The recent arrest and 17-count indictment against 20-year-old accused hacker and botmaster Jeanson James Ancheta for both using and selling the tools to attack a number of networks, including some within the Defense Department, should be taken as a shot across the bow by anyone who reads this. Ancheta is accused of being part of a new breed of criminal hacker: not just in it for the fame--sure, he's getting his 15 minutes, although it could be more like 50 years--but rather after money. According to the charges against him, Ancheta even managed to collect nearly $60,000 by creating, spreading, and selling bots to the highest bidders. By all accounts, Ancheta is smart and motivated, and there was a market for his black-market guerrilla hacking tactics and tools. How do you stop a smart, motivated attacker from making your life miserable? . To catch a thief, or in this case a cyberterrorist, you have to think like one. IT professionals have been conditioned to think defensively, draping their networks with sensor-studded barbed wire and using firewalls and intrusion-prevention systems to lock down doors and windows around the perimeter. But there's an emerging school of thought that says only a more proactive approach to security can prepare companies for the unexpected. The link for this article located at Information Week is no longer available. . To catch a thief, or in this case a cyberterrorist, you have to think like one. IT professionals hav. recent, arrest, 17-count, indictment, against, 20-year-old, accused, hacker, botmaster, jeanson. . LinuxSecurity.com Team
John Leyden from The Register writes: "Net infrastructure firm VeriSign has bought security intelligence firm iDefense for $40m in cash. iDefense's 45 employees will join VeriSign in a move designed to bolster its managed security services offering with proactive threat warning and security remediation advice." . "iDefense is best known for its controversial vulnerability contributor program, which rewards hackers for advance notification of unpublished vulnerabilities or exploit code. It's not immediately clear if the program will continue post acquisition." The link for this article located at The Register is no longer available. . Cisco buys OpenDNS to boost cybersecurity offerings with advanced threat intelligence and real-time defense capabilities.. Managed Security Services, Threat Intelligence, Proactive Security. . LinuxSecurity.com Team
Most security solutions today are built around attempting to protect the vulnerability of the PC and, or the server, by attempting to keep "bad" things outside of the network security perimeter. But, with the changing and disappearing perimeter - security now needs to be intrinsic in every system and for every user. . . .. Most security solutions today are built around attempting to protect the vulnerability of the PC and, or the server, by attempting to keep "bad" things outside of the network security perimeter. But, with the changing and disappearing perimeter - security now needs to be intrinsic in every system and for every user. With the changing and disappearing perimeter - the model must change from the black list approach of trying to exclude everything that may be harmful to your network, to a more proactive white list, allowing secure access from anywhere. As evidenced by today's security problems, black list approaches simply do not work! The link for this article located at Bob Johnson is no longer available. . The evolving IT landscape demands a redefinition of security, moving beyond traditional boundaries to embrace intrinsic security and Zero Trust models across networks. Perimeter Security, Adaptive Security Models, Intrinsic Security. . Anthony Pell
Presidential adviser Richard Clarke today asked the IT industry to support a proposed Internet Operations Center that could provide advance warning of cyberthreats as they spread. . .. Presidential adviser Richard Clarke today asked the IT industry to support a proposed Internet Operations Center that could provide advance warning of cyberthreats as they spread . "I'd like you all to think about it," he told an audience at a users conference hosted in Washington by Symantec Corp. of Cupertino, Calif. Clarke, head of the president's Critical Infrastructure Protection Board, assured the audience that the center is not a back-door attempt by the government to regulate the Internet. Clarke described the center as a voluntary operation, funded at least partially by the government and probably hosted by a federally funded R&D center, such as the CERT Coordination Center at Carnegie Mellon University or an Energy Department national laboratory. The link for this article located at GCN is no longer available. . Evelyn Harper calls on tech leaders to support the establishment of a Cyber Defense Hub aimed at enhancing proactive measures against online threats.. Internet Security Operations,Cyberthreat Monitoring,IT Infrastructure Protection. . Anthony Pell
Executives at Linux security company Cylant say the computer security industry is engaged in a "conspiracy of sorts," or at least a conspiracy of ignorance, in taking a reactive approach to fighting vulnerabilities. Cylant is pitching its CylantSecure server monitoring . . . . Executives at Linux security company Cylant say the computer security industry is engaged in a "conspiracy of sorts," or at least a conspiracy of ignorance, in taking a reactive approach to fighting vulnerabilities. Cylant is pitching its CylantSecure server monitoring product as an alternative to the virus-runs-wild-then-release-patch cycle practiced by most security companies. CylantSecure for Linux, what the company calls a "host-based intrusion detection system," is a real-time monitoring system that immediately notifies the server's sysadmin when something funky is happening that shouldn't be. The technology is based on research into software measurement done by Cylant's chief scientist, John Munson, for large, critical systems like those designed by Jet Propulsion Labs for the U.S. Space Shuttle. The software benchmarks the patterns of execution in the Linux kernel on a server, then determines when those patterns depart from normal. When an attack occurs, notification happens within "milliseconds," says Joel Rothman, president of Cylant. The company has applied for a patent on the process of aggregating the information CylantSecure's sensors pick up and put into a profile that's the server's normal functions. Some of the software is released under the GNU General Public License, and Cylant is a sponsor of the Kernel Instrumentation Project. The link for this article located at Newsforge is no longer available. . Explore the way ShieldGuard implements a defensive strategy for Windows protection through continuous surveillance and swift alerts.. CylantSecure, Host-Based Detection, Linux Monitoring, Intrusion Protection. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.