Virtual Event Today: CodeSecCon - Learn to Secure Your Software > Join Event
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Latest News

AlgoSec is making a play to bring its firewall management capabilities to virtual environments.The latest update of the company’s Security Management Suite (version 6.1) has added support for Check Point Security Gateway Virtual Edition. Support for other hypervisor-level firewalls is coming in the future, but the company would not commit to a firm timeline of when that would be or what products will be added to the list.

A recent study from HP and the Ponemon Institute surveyed more than 5,500 IT professionals, from operations to security management, to gauge potential problems with user access and policy enforcement. The results? Unchecked access to data is still an issue, no matter what segment of the business world you’re looking at.

The operator of a credit card fraud ring that ran up and down the east coast was sentenced on Friday to 12 years in prison for running operation that that used counterfeit credit cards encoded with stolen account numbers.Jonathan Oliveras, 26 of Brooklyn, N.Y., managed a crime ring that used stolen credit card account information in New York, New Jersey and the Washington, D.C., area.

In October 2010, Sourcefire announced its planned expansion into the Next Generation Firewall (NGFW) market. Just over a year later, the Columbia, Maryland based company has officially made its launch into the NGFW space and will begin shipping the devices by the end of this month.

Sometime around the beginning of November, thieves managed to insert an additional circuit board into the self checkout Point of Sale (POS) machines Lucky’s stores in the San Francisco Bay Area. Since then, the company has collected more than 80 consumer and employee reports of fraudulent attempt to access bank account data. Unfortunately, there is nothing new or novel about this attack, only that it continues to happen in the age of smart embedded systems and PCI.

Which Web Browser is the Most Secure? New Research Tests How Web Browsers Stand Up Against Today's Web-based ThreatsSecurity research firm Accuvant, today released the results a study comparing the security of the three most widely used web browsers – Mozilla Firefox, Google Chrome, and Microsoft Internet Explorer.

Private equity firm Thoma Bravo continued its investment in the security space today, announcing that it has agreed to acquire Blue Coat Systems, a provider of Web security and WAN optimization solutions, for approximately $1.3 billion in cash.

China based telecom equipment manufacturer Huawei Technologies said today that it would voluntarily curb its business efforts in Iran, citing an increasingly complex situation in the country.In a statement, the company said it would no longer seek new customers, and that it would limit its business activities with existing customers.

In October 2010, Version 2.0 of the Payment Card Industry – Data Security Standard (affectionately called PCI-DSS) was released by the Security Standards Council and went into effect January 1, 2011. Most of the changes were focused on clarification of existing guidelines but could have an impact on the steps required to get PCI compliant.

Romanian Nationals Charged with Participating in Multimillion Dollar Scheme to Hack into and Steal Credit Card Data from U.S. MerchantsThe Department of Justice announced today that four Romanian nationals have been charged for their alleged participation in a multimillion dollar scheme to hack into and steal payment card data from merchants’ point of sale (POS) systems in the U.S.

Security researchers have uncovered more details about the recent Adobe Reader and Acrobat exploit that is being used in attacks targeting U.S. defense firms. According to Symantec, the attackers are leveraging a zero-day flaw in 9.x versions of Reader to infect Windows computers with the Sykipot Trojan, which opens up a backdoor on compromised systems.

ENSIA Identifies 16 Areas Where CERTS Fail on Proactive Detection of Network Security Incidents In a report detailing the findings of a study on proactive detection of network security incidents, the European Network and information Security Agency (ENISA) has identified 16 areas where Computer Emergency Response Teams (CERTs) are being hindered by process gaps that are impacting their job performance and overall effectiveness.

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

CodeSecCon is the premier virtual event bringing together developers and cybersecurity professionals to revolutionize the way applications are built, secured, and maintained.

Cloud Security

Cloud Security

A threat actor is claiming the exfiltration of millions of records from McDonald’s, TCS, Vodafone, and other large organizations.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.