DarkReading Weblog http://www.darkreading.com/blog/ Copyright 2010 Sat, 06 Feb 2010 16:08:12 -0500 http://www.movabletype.org/?v=3.14 http://blogs.law.harvard.edu/tech/rss Amazon's SimpleDB Not Your Typical Database Several cloud providers offer databases specifically designed for cloud deployment. Amazon's SimpleDB, while technically a database, deviates from what most of us recognize as a database platform. Although SimpleDB is still in prerelease beta format, developers have begun designing applications for it.

]]>
http://www.darkreading.com/blog/archives/2010/02/amazons_simpled.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/02/amazons_simpled.html?cid=RSSfeed_DR_ALL Security Views Sat, 06 Feb 2010 16:08:12 -0500 February 6, 2010 04:08 PM
New Flaws Pry Lid Off Cloud Frameworks A new set of vulnerabilities came to light this week at Black Hat DC, and its appearance provides a good look at our bleak "next-gen" security future.

]]>
http://www.darkreading.com/blog/archives/2010/02/outlook_cloudy.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/02/outlook_cloudy.html?cid=RSSfeed_DR_ALL CS Island Fri, 05 Feb 2010 12:21:05 -0500 February 5, 2010 12:21 PM
'Brand' Your Employees You might want your product to be in the news every day, and for your PR to create miracles for you. But if you want attention, then your company must speak out on big security issues and news.

]]>
http://www.darkreading.com/blog/archives/2010/02/security_pr_bra.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/02/security_pr_bra.html?cid=RSSfeed_DR_ALL Hacked Off Fri, 05 Feb 2010 06:14:08 -0500 February 5, 2010 06:14 AM
Litchfield's Last Hurrah Yesterday was David Litchfield's last day at NGS Software, and he commemorated the milestone by dropping a zero-day vulnerability in Oracle's 11g database at Black Hat DC. He also surprised the audience -- and possibly himself -- by awarding Oracle a "B+" final grade for security in 11g, after nearly 10 years of keeping Oracle on its toes by calling out vulnerabilities in its database technology.

]]>
http://www.darkreading.com/blog/archives/2010/02/litchfields_las.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/02/litchfields_las.html?cid=RSSfeed_DR_ALL Dark Dominion Wed, 03 Feb 2010 17:44:08 -0500 February 3, 2010 05:44 PM
Updated Tool Targets Facebook Security Security issues surrounding social networking sites make me cringe. I understand their practical applications, but they are also the platform for easy delivery of exploits through social engineering. I've seen many systems compromised by the unconscious click on a Facebook link that users' nonchalance on similar sites and their trust in the Internet frustrates me to no end.

]]>
http://www.darkreading.com/blog/archives/2010/02/updated_tool_ta.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/02/updated_tool_ta.html?cid=RSSfeed_DR_ALL Evil Bytes Wed, 03 Feb 2010 14:15:05 -0500 February 3, 2010 02:15 PM
Tool Helps Prepare For Disaster When I see an event like the Haiti earthquake, I worry that we treat disaster preparedness much like we do data backup -- we don't really think about it until it's too late. We are faced with putting in place a plan to deal with disaster, and then realize we don't aren't properly prepared. But I might have found a tool that can help.

]]>
http://www.darkreading.com/blog/archives/2010/02/preparing_for_d.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/02/preparing_for_d.html?cid=RSSfeed_DR_ALL Hacked Off Wed, 03 Feb 2010 09:19:38 -0500 February 3, 2010 09:19 AM
When Software Glitches Are Fatal -- Literally Hearing about how many companies were hacked during the Aurora attacks due to a software vulnerability in Microsoft's Internet Explorer (IE) is frustrating. Now another attack is ready to be unveiled at Black Hat DC that also uses an IE "feature." The thought of what can and has happened because of these flaws is scary -- theft of personal information, espionage, identity theft, etc. -- but what happens when software glitches lead to death?

]]>
http://www.darkreading.com/blog/archives/2010/02/software_glitch.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/02/software_glitch.html?cid=RSSfeed_DR_ALL Evil Bytes Mon, 01 Feb 2010 14:50:41 -0500 February 1, 2010 02:50 PM
70% Rise In Malware: Time To Block Facebook? New research published by Sophos today reveals a 70 percent increase in the number of companies reporting spam and malware attacks via social networks.

]]>
http://www.darkreading.com/blog/archives/2010/02/with_a_70_rise.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/02/with_a_70_rise.html?cid=RSSfeed_DR_ALL SophosLabs Insights Mon, 01 Feb 2010 11:19:57 -0500 February 1, 2010 11:19 AM
Wiping Out Wimpy Passwords Recent breaches at Rockyou.com and Hotmail illustrate the consistency of human behavior: Since the dawn of access control systems, users continue to choose easily guessed passwords.

]]>
http://www.darkreading.com/blog/archives/2010/01/reports_of_the.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/reports_of_the.html?cid=RSSfeed_DR_ALL Security Views Fri, 29 Jan 2010 13:11:20 -0500 January 29, 2010 01:11 PM
IE 6 Aftermath: Time To Review Your Browser Strategy The latest update for Internet Explorer is out, and organizations are busy applying or at least certifying the patch on their testbeds. http://www.darkreading.com/blog/archives/2010/01/internet_explor_1.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/internet_explor_1.html?cid=RSSfeed_DR_ALL Security Views Wed, 27 Jan 2010 19:31:31 -0500 January 27, 2010 07:31 PM TechCrunch Hacked Again: Foul-Mouth Hacker Embarrasses Top Blog Technology blog TechCrunch has been hacked for the second time in 24 hours.

]]>
http://www.darkreading.com/blog/archives/2010/01/techcrunch_hack_1.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/techcrunch_hack_1.html?cid=RSSfeed_DR_ALL SophosLabs Insights Wed, 27 Jan 2010 02:51:24 -0500 January 27, 2010 02:51 AM
TechCrunch Hacked The immensely popular blog TechCrunch has been compromised by hackers who posted an offensive message on its home page.

]]>
http://www.darkreading.com/blog/archives/2010/01/techcrunch_hack.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/techcrunch_hack.html?cid=RSSfeed_DR_ALL SophosLabs Insights Tue, 26 Jan 2010 04:10:56 -0500 January 26, 2010 04:10 AM
Johnny Depp Death Crash Video Launches Malware Attack An Internet rumor that Hollywood superstar Johnny Depp has died in a French car crash is being taken advantage of by cybercriminals, who have planted malware posing as video footage of the accident.

]]>
http://www.darkreading.com/blog/archives/2010/01/johnny_depp_dea.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/johnny_depp_dea.html?cid=RSSfeed_DR_ALL SophosLabs Insights Mon, 25 Jan 2010 06:40:24 -0500 January 25, 2010 06:40 AM
Operating In An Insecure World I've heard of the idea of operating day-to-day with the assumption that your organization is already compromised, and I just saw it reiterated in the Tenable Security Blog, but I think it's a tough one to swallow for most organizations. There has to be some level of trust within an organization, otherwise, how could you get any business done. But as tough as it is to accept, there is value in taking this approach.

]]>
http://www.darkreading.com/blog/archives/2010/01/operating_in_an.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/operating_in_an.html?cid=RSSfeed_DR_ALL Evil Bytes Fri, 22 Jan 2010 14:47:22 -0500 January 22, 2010 02:47 PM
Google/China Reality Check Amid The Fog Of Cyberwar We've all heard about the Chinese attacks against Google by now. We've heard of Google's moral standing, how corporations now impact international relations, and how censorship is bad and freedom is good. However, some important questions lost in the fog of war need to be asked.

]]>
http://www.darkreading.com/blog/archives/2010/01/fog_of_cyberwar.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/fog_of_cyberwar.html?cid=RSSfeed_DR_ALL Hacked Off Thu, 21 Jan 2010 11:00:23 -0500 January 21, 2010 11:00 AM
User Security After The Google Hack Last week's news about the Google hack has really raised some eyebrows. Doe-eyed users have learned the harsh truth that anyone can be hacked. The news of 20 or more other companies also being targeted along with Google made the impact that much worse.

]]>
http://www.darkreading.com/blog/archives/2010/01/user_security_p.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/user_security_p.html?cid=RSSfeed_DR_ALL Evil Bytes Wed, 20 Jan 2010 14:10:09 -0500 January 20, 2010 02:10 PM
Emergency Microsoft Internet Explorer Patch Arrives Thursday The IT world sighed with relief at the news that Microsoft is releasing an out-of-band patch for Internet Explorer on Thursday, Jan. 21.

]]>
http://www.darkreading.com/blog/archives/2010/01/emergency_micro.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/emergency_micro.html?cid=RSSfeed_DR_ALL SophosLabs Insights Wed, 20 Jan 2010 13:28:19 -0500 January 20, 2010 01:28 PM
What Data Discovery Tools Really Do Data discovery tools are becoming increasingly necessary for getting a handle on where sensitive data resides. When you have a production database schema with 40,000 tables, most of which are undocumented by the developers who created them, finding information within a single database is cumbersome. Now multiply that problem across financial, HR, business processing, testing, and decision support databases -- and you have a big mess.

]]>
http://www.darkreading.com/blog/archives/2010/01/data_discovery.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/data_discovery.html?cid=RSSfeed_DR_ALL Security Views Wed, 20 Jan 2010 09:00:02 -0500 January 20, 2010 09:00 AM
Share Your New Security Innovations I am working with InformationWeek Analytics to create an analysis of the year's top five technology innovations in the security arena. If you are a vendor and believe you have the next big thing, then you should contact us.

]]>
http://www.darkreading.com/blog/archives/2010/01/does_your_compa.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/does_your_compa.html?cid=RSSfeed_DR_ALL Hacked Off Fri, 15 Jan 2010 16:00:22 -0500 January 15, 2010 04:00 PM
The Cybersecurity Czar's First Big Test I'm still waiting for Howard Schmidt, the new cybersecurity czar, to weigh in on the Chinese cyberattacks revealed this week. Sure, Chinese hackers going after American interests and human rights activists is nothing new to the IT security world, but this latest development is big, and it could be a defining moment for Schmidt's new post.

]]>
http://www.darkreading.com/blog/archives/2010/01/the_cybersecuri.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/the_cybersecuri.html?cid=RSSfeed_DR_ALL Dark Dominion Thu, 14 Jan 2010 12:21:37 -0500 January 14, 2010 12:21 PM
Discovery And Your Database Database discovery is the act of locating databases on a network. Years ago, this was simple because companies had only one or two databases. Now just about every application created relies on database services to provide data integrity and transactional consistency.

]]>
http://www.darkreading.com/blog/archives/2010/01/database_discov.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/database_discov.html?cid=RSSfeed_DR_ALL Security Views Wed, 13 Jan 2010 10:13:53 -0500 January 13, 2010 10:13 AM
We Have Nothing To Say -- Or Do We? The first rule of appearing smart, they say, is to keep quiet, but keeping quiet doesn't help your PR. What are you to do?

]]>
http://www.darkreading.com/blog/archives/2010/01/security_pr_we.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/security_pr_we.html?cid=RSSfeed_DR_ALL Hacked Off Tue, 12 Jan 2010 02:05:41 -0500 January 12, 2010 02:05 AM
Iranian Cyber Army Attacks Chinese Search Giant China's No. 1 Website has fallen victim to a group of hackers calling themselves the "Iranian Cyber Army," who replaced the site's home page with a political message.

]]>
http://www.darkreading.com/blog/archives/2010/01/iranian_cyber_a.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/iranian_cyber_a.html?cid=RSSfeed_DR_ALL SophosLabs Insights Tue, 12 Jan 2010 01:22:52 -0500 January 12, 2010 01:22 AM
The Inconvenient Truth Behind Security A co-worker forwarded me an e-mail in which the original sender was asking about running vulnerability scans on his own and stated he was concerned about the scans causing downtime while the servers were being tested.

]]>
http://www.darkreading.com/blog/archives/2010/01/the_inconvenien.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/the_inconvenien.html?cid=RSSfeed_DR_ALL Evil Bytes Mon, 11 Jan 2010 14:55:24 -0500 January 11, 2010 02:55 PM
When PDFs And Flash Files Attack It's getting harder to protect our users from threats coming at them from seemingly trusted places. The Websites they've been using for years are suddenly the source of attacks through malicious advertisements being pushed to the "trusted" site by a third-party advertising service. File format attacks against Adobe's Flash and Acrobat are becoming the exploit du jour for attackers.

]]>
http://www.darkreading.com/blog/archives/2010/01/when_pdfs_and_f.html?cid=RSSfeed_DR_ALL http://www.darkreading.com/blog/archives/2010/01/when_pdfs_and_f.html?cid=RSSfeed_DR_ALL Evil Bytes Fri, 08 Jan 2010 14:18:03 -0500 January 8, 2010 02:18 PM