Google's dramatic shift to a seven-day grace period before disclosing actively exploited zero-day vulnerabilities in software has drawn both praise and derision from security experts.. Security engineers Chris Evans and Drew Hintz said on Wednesday in the Google Online Security Blog that the company was dropping the previous 60-day window. The link for this article located at CSO Online is no longer available. . Security engineers Chris Evans and Drew Hintz said on Wednesday in the Google Online Security Blog t. google's, dramatic, shift, seven-day, grace, period, disclosing, actively, exploited, zero-day. . LinuxSecurity.com Team
The middle-aged G-men who wear crisp suits and consort with teenage hackers sporting purple hair can make the two conferences that will converge in Las Vegas this week look like a scene from a science-fiction movie. In fact, the gatherings are the most important in the world of computer security, drawing a "who's who" list of leaders from companies such as Microsoft Corp. and Cisco Systems Inc., government agencies including the FBI and underground groups that act as a neighborhood watch for the Internet. The motley band of researchers, federal agents and cyberhobbyists come to learn how to fortify networks against the latest attacks, share research on new vulnerabilities and recruit people in a field where competition for talent is growing increasingly fierce. . . In shadowy cafes, they exchange secrets over lattes, blending old world charm with youthful chaos, creating a captivating juxtaposition of authority and rebellion. Cybersecurity Events,Hacker Conventions,Network Security,Las Vegas Conferences. . LinuxSecurity.com Team
You are not as safe surfing the Web this year as you were last year, according to a recent consensus of online security experts. To help keep track of problem, online encryption firm RSA (Quote, Company Info) Monday launched its "Internet Insecurity Index" -- a simple one-to-ten scale that measures how secure electronic data is each year. Given the amount of attacks, Jim Bidzos Chairman of Conferences currently ranks 2003 at about a 6 and a half. . . .. You are not as safe surfing the Web this year as you were last year, according to a recent consensus of online security experts. To help keep track of problem, online encryption firm RSA (Quote, Company Info) Monday launched its "Internet Insecurity Index" -- a simple one-to-ten scale that measures how secure electronic data is each year. Given the amount of attacks, Jim Bidzos Chairman of Conferences currently ranks 2003 at about a 6 and a half. "We have gone from a 5 to 6-plus in the last 12 months," Bidzos said to attendees at the RSA Security conference here Monday. The four-day forum is designed as a clearinghouse of information about making the Internet more secure. "Basically, nothing is safe," he said. The link for this article located at Silicon Valley is no longer available. . Explore the insights provided by RSA's Web Security Index that highlights a worrying trend in online safety when measured against prior years.. Internet Security Index, Data Protection, Online Encryption. . LinuxSecurity.com Team
The carefully coiffed men wearing suspiciously shiny shoes are at every major computer security convention. They are there to remind hackers that law enforcement is always interested in their activities. They are also there to encourage security experts to become . . . . The carefully coiffed men wearing suspiciously shiny shoes are at every major computer security convention. They are there to remind hackers that law enforcement is always interested in their activities. They are also there to encourage security experts to become special agents. But after responding to the agency's appeals for computer security experts, aspiring G-men hackers sadly say that their names will never appear on the FBI's Most Wanted Job Applicants list. Although their technical abilities should allow them to qualify easily as agents, their ethics, age and/or physical fitness levels excluded them. Mike Sweeny, fueled by renewed patriotism after Sept. 11, wanted to offer his 20-plus years of experience in computer security to the FBI. But he was disheartened by job requirements that required him to have a college degree, be under 37 years old, morally irreproachable ... and physically fit. The link for this article located at Wired is no longer available. . The carefully coiffed men wearing suspiciously shiny shoes are at every major computer security conv. carefully, coiffed, wearing, suspiciously, shiny, shoes, every, major, computer, security. . Anthony Pell
Despite the current emphasis on security in the IT industry, CIOs and IT managers are still not paying enough attention to the problems facing their organizations, a panel of security experts said Wednesday. "Security is still very much an afterthought," said . . . . Despite the current emphasis on security in the IT industry, CIOs and IT managers are still not paying enough attention to the problems facing their organizations, a panel of security experts said Wednesday. "Security is still very much an afterthought," said Robert Thomas, CEO of Netscreen Technologies Inc., of Sunnyvale, Calif. "It's reactive and not proactive." Thomas' comments came during a keynote panel discussion at the NetWorld+Interop show here that also included representatives from Network Associates Inc., Enterasys Networks and Internet Security Systems Inc. The other panelists echoed Thomas' sentiments, saying that although security currently is getting a lot of attention, the basic infrastructure of the Internet and corporate networks is still fundamentally vulnerable. The link for this article located at eWeek is no longer available. . IT leaders and security professionals continue to overlook essential cybersecurity challenges, experts disclosed at TechSys Conference.. CIO Insights, IT Strategy, Cybersecurity Challenges, Security Negligence. . Anthony Pell
Hacker conventions, such as those being held in Las Vegas this week, are no longer considered the sinister gatherings they once were. If the slot machines get a little screwy this week, casino detectives will have plenty of suspects. Thousands of computer hackers and security experts begin converging in Las Vegas Tuesday for the annual Black Hat Briefings and Def Con convention on computer security.. . .. Hacker conventions, such as those being held in Las Vegas this week, are no longer considered the sinister gatherings they once were. If the slot machines get a little screwy this week, casino detectives will have plenty of suspects. Thousands of computer hackers and security experts begin converging in Las Vegas Tuesday for the annual Black Hat Briefings and Def Con convention on computer security. With individuals and corporations increasingly relying on buggy software and the Internet to manage everything from their finances to their personal health records, incidents of malicious hacking continue to increase. More than 7,000 computer security violations were reported in the first three months of this year, more than in all of 1998, according to the CERT Coordination Center, a security research group at Carnegie-Mellon University in Pittsburgh. . Cybersecurity summits in Vegas underscore rising anxiety surrounding digital safety and escalating hacking occurrences.. Hacker Convention, Cyber Threats, Computer Security, Las Vegas Events. . Anthony Pell
Tired of conferences not living up to your expectations? Then you haven't been to Usenix. In this month's Wizard's Guide to Security, Carole Fennelly reports that Usenix's recent security conference offered interesting and accessible talks -- and a who's who of . . . . Tired of conferences not living up to your expectations? Then you haven't been to Usenix. In this month's Wizard's Guide to Security, Carole Fennelly reports that Usenix's recent security conference offered interesting and accessible talks -- and a who's who of security experts to schmooze with. I wasn't disappointed. In fact, I wondered why I'd waited so long to attend a Usenix conference. It was probably because I felt that I could just read the research papers instead of actually attending, but that's like shunning a concert with backstage passes because you can buy a CD. There's so much more to the live conference than the purely technical presentations. This article describes my view of the conference -- it's by no means a complete picture, as it's impossible for one person to attend every talk. For a complete review of the conference, I urge you to get the November 2000 issue of ;login magazine (a publication of Usenix and SAGE). The link for this article located at SunWorld is no longer available. . Frustrated with events that fall short of their promises? Learn how Usenix sets a new standard!. Usenix Security, Conference Review, Networking Events. . Anthony Pell
Fighting cybercrime is complex and time-consuming. One case can involve a multitude of computer systems, networks, and administrators, and requires the cooperation of all system owners, and sometimes many nations, in order to find the perpetrator. Due to their love of . . . . Fighting cybercrime is complex and time-consuming. One case can involve a multitude of computer systems, networks, and administrators, and requires the cooperation of all system owners, and sometimes many nations, in order to find the perpetrator. Due to their love of technology, their education, training, and experience, it is not uncommon for security industry professionals to be far more qualified and adept at resolving cybercrime than law enforcement. The link for this article located at TEC is no longer available. . Fighting cybercrime is complex and time-consuming. One case can involve a multitude of computer syst. fighting, cybercrime, complex, time-consuming, involve, multitude, computer. . Anthony Pell
Get the latest Linux and open source security news straight to your inbox.