Risk
5/14/2013
07:34 AM
50%
50%

U.S. Cyber Command Head General Alexander To Keynote Black Hat USA 2013

Success is measured by how well the government collaborates with partners and customers, according to Gen. Alexander

[NOTE: Black Hat and Dark Reading are both part of UBM Tech. As the key July 27th-August 1st information security event in Las Vegas approaches, we'll be sharing information about the show directly from its creators here on Dark Reading.]

Major information security event Black Hat has announced that General Keith Alexander -- Commander, U.S. Cyber Command/Director, National Security Agency/Chief, Central Security Service (NSA/CSS) -- will present the Day One keynote address at Black Hat USA 2013 in Las Vegas this July.

Click here for more of Dark Reading's Black Hat articles.

In 2010, the U.S. Senate confirmed GEN Alexander to head U.S. Cyber Command (USCYBERCOM), as a four-star general. The establishment of USCYBERCOM both unified and strengthened the American Defense Department's work to protect vital networks and ensure integration of cyber operations.

A highly regarded advocate of battlefield visualization and 'data fusion' for more useful intelligence, Gen. Alexander has also led NSA/CSS since 2005. NSA/CSS gives the nation a decisive edge to make information and information technology an asset for the United States and a liability for its adversaries. It applies tools and tradecraft with creativity and agility -- maintaining capabilities that exceed what others think is possible. The aim is to discover, make sense of, and securely share information at Net speed. What's more, NSA/CSS measurably improves the security of critical information systems and other operations.

On the whole, General Alexander emphasizes, success is measured by how well the government collaborates with partners and customers. "As our dependence on information networks increases, it will take a team to eliminate vulnerabilities and counter the ever-growing threats to the network. We can succeed in securing it by building strong partnerships between and within the private and public sectors, encouraging information sharing and collaboration, and creating and leveraging the technology that affords us the opportunity to secure cyberspace," Gen. Alexander said. "Black Hat provides a great venue to have that productive dialogue by bringing together world-class researchers, technical experts, government officials, executives, and students for critical collaboration and education."

Gen. Alexander concluded, "It is my hope that in sharing some of my insights and perspectives with the information security community at Black Hat, we will continue to cultivate the information sharing and collaborative relationships needed to address the cyber threats facing global society."

Black Hat USA will welcome Gen. Alexander to the stage on July 31st, 2013. His keynote will give attendees an insider's look into the U.S. Cyber Command and the interworkings of offensive cyber strategy. More information about Black Hat USA 2013, which has a rapidly growing set of Briefings talks, as well as a comprehensive set of 2 and 4-day trainings, is available now -- early, reduced-rated registration is open until May 31st.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading Tech Digest, Dec. 19, 2014
Software-defined networking can be a net plus for security. The key: Work with the network team to implement gradually, test as you go, and take the opportunity to overhaul your security strategy.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2013-4440
Published: 2014-12-19
Password Generator (aka Pwgen) before 2.07 generates weak non-tty passwords, which makes it easier for context-dependent attackers to guess the password via a brute-force attack.

CVE-2013-4442
Published: 2014-12-19
Password Generator (aka Pwgen) before 2.07 uses weak pseudo generated numbers when /dev/urandom is unavailable, which makes it easier for context-dependent attackers to guess the numbers.

CVE-2013-7401
Published: 2014-12-19
The parse_request function in request.c in c-icap 0.2.x allows remote attackers to cause a denial of service (crash) via a URI without a " " or "?" character in an ICAP request, as demonstrated by use of the OPTIONS method.

CVE-2014-2026
Published: 2014-12-19
Cross-site scripting (XSS) vulnerability in the search functionality in United Planet Intrexx Professional before 5.2 Online Update 0905 and 6.x before 6.0 Online Update 10 allows remote attackers to inject arbitrary web script or HTML via the request parameter.

CVE-2014-2716
Published: 2014-12-19
Ekahau B4 staff badge tag 5.7 with firmware 1.4.52, Real-Time Location System (RTLS) Controller 6.0.5-FINAL, and Activator 3 reuses the RC4 cipher stream, which makes it easier for remote attackers to obtain plaintext messages via an XOR operation on two ciphertexts.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Join us Wednesday, Dec. 17 at 1 p.m. Eastern Time to hear what employers are really looking for in a chief information security officer -- it may not be what you think.