blog articles under the 'General' category

Found 33 blogs, showing 1 - 10.
[1-10] [11-20] [21-30] [31-33]

Dell SecureWorks CTU assists in Waledac/Kelihos botnet takeover

Fri Mar 30 16:26:07 EDT 2012 by Brent Stone-Gross

On Wednesday, March 21, 2012, Dell SecureWorks, CrowdStrike, Kaspersky, and the Honeynet Project initiated efforts to disrupt the operations of the Waledac/Kelihos (aka Hlux) botnet. This botnet generally sends spam email, harvests email addresses and credentials, and steals Bitcoin wallets. This post comments on that threat analysis and provides an update on the aftermath.

Carrier IQ: Requires Additional Review

Wed Dec 14 03:24:47 EST 2011 by Counter Threat Unit

Carrier IQ, Inc. has received more public attention in the past 60 days than it has in the previous five years that the company has existed. The software, Carrier IQ (CIQ), is analytics software designed to improve the end user experience by providing information such as dropped calls, service coverage and software crashes to wireless providers. Recent legal action by Carrier IQ, Inc. met with reactive action by the Electronic Frontier Foundation (EFF) and has caused a recent media frenzy around privacy and disclosure issues surrounding the software.

Transitive trust and SSL certificate verification

Fri Sep 09 17:40:36 EDT 2011 by Jeff Jarmoc

On April 11, 2011, the Dell SecureWorks Counter Threat Unit (CTU) posted a blog entry titled 'Certificate Authorities for SSL/TLS: Crypto's weak link', which discussed some of the strains of the current Certificate Authority (CA) system for validating web site identity. The backdrop to this blog entry was the breach of Comodo and their resulting issuance of untrustworthy, but valid, certificates. In recent weeks, another CA breach has hit the news and drawn much attention...

PCI Guidance on Virtualization and Cloud

Thu Jul 07 11:48:31 EDT 2011 by Beau Woods

Recently, the PCI-SSC released an Information Supplement providing guidance for compliance with the DSS in virtualized and cloud environments. Great news for anyone with virtualization within their cardholder data environment (CHDE), or who has been considering it.

Recent events cause re-assessment of SecurID integrity

Thu Jun 16 12:02:15 EDT 2011 by Jeff Jarmoc

On March 18, 2011, we blogged about a breach at RSA regarding the disclosure of unspecified sensitive materials related to SecurID. At the time, little information was made available as to the extent of the breach, the exact information that was compromised, or how it would affect RSA's customers.

Imperva SecureSphere XSS and the nature of security-product vulnerabilities

Mon May 23 15:00:00 EDT 2011 by Jeff Jarmoc

Earlier today, Imperva publicly announced a vulnerability in their flagship SecureSphere WAF (Web Application Firewall). This issue was discovered by Sean Talbot of Dell SecureWorks and disclosed in a coordinated fashion with Imperva. We thank Imperva for their timely confirmation of our findings and the rapid deployment of patches to address the issue. Affected users are advised to patch their systems as soon as feasible. Details of the vulnerability and information regarding patches are available in our SWRX-2011-001 advisory and also in Imperva's announcement.

Sony PlayStation Network Breach

Wed May 04 03:00:00 EDT 2011 by Dennis Dwyer

Between April 17 and April 19, 2011, Sony became aware that the PlayStation Network (PSN) and Qriocity user account information was compromised in conjunction with a breach into Sony’s network. These services allow users to play games with others on the Internet, make in-game purchases and stream music and movies to Sony devices. On Wednesday, April 20, PlayStation Network and Qriocity services were disabled to investigate the incident. Most alarming is the database of customer information exposed to the unknown attacker.

Securely Deleting Data

Sun Mar 07 21:00:00 EST 2010 by Beau Woods

Securely deleting data is a requirement of most regulatory requirements. But many organizations struggle with just how to do this in a way that is both secure and compliant.

Spam and the Changing Business Model of Cyber Crime

Tue Feb 09 13:00:00 EST 2010 by Beau Woods

In the past couple of months, the Freakonomics blog asked why there has been such a downturn in the familiar Viagra and Nigerian prince Spam. The author attributed this to the cost of spamming not being worth the rates of return anymore.

Poor UI Breaks Portions of the Internet

Wed Feb 25 13:00:00 EST 2009 by Nick Chapman

On Februray 16th, 2009 there was a Border Gateway Protocol (BGP) anomaly which caused connectivity issues for some portions of the Internet. Arbor Networks andRenesys both provided good write-ups of the event. The basic problem was thatSuproNET, a local Czech ISP, announced a BGP route with an extremely longAutonomous System (AS) path.

[1-10] [11-20] [21-30] [31-33]

Next Steps

phonepic Call Us Today
(877) 838-7947

Request Info Now





Subscribe to SecureWorks'
On the Radar
Newsletter
Yes     No

Newsletter Signup

* First Name:
* Last Name:
* Email Address:


most popular pages

SecureWorks Blog Topics