News (34)

DNS exploits are happening

A fatal flaw with the DNS (Domain Name System) was currently being exploited in internet attacks and more attacks were likely, the security researcher who discovered the flaw said on Thursday in the US Read more »

Black Hat expels reporters in network snooping

Three journalists for a French security magazine were kicked out of the Black Hat security conference after they allegedly sniffed the press room computer network on Thursday. Read more »

Microsoft to seek credit for finding vulnerabilities

Microsoft is jumping into the responsible disclosure game. Read more »

Kaminsky details DNS flaw

Security researcher Dan Kaminsky has offered more details about a fundamental flaw in the Domain Name System and the extent of the vulnerability. Read more »

Microsoft to tip off partners on security flaws

Microsoft will be giving companies that sell security software and services to its customers a sneak peek at the technical details of the vulnerabilities in Microsoft software before the company releases its monthly 'Patch Tuesday' updates. Read more »

Apple security talk cancelled

Just days before the annual Black Hat security conference in Las Vegas, a talk on Apple's FileVault encryption system has been abruptly cancelled by its presenter. Read more »

Aussies play down DNS disaster

One large Australian organisation and a local computer security advisor have played down the importance of a security flaw in the global Domain Name System (DNS) that has led to panic in some security circles around the globe. Read more »

Massive, coordinated DNS patch released

A security researcher has responsibly disclosed a fundamental flaw within the Domain Name System (DNS), the addressing scheme behind the common names used on the Internet. Read more »

Vista security to be 'obliterated' at Black Hat

An IBM X-Force security researcher has promised to exploit massive holes in Windows Vista's defences at the upcoming Black Hat security conference in Las Vegas. Read more »

What really happened in Estonia's cyberwar?

One year ago, the Estonian government moved a war memorial honouring Russian-Estonians who died fighting the Nazis, a move that may have triggered what some believe is the first instance of a sustained, international cyberwar. Read more »

Features (4)

Mitigate the effects of a DDoS attack

You can't thwart a DDoS attack -- they attack an IP address or service that's available to the Internet. If you can't prevent such an attack, what can you do to protect your organisation? Read more »

Conduct an impact assessment to acquire security funding

Protecting personally identifiable information is a major responsibility. Before you start looking for a security solution that will ultimately cost your organisation in materials, man hours, and money, do your homework. Read more »

Gosling looks down Sun's open road

James Gosling discusses Sun's decision to release Java under the General Public License, whether open source is more secure than proprietary software, how IT departments can cut development costs, and why Microsoft still owns the desktop. Read more »

Bug hunters, software firms in uneasy alliance

Although many software makers promote responsible disclosure, it isn't universally backed by the security community. Critics say it could make security companies lazy in patching. Full disclosure of flaws is better is preferred. Read more »

Video (2)

Defcon: Where feds and hackers rub elbows

It's an unlikely pairing: security officials and underground hackers. Every year, they make peace and share information at Defcon, Black Hat's sister conference. Read more »

See how iPhone exploit works

A vulnerability has been discovered in the Safari browser of the iPhone, and this video is a brief demonstration of how it works. More details are set to be announced at this year's Black Hat security conference. Read more »

Blog (2)

Targeted for hacking by reporters at my table

Staff [blogs:syslog] -- I should have known it was only a matter of time. I've been covering security conferences on and off for about 14 years and considered myself lucky not to have been hacked, that I knew of. Until Thursday. Read more »

Lack of turn out shows Linux's crossover

Staff [blogs:syslog] -- This week's Roundup looks at the lack of excitement surronding this year's LinuxWorld conference, Dan Kaminsky has finally revealed the details of his DNS flaw and we take a look at the new features to come in Firefox. Read more »

Log in


Sign up | Forgot your password?

What's on?