Welcome Guest. | Log In| Register | Membership Benefits
  • Email this page E-mail this page
  • |  Print Print this page
  • |   Bookmark and Share

NATO Members Form Cyber Defense Center

Estonia will serve as headquarters for new effort; US not joining yet

May 14, 2008 | 08:23 AM

By Tim Wilson
DarkReading

Seven NATO nations and the Allied Command Transformation have established a Cooperative Cyber Defense (CCD) Center of Excellence (COE) in Tallin, Estonia.

The center will conduct research and training on cyber warfare and include a staff of 30 persons, half of them specialists from the sponsoring countries: Estonia, Germany, Italy, Latvia, Lithuania, Slovakia, and Spain.

The U.S. will participate as an observer. The plans of other NATO leaders -- such as the U.K. and France -- were not immediately clear.

The agreement comes a year after a major cyber attack on Estonian public and private institutions prompted NATO to conduct a thorough assessment of its approach to cyber defenses. At their meeting in October 2007 Allied Defense Ministers called for the development of a NATO cyber defense policy, which was adopted early 2008.

In April, the Bucharest Summit Declaration paved the way for the establishment of the Estonian COE, emphasizing the need for NATO members to protect key information systems and develop the ability to counter a cyber attack.

— Tim Wilson, Site Editor, Dark Reading


Subscribe to RSS










Bugs
ENTERPRISE VULNERABILITIES
Vulnerability:suse linux
Published:2010-01-22
Severity:High
Description:SUSE Linux Enterprise 10 SP3 (SLE10-SP3) configures postfix to listen on all network interfaces, which might allow remote attackers to bypass intended access restrictions.
Vulnerability:ie
Published:2010-01-22
Severity:High
Description:The URL validation functionality in Microsoft Internet Explorer 7 and 8 does not properly process input parameters, which allows remote attackers to execute arbitrary local programs via a crafted URL, aka "URL Validation Vulnerability."
Vulnerability:bind
Published:2010-01-22
Severity:Medium
Description:ISC BIND 9.0.x through 9.3.x, 9.4 before 9.4.3-P5, 9.5 before 9.5.2-P2, 9.6 before 9.6.1-P3, and 9.7.0 beta does not properly validate DNSSEC (1) NSEC and (2) NSEC3 records, which allows remote attackers to add the Authenticated Data (AD) flag to a forged NXDOMAIN response for an existing domain.
Vulnerability:ie
Published:2010-01-22
Severity:High
Description:Microsoft Internet Explorer 6, 6 SP1, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-2530 and CVE-2009-2531.
Vulnerability:ie
Published:2010-01-22
Severity:High
Description:Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-3671, CVE-2009-3674, and CVE-2010-0246.


Briefing Centers
POWERFUL INFORMATION
AT YOUR FINGERTIPS
(SPONSORED LINKS)