Powered By InformationWeek Business Technology Network
 
Welcome Guest. | Log In| Register | Membership Benefits

Dark Reading's Vulnerability Management Tech Center is your portal to all the news, product information, best practices, and other data related to detecting and remediating security vulnerabilities.  Written for those who must find and fix enterprise security vulnerabilities, the Vulnerability Management Tech Center is your guide to the latest tools and techniques for preventing security breaches, as well as best practices for responding to new vulnerability discoveries.

By The Numbers

Chart

In a recent study, Verizon Business' forensics unit compared its own breach data against the breach data reported to the DataLoss DB organization. While the DataLoss DB data initially showed a higher percentage of internal breaches, most of those leaks were caused by physical theft or loss of computer systems. When the physical losses are eliminated from the data (DataLossDB-MOD), both reports show that internal breaches are relatively rare.

Blog

Author Photo Energizer Bunny Gone Bad

March 10, 2010

Along with the usual security alerts covering the March bulletins from Microsoft and various content management systems flaws, US CERT published an unusual security alert about a product from Energizer, the battery company.

read more >

Around The Web

WEB APPLICATION SECURITY CONSORTIUM
WASC Threat Classification v2.0 Released
WASC Threat Classification v2.0 Released

GLOBAL SECURITY MAGAZINE
Record-Breaking 43 Anti-Malware Products Undergo VB100 Certification Testing On Windows 7
Seven products fail to make grade in largest test ever

ABS CBN NEWS
Kaspersky Predicts More iPhone, Android Attacks In 2010
Kaspersky Predicts More iPhone, Android Attacks In 2010

KHQ
Security Breach At Eastern Washington University
More than 130,000 current and former students notified after vulnerability audit revealed potential hack

TECH SHOUT
Facebook And Twitter To Face Emerging Threats In 2010, Says McAfee
Facebook And Twitter To Face Emerging Threats In 2010, Says McAfee

GLOBAL SECURITY MAGAZINE
Security Expert Finds Problem With Microsoft's MSN.com
Server error in regional subdomains could lead to attack, expert says

INFOWORLD
Top Security Predictions For 2010
Mobile security issues will worsen; cloud security will expand, pundits say

HELP NET SECURITY
E-Threats Shifting With Current Events
Malware and spam morph to take advantage of provocative news, BitDefender says

MORE >>>



Vulnerability Management Reports

report Compliance 101: Creating a Strong Vulnerability Management Strategy
Assessing new threats is only the first step in finding and shoring up weak spots in your defenses. Most infosec groups must also factor in a broader audit of compliance with regulatory standards such as HIPAA and PCI. In this Dark Reading Tech Center report, we outline best practices for compliance-oriented vulnerability management; discuss helpful technologies; and address the process of mapping compliance requirements to vulnerability detection and remediation.

report Ground Zero: Building a Layered Defense Against Unknown Threats
The moment a malicious hacker or digital criminal exploits an unreported, unpatched flaw, the countdown to chaos begins. Here's how to employ a defense in depth strategy to make it through those critical first days relatively unscathed. The process isn't painless, but there are some key steps that may help you speed the effort to get your infrastructure back to normal.

report Assessing the Danger: How IT Can Ace Vulnerability Management
Finding the flaws in your operating systems and applications is only the beginning. You then need to plot a path to security and ensure that no new weaknesses find their way onto your network. In this Dark Reading Analytics report, we offer some step-by-step recommendations on how to do that. First up: an overview of the problem.

Related Content

Vulnerability Management Buyer's Checklist
Get this 12-point Checklist of key considerations every IT security professional needs to be aware of before choosing a vulnerability management solution.

Case Study: eBay, Inc. - Securing the World's Online Marketplace
Learn how eBay was able to automate their network security auditing and get meaningful, actionable reports.

7 Essential Steps to Achieve, Measure and Prove Optimal Security
Whether you're protecting 5 servers or 5,000, this paper details the essential aspects of putting into place a measurable and sustainable vulnerability management program.

Free Trial - Vulnerability Management
Free 14-day trial of award-winning vulnerability management solution from Qualys. Identify, fix, and report on network security threats. Try Now.