Microsoft’s Next Move for Windows – Samara Lynn

Microsoft has bounced back into good grace from Windows Vista with its latest release of its operating system, Windows 7.  Many Windows-based users have adopted Windows 7, either upgrading from Windows XP or scraping Vista.  In an interesting article titled, “Will Windows 8 Be A Business-Only OS?” from PC Mag, Samara Lynn discussing Microsoft’s potential next move.

http://www.pcmag.com/article2/0,2817,2366282,00.asp

Internal IT Security Threat

Internal users continue to be the torn in system and security administrator’s side. This is the case for many reasons. One, they have knowledge of the networking recourses. Two, they have credentials to access various systems on the network and third, most security controls defend against external entities as compared to internal users. According to the Computer Security Institute (CSI), approximately 80 percent of network misuse incidents originate from inside the network.

Security Administrators should apply the “Defense in Depth” security model when it comes to protecting the network. This mean network firewalls, IDS, HIDS, host-based firewalls, patch management, security policies and vulnerability scanning.

 

 

Black Hat USA 2010

Black Hat USA 2010 is the technical security event for members of the security industry to gather and learn about the cutting-edge research – that address challenges to today’s senior-level IT professional. This year’s event will be hosted at Caesars Palace in Las Vegas, Nevada July 24-29th offering: over 70 multi-day training sessions, 32 live tool demonstrations in the new Black Hat Arsenal, and 100+ sessions of presentations from security industry elite. To learn more and register for the event visit: www.blackhat.com.

Adobe Systems Patches 17 Critical Security Holes

On June 29, Adobe Systems plugged 17 critical security holes affecting Adobe Reader and Acrobat including a patch for a zero-day vulnerability that impacted many of their other products, on multiple operating systems such as Windows, Mac and Linux.  The new versions of Acrobat and Reader are 8.2.3 and 9.3.3, but Adobe strongly recommends using the version 9.x products. 

A zero-day attack or threat is a computer threat that tries to exploit computer application vulnerabilities that are unknown to others or undisclosed to the software developer.

Adobe products should automatically update when your system is on and connected to the Internet, but SecurityOrb.com ask that you verify and initiate the process if it has not already occurred.

For more information on this topic, please refer to the following links:

Russian Spies used Steganography

The FBI arrested 11 suspected Russian spies for passing U.S. information to Russian spy agents using wireless networking and steganography.

Steganography is the process of writing hidden messages in such a way that no one, apart from the sender and intended recipient, knows of the existence of the message, a form of security through obscurity.  The message can be hidden in pictures, text and many different forms.

For more on this story please refer to the links below:

The Economist – http://www.economist.com/node/16486569?story_id=16486569

Wired – http://www.wired.com/dangerroom/2010/06/alleged-spies-hid-secret-messages-on-public-websites/

Dark Reading – http://darkreading.com/insiderthreat/security/encryption/showArticle.jhtml?articleID=225701866

Linux Security – http://www.linuxsecurity.com/content/view/152728/169/