GAO report targets data breach guidelines; Newcomer challenges antivirus establishment

Opinion
May 1, 20072 mins

Latest security news.

GAO report targets data breach guidelines, 04/30/07: A U.S. Government Accountability Office (GAO) report issued Monday in response to a May 2006 data breach at the Department of Veterans Affairs says federal agencies should have uniform guidelines governing when to offer credit monitoring to individuals whose personal information is exposed. Click here for more.

U.S. officials recommend better RFID security, 04/30/07: Organizations that use RFID devices should systematically evaluate potential security and privacy risks posed by the technology, U.S. government officials say in a new report detailing best practices for retailers, manufacturers, hospitals and federal agencies. Click here for more.

Podcast: Don’t take DNS for granted, 04/30/07: How is DNS and other core network services like an offensive line in football? If you hear about them, they’re not doing their jobs properly. Unfortunately, we still hear quite a bit about DNS security and architectural issues. On this program, Cricket Liu, author of “DNS and Bind” and vice president of architecture at InfoBlox, joins Network World’s Jason Meserve to discuss some of the threats to DNS and what corporations can do to better protect their core network services. (10:38) Listen now.

A newcomer’s challenge to antivirus establishment, 04/30/07: Start-up Robot Genius claims that it has a new way to fight malware and that established vendors have some catching up to do. Click here for more.

Cisco blade boosts security control, 04/30/07: Cisco this week released a new Supervisor module for Catalyst 6500 switch, aimed at injecting traffic security at the wiring closet layer of a LAN. Click here for more.

Verio to shut off controversial Web site, 04/30/07: Privacy advocates are concerned that a move by Verio to stop hosting a controversial Web site points to a growing control of the Web by big business and governments. Click here for more.

From Microsoft Subnet: A Windows Vista 90-day vulnerability reportClick here for more.

In his report, Jeff Jones, a director in the security group at Microsoft, lists reported and corrected vulnerabilities for six operating systems at the 90-day window. The results seem surprising, until you see the chart.