• heise Security
    www.heise-online.pl

    Bezpieczeństwo IT, artykuły i usługi

  • Najnowsze wiadomości i artykuły dotyczące bezpieczeństwa IT
  • Chinese hackers had free rein at Nortel

    According to a report, hackers used spyware to download confidential data over the course of several years. The break-in was only uncovered by accident



  • RSA keys not as random as they should be

    A team of cryptographic experts has analysed more than 10 million public keys and discovered serious problems in some of the X.509 certificates it collected - more than 12,000 are easily crackable



  • Piwik 1.7 adds new reports, improves security

    Version 1.7 of the open source web analytics suite brings performance improvements and adds a number of new features and analytics reports. The major update also improves security, closing security holes and allowing users to force SSL use



  • Apple previews OS X 10.8 with Gatekeeper

    Apple's preview of OS X 10.8, the next version of the Mac operating system, includes a feature called Gatekeeper which can limit users to only running applications from the Mac App Store



  • Apple previews OS X 10.8 with Gatekeeper - Update

    Apple's preview of OS X 10.8, the next version of the Mac operating system, includes a feature called Gatekeeper which can limit users to only running applications from the Mac App Store



  • Nessus 5.0 accelerates vulnerability scanning

    The new version of the vulnerability scanner, available free of charge for non-commercial use, promises faster installation and configuration, high-speed scans and clearer reporting



  • Vulnerability in libpng prompts Firefox and Thunderbird updates

    Shortly after Google updated its Chrome browser, Mozilla has released new versions of Firefox and Thunderbird to address an integer overflow in an open source graphics library that could be exploited to remotely execute arbitrary code



  • Mozilla closes critical security hole in Firefox, Thunderbird and Seamonkey

    Firefox 10.0.1, Thunderbird 10.0.1 and SeaMonkey 2.7.1 have been released to close a critical security hole which only appeared in Mozilla's most recent releases



  • Reports: Iran disrupts secure internet connections

    Users in Iran wishing to access emails or web pages on foreign servers must currently use insecure, tappable connections. According to various reports, the Iranian government has been disrupting SSL/TLS encryption and the Tor anonymity network



  • Valve: hackers may have gained access to Steam transactions

    Valve co-founder Gabe Newell has confirmed that the unknown hackers that gained access to the company's customer database may have obtained a backup copy of customer transactions



  • Smartphone botnet allegedly pulls in millions with premium text messages

    Symantec has discovered a mobile botnet in China consisting of over 140,000 infected smartphones running Google's Android mobile operating system



  • Malware masquerades as police message to extort money

    The Metropolitan Police has issued a warning that malware from certain web sites pretends to come from the police in an attempt to extort money



  • Path apologises for iPhone address book uploading

    Path deletes all uploaded data, but worries persist about the protection of address book data on iPhones as another company is also found uploading its content to its own servers



  • Foxconn hacked by Swagg Security

    Electronics manufacturer to the major brands, Foxconn, was apparently breached by a hacker team called Swagg Security who released an archive of mail users' names and passwords, along with other files



  • Satellite phone encryption cracked

    A research team at Ruhr-Universität Bochum in Germany has cracked the A5-GMR-1 and A5-GMR-2 encryption algorithms used in satellite phones



  • pcAnywhere code on the internet after "hush money" ruse fails

    Symantec expect the code of Norton AntiVirus and Norton Internet Security will, sooner or later, also be released onto the internet



  • Editor of The Times admits to unlawful email access by journalist

    In evidence presented to the Leveson Inquiry, the editor of The Times has admitted that one of the paper's journalists hacked the email account of an anonymous police blogger in order to expose the author's identity



  • Path iOS app uploads address book to its servers

    When analysing the iOS app for the photo sharing and messaging service, a software developer discovered that it uploads a user's full address book, as an unencrypted file, without first requesting permission to do so



  • Mozilla considers removing Trustwave CA

    The snooping certificate issued by Trustwave has prompted the submission of a bug report to request that the CA's root certificates be removed from all Mozilla products



  • FFmpeg 0.10 "Freedom" released - Update

    Version 0.10 of FFmpeg adds several new encoders and decoders, as well as new filters and tools. The latest stable release also closes 15 security holes


  • US legislation to strengthen mobile data protection proposed

    Post the Carrier IQ controversy, a legislative initiative aims to give US mobile phone users more control over their data. In future, users would have to explicitly consent to the installation of information-collecting software



  • Hackers may have disrupted railway computers and schedules

    A memo from the US TSA says that, in December 2011, hackers disrupted the railway schedules of one unnamed railway operator in the Northwest



  • Apache Shiro 1.2.0 enhances its password hashing

    The Apache Shiro application security framework is updated to give better password hashing and storage, more control over sessions and filters, and Guice and OSGi support



  • Symantec publishes pcAnywhere security recommendations

    The security services provider recommends using the remote control software only if absolutely necessary



  • Trojan downloader is a problem for virus scanners

    The Microsoft Malware Protection Center has discovered a trojan downloader that only downloads and executes malicious code in the RAM, making it difficult to detect



  • Oddaj swój głos na ten kanał





    Wybierz ocene