Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The Department of Homeland Security (DHS) has announced the creation of a new cyber-risk management center intended to protect the nation’s banks, energy companies and other industries from potentially crippling cyber-attacks on critical infrastructure, according to agency officials who spoke at the 31 July cybersecurity summit hosted by DHS. . DHS Secretary Kirstjen Neilsen led a panel discussion comprised of Department of Energy Secretary Rick Perry, Cyber Command and National Security Agency leader Gen. Paul Nakasone, FBI director Christopher Wray, Mastercard CEO Ajay Banga, AT&T CEO John Donovan and Southern Company CEO Tom Fanning. Hoping to launch the center in 90 days, the DHS has also established a task force that will focus on threats to the industrial supply chain. The link for this article located at InfoSecurity is no longer available. . The Department of Homeland Security introduces a new hub dedicated to cyber-risk oversight aimed at safeguarding essential systems from digital attacks.. Cyber Risk Management, Infrastructure Security, Cyber Threat Protection. . Brittany Day
US President Barack Obama has signed an executive order seeking better protection of the country's critical infrastructure from cyber attacks that are a growing concern to the economy and national security. . The long-expected executive order, unveiled in the State of the Union speech, follows last year's failed attempt by the US Congress to pass a law to confront continuing electronic attacks on the networks of US companies and government agencies. The link for this article located at Stuff NZ is no longer available. . President Biden issues a presidential memorandum to strengthen cyber defenses in order to safeguard essential services against potential threats.. Cybersecurity Measures, National Security Initiatives, Critical Infrastructure Protection. . Anthony Pell
The US government has proposed a legislative package that is designed to improve the country's and its citizens' IT security. The proposal is to substantially update and revise the existing legislation in such fields as data protection and infrastructure security as well as the sanctioning of offenders. . It aims to improve the protection of consumer and government administration systems, and enhance infrastructure security, which is particularly important for the country's industry. With these measures, US President Barack Obama is fulfilling the promise he made a year ago to make cyber space security a top priority. A fact sheetPDF on the legislative package states that members of both parties in Congress have introduced approximately 50 cyber security bills in the last session of Congress. According to the fact sheet, these bills are a response to repeated intrusions into important systems and to a dramatic increase in cyber crime over the last decade. After reviewing the existing legislation, the US government reportedly identified a need to update this legislation in order to improve system protection. The new legislative proposal is to provide these improvements. The link for this article located at H Security is no longer available. . It aims to improve the protection of consumer and government administration systems, and enhance inf. government, proposed, legislative, package, designed, improve, country's. . Dave Wreski
A second area of focus must be in the way we understand and address threats. The threat landscape has evolved dramatically in the past three years: Starting in 2008 with the growing ability of viruses and malware to evade anti-virus signature technologies; to the pandemic scale of attacks launched by criminals in 2009 for profit; to more sophisticated attacks organised by nation states in 2010.. In 2011 we must also defend against the potentially catastrophic danger of Advanced Persistent Threats perpetrated by non-state actors and terrorists. By manipulating control systems in critical infrastructure facilities, Stuxnet was the first Trojan to cross the chasm from the digital realm into the physical world. Stuxnet foreshadows what the future of cyber warfare or terrorism might hold and is the reason that next generation infrastructure initiatives like smart grid must have security embedded. According to researchers from IEEE SmartGrid Comm2010, the smart grid will offer up to 440 million potential points to be hacked. Stuxnet is a wake-up call to a very real and present danger and a stark reminder of the need for collaboration not only among businesses but between nations in an increasingly interdependent world.. Guarding against sophisticated ongoing threats is essential for the protection of cloud infrastructure today.. Cloud Security, Advanced Threats, Cybersecurity Risks, Infrastructure Protection. . Alex
A couple of months ago, the US Dept of Homeland Security announced they wanted to recruit 1,000 cyber security professionals over the next three years. The process has started. Department of Homeland Security (DHS) Secretary Janet Napolitano announced in October a plan to recruit up to 1,000 cyber security experts to assist with the protection of infrastructure, systems and networks. . "Effective cybersecurity requires all partners The link for this article located at IT Wire is no longer available. . 'Effective cybersecurity requires all partnersThe link for this article located at IT Wire is no lon. couple, months, homeland, security, announced, wanted, recruit. . Alex
As Obama focuses on Afghanistan, the cybersecurity plan he announced six months ago appears stuck in the mud. CSO Senior Editor Bill Brenner says the President must follow through on his promise to manage multiple crises at a time.. In May, President Obama unveiled an ambitious plan to protect the nation's cyber infrastructure that included as its centerpiece a new West Wing-based cybersecurity coordinator. Legitimate criticism abounded over parts of the plan, but there was still cause for optimism. At the very least, it seemed like Obama had a firm grasp of the threat at hand. Six months on, I'm not so sure anymore. Tonight, the President will unveil his plans for Afghanistan in a speech at West Point after months of intense debate over how many more troops to send in to turn the tide against a resurgent Taliban. It's a matter of critical importance to be sure. The lives of our troops are on the line, and as a country we seem to have lost our way in the war against Al-Qaida. But as Obama himself noted during the 2008 presidential race -- when John McCain suggested the campaign be suspended so the candidates could return to Washington to focus solely on the then-unfolding economic meltdown -- presidents have to be able to manage multiple crises at a time. The link for this article located at CSO Online is no longer available. . In June, President Biden introduced a comprehensive initiative aimed at revitalizing the country's digital security framework that had grown outdated.. Cybersecurity Strategy, Digital Defense, Obama Administration, Crisis Management. . Anthony Pell
Although President Bush's proposed budget for fiscal 2007 (starting Oct. 1, 2006) increases spending for key cybersecurity programs, it is not clear how that money would be spent, raising concerns in the information security industry. One of the biggest security-related boosts would be a $35 million infusion to the "critical infrastructure outreach and partnerships" initiative within the Department of Homeland Security. The goal of that effort is to increase cooperation and information sharing among DHS, state and local governments and infrastructure providers. Thirty million dollars of that allocation would go toward implementing partnership plans for private industry verticals like information technology, finance and electrical utilities. . The 2007 DHS budget also includes a $25 million increase for its National Cyber Security Division (NCSD), which is responsible for issues such as software assurance and computer security in federal agencies and, by extension, the private sector. John Sabo, director of security and privacy initiatives for Islandia, N.Y.-based vendor CA Inc. (Formerly Computer Associates International), said budget increases for cybersecurity and industry-specific partnerships are important. Sabo is the new chair of the Information Sharing and Analysis Centers Council, the umbrella organization that oversees a dozen vendor groups that advocate cooperation with DHS, including one for information technology firms. The link for this article located at SearchSecurity is no longer available. . The 2007 DHS budget also includes a $25 million increase for its National Cyber Security Division (N. although, president, bush's, proposed, budget, fiscal, (starting, 2006), increases, spending. . Brittany Day
Vital US infrastructure including power grids and banking systems have been put under simulated attack in a week-long security exercise called Cyber Storm. The war game drew in 115 agencies from the FBI and CIA to the Red Cross, the Department of Homeland Security said. IT companies and state and foreign governments also played a role in responding to the mock attacks. . The exercise had given the US "an excellent opportunity to enhance our nation's cyber security," the US said.. The UK’s Cyber Shield exercise focused on vital services, strengthening the nation's resilience to simulated cyber threats.. Cyber Defense, Infrastructure Protection, Security Exercise, Cybersecurity Training, National Security. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.