Libertés Numériques
97.1K views | +0 today
Follow
Libertés Numériques
Veille sur la sécurité et les libertés individuelles à l'heure d'Internet.
Your new post is loading...
Your new post is loading...

Principales Thématiques :

Current selected tag: 'Chester Wisniewski'. Clear
Scooped by Aurélien BADET
Scoop.it!

Is security really dead? Perhaps it's your lack of depth

Is security really dead? Perhaps it's your lack of depth | Libertés Numériques | Scoop.it

I attend a lot of conferences. I mean a LOT of conferences. There has been a growing theme at all of these events among practitioners...

Firewalls are dead. Anti-virus is dead. IDS/IPS is dead. [insert security product X here] is dead.

Meanwhile, all of the presentations at these conferences tell us why product Y is garbage and company Z is incompetent and how to break SSL into tiny pieces.

Where have all the defenders gone? Is it a lost cause? Are we well and truly hopeless and defeated?

Absolutely not. In fact it is one of my favourite reasons to attend a Security BSides event. Real local IT people sharing actual techniques that are helping them defend their organizations...

 

 

No comment yet.
Scooped by Aurélien BADET
Scoop.it!

Super Bowl scamday: survey scammers target Twitter

Super Bowl scamday: survey scammers target Twitter | Libertés Numériques | Scoop.it

With less than 16 hours to go, internet con men are taking advantage of the largest yearly event in sport. The American Super Bowl contest has garnered extra attention this year because the coaches of the opposing teams are brothers.

As usual, internet fraudsters are capitalizing on the spectacle and luring unsuspecting NFL fans into completing a survey. The purveyors of this survey are not who you think.

 

 

No comment yet.
Scooped by Aurélien BADET
Scoop.it!

Hurricane Sandy spams lead to survey scams

Starting October 30th, we began to see the first online criminals trying to cash in on the interest in Hurricane Sandy. The good news is they are not trying to spread malware (yet), but the bad news is they are trying to take advantage of a natural disaster affecting millions.

No comment yet.
Scooped by Aurélien BADET
Scoop.it!

Massive DDoS attack against anti-spam provider impacts millions of internet users

Massive DDoS attack against anti-spam provider impacts millions of internet users | Libertés Numériques | Scoop.it

Noticed any anomalies online in the last week or so? Do you live in Europe or North America? Chances are if you said yes to both you are being impacted by the largest distributed denial of service (DDoS) ever recorded.


What is happening? A little over a week ago a questionable internet hosting provider in The Netherlands called Cyberbunker took umbrage with SpamHaus, an non-profit organization that was founded in 1998 to take on spammers and the internet hosts who profit from their activities.

Cyberbunker takes its name from the former NATO bunker that the company operates out of. Not surprisingly they appear to be offline at the moment, whether that is due to a DDoS attack or other circumstances is difficult to discern.

 

 

No comment yet.
Scooped by Aurélien BADET
Scoop.it!

Convenience trumped security bypassing passwords on Facebook

Convenience trumped security bypassing passwords on Facebook | Libertés Numériques | Scoop.it
An authentication bypass vulnerability was found in Facebook leading to Google searches that could allow attackers to impersonate people on Facebook without a password.

 

We've all seen the emails, "*FRIEND* wants to be friends with you on Facebook", or "*FRIEND* commented on your status."When you receive these messages there is a convenient button "Confirm friend request" or "See comment" embedded in the email message.

To ensure a frictionless experience, Facebook was embedding a cookie-like identifier in the links so you would not need to login to Facebook to acknowledge friend requests and other messages.

Anytime there is a method to bypass a security mechanism it will be abused and this feature was no exception.

No comment yet.