Category Archives: whitelisting
Security Earthquake Nobody Felt: McAfee Endorses Application Whitelisting
Folks in California are so used to earthquakes that sometimes they barely notice when one happens. Folks in the security business are so busy and swamped with the noise of the market that we often miss tectonic shifts in our … Continue reading
File Integrity Protection via Application Whitelisting
It is a PR disaster. A group of ‘hacktivists’ have somehow managed to attack your company website and changed your content (which is actively being displayed to the entire world). Your phone won’t stop ringing, and your mailbox just melted … Continue reading
Making “Shady RAT” Useful: Open Letter to McAfee & the Australian DoD…
Earlier this week, I wrote a post comparing the cybersecurity strategies of the United States and Australian Departments of Defense. In that post, I applauded the Australians for having a strategy that was “detailed, well-researched and supported, and focused on … Continue reading
Tale of Two DoDs: U.S. & Australian security plans differ in usefulness…
Earlier this week, I came across some coverage about some of the Australian Department of Defence’s (DoD) cyber-security strategies. While not completely fair, I found it an interesting study in contrasts between the Australian strategies/tactics and those recently outlined by … Continue reading
10 Things You Don't Know about Virtualization Security…
When it comes to virtualization security, there are many things that people don’t even know are problems, or don’t even know they need to address. In our recent webinar, “10 Things You Don’t Know about Virtualization Security”, IANS faculty member … Continue reading
Lessons from RSA, Epsilon, etc.: Partners may be the weakest security link.
Computer hackers by and large focus on the weakest link of an organization’s security system. Whether it’s an unprotected server, a newly discovered system vulnerability, or an unsuspecting employee’s computer that is connected to the corporate network, cyber criminals are … Continue reading
Total Application Control (TAC): Best of whitelisting AND blacklisting…
As hackers get better at breaking into networks and compromising data, IT security experts continue to debate the best ways to defend their systems against highly targeted malware attacks. In the PCWorld article, “How to Stop Hack Attacks In One … Continue reading
It's a new platform… So why use an old (broken) security approach?
When it comes to protecting network endpoints against more cunning and deceitful modern malware attacks, deploying proven security tools to prevent malicious code from exploiting your system is job #1. Unfortunately, the cat-and-mouse game between IT security professionals and hackers … Continue reading
Who would you bet on in the race between hackers and users?
No one will argue that deploying security updates is important, but a recent exploit showed the difference between having a patch available and actually implementing it (again). Today’s reality is that hackers are far quicker to exploit known vulnerabilities than … Continue reading
Whitelisting: Only first rung of the ladder to “Total Application Control”.
According to the article, “Top five strategies for combating modern computer security threats,” today’s surreptitious, very low profile cyber threats are exploiting any vulnerability they can to get malware onto a user’s laptop or computer. These computer viruses require organizations … Continue reading



Twitter
Linkedin
YouTube
Google +
Facebook
Blog