A peek into the Sykipot campaigns
PoC exploits for Linux privilege escalation bug published
DreamHost hacker accessed pool of unencrypted passwords
Kelihos malware author, botnet herder named by Microsoft
Is your online bank vulnerable to currency rounding attacks?

Facebook scammers leverage the Amazon Cloud
Friday, 27 January 2012.
Spammers have lately begun using Amazon's cloud services for hosting the fake Facebook pages leading to surveys because it's cheap and because is less likely that Facebook will block links from an Amazon domain.

Unwanted apps on Android smartphones
Friday, 27 January 2012.
Third-party Android markets have always been the favorite means of malicious app dissemination, especially in regions where users don't have access to the official repository. This is also the case with the latest campaign that lures users into installing well-known applications on the genuine Android Market, but which have been tampered with.

Web attacks peak at 38,000 an hour
Thursday, 26 January 2012.
Web applications are subject to business logic attacks, according to a report by Imperva. They monitored and categorized attacks across the internet targeting 40 different applications. This allowed them to outline the frequency, type and geography of origin of each attack.

Protect your online image with tips from Microsoft
Thursday, 26 January 2012.
In an increasingly connected world, everything people do online contributes to their online reputation. In observance of Data Privacy Day 2012, Microsoft is releasing new data about consumer behaviors online and is offering guidance and tips to help people better manage their online profiles and maintain a positive reputation.

Symantec advises customers to stop using pcAnywhere
Thursday, 26 January 2012.
In a perhaps not wholly unexpected move, Symantec has advised the customers of its pcAnywhere remote control application to stop using it until patches for a slew of vulnerabilities are issued.

Targeted attacks will change the economics of security
Wednesday, 25 January 2012.
Today, European Justice Commissioner, Viviane Reding, will unveil the new European Privacy Directive, designed to safeguard personal, identifiable information that is stored by private and public sector organizations.

Carberp Trojan targets French broadband subscribers
Wednesday, 25 January 2012.
Trusteer recently discovered a configuration of Carberp that targets Free, a French broadband ISP. The attack is designed to steal debit card and bank information using a Man in the Browser (MitB) attack.

Criminals stole $3.4B from online revenues in 2011
Tuesday, 24 January 2012.
Merchants are working harder than ever to keep fraud in check, using more tools and reviewing more orders. Clearly the criminal element is growing more sophisticated. Merchants say 1 percent of online revenues were lost to fraud in 2011, which translates to an estimated 2011 merchant dollar loss of approximately $3.4 billion.

Pwn2Own 2012: Changed rules, bigger prizes, no more mobile hacks
Tuesday, 24 January 2012.
Pwn2Own, one of the most anticipated hacking contests that takes place each year at the CanSecWest conference in Vancouver, British Columbia, is set to unfold under dramatically different rules this year.

IT managers express concerns over tablet security
Tuesday, 24 January 2012.
Cisco commissioned a survey 1500 IT managers and executives in the US, Canada, UK, France, Germany and Spain to assess attitudes, fears and hopes for tablets in the workplace. Still a nascent market, 2012 is seen as a year in which enterprise-grade tablet computing will undergo significant change.

Researchers discover network of 7,000 typo squatting domains
Tuesday, 24 January 2012.
A network of some 7,000 typo squatting domains is being used by scammers to effectively drive traffic towards their scammy sites, some of which get so much traffic that they managed to enter Alexa's top 250 list of sites with the largest Web traffic, say Websense researchers.

Online reputation manager suspected of Illegal code injection
Monday, 23 January 2012.
Every now and then, some firms offering online reputation services succumb to the temptation of using illegal means to achieve their goal. And, according to Fox News, California-based Rexxfield is currently being accused of belonging to that group.