30 May 2013

Obama’s cyber order mirrors India’s net security framework

....India's top security brass has claimed that the Obama administration came up with an executive order that resembles India's cyber security initiatives after it had failed to get the Cyber Security Bill approved in the US Senate....

...A document issued by security brass of the country, which was reviewed by ET, cites at least 12 instances where the US order mirrors India's cyber security framework that was drafted in 2011. These include setting out a cyber security policy, defining critical infrastructure, information sharing between departments and protection of civil liberties....

.....However, Obama's order is silent on identifying enemy infrastructure. ET reported in December of 2011 about India's cyber security framework, which includes mapping of cyber systems of other countries, including their internet gateways, routers, IT system layouts, and web routing patterns.... 
Click here to read more ....

27 May 2013

Attackers use Skype, other IM apps to spread Liftoh trojan

....Users receiving shortened URLs in Skype instant messages, or similar IM platforms, should be wary of a new trojan, called Liftoh....

.....So far, it has primarily infected users in Latin America, said Rodrigo Calvo, a researcher at Symantec.......

......The malicious URLs have been clicked on more than 170,000 times, according to Symantec.....

Click here to read more...

Government wants more Indian software for better cyber security

..The country's top security agencies are not happy that they have to rely on foreign-made security software from the likes of Symantec and McAfee to protect India's critical information technology infrastructure.....

........According to the minutes of the meeting reviewed by ET, officials raised concerns that the currently used security software are not foolproof and can leave critical information vulnerable to attackers...

.......The push for Indian-made security software comes at a time when there is a rise in cyber attacks by renegade and state-sponsored groups looking to gain access to government corporate networks........

...."The intent is good, but the government needs to understand that developing a security product requires a lot of time and R&D-related expenses," said Sanjay Dhawan, technology leader at the Indian arm of PricewaterhouseCoopers. 

Click here to read more....

24 May 2013

Govt plans cyber security coordinator

Govt plans cyber security coordinator:
"Prime Minister Manmohan Singh on Thursday described outer space and cyber space as two emerging security challenges for India. "

To combat such threats, the government will soon create a national cyber security office for a coordinated response. The decision is aimed at implementing a national architecture on cyber security.


... China has made rapid progress in non-conventional warfare.  The People’s Liberation Army maintains a brigade of hackers, which targets websites around the world, an Army official said.

In 2007, China also demonstrated its capability to destroy satellites in the orbit, triggering shock wave around the world.

The prime minister gave clear indications of the government’s seriousness on how to deal with these threats. ....


Click here to read more ....

Norwegian company names Indian firm for global cyber offensive? - Times Of India

A Norwegian cyber security firm has alleged that a sophisticated cyber attack infrastructure appears to originate from India, conducted by private actors with no evidence of state-sponsorship. Norman Shark, Norwegian firm, has also named an Indian company that is known to work with Indian military and intelligence as one of the possible suspects behind the attacks.

The Indian company, Appin Security Group, which figures in the report, has rubbished the claims, saying it was "totally false and very imaginative". The company pointed out that the report itself mentions "we are not implicating or suggesting inappropriate activity by Appin. ..

... A senior government official said that one Indian intelligence agency had filed a report with the government a few months ago accusing Appin of wrong doings and probably compromising details of security vulnerability of one of its clients. "It is incorrect that Appin had placed details on any server which was accessible to people or in any manner it could be compromised. Appin always follows industry standard protocols for protecting data," Appin told TOI. ..

.. The Norman Shark report, titled "Operation Hangover", said the Indian network seems to have targeted victims in over a dozen countries. "Specific targets include government, military and business organizations. ....


Click here to read more ....

17 May 2013

Now you can be a freelance cyber cop - Times Of India


The Kerala police are mooting a corps of freelance cyber personnel to crack complex online crimes with a view to bridging acute shortage of talent in uniform...


The police will allow aspirants to express interest through its FB page, Netizen Police. Or mail at spintsec@gmail.com or a text to 9497996927.

"A panel will analyse each application and do a background check. Only those who clear the parameters will be allowed to serve us. There won't be any remuneration. They can work on their personal computer," Jayanath said.

..."Conditions for becoming honorary cops must be stringent but attractive enough for freelancers,"


Click here to read more ....

16 May 2013

Indian computer authorities to investigate what led to $45 million ATM heist

Pune, India-based ElectraCard Services and enStage, a company with operations in Bangalore and Cupertino, Calif., were infiltrated by hackers who compromised prepaid debit cards, allowing them to steal $45 million from ATMs around the world, according to sources speaking to news service Reuters.

On Tuesday, Aabhas Pandya, a spokesperson for enStage, declined to confirm whether the company was struck, but said via email to SCMagazine.com that enStage “is in the midst of preparing a media statement” on the matter. ElectraCard did not immediately respond for comment.

Over the weekend, Gulshan Rai, director general of the Indian CERT, told Reuters that it was investigating “the technical aspect” of the attacks.

Read more: Indian computer authorities to investigate what led to $45 million ATM heist - SC Magazine