The Security Eunoia

Blogging about Security Auditing, IdM & Access Mgmt, Web App Security etc

Entries for February, 2009

Clueless tech support

* Customer: “The ethernet card you supplied doesn’t work under Linux.”
* Tech Support: “Have you installed the DOS drivers?”
* Customer: “I’m using Linux, so the DOS drivers won’t work.”
* Tech Support: “Why not?”

Leave a Comment

Green doesn’t have to be expensive

Citrix this week made its XenServer Enterprise hypervisor free allowing small businesses to virtualize for free - virtually. Way to go if you are on a shoestring budget.

Features packed into the 64-bit XenServer Enterprise edition include an enterprise management software called XenCenter, VM live migration technology, resource sharing and the enterprise storage management.

Leave a Comment

Card readers for online banking - Some risks

Researchers from the University of Cambridge have published a paper which discusses problems with the introduction of new hand held card readers optimized for online banking in the UK. Here is a part of the abstract:

Leave a Comment

$1BILLION mistake by a bank - literally

A woman from Gothenburg, Sweden logs into her internet bank to pay some bills only to find more than $1 BILLION (yes you read right) in her account - a local news website reports.

Leave a Comment

UK Cabinet Minister’s account compromised

UK Justice Secretary Jack Straw’s hotmail account was compromised and hundreds of mails sent to his contacts in a bold attempt to get unsuspecting recipients to send money to the fraudsters, BBC reports.

This is how the scheme works

Leave a Comment

INSECURE magazine (March ‘09) released

For those who don’t already know, the March 2009 edition of Insecure magazine has been released.
I found these articles interesting:

Building a bootable BackTrack 4 thumb drive with persistent changes and Nessus
A framework for quantitative privacy measurement
Why fail? Secure your virtual assets

As you might have guessed, these are the only articles I have read.

Comments (1)

F-Secure SQL-injected and Cross-Site scripted

Looks like F-Secure made it to the “sql-injected” and “xsscripted” list.

Leave a Comment