-
Microsoft Patch Tuesday targets multitude of Internet Explorer faults
Microsoft is issuing critical security bulletins this Patch Tuesday that affect all versions of Internet Explorer and deal with an exploit that attackers are actively working.
-
Microsoft's Patch Tuesday for April to address Windows 8 vulnerabilities
Windows 8 and Windows RT are subject to critical vulnerabilities that will be addressed on Microsoft's Patch Tuesday next week, both by virtue of supporting Internet Explorer 10.
-
Researcher raps Apple for not blocking stolen SSL certificates
A security researcher criticized Apple for what he called "foot dragging" over the DigiNotar certificate fiasco, and urged the company to quickly update Mac OS X to protect users.
-
VMware strives to expand security partner ecosystem
VMware yesterday said it has added more security vendor partners to its vShield product-development program in which security firms work with the company to develop data protection specifically designed for VMware's flagship virtualization platform, which today is vSphere 5.0.
-
Vulnerability analysis tools add compliance features
Compliance is a natural extension of a vulnerability analysis tool. Normal vulnerability scanning includes searching for unpatched systems, unprotected directories and other errors in configuration.
- 1
How ME Bank moved information security from IT to the boardroom
- 2
7 essentials for defending against DDoS attacks
- 3
One in ten new user accounts created to perpetrate fraud: ThreatMetrix
- 4
Aussie cops: Silk Road TOR anonymity 'not guaranteed'
- 5
Does encryption really shield you from government's prying eyes?
Incident handling is a vast topic, but here are a few tips for you to consider in your incident response. I hope you never have to use them, but the odds are at some point you will and I hope being ready saves you pain (or your job!).
- Have an incident response plan.
- Pre-define your incident response team
- Define your approach: watch and learn or contain and recover.
- Pre-distribute call cards.
- Forensic and incident response data capture.
- Get your users on-side.
- Know how to report crimes and engage law enforcement.
- Practice makes perfect.
Warning: Tips for secure mobile holiday shopping
I’m dating myself, but I remember when holiday shopping involved pouring through ads in the Sunday paper, placing actual phone calls from tethered land lines to research product stock and availability, and actually driving places to pick things up. Now, holiday shoppers can do all of that from a smartphone or tablet in a few seconds, but there are some security pitfalls to be aware of.








