Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Call them errors behind the keyboard, cockpit errors, or wetware errors. Sometimes we just say “oops.” But, these terms do not do them justice. In reality, whatever you call them, they are the bane of our existence. Studies show varying ranges on how many of the vulnerabilities, errors, and subsequent data and/or system compromises we see because a user or admin did something wrong. But, do we have any sense for how negligent we, as users, really are?

Nadeem Akhtar of Maryland faces charges for the illegal exportation of items that are used directly or indirectly in activities related to nuclear reactors and the processing and production of nuclear-related materials.“The indictment alleges that Nadeem Akhtar conspired to violate export regulations by selling controlled items while misrepresenting what they were and to whom they would be sold” said U.S. Attorney Rod J. Rosenstein.

Last week we looked at how underground markets operate. Similarly to any market economy, the goods being traded in these markets are driven by supply and demand. There is no Consumer Price Index (CPI) for these illicit items. Yet, by tapping into hacker forums we can see the different goods being sold in these forums, as well as their asking price.

According to recent research conducted by Mimecast, while 71% of employees understand the risks, 47% still feel that it’s okay to use personal accounts to send work emails. The goal of Mimecast’s Generation Gmail Research project is to reveal how email is used by employees across the globe. And, in this particular segment, how attitudes about work email are changing and how progressive employers are managing this core communication channel.

New VMware View Client for iPad Lets Enterprise and Government Users Securely Access Their Virtual Desktops From AnywhereVMware today released a client that provides iPad users with a simple and secure way to access virtual Windows desktops, applications and data from their iPad. Available for free in the Apple App Store, the new VMware View Client, in combination with VMware View, delivers a modern desktop optimized for the iPad's high-resolution Multi-Touch display.

According to recent statistics coming from Dasient, a firm that helps discover and combat Web-based malware, “malvertising,” a growing method used to distribute malware via advertising tags served through an unsuspecting publisher’s Web site, saw a significant spike in Q4 2010. Dasient estimated that in the last quarter of 2010 there was a 25% increase in malvertising [ad] impressions based on the same set of networks the company monitored in Q3.

Today, Symantec and the Ponemon Institute released the 2010 Annual Study: U.S. Cost of a Data Breach, showing the rising cost of data breaches over the last five years. The average organizational cost of a data breach increased to $7.2 million. The study also found that for the second straight year organizations' need to respond rapidly to data breaches drove the associated costs higher. The sixth annual Ponemon Cost of a Data Breach report is based on the actual data...

Rapid7 today announced upgrades to its Metasploit Pro penetration testing solution. The latest version (v3.6) adds an enhanced command-line feature set and detailed PCI reports with pass/fail information to provide users with a comprehensive view of compliance posture with PCI regulations.

Statistics show Trojan.Win32.Generic!BT Holding as Number One Detection for FebruaryGFI Software has announced the top 10 most prevalent malware threats for the month of February 2011 as detected by scans performed by its anti-malware solution, VIPRE Antivirus, and its antispyware tool, CounterSpy.

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk.

Cloud Security

Cloud Security

A total of 22 patches were releaased, a majority for code execution, privilege escalation, and information disclosure vulnerabilities.

ICS/OT

Government

Late amendments to the Cyber Security and Resilience Bill would give ministers new powers to restrict risky technology providers as supply chain attacks intensify.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.