Websites Conducting Port Scans

Security researcher Charlie Belmer is reporting that commercial websites such as eBay are conducting port scans of their visitors. Looking at the list of ports they are scanning, they are looking for VNC services being run on the host, which is the same thing that was reported for bank sites. I marked out the ports and what they are known… Continue reading Websites Conducting Port Scans

Capital One Breach, Edgewise – Peter Smith – PSW #619

Capital One Breach, Edgewise
The post Capital One Breach, Edgewise – Peter Smith – PSW #619 appeared first on Security Weekly. Continue reading Capital One Breach, Edgewise – Peter Smith – PSW #619

Elements of an Effective Penetration Testing Program – Steve Laubenstein – ESW #153

Elements of an Effective Penetration Testing Program
The post Elements of an Effective Penetration Testing Program – Steve Laubenstein – ESW #153 appeared first on Security Weekly. Continue reading Elements of an Effective Penetration Testing Program – Steve Laubenstein – ESW #153

CIA Network Exposed through Insecure Communications System

Interesting story of a CIA intelligence network in China that was exposed partly because of a computer security failure: Although they used some of the same coding, the interim system and the main covert communication platform used in China at this time were supposed to be clearly separated. In theory, if the interim system were discovered or turned over to… Continue reading CIA Network Exposed through Insecure Communications System