Security Experts:

long dotted

NEWS & INDUSTRY UPDATES

The budget includes investments in expanding resources dedicated to cybersecurity as well as bolstering information-sharing efforts.
According to Veracode's report, applications will fail to meet OWASP Top 10 compliance 87% of the time.
President Obama signed the continuing resolution that will keep the government running though the end of the fiscal year, which includes a provision to block IT any risky purchases from China.
According to the Tallinn Manual, Stuxnet was an act of force; and the use of such force against Iran is likely illegal, as the U.S. was not acting in self-defense at the time the malware was deployed.
Specialist anti-North Korean websites and organisations run by defectors in South Korea said they were the victims of a coordinated cyber attack Tuesday.
South Korea said Friday that an IP address identified as a source of a major cyber attack this week was not based in China as originally believed.
Taiwan has set up a unit to create a comprehensive Internet shield against hackers, its intelligence chief said Wednesday, in response to what it claims is a growing cyber threat from China.
The South Korean military raised its cyber attack warning level Wednesday after computer networks crashed at major TV broadcasters and banks, with initial suspicions focused on North Korea.
During the weekend, the hacker released confidential memos sent to former Secretary of State Hillary Clinton to various news outlets.
New research uses honeypots to unearth information about the types of attacks targeting industrial control systems and where the attacks are coming from.

FEATURES, INSIGHTS // Cyberwarfare

rss icon

Oliver Rochford's picture
When the Chinese government states that it is not behind most of these attacks – it is possibly telling the truth. That the Chinese government has offensive cyber capabilities are not disputed. What is not a given is that all of this activity has been officially prompted or sanctioned.
Oliver Rochford's picture
It remains to be seen how the big powers will come to agree on the precise rules to govern cyber operations – currently the international legal status is uncertain, but the little players had better concentrate on improving old and developing new defensive measures.
Oliver Rochford's picture
Cyberwar, at least the type where infrastructure or actual lives are targeted and destroyed, will not just happen for the fun of it. There are consequences to any such activity, as recent policy activity and policy makers make clear.
Oliver Rochford's picture
It is because of the ambiguities and problems of definition and categorization that an International Agreement on acceptable and agreed cyber operations is the wisest and safest course of action.
Oliver Rochford's picture
One of the main criticisms that opponents of the Cyberwar Meme raise, is that much of the reporting on the subject is sensationalist, or worse, war- or fear-mongering. Aside from the implication that anyone warning about the dangers of cyberwarfare is accused of having ulterior motives, it also implies that there is no real danger.
Matthew Stern's picture
How do reconnaissance and surveillance relate to cyber space? In traditional warfare they are key to finding the enemy or to confirm or deny their course of action. These capabilities are also essential in cyber space.
Oliver Rochford's picture
All warfare is based on deception. There is sufficient evidence to prove that China utilizes cyber-espionage, but are cyber attacks being overly attributed to China?
Oliver Rochford's picture
We have an entire commercial class of security professional, but very few hackers. Where are our cyberwarriors? Where will they be when we really need them? With us, or against us?
Alan Wlasuk's picture
The world’s expectations of breach-proof SSL certification agencies have been shattered. As expected all of the ruling bodies that control the Internet have rallied to identify the root causes of these breaches and are working on future preventable mechanisms.
Idan Aharoni's picture
The worlds of counter terrorism and fraud prevention should increase their ties. Systems that are already implemented in one world may be applied to the other. Solution providers and policy makers from both worlds need to meet up and share ideas, thoughts and experience for the benefit of both.