http://www.vrlsec.com



hackinthebox
 ::  hitb portal  ::  hitb portal (SSL)  ::  hitb forum (SSL)  ::  hitb security conference  ::  hitb training ::  hitb irc  ::  hitb photos  ::  hitb videos :: 
Who's Online
There are 210 unregistered users and 0 registered users on-line.

You can log-in or register for a user account here.



Main Menu

Top Stories for Today
[524] NSA Director Says U.S. Has a Duty to Secure the Internet
[391] Android Security: 20 Good Apps
[383] Creepy Biometric IDs to Be Forced Onto India's 1.2 Billion Inhabitants
[304] Police in File-Sharing Raids Across Europe
[288] Flash Player as a spy system
[283] Why Surging Security Vulnerability Rate May Be a Good Thing
[267] Cloud Computing: The Invisible Revolution
[251] The world's most advanced smart ID card?
[250] TechCrunch hacked to distribute Zeus Trojan via JavaScript file
[218] O2 Forced To Pull Faulty Android 2.2 Desire Update
[208] PS3 update kills Jailbreak and Groove
[194] Scaling Intrusion Prevention Systems for 10G, 40G and Beyond
[158] Talking with Mac Hacker Charles Miller
[155] Which application is more secure? Depends on who you ask
[153] Career turning points: Step up to the big challenges
[142] HMRC tax problems quickly tapped by cash hungry hackers
[135] Identity thieves get bolder, go high tech
[129] Microsoft beat up, then defended over ancient IE8 zero-day
[108] Apple iTunes Ping suffers free iPhone 4 Scams
[107] Cybersecurity Czar: Privacy Won't Be a Casualty

View the Top 50 articles

Top 20 of the Last 2 Weeks

Past Articles

Critical infrastructure under constant cyberattack
Posted by l33tdawg on Tuesday, February 09, 2010 - 05:27 AM (Reads: 659)
Source: MB.com



The coming May 2010 automated election is surrounded by controversy and a number of technological fears. It all started with the defacement of some government websites and now the much talked about importation of 5,000 jamming devices. All these sounded new to the ordinary people, but to those who belong to the I.T. industry - especially those who are involved in security knows that cyber attacks happen everyday, and the impact / cost is staggering.

In a report “In the Crossfire: Critical Infrastructure in the Age of Cyberwar”, commissioned by McAfee and authored by the Center for Strategic and International Studies (CSIS) found that the risk of cyberattack is rising. Despite a growing body of legislation and regulation, more than a third of IT executives (37%) said the vulnerability of their sector had increased over the past 12 months and two-fifths expect a major security incident in their sector within the next year. Only 20% think their sector is safe from serious cyberattack over the next five years.

A survey of 600 IT security executives from critical infrastructure enterprises worldwide showed that more than half (54%) have already suffered large scale attacks or stealthy infiltrations from organized crime gangs, terrorists or nation-states. The average estimated cost of downtime associated with a major incident is $6.3 million per day.

(Printer-friendly page Send this story to someone)

 
Login
 



 


 Log in Problems?
 New User? Sign Up!

HITBSecConf2010 - Malaysia
Register now for the 8th annual HITB security conference in Asia!

Day 1 (13th Oct) Keynote Speakers

Keynote 1: Chris Wysopal (CTO/Co-Founder, Veracode)

Keynote 2: Paul Vixie (President, ISC)

Day 2 (14th Oct) Special Keynote Panel Discussion

“The Future of Mobile Malware & Cloud Computing”

Keynote Panelist 1: Mikko Hypponen

Keynote Panelist 2: Paul Ducklin

Keynote Panelist 3: Denis Maslennikov

Keynote Panelist 4: Dr. Jose Nazario

Moderator: Dr. Dinesh Nair


Conference Speakers (alphabetical order)

1.) Alexander Polyakov (CTO, Digital Security Company)

2.) Cedric Halbronn (Sogeti / ESEC)

3.) Claudio Criscione (Principal Consultant, Secure Network S.r.l.)

4.) Dennis Brown (Research Engineer, Tenable Network Security)

5.) Don Bailey (Security Consultant, iSEC Partners)

6.) Fabian Mihailowitsch (IT Security Consultant, cirosec GmbH)

7.) Jean-Baptise Bedrune (Sogeti / ESEC)

8.) Jonathan Brossard (CEO, Toucan Systems)

9.) Laurent Oudot (Founder, TEHTRI-Security)

10.) Long Le (VNSECURITY)

11.) Luis Corrons (Director of Research, PandaLabs)

12.) Marco Slaviero (Associate, SensePost)

13.) Mary Yeoh (Intel Corp)

14.) Meder Kydyraliev (Google Security Team)

15.) Mitja Kolsek (CTO, ACROS Security)

16.) Paul Sebastian Ziegler (Independent Network Security Researcher)

17.) Paul Thierault (Security Consultant, stratsec)

18.) Saumil Shah (Founder, Net-Square)

19.) Shreeraj Shah (Founder, BlueInfy)

20.) The Grugq (Senior Security Researcher, COSEINC)

There are very limited seats and registrants are encouraged to register early!

REGISTER NOW


HITB eZine Issue 003

Last 15 Postings to HITB Forum

Topics
· All topics
· AMD News (Aug 10, 2010)
· Apple News (Sep 08, 2010)
· Articles (Mar 03, 2009)
· Ask Us (Feb 01, 2003)
· Audio/Video (Sep 01, 2010)
· Encryption (Sep 06, 2010)
· Games (Aug 27, 2010)
· Hardware (Sep 06, 2010)
· HITB News (Sep 03, 2010)
· Industry News (Sep 08, 2010)
· Intel News (Aug 31, 2010)
· Law and Order (Sep 08, 2010)
· Linux (Aug 30, 2010)
· Microsoft (Sep 08, 2010)
· Networking (Sep 01, 2010)
· PDAs (Feb 09, 2007)
· Privacy (Sep 08, 2010)
· Red Hat (Mar 30, 2010)
· Science (Aug 30, 2010)
· Security (Sep 08, 2010)
· Software & Programming (Sep 08, 2010)
· Spam (Sep 01, 2010)
· Technology (Sep 07, 2010)
· Transmeta (Jul 07, 2007)
· Viruses & Malware (Sep 08, 2010)
· Wireless (Sep 07, 2010)

Packet Storm Security Latest
· glsa-201009-06.txt
Gentoo Linux Security Advisory 201009-6 - Multiple vulnerabilities have been reported in Clam AntiVirus. Versions less than 0.96.1 are affected.
· glsa-201009-05.txt
Gentoo Linux Security Advisory 201009-5 - Multiple vulnerabilities in Adobe Reader might result in the execution of arbitrary code or other attacks. Multiple vulnerabilities were discovered in Adobe Reader. Versions less than 9.3.4 are affected.
· glsa-201009-04.txt
Gentoo Linux Security Advisory 201009-4 - Multiple stack-based buffer overflow vulnerabilities were discovered in SARG allowing for remote code execution. Multiple vulnerabilities were discovered in SARG. Versions less than 2.2.5-r5 are affected.
· ZSL-2010-4963.txt
Textpattern CMS version 4.2.0 suffers from a cross site scripting vulnerability.
· USN-984-1.txt
Ubuntu Security Notice 984-1 - It was discovered that LFTP incorrectly filtered filenames suggested by Content-Disposition headers. If a user or automated system were tricked into downloading a file from a malicious site, a remote attacker could create the file with an arbitrary name, such as a dotfile, and possibly run arbitrary code.
· USN-983-1.txt
Ubuntu Security Notice 983-1 - Markus Wuethrich discovered that sudo did not always verify the user when a group was specified in the Runas_Spec. A local attacker could exploit this to execute arbitrary code as root if sudo was configured to allow the attacker to use a program as a group when the attacker was not a part of that group.
· zenphoto-sqlxss.txt
Zenphoto version 1.3 suffers from remote SQL injection and cross site scripting vulnerabilities.
· openjournalsystem-xss.txt
OpenJournalSystem suffers from stored cross site scripting vulnerabilities.

Follow us
Join our Facebook Group

Follow us on Twitter

Follow our RSS feed


HITB Affiliates

Page created in 0.912921905518 seconds.