Bollinger Mill and Bridge - Cape Girardeau

MOREnet Security News Review -- April 21 - 25, 2014

Friday, April 25, 2014

M3 CALL FOR PRESENTATIONS IS OPEN!

You still have a few more days to submit your presentation proposal for MOREnet’s Annual Conference that will be held October 27-30 at the Holiday Inn Executive Center in Columbia, MO. It’s a great opportunity to share your expertise and experiences with others.
http://conferences.more.net/content/call-presentations-now-open-2014-morenet-annual-conference
 

WEEKLY THREAT RESOURCE SITE

Downdetector -- Downdetector offers a realtime overview of status information and outages for all kinds of services. They track services that users consider vital to their everyday lives, including (but not limited to) internet providers, mobile providers, airlines, public transport and online services. http://downdetector.com/
 

KNOW YOUR ENEMY – THREAT ID OF THE WEEK

Spyware – How much do you know about Spyware – what it is and what it does? There are different types of spyware  -- i.e. system monitors, Trojans, tracking cookies -- but they all have a common purpose…. Tracking user activity. Check out the following links for more information.
 
http://en.wikipedia.org/wiki/Spyware
What is spyware?
Spyware Warrior
Top 10 Spyware Threats
 

TOP HEADLINES THIS WEEK

SANS OUCH! Special Edition – Heartbleed – Why Do I Care?
Android Heartbleed Alert: 150 Million Apps Still Vulnerable
P2P Zeus Performs Critical Update
How to enable the “Kill Switch” on your iPhone or iPad, right now!
Are you the Lone Ranger in your company?
GAGGLE SPEAKS Blog – Words Not to Live By
Iowa State University servers breached, made to mine Bitcoins
DDoS Attacks Prove Costly, Could Top 800 Gbps in 2015: Research
Parents win against cloud storage of US students’ private information
Cisco kicks off security kit/software/cloud combo
 

VULNERABILITIES AND PATCHES

Vulnerability Summary for the Week of April 14, 2014
Millions Feedly users vulnerable to Javascript Injection attack
Apple pushes out critical security fixes for OS X, iOS and Apple TV
Apache Struts Zero-Day Exploit Mitigation
Linux 2.6 Security Update
 

SECURITY TOOLBOX

Using Nmap to Detect Heartbleed
WiFi Hotspot Scanner
NINJA PingU v1.0 Released
Shodan Plugin for Chrome
E-Policy Essentials for Schools
LastPass Heartbleed checker
BlackArch Linux v2014.04.21 Released
Acunetix Web Vulnerability Scanner Version 9 Build 20140206 Released
 

FEATURED SERVICE

SSL Certificates -- MOREnet offers SSL Certificates to members for encrypted web sites, encrypted e-mail service, encrypted file transfer, and Adobe document signing. Recommended for existing encrypted services, an SSL (Secure Sockets Layer) Certificate digitally identifies the services to clients that connect to your servers. This will allow members to increase security of transmitted data and information at a minimal additional expense, as well as digitally certify documents. Check out the following link for additional information. http://www.more.net/services/ssl-certificates
 

UPCOMING TRAINING AND EVENTS

  1. File Sharing 101 – Wednesday, May 7, 2014 – Online Webinar – You just received a notification that someone on your network is sharing Copyrighted Material.  Now what?  While P2P file sharing technology is completely legal, many of the files shared through P2P are copyrighted and therefore could put your organization at risk of being involved in a lawsuit.  In the Webinar we’re going to explore the different types of file-sharing applications, how they work, and if there’s anything you can do to control them.  Click here to register for this event.
  2. Security Roadshow! – MOREnet Security is excited to hit the road again this summer to bring the 2014 Security Roadshow to a location near you.  Since we’re making the rounds in June this year, we decided to take a slightly different approach and are going to focus on different aspects of the current threat landscape – from a MOREnet member’s perspective – and what you can do to better protect/secure your organization.  We also hope you’ll take the opportunity during each session to share best practices and brainstorm solutions with MOREnet members in your part of the state.   

Roadshow Dates and Locations:
Tuesday June 3, 2014
Houston R-1 School District
Vocational Building
905 Hill Street
Houston, MO 65483
Click this link to register!
 
Wednesday June 4, 2014
Wentzville R-IV School District
719 W. Pearce Blvd
Wentzville, MO 63385
Click this link to register!
 
Tuesday June 10, 2014
Moberly Area Community College
Moberly Campus – Main Building Blue Room
101 College Ave
Moberly, MO 65270
Click this link to register!
 
Wednesday June 11, 2014
Mid-Continent Public Library
Woodneath Library Center
8900 NE Filntlock Road
Kansas City, MO 64157
Phone: 816.883.4900
Click this link to register!
 
Thursday June 12, 2014
Online Webinar
Click this link to register!
 
Do you know of any upcoming security-related training events?  Please send them to security@more.net for inclusion in this newsletter.
 

SECURITY AWARENESS TIP OF THE WEEK

Would you be lost if your smartphone and the data you store on it were lost or stolen? What steps do you take to protect it? Check out the following link for some tips and tools to help you keep it secure.
 
How to keep your smartphone (and its data) secure