Archive for the ‘Bkis’ category

The U.S. Senate Judiciary Committee approves three Democrat-proposed data breach bills

September 26th, 2011
Sen. Patrick Leahy (D-VT)

Sen. Patrick Leahy's bill wins approval

Breach notification and data security are now closer to reality, thanks to the three bills three bills, proposed by Chairman Leahy(D-VT), Senator Blumenthal (D-CT), and Senator Feinstein (D-NH).

The Senate Judiciary Committee approved the bill on Sept 22. The committee’s 10 Democrats voted in favor and its eight Republicans voted against it. Leahy was disappointed that no Republican supported the measures.

About the three bills

As per the three bills, businesses are required to develop data privacy and security plans and set a federal standard for notifying individuals of breaches of sensitive personally identifiable information (SPII).

The Leahy bill

This bill is also known as the Personal Data Privacy and Security Act of 2011,. It is a cyber-security and online-privacy measure introduced to deal with threats from hackers and malicious software.

Three important points about Senator Leahy’s bill:

a.  ‘Data minimization’ provision, requiring businesses to establish a plan to minimize the amount of SPII the business retains and to delete SPII that is no longer needed to fulfil a (unspecified) business purpose or legal obligation.

b. Previous iterations of Leahy’s bill had several sections on government access to commercial data. These have now been stricken off.

c. An important addition during markup was a provision designed to ensure that the CFAA is not used against people who merely violate website terms of service

Is this time any different?

Cyber security bills have been introduced before but not much was done about them. Data breach cases are growing at an exponential speed and hopefully this time is different.

Senator Chuck Grassley and the EFF concerned about the new bills

Here is what Senator Grassley had to say “Americans want and need the Congress to work with private businesses to create jobs,” “However, under this bill, we may end up with more burdensome regulations, small businesses forced into bankruptcy, jobs lost, and consumers still going unprotected because the over-notifications will be ignored.”

EFF and a group of civil liberties organizations and scholars have requested the committee to ensure the CFAA doesn’t punish ordinary computer users who happen to breach terms of use.

Discrepancies in the bill

According to the current bill, government employees who violate employment agreements remain vulnerable to contract-based prosecutions under the CFAA. All computer users should be protected against such charges irrespective of their work place.

Alertsec strengthens security

Alertsec has created a web based encryption service that radically simplifies deployment and management of PC encryption by using industry leading Check Point Full Disk Encryption (former Pointsec) software.

Organisations, especially corporate giants, have to have an information security policy in place that proves they have taken necessary steps and measures to safeguard the information they gathered. If these policies are not adhered to, the regulators may prosecute.

Alertsec Xpress is used by organizations that have recognized the need to protect their information. Customers range from single-user sole traders and consultants to multinational companies with a large number of offices around the globe. Over 4 million users worldwide use Alertsec Xpress’s Check Point Full Disk Encryption.

Enhanced by Zemanta

New Worm Hitting Skype & Yahoo Messenger Users

May 8th, 2010

A new backdoor program is affecting windows machines which are using Yahoo messenger and Skype clients on the desktop. Apparently, the malware arrives via instant message through Yahoo or Skype with various types of messages. In a blog-post written on the Bkis Blog, the link looks like a jpeg/ image file link. When the user clicks on the web-page link he is taken to a website that has an interface very similar to rapidshare.com (a freel file-sharing service). Users can download the zip file from the website and when they extract it, they are lured to a .com executable file instead.

Examples of such messages are: “Does my new hair style look good? bad? perfect?” or “My printer is about to be thrown through a window if this pic won’t come out right. You see anything wrong with it?”

Folks at Bkis did analysis of the form and found it to be W32.Skyhoo.Worm. The properties of the worm include:

  • Automatically exits if the victim’s computer is not installed with Skype or Yahoo! Messenger.
  • Automatically sends messages with different contents containing malicious URLs to user names in Skype/Yahoo! Messenger friend list of the user
  • Automatically injects malicious link in to Word, Excel files or email that being composed.
  • Connects to IRC server to receive commands from hacker
  • Blocks operations of antivirus software
  • Anti virtual machine and sandbox
  • Uses rootkit technique to hide its files and processes
  • Prevents users from accessing more than 700 websites of security or antivirus
  • Automatically copies itself along with file Autorun.inf into USB drives to spread

What the worm does?

According to BKIS, “The malware sends messages with varying content and malicious links to contacts in the victim’s IM list and automatically injects a malicious link in e-mail messages and Word or Excel files that the user is composing”.

The worm also connects to an IRC server to receive remote commands, blocks antivirus software, uses a rootkit technique to hide its files and processes and automatically copies itself onto USB drives to spread, according to Bkis.

Secure your organization with Alertsec

Alertsec Xpress is used in all organisations that have recognized the need to protect their information. Customers range from single-user sole traders and consultants to large multinational companies with offices around the globe. By using industry leading Check Point Full Disk Encryption (former Pointsec) software, Alertsec has created a web based encryption service that radically simplifies deployment and management of PC encryption

For security and technology observations, consider following us on Twitter.

Reblog this post [with Zemanta]