Filed in archive Security
by Eileen Peck on October 08, 2007
Last week, the Federal government stopped responding to DNS requests for the State of California's Web site in response to servers within that network that had been hacked and were redirecting...
Read the full post.
Filed in archive Security
by Eileen Peck on September 26, 2007
In last week's IDC telebriefing, IDC analyst Stephen Minton suggested that the number of bytes of data generated by computers and other personal electronic devices will rival the number of grains...
Read the full post.
Filed in archive Security
by Eileen Peck on September 25, 2007
The GAO has released an update to its investigation of a May 2006 data breach at the Veterans Administration. The auditor's updated report notes that the VA has not completed 20 of 22...
Read the full post.
Filed in archive Security
by Eileen Peck on September 03, 2007
The Storm Worm, which originally debuted in January, is making the rounds again, using multiple routes designed to trick users into activating the worm. Most recently, Storm Worm, which is also known...
Read the full post.
Filed in archive Security
by Eileen Peck on September 01, 2007
Leading anti-viral software manufacturers are taking Sony to task for using an invisible directory on its MicroVault USB memory stick to bury user data. The MicroVault has a built-in fingerprint...
Read the full post.
Filed in archive Security
by Eileen Peck on August 27, 2007
Data loss and theft is nothing new. High profile losses have included personally identifiable data, medical records, credit card and financial information, and a host of other corporate data. Recent...
Read the full post.
Filed in archive Security
by Eileen Peck on August 23, 2007
A study released by Insight Express reveals that nearly half of mobile users open email and attachments from unknown persons, and one-third of mobile users access open wireless connections, regardless...
Read the full post.
Filed in archive Security
by Eileen Peck on August 14, 2007
Germany's recently enacted law that prohibits the creation, distribution and possession of hacking tools is causing no small amount of consternation among the security industry. The aim of the law...
Read the full post.
Filed in archive Security
by Eileen Peck on August 06, 2007
A recently released survey conducted by PatchLink indicates that 54 percent of IT managers' identify zero-day vulnerabilities as their major concern. The survey, which relied on answers by 250...
Read the full post.
Filed in archive Security
by Eileen Peck on August 03, 2007
Earlier this week, Apple released Security Update 2007-007 for the Mac OS 10.3.9, 10.4.9 and Mac OS X Server 10.4.9. The mega-patch release fixes nearly fifty vulnerabilities in the current version of...
Read the full post.
Filed in archive Security
by Eileen Peck on August 01, 2007
Mozilla released a patch on Monday to its Firefox browser product that fixes two known issues: earlier releases of Firefox did not percent-encode spaces and double-quotes in uniform resource...
Read the full post.
McAfee will distribute Rootkit Detective 1.0 free of charge via the McAfee Web site. Rootkit Detective has been in beta on the McAfee site for several months and was downloaded more than 100,000...
Read the full post.
Last week, Cisco released notice of two separate vulnerabilities that affect its Unified Communications Manager, formerly known as Call Manager. The first vulnerability involves two separate overflow...
Read the full post.
Fidelity National Information Services announced the theft of more than 2.3 million customer banking records from a subsidiary company that makes check acceptance recommendations to merchants. The...
Read the full post.
Filed in archive Security
by paul on April 10, 2006
Gambling with your network security is not a good idea. If you don't have a written risk management plan that has details about what you need to protect most, you might want to consider writing...
Read the full post.
Filed in archive Security
by paul on February 20, 2006
Microsoft's Internet Security and Acceleration Server (ISA) has been around for a while. The newest version will be called ISA Server 2006 and has been released for beta testing. You can download...
Read the full post.
Filed in archive Security
by paul on February 14, 2006
Everyone knows that keeping ahead of the bad guys is a full time job. Knowing what patches are out there is a critical aspect of any security program.While the RSA conference gets underway in San...
Read the full post.
Filed in archive Security
by paul on February 02, 2006
firewalls can give you a false sense of security as can just about any security measure. The truth is there is no perfect solution to protect you or anyone else that does something stupid. With more...
Read the full post.
Filed in archive Security
by paul on January 21, 2006
microsoft has a series of webcasts under the Security 360 title described as follows:"Security360 is a monthly webcast series hosted by Mike Nash, Microsoft's Corporate Vice President...
Read the full post.
Filed in archive Security
by paul on January 18, 2006
Keeping track of the latest Internet exploits can be a full time job. If you use RSS feeds to read your news and favorite blogs you'll want to add the SANS Internet Security Storm Center feed to...
Read the full post.
Filed in archive Security
by paul on January 17, 2006
The Microsoft Security Response Center has a blog and recently had a technical post on the WMF issue. There are a few good links to Microsoft security resources there as well.......
Read the full post.
Filed in archive Security
by paul on January 17, 2006
Found this article over on linux Planet about Novell releasing their AppArmor Linux security application as open source. If you have Linux boxes and are concerned about security it's worth a...
Read the full post.