Click here

Network Security: Archive: February 2010 

Editor's Pick: Deploying and Securing a Wireless LAN

Learn how to plan, deploy, secure, and manage your home or business Wi-Fi network.

Four Network Security Strategies That No Longer Work

Columnist Sonny Discini takes a stand against outmoded security policies and points out flaws in the conventional wisdom.

Intel Hit By Cyber Attack

Chipmaker says it, too, was hit by a 'sophisticated' cyber attack in January, right around the same time that Google, Adobe, and a couple dozen other enterprises were hacked.

House Hears Testimony on Location vs. Privacy Debate

As location-based services begin to take off, privacy concerns have also been raised. Just how public should your location at any given time be?

Phishing, SQL Injection Attacks Surged in 2009

IBM's X-Force security report finds that hackers have mastered the art of attacking Web browsers and document readers, even though application security has improved.

Microsoft Takes Down Malicious 'Waledac' Botnet

But what can users do to disinfect hundreds of thousands of compromised computers worldwide, even as Microsoft suspends nearly 300 rogue Internet domains?

10 Ways to Protect Your Network from SQL Injection Attacks

SQL injection attacks pose a massive potential threat to your organization. Learn ten ways to prevent or mitigate them.

Sens. Push for Government Cybersecurity Authority

Co-sponsors of controversial cybersecurity legislation press for expanded executive authority in hearing that lays out troubling concerns about U.S. digital defenses.

Knight Security Deploys 3,000-Camera Network

The Texas-based company is in the process of deploying a secure network of more than 3,000 video cameras covering 335 buildings throughout its home state.

3Com Announces New Network Security Products

3Com announced Monday a trio of new products including a new switching platform and a pair new security initiatives from its TippingPoint security division.

Data Security Breach at Valdosta State University

The IT department at Valdosta State University discovered that a hacker managed to breach a school server storing the personal information of more than 170,000 students and faculty.

VeriSign Debuts New Online Trust Seal

The Internet's hallmark for trusted sites rolls out a new mark signifying that a site is free from malware, aimed at sites that don't require SSL.

Do Geotagging and Presence Put Your Enterprise at Risk?

Sometimes knowing who, what, where, and when is not such a good thing. Security consultant Diana Kelley explores the dangers of geo-location to your business's information security.

HP Boosts Application Security with Static and Dynamic Analysis

HP and Fortify have joined forces to combine the benefits of dynamic and static code analysis to better detect and repair vulnerabilities in software.

McAfee Updates SaaS Security Features

The security software company announced improvements to its portfolio of on-demand e-mail and Web protection applications after eclipsing the 575,000-customer threshold.

Juniper Meets Mobile Network Security Needs

On the mobile client side, Junos Pulse leverages Juniper's SSL-VPN technology for use on wireless devices. SSL-VPNs provide secure VPN tunnels using SSL encryption.

Wiretapping the Internet: Legal and Dangerous?

Technology built into routers from 15 vendors could enable an attacker to wiretap anyone, but there are fixes to be had.

Mozilla Improves Browser Security with Firefox Patches

Mozilla offers Firefox 3.0.18 and 3.5.8 patches for a trio of critical security vulnerabilities that Mozilla fixed a month ago for Firefox 3.6 users.

Metasploit Gains Further Commercial Adoption

Yet another commercial tool integrates open source metasploit for security testing – is this a good thing?

Massive Cyber Attack Breaches 2,500 Organizations

So-called "Kneber" botnet collects log-in credentials to online financial systems, social networking sites, and e-mail systems to steal corporate and government data.

How to: Set Up TrueCrypt Disk Encryption, Part 1

Eric Geier gives step-by-step instructions for improving laptop security by protecting your data with TrueCrypt disk encryption.

U.S. Prepares for Cyber Attack

In a cyberwar-game simulation held Tuesday in D.C., the National Security Council simulated its response to a massive cyber attack--and raised troubling questions.

Google Buzz Gets Second Privacy Revamp

In a second major update, Google's week-old social service gets another makeover in response to user concerns over privacy.

Brocade, McAfee Team Up on Network Security

The companies are collaborating on a set of jointly designed, interoperable applications that will be integrated into Brocade's networking equipment products.

Google Chrome Updated for Six Security Flaws

Chrome 4 gets its first security fixes--three of them rated as "high" in importance. But it's not all bad news.

Google Buzz Triggers Privacy Concerns

Excitement about Google's new social e-mail application has given way to concerns that the service threatens to publish sensitive information about people's social connections.

Improve Network Security with DNS Servers

Using an alternative DNS provider, such as OpenDNS or Google's Public DNS, can improve performance and increase security. It's worth taking the time to compare your alternatives.

China Tops in Botnets, SQL Injection Attacks

McAfee security researchers predict Internet-based cyber attacks will continue to escalate in quantity, sophistication as hackers target the most popular social networking sites, search topics in 2010.

Microsoft Issues 26 Bug Fixes for February

In this month’s Patch Tuesday, software giant Microsoft releases one of the largest bundles of security fixes ever, but not one for the latest zero-day.

Top Ten Data Breaches and Blunders of 2009

As we strive to improve data security in 2010, we can learn from some of the biggest data mistakes made last year--including one single breach that compromised 130 million records (this means you Heartland).

Hackers Feast on SQL Injection Exploits

A review of major data breach incidents in the past year found that most hackers used SQL injection to infiltrate enterprise networks.

IT to Tackle Post-Super Bowl Network Security

No matter who wins the game, network security firm warns that post-Super Bowl Monday could leave enterprises dealing with security issues.

Hackers Breach Iowa Gaming Commission Database

Hackers, possibly from China, managed to infiltrate the Iowa Racing and Gaming Commission's database last month.

Microsoft Warns Users of Black Hat Zero-Day

Microsoft warns users to protect themselves from a zero-day bug in Internet Explorer (IE) after it was disclosed Wednesday at the Black Hat hacking and security conference.

Welcome to the New Security Daily Newsletter

In our new format, this newsletter enables you to start every work day with a single-page presentation of the critical security-related information that senior technology managers must have at their fingertips.

Online Banking Passwords, Usernames Widely Reused

Report finds the majority of financial Web site customers reuse the same logins elsewhere, posing a potentially serious security risk.

Haiti, World Cup Emerge as Latest Malware Lures

Fake charities tied to the devastating earthquake in Haiti and 419-style scams related to the upcoming World Cup soccer tournament were common spam themes in January, according to AppRiver.

Does Social 'Insecurity' Put Enterprises at Risk?

Security software vendor Sophos' survey reveals that 72 percent of companies are concerned that employee behavior on social networking sites, including Facebook and Twitter, will put their data at risk.

Seven Simple Wireless Security Tips

Follow these seven wireless security tips to lock down your home or small business Wi-Fi network.

Cloud Security Wunderkinds

Security is among the biggest factors that could hinder broader cloud adoption. These two startups have novel solutions that will help drive adoption in 2010 and beyond.