|
Albany Will Handle Microsoft Office, Security Updates
2008-04-19 00:25:00 You can add Albany to your list of upcoming Microsoft products and services. On Friday, the software giant announced the launch of the new service as a private beta. The announcement confirmed months of rumors. In an extension of its growing “software plus service” strategy, Microsoft said it is harnessing the Internet to keep productivity and ...
PayPal Plans To Block Older, Unsafe Browsers
2008-04-19 00:25:00 The name PayPal is almost synonymous with phishing scams. According to anti-phishing service PhishTank statistics from last year, PayPal was the number-one target of scams — more than twice as often as PayPal’s parent, eBay, the second most popular target. On Friday, PayPal announced it was taking an unusual step to combat phishing abuse: blocking old ...
Stonesoft Device Controls Remote-Site Security
2008-04-16 00:25:00 ATLANTA, Apr 15, 2008 (BUSINESS WIRE) — Stonesoft, an innovative provider of integrated network security and resilient connectivity solutions for both physical and virtual network environments, will extend its offerings in secure mobility with the new, centrally managed StoneGate FW-100 appliance. The appliance allows smooth access to business critical information even from the smallest and ...
BitDefender Introduces Security Suite for Business
2008-04-16 00:25:00 MOUNTAIN VIEW, CA, Apr 15, 2008 (MARKET WIRE via COMTEX) — BitDefender(R), an award-winning provider of antivirus software and data security solutions, today introduced its new Security Suite for Business, which provides growing companies with a comprehensive set of solutions that set new standards for proactive protection against security threats. Designed with the needs of growing ...
Online Petition Favors Windows XP Over Vista
2008-04-15 00:25:00 Windows may or may not be collapsing, as two Gartner Group analysts indicated last week, but Microsoft is receiving substantial pushback against Windows Vista. With less than three months left until Microsoft says it will stop selling and supporting most versions of Windows XP, will customers be forced into an operating system they don’t want ...
Broken Microsoft Windows Will Decline, Analysts Say
2008-04-12 00:25:00 Microsoft is in trouble and its flagship Windows operating system is broken, Gartner analysts said at the Emerging Trends conference this week. Analysts Neil MacDonald and Michael Silver offered many reasons why Microsoft may see rougher days ahead. The analysts said Microsoft’s operating-system development times are too long, especially for the level of innovation the company ...
MVP:Enterprise Security
2008-04-01 19:25:00 Yup, a wish came through - I'm now an MVP! Receiving the Microsoft Most Valuable Professional Award is a great honor and much appreciated - thank you. Sharing Rocks - Information wants to be free! Time to get a beer :-) .
Ten ways CIOs weaken enterprise security
2008-03-31 16:06:00 The Security and Compliance Connection Blog – I saw this post on James McGoverns blog and just had to share it with you. Ten Mistakes that CIOs consistently make that weaken enterprise security Use process as a substitute for competence: The answer to every problem is almost ... read more
10 great free downloads for your network
2008-02-10 14:21:00 Got a small network, home network, medium-size network — even an enterprise network — and want to get the most out of it? Then I’ve got good news for you: 10 free pieces of software that can make your network easier to use, troubleshoot and maintain. Technorati Tags: enterprise network
Web hosting providers underestimate the security threat facing web applicat
2008-02-10 13:54:00 Despite the highly publicized attacks on websites worldwide, many web hosting customers remain unprotected against the newest forms of attacks as cyber crime tactics evolve. Hundreds of thousands of web site operators ? many with little or no technical expertise ? rely on web hosting providers to keep their websites and web applications safe. Technorati ...
The future of network security
2008-02-10 13:50:00 Enterprise connectivity is exploding, driven by globalization, convergence, virtualization and social computing. As corporate perimeters dissolve, the security focus switches towards application and data-level security solutions. Technorati Tags: Security Basics
OpenID Foundation Adds Internet Heavyweights
2008-02-09 01:25:00 The possibility that Internet users may one day be able to safely use a single log-in and password for multiple web sites advanced Thursday. The OpenID Foundation, which is working to develop an identity-management system for the Web, announced that software giants Google, IBM, VeriSign and Yahoo have joined its executive board. “With this support from ...
Protecting Your Systems
2008-01-04 13:15:00 Anyone who tells you that your IT network is ?100% secure? is either a fool, or greatly mistaken. Security is a moving target, and unfortunately, this target is being manipulated by the bad guys. With 2007 behind us, I reflect on the struggle enterprises and governments face in cyber security. Technorati Tags: cyber security, Network Security
The Spy in Your Server Room
2007-11-06 06:28:00 How many times have you passed an unknown person in the hallway at work, held open a keycard-protected door for a stranger or let an office guest wander unaccompanied to the rest room? It may seem harmless enough, but the staff of TraceSecurity is banking on this type of human error to help them gain ...
The Spy in Your Server Room
2007-11-06 06:28:00 How many times have you passed an unknown person in the hallway at work, held open a keycard-protected door for a stranger or let an office guest wander unaccompanied to the rest room? It may seem harmless enough, but the staff of TraceSecurity is banking on this type of human error to help them gain ...
Security Training: Whose Responsibility Is It
2007-11-06 06:21:00 Who else other than the CIO? So why aren’t CIOs doing more about it? Mark Twain is reported to have famously remarked: "Everybody talks about the weather. But nobody does anything about it." I was reminded of that quip when I read a news story posted by my colleague K.C. Jones about the increased awareness ...
Security Training: Whose Responsibility Is It
2007-11-06 06:21:00 Who else other than the CIO? So why aren’t CIOs doing more about it? Mark Twain is reported to have famously remarked: "Everybody talks about the weather. But nobody does anything about it." I was reminded of that quip when I read a news story posted by my colleague K.C. Jones about the increased awareness ...
Trend Micro Announces All-in-One Enterprise Security for Mobile Devices
2007-11-06 00:00:00 Trend Micro today announced the latest version of its mobile device security solution, available to the market in December 2007. The release of Trend Micro Mobile Security (TMMS) 5.0, girded with data encryption and authentication, mitigates mobile security challenges such as security breaches and data leakage while allowing enterprise administrators ...
By: Latest phones
Password policy Length vs. Complexity
2007-11-03 09:07:00 One of the many topics I like to cover in detail when teaching Essentials of Hacking and Ultimate Hacking is password brute forcing and cracking. I usually start off by letting the students come up with what they think is a strong password policy and later, we analyze common implementations &1 attacks against them. Inevitably, ...
Password policy Length vs. Complexity
2007-11-03 09:07:00 One of the many topics I like to cover in detail when teaching Essentials of Hacking and Ultimate Hacking is password brute forcing and cracking. I usually start off by letting the students come up with what they think is a strong password policy and later, we analyze common implementations &1 attacks against them. Inevitably, ...
Catching up with a famous fraudster
2007-11-02 14:17:00 Played by Leonardo DeCaprio in the Steven Spielberg-directed film Catch Me If You Can, one-time fraudster Frank Abagnale knows a thing or two about security systems. During his time on the wrong side of the law, Abagnale posed as an airline pilot, a lawyer and a doctor. These days Abagnale is firmly on the right ...
Metagoofil 1.2 Metadata Extractor Tool
2007-11-02 14:08:00 Metagoofil is a tool for written in Python for extracting the metadata from public documents (pdf,doc,xls,ppt) available in the target websites. This information could be useful because you can get valid usernames, or people names, for using later in brute force password attacks (vpn, ftp, webapps etc.)
What Not to Do After a Security Breach
2007-11-02 14:00:00 Step number one after a security breach: Don’t immediately bring in the outside forensics team — get your attorney up to speed on the attack first. And don’t assume just because you had a break-in that you have to disclose it publicly — it all depends on whether data covered under regulatory mandates was exposed. ...
Password Cracking Chip Causes Security Concerns
2007-11-02 13:56:00 A technique for cracking computer passwords using inexpensive off-the-shelf computer graphics hardware is causing a stir in the computer security community. Elcomsoft, a software company based in Moscow, Russia, has filed a US patent for the technique. It takes advantage of the "massively parallel processing" capabilities of a graphics processing unit (GPU) - the processor ...
Beware of hackers targeting storage systems
2007-10-28 07:24:00 Corporate storage systems and networks are an attractive target for hackers looking to steal sensitive data or launch computer attacks, Alan Lustiger, security architect at TD Ameritrade Inc., told an audience at Computerworld’s Storage Networking World user conference here yesterday. In particular, he warned IT executives that network-attached storage (NAS) systems are a most attractive ...
Critical Oracle patches coming next week
2007-10-15 14:46:00 Oracle Corp. will release security updates for its products next week fixing 51 vulnerabilities in its products. Included in the Critical Patch Update, set to be released Tuesday, will be critical updates for the company’s flagship Oracle Database. Twenty-seven database bugs will be fixed, but five of the bugs can be "exploited over a network ...
Critical Oracle patches coming next week
2007-10-15 14:46:00 Oracle Corp. will release security updates for its products next week fixing 51 vulnerabilities in its products. Included in the Critical Patch Update, set to be released Tuesday, will be critical updates for the company’s flagship Oracle Database. Twenty-seven database bugs will be fixed, but five of the bugs can be "exploited over a network ...
Some unanswered website vulnerability questions
2007-10-15 14:33:00 In the industry we discuss at great length the legal risks and ethical responsibilities of the person disclosing an issue, but not enough about the same when it comes to the business itself. I?ve had a hard time getting authoritative answers to some seemingly simple questions, so I figured I?d give the blog a try. ...
Some unanswered website vulnerability questions
2007-10-15 14:33:00 In the industry we discuss at great length the legal risks and ethical responsibilities of the person disclosing an issue, but not enough about the same when it comes to the business itself. I?ve had a hard time getting authoritative answers to some seemingly simple questions, so I figured I?d give the blog a try. ...
Common Denial of Service Attacks
2007-10-15 14:27:00 Denial of service attacks come in two types: Denial of Service attacks (DoS) and Distributed Denial of Service attacks (DDoS). A DoS attack is ‘an attack in which a third party purposely floods a network or website with traffic in order to prevent legitimate access (?Denial of Service?, 2007)’. A DDoS ‘occurs when multiple ...
Common Denial of Service Attacks
2007-10-15 14:27:00 Denial of service attacks come in two types: Denial of Service attacks (DoS) and Distributed Denial of Service attacks (DDoS). A DoS attack is ‘an attack in which a third party purposely floods a network or website with traffic in order to prevent legitimate access (?Denial of Service?, 2007)’. A DDoS ‘occurs when multiple ...
Protect Public Computers with Windows SteadyState Part 1
2007-10-07 08:59:00 If you have ever managed shared access computers, like computers in schools, public libraries, Internet cafes, kiosk machines, etc, you probably know how hard it is to keep the computers running in the long run, as well as keeping the security level high and up to date, without too much work and ?hands-on?. What we ...
Protect Public Computers with Windows SteadyState Part 1
2007-10-07 08:59:00 If you have ever managed shared access computers, like computers in schools, public libraries, Internet cafes, kiosk machines, etc, you probably know how hard it is to keep the computers running in the long run, as well as keeping the security level high and up to date, without too much work and ?hands-on?. What we ...
How to Trace a DDOS Attack
2007-10-07 08:53:00 At most any time of the day, there’s a distributed denial-of-service (DDOS) attack underway somewhere on the Internet. Yes, it’s still true, despite reports that some ISPs have experienced fewer DDOS attacks overall during the last six months. It’s a matter of quality, not quantity: "When DDOSes do occur, they are done with much greater ...
FullDisk Encryption Is Partial Protection Analysts Say
2007-10-07 08:48:00 Full-disk and file-based encryption should be combined to best prevent data leaks, according to security analysts and vendors. It seems to be in the news about once a month?another laptop disappears containing thousands of pieces of corporate or personal data. Now the legal department wants to know whether IT can confirm that some or all ...
Defend your network from idle scanning
2007-10-03 08:39:00 If your organization’s intrusion detection system (IDS) identifies a scan of your network, and you just block that IP address, you likely haven’t addressed the real threat to your network. Black hats employ several stealth scanning techniques, and one of those threats is the idle scan. Idle scanning is a procedure that involves scanning TCP ...
Six ways to fight back against botnets
2007-10-03 08:31:00 1. Hire a Web-filtering service. Web-filtering services are one of the best ways to fight bots. These services scan for Web sites exhibiting unusual behavior or known malicious activity and block those sites from users. Websense, Cyveillance and FaceTime Communications are examples. All monitor the Internet in real time to find Web sites ...
Enterprise Security Management
2007-09-05 07:22:00 September 20-21, 2007 Sheraton Premiere at Tysons Corner 8661 Leesburg Pike, Vienna, Virginia 22182 Phone:(703) 448-1234 In conjunction with: Office of the Deputy Chief Information Officer, DoD National Security Agency Purpose: Industry and government must seek better approaches to enterprise-wide security, and develop and promote standard security practices to which the public ...
Enterprise security simplified with Checkpoint UTM-1
2007-05-15 22:05:00 With data security comprising a multitude of disciplines such as antivirus, intrusion detection and protection, authentication and more, the challenge of managing these often disparate activities can become a threat in itself. This is an issue faced by many medium to large organisations – but help is at hand. Directly addressing the complexity of effective and sound data security, specialist ICT |



