Browse by Tags

COFEE freely downloadable on the Internet?
You definitely have heard of COFEE (Computer Online Forensic Evidence Extractor) which we make freely available to Law Enforcement through Interpol and NW3C. Now, the probably unavoidable happened and the tool leaked to the Internet. There was actually Read More...
Posted 10 November 09 06:44 by rhalbh | 2 Comments   
Filed under ,
International Collaboration on Policies for Cybersecurity and Data Protection
Since a few years we are working with the Council of Europe in a partnership to help to drive a Cybersecurity treaty. We realize that a problem a lot of Law Enforcement agencies have is inconsistent legislation which makes is unbelievably hard to catch Read More...
COFEE now distributed via a NW3C as well
COFEE is a tool available to Law Enforcement only to capture online evidence with a little training as possible. The idea behind the tool is, that there is little need for high-trained staff to be available during e.g. house searches and that a normal, Read More...
The Africa Cable – A Chance for Africa! – A Threat for the Internet?
The development in Africa especially with the new broadband services to me is a huge chance for the whole continent. I just found this map on the next two years: source: IntelFusion Even though I have not been in Africa over the last few months, I heard Read More...
Paper on Information Warfare
I often see a lot of discussions on Information Warfare. Today I just stumbled across a paper published by RAND called Strategic Information Warfare – A New Face of War – from my first impression definitely worth reading Roger Read More...
Posted 09 July 09 08:27 by rhalbh | 0 Comments   
Filed under ,
Distributed Denial of Service – and how it works
I often get asked about Distributed Denial of Service (DDoS) attacks, how it works and what role we can play to prevent them. So, let me start with the first part of it: Our Security Intelligence Report version 5 talked about the underground economy and Read More...
Posted 08 July 09 01:30 by rhalbh | 0 Comments   
Filed under ,
How much does a lost Laptop cost?
I stumbled upon this study today commissioned by Intel and executed by Ponemon. They key findings were: The average value of a lost laptop is $49,246. This value is based on seven cost components: replacement cost, detection, forensics, data breach, lost Read More...
Finjan reports world's largest Botnet
digg_url = "http://blogs.technet.com/rhalbheer/archive/2009/04/24/finjan-reports-world-s-largest-botnet.aspx";digg_title = "Finjan reports world\'s largest Botnet";digg_bgcolor = "#555555";digg_skin = "normal"; digg_url = undefined;digg_title = undefined;digg_bgcolor Read More...
Security Intelligence Report: “Scareware” on the Raise
You know that we release our Security Intelligence Report twice an year: Today Version 6 is due. Let me try to give you an overview of the “highlights” of the report from my point of view: As I wrote in the title and as I blogged about this summer ( „Scareware“ Read More...
Additional Conficker Guidance
Yes, Conficker is far from being over. We still see a lot of infections. Therefore we decided to publish additional guidance for Conficker: Microsoft Conficker guidance page for IT Professionals and those focused on security in the enterprise: http://technet.microsoft.com/en-us/security/dd452420.aspx Read More...
The Way to a Zero Day
No, sorry but this is not a tutorial I just read this blog post on Websense which is pretty interesting: The way to a zero-day Roger Read More...
Posted 05 February 09 09:10 by rhalbh | 0 Comments   
Filed under ,
After Estonia now Kyrgyzstan
There is definitely proof that during war times, armies add a virtual component to the “real life” war. Additionally we have seen the attacks to Estonia, where nobody really knew where they originated from (I do not mean the country but whether a government Read More...
Comments on US-CERTs Advisory on Auto-Run
You might have seen the advisory of the US-CERT titled Microsoft Windows Does Not Disable AutoRun Properly – if not, you will definitely have seen one of the articles covering this issue and telling you that our advice on how to prevent Conficker is flawed. Read More...
Russian Roulette with your Network
First of all, before I really start, I hope that you all had a great start in 2009. Mine was actually pretty mixed. The good side was, how my year really started and what I saw when I looked out the window at January 1st (yes, I was on vacation skiing Read More...
Spying on Smartphones
I was recently at an event for Law Enforcement where one of the discussion points was how critical it is to protect Smartphones – actually it was more about how easy to would be to claim that my Smartphone was hacked and how proof can be found. That you Read More...
More Posts Next page »

Search

This Blog

Syndication

Page view tracker