Android malware builds 3D model of user's environment

A team from Indiana University frames PlaceRaider as a potential tool for burglars, but what if it got into government buildings?

Worried about Java? Get Groovy, baby

Groovy, a subset of Java, is so easy to work with it, it could one day replace the ubiquitous programming language.

The 20 most common words in phishing attacks

A new report from FireEye details the dominant current trend in phishing, and the most common words and file attachments used in malicious e-mails.

Can mobile devices work as ID cards, thin clients on a secure net?

DISA wants software that would let DOD personnel securely use smart phones and tablets on DOD networks.

Agencies yet to 'crack the code' on mobile management, security

Mobility is key for unlocking productivity, but government still struggles to securely manage mobile devices and their data, agency IT leaders say.

Moving encryption to the enterprise edge involves trade-offs

DOE is using a cloud-based appliance to handle encryption of unclassified e-mail, but the solution is not for everybody.

Energy adapts its PKI to handle old and new technologies

Although PIV cards are intended to be a standard source for PKI certificates, legacy hardware and software and the emergence of mobile devices have led DOE to adopt a gateway encryption appliance for secure e-mail.

NASCIO offers states guidance on trusted digital identity

The group's report can help states use their digital infrastructure to securely conduct business with other states, organizations and the public.

Keys to mobile security: Consistent controls, user common sense

GAO report on mobile threats concludes that certain agencies, and all users, can help improve security.

CyberScope falls flat on improving IT security, feds say

Most federal officials questioned in a recent survey said that requirements for continuous monitoring of security status have not reduced risk in the IT systems.

Common IT security framework for government gets a step closer

NIST’s new risk assessment guidelines caps planned efforts of a multiagency task force, but federal cybersecurity is just entering its new phase.

Microsoft delivering fix to counter zero-day IE exploits

The company said it will issue a cumulative patch Friday for a vulnerability that had prompted some security experts to urge IE users to switch browsers.

Topic Resources

  • Delivering Big Data (Securely) to the Mobile Workforce

    In this webcast experts will discuss the Big Data challenge facing the federal market space and provide perspective into how Big Data can be contained, leveraged and, in turn, secured and accessed by the mobile device of your choice.

  • Big Data for Fraud Detection in Social Services & Tax

    An integrated approach to fighting fraud, waste and error uses big data analytics to leverage both traditional and non-traditional data to proactively identify the potential for fraud and be better equipped to detect and prevent fraud before benefits are paid. Join this webinar to learn how to analyze the large volumes and variety of data to reduce overpayments and tax deception by better matching of eligibility information, gain better insights into identity and relationship information.

  • Social Services: Combating Hidden Attacks

    Social service agencies battle numerous challenges, including massive case overload, accommodating new compliance regulations, expanding day to day programs, and caseload expansion. Join IBM industry experts, to learn how you can address program integrity and hear how incorporating entity analytics into program integrity solutions is helping agencies outsmart fraudsters.

  • Accelerating Economic Growth and Vitality through Smarter Public Safety Management

    Many public safety agencies need to do more with less and link spending to outcomes. The global trends highlighted in this report show the increasing challenges and issues confronting public safety agencies. This white paper describes how developing competencies in five key area can help public safety agencies more effectively do their jobs in the face of extremely important and difficult sets of issues.

  • Expert Q&A: Continuous Monitoring

    As attacks on agency networks and assets become ever more divergent and sophisticated, continuous monitoring will be a critical element in an organization’s cybersecurity strategy. But it’s not an easy thing to implement. Download this Q&A report for industry perspectives on the various elements of effective continuous monitoring, and why it’s not just one more technology program.