Sponsored White Papers, Webcasts, and Downloads
TechRepublic Resources
- Stay safe when you pull an all-nighter: 10 self-defense tips for techies
- IT pros may be experts at protecting their systems from attack. But working late on short sleep, preoccupied with a tricky project, they may not be ready to protect themselves. Deb Shinder calls on her law enforcement background to provide techs with some self-defense basics. by Debra Littlejohn Shinder
- Tags: Attacker, Weapon, Law, Training, State, Workforce Management, Training And Certification, Security, Human Resources, Debra Littlejohn Shinder
- Blog posts 2008-07-17
- Wi-Fi Security is always one step behind
- Maintaining security is the irresolvable angst that all network—wired and wireless—administrators feel. So why focus on Wi-Fi security? To explain, I wanted to highlight a very interesting chat transcript about wireless security on NetworkWorld. The chat features an electronic hero/mentor of mine and renowned wireless security expert, Joshua Wright. The...
- Tags: Attacker, Associated Press, SSID, Authentication, Tool, Wi-Fi Security, Attack, PEAP, Wi-Fi, Wireless, Security, Michael Kassner
- Blog posts 2008-03-03
- Security news roundup: February 17
- Here's a collection of recent security vulnerabilities and alerts, which covers a serious vulnerability fixed in ClamAV, FreeBSD closing a couple of vulnerabilities, additional flaws discovered in Cisco IP telephony products, critical vulnerabilities found in Adobe Flash Media Server, and how Vista SP1 proves to be a low hurdle to...
- Tags: Adobe Systems Inc., Attacker, Vulnerability, Microsoft Windows Vista, Flaw, PE, Security, Paul Mah
- Blog posts 2008-02-17
- Security threats in a unified world
- Amid all the excitement surrounding the unification of our communications technologies, the issue of security sometimes gets lost in the shuffle. Maybe some are assuming that the threats are the "same old, same old" that plague those same communications methods in their more stand-alone forms. But it's that and more....
- Tags: SIP, VoIP, Attacker, IM, Vulnerability, Unified Communications, Encryption, Attack, UC, E-mail E-mail, Instant Messaging, E-mail, Session Initiation Protocol (SIP), Security, Internet, Online Communications, Emerging Technologies, Deb Shinder
- Blog posts 2008-02-15
- Security news roundup: February 10
- Here's a collection of recent security vulnerabilities and alerts, which covers a vulnerability in the multiuser version of the popular WordPress, a new release of the Windows client for Skype that fixes several vulnerabilities, critical vulnerabilities found in Sun's Java Runtime Environment, a memory corruption vulnerability found in IBM's DB2...
- Tags: Attacker, Vulnerability, Skype Technologies S.A., Wordpress, News, IBM Corp., WordPress MU 1.3.1, Skype Security Bulletin, Security, Paul Mah
- Blog posts 2008-02-10
- Invisible Attackers: Stop the Bot
- Massive distributed-denial-of-service DDoS and phishing attacks get the headlines, but invisible attackers pose a far more common threat to your network. This 60-minute TechWiseTV video on demand from Cisco will show you how botnets work, how attackers hide in plain sight, and how to flush them out. You will discover...
- Tags: Attacker, Bot, Cisco Systems Inc., TechWiseTV, Security
- Webcasts 2008-01-10
- Security news roundup: November 30
- Here's a collection of recent security vulnerabilities and alerts, which covers a new QuickTime bug that affects both XP and Vista, a new release of FireFox, security updates for FreeBSD, the release of Microsoft Exchange SP1, the official acknowledgement by Cisco of flaws in its VoIP phones, new versions of...
- Tags: Keyboard, Microsoft Exchange Server 2007, Mozilla Firefox, Phone, Attacker, Apple QuickTime, FreeBSD, Vulnerability, Microsoft Corp., Cisco Systems Inc., IBM Corp., Keyboards, Security, UNIX, Open Source, Operating Systems, Hardware, Peripherals, Software, Paul Mah
- Blog posts 2007-11-30
- Defend your network from slow scanning
- There are a lot of security tools out there that will scan a wide range of ports and IP addresses. An intrusion detection system IDS will generally catch this type of broad scanning. It will then shut it down by blocking the source IP address or alerting someone to the...
- Tags: Attacker, Network, Scanner, Intrusion Detection System, IP, IP Address, Tool, Productivity, Scanners, Intrusion Detection, Networking, Security, Hardware, Peripherals, Mike Mullins
- Blog posts 2007-11-15
- Security news roundup: November 13
- Here's a collection of recent security vulnerabilities and alerts, which covers a new firmware update for the iPhone and iPod Touch, a new version of Miranda IM that fixes certain security issues, and a privilege escalation vulnerability in WinPcap. Apple closes TIFF hole in iPhone ...
- Tags: Apple iPhone, Attacker, Vulnerability, TIFF, WinPcap, Security, Paul Mah
- Blog posts 2007-11-13
- Protect corporate data with these physical security precautions
- Not all attacks on your organization's data come across the network. It's imperative that companies remember that maintaining an "iron-clad" network security program doesn't immunize them against the physical assault or theft of data and the networked resources that contain that data. Attackers can be from outside...
- Tags: Attacker, Network, Computer, Productivity, Security, Networking, Mike Mullins
- Blog posts 2007-10-18
- Microsoft Office 2004 for Mac 11.3.4 Update (dmg)
- This update contains several improvements to enhance security and stability, including fixes for vulnerabilities that an attacker can use to overwrite the contents of your computer's memory with malicious code. This update contains several improvements to enhance security and stability, including fixes for vulnerabilities that an attacker can use to...
- Tags: Malicious Code, Apple Macintosh, Attacker, Microsoft Office, Vulnerability, Microsoft Corp., Microsoft Office 2004, Security, Productivity, Viruses And Worms
- Software downloads 2007-09-19
- Vulnerability in Microsoft Internet Security and Acceleration (ISA) Server 2000 Could Allow Internet Content Spoofing (888258) (exe)
- A spoofing vulnerability exists in ISA Server 2000 that could enable an attacker to spoof trusted Internet content. This vulnerability could enable an attacker to spoof trusted Internet content. Users could believe they are accessing trusted Internet content when in reality they are accessing malicious Internet content, for example a...
- Tags: Attacker, Vulnerability, Server, Microsoft Corp., Internet Security, Internet, Security
- Software downloads 2007-09-13
- Vulnerability in Microsoft Proxy Server 2.0 Could Allow Internet Content Spoofing (888258) (exe)
- Vulnerability could enable an attacker to spoof trusted Internet content. Users could believe they are accessing trusted Internet content when in reality they are accessing malicious Internet content, for example a malicious Web site. However, an attacker would first have to persuade a user to visit the attackers site to...
- Tags: Microsoft Proxy Server, Attacker, Vulnerability, Microsoft Corp., Internet, Security
- Software downloads 2007-09-13
- Microsoft Visual Basic for Applications Update - Q822150 (exe)
- An identified security issue in Microsoft Visual Basic for Applications could allow an attacker to compromise a Microsoft Windows-based system and then take a variety of actions. For example, an attacker could read files on your computer or run programs on it. By installing this update, you can help protect...
- Tags: Attacker, Microsoft Visual Basic, Microsoft VBA, Microsoft Corp., Microsoft Development Tools, Scripting Languages, Productivity, Programming Languages, Security, Development Tools, Software Development, Software/Web Development, Web Development
- Software downloads 2007-09-07
- Microsoft Visual Basic for Applications Update Installer: KB923167 (exe)
- An identified security issue in Microsoft Visual Basic for Applications could allow an attacker to compromise a Microsoft Windows-based system and then take a variety of actions. For example, an attacker could read files on your computer or run programs on it. By installing this update, you can help protect...
- Tags: Attacker, Microsoft Visual Basic, Microsoft VBA, Microsoft Corp., Microsoft Development Tools, Scripting Languages, Productivity, Programming Languages, Security, Development Tools, Software Development, Software/Web Development, Web Development
- Software downloads 2007-09-04
- Intrusion Detection System Resiliency to Byzantine Attacks: The Case Study of Wormholes in OLSR
- This paper proposes a mathematical framework for obtaining performance bounds of Byzantine attackers and the Intrusion Detection System IDS in terms of detection delay. It formulates the problem of distributed collaborative defense against coordinated attacks in MANET as a dynamic game problem. In this formulation on the one hand there...
- Tags: University Of Maryland, Attacker, Intrusion Detection System, Attack, Intrusion Detection, Security
- White papers 2007-08-24
- Security holes found in forensics software
- According to researchers with iSEC Partners, forensics software that are commonly used by the police, as well as enterprise security personnel, is not as secure as it should be. iSEC Partners has spent the past six months investigating two forensic investigation programs: Guidance Software's EnCase and as...
- Tags: Software, Enterprise Security, Attacker, Agreement, iSEC Partners, Tools & Techniques, Security, Management, Paul Mah
- Blog posts 2007-07-26
- Redundant Servlets Vulnerable to XSS Attack (Un-deploy Tomcat documentation
- Vulnerability Description: The remote web server includes an example JSP application (/tomcat-docs/) that fails to sanitise user-supplied input before using it to generate dynamic content in an error page. An unauthenticated remote attacker may be able to leverage this issue to inject arbitrary HTML or script code into a user's...
- Tags: Application servers, Middleware, OPEN SOURCE, mihai.balta@..., servlet, Apache Tomcat, documentation web application, XSS
- Discussion threads 2007-07-20
- Redundant Servlets Vulnerable to XSS Attack
- Vulnerability Description: The remote web server includes an example JSP application (/tomcat-docs/) that fails to sanitise user-supplied input before using it to generate dynamic content in an error page. An unauthenticated remote attacker may be able to leverage this issue to inject arbitrary HTML or script code into a user's...
- Tags: Application servers, Middleware, OPEN SOURCE, SECURITY, Java, mihai.balta@..., documentation web application, XSS, servlet
- Discussion threads 2007-07-20
- VoIP threats: Beyond eavesdropping
- When it comes to phone calls, privacy is the most common security concern. Recently, we discussed how hackers can eavesdrop on VoIP calls to discover the content of participants' conversations. But eavesdropping isn't the only -- or, in some cases, even the most serious -- security risk you face when...
- Tags: Threats, networking, Internet, Hacking, Encryption, Authentication
- Blog posts 2007-07-13