Credit Card Thieves Caught in Saint Louis area

Fox2 a local TV media channel (in Saint Louis area) has the story: http://fox2now.com/2015/01/12/police-bust-credit-card-thieves-from-detroit/   Why do I bring this up in a cyber security blog? Due to this little info blurb: “Maryland Heights police searched the vehicle, and found fake Michigan drivers’ licenses, dozens of pre-paid MasterCard gift cards, and pricey electronics.” and “Fedak … Read more

Krebs notes Lizard attacked Sony with home routers

The hacker group Lizard Squad  that attacked Sony and Microsoft on Christmas day: http://oversitesentry.com/christmas-hacking-while-you-were-out/ This was the result of their attack:   Brian Krebs has done research (as he does) and has found that the Lizard group has been hacking default password home routers around the world, and it seems they used them to attack … Read more

Can We Stop Cybersecurity Breaches?

Dark Reading has an article on PCI compliance from end of last year: http://www.darkreading.com/risk/compliance/how-pci-dss-30-can-help-stop-data-breaches/a/d-id/1318306 An important paragraph: “In the cases of the largest data breaches, in 2014 a common point of vulnerability was the exploit of remote access methods to implant malware on systems that store, process, or transmit cardholder data. Frequently the point of … Read more

Hackers set 2015 with iCloud hack

Hacker news story: http://thehackernews.com/2015/01/iDict-icloud-password-hacking-tool.html It looks like the hacker “Pr0x13” has released a password hacking tool at GitHub that allows hackers to break into any iCloud account – thus giving them access to iPhone user account data. Tool is called iDict: https://github.com/Pr0x13/iDict/ GitHub is a repository of software development projects by various programmers around the world. … Read more

New – or is it Old Threats?

I want to focus on a couple of Bruce Schneier posts today. Jan 1 Doxing as an Attack https://www.schneier.com/blog/archives/2015/01/doxing_as_an_at.html As Bruce mentions the old attack Doxing where all your information (personal information like cell phone, ss#, birthday, emails, medical information, etc.) is posted to the Internet to pressure the target for a political or otherwise … Read more