Iphone Dock Fires and Other Holiday Hazards
Anthony M. Freed, Information-Security-Resources.com Managing Editor As we all approach the inevitable chaos of the holidays with shopping, company parties, and client gift lists - all on top of Q4 and 2009 reports and wrap ups - please take care care to protect yourself and your family from possible tragedy due to simple oversight. Be on guard for a spike in scams and phishing expeditions - if something sounds to good to be true… Cyber crooks and scammers are growing increasingly sophi... Read Full Story
Navy CIO Sees Future in Cloud Computing
By Kevin L. Jackson, Vice President at Dataline During this week’s Federal Executive Forum taping, Navy CIO Robert Carey discussed his views on cloud computing. Stating that the NGEN and CANES (Navy Consolidated Afloat Networks and Enterprise Services) programs will both leverage cloud computing, he also describes a future of “grey clouds” on each ship. Joining him on the program was: Mike Krieger- Army Deputy Chief Information Officer, Office of the Secretary of the Army H... Read Full Story
Social Media Scams Plague Networks
By Robert Siciliano, Identity Theft Expert For the past year, I’ve been screaming about the trouble with social media as it relates to identity theft, brand hijacking, privacy issues, and the opportunity social media creates for criminals to “friend” their potential victims in order to create a false sense of trust and use that against their victims in phishing or other scams. I predicted long ago that the problem will get a lot worse before it gets better and there’s no question about it, c... Read Full Story
Top Five Financial Sector Security Threats
By Kevin M. Nixon, Information Security Resources Security Editor It is usual and customary during the 4th Quarter of any year, to think about the potential threats to our financial institutions and corporations, in an effort to get ahead of the curve and stave off additional failures. I have listed my Top 5 concerns below and welcome comments from readers. One:  Regulation To date, no changes have been made to strengthen Federal Laws or improve SEC reporting criteria. Under Sarbanes-Oxley ... Read Full Story
Two Vulnerability Scanning Tools Evaluated
By Bozidar Spirovski, CISSP, MCSA, MCP We have mentioned our favorite vulnerability scanning tools before. But a lot of time has passed since, so it is time to put these tools against each other and evaluate the quality of the results received when scanning the same target. The Test Environment The tested vulnerability scanning tools were installed on a Windows 7 Pro PC. Nessus server and client were installed and updated to the latest plugins. Retina 5.10.18.2135 Evaluation version was down... Read Full Story
Everyday Life and the Expectation of Privacy
Coby Royer, Technical Product Manager for Symplified Bob Blakley from The Burton Group recently posted a great response to Andrea DiMaio of Gartner Group regarding privacy. There are lots of great viewpoints expressed in Bob’s blog and comments, but I’d like to raise a perspective on privacy that is not fully addressed. I’ll start with an analogy - fortunately, my daughter is not yet old enough to drive but I’m sure this story is a reality for many of you. You loan you... Read Full Story
Top Ten Email Related Disasters of 2009
BY Mel Duvall, Chief Content Officer at CIOZone Forget about vampires, ghouls and zombies. You were much more likely to receive a fright this year from something lurking in your e-mail. Just in time for Halloween, security software vendor Proofpoint has come up with a list of the Top 10 Terrifying E-mail Blunders of 2009. There were the usual crop of Trojan horses and phishing expeditions, but as the surprising list points out, some of the scares go all the way up to White House and the FBI. ... Read Full Story
Report: Data Breaches Hike Fraud Risk 400%
By Doug Pollack, Chief Marketing Officer for ID Experts Because data breaches have become such commonplace incidents, there is concern that people have become desensitized to the potential harm they face upon receiving a notification letter from an organization informing them that sensitive information has been lost or misappropriated. A recently published report from Javelin Strategies should be a wake up call to those people. The Javelin report, Data Breach Notifications: Victims Face Four... Read Full Story
Debunking Cyber Deterrence as a Strategy
By Richard Stiennon, Chief Research Analyst, IT-Harvest Martin Libicki’s “Cyberdeterrence and Cyber War” has been released as a RAND monograph and in book form on Amazon. This is the first cogent look at the efficacy of waging strategic cyber war and I hope will serve to slow the rhetoric coming from the US Defense community about acquiring cyber offensive capability. I wrote before about the National Resource Council’s report, Technology, Policy, Law, and Ethics Regarding US Acquisition and ... Read Full Story
Internet Security Alliance November Events
From The Internet Security Alliance November 2009 Calendar of Events All times listed EASTERN Monday, November 2 at 5:00pm: IT Sector Coordinating Council Executive Committee Conference Call. The Information Technology Sector Coordinating Council was established on January 27, 2006 for the purposes of bringing together companies, associations, and other key IT sector participants on a regular basis to coordinate strategic activities and communicate broad sector member views associated with... Read Full Story