-
Week of 14 May 2012 MDM, security vendors scramble to address BYOD security issues (18 May 2012)
Organisations are looking beyond NAC and MDM to resolve BYOD security issues; MDM, security and hybrid vendors are responding with new products.
Division of CISO responsibilities may prevent burnout (Security Bytes blog | 17 May 2012)
CISO responsibilities can be overwhelming, according to a new IBM survey. One solution may be to divide the role into two jobs.
-
Week of 07 May 2012 ICO fines Welsh health board £70,000 for patient record loss (11 May 2012)
For the first time, the ICO fines an NHS organisation for sending patient data to the wrong person.
Going after the middlemen in the fight against financial cybercrime (Security Bytes blog | 10 May 2012)
The FBI and SOCA successfully executed Operation hAVoC, going after the middlemen, or carders, in the fight against financial cybercrime.
-
Week of 30 Apr 2012 SOCA takes its website offline in DDoS response (03 May 2012)
Just days after SOCA shut down carder sites, the agency was the victim of a DDoS attack, leading SOCA to takes its website offline.
Creativity in information security awareness training (Security Bytes Blog | 03 May 2012)
Information security awareness training programs must be creative and visually compelling to grab users’ attention and ensure they remember the security lessons.
-
Week of 23 Apr 2012 SOCA shuts down network of CVV sellers' carder sites (27 Apr 2012)
The Serious Organised Crime Agency shut down 36 CVV sellers who were selling stolen credit card and banking credentials to buyers around the world.
Infosecurity 2012: Survey proves value of security awareness programme (27 Apr 2012)
According to the latest findings from PwC, better end-user security training can pay off in fewer breaches.
Infosecurity 2012: ICO opposes mandatory data breach notification (26 Apr 2012)
Information Commissioner Christopher Graham calls mandatory breach disclosure for all companies unnecessary, saying voluntary disclosure is working.
For data security, cloud customers need DIY approach (Security Bytes Blog | 26 Apr 2012)
To ensure data security, cloud computing customers must accept a do-it-yourself approach, rather than relying on providers for security.
Investigation reveals serious cloud computing data security flaws (24 Apr 2012)
Context Information Security found that data stored by a cloud customer could be accessed by the next customer to spin up a VM on the same disk.
-
Week of 16 Apr 2012 PCI assessor and CISO: Work together for the best PCI ROC (SearchSecurity.com | 19 Apr 2012)
In a session at the SOURCE Boston conference, a PCI assessor and a CISO explain that there are ways to arrive at a report on compliance they can both appreciate.
ISBS 2012 report: Security slow to adapt to new technologies (20 Apr 2012)
PwC’s ISBS 2012 report, which will be presented at Infosecurity 2012, shows security teams react too slowly to threats from new technologies.
Experts differ on European ‘cookie law’ advice (Security Bytes Blog | 19 Apr 2012)
U.S. firms with European customers are wondering about the new “cookie law.” Experts have different advice for European cookie law compliance.
-
Week of 09 Apr 2012 Defining a full security threat (Security Bytes Blog | 12 Apr 2012)
How would you define a security threat? The correct answer could score the funding you need for your next security project.
Report: Corporate mobile device policy must align security, job roles (13 Apr 2012)
In the debate between BYOD and company-issued devices, a new report compares mobile platforms and recommends devices based on users’ job roles.
-
Week of 02 Apr 2012 Prepare now for more stringent U.S. data privacy laws (Security Bytes Blog | 05 Apr 2012)
U.S. data privacy laws will soon become more pervasive and more strictly enforced. Security teams should prepare their organizations for the new rules.
-
Week of 26 Mar 2012 For website owners, UK cookie law causing confusion, uncertainty (27 Mar 2012)
A survey of digital marketing professionals found some companies plan to take no action to comply with UK cookie law before the May 26 deadline.
SIEM deployment case study shows patience is required (30 Mar 2012)
Williams Lea’s SIEM is already helping reduce manual log reviews. But there’s still a lot of work to be done before the SIEM can be fully deployed.
Future of SIEM market hinges on past mistakes (Security Bytes Blog | 29 Mar 2012)
The SIEM market had a rocky start, but recent technology advancements have made SIEM products easier and more reliable.
Costs of a data breach falling, but cost per record rising (26 Mar 2012)
The cost of a data breach in the UK is falling, data from Ponemon Institute shows, but the news isn't all good.
-
Week of 19 Mar 2012 Verizon data breach report boasts new contributors (Security Bytes Blog | 22 Mar 2012)
Good news for the security industry: More countries contributed to the 2012 Verizon data breach report.
Verizon data breach report highlights continuing POS vulnerabilities (22 Mar 2012)
Improperly secured point-of-sale systems continue to offer an easy target to cybercriminals according to the 2012 data breach report from Verizon.
UK IT spending 2012: Security budgets show growth, CompTIA survey says (23 Mar 2012)
CompTIA found IT security budgets are growing for most UK organisations. However, UK IT managers report a shortage of skilled security professionals.
Study: Shnakule, four other malnets caused most 2011 attacks (19 Mar 2012)
Huge global malnets, such as Shnakule, were responsible for most attacks in 2011, and Blue Coat predicts they will trigger 66% of all attacks in 2012.
-
Week of 12 Mar 2012 Can a security association bring us all together? (Security Bytes Blog | 15 Mar 2012)
Vendors and government call for security pros from different organizations to work together, but will our competitive nature stand in our way?
Taking control of smartphone proliferation while avoiding user anarchy (14 Mar 2012)
With smartphone proliferation raging through companies, IT teams are turning to MDMs to keep corporate data safe. Are current MDMs up to the task?
Surveying the landscape of today’s mobile device security risks (14 Mar 2012)
The biggest mobile device security risks are not from malware -- at least not yet. Find out the primary concerns of IT pros managing mobile devices.
Getting serious about tablet security risks and user training (14 Mar 2012)
With increasing tablet security risks, the time has come to get serious about user education. UK Bureau Chief Ron Condon prescribes a new mindset.
UK firms have trust in cloud service security, but reality disappoints (15 Mar 2012)
UK firms believe moving some IT projects to the cloud will improve their overall security, yet they end up feeling less secure after the move.
It's so easy to breach the Data Protection Act (The Security Viewpoint | 13 Mar 2012)
The latest case to appear on the website of the Information Commissioners Office (ICO) shows just how easy it can be to break the law.
-
Week of 05 Mar 2012 New mobile security statistics show consumers fearful of mobile spam (09 Mar 2012)
A survey of UK consumers found trust in mobile device security is declining as more users fall prey to mobile spam.
-
Week of 20 Feb 2012 Windows security case study: Controlling Windows 7 user privileges (24 Feb 2012)
After migrating from Windows XP to Windows 7, Oxford University Press used Avecto’s Privilege Guard to control Windows 7 user privileges.
-
Week of 06 Feb 2012 Study finds attacks slip past spotty patch management policies (10 Feb 2012)
A study finds attackers targeting firms with poor patch management policies, exploiting vulnerabilities that should have been patched years ago.
Survey: Types of DDoS attacks on the rise due to hacktivist groups (09 Feb 2012)
New DDoS statistics suggest hactivist groups are to blame for an increase in the number and types of DDoS attacks across the Internet.
Web application vulnerability statistics show security losing ground (08 Feb 2012)
New Web application vulnerability statistics show the number of vulnerabilities is rising, despite the use of Web application development frameworks.