Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

We have been thinking about information security for thousands of years. But as the world continues to evolve, Information Security must evolve to keep up with it.

A group of hackers claim to have stolen source code for Symantec’s Norton Antivirus software.Update: 01/06/12 12:20AM EST - Symantec has confirmed with SecurityWeek that hackers have accessed source code related to Symantec Endpoint Protection 11.0 and Symantec Antivirus 10.2.

Microsoft is starting the 2012 Patch Tuesday cycle off with a bang.According to Microsoft’s advanced notification, the January security update will include seven bulletins addressing eight vulnerabilities across Windows and Microsoft developer tools and software. Just one of the bulletins is rated ‘critical.’ The other six are rated ‘important.’

Second in a Series on Evaluating New Firewalls: Why Scalability is Important to Sustain Protections through Network Growth and Scale.I realize it may sound a little odd to put firewall scalability ahead of security. After all firewalls are, at their core, access control devices – the ultimate Internet traffic police.

Once again, Veracode has crafted up an infographic, this time comparing how Android and iOS stack up against each other when it comes to mobile security.Veracode, which provides static and dynamic application security testing solutions, noted that greater adoption of smartphones has led to greater security concerns and increased awareness of related vulnerabilities.

Check Point said on Wednesday that its line of secure gateways is now available to organizations using Amazon’s Web Services. The move allows organizations to extend their network security to the cloud, by leveraging virtual appliances such as Check Point’s IPS, App Control, URL Filtering, and Firewall.

In Information Security, you must first define your goals. These goals have to be realistic and inline with the resources at your disposal. One of the questions I like to ask security professionals is, “What is your security strategy?" Amazingly, the response often contains phrases like “We have firewalls and IDS’s on the perimeter”, or “We do vulnerability management using vendor xyz”.

China based NetQin Mobile, a provider of consumer focused mobile security solutions, and Motorola Mobility have inked a deal in which NetQin Mobile Security will be pre-installed on Motorola Android smartphones in China, giving consumers instant access to mobile security out of the box.

Acquisition of EasyLobby Strengthens Portfolio for Physical Access Control, Secure Issuance and Managed Services Markets HID Global, a provider of secure identity and physical access security solutions, today announced that it has acquired EasyLobby, a company that helps manage security of on-site visitors.

AirTight Networks, a provider of wireless security solutions, today announced that SpectraGuard Enterprise, the company’s flagship wireless intrusion prevention solution, has achieved FIPS 140-2 validation, making it certified for deployment within U.S. federal government agencies, including the Department of Defense.

Today more than ever, organizations are examining existing security programs. Those that don’t have a formal security plan in place are thinking about, if not scrambling, to make one. Great security means first identifying your needs and then making a resolution to revamp or create your company’s plan for the New Year. Here are some tips to help lay the groundwork.Assess your Technology

A group of Saudi hackers hit several Israeli targets over the holidays, subsequently releasing credit card details and other personal information on 400,000 individuals. However, the credit firms are stressing that there is no need to panic.Offered with the hope that the release would “hurt the Zionist pocket,” the Saudi group published the sensitive details over the holiday weekend. On Monday, once the list gained mass attention, it disappeared from the Web.

My brief relationship with the Morto worm lasted exactly 5 days, at least that I know of. She may have been lurking in my life for several weeks before that time; there were times when I would just catch a glimpse of her out of the corner of my eye, but I cannot be sure.

Raytheon Expands Cyber Security Capabilities With Acquisition of Henggeler Computer Consultants Defense contractor Raytheon continues to gobble up cyber security services firms, today announcing that it has acquired privately held Henggeler Computer Consultants, Inc., a contracting firm that provides enterprise architecture, analytics, software, cloud-based development solutions.

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk.

Cloud Security

Cloud Security

A total of 22 patches were releaased, a majority for code execution, privilege escalation, and information disclosure vulnerabilities.

ICS/OT

Government

Late amendments to the Cyber Security and Resilience Bill would give ministers new powers to restrict risky technology providers as supply chain attacks intensify.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.