Google Blocks

We recently felt it necessary to take, temporarily, extreme action for the majority of University users: we blocked Google Docs. Why would we do such a thing, you might well ask. Surely Google Docs is a perfectly legitimate site, widely … Continue reading

Posted in Email, General Security | 92 Comments

Musings on Mac Malware

Over the past couple of weeks, OxCERT have been somewhat overwhelmed by Mac malware. This isn’t quite the first time we’ve dealt with problems on Macs – we’ve seen several compromised over the years through weak or exposed ssh credentials, … Continue reading

Posted in General Security | 10 Comments

Apple and security support

In a companion article I discuss Mac malware, and how this has recently become much more of a problem than has previously been the case. As well as Apple’s apparently slow response to a recent vulnerability, and general air of … Continue reading

Posted in General Security | 13 Comments

The weekend worm that wasn’t … yet

As I write this, it seems that my fears on Friday have not come true over the weekend. To date, things have been quiet. Nevertheless, we still expect a storm. We just don’t know when. While we wait, let’s consider … Continue reading

Posted in General Security | 1 Comment

The Price of Phish

Over the last two months OxCERT have been inundated with compromised University accounts being used to send spam.  So how are so many accounts being abused, what are the risks, and what is the cost to the University? Let’s deal … Continue reading

Posted in General Security | 1 Comment

URL shortening – a threat to privacy?

OxCERT recently received a request for guidance on URL shortening with regards to using such services to re-direct users to sites that may ask for sensitive personal information.  The concern was that the third-party offering the service may be able … Continue reading

Posted in General Security | Leave a comment

SSL Interception: Making the world a safer place?

Hi all and welcome to OxCERT’s new blog.  Here we will try to keep you up to date with any developments and projects we are involved in regarding security in the University of Oxford.  We’ll also take the chance to … Continue reading

Posted in General Security | 1 Comment

Hello world!

Welcome to OxCERT’s new blog. We’ll be using this to complement our existing series of bulletins and monthly reports, but unlike those will not be access-restricted. We are looking to discuss some of the work we’re doing, respond to queries, … Continue reading

Posted in General Security | Leave a comment