background preloader

Security Reading

Facebook Twitter

WooYun.org | 自由平等的漏洞报告平台. Researcher Demonstrates ATM ‘Jackpotting’ at Black Hat Conference | Threat Level. LAS VEGAS — In a city filled with slot machines spilling jackpots, it was a “jackpotted” ATM that got the most attention Wednesday at the Black Hat security conference, when researcher Barnaby Jack demonstrated two suave hacks against automated teller machines that made them spew out dozens of crisp bills. The audience greeted the demonstration with hoots and applause. In one of the attacks, Jack reprogrammed the ATM remotely over a network, without touching the machine; the second attack required he open the front panel and plug in a USB stick loaded with malware. Jack, director of security research at IOActive Labs, focused his hack research on standalone and hole-in-the-wall ATMs — the kind installed in retail outlets and restaurants. He did not rule out that bank ATMs could have similar vulnerabilities, but he hasn’t yet examined them.

The two systems he hacked onstage were made by Triton and Tranax. Both the Triton and Tranax ATMs run on Windows CE. See also. _Half_Year_Report_2010.pdf (application/pdf 物件) Software [In]security: Obama Highlights Cyber Security Progress > Software security expert Gary McGraw went to a White House meeting on cyber security attended by 100 public and private sector security experts. McGraw shares the details of the meeting, including an unannounced visit by President Obama. Private Sector Security Experts Convene at the White House to Discuss the National Cyber Security Agenda On Wednesday, July 14, 2010, U.S. Cyber Security Coordinator Howard Schmidt convened a hastily called meeting of around 100 public and private sector security experts at the White House to explain the progress he has made in the six months since he joined the administration.

I was there. Here is a picture I took of President Obama addressing the meeting. A “Discussion on the Progress of the President’s Cybersecurity Efforts” In addition to remarks from President Obama and Howard Schmidt, the meeting was addressed by two cabinet Secretaries—Janet Napolitano, Secretary of DHS, and Gary Locke, Secretary of Commerce. A Clear National Priority. Are You Ready for These Security Inflection Points? Neil MacDonald VP & Gartner Fellow 15 years at Gartner 25 years IT industry Neil MacDonald is a vice president, distinguished analyst and Gartner Fellow in Gartner Research.

Mr. MacDonald is a member of Gartner's information security and privacy research team, focusing on operating system and application-level security strategies. Specific research areas include Windows security…Read Full Bio Coverage Areas: by Neil MacDonald | May 7, 2009 | 3 Comments As I discuss IT security strategies and future architectures with clients, there are several inflection points that I don’t think many organizations are prepared for. Are you ready for the point where: More non-employees access our systems and information than actual employees (To be clear – I’m not talking about consumer-facing websites, I’m talking about our internal systems and information opened up for collaboration and inter-enterprise processes).

Some of you are already experiencing these. 黑客防线总第6期-中美黑客大战_百度文库. Security Developer Center. Hack in the box Magazine. Index of /hitbsecconf2010ams/materials.