1. Electronics & Gadgets

Online Security

Information from About Guides and partners relating to Online Security

Apple Fixes Safari 'carpet Bomb' Bug

(News) Apple has reversed its position and patched the "carpet bombing" flaw in its Safari browser.

Safest Way to Bank Online? Your Cell Phone

(How To) Phones are off the radar for most hackers today. But Google's Android OS and the iPhone could make them more of a target.

RSA Conference: Web Page Can Take Over Your Router

(News) Researcher Dan Kaminsky will show attendees of the RSA security conference how a Web-based attack could be used to seize control of certain routers.

IRS Warns of New Online Tax Scams: Protect Yourself

(News) Before you sit down in front of your PC to do your taxes, read about latest scams designed to cheat tax filers out of their refund and identity.

Hackers Exploit Excel Hole

(News) Researchers at Symantec identify a Web site with malware that takes advantage of systems lacking a recent Excel patch.

Reports: US to name head of new cybersecurity center

(News) Tech entrepreneur and author Rod Beckstrom will be named to run a new National Cyber Security Center at the U.S. Department of Homeland Security, according to news reports.

Malicious subtitle file could trip up VLC media player

(News) A flaw in the widely-used open-source VLC media player could allow an attacker to execute harmful code on a PC.

New Retailer Data Breach May Affect Thousands of Shoppers

(News) An unnamed major retailer's security breach may have exposed hundreds of thousands of consumers in the northeastern U.S. to fraud.

Rogue Packets Stalk Windows Vista, XP

(News) Plus: Firefox rushes plug-in patch; how to lock down your digital picture frame.

Services Are Tapping People Power to Spot Malware

(News) Companies are turning to the wisdom of crowds to fight increasingly sophisticated phishing, spam, and nefarious sites.

Users' Bad Habits Invite Malware and More, Forum Says

(News) A spyware forum panel suggests users' sloppy security practices are a major contributor to problems.

Hackers Rig Google to Deliver Malware

(News) The latest malware trend should prompt you to think twice about the links you click next time you search.

Hackers Reveal VoIP Flaw in UK Service

(News) GNUCitizen is describing an apparent vulnerability that could trick people into revealing personal data.

Flash Attack Could Take Over Your Router

(News) Security researchers release code that shows how a pair of widely used technologies could be misused to take control of a victim's Web browsing experience.

Mac security program tries to scare users into buying

(News) Some Macintosh users have encountered a security program whose function and Web site have the tell-tale signs of a scam.

US-CERT Warns of Flaw in Latest RealPlayer

(News) A possible problem with the latest version of RealPlayer surfaces after a Russian security company claimed to have found a way to exploit a critical flaw.

Google looks for help finding malicious Web sites

(News) Google is asking everyday Web surfers to help with its efforts to stamp out malicious Web sites.

Is security software becoming a security risk?

(News) Is the software we're using to protect ourselves from online attacks becoming a liability?

UK kids warned MySpace isn't private - OMG!!

(News) Young people are compromising their career prospects and opening the door to online fraud by posting personal information on social networking sites without thinking about the consequences, a U.K. privacy watchdog warned Friday.

EBay to host "Red Team" security conference

(News) EBay plans to host its own security conference next February, called "Red Team eBay."

Security geeks say Leopard needs fixing

(News) The security features introduced in Apple's Leopard operating system need work.

Think tank, lawmakers create US cybersecurity commission

(News) A Washington, D.C., think tank has launched a cybersecurity commission full of top experts in the field, with the goal of creating a list of recommendations for the next U.S. president.

Security experts blast New Jersey AG

(News) Security experts are saying that a well-intentioned effort by the New Jersey Office of the Attorney General to combat phishing may backfire.

Trend releases 2008 security suites, debuts Pro package

(News) Trend Micro has released it's 2008 Internet security suite, comprising three separate offerings aimed at various levels of Internet usage.

Lax passwords expose quarter of PC users to theft

(News) Research Tuesday reveals that lax password habits are leaving a quarter of people in serious danger of falling victim to online fraud.

Survey: Consumers only think they're cyber safe

(News) Most U.S. consumers believe they're protecting their computers against cyberattacks, but their actions indicate they aren't as safe as they think, according to a study released Monday.

McAfee: Most consumers overestimate PC safety

(News) It's self-serving, but a new study by McAfee Inc. and the National Cyber Security Alliance has found that 78 percent of consumer PCs in the U.S. are not protected (defined as having up-to-date AV, spyware and a properly configured firewall).

Ask.com fixes toolbar flaw

(News) Ask.com says they've fixed a critical bug in their toolbar, discovered by Joey Mengele and reported earlier this week.

'Fraudster' posts confidential eBay member data on forum

(News) Someone used an eBay Inc. discussion forum on Tuesday to post confidential information about eBay users along with what may be their credit card numbers.

Security gurus look for better ways to classify malware

(News) Two senior security veterans from Trend Micro Inc. are trying to get the industry to change how it classifies malicious software.

Malware becoming more sophisticated, warns IBM

(News) IBM has reported an increase in malware volume and sophistication as part of its security statistics report for the first half of the year.

Mobile phones to help secure BofA online banking

(News) Bank of America Corp. customers can now use their mobile phones to make online banking more secure.

Hacks hit embassy, government e-mail accounts worldwide

(News) Usernames and passwords for more than 100 e-mail accounts at embassies and governments worldwide have been posted online. Using the information, anyone can access the accounts that have been compromised.

How To: Instant Messaging Security

(How To) Instant messaging (IM) is a popular communication tool in business environments. Here are steps you and your employees can take to mitigate IM threats, so you can enjoy the benefits.

How-To: Secure Your Handheld Device

(How To) Losing your PDA or smartphone can pose a security risk, but the evolution of viruses, Trojans, and worms means that your handheld devices can be subject to insidious online threats as well.

How-To: Protect Your Business from Instant Messaging Threats

(How To) Learn about Instant Messaging (IM) threats and what you can do to protect your working environment.

How to Neutralize Today's Worst Web Attacks

(How To) A practical guide to closing the most dangerous software vulnerabilities that crooks target with ready-made attack kits.

Phishers looking to cash in on Wells Fargo computer crash

(News) Wells Fargo & Co. may have a new problem, following its widespread computer crash earlier this week: online scammers.

Imprivata adds intra-application authentication

(News) Single sign-on appliance developer Imprivata has enabled its devices to be called from within an application to verify the user's identity, as well as being used to log on to systems and applications in the first place.

Study finds Internet rife with attack codes

(News) Even seemingly safe web addresses are rife with attack code aiming at vulnerable clients, according to a new study from the Honeynet Project. The study also found that methods such as blacklists can be surprisingly successful in stopping client-side attacks.

Websense lures Web 2.0 attackers with HoneyJax

(News) Websense Inc. has developed a threat detection system designed to spot Web 2.0 attacks soon after they are launched.

California moves to lock down e-voting systems

(News) California's secretary of state has mandated tough new security standards for the state's e-voting systems and curtailed their use, following an independent review of the technology.

Malignant Javascript mutates to evade detection

(News) Hackers have hit on a new technique for invading desktop computers via compromised websites, while avoiding anti-virus detectors, according to the SANS Institute.

Diebold voting machines vulnerable to virus attack

(News) Diebold Election Systems Inc. voting machines are not secure enough to guarantee a trustworthy election, and an attacker with access to a single machine could disrupt or change the outcome of an election using viruses, according to a review of Diebold's source code.

European project looks to manage online threats

(News) Researchers are looking for formal European Union sponsorship of a new project that would keep an eye on malicious software and computer attacks around the world.

P-to-P users expose US government secrets

(News) Contractors and U.S. government employees are sharing hundreds of secret documents on peer-to-peer networks, in many cases overriding the default security settings on their P-to-P software to do so, according to a company that monitors the networks.

Users urged to patch serious hole in BIND 9 DNS server

(News) A security researcher has reported a serious vulnerability in BIND 9, the software widely used in the Internet's DNS addressing system.

Fox News server found unsecured

(News) Security analysts spotted a gaping security hole in Fox News Network LLC's Web site on Monday, revealing file directories and sensitive content, although it appears the problem has been fixed.

Online Security

(News) Online Security

Homeland Security to host closed-door security forum

(News) The U.S. Department of Homeland security will host a invite-only conference two months from now that will bring together security experts from law enforcement, Internet service providers, and the technology industry.

MySpace again under phishing attack

(News) Phishers have been using compromised MySpace.com accounts to attack unsuspecting Web surfers, security experts said Thursday.

McAfee: attacks coming for infrastructure, digital home

(News) Online criminals looking for new areas to attack in the next few years will find green fields in the Internet infrastructure and the digital home, researchers with McAfee Inc.'s AVERT labs said Tuesday.

Stop users before they click again on risky Web sites

(News) You may need to wait a minute for another sucker to be born, but you can find one anytime you want online.

'Italian job' Web attack hits 10,000 sites

(News) Online criminals have launched a widespread Web attack that has turned tens of thousands of legitimate Web sites into weapons, security vendors said Monday.

Law puts damper on web security research

(News) Web security research is being seriously hampered by laws that punish researchers for even attempting to locate flaws in web software, much less disclosing those flaws, according to a new study.

Is Web 2.0 Safe?

(News) As users store more data online, hackers are finding ways to break into the new service sites. experts say the problems are deep-seated.

Apple fixes serious QuickTime bug

(News) One week after updating its Mac OS X operating system, Apple Inc. has patched a serious flaw it its QuickTime media player.

Microsoft Plugs Critical Vista Hole

(News) Plus: Vista corrupts iPods, Yahoo Messenger creates Internet Explorer risk.

Drive-by download threat looms

(News) The problem of drive-by downloads from seemingly safe websites is worse than previously thought, according to Google, which counted hundreds of thousands of such malicious sites in a recent study.

Botnet management app exposed

(News) A new and unusually sophisticated application for controlling and monitoring botnet PCs has been discovered by security company Panda Software.

How Internet Criminals Will Evade Vista's Safeguards

(News) The new version of Windows is more secure, but it won't end Web attacks, experts say.

Symantec slips, but closes in on AV product delivery

(News) Symantec Corp. is slipping on its target delivery time for the next major upgrade of its security product for enterprises, code-named Hamlet, while it irons out final code wrinkles during beta testing.

Google stomps on AdWords exploit

(News) Google has rooted out a scam that delivered malware via the search engine's AdWords advertising system, and even added extra sections to specific banking websites to gather additional information.

Web 2.0 apps riddled with holes, warns SPI

(News) New browser-based application technologies are opening new security holes, warned SPI Dynamics as it launched a re-engineered version of its SOA/Web 2.0 security testing software WebInspect this week.

Microsoft ups security stance with new labs

(News) In a move to strengthen its response to security threats, Microsoft Corp. is opening two labs to study the growing amount of malicious software circulating on the Internet, security executives announced Wednesday.

Groups raise concerns about cybersecurity standards

(News) Legislation that would authorize the U.S. Department of Homeland Security to create emergency preparedness standards for private industry takes the wrong approach toward cybersecurity, some experts said Tuesday.

Popular Web Sites Highly Vulnerable to Attack

(News) A report finds that banking, shopping, and other sites are likely to contain flaws that allow phishing or expose customer data.

IRS warns of tax phishing scheme

(News) The U.S. Internal Revenue Service is warning taxpayers to be wary of e-mail messages that provide links to supposedly free tax-filing services endorsed by the agency.

Software project aims to erase e-voting fog

(News) Joseph Kiniry, a computer science lecturer at University College Dublin, seems an unlikely candidate to work on open-source voting software.

US agencies still get low cybersecurity grades

(News) The U.S. departments of Defense and State received F grades, and Homeland Security a D, in the latest scorecard measuring their information security measures.

How to Avoid Falling Into the Phishing Hole

(News) A cross-site scriping scam on eBay highlights how easy it is to get fooled. We show you what to look out for.

Researcher has new attack for embedded devices

(News) A security researcher at Juniper Networks Inc. says he plans to demonstrate a new class of attack that can be used to compromise electronic devices like routers or mobile phones.

Microsoft Security Programs Create Risk

(Reviews) Plus: Fixes for Internet Explorer and Office, and changes to Windows support.

Hackers promise month of MySpace bugs

(News) They won't divulge their real names, they call their project a "whiny, attention-seeking ploy," and they appear to take their fashion cues from Beastie Boys music videos.

Rootkits evade hardware detection

(News) Security researcher Joanna Rutkowska has demonstrated several methods that sophisticated rootkits can use to hide from even the most reliable detection method currently available -- hardware-based products that read a system's RAM.

Critical IE Graphics Flaw Resurfaces

(News) Plus: More Office holes, and a major Adobe problem that affects all browsers.

Enterprises are uncertain about mobile security

(News) Uncertainty about how to secure mobile phones in the face of increasing threats is slowing enterprise adoption of mobile applications, experts exhibiting at the 3GSM World Congress in Barcelona this week said.

Microsoft pledges support for OpenID

(News) Microsoft Corp. has thrown its weight behind OpenID, an emerging Web authentication standard.

Super Bowl Virus Spreads

(News) The game's over and patches are available, but many sites are infected with malicious code.

Microsoft Targets Phishers

(News) New browser security technology is in the works and due for display at RSA in February.

Who or What Is 'Rock Phish' and Why Should You Care?

(News) Security experts believe that the entity or people behind Rock Phish are the rock stars/innovators of most new evil phishing scams.

Adobe To Issue Patches for Reader Vulnerability

(News) Adobe encourages upgrading to Reader 8 and recommends disabling Acrobat and Reader plug-ins on Web browsers until patches are issued.

Sony Settles Rootkit Suits

(News) $1.5 million in penalties will compensate consumers whose systems were damaged.

Scandoo and SiteAdvisor Make Surfing Safer

(reviews) Scandoo and SiteAdvisor Make Surfing Safer

Microsoft Nets New Phishing Filters for IE

Microsoft Nets New Phishing Filters for IE

AT&T Online Store Hacked

AT&T Online Store Hacked

Keep It Secret, Keep It Safe

(howto) Keep It Secret, Keep It Safe

New Devices Promise Protection in a Box

(news) New Devices Promise Protection in a Box

F-Secure Patches Web Console Bug

(news) F-Secure Patches Web Console Bug

Bugs Put Widely Used DNS Software at Risk

(news) Bugs Put Widely Used DNS Software at Risk

McAfee Unveils Threat Center Portal

(news) McAfee Unveils Threat Center Portal

How Common Is Identity Theft?

(news) How Common Is Identity Theft?

Defend Your PC Against Video Attacks

(howto) Defend Your PC Against Video Attacks

Security Trends: Follow the Money

(news) Security Trends: Follow the Money

Google Plugs Site Security Holes

(news) Google Plugs Site Security Holes

Improve Cybersecurity, Group Urges Feds

(news) Improve Cybersecurity, Group Urges Feds

Microsoft Picks Partners to Fight Phishing

(news) Microsoft Picks Partners to Fight Phishing

Microsoft to Release Antiphishing tool Before IE 7

(news) Microsoft to Release Antiphishing tool Before IE 7

Microsoft Security Squad Scours Web

(news) Microsoft Security Squad Scours Web

Tech Firms Urged to Aid U.S. Cybersecurity

(news) Tech Firms Urged to Aid U.S. Cybersecurity

New Steps to Reduce Identity Theft

(news) New Steps to Reduce Identity Theft

Call for Homeland Security Cybersecurity Improvements

(news) Call for Homeland Security Cybersecurity Improvements

U.S. Cybersecurity Czar Post Created

(news) U.S. Cybersecurity Czar Post Created

Xen Developers Focus on Security

(news) Xen Developers Focus on Security

Vendors Expand Cybersecurity Efforts

(news) Vendors Expand Cybersecurity Efforts

AT&T Plans Internet Security News Network

(news) AT&T Plans Internet Security News Network

Oversold Security Threats?

(news) Oversold Security Threats?

Fret About PC Zombie Threat?

(news) Fret About PC Zombie Threat?

Yahoo, SBC Offer Free Online Security Suite

(news) Yahoo, SBC Offer Free Online Security Suite

Hide Your Internet Ports From Snooping Hackers

(howto) Hide Your Internet Ports From Snooping Hackers

Fight Fraud and Phishing With New Tools

(reviews) Fight Fraud and Phishing With New Tools

Widespread Internet Attack Cripples Computers with Spyware

(news) Widespread Internet Attack Cripples Computers with Spyware

ISPs Join to Fingerprint Internet Attacks

(news) ISPs Join to Fingerprint Internet Attacks

What Are the Web's Worst Security Problems?

(news) What Are the Web's Worst Security Problems?

Do You Need a Digital ID?

(news) Do You Need a Digital ID?

Has Someone Made Off With My Online Identity?

(howto) Has Someone Made Off With My Online Identity?

Tech Firms Urge Bush to Focus on Cybersecurity

(news) Tech Firms Urge Bush to Focus on Cybersecurity

Gartner: Consumers Dissatisfied with Online Security

(news) Gartner: Consumers Dissatisfied with Online Security

Online Identity Theft: Many Medicines, No Cure

(news) Online Identity Theft: Many Medicines, No Cure

Peep Show Run Amok

(tech_tuesday) Racy images hide a hacker's code.

Zombie Repellant

(tech_tuesday) Learn how to protect your PC.

Attack of the PC Zombies!

(tech_tuesday) Just in time for Halloween, computers seem to be possessed by ghoulish goblins. In reality, hackers are exploiting software holes to take control. Do you know what your PC is up to?

Your PC May Be Less Secure Than You Think

(news) Your PC May Be Less Secure Than You Think

Find the Web's Worst Security Flaws

(news) The SANS Institute identifies the top 20 Internet vulnerabilities of the year.

Freeware and Shareware to Protect Your PC?

(tech_tuesday) Low-cost or free downloads can block your system from threats like sneaky spyware and invasive code. Should you use them?

Adobe Does Document Security

(news) Deal will allow companies to digitally authenticate PDFs.

Privacy Watch: Two Passwords Double Your Privacy

(howto) 'Two-factor authentication' increases your online security.

Symantec Upgrades Norton Security Products

(news) Revamped Norton AntiVirus, Personal Firewall, and AntiSpam tools fight pests and dangers online.

Privacy Watch: Does Your Online Profile Say Something You Wouldn't?

(howto) Sneaky hackers can put undesirable links and images into your page without your knowledge.

Wanted: Cybersecurity Experts

(news) Homeland security efforts must spread to cyberspace, experts say.

Feds Boost Cybersecurity Efforts

(news) Homeland Security's tech leader describes partnerships, training to combat cyberterrorism.

Cybersecurity Education Urged

(news) All surfers charged with helping fight bugs, spam, viruses, and cyberterrorists.

Is Cyberspace Getting Safer?

(news) Federal agency issues one-year cybersecurity report card and describes goals for security efforts.

Cybersecurity Warning Service Launches

(news) Homeland Security service offers tips, e-mail alerts about hazards online.

Privacy Watch: A Latte, a Wi-Fi Link, and a Hacker

(howto) That person sipping coffee at the next table could be hacking your log-in info as you type.

Internet Tips: Can You Pass the PC World Password Safety Test?

(howto) Password rules and tools; clear your passwords; cache news to read offline; update your media players.

Privacy Watch: The Danger of Too Much File Sharing

(howto) Are strangers grabbing more than just tunes from your PC?

Homeland Security Begins With Your PC

(news) Security experts urge open exchange and cooperation.

Securing Cyberspace: A Shared Duty

(news) Old equipment, poor practices, slow response blamed for sloppy security.

Full Disclosure: PC Defense Takes an Antinet

(howto) Install all the utilities you want--security is still a leaky mess.

Telling of Terrorist-Tracking Tech Tools

(yahoo) Civil liberties groups, some lawmakers remain wary of deep databases.

What's the Biggest Security Problem?

(news) Experts, hackers debate cyberterror, digital teens, and holey software.

Tech Tools Lead Homeland Security Plan

(news) In the works: biometrics, wireless alerts, enhanced communications.

Internet Tips: Protect Your PC and Data With the Security Checklist

(howto) Follow these essential steps for your PC security.

Internet Fixes

(howto) Sneakier spam, wilier worms, more aggravating ads...no wonder it feels like your PC is under assault. Fight back with these simple steps for keeping the latest pests at bay.

Consumer Watch: Manage Passwords Safely--and Simply

(howto) Plagued by a plethora of passwords? Here's how to deal with them without driving yourself nuts.

National Cybersecurity Plan Released

(news) National strategy called long on suggestions, short on specifics.

Is Your PC Ready for Cyberwar?

(news) Awareness, vigilance are key to protecting your system and data from cyberattack, experts advise.

Don't Underestimate Cyberterrorists, Experts Warn

(news) Greater network dependence boosts risk of damage by cybervandals who code with vengeance.

FTC Pushes Cybersafety Lessons, Not Laws

(news) Downloadable 'Common Sense' guide produced by Internet Security Alliance as part of effort.

Is Microsoft Trustworthy Yet?

(news) Exec says yes, but notes that customers must apply security patches once flaws are found.

Ten Tips for Safe E-Shopping

(news) 'Tis the season to dig into that e-wallet; but don't fork out more than you intend.

Cybersecurity Efforts Funded

(news) Congress urges focus on academic instruction, workplace standards, ongoing programs.

New Cybersecurity Efforts Considered

(news) Senate pushes more funds to keep consumers, businesses, and country free from online threats.

DOJ Describes Its Cybersurveillance (Sort Of)

(news) Congressional inquiry satisfied, but some want more details about how Patriot Act power is being used.

Xpass Consolidates Your Web Site Passwords

(news) Sensiva's new password manager encrypts, stores your collected log-ons to accelerate access and surfing.

Uncle Sam Wants You to Defend Cyberspace

(news) National cybersecurity plan unveiled for comment, criticism, suggestions.

National Cybersecurity Plan to Debut

(news) Users, vendors have a role in helping secure cyberspace, in Bush strategy still in the works.

Cyberattacks Still Frequent, but Slowing

(news) Riptech clients report 28 percent increase in attacks, but cyberterrorists keep quiet.

Privacy Watch: New Tools Take the Bite Out of Cookies

(howto) Two cookie managers quietly do your bidding.

©2013 About.com. All rights reserved.