
<?phpxml version="1.0" encoding="utf-8"?>
<rss version="2.0" 
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
>
<channel>
<title>infosec news / darren / All</title>
<link>http://news.infosecinstitute.com</link>
<description>Your Source for Infosec News and Networking</description>
<pubDate>Wed, 09 Mar 2011 09:26:05 -0500</pubDate>
<language>en</language>
<item>
<title><![CDATA[500 Internal Server Error]]></title>
<link>http://news.infosecinstitute.com/featured/500-internal-server-error-2/</link>
<comments>http://news.infosecinstitute.com/featured/500-internal-server-error-2/</comments>
<pubDate>Wed, 09 Mar 2011 10:26:05 -0500</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/500-internal-server-error-2/</guid>
<description><![CDATA[500 Internal Server Error<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Danger Room]]></title>
<link>http://news.infosecinstitute.com/featured/danger-room/</link>
<comments>http://news.infosecinstitute.com/featured/danger-room/</comments>
<pubDate>Wed, 02 Mar 2011 18:26:03 -0500</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/danger-room/</guid>
<description><![CDATA[Responding to jihadists' move into social networking, U.S. Central Command is setting up cyber-stings, masking its soldiers' IP addresses and creating deceptive online profiles in the hope of luring out the next Irhabi 007. It's using anonymity software purchased commercially from a California-based security firm, Ntrepid, to disguise its new online activity. Never mind Googling a couple of Senators. This is an information operation.<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Free Excel Spreadsheets]]></title>
<link>http://news.infosecinstitute.com/featured/free-excel-spreadsheets/</link>
<comments>http://news.infosecinstitute.com/featured/free-excel-spreadsheets/</comments>
<pubDate>Tue, 05 Oct 2010 16:26:06 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/free-excel-spreadsheets/</guid>
<description><![CDATA[<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Facebook has 11,701 compromised webpages]]></title>
<link>http://news.infosecinstitute.com/featured/facebook-has-11701-compromised-webpages/</link>
<comments>http://news.infosecinstitute.com/featured/facebook-has-11701-compromised-webpages/</comments>
<pubDate>Fri, 17 Sep 2010 21:26:08 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/facebook-has-11701-compromised-webpages/</guid>
<description><![CDATA[A vector for attack, targeting people on social media sites with drive by browser attacks...<br/><br/>17 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Security researchers 'destroy' microsoft asp.net security - The Inquirer]]></title>
<link>http://news.infosecinstitute.com/featured/security-researchers-destroy-microsoft-asp-net-security-the-inquirer/</link>
<comments>http://news.infosecinstitute.com/featured/security-researchers-destroy-microsoft-asp-net-security-the-inquirer/</comments>
<pubDate>Fri, 17 Sep 2010 13:26:03 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/security-researchers-destroy-microsoft-asp-net-security-the-inquirer/</guid>
<description><![CDATA[The exploit (which has been around since 2002) affects millions of websites that use AES encryption functions built into Microsoft&#039;s ASP.NET software to protect the integrity of cookies during user sessions.<br/><br/>2 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[HP acquires ArcSight for $1.5 billion - Security firms keep getting premiums]]></title>
<link>http://news.infosecinstitute.com/featured/hp-acquires-arcsight-for-1-5-billion-security-firms-keep-getting-premiums/</link>
<comments>http://news.infosecinstitute.com/featured/hp-acquires-arcsight-for-1-5-billion-security-firms-keep-getting-premiums/</comments>
<pubDate>Mon, 13 Sep 2010 19:26:12 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/hp-acquires-arcsight-for-1-5-billion-security-firms-keep-getting-premiums/</guid>
<description><![CDATA[Fresh off their even larger purchase of cloud storage company 3par, HP is back on a buying spree. They now have TippingPoint (from the 3Com deal), Fortify, and ArcSight. Quite a security juggernaut if they can make the pieces all fit and play together nicely.<br/><br/>2 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA["Here You Have" E-mail Virus - Unsophisticated worms still causing havoc]]></title>
<link>http://news.infosecinstitute.com/featured/here-you-have-e-mail-virus-unsophisticated-worms-still-causing-havoc/</link>
<comments>http://news.infosecinstitute.com/featured/here-you-have-e-mail-virus-unsophisticated-worms-still-causing-havoc/</comments>
<pubDate>Mon, 13 Sep 2010 19:26:11 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/here-you-have-e-mail-virus-unsophisticated-worms-still-causing-havoc/</guid>
<description><![CDATA[The virus may have ties to a Libyan hacker who goes by the handle &quot;iraq_resistance.&quot;  <br /><br />It&#039;s somewhat baffling that this type of virus is still such a rampant problem.  What this really underscores is just how bad even basic security policies are at even large corporations. Beyond anti-virus, heuristics and firewalls, this attack has ultimately spread as fast as it has because users have clicked on the files.<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Virginia's massive IT outage, 3 agencies affected]]></title>
<link>http://news.infosecinstitute.com/featured/virginias-massive-it-outage-3-agencies-affected/</link>
<comments>http://news.infosecinstitute.com/featured/virginias-massive-it-outage-3-agencies-affected/</comments>
<pubDate>Tue, 31 Aug 2010 17:26:03 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/virginias-massive-it-outage-3-agencies-affected/</guid>
<description><![CDATA[Several Virginia state agencies continue to experience problems with data access due to an outage related to problems in a storage-area network (SAN) that began last week in a data center run by outsourcer Northrop Grumman.<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[36% Increase in Enterprise Security Threats due to web apps (IBM study)]]></title>
<link>http://news.infosecinstitute.com/featured/36-increase-in-enterprise-security-threats-due-to-web-apps-ibm-study/</link>
<comments>http://news.infosecinstitute.com/featured/36-increase-in-enterprise-security-threats-due-to-web-apps-ibm-study/</comments>
<pubDate>Wed, 25 Aug 2010 15:26:09 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/36-increase-in-enterprise-security-threats-due-to-web-apps-ibm-study/</guid>
<description><![CDATA[Web apps with security exploits accounted for 55 percent of all disclosed vulnerabilities.<br /><br />One of the biggest threats are hidden attacks using Javascript. There was a 52 percent rise in such "obfuscated attacks" in the first half of 2010. The increased adoption of cloud computing and virtualization brings with it its own security threats.<br/><br/>9 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Using brute force with a graphics card renders passwords pointless]]></title>
<link>http://news.infosecinstitute.com/featured/using-brute-force-with-a-graphics-card-renders-passwords-pointless/</link>
<comments>http://news.infosecinstitute.com/featured/using-brute-force-with-a-graphics-card-renders-passwords-pointless/</comments>
<pubDate>Wed, 18 Aug 2010 14:26:01 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/using-brute-force-with-a-graphics-card-renders-passwords-pointless/</guid>
<description><![CDATA[Right now we can confidently say that a seven-character password is hopelessly inadequate - and as GPU power continues to go up every year, the threat will increase<br/><br/>14 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[New Firefox iFrame Bug Bypasses URL Protections]]></title>
<link>http://news.infosecinstitute.com/featured/new-firefox-iframe-bug-bypasses-url-protections/</link>
<comments>http://news.infosecinstitute.com/featured/new-firefox-iframe-bug-bypasses-url-protections/</comments>
<pubDate>Tue, 17 Aug 2010 12:26:02 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/new-firefox-iframe-bug-bypasses-url-protections/</guid>
<description><![CDATA[The new flaw, which already is in the Mozilla Bugzilla system, is in all of the current versions of Firefox<br/><br/>2 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Malware continues to increase - over 2M new files discover each month]]></title>
<link>http://news.infosecinstitute.com/featured/malware-continues-to-increase-over-2m-new-files-discover-each-month/</link>
<comments>http://news.infosecinstitute.com/featured/malware-continues-to-increase-over-2m-new-files-discover-each-month/</comments>
<pubDate>Sat, 14 Aug 2010 11:26:07 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/malware-continues-to-increase-over-2m-new-files-discover-each-month/</guid>
<description><![CDATA[Malware has reached its highest levels, making the first six months of 2010 the most active half-year ever for total malware production.<br /><br />Globally, the most popular types of spam varied from country to country with some interesting findings. For instance, delivery status notifications, or non-delivery receipt spam, were the most popular in United States, Italy, Spain, China, Great Britain, Brazil, Germany and Australia.<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[The FCC is crowd-sourcing their Cybersecurity Plan...?]]></title>
<link>http://news.infosecinstitute.com/featured/the-fcc-is-crowd-sourcing-their-cybersecurity-plan--/</link>
<comments>http://news.infosecinstitute.com/featured/the-fcc-is-crowd-sourcing-their-cybersecurity-plan--/</comments>
<pubDate>Thu, 12 Aug 2010 11:26:01 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/the-fcc-is-crowd-sourcing-their-cybersecurity-plan--/</guid>
<description><![CDATA[The Federal Communications Commission is asking for help in developing the plan for how to deal with vulnerabilities and online threats. The comments they receive from users will be used as the commission develops its cybersecurity plan or "Cybersecurity Roadmap." Commenting is open until Sept. 23, so go to it.<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Adobe to fix Reader hole unveiled at Black Hat | InSecurity Complex - CNET News]]></title>
<link>http://news.infosecinstitute.com/featured/adobe-to-fix-reader-hole-unveiled-at-black-hat-|-insecurity-complex-cnet-news/</link>
<comments>http://news.infosecinstitute.com/featured/adobe-to-fix-reader-hole-unveiled-at-black-hat-|-insecurity-complex-cnet-news/</comments>
<pubDate>Tue, 10 Aug 2010 13:26:03 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/adobe-to-fix-reader-hole-unveiled-at-black-hat-|-insecurity-complex-cnet-news/</guid>
<description><![CDATA[<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Letitia "Tish" Long becomes the first woman to head a major intelligence agency]]></title>
<link>http://news.infosecinstitute.com/featured/letitia-tish-long-becomes-the-first-woman-to-head-a-major-intelligence-agency/</link>
<comments>http://news.infosecinstitute.com/featured/letitia-tish-long-becomes-the-first-woman-to-head-a-major-intelligence-agency/</comments>
<pubDate>Mon, 09 Aug 2010 13:26:03 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/letitia-tish-long-becomes-the-first-woman-to-head-a-major-intelligence-agency/</guid>
<description><![CDATA[Long will take over as director of the National Geospatial-Intelligence Agency (NGA), the office responsible for collecting and analyzing overhead imagery and geospatial information. &quot;I talk about her as being the velvet hammer. She could cause people to do things that they otherwise would not have thought they wanted to do and in the end, get them to do it willingly&quot;<br/><br/>2 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA['Porn mode' not necessarily anonymous (how private is private browsing?)]]></title>
<link>http://news.infosecinstitute.com/featured/porn-mode-not-necessarily-anonymous-how-private-is-private-browsing/</link>
<comments>http://news.infosecinstitute.com/featured/porn-mode-not-necessarily-anonymous-how-private-is-private-browsing/</comments>
<pubDate>Sun, 08 Aug 2010 21:26:05 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/porn-mode-not-necessarily-anonymous-how-private-is-private-browsing/</guid>
<description><![CDATA[In tests comparing the anonymity and security of the private browsing modes in Microsoft Internet Explorer, Mozilla Firefox, Google Chrome, and Apple Safari, the paper concludes that &quot;current private browsing implementations provide privacy against some local and Web attackers, but can be defeated by determined attackers.&quot;<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Mumba botnet on 55k computers. 60GB+ of data stolen]]></title>
<link>http://news.infosecinstitute.com/featured/mumba-botnet-on-55k-computers-60gb-of-data-stolen/</link>
<comments>http://news.infosecinstitute.com/featured/mumba-botnet-on-55k-computers-60gb-of-data-stolen/</comments>
<pubDate>Tue, 03 Aug 2010 23:26:02 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/mumba-botnet-on-55k-computers-60gb-of-data-stolen/</guid>
<description><![CDATA[60GB of data comprised of bank account numbers, credit card details, and social-networking log-ins have been taken through Mumba.<br/><br/>2 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[InfoSec Resources » The Biggest Gap in Information Security is…?InfoSec Resources]]></title>
<link>http://news.infosecinstitute.com/featured/infosec-resources-/</link>
<comments>http://news.infosecinstitute.com/featured/infosec-resources-/</comments>
<pubDate>Thu, 29 Jul 2010 17:26:08 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/infosec-resources-/</guid>
<description><![CDATA[The gap between what I like to call the &quot;elite&quot; of the information security world and the average IT admin or average whitehat/security professional is bigger than it&#039;s ever been. Comments I&#039;ve heard is &quot;I went to blackhat and I was impressed with all of...<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Researcher Demonstrates ATM ‘Jackpotting’ at Black Hat Conference]]></title>
<link>http://news.infosecinstitute.com/featured/researcher-demonstrates-atm-‘jackpotting’-at-black-hat-conference/</link>
<comments>http://news.infosecinstitute.com/featured/researcher-demonstrates-atm-‘jackpotting’-at-black-hat-conference/</comments>
<pubDate>Thu, 29 Jul 2010 11:26:07 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/researcher-demonstrates-atm-‘jackpotting’-at-black-hat-conference/</guid>
<description><![CDATA[In a city filled with slot machines spilling jackpots, it was a "jackpotted" ATM machine that got the most attention Wednesday at the Black Hat security conference<br/><br/>2 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Competitive lockpicking growing in US popularity - Boston.com]]></title>
<link>http://news.infosecinstitute.com/featured/competitive-lockpicking-growing-in-us-popularity-boston-com/</link>
<comments>http://news.infosecinstitute.com/featured/competitive-lockpicking-growing-in-us-popularity-boston-com/</comments>
<pubDate>Wed, 28 Jul 2010 17:26:04 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/competitive-lockpicking-growing-in-us-popularity-boston-com/</guid>
<description><![CDATA[In the United States, the hobby is slowly becoming much more than an underground pursuit, with enthusiasts meeting and competing at hackers events including the DefCon security conference, Towne said.<br /><br />There are no records on the number of locksport enthusiasts in America, but clubs are popping up at universities, colleges and local neighborhoods, he said.<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[HowStuffWorks "Could a single hacker crash a country's network?"]]></title>
<link>http://news.infosecinstitute.com/featured/howstuffworks-could-a-single-hacker-crash-a-countrys-network/</link>
<comments>http://news.infosecinstitute.com/featured/howstuffworks-could-a-single-hacker-crash-a-countrys-network/</comments>
<pubDate>Fri, 23 Jul 2010 13:26:03 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/howstuffworks-could-a-single-hacker-crash-a-countrys-network/</guid>
<description><![CDATA[Harassing a handful of Web sites is one thing, but does one hacker have the technological wherewithal to bring down an entire country&#039;s network? In a word: yes.<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Is ubiquitous encryption technology on the horizon? | NetworkWorld.com Community]]></title>
<link>http://news.infosecinstitute.com/featured/is-ubiquitous-encryption-technology-on-the-horizon-|-networkworld-com-community/</link>
<comments>http://news.infosecinstitute.com/featured/is-ubiquitous-encryption-technology-on-the-horizon-|-networkworld-com-community/</comments>
<pubDate>Wed, 21 Jul 2010 13:26:03 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/is-ubiquitous-encryption-technology-on-the-horizon-|-networkworld-com-community/</guid>
<description><![CDATA[<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Pirate Bay's Booty of Email Addresses Plundered | News & Opinion | PCMag.com]]></title>
<link>http://news.infosecinstitute.com/featured/pirate-bays-booty-of-email-addresses-plundered-|-news-opinion-|-pcmag-com/</link>
<comments>http://news.infosecinstitute.com/featured/pirate-bays-booty-of-email-addresses-plundered-|-news-opinion-|-pcmag-com/</comments>
<pubDate>Fri, 09 Jul 2010 13:26:01 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/pirate-bays-booty-of-email-addresses-plundered-|-news-opinion-|-pcmag-com/</guid>
<description><![CDATA[<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Skype’s Innermost Security Layers Claimed To Be Reverse-Engineered]]></title>
<link>http://news.infosecinstitute.com/featured/skype’s-innermost-security-layers-claimed-to-be-reverse-engineered/</link>
<comments>http://news.infosecinstitute.com/featured/skype’s-innermost-security-layers-claimed-to-be-reverse-engineered/</comments>
<pubDate>Thu, 08 Jul 2010 15:26:03 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/skype’s-innermost-security-layers-claimed-to-be-reverse-engineered/</guid>
<description><![CDATA[Someone claims to have reverse-engineered the proprietary encryption protocols Skype has put in place to prevent developers from building their own Skype desktop clients or Web-based services based on the company's in-house technology. If this checks out, this basically means the walls of Skype's pretty garden have been abruptly hauled down<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Report: NSA initiating program to detect cyberattacks | Security - CNET News]]></title>
<link>http://news.infosecinstitute.com/featured/report-nsa-initiating-program-to-detect-cyberattacks-|-security-cnet-news/</link>
<comments>http://news.infosecinstitute.com/featured/report-nsa-initiating-program-to-detect-cyberattacks-|-security-cnet-news/</comments>
<pubDate>Thu, 08 Jul 2010 11:26:03 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/report-nsa-initiating-program-to-detect-cyberattacks-|-security-cnet-news/</guid>
<description><![CDATA[<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[U.S. Program to Detect Cyber Attacks on Infrastructure - WSJ.com]]></title>
<link>http://news.infosecinstitute.com/featured/u-s-program-to-detect-cyber-attacks-on-infrastructure-wsj-com/</link>
<comments>http://news.infosecinstitute.com/featured/u-s-program-to-detect-cyber-attacks-on-infrastructure-wsj-com/</comments>
<pubDate>Thu, 08 Jul 2010 11:26:03 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/u-s-program-to-detect-cyber-attacks-on-infrastructure-wsj-com/</guid>
<description><![CDATA[The surveillance by the National Security Agency, the government&#039;s chief eavesdropping agency, would rely on a set of sensors deployed in computer networks for critical infrastructure that would be triggered by unusual activity suggesting an impending cyber attack, though it wouldn&#039;t persistently monitor the whole system, these people said.<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Core Security Technologies]]></title>
<link>http://news.infosecinstitute.com/featured/core-security-technologies/</link>
<comments>http://news.infosecinstitute.com/featured/core-security-technologies/</comments>
<pubDate>Wed, 07 Jul 2010 18:26:03 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/core-security-technologies/</guid>
<description><![CDATA[Join Alex Horan, Director of Product Management for Core Security for a step-by-step depiction of an attack similar to that described in the Gonzalez indictment. Through the demonstration, you'll also learn how commercial-grade penetration testing software enables you to see your IT systems as an attacker would.<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Top 10 Reasons Your Security Program Sucks]]></title>
<link>http://news.infosecinstitute.com/featured/top-10-reasons-your-security-program-sucks/</link>
<comments>http://news.infosecinstitute.com/featured/top-10-reasons-your-security-program-sucks/</comments>
<pubDate>Tue, 29 Jun 2010 15:26:39 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/top-10-reasons-your-security-program-sucks/</guid>
<description><![CDATA[the top 10 reasons your security program sucks and why no matter how much you kick and scream it will continue to suck…<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Apple quietly adds anti-malware in Snow Leopard update]]></title>
<link>http://news.infosecinstitute.com/featured/apple-quietly-adds-anti-malware-in-snow-leopard-update/</link>
<comments>http://news.infosecinstitute.com/featured/apple-quietly-adds-anti-malware-in-snow-leopard-update/</comments>
<pubDate>Thu, 24 Jun 2010 15:26:05 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/apple-quietly-adds-anti-malware-in-snow-leopard-update/</guid>
<description><![CDATA[&quot;You have to wonder whether their keeping quiet about an anti-malware security update like this was for marketing reasons. &quot;Shh! Don&#039;t tell folks that we have to protect against malware on Mac OS X!&quot;<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Interpolique - A new mechanism for preventing string injections]]></title>
<link>http://news.infosecinstitute.com/featured/interpolique-a-new-mechanism-for-preventing-string-injections/</link>
<comments>http://news.infosecinstitute.com/featured/interpolique-a-new-mechanism-for-preventing-string-injections/</comments>
<pubDate>Mon, 14 Jun 2010 14:26:05 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/interpolique-a-new-mechanism-for-preventing-string-injections/</guid>
<description><![CDATA[Developers have been very clear: When assembling strings to communicate across language boundaries, they strongly prefer being able to reference variables inline, rather than through discrete and separate interfaces. (There is very strong user interface research that explains why this would be.) But normally, this sort of inline variable use is risky.<br /><br />What if it wasn&#039;t? What if the separation between attacker data, and programmer code, was strongly maintained despite the developer writing in a traditionally insecure manner? What if String Interpolation could be safe?<br/><br/>2 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Samsung Handsets Distributed With Malware-Infected Memory Cards | threatpost]]></title>
<link>http://news.infosecinstitute.com/featured/samsung-handsets-distributed-with-malware-infected-memory-cards-|-threatpost/</link>
<comments>http://news.infosecinstitute.com/featured/samsung-handsets-distributed-with-malware-infected-memory-cards-|-threatpost/</comments>
<pubDate>Fri, 04 Jun 2010 14:26:05 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/samsung-handsets-distributed-with-malware-infected-memory-cards-|-threatpost/</guid>
<description><![CDATA[<br/><br/>1 Vote(s) ]]></description>
</item>

<item>
<title><![CDATA[Lieberman Bill Gives Feds ‘Emergency’ Powers to Secure Civilian Nets]]></title>
<link>http://news.infosecinstitute.com/featured/lieberman-bill-gives-feds-‘emergency’-powers-to-secure-civilian-nets/</link>
<comments>http://news.infosecinstitute.com/featured/lieberman-bill-gives-feds-‘emergency’-powers-to-secure-civilian-nets/</comments>
<pubDate>Fri, 04 Jun 2010 14:26:05 -0400</pubDate>
<dc:creator>darren</dc:creator>
<category>Featured</category>
<guid>http://news.infosecinstitute.com/featured/lieberman-bill-gives-feds-‘emergency’-powers-to-secure-civilian-nets/</guid>
<description><![CDATA[Wired&#039;s take on the bill to give .gov the power to take over civilian networks&#039; security in teh case of an &quot;imminent cyber threat&quot;<br/><br/>1 Vote(s) ]]></description>
</item>

</channel>
</rss>

