INFORMATION SECURITY MANAGEMENT: ARTICLESReport ‘debunks prevailing myths about distributed denial of service (DDoS) attacks’ World Economic Forum launches ‘Risk and Responsibility in a Hyperconnected World: Principles and Guidelines’ IBM launches new software to help organization control the influx of mobile devices to the workplace ‘Cyber Security Strategies: Achieving Cyber Resilience’ PwC highlights cyber attack realities in Davos European Commission publishes new data protection proposals SharePoint users develop insecure habits Twenty critical controls for effective cyber defence 2012 IT security predictions: blanket encryption or apocalypse now Industrial control systems: recommendations for improving security Information security trends for 2012 How to detect and stop corporate espionage 2012 security predictions Managing the risks of information leakage The DigiNotar, Comodo and RSA breaches: what have we learned? New NIST tool helps organizations meet HIPAA requirements Security trends for 2012 New ISO/IEC technical report provides information security control guidelines 14th Annual Global Information Security Survey: Companies rush to adopt new technologies leaving security threats as an after-thought NIST releases update to smart grid roadmap Information Security Governance – raising the game Majority of US small businesses ‘suffer from false sense of cyber security’: survey The Duqu virus explored ISO officially launches ISO/IEC 27035:2011 Certificate management explored Zero-day threats may be exaggerated Cyber threats forecast for 2012 US public/private leaders collaborate on ways to fight botnets Smartphones and enterprise security 2011 is the ‘Year of the Security Breach’ according to IBM X-Force report ‘An Anatomy of a SQL Injection Attack’ Social engineering risks explored Understanding the correlation between data leakage and the security mission New from NIST: Guide for Conducting Risk Assessments The dawn of the cyber savvy CEO Companies ignore e-crime insurance despite growing risk Cybercrime rises up the boardroom agenda Emerging mobile culture threatening UK businesses HP publishes ‘Second Annual Cost of Cyber Crime Study’ EU cyber-security agency flags urgent security fixes for new web standards/HTML5 US-CERT issues ‘Security Recommendations to Prevent Cyber Intrusions’ Hacktivism and the lessons learned from LulzSec The mobile security conundrum Mobile security reaching a tipping point for organizations US Commerce Department proposes new policy framework to help protect companies where the Internet is business-critical A growing threat to corporate networks: employee-owned devices How employees’ holiday technology risks impact corporate networks Organizations worldwide not keeping up with new security threats Cyber-attacks, Black Swans and business continuity management Alarming rise in information security attacks against industrial control systems PlayStation Network: will this be the largest online corporate disaster ever? ENISA issues final report on Cyber Europe 2010 The rise of APT Maturity model for information security management released European Commission reviews Member States' protection against cyber attacks Beware the ‘vanity attack’ RSA breach: what are the risks? Information Security Forum points to ‘disappearing network boundary’ as quarter of a million Google Android phones are hacked Smartphones and enterprise systems: don’t let convenience override security considerations New NIST publication offers advice on integrating information security risk planning into mission-critical functions EU cyber security agency warns of risks associated with new types of cookies Information security from a business perspective New guide to cyber security incident management OECD report provides a comprehensive analysis of the risks and impact of cyberattacks Weaponised malware - how criminals could use digital certificates to cripple organizations New NIST publications provide recommendations for managing information security as a key component of mission-critical functions A taxonomy of operational cyber security risks EU’s cyber-security agency highlights smartphone risks US Financial Services Sector Coordinating Council signs cybersecurity research agreement with NIST, DHS PwC comments on cyber attacks to defend WikiLeaks Securing privileged identities: a critical area of cloud security Public and private sectors must partner on cyber security to prevent a “cyber 9/11” Unisys security predictions for 2011 Cybersecurity best practices and policy issues discussed at November ANSI Caucus Top ten security trends for 2011 New NIST guidance on managing WiMAX network risks 13th annual Ernst & Young Global Information Security Survey Security professionals are missing key information risks Cyber threats to economic welfare do not stop at the public sector Cyberwars : a real and present danger Lost in translation If your head’s in the cloud, keep your feet on the ground Awareness of the risks of poor information management and records keeping is rising: AIIM survey Cyber threats forecast for 2011 Stuxnet is a malware paradigm shift: EU cyber security agency State of the Internet 2010: A Report on the Ever-Changing Threat Landscape Centre for the Protection of National Infrastructure issues Stuxnet guidance Commission to boost Europe's defences against cyber-attacks Cyber Storm III completed New research improves ability to detect malware in cloud computing systems UK out of step with the rest of the world when it comes to planned spending on information security The buck stops here: why the CEO is responsible for everything Information security starts before software purchase Misconfigured networks are the main cause of breaches Global security threats have reached record levels DEF CON survey looks into cloud hacking GAO report finds that US public-private cybersecurity coordination is still lacking The top five undiscovered vulnerabilities most commonly found on enterprise networks Cloud Security Alliance launches ‘Certificate of Cloud Security Knowledge’ NIST publishes draft cloud computing and virtualization security guidance UK Centre for the Protection of National Infrastructure publishes guide to managing online social networking risks Winners of US National Cybersecurity Awareness Challenge announced Updated computer security NIST guidelines focus on security assessment plans ‘Security awareness: Turning your people into your first line of defence’ A tale of two hacks Using new UK ICO powers as a force for change Deloitte 2010 security survey: financial institutions making identity and access management tools their top priority Digital copiers and information security New computer security threat warning ‘Security for Cloud Computing Users’: survey results Cloud security study New study looks into network resilience of 30 European countries When it comes to information security many employees are ‘the enemy within’ UK IT departments losing the social media security ‘power struggle’ 2010 Information Security Breaches Survey results Priorities identified for future EU research into IT security Data protection a critical business issue and not just a technology concern: but perception of data security at odds with reality North Carolina State University research offers ‘key to resolving virtualization and cloud computing hypervisor security issues’ ‘The Financial Management of Cyber Risk: An Implementation Framework for CFOs' Fast pace of change in technology use is leaving businesses at risk ‘Growing sophistication of cyber attacks pose greatest risk to US infrastructure’: Clarus Research Group survey ‘Shadows In The Cloud: Investigating Cyber Espionage 2.0’ Western organizations are ignoring iPhone security risks Council of Europe call for worldwide implementation of the Budapest Convention on cybercrime ISO and IEC publish new information security management systems standard Will virtualization and cloud computing change how we achieve security? Symantec 2010 State of Enterprise Security Study The Cloud Security Challenge NIST releases ‘Guide for Applying the Risk Management Framework to Federal Information Systems: A Security Life Cycle Approach’ Top cloud security threats identified in new research report Document-related threats rising dramatically: IBM X-Force report Fuzzing: helping to avoid zero-day attacks Mobile security – the time has come for action Cyber-war is here and the enterprise is on the frontlines IT security 2010 NIST issues expanded draft of Smart Grid Cyber Security Strategy APRA releases guidance on the management of security risk in information and information technology UK Security Breach Investigations Report 2010 published Cloud computing changing the risk landscape Fifth annual Worldwide Infrastructure Security Report |
To submit news stories to Continuity Central,
e-mail the editor. |
||











