Skip to content
Tips for Tech

Tech Alert Briefing for 6/29/2007

June 29, 2007
Update covering June 22 - June 28, 2007

Welcome to Tech Talk! In this week's edition of Tech Talk, BOL Guru Jeff Patterson writes about a virus spreading on a DoD network.


Jeff Patterson,
BOL GURUYou'll also learn about:

  • ID theft attacks on U.S. service members
  • a worm spreading through MySpace pages
  • spam spoofing the Justice Department
  • emails linking to a bogus Microsoft patch
  • an update on Windows Vista security
  • a second Apple patch for Safari
  • US-CERT's most recent list of security vulnerabilities

Get the details below.

Beware of Phishing and Pharming
According to the Anti-Phishing Working Group, phishing attacks reached an all-time high last year. Designed specifically to educate and assist financial institutions, Harland Financial Solutions? Phishing Response Kit provides a detailed checklist and directives to help institutions respond in the event of a phishing scam. Download the complete kit here.


Defense Fights Virus Spread
The Department of Defense (DOD) shut down an estimated 1,500 computers in response to a virus spread through an unclassified email system.The DOD expects that there will be some personal inconvenience.Read more on CSOOnline.

ID Theft Attempts Aimed at Military
The Red Cross is warning military families of a new scam designed to steal personal information.In this scam, a caller claims to be a Red Cross employee who must get the service member's Social Security number and date of birth before they can receive medical attention.The Red Cross states that they will never call and ask for personal identifying information.

A Worm Crawls through MySpace
A new worm is spreading through MySpace users at an alarming rate.MySpace users visiting compromised MySpace pages are redirected to a phishing page designed to get them to enter their login credentials and install malware.When users enter their login IDs and passwords, the phishers will use the credentials to add the worm to the victims' pages.Read SecurityFix for more information.

We're from the Government, and We Want to ?
The Department of Justice (DOJ) has issued a statement about a series of spam emails claiming to be from the DOJ.The messages assert that recipients or their businesses have had complaints filed on them and that the complaints have been forwarded to the Internal Revenue Service (IRS).The DOJ urges anyone receiving such an email not to respond.

Don't Apply this Patch
The SANS Internet Storm Center has issued a warning about spam email claiming to be from Microsoft that has a pointer to a patch for a new 0-day vulnerability that should be installed immediately.Microsoft will never email patches or links to patches.

Vista Security Tops Mac and Linux
A new study shows that after six months Vista has better security than Mac OS X and several Linux distributions.The study compared High severity vulnerabilities discovered in the first six months after the initial release.CSOOnline has additional information.

Apple Patches Safari -- Again
The second patch for Safari for Windows has been released by Apple.This patch fixes multiple vulnerabilities in the new Beta web browser.Also released were fixes for security flaws in Mac OS X.CSOOnline has more information.

Only 55 Make Latest Vulnerability List
The US-CERT Vulnerability Summary for the Week of June 18, 2007 lists twenty-nine High, seven Medium and nineteen Low severity vulnerabilities. Security flaws were announced in Apache Tomcat; Apple Safari; Mozilla Firefox; and F-Secure Anti-Virus.



P.S. from the BOL Team:Have you downloaded the free financial institution phishing attack response kit from Harland Financial Solutions yet?It's excellent!See the link above.


Subscribe to Tech Talk and BOL Tech Advisories.
CD ROM Training & Information Security Supplies
CD ROM Training
CD ROM Training
CD ROM TrainingPolicies/Job Descriptions & Video Training
Video Training:
Safeguarding Customer Information

Policy:
Information Systems Security

Policy:
Electronic Mail (Email)
Archived Articles on Technology and eBankingYou have access to archived Tech Talk pages and Tech Alerts on BankersOnline's Technology & eBanking page.
Plus, you'll find the latest technology and eBanking articles and guru Q&As there, too.You'll find many more related articles in our InfoVault.

First published on 06/28/2007

Briefing type: 

Banker Tools View All

A collection of useful resources for various areas of the bank which have been developed by members of the BankersOnline staff or have been created and contributed by users of the BankersOnline site.

Banker Tools

Penalties View All

Search Briefings

Briefing Archives