Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

MobileIron, a provider of management and security solutions for mobile devices, raised another significant amount of cash as it looks to carve a leadership position in the mobile security space.

According to a report coming from Reuters, Lockheed Martin, the largest provider of IT services, systems integration, and training to the U.S. Government, is experiencing a major disruption to its computer systems, possibly related to a network security issue, sources familiar with the issue told Reuters on Thursday.

Damballa Inc., a company that helps identify and defend against cyber threats, today launched the latest version of its cyber threat solution designed to detect subscriber malware infections in Internet service provider (ISP) and telecommunications provider networks.Damballa CSP 1.6, identifies cyber threat activity on any type of subscriber device including PC, Mac, iPad, iPhone, Android and all mobile and smartphone platforms by monitoring a carrier’s DNS activity for malicious network traffic.

Core Security Technologies, a Boston based provider of security testing and measurement solutions, today announced enhancements to its CORE INSIGHT Enterprise solution, featuring a new attack path simulation that can simulate an enterprise environment and show potential paths that an attacker could take and the exploits that could be used to conduct an attack.

“A chain is no stronger than its weakest link, and life is after all a chain” -William JamesI was reminded when talking to a friend and colleague this week that security is, fundamentally, about people. It is basically a social activity for all that we focus so intently on the technology and on the minutiae of events. And while there isn’t always a traitor to point to, there is always a uniquely Human dimension to security.

Zenprise, a provider of mobile device management solutions, today announced the availability of Zenprise Secure Mobile Gateway™, a new offering that provides multilayer protection against malicious or blacklisted applications. With Zenprise Secure Mobile Gateway, IT administrators can provide employees the freedom to download and install applications on personal devices, while helping to protect enterprise resources from security breaches and rogue applications.

Symantec’s May 2011 MessageLabs Intelligence Report revealed a new trend in spammers establishing their own fake URL-shortening services to perform URL redirection. Symantec attributes this month's 2.9 percentage point increase in spam to the new spamming activity, a rise that was expected following the Rustock botnet takedown in March.

Application Whitelisting and Change Policy Management Ensure that Data and Applications are Protected Today’s cyberspace is often compared to the Wild West, with good reason. Criminal gangs roam around a vast, untamed wilderness. Cattle rustling has been replaced by identity theft. And, sometimes, just for kicks, today’s cyberscum deny services or destroy infrastructure—the modern-day equivalent of getting drunk and shooting up the town.

Report Finds Serious Disconnect Between Businesses and Mobile Users. Half of Lost or Stolen Devices Contain Business Critical DataIn collaboration with Carnegie Mellon University, McAfee today released “Mobility and Security: Dazzling Opportunities, Profound Challenges”, a report focusing on the consumerization of IT and its impact on security.

A former Bank of America (BOA) computer programmer was sentenced to 27 months in federal prison, after he installed malware on Bank of America ATMs that allowed him to suck out large amounts of cash from the machines. He pleaded guilty on April 13, 2011 and was sentenced this week.

In Boston, an employee of an MBTA subcontractor has been arrested in connection with an alleged scheme to produce millions of dollars’ worth of fake MBTA monthly passes and sell them directly to riders.Andres Townes, age 27, of Revere, MA, was arrested and charged with Larceny over $250 and Conspiracy to Commit Larceny over $250.

Security standards exist because someone recognized a need. HIPAA, for example, was created to protect sensitive healthcare data. All information security regulations were created for a reason. Healthcare organizations are required to comply with HIPAA and HITECH. HIPAA and HITECH define a standard that should be placed on certain healthcare data. While they might give us a sense of security, do HIPAA and HITECH really make us more secure?

NetIQ Corporation, a business unit of The Attachmate Group, this week announced it will take over the complete portfolio of identity and security solutions from sister company Novell. (Both are units of Attachmate) In addition, certain Novell data center solutions will be added to the NetIQ business unit solution portfolio.Novell product lines now operating under the Houston, Texas based NetIQ business unit include:

A joint study released this week by ThreatMetrix and the Ponemon Institute, looks at the increase in mobile commerce activity, and how this trend plays a role in the prominence of fraudulent mobile transactions. The study examined how comfortable consumers are with sharing their mobile location with a company. More than half of respondents said they would be willing to share this information if it meant protecting against online fraud.

In early May, the Michaels art supply chain reported that 90 PIN pads within some of its 995 stores nationwide had been compromised, with victims reporting fraudulent withdrawals of up to $500 made from ATMs on the West Coast against their credit and debit card accounts. While 90 units represents less than 1 percent of the total, Michaels took the extraordinary precaution of removing the approximately 7,200 comparable PIN pads from all its US stores. The company was also monitoring...

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk.

Cloud Security

Cloud Security

A total of 22 patches were releaased, a majority for code execution, privilege escalation, and information disclosure vulnerabilities.

ICS/OT

Artificial Intelligence

The Daybreak initiative will provide subsidized AI cyber capabilities, training and technical assistance, though OpenAI has disclosed few details about costs and eligibility.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.