Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Wednesday, 3 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Daily News Digest – 6th January 2013

by The Gurus
January 7, 2014
in Opinions & Analysis
Share on FacebookShare on Twitter

Returning to the in the New Year is often an unusual time; your inbox is either stuffed full of alerts that are days out of date, or it is empty waiting for you to take action to start.
 
In my case, I returned to some pretty major stories surrounding the leak of 4.6 million user details from Snapchat. That company took its time to respond to the criticism, and the problems were not helped by further reports that the flaw was reported to them four months previous to the leak occurring.
 
The company announced  plans to release an update and also hired a lobbyist to lobby on issues “related to the company’s operation and practices”. What has been the major problem for Snapchat is an apparent lack of an apology by the company for what happened, and a seeming finger of blame being pointed at the hackers, rather than at flaws in its own software.
 
Elsewhere, the big “hacking” news related to two of the internet’s best known social brands. Skype had its Twitter account taken over the Syrian Electronic Army, who used it to post anti-Government and anti-Microsoft comments, but control was soon returned to the owners who apologised on its Twitter page and confirmed that “no user information was compromised” and that it was “sorry for the inconvenience”. Always pays to be honest and apologise so users regain trust and move on, take note Snapchat.
 
The third and other major “hacking” story was an unfortunate one for Yahoo , as it was simply the victim of using an advertising platform which was compromised. However research by Fox-IT found that, with a typical infection rate of nine per cent, this would result in around 7,000 infections every hour. It was unclear how long the website’s advertising frames that were redirecting users to malware-laden domains were live for, but Chris Mannon from Zscaler’s ThreatLabZ said that it began at 11.17pm on January 1st, and lasted all the way through until Friday the 3rd when it was caught.
 
“We track the last transaction serving up malware from ads.yahoo.com/* at approximately Fri Jan 03 02:16:48,” he said.
 
“In the time that this threat was active, an approximate total of 21,000 transactions occurred. This speaks to the effectiveness of malvertising campaigns. A single site compromise yields only victim’s who frequent that site; while an ad server compromise not only affects that site, but also all sites which use advertisements from the site. Malware writers will continue to find methods to cast the largest possible net to rope in more victims to their dubious activities.”
 
As Mannon said, compromising one platform which serves multiple websites is a much more effective method of ensnaring users and, as proved in previous cases, even the biggest websites can fall to this method.
 
The other news that has captured the industry’s attention has been around two major acquisitions. Firstly, and the best reported, was FireEye’s acquisition of Mandiant to create an all-encompa
ssing malware detection, virtual exploitation and remediation service. For $1 billion, FireEye will see this not only as a method of gaining one of the most talked about companies from 2013, but as a way to get into the burgeoning incident response sector.
 
Not so well reported is the acquisition of Morta Security by Palo Alto Networks, possibly because the former has not been so well known so far. Morta Security is a two-year-old Silicon Valley security start-up run by former employees of the National Security Agency and the United States Air Force, and tackle “advanced persistent threats”.
 
Perhaps 2014 will be the year that more security vendors will seek to be the one stop shop for users, as threats get worse or remain the same. The one thing about security is that it is always unpredictable.

Tags: hackingResponse
ShareTweet
Previous Post

McAfee to be renamed Intel Security

Next Post

Free mobile apps reveal personal details

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol