News (38)

Is Microsoft outsmarting Symbian with mobile security?

Microsoft's operating system for 'smart phones', the Windows Mobile Phone Edition, is more secure and more efficient than the Symbian platform, which could help the Redmond giant take control of the enterprise smart phone market. Read more »

Sun to unveil security offerings

Sun Microsystems is expected to announce two security initiatives Monday in the United States, one introducing a form of encryption for its next-generation Sun Java System Web Server and another that re-slices the way it delivers security features for Solaris. Read more »

Debian and Ubuntu OpenSSL generates useless crypto keys

For almost two years the OpenSSL library used by Linux distribution Debian has been generating useless cryptographic keys — although Debian has issued a patch, experts warn that systems may still be exposed. Read more »

Miscreants encrypt files, hold them for ransom

In a new type of online attack, extortionists remotely encrypt user files and then demand money for the key to decode the information. Read more »

Skype protocol cracked?

Chinese engineers have allegedly cracked Skype's Internet telephony protocol, according to a Thursday blog posting. Read more »

Firm offers new tools for database security

Security software developer Guardium is expected to formally announce Monday a new suite of integrated security applications for databases, a market that's gaining traction in the current regulatory environment. Read more »

Microsoft's leaner approach to Vista security

Microsoft is talking up support for hardware-based security in Windows Vista, though only a sliver of the company's original plan will make it into the operating system. Read more »

Oracle 10g release two arrives

This month should see the release of the a more secure version of Oracle's grid database. Read more »

Flaw found in Office encryption

Snoopers could decode password-protected files in Microsoft programs, a security researcher warns. Read more »

Microsoft tinkers with secure computing

The software giant warns developers at its WinHEC conference that changes continue to be made in the security technology it plans to make a basic component of next-generation PCs. Read more »

Features (75)

Tools for securing your XML documents

The W3C offers two specifications for securing your XML documents, XML Signature and XML Encryption. Find out which tools can help create secure XML documents that adhere to these standards. Read more »

Develop secure software at the application level

Protect your application from input overflow and underflow attacks, and from other common tactics with these development techniques. Read more »

Web application security frameworks (WASF), Part 1: Introduction

Often you will want parts of your Web application to be exclusive to certain users. This access distinction requires the use of Web application security frameworks. This first article in the series introduces you to the three most often used methods. Read more »

Secure collaboration requires document control

An employee who receives confidential information can easily forward the decrypted document to anyone. Collaborative software can help close this security hole. Read more »

Encrypting .NET configuration files through code

Encryption support for configuration files was added to the .NET Framework beginning with version 2.0. We'll show you examples of controlling encryption and decryption in both VB.NET and C# code. Read more »

Protect your network traffic using Java's encryption features

The Java Development Kit has strong encryption and security support. One of the nicer features is its built-in support for socket communication. Builder.com shows here it's easy to write a client and a server that talk to each other securely with encrypted streams. Read more »

Protect ASP.NET data with the DPAPI

Although .NET offers tight cryptography classes, a more efficient approach for ASP.NET developers is to implement the Data Protection API (DPAPI). Read more »

Hack proof your Web services

Web services promise to revolutionise your company's development practices by connecting your company seamlessly with customers and other companies worldwide. With this promise, however, come new threats from hackers and information thieves. Here are some tips for securing your Web Services. Read more »

Bulletproof persistent cookies to increase security

Web browser cookies can enhance the user experience by providing additional functionality and ease of use. However, from an administration point of view, cookies are a security concern. Encrypt your cookies with this simple technique. Read more »

Use SSL to secure your Apache-based e-commerce transactions

Secure Sockets Layer technology ensures that transactions are encrypted and safe from outside influences. Get the basics of setting up SSL on Apache in this overview. Read more »

Blog (2)

BitLocker experiences

[blogs:] -- With Windows Vista on the eventual Horizon, I've been working with the Betas and having a look at the security features. One of the ones I'm anticipating with great enthusiasm is Bitlocker. Bitlocker is a drive encryption system that actually encrypts the entire contents of a drive. Being the paranoid sort I am, I figured it would be a great thing to set up and use. Read more »

5 reasons restricting hacking is not like gun control

Nick Gibson [blogs:byteclub] -- Let's get it out of the way: Guns don't kill people, people with guns kill people. People with hacking tools can steal your personal data, shut down your system and deface your web site -- but is that any reason to ban them? Read more »

Log in


Sign up | Forgot your password?

What's on?