Privacy Dilemma: How to Protect Yourself Online
Tuesday, August 5th, 2008Here are a few security tips for you to consider when you’re surfing the net
Here are a few security tips for you to consider when you’re surfing the net
a presentation about professional services : Anti-phishing and brand identity.
ArcSight announced that T-Mobile has chosen ArcSight ESM for Security Information and Event Management (SIEM) and Imperva SecureSphere Web Application Firewall won Information Security Magazine “strongest overall offering for application and database security” . Sweet !
The Kerberos Consortium goal is to establish Kerberos as the universal authentication platform for the world’s computer networks.
One of the innovative research presented in the report is the security model and risk posed by the various widgets which seem to be the hottest trend in GUI design.Either built for WWW, Windows Vista or Macintosh OSX Dashboard,the widgets are everywhere and Finjan found vulnerabilities in widgets and gadgets that enable attackers to gain control of user machines.
InfoWorld has announced the 2007 Best of Open Source in Security Awards and as far as I can see nothing new showed up in the awards list.
In case you neded a place to start in evaluating the steps required for building a Computer Security Incident Response Team (CSIRT) , look no further. CERT/CC has released the Action List for Developing a Computer Security Incident Response Team (CSIRT) .
In the wake of the latest PDF / ZIP spam surge, many security analysts and vendors have taken a shot at explaining this phenomenon. It is the case of GFI Software who released an interesting whitepaper called “Attachment spam – the latest trend”.
I would recommend the PCI DSS made easy to anyone who’s interested in getting a solid overview of the PCI DSS and also it’s interesting to see how GFI can help you address multiple sections in 9 of the 12 PCI requirements.
In adressing an IIS 5 bug (CVE-2007-2815), the Microsoft Knowledge Base article #328832 went a step further in presenting the conditions needed to reproduce the issue: they provided step by step instructions to what is basically an exploit of the vulnerability