Author Archive

Jabulani Leffall

Cybersecurity

IT security outlook: Ominous

This year the IT industry reached an inflection point: More new malicious programs were created than useful ones, according to security vendor Symantec.

Cybersecurity

Worm attacks unpatched systems

The problem stems from a worm dubbed "Win32/Conficker.A." that "propagate on random computers" in an affected Windows-based network.

Cybersecurity

Patches for Windows exploits

Pair of Microsoft software patches are designed to stave off remote code execution vulnerabilities in Windows programs.

Cybersecurity

Google patches mobile OS flaw

Over-the-air-patch appears as an update in T-Mobile's G1 phone and in other devices that can run the Linux-based OS.

Cybersecurity

Voting machine insecurity

Technical glitches and security incidents from the past still cast a long shadow over electronic voting.

Digital Government

Google Android flaw found

Security flaw in Google's new mobile phone operating system underscores the security debate between open source and proprietary software.

Cybersecurity

Time for a security check

When it comes to uncertain economic times, organizations should double-check their internal policies and procedures, security experts say.

Cybersecurity

Microsoft patch targets Windows bug

Patch applies to Windows 2000, Windows XP and Windows Server 2003 systems.

Infrastructure

Beware of bogus security fix e-mail

IT security firm idetifies malicious Trojan horse-laden e-mails disguised as a notice for a "new Microsoft security update."

Cybersecurity

Appliance sniffs out database exploits

New Fortinet security tool protects businesses against data theft from corporate databases.

Cybersecurity

11 patches in October cycle

Four critical patches are for remote code execution exploit considerations; six important items are split between RCE and elevation-of-privilege bug implications.

Cybersecurity

Jury is out on virtualization security

Migration to virtualization won't be the quick transition that some technology evangelists have predicted, according to the results of two recent surveys.

Infrastructure

Latest browser threat: Clickjacking

Clickjacking happens when users are directed to malicious Web sites where hackers lay in wait to take control of a user's browser profile.

Digital Government

Microsoft expands security lifecycle expertise

Software maker wants to support developers in building fortified applications, starting at the design and development phase with the Microsoft Security Development Lifecycle.

Cybersecurity

Microsoft patches GDI exploit

Critical updates plug potential flaws in Microsoft Windows' graphics device interface, as well as vulnerabilities in Windows Media Player, Windows Media Encoder, and the Office software suite.

Cybersecurity

Microsoft patches on the way

Four critical fixes will resolve remote code execution exploits and address vulnerabilities in Windows Media Player 11 and Media Encoder, as well as Microsoft Office and various components and versions of the Windows OS.

Cybersecurity

12 Microsoft patches coming

Critical patches will be issued for various Windows OS versions and applications, including Internet Explorer, Access, Windows Media Player and Office.

Cybersecurity

Microsoft to include risk assessments as part of patch cycle

Microsoft will rate the likelihood that new vulnerabilities will be exploited to help IT administrators prioritize patches.

Cybersecurity

Software vulnerabilities up in 2008

Topping the list of companies reporting the most vulnerabilities were IBM, Microsoft, Apple and Cisco Systems; open source software also made the list of programs with security holes.

Infrastructure

DNS flaw unfixed as experts argue protocol

Speculation continues as to what the ultimate systemic Domain Name System flaw could be.