vulnerabilities
Defending Against New and Emerging Database Threats for 2009
White Paper Application Security, Inc.and their SHATTER research team have developed the industry's largest knowledgebase of database vulnerabilities. IT Security is constantly evolving and threats increasingly target the database. [13 Nov 2009]
Converged Threats on the Security Landscape
White Paper The essence of a converged threat is the combination of viruses, spyware, phishing, spam and other attempts at attack or exploitation of vulnerabilities that can disrupt networks and/or lead to theft or unwanted... [13 Nov 2009]
Continuous Testing of Production Web Applications
White Paper Almost 70% of the vulnerabilities disclosed each month shows information security teams the importance of focusing on Web application security. Web application security is a key top-of-mind concern for general managers,... [13 Nov 2009]
8 Elements of Complete Vulnerability Management
White Paper This gives the bad guys a wealth of attack methods to find vulnerabilities in network. Off late threat landscape offers attackers a much larger selection of attack points in the form of open firewall ports for business... [13 Nov 2009]
New Web Threats in 2009
White Paper It also showcases the risks and business impact these vulnerabilities represent, and helps one understand the advantages of "in the cloud" hosted services in mitigating these risks. The new web borne threats attacking... [13 Nov 2009]
Web Application Security: The Truth About White Box Testing Vs. Black Box Testing
White Paper Ultimately white box testing is not sufficient to secure applications: simply put organizations that rely solely on white box technologies will be exposed to vulnerabilities in their applications, thus making it an... [13 Nov 2009]
Effectively Securing Virtualized Data Centers: How an Identity-Aware Network Can Accelerate Server Virtualization Benefits
White Paper In addition, server virtualization while offering some major architectural benefits, may at the same time, introduce new vulnerabilities if not properly addressed. For security directors at large organizations, securing... [13 Nov 2009]
New Meaning for ROI: "Risk of Insiders"
White Paper Courion will explain how once control over access is established, organizations can move on to identifying the greatest areas of risk, and establishing governance over the vulnerabilities. This paper addresses the... [13 Nov 2009]
Using Skybox Solutions to Achieve NERC Compliance: Achieve Efficient and Effective NERC Compliance by Automating Many Required Controls and Processes
White Paper To identify and quantify the risk to Cyber Assets, information about the network, controls, policies, asset classification and vulnerabilities must be programmatically analyzed. The North American Electric Reliability... [13 Nov 2009]
Two Security Vulnerabilities in the Spring Framework's MVC
White Paper While performing source-code security review engagements, members of the Ounce Labs' Advanced Research Team (ART) discovered and exploited the following two vulnerabilities in the commonly used Spring Framework's MVC... [12 Nov 2009]
Weathering a Perfect Storm: The Collision of Application Vulnerabilities and Data Privacy
White Paper Compliance audits typically test whether the intrusion detection system, intrusion prevention system or firewall applications are probably working. These network-centric controls do not necessarily speak to data security. [12 Nov 2009]
Taking Care: The Need for Secure Software in Healthcare
White Paper However, that same technology puts confidentiality at risk, as most attacks aimed at altering or accessing confidential data succeed because of vulnerabilities in the applications. While protective technologies such as... [12 Nov 2009]
Knowledge Is Power: Your Software Is Trying to Tell You Something
White Paper Buried in the millions of lines of source code that power organization are the vulnerabilities that put data at risk, and the security mechanisms that protect it. Armed with the right source code analysis tool, a... [12 Nov 2009]
The Latest in "Hybrids": Deployment Models for Email Security
White Paper As network and application vulnerabilities continue to grow in the presence of an increasingly aggressive and sophisticated mix of attack vectors, organizations continue to struggle with balancing the survival needs of... [12 Nov 2009]
Top 10 Ways Shavlik Simplifies Patch Management
White Paper Security vulnerabilities are uncovered on a daily basis, and managing the security patches that address them can be an endless and often complicated task for every network administrator. Without the right automated... [12 Nov 2009]