Security
Resources related to information security, including news and opinion and more on software and application flaws and fixes, data breaches, the inside threat the latest hacker attacks.
How the Phoenix Suns Basketball Team Takes on Social Media Attacks
FDA Defends Its Monitoring of Whistleblowers' Email
Fri, February 10, 2012 - The U.S Food and Drug Administration (FDA) today said it monitored the private email accounts of nine agency whistleblowers starting in 2010 to determine whether any of them leaked confidential information to the public.
6 Ways to Defend Against Drive-by Downloads
Fri, February 10, 2012 - Cybercriminals are increasingly using drive-by downloads to distribute malware without end users knowing something bad has just landed on their machine--until it's too late. Here are six ways IT departments can protect end users from the productivity sink and potential data loss that drive-by downloads create.
Blogger Exposes Major Google Wallet Security Flaw
Fri, February 10, 2012 - If you took one look at Google Wallet and said to yourself, "There's no way that's completely secure," it turns out you were right.
Career Advice: the Value of Certs
Fri, February 10, 2012 - Computerworld Premier 100 IT Leader Page Petry answers questions about certifications, winning a promotion and more.
How to Get the IRS' Attention: Forge Nearly $8 Million in Tax Returns, Steal Identities
Fri, February 10, 2012 - A former Internal Revenue Service employee this week got 105 months in prison for pleading guilty to theft of government property and aggravated identity theft in a case where the guy tried to get away with nearly $8 million in fraudulent tax returns.
Google Expands the Scope of Its Vulnerability Reward Programs to Cover Chromium OS
Fri, February 10, 2012 - Google says that both its Web and Chromium security reward programs were a big success
Web App Lets Enterprise Set Security, Sharing for Google Apps Users
Fri, February 10, 2012 - A new security tool lets enterprise IT groups set access and share policies for employees, including mobile users, who are working with the online Google Apps suite.
Criminals Open 'Factory Outlet' to Sell Stolen Facebook and Twitter Logins
Fri, February 10, 2012 - Security company Trusteer has discovered a 'factory outlet' selling user logins for Facebook and Twitter harvested as a sideline during attempts to steal online bank credentials.
Hackers Attacked Foxconn for the Laughs
Thu, February 09, 2012 - Hacker mischiefs calling themselves SwaggSec penetrated the computers at Foxconn, which assembles about 40 percent of the consumer electronics products in the world, and stole data that it posted to the Internet -- apparently just for laughs.
Citadel Banking Malware is Evolving and Spreading Rapidly, Researchers Warn
Thu, February 09, 2012 - The open-source development model is helping Citadel's creators patch bugs and add features faster
Antivirus Software Powerless to Stop Data Breach Attacks, Study Finds
Thu, February 09, 2012 - arge numbers of data breaches are being initiated by targeted malware that antivirus software simply can't detect, an analysis of 300 real-world incidents from 2011 has suggested.
Researchers Crack Satellite Encryption
Wed, February 08, 2012 - Researchers at a university in Bochum, Germany claim to have cracked encryption algorithms of the European Telecommunications Standards Institute (ETSI) that are used to secure certain civilian satellite phone communications.
Know Your Internet Bad Guys
Wed, February 08, 2012 - Anyone who makes a habit of wandering around in cyberspace should print this TrendLabs infographic, posted Wednesday, and keep it close at hand. This colorful web poster contains info on Internet bad guys, and helps people avoid getting scammed, hacked, or hurt by malware.
US Gov'T Falling Behind in Social-Media Race, Expert Says
Wed, February 08, 2012 - Other governments and some companies are using social media to address dissent, a DARPA program officer said
Trustwave Admits Issuing Man-in-the-Middle Digital Certificate, Mozilla Debates Punishment
Wed, February 08, 2012 - The issuing of subordinate root certificates to companies, so they can snoop on SSL-encrypted traffic, is a common industry practice
Europe Cares About Privacy, So You Must Too
Tue, February 07, 2012 - In late January, the European Commission published a proposal "on the protection of individuals with regard to the processing of personal data and on the free movement of such data."
FBI Declares Cloud Vendors Must Meet CJIS Security Rules
Tue, February 07, 2012 - The FBI Tuesday reaffirmed its rule that all cloud products sold to to U.S. law enforcement agencies must comply with the FBI's Criminal Justice Information Systems (CJIS) security requirements.
Adobe Sets IE As Next Target in Flash Security Work
Tue, February 07, 2012 - Adobe plans to tackle Microsoft's Internet Explorer (IE) in its ongoing work to "sandbox" its popular Flash Player within browsers, Adobe's head of security said today.
Symantec Expects Anonymous to Publish More Stolen Source Code
Tue, February 07, 2012 - Symantec today confirmed that the pcAnywhere source code published on the Web Monday by hackers who tried to extort $50,000 from the company was legitimate.
FTC Warns Background Screening Mobile Apps May Be Unlawful
Tue, February 07, 2012 - The Federal Trade Commission this week said it sent letters to six unidentified mobile applications makers warning them that their background screening apps may be violating federal statutes.
Kaspersky Lab CEO Backs Out of IPO Plans
Tue, February 07, 2012 - Kaspersky Lab founder Eugene Kaspersky has cancelled plans for the firm to go public, announcing his intention to buy back a 20 percent stake sold to a private equity investor a year ago.
Hacktivism Trumps Money As Motivation for Denial of Service Attacks
Tue, February 07, 2012 - Two-thirds of all DDoS attacks globally were motivated by politics, ideology, nihilism or vandalism.
Denial-of-Service Attacks Are on the Rise, Anti-DDoS Vendors Report
Tue, February 07, 2012 - Japan named as primary source of DDoS attack traffic for Q4 2011
Data Breach? Blame Your Third Party's Remote Access Systems
Tue, February 07, 2012 - An in-depth study of data-breach problems last year where hackers infiltrated 312 businesses to grab gobs of mainly customer payment-card information found the primary way they got in was through third-party vendor remote-access applications or VPN for systems maintenance.


