Application Security: News
News
- +
WabiSabiLabi may close 0day auction site 30/10/2008 13:17:00
WabiSabiLabi may close down its online marketplace for security vulnerabilities.WabiSabiLabi may shut down its online marketplace for security vulnerabilities, focusing instead on the line of OneShield unified threat management (UTM) appliances it developed with Italian defense company EuroTech. - +
IBM, Secret Service, others study identity/cybercrime issues 09/10/2008 10:09:00
Center for Applied Identity Management Research organization teams experts in criminal justice, financial crime, biometrics, cybercrime and cyberdefense, data protection, homeland security and national defense.IBM, LexisNexis and the Secret Service are among a group of corporations, government agencies and academic institutions that has formed to study and help solve identity management challenges around cybercrime, terrorism and narcotics trafficking. - +
Companies own up to virtual security blind spot 02/10/2008 11:05:00
VMWorld attendees reveal vast majority of companies have little or no security in place for their virtual systems.The vast majority of companies have little or no security in place for their virtual systems. That is a scary statistic revealed in a survey of attendees at the recent VMWorld 2008 conference in Las Vegas. - +
Malware infects space station laptops 28/08/2008 08:15:00
Not the first time, says NASA; astronauts load up Norton AntiVirusMalware has managed to get off the planet and onto the International Space Station, NASA confirmed yesterday. And it's not the first time that a worm or virus has stowed away on a trip into orbit. - +
New attack against multiple encryption functions 22/08/2008 10:01:00
New mathematical attack works against a broad range cryptographic functions.Unless you're a dyed in the wool cryptographic geek you probably didn't know that there was a Crypto conference, or even a chain of worldwide crypto conferences that take place each year. Fortunately, for the most of us that aren't crypto geeks there are a handful of very highly skilled people who are; they can take the highly theoretical and complex mathematical proofs and arguments that make up most of modern cryptographic and cryptanalytic research and put it into plain language. - +
Kaminsky: Many ways to attack with DNS 07/08/2008 08:47:13
Dan Kaminsky says that SSL sites are also vulnerable to the DNS flaw he discovered.There were 6 a.m. calls from Finnish certificate authorities and also some pretty harsh words from his peers in the security community, even an accidentally leaked Black Hat presentation, but after managing the response to one of the most highly publicized Internet flaws in recent memory, Dan Kaminsky said Wednesday that he'd do it all over again. - +
Apple gets bruised in vulnerability report 05/08/2008 18:42:56
IE more secure than Firefox: X-Force reportApple has taken the place of Microsoft for disclosing more vulnerabilities than any other vendor, according to an IBM security report. - +
Exploit reveals the darker side of automatic updates 31/07/2008 10:58:00
A new exploit called Evilgrade can take advantage of automatic updaters to install malicious code on unsuspecting systemsA recent study of Web browser installations showed that far too few are up to date with the latest security patches. And browsers aren't alone; as my dear old mum can attest, it can be hard to keep up with OS and application patches when all you want to do is use your computer for work. It should come as no surprise that many PCs are vulnerable to security exploits that could otherwise be prevented. - +
DNS bug tattler not the first to guess flaw details 24/07/2008 08:33:50
Two weeks of silence helped, says researcher who found critical flawThe researcher whose speculation led to an early disclosure of information about a critical flaw in the Domain Name System (DNS), the Internet's traffic cop, wasn't the first to come close to the truth, said the security expert who found the bug and organized a massive patching effort. - +
Open-source software a security risk, study claims 22/07/2008 08:39:15
"Go into this with your eyes wide open," says Howard Schmidt, former White House cybersecurity czar.Open source software is a significant security risk for corporations that use it because in many cases, the open source community fails to adhere to minimal security best practices, according a study released Monday. - +
SQL attacks lobs onto pro tennis site 02/07/2008 11:52:19
Wimbledon perfect time for crook's criminal racket.Visitors to the Association of Tennis Professionals Web site have potentially been infected with spyware after apparent lax security allowed a malicious script to be injected across its pages.
Additional Resources
Polls
CSO Online Member Login
EXCOM scores back-to-back award trifecta 2008-12-01 10:46:00+11
“Just Graphics” isn’t enough any more 2008-11-28 15:02:00+11
Why Sealy’s management sleep soundly at nights... 2008-11-28 11:18:00+11
Capture and Digitize Your Treasure Moments ~ Compro VideoMate C200 USB A/V Capture Stick 2008-11-26 12:37:00+11
Net 24 slashes backup window by two-thirds 2008-11-26 10:28:00+11
Sponsored Links
PC World
Buying Guides
Good Gear Guide
Computerworld
ARN


