For at least six months, a security firm has seen a specific type of man-in-the-middle (MitM) attack, dubbed “DoubleDirect,” being leveraged, which puts iOS, Android and OS X users at risk. San Francisco-based Zimperium detailed the threat in a Thursday blog post, revealing that, like other MitM attacks, DoubleDirect could allow a saboteur to intercept sensitive data, like credentials, or deliver malware to vulnerable devices, by way of redirecting victim’s traffic to attacker-operated devices. But in a twist, DoubleDirect makes use of ICMP redirect packets “to alter the routing tables on the victim host, causing traffic to flow via an arbitrary network path for a particular IP,” the blog post explained…

Read the entire article on SCMagazine.com

Kaspersky Lab recently analyzed the activities of a threat group that has been targeting executive business travelers in the Asia-Pacific region. The actors behind the cyber espionage campaign dubbed “Darkhotel” use various techniques to distribute their sophisticated pieces of malware, such as highly customized spear-phishing, malicious Wi-Fi networks, and P2P sharing websites…

Read the entire article on SecurityWeek.com

This was Microsoft’s Patch Tuesday week, and there were a significant number of patches this month. According to eWeek, 33 vulnerabilities were addressed including fixes for a code execution vulnerability in SSL. SSL has taken a beating in 2014 with vulnerabilities like Heartbleed, but this particular issue appears to have been caught before any serious problems occurred…

Read the entire article on ITBusinessEdge.com

OneCloud Software is jumping into cloud disaster recovery with software that runs on VMware hypervisors, creates a virtual data center in the Amazon Web Services (AWS) cloud, and handles failover, failback and testing. OneCloud Recovery (OCR) software consists of one or more virtual appliances that install on-premise, a management interface, and an Automated Cloud Engine that sets service-level agreement (SLA) policies. The AWS virtual data center serves as an alternative to a secondary off-site data center. According to OneCloud CEO Marc Crespi, here is how OCR works…

Read the entire article on TechTarget’s SearchDisasterRecovery.com