Stories by Antone Gonsalves

Targeted social media attacks said to be underreported

By Antone Gonsalves | 11 April, 2013 13:31 | 1 Comment

The latest targeted attack, on Chinese activists, shows how cybercriminals are broadening their tactics in going after individuals

Spam botnet-for-hire used to deliver Android malware

By Antone Gonsalves | 10 April, 2013 13:20

Development marks a new post-startup phase in the Android malware business, on par with that of malicious tech targeting Windows

CAMP for Chrome catches 99% of malware, Google says

By Antone Gonsalves | 09 April, 2013 13:14

Content-agnostic malware protection designed to tackle weaknesses of using whitelisting, blacklisting to stop malicious browser downloads

Companies should ban Facebook Home, experts say

By Antone Gonsalves | 08 April, 2013 14:34

Social network's new overlay for Android smartphones 'would be the first thing I would block on my network,' said one security adviser

Inspector General finds email security risks at SEC

By Antone Gonsalves | 04 April, 2013 22:33

Report found with Web mail that 'nonpublic information could potentially be disclosed to unauthorized persons,' among other problems

Businesses, privacy activists wrestle over California privacy bill

By Antone Gonsalves | 04 April, 2013 00:27

For privacy advocates, bill a 'foundational step,' but the Chamber of Commerce says proposed law goes too far

One-click-fraud apps go from PC to Android

By Antone Gonsalves | 02 April, 2013 23:40

Number counted on Google Play by Symantec has grown to over 200 published by more than 50 developers

DHS, FBI warn over TDoS attacks on emergency centers

By Antone Gonsalves | 01 April, 2013 22:08 | 1 Comment

Telephony denial-of-service attacks on the rise against public and private organizations

Hired guns suspected in South Korean cyberattacks

By Antone Gonsalves | 30 March, 2013 15:16

The people behind both attacks were just doing their job because of the backdoor file's directory path, Symantec believes

New U.S. law tightens screws on Chinese cyberespionage

By Antone Gonsalves | 29 March, 2013 13:38

Obama signs law requiring NASA, Justice and Commerce departments get clearance from the FBI before buying IT systems from China-related firms

Data leakage risk rises with cloud storage services

By Antone Gonsalves | 27 March, 2013 23:53

The biggest danger: Employees using apps such as Dropbox, Box and SugarSync for tucking away business documents to take home for work

New malware shows Android has target on its back

By Antone Gonsalves | 27 March, 2013 13:38

Finding seen as warning to U.S. companies that mobile OSes are the likely path to cyberespionage attacks

Think layers of security is all that? Think again

By Antone Gonsalves | 26 March, 2013 13:26

Of 1,800 serious malware NSS Labs tested, some always managed to get through -- no matter what combination of protection was used

Facing FTC pressure, Apple bolsters privacy, security

By Antone Gonsalves | 22 March, 2013 23:28

Apple is adding two-factor Apple ID authentication, and announced a May 1 end for developers using iPhone and iPad UDID information

South Korea bank attacks should prompt rethink in U.S.

By Antone Gonsalves | 22 March, 2013 12:31

DDoS attacks on U.S. banks were more advanced technically, but the attackers of the South Korean banks did much more damage

CSO Corporate Partners
  • Webroot
  • Trend Micro
  • NetIQ
rhs_login_lockGet exclusive access to CSO, invitation only events, reports & analysis.
CSO Directory

Open Space Security Suite

Kaspersky Open Space Security provides complete business protection in a single integrated suite of applications that work seamlessly across all platforms.

Security Awareness Tip

Incident handling is a vast topic, but here are a few tips for you to consider in your incident response. I hope you never have to use them, but the odds are at some point you will and I hope being ready saves you pain (or your job!).


  1. Have an incident response plan.

  2. Pre-define your incident response team 

  3. Define your approach: watch and learn or contain and recover.

  4. Pre-distribute call cards.

  5. Forensic and incident response data capture.

  6. Get your users on-side.

  7. Know how to report crimes and engage law enforcement. 

  8. Practice makes perfect.

For the full breakdown on this article

Security ABC Guides

Warning: Tips for secure mobile holiday shopping

I’m dating myself, but I remember when holiday shopping involved pouring through ads in the Sunday paper, placing actual phone calls from tethered land lines to research product stock and availability, and actually driving places to pick things up. Now, holiday shoppers can do all of that from a smartphone or tablet in a few seconds, but there are some security pitfalls to be aware of.