<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Gemini&#187; Gemini</title>
	<atom:link href="http://www.ip-192.com/author/gemini/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ip-192.com</link>
	<description>IT Infrastructure · Network Protection · Website Development · Training</description>
	<lastBuildDate>Fri, 10 Feb 2012 13:34:47 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Symantec: Enhanced protection for SMB</title>
		<link>http://www.ip-192.com/2010/05/28/symantec-enhanced-protection/</link>
		<comments>http://www.ip-192.com/2010/05/28/symantec-enhanced-protection/#comments</comments>
		<pubDate>Fri, 28 May 2010 15:22:44 +0000</pubDate>
		<dc:creator>Gemini</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[Antivirus]]></category>
		<category><![CDATA[IT infrastructure]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Network]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Small Business]]></category>
		<category><![CDATA[SMB]]></category>
		<category><![CDATA[Symantec]]></category>

		<guid isPermaLink="false">http://www.ip-192.com/?p=3274</guid>
		<description><![CDATA[Sunnyvale (ip-192.com): Symantec has updated its Protection Suite aimed at Small and Medium Businesses (SMB). The new Advanced Business Edition bridges the gap between endpoint security and backup- and recovery and hooks into Symantec's cloud-based Global Intelligence Network to provide early threat warnings and automatic backups. It will provide SMBs with endpoint and messaging security [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Sunnyvale (ip-192.com):</strong> Symantec has updated its Protection Suite aimed at Small and Medium Businesses (SMB). The new Advanced Business Edition bridges the gap between endpoint security and backup- and recovery and hooks into Symantec's cloud-based Global Intelligence Network to provide early threat warnings and automatic backups. It will provide SMBs with endpoint and messaging security as well as desktop, laptop and server backup and recovery to ensure business continuity. In case of an outbreak or system failure, the backup and recovery capabilities will help to recover individual files and folders or complete Windows systems, even to dissimilar hardware or virtual environments.</p>
<p>"Many SMBs wrongly assume antivirus is all they need, when they actually face complex threats ranging from hackers trying to steal credit card data, employees who may accidentally lose intellectual property to a natural disaster that can take down servers that house their customer information," says Lyle Epstein, president and CEO of Kortek Solutions. "A multilayer approach to security is essential and Symantec Protection Suite Advanced Business Edition will help solutions providers and our SMB customers completely protect the information that drives their businesses."</p>
<p>Symantec has lowered the price of the Protection Suite Small Business Edition by 40 percent, effective immediately. The company will also offer hosted services for email and web security. The new Protection Suite is aimed at SMB that lack dedicated IT departments and simplifies administration and lower total cost of ownership by enabling users to manage backup, recovery and security for the entire organization in a single suite.</p>
<p>"We are sometimes surprised to find that many small and medium businesses don’t deploy antivirus, spyware and network protection software to prevent potential disruptions to their day-to-day business operations," says Evelyn Laeschke, a software engineer with Gemini, a Symantec partner. "If their networks are compromised by malware or a hacker and they don't have an up-to-date backup, they are really in trouble."</p>
<p>The Protection Suite Advanced Business Edition is expected to hit the market during summer 2010.</p>

<div class="nr_clear"></div>	
	<div id="nrelate_related_1" class="nrelate nrelate_related nrelate_default nr_110"></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	
	<script type="text/javascript">
	/* <![CDATA[ */
		nRelate.domain = "www.ip-192.com";
		var entity_decoded_nr_url = jQuery('<span/>').html("http://api.nrelate.com/rcw_wp/0.50.3/?tag=nrelate_related&keywords=Symantec%3A+Enhanced+protection+for+SMB&domain=www.ip-192.com&url=http%3A%2F%2Fwww.ip-192.com%2F2010%2F05%2F28%2Fsymantec-enhanced-protection%2F&nr_div_number=1").text();
		nRelate.getNrelatePosts(entity_decoded_nr_url);
	/* ]]&gt; */
	</script>
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://www.ip-192.com/2010/05/28/symantec-enhanced-protection/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>IE 6 and 7: New zero-day exploit</title>
		<link>http://www.ip-192.com/2010/03/11/zero-day-exploit/</link>
		<comments>http://www.ip-192.com/2010/03/11/zero-day-exploit/#comments</comments>
		<pubDate>Thu, 11 Mar 2010 16:47:00 +0000</pubDate>
		<dc:creator>Gemini</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[Cyber security]]></category>
		<category><![CDATA[Exploits]]></category>
		<category><![CDATA[Hacker]]></category>
		<category><![CDATA[Internet Explorer]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Vulnerability]]></category>
		<category><![CDATA[Windows Vista]]></category>

		<guid isPermaLink="false">http://www.ip-192.com/?p=1836</guid>
		<description><![CDATA[Redmond (ip-192.com): A new Internet Explorer zero-day exploit has been published on the web. Microsoft says that it did already receive reports that hackers try to exploit the vulnerability with targeted attacks. The exploit can be found in IE 6 and IE 7. "Our investigation so far has shown that Internet Explorer 8 and Internet [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Redmond (ip-192.com):</strong> A new Internet Explorer zero-day exploit has been published on the web. Microsoft says that it did already receive reports that hackers try to exploit the vulnerability with targeted attacks. The exploit can be found in IE 6 and IE 7.</p>
<p>"Our investigation so far has shown that Internet Explorer 8 and Internet Explorer 5.01 Service Pack 4 on Microsoft Windows 2000 Service Pack 4 are not affected, and that Internet Explorer 6 Service Pack 1 on Microsoft <img class="alignleft" title="Windows Internet Explorer" src="/blog/media/posts/p2010031101.jpg" alt="p2010031101.jpg" width="200" height="90" />Windows 2000 Service Pack 4, and Internet Explorer 6 and Internet Explorer 7 are vulnerable", Microsoft says in a blog post. “The vulnerability exists due to an invalid pointer reference being used within Internet Explorer. It is possible under certain conditions for the invalid pointer to be accessed after an object is deleted. In a specially-crafted attack, in attempting to access a freed object, Internet Explorer can be caused to allow remote code execution.”</p>
<p>Microsoft recommends running IE in Protected Mode, which is only available on systems running the Windows Vista or later operating systems and at least IE7. In Protected Mode, Internet Explorer 7 in Windows Vista cannot modify user or system files and settings without user consent.</p>
<p>Microsoft is considering an "out-of-band" update to mitigate the exploit before the company's next patch Tuesday, the company said on its blog.</p>

<div class="nr_clear"></div>	
	<div id="nrelate_related_2" class="nrelate nrelate_related nrelate_default nr_110"></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	
	<script type="text/javascript">
	/* <![CDATA[ */
		
		var entity_decoded_nr_url = jQuery('<span/>').html("http://api.nrelate.com/rcw_wp/0.50.3/?tag=nrelate_related&keywords=IE+6+and+7%3A+New+zero-day+exploit&domain=www.ip-192.com&url=http%3A%2F%2Fwww.ip-192.com%2F2010%2F03%2F11%2Fzero-day-exploit%2F&nr_div_number=2").text();
		nRelate.getNrelatePosts(entity_decoded_nr_url);
	/* ]]&gt; */
	</script>
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://www.ip-192.com/2010/03/11/zero-day-exploit/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>800,000 Personal Records Compromised</title>
		<link>http://www.ip-192.com/2010/03/04/records-compromised/</link>
		<comments>http://www.ip-192.com/2010/03/04/records-compromised/#comments</comments>
		<pubDate>Thu, 04 Mar 2010 16:32:19 +0000</pubDate>
		<dc:creator>Gemini</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[Botnet]]></category>
		<category><![CDATA[Hacker]]></category>
		<category><![CDATA[Internet Explorer]]></category>
		<category><![CDATA[IT infrastructure]]></category>
		<category><![CDATA[Mariposa botnet]]></category>
		<category><![CDATA[Microsoft]]></category>

		<guid isPermaLink="false">http://www.ip-192.com/?p=1790</guid>
		<description><![CDATA[Madrid (ip-192.com): Personal details relating to 800,000 were found on a computer after the Spanish police arrested three ringleaders connected to a botnet called Mariposa, the Spanish word for butterfly (ip-192.com reported here). The botnet controlling almost 13 million people did have enough power to bring down the IT-infrastructure of a whole country, said the [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Madrid (ip-192.com):</strong> Personal details relating to 800,000 were found on a computer after the Spanish police arrested three ringleaders connected to a botnet called Mariposa, the Spanish word for butterfly (ip-192.com reported <a title="Mariposa botnet taken down" href="http://www.ip-192.com/2010/03/03/mariposa-botnet/" target="_self">here</a>). The botnet controlling almost 13 million people did have enough power to bring down the IT-infrastructure of a whole country, said the police at a news conference in Madrid.</p>
<p>"This is the biggest network of zombie computers ever discovered," said Juan Salon, the head of the cybercrime unit of Spain's Civil Guard Police. "Fortunately this botnet of 13 million computers was controlled by someone who hadn't realized how powerful it was. The Mariposa botnet would have had much more computing power than the one used in a notorious "cyber-attack" on Estonia."</p>
<p>The three Spaniards arrested did have no criminal record and only limited hacking skills. They did buy the virus used to infiltrate on the black market over the Internet and used loopholes in Microsoft’s Internets Explorer (IE) infiltrate PC’s and servers in 190 countries. The Georgia Tech Information Security Center and Panda Security were also part of the group.</p>
<p>Police said that the gang tried to "rent" part of the botnet to cyber criminals from around the globe. They also sold stolen credentials such as banking and credit card information. The Mariposa network was detected in May 2009 by Defense Intelligence. The Canadian information security firm alerted the FBI.</p>

<div class="nr_clear"></div>	
	<div id="nrelate_related_3" class="nrelate nrelate_related nrelate_default nr_110"></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	
	<script type="text/javascript">
	/* <![CDATA[ */
		
		var entity_decoded_nr_url = jQuery('<span/>').html("http://api.nrelate.com/rcw_wp/0.50.3/?tag=nrelate_related&keywords=800%2C000+Personal+Records+Compromised&domain=www.ip-192.com&url=http%3A%2F%2Fwww.ip-192.com%2F2010%2F03%2F04%2Frecords-compromised%2F&nr_div_number=3").text();
		nRelate.getNrelatePosts(entity_decoded_nr_url);
	/* ]]&gt; */
	</script>
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://www.ip-192.com/2010/03/04/records-compromised/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Mariposa botnet taken down</title>
		<link>http://www.ip-192.com/2010/03/03/mariposa-botnet/</link>
		<comments>http://www.ip-192.com/2010/03/03/mariposa-botnet/#comments</comments>
		<pubDate>Wed, 03 Mar 2010 14:04:04 +0000</pubDate>
		<dc:creator>Gemini</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[Botnet]]></category>
		<category><![CDATA[Cyber security]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Virus]]></category>

		<guid isPermaLink="false">http://www.ip-192.com/?p=1782</guid>
		<description><![CDATA[Madrid (ip-192.com): Computers in more than half of the Fortune 1,000 companies and at least 40 big financial institutions were infected with a virus that stole credit card numbers and other data. The Mariposa botnet, the Spanish word for butterfly, controlled more than 13 million PC’s in 190 countries. The Spanish police arrested the masterminds [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Madrid (ip-192.com):</strong> Computers in more than half of the Fortune 1,000 companies and at least 40 big financial institutions were infected with a virus that stole credit card numbers and other data. The Mariposa botnet, the Spanish word for butterfly, controlled more than 13 million PC’s in 190 countries.</p>
<p>The Spanish police arrested the masterminds behind one of the world’s largest botnets. "It was so nasty; we thought we have to turn this off. We have to cut off the head," said Chris Davis, CEO of Defense Intelligence Inc, which discovered the virus last year.</p>
<p>Mariposa was programmed to secretly take control of infected machines. The virus would steal login credentials and record every keystroke on an infected computer. "Basically they were going after anything that would make them money," Davis said. Mariposa initially spread by exploiting vulnerability in Microsoft Corp's Internet Explorer Web browser. It also contaminated machines by infecting USB memory sticks and by sending out tainted links using Microsoft's MSN instant messaging software, he said.</p>
<p>The arrested men have not been named beyond their screen names of netkairo, jonyloleante, and ostiator. They are said to be Spanish citizens in the 20s or early 30s.</p>
<p>While the botnets command and control centers have been dismantled, millions of computers remain infected.</p>

<div class="nr_clear"></div>	
	<div id="nrelate_related_4" class="nrelate nrelate_related nrelate_default nr_110"></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	
	<script type="text/javascript">
	/* <![CDATA[ */
		
		var entity_decoded_nr_url = jQuery('<span/>').html("http://api.nrelate.com/rcw_wp/0.50.3/?tag=nrelate_related&keywords=Mariposa+botnet+taken+down&domain=www.ip-192.com&url=http%3A%2F%2Fwww.ip-192.com%2F2010%2F03%2F03%2Fmariposa-botnet%2F&nr_div_number=4").text();
		nRelate.getNrelatePosts(entity_decoded_nr_url);
	/* ]]&gt; */
	</script>
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://www.ip-192.com/2010/03/03/mariposa-botnet/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Botnet down, experts skeptical</title>
		<link>http://www.ip-192.com/2010/02/26/botnet-down/</link>
		<comments>http://www.ip-192.com/2010/02/26/botnet-down/#comments</comments>
		<pubDate>Fri, 26 Feb 2010 16:20:20 +0000</pubDate>
		<dc:creator>Gemini</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[Botnet]]></category>
		<category><![CDATA[Cyber security]]></category>
		<category><![CDATA[Email]]></category>
		<category><![CDATA[Hotmail]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.ip-192.com/?p=1750</guid>
		<description><![CDATA[Redmond (ip-192.com): Security experts give Microsoft mixed reviews after the company did shut down the Waledac botnet (ip-192.com reported here). "Microsoft has taken a bold move in addressing this problem and it will be interesting to see how it develops," said Sandra Toms LaPedis, general manager of the RSA Conference, the world's biggest gathering of [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Redmond (ip-192.com):</strong> Security experts give Microsoft mixed reviews after the company did shut down the Waledac botnet (ip-192.com reported <a title="Judge grants “License to Kill” to Microsoft" href="http://www.ip-192.com/2010/02/25/microsoft/" target="_self">here</a>). "Microsoft has taken a bold move in addressing this problem and it will be interesting to see how it develops," said Sandra Toms LaPedis, general manager of the RSA Conference, the world's biggest gathering of security professionals.</p>
<p>While Waledac was responsible for sending more than 650 million spam e-mails to hotmail accounts during an 18-day period in December of 2009, others say the botnet did not make a big contribution to global spam levels.</p>
<p>Jose Nazario, a security expert at Arbor Networks, told the Wall Street Journal that the internet addresses Microsoft has brought down could be a small percentage of those used by hackers to control the network.</p>
<p>"Waledac was not a high threat, it's less than 1 percent of the spam traffic," said Richard Cox, chief information officer at Spamhaus. "What we're worried about is Zeus, which is a far more damaging botnet, which is creating a substantial amount of spam."</p>
<p>The software giant claimed its approach had "quickly and effectively cut off traffic to Waledac and severed the connection to most of its thousands of zombie computers".</p>

<div class="nr_clear"></div>	
	<div id="nrelate_related_5" class="nrelate nrelate_related nrelate_default nr_110"></div>
	<!--[if IE 6]>
		<script type="text/javascript">jQuery('.nrelate_default').removeClass('nrelate_default');</script>
	<![endif]-->
	
	<script type="text/javascript">
	/* <![CDATA[ */
		
		var entity_decoded_nr_url = jQuery('<span/>').html("http://api.nrelate.com/rcw_wp/0.50.3/?tag=nrelate_related&keywords=Botnet+down%2C+experts+skeptical&domain=www.ip-192.com&url=http%3A%2F%2Fwww.ip-192.com%2F2010%2F02%2F26%2Fbotnet-down%2F&nr_div_number=5").text();
		nRelate.getNrelatePosts(entity_decoded_nr_url);
	/* ]]&gt; */
	</script>
<div class="nr_clear"></div>]]></content:encoded>
			<wfw:commentRss>http://www.ip-192.com/2010/02/26/botnet-down/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

