What does state-of-art Spear Phishing Look Like?

Hackread has the story: http://hackread.com/outlook-web-app-phishing-page-on-russian-site/  screenshot from fake page as on Hackread That looks like a standard OWA access panel right?  Except that it is actually on a Russian site designed to steal your credentials.   If you received an email stating: “check your email with this link, must see document ” Then your click … Read more

Set-Up Proper Internet Security

While reading the ~20 blogs this morning the one from F-Secure hit home: http://community.f-secure.com/t5/BSB-Blog/Why-Internet-security-should/ba-p/65567 Elija is discussing why we should have Internet security: “The 24/7 work culture is also one reason for using the same devices both for work and for leisure. This in turn may lead to a situation where social media activities and … Read more

Still Discussing Sony Attack … but why?

The reason is that it was a _Destructive_ attack. Credit card numbers were not stolen. Data was deleted and stolen. Highly unusual attack. Dark Reading  has a story on the “destructive” attack. http://www.darkreading.com/how-not-to-be-the-next-sony-defending-against-destructive-attacks-/d/d-id/1318516 ” “If your only goal is to do damage,” says Jonathan Sander, strategy and research officer for Stealthbits Technologies, “you don’t need a lot … Read more

Studying Data Breaches as a whole

IBM has an infographic and a report: http://www-935.ibm.com/services/us/en/security/infographic/cybersecurityindex.html http://www-935.ibm.com/services/us/en/it-services/security-services/cost-of-data-breach/ (we make a point to show you the whole link, so you know exactly where you are going) The image above is a snippet from the infographic  IBM has gathered this information from the Ponemon Institute research report (you can download these reports if you register … Read more

Amazing to note Telnet vulnerability Patch Tuesday

Microsoft has a Telnet  vulnerability which has a critical remote code execution. (MS15-002) https://technet.microsoft.com/library/security/ms15-jan This is true:  “Only customers who enable telnet on Windows 2003 are affected (it is installed but not enabled). and Telnet is not installed on Vista or later operating systems” But if you did enable (or install and enable) it has … Read more