RFID Wardriving for Fun and Profit

By hooking a $250 Motorola RFID reader and an antenna to his laptop, Chris Paget was able to easily harvest and clone multiple RFID identity documents while driving through San Francisco. Fortunately for the victims Chris is a white hat hacker and only did this to prove that using RFID-enabled identify cards can only be […]



Insider Plants Logic Bomb – Fannie Avoids “Final Solution”

A senior Unix administrator known only as “SK” admitted she got lucky when she found the malicious script planted in a development server on the network.  The script was buried within lines of legitimate code according to an affidavit filed against Rajendrasinh Makwana, an Indian citizen living in the United States under a work visa.  […]

Monster.com user data stolen — again

You’d think that a Monster once bitten would be twice shy.  But even though user information has been stolen from Monster.com on at least two prior occasions, it has happened yet again.  This time, the data includes user IDs and passwords, as well  as contact information.  Monster does not store Social Security numbers, thankfully.  The […]



100 Million Credit Cards Stolen in Largest Cyber Crime Ever

If you are a small company that needs to process credit card payments, you probably can’t afford an expensive solution and high processing fees.  Most small customers go with a tailored service that understands small business needs, and one of the best companies working with small businesses is Heartland Payment Systems.  Chances are, if you […]

Antivirus 2009 Fail – A Good Reason to Use Linux

Can you spot anything wrong in this picture? It probably won’t be what most of you will think right away. Click to enlarge Now, if you “got it”, do you really need another reason to switch? [Via Digg]

A Lesson in Password Security

By Miss Cellania Contributing Writer, [GAS] Wired’s Threat Level blog has an interview with GMZ, the hacker who briefly helped himself to some high-profile accounts at Twitter a few days ago. The way he got in was ridiculously simple. 1. He identified a very active account. It later turned out to belong to a Twitter […]

Microsoft to Release Emergency Patch for Critical IE Flaw

According to Brian Krebs’ Security Fix blog, Microsoft is releasing an out of band patch to fix the critical flaw in all versions of Internet Explorer that we discussed on [GAS] last week.  This is great news.  While the number of home computers compromised by this attack is only about 1 in 500, security companies […]

IE7 0-Day Exploit Compromising Thousands of Hosts

By PatB Contributing Writer, [GAS] Hackers love to play cat and mouse with security firms.  A case in point is the current Internet Explorer 7 unpatched vulnerability being exploited worldwide.  On Tuesday, hackers waited until Microsoft released their monthly patches before revealing an undisclosed vulnerability in the web browser software, giving villains the maximum amount […]