<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:series="http://unfoldingneurons.com/"
	>

<channel>
	<title>InfoSec Tools, Tips &#38; Thoughts &#187; Network</title>
	<atom:link href="http://infosec3t.com/category/network/feed/" rel="self" type="application/rss+xml" />
	<link>http://infosec3t.com</link>
	<description>Exploring topics in InfoSec and Cyber Security   including  practical approaches to risk management.</description>
	<lastBuildDate>Sat, 12 May 2012 03:05:50 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<meta xmlns="http://www.w3.org/1999/xhtml" name="robots" content="noindex,follow" />
		<item>
		<title>Will your Cloud Provider be around in two years?</title>
		<link>http://infosec3t.com/2010/09/12/will-your-cloud-provider-be-around-in-two-years/</link>
		<comments>http://infosec3t.com/2010/09/12/will-your-cloud-provider-be-around-in-two-years/#comments</comments>
		<pubDate>Sun, 12 Sep 2010 15:45:33 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Applications]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Network]]></category>
		<category><![CDATA[Systems]]></category>
		<category><![CDATA[cloud computing]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=2361</guid>
		<description><![CDATA[I just read that my hosting company, GoDaddy, is on the auction block to be sold to the highest bidder. Naturally, I&#8217;m thinking of how this change of ownership could adversely affect the service of my web sites, blogs, and virtual servers.  One never really knows until the new owners take over. Maybe they clean [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://infosec3t.com/wp-content/uploads/2010/09/Cloud.jpg"><img class="alignright size-full wp-image-2365" title="Cloud" src="http://infosec3t.com/wp-content/uploads/2010/09/Cloud.jpg" alt="" width="175" height="175" /></a>I just read that my hosting company, GoDaddy, is on the auction block to be sold to the highest bidder. Naturally, I&#8217;m thinking of how this change of ownership could adversely affect the service of my web sites, blogs, and virtual servers.  One never really knows until the new owners take over. Maybe they clean house and things change for the better. Or they may look to cut costs and things could take a downward turn. Migrating to a another service would a pain but I could do it if needed.</p>
<p>This brings to mind the current state of the <a href="http://infosec3t.com/tag/cloud-computing/" class="st_tag internal_tag" rel="tag" title="Posts tagged with cloud computing">cloud computing</a> market. The mad gold rush of cloud services providers continues. Everyone wants a piece of the action.  These companies offer a variety of hosting services for IT infrastructure, platforms and applications.  The lure of moving to the cloud is obvious. Let someone else do it better, cheaper, more reliably and worry about the  details. More organizations are taking advantage. Companies, large and small, are moving their data, applications, and systems to one or more of the legion of providers out there.  This means more dependence on these providers for accessing business critical resources.  Although there are some obvious leaders in the cloud market today ( Google, Amazon, Salesforce), there are also a many smaller boutique providers that compete mostly on price.</p>
<p>In coming years, I expect the market to settle. Some providers will flourish, others will go down in flames or be acquired by one of the larger shops. These changes could have real consequences to customers. What happens if your provider is using proprietary technology and goes out of business?  Migrating to a new provider might be difficult. Doing your due diligence before selecting a provider is very important. Verifying the financial stability of the company and developing a strong service level agreement are key requirements.  Your SLA must address uptime, performance and <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a>. The ability to audit your provider is also very important.</p>
<p>Many small businesses would not exist without the cloud. Building, hosting, and managing an IT infrastructure can be cost prohibitive. Choosing the right provider, however, may be the difference between success and failure.</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/05/20/the-real-arguments-for-cloud-computing/' rel='bookmark' title='The real arguments for Cloud Computing'>The real arguments for Cloud Computing</a> <small>As more vendors dive into the cloud computing market, every...</small></li>
<li><a href='http://infosec3t.com/2010/07/05/moving-data-storage-to-the-cloud-whats-your-business-continuity-plan/' rel='bookmark' title='Moving data storage to the cloud? What&#8217;s your business continuity plan?'>Moving data storage to the cloud? What&#8217;s your business continuity plan?</a> <small>Many trumpet increased availability as a reason to move to...</small></li>
<li><a href='http://infosec3t.com/2010/03/04/cloud-computing-loss-of-confidentiality/' rel='bookmark' title='Cloud Computing = Loss of Confidentiality?'>Cloud Computing = Loss of Confidentiality?</a> <small>Interesting excerpt from article in ITWorldCanada: &#8220;Adi Shamir, a computer...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/09/12/will-your-cloud-provider-be-around-in-two-years/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>IBM X-Force handicaps future trends in security</title>
		<link>http://infosec3t.com/2010/08/29/ibm-x-force-handicaps-future-trends-in-security/</link>
		<comments>http://infosec3t.com/2010/08/29/ibm-x-force-handicaps-future-trends-in-security/#comments</comments>
		<pubDate>Sun, 29 Aug 2010 23:26:56 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Network]]></category>
		<category><![CDATA[Systems]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[threat]]></category>
		<category><![CDATA[virtualization]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=2342</guid>
		<description><![CDATA[Looking ahead, the X-Force Research and Development team has identified some key trends to watch for in the future, including: Cloud Computing &#8212; As an emerging technology, security concerns remain a hurdle for organizations looking to adopt cloud computing. As organizations transition to the cloud, IBM recommends that they start by examining the security requirements [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-medium wp-image-2343" title="XForce" src="http://infosec3t.com/wp-content/uploads/2010/08/XForce1-300x182.jpg" alt="" width="300" height="182" />Looking ahead, the X-Force Research and Development team has identified some key trends to watch for in the future, including:</p>
<p><strong><a href="http://infosec3t.com/tag/cloud-computing/" class="st_tag internal_tag" rel="tag" title="Posts tagged with cloud computing">Cloud Computing</a></strong> &#8212; As an emerging technology, <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> concerns remain a hurdle for organizations looking to adopt cloud computing. As organizations transition to the cloud, IBM recommends that they start by examining the <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> requirements of the workloads they intend to host in the cloud, rather than starting with an examination of different potential service providers. Gaining a good understanding of the needs and requirements first will help organizations take a more strategic approach to adopting cloud services.</p>
<p><strong>Virtualization </strong>&#8211; As organizations push workloads into virtual server infrastructures to take advantage of ever increasing CPU performance, questions have been raised about the wisdom of sharing workloads with different security requirements on the same physical hardware. X-Force&#8217;s vulnerability data shows that 35 percent of vulnerabilities impacting server class virtualization systems affect the hypervisor, which means that an attacker with control of one virtual system may be able to manipulate other systems on the same machine. This is a significant data point when architecting virtualization projects.</p>
<p>Read more: <a href="http://www.prnewswire.com/news-releases/ibm-x-force-report-reveals-global-security-threats-have-reached-record-levels-101460029.html" target="_blank">http://www.prnewswire.com/news-releases/ibm-x-force-report-reveals-global-security-threats-have-reached-record-levels-101460029.html</a></p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/05/17/exploring-cloud-computing-information-leakage/' rel='bookmark' title='Exploring Cloud Computing Information Leakage'>Exploring Cloud Computing Information Leakage</a> <small>If you are in cloud computing security (or part of...</small></li>
<li><a href='http://infosec3t.com/2010/07/05/moving-data-storage-to-the-cloud-whats-your-business-continuity-plan/' rel='bookmark' title='Moving data storage to the cloud? What&#8217;s your business continuity plan?'>Moving data storage to the cloud? What&#8217;s your business continuity plan?</a> <small>Many trumpet increased availability as a reason to move to...</small></li>
<li><a href='http://infosec3t.com/2010/09/12/will-your-cloud-provider-be-around-in-two-years/' rel='bookmark' title='Will your Cloud Provider be around in two years?'>Will your Cloud Provider be around in two years?</a> <small>I just read that my hosting company, GoDaddy, is on...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/08/29/ibm-x-force-handicaps-future-trends-in-security/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Security On A Shoestring SMB Budget</title>
		<link>http://infosec3t.com/2010/07/08/security-on-a-shoestring-smb-budget/</link>
		<comments>http://infosec3t.com/2010/07/08/security-on-a-shoestring-smb-budget/#comments</comments>
		<pubDate>Thu, 08 Jul 2010 15:03:49 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Attacks]]></category>
		<category><![CDATA[Network]]></category>
		<category><![CDATA[Social Networking]]></category>
		<category><![CDATA[Systems]]></category>
		<category><![CDATA[Security Management]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=2266</guid>
		<description><![CDATA[The e-mail appeared to be an invitation from an old, junior high school friend. Yet when the hospital employee clicked on the link, it instead led her to a malicious site that installed a Trojan horse on her computer. In a little over a week, international cybercriminals used that beachhead to steal more than $600,000 [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-medium wp-image-2267" title="6a00e5539a104188340120a8b0302c970b-800wi" src="http://infosec3t.com/wp-content/uploads/2010/07/6a00e5539a104188340120a8b0302c970b-800wi-300x251.jpg" alt="" width="300" height="251" />The e-mail appeared to be an invitation from  an old, junior high school friend. Yet when the hospital employee  clicked on the link, it instead led her to a malicious site that  installed a Trojan horse on her computer. In a little over a week,  international cybercriminals used that beachhead to steal more than  $600,000 from the woman&#8217;s employer, according to a terse description of  the incident on the Information Systems <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">Security</a> Association’s Web site.</p>
<p>A number of similar incidents to this one highlight the <a href="http://infosec3t.com/tag/threats/" class="st_tag internal_tag" rel="tag" title="Posts tagged with threats">threats</a> of online crime facing small and midsize  businesses (SMBs), says Stan Stahl, president of Citadel Information  Group and president of the Los Angeles chapter of the ISSA.</p>
<p>&#8220;Typically, they say, &#8216;We have firewalls in place and have AV on all the  desktops, so I guess we are secure,&#8217;&#8221; Stahl says. &#8220;But today cybercrime  is so sophisticated that is not enough anymore.&#8221;</p>
<p>Read full article at <a href="http://www.darkreading.com/smb-security/security/attacks/showArticle.jhtml?articleID=225702557&amp;cid=RSSfeed" target="_blank">http://www.darkreading.com/smb-security/security/attacks/showArticle.jhtml?articleID=225702557&amp;cid=RSSfeed</a></p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/02/06/thoughts-on-skype-security/' rel='bookmark' title='Thoughts on Skype security'>Thoughts on Skype security</a> <small>Michael Gough, an information security specialist and president of the...</small></li>
<li><a href='http://infosec3t.com/2010/03/08/did-you-facebook-ceo-play-fast-and-loose-with-user-login-data/' rel='bookmark' title='Did Facebook CEO play fast and loose with user login data?'>Did Facebook CEO play fast and loose with user login data?</a> <small>Did you Facebook CEO play fast and loose with user...</small></li>
<li><a href='http://infosec3t.com/2010/02/10/irs-reminds-you-not-to-go-phishing-this-tax-season/' rel='bookmark' title='IRS reminds you not to go Phishing this tax season'>IRS reminds you not to go Phishing this tax season</a> <small>It&#8217;s tax time again and IRS phishing scams are alive...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/07/08/security-on-a-shoestring-smb-budget/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Moving data storage to the cloud? What&#8217;s your business continuity plan?</title>
		<link>http://infosec3t.com/2010/07/05/moving-data-storage-to-the-cloud-whats-your-business-continuity-plan/</link>
		<comments>http://infosec3t.com/2010/07/05/moving-data-storage-to-the-cloud-whats-your-business-continuity-plan/#comments</comments>
		<pubDate>Mon, 05 Jul 2010 18:59:41 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Network]]></category>
		<category><![CDATA[Systems]]></category>
		<category><![CDATA[availability]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[risk]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=2259</guid>
		<description><![CDATA[Many trumpet increased availability as a reason to move to the cloud but what happens when your cloud provider is no longer available? Some companies are faced with this very question this week as storage provider, EMC  announced its plan to shut down its Atmos Online cloud storage service immediately, according to a posting on [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-2261" title="ptr_emc-sm" src="http://infosec3t.com/wp-content/uploads/2010/07/ptr_emc-sm.jpg" alt="" width="169" height="98" />Many trumpet increased <a href="http://infosec3t.com/tag/availability/" class="st_tag internal_tag" rel="tag" title="Posts tagged with availability">availability</a> as a reason to move to the cloud but what happens when your cloud provider is no longer available?</p>
<p>Some companies are faced with this very question this week as storage provider, EMC  announced its plan to shut down its Atmos Online cloud storage service immediately, according to <a href="http://www.atmosonline.com/" target="new">a posting on its  website</a>.</p>
<p>EMC launched Atmos Online in May 2009, calling it &#8220;Cloud Optimized Storage [with] capabilities that can scale effectively,  coupled with <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> and management tools.&#8221;  This placed EMC in direct competition with some of its service provider partners who used EMC&#8217;s Atmos technology to provide cloud storage to its customers.</p>
<p>EMC has now  downgraded Atmos Online to a development platform and is offering no guarantee as to the availability of user data moving forward. EMC used its web posting to &#8220;strongly encourage [companies to] migrate any critical data or production  workloads currently served via Atmos Online to one of our partners  offering Atmos based services,&#8221;</p>
<p>The provider going out of business is one of the many risks companies have to address when considering moving their critical data into the cloud. In this case, companies now have to spend resources doing the necessary due diligence in selecting an alternative cloud storage provider.</p>
<p>According to Morris Cody, CIO at Washington D.C. based Information Security Services Firm, Secure Intervention, companies moving to the cloud better consider the following:</p>
<div>1) Disaster Recover Plan &#8211;  The bottom line is that no cloud provider can guarantee 100% up time all the time. Even a cloud provider as large as Google has experienced an outage in it&#8217;s cloud environment.  In that case, a solid disaster recover plan will help mitigate loses from several different perspectives (i.e., monetary, branding, current clients, new clients)</p>
<p>2) BCP &#8211; Having a business continuity plan in place that will work in conjunction with you cloud provide capabilities will mitigate the <a href="http://infosec3t.com/tag/risk/" class="st_tag internal_tag" rel="tag" title="Posts tagged with risk">risk</a> of an outage do to an scheduled / unscheduled event (not necessarily a disaster) in you cloud provider environment.</p>
<p>3) SLA &#8211; a strong SLA should be established with your cloud provider that will hold them accountable for losses or damages (define losses and damages) do to changes in their environment that effect your business.  For example, if your cloud provider decides to shutdown the cloud hosting services, then they should be responsible for the cost to migrate your apps/data to the new hosting provider&#8221;</p></div>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/05/20/the-real-arguments-for-cloud-computing/' rel='bookmark' title='The real arguments for Cloud Computing'>The real arguments for Cloud Computing</a> <small>As more vendors dive into the cloud computing market, every...</small></li>
<li><a href='http://infosec3t.com/2010/09/12/will-your-cloud-provider-be-around-in-two-years/' rel='bookmark' title='Will your Cloud Provider be around in two years?'>Will your Cloud Provider be around in two years?</a> <small>I just read that my hosting company, GoDaddy, is on...</small></li>
<li><a href='http://infosec3t.com/2010/03/04/cloud-computing-loss-of-confidentiality/' rel='bookmark' title='Cloud Computing = Loss of Confidentiality?'>Cloud Computing = Loss of Confidentiality?</a> <small>Interesting excerpt from article in ITWorldCanada: &#8220;Adi Shamir, a computer...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/07/05/moving-data-storage-to-the-cloud-whats-your-business-continuity-plan/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Pentagon and Congress wants control of your network during cyberattack</title>
		<link>http://infosec3t.com/2010/06/06/pentagon-and-congress-wants-control-of-your-network-during-cyberattack/</link>
		<comments>http://infosec3t.com/2010/06/06/pentagon-and-congress-wants-control-of-your-network-during-cyberattack/#comments</comments>
		<pubDate>Sun, 06 Jun 2010 16:25:04 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Network]]></category>
		<category><![CDATA[Thoughts]]></category>
		<category><![CDATA[cyberwar]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=2243</guid>
		<description><![CDATA[There has been a lot of chatter in the news lately about the possibility of a &#8220;widespread coordinated&#8221; cyber attack against our critical infrastructure  and our ability to successfully defend against it.  Most of this infrastructure ( eg. utilities, finance, transportation, etc) is owned by private companies. Those currently responsible to protecting these networks will [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-2246" title="cyber war" src="http://infosec3t.com/wp-content/uploads/2010/06/cyber-war.jpg" alt="" width="300" height="182" />There has been a lot of chatter in the news lately about the possibility of a &#8220;widespread coordinated&#8221; cyber attack against our critical infrastructure  and our ability to successfully defend against it.  Most of this infrastructure ( eg. utilities, finance, transportation, etc) is owned by private companies. Those currently responsible to protecting these networks will tell you that we are already under attack.  Is there a <a href="http://infosec3t.com/tag/cyberwar/" class="st_tag internal_tag" rel="tag" title="Posts tagged with cyberwar">cyberwar</a> going on?  Howard Schmidt, the White House&#8217;s Cyber Czar says &#8220;No&#8221;. But let&#8217;s not argue semantics. War, skirmish, tomfoolery&#8230;call it what  you may. Many experts will confess the US is unprepared for a major cyberattack.</p>
<p>What is the government&#8217;s role in protecting these private networks? Should it have a role at all? Although some in the private sector are still debating these questions, the government has already moved in action. Last month, the DoD launched its new Cyber Command, headquartered at Ft. Meade, Maryland. Military observers still aren&#8217;t quite sure what this supposed to do. The Pentagon’s number two, Deputy Secretary William Lynn, in a gathering of cybersecurity officials and defense contractors,  floated the idea that the &#8220;Defense Department  might start a protective program for civilian networks&#8221;.</p>
<p>According to Lynn, companies may &#8220;opt out &#8221; of the program but by doing so would place us all at <a href="http://infosec3t.com/tag/risk/" class="st_tag internal_tag" rel="tag" title="Posts tagged with risk">risk</a>.  Does that  mean, by default, all companies are considered in the program?</p>
<p>The congress also is taking action. A draft bill, co-sponsored by Sens. Joe Lieberman (I-Conn.) and Susan  Collins (R-Maine), gives the Department of Homeland <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">Security</a> authority  to keep &#8220;critical infrastructure&#8221; up and running during a &#8220;cybersecurity  emergency&#8221;.</p>
<p>It would be interesting to see the bill&#8217;s definition of cybersecurity emergency.   All would agree that coordinated defense is essential. The federal government is probably the only entity able to provide that coordination on a national scale.  Coordination is one thing. Control, however, well that&#8217;s another animal.</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2012/05/10/no-national-stand-your-cyberground-law-please/' rel='bookmark' title='No National &#8216;Stand Your Cyberground&#8217; Law Please'>No National &#8216;Stand Your Cyberground&#8217; Law Please</a> <small>Patrick Lin, who is Assistant Professor and Director of Ethics and...</small></li>
<li><a href='http://infosec3t.com/2010/02/01/protecting-wireless-network-from-hackers-and-neighbors/' rel='bookmark' title='Protecting Wireless Network From Hackers and Neighbors'>Protecting Wireless Network From Hackers and Neighbors</a> <small>Local wireless networks, which provide information to receive and send...</small></li>
<li><a href='http://infosec3t.com/2010/02/01/protect-the-internal-network-from-hackers/' rel='bookmark' title='Protect the Internal Network From Hackers'>Protect the Internal Network From Hackers</a> <small>Attention! All the hackers on the systems of various according...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/06/06/pentagon-and-congress-wants-control-of-your-network-during-cyberattack/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The real arguments for Cloud Computing</title>
		<link>http://infosec3t.com/2010/05/20/the-real-arguments-for-cloud-computing/</link>
		<comments>http://infosec3t.com/2010/05/20/the-real-arguments-for-cloud-computing/#comments</comments>
		<pubDate>Thu, 20 May 2010 19:07:11 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Applications]]></category>
		<category><![CDATA[Network]]></category>
		<category><![CDATA[Systems]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[open source]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=2209</guid>
		<description><![CDATA[As more vendors dive into the cloud computing market, every possible claim regarding the supposed benefits of moving to a cloud-based service is being made.  I ran across an article titled &#8221; Why Cloud-based Monitoring is more reliable and secure than Nagios. &#8221; The auth0r, who represented a cloud-based network monitoring company, contended that the [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-medium wp-image-2211" title="cloud-computing" src="http://infosec3t.com/wp-content/uploads/2010/05/zenith-infotech-virtualized-cloud-computing-300x200.jpg" alt="" width="189" height="127" />As more vendors dive into the <a href="http://infosec3t.com/tag/cloud-computing/" class="st_tag internal_tag" rel="tag" title="Posts tagged with cloud computing">cloud computing</a> market, every possible claim regarding the supposed benefits of moving to a cloud-based service is being made.  I ran across an article titled &#8221; Why Cloud-based Monitoring is more reliable and secure than Nagios. &#8221; The auth0r, who represented a cloud-based network monitoring company, contended that the Software-as-a-Service (SaaS) model offered by his company was better for companies than Nagios and other <a href="http://infosec3t.com/tag/open-source/" class="st_tag internal_tag" rel="tag" title="Posts tagged with open source">open source</a> products.</p>
<p>The question is not  Cloud Computing vs. Open Source.  In fact, there are open source SaaS providers like MindTouch out there.  If considering a product like Nagios, a better comparison would be open source vs. commercial.  In many cases, cost is the determining factor for companies to look  to open source technologies. Other considerations include flexibility and <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a>.</p>
<p>The more relevant  comparison would be hosting and managing a network monitoring system on site vs. moving to a SaaS provider. For many organizations,  IT is considered overhead and not the primary function of the organization. Companies move to the cloud for most of the same reasons companies out-source.  Can someone else do it better for less?  Cost is ually the easier consideration. Companies have to grapple with the &#8216;better&#8217;. Does it mean more security, <a href="http://infosec3t.com/tag/availability/" class="st_tag internal_tag" rel="tag" title="Posts tagged with availability">availability</a>, capacity? Many cloud providers would say &#8216;yes&#8217; to all and then some.  Organizations have to really consider and make that determination themselves. Make a real comparision between their options and not just follow the typical vendor hype.</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/05/17/exploring-cloud-computing-information-leakage/' rel='bookmark' title='Exploring Cloud Computing Information Leakage'>Exploring Cloud Computing Information Leakage</a> <small>If you are in cloud computing security (or part of...</small></li>
<li><a href='http://infosec3t.com/2010/03/04/cloud-computing-loss-of-confidentiality/' rel='bookmark' title='Cloud Computing = Loss of Confidentiality?'>Cloud Computing = Loss of Confidentiality?</a> <small>Interesting excerpt from article in ITWorldCanada: &#8220;Adi Shamir, a computer...</small></li>
<li><a href='http://infosec3t.com/2010/07/05/moving-data-storage-to-the-cloud-whats-your-business-continuity-plan/' rel='bookmark' title='Moving data storage to the cloud? What&#8217;s your business continuity plan?'>Moving data storage to the cloud? What&#8217;s your business continuity plan?</a> <small>Many trumpet increased availability as a reason to move to...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/05/20/the-real-arguments-for-cloud-computing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cloud Computing Security: An Insider&#039;s View</title>
		<link>http://infosec3t.com/2010/04/02/cloud-computing-security-an-insiders-view/</link>
		<comments>http://infosec3t.com/2010/04/02/cloud-computing-security-an-insiders-view/#comments</comments>
		<pubDate>Fri, 02 Apr 2010 22:40:33 +0000</pubDate>
		<dc:creator>Guest Blogger</dc:creator>
				<category><![CDATA[Network]]></category>
		<category><![CDATA[Systems]]></category>
		<category><![CDATA[cloud computing]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=2062</guid>
		<description><![CDATA[As CSO of Qualys, Randy Barr is responsible for security, risk management and business continuity planning of the QualysGuard platform. In this video Randy talks about cloud computing security from an insider&#8217;s point of view. He illustrates what a security professional has to go through when building a security program for a cloud environment. For [...]]]></description>
			<content:encoded><![CDATA[<!-- ProPlayer by Isa Goksu --><div name="mediaspace" id="mediaspace"><div class="pro-player-container" width="575px" height="350px"><div id="pro-player-2062pp-single-4fb96da494730"></div></div></div><script type="text/javascript" charset="utf-8">var flashvars = {width: "575",height: "350",autostart: "false",repeat: "false",backcolor: "111111",frontcolor: "cccccc",lightcolor: "66cc00",stretching: "fill",enablejs: "true",mute: "false",skin: "http://infosec3t.com/wp-content/plugins/proplayer/players/skins/default.swf",image: "http://infosec3t.com/wp-content/plugins/proplayer/players/preview.png",plugins: "",javascriptid: "2062pp-single-4fb96da494730",image: "http://infosec3t.com/wp-content/plugins/proplayer/players/preview.png",file: 'http://infosec3t.com/wp-content/plugins/proplayer/playlist-controller.php?pp_playlist_id=2062pp-single-4fb96da494730&sid=1337552292'};var params = {wmode: "transparent",allowfullscreen: "true",allowscriptaccess: "always",allownetworking: "all"};var attributes = {id: "obj-pro-player-2062pp-single-4fb96da494730",name: "obj-pro-player-2062pp-single-4fb96da494730"};swfobject.embedSWF("http://infosec3t.com/wp-content/plugins/proplayer/players/player.swf", "pro-player-2062pp-single-4fb96da494730", "575", "350", "9.0.0", false, flashvars, params, attributes);</script>
<p>As CSO of Qualys, Randy Barr is responsible for <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a>, <a href="http://infosec3t.com/tag/risk/" class="st_tag internal_tag" rel="tag" title="Posts tagged with risk">risk</a> management and business continuity planning of the QualysGuard platform. In this video Randy talks about <a href="http://infosec3t.com/tag/cloud-computing/" class="st_tag internal_tag" rel="tag" title="Posts tagged with cloud computing">cloud computing</a> <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> from an insider&#8217;s point of view. He illustrates what a <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> professional has to go through when building a <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> program for a cloud environment.</p>
<p>For more security-related material visit Help Net Security: <a title="http://www.net-security.org" dir="ltr" rel="nofollow" href="http://www.youtube.com/redirect?username=helpnetsecurity&amp;q=http%3A%2F%2Fwww.net-security.org&amp;video_id=B2FMMcyYbt4&amp;event=url_redirect&amp;url_redirect=True&amp;usg=suzeyLKuY4EHJkc0rTGEIAE5EAs=" target="_blank">http://www.net-security.org</a></p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/05/20/the-real-arguments-for-cloud-computing/' rel='bookmark' title='The real arguments for Cloud Computing'>The real arguments for Cloud Computing</a> <small>As more vendors dive into the cloud computing market, every...</small></li>
<li><a href='http://infosec3t.com/2009/12/10/cloud-security-alliance/' rel='bookmark' title='Cloud Security Alliance'>Cloud Security Alliance</a> <small>For more information on Cloud Computing Security, a good resource...</small></li>
<li><a href='http://infosec3t.com/2010/05/17/exploring-cloud-computing-information-leakage/' rel='bookmark' title='Exploring Cloud Computing Information Leakage'>Exploring Cloud Computing Information Leakage</a> <small>If you are in cloud computing security (or part of...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/04/02/cloud-computing-security-an-insiders-view/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>RSA 2010 Recap</title>
		<link>http://infosec3t.com/2010/03/05/rsa-2010-recap/</link>
		<comments>http://infosec3t.com/2010/03/05/rsa-2010-recap/#comments</comments>
		<pubDate>Fri, 05 Mar 2010 17:44:20 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Applications]]></category>
		<category><![CDATA[Network]]></category>
		<category><![CDATA[Systems]]></category>
		<category><![CDATA[Users]]></category>
		<category><![CDATA[awareness]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[rsa]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=1735</guid>
		<description><![CDATA[Today is the last day of RSA Conference 2010. If you didn’t make it,  CSOonline.com has provided a recap of the highlights here.]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-1736" title="RSA2010" src="http://infosec3t.com/wp-content/uploads/2010/03/RSA2010.jpg" alt="" width="220" height="220" />Today is the last day of <a href="http://infosec3t.com/tag/rsa/" class="st_tag internal_tag" rel="tag" title="Posts tagged with rsa">RSA</a> Conference 2010. If you didn&#8217;t make it,  CSOonline.com has provided a recap of the highlights:</p>
<p><strong>RSA COVERAGE</strong></p>
<p><a href="http://www.csoonline.com/article/563513" target="_blank">RSA 2010: Infosec Pros Get Raises Despite Recession </a>An (ISC)2 survey suggests salary increases and hiring went up for many <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> practitioners in the last year despite the    Great Recession. Ironically, the recession may be WHY it&#8217;s happening.</p>
<p><a href="http://www.csoonline.com/article/559863">RSA 2010: Why 41 Percent of You Would Fail a PCI Audit </a>Miscellaneous news bytes from the RSA 2010 press room: QSAs tell Ponemon Institute that 41 percent of companies would bomb    their PCI security audit; hackers industrialize their sinister revolution and VeriSign opens a new compatibility lab.</p>
<p><a href="http://www.csoonline.com/article/558913" target="_blank">RSA 2010: Can Adobe Stop the Hate? </a>Security pros are unhappy with Adobe Systems over recent flaws and attacks. Adobe Security Chief Brad Arkin on what the company    is doing about it.</p>
<p><a href="http://www.csoonline.com/article/556713" target="_blank">RSA Conference 2010: 4 Survival Tips</a>For the newcomer, the RSA security conference can be overwhelming. Follow these four strategies to get the most from it.</p>
<p><a href="http://www.csoonline.com/article/564387" target="_blank">Social Networking is Risky Business</a> From Computerworld: A panel discusses the risks associated with social <a href="http://infosec3t.com/tag/networking/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Networking">networking</a> sites.</p>
<p><a href="http://www.csoonline.com/article/564375" target="_blank">Chertoff: Tracking Attacks to the Source is Key for Cybersecurity</a> From Computerworld: An exclusive interview with former DHS leader Michael Chertoff.</p>
<p><strong>RSA PODCASTS</strong></p>
<p>RSA 2010: Microsoft&#8217;s Plan for Cloud Security Audio: Microsoft VP Jim Jones explains his company&#8217;s approach for securing its services in the cloud.</p>
<p><a href="http://www.csoonline.com/podcast/559463" target="_blank">RSA 2010: Verizon Releases Its Threat Report Recipe</a> Verizon Business will share the research framework used for its Data Breach Investigations Reports so companies can create    reports tailored to their specific environments.</p>
<p><strong>SECURITY B-SIDES COVERAGE</strong></p>
<p><a href="http://www.csoonline.com/article/561913" target="_blank">Security B-Sides: Perfect Authentication Remains Elusive </a>Everyone realizes passwords have their shortcomings. But alternatives like two-factor authentication are not as powerful as    one would expect. The problem? As always &#8212; human behavior.</p>
<p><a href="http://www.csoonline.com/article/561663" target="_blank">One Man&#8217;s Life on the Security D-List</a> At Security B-Sides, infosec author Andrew Hay explains the four pillars for moving from the bottom of the IT security shop    to a place of respect, and why getting to the A-list isn&#8217;t all it&#8217;s cracked up to be.</p>
<p><a href="http://www.csoonline.com/article/554613" target="_blank">Security B-Sides: Rise of the &#8216;Anti-conference&#8217; </a>The RSA 2010 conference had some nearby competition. Here&#8217;s the story of Security B-Sides as the conference alternative.</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/02/07/shmoocom-2010-videos-online/' rel='bookmark' title='Shmoocon 2010 Videos Online'>Shmoocon 2010 Videos Online</a> <small>Shmoocon was this weekend. Unfortunately,I couldn&#8217;t get a ticket this...</small></li>
<li><a href='http://infosec3t.com/2010/04/20/top-10-web-application-security-risks-for-2010/' rel='bookmark' title='Top 10 Web Application Security Risks for 2010'>Top 10 Web Application Security Risks for 2010</a> <small>Yesterday, OWASP released its list of top ten web application...</small></li>
<li><a href='http://infosec3t.com/2010/01/02/black-hat-dc-2010-is-here/' rel='bookmark' title='Black Hat DC -2010 is here!'>Black Hat DC -2010 is here!</a> <small>Black Hat, one of the biggest and most popular security...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/03/05/rsa-2010-recap/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Protect the Internal Network From Hackers</title>
		<link>http://infosec3t.com/2010/02/01/protect-the-internal-network-from-hackers/</link>
		<comments>http://infosec3t.com/2010/02/01/protect-the-internal-network-from-hackers/#comments</comments>
		<pubDate>Mon, 01 Feb 2010 20:42:40 +0000</pubDate>
		<dc:creator>Guest Blogger</dc:creator>
				<category><![CDATA[Network]]></category>
		<category><![CDATA[denial of service attacks]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[MAC]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[security holes]]></category>
		<category><![CDATA[trojan horses]]></category>
		<category><![CDATA[worms]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=1223</guid>
		<description><![CDATA[Attention! All the hackers on the systems of various according to their sects and wishes are eager to penetrate your network, but you can defeat these attacks by providing an appropriate combination of security tactics. Networks are daily threaded with attacks, so you need to provide permanent protection.]]></description>
			<content:encoded><![CDATA[<p>Attention! All the hackers on the systems of various according to their sects and wishes are eager to penetrate your network, but you can defeat these attacks by providing an appropriate combination of security tactics.</p>
<p>Networks are daily threaded with attacks, so you need to provide permanent protection. No doubt that the most common threats are: first, the viruses, which are small programs that in reality is trying to infiltrate your network and fool the computer, entering it as an attachment with an e-mail message, beginning immediately after opening the attached file, repeating the same self in the system of your computer. Secondly, Trojan horses which run through the computer by entering the applications or data files are useful, and that is activated on the Trojans after the mediation of specific programs; even begin to take over the reins in the system of your computer.</p>
<p>Thirdly, the <a href="http://infosec3t.com/tag/worms/" class="st_tag internal_tag" rel="tag" title="Posts tagged with worms">worms</a> that are also working to replicate itself and spread to begin the search for <a href="http://infosec3t.com/tag/security-holes/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security holes">security holes</a> in your system, so as to penetrate your system, and often remain hidden until the right opportunity to start attack of the distributed service (DDoS). No doubt that these three types of attacks pose a major <a href="http://infosec3t.com/tag/threat/" class="st_tag internal_tag" rel="tag" title="Posts tagged with threat">threat</a> to his company&#8217;s data and your personal data as well. Of course, you don&#8217;t want or any one of the owners of companies that their networks are points of attack to distributed <a href="http://infosec3t.com/tag/denial-of-service-attacks/" class="st_tag internal_tag" rel="tag" title="Posts tagged with denial of service attacks">denial of service attacks</a>. Therefore, we must first ensure that the protection of all devices connected to your company, and the first step to ensure this protection is to provide these devices with firewall, which is a line of defense to it.</p>
<p>But is it enough to spend hundreds of dollars for the provision of firewalls, or that the cost would amount to several thousands of dollars? On the walls at a minimum be equipped with an examination engine of the data package (SPI), which examines the content of packages of data and gives the right of access to your network, in the event it was free from malicious software code.</p>
<p>How to use the firewall?</p>
<p>Firewalls can also be based on certain rules or filters block the movement of inappropriate incoming and outgoing data. It can benefit the choice of Internet Protocol (IP) for example, and to prevent existing staff in the network access to the protocol specific addresses on the Internet or receiving emails from them. Firewalls can also block the movement of data in the network based on a unique identifier named &#8221; the title of control to access to the&#8221; (MAC). Many of firewalls can control in data by using filters of key words or scope, and permit data which is destined for a particular location. Firewalls also allow the creation of more sophisticated to make more complex rules for the data.</p>
<p>There is a better option than the firewall which is equipped with the test engine of the data packages (SPI), is the firewall, which depends on the engine of test of the deep data packages (DPI). It works great test engine (DPI) to examine the full content of the data package in addition to the advantage of examining the packet header to be performed by the firewall engine equipped with the examination of the data packages (SPI). The engines can deep packet inspection of data, during the examination of the contents of packets to discover and prevent many types of attacks: denial of service attacks, such as (DoS), and rash cache, and attacks the guise of Internet Protocol, in addition to a series of attacks by worms. The more the costs of the firewalls as become more like instruments of security, as a result of processing the applications of intent to combat viruses, spyware and virtual private networks (VPNs).</p>
<p>Know the firewall that you need</p>
<p>When the cost of the firewall is cheap, the process was prepared more easily, because the additional costs of course will provide more options, and as we know that when the number of options are increased and available, The process of the preparation of these options are more complex, so we recommend you first to learn what works well on protection, and what are the threats that want to keep away from you. For that we recommend first to write a list of all the services that users need to access, such as web sites and e-mail servers and FTP servers in addition to the messenger services and remote access of data, because the firewall can filter services on the basis of the nomination of port numbers (a way of addressing a particular service in a computer) used by these services, and Internet Protocol address of the source or destination of data. We will mention the following examples of common services outlets figures, namely: 80 of 23 service and HTTP service Telnet and FTP service for the 21 and 25 of the service SMTP.</p>
<p>There is no doubt that the safest way to build a list of control to access to services is beginning block all data movements, and then revisit it after the disengagement to the services required for the block one after the other, such as allowing the movement of data on port 25, if these data are bound to Internet protocol address on your e-mail in your network. If you need access to services in the internal network of computers outside your network, such as Web servers or e-mail servers, you will build more complex rules of the nomination. You can know if the firewall, which has used an outlet of the neutral area DMZ to connect with these services and to be able to isolate the services open to external networks, on the internal network, but if the firewall does not have an outlet for the neutral area DMZ, then supposed to be allowed to feature passage of the performing the work, a process in which all the movements of short data service on a particular Internet protocol address of an internal party. For those who are afraid of the topic of writing the rules for the nomination to firewalls, we say that the operations are not difficult, as appears to them, they soon learn to establish a simple set of such rules, they will learn quickly accomplish complex rules, but if they insist on their fear of the establishment of rules for the nomination, they then use specialists.</p>
<p>Author: Shrif S Kassem<br />Article Source: EzineArticles.com<br />Provided by: <a href="http://digitalcameratimes.com/">Digital Camera Information</a></p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/01/05/beware-of-free-internet-connections/' rel='bookmark' title='Beware of Free Internet Connections'>Beware of Free Internet Connections</a> <small>Many hotels,coffee shops and other such establishments  offer free wireless...</small></li>
<li><a href='http://infosec3t.com/2010/02/21/a-guide-to-computer-security/' rel='bookmark' title='A Guide to Computer Security'>A Guide to Computer Security</a> <small>As the number of people connecting to the Internet continues...</small></li>
<li><a href='http://infosec3t.com/2010/02/01/protecting-wireless-network-from-hackers-and-neighbors/' rel='bookmark' title='Protecting Wireless Network From Hackers and Neighbors'>Protecting Wireless Network From Hackers and Neighbors</a> <small>Local wireless networks, which provide information to receive and send...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/02/01/protect-the-internal-network-from-hackers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>2010 Year of the Zombie Cloud</title>
		<link>http://infosec3t.com/2010/01/27/2010-year-of-the-zombie-cloud/</link>
		<comments>http://infosec3t.com/2010/01/27/2010-year-of-the-zombie-cloud/#comments</comments>
		<pubDate>Wed, 27 Jan 2010 17:27:20 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Network]]></category>
		<category><![CDATA[Social Networking]]></category>
		<category><![CDATA[Systems]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[illegal website]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[threats]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=1072</guid>
		<description><![CDATA[As more organizations consider moving into the cloud to benefit from the evident cost savings  and focus more on their core business functions, the bad guys are also looking for the benefits. 2009 has been a notable year for malware and malicious online activity for a number of reasons and several of them relate to [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://infosec3t.com/wp-content/uploads/2010/01/zombie-gnaws-on-imac_270x405.jpg"><img class="size-medium wp-image-1073 alignleft" title="zombie-gnaws-on-imac_270x405" src="http://infosec3t.com/wp-content/uploads/2010/01/zombie-gnaws-on-imac_270x405-200x300.jpg" alt="" width="200" height="300" /></a></p>
<p>As more organizations consider moving into the cloud to benefit from the evident cost savings  and focus more on their core business functions, the bad guys are also looking for the benefits.</p>
<p>2009 has been a notable year for <a href="http://infosec3t.com/tag/malware-attacks/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Malware">malware</a> and malicious online activity for a number of reasons and several of them relate to what is known as botnets. A zombie, or a bot, is a PC infected by <a href="http://infosec3t.com/tag/malware-attacks/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Malware">malware</a> that brings it under the remote control of a criminal. Criminals run networks that can range from thousands to millions of infected machines and they use them to power most of the cybercrime we see today including spam, DDoS, scareware, phishing, and malicious or illegal website hosting. They have a finger in every cybercriminal pie.</p>
<p>In the first half of the year, the Conficker worm (also known as Downadup or Kido) stole all the headlines in the malware world. Eventually the Conficker botnet was seen to deliver standard cybercriminal payloads, such as spambots and Fake AV (or scareware), much to the disappointment of some of the more hysterical commentators. Just because the outbreak received so much coverage that died away just as rapidly, don’t be fooled into thinking this threat has gone away. The Conficker Working Group, an alliance of <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> vendors, researchers and other commercial organisations is currently showing around 6 million unique IP addresses as appearing to be infected with this malware.</p>
<p>An unrelated, but important trend in 2009 was the exponential increase in the abuse of social networking providers for malicious purposes. The enormous active user populations on sites like <a href="http://infosec3t.com/tag/facebook/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Facebook">Facebook</a>, Twitter and MySpace prove a very attractive lure to organised online crime and its attendant money-making, bot recruitment and Fake AV pushing <a href="http://infosec3t.com/tag/scams/" class="st_tag internal_tag" rel="tag" title="Posts tagged with scams">scams</a>. <a href="http://infosec3t.com/tag/facebook/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Facebook">Facebook</a> has been abused by rogue Apps, designed to fool users into clicking links that reward the creator through pay-per-click affiliate advertising networks. It has also been used to spread malware through many means; malicious links in wall posts and messages, malware designed specifically to hijack accounts and by external compromise of legitimate <a href="http://infosec3t.com/tag/facebook/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Facebook">Facebook</a> Apps. The Koobface family of malware (also a botnet) has evolved over the course of 2009; it was initially spread through malicious messages and wall posts with links to fake YouTube sites punting a supposed codec in order to view the video. The codec of course was nothing of the sort and led to infection and account hijacking. Koobface now though has evolved to the point where it is fully capable of creating its own fake <a href="http://infosec3t.com/tag/facebook/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Facebook">Facebook</a> profile pages, complete with confirmed Gmail address, photo and biographical data. These fake accounts then set about joining networks and sending friend requests again all in a completely automated fashion.</p>
<p>Read more at <a href="http://countermeasures.trendmicro.eu/2010-year-of-the-zombie-cloud/" target="_blank">http://countermeasures.trendmicro.eu/2010-year-of-the-zombie-cloud/</a></p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/03/17/another-fake-security-software-alert/' rel='bookmark' title='Another fake security software alert'>Another fake security software alert</a> <small>I&#8221;ve previously warned of fake security software or scareware. Here&#8217;s...</small></li>
<li><a href='http://infosec3t.com/2010/01/28/fake-virus-alert-spreads-massively-across-facebook/' rel='bookmark' title='Fake virus alert spreads massively across Facebook'>Fake virus alert spreads massively across Facebook</a> <small>Panda Security has released the following advisory: In the last...</small></li>
<li><a href='http://infosec3t.com/2010/08/14/sweet-yourr-bootyy-look-awseome-on-thiss-ivdeo/' rel='bookmark' title='Sweet!! Yourr bootyy look awseome on thiss ivdeo!'>Sweet!! Yourr bootyy look awseome on thiss ivdeo!</a> <small>Gee Thanks! I&#8217;ve been working out! &#8230;..oh wait a minute!...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/01/27/2010-year-of-the-zombie-cloud/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

