Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

VeriSign today announced that the Internet Corporation for Assigned Names and Numbers (ICANN) renewed the company's contract to serve as the authoritative registry operator for the .net registry for another six years.More than half of the world’s domains rely on Verisign’s infrastructure, and the company has held management of the .com/.net infrastructure for over 12 years. VeriSign also manages two of the world's 13 Internet root servers, a.root-servers.net and j.root-servers.net, considered national IT assets by the U.S. Federal government.

The Payment Card Industry (PCI) Council’s Virtualization Special Interest Group has released new guidance pertaining to virtual environments. Any organization that accepts and manages credit cardholder data within a virtual environment must understand this guidance and act accordingly. It will influence how auditors assess virtual environments and whether these environments comply with PCI requirements.

Kaspersky Lab today announced its first security solution designed exclusively for Android tablets. The new solution, Kaspersky Tablet Security, helps protect tablet users with real-time protection against viruses, spyware, Trojans, bots, and more.

Cellcrypt, a provider of encrypted voice calling solutions for mobile phones, today announced that it has launched Cellcrypt Mobile™ for iPhone®, a version of its encrypted voice calling application that runs on Apple® devices running iOS and operates over Wi-Fi™, GSM, CDMA and satellite networks. Today’s announcement follows the release of the Android version which the company released back on June 14th.

The world is creating massive amounts of data. How much? According to the results of the EMC-sponsored IDC Digital Universe study released today, 1.8 zettabytes of data will be created and/or replicated in 2011, revealing that the world's information is more than doubling every two years—a rate faster than Moore's Law.

Universal Secure Registry LLC (USR), a mobile payment security technology and identity authentication company founded by Kenneth Weiss, the inventor of the technology behind the SecurID tokens now owned by RSA, today announced licensing availability of its patented electronic wallet technology to third parties including credit card companies, wireless carriers, banks, retailers and others.

Symantec today announced the latest version of its high availability solution for VMware virtual environments helps customers virtualize their business critical applications. The latest version of Symantec ApplicationHA extends the existing capabilities for disaster recovery with VMware vCenter Site Recovery Manager integration and provides a dashboard to monitor and manage hundreds of applications within VMware vCenter Server.

Lulzsec, the hacking group that quickly rose to fame over the past two months after hacking and exposing many corporations, governments, and individuals, says it’s calling it quits. In a post today, the group wrote, “Our planned 50 day cruise has expired, and we must now sail into the distance, leaving behind - we hope - inspiration, fear, denial, happiness, approval, disapproval, mockery, embarrassment, thoughtfulness, jealousy, hate, even love.”

Although it’s a little early for the “what did you do on your summer vacation?” essay, I have mine done. I vacationed in Orlando with my family last week. We did the whole Universal Studios/Disney thing, and had a blast. Although my kids called me a geek for doing so, I pondered the meaning of various happenings and observations that week. Here’s my attempt to unpack the significance of these events.

International Operation Targeted Two Cybercriminal Rings That Caused More than $74 million in losses The Department of Justice and the FBI, along with other law enforcement agencies around the world, announced the indictment of two individuals from Latvia as part of Operation Trident Tribunal, an ongoing operation targeting international cyber crime.

It’s rare that a day goes by without seeing news of another breach or other form of cyber attack in the news headlines. According to a recent survey, organizations are currently experiencing multiple breaches, with more than half (59 percent) of respondents citing two or more breaches in the past 12 months.

Do you allow your employees to surf using open wireless networks from their phones or laptops? What are the easiest ways that attackers can sniff email or gain access to corporate information from these devices? What are the best ways to protect corporation information on the go?

RSA, the Security Division of EMC, has been in the news lately, and not in a good way. The first shoe dropped in March, when the company disclosed via press release that an unknown attacker, likely a state-sponsored actor, stole certain unidentified assets related to its SecurID product.

McAfee announced enhancements to its security management solution today, adding automated and real-time security and risk analytics to help customers proactively identify, assess, manage and report on enterprise security.The McAfee Security Management solution delivers complete integration between its McAfee® ePolicy Orchestrator® platform, McAfee® Risk Advisor, and McAfee endpoint products to enable organizations to gain visibility of security and risk events across on-premise or hosted desktop, network, or server.Enhancements to the updated soution include:

TLS, Transport Layer Security, is a means of securing the transmission of email between two MTAs (mail transfer agents). It prevents an eavesdropper from capturing the headers and body of an email in clear text. TLS is a near-universal feature of MTAs (there are some MTAs that privilege speed over security that lack the feature), and mail administrators usually have it enabled such that anyone attempting to send an email can request its use and negotiate a TLS session.

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk.

Cloud Security

Cloud Security

A total of 22 patches were releaased, a majority for code execution, privilege escalation, and information disclosure vulnerabilities.

ICS/OT

Government

Late amendments to the Cyber Security and Resilience Bill would give ministers new powers to restrict risky technology providers as supply chain attacks intensify.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.