Feeds & Podcasts

Blogs

Archive

Tags

#SecChat $1 million guarantee 12 Scams of Christmas access to live fraud resolution agents Acquisition Alex Thurber Android Apple botnet Channel Partners cloud security Compliance Consumer counter identity theft credit card fraud and protection credit fraud alerts credit monitoring credit monitoring and resolution critical infrastructure Cyber Security Mom cyberbullying Cybercrime cybermom data breach data center data center security Data Protection Dave DeWalt DLP Email & Web Security embedded encryption Endpoint Protection enterprise facebook fake anti-virus software Family Safety global threat intelligence google government Hacktivism how to talk to kids how to talk to teens identity fraud identity fraud scams identity protection identity protection $1 million guarantee identity protection fraud identity protection surveillance identity surveillance identity theft identity theft expert identity theft fraud identity theft protection identity theft protection product Identity thieves and cybercriminals intel iphone kids online behavior lost wallet protection malware McAfee McAfee Channel McAfee Identity Protection McAfee Initiative to Fight Cybercrime McAfee Labs McAfee security products Mid-Market Mobile mobile security monitor credit and personal information Network Security online personal data protection online safety Operation Aurora PCI personal identity theft fraud personal information loss personal information protection phishing privacy proactive identity protection proactive identity surveillance Public Sector restore credit and personal identity Risk and Compliance scam scams scareware security smartphones social media social networking social networks spam Stuxnet twitter vulnerability Web 2.0 work with victim restore identity

Jim Walter

Jim Walter Jim Walter currently serves as manager of the McAfee Threat Intelligence Service (MTIS) for McAfee Labs, and focuses on new threat research as well as the cataloging and maintenance of vulnerabilities and associated countermeasures. He has been with McAfee for over 12 years and works extensively with the internal sales and support teams to provide knowledge and guidance around vulnerability and malware threats. Day-to-day, Jim leads a global team of Threat Analysts, and presides over the content generated by this team (Security Advisories, Countermeasure/detector feeds, Global Threat Intelligence apps, and more). Jim is a frequent speaker at industry events and conferences, and co-host of AudioParasitics – The Official Podcast of McAfee Labs.

Posts by Jim Walter

Urchins, LizaMoons, Tigers, and Bears

Friday, October 21, 2011 at 11:44am

In early April, I wrote about the famed “LizaMoon” SQL-injection attacks. I said it then, and I’ll say it again now: SQL-injection (SQLi) attacks are a constant. Some of these attacks are more visible than others.  Some adversaries find intelligent ways to hide their tracks so as not to splatter evidence of their misdeeds all over various search Read more…

Tags: , , , , , , , , , ,

Steve Jobs’ Impact on One Fan

Wednesday, October 5, 2011 at 10:47pm

Where does one start? I’m not sure if I would consider this a research blog post. In the sea of comments and chatter today, it just feels right to say something. It feels right to “Think Different.” Like many others, I was raised an Apple faithful. Later I came to embrace and believe in not just the products but Read more…

Tags: , , , , ,

‘Cookiejacking’ Poses Minimal Danger
if You Keep Good Habits

Friday, May 27, 2011 at 3:41pm

“Cookiejacking,” anyone? In the last few days, a new vulnerability in Microsoft Internet Explorer has made its way through the media. Disclosed at the Hack on the Box conference by the independent researcher Rosario Valotta, this flaw takes advantage of a property of HTML5 to steal the cookies from its victim. This kind of attack, Read more…

Tags: , ,

Blue-Light Special on Zeus

Wednesday, May 11, 2011 at 12:54pm

With much fanfare and much to the chagrin of ne’er-do-wells far and wide, the Zeus Toolkit source code has been released to the public. This is notable because normally it would cost quite a bit to purchase the kit and associated services (in excess of of US$10,000). With a release of this sort, the most Read more…

Tags: , , , , , , ,

LizaMoon the Latest SQL-Injection Attack

Monday, April 4, 2011 at 9:38pm

Working in the security industry brings about a myriad of challenges. This is especially true for vendors. We must do our best to educate and inform. At the same time, we want to avoid laying on the FUD–or scaring customers into making poorly educated security decisions. Which brings us to the recent LizaMoon attacks. There Read more…

Tags: , , , , ,

Making Sense of McAfee Risk Advisor

Tuesday, December 21, 2010 at 12:55pm

The second Tuesday of every month (“Patch Tuesday”) is a very busy day for information security warriors. They have to digest a flood of information from affected vendors (primarily Microsoft and Adobe) and then cross-check and correlate that against whatever their security vendors say. They have to take into account their actual environments, the assets and resources Read more…

Tags: , ,