SANS NewsBites
Adobe Will Fix PDF Tracking Issue Next Week (May 3, 2013)
Adobe says that it will fix a PDF tracking issue in its scheduled May 14 security update for Reader and Acrobat.......
FTC to Hold Hearing on Identity Theft and Senior Citizens (May 3, 2013)
The US Federal Trade Commission (FTC) plans to hold a hearing on Tuesday, May 7 at which it will look into identity theft schemes perpetrated on senior citizens, including tax and government benefit identity theft; long term care identity theft; and medical identity theft, which is occurring with increasing frequency.......
Middle School Students Phish Teachers' Admin Credentials (April 30 & May 3, 2013)
Students at a middle school in Alaska managed to trick teachers into providing their administrative access credentials and then used the access to control classmates' computers.......
US Government Is Website Serving Malware To Citizens (May 1, 2013)
A US Department of Labor website was found to be serving up malware to unsuspecting citizens through drive-by download attacks.......
Classified Data Looted in Three-Year Cyberespionage Campaign (May 1 & 2, 2013)
US Defense contractor Qinetiq reportedly bled classified data for three years after a cyberespionage campaign gained purchase within the company's computer systems.......
Foreign Intelligence Surveillance Court Approved All Requests in 2012 (May 2, 2013)
The US Justice Department sent a report to Senator Majority Leader Harry Reid (D-Nevada) detailing certain activity of the Foreign Intelligence Surveillance Court.......
Bill in Dutch Legislature Would Give Law Enforcement Broad Cyber Powers (May 2, 2013)
Dutch lawmakers are considering broad legislation that would give law enforcement the authority to hack into computer systems in the Netherlands and abroad for research, evidence gathering, or to block access to specific data.......
Java Vulnerability in IBM Notes (May 2, 2013)
IBM has issued a security advisory acknowledging that its Notes mail client accepts Java applet tags and JavaScript tags inside HTML emails, which could allow attackers to load applets and scripts from remote locations.......
ISC-CERT Recommendations to Prevent Shamoon Infection (April 30 & May 1, 2013)
The US Department of Homeland Security's (DHS) Industrial Control System Cyber Emergency Response Team (ICS-CERT) has issued a bulletin to operators of critical US computer networks urging them to implement measures to prevent infection from malware known as Shamoon, which wiped data from computers at oil companies in the Middle East last summer.......
US Army Corps of Engineers' Database Breached (May 1 & 2, 2013)
Someone used stolen credentials to gain access to the US Army Corps of Engineers' National Inventory of Dams (NID) database.......
Mozilla Sends Cease-and-Desist Letter to Company Whose Surveillance Software Pretends to be Firefox (May 1, 2013)
Mozilla has sent a cease-and-desist letter to Gamma International, the company that makes surveillance software called FinFisher.......
Does Exploiting Firmware Flaw in Video Poker Machine Violate CFAA? (May 1, 2013)
The Computer Fraud and Abuse Act (CFAA) is being tested again, this time in a case involving two men who took advantage of a bug in a video poker game to increase their winnings.......
Financial Regulators Consider Implications Of Social Media (May 1, 2013)
Federal financial regulators are examining ways to respond to social media, following a phony tweet from a hacked AP Twitter account that sent US markets into a brief tailspin.......
Cyberthieves Steal US U$1 Million from Hospital in Fraudulent ACH Transactions (April 30, 2013)
A hospital in Washington State was targeted by hackers who stole more than US $1 million from its bank account with the help of nearly 100 accomplices.......
The Guardian's Twitter Accounts Hijacked (April 29, 2013)
The same group that hijacked the Associated Press's Twitter feed last week is now claiming responsibility for taking over Twitter accounts belonging to the UK newspaper The Guardian.......
Twitter Warns News Companies to Improve Security (April 30, 2013)
Twitter has contacted major news organizations around the world, warning them that attacks like those against the Associated Press and The Guardian are likley to continue, and advising them to examine their internal policies for using social media.......
Apache Web Server Attack is Sophisticated and Stealthy (April 29, 2013)
Websites running the Apache web server have been under attack for a month.......
Researchers Find Open IP Ports on Ships' Automated Identification Systems (April 29, 2013)
Researchers sifting through data collected in "an unprecedented census of nearly the entire Internet" were surprised to find that Internet connected Automatic Identification System (AIS) receivers on ships responded to port scans.......
Supreme Court Says States Can Limit FOIA Requests to Residents Only (April 29, 2013)
The US Supreme Court has ruled that states may limit Freedom of Information Act (FOIA) requests to only citizens of that state.......


