<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>WatchGuard Security Center</title>
	
	<link>http://watchguardsecuritycenter.com</link>
	<description>Everything you need to take threats head on</description>
	<lastBuildDate>Tue, 07 Feb 2012 02:07:50 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain="watchguardsecuritycenter.com" port="80" path="/?rsscloud=notify" registerProcedure="" protocol="http-post" />
<image><link>http://www.watchguard.com/education/</link><url>http://www.watchguard.com/wgicon.gif</url><title>WatchGuard Wire</title></image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://watchguardsecuritycenter.com/osd.xml" title="WatchGuard Security Center" />
	
		<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/WatchguardWire" /><feedburner:info uri="watchguardwire" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://watchguardsecuritycenter.com/?pushpress=hub" /><geo:lat>47.598383</geo:lat><geo:long>-122.327537</geo:long><feedburner:emailServiceId>WatchguardWire</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><feedburner:feedFlare href="http://add.my.yahoo.com/rss?url=http%3A%2F%2Ffeeds.feedburner.com%2FWatchguardWire" src="http://us.i1.yimg.com/us.yimg.com/i/us/my/addtomyyahoo4.gif">Subscribe with My Yahoo!</feedburner:feedFlare><feedburner:feedFlare href="http://www.newsgator.com/ngs/subscriber/subext.aspx?url=http%3A%2F%2Ffeeds.feedburner.com%2FWatchguardWire" src="http://www.newsgator.com/images/ngsub1.gif">Subscribe with NewsGator</feedburner:feedFlare><feedburner:feedFlare href="http://feeds.my.aol.com/add.jsp?url=http%3A%2F%2Ffeeds.feedburner.com%2FWatchguardWire" src="http://o.aolcdn.com/favorites.my.aol.com/webmaster/ffclient/webroot/locale/en-US/images/myAOLButtonSmall.gif">Subscribe with My AOL</feedburner:feedFlare><feedburner:feedFlare href="http://www.bloglines.com/sub/http://feeds.feedburner.com/WatchguardWire" src="http://www.bloglines.com/images/sub_modern11.gif">Subscribe with Bloglines</feedburner:feedFlare><feedburner:feedFlare href="http://www.netvibes.com/subscribe.php?url=http%3A%2F%2Ffeeds.feedburner.com%2FWatchguardWire" src="http://www.netvibes.com/img/add2netvibes.gif">Subscribe with Netvibes</feedburner:feedFlare><feedburner:feedFlare href="http://fusion.google.com/add?feedurl=http%3A%2F%2Ffeeds.feedburner.com%2FWatchguardWire" src="http://buttons.googlesyndication.com/fusion/add.gif">Subscribe with Google</feedburner:feedFlare><feedburner:feedFlare href="http://www.pageflakes.com/subscribe.aspx?url=http%3A%2F%2Ffeeds.feedburner.com%2FWatchguardWire" src="http://www.pageflakes.com/ImageFile.ashx?instanceId=Static_4&amp;fileName=ATP_blu_91x17.gif">Subscribe with Pageflakes</feedburner:feedFlare><item>
		<title>UPDATE: 2012′s First OS X Update Corrects 52 Security Vulnerabilities</title>
		<link>http://feedproxy.google.com/~r/WatchguardWire/~3/GvBeXI47WQE/</link>
		<comments>http://watchguardsecuritycenter.com/2012/02/06/update-2012s-first-os-x-update-corrects-52-security-vulnerabilities/#comments</comments>
		<pubDate>Mon, 06 Feb 2012 20:30:16 +0000</pubDate>
		<dc:creator>Corey Nachreiner</dc:creator>
				<category><![CDATA[Security Updates]]></category>
		<category><![CDATA[apple]]></category>
		<category><![CDATA[OS X]]></category>

		<guid isPermaLink="false">http://watchguardsecuritycenter.com/?p=1362</guid>
		<description><![CDATA[Last week, Apple released an OS X update that fixed 52 security vulnerabilities. However, customers have reported that the Snow Leopard (10.6.x) version of the update causes problems with Rosetta &#8212; a component that allows Intel Macs to run PowerPC programs. In response, Apple has revised their original advisory, and released a new version of [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1362&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Last week, Apple released an OS X update that fixed 52 security vulnerabilities. However, customers have <a href="https://www.macworld.com/article/165216/2012/02/apple_revises_snow_leopard_security_update.html#lsrc.twt_macworld">reported</a> that the Snow Leopard (10.6.x) version of the update causes problems with <a href="http://en.wikipedia.org/wiki/Rosetta_(software)">Rosetta</a> &#8212; a component that allows Intel Macs to run PowerPC programs. In response, Apple has revised their original advisory, and released a new version of the Snow Leopard update.</p>
<p>If you use Snow Leopard, and you downloaded Apple&#8217;s update on February 1, you should download the revised v1.1 update from the <a href="http://support.apple.com/downloads/">Apple Software Download page</a>. Apple doesn&#8217;t appear to have changed the text on their download page to reflect this new version. However, they did share new <a href="http://en.wikipedia.org/wiki/Checksum">checksums</a> for the revised updates in their email security advisory. You can find those SHA-1 checksums below:</p>
<p><strong>For Mac OS X v10.6.8</strong></p>
<ul>
<li><em>Download file name:</em> SecUpd2012-001Snow.dmg</li>
<li><em>SHA-1 digest:</em> 29218a1a28efecd15b3033922d71f0441390490a</li>
</ul>
<p><strong>For Mac OS X Server v10.6.8</strong></p>
<ul>
<li><em>Download file name:</em> SecUpdSrvr2012-001.dmg</li>
<li><em>SHA-1 digest:</em> 105bdebf2e07fc5c0127f482276ccb7b6b631199</li>
</ul>
<div>For reference purposes, I&#8217;ve included our original OS X alert below.</div>
<p><HR></p>
<h3>Summary:</h3>
<ul>
<li><strong>These vulnerabilities affect:</strong> All current versions of OS X 10.6.x (Snow Leopard) and OS X 10.7.x (Lion)</li>
<li><strong>How an attacker exploits them:</strong> Multiple vectors of attack, including enticing your users to visit a malicious web site, or into downloading and viewing various document or media files</li>
<li><strong>Impact:</strong> Various results; in the worst case, an attacker executes code on your user’s computer</li>
<li><strong>What to do:</strong> OS X administrators should download, test and install OS X 10.7.3 or Security Update 2012-001 as soon as possible, or let Apple’s Software updater do it for you.</li>
</ul>
<h3>Exposure:</h3>
<p>Today, Apple released a <a href="http://support.apple.com/kb/HT5130">security update</a> to fix vulnerabilities in all current versions of OS X. The update fixes around 52 (number based on <a href="http://cve.mitre.org/">CVE-ID</a>s) security issues in 27 components that ship as part of OS X or OS X Server, including Apache, Quicktime, and Time Machine. Some of the fixed vulnerabilities include:</p>
<ul>
<li><strong>Multiple ImageIO Buffer Overflow Vulnerability.</strong> ImageIO is one of the components that helps OS X handle various image file types. Unfortunately, it also suffers from various security vulnerabilities (including some <a href="http://www.watchguard.com/glossary/b.asp#buffer_overflow">buffer overflow</a> vulnerabilities) involving the way it handles certain types of image files. Though these vulnerabilities differ technically, they generally share the same scope and impact. If an attacker can get a victim to view a specially crafted image file (perhaps hosted on a malicious website), he could exploit any of these flaws to either crash an application or to execute attack code on the victim’s computer. By default, the attacker would only execute code with that user’s privileges. The affected image types include <a href="http://en.wikipedia.org/wiki/TIFF">TIFF</a> and <a href="http://en.wikipedia.org/wiki/Portable_Network_Graphics">PNG</a>.</li>
</ul>
<ul>
<li><strong>CoreAudio Buffer Overflow Vulnerability.</strong> CoreAudio is a component that helps OS X play audio content. It suffers from a buffer overflow vulnerability. By enticing you to play a specially crafted audio file, an attacker would exploit this flaw to either crash your system, or execute code with your privileges.</li>
</ul>
<ul>
<li><strong>Several Quicktime Vulnerabilities.</strong> Quicktime is the popular video and media player that ships with OS X (and iTunes). Quicktime suffers from six security issues (number based on <a href="http://cve.mitre.org/">CVE-ID</a>s) involving how it handles certain image and video files. While the vulnerabilities differ technically, they share the same basic scope and impact. If an attacker can trick one of your users into viewing a maliciously crafted image or video in QuickTime, she could exploit any of these flaws to execute code on that user’s computer, with that user’s privileges.</li>
</ul>
<p>Apple’s alert also describes many other code execution vulnerabilities, as well as some <a href="http://www.watchguard.com/glossary/d.asp#DoS">Denial of Service (DoS)</a> flaws, <a href="http://www.watchguard.com/glossary/e.asp#elevation">elevation of privilege</a> vulnerabilities, and information disclosure flaws. Components patched by this security update include:</p>
<table border="1" cellpadding="0">
<tbody>
<tr>
<td valign="top">Apache</td>
<td valign="top">ATS</td>
</tr>
<tr>
<td valign="top">CFNetwork</td>
<td valign="top">ColorSync</td>
</tr>
<tr>
<td>CoreAudio</td>
<td>CoreMedia</td>
</tr>
<tr>
<td valign="top">CoreText</td>
<td valign="top">CoreUI</td>
</tr>
<tr>
<td valign="top">curl</td>
<td valign="top">Data Security</td>
</tr>
<tr>
<td valign="top">dovecot</td>
<td valign="top">filecmds</td>
</tr>
<tr>
<td>ImageIO</td>
<td valign="top">Internet Sharing</td>
</tr>
<tr>
<td valign="top">Libinfo</td>
<td valign="top">libresolv</td>
</tr>
<tr>
<td valign="top">libsecurity</td>
<td valign="top">OpenGL</td>
</tr>
<tr>
<td valign="top">PHP</td>
<td valign="top">QuickTime</td>
</tr>
<tr>
<td>SquirrelMail</td>
<td>Subversion</td>
</tr>
<tr>
<td>Time Machine</td>
<td>Tomcat</td>
</tr>
<tr>
<td>WebDAV Sharing</td>
<td>Webmail</td>
</tr>
<tr>
<td>X11</td>
<td></td>
</tr>
</tbody>
</table>
<p>Please refer to Apple’s<a href="http://support.apple.com/kb/HT5130"> OS X 10.5.x and 10.6.x alert</a> for more details.</p>
<h3>Solution Path:</h3>
<p>Apple has released OS X Security Update 2012-001 and OS X 10.7.3 to fix these security issues. OS X administrators should download, test, and deploy the corresponding update as soon as they can, or let Apple&#8217;s automatic Software Update utility do it for you</p>
<ul>
<li><a href="http://support.apple.com/kb/DL1485">OS X Lion Update 10.7.3 (Client)</a></li>
<li><a href="http://support.apple.com/kb/DL1484">OS X Lion Update 10.7.3 (Client Combo)</a></li>
<li><a href="http://support.apple.com/kb/DL1486">OS X Lion Update 10.7.3 (Server)</a></li>
<li><a href="http://support.apple.com/kb/DL1487">OS X Lion Update 10.7.3 (Server) Combo</a></li>
<li><a href="http://support.apple.com/kb/DL1490">Security Update 2012-001 Server (Snow Leopard)</a></li>
<li><a href="http://support.apple.com/kb/DL1489">Security Update 2012-001 (Snow Leopard)</a></li>
</ul>
<p><strong>Note:</strong> Some of these updates are rather large (700MB or greater), and all require a reboot.</p>
<h3>For All Users:</h3>
<p>These flaws enable many diverse exploitation methods. Some of the exploits are local, meaning that your perimeter firewall never encounters the attack (unless you use firewalls internally between departments). Installing these updates, therefore, is the most secure course of action.</p>
<h3>Status:</h3>
<p>Apple has released updates to fix these flaws.</p>
<h3>References:</h3>
<ul>
<li><a href="http://support.apple.com/kb/HT5130">February 2012 OS X  Security Update</a></li>
</ul>
<p>This alert was researched and written by <a href="http://www.watchguard.com/archive/bios.asp">Corey Nachreiner, CISSP</a>. (<a href="http://twitter.com/SecAdept">@SecAdept</a>)</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/watchguardwire.wordpress.com/1362/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/watchguardwire.wordpress.com/1362/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/watchguardwire.wordpress.com/1362/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/watchguardwire.wordpress.com/1362/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/watchguardwire.wordpress.com/1362/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/watchguardwire.wordpress.com/1362/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/watchguardwire.wordpress.com/1362/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/watchguardwire.wordpress.com/1362/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/watchguardwire.wordpress.com/1362/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/watchguardwire.wordpress.com/1362/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/watchguardwire.wordpress.com/1362/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/watchguardwire.wordpress.com/1362/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/watchguardwire.wordpress.com/1362/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/watchguardwire.wordpress.com/1362/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1362&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=GvBeXI47WQE:vVCr9o-2HdE:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=GvBeXI47WQE:vVCr9o-2HdE:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=GvBeXI47WQE:vVCr9o-2HdE:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=GvBeXI47WQE:vVCr9o-2HdE:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=GvBeXI47WQE:vVCr9o-2HdE:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=GvBeXI47WQE:vVCr9o-2HdE:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=GvBeXI47WQE:vVCr9o-2HdE:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/WatchguardWire/~4/GvBeXI47WQE" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://watchguardsecuritycenter.com/2012/02/06/update-2012s-first-os-x-update-corrects-52-security-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/69e1f11be8245e0be517d6c0b4b630e3?s=96&amp;d=http%3A%2F%2Fs0.wp.com%2Fi%2Fmu.gif&amp;r=G" medium="image">
			<media:title type="html">coreynach</media:title>
		</media:content>
	<feedburner:origLink>http://watchguardsecuritycenter.com/2012/02/06/update-2012s-first-os-x-update-corrects-52-security-vulnerabilities/</feedburner:origLink></item>
		<item>
		<title>WatchGuard Security Week in Review: Episode 3</title>
		<link>http://feedproxy.google.com/~r/WatchguardWire/~3/5PqltHOyGwo/</link>
		<comments>http://watchguardsecuritycenter.com/2012/02/03/watchguard-security-week-in-review-episode-3/#comments</comments>
		<pubDate>Fri, 03 Feb 2012 15:24:51 +0000</pubDate>
		<dc:creator>Corey Nachreiner</dc:creator>
				<category><![CDATA[Editorial Articles]]></category>
		<category><![CDATA[Security Updates]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[breach]]></category>
		<category><![CDATA[DDoS]]></category>
		<category><![CDATA[OS X]]></category>
		<category><![CDATA[Patches]]></category>
		<category><![CDATA[Verisign]]></category>
		<category><![CDATA[vlog]]></category>
		<category><![CDATA[WatchGuard Security Week in Review]]></category>
		<category><![CDATA[Wordpress]]></category>

		<guid isPermaLink="false">http://watchguardsecuritycenter.com/?p=1343</guid>
		<description><![CDATA[Mass WordPress Site Hacks, OS X Update, and Major Verisign Breach This week&#8217;s WatchGuard Security Week in Review comes to you from on the road in Texas. I&#8217;m travelling this week to speak at various WatchGuard security events, but was still able to record an episode using my iPhone. You&#8217;ve got to love technology! That said, due [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1343&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<h3>Mass WordPress Site Hacks, OS X Update, and Major Verisign Breach</h3>
<p>This week&#8217;s WatchGuard Security Week in Review comes to you from on the road in Texas. I&#8217;m travelling this week to speak at various WatchGuard security events, but was still able to record an episode using my iPhone. You&#8217;ve got to love technology!</p>
<p>That said, due to my travel schedule on Friday, I had to produce this episode on Thursday. That means this episode could miss any big security stories that come out today. If that&#8217;s the case, I will update this post later to let you know about it</p>
<p>As usual, if you prefer text to video, check out the reference links below. We also love to hear from you, so if I can do anything to improve these weekly summaries for you, let me know in the comments section below. <em>(Video Runtime: 4:21)</em></p>
<span style="text-align:center; display: block;"><a href="http://watchguardsecuritycenter.com/2012/02/03/watchguard-security-week-in-review-episode-3/"><img src="http://img.youtube.com/vi/bFUpc8l11Sg/2.jpg" alt="" /></a></span>
<h4>Episode References:</h4>
<ul>
<li>Many WordPress 3.2.1 web sites hijacked:
<ul>
<li><a href="http://www.infoworld.com/d/security/hackers-infect-wordpress-321-blogs-distribute-tdss-rootkit-185370?">Hackers infect WordPress blogs</a>  - <em>InfoWorld</em></li>
</ul>
</li>
<li>Apple releases OS X security update:
<ul>
<li><a href="http://watchguardsecuritycenter.com/2012/02/01/2012s-first-os-x-update-corrects-52-security-vulnerabilities/">OS X update fixes 52 vulnerabilities</a> &#8211; <em>WatchGuard Security Center</em></li>
</ul>
</li>
<li>PC Anywhere patched:
<ul>
<li><a href="http://old.news.yahoo.com/s/nm/20120130/wr_nm/us_symantec_hacking">Symantec says PC Anywhere is safe</a> -<em> Yahoo News</em></li>
</ul>
</li>
<li>Anonymous is still at it:
<ul>
<li><a href="http://www.3news.co.nz/Hackers-attack-large-Brazilian-bank-site/tabid/417/articleID/241443/Default.aspx?">Anonymous Brazil DDoSes Brazilian banks</a> - <em>News.co.nz</em></li>
<li><em><a href="http://news.cnet.com/8301-1009_3-57368138-83/sopa-support-gets-ufc-president-hacked/?">Anonymous feuds with UFC president on Twitter</a> - <em>Cnet</em></em></li>
</ul>
</li>
<li>Verisign suffered multiple breaches in 2010:
<ul>
<li><a href="http://www.reuters.com/article/2012/02/02/us-hacking-verisign-idUSTRE8110Z820120202">Key Internet operator hit by hackers</a> &#8211; <em>Reuters</em></li>
</ul>
</li>
</ul>
<p>— <em><a href="http://www.watchguard.com/archive/bios.asp">Corey Nachreiner, CISSP</a></em> (<a href="http://twitter.com/SecAdept">@SecAdept</a>)</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/watchguardwire.wordpress.com/1343/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/watchguardwire.wordpress.com/1343/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/watchguardwire.wordpress.com/1343/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/watchguardwire.wordpress.com/1343/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/watchguardwire.wordpress.com/1343/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/watchguardwire.wordpress.com/1343/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/watchguardwire.wordpress.com/1343/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/watchguardwire.wordpress.com/1343/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/watchguardwire.wordpress.com/1343/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/watchguardwire.wordpress.com/1343/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/watchguardwire.wordpress.com/1343/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/watchguardwire.wordpress.com/1343/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/watchguardwire.wordpress.com/1343/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/watchguardwire.wordpress.com/1343/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1343&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=5PqltHOyGwo:tBr0iJObUlc:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=5PqltHOyGwo:tBr0iJObUlc:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=5PqltHOyGwo:tBr0iJObUlc:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=5PqltHOyGwo:tBr0iJObUlc:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=5PqltHOyGwo:tBr0iJObUlc:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=5PqltHOyGwo:tBr0iJObUlc:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=5PqltHOyGwo:tBr0iJObUlc:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/WatchguardWire/~4/5PqltHOyGwo" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://watchguardsecuritycenter.com/2012/02/03/watchguard-security-week-in-review-episode-3/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/69e1f11be8245e0be517d6c0b4b630e3?s=96&amp;d=http%3A%2F%2Fs0.wp.com%2Fi%2Fmu.gif&amp;r=G" medium="image">
			<media:title type="html">coreynach</media:title>
		</media:content>
	<feedburner:origLink>http://watchguardsecuritycenter.com/2012/02/03/watchguard-security-week-in-review-episode-3/</feedburner:origLink></item>
		<item>
		<title>2012′s First OS X Update Corrects 52 Security Vulnerabilities</title>
		<link>http://feedproxy.google.com/~r/WatchguardWire/~3/2uGjA95MIuI/</link>
		<comments>http://watchguardsecuritycenter.com/2012/02/01/2012s-first-os-x-update-corrects-52-security-vulnerabilities/#comments</comments>
		<pubDate>Thu, 02 Feb 2012 06:36:12 +0000</pubDate>
		<dc:creator>Corey Nachreiner</dc:creator>
				<category><![CDATA[Security Updates]]></category>
		<category><![CDATA[apple]]></category>
		<category><![CDATA[OS X]]></category>

		<guid isPermaLink="false">http://watchguardsecuritycenter.com/?p=1337</guid>
		<description><![CDATA[Summary: These vulnerabilities affect: All current versions of OS X 10.6.x (Snow Leopard) and OS X 10.7.x (Lion) How an attacker exploits them: Multiple vectors of attack, including enticing your users to visit a malicious web site, or into downloading and viewing various document or media files Impact: Various results; in the worst case, an [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1337&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<h3>Summary:</h3>
<ul>
<li><strong>These vulnerabilities affect:</strong> All current versions of OS X 10.6.x (Snow Leopard) and OS X 10.7.x (Lion)</li>
<li><strong>How an attacker exploits them:</strong> Multiple vectors of attack, including enticing your users to visit a malicious web site, or into downloading and viewing various document or media files</li>
<li><strong>Impact:</strong> Various results; in the worst case, an attacker executes code on your user’s computer</li>
<li><strong>What to do:</strong> OS X administrators should download, test and install OS X 10.7.3 or Security Update 2012-001 as soon as possible, or let Apple’s Software updater do it for you.</li>
</ul>
<h3>Exposure:</h3>
<p>Today, Apple released a <a href="http://support.apple.com/kb/HT5130">security update</a> to fix vulnerabilities in all current versions of OS X. The update fixes around 52 (number based on <a href="http://cve.mitre.org/">CVE-ID</a>s) security issues in 27 components that ship as part of OS X or OS X Server, including Apache, Quicktime, and Time Machine. Some of the fixed vulnerabilities include:</p>
<ul>
<li><strong>Multiple ImageIO Buffer Overflow Vulnerability.</strong> ImageIO is one of the components that helps OS X handle various image file types. Unfortunately, it also suffers from various security vulnerabilities (including some <a href="http://www.watchguard.com/glossary/b.asp#buffer_overflow">buffer overflow</a> vulnerabilities) involving the way it handles certain types of image files. Though these vulnerabilities differ technically, they generally share the same scope and impact. If an attacker can get a victim to view a specially crafted image file (perhaps hosted on a malicious website), he could exploit any of these flaws to either crash an application or to execute attack code on the victim’s computer. By default, the attacker would only execute code with that user’s privileges. The affected image types include <a href="http://en.wikipedia.org/wiki/TIFF">TIFF</a> and <a href="http://en.wikipedia.org/wiki/Portable_Network_Graphics">PNG</a>.</li>
</ul>
<ul>
<li><strong>CoreAudio Buffer Overflow Vulnerability.</strong> CoreAudio is a component that helps OS X play audio content. It suffers from a buffer overflow vulnerability. By enticing you to play a specially crafted audio file, an attacker would exploit this flaw to either crash your system, or execute code with your privileges.</li>
</ul>
<ul>
<li><strong>Several Quicktime Vulnerabilities.</strong> Quicktime is the popular video and media player that ships with OS X (and iTunes). Quicktime suffers from six security issues (number based on <a href="http://cve.mitre.org/">CVE-ID</a>s) involving how it handles certain image and video files. While the vulnerabilities differ technically, they share the same basic scope and impact. If an attacker can trick one of your users into viewing a maliciously crafted image or video in QuickTime, she could exploit any of these flaws to execute code on that user’s computer, with that user’s privileges.</li>
</ul>
<p>Apple’s alert also describes many other code execution vulnerabilities, as well as some <a href="http://www.watchguard.com/glossary/d.asp#DoS">Denial of Service (DoS)</a> flaws, <a href="http://www.watchguard.com/glossary/e.asp#elevation">elevation of privilege</a> vulnerabilities, and information disclosure flaws. Components patched by this security update include:</p>
<table border="1" cellpadding="0">
<tbody>
<tr>
<td valign="top">Apache</td>
<td valign="top">ATS</td>
</tr>
<tr>
<td valign="top">CFNetwork</td>
<td valign="top">ColorSync</td>
</tr>
<tr>
<td>CoreAudio</td>
<td>CoreMedia</td>
</tr>
<tr>
<td valign="top">CoreText</td>
<td valign="top">CoreUI</td>
</tr>
<tr>
<td valign="top">curl</td>
<td valign="top">Data Security</td>
</tr>
<tr>
<td valign="top">dovecot</td>
<td valign="top">filecmds</td>
</tr>
<tr>
<td>ImageIO</td>
<td valign="top">Internet Sharing</td>
</tr>
<tr>
<td valign="top">Libinfo</td>
<td valign="top">libresolv</td>
</tr>
<tr>
<td valign="top">libsecurity</td>
<td valign="top">OpenGL</td>
</tr>
<tr>
<td valign="top">PHP</td>
<td valign="top">QuickTime</td>
</tr>
<tr>
<td>SquirrelMail</td>
<td>Subversion</td>
</tr>
<tr>
<td>Time Machine</td>
<td>Tomcat</td>
</tr>
<tr>
<td>WebDAV Sharing</td>
<td>Webmail</td>
</tr>
<tr>
<td>X11</td>
<td></td>
</tr>
</tbody>
</table>
<p>Please refer to Apple’s<a href="http://support.apple.com/kb/HT5130"> OS X 10.5.x and 10.6.x alert</a> for more details.</p>
<h3>Solution Path:</h3>
<p>Apple has released OS X Security Update 2012-001 and OS X 10.7.3 to fix these security issues. OS X administrators should download, test, and deploy the corresponding update as soon as they can, or let Apple&#8217;s automatic Software Update utility do it for you</p>
<ul>
<li><a href="http://support.apple.com/kb/DL1485">OS X Lion Update 10.7.3 (Client)</a></li>
<li><a href="http://support.apple.com/kb/DL1484">OS X Lion Update 10.7.3 (Client Combo)</a></li>
<li><a href="http://support.apple.com/kb/DL1486">OS X Lion Update 10.7.3 (Server)</a></li>
<li><a href="http://support.apple.com/kb/DL1487">OS X Lion Update 10.7.3 (Server) Combo</a></li>
<li><a href="http://support.apple.com/kb/DL1490">Security Update 2012-001 Server (Snow Leopard)</a></li>
<li><a href="http://support.apple.com/kb/DL1489">Security Update 2012-001 (Snow Leopard)</a></li>
</ul>
<p><strong>Note:</strong> Some of these updates are rather large (700MB or greater), and all require a reboot.</p>
<h3>For All Users:</h3>
<p>These flaws enable many diverse exploitation methods. Some of the exploits are local, meaning that your perimeter firewall never encounters the attack (unless you use firewalls internally between departments). Installing these updates, therefore, is the most secure course of action.</p>
<h3>Status:</h3>
<p>Apple has released updates to fix these flaws.</p>
<h3>References:</h3>
<ul>
<li><a href="http://support.apple.com/kb/HT5130">February 2012 OS X  Security Update</a></li>
</ul>
<p>This alert was researched and written by <a href="http://www.watchguard.com/archive/bios.asp">Corey Nachreiner, CISSP</a>. (<a href="http://twitter.com/SecAdept">@SecAdept</a>)</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/watchguardwire.wordpress.com/1337/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/watchguardwire.wordpress.com/1337/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/watchguardwire.wordpress.com/1337/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/watchguardwire.wordpress.com/1337/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/watchguardwire.wordpress.com/1337/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/watchguardwire.wordpress.com/1337/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/watchguardwire.wordpress.com/1337/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/watchguardwire.wordpress.com/1337/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/watchguardwire.wordpress.com/1337/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/watchguardwire.wordpress.com/1337/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/watchguardwire.wordpress.com/1337/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/watchguardwire.wordpress.com/1337/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/watchguardwire.wordpress.com/1337/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/watchguardwire.wordpress.com/1337/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1337&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=2uGjA95MIuI:m6KEQSpiV-4:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=2uGjA95MIuI:m6KEQSpiV-4:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=2uGjA95MIuI:m6KEQSpiV-4:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=2uGjA95MIuI:m6KEQSpiV-4:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=2uGjA95MIuI:m6KEQSpiV-4:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=2uGjA95MIuI:m6KEQSpiV-4:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=2uGjA95MIuI:m6KEQSpiV-4:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/WatchguardWire/~4/2uGjA95MIuI" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://watchguardsecuritycenter.com/2012/02/01/2012s-first-os-x-update-corrects-52-security-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/69e1f11be8245e0be517d6c0b4b630e3?s=96&amp;d=http%3A%2F%2Fs0.wp.com%2Fi%2Fmu.gif&amp;r=G" medium="image">
			<media:title type="html">coreynach</media:title>
		</media:content>
	<feedburner:origLink>http://watchguardsecuritycenter.com/2012/02/01/2012s-first-os-x-update-corrects-52-security-vulnerabilities/</feedburner:origLink></item>
		<item>
		<title>Change Your Password Day: I Like It</title>
		<link>http://feedproxy.google.com/~r/WatchguardWire/~3/AFtwCFKewJI/</link>
		<comments>http://watchguardsecuritycenter.com/2012/02/01/change-your-password-day-i-like-it/#comments</comments>
		<pubDate>Thu, 02 Feb 2012 05:55:21 +0000</pubDate>
		<dc:creator>Corey Nachreiner</dc:creator>
				<category><![CDATA[Security Updates]]></category>
		<category><![CDATA[change your password day]]></category>
		<category><![CDATA[password]]></category>

		<guid isPermaLink="false">http://watchguardsecuritycenter.com/?p=1332</guid>
		<description><![CDATA[A tech blog I occasionally read, Gizmodo, has named today (February 1st)  Change Your Password Day. Though one might argue Gizmodo is not authoritative enough to get to pick official &#8220;Days&#8221; for us, I like the idea enough to support it. As Gizmodo points out, there have been a number of breaches lately where attackers [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1332&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>A tech blog I occasionally read, <a href="http://gizmodo.com">Gizmodo</a>, has named today (February 1st)  <a href="http://gizmodo.com/5879669/february-1-is-change-your-password-day-ive-decided">Change Your Password Day</a>. Though one might argue Gizmodo is not authoritative enough to get to pick official &#8220;Days&#8221; for us, I like the idea enough to support it.</p>
<p>As Gizmodo points out, there have been a number of breaches lately where attackers have gotten password databases from some pretty big companies, and these breaches will likely continue. Today is as good a day as any to start following better password creation and handling practices. I&#8217;ve pointed this fact out myself in a number of posts involving password losses, which I list below:</p>
<ul>
<li><a href="http://watchguardsecuritycenter.com/2012/01/17/use-the-zappos-breach-to-renew-your-password-strategy/">Zappos breach</a></li>
<li><a href="http://watchguardsecuritycenter.com/2011/04/28/huge-sony-psn-data-breach-what-should-i-do/">Sony PSN Breach</a></li>
<li><a href="http://watchguardsecuritycenter.com/2011/02/22/the-hbgary-vs-anonymous-saga-what-can-we-learn/">HBGary Breach</a></li>
</ul>
<p>In those posts, I share a number of password tips, but if you need more, you can also check out this <a href="http://www.watchguard.com/education/video/play.asp?vid=budlogsin">old video</a> we made on the subject.</p>
<p>In any case, I encourage you to participate in Change Your Password Day. That said, I&#8217;m posting this pretty late (due to business travel), so I also say let&#8217;s extend Change Your Password Day to February 2nd as well. –  <a href="http://www.watchguard.com/archive/bios.asp">Corey Nachreiner, CISSP</a>. (<a href="http://twitter.com/SecAdept">@SecAdept</a>)</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/watchguardwire.wordpress.com/1332/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/watchguardwire.wordpress.com/1332/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/watchguardwire.wordpress.com/1332/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/watchguardwire.wordpress.com/1332/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/watchguardwire.wordpress.com/1332/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/watchguardwire.wordpress.com/1332/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/watchguardwire.wordpress.com/1332/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/watchguardwire.wordpress.com/1332/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/watchguardwire.wordpress.com/1332/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/watchguardwire.wordpress.com/1332/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/watchguardwire.wordpress.com/1332/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/watchguardwire.wordpress.com/1332/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/watchguardwire.wordpress.com/1332/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/watchguardwire.wordpress.com/1332/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1332&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=AFtwCFKewJI:gJx28jRNHKk:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=AFtwCFKewJI:gJx28jRNHKk:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=AFtwCFKewJI:gJx28jRNHKk:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=AFtwCFKewJI:gJx28jRNHKk:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=AFtwCFKewJI:gJx28jRNHKk:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=AFtwCFKewJI:gJx28jRNHKk:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=AFtwCFKewJI:gJx28jRNHKk:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/WatchguardWire/~4/AFtwCFKewJI" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://watchguardsecuritycenter.com/2012/02/01/change-your-password-day-i-like-it/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/69e1f11be8245e0be517d6c0b4b630e3?s=96&amp;d=http%3A%2F%2Fs0.wp.com%2Fi%2Fmu.gif&amp;r=G" medium="image">
			<media:title type="html">coreynach</media:title>
		</media:content>
	<feedburner:origLink>http://watchguardsecuritycenter.com/2012/02/01/change-your-password-day-i-like-it/</feedburner:origLink></item>
		<item>
		<title>Radio Free Security Returns: January 2012 Episode</title>
		<link>http://feedproxy.google.com/~r/WatchguardWire/~3/vU_IKv1F62I/</link>
		<comments>http://watchguardsecuritycenter.com/2012/01/30/radio-free-security-returns-january-2012-episode/#comments</comments>
		<pubDate>Mon, 30 Jan 2012 20:28:12 +0000</pubDate>
		<dc:creator>Corey Nachreiner</dc:creator>
				<category><![CDATA[Editorial Articles]]></category>
		<category><![CDATA[APT]]></category>
		<category><![CDATA[Cyberwar]]></category>
		<category><![CDATA[DLP]]></category>
		<category><![CDATA[Facebook Attacks]]></category>
		<category><![CDATA[podcast]]></category>
		<category><![CDATA[Radio Free Security]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[VoIP]]></category>

		<guid isPermaLink="false">http://watchguardsecuritycenter.com/?p=1306</guid>
		<description><![CDATA[2011 Security Predictions in Review Radio Free Security is back! For the new listeners out there, Radio Free Security (RFS) is a monthly podcast, dedicated to spreading knowledge about network and information security, and to keeping busy IT administrators apprised of the latest security threats they face online. WatchGuard’s LiveSecurity team started RFS back in [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1306&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<h3>2011 Security Predictions in Review</h3>
<p>Radio Free Security is back!</p>
<p>For the new listeners out there, Radio Free Security (RFS) is a monthly podcast, dedicated to spreading knowledge about network and information security, and to keeping busy IT administrators apprised of the latest security threats they face online. WatchGuard’s LiveSecurity team started RFS back in January, 2007.  However, we&#8217;ve been off the air since 2009 &#8212; but that all changes today, with our first return episode!</p>
<p>In this return episode, we look back at WatchGuard’s 2011 security predictions. Every year, the WatchGuard security team and I pull out our magic tarot cards to try and predict the security threats and trends you can expect for the upcoming year. In this episode, Tim Helming, Ben Brobak, and I revisit these predictions, which include a wide range of topics (Cyberwar, APTs, and Facebook attacks to name a few). Did we call 2011 correctly, and what did we learn from the results? Listen below to find out.</p>
<p>In the future, I will post Radio Free Security&#8217;s monthly podcast to its <a href="http://feeds.feedburner.com/RadioFreeSecurity">original RSS feed</a>, which also links to an <a href="http://itunes.apple.com/us/podcast/radio-free-security/id215003777">iTunes version</a>. However, right now we are dusting off those old mechanisms, to get them up again. For now, you can listen to this month&#8217;s episode with the <a href="http://soundcloud.com/user6902247/radio-free-security-2011-1">SoundCloud link</a> below. If you are new to RFS, I also recommend you check out <a href="http://www.watchguard.com/education/radiofreesecurity.asp">our archive</a> (<a href="http://itunes.apple.com/us/podcast/radio-free-security/id215003777">iTunes archive</a>) of old shows. Though some of the Security Stories of the Month are old, the general security content and advice is still quite relevant.</p>
<p><strong>[UPDATE]</strong> The original SoundCloud link for this episode had a repeated segment (from 00:49:49 to 01:13:49). We have uploaded a fixed version of the episode. I&#8217;d like to thank <a href="https://twitter.com/pbrown811">@pdbrown811</a> for letting us know. If you downloaded the episode before, I recommend you download it again from the new link below. — <em><a href="http://www.watchguard.com/archive/bios.asp">Corey Nachreiner, CISSP</a></em> (<a href="http://twitter.com/SecAdept">@SecAdept</a>)</p>
<object height="81" width="100%"><param name="wmode" value="transparent"><param name="movie" value="http://player.soundcloud.com/player.swf?url=http%3A%2F%2Fapi.soundcloud.com%2Ftracks%2F35182857&amp;g=1&amp;show_comments=true&amp;auto_play=false&amp;color=ff7700"></param><embed height="81" src="http://player.soundcloud.com/player.swf?url=http%3A%2F%2Fapi.soundcloud.com%2Ftracks%2F35182857&amp;g=1&amp;show_comments=true&amp;auto_play=false&amp;color=ff7700" type="application/x-shockwave-flash" width="100%"> </embed> </object>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/watchguardwire.wordpress.com/1306/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/watchguardwire.wordpress.com/1306/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/watchguardwire.wordpress.com/1306/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/watchguardwire.wordpress.com/1306/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/watchguardwire.wordpress.com/1306/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/watchguardwire.wordpress.com/1306/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/watchguardwire.wordpress.com/1306/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/watchguardwire.wordpress.com/1306/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/watchguardwire.wordpress.com/1306/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/watchguardwire.wordpress.com/1306/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/watchguardwire.wordpress.com/1306/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/watchguardwire.wordpress.com/1306/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/watchguardwire.wordpress.com/1306/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/watchguardwire.wordpress.com/1306/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1306&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=vU_IKv1F62I:64R6st59tyc:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=vU_IKv1F62I:64R6st59tyc:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=vU_IKv1F62I:64R6st59tyc:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=vU_IKv1F62I:64R6st59tyc:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=vU_IKv1F62I:64R6st59tyc:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=vU_IKv1F62I:64R6st59tyc:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=vU_IKv1F62I:64R6st59tyc:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/WatchguardWire/~4/vU_IKv1F62I" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://watchguardsecuritycenter.com/2012/01/30/radio-free-security-returns-january-2012-episode/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/69e1f11be8245e0be517d6c0b4b630e3?s=96&amp;d=http%3A%2F%2Fs0.wp.com%2Fi%2Fmu.gif&amp;r=G" medium="image">
			<media:title type="html">coreynach</media:title>
		</media:content>
	<feedburner:origLink>http://watchguardsecuritycenter.com/2012/01/30/radio-free-security-returns-january-2012-episode/</feedburner:origLink></item>
		<item>
		<title>WatchGuard Security Week in Review: Episode 2</title>
		<link>http://feedproxy.google.com/~r/WatchguardWire/~3/QXHf3jA4KEM/</link>
		<comments>http://watchguardsecuritycenter.com/2012/01/27/watchguard-security-week-in-review-episode-2/#comments</comments>
		<pubDate>Fri, 27 Jan 2012 23:52:46 +0000</pubDate>
		<dc:creator>Corey Nachreiner</dc:creator>
				<category><![CDATA[Security Updates]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[Chrome]]></category>
		<category><![CDATA[Cyberwar]]></category>
		<category><![CDATA[DDoS]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[HD Moore]]></category>
		<category><![CDATA[Kelihos]]></category>
		<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Patches]]></category>
		<category><![CDATA[SCADA]]></category>
		<category><![CDATA[vlog]]></category>
		<category><![CDATA[WatchGuard Security Week in Review]]></category>

		<guid isPermaLink="false">http://watchguardsecuritycenter.com/?p=1299</guid>
		<description><![CDATA[Railway Hacks, VideoConferencing Espionage, and Security Professionals Gone Bad Another week, another WatchGuard Security Week in Review. While this week wasn&#8217;t quite as action packed as last, there&#8217;s plenty of security stories to cover in this episode. I summarize them in the  brisk video below (runtime: 6:03 minutes). If you prefer text to moving pictures, you [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1299&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<h3>Railway Hacks, VideoConferencing Espionage, and Security Professionals Gone Bad</h3>
<p>Another week, another WatchGuard Security Week in Review. While this week wasn&#8217;t quite as action packed as last, there&#8217;s plenty of security stories to cover in this episode. I summarize them in the  brisk video below (runtime: 6:03 minutes).</p>
<p>If you prefer text to moving pictures, you can also find a quick descriptions of these stories, as well as reference links, underneath the video. Let us know what you think in the comments.</p>
<span style="text-align:center; display: block;"><a href="http://watchguardsecuritycenter.com/2012/01/27/watchguard-security-week-in-review-episode-2/"><img src="http://img.youtube.com/vi/wqM8DT4ygH8/2.jpg" alt="" /></a></span>
<h4></h4>
<h4>Episode References:</h4>
<ul>
<li>Anonymous continues their online riot, taking down more recording industry sites, and defacing a US government internet security site:
<ul>
<li><a href="http://www.pcmag.com/article2/0,2817,2399185,00.asp">Anonymous takes out CBS.com</a> &#8211; <em>PC World</em></li>
<li><a href="http://www.techspot.com/news/47171-anonymous-hacks-ftc-website-onguardonlinegov.html">Anonymous defaces US government site</a> &#8211; <em>TechSpot</em></li>
<li><a href="http://www.us-cert.gov/cas/techalerts/TA12-024A.html">US-CERT Anonymous DDoS Advisory</a></li>
</ul>
</li>
<li>TSA claims Pacific Northwest railways fell victim to a cyberattack:
<ul>
<li><a href="http://www.infosecurity-magazine.com/view/23477/pacific-northwest-train-signals-disrupted-by-hacker-says-tsa/?">US railway signals disrupted by cyberattack</a> - <em>InfoSecurity</em></li>
<li><a href="http://www.eweek.com/c/a/Security/SCADA-Systems-in-Railways-Vulnerable-to-Attack-124045/">DHS later denies the attack</a> - <em>eWeek</em></li>
</ul>
</li>
<li>HD Moore discloses security risk with videoconferencing systems:
<ul>
<li><a href="http://www.nytimes.com/2012/01/23/technology/flaws-in-videoconferencing-systems-put-boardrooms-at-risk.html">Cameras open boardroom to hackers</a> -<em> New York Times</em></li>
</ul>
</li>
<li>Microsoft accuses ex-antivirus employee of creating Kelihos botnet:
<ul>
<li><a href="http://www.computerworld.com/s/article/9223667/Accused_Kelihos_botnet_maker_worked_for_two_security_firms">Botnet maker worked for security companies</a> &#8211; <em>Computer World</em></li>
</ul>
</li>
<li>Symantec warns customers to stop using PC Anywhere due to vulnerability:
<ul>
<li><a href="http://www.zdnet.co.uk/news/security-threats/2012/01/26/symantec-warns-customers-to-disable-pcanywhere-40094918/">Disable PC Anywhere</a> &#8211; <em>ZDNet</em></li>
<li><a href="http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&amp;pvid=security_advisory&amp;year=2012&amp;suid=20120124_00">Symantec Advisory</a></li>
</ul>
</li>
<li>Google Releases a Chrome security update:
<ul>
<li><a href="http://www.computerworld.com/s/article/9223672/Google_patches_several_serious_Chrome_bugs?">Google patches serious Chrome bugs</a> &#8211; <em>ComputerWorld</em></li>
</ul>
</li>
<li>EXTRA:  Attackers are exploiting recent Windows Media vulnerability (MS12-004). <em>This late breaking story didn&#8217;t make the video, but I felt I should include it here</em>:
<ul>
<li><a href="http://www.zdnet.com/blog/security/hackers-pounce-on-just-patched-windows-media-vulnerability/10213">Hackers pounce on Media Flaw</a> &#8211; ZDNet</li>
</ul>
</li>
</ul>
<p>— <em><a href="http://www.watchguard.com/archive/bios.asp">Corey Nachreiner, CISSP</a></em> (<a href="http://twitter.com/SecAdept">@SecAdept</a>)</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/watchguardwire.wordpress.com/1299/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/watchguardwire.wordpress.com/1299/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/watchguardwire.wordpress.com/1299/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/watchguardwire.wordpress.com/1299/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/watchguardwire.wordpress.com/1299/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/watchguardwire.wordpress.com/1299/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/watchguardwire.wordpress.com/1299/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/watchguardwire.wordpress.com/1299/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/watchguardwire.wordpress.com/1299/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/watchguardwire.wordpress.com/1299/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/watchguardwire.wordpress.com/1299/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/watchguardwire.wordpress.com/1299/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/watchguardwire.wordpress.com/1299/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/watchguardwire.wordpress.com/1299/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1299&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=QXHf3jA4KEM:hsb0A58OdNE:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=QXHf3jA4KEM:hsb0A58OdNE:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=QXHf3jA4KEM:hsb0A58OdNE:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=QXHf3jA4KEM:hsb0A58OdNE:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=QXHf3jA4KEM:hsb0A58OdNE:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=QXHf3jA4KEM:hsb0A58OdNE:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=QXHf3jA4KEM:hsb0A58OdNE:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/WatchguardWire/~4/QXHf3jA4KEM" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://watchguardsecuritycenter.com/2012/01/27/watchguard-security-week-in-review-episode-2/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/69e1f11be8245e0be517d6c0b4b630e3?s=96&amp;d=http%3A%2F%2Fs0.wp.com%2Fi%2Fmu.gif&amp;r=G" medium="image">
			<media:title type="html">coreynach</media:title>
		</media:content>
	<feedburner:origLink>http://watchguardsecuritycenter.com/2012/01/27/watchguard-security-week-in-review-episode-2/</feedburner:origLink></item>
		<item>
		<title>WatchGuard Releases v3.1.2 for WatchGuard SSL 100 and 560</title>
		<link>http://feedproxy.google.com/~r/WatchguardWire/~3/4q3p2qIk9Tc/</link>
		<comments>http://watchguardsecuritycenter.com/2012/01/24/watchguard-releases-v3-1-2-for-watchguard-ssl-100-and-560/#comments</comments>
		<pubDate>Wed, 25 Jan 2012 02:34:31 +0000</pubDate>
		<dc:creator>Corey Nachreiner</dc:creator>
				<category><![CDATA[WatchGuard Software]]></category>
		<category><![CDATA[SSL 100]]></category>
		<category><![CDATA[SSL 500]]></category>
		<category><![CDATA[SSL VPN Appliance]]></category>
		<category><![CDATA[Update]]></category>
		<category><![CDATA[WatchGuard]]></category>

		<guid isPermaLink="false">http://watchguardsecuritycenter.com/?p=1281</guid>
		<description><![CDATA[WatchGuard is pleased to announce the release of WatchGuard SSL OS v3.1.2 for the WatchGuard SSL 100 and SSL 560. The WatchGuard SSL appliances are easy-to-use, all-in-one, secure, remote access solutions for small to medium-sized businesses. WatchGuard SSL 100 supports up to 100 concurrent users to make secure connections. The SSL 560 appliance supports up [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1281&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>WatchGuard is pleased to announce the release of WatchGuard SSL OS v3.1.2 for the WatchGuard SSL 100 and SSL 560.</p>
<p>The WatchGuard SSL appliances are easy-to-use, all-in-one, secure, remote access solutions for small to medium-sized businesses. WatchGuard SSL 100 supports up to 100 concurrent users to make secure connections. The SSL 560 appliance supports up to 500 concurrent users. The WatchGuard SSL appliances deliver applications directly to the desktop of your remote employees to provide increased productivity—from anywhere, at anytime.</p>
<p>Highlights of the WatchGuard SSL OS v3.1.2 release include:</p>
<ul>
<li>Internet Explorer (IE) 9 support. You can now use IE9 to both configure the appliance&#8217;s WebUI and to access resources with the Access Client</li>
<li>The WebUI performs faster on SSL 100 devices</li>
<li>The Access Client has been improved to provide greater stability</li>
<li>Corrected various potential security vulnerabilities</li>
<li>Remote Desktop single sign-on now works with Windows Server 2008</li>
<li>The Web UI is now more stable, with improved error and exception handling</li>
<li> &#8230; and many other fixes &#8212; please see the <a href="https://www.watchguard.com/support/release-notes/ssl/3/en-US/EN_ReleaseNotes_SSL_3_1_2/index.html">Release Notes</a> for complete details.</li>
</ul>
<p>If you&#8217;re an SSL 100 or 560 appliance owner with an active LiveSecurity subscription, you can upgrade to SSL OS v3.1.2 free of charge.</p>
<h3>Does This Release Pertain to Me?</h3>
<p>SSL OS v3.1.2 is a scheduled maintenance release. If you have an SSL 100 or 560 appliance, and wish to take advantage of any of the enhancements listed above, or those mentioned in the Release Notes, you should consider upgrading to v3.1.2. Please read the <a href="https://www.watchguard.com/support/release-notes/ssl/3/en-US/EN_ReleaseNotes_SSL_3_1_2/index.html">Release Notes</a> before you upgrade, to understand what&#8217;s involved.</p>
<h3>How Do I Get the Release?</h3>
<p>WatchGuard SSL 100 and 560 owners who have a current LiveSecurity Service subscription can obtain this update without additional charge by downloading the applicable packages from the Articles &amp; Support section of WatchGuard’s Support Center, which also includes clear installation instructions. As always, if you need support, please enter a support incident online or call our support staff directly. (When you contact Technical Support, please have your registered Product Serial Number, LiveSecurity Key, or Partner ID available.)</p>
<ul>
<li>U.S. End Users: 877.232.3531</li>
<li>International End Users: +1.206.613.0456</li>
<li>Authorized WatchGuard Resellers: +1.206.521.8375</li>
</ul>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/watchguardwire.wordpress.com/1281/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/watchguardwire.wordpress.com/1281/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/watchguardwire.wordpress.com/1281/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/watchguardwire.wordpress.com/1281/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/watchguardwire.wordpress.com/1281/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/watchguardwire.wordpress.com/1281/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/watchguardwire.wordpress.com/1281/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/watchguardwire.wordpress.com/1281/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/watchguardwire.wordpress.com/1281/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/watchguardwire.wordpress.com/1281/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/watchguardwire.wordpress.com/1281/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/watchguardwire.wordpress.com/1281/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/watchguardwire.wordpress.com/1281/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/watchguardwire.wordpress.com/1281/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1281&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=4q3p2qIk9Tc:CCMlAyJ93No:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=4q3p2qIk9Tc:CCMlAyJ93No:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=4q3p2qIk9Tc:CCMlAyJ93No:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=4q3p2qIk9Tc:CCMlAyJ93No:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=4q3p2qIk9Tc:CCMlAyJ93No:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=4q3p2qIk9Tc:CCMlAyJ93No:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=4q3p2qIk9Tc:CCMlAyJ93No:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/WatchguardWire/~4/4q3p2qIk9Tc" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://watchguardsecuritycenter.com/2012/01/24/watchguard-releases-v3-1-2-for-watchguard-ssl-100-and-560/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/69e1f11be8245e0be517d6c0b4b630e3?s=96&amp;d=http%3A%2F%2Fs0.wp.com%2Fi%2Fmu.gif&amp;r=G" medium="image">
			<media:title type="html">coreynach</media:title>
		</media:content>
	<feedburner:origLink>http://watchguardsecuritycenter.com/2012/01/24/watchguard-releases-v3-1-2-for-watchguard-ssl-100-and-560/</feedburner:origLink></item>
		<item>
		<title>WatchGuard Releases Fireware XTM 11.3.5 for e-Series Appliances</title>
		<link>http://feedproxy.google.com/~r/WatchguardWire/~3/GKWbzz8drgs/</link>
		<comments>http://watchguardsecuritycenter.com/2012/01/24/watchguard-releases-fireware-xtm-11-3-5-for-e-series-appliances/#comments</comments>
		<pubDate>Wed, 25 Jan 2012 02:31:46 +0000</pubDate>
		<dc:creator>Corey Nachreiner</dc:creator>
				<category><![CDATA[WatchGuard Software]]></category>
		<category><![CDATA[11.3.5]]></category>
		<category><![CDATA[Fireware]]></category>
		<category><![CDATA[Update]]></category>
		<category><![CDATA[WatchGuard]]></category>

		<guid isPermaLink="false">http://watchguardsecuritycenter.com/?p=1272</guid>
		<description><![CDATA[WatchGuard is very pleased to announce that Fireware XTM 11.3.5, the latest operating system for our Firebox X e-Series appliances, is now available for download. Fireware XTM v11.3.5 is the newest operating system software release for Firebox X Peak, Core, and Edge e-Series appliances. Fireware XTM v11.3.5 demonstrates a continuing commitment to WatchGuard Firebox X [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1272&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>WatchGuard is very pleased to announce that Fireware XTM 11.3.5, the latest operating system for our Firebox X e-Series appliances, is now available for download.</p>
<p>Fireware XTM v11.3.5 is the newest operating system software release for Firebox X Peak, Core, and Edge e-Series appliances. Fireware XTM v11.3.5 demonstrates a continuing commitment to WatchGuard Firebox X e-Series customers, with a significant number of bug fixes and enhancements. It is primarily a sustaining release that resolves many known issues.</p>
<p><strong>NOTE:</strong> There is no new WatchGuard System Manager release to accompany Fireware XTM v11.3.5. You can either use WatchGuard System Manager v11.4.x-v11.5.x or WatchGuard System Manager v11.3.2 to connect to a Firebox e-Series device that runs Fireware XTM v11.3.5, although you must use WatchGuard System Manager v11.4.1 or higher if you want to use the Mobile VPN with IPSec Shrew Soft VPN client.</p>
<p>Some of XTM v11.3.5&#8242;s fixes and enhancements include:</p>
<ul>
<li>Various authentication enhancements, which improve Active Directory and Radius authentication support.</li>
<li>Improved PPPOE support in multi-WAN situations</li>
<li>Blocked Site entries can now accept a /32 subnet mask</li>
<li>Various FireCluster Improvements</li>
<li>Fixed a problem that prevented Gateway AV from scanning passive FTP connections</li>
<li>Various Mobile VPN with SSL improvements which improve the client&#8217;s overall interoperability</li>
<li> &#8230; and many other fixes &#8212; please see the <a href="http://www.watchguard.com/support/release-notes/xtm/11/en-US/EN_ReleaseNotes_FirewareXTM_11_3_5/index.html">Release Notes</a> for complete details.</li>
</ul>
<p>If you&#8217;re an active e-Series LiveSecurity subscriber, you can upgrade to Fireware XTM 11.3.5 free of charge.</p>
<h3>Does This Release Pertain to Me?</h3>
<p>Fireware XTM 11.3.5 is a sustaining release that contains a significant number of bug fixes and enhancements. If you have any Firebox e-Series appliances, and wish to take advantage of any of the enhancements listed above, or those mentioned in the Release Notes, you should consider upgrading to version 11.3.5. XTM appliance owners should not install 11.3.5, but rather stick with 11.5.x. Please read the <a href="http://www.watchguard.com/support/release-notes/xtm/11/en-US/EN_ReleaseNotes_FirewareXTM_11_3_5/index.html">Release Notes</a> before you upgrade, to understand what&#8217;s involved.</p>
<h3>How Do I Get the Release?</h3>
<p>XTM series or Firebox e-Series owners who have a current LiveSecurity Service subscription can obtain this update without additional charge by downloading the applicable packages from the Articles &amp; Support section of WatchGuard’s Support Center, which also includes clear installation instructions. Keep in mind, Fireware XTM 11.3.5 is an e-Series only release, and does not work on more recent XTM appliances. As always, if you need support, please enter a support incident online or call our support staff directly. (When you contact Technical Support, please have your registered Product Serial Number, LiveSecurity Key, or Partner ID available.)</p>
<ul>
<li>U.S. End Users: 877.232.3531</li>
<li>International End Users: +1.206.613.0456</li>
<li>Authorized WatchGuard Resellers: +1.206.521.8375</li>
</ul>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/watchguardwire.wordpress.com/1272/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/watchguardwire.wordpress.com/1272/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/watchguardwire.wordpress.com/1272/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/watchguardwire.wordpress.com/1272/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/watchguardwire.wordpress.com/1272/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/watchguardwire.wordpress.com/1272/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/watchguardwire.wordpress.com/1272/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/watchguardwire.wordpress.com/1272/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/watchguardwire.wordpress.com/1272/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/watchguardwire.wordpress.com/1272/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/watchguardwire.wordpress.com/1272/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/watchguardwire.wordpress.com/1272/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/watchguardwire.wordpress.com/1272/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/watchguardwire.wordpress.com/1272/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1272&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=GKWbzz8drgs:5ZZVRA26d98:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=GKWbzz8drgs:5ZZVRA26d98:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=GKWbzz8drgs:5ZZVRA26d98:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=GKWbzz8drgs:5ZZVRA26d98:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=GKWbzz8drgs:5ZZVRA26d98:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=GKWbzz8drgs:5ZZVRA26d98:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=GKWbzz8drgs:5ZZVRA26d98:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/WatchguardWire/~4/GKWbzz8drgs" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://watchguardsecuritycenter.com/2012/01/24/watchguard-releases-fireware-xtm-11-3-5-for-e-series-appliances/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/69e1f11be8245e0be517d6c0b4b630e3?s=96&amp;d=http%3A%2F%2Fs0.wp.com%2Fi%2Fmu.gif&amp;r=G" medium="image">
			<media:title type="html">coreynach</media:title>
		</media:content>
	<feedburner:origLink>http://watchguardsecuritycenter.com/2012/01/24/watchguard-releases-fireware-xtm-11-3-5-for-e-series-appliances/</feedburner:origLink></item>
		<item>
		<title>WatchGuard Security Week in Review: Episode 1</title>
		<link>http://feedproxy.google.com/~r/WatchguardWire/~3/vNDGn61Fbpk/</link>
		<comments>http://watchguardsecuritycenter.com/2012/01/23/watchguard-security-week-in-review-episode-1/#comments</comments>
		<pubDate>Mon, 23 Jan 2012 19:50:49 +0000</pubDate>
		<dc:creator>Corey Nachreiner</dc:creator>
				<category><![CDATA[Security Updates]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[Cyberwar]]></category>
		<category><![CDATA[lulzsec]]></category>
		<category><![CDATA[Oracle]]></category>
		<category><![CDATA[Patches]]></category>
		<category><![CDATA[vlog]]></category>
		<category><![CDATA[WatchGuard Security Week in Review]]></category>
		<category><![CDATA[Zappos]]></category>

		<guid isPermaLink="false">http://watchguardsecuritycenter.com/?p=1261</guid>
		<description><![CDATA[Zappos Breach, Middle Eastern Cyberwar, Anonymous Returns, &#38; More Welcome to my first ever episode of WatchGuard Security Week in Review. This vlog &#8212; which I hope to bring you weekly &#8212; is dedicated to quickly summarizing the biggest network and information security stories from each week. When appropriate, I&#8217;ll also share quick tips on [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1261&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<h3>Zappos Breach, Middle Eastern Cyberwar, Anonymous Returns, &amp; More</h3>
<p>Welcome to my first ever episode of WatchGuard Security Week in Review. This vlog &#8212; which I hope to bring you weekly &#8212; is dedicated to quickly summarizing the biggest network and information security stories from each week. When appropriate, I&#8217;ll also share quick tips on how you can protect yourself from some of the threats I talk about.</p>
<p>Normally, I plan to post this weekly vlog late Friday. However, I posted last week&#8217;s episode a bit late, due to unexpected production issues with my first attempt at making this. I believe I have my production wrinkles ironed out for next time. So expect the next episode this Friday.</p>
<p>You&#8217;ll find the first episode below. Let me know what you think by leaving a comment.</p>
<span style="text-align:center; display: block;"><a href="http://watchguardsecuritycenter.com/2012/01/23/watchguard-security-week-in-review-episode-1/"><img src="http://img.youtube.com/vi/0nB39EO4SfA/2.jpg" alt="" /></a></span>
<h4></h4>
<h4>Episode References:</h4>
<ul>
<li>Zappos Breach
<ul>
<li><a href="http://blogs.zappos.com/securityemail">Zappos Email</a></li>
<li><a href="http://isc.sans.edu/diary.html?storyid=12406">Sans ISC Diary Post</a></li>
<li><a href="http://www.techspot.com/news/47060-amazon-owned-zappos-hacked-24-million-accounts-compromised.html?">Techspot Article</a></li>
</ul>
</li>
<li>Oracle Patch Day
<ul>
<li><a href="http://www.oracle.com/technetwork/topics/security/cpujan2012-366304.html">Oracle Patch Summary</a></li>
<li><a href="http://www.infoworld.com/d/security/oracle-issue-78-patches-including-27-mysql-184119?">InfoWorld Article</a></li>
</ul>
</li>
<li>Middle Eastern Cyberwar
<ul>
<li><a href="http://thenextweb.com/me/2012/01/18/everything-you-need-to-know-about-the-ongoing-israeli-saudi-hacker-struggle/?">Great The Next Web Article on Middle Eastern Cyberwar</a></li>
</ul>
</li>
<li>Anonymous Returns (Megaupload Raid)
<ul>
<li><a href="http://gizmodo.com/5877679/anonymous-kills-department-of-justice-site-in-megaupload-revenge-strik">Gizmodo Article</a></li>
</ul>
</li>
<li>Koobface Gang Unveiled
<ul>
<li><a href="http://www.zdnet.co.uk/news/security/2012/01/17/koobface-botnet-gang-exposed-by-researchers-40094837/?">Zdnet Article</a></li>
<li><a href="http://www.dailymail.co.uk/sciencetech/article-2087915/Facebook-publishes-names-pictures-addresses-Russian-hackers-2M-Koobface-scam.html">DailyMail Article</a></li>
<li><a href="http://nakedsecurity.sophos.com/2012/01/17/how-koobface-malware-gang-unmasked/">Sophos Blog Post</a></li>
</ul>
</li>
</ul>
<p>.  — <em><a href="http://www.watchguard.com/archive/bios.asp">Corey Nachreiner, CISSP</a></em> (<a href="http://twitter.com/SecAdept">@SecAdept</a>)</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/watchguardwire.wordpress.com/1261/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/watchguardwire.wordpress.com/1261/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/watchguardwire.wordpress.com/1261/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/watchguardwire.wordpress.com/1261/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/watchguardwire.wordpress.com/1261/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/watchguardwire.wordpress.com/1261/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/watchguardwire.wordpress.com/1261/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/watchguardwire.wordpress.com/1261/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/watchguardwire.wordpress.com/1261/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/watchguardwire.wordpress.com/1261/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/watchguardwire.wordpress.com/1261/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/watchguardwire.wordpress.com/1261/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/watchguardwire.wordpress.com/1261/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/watchguardwire.wordpress.com/1261/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1261&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=vNDGn61Fbpk:S4o0MVVyCuA:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=vNDGn61Fbpk:S4o0MVVyCuA:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=vNDGn61Fbpk:S4o0MVVyCuA:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=vNDGn61Fbpk:S4o0MVVyCuA:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=vNDGn61Fbpk:S4o0MVVyCuA:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=vNDGn61Fbpk:S4o0MVVyCuA:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=vNDGn61Fbpk:S4o0MVVyCuA:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/WatchguardWire/~4/vNDGn61Fbpk" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://watchguardsecuritycenter.com/2012/01/23/watchguard-security-week-in-review-episode-1/feed/</wfw:commentRss>
		<slash:comments>11</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/69e1f11be8245e0be517d6c0b4b630e3?s=96&amp;d=http%3A%2F%2Fs0.wp.com%2Fi%2Fmu.gif&amp;r=G" medium="image">
			<media:title type="html">coreynach</media:title>
		</media:content>
	<feedburner:origLink>http://watchguardsecuritycenter.com/2012/01/23/watchguard-security-week-in-review-episode-1/</feedburner:origLink></item>
		<item>
		<title>Use the Zappos Breach to Renew Your Password Strategy</title>
		<link>http://feedproxy.google.com/~r/WatchguardWire/~3/fBAfpiTUQS8/</link>
		<comments>http://watchguardsecuritycenter.com/2012/01/17/use-the-zappos-breach-to-renew-your-password-strategy/#comments</comments>
		<pubDate>Tue, 17 Jan 2012 21:56:08 +0000</pubDate>
		<dc:creator>Corey Nachreiner</dc:creator>
				<category><![CDATA[Security Updates]]></category>
		<category><![CDATA[Best Practices]]></category>
		<category><![CDATA[OWASP]]></category>
		<category><![CDATA[passwords]]></category>
		<category><![CDATA[secure coding]]></category>
		<category><![CDATA[Zappos]]></category>

		<guid isPermaLink="false">http://watchguardsecuritycenter.com/?p=1249</guid>
		<description><![CDATA[Last Sunday, Zappos (a popular, Amazon-owned, online shoe reseller) warned its employees and customers that an attacker had gained access to their internal network, and made off with a bunch of sensitive customer information. The good news? The attacker did not gain access to any customer credit card info. The bad news? He or she [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1249&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Last Sunday, Zappos (a popular, Amazon-owned, online shoe reseller) <a href="http://blogs.zappos.com/securityemail">warned its employees and customers</a> that an attacker had gained access to their internal network, and made off with a bunch of sensitive customer information. The good news? The attacker did <strong>not</strong> gain access to any customer credit card info. The bad news? He or she did steal over 24 million users&#8217; names, addresses, phone numbers, email addresses, and encrypted or hashed passwords.</p>
<p>Zappos hasn&#8217;t released any technical details about the attack, and I don&#8217;t expect them to. If forced to guess, I&#8217;d assume it probably originated from some web application flaw, which is a pretty common vector these days. That&#8217;s why I often suggest that IT and web administrators focus their security resources on their web applications; both by encouraging <a title="OWASP" href="http://www.owasp.org">secure web coding practices</a>, and by leveraging security controls with application-layer inspection capabilities (such as the HTTP and HTTPS <a href="http://www.watchguard.com/products/proxy.asp">proxies</a> that WatchGuard&#8217;s<a href="http://www.watchguard.com/products/xtm-main.asp"> XTM appliances</a> offer). However, that&#8217;s not what I&#8217;m here to talk about today. Today, I want to talk about passwords.</p>
<p>I&#8217;ve talked about passwords many times before, but as a core principle of security (technically part of Authentication), the advice bears repeating. Here are some password-related tips; both general and related to password security breaches:</p>
<ul>
<li><strong>Change your password(s) after a security breach</strong> &#8211; If a site you use ever has a security breach where attackers gain access to passwords (hashed or not), change your password immediately. In Zappos case, they are forcing this advice by terminating old passwords. If you use Zappos, be sure to change your password now, before a bad guy does it for you.</li>
<li><strong>Use strong passwords</strong> &#8211; I believe passwords should be greater than 10 characters. One easy way you can create long passwords, with enough entropy, is by using passphrases, or more specifically something I call pass-sentences. WatchGuard&#8217;s <a href="http://www.watchguard.com/education/video/play.asp?vid=budlogsin">Bud Logs In</a> video talks about these concepts in more detail (and is good for basic endusers).</li>
<li><strong>Use different passphrases on different web sites</strong> &#8211; This is crucial aspect of password security, especially when considering these types of web breaches. If you, like most people, use the same password for many different web sites, the attacker that has Zappos&#8217; password archive now may have your password for all web sites. If you have been using the same password everywhere, not only should you change your Zappos password, but you should change your password on every site (and make it different this time). This breach situation is exactly why experts recommend you use different passwords everywhere. That said, many people find this advice hard to implement in practice; which brings me to the next tip&#8230;</li>
<li><strong>Leverage password vault software</strong> &#8211; Password vaults make it easier for you to manage multiple passwords securely. They are not perfect. If you use multiple machines and OSs, you may have trouble finding password management software that meets all your needs. Plus, password vaults become a single point of potential failure, as they almost literally store all the keys to your kingdom. It&#8217;s extremely important to use secure password vaults, and protect them. That said, they offer the only practical solution to managing multiple passwords today. This <a href="http://lifehacker.com/5529133/five-best-password-managers">article</a> suggests a few good ones to use (I have used 1password myself).</li>
</ul>
<div>None of this advice is ground -breaking.  I&#8217;ve mentioned it many times before, including during the <a href="http://watchguardsecuritycenter.com/2011/02/22/the-hbgary-vs-anonymous-saga-what-can-we-learn/">HBGary hacking incident</a>. However, some aspects of password security &#8212; particular the part about not reusing passwords &#8212; are admittedly hard for normal people to follow in the real world, because they can slow things down. I hope you use this Zappos breach to remind you of the benefits of following certain security best practices, even if they put small speed bumps in front of your typical business processes. Sometimes we need these speed bumps to prevent ourselves from crashing headlong into a brick wall.  — <em><a href="http://www.watchguard.com/archive/bios.asp">Corey Nachreiner, CISSP</a></em> (<a href="http://twitter.com/SecAdept">@SecAdept</a>)</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/watchguardwire.wordpress.com/1249/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/watchguardwire.wordpress.com/1249/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/watchguardwire.wordpress.com/1249/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/watchguardwire.wordpress.com/1249/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/watchguardwire.wordpress.com/1249/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/watchguardwire.wordpress.com/1249/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/watchguardwire.wordpress.com/1249/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/watchguardwire.wordpress.com/1249/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/watchguardwire.wordpress.com/1249/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/watchguardwire.wordpress.com/1249/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/watchguardwire.wordpress.com/1249/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/watchguardwire.wordpress.com/1249/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/watchguardwire.wordpress.com/1249/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/watchguardwire.wordpress.com/1249/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=watchguardsecuritycenter.com&amp;blog=13781276&amp;post=1249&amp;subd=watchguardwire&amp;ref=&amp;feed=1" width="1" height="1" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=fBAfpiTUQS8:GmoBS9bW5yc:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=fBAfpiTUQS8:GmoBS9bW5yc:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=fBAfpiTUQS8:GmoBS9bW5yc:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=fBAfpiTUQS8:GmoBS9bW5yc:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?i=fBAfpiTUQS8:GmoBS9bW5yc:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=fBAfpiTUQS8:GmoBS9bW5yc:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/WatchguardWire?a=fBAfpiTUQS8:GmoBS9bW5yc:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/WatchguardWire?d=yIl2AUoC8zA" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/WatchguardWire/~4/fBAfpiTUQS8" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://watchguardsecuritycenter.com/2012/01/17/use-the-zappos-breach-to-renew-your-password-strategy/feed/</wfw:commentRss>
		<slash:comments>12</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/69e1f11be8245e0be517d6c0b4b630e3?s=96&amp;d=http%3A%2F%2Fs0.wp.com%2Fi%2Fmu.gif&amp;r=G" medium="image">
			<media:title type="html">coreynach</media:title>
		</media:content>
	<feedburner:origLink>http://watchguardsecuritycenter.com/2012/01/17/use-the-zappos-breach-to-renew-your-password-strategy/</feedburner:origLink></item>
	</channel>
</rss>

