Turktrust, the Turkish CA (certificate authority) responsible for issuing an intermediate CA certificate that was later used to generate an unauthorized certificate for google.com, claims that the bad Google certificate was not used for dishonest purposes.. On Thursday, Google, Mozilla, and Microsoft announced that they are blacklisting two intermediate CA certificates that were mistakenly issued by Turktrust in August 2011 for two of its customers who should have received normal end-entity certificates for their respective domain names. The link for this article located at InfoWorld is no longer available. . Apple, Amazon, and Facebook revoke three Trustwave intermediate CA certificates for improper operations.. Certificate Authority, Turktrust SSL Issues, Google Certificate Security. . LinuxSecurity.com Team
A security expert at a managed services provider has kicked off a project to expose and blacklist the networks hosting VoIP attacks against his and other companies' VoIP PBX servers. The VoIP Abuse Project uses a honeypot to gather as much data as it can from incoming VoIP attacks, including the IP address and a recording of what the call was sending.. Some operators of the offending networks are unaware that their VoIP systems have been hacked and are being used to place fraudulent calls. The attacks range from brute-force hacking to acquire usernames and passwords of the VoIP systems to callers posing as a customer's bank in order to convince victims to hand over their bank account numbers. J. Oquendo, the security engineer who built the so-called Arkeos VoIP honeypot that runs the VoIP Abuse Project, says he decided to launch the VoIP abuse project because he was tired of seeing brute-force attempts against VoIP PBXes and having to contact the organizations whose networks were being used in the attacks -- only to often be ignored. He also wanted to make other companies with VoIP PBX servers on the Internet aware of the threat and actual attacks out there so they could block them. The link for this article located at Dark Reading is no longer available. . Exploring the subtleties of VoIP vulnerabilities and the initiatives aimed at blocking them for enhanced protection.. VoIP threats, Network protection, Cybersecurity measures. . LinuxSecurity.com Team
" Malware is used for a harmful purpose. " Spreading malware via email is a very common practice by attackers. On the Internet there are free Malware blacklist available. How can we make sure that these free blacklist will not block our personal emails? I feel the risk of getting malware is greater then the risk of having a few of my personal emails getting blocked. . Malware is used for a harmful purpose. It can be in your software or hardware. Email and free (don The link for this article located at Cyberciti is no longer available. . Creating strong email filtering systems is vital for malware protection and smooth personal email delivery. Implementing blacklists can effectively block harmful senders.. Malware Protection, Email Filtering, Mail Server Configuration. . Bill Locke
The anti-spam group Spamhaus Project warned more junk e-mail could be on the way as it prepares to lose its domain name thanks to a company it has accused of sending spam. Executives at the U.K.-based Spamhaus Project said Monday they expect a federal judge in Chicago will soon sign an order that would suspend the domain spamhaus.org because the group has refused to recognize the U.S. court and comply with a $11.7 million judgment. Spamhaus warned the order could unleash up to 50 billion junk e-mails a day on computer users worldwide, though legal and technology experts were skeptical the effect would lead to millions of clogged inboxes. . According to Spamhaus, more than 650 million Internet users - including those at the White House, the U.S. Army and the European Parliament - benefit from Spamhaus' "blacklist" of spammers that helps identify which messages to block, send to a "junk" folder or accept. Losing the domain name would make it more difficult for service providers and others to obtain the lists. The link for this article located at International Business Times is no longer available. . Cybersecurity experts alert of looming rise in phishing attacks after domain loss; impacts countless users worldwide.. Spam Threats, Email Filtering, Spam Control. . LinuxSecurity.com Team
Osirusoft, one of the largest anti-spam blacklists, has been shut down by its operator following a barrage of massive Distributed Denial of Service (DoS) attacks that have crippled the service. Services such as relays.osirusoft.com have come under fire recently for . . . . Osirusoft, one of the largest anti-spam blacklists, has been shut down by its operator following a barrage of massive Distributed Denial of Service (DoS) attacks that have crippled the service. Services such as relays.osirusoft.com have come under fire recently for blocking legitimate email as well as spam. The service used a variety of techniques to maintain a real-time dynamic list of IP addresses that are known to have spam originate from them. By using the list in real time, a mail server can determine if it should accept and process a message or disregard it as spam. The link for this article located at ZDNetAU is no longer available. . Osirusoft, one of the largest anti-spam blacklists, has been shut down by its operator following a b. osirusoft, largest, anti-spam, blacklists, operator. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.