Security


Cybersecurity Policy Will Pose Challenges, Security Pros Say

Now that there's some movement toward a U.S. cybersecurity policy, it's time to roll up the sleeves and get to work, and that task won't be easy, software security experts suggested on Friday.

IT Shops Still Spending Despite Downturn

A recent study from IT staffing specialist Robert Half Technology suggests that CIOs plan to invest in new IT initiatives over the next year, in spite of a bad (and possibly worsening) economic climate.

Microsoft Issues Security Alert on IIS Web Server

Responding to public reports of a wild bug, late Monday Microsoft issued a security advisory to address a potential vulnerability in its Internet Information Services (IIS) Web server software.

Lone Microsoft Patch Fixes PowerPoint Vulnerability

As expected, Microsoft rolled out only one patch for this month's Patch Tuesday, a critical bulletin for PowerPoint.

Tuesday's Patch Will Target PowerPoint Security

Microsoft plans to roll out only one "critical" patch on Tuesday, affecting PowerPoint, for its May security update.

Pirate's Booty in Bootlegged Win7

Plus: Worms that start with Win; Facebook phishing.

Windows Vista SP2 Released to Manufacturing

Microsoft rolled out Service Pack 2 (SP2) for Windows Vista and Windows Server 2008 in its "release to manufacturing" form.

Redmond Tweaks Autorun

Microsoft moves to make worms less effective. Plus: RSA kicks off security conference season; Google to school IT pros on the perils of cross-site scripting; and the FBI weighs in on Conficker.

Microsoft Touts Security in Windows 7

Microsoft last week described improved security features in its upcoming Windows 7 operating system, currently in beta release.

RSA: Hackers Shifting Focus to App Software

Writing more secure software is not a simple task, but it can and should be done for applications, experts say.

RSA: Security Lags as Virtualization Picks Up

At a time when everyone is watching the bottom line, there is an increasingly strong impetus to virtualize IT environments.

Botnet Discovered on Thousands of Government Computers

Researchers from Finjan Software Inc. announced at the RSA Security conference the discovery of a new botnet on nearly 2 million infected computers -- many of them in U.S. government networks.

RSA: Users, Not Technology, Are Security's 'Weak Link'

There are a wealth of commercial tools available to help secure networks, but getting them to share information so that administrators have more than a piecemeal picture of their systems can be a challenge.

UAC Under Control

UAC not so snarky in Windows 7. Plus, .NET exploit; Internet dangers; hiring hackers.

RSA: Microsoft Urges Greater Internet Security Collaboration

As cyber security problems become more widespread, Microsoft urged the IT community to take a more active role, and described its security approach.

2008: The Year of the Insecure Web Browser

Web browsers offered soft and interesting targets for hackers in 2008, who took advantage of them to attack the increasingly rich Web experience, said security expert Jeremiah Grossman.

'Stirling' Beta 2 Unveiled for Enterprise Security

Microsoft announced the beta 2 release of "Stirling," which is the code name for an integrated suite of enterprise security solutions based on Forefront products.

Botnets on the Rise, Despite Aggressive Law Enforcement

The number of compromised computers actively being used in botnets to launch attacks on any given day last year was about 75,000, according to a new report on Internet threats from Symantec Corp.

Always On Our Minds

Yes, Conficker manages to remain in minds of IT security. Plus: tweeting birds get the worm and why security standards equal a bad idea.

IE Settings Can Enable Intranet Attacks, Report Says

Default security settings in Microsoft's Internet Explorer browser could open a company's intranet to hacking attacks, according to a recent security white paper.

Most   Popular