<?xml version="1.0" encoding="UTF-8"?><!-- generator="WordPress/2.5.1" -->
<rss version="0.92">
<channel>
	<title>Real Information Security</title>
	<link>http://www.realinformationsecurity.com</link>
	<description>Information Security &#124; Security Management &#124; Security Awareness</description>
	<lastBuildDate>Wed, 08 Aug 2007 09:01:37 +0000</lastBuildDate>
	<docs>http://backend.userland.com/rss092</docs>
	<language>en</language>
	
	<item>
		<title>VeriSign laptop theft</title>
		<description><![CDATA[  A laptop containing the personal information of VeriSign&#8217;s current and former employees was stolen from an employee&#8217;s car last month, the company confirmed Tuesday.
In an e-mailed statement, VeriSign, a digital infrastructure vendor that manages Internet domain names such as .com and provides security services, said it was taking the recent laptop theft &#8220;very seriously&#8221; and [...] ]]></description>
		<link>http://www.realinformationsecurity.com/news/verisign-laptop-theft.html</link>
			</item>
	<item>
		<title>Trusted Phishing</title>
		<description><![CDATA[  I have seen many sites using a logo, provided by the security certificate vendor, be it VeriSign, Thawte or any for that matter. Most of the people trust this logo as they can check the validity of the site in real-time. Now comes the real question. Are you really getting the authenticity of the website? It is [...] ]]></description>
		<link>http://www.realinformationsecurity.com/phishing/trusted-phishing.html</link>
			</item>
	<item>
		<title>VVestern Union Phishing</title>
		<description><![CDATA[  An interesting phishing email on western union has been started propogating: The contents of the phishing email is as follows:
_______________________________________________
We are contacting you regarding your Western Union account. Due to inactivity, your account has been deactivated from using our services.
Therefore, we invite you to update your Western Union profile in order to regain full [...] ]]></description>
		<link>http://www.realinformationsecurity.com/phishing/vvestern-union-phishing.html</link>
			</item>
	<item>
		<title>Phishing - attacks and countermeasures</title>
		<description><![CDATA[  What is Phishing?
Phishing is the art of stealing the idnetity of an individual and obtaining confidential information by the attacker. Surveys and studies reveals that the direct financial loss due to phishing attacks accounted for 1.2 billion in 2003 and is increasing day-by-day. The indirect loss is many times higher than the direct loss.
The [...] ]]></description>
		<link>http://www.realinformationsecurity.com/security-management/phishing-attacks-and-countermeasures.html</link>
			</item>
	<item>
		<title>First bank in Bahrain to get ISO 27001 certified for information security</title>
		<description><![CDATA[  Bahraini Saudi Bank, one of the leading banks in Bahrain, has implemented a robust information security management system, upgrading its processes to ISO 27001 standards
ISO 27001 is the standard for organizations worldwide to manage IT design and control risk for Information Security Policies and assets. BSB utilized the services of the certification body, BSI [...] ]]></description>
		<link>http://www.realinformationsecurity.com/news/first-bank-in-bahrain-to-get-iso-27001-certified-for-information-security.html</link>
			</item>
	<item>
		<title>IT Security Engineer at International Oil Company at Abu Dhabi</title>
		<description><![CDATA[  Profile

Bachelors degree in Computer Science or related field
Minimum of 10 years in Network and system administration and Data management tasks (with focus on Access control and security projects)
Minimum of 5 years in the implementation of IT security projects and establishment of Information Systems Management Security 
Familiarity with ISO27001 standards and certification process.
Establish a Security Policy [...] ]]></description>
		<link>http://www.realinformationsecurity.com/jobs/it-security-engineer-at-international-oil-company-at-abu-dhabi.html</link>
			</item>
	<item>
		<title>RBI seeks data from banks on frauds</title>
		<description><![CDATA[  The Reserve Bank of India (RBI) has instructed banks to furnish data on frauds, thefts and burglaries on a quarterly basis to the regional offices of the Urban Banks Department.
Cases of online fraud and identity theft (also known broadly as phishing) come under the purview of this notification. The premier bank’s recent directive is [...] ]]></description>
		<link>http://www.realinformationsecurity.com/general/rbi-seeks-data-from-banks-on-frauds.html</link>
			</item>
	<item>
		<title>Preventing Theft In The Corporate World</title>
		<description><![CDATA[  Anyone who steals the identity of a user becomes that user and has access to  their most sensitive systems and data. If just one user’s identity is  compromised, corporate systems are vulnerable. This is the threat posed by  corporate identity theft.
Identity theft takes many forms – exploiting  weak passwords, keystroke [...] ]]></description>
		<link>http://www.realinformationsecurity.com/general/preventing-theft-in-the-corporate-world.html</link>
			</item>
	<item>
		<title>Drive-By Pharming</title>
		<description><![CDATA[  Sid Stamm, Zulfikar Ramzan, and Markus Jakobsson have identified a clever, and potentially devastating, attack against home/wireless routers.
How does the attack works?

Attacker creates a webpage with containing the malicious Javascript code.
Victim visits the page
The code makes a login attempts into the users home broadband router and then attempts to change its DNS server settings to [...] ]]></description>
		<link>http://www.realinformationsecurity.com/phishing/drive-by-pharming.html</link>
			</item>
	<item>
		<title>Default Password list</title>
		<description><![CDATA[  http://www.phenoelit.de/dpl/dpl.html
 ]]></description>
		<link>http://www.realinformationsecurity.com/access-control/default-password-list-2.html</link>
			</item>
</channel>
</rss>
