Symantec isn’t the only company to forecast improved enterprise IT spending based on quarterly results in the past few weeks; executives at EMC, IBM, and Intel all spoke positively about IT budgets rebounding in the coming months.
As we all approach the inevitable chaos of the holidays with shopping, company parties, and client gift lists - all on top of Q4 and 2009 reports and wrap ups - please take care care to protect yourself and your family from possible tragedy due to simple oversight...
During this week’s Federal Executive Forum taping, Navy CIO Robert Carey discussed his views on cloud computing. Stating that the NGEN and CANES (Navy Consolidated Afloat Networks and Enterprise Services) programs will both leverage cloud computing, he also describes a future of “grey clouds” on each ship.
With the threat of aftershocks in the US Stock market, continued bank closings and takeovers by the FDIC, serious consideration needs to be given to changing the current reporting, auditing and oversight regulations, and the public needs to pressure elected officials into action before our entire country is taken off financial life support.
In terms of speed, Retina performed much faster. In terms of scan depth, Nessus has a small advantage, since it includes a web mirroring tool that is very helpful in HTTP. In a direct comparison, Nessus wins simply because Retina manifested erroneous results on repeat scans.
Regardless of what you feel should or should not be private, we all have a right to set expectations that we trust will be met. And as technologists, we have the capability to improve the state of privacy in the face of technological advances that might otherwise undermine it. Privacy is not an Illusion, it is a challenge.
This is the first cogent look at the efficacy of waging strategic cyber war and I hope will serve to slow the rhetoric coming from the US Defense community about acquiring cyber offensive capability: “Can cyberattacks disarm cyberattackers? In a world of cheap computing, ubiquitous networking, and hackers who could be anywhere, the answer is no.”
Forget about vampires, ghouls and zombies. You were much more likely to receive a fright this year from something lurking in your e-mail. There were the usual crop of Trojan horses and phishing expeditions, and as the surprising list points out, some of the scares go all the way up to White House and the FBI.
This report should be heeded by those banks, health care organizations, government agencies, insurance companies and others that we entrust with our social security and checking account numbers, birth dates and mothers’ maiden names, and in some cases our personal health information.
ISA/AIA webinar - Testing In A Real Environment Leads to Faster Cyber Security Innovation; Electronic Self-Help - White Hats, Black Markets, and Grey Laws; Software Assurance Forum; ICSJWG 2009 Fall Conference; ISA/AIA Webinar - Supply Chain Issues in Cyber Security…
I recently saw an article entitled Compliance is the New Security Standard. The basic thesis of the blog post was that since companies have to spend money on compliance, they might as well spend the money once and rename the effort “security”. This is an interesting notion – although perhaps “placebo security” might be a cheaper approach. Compliance is not equivalent to security for several fundamental reasons…
Oops, I just argued from scenario. Pundits often extrapolate from the current state of vulnerability of systems to predictions of massive power outages, financial collapse, and loss of command and control are falling into the scenario syllogism trap. Posing scenarios to support your anti-cyber war position can be just as dangerous…
According to Sun Tzu, the Tao is the Way – the context that defines how actions are perceived and valued, and management must be able to accurately assess the program in the context of the company’s cultural and political reality. Failure to do this will inevitably create a clash between strategic security plans and the operational activities that enable that vision.According to Sun Tzu, the Tao is the Way – the context that defines how actions are... more
(Video) During this week’s Federal Executive Forum, key decision makers from DoD, DHS and FBI highlighted identity management interoperability as their key priority for 2010. Panelists included: Robert Mocny, Acting Director, US-VISIT Program Department of Homeland Security; Stephen Morris, Criminal Justice Information Services Division, FBI; and Thomas Dee, Director, Defense Biometrics, Office of the Secretary of Defense…(Video) During this week’s Federal Executive Forum, key decision makers from DoD,... more
There is still a lot of scareware out there, and many people still falling for it. Forty-three million in the last year according to Symantec. Put simply, scareware programs are designed to frighten people into running malicious software by popping up when the user is online and declaring that viruses have been detected…There is still a lot of scareware out there, and many people still falling for it.... more
Consider the possible consequences of a catastrophic loss of data a doctor’s office, an insurance agency, a law firm, or basically any other business. It appears that users of cloud based services may have little in the way of legal remedies. A very quick review of the terms and conditions for two of the best known cloud providers illustrate the issue.Consider the possible consequences of a catastrophic loss of data a doctor’s office,... more
Do surviving relatives have a right to read their deceased son’s, daughter’s, husband’s or wife’s communications with other people whose lives could then subsequently be completely altered as a result? What would your email service providers do with all your messages? Who should make that decision, and when should that decision be made?Do surviving relatives have a right to read their deceased son’s, daughter’s,... more
An intruder could eavesdrop on sensitive data sent across the Internet, manipulate the DNS address that redirects traffic from trusted sites to malicious ones, and possibly even infect other routers automatically. Chen says he informed Time Warner’s security department of the hole; they responded that they were aware of the problem but couldn’t do anything about it.An intruder could eavesdrop on sensitive data sent across the Internet, manipulate the... more
Google was born on the Web and is increasingly giving Microsoft fits by forcing the decades-old software giant to compete on Google's terms. Like open source. Like cloud computing.
Microsoft may shore up its fortunes in the short term with a successful Windows 7 launch. But in the long term, its very success with outdated "desktop" products threaten to cede the market to Google.
We'll have all of it, please
It's not really fair to Microsoft. Microsoft is a victim of its own success, needing to cater to its existing clientele with each new release, in true "Innovator's Dilemma" fashion. Hence, Microsoft continues to make a lot of money, but its last two quarters have seen traditional strengths like Windows become a drag on earnings as enterprises spend more money with Google, Red Hat, and others...Google was born on the Web and is increasingly giving Microsoft fits by forcing the... more
Data security vendors like Mcafee, IBM, Fidelis Security, Symantec, Verdasys, Reconnex, Vericept, Raytheon, Websense and Checkpoint have written thousands of white papers on how their data security products can help an organization be HIPAA compliant, but log-management cannot mitigate dumpster-diving, nor can it prevent bulk database dumps and file transfer.Data security vendors like Mcafee, IBM, Fidelis Security, Symantec, Verdasys,... more