Guide to the TechWeb Network
Register today and you could win a Sirius Satellite Radio
 
CELEBRATE THE INDUSTRY'S MOST COMPREHENSIVE SECURITY SITE FOR IT PROS
Become a registered user today (it's free!) and you'll get security alerts, news, information, and tools from the brightest minds in the business. And, just for signing up, you'll be automatically registered to win one of 10 Sirius Satellite Radios we're giving away in the next few days!
Register Today!
WEBINAR: DAN KAMINSKY ON DNS POISONING
July 24, 2008
1pm Pacific/4pm Eastern
BLOG
RX for
Security
Trouble
COLUMN
iPhone
Smackdown:
Security...
REPORT
Top Six
Database
Attacks
USER PROFILE
Stanford's
Rx
CSI REPORT
12th Annual CSI Survey
Web-Wide DNS Vulnerability Leaked
JULY 23, 2008 | 'Accidental' posting by researchers briefed on the flaw may lead to exploits today
CLICK HERE FOR MORE
Live Events
JULY 24, 2008
Cable Next-Gen Video Strategies
SEPTEMBER 18, 2008
ATCA, AMC & MicroTCA
SEPTEMBER 23, 2008
Backhaul Strategies for Mobile Operators
OCTOBER 6, 2008
Contentonomics - Content Delivery Economics
OCTOBER 6, 2008
Optical Expo 2008
OCTOBER 20, 2008
Ethernet Expo 2008
NOVEMBER 11, 2008
TelcoTV Conference & Expo
LIVE EVENTS CALENDAR
Security Product Directory
Including 205 products and 70 companies
ACCESS DATA
LIST YOUR COMPANY
LICENSE THE DIRECTORY
Apple  |  Application scanning  |  Application Security  |  Attacks / Exploits / Threats  |  Authentication  |  Black Hat  |  Botnets  |  Browser security  |  Computer crime  |  Consultants  |  Content filtering  |  Cross-site scripting  |  Encryption  |  End-user monitoring   |  File/folder encryption  |  Firewalls  |  Host Protection  |  Identity management  |  Industry Trends   |  Law enforcement  |  Legal & Regulatory Topics  |  Legislation  |  Malware  |  Market Research  |  Messaging Security  |  Microsoft  |  Penetration testing  |  Penetration testing  |  Perimeter Security  |  Phishing  |  Policy management  |  Security Administration / Management  |  Security Industry  |  Security Services  |  Social engineering  |  Spam  |  Spyware  |  SQL injection  |  Storage Security  |  Stored data losses  |  Trojans  |  User privacy  |  Viruses  |  Vulnerabilities  |  Vulnerability assessment  |  Vulnerability management  |  Vulnerability Management  |  Web services security  |  Wireless security  |  Worms
" even the best firewalls,
IDS, and antivirus systems
aren't much use if they are
poorly implemented." Are
any of these things able...
Researchers Raise Alarm Over New Iteration of Coreflood Botnet
JOIN THE TALK
MOST POPULAR
SEND US A TIP
JULY 23, 2008 | Password-stealing Trojan is spreading like a worm – and targeted directly at the enterprise
'PhishMe' Tool Lets Businesses Spear-Phish Themselves
JULY 22, 2008 | Web-based service generates self-inflicted targeted attacks to enlighten users, assess risk
Report: Vulnerabilities Abound in Open-Source Environments
JULY 21, 2008 | Enterprises should take care in adopting open-source technology, Fortify study says
Hundreds of Websites Outed for Illegally Selling Steroids
JULY 21, 2008 | Internet watchdog groups expose ‘roid-pushing dealer sites, urge US-based domain registrars to drop them
Researcher Offers Malware Analysis Tool
JULY 18, 2008 | Proof-of-concept tool is more difficult for hackers to detect and evade than current malware analyzers
Secret Defense Data Lost on UK Government USBs
JULY 18, 2008 | Yet more government storage shenanigans on the other side of the pond
MORE SECURITY NEWS
DELRAY BEACH, FL | Web App Security Conference Follows Black Hat
MENLO PARK, CA | PGP Unveils Endpoint Security Package
LONDON | Trojan Hides Behind Fake Story
REDWOOD SHORES, CA | Oracle Bows Identity Management Tools
NEW HAVEN, CT | Romanian Admits Role in Phishing Scheme
IRVINE, CA | InteleNet Rolls Out PCI Compliance Services
WALTHAM, MA | Ounce Labs, SlickEdit Speed Vuln Assessment
AUSTIN, TX | Mirage Releases Ruggedized NAC Appliance
ATLANTA | Pushdo Botnet Behind Fake UPS Invoices
NEW YORK | MessageLabs Reveals Most Spammed States
MORE NEWSFEED
WWJ – DETROIT
U. Michigan Study: Most Bank Websites Flawed
JULY 23, 2008 | More than 75% of bank sites have at least one design flaw that could make customers vulnerable
THE REGISTER
RIM Issues Patch for Serious Blackberry Flaw
JULY 23, 2008 | Booby-trapped document could execute malicious code on a victim's device
TIMES ONLINE
Asprox Virus Affects Key Government and Consumer Sites
JULY 23, 2008 | Eastern European hackers suspected of placing the Asprox virus on more than a thousand British Websites
WIRED
Net Censorship Law Struck Down Again
JULY 23, 2008 | Federal appeals court overrules a Clinton-era law that would have forced Websites with adult material to verify visitors' ages
DATAMATION
The Many Dangers of Cloud Computing
JULY 23, 2008 | Many enterprises are attracted by the technology’s advantages, but don’t understand the risks
THE REGISTER
Convicted Spammer Goes AWOL From Federal Prison
JULY 23, 2008 | Pump-and-dump conman walks out of 21-month sentence
COMPUTERWORLD
Top Spammer Sentenced to Nearly Four Years
JULY 23, 2008 | 'King of Spam' Robert Soloway gets new throne – in the hoosegow
BBC NEWS
'Spying' Requests Exceed 500,000 in UK
JULY 23, 2008 | Report indicates that British government agencies are abusing surveillance rights
MORE BEST OF THE WEB
1 |  Health Care IT Needs Resuscitation - ru_trustified
2 |  so what. - writeknight
3 |  Authorization, not authentication. - ru_trustified
4 |  I don't get it... - Rafalski
5 |  Trust is nice... - ru_trustified
6 |  Re: Stick it, to the Man - cliftond
7 |  Stick it, to the Man - SecGuru
8 |  A new phenomenon - algandhi
9 |  OWA works pretty well - algandhi
10 |  OWA Authentication - algandhi
11 |  OWA Authentication - algandhi
12 |  RE: "Hacking" Invisible Files - drachenstern
13 |  Congrats! - dmarlin
14 |  Thanks for updating the article - moodle
15 |  Phone-based solutions - awilder
16 |  ROCKETON is the same as Google - Maxi
17 |  Correction - moodle
18 |  Please note this only applies to some OLD versions of Moodle (from 1996) - moodle
19 |  keygen files - woboyle
20 |  Really? - wk
SEARCH MESSAGE BOARDS   |   START YOUR OWN BOARD
MESSAGE BOARDS EXPLAINED
RANKED FROM THE LAST MONTH
3 |  SF Net Hijacker Gives Up Passwords
2 |  Schneier, Team Hack 'Invisibility Cloak' for Files
1 |  2-factor authentication for terminal services
1 |  Papa Gino’s Goes Biometric
1 |  10 Hot Security Startups
1 |  How to Terminate a Sysadmin – for Good
1 |  Hundreds of Websites Outed for Illegally Selling Steroids
1 |  Doctor's Security: Off the Charts
1 |  Why isn't Out of Band 2 factor authentication a bigger deal?
1 |  Post-Partum Pen Test
SEARCH MESSAGE BOARDS   |   START YOUR OWN BOARD
MESSAGE BOARDS EXPLAINED
FROM THE EDITORS AT NETWORK COMPUTING
Review: Blue Lane VirtualShield
JUNE 1, 2007 | When put to the test, Blue Lane’s unique patching approach is an effective way to protect against remotely exploitable vulnerabilities targeting VMware
Review: Enzo's Database Extrusion Monitor
MAY 21, 2007 | Enzo 2006 may work well for small orgs with few databases, but it could become an implementation nightmare for enterprises
Ubuntu Linux vs Windows Vista: The Battle for Your Desktop
MAY 4, 2007 | Testers tried out both Vista and Ubuntu on individual PCs to see which works better. Here's who won
Analysis: Enterprise Key Management
MAY 1, 2007 | How to keep keys manageable and safe, as well as what to look for in an enterprise key management system
Review: Lockdown Networks Enforcer 4.2.7
MAY 1, 2007 | Lockdown integrates syslog events but stumbles on several key features, such as event suppression and management
MORE PRODUCT REVIEWS
Hacker's Choice: Top Six Database Attacks
MAY 8, 2008 | It doesn't take a database expert to break into one
DR's 10 Most Popular Stories Ever (Second Edition)
MAY 2, 2008 | A look at the top stories from our first two years, including coolest hacks, biggest botnets, and a thumb drive exploit that readers just can't put down
MORE REPORTS
Novell's Secure Desktop Solution: A Modern-Day Marriage of Business Benefit and Risk Reduction - by Novell 7/21/2008
Download AppScan 6.5 today! 7 day free trial from Watchfire
Info-Tech Research Group
A specialist in small and medium-sized businesses, Info-Tech offers a different perspective than research houses that focus on the Fortune 1000.
MORE SECURITY SITES WE LIKE
Enterprise Authentication – Don’t Break the Bank
Free white paper on low cost strong enterprise multifactor authentication.
Email Record Mgmt, Archiving & Compliance Solutions
Next Generation of Messaging Solutions. Knowledge based email mgmt solution for corporate messaging!
Anti Spam/Virus for Exchange Server 2000/2003/2007
SPAMfighter for Exchange Servers is the easy-to-use spam and virus filter. Try it free for 30 days
Identity Management Featuring Leading Analyst Firm
In this video presentation, learn how identity management is helping companies meet their business initiatives by driving new online revenue opportunities, securely extending businesses beyond four walls, and helping corporations to mitigate risk
Internet Blocking and Monitoring
Control employees' Web access with reliable blocking & monitoring software. 30-Day Trial.
BUY A LINK NOW
Evil Bits
BY JOHN SAWYER
Doctor's Security: Off the Charts
JULY 23, 2008