Cisco warning: Serious flaws in Wireless LAN controllers

Routing and switching giant Cisco has released an alert to warn of multiple security flaws in some of its Wireless LAN controllers. The company documented at least four vulnerabilities that could lead to denial-of-service or privilege escalation attacks.  Affected product lines include Cisco Wireless LAN Controllers (WLCs), Cisco Catalyst 6500 Wireless Services Modules (WiSMs), [...]

phpBB.com hacked; Details scarce

[ UPDATE: A reader e-mailed a link to this blog describing a blow-by-blow attack against phpBB.com. ] One of the most widely used open-source bulletin board system in the world has been attacked by malicious hackers. According to a brief “maintenance” notice posted on the phpbb.com home page (screenshot below), the attack occurred through [...]

Mozilla plugs 7 security holes in Firefox

Mozilla’s flagship Firefox 3 browser has undergone another security makeover to fix at least 7 documented security vulnerabilities that expose users to malicious hacker attacks. The Firefox 3.0.6 upgrade patches at least two critical Firefox flaws that may lead to arbitrary code execution attacks and another “high risk” bug that could be used to [...]

Commercial Twitter spamming tool hits the market

Last week, a commercial Twitter spamming tool (tweettornado.com) pitching itself as a “fully automated advertising software for Twitter” hit the market,  potentially empowering phishers, spammers, malware authors and everyone in between with the ability to generate bogus Twitter accounts and spread their campaigns across the micro-blogging service. TweetTornado allows users to create unlimited Twitter accounts, [...]

The psychological impact of false positives

False positives, or the act of marking legitimate content as being malicious, are an unfortunate but unavoidable consequence of rapid response security technologies. They are relatively rare, unseen events, that make the news only when something goes horribly wrong.

Security filters in both the real world and in the electronic world all work on pretty [...]