PINs stolen from Citibank ATMs

Tuesday, July 1st, 2008

We all worry about keeping our online passwords safe from prying eyes. But now our faith in ATM PIN codes is being shaken.Three people face charges in federal court in New York for allegedly breaking into Citibank's ATM network inside 7-Eleven stores and stealing PIN codes, according to court filings ...

PAWS – Python Advanced Wardialing System

Tuesday, July 1st, 2008

Now this is an oldskool topic, wardialling! Some people still ask me about wardialling tools though, so here’s one I found recently written in Python.PAW / PAWS is a wardialing software in python. It is designed to scan for ISDN (PAWS only) and “modern” analog modems (running at 9.6kbit/s or ...

$1B Market for Meddling With DNS Poses Security Problem

Tuesday, June 24th, 2008

The interception of Internet traffic to snoop on phone calls or track surfers' behavior is a hot topic -- but what's keeping members of ICANN's Security and Stability Advisory Committee up at night is the interception of traffic to and from sites that don't even exist. They explained why in ...

Securing Cross Site XMLHttpRequest

Monday, June 23rd, 2008

As I mentioned in my post on Cross Document Messaging, client side cross domain request is an important area of interest for AJAX developers looking for ways to avoid expensive server side proxying calls. While Cross Document Messaging is useful for allowing third party components or gadgets embedded in a ...

Endpoint security holes an open door for attackers

Monday, June 23rd, 2008

Everyone knows that there's no such thing as 100% security, but it's unlikely that most businesses realize how insecure they really are. New research on endpoint security shows just how vulnerable corporate networks are.Eighty-one percent of corporate endpoints probed by IT security and control product vendor Sophos failed basic security ...