[1512] in Security FYI

home help back first fref pref prev next nref lref last post

[IS&T Security-FYI] SFYI Newsletter, January 23, 2009

daemon@ATHENA.MIT.EDU (Monique Yeaton)
Fri Jan 23 15:40:06 2009

Message-Id: <96248DC8-5171-44FC-A1C0-C081C4B48F23@mit.edu>
From: Monique Yeaton <myeaton@mit.edu>
To: ist-security-fyi@mit.edu
Mime-Version: 1.0 (Apple Message framework v930.3)
Date: Fri, 23 Jan 2009 15:34:32 -0500
Cc: itss@mit.edu
Content-Type: multipart/mixed; boundary="===============1770921020=="
Errors-To: ist-security-fyi-bounces@mit.edu


--===============1770921020==
Content-Type: multipart/alternative; boundary=Apple-Mail-15-1032601837


--Apple-Mail-15-1032601837
Content-Type: text/plain;
	charset=US-ASCII;
	format=flowed;
	delsp=yes
Content-Transfer-Encoding: 7bit


In this issue:

1. Latest Cyber Security Alerts
2. Twitter Phishing Scams and Hacks
3. IAP on Handling Sensitive Data Was Well Attended


--------------------------------------
1. Latest Cyber Security Alerts
--------------------------------------

  * Microsoft *

Microsoft Windows Does Not Disable AutoRun Properly:
AutoRun is a feature Microsoft includes in Windows as an enhancement  
to the user experience, but it is hardly perfect. Parties both shady  
and outright malicious have subverted AutoRun to execute code without  
input from the user. To make matters worse, US-CERT recently found  
that the instructions MS had published for disabling AutoRun were  
ineffective.

Full details about the vulnerability and a recommended solution can be  
found here:
<http://www.us-cert.gov/cas/techalerts/TA09-020A.html>

Microsoft has since this alert updated their guidelines and posted  
them here:
<http://support.microsoft.com/kb/953252>

Following the instructions are not for the inexperienced user!!
If you are not sure about disabling AutoRun on your machine, or  
whether the feature has already been disabled, contact your local  
desktop support person or the Computer Help Desk.

  * Apple *

Apple QuickTime Updates for Multiple Vulnerabilities:
Apple has released QuickTime 7.6 to correct multiple vulnerabilities  
affecting QuickTime for Mac OS X and Windows. Attackers may be able to  
exploit these vulnerabilities to execute arbitrary code or cause a  
denial of service. Upgrade to QuickTime 7.6. This and other updates  
are available via Software Update or via Apple Downloads <http://support.apple.com/downloads/ 
 >.

About the security content of QuickTime 7.6
<http://support.apple.com/kb/HT3403>

QuickTime MPEG-2 Playback Component:
An input validation issue exists in the QuickTime MPEG-2 Playback  
Component for Windows. Accessing a maliciously crafted movie file may  
lead to an unexpected application termination or arbitrary code  
execution. This update addresses the issue by performing additional  
validation of MPEG-2 files. This issue does not affect systems running  
Mac OS X.

The QuickTime MPEG-2 Playback Component is not installed by default,  
and is provided separately from QuickTime. Details are available here:
<http://www.apple.com/quicktime/mpeg2/>

More details about the QuickTime MPEG-2 Playback Component:
<http://support.apple.com/kb/HT3404>


-----------------------------------------------
2. Twitter Phishing Scams and Hacks
-----------------------------------------------

The buzz in the cyber security sphere the past few weeks has been  
about the latest Twitter hack. What is Twitter? Anyone who paid  
attention to this week's historic presidential inauguration is  
probably now up to speed, but for those who still wonder, Twitter is a  
type of micro-blog site for people who like to inform others what is  
going on in their life without having to post an entire article about  
it. It is very similar to the status bar on Facebook.

Learn more about Twitter:
<http://webtrends.about.com/od/socialnetworking/a/what-is-twitter.htm>
<http://www.computerworld.com/action/article.do?command=viewArticleBasic&articleId=9126362 
 >

A few weeks ago, someone or a group of people hacked into Twitter and  
began stealing usernames and passwords. They then began posting to  
Twitter as if they were the trusted friends and acquaintances of other  
people using Twitter. They were able to post links that would lure  
these unsuspecting victims to phishing scams and malware sites.

During this same time, some celebrities had their Twitter accounts  
"hijacked" and messages were posted that put them in a bad light.  
These hacks were purported to be due to a weakness in the internal  
support tools which Twitter is currently getting properly secured. But  
another news report claims this hijacking occurred because of a weak  
password of a Twitter employee, that was cracked using a simple  
password-guessing program.

Read the full story here:
<http://www.computerworld.com/action/article.do?command=viewArticleBasic&articleId=332121 
 >


-------------------------------------------------------------------
3. IAP on Handling Sensitive Data Was Well Attended
-------------------------------------------------------------------

The 2009 IAP session "Handling Sensitive Data - What Everyone Needs to  
Know" was well attended on the three different dates. Questions and  
comments from attendees showed that they, as MIT employees, are  
concerned about they can do to protect the sensitive information in  
their care. The various laws and regulations concerning sensitive data  
and the roll out of new Massachusetts regulations this year will  
impact all of us at MIT who are handling data on a regular basis or  
who may have handled and stored it in the past, both in hard copy and  
electronically.

For those who weren't able to attend, the handouts and presentation  
are posted online at:
<http://web.mit.edu/infoprotect/resources.html>

In addition, make a note that next week, January 28 is Data Privacy  
Day. Designed to raise awareness and generate discussion about data  
privacy practices and rights, Data Privacy Day activities in the  
United States have included privacy professionals, corporations,  
government officials and representatives, academics, and students  
across the country.

Learn more about Data Privacy Day:
<https://www.privacyassociation.org/index.php?option=com_content&task=view&id=1702&Itemid=70 
 >
<http://www.intel.com/policy/dataprivacy.htm>


=========================
Monique Yeaton
IT Security Awareness Consultant
MIT Information Services & Technology (IS&T)
(617) 253-2715
http://web.mit.edu/ist/security

---------------------------------------
Important: DO NOT GIVE OUT YOUR PASSWORDS!
Ignore emails asking you to provide yours. IS&T will *NEVER* ask you  
for your password.


--Apple-Mail-15-1032601837
Content-Type: text/html;
	charset=US-ASCII
Content-Transfer-Encoding: quoted-printable

<html><body style=3D"word-wrap: break-word; -webkit-nbsp-mode: space; =
-webkit-line-break: after-white-space; "><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; min-height: 17px; "><br></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; ">In =
this issue:</div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; min-height: 17px; "><br></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; ">1. =
Latest Cyber Security Alerts</div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; ">2. Twitter Phishing Scams and =
Hacks</div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; ">3. IAP on Handling Sensitive Data Was Well =
Attended</div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; min-height: 17px; "><br></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
min-height: 17px; "><br></div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; =
">--------------------------------------</div><div style=3D"margin-top: =
0px; margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: =
normal normal normal 14px/normal Helvetica; ">1. Latest Cyber Security =
Alerts</div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; =
">--------------------------------------</div><div style=3D"margin-top: =
0px; margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: =
normal normal normal 14px/normal Helvetica; min-height: 17px; =
"><br></div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; ">&nbsp;* Microsoft *&nbsp;</div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
min-height: 17px; "><br></div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; ">Microsoft Windows Does Not =
Disable AutoRun Properly:</div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; ">AutoRun is a feature Microsoft =
includes in Windows as an enhancement to the user experience, but it is =
hardly perfect. Parties both shady and outright malicious have subverted =
AutoRun to execute code without input from the user. To make matters =
worse, US-CERT recently found that the instructions MS had published for =
disabling AutoRun were ineffective.</div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; min-height: 17px; "><br></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
">Full details about the vulnerability and a recommended solution can be =
found here:</div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; ">&lt;<a =
href=3D"http://www.us-cert.gov/cas/techalerts/TA09-020A.html">http://www.u=
s-cert.gov/cas/techalerts/TA09-020A.html</a>></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
min-height: 17px; "><br></div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; ">Microsoft has since this alert =
updated their guidelines and posted them here:</div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
">&lt;<a =
href=3D"http://support.microsoft.com/kb/953252">http://support.microsoft.c=
om/kb/953252</a>></div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; min-height: 17px; "><br></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
">Following the instructions are not for the inexperienced =
user!!&nbsp;</div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; ">If you are not sure about disabling AutoRun on =
your machine, or whether the feature has already been disabled, contact =
your local desktop support person or the Computer Help Desk.</div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
min-height: 17px; "><br></div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; ">&nbsp;* Apple *</div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
min-height: 17px; "><br></div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; ">Apple QuickTime Updates for =
Multiple Vulnerabilities:</div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; ">Apple has released QuickTime 7.6 =
to correct multiple vulnerabilities affecting QuickTime for Mac OS X and =
Windows. Attackers may be able to exploit these vulnerabilities to =
execute arbitrary code or cause a denial of service. Upgrade to =
QuickTime 7.6. This and other updates are available via Software Update =
or via Apple Downloads &lt;<a =
href=3D"http://support.apple.com/downloads/"><span =
style=3D"text-decoration: underline ; color: =
#2151aa">http://support.apple.com/downloads/</span></a>>.</div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
min-height: 17px; "><br></div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; ">About the security content of =
QuickTime 7.6</div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; color: rgb(33, 81, 170); "><span style=3D"color: =
#000000">&lt;<a href=3D"http://support.apple.com/kb/HT3403"><span =
style=3D"text-decoration: =
underline">http://support.apple.com/kb/HT3403</span></a>></span></div><div=
 style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
min-height: 17px; "><br></div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; ">QuickTime MPEG-2 Playback =
Component:</div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; ">An input validation issue exists in the =
QuickTime MPEG-2 Playback Component for Windows. Accessing a maliciously =
crafted movie file may lead to an unexpected application termination or =
arbitrary code execution. This update addresses the issue by performing =
additional validation of MPEG-2 files. This issue does not affect =
systems running Mac OS X.</div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; min-height: 17px; "><br></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
">The QuickTime MPEG-2 Playback Component is not installed by default, =
and is provided separately from QuickTime. Details are available =
here:</div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; ">&lt;<a =
href=3D"http://www.apple.com/quicktime/mpeg2/">http://www.apple.com/quickt=
ime/mpeg2/</a>></div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; min-height: 17px; "><br></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
">More details about the QuickTime MPEG-2 Playback Component:</div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
">&lt;<a =
href=3D"http://support.apple.com/kb/HT3404">http://support.apple.com/kb/HT=
3404</a>></div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; min-height: 17px; "><br></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
min-height: 17px; "><br></div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; =
">-----------------------------------------------</div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; ">2. =
Twitter Phishing Scams and Hacks</div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; =
">-----------------------------------------------</div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
min-height: 17px; "><br></div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; ">The buzz in the cyber security =
sphere the past few weeks has been about the latest Twitter hack. What =
is Twitter? Anyone who paid attention to this week's historic =
presidential inauguration is probably now up to speed, but for those who =
still wonder, Twitter is a type of micro-blog site for people who like =
to inform others what is going on in their life without having to post =
an entire article about it. It is very similar to the status bar on =
Facebook.&nbsp;</div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; min-height: 17px; "><br></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
">Learn more about Twitter:</div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; ">&lt;<a =
href=3D"http://webtrends.about.com/od/socialnetworking/a/what-is-twitter.h=
tm">http://webtrends.about.com/od/socialnetworking/a/what-is-twitter.htm</=
a>></div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; ">&lt;<a =
href=3D"http://www.computerworld.com/action/article.do?command=3DviewArtic=
leBasic&amp;articleId=3D9126362">http://www.computerworld.com/action/artic=
le.do?command=3DviewArticleBasic&amp;articleId=3D9126362</a>></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
min-height: 17px; "><br></div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; ">A few weeks ago, someone or a =
group of people hacked into Twitter and began stealing usernames and =
passwords. They then began posting to Twitter as if they were the =
trusted friends and acquaintances of other people using Twitter. They =
were able to post links that would lure these unsuspecting victims to =
phishing scams and malware sites.&nbsp;</div><div style=3D"margin-top: =
0px; margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: =
normal normal normal 14px/normal Helvetica; min-height: 17px; =
"><br></div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; ">During this same time, some celebrities had =
their Twitter accounts "hijacked" and messages were posted that put them =
in a bad light. These hacks were purported to be due to a weakness in =
the internal support tools which Twitter is currently getting properly =
secured. But another news report claims this hijacking occurred because =
of a weak password of a Twitter employee, that was cracked using a =
simple password-guessing program.</div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; min-height: 17px; "><br></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
">Read the full story here:</div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; ">&lt;<a =
href=3D"http://www.computerworld.com/action/article.do?command=3DviewArtic=
leBasic&amp;articleId=3D332121">http://www.computerworld.com/action/articl=
e.do?command=3DviewArticleBasic&amp;articleId=3D332121</a>></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
min-height: 17px; "><br></div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; min-height: 17px; "><br></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
">-------------------------------------------------------------------</div=
><div style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; ">3. =
IAP on Handling Sensitive Data Was Well Attended</div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
">-------------------------------------------------------------------</div=
><div style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
min-height: 17px; "><br></div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; ">The 2009 IAP session "Handling =
Sensitive Data - What Everyone Needs to Know" was well attended on the =
three different dates. Questions and comments from attendees showed that =
they, as MIT employees, are concerned about they can do to protect the =
sensitive information in their care. The various laws and regulations =
concerning sensitive data and the roll out of new Massachusetts =
regulations this year will impact all of us at MIT who are handling data =
on a regular basis or who may have handled and stored it in the past, =
both in hard copy and electronically.</div><div style=3D"margin-top: =
0px; margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: =
normal normal normal 14px/normal Helvetica; min-height: 17px; =
"><br></div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; ">For those who weren't able to attend, the =
handouts and presentation are posted online at:&nbsp;</div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
">&lt;<a =
href=3D"http://web.mit.edu/infoprotect/resources.html">http://web.mit.edu/=
infoprotect/resources.html</a>></div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; min-height: 17px; "><br></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; ">In =
addition, make a note that next week, January 28 is Data Privacy Day. =
Designed to raise awareness and generate discussion about data privacy =
practices and rights, Data Privacy Day activities in the United States =
have included privacy professionals, corporations, government officials =
and representatives, academics, and students across the =
country.</div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; min-height: 17px; "><br></div><div =
style=3D"margin-top: 0px; margin-right: 0px; margin-bottom: 0px; =
margin-left: 0px; font: normal normal normal 14px/normal Helvetica; =
">Learn more about Data Privacy Day:&nbsp;</div><div style=3D"margin-top: =
0px; margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: =
normal normal normal 14px/normal Helvetica; ">&lt;<a =
href=3D"https://www.privacyassociation.org/index.php?option=3Dcom_content&=
amp;task=3Dview&amp;id=3D1702&amp;Itemid=3D70">https://www.privacyassociat=
ion.org/index.php?option=3Dcom_content&amp;task=3Dview&amp;id=3D1702&amp;I=
temid=3D70</a>></div><div style=3D"margin-top: 0px; margin-right: 0px; =
margin-bottom: 0px; margin-left: 0px; font: normal normal normal =
14px/normal Helvetica; ">&lt;<a =
href=3D"http://www.intel.com/policy/dataprivacy.htm">http://www.intel.com/=
policy/dataprivacy.htm</a>></div><div style=3D"margin-top: 0px; =
margin-right: 0px; margin-bottom: 0px; margin-left: 0px; font: normal =
normal normal 14px/normal Helvetica; min-height: 17px; "><br></div><div =
apple-content-edited=3D"true"> <span class=3D"Apple-style-span" =
style=3D"border-collapse: separate; color: rgb(0, 0, 0); font-family: =
Helvetica; font-size: 14px; font-style: normal; font-variant: normal; =
font-weight: normal; letter-spacing: normal; line-height: normal; =
orphans: 2; text-align: auto; text-indent: 0px; text-transform: none; =
white-space: normal; widows: 2; word-spacing: 0px; =
-webkit-border-horizontal-spacing: 0px; -webkit-border-vertical-spacing: =
0px; -webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: =
auto; -webkit-text-stroke-width: 0; "><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><span class=3D"Apple-style-span" =
style=3D"border-collapse: separate; color: rgb(0, 0, 0); font-family: =
Helvetica; font-size: 14px; font-style: normal; font-variant: normal; =
font-weight: normal; letter-spacing: normal; line-height: normal; =
orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; =
widows: 2; word-spacing: 0px; -webkit-border-horizontal-spacing: 0px; =
-webkit-border-vertical-spacing: 0px; =
-webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: =
auto; -webkit-text-stroke-width: 0px; "><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><span class=3D"Apple-style-span" =
style=3D"border-collapse: separate; color: rgb(0, 0, 0); font-family: =
Helvetica; font-size: 14px; font-style: normal; font-variant: normal; =
font-weight: normal; letter-spacing: normal; line-height: normal; =
orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; =
widows: 2; word-spacing: 0px; -webkit-border-horizontal-spacing: 0px; =
-webkit-border-vertical-spacing: 0px; =
-webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: =
auto; -webkit-text-stroke-width: 0px; "><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><span class=3D"Apple-style-span" =
style=3D"border-collapse: separate; color: rgb(0, 0, 0); font-family: =
Helvetica; font-size: 14px; font-style: normal; font-variant: normal; =
font-weight: normal; letter-spacing: normal; line-height: normal; =
orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; =
widows: 2; word-spacing: 0px; -webkit-border-horizontal-spacing: 0px; =
-webkit-border-vertical-spacing: 0px; =
-webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: =
auto; -webkit-text-stroke-width: 0px; "><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><span class=3D"Apple-style-span" =
style=3D"border-collapse: separate; color: rgb(0, 0, 0); font-family: =
Helvetica; font-size: 14px; font-style: normal; font-variant: normal; =
font-weight: normal; letter-spacing: normal; line-height: normal; =
orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; =
widows: 2; word-spacing: 0px; -webkit-border-horizontal-spacing: 0px; =
-webkit-border-vertical-spacing: 0px; =
-webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: =
auto; -webkit-text-stroke-width: 0px; "><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><span class=3D"Apple-style-span" =
style=3D"border-collapse: separate; color: rgb(0, 0, 0); font-family: =
Helvetica; font-size: 14px; font-style: normal; font-variant: normal; =
font-weight: normal; letter-spacing: normal; line-height: normal; =
orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; =
widows: 2; word-spacing: 0px; -webkit-border-horizontal-spacing: 0px; =
-webkit-border-vertical-spacing: 0px; =
-webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: =
auto; -webkit-text-stroke-width: 0px; "><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><span class=3D"Apple-style-span" =
style=3D"border-collapse: separate; color: rgb(0, 0, 0); font-family: =
Helvetica; font-size: 14px; font-style: normal; font-variant: normal; =
font-weight: normal; letter-spacing: normal; line-height: normal; =
orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; =
widows: 2; word-spacing: 0px; -webkit-border-horizontal-spacing: 0px; =
-webkit-border-vertical-spacing: 0px; =
-webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: =
auto; -webkit-text-stroke-width: 0px; "><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><span class=3D"Apple-style-span" =
style=3D"border-collapse: separate; color: rgb(0, 0, 0); font-family: =
Helvetica; font-size: 14px; font-style: normal; font-variant: normal; =
font-weight: normal; letter-spacing: normal; line-height: normal; =
orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; =
widows: 2; word-spacing: 0px; -webkit-border-horizontal-spacing: 0px; =
-webkit-border-vertical-spacing: 0px; =
-webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: =
auto; -webkit-text-stroke-width: 0px; "><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><span class=3D"Apple-style-span" =
style=3D"border-collapse: separate; color: rgb(0, 0, 0); font-family: =
Helvetica; font-size: 14px; font-style: normal; font-variant: normal; =
font-weight: normal; letter-spacing: normal; line-height: normal; =
orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; =
widows: 2; word-spacing: 0px; -webkit-border-horizontal-spacing: 0px; =
-webkit-border-vertical-spacing: 0px; =
-webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: =
auto; -webkit-text-stroke-width: 0px; "><div style=3D"word-wrap: =
break-word; -webkit-nbsp-mode: space; -webkit-line-break: =
after-white-space; "><div><span class=3D"Apple-style-span" =
style=3D"font-size: 12px; "><div style=3D"font-size: 12px; =
"><br></div><div style=3D"font-size: 12px; =
">=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=
=3D</div><div style=3D"font-size: 12px; ">Monique Yeaton</div><div =
style=3D"font-size: 12px; ">IT Security Awareness Consultant</div><div =
style=3D"font-size: 12px; ">MIT Information Services &amp; Technology =
(IS&amp;T)</div><div style=3D"font-size: 12px; ">(617) =
253-2715</div><div style=3D"font-size: 12px; "><a =
href=3D"http://web.mit.edu/ist/security">http://web.mit.edu/ist/security</=
a></div></span></div><div><br></div><div><span class=3D"Apple-style-span" =
style=3D"color: rgb(192, 0, 0); font-family: Arial; font-size: 12px; =
font-weight: bold; =
">---------------------------------------</span></div><div><font =
class=3D"Apple-style-span" color=3D"#C00000" face=3D"Arial" =
size=3D"3"><span class=3D"Apple-style-span" style=3D"font-size: 12px; =
"><b><span class=3D"Apple-style-span" style=3D"color: rgb(0, 0, 0); =
font-family: Helvetica; font-size: 14px; font-weight: normal; =
"><div><font class=3D"Apple-style-span" color=3D"#C00000" face=3D"Arial" =
size=3D"3"><span class=3D"Apple-style-span" style=3D"font-size: 12px; =
"><b>Important: DO NOT GIVE OUT YOUR =
PASSWORDS!&nbsp;</b></span></font></div><div><font =
class=3D"Apple-style-span" color=3D"#C00000" face=3D"Arial" =
size=3D"3"><span class=3D"Apple-style-span" style=3D"font-size: 12px; =
"><b>Ignore emails asking you to provide yours. IS&amp;T will *NEVER* =
ask you for your =
password.&nbsp;</b></span></font></div></span></b></span></font></div></di=
v></span></div></span></div></span></div></span></div></span></div></span>=
</div></span></div></span></div></span> </div><br></body></html>=

--Apple-Mail-15-1032601837--

--===============1770921020==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
ist-security-fyi mailing list
ist-security-fyi@mit.edu
To Unsubscribe http://mailman.mit.edu/mailman/listinfo/ist-security-fyi
--===============1770921020==--

home help back first fref pref prev next nref lref last post