Get up-to-the-minute news and opinions, plus access to a wide assortment of IT security resources that will keep you current and informed.

Keep me logged in Forgot your password?

Please wait...

Please wait...

 Email Security

Flight check-in emails lead to Zeus infection

April 03, 2012

Cyber criminals have cloaked spam to resemble US Airways check-in emails in phishing attempts that lead to Zeus trojan infections.
 

Trustwave buys M86 to bolster research, managed offerings

March 06, 2012

Trustwave, a cloud-based compliance and information security solutions provider, announced on Tuesday it will acquire M86 Security, a web security solutions and anti-malware provider.
 

Yahoo deploys two-factor authentication for email

December 20, 2011

The feature, which is currently available for users in the U.S. Canada, India, and the Philippines, requires a second form of verification beyond a password for any "suspicious" login attempt.
 

Fake FBI scam email making the rounds

November 23, 2011

A message purportedly sent from the FBI Anti-Terrorist and Monetary Crimes Division is making its way to inboxes, threatening recipients that they will be arrested if they do not reply back.
 

Most spam subject lines contain fake order, ticket numbers

November 21, 2011

Most spam messages sent in recent days have been delivered with subject lines containing fake order or ticket numbers, delivery invoices, payment notices or tax information, according to researchers from security firm Websense.
 

User discovers phished Hotmail, MSN credentials

November 15, 2011

A Reddit user with the handle "Roddds" found the credentials of 47,000 webmail users after investigating a phishing message.
 

ACH debit transfer emails leading to malware

November 10, 2011

Attackers have been circulating a trojan via email messages with subjects such as "ACH payroll payment was not accepted by Central Trust and Savings Bank."
 

Man charged with hacking Hoboken, N.J. mayor's email

November 10, 2011

Patrick Ricciardi, 45, allegedly abused his access as an information systems specialist to spy on official emails meant for Hoboken, N.J. Mayor Dawn Zimmer.
 

Best Email Content Management & Best Email Security

November 08, 2011

Throughout the day, SC Magazine will be announcing the finalists from each of its 32 award categories, covering the Reader Trust, Professional and Excellence sections.
 

Accused Scarlett Johansson hacker claims innocence

November 02, 2011

A Florida man pleaded innocent Tuesday to hacking into the email accounts of Scarlett Johansson, Mila Kunis, Christina Aguilera and dozens of other celebrities to steal photos, emails and other documents.
 

Researcher finds way to send executable file on Facebook

October 28, 2011

Researchers have discovered a way to evade Facebook security controls to deliver a message that could come outfitted with a malicious attachment.
 

Celebrity email hacker arrested

October 14, 2011

A Florida man has been charged with hacking into the email accounts of Mila Kunis, Christina Aguilera, Scarlett Johansson and dozens of other celebrities to steal photos, emails and other documents. Christopher Chaney, 35, of Jacksonville was nabbed following an 11-month police investigation dubbed "Operation Hackerazzi," according to an FBI statement this week. Once he had access to a victim's email account, which he obtained by using publicly available information, he allegedly changed the settings so that all of their emails would be automatically forwarded to him. He also stole private photos, which he offered to celebrity blogs. Chaney was charged with accessing and damaging protected computers without authorization, wiretapping and aggravated identity theft. He faces up to 121 years in prison.
 

Safeguarding email from "vampires"

August 01, 2011

There were some definite trends that we observed this month. The first is that we are getting fewer physical appliances in favor of virtual ones.
 

Google+ users spammed due to disk space overload

July 11, 2011

Some users of the new social media service Google+ were inadvertently spammed with email notifications this weekend following a technical malfunction on the site. The error occurred during an 80-minute period when Google+, currently in beta, ran out of disk space on a system that keeps track of notifications, Vic Gundotra, a Google senior vice president of engineering, wrote in a Saturday post. "We didn't expect to hit these high thresholds so quickly, but we should have," Gundotra said.
 

Security firm warns of Google+ spam run

July 01, 2011

Google+ is barely a few days old, but the criminal element already is capitalizing on users' interest in joining the new social networking service, according to Sophos. Researchers at the security firm have spotted a new campaign in which junk mailers are blasting out pharmacy spam disguised as invites to the online sharing portal. "[C]licking on the links will not take you to the new social network, but instead...to a pharmacy website set up to sell the likes of Viagra, Cialis and Levitra to the unwary," wrote Graham Cluley, senior technology consultant at Sophos, in a Friday blog post.
 

Crooks opt for spear phishing despite higher upfront cost

June 30, 2011

Cybercriminals are scrapping widespread malicious email campaigns for more targeted attacks, according to a new Cisco report.
 

New Zeus emails cloaked as Fed, IRS messages

June 22, 2011

Small and midsize organizations may want to take note: There is a particularly large Zeus spam campaign making the rounds.
 

Google breaks up Gmail spying campaign

June 01, 2011

Google has identified and disrupted a campaign operating out of eastern China meant to hijack and monitor the Gmail accounts belonging to hundreds of users, the technology giant revealed Wednesday.
 

Personal data of "X-Factor" hopefuls exposed

May 04, 2011

Hackers late last week broke into Fox Broadcasting Company's website, Fox.com, and accessed personal information of tens of thousands of individuals who applied to appear on "The X Factor."
 

New York Yankees expose season ticket holders' data

April 28, 2011

A spreadsheet containing the personal information of New York Yankees' season ticket holders was inadvertently emailed on Monday evening to more than 1,000 people.
 

Experts warn of attacks as more Epsilon victims emerge

April 06, 2011

Fallout continues, and new corporate victims come to light after the massive breach of an email marketing services provider.
 

A slew of banks, retailers affected by Epsilon email breach

April 04, 2011

A growing list of companies, including Capital One, U.S. Bank, Citigroup and JPMorgan Chase, are notifying customers that their email addresses were stolen by hackers.
 

Earthquake and tsunami breed web scams, malware

March 11, 2011

The 8.9-magnitude earthquake and deadly tsunami in Japan also has triggered a tidal wave of cybercrime, say experts.
 

California lawmaker tries again with data breach bill

January 25, 2011

A California lawmaker has reintroduced a bill that would update the state's pioneering data breach notification law, SB-1386, to include additional requirements for organizations that lose sensitive data.
 

Palin hacker begins time in prison, not halfway house

January 14, 2011

The student convicted of hacking into the Yahoo email account of Sarah Palin while she was the Republican candidate for vice president has begun serving a prison term.
 

Spam, after a holiday hiatus, returns in earnest

January 10, 2011

The Rustock botnet, dubbed the biggest source of global spam, has resumed activity after a two-week break, according to security researchers at Symantec.
 

Fake Microsoft security update spreading malware

January 04, 2011

A new wave of malicious emails containing a fake Microsoft Windows security update began hitting inboxes in an effort to spread malware, researchers at anti-virus firm Sophos have warned. The messages, which appear to be sent from Microsoft's security team and contain the subject line "Update your Windows," advise users to update their operating system by downloading an attached executable file, Graham Cluley, senior technology consultant at Sophos, wrote in a blog post Tuesday. The attached file, called "KB453396-ENU.zip," is actually an AutoRun worm. Users should be advised that Microsoft never distributes security updates via email attachments, Cluley said. - AM
 

Google quickly shores up Gmail spam flaw

November 22, 2010

Google has fixed what is being described as a serious security flaw that allowed a hacker to harvest Gmail addresses and send spam from the search giant's servers.
 

New malicious email campaign targets Facebook users

November 19, 2010

A large wave of malicious emails claiming to come from Facebook began hitting inboxes this morning, according to researchers at messaging security firm AppRiver. The emails contain the subject line "Facebook Support" and purport to be from "Facebook office." Recipients are told their Facebook accounts have been blocked due to spam activity and they must use a new password, which is included in an attachment. However, the attachment actually contains a variant of the Oficla downloader, which has been known to install rogue anti-virus programs and the Zeus trojan. AppRiver has detected more than 100,000 of the messages. - DK
 

Ten years of evolving threats: A look back at the impact of notable malicious wares of the past decade

Derek Manky, project manager, Fortinet Fortiguard Labs November 15, 2010

As security firm Fortinet celebrates 10 years in business, Fortiguard Labs took a look at the 10 most intriguing threats during the past decade and showed how their feature sets have evolved, Darwin-like, over time.