Security

RSS
Find network and information security news, reviews and analysis, covering data protection, privacy, endpoint security, and security management.
  • Homeland Security asks for more tech money

    Posted April 10, 2003 - 5:35 pm

    The head of the science and technology office of the new U.S. Department of Homeland Security has promised to work with other federal agencies and private vendors to develop technologies such as biometrics scanners of fingerprints or eye irises for use at U.S. border crossings.
  • Microsoft warns of virtual machine vulnerability

    Posted April 9, 2003 - 8:48 pm

    Microsoft Corp. warned users on Wednesday about two new security vulnerabilities affecting its Microsoft Virtual Machine, Microsoft Proxy Server 2.0 and Microsoft ISA Server 2000 products.
  • Who's afraid?

    Posted April 8, 2003 - 8:55 pm

    Getting caught crying wolf on issues of national security could have serious ramifications, says Jim Albertine, president of the American League of Lobbyists.
  • Former Bush official blasts gov't cybersecurity

    Posted April 8, 2003 - 8:34 pm

    U.S. President George W. Bush's former cybersecurity advisor blasted his old boss' efforts within the federal government, and another expert called for Congress to force companies to pay attention to cybersecurity during a congressional hearing Tuesday.
  • National Strategy to Secure Cyberspace: A call to inaction

    Posted April 8, 2003 - 10:44 am

    In February, President Bush released his much anticipated National Strategy to Secure Cyberspace. The report contains dire warnings about the threat posed by cyberterrorism, but Bush's National Strategy has a hands-off approach, essentially asking the private sector to police and solve its own security problems.
  • Fortifying your firewall

    Posted April 7, 2003 - 8:26 pm

    Firewalls are generally thought of as a way to keep attackers out of your network. Yet, as this article explains, a firewall can be one of the best defenses against worms - if you set it to prevent traffic from going out from your intranet. Find out more about this apparent paradox.
  • Did IDSs detect the SQL worm?

    Posted April 7, 2003 - 8:21 pm

    The recent Slammer worm tore a path through MS-SQL servers across the globe. Did intrusion detection systems do anything to slow the carnage? Security pros share their experiences in this archived mailing list discussion.
  • Weekend Internet attack exposes flaws in security preparation

    Posted April 7, 2003 - 8:13 pm

    The Slammer worm did more than just muck up a lot of Windows servers. It also revealed a lot of holes in the security plans and preparations concocted by IT departments around the world. Learn from the mistakes of others when you design your own best line of defense.
  • Analysis of the Sapphire worm

    Posted April 7, 2003 - 8:05 pm

    The Sapphire worm, also known as the Slammer, was one of the fastest spreading pieces of malware ever spotted in the wild. This report by a consortium of academic computer scientists details how Sapphire spread so quickly. Hopefully such close analysis will help prevent future attacks. Find out how it happened.
  • Portland sees rise in hacker attacks

    Posted April 7, 2003 - 3:49 pm

    Webmasters still shudder remembering the mysterious denial of service attacks launched against major computer sites several years ago. Now they seem to be on the rise again. Some experts blame the conflict in Iraq - but are they just grasping at straws for a reasonable explanation?
  • CSU works to fix computer security

    Posted April 7, 2003 - 3:38 pm

    A recent audit at the California State University system resulted in a scathing report on the security measures in the school's multimillion dollar new computer system. Find out the dirt and see if there are any lessons for you in your own security efforts.
  • VeriSign, nCipher team on hardware certificate

    Posted April 7, 2003 - 3:12 pm

    A new SSL (Secure Sockets Layer) certificate will provide stronger protection for online transactions by storing private key information in a hardware security module, according to a statement released by VeriSign Inc. and nCipher PLC.
  • Network Associates to buy Entercept for $120 million

    Posted April 4, 2003 - 4:11 pm

    Network security software company Network Associates Inc. continued its Intrusion Prevention buying spree, saying on Friday that it would acquire privately held Entercept Security Technologies Inc. for US$120 million in cash.
  • Report finds 84 percent jump in security incidents

    Posted April 4, 2003 - 9:34 am

    The number of computer security incidents and attacks detected at businesses worldwide soared by 84 percent between the fourth quarter of 2002 and the first quarter of this year, fueled in part by a surge in the number of mass-mailing worms, according to a report due out Monday from Internet Security Systems Inc.
  • Network Associates to buy IntruVert for $100 million

    Posted April 2, 2003 - 10:19 am

    Network Associates Inc. on Tuesday bolstered its arsenal of offerings to protect against network intrusions and cyberattacks by announcing an agreement to acquire IntruVert Networks Inc., a maker of hardware-based firewalls and intrusion detection systems.
  • The old ways are the best ways: Getting the most out of your old hardware

    Posted April 1, 2003 - 7:24 pm

    Hardware and software vendors obviously have a vested interest in getting you to upgrade to the latest and greatest version of their products. But the truth is that the legacy hardware you already own can do most of the tasks that any small office needs. This article explains how Linux can help you get the most out of your older machines.
  • Instant insecurity: Security issues of instant messaging

    Posted March 30, 2003 - 4:51 pm

    Instant messaging (IM) is an increasingly popular method for communicating over the Internet. IM is a real-time supplement to and, in some regards, a replacement for e-mailing. Unlike e-mail, IM allows users to see whether a chosen friend or co-worker is connected to the Internet. This paper describes instant messaging and offers a brief overview of some of the security threats associated with the service.
  • The National Strategy to Secure Cyberspace

    Posted March 30, 2003 - 4:39 pm

    Securing cyberspace is a challenge that requires a coordinated effort. The goal of this 76-page white paper is to empower Americans to secure the pieces of cyberspace that they control; Prevent cyber attacks against America's critical infrastructures; reduce national vulnerability to cyber attacks; and minimize damage and recovery time. (In PDF format.)
  • You can't outsource liability for security

    Posted March 30, 2003 - 4:33 pm

    Many companies, nervous about potential legal liabilities for security problems, outsource security assessment to specialized consultants. But if you decide to take this route, don't feel too secure: if you suffer a breach, the final legal responsibility is still yours, no matter what your consultant told you. Find out how to best prepare to meet your responsibilities in full.
  • The Gramm-Leach-Bliley Act vs. best practices in network security

    Posted March 30, 2003 - 4:24 pm

    The Gramm-Leach-Bliley Act sets certain requirements for financial institutions, regulating the way they protect customer data. But do these requirements conflict with network security best practices? One sysadmin believes so. Find out why.
  • Apache HTTP server security tips

    Posted March 30, 2003 - 4:05 pm

    The open source Apache Web server runs the majority of servers on the Internet today, and comes standard on most Unix operating systems. But just because it came with your server doesn't mean you can't improve its security. Follow the tips in this document to keep attackers away from your vital files.
  • Strengthening AIX security: A system-hardening approach

    Posted March 30, 2003 - 4:00 pm

    If you're going to be using AIX for especially sensitive purposes, you're going to want to go beyond the security that comes out of the box. This white paper walks you through the process of "hardening" your AIX box, making it as secure as possible. (In PDF format.)
  • Security in the Solaris 9 Operating Environment: Data sheet

    Posted March 30, 2003 - 3:52 pm

    Are you running Sun's latest OS offering? If so, you must know how to make it as secure as possible. This in-depth data sheet explains the security features of this powerful operating system.
  • Fending off future attacks by reducing your attack surface

    Posted March 30, 2003 - 3:46 pm

    How vulnerable is your system? One way to tell is to figure out the area of how many places an attacker can use as potential entryways into restricted areas. This article will help you audit your own Windows systems for weak points.
  • Incident response tools for Unix

    Posted March 30, 2003 - 3:42 pm

    Unix systems are powerful but complex, and when someone's hacked into your Unix machine, you'll have a job on your hands to figure out what's happened - and how. This first article in a three-part series explains the tools you'll need for the task.
Join us:
Facebook

Twitter

Pinterest

Tumblr

LinkedIn

Google+

SecurityWhite Papers & Webcasts

See more White Papers | Webcasts

Join today!

See more content
Ask a Question