<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet href="/css/rss20.xsl" type="text/xsl"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/" xmlns:pheedo="http://www.pheedo.com/namespace/pheedo">
	<channel>
		<title>Security Wire Weekly</title>
		<link>http://itknowledgeexchange.techtarget.com/security-wire-weekly</link>
		<description>The cybersecurity industry’s premier podcasts featuring the latest information security news, interviews and information.</description>
		<pubDate>Thu, 02 Feb 2012 15:04:31 +0000</pubDate>
		<generator>http://wordpress.org/?v=2.6.2</generator>
		<language>en</language>
		<!-- podcast_generator="podPress/8.8" -->
		<copyright>&#xA9;SearchSecurity.com </copyright>
		<managingEditor>editor@searchsecurity.com (SearchSecurity.com)</managingEditor>
		<webMaster>editor@searchsecurity.com(SearchSecurity.com)</webMaster>
		<category>cybersecurity news</category>
		<ttl>1440</ttl>
		<itunes:keywords>Security, Information Security, Security flaws, security vulnerabilities, hacking techniques, hackers, security compliance, data security breach</itunes:keywords>
		<itunes:subtitle>A SearchSecurity.com Podcast</itunes:subtitle>
		<itunes:summary>Information security news and interviews with information security experts and professionals.</itunes:summary>
		<itunes:author>SearchSecurity.com</itunes:author>
		<itunes:category text="Technology">
			<itunes:category text="Tech News"/>
		</itunes:category>
		<itunes:category text="Technology">
			<itunes:category text="Podcasting"/>
		</itunes:category>
		<itunes:category text="Technology"/>
		<itunes:owner>
			<itunes:name>SearchSecurity.com</itunes:name>
			<itunes:email>editor@searchsecurity.com</itunes:email>
		</itunes:owner>
		<itunes:block>No</itunes:block>
		<itunes:explicit>no</itunes:explicit>
		<itunes:image href="http://media.techtarget.com/digitalguide/images/podcast/sSec_sww.jpg"/>
		<image>
			<url>http://media.techtarget.com/digitalguide/images/podcast/sSec_sww.jpg</url>
			<title>Security Wire Weekly</title>
			<link>http://itknowledgeexchange.techtarget.com/security-wire-weekly</link>
			<width>144</width>
			<height>144</height>
		</image>
		<atom:link rel="hub" href="http://www.pheedo.com/api/hub/"/>
		<atom:link rel="self" href="http://feeds.pheedo.com/techtarget/fHup" type="application/rss+xml"/>
		<item>
			<title>Sourcefire CTO Marty Roesch talks intrusion prevention, FireAMP</title>
			<link>http://www.pheedcontent.com/click.phdo?i=d821e6939f8048faf93c46551a17968d</link>
			<pheedo:origLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/intrusion-prevention-with-sourcefire-cto-marty-roesch/</pheedo:origLink>
			<comments>http://itknowledgeexchange.techtarget.com/security-wire-weekly/intrusion-prevention-with-sourcefire-cto-marty-roesch/#comments</comments>
			<pubDate>Thu, 02 Feb 2012 15:01:15 +0000</pubDate>
			<dc:creator>Robert Westervelt</dc:creator>
			<category><![CDATA[intrusion prevention]]></category>
			<category><![CDATA[Security Wire Weekly]]></category>
			<category><![CDATA[Network Security]]></category>
			<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/security-wire-weekly/intrusion-prevention-with-sourcefire-cto-marty-roesch/</guid>
			<description><![CDATA[
Marty Roesch, founder and CTO of Sourcefire talks about the future of intrusion prevention systems and whether technologies like the RSA NetWitness network security monitoring platform pose a threat to the IPS business. 
Roesch in his team recently introduced FireAMP, an integration of its $21 million acquisition of cloud-based antimalware vendor Immunet. FireAMP is an [...]<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:0bb0de7f70a507e6701f52a1358ec4dd:jJqRsd1z%2BTBAfVDDBZTFM330V2K6brtlmOGvMFchZKLfMIxEy%2FEnXcCXIY0ymUDVOvDSjlUf0Au9kN0%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:fc960cc3a25d068ca75b9fea3168cb1a:UxCDZMWMqSrnb0OM8wpZdjOQuhmxuJdGo7DgwMGZawHygKY7BNnXGoR0tDlv%2BkHGp1slophWfEsJWfY%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:468c7494fe9735682d3531c4ba2a0386:4dLnvidmVVQmn8HN5ewBWH7qMsuOR0meuQAnlyji9pzCOd3XSoG%2Fwcp3gN4PewrH112AihrVSKoBzg%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:905deb4951c338e6b81db636bb38bd72:nXsvgAT7SIGKo%2FBIZkghg8ko%2FuUtlz%2BP46IXoLhkUH9waXxYfYiU1SNlfayhW%2Bu1jepcgOnE2m7rrQ%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=d821e6939f8048faf93c46551a17968d&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=d821e6939f8048faf93c46551a17968d&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></description>
			<content:encoded><![CDATA[
<p><a href="http://www.sourcefire.com/about-us/executive-team/martin-roesch">Marty Roesch</a>, founder and CTO of Sourcefire talks about the future of <a href="http://searchsecurity.techtarget.com/guide/Best-Intrusion-Detection-and-Prevention-Products-2011">intrusion prevention systems</a> and whether technologies like the RSA <span style="font-family: &quot;Calibri&quot;,&quot;sans-serif&quot;font-style: normal">NetWitness</span><span class="st"> network security monitoring platform pose a threat to the IPS business. </span></p>
<p class="MsoNormal" style="margin-bottom: 0.0001pt"><span class="st">Roesch in his team recently introduced FireAMP, an integration of its $21 million acquisition of cloud-based antimalware vendor Immunet. FireAMP is an agent-based system that monitors end points and connects to Sourcefire’s servers, where the data is analyzed and shared with other users. <span> </span></span>Users of FireAMP will receive threat intelligence alerts on suspicious behavior and can block and remove malicious files, including malware that targets zero-day vulnerabilities.</p>
<p class="MsoNormal" style="margin-bottom: 0.0001pt">The rise of high-profile data breaches associated with targeted attacks, such as the RSA SecurID breach in 2011, has put a renewed focus on the importance of Intelligence gathering <span> </span>technologies. RSA, which acquired NetWitness last year, is positioning the network security monitoring platform as an awareness system, rather than a system used by forensics teams during a post breach investigation. But Roesch doesn’t see a major threat posed by NetWitness’ capabilities. He said the system requires users to analyze massive volumes of data, asking questions to make sense of it all.</p>
<p class="MsoNormal" style="margin-bottom: 0.0001pt">“That thing collects a lot of data and it’s pretty raw and in the past you needed to know what questions to ask the data to get anything out of it,” Roesch said. “I don’t see people putting IPS and IDS investments on hold because they’re looking at NetWitness. Since the acquisition happened they’ve been a lot quieter than when they were a private company. It will be interesting to see if their approach scales to solving the kind of problems we solve just knowing what I know about their sensing and collection infrastructure.”</p>
<p class="MsoNormal" style="margin-bottom: 0.0001pt">In a meeting with invited media, RSA recently presented its plans for NetWitness. The company is working on improving analytics to make it more of a real-time platform. The company credits its NetWitness deployment for detecting the SecurID breach, although attackers still had time to gain access to its intellectual property. RSA executives said they are working on integrating its Archer governance, risk and compliance platform to provide NetWitness with easier to use reporting and dashboard capabilities. <span> </span><span> </span></p>

<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:0bb0de7f70a507e6701f52a1358ec4dd:jJqRsd1z%2BTBAfVDDBZTFM330V2K6brtlmOGvMFchZKLfMIxEy%2FEnXcCXIY0ymUDVOvDSjlUf0Au9kN0%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:fc960cc3a25d068ca75b9fea3168cb1a:UxCDZMWMqSrnb0OM8wpZdjOQuhmxuJdGo7DgwMGZawHygKY7BNnXGoR0tDlv%2BkHGp1slophWfEsJWfY%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:468c7494fe9735682d3531c4ba2a0386:4dLnvidmVVQmn8HN5ewBWH7qMsuOR0meuQAnlyji9pzCOd3XSoG%2Fwcp3gN4PewrH112AihrVSKoBzg%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:905deb4951c338e6b81db636bb38bd72:nXsvgAT7SIGKo%2FBIZkghg8ko%2FuUtlz%2BP46IXoLhkUH9waXxYfYiU1SNlfayhW%2Bu1jepcgOnE2m7rrQ%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=d821e6939f8048faf93c46551a17968d&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=d821e6939f8048faf93c46551a17968d&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/security-wire-weekly/intrusion-prevention-with-sourcefire-cto-marty-roesch/feed/</wfw:commentRss>
			<pheedo:origEnclosureLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/wp-content/plugins/podpress/download.mp3?feed=1015/0/SecurityWireWeekly02012012.mp3</pheedo:origEnclosureLink>
			<enclosure url="http://www.pheedo.com/e/51ba18492b2a003ad366c05d1ffa8643/SecurityWireWeekly02012012.mp3" length="13" type="audio/mpeg"/>
			<itunes:duration>15:03</itunes:duration>
			<itunes:subtitle>Marty Roesch, founder and CTO of Sourcefire talks about the future of intrusion prevention systems and whether technologies like the RSA NetWitness network security monitoring ...</itunes:subtitle>
			<itunes:summary>Marty Roesch, founder and CTO of Sourcefire talks about the future of intrusion prevention systems and whether technologies like the RSA NetWitness network security monitoring platform pose a threat to the IPS business. 
Roesch in his team recently introduced FireAMP, an integration of its $21 million acquisition of cloud-based antimalware vendor Immunet. FireAMP is an agent-based system that monitors end points and connects to Sourcefirersquo;s servers, where the data is analyzed and shared with other users.  Users of FireAMP will receive threat intelligence alerts on suspicious behavior and can block and remove malicious files, including malware that targets zero-day vulnerabilities.
The rise of high-profile data breaches associated with targeted attacks, such as the RSA SecurID breach in 2011, has put a renewed focus on the importance of Intelligence gathering  technologies. RSA, which acquired NetWitness last year, is positioning the network security monitoring platform as an awareness system, rather than a system used by forensics teams during a post breach investigation. But Roesch doesnrsquo;t see a major threat posed by NetWitnessrsquo; capabilities. He said the system requires users to analyze massive volumes of data, asking questions to make sense of it all.
ldquo;That thing collects a lot of data and itrsquo;s pretty raw and in the past you needed to know what questions to ask the data to get anything out of it,rdquo; Roesch said. ldquo;I donrsquo;t see people putting IPS and IDS investments on hold because theyrsquo;re looking at NetWitness. Since the acquisition happened theyrsquo;ve been a lot quieter than when they were a private company. It will be interesting to see if their approach scales to solving the kind of problems we solve just knowing what I know about their sensing and collection infrastructure.rdquo;
In a meeting with invited media, RSA recently presented its plans for NetWitness. The company is working on improving analytics to make it more of a real-time platform. The company credits its NetWitness deployment for detecting the SecurID breach, although attackers still had time to gain access to its intellectual property. RSA executives said they are working on integrating its Archer governance, risk and compliance platform to provide NetWitness with easier to use reporting and dashboard capabilities.   
</itunes:summary>
			<itunes:keywords>intrusion,prevention,,Security,Wire,Weekly,,Network,Security</itunes:keywords>
			<itunes:author>SearchSecurity.com</itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<itunes:block>No</itunes:block>
		</item>
		<item>
			<title>Mapping malware networks</title>
			<link>http://www.pheedcontent.com/click.phdo?i=4617c47197630babfffb6734b43783cf</link>
			<pheedo:origLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/mapping-malware-networks/</pheedo:origLink>
			<comments>http://itknowledgeexchange.techtarget.com/security-wire-weekly/mapping-malware-networks/#comments</comments>
			<pubDate>Thu, 19 Jan 2012 16:29:34 +0000</pubDate>
			<dc:creator>Robert Westervelt</dc:creator>
			<category><![CDATA[malware]]></category>
			<category><![CDATA[Security Wire Weekly]]></category>
			<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/security-wire-weekly/?p=1009</guid>
			<description><![CDATA[
Chris Larsen, a senior malware researcher with Blue Coat Systems explains how his research team maps malware networks to gain a better understanding of attack infrastructure.
Researchers at Blue Coat Systems Inc. have been mapping malware to better understand malware delivery. In the Blue Coat 2011 Mid-year report (.pdf), the company found a variety of websites [...]<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:7e3f194caea86afd996957c645fd537b:M%2FNh8j1liIjm9ykCLROmo4sqXVuUSkN7dL7UgPocOGXCU1YkK96jSvOmY%2FOXpg0FuIn82KOvOHF3xM8%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:43cd3c4c051e458db3525b24a1ae5557:5CiYZRWnH3zBf7ljF7kkKRVyvD4FTos%2FRcQAkEzCLH6oC6nn7Oi7VfJEz4wFoMwbRYaolfvjv8yq7dg%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:faa8aa77c8faf9e00b64f376dc3ae6c4:ed3%2Bntx3fnXbr%2BignoHb%2F%2FU%2FDqbMGKBAHota1aFP%2BcDWfCGDJ%2FiX5l8AIEYU8Fh%2BHxEzoOSVddkusA%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:9191edc883432e9ea7be8a4ec8fcb2f2:odmfomXYsYs9r947a7vtk3GcbewDIK3O7enmY41Lq%2F%2FlqTJ863eNSBJmXQ0LPRR%2BRN9N%2FcwGZ6lqyg%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=4617c47197630babfffb6734b43783cf&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=4617c47197630babfffb6734b43783cf&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></description>
			<content:encoded><![CDATA[
<p><strong>Chris Larsen, a senior malware researcher with Blue Coat Systems explains how his research team maps malware networks to gain a better understanding of attack infrastructure.</strong></p>
<p>Researchers at Blue Coat Systems Inc. have been mapping malware to better understand malware delivery. In the <a title="Blue Coat 2011 Mid-Year Report" href="http://www.bluecoat.com/doc/16622" target="_blank">Blue Coat 2011 Mid-year report</a> (.pdf), the company found a variety of websites and online forums consistently used by cybercriminals to spread malware.</p>
<p>The problem stems not only from websites dealing with pornographic and pirated material. Attackers are taking advantage of common website vulnerabilities on trusted and popular websites for use by cybercrime.</p>
<p>In an update provided recently, Larsen said poisoned search engine results are constantly being used to drive traffic to those malicious sites. While search engine providers are labeling suspicious sites, cybercriminals have an agile process in place. They can switch domains on the fly to maintain up-time and continue spreading malware, overseeing an ever increasing number of infected machines, Larsen told&nbsp;<a href="http://SearchSecurity.com" title="http://SearchSecurity. " target="_blank">SearchSecurity.com</a>.</p>

<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:7e3f194caea86afd996957c645fd537b:M%2FNh8j1liIjm9ykCLROmo4sqXVuUSkN7dL7UgPocOGXCU1YkK96jSvOmY%2FOXpg0FuIn82KOvOHF3xM8%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:43cd3c4c051e458db3525b24a1ae5557:5CiYZRWnH3zBf7ljF7kkKRVyvD4FTos%2FRcQAkEzCLH6oC6nn7Oi7VfJEz4wFoMwbRYaolfvjv8yq7dg%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:faa8aa77c8faf9e00b64f376dc3ae6c4:ed3%2Bntx3fnXbr%2BignoHb%2F%2FU%2FDqbMGKBAHota1aFP%2BcDWfCGDJ%2FiX5l8AIEYU8Fh%2BHxEzoOSVddkusA%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:9191edc883432e9ea7be8a4ec8fcb2f2:odmfomXYsYs9r947a7vtk3GcbewDIK3O7enmY41Lq%2F%2FlqTJ863eNSBJmXQ0LPRR%2BRN9N%2FcwGZ6lqyg%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=4617c47197630babfffb6734b43783cf&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=4617c47197630babfffb6734b43783cf&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/security-wire-weekly/mapping-malware-networks/feed/</wfw:commentRss>
			<pheedo:origEnclosureLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/wp-content/plugins/podpress/download.mp3?feed=1009/0/SecurityWIreWeekly01182012.mp3</pheedo:origEnclosureLink>
			<enclosure url="http://www.pheedo.com/e/11bc519a77a71f7998c7b09ac8a1631c/SecurityWIreWeekly01182012.mp3" length="1" type="audio/mpeg"/>
			<itunes:duration>00:01:01</itunes:duration>
			<itunes:subtitle>Chris Larsen, a senior malware researcher with Blue Coat Systems explains how his research team maps malware networks to gain a better understanding of attack ...</itunes:subtitle>
			<itunes:summary>Chris Larsen, a senior malware researcher with Blue Coat Systems explains how his research team maps malware networks to gain a better understanding of attack infrastructure.

Researchers at Blue Coat Systems Inc. have been mapping malware to better understand malware delivery. In the Blue Coat 2011 Mid-year report (.pdf), the company found a variety of websites and online forums consistently used by cybercriminals to spread malware.

The problem stems not only from websites dealing with pornographic and pirated material. Attackers are taking advantage of common website vulnerabilities on trusted and popular websites for use by cybercrime.

In an update provided recently, Larsen said poisoned search engine results are constantly being used to drive traffic to those malicious sites. While search engine providers are labeling suspicious sites, cybercriminals have an agile process in place. They can switch domains on the fly to maintain up-time and continue spreading malware, overseeing an ever increasing number of infected machines, Larsen told SearchSecurity.com.
</itunes:summary>
			<itunes:keywords>malware,,Security,Wire,Weekly</itunes:keywords>
			<itunes:author>SearchSecurity.com</itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<itunes:block>No</itunes:block>
		</item>
		<item>
			<title>Security wins and fails of 2011 – Digital trust is bust, vendor research in context</title>
			<link>http://www.pheedcontent.com/click.phdo?i=4701a19eaf5e76e46f58d32eebd3cc86</link>
			<pheedo:origLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/security-wins-and-fails-of-2011-%e2%80%93-digital-trust-is-bust-security-vendor-research-in-context/</pheedo:origLink>
			<comments>http://itknowledgeexchange.techtarget.com/security-wire-weekly/security-wins-and-fails-of-2011-%e2%80%93-digital-trust-is-bust-security-vendor-research-in-context/#comments</comments>
			<pubDate>Tue, 03 Jan 2012 18:36:22 +0000</pubDate>
			<dc:creator>Robert Westervelt</dc:creator>
			<category><![CDATA[digital certificate breach]]></category>
			<category><![CDATA[Security Squad]]></category>
			<category><![CDATA[threat planning]]></category>
			<category><![CDATA[Operation Shady RAT]]></category>
			<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/security-wire-weekly/security-wins-and-fails-of-2011-%e2%80%93-digital-trust-is-bust-security-vendor-research-in-context/</guid>
			<description><![CDATA[
In part two of this two-part podcast, special guest Andrew Jaquith of Perimeter E-Security joins the SearchSecurity editorial team in exploring the highs and lows of 2011 for the security industry.
Digital certificate breaches have fueled an erosion of trust online, according to the SearchSecurity editorial team.  While researchers look for alternatives to the digital [...]<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:e3642edd425b2b3e8f927149b0804c0d:U%2FDgwfLRGF4gg8AH9MO%2BdBTA4ziI5IeVL3sOSCl9Y2VMZPwF44fpMMJfWHcmQpPKjPrqQ8HFb8oOgEE%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:0fa13b426721059dabd0cf16595767cb:ZZ9eEhVOmlEncmNjeMjfRAbNzjUsRu%2FXSQrrIgnj6eTD2mqlRyhskEYQ4kNxTfgUYBzNRBbITy%2FNZEw%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:926d487225d6c2afe55704d101a9bf7d:xBLh8OxbtsLNUm%2B4x9qOw3Z9%2BIjuB%2FqyUZ%2BdfqytVhqC2%2FAzi8mx929SsJPYkQIWK3GHZWSW%2B3rnxA%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:40800157d99d97bd029a24d9df688819:WLNoXNUqtmrBz45jDodYmCxhOhXP7SHtsTJ5a32Qc6X0i0tGsJ%2F9FA%2FpamdcAqtqR1%2Fu5zWi1Gkc6Q%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=4701a19eaf5e76e46f58d32eebd3cc86&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=4701a19eaf5e76e46f58d32eebd3cc86&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></description>
			<content:encoded><![CDATA[
<p><img class="alignleft" style="margin: 15px" src="http://media.techtarget.com/digitalguide/images/podcast/sSec_sec_squad-sm.jpg" alt="" hspace="15" vspace="15" width="125" height="125" align="left" /><strong>In part two of this two-part podcast, special guest Andrew Jaquith of Perimeter E-Security joins the SearchSecurity editorial team in exploring the highs and lows of 2011 for the security industry.</strong></p>
<p><a title="Browser makers block rogue SSL certificates" href="http://searchsecurity.techtarget.com/news/2240074265/Browser-makers-block-rogue-SSL-certificate" target="_blank">Digital certificate breaches</a> have fueled an erosion of trust online, according to the SearchSecurity editorial team.  While researchers look for <a title="certificate authority architecture alternatives" href="http://searchsecurity.techtarget.com/magazineContent/Breaches-prompt-call-for-certificate-authority-architecture-alternatives" target="_blank">alternatives to the digital certificate system</a>, it may not always be clear that the site you’re visiting is legitimate.</p>
<p>In this wide ranging discussion, SearchSecurity editors and special guest Andrew Jaquith of Perimeter E-Security, explore whether 2011 was a good year for the security industry or if the latest security incidents highlight many of the industry’s faults.</p>
<p>In addition to the digital certificate breaches, part two of this podcast explores the trend of companies increasingly studying the threat landscape to be better prepared for real world attacks. While many organizations fail at completing the most basic security tasks, others have applied the basics and are taking the next steps in <a title="incident response team counter threat operations" href="http://searchsecurity.techtarget.com/magazineContent/Turn-your-computer-incident-response-team-into-counter-threat-operations" target="_blank">understanding who their adversaries</a> are and how to defend against them.</p>
<p>In addition, <a title="McAfee unveils Operation Shady RAT" href="http://blogs.mcafee.com/mcafee-labs/revealed-operation-shady-rat" target="_blank">McAfee’s Operation ShadyRAT </a>report may have come under <a title="Kaspersky Lab comments on McAfee's Shady RAT" href="http://usa.kaspersky.com/about-us/press-center/press-blog/kaspersky-labs-alex-gostev-comments-mcafees-shady-rat-report" target="_blank">intense criticism</a>, but vendor research serves an important purpose, according to Jaquith. When taken into context, some research reports can be helpful when strategic planning.</p>
<p>Part 1 of <a title="Security Squad Part 1 - Security Wins and Fails" href="http://itknowledgeexchange.techtarget.com/security-wire-weekly/" target="_blank">Security Wins and Fails of 2011</a></p>

<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:e3642edd425b2b3e8f927149b0804c0d:U%2FDgwfLRGF4gg8AH9MO%2BdBTA4ziI5IeVL3sOSCl9Y2VMZPwF44fpMMJfWHcmQpPKjPrqQ8HFb8oOgEE%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:0fa13b426721059dabd0cf16595767cb:ZZ9eEhVOmlEncmNjeMjfRAbNzjUsRu%2FXSQrrIgnj6eTD2mqlRyhskEYQ4kNxTfgUYBzNRBbITy%2FNZEw%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:926d487225d6c2afe55704d101a9bf7d:xBLh8OxbtsLNUm%2B4x9qOw3Z9%2BIjuB%2FqyUZ%2BdfqytVhqC2%2FAzi8mx929SsJPYkQIWK3GHZWSW%2B3rnxA%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:40800157d99d97bd029a24d9df688819:WLNoXNUqtmrBz45jDodYmCxhOhXP7SHtsTJ5a32Qc6X0i0tGsJ%2F9FA%2FpamdcAqtqR1%2Fu5zWi1Gkc6Q%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=4701a19eaf5e76e46f58d32eebd3cc86&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=4701a19eaf5e76e46f58d32eebd3cc86&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/security-wire-weekly/security-wins-and-fails-of-2011-%e2%80%93-digital-trust-is-bust-security-vendor-research-in-context/feed/</wfw:commentRss>
			<pheedo:origEnclosureLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/wp-content/plugins/podpress/download.mp3?feed=997/0/SecuritySquad01032012.mp3</pheedo:origEnclosureLink>
			<enclosure url="http://www.pheedo.com/e/da0c7df5a9dd6d801be9e8d0e95706c3/SecuritySquad01032012.mp3" length="27" type="audio/mpeg"/>
			<itunes:duration>30:12</itunes:duration>
			<itunes:subtitle>In part two of this two-part podcast, special guest Andrew Jaquith of Perimeter E-Security joins the SearchSecurity editorial team in exploring the highs and lows ...</itunes:subtitle>
			<itunes:summary>In part two of this two-part podcast, special guest Andrew Jaquith of Perimeter E-Security joins the SearchSecurity editorial team in exploring the highs and lows of 2011 for the security industry.

Digital certificate breaches have fueled an erosion of trust online, according to the SearchSecurity editorial team.  While researchers look for alternatives to the digital certificate system, it may not always be clear that the site yoursquo;re visiting is legitimate.

In this wide ranging discussion, SearchSecurity editors and special guest Andrew Jaquith of Perimeter E-Security, explore whether 2011 was a good year for the security industry or if the latest security incidents highlight many of the industryrsquo;s faults.

In addition to the digital certificate breaches, part two of this podcast explores the trend of companies increasingly studying the threat landscape to be better prepared for real world attacks. While many organizations fail at completing the most basic security tasks, others have applied the basics and are taking the next steps in understanding who their adversaries are and how to defend against them.

In addition, McAfeersquo;s Operation ShadyRAT report may have come under intense criticism, but vendor research serves an important purpose, according to Jaquith. When taken into context, some research reports can be helpful when strategic planning.

Part 1 of Security Wins and Fails of 2011
</itunes:summary>
			<itunes:keywords>digital,certificate,breach,,Security,Squad,,threat,planning,,Operation,Shady,RAT</itunes:keywords>
			<itunes:author>SearchSecurity.com</itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<itunes:block>No</itunes:block>
		</item>
		<item>
			<title>2011 security wins and fails - Android app security, data breach management</title>
			<link>http://www.pheedcontent.com/click.phdo?i=e7d0c93c822f22fcac399ed10df08cad</link>
			<pheedo:origLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/2011-security-wins-and-fails-android-app-security-data-breach-management/</pheedo:origLink>
			<comments>http://itknowledgeexchange.techtarget.com/security-wire-weekly/2011-security-wins-and-fails-android-app-security-data-breach-management/#comments</comments>
			<pubDate>Thu, 22 Dec 2011 20:00:34 +0000</pubDate>
			<dc:creator>Robert Westervelt</dc:creator>
			<category><![CDATA[Mobile platform security]]></category>
			<category><![CDATA[Android security]]></category>
			<category><![CDATA[Android security issues]]></category>
			<category><![CDATA[Android mobile security]]></category>
			<category><![CDATA[Android app security]]></category>
			<category><![CDATA[mobile device security]]></category>
			<category><![CDATA[mobile device security risks]]></category>
			<category><![CDATA[mobile device security threats]]></category>
			<category><![CDATA[mobile device protection]]></category>
			<category><![CDATA[security industry trends]]></category>
			<category><![CDATA[data breach management]]></category>
			<category><![CDATA[Security Squad]]></category>
			<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/security-wire-weekly/?p=992</guid>
			<description><![CDATA[

In part one of this two-part podcast, special guest Andrew Jaquith of Perimeter E-Security joins the SearchSecurity editorial team in exploring the highs and lows of 2011 for the security industry.
Mobile device platforms were built with security in mind, but in 2011 cybercriminals have had some success in bypassing security features on the Android platform, [...]<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:cb4bd15c13d7388819ced247e9a0a5c7:7sQuXTPzenggHIX5z5KkyqGMxEwgxzwVwcKa%2FMR3iW6ySH%2BvwHrzcpSGIQoVcwdYm6Xoc%2FBHQQLH8dg%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:1a072ec406988d9bba2cfb0421c6cf46:CRwSvz9kMf0FNqyXU4mMYPFnhqRjHg4yVQcYuAqk5SM%2BEog9%2Fl7tu4ZuN0uov6Ps9cqvKL5cwBRNQDw%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:ff0bee78e48da8476e18a1ec7b982bc4:etHu5fX4FzFtzT9BKRxICr%2FZDtAPD7i3c%2BacD3vcoC%2BYXFAj9uEylA%2FKdjGM%2Bpt3R3fDO5JETrn2Jg%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:aec3ecf36c18a9fe3adab9ac5d09d037:txuLlaXg5CXsXIz87kpKEDxJMSjqtXyN4GaSffCLBGhLmAQd9ugsXD%2FShS5gsluS5CdJr5Oy%2BJ%2Fz0g%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=e7d0c93c822f22fcac399ed10df08cad&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=e7d0c93c822f22fcac399ed10df08cad&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></description>
			<content:encoded><![CDATA[
<p><img class="alignleft" style="margin: 15px" src="http://media.techtarget.com/digitalguide/images/podcast/sSec_sec_squad-sm.jpg" alt="" hspace="15" vspace="15" width="125" height="125" align="left" /></p>
<p class="MsoNormal"><strong>In part one of this two-part podcast, special guest Andrew Jaquith of Perimeter E-Security joins the SearchSecurity editorial team in exploring the highs and lows of 2011 for the security industry.</strong></p>
<p class="MsoNormal">Mobile device platforms were built with security in mind, but in 2011 cybercriminals have had some success in bypassing security features on the Android platform, and Apple’s lack of transparency make the security of the iPhone a mystery.</p>
<p class="MsoNormal">In this wide ranging discussion, SearchSecurity editors and special guest Andrew Jaquith of Perimeter eSecurity, explore whether 2011 was a good year for the security industry or if the latest security incidents highlight many of the industry’s faults.</p>
<p class="MsoNormal">Smartphones and other mobile devices gained the most attention in 2011. Android malware, SMS text messaging scams and rogue applications shined a light on some of the weaknesses of mobile platforms.  Several high-profile data breaches also cast a shadow on any gains organizations have made to defend against attacks. <a href="http://searchsecurity.techtarget.com/news/1529593/Massive-Epsilon-email-breach-could-lead-to-email-attacks-spam">Epsilon</a>, <a href="http://searchsecurity.techtarget.com/news/1529523/RSA-SecurID-breach-began-with-spear-phishing-attack">RSA SecurID</a> and <a href="http://searchsecurity.techtarget.com/news/1280092617/FBI-makes-LulzSec-arrests-in-Sony-breach-investigation">Sony</a> experienced major data security breaches. Meanwhile, hacktivist groups, namely <a href="http://searchsecurity.techtarget.com/news/1527151/Anonymous-hackers-take-out-HBGary-pilfer-sensitive-emails">Anonymous</a> and <a href="http://www.computerweekly.com/news/2240105225/Suspected-teen-LulzSec-hacker-released-on-bail">Lulzsec</a>, wreaked havoc on the Internet, attacking websites and crippling them with denial-of-service attacks.</p>
<p class="MsoNormal">In part 1 of this podcast:</p>
<p class="MsoNormal"><strong>WIN &#8212; The RSA SecurID breach:</strong> While the immediate details left security experts asking a lot of questions, RSA clearly had a response plan in place for a serious breach. The company briefed its largest customers and kept close contact with government contractors that ultimately were targeted by attacks as a result of the breach. While two-factor authentication competitors attempted to gain new customers as a result of the SecurID breach, RSA appears to have maintained its strong customer base.  Meanwhile, the Sony breach response was the antithesis of RSA. Sony seemed to have no breach response in place resulting in a network outage for nearly a month. The company has since rebounded, hiring <span class="st">Philip Reitinger, a former Department of Homeland Security official, to lead its security efforts as its CISO. </span></p>
<p class="MsoNormal">
<p class="MsoNormal"><strong>WIN-FAIL &#8212; </strong><a href="http://searchsecurity.techtarget.com/guide/Mobile-security"><strong>Mobile platform security</strong></a>: Google Android and Apple iOS have been built from the ground up with security in mind, but it takes experienced software coders to take advantage of the security features offered by both Android and Apple. Unfortunately, a glutton of new software coders has resulted in poorly coded applications or mobile apps designed to tap into too many of the device’s features (SMS, GPS) causing privacy and security concerns.   In 2011, the security industry has seen an explosion in <a href="http://www.schneier.com/blog/archives/2011/11/android_malware.html">Android Trojans</a>, rogue applications had to be removed from Google’s marketplace, and while malware hasn’t really targeted apple devices, iPhone security vulnerabilities and Apple’s lack of transparency into its security processes have raised some doubts about iPhone security. Security experts say that over time the mobile platforms will mature and new developers will become better coders. Until then, look out for rogue applications and application vulnerabilities that leak data.</p>
<p class="MsoNormal">View Part 2 of <a title="Security Wins and Fails of 2011 Part 2" href="http://itknowledgeexchange.techtarget.com/security-wire-weekly/security-wins-and-fails-of-2011-%e2%80%93-digital-trust-is-bust-security-vendor-research-in-context/" target="_blank">Security Wins and Fails of 2011</a></p>

<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:cb4bd15c13d7388819ced247e9a0a5c7:7sQuXTPzenggHIX5z5KkyqGMxEwgxzwVwcKa%2FMR3iW6ySH%2BvwHrzcpSGIQoVcwdYm6Xoc%2FBHQQLH8dg%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:1a072ec406988d9bba2cfb0421c6cf46:CRwSvz9kMf0FNqyXU4mMYPFnhqRjHg4yVQcYuAqk5SM%2BEog9%2Fl7tu4ZuN0uov6Ps9cqvKL5cwBRNQDw%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:ff0bee78e48da8476e18a1ec7b982bc4:etHu5fX4FzFtzT9BKRxICr%2FZDtAPD7i3c%2BacD3vcoC%2BYXFAj9uEylA%2FKdjGM%2Bpt3R3fDO5JETrn2Jg%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:aec3ecf36c18a9fe3adab9ac5d09d037:txuLlaXg5CXsXIz87kpKEDxJMSjqtXyN4GaSffCLBGhLmAQd9ugsXD%2FShS5gsluS5CdJr5Oy%2BJ%2Fz0g%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=e7d0c93c822f22fcac399ed10df08cad&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=e7d0c93c822f22fcac399ed10df08cad&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/security-wire-weekly/2011-security-wins-and-fails-android-app-security-data-breach-management/feed/</wfw:commentRss>
			<pheedo:origEnclosureLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/wp-content/plugins/podpress/download.mp3?feed=992/0/SecuritySquad12222011.mp3</pheedo:origEnclosureLink>
			<enclosure url="http://www.pheedo.com/e/b40890715f98305f58c5b2f2c0895bee/SecuritySquad12222011.mp3" length="32" type="audio/mpeg"/>
			<itunes:duration>35:38</itunes:duration>
			<itunes:subtitle>In part one of this two-part podcast, special guest Andrew Jaquith of Perimeter E-Security joins the SearchSecurity editorial team in exploring the highs and lows ...</itunes:subtitle>
			<itunes:summary>In part one of this two-part podcast, special guest Andrew Jaquith of Perimeter E-Security joins the SearchSecurity editorial team in exploring the highs and lows of 2011 for the security industry.
Mobile device platforms were built with security in mind, but in 2011 cybercriminals have had some success in bypassing security features on the Android platform, and Applersquo;s lack of transparency make the security of the iPhone a mystery.
In this wide ranging discussion, SearchSecurity editors and special guest Andrew Jaquith of Perimeter eSecurity, explore whether 2011 was a good year for the security industry or if the latest security incidents highlight many of the industryrsquo;s faults.
Smartphones and other mobile devices gained the most attention in 2011. Android malware, SMS text messaging scams and rogue applications shined a light on some of the weaknesses of mobile platforms. nbsp;Several high-profile data breaches also cast a shadow on any gains organizations have made to defend against attacks. Epsilon, RSA SecurID and Sony experienced major data security breaches. Meanwhile, hacktivist groups, namely Anonymous and Lulzsec, wreaked havoc on the Internet, attacking websites and crippling them with denial-of-service attacks.
In part 1 of this podcast:
WIN -- The RSA SecurID breach: While the immediate details left security experts asking a lot of questions, RSA clearly had a response plan in place for a serious breach. The company briefed its largest customers and kept close contact with government contractors that ultimately were targeted by attacks as a result of the breach. While two-factor authentication competitors attempted to gain new customers as a result of the SecurID breach, RSA appears to have maintained its strong customer base. nbsp;Meanwhile, the Sony breach response was the antithesis of RSA. Sony seemed to have no breach response in place resulting in a network outage for nearly a month. The company has since rebounded, hiring Philip Reitinger, a former Department of Homeland Security official, to lead its security efforts as its CISO. 

WIN-FAIL -- Mobile platform security: Google Android and Apple iOS have been built from the ground up with security in mind, but it takes experienced software coders to take advantage of the security features offered by both Android and Apple. Unfortunately, a glutton of new software coders has resulted in poorly coded applications or mobile apps designed to tap into too many of the devicersquo;s features (SMS, GPS) causing privacy and security concerns.nbsp;nbsp; In 2011, the security industry has seen an explosion in Android Trojans, rogue applications had to be removed from Googlersquo;s marketplace, and while malware hasnrsquo;t really targeted apple devices, iPhone security vulnerabilities and Applersquo;s lack of transparency into its security processes have raised some doubts about iPhone security. Security experts say that over time the mobile platforms will mature and new developers will become better coders. Until then, look out for rogue applications and application vulnerabilities that leak data.
View Part 2 of Security Wins and Fails of 2011
</itunes:summary>
			<itunes:keywords>Mobile,platform,security,,Android,security,,Android,security,issues,,Android,mobile,security,,Android,app,security,,mobile,device,security,,mobile,device,security,risks,,mobile,device,security,threats,,mobile,device,protection,,security,industry,trends...</itunes:keywords>
			<itunes:author>SearchSecurity.com</itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<itunes:block>No</itunes:block>
		</item>
		<item>
			<title>Mobile application threats, mobile privacy woes ahead, expert says</title>
			<link>http://www.pheedcontent.com/click.phdo?i=42228250f4a84da4bec7634e83404fa5</link>
			<pheedo:origLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/mobile-application-threats-mobile-privacy-woes-ahead-expert-says/</pheedo:origLink>
			<comments>http://itknowledgeexchange.techtarget.com/security-wire-weekly/mobile-application-threats-mobile-privacy-woes-ahead-expert-says/#comments</comments>
			<pubDate>Thu, 15 Dec 2011 14:06:56 +0000</pubDate>
			<dc:creator>SearchSecurity.com Staff</dc:creator>
			<category><![CDATA[mobile device security]]></category>
			<category><![CDATA[Security Wire Weekly]]></category>
			<category><![CDATA[Internet Privacy]]></category>
			<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/security-wire-weekly/mobile-application-threats-mobile-privacy-woes-ahead-expert-says/</guid>
			<description><![CDATA[
Look for a movement to weed out malicious mobile applications through mobile application scoring systems, according to Verizon’s ICSA Labs, which issued a list of security predictions for 2012.
By Robert Westervelt, News Director
Mobile malware and mobile application threats could pose major security and privacy challenges to enterprises in 2012, according to Roger Thompson, chief emerging [...]<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:d139e6f856d53969a1f8c04b9cbd101f:xd%2F6y8xA5LTOXfAxCZWxiz8DGvXxkhJzovugLrgkS6M%2FV3gZk%2BkgqhnSbiaceGPoNUxZrFqsRdYoQF8%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:764d3d6672f16783c20bd1ab13d7fe03:2Xzm48qPetFRL6O1Oez34qhwrM%2BXXRW27KAQ8xwBu6KeLZlZp7z8jtFl6R4bx0Anvf3mcF7iiHuUjCc%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:9fdf99a3fca842259bfe2f44ede54c15:ZVtxsBiXhyt2pTLzV%2BNZ570wbpVPPNkX2LFUVKtNg%2FQO6ijAfQnNje2Lgj8AMHYuWDH%2FWRur%2BO2%2F1w%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:9b948363913036b67823e423515c758e:1eofsjEuWrFIfUxuBlli%2BgXjE6ceSeBrPt7eTxNi41%2FB2hHJV1GTKJRy848WzgYbx7BSg6G4IXjf0Q%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=42228250f4a84da4bec7634e83404fa5&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=42228250f4a84da4bec7634e83404fa5&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></description>
			<content:encoded><![CDATA[
<p class="MsoNormal"><img class="alignleft" style="margin: 15px" src="http://media.techtarget.com/digitalguide/images/podcast/sSec_sww.jpg" alt="" vspace="15" width="124" height="124" align="left" /><strong>Look for a movement to weed out malicious mobile applications through mobile application scoring systems, according to Verizon’s ICSA Labs, which issued a list of security predictions for 2012.</strong></p>
<p class="MsoNormal">By Robert Westervelt, News Director</p>
<p>Mobile malware and <a title="Google pulls Android apps from Android Market" href="http://searchsecurity.techtarget.com/news/2240112403/Google-tosses-malicious-Android-apps-from-Android-Market" target="_blank">mobile application threats</a> could pose major security and privacy challenges to enterprises in 2012, according to Roger Thompson, chief emerging threats researcher at Verizon Business’ ICSA Labs. Cybercriminals could use <a title="Top 5 mobile security threats in 2012" href="http://searchsecurity.techtarget.com/news/2240112288/Top-5-mobile-phone-security-threats-in-2012" target="_blank">malicious mobile applications</a> to steal sensitive data from smartphone users, including account credentials. Stolen credentials could be used to obtain access to corporate networks, Thompson said.</p>
<p>Smartphones, tablets and other mobile devices have helped fuel the use of social networks. Employees are sharing more information about themselves than ever before on Facebook, Twitter and other networks via mobile applications. That freely available data could be all that is necessary for an attacker to design a targeted and convincing social engineering attack against an employee, Thompson said.</p>
<p>“It may be no more than just completing the profile on people so they know what kind of goods to sell you; it might not even be overtly criminal,” he said.</p>
<p>Thompson, who was hired by ICSA Labs in November, helped draft the security device testing and certification organization’s security predictions for 2012. In addition to rising mobile malware and malicious applications, ICSA Labs predicts the industry will take action, providing users with application scoring systems so users download valid applications onto their devices. Scoring systems could reduce the risk of more malicious mobile applications and check highly used apps for serious <a title="Study finds Android developers creating flawed mobile applications" href="http://searchsecurity.techtarget.com/news/2240112235/Android-app-security-Study-finds-mobile-developers-creating-flawed-Android-apps" target="_blank">mobile application vulnerabilities</a>, Thompson said. Although it’s unclear what entity would create the mobile application scoring systems, Thompson said both Google and Apple control the marketplace for mobile apps and could very likely take the lead.</p>
<p>“If you install some new version of an application, even if it’s not overtly malicious, you have no idea what opportunities it may be opening up,” Thompson said. “An application might not be sending SMS messages, but it could be built into the game in case it’s needed in the future and that kind of unnecessary functionality could be leveraged by an attacker.”</p>
<p>ICSA also predicts health care organizations will have to gain a better understanding of the risks posed by digitalized health care data stored on mobile devices and how to better secure embedded medical devices from tampering and other cyberattacks. In addition, state public utility commissions will continue to make great strides on creating standards for the so-called “smart grid.” It’s likely, according to ICSA, that the federal government will step in with its own framework and requirements.</p>
<p>In this interview with SearchSecurity News Director Robert Westervelt, Thompson predicts how the threat landscape could evolve in 2012 and explains why mobile device use could pose serious risks to businesses.</p>

<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:d139e6f856d53969a1f8c04b9cbd101f:xd%2F6y8xA5LTOXfAxCZWxiz8DGvXxkhJzovugLrgkS6M%2FV3gZk%2BkgqhnSbiaceGPoNUxZrFqsRdYoQF8%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:764d3d6672f16783c20bd1ab13d7fe03:2Xzm48qPetFRL6O1Oez34qhwrM%2BXXRW27KAQ8xwBu6KeLZlZp7z8jtFl6R4bx0Anvf3mcF7iiHuUjCc%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:9fdf99a3fca842259bfe2f44ede54c15:ZVtxsBiXhyt2pTLzV%2BNZ570wbpVPPNkX2LFUVKtNg%2FQO6ijAfQnNje2Lgj8AMHYuWDH%2FWRur%2BO2%2F1w%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:9b948363913036b67823e423515c758e:1eofsjEuWrFIfUxuBlli%2BgXjE6ceSeBrPt7eTxNi41%2FB2hHJV1GTKJRy848WzgYbx7BSg6G4IXjf0Q%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=42228250f4a84da4bec7634e83404fa5&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=42228250f4a84da4bec7634e83404fa5&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/security-wire-weekly/mobile-application-threats-mobile-privacy-woes-ahead-expert-says/feed/</wfw:commentRss>
			<pheedo:origEnclosureLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/wp-content/plugins/podpress/download.mp3?feed=985/0/SecurityWireWeekly12152011.mp3</pheedo:origEnclosureLink>
			<enclosure url="http://www.pheedo.com/e/fb7ee6afab49845c45d9bbdaa78eca00/SecurityWireWeekly12152011.mp3" length="15" type="audio/mpeg"/>
			<itunes:duration>16:53</itunes:duration>
			<itunes:subtitle>Look for a movement to weed out malicious mobile applications through mobile application scoring systems, according to Verizonrsquo;s ICSA Labs, which issued a list of ...</itunes:subtitle>
			<itunes:summary>Look for a movement to weed out malicious mobile applications through mobile application scoring systems, according to Verizonrsquo;s ICSA Labs, which issued a list of security predictions for 2012.

By Robert Westervelt, News Director

Mobile malware and mobile application threats could pose major security and privacy challenges to enterprises in 2012, according to Roger Thompson, chief emerging threats researcher at Verizon Businessrsquo; ICSA Labs. Cybercriminals could use malicious mobile applications to steal sensitive data from smartphone users, including account credentials. Stolen credentials could be used to obtain access to corporate networks, Thompson said.

Smartphones, tablets and other mobile devices have helped fuel the use of social networks. Employees are sharing more information about themselves than ever before on Facebook, Twitter and other networks via mobile applications. That freely available data could be all that is necessary for an attacker to design a targeted and convincing social engineering attack against an employee, Thompson said.

ldquo;It may be no more than just completing the profile on people so they know what kind of goods to sell you; it might not even be overtly criminal,rdquo; he said.

Thompson, who was hired by ICSA Labs in November, helped draft the security device testing and certification organizationrsquo;s security predictions for 2012. In addition to rising mobile malware and malicious applications, ICSA Labs predicts the industry will take action, providing users with application scoring systems so users download valid applications onto their devices. Scoring systems could reduce the risk of more malicious mobile applications and check highly used apps for serious mobile application vulnerabilities, Thompson said. Although itrsquo;s unclear what entity would create the mobile application scoring systems, Thompson said both Google and Apple control the marketplace for mobile apps and could very likely take the lead.

ldquo;If you install some new version of an application, even if itrsquo;s not overtly malicious, you have no idea what opportunities it may be opening up,rdquo; Thompson said. ldquo;An application might not be sending SMS messages, but it could be built into the game in case itrsquo;s needed in the future and that kind of unnecessary functionality could be leveraged by an attacker.rdquo;

ICSA also predicts health care organizations will have to gain a better understanding of the risks posed by digitalized health care data stored on mobile devices and how to better secure embedded medical devices from tampering and other cyberattacks. In addition, state public utility commissions will continue to make great strides on creating standards for the so-called ldquo;smart grid.rdquo; Itrsquo;s likely, according to ICSA, that the federal government will step in with its own framework and requirements.

In this interview with SearchSecurity News Director Robert Westervelt, Thompson predicts how the threat landscape could evolve in 2012 and explains why mobile device use could pose serious risks to businesses.
</itunes:summary>
			<itunes:keywords>mobile,device,security,,Security,Wire,Weekly,,Internet,Privacy</itunes:keywords>
			<itunes:author>SearchSecurity.com</itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<itunes:block>No</itunes:block>
		</item>
		<item>
			<title>Experts discuss mobile threats, vulnerabilities</title>
			<link>http://www.pheedcontent.com/click.phdo?i=ee7065234e45a5f7138ceb68f69e846e</link>
			<pheedo:origLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/experts-discuss-mobile-threats-vulnerabilities/</pheedo:origLink>
			<comments>http://itknowledgeexchange.techtarget.com/security-wire-weekly/experts-discuss-mobile-threats-vulnerabilities/#comments</comments>
			<pubDate>Wed, 07 Dec 2011 14:43:35 +0000</pubDate>
			<dc:creator>SearchSecurity.com Staff</dc:creator>
			<category><![CDATA[mobile device security]]></category>
			<category><![CDATA[Security Wire Weekly]]></category>
			<category><![CDATA[mobile security]]></category>
			<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/security-wire-weekly/experts-discuss-mobile-threats-vulnerabilities/</guid>
			<description><![CDATA[
Three experts weigh in on mobile security, discussing smartphone threats and the vulnerabilities they contain. Andrew Jaquith of Perimeter E-Security, Chris Wysopal of Veracode and James Lyne of Sophos each say there are signs of trouble ahead.

<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:42650847935b2f3f4e50c5c0c07cd5dd:B6HziNCQ0kDvieTqGE6RUBL%2F1QgUZ4vqu%2FPxLqWEgslp6wFdoUOEHeK6AXqblo22VZi0neVOfDOAT4c%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:051cd76f73e29e18e651832bd7598f7f:mL2vI9bRWNXkQPpoS4dMhgFPrrSjp6sWXqTPho4kBWLbN9azZd4HXvQIdfqK7KPXWoJG6XXTxj5TNzQ%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:f91e8d27302ad1241e9e9321422dc84c:6r6Q4v%2BgW7z76yTZlFZppI4EgzB7sUyO%2FMG3TCk%2BR4DCXljE%2BFBnuPgs5GaoXpoJcm9mCcI3lXwpHQ%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:3bc717f450c6fa664e2e42f29214c4de:EduJbX1nQPngaxfc5gnrRUhv1PHNum%2BmprCeSF1uZktldbTNLTQXWjnMnbQsdIISvMayfPzGdxtIYg%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=ee7065234e45a5f7138ceb68f69e846e&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=ee7065234e45a5f7138ceb68f69e846e&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></description>
			<content:encoded><![CDATA[
<p class="MsoNormal"><img class="alignleft" style="margin: 15px" src="http://media.techtarget.com/digitalguide/images/podcast/sSec_sww.jpg" alt="" vspace="15" width="124" height="124" align="left" />Three experts weigh in on mobile security, discussing smartphone threats and the vulnerabilities they contain. Andrew Jaquith of Perimeter E-Security, Chris Wysopal of Veracode and James Lyne of Sophos each say there are signs of trouble ahead.</p>

<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:42650847935b2f3f4e50c5c0c07cd5dd:B6HziNCQ0kDvieTqGE6RUBL%2F1QgUZ4vqu%2FPxLqWEgslp6wFdoUOEHeK6AXqblo22VZi0neVOfDOAT4c%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:051cd76f73e29e18e651832bd7598f7f:mL2vI9bRWNXkQPpoS4dMhgFPrrSjp6sWXqTPho4kBWLbN9azZd4HXvQIdfqK7KPXWoJG6XXTxj5TNzQ%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:f91e8d27302ad1241e9e9321422dc84c:6r6Q4v%2BgW7z76yTZlFZppI4EgzB7sUyO%2FMG3TCk%2BR4DCXljE%2BFBnuPgs5GaoXpoJcm9mCcI3lXwpHQ%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:3bc717f450c6fa664e2e42f29214c4de:EduJbX1nQPngaxfc5gnrRUhv1PHNum%2BmprCeSF1uZktldbTNLTQXWjnMnbQsdIISvMayfPzGdxtIYg%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=ee7065234e45a5f7138ceb68f69e846e&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=ee7065234e45a5f7138ceb68f69e846e&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/security-wire-weekly/experts-discuss-mobile-threats-vulnerabilities/feed/</wfw:commentRss>
			<pheedo:origEnclosureLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/wp-content/plugins/podpress/download.mp3?feed=981/0/SecurityWireWeekly12072011.mp3</pheedo:origEnclosureLink>
			<enclosure url="http://www.pheedo.com/e/9e97488fc60655c5e5d7cfe3a4cd6ecd/SecurityWireWeekly12072011.mp3" length="19" type="audio/mpeg"/>
			<itunes:duration>20:48</itunes:duration>
			<itunes:subtitle>Three experts weigh in on mobile security, discussing smartphone threats and the vulnerabilities they contain. Andrew Jaquith of Perimeter E-Security, Chris Wysopal of Veracode and ...</itunes:subtitle>
			<itunes:summary>Three experts weigh in on mobile security, discussing smartphone threats and the vulnerabilities they contain. Andrew Jaquith of Perimeter E-Security, Chris Wysopal of Veracode and James Lyne of Sophos each say there are signs of trouble ahead.
</itunes:summary>
			<itunes:keywords>mobile,device,security,,Security,Wire,Weekly,,mobile,security</itunes:keywords>
			<itunes:author>SearchSecurity.com</itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<itunes:block>No</itunes:block>
		</item>
		<item>
			<title>SIEM moves toward detecting fraudulent financial transactions</title>
			<link>http://www.pheedcontent.com/click.phdo?i=84fbb7f83a984c2a1a25872764be8ab1</link>
			<pheedo:origLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/siem-moves-toward-detecting-fraudulent-financial-transactions/</pheedo:origLink>
			<comments>http://itknowledgeexchange.techtarget.com/security-wire-weekly/siem-moves-toward-detecting-fraudulent-financial-transactions/#comments</comments>
			<pubDate>Wed, 30 Nov 2011 16:41:33 +0000</pubDate>
			<dc:creator>SearchSecurity.com Staff</dc:creator>
			<category><![CDATA[Security Wire Weekly]]></category>
			<category><![CDATA[Financial security]]></category>
			<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/security-wire-weekly/siem-moves-toward-detecting-fraudulent-financial-transactions/</guid>
			<description><![CDATA[
Continuous transaction monitoring has been used by enterprises to weed out potential fraud and costly business errors, but today the technology is being used to detect external threats such as account hijacking and stolen credentials. Patrick Taylor, CEO of Oversight Systems explains how CTM technology is merging with security information event management (SIEM) systems for [...]<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:ee1668cb033e5bfeb56b213a5e525ee3:9bi%2BcCWm3TZiR7YSBw2e7jdHsdv5l9S%2BG%2FHH5e5phRJVj%2B8PqSBrBwXsu8mPVfKMapJusOqaUhxlLL8%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:9375c04669d9b3dd0793066b4c2084d4:aFywzMVSgFckK96hJRpS%2FzCP%2BqAeAUdJ8AJNUOPqk8Lo2RewJJB09EQ8wbXFDtGyW5iTb0aKQE3aOrk%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:f4f49bd50267daee4dfaeb823e09adb1:LDhdI5jv7nvgeJkErMA%2F7MkLTjVpmKHOXnS4aYW7c0irlhpG8Qps4tfRKwmiTD6l8%2FCx%2FhLRy2%2F6gA%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:11a33f129afad2dc1605d8ef10437bcf:vIn8lpMKg13tUsDI9uMTW65ZBmt5cf6SZD6Lm4frwtBGX0YbtHVp9NsaW4BlEJ492OXg%2Bhbvx%2FU8MA%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=84fbb7f83a984c2a1a25872764be8ab1&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=84fbb7f83a984c2a1a25872764be8ab1&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></description>
			<content:encoded><![CDATA[
<p class="MsoNormal"><img class="alignleft" style="margin: 15px" src="http://media.techtarget.com/digitalguide/images/podcast/sSec_sww.jpg" alt="" vspace="15" width="124" height="124" align="left" />Continuous transaction monitoring has been used by enterprises to weed out potential fraud and costly business errors, but today the technology is being used to detect external threats such as account hijacking and stolen credentials. Patrick Taylor, CEO of Oversight Systems explains how CTM technology is merging with security information event management (SIEM) systems for broader visibility.</p>

<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:ee1668cb033e5bfeb56b213a5e525ee3:9bi%2BcCWm3TZiR7YSBw2e7jdHsdv5l9S%2BG%2FHH5e5phRJVj%2B8PqSBrBwXsu8mPVfKMapJusOqaUhxlLL8%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:9375c04669d9b3dd0793066b4c2084d4:aFywzMVSgFckK96hJRpS%2FzCP%2BqAeAUdJ8AJNUOPqk8Lo2RewJJB09EQ8wbXFDtGyW5iTb0aKQE3aOrk%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:f4f49bd50267daee4dfaeb823e09adb1:LDhdI5jv7nvgeJkErMA%2F7MkLTjVpmKHOXnS4aYW7c0irlhpG8Qps4tfRKwmiTD6l8%2FCx%2FhLRy2%2F6gA%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:11a33f129afad2dc1605d8ef10437bcf:vIn8lpMKg13tUsDI9uMTW65ZBmt5cf6SZD6Lm4frwtBGX0YbtHVp9NsaW4BlEJ492OXg%2Bhbvx%2FU8MA%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=84fbb7f83a984c2a1a25872764be8ab1&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=84fbb7f83a984c2a1a25872764be8ab1&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/security-wire-weekly/siem-moves-toward-detecting-fraudulent-financial-transactions/feed/</wfw:commentRss>
			<pheedo:origEnclosureLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/wp-content/plugins/podpress/download.mp3?feed=978/0/SecurityWireWeekly11302011.mp3</pheedo:origEnclosureLink>
			<enclosure url="http://www.pheedo.com/e/88656dfb96934b66fdfbd8f995dae8ec/SecurityWireWeekly11302011.mp3" length="16" type="audio/mpeg"/>
			<itunes:duration>17:38</itunes:duration>
			<itunes:subtitle>Continuous transaction monitoring has been used by enterprises to weed out potential fraud and costly business errors, but today the technology is being used to ...</itunes:subtitle>
			<itunes:summary>Continuous transaction monitoring has been used by enterprises to weed out potential fraud and costly business errors, but today the technology is being used to detect external threats such as account hijacking and stolen credentials. Patrick Taylor, CEO of Oversight Systems explains how CTM technology is merging with security information event management (SIEM) systems for broader visibility.
</itunes:summary>
			<itunes:keywords>Security,Wire,Weekly,,Financial,security</itunes:keywords>
			<itunes:author>SearchSecurity.com</itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<itunes:block>No</itunes:block>
		</item>
		<item>
			<title>Should security pros be thankful in 2011?</title>
			<link>http://www.pheedcontent.com/click.phdo?i=3a8d1088476eb9a2144ed741b8b8d9f3</link>
			<pheedo:origLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/should-security-pros-be-thankful-in-2011/</pheedo:origLink>
			<comments>http://itknowledgeexchange.techtarget.com/security-wire-weekly/should-security-pros-be-thankful-in-2011/#comments</comments>
			<pubDate>Tue, 22 Nov 2011 21:11:13 +0000</pubDate>
			<dc:creator>SearchSecurity.com Staff</dc:creator>
			<category><![CDATA[malware]]></category>
			<category><![CDATA[Security Wire Weekly]]></category>
			<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/security-wire-weekly/should-security-pros-be-thankful-in-2011/</guid>
			<description><![CDATA[
Do security pros have something to be thankful for in 2011? James Lyne of Sophos discusses some of the lessons learned this year and whether security defenses are keeping pace with attack techniques.

<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:4041f596a5cb18e0818118b1cbb94586:1sctsK0e8AZukJYZ7LiOERSSHj2cW2sBMjZEbl9dbFyzSMBOABIQui%2FBOGaLVk44q0kmWvndK07H0SA%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:f5d2bdf2d604fd54c599ae2e4946181b:9YaRbzHXIWh3but0c6AfJnXb4dLCUKSbjqTXQRgitZ4GBKkXtHKh119I64lLeeC9d%2BX2x0EMwINHU6c%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:78ef88b7575ce23388fcf2fd155f99d7:pQy5l2GK1JdDHSST5YL0LMnYzDO5LF%2FOM0xXNyR8dVjhDrmpFJZQP7vPbTTsBf39wT4Km3iyiqhlYA%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:984d6f52eb9deba0f95c2d2180e75800:%2FAw76vxsxjndyrVPVTAsP1Zjnwnt4ifj2vGev%2FdHdvyAoHyZDoV0Hs9pYUXsVBWRBhS7vBj%2B6qLDtg%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=3a8d1088476eb9a2144ed741b8b8d9f3&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=3a8d1088476eb9a2144ed741b8b8d9f3&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></description>
			<content:encoded><![CDATA[
<p>Do security pros have something to be thankful for in 2011? James Lyne of Sophos discusses some of the lessons learned this year and whether security defenses are keeping pace with attack techniques.</p>

<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:4041f596a5cb18e0818118b1cbb94586:1sctsK0e8AZukJYZ7LiOERSSHj2cW2sBMjZEbl9dbFyzSMBOABIQui%2FBOGaLVk44q0kmWvndK07H0SA%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:f5d2bdf2d604fd54c599ae2e4946181b:9YaRbzHXIWh3but0c6AfJnXb4dLCUKSbjqTXQRgitZ4GBKkXtHKh119I64lLeeC9d%2BX2x0EMwINHU6c%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:78ef88b7575ce23388fcf2fd155f99d7:pQy5l2GK1JdDHSST5YL0LMnYzDO5LF%2FOM0xXNyR8dVjhDrmpFJZQP7vPbTTsBf39wT4Km3iyiqhlYA%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:984d6f52eb9deba0f95c2d2180e75800:%2FAw76vxsxjndyrVPVTAsP1Zjnwnt4ifj2vGev%2FdHdvyAoHyZDoV0Hs9pYUXsVBWRBhS7vBj%2B6qLDtg%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=3a8d1088476eb9a2144ed741b8b8d9f3&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=3a8d1088476eb9a2144ed741b8b8d9f3&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/security-wire-weekly/should-security-pros-be-thankful-in-2011/feed/</wfw:commentRss>
			<pheedo:origEnclosureLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/wp-content/plugins/podpress/download.mp3?feed=973/0/SecurityWireWeekly11222011.mp3</pheedo:origEnclosureLink>
			<enclosure url="http://www.pheedo.com/e/6541648b25ffdac6ae6aa096e38af241/SecurityWireWeekly11222011.mp3" length="21" type="audio/mpeg"/>
			<itunes:duration>23:48</itunes:duration>
			<itunes:subtitle>Do security pros have something to be thankful for in 2011? James Lyne of Sophos discusses some of the lessons learned this year and whether ...</itunes:subtitle>
			<itunes:summary>Do security pros have something to be thankful for in 2011? James Lyne of Sophos discusses some of the lessons learned this year and whether security defenses are keeping pace with attack techniques.
</itunes:summary>
			<itunes:keywords>malware,,Security,Wire,Weekly</itunes:keywords>
			<itunes:author>SearchSecurity.com</itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<itunes:block>No</itunes:block>
		</item>
		<item>
			<title>Inside the DNS Changer botnet takedown: Trend Micro&#8217;s Paul Ferguson</title>
			<link>http://www.pheedcontent.com/click.phdo?i=1621da86257b2453403cf51349c50b43</link>
			<pheedo:origLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/inside-the-dns-changer-botnet-takedown-trend-micros-paul-ferguson/</pheedo:origLink>
			<comments>http://itknowledgeexchange.techtarget.com/security-wire-weekly/inside-the-dns-changer-botnet-takedown-trend-micros-paul-ferguson/#comments</comments>
			<pubDate>Tue, 15 Nov 2011 15:51:52 +0000</pubDate>
			<dc:creator>Michael S. Mimoso</dc:creator>
			<category><![CDATA[DNS Changer Botnet]]></category>
			<category><![CDATA[Operation Ghost Click]]></category>
			<category><![CDATA[FBI]]></category>
			<category><![CDATA[Trend Micro]]></category>
			<category><![CDATA[Estonia]]></category>
			<category><![CDATA[Paul Ferguson]]></category>
			<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/security-wire-weekly/inside-the-dns-changer-botnet-takedown-trend-micros-paul-ferguson/</guid>
			<description><![CDATA[
On Nov. 9, the FBI, Estonian authorities and Trend Micro announced that Operation Ghost Click had resulted in the takedown of Esthost, owner of the DNS Changer botnet. Touted as one of the largest botnet takedowns in history, the five-year-old scheme generated upwards of $14 million in fraudulent Internet advertising revenue.
In this edition of Security [...]<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:b8642141fff94a6fb34c7bbe3373725f:gYGv2BhFEG6jt4x2QTwgTswRbTbtzMg6zGZhe8Wunk91xucIrgCiJZh%2FzTrj7g2eLsv6PIyCK%2FEOogY%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:3b6c220ade8b255d18e51cb319e5b5c7:9UAAB4ln8arNtJUDPVLWL4FJCsh3OF84i3vgCLjpkX9Xuv8WsgFtV5NbhtcnTvqjZRQIbOtdrBH8Olk%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:a836618196877d813d7ca8b7a630e5d1:x4%2FtBMwsfd6V9Wq091mIdBI57PBHcM2AnGKc9wRA%2BJN64p0lZMgcaX4nbTHm8hf0Q0a6tyE5uTkBPg%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:bdf0c855ff56e5a4af95349dee1e3106:z8RBdvJO9mLbL9WfIH9mQW%2BoD6eU%2BQeCfyL50HWm0iXaKpT2LEyZp4HRd5HiXK4mf59B7NgLiW26Vw%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=1621da86257b2453403cf51349c50b43&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=1621da86257b2453403cf51349c50b43&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></description>
			<content:encoded><![CDATA[
<p class="MsoNormal">On Nov. 9, the FBI, Estonian authorities and Trend Micro announced that Operation Ghost Click had resulted in the takedown of Esthost, owner of the DNS Changer botnet. Touted as one of the largest botnet takedowns in history, the five-year-old scheme generated upwards of $14 million in fraudulent Internet advertising revenue.</p>
<p class="MsoNormal">In this edition of Security Wire Weekly, Paul Ferguson, Trend Micro&#8217;s Advanced Threats Researcher and key liaison with the FBI, discusses the <a href="http://searchsecurity.techtarget.com/news/2240110651/FBI-takes-down-DNS-Charger-botnet-aided-14-million-click-fraud-scheme">DNS Changer botnet takedown</a>, the implications for the industry at large and why it may signal the beginning of an even more dangerous era of botnets.</p>

<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:b8642141fff94a6fb34c7bbe3373725f:gYGv2BhFEG6jt4x2QTwgTswRbTbtzMg6zGZhe8Wunk91xucIrgCiJZh%2FzTrj7g2eLsv6PIyCK%2FEOogY%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:3b6c220ade8b255d18e51cb319e5b5c7:9UAAB4ln8arNtJUDPVLWL4FJCsh3OF84i3vgCLjpkX9Xuv8WsgFtV5NbhtcnTvqjZRQIbOtdrBH8Olk%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:a836618196877d813d7ca8b7a630e5d1:x4%2FtBMwsfd6V9Wq091mIdBI57PBHcM2AnGKc9wRA%2BJN64p0lZMgcaX4nbTHm8hf0Q0a6tyE5uTkBPg%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:bdf0c855ff56e5a4af95349dee1e3106:z8RBdvJO9mLbL9WfIH9mQW%2BoD6eU%2BQeCfyL50HWm0iXaKpT2LEyZp4HRd5HiXK4mf59B7NgLiW26Vw%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=1621da86257b2453403cf51349c50b43&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=1621da86257b2453403cf51349c50b43&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/security-wire-weekly/inside-the-dns-changer-botnet-takedown-trend-micros-paul-ferguson/feed/</wfw:commentRss>
			<pheedo:origEnclosureLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/wp-content/plugins/podpress/download.mp3?feed=967/0/SWW_Fergson_111511_normalized.mp3</pheedo:origEnclosureLink>
			<enclosure url="http://www.pheedo.com/e/57e59f9097302e0f6f8a89264731ffec/SWW_Fergson_111511_normalized.mp3" length="1" type="audio/mpeg"/>
			<itunes:duration>00:01:01</itunes:duration>
			<itunes:subtitle>On Nov. 9, the FBI, Estonian authorities and Trend Micro announced that Operation Ghost Click had resulted in the takedown of Esthost, owner of the ...</itunes:subtitle>
			<itunes:summary>On Nov. 9, the FBI, Estonian authorities and Trend Micro announced that Operation Ghost Click had resulted in the takedown of Esthost, owner of the DNS Changer botnet. Touted as one of the largest botnet takedowns in history, the five-year-old scheme generated upwards of $14 million in fraudulent Internet advertising revenue.
In this edition of Security Wire Weekly, Paul Ferguson, Trend Micro's Advanced Threats Researcher and key liaison with the FBI, discusses the DNS Changer botnet takedown, the implications for the industry at large and why it may signal the beginning of an even more dangerous era of botnets.
</itunes:summary>
			<itunes:keywords>DNS,Changer,Botnet,,Operation,Ghost,Click,,FBI,,Trend,Micro,,Estonia,,Paul,Ferguson</itunes:keywords>
			<itunes:author>SearchSecurity.com</itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<itunes:block>No</itunes:block>
		</item>
		<item>
			<title>Duqu Trojan - Dangerous malware shares Stuxnet code</title>
			<link>http://www.pheedcontent.com/click.phdo?i=77c38664c7bde898585e39d7edca8110</link>
			<pheedo:origLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/duqu-trojan-dangerous-malware-shares-stuxnet-code/</pheedo:origLink>
			<comments>http://itknowledgeexchange.techtarget.com/security-wire-weekly/duqu-trojan-dangerous-malware-shares-stuxnet-code/#comments</comments>
			<pubDate>Wed, 19 Oct 2011 16:05:39 +0000</pubDate>
			<dc:creator>SearchSecurity.com Staff</dc:creator>
			<category><![CDATA[Duqu Trojan]]></category>
			<category><![CDATA[Security Wire Weekly]]></category>
			<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/security-wire-weekly/duqu-trojan-dangerous-malware-shares-stuxnet-code/</guid>
			<description><![CDATA[
Jason Lewis, CTO of Lookingglass Cyber Solutions talks about the new Duqu malware. Lewis, a former global network exploitation and vulnerability analyst with NSA, said it was likely authored by a nation state, given the time and resources it takes to develop a sophisticated piece of malware.
Program notes: New Duqu malware shares Stuxnet Trojan code [...]<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:8af70f6f261a78cbbeac69215581adc4:Pxc6Gt3gpwQVSe8Xjy3ZADwnjweeeSj37gNlt8GmzronYVKbRUVHYpq1Ui24o2qQ4dh1w4GXdBnR0sc%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:4a08c44e9e0c31939e507abb3f2b09b1:KToidRJ8bhrX%2BsSyazBd%2BUNqYNf0wUyUoIlg0mUrt7kD7KXQ07YF5z5TWQxig8p%2FZWTeKSX6pJ8vAWE%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:d0b63acfe81aaa86ea946cdd6e8661b3:T1NuqV0qjB%2FV8Z%2FoHsDRxAbrhiUnCIFOeop6puy%2FbC%2BDTISSN%2FpiIzS9y%2FhuEbWQ46x6fG5X6i3YDA%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:f9d0a9615806c0cf00f73b2b58eb7f16:%2BRlBYI8RWH290s%2FgNU6d44mIsoKKj0rubYe9gBEhfzNBkVKoQejnaNzwM8EKYFMJmJRKajNTQFpt1w%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=77c38664c7bde898585e39d7edca8110&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=77c38664c7bde898585e39d7edca8110&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></description>
			<content:encoded><![CDATA[
<p class="MsoNormal"><img class="alignleft" style="margin: 15px" src="http://media.techtarget.com/digitalguide/images/podcast/sSec_sww.jpg" alt="" vspace="15" width="124" height="124" align="left" />Jason Lewis, CTO of Lookingglass Cyber Solutions talks about the new Duqu malware. Lewis, a former global network exploitation and vulnerability analyst with NSA, said it was likely authored by a nation state, given the time and resources it takes to develop a sophisticated piece of malware.</p>
<p>Program notes: <a href="http://searchsecurity.techtarget.com/news/2240102018/New-Duqu-malware-shares-Stuxnet-code-similarities" target="_blank">New Duqu malware shares Stuxnet Trojan code similarities</a></p>

<br clear="both" style="clear: both;"/>
<br clear="both" style="clear: both;"/>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:8af70f6f261a78cbbeac69215581adc4:Pxc6Gt3gpwQVSe8Xjy3ZADwnjweeeSj37gNlt8GmzronYVKbRUVHYpq1Ui24o2qQ4dh1w4GXdBnR0sc%3D'><img border='0' title='Add to digg' alt='Add to digg' src='http://images.pheedo.com/images/mm/digg_64x16.png'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:4a08c44e9e0c31939e507abb3f2b09b1:KToidRJ8bhrX%2BsSyazBd%2BUNqYNf0wUyUoIlg0mUrt7kD7KXQ07YF5z5TWQxig8p%2FZWTeKSX6pJ8vAWE%3D'><img border='0' title='Add to StumbleUpon' alt='Add to StumbleUpon' src='http://images.pheedo.com/images/mm/stumbleit.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:d0b63acfe81aaa86ea946cdd6e8661b3:T1NuqV0qjB%2FV8Z%2FoHsDRxAbrhiUnCIFOeop6puy%2FbC%2BDTISSN%2FpiIzS9y%2FhuEbWQ46x6fG5X6i3YDA%3D%3D'><img border='0' title='Add to del.icio.us' alt='Add to del.icio.us' src='http://images.pheedo.com/images/mm/delicious.gif'/></a>
  <a style='font-size: 10px; color: maroon;' href='http://www.pheedcontent.com/hostedMorselClick.php?hfmm=v3:f9d0a9615806c0cf00f73b2b58eb7f16:%2BRlBYI8RWH290s%2FgNU6d44mIsoKKj0rubYe9gBEhfzNBkVKoQejnaNzwM8EKYFMJmJRKajNTQFpt1w%3D%3D'><img border='0' title='Add to Google' alt='Add to Google' src='http://images.pheedo.com/images/mm/google.png'/></a>
<br clear="both" style="clear: both;"/>
<a href="http://ads.pheedo.com/click.phdo?s=77c38664c7bde898585e39d7edca8110&p=1"><img alt="" style="border: 0;" border="0" src="http://ads.pheedo.com/img.phdo?s=77c38664c7bde898585e39d7edca8110&p=1"/></a>
<img alt="" height="0" width="0" border="0" style="display:none" src="http://tags.bluekai.com/site/5148"/><img alt="" height="0" width="0" border="0" style="display:none" src="http://insight.adsrvr.org/track/evnt/?ct=0:8pyu3gz&adv=wouzn4v&fmt=3"/>]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/security-wire-weekly/duqu-trojan-dangerous-malware-shares-stuxnet-code/feed/</wfw:commentRss>
			<pheedo:origEnclosureLink>http://itknowledgeexchange.techtarget.com/security-wire-weekly/wp-content/plugins/podpress/download.mp3?feed=965/0/SecurityWireWeekly10192011.mp3</pheedo:origEnclosureLink>
			<enclosure url="http://www.pheedo.com/e/f65ab3d94bc817b68a49cd555acd8737/SecurityWireWeekly10192011.mp3" length="13" type="audio/mpeg"/>
			<itunes:duration>14:45</itunes:duration>
			<itunes:subtitle>Jason Lewis, CTO of Lookingglass Cyber Solutions talks about the new Duqu malware. Lewis, a former global network exploitation and vulnerability analyst with NSA, said ...</itunes:subtitle>
			<itunes:summary>Jason Lewis, CTO of Lookingglass Cyber Solutions talks about the new Duqu malware. Lewis, a former global network exploitation and vulnerability analyst with NSA, said it was likely authored by a nation state, given the time and resources it takes to develop a sophisticated piece of malware.

Program notes: New Duqu malware shares Stuxnet Trojan code similarities
</itunes:summary>
			<itunes:keywords>Duqu,Trojan,,Security,Wire,Weekly</itunes:keywords>
			<itunes:author>SearchSecurity.com</itunes:author>
			<itunes:explicit>no</itunes:explicit>
			<itunes:block>No</itunes:block>
		</item>
	</channel>
</rss>
<!-- cached -->
