A Little Sunshine

March 9, 2016

eero: A Mesh WiFi Router Built for Security

This post was originally published on this site User-friendly and secure. Hardly anyone would pick either word to describe the vast majority of wireless routers in use today. So naturally I was intrigued a year ago when I had the chance to pre-order a eero, a new WiFi system billed as easy-to-use, designed with security in mind, and able to dramatically extend the range of a wireless network without compromising speed. Here’s a brief review of the eero system I received and installed a week ago. Three eero devices designed to create an extended range “mesh” wireless network without compromising […]
March 11, 2016

Hackers Target Anti-DDoS Firm Staminus

This post was originally published on this site Staminus Communications Inc., a California-based Internet hosting provider that specializes in protecting customers from massive “distributed denial of service” (DDoS) attacks aimed at knocking sites offline, has itself apparently been massively hacked. Staminus’s entire network was down for more than 20 hours until Thursday evening, leaving customers to vent their rage on the company’s Facebook and Twitter pages. In the midst of the outage, someone posted online download links for what appear to be Staminus’s customer credentials, support tickets, credit card numbers and other sensitive data. The e-zine posted online Thursday following an outage […]
March 14, 2016

From Stolen Wallet to ID Theft, Wrongful Arrest

This post was originally published on this site It’s remarkable how quickly a stolen purse or wallet can morph into full-blow identity theft, and possibly even result in the victim’s wrongful arrest. All of the above was visited recently on a fellow infosec professional whose admitted lapse in physical security lead to a mistaken early morning arrest in front of his kids. The guy police say stole Miller’s wallet and got him wrongfully arrested was himself apprehended earlier this month. On the morning of Feb. 20, Lance Miller was arrested in front of his two children by local sheriffs in Golden, […]
March 17, 2016

Spammers Abusing Trust in US .Gov Domains

This post was originally published on this site Spammers are abusing ill-configured U.S. dot-gov domains and link shorteners to promote spammy sites that are hidden behind short links ending in”usa.gov”. Spam purveyors are taking advantage of so-called “open redirects” on several U.S. state Web sites to hide the true destination to which users will be taken if they click the link.  Open redirects are potentially dangerous because they let spammers abuse the reputation of the site hosting the redirect to get users to visit malicious or spammy sites without realizing it. For example, South Dakota has an open redirect: http://dss.sd.gov/scripts/programredirect.asp?url= …which spammers are abusing […]