Showing posts with label security. Show all posts
Showing posts with label security. Show all posts

Saturday, October 20, 2012

Drobo in the NY Times

For those of you who haven't heard about Drobo, they do produce an amazing product for smaller companies when it comes to backup, but they also produce a larger set of models that are starting to take hold in the large SMB and Enterprise spaces.    It was great to see this piece in the NY Times the other day, and is a nice, easy explanation about their product.  Take a look and see!

Tuesday, October 9, 2012

Skype Ransomworm...

Howdy folks!  Back again after being out 3.5 days last week...and it's taken 2 days to catch up!  :P

Going to start this entry's off with a doozie...the Skype Ransomworm.  I actually hadn't heard about this until a couple of friends mentioned it yesterday...and oh heck it's something to pay attention to!  Trend Micro has a good write up on their site here, but let me give you the basics.

This is a version of the Dorkbot worm that goes through the standards of stealing every single login and password you have to become a part of a botnet.  Typical Worm stuff...but it's coming out of Skype contact lists...and it's demanding money.  Some of the emails sent by this virus will contain a link that'll download ransomware onto computers, demanding $200 be sent or the computer will be shutdown/erased/etc.

In the first 24 hours, TrendMicro had blocked over 2000 instances.  While not a OMGWTFBBQ moment, it's always good to be aware. :)



Something for you to ponder (make sure your AV is up to date) while I prepare a dissertation on what I was taught up at Meraki's offices last week.  I'll be sure to share as soon as I have time. :)

 

Have a great rest of your day! :)

Wednesday, June 6, 2012

LinkedIn's broken password chain

(Thank you Steve Richardson at Digital Dynamics for this)

I know this isn't the standard cool IT stuff that you should know & care about...but it's something worth noting.  Looks like according to LinkedIn's own page and twitter feed, that they were hacked this week, losing over 600,000 encrypted passwords....of which maybe a third were cracked.

So if you're on LinkedIn, change your password.  The spam is starting to erupt there already.

In the meantime, I'm running a contest.  If you sign up for a free webex 14 day trial, I'll put you in a raffle to win a $5 starbucks gift card (or a $5 gift card somewhere).  But you need to contact me for the link and I'll put your name in the raffle.

Click here to contact me. :)

Thursday, April 26, 2012

Swing Away with Meraki!

Today is a Meraki focus day here at PC Mall (Dragontech), and we're going to be reaching out to each and every one of our clients today about Meraki's products.

Wireless Internet

Security Appliances

Switches

And my favorite...the Free Systems Manager software.  (Want to see what this looks like?  Hit the Contact button and ask me for read access to my network...I'm happy to share! :) )

You can't go wrong with these folks...nothing is perfect, but they're willing to fight and fight and fight to show people how good their products are...and so am I.

The Meraki Story is a great one...and if you have any questions, give me a call!  (541 - 351 - 8845)

Monday, September 12, 2011

Email security...

I'd like to thank my friends over at EM Link International for pointing this out over on their Facebook page...

Missing dots from email addresses opens 20GB data leak





Over 100,000 people are part of the Sophos community on Facebook. Why not join us on Facebook to find out about the latest security threats.



by Mark Stockley on September 12, 2011 | Comments (6)



Filed Under: Data loss, Featured, Privacy


Security researchers have captured 120,000 emails intended for Fortune 500 companies by exploiting a basic typo. The emails included trade secrets, business invoices, personal information about employees, network diagrams and passwords.

Researchers Peter Kim and Garrett Gee did this by buying 30 internet domains they thought people would send emails to by accident (a practice known as typosquatting).

The domain names they chose were all identical to subdomains used by Fortune 500 companies save for a missing dot.

Having purchased the domains they simply sat back and watched as users mistakenly sent them over 120,000 emails in six months.

Kim and Garrett have not identified their targets but have revealed that they were chosen from a list of 151 Fortune 500 companies they regarded as vulnerable to their variation of typosquatting. The list is jam-packed with household names like Dell, Microsoft, Halliburton, PepsiCo and Nike.

The emails they collected included some worryingly sensitive corporate information, including:

  • Passwords for an IT firm's external Cisco routers

  • Precise details of the contents of a large oil company's oil tankers

  • VPN details and passwords for a system managing road tollways


The researchers also warn of how easy it would have been to turn their passive typosquatting into an even more dangerous man-in-the-middle attack. Such an attack would have allowed them to capture entire email conversations rather than just individual stray emails.

To perform a man-in-the-middle attack an attacker would simply forward copies of any emails they receive to the addresses they were supposed to go to in the first place. The forwarded emails would be modified to contain a bogus return addresses owned by the attacker.

By forwarding and modifying emails in this way the attacker establishes themselves as a silent rely between all the individuals in the conversation.

For more information go here...