How To Spot A Fake Facebook Profile
Barracuda Networks gathers telltale characteristics of the phony Facebook "Friend"
Study: The Aftermath Of A Breach
New Ponemon-Experian study highlights organizations' top priorities following a data breach
Videoconferencing Can Be The Bug In The Boardroom
Recent research underscores that insecure video conferencing systems can allow hackers to listen into a company's confidential discussions. Firms should take steps to evaluate their systems and secure them
Microsoft Names Alleged Botnet Operator Behind Kelihos
Russian suspect worked for antivirus and software development firms in Russia
How To Prevent An Illicit Data Dump
Organizations can be ruined with a single, WikiLeaks-style data compromise. How can you prevent your enterprise from being one of them? Here are a few tips
When Someone Else's Insider Is Your Threat
Contract language and enforcement are necessary to protect your IP in another company's network. Just ask Symantec, which had its source code stolen from a third party by hackers
Worm Siphons 45,000 Facebook Accounts
Ramnit financial malware gets social with new variant
Protect Insider Data By Googling First, Often
Sensitive data is often exposed outside the company to searches via Google, Bing and others. Yet companies can find their data first, a cheap countermeasure for 2012.
Attackers Pose As Police In New Ransomware Campaign
Messages with an official-looking police banner claim discovery of child pornography, other illicit material, and emails with terrorists
Workers, Technology Need To Team To Fight Insiders
Bringing together groups of employees in a company with internal intelligence can help detect rogue insiders earlier, say experts.
Personal Data Of 60,000 Telstra Customers Exposed To Web
Australian telecommunications giant Telstra says it is "investigating" proprietary customer lists found with simple browser search
Report: Getting The Leaks Out Of Enterprise Messaging
A key part of the data leak prevention effort is making sure that email and other messaging systems are used securely. Here are some tips on how to keep email leaks to a minimum
The Art Of Profiling Cybercriminals
New psychological and criminological studies attempt to get a glimpse of the human behind the hack
New Open-Source Technology Locks Down User's DNS Connection
OpenCrypt secures connection between end users and their DNS service
New Zero-Day Adobe Attack Under Way
Adobe working on emergency patch for Adobe Reader and Acrobat 9.x for Windows
Healthcare Data In Critical Condition
New study shows data breaches up and costing healthcare industry billions of dollars a year, with employees, mobile devices the weakest links
Analyzing Data To Pinpoint Rogue Insiders
Companies and universities look for specific algorithms that will help identify malicious insiders and compromised systems that are acting as insiders.
Sting Operation Snares Hacker Attempting To Blackmail Marriott For An IT Job
Hungarian man pleads guilty to stealing confidential financial and other information from Marriott and threatening to expose it if the hotel chain didn't offer him employment
Five Ways To Secure The Consumer IT Invasion At Work
Companies have had to deal with increasing amounts of worker-owned device in the networks
Focus Needed To Stem Increase In Insider Fraud
Latest global fraud report shows an overall decrease in fraud, but an increase in insider fraud; companies that take security measures fare best
Survey Shows Slack Security 'Tudes
One-third of users say security policy doesn't matter, and one-fourth don't worry about security
Risk Management Pro Walked Off With Company Data
Computershare case sheds light on risks of rogue insiders
Report: Security From The Inside Out
New report offers retrospective on recent insider attacks, threats, and defenses
Major Companies 'Fail' Social Engineering Test
All of the employees at 14 major corporations that were targeted in a major social engineering contest fell for the URL lure
Social Malice: One In 100 Tweets And One In 60 Facebook Posts Are Malicious
LinkedIn users feel safest, according to new social networking data gathered by Barracuda networks -- but not for long
Air Force Says Malware Discovered 'A Nuisance,' Not A Keylogger
Officials say online credential-stealing malware was isolated to mission support systems separate from flight systems
VeriSign Withdraws Request To Suspend Malicious Domains
Proposed plan to scan domains and suspend those found to be malicious now dead in the water
Study: IT Execs Worried About Insider Threat
Annual Amplitude/VanDyke survey also shows that attackers are targeting SMBs more frequently
Users Whose Accounts Get Hacked Find Out From Their Friends
62 percent of users don't know how their Gmail, Yahoo, Hotmail, and Facebook accounts were hacked
ISP Backlash Over Feds' Bot Notification Initiative
MAAWG says ISPs are already tackling bots and 'legislating' how to do it could stymy innovative efforts
Are Users Too Dumb For Security Awareness Training?
Too many security pros blame users for failing to remember the fundamentals that security awareness training teaches, but the real problem is that these programs just aren't very good
No Passwords, PINs For Most Smartphone And Tablet Users
Most smartphones, tablets are personal devices being used at work, survey says
Most Users Respect, Follow Company Security Policies
18- to 29-year-old users most likely to bypass security policies for computers, mobile devices, Webroot survey says
Americans Want Uncle Sam's Help With Cybercrime Protection
New Eset/Harris Interactive poll finds that most U.S. online adults feel vulnerable to a cyberattack
Insiders Behind Most Breaches Of Patient Health Data
Most healthcare organizations say they've been hit by breaches of patient data in the past year
Facebook Gives Users Some Privacy
More granular control over privacy settings
OMB Issues Security Guidelines For Federal Telecommuters
Agencies should take 'immediate action' to outfit federal workers for teleworking
Microsoft Offers $250,000 Bounty To ID Rustock Botnet Operators
New tactic a result of evidence found in discovery process, Microsoft says
Researcher Demonstrates HP TouchPad, Smartphone Hack
Mobile operating system platform vulnerable to XSS, cross-site request forgery
Up-And-Coming Botnet Uses Same Malware Kit As Defunct Mariposa
'Butterfly bot' kit steals financial information, but its license gives away botmaster information
Nearly 80 Percent Of Businesses Have Lost Data In Past Year
Customer data is most frequently-compromised content in security breaches, Ponemon study says; lost devices are most frequent cause
Enterprises Struggling With SSL Apps That Evade Traditional Controls
More than a third of enterprise traffic is comprised of apps that evade traditional IT tracking, annual Palo Alto Networks study says
The Social Reality -- And How To Keep It Secure
Social media sites and other Web 2.0 technologies are now a fact of life in the enterprise
Network That Supports Anonymous Hacker Group Is Compromised
Operators of network frequented by hacker group Anonymous advise users to "stay away" from AnonOps.net
Network And Systems Administrators Getting Less Sleep Than Ever
40 percent say security breaches keep them up at night
Weaponizing GPS Tracking Devices
Researcher demonstrates how he was able to easily turn Zoombak personal GPS devices against their owners
IT Temptation To Snoop Too Great
Separate reports from Cyber-Ark, BeyondTrust show the pitfalls of privileged user access
Start-Up Offers Shoulder-Hacking Shield Of Software
New Windows desktop software employs facial recognition and detection, captures 'peeping Tom' hackers
Social Engineering 'Capture The Flag' Contest Returns To DefCon
Changes to this year's contest include some volunteer, high-profile target companies
Phishers Bypass Browser Filters
PayPal, Bank of America, Lloyds, phishing emails embedding malicious HTML files
How to Prevent an Illicit Data Dump
There are no silver bullets when it comes to protecting company and customer data from loss or theft, but there are technological and procedural systems that will go a long way toward preventing a WikiLeaks-like data dump. Here are some tips and tricks to help protect your organization's most sensitive information.
Email and Data Loss
Email encryption, rights management, email gateways, and full-on data loss prevention systems can keep corporate data secure. Here's a look at the pros and cons of each, to help you determine what?s best for your business.
An Insider Threat Reality check
Heightened concern that users could inadvertently expose or leak -- or purposely steal -- an organization's sensitive data has spurred debate over the proper technology and training to protect the crown jewels. In this special retrospective of recent news coverage, Dark Reading takes a look at how organizations are handling the threat -- and what users are really up to.
Other reports from the Insider Threat Tech Center:
| Sponsored by: |
How Encrypting Content Reduces Liabilities and Costs
Data is everywhere, and most of it is not encrypted. Companies need to protect their data to avoid loss of corporate reputation, expensive remediation efforts, loss of goodwill among customers, loss of revenue and other unpleasant results. Learn how encrypting data in transit and at rest can help.
What Every Business Should Know About Cloud Computing and e-Discovery
Get guidance on how to deploy e-discovery applications and craft service-level agreements with your cloud service provider, so your company's cloud computing initiatives don't undermine your investments in e-discovery. Use these guidelines to evaluate cloud service providers and to define your SLAs.
Spam in 2011: Protection Against Evolving Threats
The very best anti-spam solutions deliver 95% effectiveness. Unfortunately, that's not good enough. To defeat spam, enterprises need a holistic approach. Learn about evolving spam threats and the technology required to close the 5% gap in defenses.
HIPAA Update: Keeping Compliant With The Latest Healthcare Email Security Regulations
The Stimulus bill put new teeth into HIPAA, and overall scrutiny is increasing. Get a brief overview of what you need to know about the latest security and data breach regulations for the healthcare industry. Learn what to look for in a secure email solution for complying with the web of regulations.
What Are Your Obligations To Retain Email And Other Electronic Content?
Retaining email and electronic content is necessary to satisfy litigation and regulatory compliance requirements as well as to meet the growing demand for business knowledge mined by employees. Learn about your obligations in this Osterman Research.
MORE NEWSFEED >>>