In Focus
|

465 results found for In Focus, displaying items 1 - 20
|
Internet Explorer 8's New Cross-Site Scripting Protection
One of IE 8's most important improvements is its defense against cross-site scripting (XSS) attacks.
Windows IT Pro
—
Mark Joseph Edwards
Are Your Web Application Cookies Secure?
Unless you take steps to protect them, your web applications might be vulnerable to session hijacking attacks.
Windows IT Pro
—
Mark Joseph Edwards
EFF Steps Up to Advise Security Researchers
This year, Electronic Frontier Foundation (EFF) stepped more directly into the legal implications of security research and disclosure by setting up a booth at Black Hat USA.
Windows IT Pro
—
Mark Joseph Edwards
Future Security Trends Apparent Today
Two main areas of tremendous growth for the future are web applications and virtualization, both of which security administrators need to focus on in their environments.
Windows IT Pro
—
Mark Joseph Edwards
Security Vulnerabilities You Can't Fix
At the upcoming Hack In The BOX (HITB) Conference, independent researcher Kris Kaspersky plans to release proof-of-concept (POC) code that exposes exploitable bugs in Intel CPUs.
Windows IT Pro
—
Mark Joseph Edwards
New Method of Attacking Disk Encryption
Encryption keys are often stored in memory, and memory doesn't necessarily lose its contents immediately when a system is powered off--which results in a serious weakness that can be exploited to gain access to data.
Windows IT Pro
—
Mark Joseph Edwards
Firefox Metrics for Measuring Security
Mozilla recently launched a new project, currently called the Mozilla Security Metrics Project, for measuring the security of its own products--including Firefox.
Windows IT Pro
—
Mark Joseph Edwards
Google's Ratproxy Web Security Auditing Tool
Google recently announced a new security tool called Ratproxy, which is a Web proxy server that you run your Web browser traffic through. The tool inspects Web traffic, gathers information, and logs its findings.
Windows IT Pro
—
Mark Joseph Edwards
Better Defenses for Your Web Applications and Database Servers
Over the past several months, a number of SQL injection attacks have been targeted at systems running Microsoft IIS and Microsoft SQL Server, and thousands of those systems were victims because of poor Web site security.
Windows IT Pro
—
Mark Joseph Edwards
Harden Your Ubuntu Systems with AppArmor
Ubuntu Server 7.10 includes AppArmor, which helps limit the file resources that an application can access.
Windows IT Pro
—
Mark Joseph Edwards
Firefox 3: A Long Time Coming and Worth the Wait
On June 17, Mozilla Foundation released the long-awaited Firefox 3.0. The new version makes Firefox better than ever and arguably the best browser available.
Windows IT Pro
—
Mark Joseph Edwards
ARP Attacks and Hosted Services
ARP poisoning is the processing of spoofing the direct relationship between MAC addresses and IP addresses. If you're using hosted services, you'd be well advised to check into your hosting provider's potential response to ARP attacks.
Windows IT Pro
—
Mark Joseph Edwards
Router Rootkits
Trends indicate that more attacks will be targeted directly at network-enabled devices.
Windows IT Pro
—
Mark Joseph Edwards
OpenSSL Vulnerabilities and the Ripple Effect
One small change to the random number generator code in OpenSSL had a far-reaching ripple effect.
Windows IT Pro
—
Mark Joseph Edwards
Could Phlash Attacks Be Your Next Big Concern?
At the EUSecWest conference in London, Rich Smith of HP Systems Security Lab revealed some of his research into a potential nightmare that he calls called Permanent Denial of Service (PDoS), which would be induced by a "Phlash" attack.
Windows IT Pro
—
Mark Joseph Edwards
New URI Scheme on the Horizon?
Windows IT Pro
—
Mark Joseph Edwards
What If You Could Take Down a Botnet?
Windows IT Pro
—
Mark Joseph Edwards
Is Vista Easier to Patch Than Linux or UNIX?
Microsoft's approach of issuing patches once a month reduces the amount of administrative overhead but leaves customers exposed to security risks longer than if patches were issued immediately upon creation.
Windows IT Pro
—
Mark Joseph Edwards
PayPal's Approach to Fighting Fraud
It's multifaceted and requires considerable resources that might not be available to many smaller organizations, but it's still a good outline of strategies that you can use either as a whole or in part.
Windows IT Pro
—
Mark Joseph Edwards
The Web Attack Surface Is Getting Bigger
You've got your work cut out for you with both Web servers and Web clients.
Windows IT Pro
—
Mark Joseph Edwards
|
|