Intrusion Prevention

RSA: The fundamental challenge of security versus privacy

Angela Moscaritolo April 22, 2009

A fundamental tension exists in balancing individual privacy rights and the collective right to security, Gary McGraw, CTO of application security vendor Cigital said at the RSA Conference Tuesday.
 

Cyberattack repairs cost Pentagon $100 million in six months

Angela Moscaritolo April 08, 2009

The Pentagon has spent more than $100 million in the past six months repairing damage to its networks caused by cyberattacks, according to military officials.
 

GhostNet spy network phishes international victims

Chuck Miller March 30, 2009

The recently uncovered cyberespionage network named GhostNet made use of phishing malware to attack the nearly 1,300 computers that are said to have been compromised by servers traced to China.
 

Web apps account for 80 percent of internet vulnerabilities

Angela Moscaritolo March 18, 2009

Vulnerabilities in web applications made up 80 percent of all web-related flaws in the second half of 2008 and rose in prevalence by about eight percent from the first half of the year.
 

Conficker worm variant kills security processes

Chuck Miller March 06, 2009

Computer systems that are already infected by the Conficker worm are being pushed a new component that kills protective security processes.
 

Web filtering evolves to meet changing threats

Angela Moscaritolo February 18, 2009

Web filtering today goes beyond just blocking access. It now has to be integrating Web 2.0, managing data leakage, and guarding against malware coming in, according to a new study.
 

Government computers under attack

Greg Masters February 17, 2009

Attacks on government computer networks increased sharply in 2008, but the new administration's focus on cybersecurity may help thwart future attacks.
 

Trustwave acquires NAC vendor Mirage Networks

Angela Moscaritolo February 17, 2009

Managed security vendor Trustwave will add network access control (NAC) technology to its suite of solutions with its acquisition of Mirage Networks, the company announced Tuesday.
 

StillSecure, ProtectPoint unite

February 10, 2009

StillSecure has acquired ProtectPoint Security, a managed security services provider. The deal, announced Monday, helps round out StillSecure's line of NAC, IDS/IPS and vulnerability management products, the company said. Teams from both companies will integrate manufacturing and management efforts to build and manage network security. Terms of the deal were not disclosed; both companies are privately held. — CAM
 

Geeks.com settles with FTC

Angela Moscaritolo February 06, 2009

An online computer supplies and electronics retailer settled Federal Trade Commission charges that it violated federal law by not providing adequate security to protect customer data, the agency announced Thursday.
 

Data Privacy Day celebrates the safeguarding of information

Angela Moscaritolo January 28, 2009

Companies around the globe are recognizing the second annual Data Privacy Day on Wednesday with seminars and other events aimed at educating users and generating discussion around the topic.
 

NIST releases draft guidelines for data protection

Angela Moscaritolo January 15, 2009

NIST this month released draft recommendations that federal agencies -- and their contractors -- should follow to protect the confidentially of personally identifiable information.
 

Accused hacker hopes guilty plea can keep him from U.S.

Dan Kaplan January 12, 2009

There appears to be one more chance for accused NASA hacker Gary McKinnon to avoid extradition to the United States.
 

Congressman seeks discussion on House cybersecurity

Dan Kaplan January 07, 2009

One of the congressmen who admitted last year that his office computers were hacked wants to raise cybersecurity awareness on Capitol Hill.
 

VeriSign switches to new hash function to secure SSL certs

Angela Moscaritolo January 05, 2009

The news comes after a serious weakness was revealed last week in the MD5 cryptographic hash function.
 

Phishing scam hits Twitter

Angela Moscaritolo January 05, 2009

Twitter users had their account credentials stolen in a massive, still ongoing phishing campaign.
 

MD5 insecurity affects all internet users

Angela Moscaritolo December 31, 2008

Certification Authorities that have not moved to a more secure cryptographic hash function than MD5 have come under fire in the security world.
 

Hackers find hole to create rogue digital certificates

Angela Moscaritolo December 30, 2008

Research presented at the 25th Chaos Communication Congress in Berlin demonstrated how an attacker could impersonate any website, including those secured by the HTTPS protocol.
 

Fending off network attacks

Greg Masters December 23, 2008

With attackers shifting their focus to applications, the IT team at University of Miami, Miller School of Medicine, decided it was time to upgrade the school's intrusion prevention solution, reports Greg Masters.
 

State Department snoop sentenced

Greg Masters December 23, 2008

A former employee of the U.S. Department of State was sentenced for unauthorized access to a database containing passport applicants' confidential information.
 

New free tool detects malware on networks

Angela Moscaritolo November 25, 2008

BotHunter was sponsored by the U.S. Army Research Office and is being used by U.S. government and the Department of Defense.
 

Military's ban of USB thumb drives highlights security risks

Angela Moscaritolo November 20, 2008

The U.S. Department of Defense has banned USB drives and other removable media after a worm hit military networks.
 

$1 million reward for arrest of cyberextortionists

Dan Kaplan November 12, 2008

A pharmacy benefits firm offers $1 million for information leading to the conviction of a band of data thief extortionists.
 

Botnet experts meet as threat grows for corporations

Dan Kaplan October 21, 2008

The stakes were high when scores of researchers and investigators met Tuesday for the twice-annual International Botnet Task Force meeting.
 

Study: Hotel network security lacking

Angela Moscaritolo October 06, 2008

Hotel guests across the country could be connecting their laptops to an insecure connection, a new study concludes.
 

Study: Security strategies require diversity

Angela Moscaritolo October 02, 2008

It's official: Organizations face unique security risks, and efficient and effective information security programs cannot be achieved through a one-size fits all approach.