Sign in
Terry Zink's Cyber Security Blog
Discussing Internet security in (mostly) plain English
Translate This Page
Translate this page
Powered by
Microsoft® Translator
Common Tasks
Blog Home
Email Blog Author
About
OK
RSS for comments
RSS for posts
Atom
Search
Tags
Authentication
Backscatter
Botnets
Economics
Education
Entertainment
Facebook
Foreign language
Hacking
Legal
Malware
Miscellaneous
Net Neutrality
Outbound
Pages
Privacy
Reputation
Security
Social Networking
Spam
Stories
Monthly Archives
Archives
May 2013
(1)
April 2013
(7)
March 2013
(1)
February 2013
(2)
January 2013
(3)
December 2012
(14)
November 2012
(9)
October 2012
(16)
September 2012
(8)
August 2012
(12)
July 2012
(13)
June 2012
(15)
May 2012
(17)
April 2012
(8)
March 2012
(16)
February 2012
(14)
January 2012
(21)
December 2011
(6)
November 2011
(12)
October 2011
(13)
September 2011
(12)
August 2011
(15)
July 2011
(14)
June 2011
(11)
May 2011
(11)
April 2011
(11)
March 2011
(11)
February 2011
(9)
January 2011
(1)
December 2010
(19)
November 2010
(16)
October 2010
(18)
September 2010
(16)
August 2010
(16)
July 2010
(16)
June 2010
(16)
May 2010
(16)
April 2010
(21)
March 2010
(25)
February 2010
(17)
January 2010
(13)
December 2009
(13)
November 2009
(17)
October 2009
(18)
September 2009
(13)
August 2009
(12)
July 2009
(15)
June 2009
(12)
May 2009
(13)
April 2009
(10)
March 2009
(9)
February 2009
(9)
January 2009
(16)
December 2008
(15)
November 2008
(16)
October 2008
(13)
September 2008
(19)
August 2008
(16)
July 2008
(16)
June 2008
(15)
May 2008
(14)
April 2008
(15)
March 2008
(17)
February 2008
(15)
January 2008
(14)
December 2007
(16)
November 2007
(12)
October 2007
(16)
September 2007
(16)
August 2007
(8)
July 2007
(15)
June 2007
(16)
May 2007
(15)
April 2007
(11)
March 2007
(10)
February 2007
(9)
January 2007
(20)
December 2006
(14)
November 2006
(8)
October 2006
(14)
September 2006
(13)
August 2006
(22)
July 2006
(12)
MSDN Blogs
>
Terry Zink's Cyber Security Blog
Subscribe via RSS
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
Terry Zink's Cyber Security Blog
How China steals our secrets
Posted
over 1 year ago
by
tzink
0
Comments
Former US counter terrorism director Richard Clarke has another article up in the New York Times entitled “ How China Steals Our Secrets .” It’s similar to an article that I wrote about last week. In it, he recounts how nearly all US companies...
Terry Zink's Cyber Security Blog
Former US counter-terrorism director speculates who was behind the Stuxnet attack, and talks about China’s role in espionage
Posted
over 1 year ago
by
tzink
1
Comments
The title of this post is a record for my longest post title ever. But I had to get everything in there lest you think this blog post is only on one topic. The story of Stuxnet occurred in 2010 and it seems like forever ago. And since that...
Terry Zink's Cyber Security Blog
U.S. Outgunned in Hacker War
Posted
over 1 year ago
by
tzink
0
Comments
The Wall Street Journal has an article up today with an interview with outgoing head of the FBI’s cyber crime investigation Shawn Henry. In it, he has a blunt assessment of the US’s capabilities when it comes to combatting online crime, especially...
Terry Zink's Cyber Security Blog
Top Anonymous/LulzSec hacker caught
Posted
over 1 year ago
by
tzink
0
Comments
This is an old story (where old > 2 weeks), but I still want to write about it. Nine months ago, I wrote a post where LulzSec decided, after 9 weeks of mischief, to call it quits . This was in June, 2011. About three weeks ago, the FBI announced...
Terry Zink's Cyber Security Blog
Spam catch rates drop
Posted
over 1 year ago
by
tzink
0
Comments
I was reading All Spammed Up’s recent post entitled Are Spam Filters really that Bad? It is referring to the latest test to come out of Virus Bulletin where they measure the efficacy of a variety of antispam products: In the latest VBSpam comparative...
Terry Zink's Cyber Security Blog
Has the Zeus disruption affected spam at all?
Posted
over 1 year ago
by
tzink
0
Comments
I’ve written a number of times in the past about which botnets send us the most spam. Cutwail is always in the top 3. With the Zeus disruption, has this affected Cutwail at all? Cutwail is not necessarily related to Zeus; as I said in my previous...
Terry Zink's Cyber Security Blog
Microsoft disrupts the Zeus infrastructure
Posted
over 1 year ago
by
tzink
0
Comments
Over the weekend and this morning, Microsoft, working in conjunction with others, issued civil lawsuits to sinkhole numerous domains associated with the Zeus botnet. When I say “botnet”, I use the term loosely because Zeus is not a botnet in the...
Terry Zink's Cyber Security Blog
Think SPF is widely deployed? Think again.
Posted
over 1 year ago
by
tzink
2
Comments
With all the hoopla surrounding DMARC, I thought I would take the time to see how SPF is functioning in real life, at least in our network. According to DMARC documentation, SPF and DKIM adoption is reaching critical mass (see page 5 of that link): Over...
Terry Zink's Cyber Security Blog
Internet pharmacies and bad registrars
Posted
over 1 year ago
by
tzink
0
Comments
Last week, Krebs on Security reported on how 50% of online pharmacies’ domains are registered on only two different registrars – Internet.bs (what a curious name) and Ukranian Names. Internet registrar watchdog Knujon also released a report about...
Terry Zink's Cyber Security Blog
The pros and cons of graylisting
Posted
over 1 year ago
by
tzink
0
Comments
Graylisting is an antispam technique that works by taking advantage of sender reputation. Specifically, the lack of a good or bad reputation gives the sender a chance to prove themselves worthy of delivery. The basic idea is that a good sender...
Terry Zink's Cyber Security Blog
Predicting the future of abuse, part 2
Posted
over 1 year ago
by
tzink
0
Comments
Following on from my previous post, what does the future of Internet abuse look like? Here’s what I think: The proliferation of smaller devices will shift malware away from PCs to phones and tablets Crime will not go away. The reason criminals...
Terry Zink's Cyber Security Blog
Predicting the future of abuse
Posted
over 1 year ago
by
tzink
0
Comments
A couple of months ago, I wrote about IBM’s predictions for 2016 , and one of those was that there would be no more spam. As I look around at other predictions about the future, I say to myself “Self, what do I think will be the future of abuse...
Terry Zink's Cyber Security Blog
Argh! Spoofed email got me again!
Posted
over 1 year ago
by
tzink
1
Comments
A couple of weeks ago, I was checking email on my phone and I got a spoofed email from Stratfor saying that the CEO of the company stepped down. I initially fell for it because I couldn’t see the formatting of the email, I only had a sub-optimally...
Terry Zink's Cyber Security Blog
How Google is fighting back against Android threats
Posted
over 1 year ago
by
tzink
1
Comments
Following on from my previous post on Android threats (this post is based upon research of Google’s Bouncer feature), Google’s strategy to combat Maldroids is four-fold: Prevent security issues from occurring Minimize the impact of any security issues...
Terry Zink's Cyber Security Blog
What Android threats look like
Posted
over 1 year ago
by
tzink
0
Comments
I’ve been doing some reading recently on Android threats, specifically some stuff by Eric Chien, Technical Directory of Security Technology and Response at Symantec. Anything you read here is not stuff I’ve come up with myself, but rather, based...
Terry Zink's Cyber Security Blog
How much money do spammers make?
Posted
over 1 year ago
by
tzink
0
Comments
I recently had a chance to read a report out of the University of California at San Diego by Chris Kanich (among others). I also had a chance to hear him speak about the topic – Show Me The Money! This post contains my notes with some photos...
Terry Zink's Cyber Security Blog
The Top 3 Emerging Threats on the Internet
Posted
over 1 year ago
by
tzink
0
Comments
Last week at RSA, Bruce Schneier gave a talk on the top 3 emerging threats on the Internet. Whereas we in the security field usually talk about spam, malware and cyber crime, he talked about three meta-trends that all have the potential to be more...
Terry Zink's Cyber Security Blog
Why managing multiple usernames and passwords sucks
Posted
over 1 year ago
by
tzink
1
Comments
I have way too many user accounts. I can’t use the same password everywhere, but so many of these also force me to use different usernames. I can’t remember them! I went to the web page for Morgan Stanley Smith Barney and I forgot my username...
Terry Zink's Cyber Security Blog
I’m a SpamCop
Posted
over 1 year ago
by
tzink
0
Comments
Below is a 6-minute video, starring me (among others) about what it’s like to be a SpamCop. When I filmed it, I remember thinking “Gee, this will be entertaining!” But when I saw it on the big screen with everyone watching, I thought “Gee...
Terry Zink's Cyber Security Blog
How did WikiLeaks get the Stratfor emails?
Posted
over 1 year ago
by
tzink
0
Comments
As a follow up to my previous post, I’d like to comment on the Reuters article where WikiLeaks is publishing hundreds of thousands of internal emails from security think tank Stratfor: WikiLeaks did not say how it had acquired access to the vast haul...
Terry Zink's Cyber Security Blog
The Stratfor hack – the gift that keeps on taking
Posted
over 1 year ago
by
tzink
0
Comments
I admit, I was fooled. As I’ve written previously , private intelligence service Stratfor was hacked in December, my information was leaked and since then I’ve been getting spear phishing messages. Yesterday, I got another one and I admit, I was...
Terry Zink's Cyber Security Blog
Misconceptions about spam
Posted
over 1 year ago
by
tzink
0
Comments
Sometimes I hear people or read writers that say things about spam that are incorrect. I thought I would clear those up in this blog post. December is spam season When the holidays roll around, people start warning other people to watch their inboxes...
Terry Zink's Cyber Security Blog
MAAWG updates its name
Posted
over 1 year ago
by
tzink
0
Comments
If you’ve been to the MAAWG web page lately, you may have noticed that they have updated their name and logo: The big change is the expansion from a focus primarily on spam to spam, malware (on computers), and mobile malware. I wrote back in October 2009...
Terry Zink's Cyber Security Blog
Hotmail and Gmail are tied in antispam effectiveness
Posted
over 1 year ago
by
tzink
2
Comments
A couple of days ago, the New York Times reported on a study by Cascade Insights that measured the effectiveness of the spam filters in Gmail, Hotmail, and Yahoo Mail. The results? Hotmail and Gmail are about equal in terms of how good they...
Terry Zink's Cyber Security Blog
Anonymous plans to go after DNS root servers. What will be the US’s response?
Posted
over 1 year ago
by
tzink
6
Comments
The other day on pastebin , snippets of an email conversation were posted with members of the hacking group Anonymous discussing plans to conduct DOS attacks against the Internet’s root name servers: To protest SOPA, Wallstreet, our irresponsible leaders...
Page 6 of 44 (1,095 items)
«
4
5
6
7
8
»