Network Security — News

Security Threat: Beware the Office Multifunction Printer

Cybercriminals are always looking for easy ways to break into your network, whether at work or at home. In a talk at this summer's <a href="https://www.defcon.org/html/defcon-19/dc-19-index.html">DefCon 19</a> conference, security researcher Deral Heiland demonstrated various ways to compromise <a href="http://www.pcworld.com/businesscenter/article/217825/cloud_printers_rain_on_security_parade.html">Internet-ready consumer-grade multifunction printers</a>. These include printers that can scan to a file, scan to email, and fax documents, and the vulnerabilities he found are similar across all vendors.

Robert Vamosi | 03 Sep | Read more

Breached SSL certificate authority suspends sales

After being dumped as a trusted SSL certificate authority by <a href="http://www.networkworld.com/subnets/microsoft/">Microsoft</a> and Google browsers, Dutch CA <a href="http://www.networkworld.com/news/2011/083011-google-says-gmail-attack-focused-250231.html">DigiNotar</a> has suspended its sale of certificates.

Tim Greene | 31 Aug | Read more

Risky workers

I thought we could examine a recent theme in a little more detail this month: the challenges of dealing with the <a href="http://www.csoonline.com/article/681822/just-say-yes-why-banning-consumer-devices-makes-your-organization-less-secure">consumerization of IT devices</a> in the workplace. We recently completed a study, in partnership with Symantec, that looked at the security and compliance risks of a mobile workforce. It affirmed what I've believed for a long time, namely, that there is a consensus that mobile workers pose a great risk and that, for the most part, businesses are not prepared to mitigate that risk.

Bob Bragdon | 31 Aug | Read more

Has Facebook killed the undercover cop?

Face-recognition technology and the near-universal adoption of social networking tools by teenagers could have already made future covert police and intelligence operations difficult, if not impossible, according former Australian Federal Police commissioner Mick Keelty.

Stilgherrian | 25 Aug | Read more

Hackers could reverse-engineer Microsoft patches to create DoS attacks

The <a href="http://www.networkworld.com/topics/security.html">security</a> company Qualys this week demonstrated how to reverse-engineer a <a href="http://www.networkworld.com/subnets/microsoft/">Microsoft</a> patch in order to launch a denial-of-service attack on <a href="http://www.networkworld.com/topics/windows.html">Windows</a> DNS <a href="http://www.networkworld.com/topics/server.html">Server</a>.

Jon Brodkin | 25 Aug | Read more

Android users hit by lethal Trojan root hack

Researchers have publicised probably the most dangerous Android malware examples yet discovered, a Trojan that exploits the GingerBreak root hack (<a href="http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-1823">CVE-2011-1823</a>) in Android 2.3 that gained wide publicity after its discovery in April.

John E Dunn | 24 Aug | Read more

What is a next-generation firewall?

If there is a simple way to describe the difference between a next-generation firewall and a traditional firewall, it is "more detailed controls." In firewall terms, people talk about "widening the 5-tuple."

Joel Snyder | 22 Aug | Read more

Palo Alto PA-5060 is one fast firewall

Palo Alto's new firewall delivered performance 10 times faster than when <a href="http://www.networkworld.com/reviews/2008/081108-test-palo-alto.html">we tested in 2008</a>, and came close to its rated capacity of 20Gbps in firewall-only mode, according to our exclusive Clear Choice testing.

David Newman, Network Test | 22 Aug | Read more

Opinion: Breadth First Hacking

Recent publicity for online hacking groups such as Anonymous and Lulzsec has seemed to show that nobody is immune from attack on the Internet. Once targeted, it seems that these groups are capable of breaching security systems and retrieving data, including identity information, from the most secure systems.

Robert Layton | 13 Aug | Read more