<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>NerdHerd.com &#187; News</title>
	<atom:link href="http://nerdherd.com/archives/category/news/feed" rel="self" type="application/rss+xml" />
	<link>http://nerdherd.com</link>
	<description>IT Unlike Any Other</description>
	<lastBuildDate>Fri, 27 Apr 2012 04:59:49 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>Changing the defaults</title>
		<link>http://nerdherd.com/archives/979</link>
		<comments>http://nerdherd.com/archives/979#comments</comments>
		<pubDate>Thu, 12 Apr 2012 00:23:07 +0000</pubDate>
		<dc:creator>Mike S</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[authentication]]></category>
		<category><![CDATA[Hacked!]]></category>
		<category><![CDATA[passwords]]></category>

		<guid isPermaLink="false">http://nerdherd.com/?p=979</guid>
		<description><![CDATA[In a Salt Lake Tribune article, reporter Patty Henetz quoted Utah Department of Health spokesman Tom Hudachko, who said that in this particular incident, a configuration error occurred at the level where passwords are entered, allowing the hacker to invade the security system. Technology Services has processes in place to ensure the state’s data is [...]]]></description>
			<content:encoded><![CDATA[<blockquote><p>In a Salt Lake Tribune article, reporter Patty Henetz quoted Utah Department of Health spokesman Tom Hudachko, who said that in this particular incident, <strong>a configuration error occurred at the level where passwords are entered,</strong> allowing the hacker to invade the security system. Technology Services has processes in place to ensure the state’s data is secured, but this particular server was not configured according to normal procedure.</p>
<p>Michael Hales, the Health Department’s Medicaid Director, said, &#8220;It just looks like processes broke down,&#8221; according to the Tribune.</p></blockquote>
<p>This sounds like a weaselly way of admitting that the default passwords were not changed.  Default passwords are the easiest way into any system!</p>
<p>via <a href="http://www.darkreading.com/blog/232900100/utah-medicaid-breach-exemplifies-value-of-encryption-and-access-control.html">Utah Medicaid Breach Exemplifies Value Of Encryption And Access Control &#8211; Dark Reading</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://nerdherd.com/archives/979/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Number of victims in state of Utah breach significantly rises</title>
		<link>http://nerdherd.com/archives/975</link>
		<comments>http://nerdherd.com/archives/975#comments</comments>
		<pubDate>Tue, 10 Apr 2012 03:14:48 +0000</pubDate>
		<dc:creator>Mike S</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[breach]]></category>
		<category><![CDATA[loss of personal information]]></category>
		<category><![CDATA[UDOH]]></category>
		<category><![CDATA[Utah]]></category>
		<category><![CDATA[Utah Department of Health]]></category>

		<guid isPermaLink="false">http://nerdherd.com/?p=975</guid>
		<description><![CDATA[The state of Utah lost the personal information of at least 500,000 people because: Attackers were able to compromise the server because an authorization component was not configured properly. The state&#8217;s Department of Technology Services &#8220;has processes in place to ensure the state&#8217;s data is secured, but this particular server was not configured according to [...]]]></description>
			<content:encoded><![CDATA[<p>The state of Utah lost the personal information of at least 500,000 people because:</p>
<blockquote><p>Attackers were able to compromise the server because an authorization component was not configured properly.</p>
<p>The state&#8217;s Department of Technology Services &#8220;has processes in place to ensure the state&#8217;s data is secured, but this particular server was not configured according to normal procedure.&#8221; The agency plans to bolster its controls with additional networking monitoring and intrusion detection functionality.</p></blockquote>
<p>Hopefully they&#8217;ll add some auditors, too.  It&#8217;s a shame to have your system set up so you only find out about misconfigurations after outsiders do.</p>
<p>via <a href="http://www.scmagazine.com/number-of-victims-in-state-of-utah-breach-significantly-rises/article/235759/">Number of victims in state of Utah breach significantly rises &#8211; SC Magazine</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://nerdherd.com/archives/975/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Two more articles on Global Payments breach</title>
		<link>http://nerdherd.com/archives/970</link>
		<comments>http://nerdherd.com/archives/970#comments</comments>
		<pubDate>Fri, 06 Apr 2012 03:51:08 +0000</pubDate>
		<dc:creator>Mike S</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[Global Payments]]></category>
		<category><![CDATA[Hacked!]]></category>
		<category><![CDATA[PCI DSS]]></category>

		<guid isPermaLink="false">http://nerdherd.com/?p=970</guid>
		<description><![CDATA[The first is from SC Magazine, Visa expels Global Payments following 1.5M-card breach: &#8220;What&#8217;s the takeaway on PCI?&#8221; Litan asked on Monday in a blog post. &#8220;The same one that&#8217;s been around for years. Passing a PCI compliance audit does not mean your systems are secure. Focus on security and not on passing the audit.&#8221; [...]]]></description>
			<content:encoded><![CDATA[<p>The first is from SC Magazine, <a href="http://www.scmagazine.com/visa-expels-global-payments-following-15m-card-breach/article/234865/">Visa expels Global Payments following 1.5M-card breach</a>:</p>
<blockquote><p>&#8220;What&#8217;s the takeaway on PCI?&#8221; Litan asked on Monday in a blog post. &#8220;The same one that&#8217;s been around for years. Passing a PCI compliance audit does not mean your systems are secure. Focus on security and not on passing the audit.&#8221;</p></blockquote>
<p>And the second is from Adrian Sanabria, QSA at Sword and Shield, <a href="http://www.swordshield.com/2012/04/03/global-payments-credit-card-data-breach/?utm_source=feedburner&amp;utm_medium=feed&amp;utm_campaign=Feed%3A+SwordShieldEnterpriseSecurityInc+%28Sword+%26+Shield+Enterprise+Security%2C+Inc.%29&amp;utm_content=Google+Reader">Global Payments Credit Card Data Breach</a>:</p>
<blockquote><p>The worst thing I’ve been able to determine from the details so far, is that it seems Global Payments was storing Track Data – information swiped from the magnetic stripe on the back of the card. The PCI DSS explicitly forbids storing track data (requirement 3.2.1), and PCI considers the storage of sensitive data to be one of the most serious PCI violations. CardSystems was effectively shut down for a lesser violation, though their breach was much larger.</p></blockquote>
<p>It&#8217;s a doubly-bad violation of DSS to 1) Not be compliant in the first place, and 2) to suffer a loss of cardholder data.</p>
<p>I imagine the reinstatement audit, if there is one, will be quite extensive.</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://nerdherd.com/archives/970/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The Top 9 Most Costly Financial Services Data Breaches</title>
		<link>http://nerdherd.com/archives/968</link>
		<comments>http://nerdherd.com/archives/968#comments</comments>
		<pubDate>Wed, 04 Apr 2012 21:30:57 +0000</pubDate>
		<dc:creator>Mike S</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Hacked!]]></category>

		<guid isPermaLink="false">http://nerdherd.com/?p=968</guid>
		<description><![CDATA[If you don&#8217;t learn from the past, you&#8217;re doomed to repeat it. Here are 9 of the largest most recent financial services data breaches: via The Top 9 Most Costly Financial Services Data Breaches &#8211; - 1 &#8211; Wall Street &#38; Technology.]]></description>
			<content:encoded><![CDATA[<p>If you don&#8217;t learn from the past, you&#8217;re doomed to repeat it.</p>
<blockquote><p>Here are 9 of the largest most recent financial services data breaches:</p></blockquote>
<p>via <a href="http://www.wallstreetandtech.com/data-security/232800079">The Top 9 Most Costly Financial Services Data Breaches &#8211; - 1 &#8211; Wall Street &amp; Technology</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://nerdherd.com/archives/968/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hackers politely deface security firm website, suggest fixes</title>
		<link>http://nerdherd.com/archives/966</link>
		<comments>http://nerdherd.com/archives/966#comments</comments>
		<pubDate>Mon, 02 Apr 2012 04:53:31 +0000</pubDate>
		<dc:creator>Mike S</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[AntiSec]]></category>
		<category><![CDATA[Hacked!]]></category>
		<category><![CDATA[MalSec]]></category>
		<category><![CDATA[The Security Centre Ltd]]></category>

		<guid isPermaLink="false">http://nerdherd.com/?p=966</guid>
		<description><![CDATA[If they&#8217;d bother getting a contract first, they&#8217;d probably make good money in pen testing. A Cayman Islands security firm got a bit of unsolicited web security advice on March 30 from MalSec, a group of &#8220;malicious security&#8221; hackers who recently broke into a server belonging to the Nigerian Senate. But unlike some of the [...]]]></description>
			<content:encoded><![CDATA[<p>If they&#8217;d bother getting a contract first, they&#8217;d probably make good money in pen testing.</p>
<blockquote><p>A Cayman Islands security firm got a bit of unsolicited web security advice on March 30 from MalSec, a group of &#8220;malicious security&#8221; hackers who recently broke into a server belonging to the Nigerian Senate. But unlike some of the nastier site defacements done recently by members of Anonymous&#8217; #AntiSec collective—including takedowns of two Federal Trade Commission sites—the MalSec hackers left the site itself intact, posting only a replacement home page to advise the company, The Security Centre Ltd., of their vulnerability.</p>
<p>[...]</p>
<p>&#8220;Whilst no harm was done to the original site,&#8221; the hackers wrote on their replacement home page, &#8220;we urge you to secure your site before claiming to be &#8216;the best of the best&#8217; in any kind of security. We were not first—traces of previous security breaches were found.&#8221; The page gave instructions on how to return the site to normal, and advised the company to &#8220;please oversee your security before somebody else with more harmful intent does. You can thank us later &lt;3.&#8221;</p></blockquote>
<p>In Security Centre&#8217;s defense, they are a physical security company, not information security.</p>
<p>via <a href="http://arstechnica.com/business/news/2012/04/hackers-politely-deface-site-of-security-firm-suggest-fixes.ars">Hackers politely deface security firm website, suggest fixes</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://nerdherd.com/archives/966/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Global Payment Systems Compromised In &#8216;Massive&#8217; Breach</title>
		<link>http://nerdherd.com/archives/964</link>
		<comments>http://nerdherd.com/archives/964#comments</comments>
		<pubDate>Sat, 31 Mar 2012 21:00:21 +0000</pubDate>
		<dc:creator>Mike S</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[breach]]></category>
		<category><![CDATA[Global Payments]]></category>
		<category><![CDATA[MasterCard]]></category>
		<category><![CDATA[PCI DSS]]></category>
		<category><![CDATA[Visa]]></category>

		<guid isPermaLink="false">http://nerdherd.com/?p=964</guid>
		<description><![CDATA[This is pretty bad news: A major security breach at Global Payments, which does transaction processing for Visa and MasterCard, has exposed the credit card data of [1 million to 3 million] customers to potential theft. That&#8217;s an awful lot of people. via Global Payment Systems Compromised In &#8216;Massive&#8217; Breach &#8211; Dark Reading.]]></description>
			<content:encoded><![CDATA[<p>This is pretty bad news:</p>
<blockquote><p>A major security breach at Global Payments, which does transaction processing for Visa and MasterCard, has exposed the credit card data of [1 million to 3 million] customers to potential theft.</p></blockquote>
<p>That&#8217;s an awful lot of people.</p>
<p>via <a href="http://www.darkreading.com/security/privacy/232800063/global-payment-systems-compromised-in-massive-breach.html">Global Payment Systems Compromised In &#8216;Massive&#8217; Breach &#8211; Dark Reading</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://nerdherd.com/archives/964/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>I&#8217;d bet cash money on this place being PCI DSS compliant</title>
		<link>http://nerdherd.com/archives/958</link>
		<comments>http://nerdherd.com/archives/958#comments</comments>
		<pubDate>Wed, 28 Mar 2012 04:28:53 +0000</pubDate>
		<dc:creator>Mike S</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[data center]]></category>
		<category><![CDATA[PCI DSS]]></category>
		<category><![CDATA[Visa]]></category>

		<guid isPermaLink="false">http://nerdherd.com/?p=958</guid>
		<description><![CDATA[The 8-acre facility looks like any other industrial park in a sleepy suburb. But the serene setting masks hundreds of cameras and a crack team of former military personnel. Hydraulic bollards beneath the road leading to the OCE can be quickly raised to stop an intruding car going 50 mph. Any speed faster, and the [...]]]></description>
			<content:encoded><![CDATA[<blockquote><p>The 8-acre facility looks like any other industrial park in a sleepy suburb. But the serene setting masks hundreds of cameras and a crack team of former military personnel. Hydraulic bollards beneath the road leading to the OCE can be quickly raised to stop an intruding car going 50 mph. Any speed faster, and the car can&#8217;t navigate a hairpin turn, sending it into a drainage pond that functions as a modern-day moat.</p>
<p>The data center resembles a fortress, with dogged attention to detail. It can withstand earthquakes and hurricane-force winds of up to 170 mph. A 1.5-million-gallon storage tank cools the system. Diesel generators onsite have enough power, in the event of an outage, to keep the center running for nine days. They generate enough electricity for 25,000 households.</p>
<p>[...]</p>
<p class="inside-copy">Visa&#8217;s core-transaction network is private, immune — the company says — from Internet dangers such as denial-of-service attacks by the likes of Anonymous. When hackers took down Visa&#8217;s corporate website in 2010, for example, it had no impact on the core network.</p>
</blockquote>
<p>via <a href="http://www.usatoday.com/tech/news/story/2012-03-25/visa-data-center/53774904/1">Top secret Visa data center banks on security, even has moat – USATODAY.com</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://nerdherd.com/archives/958/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The business model of starting a nation just to have somewhere to store your data</title>
		<link>http://nerdherd.com/archives/954</link>
		<comments>http://nerdherd.com/archives/954#comments</comments>
		<pubDate>Wed, 28 Mar 2012 04:14:31 +0000</pubDate>
		<dc:creator>Mike S</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[HavenCo]]></category>
		<category><![CDATA[Sealand]]></category>
		<category><![CDATA[WikiLeaks]]></category>

		<guid isPermaLink="false">http://nerdherd.com/?p=954</guid>
		<description><![CDATA[A few weeks ago, Fox News breathlessly reported that the embattled WikiLeaks operation was looking to start a new life under on the sea. WikiLeaks, the article speculated, might try to escape its legal troubles by putting its servers on Sealand, a World War II anti-aircraft platform seven miles off the English coast in the [...]]]></description>
			<content:encoded><![CDATA[<blockquote><p>A few weeks ago, Fox News breathlessly reported that the embattled WikiLeaks operation was looking to start a new life under on the sea. WikiLeaks, the article speculated, might try to escape its legal troubles by putting its servers on Sealand, a World War II anti-aircraft platform seven miles off the English coast in the North Sea, a place that calls itself an independent nation. It sounds perfect for WikiLeaks: a friendly, legally unassailable host with an anything-goes attitude.</p>
<p>But readers with a memory of the early 2000s might be wondering, &#8220;Didn&#8217;t someone already try this? How did that work out?&#8221; Good questions. From 2000 to 2008, a company called HavenCo did indeed offer no-questions-asked colocation on Sealand—and it didn&#8217;t end well.</p></blockquote>
<p>Perhaps demand will pick up a bit if the U.S. government continues to seize and shut down websites before even arresting or convicting the site&#8217;s operators.</p>
<p>It&#8217;s an interesting story, though.</p>
<p>via <a href="http://arstechnica.com/tech-policy/news/2012/03/sealand-and-havenco.ars">Death of a data haven: cypherpunks, WikiLeaks, and the world&#8217;s smallest nation</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://nerdherd.com/archives/954/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Java: The Security Risk</title>
		<link>http://nerdherd.com/archives/952</link>
		<comments>http://nerdherd.com/archives/952#comments</comments>
		<pubDate>Mon, 26 Mar 2012 03:53:27 +0000</pubDate>
		<dc:creator>Mike S</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Java]]></category>
		<category><![CDATA[patch management]]></category>

		<guid isPermaLink="false">http://nerdherd.com/?p=952</guid>
		<description><![CDATA[Via: ISC Diary &#124; evilcode.class, this was too good not to repost: It&#8217;s too bad Cisco ASDM requires Java, or I could stop using it completely.]]></description>
			<content:encoded><![CDATA[<p>Via: <a href="http://isc.sans.edu/diary.html?storyid=12838&amp;rss">ISC Diary | evilcode.class</a>, this was too good not to repost:</p>
<p><img src="http://isc.sans.edu/diaryimages/risk.gif" alt="Java is a security risk" /></p>
<p>It&#8217;s too bad Cisco ASDM requires Java, or I could stop using it completely.</p>
]]></content:encoded>
			<wfw:commentRss>http://nerdherd.com/archives/952/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Malware Advancing Faster Than Companies Can Analyze It &#8211; Dark Reading</title>
		<link>http://nerdherd.com/archives/946</link>
		<comments>http://nerdherd.com/archives/946#comments</comments>
		<pubDate>Fri, 09 Mar 2012 05:24:43 +0000</pubDate>
		<dc:creator>Mike S</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[whitelisting]]></category>

		<guid isPermaLink="false">http://nerdherd.com/?p=946</guid>
		<description><![CDATA[IT is worried: More than half of IT leaders say malware sophistication is outpacing their ability to analyze it. A new study conducted by Forrest Anderson Research and commissioned by Norman ASA found that 62 percent of IT pros have this concern, while 58 percent say their biggest worry is the growing number of threats. [...]]]></description>
			<content:encoded><![CDATA[<blockquote><p>IT is worried: More than half of IT leaders say malware sophistication is outpacing their ability to analyze it.</p>
<p>A new study conducted by Forrest Anderson Research and commissioned by Norman ASA found that 62 percent of IT pros have this concern, while 58 percent say their biggest worry is the growing number of threats.</p></blockquote>
<p>Problems like this are going to make whitelisting a nearly mandatory strategy.</p>
<p>via <a href="http://www.darkreading.com/advanced-threats/167901091/security/vulnerabilities/232602289/malware-advancing-faster-than-companies-can-analyze-it.html">Malware Advancing Faster Than Companies Can Analyze It &#8211; Dark Reading</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://nerdherd.com/archives/946/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

