News (102)

US subway hackers still gagged

A US judge let stand a temporary restraining order preventing three Massachusetts Institute of Technology students from discussing or disclosing their research into security vulnerabilities in the payment system for the local subway system. Read more »

Judge halts Defcon hacking speech

A federal judge on Saturday in the US granted the Massachusetts transit authority's request for an injunction preventing three MIT students from giving a presentation about hacking smartcards used in the Boston subway system. Read more »

DNS disaster: first attacks reported

The first attacks that are likely to have stemmed from a serious Domain Name System flaw have been reported. Read more »

Bluetooth security vulnerabilities ignored

Former White House cybersecurity adviser Howard Schmidt has warned of the dangers of flaws in Bluetooth protocols, claiming these vulnerabilities are unrecognised. Read more »

PC hardware can pose rootkit threat

PC hardware components can provide a way for hackers to sneak malicious code onto a computer, a security researcher warned Wednesday. Read more »

Open source intrusion detector flawed

Snort, the open-source intrusion-detection software, is vulnerable to hackers, its developers said this week. Read more »

Cybercriminals shrinking botnets to foil detection

Cybercriminals are downsizing their botnets to try and trick software security companies. Read more »

WordPress blog server hacked

An intruder has compromised a WordPress server and added a remote control tool to downloadable versions of the widely used blogging software. Read more »

Hackers return fire at security patches

Hackers have hit back against major security patches issued by the likes of Microsoft, with a marked rise in self-installing robot programs that allow an unauthorised user to control a computer remotely. Read more »

RSS, Atom feeds may carry security risk

Reading blogs via popular RSS or Atom feeds may expose computer users to hacker attacks, a security expert warns. Read more »

Features (44)

What hackers can teach you about security

He's probably the most infamous hacker of all time. Which is why we should listen when Kevin Mitnick says that traditional network security tools aren't enough to keep our information safe. Read more »

Should you hire an ex-hacker?

Hiring a hacker as a chief security officer may sound crazy, but it has paid off for one company. See why an ex-hacker might be your smartest hire ever. Read more »

New weapons in the war against DoS attacks

Industry watchdog groups are warning that denial of service attacks are becoming more destructive each year. Learn about some new tools you can add to your arsenal of DoS defenses to help safeguard your enterprise. Read more »

50 significant moments from internet history

We take you through 50 defining moments of the internet. Read more »

Better way to hacker-proof your site

Think malicious users need sophisticated tools to attack a Web site? Think again. All they really need is a Web browser and basic knowledge of SQL or another scripting language. Read more »

Beta hack rattles Microsoft

The software giant acknowledges that a hacker broke into its Windows beta testing network and had access to yet-unreleased software. Read more »

CGI wrappers for Apache-based apps can boost security

CGI scripts represent a big potential security risk in Web development, but using CGI wrappers can help insulate your servers from attack. Here's an outline of how to create CGI wrappers to protect an Apache Web server. Read more »

Develop applications that prevent intrusion

Designing secure applications requires developers to look beyond their own code. Accessing APIs or COM objects or establishing system privileges can result in security vulnerabilities that can be prevented. Read more »

Develop secure software at the application level

Protect your application from input overflow and underflow attacks, and from other common tactics with these development techniques. Read more »

Security in the Web 2.0 Era

At the Gartner Symposium ITxpo 2008 in Sydney this week, Andrew Walls, the research director and security analyst at Gartner presented "Security in the Age of E-Commerce and Web 2.0". Read more »

Blog (3)

Google destroys Security Through Obscurity

Chris Duckett [blogs:betaliving] -- Google Labs' new Code Search makes it easier for hackers to find database username and password details by entering strings that are commonly used within configuration files. Read more »

5 reasons restricting hacking is not like gun control

Nick Gibson [blogs:byteclub] -- Let's get it out of the way: Guns don't kill people, people with guns kill people. People with hacking tools can steal your personal data, shut down your system and deface your web site -- but is that any reason to ban them? Read more »

We don't need an eBay for security holes

Nick Gibson [blogs:byteclub] -- It's been likened to an eBay for hackers -- new security site WabiSabiLabi is a market place for auctioning security vulnerabilities. Read more »

Log in


Sign up | Forgot your password?

What's on?