News (222)

Miscreants encrypt files, hold them for ransom

In a new type of online attack, extortionists remotely encrypt user files and then demand money for the key to decode the information. Read more »

Chinese hackers back off from CNN attack

Late last week, leaders of a group of Chinese hackers called off a planned denial of service attack on CNN.com, after it was reported on the same day that the attack would occur over the weekend, in protest at "anti-Chinese" media across the Western world. Read more »

Chinese hackers attack Australian govt networks

Chinese computer hackers have once again been accused of launching attacks on classified Australian government computer networks. Read more »

Chinese hackers disable CNN.com for three hours

CNN.com was knocked offline for three hours shortly after Chinese hackers claimed to have called off a planned denial of service attack against the US publisher. Read more »

Cyberattack caused multiple-city power failure

The CIA has said that a cyberattack caused a power blackout in multiple cities in a country outside the US. Security training body the Sans Institute reported the CIA's disclosure on Friday. Read more »

Pillow talking bots latest Russian malware threat

Those entering online dating forums risk having more than their hearts stolen, especially if they're chatting to a malicious Russian bot. Read more »

Microsoft: Vista UAC designed to 'annoy users'

A Microsoft manager has said one of the security features in Vista was deliberately designed to "annoy users" in order to put pressure on third-party software makers to make their applications more secure. Read more »

Salesforce staff speared by phishers

Salesforce.com has revealed few details about a security breach caused by a phishing attack against an employee that surrended internal customer database details. Read more »

Virus encyclopaedia infects visitors with malware

Security vendor Trend Micro's UK and Japanese Web sites were hacked last week; attackers managed to inject malicious iFrames into their "virus encyclopaedia" pages. Read more »

Developers take Linux attacks to heart

A handful of recent online attacks on free and open-source software servers has open-source developers looking over their shoulders. Read more »

Features (101)

Mitigate the effects of a DDoS attack

You can't thwart a DDoS attack -- they attack an IP address or service that's available to the Internet. If you can't prevent such an attack, what can you do to protect your organisation? Read more »

New weapons in the war against DoS attacks

Industry watchdog groups are warning that denial of service attacks are becoming more destructive each year. Learn about some new tools you can add to your arsenal of DoS defenses to help safeguard your enterprise. Read more »

Microsoft's IIS6 lockdown

It must really hurt developers at Microsoft to design IIS6 the way they've been designing it. Read more »

Security in the Web 2.0 Era

At the Gartner Symposium ITxpo 2008 in Sydney this week, Andrew Walls, the research director and security analyst at Gartner presented "Security in the Age of E-Commerce and Web 2.0". Read more »

50 significant moments from internet history

We take you through 50 defining moments of the internet. Read more »

10+ things you should know about rootkits

Malware-based rootkits fuel a multibillion dollar spyware industry by stealing individual or corporate financial information. If that weren't bad enough, rootkit-based botnets generate untold amounts of spam. Here's a look at what rootkits are and what to do about them. Read more »

Realise the flexibility of OpenSSH

OpenSSH is one of the most useful tools available. With it, you can access systems remotely and securely, transfer files securely, execute single commands on remote systems, secure normally insecure services, and much more. Read more »

Google vs. Microsoft

At the 2008 Gartner Application Development, Integration and Web Services Summit, David Mitchell Smith, vice president and Gartner fellow gave a presentation titled "Google vs. Microsoft", discussing the seeming battle between the two companies. Read more »

Log Linux services with runit

Each supervised service is controlled via a run script, similar to an init script for a system service. This run script does one thing: prepares for and starts a service. Read more »

Pinpoint vulnerabilities on your system with Nessus

Fixing vulnerabilities is an ongoing process that requires diligence -- it's not something you can ever cross off your task list. However, there are plenty of excellent tools available that will assess your systems for known vulnerabilities. Let us introduce you to one of the best. Read more »

Blog (7)

AJAX applications and security

Lana Kovacevic [blogs:webanatomy] -- Douglas Crockford, the creator of JSON, gave a talk entitled "AJAX Security" at the recent Web Directions South conference. In this talk, Crockford discussed some of the security concerns with AJAX applications and what can be done to address them. Read more »

10 PR 2.0 tips for startups

Brendon Chase [blogs:codemonkeybusiness] -- You’ve got a great product and spent much of your budget on developing your software or service and now you’re left with a marginal budget for marketing and PR. Sound familiar? Read more »

One ID to rule them all

Lana Kovacevic [blogs:webanatomy] -- OpenID is an open-source mechanism enabling you to use a single online identity to log-in to different websites that support OpenID. Read more »

Application Threat Modeling v2

[blogs:] -- Threat Modeling has become one of the most important ways to increase the security of your application development projects. It allows you to understand the threats you will face, and implement countermeasure in a consistent, reliable way. If you only do one thing to improve yoru development processes, Threat Modeling should be it. Now with the new ACE Threat Modeling methodology and tools, it's easy to do as well! Read more »

Builder AU's June book giveaway

Staff [blogs:syslog] -- Help out in the Builder AU forums and win a book! Read more »

Introduction to Infocard

[blogs:] -- Identity provisioning is a hot topic in the Internet right now. Microsoft is behind a new version called Infocard. Here is a brief introduction to what Infocard is. Read more »

Win Stuff! Builder AU's Book Of the Month Competition

Staff [blogs:syslog] -- We've got five copies of Hacking Exposed VoIP: Voice Over IP Security Secrets & Solutions by David Endler to give away, Read more »

Log in


Sign up | Forgot your password?

  • Staff Crying, mooning and leaving

    In this week's roundup we see that continuous whining can get results, Linux users get 64-bit Flash and Moonlight previews, the latest in the Yahoo/Microsoft relationship and Senator Conroy ducks and weave in Senate Question Time. Read more »

    -- posted by Staff

  • Brendon Chase Sun eye Web developers with Netbeans 6.5

    Despite the recent employment axe hitting Sun the company has pushed out a new release of its Netbeans open source IDE with an eye to appeal more to Web developers. Read more »

    -- posted by Brendon Chase

  • Renai LeMay BarCamp buzz: Let the hacking continue

    Attending last weekend's BarCamp in Sydney, it was hard to escape the conclusion that a certain "dot-com bust" flavour had seeped into the kool aid previously being drunk by Australia's web 2.0 and early stage start-up sector. Read more »

    -- posted by Renai LeMay

What's on?