January 20th, 2012 by lhaas                              

viaForensics to Kick Off Digital Detectives Podcast Series

Gallivan, Gallivan and O’Melia (GGO, LLC), the e-discovery experts driving the move toward accessible, affordable e-discovery solutions, have partnered with Legal Talk Network to produce the ‘Digital Detectives’ series of podcasts for 2012. The Digital Detectives series aims to inform legal and technology professionals on a wide range of emerging topics in e-discovery, [...]

January 20th, 2012 by lhaas                              

U.S. Shuts Down Megaupload File-Sharing Site, Anonymous Retaliates With DDoS Attacks

The battle is heating up:

A day after the Internet was abuzz with protests of the proposed SOPA and PIPA anti-piracy bills, the Department of Justice took a major action against many of the top executives of Megaupload, a popular file-sharing site that the government says was the basis for an “international organized [...]

January 19th, 2012 by lhaas                              

Hackers steal $6.7 million in bank cyber heist

We’ve been preaching for years that organizations needs to take a more proactive approach to their security. Services, such as our liveForensics, add additional layers of security to protect against such breaches.

Unfortunately, the Postbank’s fraud detection system hasn’t performed as it should, and the crime was discovered only after everyone returned to [...]

January 18th, 2012 by lhaas                              

RSA chief: Last year’s breach has silver lining

Silver lining of last year’s security breach is that it has lead to stronger security and better awareness of security issues.

On another topic, Coviello says businesses are rushing and therefore missing an opportunity to build security into virtual and cloud environments as they adopt them.

“[A]s much as I’ve preached for three [...]

December 20th, 2011 by tcannon                               1 comment

No-permission Android App Gives Remote Shell

I have been working at viaForensics as the Director of R&D for about 5 months now, and in that time I’ve been involved in some exciting research projects. I haven’t had the opportunity to blog on our company site yet so I thought I’d take a little time out and record a video [...]

November 16th, 2011 by lhaas                              

Cloud Services Credentials Easily Stolen Via Google Code Search

Security researchers have found that sensitive data stored on public cloud services can be easily accessed thieves with a little Google know-how. Researchers are warning companies not to store critical data on the public cloud:

“It is not a good idea to put sensitive data out in the cloud right now — at [...]

November 14th, 2011 by lhaas                              

FBI takes out $14M DNS malware operation

Closing out a two-year investigation, U.S. law enforcement has reportedly shut down a huge Internet fraud scheme centered in Estonia that it says “injected malware  in more than four million computers in over 100 countries while generating $14 million in illegitimate income.” Infected computers include over 500,000 U.S. computers, including some belonging to [...]

November 11th, 2011 by jpisani                              

Digital download service Steam suffers a security breach

The digital download giant Steam suffered a massive security breach earlier this week. A press release issued by Steam Founder Gabe Newell reads:

Dear Steam Users and Steam Forum Users,

Our Steam forums were defaced on the evening of Sunday, November 6. We began investigating and found that the intrusion goes beyond [...]

October 25th, 2011 by lhaas                              

Mobile security exploits double in 2011, IBM says – channelbuzz.ca

What sets viaForensics apart from other security organizations? Our proactive forensic approach, that’s what.

Andrew Hoog would certainly agree with the need for including forensics in daily operational activities. The CIO for Chicago-based viaForensics says his firm provides a unique way for companies to safeguard against mobile app threats and other nefarious cyber-attacks.

[...]

October 24th, 2011 by lhaas                              

Researchers crack W3C encryption standard for XML

Researchers have demonstrated that they can decrypt data in XML documents, which may give pause to those who rely on Web-based services to handle sensitive data:

XML Encryption is used widely as part of server-to-server Web services connections to transmit secure information mixed with non-sensitive data, based on cipher-block chaining. It can be [...]