HNS Newsletter Issue 251 - 07.02.2005. http://net-security.org This is a newsletter delivered to you by Help Net Security. It covers weekly roundups of security events that were in the news the past week. ---------------------------------------------------------------- REGISTER FOR INFOSECURITY EUROPE 2005 ---------------------------------------------------------------- Infosecurity Europe is Europe's number one, dedicated Information Security event. Now in its 10th anniversary year, Infosecurity Europe continues to provide an unrivalled education programme, new products & services, over 250 exhibitors and over 10,000 visitors from every segment of the industry. ---------------------------------------------------------------- Get all the information at: http://www.infosec.co.uk/hns ---------------------------------------------------------------- Table of contents: 1) Security news 2) Vulnerabilities 3) Advisories 4) Articles 5) Software 6) Webcasts 7) Conferences 8) Security World 9) Virus News [ Security news ] ---------------------------------------------------------------- TREND RETAINS ENTIRE STABLE OF DISTRIBUTORS Vendor grants stays of execution after 'continued SME success'. http://www.net-security.org/news.php?id=7035 SOME RFID CHIPS VULNERABLE TO HACKING Tiny radio-transmitter chips that make possible high-security car keys and swipe-by petrol passes can be cracked using cheap technology. http://www.net-security.org/news.php?id=7036 GATES SAYS SECURITY IS PRIORITY In the second part of a two-part interview, Stephen Cole of the BBC's technology show Click Online talks to Microsoft founder and chairman Bill Gates about the pros and cons of being at the forefront of the PC industry. http://www.net-security.org/news.php?id=7037 GOVERNMENT COMPUTER BLUNDERS ARE COMMON AND EXPENSIVE The FBI's failure to roll out an expanded computer system that would help agents investigate criminals and terrorists is the latest in a series of costly technology blunders by government over more than a decade. http://www.net-security.org/news.php?id=7038 CLASSIFIED DUTCH MILITARY DOCUMENTS FOUND ON KAZAA At least 75 pages of highly classified information about human traffickers from the Dutch Royal Marechaussee - a service of the Dutch armed forces that is responsible for guarding the Dutch borders. http://www.net-security.org/news.php?id=7039 MYSQL WARNING USERS, CONTEMPLATING CHANGES AFTER WORM Forbot worm targeting open source database. http://www.net-security.org/news.php?id=7040 INTERVIEW WITH A LINK SPAMMER So how and why do "link spammers" - as they generically call themselves - do it? Are they the same as the email spammers? http://www.net-security.org/news.php?id=7042 WIRELESS SECURITY STILL IN ITS INFANCY Experts recommend caution using cell phones, PDAs for financial transactions. http://www.net-security.org/news.php?id=7043 IBM STUDY TESTS LINUX SECURITY To test open source security products, a study was conducted over a period of three months at the IBM Linux Test Integration Center. The goal for the security study was to deploy and compare various open source security tools that were available for free in the industry, and provide solution recommendations. http://www.net-security.org/news.php?id=7044 THE 80/20 RULE FOR WEB APPLICATION SECURITY After performing hundreds of web security assessments you're bound to encounter many frighteningly insecure websites. http://www.net-security.org/news.php?id=7045 PHISHING MORPHS INTO PHARMING Fraudsters and mischief makers are developing more insidious techniques for tricking users into visiting bogus websites. http://www.net-security.org/news.php?id=7046 SECURITY COMPANY POKES HOLE IN XP SP2 Patch is available, but some experts advise against installing it. http://www.net-security.org/news.php?id=7047 SECURE HORIZONS Companies look to policies and standards-not just products-to secure their data. http://www.net-security.org/news.php?id=7048 DIGITAL EVIDENCE: TODAY'S FINGERPRINTS Electronic world increasingly being used to solve crimes. http://www.net-security.org/news.php?id=7049 NINE OUT OF 10 VPNS 'NOT SECURE' Exploitable vulnerabilities across all products, warns analyst. http://www.net-security.org/news.php?id=7050 MICROSOFT'S VELVET GLOVE Redmond's plan to make you install Windows authentication software before downloading vital security patches is a reasonable and gentle effort to limit piracy. http://www.net-security.org/news.php?id=7051 MALWARE MAELSTROM BOOSTS SURFCONTROL SALES Shares in UK-based censorware outfit SurfControl rose more than three per cent this morning with the release of healthy quarterly earnings results. http://www.net-security.org/news.php?id=7052 MICROSOFT, GERMAN PARTNERS BACK SECURE NET PROJECT Microsoft Corp chairman Bill Gates and leaders of Germany's computer industry launched Monday a project to protect millions of computer users from Internet dangers such as viruses. http://www.net-security.org/news.php?id=7053 NO IMPROVEMENT IN WIRELESS NETWORK SECURITY Two-thirds of enterprise wireless networks across the UK and Ireland are easily open to hackers. http://www.net-security.org/news.php?id=7054 MICROSOFT SEEN POISED TO PUSH ANTI-VIRUS Consensus is building among industry watchers that Microsoft will have anti-spyware and anti-virus products on the market for businesses and consumers by year-end. http://www.net-security.org/news.php?id=7055 COST OF MALWARE SOARS TO $166BN IN 2004 Viruses, worms and Trojans taking their toll. http://www.net-security.org/news.php?id=7056 NOKIA EXPANDS SECURITY PLATFORMS Nokia announced the expansion of its family of network security platforms with the addition of Nokia IP260 and Nokia IP265. http://www.net-security.org/news.php?id=7057 MASS MAILED WORMS HERE TO STAY Predictions of the demise of the mass-mailed worm are premature, a security researcher said Tuesday. http://www.net-security.org/news.php?id=7058 CRYPTOSTOR COMBINES STORAGE, SECURITY NeoScale Systems on Monday announced its CryptoStor for Tape 700, a new family of tape media security appliances. http://www.net-security.org/news.php?id=7059 GATES TO UNVEIL NEW GOVERNMENT SECURITY PROGRAM Company is increasing its participation with governments. http://www.net-security.org/news.php?id=7060 DOWNLOADABLE DATABASES POSE SECURITY DANGERS It's baffling that so many database administrators or casual non-DBA downloaders were responsible for leaving weak or default passwords on MySQL databases. http://www.net-security.org/news.php?id=7062 AOL AIMS TO SECURE SURFING WITH NEW NETSCAPE BROWSER Users will be alerted to Web sites that are connected with scams. http://www.net-security.org/news.php?id=7063 ITAA FAVORS CURRENT SMART CARD SPECS Members of the Information Technology Association of America say they hope to persuade federal officials to modify a proposed biometric smart card specification. http://www.net-security.org/news.php?id=7064 SUPREME COURT PUTS HACKER SENTENCES UP FOR GRABS A landmark U.S. Supreme Court decision last month giving judges more leeway in deciding federal prison terms could be good news for computer intruders who don't fit the classic criminal mold, legal experts say. http://www.net-security.org/news.php?id=7065 HACKERS SEE 3G AS PRIZE TARGET Despite more paranoia and stiffer security than ever, IP-based telecommunications servers are fast becoming the new 'holy grail' for the black hat hacking community, with a highly embarrassing intrusion at US based carrier T-Mobile the latest ugly incident. http://www.net-security.org/news.php?id=7066 THE 'HACKER TOOL' WORM THAT GURNED The old English practice of gurning, in which participants pull a funny or scary face, is being used by a newly discovered worm to distract PC users while their machines are being compromised. http://www.net-security.org/news.php?id=7067 MICROSOFT: BYPASS IS NOT A SECURITY THREAT A method of bypassing security features in Windows XP Service Pack 2 (SP2) isn't actually a security threat, Microsoft has claimed. http://www.net-security.org/news.php?id=7068 FTC: AT LEAST $548 MILLION LOST TO IDENTITY THEFT Americans lost at least $548 million to identity theft and consumer fraud last year as the Internet provided new victims for age-old scams. http://www.net-security.org/news.php?id=7069 NEW ZOMBIE SPAM TECHNIQUE MAY INCREASE SPAM LEVELS If the warnings of security experts are to be believed, we are on the verge of a major onslaught of spam. http://www.net-security.org/news.php?id=7070 ROOT KIT SURFACES AFTER JABBER ATTACK The Jabber Software Foundation (JSF) - the open source instant messaging organisation - has advised developers to check their code, after discovering that a hack attack against its website was more serious than first suspected. http://www.net-security.org/news.php?id=7071 LINUX SECURITY IS A 'MYTH', CLAIMS MICROSOFT Open source OS 'not ready for mission-critical computing'. http://www.net-security.org/news.php?id=7072 TESTIFYING IN A COMPUTER CRIMES CASE In this article, we examine the basics of testifying in either capacity in a case involving computer crimes, and how you can move into the lucrative field of computer forensics, on either a full- or part-time basis. http://www.net-security.org/news.php?id=7073 SPAMMERS TURN TO DIRECTORY HARVEST ATTACKS Have you been done by a harvester before? http://www.net-security.org/news.php?id=7074 THE COMMERCIALISATION OF MALWARE Virus writers are waking up and smelling the money. http://www.net-security.org/news.php?id=7075 HEADING OFF HACKERS Security intelligence services can give a heads-up on threats and how to deal with them. http://www.net-security.org/news.php?id=7076 ONLINE MOB (POLL) WOULD HANG HACKERS HIGH The teenager sentenced to 18 months in federal prison for spawning a variant of the MSBlast worm deserved tougher punishment, an online poll says. http://www.net-security.org/news.php?id=7077 DEFENSE CONTRACTOR WARNS EMPLOYEES FOLLOWING COMPUTER THEFT Thieves stole several computers containing personal information on 45,000 current and former shareholders of defense contractor Science Applications International Corp. http://www.net-security.org/news.php?id=7078 THE TALENTED MR. MITNICK he former hacker perpetrated a series of high-profile corporate break-ins in the 1990s—and served five years in federal prison for it. http://www.net-security.org/news.php?id=7079 CANADIANS FIGHT FOR PRIVACY British Columbians are fighting to halt an outsourcing contract recently signed by their government that would place millions of their health records in the hands of a private American company. http://www.net-security.org/news.php?id=7080 EUDORA OPEN TO MULTIPLE HIGH RISK FLAWS Windows version of popular email client at risk. http://www.net-security.org/news.php?id=7081 ---------------------------------------------------------------- [ Vulnerabilities ] All vulnerabilities are located here: http://www.net-security.org/archive_vuln.php ---------------------------------------------------------------- Alt-N WebAdmin 3.0.2 Multiple Vulnerabilities http://www.net-security.org/vuln.php?id=4012 Xpand Rally 1.0.0.0 Broadcast Crash Vulnerability http://www.net-security.org/vuln.php?id=4011 Infinite Mobile Delivery v2.6 Webmail Cross Site Scripting Vulnerability http://www.net-security.org/vuln.php?id=4010 Icewarp Web Mail 5.3.0 Multiple Vulnerabilities http://www.net-security.org/vuln.php?id=4009 Magic Winmail Server v4.0 Multiple Vulnerabilities http://www.net-security.org/vuln.php?id=4008 WinAMP in_cdda.dll CDA Device Name Buffer Overflow Vulnerability http://www.net-security.org/vuln.php?id=4007 Openswan XAUTH/PAM Buffer Overflow Vulnerability http://www.net-security.org/vuln.php?id=4006 ---------------------------------------------------------------- [ Advisories ] All advisories are located at: http://www.net-security.org/archive_advi.php ---------------------------------------------------------------- Debian Security Advisory - postgresql (DSA 667-1) http://www.net-security.org/advisory.php?id=4443 SUSE Security Announcement - kernel (SUSE-SA:2005:005) http://www.net-security.org/advisory.php?id=4442 Ubuntu Security Notice - postfix vulnerability (USN-74-2) http://www.net-security.org/advisory.php?id=4441 Debian Security Advisory - squid (DSA 667-1) http://www.net-security.org/advisory.php?id=4440 Debian Security Advisory - python2.2 (DSA 666-1) http://www.net-security.org/advisory.php?id=4439 SUSE Security Announcement - SUSE Security Summary Report (SUSE-SR:2005:003) http://www.net-security.org/advisory.php?id=4438 Ubuntu Security Notice - cpio vulnerability (USN-75-1) http://www.net-security.org/advisory.php?id=4437 Ubuntu Security Notice - postfix vulnerability (USN-74-1) http://www.net-security.org/advisory.php?id=4436 Ubuntu Security Notice - python2.2, python2.3 vulnerability (USN-73-1 ) http://www.net-security.org/advisory.php?id=4435 HP Security Bulletin - HP Tru64 UNIX: Java (TM) Technology Software Denial of Service (DoS) (HPSBTU01112) http://www.net-security.org/advisory.php?id=4434 Mandrakelinux Security Update Advisory - vim (MDKSA-2005:029) http://www.net-security.org/advisory.php?id=4433 Gentoo Linux Security Advisory - Newspost: Buffer overflow vulnerability (GLSA 200502-05) http://www.net-security.org/advisory.php?id=4432 Gentoo Linux Security Advisory - Squid: Multiple vulnerabilities (GLSA 200502-04:02) http://www.net-security.org/advisory.php?id=4431 Debian Security Advisory - cpio (DSA 664-1) http://www.net-security.org/advisory.php?id=4430 Cisco Security Advisory - Default SNMP Community Strings in Cisco IP/VC Products (Revision 1.0) http://www.net-security.org/advisory.php?id=4429 Ubuntu Security Notice - perl vulnerabilities (USN-72-1) http://www.net-security.org/advisory.php?id=4428 Gentoo Linux Security Advisory - enscript: Multiple vulnerabilities (GLSA 200502-03) http://www.net-security.org/advisory.php?id=4427 Gentoo Linux Security Advisory - UW IMAP: CRAM-MD5 authentication bypass (GLSA 200502-02) http://www.net-security.org/advisory.php?id=4426 Mandrakelinux Security Update Advisory - chbg (MDKSA-2005:027) http://www.net-security.org/advisory.php?id=4425 Mandrakelinux Security Update Advisory - imap (MDKSA-2005:026) http://www.net-security.org/advisory.php?id=4424 Fedora Legacy Update Advisory - Updated unarj package fixes security issue (FLSA:2272) http://www.net-security.org/advisory.php?id=4423 Fedora Legacy Update Advisory - Updated freeradius packages fix security flaws (FLSA:2187) http://www.net-security.org/advisory.php?id=4422 Fedora Legacy Update Advisory - Updated zip package fixes security issue (FLSA:2255) http://www.net-security.org/advisory.php?id=4421 Gentoo Linux Security Advisory - FireHOL: Insecure temporary file creation (GLSA 200502-01) http://www.net-security.org/advisory.php?id=4420 Debian Security Advisory - prozilla (DSA 663-1) http://www.net-security.org/advisory.php?id=4419 Debian Security Advisory - squirrelmail (DSA 662-1) http://www.net-security.org/advisory.php?id=4418 Ubuntu Security Notice - postgresql vulnerability (USN-71-1) http://www.net-security.org/advisory.php?id=4417 Mandrakelinux Security Update Advisory - clamav (MDKSA-2005:025) http://www.net-security.org/advisory.php?id=4416 Gentoo Linux Security Advisory - ClamAV: Multiple issues (GLSA 200501-46) http://www.net-security.org/advisory.php?id=4415 Novell Security Advisory - GroupWise WebAccess Error modules loading (NOVL-2005-10096251) http://www.net-security.org/advisory.php?id=4414 SquirrelMail Security Notice - SquirrelMail 1.4.4 Released http://www.net-security.org/advisory.php?id=4413 Turbolinux Security Announcement - netatalk/openssl/ruby/shadow-utils/sudo/zip (31/Jan/2005) http://www.net-security.org/advisory.php?id=4412 ---------------------------------------------------------------- [ Articles ] All articles are located at: http://www.net-security.org/articles_main.php Articles can be contributed to articles@net-security.org ---------------------------------------------------------------- A SIMPLE GUIDE TO SECURING USB MEMORY STICKS USB memory sticks can be used safely and securely if the risks are understood and proper measures are taken to mitigate them. First the primary risks associated with USB memory sticks were discussed and the most important of these are loss of media and loss of confidentiality of data. Next, Cryptainer LE, a free software program, was shown to mitigate the loss of confidentiality through the use of encryption. http://www.net-security.org/article.php?id=764 HOME USER SECURITY GUIDE I know many of you have received some nice to tech toys recently, so its time to talk about making them secure and keeping them that way. http://www.net-security.org/article.php?id=763 ---------------------------------------------------------------- [ Software ] Windows software is located at: http://net-security.org/software_main.php?cat=1 Linux software is located at: http://net-security.org/software_main.php?cat=2 Pocket PC software is located at: http://net-security.org/software_main.php?cat=3 ---------------------------------------------------------------- BASTILLE LINUX 2.1.7 (Linux) The Bastille Hardening System attempts to "harden" or "tighten" the Linux operating system. http://www.net-security.org/software.php?id=217 CRYPTAINER LE 5.0.3 (Windows) This tool enables you to secure your data and ensure absolute privacy. http://www.net-security.org/software.php?id=586 DANTE 1.1.15 (Linux) Dante is a circuit-level firewall/proxy that can be used to provide convenient and secure network connectivity to a wide range of hosts. http://www.net-security.org/software.php?id=43 DAZUKO 2.0.5 (Linux) A common interface across all platforms is needed for 3rd party file access control. With such an interface, focus could be redirected from OS hacking to solving real problems. The interface is here. http://www.net-security.org/software.php?id=434 DEVICELOCK 5.7 (Windows) DeviceLock gives network administrators control over which users can access what devices on a local computer. http://www.net-security.org/software.php?id=121 FIREHOL R5 1.226 (Linux) FireHOL is a Linux iptables firewall generator. http://www.net-security.org/software.php?id=307 IDS POLICY MANAGER 1.5.1 (Windows) IDS Policy Manager is a Visual Basic application that was written to easily manage policies for multiple Snort sensors. http://www.net-security.org/software.php?id=5 KISKIS 0.14 (Linux) KisKis (KisKis – Keep It Secret! Keep It Safe!) is an easy-to-use password manager. http://www.net-security.org/software.php?id=578 LE PUTTY 20050201 (Windows) Le Putty is a ssh suite for Windows based on the very popular Putty project. http://www.net-security.org/software.php?id=416 MAILSCANNER 4.38.9 (Linux) MailScanner is a virus scanner for e-mail designed for use on e-mail gateways. http://www.net-security.org/software.php?id=144 PASSWD_EXP 1.2.4 (Linux) Passwd_exp notifies users via email of password or account expiration. http://www.net-security.org/software.php?id=221 SERVERMASK 2.2 (Windows) Mask your Windows Web server with ServerMask for IIS server anonymization. http://www.net-security.org/software.php?id=595 SHELL INTRUSION DETECTION 0.4.1 (Linux) SID is a Shell Intrusion Detection system. The kernel part plugs into a terminal-processing subsystem and logs hashed terminal lines. http://www.net-security.org/software.php?id=473 SHOREWALL 2.2.0 (Linux) Shorewall is an iptables based firewall that can be used on a dedicated firewall system, a multi-function masquerade gateway/server or on a standalone Linux system. http://www.net-security.org/software.php?id=40 SNORT ALERT MONITOR 20050201 (Linux) SAM is a real-time Snort alert monitor. http://www.net-security.org/software.php?id=248 SSL-EXPLORER 0.1.7 (Windows) The 3SP SSL-Explorer is the world's first open-source SSL-based VPN solution of its kind. http://www.net-security.org/software.php?id=579 WINSCP 3.7.2 (Windows) WinSCP is an open source SSH file transfer protocol and secure copy client for Windows using SSH. http://www.net-security.org/software.php?id=6 ZONEALARM 5.5.062.004 (Windows) Firewalls must protect you from incoming as well as outgoing traffic, and ZoneAlarm delivers. http://www.net-security.org/software.php?id=95 ---------------------------------------------------------------- [ Webcasts ] All webcasts are located at: http://net-security.org/webcasts.php ---------------------------------------------------------------- Recognize a phish when you see one Organized by Vircom on 8 February 2005, 12:00 PM http://www.net-security.org/webcast.php?id=357 Architecting Your 802.1x-Based WLAN Deployment Organized by Funk Software on 8 February 2005, 1:00 PM http://www.net-security.org/webcast.php?id=297 Email Policy Management and Compliance: Is Your Business Safe? Organized by Sophos on 9 February 2005, 10:00 AM http://www.net-security.org/webcast.php?id=303 Mapping Security: The Corporate Security Sourcebook for Today’s Global Economy Organized by Symantec on 10 February 2005, 9:00 AM http://www.net-security.org/webcast.php?id=355 Penetration Testing with CORE IMPACT Organized by Core Security Technologies on 10 February 2005, 1:00 PM http://www.net-security.org/webcast.php?id=304 The Basics of WLAN Security Organized by Funk Software on 15 February 2005, 1:00 PM http://www.net-security.org/webcast.php?id=275 Eliminating Overlooked System and Storage Management Vulnerabilities Organized by Symantec on 17 February 2005, 9:00 AM http://www.net-security.org/webcast.php?id=356 Where Privacy Policies Fail: Addressing HIPAA Compliance with Secure Messaging Technology Organized by ZixCorp on 23 February 2005, 10:00 AM http://www.net-security.org/webcast.php?id=354 Make Regulatory Compliance Pay with Enterprise Provisioning - 7 steps to reducing the costs of ongoing compliance Organized by RSA Security on 24 February 2005, 11:00 AM http://www.net-security.org/webcast.php?id=358 ---------------------------------------------------------------- [ Conferences ] All conferences are located at: http://net-security.org/conferences.php ---------------------------------------------------------------- Winter 2005 Biometrics Summit Organized by Advanced Learning Institute - 23 February-25 February 2005 http://www.net-security.org/conference.php?id=129 Fast Software Encryption 2005 Organized by European Network of Excellence - 24 February-25 February 2005 http://www.net-security.org/conference.php?id=109 Financial Cryptography and Security (FC 05) Ninth International Conference Organized by RSA Security - 28 February-3 March 2005 http://www.net-security.org/conference.php?id=110 International Workshop on Coding and Cryptography (WCC 2005) Organized by Selmersenteret, INRIA - 14 March-18 March 2005 http://www.net-security.org/conference.php?id=111 Third IEEE International Information Assurance Workshop (IWIA'05) Organized by IEEE Computer Society Task Force on Information Assurance - 24 March-25 March 2005 http://www.net-security.org/conference.php?id=112 ECCE E-crime and Computer Evidence 2005 Organized by n-gate ltd. - 29 March-30 March 2005 http://www.net-security.org/conference.php?id=94 Indonesia Cryptology and Information Security Conference 2005 Organized by Lembaga Sandi Negara RI - 30 March-31 March 2005 http://www.net-security.org/conference.php?id=113 The 1st International Workshop on Systems and Network Security (SNS2005) Organized by University of Colorado at Colorado Springs - 4 April-8 April 2005 http://www.net-security.org/conference.php?id=114 Infosec World 2005 Organized by MIS Training Institute - 4 April-6 April 2005 http://www.net-security.org/conference.php?id=128 4th Annual PKI R&D Workshop (PKI'05) Organized by National Institute of Standards and Technology - 19 April-21 April 2005 http://www.net-security.org/conference.php?id=115 Infosecurity Europe 2005 Organized by Reed Exhibitions - 26 April-28 April 2005 http://www.net-security.org/conference.php?id=126 DallasCon 2005 Professional Cyber Defense Conference Organized by DallasCon - 2 May-5 May 2005 http://www.net-security.org/conference.php?id=127 The International Conference on Computational Science & Its Applications (ICCSA 05) Organized by Institute of High Performance Computing - 9 May-12 May 2005 http://www.net-security.org/conference.php?id=116 The 18th International FLAIRS Conference Organized by The American Association of Artificial Intelligence - 16 May-18 May 2005 http://www.net-security.org/conference.php?id=117 Second European PKI Workshop Organized by University of Salford - 30 June-1 July 2005 http://www.net-security.org/conference.php?id=118 ---------------------------------------------------------------- [ Security World ] All press releases are located at: http://www.net-security.org/press_main.php Send your press releases to press@net-security.org ---------------------------------------------------------------- Panda GateDefender 8000 Series Breaks Down The Language Barriers That Hinder Trouble-Free Network Protection http://www.net-security.org/press.php?id=2897 Vircom Tackles Phishing Frauds http://www.net-security.org/press.php?id=2896 New Virus Warnings Are Sobering http://www.net-security.org/press.php?id=2895 Top Layer's IPS - Untouchable in NSS Intrusion Prevention Test http://www.net-security.org/press.php?id=2894 MDI Incorporated Strengthens Management Team with the Addition of Michael M. Garcia as Vice President of Marketing http://www.net-security.org/press.php?id=2893 Spam Traffic Risen 40% Since November Says Email Systems http://www.net-security.org/press.php?id=2892 Aladdin Licenses USB Token Patents to RSA Security http://www.net-security.org/press.php?id=2891 3Com Finalizes Acquisition of TippingPoint Technologies, Inc. http://www.net-security.org/press.php?id=2890 Spector CNE Combines Award Winning Spector Pro Monitoring Software, With Corporate Network Installation, Configuration and Deployment Capabilities http://www.net-security.org/press.php?id=2889 Symantec Releases New Version Of Network Intrusion Detection Software Solution http://www.net-security.org/press.php?id=2888 New Technology Reduces E-Mail Threats By Rating Sender Legitimacy for Every IP Address in the World http://www.net-security.org/press.php?id=2887 Mirage Networks Names VP Of Business Development http://www.net-security.org/press.php?id=2886 ENDFORCE Joins Network Admission Control (NAC) Program http://www.net-security.org/press.php?id=2885 CipherTrust introduces TrustedSource 3.0 - The Most Precise Reputation System To Slay Zombie Networks http://www.net-security.org/press.php?id=2884 Electrolux Extends Partnership with Pointsec to Ensure Data Security Across Desktops and Mobile Devices http://www.net-security.org/press.php?id=2883 ---------------------------------------------------------------- [ Virus News ] All virus news are located at: http://www.net-security.org/viruses.php ---------------------------------------------------------------- Weekly Report on Viruses and Intruders - Sober.J, Bropia.E and Gaobot.CTX, and the Trojans Locknut.A and Downloader.ALQ http://www.net-security.org/virus_news.php?id=524 New Virus Disguised As Saddam Hussein Death Photographs http://www.net-security.org/virus_news.php?id=523 If Your Messenger Displays a Roast Chicken With a Bikini, Your PC Has Been Infected By The New Bropia.E And Gaobot.Ctx Worms http://www.net-security.org/virus_news.php?id=522 The Worm That Gurned, Email Virus Pulls A Funny Face While Secretly Installing A Backdoor Trojan http://www.net-security.org/virus_news.php?id=521 Top Ten viruses most frequently detected by Panda ActiveScan in January 2005 http://www.net-security.org/virus_news.php?id=520 ---------------------------------------------------------------- Questions, contributions, comments or ideas go to: Help Net Security staff staff@net-security.org http://net-security.org ---------------------- Unsubscribe from this weekly digest on: http://www.net-security.org/subscribe.php The archive of the newsletter in TXT and PDF format is available http://www.net-security.org/newsletter_archive.php ---------------------------------------------------------------- REGISTER FOR INFOSECURITY EUROPE 2005 ---------------------------------------------------------------- Infosecurity Europe is Europe's number one, dedicated Information Security event. Now in its 10th anniversary year, Infosecurity Europe continues to provide an unrivalled education programme, new products & services, over 250 exhibitors and over 10,000 visitors from every segment of the industry. ---------------------------------------------------------------- Get all the information at: http://www.infosec.co.uk/hns ----------------------------------------------------------------