The International Organization for Standardization (ISO) has published new standards for interorganizational and intersector communications, including data exchanges for critical infrastructure.
US to fast-track cyber weapon development
The US plans to fast-track the development of cyber weapons to give it the ability to create the means to attack specific targets within months, and even days.
Zero-day security hole in BackTrack Linux uncovered by student
A zero-day security flaw has been identified in the latest version of BackTrack Linux, a version used by security professionals for penetration testing. The vulnerability was discovered by a student in the InfoSec Institute’s ethical hacking class.
ISACA issues latest version of COBIT infosec governance framework
ISACA, the not-for-profit IT security association, has issued COBIT 5, the latest version of its IT security reference guide.
Smartphones are still firmly ‘enterprise-unready’
Research from by Altimeter Group, Bloor Research and Trend Micro shows that the ‘consumer marketing’ legacy of many smartphones makes them ill-equipped to meet enterprise security demands.
DHS gets California company to hack game consoles
In a project that started from law enforcement agencies’ request to the US Department of Homeland Security (DHS), which was then farmed out to the US Navy, Obscure Technologies of California has been awarded a contract to find ways of hacking game cons…
SQL injection tops SMB database security concerns
More than half of small and medium-sized businesses (SMBs) are most concerned about SQL injection attacks against their databases, according to a survey of 6,000 SMBs users of GreenSQL’s database security product.
Adobe plugs security holes in Reader and Acrobat, adds free e-signature to Reader
Adobe has shipped updates for Reader and Acrobat that fix four security holes that could cause the application to crash and allow an attacker to take control of an affected system.
Anonymous attacks high-tech trade groups over support for CISPA
Anonymous claimed credit for launching distributed denial-of-service attacks (DDoS) against a number of high-tech trade groups in retaliation for their support of the Cyber Intelligence Sharing and Protection Act (CISPA).
Google fixes SSL certificate bug in Chrome browser
Google has released an update for Chrome that fixes a problem with the SSL certificate when users attempt to connect to sites over HTTPS.