July, 2009:

A week of hacking sees new tactics and vendors put under pressure

Gary McKinnon loses High Court bid to avoid extradition

Adobe issues patch for critical vulnerabilities in Flash Player

Deputy Director for Information Security and Legal Services

Apple iPhone vulnerability demonstrated at Black Hat that allows smartphone to be knocked offline

Hotmail users warned over malicious spam that appears as image attachments

The Pirate Bay ordered to be blocked in Holland following court case

Use of unlicensed software leads to more than £6 million being paid out this year alone

A month of Twitter bug revelations means more security for micro-bloggers

A move away from a generic web use policy is the way forward for modern businesses

McAfee accidentally distributes the personal details of over 1,400 conference delegates

IBM announces acquisition of Ounce Labs

Sunbelt Software announces launch of malware analysis tool and exploit feed

Levels of spam increase significantly in last quarter as Auto-Run malware overlaps Conficker for infections

Vulnerabilities are usually left exposed for an average of 29 days although the availability of exploits is constantly shrinking

'Crimeware as a service' set to increase over the next two years

Doubts cast on security and short term trust of cloud use

The 'Y' generation has a need to learn about privacy

Claims made that threats of exposure at Black Hat forced Microsoft to release out-of-band patches

Proposals for IT to drag Britain out of recession need further consideration

Ipswitch announces launch of network monitoring solution and flow monitor

Steps need to be taken to consider security as SQL injections become more prevalent

Organisations encouraged to assess valuables as groups of cybercriminals share details of vulnerabilities

The need to patch vulnerabilities is greater than ever to avoid exploitation

Security vendors encouraged to include usability factor in products

Language-specific spam begins to hit the web

Facebook hits back at viral rumours over use of member's photos

Nebulas Security introduces data loss assessment tool

Credit card breaches reported at two companies with over half a million users possibly affected

Microsoft to release two emergency patches tomorrow

LAN sprawl causes IT managers to anticipate changes to the network

We don't need no education?

Splunk announces launch of latest technology with additions made on reporting and enterprise-wide usability

Experts claim that HSBC fine could have been avoided and more could be on the way

Sourcefire and Qualys partner to integrate Sourcefire 3D System with QualysGuard

Security ranked highly by consumers when it comes to online banking

Finjan detects zero-day attacks due to Adobe vulnerability

Will Facebook be able to recover after more criticism over privacy settings and user information?

Sophos blocked from YouTube after instruction on malicious Erin Andrews video

Information Commissioner takes action against Highland Council after two laptops are stolen

LogLogic enhances security event manager to incorporate new advancements

Facebook privacy and personal data security criticised by Canadian information commissioner

HSBC fined £3.2 million by FSA over data loss

SafeNet offers data loss prevention and anti-virus on the new eSafe SmartSuite Secure Gateway

RSA introduces SecurID token for the Apple iPhone

Facebook should look introspectively and consider scanning for malware and suspicious links

Malware reaches record levels in 2009 as cybercriminals focus on social networking sites

Internet Explorer and Firefox both hit by web exploits

Self-destructing code developed by researchers that automatically deletes files

Rise in SQL injection attacks should see applications reviewed and patched

SCH Distribution strengthens network with acquisition of IQ Sys

Kazaa moves to legality with paid for service

Spam reaches highest level in over a year

Hosted consumer email encryption product introduced by Marshal8e6

Hacker Croll details how he hit Gmail account of Twitter employee that led to last week's incident

A struggle to keep up with demands may be the biggest challenge to securing the NHS

Three companies pay around £100,000 following unlicensed software claims

Revelations of a Trojan getting through the Symbian system show that mobile malware is stepping up

PGP introduces mobile security for smartphones

Malicious Erin Andrews video appears online

McAfee moves into the cloud with Security-as-a-Service solutions introduced

The Twitter hacking incident last week should be a call to better security awareness and not about cloud storage

Facebook to introduce security measures to protect and educate compromised users

Call made for security education for NHS as personal details are lost on unencrypted devices

Increase in malware infections predicted as more workers stay at home to avoid swine flu

Email spam dominates threat reports as 2009 sees figures at highest levels

TechCrunch claims it contacted Twitter ahead of publication of hacked documents

Twitter hacking shows lack of security in cloud computing according to commentators

Scamming brothers jailed after hitting credit card providers for over £600,000

Irish ISP Eircom hit by multiple attacks that restrict service for users

Spain tops list of lost and stolen credit cards as holiday makers warned to be on guard to fraud

Virtualised appliances take centre stage in new Sourcefire 3D system

Remote worker protection introduced by SmoothWall

Thales launches network-attached hardware security module

Twitter suffers from hacking incident as documents are downloaded and published across the internet

Importance of patching emphasised as need for education stressed

Oracle patches show a major database vulnerability

RSA and Radware form partnership to develop stronger protection against malware

RSA confirms Nick Leeson as keynote speaker for European conference

Blogger convicted of piracy ordered to appear in advertising anti-piracy campaign

Claims on code breaking on social security numbers dismissed, although more security needs to be applied

Companies encouraged to view aims of final product to maximise application implementations

Comsec calls for efficient code checking to remove vulnerabilities, as it launches review and threat identification service

Vendors need to consider security factor of products when looking for buyers

Microsoft praised for patching zero-day vulnerabilities as prioritisation instructions given

Check Point introduces security management software blade to its architecture

Congressman urged US to carry out revenge cyber attacks on North Korea

Economic climate causes enterprises to look at cost-effective solutions

Microsoft warns of vulnerability in Office as it claims that exploits have already been detected

Check Point introduces the R72 browser virtualisation security solution

Juniper Networks launches adaptive threat management solutions

Online companies use botnets to send email newsletters, exposing themselves to scammers

Spam increases by 60 per cent in first half of 2009 as scareware threat rises

ImageShack hit by hacking group who call for an end to full-disclosure

Mobile phone directory website suspended on launch day after users overload it with removal requests

Patch Tuesday for July is set to be challenging for security departments

F-Secure completes acquisition of Steek

Companies fail to secure themselves or data against iPhones

Are passwords more secure when they are 'behind the mask'?

Twitter users infected by Koobface virus

London Mayor Boris Johnson slams extradition plans for Gary McKinnon

Microsoft defends actions over vulnerability and announces six patches for next week

Is there a need for a social networking watchdog to paralyse public power?

Microsoft ActiveX vulnerability claimed to be not as big a threat as Conficker

NHS computers hit by viruses as patient data is put at risk

Cornwall College combats laptop theft with help from Absolute Software

Guide published on common hacking and hoax campaigns

Companies need to educate and conduct both email and web filtering to protect against phishing

Positive reaction given to Google Chrome OS announcement but questions are raised over its ability to take a market share from Microsoft

North Korea blamed for DDoS attacks on United States and South Korea

McAfee announces launch of latest version of the ePolicy Orchestrator

Information Commissioner welcomed for action against firm that failed to protect customer data

PGP and Fidelis Security Systems introduce encryption solution with configurable data security policies

Not my fault

Google to launch operating system based on its Chrome browser

Microsoft issues security advisory over Video ActiveX Control vulnerability

SecureWorks completes acquisition of Managed Security Services from VeriSign

URL shortening links begin to be used extensively by spammers

Acronis introduces data deduplication in latest version of its backup and recovery platform

3ami introduces new version of USB monitoring and auditing system

Trojans account for 70 per cent of all malware in second quarter of 2009

Vulnerability detected on Microsoft Video ActiveX Control

Companies encouraged to pay more attention to the security of the browser

Social networking continuing to cause friction within Web 2.0 working environments

NeuStar expands European UltraDNS network infrastructure

Internet users are frustrated by security measures and have confused beliefs over issues

BT scraps plans to use the Phorm Webwise habit-tracking system

Security issues surrounding the incoming head of MI6 prove more education on social networking sites is needed

Commerce Media extends contract with Disposal Services Authority

Conficker still lingering as users fail to apply basic protection

PCI standard accused of being ambiguous and not achieving its aims

SANS Institute warns of ColdFusion websites being compromised

Vulnerability detected in Apple iPhone that could allow the handset to be taken over

Waledac botnet being prepared to send Independence Day-related spam

Integralis takeover welcomed if correct direction is taken

Stonesoft introduces new firewall and intrusion prevention system

Cybercriminals continue to show no malice when it comes to dead celebrity spam

Twitter applications could face copyright claims as Biz Stone looks to tighten branding

Facebook launches new privacy settings to make information security simpler for users

Businesses are incurring unnecessary costs due to inefficient email backup and archive management

Social networking is becoming more accepted by companies as IT professionals look to increase security

Sunbelt Software joins major brands in StopBadware.org project

DeviceWall solution selected by NHS South of Tyne and Wear to meet government framework targets on data protection

Deputy Departmental Security Officer - Information Security

Adventures in Dubrovnik

Network Box introduces intrusion detection and prevention system

China abandons plans for the Green Dam 'great firewall'

McAfee appoints new vice president of UK and Ireland

Companies struggle to implement disaster recovery procedures

Standards introduced for human identity and biometrics

SC Webcasts

Security beyond the (fire)wall

Streaming live on 19th June at 3pm BST

This webcast addresses the technological challenges of maintaining full control of your most sensitive information - even once it goes beyond the firewall - while maintaining the freedom and flexibility necessary to allow your staff and other stakeholders to work as efficiently as possible. Tune in for free to hear from our regular and popular guest speaker, Bola Rotibi from (ISC)2 application security advisory board. To secure your place, please click here.


The truth about vulnerability management: Compliance checkbox or real protection?

Streaming live 2nd July at 3pm BST

How often are you assessing network vulnerabilties? Is your current vulnerability management program merely a compliance checkbox for auditors? Tune into this webcast live to hear from Joerg Weber, head of attack monitoring, Barclays, Lee Barney, an information risk consultant, and Skybox's Michelle Cobb on how you can prioritise vulnerabilities in a way that makes sense for your specific threat posture. Secure your free place here.

SC Featured Webcast

Employee file sharing: the good, the bad and the ugly

This recently held webcast unveiled the full results from the latest data security survey, where it was revealed that 50 per cent of the information security professionals asked said that they had 'no real visibility' of how data is being sent within and outside the company. Guest speakers included the director of information security from Monster.co.uk and the ISO from Atos. If you missed the live show, you can tune into the on-demand video here.

SC Whitepapers

Java security: Balancing existing testing platforms with open source solutions

In a rush to get new products out to market quickly, companies expose themselves to the risk of software failure. Java developers often turn to open source solutions to help protect themselves from risk. This new whitepaper explains how you can use your existing testing platforms alongside open source solutions to fix those issues related to both security and quality within your Java code. To download the paper for free, please click here.


DDoS and downtime: Considerations for risk management

The purpose of this paper is to start a conversation about the often overlooked risk of downtime caused by DDoS attacks and to provide sufficient content for risk managers to account for the DDoS threat as they evaluate risks to their day-to-day operations and long-term mission. To read the paper in full, please download it for free here.


Ponemon 2012 Global Encryption Trends Study

In Ponemon's recent Global Encryption Study, the organisation surveyed 4,205 information security professionals across seven countries to examine how encryption has evolved over the last eight years. The study focused on data protection priorities, budgeted expenditures for encryption and the types of encryption technologies involved, with the findings revealing some interesting insight into the relationship between encryption and its impact on the security position of organisations. To read the full report for free, please download it here.


Advanced spear phishing: The rise of industrial phishing attacks

With phishing still the most common form of attack, hackers are now engaging in industrial-scale phishing attacks that leverage sophisticated customisation and delivery techniques. Borrowing tactics from cloud computing and database marketing, this study looks at longline phishing - an advanced form of spear phishing, which has higher clickthrough and penetration rates than traditional attacks, potentially causing a higher risk to IT security departments across the world. To read the study for free, please click here.


Home | News | Products | Whitepapers | Jobs | Subscribe | Contact Us | About Us | Advertising | Sitemap | Editorial | Subscribe to our RSS feeds RSS

This material may not be published, broadcast, rewritten or redistributed in any form without prior authorization.

Your use of this website constitutes acceptance of Haymarket Media's Privacy Policy and Terms & Conditions