Powered By InformationWeek Business Technology Network
 
Welcome Guest. | Log In| Register | Membership Benefits

All News

New Twitter Feature Looks For Malicious URLs  March 10, 2010
Meanwhile, one in eight Twitter accounts is either malicious, suspicious, or suspended, according to a new report from Barracuda Networks

Intel, RSA, VMware Team On Cloud Security  March 02, 2010
Proof-of-concept demonstrates an architecture for a secure virtualization environment that bakes security into hardware and includes SIEM and GRC

Product Watch: Secunia To Offer Free Application Updater Service To Consumers  March 02, 2010
Third-party apps automatically patched, updated on users' machine when they boot up

Cloud Security Alliance Names Top 7 Threats To The Cloud  March 01, 2010
CSA also teams with IEEE in survey of IT pros on security standards gap for cloud computing

Security And Privacy Certification Service Nailed For Misleading Customers  February 25, 2010
FTC alleges that ControlScan offered 'little or no verification' of site security or privacy

Product Watch: New Service Shuts Down Counterfeit-Brand Websites  February 18, 2010
An estimated $135 billion worth of counterfeit and pirated goods will be sold online in 2010, according to MarkMonitor

China Shutters Hacker 'Boot Camp'  February 09, 2010
Black Hawk Safety Net trained thousands of cybercriminals, authorities say

Hacker Unleashes BlackBerry Spyware Source Code  February 08, 2010
Proof-of-concept demonstrates ease at which mobile spyware can be created to pilfer text messages and email, eavesdrop, and track victim's physical location via smartphone's GPS

Product Watch: Security Scoreboard Goes Live  February 01, 2010
New site brings security vendors and products under one roof, along with customer reviews

Identity Thieves Successfully Targeting Wealthy Victims, Study Says  January 27, 2010
Affluent individuals who live 'the good life' are 43 percent more likely to be victims, according to Experian

New Worm Overwrites Master Boot Records  January 25, 2010
Win32/Zimuse could make it difficult for users to access or restore their data, researchers say

Report: DDoS Attacks Still Growing, But At Slower Rate  January 19, 2010
Distributed denial-of-service attacks against network operators are becoming less brawny, more stealthy

New Proxy Promises To Shield Users From Google Data Collection  January 19, 2010
GoogleSharing is an anonymizing proxy service that pools user search data, security researcher says

Product Watch: Voice Biometrics Service Adds Third Factor Of Authentication  January 15, 2010
PhoneFactor matches user's voice with 'voiceprint' when he logs in

2010 Could Be The Year For Security Outsourcing, Forrester Says  January 12, 2010
'Co-sourcing' concept could help mend the rift between security departments and service providers, research firm says

Survey: 54 Percent Of Organizations Plan To Add Smartphone Antivirus This Year  January 07, 2010
In anticipation of increased mobile threats in the next year, 40 percent of organizations worldwide plan to recruit mobile security staff

Online Holiday Shopping Up In December; Phishers Follow Suit  December 31, 2009
Majority of threats on the Web in December were phishing attacks, study says

Choosing Email Security Services? Watch Your Step  December 10, 2009
New Dark Reading Tech Center report offers advice on what to look for -- and what to avoid -- in third-party services

Security Is Chief Obstacle To Cloud Computing Adoption, Study Says  November 25, 2009
Half of organizations say they have no plans to use cloud technology; many cite security concerns

ENISA Offers Security Recommendations For Cloud Services  November 19, 2009
New report outlines benefits and risks, offers guidelines for choosing providers

SaaS Offerings May Play Key Role In Small Business Security, Report Says  November 10, 2009
As offerings expand, SMBs may get capabilities previously available only to large enterprises, report says

New Security Certification On The Horizon For Cloud Services  November 04, 2009
Cloud security cert would go beyond existing SAS 70, ISO 27001 standards

MAAWG's Mission Evolving As Botnets, Web Threats Intensify  October 27, 2009
ISP group is starting to look at more than just email abuse as attacks span Websites, social networks

Report: Nearly 6 Million Infected Web Pages Across 640K Compromised Sites  October 27, 2009
Startup founded by ex-Google engineers tallies major jump in Website compromises and breadth of the infections

ISPs: Email Abuse Down But Not Out  October 26, 2009
Messaging Anti-Abuse Working Group (MAAWG) says ISPs, bad guys at a draw when it comes to spam, malicious email

Feds' Security Spending On a Roll: Over 8 Percent Growth Over Next Five Years  October 22, 2009
New data from research firm Input finds security spending growing twice that of overall federal IT buying

DNS Error Causes Sweden To Go Offline  October 14, 2009
Failed software update causes ".se" domain to temporarily disappear from Web

Cost, Strength Of Security Drive Users Toward SaaS Offerings  October 14, 2009
New Dark Reading report offers a look at the strengths, weaknesses of security SaaS -- and how to choose the right provider

Which Botnet Is Worst? Report Offers New Perspective On Spam Growth  September 30, 2009
Rustock might be biggest, but Grum is worst offender, MessageLabs study says

U.K. Account Takeover Attacks Increased 207 Percent Last Year, Report Says  September 30, 2009
Online banking fraud increases 132 percent as cybercriminals shift tactics

Trend Micro Gets Top Spot In New Anti-Malware Test  September 22, 2009
But even the best-performing product blocked only 70 percent of malware, NSS says

New Service Certifies Security Of Printers, Copiers, Other Networked Devices  September 21, 2009
ICSA offers security testing, assessment of nonmainstream devices, such as surveillance cameras and digital signs

DNS Cloud Security Services Arrive  September 14, 2009
OpenDNS offers new subscription-based secure DNS service; other vendors' DNS services to follow

University Research Exposes Potential Vulnerabilities In Cloud Computing  September 08, 2009
'Cross-VM attacks' could threaten sensitive data in shared environments, researchers say

New Twitter Security Experiment Goes Live  September 08, 2009
Errata Security's TwiGUARD service detects Twitter spam, malicious links

DNSSEC Secures Another Domain  September 08, 2009
The .edu domain will adopt DNSSEC next March amid more concern over Domain Name System security

Jury Exacts $32M Penalty From ISPs For Supporting Criminal Websites  September 03, 2009
'Landmark case' indicates that ISPs may be held liable if they know about criminal activity on their customers' Websites and fail to act

Marshal8e6 Gets New Identity  September 02, 2009
Email, Web security vendor now goes by a new name: M86 Security

Trojan Could Enable Attackers To Eavesdrop On Skype Calls  August 28, 2009
Exploit saves conversations as MP3 files to make detection more difficult, researchers say

Employers Crack Down On Social Networking, Web Surfing At Work  August 21, 2009
More than three-quarters of organizations now block social net sites, ScanSafe says

Startup Launches Free, Collaborative Antivirus Package  August 19, 2009
Immunet offers cloud-based solution that innoculates an entire community when one member is infected

Financial Services Firms Opt For Outsourced Security Help  August 14, 2009
Under siege from cybercriminals and squeezed with budget cuts, financial services institutions turn to security services providers

McAfee Buys Cloud Security Provider MX Logic For $140 Million  July 31, 2009
Acquisition expands McAfee's security software-as-a-service offerings

Spammers Exploiting Free File Storage On Websites  July 24, 2009
Automated account creation exploit lets spammers hide behind legitimate file storage services, researchers say

Tech Insight: Social Networking In The Enterprise -- What Should Security Pros Do About It?  July 24, 2009
As Facebook and LinkedIn become more popular at work, security solutions become trickier for IT

Small Businesses Falling Short In IT, Security  July 22, 2009
New study says SMBs can't keep up with IT in tough economic times

Ireland's Largest ISP May Be Under Attack  July 16, 2009
'Unprecedented volume of traffic' deliberately directed at Eircom, officials say

Google Discloses Plans For New Malware-Resistant OS   July 08, 2009
Chrome OS aimed at eradicating malware issues for desktops with lightweight platform and cloud-based application model

SecureWorks-VeriSign Deal Highlights Acquisition Trend In Security Services  July 07, 2009
As SecureWorks gets bigger faster, VeriSign pulls out of services business

New Tool And Managed Service 'Penetration-Test' End Users  July 06, 2009
New User Attack Framework (UAF) could eventually work with Metasploit's hacking tool, researchers say

'Mafiaboy': Cloud Computing Will Cause Internet Security Meltdown  June 30, 2009
Notorious black-hat hacker warns that cloud-based computing will be "extremely dangerous," and explains how he got into hacking at age 15

OWASP: Security Spending Remains Mostly Unchanged With Cloud Computing  June 30, 2009
New Open Web Application Security Project report finds enterprises aren't sufficiently verifying cloud providers' security, either

Study: Social Network Users Put Their Data At Risk  June 27, 2009
Users of Facebook, LinkedIn, Twitter leave themselves -- and their wallets -- open to attack

Security Poised To Grab Bigger Piece Of IT Pie, Gartner Says  June 23, 2009
Analyst firm offers view of security market as it prepares for summit next week

DNSSEC Showing More Signs Of Progress  June 22, 2009
The Domain Name System (DNS) security protocol is finally making inroads on the Internet infrastructure front, but big hurdles remain for widespread, smooth adoption

Relaunched Google Search Service Fingers Malware-Spreading Advertisers  June 19, 2009
'Anti-Malvertising' lets Website owners perform background checks on potential online advertisers

Ex-Google Engineers Launch Web Security Startup   June 16, 2009
Dasient to offer real-time anti-malware monitoring service for Websites -- including a free service

Working With Security Service Providers: What Every Small Business Manager Should Know  June 12, 2009
Choosing the right provider is only the beginning, experts say. The real key is building a relationship

Flaw In Virtualization App Causes Data Loss On Thousands Of Websites  June 10, 2009
VAServ says some customers may never recover data wiped in zero-day attack

New Wiki Promises Breach Training For Business Execs  June 08, 2009
BreachCenter.com hopes to play host to discussions on breach prevention, response

Tech Insight: How To Choose An Integrated Security Services Provider  June 08, 2009
"Suites" of security services may look good on paper, but do they really do what they promise?

The 6 Worst Cloud Security Mistakes  June 05, 2009
A look at the most common missteps when choosing a cloud-based service -- and how to avoid them

EFF Web Service Tracks Changes In Privacy Policies At Popular Websites  June 05, 2009
Electronic Frontier Foundation's TOSBack.org will shed light on changes in service and privacy policies on such sites as Facebook, Google, and eBay

Hackers Arrested In China After Feud Causes Major Outage  June 04, 2009
DDoS feud between underground gaming services allegedly caused temporary Internet outage across more than 20 provinces

Hacking Tool Lets A VM Break Out And Attack Its Host  June 04, 2009
'Cloudburst' memory-corruption exploit released with Immunity's new version of Canvas penetration testing software

Study: Web Trackers Systematically Compromise Users' Privacy  June 03, 2009
Website monitoring practices take advantage of many loopholes in privacy regulations, UC-Berkeley study says

Security Alliances Partner To Work On Cloud Computing  May 27, 2009
Jericho Forum, Cloud Security Alliance agree to align their best practices for secure collaboration in the cloud

Facebook Falls Victim To Another Phishing Attack  May 22, 2009
Phishers use cryptic message to lure users into giving up their account information

Enterprises Still Struggling To Get Results From SIEM, Log Management  May 19, 2009
Most survey respondents still haven't achieved quantifiable benefits, study says

Startup Takes New Spin On Online Fraud Detection  May 07, 2009
Pramana's 'HumanPresent' technology uses stealthy real-time detection of bots and bad guys posing as legitimate users

Splunk, GlassHouse Launch Joint Security Management Service  April 24, 2009
Partnership challenges SIEM, uses Splunk search engine to find source of security problems

Savvis Launches Web App Firewall Service  April 22, 2009
New service could help companies meet WAF requirement under PCI

Cisco Launches Security Services For Cloud Computing, Collaboration  April 20, 2009
New services will also help enterprises manage cloud security

Jericho Forum Issues Best Practices For Secure Cloud Computing  April 17, 2009
"Cloud Cube" model provides criteria for evaluating online services model, provisioning

Report: 2008 Saw More Records Breached Than The Previous Four Years Combined  April 15, 2009
Most compromises could have been avoided, Verizon study says

Researchers To Unleash Backbone-Hacking Tools At Black Hat Europe  April 07, 2009
Tools automate attacks on Multiprotocol Label Switching (MPLS) and Ethernet carrier networks

How To Make The Right Choice About Security Outsourcing  April 01, 2009
New report offers in-depth look at security services alternatives -- and how to evaluate them

EC Launches Probe Into Deep Packet Inspection  March 31, 2009
Behavioral advertising services may violate users' right to privacy, official says

Stuck In The Middle, Security Departments Turn To Outsourcing  March 23, 2009
More than half of enterprises are now using third-party security services, studies say

Comcast Customer Usernames, Passwords Exposed In Possible Phishing Attack  March 17, 2009
List of accounts was 8,000, but Comcast says only 700 were active customer accounts

Metasploit Hacking Tool To Add New Services-Based Features  February 09, 2009
Upcoming back-end services could help shape new generation of pen-testing services

Security Services Reports

You've Got (Secure) Mail: Using Service Providers to Boost Protection You've Got (Secure) Mail: Using Service Providers to Boost Protection
The SaaS market is still in its infancy, but hosted e-mail security firms are leading the way, thanks to ease of implementation and many obvious benefits. Still, these services are not without risks. In this Dark Reading Tech Center report, we'll discuss how to determine what mix of in-house and hosted email security makes sense for your organization.

Security Services Strategies For Small and Midsize Firms Security Services Strategies For Small and Midsize Firms
Infosec managers in small and midsize enterprise often feel like an army of one, constantly pinching pennies. But the paradigm shift from expensive on-premises management to off-premises hosting is good news for you, because today more than ever, the small business has access to large-enterprise security technologies via the phenomenon of subscription-based licensing. In this report, you'll discover how you can use security services strategically to gain economies of scale -- and a really deep bench.

Security Software as a Service: Navigating the New MSSP Landscape
This Dark Reading Security Services Tech Center Report offers advice on how to cut through the hype and claims by SaaS security vendors to get the best fit for your business. It provides a detailed look at the most popular types of cloud-based data protection and gives a rundown on the top service providers vying for your dollars.

Making the Business Case: Security Outsourcing in Financial Services
When it comes to online security, the financial community is under siege.  Between the troubled economy, the advent of more sophisticated attacks, and the growing number of threats inside and outside the organization, one thing is clear: financial services firms need help. In this report, we offer a look at the factors that are driving the financial industry toward security outsourcing - and how your institution can find the right provider.

Integrated Security Services: How To Choose The Right Provider Without Getting Burned
Providers ranging from Microsoft to Finallyfast.com offer everything from simple anti-malware, e-mail and content filtering services to sophisticated security applications, all in a single package. In this report, we discuss how to get the best "suite" for your business -- and your budget -- and what to beware of.

Making The Security Outsourcing Decision: A Reader's Guide
For years, enterprises resisted the idea of bringing a third party into their security strategies. Today, however, with security threats proliferating at alarming rates and economic pressures forcing major cutbacks, many companies are rethinking the security outsourcing decision. In this report, you'll learn about the wide variety of security services categories available on the market – their strengths and weaknesses, their costs, and what you should know before you make the outsourcing decision.