|
|
Technology Industry News & Career Management information, brought to you by BrainWave Consulting Company.
Browse by Tags
All Tags » Security (RSS)
-
Yes, you heard me correctly… We still think about personal and corporate security only as an afterthought. Despite all the regulatory and industry compliance that has been created and updated in the past 15 years, as we close out this decade, we are hardly...( read more ) Share Post: Read More...
|
-
There are several major challenges to the successful implementation of good information security in many organizations today. It is not because business owners do not think that security is important. No, the issues exist because they do not...( read more ) Share Post: Read More...
|
-
I t has long been accepted that Information Security should be implemented in layers: Defense in Depth . The idea being that you should add overlapping protection mechanisms to either stop or slow down an intruder. To use a simple analogy, if you...( read more ) Share Post: Read More...
|
-
I just finished reading a provocative Computer World article about the PCI compliance process, entitled “Will the Real Enemy of Security Please Stand Up?” , and it highlights a common misconception about the role of auditing and auditors in the compliance...( read more ) Share Post: Read More...
|
-
Well, it’s been a while since we’ve had an active zero-day in Internet Explorer, but according to Microsoft Security Advisory 972890 , that’s what we’re looking at: a vulnerability in DirectX that allows for unauthenticated, remote execution attacks...( read more ) Share Post: Read More...
|
-
The Conficker worm continues to make headlines , not only because it has been so elusive over the past 5 or so months, but because it is configured to do something special on April 1, 2009. For a disturbingly large number of individuals and organizations,...( read more ) Share Post: Read More...
|
-
Quite frankly, it’s even more important than it has been in the past. This morning, I was reading some articles on information security, including news about the Conficker worm . You know, we haven’t had a really good worm in 3 or 4...( read more ) Share Post: Read More...
|
-
Since the middle of 2008, we have seen an increase in the types and complexity of information security attacks that organizations have been facing. The widespread worms of 2004 and 2005 gave way to the targeted attacks of 2006 and early 2007. Things...( read more ) Share Post: Read More...
|
-
Given the recent spate of breach announcements from companies like Monster.com and TradeFreedom Securities Inc. , I've been thinking about how poor security is going to impact organizations and consumers over the next few years. Even though there have...( read more ) Share Post: Read More...
|
-
It's pretty much official now (in case you didn't believe it before): We have exited the Worm era , and jumped head first into the era of specialized and targeted attacks ... According to a recent article by ComputerWorld, SANS security organization sees...( read more ) Share Post: Read More...
|
-
The folks at eEye Digital Security have put together a website that tracks various zero-day vulnerabilities, and offers analysis and remediation recommendations. The site is called Zero-Day Tracker , and can be found at the following URL: http://research.eeye.com/html/alerts/zeroday/index.html...( read more ) Share Post: Read More...
|
-
According to some reports , spyware is getting harder and harder to control. The sophistication of the malware makers is growing at a much faster pace than that of the security industry, even to the point of proof-of-concept adware code being developed...( read more ) Share Post: Read More...
|
-
The Microsoft AntiMalware team has recently published a paper discussing some of the data collected by their monthly AntiMalware tool. A summary of the article is available on the SANS website , and the full article is available from Microsoft at the...( read more ) Share Post: Read More...
|
-
More About Sophisticated Malware http://isc.sans.org/diary.php?storyid=1871 Virtual machine detection is a self-defensive property of many malware specimens. It is aimed at making it harder to examine the malicious program, because virtualization software,...( read more ) Share Post: Read More...
|
|
|
|