12 Endpoint Security Myths Dispelled
A posting from Dark Reading in there Endpoint Security section: It's been years now since the security pundits have taken up the mantle to dispel the myth that AV alone is enough to protect the typical endpoint. And while that misconception does hang on in certain quarters, to a large degree it has been discussed ad […]
Evernote offers two-factor verification in wake of hack
A posting from NBS News in there Technology Section: Popular media-saving service Evernote has stepped up its security after a recent breach in which users' emails and passwords were leaked. The company is now offering two-factor verification to its premium users to make sure that when someone signs into your account, it's really you. The hack, in March, did not […]
End user security requires layers of tools and training as employees use more devices and apps
A posting from Dark Reading in there Endpoint security section: When Meritrust Credit Union wanted to improve its endpoint security to comply with financial regulations, information security officer Brian Meyer needed to go beyond antivirus. The commonly used endpoint security typically doesn't provide a way of tracking whether employees' devices -- the laptops, tablets and […]
LinkedIn flips the two-factor authentication switch
A posting from Naked Security on LinkedIn authentication: Happy anniversary of getting the bejeezus hacked out of you, LinkedIn! Maybe the timing is just a coincidence, but the career-toned social networking site got savagely hacked on 5 June 2012. Cybercrooks stole about 6.5 million passwords, over 60% of which were cracked within the span of […]
Social Engineering: Tips to Protecting Yourself
In the world of information security, ‘social engineering’ is a term that describes a non-technical way of hacking that relies on the hacker to collect information to bypass normal security controls. It is the art of manipulating users into performing actions or divulging confidential information.
GovSec - The SecurityOrb Show: Interview with Curtis KS Levinson about GovSec
GovSec - The SecurityOrb Show: Interview with Curtis KS Levinson about GovSec
Anatomy of a change - Google announces it will double its SSL key sizes
A posting from Naked Security on Google announces it will double its SSL key sizes: Google just announced that its HTTPS web pages will be ditching 1024-bit RSA keys in favour of 2048 bits. "Pah," I hear you say. "I have one or two questions about that - three questions, in fact." How is this newsworthy when many […]
Twitter launched "Login Verification" feature after the Non-Stop Hijacking of accounts by Pro-Assad Hackers
Twitter launched "Login Verification" feature after the Non-Stop Hijacking of accounts by Pro-Assad Hackers
Google security: You (still) are the weakest link
A posting from Cnet News in there Security and Privacy section: AN FRANCISCO--Two of Google's top Chrome and Google Apps security experts confessed that the problem of passwords will continue to plague the people who use them and computer security for the foreseeable future. On the second day of the company's I/O conference here on Thursday, Eran […]
CISPA cybersecurity bill backers hope second time's a charm
An interesting article from NBC News in there Technology section: WASHINGTON (Reuters) - Six months after a U.S. cybersecurity bill died in the Senate, some Obama administration officials and lawmakers are optimistic they can get a new law passed amid heightened public awareness of hacking attacks and cyber espionage. With top intelligence officials warning that cyber attacks have replaced […]