<?phpxml version="1.0" encoding="utf-8"?>
<rss version="2.0" 
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
>
<channel>
<title>Best of Security / Published News / blogs</title>
<link>http://bestofsecurity.net</link>
<description>Best of Security Portal  votes</description>
<pubDate>Fri, 29 Aug 2008 17:00:22 PDT</pubDate>
<language>en</language>
<item>
<title><![CDATA[Dissecting Shellcode in Malicious Web Sites]]></title>
<link>http://bestofsecurity.net/blogs/Dissecting_Shellcode_in_Malicious_Web_Sites/</link>
<comments>http://bestofsecurity.net/blogs/Dissecting_Shellcode_in_Malicious_Web_Sites/</comments>
<pubDate>Fri, 29 Aug 2008 17:00:22 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Dissecting_Shellcode_in_Malicious_Web_Sites/</guid>
<description><![CDATA[Today's blog shows how we can debug the shellcode that we find in malicious Web sites. You might ask: what does this shellcode do? And how can I debug it? One way to find out is to write a quick C program that has the shellcode bytes in a buffer. Then, we define a pointer function to point to the code and execute it! <br/><br/>195 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[When Spammers Kill You While You Sleep]]></title>
<link>http://bestofsecurity.net/blogs/When_Spammers_Kill_You_While_You_Sleep/</link>
<comments>http://bestofsecurity.net/blogs/When_Spammers_Kill_You_While_You_Sleep/</comments>
<pubDate>Fri, 29 Aug 2008 16:00:11 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/When_Spammers_Kill_You_While_You_Sleep/</guid>
<description><![CDATA[I must admit that I was puzzled for a second when I saw an email with a suicide note as subject line in my spam inbox. I wondered what product they might try to sell with that note or which drive-by download site might be hidden behind it. So, I opened it. The email was actually written like a real suicide note.<br/><br/>94 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Security Bugs Vs. Regular Bugs]]></title>
<link>http://bestofsecurity.net/blogs/Security_Bugs_Vs-_Regular_Bugs/</link>
<comments>http://bestofsecurity.net/blogs/Security_Bugs_Vs-_Regular_Bugs/</comments>
<pubDate>Fri, 29 Aug 2008 16:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Security_Bugs_Vs-_Regular_Bugs/</guid>
<description><![CDATA[There has been much debate recently that stems from discussions related to Linux kernel development, over whether or not security vulnerabilities should be treated differently than regular software bugs. This has meant there has been a slight departure from the exhausted &quot;full disclosure&quot; debate<br/><br/>200 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Do You Know Where Your Baby Is?]]></title>
<link>http://bestofsecurity.net/blogs/Do_You_Know_Where_Your_Baby_Is/</link>
<comments>http://bestofsecurity.net/blogs/Do_You_Know_Where_Your_Baby_Is/</comments>
<pubDate>Fri, 29 Aug 2008 16:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Do_You_Know_Where_Your_Baby_Is/</guid>
<description><![CDATA[Notice! The virus-spreading spammer doesn't have your baby but is claiming to. In recent emails observed by Symantec, malicious code is being spread by hoax emails claiming to have pictures of your hijacked [sic] baby. The Subject line makes the claim that someone has<br/><br/>52 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[FBI Warns of Hit Man Scam Resurgence]]></title>
<link>http://bestofsecurity.net/blogs/FBI_Warns_of_Hit_Man_Scam_Resurgence/</link>
<comments>http://bestofsecurity.net/blogs/FBI_Warns_of_Hit_Man_Scam_Resurgence/</comments>
<pubDate>Fri, 29 Aug 2008 09:00:19 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/FBI_Warns_of_Hit_Man_Scam_Resurgence/</guid>
<description><![CDATA[The FBI is warning people not to be disturbed by an e-mail scam that threatens your life and orders you to pay up to avoid being the target of a hired hit man. The FBI said its Internet Crime Complaint Center continues to receive thousands of reports concerning the hit man e-mail scheme. The FBI notes that while the content of the missive has evolved since similar hit man scams first surfaced in late 20006,...Please click on the title to continue reading this entry.<br/><br/>158 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Report Slams U.S. Host as Major Source of Badware]]></title>
<link>http://bestofsecurity.net/blogs/Report_Slams_U-S-_Host_as_Major_Source_of_Badware/</link>
<comments>http://bestofsecurity.net/blogs/Report_Slams_U-S-_Host_as_Major_Source_of_Badware/</comments>
<pubDate>Thu, 28 Aug 2008 17:00:08 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Report_Slams_U-S-_Host_as_Major_Source_of_Badware/</guid>
<description><![CDATA[Last week, I examined a series of Web services that make profiting from cyber crime a point-and-click exercise that even the most novice hackers can master. Today, I'd like to highlight the activities of Atrivo, a Concord, Calif., based network provider that hosts some of these services. Several noted security researchers are releasing a report today that stems from many months of investigating malicious activity emanating from Atrivo's customers. Security experts say that Atrivo, also...Please click on th<br/><br/>151 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[White House Imposes New Security Mandate for Federal Agencies]]></title>
<link>http://bestofsecurity.net/blogs/White_House_Imposes_New_Security_Mandate_for_Federal_Agencies/</link>
<comments>http://bestofsecurity.net/blogs/White_House_Imposes_New_Security_Mandate_for_Federal_Agencies/</comments>
<pubDate>Wed, 27 Aug 2008 09:00:08 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/White_House_Imposes_New_Security_Mandate_for_Federal_Agencies/</guid>
<description><![CDATA[The Bush administration has ordered all federal agencies to adopt new measures to shore up the security of government Web sites, setting a January 2009 deadline for implementing the changes across all dot-gov domains. Agencies will be required to roll out domain name system security extensions (DNSSEC), a set of security add-ons for the domain name system. DNS is a fundamental piece of the Internet infrastructure that acts as a kind of distributed Internet phone...Please click on the title to continue read<br/><br/>198 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[PCI-DSS Version 1.2 - Changes Forthcoming]]></title>
<link>http://bestofsecurity.net/blogs/PCI-DSS_Version_1-2_-_Changes_Forthcoming/</link>
<comments>http://bestofsecurity.net/blogs/PCI-DSS_Version_1-2_-_Changes_Forthcoming/</comments>
<pubDate>Wed, 27 Aug 2008 00:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/PCI-DSS_Version_1-2_-_Changes_Forthcoming/</guid>
<description><![CDATA[The PCI Security Standards Council has released a summary of changes and clarifications for version 1.2 of the PCI-DSS standard, which is scheduled for release on October 1, 2008. In an effort to combat the growing problem of card theft, the Payment Card Industry Data Security Standard has been established to ensure that through the use of imposed regulations, compromises of customer card data will not be easily possible.<br/><br/>143 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[A recent spam worm analysis]]></title>
<link>http://bestofsecurity.net/blogs/A_recent_spam_worm_analysis/</link>
<comments>http://bestofsecurity.net/blogs/A_recent_spam_worm_analysis/</comments>
<pubDate>Tue, 26 Aug 2008 21:00:15 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/A_recent_spam_worm_analysis/</guid>
<description><![CDATA[Here in the Labs, we've recently discovered a new spam worm spreading. It is usually sent with spam that tries to deceive users into clicking a malicious URL contained in the message. Once clicked, the URL redirects users to malicious Web sites that result in an ActiveX Object error. The intention of this error is to&amp;nbsp;manipulate&amp;nbsp;users to download files infected with a virus. <br/><br/>89 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Web Fraud 2.0: Thwarting Anti-Spam Defenses]]></title>
<link>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Thwarting_Anti-Spam_Defenses/</link>
<comments>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Thwarting_Anti-Spam_Defenses/</comments>
<pubDate>Mon, 25 Aug 2008 08:00:06 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Thwarting_Anti-Spam_Defenses/</guid>
<description><![CDATA[Spammers have made great strides this past year in defeating CAPTCHAs, the distorted text used as a security test to ensure a person and not a machine is behind a computer screen. But automated programs that spammers use to thwart CAPTCHAs still aren't nearly as successful as the practice of hiring thousands of people to do nothing but remotely solve the puzzles for clients. This is the business model behind anti-captcha.com, a subscription service that...Please click on the title to continue reading this <br/><br/>68 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Finding the virtual address of COM object functions]]></title>
<link>http://bestofsecurity.net/blogs/Finding_the_virtual_address_of_COM_object_functions/</link>
<comments>http://bestofsecurity.net/blogs/Finding_the_virtual_address_of_COM_object_functions/</comments>
<pubDate>Fri, 22 Aug 2008 16:00:20 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Finding_the_virtual_address_of_COM_object_functions/</guid>
<description><![CDATA[Some of us know tools that can take a COM Object module (also known as an ActiveX Control) and show us information about it, such as the names of its objects and functions.Two examples of such tools are the OlyView and TLB Viewer.But what if we want to know additional information, such as the virtual address inside themodule that handles each function of our object?<br/><br/>181 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Web Fraud 2.0: Distributing Your Malware]]></title>
<link>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Distributing_Your_Malware/</link>
<comments>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Distributing_Your_Malware/</comments>
<pubDate>Fri, 22 Aug 2008 08:00:06 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Distributing_Your_Malware/</guid>
<description><![CDATA[The allure of cyber crime lies in its promise of quick riches, much like that of the illegal drug trade. But building a network of hacked personal computers that can distribute your data-stealing malicious software is a time-consuming process that requires a modicum of skill. That is, until recently, when several online services have emerged that promise to help would-be cyber crooks graduate from common street dealers to distributors overnight. Such is the aim of...Please click on the title to continue re<br/><br/>168 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Malicious Flash redirectors]]></title>
<link>http://bestofsecurity.net/blogs/Malicious_Flash_redirectors/</link>
<comments>http://bestofsecurity.net/blogs/Malicious_Flash_redirectors/</comments>
<pubDate>Thu, 21 Aug 2008 16:00:35 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Malicious_Flash_redirectors/</guid>
<description><![CDATA[Most of our blog readers are probably quite familiar with the use of redirectors by malicious groups to automatically redirect a user upon visiting a page. Generally, this is done so that users are presented with a link they are more familiar with, but that has been compromised in some way. For example, they may have added a few, very subtle lines of code that redirect the user to a more malicious Web site, less known to the user, and in many cases more dynamic in both content and location. <br/><br/>130 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Russia/Georgia Conflict News Used to Hide Malicious Code in Spam]]></title>
<link>http://bestofsecurity.net/blogs/RussiaGeorgia_Conflict_News_Used_to_Hide_Malicious_Code_in_Spam/</link>
<comments>http://bestofsecurity.net/blogs/RussiaGeorgia_Conflict_News_Used_to_Hide_Malicious_Code_in_Spam/</comments>
<pubDate>Thu, 21 Aug 2008 16:00:24 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/RussiaGeorgia_Conflict_News_Used_to_Hide_Malicious_Code_in_Spam/</guid>
<description><![CDATA[In the past few days Symantec has observed virus spam masquerading as news articles regarding the current Georgia-Russia conflict. We felt it was important to blog about this because this particular event is garnering a lot of media attention and holds a very high profile.<br/><br/>64 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Spam and Malware Ecosystem Targeting Brazilian Users with YouTube and Adobe Flash Themes]]></title>
<link>http://bestofsecurity.net/blogs/Spam_and_Malware_Ecosystem_Targeting_Brazilian_Users_with_YouTube_and_Adobe_Flash_Themes/</link>
<comments>http://bestofsecurity.net/blogs/Spam_and_Malware_Ecosystem_Targeting_Brazilian_Users_with_YouTube_and_Adobe_Flash_Themes/</comments>
<pubDate>Thu, 21 Aug 2008 12:00:11 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Spam_and_Malware_Ecosystem_Targeting_Brazilian_Users_with_YouTube_and_Adobe_Flash_Themes/</guid>
<description><![CDATA[Websense has discovered an ecosystem representing the combined tactics of spammers and malware authors targeting Brazilian users. This ecosystem comprises automated bots, templates of spam content with links encouraging users to watch a video on YouTube (Brazilian site). Through these email campaigns, the spammers invite targeted users to a fake page that resembles the Adobe Flash Player download site (Brazilian version), encouraging users to download the Adobe Flash installer which is actually a malicious<br/><br/>83 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Opera Update Plugs Multiple Security Holes]]></title>
<link>http://bestofsecurity.net/blogs/Opera_Update_Plugs_Multiple_Security_Holes/</link>
<comments>http://bestofsecurity.net/blogs/Opera_Update_Plugs_Multiple_Security_Holes/</comments>
<pubDate>Thu, 21 Aug 2008 12:00:03 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Opera_Update_Plugs_Multiple_Security_Holes/</guid>
<description><![CDATA[Opera has released a software update that fixes at least seven security vulnerabilities in the Web browser program. Users may be prompted to update when they first launch the browser. Alternatively, Opera surfers can simply select &quot;Help&quot; and &quot;Check for New Release.&quot; Opera 9.52 corrects a number of bugs in addition to the security problems. You can read more about what's included in the update on Opera's Web site. I've been trying to split more...Please click on the title to continue reading this entry.<br/><br/>142 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Web Fraud 2.0: Digital Forgeries]]></title>
<link>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Digital_Forgeries/</link>
<comments>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Digital_Forgeries/</comments>
<pubDate>Thu, 21 Aug 2008 08:00:16 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Digital_Forgeries/</guid>
<description><![CDATA[For businesses, positively identifying someone online - by name, or physical location - is extremely difficult. Many Internet firms seek to verify the identity of customers by requesting scanned copies of their driver's licenses, passports, or utility bills. But what if services aimed at creating counterfeit versions of these documents became widespread? How long would businesses continue to rely on this method of identification? Unfortunately, there are several such services. Among the most active is...Pl<br/><br/>62 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Tall Latte, Hold the Malware]]></title>
<link>http://bestofsecurity.net/blogs/Tall_Latte_Hold_the_Malware/</link>
<comments>http://bestofsecurity.net/blogs/Tall_Latte_Hold_the_Malware/</comments>
<pubDate>Wed, 20 Aug 2008 16:00:17 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Tall_Latte_Hold_the_Malware/</guid>
<description><![CDATA[There's nothing like coffee one-upmanship to make the blood boil. &quot;You're still drinking lattes? With actual milk from a cow? Good grief, where have you been?&quot; Nowadays though, it seems that coffee one-upmanship is no longer enough to secure the seemingly coveted &quot;hippest person in the cafE&quot; crown.<br/><br/>108 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Web Fraud 2.0: Validating Your Stolen Goods]]></title>
<link>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Validating_Your_Stolen_Goods/</link>
<comments>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Validating_Your_Stolen_Goods/</comments>
<pubDate>Wed, 20 Aug 2008 08:00:10 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Validating_Your_Stolen_Goods/</guid>
<description><![CDATA[If there is any truth to the old saying that there is no honor among thieves then it is doubly true for thieves who transact with one another yet never actually meet face-to-face. Perhaps that explains the popularity of certain services in the underground cyber crime economy that make it easy for crooks to purchase stolen credit and bank accounts in bulk and check whether the accounts are legitimate and active. From the many hours...Please click on the title to continue reading this entry.<br/><br/>128 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Travel the World without Moving - Literally!]]></title>
<link>http://bestofsecurity.net/blogs/Travel_the_World_without_Moving_-_Literally/</link>
<comments>http://bestofsecurity.net/blogs/Travel_the_World_without_Moving_-_Literally/</comments>
<pubDate>Tue, 19 Aug 2008 16:00:24 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Travel_the_World_without_Moving_-_Literally/</guid>
<description><![CDATA[Back in the 90's, Jamiroquai had a hit album named &quot;Travelling without Moving.&quot; The title gives an apt description of some of the fantastic things that you can now do on the Internet. For example, we can now literally travel the world without moving beyond the comfort of the armchair.<br/><br/>114 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Web Fraud 2.0: Cloaking Connections]]></title>
<link>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Cloaking_Connections/</link>
<comments>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Cloaking_Connections/</comments>
<pubDate>Tue, 19 Aug 2008 08:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Web_Fraud_2-0_Cloaking_Connections/</guid>
<description><![CDATA[These days, nearly every aspect of the underground online economy that supports commercial crime operations has been automated. Online forums and criminal social networking sites have long offered aspiring newbies tips on getting started. But a slew of extremely popular Web sites increasingly are making it possible for newcomers to begin reaping profits from their activities through point-and-click Web interfaces that even the most novice hackers can navigate. What follows today and throughout the rest...P<br/><br/>65 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Facebook Viral Social Networking Spam]]></title>
<link>http://bestofsecurity.net/blogs/Facebook_Viral_Social_Networking_Spam/</link>
<comments>http://bestofsecurity.net/blogs/Facebook_Viral_Social_Networking_Spam/</comments>
<pubDate>Mon, 18 Aug 2008 20:00:20 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Facebook_Viral_Social_Networking_Spam/</guid>
<description><![CDATA[Websense Security Labs has been tracking various Facebook attacks for many years. We've had to create numerous tools and methods to detect these types of attacks because most Web 2.0 social networking sites are difficult to track due to limited public access to most accounts. Most social networking accounts can only be viewed if the account holder explicitly accepts or requests another account to be added as a &quot;friend&quot;. A generic Web crawler and even a search engine Web crawler would not be able to mine th<br/><br/>147 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Large-Scale Spam Campaign Continues]]></title>
<link>http://bestofsecurity.net/blogs/Large-Scale_Spam_Campaign_Continues/</link>
<comments>http://bestofsecurity.net/blogs/Large-Scale_Spam_Campaign_Continues/</comments>
<pubDate>Mon, 18 Aug 2008 16:00:23 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Large-Scale_Spam_Campaign_Continues/</guid>
<description><![CDATA[As expected, the arrival of the 2008 Olympics in Beijing was accompanied by an increase in Olympics-related spam. From fake news to performance enhancing medication, spammers are taking full advantage of the Games to entice us to click their links and open their attachments.<br/><br/>50 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[The Summer Storm]]></title>
<link>http://bestofsecurity.net/blogs/The_Summer_Storm/</link>
<comments>http://bestofsecurity.net/blogs/The_Summer_Storm/</comments>
<pubDate>Mon, 18 Aug 2008 16:00:16 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/The_Summer_Storm/</guid>
<description><![CDATA[Seventy-seven megabytes of network traffic, 356 spam emails sent and 10,082 unique IP addresses contacted. All in just under 60 minutes.<br/><br/>106 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Q&amp;A With FBI's Cyber Division Chief]]></title>
<link>http://bestofsecurity.net/blogs/QA_With_FBIs_Cyber_Division_Chief/</link>
<comments>http://bestofsecurity.net/blogs/QA_With_FBIs_Cyber_Division_Chief/</comments>
<pubDate>Mon, 18 Aug 2008 12:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/QA_With_FBIs_Cyber_Division_Chief/</guid>
<description><![CDATA[At the end of the Black Hat hacker convention in Las Vegas a week ago Thursday, I had a few minutes to sit down with James Finch, head of the FBI's Cyber Division. What follows is an excerpted Q&amp;A from that discussion, in which Finch describes himself as a serious geek who refuses to be spooked by organized cyber criminal gangs that target online banking customers and other 'Netizens. Q: I see you've got a...Please click on the title to continue reading this entry.<br/><br/>102 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Another Round of Peacomm Infections Underway]]></title>
<link>http://bestofsecurity.net/blogs/Another_Round_of_Peacomm_Infections_Underway/</link>
<comments>http://bestofsecurity.net/blogs/Another_Round_of_Peacomm_Infections_Underway/</comments>
<pubDate>Fri, 15 Aug 2008 16:00:48 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Another_Round_of_Peacomm_Infections_Underway/</guid>
<description><![CDATA[The Peacomm network has definitely turned out to be a survivor. With infections dating back to January 2007 and a P2P structure largely unchanged in about a year, Peacomm continues to evolve and infect new hosts. In early August our honeypots began capturing a new version of Peacomm.<br/><br/>82 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Black Hat Review - Conclusion]]></title>
<link>http://bestofsecurity.net/blogs/Black_Hat_Review_-_Conclusion/</link>
<comments>http://bestofsecurity.net/blogs/Black_Hat_Review_-_Conclusion/</comments>
<pubDate>Fri, 15 Aug 2008 16:00:43 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Black_Hat_Review_-_Conclusion/</guid>
<description><![CDATA[Well, sadly the time seemed to fly by and last week's conference ended more quickly than I would have liked. I didn't have the time to stay in Vegas and attend the DEFCON conference either. Even though I really wanted to see Christopher Tarnovsky demonstrate smartcard/microcontroller fault induction in person, I decided to attend briefings that greatly complemented the briefings that I attended previously.<br/><br/>71 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Security Professionals and Social Networks]]></title>
<link>http://bestofsecurity.net/blogs/Security_Professionals_and_Social_Networks/</link>
<comments>http://bestofsecurity.net/blogs/Security_Professionals_and_Social_Networks/</comments>
<pubDate>Fri, 15 Aug 2008 16:00:40 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Security_Professionals_and_Social_Networks/</guid>
<description><![CDATA[Security professional understand the risks of social networks better than anyone. So, given the concerns they may have, do they actually use social networks? Earlier this year we surveyed 87 security administrators from companies in North America and Europe, from both large companies and small, in order to find out.<br/><br/>92 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[CNN and MSNBC Olympic spoof emails - 5 million spam messages per hour]]></title>
<link>http://bestofsecurity.net/blogs/CNN_and_MSNBC_Olympic_spoof_emails_-_5_million_spam_messages_per_hour/</link>
<comments>http://bestofsecurity.net/blogs/CNN_and_MSNBC_Olympic_spoof_emails_-_5_million_spam_messages_per_hour/</comments>
<pubDate>Thu, 14 Aug 2008 20:00:14 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/CNN_and_MSNBC_Olympic_spoof_emails_-_5_million_spam_messages_per_hour/</guid>
<description><![CDATA[Over the last week in the Labs, we have alerted on and discovered a series of news alert spoofed emails which spread malware when links in the emails are clicked. Malicious emails of this news-related, social engineering tactic have been circulating for the last few months. They have evolved into attempts to entice end users to click on their malicious links by presenting news story links for users to click. Until these two recent examples of social engineering with the CNN and MSNBC spoof emails, the ille<br/><br/>174 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Black Hat Review - Day 1]]></title>
<link>http://bestofsecurity.net/blogs/Black_Hat_Review_-_Day_1/</link>
<comments>http://bestofsecurity.net/blogs/Black_Hat_Review_-_Day_1/</comments>
<pubDate>Wed, 13 Aug 2008 16:00:16 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Black_Hat_Review_-_Day_1/</guid>
<description><![CDATA[The first day of the Black Hat conference briefings came to an end and in retrospect, it was far from bland. From Professor Angell's esoteric keynote speech touching on how the combination of computers and human activity systems can spawn systemic risk, to a Palace 1 conference room packed wall-to-wall with eager ears ready to listen to Dan Kaminsky deliver his briefing for DNS titled &quot;DNS Goodness.&quot;<br/><br/>83 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Georgia-Russia conflict: Impact on the Threat Webscape]]></title>
<link>http://bestofsecurity.net/blogs/Georgia-Russia_conflict_Impact_on_the_Threat_Webscape/</link>
<comments>http://bestofsecurity.net/blogs/Georgia-Russia_conflict_Impact_on_the_Threat_Webscape/</comments>
<pubDate>Wed, 13 Aug 2008 12:00:12 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Georgia-Russia_conflict_Impact_on_the_Threat_Webscape/</guid>
<description><![CDATA[If you have been following recent news, you have probably seen that the top stories are covering the conflict in Georgia. In the Security Labs, we have seen evidence of attacks that are typical of so-called cyber-warfare attacks. Certainly, DDoS attacks and defacements are not new and have been used by those with malicious intent during events such as public riots or events of a politicial nature.<br/><br/>107 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Patch Tuesday - August 2008]]></title>
<link>http://bestofsecurity.net/blogs/Patch_Tuesday_-_August_2008/</link>
<comments>http://bestofsecurity.net/blogs/Patch_Tuesday_-_August_2008/</comments>
<pubDate>Tue, 12 Aug 2008 20:00:21 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Patch_Tuesday_-_August_2008/</guid>
<description><![CDATA[This month, Microsoft released 11 security bulletins of which 6 were rated critical. Microsoft has finally patched the Snapshot Viewer ActiveX control vulnerability, which we have previously blogged about when we discovered hundreds of sites silently infecting their visitors with modified proof-of-concept exploit code. The window of exposure for this web-borne attack is at least 1 month and 5 days, given that it was first publicly announced on July 7th and only patched today.<br/><br/>126 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Microsoft Patches 26 Security Holes]]></title>
<link>http://bestofsecurity.net/blogs/Microsoft_Patches_26_Security_Holes/</link>
<comments>http://bestofsecurity.net/blogs/Microsoft_Patches_26_Security_Holes/</comments>
<pubDate>Tue, 12 Aug 2008 16:00:10 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Microsoft_Patches_26_Security_Holes/</guid>
<description><![CDATA[Microsoft today released updates to fix at least 26 security vulnerabilities in its Windows operating systems and other software. At least 17 of those flaws earned Microsoft's &quot;critical&quot; rating, meaning they could be exploited to break into vulnerable systems with little or no help from the victim. The 26 vulnerabilities are the most Microsoft has addressed since it had 25 in August of 2006, which also included 17 rated as critical, according to anti-virus firm...Please click on the title to continue readi<br/><br/>110 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Black Hat USA 2008 Wrap Up]]></title>
<link>http://bestofsecurity.net/blogs/Black_Hat_USA_2008_Wrap_Up/</link>
<comments>http://bestofsecurity.net/blogs/Black_Hat_USA_2008_Wrap_Up/</comments>
<pubDate>Tue, 12 Aug 2008 12:00:24 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Black_Hat_USA_2008_Wrap_Up/</guid>
<description><![CDATA[On Day 2 at BlackHat USA, there were a few talks that several Websense researchers were highly anticipating. One of the talks was by JavaScript guru Billy Hoffman, titled &quot;Circumventing Automated JavaScript Analysis Tools&quot;. At Websense Security Labs we see a lot of malicious JavaScript, and we are always looking for new information and research in this area. Billy Hoffman has always been a great source of information regarding JavaScript and its malicious use.<br/><br/>185 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[New Tool to Automate Cookie Stealing from Gmail, Others]]></title>
<link>http://bestofsecurity.net/blogs/New_Tool_to_Automate_Cookie_Stealing_from_Gmail_Others/</link>
<comments>http://bestofsecurity.net/blogs/New_Tool_to_Automate_Cookie_Stealing_from_Gmail_Others/</comments>
<pubDate>Sun, 10 Aug 2008 12:00:06 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/New_Tool_to_Automate_Cookie_Stealing_from_Gmail_Others/</guid>
<description><![CDATA[LAS VEGAS, NEV. -- If you use Gmail and haven't yet taken advantage of a feature Google  unveiled last week to prevent hackers from hijacking your inbox, now would be an excellent time to do that. A security researcher at the Defcon hacker conference in Las Vegas on Saturday demonstrated a tool he built that allows attackers to break into your inbox even if you are accessing your Gmail over a persistent, encrypted session (using...Please click on the title to continue reading this entry.<br/><br/>142 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Georgian Web Sites Under Attack]]></title>
<link>http://bestofsecurity.net/blogs/Georgian_Web_Sites_Under_Attack/</link>
<comments>http://bestofsecurity.net/blogs/Georgian_Web_Sites_Under_Attack/</comments>
<pubDate>Sun, 10 Aug 2008 00:00:06 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Georgian_Web_Sites_Under_Attack/</guid>
<description><![CDATA[As Russian bombs rained down on towns in separatist towns of the former Soviet republic of Georgia, hackers mounted a digital assault on the nation's top Web properties this week, knocking government Web sites offline and defacing others. According to reports from security experts who have been monitoring the ongoing cyber attacks, the Web site for the office of Georgia Foreign Affairs (mfa.gov.ge) was hacked, and its homepage was replaced with images depicting Georgia's president...Please click on the tit<br/><br/>158 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[The BlackHat 2008 Attendee Survey Results Are In!]]></title>
<link>http://bestofsecurity.net/blogs/The_BlackHat_2008_Attendee_Survey_Results_Are_In/</link>
<comments>http://bestofsecurity.net/blogs/The_BlackHat_2008_Attendee_Survey_Results_Are_In/</comments>
<pubDate>Fri, 08 Aug 2008 16:00:09 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/The_BlackHat_2008_Attendee_Survey_Results_Are_In/</guid>
<description><![CDATA[On the opening day of BlackHat 2008, Symantec commissioned an anonymous survey among the attendees to learn about contemporary views on security related topics, such as vulnerability research, future threats and trends, and what types of challenges we as security professionals will collectively face in the coming year.<br/><br/>111 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Wireless Awareness: Don't Be A Sheep]]></title>
<link>http://bestofsecurity.net/blogs/Wireless_Awareness_Dont_Be_A_Sheep/</link>
<comments>http://bestofsecurity.net/blogs/Wireless_Awareness_Dont_Be_A_Sheep/</comments>
<pubDate>Fri, 08 Aug 2008 12:00:08 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Wireless_Awareness_Dont_Be_A_Sheep/</guid>
<description><![CDATA[LAS VEGAS, NEV. -- iPhones and other mobile devices with wireless access were among the top contributors to this year's &quot;Wall of Sheep,&quot; a public shaming exercise debuting at the Black Hat security conference in Las Vegas this week that aims to educate people about the dangers of sending e-mail and other online communications over open wireless networks. Conference organizers issued a clear warning to attendees: If you check your e-mail or communicate using the...Please click on the title to continue readi<br/><br/>60 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Online Crime Gang Stole Millions]]></title>
<link>http://bestofsecurity.net/blogs/Online_Crime_Gang_Stole_Millions/</link>
<comments>http://bestofsecurity.net/blogs/Online_Crime_Gang_Stole_Millions/</comments>
<pubDate>Thu, 07 Aug 2008 16:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Online_Crime_Gang_Stole_Millions/</guid>
<description><![CDATA[LAS VEGAS, NEV. -- To gain a grasp of just how badly organized cyber-crime groups are fleecing American banks and consumers, it may be instructive to look at the details released this week about the operations of a single online crime gang, that is responsible for undoubtedly the largest cache of stolen data ever uncovered. The info comes from Joe Stewart, a researcher with Atlanta based SecureWorks who has been studying the operations of a...Please click on the title to continue reading this entry.<br/><br/>90 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Researchers Warn of Social Networking Scams]]></title>
<link>http://bestofsecurity.net/blogs/Researchers_Warn_of_Social_Networking_Scams/</link>
<comments>http://bestofsecurity.net/blogs/Researchers_Warn_of_Social_Networking_Scams/</comments>
<pubDate>Thu, 07 Aug 2008 16:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Researchers_Warn_of_Social_Networking_Scams/</guid>
<description><![CDATA[LAS VEGAS, NEV. -- Social networking sites like Facebook, MySpace and LinkedIn are fast emerging as some of the most fertile grounds for malicious software, identity thieves and online mischief-makers. And while some of the talks given here at the Black Hat hacker conference would probably make most people want to avoid social networking sites altogether, it turns out that staying off of these networks entirely may not be the safest option either. The biggest...Please click on the title to continue reading<br/><br/>172 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Kaminsky Details DNS Flaw at Black Hat Talk]]></title>
<link>http://bestofsecurity.net/blogs/Kaminsky_Details_DNS_Flaw_at_Black_Hat_Talk/</link>
<comments>http://bestofsecurity.net/blogs/Kaminsky_Details_DNS_Flaw_at_Black_Hat_Talk/</comments>
<pubDate>Thu, 07 Aug 2008 00:00:10 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Kaminsky_Details_DNS_Flaw_at_Black_Hat_Talk/</guid>
<description><![CDATA[LAS VEGAS, NEV. -- Roughly 85 percent of Fortune 500 companies have patched their networks to fix a security flaw that lets cyber criminals redirect visitors to counterfeit or malicious Web sites, but Internet users still remain at grave risk due to the large number of infrastructure providers that have not yet addressed the issue, a prominent security researcher warned today. The data comes from a talk presented here at the Black Hat security conference...Please click on the title to continue reading this<br/><br/>176 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Black Hat USA 2008]]></title>
<link>http://bestofsecurity.net/blogs/Black_Hat_USA_2008/</link>
<comments>http://bestofsecurity.net/blogs/Black_Hat_USA_2008/</comments>
<pubDate>Wed, 06 Aug 2008 20:00:06 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Black_Hat_USA_2008/</guid>
<description><![CDATA[This week several researchers from the Websense team are in Las Vegas, attending one of the largest gatherings of Internet security professionals: Black Hat USA 2008. We'll be here through the weekend, checking out dozens of appealing talks that have the potential for interesting developments. Stick around for updates on any news that strikes us as worthy of note! &amp;nbsp;<br/><br/>203 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Study: Site Redirects Abundant, Aid Phishers]]></title>
<link>http://bestofsecurity.net/blogs/Study_Site_Redirects_Abundant_Aid_Phishers-1/</link>
<comments>http://bestofsecurity.net/blogs/Study_Site_Redirects_Abundant_Aid_Phishers-1/</comments>
<pubDate>Wed, 06 Aug 2008 16:00:17 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Study_Site_Redirects_Abundant_Aid_Phishers-1/</guid>
<description><![CDATA[An examination of nearly 2.5 million Web pages at some of the Internet's most popular and trusted sites turned up at least 128,000 links that could be manipulated by fraudsters and virus writers to make online scams more believable, a study released this month found. Scammers and phishers are taking advantage of commonly used coding used in &quot;redirects&quot; to divert traffic from reputable Web site to sites that could harbor malicious software or phishing schemes....Please click on the title to continue reading<br/><br/>74 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Firefox 3 Follows IE7's Security Settings]]></title>
<link>http://bestofsecurity.net/blogs/Firefox_3_Follows_IE7s_Security_Settings-1/</link>
<comments>http://bestofsecurity.net/blogs/Firefox_3_Follows_IE7s_Security_Settings-1/</comments>
<pubDate>Wed, 06 Aug 2008 16:00:14 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Firefox_3_Follows_IE7s_Security_Settings-1/</guid>
<description><![CDATA[Firefox 3 users, who also have jacked up the security settings on Microsoft's Internet Explorer 7 to their most paranoid level, may find it trickier to download files with Firefox due to key changes recently made by Mozilla. In a Security Fix Live chat last Friday, a reader complained he or she couldn't download any file in Firefox unless she reduced the security settings in IE7. &quot;I usually leave IE at high settings since I...Please click on the title to continue reading this entry.<br/><br/>190 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[One Spammer Jailed, Another Walks]]></title>
<link>http://bestofsecurity.net/blogs/One_Spammer_Jailed_Another_Walks-1/</link>
<comments>http://bestofsecurity.net/blogs/One_Spammer_Jailed_Another_Walks-1/</comments>
<pubDate>Wed, 06 Aug 2008 16:00:10 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/One_Spammer_Jailed_Another_Walks-1/</guid>
<description><![CDATA[Spam king Robert Soloway was sentenced this week to 47 months in prison for sending more than 90 million junk e-mail messages over a three month period. Meanwhile, federal authorities are searching for a spammer who walked away from a prison camp on Sunday. Soloway pleaded guilty in March to mail fraud, and tax evasion. A federal judge still must decide how much restitution he will pay. In other news, Edward &quot;Eddie&quot; Davidson, a 35-year-old...Please click on the title to continue reading this entry.<br/><br/>194 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Before You Go on That Vacation....]]></title>
<link>http://bestofsecurity.net/blogs/Before_You_Go_on_That_Vacation-----1/</link>
<comments>http://bestofsecurity.net/blogs/Before_You_Go_on_That_Vacation-----1/</comments>
<pubDate>Wed, 06 Aug 2008 16:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Before_You_Go_on_That_Vacation-----1/</guid>
<description><![CDATA[I thought I was paranoid about protecting my home from disasters and thieves before leaving on vacation. But it's nice to know there are some people out there who may be significantly more schizophrenic on this topic. A colleague sent me this primer (PDF) from the Institute for Security and Open Methodologies, which sports a checklist of at least 70 precautions to consider before you pack up the old familywagon for that road trip. Some...Please click on the title to continue reading this entry.<br/><br/>181 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Fortify Your Internet Security Settings Now]]></title>
<link>http://bestofsecurity.net/blogs/Fortify_Your_Internet_Security_Settings_Now-1/</link>
<comments>http://bestofsecurity.net/blogs/Fortify_Your_Internet_Security_Settings_Now-1/</comments>
<pubDate>Wed, 06 Aug 2008 16:00:06 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Fortify_Your_Internet_Security_Settings_Now-1/</guid>
<description><![CDATA[The Web became a substantially more dangerous place this week, thanks largely to the publication of instructions that show cyber criminals how to exploit a pervasive, critical flaw in the Internet infrastructure. While Internet service providers and corporations can mitigate the danger by updating the software that powers vulnerable components of their networks, data released yesterday indicates that only about half of the world's online population is currently protected by these updates. At issue is...Ple<br/><br/>81 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Man Gets 4 Years for ID Theft, Software Piracy]]></title>
<link>http://bestofsecurity.net/blogs/Man_Gets_4_Years_for_ID_Theft_Software_Piracy-1/</link>
<comments>http://bestofsecurity.net/blogs/Man_Gets_4_Years_for_ID_Theft_Software_Piracy-1/</comments>
<pubDate>Wed, 06 Aug 2008 12:00:26 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Man_Gets_4_Years_for_ID_Theft_Software_Piracy-1/</guid>
<description><![CDATA[A 23-year-old Oregon man was sentenced this week to four years in federal prison for using computer viruses to steal financial data from dozens of consumers. Investigators say the man used the information to set up multiple eBay and PayPal accounts, which helped him sell more than $1 million worth of pirated software. Jeremiah Joseph Mondello, of Eugene, Ore., admitted distributing keystroke logging programs via online instant message networks. Investigators say he then used bank...Please click on the titl<br/><br/>70 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Gmail Gains Two New Security Features]]></title>
<link>http://bestofsecurity.net/blogs/Gmail_Gains_Two_New_Security_Features-1/</link>
<comments>http://bestofsecurity.net/blogs/Gmail_Gains_Two_New_Security_Features-1/</comments>
<pubDate>Wed, 06 Aug 2008 12:00:24 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Gmail_Gains_Two_New_Security_Features-1/</guid>
<description><![CDATA[Google this month rolled out two new security features to its free Gmail service. The first should protect users against people who might be lurking on your network trying to snoop or hijack your inbox. The other makes it easy for users to tell if they are signed on in more than one location and then remotely sign that machine out of your account. When you log in to your Gmail account, by typing http://mail.google.com...Please click on the title to continue reading this entry.<br/><br/>118 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Critical Security Updates Available for RealPlayer]]></title>
<link>http://bestofsecurity.net/blogs/Critical_Security_Updates_Available_for_RealPlayer-1/</link>
<comments>http://bestofsecurity.net/blogs/Critical_Security_Updates_Available_for_RealPlayer-1/</comments>
<pubDate>Wed, 06 Aug 2008 12:00:20 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Critical_Security_Updates_Available_for_RealPlayer-1/</guid>
<description><![CDATA[RealNetworks has shipped a new version of its RealPlayer software to plug at least four serious security holes in the program. Updates are available for RealPlayer versions 10, 10.5 and 11 for Linux, Mac and Windows systems. Windows versions of RealPlayer are affected by all four vulnerabilities (two of the flaws are once again ActiveX related), while the Linux and Mac versions are exposed to just one of the holes. Regardless, the company is urging...Please click on the title to continue reading this entry<br/><br/>199 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Three Quarters of Malicious Web Sites Are Hacked]]></title>
<link>http://bestofsecurity.net/blogs/Three_Quarters_of_Malicious_Web_Sites_Are_Hacked-1/</link>
<comments>http://bestofsecurity.net/blogs/Three_Quarters_of_Malicious_Web_Sites_Are_Hacked-1/</comments>
<pubDate>Wed, 06 Aug 2008 12:00:19 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Three_Quarters_of_Malicious_Web_Sites_Are_Hacked-1/</guid>
<description><![CDATA[Three-quarters of all Web sites that try to foist malicious software on visitors are legitimate sites that have been hacked, a report released today found. Even worse, most of these compromised sites are social networking communities and some of the Internet's most popular destinations. Those numbers come from stats (PDF) collected in the first six months of this year by Websense, an online security company that scans more than 40 million Web sites hourly for...Please click on the title to continue reading<br/><br/>126 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Exploit Prods Software Firms to Update Their Updaters]]></title>
<link>http://bestofsecurity.net/blogs/Exploit_Prods_Software_Firms_to_Update_Their_Updaters-1/</link>
<comments>http://bestofsecurity.net/blogs/Exploit_Prods_Software_Firms_to_Update_Their_Updaters-1/</comments>
<pubDate>Wed, 06 Aug 2008 12:00:17 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Exploit_Prods_Software_Firms_to_Update_Their_Updaters-1/</guid>
<description><![CDATA[A security researcher has released a set of tools that make it simple for attackers to exploit weaknesses in the auto-update feature of many popular software titles. By targeting widely deployed programs such as Java, OpenOffice, Winamp and Winzip, that don't use a digital signature on their product updates, attackers can impersonate those companies and trick users into believing they are updating their software, when in reality the users may be uploading a package designed...Please click on the title to c<br/><br/>102 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Fun with Spam Subject Lines]]></title>
<link>http://bestofsecurity.net/blogs/Fun_with_Spam_Subject_Lines-1/</link>
<comments>http://bestofsecurity.net/blogs/Fun_with_Spam_Subject_Lines-1/</comments>
<pubDate>Wed, 06 Aug 2008 12:00:16 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Fun_with_Spam_Subject_Lines-1/</guid>
<description><![CDATA[I've been checking my spam filter, just for the fun of it, as the spammmers are writing more timely and entertaining subject lines as an enticement to get people to open their missives. Take the following spam headlines, for example, that appeared in the last 48 hours. All capitalize on public attention to current events, such as the U.S. presidential election, or the 2008 Olympics. Hillary Clinton Sues Barack Obama Obama Is Anorexic Over-Exerciser President...Please click on the title to continue reading <br/><br/>64 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Senate Approves Bill to Fight Cyber-Crime]]></title>
<link>http://bestofsecurity.net/blogs/Senate_Approves_Bill_to_Fight_Cyber-Crime-1/</link>
<comments>http://bestofsecurity.net/blogs/Senate_Approves_Bill_to_Fight_Cyber-Crime-1/</comments>
<pubDate>Wed, 06 Aug 2008 12:00:14 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Senate_Approves_Bill_to_Fight_Cyber-Crime-1/</guid>
<description><![CDATA[The Senate on Wednesday passed legislation to modernize the nation's computer crime laws and give prosecutors more leeway in pursuing cyber crooks. Under current federal cyber-crime laws prosecutors must show that the illegal activity caused at least $5,000 in damages before they can bring charges for unauthorized access to a computer. Under the bill approved today, that threshold would be eliminated. Instead, the legislation would make it a felony to install spyware or keystroke-monitoring programs...Plea<br/><br/>96 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Black Hat Talk on Apple Encryption Flaw Pulled]]></title>
<link>http://bestofsecurity.net/blogs/Black_Hat_Talk_on_Apple_Encryption_Flaw_Pulled-2/</link>
<comments>http://bestofsecurity.net/blogs/Black_Hat_Talk_on_Apple_Encryption_Flaw_Pulled-2/</comments>
<pubDate>Wed, 06 Aug 2008 12:00:12 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Black_Hat_Talk_on_Apple_Encryption_Flaw_Pulled-2/</guid>
<description><![CDATA[A security researcher who was set to speak at the Black Hat hacker convention in Las Vegas next week on a previously undiscovered flaw in Apple's FileVault encryption system has canceled his talk, citing confidentiality agreements with the Cupertino computer maker. Charles Edge, a researcher from Georgia, had been slated to discuss his research on a weakness that could be used to defeat FileVault encryption on the Mac. But sometime last week, Black Hat organizers...Please click on the title to continue rea<br/><br/>108 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Apple Patches DNS Flaw and 16 Other Holes]]></title>
<link>http://bestofsecurity.net/blogs/Apple_Patches_DNS_Flaw_and_16_Other_Holes-1/</link>
<comments>http://bestofsecurity.net/blogs/Apple_Patches_DNS_Flaw_and_16_Other_Holes-1/</comments>
<pubDate>Wed, 06 Aug 2008 12:00:10 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Apple_Patches_DNS_Flaw_and_16_Other_Holes-1/</guid>
<description><![CDATA[Apple released updates to fix at least 17 different security holes in its OS X operating system and other software late Thursday, including a patch for the domain name system (DNS) vulnerability that many other affected vendors addressed nearly three weeks ago. Security Update 2008-005 patches a serious flaw in the DNS that could allow hackers to hijack users' Internet connections or silently redirect them to counterfeit Web sites. Cisco, Microsoft, Sun Microsystems and a...Please click on the title to con<br/><br/>128 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Microsoft to Open Kimono on Security Patches]]></title>
<link>http://bestofsecurity.net/blogs/Microsoft_to_Open_Kimono_on_Security_Patches-1/</link>
<comments>http://bestofsecurity.net/blogs/Microsoft_to_Open_Kimono_on_Security_Patches-1/</comments>
<pubDate>Wed, 06 Aug 2008 12:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Microsoft_to_Open_Kimono_on_Security_Patches-1/</guid>
<description><![CDATA[In a bid to help the security industry stay a step ahead of cyber crooks, Microsoft will release additional details behind the vulnerabilities it patches each month to anti-virus companies and other large vendors of Windows security software. While Microsoft already provides a brief fact sheet of which components of Windows will be fixed prior to its regular patch releases on the second Tuesday of each month, known as &quot;Patch Tuesday,&quot; security vendors say additional...Please click on the title to continue <br/><br/>127 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Buyer Beware - Scam Olympic Ticketing Sites About]]></title>
<link>http://bestofsecurity.net/blogs/Buyer_Beware_-_Scam_Olympic_Ticketing_Sites_About/</link>
<comments>http://bestofsecurity.net/blogs/Buyer_Beware_-_Scam_Olympic_Ticketing_Sites_About/</comments>
<pubDate>Tue, 05 Aug 2008 16:00:14 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Buyer_Beware_-_Scam_Olympic_Ticketing_Sites_About/</guid>
<description><![CDATA[A timely warning to those wishing to purchase last minute tickets for the Beijing Olympic Games of 2008 to beware of scams and rip offs. There are some fake but very well crafted ticketing Web sites that have been duping unsuspecting members of the public out of their hard earned cash by posing as legitimate suppliers for Olympic events.<br/><br/>200 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Symantec State of Spam Report - August]]></title>
<link>http://bestofsecurity.net/blogs/Symantec_State_of_Spam_Report_-_August/</link>
<comments>http://bestofsecurity.net/blogs/Symantec_State_of_Spam_Report_-_August/</comments>
<pubDate>Tue, 05 Aug 2008 16:00:11 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Symantec_State_of_Spam_Report_-_August/</guid>
<description><![CDATA[As we enter August, Symantec takes note in the State of Spam Report that spammers are continuing to attempt to entice users to open their messages by sensationalizing false news events. Popular targets of this headline or tabloid spam include current public events and figures, such as Obama and McCain.<br/><br/>165 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Microsoft to Open Kimono on Security Patches]]></title>
<link>http://bestofsecurity.net/blogs/Microsoft_to_Open_Kimono_on_Security_Patches/</link>
<comments>http://bestofsecurity.net/blogs/Microsoft_to_Open_Kimono_on_Security_Patches/</comments>
<pubDate>Tue, 05 Aug 2008 08:00:11 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Microsoft_to_Open_Kimono_on_Security_Patches/</guid>
<description><![CDATA[In a bid to help the security industry stay a step ahead of cyber crooks, Microsoft will release additional details behind the vulnerabilities it patches each month to anti-virus companies and other large vendors of Windows security software. While Microsoft already provides a brief fact sheet of which components of Windows will be fixed prior to its regular patch releases on the second Tuesday of each month, known as &quot;Patch Tuesday,&quot; security vendors say additional...Please click on the title to continue <br/><br/>63 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Black Hat Talk on Apple Encryption Flaw Pulled]]></title>
<link>http://bestofsecurity.net/blogs/Black_Hat_Talk_on_Apple_Encryption_Flaw_Pulled-1/</link>
<comments>http://bestofsecurity.net/blogs/Black_Hat_Talk_on_Apple_Encryption_Flaw_Pulled-1/</comments>
<pubDate>Sat, 02 Aug 2008 12:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Black_Hat_Talk_on_Apple_Encryption_Flaw_Pulled-1/</guid>
<description><![CDATA[A security researcher who was set to speak at the Black Hat hacker convention in Las Vegas next week on a previously undiscovered flaw in Apple's FileVault encryption system has canceled his talk, citing confidentiality agreements with the Cupertino computer maker. Charles Edge, a researcher from Georgia, had been slated to discuss his research on a weakness that could be used to defeat FileVault encryption on the Mac. But sometime last week, Black Hat organizers...Please click on the title to continue rea<br/><br/>149 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[This Month in the Threat Webscape]]></title>
<link>http://bestofsecurity.net/blogs/This_Month_in_the_Threat_Webscape/</link>
<comments>http://bestofsecurity.net/blogs/This_Month_in_the_Threat_Webscape/</comments>
<pubDate>Fri, 01 Aug 2008 16:00:28 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/This_Month_in_the_Threat_Webscape/</guid>
<description><![CDATA[The Web 2.0 malicious landscape continues to evolve, and as a part of our promise to be on top of all forms of Web threats in order to protect, here's a summary of what happened in July 2008. This month brings us particularly insightful research on just how dangerous the Web browser threat is, and just how sloppy banks can be when designing their own Web applications.<br/><br/>227 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Snapshot Viewer ActiveX Exploit In The Wild]]></title>
<link>http://bestofsecurity.net/blogs/Snapshot_Viewer_ActiveX_Exploit_In_The_Wild/</link>
<comments>http://bestofsecurity.net/blogs/Snapshot_Viewer_ActiveX_Exploit_In_The_Wild/</comments>
<pubDate>Fri, 01 Aug 2008 16:00:26 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Snapshot_Viewer_ActiveX_Exploit_In_The_Wild/</guid>
<description><![CDATA[This is an update to the Microsoft Access Snapshow Viewer ActiveX vulnerability announced on July 7, 2008 in Microsoft Security Advisory 955179. This vulnerability allows an attacker to gain the privileges of the logged-on user account. Working exploit code was posted to milworm on July 24, 2008: http://www.milw0rm.com/exploits/6124%20%3Chttp://www.milw0rm.com/exploits/6124%3E <br/><br/>153 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Safe Summer Travels on the Information Superhighway]]></title>
<link>http://bestofsecurity.net/blogs/Safe_Summer_Travels_on_the_Information_Superhighway/</link>
<comments>http://bestofsecurity.net/blogs/Safe_Summer_Travels_on_the_Information_Superhighway/</comments>
<pubDate>Fri, 01 Aug 2008 16:00:20 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Safe_Summer_Travels_on_the_Information_Superhighway/</guid>
<description><![CDATA[With the Olympics right around the corner and being that we are in the heart of the summer, I'm sure many of you will find yourselves travelling quite extensively. Nowadays, it's almost impossible to go cold turkey from the Internet. It's equally impossible to find a place that doesn't offer some ability to get you online<br/><br/>77 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Apple Patches DNS Flaw and 16 Other Holes]]></title>
<link>http://bestofsecurity.net/blogs/Apple_Patches_DNS_Flaw_and_16_Other_Holes/</link>
<comments>http://bestofsecurity.net/blogs/Apple_Patches_DNS_Flaw_and_16_Other_Holes/</comments>
<pubDate>Fri, 01 Aug 2008 08:00:15 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Apple_Patches_DNS_Flaw_and_16_Other_Holes/</guid>
<description><![CDATA[Apple released updates to fix at least 17 different security holes in its OS X operating system and other software late Thursday, including a patch for the domain name system (DNS) vulnerability that many other affected vendors addressed nearly three weeks ago. Security Update 2008-005 patches a serious flaw in the DNS that could allow hackers to hijack users' Internet connections or silently redirect them to counterfeit Web sites. Cisco, Microsoft, Sun Microsystems and a...Please click on the title to con<br/><br/>72 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Black Hat Talk on Apple Encryption Flaw Pulled]]></title>
<link>http://bestofsecurity.net/blogs/Black_Hat_Talk_on_Apple_Encryption_Flaw_Pulled/</link>
<comments>http://bestofsecurity.net/blogs/Black_Hat_Talk_on_Apple_Encryption_Flaw_Pulled/</comments>
<pubDate>Thu, 31 Jul 2008 20:00:18 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Black_Hat_Talk_on_Apple_Encryption_Flaw_Pulled/</guid>
<description><![CDATA[A security researcher who was set to speak at the Black Hat hacker convention in Las Vegas next week on a previously undiscovered flaw in Apple's FileVault encryption system has canceled his talk, citing confidentiality agreements with the Cupertino computer maker. Charles Edge, a researcher from Georgia, had been slated to discuss his research on a weakness that could be used to defeat FileVault encryption on the Mac. But sometime last week, Black Hat organizers...Please click on the title to continue rea<br/><br/>118 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Senate Approves Bill to Fight Cyber-Crime]]></title>
<link>http://bestofsecurity.net/blogs/Senate_Approves_Bill_to_Fight_Cyber-Crime/</link>
<comments>http://bestofsecurity.net/blogs/Senate_Approves_Bill_to_Fight_Cyber-Crime/</comments>
<pubDate>Thu, 31 Jul 2008 16:00:08 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Senate_Approves_Bill_to_Fight_Cyber-Crime/</guid>
<description><![CDATA[The Senate on Wednesday passed legislation to modernize the nation's computer crime laws and give prosecutors more leeway in pursuing cyber crooks. Under current federal cyber-crime laws prosecutors must show that the illegal activity caused at least $5,000 in damages before they can bring charges for unauthorized access to a computer. Under the bill approved today, that threshold would be eliminated. Instead, the legislation would make it a felony to install spyware or keystroke-monitoring programs...Plea<br/><br/>144 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Fun with Spam Subject Lines]]></title>
<link>http://bestofsecurity.net/blogs/Fun_with_Spam_Subject_Lines/</link>
<comments>http://bestofsecurity.net/blogs/Fun_with_Spam_Subject_Lines/</comments>
<pubDate>Thu, 31 Jul 2008 12:00:12 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Fun_with_Spam_Subject_Lines/</guid>
<description><![CDATA[I've been checking my spam filter, just for the fun of it, as the spammmers are writing more timely and entertaining subject lines as an enticement to get people to open their missives. Take the following spam headlines, for example, that appeared in the last 48 hours. All capitalize on public attention to current events, such as the U.S. presidential election, or the 2008 Olympics. Hillary Clinton Sues Barack Obama Obama Is Anorexic Over-Exerciser President...Please click on the title to continue reading <br/><br/>92 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Media Malware - A Look Inside]]></title>
<link>http://bestofsecurity.net/blogs/Media_Malware_-_A_Look_Inside/</link>
<comments>http://bestofsecurity.net/blogs/Media_Malware_-_A_Look_Inside/</comments>
<pubDate>Wed, 30 Jul 2008 20:00:21 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Media_Malware_-_A_Look_Inside/</guid>
<description><![CDATA[A piece of malware has been discovered that modifies a user's music files so they are vulnerable to further infection. The infection can also spread if such files are shared with others. The malware searches the user's drive for music files and injects (after necessary conversions) a malicious URL, which is loaded upon music playback. <br/><br/>246 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Hit Tracing in OllyDbg]]></title>
<link>http://bestofsecurity.net/blogs/Hit_Tracing_in_OllyDbg/</link>
<comments>http://bestofsecurity.net/blogs/Hit_Tracing_in_OllyDbg/</comments>
<pubDate>Wed, 30 Jul 2008 16:00:30 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Hit_Tracing_in_OllyDbg/</guid>
<description><![CDATA[The DvLabs posting demonstrates how to dynamically analyze a 32-bit Windows binary file in WinDbg using hit tracing. Hit tracing is the process of dynamically tracking execution flow in order to narrow your field of focus when reverse engineering a binary file. This saves you from wasting time looking at uninteresting parts of the code. While Cody Pierce focused on using WinDbg for hit tracing, we're going to show you how to use OllyDbg.<br/><br/>85 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Exploit Prods Software Firms to Update Their Updaters]]></title>
<link>http://bestofsecurity.net/blogs/Exploit_Prods_Software_Firms_to_Update_Their_Updaters/</link>
<comments>http://bestofsecurity.net/blogs/Exploit_Prods_Software_Firms_to_Update_Their_Updaters/</comments>
<pubDate>Wed, 30 Jul 2008 00:00:09 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Exploit_Prods_Software_Firms_to_Update_Their_Updaters/</guid>
<description><![CDATA[A security researcher has released a set of tools that make it simple for attackers to exploit weaknesses in the auto-update feature of many popular software titles. By targeting widely deployed programs such as Java, OpenOffice, Winamp and Winzip, that don't use a digital signature on their product updates, attackers can impersonate those companies and trick users into believing they are updating their software, when in reality the users may be uploading a package designed...Please click on the title to c<br/><br/>82 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Three Quarters of Malicious Web Sites Are Hacked]]></title>
<link>http://bestofsecurity.net/blogs/Three_Quarters_of_Malicious_Web_Sites_Are_Hacked/</link>
<comments>http://bestofsecurity.net/blogs/Three_Quarters_of_Malicious_Web_Sites_Are_Hacked/</comments>
<pubDate>Tue, 29 Jul 2008 12:00:08 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Three_Quarters_of_Malicious_Web_Sites_Are_Hacked/</guid>
<description><![CDATA[Three-quarters of all Web sites that try to foist malicious software on visitors are legitimate sites that have been hacked, a report released today found. Even worse, most of these compromised sites are social networking communities and some of the Internet's most popular destinations. Those numbers come from stats (PDF) collected in the first six months of this year by Websense, an online security company that scans more than 40 million Web sites hourly for...Please click on the title to continue reading<br/><br/>99 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Critical Security Updates Available for RealPlayer]]></title>
<link>http://bestofsecurity.net/blogs/Critical_Security_Updates_Available_for_RealPlayer/</link>
<comments>http://bestofsecurity.net/blogs/Critical_Security_Updates_Available_for_RealPlayer/</comments>
<pubDate>Mon, 28 Jul 2008 16:00:20 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Critical_Security_Updates_Available_for_RealPlayer/</guid>
<description><![CDATA[RealNetworks has shipped a new version of its RealPlayer software to plug at least four serious security holes in the program. Updates are available for RealPlayer versions 10, 10.5 and 11 for Linux, Mac and Windows systems. Windows versions of RealPlayer are affected by all four vulnerabilities (two of the flaws are once again ActiveX related), while the Linux and Mac versions are exposed to just one of the holes. Regardless, the company is urging...Please click on the title to continue reading this entry<br/><br/>131 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Gmail Gains Two New Security Features]]></title>
<link>http://bestofsecurity.net/blogs/Gmail_Gains_Two_New_Security_Features/</link>
<comments>http://bestofsecurity.net/blogs/Gmail_Gains_Two_New_Security_Features/</comments>
<pubDate>Mon, 28 Jul 2008 12:00:14 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Gmail_Gains_Two_New_Security_Features/</guid>
<description><![CDATA[Google this month rolled out two new security features to its free Gmail service. The first should protect users against people who might be lurking on your network trying to snoop or hijack your inbox. The other makes it easy for users to tell if they are signed on in more than one location and then remotely sign that machine out of your account. When you log in to your Gmail account, by typing http://mail.google.com...Please click on the title to continue reading this entry.<br/><br/>83 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Man Gets 4 Years for ID Theft, Software Piracy]]></title>
<link>http://bestofsecurity.net/blogs/Man_Gets_4_Years_for_ID_Theft_Software_Piracy/</link>
<comments>http://bestofsecurity.net/blogs/Man_Gets_4_Years_for_ID_Theft_Software_Piracy/</comments>
<pubDate>Fri, 25 Jul 2008 12:00:12 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Man_Gets_4_Years_for_ID_Theft_Software_Piracy/</guid>
<description><![CDATA[A 23-year-old Oregon man was sentenced this week to four years in federal prison for using computer viruses to steal financial data from dozens of consumers. Investigators say the man used the information to set up multiple eBay and PayPal accounts, which helped him sell more than $1 million worth of pirated software. Jeremiah Joseph Mondello, of Eugene, Ore., admitted distributing keystroke logging programs via online instant message networks. Investigators say he then used bank...Please click on the titl<br/><br/>91 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Fortify Your Internet Security Settings Now]]></title>
<link>http://bestofsecurity.net/blogs/Fortify_Your_Internet_Security_Settings_Now/</link>
<comments>http://bestofsecurity.net/blogs/Fortify_Your_Internet_Security_Settings_Now/</comments>
<pubDate>Fri, 25 Jul 2008 08:00:12 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Fortify_Your_Internet_Security_Settings_Now/</guid>
<description><![CDATA[The Web became a substantially more dangerous place this week, thanks largely to the publication of instructions that show cyber criminals how to exploit a pervasive, critical flaw in the Internet infrastructure. While Internet service providers and corporations can mitigate the danger by updating the software that powers vulnerable components of their networks, data released yesterday indicates that only about half of the world's online population is currently protected by these updates. At issue is...Ple<br/><br/>147 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Before You Go on That Vacation....]]></title>
<link>http://bestofsecurity.net/blogs/Before_You_Go_on_That_Vacation----/</link>
<comments>http://bestofsecurity.net/blogs/Before_You_Go_on_That_Vacation----/</comments>
<pubDate>Thu, 24 Jul 2008 16:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Before_You_Go_on_That_Vacation----/</guid>
<description><![CDATA[I thought I was paranoid about protecting my home from disasters and thieves before leaving on vacation. But it's nice to know there are some people out there who may be significantly more schizophrenic on this topic. A colleague sent me this primer (PDF) from the Institute for Security and Open Methodologies, which sports a checklist of at least 70 precautions to consider before you pack up the old familywagon for that road trip. Some...Please click on the title to continue reading this entry.<br/><br/>194 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[One Spammer Jailed, Another Walks]]></title>
<link>http://bestofsecurity.net/blogs/One_Spammer_Jailed_Another_Walks/</link>
<comments>http://bestofsecurity.net/blogs/One_Spammer_Jailed_Another_Walks/</comments>
<pubDate>Thu, 24 Jul 2008 12:00:17 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/One_Spammer_Jailed_Another_Walks/</guid>
<description><![CDATA[Spam king Robert Soloway was sentenced this week to 47 months in prison for sending more than 90 million junk e-mail messages over a three month period. Meanwhile, federal authorities are searching for a spammer who walked away from a prison camp on Sunday. Soloway pleaded guilty in March to mail fraud, and tax evasion. A federal judge still must decide how much restitution he will pay. In other news, Edward &quot;Eddie&quot; Davidson, a 35-year-old...Please click on the title to continue reading this entry.<br/><br/>199 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Spammers' Innovations Throughout a Spam Campaign]]></title>
<link>http://bestofsecurity.net/blogs/Spammers_Innovations_Throughout_a_Spam_Campaign/</link>
<comments>http://bestofsecurity.net/blogs/Spammers_Innovations_Throughout_a_Spam_Campaign/</comments>
<pubDate>Tue, 22 Jul 2008 16:00:30 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Spammers_Innovations_Throughout_a_Spam_Campaign/</guid>
<description><![CDATA[We have been tracking the development of a constantly evolving spam campaign that started back in June. We alerted on this when commenting upon the PornTube template spam. To recap: it was a big wave of spam messages enticing users to watch a video. The messages contained links to compromised sites, and those links always ended with r.html, leading to the Trojan file video.exe. It seems that this campaign keeps constantly re-emerging to spam different page names on newly compromised sites.<br/><br/>202 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Spammers Switching Tactics: &quot;Table Painting&quot; Spam]]></title>
<link>http://bestofsecurity.net/blogs/Spammers_Switching_Tactics_Table_Painting_Spam/</link>
<comments>http://bestofsecurity.net/blogs/Spammers_Switching_Tactics_Table_Painting_Spam/</comments>
<pubDate>Mon, 21 Jul 2008 20:00:16 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Spammers_Switching_Tactics_Table_Painting_Spam/</guid>
<description><![CDATA[Spammers' efforts to reach their prospective customers continue today with increased creativity and complexity in constructing and generating different arts, styles, images, and other elements trying to bypass anti-spam filters. We have been monitoring recent spammer tactics that use cleverly arranged tables in HTML for spamming purposes. It is interesting to observe how spammers improve their tactics every time by switching, combining, and tweaking or enhancing these tactics to send out mass mailings. The<br/><br/>169 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Rg00dP@55Wrd53z?]]></title>
<link>http://bestofsecurity.net/blogs/Rg00dP55Wrd53z/</link>
<comments>http://bestofsecurity.net/blogs/Rg00dP55Wrd53z/</comments>
<pubDate>Mon, 21 Jul 2008 16:00:19 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Rg00dP55Wrd53z/</guid>
<description><![CDATA[Tell me if this sounds like a familiar scenario. You've come up with a brilliant password - it's strong, easy to remember, and you've finally mastered the finger gymnastics required to type it in quickly - only to find that the usage window, mandated by IT password policy, is up.<br/><br/>179 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Firefox 3 Follows IE7's Security Settings]]></title>
<link>http://bestofsecurity.net/blogs/Firefox_3_Follows_IE7s_Security_Settings/</link>
<comments>http://bestofsecurity.net/blogs/Firefox_3_Follows_IE7s_Security_Settings/</comments>
<pubDate>Mon, 21 Jul 2008 16:00:11 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Firefox_3_Follows_IE7s_Security_Settings/</guid>
<description><![CDATA[Firefox 3 users, who also have jacked up the security settings on Microsoft's Internet Explorer 7 to their most paranoid level, may find it trickier to download files with Firefox due to key changes recently made by Mozilla. In a Security Fix Live chat last Friday, a reader complained he or she couldn't download any file in Firefox unless she reduced the security settings in IE7. &quot;I usually leave IE at high settings since I...Please click on the title to continue reading this entry.<br/><br/>95 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Reversing malware with oSpy]]></title>
<link>http://bestofsecurity.net/blogs/Reversing_malware_with_oSpy/</link>
<comments>http://bestofsecurity.net/blogs/Reversing_malware_with_oSpy/</comments>
<pubDate>Fri, 18 Jul 2008 20:00:22 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Reversing_malware_with_oSpy/</guid>
<description><![CDATA[Today's blog will be about a tool called oSpy, written by Andre Vadla Ravnas. oSpy is a tool which helps in reverse-engineering windows software. To demonstrate the uses of this tool and how it helps with network traffic monitoring, I have used a random malware sample from our repository. <br/><br/>118 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Study: Site Redirects Abundant, Aid Phishers]]></title>
<link>http://bestofsecurity.net/blogs/Study_Site_Redirects_Abundant_Aid_Phishers/</link>
<comments>http://bestofsecurity.net/blogs/Study_Site_Redirects_Abundant_Aid_Phishers/</comments>
<pubDate>Wed, 16 Jul 2008 16:00:13 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Study_Site_Redirects_Abundant_Aid_Phishers/</guid>
<description><![CDATA[An examination of nearly 2.5 million Web pages at some of the Internet's most popular and trusted sites turned up at least 128,000 links that could be manipulated by fraudsters and virus writers to make online scams more believable, a study released this month found. Scammers and phishers are taking advantage of commonly used coding used in &quot;redirects&quot; to divert traffic from reputable Web site to sites that could harbor malicious software or phishing schemes....Please click on the title to continue reading<br/><br/>192 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Zone Alarm Update Fixes Microsoft Patch Problem]]></title>
<link>http://bestofsecurity.net/blogs/Zone_Alarm_Update_Fixes_Microsoft_Patch_Problem/</link>
<comments>http://bestofsecurity.net/blogs/Zone_Alarm_Update_Fixes_Microsoft_Patch_Problem/</comments>
<pubDate>Mon, 14 Jul 2008 12:00:13 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Zone_Alarm_Update_Fixes_Microsoft_Patch_Problem/</guid>
<description><![CDATA[Microsoft last week shipped a security update that prevented users of the popular ZoneAlarm firewall products from getting online. ZoneAlarm maker Check Point Software initially told users to uninstall the Microsoft patch, but it has since issued version 7.0.483.0 to fix this problem. If you have ZoneAlarm set to automatically notify you of software updates, the new version should be offered when you restart the program or Windows. To manually check for updates: * Open...Please click on the title to contin<br/><br/>61 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[A Baker's Dozen of Security Updates for iPhone 2.0]]></title>
<link>http://bestofsecurity.net/blogs/A_Bakers_Dozen_of_Security_Updates_for_iPhone_2-0/</link>
<comments>http://bestofsecurity.net/blogs/A_Bakers_Dozen_of_Security_Updates_for_iPhone_2-0/</comments>
<pubDate>Fri, 11 Jul 2008 16:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/A_Bakers_Dozen_of_Security_Updates_for_iPhone_2-0/</guid>
<description><![CDATA[As expected, the 2.0 version of iPhone released today includes a number of security updates, patching more than a dozen holes in the slimmed-down OS X operating system that powers the devices. That means for those who already own Apple's mobile device, it's time to update. As detailed in a column last week, a number of these patches are updates that Apple shipped earlier this year for Safari and/or the version of OS X designed...Please click on the title to continue reading this entry.<br/><br/>64 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Bye Bye Bandwidth?]]></title>
<link>http://bestofsecurity.net/blogs/Bye_Bye_Bandwidth/</link>
<comments>http://bestofsecurity.net/blogs/Bye_Bye_Bandwidth/</comments>
<pubDate>Fri, 11 Jul 2008 15:00:06 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Bye_Bye_Bandwidth/</guid>
<description><![CDATA[Everyone knows that in a matter of hours, hype can turn a small event into something much larger in the minds of society. Enter the latest round of malicious spam we have seen here at Symantec-the death of the Internet.<br/><br/>70 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Speeding In Maryland Could Be Hazardous to Your Identity]]></title>
<link>http://bestofsecurity.net/blogs/Speeding_In_Maryland_Could_Be_Hazardous_to_Your_Identity/</link>
<comments>http://bestofsecurity.net/blogs/Speeding_In_Maryland_Could_Be_Hazardous_to_Your_Identity/</comments>
<pubDate>Fri, 11 Jul 2008 12:00:10 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Speeding_In_Maryland_Could_Be_Hazardous_to_Your_Identity/</guid>
<description><![CDATA[If you've ever received a traffic ticket in Maryland, your name, birthday, Social Security number and address may be posted on the Maryland state Web site for anyone to find, Security Fix has learned. Reader Mark Webster from Annandale, Va., alerted me that the official Maryland court records Web site lists the personal data of countless citizens. The citations listed go back more than 30 years, and include records even for routine traffic stops that...Please click on the title to continue reading this ent<br/><br/>151 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Banker Analysis]]></title>
<link>http://bestofsecurity.net/blogs/Banker_Analysis/</link>
<comments>http://bestofsecurity.net/blogs/Banker_Analysis/</comments>
<pubDate>Thu, 10 Jul 2008 20:00:13 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Banker_Analysis/</guid>
<description><![CDATA[Today's blog is an analysis of a banking trojan, currently in the wild, that targets banks in Brazil. During our research, we found out that it updates regularly and uses various social engineering tricks to spread and infect computers. Various executable components are downloaded, each of them having specific actions, such as spreading the malware, stealing bank information, etc.<br/><br/>195 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[I'd Buy That for $10]]></title>
<link>http://bestofsecurity.net/blogs/Id_Buy_That_for_10/</link>
<comments>http://bestofsecurity.net/blogs/Id_Buy_That_for_10/</comments>
<pubDate>Thu, 10 Jul 2008 15:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Id_Buy_That_for_10/</guid>
<description><![CDATA[The costs of most goods are so much higher than they were 30 years ago. Back then, cars were under $10,000 (I remember this because the Price is Right only had four missing digits in their Lucky Seven game). You could feed a family of four for $10 and even<br/><br/>161 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Ghosts of Java Haunt Users]]></title>
<link>http://bestofsecurity.net/blogs/Ghosts_of_Java_Haunt_Users/</link>
<comments>http://bestofsecurity.net/blogs/Ghosts_of_Java_Haunt_Users/</comments>
<pubDate>Thu, 10 Jul 2008 12:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Ghosts_of_Java_Haunt_Users/</guid>
<description><![CDATA[Sun Microsystems has issued updates for its ubiquitous Java software to plug multiple security holes. Of particular interest in this bundle is a fix that prevents attackers from exploiting vulnerabilities in older versions of the software. Why is this a big deal, you ask? Aren't patches designed to fix vulnerabilities in older versions of the software? Well, yes, but as Security Fix has lamented time and again, Sun's updates are notorious for leaving older versions...Please click on the title to continue r<br/><br/>114 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[U.S. Supreme Court Judge Data Exposed Via P2P]]></title>
<link>http://bestofsecurity.net/blogs/U-S-_Supreme_Court_Judge_Data_Exposed_Via_P2P/</link>
<comments>http://bestofsecurity.net/blogs/U-S-_Supreme_Court_Judge_Data_Exposed_Via_P2P/</comments>
<pubDate>Wed, 09 Jul 2008 16:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/U-S-_Supreme_Court_Judge_Data_Exposed_Via_P2P/</guid>
<description><![CDATA[The Washington Post today ran a story I wrote on a data breach of a local investment firm that exposed the names, birth dates and Social Security numbers of some of the Washington area's most powerful attorneys, including Supreme Court Justice Stephen Breyer. I was able to trace the breach back to a former employee who accidentally shared the company's client list while browsing for files on the LimeWire peer-to-peer network. I'm calling attention to...Please click on the title to continue reading this ent<br/><br/>153 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Patch (The Entire Internet) Tuesday]]></title>
<link>http://bestofsecurity.net/blogs/Patch_The_Entire_Internet_Tuesday/</link>
<comments>http://bestofsecurity.net/blogs/Patch_The_Entire_Internet_Tuesday/</comments>
<pubDate>Wed, 09 Jul 2008 00:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Patch_The_Entire_Internet_Tuesday/</guid>
<description><![CDATA[Security experts are scrambling to patch a newly-discovered security flaw in a key component of the Internet infrastructure that could expose consumers and businesses to increased risk of attack by scam artists and virus writers. Yesterday, computer software and hardware industry leaders, including Cisco, Microsoft, and Sun Microsystems, coordinated the release of software updates to plug the security hole, which involves a fundamental design flaw in the domain name system. DNS is the communications standa<br/><br/>115 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Where do Bounce Messages come From?]]></title>
<link>http://bestofsecurity.net/blogs/Where_do_Bounce_Messages_come_From/</link>
<comments>http://bestofsecurity.net/blogs/Where_do_Bounce_Messages_come_From/</comments>
<pubDate>Tue, 08 Jul 2008 15:00:20 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Where_do_Bounce_Messages_come_From/</guid>
<description><![CDATA[John Doe, sitting in his office, was scrolling through email in his inbox when he noticed an email with this subject line: Mail delivery failed: returning message to sender. John thought to himself, &quot;Message delivery failed? Did my message to Jane get blocked?&quot; He then proceeded<br/><br/>134 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Network Processing Units - The Next Big Botnet Housing Boom?]]></title>
<link>http://bestofsecurity.net/blogs/Network_Processing_Units_-_The_Next_Big_Botnet_Housing_Boom/</link>
<comments>http://bestofsecurity.net/blogs/Network_Processing_Units_-_The_Next_Big_Botnet_Housing_Boom/</comments>
<pubDate>Tue, 08 Jul 2008 15:00:17 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Network_Processing_Units_-_The_Next_Big_Botnet_Housing_Boom/</guid>
<description><![CDATA[Network processing units (NPUs) are likely the next biggest thing in computer networking. NPUs are computer processors specifically designed to handle network-related functions. These little processors are typically found on embedded systems, but recently there have been moves to bring<br/><br/>120 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Symantec State of Spam Report - July]]></title>
<link>http://bestofsecurity.net/blogs/Symantec_State_of_Spam_Report_-_July/</link>
<comments>http://bestofsecurity.net/blogs/Symantec_State_of_Spam_Report_-_July/</comments>
<pubDate>Tue, 08 Jul 2008 15:00:15 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Symantec_State_of_Spam_Report_-_July/</guid>
<description><![CDATA[The July State of Spam Report opens with optimistic words from 2004, from one Bill Gates: &quot;Two years from now, spam will be solved.&quot; While we wish that we could say the optimistic words came to fruition, the reality is that it has continued to increase and is now accounting for 80% of all email.<br/><br/>72 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[A Stormy 4th of July]]></title>
<link>http://bestofsecurity.net/blogs/A_Stormy_4th_of_July/</link>
<comments>http://bestofsecurity.net/blogs/A_Stormy_4th_of_July/</comments>
<pubDate>Tue, 08 Jul 2008 15:00:13 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/A_Stormy_4th_of_July/</guid>
<description><![CDATA[Well, its that time of year again and as to be expected, malicious code authors are using the occasion to try to lure unsuspecting folks (are there still any around?) into installing their wares. Two examples of spammed emails we have seen so far have these subject lines: God bless America, Fabulous Independence Day firework<br/><br/>112 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Microsoft: Hackers Exploiting Unpatched Office Flaw]]></title>
<link>http://bestofsecurity.net/blogs/Microsoft_Hackers_Exploiting_Unpatched_Office_Flaw/</link>
<comments>http://bestofsecurity.net/blogs/Microsoft_Hackers_Exploiting_Unpatched_Office_Flaw/</comments>
<pubDate>Mon, 07 Jul 2008 16:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Microsoft_Hackers_Exploiting_Unpatched_Office_Flaw/</guid>
<description><![CDATA[Microsoft today issued stopgap instructions for plugging a previously unknown security hole that hackers are currently using to break into Windows computers via the Internet Explorer (IE) Web browser. The problem, once again, is with a faulty ActiveX control. ActiveX is a Windows technology that works through IE and allows Web sites to add software to the user's computer or interact with components in the Windows operating system. In this case, the insecure component is...Please click on the title to conti<br/><br/>116 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Lithuania Weathers Cyber Attack, Braces for Round 2]]></title>
<link>http://bestofsecurity.net/blogs/Lithuania_Weathers_Cyber_Attack_Braces_for_Round_2/</link>
<comments>http://bestofsecurity.net/blogs/Lithuania_Weathers_Cyber_Attack_Braces_for_Round_2/</comments>
<pubDate>Thu, 03 Jul 2008 12:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Lithuania_Weathers_Cyber_Attack_Braces_for_Round_2/</guid>
<description><![CDATA[Hundreds of Lithuanian government and corporate Web sites were hacked and plastered with Soviet-era symbols and other digital graffiti this week in what appears to be a coordinated cyber attack launched by Russian hacker groups. A New York Times story reports that Lithuanian officials did not directly accuse Russian hackers of initiating the attacks, but said they had come from foreign computers. However, iDefense, a security intelligence firm, based in Reston, Va., attributed the attacks...Please click on<br/><br/>199 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Apple iPhone Four Months Behind OS X in Patches]]></title>
<link>http://bestofsecurity.net/blogs/Apple_iPhone_Four_Months_Behind_OS_X_in_Patches/</link>
<comments>http://bestofsecurity.net/blogs/Apple_iPhone_Four_Months_Behind_OS_X_in_Patches/</comments>
<pubDate>Wed, 02 Jul 2008 16:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Apple_iPhone_Four_Months_Behind_OS_X_in_Patches/</guid>
<description><![CDATA[Apple's iPhone runs a miniature version of OS X, the operating system that powers Mac computers. So it's fitting that Apple designed the iPhone to check for security updates whenever users fire up iTunes with their iPhone attached. But it might surprise iPhone users to learn that the latest security update available for the iPhone dates back to February, and that a number of serious security vulnerabilities that Apple long ago patched in OS X...Please click on the title to continue reading this entry.<br/><br/>195 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Breach Exposes Info on Pre-'06 Google Hires]]></title>
<link>http://bestofsecurity.net/blogs/Breach_Exposes_Info_on_Pre-06_Google_Hires/</link>
<comments>http://bestofsecurity.net/blogs/Breach_Exposes_Info_on_Pre-06_Google_Hires/</comments>
<pubDate>Wed, 02 Jul 2008 12:00:06 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Breach_Exposes_Info_on_Pre-06_Google_Hires/</guid>
<description><![CDATA[A data breach at a California company that administers benefit plans to businesses across the country involved personal information on all Google employees hired prior to Dec. 31, 2005, the search engine giant said. Google's disclosure came in a letter (PDF) to the New Hampshire Attorney General, which revealed that Google was a victim of a break-in at Colt Express Outsourcing Services Inc.. Last month, Colt warned that the theft of computer equipment from its...Please click on the title to continue readin<br/><br/>101 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Spammers Ramp Up Siege on Bebo]]></title>
<link>http://bestofsecurity.net/blogs/Spammers_Ramp_Up_Siege_on_Bebo/</link>
<comments>http://bestofsecurity.net/blogs/Spammers_Ramp_Up_Siege_on_Bebo/</comments>
<pubDate>Tue, 01 Jul 2008 20:00:06 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Spammers_Ramp_Up_Siege_on_Bebo/</guid>
<description><![CDATA[SPAM 2.0 Update. Websense Security Labs® has been monitoring the recent spammer tactics that use Bebo services for spamming purposes. In the past, we blogged about similar spammer trends where Google services were increasingly used in spam runs. Google Blogger and Google Docs have been under attack, as has Gmail; and mass mailing campaigns are not confined to Gmail. Live mail, Hotmail, and Yahoo Mail have all been under siege as well. We detected this trend through the ThreatSeeker™ Network.<br/><br/>170 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Apple Pushes Peck of Patches]]></title>
<link>http://bestofsecurity.net/blogs/Apple_Pushes_Peck_of_Patches/</link>
<comments>http://bestofsecurity.net/blogs/Apple_Pushes_Peck_of_Patches/</comments>
<pubDate>Tue, 01 Jul 2008 16:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Apple_Pushes_Peck_of_Patches/</guid>
<description><![CDATA[Apple on Monday issued software updates to plug more than two dozen security holes in its OS X operating systems and various software applications. The company also issued a patch to fix a security vulnerability in Safari for the Mac (this issue was already addressed in a previous update for Windows XP and Vista versions of Safari). The updates are available through Apple Software Update or directly from Apple Downloads. Apple does not apppear to...Please click on the title to continue reading this entry.<br/><br/>155 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Unpacking Storm Worm : Code and Import Address Table onto the heap]]></title>
<link>http://bestofsecurity.net/blogs/Unpacking_Storm_Worm__Code_and_Import_Address_Table_onto_the_heap/</link>
<comments>http://bestofsecurity.net/blogs/Unpacking_Storm_Worm__Code_and_Import_Address_Table_onto_the_heap/</comments>
<pubDate>Tue, 01 Jul 2008 12:00:19 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Unpacking_Storm_Worm__Code_and_Import_Address_Table_onto_the_heap/</guid>
<description><![CDATA[As part of my series of blogs about custom packers, this blog presents techniques to quickly unpack the Storm Worm packer, even if the unpacked code is executed onto the heap, the code is relocated, and the Import Address Table is also on allocated memory. Storm Worm attackers have been using many different packers, and even if their primary goal isn't to protect against reverse engineering, they have introduced various techniques to slow down analysis. Today's main trick is the execution of code onto the <br/><br/>232 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Amazon: Hey Spammers, Get Off My Cloud!]]></title>
<link>http://bestofsecurity.net/blogs/Amazon_Hey_Spammers_Get_Off_My_Cloud/</link>
<comments>http://bestofsecurity.net/blogs/Amazon_Hey_Spammers_Get_Off_My_Cloud/</comments>
<pubDate>Tue, 01 Jul 2008 12:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Amazon_Hey_Spammers_Get_Off_My_Cloud/</guid>
<description><![CDATA[I am accustomed to receiving e-mail from Amazon.com, as I am a fiercely loyal customer who shops there quite frequently. But it took me by surprise this weekend to discover that that mounds of porn spam and junk e-mail laced with computer viruses are actively being blasted from digital real estate leased to the e-commerce giant. I wasn't the only one who spotted it. Websense Security Labs issued an alert about the spam attacks on...Please click on the title to continue reading this entry.<br/><br/>93 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Forty Percent of Web Users Surf With Unsafe Browsers]]></title>
<link>http://bestofsecurity.net/blogs/Forty_Percent_of_Web_Users_Surf_With_Unsafe_Browsers/</link>
<comments>http://bestofsecurity.net/blogs/Forty_Percent_of_Web_Users_Surf_With_Unsafe_Browsers/</comments>
<pubDate>Tue, 01 Jul 2008 08:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Forty_Percent_of_Web_Users_Surf_With_Unsafe_Browsers/</guid>
<description><![CDATA[A comprehensive new study of online surfing habits released today found that only 60 percent of the planet's Internet users surf the Web with the latest, most-secure versions of their preferred Web browsers. The study (PDF), conducted by researchers from Google, IBM and the Communication Systems Group in Switzerland, relied on data from server logs provided by Google for search requests between Jan. 2007 and June 2008. The researchers found that of the 1.4 billion...Please click on the title to continue re<br/><br/>163 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Web 2.0 - Abuse of Functionality]]></title>
<link>http://bestofsecurity.net/blogs/Web_2-0_-_Abuse_of_Functionality/</link>
<comments>http://bestofsecurity.net/blogs/Web_2-0_-_Abuse_of_Functionality/</comments>
<pubDate>Mon, 30 Jun 2008 12:00:11 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Web_2-0_-_Abuse_of_Functionality/</guid>
<description><![CDATA[When users are given privileges such as directly editing HTML or uploading files, security issues are bound to arise. This power is being abused by phishers and malicious authors to steal personal information or compromise computers. Below we detail current abuses of Google properties such as Google Sites, Google Pages, and Blogger in terms of hosting malware and exploit code.<br/><br/>64 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Data Breach Reports Up 69 Percent in 2008]]></title>
<link>http://bestofsecurity.net/blogs/Data_Breach_Reports_Up_69_Percent_in_2008/</link>
<comments>http://bestofsecurity.net/blogs/Data_Breach_Reports_Up_69_Percent_in_2008/</comments>
<pubDate>Mon, 30 Jun 2008 08:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Data_Breach_Reports_Up_69_Percent_in_2008/</guid>
<description><![CDATA[Businesses, governments and universities reported a record number of data breaches in the first half of this year, a 69 percent increase over the same period in 2007 driven by a spike in data thefts attributed to employees and contractors, according to an analysis by identity theft experts. The San Diego-based Identity Theft Resource Center tracked 342 data breach reports from Jan. 1 to June 27. Nearly 37 percent of reports came from businesses --...Please click on the title to continue reading this entry.<br/><br/>74 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Taming Internet Explorer Browser Plug-Ins]]></title>
<link>http://bestofsecurity.net/blogs/Taming_Internet_Explorer_Browser_Plug-Ins/</link>
<comments>http://bestofsecurity.net/blogs/Taming_Internet_Explorer_Browser_Plug-Ins/</comments>
<pubDate>Fri, 27 Jun 2008 16:00:04 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Taming_Internet_Explorer_Browser_Plug-Ins/</guid>
<description><![CDATA[Security Fix has often lamented the lack of decent point-and-click software tools to help Microsoft Internet Explorer Web browser users kill insecure &quot;ActiveX controls,&quot; plug-ins for IE that have traditionally been among the biggest avenues of attack from spyware and adware. That's why I'm pleased to call attention to a free new tool called &quot;AxBan,&quot; which helps neuter insecure ActiveX plug-ins installed by some of the most widely used third-party software applications. ActiveX is a...Please click on the ti<br/><br/>124 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[ICANN approves new laissez-faire TLD addition process]]></title>
<link>http://bestofsecurity.net/blogs/ICANN_approves_new_laissez-faire_TLD_addition_process/</link>
<comments>http://bestofsecurity.net/blogs/ICANN_approves_new_laissez-faire_TLD_addition_process/</comments>
<pubDate>Fri, 27 Jun 2008 12:00:12 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/ICANN_approves_new_laissez-faire_TLD_addition_process/</guid>
<description><![CDATA[Today marked the conclusion of ICANN's 32nd meeting in Paris. There were two notable developments that should be of interest to anyone concerned with Internet security. And, as a consumer of our blog, that probably includes you. Would you like the good news or the bad news first?<br/><br/>178 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Free Tools to Secure Your Web Site]]></title>
<link>http://bestofsecurity.net/blogs/Free_Tools_to_Secure_Your_Web_Site/</link>
<comments>http://bestofsecurity.net/blogs/Free_Tools_to_Secure_Your_Web_Site/</comments>
<pubDate>Thu, 26 Jun 2008 12:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Free_Tools_to_Secure_Your_Web_Site/</guid>
<description><![CDATA[Over the past six months, millions of Web pages have been hacked and seeded with malicious software, and in a great many cases the sites were hacked because their curators failed to put in place even basic database security measures. In most of these compromises, the hackers broke in using an attack called SQL injection. Rather than attacking specific software security vulnerabilities, SQL injection attacks target configuration weaknesses in the database layer of the site's...Please click on the title to c<br/><br/>92 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Reverse Engineering the Embedded OpenType Decompression]]></title>
<link>http://bestofsecurity.net/blogs/Reverse_Engineering_the_Embedded_OpenType_Decompression/</link>
<comments>http://bestofsecurity.net/blogs/Reverse_Engineering_the_Embedded_OpenType_Decompression/</comments>
<pubDate>Wed, 25 Jun 2008 12:00:20 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Reverse_Engineering_the_Embedded_OpenType_Decompression/</guid>
<description><![CDATA[As security researchers, we regularly analyze many different types of files. It's important that we take the time to teach ourselves about unusual file formats, so that we can be prepared when a malicious attack occurs with an uncommon file type. One unusual file type that we recently studied is the EOT file format. A quick definition from Wikipedia explains: &quot;Embedded OpenType (EOT) fonts are a compact form of OpenType fonts designed by Microsoft for use as embedded fonts on Web pages. These files usually<br/><br/>149 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Security Update for Adobe Reader, Acrobat]]></title>
<link>http://bestofsecurity.net/blogs/Security_Update_for_Adobe_Reader_Acrobat/</link>
<comments>http://bestofsecurity.net/blogs/Security_Update_for_Adobe_Reader_Acrobat/</comments>
<pubDate>Wed, 25 Jun 2008 08:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Security_Update_for_Adobe_Reader_Acrobat/</guid>
<description><![CDATA[Adobe has issued a security update for its Adobe Acrobat and free Adobe Reader applications. The patch plugs a critical flaw that Adobe said attackers could leverage to take control of a vulnerable system. The latest update, available here for both Microsoft Windows and Mac OS X systems, applies to the most recent versions of Acrobat and Reader (v. 8.1.2). It also plugs the vulnerability in the following Adobe products: -Adobe Reader 7.0.9 and earlier...Please click on the title to continue reading this en<br/><br/>55 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Crimeware Book Now Available]]></title>
<link>http://bestofsecurity.net/blogs/Crimeware_Book_Now_Available-1/</link>
<comments>http://bestofsecurity.net/blogs/Crimeware_Book_Now_Available-1/</comments>
<pubDate>Wed, 25 Jun 2008 07:00:31 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Crimeware_Book_Now_Available-1/</guid>
<description><![CDATA[For some time now, Symantec has stressed that the online threat landscape shifted a few years back, away from hobbyist-driven threats towards financially driven threats. This trend has given rise to a class of malicious software known as &quot;crimeware.&quot; I recently had the pleasure of collaborating with Markus Jakobsson on a book, &quot;Crimeware: Understanding New Attacks and Defenses,&quot; which studies the problem<br/><br/>151 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Political Implications of Cross-Site Scripting]]></title>
<link>http://bestofsecurity.net/blogs/Political_Implications_of_Cross-Site_Scripting-1/</link>
<comments>http://bestofsecurity.net/blogs/Political_Implications_of_Cross-Site_Scripting-1/</comments>
<pubDate>Wed, 25 Jun 2008 07:00:28 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Political_Implications_of_Cross-Site_Scripting-1/</guid>
<description><![CDATA[On the eve of the much anticipated Pennsylvania Democratic Primary, we received public reports of a series of cross-site scripting vulnerabilities that affected Barack Obama's campaign Web site. We also saw reports of these vulnerabilities being disclosed publicly on the XSSed.com Web site. The corresponding code to exploit the vulnerabilities was used to redirect users to Hillary Clinton's Web site.<br/><br/>116 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Tornado on the Loose]]></title>
<link>http://bestofsecurity.net/blogs/Tornado_on_the_Loose-1/</link>
<comments>http://bestofsecurity.net/blogs/Tornado_on_the_Loose-1/</comments>
<pubDate>Wed, 25 Jun 2008 07:00:24 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Tornado_on_the_Loose-1/</guid>
<description><![CDATA[We have recently received a new Web exploit pack called Tornado that contains exploits for 14 vulnerabilities by default. The pack also contains the usual stats and admin pages; however, the greatest success of this pack appears to be how well it has stayed under the radar.<br/><br/>170 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Copyright Violations in the Underground]]></title>
<link>http://bestofsecurity.net/blogs/Copyright_Violations_in_the_Underground-1/</link>
<comments>http://bestofsecurity.net/blogs/Copyright_Violations_in_the_Underground-1/</comments>
<pubDate>Wed, 25 Jun 2008 07:00:23 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Copyright_Violations_in_the_Underground-1/</guid>
<description><![CDATA[The problem: You develop a software package that you want to sell in the underground community. However, your buyers are not the most reputable/trustworthy people. How do you prevent your product from being purchased once and then distributed freely afterwards? How do you enforce your &quot;copyright&quot;?<br/><br/>68 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Storm Worm - Still Evolving]]></title>
<link>http://bestofsecurity.net/blogs/Storm_Worm_-_Still_Evolving-1/</link>
<comments>http://bestofsecurity.net/blogs/Storm_Worm_-_Still_Evolving-1/</comments>
<pubDate>Wed, 25 Jun 2008 07:00:20 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Storm_Worm_-_Still_Evolving-1/</guid>
<description><![CDATA[No sooner had various agencies commented on the reduction of the size of the Storm network than we started seeing signs of another wave of malware in the offing. We are currently tracking some fast-flux domains related to Trojan.Peacomm (a.k.a. Storm).<br/><br/>75 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Neosploit Updated to Include an Acrobat Exploit]]></title>
<link>http://bestofsecurity.net/blogs/Neosploit_Updated_to_Include_an_Acrobat_Exploit-1/</link>
<comments>http://bestofsecurity.net/blogs/Neosploit_Updated_to_Include_an_Acrobat_Exploit-1/</comments>
<pubDate>Wed, 25 Jun 2008 07:00:14 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Neosploit_Updated_to_Include_an_Acrobat_Exploit-1/</guid>
<description><![CDATA[On about April 18th, Symantec's DeepSight honeypots began capturing a new iteration of the Neosploit exploit toolkit. It appears that the pervasive exploit kit has been updated to take advantage of a circa February 2008 vulnerability in Adobe Acrobat Professional and Reader.<br/><br/>84 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Symantec State of Spam Report for May 2008]]></title>
<link>http://bestofsecurity.net/blogs/Symantec_State_of_Spam_Report_for_May_2008/</link>
<comments>http://bestofsecurity.net/blogs/Symantec_State_of_Spam_Report_for_May_2008/</comments>
<pubDate>Tue, 24 Jun 2008 23:00:42 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Symantec_State_of_Spam_Report_for_May_2008/</guid>
<description><![CDATA[As April came to a close, NDR (non-delivery report) spam diminished. In the April State of Spam Report, Symantec reported that NDR spam was 3.7% of all spam observed. Spammers appeared to be playing with the viability of this technique. At this time the numbers of this spam type are down to less than 2%. Symantec has been tracking<br/><br/>124 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[The Broken Record That is Neosploit]]></title>
<link>http://bestofsecurity.net/blogs/The_Broken_Record_That_is_Neosploit/</link>
<comments>http://bestofsecurity.net/blogs/The_Broken_Record_That_is_Neosploit/</comments>
<pubDate>Tue, 24 Jun 2008 23:00:39 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/The_Broken_Record_That_is_Neosploit/</guid>
<description><![CDATA[Lately, I have been feeling like a bit of a broken record, each week singing nearly the same tune. Well, this week is no exception. Neosploit has updated again. Starting on May 2, our honeypots again picked up an update to the omnipresent exploit kit.<br/><br/>89 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Broken CAPTCHAs Likely to Spawn Spam Increase]]></title>
<link>http://bestofsecurity.net/blogs/Broken_CAPTCHAs_Likely_to_Spawn_Spam_Increase/</link>
<comments>http://bestofsecurity.net/blogs/Broken_CAPTCHAs_Likely_to_Spawn_Spam_Increase/</comments>
<pubDate>Tue, 24 Jun 2008 23:00:37 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Broken_CAPTCHAs_Likely_to_Spawn_Spam_Increase/</guid>
<description><![CDATA[CAPTCHAs (completely automated public Turing tests to tell computers and humans apart) are common these days. In case you aren't familiar with the terminology, they are those images with obscured letters that you need to transcribe into a text box whenever you sign up for a new Web mail or forum account<br/><br/>153 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[The Changing Face of Hacktivism]]></title>
<link>http://bestofsecurity.net/blogs/The_Changing_Face_of_Hacktivism/</link>
<comments>http://bestofsecurity.net/blogs/The_Changing_Face_of_Hacktivism/</comments>
<pubDate>Tue, 24 Jun 2008 23:00:33 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/The_Changing_Face_of_Hacktivism/</guid>
<description><![CDATA[The term &quot;hacktivism&quot; often conjures up images of small groups of left-wing hackers defacing Web sites of political parties in an expression of outrage, coupled with demands of truth and justice for the down-trodden. This may have been the case ten years ago, but more recently hacktivism has broken the predefined mold in more ways than one.<br/><br/>128 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[From Russia with Love]]></title>
<link>http://bestofsecurity.net/blogs/From_Russia_with_Love/</link>
<comments>http://bestofsecurity.net/blogs/From_Russia_with_Love/</comments>
<pubDate>Tue, 24 Jun 2008 23:00:29 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/From_Russia_with_Love/</guid>
<description><![CDATA[We've all done foolish things for romance. The exhilaration of discovering a new partner is one of the more exciting feelings in the human experience. However, this flutter of emotions can also drive us to distraction -- so much so that reason and logic are often thrown out at its height.<br/><br/>181 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Crimeware Book Chat on Network World (Wednesday 28-May-2008 from 2-3pm ET)]]></title>
<link>http://bestofsecurity.net/blogs/Crimeware_Book_Chat_on_Network_World_Wednesday_28-May-2008_from_2-3pm_ET/</link>
<comments>http://bestofsecurity.net/blogs/Crimeware_Book_Chat_on_Network_World_Wednesday_28-May-2008_from_2-3pm_ET/</comments>
<pubDate>Tue, 24 Jun 2008 23:00:24 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Crimeware_Book_Chat_on_Network_World_Wednesday_28-May-2008_from_2-3pm_ET/</guid>
<description><![CDATA[In my most recent blog entry, I mentioned that Markus Jakobsson and I recently collaborated on a new book: &quot;Crimeware: Understanding New Attacks and Defenses&quot;. Network World is hosting a live chat session, and attendees will be eligible to win one of ten copies of the book.<br/><br/>124 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Symantec State of Spam Report - June]]></title>
<link>http://bestofsecurity.net/blogs/Symantec_State_of_Spam_Report_-_June/</link>
<comments>http://bestofsecurity.net/blogs/Symantec_State_of_Spam_Report_-_June/</comments>
<pubDate>Tue, 24 Jun 2008 23:00:20 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Symantec_State_of_Spam_Report_-_June/</guid>
<description><![CDATA[The June State of Spam Report demonstrates that spammers are utilizing current events to their advantage. The economic slowdown has been at the forefront of current event topics for some time, and is indisputably a hot item for spammers.<br/><br/>186 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Trojan.Gpcoder Revisited]]></title>
<link>http://bestofsecurity.net/blogs/Trojan-Gpcoder_Revisited/</link>
<comments>http://bestofsecurity.net/blogs/Trojan-Gpcoder_Revisited/</comments>
<pubDate>Tue, 24 Jun 2008 23:00:17 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Trojan-Gpcoder_Revisited/</guid>
<description><![CDATA[Trojan.Gpcoder is a particularly nasty threat that uses public key cryptography to encrypt files on a person's computer and subsequently requests payment from the user in order to recover the files. It has had many variants over the years.<br/><br/>142 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Storming Through Tragedy]]></title>
<link>http://bestofsecurity.net/blogs/Storming_Through_Tragedy/</link>
<comments>http://bestofsecurity.net/blogs/Storming_Through_Tragedy/</comments>
<pubDate>Tue, 24 Jun 2008 23:00:15 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Storming_Through_Tragedy/</guid>
<description><![CDATA[Some advice for the day: don't click on every link in your email. It looks like the Peacomm (Storm) authors have decided to use past and future events in China as lures for their latest creation. A new spam run is in progress with links to a file called &quot;beijing.exe,&quot; which is currently detected by Symantec<br/><br/>82 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Can You Check This for Me?]]></title>
<link>http://bestofsecurity.net/blogs/Can_You_Check_This_for_Me/</link>
<comments>http://bestofsecurity.net/blogs/Can_You_Check_This_for_Me/</comments>
<pubDate>Tue, 24 Jun 2008 23:00:12 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Can_You_Check_This_for_Me/</guid>
<description><![CDATA[Recently, during her vacation to visit me, my sister forgot her cell phone and had to use her credit card in a pay phone to call me. Later that day, she tried to use the same credit card to check into her hotel and it was declined. After calling the credit card company, the man on the phone informed her that criminals often test stolen credit cards in pay phones to verify if it is still valid. Credit card companies know this and instantly put a hold on the card when this occurs.<br/><br/>168 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Report: China Home to Half of All Malicious Web Sites]]></title>
<link>http://bestofsecurity.net/blogs/Report_China_Home_to_Half_of_All_Malicious_Web_Sites/</link>
<comments>http://bestofsecurity.net/blogs/Report_China_Home_to_Half_of_All_Malicious_Web_Sites/</comments>
<pubDate>Tue, 24 Jun 2008 16:00:10 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Report_China_Home_to_Half_of_All_Malicious_Web_Sites/</guid>
<description><![CDATA[More than half of the Web sites foisting malicious software on visitors are located at networks in China, according to data released today. Stopbadware.org, a joint project between researchers at Harvard, Oxford and Google, found that 52 percent of the more than 200,000 infected sites the group analyzed in late May were hosted at Chinese networks. In contrast, U.S.-based networks accounted for 21 percent of the bad sites, Stopbadware found. The sites examined in the...Please click on the title to continue <br/><br/>98 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[New Trojan Leverages Unpatched Mac Flaw]]></title>
<link>http://bestofsecurity.net/blogs/New_Trojan_Leverages_Unpatched_Mac_Flaw/</link>
<comments>http://bestofsecurity.net/blogs/New_Trojan_Leverages_Unpatched_Mac_Flaw/</comments>
<pubDate>Mon, 23 Jun 2008 16:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/New_Trojan_Leverages_Unpatched_Mac_Flaw/</guid>
<description><![CDATA[A tool for exploiting an unpatched security hole in Mac OS X systems has been developed and until earlier today was being distributed through an online forum that caters to Mac hackers, Security Fix has learned. The exploit tool, labeled &quot;Applescript Trojan horse template&quot; by hackers at Macshadows.com, appears to be a collective and ongoing effort to create a package of malicious software that capitalizes on the ARDagent security hole first publicized last week. The...Please click on the title to continue <br/><br/>162 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Firefox 3 Security Features]]></title>
<link>http://bestofsecurity.net/blogs/Firefox_3_Security_Features/</link>
<comments>http://bestofsecurity.net/blogs/Firefox_3_Security_Features/</comments>
<pubDate>Fri, 20 Jun 2008 20:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Firefox_3_Security_Features/</guid>
<description><![CDATA[Firefox 3 was released a few days ago, breaking the record for the most software downloads in a 24 hour period, and currently sits at 12.5 million downloads. In this blog, we review some interesting security features of this release, and preview how these features work.<br/><br/>236 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Serious Security Vulnerabilty In Apple OS X Leopard]]></title>
<link>http://bestofsecurity.net/blogs/Serious_Security_Vulnerabilty_In_Apple_OS_X_Leopard/</link>
<comments>http://bestofsecurity.net/blogs/Serious_Security_Vulnerabilty_In_Apple_OS_X_Leopard/</comments>
<pubDate>Fri, 20 Jun 2008 12:00:06 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Serious_Security_Vulnerabilty_In_Apple_OS_X_Leopard/</guid>
<description><![CDATA[An unpatched security hole in Apple's OS X operating system could be used by attackers to change key system settings or to take control of vulnerable computers, security researchers warn. In a posting to news-for-nerds site Slashdot.org on Wednesday, an anonymous reader noted that a core component of OS X 10.4 (Tiger) and 10.5 (Leopard) called Apple Remote Desktop Agent could be leveraged by any user on the machine to install new programs or alter...Please click on the title to continue reading this entry.<br/><br/>59 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Citibank to Replace ATMs Following Crime Spree]]></title>
<link>http://bestofsecurity.net/blogs/Citibank_to_Replace_ATMs_Following_Crime_Spree/</link>
<comments>http://bestofsecurity.net/blogs/Citibank_to_Replace_ATMs_Following_Crime_Spree/</comments>
<pubDate>Thu, 19 Jun 2008 16:00:07 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Citibank_to_Replace_ATMs_Following_Crime_Spree/</guid>
<description><![CDATA[One of my sources, the other day, tipped me off that Citibank was in the process of replacing most of its automated teller machines (ATMs), but the source couldn't definitively say why. Citibank told ATM &amp; Debit News that it was replacing some 2,000 proprietary ATMs in &quot;a bid to improve customer service.&quot; But a story today by Wired.com reporter Kevin Poulsen suggests that the financial giant is responding to a computer intrusion into a...Please click on the title to continue reading this entry.<br/><br/>89 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Apple Issues Fix for Safari On Windows Security Flaw]]></title>
<link>http://bestofsecurity.net/blogs/Apple_Issues_Fix_for_Safari_On_Windows_Security_Flaw/</link>
<comments>http://bestofsecurity.net/blogs/Apple_Issues_Fix_for_Safari_On_Windows_Security_Flaw/</comments>
<pubDate>Thu, 19 Jun 2008 16:00:05 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Apple_Issues_Fix_for_Safari_On_Windows_Security_Flaw/</guid>
<description><![CDATA[Apple today pushed out a new version of its Safari browser for Microsoft Windows users. The latest iteration plugs at least four security holes, including one that allowed automatic downloading of files to the Windows desktop. In some cases, these files could be started without the user's knowledge. Safari version 3.1.2 corrects a flaw, which allows any rogue Web site to &quot;carpet bomb&quot; the user's Windows Desktop. At the time this vulnerability was first detailed,...Please click on the title to continue read<br/><br/>173 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Cyber Justice Chronicles]]></title>
<link>http://bestofsecurity.net/blogs/Cyber_Justice_Chronicles-1/</link>
<comments>http://bestofsecurity.net/blogs/Cyber_Justice_Chronicles-1/</comments>
<pubDate>Thu, 19 Jun 2008 12:00:12 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Cyber_Justice_Chronicles-1/</guid>
<description><![CDATA[A 21-year-old Panama City, Fla., man was sentenced this month to 41 months in prison for crashing the network of a major U.S. corporation by creating a moneymaking army of hacked Microsoft Windows machines. Robert Matthew Bentley, a.k.a. &quot;lsdigital,&quot; was imprisoned and ordered to pay $65,000 in restitution for the damage he inflicted on Newell Rubbermaid, whose network was temporarily crippled after Bentley and his unnamed co-conspirators installed ad-serving software on more than 100 computers...Please cl<br/><br/>153 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Firefox 3 Released - Sort Of]]></title>
<link>http://bestofsecurity.net/blogs/Firefox_3_Released_-_Sort_Of/</link>
<comments>http://bestofsecurity.net/blogs/Firefox_3_Released_-_Sort_Of/</comments>
<pubDate>Tue, 17 Jun 2008 16:00:03 PDT</pubDate>
<dc:creator>Staff</dc:creator>
<category>blogs</category>
<guid>http://bestofsecurity.net/blogs/Firefox_3_Released_-_Sort_Of/</guid>
<description><![CDATA[Mozilla officially issued the third major release of its Firefox Web browser today. Firefox 3 includes tens of thousands of bugfixes, some performance enhancements, and a few new security features. But if you've been eagerly waiting for the final release, you may have to cool your heels. Mozilla set a goal of breaking the Guinness Book of World Records' record for the most downloads of a program in a single 24-hour period. Mozilla may be...Please 