<?xml version="1.0" encoding="iso-8859-1"?>
<rss version="2.0">
<channel>
	<title>softsecurity.com All in one</title>
	<link>http://www.softsecurity.com</link>
	<description>All in one</description>
	<language />
	<copyright />
	<pubDate>Tue, 21 May 2013 13:55:41 GMT</pubDate>
	<lastBuildDate>Tue, 21 May 2013 13:55:41 GMT</lastBuildDate>
	<category />
	<image />
	
	<item>
		<title>Anti-Keylogger 10.2.3 and PrivacyKeyboard 10.2.3 have been released!</title>
		<link>http://softsecurity.com/news_D10_company.html</link>
		<description>Anti-Keylogger 10.2.3 and PrivacyKeyboard 10.2.3 have been released. The algorithm for screenshot-making detection and blocking has been changed.</description>
		<pubDate>Fri, 06 Jan 2012 11:02:00 GMT</pubDate>
	</item>
	<item>
		<title>Updated versions of Anti-Keylogger and PrivacyKeyboard released!</title>
		<link>http://softsecurity.com/news_D9_company.html</link>
		<description>Anti-Keylogger 9.2.1 and PrivacyKeyboard 9.2.1 have been released. Support of Internet Explorer 8 has been added.</description>
		<pubDate>Thu, 23 Apr 2009 09:25:00 GMT</pubDate>
	</item>
	<item>
		<title>New versions of Anti-Keylogger and PrivacyKeyboard released!</title>
		<link>http://softsecurity.com/news/company/anti-keylogger-and-privacykeyboard-91-released.html</link>
		<description>Anti-Keylogger 9.1 and PrivacyKeyboard 9.1 have been released. Updated versions include most recent bugfixes and improvements.</description>
		<pubDate>Fri, 26 Dec 2008 02:51:00 GMT</pubDate>
	</item>
	<item>
		<title>Anti-Keylogger 9.0 and PrivacyKeyboard 9.0 have been released!</title>
		<link>http://softsecurity.com/news/company/anti_keylogger_9_and_privacykeyboard_9_have_been_released.html</link>
		<description>Official Windows Vista compatible versions of Anti-Keylogger and PrivacyKeyboard have been released today. These products are available for download here.</description>
		<pubDate>Tue, 25 Nov 2008 09:00:00 GMT</pubDate>
	</item>
	<item>
		<title>New versions of Anti-Keylogger and PrivacyKeyboard released!</title>
		<link>http://softsecurity.com/news_D6_company.html</link>
		<description>Anti-Keylogger 8.2 and PrivacyKeyboard 8.2 have been released. Updated versions include most recent bugfixes and improvements.</description>
		<pubDate>Mon, 22 Sep 2008 03:10:00 GMT</pubDate>
	</item>
	<item>
		<title>PC Activity Monitor 6.5.1 released!</title>
		<link>http://softsecurity.com/news_D5_company.html</link>
		<description>New versions of PC Activity Monitor, PC Activity Monitor Net and PC Activity Monitor Pro have been released.</description>
		<pubDate>Mon, 22 Sep 2008 03:09:00 GMT</pubDate>
	</item>
	<item>
		<title>PC Acme Lite and Standard 7.7.1 released</title>
		<link>http://softsecurity.com/news_D4_company.html</link>
		<description>PC Acme Lite 7.7.1 and PC Acme Standard 7.7.1 have been released. Some minor bugs in log-viewer were fixed.</description>
		<pubDate>Fri, 19 Sep 2008 08:40:00 GMT</pubDate>
	</item>
	<item>
		<title>New version of PC Acme Professional is released</title>
		<link>http://softsecurity.com/news_D3_company.html</link>
		<description>PC Acme Professional 7.6.4 has been released today. The changes are made to monitoring agent.</description>
		<pubDate>Thu, 24 Apr 2008 05:26:00 GMT</pubDate>
	</item>
	<item>
		<title>New versions of PC Acme Lite and Standard</title>
		<link>http://softsecurity.com/news_D2_company.html</link>
		<description>PC Acme Lite 7.7 and PC Acme Standard 7.7 have been released.</description>
		<pubDate>Mon, 04 Feb 2008 08:43:00 GMT</pubDate>
	</item>
	<item>
		<title>New versions of PC Acme 6 products</title>
		<link>http://softsecurity.com/news_D1_company.html</link>
		<description>PC Acme 6.5, PC Acme Net 6.5 and PC Acme Pro 6.5 have been released.</description>
		<pubDate>Thu, 27 Dec 2007 08:33:00 GMT</pubDate>
	</item>
	<item>
		<title>User friendly removable media data recovery software imparts reclamation of deleted files.</title>
		<link>http://softsecurity.com/news_D18356_high.html</link>
		<description>User friendly removable media data recovery software imparts reclamation of deleted files.
Software Company offers excellent flash card restoration software for helping office and home users in effectively recovering all type of erased documents in very less time and software does not demand any special hardware device.
Windows, data, restoration, software, recover, misplaced, formatted, erased, documents, pen, drive, computer, hard, disk, memory, stick, digital, camera, USB, drive.
Exceptionally well removable media data recovery software regenerates mistakenly erased official documents, images, digital photo album, database files, wallpaper collection, favorite videos, movies, mp3 songs from Windows operating system including Windows 2007/XP/VISTA/98, Windows Server (2008, 2003, and 2000), etc.
Excellent windows reclamation freeware software is capable of recovering entire system’s data in all type of data loss situations like manual deletion, power failure, device crash or format, System sabotage or virus attack, etc in very less amount of time and with great ease and accuracy.
Best quality and highly interactive windows data recovery software application imparts quick and effective restoration of all format of corrupted or erased multimedia files including AVI, MPEG, JPEG, RiFF, MIDI, PNG, 3gp, TIFF, GIF and many more file types through easy to use graphical user interface.
Features:
•	Windows recovery software can recover lost and erased data from logically corrupted removable media drive.
•	Software can be easily operated by novice users also as it does not require any technical expertise.
•	It can be used to restore all formats of data including audio, video, images, graphics, text files and folders.
•	Data recovery tool reclaims lost data very quickly even before crashed drive is fixed and repaired.
•	SIM card data recovery software helps in retrieving deleted contact numbers and important text messages.
•	Best Recovery software can be easily downloaded from company’s website in free demo version. 
About author:
Pro data doctor is a software development company which is well known for providing low cost, user friendly and quality based solution to its customers. Company delivers software like Database Conversion Software, Data Recovery tool, Mobile Text Messaging Utility, Forensics and Monitoring application, Password Recovery tool and many more.
Contact Name –windows recovery
Email –tracie@datadoctor.biz
Website – http://www.datadoctor.biz

</description>
		<pubDate>Wed, 09 Nov 2011 02:35:17 GMT</pubDate>
	</item>
	<item>
		<title>Spamvertised Post Office Express Mail (USPS) emails lead to malware</title>
		<link>http://softsecurity.com/news/highlights/spamvertised-post-office-express-mail-usps-emails-lead-to-malware.html</link>
		<description> A currently spamvertised malware campaign is brand-jacking the USPS in an attempt to trick users into downloading and executing a malicious file.&lt;br clear=&quot;both&quot; style=&quot;clear: both;&quot;/&gt;
&lt;br clear=&quot;both&quot; style=&quot;clear: both;&quot;/&gt;
&lt;a href=&quot;http://ads.pheedo.com/click.phdo?s=ac95b5d0bc35e893f7db741eb262cf2e&amp;p=1&quot;&gt;&lt;img alt=&quot;&quot; style=&quot;border: 0;&quot; border=&quot;0&quot; src=&quot;http://ads.pheedo.com/img.phdo?s=ac95b5d0bc35e893f7db741eb262cf2e&amp;p=1&quot;/&gt;&lt;/a&gt;
&lt;img alt=&quot;&quot; height=&quot;0&quot; width=&quot;0&quot; border=&quot;0&quot; style=&quot;display:none&quot; src=&quot;http://segment-pixel.invitemedia.com/pixel?code=TechBiz
&amp;partnerID=167&amp;key=segment&quot;/&gt;&lt;img alt=&quot;&quot; height=&quot;0&quot; width=&quot;0&quot; border=&quot;0&quot; style=&quot;display:none&quot; src=&quot;http://pixel.quantserve.com/pixel/p-8bUhLiluj0fAw.gif?labels=pub.29580.rss.TechBiz
.9308,cat.TechBiz
.rss&quot;/&gt;</description>
		<pubDate>Fri, 25 Mar 2011 11:23:17 GMT</pubDate>
	</item>
	<item>
		<title>ANSI And Shared Assessments Launch Study On Financial Impact Of Breached Patient Data</title>
		<link>http://softsecurity.com/news/highlights/ansi-and-shared-assessments-launch-study-on-financial-impact-of-breached-patient-data.html</link>
		<description>Study could help healthcare companies justify additional security spending</description>
		<pubDate>Fri, 25 Mar 2011 07:44:00 GMT</pubDate>
	</item>
	<item>
		<title> IPv6 reputation is doable</title>
		<link>http://softsecurity.com/news/highlights/ipv6-reputation-is-doable.html</link>
		<description>The Internet has grown beyond what anybody involved in its early development could have imagined. Who would have thought that a network developed in the 1970s for government and education entities to ...</description>
		<pubDate>Fri, 25 Mar 2011 07:36:54 GMT</pubDate>
	</item>
	<item>
		<title> Rustock&amp;apos;s demise linked to Harnig botnet switch off</title>
		<link>http://softsecurity.com/news/highlights/rustockaposs-demise-linked-to-harnig-botnet-switch-off.html</link>
		<description>Late last week, the Rustock botnet was downed by Microsoft and the US Marshals Service after they received permission from the US District Court for the Western District of Washington to execute seizu...</description>
		<pubDate>Fri, 25 Mar 2011 07:15:06 GMT</pubDate>
	</item>
	<item>
		<title> WoW phishing email threatens with account termination</title>
		<link>http://softsecurity.com/news/highlights/wow-phishing-email-threatens-with-account-termination.html</link>
		<description>World of Warcraft players are often targeted by phishers whose goal is to get the login credentials to as many accounts possible and bleed them dry.
 
 A recently detected one starts in the usual way ...</description>
		<pubDate>Fri, 25 Mar 2011 04:09:36 GMT</pubDate>
	</item>
	<item>
		<title> Cyber attacks on US federal networks on the rise</title>
		<link>http://softsecurity.com/news/highlights/cyber-attacks-on-us-federal-networks-on-the-rise.html</link>
		<description>The number of cyber attacks against federal government systems and networks has increased nearly 40 percent, says in the annual report on federal cybersecurity efforts compiled by the Office of Manage...</description>
		<pubDate>Fri, 25 Mar 2011 03:15:24 GMT</pubDate>
	</item>
	<item>
		<title> Randomization of code and binaries for evading AV solutions</title>
		<link>http://softsecurity.com/news/highlights/randomization-of-code-and-binaries-for-evading-av-solutions.html</link>
		<description>An interesting detection evasion technique by a site that serves fake AV has recently been spotted by a Zscaler researcher.
 
 The site&amp;apos;s source code has been randomized so that each time a user visit...</description>
		<pubDate>Fri, 25 Mar 2011 02:36:03 GMT</pubDate>
	</item>
	<item>
		<title> How to wipe personal information off your mobile phone</title>
		<link>http://softsecurity.com/news/highlights/how-to-wipe-personal-information-off-your-mobile-phone.html</link>
		<description>People are unsuspectingly selling their personal information to complete strangers as a new report from CPP finds half (54%) of second hand mobile phones contain extensive personal data.
 
 
 CPP&amp;apos;s ti...</description>
		<pubDate>Fri, 25 Mar 2011 00:15:09 GMT</pubDate>
	</item>
	<item>
		<title> Plagiarism detection tool</title>
		<link>http://softsecurity.com/news/highlights/plagiarism-detection-tool.html</link>
		<description>SAFE Corporation announced the release of DocMatch, a new tool for comparing all kinds of documents to find plagiarism.
 
 DocMatch compares thousands of document files in multiple directories and sub...</description>
		<pubDate>Thu, 24 Mar 2011 23:33:42 GMT</pubDate>
	</item>
	<item>
		<title> Infosecurity Europe 2011: New attack vectors change the landscape</title>
		<link>http://softsecurity.com/news/highlights/infosecurity-europe-2011-new-attack-vectors-change-the-landscape.html</link>
		<description>The cybercrime landscape is changing with the overall cost to the UK economy estimated at &amp;amp;#163;27bn per year, by a recent report by the Office of Cyber Security &amp;amp; Information Assurance. The report re...</description>
		<pubDate>Thu, 24 Mar 2011 23:03:30 GMT</pubDate>
	</item>
	<item>
		<title>Feature: How the Comodo certificate fraud calls CA trust into question</title>
		<link>http://softsecurity.com/news/highlights/feature-how-the-comodo-certificate-fraud-calls-ca-trust-into-question.html</link>
		<description>&lt;a href=&quot;http://arstechnica.com/security/news/2011/03/how-the-comodo-certificate-fraud-calls-ca-trust-into-questionhow-the-comodo-certificate-fraud-calls-ca-trust-into-question.ars?utm_source=rss&amp;amp;utm_medium=rss&amp;amp;utm_campaign=rss&quot;&gt;
  &lt;img vspace=&quot;4&quot; hspace=&quot;4&quot; border=&quot;0&quot; align=&quot;right&quot; width=&quot;230&quot; height=&quot;129&quot; src=&quot;http://static.arstechnica.net/assets/2011/03/man-in-the-middle-cans-list-thumb-230x130-20625-f.jpg&quot; /&gt;
  &lt;/a&gt;

		        
    Recently at Ars we've had a &lt;a href=&quot;http://arstechnica.com/web/news/2011/03/https-is-more-secure-so-why-isnt-the-web-using-it.ars&quot;&gt;couple&lt;/a&gt; of &lt;a href=&quot;http://arstechnica.com/business/news/2011/03/https-is-great-here-is-why-everyone-needs-to-use-it-so-ars-can-too.ars&quot;&gt;discussions&lt;/a&gt; about the use of HTTPS&amp;#8212;that is, HTTP secured using SSL or TLS&amp;#8212;for every website, as a way of keeping sensitive information out of reach of eavesdroppers and ensuring privacy. That's definitely a good thing, but it has a flaw: it requires HTTPS to actually be effective at protecting privacy. Recent goings on at Certificate Authority (CA) Comodo provide compelling evidence that such trust is misplaced.

There are two interrelated aspects to SSL. The first is encryption&amp;#8212;ensuring that nobody can understand the communication between a client and a server&amp;#8212;and the second is authentication&amp;#8212;proving to the client that it is actually communicating with the server it thinks it's communicating with. When a client first connects to an HTTPS server, both parties have a bit of a problem. They would like to encrypt the information they send each other, but to do this, they both need to be using the same encryption key. Obviously, they cannot just send the key to each other, because anyone listening in on the connection will be able to watch them do so, and use the key to decrypt the communication themselves. Fortunately, &lt;a href=&quot;http://en.wikipedia.org/wiki/Diffie%E2%80%93Hellman_key_exchange&quot;&gt;clever mathematics&lt;/a&gt; allows both parties to share an encryption key without it being disclosed to any eavesdroppers.    
          &lt;a href=&quot;http://arstechnica.com/security/news/2011/03/how-the-comodo-certificate-fraud-calls-ca-trust-into-questionhow-the-comodo-certificate-fraud-calls-ca-trust-into-question.ars?utm_source=rss&amp;amp;utm_medium=rss&amp;amp;utm_campaign=rss&quot; title=&quot;Click here to continue reading this article&quot;&gt;&lt;img src=&quot;http://static.arstechnica.com/mt-static/plugins/ArsTheme/images/read-more.jpg&quot; alt=&quot;Read the rest of this article...&quot;&gt;&lt;/a&gt;      
        
    


      &lt;a href=&quot;http://arstechnica.com/security/news/2011/03/how-the-comodo-certificate-fraud-calls-ca-trust-into-questionhow-the-comodo-certificate-fraud-calls-ca-trust-into-question.ars?utm_source=rss&amp;amp;utm_medium=rss&amp;amp;utm_campaign=rss&amp;amp;comments=1#comments-bar&quot;&gt;Read the comments on this post&lt;/a&gt;
&lt;a href=&quot;http://feedads.g.doubleclick.net/~at/vNuPQr38XnhEzdPzEHuqczP9dT4/0/da&quot;&gt;&lt;img src=&quot;http://feedads.g.doubleclick.net/~at/vNuPQr38XnhEzdPzEHuqczP9dT4/0/di&quot; border=&quot;0&quot; ismap=&quot;true&quot;&gt;&lt;/img&gt;&lt;/a&gt;
&lt;a href=&quot;http://feedads.g.doubleclick.net/~at/vNuPQr38XnhEzdPzEHuqczP9dT4/1/da&quot;&gt;&lt;img src=&quot;http://feedads.g.doubleclick.net/~at/vNuPQr38XnhEzdPzEHuqczP9dT4/1/di&quot; border=&quot;0&quot; ismap=&quot;true&quot;&gt;&lt;/img&gt;&lt;/a&gt;&lt;img src=&quot;http://feeds.feedburner.com/~r/arstechnica/security/~4/cvpijjRrfx8&quot; height=&quot;1&quot; width=&quot;1&quot;/&gt;</description>
		<pubDate>Thu, 24 Mar 2011 18:44:00 GMT</pubDate>
	</item>
	<item>
		<title>Social Engineering 'Capture The Flag' Contest Returns To DefCon</title>
		<link>http://softsecurity.com/news/highlights/social-engineering-capture-the-flag-contest-returns-to-defcon.html</link>
		<description>Changes to this year's contest include some volunteer, high-profile target companies</description>
		<pubDate>Thu, 24 Mar 2011 18:29:00 GMT</pubDate>
	</item>
	<item>
		<title>Zombie PC Prevention Bill to make security software mandatory</title>
		<link>http://softsecurity.com/news/highlights/zombie-pc-prevention-bill-to-make-security-software-mandatory.html</link>
		<description> South Korea&amp;#8217;s recently proposed Zombie PC Prevention Bill, aims to fight botnets with common sense - by making security software mandatory on users&amp;#8217; PCs.&lt;br clear=&quot;both&quot; style=&quot;clear: both;&quot;/&gt;
&lt;br clear=&quot;both&quot; style=&quot;clear: both;&quot;/&gt;
&lt;a href=&quot;http://ads.pheedo.com/click.phdo?s=4e0e4b9fac86738ef56c87cdd9c6bb52&amp;p=1&quot;&gt;&lt;img alt=&quot;&quot; style=&quot;border: 0;&quot; border=&quot;0&quot; src=&quot;http://ads.pheedo.com/img.phdo?s=4e0e4b9fac86738ef56c87cdd9c6bb52&amp;p=1&quot;/&gt;&lt;/a&gt;
&lt;img alt=&quot;&quot; height=&quot;0&quot; width=&quot;0&quot; border=&quot;0&quot; style=&quot;display:none&quot; src=&quot;http://segment-pixel.invitemedia.com/pixel?code=TechBiz
&amp;partnerID=167&amp;key=segment&quot;/&gt;&lt;img alt=&quot;&quot; height=&quot;0&quot; width=&quot;0&quot; border=&quot;0&quot; style=&quot;display:none&quot; src=&quot;http://pixel.quantserve.com/pixel/p-8bUhLiluj0fAw.gif?labels=pub.29580.rss.TechBiz
.9308,cat.TechBiz
.rss&quot;/&gt;</description>
		<pubDate>Thu, 24 Mar 2011 10:53:18 GMT</pubDate>
	</item>
	<item>
		<title> TripAdvisor member database breached, part of it stolen</title>
		<link>http://softsecurity.com/news/highlights/tripadvisor-member-database-breached-part-of-it-stolen.html</link>
		<description>Just days after Play.com notified its customers of a breach that resulted in their email addresses being compromised and some of its users being targeted with malicious emails, it&amp;apos;s the turn of anothe...</description>
		<pubDate>Thu, 24 Mar 2011 10:52:23 GMT</pubDate>
	</item>
	<item>
		<title> Serious cyber attack targets EU institutions on eve of summit</title>
		<link>http://softsecurity.com/news/highlights/serious-cyber-attack-targets-eu-institutions-on-eve-of-summit.html</link>
		<description>Today is the first day of the first EU summit that takes place under the Hungarian presidency, and European leaders have gathered in Brussels to discuss matters such as the rising European debt crisis...</description>
		<pubDate>Thu, 24 Mar 2011 10:22:38 GMT</pubDate>
	</item>
	<item>
		<title> Twitter tests XSS attack prevention on its mobile website</title>
		<link>http://softsecurity.com/news/highlights/twitter-tests-xss-attack-prevention-on-its-mobile-website.html</link>
		<description>Twitter has been testing and has now implemented Content Security Policy - a new standard developed by Mozilla to block cross site scripting (XSS) attacks - on its mobile website.
 
 How does CSP work...</description>
		<pubDate>Thu, 24 Mar 2011 08:21:42 GMT</pubDate>
	</item>
	<item>
		<title> Japan leakage analysis emails with malicious XLS attachments</title>
		<link>http://softsecurity.com/news/highlights/japan-leakage-analysis-emails-with-malicious-xls-attachments.html</link>
		<description>Japan&amp;apos;s seemingly unending series of misfortunes has so far generated a vast variety of online scams. The latest one includes spam emails containing Excel attachments rigged with Flash exploits.
 
 
 ...</description>
		<pubDate>Thu, 24 Mar 2011 07:54:46 GMT</pubDate>
	</item>
	<item>
		<title> Find and eliminate credit card data</title>
		<link>http://softsecurity.com/news/highlights/find-and-eliminate-credit-card-data.html</link>
		<description>Nearly two-thirds of merchant computer systems store unencrypted payment card data in violation of the PCI DSS, according to scans of more than 475 merchant networks of all sizes by SecurityMetrics. T...</description>
		<pubDate>Thu, 24 Mar 2011 07:51:29 GMT</pubDate>
	</item>
	<item>
		<title> Password cracking in the cloud</title>
		<link>http://softsecurity.com/news/highlights/password-cracking-in-the-cloud.html</link>
		<description>Passware Kit Forensic is commercial software that enables users to harness the power of cloud computing to accelerate password recovery. It allows the use of Amazon Elastic Compute Cloud for accelerat...</description>
		<pubDate>Thu, 24 Mar 2011 07:42:30 GMT</pubDate>
	</item>
	<item>
		<title> Linux Kernel ROSE multiple vulnerabilities</title>
		<link>http://softsecurity.com/news/highlights/linux-kernel-rose-multiple-vulnerabilities.html</link>
		<description>Some vulnerabilities have been reported in the Linux Kernel.
 
 These can be exploited by malicious, local users to cause a Denial of Service and potentially gain escalated privileges, according to Se...</description>
		<pubDate>Thu, 24 Mar 2011 00:33:03 GMT</pubDate>
	</item>
	<item>
		<title> Things to watch out for during tax season</title>
		<link>http://softsecurity.com/news/highlights/things-to-watch-out-for-during-tax-season.html</link>
		<description>Most people look forward to their refunds to pay for a nice vacation or pay off some debt. But when filing your taxes online, there are a number of ways you can lose that refund to the bad guys who ar...</description>
		<pubDate>Thu, 24 Mar 2011 00:09:36 GMT</pubDate>
	</item>
	<item>
		<title> Initiative measures the harm of breached patient information</title>
		<link>http://softsecurity.com/news/highlights/initiative-measures-the-harm-of-breached-patient-information.html</link>
		<description>Healthcare organizations are struggling with two key concerns: how to protect patient information and how to better understand the financial harm caused when protected health information (PHI) is lost...</description>
		<pubDate>Wed, 23 Mar 2011 23:15:18 GMT</pubDate>
	</item>
	<item>
		<title> Hitachi ID Management Suite 7.1.0 released</title>
		<link>http://softsecurity.com/news/highlights/hitachi-id-management-suite-7.1.0-released.html</link>
		<description>Hitachi ID Systems released version 7.1.0 of its ID Management Suite. The new release includes updates to Password Manager and a rebranded Privileged Access Manager, both with new capabilities.
 
 
 P...</description>
		<pubDate>Wed, 23 Mar 2011 23:03:09 GMT</pubDate>
	</item>
	<item>
		<title> Rogue SSL certificates issued for Google, Yahoo, Skype</title>
		<link>http://softsecurity.com/news/highlights/rogue-ssl-certificates-issued-for-google-yahoo-skype.html</link>
		<description>A Comodo affiliate Registration Authority (RA) has been compromised and the incident resulted in the issue of nine rogue SSL certificates for seven popular domains, reported Comodo today.
 
 The incid...</description>
		<pubDate>Wed, 23 Mar 2011 17:12:24 GMT</pubDate>
	</item>
	<item>
		<title>Microsoft warns: Fraudulent digital certificates issued for high-value websites</title>
		<link>http://softsecurity.com/news/highlights/microsoft-warns-fraudulent-digital-certificates-issued-for-high-value-websites.html</link>
		<description> According to the Microsoft advisory, the fraudulent Web certificates affect the Microsoft Live service, Google&amp;#8217;s mail system, Yahoo and Skype log-ins.&lt;br clear=&quot;both&quot; style=&quot;clear: both;&quot;/&gt;
&lt;br clear=&quot;both&quot; style=&quot;clear: both;&quot;/&gt;
&lt;a href=&quot;http://ads.pheedo.com/click.phdo?s=a07ed86938eef7f10edaaa602ad41c85&amp;p=1&quot;&gt;&lt;img alt=&quot;&quot; style=&quot;border: 0;&quot; border=&quot;0&quot; src=&quot;http://ads.pheedo.com/img.phdo?s=a07ed86938eef7f10edaaa602ad41c85&amp;p=1&quot;/&gt;&lt;/a&gt;
&lt;img alt=&quot;&quot; height=&quot;0&quot; width=&quot;0&quot; border=&quot;0&quot; style=&quot;display:none&quot; src=&quot;http://segment-pixel.invitemedia.com/pixel?code=TechBiz
&amp;partnerID=167&amp;key=segment&quot;/&gt;&lt;img alt=&quot;&quot; height=&quot;0&quot; width=&quot;0&quot; border=&quot;0&quot; style=&quot;display:none&quot; src=&quot;http://pixel.quantserve.com/pixel/p-8bUhLiluj0fAw.gif?labels=pub.29580.rss.TechBiz
.9308,cat.TechBiz
.rss&quot;/&gt;</description>
		<pubDate>Wed, 23 Mar 2011 12:28:01 GMT</pubDate>
	</item>
	<item>
		<title> Play.com customers receiving malicious emails, Silverpop blamed</title>
		<link>http://softsecurity.com/news/highlights/play.com-customers-receiving-malicious-emails-silverpop-blamed.html</link>
		<description>The notification and the warning that Play.com sent out to its customers following a breach of systems belonging to the company that handles part of its marketing communications seems to have been a r...</description>
		<pubDate>Wed, 23 Mar 2011 11:52:11 GMT</pubDate>
	</item>
	<item>
		<title> Second hand phones contain extensive personal data</title>
		<link>http://softsecurity.com/news/highlights/second-hand-phones-contain-extensive-personal-data.html</link>
		<description>People are unsuspectingly selling their personal information to complete strangers as a new report from CPP finds half (54%) of second hand mobile phones contain extensive personal data.
 
 
 Second h...</description>
		<pubDate>Wed, 23 Mar 2011 11:07:42 GMT</pubDate>
	</item>
	<item>
		<title> McAfee to acquire Sentrigo</title>
		<link>http://softsecurity.com/news/highlights/mcafee-to-acquire-sentrigo.html</link>
		<description>McAfee announced its intention to acquire Sentrigo, a provider of database security and compliance, assessment, monitoring and intrusion prevention solutions.
 
 The proposed transaction will bring to...</description>
		<pubDate>Wed, 23 Mar 2011 09:41:35 GMT</pubDate>
	</item>
	<item>
		<title>Researchers release details on 34 SCADA vulnerabilities</title>
		<link>http://softsecurity.com/news/highlights/researchers-release-details-on-34-scada-vulnerabilities.html</link>
		<description> Security researcher Luigi Auriemma has released proof of concept code for 34 vulnerabilities affecting popular SCADA systems.&lt;br clear=&quot;both&quot; style=&quot;clear: both;&quot;/&gt;
&lt;br clear=&quot;both&quot; style=&quot;clear: both;&quot;/&gt;
&lt;a href=&quot;http://ads.pheedo.com/click.phdo?s=b23990debe162fbc1834cccc0a1af88f&amp;p=1&quot;&gt;&lt;img alt=&quot;&quot; style=&quot;border: 0;&quot; border=&quot;0&quot; src=&quot;http://ads.pheedo.com/img.phdo?s=b23990debe162fbc1834cccc0a1af88f&amp;p=1&quot;/&gt;&lt;/a&gt;
&lt;img alt=&quot;&quot; height=&quot;0&quot; width=&quot;0&quot; border=&quot;0&quot; style=&quot;display:none&quot; src=&quot;http://segment-pixel.invitemedia.com/pixel?code=TechBiz
&amp;partnerID=167&amp;key=segment&quot;/&gt;&lt;img alt=&quot;&quot; height=&quot;0&quot; width=&quot;0&quot; border=&quot;0&quot; style=&quot;display:none&quot; src=&quot;http://pixel.quantserve.com/pixel/p-8bUhLiluj0fAw.gif?labels=pub.29580.rss.TechBiz
.9308,cat.TechBiz
.rss&quot;/&gt;</description>
		<pubDate>Wed, 23 Mar 2011 09:34:50 GMT</pubDate>
	</item>
	<item>
		<title>Infernal affairs: NZ govt sites attacked</title>
		<link>http://softsecurity.com/news_D18273_focus.html</link>
		<description>Anonymous, or merely anonymous?
Online hacktivists Anonymous have been accused of bringing down the New Zealand Government?s Department of Internal Affairs last week ? or perhaps they haven?t.?</description>
		<pubDate>Sun, 27 Mar 2011 16:53:30 GMT</pubDate>
	</item>
	<item>
		<title>Friday Squid Blogging: Squid Fabric Designs</title>
		<link>http://softsecurity.com/news/blog-posts/friday-squid-blogging-squid-fabric-designs.html</link>
		<description>Some of &lt;a href=&quot;http://blog.spoonflower.com/2011/03/squidtastic-fabric-check-out-the-winner-of-our-squid-themed-fabric-design-contest.html&quot;&gt;these&lt;/a&gt; are actually nice.
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=phWNFQ_jqsM:P4VsaCsk3AE:2mJPEYqXBVI&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=2mJPEYqXBVI&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=phWNFQ_jqsM:P4VsaCsk3AE:7Q72WNTAKBA&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=7Q72WNTAKBA&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=phWNFQ_jqsM:P4VsaCsk3AE:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=dnMXMwOfBR0&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt;
</description>
		<pubDate>Fri, 25 Mar 2011 16:15:15 GMT</pubDate>
	</item>
	<item>
		<title>Authenticating the Authenticators</title>
		<link>http://softsecurity.com/news/blog-posts/authenticating-the-authenticators.html</link>
		<description>&lt;a href=&quot;http://www.slate.com/id/2286735&quot;&gt;This&lt;/a&gt; is an interesting read:

It was a question that changed his life, and changed mine, and may have changed -- even saved -- all of ours by calling attention to flaws in our nuclear command and control system at the height of the Cold War. It was a question that makes Maj. Hering an unsung hero of the nuclear age. A question that came from inside the system, a question that has no good answer: How can any missile crewman know that an order to twist his launch key in its slot and send a thermonuclear missile rocketing out of its silo­a nuke capable of killing millions of civilians­is lawful, legitimate, and comes from a sane president?

Any chain of authentication ultimately rests on trust; there's no way around it.
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=ge6a6uBQ1K8:nX3ZagHWn8w:2mJPEYqXBVI&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=2mJPEYqXBVI&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=ge6a6uBQ1K8:nX3ZagHWn8w:7Q72WNTAKBA&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=7Q72WNTAKBA&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=ge6a6uBQ1K8:nX3ZagHWn8w:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=dnMXMwOfBR0&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt;
</description>
		<pubDate>Fri, 25 Mar 2011 12:22:47 GMT</pubDate>
	</item>
	<item>
		<title>Man Utd sues supporter over corporate client 'data theft'</title>
		<link>http://softsecurity.com/news_D18263_focus.html</link>
		<description>Prawn sandwich crowd suffer intimidation
Manchester United is suing a supporter who published a list of its corporate supporters on its website last year, a move the football club alleges led to incidents of harassment.?</description>
		<pubDate>Fri, 25 Mar 2011 11:51:43 GMT</pubDate>
	</item>
	<item>
		<title>Chinese firm accused of mobile malware ruse</title>
		<link>http://softsecurity.com/news_D18264_focus.html</link>
		<description>Users pay to remove unrequested app
Chinese security firm NetQin has been accused of conspiring to plant malicious software on users' handsets in order to drum up business for its mobile security software.?</description>
		<pubDate>Fri, 25 Mar 2011 09:50:39 GMT</pubDate>
	</item>
	<item>
		<title>Identifying Tor Users Through Insecure Applications</title>
		<link>http://softsecurity.com/news/blog-posts/identifying-tor-users-through-insecure-applications.html</link>
		<description>Interesting research: &quot;&lt;a href=&quot;http://hal.inria.fr/inria-00574178/en/&quot;&gt;One Bad Apple Spoils the Bunch: Exploiting P2P Applications to Trace and Profile Tor Users&lt;/a&gt;&quot;:

Abstract: Tor is a popular low-latency anonymity network. However, Tor does not protect against the exploitation of an insecure application to reveal the IP address of, or trace, a TCP stream. In addition, because of the linkability of Tor streams sent together over a single circuit, tracing one stream sent over a circuit traces them all. Surprisingly, it is unknown whether this linkability allows in practice to trace a significant number of streams originating from secure (i.e., proxied) applications. In this paper, we show that linkability allows us to trace 193% of additional streams, including 27% of HTTP streams possibly originating from ``secure'' browsers. In particular, we traced 9% of Tor streams carried by our instrumented exit nodes. Using BitTorrent as the insecure application, we design two attacks tracing BitTorrent users on Tor. We run these attacks in the wild for 23 days and reveal 10,000 IP addresses of Tor users. Using these IP addresses, we then profile not only the BitTorrent downloads but also the websites visited per country of origin of Tor users. We show that BitTorrent users on Tor are over-represented in some countries as compared to BitTorrent users outside of Tor. By analyzing the type of content downloaded, we then explain the observed behaviors by the higher concentration of pornographic content downloaded at the scale of a country. Finally, we present results suggesting the existence of an underground BitTorrent ecosystem on Tor.
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=WiwuFvfJcH4:PQC0b9Vv0ag:2mJPEYqXBVI&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=2mJPEYqXBVI&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=WiwuFvfJcH4:PQC0b9Vv0ag:7Q72WNTAKBA&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=7Q72WNTAKBA&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=WiwuFvfJcH4:PQC0b9Vv0ag:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=dnMXMwOfBR0&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt;
</description>
		<pubDate>Fri, 25 Mar 2011 06:38:05 GMT</pubDate>
	</item>
	<item>
		<title>Spotify splattered with malware-tainted ads</title>
		<link>http://softsecurity.com/news_D18265_focus.html</link>
		<description>Sounds dodgy
&lt;strong&gt;Updated&lt;/strong&gt; Users of the ad-supported version of Spotify were hit by a malware-based attack on Thursday.?</description>
		<pubDate>Fri, 25 Mar 2011 06:15:08 GMT</pubDate>
	</item>
	<item>
		<title>Chain Reaction finds and plugs security hole that led to fraud</title>
		<link>http://softsecurity.com/news_D18266_focus.html</link>
		<description>Bike site gets back on track
Popular UK-based biking site ChainReactionCycles.com has confirmed that a security breach on its systems led to fraud against its customers.?</description>
		<pubDate>Fri, 25 Mar 2011 05:29:40 GMT</pubDate>
	</item>
	<item>
		<title>RSA won't talk? Assume SecurID is broken</title>
		<link>http://softsecurity.com/news_D18246_focus.html</link>
		<description>No news is bad news for two-factor logins
&lt;strong&gt;Comment&lt;/strong&gt; It's been a week since RSA &lt;a href=&quot;http://www.theregister.co.uk/2011/03/18/rsa_breach_leaks_securid_data/&quot;&gt;dropped a vaguely worded bombshell&lt;/a&gt; on 30,000 customers that the soundness of the SecurID system they used to secure their corporate and governmental networks was compromised after hackers stole confidential information concerning the two-factor authentication product.?</description>
		<pubDate>Thu, 24 Mar 2011 15:25:42 GMT</pubDate>
	</item>
	<item>
		<title>Detecting Words and Phrases in Encrypted VoIP Calls</title>
		<link>http://softsecurity.com/news/blog-posts/detecting-words-and-phrases-in-encrypted-voip-calls.html</link>
		<description>&lt;a href=&quot;http://portal.acm.org/citation.cfm?doid=1880022.1880029&quot;&gt;Interesting&lt;/a&gt;:

Abstract:  Although Voice over IP (VoIP) is rapidly being adopted, its security implications are not yet fully understood. Since VoIP calls may traverse untrusted networks, packets should be encrypted to ensure confidentiality. However, we show that it is possible to identify the phrases spoken within encrypted VoIP calls when the audio is encoded using variable bit rate codecs. To do so, we train a hidden Markov model using only knowledge of the phonetic pronunciations of words, such as those provided by a dictionary, and search packet sequences for instances of specified phrases. Our approach does not require examples of the speaker's voice, or even example recordings of the words that make up the target phrase. We evaluate our techniques on a standard speech recognition corpus containing over 2,000 phonetically rich phrases spoken by 630 distinct speakers from across the continental United States. Our results indicate that we can identify phrases within encrypted calls with an average accuracy of 50%, and with accuracy greater than 90% for some phrases. Clearly, such an attack calls into question the efficacy of current VoIP encryption standards. In addition, we examine the impact of various features of the underlying audio on our performance and discuss methods for mitigation. 
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=Gt0n4lfLe1s:DK0McqFynQw:2mJPEYqXBVI&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=2mJPEYqXBVI&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=Gt0n4lfLe1s:DK0McqFynQw:7Q72WNTAKBA&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=7Q72WNTAKBA&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=Gt0n4lfLe1s:DK0McqFynQw:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=dnMXMwOfBR0&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt;
</description>
		<pubDate>Thu, 24 Mar 2011 12:46:16 GMT</pubDate>
	</item>
	<item>
		<title>Five jailed for £140m VAT scam</title>
		<link>http://softsecurity.com/news_D18247_focus.html</link>
		<description>Nearly 40 years' chokey for revenue cheats
Five men have been jailed for their roles in a huge missing-trader fraud which netted £140m.?</description>
		<pubDate>Thu, 24 Mar 2011 09:38:18 GMT</pubDate>
	</item>
	<item>
		<title>Hackers make off with TripAdvisor's membership list</title>
		<link>http://softsecurity.com/news_D18248_focus.html</link>
		<description>Can't recommend it
Travel site TripAdvisor has warned subscribers to expect more spam following the theft of its member database.?</description>
		<pubDate>Thu, 24 Mar 2011 09:35:32 GMT</pubDate>
	</item>
	<item>
		<title>Transmitting Data Through Steel</title>
		<link>http://softsecurity.com/news/blog-posts/transmitting-data-through-steel.html</link>
		<description>&lt;a href=&quot;http://www.theregister.co.uk/2011/03/10/through_metal_comms_n_power_reinvented/&quot;&gt;This&lt;/a&gt; is cool:

Tristan Lawry, doctoral candidate in electrical and computer engineering, has developed equipment which can transmit data at high rates through thick, solid steel or other barriers. Significantly, Lawry's kit also transmits power. One obvious application here would be transmission through the steel pressure hull of a submarine: at the moment such hulls must have hundreds of penetrations for power and data cables, each one adding expense, weight and maintenance burden.

What's interesting is that this technology can be used to transmit through TEMPEST shielding.

If you had the through-metal technology now reinvented by Lawry, however, your intruder -- inside mole or cleaner or pizza delivery, whatever -- could stick an unobtrusive device to a suitable bit of structure inside the Faraday cage of shielding where it would be unlikely to be found. A surveillance team outside the cage could stick the other half of the kit to the same piece of metal (perhaps a structural I-beam, for instance, or the hull of a ship) and they would then have an electronic ear inside the opposition's unbreachable Faraday citadel, one which would need no battery changes and could potentially stay in operation for years.

Spooks might use such techniques even where there was no Faraday cage, simply to avoid the need for battery changes and detectable/jammable radio transmissions in ordinary audio or video bugs.

Naturally, if you knew how such equipment worked you might be able to detect or block it -- hence the understandable plea from the British spooks to BAE to keep the details under wraps.

Unfortunately for the spooks, Lawry has now blown the gaff: his equipment works using ultrasound. His piezo-electric transducers send data at no less than 12 megabytes a second, plus 50 watts of power, through 2.5 inches of steel -- and Lawry is confident that this could easily be improved upon. It seems certain that performance could be traded for range, to deal with the circumstances faced by surveillance operatives rather than submarine designers.
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=S7uT8TQ72hY:z_sm16Di2c0:2mJPEYqXBVI&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=2mJPEYqXBVI&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=S7uT8TQ72hY:z_sm16Di2c0:7Q72WNTAKBA&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=7Q72WNTAKBA&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=S7uT8TQ72hY:z_sm16Di2c0:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=dnMXMwOfBR0&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt;
</description>
		<pubDate>Thu, 24 Mar 2011 07:37:25 GMT</pubDate>
	</item>
	<item>
		<title>EU admits deep impact cyberattack in run-up to key summit</title>
		<link>http://softsecurity.com/news_D18249_focus.html</link>
		<description>Internal docs suggest longer-term problem
The EU has admitted to having been hit by a deep, penetrating cyber-attack.?</description>
		<pubDate>Thu, 24 Mar 2011 07:34:42 GMT</pubDate>
	</item>
	<item>
		<title>Russian jailed for 6 years for smutty billboard stunt</title>
		<link>http://softsecurity.com/news_D18250_focus.html</link>
		<description>Serious sentence for stoner silliness
A Russian man has been jailed for six years for putting smut on a streetside video billboard.?</description>
		<pubDate>Thu, 24 Mar 2011 05:26:54 GMT</pubDate>
	</item>
	<item>
		<title>Auditor to Oz PM&amp;amp;C: don?t use Webmail for leaks</title>
		<link>http://softsecurity.com/news_D18218_focus.html</link>
		<description>Security spooks slap sloppy civil servants
Australian cloud computing chauvinists are prepping the ?#GovDoesn?tGetIt? hashtag after the Australian National Audit Office (ANAO), with a bit of help from the spooks in the Defence Signals Directorate, identified services like Hotmail and Gmail as key vulnerabilities in government information security.?</description>
		<pubDate>Wed, 23 Mar 2011 17:26:45 GMT</pubDate>
	</item>
	<item>
		<title>Discussing PCI at RSA</title>
		<link>http://softsecurity.com/news/blog-posts/discussing-pci-at-rsa.html</link>
		<description>I always enjoy getting a chance to talk with folks like Gene Kim, Josh Corman and Mike Dahn.  We&amp;#8217;ve talked about the nature of compliance together many times and I like that all of us have evolving opinions of how compliance influences the world.  We got the gang back together in front of a video [...]</description>
		<pubDate>Wed, 23 Mar 2011 17:18:37 GMT</pubDate>
	</item>
	<item>
		<title>'Iranian' attackers forge Google's Gmail credentials</title>
		<link>http://softsecurity.com/news_D18219_focus.html</link>
		<description>Skype, Microsoft, Yahoo, Mozilla also targeted
Extremely sophisticated hackers, possibly from the Iranian government or another state-sponsored actor, broke into the servers of a web authentication authority and counterfeited certificates for Google mail and six other sensitive addresses, the CEO of Comodo said.?</description>
		<pubDate>Wed, 23 Mar 2011 15:12:36 GMT</pubDate>
	</item>
	<item>
		<title>Microsoft Releases Security Advisory 2524375</title>
		<link>http://softsecurity.com/news/blog-posts/microsoft-releases-security-advisory-2524375.html</link>
		<description>Hello - Today we're releasing &lt;a href=&quot;http://www.microsoft.com/technet/security/advisory/2524375.mspx&quot;&gt;Security Advisory 2524375&lt;/a&gt;, to address nine fraudulent digital certificates issued by &lt;a href=&quot;http://www.comodo.com/Comodo-Fraud-Incident-2011-03-23.html&quot;&gt;Comodo Group Inc,&lt;/a&gt; a root certificate authority. Comodo has since revoked the digital certificates. This is not a Microsoft security vulnerability; however, one of the certificates potentially affects Windows Live ID users via login.live.com. These certificates may be used to spoof content, perform phishing attacks, or perform man-in-the-middle attacks against end users. We are unaware of any active attacks. 
We have taken steps to further help protect customers by developing a mitigation update. We recommend customers download the update to help protect against inadvertent use of the fraudulent digital certificates. Customers should continue to utilize Internet Explorer's Security Status bar located on the right side of the address bar to verify that the site being visited is valid and secure. 
The Microsoft mitigation will be made available through the &lt;a href=&quot;http://www.microsoft.com/downloads/en/default.aspx&quot;&gt;Microsoft Download Center&lt;/a&gt; and the Windows Update Service. For customers who use Windows Automatic Updates, the update will occur automatically. 

The video below provides additional viewpoints on the mitigation and explains why you should prioritize installation as soon as possible.&amp;nbsp; 


If you have not done so already, we highly recommend customers register for our comprehensive alerts. Sign up here: &lt;a href=&quot;http://technet.microsoft.com/en-us/security/dd252948.aspx&quot;&gt;Microsoft Technical Security Notifications&lt;/a&gt;
Thanks,
&amp;nbsp;
Bruce Cowper&lt;br /&gt;Group Manager, Trustworthy Computing&lt;img src=&quot;http://blogs.technet.com/aggbug.aspx?PostID=3415121&quot; width=&quot;1&quot; height=&quot;1&quot;&gt;</description>
		<pubDate>Wed, 23 Mar 2011 12:12:00 GMT</pubDate>
	</item>
	<item>
		<title>ZeuS cybercrime cookbook on sale in underground forums</title>
		<link>http://softsecurity.com/news_D18220_focus.html</link>
		<description>Lets non-coders produce trojans, other burglar tools
Cybercrooks are offering what purports to be source code for the infamous ZeuS cybercrime toolkit though underground forums.?</description>
		<pubDate>Wed, 23 Mar 2011 11:32:59 GMT</pubDate>
	</item>
	<item>
		<title>RUSTOCK TAKEDOWN: How the world's worst botnet was KO'd</title>
		<link>http://softsecurity.com/news_D18221_focus.html</link>
		<description>Redmond posse sends bot-herd cowboys a-runnin'
&lt;strong&gt;Analysis&lt;/strong&gt; The unidentified criminals behind the infamous Rustock botnet were paying at least $10,000 a month for US-based command and control servers prior to a successful takedown operation last week.?</description>
		<pubDate>Wed, 23 Mar 2011 08:48:54 GMT</pubDate>
	</item>
	<item>
		<title>Nokia C7 'Astound' in US debut - all ready for touchless payment</title>
		<link>http://softsecurity.com/news_D18222_focus.html</link>
		<description>OK, keys, wallet, phone - I'm outta here
The Nokia C7 has got its American launch, exclusive to T-Mobile and branded the &quot;Astound&quot;, but it also got functioning NFC software ? unlike its European incarnation.?</description>
		<pubDate>Wed, 23 Mar 2011 08:04:00 GMT</pubDate>
	</item>
	<item>
		<title>Threats vs. Vulnerabilities</title>
		<link>http://softsecurity.com/news/blog-posts/threats-vs.-vulnerabilities.html</link>
		<description>I found &lt;a href=&quot;http://jps.anl.gov/Volume4_iss2/Paper3-RGJohnston.pdf&quot;&gt;this article&lt;/a&gt; on the difference between threats and vulnerabilities to be very interesting.  I like his taxonomy.
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=bDq8XFc5ymU:tVzdlqTggoc:2mJPEYqXBVI&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=2mJPEYqXBVI&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=bDq8XFc5ymU:tVzdlqTggoc:7Q72WNTAKBA&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=7Q72WNTAKBA&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?a=bDq8XFc5ymU:tVzdlqTggoc:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/fulltext?d=dnMXMwOfBR0&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt;
</description>
		<pubDate>Wed, 23 Mar 2011 06:34:58 GMT</pubDate>
	</item>
	<item>
		<title>Fake Japan blackout alerts cloak Flash malware</title>
		<link>http://softsecurity.com/news_D18223_focus.html</link>
		<description>Scumbags continue to batten on human misery
Scumbags are taking advantage of the desperate situation in Japan by distributing malware that poses as information about a rolling electricity blackout programme.?</description>
		<pubDate>Wed, 23 Mar 2011 06:17:03 GMT</pubDate>
	</item>
	<item>
		<title>Facebook tells privacy advocates not to 'shoot the messenger'</title>
		<link>http://softsecurity.com/news_D18224_focus.html</link>
		<description>You have no right to be forgotten, argues big IT
Facebook insisted yesterday that it is heavily focused on tightening privacy controls for its users, even if information posted on its platform is re-published elsewhere by people accessing the site.?</description>
		<pubDate>Wed, 23 Mar 2011 06:01:02 GMT</pubDate>
	</item>
	<item>
		<title>Facebook traffic mysteriously passes through Chinese ISP</title>
		<link>http://softsecurity.com/news_D18225_focus.html</link>
		<description>Routing cockup most likely explanation
For a short time on Tuesday, internet traffic sent between Facebook and subscribers to AT&amp;amp;T's internet service passed through hardware belonging to the state-owned China Telecom before reaching its final destination, a security researcher said.?</description>
		<pubDate>Tue, 22 Mar 2011 22:44:49 GMT</pubDate>
	</item>
	<item>
		<title>Network Security Podcast, Episode 234</title>
		<link>http://softsecurity.com/news/blog-posts/network-security-podcast-episode-234.html</link>
		<description>Martin, Rich and Zach are joined tonight by none other than Josh Corman from the 451 Group to talk about the recent RSA breach.  Actually, he was on more to talk about the industries reaction to the breach more than the breach itself.  The reality is that we still know almost nothing about what happened, [...]</description>
		<pubDate>Tue, 22 Mar 2011 19:24:35 GMT</pubDate>
	</item>
	<item>
		<title>Interview: Unisys on the cybercrime treaty</title>
		<link>http://softsecurity.com/news_D18191_focus.html</link>
		<description>Why Australia should sign up
Australia is working through the long process of acceding to the European Convention on Cybercrime. It?s a process that causes significant angst. Privacy advocates are concerned at the convention?s intrusive nature; ISPs worry about how much data they?d have to carry.?&lt;strong&gt;&lt;a href=&quot;http://whitepapers.theregister.co.uk/paper/view/1951/?td=rss&quot;&gt;Free Register Webcast: Can telephony and IT work together?&lt;/a&gt;&lt;/strong&gt;
</description>
		<pubDate>Tue, 22 Mar 2011 16:10:04 GMT</pubDate>
	</item>
	<item>
		<title>Apple showers love on Mac malware protection</title>
		<link>http://softsecurity.com/news_D18192_focus.html</link>
		<description>Feeds Snow Leopard's neglected Xprotect
For only the second time in 19 months, Apple has updated the signatures used to protect Mac users against malware attacks.?</description>
		<pubDate>Tue, 22 Mar 2011 15:35:30 GMT</pubDate>
	</item>
	<item>
		<title>Nude women back accused WikiLeaker</title>
		<link>http://softsecurity.com/news_D18193_focus.html</link>
		<description>Protestors bare breasts for Bradley Manning
&lt;strong&gt;Photos&lt;/strong&gt; Supporters of Bradley Manning stripped down to their skivvies outside the office of US Senator Diane Feinstein to protest the treatment of the suspected WikiLeaker, who is being held in solitary confinement, often without being allowed to wear clothes.?</description>
		<pubDate>Tue, 22 Mar 2011 12:18:32 GMT</pubDate>
	</item>
</channel>
</rss>