Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Report Shows Organizations Continue to Lack Communication and Understanding of Data and Application Security Strategies. A trio comprised of Application Security, Inc., Unisphere Research, and the Oracle Applications Users Group (OAUG) today released its 2011 Data Security report, “Managing Information in Insecure Times.”

Governance, Risk and Compliance (GRC) solutions provider Agiliance today announced the launch of Agiliance Continuous Compliance Service™ (CCS) for PCI, a cloud-based solution that manages the entire PCI life cycle.

McAfee’s latest threat report released today, shows continued growth of threats to mobile platforms as many predicted would be a trend in 2011. The McAfee Threats Report: Fourth Quarter 2010, also revealed that the number of pieces of new mobile malware in 2010 increased by 46 percent compared with 2009, noting that McAfee uncovered 20 million new pieces of malware in 2010, equating to nearly 55,000 new malware threats every day.

After all the doom and gloom predictions our industry typically sees coming out in December and January, it’s refreshing to see a report highlighting some positive trends. According to the 2011 Identity Fraud Survey Report released today by Javelin Strategy & Research, in 2010 the number of identity fraud victims decreased by 28 percent to 8.1 million adults in the United States, three million fewer victims than in 2009. Total annual fraud decreased from $56 billion to $37 billion, the...

Symantec today introduced the next version of its Symantec Control Compliance Suite, the company's solution designed to address IT risk and compliance challenges.New features in Symantec Control Compliance Suite 10.5 help organizations better manage IT risk while achieving a more holistic view of risk across their IT infrastructure. The latest release also continues to provide support for the latest regulatory and security standards and further expands upon integrated native assessment capabilities.

Google Ventures, the venture investment arm of Google, has invested in Dasient Inc., a provider of anti-malware solutions for websites and ad networks.

IT security and data protection company Sophos today introduced Sophos Mobile Control, a solution to help safeguard data on smartphones and handheld devices, including Apple iPhones and iPads, Google Android, and Windows Mobile devices.

Touting “the highest level of security available to protect confidential board communications,” the NASDAQ on Saturday acknowledged that its Directors Desk platform had been compromised and had been infected with an undisclosed “suspicious file.”

What’s worse, getting punched in the face or having your pocket picked when you’re not looking?Anyone who has experienced either of these distinct pleasures in life can tell you honestly that both really suck, but, the true pragmatist might argue that in the case of the former, at least you probably saw it coming.

In the early 2000’s virus writing was all the rage. Think of the massive virus outbreaks that took place. Millions of infected hosts. The Sober virus that infected 218 million machines in seven days. The MyDoom virus sent over 100 million virus-infected emails. The “I Love You” virus infected 55 million machines and collected their usernames and passwords. These attacks were about bragging rights, not money.

Why Organizations Should be Utilizing Security Information and Event Management (SIEM) Systems to Ferret Out Botnet Infections.Botnets are insidious. They spread like digital weeds and infect thousands to tens of thousands of machines at a time. Their only purpose is to enrich and empower the botnet owners as they infiltrate endpoints on consumer systems, colleges, and enterprises around the world. These botnets are used to send spam, launch denial of service attacks, and – increasingly – to snoop on corporate...

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk.

Cloud Security

Cloud Security

A total of 22 patches were releaased, a majority for code execution, privilege escalation, and information disclosure vulnerabilities.

ICS/OT

Government

Late amendments to the Cyber Security and Resilience Bill would give ministers new powers to restrict risky technology providers as supply chain attacks intensify.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.