Apple snags ex-OLPC security chief

Former director of security architecture at One Laptop per Child (OLPC) Ivan Krstic has joined Apple to help thwart hacker attacks against the Mac operating system. Krstic, a well-respected innovator who designed the Bitfrost security specification for the OLPC initiative, joined Cupertino this week [...]

Read entire article

[...]

Pushdo/Cutwail – From Russia with love (Part 2 of 5)

Russia has always been famous for some of its better known exports such as Oil, Gas, Vodka and Andrei Arshavin (for our non-European readers, he kicks a leather ball around a pitch without wearing any body armour). Unfortunately nowadays we can add spam botnets to that list. The famous Storm botnet from 2008 had [...]

Adobe plugs PDF Reader zero-day holes

Adobe joined the Patch Tuesday barrage late yesterday, dropping fixes for a pair of code execution holes affecting its Adobe Reader and Acrobat products.

[ SEE: Exploit posted for brand-new Adobe PDF zero-day ]

The critical update (APSB09-06) addresses a publicly known vulnerability that was being exploited with booby-trapped PDF files. From Adobe’s bulletin: [...]

China’s ‘secure’ OS Kylin – a threat to U.S offensive cyber capabilities?

Picture a cyber warfare arms race where the participating countries have spent years of building offensive cyber warfare capabilities by exploiting the monoculture on one another’s IT infrastructure. Suddenly, one of the countries starts migrating to a hardened operating system of its own, and by integrating it on systems managing the critical infrastructure it successfully [...]

Spoofed Western Union Mail Carries Info Stealer

Fast, safe, and reliable–the promise of money transfer companies. They have been popular because of the convenience in transferring money in almost any part of the world. A convenience being enjoyed by spammers as well. Recently, the Content Security team caught spam claiming to be from Western Union containing a notice of an uncollected money [...]