Security Brief: UGNazi, Protests and Android Malware

May 20th, 2012
“Security Brief” continues with some of the most important events and incidents that marked the week between May 14 and May 20, 2012.

Many security companies detailed their findings as far as mobile malware is concerned. We‘ve seen that shady Android markets are showing up everywhere in the world, targeting users... (read more)

State of Utah outlines mistakes made allowing theft of 780K records

May 19th, 2012



After losing nearly 800,000 residents personal information the State of Utah admits to not encrypting the data, leaving default passwords in place and not performing regular audits to find the mistakes.

The H Roundup for the week ending 19 May

May 19th, 2012
In the last seven days: a beta for PostgreSQL 9.2 arrived, Chrome 19 was declared stable, and Oracle changed its mind about damages in the Android case. Also, The H provided some tools and tips for the systemd Linux init system, and Andrew Back took a practical look at the Internet of Things


Security Expert Finds Open Redirection Bug on Google Books

May 19th, 2012
Deepanker Verma, a security research at the Infosec Institute, has uncovered a potentially dangerous redirection vulnerability that affects Google Books (books.google.com), a site that has been recently integrated into Google Play.

According to Verma, Google has been notified on the existence of the flaw and even confirmed ... (read more)

“Nerd” Releases HULK DOS Tool

May 19th, 2012
Barry Shteiman, a principal security engineer at Imperva, the owner of the Sectorix blog, and a self-proclaimed “nerd” has released a Python-based web server denial-of-service (DOS) tool called HULK (Http Unbearable Load King).

“For a while now, I have been playing with some of the more exotic tools, finding that their main problem is a... (read more)

“Facebook (IPO) Subscription Partnership Proposal” 419 Scam Making Rounds

May 19th, 2012
How do you react if you receive an email from a company that claims you can make easy money by purchasing and selling Facebook shares? Whatever your answer may be now, we’ll make sure to give you the right one by the end of this article.

Security experts from Symantec have come across a new scam email that ... (read more)

Iranian Hackers Compromise NASA SSL Certificate, Agency Investigates

May 19th, 2012
On May 16, a group of Iranian hackers and programmers operating under the name of Cyber Warriors Team claimed to have compromised an SSL certificate issued to the Research and Education Support Services of NASA.

A space agency representative revealed that they’re currently investigating the incident, Securit... (read more)

Dear Jailbreaker, Apple Wants to Have a Word with You

May 19th, 2012

After banning the word "jailbreak" from its app store and music library, Apple today reversed course and again permits the term - slang for hacking into a device to download unauthorized content -- to appear on iTunes and its App Store.

On Thursday bloggers noticed Apple had censored the word, using the Thin Lizzy album "Jailbreak" as an example. For awhile, the title was listed as "J******k" in Apple's music library, at least its U.S. version. In other instances, digital content continued to bear the full name Jailbreak.

read more

Worm Posts on SNS Sites and Wipes out Rivals

May 18th, 2012




W32.Wergimog is a worm that attempts to spread through removable drives and opens a back door. When I looked into its variants, I found an interesting sample, which I named W32.Wergimog.B. Both samples are based on the same source code, but the .B vari...

Worm Posts on SNS Sites and Wipes out Rivals

May 18th, 2012



W32.Wergimog is a worm that attempts to spread through removable drives and opens a back door. When I looked into its variants, I found an interesting sample, which I named W32.Wergimog.B. Both samples are based on the same source code, but the .B vari...