It. The digital watchdog said on Monday it received a handful of heavily redacted documents from the Office of the Director of National Intelligence (ODNI), which it sued last July after it and the National Security Agency moved too slowly on a Freedom of Information Act (FOIA) request.. The tech oversight agency acquired extensively censored files from American intelligence, prompting worries regarding its transparency regulations.. Software Flaw Disclosure, Government Oversight, National Security. . Anthony Pell
A Playstation 3 hacker says he has released information about reverse engineering hypervisor technology used in the PS3 after his home in Germany was raided earlier this week, reportedly at Sony's request.. In a comment to a post on his PS3 Linux and Hyper Reverse Engineering Blog, Graf-chokolo writes in the comments section: "Guys, SONY was today at my home with police and got all my stuff and accounts. So be careful from now on." After several readers expressed doubt about the legitimacy of the post, he says in another comment: "Guys, I don't joke, it's serious. And to prove it, I kept my word and uploaded all my HV reversing stuff. Upload it everywhere so SONY couldn't remove it easily. Grab it guys, it contains lots of knowledge about HV and HV procs." The link for this article located at CNET is no longer available. . In a comment to a post on his PS3 Linux and Hyper Reverse Engineering Blog, Graf-chokolo writes in t. playstation, hacker, released, information, about, reverse, engineering, hypervisor, technol. . LinuxSecurity.com Team
Internet Security Systems, which has been criticized for publicly releasing information about security problems in software before giving application developers time to deal with holes, has issued a revised set of guidelines for how it will handle security warnings. . .. Internet Security Systems, which has been criticized for publicly releasing information about security problems in software before giving application developers time to deal with holes, has issued a revised set of guidelines for how it will handle security warnings . The Atlanta-based ISS posted the guidelines on its Web site Monday, along with a statement from Chris Rouland, director of the company's X-Force group of security experts, whose aim is to determine online threats and issue information about them. Security researchers need to have standards that take into account the public's need to know about vulnerabilities but also "give ample consideration to software vendors working to remedy issues in their products," the statement said. The guidelines, posted as a six-page document, include four phases: discovery, vendor notification, customer notification, and public disclosure. The guidelines are the same for all vendors, so developers of open-source software and proprietary developers receive equal treatment. The link for this article located at PCWorld is no longer available. . Cyber Defense Council updates protocols for revealing vulnerabilities, aiming to harmonize user awareness with creator requirements.. Security Policy, Software Disclosure, Open-Source Standards. . LinuxSecurity.com Team
The Federal Bureau of Investigation is under increasing pressure to disclose the secret blueprints for its Carnivore surveillance system so independent technical experts can verify that the software monitors only the Internet communications of criminal suspects. . The Federal Bureau of Investigation is under increasing pressure to disclose the secret blueprints for its Carnivore surveillance system so independent technical experts can verify that the software monitors only the Internet communications of criminal suspects. The link for this article located at ZDNet is no longer available. . Authorities are intensifying calls for the Justice Department to disclose the operational framework of the Stingray technology for independent assessment.. FBI Surveillance System,Carnivore Code,Software Blueprints. . Anthony Pell
Get the latest Linux and open source security news straight to your inbox.