Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

A number of servers belonging to kernel.org were compromised last month in an attack that may have started with a stolen user credential.According to a statement on kernel.org, which hosts the source code for the Linux kernel, the attack is not believed to have affected the source code repositories. While the situation remains under investigation, it is believed the attackers gained access to a server known as ‘Hera.’

A New Landscape in Security Technology: Applying Big Data for Intelligent Decision MakingOver the past few years we’ve seen a dramatic shift in the threat environment. Whether the threats come from hackers, script kiddies, client-side attacks, advanced persistent threats, or state-sponsored actors, the attacks are targeted, unexpected and deadly. The perpetrators are organized, well-financed and relentlessly innovative. They are motivated by money and will use any means possible to cash in.

Mocana, a San Francisco based company that focuses on mobile and smart device security solutions, announced today that it has received a strategic investment from Intel Capital, the global investment arm of chip giant Intel.

VMware and Samsung announced a partnership this week to deliver virtual desktops to mobile devices, enabling a new class of “dual persona” devices that could provide seamless and secure use of employee-owned IT devices for accessing both work and personal data.At the VMworld 2011 conference, the companies said they would collaborate by integrating both the VMware View desktop virtualization platform, and VMware Horizon Mobile with Samsung mobile devices, including its Galaxy S II and Galaxy Tab devices.

2011 State of Security Survey Investigates What Businesses are Doing About SecurityWith data breaches and cyber attacks constantly making headlines, it’s clear businesses continue to face challenges when it comes to securing IT assets and protecting company data. The good news – a new survey commissioned by Symantec has found IT security budgets and workforces appear to be reacting accordingly.

Antivirus Strategies for Virtualized EnvironmentsWe know by now that virtualized data centers and cloud deployments require more than the traditional physical security measures. They require security components that have been specifically developed for virtualization. These include firewalls, intrusion detection engines, compliance enforcement mechanisms, and antivirus protections.

A new worm targeting Microsoft Windows is squiggling its way around computer networks courtesy of weak passwords. Dubbed Morto, the worm doesn’t use a vulnerability, but instead propagates by compromising Remote Desktop connections on a network through brute forcing attacks. So far, the overall number of detections is relatively low - researchers at F-Secure put the number in the thousands – but reports of increased traffic on port 3389 prompted Microsoft to issue an advisory about the worm Aug. 28.

Netherlands-based DigiNotar, a subsidiary of VASCO Data Security, disclosed that an intrusion into its Certificate Authority (CA) infrastructure resulted in the fraudulent issuance of SSL certificates for several domains, including Google.com and CIA.gov.The fraudulent SSL certificate could be used by an attacker to masquerade as any subdomain of google.com, and could be used to spoof content, perform phishing attacks, or perform man-in-the-middle attacks against Web browsers.

Today at VMworld Dell announced its first public and hybrid cloud offering, with the availability of the Dell Cloud based on VMware vCloud Datacenter Services. Designed to provide a multi-tenant environment for running virtual systems, the new cloud services from Dell offer enterprise-class, secure, public, private and hybrid clouds.

Hurricane Irene Scams: Be Cautious as Cybercriminals Look to CapitalizeAs hurricane Irene makes landfall, we once again find ourselves on the brink of a natural disaster triggering millions of people to search the Web and social media channels for news and additional information, both out of necessity, and curiosity. Such events are prime opportunities for scammers and other cybercriminals to line their pockets.

Anonymous & San Francisco’s BART ProtestsI was in the middle of my high school years when the song “San Francisco (Be Sure to Wear Some Flowers in Your Hair)” by The Mamas & the Papas became an instant hit in the United States, England and most of Europe. It even became a rallying song for Czechoslovakia’s 1968 Prague Spring uprising. The world changed.

Managing Risks of Social Media in the EnterpriseBetween the launch of Google + and recent announcements from Twitter and Facebook, social network security has been front and center in the press during the past several days. While the changes are unlikely to diminish attackers’ interest in social networks, the talk about privacy once again underscores the importance of developing sound acceptable use policies for your organization.

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk.

Cloud Security

Cloud Security

A total of 22 patches were releaased, a majority for code execution, privilege escalation, and information disclosure vulnerabilities.

ICS/OT

Government

Late amendments to the Cyber Security and Resilience Bill would give ministers new powers to restrict risky technology providers as supply chain attacks intensify.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.