[1283] in Security FYI

home help back first fref pref prev next nref lref last post

[IS&T Security-FYI] SFYI Newsletter, October 31, 2008

daemon@ATHENA.MIT.EDU (Monique Yeaton)
Fri Oct 31 16:37:19 2008

Message-Id: <64E6B6C7-C494-4396-9F72-E7299786E724@mit.edu>
From: Monique Yeaton <myeaton@mit.edu>
To: ist-security-fyi@mit.edu
Mime-Version: 1.0 (Apple Message framework v929.2)
Date: Fri, 31 Oct 2008 16:26:55 -0400
Content-Type: multipart/mixed; boundary="===============0279064562=="
Errors-To: ist-security-fyi-bounces@mit.edu


--===============0279064562==
Content-Type: multipart/alternative; boundary=Apple-Mail-144-216995909


--Apple-Mail-144-216995909
Content-Type: text/plain;
	charset=US-ASCII;
	format=flowed;
	delsp=yes
Content-Transfer-Encoding: 7bit


HAPPY HALLOWEEN!

In this issue:

1. MIT Security Awareness Day is Nov. 5
2. eVoting Machine Study Finds Problems


----------------------------------------------------
1. MIT Security Awareness Day is Nov. 5
----------------------------------------------------

Throughout October, which is National Cyber Security Awareness Month,  
the IS&T department at MIT coordinated a month-long awareness campaign  
on cyber security for the first time. The goal is to increase  
awareness of Internet security issues, including password security,  
protection from phishing attacks, and appropriate, safe use of file  
sharing software. During October, posters and TV screens around campus  
displayed security messages about these topics.  Visit http://web.mit.edu/ist/topics/security/campaign2008/ 
  for more details.

To conclude this year's campaign, IS&T is teaming up with the  
Department of Facilities and the Audit Division to sponsor Security  
Awareness Day on Wednesday, November 5.

The entire MIT community is welcome to come to the Media Lab (Bartos  
Theater from 2 p.m. to 3:30 p.m.) to hear seasoned security  
professionals talk about technical security, physical security and the  
risks of social engineering and phishing attacks.

You won't want to miss it.  Our featured speakers are Scott Bradner,  
Technology Security Officer at Harvard University, John DiFava,  
Director of Facilities Operations and Security at MIT, and Tom  
Jagatic, Senior IT Security Consultant from IS&T.

The speaker presentations end at 3:30; afterwards the lobby outside  
the theater will have informational and security product tables with a  
vast array of take-aways, raffles, and most important, food and  
refreshments for all.

I look forward to seeing you on MIT Security Awareness Day!


-----------------------------------------------------
2. eVoting Machine Study Finds Problems
-----------------------------------------------------

Going to vote next Tuesday? As if Halloween ghouls and ghosts weren't  
enough to scare us. Read this report:

A newly-released report says that the electronic voting machines used  
in New Jersey and other US states are unreliable and potentially  
vulnerable to hacking.  A New Jersey judge ordered the report as part  
of a lengthy legal battle over the use of the devices, which are  
Sequoia AVC Advantage 9.00H direct recording electronic (DRE) touch- 
screen voting machines.  The report says that the machines can be  
manipulated by installing a replacement chip containing malicious  
software on the main circuit board.

Read more:
<http://www.computerworld.com/action/article.do?command=viewArticleBasic&articleId=9118204 
 >

And a site that collects problems with voting machines:
<http://blackboxvoting.com/s9/>

MIT and CalTech are involved in their own study. Read more about it in  
the Tech:
<http://tech.mit.edu/V128/N43/evoting.html>
<http://tech.mit.edu/V128/N44/evoting.html>



=========================
Monique Yeaton
IT Security Awareness Consultant
MIT Information Services & Technology (IS&T)
(617) 253-2715
http://web.mit.edu/ist/security

---------------------------------------
Come to Security Awareness Day at MIT!: November 5, 2 - 5 PM, in  
Bartos Theater (E15-070) and Lobby http://web.mit.edu/ist/topics/security/campaign2008/securityday.html





--Apple-Mail-144-216995909
Content-Type: text/html;
	charset=US-ASCII
Content-Transfer-Encoding: quoted-printable

<html><body style=3D"word-wrap: break-word; -webkit-nbsp-mode: space; =
-webkit-line-break: after-white-space; "><div><br></div><div =
style=3D"word-wrap: break-word; -webkit-nbsp-mode: space; =
-webkit-line-break: after-white-space; ">HAPPY =
HALLOWEEN!<div><br></div><div>In this issue:</div><div><br></div><div>1. =
MIT Security Awareness Day is Nov. 5</div><div>2.&nbsp;eVoting Machine =
Study Finds =
Problems</div><div><br></div><div><br></div><div>-------------------------=
---------------------------</div><div>1. MIT Security Awareness Day is =
Nov. =
5</div><div>----------------------------------------------------</div><div=
><br></div><div>Throughout October, which is National Cyber Security =
Awareness Month, the IS&amp;T department at MIT coordinated a month-long =
awareness campaign on cyber security for the first time. The goal is to =
increase awareness of Internet security issues, including password =
security, protection from phishing attacks, and appropriate, safe use of =
file sharing software. During October, posters and TV screens around =
campus displayed security messages about these topics. =
&nbsp;Visit&nbsp;<a =
href=3D"http://web.mit.edu/ist/topics/security/campaign2008/">http://web.m=
it.edu/ist/topics/security/campaign2008/</a>&nbsp;for more =
details.<br><br>To conclude this year's campaign, IS&amp;T is teaming up =
with the Department of Facilities and the Audit Division to sponsor =
Security Awareness Day on Wednesday, November 5.<br><br>The entire MIT =
community is welcome to come to the Media Lab (Bartos Theater from 2 =
p.m. to 3:30 p.m.) to hear seasoned security professionals talk about =
technical security, physical security and the risks of social =
engineering and phishing attacks.<br><br>You won't want to miss it. =
&nbsp;Our featured speakers are Scott Bradner, Technology Security =
Officer at Harvard University, John DiFava, Director of Facilities =
Operations and Security at MIT, and Tom Jagatic, Senior IT Security =
Consultant from IS&amp;T.<br><br>The speaker presentations end at 3:30; =
afterwards the lobby outside the theater will have informational and =
security product tables with a vast array of take-aways, raffles, and =
most important, food and refreshments for all.<br><br>I look forward to =
seeing you on MIT Security Awareness =
Day!</div><div><br></div><div><br></div><div>-----------------------------=
------------------------</div><div>2. eVoting Machine Study Finds =
Problems</div><div>-----------------------------------------------------</=
div><div><br></div><div>Going to vote next Tuesday? As if Halloween =
ghouls and ghosts weren't enough to scare us. Read this =
report:</div><div><br></div><div>A newly-released report says that the =
electronic voting machines used&nbsp;in New Jersey and other US states =
are unreliable and potentially&nbsp;vulnerable to hacking. &nbsp;A New =
Jersey judge ordered the report as part&nbsp;of a lengthy legal battle =
over the use of the devices, which are Sequoia&nbsp;AVC Advantage 9.00H =
direct recording electronic (DRE) touch-screen&nbsp;voting machines. =
&nbsp;The report says that the machines can be manipulated&nbsp;by =
installing a replacement chip containing malicious software on =
the&nbsp;main circuit board.</div><div><br></div><div>Read =
more:&nbsp;</div><div>&lt;<a =
href=3D"http://www.computerworld.com/action/article.do?command=3DviewArtic=
leBasic&amp;articleId=3D9118204">http://www.computerworld.com/action/artic=
le.do?command=3DviewArticleBasic&amp;articleId=3D9118204</a>></div><div><b=
r></div><div>And a site that collects problems with voting =
machines:</div><div>&lt;<a =
href=3D"http://blackboxvoting.com/s9/">http://blackboxvoting.com/s9/</a>><=
/div><div><br></div><div>MIT and CalTech are involved in their own =
study. Read more about it in the Tech:&nbsp;</div><div>&lt;<a =
href=3D"http://tech.mit.edu/V128/N43/evoting.html">http://tech.mit.edu/V12=
8/N43/evoting.html</a>></div><div>&lt;<a =
href=3D"http://tech.mit.edu/V128/N44/evoting.html">http://tech.mit.edu/V12=
8/N44/evoting.html</a>></div><div><br><div><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><div><br></div></div></div></div></div><div =
apple-content-edited=3D"true"><span class=3D"Apple-style-span" =
style=3D"border-collapse: separate; color: rgb(0, 0, 0); font-family: =
Helvetica; font-size: 14px; font-style: normal; font-variant: normal; =
font-weight: normal; letter-spacing: normal; line-height: normal; =
orphans: 2; text-align: auto; text-indent: 0px; text-transform: none; =
white-space: normal; widows: 2; word-spacing: 0px; =
-webkit-border-horizontal-spacing: 0px; -webkit-border-vertical-spacing: =
0px; -webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: =
auto; -webkit-text-stroke-width: 0; "><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><span class=3D"Apple-style-span" =
style=3D"border-collapse: separate; color: rgb(0, 0, 0); font-family: =
Helvetica; font-size: 14px; font-style: normal; font-variant: normal; =
font-weight: normal; letter-spacing: normal; line-height: normal; =
orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; =
widows: 2; word-spacing: 0px; -webkit-border-horizontal-spacing: 0px; =
-webkit-border-vertical-spacing: 0px; =
-webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: =
auto; -webkit-text-stroke-width: 0px; "><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><div style=3D"word-wrap: break-word; =
-webkit-nbsp-mode: space; -webkit-line-break: after-white-space; "><div =
style=3D"word-wrap: break-word; -webkit-nbsp-mode: space; =
-webkit-line-break: after-white-space; "><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><div style=3D"word-wrap: break-word; =
-webkit-nbsp-mode: space; -webkit-line-break: after-white-space; "><div =
style=3D"word-wrap: break-word; -webkit-nbsp-mode: space; =
-webkit-line-break: after-white-space; "><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><div style=3D"word-wrap: break-word; =
-webkit-nbsp-mode: space; -webkit-line-break: after-white-space; "><div =
style=3D"word-wrap: break-word; -webkit-nbsp-mode: space; =
-webkit-line-break: after-white-space; "><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><div style=3D"word-wrap: break-word; =
-webkit-nbsp-mode: space; -webkit-line-break: after-white-space; =
"><div><span class=3D"Apple-style-span" style=3D"font-size: 12px; "><div =
style=3D"font-size: 12px; "><br =
class=3D"khtml-block-placeholder"></div><div style=3D"font-size: 12px; =
">=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D</div><div style=3D"font-size: 12px; ">Monique Yeaton</div><div =
style=3D"font-size: 12px; ">IT Security Awareness Consultant</div><div =
style=3D"font-size: 12px; ">MIT Information Services &amp; Technology =
(IS&amp;T)</div><div style=3D"font-size: 12px; ">(617) =
253-2715</div><div style=3D"font-size: 12px; "><a =
href=3D"http://web.mit.edu/ist/security">http://web.mit.edu/ist/security</=
a></div></span></div><div><br></div><div><span class=3D"Apple-style-span" =
style=3D"color: rgb(192, 0, 0); font-family: Arial; font-size: 12px; =
font-weight: bold; =
">---------------------------------------</span></div><div><font =
class=3D"Apple-style-span" color=3D"#C00000" face=3D"Arial" =
size=3D"3"><span class=3D"Apple-style-span" style=3D"font-size: 12px; =
"><b><span class=3D"Apple-style-span" style=3D"color: rgb(0, 0, 0); =
font-family: Helvetica; font-size: 14px; font-weight: normal; =
"><div><span class=3D"Apple-style-span" style=3D"font-family: Arial; =
font-size: 12px; font-weight: bold; "><font class=3D"Apple-style-span" =
color=3D"#AE1D13">Come to Security Awareness Day at MIT!: November 5, 2 =
- 5 PM, in Bartos Theater (E15-070) and Lobby&nbsp;</font></span><font =
class=3D"Apple-style-span" face=3D"Arial" size=3D"3"><span =
class=3D"Apple-style-span" style=3D"font-size: 12px; "><b><font =
class=3D"Apple-style-span" color=3D"#AE1D13"><a =
href=3D"http://web.mit.edu/ist/topics/security/campaign2008/securityday.ht=
ml">http://web.mit.edu/ist/topics/security/campaign2008/securityday.html</=
a></font></b></span></font></div></span></b></span></font></div></div></di=
v></div></div></div></div></div></div></div></div><div><br></div></div></s=
pan><br class=3D"Apple-interchange-newline"></div></span><br =
class=3D"Apple-interchange-newline"> </div><br></body></html>=

--Apple-Mail-144-216995909--

--===============0279064562==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
ist-security-fyi mailing list
ist-security-fyi@mit.edu
To Unsubscribe http://mailman.mit.edu/mailman/listinfo/ist-security-fyi
--===============0279064562==--

home help back first fref pref prev next nref lref last post