The Daily Information Security Dose
67
The Daily Security Dose" is my way to maintain a list of links to website I consider to relevant and I use for my day to day advisory work
Curated by Joerg Asma
Follow
Scooped by Joerg Asma onto The Daily Information Security Dose
Scoop.it!

IT Security News and Security Product Reviews - SC Magazine

IT Security News and Security Product Reviews - SC Magazine | The Daily Information Security Dose | Scoop.it
Find the latest security news from SC Magazine US, SC Magazine online for products reviews, group test, latest news and features, security news, portals, whitepapers, vulnerability alerts, jobs and events from SC magazine US.
No comment yet.
Joerg Asma is also curating
Graphics from my #factsandfiguresday My Social Networking Anchor Must Read Security Ressources
Discover Topics Joerg Asma is following
FabLab today Security through Obscurity Higher Ed Information Security Higher Ed Data Privacy Information Assurance *Lean*Time*Interim* management
and 7 others
Your new post is loading...
Rescooped by Joerg Asma from Higher Ed Information Security
Scoop.it!

Amid a barrage of password breaches, “honeywords” to the rescue

Amid a barrage of password breaches, “honeywords” to the rescue | The Daily Information Security Dose | Scoop.it

Security experts have proposed a simple way for websites to better secure highly sensitive databases used to store user passwords: the creation of false "honeyword" passcodes that when entered would trigger alarms that account hijacking attacks are underway.

 

The suggestion builds on the already established practice of creating dummy accounts known as honeypot accounts. It comes as dozens of high-profile sites watched user data become jeopardized—including LivingSocial, dating site Zoosk, Evernote, Twitter, LinkedIn, and eHarmony to name just a few from the past year. Because these dummy accounts don't belong to legitimate users of the service and are normally never accessed, they can be used to send a warning to site administrators when attackers are able to log in to them. The new, complementary honeyword measure—proposed in a research paper titled "Honeywords: Making Password-Cracking Detectable—was devised by RSA Labs researcher Ari Juels and MIT cryptography professor Ronald Rivest, the latter who is the "R" in the RSA cryptography scheme.


Via HE Info Sec Council
Joerg Asma's insight:

From Honeypot 2 HoneyWord - interesting approach, but hoy to avoid honeywords u dont know

No comment yet.
Scooped by Joerg Asma
Scoop.it!

The Evolution of Stuxnet, Duqu and co...

Joerg Asma's insight:

Interesting article about the evolution of #duqu and #Stuxnet - a must read about malicious code

No comment yet.
Scooped by Joerg Asma
Scoop.it!

SkypeHide system, steganography to secure communications on Skype

SkypeHide system, steganography to secure communications on Skype | The Daily Information Security Dose | Scoop.it
In this period there is an intense debate on the wiretapping of every communication channel, governments are increasing the monitoring of internet, of social network platforms and VOIP conversation...
No comment yet.
Scooped by Joerg Asma
Scoop.it!

Stylometric analysis to track anonymous users in the underground

Stylometric analysis to track anonymous users in the underground | The Daily Information Security Dose | Scoop.it
Law enforcement and intelligence agencies conscious of the high risks related to cyber threats have started massive monitoring campaign, everything must be controlled to avoid unpleasant surprises....
No comment yet.
Scooped by Joerg Asma
Scoop.it!

Security Affairs

Security Affairs | The Daily Information Security Dose | Scoop.it
Read, think, share … Security is everyone's responsibility
Joerg Asma's insight:

Good article about advanced persistent threats related to SCADA systems 

No comment yet.
Rescooped by Joerg Asma from Higher Ed Information Security
Scoop.it!

Cloud Security Debate: Cloud Now or Cloud How?

Cloud Security Debate: Cloud Now or Cloud How? | The Daily Information Security Dose | Scoop.it

During the often-fiery 2012 presidential debate season, a lively debate of a different sort held at Indiana University(IU) featured passionate arguments on the nature, status, and future of cloud security in and beyond the higher education environs. Moderated by Brad Wheeler, IU's vice president for IT and CIO, the debate featured two figures characterized by Wheeler as symbolic leaders of the "Cloud Now" and "Cloud How" parties... 

 

Following are highlights of the Shel Waggener–Fred Cate debate, including salient points, key quotes, and a bit of the color and passion that permeated the sometimes sprawling and always interesting discussion.A full, unabridged transcript is also available.


Via HE Info Sec Council
No comment yet.
Rescooped by Joerg Asma from Chinese Cryptography
Scoop.it!

Putting Cyber Warfare Into Perspective | SecurityWeek.Com

Putting Cyber Warfare Into Perspective | SecurityWeek.Com | The Daily Information Security Dose | Scoop.it
Cyberwar is not war in and of itself. It is not even another battlefield. Nor is it as novel as some people claim. It is just a logical conclusion and evolution of the widespread adoption of computers and technology in modern culture.

Via Red-DragonRising
No comment yet.
Scooped by Joerg Asma
Scoop.it!

They got me!

They got me! | The Daily Information Security Dose | Scoop.it
Being a security professional is sometimes a difficult thing. Everybody expects you to be wise in terms of security, threats, knowing all different kinds of attacks and so on. Being phished yoursel...
No comment yet.
Scooped by Joerg Asma
Scoop.it!

Elektronische Überwachung: Ajatollahs setzen alles auf eine Karte - SPIEGEL ONLINE

Elektronische Überwachung: Ajatollahs setzen alles auf eine Karte - SPIEGEL ONLINE | The Daily Information Security Dose | Scoop.it
Irans Regierung führt einen biometrischen Ausweis ein, der gleichzeitig als Zugangskarte zum Web fungieren soll.
No comment yet.
Rescooped by Joerg Asma from FabLab today
Scoop.it!

Does the internet of things need its own internet?

Does the internet of things need its own internet? | The Daily Information Security Dose | Scoop.it

Ask any mobile operator, and they’ll tell you their networks will become the backbone of the future internet of things.


Via Ex FromTheLeft, Eric Ziebart, Elisa Vivancos
No comment yet.
Scooped by Joerg Asma
Scoop.it!

Malware hides C&C server communications using Google Docs function

Malware hides C&C server communications using Google Docs function | The Daily Information Security Dose | Scoop.it
The ways explored by malware creators are unlimited, recently Symantec has announced the discovery of a new operational mode for backdoor trojan Makadocs, the security firm has in fact reported tha...
No comment yet.
Scooped by Joerg Asma
Scoop.it!

10 of the Spookiest Cyber Attacks of 2012! | Visual.ly

10 of the Spookiest Cyber Attacks of 2012! | Visual.ly | The Daily Information Security Dose | Scoop.it
Interested in a good scare this Halloween? Look no further than your own computer, mobile or tablet device!
No comment yet.
Scooped by Joerg Asma
Scoop.it!

HackerJournals Whitepapers

No comment yet.
Scooped by Joerg Asma
Scoop.it!

Applying Big Data Approaches to Information Security a Challenge

Applying Big Data Approaches to Information Security a Challenge | The Daily Information Security Dose | Scoop.it
Applying big data approaches to information security can help enterprises build better situational awareness capabilities, but implementation could prove to be a major challenge, security experts said at the RSA Conference 2013 being held here this...
No comment yet.
Scooped by Joerg Asma
Scoop.it!

Flashfake Mac OS X botnet confirmed

Flashfake Mac OS X botnet confirmed | The Daily Information Security Dose | Scoop.it
Earlier this week, Dr. Web reported the discovery of a Mac OS X botnet Flashback (Flashfake). According to their information, the estimated size of this botnet is more than 500, 000 infected Mac machines.
No comment yet.
Scooped by Joerg Asma
Scoop.it!

Iran and India, control and monitoring of networks

Iran and India, control and monitoring of networks | The Daily Information Security Dose | Scoop.it
The news is circulating for days, the Iranian head of the national security forces , Esmail Ahmadi Moghadam, declared that low enforcement  of the country is developing a software for “smart ...
No comment yet.
Scooped by Joerg Asma
Scoop.it!

Media invitation to the opening of the European Cybercrime Centre (EC3) at Europol | Europol

This Friday, 11 January 2013, will see the launch of the new European Cybercrime Centre (EC3) based at Europol headquarters in The Hague. EC3 will be...
No comment yet.
Scooped by Joerg Asma
Scoop.it!

Cyber security: technology innovations bringing increasing threat of cyber attacks, says ENISA

Cyber security: technology innovations bringing increasing threat of cyber attacks, says ENISA | The Daily Information Security Dose | Scoop.it
Innovations in mobile and cloud computing, social technology and the use of "big data" present an emerging risk to organisations' IT security, a security agency has warned.
Joerg Asma's insight:

They got it ;-)

No comment yet.
Rescooped by Joerg Asma from INFO SEC
Scoop.it!

Information sharing around cyber-security practices - Intelligent Utility

Information sharing around cyber-security practices - Intelligent Utility | The Daily Information Security Dose | Scoop.it
Information sharing around cyber-security practicesIntelligent UtilityEnergySec is a community of information security, physical security, audit, disaster recovery and business continuity professionals from energy industry utilities established...

Via Red-DragonRising
No comment yet.
Scooped by Joerg Asma
Scoop.it!

Global group hacking for good

Global group hacking for good | The Daily Information Security Dose | Scoop.it
It is something out of a Hollywood movie - hackers pooling their talents to help people handle natural disasters.
No comment yet.
Scooped by Joerg Asma
Scoop.it!

CSO Online - Security and Risk

CSO Online - Security and Risk | The Daily Information Security Dose | Scoop.it
CSO - information security & physical security thought leadership - news, analysis, how-tos & jobs...
No comment yet.
Scooped by Joerg Asma
Scoop.it!

Kill the Password: Why a String of Characters Can't Protect Us Anymore | Gadget Lab | Wired.com

Kill the Password: Why a String of Characters Can't Protect Us Anymore | Gadget Lab | Wired.com | The Daily Information Security Dose | Scoop.it
You have a secret that can ruin your life. It’s not a well-kept secret, either. Just a simple string of characters—maybe six of them if you’re careless, 16 if you’re cautious—that can reveal everything about you.
No comment yet.
Scooped by Joerg Asma
Scoop.it!

Defending Privacy at the U.S. Border: A Guide for Travelers Carrying Digital Devices | Electronic Frontier Foundation

Defending Privacy at the U.S. Border: A Guide for Travelers Carrying Digital Devices | Electronic Frontier Foundation | The Daily Information Security Dose | Scoop.it
No comment yet.
Scooped by Joerg Asma
Scoop.it!

Visualize Security Daily

Visualize Security Daily | The Daily Information Security Dose | Scoop.it
Visualize Security Daily, by Tim Youngblood: updated automatically with a curated selection of articles, blog posts, videos and photos.
No comment yet.
Rescooped by Joerg Asma from Security through Obscurity
Scoop.it!

Security Configuration Recommendations for Apple iOS 5 Devices

Recommendations about iOS Device Management coming from NSA. I like the checklist at the end of this whitepaper.


Via Yury Chemerkin
No comment yet.