SEARCH RESULTS
 
Showing 1-10 of 19 records
 
Expand article

5534 Stolen Ebay Logins And Passwords Accidentally Found Online By Security Firm

2008-10-24 02:06:55 by CyberInsecure in CyberInsecure.com
 
A malware research firm, FaceTime Security Labs, has found a list of hacked eBay logins during investigation of an unrelated case of phishing in October 12. According to Christopher Boyd, the director of FaceTime Security Labs, it was the biggest haul of stolen eBay logins theyve ever seen. The list includes 121 pages and carries 5,534
 
 
 
 
 
Expand article

Anton Security Tip of the Day #16: Virtually There - Journey Into VMWare ESX Log Analysis

2008-08-25 12:11:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...logins to the ESX platform and identify logs that indicate a successful and failed attempts to log in. Here are a few useful examples to analyze Successful logins May 30 09:20:42 esx2 su(pam unix)[9405]: session opened for user root by jhonny(uid=1626 This is a classic Linux root login message; you can watch for these by searching VMWare ESX...
 
 
 
 
 
Expand article

Its not just about a strong password any more

2008-11-28 16:30:52 by Doug Woodall in The Spyware Biz Blog
 
...Logins Are Half Your Access Thieves need the login and password to access your accounts, so make the login difficult to guess, too. Avoid a simple, name-based method; add extra numbers, letters, or an ID thats entirely different. Ideally, use unique logins (and passwords) for each service to isolate any exposure, should someone breach an...
 
 
 
 
 
Expand article

A Localized Bankers Malware Campaign

The Article has images
2008-03-25 14:59:06 by HASH0x8b6136c in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...logins of a Portuguese bank, whereas the malicious parties are using a Russian free web space provider, front.ru in this case as a reliable and outsourced approach to host the malware malware. Is this an example of the maturing consolidation betweeen spammers, phishers and malware authors , or is someone trying to engineer cyber crime...
 
 
 
 
 
Expand article

New Year's Resolutions for choosing online retailers

2007-12-20 09:31:28 by Andras Cser in Security & Risk Management
 
...logins (user cant legitimately login within 30 minutes from a IP address in the US and China Vendors: Digital Envoy, Quova, Oracle Adaptive Authentication Manager (Bharosa acquisition Keystroke dynamics (inexpensive, medium level of security, medium user inconvenience Users keystroke dynamics for entering the username and password (for how...
 
 
 
 
 
Expand article

Is Sears Engaging in Criminal Hacking Behavior?

2008-01-03 11:02:41 by Editor in Schneier on Security
 
Join "My SHC Community" on Sears.com, and the company will install some pretty impressive spyware on your computer: Sears.com is distributing spyware that tracks all your Internet usage - including banking logins, email, and all other forms of Internet usage
 
 
 
 
 
Expand article

What can CISOs learn from the Societe Generale debacle

2008-02-19 09:17:17 by Khalid Kark in Security & Risk Management
 
...logins. The company is not charging Kerviel of trying to steal company secrets or financial fraud. All he wanted was to be seen as an exceptional trader, an astute market player Policy, Implementation, and Audit should stay separate. We often forget that people who set the policy should not be the ones implementing or auditing it. Although...
 
 
 
 
 
Expand article

Xecrets: Access your passwords anytime, anywhere

2008-05-13 07:44:42 by Editor in Adventures in Security
 
...logins, I'd have to regularly click the 'Forgot your password?' link. However, there are still times when I forget to drop my flash drive in my bag. In those cases, I either have to change many of my passwords or wait until I again have access to the Password Manager file. Now there might be a solution for my forgetfulness
 
 
 
 
 
Expand article

Debian OpenSSL Blunder

2008-05-15 09:19:37 by Editor in Cheap Hack
 
...logins.They also point out that web site certificates generated with Debian have a huge problem because the public key is public; in such cases, they don't even have to brute-force you since Moore has done all the work already. Debian has published a tool to detect such weak keys . Engineers at the German company Cynops tested public keys at...