<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>From Information to Intelligence</title>
	
	<link>http://elie.im/blog</link>
	<description>Dealing with information in the digital age</description>
	<lastBuildDate>Wed, 28 Dec 2011 20:23:37 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3</generator>
		<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/inftoint" /><feedburner:info uri="inftoint" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><item>
		<title>Porn domain not that sexy: no rush to have .xxx</title>
		<link>http://feedproxy.google.com/~r/inftoint/~3/OOIQq8725kM/</link>
		<comments>http://elie.im/blog/web/porn-domain-not-that-sexy-no-rush-to-have-xxx/#comments</comments>
		<pubDate>Sat, 24 Dec 2011 00:14:31 +0000</pubDate>
		<dc:creator>Elie</dc:creator>
				<category><![CDATA[web]]></category>
		<category><![CDATA[.xxx]]></category>
		<category><![CDATA[statistic]]></category>
		<category><![CDATA[trend]]></category>

		<guid isPermaLink="false">http://elie.im/blog/?p=845</guid>
		<description><![CDATA[While their is a huge hype surrounding .xxx domains and companies rushing to buy them to protect their brand, it seems that registration data disagree with this.  My analysis of the 50000 most popular websites in the world shows that only 24% of them actually registered their .xxx domain. Since .xxx domain extension has been [...]]]></description>
			<content:encoded><![CDATA[<p>While their is a huge hype surrounding .xxx domains and companies rushing to buy them to protect their brand, it seems that registration data disagree with this.  My analysis of the 50000 most popular websites in the world shows that only 24% of them actually registered their .xxx domain.<br />
<span id="more-845"></span><br />
Since .xxx domain extension has been approved, the press keeps writing about companies rushing to buy them to protect their brand. For example back in July 2011, the telegraph had <a title="Companies rush to avoid .xxx embarrassment" href="http://www.telegraph.co.uk/technology/internet/8645854/Companies-rush-to-avoid-.xxx-embarrassment.html">an article</a> reporting that around 900 000 companies have expressed interest in buying .xxx domains. More recently the rumor had that the Vatican has lost their bid on the vatican.xxx domain,  whereas is was simply on the protected list (See <a title="Vatican.xxx not a porn site, Holy See happy to find" href="http://religion.blogs.cnn.com/2011/12/22/vatican-xxx-not-a-porn-site-holy-see-happy-to-find/" target="_blank">this article</a> for more details). Curious to see if the number of  .xxx registrations was on part with the hype, I wrote a small script to analyze how many of the 50 000 most popular websites (Alexa Ranking) did in fact register their .xxx domain.</p>
<h2>Methodology</h2>
<p>To test if a site has registered their .xxx counterpart, my script perform a whois query and record the answer: If the whois query return NOT FOUND, the domain is assumed free, otherwise the registrar info was recorded and stored to generate the following charts. The crawl was performed on the 26Th December (20 days after .xxx domains became available to the general public)</p>
<h2>How popular are .xxx domains ?</h2>
<p>The first question, I wanted to answer was how many of the 50000 most popular websites  on the planet did in fact registered their .xxx domain counterpart. The graph below show the cumulative percentage of the websites that did, in fact registered their .xxx domains.</p>
<p style="text-align: center;"><a href="http://elie.im/blog/web/porn-domain-not-that-sexy-no-rush-to-have-xxx/attachment/xxx-domain-alexa-top-50000-cumulative/" rel="attachment wp-att-846"><img class="size-full wp-image-846 aligncenter" title="xxx-domain-alexa-top-50000-cumulative" src="http://elie.im/blog/wp-content/uploads/2011/12/xxx-domain-alexa-top-50000-cumulative.png" alt="Cumulative % of the Alexa Top 50000 sites that did registered their XXX domain" width="550" height="467" /></a></p>
<p>As visible on the chart, if almost all  the top 100 sites (except weibo)  did registered their .xxx domains, the percentage quickly drop below 50% and then stabilize around 20%.</p>
<h2>When .xxx domains were registered ?</h2>
<p>The second interesting question is when did the companies ordered their .xxx domains ? Did they take advantage of the &#8220;<a title="wikipedia page on the .xxx domains" href="http://en.wikipedia.org/wiki/.xxx" target="_blank">sunset period</a>#&#8221; to register them early or did they wait the last minute ? Well as visible on the chart below, only 65% of them, did actually  take the time to register them before they the 6th December (Regardless of their real date, every .xxx pre-order are marked as been issued on Dec-1st on the whois data)</p>
<p style="text-align: center;"><a href="http://elie.im/blog/web/porn-domain-not-that-sexy-no-rush-to-have-xxx/attachment/xxx-domain-alexa-top-50000-registration-date/" rel="attachment wp-att-847"><img class="size-full wp-image-847 aligncenter" title="xxx-domain-alexa-top-50000-registration-date" src="http://elie.im/blog/wp-content/uploads/2011/12/xxx-domain-alexa-top-50000-registration-date.png" alt="XXX domain registration date for the Alexa Top 500000 sites" width="550" height="376" /></a></p>
<p>One piece of data missing here is how many of the 1595 domains registered on the 6th December are from the same owner than the real websites. I haven&#8217;t found a good way to automate this process, so if you have any idea on how to do it , I will be glad to do it. I might end-up using Mechanical Turk even-though it seems overkill.</p>
<h2>How made a ton of cash selling .xxx domains ?</h2>
<p>Last but not least who did profit the most of selling .xxx domain at 99$ a piece ? The ICM registry that officially operates the .xxx domain registration is the biggest winner with 72% of the sales, as visible on the graph below (careful the graph is in logarithmic scale). Every other domain got at most 3% of the sales. Note that this graph only display data for 8135 domains as the whois information did not return parsable data for the others.</p>
<p style="text-align: center;"><a href="http://elie.im/blog/web/porn-domain-not-that-sexy-no-rush-to-have-xxx/attachment/xxx-domain-by-registrar/" rel="attachment wp-att-848"><img class="aligncenter size-full wp-image-848" title="xxx-domain-by-registrar" src="http://elie.im/blog/wp-content/uploads/2011/12/xxx-domain-by-registrar.png" alt="XXX domain by registrar" width="550" height="503" /></a></p>
<p>Thanks for reading this post. If you like it please sharing it with the world, it makes me happy <img src='http://elie.im/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  You can follow me on Twitter <a onclick="_gaq.push(['_trackEvent', 'Follow', 'Twitter', 'Report'])" href="https://twitter.com/#!/elie" target="_blank">@elie</a> or on <a onclick="_gaq.push(['_trackEvent', 'Follow', 'Google+', 'Blog']);" href="https://plus.google.com/108412795118808315644/posts" target="_NEW">Google+</a></p>
<img src="http://feeds.feedburner.com/~r/inftoint/~4/OOIQq8725kM" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://elie.im/blog/web/porn-domain-not-that-sexy-no-rush-to-have-xxx/feed/</wfw:commentRss>
		<slash:comments>7</slash:comments>
		<feedburner:origLink>http://elie.im/blog/web/porn-domain-not-that-sexy-no-rush-to-have-xxx/</feedburner:origLink></item>
		<item>
		<title>Google Docs Used in a Spam Campaign</title>
		<link>http://feedproxy.google.com/~r/inftoint/~3/QHS1qKyIVjQ/</link>
		<comments>http://elie.im/blog/security/google-docs-used-in-a-spam-campaign/#comments</comments>
		<pubDate>Mon, 12 Dec 2011 09:15:31 +0000</pubDate>
		<dc:creator>Elie</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[spam]]></category>

		<guid isPermaLink="false">http://elie.im/blog/?p=806</guid>
		<description><![CDATA[It seems that today an old spamming technique is back from the dead with a new twist. Google docs spam is back but this time the spam is propagated via emails not the Google doc sharing feature. Today a spam email landed in my Gmail inbox. Because usually Gmail is very good at blocking spam, [...]]]></description>
			<content:encoded><![CDATA[<p>It seems that today an old spamming technique is back from the dead with a new twist. Google docs spam is back but this time the spam is propagated via emails not the Google doc sharing feature.<span id="more-806"></span></p>
<p>Today a spam email landed in my Gmail inbox. Because usually Gmail is very good at blocking spam, I took at look at it. This spam email simply contains link to a Google docs that contains the real spam that offers you to get a free diploma as visible in the screenshot below:</p>
<p><a href="http://elie.im/blog/security/google-docs-used-in-a-spam-campaign/attachment/googledocspam2/" rel="attachment wp-att-824"><img class="alignleft size-full wp-image-824" title="googledocspam2" src="http://elie.im/blog/wp-content/uploads/2011/12/googledocspam2.png" alt="" width="550" height="203" /></a></p>
<p><a title="Google Doc spamming" href="http://www.seroundtable.com/archives/019318.html" target="_blank">Back in 2008 </a>spammers used Google Docs to massively spam users by sharing unwanted documents with them. The documents ended-up in their Google doc home directory. For this new campaign, it seems that they are just sending regular emails with a Google doc link.</p>
<p>The two things I find interesting about this spam campaign is that:</p>
<p><a href="http://elie.im/blog/security/google-docs-used-in-a-spam-campaign/attachment/viewers-widget/" rel="attachment wp-att-840"><img class="alignleft size-full wp-image-840" title="viewers widget" src="http://elie.im/blog/wp-content/uploads/2011/12/viewers-widget.png" alt="" width="150" height="250" /></a>1) it seems that this type of spam effectively bypass the Gmail spam filter: A couple of my friends have confirmed that they also received the same type of spams and it has landed in their Gmail inbox as well.</p>
<p>2) Google doc display the number of viewers so you can see people come and go as they are lured to click on the link. I saw 7 other people taking a look at the document while writing this post (see the screenshot on the right) so it is clear that this campaign is active and &#8220;successful&#8221; As you can see, the viewers widget, also says that user 9923 and 2079 have opened/closed the document but I think it is a bug (9923 users seems a lot). I also wonder what is the click-rate through the link stored in the document (that will be nice to know).</p>
<p>What can we do about this ? Well you can do two things: first mark the email as spam and two mark the Google doc as spam by clicking on the report abuse in the help section as visible on the screenshot below:</p>
<p><a href="http://elie.im/blog/security/google-docs-used-in-a-spam-campaign/attachment/report-spam/" rel="attachment wp-att-822"><img class="alignleft size-full wp-image-822" title="report spam" src="http://elie.im/blog/wp-content/uploads/2011/12/report-spam.png" alt="" width="550" height="267" /></a></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>Thanks for reading this post. If you like it please sharing it with the world, it makes me happy <img src='http://elie.im/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  You can follow me on Twitter <a onclick="_gaq.push(['_trackEvent', 'Follow', 'Twitter', 'Report'])" href="https://twitter.com/#!/elie" target="_blank">@elie</a> or on <a onclick="_gaq.push(['_trackEvent', 'Follow', 'Google+', 'Blog']);" href="https://plus.google.com/108412795118808315644/posts" target="_NEW">Google+</a></p>
<img src="http://feeds.feedburner.com/~r/inftoint/~4/QHS1qKyIVjQ" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://elie.im/blog/security/google-docs-used-in-a-spam-campaign/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		<feedburner:origLink>http://elie.im/blog/security/google-docs-used-in-a-spam-campaign/</feedburner:origLink></item>
		<item>
		<title>What Phishing Sites Look Like ? (Study)</title>
		<link>http://feedproxy.google.com/~r/inftoint/~3/Ibz8UdHdT4Q/</link>
		<comments>http://elie.im/blog/security/what-phishing-sites-look-like-study/#comments</comments>
		<pubDate>Tue, 29 Nov 2011 06:52:00 +0000</pubDate>
		<dc:creator>Elie</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[scam]]></category>
		<category><![CDATA[web security]]></category>

		<guid isPermaLink="false">http://elie.im/blog/?p=731</guid>
		<description><![CDATA[In this post we are going to take a closer look on what are the current phishing tactics employed in the wild. The trends uncovered by analyzing our new data-set of 5000 recents phishing sites will change the way you think about phishing. One of my current research project, with Jing and a bunch of [...]]]></description>
			<content:encoded><![CDATA[<p>In this post we  are going to take a closer look on what are the current phishing tactics employed in the wild. The trends uncovered by analyzing our new data-set of 5000 recents phishing sites will change the way you think about phishing.<span id="more-731"></span></p>
<p>One of my current research project, with Jing and a bunch of people of the university of Michigan, is to develop an in-browser defense against phishing, that will be able to detect phishing sites as quickly as they are created.  Instead of relying on a black list, it will use vision and machine learning algorithms.</p>
<p>Before to set out on a journey to find the best way to do this,  we needed to understand why detecting phishing sites is so difficult. There is little information on how phishers operate in the wild so we ran our own experiment and analyzed around 5000 recent phishing websites. Turnout that the results of this preliminary analysis are interesting  by themselves and shed a new light on current phishers behaviors so I decided to share them with you via this blog post.</p>
<h2>Methodology</h2>
<p>Before delving into the results, let me explain how we got to them. First we collected, phishing urls via Phishtank which is the best resources to get phishing URLs. Next we used these URLs to feed our crawler, which took a screenshot and collected a bunch of information for each of these sites. Then we used Amazon Mechanical Turk (as usual <img src='http://elie.im/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ) to have human review each screenshot and augment our data-set with “human intelligence”. To make sure our data-set is clean, we had every phishing site screenshot analyzed by three different Turkers. Finally we processed the data reported by the Turkers to compute the results that we are going to discuss. In particular we discarded meaningless results and used a voting system to come-up with a stable data set. In then end, we ended-up having data about 1000 phishing websites.  It might not seems a lot of works but trust me, it took us a lot of effort to get there <img src='http://elie.im/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<h2>Type of Phishing</h2>
<p>There is two kind of phishing websites: fake sites and scam sites. Fake sites are phishing sites that clone the appearance of the targeted website in the hope you will confuse the two and enter  your credentials (login and password). Here is an example of a Paypal phishing site</p>
<h4>Paypal Fake website</h4>
<p style="text-align: center;"><a href="http://elie.im/blog/security/what-phishing-sites-look-like-study/attachment/paypal-fake/" rel="attachment wp-att-758"><img class="aligncenter size-large wp-image-758" title="paypal-fake" src="http://elie.im/blog/wp-content/uploads/2011/11/paypal-fake-600x494.png" alt="" width="480" height="395" /></a></p>
<p>Scam site try to talk you into entering your credentials for a dubious reason or another. The screenshot below show a phishing site that attempts to steal your MSN credentials via offering you a software that allows you to know who blocked you. Notice how the phisher, make clear that this is safe to use it &#8230;.</p>
<h4>MSN Credential phishing via a SCAM</h4>
<p><a href="http://elie.im/blog/security/what-phishing-sites-look-like-study/attachment/phishing-scam-msn2/" rel="attachment wp-att-786"><img class="aligncenter size-full wp-image-786" title="phishing-scam-msn2" src="http://elie.im/blog/wp-content/uploads/2011/11/phishing-scam-msn2.png" alt="" width="526" height="582" /></a></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>Accordingly the first question that comes to mind is which is the favority phishier tactic ? Faking or Scamming ? Well it is about equal (48.2%, 51.8%) as visible in the graph below:</p>
<p><a href="http://elie.im/blog/security/what-phishing-sites-look-like-study/attachment/phishing-type2/" rel="attachment wp-att-743"><img class="aligncenter size-full wp-image-743" title="phishing-type2" src="http://elie.im/blog/wp-content/uploads/2011/11/phishing-type2.png" alt="" width="488" height="359" /></a></p>
<h2>Phishing Sites Target Type</h2>
<p>The next question is what kind of sites phishers are targeting ? Are they trying to steal your bank account, your email, or your Facebook account ?<br />
As visible on the chart below, for those we were able to categorize, Without any surprise  financial services, like Paypal and Banks, are the most targeted. The next big target (no surprise here either) are social networks (Facebook, Orkut&#8230;). What is surprising is that the third big type of target, are online games (World of Warcraft in particular) not email accounts. One hypothesis, that explains this trend is that reselling stolen online goods is a lucrative business.</p>
<p><a href="http://elie.im/blog/security/what-phishing-sites-look-like-study/attachment/phishing-by-target2/" rel="attachment wp-att-742"><img class="aligncenter size-full wp-image-742" title="phishing-by-target2" src="http://elie.im/blog/wp-content/uploads/2011/11/phishing-by-target2.png" alt="" width="500" height="315" /></a></p>
<h2>Visual Similarity</h2>
<p>One other question, we asked Turkers is to rank  how visually similar fakes sites are to the target site they attempt to phish.  We asked to rank the fake phishing site on a scale from 1 to 5.  1 being completely different to 5 being close to a perfect copy. I was expecting to have a majority of sites to look very similar to their target. Oh boy, how wrong was I, as visible in the chart below in reality most fake sites are poorly executed (on purpose to avoid detection ?).</p>
<p><a href="http://elie.im/blog/security/what-phishing-sites-look-like-study/attachment/phishing-visual-similiarity4/" rel="attachment wp-att-750"><img class="aligncenter size-full wp-image-750" title="phishing-visual-similiarity4" src="http://elie.im/blog/wp-content/uploads/2011/11/phishing-visual-similiarity4.png" alt="" width="500" height="337" /></a></p>
<p>Here are some examples of phishing sites with different level of visual similarity:</p>
<h4>Eve-online phishing site (similarity 5/5 &#8211; high resemblance)</h4>
<p style="text-align: center;"><a href="http://elie.im/blog/security/what-phishing-sites-look-like-study/attachment/eve-online-phising/" rel="attachment wp-att-754"><img class="aligncenter size-large wp-image-754" title="eve-online-phising" src="http://elie.im/blog/wp-content/uploads/2011/11/eve-online-phising-600x550.png" alt="Visual similarity 5" width="480" height="440" /></a></p>
<h4>World of Warcraft phishing site (similarity 5/5 very similar)</h4>
<p style="text-align: center;"><a href="http://elie.im/blog/security/what-phishing-sites-look-like-study/attachment/wow-phishing/" rel="attachment wp-att-761"><img class="aligncenter size-large wp-image-761" title="wow-phishing" src="http://elie.im/blog/wp-content/uploads/2011/11/wow-phishing-600x576.png" alt="" width="480" height="461" /></a></p>
<h4>World of Warcraft phishing site (visual similarity 2/5 very few common point with the original site)</h4>
<h2><a href="http://elie.im/blog/security/what-phishing-sites-look-like-study/attachment/phishing-wow/" rel="attachment wp-att-760"><img class="aligncenter size-large wp-image-760" title="phishing-wow" src="http://elie.im/blog/wp-content/uploads/2011/11/phishing-wow-600x543.png" alt="" width="480" height="434" /></a></h2>
<h2>Why Detecting Phishing is Hard ?</h2>
<p>So why detecting phishing is hard ? Well the results of our analysis suggest at least two reasons: First many phishing sites (51.8%) are scam sites not fake sites which make them harder to classify because we don’t have a baseline for them (the real site). The second explanation is that those who attempt to fake a realsite are poorly executed and therefore are hard to recognize. While I still believe that  machine learning and vision algorithm can yield something (there are previous successful works on this), it is clear that we will need new ideas to deal with scam phishing sites  and poorly executed fake sites. Right now, I am thinking using image content extraction and spacial correlation but only time will tell if it will work. There is also probably more to the data that what I discussed, so if you have an idea let me know <img src='http://elie.im/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>Thanks for reading this post. If you like it please sharing it with the world, it makes me happy <img src='http://elie.im/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  You can follow me on Twitter  <a href="https://twitter.com/#!/elie" target="_blank" onclick="_gaq.push(['_trackEvent', 'Follow', 'Twitter', 'Report'])" >@elie</a> or on <a alt="Follow me on Google+" href="https://plus.google.com/108412795118808315644/posts" target="_NEW" onclick="_gaq.push(['_trackEvent', 'Follow', 'Google+', 'Blog']);">Google+</a></p>
<img src="http://feeds.feedburner.com/~r/inftoint/~4/Ibz8UdHdT4Q" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://elie.im/blog/security/what-phishing-sites-look-like-study/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		<feedburner:origLink>http://elie.im/blog/security/what-phishing-sites-look-like-study/</feedburner:origLink></item>
		<item>
		<title>Security and Privacy Top Headlines Nov 7th – Nov 20th</title>
		<link>http://feedproxy.google.com/~r/inftoint/~3/XY9wIBUwZV4/</link>
		<comments>http://elie.im/blog/reports/security-and-privacy-top-headlines-nov-7th-nov-20th/#comments</comments>
		<pubDate>Tue, 22 Nov 2011 04:44:22 +0000</pubDate>
		<dc:creator>Elie</dc:creator>
				<category><![CDATA[Reports]]></category>

		<guid isPermaLink="false">http://elie.im/blog/?p=719</guid>
		<description><![CDATA[Most interesting security and privacy news for period 7th November - 20th november]]></description>
			<content:encoded><![CDATA[<p>Most interesting security and privacy news for period 7th November &#8211; 20th november<span id="more-719"></span></p>
<h2>Table of Content</h2>
<table>
<tr>
<td> <a style="text-align:center" href="#highlights">Highlights</a></td>
<td> <a style="text-align:center" href="#top5">Most populars</a></td>
<td> <a style="text-align:center" href="#other">Others news</a></td>
</tr>
</table>
<h2 id="highlights">Highlights</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Stat of the week</b></span>       <meta itemprop="name" content="Microsoft aims to reduce Windows Update restarts | ZDNet UK" />        <span itemprop="headline"> 			89% of Windows 7 users have auto-updates enabled, only 4.9% never check for updates.             </span>       <a itemprop="url" href="http://t.co/KL1DpOpT" target="_BLANK">http://t.co/KL1DpOpT <span itemprop="interactionCount">(67 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/KL1DpOpT" data-text=" 			89% of Windows 7 users have auto-updates enabled, only 4.9% never check for updates.             " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Hack of the week</b></span>       <meta itemprop="name" content="New iOS Bug Lets Apps Run Unsigned Code | threatpost" />        <span itemprop="headline"> 			New iOS Bug Lets Apps Run Unsigned Code.                  </span>       <a itemprop="url" href="http://t.co/qNU8IKSy" target="_BLANK">http://t.co/qNU8IKSy <span itemprop="interactionCount">(528 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/qNU8IKSy" data-text=" 			New iOS Bug Lets Apps Run Unsigned Code.                  " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Vizualization of the week</b></span>       <meta itemprop="name" content="" />        <span itemprop="headline"> 			The evolution of the SSL lock icon (infographic).                 </span>       <a itemprop="url" href="http://t.co/Qhc5u7gM" target="_BLANK">http://t.co/Qhc5u7gM                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/Qhc5u7gM" data-text=" 			The evolution of the SSL lock icon (infographic).                 " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Tool of the week</b></span>       <meta itemprop="name" content="GPG4Browsers - Recurity Labs" />        <span itemprop="headline"> 			GPG prototype implementation in JavaScript, for use in Chrome Browser and WebMail.             </span>       <a itemprop="url" href="http://t.co/NlCvMNFk" target="_BLANK">http://t.co/NlCvMNFk <span itemprop="interactionCount">(54 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/NlCvMNFk" data-text=" 			GPG prototype implementation in JavaScript, for use in Chrome Browser and WebMail.             " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Epic fail of the week</b></span>       <meta itemprop="name" content="Hacker Says Texas Town Used Three Character Password To Secure Internet Facing SCADA System | threatpost" />        <span itemprop="headline"> 			Hacked Texan Water Infrastructure Had a 3 Character Password.             </span>       <a itemprop="url" href="http://t.co/yhlNKzdZ" target="_BLANK">http://t.co/yhlNKzdZ <span itemprop="interactionCount">(2017 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/yhlNKzdZ" data-text=" 			Hacked Texan Water Infrastructure Had a 3 Character Password.             " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Analysis of the week</b></span>       <meta itemprop="name" content="Fake Bank Of America Google+ Account Has 27 Times More Followers Than Real One - The Consumerist" />        <span itemprop="headline"> 			Fake Bank Of America Google+ Account Has 27 Times More Followers Than Real One.             </span>       <a itemprop="url" href="http://t.co/lZRg5OOi" target="_BLANK">http://t.co/lZRg5OOi <span itemprop="interactionCount">(569 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/lZRg5OOi" data-text=" 			Fake Bank Of America Google+ Account Has 27 Times More Followers Than Real One.             " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Report of the week</b></span>       <meta itemprop="name" content="" />        <span itemprop="headline"> 			Yes, Androidâ€™s new face unlock feature can be fooled with a photo.             </span>       <a itemprop="url" href="http://t.co/tDOxqfCC" target="_BLANK">http://t.co/tDOxqfCC <span itemprop="interactionCount">(246 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/tDOxqfCC" data-text=" 			Yes, Androidâ€™s new face unlock feature can be fooled with a photo.             " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>The good</b></span>       <meta itemprop="name" content="" />        <span itemprop="headline"> 			Firefox 8 arrives with improved add-on control.                 </span>       <a itemprop="url" href="http://t.co/Ik6xrvdW" target="_BLANK">http://t.co/Ik6xrvdW                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/Ik6xrvdW" data-text=" 			Firefox 8 arrives with improved add-on control.                 " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>The bad</b></span>       <meta itemprop="name" content="Zero-Day BIND Flaw Crashes DNS Servers - Dark Reading" />        <span itemprop="headline"> 			Zero-Day BIND Flaw Crashes DNS Servers.                 </span>       <a itemprop="url" href="http://t.co/H5KxeKlT" target="_BLANK">http://t.co/H5KxeKlT <span itemprop="interactionCount">(76 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/H5KxeKlT" data-text=" 			Zero-Day BIND Flaw Crashes DNS Servers.                 " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>The ugly</b></span>       <meta itemprop="name" content="Microsoft patch day fixes critical bug in TCP/IP stack - The H Security: News and Features" />        <span itemprop="headline"> 			Windows remote ICMP refCount overflow finally patched.  15 years leater winnuke was back from the grave&#8230;                </span>       <a itemprop="url" href="http://t.co/2RYOw3mK" target="_BLANK">http://t.co/2RYOw3mK <span itemprop="interactionCount">(9 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/2RYOw3mK" data-text=" 			Windows remote ICMP refCount overflow finally patched.  15 years leater winnuke was back from the grave...                " data-via="elie">tweet this news</a>   </div>
</p>
<h2 id="top5">The 5 most popular news of the week</h2>
<table>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>5299 clicks</b>:</span>       <meta itemprop="name" content="Malware signed with a governmental signing key - F-Secure Weblog : News from the Lab" />        <span itemprop="description"> 			A malware signed with a Malaysia governmental signing key is available in the wild.              </span>        <a itemprop="url" href="http://t.co/pZuMxeN0" target="_BLANK">http://t.co/pZuMxeN0</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/pZuMxeN0" data-text=" 			A malware signed with a Malaysia governmental signing key is available in the wild.              " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>2017 clicks</b>:</span>       <meta itemprop="name" content="Hacker Says Texas Town Used Three Character Password To Secure Internet Facing SCADA System | threatpost" />        <span itemprop="description"> 			Hacked Texan Water Infrastructure Had a 3 Character Password.             </span>        <a itemprop="url" href="http://t.co/yhlNKzdZ" target="_BLANK">http://t.co/yhlNKzdZ</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/yhlNKzdZ" data-text=" 			Hacked Texan Water Infrastructure Had a 3 Character Password.             " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>1323 clicks</b>:</span>       <meta itemprop="name" content="Official Google Blog: Google Music is open for business" />        <span itemprop="description"> 			Google Music is now open for business.                 </span>        <a itemprop="url" href="http://t.co/Df94lpyc" target="_BLANK">http://t.co/Df94lpyc</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/Df94lpyc" data-text=" 			Google Music is now open for business.                 " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>649 clicks</b>:</span>       <meta itemprop="name" content="Google vs. Facebook on Privacy and Security" />        <span itemprop="description"> 			Cool infographic: Google+ vs Facebook for security and privacy.                </span>        <a itemprop="url" href="http://t.co/MrrGyRNO" target="_BLANK">http://t.co/MrrGyRNO</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/MrrGyRNO" data-text=" 			Cool infographic: Google+ vs Facebook for security and privacy.                " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>569 clicks</b>:</span>       <meta itemprop="name" content="Fake Bank Of America Google+ Account Has 27 Times More Followers Than Real One - The Consumerist" />        <span itemprop="description"> 			Fake Bank Of America Google+ Account Has 27 Times More Followers Than Real One.             </span>        <a itemprop="url" href="http://t.co/lZRg5OOi" target="_BLANK">http://t.co/lZRg5OOi</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/lZRg5OOi" data-text=" 			Fake Bank Of America Google+ Account Has 27 Times More Followers Than Real One.             " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
</table>
<p><i>This top 5 was established based on bit.ly overall clicks data</i><br />
<br/><br/></p>
<div id="other">
<h2>Phishing, scam and spam</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 			Drug cartel release Anonymous hacker group member. True story or elaborate hoax ?               </span>       <a itemprop="url" href="http://t.co/MG2U0KDS" target="_BLANK">http://t.co/MG2U0KDS         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/MG2U0KDS" data-text=" 			Drug cartel release Anonymous hacker group member. True story or elaborate hoax ?               " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Google Promises to Protect 'Global Brands' From G+ Squatters  | threatpost" />        <span itemprop="headline"> 			Google Promises to Protect &#8216;Global Brands&#8217; From Google+ Squatters.               </span>       <a itemprop="url" href="http://t.co/CzCXgpSu" target="_BLANK">http://t.co/CzCXgpSu <span itemprop="interactionCount">(29 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/CzCXgpSu" data-text=" 			Google Promises to Protect 'Global Brands' From Google+ Squatters.               " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="FBI SCAM Email on the lose: FBI official notice | Cyber Warzone" />        <span itemprop="headline"> 			Funny FBI scam email. Get points for creative thinking and write up quality.             </span>       <a itemprop="url" href="http://t.co/TkFQEucz" target="_BLANK">http://t.co/TkFQEucz <span itemprop="interactionCount">(15 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/TkFQEucz" data-text=" 			Funny FBI scam email. Get points for creative thinking and write up quality.             " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 			A look at shaddy locksmith business.              </span>       <a itemprop="url" href="http://t.co/24Kf42jV" target="_BLANK">http://t.co/24Kf42jV         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/24Kf42jV" data-text=" 			A look at shaddy locksmith business.              " data-via="elie">tweet this news</a>   </div>
</p>
<h2>Security tool</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Tails, the incognito live system, gets 0.9 release - The H Security: News and Features" />        <span itemprop="headline"> 			Tails, the incognito live system, gets 0.9 release.               </span>       <a itemprop="url" href="http://t.co/lIprlLSm" target="_BLANK">http://t.co/lIprlLSm <span itemprop="interactionCount">(3 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/lIprlLSm" data-text=" 			Tails, the incognito live system, gets 0.9 release.               " data-via="elie">tweet this news</a>   </div>
</p>
<h2>Attack technique, exploit and vulnerability</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Mac OS X Sandbox Security Hole Uncovered | threatpost" />        <span itemprop="headline"> 			Mac OS X Sandbox Security Hole Uncovered.                </span>       <a itemprop="url" href="http://t.co/B0zavhb0" target="_BLANK">http://t.co/B0zavhb0 <span itemprop="interactionCount">(107 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/B0zavhb0" data-text=" 			Mac OS X Sandbox Security Hole Uncovered.                " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline">     Bold statement / China&#8217;s cyber-warfare capabilities are &#8216;fairly rudimentary&#8217;.              </span>       <a itemprop="url" href="http://t.co/St1dMhCY" target="_BLANK">http://t.co/St1dMhCY         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/St1dMhCY" data-text="     Bold statement / China's cyber-warfare capabilities are 'fairly rudimentary'.              " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="The Curious Case of Unpatchable Vulnerabilities - Dark Reading" />        <span itemprop="headline"> 			The Curious Case Of Unpatchable Vulnerabilities.               </span>       <a itemprop="url" href="http://t.co/yexcpwmP" target="_BLANK">http://t.co/yexcpwmP <span itemprop="interactionCount">(150 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/yexcpwmP" data-text=" 			The Curious Case Of Unpatchable Vulnerabilities.               " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 			Interesting paper WYSINWYX: What You See Is Not What You eXecute.             </span>       <a itemprop="url" href="http://t.co/JUpo2tTj" target="_BLANK">http://t.co/JUpo2tTj <span itemprop="interactionCount">(74 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/JUpo2tTj" data-text=" 			Interesting paper WYSINWYX: What You See Is Not What You eXecute.             " data-via="elie">tweet this news</a>   </div>
</p>
<h2>Data leak, Data breach and Statistic</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="http://speedy.sh/4x8gh/Sec-zweinsteindigitaal.com-50.000-users.html  http://spee - Pastebin.com" />        <span itemprop="headline"> 			Three more data breaches data available online. About 67K login/passwords leaked.               </span>       <a itemprop="url" href="http://t.co/82WAvl9P" target="_BLANK">http://t.co/82WAvl9P <span itemprop="interactionCount">(34 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/82WAvl9P" data-text=" 			Three more data breaches data available online. About 67K login/passwords leaked.               " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 			Use of Adobe Flash is slowly decreasing on Top 10,000 websites.              </span>       <a itemprop="url" href="http://t.co/FHtkrNJg" target="_BLANK">http://t.co/FHtkrNJg         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/FHtkrNJg" data-text=" 			Use of Adobe Flash is slowly decreasing on Top 10,000 websites.              " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 			Steam Web sites hacked, gamer data exposed.                 </span>       <a itemprop="url" href="http://t.co/W5S1bSXR" target="_BLANK">http://t.co/W5S1bSXR         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/W5S1bSXR" data-text=" 			Steam Web sites hacked, gamer data exposed.                 " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Survey: Half Of Firewall Rules Improperly Configured - Dark Reading" />        <span itemprop="headline"> 			Survey: Half Of Firewall Rules Improperly Configured.               </span>       <a itemprop="url" href="http://t.co/StIourVR" target="_BLANK">http://t.co/StIourVR <span itemprop="interactionCount">(46 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/StIourVR" data-text=" 			Survey: Half Of Firewall Rules Improperly Configured.               " data-via="elie">tweet this news</a>   </div>
</p>
<h2>Malware, scareware and other badware</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 			Most free Android anti-malware scanners &#8216;near to useless&#8217;.             </span>       <a itemprop="url" href="http://t.co/nyU0FSve" target="_BLANK">http://t.co/nyU0FSve         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/nyU0FSve" data-text=" 			Most free Android anti-malware scanners 'near to useless'.             " data-via="elie">tweet this news</a>   </div>
</p>
<h2>Privacy</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Research Finds that Privacy Tools Don't Work | Naked Security" />        <span itemprop="headline"> 			Research Finds that Privacy Tools Don&#8217;t Work.              </span>       <a itemprop="url" href="http://t.co/g3KLsM8P" target="_BLANK">http://t.co/g3KLsM8P <span itemprop="interactionCount">(62 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/g3KLsM8P" data-text=" 			Research Finds that Privacy Tools Don't Work.              " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Adblock Plus and (a little) more: Adblock Plus user survey results [Part 2]" />        <span itemprop="headline"> 			Eliminating distractions, speeding pages and improving security drive more users than privacy.                </span>       <a itemprop="url" href="http://t.co/94wTfPq9" target="_BLANK">http://t.co/94wTfPq9 <span itemprop="interactionCount">(5 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/94wTfPq9" data-text=" 			Eliminating distractions, speeding pages and improving security drive more users than privacy.                " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 			Busted! Two New Fed GPS Trackers Found on a US citizen SUV.                </span>       <a itemprop="url" href="http://t.co/uPRIdKuE" target="_BLANK">http://t.co/uPRIdKuE         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/uPRIdKuE" data-text=" 			Busted! Two New Fed GPS Trackers Found on a US citizen SUV.                " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 			NY State promised confidentiality to whistleblowers.             </span>       <a itemprop="url" href="http://t.co/9NtlWo4w" target="_BLANK">http://t.co/9NtlWo4w         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/9NtlWo4w" data-text=" 			NY State promised confidentiality to whistleblowers.             " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Amazon Kindle Fire launches, a second look at Silk privacy | Naked Security" />        <span itemprop="headline"> 			Amazon Kindle fire silk privacy might be what you expected.             </span>       <a itemprop="url" href="http://t.co/TLElvxni" target="_BLANK">http://t.co/TLElvxni <span itemprop="interactionCount">(24 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/TLElvxni" data-text=" 			Amazon Kindle fire silk privacy might be what you expected.             " data-via="elie">tweet this news</a>   </div>
</p>
<h2>Other</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Tour de France winner sentenced for hack of doping lab â€¢ The Register" />        <span itemprop="headline"> 			hilarious: Tour de France winner sentenced for hacking a doping lab.                </span>       <a itemprop="url" href="http://t.co/VXzRWWzF" target="_BLANK">http://t.co/VXzRWWzF <span itemprop="interactionCount">(93 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/VXzRWWzF" data-text=" 			hilarious: Tour de France winner sentenced for hacking a doping lab.                " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="AFSP: Facts and Figures: By Sex" />        <span itemprop="headline"> 			Women succeed at suicide only once in ~70 attempts (!!)  Men have an 8x higher success rate.              </span>       <a itemprop="url" href="http://t.co/t87cXuqv" target="_BLANK">http://t.co/t87cXuqv <span itemprop="interactionCount">(21 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/t87cXuqv" data-text=" 			Women succeed at suicide only once in ~70 attempts (!!)  Men have an 8x higher success rate.              " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Undiscovered Features: Smuggling data in pointers" />        <span itemprop="headline"> 			Interesting coding hack  Smuggling data in pointers.             </span>       <a itemprop="url" href="http://t.co/FxXZNIAg" target="_BLANK">http://t.co/FxXZNIAg <span itemprop="interactionCount">(43 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://t.co/FxXZNIAg" data-text=" 			Interesting coding hack  Smuggling data in pointers.             " data-via="elie">tweet this news</a>   </div>
</p>
</div>
<p>Thanks for reading this post. Share your thoughts on last week headline by leaving a comment below or sharing it with the world.<br /> You can subscribe to receive these report by <a href="http://feeds.feedburner.com/inftoint" target="_blank"   onclick="_gaq.push(['_trackEvent', 'Follow', 'RSS', 'Report']);">RSS</a> or <a href="http://eepurl.com/emqqc" target="blank"  onclick="_gaq.push(['_trackEvent', 'Follow', 'Mail', 'report']);>email</a>.<br />If you want to have these news in (almost) really time follow me on Twitter  <a href="https://twitter.com/#!/elie" target="_blank" onclick="_gaq.push(['_trackEvent', 'Follow', 'Twitter', 'Report'])" >@elie</a> or on <a href="https://www.facebook.com/pages/From-information-to-intelligence/226248194061627" target="_blank"  onclick="_gaq.push(['_trackEvent', 'Follow', 'Facebook', 'Report'])" >Facebook</a></p>
<img src="http://feeds.feedburner.com/~r/inftoint/~4/XY9wIBUwZV4" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://elie.im/blog/reports/security-and-privacy-top-headlines-nov-7th-nov-20th/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://elie.im/blog/reports/security-and-privacy-top-headlines-nov-7th-nov-20th/</feedburner:origLink></item>
		<item>
		<title>Evolution of the HTTPS lock icon (Infographic)</title>
		<link>http://feedproxy.google.com/~r/inftoint/~3/RgmZMlpXQFA/</link>
		<comments>http://elie.im/blog/security/evolution-of-the-https-lock-icon-infographic/#comments</comments>
		<pubDate>Fri, 18 Nov 2011 07:18:27 +0000</pubDate>
		<dc:creator>Elie</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[HTTPS]]></category>
		<category><![CDATA[SSL]]></category>
		<category><![CDATA[web security]]></category>

		<guid isPermaLink="false">http://elie.im/blog/?p=695</guid>
		<description><![CDATA[Since the introduction of HTTPS by Netscape, the lock icon have been the indicator of choice to tell users that their communication is secure. Over the years, this "prestigious" icon shape and position kept changing from browser to browser and from version to version so I made a couple of infographic to illustrate this. I hope you will enjoy them :)]]></description>
			<content:encoded><![CDATA[<p>Since the introduction of HTTPS by Netscape, the lock icon have been the indicator of choice to tell users that their communication is secure. Over the years, this &#8220;prestigious&#8221; icon shape and position kept changing from browser to browser and from version to version so I made a couple of infographics to illustrate this. I hope you will enjoy them <img src='http://elie.im/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /><br />
<span id="more-695"></span></p>
<h2>Evolution of the lock shape</h2>
<p>The first infographic below show the evolution of the lock icon itself. The first thing that infographic show is that beside Safari, every major browser vendor keeps revamping the lock icon from time to time. I have included Konqueror in the infographic because, it is the only that uses a shield as security indicator, despite users studies showing that the lock is the best indicator for SSL&#8230;</p>
<p>Don&#8217;t be surprise to not find Firefox 5+ in the infograhic, it was remove (you know have a blue box on the right of the URL when SSL is on)</p>
<p>Finally one thing that keeps puzzling me is why the Safari (every version) and Firefox icon (some version) are different depending of the OS ?</p>
<p><a href="http://elie.im/blog/security/evolution-of-the-https-lock-icon-infographic/attachment/ssl-lock-icon-history/" rel="attachment wp-att-696"><img class="aligncenter size-full wp-image-696" title="ssl-lock-icon-history" src="http://elie.im/blog/wp-content/uploads/2011/11/ssl-lock-icon-history.png" alt="The evolution of the SSL lock icon" width="442" height="339" /></a></p>
<h2>Evolution of the lock position</h2>
<p>&nbsp;</p>
<p>The second infographic show you where the lock is displayed in the browser.  One thing to note is that Safari icon position is different whether you use it on Windows or OSX.</p>
<p><a href="http://elie.im/blog/security/evolution-of-the-https-lock-icon-infographic/attachment/ssl-lock-position-evolution/" rel="attachment wp-att-697"><img class="aligncenter size-full wp-image-697" title="ssl-lock-position-evolution" src="http://elie.im/blog/wp-content/uploads/2011/11/ssl-lock-position-evolution.png" alt="SSL lock position evolution" width="542" height="455" /></a></p>
<p>Realizing the diversity of  lock shapes and positions makes me wondering if  it is not  one of the reason why users are confused and sometime have hard time to know if the connection is secure or not.  Maybe we should standardize the security indicator shape and position ?</p>
<p>Thanks for reading this post. If you like it please sharing it with the world, it makes me happy <img src='http://elie.im/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  You can follow me on Twitter  <a href="https://twitter.com/#!/elie" target="_blank" onclick="_gaq.push(['_trackEvent', 'Follow', 'Twitter', 'Report'])" >@elie</a> or on <a alt="Follow me on Google+" href="https://plus.google.com/108412795118808315644/posts" target="_NEW" onclick="_gaq.push(['_trackEvent', 'Follow', 'Google+', 'Blog']);">Google+</a></p>
<img src="http://feeds.feedburner.com/~r/inftoint/~4/RgmZMlpXQFA" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://elie.im/blog/security/evolution-of-the-https-lock-icon-infographic/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://elie.im/blog/security/evolution-of-the-https-lock-icon-infographic/</feedburner:origLink></item>
		<item>
		<title>Security and privacy top headlines October 31th – November 6th</title>
		<link>http://feedproxy.google.com/~r/inftoint/~3/_T70FVv1Q0I/</link>
		<comments>http://elie.im/blog/reports/security-and-privacy-top-headlines-october-31th-november-6th/#comments</comments>
		<pubDate>Mon, 07 Nov 2011 06:24:28 +0000</pubDate>
		<dc:creator>Elie</dc:creator>
				<category><![CDATA[Reports]]></category>

		<guid isPermaLink="false">http://elie.im/blog/?p=689</guid>
		<description><![CDATA[Most interesting security and pricacy news for week October 31th &#8211; November 6th Table of Content Highlights Most populars Others news Highlights Stat of the week 90% of thumb drives with a corporate logo dropped in a parking lot are plugged back in corporate computers.. http://bit.ly/sEyVup (155 clicks) &#160; tweet this news Attack technique of [...]]]></description>
			<content:encoded><![CDATA[<p>Most interesting security and pricacy news for week October 31th &#8211; November 6th<br />
<span id="more-689"></span><br />
<br /> <br />
<h2>Table of Content</h2>
<table>
<tr>
<td> <a style="text-align:center" href="#highlights">Highlights</a></td>
<td> <a style="text-align:center" href="#top5">Most populars</a></td>
<td> <a style="text-align:center" href="#other">Others news</a></td>
</tr>
</table>
<h2 id="highlights">Highlights</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Stat of the week</b></span>       <meta itemprop="name" content="HP Communities - You don't know where that's been! - Enterprise Business Community" />        <span itemprop="headline"> 		90% of thumb drives with a corporate logo dropped in a parking lot are plugged back in corporate computers..              </span>       <a itemprop="url" href="http://bit.ly/sEyVup" target="_BLANK">http://bit.ly/sEyVup <span itemprop="interactionCount">(155 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/sEyVup" data-text=" 		90% of thumb drives with a corporate logo dropped in a parking lot are plugged back in corporate computers..              " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Attack technique of the week</b></span>       <meta itemprop="name" content="" />        <span itemprop="headline"> 		The Pass-back-attack or how to attack a windows network by abusing printer credentials.              </span>       <a itemprop="url" href="http://bit.ly/uNn2Aq" target="_BLANK">http://bit.ly/uNn2Aq <span itemprop="interactionCount">(62 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/uNn2Aq" data-text=" 		The Pass-back-attack or how to attack a windows network by abusing printer credentials.              " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Analysis of the week</b></span>       <meta itemprop="name" content="Army of 'socialbots' steal gigabytes of Facebook user data â€¢ The Register" />        <span itemprop="headline">                 Researchers steal 250Gb of private Facebook profiles  in 8 weeks using only 100 bots                </span>       <a itemprop="url" href="http://bit.ly/vHF2wH" target="_BLANK">http://bit.ly/vHF2wH <span itemprop="interactionCount">(1749 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/vHF2wH" data-text="                 Researchers steal 250Gb of private Facebook profiles  in 8 weeks using only 100 bots                " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Epic fail of the week</b></span>       <meta itemprop="name" content="Hackers mistake French rugby site for German stock exchange â€¢ The Register" />        <span itemprop="headline">             Hilarious: Hackers mistake French rugby site (Dax rugby) for German stock exchange (DAX)             </span>       <a itemprop="url" href="http://bit.ly/rOkulU" target="_BLANK">http://bit.ly/rOkulU <span itemprop="interactionCount">(446 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/rOkulU" data-text="             Hilarious: Hackers mistake French rugby site (Dax rugby) for German stock exchange (DAX)             " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>The ugly</b></span>       <meta itemprop="name" content="" />        <span itemprop="headline"> 			KPN stop issuing SSL certs after breaking discovered. They have been hacked for 4 years.                </span>       <a itemprop="url" href="http://bit.ly/umHbYI" target="_BLANK">http://bit.ly/umHbYI <span itemprop="interactionCount">(29 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/umHbYI" data-text=" 			KPN stop issuing SSL certs after breaking discovered. They have been hacked for 4 years.                " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>The bad</b></span>       <meta itemprop="name" content="" />        <span itemprop="headline">                 The duqu trojan use a Windows 0day (kernel vulnerability).             </span>       <a itemprop="url" href="http://bit.ly/vGADQM" target="_BLANK">http://bit.ly/vGADQM <span itemprop="interactionCount">(39 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/vGADQM" data-text="                 The duqu trojan use a Windows 0day (kernel vulnerability).             " data-via="elie">tweet this news</a>   </div>
</p>
<h2 id="top5">The 5 most popular news of the week</h2>
<table>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>1749 clicks</b>:</span>       <meta itemprop="name" content="Army of 'socialbots' steal gigabytes of Facebook user data â€¢ The Register" />        <span itemprop="description">         Researchers steal 250Gb of private Facebook profiles  in 8 weeks using only 100 bots                </span>        <a itemprop="url" href="http://bit.ly/vHF2wH" target="_BLANK">http://bit.ly/vHF2wH</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/vHF2wH" data-text="         Researchers steal 250Gb of private Facebook profiles  in 8 weeks using only 100 bots                " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>1075 clicks</b>:</span>       <meta itemprop="name" content="AppleInsider | New Mac OS X Trojan horse hijacks GPU, spies and steals" />        <span itemprop="description"> 			New Mac OS X Trojan horse hijacks GPU and steals user data                 </span>        <a itemprop="url" href="http://bit.ly/usenDW" target="_BLANK">http://bit.ly/usenDW</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/usenDW" data-text=" 			New Mac OS X Trojan horse hijacks GPU and steals user data                 " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>696 clicks</b>:</span>       <meta itemprop="name" content="Duqu: Questions and Answers - F-Secure Weblog : News from the Lab" />        <span itemprop="description"> 			Must read: The sophos FAQ on the Duqu (which is totally hilarious). For example: &#8220;Can I patch my computer. No You can&#8217;t&#8221;.             </span>        <a itemprop="url" href="http://bit.ly/tXWOPj" target="_BLANK">http://bit.ly/tXWOPj</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/tXWOPj" data-text=" 			Must read: The sophos FAQ on the Duqu (which is totally hilarious). For example: "Can I patch my computer. No You can't".             " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>446 clicks</b>:</span>       <meta itemprop="name" content="Hackers mistake French rugby site for German stock exchange â€¢ The Register" />        <span itemprop="description"> 			Hilarious: Hackers mistake French rugby site for German stock exchange.             </span>        <a itemprop="url" href="http://bit.ly/rOkulU" target="_BLANK">http://bit.ly/rOkulU</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/rOkulU" data-text=" 			Hilarious: Hackers mistake French rugby site for German stock exchange.             " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>417 clicks</b>:</span>       <meta itemprop="name" content="Social Media Safety - Don't Compromise Your Home to Criminals | Credit Sesame Blog" />        <span itemprop="description"> 			Cool infographic: Bulgars used social media to find targets             </span>        <a itemprop="url" href="http://bit.ly/v4UbjE" target="_BLANK">http://bit.ly/v4UbjE</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/v4UbjE" data-text=" 			Cool infographic: Bulgars used social media to find targets             " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
</table>
<p><i>This top 5 was established based on bit.ly overall clicks data</i><br />
<br/><br/></p>
<div id="other">
<h2>Phishing, scam and spam</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Horrible blog going around about you? Or a Twitter phishing attack? | Naked Security" />        <span itemprop="headline">             New Twitter phishing attack : &#8220;Horrible blog going around about you&#8221;.                </span>       <a itemprop="url" href="http://bit.ly/sA9GW1" target="_BLANK">http://bit.ly/sA9GW1 <span itemprop="interactionCount">(242 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/sA9GW1" data-text="             New Twitter phishing attack : "Horrible blog going around about you".                " data-via="elie">tweet this news</a>   </div>
</p>
<h2>Security tool</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="PwnedList" />        <span itemprop="headline"> 		PwnedList to add automatic notifications of potential account compromises             </span>       <a itemprop="url" href="http://bit.ly/nvRxoP" target="_BLANK">http://bit.ly/nvRxoP <span itemprop="interactionCount">(206 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/nvRxoP" data-text=" 		PwnedList to add automatic notifications of potential account compromises             " data-via="elie">tweet this news</a>   </div>
</p>
<h2>Attack technique, exploit and vulnerability</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Hackers Timthumb Their Noses at Vulnerability to Compromise 1.2 Million Sites - Dark Reading" />        <span itemprop="headline">             A vulnerability in an obscure WordPress add-on is currently being used to compromise over 1M sites.             </span>       <a itemprop="url" href="http://bit.ly/sfGoMQ" target="_BLANK">http://bit.ly/sfGoMQ <span itemprop="interactionCount">(330 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/sfGoMQ" data-text="             A vulnerability in an obscure WordPress add-on is currently being used to compromise over 1M sites.             " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 		Stanford researchers demonstrate how to break popular captchas.             </span>       <a itemprop="url" href="http://on.mash.to/ugXI2I" target="_BLANK">http://on.mash.to/ugXI2I         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://on.mash.to/ugXI2I" data-text=" 		Stanford researchers demonstrate how to break popular captchas.             " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 		Must read for	anyone serious about web security @lcamtuf new book &#8220;the tangled web&#8221;                   </span>       <a itemprop="url" href="http://su.pr/1X3p0n" target="_BLANK">http://su.pr/1X3p0n         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://su.pr/1X3p0n" data-text=" 		Must read for	anyone serious about web security @lcamtuf new book "the tangled web"                   " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 			Erlang SSH predictable random sequence. The devil&#8217;s in the details when dealing with randomness and crypto.             </span>       <a itemprop="url" href="http://bit.ly/t0hYjM" target="_BLANK">http://bit.ly/t0hYjM <span itemprop="interactionCount">(12 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/t0hYjM" data-text=" 			Erlang SSH predictable random sequence. The devil's in the details when dealing with randomness and crypto.             " data-via="elie">tweet this news</a>   </div>
</p>
<h2>Data leak, Data breach and Statistic</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 		French Nuclear Company Areva victim of an apt for the last 2 years                 </span>       <a itemprop="url" href="http://bit.ly/rKWLcv" target="_BLANK">http://bit.ly/rKWLcv <span itemprop="interactionCount">(149 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/rKWLcv" data-text=" 		French Nuclear Company Areva victim of an apt for the last 2 years                 " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Anonymous Cancels Drug-Ring Attack - Slashdot" />        <span itemprop="headline"> 		 Anonymous Cancels Drug-Ring Attack. first signs of restraint. Are they afraid ?             </span>       <a itemprop="url" href="http://bit.ly/vRvUw6" target="_BLANK">http://bit.ly/vRvUw6 <span itemprop="interactionCount">(239 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/vRvUw6" data-text=" 		 Anonymous Cancels Drug-Ring Attack. first signs of restraint. Are they afraid ?             " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 			Nitro&#8217; Cyberespionage Attack Targets Chemical, Defense Firms. Attack traces back to China.                </span>       <a itemprop="url" href="http://bit.ly/tas3WI" target="_BLANK">http://bit.ly/tas3WI <span itemprop="interactionCount">(34 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/tas3WI" data-text=" 			Nitro' Cyberespionage Attack Targets Chemical, Defense Firms. Attack traces back to China.                " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline">             Video: We Are Legion: The Story of the Hacktivists and Anonymous  trailerno                </span>       <a itemprop="url" href="http://bit.ly/upSQ7y" target="_BLANK">http://bit.ly/upSQ7y <span itemprop="interactionCount">(12 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/upSQ7y" data-text="             Video: We Are Legion: The Story of the Hacktivists and Anonymous  trailerno                " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 			Adidas suffer &#8220;sophisticated&#8221; cyber attack.             </span>       <a itemprop="url" href="http://bbc.in/v6F2U2" target="_BLANK">http://bbc.in/v6F2U2         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bbc.in/v6F2U2" data-text=" 			Adidas suffer "sophisticated" cyber attack.             " data-via="elie">tweet this news</a>   </div>
</p>
<h2>Privacy</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 			CIA secretly monitors world on Twitter, Facebook  &#8211;    scary but sadely predictable               </span>       <a itemprop="url" href="http://on.msnbc.com/tJu5oo" target="_BLANK">http://on.msnbc.com/tJu5oo         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://on.msnbc.com/tJu5oo" data-text=" 			CIA secretly monitors world on Twitter, Facebook  -    scary but sadely predictable               " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Hitachi develops RFID powder ~ Pink Tentacle" />        <span itemprop="headline"> 		RFID spying dust ! pretty cool and scary.               </span>       <a itemprop="url" href="http://bit.ly/rq7NQG" target="_BLANK">http://bit.ly/rq7NQG <span itemprop="interactionCount">(67 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/rq7NQG" data-text=" 		RFID spying dust ! pretty cool and scary.               " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline">                 The best take on SSL and Governements issues is Chris Soghoian and Sid Stamm paper on the subject.ca(             </span>       <a itemprop="url" href="http://bit.ly/vzBVYH" target="_BLANK">http://bit.ly/vzBVYH <span itemprop="interactionCount">(2 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/vzBVYH" data-text="                 The best take on SSL and Governements issues is Chris Soghoian and Sid Stamm paper on the subject.ca(             " data-via="elie">tweet this news</a>   </div>
</p>
<h2>Web stuff</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline"> 			Hobbist blogger have on average 847 Twitter followers, Pro-blogger 1674 &#8211;  (via @tmonhollon)                </span>       <a itemprop="url" href="http://bit.ly/uJNMHF" target="_BLANK">http://bit.ly/uJNMHF <span itemprop="interactionCount">(4 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/uJNMHF" data-text=" 			Hobbist blogger have on average 847 Twitter followers, Pro-blogger 1674 -  (via @tmonhollon)                " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline">             Improve your page speed by optimizing the head elements order an easy trick to implement                </span>       <a itemprop="url" href="http://su.pr/6nb3IL" target="_BLANK">http://su.pr/6nb3IL         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://su.pr/6nb3IL" data-text="             Improve your page speed by optimizing the head elements order an easy trick to implement                " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline">                     iOS 5.0.1 to fix Iphone battery issues                </span>       <a itemprop="url" href="http://bit.ly/sNKGWb" target="_BLANK">http://bit.ly/sNKGWb <span itemprop="interactionCount">(4 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/sNKGWb" data-text="                     iOS 5.0.1 to fix Iphone battery issues                " data-via="elie">tweet this news</a>   </div>
</p>
</div>
<p>Thanks for reading this post. Share your thoughts on last week news by leaving a comment below or sharing it with the world.<br /> You can subscribe to receive these report by <a href="http://feeds.feedburner.com/inftoint" target="_blank"   onclick="_gaq.push(['_trackEvent', 'Follow', 'RSS', 'Report']);">RSS</a> or <a href="http://eepurl.com/emqqc" target="blank"  onclick="_gaq.push(['_trackEvent', 'Follow', 'Mail', 'report']);>email</a>.<br />If you want to have these news in (almost) really time follow me on Twitter  <a href="https://twitter.com/#!/elie" target="_blank" onclick="_gaq.push(['_trackEvent', 'Follow', 'Twitter', 'Report'])" >@elie</a> or on <a href="https://www.facebook.com/pages/From-information-to-intelligence/226248194061627" target="_blank"  onclick="_gaq.push(['_trackEvent', 'Follow', 'Facebook', 'Report'])" >Facebook</a></p>
<img src="http://feeds.feedburner.com/~r/inftoint/~4/_T70FVv1Q0I" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://elie.im/blog/reports/security-and-privacy-top-headlines-october-31th-november-6th/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://elie.im/blog/reports/security-and-privacy-top-headlines-october-31th-november-6th/</feedburner:origLink></item>
		<item>
		<title>How to physically secure your credit card</title>
		<link>http://feedproxy.google.com/~r/inftoint/~3/658iKH3VjHg/</link>
		<comments>http://elie.im/blog/security/how-to-physically-secure-your-credit-card/#comments</comments>
		<pubDate>Mon, 17 Oct 2011 18:32:29 +0000</pubDate>
		<dc:creator>Elie</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[credit card]]></category>
		<category><![CDATA[physical security]]></category>

		<guid isPermaLink="false">http://elie.im/blog/?p=636</guid>
		<description><![CDATA[In this post I want to share with you the two simple steps I came up with to "harden"  my credit card security against tefth and duplication.   In a nutshell, this hardening technique works by removing all the extra information written on the credit card (signature and security code) that are not necessary for it work and are valuable to an "attacker". ]]></description>
			<content:encoded><![CDATA[<p>&nbsp;</p>
<p>In this post I want to share with you the two simple steps I came up with to &#8220;harden&#8221; my credit card security against theft and duplication. In a nutshell, this hardening technique works by removing all the extra information written on the credit card (signature and security code) that are not necessary for it work and are valuable to an &#8220;attacker&#8221;. <span id="more-636"></span> If you know another hardening technique please leave a comment or let me know via <a title="@elie on Twitter" href="https://twitter.com/#!/elie" target="_blank">Twitter</a>  / <a title="Elie on Google+" href="http://ly.tl/g" target="_blank">Google+</a></p>
<h3>Removing the security code</h3>
<p>Your credit card three digits security code is located at the back of your card as visible in the photo below:</p>
<p style="text-align: center;"><a href="http://elie.im/blog/security/how-to-physically-secure-your-credit-card/attachment/3/" rel="attachment wp-att-645"><img class="size-full wp-image-645 aligncenter" title="Where the secure code is located on the credit card" src="http://elie.im/blog/wp-content/uploads/2011/10/3.gif" alt="Where the secure code is located on the credit card" width="342" height="288" /></a></p>
<p>Its only purpose as far as I know is to &#8220;prove&#8221; while doing online payment that you &#8220;have&#8221; the original card as this security code is not contained in the data stored on your card magnetic strip/chip. The problem with having this code in plain sight is that any one who manipulate you card (waiter, cashier..) can easily copy it and then shop online with your credit card.<br />
Before erasing it from the card, make sure you copy this code in a safe location like your password manager BE CAREFUL where you store it as you need it for online shopping. Erasing this code is actually harder than you might think because it is engraved in the card so simply &#8220;blanking it&#8221; with a marker won&#8217;t be enough. So far, I had the most success by first scratch it with a nail-file and then blank it with a heavy marker. It is not perfect but it it is very very difficult to read it after this treatment.</p>
<p><a href="http://elie.im/blog/security/how-to-physically-secure-your-credit-card/attachment/nail-file/" rel="attachment wp-att-661"><img class="aligncenter size-medium wp-image-661" title="nail-file" src="http://elie.im/blog/wp-content/uploads/2011/10/nail-file-300x240.jpg" alt="" width="300" height="240" /></a></p>
<h3>Replacing the signature with the mention &#8220;SEE ID&#8221;</h3>
<p>The other part of the hardening process is to replace the signature in the back of the card the mention &#8220;SEE ID&#8221;. As far as I can tell, the rational behind having your signature at the back of your card (at least in the US where they generally don&#8217;t ask for a PIN code to make a purchase) is to allow cashiers to make sure you are the true owner of the card by comparing the receipt signature and the signature at the back of the card. This approach have obviously two flaws: First the person who stole the card, have plenty of time to look at the signature and learn how to forge it. Secondly the security of this approach rely on the fact that cashiers are able to detect forged signature in a blink of an eye and under bad lighting conditions … So instead of hoping that every cashiers is an expert in graphology it is actually better to ask them to compare the credit card name with a valid ID by writing the mention SEE ID on the back of the card.</p>
<p><a href="http://elie.im/blog/security/how-to-physically-secure-your-credit-card/attachment/add-see-id-to-your-card/" rel="attachment wp-att-672"><img class="aligncenter size-full wp-image-672" title="add-see-id-to-your-card" src="http://elie.im/blog/wp-content/uploads/2011/10/add-see-id-to-your-card.png" alt="" width="474" height="257" /></a></p>
<p>&nbsp;</p>
<h3>Return of experience</h3>
<p>I have been using the hardened credit card visible on the picture below for almost two years.</p>
<p><a href="http://elie.im/blog/security/how-to-physically-secure-your-credit-card/attachment/elie-cb-2/" rel="attachment wp-att-677"><img class="aligncenter size-full wp-image-677" title="elie-cb" src="http://elie.im/blog/wp-content/uploads/2011/10/elie-cb.png" alt="" width="300" height="197" /></a><br />
During this period of time, I never had any issue with it: I was always able to pay with it no matter which store or country (US, France, Germany, Italy, Indonesia, Canada…) I used it. The sad part of the story is that very few cashiers ever asked me for my ID which tend to show that this whole signature idea is a fluke. The only stores that consitenly ask me for my ID no matter which one I go, are the Apple stores (Kudo to them). So will you secure your card ? Let me know via the comment system or on <a title="@elie on Twitter" href="https://twitter.com/#!/elie" target="_blank">Twitter</a>  or on <a title="Elie on Google+" href="http://ly.tl/g" target="_blank">Google+</a></p>
<img src="http://feeds.feedburner.com/~r/inftoint/~4/658iKH3VjHg" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://elie.im/blog/security/how-to-physically-secure-your-credit-card/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		<feedburner:origLink>http://elie.im/blog/security/how-to-physically-secure-your-credit-card/</feedburner:origLink></item>
		<item>
		<title>Security and privacy top headlines September 11th – 18th</title>
		<link>http://feedproxy.google.com/~r/inftoint/~3/_UL8yvxbAH0/</link>
		<comments>http://elie.im/blog/reports/security-and-privacy-top-headlines-september-11th-%e2%80%93-18th/#comments</comments>
		<pubDate>Tue, 20 Sep 2011 08:09:53 +0000</pubDate>
		<dc:creator>Elie</dc:creator>
				<category><![CDATA[Reports]]></category>

		<guid isPermaLink="false">http://elie.im/blog/?p=629</guid>
		<description><![CDATA[Security and privacy top headlines security-and-privacy-top-headlines-week35-2011 This week security and privacy most important news Table of Content Highlights Most populars Highlights Stat of the week US users spend more time on Facebook than any other brands. http://bit.ly/riTqHr (5694 clicks) &#160; tweet this news Hack of the week &#8220;Expression Language Injection&#8221; a new, specific attacks against [...]]]></description>
			<content:encoded><![CDATA[<p>  Security and privacy top headlines security-and-privacy-top-headlines-week35-2011 <span id="more-629"></span>  This week security and privacy most important news<br /> <br />
<h2>Table of Content</h2>
<table>
<tr>
<td> <a style="text-align:center" href="#highlights">Highlights</a></td>
<td> <a style="text-align:center" href="#top5">Most populars</a></td>
</tr>
</table>
<h2 id="highlights">Highlights</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Stat of the week</b></span>       <meta itemprop="name" content="Nielsen: Social Media Report" />        <span itemprop="headline"> 			US users spend more time on Facebook than any other  brands.                     </span>       <a itemprop="url" href="http://bit.ly/riTqHr" target="_BLANK">http://bit.ly/riTqHr <span itemprop="interactionCount">(5694 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/riTqHr" data-text=" 			US users spend more time on Facebook than any other  brands.                     " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Hack of the week</b></span>       <meta itemprop="name" content="Welcome to Google Docs" />        <span itemprop="headline"> 			&#8220;Expression Language Injection&#8221; a new, specific attacks against Spring MVC JSP tags               </span>       <a itemprop="url" href="http://bit.ly/pDGFec" target="_BLANK">http://bit.ly/pDGFec <span itemprop="interactionCount">(156 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/pDGFec" data-text=" 			"Expression Language Injection" a new, specific attacks against Spring MVC JSP tags               " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Analysis of the week</b></span>       <meta itemprop="name" content="Mebromi, a bios-flashing trojan | Norman Blogs" />        <span itemprop="headline"> 			A technical analysis of Mebromi the new BIOS infecting malware.                  </span>       <a itemprop="url" href="http://bit.ly/mSBPDZ" target="_BLANK">http://bit.ly/mSBPDZ <span itemprop="interactionCount">(823 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/mSBPDZ" data-text=" 			A technical analysis of Mebromi the new BIOS infecting malware.                  " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Report of the week</b></span>       <meta itemprop="name" content="Post-Exploitation in Windows: From Local Admin To Domain Admin (efficiently) | pentestmonkey" />        <span itemprop="headline"> 			Post-Exploitation in Windows: From Local Admin To Domain Admin (efficiently)                 </span>       <a itemprop="url" href="http://bit.ly/mOwXUl" target="_BLANK">http://bit.ly/mOwXUl <span itemprop="interactionCount">(58 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/mOwXUl" data-text=" 			Post-Exploitation in Windows: From Local Admin To Domain Admin (efficiently)                 " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Tip of the week</b></span>       <meta itemprop="name" content="Email Spam - Using DKIM Verification for analysis - Security Labs" />        <span itemprop="headline"> 			Cool read: How to use DKIM key to verify if an email was spoofed or the sender compromised &#8211;                   </span>       <a itemprop="url" href="http://bit.ly/rkD4m7" target="_BLANK">http://bit.ly/rkD4m7 <span itemprop="interactionCount">(21 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/rkD4m7" data-text=" 			Cool read: How to use DKIM key to verify if an email was spoofed or the sender compromised -                   " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Epic fail of the week</b></span>       <meta itemprop="name" content="Defence in Depth: Cracking OS X Lion Passwords" />        <span itemprop="headline"> 			Cracking OS X Lion Passwords: Reading password hashes does not requires root privileges.                  </span>       <a itemprop="url" href="http://bit.ly/plFdvs" target="_BLANK">http://bit.ly/plFdvs <span itemprop="interactionCount">(4207 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/plFdvs" data-text=" 			Cracking OS X Lion Passwords: Reading password hashes does not requires root privileges.                  " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>The good</b></span>       <meta itemprop="name" content="Following Appleâ€™s lead, Metro-style Internet Explorer 10 wonâ€™t support Flash | VentureBeat" />        <span itemprop="headline"> 			Following Appleâ€™s  lead, Internet Explorer 10 wonâ€™t support Flash               </span>       <a itemprop="url" href="http://bit.ly/qbsLJ4" target="_BLANK">http://bit.ly/qbsLJ4 <span itemprop="interactionCount">(102 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/qbsLJ4" data-text=" 			Following Appleâ€™s  lead, Internet Explorer 10 wonâ€™t support Flash               " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>The bad</b></span>       <meta itemprop="name" content="Bypassing Chromeâ€™s Anti-XSS filter | The Good, The Bad and the Insecure" />        <span itemprop="headline"> 			Evening reading: How to bypass Chrome XSS filter.                 </span>       <a itemprop="url" href="http://bit.ly/pX7m6u" target="_BLANK">http://bit.ly/pX7m6u <span itemprop="interactionCount">(569 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/pX7m6u" data-text=" 			Evening reading: How to bypass Chrome XSS filter.                 " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>The ugly</b></span>       <meta itemprop="name" content="Firesheep addon updated to exploit Google info leak â€¢ The Register" />        <span itemprop="headline"> 			 Firesheep addon updated to exploit Google info leak: 40% of your click history can be stolen.                </span>       <a itemprop="url" href="http://bit.ly/q2TpJe" target="_BLANK">http://bit.ly/q2TpJe <span itemprop="interactionCount">(86 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/q2TpJe" data-text=" 			 Firesheep addon updated to exploit Google info leak: 40% of your click history can be stolen.                " data-via="elie">tweet this news</a>   </div>
</p>
<h2 id="top5">The 5 most popular news of the week</h2>
<table>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>18072 clicks</b>:</span>       <meta itemprop="name" content="A preview of Gmailâ€™s new look - Official Gmail Blog" />        <span itemprop="description"> 			 How to activate the new GMail interface that looks like google+               </span>        <a itemprop="url" href="http://bit.ly/n8epg1" target="_BLANK">http://bit.ly/n8epg1</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/n8epg1" data-text=" 			 How to activate the new GMail interface that looks like google+               " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>5694 clicks</b>:</span>       <meta itemprop="name" content="Nielsen: Social Media Report" />        <span itemprop="description"> 			US users spend more time on Facebook than any other  brands.                     </span>        <a itemprop="url" href="http://bit.ly/riTqHr" target="_BLANK">http://bit.ly/riTqHr</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/riTqHr" data-text=" 			US users spend more time on Facebook than any other  brands.                     " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>4207 clicks</b>:</span>       <meta itemprop="name" content="Defence in Depth: Cracking OS X Lion Passwords" />        <span itemprop="description"> 			Cracking OS X Lion Passwords: Reading password hashes does not requires root privileges &#8211;                   </span>        <a itemprop="url" href="http://bit.ly/plFdvs" target="_BLANK">http://bit.ly/plFdvs</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/plFdvs" data-text=" 			Cracking OS X Lion Passwords: Reading password hashes does not requires root privileges -                   " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>1833 clicks</b>:</span>       <meta itemprop="name" content="Researchersâ€™ Typosquatting Stole 20GB of E-Mail from Fortune 500 | Threat Level | Wired.com" />        <span itemprop="description"> 			How Researchers used Typosquatting  to stole 20 GB of E-Mail From Fortune 500               </span>        <a itemprop="url" href="http://bit.ly/njFU2o" target="_BLANK">http://bit.ly/njFU2o</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/njFU2o" data-text=" 			How Researchers used Typosquatting  to stole 20 GB of E-Mail From Fortune 500               " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>823 clicks</b>:</span>       <meta itemprop="name" content="Mebromi, a bios-flashing trojan | Norman Blogs" />        <span itemprop="description"> 			A technical analysis of Mebromi the new BIOS infecting malware                  </span>        <a itemprop="url" href="http://bit.ly/mSBPDZ" target="_BLANK">http://bit.ly/mSBPDZ</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/mSBPDZ" data-text=" 			A technical analysis of Mebromi the new BIOS infecting malware                  " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
</table>
<p><i>This top 5 was established based on bit.ly overall clicks data</i></p>
<p>Thanks for reading this post. Share your thoughts on last week headline by leaving a comment below or sharing it with the world.<br /> You can subscribe to receive these report by <a href="http://feeds.feedburner.com/inftoint" target="_blank"   onclick="_gaq.push(['_trackEvent', 'Follow', 'RSS', 'Report']);">RSS</a> or <a href="http://eepurl.com/emqqc" target="blank"  onclick="_gaq.push(['_trackEvent', 'Follow', 'Mail', 'report']);>email</a>.<br />If you want to have these news in (almost) really time follow me on Twitter  <a href="https://twitter.com/#!/elie" target="_blank" onclick="_gaq.push(['_trackEvent', 'Follow', 'Twitter', 'Report'])" >@elie</a> or on <a href="https://www.facebook.com/pages/From-information-to-intelligence/226248194061627" target="_blank"  onclick="_gaq.push(['_trackEvent', 'Follow', 'Facebook', 'Report'])" >Facebook</a></p>
<img src="http://feeds.feedburner.com/~r/inftoint/~4/_UL8yvxbAH0" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://elie.im/blog/reports/security-and-privacy-top-headlines-september-11th-%e2%80%93-18th/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://elie.im/blog/reports/security-and-privacy-top-headlines-september-11th-%e2%80%93-18th/</feedburner:origLink></item>
		<item>
		<title>Security and privacy top headlines September 4th – 10th</title>
		<link>http://feedproxy.google.com/~r/inftoint/~3/CFu6tK6ZL8c/</link>
		<comments>http://elie.im/blog/reports/security-and-privacy-top-headlines-week36-2011/#comments</comments>
		<pubDate>Mon, 12 Sep 2011 08:15:20 +0000</pubDate>
		<dc:creator>Elie</dc:creator>
				<category><![CDATA[Reports]]></category>

		<guid isPermaLink="false">http://elie.im/blog/?p=610</guid>
		<description><![CDATA[This week security and privacy most important news Table of Content Highlights Most populars Highlights The good Google Chrome new beta version use SSL by default for Google search http://bit.ly/rouYf0 (8 clicks) &#160; tweet this news The bad 20 Famous websites vulnerable to Cross SiteScripting (XSS) Attack http://bit.ly/oNA6mo (260 clicks) &#160; tweet this news The [...]]]></description>
			<content:encoded><![CDATA[<p>This week security and privacy most important news<span id="more-610"></span></p>
<p> <br />
<h2>Table of Content</h2>
<table>
<tr>
<td> <a style="text-align:center" href="#highlights">Highlights</a></td>
<td> <a style="text-align:center" href="#top5">Most populars</a></td>
</tr>
</table>
<h2 id="highlights">Highlights</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>The good</b></span>       <meta itemprop="name" content="Why Wait for Google? Use Encrypted Search Today | WebmonkeyÂ | Wired.com" />        <span itemprop="headline"> 			Google Chrome new beta version use SSL by default for Google search                  </span>       <a itemprop="url" href="http://bit.ly/rouYf0" target="_BLANK">http://bit.ly/rouYf0 <span itemprop="interactionCount">(8 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/rouYf0 data-text=" 			Google Chrome new beta version use SSL by default for Google search                  " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>The bad</b></span>       <meta itemprop="name" content="Full Disclosure: 20 Famous websites vulnerable to Cross Site	Scripting (XSS) Attack" />        <span itemprop="headline"> 			 20 Famous websites vulnerable to Cross SiteScripting (XSS) Attack             </span>       <a itemprop="url" href="http://bit.ly/oNA6mo" target="_BLANK">http://bit.ly/oNA6mo <span itemprop="interactionCount">(260 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/oNA6mo data-text=" 			 20 Famous websites vulnerable to Cross SiteScripting (XSS) Attack             " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>The ugly</b></span>       <meta itemprop="name" content="Evidence of Infected SCADA Systems Washes Up in Support Forums | threatpost" />        <span itemprop="headline"> 			Evidence of Infected SCADA Systems Washes Up in Support Forums                </span>       <a itemprop="url" href="http://bit.ly/ntMFHi" target="_BLANK">http://bit.ly/ntMFHi <span itemprop="interactionCount">(426 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/ntMFHi data-text=" 			Evidence of Infected SCADA Systems Washes Up in Support Forums                " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Epic fail of the week</b></span>       <meta itemprop="name" content="" />        <span itemprop="headline"> 			Crowd-sourcing mischief on Google Maps leads customers astray                </span>       <a itemprop="url" href="http://bit.ly/oND4Or" target="_BLANK">http://bit.ly/oND4Or <span itemprop="interactionCount">(36 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/oND4Or data-text=" 			Crowd-sourcing mischief on Google Maps leads customers astray                " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Tool of the week</b></span>       <meta itemprop="name" content="Firesheep addon updated to exploit Google info leak â€¢ The Register" />        <span itemprop="headline"> 			 Firesheep addon updated to exploit Google info leak: 40% of your click history can be stolen.                </span>       <a itemprop="url" href="http://bit.ly/q2TpJe" target="_BLANK">http://bit.ly/q2TpJe <span itemprop="interactionCount">(71 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/q2TpJe data-text=" 			 Firesheep addon updated to exploit Google info leak: 40% of your click history can be stolen.                " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Analysis of the week</b></span>       <meta itemprop="name" content="Researchersâ€™ Typosquatting Stole 20GB of E-Mail from Fortune 500 | Threat Level | Wired.com" />        <span itemprop="headline"> 		How Researchers used Typosquatting  to stole 20 GB of E-Mail From Fortune 500               </span>       <a itemprop="url" href="http://bit.ly/njFU2o" target="_BLANK">http://bit.ly/njFU2o <span itemprop="interactionCount">(1422 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/njFU2o data-text=" 		How Researchers used Typosquatting  to stole 20 GB of E-Mail From Fortune 500               " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Vizualization of the week</b></span>       <meta itemprop="name" content="Travis Goodspeed's Blog: A Bluetooth GoodFET for the N900" />        <span itemprop="headline"> 			 Vizualization of  OCSP requests for rogue certificates through the world.  So many interceptions <img src='http://elie.im/blog/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' />               </span>       <a itemprop="url" href="http://bit.ly/pVK7C4" target="_BLANK">http://bit.ly/pVK7C4 <span itemprop="interactionCount">(188 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url="http://bit.ly/pVK7C4" data-text=" 			 Vizualization of  OCSP requests for rogue certificates through the world.  So many interceptions :(              " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Hack of the week</b></span>       <meta itemprop="name" content="Travis Goodspeed's Blog: A Bluetooth GoodFET for the N900" />        <span itemprop="headline"> 			  Sniffing and decrypting Microsoft keyboard keystrokes with a phone by @travisgoodspeed                </span>       <a itemprop="url" href="http://bit.ly/qOwCGB" target="_BLANK">http://bit.ly/qOwCGB <span itemprop="interactionCount">(32 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/qOwCGB data-text=" 			  Sniffing and decrypting Microsoft keyboard keystrokes with a phone by @travisgoodspeed                " data-via="elie">tweet this news</a>   </div>
</p>
<h2 id="top5">The 5 most popular news of the week</h2>
<table>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>8896 clicks</b>:</span>       <meta itemprop="name" content="bitly blog - You just shared a link. How long will people pay attention?" />        <span itemprop="description"> 			 According to bit.ly analytics the half life of a  link shared through social media is  3 hours                 </span>        <a itemprop="url" href="http://bit.ly/or824v" target="_BLANK">http://bit.ly/or824v</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/or824v data-text=" 			 According to bit.ly analytics the half life of a  link shared through social media is  3 hours                 " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>1422 clicks</b>:</span>       <meta itemprop="name" content="Researchersâ€™ Typosquatting Stole 20GB of E-Mail from Fortune 500 | Threat Level | Wired.com" />        <span itemprop="description"> 			How Researchers used Typosquatting  to stole 20 GB of E-Mail From Fortune 500               </span>        <a itemprop="url" href="http://bit.ly/njFU2o" target="_BLANK">http://bit.ly/njFU2o</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/njFU2o data-text=" 			How Researchers used Typosquatting  to stole 20 GB of E-Mail From Fortune 500               " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>552 clicks</b>:</span>       <meta itemprop="name" content="Official Google Blog: Doing more with the +1 button, more than 4 billion times a day" />        <span itemprop="description"> 			 Google +1 button now allows you to share with your Google + circles                </span>        <a itemprop="url" href="http://bit.ly/nMMjoL" target="_BLANK">http://bit.ly/nMMjoL</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/nMMjoL data-text=" 			 Google +1 button now allows you to share with your Google + circles                " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>426 clicks</b>:</span>       <meta itemprop="name" content="Evidence of Infected SCADA Systems Washes Up in Support Forums | threatpost" />        <span itemprop="description"> 			Evidence of Infected SCADA Systems Washes Up in Support Forums                </span>        <a itemprop="url" href="http://bit.ly/ntMFHi" target="_BLANK">http://bit.ly/ntMFHi</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/ntMFHi data-text=" 			Evidence of Infected SCADA Systems Washes Up in Support Forums                " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>260 clicks</b>:</span>       <meta itemprop="name" content="Full Disclosure: 20 Famous websites vulnerable to Cross Site	Scripting (XSS) Attack" />        <span itemprop="description"> 			 20 Famous websites vulnerable to Cross SiteScripting (XSS) Attack             </span>        <a itemprop="url" href="http://bit.ly/oNA6mo" target="_BLANK">http://bit.ly/oNA6mo</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/oNA6mo data-text=" 			 20 Famous websites vulnerable to Cross SiteScripting (XSS) Attack             " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
</table>
<p><i>This top 5 was established based on bit.ly overall clicks data</i><br />
<br/></p>
<p>Thanks for reading this post. Share your thoughts on last week headline by leaving a comment below or sharing it with the world.<br /> You can subscribe to receive these report by <a href="http://feeds.feedburner.com/inftoint" target="_blank"   onclick="_gaq.push(['_trackEvent', 'Follow', 'RSS', 'Report']);">RSS</a> or <a href="http://eepurl.com/emqqc" target="blank"  onclick="_gaq.push(['_trackEvent', 'Follow', 'Mail', 'report']);>email</a>.<br />If you want to have these news in (almost) really time follow me on Twitter  <a href="https://twitter.com/#!/elie" target="_blank" onclick="_gaq.push(['_trackEvent', 'Follow', 'Twitter', 'Report'])" >@elie</a> or on <a href="https://www.facebook.com/pages/From-information-to-intelligence/226248194061627" target="_blank"  onclick="_gaq.push(['_trackEvent', 'Follow', 'Facebook', 'Report'])" >Facebook</a></p>
<img src="http://feeds.feedburner.com/~r/inftoint/~4/CFu6tK6ZL8c" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://elie.im/blog/reports/security-and-privacy-top-headlines-week36-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://elie.im/blog/reports/security-and-privacy-top-headlines-week36-2011/</feedburner:origLink></item>
		<item>
		<title>Security and privacy top headlines</title>
		<link>http://feedproxy.google.com/~r/inftoint/~3/pOPlDcjR8YE/</link>
		<comments>http://elie.im/blog/reports/security-and-privacy-top-headlines-week35-2011/#comments</comments>
		<pubDate>Tue, 06 Sep 2011 15:35:19 +0000</pubDate>
		<dc:creator>Elie</dc:creator>
				<category><![CDATA[Reports]]></category>

		<guid isPermaLink="false">http://elie.im/blog/?p=575</guid>
		<description><![CDATA[Security and privacy most important headline for the period 25th August &#8211; 4th September Table of Content Highlights Most populars Others news Highlights The ugly DigiNotar a Dutch certification authority issueed more than 500 rogues certificates for for proeminet websites issued including the CIA, the Mossad, The Mi6 Facebook, Twitter and Google http://bit.ly/pKBDnc (156 clicks) [...]]]></description>
			<content:encoded><![CDATA[<p>Security and privacy most important headline for the period 25th August &#8211; 4th September <br /><span id="more-575"></span><br />
<h2>Table of Content</h2>
<table>
<tr>
<td> <a style="text-align:center" href="#highlights">Highlights</a></td>
<td> <a style="text-align:center" href="#top5">Most populars</a></td>
<td> <a style="text-align:center" href="#other">Others news</a></td>
</tr>
</table>
<h2 id="highlights">Highlights</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>The ugly</b></span>       <meta itemprop="name" content="Rogue SSL certs were also issued for CIA, MI6, Mossad" />        <span itemprop="headline">DigiNotar a Dutch certification authority issueed more than 500 rogues certificates for for proeminet websites issued including the CIA, the Mossad, The Mi6 Facebook, Twitter and Google </span>       <a itemprop="url" href="http://bit.ly/pKBDnc" target="_BLANK">http://bit.ly/pKBDnc <span itemprop="interactionCount">(156 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/pKBDnc data-text="DigiNotar a Dutch certification authority issueed more than 500 rogues certificates for for proeminet websites issued including the CIA, the Mossad, The Mi6 Facebook, Twitter and Google " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>The bad</b></span>       <meta itemprop="name" content="Nokia Hacked, Significant Number of Records Stolen - International Business Times" />        <span itemprop="headline"> Nokia Hacked: Significant Number of Records Stolen.   </span>       <a itemprop="url" href="http://bit.ly/qhzVbQ" target="_BLANK">http://bit.ly/qhzVbQ <span itemprop="interactionCount">(9 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/qhzVbQ data-text=" Nokia Hacked: Significant Number of Records Stolen.   " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>The good</b></span>       <meta itemprop="name" content="British gov watchdog wants privacy tought in schools - Applications - SC Magazine Australia - Secure Business Intelligence" />        <span itemprop="headline">British gov watchdog wants privacy tought in schools</span>       <a itemprop="url" href="http://bit.ly/oMnyE7" target="_BLANK">http://bit.ly/oMnyE7 <span itemprop="interactionCount">(2 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/oMnyE7 data-text="British gov watchdog wants privacy tought in schools" data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Statistic of the week</b></span>       <meta itemprop="name" content="Latest news - Macworld UK" />        <span itemprop="headline"> Facebook pays out $40k to hackers in just three week  </span>       <a itemprop="url" href="http://bit.ly/qPiapl" target="_BLANK">http://bit.ly/qPiapl <span itemprop="interactionCount">(35 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/qPiapl data-text=" Facebook pays out $40k to hackers in just three week  " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Hack of the week</b></span>       <meta itemprop="name" content="" />        <span itemprop="headline">Standard webcams can be used to reveal your heart rate</span>       <a itemprop="url" href="http://slate.me/ocn4Sx" target="_BLANK">http://slate.me/ocn4Sx                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://slate.me/ocn4Sx data-text="Standard webcams can be used to reveal your heart rate" data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Analysis of the week</b></span>       <meta itemprop="name" content="" />        <span itemprop="headline">Understanding how the after-free exploit Internet Explorer 8/9 (MS11-050) works </span>       <a itemprop="url" href="http://bit.ly/mQFDB9" target="_BLANK">http://bit.ly/mQFDB9 <span itemprop="interactionCount">(81 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/mQFDB9 data-text="Understanding how the after-free exploit Internet Explorer 8/9 (MS11-050) works " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Video of the week</b></span>       <meta itemprop="name" content="Talk from DEFCON 19" />        <span itemprop="headline">J. Street  Defcon  talk &#8220;Steal Everything, Kill Everyone, Cause Total Financial Ruin.&#8221;  (social engneering)</span>       <a itemprop="url" href="http://bit.ly/r2YClN" target="_BLANK">http://bit.ly/r2YClN <span itemprop="interactionCount">(19 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/r2YClN data-text="J. Street  Defcon  talk "Steal Everything, Kill Everyone, Cause Total Financial Ruin."  (social engneering)" data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Tool of the week</b></span>       <meta itemprop="name" content="Apache killer -THN - Pastebin.com" />        <span itemprop="headline">Killapache  a script that exploits the new memory range DOS attack against Apache    </span>       <a itemprop="url" href="http://bit.ly/n6fqBg" target="_BLANK">http://bit.ly/n6fqBg <span itemprop="interactionCount">(33 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/n6fqBg data-text="Killapache  a script that exploits the new memory range DOS attack against Apache    " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="genre"><b>Epic fail of the week</b></span>       <meta itemprop="name" content="Hackers steal 21,000 (mostly weak) user passwords from Star Wars game fan site | VentureBeat" />        <span itemprop="headline">Hackers steal 21,000 passwords from Star Wars game fan site which was not actively maintained</span>       <a itemprop="url" href="http://bit.ly/o5Oanc" target="_BLANK">http://bit.ly/o5Oanc <span itemprop="interactionCount">(106 clicks)</span>                  </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/o5Oanc data-text="Hackers steal 21,000 passwords from Star Wars game fan site which was not actively maintained" data-via="elie">tweet this news</a>   </div>
</p>
<h2 id="top5">The 5 most popular news of the week</h2>
<table>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>1296 clicks</b>:</span>       <meta itemprop="name" content="Google Online Security Blog: An update on attempted man-in-the-middle attacks" />        <span itemprop="description"> Attempted man-in-the-middle attacks against Google Iranian users (first news about DigiNotar) </span>        <a itemprop="url" href="http://bit.ly/nKgwHX" target="_BLANK">http://bit.ly/nKgwHX</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/nKgwHX data-text=" Attempted man-in-the-middle attacks against Google Iranian users (first news about DigiNotar) " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>549 clicks</b>:</span>       <meta itemprop="name" content="Official Google Blog: Doing more with the +1 button, more than 4 billion times a day" />        <span itemprop="description"> Google +1 button now allows you to share with your Google + circles   </span>        <a itemprop="url" href="http://bit.ly/nMMjoL" target="_BLANK">http://bit.ly/nMMjoL</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/nMMjoL data-text=" Google +1 button now allows you to share with your Google + circles   " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>175 clicks</b>:</span>       <meta itemprop="name" content="Google Certificate Hackers May Have Stolen 200 Others | Threat Level | Wired.com" />        <span itemprop="description"> Google Certificate Hackers May Have Stolen 200 Others  from DigiNotar.  </span>        <a itemprop="url" href="http://bit.ly/oErdiB" target="_BLANK">http://bit.ly/oErdiB</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/oErdiB data-text=" Google Certificate Hackers May Have Stolen 200 Others  from DigiNotar.  " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>156 clicks</b>:</span>       <meta itemprop="name" content="Rogue SSL certs were also issued for CIA, MI6, Mossad" />        <span itemprop="description">DigiNotar a Dutch certification authority issueed more than 500 rogues certificates for for proeminet websites issued including the CIA, the Mossad, The Mi6 Facebook, Twitter and Google </span>        <a itemprop="url" href="http://bit.ly/pKBDnc" target="_BLANK">http://bit.ly/pKBDnc</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/pKBDnc data-text="DigiNotar a Dutch certification authority issueed more than 500 rogues certificates for for proeminet websites issued including the CIA, the Mossad, The Mi6 Facebook, Twitter and Google " data-via="elie">tweet this news</a>     </div>
</td>
</tr>
<tr>
<td>
<div itemscope itemtype="http://schema.org/Article">       <span itemprop="interactionCount"><b>151 clicks</b>:</span>       <meta itemprop="name" content="New Free Tools Simplify Analysis Of Android Malware  - Dark Reading" />        <span itemprop="description">New Honeypot project Free Tools Simplify Analysis Of Android Malware</span>        <a itemprop="url" href="http://bit.ly/rfITHg" target="_BLANK">http://bit.ly/rfITHg</a>          &nbsp;         <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/rfITHg data-text="New Honeypot project Free Tools Simplify Analysis Of Android Malware" data-via="elie">tweet this news</a>     </div>
</td>
</tr>
</table>
<p><i>This top 5 was established based on bit.ly overall clicks data</i><br />
<br/><br/></p>
<div id="other">
<h2>Phishing, scam and spam</h2>
<h2>Security tool</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="New Free Tools Simplify Analysis Of Android Malware  - Dark Reading" />        <span itemprop="headline">A New honeypot project free tools simplify the analysis Of android malware</span>       <a itemprop="url" href="http://bit.ly/rfITHg" target="_BLANK">http://bit.ly/rfITHg <span itemprop="interactionCount">(151 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/rfITHg data-text="A New honeypot project free tools simplify the analysis Of android malware" data-via="elie">tweet this news</a>   </div>
</p>
<h2>Attack technique, exploit and vulnerability</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline">Ghost stealth boat moves on gas layer around hull  </span>       <a itemprop="url" href="http://bit.ly/qAKQXZ" target="_BLANK">http://bit.ly/qAKQXZ <span itemprop="interactionCount">(12 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/qAKQXZ data-text="Ghost stealth boat moves on gas layer around hull  " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="" />        <span itemprop="headline">Anonymous claims DNS attacks against Symantec, Apple, Microsoft  </span>       <a itemprop="url" href="http://zite.to/oU52nP" target="_BLANK">http://zite.to/oU52nP         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://zite.to/oU52nP data-text="Anonymous claims DNS attacks against Symantec, Apple, Microsoft  " data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Minded Security Blog: Unbelievable hacks: Money Transferring with Caller Id Spoofing" />        <span itemprop="headline"> Interesting  attack scenario: &#8220;Unbelievable hacks: Money Transferring with Caller Id Spoofing&#8221;</span>       <a itemprop="url" href="http://bit.ly/pTxHxb" target="_BLANK">http://bit.ly/pTxHxb <span itemprop="interactionCount">(85 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/pTxHxb data-text=" Interesting  attack scenario: "Unbelievable hacks: Money Transferring with Caller Id Spoofing"" data-via="elie">tweet this news</a>   </div>
</p>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Two Location header responses." />        <span itemprop="headline">Where does your browser send you when the HTTP response contains 2 Location headers?   </span>       <a itemprop="url" href="http://bit.ly/o2mINW" target="_BLANK">http://bit.ly/o2mINW <span itemprop="interactionCount">(0 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/o2mINW data-text="Where does your browser send you when the HTTP response contains 2 Location headers?   " data-via="elie">tweet this news</a>   </div>
</p>
<h2>Privacy</h2>
<p>
<div itemscope itemtype="http://schema.org/Article">       <meta itemprop="name" content="Privacy and Anonymity on the Modern Internet | threatpost" />        <span itemprop="headline"> Privacy and Anonymity on the Modern Internet:  intervirew of Sir Valiance head of the crypto project   </span>       <a itemprop="url" href="http://bit.ly/pOsxtR" target="_BLANK">http://bit.ly/pOsxtR <span itemprop="interactionCount">(15 clicks)</span>         </a>&nbsp;       <a href="http://twitter.com/share" class="twitter-share-button" data-count="none" data-url=http://bit.ly/pOsxtR data-text=" Privacy and Anonymity on the Modern Internet:  intervirew of Sir Valiance head of the crypto project   " data-via="elie">tweet this news</a>   </div>
</p>
</div>
<p>Thanks for reading this post. Share your thoughts on last week headline by leaving a comment below or sharing it with the world.<br /> You can subscribe to receive these report by <a href="http://feeds.feedburner.com/inftoint" target="_blank"   onclick="_gaq.push(['_trackEvent', 'Follow', 'RSS', 'Report']);">RSS</a> or <a href="http://eepurl.com/emqqc" target="blank"  onclick="_gaq.push(['_trackEvent', 'Follow', 'Mail', 'report']);>email</a>.<br />If you want to have these news in (almost) really time follow me on Twitter  <a href="https://twitter.com/#!/elie" target="_blank" onclick="_gaq.push(['_trackEvent', 'Follow', 'Twitter', 'Report'])" >@elie</a> or on <a href="https://www.facebook.com/pages/From-information-to-intelligence/226248194061627" target="_blank"  onclick="_gaq.push(['_trackEvent', 'Follow', 'Facebook', 'Report'])" >Facebook</a></p>
<img src="http://feeds.feedburner.com/~r/inftoint/~4/pOPlDcjR8YE" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://elie.im/blog/reports/security-and-privacy-top-headlines-week35-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://elie.im/blog/reports/security-and-privacy-top-headlines-week35-2011/</feedburner:origLink></item>
	</channel>
</rss><!-- Dynamic page generated in 0.255 seconds. --><!-- Cached page generated by WP-Super-Cache on 2012-01-18 04:53:52 -->

