Click here

Security Trends 

Can You Completely Secure Linux?

Top Linux security engineers address whether complete security can ever be achieved with the open source operating system.

IPv6 Under Attack?

Although IPv6 is still not widely adopted, the Internet is seeing the first signs of IPv6-based attacks.

Data Breach Cost Declines for 2nd Year

Americans may be doing something right when it comes to data protection, finds a Ponemon Institute study - or are they just too overwhelmed to care?

Inside the Eye of a Microsoft 0-Day

FireEye discovered two of the most notorious zero-day vulnerabilities in recent months. How did the security company do it?

Google's New Disclosure Policy: Helpful, or Who Cares?

Google shakes up the InfoSec world with a new seven-day disclosure policy. But do top security researchers think it's a good idea?

Blue Coat Gets into Big Data Security by Acquiring Solera

Big Data security analytics continues to be big business, as Blue Coat's acquisition of Solera shows.

Paypal Security Chief Wants to Obliterate Passwords

Are the days of passwords numbered? PayPal's CISO hopes so.

Implantable Medical Devices Pose Security Challenges, Opportunities

Researchers have demonstrated that implantable medical devices (IMDs) can be hacked. What can we do to minimize security risks?

Most Common Web Security Attack? Not SQL Injection

A new study from Whitehat finds SQL injection doesn't even make the top 10 of website security attacks.

DDoS Attacks: Growing, but How Much?

Recent studies point to a big increase in DDoS attacks, but the truth lies in the details.

Identity Loss is the Leading Data Breach Attack

Verizon Data Breach Investigations Report identifies financially motivated cybercrime as being the top breach of 2012, but don't underestimate China.

Passwords Are Weak Link in Security

New Ponemon Institute report sheds light on consumer attitudes and usage of passwords. Conclusion: They don't like them very much.

US-CERT Warns about DNS Amplification Attacks

A common DNS misconfiguration was at the core of last week's massive DDoS. Now the U.S. government is providing guidance on how to fix the problem.

Snort Founder Still Supports Open Source Security [VIDEO]

Hundreds of millions of dollars after building a commercial security vendor, Sourcefire founder Martin Roesch hasn't forgotten his open source roots.

6 Emerging Security Threats, and How to Fight Them

Hackers are nothing if not creative, so it's important for enterprise security pros to educate themselves about emerging security threats like these six.

SSL Co-Author Reflects on Crypto Success and Failure [VIDEO]

What's wrong and what's right with SSL? Nearly two decades after he helped write SSL 3.0, Paul Kocher is looking to hardware for security.

Using Removable Storage Safely in a BYOD World [VIDEO]

The GM of Imation's security unit says BYOD and removable storage need not create a security risk – at least not for enterprises with a plan.

Cloud Security Standards: What You Should Know

A confusing collection of cloud security standards can make it tough to evaluate cloud provider security.

How Akamai's Chief Security Officer Secures Millions [VIDEO]

Andy Ellis, CSO at Akamai, explains how the content dev network deals with security at a massive scale.

Symantec CTO: Enterprise Security Still Needs Humans

As the trend toward IT automation and Big Data increases, in a video interview Symantec's CTO still sees a place for humanity in enterprise security.

Is Cloud PaaS Safe?

Security researchers from Trustwave take aim at Platform-as-a-Service and find security controls to be lacking

RSA 2013: Outdated Software Biggest Internet Security Threat

Forget exotic new variants of malware. Metasploit founder HD Moore warns that outdated and improperly configured software is the Internet's biggest security threat.

RSA 2013: IDC Seeing IT Security Market Growth

Even in a slowing economy, the IT security market is hot.

RSA 2013: How the FBI Combats Insider Threats

The FBI's chief information security officer offers guidance on fighting insider attacks,a task he likens to looking for a needle in a stack of needles.

RSA 2013: SSL Certificate Security in the Crosshairs

Can the SSL certificate authority system be improved? A panel at the RSA conference discussed several promising approaches.