia_Cyberwar_Overblown/</comments>
<pubDate>Wed, 20 Aug 2008 19:00:22 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Georgia_Cyberwar_Overblown/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Wed, 20 Aug 2008 06:36:59 -0500 (CDT)http://www.pcworld.com/businesscenter/article/150021/georgia_cyberwar_overblown.htmlBy Andreas M. AntonopoulosNetwork World August 19, 2008Last week Russian tanks rolled into South Ossetia while Russian bombers were taking out critical communications infrastructure. But even before the first tank rolled across the disputed borders, another war was brewing in cyberspace.Armies of hackers started attacking critical cyberin<br/><br/>88 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] 10 arrested for hacking in fake-diploma scheme]]></title>
<link>http://bestofsecurity.net/news/ISN_10_arrested_for_hacking_in_fake-diploma_scheme/</link>
<comments>http://bestofsecurity.net/news/ISN_10_arrested_for_hacking_in_fake-diploma_scheme/</comments>
<pubDate>Wed, 20 Aug 2008 19:00:20 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_10_arrested_for_hacking_in_fake-diploma_scheme/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Wed, 20 Aug 2008 06:37:41 -0500 (CDT)http://www.shanghaidaily.com/article/?id=370919By Chen Qian Shanghai Daily2008-8-20TEN people accused of hacking into government databases to add false information and create bogus diplomas were caught by police in Jiangxi Province, Legal Daily reported yesterday.Alleged leaders of the hacker group have been arrested, the report said. One of them, surnamed Li, had made more than 2 million yuan (US$294,118) in only four m<br/><br/>61 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Android puts out call to mobile security gurus]]></title>
<link>http://bestofsecurity.net/news/Android_puts_out_call_to_mobile_security_gurus/</link>
<comments>http://bestofsecurity.net/news/Android_puts_out_call_to_mobile_security_gurus/</comments>
<pubDate>Wed, 20 Aug 2008 16:00:08 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Android_puts_out_call_to_mobile_security_gurus/</guid>
<description><![CDATA[Developers of Android, the Linux mobile platform spearheaded by Google, are asking security experts for input.<br/><br/>140 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Online encyclopedia lists internal network security threats]]></title>
<link>http://bestofsecurity.net/news/Online_encyclopedia_lists_internal_network_security_threats/</link>
<comments>http://bestofsecurity.net/news/Online_encyclopedia_lists_internal_network_security_threats/</comments>
<pubDate>Wed, 20 Aug 2008 16:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Online_encyclopedia_lists_internal_network_security_threats/</guid>
<description><![CDATA[A free online encyclopedia of internal network security issues was released Tuesday by network security provider Promisec, which includes popular Web-based applications among possible data-loss threats.<br/><br/>100 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Jobs promises September iPhone software patch]]></title>
<link>http://bestofsecurity.net/news/Jobs_promises_September_iPhone_software_patch/</link>
<comments>http://bestofsecurity.net/news/Jobs_promises_September_iPhone_software_patch/</comments>
<pubDate>Wed, 20 Aug 2008 16:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Jobs_promises_September_iPhone_software_patch/</guid>
<description><![CDATA[Apple CEO Steve Jobs has promised repair for a little publicized by widely suffered bug in which a user&amp;#39;s iPhone applications won&amp;#39;t properly launch.<br/><br/>160 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Microsoft's IE 8 puts giant web hole on notice]]></title>
<link>http://bestofsecurity.net/news/Microsofts_IE_8_puts_giant_web_hole_on_notice/</link>
<comments>http://bestofsecurity.net/news/Microsofts_IE_8_puts_giant_web_hole_on_notice/</comments>
<pubDate>Wed, 20 Aug 2008 13:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Microsofts_IE_8_puts_giant_web_hole_on_notice/</guid>
<description><![CDATA[Tell us if you've heard this one before?Engineers in Microsoft's Internet Explorer group are devising a new means to stamp out one of the web's biggest security banes: attacks that steal email, bank account credentials and other sensitive information by injecting malicious code into trusted websites.…<br/><br/>81 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Googlephone security team seeks bug hunters]]></title>
<link>http://bestofsecurity.net/news/Googlephone_security_team_seeks_bug_hunters/</link>
<comments>http://bestofsecurity.net/news/Googlephone_security_team_seeks_bug_hunters/</comments>
<pubDate>Wed, 20 Aug 2008 05:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Googlephone_security_team_seeks_bug_hunters/</guid>
<description><![CDATA[Android needs YouGoogle's Android security team has appealed to bug hunters to help it iron out flaws in the platform.…<br/><br/>125 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Battle for South Ossetia fought in cyberspace]]></title>
<link>http://bestofsecurity.net/news/ISN_Battle_for_South_Ossetia_fought_in_cyberspace/</link>
<comments>http://bestofsecurity.net/news/ISN_Battle_for_South_Ossetia_fought_in_cyberspace/</comments>
<pubDate>Tue, 19 Aug 2008 19:01:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Battle_for_South_Ossetia_fought_in_cyberspace/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Tue, 19 Aug 2008 05:08:24 -0500 (CDT)http://www.independent.co.uk/news/world/europe/battle-for-south-ossetia-fought-in-cyberspace-899772.htmlBy Thais Portilho-ShrimptonThe Independent17 August 2008 The six-day war between Russia and Georgia may have seemed a scruffy, bloody, almost 19th-century nationalist conflict, but it saw the deployment of what will be a major weapon in the wars of the future: the internet. South Ossetia was, say experts in both techno<br/><br/>86 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] A road map to wardriving in these times]]></title>
<link>http://bestofsecurity.net/news/ISN_A_road_map_to_wardriving_in_these_times/</link>
<comments>http://bestofsecurity.net/news/ISN_A_road_map_to_wardriving_in_these_times/</comments>
<pubDate>Tue, 19 Aug 2008 19:01:01 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_A_road_map_to_wardriving_in_these_times/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Tue, 19 Aug 2008 05:08:55 -0500 (CDT)http://www.sfgate.com/cgi-bin/article.cgi?f=/c/a/2008/08/17/MNH312BTS1.DTLBy Matthew B. StannardChronicle Staff WriterAugust 18, 2008Memorize this: a5d1tmI#9DWSFX`/ksbo&amp;quot;RZ&amp;quot;l`SN`ito%b)Bel*B_EiCZ)q-h/`VF&amp;quot;3Gb_CM#TT.Got it? You might want to try because that's the kind of password you'll need if you really want your wireless network to be secure.That's the word from Keith Maynard - who goes by the name Seric -<br/><br/>145 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Energy IG finds flaws in DOE IT security]]></title>
<link>http://bestofsecurity.net/news/ISN_Energy_IG_finds_flaws_in_DOE_IT_security/</link>
<comments>http://bestofsecurity.net/news/ISN_Energy_IG_finds_flaws_in_DOE_IT_security/</comments>
<pubDate>Tue, 19 Aug 2008 19:00:59 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Energy_IG_finds_flaws_in_DOE_IT_security/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Tue, 19 Aug 2008 05:09:06 -0500 (CDT)http://www.fcw.com/online/news/153534-1.htmlBy Michael HardyFCW.comAugust 15, 2008The Energy Department's efforts to protect information systems that contain national security information are falling short, the department's inspector general has found.In an audit report [1] released recently, the IG reported weaknesses in five of the six facilities included in the audit. The review is the latest of several the IG has con<br/><br/>127 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] VoIP security auditing is becoming more and more complex ... Not!]]></title>
<link>http://bestofsecurity.net/news/ISN_VoIP_security_auditing_is_becoming_more_and_more_complex_---_Not/</link>
<comments>http://bestofsecurity.net/news/ISN_VoIP_security_auditing_is_becoming_more_and_more_complex_---_Not/</comments>
<pubDate>Tue, 19 Aug 2008 19:00:56 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_VoIP_security_auditing_is_becoming_more_and_more_complex_---_Not/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Tue, 19 Aug 2008 05:08:07 -0500 (CDT)http://www.itworld.com/security/54291/voip-security-auditing-becoming-more-and-more-complex-notBy Ari TakanenITWorldAugust 15, 2008I am curious how people can conduct penetration tests of a complex VoIP system when they barely understand how VoIP infrastructure works. Today, security people are still stuck to auditing practices from 1990s. When asked to do a penetration test, a consultant often is only looking at past is<br/><br/>184 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Q&amp;A With FBI's Cyber Division Chief]]></title>
<link>http://bestofsecurity.net/news/ISN_QA_With_FBIs_Cyber_Division_Chief/</link>
<comments>http://bestofsecurity.net/news/ISN_QA_With_FBIs_Cyber_Division_Chief/</comments>
<pubDate>Tue, 19 Aug 2008 19:00:44 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_QA_With_FBIs_Cyber_Division_Chief/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Tue, 19 Aug 2008 05:08:43 -0500 (CDT)http://voices.washingtonpost.com/securityfix/2008/08/qa_with_fbis_cyber_crime_chief.htmlBy Brian Krebs Security FixAugust 18, 2008At the end of the Black Hat hacker convention in Las Vegas a week ago Thursday, I had a few minutes to sit down with James Finch, head of the FBI's Cyber Division. What follows is an excerpted Q&amp;amp;A from that discussion, in which Finch describes himself as a serious geek who refuses to be sp<br/><br/>146 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Is Biometrics Ready as a Security Solution for Enterprises?]]></title>
<link>http://bestofsecurity.net/news/Is_Biometrics_Ready_as_a_Security_Solution_for_Enterprises/</link>
<comments>http://bestofsecurity.net/news/Is_Biometrics_Ready_as_a_Security_Solution_for_Enterprises/</comments>
<pubDate>Tue, 19 Aug 2008 19:00:22 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Is_Biometrics_Ready_as_a_Security_Solution_for_Enterprises/</guid>
<description><![CDATA[UPEK has partnered with Dell, Toshiba, Lenovo and others to push biometric authentication and biometric device security deeper into the enterprise. Now UPEK is pushing biometrics devices and biometric security as mechanisms for online authentication. Are enterprise business customers ready to begin widespread adoption of biometric devices and biometric security technologies?   -  To hear some tell it, all signs are pointing to an era when biometrics willbe a key element of authentication for enterprises. J<br/><br/>128 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[MBTA Loses Gag Order Battle Against MIT Security Researchers]]></title>
<link>http://bestofsecurity.net/news/MBTA_Loses_Gag_Order_Battle_Against_MIT_Security_Researchers/</link>
<comments>http://bestofsecurity.net/news/MBTA_Loses_Gag_Order_Battle_Against_MIT_Security_Researchers/</comments>
<pubDate>Tue, 19 Aug 2008 19:00:17 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/MBTA_Loses_Gag_Order_Battle_Against_MIT_Security_Researchers/</guid>
<description><![CDATA[The MBTA's fight to quiet three MIT students who uncovered vulnerabilities in the MBTA's Charlie Card ticketing system ended Aug. 19, as a federal judge lifted the 10-day gag order imposed on the students. The students had been blocked from presenting details of their findings at the Defcon conference earlier in August in Las Vegas. But the judge's decision to lift the MBTA's gag against the MIT students does not necessarily end the controversy: There is still the MBTA's lawsuit against the MIT students.  <br/><br/>67 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Judge Backs Hackers in Boston Subway Dispute]]></title>
<link>http://bestofsecurity.net/news/Judge_Backs_Hackers_in_Boston_Subway_Dispute/</link>
<comments>http://bestofsecurity.net/news/Judge_Backs_Hackers_in_Boston_Subway_Dispute/</comments>
<pubDate>Tue, 19 Aug 2008 19:00:13 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Judge_Backs_Hackers_in_Boston_Subway_Dispute/</guid>
<description><![CDATA[Three students from MIT who found a way to hack into Boston's transit system to get free rides can talk publicly about the security flaw, a judge rules Aug. 19. The MIT students raised the ire of the MBTA with a paper demonstrating how someone could work around flaws in Boston's Charlie Card automated fare system. The MIT students had planned to present the paper, which showed how anyone could take thousands of free rides on subways and buses, at the Defcon hackers conference in Las Vegas earlier in August<br/><br/>103 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Gag order lifted for students who hacked subway card]]></title>
<link>http://bestofsecurity.net/news/Gag_order_lifted_for_students_who_hacked_subway_card/</link>
<comments>http://bestofsecurity.net/news/Gag_order_lifted_for_students_who_hacked_subway_card/</comments>
<pubDate>Tue, 19 Aug 2008 17:00:08 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Gag_order_lifted_for_students_who_hacked_subway_card/</guid>
<description><![CDATA[MIT students free to discuss gaping holesThree Massachusetts Institute of Technology undergraduates are once again free to publicly discuss gaping security holes in the Boston subway system after a federal judge refused to renew a gag order requested by transportation officials.…<br/><br/>115 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Judge dissolves gag order against MIT students]]></title>
<link>http://bestofsecurity.net/news/Judge_dissolves_gag_order_against_MIT_students/</link>
<comments>http://bestofsecurity.net/news/Judge_dissolves_gag_order_against_MIT_students/</comments>
<pubDate>Tue, 19 Aug 2008 16:00:15 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Judge_dissolves_gag_order_against_MIT_students/</guid>
<description><![CDATA[A U.S. District Court judge on Tuesday dissolved a gag order against a trio of MIT students who said they found flaws in the Massachusetts transit authority&amp;#39;s ticketing system.<br/><br/>72 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Internet-threat portal on tap from TippingPoint]]></title>
<link>http://bestofsecurity.net/news/Internet-threat_portal_on_tap_from_TippingPoint/</link>
<comments>http://bestofsecurity.net/news/Internet-threat_portal_on_tap_from_TippingPoint/</comments>
<pubDate>Tue, 19 Aug 2008 12:00:11 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Internet-threat_portal_on_tap_from_TippingPoint/</guid>
<description><![CDATA[TippingPoint &amp;#160;is beta-testing a Web portal that lets customers view Internet-threat intelligence the company has gathered from around the globe, as well as polls of how other customers are dealing with those threats.<br/><br/>144 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Mystery Fedora disruption prompts security fears]]></title>
<link>http://bestofsecurity.net/news/Mystery_Fedora_disruption_prompts_security_fears/</link>
<comments>http://bestofsecurity.net/news/Mystery_Fedora_disruption_prompts_security_fears/</comments>
<pubDate>Tue, 19 Aug 2008 09:00:10 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Mystery_Fedora_disruption_prompts_security_fears/</guid>
<description><![CDATA[Did security breach prompt ground-up rebuild?The majority of servers supporting the Fedora Linux distribution were back online on Tuesday following a mystery disruption.…<br/><br/>148 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] More 'Cloned' Vehicles Shows Threat Remains]]></title>
<link>http://bestofsecurity.net/news/ISN_More_Cloned_Vehicles_Shows_Threat_Remains/</link>
<comments>http://bestofsecurity.net/news/ISN_More_Cloned_Vehicles_Shows_Threat_Remains/</comments>
<pubDate>Tue, 19 Aug 2008 07:00:50 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_More_Cloned_Vehicles_Shows_Threat_Remains/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Tue, 19 Aug 2008 05:07:34 -0500 (CDT)http://hstoday.us/content/view/4738/128/By Anthony L. Kimery    Hstoday.us16 August 2008 In the trunk of the fake utility company's car was hundreds of pounds of potThis past Tuesday, alert US Border Patrol agents pulled over a suspicious white Ford Taurus bearing the logo of San Diego Gas &amp;amp; Electric (SDG&amp;amp;E) company on its doors near the border town of Campo, California.What raised the agents' suspicions is SDG&amp;a<br/><br/>174 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[[ISN] Canada probes security breach]]></title>
<link>http://bestofsecurity.net/news/ISN_Canada_probes_security_breach/</link>
<comments>http://bestofsecurity.net/news/ISN_Canada_probes_security_breach/</comments>
<pubDate>Tue, 19 Aug 2008 07:00:47 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/ISN_Canada_probes_security_breach/</guid>
<description><![CDATA[From: InfoSec News &amp;lt;alerts_at_private&amp;gt;Date: Tue, 19 Aug 2008 05:07:49 -0500 (CDT)http://www.abc.net.au/news/stories/2008/08/16/2337469.htmBy Dan Karpenchuk in TorontoABC.net.auAug 16, 2008Canada is again facing an embarrassing security breach after a sensitive government document was found on a rainy Ottawa street.The document, made up of 131 pages, was found on a rain-soaked street in a brown envelope.It was titled Nemesis - a classified database used by officers to track and prosecute polluters and<br/><br/>131 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Goldfish customers sent wrong bills]]></title>
<link>http://bestofsecurity.net/news/Goldfish_customers_sent_wrong_bills/</link>
<comments>http://bestofsecurity.net/news/Goldfish_customers_sent_wrong_bills/</comments>
<pubDate>Tue, 19 Aug 2008 07:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Goldfish_customers_sent_wrong_bills/</guid>
<description><![CDATA['We're sorry about that. We're sorry about that'A printing mix-up resulted in thousands of Goldfish credit card customers receiving other people's bills.…<br/><br/>123 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Vodafone exec stabbed to death in country home]]></title>
<link>http://bestofsecurity.net/news/Vodafone_exec_stabbed_to_death_in_country_home/</link>
<comments>http://bestofsecurity.net/news/Vodafone_exec_stabbed_to_death_in_country_home/</comments>
<pubDate>Tue, 19 Aug 2008 05:00:06 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Vodafone_exec_stabbed_to_death_in_country_home/</guid>
<description><![CDATA[Man questionedPolice are questioning a man following the murder of a senior Vodafone UK executive on Saturday.…<br/><br/>159 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Symantec nabs PC Tools for added street cred]]></title>
<link>http://bestofsecurity.net/news/Symantec_nabs_PC_Tools_for_added_street_cred/</link>
<comments>http://bestofsecurity.net/news/Symantec_nabs_PC_Tools_for_added_street_cred/</comments>
<pubDate>Tue, 19 Aug 2008 03:00:18 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Symantec_nabs_PC_Tools_for_added_street_cred/</guid>
<description><![CDATA[G'day to added anti-spywareSecurity and storage giant Symantec has agreed to buy specialist Australian-based anti-spyware firm PC Tools. Terms of the deal were undisclosed in Monday's announcement.…<br/><br/>132 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Google launches white spaces campaign]]></title>
<link>http://bestofsecurity.net/news/Google_launches_white_spaces_campaign/</link>
<comments>http://bestofsecurity.net/news/Google_launches_white_spaces_campaign/</comments>
<pubDate>Mon, 18 Aug 2008 20:00:08 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Google_launches_white_spaces_campaign/</guid>
<description><![CDATA[Google hopes a new Web site will help convince the U.S. Federal Communications Commission to allow a new generation of wireless broadband devices to connect via unused television spectrum.<br/><br/>187 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Encryption Finally Goes Mainstream]]></title>
<link>http://bestofsecurity.net/news/Encryption_Finally_Goes_Mainstream/</link>
<comments>http://bestofsecurity.net/news/Encryption_Finally_Goes_Mainstream/</comments>
<pubDate>Mon, 18 Aug 2008 19:00:39 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>news</category>
<guid>http://bestofsecurity.net/news/Encryption_Finally_Goes_Mainstream/</guid>
<description><![CDATA[In this installment of the IT Link podcast hosted by Mike V