feedburner

Enter your email address:

Marine's ban Facebook,Twitter and Myspace

Labels:



The U.S. Marine Corps has banned service members from using military computers to access social networking sites, and the Department of Defense is reviewing the services to see if they pose too great a security threat to allow.Such sites are popular with young service members who want to keep in touch with friends and family at home, but the Marine Corps' chief information officer, Brig. Gen. George J. Allen, said in a memo issuing the ban Tuesday that such sites create "a larger attack and exploitation window" and increase the risk that service members will share information that should be kept under wraps.
The order, which expires in one year unless renewed or supplanted by other guidance, involves all social networking sites, including Facebook , MySpace and Twitter . It carves out room for exceptions to the policy based on operational needs, but calls for an extensive review process before such authorization would be granted. The policy does not ban Marines from using the services on personal computers.
The DoD review will address the security risks of social networking sites, as well as the value they provide in helping the agency communicate, according to statements posted to the agency's Web site. A new policy could be approved by October.

A few choice quotes from the Marine Corps order:
• “These internet sites in general are a proven haven for malicious actors and content and are particularly high risk due to information exposure, user generated content and targeting by adversaries…”
• “The very nature of SNS [social network sites] creates a larger attack and exploitation window, exposes unnecessary information to adversaries and provides an easy conduit for information leakage that puts OPSEC [operational security], COMSEC [communications security], [and] personnel… at an elevated risk of compromise.”
Facebook, MySpace and Twitter have been constant targets for malware attacks that exploit the trusted nature of social networks to lure users into clicking on links to malicious sites.


Share/Save/Bookmark
click here to read more.....





Fake ATM Doesn't Last Long at Hacker Meet

Labels:

Criminals running an ATM card-skimming scam made a big mistake this week: They tried to hit the Defcon hacker conference in Las Vegas.
As the conference was kicking off a few days ago, attendees noticed that at ATM placed in the Riviera Hotel, which plays host to the annual event, didn't quite look right, according to a senior conference organizer who identified himself only as Priest. "They looked at the screen where there would normally be a camera," he said. "It was a little bit too dark, so someone shined a flashlight in there and there was a PC."

The ATM looked like a working system, but when people would put their cards in the machine, it would scan their card information and record the PIN numbers they entered. He didn't know how long the ATM had been at the Riviera.
Conference organizers notified local law enforcement who hauled away the machine on "Thursday or Friday," said Priest, who said he works as a "civil servant" in his day job.
Credit card skimmers -- small devices installed on top of card readers to steal information -- and fake ATM machines are a common problem. Once the criminal records the card information and PIN number, he can use that to create a fake ATM card and then empty the victim's account.
Previously unsophisticated criminal gangs are increasingly using these devices, Priest said. "They're realizing that this is a great way to make money without getting caught."
The criminals probably didn't realize that they were installing their ATM in a hotel that was soon going to be flooded with more than 8,000 security professionals, he added.
They were smart enough to place the machine in one of the few spots in the hotel where there was no security camera to catch them, Priest said. "It was literally right next to the hotel security entrance."


Share/Save/Bookmark

click here to read more.....





RSS FEED



Subscribe

Followers