Brian Prince

IDC: DLP Adoption to Continue as Businesses Fear Insider Threat

New research suggests the market for data loss prevention products has some bright days ahead. In a survey sponsored by Dimension Data and performed by analyst firm IDC, 57 percent of the 400 organizations that participated in the study plan to invest in data loss prevention (DLP) during the next 12 months. The survey can […]

Federal Investigation Nets 100 in Phishing Scheme

Authorities in the United States and Egypt have charged 100 people with participating in a sophisticated phishing ring authorities say defrauded two banks in the United States. Early today, police in cities across the United States arrested 33 of the 53 suspects named in a federal indictment in Los Angeles last week. Overseas, Egyptian authorities […]

Visa Releases Encryption Guidelines for Merchants

Visa released a document this week with best practices for end-to-end encryption in a bid to help early adopters and encryption vendors while industry standards are being developed. The document, available here, is meant to give organizations something to think about as they evaluate or deploy data field encryption. Essentially a stopgap until the American […]

Database Security Takes Proper Planning

In an age of high-profile data breaches, database security has started to get more attention. SQL injection attacks were at the root of the breaches at Hannaford Bros. and Heartland Payment Systems, while others such as the one affecting LendingTree last year were caused by malicious insiders. All in all, the convergence of compliance requirements […]

Attackers Improving Search Engine Optimization to Push Rogue Security Tools

Poisoning search engines results to trick users into visiting malicious sites is not a new tactic. But as an analysis by AVG Technologies shows, it can be very effective. Examining a rogue spyware campaign that sought to take advantage of interest in the earthquake in Samoa last week, AVG determined that it took just 24 […]

Fighting Phishers in Light of Gmail, Yahoo, Hotmail Password Leaks

A day after reports surfaced that 10,000 Microsoft Windows Live Hotmail user credentials had been stolen and posted online, the BBC has reported seeing a list of some 20,000 e-mail accounts and passwords belonging to users of Google Gmail, AOL, Yahoo Mail, Comcast and Earthlink. In both cases, officials laid the blame for the data […]

Microsoft Blames Hotmail Data Leak on Possible Phishing Attack

Officials at Microsoft confirmed that thousands users of Windows Live Hotmail had their user credentials posted on a third-party site. According to Microsoft, the username and password information was likely swiped in a phishing scheme, and the company is currently working with customers who were affected. The situation appears to have been first reported by […]

RIM Plugs BlackBerry Security Hole

Research In Motion has plugged a security hole that left BlackBerry users open to phishing attacks. The bug lies in the BlackBerry browser dialog box, which provides information about Website domain names and their associated certificates. While the dialog box informs users when there is a mismatch between site domain names and domain names indicated […]

Facebook Attackers May Have Cracked CAPTCHA

Researchers at AVG Technologies may have uncovered a scheme by attackers to circumvent the CAPTCHA protections on Facebook to create fraudulent accounts. According to Roger Thompson, chief of research at AVG, the firm discovered a number of Facebook pages whose creation appears to have been automated by attackers. The bogus pages were being used to […]

Department of Homeland Security on Lookout for IT Security Pros

The Department of Homeland Security has gotten the OK to hire as many as 1,000 new IT pros during the next three years to bolster cyber-security. DHS Secretary Janet Napolitano made the announcement Oct. 1 during remarks tied to the start of National Cybersecurity Awareness Month. The new hiring authority is the result of a […]