<?xml version="1.0"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">

<channel>
	<title>Daily Security News</title>
	<link>http://www.beastorbuddha.com/dsn/</link>
	<language>en</language>
	<description>Daily Security News - http://www.beastorbuddha.com/dsn/</description>

<item>
	<title>general - Programmer gets 4 years in TJX hack case</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/12/zaman_sentenced/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/12/zaman_sentenced/</link>
	<description>Dirty laundry delivered via FedEx
&lt;p&gt;A former Barclays Bank programmer received 46 months in prison for helping TJX hacker Albert Gonzalez launder as much as $800,000, according to news reports.…&lt;/p&gt;</description>
	<pubDate>Fri, 12 Mar 2010 23:21:57 +0000</pubDate>
</item>
<item>
	<title>theory - Friday Squid Blogging: Cipherlopods</title>
	<guid>http://www.schneier.com/blog/archives/2010/03/friday_squid_bl_223.html</guid>
	<link>http://www.schneier.com/blog/archives/2010/03/friday_squid_bl_223.html</link>
	<description>This makes no sense to me, even though -- I suppose -- it's a squid cryptography joke....&lt;div class=&quot;feedflare&quot;&gt;
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?a=xOeyWVszKpM:scqn4WlxBsg:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?d=dnMXMwOfBR0&quot; border=&quot;0&quot; /&gt;&lt;/a&gt;
&lt;/div&gt;</description>
	<pubDate>Fri, 12 Mar 2010 22:21:58 +0000</pubDate>
</item>
<item>
	<title>general - Netflix cancels recommendation contest over privacy</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/12/netflix_contest_cancelled/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/12/netflix_contest_cancelled/</link>
	<description>Not as anonymous as you think
&lt;p&gt;Netflix has canceled a contest designed to improve its movie recommendation system out of concern it might compromise the privacy of its customers.…&lt;/p&gt;</description>
	<pubDate>Fri, 12 Mar 2010 22:20:06 +0000</pubDate>
</item>
<item>
	<title>technical - Update on Security Advisory 981374</title>
	<guid>d5e57398-b9ef-4490-9955-07cbb4e4a80d:3318766</guid>
	<link>http://blogs.technet.com/msrc/archive/2010/03/12/update-on-security-advisory-981374.aspx</link>
	<description>&lt;p&gt;Hi everyone,&lt;/p&gt;  &lt;p&gt;I’m writing to let you know that we have updated &lt;a href=&quot;http://www.microsoft.com/technet/security/advisory/981374.mspx&quot;&gt;Security Advisory 981374&lt;/a&gt; with new workaround information. We are aware that exploit code has been made public for this issue. As with our last update, Internet Explorer 8 remains unaffected by the vulnerability addressed in the advisory and we continue to encourage all customers to upgrade to this version. &lt;/p&gt;  &lt;p&gt;On Wednesday we added a workaround to the advisory that helps to mitigate the vulnerability by disabling the peer factory class through the modification of a registry key. With today’s update, we have added a &lt;a href=&quot;http://support.microsoft.com/kb/981374&quot;&gt;Microsoft Fix It&lt;/a&gt; to automate this workaround for Windows XP and Windows Server 2003 customers. As always, customers should test this thoroughly before deploying as certain functionality that depends on the peer factory class, such as printing from Internet Explorer and the use of web folders, may be affected. &lt;/p&gt;  &lt;p&gt;We have seen speculation that Microsoft might release an update for this issue out-of-band. I can tell you that we are working hard to produce an update which is now in testing. This is a critical and time intensive step of the process as the update must be tested against all affected versions of Internet Explorer on all supported versions of Windows. Additionally, each supported language version needs to be tested as well as testing against thousands of third party applications. We never rule out the possibility of an out-of-band update. When the update is ready for broad distribution, we will make that decision based on customer needs. &lt;/p&gt;  &lt;p&gt;Please review the advisory for more information. We will keep you posted as additional information becomes available. &lt;/p&gt;  &lt;p&gt;Jerry Bryant   &lt;br /&gt;Sr. Security Communications Manager Lead&lt;/p&gt;  &lt;p&gt;*This posting is provided &amp;quot;AS IS&amp;quot; with no warranties, and confers no rights.*&lt;/p&gt;&lt;img src=&quot;http://blogs.technet.com/aggbug.aspx?PostID=3318766&quot; width=&quot;1&quot; height=&quot;1&quot; /&gt;</description>
	<pubDate>Fri, 12 Mar 2010 21:34:14 +0000</pubDate>
	<dc:creator>MSRCTEAM</dc:creator>
</item>
<item>
	<title>general - Trojan armed with hardware-based anti-piracy control</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/12/new_zeus_features/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/12/new_zeus_features/</link>
	<description>Zeus borrows page from Microsoft
&lt;p&gt;The latest version of the Zeus do-it-yourself crimeware kit goes to great lengths to thwart would-be pirates by introducing a hardware-based product activation scheme similar to what's found in Microsoft Windows.…&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://whitepapers.theregister.co.uk/paper/view/814/oracle-814.pdf?td=rss&quot;&gt;What is your recession sales strategy?&lt;/a&gt;&lt;/p&gt;</description>
	<pubDate>Fri, 12 Mar 2010 20:27:45 +0000</pubDate>
</item>
<item>
	<title>theory - Another Schneier Interview</title>
	<guid>http://www.schneier.com/blog/archives/2010/03/another_schneie_2.html</guid>
	<link>http://www.schneier.com/blog/archives/2010/03/another_schneie_2.html</link>
	<description>This one on simple-talk.com....&lt;div class=&quot;feedflare&quot;&gt;
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?a=McrExwxbVEE:sCoNarHrCx4:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?d=dnMXMwOfBR0&quot; border=&quot;0&quot; /&gt;&lt;/a&gt;
&lt;/div&gt;</description>
	<pubDate>Fri, 12 Mar 2010 19:19:30 +0000</pubDate>
</item>
<item>
	<title>theory - Why DRM Doesn't Work</title>
	<guid>http://www.schneier.com/blog/archives/2010/03/why_drm_doesnt.html</guid>
	<link>http://www.schneier.com/blog/archives/2010/03/why_drm_doesnt.html</link>
	<description>Funny comic....&lt;div class=&quot;feedflare&quot;&gt;
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?a=1g3SHeoA8J4:JjEJClRKOFE:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?d=dnMXMwOfBR0&quot; border=&quot;0&quot; /&gt;&lt;/a&gt;
&lt;/div&gt;</description>
	<pubDate>Fri, 12 Mar 2010 17:31:20 +0000</pubDate>
</item>
<item>
	<title>general - Safari update cages numerous security bugs</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/12/safari_update/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/12/safari_update/</link>
	<description>Code inject and info flaws fixed
&lt;p&gt;Apple published an update of its Safari browser on Thursday that plugs 16 security vulnerabilities.…&lt;/p&gt;</description>
	<pubDate>Fri, 12 Mar 2010 16:11:32 +0000</pubDate>
</item>
<item>
	<title>general - SSD tools crack passwords 100 times faster</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/12/password_cracking_on_crack/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/12/password_cracking_on_crack/</link>
	<description>Ultra brute force attack
&lt;p&gt;Password-cracking tools optimised to work with SSDs have achieved speeds up to 100 times quicker than previously possible.…&lt;/p&gt;</description>
	<pubDate>Fri, 12 Mar 2010 14:42:41 +0000</pubDate>
</item>
<item>
	<title>theory - More Hollow Coins</title>
	<guid>http://www.schneier.com/blog/archives/2010/03/more_hollow_coi_1.html</guid>
	<link>http://www.schneier.com/blog/archives/2010/03/more_hollow_coi_1.html</link>
	<description>A hollowed-out U.S. nickel can hold a microSD card. Pound and euro coins are also available. I blogged about this about a year ago as well....&lt;div class=&quot;feedflare&quot;&gt;
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?a=7SwuyVOQSYg:V_NDAxR29h0:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?d=dnMXMwOfBR0&quot; border=&quot;0&quot; /&gt;&lt;/a&gt;
&lt;/div&gt;</description>
	<pubDate>Fri, 12 Mar 2010 12:58:19 +0000</pubDate>
</item>
<item>
	<title>general - McAfee inadvertently speeds creation of Metaploit IE exploit pack</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/12/ie_metasploit_0day_flaw/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/12/ie_metasploit_0day_flaw/</link>
	<description>Unsanitised blog laid exploit hunt clues
&lt;p&gt;A security researcher has credited McAfee for helping him to develop exploit code that cracks open an unpatched &lt;a href=&quot;http://secunia.com/advisories/38860&quot; target=&quot;_blank&quot;&gt;flaw&lt;/a&gt; in older versions of Internet Explorer.…&lt;/p&gt;</description>
	<pubDate>Fri, 12 Mar 2010 12:09:00 +0000</pubDate>
</item>
<item>
	<title>general - Turkey cuffs 23 'militant' hacker suspects</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/12/turkey_arrests_pkk_hack_crew_suspects/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/12/turkey_arrests_pkk_hack_crew_suspects/</link>
	<description>PKK s'kiddies
&lt;p&gt;Turkey has arrested 23 hackers suspected of links with the outlawed Kurdistan Workers' Party (PKK) and attacks on government websites.…&lt;/p&gt;</description>
	<pubDate>Fri, 12 Mar 2010 10:03:24 +0000</pubDate>
</item>
<item>
	<title>general - Securus Global Roles</title>
	<guid>http://beastorbuddha.com/?p=2243</guid>
	<link>http://beastorbuddha.com/2010/03/12/securus-global-roles/</link>
	<description>&lt;p&gt;We&amp;#8217;re looking for people again. Check out the &lt;a href=&quot;http://beastorbuddha.com/bhj/2010/03/12/security-consultantsecuritytestingpenetration-testing-melbourne-new/&quot; target=&quot;_blank&quot;&gt;role advertisement&lt;/a&gt;. If you think you fit the role description and want to join one of the region&amp;#8217;s best and fastest growing security companies, give us a yell.&lt;/p&gt;
&lt;p&gt;Just a note: while we are open to overseas people applying, and we have recruited OS before, having a work visa or the like for Australia is preferred.&lt;/p&gt;
&lt;p&gt;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;&amp;#8212;-&lt;br /&gt;
Securus Global: &lt;a href=&quot;http://www.securusglobal.com/&quot; target=&quot;_blank&quot;&gt;IT Security&lt;/a&gt;, &lt;a href=&quot;http://www.securusglobal.com/services/pentesting.html&quot; target=&quot;_blank&quot;&gt;Penetration Testing&lt;/a&gt;, &lt;a href=&quot;http://www.securusglobal.com/services/securityassessments.html&quot; target=&quot;_blank&quot;&gt;Security Assessments&lt;/a&gt;, &lt;a href=&quot;http://www.securusglobal.com/services/pcicompliance.html&quot; target=&quot;_blank&quot;&gt;PCI Compliance&lt;/a&gt;, &lt;a href=&quot;http://www.securusglobal.com/services/producttesting.html&quot; target=&quot;_blank&quot;&gt;Product Assurance&lt;/a&gt;, &lt;a href=&quot;http://www.securusglobal.com/products/qualys.html&quot; target=&quot;_blank&quot;&gt;QualysGuard&lt;/a&gt;, &lt;a href=&quot;http://www.securusglobal.com/services/managementconsulting.html&quot; target=&quot;_blank&quot;&gt;Security Strategy&lt;/a&gt;, &lt;a href=&quot;http://www.securusglobal.com/services/managedva.html&quot; target=&quot;_blank&quot;&gt;Vulnerability Assessment&lt;/a&gt;.&lt;/p&gt;</description>
	<pubDate>Fri, 12 Mar 2010 07:22:37 +0000</pubDate>
	<dc:creator>Drazen Drazic</dc:creator>
</item>
<item>
	<title>general - Sarah Palin to testify in email hack trial</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/12/palin_email_breach_testimony/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/12/palin_email_breach_testimony/</link>
	<description>After Yahoo! breach 'paralyzed' Veep campaign
&lt;p&gt;Former Republican vice presidential candidate Sarah Palin will testify in person against the college student accused of breaching her Yahoo mail account and leaking some of its contents online, according to published reports.…&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://whitepapers.theregister.co.uk/paper/view/814/oracle-814.pdf?td=rss&quot;&gt;What is your recession sales strategy?&lt;/a&gt;&lt;/p&gt;</description>
	<pubDate>Fri, 12 Mar 2010 06:02:01 +0000</pubDate>
</item>
<item>
	<title>general - Risky Business #143 -- Cloud computing and the history of electricity</title>
	<guid>http://risky.biz/1626 at http://risky.biz</guid>
	<link>http://risky.biz/RB143</link>
	<description>&lt;div class=&quot;field field-type-text field-field-tagline&quot;&gt;
      &lt;div class=&quot;field-label&quot;&gt;Tagline:&amp;nbsp;&lt;/div&gt;
    &lt;div class=&quot;field-items&quot;&gt;
            &lt;div class=&quot;field-item odd&quot;&gt;
                    Are your electron-tubez cloudy?        &lt;/div&gt;
        &lt;/div&gt;
&lt;/div&gt;
&lt;div class=&quot;field field-type-link field-field-mediaurl&quot;&gt;
      &lt;div class=&quot;field-label&quot;&gt;Media URL:&amp;nbsp;&lt;/div&gt;
    &lt;div class=&quot;field-items&quot;&gt;
            &lt;div class=&quot;field-item odd&quot;&gt;
                    &lt;div class=&quot;link-item &quot;&gt;&lt;div class=&quot;link-url&quot;&gt;&lt;a href=&quot;http://media.risky.biz/RB143.mp3&quot;&gt;http://media.risky.biz/RB143.mp3&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;        &lt;/div&gt;
        &lt;/div&gt;
&lt;/div&gt;
&lt;fieldset class=&quot;fieldgroup group-content-headers&quot;&gt;&lt;legend&gt;Content Headers&lt;/legend&gt;&lt;div class=&quot;field field-type-number-integer field-field-content-length&quot;&gt;
      &lt;div class=&quot;field-label&quot;&gt;Content Length:&amp;nbsp;&lt;/div&gt;
    &lt;div class=&quot;field-items&quot;&gt;
            &lt;div class=&quot;field-item odd&quot;&gt;
                    20720130        &lt;/div&gt;
        &lt;/div&gt;
&lt;/div&gt;
&lt;div class=&quot;field field-type-text field-field-content-type&quot;&gt;
      &lt;div class=&quot;field-label&quot;&gt;Content Type:&amp;nbsp;&lt;/div&gt;
    &lt;div class=&quot;field-items&quot;&gt;
            &lt;div class=&quot;field-item odd&quot;&gt;
                    audio/mpeg        &lt;/div&gt;
        &lt;/div&gt;
&lt;/div&gt;
&lt;/fieldset&gt;
&lt;p&gt;On this week's show we're having an extended chat with our good mate Greg Shipley. &lt;/p&gt;
&lt;p&gt;Greg's best known as the CTO of Chicago-based information security consultancy Neohapsis, and he'll be joining us to talk about what was on the agenda at the RSA conference. Apparently it's cloud, cloud, cloud... but what does that actually mean, mean, mean? Greg will be along soon to discuss, he's always good.&lt;/p&gt;
&lt;div class=&quot;field field-type-nodereference field-field-forum-topic-id&quot;&gt;
      &lt;div class=&quot;field-label&quot;&gt;Forum Topic:&amp;nbsp;&lt;/div&gt;
    &lt;div class=&quot;field-items&quot;&gt;
            &lt;div class=&quot;field-item odd&quot;&gt;
                    &lt;a href=&quot;http://risky.biz/forum/risky-business-143-cloud-computing-and-history-electricity&quot;&gt;Risky Business #143 -- Cloud computing and the history of electricity&lt;/a&gt;        &lt;/div&gt;
        &lt;/div&gt;
&lt;/div&gt;
&lt;p&gt;&lt;a href=&quot;http://risky.biz/RB143&quot; target=&quot;_blank&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
	<pubDate>Fri, 12 Mar 2010 05:40:43 +0000</pubDate>
	<dc:creator>Patrick Gray</dc:creator>
</item>
<item>
	<title>general - TSA worker tried to sabotage terror database, feds say</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/11/tsa_sabotage_charges/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/11/tsa_sabotage_charges/</link>
	<description>One week after losing job
&lt;p&gt;A former data analyst for the US Transportation Security Agency has been accused of trying to sabotage a terrorist screening database used to vet people with access to sensitive information and secure areas of the nation’s transportation network.…&lt;/p&gt;</description>
	<pubDate>Thu, 11 Mar 2010 23:59:20 +0000</pubDate>
</item>
<item>
	<title>general - Microsoft plants Bing on Google-free Chinese Androids</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/11/microsoft_bing_on_android_in_china/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/11/microsoft_bing_on_android_in_china/</link>
	<description>Google apps 'postponed' on China carriers
&lt;p&gt;Motorola will soon push Microsoft's Bing search engine onto Android phones in China, after announcing an alliance with the Redmond software giant that will see Bing appear on Androids across the globe.…&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://whitepapers.theregister.co.uk/paper/view/859/atth0s1n.pdf?td=rss&quot;&gt;The power of collaboration within unified communications&lt;/a&gt;&lt;/p&gt;</description>
	<pubDate>Thu, 11 Mar 2010 22:37:13 +0000</pubDate>
</item>
<item>
	<title>general - One-third of orphaned Zeus botnets find way home</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/11/zeus_botnets_resurrected/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/11/zeus_botnets_resurrected/</link>
	<description>Cyber security's short-lived victory
&lt;p&gt;The takedown of 100 servers used to control Zeus-related botnets may be a short-lived victory, security researchers said after discovering that about a third of the orphaned channels were able to regain connectivity in less than 48 hours.…&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://whitepapers.theregister.co.uk/paper/view/892/legoland.pdf?td=rss&quot;&gt;Case Study: WhatsUp keeps Legoland turnstyles ringing&lt;/a&gt;&lt;/p&gt;</description>
	<pubDate>Thu, 11 Mar 2010 20:04:10 +0000</pubDate>
</item>
<item>
	<title>theory - Wikibooks Cryptography Textbook</title>
	<guid>http://www.schneier.com/blog/archives/2010/03/wikibooks_crypt.html</guid>
	<link>http://www.schneier.com/blog/archives/2010/03/wikibooks_crypt.html</link>
	<description>Over at Wikibooks, they're trying to write an open source cryptography textbook....&lt;div class=&quot;feedflare&quot;&gt;
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?a=iBTpn31Jwwo:X0omGtqXtws:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?d=dnMXMwOfBR0&quot; border=&quot;0&quot; /&gt;&lt;/a&gt;
&lt;/div&gt;</description>
	<pubDate>Thu, 11 Mar 2010 18:26:36 +0000</pubDate>
</item>
<item>
	<title>technical - Using Parameter Pollution and Clickjacking to Aid Anti-CSRF Bypass</title>
	<guid>http://ha.ckers.org/blog/20100311/using-parameter-pollution-and-clickjacking-to-aid-anti-csrf-bypass/</guid>
	<link>http://ha.ckers.org/blog/20100311/using-parameter-pollution-and-clickjacking-to-aid-anti-csrf-bypass/</link>
	<description>&lt;p&gt;It&amp;#8217;s been a while since I&amp;#8217;ve talked about &lt;a href=&quot;http://www.sectheory.com/clickjacking.htm&quot;&gt;Clickjacking&lt;/a&gt;, with only a few exceptions here and there.  Mostly because I haven&amp;#8217;t seen it much in the wild - at least not yet.  But there&amp;#8217;s still a lot of research out there to be done.  I got an interesting email the other day that talked about a way to use parameter pollution (or a mix of URL parameters and POST) to create a condition where you can defeat CSRF tokens:&lt;/p&gt;
&lt;p&gt;The technique, &lt;a href=&quot;http://blog.andlabs.org/2010/03/bypassing-csrf-protections-with.html&quot;&gt;found by Lava Kuppan&lt;/a&gt; describes a scenario where a mix of CSRF, parameter pollution and Clickjacking can defeat CSRF tokens in JSP and (sometimes) in ASP.NET.  It&amp;#8217;s worth a read.  I did briefly mention using CSRF to pre-populate fields that may be necessary to create a Clickjacking scenario during Jeremiah and my brief talk at the world OWASP in New York.  But this takes it to a new level, where you can pre-load information in such a way that it will actually defeat the application logic in the process.  Anyway, cool stuff by Lava.&lt;/p&gt;
&lt;!--Thu, 11 March 2010 11:03:28 +000--&gt;</description>
	<pubDate>Thu, 11 Mar 2010 17:06:22 +0000</pubDate>
	<dc:creator>RSnake</dc:creator>
</item>
<item>
	<title>general - Koobface gang refresh botnet to beat takedown</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/11/koobface_shake_up/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/11/koobface_shake_up/</link>
	<description>Twitter scourge changes pants
&lt;p&gt;Command and Control servers associated with the infamous Koobface worms have gone through a complete refresh over the last fortnight. Russian net security firm Kaspersky Lab reckons the change up might be aimed at making takedown efforts by cybercrime fighters more difficult.…&lt;/p&gt;</description>
	<pubDate>Thu, 11 Mar 2010 16:32:16 +0000</pubDate>
</item>
<item>
	<title>general - Estonian DDoS revenge worm crafter jailed</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/11/allaple_ddos_vxer_jailed/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/11/allaple_ddos_vxer_jailed/</link>
	<description>Infection still spreading
&lt;p&gt;An Estonian virus writer has been jailed for two and a half years for creating a Windows worm family that launched denial of service attacks on the websites of a local insurance firm and ISP.…&lt;/p&gt;</description>
	<pubDate>Thu, 11 Mar 2010 13:35:06 +0000</pubDate>
</item>
<item>
	<title>general - Tories on cyber war: Waffle, mutter, waffle. Um, vote for us!</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/11/neville_jones_on_cyber_war/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/11/neville_jones_on_cyber_war/</link>
	<description>'Computers. Clicking, typing. Email. I could go on'
&lt;p&gt;Tory peer and shadow security minister Baroness Pauline Neville Jones has set out her party's thoughts on cyber war and defence. Unfortunately once the waffle is stripped away there's pretty much nothing there.…&lt;/p&gt;</description>
	<pubDate>Thu, 11 Mar 2010 12:22:58 +0000</pubDate>
</item>
<item>
	<title>general - Password reset questions dead easy to guess</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/11/password_reset_insecurity/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/11/password_reset_insecurity/</link>
	<description>Your pet's name is Poochie? You're pwned
&lt;p&gt;Guessing the answer to common password reset questions is far easier than previously thought, according to a new study by computer science researchers.…&lt;/p&gt;</description>
	<pubDate>Thu, 11 Mar 2010 12:18:29 +0000</pubDate>
</item>
<item>
	<title>theory - Wanted: Trust Detector</title>
	<guid>http://www.schneier.com/blog/archives/2010/03/wanted_trust_de.html</guid>
	<link>http://www.schneier.com/blog/archives/2010/03/wanted_trust_de.html</link>
	<description>It's good to dream: IARPA's five-year plan aims to design experiments that can measure trust with high certainty -- a tricky proposition for a psychological study. Developing such experimental protocols could prove very useful for assessing levels of trust within one-on-one talks, or even during group interactions. A second part of the IARPA proposal might involve using new types of...&lt;div class=&quot;feedflare&quot;&gt;
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?a=LB2rWURkBPQ:iFI1QOyfYTg:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?d=dnMXMwOfBR0&quot; border=&quot;0&quot; /&gt;&lt;/a&gt;
&lt;/div&gt;</description>
	<pubDate>Thu, 11 Mar 2010 12:17:12 +0000</pubDate>
</item>
<item>
	<title>general - Bogus Playstation emulators pack Trojan payload</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/11/playstation_emulator_malware/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/11/playstation_emulator_malware/</link>
	<description>'Will be around for a long time'
&lt;p&gt;Retro gaming fans are being targeted in a new con designed to infect computers with a Trojan linked to scareware scams.…&lt;/p&gt;</description>
	<pubDate>Thu, 11 Mar 2010 10:49:25 +0000</pubDate>
</item>
<item>
	<title>general - PayPal restores Cryptome for real</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/11/paypal_cryptome/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/11/paypal_cryptome/</link>
	<description>Now go away
&lt;p&gt;PayPal has finally made good on its pledge to restore Cryptome's account many hours after the firm's head of global communications told &lt;em&gt;Register&lt;/em&gt; readers it had already done so.…&lt;/p&gt;</description>
	<pubDate>Thu, 11 Mar 2010 10:28:46 +0000</pubDate>
</item>
<item>
	<title>general - Zeus botnets suffer mighty blow after ISP taken offline</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/10/massive_zeus_takedown/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/10/massive_zeus_takedown/</link>
	<description>One quarter of C&amp;amp;C channels vanish
&lt;p&gt;At least a quarter of the command and control servers linked to Zeus-related botnets have suddenly gone quiet, continuing a recent trend of takedowns hitting some of the world's most nefarious cyber operations.…&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://whitepapers.theregister.co.uk/paper/view/696/smartprotection-whitepaper.pdf?td=rss&quot;&gt;Offloading malware protection to the cloud&lt;/a&gt;&lt;/p&gt;</description>
	<pubDate>Wed, 10 Mar 2010 23:23:57 +0000</pubDate>
</item>
<item>
	<title>theory - Nose Biometrics</title>
	<guid>http://www.schneier.com/blog/archives/2010/03/nose_biometrics.html</guid>
	<link>http://www.schneier.com/blog/archives/2010/03/nose_biometrics.html</link>
	<description>Really: Since they are hard to conceal, the study says, noses would work well for identification in covert surveillance. The researchers say noses have been overlooked in the growing field of biometrics, studies into ways of identifying distinguishing traits in people. &quot;Noses are prominent facial features and yet their use as a biometric has been largely unexplored,&quot; said the University...&lt;div class=&quot;feedflare&quot;&gt;
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?a=KbLHRL6S3Rw:C_-tTPx7oyo:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?d=dnMXMwOfBR0&quot; border=&quot;0&quot; /&gt;&lt;/a&gt;
&lt;/div&gt;</description>
	<pubDate>Wed, 10 Mar 2010 19:47:12 +0000</pubDate>
</item>
<item>
	<title>general - Google boss says something will happen in China 'soon'</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/10/google_china_resolution_coming_soon/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/10/google_china_resolution_coming_soon/</link>
	<description>Eight weeks and counting
&lt;p&gt;Google CEO Eric Schmidt has reiterated that the company is currently in negotiations with the Chinese government over its future in the country - despite the Chinese government's claims to the contrary - and he expects some sort of development &quot;soon&quot;.…&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://whitepapers.theregister.co.uk/paper/view/892/legoland.pdf?td=rss&quot;&gt;Case Study: WhatsUp keeps Legoland turnstyles ringing&lt;/a&gt;&lt;/p&gt;</description>
	<pubDate>Wed, 10 Mar 2010 19:20:08 +0000</pubDate>
</item>
<item>
	<title>general - Cryptome: PayPal a 'liar, cheat and a thug'</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/10/cryptome_paypal/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/10/cryptome_paypal/</link>
	<description>Account still restricted
&lt;p&gt;&quot;PayPal is a fucking liar, a cheat and a thug,&quot; says Cryptome operator John Young. The eBay-owned payment service closed the Cryptome account last week, with over $5,000 of donations intended for Young in limbo.…&lt;/p&gt;</description>
	<pubDate>Wed, 10 Mar 2010 16:10:18 +0000</pubDate>
</item>
<item>
	<title>general - UK plastic fraud losses fall for first time in 3 years</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/10/uk_plastic_fraud/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/10/uk_plastic_fraud/</link>
	<description>Online banking losses up though
&lt;p&gt;A rise in online banking fraud losses took some of the shine off the overall fall in debit and credit fraud in the UK last year.…&lt;/p&gt;</description>
	<pubDate>Wed, 10 Mar 2010 13:21:31 +0000</pubDate>
</item>
<item>
	<title>theory - The Limits of Identity Cards</title>
	<guid>http://www.schneier.com/blog/archives/2010/03/the_limits_of_i.html</guid>
	<link>http://www.schneier.com/blog/archives/2010/03/the_limits_of_i.html</link>
	<description>Good legal paper on the limits of identity cards: Stephen Mason and Nick Bohm, &quot;Identity and its Verification,&quot; in Computer Law &amp;amp; Security Review, Volume 26, Number 1, Jan 2010. Those faced with the problem of how to verify a person's identity would be well advised to ask themselves the question, 'Identity with what?' An enquirer equipped with the answer...&lt;div class=&quot;feedflare&quot;&gt;
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?a=aJ4IG-9biww:dj8ko7Jy2B0:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?d=dnMXMwOfBR0&quot; border=&quot;0&quot; /&gt;&lt;/a&gt;
&lt;/div&gt;</description>
	<pubDate>Wed, 10 Mar 2010 13:09:08 +0000</pubDate>
</item>
<item>
	<title>general - Twitter adds filter to cut phishing lines</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/10/twitter_anti_phishing_tech/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/10/twitter_anti_phishing_tech/</link>
	<description>Every twt.tl bit helps
&lt;p&gt;Twitter has tightened up security procedures in order to curtail phishing attacks against users of the micro-blogging service, which have become rampant over recent weeks.…&lt;/p&gt;</description>
	<pubDate>Wed, 10 Mar 2010 12:46:30 +0000</pubDate>
</item>
<item>
	<title>general - Max Clifford takes £1m to drop hack probe</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/10/notw_phone_hack_clifford_settlement/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/10/notw_phone_hack_clifford_settlement/</link>
	<description>Kiss and don't tell
&lt;p&gt;Celebrity publicist Max Clifford has agreed to accept a £1m plus payoff in exchange for dropping phone hacking allegations against the &lt;em&gt;News of the World&lt;/em&gt;.…&lt;/p&gt;</description>
	<pubDate>Wed, 10 Mar 2010 09:29:44 +0000</pubDate>
</item>
<item>
	<title>general - Suburban woman accused of using net to recruit terrorists</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/10/jihadjane_indictment/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/10/jihadjane_indictment/</link>
	<description>Feds cuff JihadJane
&lt;p&gt;A suburban Pennsylvania woman who went by the online alias JihadJane used the internet to recruit Islamic terrorists and to plot the assassination of a Swedish cartoonist who depicted the Prophet Mohammed, according to a federal indictment unsealed Tuesday.…&lt;/p&gt;</description>
	<pubDate>Wed, 10 Mar 2010 07:02:02 +0000</pubDate>
</item>
<item>
	<title>general - Fraud-prevention service ponies up $12m for 'false' ads</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/09/lifelock_settlement/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/09/lifelock_settlement/</link>
	<description>Agrees to safeguard customer data
&lt;p&gt;An Arizona company that sells services designed to prevent identity theft has agreed to pay $12m to settle charges it oversold their effectiveness and didn't adequately protect sensitive customer data.…&lt;/p&gt;</description>
	<pubDate>Tue, 09 Mar 2010 23:17:58 +0000</pubDate>
</item>
<item>
	<title>general - It's official: Adobe Reader is world's most-exploited app</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/09/adobe_reader_attacks/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/09/adobe_reader_attacks/</link>
	<description>The new Microsoft
&lt;p&gt;Adobe's ubiquitous Reader application has replaced Microsoft Word as the program that's most often targeted in malware campaigns, according to figures compiled by F-Secure.…&lt;/p&gt;</description>
	<pubDate>Tue, 09 Mar 2010 20:33:45 +0000</pubDate>
</item>
<item>
	<title>general - New Internet Explorer code-execution attacks go wild</title>
	<guid>tag:theregister.co.uk,2005:story/2010/03/09/internet_explorer_attacks/</guid>
	<link>http://go.theregister.com/feed/www.theregister.co.uk/2010/03/09/internet_explorer_attacks/</link>
	<description>IE 6 and 7 users targeted
&lt;p&gt;Online thugs are exploiting a security bug in earlier versions of Internet Explorer that allows them to remotely execute malicious code, Microsoft warned on Tuesday.…&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://whitepapers.theregister.co.uk/paper/view/814/oracle-814.pdf?td=rss&quot;&gt;What is your recession sales strategy?&lt;/a&gt;&lt;/p&gt;</description>
	<pubDate>Tue, 09 Mar 2010 19:08:33 +0000</pubDate>
</item>
<item>
	<title>theory - Marc Rotenberg on Google's Italian Privacy Case</title>
	<guid>http://www.schneier.com/blog/archives/2010/03/marc_rotenberg_1.html</guid>
	<link>http://www.schneier.com/blog/archives/2010/03/marc_rotenberg_1.html</link>
	<description>Interesting commentary: I don't think this is really a case about ISP liability at all. It is a case about the use of a person's image, without their consent, that generates commercial value for someone else. That is the essence of the Italian law at issue in this case. It is also how the right of privacy was first established...&lt;div class=&quot;feedflare&quot;&gt;
&lt;a href=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?a=YPemt2AdOxE:jMga-sMx3Ps:dnMXMwOfBR0&quot;&gt;&lt;img src=&quot;http://feeds.feedburner.com/~ff/schneier/excerpts?d=dnMXMwOfBR0&quot; border=&quot;0&quot; /&gt;&lt;/a&gt;
&lt;/div&gt;</description>
	<pubDate>Tue, 09 Mar 2010 18:36:00 +0000</pubDate>
</item>

</channel>
</rss>
