[Owasp-cincinnati] Selected OWASP, InfoSec, Data Loss News For Last Week 8/21-9/1/2010
Marco M. Morana
marco.m.morana at gmail.com
Fri Sep 3 08:45:45 EDT 2010
Developer's choices to attend Appsec USA 2010
Pentagon's cybersecurity plans have a Cold War chill
With little fanfare, the Pentagon is putting the finishing touches on a new
strategy that will treat cyberspace as a domain of potential warfare
China policy could force foreign security firms out
China is stepping up efforts to keep the security systems that protect its
critical infrastructure in the hands of local firms, and that could be bad
news for companies based outside the country.
Researcher Creates Clearinghouse Of 14 Million Hacked
The "Wall of Sheep" has become a cherished tradition at the annual Defcon
hacker conference in Las Vegas: Anyone foolish enough to use the local
wireless network at the hotel will likely have his or her username and
Hackers accidentally give Microsoft their code
When hackers crash their systems while developing viruses, the code is often
sent directly to Microsoft, according to one of its senior security
architects, Rocky Heckman.
Rustock botnet ditches encryption to ramp spam
The Rustock mega-botnet appears to have ditched the experimental use of TLS
(transport layer security) to obscure its activity, Symantec has reported.
Sticks and stones: Picking on users AND security pros
Johnston, a member of the Vulnerability Assessment Team at Argonne National
Laboratory. In the presentation, he gave examples of surprising (or not)
examples of what he has seen as a vulnerability assessor:
security devices, systems and programs with little or no security -- or
security thought -- built in. There are the well-designed security products
foolishly configured by those who buy them, thus causing more vulnerability
than before the devices were installed.
California Legislation Would Require Companies To Specify The Data Exposed
A privacy breach notification bill recently passed by the California
legislature would expand the state's existing law for how organizations
notify consumers of a data breach.
FSA fine Zurich UK over data security breach
Zurich UK suffered the £2.28million fine after losing a disk containing the
details of 46,000 customers.
Data Loss News
Source: dataloss at datalossdb.org
Title: Bank of America Settles Data Theft Claims
Title: Bank of America settles Countrywide data theft case
Marco Mirko Morana
OWASP Cincinnati USA Chapter Lead
-------------- next part --------------
An HTML attachment was scrubbed...
More information about the Owasp-cincinnati