Latest News

  • Explosion of data driving information security industry
    In ArcSight’s Silicon Valley office, Rick Caccia, the infosec firm’s vice president of product marketing, tells Infosecurity’s editor, Eleanor Dallaway, that in addition to the constant tide of cybercrime, it’s huge amounts of data that are driving this industry.
  • ISF shares its security risk predictions
    Rather than consulting a crystal ball, the Information Security Forum (ISF) looked to experts in the field – including those from its member organizations – to develop a set of security risk predictions for 2012 and beyond.
  • Cyber crimes cost organizations $3.8 million per year
    A recent study conducted by the Ponemon Institute reveals that, on average, cyber crime costs organizations in the US about $3.8 million per year.
  • Government unveils plans for national infrastructure cybersecurity
    The federal government is reportedly working on an ambitious plan to detect and defend against cyberattacks on the US critical national infrastructure, which includes national electricity and telecoms grids, as well as other systems important to the defense of the nation.
  • Organizations in the dark about advanced cyberattacks
    Many organizations are unaware they are being targeted by advanced cyberattacks and are failing to respond effectively, according to research from the Ponemon Institute.
view more

Podcasts

view more

Webinars

  • Networking Data Archiving – it’s a whole new data retention ballgame
    Organizations around the world are using social networking to better their customer relationships (Facebook), prospect for new business (LinkedIn) and promote their events (Twitter) but what about the archiving and retention of these business communications? You don’t archive? So why bother archiving your email? It’s all about legal and regulatory issues. And then there’s the problem of litigation.
  • Social Networking: Roadblocks, Risks, Rewards
    Facebook and Twitter usage in the workplace is going through the roof, causing major security headaches at all levels, both inside and outside the boardroom. The security issues that Web 2.0 services create are far from simple - managers need to understand not just the IT risks of data leakage, malware propagation, but also the compliance and legislative requirements.
  • How email archiving ‘in-the-cloud’ can benefit your organisation: The evolution of the archiving market
    Email use has exploded and is now the primary means of communication for organisations. Vital documents and information are passed to and from employees and the current regulatory environment means that this content needs to be archived.
  • Solving the PCI Security Puzzle: Putting the Access Control, Privilege Management, and Server Protection Pieces Together
    Complying with PCI regulations in heterogeneous environments can be a complex and costly initiative. Leveraging your existing IT infrastructure offers a simpler and cost-effective way to address the sections of the Payment Card Industry’s Data Security Standard (PCI DSS) that matter most to IT managers – and without sacrificing manageability and productivity. Join our panel of experts for an informative webinar to learn how you can address the regulatory requirements of the PCI standards by linking all your access rights, privileges, and audit logs into a single, definitive Active Directory identity.
view more

Blogs

  • PCI, AV and a life vest
    Posted by Geoff Webb • 25 August 2010
    A good friend of mine over at NetIQ, Todd Tucker, recently blogged about some of the frustrations he sees when looking at the failure of PCI as a security standard (or rather, the failure of thos...
    tags: PCI DSS, anti-virus, malware
    rated:
  • Should RIM hold its line on the BlackBerry?
    Posted by Drew Amorosi • 18 August 2010
    Encryption is the sort of topic that rarely makes it into the mainstream media, but the recent hoopla over BlackBerry security, namely its encryption procedures, has drawn the ire of governments throu...
    tags: encryption, BlackBerry, compliance & policy
    rated:
  • I-Coverage
    Posted by Geoff Webb • 13 August 2010
    I wanted to comment a little on the recent stir concerning the vulnerabilities on the iPhone (iPad, iTouch, I-Robot.  No, wait, that's a movie.) I think the level of interest in this vulnerabili...
    tags: Security, iPhone, Android, Blackberry
    rated:
  • Adobe CS7 Searches Saturated With Dangerous Results
    Posted by Patrick Walsh  • 30 July 2010
    Looking to save a few bucks on software will almost always lead users down a dangerous path. Users either end up at “OEM Software” sites offering unlicensed and illegal software, or t...
    tags: oem software, malware, blackhat seo, pagerank bomb, adobe, microsoft
    rated:
  • Microsoft and Adobe: Collaboration Against Threats
    Posted by Roger Halbheer • 28 July 2010
    You know my opinion on collaboration between countries, on public-private-partnerships, as well as on collaboration between companies. For quite a while we have been running a program calle...
    tags: Vulnerabilities
    rated:
view more

Features

view more

Downloads

  • Application Whitelisting Puts HIPS in the Recycle Bin
    This analyst-authored whitepaper outlines how Application Whitelisting protects against new advanced persistent threats, automates real-time visibility of actual application usage and more.
  • Desktop Software Lockdown: Prevent Targeted Attacks
    Preventing the installation and execution of unauthorized software should be a high priority for any IT security conscious organization. Allowing users to install or execute unauthorized software can expose an organization to a variety of security and legal risks, not to mention the burden of increased support costs. This paper will compare and contrast a variety of techniques for detecting and preventing unauthorized code.
  • Cloud Application Security
    Cloud computing promises to deliver IT infrastructure services via the Internet on an “as-needed, pay-per-use” basis. Cloud resources can be provisioned on-the-fly to support specific project needs, or they can be leveraged on a longer-term basis to add capability to an existing IT infrastructure. For some companies, cloud resources even serve as the entire IT infrastructure because of the ease and speed of deployment and cost-effectiveness compared to deploying an in-house infrastructure.
  • The Challenges of Automated Application Assessments in a Web 2.0 World
    This white paper, written by two security experts from Stach & Liu, Rob Ragan and Vincent Liu, describes the challenges of automated penetration testing or application scanning of Web 2.0 applications.
  • Protecting Your Network Against Web Attacks
    The problem of Web-borne threats is not theoretical: millions of users have been impacted and the threat is getting worse. Today, Web threats are more numerous and virulent than those delivered in email, and it is easier to be infected by them.
view more