Monday, February 25, 2013

The Reg Security: Apple FINALLY fills gaping Java hole that pwned its own devs [ Mon Feb 25 2013]

Dear etechnews today,

Your weekly security newsletter from theregister.co.uk
for the week ending 25th February 2013

RSA Conference 2013
Feb 25 - Mar 1
San Francisco, US

RSA Conference 2013: Mastering data to secure the world. Attend Feb 25 - Mar 1 and access 275+ sessions.
http://reg.cx/1Yqb



*** Security News ***

Microsoft latest to 'fess up to Java-based Mac attack
Redmond experiences 'similar intrusion' to Facebook and Apple
http://www.theregister.co.uk/2013/02/25/microsoft_java_mac_apple_facebook_attacl/

Firefox to spit out third-party cookies
Mozilla says Apple's got it more or less right
http://www.theregister.co.uk/2013/02/25/firefox_cookies_policy/

HTC settles with FTC over smartphone security holes
Promises to do better next time
http://www.theregister.co.uk/2013/02/22/ftc_setlles_htc_security/

Pah! Social, file-sharing apps are SAFE compared to biz apps
Malware threats not where corporates think they are
http://www.theregister.co.uk/2013/02/22/app_threat_analysis/

Tumblr, Pinterest, Twitter hipsters exposed in Zendesk data raid
Hacker slurps email info from helpdesk biz
http://www.theregister.co.uk/2013/02/22/zendesk_hack_hits_twitter_tumblr_users/

NBC.com HACKED to spread bank account-raiding Trojan
'No user info compromised' insists US telly network
http://www.theregister.co.uk/2013/02/22/nbc_hack/

Security report becomes security risk
Mandiant's report on Chinese hacking used as bait in spear phishing
attacks
http://www.theregister.co.uk/2013/02/22/apt1_report_used_spear_phishing/

Twitter adds email security to help block phishing attempts
Too late for Burger King, but maybe not for you
http://www.theregister.co.uk/2013/02/21/twitter_adds_dmarc_security/

Obama's new cyber-security tactics finger corrupt staff, China
Hackers or the guy with root? Trouble is closer to home, warns White
House
http://www.theregister.co.uk/2013/02/21/us_revamped_cyber_strategy/

Adobe punts fix for Reader, Acrobat holes battered by PC, Mac hackers
Software biz praised for nine-day response
http://www.theregister.co.uk/2013/02/21/adobe_reader_acrobat_0days/

PunkSPIDER project founder defends 'Google for web app vulns'
Global bug scanner can be used 'for good or for evil'
http://www.theregister.co.uk/2013/02/21/punkspider/

We've slashed account hijackings by 99.7% - Google
120-variable security checks + 2-factor auth = zapped interwebs pond
scum
http://www.theregister.co.uk/2013/02/21/google_account_hijack_clampdown/

Mobile dev site: We never knew about Facebook, Apple hacks
First read about own role in Wednesday's news
http://www.theregister.co.uk/2013/02/21/iphonedevsdk_hack_involvement/

Ad-titan Google blocks Adblock Plus in Android security tweak
We're being singled out, claims app maker
http://www.theregister.co.uk/2013/02/20/google_adblock_plus/

BlackBerry squashes W-TIFF-F bug that's ripe for malware squirters
Picture this: BES servers hacked by evil image files
http://www.theregister.co.uk/2013/02/20/blackbery_squashes_image_peril/

Rid yourself of Adobe: New Firefox 19.0 gets JAVASCRIPT PDF viewer
Built-in reader escapes into wild from beta incubator
http://www.theregister.co.uk/2013/02/20/mozilla_pdf_view_html5_javascript/

Apple FINALLY fills gaping Java hole that pwned its own devs
Zero-day vuln also downed Facebook staff and other Mac users
http://www.theregister.co.uk/2013/02/20/apple_java_omnishambles/

VMware promises better security, considers scheduled patches
Security enhancements, more and better warnings on the agenda
http://www.theregister.co.uk/2013/02/20/vmware_security_survey/

Apple and world HACKED by Facebook plunderers
Use a Mac? Have Java? You might have been pwned
http://www.theregister.co.uk/2013/02/19/apple_hacked/

Chinese PLA soldiers 'mastermind cyber-espionage Cold War'
NYT-hired security biz claims scores of US corps hacked by
state-sponsored crew
http://www.theregister.co.uk/2013/02/19/china_apt_report_mandiant/

Cameron to ink cyber deal with India, protect Brit outsourced data
UK will also share infosec expertise and threat intelligence
http://www.theregister.co.uk/2013/02/19/india_uk_cyber_security_agreement/

Dutch MP must cough €750 for hacking into medical lab
'Public interest was served' but he didn't need to access so many files
http://www.theregister.co.uk/2013/02/19/dutch_mp_ethical_hacking_fine/

Nursing watchdog fined £150k for confidential unencrypted DVD loss
'Highly sensitive' discs for 'fitness to practise' hearing vanish
http://www.theregister.co.uk/2013/02/19/nmc_fined_by_ico/

Amazon, eBay, banks snub anti-fraud DNS tech, sniff securo bods
'Other defences' available, they'll move when they're good and ready -
Nominum
http://www.theregister.co.uk/2013/02/18/dnssec/

Brace for MORE ZOMBIE ATTACK ALERT pranks, warns security bod
Passwords left on default, kit facing the web, and worse
http://www.theregister.co.uk/2013/02/18/eas_vulns/

Online crims are getting away with it down under
Just eight per cent of perps charged, five per cent of attacks come
from foreign powers
http://www.theregister.co.uk/2013/02/18/cert_australia_says_eight_percent_of_online_crims_charged/


*** Whitepaper ***

Improve IT Productivity with Unified Data Center
Improve IT Productivity with Unified Data Center.
http://whitepapers.theregister.co.uk/d/aa1/9e7f3/574/99b67944?td=week_sec_e



------------------------------------------------------------------------

This email was sent to garn14.tech@blogger.com

To change your email or your email subscriptions

http://account.theregister.co.uk/login/

To unsubscribe from all The Register newsletters

http://account.theregister.co.uk/unsubscribe/649203/acc978a1

The Register and its contents are Copyright © 2013 Situation Publishing.
All rights reserved.

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.