expose

http://www.informationweek.com/news/showArticle.jhtml?articleID=206905232By K.C. JonesInformationWeekMarch 21, 2008Access to personal passport information from presidential hopefuls Sens. Barack Obama, Hillary Rodham Clinton, and John McCain may not have been preventable, the U.S. State Department said this week.The incident highlights the need for greater data access controls for employees and contractors in the IT sector and the government.Three State Department contractors had taken unauthorized looks a read more »
addto Add this link to... report Bury 
'A dumbfounding mystery'More than a decade after serious holes were discovered in the internet's address lookup system, end users remain vulnerable to so-called domain name system cache poisoning, a security researcher has warned.… read more »
addto Add this link to... report Bury 
http://www.theregister.co.uk/2008/04/15/dns_cache_poisoning/By Dan Goodin in San FranciscoThe Register15th April 2008More than a decade after serious holes were discovered in the internet's address lookup system, end users remain vulnerable to so-called domain name system cache poisoning, a security researcher has warned.Developers of the software that handles DNS lookups have scrambled to patch buggy code that could allow the attacks, but not to the satisfaction of Amit Klein, CTO of security firm Trustee read more »
addto Add this link to... report Bury 
Responsible disclosure debate rages onTwo weeks ago, when security researcher Dan Kaminsky announced a devastating flaw in the internet's address lookup system, he took the unusual step of admonishing his peers not to publicly speculate on the specifics. The concern, he said, was that online discussions about how the vulnerability worked could teach black hat hackers how to exploit it before overlords of the domain name system had a chance to fix it.… read more »
addto Add this link to... report Bury 
From: InfoSec News <alerts_at_private>Date: Wed, 23 Jul 2008 02:39:17 -0500 (CDT)http://www.theregister.co.uk/2008/07/21/dns_flaw_speculation/By Dan Goodin in San FranciscoThe Register21st July 2008Two weeks ago, when security researcher Dan Kaminsky announced a devastating flaw in the internet's address lookup system, he took the unusual step of admonishing his peers not to publicly speculate on the specifics. The concern, he said, was that online discussions about how the vulnerability worked could read more »
addto Add this link to... report Bury 
U.S. corporations, governments and universities reported a record 516 consumer data breaches in the first nine months of this year, incidents prompted chiefly by hackers and employee theft, according to a report released today by a nonprofit group that works to prevent fraud. The Identity Theft Resource Center, of San Diego, found that this year's data breach tally has easily eclipsed 2007's 446 incidents. At an average of 57 caches of consumer data reported lost...Please click on the title to continue rea read more »
addto Add this link to... report Bury 
From: InfoSec News <alerts_at_private>Date: Tue, 7 Oct 2008 00:26:47 -0500 (CDT)http://voices.washingtonpost.com/securityfix/2008/10/516_data_breaches_in_2008_expo.htmlBy Brian Krebs Security FixWashington PostOctober 6, 2008U.S. corporations, governments and universities reported a record 516 consumer data breaches in the first nine months of this year, incidents prompted chiefly by hackers and employee theft, according to a report released today by a nonprofit group that works to prevent fraud.The read more »
addto Add this link to... report Bury 
Many county governments across the U.S. are providing citizen's full or partial Social Security Numbers available online or in bulk to prviate companies, according to a Government Accountability Office report released last week. At a time when states are seeking additional laws to punish businesses that inadvertently leak their citizens' personal and financial data, the GAO's findings would appear to highlight an overlooked area of consumer protection, as states weigh trade-offs between open-records laws, read more »
addto Add this link to... report Bury