h1

attrition.org

January 14, 2008

attrition.org is an interesting, non-profit webpage with news about IT security.

The most interesting part for me is their Data Loss Archive and Database. It contains reports about sites that collect personal information and have suffered data loss or data theft, therefore exposing all or part of the personal, valuable information they kept.

h1

2007 Security Hall of Shame

January 10, 2008

Happy 2008!

Now that 2007 is over, it’s a good time to take a look back at last year’s security highlights, a good place to start is the 2007 Security Hall of Shame.

Enjoy.

h1

Las consolas más raras

December 12, 2007

Para cambiar un poco de tercio, vía pixfans.com, versiones especiales de diferentes consolas comerciales, desde la mítica SNES hasta la malograda Dreamcast.

Aunque a mí la que más me gusta es la PSX Desr, merece mención especial la Sega “cafetera” :-)

h1

The Zero Day Initiative

December 11, 2007

It’s been around for some time now, but I learned today about this site: the Zero Day Initiative, founded by Tipping Point, which in turn belongs to 3Com.

At first it looks interesting: A site that basically promotes responsible disclosure, and they even seem to reward submissions. Interesting.

Did you submit anything over there? Can you share your experience?

h1

MD5 collisions

December 10, 2007

We all know MD5 was broken several years ago now and today there is even source code for MD5 collision generators available. Here you have an MD5 collision PoC in relation to the 2008 USA elections.

h1

Are you prepared for cyberwar? (3)

December 4, 2007

Remember the cyberwar topic we have been raising here from time to time?

According to a recently released report from McAfee, that was only the beginning. More info here.