<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
   <channel>
      <title>IT Security &amp; Policy Alerts</title>
      <link>http://www.lsu.edu/itsecurity</link>
      <description>Alerts from the IT Security &amp; Policy Office at LSU</description>
      <language>en-us</language>
      <pubDate>Sun, 22 Nov 2009 04:00:00 CST</pubDate>
      <lastBuildDate>Sun, 22 Nov 2009 04:00:00 CST</lastBuildDate>
      <generator>Rhythmyx</generator>
      <managingEditor>its-security@lsu.edu (ITS)</managingEditor>
      <webMaster>its-security@lsu.edu (ITS)</webMaster>
	  <atom:link href="http://itsweb.lsu.eduhttp://itsweb.lsu.edu/ITS_Security/Alerts/IT Security &amp; Policy Alerts_rss.xml" rel="self" type="application/rss+xml" />
	  
	                            <item>
<title>Apple Security Update 2009-006 / Mac OS X v10.6.2 </title>
<link>http://itsweb.lsu.edu/ITS_Security/Alerts/item3710.html</link>
<description>&lt;p&gt;Apple Security Update 2009-006 / Mac OS X v10.6.2 is now available and updates several components of Mac OS X.&lt;br /&gt;&lt;br /&gt;Security Update 2009-006 / Mac OS X v10.6.2 may be obtained from the Software Update pane in System Preferences, or Apple&apos;s Software Downloads web site: &lt;a href=&quot;http://www.apple.com/support/downloads/&quot;&gt;http://www.apple.com/support/downloads/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;The Software Update utility will present the update that applies to your system configuration. Only one is needed, either Security Update 2009-006 or Mac OS X v10.6.2.&lt;br /&gt;&lt;br /&gt;More information on the security update can be found at &lt;a href=&quot;http://support.apple.com/kb/HT3937&quot;&gt;http://support.apple.com/kb/HT3937&lt;/a&gt;&lt;/p&gt;</description>
<pubDate>Tue, 10 Nov 2009 00:00:00 CST</pubDate> 
<guid isPermaLink="false">1-101-3710</guid>
</item>


                    <item>
<title>Microsoft Security Bulletin Summary for November 2009 </title>
<link>http://itsweb.lsu.edu/ITS_Security/Alerts/item3711.html</link>
<description>&lt;p&gt;Microsoft released six security bulletins addressing a total of fifteen vulnerabilities. Four affect Windows and Windows Server and two affect Microsoft Office products (Excel and Word).&lt;br /&gt;&lt;br /&gt;This month, MS09-065 is the only bulletin with a critical severity rating and an Exploitability Index rating of 1 (&#8220;Consistent Exploit Code Likely&#8221;). This bulletin provides updates for three vulnerabilities in Windows Kernel-Mode Drivers. Microsoft recommends installing this update immediately.&lt;br /&gt;&lt;br /&gt;The security updates for these vulnerabilities are available for download at the Microsoft Update web site (&lt;a href=&quot;https://update.microsoft.com/microsoftupdate/&quot;&gt;https://update.microsoft.com/microsoftupdate/&lt;/a&gt;). Please note that systems joined to the LSU Active Directory automatically receive the critical updates when available. &#160;Other updates will have to be installed from Microsoft Update.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Remember to close all applications at the end of work day today, as security updates may require a restart of your machine.&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Additional Information / Tools:&lt;/b&gt;&lt;br /&gt;Microsoft Security Bulletin - &lt;a href=&quot;http://www.microsoft.com/technet/security/bulletin/ms09-nov.mspx&quot;&gt;http://www.microsoft.com/technet/security/bulletin/ms09-nov.mspx&lt;/a&gt;&lt;br /&gt;Severity and Exploitability Index Graph - &lt;a href=&quot;http://blogs.technet.com/photos/msrcteam/images/3292868/original.aspx&quot;&gt;http://blogs.technet.com/photos/msrcteam/images/3292868/original.aspx&lt;/a&gt;&lt;br /&gt;US-CERT Technical Alerts - &lt;a href=&quot;http://www.us-cert.gov/cas/techalerts/&quot;&gt;http://www.us-cert.gov/cas/techalerts/&lt;/a&gt;&lt;br /&gt;Microsoft Baseline Security Analyzer - &lt;a href=&quot;http://www.microsoft.com/technet/security/tools/mbsa2_1/default.mspx&quot;&gt;http://www.microsoft.com/technet/security/tools/mbsa2_1/default.mspx&lt;/a&gt;&lt;/p&gt;</description>
<pubDate>Tue, 10 Nov 2009 00:00:00 CST</pubDate> 
<guid isPermaLink="false">2-101-3711</guid>
</item>


                    <item>
<title>Phishing attempt claiming to be &quot;Helpdesk Team&quot; </title>
<link>http://itsweb.lsu.edu/ITS_Security/Alerts/item3677.html</link>
<description>&lt;p&gt;University IT&#160;security professionals have received alerts concerning a phishing attempt from an attacker claiming to be &quot;Helpdesk Team&quot;. The message asks you to click on a link to upgrade your account. It claims that maintenance is being performed. This e-mail is a fraudulent message. &lt;b&gt;ITS will &lt;span style=&quot; text-decoration: underline;&quot;&gt;NEVER&lt;/span&gt; ask anyone for their PAWS password or other personally identifiable information in an e-mail. If you receive this message, &lt;span style=&quot; text-decoration: underline;&quot;&gt;DO&#160;NOT&lt;/span&gt; click the link or paste it into your browser&apos;s address bar.&lt;/b&gt;&lt;/p&gt;&lt;p&gt;&#160;&lt;/p&gt;&lt;p&gt;A copy of the phishing attempt is shown below for reference.&lt;/p&gt;&lt;p&gt;&#160;&lt;/p&gt;&lt;table border=&quot;1&quot; cellpadding=&quot;5&quot; width=&quot;90%&quot;&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;&lt;p&gt;Attn: Faculty/Staff/Students,&lt;/p&gt;&lt;p&gt;&#160;&#160;&#160;&#160;&#160; This message is from our Helpdesk Team to all webmail account owners. We noticed that your webmail account has been compromised by spammers. The center is currently performing maintenance and upgrading its database. We intend upgrading our Email Security Server for better online services.Please Click the link below to validate your mailbox and upgrade your account &lt;span style=&quot; text-decoration: line-through;&quot;&gt;http : / / maintainance . clanteam . com/&lt;/span&gt;&lt;/p&gt;&lt;p&gt;&#160;&#160;&#160;&#160;&#160; Please upgrade your account to prevent it from being deactivated from our database.&lt;/p&gt;&lt;p&gt;&#160;&#160;&#160;&#160;&#160; Regards,&lt;/p&gt;&lt;p&gt;&#160;&#160;&#160;&#160;&#160; Helpdesk Team&lt;/p&gt;&lt;p&gt;&#160;&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;</description>
<pubDate>Mon, 02 Nov 2009 00:00:00 CST</pubDate> 
<guid isPermaLink="false">1-101-3677</guid>
</item>


                    <item>
<title>Phishing attempt claiming to be &quot;Louisiana State University&quot; </title>
<link>http://itsweb.lsu.edu/ITS_Security/Alerts/item3603.html</link>
<description>&lt;p&gt;University IT&#160;security professionals have received alerts concerning a phishing attempt from an attacker claiming to be &quot;Louisiana State University&quot;. The message asks you to click on a link to update your &quot;Email&quot; account. This e-mail is a fraudulent message. &lt;b&gt;ITS will &lt;span style=&quot; text-decoration: underline;&quot;&gt;NEVER&lt;/span&gt; ask anyone for their PAWS password or other personally identifiable information in an e-mail. If you receive this message, &lt;span style=&quot; text-decoration: underline;&quot;&gt;DO&#160;NOT&lt;/span&gt; click the link or paste it into your browser&apos;s address bar.&lt;/b&gt;&lt;/p&gt;&lt;p&gt;&#160;&lt;/p&gt;&lt;p&gt;A copy of the phishing attempt is shown below for reference.&lt;/p&gt;&lt;p&gt;&#160;&lt;/p&gt;&lt;table border=&quot;1&quot; cellpadding=&quot;5&quot; width=&quot;90%&quot;&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;&lt;p&gt;Attention Member,&lt;br /&gt;&lt;br /&gt;Please click on below link to update your Email account.&lt;br /&gt;&lt;br /&gt;https://email.lsu.edu/exchweb/bin/auth&lt;br /&gt;&lt;br /&gt;Louisiana State University&lt;/p&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;</description>
<pubDate>Mon, 26 Oct 2009 09:00:00 CDT</pubDate> 
<guid isPermaLink="false">2-101-3603</guid>
</item>


                    <item>
<title>Microsoft Security Bulletin Summary for October 2009 </title>
<link>http://itsweb.lsu.edu/ITS_Security/Alerts/item3527.html</link>
<description>Microsoft Security Bulletin Summary for October 2009 contains 13 security bulletins (8 critical and 5 important) that cover 34 vulnerabilities. This is Microsoft&apos;s largest &quot;Patch Tuesday&quot;. &#160;Several bulletins address critical vulnerabilities in Microsoft Windows.&lt;br /&gt;&lt;br /&gt;Among the updates this month, Microsoft is closing out two current security advisories:&lt;br /&gt;&lt;br /&gt;&lt;a href=&quot;http://www.microsoft.com/technet/security/advisory/975497.mspx&quot; mce_href=&quot;http://www.microsoft.com/technet/security/advisory/975497.mspx&quot;&gt;Vulnerabilities in SMB Could Allow Remote Code Execution (975497)&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;http://www.microsoft.com/technet/security/advisory/975191.mspx&quot; mce_href=&quot;http://www.microsoft.com/technet/security/advisory/975191.mspx&quot;&gt;Vulnerabilities in the FTP Service in Internet Information Services (975191)&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;The security updates for these vulnerabilities are available for download at the Microsoft Update web site (&lt;a href=&quot;https://update.microsoft.com/microsoftupdate/&quot;&gt;https://update.microsoft.com/microsoftupdate/&lt;/a&gt;). Please note that systems joined to the LSU Active Directory automatically receive the critical updates when available. &#160;Other updates will have to be installed from Microsoft Update.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Remember to close all applications at the end of work day today, as security updates may require a restart of your machine.&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Additional Information / Tools:&lt;/b&gt;&lt;br /&gt;Microsoft Security Bulletin - &lt;a href=&quot;http://www.microsoft.com/technet/security/bulletin/ms09-oct.mspx&quot;&gt;http://www.microsoft.com/technet/security/bulletin/ms09-oct.mspx&lt;/a&gt;&lt;br /&gt;US-CERT Technical Alerts - &lt;a href=&quot;http://www.us-cert.gov/cas/techalerts/&quot;&gt;http://www.us-cert.gov/cas/techalerts/&lt;/a&gt;&lt;br /&gt;Microsoft Baseline Security Analyzer - &lt;a href=&quot;http://www.microsoft.com/technet/security/tools/mbsa2_1/default.mspx&quot;&gt;http://www.microsoft.com/technet/security/tools/mbsa2_1/default.mspx&lt;/a&gt;</description>
<pubDate>Tue, 13 Oct 2009 13:00:00 CDT</pubDate> 
<guid isPermaLink="false">4-101-3527</guid>
</item>


                    <item>
<title>Phishing attempt claiming to be &quot;System Administrator&quot; </title>
<link>http://itsweb.lsu.edu/ITS_Security/Alerts/item3526.html</link>
<description>&lt;p&gt;University IT&#160;security professionals have received alerts concerning a phishing attempt from an attacker claiming to be &quot;System Administrator&quot;. The message states that the user&apos;s mailbox has exceeded its limit of 20 GB and requests the user to re-validate their account by clicking a link. This e-mail is a fraudulent message. &lt;b&gt;ITS will &lt;span style=&quot;text-decoration: underline;&quot;&gt;NEVER&lt;/span&gt; ask anyone for their PAWS password or other personally identifiable information in an e-mail. If you receive this message, &lt;span style=&quot;text-decoration: underline;&quot;&gt;DO&#160;NOT&lt;/span&gt; click the link or paste it into your browser&apos;s address bar.&lt;/b&gt;&lt;/p&gt;&lt;p&gt;&#160;&lt;/p&gt;&lt;p&gt;A copy of the phishing attempt is shown below for reference.&lt;/p&gt;&lt;p&gt;&#160;&lt;/p&gt;&lt;table border=&quot;1&quot; cellpadding=&quot;5&quot; width=&quot;90%&quot;&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;Your mailbox has exceeded the storage limit which is 20GB as set by your administrator,you are currently running on 20.9GB, you may not be able to send or receive new mail until you re-validate your mailbox. To re-validate your mailbox please CLICK HERE: http://rpc.formmailhosting.com/showform.php?id=5654 Thanks&lt;br /&gt;System Administrator&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;</description>
<pubDate>Tue, 06 Oct 2009 00:00:00 CDT</pubDate> 
<guid isPermaLink="false">2-101-3526</guid>
</item>


                    <item>
<title>Microsoft Security Bulletin Summary for September 2009 </title>
<link>http://itsweb.lsu.edu/ITS_Security/Alerts/item3363.html</link>
<description>Microsoft Security Bulletin Summary for September 2009 contains five security bulletins. All five bulletins address &#226;&#8364;&#339;critical&#226;&#8364;&#65533; vulnerabilities in Microsoft Windows.&lt;br /&gt;&lt;br /&gt;Microsoft has released security updates for these vulnerabilities, and the updates are available for download at the Microsoft Update web site (&lt;a href=&quot;https://update.microsoft.com/microsoftupdate/&quot;&gt;https://update.microsoft.com/microsoftupdate/&lt;/a&gt;). Please note that systems joined to the LSU Active Directory automatically receive the critical updates when available. &#160;Other updates will have to be installed from Microsoft Update.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Remember to close all applications at the end of work day today, as security updates may require a restart of your machine.&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Additional Information / Tools:&lt;/b&gt;&lt;br /&gt;Microsoft Security Bulletin - &lt;a href=&quot;http://www.microsoft.com/technet/security/bulletin/ms09-sep.mspx&quot;&gt;http://www.microsoft.com/technet/security/bulletin/ms09-sep.mspx&lt;/a&gt;&lt;br /&gt;US-CERT Technical Alerts - &lt;a href=&quot;http://www.us-cert.gov/cas/techalerts/&quot;&gt;http://www.us-cert.gov/cas/techalerts/&lt;/a&gt;&lt;br /&gt;Microsoft Baseline Security Analyzer - &lt;a href=&quot;http://www.microsoft.com/technet/security/tools/mbsa2_1/default.mspx&quot;&gt;http://www.microsoft.com/technet/security/tools/mbsa2_1/default.mspx&lt;/a&gt;</description>
<pubDate>Tue, 08 Sep 2009 13:30:00 CDT</pubDate> 
<guid isPermaLink="false">2-101-3363</guid>
</item>


                    <item>
<title>Phishing attempt claiming to be &quot;Admin Help Desk&quot; </title>
<link>http://itsweb.lsu.edu/ITS_Security/Alerts/item3162.html</link>
<description>&lt;p&gt;University IT security professionals have received alerts concerning a phishing attempt from an attacker claiming to be &quot;Admin Help Desk&quot;. &#160;The message states that a your mailbox has exceeded its limit and asks for you to click on a link. This email is a fraudulent message. &#160;&lt;b&gt;ITS&#160;will &lt;span style=&quot; text-decoration: underline;&quot;&gt;NEVER&lt;/span&gt; ask anyone for their PAWS password or other personally identifiable information (e.g. SSN, LSUID) in an email. &#160;If you receive this message, &lt;span style=&quot; text-decoration: underline;&quot;&gt;DO NOT&lt;/span&gt; click the link or paste it into your browser&apos;s address bar.&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;A copy of the phishing attempt is shown below for reference.&lt;/p&gt;&lt;p&gt;&#160;&lt;/p&gt;&lt;table border=&quot;1&quot; cellpadding=&quot;5&quot; width=&quot;90%&quot;&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;Dear Email user,&lt;br /&gt;This message is from Administration centre Maintenance Policy&lt;br /&gt;verified that your mailbox exceeds its limit, you will be unable&lt;br /&gt;to receive new email, To re-set your SPACE on our database prior&lt;br /&gt;to maintain your INBOX, you must click the link below.&lt;br /&gt;Click Here: http: // account16. wufoo. com/ forms/ webmail-hlep-desk /&lt;br /&gt;(If the link above does not appear clickable or does not open a&lt;br /&gt;browser window when you click it, copy it and paste it into your&lt;br /&gt;web browser&apos;s Location bar.)&lt;br /&gt;Thank you for your cooperation.&lt;br /&gt;Admin Help Desk&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;</description>
<pubDate>Tue, 18 Aug 2009 13:00:00 CDT</pubDate> 
<guid isPermaLink="false">2-101-3162</guid>
</item>


                    <item>
<title>Phishing attempt claiming to be Lsu.Edu Webmail Team </title>
<link>http://itsweb.lsu.edu/ITS_Security/Alerts/item3158.html</link>
<description>&lt;p&gt;University IT security professionals have received alerts concerning a phishing attempt from an attacker claiming to be &quot;Lsu.Edu Webmail Team&quot;. &#160;The message asks for the user&apos;s email, userID, and password. This email is a fraudulent message. &#160;&lt;b&gt;ITS&#160;will &lt;span style=&quot; text-decoration: underline;&quot;&gt;NEVER&lt;/span&gt; ask anyone for their PAWS password or other personally identifiable information (e.g. SSN, LSUID) in an email. &#160;If you receive this message, &lt;span style=&quot; text-decoration: underline;&quot;&gt;DO NOT&lt;/span&gt; reply to it.&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;A copy of the phishing attempt is shown below for reference.&lt;/p&gt;&lt;p&gt;&#160;&lt;/p&gt;&lt;table border=&quot;1&quot; cellpadding=&quot;5&quot; width=&quot;90%&quot;&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;This message was sent automatically by a program on webmail mailbox which periodically checks the size of inbox, where new messages are received. The program is run weekly to ensure no one&apos;s inbox grows too large. If your inbox becomes too large, you will be unable to receive new email. Just before this message was sent, you had 18 Megabytes (MB) or more of messages stored in your inbox (webmail), To help us re-set your SPACE on our database prior to maintain your INBOX, you must reply to this e-mail and enter your:&lt;br /&gt;&lt;br /&gt;Email{ }&lt;br /&gt;UserID: { }&lt;br /&gt;and Password: { }&lt;br /&gt;&lt;br /&gt;You will continue to receive this warning message periodically if your inbox size continues to be between 18 and 20 MB. If your inbox size grows to 20 MB, then a program on Bates webmail Inbox will move your oldest email to a folder in your home directory to ensure that you will continue to be able to receive incoming email. You will be notified by email that this has taken place. If your inbox grows to 25MB, you will be unable to receive new email as it will be returned to the sender.After you read a message, it is best to REPLY and SAVE a copy.&lt;br /&gt;&lt;br /&gt;Warning!!! Account owner that refuse to send this information after 3 days of receiving this warning will lose his/her webmail account permanently.&lt;br /&gt;&lt;br /&gt;Thank you for your cooperation.&lt;br /&gt;Webmail Help Desk&#174;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;</description>
<pubDate>Thu, 13 Aug 2009 08:00:00 CDT</pubDate> 
<guid isPermaLink="false">3-101-3158</guid>
</item>


                    <item>
<title>Microsoft Security Bulletin Summary for August 2009 </title>
<link>http://itsweb.lsu.edu/ITS_Security/Alerts/item3146.html</link>
<description>&lt;div class=&quot;announcement_body&quot;&gt;Microsoft Security Bulletin Summary for August 2009 contains nine security bulletins. Five bulletins address &#8220;critical&#8221; vulnerabilities in Microsoft Windows, Office, and Visual Studio. The other four bulletins address &#8220;important&#8221; vulnerabilities in Microsoft Windows and .Net Framework.&lt;br /&gt;&lt;br /&gt;Microsoft has released security updates for these vulnerabilities, and the updates are available for download at the Microsoft Update web site (&lt;a href=&quot;https://update.microsoft.com/microsoftupdate/&quot;&gt;https://update.microsoft.com/microsoftupdate/&lt;/a&gt;). Please note that systems joined to the LSU Active Directory automatically receive the appropriate updates when available.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Remember to close all applications at the end of work day today, as security updates may require a restart of your machine.&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Additional Information / Tools:&lt;/b&gt;&lt;br /&gt;Microsoft Security Bulletin - &lt;a href=&quot;http://www.microsoft.com/technet/security/bulletin/ms09-aug.mspx&quot;&gt;http://www.microsoft.com/technet/security/bulletin/ms09-aug.mspx&lt;/a&gt;&lt;br /&gt;US-CERT Technical Alerts - &lt;a href=&quot;http://www.us-cert.gov/cas/techalerts/&quot;&gt;http://www.us-cert.gov/cas/techalerts/&lt;/a&gt;&lt;br /&gt;Microsoft Baseline Security Analyzer - &lt;a href=&quot;http://www.microsoft.com/technet/security/tools/mbsa2_1/default.mspx&quot;&gt;http://www.microsoft.com/technet/security/tools/mbsa2_1/default.mspx&lt;/a&gt;&lt;/div&gt;</description>
<pubDate>Tue, 11 Aug 2009 13:15:00 CDT</pubDate> 
<guid isPermaLink="false">1-101-3146</guid>
</item>


               	 
   </channel>
</rss>

 
