51% of Americans write down their online passwords 18 Apr 2008 03:46 GMT88% of people interviewed in the US and the UK by Accenture said personal irresponsibility is the key cause of identity theft and fraud. 70% of respondents in the UK said they don’t write down their passwords, versus 49% in the US. by AM
Source: ZDNet PCI Compliance gets clarified and neutered (further) 17 Apr 2008 19:10 GMTAt one point, I thought that PCI certification was a great thing. Now I realize that it's not really about security at all... it's about money and responsibility and transferring ownership of risk. The PCI certification just got a clarification: "6.6 Ensure that all web-facing applications...
Source: ZDNet Psystar mystery adds up to phishing scam 17 Apr 2008 19:01 GMTWalk through the Psystar fiasco with me. Many things are confusing. At a minimum, it's clear that the OpenMac is bogus. It's extremely dubious that Psystar is a legitimate company. It is increasingly likely that the whole thing is a phishing or credit-card scam. Item: The wandering...
Source: ZDNet Crossing over to the dark side: Consultant pleads guilty to identity theft 17 Apr 2008 16:48 GMTDarth Vader: You underestimate the power of the Dark Side. If you will not fight, then you will meet your destiny. An article on the IOL Technology website discusses a consultant who pleaded guilty on Wednesday to raiding hundreds of thousands of computers. The article states: John Schiefer,...
Source: ZDNet Q4 2007 Email Threats Trend Report from Proofpoint and Commtouch 17 Apr 2008 13:00 GMT(Source: Proofpoint) In 2007 botnets came of age, developing into sophisticated peer-to-peer networks that dynamically avoid blacklisting and fight back against anyone who tries to eliminate them. Botnets were responsible for keeping global spam levels high, averaging 80% throughout the year and peaking in early Q4 at 96%.

Source: Computerworld Regulations Shift Focus on Outbound Email Security 17 Apr 2008 13:00 GMT(Source: Proofpoint) Outbound email poses a data loss and leakage risk. Mitigating risk is becoming important and complex with new information privacy and data protection regulations for internally and externally exchanged information. Regulations like Personally Identifiable Information Guidelines place additional constraints on how data is stored, processed, and transmitted. Regulation compliance involves encrypting confidential corporate and private personal data.

Source: Computerworld Apple patches $10,000 bug 17 Apr 2008 08:50 GMTApple has issued a patch for the flaw in its Safari Web browser that earned a security researcher $10,000 during last month's CanSecWest PWN 2 OWN hacking contest.

Source: Computerworld CEO-phishing scam fires up anew 17 Apr 2008 07:49 GMTOnline scammers apparently brushed back by widespread coverage of their attempts to spear-phish thousands of C-level execs started up the scam again on Wednesday.

Source: Computerworld