Syndicate

NSA-Funded 'Cauldron' Tool Goes Commercial
Wednesday, 27 May 2009

A vulnerability analysis tool used by the National Security Agency (NSA) and U.S. Department of Homeland Security is now commercially available for enterprises that want to either make sense of their reams of vulnerability data or trace an actual data breach.
Check it out here .

 
Vulnerabilities in Microsoft Exchange Could Allow Remote Code Execution
Tuesday, 10 February 2009

This security update resolves two privately reported vulnerabilities in Microsoft Exchange Server. The first vulnerability could allow remote code execution if a specially crafted TNEF message is sent to a Microsoft Exchange Server. An attacker who successfully exploited this vulnerability could take complete control of the affected system with Exchange Server service account privileges.

The second vulnerability could allow denial of service if a specially crafted MAPI command is sent to a Microsoft Exchange Server. An attacker who successfully exploited this vulnerability could cause the Microsoft Exchange System Attendant service and other services that use the EMSMDB32 provider to stop responding. Check it out here .

 
Hacked Business Owner Stuck With $52k Phone Bill
Friday, 19 December 2008
A Canadian business man is on the hook for a $52,000 phone bill after someone hacked into his voice mail system and found a way to dial out. The hacker racked up the charges with calls to Bulgaria. Check it out here .
 
FBI: Criminals Auto-Dialing with Hacked VoIP Systems
Monday, 08 December 2008
Criminals are taking advantage of a bug in the Asterisk Internet telephony system that lets them pump out thousands of scam phone calls in an hour, the FBI warned Friday. The flaw is overblown by the FBI as usual, however still pertinent. Check it out here .
 
101 on VoIP AT&T video
Friday, 07 November 2008
I was passed a good video presentation created by AT&T that does the 101 on VoIP. It is excellent for the uninitiated. Check it out here .
 
VoiceCon San Fransisco
Wednesday, 22 October 2008
I will be at VoiceCon in San Fransisco Novmenber 10-13th, booth 230 - VoIPshield. Should be a great show. Come on by. If some are unfamiliar with the conference schedule check it out here .
 
Top security suites fail exploit tests
Wednesday, 22 October 2008
In a bit of unrelated news, a report had been published last week which down-played the effectivneess of current security suites in mitigating current attacks. I find it amazing to see big names falling into those performance numbers. Check it out here .
 
More...