Powered By InformationWeek Business Technology Network
 
Welcome Guest. | Log In| Register | Membership Benefits

All News

How To Spot A Fake Facebook Profile  February 02, 2012
Barracuda Networks gathers telltale characteristics of the phony Facebook "Friend"

Study: The Aftermath Of A Breach  January 26, 2012
New Ponemon-Experian study highlights organizations' top priorities following a data breach

Videoconferencing Can Be The Bug In The Boardroom  January 24, 2012
Recent research underscores that insecure video conferencing systems can allow hackers to listen into a company's confidential discussions. Firms should take steps to evaluate their systems and secure them

Microsoft Names Alleged Botnet Operator Behind Kelihos  January 24, 2012
Russian suspect worked for antivirus and software development firms in Russia

How To Prevent An Illicit Data Dump  January 11, 2012
Organizations can be ruined with a single, WikiLeaks-style data compromise. How can you prevent your enterprise from being one of them? Here are a few tips

When Someone Else's Insider Is Your Threat  January 10, 2012
Contract language and enforcement are necessary to protect your IP in another company's network. Just ask Symantec, which had its source code stolen from a third party by hackers

Worm Siphons 45,000 Facebook Accounts  January 05, 2012
Ramnit financial malware gets social with new variant

Protect Insider Data By Googling First, Often  December 27, 2011
Sensitive data is often exposed outside the company to searches via Google, Bing and others. Yet companies can find their data first, a cheap countermeasure for 2012.

Attackers Pose As Police In New Ransomware Campaign  December 20, 2011
Messages with an official-looking police banner claim discovery of child pornography, other illicit material, and emails with terrorists

Workers, Technology Need To Team To Fight Insiders  December 13, 2011
Bringing together groups of employees in a company with internal intelligence can help detect rogue insiders earlier, say experts.

Personal Data Of 60,000 Telstra Customers Exposed To Web  December 12, 2011
Australian telecommunications giant Telstra says it is "investigating" proprietary customer lists found with simple browser search

Report: Getting The Leaks Out Of Enterprise Messaging  December 09, 2011
A key part of the data leak prevention effort is making sure that email and other messaging systems are used securely. Here are some tips on how to keep email leaks to a minimum

The Art Of Profiling Cybercriminals  December 08, 2011
New psychological and criminological studies attempt to get a glimpse of the human behind the hack

New Open-Source Technology Locks Down User's DNS Connection  December 07, 2011
OpenCrypt secures connection between end users and their DNS service

New Zero-Day Adobe Attack Under Way  December 06, 2011
Adobe working on emergency patch for Adobe Reader and Acrobat 9.x for Windows

Healthcare Data In Critical Condition  December 01, 2011
New study shows data breaches up and costing healthcare industry billions of dollars a year, with employees, mobile devices the weakest links

Analyzing Data To Pinpoint Rogue Insiders  November 29, 2011
Companies and universities look for specific algorithms that will help identify malicious insiders and compromised systems that are acting as insiders.

Sting Operation Snares Hacker Attempting To Blackmail Marriott For An IT Job  November 28, 2011
Hungarian man pleads guilty to stealing confidential financial and other information from Marriott and threatening to expose it if the hotel chain didn't offer him employment

Five Ways To Secure The Consumer IT Invasion At Work  November 23, 2011
Companies have had to deal with increasing amounts of worker-owned device in the networks

Focus Needed To Stem Increase In Insider Fraud  November 15, 2011
Latest global fraud report shows an overall decrease in fraud, but an increase in insider fraud; companies that take security measures fare best

Survey Shows Slack Security 'Tudes  November 10, 2011
One-third of users say security policy doesn't matter, and one-fourth don't worry about security

Risk Management Pro Walked Off With Company Data   November 09, 2011
Computershare case sheds light on risks of rogue insiders

Report: Security From The Inside Out  November 08, 2011
New report offers retrospective on recent insider attacks, threats, and defenses

Major Companies 'Fail' Social Engineering Test  October 31, 2011
All of the employees at 14 major corporations that were targeted in a major social engineering contest fell for the URL lure

Social Malice: One In 100 Tweets And One In 60 Facebook Posts Are Malicious  October 27, 2011
LinkedIn users feel safest, according to new social networking data gathered by Barracuda networks -- but not for long

Air Force Says Malware Discovered 'A Nuisance,' Not A Keylogger  October 14, 2011
Officials say online credential-stealing malware was isolated to mission support systems separate from flight systems

VeriSign Withdraws Request To Suspend Malicious Domains  October 13, 2011
Proposed plan to scan domains and suspend those found to be malicious now dead in the water

Study: IT Execs Worried About Insider Threat  October 12, 2011
Annual Amplitude/VanDyke survey also shows that attackers are targeting SMBs more frequently

Users Whose Accounts Get Hacked Find Out From Their Friends  October 06, 2011
62 percent of users don't know how their Gmail, Yahoo, Hotmail, and Facebook accounts were hacked

ISP Backlash Over Feds' Bot Notification Initiative  October 05, 2011
MAAWG says ISPs are already tackling bots and 'legislating' how to do it could stymy innovative efforts

Are Users Too Dumb For Security Awareness Training?  October 05, 2011
Too many security pros blame users for failing to remember the fundamentals that security awareness training teaches, but the real problem is that these programs just aren't very good

No Passwords, PINs For Most Smartphone And Tablet Users  September 29, 2011
Most smartphones, tablets are personal devices being used at work, survey says

Most Users Respect, Follow Company Security Policies  September 20, 2011
18- to 29-year-old users most likely to bypass security policies for computers, mobile devices, Webroot survey says

Americans Want Uncle Sam's Help With Cybercrime Protection  September 13, 2011
New Eset/Harris Interactive poll finds that most U.S. online adults feel vulnerable to a cyberattack

Insiders Behind Most Breaches Of Patient Health Data  August 31, 2011
Most healthcare organizations say they've been hit by breaches of patient data in the past year

Facebook Gives Users Some Privacy  August 23, 2011
More granular control over privacy settings

OMB Issues Security Guidelines For Federal Telecommuters  July 19, 2011
Agencies should take 'immediate action' to outfit federal workers for teleworking

Microsoft Offers $250,000 Bounty To ID Rustock Botnet Operators  July 18, 2011
New tactic a result of evidence found in discovery process, Microsoft says

Researcher Demonstrates HP TouchPad, Smartphone Hack   July 05, 2011
Mobile operating system platform vulnerable to XSS, cross-site request forgery

Up-And-Coming Botnet Uses Same Malware Kit As Defunct Mariposa   June 29, 2011
'Butterfly bot' kit steals financial information, but its license gives away botmaster information

Nearly 80 Percent Of Businesses Have Lost Data In Past Year  June 08, 2011
Customer data is most frequently-compromised content in security breaches, Ponemon study says; lost devices are most frequent cause

Enterprises Struggling With SSL Apps That Evade Traditional Controls  May 16, 2011
More than a third of enterprise traffic is comprised of apps that evade traditional IT tracking, annual Palo Alto Networks study says

The Social Reality -- And How To Keep It Secure  May 13, 2011
Social media sites and other Web 2.0 technologies are now a fact of life in the enterprise

Network That Supports Anonymous Hacker Group Is Compromised  May 09, 2011
Operators of network frequented by hacker group Anonymous advise users to "stay away" from AnonOps.net

Network And Systems Administrators Getting Less Sleep Than Ever  May 04, 2011
40 percent say security breaches keep them up at night

Weaponizing GPS Tracking Devices  April 22, 2011
Researcher demonstrates how he was able to easily turn Zoombak personal GPS devices against their owners

IT Temptation To Snoop Too Great  April 14, 2011
Separate reports from Cyber-Ark, BeyondTrust show the pitfalls of privileged user access

Start-Up Offers Shoulder-Hacking Shield Of Software  April 12, 2011
New Windows desktop software employs facial recognition and detection, captures 'peeping Tom' hackers

Social Engineering 'Capture The Flag' Contest Returns To DefCon  March 24, 2011
Changes to this year's contest include some volunteer, high-profile target companies

Phishers Bypass Browser Filters   March 17, 2011
PayPal, Bank of America, Lloyds, phishing emails embedding malicious HTML files



Insider Threat Reports

report How to Prevent an Illicit Data Dump
There are no silver bullets when it comes to protecting company and customer data from loss or theft, but there are technological and procedural systems that will go a long way toward preventing a WikiLeaks-like data dump. Here are some tips and tricks to help protect your organization's most sensitive information.

report Email and Data Loss
Email encryption, rights management, email gateways, and full-on data loss prevention systems can keep corporate data secure. Here's a look at the pros and cons of each, to help you determine what?s best for your business.

report An Insider Threat Reality check
Heightened concern that users could inadvertently expose or leak -- or purposely steal -- an organization's sensitive data has spurred debate over the proper technology and training to protect the crown jewels. In this special retrospective of recent news coverage, Dark Reading takes a look at how organizations are handling the threat -- and what users are really up to.

Other reports from the Insider Threat Tech Center:

Related Content

How Encrypting Content Reduces Liabilities and Costs
Data is everywhere, and most of it is not encrypted. Companies need to protect their data to avoid loss of corporate reputation, expensive remediation efforts, loss of goodwill among customers, loss of revenue and other unpleasant results. Learn how encrypting data in transit and at rest can help.

What Every Business Should Know About Cloud Computing and e-Discovery
Get guidance on how to deploy e-discovery applications and craft service-level agreements with your cloud service provider, so your company's cloud computing initiatives don't undermine your investments in e-discovery. Use these guidelines to evaluate cloud service providers and to define your SLAs.

Spam in 2011: Protection Against Evolving Threats
The very best anti-spam solutions deliver 95% effectiveness. Unfortunately, that's not good enough. To defeat spam, enterprises need a holistic approach. Learn about evolving spam threats and the technology required to close the 5% gap in defenses.

HIPAA Update: Keeping Compliant With The Latest Healthcare Email Security Regulations
The Stimulus bill put new teeth into HIPAA, and overall scrutiny is increasing. Get a brief overview of what you need to know about the latest security and data breach regulations for the healthcare industry. Learn what to look for in a secure email solution for complying with the web of regulations.

What Are Your Obligations To Retain Email And Other Electronic Content?
Retaining email and electronic content is necessary to satisfy litigation and regulatory compliance requirements as well as to meet the growing demand for business knowledge mined by employees. Learn about your obligations in this Osterman Research.