Hacker charged with selling access to Energy, other networks

Justice says a 23-year-old tried to sell an FBI undercover agent access to an DOE supercomputer for $50,000.

ICANN, again, exposes domain applicants' info

Information that was supposed to be kept private on applicants for new generic top-level domains was inadvertently posted as part of ICANN's Reveal Day.

Bosses and CISOs: What we've got here is failure to communicate

A recent survey suggests CEOs and CISOs don't speak the same language. Maybe it's time for government to set some generally accepted standards for information security.

Tenn. school system hack exposes student, employee data

The hack by a previously unknown group could have exposed some personal data on as many as 110,000 current and former employees and students.

Bills would require warrants for domestic drone surveillance

Companion bills in the House and Senate want Fourth Amendment protections applied to UAV use.

Microsoft issues Flame-resistant certificate updater

The automated updater will flag digital certificates considered untrustworthy to counter the spyware's spoofing tricks.

UMD, Northrop to help train next generation of cybersecurity pros

The University of Maryland and Northrop Grumman are working together to develop a college-level course to train and accredit tomorrow's cybersecurity professionals.

Microsoft warns of zero-day attack

The vulnerability in XML Core Service, being actively exploited, affects all supported versions of Windows and Office 2003 and 2007.

NIST issues guide to fixing the holes in Bluetooth

The updated special publication offers guidance on countering threats to devices using Bluetooth, some versions of which provide only limited security.

IBM development package can boost mobile app security

The new portfolio lets organizations test and manage security for mobile apps across the software development life cycle.

Researchers find 'proof' of Flame-Stuxnet link

Kaspersky Lab says an early Stuxnet version used code from Flame; separate research reveals "world-class" crypto behind Flame's attack.

FedRAMP aims to authorize 3 cloud providers by year's end

The three CSPs applied for accreditation on the day the program officially launched.

Topic Resources

  • Big Data for Fraud Detection in Social Services & Tax

    An integrated approach to fighting fraud, waste and error uses big data analytics to leverage both traditional and non-traditional data to proactively identify the potential for fraud and be better equipped to detect and prevent fraud before benefits are paid. Join this webinar to learn how to analyze the large volumes and variety of data to reduce overpayments and tax deception by better matching of eligibility information, gain better insights into identity and relationship information.

  • Social Services: Combating Hidden Attacks

    Social service agencies battle numerous challenges, including massive case overload, accommodating new compliance regulations, expanding day to day programs, and caseload expansion. Join IBM industry experts, to learn how you can address program integrity and hear how incorporating entity analytics into program integrity solutions is helping agencies outsmart fraudsters.

  • Delivering Big Data (Securely) to the Mobile Workforce

    In this webcast experts will discuss the Big Data challenge facing the federal market space and provide perspective into how Big Data can be contained, leveraged and, in turn, secured and accessed by the mobile device of your choice.

  • Security Intrusion Prevention Solutions

    As networks continue to grow in size, complexity and level of business importance, the potential for malicious attacks grows right along with them. This whitepaper presents a comprehensive portfolio of intrusion prevention solution that go beyond traditional intrusion prevention to provide multilayered,end-to-end security that can actually protect networks from attacks before they occur.

  • Beyond the Next Generation: Meeting the Converging Demands of Network Security

    A number of network security technologies have arisen that claim to be the "next generation" of network defense - but what does this concept actually mean? This whitepaper provides insight into what we can expect in the area of network security and how to leverage new technologies to meet today's security challenges in light of other considerations such as overall complexity and performance.