Dig Security together —— 阅读、挖掘、评论,安全共进步。




Tag Cloud
Why


1
digs
安全TIPS
submitted by wanghongyang 210 days ago (via whyt0.spaces.live.com)
Source: http://www.boonbox.net/csi/cyber-security-informer-19-5-09.htmCyber security tips from Sauder School Dean, Daniel F. Muzyka, from his recent column in the Globe and Mail include:Make sure security awareness exists and is maintained. Realize that users are generally rational actors: Give them incentives for good behaviour.【保持有安全意识】Keep up with the technology. New hardware
 
0 Comments - More Info - Bury   Topic: Why
1
digs
Gartner: Worldwide security software revenue up 18.6% in 2008
submitted by wanghongyang 258 days ago (via whyt0.spaces.live.com)
Source: http://www.net-security.org/secworld.php?id=7660Worldwide security software market revenue totalled $13.5 billion in 2008, an increase of 18.6 per cent from 2007 revenue of $11.3 billion, according to Gartner. Analysts said there was an increasing demand for appliance-based products, particularly within certain segments such as, e-mail security and secure web gateway markets.Gartner报告
 
0 Comments - More Info - Bury   Topic: Why
1
digs
Golden Ca$h Network
submitted by wanghongyang 258 days ago (via whyt0.spaces.live.com)
Finjan 发布了2009年第二期 Cybercrime Intelligence Report一个是肉鸡价格:澳大利亚肉鸡,每1000台100美金,卖出价500美金。远东地区的,包括中国、日本、韩国等,每1000台5美金。美国的基本上1000台50美金。一个是 Golden Ca$h 网络平台的运作模式:类似古罗马奴隶交易市场。全文阅读:Finjan Cybercrime Intelligence Repo
 
0 Comments - More Info - Bury   Topic: Why
1
digs
转载 RSA公司总裁亚瑟.W.科维洛的直播在线访谈
submitted by wanghongyang 258 days ago (via whyt0.spaces.live.com)
Source: http://liukeli.blog.sohu.com/118591855.html1. 谁也不可能走在黑客前面2. 美国只有七百分之一的黑客能被抓住3. 我总对竞争对手心存恐惧4. RSA安全会议一定会在中国召开,但时间未定5. 把RSA名字给了世界性信息安全大会,我们的品牌不会分散6. 微软产品已成为黑客的终极目标7. 用户的需求是把所有安
 
0 Comments - More Info - Bury   Topic: Why
1
digs
Ponemon Institute 内部人员数据安全策略合规趋势:员工逃避和忽略安全策略
submitted by wanghongyang 258 days ago (via whyt0.spaces.live.com)
隐私和信息管理研究机构Ponemon Institute发布报告《内部人员数据安全策略合规趋势:员工逃避和忽略安全策略》(Trends in Insider Compliance with Data Security Policies: Employees Evade and Ignore Security Policies),此次调查(采样17021人,回复967,回复率5.7%)由IronKey资助。一些结论:多数人承认严重的不合规行为会给公司
 
0 Comments - More Info - Bury   Topic: Why
1
digs
Gartner称全球IT服务营收在2008年增长8.2%
submitted by wanghongyang 258 days ago (via whyt0.spaces.live.com)
Source: http://www.gartner.com/it/page.jsp?id=1011512Gartner称全球IT服务营收2008年为$806 billion,比2007年($745 billion)增长8.2%。Worldwide IT Services Vendors by Revenue (Millions of U.S. Dollars) Company2008 Revenue2008 Market Share (%)2007Revenue2007 Market Share (%) Growth(%)IBM58,8917.354,1457.38.8HP38,5844.837,8665.11.9Accenture23,7322.920,6162.815.1Fujitsu20,4322.518,64
 
0 Comments - More Info - Bury   Topic: Why
1
digs
FISMA 与 Cyberspace Policy Review
submitted by wanghongyang 258 days ago (via whyt0.spaces.live.com)
FISMA(Federal Information Security Management Act联邦信息安全管理法案)定义了保护政府信息系统的方法,要求所有的政府机构评估安全风险,实施 NIST 制定的安全基线控制措施,并进行测评,由 House Oversight and Government Reform Committee 出具scorecard,等级从A到F。这看起来不错,但实际上效果并不好。FISMA 在 risk assessme
 
0 Comments - More Info - Bury   Topic: Why
1
digs
2009-5 应用安全漏洞 选录
submitted by wanghongyang 258 days ago (via whyt0.spaces.live.com)
新!及时知道最新的app security alert,请在twitter上follow @2sec应用安全漏洞 [选录]-------------------2009-5这个月严重漏洞较多,比如Adobe Reader、Linux Kernel、IIS 6.0的,Joomla和Winamp的漏洞也不少,当然,最猛烈的还是BaoFeng的。Joomla Component JVideo 0.3.x SQL Injection Vulnerability    29-05-2009ecshop 2.6.2 Multiple Remote Command Execut
 
0 Comments - More Info - Bury   Topic: Why
1
digs
Obama launches cybersecurity initiative
submitted by wanghongyang 258 days ago (via whyt0.spaces.live.com)
establish a top-level office to create and manage the US strategy for securing cyberspacedigital infrastructure will be treated as a strategic national assetprotecting this infrastructure will be a national security priorityensure these networks are secure, trustworthy and resilient
 
0 Comments - More Info - Bury   Topic: Why
1
digs
反恶意软件测试标准组织(AMTSO: Anti-Malware TestingStandardsOrganization)
submitted by wanghongyang 258 days ago (via whyt0.spaces.live.com)
2008年5月成立,旨在提高反恶意软件的测试方法。成员:AhnLab, Alwil Software, ARCABIT, AV-Comparatives, AVG Technologies, AVIRA, AV-TEST.org, Bit9, BitDefender, CA, Cascadia Labs, Comodo Security, Dennis Technology Lab, ESET, F-Secure, Hispasec, IBM, ICSA Labs, Ikarus Security Software, Kaspersky Lab, KingSoft, K7 Computing Private Ltd, Lavasoft AB, Mario Vuksan(个人), McAfee
 
0 Comments - More Info - Bury   Topic: Why