<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>IconixTruemark&#039;s Blog</title>
	<atom:link href="http://iconixtruemark.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://iconixtruemark.wordpress.com</link>
	<description>Know who.  No doubt.  eMail ID marks real email. spear phishing protection brand sp guard</description>
	<lastBuildDate>Thu, 26 Jan 2012 20:39:46 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='iconixtruemark.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://1.gravatar.com/blavatar/3ca47d75663b46c3c316b4f034bb5b11?s=96&#038;d=http%3A%2F%2Fs2.wp.com%2Fi%2Fbuttonw-com.png</url>
		<title>IconixTruemark&#039;s Blog</title>
		<link>http://iconixtruemark.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://iconixtruemark.wordpress.com/osd.xml" title="IconixTruemark&#039;s Blog" />
	<atom:link rel='hub' href='http://iconixtruemark.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Hackers For Hire</title>
		<link>http://iconixtruemark.wordpress.com/2012/01/26/hackers-for-hire/</link>
		<comments>http://iconixtruemark.wordpress.com/2012/01/26/hackers-for-hire/#comments</comments>
		<pubDate>Thu, 26 Jan 2012 20:39:38 +0000</pubDate>
		<dc:creator>iconixtruemark</dc:creator>
				<category><![CDATA[spear phishing]]></category>

		<guid isPermaLink="false">http://iconixtruemark.wordpress.com/?p=1386</guid>
		<description><![CDATA[When we think of hacking passwords, the image that comes to mind is that of technically savvy geniuses who use super high-tech tools, fancy computers, and whiz-bang software to crack the password.  Like Tim and Abby from the popular CBS television show NCIS: How do real hackers crack passwords?  In &#8220;Hackers for Hire Are Easy to [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1386&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>When we think of hacking passwords, the image that comes to mind is that of technically savvy geniuses who use super high-tech tools, fancy computers, and whiz-bang software to crack the password.  Like Tim and Abby from the popular CBS television show <a title="NCIS on CBS" href="http://www.cbs.com/shows/ncis/" target="_blank">NCIS</a>:</p>
<p><img class="aligncenter size-full wp-image-1387" title="abbytim" src="http://iconixtruemark.files.wordpress.com/2012/01/abbytim.jpg?w=450" alt=""   /></p>
<p>How do real hackers crack passwords?  In &#8220;<a title="WSJ Hacker For Hire" href="http://online.wsj.com/article/SB10001424052970203471004577145140543496380.html" target="_blank">Hackers for Hire Are Easy to Find</a>&#8220;, <em>The Wall Street Journal</em> reports:</p>
<blockquote><p>[T]he IHG  [hacking] service worked like this: It requested the target person&#8217;s email address, the names of friends or colleagues, and examples of topics that interest them. The hackers would then send an email to the target that sounded as if it came from an acquaintance, but which actually installed malicious software on the target&#8217;s computer. The software would let the hackers capture the target&#8217;s email password.</p></blockquote>
<p>Real hackers don&#8217;t use super smart technology to crack the code. They use social engineering to create highly relevant emails from apparently trusted sources &#8212; spearphishing.  Attacking systems is hard.  Attacking people is easy. That is why bad guys <a title="Defcon Hacking Conference — Target the People" href="http://iconixtruemark.wordpress.com/2011/08/11/defcon-hacking-conference-target-the-people/" target="_blank">Target the Human</a>.</p>
<p>How long does it take to hack passwords using this method? How much does it cost?  Who does this work?  <em>The Wall Street Journal</em> reports:</p>
<blockquote><p>One such site, hiretohack.net, advertises online services including being able to &#8220;crack&#8221; passwords for major email services in less than 48 hours. It says it charges a minimum of $150, depending on the email provider, the password&#8217;s complexity and the urgency of the job. The site describes itself as a group of technology students based in Europe, U.S. and Asia.</p></blockquote>
<p>Apparently there is a lot of demand for hacking-for-hire services. <a title="New York -- hacking big business" href="http://nymag.com/daily/intel/2012/01/hiring-hackers-is-super-cheap.html" target="_blank"><em>New York</em> magazine</a> reports that the IHG hackers cited by <em>The Wall Street Journal</em> made more than $200,000 in thirteen months.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/iconixtruemark.wordpress.com/1386/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/iconixtruemark.wordpress.com/1386/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/iconixtruemark.wordpress.com/1386/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/iconixtruemark.wordpress.com/1386/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/iconixtruemark.wordpress.com/1386/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/iconixtruemark.wordpress.com/1386/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/iconixtruemark.wordpress.com/1386/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/iconixtruemark.wordpress.com/1386/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/iconixtruemark.wordpress.com/1386/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/iconixtruemark.wordpress.com/1386/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/iconixtruemark.wordpress.com/1386/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/iconixtruemark.wordpress.com/1386/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/iconixtruemark.wordpress.com/1386/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/iconixtruemark.wordpress.com/1386/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1386&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://iconixtruemark.wordpress.com/2012/01/26/hackers-for-hire/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/5debedc7699338948c7eba235f788889?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">iconixtruemark</media:title>
		</media:content>

		<media:content url="http://iconixtruemark.files.wordpress.com/2012/01/abbytim.jpg" medium="image">
			<media:title type="html">abbytim</media:title>
		</media:content>
	</item>
		<item>
		<title>Zappos Hacked: Customers Beware Phishing Scams</title>
		<link>http://iconixtruemark.wordpress.com/2012/01/16/zappos-hacked-customers-beware-phishing-scams/</link>
		<comments>http://iconixtruemark.wordpress.com/2012/01/16/zappos-hacked-customers-beware-phishing-scams/#comments</comments>
		<pubDate>Mon, 16 Jan 2012 21:56:34 +0000</pubDate>
		<dc:creator>iconixtruemark</dc:creator>
				<category><![CDATA[Consumers and Email]]></category>
		<category><![CDATA[Iconix Truemark Service]]></category>
		<category><![CDATA[Phishing]]></category>

		<guid isPermaLink="false">http://iconixtruemark.wordpress.com/?p=1378</guid>
		<description><![CDATA[It is being widely reported in the press that an estimated 24 million Zappos user accounts have been compromised. Mashable reports: Robert Siciliano, a McAfee consultant and identity theft expert, says he expects whoever hacked Zappos’s site will now sell the data to people who run phishing scams. “They’ll sell it 10,000 accounts at a [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1378&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>It is being widely reported in the press that an estimated 24 million Zappos user accounts have been compromised.</p>
<p><a title="Mashable reports on Zappos" href="http://mashable.com/2012/01/16/zappos-phishing-scams/" target="_blank">Mashable reports</a>:</p>
<blockquote><p>Robert Siciliano, a McAfee consultant and identity theft expert, says he expects whoever hacked Zappos’s site will now sell the data to people who run phishing scams. “They’ll sell it 10,000 accounts at a time, short money, like $100,” he says. While hackers don’t have complete credit card numbers, Siciliano says there’s enough information for a hacker to approach affected users as either Zappos or the credit card company and then ask them for more data — the classic phishing scam — which might be supplemented with a voicemail “vishing” attack as well.</p></blockquote>
<p>The bad guys now have very useful information with which to  craft very convincing fake email.  What they cannot do is use the real Zappos&#8217;s email servers.  You can easily identify real email really coming from Zappos by using a tool to identify real email.  You need <em>eMail ID</em> from Iconix.</p>
<p><img title="eMail ID inbox" src="http://iconixtruemark.files.wordpress.com/2011/04/email-id-inbox.png?w=312&#038;h=258&#038;h=258" alt="" width="312" height="258" /></p>
<p>Know Who.  No Doubt.  Use <em>eMail ID</em>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/iconixtruemark.wordpress.com/1378/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/iconixtruemark.wordpress.com/1378/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/iconixtruemark.wordpress.com/1378/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/iconixtruemark.wordpress.com/1378/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/iconixtruemark.wordpress.com/1378/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/iconixtruemark.wordpress.com/1378/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/iconixtruemark.wordpress.com/1378/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/iconixtruemark.wordpress.com/1378/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/iconixtruemark.wordpress.com/1378/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/iconixtruemark.wordpress.com/1378/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/iconixtruemark.wordpress.com/1378/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/iconixtruemark.wordpress.com/1378/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/iconixtruemark.wordpress.com/1378/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/iconixtruemark.wordpress.com/1378/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1378&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://iconixtruemark.wordpress.com/2012/01/16/zappos-hacked-customers-beware-phishing-scams/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/5debedc7699338948c7eba235f788889?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">iconixtruemark</media:title>
		</media:content>

		<media:content url="http://iconixtruemark.files.wordpress.com/2011/04/email-id-inbox.png?w=312&#38;h=258&#38;h=258" medium="image">
			<media:title type="html">eMail ID inbox</media:title>
		</media:content>
	</item>
		<item>
		<title>U.S. Government Agencies Targeted By Malware</title>
		<link>http://iconixtruemark.wordpress.com/2012/01/16/u-s-government-agencies-targeted-by-malware/</link>
		<comments>http://iconixtruemark.wordpress.com/2012/01/16/u-s-government-agencies-targeted-by-malware/#comments</comments>
		<pubDate>Mon, 16 Jan 2012 18:04:55 +0000</pubDate>
		<dc:creator>iconixtruemark</dc:creator>
				<category><![CDATA[SP Guard]]></category>
		<category><![CDATA[spear phishing]]></category>

		<guid isPermaLink="false">http://iconixtruemark.wordpress.com/?p=1370</guid>
		<description><![CDATA[Mashable has posted a video describing the latest twist on the Sykipot targeted attack. As an added layer of IT  defense, the U.S. Government has adopted smart cards control access to data systems.  In this attack, the hackers attack the users by sending spearphishing emails that install malware which hijacks the smart cards.  Once activated, the [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1370&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a title="Mashable Hack Video" href="http://mashable.com/2012/01/13/malware-government-agencies/" target="_blank">Mashable has posted a video</a> describing the latest twist on the <a title="Targeted Attack Seeks US Drone Technology" href="http://iconixtruemark.wordpress.com/2012/01/04/targeted-attack-seeks-us-drone-technology/" target="_blank">Sykipot targeted attack</a>.</p>
<p>As an added layer of IT  defense, the U.S. Government has adopted smart cards control access to data systems.  In this attack, the hackers attack the users by sending spearphishing emails that install malware which hijacks the smart cards.  Once activated, the malware by-passes the smart card protection.</p>
<p>The technical details are reported by<a title="AlienVault Smart Card Hack" href="http://labs.alienvault.com/labs/index.php/2012/when-the-apt-owns-your-smart-cards-and-certs/" target="_blank"> AlienVault</a>.  AlienVault concludes:</p>
<blockquote><p>As defenses get better, attackers will continue to change their tactics to adapt, and as seen here, will hijack the very systems designed to provide more security, if necessary. An interesting by-product of this malware’s necessity of having the card physically present is that attackers can only leverage it for secure authentication to target systems, during times that the user them is physically present at the workstation, making unauthorized activity that much more difficult to discern from legitimate usage. Although smart cards are designed to provide a two factor system of ‘chip and pin’, again we see that true two-factor authentication is not possible without a physical component that is not accessible digitally.</p></blockquote>
<p>Employees must be empowered to defend against cyberattacks. When the cyberattacks target the human, the human must be hardened. A tool that hardens the human  is available now from Iconix. That tool is <em><a title="Iconix Announces SP Guard, Spear-Phishing Defense for the Enterprise" href="http://iconixtruemark.wordpress.com/2011/04/06/iconix-announces-sp-guard-spear-phishing-defense-for-the-enterprise/">SP Guard</a></em> from Iconix.</p>
<p><img title="ol_inbox_with_cert" src="http://iconixtruemark.files.wordpress.com/2011/04/ol_inbox_with_cert.png?w=415&#038;h=386&#038;h=386" alt="SP Guard Inbox" width="415" height="386" /></p>
<p><em>SP Guard</em> provides the recipient with three confirmations that a message is real:</p>
<ol>
<li>List View. There is an integrity indicator in the list view of the email client.</li>
<li>Message. The open message has a further indicator of authenticity.</li>
<li>Mouseover. Mousing over the authentication indicator in the message prompts the display of a certificate that further identifies the sender.</li>
</ol>
<p><a title="Iconix Adds Fraud Filtering to SP Guard to Block Spear-Phishing Attacks" href="http://iconixtruemark.wordpress.com/2011/09/27/iconix-adds-fraud-filtering-to-sp-guard-to-block-spear-phishing-attacks/" target="_blank"><em>SP Guard</em> now offers a fraud filtering enhancement</a>.  This additional protection is becoming increasingly important given the latest generation of highly targeted spear-phishing emails which are so well crafted that users cannot tell real from fake.</p>
<p><em>SP Guard</em> is available now from Iconix.  For further information, contact us at 408-727-6342, ext 3 or use our <a href="http://www.iconix.com/corp/info.php" target="_blank">online form</a>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/iconixtruemark.wordpress.com/1370/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/iconixtruemark.wordpress.com/1370/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/iconixtruemark.wordpress.com/1370/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/iconixtruemark.wordpress.com/1370/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/iconixtruemark.wordpress.com/1370/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/iconixtruemark.wordpress.com/1370/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/iconixtruemark.wordpress.com/1370/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/iconixtruemark.wordpress.com/1370/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/iconixtruemark.wordpress.com/1370/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/iconixtruemark.wordpress.com/1370/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/iconixtruemark.wordpress.com/1370/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/iconixtruemark.wordpress.com/1370/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/iconixtruemark.wordpress.com/1370/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/iconixtruemark.wordpress.com/1370/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1370&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://iconixtruemark.wordpress.com/2012/01/16/u-s-government-agencies-targeted-by-malware/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/5debedc7699338948c7eba235f788889?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">iconixtruemark</media:title>
		</media:content>

		<media:content url="http://iconixtruemark.files.wordpress.com/2011/04/ol_inbox_with_cert.png?w=415&#38;h=386&#38;h=386" medium="image">
			<media:title type="html">ol_inbox_with_cert</media:title>
		</media:content>
	</item>
		<item>
		<title>IRS Email Warns Of Phishing &#8212; Is the Warning Phishing?</title>
		<link>http://iconixtruemark.wordpress.com/2012/01/12/irs-email-warns-of-phishing-is-the-warning-phishing/</link>
		<comments>http://iconixtruemark.wordpress.com/2012/01/12/irs-email-warns-of-phishing-is-the-warning-phishing/#comments</comments>
		<pubDate>Thu, 12 Jan 2012 21:25:36 +0000</pubDate>
		<dc:creator>iconixtruemark</dc:creator>
				<category><![CDATA[Consumers and Email]]></category>
		<category><![CDATA[Iconix Truemark Service]]></category>
		<category><![CDATA[Phishing]]></category>
		<category><![CDATA[SP Guard]]></category>
		<category><![CDATA[spear phishing]]></category>

		<guid isPermaLink="false">http://iconixtruemark.wordpress.com/?p=1355</guid>
		<description><![CDATA[Today the IRS issued its Tax Tip 2012-08 warning about phishing scams aimed at US taxpayers.   Subscribers to IRS information services received an email about the warning. This is a screen shot of the email: Is this a real IRS email?  Did you notice these odd things about it? Why would I open such [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1355&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Today the IRS issued its <a title="Tax Tip 2012-08" href="http://www.irs.gov/newsroom/article/0,,id=252313,00.html" target="_blank">Tax Tip 2012-08</a> warning about phishing scams aimed at US taxpayers.   Subscribers to IRS information services received an email about the warning.</p>
<p>This is a screen shot of the email:</p>
<p><img class="alignnone size-full wp-image-1356" title="irs 1-12-12 before" src="http://iconixtruemark.files.wordpress.com/2012/01/irs-1-12-12-before.png?w=450&#038;h=399" alt="" width="450" height="399" /></p>
<p>Is this a real IRS email?  Did you notice these odd things about it?</p>
<p><img class="alignnone size-full wp-image-1357" title="irs 1-12-12 before annotated" src="http://iconixtruemark.files.wordpress.com/2012/01/irs-1-12-12-before-annotated.png?w=450&#038;h=399" alt="" width="450" height="399" /></p>
<p>Why would I open such an obviously fake email?  Because it isn&#8217;t fake &#8212; it is real.  I know it is real because I use the products of Iconix.  This is what my display looks like with <em>SP Guard</em> turned on:</p>
<p><img class="alignnone size-full wp-image-1362" title="irs 1-12-12 after" src="http://iconixtruemark.files.wordpress.com/2012/01/irs-1-12-12-after2.png?w=450&#038;h=399" alt="" width="450" height="399" /></p>
<p>The IRS really made spelling errors and the IRS really sends emails from the domain govdelivery.com.</p>
<p>Know Who.  No Doubt.   Use <em>Email ID</em> and <em>SP Guard</em>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/iconixtruemark.wordpress.com/1355/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/iconixtruemark.wordpress.com/1355/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/iconixtruemark.wordpress.com/1355/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/iconixtruemark.wordpress.com/1355/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/iconixtruemark.wordpress.com/1355/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/iconixtruemark.wordpress.com/1355/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/iconixtruemark.wordpress.com/1355/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/iconixtruemark.wordpress.com/1355/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/iconixtruemark.wordpress.com/1355/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/iconixtruemark.wordpress.com/1355/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/iconixtruemark.wordpress.com/1355/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/iconixtruemark.wordpress.com/1355/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/iconixtruemark.wordpress.com/1355/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/iconixtruemark.wordpress.com/1355/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1355&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://iconixtruemark.wordpress.com/2012/01/12/irs-email-warns-of-phishing-is-the-warning-phishing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/5debedc7699338948c7eba235f788889?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">iconixtruemark</media:title>
		</media:content>

		<media:content url="http://iconixtruemark.files.wordpress.com/2012/01/irs-1-12-12-before.png" medium="image">
			<media:title type="html">irs 1-12-12 before</media:title>
		</media:content>

		<media:content url="http://iconixtruemark.files.wordpress.com/2012/01/irs-1-12-12-before-annotated.png" medium="image">
			<media:title type="html">irs 1-12-12 before annotated</media:title>
		</media:content>

		<media:content url="http://iconixtruemark.files.wordpress.com/2012/01/irs-1-12-12-after2.png" medium="image">
			<media:title type="html">irs 1-12-12 after</media:title>
		</media:content>
	</item>
		<item>
		<title>IRS Issues Phishing Warning</title>
		<link>http://iconixtruemark.wordpress.com/2012/01/12/irs-issues-spearphishing-warning/</link>
		<comments>http://iconixtruemark.wordpress.com/2012/01/12/irs-issues-spearphishing-warning/#comments</comments>
		<pubDate>Thu, 12 Jan 2012 20:36:31 +0000</pubDate>
		<dc:creator>iconixtruemark</dc:creator>
				<category><![CDATA[Phishing]]></category>

		<guid isPermaLink="false">http://iconixtruemark.wordpress.com/?p=1349</guid>
		<description><![CDATA[Today the IRS issued Tax Tip 2012-08 warning about phishing attacks.  We reproduce it here as a public service. Don’t be Scammed by Cyber Criminals IRS TAX TIP 2012-08, January 12, 2012The Internal Revenue Service receives thousands of reports each year from taxpayers who receive suspicious emails, phone calls, faxes or notices claiming to be [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1349&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Today the IRS issued <a title="Tax Tip 2012-08" href="http://www.irs.gov/newsroom/article/0,,id=252313,00.html" target="_blank">Tax Tip 2012-08</a> warning about phishing attacks.  We reproduce it here as a public service.</p>
<table width="98%" border="0" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td>
<h2>Don’t be Scammed by Cyber Criminals</h2>
</td>
</tr>
<tr>
<td></td>
</tr>
<tr>
<td>
<table width="auto" border="0">
<tbody>
<tr>
<td>IRS TAX TIP 2012-08, January 12, 2012The Internal Revenue Service receives thousands of reports each year from taxpayers who receive suspicious emails, phone calls, faxes or notices claiming to be from the IRS. Many of these scams fraudulently use the IRS name or logo as a lure to make the communication appear more authentic and enticing. The goal of these scams – known as phishing – is to trick you into revealing your personal and financial information. The scammers can then use your information – like your Social Security number, bank account or credit card numbers – to commit identity theft or steal your money.</p>
<p>Here are five things the IRS wants you to know about phishing scams.</p>
<ol>
<li>The IRS never asks for detailed personal and financial information like PIN numbers, passwords or similar secret access information for credit card, bank or other financial accounts.</li>
<li>The IRS does not initiate contact with taxpayers by email to request personal or financial information. If you receive an e-mail from someone claiming to be the IRS or directing you to an IRS site:• Do not reply to the message.<br />
• Do not open any attachments. Attachments may contain malicious code that will infect your computer.<br />
• Do not click on any links. If you clicked on links in a suspicious e-mail or phishing website and entered confidential information, visit the IRS website and enter the search term &#8216;identity theft&#8217; for more information and resources to help.</li>
<li>The address of the official IRS website is <a href="http://www.irs.gov/">www.irs.gov</a>. Do not be confused or misled by sites claiming to be the IRS but ending in .com, .net, .org or other designations instead of .gov. If you discover a website that claims to be the IRS but you suspect it is bogus, do not provide any personal information on the suspicious site and report it to the IRS.</li>
<li>If you receive a phone call, fax or letter in the mail from an individual claiming to be from the IRS but you suspect they are not an IRS employee, contact the IRS at 1-800-829-1040 to determine if the IRS has a legitimate need to contact you. Report any bogus correspondence.  You can forward a suspicious email to <a href="mailto:phishing@irs.gov">phishing@irs.gov</a>.</li>
<li>You can help shut down these schemes and prevent others from being victimized. Details on how to report specific types of scams and what to do if you’ve been victimized are available at <a href="http://www.irs.gov/">www.irs.gov</a>. Click on &#8220;phishing&#8221; on the home page.</li>
</ol>
<p><strong>Links:</strong></p>
<ul>
<li><a href="http://www.irs.gov/privacy/article/0,,id=179820,00.html">Protect your personal information! The IRS does not initiate taxpayer communications through e-mail<br />
</a></li>
<li><a href="http://www.irs.gov/newsroom/article/0,,id=155682,00.html">Suspicious e-Mails and Identity Theft</a></li>
</ul>
<p><strong>YouTube Videos:</strong></p>
<ul>
<li><strong>Phishing Scams &#8211; <a href="http://www.irs.gov/app/scripts/exit.jsp?dest=http%3A%2F%2Fwww.youtube.com%2FIRSvideos%23p%2Fu%2F3%2FKw7f7pO3CAM">English</a></strong> |  <a href="http://www.irs.gov/app/scripts/exit.jsp?dest=http%3A%2F%2Fwww.youtube.com%2Fwatch%3Fv%3DT44r241qGjE">Spanish<strong> </strong> </a> |  <a href="http://www.irs.gov/app/scripts/exit.jsp?dest=http%3A%2F%2Fwww.youtube.com%2Fwatch%3Fv%3DDEsaoenL7sk">ASL</a></li>
</ul>
<p>&nbsp;</td>
</tr>
</tbody>
</table>
</td>
</tr>
</tbody>
</table>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/iconixtruemark.wordpress.com/1349/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/iconixtruemark.wordpress.com/1349/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/iconixtruemark.wordpress.com/1349/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/iconixtruemark.wordpress.com/1349/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/iconixtruemark.wordpress.com/1349/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/iconixtruemark.wordpress.com/1349/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/iconixtruemark.wordpress.com/1349/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/iconixtruemark.wordpress.com/1349/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/iconixtruemark.wordpress.com/1349/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/iconixtruemark.wordpress.com/1349/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/iconixtruemark.wordpress.com/1349/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/iconixtruemark.wordpress.com/1349/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/iconixtruemark.wordpress.com/1349/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/iconixtruemark.wordpress.com/1349/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1349&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://iconixtruemark.wordpress.com/2012/01/12/irs-issues-spearphishing-warning/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/5debedc7699338948c7eba235f788889?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">iconixtruemark</media:title>
		</media:content>
	</item>
		<item>
		<title>Targeted Attacks &#8211; Harden the Human Target</title>
		<link>http://iconixtruemark.wordpress.com/2012/01/11/targeted-attacks-harden-the-human-target/</link>
		<comments>http://iconixtruemark.wordpress.com/2012/01/11/targeted-attacks-harden-the-human-target/#comments</comments>
		<pubDate>Wed, 11 Jan 2012 20:17:32 +0000</pubDate>
		<dc:creator>iconixtruemark</dc:creator>
				<category><![CDATA[SP Guard]]></category>
		<category><![CDATA[spear phishing]]></category>

		<guid isPermaLink="false">http://iconixtruemark.wordpress.com/?p=1339</guid>
		<description><![CDATA[In order to compromise data networks, a point of entry is required.  An effective point of entry is the people who use the systems.   The Wall Street Journal&#8216;s recent article, You Are A Security Risk, provides a nice discussion of this topic.  Ironically, the criminals use publicity about cyber intrusions to dupe careful people [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1339&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>In order to compromise data networks, a point of entry is required.  An effective point of entry is the people who use the systems.   The <em>Wall Street Journal</em>&#8216;s recent article, <a title="You Are A Security Risk — Wall Street Journal" href="http://iconixtruemark.wordpress.com/2011/09/30/you-are-a-security-risk-wall-street-journal/" target="_blank">You Are A Security Risk</a>, provides a nice discussion of this topic.  Ironically, the criminals use publicity about cyber intrusions to dupe careful people into their trap.  For example, there is a fake security alert purporting to be from<a title="Fake CERT Warnings" href="http://www.us-cert.gov/current/#phishing_campaign_using_spoofed_us" target="_blank"> CERT</a>.  There is another current targeted attack using emails allegedly from the Stratfor’s CEO George Friedman, urging recipients to <a title="Stratfor Fake Emails" href="http://news.softpedia.com/news/Stratfor-Warns-of-Phishing-Emails-Targeting-Customers-245169.shtml" target="_blank">provide personal information</a> in response to the recent compromise of Stratfor by cyberattackers.</p>
<p>Equally frightening is how effectively the malware that is installed evades detection by security software. We saw this in the recent <a title="Spearphishers Compromise U.S Chamber of Commerce" href="http://iconixtruemark.wordpress.com/2011/12/21/spearphishers-compromise-u-s-chamber-of-commerce/" target="_blank">compromise of the U.S. Chamber of Commerce</a>, in which the FBI, and not internal security measures, alerted the Chamber to the problem. The Chamber is not alone in being unable to detect compromised systems. Kevin Mandia, CEO of Mandiant Corporation, recently <a title="Mandia Testifies Before Congress" href="http://www.fas.org/irp/congress/2011_hr/100411mandia.pdf" target="_blank">testified as follows before the U.S. Congress</a>:</p>
<blockquote><p>we routinely witness attackers circumvent conventional safeguards deployed to prevent and detect security breaches.  Virtually all of these intrusions belong to the growing subset of advanced threats that usually evade off-the-shelf technologies that American corporations rely upon – often times exclusively – for their defense.  In fact, in over 90% of the cases we have responded to, Government notification was required to alert the company that a security breach was underway.  In our last 50 incidents, 48 of the victim companies learned they were breached from the Federal Bureau of Investigation, the Department of Defense or some other third party.</p></blockquote>
<p>Employees must be empowered to defend against cyberattacks. When the cyberattacks target the human, the human must be hardened. A tool that hardens the human  is available now from Iconix. That tool is <em><a title="Iconix Announces SP Guard, Spear-Phishing Defense for the Enterprise" href="http://iconixtruemark.wordpress.com/2011/04/06/iconix-announces-sp-guard-spear-phishing-defense-for-the-enterprise/">SP Guard</a></em> from Iconix.</p>
<p><img title="ol_inbox_with_cert" src="http://iconixtruemark.files.wordpress.com/2011/04/ol_inbox_with_cert.png?w=415&#038;h=386&#038;h=386" alt="SP Guard Inbox" width="415" height="386" /></p>
<p><em>SP Guard</em> provides the recipient with three confirmations that a message is real:</p>
<ol>
<li>List View. There is an integrity indicator in the list view of the email client.</li>
<li>Message. The open message has a further indicator of authenticity.</li>
<li>Mouseover. Mousing over the authentication indicator in the message prompts the display of a certificate that further identifies the sender.</li>
</ol>
<p><a title="Iconix Adds Fraud Filtering to SP Guard to Block Spear-Phishing Attacks" href="http://iconixtruemark.wordpress.com/2011/09/27/iconix-adds-fraud-filtering-to-sp-guard-to-block-spear-phishing-attacks/" target="_blank"><em>SP Guard</em> now offers a fraud filtering enhancement</a>.  This additional protection is becoming increasingly important given the latest generation of highly targeted spear-phishing emails which are so well crafted that users cannot tell real from fake.</p>
<p><em>SP Guard</em> is available now from Iconix. For further information, contact us at  408-727-6342, ext 3 or use our <a href="http://www.iconix.com/corp/info.php" target="_blank">online form</a>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/iconixtruemark.wordpress.com/1339/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/iconixtruemark.wordpress.com/1339/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/iconixtruemark.wordpress.com/1339/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/iconixtruemark.wordpress.com/1339/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/iconixtruemark.wordpress.com/1339/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/iconixtruemark.wordpress.com/1339/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/iconixtruemark.wordpress.com/1339/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/iconixtruemark.wordpress.com/1339/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/iconixtruemark.wordpress.com/1339/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/iconixtruemark.wordpress.com/1339/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/iconixtruemark.wordpress.com/1339/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/iconixtruemark.wordpress.com/1339/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/iconixtruemark.wordpress.com/1339/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/iconixtruemark.wordpress.com/1339/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1339&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://iconixtruemark.wordpress.com/2012/01/11/targeted-attacks-harden-the-human-target/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/5debedc7699338948c7eba235f788889?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">iconixtruemark</media:title>
		</media:content>

		<media:content url="http://iconixtruemark.files.wordpress.com/2011/04/ol_inbox_with_cert.png?w=415&#38;h=386&#38;h=386" medium="image">
			<media:title type="html">ol_inbox_with_cert</media:title>
		</media:content>
	</item>
		<item>
		<title>Targeted Attack Seeks US Drone Technology</title>
		<link>http://iconixtruemark.wordpress.com/2012/01/04/targeted-attack-seeks-us-drone-technology/</link>
		<comments>http://iconixtruemark.wordpress.com/2012/01/04/targeted-attack-seeks-us-drone-technology/#comments</comments>
		<pubDate>Wed, 04 Jan 2012 18:19:04 +0000</pubDate>
		<dc:creator>iconixtruemark</dc:creator>
				<category><![CDATA[SP Guard]]></category>
		<category><![CDATA[spear phishing]]></category>

		<guid isPermaLink="false">http://iconixtruemark.wordpress.com/?p=1324</guid>
		<description><![CDATA[Nextgov is reporting that someone has been conducting a targeted attack against federal agencies and contractors. It appears that the attackers are trying to infiltrate aircraft designers’ computers in order to spy on the U.S. government&#8217;s plans for remotely piloted aircraft. Alienvault Labs has studied this attack, dubbed “Sykipot”, and reported on it in detail. Alienvault [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1324&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a title="Drone Technology Under Attack" href="http://www.nextgov.com/nextgov/ng_20120103_5731.php" target="_blank">Nextgov is reporting</a> that someone has been conducting a targeted attack against federal agencies and contractors. It appears that the attackers are trying to infiltrate aircraft designers’ computers in order to spy on the U.S. government&#8217;s plans for remotely piloted aircraft. Alienvault Labs has studied this attack, dubbed “Sykipot”, and <a title="Sykipots Details" href="http://labs.alienvault.com/labs/index.php/2011/are-the-sykipots-authors-obsessed-with-next-generation-us-drones/" target="_blank">reported on it in detail</a>. Alienvault Labs found:</p>
<blockquote><p>The modus operandi is simple, they send emails with a malicious attachment or link, sometimes using a zero-day exploit to key employees of different organizations.</p></blockquote>
<p>The attack, which has been running since at least September of 2011, uses images such as these as bait to attack the victims.</p>
<p><img class="alignnone size-full wp-image-1328" title="drone screens" src="http://iconixtruemark.files.wordpress.com/2012/01/drone-screens1.png?w=450&#038;h=514" alt="sykipot bait" width="450" height="514" /></p>
<p>After installation, the malware takes orders from the attackers’ command and control server.  The hacker can extract documents from the victims’ machines or insert phony materials.</p>
<p>Alienvault Labs observes:</p>
<blockquote><p>It’s true that the piece of malware isn’t too sophisticated, but it is related with at least six zero-day attacks that require skills and/or money. Anyway we have been seeing that “not too sophisticated malware” works, see <a title="Shady RAT" href="http://www.mcafee.com/us/resources/white-papers/wp-operation-shady-rat.pdf" target="_blank">Shady RAT</a> for instance that targeted organizations ranging from defense contractors to accounting firms.</p></blockquote>
<p>What can be done to defend the against spearphishing?  Potential victims can adopt a tool that identifies trusted email so that the target of the spearphishing attack can distinguish real email from fake email.  That tool is <em><a title="Iconix Announces SP Guard, Spear-Phishing Defense for the Enterprise" href="http://iconixtruemark.wordpress.com/2011/04/06/iconix-announces-sp-guard-spear-phishing-defense-for-the-enterprise/">SP Guard</a></em> from Iconix.</p>
<p><img title="ol_inbox_with_cert" src="http://iconixtruemark.files.wordpress.com/2011/04/ol_inbox_with_cert.png?w=415&#038;h=386&#038;h=386" alt="SP Guard Inbox" width="415" height="386" /></p>
<p><em>SP Guard</em> provides the recipient with three confirmations that a message is real:</p>
<ol>
<li>List View. There is an integrity indicator in the list view of the email client.</li>
<li>Message. The open message has a further indicator of authenticity.</li>
<li>Mouseover. Mousing over the authentication indicator in the message prompts the display of a certificate that further identifies the sender.</li>
</ol>
<p><a title="Iconix Adds Fraud Filtering to SP Guard to Block Spear-Phishing Attacks" href="http://iconixtruemark.wordpress.com/2011/09/27/iconix-adds-fraud-filtering-to-sp-guard-to-block-spear-phishing-attacks/" target="_blank"><em>SP Guard</em> now offers a fraud filtering enhancement</a>.  This additional protection is becoming increasingly important given the latest generation of highly targeted spear-phishing emails which are so well crafted that users cannot tell real from fake.</p>
<p><em>SP Guard</em> is available now from Iconix. For further information, contact us at 408-727-6342 , ext 3 or use our <a href="http://www.iconix.com/corp/info.php" target="_blank">online form</a>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/iconixtruemark.wordpress.com/1324/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/iconixtruemark.wordpress.com/1324/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/iconixtruemark.wordpress.com/1324/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/iconixtruemark.wordpress.com/1324/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/iconixtruemark.wordpress.com/1324/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/iconixtruemark.wordpress.com/1324/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/iconixtruemark.wordpress.com/1324/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/iconixtruemark.wordpress.com/1324/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/iconixtruemark.wordpress.com/1324/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/iconixtruemark.wordpress.com/1324/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/iconixtruemark.wordpress.com/1324/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/iconixtruemark.wordpress.com/1324/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/iconixtruemark.wordpress.com/1324/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/iconixtruemark.wordpress.com/1324/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1324&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://iconixtruemark.wordpress.com/2012/01/04/targeted-attack-seeks-us-drone-technology/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/5debedc7699338948c7eba235f788889?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">iconixtruemark</media:title>
		</media:content>

		<media:content url="http://iconixtruemark.files.wordpress.com/2012/01/drone-screens1.png" medium="image">
			<media:title type="html">drone screens</media:title>
		</media:content>

		<media:content url="http://iconixtruemark.files.wordpress.com/2011/04/ol_inbox_with_cert.png?w=415&#38;h=386&#38;h=386" medium="image">
			<media:title type="html">ol_inbox_with_cert</media:title>
		</media:content>
	</item>
		<item>
		<title>Apple Phishing Scam Alert</title>
		<link>http://iconixtruemark.wordpress.com/2011/12/29/apple-phishing-scam-alert/</link>
		<comments>http://iconixtruemark.wordpress.com/2011/12/29/apple-phishing-scam-alert/#comments</comments>
		<pubDate>Thu, 29 Dec 2011 16:51:07 +0000</pubDate>
		<dc:creator>iconixtruemark</dc:creator>
				<category><![CDATA[Consumers and Email]]></category>
		<category><![CDATA[Iconix Truemark Service]]></category>
		<category><![CDATA[Phishing]]></category>

		<guid isPermaLink="false">http://iconixtruemark.wordpress.com/?p=1308</guid>
		<description><![CDATA[CNET is warning about a phishing scam in which the bad guys are sending emails that are fake billing error notices from Apple. CNET reports that unlike other Apple phishing scams, in this scam the bad guys have created a reasonably convincing fake.  The grammar and spelling are correct and the message is formatted to [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1308&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a title="Apple Phishing Scam" href="http://reviews.cnet.com/8301-13727_7-57348467-263/apple-billing-e-mail-scam-making-the-rounds/" target="_blank">CNET is warning </a>about a phishing scam in which the bad guys are sending emails that are fake billing error notices from Apple.</p>
<p><img class="size-full wp-image-1309  alignnone" style="border-color:initial;border-style:initial;border-width:0;margin:0;" title="apple-phishing" src="http://iconixtruemark.files.wordpress.com/2011/12/apple-phishing.jpg?w=450&#038;h=340" alt="Apple Phishing Scam" width="450" height="340" /></p>
<p>CNET reports that unlike other Apple phishing scams, in this scam the bad guys have created a reasonably convincing fake.  The grammar and spelling are correct and the message is formatted to look like a real Apple message.  The email address that is displayed looks like it could be from Apple &#8211; &#8221;appleid@id.apple.com.&#8221;  However, it isn&#8217;t real. Following the links will land at a fake Apple website that also looks pretty convincing. The fake Apple website requests your Apple ID and password. It then prompts you to update your personal data, including your credit card information. DON&#8221;T DO IT!</p>
<p>CNET provides useful advice on detecting the scam. CNET explains how to unwind URLs and then how to compare the fake URLs to real Apple URLs.</p>
<p>To this advice, we add that you should use the latest version of a reputable security product (such as the products of <a title="Trend Micro Consumer Security Products" href="http://us.trendmicro.com/us/home/home-user/" target="_blank">Trend Micro</a>) and install all the security patches for your operating system and applications.  You should be careful.  But you need to do more.  You need a product that will identify legitimate emails from many of the leading consumer brands. Distinguishing real email from fake email is hard.  Being conversant with all the real URL’s is impossible.  You need a tool to identify real email.  You need <em>eMail ID</em> from Iconix.</p>
<p><img title="eMail ID inbox" src="http://iconixtruemark.files.wordpress.com/2011/04/email-id-inbox.png?w=312&#038;h=258&#038;h=258" alt="" width="312" height="258" /></p>
<p>Know Who.  No Doubt.  Use <em>eMail ID</em>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/iconixtruemark.wordpress.com/1308/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/iconixtruemark.wordpress.com/1308/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/iconixtruemark.wordpress.com/1308/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/iconixtruemark.wordpress.com/1308/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/iconixtruemark.wordpress.com/1308/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/iconixtruemark.wordpress.com/1308/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/iconixtruemark.wordpress.com/1308/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/iconixtruemark.wordpress.com/1308/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/iconixtruemark.wordpress.com/1308/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/iconixtruemark.wordpress.com/1308/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/iconixtruemark.wordpress.com/1308/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/iconixtruemark.wordpress.com/1308/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/iconixtruemark.wordpress.com/1308/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/iconixtruemark.wordpress.com/1308/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1308&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://iconixtruemark.wordpress.com/2011/12/29/apple-phishing-scam-alert/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/5debedc7699338948c7eba235f788889?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">iconixtruemark</media:title>
		</media:content>

		<media:content url="http://iconixtruemark.files.wordpress.com/2011/12/apple-phishing.jpg" medium="image">
			<media:title type="html">apple-phishing</media:title>
		</media:content>

		<media:content url="http://iconixtruemark.files.wordpress.com/2011/04/email-id-inbox.png?w=312&#38;h=258&#38;h=258" medium="image">
			<media:title type="html">eMail ID inbox</media:title>
		</media:content>
	</item>
		<item>
		<title>2012 Cyberattacks Predicted by IID</title>
		<link>http://iconixtruemark.wordpress.com/2011/12/23/2012-cyberattacks-predicted-by-iid/</link>
		<comments>http://iconixtruemark.wordpress.com/2011/12/23/2012-cyberattacks-predicted-by-iid/#comments</comments>
		<pubDate>Fri, 23 Dec 2011 18:56:35 +0000</pubDate>
		<dc:creator>iconixtruemark</dc:creator>
				<category><![CDATA[Consumers and Email]]></category>
		<category><![CDATA[Phishing]]></category>
		<category><![CDATA[spear phishing]]></category>

		<guid isPermaLink="false">http://iconixtruemark.wordpress.com/?p=1302</guid>
		<description><![CDATA[IID has released its predictions of the big cyberattacks for 2012.  Of the 5 predicted cyberthreats, 4 depend upon phishing scams for their evil success. Here&#8217;s the IID predictions: 1) Phishing &#8211; London Summer Olympics cyber attacks — Cybercriminals will try to capitalize on the Olympics by tricking people into installing malware with phishing scams impersonating the [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1302&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a title="IID 2012 Predictions" href="http://www.internetidentity.com/component/content/article/41-resources/485-release-online-voting-london-olympics-and-infrastructure-cyber-attacks-top-iid-internet-security-threats-for-2012" target="_blank">IID has released its predictions of the big cyberattacks for 2012</a>.  Of the 5 predicted cyberthreats, 4 depend upon phishing scams for their evil success.</p>
<p>Here&#8217;s the IID predictions:</p>
<p>1) Phishing &#8211; London Summer Olympics cyber attacks — Cybercriminals will try to capitalize on the Olympics by tricking people into installing malware with phishing scams impersonating the Summer Olympics official website and/or official Summer Olympics vendors.  Once malware is on a victim&#8217;s computer, the miscreants can monitor or control both personal and business computer activity — enabling them to steal data, send spam, and commit fraud.</p>
<p>2) Phishing &#8211; Elections altered — The 2012  U.S. presidential election year will create opportunities for deceiving voters and other skullduggery.  Cybercriminals are expected to  impersonate voting websites and political emails with phishing and malware attacks.  Many U.S. states allow military and overseas voting via the Internet &#8212; creating the opportunity to alter votes.  There are also concerns about the security of voting machines.</p>
<p>3) Phishing &#8211; 12/21/2012 danger — The Mayan &#8220;end of times&#8221; of December 21, 2012 will allow bad guys to play into this fear through targeted phishing and malware attacks playing on people&#8217;s heightened awareness surrounding 12/21/2012.</p>
<p>4) Internet infrastructure attacks for financial gain — While hacktivism will persist, expect DNS (Domain Name System) and BGP (Border Gateway Protocol) attacks for financial gain to grab headlines in 2012. The December 2010 DNS hijacking of large European payment processor ChronoPayis an example of this theat. More details surrounding this attack can be found at <a href="http://www.internetidentity.com/images/stories/docs/ecrime_trends_report-q4-2010_by_iid.pdf">www.internetidentity.com/images/stories/docs/ecrime_trends_report-q4-2010_by_iid.pdf</a>.</p>
<p>5) Spearphishing - Infrastructure Attacks.  IID predicts attacks on physical infrastructure attacks.  The Stuxnet hack caused substantial damage to the Iranian nuclear program.  The recently discovered <a title="DUQU hack" href="http://spearphishing.blogspot.com/2011/10/duqu-new-apt-malware-from-stuxnet.html" target="_blank">DUQU hack </a>is distributed by <a title="DUQU spearphishing" href="http://community.cengage.com/Infosec/blogs/mark_ciampa_4ed/archive/2011/11/18/duqu-details.aspx" target="_blank">spearphishing</a>. </p>
<p>This is an interesting forecast. While it is hard to predict the precise events and vulnerabilities that the badguys will use, there is little doubt that clever criminals will use current events and zero day exploits to cause havoc.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/iconixtruemark.wordpress.com/1302/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/iconixtruemark.wordpress.com/1302/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/iconixtruemark.wordpress.com/1302/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/iconixtruemark.wordpress.com/1302/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/iconixtruemark.wordpress.com/1302/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/iconixtruemark.wordpress.com/1302/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/iconixtruemark.wordpress.com/1302/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/iconixtruemark.wordpress.com/1302/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/iconixtruemark.wordpress.com/1302/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/iconixtruemark.wordpress.com/1302/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/iconixtruemark.wordpress.com/1302/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/iconixtruemark.wordpress.com/1302/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/iconixtruemark.wordpress.com/1302/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/iconixtruemark.wordpress.com/1302/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1302&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://iconixtruemark.wordpress.com/2011/12/23/2012-cyberattacks-predicted-by-iid/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/5debedc7699338948c7eba235f788889?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">iconixtruemark</media:title>
		</media:content>
	</item>
		<item>
		<title>Spearphishers Compromise U.S Chamber of Commerce</title>
		<link>http://iconixtruemark.wordpress.com/2011/12/21/spearphishers-compromise-u-s-chamber-of-commerce/</link>
		<comments>http://iconixtruemark.wordpress.com/2011/12/21/spearphishers-compromise-u-s-chamber-of-commerce/#comments</comments>
		<pubDate>Wed, 21 Dec 2011 16:33:31 +0000</pubDate>
		<dc:creator>iconixtruemark</dc:creator>
				<category><![CDATA[SP Guard]]></category>
		<category><![CDATA[spear phishing]]></category>

		<guid isPermaLink="false">http://iconixtruemark.wordpress.com/?p=1289</guid>
		<description><![CDATA[The Wall Street Journal is reporting that Chinese hackers accessed data of the U.S. Chamber from November of 2009 until May of 2010. Using a network of over 300 IP addresses, the hackers gained access to everything stored on its systems, including information about its three million members and lobbying efforts of the Chamber. The attack [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1289&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><a title="U.S. Chamber of Commerce Compromised" href="http://online.wsj.com/article/SB10001424052970204058404577110541568535300.html#project%3DCHAMBER122111%26articleTabs%3Darticle" target="_blank"><em>The Wall Street Journal</em> is reporting</a> that Chinese hackers accessed data of the U.S. Chamber from November of 2009 until May of 2010. Using a network of over 300 IP addresses, the hackers gained access to everything stored on its systems, including information about its three million members and lobbying efforts of the Chamber. The attack probably started with a spearphishing email.</p>
<p><em>The Wall Street Journal</em> summarized the data breach in a graphic:</p>
<p><a href="http://online.wsj.com/article/SB10001424052970204058404577110541568535300.html#project%3DCHAMBER122111%26articleTabs%3Dinteractive" target="_blank"><img class="alignnone size-full wp-image-1290" style="border-color:initial;border-style:initial;border-width:0;margin:0;" title="coc" src="http://iconixtruemark.files.wordpress.com/2011/12/coc.png?w=450&#038;h=291" alt="Chamber of Commerce Hack" width="450" height="291" /></a></p>
<p>You can view the original graphic by clicking <a title="Graphic of Chamber of Commerce Attack" href="http://online.wsj.com/article/SB10001424052970204058404577110541568535300.html#project%3DCHAMBER122111%26articleTabs%3Dinteractive" target="_blank">here</a>.</p>
<p>What can be done to defend the enterprise against spearphishing?  The enterprise can adopt a tool that identifies trusted email so that the target of the spearphishing attack can distinguish real email from fake email.  That tool is <em><a title="Iconix Announces SP Guard, Spear-Phishing Defense for the Enterprise" href="http://iconixtruemark.wordpress.com/2011/04/06/iconix-announces-sp-guard-spear-phishing-defense-for-the-enterprise/">SP Guard</a></em> from Iconix.</p>
<p><img title="ol_inbox_with_cert" src="http://iconixtruemark.files.wordpress.com/2011/04/ol_inbox_with_cert.png?w=415&#038;h=386&#038;h=386" alt="SP Guard Inbox" width="415" height="386" /></p>
<p><em>SP Guard</em> provides the recipient with three confirmations that a message is real:</p>
<ol>
<li>List View. There is an integrity indicator in the list view of the email client.</li>
<li>Message. The open message has a further indicator of authenticity.</li>
<li>Mouseover. Mousing over the authentication indicator in the message prompts the display of a certificate that further identifies the sender.</li>
</ol>
<p><a title="Iconix Adds Fraud Filtering to SP Guard to Block Spear-Phishing Attacks" href="http://iconixtruemark.wordpress.com/2011/09/27/iconix-adds-fraud-filtering-to-sp-guard-to-block-spear-phishing-attacks/" target="_blank"><em>SP Guard</em> now offers a fraud filtering enhancement</a>.  This additional protection is becoming increasingly important given the latest generation of highly targeted spear-phishing emails which are so well crafted that users cannot tell real from fake.</p>
<p><em>SP Guard</em> is available now from Iconix. For further information, contact us at  408-727-6342, ext 3 or use our <a href="http://www.iconix.com/corp/info.php" target="_blank">online form</a>.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/iconixtruemark.wordpress.com/1289/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/iconixtruemark.wordpress.com/1289/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/iconixtruemark.wordpress.com/1289/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/iconixtruemark.wordpress.com/1289/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/iconixtruemark.wordpress.com/1289/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/iconixtruemark.wordpress.com/1289/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/iconixtruemark.wordpress.com/1289/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/iconixtruemark.wordpress.com/1289/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/iconixtruemark.wordpress.com/1289/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/iconixtruemark.wordpress.com/1289/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/iconixtruemark.wordpress.com/1289/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/iconixtruemark.wordpress.com/1289/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/iconixtruemark.wordpress.com/1289/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/iconixtruemark.wordpress.com/1289/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=iconixtruemark.wordpress.com&amp;blog=9482740&amp;post=1289&amp;subd=iconixtruemark&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://iconixtruemark.wordpress.com/2011/12/21/spearphishers-compromise-u-s-chamber-of-commerce/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/5debedc7699338948c7eba235f788889?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">iconixtruemark</media:title>
		</media:content>

		<media:content url="http://iconixtruemark.files.wordpress.com/2011/12/coc.png" medium="image">
			<media:title type="html">coc</media:title>
		</media:content>

		<media:content url="http://iconixtruemark.files.wordpress.com/2011/04/ol_inbox_with_cert.png?w=415&#38;h=386&#38;h=386" medium="image">
			<media:title type="html">ol_inbox_with_cert</media:title>
		</media:content>
	</item>
	</channel>
</rss>
