- Follow this blog:
- RSS
- Email Alert
IT Security
Selena Frye
TechRepublic Staff
Selena Frye

-
Dotcom's new venture: Mega security or Mega problems?
Patrick Lambert looks at the hype and criticism surrounding Kim Dotcom's new website, Mega. Does it really offer perfect privacy through encryption?
Posted by Patrick Lambert | February 4, 2013, 6:00 AM PST
-
The case against Aaron Swartz: Why we should be concerned
Patrick Lambert looks as the charges facing Internet activist Aaron Swartz before his death. Why were the penalties so severe and how easy would it be for others to get in the same kind of legal...
Posted by Patrick Lambert | January 29, 2013, 6:00 AM PST | Latest comment by info@...
-
Find out which mobile apps are stealing your identity
Mobile device malware is approaching exponential growth. Mobile apps are the vehicle of choice to deliver malware. Michael P. Kassner looks at our options.
Posted by Michael Kassner | January 28, 2013, 6:39 AM PST | Latest comment by viProCon
-
Aaron Swartz, activist for Internet freedom: You will be missed
Michael P. Kassner remembers how Internet censorship was narrowly averted thanks in large part to Aaron Swartz.
Posted by Michael Kassner | January 21, 2013, 9:33 AM PST | Latest comment by Charles Bundy
-
New controversy on the effectiveness of antivirus software
Patrick Lambert looks at a recent report that tested antivirus and found detection rates "abysmal." But not everyone thinks the tests were fair.
Posted by Patrick Lambert | January 21, 2013, 6:00 AM PST | Latest comment by dogknees
-
Growing attack surfaces require new security model
Patrick Lambert describes the intelligence-based security model -- a response to new attack surfaces that don't fit into the standard perimeter-defense model.
Posted by Patrick Lambert | January 16, 2013, 6:00 AM PST | Latest comment by JCitizen
-
Vulnerable medical devices: A clear and present danger
Technology is helping to save lives, but vulnerable medical devices and computers are a real risk. Michael P. Kassner asks the experts about the state of healthcare security.
Posted by Michael Kassner | January 14, 2013, 7:26 AM PST | Latest comment by jeff@...
-
Security Operations Center: Not just for huge enterprises
Patrick Lambert describes the role of the Security Operations Center (SOC) in an organization, and why its implementation is now in reach of smaller companies.
Posted by Patrick Lambert | January 10, 2013, 6:00 AM PST | Latest comment by AlarmsystemsHouston
-
Governance, risk, and compliance: Change auditing and security
Dominic Vogel takes a look at GRC software that provides change auditing functionality for organizations to meet governance, risk, and compliance goals. Here, he chats with a rep for NetWrix.
Posted by Dominic Vogel | January 8, 2013, 6:00 AM PST
-
Your medical records, HIPAA, and the illusion of privacy
HIPAA is supposed to protect our private medical records from prying eyes, but there are many exceptions and gaps as Michael P. Kassner found out while doing some research.
Posted by Michael Kassner | January 7, 2013, 7:44 AM PST | Latest comment by Gdl_kinG
-
Battling the Google Redirect virus
Consultant Bob Eisenhardt recounts his frustrating experience trying to track down and get rid of a client's search-redirect virus. Here's how he finally ditched it.
Posted by Bob Eisenhardt | January 2, 2013, 10:56 AM PST | Latest comment by Jane3344
-
Android apps and SSL: Where's the padlock?
Are we making dangerous assumptions about Android apps and SSL connections? It seems like it, but Michael Kassner asks the experts to be sure.
Posted by Michael Kassner | December 31, 2012, 6:00 AM PST | Latest comment by Michael Kassner
-
How to deal with DDoS extortions
Patrick Lambert looks at some of the ways you can protect your website from DDoS extortion threats.
Posted by Patrick Lambert | December 26, 2012, 6:00 AM PST
-
Top 10 posts in IT Security for 2012
Here are the most read posts of the year in IT Security.
Posted by Selena Frye | December 20, 2012, 2:00 PM PST
-
The 12 networking truths applied to information security
Alfonso Barreiro relates the 12 networking truths to the information security field.
Posted by Alfonso Barreiro | December 19, 2012, 9:00 AM PST | Latest comment by water-man
-
Cloud services: The threat of side channels
Cloud services offer convenience and potential cost savings, but a potential security issue may negate the benefits. Michael Kassner digs into some of the latest research.
Posted by Michael Kassner | December 17, 2012, 9:43 AM PST | Latest comment by doug.cronshaw@...
-
Don't ignore physical security: Cameras and surveillance systems for the SMB
Patrick Lambert offers tips on taking care of your workplace's physical security with affordable cameras and surveillance systems.
Posted by Patrick Lambert | December 11, 2012, 6:00 AM PST | Latest comment by kyleethompson
-
Reporting online crime: What to do when you're the victim
Online fraud shouldn't happen, but it does. And when it does, how should one report the crime, and to whom? Michael Kassner would like to share what he's learned.
Posted by Michael Kassner | December 10, 2012, 7:27 AM PST | Latest comment by JCitizen
-
John McAfee tripped up by the smartphone
The case of John McAfee just gets weirder. Here's how he was tracked down in Guatemala, where he is currently seeking asylum from Belize authorities.
Posted by Selena Frye | December 5, 2012, 8:19 AM PST | Latest comment by NickNielsen
-
The basics of using a proxy server for privacy and security
Patrick Lambert goes over the basics of how proxy servers work and why they are used to add security and privacy.
Posted by Patrick Lambert | December 5, 2012, 6:30 AM PST | Latest comment by Tony Hopkinson
-
List open ports and listening services
You should turn off any services you don't actually need so that they will not become avenues of attack for security threats. Different systems will have different services running by default,...
Posted by Chad Perrin | April 15, 2008, 8:47 PM PDT | Latest comment by jackhard
-
Hackers: From innocent curiosity to illegal activity
Researchers asked why talented youth skilled in "computerese" evolve into criminal hackers. Michael P. Kassner explains their unexpected results.
Posted by Michael Kassner | May 6, 2013, 7:59 AM PDT | Latest comment by mattohare@...
-
Cloud-service contracts and data protection: Unintended consequences
There are things your cloud-service (Facebook, Amazon, Google, Dropbox, etc.) contracts aren't telling you. Michael P. Kassner interviews an attorney concerned about what's not being said.
Posted by Michael Kassner | May 13, 2013, 11:52 AM PDT | Latest comment by Michael Kassner
-
DropSmack: Using Dropbox to steal files and deliver malware
Michael P. Kassner interviews a digital forensic scientist who uses Dropbox to compromise targeted networks -- something the bad guys probably figured out as well.
Posted by Michael Kassner | April 15, 2013, 7:46 AM PDT | Latest comment by Michael Kassner
-
Battling the Google Redirect virus
Consultant Bob Eisenhardt recounts his frustrating experience trying to track down and get rid of a client's search-redirect virus. Here's how he finally ditched it.
Posted by Bob Eisenhardt | January 2, 2013, 10:56 AM PST | Latest comment by Jane3344
-
Understanding what motivates Chinese hackers
Michael P. Kassner, with the help of a noted academic and author, looks at what motivates Chinese hackers. It may not be what you think.
Posted by Michael Kassner | April 22, 2013, 10:16 AM PDT | Latest comment by HAL 9000
-
BoxCryptor vs. DropSmack: The battle to secure Dropbox
Can DropSmack malware be stopped? Michael P. Kassner asks the creators of BoxCryptor if it is up to the task of securing the Dropbox file-synchronization service.
Posted by Michael Kassner | April 29, 2013, 10:30 AM PDT | Latest comment by Michael Kassner
-
How to spoof a MAC address
MAC address filtering for wireless networking isn't real "security". Anyone who pays any attention to current trends in wireless security at all should know that MAC filtering is less effective...
Posted by Chad Perrin | January 22, 2008, 1:28 PM PST | Latest comment by Doug Vitale
-
Running the gauntlet: Tips for achieving your CISSP
One of the most highly regarded security certifications is the CISSP. Dominic Vogel offers these nine tips for becoming certified based on his own experience.
Posted by Dominic Vogel | April 23, 2013, 5:30 AM PDT | Latest comment by JCitizen
-
The basics of using a proxy server for privacy and security
Patrick Lambert goes over the basics of how proxy servers work and why they are used to add security and privacy.
Posted by Patrick Lambert | December 5, 2012, 6:30 AM PST | Latest comment by Tony Hopkinson
-
Aaron Swartz legacy lives on with New Yorker's Strongbox: How it works
Strongbox was Aaron Swartz's final project. Michael P. Kassner explains why The New Yorker requested a way to keep sources and their information secret.
Posted by Michael Kassner | May 20, 2013, 7:17 AM PDT | Latest comment by tylerpitchford
-
DDoS attack methods and how to prevent or mitigate them
Patrick Lambert covers the various methods attackers use to launch distributed denial of service attacks, and the precautions you can take to prevent or at least, mitigate these types of events.
Posted by Patrick Lambert | October 15, 2012, 11:24 AM PDT
-
Software-Defined Networking: How it affects network security
SDN technology is set to rewrite the book of networking. Michael P. Kassner looks into how SDN will improve security, and where it's vulnerable.
Posted by Michael Kassner | April 8, 2013, 7:13 AM PDT | Latest comment by Michael Kassner
-
Use PuTTY as a secure proxy on Windows
Last month, I wrote about using OpenSSH as a secure Web proxy on UNIX and Linux systems. This time, I'll show you how to do the same thing on Microsoft Windows using PuTTY -- probably the single...
Posted by Chad Perrin | March 10, 2008, 4:30 PM PDT | Latest comment by abaabaa
-
Dropbox: Convenient? Absolutely, but is it secure?
A potential security lapse and possibly misleading statements are plaguing Dropbox, a hugely popular file-syncing app. What are the issues and is concern justified?
Posted by Michael Kassner | June 13, 2011, 8:03 AM PDT | Latest comment by kprivigyi@...
-
Security lessons from the 2013 Verizon Data Breach Report
Verizon's latest report on data breach statistics offers security pros a guide to the most persistent threats and where attention should be focused to defend against them.
Posted by Alfonso Barreiro | May 15, 2013, 6:00 AM PDT
-
The future of IT security compliance: 201 CMR 17.00
Why should you be concerned about a security rule that is part of the State law of Massachusetts -- especially if you aren't in business there? Donovan Colbert explains how compliance regulations...
Posted by Donovan Colbert | April 30, 2013, 6:00 AM PDT | Latest comment by dcolbert@...
-
Hacker vs. cracker
The word "hacker" gets used in a pejorative sense by journalists an awful lot. Some people think this is perfectly reasonable; others find it offensive, and recommend an alternative term for that...
Posted by Chad Perrin | April 17, 2009, 1:20 PM PDT | Latest comment by wizard57m-cnet
-
New McAfee patent hints at a more walled-off online world
A McAfee patent hints at content filtering at the user level in order to block sites that offer pirated content.
Posted by Patrick Lambert | May 3, 2013, 9:00 AM PDT | Latest comment by public_domain
-
10 services to turn off in MS Windows XP
As I pointed out on 19 October, in point number four of the article 10 security tips for all general-purposes OSes, an important step in the process of securing your system is to shut down...
Posted by Chad Perrin | November 7, 2007, 10:02 AM PST | Latest comment by JonB2008

































