<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>1security&#039;s Blog</title>
	<atom:link href="http://1security.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://1security.wordpress.com</link>
	<description>Blog sobre Segurança da Informação</description>
	<lastBuildDate>Thu, 06 May 2010 03:20:55 +0000</lastBuildDate>
	<language>pt</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='1security.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>1security&#039;s Blog</title>
		<link>http://1security.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://1security.wordpress.com/osd.xml" title="1security&#039;s Blog" />
	<atom:link rel='hub' href='http://1security.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Kaspersky Lab Americas&#8217; Award-Winning Partner Program Raises the Bar</title>
		<link>http://1security.wordpress.com/2010/05/06/kaspersky-lab-americas-award-winning-partner-program-raises-the-bar/</link>
		<comments>http://1security.wordpress.com/2010/05/06/kaspersky-lab-americas-award-winning-partner-program-raises-the-bar/#comments</comments>
		<pubDate>Thu, 06 May 2010 03:18:07 +0000</pubDate>
		<dc:creator>1security</dc:creator>
				<category><![CDATA[Kaspersky]]></category>

		<guid isPermaLink="false">http://1security.wordpress.com/?p=1241</guid>
		<description><![CDATA[New Kaspersky Lab Green Team Partner Program Is All About Commitment and Profitability<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1241&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>WOBURN, MA &#8212; (Marketwire) &#8212; 05/04/10 &#8212;  A 100 percent commitment to the value-added channel isn&#8217;t simply lip service at Kaspersky Lab, a leading developer of Internet threat management solutions that protect against all forms of malicious software. It&#8217;s how Kaspersky Lab has transformed itself from a virtual unknown in North America to a significant force in IT security in just five years.</p>
<p>Already honored by Everything Channel in 2008 &amp; 2009 as the Client Security Software Company of the Year and a Five Star Partner Program Winner, today&#8217;s announcement unveils significant new enhancements and levels to the Kaspersky Lab Green Team Partner Program. Kaspersky Lab offers top rated security solutions to maximize partners&#8217; competitive edge and market reach. Offering service and support are critical components to ensuring overall success. Kaspersky Lab Americas recently appointed Nancy Reynolds as Senior Vice President of Corporate Sales and Support. In this new role, Nancy will lead both the corporate sales and support teams as a single unit, ensuring pre-sales, post-sales and support are offered in four languages, (English, French, Spanish and Portuguese), and led out of the Kaspersky Lab Americas&#8217; headquarters in Woburn, Massachusetts to support the needs of the entire region.</p>
<p>As part of its Green Team Partner Program, Kaspersky Lab has significantly beefed up the WOW! factor with new revenue, support and rewards opportunities. Here is a sampling of what&#8217;s new:</p>
<p>    * NEW! Business Discount Rewards &#8211; Financial incentives for Partners around new customer acquisition.<br />
    * NEW! Online Deal Registration &#8211; Partners who register deals can earn additional discounts and protect deals.<br />
    * NEW! Customer Account Registration &#8211; With an approved business plan, Partners can register protection for specific customer accounts.<br />
    * NEW! Extended Distribution Terms &#8211; Partners can now receive even greater distribution terms for positive cash flow.<br />
    * NEW! Syndicated Threatpost Content &#8211; Partners can now syndicate Threatpost IT Security News and Analysis on their own websites, bringing the latest security news and threat information to their customers, driving new traffic to partner websites and generating new partner leads.<br />
    * NEW! Self-Service Software Downloads &amp; Trials &#8211; Partners can easily access customized and co-branded software downloads, greatly reducing the time and effort required for customer trials.<br />
    * NEW! Kaspersky University Online Training &#8211; Partners are eligible for admission to the new Kaspersky University. Regional and new online training modules are offered for optimal knowledge exchange.</p>
<p>To learn more about Kaspersky Lab&#8217;s Green Team Partner Program, please visit: http://usa.kaspersky.com/partners/partner-program.php or email: greenteam@kaspersky.com. To join the program, please visit: http://portal.kasperskyamericas.com.</p>
<p>Quotes<br />
Spencer Ferguson, President, Wasatch Software<br />
&#8220;I&#8217;m very excited about syndicating Threatpost content to our site. This brings relevant and constantly changing IT security news and analysis directly to our website for our customers and prospecting needs. And best of all, it&#8217;s packed with new marketing opportunities for our company without us having to lift a finger.&#8221;</p>
<p>Brett Alterman, Sales Director, Resilient IQ<br />
&#8220;The new deal registration program not only protects us in competitive situations, it rewards us with meaningful discounts for bringing new opportunities to Kaspersky Lab. The fact that Kaspersky Lab is willing to invest in my business by funding a dedicated Kaspersky product sales specialist shows they value me as a true business partner. These are just two benefits among a host of others that are particularly important to us at Resilient IQ.&#8221;</p>
<p>Nancy Reynolds, Senior Vice President Corporate Sales &amp; Support, Kaspersky Lab Americas<br />
&#8220;When I came to Kaspersky Lab, my intent was not to change the Green Team Partner program, but enhance it. As partners make commitments and investments with Kaspersky Lab, we want to ensure that we deliver a program that emphasizes education, knowledge transfer and lead management, and we&#8217;ll continue to invest in those partners who give us their highest levels of commitment. We&#8217;re building business integrity into our programs and maintaining profitability for greater revenue for partners and customers.&#8221;</p>
<p>Kristen Capone, Vice President, North American Channel Sales, Kaspersky Lab Americas<br />
&#8220;Having recently come on board at Kaspersky Lab, I communicated my goal of optimizing the Green Team Partner Program in ways that would richly benefit partners in 2010 and beyond. This program is the next step of that vision and reality.&#8221;</p>
<p>Fonte: http://ca.sys-con.com</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/1security.wordpress.com/1241/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/1security.wordpress.com/1241/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/1security.wordpress.com/1241/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/1security.wordpress.com/1241/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/1security.wordpress.com/1241/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/1security.wordpress.com/1241/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/1security.wordpress.com/1241/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/1security.wordpress.com/1241/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/1security.wordpress.com/1241/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/1security.wordpress.com/1241/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/1security.wordpress.com/1241/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/1security.wordpress.com/1241/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/1security.wordpress.com/1241/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/1security.wordpress.com/1241/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1241&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://1security.wordpress.com/2010/05/06/kaspersky-lab-americas-award-winning-partner-program-raises-the-bar/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c782986ef51dc72a1d2aeea34f84dc6e?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">1security</media:title>
		</media:content>
	</item>
		<item>
		<title>The Iphone OS needs to be opened up, says Kaspersky</title>
		<link>http://1security.wordpress.com/2010/05/06/the-iphone-os-needs-to-be-opened-up-says-kaspersky/</link>
		<comments>http://1security.wordpress.com/2010/05/06/the-iphone-os-needs-to-be-opened-up-says-kaspersky/#comments</comments>
		<pubDate>Thu, 06 May 2010 03:16:12 +0000</pubDate>
		<dc:creator>1security</dc:creator>
				<category><![CDATA[Kaspersky]]></category>

		<guid isPermaLink="false">http://1security.wordpress.com/?p=1239</guid>
		<description><![CDATA[Eugene Kaspersky, founder and CEO of Kaspersky Labs, says Apple needs to change its iPhone OS to be more open like Android, reports The Inquirer.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1239&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>THE INFOSEC CONFERENCE WAS TOLD that Apple&#8217;s Iphone is secure for now, but if Apple doesn&#8217;t open up the system it will lose out to rival mobile operating systems due to its lack of flexibility.</p>
<p>Eugene Kaspersky, founder and CEO of Kaspersky Labs, said at Infosec that if Apple does not change its Iphone OS within three years to be more open like Android, it will lose market share because there will be less software supporting it.</p>
<p>He said, &#8220;Symbian was very secure. Nokia had a very secure system for years, but it started to lose the market because it didn&#8217;t have the functionality.&#8221;</p>
<p>&#8220;They changed its mind and now it&#8217;s open source. They moved from the far, far left to the far, far right in terms of security.&#8221;</p>
<p>Software vendors can&#8217;t put security software on the Iphone because it is so locked down, so Kaspersky obviously has a vested interest in making the device more open as his company deals with mobile security.</p>
<p>So the Inquirer went for a talk with David Harley, director of malware intelligence at ESET, who has had many years experience with Apple security and was speaking at Infosec on the subject.</p>
<p>He said that Apple&#8217;s whitelisting of Iphone applications, where the availability of apps is controlled by Apple, means that that anything running on the apps store is thought to be &#8216;safe&#8217;.</p>
<p>Harley said, &#8220;I&#8217;m not convinced that they can maintain that model indefinitely. First of all as more and more people want to jump on the [Apple] bandwagon it&#8217;s going to be less and less feasible to spend the time of checking on every application for total security.&#8221;</p>
<p>He added that there had been hints that there have been &#8216;grey&#8217; applications that had got through.</p>
<p>&#8220;The other thing is that a lot of Apple users want freedom to choose their own applications. Sooner or later Apple is going to have to find someway of accommodating some of the people who break Iphones. There are an awful lot of them.&#8221;</p>
<p>This asks the question about &#8216;jailbreaking&#8217;, where doing it is a breach of Apple&#8217;s agreement and in effect the user affected &#8216;deserves everything they get&#8217;. This is why last year&#8217;s reports of Apple Iphone Trojans weren&#8217;t taken that seriously, as they hit hacked phones.</p>
<p>&#8220;I can&#8217;t say that&#8217;s completely wrong, but what are the odds that at some point some breach is going to leak into un-jailbroken phones?&#8221;</p>
<p>If Apple did loosen the reins, Harley said that it would need some form of security that differed from application whitelisting, although he was unclear about what form this would take. µ</p>
<p>Fonte: http://www.theinquirer.net/inquirer/news/1603543/the-iphone-os-kaspersky</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/1security.wordpress.com/1239/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/1security.wordpress.com/1239/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/1security.wordpress.com/1239/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/1security.wordpress.com/1239/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/1security.wordpress.com/1239/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/1security.wordpress.com/1239/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/1security.wordpress.com/1239/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/1security.wordpress.com/1239/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/1security.wordpress.com/1239/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/1security.wordpress.com/1239/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/1security.wordpress.com/1239/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/1security.wordpress.com/1239/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/1security.wordpress.com/1239/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/1security.wordpress.com/1239/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1239&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://1security.wordpress.com/2010/05/06/the-iphone-os-needs-to-be-opened-up-says-kaspersky/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c782986ef51dc72a1d2aeea34f84dc6e?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">1security</media:title>
		</media:content>
	</item>
		<item>
		<title>Oman&#8217;s MoE implements Kaspersky Lab anti virus solution across 35,000 networked PC terminals</title>
		<link>http://1security.wordpress.com/2010/05/06/omans-moe-implements-kaspersky-lab-anti-virus-solution-across-35000-networked-pc-terminals/</link>
		<comments>http://1security.wordpress.com/2010/05/06/omans-moe-implements-kaspersky-lab-anti-virus-solution-across-35000-networked-pc-terminals/#comments</comments>
		<pubDate>Thu, 06 May 2010 02:25:31 +0000</pubDate>
		<dc:creator>1security</dc:creator>
				<category><![CDATA[Kaspersky]]></category>

		<guid isPermaLink="false">http://1security.wordpress.com/?p=1235</guid>
		<description><![CDATA[Oman's Ministry of Education has implemented a new online virus detection solution for 35,000 PC terminal users in response to rapidly increasing malware volumes. Following a competitive the Ministry has adopted the antivirus for Windows Workstation of Kaspersky Lab, a leading developer of secure content management solutions, to beef up its network security and reduce vulnerability and exposure to hackers, spam and virus.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1235&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Oman&#8217;s Ministry of Education has implemented a new online virus detection solution for 35,000 PC terminal users in response to rapidly increasing malware volumes. Following a competitive the Ministry has adopted the antivirus for Windows Workstation of Kaspersky Lab, a leading developer of secure content management solutions, to beef up its network security and reduce vulnerability and exposure to hackers, spam and virus.</p>
<p>&#8220;The detection rates of the previous vendor&#8217;s solution could not keep up with the rate of infections and the Ministry of Education took the decision to identify a new solution to resolve the issue at endpoint level,&#8221; said the Ministry&#8217;s spokesperson Ali Bin Suleiman Alhanai.</p>
<p>&#8220;We chose Kaspersky LabKaspersky Lab because of its high detection rates of viruses and the solution&#8217;s ability to perform with the minimum resources possible. Our tests of Kaspersky&#8217;s product on one of our live servers showed that it detected and removed more malware than any other solution we tried.</p>
<p>&#8220;We have already seen the important benefits the new products have introduced to our operations through compatibility with existing IT security infrastructure, higher detection rates, user friendly interface and ability to maintain high performance without slowing down our systems,&#8221; said Alhanai.</p>
<p>The Ministry of Education of Oman has also acquired a further 1,000 Kaspersky Antivirus for Windows servers licenses for its network of servers across the Sultanate. It took less than four months for the Ministry to implement the full solution across its network.</p>
<p>&#8220;We are very proud to have won and implemented our superior anti virus solutions across the network of Oman&#8217;s Ministry of Education,&#8221; said Tarek Kuzbari, Managing Director, Kaspersky, Middle East. &#8220;This project demonstrates our ability to provide governmental institutions with bespoke solutions that meet their discerning and sensitive requirements.</p>
<p>&#8220;The Middle East&#8217;s government sector ranks high among our regional priorities and the Ministry of Education of Oman is the latest in a long list of government institutions that have adopted&#8217;s security solutions.&#8221;</p>
<p>Fonte: http://www.zawya.com</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/1security.wordpress.com/1235/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/1security.wordpress.com/1235/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/1security.wordpress.com/1235/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/1security.wordpress.com/1235/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/1security.wordpress.com/1235/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/1security.wordpress.com/1235/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/1security.wordpress.com/1235/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/1security.wordpress.com/1235/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/1security.wordpress.com/1235/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/1security.wordpress.com/1235/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/1security.wordpress.com/1235/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/1security.wordpress.com/1235/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/1security.wordpress.com/1235/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/1security.wordpress.com/1235/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1235&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://1security.wordpress.com/2010/05/06/omans-moe-implements-kaspersky-lab-anti-virus-solution-across-35000-networked-pc-terminals/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c782986ef51dc72a1d2aeea34f84dc6e?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">1security</media:title>
		</media:content>
	</item>
		<item>
		<title>Décadas depois, estouro de memória continua sendo usado como ataque</title>
		<link>http://1security.wordpress.com/2010/05/06/decadas-depois-estouro-de-memoria-continua-sendo-usado-como-ataque/</link>
		<comments>http://1security.wordpress.com/2010/05/06/decadas-depois-estouro-de-memoria-continua-sendo-usado-como-ataque/#comments</comments>
		<pubDate>Thu, 06 May 2010 02:23:33 +0000</pubDate>
		<dc:creator>1security</dc:creator>
				<category><![CDATA[Notícias]]></category>

		<guid isPermaLink="false">http://1security.wordpress.com/?p=1233</guid>
		<description><![CDATA[O estouro de memória (buffer overflow) têm sido um sério problema de segurança para desenvolvedores de software por várias décadas, mas a história da pesquisa de exploit sobre esta classe de falhas é relativamente curta.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1233&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>O estouro de memória (buffer overflow) têm sido um sério problema de segurança para desenvolvedores de software por várias décadas, mas a história da pesquisa de exploit sobre esta classe de falhas é relativamente curta.</p>
<p> Fonte: http://threatpost.com/pt_br/blogs/decadas-depois-estouro-de-memoria-continua-sendo-usado-como-ataque-050310</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/1security.wordpress.com/1233/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/1security.wordpress.com/1233/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/1security.wordpress.com/1233/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/1security.wordpress.com/1233/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/1security.wordpress.com/1233/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/1security.wordpress.com/1233/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/1security.wordpress.com/1233/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/1security.wordpress.com/1233/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/1security.wordpress.com/1233/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/1security.wordpress.com/1233/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/1security.wordpress.com/1233/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/1security.wordpress.com/1233/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/1security.wordpress.com/1233/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/1security.wordpress.com/1233/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1233&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://1security.wordpress.com/2010/05/06/decadas-depois-estouro-de-memoria-continua-sendo-usado-como-ataque/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c782986ef51dc72a1d2aeea34f84dc6e?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">1security</media:title>
		</media:content>
	</item>
		<item>
		<title>Conheça os diferentes tipos de vulnerabilidades e ataques de hackers</title>
		<link>http://1security.wordpress.com/2010/05/06/conheca-os-diferentes-tipos-de-vulnerabilidades-e-ataques-de-hackers/</link>
		<comments>http://1security.wordpress.com/2010/05/06/conheca-os-diferentes-tipos-de-vulnerabilidades-e-ataques-de-hackers/#comments</comments>
		<pubDate>Thu, 06 May 2010 02:01:37 +0000</pubDate>
		<dc:creator>1security</dc:creator>
				<category><![CDATA[Notícias]]></category>

		<guid isPermaLink="false">http://1security.wordpress.com/?p=1231</guid>
		<description><![CDATA[Segurança da informação pode ser um assunto complicado. São muitos termos diferentes. Para elucidar um pouco como ataques e vulnerabilidades funcionam, a coluna Segurança para o PC preparou um “dicionário” em uma linguagem simples para que você possa entender o funcionamento de algumas brechas e saber como hackers ganham acesso não autorizado a diversos sistemas. Confira.Leia o artigo completo no G1 Segurança.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1231&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Segurança da informação pode ser um assunto complicado. São muitos termos diferentes. Para elucidar um pouco como ataques e vulnerabilidades funcionam, a coluna Segurança para o PC preparou um “dicionário” em uma linguagem simples para que você possa entender o funcionamento de algumas brechas e saber como hackers ganham acesso não autorizado a diversos sistemas. Confira.Leia o artigo completo no G1 Segurança.</p>
<p>http://g1.globo.com/tecnologia-e-games/noticia/2010/05/conheca-os-diferentes-tipos-de-vulnerabilidades-e-ataques-de-hackers.html</p>
<p>Fonte: http://threatpost.com</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/1security.wordpress.com/1231/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/1security.wordpress.com/1231/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/1security.wordpress.com/1231/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/1security.wordpress.com/1231/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/1security.wordpress.com/1231/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/1security.wordpress.com/1231/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/1security.wordpress.com/1231/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/1security.wordpress.com/1231/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/1security.wordpress.com/1231/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/1security.wordpress.com/1231/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/1security.wordpress.com/1231/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/1security.wordpress.com/1231/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/1security.wordpress.com/1231/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/1security.wordpress.com/1231/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1231&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://1security.wordpress.com/2010/05/06/conheca-os-diferentes-tipos-de-vulnerabilidades-e-ataques-de-hackers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c782986ef51dc72a1d2aeea34f84dc6e?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">1security</media:title>
		</media:content>
	</item>
		<item>
		<title>Botnet Gumblar muda de tática para evitar detecção</title>
		<link>http://1security.wordpress.com/2010/05/06/botnet-gumblar-muda-de-tatica-para-evitar-deteccao/</link>
		<comments>http://1security.wordpress.com/2010/05/06/botnet-gumblar-muda-de-tatica-para-evitar-deteccao/#comments</comments>
		<pubDate>Thu, 06 May 2010 01:59:41 +0000</pubDate>
		<dc:creator>1security</dc:creator>
				<category><![CDATA[Notícias]]></category>
		<category><![CDATA[Gumblar]]></category>

		<guid isPermaLink="false">http://1security.wordpress.com/?p=1229</guid>
		<description><![CDATA[Os criminosos por trás da botnet Gumblar têm adaptado as suas técnicas, como os atacantes estão acostumados a fazer, tendo em vista não só evitar a detecção como impedir os investigadores de baixar e analisar as novas versões do malware.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1229&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img alt="" src="http://threatpost.com/sites/default/files/images/gumblar_bot.jpg" class="alignleft" width="100" height="100" />Os criminosos por trás da botnet Gumblar têm adaptado as suas técnicas, como os atacantes estão acostumados a fazer, tendo em vista não só evitar a detecção como impedir os investigadores de baixar e analisar as novas versões do malware.</p>
<p>Uma análise da atividade recente da Gumblar mostra que a versão atual (ou uma das versões correntes) tem uma nova funcionalidade que verifica em qual país a máquina recentemente infectada está localizada durante a rotina de infecção inicial. O objetivo dos bandidos é evitar que o Gumblar infecte outras novas máquinas no Japão, onde os pesquisadores têm conseguido localizar e desmontar partes da rede da rede.</p>
<p>O vírus Gumblar vem infectando PCs e servidores por mais de um ano, com uma elevada taxa de sucesso. A nova alteração de orientação por parte dos atacantes mostra que ainda não estão contentes.</p>
<p>Os desenvolvedores do Gumblar notaram uma atividade incessante de muitos IPs japoneses visando seu sistema. O duro trabalho de análise dos dados colhidos no Japão resultou em uma resposta dos cibercriminoso. Há pouco tempo nos deparamos com uma nova variante do script infector criado pelos desenvolvedores do Gumblar, que verifica de que país o cliente remoto está vindo. O script usa um banco de dados IP para localizar o país do cliente. E se o país acaba é o Japão, o script pára e não ataca. Abaixo está a parte do código que implementa essa tarefa: </p>
<p><img alt="" src="http://threatpost.com/sites/default/files/images/gumblar_code.img_assist_custom-350x185.png" class="aligncenter" width="350" height="185" /></p>
<p>A nova pesquisa, feita por Vitaly Kamluk, do escritório japonês da Kaspersky, descobriu que a rede de Gumblar agora compreende pelo menos 4.460 servidores. Esse é um número bastante grande de servidores, e uma fração desse número seria suficiente para montar uma botnet muito grande.</p>
<p>&#8220;Neste momento ninguém tem informações sobre quantas as máquinas-cliente comprometidas estão na botnet Gumblar, mas acreditamos que é mais do que apenas o número de servidores comprometidos, porque o número de servidores representa apenas a contagem de usuários infectados que têm seus próprios sites e usam clientes FTP no sistema infectado &#8220;, Kamluk escreveu.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/1security.wordpress.com/1229/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/1security.wordpress.com/1229/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/1security.wordpress.com/1229/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/1security.wordpress.com/1229/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/1security.wordpress.com/1229/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/1security.wordpress.com/1229/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/1security.wordpress.com/1229/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/1security.wordpress.com/1229/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/1security.wordpress.com/1229/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/1security.wordpress.com/1229/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/1security.wordpress.com/1229/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/1security.wordpress.com/1229/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/1security.wordpress.com/1229/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/1security.wordpress.com/1229/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1229&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://1security.wordpress.com/2010/05/06/botnet-gumblar-muda-de-tatica-para-evitar-deteccao/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c782986ef51dc72a1d2aeea34f84dc6e?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">1security</media:title>
		</media:content>

		<media:content url="http://threatpost.com/sites/default/files/images/gumblar_bot.jpg" medium="image" />

		<media:content url="http://threatpost.com/sites/default/files/images/gumblar_code.img_assist_custom-350x185.png" medium="image" />
	</item>
		<item>
		<title>Google lança curso gratuito de segurança em aplicativos web</title>
		<link>http://1security.wordpress.com/2010/05/06/google-lanca-curso-gratuito-de-seguranca-em-aplicativos-web/</link>
		<comments>http://1security.wordpress.com/2010/05/06/google-lanca-curso-gratuito-de-seguranca-em-aplicativos-web/#comments</comments>
		<pubDate>Thu, 06 May 2010 01:56:08 +0000</pubDate>
		<dc:creator>1security</dc:creator>
				<category><![CDATA[Notícias]]></category>
		<category><![CDATA[cross-site scripting]]></category>
		<category><![CDATA[CSRF]]></category>
		<category><![CDATA[Jarlsberg]]></category>

		<guid isPermaLink="false">http://1security.wordpress.com/?p=1226</guid>
		<description><![CDATA[O Google lançou um novo curso de formação online para desenvolvedores de aplicativos Web projetado para ensinar-lhes como evitar erros comuns de programação que conduzem à vulnerabilidades como cross-site scripting, falsificação de solicitação entre sites e outros. O curso, que faz parte do Google Code University, baseia-se em torno do conceito de um aplicativo para [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1226&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>O Google lançou um novo curso de formação online para desenvolvedores de aplicativos Web projetado para ensinar-lhes como evitar erros comuns de programação que conduzem à vulnerabilidades como cross-site scripting, falsificação de solicitação entre sites e outros.</p>
<p>O curso, que faz parte do Google Code University, baseia-se em torno do conceito de um aplicativo para o Twitter, chamado Jarlsberg, uma aplicação real que o Google está lançando como parte do curso. Conhecido como &#8220;Exploits e Defesas de Aplicativos Web&#8221;, o curso oferece aos desenvolvedores a oportunidade de ver o funcionamento interno de uma aplicação fundamentalmente insegura, analisar as vulnerabilidades e aprender sobre os erros de programação que levaram a esses defeitos.</p>
<p>&#8220;Este curso foi feito em torno do Jarlsberg, uma pequena aplicação web que permite aos seus utilizadores publicar trechos do texto e armazenar arquivos diversos. &#8220;Infelizmente&#8221;, o Jarlsberg tem vários bugs de segurança que variam de cross-site scripting e falsificação de solicitação de cross-site, abertura de informações, negação de serviço e execução remota de código. O objetivo deste codelab é guiá-lo a descobrir alguns desses bugs e maneiras de aprender a resolvê-los, tanto no Jarlsberg como em geral,&#8221;, diz a documentação do curso. </p>
<p><img alt="" src="http://threatpost.com/sites/default/files/images/jarlsberg.img_assist_custom-400x336.png" class="aligncenter" width="400" height="336" /></p>
<p>Jarlsberg</p>
<p>O curso de desenvolvimento seguro é baseado em torno de uma série de desafios que exigem que os alunos passem e identifquem vulnerabilidades específicas no código do Jarlsberg. Depois que os alunos aprendem o básico de uma vulnerabilidade, tais como CSRF, eles então têm de encontrar uma maneira de usar essa falha para executar uma ação maliciosa específica na aplicação, tais como a mudança de alguns detalhes de um usuário logado na conta do utilizador sem o seu conhecimento.</p>
<p> Aulas de codificação segura para os desenvolvedores não são novidade, nem são o tipo de aulas de hacking ético que dão aos alunos a oportunidade de aprender técnicas básicas de ataque. Mas a idéia de dar aos desenvolvedores a oportunidade de ir atrás de vulnerabilidades em uma aplicação web projetada especificamente para esse fim é algo novo, e provavelmente muito necessária, dada a pouca instrução de segurança que a maioria dos desenvolvedores de aplicativo da Web recebe.</p>
<p>O curso de segurança é aberto a todos e disponível gratuitamente, assim como o código do Jarlsberg.</p>
<p>Fonte: http://threatpost.com</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/1security.wordpress.com/1226/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/1security.wordpress.com/1226/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/1security.wordpress.com/1226/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/1security.wordpress.com/1226/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/1security.wordpress.com/1226/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/1security.wordpress.com/1226/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/1security.wordpress.com/1226/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/1security.wordpress.com/1226/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/1security.wordpress.com/1226/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/1security.wordpress.com/1226/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/1security.wordpress.com/1226/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/1security.wordpress.com/1226/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/1security.wordpress.com/1226/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/1security.wordpress.com/1226/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1226&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://1security.wordpress.com/2010/05/06/google-lanca-curso-gratuito-de-seguranca-em-aplicativos-web/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c782986ef51dc72a1d2aeea34f84dc6e?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">1security</media:title>
		</media:content>

		<media:content url="http://threatpost.com/sites/default/files/images/jarlsberg.img_assist_custom-400x336.png" medium="image" />
	</item>
		<item>
		<title>PCI com programa de certificação para profissionais de TI</title>
		<link>http://1security.wordpress.com/2010/05/06/pci-com-programa-de-certificacao-para-profissionais-de-ti/</link>
		<comments>http://1security.wordpress.com/2010/05/06/pci-com-programa-de-certificacao-para-profissionais-de-ti/#comments</comments>
		<pubDate>Thu, 06 May 2010 01:50:16 +0000</pubDate>
		<dc:creator>1security</dc:creator>
				<category><![CDATA[Notícias]]></category>
		<category><![CDATA[pci dss]]></category>
		<category><![CDATA[PCI Security Council]]></category>

		<guid isPermaLink="false">http://1security.wordpress.com/?p=1224</guid>
		<description><![CDATA[A organização responsável pela gestão e implementação do Payment Card Industry Data Security Standard (PCI DSS) lançou um novo programa destinado a ajudar as empresas a realizarem auto-auditorias para verificarem a sua conformidade com o padrão.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1224&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>O PCI Security Standards Council LLC, criado pela Visa, MasterCard, American Express e outras companhias de cartões de crédito, anunciou hoje um novo programa, denominado Internal Security Assessors (ISA), destinado a retalhistas e empresas de processamento de pagamentos obrigadas à conformidade com o standard.</p>
<p>Ao abrigo do novo programa, o conselho de segurança irá formar e certificar profissionais da área da segurança em TI, para que possam conduzir auditorias e assegurar a conformidade das suas companhias ao standard PCI. O programa mensal, de três dias de duração, será aplicado por todo o mundo e concebido para melhorar a qualidade das auto-auditorias realizadas por retalhistas e empresas de processamento de pagamentos com cartões, de acordo com Bob Russo, director-geral do PCI Security Council.</p>
<p>O standard PCI foi criado então pelas maiores companhias de cartões de crédito do mundo e cobre todas as organizações que aceitem transacções com cartões de crédito e débito. O standard especifica vários controlos de segurança de nível elevado que todas as companhias que lidam com este tipo de transacções são obrigadas a implementar.</p>
<p>As empresas, sobretudo as de média e grande dimensão, são obrigadas a submeter actualizações periódicas da sua conformidade com os requisitos do standard. Cada companhia de cartões de crédito conta com os seus próprios requisitos de validação. A Visa, por exemplo, obriga todos os retalhistas que processem mais de seis milhões de transacções anuais a passarem por auditorias presenciais realizadas com auditores externos qualificados para o efeito. Aos retalhistas mais pequenos é lhes dada a opção de conduzirem auto-auditorias anuais para validação da sua conformidade. A MasterCard tem requisitos semelhantes, mas determina que as auto-auditorias só possam ser feitas por elementos do departamento de tecnologia certificados pelo PCI Security Standards Council para o efeito.</p>
<p>O novo programa agora anunciado vem responder a uma necessidade muito importante, na opinião de Avivah Litan, analista do Gartner. “Este é um dos anúncios mais positivos que o conselho de segurança fez nos últimos tempos. Existe muito interesse neste tipo de formação por parte dos retalhistas, porque sabem que é importante conseguirem cumprir o standard PCI”, afirma a analista.</p>
<p>A exigência, por parte da MasterCard, de que as auto-auditorias apenas sejam feitas por auditores PCI qualificados veio estabelecer a necessidade urgente de se criar um programa de certificação ISA, diz Avivah Litan, para quem o programa de formação permitirá às companhias, sobretudo as maiores, maximizarem os conhecimentos e valências das suas próprias equipas de segurança em TI. “Existem muitas empresas com profissionais de segurança TI muito talentosos e especializados, sendo que muitos deles estão ainda mais capacitados para realizar auditorias que alguns auditores externos”, sublinha, acrescentando que o programa de formação deverá também ajudar as empresas a melhor compreenderem os requisitos para validação de conformidade. Cada sessão de três dias terá um custo de 2495 dólares por pessoa, sendo que este valor baixa para os 1495 dólares para as empresas que forem membros do PCI Security Standards Council.</p>
<p>Fonte: Computer World</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/1security.wordpress.com/1224/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/1security.wordpress.com/1224/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/1security.wordpress.com/1224/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/1security.wordpress.com/1224/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/1security.wordpress.com/1224/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/1security.wordpress.com/1224/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/1security.wordpress.com/1224/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/1security.wordpress.com/1224/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/1security.wordpress.com/1224/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/1security.wordpress.com/1224/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/1security.wordpress.com/1224/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/1security.wordpress.com/1224/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/1security.wordpress.com/1224/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/1security.wordpress.com/1224/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1224&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://1security.wordpress.com/2010/05/06/pci-com-programa-de-certificacao-para-profissionais-de-ti/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c782986ef51dc72a1d2aeea34f84dc6e?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">1security</media:title>
		</media:content>
	</item>
		<item>
		<title>Cibercrime cresce mais sofisticado</title>
		<link>http://1security.wordpress.com/2010/05/06/cibercrime-cresce-mais-sofisticado/</link>
		<comments>http://1security.wordpress.com/2010/05/06/cibercrime-cresce-mais-sofisticado/#comments</comments>
		<pubDate>Thu, 06 May 2010 01:46:22 +0000</pubDate>
		<dc:creator>1security</dc:creator>
				<category><![CDATA[Notícias]]></category>

		<guid isPermaLink="false">http://1security.wordpress.com/?p=1222</guid>
		<description><![CDATA[O relatório da Symantec evidencia um crescimento contínuo de ataques de cibercrime, tanto em volume como em sofisticação, durante o corrente ano. Os kits de ferramentas de ataque estão a facilitar os ataques.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1222&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>“Os atacantes evoluíram desde simples fraudes para campanhas de espionagem altamente sofisticadas, que tiveram como alvo algumas das maiores empresas mundiais e entidades governamentais”, constata Stephen Trilling, vice presidente sénior da área Security Technology e Response da Symantec. O fabricante lançou o seu último relatório sobre o estado da segurança na Internet durante o ano de 2009.</p>
<p>As principais tendências observadas no relatório deste ano incluem:<br />
–  Um aumento do número de ameaças-alvo focadas nas empresas. Tendo em conta o potencial de ganho monetário a partir da propriedade intelectual (IP) empresarial comprometida, os cibercriminosos estão a dirigir a sua atenção para as empresas. O relatório conclui que os atacantes estão a aproveitar-se da informação pessoal disponível, de forma aberta, em sites de redes sociais, para arquitectar ataques de engenharia social em indivíduos chave dentro de empresas alvo. O Hydraq adquiriu uma elevada notoriedade no início de 2010, mas esse foi apenas o mais recente de uma longa lista de ataques do género, incluindo o Shadow Network, em 2009, e o Ghostnet, em 2008.</p>
<p>Fonte: ComputerWorld</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/1security.wordpress.com/1222/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/1security.wordpress.com/1222/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/1security.wordpress.com/1222/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/1security.wordpress.com/1222/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/1security.wordpress.com/1222/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/1security.wordpress.com/1222/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/1security.wordpress.com/1222/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/1security.wordpress.com/1222/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/1security.wordpress.com/1222/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/1security.wordpress.com/1222/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/1security.wordpress.com/1222/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/1security.wordpress.com/1222/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/1security.wordpress.com/1222/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/1security.wordpress.com/1222/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1222&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://1security.wordpress.com/2010/05/06/cibercrime-cresce-mais-sofisticado/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c782986ef51dc72a1d2aeea34f84dc6e?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">1security</media:title>
		</media:content>
	</item>
		<item>
		<title>Cloud computing eleva o risco de conflitos legais com patentes</title>
		<link>http://1security.wordpress.com/2010/05/06/cloud-computing-eleva-o-risco-de-conflitos-legais-com-patentes/</link>
		<comments>http://1security.wordpress.com/2010/05/06/cloud-computing-eleva-o-risco-de-conflitos-legais-com-patentes/#comments</comments>
		<pubDate>Thu, 06 May 2010 01:40:45 +0000</pubDate>
		<dc:creator>1security</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://1security.wordpress.com/?p=1219</guid>
		<description><![CDATA[Pode ser um risco reduzido, mas é uma questão a ter em conta quando se determinam os prós e contras do cloud computing, na opinião de Nolan Goldberg, advogado especialista em patentes e propriedade intelectual da firma norte-americana Proskauer Rose. “Eu acredito que a propriedade intelectual vai constituir uma grande barreira à adopção do cloud [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1219&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img alt="" src="http://www.computerworld.com.pt/media/2010/05/1185407_brands_flood.jpg" class="alignleft" width="142" height="142" />Pode ser um risco reduzido, mas é uma questão a ter em conta quando se determinam os prós e contras do cloud computing, na opinião de Nolan Goldberg, advogado especialista em patentes e propriedade intelectual da firma norte-americana Proskauer Rose.</p>
<p>“Eu acredito que a propriedade intelectual vai constituir uma grande barreira à adopção do cloud computing. Utilizar um serviço cloud cria mais riscos acrescidos de violação de patentes do que as versões tradicionais do mesmo serviço”, defende.</p>
<p>O sistema judicial está inundado de processos de violação de patentes e os clientes que utilizam um serviço que, alegadamente, infringe propriedade intelectual alheia podem ser processados sem terem culpa alguma, avisou Nolan Goldberg, durante a sua apresentação na conferência Interop Las Vegas.</p>
<p>O advogado diz que os mesmos métodos aplicados em caso de violação de patente por meio de um produto físico podem ser também utilizados no mundo do cloud computing, mas os efeitos para os tribunais seriam de dimensão muito superior. “Normalmente, processa-se o fabricante que resolveu violar patente alheia para produzir um produto. Mas, no caso do cloud computing, trata-se de processar todos os clientes, arrastando eternamente os processos em tribunal”, alerta.</p>
<p>Goldberg deu um exemplo do “mundo real” para ilustrar o seu ponto de vista: “se o fabricante produz uma máquina capaz de realizar as funções A, B e C, mas for o cliente a pressionar o botão que permite a realização dessas funções, nesse caso o cliente poderá incorrer em violação directa de propriedade intelectual alheia, sendo imputada ao fabricante a violação indirecta”.</p>
<p>No mundo do retalho é relativamente fácil determinar o risco, porque o processo de fabrico e a cadeia de distribuição prevê passos claros e definidos que tanto os clientes como os fabricantes compreendem e respeitam, diz Goldberg. Mas, por outro lado, os utilizadores do serviço cloud da Amazon, Google ou similares podem não ter qualquer noção do que está por detrás dessa utilização e das regras que podem estar a infringir. “Existe uma certa falta de transparência que torna mais difícil determinar o risco”, considera o advogado.</p>
<p>Mas, então, qual será esse risco? Será o suficiente para travar o sucesso do cloud computing? Estas questões, como a maioria das relacionadas com o mundo legal, são difíceis de responder.<br />
“É muito difícil afirmarmos que existe um aumento de dois ou três por cento no risco de se violar patente alheia. Mas, mesmo determinando esse risco, será que as empresas se importariam com tão pequena percentagem? Só que, se analisarmos o principal motivo pelo qual a adopção ao cloud computing está a ser um sucesso – a redução de custos – temos que perguntar – será que essa poupança não poderá, mais tarde, ser obliterada por uma multa penal gigantesca decretada pelo tribunal?”, alerta Nolan Goldberg.</p>
<p>Mas os riscos legais vão para além dos processos em tribunal por violação de patente, adianta o advogado, que aconselha os seus clientes a não confiarem as suas informações mais preciosas aos serviços de cloud computing, sob o risco de exporem os seus segredos comerciais. Os clientes devem, na sua opinião, avaliar a importância dos dados com cuidado, examinar as potenciais ramificações e determinar, assim, o perfil do risco do serviço cloud, pesando esta análise com os potenciais benefícios e, só então, tomar uma decisão informada.</p>
<p>Os fornecedores de serviços recebem muitos pedidos para alojarem dados privados de entidades governamentais, o que levanta questões adicionais relativas à capacidade de esses serviços alojarem os dados de outros clientes, influenciando a disponibilidade das informações. Além disso, os dados residentes nos serviços cloud podem estar espalhados por múltiplas localizações, o que faz com que se corra o risco de a informação estar ao abrigo de legislações e jurisprudências diferentes. Os contratos normais deste tipo de serviços asseguram que o fornecedor possa mudar os seus termos em qualquer momento, o que torna difícil aconselhar os clientes sobre o risco a que estão sujeitos, sustenta Goldberg, segundo o qual os termos exactos de um contrato muitas vezes só são conhecidos realmente quando este entra em processo de litígio entre as partes.</p>
<p>Fonte: ComputerWorld</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/1security.wordpress.com/1219/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/1security.wordpress.com/1219/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/1security.wordpress.com/1219/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/1security.wordpress.com/1219/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/1security.wordpress.com/1219/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/1security.wordpress.com/1219/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/1security.wordpress.com/1219/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/1security.wordpress.com/1219/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/1security.wordpress.com/1219/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/1security.wordpress.com/1219/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/1security.wordpress.com/1219/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/1security.wordpress.com/1219/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/1security.wordpress.com/1219/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/1security.wordpress.com/1219/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=1security.wordpress.com&amp;blog=7292227&amp;post=1219&amp;subd=1security&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://1security.wordpress.com/2010/05/06/cloud-computing-eleva-o-risco-de-conflitos-legais-com-patentes/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/c782986ef51dc72a1d2aeea34f84dc6e?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">1security</media:title>
		</media:content>

		<media:content url="http://www.computerworld.com.pt/media/2010/05/1185407_brands_flood.jpg" medium="image" />
	</item>
	</channel>
</rss>
