Researcher busts into Twitter via SSL reneg hole

Saturday, November 14th, 2009

A Swiss grad student has devised a serious, real-world attack on Twitter that targeted a recently discovered vulnerability in the secure sockets layer protocol.The exploit by Anil Kurmus is significant because it successfully targeted the so-called SSL renegotiation bug to steal Twitter login credentials that passed through encrypted data streams. ...

Drowning in Passwords: Tips to Stay Safe and Sane

Monday, November 9th, 2009

If you spend much time online, you probably have the same problem I do: How to remember your ever-growing list of online usernames and passwords-and stay secure at the same time.You're savvy enough to know that identity theft and illegal access to personal and financial data are real-world problems that ...

10 easy steps to secure your Linux machine

Wednesday, October 28th, 2009

Whether you use a single desktop or manage a lab full of servers, with the various threats we all face from hackers these days you simply have to make sure you're running a secure ship.Running Linux gives you some inherent protection from attack, but you still need to take adequate ...

Facebook Password Spam Conceals Malware Attack

Wednesday, October 28th, 2009

Researchers at several security firms have tied the Bredolab Trojan to a spam campaign targeting Facebook users.The malware is being blasted out by spammers in e-mails claiming to come from “The Facebook Team." Inside the e-mails is a message that the recipient's Facebook password has been changed. In order to ...

Reverse Hash Calculator

Monday, October 26th, 2009

This page doesn't use rainbow tables (yet), but a similar, simpler approach. It uses a database of a couple million pre-compiled hash values. The strings used come from various password databases, and should have a pretty good chance of "hitting" your value. There is an intentional delay in the ...