|
Top Articles
Physical Security vs Network Security [2010-01-27] When most people think about security, they think about physical security. Is our build secure? Are our server in a secure location? Is our build monitored to ensure no one can break in? These are the most common questions asked by a company when thinking about security.
Building Better Security Through Cloud Computing Best Practices [2009-12-23] The Cloud Security Alliance (CSA) issued the second version of its "Guidance for Critical Areas of Focus in Cloud Computing", now available on the Cloud Security Alliance website.
Adding More Security To Your Wordpress Sites [2009-12-09] It is no huge secret that I have had this WordPress blog hacked twice this year but some consolation is that I am not alone.
Hijackers Expose Serious Security Risk To Enterprise Facebook Users [2009-11-11] Control your info has taken administrative rights to hundreds of groups on Facebook this morning - which is going to prompt a stampede of fear across the Facebook landscape. Looking at the security of social networking - this is going to be a bad day for many groups on Facebook.
How To Enact Data Privacy Within Your Enterprise [2009-10-21] We all have a vested interest in how data and data privacy is enacted by companies, regardless of the environment, cloud, mobile (laptop, cell phones), private Data Center, or anything else that is a combination of the above. Companies have a vested interest in keeping their customers data private and clear of distortion or error. Consumers and people in social networks also have a vested interest in making sure that the data they share is not abused or misused.
Protecting Yourself From Email Phishing Attacks [2009-10-07] A phishing attack is targeting thousands of web-based email users, according to the BBC and Read Write Web. Tens of thousands of users of each site have already been victimized, with the usernames and passwords available on lists.
SEO and Wordpress Security [2009-09-16] In recent weeks wordpress security, or more correctly the lack of wordpress security has been getting a lot of attention. While most people consider this a site maintenance issue, it has implications that affect your SEO efforts, in this post I'll explain why, and look at some things you can do to protect yourself, and reduce the damage.
Adding Needed Security To SMS And PayPal [2009-09-03] I bought my early-bird ticket for Reading Twestival this morning, paying for it via PayPal. The simple purchase transaction I completed in a couple of minutes reminded me how much I place trust in PayPal, partly because of its neat one-time code by SMS message security procedure - what it calls its SMS Security Key - that I find reassuring.
Addressing Security Concerns In Real Time Can Achieve Business Success [2009-08-19] Karen Mazurkewich suggests that Rapid Response is the key to online success. Unfortunately a factor that weighs against online ecommerce is that Canadians are more wary about online security.
Huge Security Flaw Within Tag Based Systems [2009-08-05] Louis Gray pointed out a new reading system yesterday called Lazyfeed, and overall I am pretty happy with it, but like all tag based reading systems, spammers and other miscreants have so corrupted the general tag base to get their message in front of people that tag based systems need something else to make sure they are delivering good valid content for the search strings provided.
Increase Data Security By Keeping A Local Backup Of Your Cloud [2009-07-22] Over an early-morning cup of coffee, I read an op-ed piece in the the New York Times by Jonathan Zittrain, author of The Future of the Internet and How to Stop It (a book I read last year).
Cli.gs Hacked For Ranking Links [2009-07-07] Cli.gs, (Cligs) a URL shortening/forwarding service has been hacked where several users have been reporting their older created forwarders were all going to 1 single location. Below is a screenshot within the Cligs user interface displaying some older saved forwarded URLs in my own Cligs account.
Data Democratization Can Greatly Increase Data Security [2009-06-26] This is part two of opening workshop by Dion Hinchcliffe on Implementing Enterprise 2.0 at the Boston Enterprise 2.0 conference. Dion brought up a guest speaker David Stephenson who he said is the "world's leader in democratizing data." This was the tile of his discussion, the concept of democratizing data:the data-centric organization.
T-Mobile May Have Been Hacked [2009-06-10] A message to the full disclosure list showed up today claiming to have access to the entire back end infrastructure of T-Mobile. The message to Full Disclosure today from Pwnmobile claims to have hacked into and own the majority of the data on the T-Mobile phone systems today.
Ensuring Your Enterprise Has Security On The Internet [2009-05-27] A plan to ensure the security of the organization's internet computing assets.
Facebook Tests Volatility Of Malware And Phishing From Swine Flu [2009-05-06] Early news reports indicate that a new phishing attack is happening at Facebook right now, so be very careful what e-mails you click on. With all the attention that phishing and malware is getting between the swine flu and other events happening right now, this is a good time to remind folks, be careful of what e-mails you click on.
Tool Developed To Hide Malware Within .NET [2009-04-22] Most windows based modern computers come with the .NET Framework installed, so a security flaw in it could be a very dangerous threat - think to Conficker (and, by the way: take a look here and check if you are infected, then move to Linux or buy a Mac).
Spammer Growth Rate Highest Ever [2009-04-02] Spammers are stepping up their efforts as the "industry" recovers from the loss of McColo, a web hosting company whose clients generated some 75% of the spam e-mail we get to enjoy on a daily basis. It seems that these folks are back up to their old levels again according to a report from Postini, which provides the security for the approximately 15 million users of Google's enterprise e-mail offering.
Setting Up A Security Plan For Your Enterpirse [2009-03-20] A plan to ensure the security of the organization's assets.
Implementing Cost Cutting Without Under-Utilizing Security [2009-03-04] In these uncertain economic times, businesses are being forced to implement crucial cost-cutting measures to expel any and all unnecessary spending. But in the process of trying to improve cost efficiency, businesses can inadvertently under-utilize, or even expel altogether, valuable initiatives that are strategically viable to the longevity of that business.
Recovering Your Sites After A Major Attack [2009-02-18] So your website has been hacked. All your pages are gone and you can't log into anything to make changes. What do you do and how do you fix it?
Use Acunetix Blind SQL To Identify Web Vulnerabilities [2009-01-29] Cool presentation on YouTube on how to use the Acunetix Blind SQL Injection Tool for data mining systems. In all honesty, this is a great video to watch.
Two Security Sites Close Amid Economic Pressure [2009-01-14] The poor economy hits two more security web sites, making news and sharing of information security information that much harder to find.
Google Offical Hacking Database Closes [2008-12-31] Over a month ago, Johnny I hack stuff, the Google hacking database was reported to be shut down, and today all that is left is a video of Christmas in Kenya.
Google's Response to Gmail Security Vulnerability [2008-12-02] Google says that recent reports on a Gmail vulnerability aren't true (Google might mean this one at GeekCondition.com, as blogged here earlier; my emphasis in the quote):
|
|