<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:blogger='http://schemas.google.com/blogger/2008' xmlns:georss='http://www.georss.org/georss' xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-4577044716596306296</id><updated>2016-07-04T18:47:41.974+02:00</updated><category term="Symantec"/><category term="IT Consumerization"/><category term="Infrastrutture critiche"/><category term="black market"/><category term="Anonymous"/><category term="BYOD"/><category term="Cybersecurity"/><category term="DNSChanger"/><category term="Mobile"/><category term="Android"/><category term="CNAIPIC"/><category term="Certification Authority"/><category term="Cloud"/><category term="Critical Infrastructure"/><category term="EPM"/><category term="Google"/><category term="Internet blackout"/><category term="Iphone"/><category term="LTE"/><category term="Polizia Postale"/><category term="SOPA"/><category term="Smart Grid"/><category term="Stuxnet"/><category term="Survey Mobile"/><category term="Telecom Italia"/><category term="copyright"/><category term="spam"/><category term="3GPP"/><category term="8 March 2012"/><category term="9 July 2012"/><category term="AAMS"/><category term="AGCOM"/><category term="Blackberry"/><category term="Compliance"/><category term="Crisi Management"/><category term="DDoS"/><category term="DNS blocking"/><category term="Data Loss Prevention"/><category term="DigiNotar"/><category term="Disaster Recovery"/><category term="DuQu"/><category term="ENISA"/><category term="EVSSL"/><category term="Enel"/><category term="Enterprise Device Management"/><category term="Enterprise Risk Management"/><category term="FBI"/><category term="Facebook"/><category term="Flashback"/><category term="Formula 1"/><category term="Global Intelligence Network"/><category term="Global Payment"/><category term="Google wallet"/><category term="Guida alla Sicurezza Informatica"/><category term="H3G"/><category term="Huawei"/><category term="ISTR 2011"/><category term="Infographic"/><category term="Internet Security Threat Response"/><category term="IoS"/><category term="Ipad"/><category term="Iran"/><category term="LOIC"/><category term="MDM"/><category term="Mac"/><category term="Malware"/><category term="Mastercard"/><category term="Mobile computing"/><category term="Mobile payment"/><category term="NGN"/><category term="PCI"/><category term="PKI"/><category term="Privacy"/><category term="Protezione Informazioni"/><category term="RSA"/><category term="SOC"/><category term="SOCA"/><category term="SSL"/><category term="Security Predictions"/><category term="Segreteria Infrastrutture Critiche"/><category term="Smartphone"/><category term="Social Network"/><category term="Steve Jobs"/><category term="VIP"/><category term="VISA"/><category term="Vasco"/><category term="Verisign"/><category term="Virus"/><category term="Vodafone"/><category term="Wind"/><category term="cybercrime"/><category term="guida sicurezza facebook"/><category term="interception"/><category term="online piracy"/><category term="phishing"/><category term="scam"/><category term="sicurezza bambini pornografia"/><category term="sicurezza facebook"/><category term="sicurezza informatica"/><category term="sicurezza social network"/><category term="target attack"/><category term="vulnerabilità"/><title type='text'>Team-Up with Marco Bavazzano</title><subtitle type='html'>VP in a boutique consulting firm on cybersecurity, Entrepreneur in Social Mobile Marketing</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default?redirect=false'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><link rel='next' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default?start-index=26&amp;max-results=25&amp;redirect=false'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>54</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-7299898797661375496</id><published>2013-10-21T23:43:00.002+02:00</published><updated>2013-10-21T23:45:08.677+02:00</updated><title type='text'>Digital Attack Map for DDoS</title><content type='html'>&lt;br /&gt;&lt;span style=&quot;background-color: rgba(255, 255, 255, 0);&quot;&gt;It&#39;is such a long time DDoS appeared on the threat landscape scenario, but they still continue to be on the edge.&amp;nbsp;It was 2006 when I engineered a DDoS mitigation solution to protect the IP backbone infrastructure of one of the leading telco provider in Europe, and years later that solution was used to protect a bunch of website of end customers, targeted from hacktivists.&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;background-color: rgba(255, 255, 255, 0);&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style=&quot;background-color: rgba(255, 255, 255, 0);&quot;&gt;Today, Google in collaboration with Arbor Networks, the leading technology provider of solution for DDoS Mitigation, has released a very cool website, giving us live data of DDoS attack arou d the world&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;background-color: rgba(255, 255, 255, 0);&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style=&quot;background-color: rgba(255, 255, 255, 0);&quot;&gt;Don&#39;t loose it, navigate into the Threat Landscape Channel of the Cybersecurity APP&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;background-color: rgba(255, 255, 255, 0);&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;img src=&quot;http://img854.imageshack.us/img854/1534/avhp.png&quot; /&gt;&lt;br /&gt;================ &lt;br /&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;b&gt;The One Stop App for Cyber Security&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;FREE DOWNLOAD&lt;/b&gt;&lt;br /&gt;&lt;a href=&quot;https://itunes.apple.com/it/app/cybersec/id690872881?mt=8&quot; target=&quot;_blank&quot;&gt;iTunes&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;https://play.google.com/store/apps/details?id=com.yopin.cybersecurity&amp;amp;hl=it&quot; target=&quot;_blank&quot;&gt;Google Play&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/7299898797661375496/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2013/10/digital-attack-map-for-ddos.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/7299898797661375496'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/7299898797661375496'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2013/10/digital-attack-map-for-ddos.html' title='Digital Attack Map for DDoS'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-967447514186719295</id><published>2013-10-09T08:10:00.003+02:00</published><updated>2013-10-09T08:10:46.576+02:00</updated><title type='text'>&quot;WhatsApp chats should be &#39;considered compromised&#39;, researcher says&quot; @SCMagazine \ available on #cybersecurity APP for iOS &amp; Android</title><content type='html'>&lt;span style=&quot;font-family: Arial, sans-serif;&quot;&gt;&lt;span style=&quot;line-height: 22px;&quot;&gt;&lt;i&gt;&lt;b&gt;See Full article in the Cybersecurity APP&lt;/b&gt;&lt;/i&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: Arial, sans-serif;&quot;&gt;&lt;span style=&quot;line-height: 22px;&quot;&gt;&lt;i&gt;&lt;br /&gt;&lt;/i&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: Arial, sans-serif;&quot;&gt;&lt;span style=&quot;line-height: 22px;&quot;&gt;&lt;i&gt;Oh oh, I know lots of people which will get&amp;nbsp;&lt;/i&gt;&lt;/span&gt;&lt;span style=&quot;line-height: 22px;&quot;&gt;&lt;i&gt;worried after reading this....&lt;/i&gt;&lt;/span&gt;&lt;/span&gt;&lt;i style=&quot;font-family: Arial, sans-serif; line-height: 22px;&quot;&gt;Whatsapp has become the major alternative to SMS....so so popular !!&lt;/i&gt;&lt;br /&gt;&lt;i style=&quot;font-family: Arial, sans-serif; line-height: 22px;&quot;&gt;&lt;br /&gt;&lt;/i&gt;&lt;i style=&quot;font-family: Arial, sans-serif; line-height: 22px;&quot;&gt;The old fashioned SMS is expensive (compared to Whatsapp chat) but should we expect to see people going back ?? &lt;/i&gt;&lt;i style=&quot;font-family: Arial, sans-serif; line-height: 22px;&quot;&gt;Anyway you should not forget the recent Belgacom case...just to remind you that this kind of things may happen also with traditional public communication services&lt;/i&gt;&lt;br /&gt;&lt;span style=&quot;font-family: Arial, sans-serif;&quot;&gt;&lt;span style=&quot;font-size: 14px; line-height: 22px;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;img src=&quot;http://img854.imageshack.us/img854/1534/avhp.png&quot; /&gt;&lt;br /&gt;================ &lt;br /&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;b&gt;The One Stop App for Cyber Security&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;FREE DOWNLOAD&lt;/b&gt;&lt;br /&gt;&lt;a href=&quot;https://itunes.apple.com/it/app/cybersec/id690872881?mt=8&quot; target=&quot;_blank&quot;&gt;iTunes&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;https://play.google.com/store/apps/details?id=com.yopin.cybersecurity&amp;amp;hl=it&quot; target=&quot;_blank&quot;&gt;Google Play&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/967447514186719295/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2013/10/whatsapp-chats-should-be-considered.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/967447514186719295'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/967447514186719295'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2013/10/whatsapp-chats-should-be-considered.html' title='&quot;WhatsApp chats should be &#39;considered compromised&#39;, researcher says&quot; @SCMagazine \ available on #cybersecurity APP for iOS &amp; Android'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-568552419996736453</id><published>2013-10-08T22:42:00.001+02:00</published><updated>2013-10-08T22:42:21.484+02:00</updated><title type='text'>&quot;Hackers target high profile domains&quot; via @Securelist | available on #cybersecurity APP for iOS &amp; Android</title><content type='html'>See full story on the Cybersecurity APP&lt;br&gt;&lt;br&gt;Recently defeacements are using DNS hijacking as vector attack. Using such vector attacks can be very effective and can be very tough for the target to mitigate the effects, since it could take a long time to engage the actors that should help, and it takes time to propagate changes in the DNS chain. Moreover it doens&amp;#39;t matter if the target has adoped significant security measures to protect his website, but which domain register has chosen !&lt;br&gt;&lt;br&gt;Today we&amp;#39;ve registered a few significant target, such as Whatsapp, Avira, AVG</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/568552419996736453/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2013/10/hackers-target-high-profile-domains-via.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/568552419996736453'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/568552419996736453'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2013/10/hackers-target-high-profile-domains-via.html' title='&quot;Hackers target high profile domains&quot; via @Securelist | available on #cybersecurity APP for iOS &amp; Android'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-1600292164470212544</id><published>2013-10-08T14:01:00.001+02:00</published><updated>2013-10-08T14:02:18.320+02:00</updated><title type='text'>A popular mobile ad library used by multiple Android apps poses a severe malware threat | available on #cybersecurity APP for iOS &amp; Android </title><content type='html'>&lt;i style=&quot;background-color: white; font-family: Verdana, Geneva, sans-serif; font-size: 20px; font-weight: bold; line-height: 27px;&quot;&gt;&lt;span style=&quot;font-size: medium;&quot;&gt;Read full article on Cybersecurity APP&lt;/span&gt;&lt;/i&gt;&lt;br /&gt;&lt;i style=&quot;background-color: white; font-family: Verdana, Geneva, sans-serif; font-size: 20px; font-weight: bold; line-height: 27px;&quot;&gt;&lt;span style=&quot;font-size: medium;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/i&gt;&lt;span style=&quot;background-color: white; font-family: Verdana, Geneva, sans-serif; font-size: 20px; line-height: 27px;&quot;&gt;&lt;span style=&quot;font-size: medium;&quot;&gt;I must confess that after reading that more than 200 million affected app had been downloaded, I asked the Cybersecurity APP development team, if they were using the same library that Fireeye detected as a severe threat. Fortunately the answer was that the Cybersecurity APP is only using the official Google Ad library&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;background-color: white; font-family: Verdana, Geneva, sans-serif; font-size: 20px; line-height: 27px;&quot;&gt;&lt;span style=&quot;font-size: medium;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;img src=&quot;http://img854.imageshack.us/img854/1534/avhp.png&quot; /&gt;&lt;br /&gt;================ &lt;br /&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;b&gt;The One Stop App for Cyber Security&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;FREE DOWNLOAD&lt;/b&gt;&lt;br /&gt;&lt;a href=&quot;https://itunes.apple.com/it/app/cybersec/id690872881?mt=8&quot; target=&quot;_blank&quot;&gt;iTunes&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;https://play.google.com/store/apps/details?id=com.yopin.cybersecurity&amp;amp;hl=it&quot; target=&quot;_blank&quot;&gt;Google Play&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/1600292164470212544/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2013/10/a-popular-mobile-ad-library-used-by.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/1600292164470212544'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/1600292164470212544'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2013/10/a-popular-mobile-ad-library-used-by.html' title='A popular mobile ad library used by multiple Android apps poses a severe malware threat | available on #cybersecurity APP for iOS &amp; Android '/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-6205918074399823253</id><published>2013-10-08T10:48:00.004+02:00</published><updated>2013-10-08T10:48:57.354+02:00</updated><title type='text'>UK bankers prep for cyberwar: Will simulate ATTACK on system | available on #cybersecurity APP for iOS &amp; Android</title><content type='html'>&lt;i&gt;&lt;span style=&quot;font-size: large;&quot;&gt;Read full article on Cybersecurity APP&lt;/span&gt;&lt;/i&gt;&lt;br /&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style=&quot;font-size: large;&quot;&gt;I think we must welcome this kind of initiative, not only because well organized simulation can give a great value to the participants, but above all because awareness increases when the &quot;system&quot; moves all together&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img src=&quot;http://img854.imageshack.us/img854/1534/avhp.png&quot; /&gt;&lt;br /&gt;================ &lt;br /&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;b&gt;The One Stop App for Cyber Security&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;FREE DOWNLOAD&lt;/b&gt;&lt;br /&gt;&lt;a href=&quot;https://itunes.apple.com/it/app/cybersec/id690872881?mt=8&quot; target=&quot;_blank&quot;&gt;iTunes&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;https://play.google.com/store/apps/details?id=com.yopin.cybersecurity&amp;amp;hl=it&quot; target=&quot;_blank&quot;&gt;Google Play&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/6205918074399823253/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2013/10/uk-bankers-prep-for-cyberwar-will.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/6205918074399823253'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/6205918074399823253'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2013/10/uk-bankers-prep-for-cyberwar-will.html' title='UK bankers prep for cyberwar: Will simulate ATTACK on system | available on #cybersecurity APP for iOS &amp; Android'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-1765046642645909236</id><published>2013-10-07T15:41:00.001+02:00</published><updated>2013-10-07T15:41:15.741+02:00</updated><title type='text'>&quot;Newly Launched UK National Crime Agency Will Target Cybercrime&quot; via @securitywatch | available on #cybersecurity APP for iOS &amp; Android</title><content type='html'>UK launched today a new agency focused on crime which will have the capabilities to tackle cybercrime. Not everybody among UK politics agrees that this is a step forward, since this agency has been created from rebranding and cutting (budget) other existing agencies, including Police Central e-crime unit (PCeU).&lt;br&gt;By the way PCeU published last week a report which told that they saved UK over 1bln pounds. &lt;br&gt;&lt;br&gt;Full story available on Cybersecurity APP</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/1765046642645909236/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2013/10/newly-launched-uk-national-crime-agency.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/1765046642645909236'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/1765046642645909236'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2013/10/newly-launched-uk-national-crime-agency.html' title='&quot;Newly Launched UK National Crime Agency Will Target Cybercrime&quot; via @securitywatch | available on #cybersecurity APP for iOS &amp; Android'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-4785340719728983260</id><published>2013-10-07T13:57:00.003+02:00</published><updated>2013-10-07T14:01:05.394+02:00</updated><title type='text'>&quot;Are apps in the Android and Apple markets really secure?&quot; via @gcluley | avaialble on #cybersecurity APP for iOS &amp; Android</title><content type='html'>&lt;span style=&quot;font-size: large;&quot;&gt;The well known Graham Culey, included in the panel of the opinion leaders of the Cybersecurity APP has released an article regarding the security of mobile marketplaces.&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;br /&gt;&lt;i&gt;This is pratically a new area where many reflections are necessary, and I want to add myself a couple of considerations.&amp;nbsp;&lt;/i&gt;&lt;/span&gt;&lt;br /&gt;&lt;i&gt;&lt;span style=&quot;font-size: large;&quot;&gt;First of all I&#39;m wondering if it is possibile to consider Google Play marketplace as much safe as Apple Store, since the app review process takes almost 1/10 of the time&lt;/span&gt;&lt;/i&gt;&lt;br /&gt;&lt;i&gt;&lt;span style=&quot;font-size: large;&quot;&gt;Another thing I really consider not good for anyone, it is that is very easy to download an app code from both marketplaces. I don&#39;t think it should be allowed&lt;/span&gt;&lt;/i&gt;&lt;br /&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style=&quot;font-size: large;&quot;&gt;See the full article on the Cybersecurity APP&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img src=&quot;http://img854.imageshack.us/img854/1534/avhp.png&quot; /&gt;&lt;br /&gt;================ &lt;br /&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;b&gt;The One Stop App for Cyber Security&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;FREE DOWNLOAD&lt;/b&gt;&lt;br /&gt;&lt;a href=&quot;https://itunes.apple.com/it/app/cybersec/id690872881?mt=8&quot; target=&quot;_blank&quot;&gt;iTunes&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;https://play.google.com/store/apps/details?id=com.yopin.cybersecurity&amp;amp;hl=it&quot; target=&quot;_blank&quot;&gt;Google Play&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/4785340719728983260/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2013/10/are-apps-in-android-and-apple-markets.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/4785340719728983260'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/4785340719728983260'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2013/10/are-apps-in-android-and-apple-markets.html' title='&quot;Are apps in the Android and Apple markets really secure?&quot; via @gcluley | avaialble on #cybersecurity APP for iOS &amp; Android'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-935223681043532477</id><published>2013-10-07T10:22:00.001+02:00</published><updated>2013-10-07T13:58:26.919+02:00</updated><title type='text'>Adobe hack all around the news </title><content type='html'>&lt;span style=&quot;font-size: large;&quot;&gt;Lots of press about the Adobe hack in the Cybersecurity App &lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style=&quot;font-size: large;&quot;&gt;3miion customers data are a big news itself, but nothing if we think that source code has been stolen, and hackers could use it to look for 0day vulnerabilities&lt;/span&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/935223681043532477/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2013/10/adobe-hack-all-around-news.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/935223681043532477'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/935223681043532477'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2013/10/adobe-hack-all-around-news.html' title='Adobe hack all around the news '/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-2785726849687294719</id><published>2013-10-07T10:03:00.001+02:00</published><updated>2013-10-07T10:03:19.633+02:00</updated><title type='text'>Adobe customer data breached via @nakedsecurity | available on #cybersecurity APP for iOS &amp; Android</title><content type='html'>&lt;br /&gt;&lt;div class=&quot;text parbase section&quot; style=&quot;border: 0px; font-family: inherit; font-size: 14px; font-style: inherit; margin: 0px 0px 13px; outline: 0px; padding: 0px; zoom: 1;&quot;&gt;&lt;div class=&quot;text&quot; style=&quot;border: 0px; font-family: inherit; font-style: inherit; margin: 0px; outline: 0px; padding: 0px;&quot;&gt;&lt;div style=&quot;border: 0px; font-family: inherit; font-style: inherit; line-height: 18px; margin-bottom: 8px; margin-right: 100px; margin-top: 2px; outline: 0px; padding: 0px;&quot;&gt;&lt;strong style=&quot;border: 0px; font-family: inherit; font-style: inherit; margin: 0px; outline: 0px; padding: 0px;&quot;&gt;See full article on Cybersecurity APP&lt;/strong&gt;&lt;/div&gt;&lt;div style=&quot;border: 0px; font-family: inherit; font-style: inherit; line-height: 18px; margin-bottom: 8px; margin-right: 100px; margin-top: 2px; outline: 0px; padding: 0px;&quot;&gt;&lt;strong style=&quot;border: 0px; font-family: inherit; font-style: inherit; margin: 0px; outline: 0px; padding: 0px;&quot;&gt;&lt;br /&gt;&lt;/strong&gt;&lt;/div&gt;&lt;div style=&quot;border: 0px; font-family: inherit; font-style: inherit; line-height: 18px; margin-bottom: 8px; margin-right: 100px; margin-top: 2px; outline: 0px; padding: 0px;&quot;&gt;&lt;strong style=&quot;border: 0px; font-family: inherit; font-style: inherit; margin: 0px; outline: 0px; padding: 0px;&quot;&gt;&lt;span style=&quot;background-color: white; color: #333333; font-family: arial, helvetica, sans-serif; font-size: 15px; font-weight: normal; line-height: normal;&quot;&gt;&quot;Today, it&#39;s Adobe&#39;s turn to attend confession.&quot;&lt;/span&gt;&lt;/strong&gt;&lt;/div&gt;&lt;div style=&quot;border: 0px; font-family: inherit; font-style: inherit; line-height: 18px; margin-bottom: 8px; margin-right: 100px; margin-top: 2px; outline: 0px; padding: 0px;&quot;&gt;&lt;strong style=&quot;border: 0px; font-family: inherit; font-style: inherit; margin: 0px; outline: 0px; padding: 0px;&quot;&gt;&lt;br /&gt;&lt;/strong&gt;&lt;/div&gt;&lt;div style=&quot;border: 0px; font-family: inherit; font-style: inherit; line-height: 18px; margin-bottom: 8px; margin-right: 100px; margin-top: 2px; outline: 0px; padding: 0px;&quot;&gt;&lt;strong style=&quot;border: 0px; font-family: inherit; font-style: inherit; margin: 0px; outline: 0px; padding: 0px;&quot;&gt;Subject: Important Customer Security Alert.&lt;/strong&gt;&lt;/div&gt;&lt;div style=&quot;border: 0px; font-family: inherit; font-style: inherit; line-height: 18px; margin-bottom: 8px; margin-right: 100px; margin-top: 2px; outline: 0px; padding: 0px;&quot;&gt;We recently discovered that attackers illegally entered our network. The attackers may have obtained access to your Adobe ID and encrypted password. We currently have no indication that there has been unauthorized activity on your account. If you have placed an order with us, information such as your name, encrypted payment card number, and card expiration date also may have been accessed. We do not believe any decrypted card numbers were removed from our systems.&lt;/div&gt;&lt;div style=&quot;border: 0px; font-family: inherit; font-style: inherit; line-height: 18px; margin-bottom: 8px; margin-right: 100px; margin-top: 2px; outline: 0px; padding: 0px;&quot;&gt;To prevent unauthorized access to your account, we have reset your password. Please visit&amp;nbsp;&lt;a href=&quot;http://www.adobe.com/go/passwordreset&quot; style=&quot;border: 0px; color: #3399cc; cursor: pointer; font-family: inherit; font-style: inherit; margin: 0px; outline: 0px; padding: 0px; text-decoration: none;&quot; target=&quot;_blank&quot;&gt;www.adobe.com/go/passwordreset&lt;/a&gt;&amp;nbsp;to create a new password. We recommend that you also change your password on any website where you use the same user ID or password. As always, please be cautious when responding to any email seeking your personal information.&lt;/div&gt;&lt;div style=&quot;border: 0px; font-family: inherit; font-style: inherit; line-height: 18px; margin-bottom: 8px; margin-right: 100px; margin-top: 2px; outline: 0px; padding: 0px;&quot;&gt;We also recommend that you monitor your account for incidents of fraud and identity theft, including regularly reviewing your account statements and monitoring credit reports. If you discover any suspicious or unusual activity on your account or suspect identity theft or fraud, you should report it immediately to your bank. You will be receiving a letter from us shortly that provides more information on this matter.&lt;/div&gt;&lt;div style=&quot;border: 0px; font-family: inherit; font-style: inherit; line-height: 18px; margin-bottom: 8px; margin-right: 100px; margin-top: 2px; outline: 0px; padding: 0px;&quot;&gt;We deeply regret any inconvenience this may cause you. We value the trust of our customers and we will work aggressively to prevent these types of events from occurring in the future. If you have questions, you can learn more by visiting our Customer Alert page, which you will find&amp;nbsp;&lt;a href=&quot;http://www.adobe.com/go/customer_alert&quot; style=&quot;border: 0px; color: #3399cc; cursor: pointer; font-family: inherit; font-style: inherit; margin: 0px; outline: 0px; padding: 0px; text-decoration: none;&quot; target=&quot;_blank&quot;&gt;here&lt;/a&gt;.&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class=&quot;parbase compbase section header&quot; style=&quot;border: 0px; font-family: inherit; font-size: 14px; font-style: inherit; margin: 0px 0px 13px; outline: 0px; padding: 0px; zoom: 1;&quot;&gt;&lt;br /&gt;&lt;a href=&quot;&quot; name=&quot;main-pars_header_30&quot; style=&quot;background-color: white; border: 0px; color: #3399cc; cursor: pointer; font-family: myriad-pro-1, myriad-pro-2, Helvetica, Arial, sans-serif; line-height: 19px; margin: 0px; outline: 0px; padding: 0px;&quot;&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;&lt;img src=&quot;http://img854.imageshack.us/img854/1534/avhp.png&quot; /&gt;&lt;br /&gt;================ &lt;br /&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;b&gt;The One Stop App for Cyber Security&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;FREE DOWNLOAD&lt;/b&gt;&lt;br /&gt;&lt;a href=&quot;https://itunes.apple.com/it/app/cybersec/id690872881?mt=8&quot; target=&quot;_blank&quot;&gt;iTunes&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;https://play.google.com/store/apps/details?id=com.yopin.cybersecurity&amp;amp;hl=it&quot; target=&quot;_blank&quot;&gt;Google Play&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/2785726849687294719/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2013/10/adobe-customer-data-breached-via.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/2785726849687294719'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/2785726849687294719'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2013/10/adobe-customer-data-breached-via.html' title='Adobe customer data breached via @nakedsecurity | available on #cybersecurity APP for iOS &amp; Android'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-6788001138701794614</id><published>2013-10-07T09:45:00.000+02:00</published><updated>2013-10-07T13:58:56.458+02:00</updated><title type='text'>&quot;16-30 September 2013 Cyber Attacks Timeline&quot; via @paulsparrow | Available in #cybersecurity APP for iOS &amp; Android </title><content type='html'>&lt;span style=&quot;font-size: large;&quot;&gt;See full article on Cybersecurity APP&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;div&gt;&lt;span style=&quot;background-color: white; color: #333333; font-family: &#39;Helvetica Neue&#39;, Arial, sans-serif; font-size: large; line-height: 18px; white-space: pre-wrap;&quot;&gt;As always &lt;a href=&quot;http://hachmageddon.com/&quot;&gt;Hachmageddon&lt;/a&gt; gives great insight about threat landscape&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span style=&quot;background-color: white; color: #333333; font-family: &#39;Helvetica Neue&#39;, Arial, sans-serif; font-size: large; line-height: 18px; white-space: pre-wrap;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;span style=&quot;background-color: white; color: #333333; font-family: &#39;Helvetica Neue&#39;, Arial, sans-serif; line-height: 18px; white-space: pre-wrap;&quot;&gt;&quot;&lt;/span&gt;&lt;span style=&quot;background-color: white; color: #404040; font-family: sans-serif; line-height: 23px;&quot;&gt;From an information security perspective, the second half of September has been characterized by the discovery of three operations related to targeted attacks against different countries and sectors. Two in particular, DeputyDog and IceFrog, targeting have a common denominator: Japan.&quot;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;&lt;img src=&quot;http://img854.imageshack.us/img854/1534/avhp.png&quot; /&gt;&lt;br /&gt;================ &lt;br /&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;b&gt;The One Stop App for Cyber Security&lt;/b&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;FREE DOWNLOAD&lt;/b&gt;&lt;br /&gt;&lt;a href=&quot;https://itunes.apple.com/it/app/cybersec/id690872881?mt=8&quot; target=&quot;_blank&quot;&gt;iTunes&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;https://play.google.com/store/apps/details?id=com.yopin.cybersecurity&amp;amp;hl=it&quot; target=&quot;_blank&quot;&gt;Google Play&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/6788001138701794614/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2013/10/16-30-september-2013-cyber-attacks_4109.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/6788001138701794614'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/6788001138701794614'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2013/10/16-30-september-2013-cyber-attacks_4109.html' title='&quot;16-30 September 2013 Cyber Attacks Timeline&quot; via @paulsparrow | Available in #cybersecurity APP for iOS &amp;amp; Android '/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-3451821061346283838</id><published>2013-09-21T12:17:00.000+02:00</published><updated>2013-09-21T12:17:01.420+02:00</updated><title type='text'>The One Stop App for Cybersecurity</title><content type='html'>&lt;br /&gt;&lt;div class=&quot;MsoNormal&quot; style=&quot;background-color: white; font-family: Arial, Tahoma, Helvetica, FreeSans, sans-serif; font-size: 13px; line-height: 18px;&quot;&gt;&lt;span style=&quot;font-family: Helvetica; font-size: 16pt;&quot;&gt;Cybersecurity professionals are faced with a wide range of possibilities and&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Helvetica; font-size: 16pt;&quot;&gt;sources to keep themselves updated with relevant information and linked&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Helvetica; font-size: 16pt;&quot;&gt;together with respected colleagues. This includes, but is not limited to,&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Helvetica; font-size: 16pt;&quot;&gt;following blogs of opinion leaders, discussions among interest groups on&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Helvetica; font-size: 16pt;&quot;&gt;social networks, monitoring competence centers of vendors and respected&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Helvetica; font-size: 16pt;&quot;&gt;independents, and keeping up to date on technology vulnerability and threat&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Helvetica; font-size: 16pt;&quot;&gt;landscape news.&lt;/span&gt;&lt;/div&gt;&lt;div class=&quot;MsoNormal&quot; style=&quot;background-color: white; font-family: Arial, Tahoma, Helvetica, FreeSans, sans-serif; font-size: 13px; line-height: 18px;&quot;&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class=&quot;MsoNormal&quot; style=&quot;background-color: white; font-family: Arial, Tahoma, Helvetica, FreeSans, sans-serif; font-size: 13px; line-height: 18px;&quot;&gt;&lt;span style=&quot;font-family: Helvetica; font-size: 16pt;&quot;&gt;Since keeping plugged in to all of these individual sources regularly can be&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Helvetica; font-size: 16pt;&quot;&gt;a challenge, it&#39;s now available a free App to make it a bit easier.&lt;/span&gt;&lt;/div&gt;&lt;div class=&quot;MsoNormal&quot; style=&quot;background-color: white; font-family: Arial, Tahoma, Helvetica, FreeSans, sans-serif; font-size: 13px; line-height: 18px;&quot;&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class=&quot;MsoNormal&quot; style=&quot;background-color: white; font-family: Arial, Tahoma, Helvetica, FreeSans, sans-serif; font-size: 13px; line-height: 18px;&quot;&gt;&lt;span style=&quot;font-family: Helvetica; font-size: 16pt;&quot;&gt;I&#39;m sure you&#39;ll also appreciate how convenient and enjoyable it can&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Helvetica; font-size: 16pt;&quot;&gt;be to receive relevant information about cybersecurity, spread your opinion,&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Helvetica; font-size: 16pt;&quot;&gt;and keep in touch with the cybsersecurity professional community.&lt;/span&gt;&lt;/div&gt;&lt;div class=&quot;MsoNormal&quot; style=&quot;background-color: white; font-family: Arial, Tahoma, Helvetica, FreeSans, sans-serif; font-size: 13px; line-height: 18px;&quot;&gt;&lt;span style=&quot;font-family: Helvetica; font-size: 16pt;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;table align=&quot;center&quot; cellpadding=&quot;0&quot; cellspacing=&quot;0&quot; class=&quot;tr-caption-container&quot; style=&quot;float: left; margin-right: 1em; text-align: left;&quot;&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;margin-left: auto; margin-right: auto;&quot;&gt;&lt;a href=&quot;https://itunes.apple.com/us/app/cybersec/id690872881?l=it&amp;amp;ls=1&amp;amp;mt=8&quot; target=&quot;_blank&quot;&gt;&lt;img border=&quot;0&quot; height=&quot;200&quot; src=&quot;http://1.bp.blogspot.com/-jLutRviso2E/UhN0g_Bs-qI/AAAAAAAAAAM/SmojsUlxUyI/s200/timthumb.php.jpeg&quot; width=&quot;200&quot; /&gt;&lt;/a&gt;&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td class=&quot;tr-caption&quot; style=&quot;font-size: 13px; text-align: center;&quot;&gt;&lt;a href=&quot;https://itunes.apple.com/us/app/cybersec/id690872881?l=it&amp;amp;ls=1&amp;amp;mt=8&quot; target=&quot;_blank&quot;&gt;Download from Apple Store&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;table align=&quot;center&quot; cellpadding=&quot;0&quot; cellspacing=&quot;0&quot; class=&quot;tr-caption-container&quot; style=&quot;float: left; margin-right: 1em; text-align: left;&quot;&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style=&quot;text-align: center;&quot;&gt;&lt;span style=&quot;margin-left: auto; margin-right: auto;&quot;&gt;&lt;a href=&quot;https://play.google.com/store/apps/details?id=com.yopin.cybersecurity&amp;amp;hl=it&quot; target=&quot;_blank&quot;&gt;&lt;img border=&quot;0&quot; height=&quot;200&quot; src=&quot;http://2.bp.blogspot.com/-7tookM_8G30/UhN0i9mucwI/AAAAAAAAAAU/xTvSuKo60_c/s200/timthumb.php.png&quot; width=&quot;200&quot; /&gt;&lt;/a&gt;&lt;/span&gt;&lt;/td&gt;&lt;/tr&gt;&lt;tr&gt;&lt;td class=&quot;tr-caption&quot; style=&quot;font-size: 13px; text-align: center;&quot;&gt;&lt;a href=&quot;https://play.google.com/store/apps/details?id=com.yopin.cybersecurity&amp;amp;hl=it&quot; target=&quot;_blank&quot;&gt;Download from Google Play&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/3451821061346283838/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2013/09/the-one-stop-app-for-cybersecurity.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/3451821061346283838'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/3451821061346283838'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2013/09/the-one-stop-app-for-cybersecurity.html' title='The One Stop App for Cybersecurity'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-jLutRviso2E/UhN0g_Bs-qI/AAAAAAAAAAM/SmojsUlxUyI/s72-c/timthumb.php.jpeg" height="72" width="72"/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-6922747043182542120</id><published>2012-06-16T13:43:00.004+02:00</published><updated>2012-06-16T13:43:52.403+02:00</updated><title type='text'>Apple migliorerà la gestione della privacy da parte delle applicazioni di terze parti</title><content type='html'>&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Fa piacere vedere che qualche risultato arriverà presto sulla scia delle innumerevoli proteste e segnalazioni per i rischi che comportano talune applicazioni nel trattamento dei nostri dati personali.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;I primi mesi dell&#39;anno erano stati caratterizzati da parecchi episodi con significativo risalto mediatico che avevano posto in evidenza come, in modo non del tutto consapevole all&#39;utente, parecchie applicazioni facessero un uso indiscriminato di parecchie informazioni personali riguardanti la localizzazione, i contatti, il calendario e perfino i messaggi di testo (vedi &lt;a href=&quot;http://www.marcobavazzano.com/2012/02/facebook-spying-text-messages-will.html&quot;&gt;qui&lt;/a&gt;).&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;La buona notizia riguarda qualche anticipazione relativa al nuovo sistema operativo dei dispositivi Apple (iOS versione 6) prevista per il prossimo autunno.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Nella descrizione delle funzionalità del nuovo sistema, è riportato infatti che (traduzione a mia cura):&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;background-color: white; color: #041427; font-style: italic;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&quot;In aggiunta ai dati di localizzazione il sistema richiede ora il permesso dell&#39;utente prima di permettere ad applicazioni di terze parti di accedere a certi dati dell&#39;utente, tra cui:&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;background-color: white; color: #041427; font-style: italic;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;background-color: white; color: #041427; font-style: italic;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;- contatti&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;background-color: white; color: #041427; font-style: italic;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;- calendario&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;background-color: white; color: #041427; font-style: italic;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;- promemoria&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;background-color: white; color: #041427; font-style: italic;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;- fotografie&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;color: #041427; font-family: Verdana, sans-serif;&quot;&gt;&lt;i&gt;&lt;br /&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;background-color: white; color: #041427; font-style: italic;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;La tua applicazione ha bisogno quindi di essere predisposta a gestire il tuo rifiuto a consentire l&#39;accesso della stessa ai dati riguardanti i contatti, il calendario e i promemoria&quot;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;background-color: white; color: #041427; font-style: italic;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;background-color: white; color: #041427;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Proprio il contrario di quanto accaduto a me l&#39;altro giorno, che rifiutando l&#39;accesso ai miei dati personali ad un&#39;applicazione riguardante gli Europei di Calcio 2012 mi vedo tutt&#39;ora nell&#39;impossibilità di utilizzarla, perchè l&#39;applicazione non mi abilita neppure le funzionalità basi.&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;background-color: white; color: #041427;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;span style=&quot;background-color: white; color: #041427; font-style: italic;&quot;&gt;Riferimento:&amp;nbsp;&lt;/span&gt;&lt;a href=&quot;http://www.macrumors.com/2012/06/14/apple-requires-user-permission-before-apps-can-access-personal-data-in-ios-6/&quot;&gt;Apple Requires User Permission Before Apps Can Access Personal Data in iOS 6&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;span style=&quot;background-color: white; color: #041427; font-family: Verdana, Arial, sans-serif; font-size: 13px; font-style: italic;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/6922747043182542120/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2012/06/apple-migliorera-la-gestione-della.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/6922747043182542120'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/6922747043182542120'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2012/06/apple-migliorera-la-gestione-della.html' title='Apple migliorerà la gestione della privacy da parte delle applicazioni di terze parti'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-3644581923424026462</id><published>2012-06-09T16:28:00.001+02:00</published><updated>2012-06-10T20:34:18.058+02:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="Anonymous"/><title type='text'>Anonymous attacca il sito di Beppe Grillo e nascono dissensi all&#39;interno della comunità</title><content type='html'>&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Alla lista del siti attaccati da Anonymous si aggiunge quello di Beppe Grillo, ma stavolta nascono disaccordi all&#39;interno della stessa comunità di hactivist.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Sono infatti molti i pareri contrari a questa iniziativa espressi da parte di appartenenti ad Anonymous Italia, riconducibili a 2 posizioni principali:&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;- molti pensano che l&#39;attacco sia stato un errore perchè il codice d&#39;onore di Anonymous considera fondamentale la libertà di informazione, e quindi i siti dei media o blog non dovrebbero essere attaccati&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;- molti altri invece si dissociano dall&#39;azione in quanto ritengono che Grillo&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;andrebbe rispettato dalla Comunità di Anonymous, dal momento&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;che attraverso il suo movimento sta scuotendo le istituzioni politiche su idee anche associabili a quelle del loro movimento&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Da notare che Beppe Grillo sul proprio sito subito dopo l&#39;attacco ha pubblicato il seguente messaggio &quot;«L&#39;attacco contro www.beppegrillo.it NON è opera di Anonymous. Chiedo aiuto alla Rete, e ovviamente anche ad Anonymous, per identificare il gruppo che ha bloccato il sito».&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Adesso del messaggio non c&#39;è più traccia, forse perchè Anonymous ha confermato sul suo blog ufficiale di essere effettivamente l&#39;autore...o meglio qualcuno che aderisce a questa Community e che pertanto può utilizzarne i mezzi. Infatti bisogna tenere presente che Anonymous è una comunità in cui ognuno può esprimere il proprio dissenso purchè in linea con i principi generali del gruppo, e non un&#39;organizzazione con una struttura verticistica che valuta e approva le azioni da effettuare a nome del gruppo stesso.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Riferimenti&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Post e commenti sul blog ufficiale di Anonymous Italia &quot;&lt;/span&gt;&lt;a href=&quot;http://anon-news.blogspot.it/2012/06/italy-beppegrillo-dovete-sapere-anche.html&quot; style=&quot;font-family: Verdana, sans-serif;&quot;&gt;beppegrillo dovete sapere anche che...&lt;/a&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&quot;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;a href=&quot;http://anon-news.blogspot.it/2012/06/italy-beppegrillo-dovete-sapere-anche.html#comment-form&quot;&gt;&lt;/a&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/3644581923424026462/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2012/06/anonymous-attacca-il-sito-di-beppe.html#comment-form' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/3644581923424026462'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/3644581923424026462'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2012/06/anonymous-attacca-il-sito-di-beppe.html' title='Anonymous attacca il sito di Beppe Grillo e nascono dissensi all&#39;interno della comunità'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-4355766202255422443</id><published>2012-06-08T12:14:00.002+02:00</published><updated>2012-06-08T12:14:20.490+02:00</updated><title type='text'>Il Garante della Privacy da il via libera a nuovi strumenti di profilazione. Un ulteriore rischio per la nostra privacy ?</title><content type='html'>&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Le aziende che offrono prodotti e servizi al mercato, hanno cominciato molto tempo fa a sviluppare l&#39;ambito della &quot;profilazione&quot; dei clienti, e nelle grandi imprese ci sono proprio delle organizzazioni specifiche ad occuparsene. Infatti, tanto più ricco è il database delle informazioni associate ad un singolo cliente, tanto maggiore è la possibilità di comprenderne i bisogni e definire un&#39;offerta integrativa di suo interesse.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;L&#39;evoluzione tecnologica, e quindi in particolare l&#39;attivazione di canali di vendita o marketing su Internet, consente potenzialmente di rendere questa attività di profilazione molto intrusiva della vita privata di una persona. Basti pensare all&#39;utilizzo dei cosiddetti &quot;cookie&quot; durante la navigazione su una pagina Web che possono permettere al titolare del sito di raccogliere informazioni dettagliate sulle singole operazioni effettuate. L&#39;interesse dell&#39;azienda venditrice dovrebbe essere solo limitato ad identificare i potenziali interessi del visitatore, ed offrire successivamente una pubblicità mirata o una pagina personalizzata che pone in evidenza le notizie/informazioni che dovrebbero essere di maggior interesse per lui, ma anche questo per alcuni potrebbe essere troppo al di la della personale percezione di privacy.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Per questo motivo sono state definite a livello comunitario apposite normative riguardanti per esempio la somministrazione di &quot;cookie&quot;, che prevedono la segnalazione da parte del gestore del sito che vengono utilizzati dei cookie per il tracciamento, e consentono il cosiddetto &quot;opt-out&quot; da parte dell&#39;utente, ovvero la modifica delle impostazioni riguardanti i cookie durante la navigazione di un sito. Nel Regno Unito questa normativa è diventata operativa proprio nelle scorse settimane.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Con l&#39;evoluzione poi delle applicazioni per smarphone e tablet, i sistemi per la raccolta di informazioni personali e di utilizzo dei servizi si stanno moltiplicando sempre più. Talvolta gli utenti di un&#39;applicazione non hanno infatti altra scelta che autorizzare il trattamento di informazioni personali da parte di un&#39;App onde attivarne il funzionamento sul proprio smartphone, pena l&#39;impossibilità di usare l&#39;applicazione stessa. &lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;A me è successo l&#39;altro giorno dopo aver scaricato dal Blackberry Store un&#39;applicazione che permette di seguire i campionati Europei di Calcio.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Riassumendo, da un lato abbiamo un forte interesse da parte delle aziende ad utilizzare strumenti di profilazione, dall&#39;altra abbiamo potenziali problemi di privacy. E&#39; quindi&amp;nbsp;fondamentale l&#39;interesse del Garante della Privacy rispetto a questo tema. La notizia che volevo riferire riguarda &amp;nbsp;la concessione effettuata dalla nostrà Autorità nei confronti degli operatori di telefonia rispetto a nuovi strumenti di profilazione. E&#39; bene rimanere informati di questi aspetti e a livello di associazione di utenti o di professionisti dell&#39;ambito, richiedere fortemente all&#39;Autorità di avanzare altresì anche richieste alle aziende di ulteriori misure di sicurezza per la protezione dei nostri dati. Inoltre non è meno importante un loro impegno su attività di controllo, perchè purtroppo nel passato certi progressi li abbiamo visti solo quando l&#39;Autorità Garante è scesa in campo a condurre ispezioni puntuali&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;i&gt;&lt;br /&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;i&gt;Riferimento:&amp;nbsp;&lt;a href=&quot;http://www.helpconsumatori.it/?p=47037&quot; target=&quot;_blank&quot;&gt;Marketing, Garante Privacy: via libera a nuovi strumenti di profilazione&lt;/a&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/4355766202255422443/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2012/06/il-garante-della-privacy-da-il-via.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/4355766202255422443'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/4355766202255422443'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2012/06/il-garante-della-privacy-da-il-via.html' title='Il Garante della Privacy da il via libera a nuovi strumenti di profilazione. Un ulteriore rischio per la nostra privacy ?'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-5516570507091383214</id><published>2012-05-14T22:08:00.001+02:00</published><updated>2012-05-14T22:10:52.116+02:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="sicurezza bambini pornografia"/><title type='text'>Proteggere i bambini dai contenuti pornografici su Internet</title><content type='html'>&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;div class=&quot;separator&quot; style=&quot;clear: both; text-align: center;&quot;&gt;&lt;a href=&quot;http://2.bp.blogspot.com/-xznjy6LbbWU/T7DONh09gVI/AAAAAAAAAR8/11BiG3avX1k/s1600/children_safe.jpg&quot; imageanchor=&quot;1&quot; style=&quot;margin-left: 1em; margin-right: 1em;&quot;&gt;&lt;img border=&quot;0&quot; height=&quot;320&quot; src=&quot;http://2.bp.blogspot.com/-xznjy6LbbWU/T7DONh09gVI/AAAAAAAAAR8/11BiG3avX1k/s320/children_safe.jpg&quot; width=&quot;296&quot; /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Alcuni mesi fa avevo dedicato un post alla notizia degli investimenti stanziati dal Regno Unito per implementare una serie di azioni concrete aventi come finalità la sicurezza dei servizi online per le imprese ed i cittadini (vedi &lt;a href=&quot;http://www.marcobavazzano.com/2011/11/uk-cybersecurity-strategy.html&quot; target=&quot;_blank&quot;&gt;qui&lt;/a&gt;). In quella occasione mi auguravo di vedere presto anche nel nostro Paese la definizione di un Piano di Sicurezza Nazionale comprendente il piano strategico degli interventi per gli obiettivi di sicurezza ed il funzionamento dei servizi internet. Purtroppo oggi tale Piano non ha ancora visto la luce, ne ci sono segnali confortanti che possa accadere entro breve tempo.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;E allora in assenza di notizie da questo fronte, mi trovo a commentare una bella iniziativa in questo ambito di un altro Paese, ed in particolare ancora una volta del Regno Unito. E&#39; evidente che questo Paese ha davvero una marcia in più sui temi della digitalizzazione dei servizi, e che capisce bene anche quali sono i nodi importanti da affrontare per garantire che il passaggio del Paese alla nuova era non cambi le regole di civiltà che caratterizzano la società attuale.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;E difatti il Governo ha aperto una consultazione molto importante nell&#39;ambito delle iniziative finalizzate a rendere confidenti i cittadini che il Regno Unito è un Paese in cui tutti possono far uso dei servizi online, certi che sono state adottate le misure di protezione più adeguate contro le minacce presenti.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;La consultazione a cui mi riferisco riguarda i fornitori dei servizi di connettività (telco e ISP) per la protezione dei bambini dai contenuti pornografici su Internet.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Infatti è diventato sempre più facile per i bambini accedere anche involontariamente a contenuti pornografici dai propri computer o smartphone, ed il governo britannico vuole trovare una soluzione anche drastica. Il Primo Ministro Cameron ha dichiarato &quot;&lt;span style=&quot;background-color: white; color: #333333; line-height: 18px;&quot;&gt;&quot;I want to fully explore every option that might help make children safer - including whether internet filters should be switched on as the default, so that adult content is blocked unless you decide otherwise&quot; (&lt;i&gt;&lt;b&gt;voglio esplorare ogni possibile opzione che potrebbe aiutare a rendere i bambini sicuri, incluso eventualmente la presenza predefinita di filtri su internet &amp;nbsp;in grado di bloccare i contenuti per adulti a meno che non si decida esplicitamente in modo diverso&lt;/b&gt;&lt;/i&gt;)&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;background-color: white; color: #333333; line-height: 18px;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;span style=&quot;background-color: white; color: #333333; line-height: 18px;&quot;&gt;Il Segretario alla Cultura&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;background-color: white; color: #333333; line-height: 18px;&quot;&gt;Harriet Harman ha aggiunto &quot;keeping children safe online is a real problem and a concern for millions of parents ...&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;background-color: white; color: #333333; line-height: 18px;&quot;&gt;We need to work closely with the industry to develop blocking technology which is easy to use and effective so that parents have the control they need to protect their children (&lt;i&gt;&lt;b&gt;mantenere i bambini sicuri quando utilizzano i servizi internet è un problema reale ed una preoccupazione per milioni di genitori ... Abbiamo bisogno di lavorare insieme all&#39;industria per sviluppare delle tecnologie di filtraggio che siano facili da utilizzare ed efficaci, in modo che i genitori abbiano il controllo di cui hanno bisogno per proteggere i loro bambini&lt;/b&gt;&lt;/i&gt;).&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;span style=&quot;background-color: white; color: #333333; line-height: 18px;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;div style=&quot;text-align: -webkit-auto;&quot;&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;color: #333333; font-family: Verdana, sans-serif; line-height: 16px;&quot;&gt;In Italia sul tema della protezione dei minori siamo stati nel passato precursori, mediante un&#39;eccellente iniziativa quale la creazione del Centro Nazionale Anti Pedopornografia da parte della Polizia Postale e delle Comunicazioni. Oggi, stante l&#39;evoluzione degli scenari tecnologici e delle minacce, credo sia opportuno avviare anche da noi ulteriori riflessioni&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #333333; font-family: Verdana, sans-serif; line-height: 16px;&quot;&gt;per mantenere la giusta attenzione ai rischi presenti in questo ambito.&lt;/span&gt;&lt;span style=&quot;color: #333333; font-family: Verdana, sans-serif; line-height: 16px;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;color: #333333; font-family: Verdana, sans-serif; line-height: 16px;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;color: #333333; font-family: Verdana, sans-serif; line-height: 16px;&quot;&gt;Le tecnologie attualmente disponibili sono senz&#39;altro in grado di consentire la tipologia di filtraggio auspicato dal Governo del Regno Unito. Non solo, le stesse tecnologie permetterebero di&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #333333; font-family: Verdana, sans-serif; line-height: 16px;&quot;&gt;realizzare in modo molto più efficace l&#39;oscuramento dei siti pedopornografici che oggi è attuato dagli internet service provider mediante una semplice&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;color: #333333; font-family: Verdana, sans-serif; line-height: 16px;&quot;&gt;modifica di risoluzione dell&#39;indirizzo sui server DNS.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;color: #333333; font-family: Verdana, sans-serif; line-height: 16px;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;color: #333333; font-family: Verdana, sans-serif; line-height: 16px;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;color: #333333; font-family: Verdana, sans-serif;&quot;&gt;&lt;span style=&quot;line-height: 16px;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/5516570507091383214/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2012/05/proteggere-i-bambini-dai-contenuti.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/5516570507091383214'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/5516570507091383214'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2012/05/proteggere-i-bambini-dai-contenuti.html' title='Proteggere i bambini dai contenuti pornografici su Internet'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-xznjy6LbbWU/T7DONh09gVI/AAAAAAAAAR8/11BiG3avX1k/s72-c/children_safe.jpg" height="72" width="72"/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-3585214647363628734</id><published>2012-05-11T14:19:00.000+02:00</published><updated>2012-05-11T14:19:10.451+02:00</updated><title type='text'>Vi racconto io i dati contenuti nel ISTR Symantec (parte 2)</title><content type='html'>&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Seconda parte del mio sintetico racconto sui fatti di rilievo illustrati nel Internet Security Threat Report Volume 17 di Symantec (relativo all&#39;anno 2011)&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;div class=&quot;separator&quot; style=&quot;clear: both; text-align: center;&quot;&gt;&lt;a href=&quot;http://3.bp.blogspot.com/-N2sPIkC94v4/T6rAXHdE5xI/AAAAAAAAARw/756isZ4M5S8/s1600/ISTR2.jpg&quot; imageanchor=&quot;1&quot; style=&quot;margin-left: 1em; margin-right: 1em;&quot;&gt;&lt;img border=&quot;0&quot; height=&quot;640&quot; src=&quot;http://3.bp.blogspot.com/-N2sPIkC94v4/T6rAXHdE5xI/AAAAAAAAARw/756isZ4M5S8/s640/ISTR2.jpg&quot; width=&quot;408&quot; /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;- Targeted attacks: nel 2011 sono aumentati e hanno impattato maggiormente le piccole medie aziende !&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;La crescita è stata progressiva durante l&#39;anno con una media di 94 attacchi al giorno alla fine del mese di Novembre.&amp;nbsp;I dati raccolti mostrano che i cosiddetti &quot;targeted attacks&quot; non sono più limitati alle sole aziende enterprise ed al personale di livello executive. Al contrario il report evidenza come il 50% degli attacchi sia indirizzato ad aziende con meno di 2500 dipendenti, e il 18% ad aziende con meno di 250 dipendenti.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Come mai ? E&#39; possibile che questo sia un primo passo nel tentativo di raggiungere una grande azienda in quanto molto spesso l&#39;azienda interessate potrebbe far parte dell&#39;ecosistema di un&#39;azienda molto più grande. &lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;- Le persone all&#39;interno delle aziende a cui più spesso sono indirizzati i &quot;targeted attacks&quot; non sono gli executive !&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;L&#39;analisi delle osservazioni effettuate sul campo ci mostra che il 58% degli attacchi nel corso del 2011 è stato indirizzato a persone delle funzioni commerciali, risorse umane, assistenti di direzione, comunicazione e relazioni esterne. Molto spesso gli obiettivi sono quindi persone che in azienda occupano un ruolo di alta visibilità pubblica e per questo abituati a ricevere mail dall&#39;esterno dell&#39;organizzazione contenenti anche allegati (ad esempio per una persona dello staff di risorse umane è probabilmente per nulla strano ricevere dall&#39;esterno una mail con in allegato un presunto curriculum vitae). Anche in questo caso è bene domandarsi il motivo di questo cambiamento di scenario. La mia interpretazione è che si cerca di prendere in fallo persone pià facilmente raggiungibili per penetrare poi all&#39;interno dell&#39;organizzazione in modo più facile grazie all&#39;evoluzione delle tecniche di attacco (es. APT ovvero Advance Persistent Threat)&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;- Spam e botnet: ne avevo già parlato brevemenete nel precedente post (collegati&amp;nbsp;&lt;a href=&quot;http://www.marcobavazzano.com/2012/05/siamo-sicuri-vedere-questi-dati-sembra.html&quot;&gt;qui&lt;/a&gt;) evidenziando la diminuzione registrata per lo spam nel 2011. In effetti dal lato pratico la causa principale di tale riduzione è riconducibile alla riduzione del numero di botnet, avvenuto anche a seguito dello smantellamento da parte delle forze di polizia della botnet denominata &quot;Rustock&quot;. Si noti infatti che a seguito della chiusura dei sistemi di comando e controllo della bonet Rustock si è assistito da una settimana a quella successiva ad una riduzione incredibile del tasso di spam: da 51 a 31,7 Miliardi di messaggi di spam.Particolarmente &amp;nbsp;significativa la riduzione di spam farmaceutico diminuito del 34%. Invece sono stati percentualmente in aumento i messaggi di spam riguardanti orologi, gioielli, sesso ed appuntamenti.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;- Nuove vulnerabilità: la figura mostra una significativa riduzione del numero di vulnerabilità riscontrate nel 2011 ma ci sono tantissimi elementi da sottolineare. Svilupperò questo tema nella terza parte di questo post&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;br /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/3585214647363628734/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2012/05/vi-racconto-io-i-dati-contenuti-nel.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/3585214647363628734'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/3585214647363628734'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2012/05/vi-racconto-io-i-dati-contenuti-nel.html' title='Vi racconto io i dati contenuti nel ISTR Symantec (parte 2)'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-N2sPIkC94v4/T6rAXHdE5xI/AAAAAAAAARw/756isZ4M5S8/s72-c/ISTR2.jpg" height="72" width="72"/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-960967373485513177</id><published>2012-05-08T22:04:00.002+02:00</published><updated>2012-05-08T22:04:51.671+02:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="Google"/><category scheme="http://www.blogger.com/atom/ns#" term="sicurezza informatica"/><category scheme="http://www.blogger.com/atom/ns#" term="vulnerabilità"/><title type='text'>Google aggiorna le regole sulla ricompensa a chi identifica vulnerabilità nelle loro applicazioni</title><content type='html'>&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;div class=&quot;separator&quot; style=&quot;clear: both; text-align: center;&quot;&gt;&lt;a href=&quot;http://2.bp.blogspot.com/-30iiDWJBmqo/T5gefJ-ZOOI/AAAAAAAAAQU/6_4QZqHDzJw/s1600/google+zip.jpg&quot; imageanchor=&quot;1&quot; style=&quot;margin-left: 1em; margin-right: 1em;&quot;&gt;&lt;img border=&quot;0&quot; height=&quot;219&quot; src=&quot;http://2.bp.blogspot.com/-30iiDWJBmqo/T5gefJ-ZOOI/AAAAAAAAAQU/6_4QZqHDzJw/s320/google+zip.jpg&quot; width=&quot;320&quot; /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;La ricerca delle vulnerabilità nel software è un&#39;attività vecchia quanto il software stesso.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Difatti lo sviluppo di malware non era l&#39;unica attività condotta dagli hacker negli anni in cui la ricerca della celebrità costituiva l&#39;impulso fondamentale a misurare le proprie competenze informatiche con quelle dei grandi colossi industriali, in primis IBM e Microsoft. Un modo altrettanto gratificante e non &quot;borderline&quot; come la creazione del malware, era quello di lavorare alla ricerca di vulnerabilità all&#39;interno delle applicazioni e renderle pubbliche affinchè i &lt;i&gt;vendor&lt;/i&gt; provvedessero ad emendare i loro errori rilasciando le apposite patch (correzione software).&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Ora che l&#39;era romantica della fama e della gloria del computer crime è decisamente alle nostre spalle, abbiamo visto un&#39;evoluzione anche di questa tipologia di attività.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Un aspetto interessante è la crescente attribuzione di ricompense in denaro da parte dei produttori di software, per coloro che sono in grado di fornire evidenza di una vulnerabilità nel loro software.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Particolarmente attiva in tal senso è Google che ha appena comunicato di aver pagato in poco più di 1 anno&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;background-color: white; color: #333333; font-family: Verdana, sans-serif; text-align: left;&quot;&gt;$&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;460.000&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;background-color: white; color: #333333; font-family: Verdana, sans-serif; text-align: left;&quot;&gt;a circa 200 persone per un totale di 780 vulnerabilità riguardanti l&#39;intera galassia delle applicazioni presenti nel loro portafoglio.&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;span style=&quot;background-color: white; color: #333333; font-size: large; text-align: left;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;span style=&quot;background-color: white; color: #333333; font-size: large; text-align: left;&quot;&gt;Inoltre Google ha appena aggiornato le regole di questa specie di gara includendo per l&#39;appunto nuove ricompense:&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;span style=&quot;background-color: white; color: #333333; font-size: large; text-align: left;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;ul style=&quot;background-color: white; color: #333333; text-align: left;&quot;&gt;&lt;li style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;b&gt;$20,000&lt;/b&gt;&amp;nbsp;per vulnerabilità che consentirebbero l&#39;esecuzione di codice (malevolo)&lt;/span&gt;&lt;/li&gt;&lt;li style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;b style=&quot;font-family: Verdana, sans-serif;&quot;&gt;$10,000&lt;/b&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&amp;nbsp;per vulnerabilità che consentirebbero &quot;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;SQL injection&quot; o tecniche di exploit equivalenti; o che consentirebbero di evitare i meccanismi di autenticazione ed autorizzazione&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;&lt;li style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;fino a &lt;/span&gt;&lt;b style=&quot;font-family: Verdana, sans-serif;&quot;&gt;$3,133.7&lt;/b&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&amp;nbsp;per malfunzioni riguardanti&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;background-color: white; font-family: Verdana, sans-serif;&quot;&gt;XSS, XSRF, ed altri difetti ad elevato impatto&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;/div&gt;&lt;div style=&quot;text-align: left;&quot;&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;span style=&quot;color: #333333; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;span style=&quot;color: #333333; font-size: large;&quot;&gt;Se avete quindi identificato una vulnerabilità che ricade nelle suddette casistiche non vi resta altro che prendere penna e calamaio e scrivere a&lt;/span&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;span style=&quot;color: #333333;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;a href=&quot;mailto:security@google.com&quot; style=&quot;background-color: white; color: #7847b2; line-height: 20px; text-align: -webkit-auto; text-decoration: none;&quot;&gt;security@google.com&lt;/a&gt;&lt;span style=&quot;background-color: white; color: #444444; line-height: 20px; text-align: -webkit-auto;&quot;&gt;.&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/960967373485513177/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2012/05/google-aggiorna-le-regole-sulla.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/960967373485513177'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/960967373485513177'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2012/05/google-aggiorna-le-regole-sulla.html' title='Google aggiorna le regole sulla ricompensa a chi identifica vulnerabilità nelle loro applicazioni'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-30iiDWJBmqo/T5gefJ-ZOOI/AAAAAAAAAQU/6_4QZqHDzJw/s72-c/google+zip.jpg" height="72" width="72"/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-2837045932946937545</id><published>2012-05-03T18:44:00.000+02:00</published><updated>2012-05-04T21:18:42.082+02:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="Guida alla Sicurezza Informatica"/><category scheme="http://www.blogger.com/atom/ns#" term="Internet Security Threat Response"/><category scheme="http://www.blogger.com/atom/ns#" term="ISTR 2011"/><category scheme="http://www.blogger.com/atom/ns#" term="phishing"/><category scheme="http://www.blogger.com/atom/ns#" term="spam"/><category scheme="http://www.blogger.com/atom/ns#" term="Symantec"/><title type='text'>Siamo sicuri ? A vedere questi dati sembra ci sia da correre ai ripari (parte 1)</title><content type='html'>&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Prima di partire per un viaggio verso una destinazione sconosciuta, vi munite di una guida turistica per conoscere lo stato del paese che andrete a visitare, e per trovare consigli e suggerimenti sulle cose da fare e quelle da evitare ? Perchè non farlo prima di visitare il cyber world ?&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;La vostra guida turistica nel mondo digitale è l&#39;Internet Security Threat Report (ISTR) di Symantec.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;L&#39;ISTR è un report realizzato annualmente per fornire alle imprese ed agli utilizzatori dei servizi internet, le informazioni essenziali per comprendere l&#39;evoluzione dei rischi e delle minacce. E&#39; il risultato dell&#39;elaborazione dei dati raccolti da Symantec tramite la propria Global Intelligence Network, un&#39;infrastruttura composta da decine di milioni di sensori presenti in oltre 200 paesi del mondo che forniscono migliaia di aggiornamenti al secondo. Il report ingloba inoltra anche le elaborazioni  riguardanti i dati sul phishing, lo spam e le frodi che sono raccolti da Symantec attraverso le infrastrutture utilizzate per l&#39;erogazione dei servizi di protezione alla clientela.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Il report relativo all&#39;anno 2011 è stato presentato in conferenza stampa tre giorni fa. Nel seguito (ed in post successivi) riporto alcuni infographics che sintetizzano le principali evidenze in esso contenute.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Il report completo, in lingua inglese, è scaricabile &lt;a href=&quot;http://www.symantec.com/content/en/us/enterprise/other_resources/b-istr_main_report_2011_21239364.en-us.pdf?om_ext_cid=biz_socmed_twitter_facebook_marketwire_linkedin_2012Apr_worldwide_ISTR17&quot;&gt;qui&lt;/a&gt;.&lt;/span&gt;&lt;/div&gt;&lt;div class=&quot;separator&quot; style=&quot;clear: both; text-align: center;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large; text-align: justify;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class=&quot;separator&quot; style=&quot;clear: both; text-align: center;&quot;&gt;&lt;a href=&quot;http://3.bp.blogspot.com/-TFKTaMpoCho/T6Fn84oqwlI/AAAAAAAAARk/6pi6Ygo3ZCY/s1600/ISTR1.jpg&quot; imageanchor=&quot;1&quot; style=&quot;margin-left: 1em; margin-right: 1em;&quot;&gt;&lt;img border=&quot;0&quot; height=&quot;640&quot; src=&quot;http://3.bp.blogspot.com/-TFKTaMpoCho/T6Fn84oqwlI/AAAAAAAAARk/6pi6Ygo3ZCY/s640/ISTR1.jpg&quot; width=&quot;515&quot; /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Le prime evidenze significative rappresentate in questa figura riguardano 4 aspetti:&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;b&gt;- Attacchi: sono aumentati ! ... e anche di molto !&amp;nbsp;&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Il numero degli attacchi bloccati nel 2011 è aumentato dell&#39;81% rispetto all&#39;anno precedente, e altrettanto significativo è l&#39;incremento di attacchi bloccati giornalmente pari al 36%.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;b&gt;- Spam: è diminuito ! bella notizia ma vuole dire che gli attacchi sono condotti con altri mezzi che hanno maggiori probabilità di successo&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;Il livello globale di spam giornaliero è decresciuto considerevolmente. Come noto lo spam è stato per lungo tempo un canale molto utilizzato per veicolare malware in rete. Il fatto che si registri questa variazione e che contemporaneamente si consuntivi però un incremento significativo degli attacchi, trova una spiegazione nel fatto che attualmente sono utilizzati dei canali differenti per la trasmissione del malware che si stanno rivelando molto più efficaci, ed in particolare i social network (per approfondimenti sulla sicurezza nei social network, ed in particolare Facebook, collegati &lt;a href=&quot;http://www.marcobavazzano.com/2012/05/come-usare-facebook-in-sicurezza-una.html&quot;&gt;qui&lt;/a&gt;)&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;b&gt;- Phishing: è ancora in aumento nonostante sia ben conosciuto a tutti. Il problema è che le tecniche di ingegneria sociale che accompagnano il phishing sono sempre più sofisticate e continuano così a mietere ugualmente vittime.&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;In questo ambito registriamo un incremento rispetto all&#39;anno precedente: 0.33% o 1 su 299 email nel 2011, in confronto al 0.23% o 1  mail su 442 nel 2010.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;b&gt;- Dati personali: sono l&#39;obiettivo principale perchè sono monetizzabili sul Black Market (per approfondimenti sul Black Market vedi &lt;a href=&quot;http://www.marcobavazzano.com/2012/04/retata-nel-black-market.html&quot;&gt;qui&lt;/a&gt;)&lt;/b&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif;&quot;&gt;A livello mondiale abbiamo in media 1,1 milioni di identità violate per ogni furto di dati personali. Oltre 230 milioni le identità violate complessivamente nel 2011.&lt;/span&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/2837045932946937545/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2012/05/siamo-sicuri-vedere-questi-dati-sembra.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/2837045932946937545'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/2837045932946937545'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2012/05/siamo-sicuri-vedere-questi-dati-sembra.html' title='Siamo sicuri ? A vedere questi dati sembra ci sia da correre ai ripari (parte 1)'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-TFKTaMpoCho/T6Fn84oqwlI/AAAAAAAAARk/6pi6Ygo3ZCY/s72-c/ISTR1.jpg" height="72" width="72"/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-3370935360833118664</id><published>2012-05-02T07:05:00.000+02:00</published><updated>2012-05-04T21:19:30.926+02:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="black market"/><category scheme="http://www.blogger.com/atom/ns#" term="Facebook"/><category scheme="http://www.blogger.com/atom/ns#" term="guida sicurezza facebook"/><category scheme="http://www.blogger.com/atom/ns#" term="scam"/><category scheme="http://www.blogger.com/atom/ns#" term="sicurezza facebook"/><category scheme="http://www.blogger.com/atom/ns#" term="sicurezza social network"/><category scheme="http://www.blogger.com/atom/ns#" term="spam"/><category scheme="http://www.blogger.com/atom/ns#" term="Symantec"/><title type='text'>Come usare Facebook in sicurezza ? Una guida per evitare spam e scam</title><content type='html'>&lt;br /&gt;&lt;div class=&quot;separator&quot; style=&quot;clear: both; text-align: center;&quot;&gt;&lt;a href=&quot;http://2.bp.blogspot.com/-SvYqULEZ2Uo/T6BHpwzdZ7I/AAAAAAAAARE/ACJPcrgvcug/s1600/social_network.jpg&quot; imageanchor=&quot;1&quot; style=&quot;margin-left: 1em; margin-right: 1em;&quot;&gt;&lt;img border=&quot;0&quot; height=&quot;212&quot; src=&quot;http://2.bp.blogspot.com/-SvYqULEZ2Uo/T6BHpwzdZ7I/AAAAAAAAARE/ACJPcrgvcug/s320/social_network.jpg&quot; width=&quot;320&quot; /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Di pari passo con il crescente utilizzo delle applicazioni &quot;social&quot; per comunicare e condividere ogni tipo di informazione con amici, parenti e colleghi, assistiamo alla diffusione di frodi e minacce su questi canali. I nuovi &quot;campi di battaglia&quot; della criminalità informatica sono diventati Facebook, Twitter, Linkedin, Pinterest, e gli altri &quot;social network&quot;.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Nulla di strano considerato che i loro utenti ammontano complessivamente a ben oltre 1 miliardo, e raggiungere una platea così ampia rappresenta davvero una ghiotta opportunità per i cyber criminali interessati ad arricchire il loro portafoglio di ogni tipologia di dato personale. Infatti, non bisogna dimenticare che dati relativi a carte di credito, documenti d&#39;identità, credenziali di conti correnti bancari, etc, sono&lt;span style=&quot;-webkit-tap-highlight-color: rgba(26, 26, 26, 0.292969);&quot;&gt;&amp;nbsp;monetizzabili sul&lt;/span&gt;&lt;span style=&quot;-webkit-tap-highlight-color: rgba(26, 26, 26, 0.292969);&quot;&gt;&amp;nbsp;Black Market (per maggiori informazioni sul Black Market clicca &lt;a href=&quot;http://www.marcobavazzano.com/2012/04/retata-nel-black-market.html&quot;&gt;qui&lt;/a&gt;)&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;-webkit-tap-highlight-color: rgba(26, 26, 26, 0.292969);&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;-webkit-tap-highlight-color: rgba(26, 26, 26, 0.292969);&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Un altro aspetto non trascurabile nella scelta di un nuovo campo di battaglia è la conoscenza delle tecniche di attacco adottate, e la conseguente capacità di difesa da parte dell&#39;avversario. E&#39; questo il motivo per cui i cyber criminali seguono costantemente l&#39;evoluzione dei trend tecnologici e di mercato, ed oggi registriamo una significativa evoluzione delle minacce per chi utilizza gli smartphone, i Mac e per l&#39;appunto i social network. I criminali sono confidenti di trovare prede più facili perchè impreparate ad affrontare le minacce perpetrabili in questi ambiti&lt;/span&gt;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;-webkit-tap-highlight-color: rgba(26, 26, 26, 0.292969);&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;-webkit-tap-highlight-color: rgba(26, 26, 26, 0.292969);&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Symantec, con l&#39;intento di proteggere le persone che utilizzano Facebook e le loro informazioni, ha collaborato con il social network più utilizzato al mondo per produrre un report che illustra le tecniche utilizzate per compromettere la sicurezza dei suoi utenti e le precauzioni da adottare.&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;-webkit-tap-highlight-color: rgba(26, 26, 26, 0.292969);&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;-webkit-tap-highlight-color: rgba(26, 26, 26, 0.292969);&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Chi non ha voglia di affrontare la lettura del report completo redatto in lingua inglese (scaricabile&amp;nbsp;&lt;a href=&quot;http://www.symantec.com/content/en/us/enterprise/media/security_response/whitepapers/scams_and_spam_to_avoid_on_facebook.pdf&quot;&gt;qui&lt;/a&gt;), può continuare a seguirmi sul Blog (e/o Facebook o Twitter) perchè curerò la descrizione delle parti più salienti dello stesso....in puntate successive, nella migliore tradizione di un serial TV :-)&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;-webkit-tap-highlight-color: rgba(26, 26, 26, 0.292969);&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;-webkit-tap-highlight-color: rgba(26, 26, 26, 0.292969);&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Per il momento vi lascio con la prefazione del documento scritta da un rappresentante del Facebook Security Team. La prefazione originale è in inglese, ma qui propongo direttamente la traduzione (a mia cura).&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;br /&gt;&lt;div class=&quot;separator&quot; style=&quot;clear: both; text-align: center;&quot;&gt;&lt;a href=&quot;http://3.bp.blogspot.com/-phCYiQKr0B0/T6BKpH0Cp7I/AAAAAAAAARU/pavNambqKsQ/s1600/facebook.jpg&quot; imageanchor=&quot;1&quot; style=&quot;margin-left: 1em; margin-right: 1em;&quot;&gt;&lt;img border=&quot;0&quot; height=&quot;200&quot; src=&quot;http://3.bp.blogspot.com/-phCYiQKr0B0/T6BKpH0Cp7I/AAAAAAAAARU/pavNambqKsQ/s200/facebook.jpg&quot; width=&quot;200&quot; /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Arial, Helvetica, sans-serif; font-size: large;&quot;&gt;&lt;i&gt;&lt;br /&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Arial, Helvetica, sans-serif; font-size: large;&quot;&gt;&lt;i&gt;In Facebook ci impegniamo molto per proteggere le persone che usano i nostri servizi. Investiamo in tecnologie, sviluppiamo soluzioni proprietarie, introduciamo delle configurazioni di sicurezza innovative e dedichiamo centinaia di risorse in tutto il mondo per garantire la sicurezza vostra e dei vostri dati&amp;nbsp;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Arial, Helvetica, sans-serif; font-size: large;&quot;&gt;&lt;i&gt;&lt;br /&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Arial, Helvetica, sans-serif; font-size: large;&quot;&gt;&lt;i&gt;Ma non possiamo farlo da soli e per questo motivo abbiamo realizzato questa guida con i nostri amici di Symantec, con l&#39;obiettivo di educare le persone sulle minacce prevalenti che abbiamo osservato e le migliori soluzioni per mantenere sicuri i dati.&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Arial, Helvetica, sans-serif; font-size: large;&quot;&gt;&lt;i&gt;&lt;br /&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Arial, Helvetica, sans-serif; font-size: large;&quot;&gt;&lt;i&gt;In Facebook elaboriamo una grande quantitá di informazioni per proteggere le persone - ogni giorno controlliamo oltre 26 miliardi di nuovi contenuti e 2 trilioni di click su link. Ma con oltre 800 milioni di persone che visitano il nostro sito ogni mese, e più di 400 milioni che lo visitano ogni giorno, Facebook é diventato un obiettivo molto attrattivo per &quot;spammer&quot; e &quot;scammer&quot;. Questo é il motivo per cui in Facebook abbiamo oltre trecento ingegneri specialisti della sicurezza, e centinaia di risorse nel personale operativo, che lavorano 24 ore su 24 per garantire la sicurezza dei vostri dati.&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Arial, Helvetica, sans-serif; font-size: large;&quot;&gt;&lt;i&gt;&lt;br /&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-size: large;&quot;&gt;&lt;i&gt;&lt;span style=&quot;font-family: Arial, Helvetica, sans-serif;&quot;&gt;Adottando tecnologie avanzate, i nostri ingegneri lavorano per assicurare che sia sicuro utilizzare Facebook. Abbiamo parecchi sistemi interni per scoprire, prevenire e rendere inefficaci le minacce. Tuttavia, non tutti i meccanismi di sicurezza operano dietro le scene, e noi vogliamo rendere chiunque in grado di controllare l&#39;esperienza su Facebook. Alcuni di questi meccanismi sono infatti attivi per default, e altri permettono alle persone di scegliere quali livelli di sicurezza si adattano meglio al loro stile di vita. Per imparare l&#39;uso di questi meccanismi si può consultare la Facebook Security Page oppure l&#39;Help Center.&lt;/span&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Arial, Helvetica, sans-serif; font-size: large;&quot;&gt;&lt;i&gt;&lt;br /&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Arial, Helvetica, sans-serif; font-size: large;&quot;&gt;&lt;i&gt;Ma perfino con tutte queste risorse, abbiamo ancora bisogno del tuo aiuto per mantenere sicuro il nostro sito. Abbiamo tutti un ruolo da giocare per tenere il Web sicuro, e assicurare che clicchiamo o condividiamo soltanto link di cui possiamo fidarci é una parte molto importante di questa partita. Per favore leggi la guida e condividi anche con i tuoi amici quello che imparerai.&amp;nbsp;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Arial, Helvetica, sans-serif; font-size: large;&quot;&gt;&lt;i&gt;&lt;br /&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Arial, Helvetica, sans-serif; font-size: large;&quot;&gt;&lt;i&gt;&lt;b&gt;&lt;u&gt;Grazie di nuovo a Symantec per la loro competenza e per gli sforzi compiuti per aiutarci a proteggere le persone che usano Facebook.&lt;/u&gt;&lt;/b&gt;&lt;/i&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class=&quot;separator&quot; style=&quot;clear: both; text-align: center;&quot;&gt;&lt;a href=&quot;http://4.bp.blogspot.com/-sV1BHOzCMi0/T6BH5sF9DwI/AAAAAAAAARM/gqb0GZG5Rw4/s1600/facebook3.jpg&quot; imageanchor=&quot;1&quot; style=&quot;margin-left: 1em; margin-right: 1em;&quot;&gt;&lt;img border=&quot;0&quot; height=&quot;126&quot; src=&quot;http://4.bp.blogspot.com/-sV1BHOzCMi0/T6BH5sF9DwI/AAAAAAAAARM/gqb0GZG5Rw4/s200/facebook3.jpg&quot; width=&quot;200&quot; /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;br /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/3370935360833118664/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2012/05/come-usare-facebook-in-sicurezza-una.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/3370935360833118664'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/3370935360833118664'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2012/05/come-usare-facebook-in-sicurezza-una.html' title='Come usare Facebook in sicurezza ? Una guida per evitare spam e scam'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-SvYqULEZ2Uo/T6BHpwzdZ7I/AAAAAAAAARE/ACJPcrgvcug/s72-c/social_network.jpg" height="72" width="72"/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-8601433573025824436</id><published>2012-04-30T11:06:00.000+02:00</published><updated>2012-04-30T11:18:46.571+02:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="black market"/><category scheme="http://www.blogger.com/atom/ns#" term="cybercrime"/><category scheme="http://www.blogger.com/atom/ns#" term="SOCA"/><category scheme="http://www.blogger.com/atom/ns#" term="Symantec"/><title type='text'>Retata nel black market !</title><content type='html'>&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;div class=&quot;separator&quot; style=&quot;clear: both; text-align: center;&quot;&gt;&lt;a href=&quot;http://4.bp.blogspot.com/-lnG-pnnor3c/T52bJcd80aI/AAAAAAAAAQ4/i5SpkbFkbPo/s1600/Symc_header03.gif&quot; imageanchor=&quot;1&quot; style=&quot;margin-left: 1em; margin-right: 1em;&quot;&gt;&lt;img border=&quot;0&quot; height=&quot;259&quot; src=&quot;http://4.bp.blogspot.com/-lnG-pnnor3c/T52bJcd80aI/AAAAAAAAAQ4/i5SpkbFkbPo/s640/Symc_header03.gif&quot; width=&quot;640&quot; /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Un&#39;operazione internazionale di polizia ha inflitto un duro colpo al Black Market sequestrando numerosi siti che vendevano carte di credito rubate.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Le stime economiche relative all&#39;entità del cybercrime riferiscono di un valore pari a circa 780 Miliardi di Dollari, una cifra non molto inferiore a quella stimata per il traffico illegale di droga. Il Black Market è il pilastro fondamentale di questa economia sotterranea. Nel Black Market si trova in vendita un qualunque tipo di dato personale (documenti di identità, account mail, credenziali di conti correnti  bancari, dati relativi a carte di credito, etc. etc.) ma anche strumenti per realizzare azioni criminose contro aziende o individui.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;I 36 siti sequestrati nel corso di questa operazione erano dediti prevalentemente alla&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;vendita di carte di credito rubate al prezzo di 2 Dollari.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Le attività di alcuni dei siti sequestrati sono state monitorate per un periodo di quasi 2 anni e durante quel periodo sono state impedite delle frodi su circa 2 milioni e mezzo di carte di credito, prevenendo una perdita pari a circa 0,5 Miliardi di Dollari in accordo ad un modello di calcolo generalmente utilizzato in questo ambito.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;L’indagine, coordinata dalla britannica Serious Organised Crime A&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;gency (Soca), è stata condotta insieme a forze dell’ordine di vari Paesi a testimonianza della complessità di contrastare efficacemente il lack Market: FBI in USA, BKA in Germania, KLPD in Olanda, Ministero degli Affari Interni in Ucraina, ed infine Polizia Federale australiana e Polizia Nazionale rumena.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Il video che segue (in lingua inglese) mostra il messaggio di benvenuto per i visitatori di uno dei siti coinvolti....è proprio vero che il marketing è l&#39;anima di tutti i commerci, anche quelli illegali !!!&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;div style=&quot;text-align: center;&quot;&gt;&lt;br /&gt;&lt;/div&gt;&lt;i&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Symantec ha dedicato un canale web, consultabile all’indirizzo&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;a href=&quot;http://www.emea.symantec.com/it/blackmarket/news.cfm&quot;&gt; Symantec Black Market&lt;/a&gt;&amp;nbsp;(clicca sul titolo),&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt; a chi vuole approfondire il tema del Black Market.&lt;/span&gt;&lt;/i&gt;&lt;br /&gt;&lt;div style=&quot;text-align: center;&quot;&gt;&lt;b&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/b&gt;&lt;/div&gt;&lt;/div&gt;&lt;div style=&quot;text-align: center;&quot;&gt;&lt;iframe allowfullscreen=&quot;&quot; frameborder=&quot;0&quot; height=&quot;365&quot; src=&quot;http://www.youtube.com/embed/luMGk8kit5o&quot; width=&quot;480&quot;&gt;&lt;/iframe&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/8601433573025824436/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2012/04/retata-nel-black-market.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/8601433573025824436'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/8601433573025824436'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2012/04/retata-nel-black-market.html' title='Retata nel black market !'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-lnG-pnnor3c/T52bJcd80aI/AAAAAAAAAQ4/i5SpkbFkbPo/s72-c/Symc_header03.gif" height="72" width="72"/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-1003515366779817421</id><published>2012-04-27T07:50:00.000+02:00</published><updated>2012-04-27T07:50:12.101+02:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="DNSChanger"/><category scheme="http://www.blogger.com/atom/ns#" term="Flashback"/><category scheme="http://www.blogger.com/atom/ns#" term="Mac"/><category scheme="http://www.blogger.com/atom/ns#" term="Malware"/><category scheme="http://www.blogger.com/atom/ns#" term="Symantec"/><title type='text'>Un malware per 2 .... Windows e Mac</title><content type='html'>&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Il primo virus in grado di infettare il sistema operativo di un computer risale al 1982. Il sistema impattato era il DOS (versione 3.3) dei microcomputer Apple, e il virus era in grado di propogarsi attraverso lo scambio di floppy disk.&lt;br /&gt;&lt;br /&gt;Da allora il numero delle vulnerabilità identificate nei sistemi operativi è progredito in linea con la diffusione degli stessi sul mercato dei personal computer; questa è la ragione per cui il maggior numero di vulnerabilità è stato identificato sui sistemi operativi Windows.&lt;br /&gt;&lt;br /&gt;Una ricerca appena pubblicata ci rivela che i malware per Windows sono talmente diffusi da essere i più presenti anche sui computer Mac: circa il 20% dei computer Mac ospiterebbe un malware per Windows, e solo il 2,7% un malware specifico per Mac OS X.&lt;br /&gt;&lt;br /&gt;Gli utilizzatori di Mac non cadano in errore guardando queste cifre, infatti, non sono per nulla immuni dai rischi presenti sul mondo digitale a cui vanno incontro gli utilizzatori di PC Windows. Le statistiche ci dicono solo che è meno diffuso il malware per Mac, ma questa non è altro che una conseguenza delle quote di mercato possedute al momento.&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;E le cose stanno cambiando velocemente di pari passo con l&#39;incremento dei prodotti Apple nelle nostre case.&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;A dimostrazione di quanto sopra basta ricordare il clamore recente derivante dalla scoperta qualche settimana fa, di una botnet costituita da oltre 600.000 Mac infettati da un virus denominato Flashback. Se rapportiamo questo numero alla quota di mercato dei Mac rispetto a quella dei PC Windows, si ottiene che la dimensione di questa botnet sarebbe di gran lunga ed in assoluto, la più estesa mai individuata in precedenza.&lt;br /&gt;&lt;br /&gt;Un altro malware che sembra essersi diffuso in modo significativo sui Mac è quello denominato OSX/RSPlug. Si tratta di una versione per Mac OS X del famosissimo trojan DNSChanger, quello che sta mettendo a rischio il funzionamento dei servizi Internet, per centinaia di migliaia di computer, a partire dal prossimo 9 Luglio. Per approfondimenti su questo punto vedi l&#39;articolo sul mio blog dal titolo &quot;&lt;a href=&quot;http://www.marcobavazzano.com/2012/03/internet-blackout-risk-postponed-on-9.html&quot;&gt;Internet risk blackout postponed on 9 July 2012&lt;/a&gt;&quot; (clicca sul titolo)&lt;br /&gt;&lt;br /&gt;Non meno importante la scoperta fatta qualche giorno fa dal Symantec Security Response Team, un gruppo composto dai massimi esperti di sicurezza mondiale impegnato costantemente nella ricerca ed analisi di malware ed attacchi sulla rete Internet mondiale. &lt;br /&gt;&lt;br /&gt;Symantec ha identificato un nuovo Java Applet malevolo, in grado di sfruttare una vulnerabilità di Java per infettare il computer che visita la pagina web dove risiede. La novità di questa ultima versione di malware è che in questo caso il Java Applet è in grado di condurre una verifica sul tipo di sistema operativo che è in esecuzione sulla macchina, e di conseguenza scarica un malware specifico per quell&#39;ambiente. L&#39;illustrazione nel seguito spiega il funzionamento del malware&lt;br /&gt;&lt;br /&gt;Insomma, parafrasando un vecchio modo di dire, è arrivato un malware per tutte le stagioni.&amp;nbsp;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;div class=&quot;separator&quot; style=&quot;clear: both; text-align: center;&quot;&gt;&lt;a href=&quot;http://1.bp.blogspot.com/-T1hv7zGiIgg/T5ozViYZQlI/AAAAAAAAAQg/McxeLX60NTo/s1600/zzimage1.jpeg&quot; imageanchor=&quot;1&quot; style=&quot;clear: left; float: left; margin-bottom: 1em; margin-right: 1em;&quot;&gt;&lt;img border=&quot;0&quot; height=&quot;513&quot; src=&quot;http://1.bp.blogspot.com/-T1hv7zGiIgg/T5ozViYZQlI/AAAAAAAAAQg/McxeLX60NTo/s640/zzimage1.jpeg&quot; width=&quot;640&quot; /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/1003515366779817421/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2012/04/un-malware-per-2-windows-e-mac.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/1003515366779817421'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/1003515366779817421'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2012/04/un-malware-per-2-windows-e-mac.html' title='Un malware per 2 .... Windows e Mac'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-T1hv7zGiIgg/T5ozViYZQlI/AAAAAAAAAQg/McxeLX60NTo/s72-c/zzimage1.jpeg" height="72" width="72"/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-5984257818406730274</id><published>2012-04-26T07:48:00.000+02:00</published><updated>2012-04-26T07:49:13.651+02:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="Infrastrutture critiche"/><category scheme="http://www.blogger.com/atom/ns#" term="Iran"/><category scheme="http://www.blogger.com/atom/ns#" term="Stuxnet"/><category scheme="http://www.blogger.com/atom/ns#" term="Virus"/><title type='text'>Un virus danneggia gli impianti petroliferi in Iran</title><content type='html'>&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Già da qualche tempo l&#39;Iran è soggetta all&#39;embargo del petrolio, non solo verso gli Stati Uniti ma anche l&#39;Europa. In questo caso l&#39;embargo è stato già deciso, ma partirà dal mese di Luglio per evitare che ci possano essere problemi nei Paesi come Italia e Spagna che energicamente dipendono in modo significativo da tali approvvigionamenti.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Da qualche giorno però l&#39;Iran&amp;nbsp;è ancora più isolato.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Difatti è stata data comunicazione da parte dello stesso governo iraniano della scoperta di un virus informatico che ha danneggiato alcune componenti importanti degli impianti petroliferi, ed in particolare ha causato l&#39;isolamento del principale terminale avente in carico l&#39;esportazione del greggio verso i paesi esteri.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;La comunicazione ufficiale riporta che il virus è stato identificato prima che esso causasse un&#39;infezione estesa, determinando in pratica come unico danno quello della mancanza di collegamento con la rete pubblica Internet. Non sono stati forniti però altri dettagli, e cosi ci sono state molte speculazioni sul fatto che si possa trattare di un virus similare a Stuxnet che, forse è utile ricordarlo, è stato responsabile di pesanti danneggiamenti agli impianti di produzione nucleare iraniani.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Come detto le notizie circolate non permettono di formulare delle ipotesi precise a riguardo, ovvero di capire se il virus sia stato o meno forgiato per colpire le applicazioni SCADA o semplicemente colpisce i sistemi operativi Unix o Windows sottostanti a tali sistemi di controllo. La prima ipotesi sembra comunque la meno probabile anche se come ben noto Stuxnet ha già avuto un suo erede nel corso del 2011 ... DuQu. Ma questa è un&#39;altra storia ...&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class=&quot;separator&quot; style=&quot;clear: both; text-align: center;&quot;&gt;&lt;a href=&quot;http://4.bp.blogspot.com/-SGoAoserdbQ/T5gA6J5VX9I/AAAAAAAAAP0/cksWHzZk0hM/s1600/0_600_800_http-__i.haymarket.net.au_News_Kharg+Island+Nasa+Iran.jpg&quot; imageanchor=&quot;1&quot; style=&quot;margin-left: 1em; margin-right: 1em;&quot;&gt;&lt;img border=&quot;0&quot; height=&quot;320&quot; src=&quot;http://4.bp.blogspot.com/-SGoAoserdbQ/T5gA6J5VX9I/AAAAAAAAAP0/cksWHzZk0hM/s320/0_600_800_http-__i.haymarket.net.au_News_Kharg+Island+Nasa+Iran.jpg&quot; width=&quot;320&quot; /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;br /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/5984257818406730274/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2012/04/un-virus-danneggia-gli-impianti.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/5984257818406730274'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/5984257818406730274'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2012/04/un-virus-danneggia-gli-impianti.html' title='Un virus danneggia gli impianti petroliferi in Iran'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-SGoAoserdbQ/T5gA6J5VX9I/AAAAAAAAAP0/cksWHzZk0hM/s72-c/0_600_800_http-__i.haymarket.net.au_News_Kharg+Island+Nasa+Iran.jpg" height="72" width="72"/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-3588264157258100776</id><published>2012-04-25T18:08:00.000+02:00</published><updated>2012-04-25T18:08:30.205+02:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="Data Loss Prevention"/><category scheme="http://www.blogger.com/atom/ns#" term="Protezione Informazioni"/><title type='text'>Proteggere le informazioni nelle aziende...anche da errori inintenzionali</title><content type='html'>&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;div class=&quot;separator&quot; style=&quot;clear: both; text-align: center;&quot;&gt;&lt;a href=&quot;http://1.bp.blogspot.com/-eDharw5b9mY/T5gGuU9LKwI/AAAAAAAAAQI/q3rHnqCNTVI/s1600/you&#39;re+fired.jpg&quot; imageanchor=&quot;1&quot; style=&quot;margin-left: 1em; margin-right: 1em;&quot;&gt;&lt;img border=&quot;0&quot; height=&quot;282&quot; src=&quot;http://1.bp.blogspot.com/-eDharw5b9mY/T5gGuU9LKwI/AAAAAAAAAQI/q3rHnqCNTVI/s320/you&#39;re+fired.jpg&quot; width=&quot;320&quot; /&gt;&lt;/a&gt;&lt;/div&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;La scorsa settimana tutti i 1300 dipendenti di Aviva, una società assicurativa del Regno Unito, hanno ricevuto via mail la comunicazione del loro avvenuto licenziamento.&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Nella mail inviata dall&#39;ufficio del personale, si richiedeva ai destinatari di non portare con se alcuna proprietà dell&#39;azienda, e si ricordava loro l&#39;obbligo di riservatezza nel trattamento delle informazioni aziendali in loro possesso.&lt;/span&gt;&lt;/div&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;/span&gt;&lt;br /&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;In questi tempi di precarietà una notizia del genere purtroppo potrebbe non sorprendere, ma fortunatamente in questo caso l&#39;azienda ha poi ammesso di aver compiuto un errore, destinando a tutti i dipendenti la mail che avrebbe dovuto essere indirizzata ad un unico impiegato.&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;Questo errore non dovrebbe avere conseguenze, o almeno spero che non ne abbia avuta alcuna sulle coronarie di nessuno dei 1300 impiegati !&lt;br /&gt;&lt;br /&gt;Diverso sarebbe stato se la mail avesse contenuto informazioni riservate relative ad esempio ad uno dei dipendenti, all&#39;azienda stessa, ad un cliente oppure un fornitore.&amp;nbsp;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;Il bene più importante di un&#39;azienda è oggi rappresentata dai dati e dalle informazioni in suo possesso. Potrebbe trattarsi dell&#39;elenco dei propri clienti e dei loro dati personali (numero di carta di credito, traffico telefonico o navigazione internet, consumi di elettricità o gas,...) del piano strategico, del piano degli investimenti e/o dismissioni, della documentazione relativa ad una proprietà intellettuale o ad un contenzioso legale, eccetera eccetera. Chiaramente la tipologia di informazioni rilevante per una specifica azienda dipende dal tipo di business condotto dall&#39;azienda stessa, ma non c&#39;è dubbio che oggi l&#39;informazione nelle imprese è digitale, e che una compromissione di taluni dati potrebbe causare un danno diretto o indiretto anche di grande entità.&amp;nbsp;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;I casi recenti riconducibili a compromissioni esterne sono molto numerosi (Sony, Zappos, Stratfor, ...) ma l&#39;esempio di Aviva è la chiara dimostrazione del fatto che tutte le aziende devono attuare una strategia di protezione dell&#39;informazione che comprenda anche l&#39;eventualità di errori inintenzionali da parte dei propri dipendenti.&lt;br /&gt;&lt;br /&gt;Per non parlare poi dei dipendenti infedeli ...&lt;br /&gt;&lt;br /&gt;&lt;div class=&quot;separator&quot; style=&quot;clear: both; text-align: center;&quot;&gt;&lt;/div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;br /&gt;&lt;/div&gt;&lt;/span&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/3588264157258100776/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2012/04/proteggere-le-informazioni-nelle.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/3588264157258100776'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/3588264157258100776'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2012/04/proteggere-le-informazioni-nelle.html' title='Proteggere le informazioni nelle aziende...anche da errori inintenzionali'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-eDharw5b9mY/T5gGuU9LKwI/AAAAAAAAAQI/q3rHnqCNTVI/s72-c/you&#39;re+fired.jpg" height="72" width="72"/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-9210123711106054167</id><published>2012-04-06T17:46:00.001+02:00</published><updated>2012-05-04T23:26:48.334+02:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="Compliance"/><category scheme="http://www.blogger.com/atom/ns#" term="Global Payment"/><category scheme="http://www.blogger.com/atom/ns#" term="Mastercard"/><category scheme="http://www.blogger.com/atom/ns#" term="PCI"/><category scheme="http://www.blogger.com/atom/ns#" term="VISA"/><title type='text'>La sicurezza dei circuiti di pagamento con carte di credito</title><content type='html'>&lt;div class=&quot;separator&quot; style=&quot;clear: both; text-align: center;&quot;&gt;&lt;a href=&quot;http://1.bp.blogspot.com/-ce5FOBXOkyY/T38Jo5O2ghI/AAAAAAAAAPo/jPoO7-uiYIU/s1600/mcvisa-285x355+(1).jpg&quot; imageanchor=&quot;1&quot; style=&quot;margin-left: 1em; margin-right: 1em;&quot;&gt;&lt;img border=&quot;0&quot; height=&quot;320&quot; src=&quot;http://1.bp.blogspot.com/-ce5FOBXOkyY/T38Jo5O2ghI/AAAAAAAAAPo/jPoO7-uiYIU/s320/mcvisa-285x355+(1).jpg&quot; width=&quot;256&quot; /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Per quale motivo 1 milione e mezzo circa di persone che nel corso degli ultimi 12 mesi hanno preso un taxi a New York, dovrebbero preoccuparsi di un furto di dati riguardante una società di Atlanta chiamata Global Payment ?&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Il motivo è che quella società conservava, nei server del proprio data center di Louisville nello stato del Kentucky, i dati delle carte di credito VISA o MASTERCARD che quelle persone avevano utilizzato per pagare.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Il rischio per tutti loro è di essere soggetti ad una frode, cosa resa ancora più probabile dal fatto che, come dichiarato da Global Payment, l’incidente si sarebbe verificato parecchie settimane prima rispetto al momento in cui è stato identificato e reso noto a VISA.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;E difatti, nel momento in cui la notizia è stata comunicata anche al pubblico, sarebbero già circa un migliaio le carte per le quali era stata certamente identificata un’attività fraudolenta in corso, realizzata attraverso la contraffazione della carta originale.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Fortunatamente il consumatore attento in questo caso non dovrebbe fare le spese dell’altrui incapacità, in quanto tutelato dalle normative di legge. E difatti è buona regola controllare periodicamente i rendiconti relativi alle operazioni effettuate con le proprie carte di credito al fine di identificare tempestivamente la presenza di addebiti illeciti e comunicarli all’ente che aveva rilasciato la carta per ottenerne il rimborso. In questo specifico caso il rimborso dovrebbe essere garantito dal fatto che Visa ha comunicato agli emittenti delle carte la possibilità di frodi per le numerazioni coinvolte nell’incidente occorso a Global Payment.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Dalla descrizione di questo evento emerge chiaramente la numerosità degli attori coinvolti nella gestione delle carte di credito e dei pagamenti effettuati.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;In primis il negozio (attore n.1) in cui effettuiamo la transazione con la carta per pagare il nostro acquisto.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Il negoziante per rendere disponibile il servizio di pagamento con carta ai propri clienti, necessita di essere collegato ad uno dei circuiti di pagamento. Per questo ha dovuto realizzare un accordo con una sorta di intermediario (attore n. 2). L’intermediario (detto anche acquirer o third party processor) tipicamente si occupa anche della vendita o del noleggio dei terminali POS che il negoziante ha utilizzato per leggere la nostra carta, oltre che della rendicontazione dei pagamenti e delle eventuali dispute. Per tornare al nostro caso, Global Payment agisce come intermediario per le società di taxi di New York, alla pari ad esempio di quanto fa il conosciutissimo PayPal per gli utenti di Ebay.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Il circuito di pagamento (attore n. 3) riceve i dati della nostra transazione per via dell’intermediario. Visa e Mastercard sono 2 dei principali circuiti mondiali (altri ben noti sono American Express e Diners)&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Le aziende che fanno parte del circuito di pagamento naturalmente dialogano con un ulteriore attore, che arrivo ad indicare per ultimo pur essendo il primo della catena, ovvero la banca (attore n. 4) che ci ha rilasciato la carta di credito previa sottoscrizione di un contratto.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Tutti gli attori della catena dovrebbero proteggere la sicurezza e la privacy delle informazioni finanziarie dei propri clienti adottando le misure di protezione dei dati che sono previste dagli standard di riferimento.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Ma è sufficiente essere certificati rispetto ad uno standard per garantire i necessari livelli di “sicurezza” ? Come consumatore posso confidare che il trattamento dei dati associati alla mia carta avverrà nel rispetto delle più stringenti misure di sicurezza e privacy se le aziende che li gestiscono sono certificate rispetto agli standard del settore ?&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Per esperienza posso dire che non è così, ed altrettanto lo si potrebbe affermare facendo riferimento al nostro caso. Difatti Global Payment risulta certificato&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;PCI (Payment Card Industry) che è &lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;lo standard di riferimento nell’ambito dei servizi finanziari e ciò nonostante ...&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Molte aziende purtroppo confondono compliance per sicurezza&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Le aziende dovrebbero invece adottare le misure di sicurezza previste dagli standard di riferimento più significativi per il proprio settore, per integrarle all’interno di un modello di gestione dei rischi informatici che deriva da un’analisi completa delle minacce e dei potenziali impatti sul proprio business.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Inoltre un’altra linea guida è fondamentale: essere in grado di controllare il mantenimento dei livelli di conformità alle normative o alle policy aziendali nel corso del tempo.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;In sintesi un modello di Policy Compliance Management è un pilastro fondamentale per una governace efficace della sicurezza all’interno di un’azienda.&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Altrimenti troppe volte ci troveremo a tentare di chiudere il recinto dopo che i buoi sono scappati, come sta succedendo ora con Global Payment per la quale è prevista un’investigazione forensics per determinare se essa sia effettivamente oggigiorno compliance allo standard PCI.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;E per i consumatori ? Alcuni consigli.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Al momento della sottoscrizione della carta è bene assicurarsi che la banca emittitrice o il circuito di pagamento prevedano il rimborso delle spese di cui non si riconosce la legittimità.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Come detto in precedenza è bene controllare regolarmente l&#39;estratto conto per verificare che non ci siano anomalie ed eventualmente richiedere il blocco della carta.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Negli acquisti online prima di mettere il numero della carta di credito verificare 2 cose: che la connessione sia in https in modo tale che i dati scambiati risultano cifrati, e che sia autentico il certificato associato al sito al fine di avere l&#39;assolutata garanzia dell&#39;autenticità dei sito con il quale si sta effettuando lo scambio di dati.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Arial, Helvetica, Verdana, sans-serif; font-size: 12px; line-height: 15px; text-align: left;&quot;&gt;.&lt;/span&gt;&lt;span style=&quot;font-family: Arial, Helvetica, Verdana, sans-serif; font-size: 12px; line-height: 15px; text-align: left;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Questa è una procedura abbastanza semplice da fare esaminando le proprietà che si ottengono in evidenza cliccando sul lucchetto che compare nella finestra del browser che state utilizzando. La verifica di tali proprietà andrebbe inoltre complementata con la verifica che nella barra degli indirizzi mostrata dal browser compare proprio il dominio web dell&#39;ente contattato.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;AGGIORNAMENTO 4 MAGGIO 2011:&lt;/span&gt;&lt;br /&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Il Wall Street Journal ha pubblicato un articolo (clicca qui) nel quale si afferma che il numero di carte di credito a rischio di frodi a seguito di questo incidente sarebbero 7 Milioni e non &quot;soltanto&quot; 1 Milione e mezzo.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/9210123711106054167/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2012/04/la-sicurezza-dei-circuiti-di-pagamento.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/9210123711106054167'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/9210123711106054167'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2012/04/la-sicurezza-dei-circuiti-di-pagamento.html' title='La sicurezza dei circuiti di pagamento con carte di credito'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-ce5FOBXOkyY/T38Jo5O2ghI/AAAAAAAAAPo/jPoO7-uiYIU/s72-c/mcvisa-285x355+(1).jpg" height="72" width="72"/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4577044716596306296.post-846506700843810780</id><published>2012-03-29T23:25:00.001+02:00</published><updated>2012-03-29T23:25:31.789+02:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="AGCOM"/><category scheme="http://www.blogger.com/atom/ns#" term="copyright"/><category scheme="http://www.blogger.com/atom/ns#" term="online piracy"/><category scheme="http://www.blogger.com/atom/ns#" term="SOPA"/><title type='text'>Recent developments regarding online piracy regulation in Italy</title><content type='html'>&lt;br /&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;At the beginning of February the Italian Editor Association (Associazione&amp;nbsp;&amp;nbsp;Italiana Editori - AIE)&amp;nbsp;communicated&amp;nbsp;that 15.000 ebooks of a total of 19.000&amp;nbsp;were available in a pirate version including 17 of 25 best sellers. The AIE&amp;nbsp;underlined the urgency to define a regulation to protect copyright in order&amp;nbsp;to&amp;nbsp;avoid that piracy force editors not to invest in the digital market&amp;nbsp;anymore.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;As&amp;nbsp;you can imagine it is not a simple coincidence that such warning came out 1 week after the Parliament stopped a regulation in this area (see article&amp;nbsp;&lt;a href=&quot;http://www.marcobavazzano.com/2012/02/italian-parliament-stops-national-sopa.html&quot;&gt;Italian parliament stops national SOPA&lt;/a&gt;).&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Like&amp;nbsp;SOPA,&amp;nbsp;the proposed regulation could allow the removal of digital contents based&amp;nbsp;on a&amp;nbsp;request coming from any interested subject (and not only a judge as today).&amp;nbsp;That approach had caused a strong contrast of interests among content&amp;nbsp;providers&amp;nbsp;(book, music, movie) and ICT players, and huge pressures to the political&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;parties from digital citizens, afraid that such regulation could limit&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;internet&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;freedom. Publishing those data regarding ebook privacy after a few days the&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;proposed regulation was stopped, was a important message to other&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;government&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;bodies that were dealing with such topic, and first of all the Italian&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Authority for the Communication (AGCOM). In fact, at that time AGCOM was&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;running public consultations that should lead to fix economic and&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;administrative sanctions against copyright&amp;nbsp;piracy.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;Anyway, almost&amp;nbsp;surprisingly, a few days ago, during the presentation to the Parliament of&amp;nbsp;the&amp;nbsp;above results, AGCOM made also a step backward on this topic declaring that it&amp;nbsp;was necessary a regulation from the government to&amp;nbsp;attribute&amp;nbsp;to the AGCOM&amp;nbsp;the&amp;nbsp;authority to male decisions in this area.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;A definitive stop of the path to get&amp;nbsp;a regulation for copyright protection ? Most people made this thought but&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;today&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;we can say it was not.&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;In fact today a journalist of La Stampa, a national&amp;nbsp;press, has published in its website a draft copy of a Act prepared&amp;nbsp;from&amp;nbsp;the Government, as received from an anonymous source, that contains some&amp;nbsp;important evidences:&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;- AGCOM, that is an administrative body nominated from&amp;nbsp;politics, should receive the authority to block site access or remove specific&amp;nbsp;contents&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;- Online users violating copyright could even be disconnected&amp;nbsp;definitely from internet&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;- Articles coming from EU regulation&amp;nbsp;actually establishing that ISPs cannot be considered guilty for the&amp;nbsp;behavior&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;of their customers should be cancelled&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;As you can see the AGCOM could get exactly what&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;they asked&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;to the Government as necessary to make a regulation specific for this&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;delicate&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;area.&amp;nbsp;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&lt;br /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;But now that these contents have become public, should we expect that&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;the&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;span style=&quot;font-family: Verdana, sans-serif; font-size: large;&quot;&gt;final Act will be different ? Maybe that was the reason the anonymous source &amp;nbsp;made the document available to a journalist&lt;/span&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style=&quot;text-align: justify;&quot;&gt;&lt;br /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.marcobavazzano.com/feeds/846506700843810780/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.marcobavazzano.com/2012/03/recent-developments-regarding-online.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/846506700843810780'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4577044716596306296/posts/default/846506700843810780'/><link rel='alternate' type='text/html' href='http://www.marcobavazzano.com/2012/03/recent-developments-regarding-online.html' title='Recent developments regarding online piracy regulation in Italy'/><author><name>Marco Bavazzano</name><uri>https://plus.google.com/102240758609645894381</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='//lh4.googleusercontent.com/-m6QOv-nINAQ/AAAAAAAAAAI/AAAAAAAAATI/l2AtVsODu8Y/s512-c/photo.jpg'/></author><thr:total>0</thr:total></entry></feed>