Archive for the 'Security' Category

2006 Security Tools Survey Out!

Friday, June 23rd, 2006

I just received an annoucement from Fydor of NMAP fame in the Philippine Honeynet Project mailing list annoucing the release of his 2006 Security Tool Survey. Here is the annoucement:
After the tremendously successful 2000 and 2003 security tools surveys, Insecure.Org is delighted to release this 2006 survey. I (Fyodor) asked users from the nmap-hackers mailing […]

Luddite’s New Target: Telecommuniting

Wednesday, June 21st, 2006

Due to the recent high profile loss of many US Veteran’s personal information, some people are pointing their fingers at telecommuting. They are blaming the ability to bring work home as the culprit for an obvious information security failure. In this particular case, the personal information was taken from a stolen Veteran’s Affairs personnel laptop. […]

Paypal Phishing Scam: XSS Beats SSL

Saturday, June 17th, 2006

In this article covered by Netcraft, Paypal users are now faced with a new threat. Phishing email send by spammers and worms than redirect users to the valid Paypal site while using a Cross Site Scripting (XSS) vulnerability to insert code into the Paypal site to steal personal information. Here are the details of the […]

Microsoft WGA Spyware or Not?

Tuesday, June 13th, 2006

Things seem to be heating for Microsoft after it released the notorious Windows Genuine Advantage (WGA) tools. WGA comes in two (2) parts. One part is the WGA validation tool that checks if you are using a licenced copy of MS Windows XP. The second part is called the WGA notifier. This part will inform […]

MS Windows 98 Broken? But, Usable!

Sunday, June 11th, 2006

While reading through Slashdot (with the new look), I bumped into this nicely written little article on Microsoft pulling the plug on MS Windows 98, SE and ME. This is earlier than its July 2006 support end of life date. This quotation was taken from the Microsoft Technet Blog describing the reason why the current […]

Every IT Professional Is a Computer Technician

Wednesday, June 7th, 2006

A few month’s back I wrote a small security article in PC Magazine Philippines about the basics of desktop security. A recent and very interesting news article from Australian IT news caused me to remember this article and the circumstance why I wrote it. The article talks about the pains that Microsoft CEO Steve Ballmer […]

InfoCard: Microsoft Passport Reborn?

Tuesday, June 6th, 2006

NetworkWorld has this article about Microsoft Live Labs releasing two (2) new security applications. The first one is dubbed Security Token Service (STS) and the other one is called Relay Service (RS).
STS is an online identity-management service that enables users to register personal information on a virtual information card using Microsoft’s authentication service, code-named InfoCard. […]

Open Source Security Software for MS Windows

Friday, June 2nd, 2006

Our favorite local technical blogging site, PinoyTechBlog, has an article about Open Source Security. Mon laments about the scarcity of polished open source security software in the MS Windows world. He notes that this is particular true in the realm of firewalls and spyware filters.
Migs commented that it is easier for open source developers to […]

US Government to Request Network Operators to Retain Data

Monday, May 29th, 2006

Here is a ZDNet article on U.S. Attorney General Alberto Gonzales and FBI Director Robert Mueller requesting US Network Operators to retain customer data for a particular period of time. This annoucement was made during a private meeting with network operators and major industry players.

In a private meeting with industry representatives, Gonzales, Mueller and other […]

DNA Identification for US Workers

Monday, May 29th, 2006

New York mayor Michael Bloomberg is proposing that all US workers submit their DNA to build a DNA database. This database would be used to uniquely identify workers in the US. ABC News has this story.
The mayor, a billionaire former CEO of a worldwide financial information company, said a worker ID database would “uniquely identify […]