<?xml version="1.0" encoding="utf-8" ?>
<rss version="2.0">
<channel>
<title>Security Net Aggregator</title>
<link>http://zastita.com/index.php</link>
<description>RSS feed Security Net</description>
<language>sr</language>
<ttl>15</ttl>

<item>
	<title>Provera linkova</title>
	<link>http://zastita.com/index.php?det=12775</link>
	<guid>http://zastita.com/index.php?det=12775</guid>
	<description>&lt;p&gt;Dok sam koristio AVG antivirus dopalo mi se sto je imao mogucnost skeniranja linkova, odnosno &lt;strong&gt;Link scanner&lt;/strong&gt;. To je ono kad trazite neku adresu preko &lt;strong&gt;Googla&lt;/strong&gt; i kad dobijete rezultat, pored svake adrese se nalazi znak koji pokazuje koliko je sajt bezbedan. To nije losa opcija, pogotovo kad tek ucite o bezbednosti na netu. Posle sam presao na Aviru koja nije imala tu opciju, tako da sam hteo da pronadjem neki program koji ce raditi taj posao. Prvo sam pronasao &lt;a href=&quot;http://www.mywot.com/&quot; target=&quot;_blank&quot;&gt;&lt;strong&gt;WOT Web of Trust&lt;/strong&gt;&lt;/a&gt;. To je dodatak za Firefox browser. Cuvace vas od online spywarea, spama, virusa, odnosno posetama zarazenim sajtovima. Koliko sam razumeo sistem rada WOT-a svodi se na to da vi sami ocenjujete neki sajt na koji nailazite surfujuci, da li ima neceg zlonamernog na njemu ili ne. Ti podaci se obracunavaju koristeci statisticke algoritme i davajuci jednu ocenu. Kasnije sam stavio &lt;a href=&quot;http://www.siteadvisor.com/&quot; target=&quot;_blank&quot;&gt;&lt;strong&gt;McAfee site advisor&lt;/strong&gt;&lt;/a&gt;, koji po meni stvarno nije los. Obavestavace vas o svim linkovima koji se pojave pa cak i u e-mailu. Ono sto me je podsetilo na AVG antivirus nasao sam u programu &lt;a href=&quot;http://www.explabs.com/products/lslite.asp&quot; target=&quot;_blank&quot;&gt;&lt;strong&gt;LinkScanner Lite&lt;/strong&gt; &lt;/a&gt;. To je u stvari isti onaj dodatak za ovaj antivirus program. Vise iz navike sam ostao na njemu. Ne volim samo sto se ovaj program instalira i ostaje u &lt;strong&gt;System Tray&lt;/strong&gt;. A trudim se da broj ovih ikonica bude sto manji. Ono sto je isto dobro je sto mozete i da ukucate adresu nekog sajta koji vas zanima i da ga date na proveru na svakom od ovih skenera koje sam naveo.&lt;/p&gt;</description>
	<pubDate>Sun, 23 Nov 2008 11:00:55 +0100</pubDate>
</item>

<item>
	<title>Re: Trojanac otporan na antiviruse...</title>
	<link>http://zastita.com/index.php?det=12774</link>
	<guid>http://zastita.com/index.php?det=12774</guid>
	<description>Uspio sam rijesiti problem skeniranjem HDD-a u safe mode-u.Izgleda da su zarazeni bili i RECYCLE fajlovi na particijama,vjerovatno zbog tog nisam uspijevao da formatiranjem stick-a u normalnom rezimu izbacim virus.U svakom slucaju hvala na pomoci.

pozzz svima</description>
	<pubDate>Sun, 23 Nov 2008 11:00:55 +0100</pubDate>
</item>

<item>
	<title>LoveCMS 1.6.2 Final (Simple Forum 3.1d) Change Admin Password Exploit</title>
	<link>http://zastita.com/index.php?det=12773</link>
	<guid>http://zastita.com/index.php?det=12773</guid>
	<description></description>
	<pubDate>Sun, 23 Nov 2008 06:31:08 +0100</pubDate>
</item>

<item>
	<title>Bogus Wal-Mart Survey Leads to Phishing Page</title>
	<link>http://zastita.com/index.php?det=12766</link>
	<guid>http://zastita.com/index.php?det=12766</guid>
	<description>&lt;p&gt;Email messages supposedly sent by the popular department stores chain Wal-Mart promises recipients a rather large amount of money by simply participating in a survey. The messages also state that the money will be credited to the respondent&amp;#8217;s account once the survey has been completed. Here&amp;#8217;s what the spammed message contains:&lt;/p&gt;
&lt;blockquote&gt;&lt;p&gt;&lt;em&gt;Congratulations!&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;&lt;em&gt;You have been selected to take part in our quick and easy 9 questions survey&lt;br /&gt;
In turn we will credit $90.00 to your account - Just for your time!&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;&lt;em&gt;The survey has been sent only to a few people from our random generator !&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;&lt;em&gt;Please spare two minutes of your time and take part in our online survey&lt;br /&gt;
so we can improve our services.&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;&lt;em&gt;Don&amp;#8217;t miss this chance to change something.&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;&lt;em&gt;To participate in this survey, Click Here&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;&lt;em&gt;With the information collected we can decide to direct a number of changes to improve and expand our online services&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;&lt;em&gt;Note:&lt;br /&gt;
-If you received this message in your SPAM BULK folder, that is because of the restrictions implemented by your ISP&lt;br /&gt;
-For security reasons, we will record your ip address, the date and time.&lt;br /&gt;
-Deliberate wrong imputs are criminally pursued and indicted&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;&lt;em&gt;Copyright 2008 Wal-Mart Stores, Inc. All Rights Reserved.&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;&lt;em&gt;Survey ID&lt;/em&gt;&lt;/p&gt;
&lt;p&gt;&lt;em&gt;WWLEKFTSYXDYVLUOSDMVCBRJEXCXCIRWTTFHDQ&lt;/em&gt;&lt;/p&gt;&lt;/blockquote&gt;
&lt;p&gt;A link to the &amp;#8220;survey&amp;#8221; is provided in the message. This is definitely a scam as Wal-Mart has no such survey, and is not paying potential victims of this scam $90 to answer nine questions. Spammers added some notes to make the email message more believable though. Warnings are written at the bottom of the mail such as the recording of the respondent&amp;#8217;s IP address &amp;#8220;for security reasons&amp;#8221; and the more threatening &amp;#8220;deliberate wrong inputs are criminally pursued and indicted.&amp;#8221; Email messages are also marked High Priority.&lt;/p&gt;
&lt;p&gt;Clicking on the link leads users to the phishing site&lt;/p&gt;
&lt;p&gt;&lt;!--SCREENSHOT--&gt;&lt;/p&gt;
&lt;p&gt;Scammers again seem to be exploiting the shopping frenzy that comes with the holidays. &lt;a href=&quot;http://blog.trendmicro.com/you-better-watch-out-xmas-web-threats-come-to-town&quot;&gt;&lt;/a&gt;Christmas and Thanksgiving related Web threats often prey on users&amp;#8217; enthusiasm for purchasing products whether online or not. Several Trend Micro blog entries also document other spamming operations that have similar social engineering techniques:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href=&quot;http://blog.trendmicro.com/obama-survey-offers-500-gas-gift-cards/&quot;&gt;‘Obama Survey’ Offers $500 Gas Gift Cards&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href=&quot;http://blog.trendmicro.com/flying-phish/&quot;&gt;Flying Phish&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;The Trend Micro &lt;a href=&quot;http://itw.trendmicro.com/smart-protection-network/index.php&quot;&gt;Smart Protection Network&lt;/a&gt; already blocks this email message, keeping users away from the phishing website. Non-Trend Micro users are advised to not participate in surveys that come from unsolicited messages. Not clicking links in unwanted messages, or those from suspicious senders also keeps systems safe from threats.&lt;/p&gt;
&lt;div&gt;
&lt;a href=&quot;http://feeds.trendmicro.com/~f/Anti-MalwareBlog?a=j05NN&quot;&gt;&lt;img src=&quot;http://feeds.trendmicro.com/~f/Anti-MalwareBlog?i=j05NN&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.trendmicro.com/~f/Anti-MalwareBlog?a=ui98n&quot;&gt;&lt;img src=&quot;http://feeds.trendmicro.com/~f/Anti-MalwareBlog?i=ui98n&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.trendmicro.com/~f/Anti-MalwareBlog?a=jWKSN&quot;&gt;&lt;img src=&quot;http://feeds.trendmicro.com/~f/Anti-MalwareBlog?i=jWKSN&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.trendmicro.com/~f/Anti-MalwareBlog?a=F6fkn&quot;&gt;&lt;img src=&quot;http://feeds.trendmicro.com/~f/Anti-MalwareBlog?i=F6fkn&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.trendmicro.com/~f/Anti-MalwareBlog?a=aEDNN&quot;&gt;&lt;img src=&quot;http://feeds.trendmicro.com/~f/Anti-MalwareBlog?i=aEDNN&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.trendmicro.com/~f/Anti-MalwareBlog?a=xebPn&quot;&gt;&lt;img src=&quot;http://feeds.trendmicro.com/~f/Anti-MalwareBlog?i=xebPn&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.trendmicro.com/~f/Anti-MalwareBlog?a=quS5N&quot;&gt;&lt;img src=&quot;http://feeds.trendmicro.com/~f/Anti-MalwareBlog?i=quS5N&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src=&quot;http://feeds.trendmicro.com/~r/Anti-MalwareBlog/~4/462427396&quot; height=&quot;1&quot; width=&quot;1&quot; /&gt;</description>
	<pubDate>Sun, 23 Nov 2008 04:00:59 +0100</pubDate>
</item>

<item>
	<title>Drive Encryption  3.521</title>
	<link>http://zastita.com/index.php?det=12762</link>
	<guid>http://zastita.com/index.php?det=12762</guid>
	<description>DriveEncryption helps you encrypt the disk drives which are using FAT or NTFS File Systems.
 
 Drive Encryption supports all kind of Fixed Drive and Removable Storage. For example, Hard Disk, USB Hard...</description>
	<pubDate>Sun, 23 Nov 2008 02:31:01 +0100</pubDate>
</item>

<item>
	<title>Harder, Better, Faster, Stronger - The Malware</title>
	<link>http://zastita.com/index.php?det=12751</link>
	<guid>http://zastita.com/index.php?det=12751</guid>
	<description>&lt;p&gt;I am sure that you know this song. Yes, &lt;a href=&quot;http://en.wikipedia.org/wiki/Daft_Punk&quot;&gt;Daft Punk&lt;/a&gt; absolute rocks, although this post is about malware not the band.&lt;/p&gt;

&lt;div&gt;&lt;a href=&quot;http://flickr.com/photos/chamz/2331535259/&quot;&gt;&lt;img src=&quot;http://farm3.static.flickr.com/2272/2331535259_dde84d1d24.jpg?v=1205728388&quot; alt=&quot;Harder.Better.Faster.Stronger&quot; /&gt;&lt;/a&gt;&lt;/div&gt;

&lt;p&gt;Anyway, I was going through some blogs today and I stumbled across some articles regarding a malware affecting MacOS. Apparently this piece of malicious software is of a type downloader/installer. All it does is to connect to a remote server, fetch the payload and execute. Nothing special really!&lt;/p&gt;

&lt;p&gt;One advantage this malware has over other types of malware is that the payload can be changed over time, which is cool. However, the antivirus folks will continue taking samples of the new payloads and add more signatures to their software. The game is on!&lt;/p&gt;

&lt;div&gt;At the end of the day, regardless whether the malware runs for MacOS (the new hype), Windows or Linux, it is composed of pretty much the same routines. If think about it, there is a common pattern among most malware, which means that at some point, once we have better technologies to map any given application behavior, we will be able to insulate potential problematic processes and perhaps even drop them in a sandbox while running. Actually, this is possible today to one degree or another.&lt;/div&gt;

&lt;p&gt;My point is that once a malware sample is found, it can be quite quickly neutralized. We know that Antivirus software is not perfect but at least antivirus vendors try to solve a quite complicated problem, so you have to give them some credits. The key point which we have to draw from all of this nonsense which I wrote so far, is that we do not know if a particular type of malware exists until we find a sample of it, which brings me to my main point in this post:&lt;/p&gt;

&lt;h3&gt;What if it is not possible or it is very hard to get a malware sample?&lt;/h3&gt;

&lt;p&gt;I &lt;a href=&quot;http://www.gnucitizen.org/blog/browser-rootkits/&quot;&gt;blogged&lt;/a&gt; about these stuff before, but my question still remains. What if the malware does not persist on the system, instead it weakens the security perimeter and than it destroys itself? What if the result of this &lt;q&gt;weakening&lt;/q&gt; looks very similar to the environment you will usually find in corporate networks (yes, corporate networks tend to be quite weakened). In this case the antivirus software has no clue whether this &lt;q&gt;weakening&lt;/q&gt; was intentional or not? I am not malware researcher so I am not sure if such a beast exists, but if it doesn&amp;#8217;t than I find it scary that there is no practicel advice what to do apart from trying not to get infected on first place. I hardly doubt that antivirus software can do much about the situation either.&lt;/p&gt;

&lt;p&gt;&lt;em&gt;Ok, I will leave this concept to sink with you. If you have anything to say please do so bellow. Some may say, &lt;q&gt;hey you spreading FUD&lt;/q&gt;, but I don&amp;#8217;t think that this is FUD. I believe in impossibilities but some stuff are simply impractical for the time being.&lt;/em&gt;&lt;/p&gt;&lt;p&gt;---&lt;br/&gt;gnucitizen &lt;a href=&quot;http://www.gnucitizen.net/gigs&quot;&gt;information security gigs&lt;/a&gt; part of the &lt;a href=&quot;http://www.gnucitizen.net&quot;&gt;cutting-edge network&lt;/a&gt;:&lt;/p&gt;&lt;ul&gt;&lt;li&gt;&lt;a href=&quot;http://www.gnucitizen.com/services&quot; target=&quot;_blank&quot;&gt; Information Security Services &lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.gnucitizen.net/cmpgn/cutting-edge-think-tank&quot; target=&quot;_blank&quot;&gt;GNUCITIZEN  Cutting-edge Think Tank &lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.gnucitizen.com/portfolio&quot; target=&quot;_blank&quot;&gt;GNUCITIZEN  Portfolio &lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.gnucitizen.net/cmpgn/need-hackers&quot; target=&quot;_blank&quot;&gt; Need Hackers? &lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.gnucitizen.net/cmpgn/bump-this&quot; target=&quot;_blank&quot;&gt;GNUCITIZEN  Bump This &lt;/a&gt;&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;---&lt;br/&gt;recent posts from the gnucitizen &lt;a href=&quot;http://www.gnucitizen.net/&quot;&gt;cutting-edge network&lt;/a&gt;:&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.houseofhackers.org/xn/detail/2092781:BlogPost:92262&quot;&gt;Computer chips give new spin on saving energy&lt;/a&gt;&lt;br/&gt;&lt;a href=&quot;http://www.houseofhackers.org/xn/detail/2092781:BlogPost:92246&quot;&gt;IBM, Partners Aim To Build Brain-Like Computer Systems&lt;/a&gt;&lt;br/&gt;&lt;a href=&quot;http://www.houseofhackers.org/xn/detail/2092781:BlogPost:92164&quot;&gt;iphone so easy 2 hack&lt;/a&gt;&lt;br/&gt;&lt;a href=&quot;http://www.spinhunters.org/blog/britney-spears-and-the-art-of-self-defamation/&quot;&gt;Britney Spears And The Art of Self-defamation&lt;/a&gt;&lt;br/&gt;&lt;a href=&quot;http://www.houseofhackers.org/xn/detail/2092781:BlogPost:92113&quot;&gt;Cyber-terrorism will be punishable by death&lt;/a&gt;&lt;br/&gt;&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://feedads.googleadservices.com/~a/s2twQVWAY5wXV2oAVgog9-oZecs/a&quot;&gt;&lt;img src=&quot;http://feedads.googleadservices.com/~a/s2twQVWAY5wXV2oAVgog9-oZecs/i&quot; border=&quot;0&quot; ismap=&quot;true&quot;&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div&gt;
&lt;a href=&quot;http://feedproxy.google.com/~f/gnucitizen?a=h9LZj1UL&quot;&gt;&lt;img src=&quot;http://feedproxy.google.com/~f/gnucitizen?d=41&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feedproxy.google.com/~f/gnucitizen?a=fYhofW1N&quot;&gt;&lt;img src=&quot;http://feedproxy.google.com/~f/gnucitizen?i=fYhofW1N&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feedproxy.google.com/~f/gnucitizen?a=vyeSndpb&quot;&gt;&lt;img src=&quot;http://feedproxy.google.com/~f/gnucitizen?i=vyeSndpb&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feedproxy.google.com/~f/gnucitizen?a=YjU4bHn2&quot;&gt;&lt;img src=&quot;http://feedproxy.google.com/~f/gnucitizen?d=50&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feedproxy.google.com/~f/gnucitizen?a=dHR8aDAa&quot;&gt;&lt;img src=&quot;http://feedproxy.google.com/~f/gnucitizen?i=dHR8aDAa&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feedproxy.google.com/~f/gnucitizen?a=ga6znZXL&quot;&gt;&lt;img src=&quot;http://feedproxy.google.com/~f/gnucitizen?d=52&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feedproxy.google.com/~f/gnucitizen?a=3fmB9JxB&quot;&gt;&lt;img src=&quot;http://feedproxy.google.com/~f/gnucitizen?d=54&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href=&quot;http://feedproxy.google.com/~f/gnucitizen?a=3bhiU3nL&quot;&gt;&lt;img src=&quot;http://feedproxy.google.com/~f/gnucitizen?i=3bhiU3nL&quot; border=&quot;0&quot;&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
	<pubDate>Sat, 22 Nov 2008 08:01:07 +0100</pubDate>
</item>

<item>
	<title>Increase in Exploit Attempts Against MS08-067</title>
	<link>http://zastita.com/index.php?det=12750</link>
	<guid>http://zastita.com/index.php?det=12750</guid>
	<description>Microsoft Security bulletin MS08-067 was an out-of-band security update that was released on October 23, 2008, to address a critical remotely exploitable vulnerability that was being exploited in the wild. The Microsoft Windows Server Service RPC Handling Remote Code Execution Vulnerability that was addressed</description>
	<pubDate>Sat, 22 Nov 2008 07:31:05 +0100</pubDate>
</item>

<item>
	<title>Script Fragmentation Attack Could Allow Hackers to Dodge Anti-virus Detection</title>
	<link>http://zastita.com/index.php?det=12737</link>
	<guid>http://zastita.com/index.php?det=12737</guid>
	<description>Stephan Chenette of Websense describes a new Internet attack vector that could allow hackers to bypass anti-virus protection at both the gateway and the desktop. The technique, called script fragmentation, involves breaking down malware into smaller pieces in order to beat malware analysis engines. Web 2.0 requires new ways of thinking about browser security.&lt;br&gt;   -  Security researcher Stephan Chenette opened up to eWEEK about a new Web
attack vector that could potentially render desktop and gateway anti-virus
products useless.
Chenette, manager of security research at Websense, calls the attack script
fragmentation. Similar to TCP fragmentation
attacks, i...
&lt;p&gt;&lt;a href=&quot;http://feedads.googleadservices.com/~a/8rD_dR2gXQ7Q7wYHVEjx3XFF16I/a&quot;&gt;&lt;img src=&quot;http://feedads.googleadservices.com/~a/8rD_dR2gXQ7Q7wYHVEjx3XFF16I/i&quot; border=&quot;0&quot; ismap=&quot;ismap&quot; /&gt;&lt;/a&gt;&lt;/p&gt;&lt;div&gt;
&lt;a href=&quot;http://feeds.ziffdavisenterprise.com/~f/RSS/eweeksecurity?a=ixkcabMj&quot;&gt;&lt;img src=&quot;http://feedproxy.google.com/~f/RSS/eweeksecurity?d=41&quot; border=&quot;0&quot; /&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.ziffdavisenterprise.com/~f/RSS/eweeksecurity?a=Nz4egceZ&quot;&gt;&lt;img src=&quot;http://feedproxy.google.com/~f/RSS/eweeksecurity?i=Nz4egceZ&quot; border=&quot;0&quot; /&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.ziffdavisenterprise.com/~f/RSS/eweeksecurity?a=kmGd3sS8&quot;&gt;&lt;img src=&quot;http://feedproxy.google.com/~f/RSS/eweeksecurity?d=50&quot; border=&quot;0&quot; /&gt;&lt;/a&gt; &lt;a href=&quot;http://feeds.ziffdavisenterprise.com/~f/RSS/eweeksecurity?a=Euaq3w20&quot;&gt;&lt;img src=&quot;http://feedproxy.google.com/~f/RSS/eweeksecurity?d=43&quot; border=&quot;0&quot; /&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src=&quot;http://feedproxy.google.com/~r/RSS/eweeksecurity/~4/zXQtj0BHjqk&quot; height=&quot;1&quot; width=&quot;1&quot; /&gt;</description>
	<pubDate>Sat, 22 Nov 2008 05:01:07 +0100</pubDate>
</item>

<item>
	<title>New Mac OS X malware - OSX_LAMZEV.A</title>
	<link>http://zastita.com/index.php?det=12673</link>
	<guid>http://zastita.com/index.php?det=12673</guid>
	<description>&lt;p&gt;Filed under: &lt;a href=&quot;http://www.tuaw.com/category/software/&quot; rel=&quot;tag&quot;&gt;Software&lt;/a&gt;, &lt;a href=&quot;http://www.tuaw.com/category/security/&quot; rel=&quot;tag&quot;&gt;Security&lt;/a&gt;&lt;/p&gt;&lt;img vspace=&quot;8&quot; hspace=&quot;8&quot; border=&quot;0&quot; align=&quot;right&quot; src=&quot;http://www.blogcdn.com/www.tuaw.com/media/2008/11/trendmicrologo.png&quot; alt=&quot;&quot; /&gt;Computer security company &lt;a href=&quot;http://us.trendmicro.com/us/home/index.html?utm_source=www.trendmicro.com&amp;amp;utm_medium=referral&amp;amp;utm_campaign=www.trendmicro.com&quot; target=&quot;_blank&quot;&gt;Trend Micro&lt;/a&gt; is reporting that a new &lt;a target=&quot;_blank&quot; href=&quot;http://blog.trendmicro.com/new-malware-threatens-mac-users/&quot;&gt;Mac OS X malware application&lt;/a&gt; is making the rounds. The application, called OSX_LAMZEV.A, gives hackers a way to take control of infected Macs. This is the &lt;a href=&quot;http://www.tuaw.com/2008/11/18/new-variant-of-rsplug-trojan-making-the-rounds/&quot; target=&quot;_blank&quot;&gt;second report of Mac OS X malware&lt;/a&gt; this week.&lt;br /&gt;&lt;br /&gt;This is not a virus, and users must actually launch the app for it to install its payload. Once running, the app also asks which firewall port it can use. Trend Micro reports that &quot;Mac users may be infected when they access remote websites hosting this backdoor. The backdoor may also be disguised as a legitimate application and may be installed and executed on systems.&quot;&lt;br /&gt;&lt;br /&gt;Many Mac OS X-based malware seems to be similar in nature, requiring users to actually launch the installer and give it permission to install the payload. Unlike Windows-based malware, you shouldn't need to install any anti-malware apps to annoy you and slow down your Mac. Just make sure to follow the basic rules of Internet safety -- don't install applications that aren't legitimate or visit Web sites that you don't trust.&lt;br /&gt;&lt;br /&gt;For more details, be sure to visit the &lt;a href=&quot;http://www.trendmicro.com/vinfo/virusencyclo/default5.asp?VName=OSX_LAMZEV.A&amp;amp;VSect=T&quot; target=&quot;_blank&quot;&gt;Trend Micro Virus Encyclopedia.&lt;/a&gt;&lt;p&gt;&lt;a href=&quot;http://www.tuaw.com/2008/11/21/new-mac-os-x-malware-osx_lamzev-a/&quot;&gt;New Mac OS X malware - OSX_LAMZEV.A&lt;/a&gt; originally appeared on &lt;a href=&quot;http://www.tuaw.com&quot;&gt;The Unofficial Apple Weblog (TUAW)&lt;/a&gt; on Fri, 21 Nov 2008 14:30:00 EST.  Please see our &lt;a href=&quot;http://www.weblogsinc.com/feed-terms/&quot;&gt;terms for use of feeds&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.tuaw.com&quot;&gt;&lt;img src=&quot;http://www.tuaw.com/media/feedlogo.gif&quot; alt=&quot;The Unofficial Apple Weblog (TUAW)&quot; style=&quot;float:left;padding:0 5px 5px 0;&quot; /&gt;&lt;/a&gt;&lt;a href=&quot;http://www.tuaw.com/2008/11/21/new-mac-os-x-malware-osx_lamzev-a/&quot;&gt;New Mac OS X malware - OSX_LAMZEV.A&lt;/a&gt; originally appeared on &lt;a href=&quot;http://www.tuaw.com&quot;&gt;The Unofficial Apple Weblog (TUAW)&lt;/a&gt; on Fri, 21 Nov 2008 14:30:00 EST.  Please see our &lt;a href=&quot;http://www.weblogsinc.com/feed-terms/&quot;&gt;terms for use of feeds&lt;/a&gt;.&lt;br&gt;&lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://blog.trendmicro.com/new-malware-threatens-mac-users&quot; /&gt;Read&lt;/a&gt; | &lt;a href=&quot;http://www.tuaw.com/2008/11/21/new-mac-os-x-malware-osx_lamzev-a/&quot; rel=&quot;bookmark&quot; title=&quot;Permanent link to this entry&quot;&gt;Permalink&lt;/a&gt; | &lt;a href=&quot;http://www.tuaw.com/forward/1379642/&quot; title=&quot;Send this entry to a friend via email&quot;&gt;Email this&lt;/a&gt; | &lt;a href=&quot;http://www.tuaw.com/2008/11/21/new-mac-os-x-malware-osx_lamzev-a/#comments&quot; title=&quot;View reader comments on this entry&quot;&gt;Comments&lt;/a&gt;&lt;/p&gt;</description>
	<pubDate>Fri, 21 Nov 2008 09:01:05 +0100</pubDate>
</item>

<item>
	<title>Kako nezavisni istraživački centri mogu da uspešno učestvuju u bezbednosnoj politici?</title>
	<link>http://zastita.com/index.php?det=12589</link>
	<guid>http://zastita.com/index.php?det=12589</guid>
	<description>&lt;p align=&quot;justify&quot;&gt;Centar za civilno-vojne odnose organizuje međunarodnu konferenciju &lt;b&gt;&lt;i&gt;&amp;quot;Kako nezavisni istraživački centri (think-tank-ovi) mogu uspešno učestvovati u bezbednosnoj politici&amp;quot; &lt;/i&gt;&lt;/b&gt;4 i 5. decembra 2008. u Beogradu.&lt;/p&gt;
&lt;p&gt;&lt;a href=&quot;http://www.bezbednost.org/kako-nezavisni-istrazivacki-centri-mogu-da-uspesno-ucestvuju-u-bezbednosnoj-politici&quot;&gt;read more&lt;/a&gt;&lt;/p&gt;</description>
	<pubDate>Thu, 20 Nov 2008 02:31:12 +0100</pubDate>
</item>

<item>
	<title>Personal magazin: Blokada za Backscatter spam</title>
	<link>http://zastita.com/index.php?det=12585</link>
	<guid>http://zastita.com/index.php?det=12585</guid>
	<description>&lt;div&gt;
&lt;div&gt;
Kompanija Sophos obaveštava sve korisnike Sophos Email Security and Control rešenja da će u narednom periodu automatski biti primenjena nadogradnja novih funkcionalnosti. Ova automatska nadogradnja je apsolutno besplatna za sve korisnike Email Security uređaja i počinje zvanično od 19. novembra. Ova nadogradnja uključuje i nove mogućnosti zaštite vaše organizacije od vrste spama koji se zove Backscatter. Šta je Backscatter spam? Da li ste [...]
&lt;br/&gt;
&lt;a href=&quot;http://www.naslovi.net/vas-komentar/921273&quot;&gt;Vaš komentar&lt;/a&gt;
&lt;/div&gt;
&lt;/div&gt;</description>
	<pubDate>Thu, 20 Nov 2008 01:31:16 +0100</pubDate>
</item>

<item>
	<title>A Proactive Approach to Building a Successful Security Development Lifecycle Program</title>
	<link>http://zastita.com/index.php?det=12565</link>
	<guid>http://zastita.com/index.php?det=12565</guid>
	<description>&lt;P&gt;&lt;SPAN&gt;At this point most of you have heard about the Microsoft SDL and some of activities and deliverables associated with it.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;However, I still receive a number of questions, specifically, how and where development organizations can start deploying SDL. &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Good news!&amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;One of the new &lt;a href=&quot;http://msdn.microsoft.com/en-us/security/dd219581.aspx&quot; mce_href=&quot;http://msdn.microsoft.com/en-us/security/dd219581.aspx&quot;&gt;Microsoft SDL Pro Network&lt;/a&gt;&amp;nbsp;members, &lt;a href=&quot;http://www.securityinnovation.com/&quot; mce_href=&quot;http://www.securityinnovation.com/&quot;&gt;Security Innovation&lt;/a&gt;,&amp;nbsp;has invited me to address this and other SDL questions at an &lt;a href=&quot;https://www124.livemeeting.com/lrs/ol_1580/Registration.aspx?pageName=jspjs7230jld9wbf&quot; mce_href=&quot;https://www124.livemeeting.com/lrs/ol_1580/Registration.aspx?pageName=jspjs7230jld9wbf&quot;&gt;upcoming webcast&lt;/a&gt;&amp;nbsp;titled “A Proactive Approach to Building a Successful Security Development Lifecycle Program.” &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;SI&amp;nbsp;also invited Jon Oltsik, an analyst from the Enterprise Strategy Group, to present his &lt;a href=&quot;http://www.enterprisestrategygroup.com/ESGPublications/BriefPopup.asp?ReportID=1093&quot; mce_href=&quot;http://www.enterprisestrategygroup.com/ESGPublications/BriefPopup.asp?ReportID=1093&quot;&gt;point of view&lt;/a&gt;&amp;nbsp;on the value of the SDL to development organizations. &amp;nbsp;It should be an interesting event, and will hopefully answer many of the questions I have received from the field. &amp;nbsp;If we don’t address your questions during our presentations, there is going to be Q&amp;amp;A at the end … &lt;BR&gt;&amp;nbsp;&lt;BR&gt;If you are interested in attending this live web event, it is going to take place TOMORROW Thursday, November 20th, at 1:00pm ET, and you can register for it &lt;a href=&quot;https://www124.livemeeting.com/lrs/ol_1580/Registration.aspx?pageName=jspjs7230jld9wbf&quot; mce_href=&quot;https://www124.livemeeting.com/lrs/ol_1580/Registration.aspx?pageName=jspjs7230jld9wbf&quot;&gt;here&lt;/a&gt;.&amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Hope you can make it!&lt;/P&gt;&lt;/SPAN&gt;&lt;img src=&quot;http://blogs.msdn.com/aggbug.aspx?PostID=9126973&quot; width=&quot;1&quot; height=&quot;1&quot; /&gt;</description>
	<pubDate>Thu, 20 Nov 2008 05:01:17 +0100</pubDate>
</item>

</channel>
</rss>