Tip:
Highlight text to annotate it
X
Hello everybody, Paul Ducklin here
from Sophos in Sydney...
And, as it just so happened this month,
also in the delighful riverside city
of Brisbane, Queensland.
In case you're wondering,
the project manager on the bridge shown here
also built the Sydney Harbour Bridge,
as well as being about 100 years ahead of his time
in planning for the expansion
of the Sydney rail network.
But that's enough anti-automobile propaganda,
let's talk about computer security...
Paul Ducklin.
Sophos.
February 2011.
90 Second News.
Malicious attachments
in fake parcel-tracking emails
were big news this month.
We should really all know better by now,
but a surprising number of Naked Security readers
have told us:
"I can't believe I fell for it,
but today of all days
I really was expecting a parcel."
Now remember, scammers bank on
this sort of coincidence,
so keep your wits about you at all times.
Boutique cybercrime investigators HBGary Federal
got massively hacked this month.
I'm sure you read about it.
Poor web security
plus poor password hashing
plus poor password choice
plus poor change control
ended in a total security fail
and the resignation of the poor CEO.
Now this hack was a serious cybercrime,
so please don't laugh and don't smile -
but do ask yourself,
"Could this have happened to my company?"
In the Apple world,
a proof-of-concept OS X Trojan
popped up this month -
prompting the usual bleats
from the counterculture
that it wasn't a Trojan,
it was a Remote Access Tool.
"Tool", indeed.
Naked Security disagrees.
It's a Remote Access Trojan,
and that's that.
And finally, Windows 7
got its first,
and long-awaited Service Pack this month.
This mega-update, by they way,
also applies to
Windows Server 2008 Release Two.
Please crack ahead with
slipstreaming Service Pack 1 into your
standard master images.
It brings your base install
some 796 bug fixes closer to fully patched.
And that's 90 seconds of news.
Don't forget to join us at
nakedsecurity dot sophos dot com,
and if there's any security topic
which is bugging you,
please let us know.
Just e mail us on TIPS at SOPHOS dot COM.
Thanks for listening,
and until next time,
please watch out
for those bogus parcel delivery emails.