Archive for the 'Intrusion Detection/Prevention' Category
Very inventive targeted attack through Word attachment
0 Comments Published by ean May 19th, 2006 in Exploits/Vulnerabilities, Intrusion Detection/Prevention, Security, SonicWALLSANS is reporting a targeted attack to a particular company. This attack begins with email from a domain that closely resembles the company’s own domain, so that it appears as an internal email. The attached Word file uses an undisclosed exploit to extract and execute a Trojan. Another interesting bit is that it overwrites the [...]
IM and P2P Attack Increases According to FaceTime
0 Comments Published by ean April 10th, 2006 in IM, IRC, Intrusion Detection/Prevention, P2P, SecurityFaceTime has released their report analyzing attacks via IM, P2P, and Chat vectors. One thing I like about this report is it’s fresh, comparing the 1st quarter of 2006 with all of 2005. FaceTime offers security appliances with a very specific focus, which is, surprise, the same areas highlighted in the above report: [...]
Can You Control Skype?
2 Comments Published by ean March 23rd, 2006 in Firewalls, Intrusion Detection/Prevention, Security, Skype, SonicWALLMike Rothman posted an article on Skype and the need to control it in many environments. His opinion is that will be very difficult to control it on the network side of thing and he recommends controlling at the endpoint. I thought it would be a good time to bring out that SonicWALL is very [...]
Evidence of another massive botnet - MetaFisher
0 Comments Published by ean March 22nd, 2006 in Firewalls, Intrusion Detection/Prevention, Phishing, Security, UncategorizedHere’s the deal. I do get irritated with the ‘media’ and ‘hype’. Because I’m in the network security arena, I frequently ask myself, is all the press about network attacks legitimate? Are the fears justified? Then I see something like this that settles it in my mind.
Some of you may remember [...]
New IE Vulnerability [createTextRange()]
0 Comments Published by ean March 22nd, 2006 in Intrusion Detection/Prevention, Microsoft, Security, UncategorizedAnother week, another Highly Critical IE vulnerability published by Secunia.
Secunia - Advisories - Microsoft Internet Explorer “createTextRange()” Code Execution
I recommend monitoring SANS for exploits of this vulnerability and Microsoft patch announcements.
SANS Internet Storm Center - New IE Vulnerability
Analysis of Reported Data Breaches
1 Comment Published by ean March 16th, 2006 in Firewalls, Intrusion Detection/Prevention, Phishing, SecurityThe Privacy Rights Clearinghouse has a Chronology of Data Breaches since the first ChoicePoint incident in February 2005. I spent some time grouping the breaches into some similar categories and analyzing the cause of the breaches. This analysis covers the report incidents from February 15, 2005 through March 14, 2006.
The categories I used are:
Backup Loss [...]
Hacked bank server hosts phishing sites
0 Comments Published by ean March 14th, 2006 in Intrusion Detection/Prevention, Phishing, Security, UncategorizedAnd along with the BC Government problems, we see that a Chinese bank server network was compromised as a launching pad for a phishing scam. Again, it wasn’t the Chinese bank data wasn’t the primary target. The phishers just wanted to use their network to host the phishing site, which then relayed your personal info [...]
Canadian Government Office Servers Hacked for Storage Use
0 Comments Published by ean March 14th, 2006 in Intrusion Detection/Prevention, SecurityThis article in the Vancouver Sun describes how 78 computers inside British Columbia’s government network were compromised. The important thing to note here is that they were not attacked for the data that they held. In fact, it appears that no information was stolen from these servers.
They were used to store downloaded movies and “‘hacker’ [...]
Search
About
You are currently browsing the the exclamake! blog weblog archives for the 'Intrusion Detection/Prevention' category.
Longer entries are truncated. Click the headline of an entry to read it in its entirety.Latest
- AT&T Customers enjoy Starbucks WiFi
- More intelligent spammers
- Microsoft SBS R2 (and R1) Still Not Shipping
- Bump Keys and How They Illustrate Common Security Principles
- Windows Malicious Removal Tool Statistics
- Your Security Software Might Be Your Security Problem
- Very inventive targeted attack through Word attachment
- Business Managers Are Interested in Security!
- Unified Threat Management: The Secure SMB’s Friend
- What’s In A Severity Rating?
Archives
Categories
- Antivirus (2)
- Exploits/Vulnerabilities (4)
- Firewalls (6)
- How-To (1)
- IM (1)
- Interfaces (1)
- Intrusion Detection/Prevention (8)
- IRC (1)
- Legal (1)
- Managed Services (1)
- Microsoft (5)
- P2P (1)
- Phishing (3)
- Physical Security (1)
- Remote Access (2)
- Retail (1)
- SBS (1)
- Security (18)
- Security Tools (1)
- site admin (2)
- Skype (1)
- SonicWALL (5)
- Spam (1)
- Uncategorized (4)
- Web Apps (1)
