IDNetters Forums

Technical News & Discussion => Windows News & Discussion => Topic started by: somanyholes on Jan 26, 2010, 12:35:15

Title: might be of interest security stuff as usual
Post by: somanyholes on Jan 26, 2010, 12:35:15
i must update my java, i must update my java ;)

Both educational, so hopefully these are of use. Comments are worth reading as ever...

A Peek Inside the 'Eleonore' Browser Exploit Kit
http://www.krebsonsecurity.com/2010/01/a-peek-inside-the-eleonore-browser-exploit-kit/

Cyber Crooks Cooked the Books at Fla. Library
http://www.krebsonsecurity.com/2010/01/cyber-crooks-cooked-the-books-at-fla-library/

Title: Re: might be of interest security stuff as usual
Post by: Rik on Jan 26, 2010, 12:39:20
Thanks, So. It's getting worse by the day it seems. :( :karma:
Title: Re: might be of interest security stuff as usual
Post by: somanyholes on Jan 26, 2010, 12:41:46
They do really have a point in the comments about these western union style transfer's. Something will have to change, at some point,  i presume that the banks haven't hit the, it's costing us to much money threshhold yet.
Title: Re: might be of interest security stuff as usual
Post by: Rik on Jan 26, 2010, 12:43:05
You're as cynicalrealistic as me, So. ;)
Title: Re: might be of interest security stuff as usual
Post by: somanyholes on Jan 27, 2010, 07:35:38
might as well bolt this on here.

Researchers criticise 3D Secure credit card authentication
http://www.h-online.com/security/news/item/Researchers-criticise-3D-Secure-credit-card-authentication-914144.html

:-\
QuoteThey also note that the process of entering the new password also signs the user up to new terms and conditions which shift liability onto the customer despite the bank having made "many poor security choices"
Title: Re: might be of interest security stuff as usual
Post by: Steve on Jan 27, 2010, 07:47:19
I've always thought it was an unnecessary step that added little in the way of security.
Title: Re: might be of interest security stuff as usual
Post by: somanyholes on Jan 27, 2010, 08:01:59
the attitude does seem to be, throw everything at the wall and see what sticks. I think the concept is pretty good, and it must have brought down card not present fraud, i think by how much is the question really.
Title: Re: might be of interest security stuff as usual
Post by: somanyholes on Jan 27, 2010, 11:03:07
and more

http://www.rsa.com/blog/blog_entry.aspx?id=1580
Title: Re: might be of interest security stuff as usual
Post by: Rik on Jan 27, 2010, 11:06:38
I think I'm going to buy an island and live on it, So.  :shake:
Title: Re: might be of interest security stuff as usual
Post by: somanyholes on Jan 27, 2010, 11:12:49
a boat would do :)
Title: Re: might be of interest security stuff as usual
Post by: Rik on Jan 27, 2010, 11:15:28
You weren't thinking of a prison ship were you? :)
Title: Re: might be of interest security stuff as usual
Post by: somanyholes on Jan 27, 2010, 11:16:53
QuoteYou weren't thinking of a prison ship were you?
Did cross my mind  :evil:
Title: Re: might be of interest security stuff as usual
Post by: Technical Ben on Jan 27, 2010, 18:37:09
Is this a bad time to mention I decided to teach myself Java recently?  :not:
Title: Re: might be of interest security stuff as usual
Post by: Rik on Jan 27, 2010, 18:39:07
Probably... ;D