Author Archives: Toney Jennings
Is DoD really ready to embrace new technologies & companies?
As a former Air Force information warfare officer, and a member of the military’s red and blue teams for many years, I believe the Department of Defense’s new “Strategy for Operating in Cyber-Space” is a small step towards developing a … Continue reading
Total Application Control (TAC): Best of whitelisting AND blacklisting…
As hackers get better at breaking into networks and compromising data, IT security experts continue to debate the best ways to defend their systems against highly targeted malware attacks. In the PCWorld article, “How to Stop Hack Attacks In One … Continue reading
Bouncer to achieve Common Criteria Evaluation Assurance Level 3+
I’m very proud to announce that the CoreTrace Bouncer application whitelisting solution is in the testing process to be certified to Common Criteria Evaluation Assurance Level (EAL) 3+. As we go through evaluation under the Canadian Common Criteria Evaluation and … Continue reading
Lesson from PlayStation breach: 3 questions C-levels should ask themselves.
As Sony’s PlayStation data breach debacle continues to unfold, there have already been a number of lessons we can learn from this story — everything from protecting valuable information to how your public relations team responds to such a crisis. … Continue reading
Verizon’s 2011 DBIR: More breaches, more targets & fewer lost records?
I’ve been saying for some time now that no business, regardless the size, is safe from modern cyber attacks. Each new security study seems to confirm the stark realities of today’s threat landscape, and how rampant data breaches really are. … Continue reading
"Antivirus with *updated signatures* remove Stuxnet"…
In the recent blog, “Stuxnet Targeting Specific SCADA Configurations,” Danny Lieberman provides a nice, thorough analysis of the high-profiled Superworm in its current state. From what we know, the virus targets plants with a specific configuration, is activated whenever WinCC … Continue reading
Critical U.S. infrastructure: "There's always a way in."
There’s always a way in. That’s the straightforward, yet disturbing message that hacker-for-hire, Marc Maiffret, made after his team, hired by a large California-based water system to probe the vulnerabilities of its computer networks, took control of the equipment to … Continue reading
Decrypted Stuxnet code provides pieces of a highly sophisticated worm…
The group of anonymous, yet highly proficient, hackers who recently released a decrypted version of the infamous Stuxnet cyberworm has, in my opinion, potentially opened up a Pandora’s box to similar worms and malware kits that could serve the same … Continue reading
CoreTrace offers protection against cross-platform cyber attacks
To evade detection, cyber criminals are constantly changing their tactics. To complicate matters, they’re also changing who they are targeting. According to the article, “Cybercriminals new attack targets,” the newly released Cisco 2010 Annual Security report foresees a major turning … Continue reading
Bouncer 6 brings application whitelisting to new platforms…
The one thing I’ve learned in my years in IT security is that change is the only constant. The cat-and-mouse game between cyber criminals and security professionals, unfortunately, is part of the evolutionary process of malware and security development. Combine … Continue reading



Twitter
Linkedin
YouTube
Google +
Facebook
Blog