<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Citadel Information Group</title>
	<atom:link href="http://www.citadel-information.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.citadel-information.com</link>
	<description>Information Peace of Mind - Cyber Security Management</description>
	<lastBuildDate>Sun, 13 May 2012 18:45:46 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
		<item>
		<title>Weekend Vulnerability and Patch Report, May 13, 2012</title>
		<link>http://www.citadel-information.com/2012/05/weekend-vulnerability-and-patch-report-may-13-2012/</link>
		<comments>http://www.citadel-information.com/2012/05/weekend-vulnerability-and-patch-report-may-13-2012/#comments</comments>
		<pubDate>Sun, 13 May 2012 18:17:50 +0000</pubDate>
		<dc:creator>Kimberly Pease</dc:creator>
				<category><![CDATA[Cyber Security Management]]></category>
		<category><![CDATA[Security Alert: Vulnerability Management]]></category>

		<guid isPermaLink="false">http://www.citadel-information.com/?p=3762</guid>
		<description><![CDATA[Important Security Updates Adobe Flash Player: Adobe has released version 11.2.202.235 to fix an extremely critical vulnerability. Updates are available from Adobe’s website. Adobe Illustrator: Adobe has released version CS6 to fix 5 highly critical vulnerabilities. Updates are available from Adobe’s website. Adobe Flash Professional: Adobe has released version CS6 to fix a highly critical vulnerability. Updates [...]]]></description>
			<content:encoded><![CDATA[<h3><strong>Important Security Updates</strong></h3>
<p><strong><strong>Adobe Flash Player: </strong></strong>Adobe has released version 11.2.202.235 to fix an extremely critical vulnerability. Updates are available from <a href="http://get.adobe.com/flashplayer/?promoid=JOPDD" target="_blank">Adobe’s website.</a></p>
<p><strong><strong>Adobe Illustrator: </strong></strong>Adobe has released version CS6 to fix 5 highly critical vulnerabilities. Updates are available from Adobe’s website.</p>
<p><strong><strong>Adobe Flash Professional: </strong></strong>Adobe has released version CS6 to fix a highly critical vulnerability. Updates are available from Adobe’s website.</p>
<p><strong><strong>Adobe Shockwave Player: </strong></strong>Adobe has released version 11.6.5.635 to fix 5 highly critical vulnerabilities. Updates are available from Adobe’s website.</p>
<p><strong><strong>Apple iOS: </strong></strong>Apple has released iOS 5.1.1 for iPhone, iPod, iPad, and iPad 2 to fix several vulnerabilities, several of which are highly critical. The update is available through <a href="http://support.apple.com/kb/HT1222" target="_blank">Apple’s website</a>. We first alerted readers to one of these vulnerabilities in <a href="http://www.citadel-information.com/2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>Apple Mac OS X: </strong>Apple has released updates for OS X Lion v10.7.4 to fix 36 vulnerabilities, many of which are highly critical. The updates are available through the programs or from <a href="http://support.apple.com/downloads" target="_blank">Apple’s download site</a>.</p>
<p><strong><strong>Microsoft Patch-Tuesday: </strong></strong>Microsoft has released 7 updates to fix at least 23 vulnerabilities, many of which are highly critical. Updates include Windows Vista, XP Pro and Microsoft Office Suite. Updates are available through the Window&#8217;s Control Panel. <strong><em></em></strong></p>
<h3><strong>Current Software Versions</strong></h3>
<div id="post-3109">
<div>
<div id="post-3045">
<div>
<div id="post-2999">
<div>
<p>Adobe Flash 11.2.202.235</p>
<p>Adobe Reader 10.1.3</p>
<p>Apple QuickTime 7.7.1</p>
<p>Apple Safari 5.1.7  [Warning; see below]</p>
<p>Google Chrome 18.0.1025.168</p>
<p>Internet Explorer 9.0.8112.16421</p>
<p>Java SE 6 Update 31 [Java is a major source of cyber criminal exploits. Java is not needed for most internet browsing. Consider removing or disabling it if you don't need it. ]</p>
<p>Mozilla Firefox 12.0</p>
<h3><strong>Newly Announced Unpatched Vulnerabilities</strong></h3>
<p><strong><strong><strong>Adobe Flash Professional: </strong></strong></strong>Adobe has released version CS6 to fix several highly critical unpatched vulnerabilities in version CS5 of Adobe Flash Professional. Updates are available from Adobe’s website.<strong></strong></p>
<p><strong><strong><strong>Adobe Illustrator: </strong></strong></strong>Adobe has released version CS6 to fix 5 highly critical unpatched vulnerabilities in version CS5 of Adobe Illustrator. Updates are available from Adobe’s website.<strong><br />
</strong></p>
<h3><strong>For Your IT Department</strong></h3>
<p><strong><strong>Cisco Unified MeetingPlace</strong><strong>: </strong></strong>Secunia reports a <a href="http://secunia.com/advisories/49102/" target="_blank">vulnerability</a> in Cisco&#8217;s Unified MeetingPlace, version 6.x. Update to version 6.1.1.4 (MR1).</p>
<p><strong><strong></strong></strong><strong><strong>Cisco Unified MeetingPlace</strong><strong>: </strong></strong>Secunia reports a <a href="http://secunia.com/advisories/49104/" target="_blank">vulnerability</a> in Cisco&#8217;s Unified MeetingPlace, version 7.x. Update to version 7.1.2.6 (MR1).</p>
<p><strong><strong>CiscoWorks Prime LAN Management </strong><strong>: </strong></strong>Secunia reports 2 <a href="http://secunia.com/advisories/49094/" target="_blank">moderately critical vulnerabilities</a> in CiscoWork&#8217;s Prime LAN Management. Update to version 4.2.</p>
<p><strong><strong>Cisco Secure ACS</strong><strong>: </strong></strong>Secunia reports 2 <a href="http://secunia.com/advisories/49101/" target="_blank">moderately critical vulnerabilities</a> in Cisco&#8217;s Secure ACS. Update to version 5.2.0.26 patch 9.</p>
<p><strong><strong>IBM OS/400</strong><strong>: </strong></strong>Secunia reports <a href="http://secunia.com/advisories/49107/" target="_blank">highly critical vulnerabilitie</a>s in IBM&#8217;s OS/400 in version V6R1M0. Apply patch 5733SC1.</p>
<p><strong><strong>Symantec Web Gateway</strong><strong>: </strong></strong>Secunia reports an <a href="http://secunia.com/advisories/49064/" target="_blank">unpatched vulnerability</a> in Symantec&#8217;s Web Gateway version 5.0.2.8. Other versions may also be affected. See <a href="http://secunia.com/advisories/49064/" target="_blank">Secunia advisory</a> for workaround.</p>
<h3><strong>Important Unpatched Vulnerabilities</strong></h3>
<p><strong>ACDSee 14.x</strong>: Secunia reports a <a href="http://secunia.com/advisories/47450/" target="_blank">highly critical unpatched vulnerability</a> in ACDSee. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/weekend-patch-and-vulnerability-report-february-19-2012/" target="_blank">Weekend Vulnerability and Patch Report, February 19, 2012</a>.</p>
<p><strong>ACDSee Photo: </strong>Several highly critical vulnerabilities have been identified in various ACDSee photo products. Vulnerabilities have been identified in <a href="http://secunia.com/advisories/43564/" target="_blank">FotoSlate</a>, <a href="http://secunia.com/advisories/43563/" target="_blank">Photo Editor 2008</a>, and <a href="http://secunia.com/advisories/43562/" target="_blank">Picture Frame Manager</a>. No patches are available at this time. Readers should refrain from using ACDSee to open untrusted files. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/weekend-vulnerability-patch-report-june-12-2011/" target="_blank">Weekend Vulnerability and Patch Report, June 12, 2011</a>. We alerted readers to a second vulnerability in <a href="http://secunia.com/advisories/44722/" target="_blank">FotoSlate </a>in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/weekend-vulnerability-and-patch-report-september-18-2011/" target="_blank">Weekend Vulnerability and Patch Report, September 18, 2011</a>.</p>
<p><strong>ACD Systems Canvas CorelDRAW</strong>: A <a href="http://secunia.com/advisories/45261/" target="_blank">highly critical vulnerability </a>has been found in ACD Systems Canvas which can be exploited by malicious people to compromise a user’s system. Users should not view untrusted CDR files. Readers should refrain from opening untrusted files in ACD Systems Canvas. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2011/07/" target="_blank">Weekend Vulnerability and Patch Report, July 31, 2011</a>.</p>
<p><strong><strong>Adobe Photoshop: </strong></strong>Secunia reports a <a href="http://secunia.com/advisories/48457/" target="_blank">highly critical vulnerability</a> in Adobe’s Photoshop version 12.1. Other versions may also be affected. Adobe warns not to open untrusted TIFF images. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>Android Browser:</strong> Secunia reports a <a href="http://secunia.com/advisories/47315/" target="_blank">less critical vulnerability</a> in the Android browser that can be exploited to trick a user into believing he is connected to a trusted site by including the trusted site in an iframe. The vulnerability is confirmed in Browser version 2.3.3 included in Android version 2.3.3 and Browser version 3.2 included in Android version 3.2. Other versions may also be affected. Users are cautioned to not rely on displayed certificate information. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2011/12/weekend-vulnerability-and-patch-report-december-25-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 25, 2011</a>.</p>
<p><strong>Apple Safari: </strong>Secunia reports a <a href="http://secunia.com/advisories/45758/" target="_blank">moderately critical vulnerability</a> in Apple’s Safari version 5.1.2 (7534.52.7) on Windows using the RealPlayer and Adobe Flash plug-ins. Other versions may also be affected. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/weekend-patch-and-vulnerability-report-march-11-2012/" target="_blank">Weekend Vulnerability and Patch Report, March 11, 2012</a>.</p>
<p><strong>Apple Safari:</strong> Secunia reports a <a href="http://secunia.com/advisories/47319/" target="_blank">non-critical unpatched vulnerability</a> in Safari 5.1.2. Other versions may also be affected. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2011/12/weekend-vulnerability-and-patch-report-december-25-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 25, 2011</a>.</p>
<p><strong>CA ARCserve Backup: </strong>Secunia reports a <a href="http://secunia.com/advisories/48459/" target="_blank">less critical vulnerability</a> in CA’s ARCserver Backup in versions 12.0, 12.5, 15, and 16. CA provides a partial fix solution and advises updating to a fixed version. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>HTC Mobile Devices: </strong>The <a href="http://secunia.com/advisories/43163/" target="_blank">security vulnerability</a> in the default Twitter application (Peep) in HTC products remain unpatched. Readers should refrain from using the default Twitter application (Peep). We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/2011/02/weekend-vulnerability-and-patch-report-february-11-2011/" target="_blank">Weekend Vulnerability and Patch Report, February 11, 2011</a>.</p>
<p><strong>HTC Touch2:</strong> The <a href="http://secunia.com/advisories/47242/" target="_blank">highly critical 0-day vulnerability </a>in the HTC Touch2 VideoPlayer remains unpatched. Users are advised to not open files from untrusted sources. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/weekend-vulnerability-and-patch-report-december-18-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 18, 2011</a>.</p>
<p><strong>McAfee SaaS:</strong> The <a href="http://secunia.com/advisories/47520/" target="_blank">highly critical vulnerability</a> in McAfee SaaS Endpoint Protection  remains unpatched. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/weekend-patch-and-vulnerability-report-january-22-2012/" target="_blank">Weekend Vulnerability and Patch Report, January 22, 2012.</a></p>
<p><strong>Microsoft Windows XP: </strong>A <a href="http://secunia.com/advisories/45475/" target="_blank">less-critical security vulnerability </a>has been found in Windows XP which can be exploited by malicious, local users to disclose potentially sensitive information or cause a DoS (Denial of Service). No patch is available at this time. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/weekend-vulnerability-and-patch-report-august-7-2011/" target="_blank">Weekend Vulnerability and Patch Report, August 7, 2011</a>.</p>
<p><strong>Microsoft Word: </strong>A <a href="http://secunia.com/advisories/44923/" target="_blank">highly critical vulnerability </a>has been found in Microsoft Word XP and 2002. No patch is available at this time. Readers should refrain from opening untrusted files in these earlier versions of Word. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/weekend-vulnerability-patch-report-june-19-2011/" target="_blank">Weekend Vulnerability and Patch Report, June 19, 2011</a>.</p>
<p><strong>Microsoft Reader: </strong>The <a href="http://secunia.com/advisories/44121/" target="_blank">highly critical vulnerability </a>in Microsoft Reader, versions 2.x, remains unpatched.  Readers should refrain from opening untrusted files in Reader. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/weekend-vulnerability-and-patch-report-april-15-2011/" target="_blank">Weekend Vulnerability and Patch Report, April 15, 2011</a>.</p>
<p><strong>PDF-Pro:</strong> Several <a href="http://secunia.com/advisories/42805/" target="_blank">highly critical vulnerabilities</a> in PDF-Pro, a popular alternative to Adobe Acrobat, remain unpatched. Readers should refrain from opening untrusted files in PDF-Pro. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/2011/03/weekend-vulnerability-and-patch-report-march-4-2011/" target="_blank">Weekend Vulnerability and Patch Report, March 4, 2011</a>.</p>
<p><strong>Quick View Plus CorelDRAW</strong>: A <a href="http://secunia.com/advisories/45281/" target="_blank">highly critical vulnerability </a>has been found in Quick View Plus which can be exploited by malicious people to compromise a user’s system. Users should not view untrusted CDR files in Quick View Plus. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/weekend-vulnerability-and-patch-report-july-31-2011/" target="_blank">Weekend Vulnerability and Patch Report, July 31, 2011</a>.</p>
<p><strong><strong></strong></strong><strong>Symantec pcAnywhere</strong><em><strong>:</strong> </em>As we reported in our<a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/cyber-security-news-of-the-week-january-29-2012/" target="_blank"> Cyber Security News of the Week, January 29, 2012</a>, Symantec has confirmed that the hacker group Anonymous stole source code from the 2006 versions of several Norton security products and the pcAnywhere remote access tool. Symantec has advised users to disable pcAnywhere because of the theft of the pcAnywhere source code.</p>
<p><em>If you are responsible for the security of your computer, our weekly report is for you. We strongly urge you to take action to keep your workstation patched and updated.<br />
</em></p>
<p><em>If someone else is responsible for the security of your computer, forward our Weekend Vulnerability and Patch Report to them and follow up to make sure your computer has been patched and updated.</em></p>
<p>Vulnerability management is a key element of <a href="http://www.citadel-information.com/services/" target="_blank"><em>cyber security management</em></a>. Cyber criminals take over user computers by writing computer programs that “exploit” vulnerabilities in operating systems (Windows, Apple OS, etc) and application programs (Adobe Acrobat, Office, Flash, Java, etc). When software companies find a vulnerability, they usually issue an update patch to fix the code running in their customer’s computers.</p>
<p><a href="http://www.citadel-information.com/" target="_blank">Citadel </a>publishes our <em>Weekend Vulnerability and Patch Report</em> to alert readers to some of the week’s important updates and vulnerabilities. Our focus is on software typically found in the small or home office (SOHO) or that users are likely to have on their home computer. The report is not intended to be a thorough listing of updates and vulnerabilities.</p>
</div>
</div>
</div>
</div>
</div>
</div>
]]></content:encoded>
			<wfw:commentRss>http://www.citadel-information.com/2012/05/weekend-vulnerability-and-patch-report-may-13-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security News of the Week, May 13, 2012</title>
		<link>http://www.citadel-information.com/2012/05/cyber-security-news-of-the-week-may-13-2012/</link>
		<comments>http://www.citadel-information.com/2012/05/cyber-security-news-of-the-week-may-13-2012/#comments</comments>
		<pubDate>Sun, 13 May 2012 17:28:44 +0000</pubDate>
		<dc:creator>Stan Stahl Ph.D.</dc:creator>
				<category><![CDATA[Cyber Security Management]]></category>

		<guid isPermaLink="false">http://www.citadel-information.com/?p=3768</guid>
		<description><![CDATA[Cyber Security Commentary — ISSA-LA 4th Annual Information Security Summit Join us on May 16 for ISSA-LA’s 4th Annual Information Security Summit.  Keynote addresses by Alan Paller of the SANS Institute, DHS’ Bruce McConnell and business coach Chris Coffey. Perfect for business, technology and information security leaders. Nonprofits can attend for free by taking advantage [...]]]></description>
			<content:encoded><![CDATA[<h3>Cyber Security Commentary — ISSA-LA 4th Annual Information Security Summit</h3>
<p>Join us on May 16 for ISSA-LA’s 4th Annual Information Security Summit.  Keynote addresses by Alan Paller of the SANS Institute, DHS’ Bruce McConnell and business coach Chris Coffey. Perfect for business, technology and information security leaders. <strong><em>Nonprofits can attend for free by taking advantage of ISSA-LA&#8217;s special scholarship fund. Email vp@issa-la.org for more information.</em></strong></p>
<p><strong><em></em></strong><em>The ISSA Summit provides business leaders with a concentrated, thought-provoking, and valuable education in the nature of these threats, and how organizations can and should mitigate their risks from today&#8217;s cyber threats.  I highly recommend that executives take advantage of this annual event.</em><em></em></p>
<p><em>Eric Schwab</em><br />
<em> General Manager</em><br />
<em>GFI Software</em></p>
<p>Visit the <a href="http://www.issala.org/summit/" target="_blank">ISSA-LA Summit Website </a>for more information or to register.</p>
<h3>Cyber Crime</h3>
<p><a href="http://www.zdnet.com/blog/btl/hackers-target-twitter-spammers-in-massive-account-data-breach/76482" target="_blank">Hackers target Twitter spammers in massive account data breach:</a> Summary: A massive breach has led to more than 55,000 Twitter accounts being published on the Web. But it appears the hackers may have targeted spammers over ordinary users. Twitter is investigating after 55,000 account details — including username and password combinations — were published online. <em>ZDNet, May 8, 2012</em></p>
<p><a href="http://www.onlinesentinel.com/news/hackers-breach-umaine-servers_2012-05-11.html" target="_blank">Hackers breach UMaine servers. Affected students made purchases at computer store: </a>A University of Maine computer server breach by hackers may have exposed personal information, including credit card and Social Security numbers of students, college officials said Thursday. <em>Morning Sentinel, May 12, 2012</em></p>
<h3>Cyber Hacktivists</h3>
<p><a href="http://www.reuters.com/article/2012/05/09/us-russia-hackers-kremlin-idUSBRE8480L020120509" target="_blank">Activist hackers temporarily block Putin&#8217;s website: </a>Hackers temporarily blocked President Vladimir Putin&#8217;s web site on Wednesday, carrying out a promise to disrupt government information portals two days after his swearing-in for another six-year term that has drawn street protests. <em>Reuters, May 9, 2012</em></p>
<h3>Cyber Risk</h3>
<p><a href="http://www.computerworld.com/s/article/9227052/Is_Your_Cloud_Provider_Exposing_Remnants_of_Your_Data_?taxonomyId=83" target="_blank">Is Your Cloud Provider Exposing Remnants of Your Data?</a>: CIO &#8211; If your organization uses a multi-tenant managed hosting service or Infrastructure as a Service (IaaS) cloud for some or all of your data and you aren&#8217;t following best practices by encrypting that data you may be inadvertently exposing it. <em>ComputerWorld, May 10, 2012</em></p>
<p><a href="http://krebsonsecurity.com/2012/05/fbi-updates-over-public-net-access-bad-idea/">FBI: Updates Over Public ‘Net Access = Bad Idea: </a>The Federal Bureau of Investigation is advising travelers to avoid updating software while using hotel or other public Internet connections, warning that malicious actors are targeting travelers abroad through pop-up windows while they are establishing an Internet connection in their hotel rooms. <em>KrebsOnSecurity, May 11, 2012</em></p>
<p><a href="http://abcnews.go.com/Blotter/dhs-hackers-mounting-organized-cyber-attack-us-gas/story?id=16304818" target="_blank">DHS: Hackers Mounting Organized Cyber Attack on U.S. Gas Pipelines</a>: For the past six months, an unidentified group of hackers has been mounting an ongoing, coordinated cyber attack on the control systems of U.S. gas pipelines, prompting the Department of Homeland Security to issue alerts. <em>ABC News, May 8, 2012</em></p>
<p><a href="http://krebsonsecurity.com/2012/05/at-the-crossroads-of-ethieves-and-cyberspies/" target="_blank">At the Crossroads of eThieves and Cyberspies: </a>Lost in the annals of campy commercials from the 1980s is a series of ads that featured improbable scenes between two young people (usually of the opposite sex) who always somehow caused the inadvertent collision of peanut butter and chocolate. After the mishap, one would complain, “Hey you got your chocolate in my peanut butter!,” and the other would shout, “You got your peanut butter in my chocolate!” The youngsters would then sample the product of their happy accident and be amazed to find someone had already combined the two flavors into a sweet and salty treat that is commercially available. <em>KrebsOnSecurity, May 8, 2012</em></p>
<p><a href="http://www.pcworld.com/businesscenter/article/255217/financial_malware_tricks_users_with_claims_of_free_credit_card_fraud_insurance.html" target="_blank">Financial Malware Tricks Users With Claims of Free Credit Card Fraud Insurance:</a> A piece of financial malware called Tatanga attempts to trick online banking users into authorizing rogue money transfers from their accounts as part of the activation procedure for a free credit-card fraud insurance service purportedly provided by their banks, security researchers from Trusteer said Tuesday. <em>IDG News, May 8, 2012</em></p>
<p><a href="http://www.informationweek.com/aroundtheweb/security/hackers-gain-access-to-homes-throughwebc/63455a74326c786e30674e4e5650794a316d753544413d3d?itc=SBX_iwk_fture_sociative_Security" target="_blank">Hackers Gain Access to Homes Through Webcams:</a> Internet users are becoming vulnerable to hackers who can infiltrate software and gain access to webcams. “The main thing to worry about is when software is able to turn on your camera without notifying you, without the user explicitly turning it on, that’s the main issue,” said Feross Aboukhadijeh, a student at Stanford University in California. <em>Information Week, May 9, 2012</em></p>
<h3>Cyber Security Management</h3>
<p><a href="http://www.jdsupra.com/post/documentViewer.aspx?fid=187aad50-a1c3-4271-8071-907d9c3af97a" target="_blank">HIPAA/HiTECH &#8211; Changes on the Way for Covered Providers:</a> The privacy and security landscape for covered providers will soon be changing. A number of rules are finally making their way through the system in relationship to HIPAA, HiTECH and Stage II Meaningful Use. <em>JDSupra, May 9, 2012</em></p>
<h3>Securing the Village</h3>
<p><a href="http://www.washingtonpost.com/world/national-security/pentagon-to-expand-cybersecurity-program-for-defense-contractors/2012/05/11/gIQALhjbHU_story.html">Pentagon to expand cybersecurity program for defense contractors:</a> The Pentagon is expanding and making permanent a trial program that teams the government with Internet service providers to protect defense firms’ computer networks against data theft by foreign adversaries. <em>Washington Post, May 11, 2012</em></p>
<p><a href="http://blogs.wsj.com/totalreturn/2012/05/08/identity-theft-victims-given-short-shrift-by-irs-says-watchdog/" target="_blank">Identity-Theft Victims Given Short Shrift by IRS, Says Watchdog:</a> J. Russell George, the Treasury Inspector General for Tax Administration, or Tigta—an official IRS watchdog—today told a Congressional oversight committee that the Internal Revenue Service gives “confusing and often conflicting instructions” to taxpayers who are victims of identity theft. IRS Deputy Commissioner Steven Miller gave testimony before the committee as well. <em>Wall Street Journal, May 8, 2012</em></p>
<p><a href="http://www.wired.com/threatlevel/2012/05/fbi-fears-bitcoin/">FBI Fears Bitcoin’s Popularity with Criminals: </a>The FBI sees the anonymous Bitcoin payment network as an alarming haven for money laundering and other criminal activity — including as a tool for hackers to rip off fellow Bitcoin users. &#8230; That’s according to a new FBI internal report that leaked to the internet this week, which expresses concern about the difficulty of tracking the identify of anonymous Bitcoin users, while also unintentionally providing tips for Bitcoin users to remain more anonymous. <em>Wired, May 9, 2012</em></p>
<h3>Cyber Defenders</h3>
<p><a href="http://www.npr.org/2012/05/10/152374358/cybersecurity-firms-ditch-defense-learn-to-hunt" target="_blank">Cybersecurity Firms Ditch Defense, Learn To &#8216;Hunt&#8217;: </a>The most challenging cyberattacks these days come from China and target Western firms&#8217; trade secrets and intellectual property. But a problem for some is a business opportunity for others: It&#8217;s boom time for cybersecurity firms that specialize in going after Chinese hackers. <em>NPR May 10, 2012</em></p>
<h3>Cyber Research</h3>
<p><a href="http://www.newswise.com/articles/view/589164/?sc=rssn&amp;utm_source=feedburner&amp;utm_medium=feed&amp;utm_campaign=Feed%3A+NewswiseScinews+%28Newswise%3A+SciNews%29" target="_blank">Cybersecurity Experts Begin Investigation on Self-Adapting Computer Network That Defends Itself Against Hackers</a>: In the online struggle for network security, Kansas State University cybersecurity experts are adding an ally to the security force: the computer network itself. Newswise, <em>May 10, 2012</em></p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.citadel-information.com/2012/05/cyber-security-news-of-the-week-may-13-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Weekend Vulnerability and Patch Report, May 6, 2012</title>
		<link>http://www.citadel-information.com/2012/05/weekend-vulnerability-and-patch-report-may-6-2012/</link>
		<comments>http://www.citadel-information.com/2012/05/weekend-vulnerability-and-patch-report-may-6-2012/#comments</comments>
		<pubDate>Sun, 06 May 2012 17:16:02 +0000</pubDate>
		<dc:creator>Kimberly Pease</dc:creator>
				<category><![CDATA[Cyber Security Management]]></category>
		<category><![CDATA[Security Alert: Vulnerability Management]]></category>

		<guid isPermaLink="false">http://www.citadel-information.com/?p=3714</guid>
		<description><![CDATA[Important Security Updates Adobe Flash Player: Adobe has released version 11.2.202.235 to fix several highly critical vulnerabilities, including an active zero day vulnerability. Updates are available from Adobe’s website. Adobe Flash Player for Android: Adobe has released updates for the Android mobile device to fix several highly critical vulnerabilities. Updates are available through the Android device. [...]]]></description>
			<content:encoded><![CDATA[<h3><strong>Important Security Updates</strong></h3>
<p><strong><strong>Adobe Flash Player: </strong></strong>Adobe has released version 11.2.202.235 to fix several highly critical vulnerabilities, including an active zero day vulnerability. Updates are available from <a href="http://get.adobe.com/flashplayer/?promoid=JOPDD" target="_blank">Adobe’s website.</a></p>
<p><strong>Adobe Flash Player for Android: </strong>Adobe has released updates for the Android mobile device to fix several highly critical vulnerabilities. Updates are available through the Android device.</p>
<p><strong>Google Chrome: </strong>Google has released  version 18.0.1025.168 to fix at least 5 vulnerabilities, several of which are highly critical. The update is available through the program.</p>
<p><strong>WinZip</strong><strong>: </strong>WinZip has released version 16.5 (10095) of the WinZip software to fix a vulnerability. Update from within the program. Note: This month marks the end of support to WinZip&#8217;s version 12.0. The support for all versions prior to 12.0 have also expired.</p>
<h3><strong>Current Software Versions</strong></h3>
<div id="post-3109">
<div>
<div id="post-3045">
<div>
<div id="post-2999">
<div>
<p>Adobe Flash 11.2.202.235</p>
<p>Adobe Reader 10.1.3</p>
<p>Apple QuickTime 7.7.1</p>
<p>Apple Safari 5.1.5  [Warning; see below]</p>
<p>Google Chrome 18.0.1025.168</p>
<p>Internet Explorer 9.0.8112.16421</p>
<p>Java SE 6 Update 31 [Java is a major source of cyber criminal exploits. Java is not needed for most internet browsing. Consider removing or disabling it if you don't need it. ]</p>
<p>Mozilla Firefox 12.0</p>
<h3><strong>Newly Announced Unpatched Vulnerabilities</strong></h3>
<p>None<strong><br />
</strong></p>
<h3><strong>For Your IT Department</strong></h3>
<p><strong><strong>Citrix</strong><strong>: </strong></strong>Secunia reports a <a href="http://secunia.com/advisories/48971/" target="_blank">moderately critical vulnerability</a> in Citrix&#8217;s Provisioning Services in versions 5.x and 6.x. Apply the hotfix or service pack.</p>
<p><strong><strong>HP Systems Insight Manager</strong><strong>: </strong></strong>Secunia reports at least <a href="http://secunia.com/advisories/49035/" target="_blank">65 vulnerabilities</a>, many of which are highly critical, in HP Systems&#8217; Insight Manager in versions prior to 7.0. Update to version 7.0</p>
<p><strong><strong>McAfee Virtual Technician</strong><strong>: </strong></strong>Secunia reports a <a href="http://secunia.com/advisories/49007/" target="_blank">highly critical vulnerability</a> in McAfee&#8217;s Virtual Technician in version 6.3.0.1911. Other versions may also be affected. Set the kill-bit for the affected ActiveX control.</p>
<p><strong><strong>VMWare ESX Server</strong><strong>: </strong></strong>Secunia reports <a href="http://secunia.com/advisories/49019/" target="_blank">vulnerabilities</a> in VMWare’s ESX Server. Update to a fixed version. See <a href="http://secunia.com/advisories/49019/" target="_blank">VMWare&#8217;s advisory</a> for details.</p>
<h3><strong>Important Unpatched Vulnerabilities<strong></strong></strong><strong></strong><strong></strong><strong></strong><strong></strong></h3>
<p><strong>ACDSee 14.x</strong>: Secunia reports a <a href="http://secunia.com/advisories/47450/" target="_blank">highly critical unpatched vulnerability</a> in ACDSee. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/weekend-patch-and-vulnerability-report-february-19-2012/" target="_blank">Weekend Vulnerability and Patch Report, February 19, 2012</a>.</p>
<p><strong>ACDSee Photo: </strong>Several highly critical vulnerabilities have been identified in various ACDSee photo products. Vulnerabilities have been identified in <a href="http://secunia.com/advisories/43564/" target="_blank">FotoSlate</a>, <a href="http://secunia.com/advisories/43563/" target="_blank">Photo Editor 2008</a>, and <a href="http://secunia.com/advisories/43562/" target="_blank">Picture Frame Manager</a>. No patches are available at this time. Readers should refrain from using ACDSee to open untrusted files. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/weekend-vulnerability-patch-report-june-12-2011/" target="_blank">Weekend Vulnerability and Patch Report, June 12, 2011</a>. We alerted readers to a second vulnerability in <a href="http://secunia.com/advisories/44722/" target="_blank">FotoSlate </a>in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/weekend-vulnerability-and-patch-report-september-18-2011/" target="_blank">Weekend Vulnerability and Patch Report, September 18, 2011</a>.</p>
<p><strong>ACD Systems Canvas CorelDRAW</strong>: A <a href="http://secunia.com/advisories/45261/" target="_blank">highly critical vulnerability </a>has been found in ACD Systems Canvas which can be exploited by malicious people to compromise a user’s system. Users should not view untrusted CDR files. Readers should refrain from opening untrusted files in ACD Systems Canvas. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2011/07/" target="_blank">Weekend Vulnerability and Patch Report, July 31, 2011</a>.</p>
<p><strong><strong>Adobe Photoshop: </strong></strong>Secunia reports a <a href="http://secunia.com/advisories/48457/" target="_blank">highly critical vulnerability</a> in Adobe’s Photoshop version 12.1. Other versions may also be affected. Adobe warns not to open untrusted TIFF images. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>Android Browser:</strong> Secunia reports a <a href="http://secunia.com/advisories/47315/" target="_blank">less critical vulnerability</a> in the Android browser that can be exploited to trick a user into believing he is connected to a trusted site by including the trusted site in an iframe. The vulnerability is confirmed in Browser version 2.3.3 included in Android version 2.3.3 and Browser version 3.2 included in Android version 3.2. Other versions may also be affected. Users are cautioned to not rely on displayed certificate information. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2011/12/weekend-vulnerability-and-patch-report-december-25-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 25, 2011</a>.</p>
<p><strong>Apple iOS Safari: </strong>Secunia reports a <a href="http://secunia.com/advisories/48454/" target="_blank">less critical vulnerability</a> in Apple’s iOS version 5.1 (9B176) on iPhone 4 and 4th generation iPod touch. Other versions and devices may also be affected<em>.</em> Apple warns not to navigate to sensitive pages via untrusted web pages. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>Apple Safari: </strong>Secunia reports a <a href="http://secunia.com/advisories/45758/" target="_blank">moderately critical vulnerability</a> in Apple’s Safari version 5.1.2 (7534.52.7) on Windows using the RealPlayer and Adobe Flash plug-ins. Other versions may also be affected. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/weekend-patch-and-vulnerability-report-march-11-2012/" target="_blank">Weekend Vulnerability and Patch Report, March 11, 2012</a>.</p>
<p><strong>Apple Safari:</strong> Secunia reports a <a href="http://secunia.com/advisories/47319/" target="_blank">non-critical unpatched vulnerability</a> in Safari 5.1.2. Other versions may also be affected. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2011/12/weekend-vulnerability-and-patch-report-december-25-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 25, 2011</a>.</p>
<p><strong>CA ARCserve Backup: </strong>Secunia reports a <a href="http://secunia.com/advisories/48459/" target="_blank">less critical vulnerability</a> in CA’s ARCserver Backup in versions 12.0, 12.5, 15, and 16. CA provides a partial fix solution and advises updating to a fixed version. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>HTC Mobile Devices: </strong>The <a href="http://secunia.com/advisories/43163/" target="_blank">security vulnerability</a> in the default Twitter application (Peep) in HTC products remain unpatched. Readers should refrain from using the default Twitter application (Peep). We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/2011/02/weekend-vulnerability-and-patch-report-february-11-2011/" target="_blank">Weekend Vulnerability and Patch Report, February 11, 2011</a>.</p>
<p><strong>HTC Touch2:</strong> The <a href="http://secunia.com/advisories/47242/" target="_blank">highly critical 0-day vulnerability </a>in the HTC Touch2 VideoPlayer remains unpatched. Users are advised to not open files from untrusted sources. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/weekend-vulnerability-and-patch-report-december-18-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 18, 2011</a>.</p>
<p><strong>McAfee SaaS:</strong> The <a href="http://secunia.com/advisories/47520/" target="_blank">highly critical vulnerability</a> in McAfee SaaS Endpoint Protection  remains unpatched. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/weekend-patch-and-vulnerability-report-january-22-2012/" target="_blank">Weekend Vulnerability and Patch Report, January 22, 2012.</a></p>
<p><strong>Microsoft Windows XP: </strong>A <a href="http://secunia.com/advisories/45475/" target="_blank">less-critical security vulnerability </a>has been found in Windows XP which can be exploited by malicious, local users to disclose potentially sensitive information or cause a DoS (Denial of Service). No patch is available at this time. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/weekend-vulnerability-and-patch-report-august-7-2011/" target="_blank">Weekend Vulnerability and Patch Report, August 7, 2011</a>.</p>
<p><strong>Microsoft Word: </strong>A <a href="http://secunia.com/advisories/44923/" target="_blank">highly critical vulnerability </a>has been found in Microsoft Word XP and 2002. No patch is available at this time. Readers should refrain from opening untrusted files in these earlier versions of Word. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/weekend-vulnerability-patch-report-june-19-2011/" target="_blank">Weekend Vulnerability and Patch Report, June 19, 2011</a>.</p>
<p><strong>Microsoft Reader: </strong>The <a href="http://secunia.com/advisories/44121/" target="_blank">highly critical vulnerability </a>in Microsoft Reader, versions 2.x, remains unpatched.  Readers should refrain from opening untrusted files in Reader. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/weekend-vulnerability-and-patch-report-april-15-2011/" target="_blank">Weekend Vulnerability and Patch Report, April 15, 2011</a>.</p>
<p><strong>PDF-Pro:</strong> Several <a href="http://secunia.com/advisories/42805/" target="_blank">highly critical vulnerabilities</a> in PDF-Pro, a popular alternative to Adobe Acrobat, remain unpatched. Readers should refrain from opening untrusted files in PDF-Pro. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/2011/03/weekend-vulnerability-and-patch-report-march-4-2011/" target="_blank">Weekend Vulnerability and Patch Report, March 4, 2011</a>.</p>
<p><strong>Quick View Plus CorelDRAW</strong>: A <a href="http://secunia.com/advisories/45281/" target="_blank">highly critical vulnerability </a>has been found in Quick View Plus which can be exploited by malicious people to compromise a user’s system. Users should not view untrusted CDR files in Quick View Plus. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/weekend-vulnerability-and-patch-report-july-31-2011/" target="_blank">Weekend Vulnerability and Patch Report, July 31, 2011</a>.</p>
<p><strong><strong></strong></strong><strong>Symantec pcAnywhere</strong><em><strong>:</strong> </em>As we reported in our<a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/cyber-security-news-of-the-week-january-29-2012/" target="_blank"> Cyber Security News of the Week, January 29, 2012</a>, Symantec has confirmed that the hacker group Anonymous stole source code from the 2006 versions of several Norton security products and the pcAnywhere remote access tool. Symantec has advised users to disable pcAnywhere because of the theft of the pcAnywhere source code.</p>
<p><em>If you are responsible for the security of your computer, our weekly report is for you. We strongly urge you to take action to keep your workstation patched and updated.<br />
</em></p>
<p><em>If someone else is responsible for the security of your computer, forward our Weekend Vulnerability and Patch Report to them and follow up to make sure your computer has been patched and updated.</em></p>
<p>Vulnerability management is a key element of <a href="http://www.citadel-information.com/services/" target="_blank"><em>cyber security management</em></a>. Cyber criminals take over user computers by writing computer programs that “exploit” vulnerabilities in operating systems (Windows, Apple OS, etc) and application programs (Adobe Acrobat, Office, Flash, Java, etc). When software companies find a vulnerability, they usually issue an update patch to fix the code running in their customer’s computers.</p>
<p><a href="http://www.citadel-information.com/" target="_blank">Citadel </a>publishes our <em>Weekend Vulnerability and Patch Report</em> to alert readers to some of the week’s important updates and vulnerabilities. Our focus is on software typically found in the small or home office (SOHO) or that users are likely to have on their home computer. The report is not intended to be a thorough listing of updates and vulnerabilities.</p>
</div>
</div>
</div>
</div>
</div>
</div>
]]></content:encoded>
			<wfw:commentRss>http://www.citadel-information.com/2012/05/weekend-vulnerability-and-patch-report-may-6-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security News of the Week, May 6, 2012</title>
		<link>http://www.citadel-information.com/2012/05/cyber-security-news-of-the-week-may-6-2012/</link>
		<comments>http://www.citadel-information.com/2012/05/cyber-security-news-of-the-week-may-6-2012/#comments</comments>
		<pubDate>Sun, 06 May 2012 16:32:44 +0000</pubDate>
		<dc:creator>Stan Stahl Ph.D.</dc:creator>
				<category><![CDATA[Cyber Security Management]]></category>

		<guid isPermaLink="false">http://www.citadel-information.com/?p=3718</guid>
		<description><![CDATA[Cyber Security Commentary — ISSA-LA 4th Annual Information Security Summit Join us on May 16 for ISSA-LA’s 4th Annual Information Security Summit.  Keynote addresses by Alan Paller of the SANS Institute, DHS’ Bruce McConnell and business coach Chris Coffey. Perfect for business, technology and information security leaders. Nonprofits can attend for free by taking advantage [...]]]></description>
			<content:encoded><![CDATA[<h3>Cyber Security Commentary — ISSA-LA 4th Annual Information Security Summit</h3>
<p>Join us on May 16 for ISSA-LA’s 4th Annual Information Security Summit.  Keynote addresses by Alan Paller of the SANS Institute, DHS’ Bruce McConnell and business coach Chris Coffey. Perfect for business, technology and information security leaders. <strong><em>Nonprofits can attend for free by taking advantage of ISSA-LA&#8217;s special scholarship fund. Email vp@issa-la.org for more information</em></strong></p>
<p><em>I recommend the Summit to both the CIO and their staff because it’s the one day you can count on to get informed, learn how to stay informed, and build a network of strong security professionals who are passionate about supporting the “neighborhood watch” of information security. </em></p>
<p><em>Jennifer Terrill, CISSP<br />
Vice President Information Technology /  CISO<br />
True Religion Brand Jeans</em></p>
<p>Visit the <a href="http://www.issala.org/summit/" target="_blank">ISSA-LA Summit Website </a>for more information or to register.</p>
<h3>Cyber Crime</h3>
<p><a href="http://www.pcworld.com/businesscenter/article/254908/hackers_blackmail_belgian_bank_with_threats_to_publish_customer_data.html">Hackers Blackmail Belgian Bank With Threats to Publish Customer Data:</a> Hackers claimed to have breached the systems of the Belgian credit provider Elantis and threatened to publish confidential customer information if the bank does not pay €150,000 (US$197,000) before Friday, May 4, they said in a statement posted to Pastebin. Elantis confirmed the data breach on Thursday, but the bank said it will not give in to extortion threats. <em>PC World, May 3, 2012</em></p>
<p><a href="http://krebsonsecurity.com/2012/05/global-payments-breach-window-expands/">Global Payments Breach Window Expands:</a> A hacker break-in at credit and debit card processor Global Payments Inc. dates back to at least early June 2011, Visa and MasterCard warned in updated alerts sent to card-issuing banks in the past week. The disclosures offer the first additional details about the length of the breach since Global Payments acknowledged the incident on March 30, 2012. <em>KrebsOnSecurity, May 4, 2012</em></p>
<h3>Cyber Crime &#8211; HIPAA</h3>
<p><a href="http://www.therepublic.com/view/story/d2abfa78f13a43418c1407e527da5dba/SC--Medicaid-Data-Stolen/#share">SC inspector general analyzing security processes following theft of Medicaid information:</a> COLUMBIA, S.C. — South Carolina&#8217;s inspector general is reviewing the security systems of state agencies following the theft of more than 228,000 Medicaid patients&#8217; personal information, Gov. Nikki Haley said Monday. <em>The Republic, April 30, 2012</em></p>
<h3>Cyber Hacktivists</h3>
<p><a href="http://www.reuters.com/article/2012/05/04/us-russia-hackers-anonymous-idUSBRE8430U920120504">Hackers plan attack on Russian government sites:</a> The activist hacker group Anonymous said on Friday it planned to attack Russian government websites in order to support opposition protests ahead of Vladimir Putin&#8217;s inauguration as president. <em>Reuters, May 4, 2012</em></p>
<h3>Cyber Privacy</h3>
<p><a href="http://www.nytimes.com/2012/05/03/technology/personaltech/how-to-muddy-your-tracks-on-the-internet.html?src=me">How to Muddy Your Tracks on the Internet:</a> Legal and technology researchers estimate that it would take about a month for Internet users to read the privacy policies of all the Web sites they visit in a year. So in the interest of time, here is the deal: You know that dream where you suddenly realize you’re stark naked? You’re living it whenever you open your browser. <em>The New York Times, May 3, 2012</em></p>
<h3>Cyber Risk</h3>
<p><a href="http://www.bankinfosecurity.com/processor-warns-hacking-trend-a-4720">Processor Warns of Hacking Trend:</a> Over the past year, First Data, the largest payments processor in the U.S., has seen an uptick in &#8220;trolling&#8221; &#8211; hackers sniffing networks for remote access into point-of-sale systems that are open or loosely protected. <em>BankInfoSecurity, April 30, 2012</em></p>
<p><a href="http://www.latimes.com/business/la-fi-us-china-mobile-20120505,0,4550705.story">Fears of spying hinder U.S. license for China Mobile:</a> WASHINGTON — Concerned about possible cyber spying, U.S. national security officials are debating whether to take the unprecedented step of recommending that a Chinese government-owned mobile phone giant be denied a license to offer international service to American customers. <em>LA Times, May 5, 2012</em></p>
<p><a href="http://bits.blogs.nytimes.com/2012/05/01/malware-for-macs-lucrative-security-researchers-say/">Malware for Macs Lucrative, Security Researchers Say:</a> Last month, cybercriminals embarked on what quickly became one of the largest-scale malware attacks on Apple computers to date. Their motive was financial: security researchers now estimate that the infected computers made the malware’s creators $10,000 a day. <em>The New York Times, May 1, 2012</em></p>
<h3>Cyber Threat</h3>
<p><a href="http://www.informationweek.com/news/security/privacy/232901238">Android Apps Slurp Excessive Data:</a> More than one-third of Android apps request &#8220;excessive permissions,&#8221; giving them access to more data than they require. <em>InformationWeek, May 1, 2012</em></p>
<p><a href="http://reviews.cnet.com/8301-13727_7-57424299-263/snow-leopard-hit-hardest-by-flashback-malware/">Snow Leopard hit hardest by Flashback malware:</a> Russian security company Dr. Web recently analyzed one of the latest known variants of the Flashback malware for OS X, and in doing so revealed some interesting statistics regarding the infection rates of the malware &#8212; which, by some perspectives, counters criticism of Apple&#8217;s lapse in attention to security on OS X. <em>Cnet, April 30, 2012</em></p>
<p><a href="http://www.darkreading.com/mobile-security/167901113/security/news/232901423/6-discoveries-that-prove-mobile-malware-s-mettle.html?itc=edit_stub">6 Discoveries That Prove Mobile Malware&#8217;s Mettle:</a> Mobile malware hasn&#8217;t yet grown to the problematic levels that once plagued Windows PCs back in the days before Trustworthy Computing. That doesn&#8217;t mean mobile vulnerabilities aren&#8217;t exploitable, though: Today&#8217;s security researchers are not only creating and discovering proof-of-concept examples with real-world applicability, but they&#8217;re finding in-the-wild samples, too. <em>Dark Reading, May 3, 2012</em></p>
<h3>Cyber Vulnerability</h3>
<p><a href="http://www.networkworld.com/news/2012/050312-nt-objectives-258915.html">The 10 worst Web application-logic flaws that hackers love to abuse:</a> Hackers are always hunting to find business-logic flaws, especially on the Web, in order to exploit weaknesses in online ordering and other processes. NT OBJECTives, which validates Web application security, says these are the top 10 business-logic flaws they see all the time. <em>NetworkWorld, May 3, 2012</em></p>
<p><a href="http://www.eweek.com/c/a/Security/Mac-Malware-Targeting-Unpatched-Office-Running-on-OS-X-313223/">Mac Malware Targeting Unpatched Office Running on OS X:</a> Microsoft is reporting that malware is exploiting unpatched versions of its Microsoft Office Word 2000 suite to compromise Apple Macintoshes running Snow Leopard or earlier versions of Mac OS X. <em>eWeek, May 2, 2012</em></p>
<p><a href="http://www.zdnet.com/blog/security/adobe-warns-flash-player-malware-hitting-ie-on-windows-users/11893">Adobe warns: Flash Player malware hitting IE on Windows users:</a> Adobe has shipped an extremely urgent Flash Player patch to block in-the-wild malware attacks against Windows users. <em>ZDNet, May 4, 2012</em></p>
<h3>Cyber Security Management</h3>
<p><a href="http://www.informationweek.com/news/security/vulnerabilities/232901154">8 Reasons Conficker Malware Won&#8217;t Die:</a> Obstinate. That&#8217;s how Microsoft has labeled Conficker, which, despite being three years old and targeted for eradication, continues to survive&#8211;and even thrive&#8211;in corporate networks. <em>InformationWeek, April 30, 2012</em></p>
<h3>Vulnerability Management</h3>
<p><a href="http://go.bloomberg.com/tech-blog/2012-04-30-hackers-favorite-target-last-year-was-a-blast-from-the-past/">Hackers’ Favorite Target Last Year Was a Blast From the Past:</a> If you need more proof that users are a weak link in computer security, look no further than today’s report from Symantec, which showed that hackers’ favorite target in 2011 was a security hole fixed about four years ago. <em>Bloomberg, April 30, 2012</em></p>
<h3>Securing the Village</h3>
<p><a href="http://www.forbes.com/sites/ciocentral/2012/05/04/for-stronger-it-security-build-relationships-not-walls/">For Stronger IT Security, Build Relationships, Not Walls:</a> Security leaders put up walls. Firewalls, barriers to entry, ways to control the flow of information. It’s what we do. But ironically, to do a better job of protecting our enterprises, we’ve got to become more open and collaborative. <em>Forbes, May 4, 2012</em></p>
<h3>Cyber Career</h3>
<p><a href="http://www.pcworld.com/businesscenter/article/254922/hottest_it_skill_cybersecurity.html">Hottest IT Skill? Cybersecurity:</a> Embattled by hactivists, cybercriminals and foreign rivals seeking to steal proprietary information, U.S. corporations are ramping up their hiring of cybersecurity experts, with open jobs reaching an all-time high in April. <em>PC World, May 3, 2012</em></p>
<h3>Cyber Crime Busters</h3>
<p><a href="http://www.foxnews.com/us/2012/04/30/microsoft-says-raid-damaged-cybercrime-operation/">Microsoft says raid damaged cybercrime operation:</a> BALTIMORE – Microsoft and the banking industry Monday provided a detailed, behind-the-scenes account of an operation they said disrupted a major cybercrime operation that used malicious software to allegedly steal $100 million from consumers over the last five years. <em>Fox News, April 30, 2012</em></p>
<h3>Cyber Expose</h3>
<p><a href="http://www.zdnet.com/blog/bott/flashback-malware-exposes-big-gaps-in-apple-security-response/4904">Flashback malware exposes big gaps in Apple security response:</a> A pair of high-profile malware attacks have given Apple a crash course in security response. Based on recent actions, 70 million current Mac owners have a right to expect much more from Apple than they’re getting today. <em>ZDNet, April 29, 2012</em></p>
]]></content:encoded>
			<wfw:commentRss>http://www.citadel-information.com/2012/05/cyber-security-news-of-the-week-may-6-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Weekend Vulnerability and Patch Report, April 29, 2012</title>
		<link>http://www.citadel-information.com/2012/04/weekend-vulnerability-and-patch-report-april-29-2012/</link>
		<comments>http://www.citadel-information.com/2012/04/weekend-vulnerability-and-patch-report-april-29-2012/#comments</comments>
		<pubDate>Sun, 29 Apr 2012 20:27:34 +0000</pubDate>
		<dc:creator>Kimberly Pease</dc:creator>
				<category><![CDATA[Cyber Security Management]]></category>
		<category><![CDATA[Security Alert: Vulnerability Management]]></category>

		<guid isPermaLink="false">http://www.citadel-information.com/?p=3676</guid>
		<description><![CDATA[Important Security Updates Mozilla Firefox / Thunderbird: Mozilla has released Firefox version 12.0 and Thunderbird version12.0 to correct many highly critical vulnerabilities. Updates are available through the program. Mozilla Firefox Mobile for Android: Mozilla has released Firefox Mobile version 10.0.4 to correct many highly critical vulnerabilities. Updates are available through the Android device. Current Software Versions Adobe [...]]]></description>
			<content:encoded><![CDATA[<h3><strong>Important Security Updates</strong></h3>
<p><strong>Mozilla Firefox / Thunderbird:</strong> Mozilla has released Firefox version 12.0 and Thunderbird version12.0 to correct many highly critical vulnerabilities. Updates are available through the program.</p>
<p><strong>Mozilla Firefox Mobile for Android: </strong>Mozilla has released Firefox Mobile version 10.0.4 to correct many highly critical vulnerabilities. Updates are available through the Android device.</p>
<p><strong>Current Software Versions</strong></p>
<div id="post-3109">
<div>
<div id="post-3045">
<div>
<div id="post-2999">
<div>
<p>Adobe Flash 11.2.202.233</p>
<p>Adobe Reader 10.1.3</p>
<p>Apple QuickTime 7.7.1</p>
<p>Apple Safari 5.1.5  [Warning; see below]</p>
<p>Google Chrome 18.0.1025.162</p>
<p>Internet Explorer 9.0.8112.16421</p>
<p>Java SE 6 Update 31 [Java is a major source of cyber criminal exploits. Java is not needed for most internet browsing. Consider removing or disabling it if you don't need it. ]</p>
<p>Mozilla Firefox 12.0</p>
<h3><strong>Newly Announced Unpatched Vulnerabilities</strong></h3>
<p>None<strong><br />
</strong></p>
<h3><strong>For Your IT Department</strong></h3>
<p><strong>DNSChanger Malware: </strong><a href="http://www.us-cert.gov/" target="_blank">US-CERT</a> encourages users and administrators to ensure their systems are not infected with the DNSChanger malware by utilizing tools and resources available at the <a href="http://www.dcwg.org/" target="_self">DNS Changer Working Group (DCWG) website</a>. Computers testing positive for infection of DNSChanger malware will need to be cleaned of the malware in order to maintain continued internet connectivity beyond July 9, 2012.</p>
<p><strong>VMWare ESX Server</strong><strong>: </strong>Secunia reports <a href="http://secunia.com/advisories/48959/" target="_blank">vulnerabilities</a> in VMWare&#8217;s ESX Server in versions 4.1 and 4.0, many of which are highly critical. VMWare provides a partial fix solution and advises updating to a fixed version.</p>
<p><strong></strong><strong>WordPress Vulnerabilities:</strong> Several vulnerabilities have been found in WordPress and WordPress Plugins. More information is available from <a href="http://secunia.com/community/advisories/search/?search=wordpress" target="_blank">Secunia</a>.</p>
<h3><strong>Important Unpatched Vulnerabilities<strong></strong></strong><strong></strong><strong></strong><strong></strong></h3>
<p><strong>ACDSee 14.x</strong>: Secunia reports a <a href="http://secunia.com/advisories/47450/" target="_blank">highly critical unpatched vulnerability</a> in ACDSee. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/weekend-patch-and-vulnerability-report-february-19-2012/" target="_blank">Weekend Vulnerability and Patch Report, February 19, 2012</a>.</p>
<p><strong>ACDSee Photo: </strong>Several highly critical vulnerabilities have been identified in various ACDSee photo products. Vulnerabilities have been identified in <a href="http://secunia.com/advisories/43564/" target="_blank">FotoSlate</a>, <a href="http://secunia.com/advisories/43563/" target="_blank">Photo Editor 2008</a>, and <a href="http://secunia.com/advisories/43562/" target="_blank">Picture Frame Manager</a>. No patches are available at this time. Readers should refrain from using ACDSee to open untrusted files. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/weekend-vulnerability-patch-report-june-12-2011/" target="_blank">Weekend Vulnerability and Patch Report, June 12, 2011</a>. We alerted readers to a second vulnerability in <a href="http://secunia.com/advisories/44722/" target="_blank">FotoSlate </a>in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/weekend-vulnerability-and-patch-report-september-18-2011/" target="_blank">Weekend Vulnerability and Patch Report, September 18, 2011</a>.</p>
<p><strong>ACD Systems Canvas CorelDRAW</strong>: A <a href="http://secunia.com/advisories/45261/" target="_blank">highly critical vulnerability </a>has been found in ACD Systems Canvas which can be exploited by malicious people to compromise a user’s system. Users should not view untrusted CDR files. Readers should refrain from opening untrusted files in ACD Systems Canvas. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2011/07/" target="_blank">Weekend Vulnerability and Patch Report, July 31, 2011</a>.</p>
<p><strong><strong>Adobe Photoshop: </strong></strong>Secunia reports a <a href="http://secunia.com/advisories/48457/" target="_blank">highly critical vulnerability</a> in Adobe’s Photoshop version 12.1. Other versions may also be affected. Adobe warns not to open untrusted TIFF images. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>Android Browser:</strong> Secunia reports a <a href="http://secunia.com/advisories/47315/" target="_blank">less critical vulnerability</a> in the Android browser that can be exploited to trick a user into believing he is connected to a trusted site by including the trusted site in an iframe. The vulnerability is confirmed in Browser version 2.3.3 included in Android version 2.3.3 and Browser version 3.2 included in Android version 3.2. Other versions may also be affected. Users are cautioned to not rely on displayed certificate information. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2011/12/weekend-vulnerability-and-patch-report-december-25-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 25, 2011</a>.</p>
<p><strong>Apple iOS Safari: </strong>Secunia reports a <a href="http://secunia.com/advisories/48454/" target="_blank">less critical vulnerability</a> in Apple’s iOS version 5.1 (9B176) on iPhone 4 and 4th generation iPod touch. Other versions and devices may also be affected<em>.</em> Apple warns not to navigate to sensitive pages via untrusted web pages. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>Apple Safari: </strong>Secunia reports a <a href="http://secunia.com/advisories/45758/" target="_blank">moderately critical vulnerability</a> in Apple’s Safari version 5.1.2 (7534.52.7) on Windows using the RealPlayer and Adobe Flash plug-ins. Other versions may also be affected. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/weekend-patch-and-vulnerability-report-march-11-2012/" target="_blank">Weekend Vulnerability and Patch Report, March 11, 2012</a>.</p>
<p><strong>Apple Safari:</strong> Secunia reports a <a href="http://secunia.com/advisories/47319/" target="_blank">non-critical unpatched vulnerability</a> in Safari 5.1.2. Other versions may also be affected. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2011/12/weekend-vulnerability-and-patch-report-december-25-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 25, 2011</a>.</p>
<p><strong>CA ARCserve Backup: </strong>Secunia reports a <a href="http://secunia.com/advisories/48459/" target="_blank">less critical vulnerability</a> in CA’s ARCserver Backup in versions 12.0, 12.5, 15, and 16. CA provides a partial fix solution and advises updating to a fixed version. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>HTC Mobile Devices: </strong>The <a href="http://secunia.com/advisories/43163/" target="_blank">security vulnerability</a> in the default Twitter application (Peep) in HTC products remain unpatched. Readers should refrain from using the default Twitter application (Peep). We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/2011/02/weekend-vulnerability-and-patch-report-february-11-2011/" target="_blank">Weekend Vulnerability and Patch Report, February 11, 2011</a>.</p>
<p><strong>HTC Touch2:</strong> The <a href="http://secunia.com/advisories/47242/" target="_blank">highly critical 0-day vulnerability </a>in the HTC Touch2 VideoPlayer remains unpatched. Users are advised to not open files from untrusted sources. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/weekend-vulnerability-and-patch-report-december-18-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 18, 2011</a>.</p>
<p><strong>McAfee SaaS:</strong> The <a href="http://secunia.com/advisories/47520/" target="_blank">highly critical vulnerability</a> in McAfee SaaS Endpoint Protection  remains unpatched. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/weekend-patch-and-vulnerability-report-january-22-2012/" target="_blank">Weekend Vulnerability and Patch Report, January 22, 2012.</a></p>
<p><strong>Microsoft Windows XP: </strong>A <a href="http://secunia.com/advisories/45475/" target="_blank">less-critical security vulnerability </a>has been found in Windows XP which can be exploited by malicious, local users to disclose potentially sensitive information or cause a DoS (Denial of Service). No patch is available at this time. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/weekend-vulnerability-and-patch-report-august-7-2011/" target="_blank">Weekend Vulnerability and Patch Report, August 7, 2011</a>.</p>
<p><strong>Microsoft Word: </strong>A <a href="http://secunia.com/advisories/44923/" target="_blank">highly critical vulnerability </a>has been found in Microsoft Word XP and 2002. No patch is available at this time. Readers should refrain from opening untrusted files in these earlier versions of Word. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/weekend-vulnerability-patch-report-june-19-2011/" target="_blank">Weekend Vulnerability and Patch Report, June 19, 2011</a>.</p>
<p><strong>Microsoft Reader: </strong>The <a href="http://secunia.com/advisories/44121/" target="_blank">highly critical vulnerability </a>in Microsoft Reader, versions 2.x, remains unpatched.  Readers should refrain from opening untrusted files in Reader. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/weekend-vulnerability-and-patch-report-april-15-2011/" target="_blank">Weekend Vulnerability and Patch Report, April 15, 2011</a>.</p>
<p><strong>PDF-Pro:</strong> Several <a href="http://secunia.com/advisories/42805/" target="_blank">highly critical vulnerabilities</a> in PDF-Pro, a popular alternative to Adobe Acrobat, remain unpatched. Readers should refrain from opening untrusted files in PDF-Pro. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/2011/03/weekend-vulnerability-and-patch-report-march-4-2011/" target="_blank">Weekend Vulnerability and Patch Report, March 4, 2011</a>.</p>
<p><strong>Quick View Plus CorelDRAW</strong>: A <a href="http://secunia.com/advisories/45281/" target="_blank">highly critical vulnerability </a>has been found in Quick View Plus which can be exploited by malicious people to compromise a user’s system. Users should not view untrusted CDR files in Quick View Plus. We first alerted readers to this vulnerability in <a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/weekend-vulnerability-and-patch-report-july-31-2011/" target="_blank">Weekend Vulnerability and Patch Report, July 31, 2011</a>.</p>
<p><strong><strong></strong></strong><strong>Symantec pcAnywhere</strong><em><strong>:</strong> </em>As we reported in our<a href="http://www.citadel-information.com/2012/03/2012/02/2012/01/cyber-security-news-of-the-week-january-29-2012/" target="_blank"> Cyber Security News of the Week, January 29, 2012</a>, Symantec has confirmed that the hacker group Anonymous stole source code from the 2006 versions of several Norton security products and the pcAnywhere remote access tool. Symantec has advised users to disable pcAnywhere because of the theft of the pcAnywhere source code.</p>
<p><em>If you are responsible for the security of your computer, our weekly report is for you. We strongly urge you to take action to keep your workstation patched and updated.<br />
</em></p>
<p><em>If someone else is responsible for the security of your computer, forward our Weekend Vulnerability and Patch Report to them and follow up to make sure your computer has been patched and updated.</em></p>
<p>Vulnerability management is a key element of <a href="http://www.citadel-information.com/services/" target="_blank"><em>cyber security management</em></a>. Cyber criminals take over user computers by writing computer programs that “exploit” vulnerabilities in operating systems (Windows, Apple OS, etc) and application programs (Adobe Acrobat, Office, Flash, Java, etc). When software companies find a vulnerability, they usually issue an update patch to fix the code running in their customer’s computers.</p>
<p><a href="http://www.citadel-information.com/" target="_blank">Citadel </a>publishes our <em>Weekend Vulnerability and Patch Report</em> to alert readers to some of the week’s important updates and vulnerabilities. Our focus is on software typically found in the small or home office (SOHO) or that users are likely to have on their home computer. The report is not intended to be a thorough listing of updates and vulnerabilities.</p>
</div>
</div>
</div>
</div>
</div>
</div>
]]></content:encoded>
			<wfw:commentRss>http://www.citadel-information.com/2012/04/weekend-vulnerability-and-patch-report-april-29-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security News of the Week, April 29, 2012</title>
		<link>http://www.citadel-information.com/2012/04/cyber-security-news-of-the-week-april-29-2012/</link>
		<comments>http://www.citadel-information.com/2012/04/cyber-security-news-of-the-week-april-29-2012/#comments</comments>
		<pubDate>Sun, 29 Apr 2012 17:38:11 +0000</pubDate>
		<dc:creator>Stan Stahl Ph.D.</dc:creator>
				<category><![CDATA[Cyber Security Management]]></category>

		<guid isPermaLink="false">http://www.citadel-information.com/?p=3671</guid>
		<description><![CDATA[Cyber Security Commentary — ISSA-LA 4th Annual Information Security Summit Join us on May 16 for ISSA-LA’s 4th Annual Information Security Summit.  Keynote addresses by Alan Paller of the SANS Institute, DHS&#8217; Bruce McConnell and business coach Chris Coffey. Perfect for business, technology and information security leaders. Nonprofits can attend for free by taking advantage [...]]]></description>
			<content:encoded><![CDATA[<h3>Cyber Security Commentary — ISSA-LA 4th Annual Information Security Summit</h3>
<p>Join us on May 16 for ISSA-LA’s 4th Annual Information Security Summit.  Keynote addresses by Alan Paller of the SANS Institute, DHS&#8217; Bruce McConnell and business coach Chris Coffey. Perfect for business, technology and information security leaders. Nonprofits can attend for free by taking advantage of our special scholarship fund. Email vp@issa-la.org for more information.</p>
<p><em>After almost two decades of building and managing technology companies, I can attest to two unmistakable and converging facts.  First, the intellectual property, financial data, and other assets of almost every organization are now in electronic format.  And second, we are seeing a skyrocketing volume of espionage, theft, and other malicious activity conducted against those electronic assets.</em></p>
<p><em> The ISSA-LA Summit provides business leaders with a concentrated, thought-provoking, and valuable education in the nature of these threats, and how organizations can and should mitigate their risks from today&#8217;s cyber threats.  I highly recommend that executives take advantage of this annual event.</em></p>
<p><em> Eric Schwab</em><br />
<em> General Manager</em><br />
<em>GFI Software</em></p>
<p>Visit the <a href="http://www.issala.org/summit/" target="_blank">ISSA-LA Summit Website </a>for more information or to register.</p>
<h3>ISSA-LA</h3>
<p><a href="http://www.darkreading.com/security/news/232901112/issa-la-offers-free-registration-program-for-nonprofits.html">ISSA-LA Offers Free Registration Program For NonProfits:</a> The Los Angeles Chapter of the Information Systems Security Association (ISSA-LA) has created a donation fund of up to $20,000 to IT employees and executives of nonprofits to attend, at no charge to the attendees, the fourth annual Information Security Summit on Wednesday, May 16, 2012 at Hilton Universal City Hotel in Los Angeles. The theme of the one-day Summit is The Growing Cyber Threat: Protect Your Business, which includes the business of operating nonprofits. <em>DarkReading, April 27, 2012</em></p>
<h3>Cyber Security Management</h3>
<p><a href="http://www.eweek.com/c/a/Security/Mac-Flashback-Malware-Still-Going-Strong-Security-Experts-Say-473860/">Mac Flashback Malware Still Going Strong, Security Experts Say:</a> Security experts looking at the Flashback malware that had infected hundreds of thousands of Apple Macs worldwide are trying to come to an agreement over how many of these systems are still compromised by the exploit. <em>eWeek, April 23, 2012</em></p>
<p><a href="http://www.technewsworld.com/story/Infected-Computers-to-Lose-Web-Access-When-FBI-Band-Aid-Falls-Off-74931.html">Infected Computers to Lose Web Access When FBI Band-Aid Falls Off:</a> The safety net that federal authorities set up several months ago as a countermeasure to a massive malware scam will be shut down in July. When that happens, computers that are still infected with the malware, known as &#8220;DNSChanger,&#8221; may be completely unable to access the Internet. The FBI and other groups have set up tools to diagnose and mend affected computers. <em>TechNewsWorld, April 23, 2012</em></p>
<p><a href="http://www.eweek.com/c/a/Security/1-in-5-Macs-Infected-With-Malware-Sophos-145291/">One in Five Macs Infected With Malware: Sophos:</a> One in every five Apple Macs is infected with malware, according to a survey by security software firm Sophos. <em>eWeek, April 24, 2012</em></p>
<h3>Cyber Risk &#8211; HIPAA</h3>
<p><a href="http://www.chiroeco.com/chiropractic/news/12569/1112/ocr%20settles%20hipaa%20case%20for%20-100k/">OCR settles HIPAA case for $100k:</a> April 26, 2012 &#8212; On April 17, 2012, the United States Department of Health and Human Services Office for Civil Rights (&#8220;OCR&#8221;) reached a settlement with Phoenix Cardiac Surgery (&#8220;PSC&#8221;) for alleged violations of the HIPAA Privacy and Security Rules. <em>chiroeco.com, April 26, 2012</em></p>
<h3>Cyber Crime &#8211; HIPAA</h3>
<p><a href="http://www.networkworld.com/news/2012/041312-hospital-data-breaches-258270.html">Hospitals seeing more patient data breaches:</a> A bi-annual survey of 250 healthcare organizations shows that the percentage experiencing a patient data breach is up. And with the growth in electronic records-keeping, more of those problems are originating from laptops and mobile devices rather than a human slip-up in handling paper documents. <em>NetworkWorld, April 13, 2012</em></p>
<h3>Cyber Criminals</h3>
<p><a href="http://www.forbes.com/sites/kenrapoza/2012/04/24/russias-millionaire-dollar-hackers/">Russia&#8217;s Million Dollar Hackers:</a> Few nationalities are as good at making money from hacking than the Russians. Their share of the global cyber crime market, an estimated $12.5 billion black market, doubled last year to $4.5 billion, according to Moscow-based Group-IB, a cyber security services firm working mainly with the Russian government and banks to help reduce online fraud. <em>Forbes, April 24, 2012</em></p>
<p><a href="http://www.forbes.com/sites/janetnovack/2012/04/24/refund-tax-fraud-iphone-feed-identity-theft-by-employees/">Refund Tax Fraud, iPhone, Feed Identity Theft By Employees:</a> Last Thursday night, an undercover deputy from the Hillsborough County, Fla. Sheriff&#8217;s office, acting on a tip, made a street buy. What makes this noteworthy is he didn’t buy drugs. Instead, he purchased 33 stolen names, birth dates and Social Security numbers. The Sheriff’s office says the seller, Joseph Burden, 29, was found to have 221 names in his book bag and admitted he’d taken them from his employer, Tampa-based ProVest. In an e-mailed statement, ProVest President James Ward says the arrested employee has been placed on leave and that “ProVest takes data security and privacy seriously; numerous precautions are and have been in place to safely guard consumer data.” ProVest ironically, specializes in fraud detection, skip tracing and loss mitigation. <em>Forbes, April 24, 2012</em></p>
<h3>Cyber Legislation</h3>
<p><a href="http://www.latimes.com/news/opinion/opinion-la/la-ol-amendment-flurry-on-cispa-20120424,0,3088179.story">House cybersecurity sponsors respond to privacy concerns:</a> Leaders of the House Permanent Select Committee on Intelligence pledged Tuesday to amend their cybersecurity bill, the Cyber Intelligence Sharing and Protection Act, to address the main concerns raised by civil libertarians and privacy advocates. The revisions are clear improvements, and they show that the committee is trying hard to limit the measure&#8217;s scope. Nevertheless, the bill still has a fundamental problem: By encouraging network operators to share information with the government about what their customers do online, it threatens to turn ISPs and online service providers into snoops. <em>LA Times, April 25, 2012</em></p>
<p><a href="http://www.politico.com/news/stories/0412/75566.html">House GOP dares Senate on cybersecurity:</a> The House is sending a message to the White House and Senate Democrats this week by passing a batch of cybersecurity bills aimed at preventing the digital version of a Pearl Harbor: Not on our watch. <em>Politico, April 25, 2012</em></p>
<p><a href="http://money.cnn.com/2012/04/23/technology/cybersecurity-bills/?source=cnn_bin">Cybersecurity bills aim to prevent &#8216;digital Pearl Harbor&#8217;:</a> NEW YORK (CNNMoney) &#8212; Cybercrime isn&#8217;t just a threat to your bank account or personal computer &#8212; it&#8217;s an issue of national security.Foreign spies and organized criminals are inside of virtually every U.S. company&#8217;s network. The government&#8217;s top cybersecurity advisors widely agree that cyber criminals or terrorists have the capability to take down the country&#8217;s critical financial, energy or communications infrastructure. <em>CNN, April 23, 2012</em></p>
]]></content:encoded>
			<wfw:commentRss>http://www.citadel-information.com/2012/04/cyber-security-news-of-the-week-april-29-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Weekend Vulnerability and Patch Report, April 22, 2012</title>
		<link>http://www.citadel-information.com/2012/04/weekend-vulnerability-and-patch-report-april-22-2012/</link>
		<comments>http://www.citadel-information.com/2012/04/weekend-vulnerability-and-patch-report-april-22-2012/#comments</comments>
		<pubDate>Sun, 22 Apr 2012 17:33:45 +0000</pubDate>
		<dc:creator>Kimberly Pease</dc:creator>
				<category><![CDATA[Cyber Security Management]]></category>
		<category><![CDATA[Security Alert: Vulnerability Management]]></category>

		<guid isPermaLink="false">http://www.citadel-information.com/?p=3619</guid>
		<description><![CDATA[Important Security Updates Apple Update for Java: Apple has released updates for Java for OS X Lion and Mac OS X to remove variants of the Flashback malware. The updates are available through the programs or from Apple’s download site. Android TwitRocker2: Android released an update for TwitRocker2 for the Android to fix a vulnerability. Update [...]]]></description>
			<content:encoded><![CDATA[<h3><strong>Important Security Updates</strong></h3>
<p><strong>Apple Update for Java: </strong>Apple has released updates for Java for OS X Lion and Mac OS X to remove variants of the Flashback malware. The updates are available through the programs or from <a href="http://support.apple.com/downloads" target="_blank">Apple’s download site</a>.</p>
<p><strong>Android TwitRocker2: </strong>Android released an update for TwitRocker2 for the Android to fix a <a href="http://secunia.com/advisories/48894/" target="_blank">vulnerability</a>. Update to version 1.0.23.<strong><br />
</strong></p>
<p><strong>IBM Java 6: </strong>IBM has released updates for Java 6 to fix at least <a href="http://secunia.com/advisories/48913/" target="_blank">12 vulnerabilities</a>, some highly critical. Update to version 6 SR10-FP1.<strong><br />
</strong></p>
<p><strong>IBM Java 5: </strong>IBM has released updates for Java 5 to fix at least <a href="http://secunia.com/advisories/48915/" target="_blank">12 vulnerabilities</a>, some highly critical. Update to version 5.0 SR13-FP1.<strong><strong></strong></strong><strong></strong></p>
<h3><strong>Current Software Versions</strong></h3>
<div id="post-3109">
<div>
<div id="post-3045">
<div>
<div id="post-2999">
<div>
<p>Adobe Flash 11.2.202.233</p>
<p>Adobe Reader 10.1.3</p>
<p>Apple QuickTime 7.7.1</p>
<p>Apple Safari 5.1.5  [Warning; see below]</p>
<p>Google Chrome 18.0.1025.151</p>
<p>Internet Explorer 9.0.8112.16421</p>
<p>Java SE 6 Update 31 [Java is a major source of cyber criminal exploits. Java is not needed for most internet browsing. Consider removing or disabling it if you don't need it. ]</p>
<p>Mozilla Firefox 11.0</p>
<h3><strong>Newly Announced Unpatched Vulnerabilities</strong></h3>
<p>None<strong><br />
</strong></p>
<h3><strong>For Your IT Department</strong></h3>
<p><strong>Oracle Products</strong>: Oracle has released critical patch updates to fix upwards of 88 vulnerabilities, many of which are highly critical<strong>.</strong> See <a href="http://www.oracle.com/technetwork/topics/security/cpuapr2012-366314.html" target="_blank">Oracle&#8217;s advisory</a> for a listing of all products and apply all updates.</p>
<p><strong>RealPlayer Enterprise: </strong>RealPlayer has released updates for at least <a href="http://secunia.com/advisories/48868/" target="_blank">9 </a><a href="http://secunia.com/advisories/48868/" target="_blank">vulnerabilities</a>, some of which are highly critical in RealPlayer Enterprise version. Update to version 2.1.8.</p>
<h3><strong></strong><strong>Important Unpatched Vulnerabilities<strong></strong></strong><strong></strong><strong></strong></h3>
<p><strong>ACDSee 14.x</strong>: Secunia reports a <a href="http://secunia.com/advisories/47450/" target="_blank">highly critical unpatched vulnerability</a> in ACDSee. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/weekend-patch-and-vulnerability-report-february-19-2012/" target="_blank">Weekend Vulnerability and Patch Report, February 19, 2012</a>.</p>
<p><strong>ACDSee Photo: </strong>Several highly critical vulnerabilities have been identified in various ACDSee photo products. Vulnerabilities have been identified in <a href="http://secunia.com/advisories/43564/" target="_blank">FotoSlate</a>, <a href="http://secunia.com/advisories/43563/" target="_blank">Photo Editor 2008</a>, and <a href="http://secunia.com/advisories/43562/" target="_blank">Picture Frame Manager</a>. No patches are available at this time. Readers should refrain from using ACDSee to open untrusted files. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/weekend-vulnerability-patch-report-june-12-2011/" target="_blank">Weekend Vulnerability and Patch Report, June 12, 2011</a>. We alerted readers to a second vulnerability in <a href="http://secunia.com/advisories/44722/" target="_blank">FotoSlate </a>in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/weekend-vulnerability-and-patch-report-september-18-2011/" target="_blank">Weekend Vulnerability and Patch Report, September 18, 2011</a>.</p>
<p><strong>ACD Systems Canvas CorelDRAW</strong>: A <a href="http://secunia.com/advisories/45261/" target="_blank">highly critical vulnerability </a>has been found in ACD Systems Canvas which can be exploited by malicious people to compromise a user’s system. Users should not view untrusted CDR files. Readers should refrain from opening untrusted files in ACD Systems Canvas. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2011/07/" target="_blank">Weekend Vulnerability and Patch Report, July 31, 2011</a>.</p>
<p><strong><strong>Adobe Photoshop: </strong></strong>Secunia reports a <a href="http://secunia.com/advisories/48457/" target="_blank">highly critical vulnerability</a> in Adobe’s Photoshop version 12.1. Other versions may also be affected. Adobe warns not to open untrusted TIFF images. We first alerted readers to this vulnerability in <a href="../2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>Android Browser:</strong> Secunia reports a <a href="http://secunia.com/advisories/47315/" target="_blank">less critical vulnerability</a> in the Android browser that can be exploited to trick a user into believing he is connected to a trusted site by including the trusted site in an iframe. The vulnerability is confirmed in Browser version 2.3.3 included in Android version 2.3.3 and Browser version 3.2 included in Android version 3.2. Other versions may also be affected. Users are cautioned to not rely on displayed certificate information. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2011/12/weekend-vulnerability-and-patch-report-december-25-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 25, 2011</a>.</p>
<p><strong>Apple iOS Safari: </strong>Secunia reports a <a href="http://secunia.com/advisories/48454/" target="_blank">less critical vulnerability</a> in Apple’s iOS version 5.1 (9B176) on iPhone 4 and 4th generation iPod touch. Other versions and devices may also be affected<em>.</em> Apple warns not to navigate to sensitive pages via untrusted web pages. We first alerted readers to this vulnerability in <a href="../2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>Apple Safari: </strong>Secunia reports a <a href="http://secunia.com/advisories/45758/" target="_blank">moderately critical vulnerability</a> in Apple’s Safari version 5.1.2 (7534.52.7) on Windows using the RealPlayer and Adobe Flash plug-ins. Other versions may also be affected. We first alerted readers to this vulnerability in <a href="../2012/03/weekend-patch-and-vulnerability-report-march-11-2012/" target="_blank">Weekend Vulnerability and Patch Report, March 11, 2012</a>.</p>
<p><strong>Apple Safari:</strong> Secunia reports a <a href="http://secunia.com/advisories/47319/" target="_blank">non-critical unpatched vulnerability</a> in Safari 5.1.2. Other versions may also be affected. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2011/12/weekend-vulnerability-and-patch-report-december-25-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 25, 2011</a>.</p>
<p><strong>CA ARCserve Backup: </strong>Secunia reports a <a href="http://secunia.com/advisories/48459/" target="_blank">less critical vulnerability</a> in CA’s ARCserver Backup in versions 12.0, 12.5, 15, and 16. CA provides a partial fix solution and advises updating to a fixed version. We first alerted readers to this vulnerability in <a href="../2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>HTC Mobile Devices: </strong>The <a href="http://secunia.com/advisories/43163/" target="_blank">security vulnerability</a> in the default Twitter application (Peep) in HTC products remain unpatched. Readers should refrain from using the default Twitter application (Peep). We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/2011/02/weekend-vulnerability-and-patch-report-february-11-2011/" target="_blank">Weekend Vulnerability and Patch Report, February 11, 2011</a>.</p>
<p><strong>HTC Touch2:</strong> The <a href="http://secunia.com/advisories/47242/" target="_blank">highly critical 0-day vulnerability </a>in the HTC Touch2 VideoPlayer remains unpatched. Users are advised to not open files from untrusted sources. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/weekend-vulnerability-and-patch-report-december-18-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 18, 2011</a>.</p>
<p><strong>McAfee SaaS:</strong> The <a href="http://secunia.com/advisories/47520/" target="_blank">highly critical vulnerability</a> in McAfee SaaS Endpoint Protection  remains unpatched. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/weekend-patch-and-vulnerability-report-january-22-2012/" target="_blank">Weekend Vulnerability and Patch Report, January 22, 2012.</a></p>
<p><strong>Microsoft Windows XP: </strong>A <a href="http://secunia.com/advisories/45475/" target="_blank">less-critical security vulnerability </a>has been found in Windows XP which can be exploited by malicious, local users to disclose potentially sensitive information or cause a DoS (Denial of Service). No patch is available at this time. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/weekend-vulnerability-and-patch-report-august-7-2011/" target="_blank">Weekend Vulnerability and Patch Report, August 7, 2011</a>.</p>
<p><strong>Microsoft Word: </strong>A <a href="http://secunia.com/advisories/44923/" target="_blank">highly critical vulnerability </a>has been found in Microsoft Word XP and 2002. No patch is available at this time. Readers should refrain from opening untrusted files in these earlier versions of Word. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/weekend-vulnerability-patch-report-june-19-2011/" target="_blank">Weekend Vulnerability and Patch Report, June 19, 2011</a>.</p>
<p><strong>Microsoft Reader: </strong>The <a href="http://secunia.com/advisories/44121/" target="_blank">highly critical vulnerability </a>in Microsoft Reader, versions 2.x, remains unpatched.  Readers should refrain from opening untrusted files in Reader. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/weekend-vulnerability-and-patch-report-april-15-2011/" target="_blank">Weekend Vulnerability and Patch Report, April 15, 2011</a>.</p>
<p><strong>PDF-Pro:</strong> Several <a href="http://secunia.com/advisories/42805/" target="_blank">highly critical vulnerabilities</a> in PDF-Pro, a popular alternative to Adobe Acrobat, remain unpatched. Readers should refrain from opening untrusted files in PDF-Pro. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/2011/03/weekend-vulnerability-and-patch-report-march-4-2011/" target="_blank">Weekend Vulnerability and Patch Report, March 4, 2011</a>.</p>
<p><strong>Quick View Plus CorelDRAW</strong>: A <a href="http://secunia.com/advisories/45281/" target="_blank">highly critical vulnerability </a>has been found in Quick View Plus which can be exploited by malicious people to compromise a user’s system. Users should not view untrusted CDR files in Quick View Plus. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/weekend-vulnerability-and-patch-report-july-31-2011/" target="_blank">Weekend Vulnerability and Patch Report, July 31, 2011</a>.</p>
<p><strong><strong></strong></strong><strong>Symantec pcAnywhere</strong><em><strong>:</strong> </em>As we reported in our<a href="../2012/03/2012/02/2012/01/cyber-security-news-of-the-week-january-29-2012/" target="_blank"> Cyber Security News of the Week, January 29, 2012</a>, Symantec has confirmed that the hacker group Anonymous stole source code from the 2006 versions of several Norton security products and the pcAnywhere remote access tool. Symantec has advised users to disable pcAnywhere because of the theft of the pcAnywhere source code.</p>
<p><em>If you are responsible for the security of your computer, our weekly report is for you. We strongly urge you to take action to keep your workstation patched and updated.<br />
</em></p>
<p><em>If someone else is responsible for the security of your computer, forward our Weekend Vulnerability and Patch Report to them and follow up to make sure your computer has been patched and updated.</em></p>
<p>Vulnerability management is a key element of <a href="../services/" target="_blank"><em>cyber security management</em></a>. Cyber criminals take over user computers by writing computer programs that “exploit” vulnerabilities in operating systems (Windows, Apple OS, etc) and application programs (Adobe Acrobat, Office, Flash, Java, etc). When software companies find a vulnerability, they usually issue an update patch to fix the code running in their customer’s computers.</p>
<p><a href="../" target="_blank">Citadel </a>publishes our <em>Weekend Vulnerability and Patch Report</em> to alert readers to some of the week’s important updates and vulnerabilities. Our focus is on software typically found in the small or home office (SOHO) or that users are likely to have on their home computer. The report is not intended to be a thorough listing of updates and vulnerabilities.</p>
</div>
</div>
</div>
</div>
</div>
</div>
]]></content:encoded>
			<wfw:commentRss>http://www.citadel-information.com/2012/04/weekend-vulnerability-and-patch-report-april-22-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security News of the Week, April 22, 2012</title>
		<link>http://www.citadel-information.com/2012/04/cyber-security-news-of-the-week-april-22-2012/</link>
		<comments>http://www.citadel-information.com/2012/04/cyber-security-news-of-the-week-april-22-2012/#comments</comments>
		<pubDate>Sun, 22 Apr 2012 17:29:26 +0000</pubDate>
		<dc:creator>Stan Stahl Ph.D.</dc:creator>
				<category><![CDATA[Cyber Security Management]]></category>

		<guid isPermaLink="false">http://www.citadel-information.com/?p=3625</guid>
		<description><![CDATA[Cyber Security Commentary — ISSA-LA 4th Annual Information Security Summit Join us on May 16 for ISSA-LA’s 4th Annual Information Security Summit.  Keynote address by Alan Paller. Special keynote address by Chris Coffey. Perfect for business, technology and information security leaders. I recommend the Summit to both the CIO and their staff because it’s the [...]]]></description>
			<content:encoded><![CDATA[<h3>Cyber Security Commentary — ISSA-LA 4th Annual Information Security Summit</h3>
<p>Join us on May 16 for ISSA-LA’s 4th Annual Information Security Summit.  <a href="http://www.issala.org/wp-content/uploads/2011/12/ISSA_Paller_Release_FINAL_031312.pdf">Keynote address by Alan Paller</a>. <a href="http://www.issala.org/wp-content/uploads/2011/12/ISSA_Coffey_Release_FINAL_041112.pdf">Special keynote address by Chris Coffey.</a> Perfect for business, technology and information security leaders.</p>
<p><em>I recommend the Summit to both the CIO and their staff because it’s the one day you can count on to get informed, learn how to stay informed, and build a network of strong security professionals who are passionate about supporting the “neighborhood watch” of information security. </em></p>
<p><em>Jennifer Terrill, CISSP</em><br />
<em>Vice President Information Technology /  CISO</em><br />
<em>True Religion Brand Jeans</em></p>
<p>Visit the <a href="http://www.issala.org/summit/" target="_blank">ISSA-LA Summit Website </a>for more information or to register.</p>
<h3>Cyber Crime</h3>
<p><a href="http://krebsonsecurity.com/2012/04/thieves-replacing-money-mules-with-prepaid-cards/">Thieves Replacing Money Mules With Prepaid Cards?:</a> Recent ebanking heists — such as a $121,000 online robbery at a New York fuel supplier last month — suggest that cyber thieves increasingly are cashing out by sending victim funds to prepaid debit card accounts. The shift appears to be an effort to route around a major bottleneck for these crimes: Their dependency on unreliable money mules. <em>KrebsOnSecurity, April 13, 2012</em></p>
<p><a href="http://www.darkreading.com/database-security/167901020/security/attacks-breaches/232900607/cybercriminals-check-in-at-hotel-point-of-sale-systems.html">Cybercriminals Check In At Hotel Point-Of-Sale Systems:</a> Cybercrime gangs are increasingly finding hotel point-of-sale systems hospitable to attack: Researchers have spotted a new remote access Trojan (RAT) tool for sale in underground forums that targets hotel computers at a global hotel chain. <em>Dark Reading, April 19, 2012</em></p>
<h3>Cyber Vulnerabilities</h3>
<p><a href="http://www.cio.com/article/704519/Flashback_Malware_Still_Affects_140_000_Macs?source=rss_security">Flashback Malware Still Affects 140,000 Macs:</a> Apparently not all Mac users got the memo about Flashback, the malware that recently infected more than 600,000 computers running OS X. According to security firm Symantec, roughly 140,000 Mac computers were still infected as of April 16. <em>CIO, April 18, 2012</em></p>
<p><a href="http://www.cio.com/article/704579/Google_Warns_20_000_Websites_They_Could_Be_Infected_with_Malware?source=rss_security">Google Warns 20,000 Websites They Could Be Infected with Malware:</a> Google has warned 20,000 websites that they might be hacked and injected with JavaScript redirect malware, Google said. <em>CIO, April 19, 2012</em></p>
<p><a href="http://www.zdnet.com/blog/bott/the-malware-numbers-game-how-many-viruses-are-out-there/4783">The malware numbers game: how many viruses are out there?:</a> How many distinct strains of malware are in circulation today? If you said hundreds of thousands or millions, you’re way off. A close look at numbers from one leading security company helps explain why some big numbers don’t tell the whole story. <em>ZDNet, April 15, 2012</em></p>
<h3>Cyber Security Management</h3>
<p><a href="http://www.darkreading.com/database-security/167901020/security/news/232900553/three-security-snags-that-expose-the-database.html">Three Security Snags That Expose The Database:</a> Insecure Web apps, no linkage to IAM, and poorly configured segmentation all contribute to database vulnerability. <em>Dark Reading, April 19, 2012</em></p>
<p><a href="http://www.darkreading.com/blog/232900488/the-benefits-of-top-down-security.html">The Benefits Of Top-Down Security:</a> While enterprise-level breaches often get the attention of C-level suite executives and the members of their IT staff, industry research shows it actually falls to rank-and-file employees to apply best practices and exercise sound judgment in order to properly contain them. <em>Dark Reading, April 18, 2012</em></p>
<p><a href="http://www.fiercehealthit.com/story/board-protect-medical-devices-cybercrime/2012-04-16">Board: Protect medical devices from cybercrime:</a> Medical devices such as insulin pumps are at increased risk of cybersecurity breaches, which puts millions of patients at risk of significant harm, warns the Information Security and Privacy Advisory Board (ISPAB). <em>FierceHealthIT, April 16, 2012</em></p>
<p><a href="http://www.eweek.com/c/a/Enterprise-Networking/Data-Security-in-the-BYOD-Era-10-Big-Risks-Facing-Enterprises-211991/">Enterprise Networking: Data Security in the BYOD Era: 10 Big Risks Facing Enterprises:</a> Rogue and shadow IT have been problems for data and network security and compliance officers for a long time, but the rising number of bring-your-own-device (BYOD) proponents is threatening to become a much larger overall issue. Most organizations do not have the tools to ensure security of their data on just any device, especially when those devices will be by definition either partially or totally unmanaged. In addition, organizations are grappling with the challenges these pose for the enterprise network. Traditional security technologies that rely on endpoint security, configuration management, or establishing and controlling a network perimeter are ill-suited for a BYOD-friendly company, prompting CIOs to turn to more innovative, data-centric approaches as they come to terms with losing control of access to sensitive data. And make no mistake: 2012 is all about control of data. Our expert resource for this slideshow is Ryan Kalember, vice president of strategy at WatchDox, which enables organizations to access, share and control their documents on any tablet, smartphone or PC—even those beyond the IT department’s control. <em>eWeek, April 17, 2012</em></p>
<h3>Securing the Village</h3>
<p><a href="http://www.zdnet.com/blog/btl/americas-cyber-czar-speaks/74832">America&#8217;s cyber czar speaks:</a> Howard Schmidt, special assistant to U.S. president Barack Obama and White House cybersecurity coordinator, appeared this morning before a group of executives gathered at Bloomberg’s New York headquarters to discuss his goals, challenges and hopes for American cybersecurity. <em>ZDNet, April 20, 2012</em></p>
<p><a href="http://krebsonsecurity.com/2012/04/microsoft-responds-to-critics-over-botnet-bruhaha/">Microsoft Responds to Critics Over Botnet Bruhaha:</a> Microsoft’s most recent anti-botnet campaign — a legal sneak attack against dozens of ZeuS botnets — seems to have ruffled the feathers of many in security community. The chief criticism is that the Microsoft operation exposed sensitive information that a handful of researchers had shared in confidence, and that countless law enforcement investigations may have been delayed or derailed as a result. In this post, I interview a key Microsoft attorney about these allegations. <em>KrebsOnSecurity, April 18, 2012</em></p>
<h3>Cyber Crime Economics</h3>
<p><a href="http://www.nytimes.com/2012/04/15/opinion/sunday/the-cybercrime-wave-that-wasnt.html?_r=1">The Cybercrime Wave That Wasn’t:</a> In less than 15 years, cybercrime has moved from obscurity to the spotlight of consumer, corporate and national security concerns. Popular accounts suggest that cybercrime is large, rapidly growing, profitable and highly evolved; annual loss estimates range from billions to nearly $1 trillion. While other industries stagger under the weight of recession, in cybercrime, business is apparently booming. <em>The New York Times, April 14, 2012</em></p>
<h3>Hacktivists</h3>
<p><a href="http://www.darkreading.com/advanced-threats/167901091/security/vulnerabilities/232900561/anonymous-must-evolve-or-break-down-say-researchers.html">Anonymous Must Evolve Or Break Down, Say Researchers:</a> The movement started as an Internet meme and grew into a complex and chaotic community. Security experts argue that the Anonymous brand is now in danger of imploding. <em>Dark Reading, April 19, 2012</em></p>
<h3>Cyber Legislation</h3>
<p><a href="http://www.federaltimes.com/article/20120418/CONGRESS01/204180305/1001">House committees approve 2 cybersecurity bills&#8221;&gt;House committees approve 2 cybersecurity bills:</a> Two cybersecurity bills were approved by House committees on Wednesday. Those bills — as well as a third cybersecurity bill — are expected to be considered on the House floor as soon as next week. <em>Federal Times, April 18, 2012</em></p>
<p><a href="http://www.chicagotribune.com/business/sns-rt-us-cybercrime-schmidtbre83f17h-20120416,0,4233324.story">Cyber crime official optimistic on new legislation:</a> The Obama administration&#8217;s top cyber security official says companies would not be unduly burdened by a Senate bill that would phase in security standards for key parts of the country&#8217;s privately held infrastructure. <em>Chicago Tribune, April 16, 2012</em></p>
<p><a href="http://mashable.com/2012/04/14/new-cispa-draft/">New CISPA Draft Narrows Cybersecurity Language as Protests Loom:</a> The U.S. House Intelligence Committee has released a new draft of the Cybersecurity Intelligence Sharing and Protection Act (CISPA), narrowing the definition of “cybersecurity threat” in response to alarms being sounded throughout the technology community. <em>Mashable, April 14, 2012</em></p>
]]></content:encoded>
			<wfw:commentRss>http://www.citadel-information.com/2012/04/cyber-security-news-of-the-week-april-22-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Weekend Vulnerability and Patch Report, April 15, 2012</title>
		<link>http://www.citadel-information.com/2012/04/weekend-vulnerability-and-patch-report-april-15-2012/</link>
		<comments>http://www.citadel-information.com/2012/04/weekend-vulnerability-and-patch-report-april-15-2012/#comments</comments>
		<pubDate>Sun, 15 Apr 2012 23:54:06 +0000</pubDate>
		<dc:creator>Kimberly Pease</dc:creator>
				<category><![CDATA[Cyber Security Management]]></category>

		<guid isPermaLink="false">http://www.citadel-information.com/?p=3573</guid>
		<description><![CDATA[Important Security Updates Adobe Reader / Acrobat: Adobe has released several updates for Acrobat and Reader to fix at least 17 vulnerabilities, several of which are highly critical. The updates are available through the programs. Apple Update for Java: Apple has released updates for Java for OS X Lion and Mac OS X to remove variants [...]]]></description>
			<content:encoded><![CDATA[<h3><strong>Important Security Updates</strong></h3>
<p><strong>Adobe Reader / Acrobat</strong><strong>: </strong>Adobe has released several updates for Acrobat and Reader to fix at least <a href="http://secunia.com/advisories/48733/" target="_blank">17 vulnerabilities</a>, several of which are highly critical. The updates are available through the programs.</p>
<p><strong>Apple Update for Java: </strong>Apple has released updates for Java for OS X Lion and Mac OS X to remove variants of the Flashback malware. The updates are available through the programs or from <a href="http://support.apple.com/downloads" target="_blank">Apple’s download site</a>.</p>
<p><strong>Microsoft Internet Explorer: </strong>Microsoft has released an update for Internet Explorer to fix at least <a href="http://secunia.com/advisories/48724/" target="_blank">5 vulnerabilities</a>, several of which are highly critical. The update is available through the Windows Control Panel.</p>
<p><strong>Microsoft Office / Works: </strong>Microsoft has released updates for Office and Works to fix a <a href="http://secunia.com/advisories/48723/" target="_blank">highly critical vulnerability</a>. The updates are available through the Windows Control Panel.</p>
<p><strong>Microsoft Patch Tuesday</strong>: Microsoft has released numerous updates to fix at least <a href="http://secunia.com/advisories/48786/" target="_blank">20 vulnerabilities</a>, many of which are <strong><em>extremely critical.</em></strong> According to Secunia, some of the vulnerabilities are being actively exploited by cyber criminals in targeted attacks. This makes it extremely important to quickly apply  the updates. The updates are available through the Windows Control Panel. [See below for additional updates For Your IT Department]</p>
<h3><strong>Current Software Versions</strong></h3>
<div id="post-3109">
<div>
<div id="post-3045">
<div>
<div id="post-2999">
<div>
<p>Adobe Flash 11.2.202.233</p>
<p>Adobe Reader 10.1.3</p>
<p>Apple QuickTime 7.7.1</p>
<p>Apple Safari 5.1.5  [Warning; see below]</p>
<p>Google Chrome 18.0.1025.151</p>
<p>Internet Explorer 9.0.8112.16421</p>
<p>Java SE 6 Update 31 [Java is a major source of cyber criminal exploits. Java is not needed for most internet browsing. Consider removing or disabling it if you don't need it. ]</p>
<p>Mozilla Firefox 11.0</p>
<h3><strong>Newly Announced Unpatched Vulnerabilities</strong></h3>
<p>None<strong><br />
</strong></p>
<h3><strong>For Your IT Department</strong></h3>
<p><strong>HP ProCurve 5400</strong>: Secunia reports a <a href="http://secunia.com/advisories/48738/http://" target="_blank">vulnerability</a> in HP&#8217;s ProCurve 5400 zl Switch series devices. Apply the vendor workaround.</p>
<p><strong>Microsoft .NET: </strong>Secunia reports a <a href="http://secunia.com/advisories/48785/" target="_blank">highly critical vulnerability</a> in the .NET Framework. Apply all patches.<strong><br />
</strong></p>
<p><strong>Microsoft Products</strong>: Microsoft has released numerous updates to fix upwards of <a href="http://secunia.com/advisories/48786/" target="_blank">20 vulnerabilities</a>, many of which are <strong><em>extremely critical.</em></strong> If any of the following Microsoft applications are installed in your network infrastructure, install the updates immediately for the following applications: BizTalk Server 2002; Commerce Server 2002, 2007, 2009; Office 2003 (Editions: Professional, Small Business, Standard, Student and Teacher, Web Components), Office 2007 and 2010, Visual Basic 6.x and FoxPro 8.x and 9.x, SQL Server 2008 and prior. Apply all updates.</p>
<p><strong>Oracle MySQL: </strong>Secunia reports <a href="http://secunia.com/advisories/48744/" target="_blank">two vulnerabilities</a> in Oracle&#8217;s MySQL Server. Update to version 5.5.22.<strong></strong></p>
<p><strong><strong>VMWare: </strong></strong>Secunia reports a <a href="http://secunia.com/advisories/48782/" target="_blank">vulnerability</a> in multiple VMWare products. Update to a fixed version.<strong><br />
</strong></p>
<h3><strong>Important Unpatched Vulnerabilities<strong></strong></strong><strong></strong></h3>
<p><strong>ACDSee 14.x</strong>: Secunia reports a <a href="http://secunia.com/advisories/47450/" target="_blank">highly critical unpatched vulnerability</a> in ACDSee. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/weekend-patch-and-vulnerability-report-february-19-2012/" target="_blank">Weekend Vulnerability and Patch Report, February 19, 2012</a>.</p>
<p><strong>ACDSee Photo: </strong>Several highly critical vulnerabilities have been identified in various ACDSee photo products. Vulnerabilities have been identified in <a href="http://secunia.com/advisories/43564/" target="_blank">FotoSlate</a>, <a href="http://secunia.com/advisories/43563/" target="_blank">Photo Editor 2008</a>, and <a href="http://secunia.com/advisories/43562/" target="_blank">Picture Frame Manager</a>. No patches are available at this time. Readers should refrain from using ACDSee to open untrusted files. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/weekend-vulnerability-patch-report-june-12-2011/" target="_blank">Weekend Vulnerability and Patch Report, June 12, 2011</a>. We alerted readers to a second vulnerability in <a href="http://secunia.com/advisories/44722/" target="_blank">FotoSlate </a>in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/weekend-vulnerability-and-patch-report-september-18-2011/" target="_blank">Weekend Vulnerability and Patch Report, September 18, 2011</a>.</p>
<p><strong>ACD Systems Canvas CorelDRAW</strong>: A <a href="http://secunia.com/advisories/45261/" target="_blank">highly critical vulnerability </a>has been found in ACD Systems Canvas which can be exploited by malicious people to compromise a user’s system. Users should not view untrusted CDR files. Readers should refrain from opening untrusted files in ACD Systems Canvas. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2011/07/" target="_blank">Weekend Vulnerability and Patch Report, July 31, 2011</a>.</p>
<p><strong><strong>Adobe Photoshop: </strong></strong>Secunia reports a <a href="http://secunia.com/advisories/48457/" target="_blank">highly critical vulnerability</a> in Adobe’s Photoshop version 12.1. Other versions may also be affected. Adobe warns not to open untrusted TIFF images. We first alerted readers to this vulnerability in <a href="../2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>Android Browser:</strong> Secunia reports a <a href="http://secunia.com/advisories/47315/" target="_blank">less critical vulnerability</a> in the Android browser that can be exploited to trick a user into believing he is connected to a trusted site by including the trusted site in an iframe. The vulnerability is confirmed in Browser version 2.3.3 included in Android version 2.3.3 and Browser version 3.2 included in Android version 3.2. Other versions may also be affected. Users are cautioned to not rely on displayed certificate information. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2011/12/weekend-vulnerability-and-patch-report-december-25-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 25, 2011</a>.</p>
<p><strong>Apple iOS Safari: </strong>Secunia reports a <a href="http://secunia.com/advisories/48454/" target="_blank">less critical vulnerability</a> in Apple’s iOS version 5.1 (9B176) on iPhone 4 and 4th generation iPod touch. Other versions and devices may also be affected<em>.</em> Apple warns not to navigate to sensitive pages via untrusted web pages. We first alerted readers to this vulnerability in <a href="../2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>Apple Safari: </strong>Secunia reports a <a href="http://secunia.com/advisories/45758/" target="_blank">moderately critical vulnerability</a> in Apple’s Safari version 5.1.2 (7534.52.7) on Windows using the RealPlayer and Adobe Flash plug-ins. Other versions may also be affected. We first alerted readers to this vulnerability in <a href="../2012/03/weekend-patch-and-vulnerability-report-march-11-2012/" target="_blank">Weekend Vulnerability and Patch Report, March 11, 2012</a>.</p>
<p><strong>Apple Safari:</strong> Secunia reports a <a href="http://secunia.com/advisories/47319/" target="_blank">non-critical unpatched vulnerability</a> in Safari 5.1.2. Other versions may also be affected. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2011/12/weekend-vulnerability-and-patch-report-december-25-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 25, 2011</a>.</p>
<p><strong>CA ARCserve Backup: </strong>Secunia reports a <a href="http://secunia.com/advisories/48459/" target="_blank">less critical vulnerability</a> in CA’s ARCserver Backup in versions 12.0, 12.5, 15, and 16. CA provides a partial fix solution and advises updating to a fixed version. We first alerted readers to this vulnerability in <a href="../2012/03/weekend-patch-and-vulnerability-report-march-25-2012-2/" target="_blank">Weekend Vulnerability and Patch Report, March 25, 2012.</a></p>
<p><strong>HTC Mobile Devices: </strong>The <a href="http://secunia.com/advisories/43163/" target="_blank">security vulnerability</a> in the default Twitter application (Peep) in HTC products remain unpatched. Readers should refrain from using the default Twitter application (Peep). We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/2011/02/weekend-vulnerability-and-patch-report-february-11-2011/" target="_blank">Weekend Vulnerability and Patch Report, February 11, 2011</a>.</p>
<p><strong>HTC Touch2:</strong> The <a href="http://secunia.com/advisories/47242/" target="_blank">highly critical 0-day vulnerability </a>in the HTC Touch2 VideoPlayer remains unpatched. Users are advised to not open files from untrusted sources. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/weekend-vulnerability-and-patch-report-december-18-2011/" target="_blank">Weekend Vulnerability and Patch Report, December 18, 2011</a>.</p>
<p><strong>McAfee SaaS:</strong> The <a href="http://secunia.com/advisories/47520/" target="_blank">highly critical vulnerability</a> in McAfee SaaS Endpoint Protection  remains unpatched. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/weekend-patch-and-vulnerability-report-january-22-2012/" target="_blank">Weekend Vulnerability and Patch Report, January 22, 2012.</a></p>
<p><strong>Microsoft Windows XP: </strong>A <a href="http://secunia.com/advisories/45475/" target="_blank">less-critical security vulnerability </a>has been found in Windows XP which can be exploited by malicious, local users to disclose potentially sensitive information or cause a DoS (Denial of Service). No patch is available at this time. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/weekend-vulnerability-and-patch-report-august-7-2011/" target="_blank">Weekend Vulnerability and Patch Report, August 7, 2011</a>.</p>
<p><strong>Microsoft Word: </strong>A <a href="http://secunia.com/advisories/44923/" target="_blank">highly critical vulnerability </a>has been found in Microsoft Word XP and 2002. No patch is available at this time. Readers should refrain from opening untrusted files in these earlier versions of Word. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/weekend-vulnerability-patch-report-june-19-2011/" target="_blank">Weekend Vulnerability and Patch Report, June 19, 2011</a>.</p>
<p><strong>Microsoft Reader: </strong>The <a href="http://secunia.com/advisories/44121/" target="_blank">highly critical vulnerability </a>in Microsoft Reader, versions 2.x, remains unpatched.  Readers should refrain from opening untrusted files in Reader. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/weekend-vulnerability-and-patch-report-april-15-2011/" target="_blank">Weekend Vulnerability and Patch Report, April 15, 2011</a>.</p>
<p><strong>PDF-Pro:</strong> Several <a href="http://secunia.com/advisories/42805/" target="_blank">highly critical vulnerabilities</a> in PDF-Pro, a popular alternative to Adobe Acrobat, remain unpatched. Readers should refrain from opening untrusted files in PDF-Pro. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/2011/07/2011/07/2011/06/2011/06/2011/06/2011/05/2011/05/2011/04/2011/03/weekend-vulnerability-and-patch-report-march-4-2011/" target="_blank">Weekend Vulnerability and Patch Report, March 4, 2011</a>.</p>
<p><strong>Quick View Plus CorelDRAW</strong>: A <a href="http://secunia.com/advisories/45281/" target="_blank">highly critical vulnerability </a>has been found in Quick View Plus which can be exploited by malicious people to compromise a user’s system. Users should not view untrusted CDR files in Quick View Plus. We first alerted readers to this vulnerability in <a href="../2012/03/2012/02/2012/01/2011/12/2011/12/2011/11/2011/11/2011/11/2011/10/2011/10/2011/10/2011/10/2011/10/2011/09/2011/09/2011/09/2011/08/2011/07/weekend-vulnerability-and-patch-report-july-31-2011/" target="_blank">Weekend Vulnerability and Patch Report, July 31, 2011</a>.</p>
<p><strong><strong></strong></strong><strong>Symantec pcAnywhere</strong><em><strong>:</strong> </em>As we reported in our<a href="../2012/03/2012/02/2012/01/cyber-security-news-of-the-week-january-29-2012/" target="_blank"> Cyber Security News of the Week, January 29, 2012</a>, Symantec has confirmed that the hacker group Anonymous stole source code from the 2006 versions of several Norton security products and the pcAnywhere remote access tool. Symantec has advised users to disable pcAnywhere because of the theft of the pcAnywhere source code.</p>
<p><em>If you are responsible for the security of your computer, our weekly report is for you. We strongly urge you to take action to keep your workstation patched and updated.<br />
</em></p>
<p><em>If someone else is responsible for the security of your computer, forward our <span style="text-decoration: underline;">Weekend Vulnerability and Patch Report</span> to them and follow up to make sure your computer has been patched and updated.</em></p>
<p>Vulnerability management is a key element of <a href="http://www.citadel-information.com/services/" target="_blank"><em>cyber security management</em></a>. Cyber criminals take over user computers by writing computer programs that “exploit” vulnerabilities in operating systems (Windows, Apple OS, etc) and application programs (Adobe Acrobat, Office, Flash, Java, etc). When software companies find a vulnerability, they usually issue an update patch to fix the code running in their customer’s computers.</p>
<p><a href="http://www.citadel-information.com/" target="_blank">Citadel </a>publishes our <span style="text-decoration: underline;"><em>Weekend Vulnerability and Patch Report</em></span> to alert readers to some of the week’s important updates and vulnerabilities. Our focus is on software typically found in the small or home office (SOHO) or that users are likely to have on their home computer. The report is not intended to be a thorough listing of updates and vulnerabilities.</p>
</div>
</div>
</div>
</div>
</div>
</div>
]]></content:encoded>
			<wfw:commentRss>http://www.citadel-information.com/2012/04/weekend-vulnerability-and-patch-report-april-15-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cyber Security News of the Week, April 15, 2012</title>
		<link>http://www.citadel-information.com/2012/04/cyber-security-news-of-the-week-april-15-2012/</link>
		<comments>http://www.citadel-information.com/2012/04/cyber-security-news-of-the-week-april-15-2012/#comments</comments>
		<pubDate>Sun, 15 Apr 2012 23:53:11 +0000</pubDate>
		<dc:creator>Stan Stahl Ph.D.</dc:creator>
				<category><![CDATA[Cyber Security Management]]></category>
		<category><![CDATA[ISSA-LA]]></category>

		<guid isPermaLink="false">http://www.citadel-information.com/?p=3569</guid>
		<description><![CDATA[Cyber Security Commentary — ISSA-LA 4th Annual Information Security Summit Join us on May 16 for ISSA-LA&#8217;s 4th Annual Information Security Summit.  Keynote address by Alan Paller. Special keynote address by Chris Coffey. Perfect for business, technology and information security leaders. Information security is here. It&#8217;s now. And while we see stories in the paper [...]]]></description>
			<content:encoded><![CDATA[<h3>Cyber Security Commentary — ISSA-LA 4th Annual Information Security Summit</h3>
<p style="text-align: left;">Join us on May 16 for ISSA-LA&#8217;s 4th Annual Information Security Summit.  <a href="http://www.issala.org/wp-content/uploads/2011/12/ISSA_Paller_Release_FINAL_031312.pdf">Keynote address by Alan Paller</a>. <a href="http://www.issala.org/wp-content/uploads/2011/12/ISSA_Coffey_Release_FINAL_041112.pdf">Special keynote address by Chris Coffey.</a> Perfect for business, technology and information security leaders.</p>
<p style="text-align: center;"><em>Information security is here. It&#8217;s now. And while we see stories in the paper about problems, there is little information about what we as business leaders need to do. I have been impressed with what i have learned from attending the ISSA-LA Summit.   I have gained important knowledge about protecting my business. And about the competitive advantage I achieve when I protect my customers&#8217; sensitive information.</em></p>
<p style="text-align: center;"><em>Leading edge Information security requires everyone in your organization to get involved, to work together as a team. This takes leadership. This is what the Summit is all about. By attending yourself and bringing one or two members of your team you will leave with actionable insights.  No group understands information security like ISSA-LA. That&#8217;s why I&#8217;m going to Summit IV and that&#8217;s why I recommend ISSA-LA&#8217;s Information Security Summit to my clients. We are fortunate to have this organization gathering so many experts together. It is a not to be missed opportunity.</em></p>
<p style="text-align: center;"><em>Tom Drucker</em><br />
<em>President<br />
Consultants in Corporate Innovation</em></p>
<p>Visit the <a href="http://www.issala.org/summit/" target="_blank">ISSA-LA Summit Website </a>for more information or to register.</p>
<h3>Cyber Crime</h3>
<p><a href="http://www.computerworld.com/s/article/9225994/Utah_breach_10X_worse_than_originally_thought?source=rss_keyword_edpicks">Utah breach 10X worse than originally thought:</a> The scope of a data breach involving a Medicaid server at the Utah Department of Health is much worse than originally thought. State officials now say that close to 280,000 Social Security Numbers may have been exposed in the incident instead of 25,000, as originally believed. <em>ComputerWorld, April 9, 2012</em></p>
<h3>Cyber Threats</h3>
<p><a href="http://arstechnica.com/apple/news/2012/04/checking-for-mac-flashback-infestation-theres-an-app-for-that.ars">Checking for Mac Flashback infestation? There&#8217;s an app for that:</a> Our post from Friday about how to check your Mac for a Flashback malware infection has been wildly popular so far. And with good reason, too, since a second security firm has now backed up the numbers indicating that more than half a million Macs have been infected. That&#8217;s slightly more than 1 percent of all 45 million Macs in the world—still a relatively small number, but a worrisome one for Mac users, as the tally of infected machines continues to grow. <em>ars technica, April 9, 2012</em></p>
<p><a href="http://www.pcmag.com/article2/0,2817,2402966,00.asp">Criminals Hide Malware in Version of &#8216;Angry Birds: Space&#8217;:</a> A version of the hit game Angry Birds: Space that&#8217;s been seeded with malware has been discovered in the wild, although only the adventurous may risk being infected. <em>PC Magazine, April 12, 2012</em></p>
<p><a href="http://securitywatch.pcmag.com/pc-hardware/296547-hp-s-malware-laden-switches-illustrate-supply-chain-risks">HP&#8217;s Malware-Laden Switches Illustrate Supply Chain Risks:</a> Hewlett-Packard is trying to figure out what happened as the technology giant warned customers that some of the HP ProCurve switches shipped last year contained malware-laden flash cards. <em>PC Magazine, April 12, 2012</em></p>
<h3>Cyber Security Management</h3>
<p><a href="http://www.bizcoachinfo.com/archives/10414">Has Security Bloom Fallen off the Rose for Macs?:</a> <strong>Dr. Stahl is quoted extensively in this story.</strong> For years in terms of security, Windows has been considered inferior to Macs. But no longer thanks to malware security epidemics. Apple is under increasing pressure to take preventative security measures by cyber experts in the wake of 600,000 malware-infected Macs. <em>The Biz Coach, April 11, 2012</em></p>
<p><a href="http://www.forbes.com/sites/ciocentral/2012/03/05/conversations-on-cybersecurity-part-4-effective-protection/">Conversations On Cybersecurity, Part 4: Effective Protection:</a> Alan Paller, Research Director, SANS Institute:  When we last left the attorneys, they had asked what they could do to stop the targeted attacks that the Chinese and other competitors used in industrial espionage. <em>Forbes, March 5, 2012<br />
</em></p>
<p><a href="http://www.wallstreetandtech.com/data-security/232800225?itc=edit_stub">Data Security: Who’s Winning the Cyber War?:</a> Data security has long been a priority for financial services firms. But a wave of very public cyber attacks by international hacker groups such as Anonymous, combined with an already distrustful public following the financial crisis, has forced financial services firms to step up their network security to prevent data breaches and regain clients&#8217; trust. While victims of some of the more notable attacks and data breaches of 2011 were large consumer companies and government agencies — including Sony, PBS, the U.S. Senate, and even the CIA and FBI — security experts say financial services firms, traditionally a popular target of fraudsters, are increasingly a target of criminal hackers. <em>Wall Street &amp; Technology, April 9, 2012</em></p>
<h3>ISSA-LA &#8211; Securing the Village</h3>
<p><a href="http://www.issala.org/wp-content/uploads/2011/12/ISSA_Coffey_Release_FINAL_041112.pdf" target="_blank">World renowned executive and leadership coach Chris Coffey will be a featured speaker at the Los Angeles Chapter of the Information Systems Security Association’s (ISSA-LA) fourth annual Information Security Summit on Wednesday, May 16, 2012 at Hilton Universal City Hotel in Los Angeles.</a> The theme of the one-day Summit is The Growing Cyber Threat: Protect Your Business. <em>PRLog, April 12, 2012</em></p>
<h3>Cyber Updates</h3>
<p><a href="http://krebsonsecurity.com/2012/04/adobe-microsoft-issue-critical-updates/">Adobe, Microsoft Issue Critical Updates:</a> Adobe and Microsoft today each issued critical updates to plug security holes in their products. The patch batch from Microsoft fixes at least 11 flaws in Windows and Windows software. Adobe’s update tackles four vulnerabilities that are present in current versions of Adobe Acrobat and Reader. <em>KrebsOnSecurity, April 10, 2012</em></p>
<p><a href="http://news.cnet.com/8301-13579_3-57413316-37/apples-flashback-malware-remover-now-live/">Apple&#8217;s Flashback malware remover now live:</a> Apple this afternoon released an integrated tool to remove Flashback, malware designed to steal user information that was estimated to be present in more than half a million machines just last week. <em>Cnet, April 12, 2012</em></p>
<h3>Cyber Risks</h3>
<p><a href="http://krebsonsecurity.com/2012/04/fbi-smart-meter-hacks-likely-to-spread/">FBI: Smart Meter Hacks Likely to Spread:</a> A series of hacks perpetrated against so-called “smart meter” installations over the past several years may have cost a single U.S. electric utility hundreds of millions of dollars annually, the FBI said in a cyber intelligence bulletin obtained by KrebsOnSecurity. The law enforcement agency said this is the first known report of criminals compromising the hi-tech meters, and that it expects this type of fraud to spread across the country as more utilities deploy smart grid technology. <em>KrebsOnSecurity, April 11, 2012</em></p>
<h3>Cyber Sabatoge — Stuxnet</h3>
<p><a href="http://www.isssource.com/stuxnet-loaded-by-iran-double-agents/">Stuxnet Loaded by Iran Double Agents:</a> The Stuxnet virus that damaged Iran’s nuclear program was implanted by an Israeli proxy — an Iranian, who used a corrupt “memory stick.32,” former and serving U.S. intelligence officials said. <em>ISSSource, April 11, 2012</em></p>
<h3>Cyber Law</h3>
<p><a href="http://www.reuters.com/article/2012/04/11/us-cybersecurity-congress-idUSBRE8391FY20120411">House to take up cybersecurity bill with revisions:</a> (Reuters) &#8211; The U.S. House of Representatives will take up a cybersecurity bill at the end of April that lets the government and corporations share information about hacking attacks on U.S. networks, with amendments intended to ease civil liberties concerns, lawmakers said on Tuesday. <em>Reuters, April 11, 2012</em></p>
]]></content:encoded>
			<wfw:commentRss>http://www.citadel-information.com/2012/04/cyber-security-news-of-the-week-april-15-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

