SPF/DKIM use on the decline among Fortune 500s
Thursday, 7 August 2008, 12:43 PM CET

For those not familiar with Sender Policy Framework (SPF) or Domain Keys Identified Mail (DKIM), these are two forgery countermeasures that can be used by anyone looking to protect the integrity of their outgoing electronic correspondence (email). SPF and DKIM provide a response to recipient email servers interested in knowing whether a particular sender was authorized to send email representing the company’s domain.
Q&A: E-mail spam and Software as a Service (SaaS) solutions
Tuesday, 5 August 2008, 11:30 PM CET

David Vella is the Director of Product Management at GFI with experience in quality assurance, network administration and software development. In this Q&A he provides insight into e-mail spam and Software as a Service (SaaS) solutions.
Cybercrime and politics
Monday, 4 August 2008, 6:14 PM CET

As citizens of the United States prepare to cast their votes in the upcoming presidential election, the time is right to consider what implications, if any, Internet-borne threats may have on this process. With political candidates increasingly relying on the web to communicate their positions, assemble supporters and respond to critics – Internet-based risks are a serious concern as they can be used to disseminate misinformation, defraud candidates and the public and invade privacy.
89% of security incidents went unreported in 2007
Friday, 1 August 2008, 11:30 PM CET

RSA Conference released the results of its recent survey of security professionals regarding the critical industry and infrastructure issues they currently face. The survey identified four specific types of security threats as major pain-points for the industry in the coming year.
Despite mandate, only 30% of government devices are encrypted
Wednesday, 30 July 2008, 3:36 PM CET

A Government Accountability (GAO) report on the status of government agency efforts to encrypt and protect sensitive information identified commercially available technology, reviewed laws and policies on sensitive information, and examined 24 federal agencies. The report recommends that Office of Management and Budget (OMB) policies be clarified and that selected agencies strengthen their efforts.
Traditional vs. non-traditional database auditing
Tuesday, 29 July 2008, 9:11 PM CET

Traditional native audit tools and methods are useful for diagnosing problems at a given point in time, but they typically do not scale across the enterprise. The auditing holes that are left in their wake leave us blind to critical activities being performed within the systems that contain our most coveted trade secrets, customer lists, intellectual property, and more.
Cyber threats accelerate and browser vulnerabilities proliferate
Tuesday, 29 July 2008, 9:10 PM CET

IBM released results from its X-Force 2008 Midyear Trend Statistics report that indicates cyber-criminals are adopting new automation techniques and strategies that allow them to exploit vulnerabilities much faster than ever before. The new tools are being implemented on the Internet by organized criminal elements, and at the same time public exploit code published by researchers are putting more systems, databases and ultimately, people at risk of compromise.
Q&A: SSL VPN security
Monday, 28 July 2008, 10:59 PM CET

Max Huang is the founder and Executive Vice President of O2Micro and President for O2Security, a subsidiary company of O2Micro. In this interview he discusses the importance of SSL VPNs in the overall security architecture, the difference between IPSec and SSL VPNs as well as the future of SSL VPNs.

Hard Drive Recovery