<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>IT Security Top Headlines &#187; news</title>
	<atom:link href="http://www.pinolobu.com/security/category/news/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.pinolobu.com/security</link>
	<description>interesting news and opinions about IT security</description>
	<lastBuildDate>Wed, 30 Sep 2009 09:05:30 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Ukraine-based cybercriminals steal from online German banks</title>
		<link>http://www.pinolobu.com/security/2009/09/30/ukraine-based-cybercriminals-steal-from-online-german-banks/</link>
		<comments>http://www.pinolobu.com/security/2009/09/30/ukraine-based-cybercriminals-steal-from-online-german-banks/#comments</comments>
		<pubDate>Wed, 30 Sep 2009 09:05:30 +0000</pubDate>
		<dc:creator>pinolobu</dc:creator>
				<category><![CDATA[news]]></category>
		<category><![CDATA[bank]]></category>
		<category><![CDATA[fraud]]></category>
		<category><![CDATA[germany]]></category>
		<category><![CDATA[online]]></category>
		<category><![CDATA[ukraine]]></category>

		<guid isPermaLink="false">http://www.pinolobu.com/security/?p=109</guid>
		<description><![CDATA[A report from security company Finjan said that cyber-criminals have developed sophisticated ways to remain undetected, describing how a Ukraine-based gang managed to steal 300,000 euros in 3 weeks in August 2009 from several German online banks.
It used a malicious software which:
- fooled banks&#8217; anti-fraud systems
- forging bank statements to hide the thefts.
It also recruited [...]]]></description>
			<content:encoded><![CDATA[<p>A <a href="http://www.finjan.com/GetObject.aspx?ObjId=679">report from security company Finjan</a> said that cyber-criminals have developed sophisticated ways to remain undetected, describing how a Ukraine-based gang managed to steal 300,000 euros in 3 weeks in August 2009 from several German online banks.</p>
<p>It used a malicious software which:<br />
- fooled banks&#8217; anti-fraud systems<br />
- forging bank statements to hide the thefts.</p>
<p>It also recruited innocent job-seekers as money mules.</p>
<p><a href="http://news.bbc.co.uk/2/hi/technology/8271384.stm">Full</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.pinolobu.com/security/2009/09/30/ukraine-based-cybercriminals-steal-from-online-german-banks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>High profile websites attacked</title>
		<link>http://www.pinolobu.com/security/2009/08/07/high-profile-websites-attacked/</link>
		<comments>http://www.pinolobu.com/security/2009/08/07/high-profile-websites-attacked/#comments</comments>
		<pubDate>Fri, 07 Aug 2009 13:04:22 +0000</pubDate>
		<dc:creator>pinolobu</dc:creator>
				<category><![CDATA[news]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[DDOS]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[livejournal]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.pinolobu.com/security/?p=104</guid>
		<description><![CDATA[High-profile websites including Google, Facebook and Twitter have been targeted by hackers in what is described as a &#8220;massively co-ordinated attack&#8221;. Other sites such as the blogging platform Live Journal were also reportedly targeted. 
Full
]]></description>
			<content:encoded><![CDATA[<p>High-profile websites including Google, Facebook and Twitter have been targeted by hackers in what is described as a &#8220;massively co-ordinated attack&#8221;. Other sites such as the blogging platform Live Journal were also reportedly targeted. </p>
<p><a href="http://news.bbc.co.uk/2/hi/technology/8189162.stm">Full</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.pinolobu.com/security/2009/08/07/high-profile-websites-attacked/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Twitter suffers DDOS attack, reopens 2 hours later</title>
		<link>http://www.pinolobu.com/security/2009/08/07/twitter-suffers-ddos-attack-reopens-2-hours-later/</link>
		<comments>http://www.pinolobu.com/security/2009/08/07/twitter-suffers-ddos-attack-reopens-2-hours-later/#comments</comments>
		<pubDate>Thu, 06 Aug 2009 17:45:57 +0000</pubDate>
		<dc:creator>pinolobu</dc:creator>
				<category><![CDATA[news]]></category>

		<guid isPermaLink="false">http://www.pinolobu.com/security/?p=103</guid>
		<description><![CDATA[Micro-blogging service Twitter was taken offline for more than two hours on 6th August in what the company believes was a co-ordinated denial-of-service (DDOS) attack.
Full
]]></description>
			<content:encoded><![CDATA[<p>Micro-blogging service Twitter was taken offline for more than two hours on 6th August in what the company believes was a co-ordinated denial-of-service (DDOS) attack.</p>
<p><a href="http://news.bbc.co.uk/2/hi/technology/8188201.stm">Full</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.pinolobu.com/security/2009/08/07/twitter-suffers-ddos-attack-reopens-2-hours-later/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Apple fixing iPhone security issue</title>
		<link>http://www.pinolobu.com/security/2009/08/01/apple-fixing-iphone-security-issue/</link>
		<comments>http://www.pinolobu.com/security/2009/08/01/apple-fixing-iphone-security-issue/#comments</comments>
		<pubDate>Fri, 31 Jul 2009 18:05:35 +0000</pubDate>
		<dc:creator>pinolobu</dc:creator>
				<category><![CDATA[news]]></category>

		<guid isPermaLink="false">http://www.pinolobu.com/security/?p=102</guid>
		<description><![CDATA[Apple is going to release a software patch to fix a recently reported iPhone security vulnerability, which is that specially crafted SMS messages could disconnect the phones from the network, or worse, hijacked.
And not just the iPhone, phones running Windows Mobile and Google Android Oses are also vulnerable.
Full
The BBC, 31 Jul 2009
]]></description>
			<content:encoded><![CDATA[<p>Apple is going to release a software patch to fix a recently reported iPhone security vulnerability, which is that specially crafted SMS messages could disconnect the phones from the network, or worse, hijacked.</p>
<p>And not just the iPhone, phones running Windows Mobile and Google Android Oses are also vulnerable.</p>
<p>Full<br />
<a href="http://news.bbc.co.uk/2/hi/technology/8177755.stm">The BBC, 31 Jul 2009</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.pinolobu.com/security/2009/08/01/apple-fixing-iphone-security-issue/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Los Angeles proposes to drop own network for Google</title>
		<link>http://www.pinolobu.com/security/2009/07/20/los-angeles-proposes-to-drop-own-network-for-google/</link>
		<comments>http://www.pinolobu.com/security/2009/07/20/los-angeles-proposes-to-drop-own-network-for-google/#comments</comments>
		<pubDate>Mon, 20 Jul 2009 03:03:45 +0000</pubDate>
		<dc:creator>pinolobu</dc:creator>
				<category><![CDATA[news]]></category>
		<category><![CDATA[angeles]]></category>
		<category><![CDATA[email]]></category>
		<category><![CDATA[google]]></category>
		<category><![CDATA[LA]]></category>
		<category><![CDATA[los]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.pinolobu.com/security/?p=101</guid>
		<description><![CDATA[Security and privacy concerns have been raised over a multimillion-dollar proposal by Los Angeles, the second largest city in the US, to tap Google Inc.&#8217;s Internet-based services for government e-mail, police records and other confidential data.
At issue is the security of computerized records on everything from police investigations to potholes as America&#8217;s second-largest city considers [...]]]></description>
			<content:encoded><![CDATA[<p>Security and privacy concerns have been raised over a multimillion-dollar proposal by Los Angeles, the second largest city in the US, to tap Google Inc.&#8217;s Internet-based services for government e-mail, police records and other confidential data.</p>
<p>At issue is the security of computerized records on everything from police investigations to potholes as America&#8217;s second-largest city considers dumping its in-house computer network for Google e-mail and office programs that are accessed over the Internet.</p>
<p><a href="http://biz.thestar.com.my/news/story.asp?file=/2009/7/20/business/20090720084934&#038;sec=business">Full</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.pinolobu.com/security/2009/07/20/los-angeles-proposes-to-drop-own-network-for-google/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hackers attack Facebook users by phishing</title>
		<link>http://www.pinolobu.com/security/2009/05/16/hackers-attack-on-facebook-users-by-phishing/</link>
		<comments>http://www.pinolobu.com/security/2009/05/16/hackers-attack-on-facebook-users-by-phishing/#comments</comments>
		<pubDate>Sat, 16 May 2009 05:30:08 +0000</pubDate>
		<dc:creator>pinolobu</dc:creator>
				<category><![CDATA[news]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacked]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[phishing]]></category>

		<guid isPermaLink="false">http://www.pinolobu.com/security/?p=100</guid>
		<description><![CDATA[It was reported by Reuters on 16th May 2009 that in phishing attacks on Facebook&#8217;s million of users, they have successfully collected passwords from *some* of them. Exact number not revealed.
This is the latest in a series of attacks on the site.
Facebook said:
(i) it&#8217;s now &#8220;cleaning up damage&#8221;
(ii) it&#8217;s blocking compromised accounts.
Modus operandi of attackers:
(i) [...]]]></description>
			<content:encoded><![CDATA[<p>It was reported by Reuters on 16th May 2009 that in phishing attacks on Facebook&#8217;s million of users, they have successfully collected passwords from *some* of them. Exact number not revealed.</p>
<p>This is the latest in a series of attacks on the site.</p>
<p>Facebook said:<br />
(i) it&#8217;s now &#8220;cleaning up damage&#8221;<br />
(ii) it&#8217;s blocking compromised accounts.</p>
<p>Modus operandi of attackers:<br />
(i) breaking into accounts of some Facebook members; presumably via common methods like weak password guessing?<br />
(ii) send e-mails to friends of the member asking them to click on links to fake websites, designed to look like the Facebook home page. There, the victims were directed to log back in to the site, where in actual fact they logged into the one controlled by the hackers, hence revealing their passwords.</p>
<p>The fake domains include www.151.im, www.121.im and www.123.im. </p>
<p>As to the objective of the hackers, it&#8217;s believed that they wanted to take over a big number of accounts, then use them to send spam selling goods to Facebook members at large.</p>
<p><a href="http://www.reuters.com/article/newsOne/idUSTRE54D6BN20090514">Source</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.pinolobu.com/security/2009/05/16/hackers-attack-on-facebook-users-by-phishing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>More than 12 million computers are being controlled by cybercriminals</title>
		<link>http://www.pinolobu.com/security/2009/05/06/more-than-12-million-computers-are-being-controlled-by-cybercriminals/</link>
		<comments>http://www.pinolobu.com/security/2009/05/06/more-than-12-million-computers-are-being-controlled-by-cybercriminals/#comments</comments>
		<pubDate>Wed, 06 May 2009 14:52:42 +0000</pubDate>
		<dc:creator>pinolobu</dc:creator>
				<category><![CDATA[news]]></category>

		<guid isPermaLink="false">http://www.pinolobu.com/security/?p=99</guid>
		<description><![CDATA[6 May 2009
Security firm McAfee monitored cyberspace since January 2009 and found that 12 million computers have been taken over by criminals.
And compared to last year, the number of zombies has increased by 50%.
The real number is likely to be higher.
The United States has 18% of the world&#8217;s infected computers. Second is China with 13%.
SOurce
The [...]]]></description>
			<content:encoded><![CDATA[<p>6 May 2009</p>
<p>Security firm McAfee monitored cyberspace since January 2009 and found that 12 million computers have been taken over by criminals.</p>
<p>And compared to last year, the number of zombies has increased by 50%.</p>
<p>The real number is likely to be higher.</p>
<p>The United States has 18% of the world&#8217;s infected computers. Second is China with 13%.</p>
<p>SOurce<br />
<a href="http://news.bbc.co.uk/2/hi/technology/8032886.stm">The BBC</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.pinolobu.com/security/2009/05/06/more-than-12-million-computers-are-being-controlled-by-cybercriminals/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Ukrainian botnet controls almost 2 million PCs globally</title>
		<link>http://www.pinolobu.com/security/2009/04/22/ukrainian-botnet-controls-almost-2-million-pcs-globally/</link>
		<comments>http://www.pinolobu.com/security/2009/04/22/ukrainian-botnet-controls-almost-2-million-pcs-globally/#comments</comments>
		<pubDate>Wed, 22 Apr 2009 01:54:47 +0000</pubDate>
		<dc:creator>pinolobu</dc:creator>
				<category><![CDATA[news]]></category>
		<category><![CDATA[botnet]]></category>
		<category><![CDATA[ukraine]]></category>

		<guid isPermaLink="false">http://www.pinolobu.com/security/?p=97</guid>
		<description><![CDATA[According to security specialists Finjan, almost 2 million PCs globally, including machines inside UK and US government departments, have been taken over by malicious hackers.
The giant network of remotely-controlled PCs (botnet) has been traced to a gang of cyber criminals in the Ukraine.
]]></description>
			<content:encoded><![CDATA[<p>According to security specialists Finjan, almost 2 million PCs globally, including machines inside UK and US government departments, have been taken over by malicious hackers.</p>
<p>The giant network of remotely-controlled PCs (botnet) has been traced to <a href="http://news.bbc.co.uk/2/hi/technology/8010729.stm">a gang of cyber criminals in the Ukraine</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.pinolobu.com/security/2009/04/22/ukrainian-botnet-controls-almost-2-million-pcs-globally/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Major cyber spy network uncovered</title>
		<link>http://www.pinolobu.com/security/2009/03/30/major-cyber-spy-network-uncovered/</link>
		<comments>http://www.pinolobu.com/security/2009/03/30/major-cyber-spy-network-uncovered/#comments</comments>
		<pubDate>Sun, 29 Mar 2009 17:52:44 +0000</pubDate>
		<dc:creator>pinolobu</dc:creator>
				<category><![CDATA[news]]></category>
		<category><![CDATA[china]]></category>
		<category><![CDATA[cyber]]></category>
		<category><![CDATA[espionage]]></category>
		<category><![CDATA[IWM]]></category>
		<category><![CDATA[spy]]></category>

		<guid isPermaLink="false">http://www.pinolobu.com/security/?p=95</guid>
		<description><![CDATA[An electronic spy network, based mainly in China, has infiltrated computers from government offices around the world, Canadian researchers Information Warfare Monitor (IWM), comprised of Ottawa-based think tank SecDev Group and the University of Toronto&#8217;s Munk Centre for International Studies say after a 10-month investigation.
These types of attacks were not new, but they stood out [...]]]></description>
			<content:encoded><![CDATA[<p>An electronic spy network, based mainly in China, <a href="http://news.bbc.co.uk/2/hi/americas/7970471.stm">has infiltrated computers from government offices around the world</a>, Canadian researchers Information Warfare Monitor (IWM), comprised of Ottawa-based think tank SecDev Group and the University of Toronto&#8217;s Munk Centre for International Studies say after a 10-month investigation.</p>
<p>These types of attacks were not new, but they stood out because of &#8220;their ability to collect actionable intelligence for use by the police and security services of a repressive state, with potentially fatal consequences for those exposed&#8221;.</p>
<p><a href="http://www.scribd.com/doc/13731776/Tracking-GhostNet-Investigating-a-Cyber-Espionage-Network">The report</a> said the network had infiltrated 1,295 computers in 103 countries, including computers belonging to foreign ministries and embassies and those linked with the Dalai Lama &#8211; Tibet&#8217;s spiritual leader.</p>
<p>There is no conclusive evidence China&#8217;s government was behind it, researchers say. Beijing also denied involvement.</p>
<p>Researchers found that ministries of foreign affairs of Iran, Bangladesh, Latvia, Indonesia, Philippines, Brunei, Barbados and Bhutan appear to had been targeted.</p>
<p>Hacked systems were also discovered in the embassies of India, South Korea, Indonesia, Romania, Cyprus, Malta, Thailand, Taiwan, Portugal, Germany and Pakistan.</p>
<p>Analysts say the attacks are in effect industrial espionage, with hackers showing an interest in the activities of lawmakers and major companies. </p>
]]></content:encoded>
			<wfw:commentRss>http://www.pinolobu.com/security/2009/03/30/major-cyber-spy-network-uncovered/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Beware of scareware</title>
		<link>http://www.pinolobu.com/security/2009/03/23/beware-of-scareware/</link>
		<comments>http://www.pinolobu.com/security/2009/03/23/beware-of-scareware/#comments</comments>
		<pubDate>Mon, 23 Mar 2009 07:30:30 +0000</pubDate>
		<dc:creator>pinolobu</dc:creator>
				<category><![CDATA[news]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[scareware]]></category>

		<guid isPermaLink="false">http://www.pinolobu.com/security/?p=94</guid>
		<description><![CDATA[Fake anti-virus software makers are exploiting search engines to illicitly drive people to sites selling &#8220;scareware&#8221; i.e. software that give out fake warnings about virus infections.
The criminals do this by using popular and mis-spelled search terms.
Upon visiting the sites, there will be a pop-up that claims that one&#8217;s computer is full of malware.
Motivation: monetary gains: [...]]]></description>
			<content:encoded><![CDATA[<p>Fake anti-virus software makers are exploiting search engines to illicitly drive people to sites selling &#8220;scareware&#8221; i.e. software that give out fake warnings about virus infections.</p>
<p>The criminals do this by using popular and mis-spelled search terms.</p>
<p>Upon visiting the sites, there will be a pop-up that claims that one&#8217;s computer is full of malware.</p>
<p>Motivation: monetary gains: they are making as much as <a href="http://news.bbc.co.uk/2/hi/technology/7955358.stm">USD10,000 per day out of this</a>!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.pinolobu.com/security/2009/03/23/beware-of-scareware/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
