Welcome Guest. | Log In | Register | Membership Benefits

All Security Administration/Management Stories

eIQnetworks Reports Q3 Financials

    February 09, 2012
Revenue was up 60 percent from the same quarter a year earlier

SailPoint AndSymantec Partner To Integrate the Leading Identity Governance And Data Loss Prevention Solutions

    February 08, 2012
Symantec Data Loss Prevention combined with SailPoint IdentityIQ provides customers with improved context of DLP policy violations

Splunk Launches Big Data Security Solution

    February 08, 2012
Enterprise Security Intelligence Solution identifies threats hidden as patterns in terabytes of data

CloudPassage Launches Network Security In The Cloud Inbox

    February 01, 2012
Halo NetSec aimed at companies running servers in public clouds like EC2 and Rackspace

Baltimore-Based Security Provider Lookingglass Raises $5 Million In Funding

    January 30, 2012
Alsop Louie Partners is leading the Series A funding

Infoblox And CA Technologies Deliver Network Automation And Compliance Capabilities

    January 30, 2012
Infoblox Trinzic NetMRI is being bundled and integrated into the CA Unified Automation portfolio

Intel Takes Stake In Solera Networks

    January 30, 2012
Intel Capital is joined by existing investors Allegis Capital, Signal Peak Ventures and Trident Capital

Dome9 Unveils Industry First Multi-Cloud Security Groups

    January 25, 2012
Functionality consolidates security management across multiple cloud servers

FireHost's European-Based Secure Cloud Hosting Services Go Live

    January 25, 2012
Secure hosting services are now available at data centers in London and Amsterdam

Packet Plus Introduces Interactive Networking Stack Debugger

    January 23, 2012
P+ 1000 offers packet-by-packet control

Sourcefire Rolls Out FireAMP For Blocking Advanced Malware Utilizing Big Data Analytics

    January 23, 2012
FireAMP uses a lightweight agent to communicate with a cloud-based analysis engine

Digital Detectives: Making The Most Of Your Incident Response And Forensics Efforts

    January 23, 2012
Digital investigations can yield critical data that may lead to better defense strategies. Here are some tips for making the best possible use of your forensic data.

Tech Insight: Building A SOC, From Outsourcing To DIY

    January 22, 2012
Building blocks for developing the most effective security operations center

Alcatel-Lucent and Arbor Networks Team Up In The Fight Against 'Denial-Of-Service' Attacks

    January 20, 2012
Integration of Arbor's Threat Management System into Alcatel-Lucent IP routers helps service providers counter the growing threat of attacks

Prolexic Enhances Portal to Provide Customers With More Insight Into DDoS Threats And Mitigation

    January 20, 2012
Prolexic Portal provides customers with greater visibility and insight into Prolexic’s monitoring and cloud-based mitigation services

Identropy Secures $4 Million In Series A Funding

    January 19, 2012
Financing led by Milestone Venture Partners and Osage Venture Partners

Metasploit Exploit Module Released For PLC SCADA Devices

    January 19, 2012
Digital Bond and Rapid7 partner to move additional Project Basecamp PLC exploits to the Metasploit Framework

HBGary And HP Enterprise Security Partner To Deliver Advanced Threat Intelligence On The ArcSight Platform To Combat Targeted Attacks

    January 19, 2012
Active Defense is now integrated with HP Enterprise Security’s ArcSight SIEM solutions

Webroot Engages Former Symantec Executive To Support Global Expansion Inbox

    January 19, 2012
Dieter Giesbrecht held executive positions at Attachmate Europe, Lotus, and Digital Research

The Day (Some Of) The Web Went Dark

    January 18, 2012
Online protests today of SOPA/PIPA legislation blur future of anti-piracy efforts as several legislators back down

GFI Software Enhances Dynamic Malware Analysis

    January 17, 2012
GFI SandBox 4.0, scheduled for release Feb. 7, will make advanced malware analysis quicker and easier

Symplified Reports Major Growth In 2011

    January 13, 2012
Nearly tripled revenues year-over-year

Using HIPAA To Advance Your Security Initiative

    January 13, 2012
Healthcare compliance requirements can be a driver to improve your organization's overall security. Here's how

New Associate of (ISC) Programs For CSSLP And CAP Help Aspiring Professionals Prepare For Careers In Cyber Security

    January 12, 2012
Program expansion part of push to fill the pipeline of qualified cybersecurity professionals

IBM Attacks The Complexity Of Security With Identity Intelligence

    January 11, 2012
IBM is unveiling advanced analytics software called Security Role and Policy Modeler

ThreatMetrix Acquires TrustDefender

    January 11, 2012
Acquisition integrates malware protection with device identification

Thales And Infoblox Help Protect Internet Integrity

    January 11, 2012
Joint solution addresses common DNSSEC deployment challenges

(ISC) Announces Newly Elected 2012 Board Of Directors

    January 10, 2012
Four information security experts from around the globe join governing body

IT Security Employment Rising Rapidly, Study Says

    January 10, 2012
More than 51,000 security pros employed in Q4, up from 37.000 employed in Q1, study says

UnboundID Debuts Industry's First Identity Management Products Based On SCIM Specification

    January 09, 2012
Offers based on Simple Cloud Identity Management standard

Tech Insight: What To Do When Your Business Partner Is Breached

    January 06, 2012
Vendors and contractors play an important role in your business. But what happens when a partner’s systems are compromised? Here are a few tips

New Pike Research Report Spotlights Growing Need For Integrated Approach To Security

    January 04, 2012
Technology and business trends are driving demand for improved automation around governance and regulatory compliance

The Ultimate Internet DR Solution: Satellites?

    January 04, 2012
Hackerspace Global Grid project intended as 'fallback infrastructure'

MetricStream And Qualys Partnership Brings Actionable Security And Risk Intelligence To IT-GRC

    January 04, 2012
Integration partnership enables corporations to continuously take full inventory of their IT assets

Cyber-Ark Announces $40 Million Financing

    December 21, 2011
Cyber-Ark will also add JVP founder and chairman Erel Margalit as chairman

Quest Acquires BiTKOO

    December 19, 2011
BiTKOO provides solutions for fine-grained authorization and entitlement management

Sprint Splits With Carrier IQ

    December 19, 2011
At no time had Sprint used Carrier IQ to do anything more than collect performance data, Sprint spokeswoman says

BBVA Compass Provides Online Privacy For Customers Nationwide With Reputation.com

    December 19, 2011
MyPrivacy finds, protects, removes and monitors individuals' personal information online

10 Best Practices For Meeting SOX Security Requirements

    December 15, 2011
Sarbanes-Oxley regulations remain one of security's biggest drivers in public companies. Here are some tips on how to keep your organization in compliance

Syncplicity Launches Security And Compliance Console

    December 14, 2011
Syncplicity Security and Compliance Console enables native support for single sign-on

Tenable Network Security Offers Unique Integration With Top Patch Management Solutions

    December 13, 2011
Nessus Vulnerability Scanner and SecurityCenter now integrate with top patch management solutions

Study Reveals IT Consumerization, Mobility and Cloud Computing Increase Business Risk And Impact IT Maturity

    December 12, 2011
Compuware study exposes new performance blind spots in IT management

Report: Getting The Leaks Out Of Enterprise Messaging

    December 09, 2011
A key part of the data leak prevention effort is making sure that email and other messaging systems are used securely. Here are some tips on how to keep email leaks to a minimum

Avira Bolsters Focus On Micro And Small Businesses With Avira Endpoint Security

    December 06, 2011
Features designed to simplify security set-up and administration

Tech Insight: Getting The Most Out Of Third-Party Pen Tests

    December 05, 2011
As more companies seek out penetration tests, here are some tips they can follow to be sure they get an assessment that meets their needs.

McAfee Completes Acquisition Of NitroSecurity

    December 01, 2011
NitroSecurity has been a McAfee Security Innovation Alliance partner for three years

HBGary Responder Pro 2.0.5 S Improves Ability to Detect And Counter Adaptive, Persistent Threats In The Enterprise

    November 30, 2011
Responder Pro delivers malware analysis, memory analysis, and malware detection on a single, integrated platform

Solutionary Secures Investment From Clearlake Capital

    November 29, 2011
MSSP to focus new funding on growing sales, marketing, and global footprint

Free Security Tools From Qualys To Prevent Online Holiday Scams

    November 28, 2011
Offering businesses a free license to use the company's SECURE Seal protection from now until Jan. 30, 2012, along with Qualys BrowserCheck and SSL Server Audit

SIA Announces New Access And Identity Initiative

    November 28, 2011
OSDP project part of SIA's ANSI standards program










Bugs
ENTERPRISE VULNERABILITIES
Vulnerability:ssl-vpn end-point interrogator/installer activex control
Published:2010-11-03
Severity:High
Description:Stack-based buffer overflow in SonicWALL SSL-VPN End-Point Interrogator/Installer ActiveX control (Aventail.EPInstaller) before 10.5.2 and 10.0.5 hotfix 3 allows remote attackers to execute arbitrary code via long (1) CabURL and (2) Location arguments to the Install3rdPartyComponent method.
Vulnerability:gvim
Published:2010-11-03
Severity:High
Description:Untrusted search path vulnerability in VIM Development Group GVim before 7.3.034, and possibly other versions before 7.3.46, allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse User32.dll or other DLL that is located in the same folder as a .TXT file. NOTE: some of these details are obtained from third party information.
Vulnerability:cforms
Published:2010-11-03
Severity:Medium
Description:Multiple cross-site scripting (XSS) vulnerabilities in wp-content/plugins/cforms/lib_ajax.php in cforms WordPress plugin 11.5 allow remote attackers to inject arbitrary web script or HTML via the (1) rs and (2) rsargs[] parameters.
Vulnerability:links, wsn links, wsn links
Published:2010-11-03
Severity:High
Description:Multiple SQL injection vulnerabilities in search.php in WSN Links 5.0.x before 5.0.81, 5.1.x before 5.1.51, and 6.0.x before 6.0.1 allow remote attackers to execute arbitrary SQL commands via the (1) namecondition or (2) namesearch parameter.
Vulnerability:deluxebb
Published:2010-11-03
Severity:Medium
Description:SQL injection vulnerability in misc.php in DeluxeBB 1.3, and possibly earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the xthedateformat parameter in a register action, a different vector than CVE-2005-2989, CVE-2006-2503, and CVE-2009-1033.



Briefing Centers
POWERFUL INFORMATION
AT YOUR FINGERTIPS
(SPONSORED LINKS)