<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>

<channel>
	<title>Enclave Security Blogs</title>
	<atom:link href="http://enclavesecurity.com/blogs/feed/" rel="self" type="application/rss+xml" />
	<link>http://enclavesecurity.com/blogs</link>
	<description>A Leader in Data Protection Services</description>
	<pubDate>Tue, 09 Mar 2010 16:51:27 +0000</pubDate>
	<generator>http://wordpress.org/?v=abc</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>IT Security Highlights March 9 2010</title>
		<link>http://enclavesecurity.com/blogs/blog/2010/03/09/it-security-highlights-march-9-2010/</link>
		<comments>http://enclavesecurity.com/blogs/blog/2010/03/09/it-security-highlights-march-9-2010/#comments</comments>
		<pubDate>Tue, 09 Mar 2010 16:51:27 +0000</pubDate>
		<dc:creator>Kelli Tarala</dc:creator>
		
		<category><![CDATA[DHS Infrastructure Reports]]></category>

		<guid isPermaLink="false">http://enclavesecurity.com/blogs/?p=547</guid>
		<description><![CDATA[Energizer Bunny’s software infects PCs
The Energizer Bunny infects PCs with backdoor malware, the Department of Homeland Security’s US-CERT said on March 5. According to researchers at US-CERT, software that accompanies the Energizer DUO USB battery charger contains a Trojan horse that gives hackers total access to a Windows PC. The Energizer DUO, a USB-powered nickel-metal [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Energizer Bunny’s software infects PCs<br />
</strong>The Energizer Bunny infects PCs with backdoor malware, the Department of Homeland Security’s US-CERT said on March 5. According to researchers at US-CERT, software that accompanies the Energizer DUO USB battery charger contains a Trojan horse that gives hackers total access to a Windows PC. The Energizer DUO, a USB-powered nickel-metal hydride battery recharger, has been discontinued, said Energizer Holdings, which late on March 5 confirmed that the software contains malicious code.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.networkworld.com/news/2010/030810-energizer-bunnys-software-infects.html?hpg1=bn" href="http://www.networkworld.com/news/2010/030810-energizer-bunnys-software-infects.html?hpg1=bn">http://www.networkworld.com/news/2010/030810-energizer-bunnys-software-infects.html?hpg1=bn</a></p></blockquote>
<p><strong>Wave of ransom malware hits Internet</strong><br />
Criminals reused an attack from 2008 to hit the Internet with a huge wave of ransomware in recent weeks. In the space of only two days, February 8 and 9, the HTML/Goldun.AXT campaign accounted for more than half the total malware detected for February, which gives some indication of its unusual scale. The attack itself takes the form of a spam e-mail with an attachment, report.zip, which if clicked automatically downloads a rogue antivirus product called Security Tool. It is also being distributed using manipulated search engine optimization (SEO) on Google and other providers.</p>
<blockquote><p><strong>Full Story:</strong><br />
<a title="http://www.pcworld.com/article/190967/wave_of_ransom_malware_hits_internet.html" href="http://www.pcworld.com/article/190967/wave_of_ransom_malware_hits_internet.html">http://www.pcworld.com/article/190967/wave_of_ransom_malware_hits_internet.html</a></p></blockquote>
<p><strong>Microsoft gives dates for the end of support for Windows XP Service Pack 2 and Windows 2000.<br />
</strong>Microsoft is to address eight vulnerabilities on its monthly Patch Tuesday, with no critical flaws expected to be addressed. The vulnerabilities are in Windows and Microsoft Office and are remote code execution problems. Microsoft confirmed ending support for legacy operating systems in the coming months. Windows XP Service Pack 2 will no longer be supported after  July 13, and on the same date extended support for Windows 2000 will finish. Windows Vista RTM will no longer be supported after  April 13, although service pack one will still be supported until the  July 12<sup>th</sup> 2011.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a href="http://www.scmagazineuk.com/microsoft-will-cover-eight-important-vulnerabilities/">http://www.scmagazineuk.com/microsoft-will-cover-eight-important-vulnerabilities/</a></p></blockquote>
<p><strong>Opera says bug probably can’t commandeer machines<br />
</strong>A security vulnerability identified in Opera can be exploited to crash users’ browsers, but probably can’t lead to the remote execution of malware, a company spokesman said. The buffer overflow bug was <a href="http://www.vupen.com/english/advisories/2010/0529">disclosed by Vupen Security</a> on Thursday, and the report has since been picked up by others, including <a href="http://secunia.com/advisories/38820/">Secunia</a> and <a href="http://isc.sans.org/diary.html?storyid=8356">Sans</a>. The advisories have said the vulnerability is critical because it can be exploited to remotely execute malicious code on end user machines. Users should be sure to enable a security feature known as DEP, or data execution prevention.</p>
<blockquote><p><strong>Full Story:</strong><br />
<a title="http://www.theregister.co.uk/2010/03/05/opera_vulnerability/" href="http://www.theregister.co.uk/2010/03/05/opera_vulnerability/">http://www.theregister.co.uk/2010/03/05/opera_vulnerability/</a></p></blockquote>
<p><strong>Smartphone weather app builds a mobile botnet<br />
</strong>A pair of researchers has amassed nearly 8,000 iPhones and Android smartphones in an experimental mobile botnet that demonstrates the ease of spreading potentially malicious applications on these devices. The security researchers with TippingPoint’s Digital Vaccine Group demonstrated how their seemingly innocuous weather app — called WeatherFist — gathers information on the users who downloaded it, including their GPS coordinates and phone numbers. The researchers wrote the app to prove how such an app could steal or modify a user’s contacts, read his files, and access his Facebook and Twitter accounts, as well as email and passwords.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.darkreading.com/insiderthreat/security/client/showArticle.jhtml?articleID=223200001" href="http://www.darkreading.com/insiderthreat/security/client/showArticle.jhtml?articleID=223200001">http://www.darkreading.com/insiderthreat/security/client/showArticle.jhtml?articleID=223200001</a></p></blockquote>
<p><strong>Phishing reaches record high in January</strong><br />
January marked a record high for phishing attacks, seeing a 21 percent increase over the month before, according to security vendor RSA. The firm’s monthly Online Fraud Report showed that recorded phishing attacks reached 18,820, more than double the figure a year ago. Fast-flux attacks, accounted for 24 percent of phishing incidents in January, up four per cent on December. Standard phishing attacks, meanwhile, showed a 12 percent increase compared with December. The number of attacked brands climbed by just two percent compared to December, but 35 new organizations suffered their first attack in January, more than triple the number reported in December.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a href="http://www.v3.co.uk/v3/news/2259037/january-sees-phishing">http://www.v3.co.uk/v3/news/2259037/january-sees-phishing</a></p></blockquote>
<blockquote><p><strong>RSA Online Fraud Report:</strong><br />
<a title="http://www.rsa.com/solutions/consumer_authentication/intelreport/10763_Online_Fraud_report_0210.pdf" href="http://www.rsa.com/solutions/Online_Fraud_report_0210.pdf">http://www.rsa.com/solutions/Online_Fraud_report_0210.pdf</a></p></blockquote>
<p><strong><br />
Read the Full DHS Infrastructure Report:<br />
</strong><a href="http://www.enclavesecurity.com/blogresources/cdr_030910.pdf">www.enclavesecurity.com/blogresources/cdr_030910.pdf</a></p>
]]></content:encoded>
			<wfw:commentRss>http://enclavesecurity.com/blogs/blog/2010/03/09/it-security-highlights-march-9-2010/feed/</wfw:commentRss>
		</item>
		<item>
		<title>IT Security Highlights March 8 2010</title>
		<link>http://enclavesecurity.com/blogs/blog/2010/03/08/it-security-highlights-march-8-2010/</link>
		<comments>http://enclavesecurity.com/blogs/blog/2010/03/08/it-security-highlights-march-8-2010/#comments</comments>
		<pubDate>Mon, 08 Mar 2010 22:19:11 +0000</pubDate>
		<dc:creator>Kelli Tarala</dc:creator>
		
		<category><![CDATA[Assurance]]></category>

		<guid isPermaLink="false">http://enclavesecurity.com/blogs/?p=544</guid>
		<description><![CDATA[Tool automates targeted attacks on social network users
A researcher released a free tool that impersonates a Twitter user’s account in order to execute automated targeted attacks on the person’s followers. A security researcher with Core Security Labs, says the group wrote the tool as a way to demonstrate and test for how social networks can [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Tool automates targeted attacks on social network users<br />
</strong>A researcher released a free tool that impersonates a Twitter user’s account in order to execute automated targeted attacks on the person’s followers. A security researcher with Core Security Labs, says the group wrote the tool as a way to demonstrate and test for how social networks can be used for spear phishing. The initial version executes attacks on Twitter, but the researcher says it can be extended to work against Facebook and other social networks.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.darkreading.com/insiderthreat/security/client/showArticle.jhtml?articleID=223101626" href="http://www.darkreading.com/insiderthreat/security/client/showArticle.jhtml?articleID=223101626">http://www.darkreading.com/insiderthreat/security/client/showArticle.jhtml?articleID=223101626</a></p></blockquote>
<p><strong>Glitch prompts VA to shut e-health data exchange with Department of Defense</strong><br />
The Veterans Affairs Department closed off access to the Defense Department’s electronic health record system on March 1 because it found errors in some patients’ medical data. The glitch did not cause harm to any patient, but “the potential exists for decisions regarding patient care to be made using incorrect or incomplete data,” said the director of the Veterans Health Administration’s Information Technology Patient Safety Office, in an alert issued on March 3.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.nextgov.com/nextgov/ng_20100304_9977.php?oref=topstory" href="http://www.nextgov.com/nextgov/ng_20100304_9977.php?oref=topstory">http://www.nextgov.com/nextgov/ng_20100304_9977.php?oref=topstory</a></p></blockquote>
<p><strong>Campus urged to beware of new phishing scams<br />
</strong>The Office of Campus Information Security (OCIS) is aware of two new phishing emails targeting University of Wisconsin’s NetID login service. If users click the link in the phishing email, they are directed to fake NetID login sites that are very realistic and well replicated. Users could easily be fooled by these phishing attempts.</p>
<blockquote><p><strong>Full Story:</strong><br />
<a href="http://www.news.wisc.edu/17764">http://www.news.wisc.edu/17764<br />
</a></p></blockquote>
<p><strong>Microsoft plans to patch 8 Windows, Office bugs next week</strong>.<br />
Microsoft announced it will ship two security updates on March 9th to patch eight vulnerabilities in Windows and Office. In its monthly advance notification, Microsoft spelled out next week’s two updates, a far cry from February’s roll-out of 13 security bulletins that fixed 26 flaws. Both bulletins will be pegged as “important,” Microsoft’s second-highest severity rating in its four step scoring system.</p>
<blockquote><p><strong>Full Story:</strong><br />
<a title="http://www.computerworld.com/s/article/9166158/Microsoft_plans_to_patch_8_Windows_Office_bugs_next_week" href="http://www.computerworld.com/s/article/9166158/Microsoft">http://www.computerworld.com/s/article/9166158/Microsoft</a></p></blockquote>
<p><strong>Chinese attacks like the one against Google are on pace to double this year<br />
</strong>Recent Internet attacks from China against Google and other U.S. companies will more than double this year if the pace during the first two months continues, said the chief research officer for F-Secure. This type of attack has been increasing over the past two years. Unlike other malware attacks, these are fashioned for specific targets and are used only once.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.networkworld.com/news/2010/030410-rsa-chinese-attacks.html?hpg1=bn" href="http://www.networkworld.com/news/2010/030410-rsa-chinese-attacks.html?hpg1=bn">http://www.networkworld.com/news/2010/030410-rsa-chinese-attacks.html?hpg1=bn</a></p></blockquote>
<p><strong>Researchers dissect ZeuS botnet blueprint</strong><br />
A little knowledge and a few thousand dollars is all it takes to build a fully functional botnet, according to security experts. Cisco researchers told delegates at the 2010 RSA conference that a botnet running the infamous ZeuS malware could be built for $2,500. ZeuS is primarily a data-gathering and botnet control tool. It is dangerous because it directly injects content into pages and intercepts credentials before they are sent to legitimate sites.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.v3.co.uk/v3/news/2258969/rsa-2010-researchers-dissect" href="http://www.v3.co.uk/v3/news/2258969/rsa-2010-researchers-dissect">http://www.v3.co.uk/v3/news/2258969/rsa-2010-researchers-dissect</a></p></blockquote>
<p> </p>
<p><strong>Read the Full DHS Infrastructure Report:<br />
</strong><a href="http://www.enclavesecurity.com/blogresources/cdr_030810.pdf">www.enclavesecurity.com/blogresources/cdr_030810.pdf</a></p>
]]></content:encoded>
			<wfw:commentRss>http://enclavesecurity.com/blogs/blog/2010/03/08/it-security-highlights-march-8-2010/feed/</wfw:commentRss>
		</item>
		<item>
		<title>IT Security Highlights March 5 2010</title>
		<link>http://enclavesecurity.com/blogs/blog/2010/03/08/it-security-highlights-march-5-2010/</link>
		<comments>http://enclavesecurity.com/blogs/blog/2010/03/08/it-security-highlights-march-5-2010/#comments</comments>
		<pubDate>Mon, 08 Mar 2010 15:28:45 +0000</pubDate>
		<dc:creator>Kelli Tarala</dc:creator>
		
		<category><![CDATA[DHS Infrastructure Reports]]></category>

		<guid isPermaLink="false">http://enclavesecurity.com/blogs/?p=540</guid>
		<description><![CDATA[Pennsylvania’s CISO Witnesses Hack like no Other
Pennsylvania’s chief information security officer has seen some strange attempts to hack the commonwealth’s IT systems, but none like the one he witnessed last weekend. At a  RSA Conference panel on state cybersecurity on Wednesday:, he explained, “We saw thousands of hits on our Department of Transportation driver license [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Pennsylvania’s CISO Witnesses Hack like no Other</strong><br />
Pennsylvania’s chief information security officer has seen some strange attempts to hack the commonwealth’s IT systems, but none like the one he witnessed last weekend. At a  RSA Conference panel on state cybersecurity on Wednesday:, he explained, “We saw thousands of hits on our Department of Transportation driver license exam scheduling site coming out of Russia, the same thing over and over, scheduling driver license exams. It was encrypted traffic, and we were trying to figure out what the heck is going on.”</p>
<blockquote><p><strong>Full Story:</strong><br />
<a title="http://blogs.bankinfosecurity.com/posts.php?postID=469" href="http://blogs.bankinfosecurity.com/posts.php?postID=469">http://blogs.bankinfosecurity.com/posts.php?postID=469</a></p></blockquote>
<p><strong>Hacking human gullibility with social penetration</strong><br />
Security penetration testers rely plenty on technical attacks that exploit weaknesses in websites and servers, but social penetration techniques are more reliable and easier to use in identifying chinks in fortresses.  That’s true even for organizations that place a high premium on security and train their employees to resist the most common attempts to trick them into letting down their guard, according to the principals of Mad Security.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.theregister.co.uk/2010/03/04/social_penetration/" href="http://www.theregister.co.uk/2010/03/04/social_penetration/">http://www.theregister.co.uk/2010/03/04/social_penetration/</a></p></blockquote>
<p><strong>Wi-Fi could lead thieves right to your laptop<br />
</strong>Stuffing a company laptop into the car trunk or even a locker, without turning off its Wi-Fi radio, can be an open invitation to thieves, according to Credant Technologies. Thieves with increasingly sophisticated, directional Wi-Fi detectors can home in on the laptop’s radio, tracking it down even when the PC is hidden away. </p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.pcworld.com/article/190674/wifi_could_lead_thieves_right_to_your_laptop.html" href="http://www.pcworld.com/article/190674/wifi_could_lead_thieves_right_to_your_laptop.html">http://www.pcworld.com/article/190674/wifi_could_lead_thieves_right_to_your_laptop.html</a></p></blockquote>
<p><strong>Database security lacking at financial services firms<br />
</strong>Sloppy operating practices across the financial services sector leave firms vulnerable to breaches that could expose sensitive data according to a new study from the Ponemon Institute. The report identified several key areas where financial services companies could take a hit from loose data policies, including damage to the corporate brand and the erosion of consumer trust. “One of the most important things a company can do to assure their future success is to plug the holes in their security policies that were demonstrated in this study,” the head of the Ponemon Institute, said in a statement.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.esecurityplanet.com/trends/article.php/3868381/Database-Security-Lacking-at-Financial-Services-Firms.htm" href="http://www.esecurityplanet.com/trends/article.php/3868381/Database-Security-Lacking-at-Financial-Services-Firms.htm">http://www.esecurityplanet.com/trends/article.php/3868381/Database-Security-Lacking-at-Financial-Services-Firms.htm</a></p></blockquote>
<p><strong>RSA 2010 Highlights: Hackers using legitimate cloud services for Dark Ends<br />
</strong>Cyber criminal groups are using legitimate cloud offerings such as Amazon Web Services to facilitate malware creation and password cracking, delegates at RSA 2010 were told. The Russian Business Network (RBN), one of the most powerful and extensive malware and hacking organizations, has been buying time on Amazon’s EC2 platform to build malware and attack passwords, according to the founder of security consultancy InGuardians. The RBN, based in northern Russia, is one of the biggest and most professional hacking groups in the world. The organization started in the pornography business, but quickly moved to crime and now offers malware-as-a-service and hosting services, and provides credit card data and false identities. Other security professionals have confirmed the use of mainstream cloud services by the hacking and malware community.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.v3.co.uk/v3/news/2258919/rsa-2010-hackers-legitimate" href="http://www.v3.co.uk/v3/news/2258919/rsa-2010-hackers-legitimate">http://www.v3.co.uk/v3/news/2258919/rsa-2010-hackers-legitimate</a></p></blockquote>
<p><strong>Source code management a weak spot in Aurora attacks</strong><br />
Companies should take extra steps to secure their source code from the type of targeted attacks that hit Google, Adobe, Intel and others over the past few months, according to security vendor McAfee. “We saw targeted attacks against software configuration management products,” said McAfee’s chief technology officer (CTO.) In many of the attacks company engineers and technical staff were targeted with malicious software. And in some cases, source code management systems were accessed and code was downloaded outside of company firewalls, the CTO said.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.computerworld.com/s/article/9165718/Source_code_management_a_weak_spot_in_Aurora_attacks" href="http://www.computerworld.com/s/article/9165718/Source_code_management_a_weak_spot_in_Aurora_attacks">http://www.computerworld.com/s/article/9165718/</a></p></blockquote>
<p> <strong>Full DHS Infrastructure Report:<br />
</strong><a href="http://www.enclavesecurity.com/blogresources/cdr_030510.pdf">www.enclavesecurity.com/blogresources/cdr_030510.pdf</a></p>
]]></content:encoded>
			<wfw:commentRss>http://enclavesecurity.com/blogs/blog/2010/03/08/it-security-highlights-march-5-2010/feed/</wfw:commentRss>
		</item>
		<item>
		<title>IT Security Highlights March 4th 2010</title>
		<link>http://enclavesecurity.com/blogs/blog/2010/03/05/it-security-highlights-march-4th-2010/</link>
		<comments>http://enclavesecurity.com/blogs/blog/2010/03/05/it-security-highlights-march-4th-2010/#comments</comments>
		<pubDate>Fri, 05 Mar 2010 17:52:17 +0000</pubDate>
		<dc:creator>Kelli Tarala</dc:creator>
		
		<category><![CDATA[DHS Infrastructure Reports]]></category>

		<guid isPermaLink="false">http://enclavesecurity.com/blogs/?p=537</guid>
		<description><![CDATA[Microsoft wants to put infected PCs in Rubber Room
A top Microsoft executive is floating the idea of creating mandatory quarantines for computers with malware infections that pose a risk to internet users. Scott Charney is the latest to champion the idea that infected PC users should be put in their own rubber room, so the [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Microsoft wants to put infected PCs in Rubber Room<br />
</strong>A top Microsoft executive is floating the idea of creating mandatory quarantines for computers with malware infections that pose a risk to internet users. Scott Charney is the latest to champion the idea that infected PC users should be put in their own rubber room, so the malware, spam, and other attacks they generate cannot harm others. The logistics of such a plan remain unformed. While many say ISPs should monitor subscribers for infections, there is considerable disagreement about how providers should carry out and pay for such a system.</p>
<blockquote><p><strong>Full Story:</strong><br />
<a title="http://www.theregister.co.uk/2010/03/02/microsoft_charney_rsa/" href="http://www.theregister.co.uk/2010/03/02/microsoft_charney_rsa/">http://www.theregister.co.uk/2010/03/02/microsoft_charney_rsa/</a></p></blockquote>
<p><strong>Spain busts global botnet masterminds</strong><br />
Spanish police have arrested three men accused of masterminding one of the biggest computer crimes to date — infecting more than 13 million PCs with a virus that stole credit card numbers and other data. The men were suspected of running the Mariposa botnet, named after the Spanish word for butterfly.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.reuters.com/article/idUSTRE6214ST20100303" href="http://www.reuters.com/article/idUSTRE6214ST20100303">http://www.reuters.com/article/idUSTRE6214ST20100303</a></p></blockquote>
<p><strong>White House declassifies parts of US Cybersecurity Plan</strong><br />
At the RSA conference in San Francisco on this week, the White House Cyber Advisor declassified parts of the  previous U.S. Presidential Administration’s secretive plan to defend the nation’s computer networks. Howard A. Schmidt  announced that the current Presidential Administration was partially declassifying the 2008 Comprehensive National Cybersecurity Initiative - 20 - (CNCI) in the name of transparency. The declassified portion of the CNCI includes descriptions of 12 broad initiatives of the CNCI, but few details. The document largely focuses on efforts to secure the federal government’s vast computer networks with the use of its Einstein system to detect unauthorized attempts to access government computers.</p>
<blockquote><p><strong>Full Story:</strong><br />
<a title="http://www.csmonitor.com/USA/2010/0302/White-House-declassifies-parts-of-US-cybersecurity-plan" href="http://www.csmonitor.com/USA/2010/0302/White-House-declassifies-parts-of-US-cybersecurity-plan">http://www.csmonitor.com/USA/2010/0302/White-House-declassifies-parts-of-US-cybersecurity-plan</a></p></blockquote>
<p><strong>Microsoft Pushes another Patch linked to Windows Blue Screens</strong><br />
Microsoft on March 2 said it had restarted distribution of a security update that had crippled some Windows PCs last month with reboot problems and Blue Screen of Death error screens. The update, dubbed MS10-015, originally shipped on February 9, but was pulled from Windows Updates’ automatic update two days later after complaints flooded Microsoft’s support forum from users whose machines refused to restart after they had installed the patch.</p>
<blockquote><p><strong>Full Story:</strong><br />
<a title="http://www.computerworld.com/s/article/9164518/Microsoft_again_pushes_patch_linked_to_Windows_blue_screens" href="http://www.computerworld.com/s/article/9164518/Microsoft_again_pushes_patch_linked_to_Windows_blue_screens">http://www.computerworld.com/s/article/9164518/</a></p></blockquote>
<p><strong>Zombie Tactics threaten to Poison honeypots<br />
</strong>Innovations in botnet technology threaten the usefulness of honeypots, one- of the main ways to study how cybercrooks acting as bot herders control networks of zombie PCs. Computer scientists at the University of Central Florida warn that bot herders can now avoid honeypots – which are unprotected computers outfitted with monitoring software. Cybercrooks can program servers to disable or simply ignore honeypots, thus depriving security firms of vital intelligence in how zombie botnets are operating in the real world. The scientists are working on techniques to make stealthier honeypot traps to trick bot herders.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.theregister.co.uk/2010/03/02/honeypot_anti_security_countermeasures/" href="http://www.theregister.co.uk/2010/03/02/">http://www.theregister.co.uk/2010/03/02/</a></p></blockquote>
<p> </p>
<p><strong>Read the Full DHS Infrastructure Report:<br />
</strong><a href="http://www.enclavesecurity.com/blogresources/cdr_030410.pdf">www.enclavesecurity.com/blogresources/cdr_030410.pdf</a></p>
]]></content:encoded>
			<wfw:commentRss>http://enclavesecurity.com/blogs/blog/2010/03/05/it-security-highlights-march-4th-2010/feed/</wfw:commentRss>
		</item>
		<item>
		<title>IT Security Highlights March 3rd 2010</title>
		<link>http://enclavesecurity.com/blogs/blog/2010/03/04/it-security-highlights-march-3rd-2010/</link>
		<comments>http://enclavesecurity.com/blogs/blog/2010/03/04/it-security-highlights-march-3rd-2010/#comments</comments>
		<pubDate>Thu, 04 Mar 2010 18:58:19 +0000</pubDate>
		<dc:creator>Kelli Tarala</dc:creator>
		
		<category><![CDATA[DHS Infrastructure Reports]]></category>

		<guid isPermaLink="false">http://enclavesecurity.com/blogs/?p=534</guid>
		<description><![CDATA[Resembling ‘cartels,’ hackers become more industrialized
Hackers are more “industrialized” than ever before and hacking communities now resemble an organized “drug cartel”, according to a report released on March 1. Imperva, a data security company, found that today’s cybercrime industry has transformed and automated itself to mimic the 19th century industrial revolution, which accelerated assembly from [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Resembling ‘cartels,’ hackers become more industrialized<br />
</strong>Hackers are more “industrialized” than ever before and hacking communities now resemble an organized “drug cartel”, according to a report released on March 1. Imperva, a data security company, found that today’s cybercrime industry has transformed and automated itself to mimic the 19th century industrial revolution, which accelerated assembly from single to mass production.</p>
<blockquote>
<p align="left"><strong>Full Story:</strong> <a title="http://www.ibtimes.com/articles/9195/20100301/resembling-cartels-hackers-become-more-industrialized-imperva-report.htm" href="http://www.ibtimes.com/articles/9195/20100301/resembling-cartels-hackers-become-more-industrialized-imperva-report.htm">http://www.ibtimes.com/articles/9195/20100301/resembling-cartels-hackers-become-more-industrialized-imperva-report.htm</a></p>
</blockquote>
<p><strong>Gmail security enhancements expected this week<br />
</strong>Google will roll out a number of security enhancements to Gmail the week of March 1, and perhaps as early as March 2, says a source with knowledge of the new 20 features. The changes are specifically designed to cut down on phishing and hacking attacks on Gmail accounts.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://techcrunch.com/2010/03/01/gmail-security-enhancements-expected-tuesday/" href="http://techcrunch.com/2010/03/01/gmail-security-enhancements-expected-tuesday/">http://techcrunch.com/2010/03/01/gmail-security-enhancements-expected-tuesday/</a></p></blockquote>
<p><strong></strong></p>
<p><strong>Microsoft warns of new bug affecting IE users</strong><br />
Steer clear of the F1 key while surfing the Web, at least for a little while. Microsoft warned on March 1 of a new vulnerability that affects Internet Explorer users, saying that it could be exploited by hackers to install malicious software on a victim’s computer.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.networkworld.com/news/2010/030210-microsoft-warns-of-new-bug.html?hpg1=bn" href="http://www.networkworld.com/news/2010/030210-microsoft-warns-of-new-bug.html?hpg1=bn">http://www.networkworld.com/news/2010/030210-microsoft-warns-of-new-bug.html?hpg1=bn</a></p></blockquote>
<p><strong></strong></p>
<p><strong>Report: Aurora attack was tested last summer<br />
</strong>The attacks on Google and others late last year weren’t as sophisticated as initially believed and appears to have cropped up last summer, according to a report to be released Tuesday by security firm Damballa. Damballa is just the latest company to analyze the attacks and offer an opinion. McAfee dubbed the attacks “Operation Aurora” and said they were highly complex and advanced. While ‘Aurora’ was a very damaging attack that breached some of the most sophisticated networks in the world, it is a ‘garden variety’ botnet and can be traced back to July 2009 when the criminal operators first began testing.</p>
<blockquote><p><a title="http://news.cnet.com/8301-27080_3-10461935-245.html" href="http://news.cnet.com/8301-27080_3-10461935-245.html"><strong>Full Story</strong>: http://news.cnet.com/8301-27080_3-10461935-245.html</a></p></blockquote>
<p><strong></strong></p>
<p><strong>Word of Warcraft authenticators bypassed by middlemen hackers<br />
</strong>Crooks have developed a man-in-the-middle-attack designed to circumvent authentication kit used by dedicated World of Warcraft gamers. World of Warcraft players are reporting that the new infection file is managing to intercept login data (getting around the authenticator) and send it elsewhere, by means of a “Man in the middle attack.” The approach of the gaming fraudsters is broadly similar to man-in-the-middle attacks against online banking accounts, where users are obliged to input a code generated by an authentication device as well as their password.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.theregister.co.uk/2010/03/02/warcraft_account_hack/" href="http://www.theregister.co.uk/2010/03/02/warcraft_account_hack/">http://www.theregister.co.uk/2010/03/02/warcraft_account_hack/</a></p></blockquote>
<p> </p>
<p><strong>Read the Complete DHS Infrastructure Report<br />
</strong><a href="http://www.enclavesecurity.com/blogresources/cdr_030310.pdf">www.enclavesecurity.com/blogresources/cdr_030310.pdf</a></p>
]]></content:encoded>
			<wfw:commentRss>http://enclavesecurity.com/blogs/blog/2010/03/04/it-security-highlights-march-3rd-2010/feed/</wfw:commentRss>
		</item>
		<item>
		<title>IT Security Highlights March 2 2010</title>
		<link>http://enclavesecurity.com/blogs/blog/2010/03/03/it-security-highlights-march-2-2010/</link>
		<comments>http://enclavesecurity.com/blogs/blog/2010/03/03/it-security-highlights-march-2-2010/#comments</comments>
		<pubDate>Wed, 03 Mar 2010 16:55:53 +0000</pubDate>
		<dc:creator>Kelli Tarala</dc:creator>
		
		<category><![CDATA[DHS Infrastructure Reports]]></category>

		<guid isPermaLink="false">http://enclavesecurity.com/blogs/?p=530</guid>
		<description><![CDATA[Wyndham Hotels hacked again
International hotel group Wyndham Hotels and Resorts has suffered yet another serious data breach after hackers broke into its computer systems and stole customer names and payment card information. An open letter posted on the firm’s site said that the hotel group discovered the attack on one of its data centers in [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Wyndham Hotels hacked again<br />
</strong>International hotel group Wyndham Hotels and Resorts has suffered yet another serious data breach after hackers broke into its computer systems and stole customer names and payment card information. An open letter posted on the firm’s site said that the hotel group discovered the attack on one of its data centers in late January.</p>
<blockquote><p><strong>Full Story:</strong> <a title="http://www.v3.co.uk/v3/news/2258650/wyndham-hotels-hacked-again" href="http://www.v3.co.uk/v3/news/2258650/wyndham-hotels-hacked-again">http://www.v3.co.uk/v3/news/2258650/wyndham-hotels-hacked-again</a></p></blockquote>
<p><strong>Microsoft warns over rogue Security Essentials<br />
</strong>Microsoft has warned Windows users to be on their guard against a piece of rogue antivirus software passing itself off as Microsoft Security Essentials. The fake Security essentials 2010 installs a fake virus scanner on your machine and monitors and blocks processes it doesn’t like. The software will also block access to websites of antivirus and malware companies and flag up a warning message. You can see the list of blocked sites <a href="http://www.microsoft.com/security/portal/Threat/Encyclopedia/Entry.aspx?Name=Trojan:Win32/Fakeinit">here</a>.</p>
<blockquote>
<p align="left"><strong>Full Story:</strong> <a title="http://www.theregister.co.uk/2010/02/26/microsoft_security_essentials_rogue/" href="http://www.theregister.co.uk/2010/02/26/microsoft_security_essentials_rogue/">http://www.theregister.co.uk/2010/02/26/microsoft_security_essentials_rogue/</a></p>
</blockquote>
<p><strong>State of Application Security: Nearly 60 percent of Apps Fail first security test</strong><br />
Most software applications remain riddled with security holes, according to a new report released today about the actual security quality of all types of software. Around 58 percent of the applications tested by application security testing service provider Veracode in the past year-and-a-half failed to achieve a successful rating in their first round of testing.</p>
<blockquote><p><strong>Full Story:</strong><br />
<a title="http://www.darkreading.com/vulnerability_management/security/app-security/showArticle.jhtml?articleID=223100875" href="http://www.darkreading.com/vulnerability_management/security/app-security/showArticle.jhtml?articleID=223100875">http://www.darkreading.com/vulnerability_management/security/app-security/showArticle.jhtml?articleID=223100875</a> </p></blockquote>
<blockquote><p><strong>Vericode Report:</strong> <a title="http://www.veracode.com/reports/index.html" href="http://www.veracode.com/reports/index.html">http://www.veracode.com/reports/index.html</a> </p></blockquote>
<p><strong>New zero-day involves IE, puts Windows XP users at Risk<br />
</strong>Microsoft on Sunday confirmed it’s investigating an unpatched bug in VBScript that hackers could exploit to plant malware on Windows XP machines running Internet Explorer (IE). The flaw could be used by attackers to inject malicious code onto victims’ PCs. Users running IE7 or the newer IE8 are at risk.</p>
<blockquote><p><strong>Full Story:<br />
</strong><a title="http://www.networkworld.com/news/2010/030110-new-zero-day-involves-ie-puts.html?hpg1=bn" href="http://www.networkworld.com/news/2010/030110-new-zero-day-involves-ie-puts.html?hpg1=bn">http://www.networkworld.com/news/2010/030110-new-zero-day-involves-ie-puts.html?hpg1=bn</a></p></blockquote>
<p><strong>Grum and Rustock botnets drive spam to new levels<br />
</strong>Two highly active botnets have pushed spam levels up by five per cent this month, according to Symantec. The company’s MessageLabs branch, now called Symantec Hosted Services, said in a new report that spam accounted for 89.4 percent of email traffic in February, an increase of 5.5 per cent over last month.</p>
<blockquote><p><strong>Full Story:</strong> <a title="http://www.v3.co.uk/v3/news/2258689/pair-botnets-drive-spam-levels" href="http://www.v3.co.uk/v3/news/2258689/pair-botnets-drive-spam-levels">http://www.v3.co.uk/v3/news/2258689/pair-botnets-drive-spam-levels</a></p></blockquote>
<p> <strong>Read the Complete DHS Report<br />
</strong><a href="http://www.enclavesecurity.com/blogsresources/cdr_030210.pdf">www.enclavesecurity.com/blogsresources/cdr_030210.pdf</a></p>
]]></content:encoded>
			<wfw:commentRss>http://enclavesecurity.com/blogs/blog/2010/03/03/it-security-highlights-march-2-2010/feed/</wfw:commentRss>
		</item>
		<item>
		<title>IT Security Highlights from DHS Report March 1 2010</title>
		<link>http://enclavesecurity.com/blogs/blog/2010/03/03/it-security-highlights-from-dhs-report-march-1-2010/</link>
		<comments>http://enclavesecurity.com/blogs/blog/2010/03/03/it-security-highlights-from-dhs-report-march-1-2010/#comments</comments>
		<pubDate>Wed, 03 Mar 2010 16:20:40 +0000</pubDate>
		<dc:creator>Kelli Tarala</dc:creator>
		
		<category><![CDATA[DHS Infrastructure Reports]]></category>

		<guid isPermaLink="false">http://enclavesecurity.com/blogs/?p=528</guid>
		<description><![CDATA[Attackers improving their aim against top brands
Online criminals are becoming increasingly successful in circumventing enterprise defenses and executing targeted attacks on leading Web brands, according to a study released on February 24. Phishing remains one of the Web&#8217;s most popular attack methods, according to Cyveillance&#8217;s 2H 2009 Cyber Intelligence Report.
http://www.darkreading.com/vulnerability_management/security/antivirus/showArticle.jhtml?articleID=223100622
Russian cyber-hackers stopped by local bank
In [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Attackers improving their aim against top brands<br />
</strong>Online criminals are becoming increasingly successful in circumventing enterprise defenses and executing targeted attacks on leading Web brands, according to a study released on February 24. Phishing remains one of the Web&#8217;s most popular attack methods, according to Cyveillance&#8217;s <a href="http://www.cyveillance.com/web/forms/request.asp?getFile=116">2H 2009 Cyber Intelligence Report</a>.</p>
<blockquote><p><a title="http://www.darkreading.com/vulnerability_management/security/antivirus/showArticle.jhtml?articleID=223100622" href="http://www.darkreading.com/vulnerability_management/security/antivirus/showArticle.jhtml?articleID=223100622">http://www.darkreading.com/vulnerability_management/security/antivirus/showArticle.jhtml?articleID=223100622</a></p></blockquote>
<p><strong>Russian cyber-hackers stopped by local bank<br />
</strong>In Eau Claire County, Wisconsin a worker in the treasurer’s office and a local bank prevented computer hackers from stealing almost $800,000. Eau Claire County says the incident happened in late January,via a software attack, but in the end, no money was lost. &#8220;The PC got a virus and as a result, the credentials were compromised and that&#8217;s how they were able to get in,&#8221; said Information Systems Director Dave Hayden.</p>
<blockquote><p><a title="http://www.weau.com/news/headlines/85432692.html" href="http://www.weau.com/news/headlines/85432692.html">http://www.weau.com/news/headlines/85432692.html</a></p></blockquote>
<p><strong>Scareware scams ride the back of killer whale tragedy<br />
</strong>Supposed footage of the February 24 fatal Sea World killer whale attack in Florida points at sites distributing scareware. Search engine manipulation is being used to drive traffic to these sites, by planting links to malware portals in Google results.</p>
<blockquote><p><a title="http://www.theregister.co.uk/2010/02/25/killer_whale_scareware/" href="http://www.theregister.co.uk/2010/02/25/killer_whale_scareware/">http://www.theregister.co.uk/2010/02/25/killer_whale_scareware/</a></p></blockquote>
<p><strong>IBM report: Vulnerabilities fell in ‘09, attacks rose<br />
</strong>There were 6,601 new vulnerabilities discovered last year, an 11 percent decrease compared to 2008, according to the annual &#8220;<a href="http://www-935.ibm.com/services/us/iss/xforce/trendreports/">X-Force Trend and Risk Report</a>. “The computer industry is getting better at building secure software and being responsive to vulnerabilities,” Tom Cross, manager of IBM X-Force Research, told SCMagazineUS.com on Thursday. “But the volume of attack activity is expanding at a very rapid pace.</p>
<blockquote><p><a title="http://www.scmagazineus.com/ibm-report-vulnerabilities-fell-in-09-attacks-rose/article/164547/" href="http://www.scmagazineus.com/ibm-report-vulnerabilities-fell-in-09-attacks-rose/article/164547/">http://www.scmagazineus.com/ibm-report-vulnerabilities-fell-in-09-attacks-rose/article/164547/</a></p></blockquote>
<p><strong>To Read the Complete DHS Report:<br />
<a title="http://www.enclavesecurity.com/blogresources/cdr_123009.pdf" href="http://www.enclavesecurity.com/blogresources/cdr_030110.pdf">http://www.enclavesecurity.com/blogresources/cdr_030110.pdf</a></strong></p>
]]></content:encoded>
			<wfw:commentRss>http://enclavesecurity.com/blogs/blog/2010/03/03/it-security-highlights-from-dhs-report-march-1-2010/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Checklists a Day: Virtualization Audit Checklists (Week in Review – February 22, 2010)</title>
		<link>http://enclavesecurity.com/blogs/blog/2010/03/01/checklists-a-day-virtualization-audit-checklists-week-in-review-%e2%80%93-february-22-2010/</link>
		<comments>http://enclavesecurity.com/blogs/blog/2010/03/01/checklists-a-day-virtualization-audit-checklists-week-in-review-%e2%80%93-february-22-2010/#comments</comments>
		<pubDate>Mon, 01 Mar 2010 15:59:34 +0000</pubDate>
		<dc:creator>James Tarala</dc:creator>
		
		<category><![CDATA[Audit]]></category>

		<category><![CDATA[Free Audit Checklists]]></category>

		<guid isPermaLink="false">http://enclavesecurity.com/blogs/?p=526</guid>
		<description><![CDATA[Welcome back to our weekly archive of audit checklists! We hope these weekly lists will help you as you build your personalized checklist for auditing your own organizations. We know that sometimes it can be difficult to research each of these topics, so hopefully these lists will help save you some time when you are [...]]]></description>
			<content:encoded><![CDATA[<p class="MsoNormal" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">Welcome back to our weekly archive of audit checklists! We hope these weekly lists will help you as you build your personalized checklist for auditing your own organizations. We know that sometimes it can be difficult to research each of these topics, so hopefully these lists will help save you some time when you are researching your audit scope.</span></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">We decided to hit another hot topic this week, so we decided to talk about virtualization. I mean, when you’re not talking about cloud computing security over the family dinner table, you’re probably most likely talking about virtualization security and how it impacts your daily lives (Honey, can you install that new garbage disposal? Of course I can dear, but couldn’t we just virtualize it?). So we’re hoping that these audit checklists will help you as you’re evaluating the controls that protect these environments. You know you’re using them, might as well protect them!</span></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><strong><span style="color: #1f497d"></span></strong></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><strong><span style="color: #1f497d"><span style="font-family: Calibri;font-size: small">Audit Checklists for Auditing Virtualized Environments:</span></span></strong><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><a href="http://iase.disa.mil/stigs/checklist/unclassified_esx_server_checklist_v1r1.4_20091015.zip"><span style="font-family: Calibri;font-size: small">DISA</span></a></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><a href="http://enclavesecurity.com/blogs/jamestarala/wp-admin/i.i.com.com/cnwk.1d/html/itp/Tripwire-Forrester_VRT.pdf"><span style="font-family: Calibri;font-size: small">Tripwire</span></a></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><a href="http://www.virtualizationadmin.com/articles-tutorials/vmware-esx-articles/installation-and-deployment/new-vmware-esxi-server-configuration-checklist.html"><span style="font-family: Calibri;font-size: small">VirtualizationAdmin.com</span></a></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><a href="http://www.slideshare.net/rsnarayanan/security-best-practices-for-hyper-v-and-server-virtualization"><span style="font-family: Calibri;font-size: small">Microsoft</span></a></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><a href="http://www.darkreading.com/vulnerability_management/security/management/showArticle.jhtml?articleID=222900286&amp;cid=RSSfeed"><span style="font-family: Calibri;font-size: small">DarkReading</span></a></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">We hope everyone will enjoy and use these tools this week. If you have suggestions or ideas for future audit checklists or tools, please let us know, we’d love to hear your feedback.</span></p>
]]></content:encoded>
			<wfw:commentRss>http://enclavesecurity.com/blogs/blog/2010/03/01/checklists-a-day-virtualization-audit-checklists-week-in-review-%e2%80%93-february-22-2010/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Checklists a Day: Cloud Computing Audit Checklists (Week in Review – February 15, 2010)</title>
		<link>http://enclavesecurity.com/blogs/blog/2010/02/22/checklists-a-day-cloud-computing-audit-checklists-week-in-review-%e2%80%93-february-15-2010/</link>
		<comments>http://enclavesecurity.com/blogs/blog/2010/02/22/checklists-a-day-cloud-computing-audit-checklists-week-in-review-%e2%80%93-february-15-2010/#comments</comments>
		<pubDate>Mon, 22 Feb 2010 14:50:53 +0000</pubDate>
		<dc:creator>James Tarala</dc:creator>
		
		<category><![CDATA[Audit]]></category>

		<category><![CDATA[Free Audit Checklists]]></category>

		<guid isPermaLink="false">http://enclavesecurity.com/blogs/?p=523</guid>
		<description><![CDATA[Welcome back to our weekly archive of audit checklists! We hope these weekly lists will help you as you build your personalized checklist for auditing your own organizations. We know that sometimes it can be difficult to research each of these topics, so hopefully these lists will help save you some time when you are [...]]]></description>
			<content:encoded><![CDATA[<p class="MsoNormal" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">Welcome back to our weekly archive of audit checklists! We hope these weekly lists will help you as you build your personalized checklist for auditing your own organizations. We know that sometimes it can be difficult to research each of these topics, so hopefully these lists will help save you some time when you are researching your audit scope.</span></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">For this week’s checklists we’re going to be returning to the world of more operational controls. Specifically we’ve been investigating audit checklists for evaluating cloud computing environments. Come on, we know you’ve been thinking about it and talking about it both in your IT departments and in your corporate board rooms. Heck, you’ve probably been chatting up other parents at your kid’s little league and talking with them about it! So this week we’re listing off some helpful checklists we’ve found for auditing cloud computing environments. Enjoy!</span></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><strong></strong></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><strong><span style="color: #1f497d"><span style="font-family: Calibri;font-size: small">Audit Checklists for Auditing Cloud Computing Providers:</span></span></strong><span style="font-family: Calibri;font-size: small"> </span></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><a href="http://www.enisa.europa.eu/act/rm/files/deliverables/cloud-computing-risk-assessment"><span style="font-family: Calibri;font-size: small">ENISA</span></a></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><a href="http://www.cloudsecurityalliance.org/csaguide.pdf"><span style="font-family: Calibri;font-size: small">Cloud Security Alliance</span></a></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><a href="http://www.grid.org.il/?CategoryID=534&amp;ArticleID=2063"><span style="font-family: Calibri;font-size: small">Grid.org.il</span></a></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><a href="http://www.snia.org/education/tutorials/2009/fall/security/RussFellows_Securing_the_Cloud_v3.pdf"><span style="font-family: Calibri;color: #800080;font-size: small">SNIA</span></a></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><a href="http://web.fumsi.com/go/article/manage/3949"><span style="font-family: Calibri;font-size: small">FUMSI</span></a></p>
<p class="MsoNormal" style="margin: 0in 0in 0pt"><span style="font-family: Calibri;font-size: small">We hope everyone will enjoy and use these tools this week. If you have suggestions or ideas for future audit checklists or tools, please let us know, we’d love to hear your feedback.</span></p>
]]></content:encoded>
			<wfw:commentRss>http://enclavesecurity.com/blogs/blog/2010/02/22/checklists-a-day-cloud-computing-audit-checklists-week-in-review-%e2%80%93-february-15-2010/feed/</wfw:commentRss>
		</item>
		<item>
		<title>SANS CISA Exam Review Course Discount</title>
		<link>http://enclavesecurity.com/blogs/blog/2010/02/17/sans-cisa-exam-review-course-discount/</link>
		<comments>http://enclavesecurity.com/blogs/blog/2010/02/17/sans-cisa-exam-review-course-discount/#comments</comments>
		<pubDate>Wed, 17 Feb 2010 15:55:23 +0000</pubDate>
		<dc:creator>James Tarala</dc:creator>
		
		<category><![CDATA[Audit]]></category>

		<category><![CDATA[CISA]]></category>

		<category><![CDATA[Training]]></category>

		<guid isPermaLink="false">http://enclavesecurity.com/blogs/?p=521</guid>
		<description><![CDATA[So it’s that time of year again, we begin to hope that the winter months are behind us, the trees and flowers are starting to bloom (at least in Florida where I live), but most importantly – people are beginning to think about taking the CISA exam from ISACA in order to promote their audit [...]]]></description>
			<content:encoded><![CDATA[<p class="MsoNormal" style="margin: 0in 0in 10pt"><span style="font-family: Calibri;font-size: small">So it’s that time of year again, we begin to hope that the winter months are behind us, the trees and flowers are starting to bloom (at least in Florida where I live), but most importantly – people are beginning to think about taking the CISA exam from ISACA in order to promote their audit careers! </span></p>
<p class="MsoNormal" style="margin: 0in 0in 10pt"><span style="font-family: Calibri;font-size: small">So many of you are thinking, yes James, that’s right, I was thinking about that. Of course you were. That’s why twice a year, right before each of the CISA exams, we hold a CISA review class via our online vLive delivery system to help people prepare to pass the exam. Click here to learn more </span><a href="http://tr.im/MGnD"><span style="font-family: Calibri;font-size: small">http://tr.im/MGnD</span></a><span style="font-family: Calibri;font-size: small">. </span></p>
<p class="MsoNormal" style="margin: 0in 0in 10pt"><span style="font-size: small"><span style="font-family: Calibri">The class itself doesn’t start until April, but it’s a good idea to sign up now to start preparing early. In fact, SANS has told me for people that are signing up early, and pay attention to our blogs, that they’ll give an additional discount. <strong>If you sign up this week with the discount code IN423 you’ll end up saving a little over $1000 off the retail price of the class.</strong></span></span></p>
<p class="MsoNormal" style="margin: 0in 0in 10pt"><span style="font-family: Calibri;font-size: small">So sign up now. Send me a note on twitter (@jamestarala or @isaudit) if you have any questions and I can’t want to meet you in class soon!</span></p>
]]></content:encoded>
			<wfw:commentRss>http://enclavesecurity.com/blogs/blog/2010/02/17/sans-cisa-exam-review-course-discount/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
