<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>CounterMeasures -  A Security Blog » P2P</title>
	<atom:link href="http://countermeasures.trendmicro.eu/tag/p2p/feed/" rel="self" type="application/rss+xml" />
	<link>http://countermeasures.trendmicro.eu</link>
	<description>Trend Microâ€™s Rik Ferguson blogs about current security issues.</description>
	<lastBuildDate>Wed, 01 Feb 2012 14:48:59 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Obama Safe House location leaked over P2P</title>
		<link>http://countermeasures.trendmicro.eu/obama-safe-house-location-leaked-over-p2p/</link>
		<comments>http://countermeasures.trendmicro.eu/obama-safe-house-location-leaked-over-p2p/#comments</comments>
		<pubDate>Wed, 29 Jul 2009 21:38:46 +0000</pubDate>
		<dc:creator>Rik Ferguson</dc:creator>
				<category><![CDATA[data leakage]]></category>
		<category><![CDATA[Opinion]]></category>
		<category><![CDATA[celebrity]]></category>
		<category><![CDATA[data loss]]></category>
		<category><![CDATA[government]]></category>
		<category><![CDATA[P2P]]></category>

		<guid isPermaLink="false">http://countermeasures.trendmicro.eu/?p=1129</guid>
		<description><![CDATA[In an article published today by Computerworld, it was revealed that the details of a US Secret Service safe house &#8211; one meant for the US First family in the event of a national emergency &#8211; had been leaked over peer-to-peer networks using the popular LimeWire client. Â  This is of course not the fault [...]<div class="addthis_toolbox addthis_default_style " addthis:url='http://countermeasures.trendmicro.eu/obama-safe-house-location-leaked-over-p2p/' addthis:title='Obama Safe House location leaked over P2P '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></description>
			<content:encoded><![CDATA[<p>In an article published today by <a href="http://www.computerworld.com/s/article/9136053/Details_on_presidential_motorcades_safe_house_for_First_Family_leak_via_P2P?taxonomyId=17&amp;pageNumber=1" target="_blank">Computerworld</a>, it was revealed that the details of a US Secret Service safe house &#8211; one meant for the US First family in the event of a national emergency &#8211; had been leaked over peer-to-peer networks using the popular <a href="http://www.limewire.com/" target="_blank">LimeWire </a>client.</p>
<div id="attachment_1131" class="wp-caption alignleft" style="width: 469px"><a href="http://www.limewire.com"><img class="size-full wp-image-1131" title="limewire" src="http://countermeasures.trendmicro.eu/wp-content/uploads/2009/07/limewire.png" alt="Image from limewire.com" width="459" height="274" /></a><p class="wp-caption-text">Image from limewire.com</p></div>
<p>Â </p>
<p>This is of course not the fault of LimeWire and there&#8217;s no reason why Mark Gorton, chairmanÂ of Lime Group, should have been lambasted at today&#8217;s hearing. It is also not the first time sensitive information has been leaked over peer-to-peer networks (think motorcades, nuclear facilities, presidential helicopter, terrorist threat assessments, mortgage data, M&amp;A plans, healthcare data) the list is virtually endless. This is all of course without considering the extremely elevated threat from malware over (often) unscanned P2P connections to untrusted devices sharing illegal software and data. It has long been the case that distributing malware along with your <a href="http://en.wikipedia.org/wiki/Warez" target="_blank">warez </a>over file-sharing networks is almost <em>de rigeur</em>.</p>
<p>Â </p>
<p>In many ways, the nature of the data that was leaked is secondary to the potential conclusion that can be drawn from the reaction to this latest event.</p>
<p>Â </p>
<p>According to the Computerworld article &#8220;<em>The disclosures prompted the chairman of the committee Rep. Edolphus Towns, (D-N.Y.), to call for a ban on the use of peer-to-peer (P2P) software on all government and contractor computers and networks. &#8220;For our sensitive government information, the risk is simply too great to ignore,&#8221; said Towns</em>&#8221;</p>
<p>Â </p>
<p>Does this mean that installations of P2P software are not already banned on sensitive networks? Does this mean that machines that routinely, or even occasionally, handle sensitive data are not deployed in a locked down configuration where the user has no administrative rights? Does this mean that government network admins do not have visibility over who is using rogue software on their networks? It certainly seems that way and this just reinforces the message about low-hanging fruit in my <a href="http://countermeasures.trendmicro.eu/zf05-kaminsky-0wned-mitnick-0wned/" target="_blank">previous post</a>.</p>
<p>Â </p>
<p>If you are concerned about the proliferation of rogue servicesÂ or unwanted applications inside your environment (not to mention malware) take a look at the <a href="http://uk.trendmicro.com/uk/about/news/pr/article/20080619173220.html" target="_blank">Threat Management Solution</a>.</p>
<div class="addthis_toolbox addthis_default_style " addthis:url='http://countermeasures.trendmicro.eu/obama-safe-house-location-leaked-over-p2p/' addthis:title='Obama Safe House location leaked over P2P '  ><a class="addthis_button_facebook_like" fb:like:layout="button_count"></a><a class="addthis_button_tweet"></a><a class="addthis_button_google_plusone" g:plusone:size="medium"></a><a class="addthis_counter addthis_pill_style"></a></div>]]></content:encoded>
			<wfw:commentRss>http://countermeasures.trendmicro.eu/obama-safe-house-location-leaked-over-p2p/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>

