Oracle Advisory: Analyst Concerns Over Patch Risk and Vulnerability Details
Oracle's refusal to get specific about the vulnerabilities addressed by a recent patch increase the risk to customers, a pair of Gartner analysts alleged Thursday. . . .
We have thousands of posts on a wide variety of open source and security topics, conveniently organized for searching or just browsing.
Oracle's refusal to get specific about the vulnerabilities addressed by a recent patch increase the risk to customers, a pair of Gartner analysts alleged Thursday. . . .
The world's tenth-largest company, and second-largest oil company, chose a Linux-based PIN-pad entry device (PED) for its UK and Ireland gas stations. Shell selected Trintech's Smart 5000 PED because the hybrid card reader supports both magnetic swipe/signature authentication and the new generation of chip-and-PIN smart cards. . . .
Fresh off record third-quarter growth, Juniper Networks on Wednesday outlined its strategy for the next 12 months, including plans to move to integrated security and to secure the Infranet, a profitable public IP network. . . .
Guardian Digital, Inc., the world's premier provider of open source security solutions, today announced the launch of a new initiative aimed at helping companies assess their network-readiness in meeting Sarbanes-Oxley (SOX) legislation requirements. With the first deadline of November 15th fast approaching, Guardian Digital is seeking to raise awareness among corporate IT administrators as to the specific network security requirements of the Sarbanes-Oxley act through its "Compliance-Readiness Initiative." . . .
Cisco Systems Wednesday unveiled a line of enterprise-grade multi-band wireless access points that include beefed up security. It also said it is adding intrusion detection capabilities for its entire Structured Wireless-Aware Network (SWAN) wireless LAN framework. . . .
Nokia has announced the newest version of its SSL VPN, Nokia Secure Access System (SAS), which includes a new Secure Connector feature that gives remote users secure network-level access, including access to business applications, data, and network services. . . .
Saying that they're fed up with some security vendors claiming that their products protect against application-level attacks, a group of application-firewall vendors on Tuesday will issue a challenge to Check Point Software Technologies Ltd., Symantec Corp. and others to prove that their offerings are truly capable of stopping such attacks. . . .
Secure Software announces the availability of CodeAssure(TM), a product suite for software developers and security professionals to pre-emptively find, prioritize and fix security flaws before they result in catastrophic breaches. . . .
Countering the latest salvo of Microsoft's Get the Facts campaign against open-source software, Novell this week launched a Web site devoted to "unbending the truth" about Linux in the enterprise. . . .
Which operating system, Linux or Windows, is cheaper, more secure, and lower risk? Countless hours have been spent debating the question, and last week, Microsoft CEO Steve Ballmer sparked the argument again. In a letter E-mailed to customers, Ballmer contended that a growing body of data proves that Windows beats its open-source competitor on all three fronts. . . .
Messaging security vendor CipherTrust Inc. on Monday released a new component of its IronMail appliances designed to stop spam messages before they get to customers' networks. . . .
Cloudmark, best known for its spam-fighting add-in for Microsoft Outlook, has added fraud protection to its products' talents, and renamed the well-known desktop client from SpamNet to SafetyBar. . . .
Computer Associates International, Inc. has announced CA Wireless Site Management 4.0 (WSM), a management product for wired and wireless network infrastructures intended to reduce the security risks of Wi-Fi by identifying unauthorized devices and access points. . . .
We are pleased to announce the official release of OpenBSD 3.6. This is our 16th release on CD-ROM (and 17th via FTP). We remain proud of OpenBSD's record of eight years with only a single remote hole in the default install. As in our previous releases, 3.6 provides significant improvements, including new features, in nearly all areas of the system: . . .
Trusted Computer Solutions is branching out from its Solaris roots with a secure version of Linux, due out in spring 2005. The software company, also called TCS, is currently testing the secure version of Linux, which will provide its customers with an alternative to Sun Microsystems' Trusted Solaris operating system for running the TCS product line. . . .
On Tuesday this week Microsoft jolted its customers with 10 new security bulletins and a re-release of a previous bulletin. Seven of the new bulletins were ranked as "critical" by the software vendor, while three were ranked "important." . . .
Firetrust Limited, provider of award-winning anti-spam and e-mail security solutions, today introduced Firetrust Encrypt 1.0, a powerful encryption software that allows consumers and businesses to protect sensitive information, such as financial, medical or other personal information, when sending e-mail. . . .
Effective security testing of new IT products is constrained by staff shortages, inadequate equipment and crunched time--in short, by a scarcity of resources. But even with all these hurdles, security testing can--and should--be done and done well. . . .
In a move it expects will allay the concerns of enterprise customers, T-Mobile is introducing strong, 802.1x-based authentication and encryption across its network of 4,700 hot spots. . . .
"There's a lot of good stuff in Pd [Palladium], and a lot I like about it. There's also a lot I don't like and am scared of. My fear is that Pd will lead us down a road where our computers are no longer our computers, but are instead owned by a variety of factions and companies all looking for a piece of our wallet. To the extent that Pd facilitates that reality. . . .