Source: www.secureworks.com/secureworks.rss
|
| Dell SecureWorks Info Feed
Dell SecureWorks news, press releases, events, and research alerts.
Carrier IQ, Inc. has received more public attention in the past 60 days then it has in the previous five years that the company has existed. The software, Carrier IQ (CIQ), is analytics software designed to improve the end user experience by providing information such as dropped calls, service coverage and software crashes to wireless providers. Recent legal action by Carrier IQ, Inc. met with reactive action by the Electronic Frontier Foundation (EFF) has caused a recent media frenzy around privacy and disclosure issues surrounding the software.
On April 11, 2011, the Dell SecureWorks Counter Threat Unit (CTU) posted a blog entry titled "Certificate Authorities for SSL/TLS: Crypto's weak link", which discussed some of the strains of the current Certificate Authority (CA) system for validating web site identity. The backdrop to this blog entry was the breach of Comodo and their resulting issuance of untrustworthy, but valid, certificates. In recent weeks, another CA breach has hit the news and drawn much attention...
This month the PCI-SSC released an Information Supplement providing guidance for compliance with the DSS in virtualized and cloud environments. Great news for anyone with virtualization within their cardholder data environment (CHDE), or who has been considering it.
Dell SecureWorks and Qualys, Inc. announced today their strategic partnership plan to deliver industry-leading Vulnerability Management Services (VMS) to customers worldwide.
On March 18, 2011, we blogged about a breach at RSA regarding the disclosure of unspecified sensitive materials related to SecurID. At the time, little information was made available as to the extent of the breach, the exact information that was compromised, or how it would affect RSA's customers.
Earlier today, Imperva publicly announced a vulnerability in their flagship SecureSphere WAF (Web Application Firewall). This issue was discovered by Sean Talbot of Dell SecureWorks and disclosed in a coordinated fashion with Imperva.
Happy birthday Dell: The beginning of an evolution/revolution (TG Daily)
Between April 17 and April 19, 2011, Sony became aware that the PlayStation Network (PSN) and Qriocity user account information was compromised in conjunction with a breach into Sony's network. These services allow users to play games with others on the Internet, make in-game purchases and stream music and movies to Sony devices.
This month's Microsoft Patch Tuesday release set a new record. Microsoft released a total of 17 bulletins covering 64 CVEs, the largest number of patches in one month to date. While some users may have configured Windows to automatically apply updates in the background, many organizations must stage and test all patch deployments, which may seem daunting this month.
The past few weeks have been tough on cloud security.
Newsfeed display by CaRP |
|
|