Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

It’s certainly justified for an organization to worry about theft, loss or legal noncompliance as they put data in the public cloud. The cloud is a fast-moving target that continues to evolve so it’s fair to ask such questions as: At what moment will the security and controls be enough? and If we get locked in now, will we be locked out of future progress?

Solera Networks, a provider of network forensics solutions, today released Solera OS 5.0, a major update to its network forensics platform.Solera OS 5.0 helps IT security teams see everything happening on their networks in real-time, helping to recognize threats, and understand exactly what’s needed to defend against future attacks.

Varonis Systems, a provider of data governance software, this week released the latest version of its DatAdvantage for Exchange, bringing increased visibility and control over mailboxes and public folders to Microsoft Exchange administrators.With Varonis DatAdvantage for Exchange, administrators have increased visibility over built-in Microsoft Exchange journaling and diagnostics which only captures a limited amount of data.

In a pre-release Announcement, Oracle said that its June Critical Patch Update (CPU), which will be released on Tuesday, June 7, 2011, will contain 17 new security fixes for security vulnerabilities in Oracle Java SE.Security vulnerabilities addressed by this Critical Patch Update affect the following products and components:

Adometry (formerly Click Forensics), a company that helps customers monitor online ad campaigns, including identifying click fraud, today said its Malware Lab has discovered a new highly sophisticated advertising fraud scheme targeting online video, display and search ads.The attack, called “ad hijacking,” uses similar malware and infection delivery methods to create a network of computers aimed at committing advertising fraud through different kinds of advertisements and channels.

Fairfax, Virgina based Cyveillance today launched a solution designed to identify and protect against targeted social engineering attacks and prevent enterprise employees from exposing valuable intellectual property and sensitive information as a result of such attacks.

At the Cloud Computing Expo taking place this week in New York City, Core Security Technologies launched a software-as-a-service (SaaS) based security testing solution for Amazon Web Services (AWS) environments. The service, dubbed Core CloudInspect™ is an automated security testing solution that delivers on-demand intelligence and helps identify exploitable vulnerabilities in systems and web applications while verifying the security of AWS cloud instances.

Are you ready for the zombie apocalypse? You know, the rising of the undead, coming to feed on your living flesh? Animated shuffling corpses in search of your brains? Even the U.S. Center for Disease Control has stepped up their recommendations in the event of the pending zombie apocalypse.

In the hours proceeding the annual Hack In The Box conference in Amsterdam, researcher Don Bailey visited Boston, Afghanistan, Libya, and at the White House. Or so his tracking device reported.

Organizations are being challenged to manage the BYOD (bring your own device, which most reports refer to as "consumerization") trend as more employees use powerful and affordable personal mobile devices. More than half of information technology leaders in the US believe that BYOD poses a greater risk to the enterprise than mobile devices supplied by the company, according to a new member survey by the Information Systems Audit and Control Association (ISACA). Yet 27 percent still believe that the benefits...

Got a Plan to Fight Cybercrime? Don’t Be a Victim. Invest in Your Defenses Now. Cybercrime is on the rise. And it’s no wonder. It’s an incredibly lucrative “business.” In fact, now more profitable than the illegal drug trade, cybercrime generates some $100 billion globally per year.

As I wrote in an earlier column, “The Optimist’s Cybercrime Predictions for 2011”, in recent years many efforts have been taken to improve the collaboration between various law enforcement agencies around the world. International task forces were established, and cybercrime conferences aimed at law enforcement provide important networking opportunities for agents, allowing them to build relationships with one another.

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk.

Cloud Security

Cloud Security

A total of 22 patches were releaased, a majority for code execution, privilege escalation, and information disclosure vulnerabilities.

ICS/OT

Government

Late amendments to the Cyber Security and Resilience Bill would give ministers new powers to restrict risky technology providers as supply chain attacks intensify.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.