Close
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Logo
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Home Applications
    • Applications
    • Cloud
    • Cybersecurity
    • Development

    Google, Adobe, Citi, RSA Lead Week’s Security News

    Written by

    Fahmida Y. Rashid
    Published June 12, 2011
    Share
    Facebook
    Twitter
    Linkedin

      eWEEK content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More.

      RSA Security made waves this week when it offered to replace SecurID tokens for a certain subset of its customers in the wake of the March data breach where attackers apparently stole intellectual property relating to the company’s two-factor authentication technology.

      It claimed that attackers were interested in only a certain segment of the industry, so only those companies would qualify for the replacement.

      RSA admitted that defense contractor Lockheed Martin was attacked using the stolen information from March. The problem is, the company still wouldn’t admit what was stolen, so customers are still left unsure of how protected they are.

      LulzSec and other hacking groups continued to have fun, breaching various Sony sites, but LulzSec expanded its focus to other sites as well, including Nintendo and a security organization with ties to the United States Federal Bureau of Investigation.

      Against the backdrop of all these minor data breaches, financial giant Citigroup sent shockwaves through the banking industry when it disclosed that cyber-criminals had breached its customer Web portal in May and compromised sensitive data belonging to about 210,000 customers. While credit card numbers were exposed, the expiration dates and security codes were not. That breach wasn’t for fun, or -lulz.’

      Technology professionals around the country descended on New York City for Cloud Expo this week, and many of them were focused on security. As more organizations move their services and applications to the cloud, they are increasingly becoming worried about cloud security issues. Nowhere is that more evident as researchers uncover actual systems in Amazon Web Services serving up banking malware and people wonder how secure Google Wallet really is.

      Google continued investigating the attack on Gmail, alleged to have originated in China. Needless to say, China vehemently denied all allegations. In more positive security news, Google shelled out nearly $10,000 to developers through its bug bounty program for Google Chrome.

      Oracle pushed out a fairly large update for Java 6, addressing 17 vulnerabilities. They were all rated critical as attackers could exploit them to remotely execute code, the company said. The size of the update prompted many security researchers to start wondering whether most end-users even needed Java, especially considering most Websites nowadays use Flash to play video.

      Not that Flash is any more secure, considering Adobe keeps having to issue out-of-band updates to close zero day vulnerabilities. The latest one allowed attackers to inject code into the user’s browser, such as in the settings of the victim’s Webmail accounts. An exploit in the wild was using this vulnerability to compromise user email accounts without even needing a password.

      Next week, Microsoft will roll out 16 security bulletins for June’s Patch Tuesday, but address “only” 34 vulnerabilities. While not as monstrous as April, which had 64, the update is still expected to be pretty extensive, addressing flaws in Microsoft Excel, all versions of Windows and all supported versions of Internet Explorer, from IE 6 to IE 9.

      On the same day, Adobe is also expected to release its scheduled quarterly updates for Acrobat and Reader.

      Fahmida Y. Rashid
      Fahmida Y. Rashid

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      MOST POPULAR ARTICLES

      Artificial Intelligence

      9 Best AI 3D Generators You Need...

      Sam Rinko - June 25, 2024 0
      AI 3D Generators are powerful tools for many different industries. Discover the best AI 3D Generators, and learn which is best for your specific use case.
      Read more
      Cloud

      RingCentral Expands Its Collaboration Platform

      Zeus Kerravala - November 22, 2023 0
      RingCentral adds AI-enabled contact center and hybrid event products to its suite of collaboration services.
      Read more
      Artificial Intelligence

      8 Best AI Data Analytics Software &...

      Aminu Abdullahi - January 18, 2024 0
      Learn the top AI data analytics software to use. Compare AI data analytics solutions & features to make the best choice for your business.
      Read more
      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Video

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2024 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.

      ×