Archive for April, 2010

Palin E-Mail Hacker Convicted by Federal Jury

A federal jury convicts the son of a prominent Tennessee Democrat of illegally accessing the e-mail account of former Alaska Gov. Sarah Palin during the 2008 presidential campaign.
– The son of a Democratic Tennessee lawmaker was convicted April 30 for
hacking the e-mail account of former Alaska Gov. Sarah Palin during the 2008
presidential campaign.
According to authorities, a federal jury convicted 22-year-old David
Kernell, son of Rep. Mike Kernell, of obstruction of just…


Jury convicts Palin e-mail hacker

A federal jury today convicted 22-year-old David C. Kernell of two charges stemming from a 2008 break-in of an e-mail account used by former Alaska Gov. Sarah Palin.

Netcraft: False Start for Cyber Security Challenge? “A cross-site scripting vulnerability has been uncovered on the Cyber Security Challenge UK website, before the site has even been made ready for candidates to register”

Netcraft: False Start for Cyber Security Challenge? "A cross-site scripting vulnerability has been uncovered on the Cyber Security Challenge UK website, before the site has even been made ready for candidates to register"

HP: Episode 29 – Grade A+ Broken

HP: Episode 29 – Grade A+ Broken

Invisible Things: Remotely Attacking Network Cards (or why we do need VT-d and TXT)

Invisible Things: Remotely Attacking Network Cards (or why we do need VT-d and TXT)

Bruce Schneier: Fun with Secret Questions

Bruce Schneier: Fun with Secret Questions

PCI council launches certification program for IT staff

The organization responsible for administering the Payment Card Industry Data Security Standard has launched a new program to help enterprises conduct self-assessments of their compliance with the standard.

The Importance of Small Files, (Fri, Apr 30th)

Malware Forensics at Large Firms
The malware forensics work-cycle is fairly tight at the day job.&n …(more)…

Microsoft Confirms SharePoint Security Vulnerability

A new vulnerability affecting Microsoft Office SharePoint has surfaced. While enterprises wait on a patch, there are actions they can take to mitigate the vulnerability.
– Microsoft has confirmed reports of a cross-site scripting
vulnerability in SharePoint Server 2007 and SharePoint Services 3.0.
According to Microsoft,
the vulnerability could allow escalation of privilege (EoP) within the
SharePoint site. If an attacker successfully exploits the
vulnerability,…


Microsoft issues work-around, advice for SharePoint zero-day

Microsoft urged SharePoint 2007 administrators to protect systems against a recently revealed zero-day vulnerability that could be exploited to steal company secrets.