Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Organization Warns that Poor Governance over Geolocation can be DisastrousIn a recently released white paper, the ISACA has offered a general overview of the issues surrounding corporate and consumer privacy when it comes to mobile geolocation services. In addition, the organization has offered a simple mnemonic to consumers and employees to address privacy and safety concerns - aptly named ROUTE.

Danish security firm CSIS recently released the results of a three-month long study, backing a common line of thought in the security world. That is, third-party applications can lead to serious risk, especially when combined with a lack of patching.According to CSIS, five products are responsible for 99-percent of all malware infections. Many of the targeted applications are vulnerable due to a lack of patching, leaving the user and the network exposed.

Social media can be a useful tool for businesses, bringing substantial benefits to marketing and communications with customers and employees, when used properly. But as any IT security department knows, social networks such as Facebook, Twitter and LinkedIn pose a significant threat to users across the board as they blindly click links which often lead to spam, clickjacking attacks, or other malicious sites that could result in malware infection.

Considerations That can Help Enterprises Protect Themselves Against MalwareThus far 2011 has had the ignominious distinction of being the year of the breach, and modern malware has been one of the key transformative technologies that have enabled hackers to become far more intelligent and persistent in their attacks.

McAfee today said that it has appointed Jean-Claude Broido as president of McAfee Japan.Broido brings over 30 years of sales and marketing leadership experience in the US, Europe, Asia and Japan, most recently as senior vice president of International Sales at EMC’s Information Intelligence Group. Prior to EMC, Broido was executive vice president and general manager of EMEA for Documentum.

We’re not talking about plain old rules, but rather mandated rules as defined in a federally enacted legislation. As someone with a career in information security, my first answer is “yes, regulation is good for security.” Regulation helps make sure that people and companies are protecting the security of their systems, networks, and information, even minimally. If you are faced with regulatory compliance, you are faced with a legal issue. And, if you are not compliant, you are essentially breaking...

In 2009, Vivek Kundra was named as the country's first CIO and was charged with improving efficiency while also making government data more available to the public. Part of his plan was to transform federal IT management with a cloud-first policy and get away from wasteful spending on IT infrastructure. We’re slowly seeing a shift take place, and today an announcement was made on another set government IT assets moving to the cloud.

TRICARE Breach Potentially Puts 4.9 Million Individuals at RiskA massive data breach that could potentially affect 4.9 million individuals who received services from TRICARE, a provider of health care services to active and retired military personnel, was disclosed this week.

IT security talent is in high demand across government agencies and private companies, with a shortage of resources among the federal agencies that is creating a challenge in managing successful cybersecurity operations. Last year, the U.S. Cyber Command, which was scheduled to be “fully operational” by October 1st, missed its deadline, primarily due to the challenge of finding qualified personnel.

Juniper Networks today announced new enhancements to its Junos Pulse Mobile Security Suite, bringing new mobile device management and security controls, as well as an API to allow service providers and OEMs to integrate with the platform.

Along with the widely anticipated “Kindle Fire” tablet announced today, Amazon introduced a Cloud-Accelerated Web Browser that boosts the power of the tablet by using the computing power of Amazon Web Services cloud services, something Amazon is describing as a “split browser” architecture.

Dealing with the Aftermath of a Breach Is Challenging, but there are Things you Can do to Keep Things from Going from Bad to WorseBreaking into an enterprise’s digital vault is half the battle; the other part is getting away clean. If the arrest rates for hacking are any indication, that second part has become something of a science in the cyber-underground.

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk.

Cloud Security

Cloud Security

A total of 22 patches were releaased, a majority for code execution, privilege escalation, and information disclosure vulnerabilities.

ICS/OT

Government

Late amendments to the Cyber Security and Resilience Bill would give ministers new powers to restrict risky technology providers as supply chain attacks intensify.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.