News (27)

US subway hackers still gagged

A US judge let stand a temporary restraining order preventing three Massachusetts Institute of Technology students from discussing or disclosing their research into security vulnerabilities in the payment system for the local subway system. Read more »

Virtualisation security threatened: XenSource

XenSource and VMware, two major figures in virtualisation security have warned of challenges facing IT managers in implementing secure virtual environments. Read more »

Botnets threaten the Internet as we know it

Botnets are the biggest threat facing the Internet today and neither education, technology or the police can help, according to experts at the RSA security conference in San Francisco last week. Read more »

Microsoft: Vista UAC designed to 'annoy users'

A Microsoft manager has said one of the security features in Vista was deliberately designed to "annoy users" in order to put pressure on third-party software makers to make their applications more secure. Read more »

Schneier suspicious of Microsoft's security vision

Speaking at the RSA conference in San Francisco this week, a senior Microsoft executive sang the praises of the software giant's emerging vision for 'trust' based security, prompting one industry figurehead to label the strategy as "anti-competitive". Read more »

US Homeland Security wants a cyber-nuclear bomb

The US wants to help defend against cyber attacks by embarking on a project that would build the equivalent of an online nuclear bomb. Read more »

Hackers claim iPhone 2.0 jailbreak

It hasn't even been released yet, but iPhone hackers claim to have already figured out a way to jailbreak Apple's iPhone 2.0 software. Read more »

McAfee to purchase ScanAlert for US$51m

McAfee announced plans on Tuesday to acquire ScanAlert in deal worth approximately US$51 million in cash. Read more »

BEA rejects US$6.66bn bid from Oracle

Oracle has offered to purchase rival BEA Systems for US$17 per share, a total of about US$6.66 billion in cash -- but BEA rejected the offer as too low. Read more »

Ransom-based malware attacks specific companies

Various security companies are today reporting targeted attacks made on Fortune 1000 companies over the weekend. What's notable is that documents within each of the affected companies were stolen, encrypted, then the companies were offered a decryption key for a fee. Read more »

Features (12)

Encrypting configuration data in ASP.NET 2.0

Learn how to protect data stored in a configuration file via encryption and describe new features available in ASP.NET 2.0. We'll begin with an overview of the encryption options and continue with the actual encryption of data values in a configuration file. Read more »

Programming smartcards with the Java Card platform

The Java Card is an open, interoperable platform for smartcards and secure tokens; the technology is also widely used in SIM cards (it's used in GSM mobile phones) and ATM cards. Read more »

Encrypting .NET configuration files through code

Encryption support for configuration files was added to the .NET Framework beginning with version 2.0. We'll show you examples of controlling encryption and decryption in both VB.NET and C# code. Read more »

Agile Modelling with IBM's Scott Ambler

You may already be doing agile modelling and not realise it according to Scott Ambler, head of Agile Development at Rational Software. Read more »

Understanding the Java security model

The Java security model, introduced in Java 2, is the basis of highly secured and distributed enterprise Java applications. We'll show you the basics. Read more »

Master the basics of Java Cryptography Extension (JCE)

Security is an often-overlooked aspect of application development. This article begins a three-part series exploring JCE fundamentals. Read more »

What hackers can teach you about security

He's probably the most infamous hacker of all time. Which is why we should listen when Kevin Mitnick says that traditional network security tools aren't enough to keep our information safe. Read more »

.NET demystifies encryption

.NET makes cryptography a little simpler by putting everything into one SDK. Find out how to encrypt and decrypt a text file with the System.Security.Cryptography namespace. Read more »

Gain SSL functionality in JDK 1.3

If you want to add SSL to your Java 1.3 applications, you'll need to work with some external packages to support it. Here's a look at the setup, along with the server-side code. Read more »

Microsoft to open more source code

Microsoft's shared source chief Jason Matusow talks about whether the company plans to release more Office source code. The question is, does anybody want it? Read more »

Video (3)

RSA 2008: Microsoft outlines Internet security strategy

At the RSA 2008 conference in San Francisco, Microsoft Research and Strategy Officer Craig Mundie describes a new plan for Internet security that includes the creation of a trusted stack. Each element can be authenticated, from the operating system to applications, people, and data. Read more »

Symantec CEO: The future of cybersecurity

At RSA 2008 in San Francisco, Symantec CEO John Thompson talks about three security trends he believes will significantly impact the tech industry in the years to come. He predicts that malicious software will outnumber legitimate software; identity management will grow far beyond the enterprise; and digital-rights management will become... Read more »

Homeland Security secretary pushes cybersecurity 'Manhattan Project'

At RSA 2008 in San Francisco, Secretary of the U.S. Department of Homeland Security Michael Chertoff discusses a new directive focusing on an early warning system to identify cyberattacks before they start. Read more »

Blog (1)

Introduction to Infocard

[blogs:] -- Identity provisioning is a hot topic in the Internet right now. Microsoft is behind a new version called Infocard. Here is a brief introduction to what Infocard is. Read more »

Log in


Sign up | Forgot your password?

What's on?