Dangerous Java flaw threatens virtually everything
update Newly-discovered vulnerabilities in the Sun Java Runtime Environment put platforms, browsers--even mobile devices--at risk, according to security analyst.
Find more stories in: Java, Hacking
U.S. 'botmaster' faces up to 60 years prison
A Los Angeles man is facing up to 60 years in prison and fines of up to US$1.75 million after admitting to infecting at least 250,000 PCs with information-stealing malware.
Find more stories in: Security
Microsoft downplays stealth Windows Update file updates
Microsoft has downplayed the recent, but unpublicized, automatic update of system files on Windows XP and Vista machines as "normal behavior".
Find more stories in: Security, Windows Vista, Windows XP
Why Apple can't stop iPhone hackers
AT&T and Apple may face an uphill battle prosecuting hackers who untether the iPhone from the AT&T wireless network.
Find more stories in: Mobile
OpenOffice worm hits Mac, Linux and Windows
Worm first spotted last month is spreading through multiple operating systems, says Symantec which rates it as "medium-risk".
Find more stories in: Operating systems, Office suites, Open source
Yahoo IM affected by ActiveX vulnerabilities
Three different ActiveX vulnerabilities affect Yahoo Instant Messenger version 3.5, and Yahoo Messenger versions 4.0, 5.0, and 5.5.
Find more stories in: Web browsers, Security
Mozilla releases browser testing tools
Mozilla tackles vulnerabilites on Firefox with their browser testing tools which work with Microsoft Internet Explorer, Apple Safari and Opera as well.
Find more stories in: Software, Search, Web servers, Web services, Open source, Security, Security applications/tools
Cyber-crime reporting body for U.K.?
IT heads suggest the creation of a central reporting body to assist organizations that are under threat, and coordinate efforts to identify and resolve e-crime incidents.
Find more stories in: Crisis communications, Hacking
Adobe Flash exploit could log keystrokes
Company has issued three critical security updates for its Flash Player, with threats including keylogging and cross-site forgery attacks.
Find more stories in: Viruses and worms, Security Management, Privacy
Online security growing concern for Indian banks
Survey reveals 30 percent of India's top 40 banks were victims of phishing attacks in the past year. Only 57 percent have formal plan to drive user awareness about fraud.
Find more stories in: Banking, Network security, Security Management, Security implementation/standards
Citibank terminates S'pore biometric service
Bank ends fingerprint payment mode after technology partner withdraws from service. But move is inevitable as changing vendors would be costly, analyst says.
Find more stories in: Biometrics
iFrame attacks: Blame your Web admin guy
With one new Web site compromised every 14 seconds, including some of the biggest names, it's almost impossible to tell what's a "trustworthy" Web site. But who's at fault for exposing Internet users?
Find more stories in: Hacking
Automated malware hits Yahoo and Microsoft IM
Yahoo and Microsoft's instant messenger applications are under attack from malware that is able to infect a PC without any interaction from the user.
Find more stories in: Instant messaging, Viruses and worms
Internet shoppers clueless on Web security
Consumers still lack awareness of basic online security alarms despite well publicized instances of data breaches and fraud.
Find more stories in: Web sites
VMware security bug exposed
Security vendor Core Security Technologies claims VMware has failed to fix a severe bug in its virtualization software.
Find more stories in: Operating systems
Staff threaten network security from home
Remote workers are hijacking neighbors' Wi-Fi, opening unsafe e-mail messages and lending work PCs to non-employees, says a Cisco-sponsored survey.
Find more stories in: 802.11/Wi-Fi, Network security, SMB
Bank trojan charges for sex, breaks two-factor
A banking trojan designed to intercept Australian customers' security details and which can circumvent two-factor authentication has been discovered.
Find more stories in: Data security, Authentication and encryption, Viruses and worms, Security Management
Securing beyond two-factor authentication
Two-factor authentication alone is insufficient security for online banking, says Oracle exec.
Find more stories in: Authentication and encryption, Policy and management, Security implementation/standards, Security Management
SMS two-factor authentication to be phased out
SMS-delivered two-factor authentication will be dead in three years, says Gary Blair, National Australia Bank's general manager of technology, risk and security.
Find more stories in: Authentication and encryption
Anti-spyware demo revealed as malware in disguise
The scam has proliferated dramatically, prompting users browsing a legitimate Web site to download an anti-spyware package that gives hackers access to credit card details.
Find more stories in: Security


















