Researcher Exposes Massive Automated Check Counterfeiting Operation Out of Russia

Researcher Exposes Massive Automated Check Counterfeiting Operation Out of Russia


Researcher Exposes Massive Automated Check Counterfeiting Operation Out of Russia

Posted:

InfoSec News: Researcher Exposes Massive Automated Check Counterfeiting Operation Out of Russia: http://www.darkreading.com/database_security/security/attacks/showArticle.jhtml?articleID=226300183
By Kelly Jackson Higgins DarkReading July 28, 2010
BLACK HAT USA -- Las Vegas -- A researcher has blown wide open a sophisticated online check-counterfeiting operation out of Russia that [...]

Security researcher demonstrates ATM hacking

Posted:

InfoSec News: Security researcher demonstrates ATM hacking: http://news.cnet.com/8301-1009_3-20012019-83.html
By Declan McCullagh CNet News Security July 28, 2010
LAS VEGAS -- Hacking into an ATM isn't impossible, a security researcher showed Wednesday. With the right software, it's actually pretty easy.
Barnaby Jack, director of security testing at Seattle-based IOActive, hauled two ATMs onto the Black Hat conference stage and demonstrated to a rapt audience the fond daydream of teenage hackers everywhere: pressing a button and having an automated teller machine spew out its cash until a pile of paper lay on the ground.
"I hope to change the way people look at devices that from the outside are seemingly impenetrable," said Jack, a New Zealand native who lives in the San Jose area. One vulnerability he demonstrated even allows a hacker to connect to the ATM through a telephone modem and, without knowing a password, instantly force it to disgorge its entire supply of cash.
Jack said he bought the pair of standalone ATMs--one manufactured by Tranax Technologies and the other by Triton--over the Internet and then spent years poring over the code. The vulnerabilities and programming errors he unearthed during that process, Jack said, let him gain complete access to those machines and learn techniques that can be used to open the built-in safes of many others made by the same companies.
[...]

DHS official fields hard questions at Black Hat

Posted:

InfoSec News: DHS official fields hard questions at Black Hat: http://www.computerworld.com/s/article/9179789/DHS_official_fields_hard_questions_at_Black_Hat
By Robert McMillan IDG News Service July 28, 2010
The U.S. Department of Homeland Security sent its highest-ranking official ever to speak at the Black Hat conference this week, and its [...]

Android wallpaper app that steals your data was downloaded by millions

Posted:

InfoSec News: Android wallpaper app that steals your data was downloaded by millions: http://mobile.venturebeat.com/2010/07/28/android-wallpaper-app-that-steals-your-data-was-downloaded-by-millions/
By Dean Takahashi Mobile Beat July 28, 2010
A questionable Android mobile wallpaper app that collects your personal data and sends it to a mysterious site in China, has been downloaded millions of times, according to data unearthed by mobile security firm Lookout.
That means that apps that seem good but are really stealing your personal information are a big risk at a time when mobile apps are exploding on smartphones, said John Hering, chief executive, and Kevin MaHaffey, chief technology officer at Lookout, in their talk at the Black Hat security conference in Las Vegas today.
“Even good apps can be modified to turn bad after a lot of people download it,” MaHaffey said. “Users absolutely have to pay attention to what they download. And developers have to be responsible about the data that they collect and how they use it.”
The app in question came from Jackeey Wallpaper, and it was uploaded to the Android Market, where users can download it and use it to decorate their phones that run the Google Android operating system. It includes branded wallpapers from My Little Pony and Star Wars, to name just a couple.
[...]

BlackBerry agrees to address India's security concerns: MHA

Posted:

InfoSec News: BlackBerry agrees to address India's security concerns: MHA: http://timesofindia.indiatimes.com/business/india-business/BlackBerry-agrees-to-address-Indias-security-concerns-MHA/articleshow/6232306.cms
The Times of India July 29, 2010
NEW DELHI: The government today said the makers of BlackBerry - Research in Motion (RIM) - has given an assurance to it on soon addressing its security concerns and hoped that the Canadian service provider and security agencies would be on the "same page".
"BlackBerry has assured the Ministry of Home Affairs that the issue of monitoring of the BlackBerry will be sorted out soon...I am sure we will soon be on the same page and our concerns will be addressed," Special Security (Internal Security) in the MHA Utthan Kumar Bansal told reporters on the sidelines of a function here.
Government has already warned the popular smartphone company that if it does not allow it to monitor emails and SMSes to address security concerns, it will have to close down operations in the country, spelling trouble for over a million BlackBerry users in India.
The government has said the RIM will have to address its security-related issues by allowing monitoring facility in India.
[...]

0 comments:

Post a Comment