Security News

The SANS Institute has disclosed a security incident which resulted in 28,000 records of personally identifiable information being forwarded to an unknown email address. During the audit, the company identified a forwarding rule on one email account, meant to forward emails to an unknown external address.

Web traffic to the servers of the notorious Dutch-German Cyberbunker hosting biz was filled with all kinds of badness, including apparent botnet command-and-control and denial-of-service traffic, says SANS Institute. Cyberbunker, aka CB3ROB, was raided last September by 600 German police gunmen who forced entry to the outfit's Traben-Trarbach HQ. Following the raid, infosec biz SANS was able to set up a honeypot on former Cyberbunker IPs to analyse traffic passing through them - and the results shed light on just what kind of dubious traffic was passing through the servers.


