Dennis Fisher

Pair of Cisco Apps Are Open to Attack

Cisco Systems Inc. on Wednesday warned customers that the software application that manages its wireless LAN products and another one used to monitor services in data centers contain unchangeable default passwords, opening them up to compromise by attackers. The company said both its Wireless LAN Solution Engine and its Hosting Solutions Engine ship with default […]

NAI Antivirus Apps Tap ProtectionPilot System

Network Associates Inc. is moving to strengthen its position in the rapidly growing midmarket with the introduction of two product suites designed for small and midsize businesses. Both McAfee Active VirusScan Small Business Edition and McAfee Active Virus Defense Small Business Edition include the companys new ProtectionPilot technology, which is designed to help administrators deploy […]

ISVS Seek Federal Security Help

After years of imploring government officials to stay out of their way, some security industry executives have reversed their position and are asking for Washingtons input to improve software quality and network security. How serious they would be about following government suggestions or rules, however, is in doubt, experts say. The accession is part of […]

Volunteer Security Pros Launch Free Vulnerability Database

A group of volunteer security professionals has compiled what is likely one of the larger freely accessible vulnerability databases on the Internet. The OSVDB (Open Source Vulnerability Database) is meant to serve as a central collection point for information on any and all security vulnerabilities. Despite what you might assume from the name, the projects […]

MS, Sun Deal Could Aid Federated ID Efforts

The long and bitter relationship between Microsoft Corp. and Sun Microsystems Inc. entered a new chapter Friday when the two companies announced a $1.6 billion settlement of Suns antitrust and patent issues with its chief rival. /zimages/1/28571.gifClick here to read about the details of the settlement. The agreement contemplates the two companies cooperating on a […]

National Security Spec Advances

A group of technology companies and government agencies this week will unveil an open specification for securely sharing sensitive information across heterogeneous networks in times of crisis. The framework already has been implemented in some locations and could eventually be rolled out internationally, giving participants a trustworthy channel for exchanging data with peers, according to […]

Viruses Tag Along

If theres one thing that anti-virus software makers fear—aside from a mass change of heart by the virus writers—its the creation of a virus-delivery mechanism that evades detection by their signature-based products. The development of detection files for every new virus is the meat and potatoes of what anti-virus vendors do. Because each virus is […]

New Spawn of Bagle Worm Unleashed

Yet another version of the Bagle worm is on the loose and is already causing trouble in parts of Europe. Bagle.U appeared early Friday morning and has begun spreading quickly, even though it contains none of the social engineering tricks that Bagles author has used to help previous versions succeed. This variant arrives in an […]

New Worms Stretching Across Web

Two new low-threat worms are making the rounds on the Internet Thursday, continuing the plague of malware that began in January and has shown no signs whatsoever of abating. Of the two worms, known as Mywife and Snapper, the former appears to be the more worrisome and have the greater potential for spreading widely, security […]

Sarvega Appliance Inspects XML Traffic

Until recently, the term “XML security” essentially has been used interchangeably with “Web services security.” Because XML is the basis for Web services, many vendors and enterprises have treated the two as one. But one vendor, Sarvega Inc., is hoping to change that perception with its Guardian Gateway XML security appliance, which it unveiled this […]