Sponsored White Papers, Webcasts, and Downloads
ZDNet Resources
- Dan Kaminsky breaks DNS, massive multi-vendor patch coming, details at Black Hat Vegas '08
- It would seem there's a bigger story to that MS08-037 flaw that came out for Patch Tuesday today. From Dave Lewis over at the Liquid Matrix security blog: Today Dan Kaminsky released a first, as far as I can recall. A coordinated patch was released today...
- Tags: Black Hat, DNS, CERT, Flaw, Mogull, Updates, Domain Names, Networking, Security, Internet, Nathan McFeters
- Blog posts 2008-07-08
- How to wipe data off an iPhone
- In reponse to reports that personally identifiable private information can be easily swiped from used iPhones sold on eBay, the tireless Rich Mogull has cooked up a nifty way to wipe data from iPhones. Mogull admits his process is "not perfect" but it does look to be...
- Tags: Apple iPhone, Mogull, Storage, Hardware, Ryan Naraine
- Blog posts 2008-05-22
Additional Resources
- Microsoft joins 'patch DNS now' chant; Apple patch missing
- On the heels of the release of weaponized exploit code for the DNS cache poisoning vulnerability, Microsoft has joined the chorus of security pros pleading with DNS server providers to immediately apply patches to protect users from malicious attacks. The Redmond, Wash. security...
- Tags: Apple Macintosh, DNS, Vulnerability, Apple Inc., Exploit Code, Microsoft Corp., Attack, Dan Kaminsky, Domain Names, Apple Mac OS X, Networking, Security, Internet, Operating Systems, Software, Apple Mac OS, Ryan Naraine
- Blog posts 2008-07-25
- Kaminsky suggests long-term fix will still have to be determined, but patch now, or pay soon
- I listened to the Black Hat webcast today to grab as much info as I could on this subject. The biggest thing that I heard from the whole talk is that the patch fixes things to a reasonable point, but that long-term, there will have to be more work...
- Tags: CERT, DNS Server, Server, Kaminsky, Dan, Patches, Domain Names, Security, Internet, Nathan McFeters
- Blog posts 2008-07-24
- Kaminsky to discuss DNS flaw at Black Hat sponsored webcast
- The Black Hat group on Twitter provided a message today alerting people to a webcast to be put on by Dan Kaminsky on the DNS vulnerabilities that I've heavily covered as follows: Dan Kaminsky breaks DNS, massive multi-vendor patch coming, details at Black Hat Vegas '08 ...
- Tags: Black Hat, Webcast, DNS, Flaw, Domain Names, Networking, Internet, Nathan McFeters
- Blog posts 2008-07-15
- Can Mozilla's security metrics project end the patch-counting nonsense?
- In partnership with indie security consultant Rich Mogull left Mozilla has launched a valuable Security Metrics Project that could help to -- we can only hope -- put an end to the silly notion that patch-counting helps to determine a product's security posture. The idea is...
- Tags: Mozilla Corp., Rich Mogull, Security, Ryan Naraine
- Blog posts 2008-07-03
- Malware pain for my users
- While many of my users have run into snags with malware requiring a thorough cleaning and a few requiring reformatting, most have largely avoided the extensive infestations that plague so many Windows users. By and large, they are a safe bunch of surfers, use Firefox for web browsing, don't...
- Tags: Apple Macintosh, Malware, Microsoft Windows, Microsoft Windows XP, Desktops, Apple Mac OS X, Operating Systems, Viruses And Worms, Security, Software, Hardware, Apple Mac OS, Christopher Dawson
- Blog posts 2008-03-18
- Apple QuickTime under siege
- Not counting silent undocumented fixes, Apple has patched at least 32 security flaws affecting QuickTime in 2007. Last year, the QuickTime patch count was 28. Five were documented in 2005. Judging by the public release of details -- and exploit code -- for zero-day flaws affecting...
- Tags: Apple QuickTime, Vulnerability, Apple Inc., Digital Music, Digital Media, Personal Technology, Consumer Electronics, Ryan Naraine
- Blog posts 2007-11-30
- News to know: OLPC; Android spat? Live Documents; Apple; Old software never dies
- Notable headlines: Larry Dignan: OLPC: How do we gauge success? Will 490,000 units do? Christopher Dawson: OLPC on sale through 31 December. Ed Burnette: Sun/Google Android "fight" overblown. Garett Rogers: Is the $10 million Android contest actually slowing developers down? Rich...
- Tags: Software, Tom Foremski, Google Inc., Larry Dignan, Apple Inc., One Laptop Per Child Project, Tom, Tools & Techniques, Virtualization, Management, Hardware
- Blog posts 2007-11-25
- How desktop virtualization will save your company from Generation Y
- * Ryan Naraine is on vacation. Guest Editorial by Rich Mogull Recently I was watching an interesting 60 Minutes episode on the new generation of "Millennials" entering the workforce. I always thought they were called Generation Y, but I guess that term is...
- Tags: Desktop, Generation Y, Mankind, Tool, Desktop Virtualization, Virtualization, Storage Management, Productivity, Utility Computing, Hardware, Storage, Ryan Naraine
- Blog posts 2007-11-25
- Bad Leopard, bad!
- Bad Leopard, bad!RE: Bad Leopard, bad!stick with Tiger!quickSilver works perfect for me...not sure what version i'm on but i'm pretty sure it's the latest- can't use my miglia AlchemyTV DVR though since it uses the APE GUI enhancements software... my update went fine even without removing this software... miglia says...
- Tags: Firewalls, Desktops, SECURITY, OSX, Leopard
- Discussion threads 2007-11-02
- Mogull leaves Gartner
- Mogull leaves GartnerBig loss for GartnerRich is an excellent analyst and well respected by his peers and clients.Rule of ThumbIt appears that when a fortune 500 CEO decides security is important it is because without that security the CEO might wind up like the CEO of Enron or of WorldCom....
- Tags: scalability, security, Gartner Inc., Oracle Corp.
- Discussion threads 2007-08-08
- Mogull leaves Gartner
- Rich Mogull, one of the more prominent analysts covering the hacker/security space, is leaving Gartner Research to take a stab at private consulting.Mogull left, a research vice president in Gartner's Information Security and Risk practice, is leaving on August 24th to pursue independent consulting gigs that fall outside of a...
- Tags: Analyst, Gartner Inc., Ryan Naraine
- Blog posts 2007-08-08
- Mac hack challenge sparks (another tired) debate
- Like an old grandfather clock, the controversy surrounding last months CanSecWest MacBook hijack contest just keeps on ticking, loud enough to stick in your ear but so monotonous and tiring that its near impossible to perk up and listen. Just as Apple was releasing a patch for the QuickTime flaw,...
- Tags: Responsible disclosure, Punditocracy, Pen testing, Patch Watch, Oracle, Open source, Microsoft, McAfee, Hackers, Google, Firefox, Exploit code, Data theft, Cisco, Browsers, Botnets, Apple, Spyware and Adware, Viruses and Worms, Vulnerability research, Wi-Fi security, Windows Vista, Zero-day attacks
- Blog posts 2007-05-08
- Mac hijacked in "PWN 2 0WN" contest
- Via Rich Mogull, a fully patched Mac OS X MacBook has been rooted in the "PWN 2 0WN" contest at the CanSecWest security conference. Dino Dai Zovi developed the exploit last night and will get the $10,000 reward but Shane Macaulay who pulled off the exploit will get to...
- Tags: Desktop, Apple, Security, News, Malware alert
- Blog posts 2007-04-20
- Apple strongly denies getting information from SecureWorks
- Apple strongly denies getting information from SecureWorksStrong wordsGeorge:That is a strong denial. Thank you for posting that.apologies...are in order from those persons that have been accusing Apple of "parsing" words. This is as strong an indication so far that M&E and SecureWorks have not been playing this thing...
- Tags: SECURITY, Blogging, Apple Inc., SecureWorks Inc., Maynor, JetJaguar
- Discussion threads 2006-09-25
- Apple patches Wi-Fi but refuses to give researchers credit
- [UPDATE 9/25/2006: The word "due" was dropped from the title because it is now disputed by Apple. Apple has issued a strong denial that anything useful was given to them and responded to this blog in detail.]After all the controversy, it turns out that there really are critical vulnerabilities...
- Tags: David Maynor, Brian Krebs
- Blog posts 2006-09-23
- Is cyberterrorism a phantom menace?
- Is cyberterrorism a phantom menace?YES!Finally, someone with some common sense being quoted by the media. I agree 100%, we have yet to see a case of cyberterrorism.Spammers launching DOS attacks against sites like Yahoo, etc. is not cyberterrorism. Crackers breaking into sites to steal credit card data is not...
- Tags: SECURITY, cyberterrorism
- Discussion threads 2003-11-11
- Information Security Best Practices: Understanding Government & Industry Guidelines
- This RSA Security webcast, recorded in March 2005 and now available on demand, features presentations by Rich Mogull, Research Director for Gartner, and Laura Robinson, Compliance Analyst for RSA Security, on topics related the regulatory landscape and how laws like Sarbanes-Oxley, HIPAA, Basel II, OFAC, and others impact information security....
- Tags: Information Security, RSA Security Inc., Industry, Government, Regulatory Compliance, Basel II, Security, Human Resources, Policies And Procedures, Financial Services
- White papers
- << Previous
- page 1 of 1
- Next >>
White Papers and Webcasts