This content is restricted.
Author: admini
Hackers exploit Ruby on Rails vulnerability to compromise servers, create botnet
This content is restricted.
Hottest job on market: Cybersecurity professionals
Walters, who says he has 22 years of experience in the field, helped prepare 48 students from Marshall Academy in Falls Church, Va., who competed in the CyberPatriot contest this year.
Listings for cybersecurity positions rose 73 percent in the five years through 2012, 3.5 times faster than postings for computer jobs as a whole, according to Boston-based Burning Glass, a labor market analytics firm that collects data from more than 22,000 online jobs sites.
Just more than a month after graduating in December from Carnegie Mellon University in Pittsburgh with a master’s degree in information security technology and management, he started working at defense contractor Raytheon Co.
“Cybersecurity is a good field these days to get into — there are a lot of people out there looking for talent,” said the 24-year-old, who got offers from all six of the potential employers he interviewed with.
To prepare the next generation of specialists, the federal government’s National Security Agency is working to strengthen college-level education through its National Centers of Academic Excellence in Cyber Operations program, which gives a designation to universities that meet curriculum and other criteria.
Companies and government agencies are finding many candidates exiting college programs inadequately prepared for high-skill jobs crucial to cybersecurity, said Frank Reeder, co- founder of the Center for Internet Security in East Greenbush, N.Y., and former senior official at the U.S.
A spate of recent disclosures by corporations about security breaches include social network Facebook, which said it was targeted in a “sophisticated attack” by hackers in January who installed malware on laptops used by company employees.
U.S. companies and public sector organizations will raise outlays on computer security to an estimated $89.1 billion in the fiscal year ending October 2013, more than double the 2006 level, according to data collected by the Ponemon Institute. and analyzed for Bloomberg.
Each year JPMorgan Chase “spends approximately $200 million to protect ourselves from cyberwarfare and to make sure our data are safe and secure,” with 600 people dedicated to it, Chief Executive Officer Jamie Dimon wrote last month in a letter to shareholders.
“There’s a lot of really talented hackers or people with cybersecurity skills — it’s finding those folks who want to use their skills for good, not evil.”
A participant in last year’s CyberPatriot contest earned certifications and went from high-school to a job paying $62,000, said Bernie Skoch, the commissioner for the competition at the Air Force Association, a nonprofit, independent group that supports the service through educational and promotional programs.
Link: http://www.dailyherald.com/article/20130525/business/705259991/
CommonKey Brings Password Management To Small Teams
Instead of focusing only on the needs of the individual user or offering a complex solution for the enterprise, it provides a password management system which allows small businesses the ability to share passwords securely across a team. The bootstrapped, Baltimore-based startup was co-founded this October by Andrew Stroup, a…
Scanner identifies malware strains, could be future of AV
This content is restricted.
Fight against Cyber Crime is On the Right Track
Despite the numerous security incidents that took place during the first quarter of the year, the fight against cyber crime is on the right track, and though there is still a long way to go, international co-operation among security agencies is beginning to pay off and criminals around the world are being brought to justice.
“The start of the year has seen some serious cyber attacks, including the hacking of the Twitter accounts of major organizations such as the BBC or Burger King, and one of the biggest attacks ever, targeting some of the world’s leading technology companies: Apple, Facebook, Microsoft and Twitter. But there have been some victories for security forces as well, including the arrest of a group of hackers accused of extortion using the infamous ‘Police Virus,’” says Luis Corrons, technical director of PandaLabs.
Also in January, the FBI published details of an investigation that began in 2010 and thwarted a gang of cyber criminals who had infected more than a million computers since 2005.
On February 1, Twitter published an article on its blog (“Keeping our users secure”) detailing how the social network had fallen victim to an attack resulting in unauthorized access to the details of some 250,000 Twitter users. A couple of weeks later, Facebook also released an article on its blog, “Protecting People On Facebook,” acknowledging that their systems had been targeted by a sophisticated attack. The Twitter account of car company Jeep was also the victim of a similar attack, in this case stating that the company had been bought out by Cadillac. On January 30, The New York Times ran a front-page article explaining how they had been victims of an attack that had allowed their computers to be accessed and spied on for months.
Interestingly, in both incidents the attackers were able to access all types of data (customer details, etc.), yet only focused on information about journalists and employees, trying to find any reference to investigative journalism regarding China, and in particular, looking for the papers’ sources.
Some weeks later, Mandiant published a damning 76-page report (APT1: Exposing One of China’s Cyber Espionage Units, http://intelreport.mandiant.com/) explaining how Unit 61398 of the Chinese army has specialized in cyber-espionage. The report revealed more than 3,000 pieces of evidence showing how this unit has been running since at least 2006, stealing information from no less than 141 organizations worldwide.
For some years now, people have turned their gaze to China whenever this type of incident occurs, yet without any real evidence that the Chinese government is behind such attacks. Now, for the first time, it has been proven that the Chinese army is actively involved in espionage on a global scale, infiltrating companies across many sectors and stealing information,” explained Corrons.
Link: http://www.dfinews.com/news/2013/05/fight-against-cyber-crime-right-track