ISR News: Diebold ATM’s Under Attack
Excerpts From SearchFinancialSecurity.com
“Obviously, fraudsters have tried to connect devices to ATMs before,” he said. “Normally they attach them on the outside of the machine, so there’s something for the public to see, but if they install malware onto the machine, there’s nothing for the human eye to see.”
ISR News: SEC Cybersecurity Incomplete
Excerpts From GCN.com
“In our report on SEC’s financial statements for fiscal years 2008 and 2007, we concluded that weaknesses in information security controls constitute a significant deficiency in internal controls over the information systems and data used for financial reporting,” GAO auditors wrote in a recently released report.
ISR News: What Is a SQL Injection?
Excerpts From The Industry Standard
SQL injection attacks work by placing commands written in the database manipulation language SQL (short for Structured Query Language) into, for example, the username field on a website’s login page. Incorrect handling of the username causes it to be treated as part of a SQL command by the website’s servers.
ISR News: New Malware Targets Applications
Excerpts From The Industry Standard
“We Are Toast.” So warns Gartner Blog Network member Neil MacDonald in a Monday post about the current trend in malware. Rather than attacking operating systems, cybercrooks are increasingly going after vulnerabilities in Web applications.
ISR News: BBC Launches BotNet Attack
Excerpts From BBC News
Software used to control thousands of home computers has been acquired online by the BBC as part of an investigation into global cyber crime. The technology programme Click has demonstrated just how at risk PCs are of being taken over by hackers. Almost 22,000 computers made up Click’s network of hijacked machines, which has now been disabled. The BBC has now warned users that their PCs are infected, and advised them on how to make their systems more secure.
Updates From Insecure.org
The BBC appears to have broken the Computer Misuse Act by causing 22,000 computers to send spam.


