Site Sponsor:

mcafee_logo.gif
line

Now Available:

Featured Resource:

line

Newsletter

Email Address:


line

Ask the Expert

Have a question for our resident expert? Email your questions to Dan or post a comment to the blog.

May 13, 2009

Critical Patch Available for Microsoft PowerPoint

Microsoft has released a patch for a zero-day PowerPoint vulnerability that has been exploited in the wild. A Windows version of the patch is available, the Mac version should be out soon.

 
Continue reading Critical Patch Available for Microsoft PowerPoint...

May 12, 2009

EU Proposing Software Liability Protections; Malpractice May Be Better Model

EU Commissioners are proposing stronger consumer protections for software security and efficacy. Software industry advocates want no part of this. The EU was ahead of the US on privacy protections which are common place today so it is worth watching how this story unfolds.

 
Continue reading EU Proposing Software Liability Protections; Malpractice May Be Better Model...

May 7, 2009

US Missle Defense Details Found on Computer Purchased from eBay

A collaboration of researchers in US, UK and Austrailia trying to raise awareness risks of improperly disposing personal data found their poster child for the year: a computer with details on a US anti-missile defense system.

 
Continue reading US Missle Defense Details Found on Computer Purchased from eBay...

SQL Injection Attacks in Content Management Systems

Web sites built using content management systems may be vulnerable to SQL injection attacks, the trick is to find them.

 
Continue reading SQL Injection Attacks in Content Management Systems...

Hacking Air Traffic Control Systems

The Wall Street Journal is reporting air traffic control networks have been attacked on multiple occasions in the past several years. The FAA doesn't agree with all the findings of the Transportation Department's inspector general who issued the report but the undisputed facts are troubling enough.

 
Continue reading Hacking Air Traffic Control Systems...

May 5, 2009

Researchers Hijack Botnet Gain Insight to Bots and Their Victims

Researchers from the Security Group at the UC Santa Barbara Computer Science department hijacked the Torpig botnet for 10 days. In that time the found what you'd expect (some users are very lax with security) and some things not so expected (how difficult it is to notify victims).

 
Continue reading Researchers Hijack Botnet Gain Insight to Bots and Their Victims...

May 4, 2009

Supreme Court Justice: Publishing Cybersnooping Results is Free Speech

I've come to expect more from Supreme Court justices than I found in some recent comments by Justice Scalia regarding online privacy.

 
Continue reading Supreme Court Justice: Publishing Cybersnooping Results is Free Speech...

May 1, 2009

Facebook Phishing Continues

The last couple of days have not been good ones for Facebook users getting phishing lures with messages like "check this out" linking to fake login pages. The attacks continued yesterday.

 
Continue reading Facebook Phishing Continues...

Making Windows XP More Secure

One of the major reasons advanced for upgrading from Windows XP to Vista is that the newer operating system is more secure. XP users running the OS on netbooks, older hardware, or just unwilling to put up with Vista's quirks are not completely out of luck.

 
Continue reading Making Windows XP More Secure...

April 30, 2009

Latest Firefox Release Fixes Security Vulnerability, Stability Issue

Last week's release of Firefox 3.0.9 was quickly followed up by release of version 3.0.10 with fixes for a security flaw and a stability issue.

 
Continue reading Latest Firefox Release Fixes Security Vulnerability, Stability Issue...

line

Dan Sullivan's Bio:

Dan Sullivan is a systems architect with 20 years of IT experience that includes engagements in enterprise security, application design, and systems architecture. His experience includes a broad range of industries, including financial services, manufacturing, government, retail, gas and oil production, power generation, and education. Dan’s security-related project work has ranged from requirements analysis for enterprise information security to designing and implementing security for database applications and enterprise portals. Dan has written about information security and other enterprise information management topics for Business Security Advisor, DM Review, Intelligent Enterprise, and E-Business Advisor. You can contact Dan at: dan_sullivan@realtimepublishers.net