TJX hacking Suspect arrested in New Delhi, India
IDG news has reported that a Ukrainian national , Sergey Valeryevich Storchark accused of helping to hack into nine US retailers and
making off with data for millions of credit cards has been arrested earlier this week in New Delhi , India.
In January, 2007 TJX Companies Inc, reported an incident of major breach of CCN and NAA records. Data Loss DB reported that more than 94 million records were stolen by extremely sophisticated hackers who were able to bypass the data security used by the company.
The detailed news is available on the following link
http://www.theregister.co.uk/2010/05/14/tjx_hacking_suspect_arrested/
Sergey along with 10 other men were charged in August, 2008 for hacking into TJX network and stealing millions of credit card records.
What is USB rubber ducky attack?
USB rubber ducky is a smart device which can emulate a keyboard or a mouse when connected to a computer and can execute a pre programmed instructions.
An example will be, opening the command prompt on windows and then flushing your DNS cache, within a flick of a second which will be absolutely difficult to notice. The dangerous part is that, it can also be used to format one of your drives in a flick of a second.
Since, we have mentioned about it on data loss blog, we could also give you an example of data loss though this new device. Consider, a modified version of rubber ducky, which also has a flash storage in it. It will take a simple command to copy all you documents on to this flash storage by emulating a keyboard and executing the copy command.
The most concerning thing about this device is, that , since the device has its own small processor, which makes itself a computer which then communicates to your computer through a usb port, it can actually work on different platforms other than windows, like Mac, Linux etc.
Here is how a USB rubber ducky looks like ?
So, be careful if see something like this next time in your office.
How to install and use inDefend ?
inDefend is a windows application which helps you protect your data from unauthorized, copy, share or transfer through internet, email, chat and portable media devices.
You can request for a free beta trial for inDefend from the following link:-
[request for beta trial]
Installation
Once you have downloaded the installer, the installer will take you to the following screen.
There are two password settings : inDefend access password and administrator password. The access password is used to authorize access for a particular portable media devices connected through usb port or sd card slot and access to particular website or application like chat , ftp etc.
The administrator password is used to gain access to the control center of inDefend where you can go through the summary of recently accessed websites, devices and files copied on portable media devices. Control center also gives you access to settings and configuration.
Application Control
Application control tab control center helps you configure which application needs to be communicating to the internet such as antivirus and browser updates and windows updates etc. It can also be used to allow certain applications like skype, gtalk etc to connect to the internet. All you need to do is to locate the application by using the search box available at the top and then clicking on the checkbox.
Special Application Settings
Special application settings is important for proper functioning of laplock, specially if you want to allow a specific list of websites to be accessed on you machine. In order to configure the browser, you need to select the location of the main exe of the browser you want to allow and then click on add. For example, you are using firefox, the location will be program files full path/ forefox.exe. For configuring anti-virus you should select the executable(s) of the antivirus which connects to the internet. If you are not able to figure out the antivirus location, do not worry. Just wait for the notifier to come up in the bottom right section of you screen. This will happen whenever you antivirus tries to update itself. Click on unblock, then select the antivirus from the checkbox and the category as antivirus and click on add application.
Blocking Porn, Messaging and Chat Clients etc
Whenever an unauthorized application tries to make a connection you will see a notification in the bottom right corner of your screen as follows. If you want to allow it, click on unblock and select the application from a list and its category as application and click on add. From that point onwards, the application will be able to connect to the internet. If you do not do any thing, all kinds of messaging and chat clients will be blocked by inDefend .
USB Control
USB Devices control panel in the inDefend’s control center helps you manage the authorized devices on your system. It also helps you set default policy for unauthorized devices and set device specific policies for each of the authorized devices as follows:-
If you face any problem in installing or using inDefend please contact our support team at support@dataresolve.com.










