2006.12.11 Daily Security Reading
by Rodney Campbell on Dec.11, 2006, under Security
Reports that malformed MIME attachements can, in some cases, be used to bypass email AV filtering.
Accurate Real-time Identification of IP Hijacking (pdf)
In this paper, we present novel and practical techniques to accurately detect IP prefix hijacking attacks in real time to facilitate timely mitigation responses.
Password Management Concerns with IE and Firefox, part one
This two-part paper presents an analysis of the security mechanisms, risks, attacks, and defenses of the two most commonly used password management systems for web browsers, found in Internet Explorer and Firefox. The article specifically addresses IE 6 and 7 and Firefox 1.5 and 2.0.
Social sites’ insecurity increasingly worrisome
Personal Web spaces on MySpace, videos on YouTube, and blogs–community sites hosting user-created content have become increasingly popular.
Malware wars: Are hackers on top?
The money made from malware is eclipsing the revenue of anti-virus vendors, a leading net security vendor claims. Raimund Genes, CTO of anti-malware at Trend Micro, cites FBI figures that IT security problems cost the economy $62bn last year against IDC estimates that the anti-malware market was worth $26bn in 2005.
Criminals ‘target tech students’
The boom in cyber crime is forcing criminals to go to great lengths to recruit skilled hackers.