Quarantine Your Unsecured PCs
Internet Initiative Japan has released the IIJ Quarantine Network Solution, a service that creates a secure corporate LAN network by automatically detecting and isolating improperly secured PCs that are connected to a network.
A quarantine network is a mechanism for automatically detecting PCs connected to a corporate LAN that are infected by viruses or worms, or that do not have the most recent security patches installed. The technology then forcibly isolates the problematic PCs and moves them onto a completely separate network where they cannot communicate with other PCs on a company’s server. There, they can be treated and disinfected as needed.
Corporate networks are becoming ubiquitous and now can often be accessed from anywhere at anytime, and while this increases convenience for the users, it also exposes the network to threats created by unsecured PCs. The Blaster worm epidemic in 2003 caused widespread damage on corporate networks, and insufficient security measures have led to many instances of information leaks, which makes security management of network PCs and measures for removing unsecured PCs from a corporate network an urgent priority.
IIJ has created two service types to meet the needs of different client network environments: Type A (Gateway Type), for companies with many office locations and Type B (LAN Type) a high-end version for medium to large LANs. The Type A plan only requires the installation of a quarantine device at the gateway and the Type B plan requires replacement of the DHCP server, which provides PC quarantine functionality without extensive changes to the company network.
In conjunction with this release, IIJ is offering a free trial service of approximately two months — Type A trial service at two to three locations and Type B trial service for one to two clients.
OATH Announces 2006 Road Map
OATH, the Initiative for Open AuTHentication, announced the organization’s 2006 technology road map that builds upon the technical framework for open authentication established by the OATH Reference Architecture released earlier this year.
The 2006 OATH Road Map outlines specific deliverables that will help realize the goals of device innovation and embedding, interoperability and native application and platform support. Work items currently defined in the OATH Road Map fall under the following categories:
• Multiple Token, Device, and Client APIs
• Provisioning Protocols
• Web Services Security
OATH has grown to 55 members since it was formed nearly two years ago. The organization continues to seek new members from security and application vendors, end-user companies, services firms and individuals seeking to help shape industry-backed standards for royalty-free open authentication technology. Send a request to [email protected] to receive a copy of the OATH 2006 Road Map.
Malware Attacking Visitors on Adult Sites
PandaLabs has reported the appearance of the first samples of malware that install themselves on users’ computers by using the JavaScript windows remote code execution critical vulnerability in Internet Explorer. This exploit is carried out through web pages with adult content that attack computers enabling the malware to infect systems. There is not yet a solution to this vulnerability.
The infection mechanism starts when users visit any of a series of web pages with adult content. The page redirects users to a second page which contains the exploit used to install the first malware, called keks.exe. This is installed on the computer and then downloads and runs a second file called all.exe. They are both detected as Downloader.DLE and are aimed at reducing browser security levels and at enabling other malware to enter the computer. If Downloader.DLE is successful, it will install several files on computers, including the annoying Adware/PicsPlace, a clicker that continuously opens adult content pages, as well as several malicious cookies. It is also programmed to periodically download a file with other URLs, which it will then contact with the consequent risk of new variants of malware infecting the computer.
Software Kills Info on Lost Computers
Beachhead Solutions has released Lost Data Destruction software version 1.0. The security solution automatically destroys specified data on lost or stolen laptop and desktop computers to prevent its compromise or misuse. Unlike most other data security products, this software-based solution does not depend on user compliance or involvement and is particularly crucial for government and business entities that are custodians of confidential data.
The release of version 1.0 follows several successful enterprise pilots that proved the effectiveness and ease of use for banks and professional services firms needing to protect sensitive client data. Lost Data Destruction uses preset behavior-based triggers to recognize when a device has been lost or stolen, and then destroys designated files, file types, folders or encryption tags. The software eliminates sensitive data even if an unauthorized user never logs onto the Internet.
LDD protects important information when other security solutions fail due to common user behavior such as:
• Password or token left with stolen computer.
• Computer left on or in standby when stolen.
• Data not eliminated from contractor’s computer after engagement.

