From the monthly archives:

September 2008

Mozilla Firefox 3.0.2 released

by certifiedbug on September 24, 2008

in Browser

Fixed in Firefox 3.0.2

MFSA 2008-44 resource: traversal vulnerabilities
MFSA 2008-43 BOM characters stripped from JavaScript before execution
MFSA 2008-42 Crashes with evidence of memory corruption (rv:1.9.0.2/1.8.1.17)
MFSA 2008-41 Privilege escalation via XPCnativeWrapper pollution
MFSA 2008-40 Forced mouse drag

Security Advisory
Release Notes
Download

{ 0 comments }

Intercage back

by certifiedbug on September 23, 2008

in Security

Apprantly IP transit provider UnitedLayer has agreed to provide upstream service to Intercage after Intercage agreed to completely sever ties with Esthost.

Intercage, Inc’s website has a holding page, it looks strangely familiar…

UnitedLayer operates out of the same San Francisco colocation facility as Intercage and Pacific Internet Exchange (PIE).

Kind of reminds me of Lizards that give up their tail to escape.

Is anyone else feeling dizzy yet.

Sources:
Report for AS27595
Controversial ISP Intercage now back online
‘Malware-friendly’ Intercage back among the living

{ 0 comments }

EstDomains PR. Improved detection-prevention

by certifiedbug on September 23, 2008

in Security

EstDomains, Inc: Improved Detection and Prevention System is Live

EstDomains, Inс (http://estdomains.com), announces the launch of new improved and even more efficient version of detection and prevention system oriented to the avoidance of potentially fraudulent transactions, spamming and harmful software distribution that might be performed from the company customers’ accounts.

From the very beginning, EstDomains, Inc (http://estdomains.com), a domain name registration services provider, has undertaken the obligations to provide Internet community with most secure solutions for network presence establishment and running of successful and stable online enterprise. The management of the company also realizes the great necessity of keeping the Internet clean of the fraudulence, harmful software or any disposal of obscene materials. According to the Acceptable Usage Policy, valid for EstDomains, Inc (http://estdomains.com), the appropriate measures are taken against customers who take a risk of using provided services for spam delivery, phishing attempts, distribution or storage of data that may damage user’s computer equipment such as viruses or any other kinds of malware, corrupted codes that are designed with an intention to steal personal data and credit card information or any related materials involved in cybercrime arrangements. Carefully elaborated account monitoring system is used to reveal AUP violation cases among company’s customers. The corrupted account holders are deprived of their account without any refund along with the ultimate right of companies’ services further usage.

In order to prevent crooked customers from being able to continue with their illegal enterprises, the new advanced and more efficient account monitoring system has been applied to the services provided for domain name registration. The improved system is equipped with a whole pack of advanced features that use smart schemes for detailed analyses of the activity performed by an account holder, whose account has been suspended due to violation of AUP terms and conditions. On top of everything else, carefully elaborated clusters also reveals accounts that are registered under different name but in reality belong to a person who has been involved in AUP infringements. Various details, such as IP addresses, minute payments descriptions, personal data analysis, accounts sign up logs and so on, are used for the creation of a common pattern, which indicates characteristic features of one particular person. These patterns are indispensable tool in the further investigations that are led in order to recognize corrupted account holders from other law-abiding customers. The revealed accounts violating AUP are deactivated. As usual, in order to avoid wrong accusations, the domain name holder, whose account contains domain names that violate company’s Acceptance Usage Policy, will receive a notification with a warning and further detailed instruction how to report a mistake. The required information proving that the account is not privy to the delinquent activity of any kind must be submitted within 24 hours.

Once again EstDomains, Inc would like to address the interactive community and ask for help in making the Internet space more safe and user-friendly. Please report infringements that involve the activity of EstDomains, Inc customers to: https://support.estdomains.com.

Wilmington, DE (PRWEB) September 21, 2008.
http://www.prweb.com/releases/2008/9/prweb1357644.htm

Uh huh, kept for historical purposes. ;-)

{ 0 comments }

USA to have Identity Theft Law

by certifiedbug on September 23, 2008

in Security, Windows Vista

The Identity Theft Enforcement and Restitution Act, S. 2168, was originally introduced in 2007.
http://leahy.senate.gov/press/200711/111607a.html

The House of Representatives Monday night finally approved provisions of the Act which is on its way to the President to be signed into law after its inclusion in another bill to protect former US Vice Presidents, H.R. 5938.

Sen. Patrick Leahy (D-Vt.), sponsor of S. 2168, said in a prepared statement.

The anti-cyber crime Provisions included in the Former Vice President Protection Act would:

  • Give victims of identity theft the ability to seek restitution for the loss of time and money spent restoring credit and remedying the harms of identity theft;
  • Enable prosecution of those who steal personal information from a computer even when the victim’s computer is located in the same state as the thief’s computer. Under current law, federal courts only have jurisdiction if the thief uses an interstate communication to access the victim’s computer.
  • Eliminate the requirement that damage to a victim’s computer exceed $5,000 before charges can be brought for unauthorized access to a computer. The provision protects innocent actors while punishing violations resulting in less than $5,000 in damage as misdemeanors.
  • Make it a felony to employ spyware or keyloggers to damage ten or more computers regardless of the aggregate amount of damage caused, ensuring that the most egregious identity thieves will not escape with a minimal, or no, sentence.
  • Makes it a crime to threaten to steal or release information from a computer. Current law only permits the prosecution of those who seek to extort companies or government agencies by explicitly threatening to shut down or damage a computer. Violators of this provision are subject to a criminal fine and up to five years in prison.
  • Add the remedies of civil and criminal forfeiture to the arsenal of tools available to federal prosecutors to combat cyber crime, and mandate that the U.S. Sentencing Commission review and update its guidelines for identity theft and other cyber crime offenses.

Bill To Fight Identity Theft Headed To President’s Desk For Signature

http://www.govtrack.us/congress/bill.xpd?bill=h110-5938

{ 0 comments }

Microsoft’s Press releases

by certifiedbug on September 22, 2008

in Microsoft

Joe Wilcox, Microsoft Watch.
Microsoft’s Nine Press Release Monday

News Analysis. Today, Microsoft dropped nine press releases. What do they all mean?
I’ll just quickly take them one by one, offering a little color and perspective. I read them, so that you don’t have to.

Microsoft Press Release

{ 0 comments }

Atrivo, a.k.a Intercage, Washington Post

by certifiedbug on September 22, 2008

in Security

Internet Shuns U.S. Based ISP Amid Fraud, Abuse Allegations

“The truth is that nobody’s been reporting this stuff, but it’s illegal for me to just sniff around each and every site on my network and say, ‘Hey, what are you up to?,’” Kacperski said. “But if there’s a complaint, then I can deal with it, I have to deal with it. Instead of complaints, I get people labeling me as some kind of mafia kingpin or crime boss.”

nobody’s been reporting this stuff,” ?

http://www.google.com/search?hl=en&q=atrivo+malware
http://www.google.com/search?hl=en&q=intercage+malware

No doubt people will keep monitoring…

{ 0 comments }

Atrivo-Intercage offline

by certifiedbug on September 22, 2008

in Security

AS Report.

Report for AS27595

Name

INTERCAGE - InterCage, Inc.

NOT Announced

This AS is not currently used to announce prefixes in the global routing table, nor is it used as a visible transit AS.

Prefixes added and withdrawn by this origin AS in the past 7 days.

- 64.28.176.0/20 Withdrawn
- 67.210.0.0/21 Withdrawn
- 67.210.8.0/22 Withdrawn
- 67.210.14.0/23 Withdrawn
- 69.22.162.0/23 Withdrawn
- 69.22.168.0/21 Withdrawn
- 69.22.184.0/22 Withdrawn
- 69.31.64.0/20 Withdrawn
- 69.50.160.0/19 Withdrawn
- 85.255.113.0/24 Withdrawn
- 85.255.114.0/23 Withdrawn
- 85.255.116.0/22 Withdrawn
- 85.255.120.0/23 Withdrawn
- 85.255.122.0/24 Withdrawn
- 216.255.176.0/20 Withdrawn
- 216.255.176.0/22 Withdrawn
- 216.255.180.0/22 Withdrawn
- 216.255.184.0/22 Withdrawn
- 216.255.188.0/22 Withdrawn

http://cidr-report.org/cgi-bin/as-report?as=AS27595

NANOG:
Atrivo/Intercage: NO Upstream depeered at 2:25am est

Emil Kacperski started this topic: Re: Atrivo/Intercage: NO Upstream depeer

It gets a little heated, I guess this sums it up.

> Anything else you’d like to throw at me here on NANOG?
Sure, but I havn’t figured out how to hit someone with a two-by-four
over the Internet.

{ 1 comment }

2009 MVP Global Summit

by certifiedbug on September 21, 2008

in Security

Speaking of conferences,

Microsoft will host the 2009 MVP Global Summit March 1-4, 2009 at the Washington State Convention and Trade Center in Seattle, and at Microsoft headquarters in Redmond, Washington.

I will be attending my third Summit as a Microsoft Consumer Security MVP, and am looking forward to seeing friends and colleagues again real time and meeting new ones.

The MVP Global Summit features more than 400 technical sessions in which MVPs can connect with other MVPs, build relationships with Microsoft experts, and provide real-world insights and feedback to Microsoft product teams.

https://mvp.support.microsoft.com/gp/MVPsummit

{ 0 comments }

ASC Public Workshop 2009

by certifiedbug on September 21, 2008

in Security

The Anti Spyware Coalition’s next meeting is…..

Edit: Oops, it hasn’t been announced yet.  Thanks Corrine for pointing out I was looking at the 2008 agenda.  *blush*

{ 0 comments }

New Windows Live Betas

by certifiedbug on September 18, 2008

in Microsoft

Live Writer now supports my blog’s tag plugin which means I don’t have to edit every post to add tags.

Strike that, the tags generated gave a 404 and my plugin, “No tag for this post”.

I will add an update once I have played with all the new beta goodies, and hopefully fixed a few things too.

Building Windows Live

Windows Live Beta Round-Up & Plug-ins for Windows Live Photo Gallery

{ 0 comments }