MySQL.com hacked by SQL injection is like cash injection compromising an ATM. MySQL website falls victim to SQL injection attack
Category: Uncategorized Tags:
by John Pescatore | March 29, 2011 | Submit a Comment
MySQL.com hacked by SQL injection is like cash injection compromising an ATM. MySQL website falls victim to SQL injection attack
Category: Uncategorized Tags:
by John Pescatore | March 25, 2011 | Submit a Comment
Back in early 2007, after the CA Browser Forum introduced Extended Validation Certificates, Vic Wheatman, Avivah Litan, Greg Young and I wrote a Gartner Research Note “Extended Validation SSL Certificates: A Big Step Forward, but More Progress Is Needed.” In that note we said: The success of phishing attacks has generated demand to make SSL [...]
Category: Uncategorized Tags:
by John Pescatore | March 22, 2011 | 1 Comment
Don’t berate, or sue me Your identity was stolen by an APT
Category: Uncategorized Tags:
by John Pescatore | March 15, 2011 | 1 Comment
When automobile tires or software are > 50% patches, time to replace. Yet more attacks in the wild exploiting yet more Adobe Flash vulnerabilities.
Category: Uncategorized Tags:
by John Pescatore | March 14, 2011 | Submit a Comment
In about two months, the European e-Privacy Directive on Web cookies will take effect, essentially requiring explicit consent from European users before any form of tracking is done via cookies. The upside of this is, of course, an increase in privacy for web surfers. Opponents, however, are claiming major negative impacts: Without persistent cookies, your [...]
Category: Uncategorized Tags:
by John Pescatore | March 9, 2011 | 3 Comments
I spoke on the executive track at the NSA/DISA Information Assurance Symposium in Nashville yesterday. My talk was on how consumerization and mobility are changing how IT security has to be delivered. I decided to base the talk on this analogy: Back in the early cave people days, there was no fire. Then lightning caused [...]
Category: Uncategorized Tags:
by John Pescatore | March 2, 2011 | 1 Comment
Great piece in Network World on the history of Windows malware. Many trying to hype up “polymorphic” malware and malware using encryption today, but that was done long ago, too. Plus, there has been an important constant over those two decades – people acting like people. He ends the piece like this: But the most [...]
Category: Uncategorized Tags:
by John Pescatore | March 1, 2011 | Submit a Comment
After 15 years of HIPAA passivity, HHS emerges levying $5.3M in fines. http://www.networkworld.com/news/2011/022511-hipaa-privacy-actions-seen-as.html?source=nww_rss
Category: Uncategorized Tags: