The Security Eunoia

Blogging about Security Auditing, IdM & Access Mgmt, Web App Security etc

Entries for March, 2009

XenServer enterprise edition now available for free

Remember the earlier post about how Citrix will be offering its XenServer Enterprise hypervisor for free? Well its now available to be downloaded for free. See how Citrix attempts to smother VMware ESXi with its superior features here

Leave a Comment

Important resources you need to contain Conficker

If you are new to or would like to know more about the conficker worm that has given many administrators sleepless nights, I have compiled a few URLs to resources that will help you understand how the worm operates, how to detect it and how to contain it.

Leave a Comment

Online scammer gets a decent jail term

A college student in Nigeria has been sentenced to 19 years in prison for scamming an Australian woman out of $47,000 online by pretending to be a widowed white businessman desperately in love with her, CNN reports.

Leave a Comment

Hypervisors benchmarked - VMware not happy

A comparative analysis of the three major hypervisors VMware, Hyper-V and XenServer has been published by Virtualization Review. You can expect some vendors to be happy about the results and others, not so much.

Leave a Comment

Fighting Spam: Google and Microsoft can do better

Interesting article about BBC’s own little investigation into botnets and spamming and how easy it is to spam (the larger subject of course was cyber crime).

They basically set up a small botnet and asked the zombied PCs to spam two email accounts they had set up on Gmail and Hotmail.

Leave a Comment

IBM’s answer to the Endpoint Security problem

Remember the post about how big security vendors are moving down the food chain to consolidate their hold on the security market? Well IBM through its partnership with (a much smaller) BigFix has released a desktop security solution that is positioned to enhance endpoint security and “reduce cost”.

Leave a Comment

Telegraph CIO thanks folks at Hackersblog

I’m not sure what the real intentions are but doesn’t it sound a bit odd that the Telegraph media group CIO will thank the guys at Hackersblog for exposing their SQL injection vulnerabilities?

Leave a Comment

Will your security vendor go bankrupt?

What would you do if your security vendor went bankrupt? It is said that the security industry is recession proof but the reality is that companies are cutting costs and that means less spending on security solutions too.

In response to this changing market dynamic the big boys (IBM, Cisco, EMC etc) are repositioning their products to be attractive to smaller budgets.

Leave a Comment

Companies can learn from the Tylenol-Cyanide case

In 1982 Johnson & Johnson the company making Tylenol had to contend with a major financial and image problem when contaminated Tylenol capsules caused the deaths of 7 people. Investigators discovered that someone had filled Tylenol capsules with solid cyanide compound and replaced the original Tylenol bottles with poisoned ones in some supermarkets and drug stores.
What did the company do and what lessons do we learn from it?

Leave a Comment

Spotify hacked! - My account compromised

Oh great! Its now my account that has been compromised .. ouch! Interestingly this is the first time any service provider has sent me any such notification. This may be in part because I live in Europe where data breach notification is still being debated therefore many providers may remain silent until exposed.

This is a mail I received from Spotify this evening

Leave a Comment