JimmyJohn’s investigating breach with customer credit cards

KrebsonSecurity has the story.  There was unauthorized card activity known due to cards that were created by the stolen card data. (this credit card fraud is called “card-present”) The speculation is that JimmyJohn’s has been breached and at this point we are waiting for JimmyJohn’s investigation.   In the meantime if you want a delicious … Read more

SanDisk Wireless Media Drive Hacked in latest issue of 2600

CNET has reviewed the SanDisk Wireless Media Drive  It is a wireless media drive where one can plug in a SD card and allow it to be on the network. the latest 2600 magazine- “The Hacker Quarterly” (summer issue vol31 number 2) page 48-49 shows how to scan it, connect to it, and ultimately hack it’s … Read more

Symantec end point protection got Owned

Offensive Security has the information. As Offensive  Security was performing a pentest, they noticed that Symantec Endpoint protection had a flaw -one that allows the hacker to escalate security privileges.   This is very bad as it is not a direct execution flaw, but it is a stealth method.   So one never notices as … Read more

Innominate mGuard vulnerability exposed in certain Firmware versions

ICS-cert       has a vulnerability alert: Innominate mGuard firmware Versions 4.0.0 up to Version 8.0.2 Innominate is a German based  company.   Although the vulnerability is a Low profile vulnerability it allows a hacker to learn more about the network and an update to latest firmware is advisable.  Innominate is in the field of … Read more

Easier to steal technology than create your own: China acts

KrebsonSecurity  has a story discussion of an old intrusion. The Iron Dome manufacturers with its successful anti-missile shield found out during 2011-2012 Elisra Group, Israel Aerospace Industries, and Rafael Advanced Systems.   The hackers “Comment Crew”  stole sensitive documents from the networks of the manufacturers over the course of a year.  including a 900 page … Read more