News and Resources


2013

55% of Companies were Victims of Phishing Attacks

10/04/13

Most organizations are experiencing the pain of rising web-borne attacks. Everything from phishing to malware uses vulnerabilities in web browsers to penetrate your defenses. Yet 44% of companies between 100 and 5,000 employees surveyed did not have web security installed.  Even if a company does not want to improve productivity, at least they should be focusing on preventing malware from attacking their users.

Webroot Secure Anywhere Leads the Pack

07/03/13

PassMark Software — a leading independent software testing lab — recently conducted performance tests for eight of the latest endpoint protection products. Webroot® SecureAnywhere™ Business – Endpoint Protection leads the pack.  Get the report here.

Time to Unplug Java?

04/02/13

Java has experienced a number of flaws just recently.  Organisations from the US DHS to anti-virus firms like Kaspersky and Symantec are recommending that users disable Java unless they absolutely need it.  Here are some instructions:

Kaspersky Changes Microsoft Office Documents Coverage

29/01/13

Kaspersky  plan to roll-out, within the next month, a change to the policy for Microsoft Office Documents protected by 'read' and 'write' passwords.

Up until now, Kaspersky have been treating such files as 'password protected'. Within the next month, they plan to roll out an update to change documents protected with only a 'write' password to be a normal scan.

Redscan's Quarterly Newsletter is Out

21/01/13

Topics this quarter are:

  1. How to hook a hacker
  2. Five ways to save
  3. VoIP systems under siege
  4. Watch out for intruders

Take a look here.

Independent Research Cites Network Box as a Strong Performer in its Emerging MSSP Q1 2013 Report

11/01/13

Network Box evaluated for breadth of capabilities, flexibility, customer satisfaction
HOUSTON, JANUARY 9TH, 2013 - Network Box USA, the American division of worldwide managed security service provider Network Box Corporation Limited, announced that the company has been named a strong performer in The Forrester Wave™: Emerging Managed Security Service Providers, Q1 2013 Report.

2012

FINRA Compliance Guide for Social Networks, Web 2.0 and Unified Communications

12/11/12

Social Networks, Web 2.0 and Unified Communications.
In January 2010 FINRA issued Regulatory Notice 10-06, its latest guidance in a series on electronic communications, specifically related to social media web sites.
The growth of social networking sites is huge, not least because of the variety of ways it offers for people to communicate, but also the speed, allowing for deals to be closed quickly and information to be relayed without delay.

Redscan are a Finalist in the Computing Security Awards for 2012

13/09/12

Redscan are a Finalist in the Computing Security Awards for 2012 in the category Assistance with Compliance (Which organisation has done the most to help organisations comply)

Tackling Modern Malware

30/07/12

New blog: With new unique pieces of malware emerging daily and ever-increasing access requirements from a host of new endpoints, the challenge posed by malware detection has changed.  Zero-day threats pose an increasing risk as, by definition, nobody has a signature for this and in many cases heuristics can be bypassed.  What can be done to counter this threat, this blog looks at a new approach.

Mysql Authentication Bypass Vulnerability

13/06/12

A very nasty brute-force attack against some implementations of MYSQL has been announced. It is tracked as CVE-2012-2122.

Vulnerable systems are affected in that an attacker who knows a user name to connect with (and "root" almost always exists), can connect using any password by repeating connection attempts. 300 attempts takes only a fraction of second, so basically account password protection is as good as nonexistent. Any client will do, there's no need for a special libmysqlclient library.

IPv6 Ready!

07/06/12

Network Box has announced that it is the first, and so far only, provider of Managed Security Services, to have had its proprietary managed security service delivery platform attain IPv6 Ready Core Phase-2 Certification.

Fashionable but vulnerable: mobile devices in the workplace

19/04/12

Many organisations are replacing desktop PCs with laptop computers and rolling out tablet computers and smart phones to teams working outside of the office. These mobile devices are contributing to improved efficiency and are undoubtedly popular with employees, but they are also inherently vulnerable. To minimise the risks, organisations must develop specific mobile device management policies – and then enforce them.  Blog about the policy considerations when coping with BYOD

Network Box Wins Capital Magazine Outstanding Enterprise 2012 Award

16/03/12

Network Box won the Capital Magazine Outstanding Enterprise 2012 Award, for the 'Best Network Security Provider.'

Internet Accessible Maintenance Services and Microsoft RDP Vulnerability

14/03/12

Microsoft released their security bulletin MS12-020 which they label as Critical, and document two vulnerabilities in the RDP implementation in all modern version of Windows.

Network Box wins the 'Security Products and Solutions for Finance and Banking' category,

05/03/12

Network Box Z-Scan anti-malware system has won the 2012 Global Excellence Awards in the Security Products and Solutions for Finance and Banking category.  Network Box's multi-award-winning Z-Scan reacts to zero-day malware up to 4,200 times faster than traditional anti-malware systems.

Make a Serious Step towards Security

01/03/12

Full Disk Encryption: Free trial now available here! Easy to install, easy to uninstall, take a serious step to improve your company's security.

Webroot Revolutionizes Endpoint Security with the Fastest, Lightest, Easiest-to-Manage Protection

22/02/12

 The security landscape has changed and traditional signature-based software can’t keep up. A recent study of IT decisionmakers found an overwhelming 95 percent experienced an endpoint-based attack last year. 

Network Box announces it attains first milestone in "IPv6 Ready"

09/02/12

Network Box has announced that it has reached the first milestone in its endeavour to attain "IPv6 Ready" - Phase 2 criteria certification.

Data in Use

07/02/12

With the proliferation of keyloggers, Trojans and other malware, it becomes progressively more difficult to ensure that data being used is safe.  Redscan's latest blog talks about a number of steps that can be taken to protect data whilst it is being used by employees.  Read more here.  

Network Box reveal NBRS-5

30/01/12

 Network Box has revealed information of its new software platform called NBRS-5.0, which will be available in increments from the second quarter of 2012.  This new technology will be available free of charge to existing users of the Network Box device.  Redscan will be contacting customers that use Network Box later this year to arrange the upgrade.  Learn more about the Next Generation of Network Boxes.

Potential IT security issues in 2012

26/01/12

 January is a good time of the year to look ahead and consider how emerging new technologies and solutions might impact your business.  Redscan's blog describes eight key trends that could have serious implications for IT security.

Board Room Spying for Fun and Profit

25/01/12

Blog by HD Moore on the research he conducted over the last three months. Alarge portion of video conferencing equipment is connected to the Internet without a firewall and is configured to automatically answer incoming video calls. This allows a remote intruder to monitor both audio and video information, often with little or no indication to the target. The interesting part of this research is who it affects; these units can cost anywhere from a few hundred dollars (used) to tens of thousands of dollars for high-end room systems.

Redscan Winter Newsletter

24/01/12

Redscan's latest newsletter is now available to read here.  

VoIP: The Danger of Open Ports

04/01/12

A short blog on the time it takes for an undefended PBX to be attacked.  Why is this a concern?  Toll Fraud is the primary threat.  A hacker who can register as a legitimate user can make telephone calls at the owner’s expense.  Read more here

2011

Security Essentials: Secure Deployment of Voice over IP

20/10/11

As Voice over Internet Protocol (VoIP) is taken up with enthusiasm by companies searching for greater functionality, reduced costs and improved flexibility, the focus on security needs to be maintained.  Just as we were in the 1990’s when email and web were being adopted at a great rate, companies are leaving themselves vulnerable to being exploited by application level attacks that many solutions designed for VoIP are not able to protect against.

Cover Story of Processor: "Enterprise-Class Protection Even Small Businesses Can Afford"

12/10/11

Unique to Network Box’s security protection, which has won the company more than 40 awards globally, is the use of patented PUSH technology that automatically pushes antivirus signatures, security patches, and software updates from the SOCs to customer devices within 45 seconds of becoming available. According to Pierluigi Stella, Network Box USA’s CTO, a more traditional approach would involve IT monitoring multiple physical devices for Internet threats and then adding patches, applying signatures, etc.

Security Essentials: Data Loss Prevention – Technology is Just the Start

10/10/11

Technology is just one element in the quest to secure data and there is little doubt that DLP software and appliances can help.  However, there is no single software solution that can encompass all aspects of DLP, as different types of data have different threats and hence need different controls. 

Webroot Secure Anywhere wins Editor's Choice from PC Magazine

04/10/11

Excellent protection from malware; very good malware cleanup. Online backup and file-sharing. Powerful password management. Android support. Online console manages protection, backup, and passwords. Cleans up useless files.  Read more here.

Webroot Enhances Hosted Web Filtering Services

28/09/11

Real-Time Service Updates Instantly Protect Internet Users from Malicious Sites and Zero-Day Threats

Webinar: Is YOUR phone exchange being used illegally? HOW DO YOU KNOW? Sipera & RedScan

08/09/11

Your Unified Communications system may increase your company's productivity and connectivity, but it also opens up the possibility that you could be victim to an expensive scam.

Third annual report finds cybercrime on social networks continues to climb despite increased privacy and security measures

23/08/11

With malware showing no signs of abating on social networks and continuous news of the privacy implications of sharing personal details through social media, it's no surprise users are making more efforts to reduce their risk of exposure in 2011.

Some Real World Statistics

02/08/11

Decline in Spam and Viruses during July. The following table shows statistics from a selection of Network Box Systems installed around the World. The percentage change is from the previous month (June). Interesting to see a general fall in Spam and Malware over both email and HTTP.

SIP Trunks - Fix the Broken Business Case

26/07/11

SIP trunks are the flexible and highly cost-effective new telecom services that can reduce your company’s telecom spending dramatically.  But many enterprises considering SIP trunks will run an ROI calculation and end up wondering, "where are all the savings?"This reason is that SIP trunk security best practices require an enterprise Session Border Controller on your premises.  Sipera have the solution, read more here.

Real-Time Response to Malware Slashes Threats

23/07/11

"We've seen a virtual elimination of threats from the outside, because of Z-Scan," said Thomas Green, VP-IT at the $569-million Credit Union (CU) organisation. Previously, "we had a far higher rate of infection. It is rare today that we have to service a machine due to malware."

Network Box Wins 2011 Hong Kong Awards for Industries - Technological Achievement Grand Award

06/07/11

Network Box wins the 2011 Hong Kong Awards for Industries, Technological Achievement Grand Award, for its new Z-Scan, in-the-cloud, zero day anti-malware system.

New Video on VoIP Security

24/06/11

With attacks against VoIP and UC accelerated by 50% from 2009 to 2010 from hackers targeting enterprise UC servers (source: VIPER Lab honeypots), Redscan has released a new video on VoIP security.  VoIP and UC attacks maket up to 25% of all hacking attacks in the wild (open Internet), up from single digits in previous years (rest of attacks are classic database and network layer attacks).  As email, web application and classic network hacking vectors are closed, VoIP and UC are the new targets. 

How Secure is UC, VoIP and SIP?

22/06/11

A glance at the Cyber-crime statistics shows that the problem of voice security within a converged or integrated set of applications that includes unified communications (UC), VoIP and SIP is huge. Comms Business got together with a number of channel players, including voice security vendor Sipera, to talk over the issues and what steps can be taken by resellers to protect their customers.  Read more here.

Actiance Introduces Vantage Security Subscription for Microsoft Lync Server 2010

07/06/11

Actiance (www.actiance.com), enablers of the safe and compliant use of unified communications, collaboration and Web 2.0, and a nationally managed Microsoft Gold Certified Partner, today introduced Vantage Security for Microsoft Lync, a subscription to protect Lync environments against malware and out of policy content.  Read more here.

Attacking the Crown Jewels through VoIP

07/06/11

The security weaknesses of VLANs have been known for years.  Recent case studies have highlighted the potential risk of using Voice VLANs together with VoIP in an infrastructure absent of properly configured security controls.  While visiting Europe just recently, I was reminded of this issue for a couple of reasons.  Read more

Network Box Scores 100% on Extended Wild List Anti-Malware Test

27/05/11

Businesses of all sizes and types need to be concerned with providing protection from malware to their user base.  Regardless of the delivery mechanism, Unified Threat Management (UTM) firewall appliances aimed at small and medium businesses should deliver immediate and ongoing protection against malware threats propagating on the Internet.

Unified Communications Security

16/05/11

50% increase in attacks from 2009 to 2010 from hackers targeting enterprise UC servers (source: VIPER Lab honeypots).  Now up to 25% of all hacking attacks in the wild (open Internet) are against the voice and UC vector, up from single digits in previous years (rest of attacks are classic database and network layer attacks).  Read more here.

Securing UC alongside Web 2.0

13/05/11

The line between enterprise and consumer real-time communications has never been clear cut. Standardising on a single UC platform rarely eliminates the use of consumer orientated applications – authorised or not, and with the announcement that Microsoft is to buy Skype the divide is looking increasingly blurred. For organisations looking to secure their networks or achieve regulatory compliance this heterogeneous environment is a complex issue.  Read more here.

Network Box wins "Best Managed Security Service" at ICT Expo

06/05/11

Network Box has won the Linux and OSS Award 2011 for “The Best Managed Security Service,” at the ICT Expo in Hong Kong on 15 April, 2011.  The awards ceremony celebrated the best information and communications technology, created using Linux and Open Source Software Solutions.
 

Possible Asterisk Hack on LastPass

05/05/11

Password management system LastPass is reporting that it suspects that hackers accessed their system through an Asterisk server via UDP.  Reacting fast and comprehensively to protect their customers.  They have blogged about the incident here.  

Actiance Triumphs at SC Magazine Awards Europe with Two Awards

04/05/11

Actiance, enablers of the safe and compliant use of unified communications, collaboration and Web 2.0 announced today that it scooped two awards at the 2011 SC Magazine Awards Europe:

Watch Video on UC Security

03/05/11

Listen to Sipera's Paul German when he was interviewed with Infosecurity TV on YouTube where he discusses Application layer security, unified communications, VoIP and Viper Labs.

$70k VoIP Fraud Spree

12/04/11

Western Australia Police are investigating a case of IP telephony fraud which saw three Perth businesses faced with a combined bill exceeding some $70,000.

Last year, network companies said that clients had been racking up phone bills worth $100,000 because of unauthorised calls placed over compromised VoIP servers. Smaller attacks have netted criminals tens of thousands of dollars worth of calls.

Read more about this attack here.

Social Engineering Attack on Domain Name Registrar, Network Solutions

05/04/11

Microsoft's director of policy and enforcement for Xbox LIVE has had his Xbox account hijacked by a disgruntled gamer using a social engineering attack on his domain name registrar, Network Solutions. More information

here

.

TelePacific Communications' network suffers a major disruption from DoS

02/04/11

The attack affected TelePacific’s “SmartVoice" service, an SIP (session initial protocol)-based offering that allocates bandwidth to voice traffic.

Actiance Teams with LinkedIn to Enable Compliance with Top Regulatory Body Guidelines for the Financial Services Industry

01/04/11

Actiance, enablers of the safe and compliant use of unified communications, collaboration and Web 2.0, announced today an agreement with LinkedIn, the world's largest professional social network, that gives Actiance access to LinkedIn's private API (application programming interface) to enable Actiance's customer-base to leverage the expansive capabilities of LinkedIn while remaining compliant with key industry regulations.

Sipera and Redscan at Infosecurity

29/03/11

We will be joining Sipera at Infosecurity this year from Tuesday 19th April to Thursday 21st April this year.  We will be interested in talking to anyone who is deploying VoIP and in discussing the latest PCI DSS guidelines on VoIP, credit cards and security.

PCI DSS - VoIP in Scope According to New Guidelines

24/03/11

The PCI DSS council, which is the industry body that develops and manages the international standard on payment card privacy, has provided new guidelines which indicate that VoIP calls that record financial transactions that include credit card details must be protected or deleted.  The guideline can be found here.  The auditing flow-chart on Page 6 shows that the card information transmission rules apply to voice and it is in scope of the regulations.  Then on

RSA Security Hacked by Sophisticated Cyber Attack

19/03/11

In an open letter to customers, RSA Boss Art Coviello, described how RSA had come under a sophisticated cyber attack.  Action has been taken to remedy this breach.  Coviello also stated that the information stolen would not help a "direct" attack on the the SecurID tokens.  The open letter can be found here.However, customers are advised to 'harden' their passwords to ensure they are long and complex include uppper and lower case characters, numbers and symbols.   

eMail-based Malware Increases Four Fold

11/03/11

Over the past few days we have been noticing an unusual increase in eMail-based malware. We have not seen such an increase for several years, and this is occurring globally.

Financial Trojans: Following the Money

09/03/11

Hackers target banks and their customers because - as William Sutton, a notorious 20th century bank robber, is supposed to have said - “thatʼs where the money is”. However, following a twenty-first century paradigm, hackers donʼt burst fully armed into banks but install software known as financial Trojans on their victimsʼ computers.Full article by Redscan's CTO is published by "(In)Secure Magazine" here

Autonomy: Three Engineers through the Advanced Course

07/03/11

We are pleased to announce that three of our engineers have passed through the Advanced IDOL course that is run by our partner Autonomy, the leader in meaning based computing and enterprise search.  Autonomy's IDOL is a massively powerful enterprise search solution able to automatically for the actual meaning of words rather than working on the popularity of documents that contain words.  This greatly improves the results of any search carried out across the enterprise across all information whether document, database, voice or video. 

Network Computing magazine reviews Webroot

21/02/11

Last year Network Computing magazine in the UK undertook a review of Webroot's web service that they published, there is a copy here.   Then in December 2011, Webroot commissioned the same publication to do another review for the email service

UC Federation: Get UC platforms talking together

09/02/11

Redscan is now able to provide rich federation features across a wide range Unified Communication (UC) platforms.  Many federation solutions provide only text and rudimentary presence information between selected competitors but Redscan, as a NextPlane partner, is now able to provide rich federation features such as multi-party chat, file sharing, voice, video and detailed presence between the leading UC products.

The Future of Network Security

28/01/11

Cyber threats are high on the agenda, with the UK government focusing on the threat of cyber-terror, as a result of the National Security Council’s report into the issue in October 2010. The government has even announced a £500 million fund for a national cyber security programme over the next four years, and has indicated that experience will be drawn from both the public and private sectors to provide this programme.

Web Usage Statistics for Q4 2010

28/01/11

At the end of each quarter, we produce statistics on web usage by business Worldwide.  The statistics come from our partner “Network Box” who work with businesses small and large in countries from China through Europe to the USA.  It gives us a really good idea of which sites industry worldwide is visiting.

2010

Free Guide on Combating VOIP Security Threats

02/12/10

VOIP technology is becoming increasingly popular as businesses seek to provide employees with latest telephony services, connect remote workers and keep costs under control, but the associated security threats must be recognised and guarded against.

The guide, Securing Voice Over IP systems sets out the major security risks that businesses which use VOIP systems and software can encounter. Including:

Network Box Z-Scan Antivirus Engine Reduces Time to Respond to New Threats

16/11/10

 New antivirus engine focuses on developing signatures for emerging threats in less than one minute
 
A new virus detection and signature service launched by Managed Security Service company Network Box, aims to reduce the time it takes to respond to serious new internet threats, by cutting response times down from hours, which is common throughout the anti-virus industry, to less than one minute.
 

Unified Communications and MPLS take up to grow in 2011, according to a Redscan survey

26/10/10

Twelve per cent of businesses plan to deploy unified communications in 2011, according to survey results from managed security company, Redscan (formerly Network Box UK). As communications channels integrate, businesses are turning to unified communications technologies to make collaboration easier by bringing together a myriad of communication platforms such as IM, chat, click-to-call, video  and VOIP calls, into one central system.

Redscan Email Archiving Whitepaper

20/10/10

These days, companies of all sizes - but particularly those operating in the financial services sectors - are required to meet new industry and regulatory compliance requirements for data retention, and to be able to produce audit trails. In addition, all organisations have found that emails are now mission critical to their business in the same way that letters are. They have found that they need to keep a record of what was sent and received in the past to protect themselves and improve their service to their customers.

We're Hiring!

07/07/10

We have the ideal role for a talented sales professional, with experience of selling IT security or managed services, looking to further their career within a successful company that makes full use of advanced and innovative technology.

As a Sales Executive you will be responsible for selling our managed IT security services to SMEs.

Virus production from Russia increases again, says Network Box

01/07/10

Virus production from Russia is on the up again, after a temporary decline last month when Russian hosting service, PROXIEZ-NET – notoriously used by criminal gangs – was taken down in early May.  This is according to analysis of internet threats in June, by managed security company, Network Box.

Diplomatic wrangles stifle attempts to tackle cybercrime, argues Network Box

22/06/10

Political leaders continue to hold conferences and sign treaties as the need to tackle cybercrime at an international level rapidly increases, but ultimately these attempts at agreement fail due to national interests and diplomatic concerns, according to Simon Heron, internet security analyst at managed security company Network Box.

Number of internet threats from the UK rising

01/06/10

The number of internet threats coming from the UK has increased in May, according to research by managed security firm, Network Box. The UK is now responsible for nearly six (5.9) per cent of the world’s internet viruses, up from three per cent in April. The only countries that produce more viruses than the UK are Korea (16.26 per cent) and the US (11.68 per cent).

The US and India continue to dominate the production of the world’s spam, with the US producing 10.7 per cent, and India 7.1 per cent (similar figures from last month).

Securing data: a free guide to data security

20/05/10

A new guide for businesses on how to secure data is available from managed security company, Redscan Ltd. The guide is designed to give guidance to companies on best security practice to avoid a security breach; and is available free from Redscan’s website

IT security for Car Dealerships: free guide

14/05/10

Car dealerships, like so many businesses, are increasing the amount of business-related activities they carry out online, from checking inventory and ordering new parts, to communicating with customers and downloading manuals.

A new guide – IT Security for Car Dealerships – released today by managed security firm Network Box, provides guidelines for car dealerships to follow to protect their IT networks from security threats.

India becomes the primary producer of viruses

30/04/10

India has pushed Korea into second place and taken over the mantle of the world’s largest producer of internet viruses, according to analysis of internet threats in April by managed security company Network Box. India now accounts for just under 10 (9.9) per cent of the world’s viruses, ahead of Korea at 8.24 per cent and the US at 6.7 per cent.

Protecting sports clubs from internet threats

30/04/10

Sports clubs are increasing online investment as they seek to engage their customers and drive sales, but IT security may be being left behind, according to managed security firm Network Box, who have just published a guide to IT Security for Sports Clubs.

The guide, which is free to download from Network Box’s website: http://www.network-box.co.uk/resources/white-papers, outlines the major issues facing sports clubs, such as the security of customer data, internet threats, managing multiple websites, bandwidth management and human error.

Business internet traffic increases to Facebook and YouTube

16/04/10

More business internet traffic goes to Facebook than to any other internet site, according to analysis by managed security company, Network Box. Analysis of 13 billion URLs used by businesses in the first quarter of 2010 shows that 6.8 per cent of all business internet traffic goes to Facebook – an increase of one per cent since the last quarter of 2009.

Remote working and social network use at work are biggest security concerns for business

13/04/10

Shifting working patterns and increased social network use are the two biggest headaches for IT managers, according to research by managed security company, Network Box. Fifty-nine per cent of IT managers surveyed said that remote working was one of their top priorities for the coming 12 months (ranking it between 8-10 on the survey, where 10 is ‘extremely important’ and 1 is ‘unimportant). Network Box surveyed 250 companies across all sectors.

Korea becomes world’s biggest producer of internet viruses

07/04/10

Korea has taken over from the US as the world’s largest producer of internet viruses, according to analysis of internet threats in March by Network Box, a managed security firm. Korea now accounts for a massive 31.1 per cent of the world’s malware, a leap from February’s 8.9 per cent. This increase in Korean malware production is the result of the rise of compromised computers in Korea which are being used to send out phishing emails across the world.

Microsoft Out-of-Band Security Bulletin

31/03/10

In response to highly publicised attacks reportedly exploiting a zero-day (without protection) vulnerability in the Microsoft Internet Explorer web browser, Microsoft has released, out-of-band, security bulletin MS10-018 addressing nine privately reported vulnerabilities and one publicly disclosed vulnerability in Internet Explorer.
This bulletin is:
•    MS10-018 affecting Microsoft Internet Explorer.

Highest-grade security for mid sized companies: Network Box launches two new UTM appliances

04/03/10

Network Box, the managed security services firm, has launched two new security appliances, supported by a managed security service, for medium-sized companies. The M-255 and M-285 are designed to provide powerful protection for companies of around 50 employees, but who are ‘heavy’ users of web services or file transfers (such as financial organisations, or web design companies) and so need higher levels of security.

Phishing attacks fall as Brazil drops down the spam charts

01/03/10

In January, more than half (55.59 per cent) of all malware sent on email was an attempted phishing attack, but February has seen this figure drop dramatically to 17.86 per cent, according to analysis by managed security firm, Network Box.

Network Box Announces Sunset on Superceded S-Series Systems

18/02/10

As a result of our new range of S-Series systems that has been announced this week, we are officially announcing the sunset on the following models:
 
S-50 Model - effective 16-02-2010
We are formally announcing sunset on the S-50 model, effective 16-02-2010.The end-of-support date for S-50 will thus be 16-02-2013.We still have stock of this model, should you wish to fulfil existing orders with it, and will endeavour to continue to supply it until 16-08-2010. However, we strongly recommend you consider the S-35 model as the replacement.

Network Box launches S-Series UTM devices for SMEs and branch offices

17/02/10

A new range of unified threat management (UTM) devices designed for SMEs and branch offices, and supported by a full managed service, is launched today by managed security firm, Network Box. The S-Series range (S-35 and S-85) is available from 16 February 2010.

The S35 is designed for smaller offices that require a VPN (to connect remote workers or branch offices to a central location), firewall, and intrusion prevention functionality; as well as full support and management services.

Phishing attacks account for more than one in two viruses

28/01/10

More than half (55.59 per cent) of all malware sent on email is an attempted phishing attack, according to analysis of malware in January 2010 by managed security firm, Network Box. Phishing attacks soared before Christmas (to 57 per cent of malware), as criminals attempted to exploit the number of people shopping online, but the numbers have stayed at a similar level through January.

Microsoft Releases Important Out-of-Band Patch

22/01/10

Network Box Security Response has released a second supplemental report on the January 2010 Microsoft Patch Tuesday.
In response to highly publicised attacks reportedly exploiting a zero-day (without protection) vulnerability in the Microsoft Internet Explorer web browser, Microsoft has released, out-of-band, security bulletin MS10-002 addressing seven privately reported vulnerabilities and one publicly disclosed vulnerability in Internet Explorer.
This bulletin is:

Public sector needs to re-evaluate data security systems

22/01/10

Those working in the public sector need to tackle key security issues if they want to avoid costly data breaches that impact both finances and reputation, according to a new guide from managed security firm, Network Box. The guide - Securing the public sector – discusses the issues facing public sector security, and lists key recommendations on how these issues should be addressed.

2009 saw a new threat every 10 seconds; majority of malware now from botnets

11/01/10

Almost three million new threats were identified in 2009 – approximately one every 10.8 seconds – according to analysis by managed security firm, Network Box. 2,905,697 threat signatures were released through the year to protect against new or variant threats. This is an increase on 2009 of 6.9 per cent.

2009

Phishing attacks soar in the run up to Christmas

31/12/09

The number of phishing attacks rose dramatically in the run up to Christmas, according to managed security firm, Network Box. Analysis of internet threats in December 2009 show that just over 57 per cent of all threats were phishing attacks, compared to 28.3 per cent in November.

The greatest source of viruses and spam was Brazil, from where 20.9 per cent of all viruses and 9.1 per cent of all spam originated in December. This is up from 14 per cent and eight per cent respectively in November.

Solid return on investment now makes managed security more cost-effective for mid-sized and smaller companies

09/12/09

Managed security firm, Network Box, has published a guide to return on investment for security services, ROI of managed security services, available free from its website

Vietnam was the primary source of spam in November

01/12/09

Vietnam is now responsible for more than 10 per cent of the worlds spam, according to threat analysis from managed security firm, Network Box. November saw malware threat levels remain consistently high with Vietnam taking the number one spam spot from last month’s chart topper, Brazil.

Spam

Facebook and YouTube dominate our business networks

26/11/09

Accessing and downloading material from Facebook and YouTube when at work accounts for more corporate web activity and used bandwidth than any other sites, according to analysis by managed security firm, Network Box.

Nearly six per cent of all web traffic from business networks is to Facebook – higher than to any other website. Google is next in line, at 4.1 per cent.

Nearly eight per cent of all corporate bandwidth is taken up downloading YouTube videos. The next in line is Windows Updates, taking up 3.8 per cent of bandwidth.

Mis-managed security updates can cause network problems

19/11/09

Network performance may be compromised if security updates are wrongly implemented, according to a new guide from managed security firm, Network Box. In the fourth in its ‘Forgotten Security’ series, the firm gives businesses advice on how to ensure that they are patching and updating their systems correctly.

The guide - Forgotten Security: Keeping up to date - advises IT teams to revisit their updating procedures to ensure that they cover not just their software, but also equipment such as routers.

Companies must keep control of home workers’ computers,

12/11/09

The growth of home or remote working can leave companies vulnerable to security threats if they don’t take some simple steps to securing employees’ computers. This is the warning from managed security company, Network Box, which gives advice to businesses on the issue in a new advisory guide, Securing Remote Workers.

Companies should be particularly vigilant with home workers, according to the guide. Often, home workers will be using a personal home computer (as opposed to a company-provided computer) that is unlikely to meet stringent corporate security standards.

Microsoft November Patch Tuesday

11/11/09

Microsoft's November 10th Patch Tuesday updates are now available. Abstracts (with links) of Microsoft's security bulletins and advisories are shown below.

Network Box joined the Microsoft Active Protections Program (MAPP) in the summer of 2009, and publishes its MAPP synchronised active protection updates on the second Tuesday of each month. The Network Box MAPP Report for November 2009 is now available for download.

International co-operation vital as malware sources disperse

29/10/09

Hackers are spreading their operational bases further around the world, according to threat analysis from managed security firm, Network Box. During October, malware levels remained high, but threats originating from the ‘traditional’ top sources of malware (the US, China, Korea and Brazil) were all down on last month.

Spam

Forgotten Security: Why companies need to implement a change control procedure

21/10/09

Companies need to have change control procedures in place in order to safely rectify vulnerabilities once they have discovered them, according to new advice from managed security firm, Network Box.

In the third in its ‘Forgotten Security’ series, Change Control, Network Box advises companies of all sizes to implement a change control process, to ensure that any changes to the network, or to business applications, are made in a controlled, co-ordinated way, and do not lead to security vulnerabilities.

Network Box October 2009 Report on Microsoft Patch Tuesday

14/10/09

This month, Microsoft releases its biggest ever security update, with 13 security bulletins tackling 34 vulnerabilities. Eight of the bulletins are classified as critical, and eleven of the vulnerabilities have an exploitability index of 1 (consistent exploit code likely). Several of the vulnerabilities are currently being exploited in the wild.
Of these vulnerabilities, Network Box Security Response views it particularly important to draw your attention to the following security bulletins, in particular, that we determine require urgent patching:

Microsoft October 2009 - 13 bulletins (eight critical, five important), addressing 34 vulnerabilities

09/10/09

Microsoft have taken the unusual step of publicly pre-announcing that they will be releasing 13 bulletins in October 2009 (next week). Eight of the bulletins are rated critical, with the other five rated important.
Overall, 34 vulnerabilities will be announced (affecting Windows, Internet Explorer, Office, Silverlight, Forefront, Developer Tools, and SQL Server). Most of the updates require a restart.

Network Box UK offers cloud solution for web surfing and email scanning

07/10/09

Network Box UK, the managed security company, now offers its customers a ‘cloud’ security solution for web surfing and email scanning.  Following their policy of selecting the “best of breed” for their customers, the solution is based on Webroot’s Web Security Software as a Service (SaaS).  The new cloud security solution is being offered to Network Box UK customers from 1 October 2009.

China on the rise as overall spam and virus levels decline

30/09/09

The level of spam and viruses has dropped for the second month running, as the US and Brazil continue to be the primary sources, according to managed security firm, Network Box.

Network Box’s analysis of internet threats in September 2009 shows that although the overall level of spam and viruses has dropped slightly, viruses originating from Brazil have risen by two per cent, and China has replaced Korea as the third largest source of spam, its levels rising by just one per cent in September.

Network Box awarded five-star rating by SC Magazine

28/09/09

Network Box has been given a five-star rating by SC Magazine in its review of Intrusion Detection and Prevention (IDP) solutions.

The Network Box solution was rated five out of five for features, ease of use, performance, documentation, and support, with an overall rating given of five out of five.

Company security is being compromised by badly configured data routing

28/09/09

High volumes of company data are being mistakenly routed round company networks,  compromising their effectiveness and security, according to managed security company, Network Box.

Network Box Corp Ltd Partners with Microsoft to Protect Customers

14/09/09

For the first time, Network Box Corporation Ltd will receive advanced information from Microsoft about their monthly security bulletins to anticipate emerging threats and provide mutual customers with more timely protections.
 
Network Box joined the Microsoft Active Protections Program (MAPP), and will be provided with vulnerability information in advance of Microsoft’s monthly security update release to offer protections to customers efficiently and effectively.
 

Companies vulnerable to vulnerabilities in ‘forgotten security defences’

11/09/09

Companies are protecting themselves from high-profile threats such as malware attacks, but leaving themselves vulnerable from the 'forgotten security defences', according to new advice from managed security firm, Redscan.

Secure sites must stop relying on single passwords

02/09/09

Using passwords to access online information is not secure enough, according to a new white paper from managed security company, Redscan. Authentication, who are you?, written by Redscan’s Internet Security Analyst, Simon Heron, argues that web-based services – particularly those that hold financial information - must increase security in order to protect their customers effectively.

US and Brazil continue to dominate as sources of spam and viruses

30/08/09

The US and Brazil continued their output of spam and viruses through August, although levels have dropped slightly since July, according to managed security firm, Network Box.

Analysis of Internet threats by Network Box in August 2009 shows that the volume of malware, which peaked in July (when volumes increased by 300 per cent), are back down at levels seen in June (around four viruses per customer, per hour). Spam is also down slightly, averaging around 90 spam emails per customer, per hour (from a peak of around 120 in May).

Network Box releases upgrade to customer mail portal

10/08/09

Managed security company, Network Box, will release a number of enhancements to its customer mail portal in late September that will improve the speed of mail handling by three to five times, and simplify the way data is presented to users.
Email data will be laid out so that email administrators can see at a glance how their mail service is performing, and any issues affecting it. A simplified home page to the mail portal will show (both as lists and graphics):

BIND Dynamic Update DoS

30/07/09

Following disclosure on a Debian bug-tracking system, the ISC has released urgent patches to their BIND DNS name server code. This issue has been classified as critical by most security organisations and is known as CVE-2009-0696 and CERT VU#725188.

Viruses up 300 per cent: more threats coming from India and Brazil

29/07/09

29 July 2009 - The number of viruses sent over email has increased by 300 per cent in the last three months, according to managed security firm, Network Box. 

Analysis of Internet threats by Network Box in July 2009 shows the number of viruses is at its highest so far this year, peaking at around 12 viruses per customer per hour.

Microsoft, Sun and Adobe Update Early

29/07/09

Microsoft, Adobe and Sun have all released important security updates.

Microsoft has released a set of out-of-cycle patches, to respond to two security bulletins MS09-034 and MS09-035.

Update on Adobe Flash Attacks

24/07/09

Network Box Security Response is currently monitoring exploits of a zero-day flaw in Adobe Flash Player 9 and 10, with the exploit delivered by a flash object embedded in an Adobe PDF document (rendered by Adobe PDF Reader / Acrobat).

The flaw has been acknowledged by Adobe, who are working on a fix for the issue. An article providing more information is available on threatpost.

Adobe Flash Vulnerability being Exploited

23/07/09

We are currently monitoring exploits of a zero-day flaw in Adobe Flash Player 9 and 10, with the exploit delivered by a flash object embedded in an Adobe PDF document (rendered by Adobe PDF Reader / Acrobat). The flaw has been acknowledged by Adobe, who are working on a fix for the issue. An article providing more information is available on threatpost.

In co-operation with our Anti-Virus partners, we are PUSHing signatures for the known exploits, as we see them.

Redscan warns companies to take action against increase in SQL Injection attacks

21/07/09

A steady increase in the number of SQL Injection attacks (where a hacker ‘injects’ malicious code into an application, exploiting a vulnerability in that application) means that companies should review their applications for vulnerabilities, and ensure vulnerabilities are patched. Managed security company, Redscan, has issued advice to customers on protecting against SQL Injection attacks to customers who operate public web servers to exercise caution, particularly those accessible over the Internet.

New Vulnerability in Microsoft Office Web Components ActiveX Controls

14/07/09

Network Box Security Response has been tracking a new zero-day vulnerability in the Microsoft Office Web Components ActiveX controls. This is in addition to the msvidctl.dll component reported last week and is potentially more serious.

Vulnerability in Microsoft Video ActiveX Control Could Allow Remote Code Execution

07/07/09

Network Box Security Response has been tracking a zero-day vulnerability in the msvidctl.dll component of Microsoft Video ActiveX. There is a widespread attack underway exploiting this vulnerability using a large network of compromised websites. The attacks are using Internet Explorer as the attack vector and are installing a Trojan downloader onto compromised machines. Analysis of the attacks by security experts reveals that the attackers are injecting IFRAMEs into compromised websites in order to redirect users to sites hosting the trojan downloaders.

Brazil equals US as source of spam in June

02/07/09

Brazil almost equals the US as the two main sources of the world's spam, according to analysis of Internet threats in June by managed security firm, Network Box. The US is comfortably back up at the top of the virus charts, though, producing more than 21 (21.3) per cent of viruses (up from 17.2 per cent in May).

Korea is still responsible for the highest number of intrusion attacks, with one in four (25. 1 per cent) of all intrusions originating from the country.

Unified Security

25/06/09

It’s always nice to be mentioned in an analyst’s report, and Gartner’s recent Managed Security Service market (Asia Pacific) is no exception. The first thing that struck me is how far managed security services have come in the last five or six years – it is a fast-maturing market and one in which Gartner forecasts a 12 per cent compound growth over the next 12 years in the region. That’s significant, given spending freezes and cuts in other areas.
 

Network Box supports ‘Memory 4 Teachers’ campaign

11/06/09

Network Box, the managed security company, is providing free security advice and information to schools and colleges as part of the ‘Memory 4 Teachers’ campaign.

The campaign, put together in association with Local Education Authorities and teacher groups,  has two goals: to provide one million teachers across the UK with access to educational resources; and to provide information and software applications to educational support teams, including IT departments.  Both these are delivered on a secure, password-protected memory stick.

Don't block IM, control it, says new guide for IT managers from Network Box

10/06/09

Don't block IM, control it, says new guide for IT managers from Network Box

A new guide to securing instant messaging (IM) advises companies to control employees' use of IM, rather than blocking it outright. Securing IM is the latest in the ‘Securing Social Media' series of guides from managed security company, Network Box. The guides are all free to download from Network Box's website: http://www.network-box.co.uk.

Security Updates available for Adobe Reader and Acrobat

10/06/09

Adobe have released security bulletin APSB09-07 addressing critical vulnerabilities in Adobe Reader 9.1.1 and Acrobat 9.1.1 and earlier versions. These vulnerabilities would cause the application to crash and could potentially allow an attacker to take control of the affected system.
 

Microsoft DirectShow (quartz.dll) Vulnerabilty

29/05/09

Microsoft has today issued a Security Advisory (#971778) regarding a zero-day vulnerability in its quartz.dll serving up DirectShow content for quicktime movies. The vulnerability is remotely exploitable by a user visiting a malicious website and being served a maliciously crafted DirectShow quicktime movie.

Spam and malware continue to rise through May

28/05/09

Spam and malware continued to increase through May, with spam volumes up 27.7 per cent; and malware up 28.7 per cent, according to analysis of Internet threats by managed security service, Network Box.  The number of viruses originating from the UK has also risen over last month; the UK is now responsible for three per cent of the world's malware (from less than two per cent last month).

Microsoft IIS 6.0 WebDAV Remote Authentication Bypass

19/05/09

A zero-day vulnerability against Microsoft IIS has recently been announced and made public by "Kingcope". Affected Microsoft IIS servers currently have no built-in protection against this vulnerability and may be susceptible to attack.

Details of the vulnerability have been published on the Full Disclosure security list, and are available here.

Game-changing anti-spam system released

15/05/09

A new system of fighting spam, that significantly improves the performance of spam filters, has been developed by managed security firm, Network Box, and is released today. The system, eMail Relationship Manager, has shown in beta tests over the last four months to eradicate spam almost entirely - 99.5 per cent - rather than the 95-98 per cent effectiveness of most existing anti-spam systems. (Network Box sampled 10,000 spam emails. 'Traditional' anti-spam systems were found to let through around 200. eMail Relationship Manager would catch at least 150 of those 200.)

NETWORK BOX LAUNCHES NEW CUSTOMER PORTAL

11/05/09

Managed security company, Network Box launches its new Box Office Customer Portal tomorrow (12th May 2009) providing customers with a single, powerful web-based user interface for the management of one or more Network Boxes, at a country, regional or global level.

Box Office Customer Portal provides real-time status of Network Box devices and allows for formalised two -way communication with the Network Box Network Operation Centres (NOCs) responsible for monitoring and configuration of the equipment and network.

Internet threats rise by 63 per cent in April

30/04/09

30 April 2009 - Internet threats have risen by a massive 63 per cent in April, according to analysis by managed security company, Network Box. One in four (24.6 per cent) of these threats is a phishing attack.

The majority of viruses still originate from the US (14.9 per cent) and Korea (7.7 per cent).  China is slightly higher than last month, responsible for 5.8 per cent of the world’s viruses (up from 5.3 per cent last month). Korea is also the main source of intrusion attacks, responsible for 35 per cent of all attacks.

New mail scanning and rules engine from Network Box improves spam scanning speed by 100 per cent

29/04/09

Network Box, the managed security company, has released a new heuristics package which significantly improves spam detection (this includes malware carried over spam email) and also its own high-performance rules engine which increases scanning speeds by 100 per cent. This makes Network Box's mail scanning system the most effective on the market.

Network Box has released two new heuristic mail scanning modules:

Network Box releases user interface improvements for customers

27/04/09

Network Box, the managed security company, has released a package of improvements to its user interface for customers. The improvements are designed to make it easier for customers to manage their security services from Network Box, and to simplify reporting and site navigation.

The changes include:

MailPortalNetwork Box

New Customer Portal to be available on 15th May

24/04/09

Responding to customer feedback, Network Box has been working to improve the Customer Portal we call 'Box Office'.  This will go live on 15th May 2009 and will not only be easier to use, it will also allow our customers a unified view on all their Network Boxes providing information on the change requests both past and present, the connectivity to the Internet and between offices and the health on numerous metrics.  Have a pre-view of our new user guide.

As emailed malware increases, companies should implement Sender Policy Framework (SPF) technology

17/04/09

As emailed malware increases, companies should implement Sender Policy Framework (SPF) technology.

With a continued rise in emailed malware and phishing attacks (Phishing Attacks Rise as Recession Bites), companies should implement Sender Policy Framework (SPF) technology to protect against spoofed email addresses, according to new advice from managed security company, Network box.

Security policies should now include Twitter

14/04/09

Business should review their security policies to include Twitter, according to a guide released today by Network Box.

The Guide to Secure Use of Twitter is part of a series of 'securing social media' guides from Network Box, and is designed to help IT managers review or create new user policies and update company security processes to include Twitter and other microblogs.

Enabling IT departments to carry out their proper responsibilities

10/04/09

There are many advantages for an organization to outsource its network security to a managed service, but it basically boils down to increased cost-effectiveness and how a managed service allows an IT department to operate without in-depth understanding of the various security functions, such as:

Phishing attacks rise as recession bites – now 50 per cent of all virus threats

30/03/09

Phishing attacks now account for just over 50 per cent of all virus threats, according to new figures from managed security firm, Network Box. This figure (50.6 per cent) is the highest it has been so far this year, and is up from 33 per cent one month ago.

The top source of viruses is the US, which this month accounts for just over 21 (21.66) per cent of the world's viruses. This figure is significantly higher than at the start of the year, when the US produced between 13 and 15 per cent of viruses.

Securing social media series - Part 2: Social Networking

23/03/09

Network Box has published the second in a series of 'securing social media' guides for companies. The guide to securing social networks here is designed to help in-house IT teams educate their employees on the safe use of social networks at work.

The guide has been written in response to a change in the policy of many companies over the past 12 months to allow mass access to social networking sites, such as Facebook and LinkedIn. It covers how to avoid security or policy breaches, such as:

Cloud computing – a secure future?

20/03/09

The debate about cloud computing seems to be everywhere at the moment. There are still some security concerns – as there are bound to be when you put critical data and resources outside the corporate firewall. But in general, companies are becoming more comfortable with giving data to a third party (lost USB sticks and laptops on trains aside, of course).

There are three areas of concern that seem to crop up again and again when I’m asked about cloud computing:

Are your proxy connections vulnerable?

20/03/09

At the end of February, the US Computer Emergency Readiness Team (US-CERT) issued an alert that proxy servers operating in interception mode (‘transparent proxies’) may be vulnerable to hacking  (http://www.kb.cert.org/vuls/id/435052).

China close to equalling US as biggest source of viruses

02/03/09

China now accounts for 15.7 per cent of all viruses, according to statistical analysis in February by managed security firm, Network Box. This is second only to the US, which now accounts for 16.04 per cent of the world’s viruses.

China’s rise as a dominant source of threats has been rapid; last month it accounted for just 3.9 per cent of viruses, so it will be interesting to see if this increase is permanent. Korea has also increased the percentage of viruses for which it is responsible: 10.8 per cent in February, up from 8.9 per cent in January.

Companies should define security policies for outbound Internet connections as tightly as inbound

23/02/09

Companies should apply the same stringent security controls to information leaving their network as they do to inbound information, according to managed security company, Network Box.

Companies should stop whitelisting their own email domain names

17/02/09

Nearly 20 per cent of all spam now forges the domain name of the recipient – ie looks as though it comes from the recipient, or someone in their company - according to analysis by managed security firm, Network Box. This has increased from just one per cent in June 2008. As a result, Network Box is advising all companies not to whitelist their own domain names.

Network Box Security Bulletin: Valentines Day Malware

14/02/09

A quick reminder that we are coming up to Valentine's day and you can expect a big increase in the malware using this day as a way of getting the unwary to go to malicious sites. Whilst your anti-malware solutions both on your desktop and on your Network Box should protect your users whilst at work, if you have remote workers or staff on the road, then it would be wise to put out a warning reminding them of this ploy.

US regains the top spot in the virus charts as the single biggest source of viruses Korea takes second place

30/01/09

The US regained the dubious position of the single biggest source of viruses in January 2009, according to analysis of Internet threats by managed security firm, Network Box. Nearly 15 (14.8) per cent of all viruses originate from the US. In second place is Korea, responsible for nearly nine (8.9) per cent of all viruses; an increase from eight per cent in December and 6.3 per cent in November.

Network Box produces Simple Internet Security Guide for employees

28/01/09

Managed security firm, Network Box, has produced a simple guide to Internet security, designed for IT managers to give to computer users within their organisations.  The guide, which can be downloaded free from http://www.network-box.co.uk/files/Network-Box-Poster.pdf, includes simple steps that all Internet users should take to ensure their and their company network’s security.

Network Box finds customers are the best resellers

28/01/09

Managed IT security firm, Network Box (www.network-box.co.uk), has announced a Customer Partnership Programme to pass on new discounts to its existing customers. It is introducing this ‘friend get friend’ scheme, to assist existing customers who introduce new customers to Network Box.

2008 was a record year for spam and viruses, says Network Box - 2009 heralds a breakthrough in the battle against spam

09/01/09

2008 was a record year for spam and viruses, according to figures released today by managed security firm, Network Box.

The company estimates that, on average, businesses in the UK were required to block: 1.2 million spam messages; 44,000 email-borne viruses; 1.3 million attempted intrusion attacks; 6.3 million attempted firewall hacks; and access to nearly 500,000 blacklisted websites. (This is based on a ‘per box’ average of Network Box’s customers.)

Ineffective security management leads to slow Internet speeds and security vulnerabilities

05/01/09

Nearly two-thirds of UK businesses do not look after their Internet security effectively, according to new research. A survey undertaken by managed security firm, Network Box (www.network-box.co.uk), found that just over 65 per cent of companies spend ‘no time’ managing their security systems (anti-virus, anti-spam, content filtering, VPN, intrusion detection and web usage and bandwidth policies). Nearly 15 (14.7) per cent spend less than 30 minutes per week managing their IT security.

2008

Vulnerability in Internet Explorer Could Allow Remote Code Execution

16/12/08

Microsoft has released a security advisory 961051 in response to reports of a 'zero-day' vulnerability in Internet Explorer v7 affecting some of its platforms. This is currently being tracked as CVE-2008-4844.
 

UK government ‘not doing enough’ to protect against cyber crime

10/12/08

Eighty per cent of businesses believe the government is not doing enough to protect the UK’s national infrastructure from cyber threats, according to research from managed security firm, Network Box (www.network-box.co.uk).

This year’s follow up enquiry by the House of Lords to its 2007 report on Internet Security called for increased measures by government to protect the UK from cyber threats, including greater international co-operation.

'Tis the season to be spammy

10/12/08

The Internet security industry is bracing itself to tackle a deluge of spam in the run up to Christmas. Managed security firm, Network Box, reported sighting a number of "test" spam emails over the weekend - usually the first step in a widespread spam campaign.

Simon Heron, Internet Security Analyst at Network Box, said: "This is usually a sign that a spammer is testing the waters before a new, orchestrated spam campaign."

www.securitywatch.co.uk

Trying to Put an End to Spam

10/12/08

One of the most frustrating things about the Internet has been the rise of spam. These unwanted e-mails choke our networks, steal precious storage space and in recent years have become the delivery vehicle for any number of malicious types of payloads intended to cause all kinds of harm.

This is why a new effort under way at a company called Network Box is worth watching. Network Box is working on an approach to fighting spam that keeps track of the relationships that individuals create when responding to incoming electronic mail.

McColo Shutdown - Global Reduction in Spam and Malware

14/11/08

For several weeks now, Internet Security Researchers have identified the servers hosted by McColo Corp (in San Jose, California, USA) as a major source of command-and-control of International Spam Botnets. On November 12th 2008, the Internet Connectivity to McColo Corp was cut by both its connectivity providers (Global Crossing and Hurricane Electric) - effectively disconnecting all the McColo Corp hosted servers from the Internet.

New worm attack set to make users squirm

05/11/08

A worm that exploits the bug Microsoft Corp. patched in an emergency update 11 days ago is actively attacking systems, several security companies and researchers said Monday. Network Box and Kaspersky Labs label the worm Exploit.Win32.MS08-067.g, and we are actively tracking its spread. This is the seventh variant of MS08-067 exploit for which protection signatures have been released.

Network Box launches beta testing of new 'relationship management' technology

22/10/08

Network Box, the managed UTM security firm, is launching beta testing on a new relationship management technology to combat spam. 'Network Box Relationship Manager' will offer customers significant improvements on any existing spam detection technology, by analysing not just content and IP address, but by applying learning from email user behaviour and relationships, to understand which emails are welcomed by the user, and which are unsolicited spam.

Network Box appoints James Mackie as sales manager

22/10/08

James Mackie has joined managed security company, Network Box UK, as sales manager. He takes on responsibility for building the company's sales strategy and developing sales to SMEs and corporates in the legal, media and finance sectors.

Mackie joins from City Information Services, where he was UK sales manager. In this role, he oversaw the company’s sales strategy development and delivery, and was responsible for more than GBP6 million sales to FTSE 500 companies.

Phishing goes back to basics for attack methods

22/10/08

Phishers are adopting a ‘back to basics' approach with attacks. According to analysis of more than 20 billion internet threats by Network Box, the majority of emails sent by cyber criminals still deploy tactics designed to persuade the recipient that they should visit a website, or download a file.

Network Box launches beta testing of new ‘relationship management’ technology to combat spam

14/10/08

Network Box, the managed UTM security firm, is launching beta testing on a new relationship management technology to combat spam. ‘Network Box Relationship Manager’ will offer customers significant improvements on any existing spam detection technology, by analysing not just content and IP address, but by applying learning from email user behaviour and relationships, to understand which emails are welcomed by the user, and which are unsolicited spam.

August sees record amount of active viruses

23/09/08

August was the worst month for cyber crime with threats increasing by 51 per cent. The Network Box alert status was at four out of five (indicating a ‘critical threat' status) throughout all of August.

Virus activity peaked on the 23rd August with more than 14,600 new viruses seen on that day alone with 1,080,899 threat signatures and 1,374,666 spam signatures active in its database. September's big threat is gearing up to be from Trojan and Worm activity, with a significant rise in Trojans through early September, peaking on 12 September at 65 detected per day.

In The Boxing Ring - September 2008

19/09/08

In the September 2008 edition of "In The Boxing Ring", Mark Webb-Johnson, CTO Network Box Corporation, discusses the spam and malware onslaught coming from the Storm botnet, the launch of Asian language support in Network Box interfaces and reports, and the launch of Google Safe Browsing and Searching. He also outlines what Network Box can do to assist customers with combating these threats, and presents the updates for Network Box Patch Tuesday, and what customers can expect.

Minimizing Hurricane Ike's Threat to Data Landscape

19/09/08

HOUSTON, Sept. 19 /PRNewswire/ -- In the wee hours of Saturday, September 13, Houstonians who had not been evacuated to higher ground "sheltered in place," waiting for one of the worst natural disasters to hit southeast Texas in more than two decades. But while everyone waited and wondered if their homes and businesses would be in one piece after the winds and the rain had subsided, a number of company executives were resting easy that at least their critical data was being actively protected even as Hurricane Ike raged on.

Network Box Releases Web Content Filtering Engine for Google Safe Search and Google Safe Browsing

13/08/08

6 August 2008 - Network Box, a managed security company, has announced the beta release of its web content filtering technology to support Google Safe Search and Google Safe Browsing. The new functionality will be added to its range of unified threat management (UTM) products to allow businesses to easily implement protection against Internet threats, and prevent sites and web pages with inappropriate content from appearing in search engine results.

Google Safe Browsing

Angelina and other celebrities being used as spam bait

13/08/08

Secure Computing has detected a spam-based email attack that links to new Web-based malware and features news on Angelina Jolie as bait. On average, about 2.28 percent of the total global daily email volume contains subjects like "Angelina Jolie naked," "Angelina Jolie nude movie," and "Angelina Jolie naked video."

Angelina Jolie is great "spam bait" -- four times more popular than the No 2. celeb on Secure's new Top-10 Celebrity Spam List. Approximately 100,000 unique IP addresses were identified as responsible for this spam on the first day of its outbreak

Fake-CNN spam mutates as attacks continue

13/08/08

The massive attack that has infected PCs by tricking users into clicking links in fake messages from CNN.com shows little sign of ending soon, security researchers said Friday.

According to MX Logic Inc. , spam posing as CNN.com Top 10 lists peaked at close to 11 million messages per hour early Thursday, but remained at high volumes throughout the day Friday.

ALERT: Spam eMails with links to websites hosting Spyware

08/08/08

Over the past few weeks, Network Box Security Response has been monitoring an increase in a particular form of malicious activity. We feel it prudent to urgently advise you, and for you to advise your users, of this issue.

We are seeing a large number of malicious spam emails attempting to lure users into clicking on links and downloading spyware to infect computers. The subjects of these emails contain phrases such as:

* Anjelina Jolie Free Video

* Britney Spears and Paris Hilton are lovers. Video proof.

All-in-One Network Security Appliances: Common Myths and Misperceptions

04/08/08

As this white paper is being written, the concept of UTM (unified threat management) has been around for more than five years. Network Box Corporation has actually been in existence for almost 10. Yet, even after these many years, and with so many other vendors now on the market, the UTM concept has yet to be as generally accepted as one would expect, considering the enormous benefits it provides in terms of simplification, manageability, and cost of network gateway security.

The US Continues to Dominate as the Most Prolific Source of Spam and Viruses

04/08/08

1st August 2008 - The US has continued its rule as the most prevalent source of spam and viruses, according to threat statistics analysed by managed security company, Network Box. The country has held this unwanted title throughout 2008 and, based on July’s figures, this trend looks set to continue. This month, the US was responsible for one in four viruses (25.2 per cent), outstripping its nearest rival, Australia, by more than four to one (5.8 per cent).

House of Lords cybercrime report

18/07/08

The recent House of Lords cybercrime report urged new policies to improve data security. IT PRO looks at how business and law enforcement would be affected.

“Most police stations don’t have the resources to deal efficiently with these sorts of crimes, and if the crime doesn’t relate to a multi-million pound fraud, victims get advised to contact either PayPal, or agencies such as Antiphishing.org to seek justice,” said Simon Heron, internet security analyst for Network Box.

Charnwood Borough Council chooses Network Box

18/07/08

CHARNWOOD BOROUGH Council (CBC) has chosen managed security company, Network Box, to protect it from all online threats. CBC will be using Network Box’s unified threat management product, which will secure the organisation’s network and provide it with a firewall and email and web filtering.

ALERT: CVE-2008-1447 - Multiple DNS implementations vulnerable to cache poisoning

11/07/08

The Domain Name System (DNS) is responsible for translating host names to IP addresses (and vice versa) and is critical for the normal operation of internet-connected systems. DNS cache poisoning is an attack technique that allows an attacker to introduce forged DNS information into the cache of a caching nameserver. DNS cache poisoning is not a new concept; in fact, there are published articles that describe a number of inherent deficiencies in the DNS protocol and defects in common DNS implementations that facilitate DNS cache poisoning.

Network Box Monitors Global Release of an SQL Injection Attack (via botnet)

23/06/08

Over the past few days, Network Box has been monitoring an increase in targetted SQL Injection website attack activity. Currently, this only appears to be affecting certain versions of the Microsoft IIS web server, coupled with Active Server Pages (ASP) scripting and Microsoft SQL Server. The attacker attempts to modify sql database records for websites.

Network Box Monitoring increased activity on botnet sql injection

19/06/08

Over the past few days, Network Box has been monitoring an increase in highly-targetted SQL Injection website attack activity. Currently, this only appears to be affecting certain versions of the Microsoft IIS web server, coupled with Active Server Pages (ASP) scripting and Microsoft SQL Server. The attacker attempts to modify sql database records for websites.

Network Box Releases new E-1000x, E-2000x and E-4000x Models

02/06/08

Companies can consolidate their network security through one solution and greatly reduce the strain on operating resources, thanks to the new E-Series product range launched today by managed security company, Network Box. The E-Series range includes solutions for medium (E1000) to large companies (E2000 and E4000) to allow the Network Box service to grow with their customers.

The wireless gateways to cybercrime

22/05/08

On a hot summer's day two years ago, members of the Washington police force arrived at a building in Arlington County to arrest a suspected paedophile. The detectives were met by an elderly woman who, it emerged, had nothing to do with the crime. The problem was her wireless router. The device was openly allowing access to the internet throughout her apartment building and it is suspected that one of her neighbours was using it to upload child pornography.

Debian (and derived versions) Linux OpenSSL Vulnerability

22/05/08

A vulnerability has been reported in the Debian Linux use of the OpenSSL library. This vulnerability can lead to generation of insecure security keys that can be brute-force attacked. The problem affects the Debian version of the Linux operating system, as well as Debian-derived variants (such as Ubuntu).

Network Box Security Response has analysed the vulnerability, as well as our own version of the openssl library, and can confirm the following:

Change to Default Recommended Policy (Smart Tag Object Blocks)

21/05/08

Network Box Security Response is announcing a scheduled change to the default recommended policy on Network Boxes, regarding policy-blocking of objects in html emails. For those customers who have requested blocking of objects in html emails, Network Box Security Response will be implementing a change to the default policy and introducing an enhancement to support an issue with Microsoft Smart Tags.

Change to Default Recommended Policy (nested '.bin' attachments)

21/05/08

Network Box Security Response is announcing a scheduled change to the default recommended policy on Network Boxes, regarding policy-blocking of nested '.bin' attachments to email messages. For those customers who have requested blocking of executable files, by extension, in nested email attachments, and in particular the '.bin' file extension, Network Box Security Response will be implementing a change to the default policy and introducing an enhancement to support an issue with Microsoft Office 2007 documents.

Network Box Releases 'Live Watch' Trace functionality for Mail, Web Proxy, Firewall and IDP

07/05/08

Network Box Corporation, a leading provider of managed UTM+ services, is proud to announce the release of 'live watch' trace functionality for its full range of award-winning UTM+ appliances.

Great value in being able to manage Internet security in a single place

06/05/08

Network Box USA, Inc., was formed in response to the escalating danger posed by security breaches, virus attacks and threats arising from widespread use of the Internet. Their mission is to provide small and medium-sized enterprises with a computer network security solution that is effective yet affordable. The company's flagship product is the Network Box Internet Threat Prevention and Security device.

Web hack attack infects 500,000 pages

28/04/08

Attacks on legitimate Web domains, including some belonging to the United Nations that began earlier this week, have expanded dramatically, security researchers said Friday, with hundreds of thousands of pages hacked by Friday.

Some researchers are indicating this may be related to the privilege escalation problems with Microsoft Security Advisory 951306 (affecting primarily web hosting companies running Microsoft IIS server).

Parasitic Malware Back In Vogue

10/04/08

The security industry is witnessing a resurgence of parasitic malware, according to managed security company, Network Box. Following a detailed analysis of Internet traffic, the company found that the old technique – whereby malware is added to existing files on a system – is being adapted by blackhats to create a new breed of increasingly-sophisticated viruses.

Network Box USA Launches Channel Program

08/04/08

SAN FRANCISCO--At the RSA Conference today, Network Box USA (www.networkboxusa.com), a leading provider of cutting-edge computer network security solutions, unveiled a channel program for its award-winning Network Box Internet threat prevention and security device.

Major Web sites hit with growing Web attack

31/03/08

A blossoming Web attack, first reported by security researcher Dancho Danchev earlier this month, has expanded to hit over a million Web pages, including many well-known sites.

"The number and importance of the sites has increased," wrote Danchev in a Friday blog posting where he reported that trusted Web sites such as USAToday.com, Target.com and Walmart.com have been hit with the attack.

ATM Security leaves customers vulnerable to hackers

20/02/08

It has been estimated that something in the region of 70 percent of the ATMs in current use are based not on the proprietary hardware, software and communication protocol platforms of old but instead on PC/Intel hardware and commodity operating systems, the most popular being Windows XP embedded. In fact, it is not too much of a stretch of the imagination to think of these ATMs as being simple PCs running simple PC operating systems and using the standard Internet Protocol that we are all used to.

Network Box releases firmware enhancements to support real-time performance improvements

11/02/08

Network Box Security Response has today released a set of enhancements to support real-time adjustments of protection scanning systems, based on actual performance and load of the Network Box appliance. The new software has been released, installed and verified, as PUSHCODE to all customers running the Network Box NBRS-3.0 firmware. These customers can now take advantage of the new features and facilities.

Understanding ATM Security and Risks

04/02/08

Pierluigi Stella (Network Box USA), talking at CUISPA 2008 on the subject of 'Understanding ATM Security and Risks', explains that "when we think of ATM security we tend to think mainly to the cases of robbery or fraud that so very often make the headlines. These stories are catchy and interesting, and undoubtedly they constitute the largest part of ATM security problems. But by doing so we tend to forget that ATM machines are nothing more than Windows workstations connected to a network, and as such they are susceptible to attacks just as every other computer in a bank.

MS08-001 - Critical Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution

21/01/08

Microsoft have released their January 2008 Security Bulletin MS08-001 and announced "Critical Vulnerabilities in Windows TCP/IP Could Allow Remote Code Execution".

These vulnerabilities, if exploited, will result in denial of service and/or remote code execution (with kernel-level privileges) on Microsoft Windows systems. The use of a Microsoft personal firewall does not, in the default configuration, provide protection against exploit of these vulnerabilities. Systems affected include Windows 2000, XP, Vista, and others.

Microsoft confirms Excel bug; recommends blocking files

18/01/08

Ongoing attacks are exploiting a flaw in most versions of the popular Excel spreadsheet application, Microsoft's security group said Tuesday.

Poisoned websites attack visitors

18/01/08

Thousands of small web shops have been unwittingly poisoned with malicious code that infects PC users who visit. Security experts said the sophisticated attack had succeeded on a larger scale than many other similar attacks.

New mass hack strikes sites, confounds researchers

15/01/08

A massive hack of legitimate Web sites has been spreading malware to visitors' PCs, using a new tactic that has made detection "extraordinarily difficult," security experts said Monday.

According to the researcher who broke the news, the hack, which involves several hundred sites, may be related to a November 2007 break-in at Fasthosts Internet Ltd., a U.K.-based hosting service that in early December acknowledged that some clients' log-in credentials had been pinched.

CEOs on Facebook easy to dupe

10/01/08

January 04, 2008 (Computerworld) -- Corporate executives should think twice about the information they disclose on social networking sites such as Facebook, a Hong Kong-based security company warned today after duping gullible CEOs and finance directors into revealing personal details that could be used for so-called spear-phishing attacks.

Review of 2007: Lost in translation

09/01/08

April 2007: ... more earth-shattering than the 4.3 magnitude earthquake that hit Kent, was a survey from Network Box that found 99 per cent of SMEs said they did not know how often their AV software was updated.

Boom times for hi-tech criminals

02/01/08

Starting a career as a cyber criminal got much easier in 2007.

This busy market was driving innovation, said Simon Heron, managing director of Network Box. "We've seen attacks move away from sending e-mail with poisoned attachments to groups doing drive-by downloads," he said.

2007

The threat from cyber gangs is not just from criminals but also state sponsored groups

27/12/07

As predicted by Network Box at the beginning of the year, 2007 saw a huge increase in malware. The company saw more than a 60 per cent increase in spam and more than a 70 per cent increase in Trojans and keyloggers throughout the year.

Also as predicted, 2007 saw a marked increase in infected websites. Network Box saw an increase in excess of 200 per cent from 2006, also reported by the SANS institute, which saw a 183 per cent increase.

Cyber-gangs gear up for 2008

24/12/07

Spear phishing, spyware and state-sponsored cyber-attacks will define the security agenda in 2008, a security company predicted today.

Network Box predicted a rise in targeted attacks on senior level employees, and an increase in social engineering leaving employees' personal information and corporate databases wide open to exploitation.

The company believes that the popularity of social networking sites, such as Facebook and MySpace, is allowing cyber-criminals to access information previously unobtainable.