US Senator takes a swing at the NSA

If it emerges unscathed from the chamber, it could mean an end to bulk metadata collection, an end to the secrecy the government’s been operating under, and reform of the USA Patriot Act that’s been used to grant it vast surveillance rights.

3 security mistakes small companies make and how to avoid them

Dedicated IT staff are a luxury most very small businesses do without but those organisations still need to find a way to secure their computers against cyber ciminals who aren’t looking to cut them a break just because they’re small.

SSCC 158 – What do you mean, “Don’t knit your own remote authentication?” [PODCAST]

Here’s this week’s Chet Chat security podcast for your listening pleasure. Chester Wisniewski and Paul Ducklin of Sophos dissect the week’s security news to see what we can learn from other people’s mistakes…

Hacker turns ATM into ‘Doom’ arcade game

Its screen now eschews balances and transfers in favor of the familiar sight of a hand wrapped around a gun, going around dark corners and blasting stuff. Where did scrap metal hacker “Aussie50” pick this thing up? Do we have to worry about threats to our bank balances? And is he going to rig it with a coin mechanism so we can all play?

One hoax press release, one $300 million hole in mining company

The fake press release was pretty convincing: it was sent from a domain that riffed on the ANZ Bank name, used the bank’s logo, and included the name of a PR person, along with his (NOT!) phone number. It’s yet another example of how easy it is to scam people online.