Stories by John Ribeiro

Yahoo discloses user data requests from US law enforcement agencies

By John Ribeiro | 18 June, 2013 05:52

Yahoo has received between 12,000 to 13,000 requests for user data from law enforcement agencies in the U.S. between Dec. 1 and May 31 this year, the company said Monday.

Google detects phishing attacks in Iran ahead of elections

By John Ribeiro | 13 June, 2013 02:36

Google has detected large-scale phishing attacks targeting users in Iran, ahead of presidential elections in the country.

Facebook, Twitter support Google's call for transparency in surveillance requests

By John Ribeiro | 12 June, 2013 06:55

Facebook, Twitter and Microsoft have joined Google in asking for greater transparency in surveillance requests, following widespread criticism of the U.S. government's surveillance programs and the role of the Internet companies.

US intelligence chief defends surveillance programs

By John Ribeiro | 07 June, 2013 06:34

The U.S. government said late Thursday that it is authorized to collect intelligence information of non-U.S. persons located outside the country, in the wake of news reports on the government's surveillance programs.

Report: Secret court order gives US access to Verizon call records

By John Ribeiro | 06 June, 2013 10:21

The U.S. National Security Agency has been allowed by a court order to collect phone records of a large number of customers of Verizon, according to a report in the Guardian on Thursday.

Online ring for trading in stolen credit card data busted

By John Ribeiro | 06 June, 2013 05:50

Law enforcement agencies in the U.S., Vietnam and the U.K. have disbanded a ring that allegedly sold online credit card details since 2007.

Microsoft, US feds disrupt Citadel botnet network

By John Ribeiro | 06 June, 2013 02:34

Microsoft and the U.S. Federal Bureau of Investigation have taken aim at a botnet network based on malware called Citadel that is held responsible for stealing people's online banking information and personal identities.

Drupal resets account passwords after detecting unauthorised access

By John Ribeiro | 30 May, 2013 03:30

Drupal.org has reset account passwords after it found unauthorized access to information on its servers.

SoftBank said to be in talks with US to allay national security fears

By John Ribeiro | 23 May, 2013 06:55

The U.S. government is in negotiations with SoftBank for greater control over equipment purchases by Sprint Nextel and the selection of one of the Japanese company's nominee to the U.S. carrier's board, according to a news report.

Proposed U.S. law aims to counter cybertheft with import bans

By John Ribeiro | 08 May, 2013 04:19

A bill proposed in the U.S. Senate aims to block imports of products containing U.S. technology stolen online, a move that appears primarily directed at China.

ACLU complains to FTC that mobile carriers leave Android phones unsecured

By John Ribeiro | 17 April, 2013 06:47

Smartphones with custom versions of Android offered by large mobile operators in the U.S. are not getting security updates as regularly as phones from Google, or smartphones from other vendors like Microsoft, according to a complaint by the American Civil Liberties Union to the Federal Trade Commission.

White House threatens to veto CISPA ahead of vote

By John Ribeiro | 17 April, 2013 03:48

The White House has threatened to veto the controversial Cyber Intelligence Sharing and Protection Act (CISPA) in its present form, citing concerns that the bill does not adequately prevent sharing of irrelevant personal information.

Vudu video service resets customer passwords after hard drives theft

By John Ribeiro | 10 April, 2013 04:33

Walmart's video service Vudu has reset its customers' passwords after it found that hard drives were among items stolen from its office.

Australia charges alleged Anonymous member

By John Ribeiro | 05 April, 2013 06:46

Australian police have charged an unidentified juvenile, who is suspected to be a member of the hacker group Anonymous, on a number of counts related to unauthorized access to computer data.

Bitcoin exchange faces DDoS, even as the digital currency surges

By John Ribeiro | 29 March, 2013 07:02

Bitcoin exchange Mt. Gox faced a distributed denial-of-service attack late Thursday, at a time the digital currency is seeing an upward swing.

CSO Corporate Partners
  • Webroot
  • Trend Micro
  • NetIQ
rhs_login_lockGet exclusive access to CSO, invitation only events, reports & analysis.
CSO Directory

Access Risk Management Suite

The Access Risk Management Suite enables organizations in industries across the board, to improve security, corporate and regulatory compliance and increase operational efficiency.

Security Awareness Tip

Incident handling is a vast topic, but here are a few tips for you to consider in your incident response. I hope you never have to use them, but the odds are at some point you will and I hope being ready saves you pain (or your job!).


  1. Have an incident response plan.

  2. Pre-define your incident response team 

  3. Define your approach: watch and learn or contain and recover.

  4. Pre-distribute call cards.

  5. Forensic and incident response data capture.

  6. Get your users on-side.

  7. Know how to report crimes and engage law enforcement. 

  8. Practice makes perfect.

For the full breakdown on this article

Security ABC Guides

Warning: Tips for secure mobile holiday shopping

I’m dating myself, but I remember when holiday shopping involved pouring through ads in the Sunday paper, placing actual phone calls from tethered land lines to research product stock and availability, and actually driving places to pick things up. Now, holiday shoppers can do all of that from a smartphone or tablet in a few seconds, but there are some security pitfalls to be aware of.