Latest security news.
Flaw found in Symantec anti-virus, 05/25/06
Security researchers at eEye Digital Security have discovered a serious flaw in Symantec’s enterprise anti-virus software that could be used by hackers to create a self-replicating “worm” attack against Symantec users.
New worm tries to score , 05/25/06
World Cup soccer fans should be aware of a new worm being circulated by e-mail with the German-language message “WM-Tickets” or “Weltmeisterschaft,” security vendor Sophos warned Wednesday.
Are rootkits really all bad?, 05/26/06
When a security researcher late last year discovered Sony was using hidden software-cloaking and monitoring techniques to protect copyrights on its music compact discs, public backlash prompted lawsuits against the company and a debate ensued about …
Microsoft advises switching Word to ‘safe mode’, 05/24/06
Microsoft is advising people to run its Word application in “safe mode” to help guard against a Trojan program that surfaced recently, although security experts on Wednesday said there still appears little cause for alarm.
Healthcare exec talks security, 05/26/06
George Rathbun, director of IT architecture at Pfizer, is also the CTO for SAFE-BioPharma, the pharmaceutical industry group coordinating secure sharing of information with physicians and others. SAFE members, including Johnson & Johnson, Abbott Labs …
New security threat: Computer files hidden in digital images, 05/25/06
The emergence of software that enables hiding digital code in photographic images has given criminals a new way to disguise their activities, but researchers are working to give law enforcement advanced tools of their own to sniff out such code.
Lawmaker calls on VA head to resign after data theft, 05/25/06
U.S. lawmakers on Thursday ripped into the Department Veterans Affairs (VA) for a massive data breach announced this week, with one congressman calling for the resignation of the agency’s leader.
Security Weblog: Sourcefire’s new beau, 05/25/06
Although Check Point’s pursuit of Sourcefire hit a snag and the deal fell through, Sourcefire has a new beau that’s ponied up some cash to be close to the Maryland security firm.
Security vendor ArcSight scoops up NAC technology, 05/25/06
ArcSight this week announced it would acquire NAC vendor Enira Technologies to augment ArcSight’s security information management software with Enira’s automated network response technology.
Oracle’s security chief lambastes faulty coding, 05/25/06
Mary Ann Davidson, chief security officer for database giant Oracle, remembers the first time she heard her company’s marketing scheme that advertised its database products as “unbreakable.”
DOD hosts massive interoperability test, 05/25/06
Trying to enable your network to communicate securely with a diverse set of suppliers and business partners? If you think you’ve got interoperability problems, consider the case of the U.S. Department of Defense.
F-Secure adds CommTouch’s Zero-Hour technology to security products, 05/24/06
Security vendor F-Secure announced on Tuesday plans to integrate CommTouch’s real-time anti-virus and anti-spam technology into its offerings.
Australia Tax Office works to curb identity theft, 05/24/06
Accountants and tax agents have hit the spotlight as the hot targets of identity thieves intent on harvesting personal data through social engineering tricks and malicious code because it is easier to steal an ID than create a false one.
CA offers free anti-virus to Vista testers, 05/24/06
CA is offering free anti-virus software to protect the latest Beta 2 release of Microsoft’s Vista operating system.
Security Weblog: No stopping StopBadware.org, 05/24/06
StopBadware.org makes value judgments about the kind of software that wants us to love it unconditionally no matter what it does. A refreshing change in a world where software, like mass-market entertainment of the worst kind, appears to be sinking to a low level of mass exploitation.
Red Cross warns blood donors of possible ID thefts, 05/24/06
About 8,000 blood donors in the Missouri-Illinois Blood Services Region of the American Red Cross were notified last week that personal information about them was allegedly stolen by a former employee in March and might have been used in identity thefts.




