<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet href="http://feeds.feedburner.com/~d/styles/rss2full.xsl" type="text/xsl" media="screen"?><?xml-stylesheet href="http://feeds.feedburner.com/~d/styles/itemcontent.css" type="text/css" media="screen"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0" xml:base="http://www.secguru.com">
<channel>
 <title>SecGuru - </title>
 <link>http://www.secguru.com</link>
 <description>SecGuru is a social bookmarking and blogging site. You can also submit interesting security articles that you come across on the web. The stories people submit or vote on says a lot about them and we believe that a similar point-of-view is a great thing if you wish to make new friends or meet interesting people.</description>
 <language>en</language>
<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.feedburner.com/Secguru" type="application/rss+xml" /><feedburner:emailServiceId>645579</feedburner:emailServiceId><feedburner:feedburnerHostname>http://www.feedburner.com</feedburner:feedburnerHostname><feedburner:feedFlare href="http://add.my.yahoo.com/rss?url=http%3A%2F%2Ffeeds.feedburner.com%2FSecguru" src="http://us.i1.yimg.com/us.yimg.com/i/us/my/addtomyyahoo4.gif">Subscribe with My Yahoo!</feedburner:feedFlare><feedburner:feedFlare href="http://www.newsgator.com/ngs/subscriber/subext.aspx?url=http%3A%2F%2Ffeeds.feedburner.com%2FSecguru" src="http://www.newsgator.com/images/ngsub1.gif">Subscribe with NewsGator</feedburner:feedFlare><feedburner:feedFlare href="http://feeds.my.aol.com/add.jsp?url=http%3A%2F%2Ffeeds.feedburner.com%2FSecguru" src="http://o.aolcdn.com/favorites.my.aol.com/webmaster/ffclient/webroot/locale/en-US/images/myAOLButtonSmall.gif">Subscribe with My AOL</feedburner:feedFlare><feedburner:feedFlare href="http://www.rojo.com/add-subscription?resource=http%3A%2F%2Ffeeds.feedburner.com%2FSecguru" src="http://blog.rojo.com/RojoWideRed.gif">Subscribe with Rojo</feedburner:feedFlare><feedburner:feedFlare href="http://www.bloglines.com/sub/http://feeds.feedburner.com/Secguru" src="http://www.bloglines.com/images/sub_modern11.gif">Subscribe with Bloglines</feedburner:feedFlare><feedburner:feedFlare href="http://www.netvibes.com/subscribe.php?url=http%3A%2F%2Ffeeds.feedburner.com%2FSecguru" src="http://www.netvibes.com/img/add2netvibes.gif">Subscribe with Netvibes</feedburner:feedFlare><feedburner:feedFlare href="http://fusion.google.com/add?feedurl=http%3A%2F%2Ffeeds.feedburner.com%2FSecguru" src="http://buttons.googlesyndication.com/fusion/add.gif">Subscribe with Google</feedburner:feedFlare><feedburner:feedFlare href="http://www.pageflakes.com/subscribe.aspx?url=http%3A%2F%2Ffeeds.feedburner.com%2FSecguru" src="http://www.pageflakes.com/ImageFile.ashx?instanceId=Static_4&amp;fileName=ATP_blu_91x17.gif">Subscribe with Pageflakes</feedburner:feedFlare><feedburner:feedFlare href="http://www.live.com/?add=http%3A%2F%2Ffeeds.feedburner.com%2FSecguru" src="http://tkfiles.storage.msn.com/x1piYkpqHC_35nIp1gLE68-wvzLZO8iXl_JMledmJQXP-XTBOLfmQv4zhj4MhcWEJh_GtoBIiAl1Mjh-ndp9k47If7hTaFno0mxW9_i3p_5qQw">Subscribe with Live.com</feedburner:feedFlare><item>
 <title>Boffin brings write once, run anywhere to Cisco hijacks</title>
 <link>http://feeds.feedburner.com/~r/Secguru/~3/505291924/boffin_brings_write_once_run_anywhere_cisco_hijacks</link>
 <description>&lt;p&gt;A researcher has discovered a way to reliably exploit a known security vulnerability in a wide class of Cisco System routers, a finding that for the first time allows attackers to hijack millions of devices with a single piece of code.&lt;/p&gt;
&lt;p&gt;The discovery by Felix "FX" Lindner of Recurity Labs in Berlin brings the write-once-run-anywhere approach of software development to the dark art of compromising routers that form the core of the internet. Previously, reliable exploit code had to be specifically fashioned to one of more than 15,000 different supported builds of IOS, or Internet Operating System, which run various Cisco devices.&lt;/p&gt;
&lt;p&gt;"What FX has shown, conclusively, is that when something comes out that can potentially compromise your router, you have to get on it as you would get on a remote vuln, for, say, your domain controllers or database servers," said Dan Kaminsky, a fellow researcher who has reviewed Lindner's findings (PDF). "Router infrastructure has been conclusively proven to be as generically vulnerable as commodity operating systems."&lt;/p&gt;
&lt;p&gt;Each image version of IOS loads programs in substantially different parts of the device's memory. Until now, the randomization made it virtually impossible for weaponized exploit code to know ahead of time where to stash malicious payloads for the specific device it was targeting. Lindner was able to work through this limitation by observing the behavior of software known as ROMmon, which is analogous to the ubiquitous bios software found on personal computers.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://feeds.feedburner.com/~a/Secguru?a=39LmTb"&gt;&lt;img src="http://feeds.feedburner.com/~a/Secguru?i=39LmTb" border="0"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~f/Secguru?a=womghy.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=womghy.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=2kcS1D.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=2kcS1D.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=Mv8qjs.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=Mv8qjs.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=dcJpP5.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=dcJpP5.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=4Sc381.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=4Sc381.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Secguru/~4/505291924" height="1" width="1"/&gt;</description>
 <comments>http://www.secguru.com/link/boffin_brings_write_once_run_anywhere_cisco_hijacks#comments</comments>
 <category domain="http://www.secguru.com/tag/cisco">Cisco</category>
 <category domain="http://www.secguru.com/tag/network">Network</category>
 <pubDate>Wed, 07 Jan 2009 06:40:33 -0800</pubDate>
 <dc:creator>Param</dc:creator>
 <guid isPermaLink="false">7304 at http://www.secguru.com</guid>
<feedburner:origLink>http://www.secguru.com/link/boffin_brings_write_once_run_anywhere_cisco_hijacks</feedburner:origLink></item>
<item>
 <title>Phishing As Tragedy of the Commons</title>
 <link>http://feeds.feedburner.com/~r/Secguru/~3/505291925/phishing_as_tragedy_commons</link>
 <description>&lt;div style="width:477px;text-align:left" id="__ss_897579"&gt;&lt;a style="font:14px Helvetica,Arial,Sans-serif;display:block;margin:12px 0 3px 0;text-decoration:underline;" href="http://www.slideshare.net/amiable_indian/phishing-as-tragedy-of-the-commons?type=document" title="Phishing As Tragedy of the Commons"&gt;Phishing As Tragedy of the Commons&lt;/a&gt;&lt;object style="margin:0px" width="477" height="510"&gt;&lt;br /&gt;
&lt;param name="movie" value="http://static.slideshare.net/swf/ssplayerd.swf?doc=phishing-as-tragedy-of-the-commons-24886&amp;amp;rel=0&amp;amp;stripped_title=phishing-as-tragedy-of-the-commons" /&gt;
&lt;param name="allowFullScreen" value="true"/&gt;
&lt;param name="allowScriptAccess" value="always"/&gt;&lt;embed src="http://static.slideshare.net/swf/ssplayerd.swf?doc=phishing-as-tragedy-of-the-commons-24886&amp;amp;rel=0&amp;amp;stripped_title=phishing-as-tragedy-of-the-commons" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="477" height="510"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;
&lt;div style="font-size:11px;font-family:tahoma,arial;height:26px;padding-top:2px;"&gt;View SlideShare &lt;a style="text-decoration:underline;" href="http://www.slideshare.net/amiable_indian/phishing-as-tragedy-of-the-commons?type=document" title="View Phishing As Tragedy of the Commons on SlideShare"&gt;document&lt;/a&gt; or &lt;a style="text-decoration:underline;" href="http://www.slideshare.net/upload?type=document"&gt;Upload&lt;/a&gt; your own.&lt;/div&gt;
&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feeds.feedburner.com/~a/Secguru?a=1U68nv"&gt;&lt;img src="http://feeds.feedburner.com/~a/Secguru?i=1U68nv" border="0"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~f/Secguru?a=Yj1lC5.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=Yj1lC5.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=1vW3Af.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=1vW3Af.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=l427dS.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=l427dS.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=jXnY0N.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=jXnY0N.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=XnNuk0.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=XnNuk0.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Secguru/~4/505291925" height="1" width="1"/&gt;</description>
 <comments>http://www.secguru.com/link/phishing_as_tragedy_commons#comments</comments>
 <category domain="http://www.secguru.com/tag/microsoft">Microsoft</category>
 <category domain="http://www.secguru.com/tag/phishing">Phishing</category>
 <pubDate>Wed, 07 Jan 2009 06:32:17 -0800</pubDate>
 <dc:creator>Param</dc:creator>
 <guid isPermaLink="false">7303 at http://www.secguru.com</guid>
<feedburner:origLink>http://www.secguru.com/link/phishing_as_tragedy_commons</feedburner:origLink></item>
<item>
 <title>Securing Applications - Primer for Developers</title>
 <link>http://feeds.feedburner.com/~r/Secguru/~3/505269111/securing_applications_primer_developers</link>
 <description>&lt;div style="width:425px;text-align:left" id="__ss_893401"&gt;&lt;a style="font:14px Helvetica,Arial,Sans-serif;display:block;margin:12px 0 3px 0;text-decoration:underline;" href="http://www.slideshare.net/dayioglu/securing-applications-presentation?type=powerpoint" title="Securing Applications"&gt;Securing Applications&lt;/a&gt;&lt;object style="margin:0px" width="425" height="355"&gt;&lt;br /&gt;
&lt;param name="movie" value="http://static.slideshare.net/swf/ssplayer2.swf?doc=bilkent-1231234374230894-1&amp;amp;rel=0&amp;amp;stripped_title=securing-applications-presentation" /&gt;
&lt;param name="allowFullScreen" value="true"/&gt;
&lt;param name="allowScriptAccess" value="always"/&gt;&lt;embed src="http://static.slideshare.net/swf/ssplayer2.swf?doc=bilkent-1231234374230894-1&amp;amp;rel=0&amp;amp;stripped_title=securing-applications-presentation" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="355"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;
&lt;div style="font-size:11px;font-family:tahoma,arial;height:26px;padding-top:2px;"&gt;View SlideShare &lt;a style="text-decoration:underline;" href="http://www.slideshare.net/dayioglu/securing-applications-presentation?type=powerpoint" title="View Securing Applications on SlideShare"&gt;presentation&lt;/a&gt; or &lt;a style="text-decoration:underline;" href="http://www.slideshare.net/upload?type=powerpoint"&gt;Upload&lt;/a&gt; your own. (tags: &lt;a style="text-decoration:underline;" href="http://slideshare.net/tag/security"&gt;security&lt;/a&gt; &lt;a style="text-decoration:underline;" href="http://slideshare.net/tag/application"&gt;application&lt;/a&gt;)&lt;/div&gt;
&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feeds.feedburner.com/~a/Secguru?a=ykeEK9"&gt;&lt;img src="http://feeds.feedburner.com/~a/Secguru?i=ykeEK9" border="0"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~f/Secguru?a=ZtMssQ.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=ZtMssQ.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=PC9x3g.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=PC9x3g.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=FqBY8p.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=FqBY8p.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=hF9zNo.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=hF9zNo.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=kIJXDt.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=kIJXDt.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Secguru/~4/505269111" height="1" width="1"/&gt;</description>
 <comments>http://www.secguru.com/link/securing_applications_primer_developers#comments</comments>
 <category domain="http://www.secguru.com/tag/secure_coding">Secure Coding</category>
 <category domain="http://www.secguru.com/tag/webapp">Webapp</category>
 <pubDate>Wed, 07 Jan 2009 06:13:07 -0800</pubDate>
 <dc:creator>Param</dc:creator>
 <guid isPermaLink="false">7302 at http://www.secguru.com</guid>
<feedburner:origLink>http://www.secguru.com/link/securing_applications_primer_developers</feedburner:origLink></item>
<item>
 <title>Cisco IOS Attack &amp; Defense - The State of the Art</title>
 <link>http://feeds.feedburner.com/~r/Secguru/~3/505269113/cisco_ios_attack_amp_defense_the_state_art</link>
 <description>&lt;div style="width:425px;text-align:left" id="__ss_897269"&gt;&lt;a style="font:14px Helvetica,Arial,Sans-serif;display:block;margin:12px 0 3px 0;text-decoration:underline;" href="http://www.slideshare.net/amiable_indian/cisco-ios-attack-defense-the-state-of-the-art?type=powerpoint" title="Cisco IOS Attack &amp;amp; Defense - The State of the Art "&gt;Cisco IOS Attack &amp;amp; Defense - The State of the Art &lt;/a&gt;&lt;object style="margin:0px" width="425" height="355"&gt;&lt;br /&gt;
&lt;param name="movie" value="http://static.slideshare.net/swf/ssplayer2.swf?doc=cisco-ios-attack-defense-the-state-of-the-art-23783&amp;amp;rel=0&amp;amp;stripped_title=cisco-ios-attack-defense-the-state-of-the-art" /&gt;
&lt;param name="allowFullScreen" value="true"/&gt;
&lt;param name="allowScriptAccess" value="always"/&gt;&lt;embed src="http://static.slideshare.net/swf/ssplayer2.swf?doc=cisco-ios-attack-defense-the-state-of-the-art-23783&amp;amp;rel=0&amp;amp;stripped_title=cisco-ios-attack-defense-the-state-of-the-art" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="355"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;
&lt;div style="font-size:11px;font-family:tahoma,arial;height:26px;padding-top:2px;"&gt;View SlideShare &lt;a style="text-decoration:underline;" href="http://www.slideshare.net/amiable_indian/cisco-ios-attack-defense-the-state-of-the-art?type=powerpoint" title="View Cisco IOS Attack &amp;amp; Defense - The State of the Art  on SlideShare"&gt;presentation&lt;/a&gt; or &lt;a style="text-decoration:underline;" href="http://www.slideshare.net/upload?type=powerpoint"&gt;Upload&lt;/a&gt; your own.&lt;/div&gt;
&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feeds.feedburner.com/~a/Secguru?a=enUwz3"&gt;&lt;img src="http://feeds.feedburner.com/~a/Secguru?i=enUwz3" border="0"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~f/Secguru?a=w7uqZU.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=w7uqZU.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=pdnISw.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=pdnISw.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=prVzUs.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=prVzUs.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=qhcOLy.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=qhcOLy.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=BghwRx.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=BghwRx.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Secguru/~4/505269113" height="1" width="1"/&gt;</description>
 <comments>http://www.secguru.com/link/cisco_ios_attack_amp_defense_the_state_art#comments</comments>
 <category domain="http://www.secguru.com/tag/cisco">Cisco</category>
 <pubDate>Wed, 07 Jan 2009 06:04:17 -0800</pubDate>
 <dc:creator>Param</dc:creator>
 <guid isPermaLink="false">7301 at http://www.secguru.com</guid>
<feedburner:origLink>http://www.secguru.com/link/cisco_ios_attack_amp_defense_the_state_art</feedburner:origLink></item>
<item>
 <title>HSBC strengthens online fraud defences</title>
 <link>http://feeds.feedburner.com/~r/Secguru/~3/505269116/hsbc_strengthens_online_fraud_defences</link>
 <description>&lt;p&gt;HSBC has deployed a new authentication system to protect online and remote transactions from fraud.&lt;/p&gt;
&lt;p&gt;Using the system provided by Authentify, the authentication process is isolated from the web, and user or transaction details must be entered via a telephone call synchronised to online sessions, making it more difficult for criminals to hack into accounts even when using compromised personal information.&lt;/p&gt;
&lt;p&gt;The out-of-band system claims to offer the highest security with the most convenience, as opposed to two-factor authentication – whereby devices give customers automatically-generated one-time passcodes to use in conjunction with the password they already know – as a way to tackle fraud committed in cases where the cardholder is not present, such as online shopping.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://feeds.feedburner.com/~a/Secguru?a=iAW5Cr"&gt;&lt;img src="http://feeds.feedburner.com/~a/Secguru?i=iAW5Cr" border="0"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~f/Secguru?a=Z9ASJm.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=Z9ASJm.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=bOR43s.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=bOR43s.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=Ncfu0N.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=Ncfu0N.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=Xdrm7t.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=Xdrm7t.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=CdGAtz.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=CdGAtz.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Secguru/~4/505269116" height="1" width="1"/&gt;</description>
 <comments>http://www.secguru.com/link/hsbc_strengthens_online_fraud_defences#comments</comments>
 <category domain="http://www.secguru.com/tag/authentication">Authentication</category>
 <category domain="http://www.secguru.com/tag/webapp">Webapp</category>
 <pubDate>Wed, 07 Jan 2009 06:02:22 -0800</pubDate>
 <dc:creator>Param</dc:creator>
 <guid isPermaLink="false">7300 at http://www.secguru.com</guid>
<feedburner:origLink>http://www.secguru.com/link/hsbc_strengthens_online_fraud_defences</feedburner:origLink></item>
<item>
 <title>Characteristics of Effective Incident Response</title>
 <link>http://feeds.feedburner.com/~r/Secguru/~3/504451942/characteristics_effective_incident_response</link>
 <description>&lt;p&gt;There is a need for effective incident response, now more than ever. However, the key to incident response is incident preparedness. Responding without being prepared to respond correctly is what turns an incident into a major data breach and a major embarrassment.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://feeds.feedburner.com/~a/Secguru?a=KHaTNi"&gt;&lt;img src="http://feeds.feedburner.com/~a/Secguru?i=KHaTNi" border="0"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~f/Secguru?a=jzHo1z.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=jzHo1z.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=mHQDfg.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=mHQDfg.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=Cm94w2.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=Cm94w2.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=EIiy0C.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=EIiy0C.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=aVtdg9.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=aVtdg9.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Secguru/~4/504451942" height="1" width="1"/&gt;</description>
 <comments>http://www.secguru.com/link/characteristics_effective_incident_response#comments</comments>
 <category domain="http://www.secguru.com/tag/forensics">Forensics</category>
 <category domain="http://www.secguru.com/tag/microsoft">Microsoft</category>
 <pubDate>Tue, 06 Jan 2009 08:51:30 -0800</pubDate>
 <dc:creator>Param</dc:creator>
 <guid isPermaLink="false">7299 at http://www.secguru.com</guid>
<feedburner:origLink>http://www.secguru.com/link/characteristics_effective_incident_response</feedburner:origLink></item>
<item>
 <title>Russian hackers - A global menace ?</title>
 <link>http://feeds.feedburner.com/~r/Secguru/~3/504451943/russian_hackers_a_global_menace</link>
 <description>&lt;p&gt;Not long ago, the simple, anonymous thrill of exposing chinks in American software was enough of a payoff for a Russian hacker.&lt;/p&gt;
&lt;p&gt;Today it's cash. And almost all the targets are in the United States and Europe, where Russia's notorious hackers pilfer online bank accounts, swipe Social Security numbers, steal credit card data, and peek at email log-ins and passwords as part of what some estimate to be a $100 billion-a-year global cybercrime business.&lt;/p&gt;
&lt;p&gt;And when it's not money that drives Russian hackers, it's politics - with the aim of accessing or disabling the computers, Web sites and security systems of governments opposed to Russian interests. That may have been the motive behind a recent attack on Pentagon computers.&lt;/p&gt;
&lt;p&gt;A new generation of Russian hacker is behind America's latest criminal scourge. Young, intelligent and wealthy enough to zip down Moscow's boulevards in shiny BMWs, they make their money in cubbyholes that police thus far have found impossible to ferret out.&lt;/p&gt;
&lt;p&gt;From behind the partition of anonymous online hacking forums, they boast about why they use their programming savvy to spam and steal, mostly from the West.&lt;/p&gt;
&lt;p&gt;"Why should I take a regular job after graduating and exert myself to earn just $2,000 a month, rather than grab this chance to make money?" says a Russian hacker on an online forum that specializes in credit card fraud. "It makes sense to get as much as you can, as quickly as possible, rather than wasting time working for someone else."&lt;/p&gt;
&lt;p&gt;&lt;a href="http://feeds.feedburner.com/~a/Secguru?a=5z9T9b"&gt;&lt;img src="http://feeds.feedburner.com/~a/Secguru?i=5z9T9b" border="0"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~f/Secguru?a=a1apWu.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=a1apWu.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=noKWf1.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=noKWf1.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=eORIZ3.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=eORIZ3.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=R6xCmy.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=R6xCmy.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=aQrk2V.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=aQrk2V.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Secguru/~4/504451943" height="1" width="1"/&gt;</description>
 <comments>http://www.secguru.com/link/russian_hackers_a_global_menace#comments</comments>
 <category domain="http://www.secguru.com/tag/news">News</category>
 <pubDate>Tue, 06 Jan 2009 08:45:49 -0800</pubDate>
 <dc:creator>Param</dc:creator>
 <guid isPermaLink="false">7298 at http://www.secguru.com</guid>
<feedburner:origLink>http://www.secguru.com/link/russian_hackers_a_global_menace</feedburner:origLink></item>
<item>
 <title>Celebrity Twitter account hacks raise serious security questions</title>
 <link>http://feeds.feedburner.com/~r/Secguru/~3/504451945/celebrity_twitter_account_hacks_raise_serious_security_questions</link>
 <description>&lt;p&gt;IT security and control firm Sophos believes that the embarrassing defacements of celebrity Twitter accounts yesterday demonstrate a worrying security problem for micro-blogging service, Twitter.&lt;/p&gt;
&lt;p&gt;Tools that normally only Twitter’s technical support team can use to help locked-out members reset their email address were accessed by hackers, enabling them to steal control of the accounts from their rightful famous owners.&lt;/p&gt;
&lt;p&gt;Hackers have targeted the accounts of 33 high profile users with the latest attack, including Britney Spears, American news presenter Rick Sanchez, and president-elect Barack Obama. The message walls of the affected accounts were defaced with offensive or embarrassing messages, which have now been removed by Twitter staff.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://feeds.feedburner.com/~a/Secguru?a=FYvFY9"&gt;&lt;img src="http://feeds.feedburner.com/~a/Secguru?i=FYvFY9" border="0"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~f/Secguru?a=0m2C9k.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=0m2C9k.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=NuPEWA.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=NuPEWA.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=ey0fPY.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=ey0fPY.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=7bkrD0.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=7bkrD0.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=5sqJvo.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=5sqJvo.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Secguru/~4/504451945" height="1" width="1"/&gt;</description>
 <comments>http://www.secguru.com/link/celebrity_twitter_account_hacks_raise_serious_security_questions#comments</comments>
 <category domain="http://www.secguru.com/tag/news">News</category>
 <category domain="http://www.secguru.com/tag/webapp">Webapp</category>
 <pubDate>Tue, 06 Jan 2009 08:42:24 -0800</pubDate>
 <dc:creator>Param</dc:creator>
 <guid isPermaLink="false">7297 at http://www.secguru.com</guid>
<feedburner:origLink>http://www.secguru.com/link/celebrity_twitter_account_hacks_raise_serious_security_questions</feedburner:origLink></item>
<item>
 <title>IT execs losing ground on compensation, salary study says</title>
 <link>http://feeds.feedburner.com/~r/Secguru/~3/504385437/it_execs_losing_ground_compensation_salary_study_says</link>
 <description>&lt;p&gt;For those who make it to the top of the IT ladder, the pay can be great. But most IT executives are losing ground as a result of the economic recession, according to a new report released today by Janco Associates Inc.&lt;/p&gt;
&lt;p&gt;Janco, a Park City, Utah-based IT consulting firm, said it found that the mean compensation for CIOs in large enterprises is now $168,839, a 6.11% decrease from a similar study it issued a year ago. In midsize organizations, the current average is $163,211, a drop-off of nearly 5%, said Janco, which cited reductions in bonuses and fringe benefits for the compensation declines.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://feeds.feedburner.com/~a/Secguru?a=RLWZXA"&gt;&lt;img src="http://feeds.feedburner.com/~a/Secguru?i=RLWZXA" border="0"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~f/Secguru?a=K219sG.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=K219sG.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=jcNjce.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=jcNjce.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=4gQuL1.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=4gQuL1.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=rweWTR.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=rweWTR.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=nP9dQV.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=nP9dQV.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Secguru/~4/504385437" height="1" width="1"/&gt;</description>
 <comments>http://www.secguru.com/link/it_execs_losing_ground_compensation_salary_study_says#comments</comments>
 <category domain="http://www.secguru.com/tag/news">News</category>
 <pubDate>Tue, 06 Jan 2009 07:27:04 -0800</pubDate>
 <dc:creator>Param</dc:creator>
 <guid isPermaLink="false">7296 at http://www.secguru.com</guid>
<feedburner:origLink>http://www.secguru.com/link/it_execs_losing_ground_compensation_salary_study_says</feedburner:origLink></item>
<item>
 <title>Security will eat IT budgets in 2009, says survey</title>
 <link>http://feeds.feedburner.com/~r/Secguru/~3/504385438/security_will_eat_it_budgets_2009_says_survey</link>
 <description>&lt;p&gt;Security budgets are increasing in 2009 to consume 12.6 percent of the entire IT operating budget, up from 11.7 percent in 2008, according to Forrester Research's survey of 942 IT and security managers in North America and Europe.&lt;/p&gt;
&lt;p&gt;Staffing and upgrades to existing security technology are taking up over half of the IT security budgets overall, according to Forrester's report, ‘The State of Enterprise IT Security: 2008 to 2009'.&lt;/p&gt;
&lt;p&gt;The survey also shows 20 percent of the available IT security funding this year is expected to go to security outsourcing, consultants and managed services, with another 18.5 percent targeting new security initiatives.&lt;/p&gt;
&lt;p&gt;Full-disk encryption was cited as the top client security technology to be piloted or adopted this year, along with file-level encryption. About a fifth of the organisations also said they expected to pilot or adopt data-leak prevention during the next twelve months, though there appears to be less interest in desktop DLP than network-based DLP.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://feeds.feedburner.com/~a/Secguru?a=uXblq2"&gt;&lt;img src="http://feeds.feedburner.com/~a/Secguru?i=uXblq2" border="0"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~f/Secguru?a=BrHwkA.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=BrHwkA.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=49kAYT.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=49kAYT.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=Io3zQa.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=Io3zQa.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=hLC1M1.P"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=hLC1M1.P" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~f/Secguru?a=HSv3Fs.p"&gt;&lt;img src="http://feeds.feedburner.com/~f/Secguru?i=HSv3Fs.p" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/Secguru/~4/504385438" height="1" width="1"/&gt;</description>
 <comments>http://www.secguru.com/link/security_will_eat_it_budgets_2009_says_survey#comments</comments>
 <category domain="http://www.secguru.com/tag/management">Management</category>
 <pubDate>Tue, 06 Jan 2009 07:16:47 -0800</pubDate>
 <dc:creator>Param</dc:creator>
 <guid isPermaLink="false">7295 at http://www.secguru.com</guid>
<feedburner:origLink>http://www.secguru.com/link/security_will_eat_it_budgets_2009_says_survey</feedburner:origLink></item>
</channel>
</rss>
