Showing posts with label Security. Show all posts
Showing posts with label Security. Show all posts

Tuesday, 13 September 2011

Opera Mobile 11.1 Update 2 Brings Security, Bug Fixes

Opera continues to work on improving its alternate browsers, most recently releasing an update to Opera Mobile for Android containing an assortment of bugfixes and security improvements.

Opera Mobile 11.1 update 2 tightens-ups the security of the browser's cache files. Apparently, it had previously been setting reduced permissions that would have let other apps read and modify the cache, creating an avenue for a potential exploit.

If things just weren't looking right when you tried Opera Mobile in the past, you might want to check out some of the display-related fixes in this release. There are specific changes related to resolving blacked-out screens on start-up, making sure colors display correctly, and a host of font-display fixes. Some of the font fixes are specific to Samsung Galaxy smartphones, while others improve rendering for all models.

While we may have our eye on Opera Mobile as a smartphone browser, if you're rocking a tablet, check for the new Honeycomb large-screen mode compatibility mode.

The updated Opera Mobile is available now in the Android Market. Keep in mind, this is Opera's stand-alone browser. For the server-based browser that uses Opera's proxies to speed-up page rendering on slower connections, check out Opera Mini.

Source: Opera
Thanks: Paras


View the original article here


This post was made using the Auto Blogging Software from WebMagnates.org This line will not appear when posts are made after activating the software to full version.

Friday, 9 September 2011

AVG Security Suite For Windows Phone Promises To Protect You

Let's make this clear right from the beginning: Windows Phone is nothing like Android in terms of security threats. While there is a cornucopia of malware apps for the Google platform, there's really no risk when it comes to Windows Phone (and there was no serious risk back in the day of Windows Mobile either).

Regardless of that, AVG has released a Security Suite for the Redmond Platform which thankfully is free, since there is nothing to harm your phone. It is advertised to protect you though while being online from phishing (malware is there too but it really shouldn't be, the way we know it). According to Rafael Rivera, the scanner will look EICAR test strings and the word Hebrew (not sure what to make of this).

The way things are (and most probably the way things are going to be with Windows Phone), there will be no real need for a security scanner as far as a stock user is concerned. Jailbroken devices with sideloaded apps might be exposed in the future but that a completely other story.

Source: Marketplace, Within Windows
Via: WPCentral


View the original article here


This post was made using the Auto Blogging Software from WebMagnates.org This line will not appear when posts are made after activating the software to full version.

Thursday, 28 July 2011

Will the government get serious on cloud security, data privacy?

When the federal government finally does undertake the task of legislating around cloud computing, it seems very likely that security measures and data privacy will drive the ship. On Tuesday the TechAmerica Foundation’s CLOUD2 commission announced a data- and security-heavy set of recommendations to guide the federal government’s efforts in regulating, adopting and promoting the cloud, following up on a recent Brookings Institution discussion on a proposed Cloud Computing Act that focuses on those two issues. This isn’t surprising, given that these are two areas in which the government can most directly affect the nature of the cloud.

I covered TechAmerica’s CLOUD2 commission when it kicked off in April, highlighting its mission to advise the Obama administration on cloud computing best practices. The commission is comprised of representatives of more than 70 organizations and is spearheaded by Salesforce.com CEO Marc Benioff. Of the 14 recommendations it made today, 8 of them are focused on security and/or data privacy. They call for everything from the creation of an industry-wide security framework to updating the Electronic Communications Privacy Act (also the goal of the Digital Due Process coalition) to leading the charge to open up transnational data flows across cloud infrastructure.

The commission also calls for, among other things, increased data portability among clouds — something Commissioner Kurt Roemer of Citrix told me it would back in April — and for the modernization of our broadband infrastructure to better support cloud services.

Here’s one particularly meaty recommendation from the report summary released today:

Transnational Data Flows – Recommendation 6 (Government/Law Enforcement Access to Data): The U.S. government should demonstrate leadership in identifying and implementing mechanisms for lawful access by law enforcement or government to data stored in the cloud.

Under this recommendation, the Commission suggests three steps to increase clarity around the rules and processes cloud users and providers should follow in an international environment. Without U.S. leadership and cooperative international efforts, the world will face a far more complex legal environment, one that is not conducive to fully leveraging the cloud. The three steps are: (1) modernize legislation (the Electronic Communications Privacy Act) governing law enforcement access to digital information in light of advances in IT; (2) study the impact of the USA PATRIOT Act and similar national security laws in other countries on companies’ ability to deploy cloud in a global marketplace; and (3) have the U.S. government take the lead on entering into active dialogues with other nations on processes for legitimate government access to data stored in the cloud and processes for resolving conflicting laws regarding data.

A fuller version of the report is available here.

The CLOUD2 commission’s recommendations come just more than a month after the Brookings Institution convened a panel to discuss proposed legislation called the Cloud Computing Act of 2011. As I explained at the time, that potentially forthcoming bill will focus on cybersecurity practices and punishments, as well as providing clarity on moving and storing data across international boundaries. The transcript of that panel is available here.

Again, it’s not surprising that much of the talk about how the federal government might get involved with cloud computing focuses on security and privacy. After all, these are areas where it can more easily effect change because it can define policy rather than trying to dictate technological standards. Only the federal government can enact federal security-breach-notification laws like CLOUD2 suggests or rewrite the ECPA to bring the Fourth Amendment up to speed to how and where data is stored in the cloud. The federal government is certainly the only institution in our country that can enter into the international data treaties that both CLOUD2 and the senators proposing the Cloud Computing Act think are necessary.

On topics such as interoperability and uniform security protocols, though, the government likely will have to tread lightly and lead with its checkbook. Although both are laudable goals, they’re probably best left for the companies involved to solve. Cloud computing might be a sea change in the way we access IT, but it’s ultimately not too different from past standardization efforts that were driven by the private sector looking to increase revenues while making consumers’ lives easier. They weren’t always pretty, but it’s probably not the government’s place to decide how clouds will be built or how they’ll work together.

In fact, private-sector efforts around both interoperability and security standards already in place. The Cloud Security Alliance is focused on security, and a new organization called the Open Cloud Initiative launched today to push for interoperability among cloud platforms.

The government does have a mega IT budget, though, and is pushing a cloud-first strategy when it comes to buying new resources. Amazon Web Services, Google and others already have proven willing to bend to the government’s needs in order to get its business, so perhaps it can drive industry standards around interoperability and security by demanding certain levels of both in order to get federal business.

Image courtesy of TechAmerica Foundation

Related research and analysis from GigaOM Pro:
Subscriber content. Sign up for a free trial.

window.fbAsyncInit = function() {FB.init({appId: 180650338636285, status: true, cookie: true, xfbml: true});FB.api({method: 'links.getStats',urls: 'http://gigaom.com/cloud/will-the-government-get-serious-on-cloud-security-data-privacy/'},function(response) {jQuery('#react-fb-count-button').html(response[0].commentsbox_count);});FB.Event.subscribe('comment.create', function(response) {var ajaxurl = 'http://gigaom.com/wp-admin/admin-ajax.php?action=new_fb_comment&post_id=';jQuery.get(ajaxurl + 383900);});};var e = document.createElement('script');e.type = 'text/javascript';e.src = document.location.protocol + '//connect.facebook.net/en_US/all.js';e.async = true;document.getElementById('fb-root').appendChild(e);

var _comscore = _comscore || []; _comscore.push({ c1: "2", c2: "6036014" }); (function() { var s = document.createElement("script"), el = document.getElementsByTagName("script")[0]; s.async = true; s.src = (document.location.protocol == "https:" ? "https://sb" : "http://b") + ".scorecardresearch.com/beacon.js"; el.parentNode.insertBefore(s, el); })();

Click to log in with: Not you? Remember me Submitting comment...
;(function($){$.fn.trackClick = function(){// track the clicktry {_gaq.push(['_trackEvent', this.parents('[id!=""]:first').get(0).id, 'clicked', (this.text() || this.children('img:first').attr('alt'))]);}catch (err) {}// wait a moment for the tracking to process, then follow the linksetTimeout('document.location = "' + $(this).attr('href') + '"', 200);};$('#brand-explorer a, #navigation a, .widget-wrap a').click(function () {$(this).trackClick();return false;}); })(jQuery);

View the original article here


This post was made using the Auto Blogging Software from WebMagnates.org This line will not appear when posts are made after activating the software to full version.

Monday, 11 July 2011

Top 5 Business Security Secrets


It's no secret that globally businesses are navigating through troubled times. The global economic downturn is having a catastrophic effect on businesses. When well known high street names that have been in business for up to a hundred years go bust, then businesses need to evaluate their business development strategy. One other factor which adds further misery to businesses trying to survive a recession is that crime increases exponentially. Crime against businesses is one of the first sectors to rise in a credit crunch. Large numbers of people are laid off or made redundant,they lose their income and many struggle to come to terms with the low income provided by the welfare system.

Those with criminal tendencies will turn back to committing acts of theft and fraud to raise money. Organised criminals also experience financial losses in any economic downturn and sadly businesses are usually the criminal's first port of call. My top 5 business security secrets are designed to assist all businesses to increase their security effectiveness and minimise the security risks of theft and fraud.

Top 5 business security secrets #1- Conduct A Security Audit

Every business has security requirements, the problem is most managing directors and owners fail to realise this critical factor until it's too late. By too late I mean it generally takes an incident of employee theft, fraud or an act of vandalism or product tampering for the MD or owner to consider implementing security counter measures.

This is a positive first step; however security is best applied as a preventative procedure, rather than post incident. If security counter measures are applied post incident then the insurance premiums will have already been increased, or flagged for increase during your next trading year. Many MD's and business owners then take it upon themselves to conduct a security audit. This generally is pre-programmed for failure as unfortunately most MD's and business owners don't know what they don't know.

By this I mean, very few are skilled security specialists. The MD or owner security audit is generally driven by price, i.e. they will usually purchase security products based on the cheapest price, whereas a security audit specialist will focus on quality security products that will stand the test of time and assist in providing business support to the company as the business grows and prospers. A security audit for an SME size business can often be conducted in one to two days.

Top 5 business security secrets #2- Form A Threat Management Unit

It is safe to say that most business applications and concepts that materialise in the USA tend to find their way across the ocean to the UK at anything between 5 to 15 years later. Threat Management Units or TMU's as they are known in businesses, are big in the USA and it's only a matter of time before UK businesses jump on the bandwagon. The role of a threat management unit is to analyse all perceived and actual threats to any business and then implement business continuity strategies to ensure the business doesn't fail because of critical incidents. All business aspects are covered by the TMU including, business growth, joint venture partnerships, due diligence, directors legal responsibilities to employees, employee checks, risk assessment and risk management,crisis planning, downsizing, redundancies, and a host of others. A threat management unit generally consists of two or three company employees, usually the senior company director or partner, the head of personnel or human resources and a manager. The threat management unit is then supplemented by a security consultant or a security director. ( see top business security secrets #5 for further information on security director.) It is important to realise that a threat management unit can and should be formed by even the smallest businesses as the strategies put in place can ensure that small, medium and large businesses can survive and thrive in the event of any critical incident.

Top 5 business security secrets #3- Design And Test Your Business Continuity Plan

It's difficult enough surviving the current economic downturn without having to face the corporate trauma of losing your business because an external critical incident had an indirect or direct impact on your business. In the aftermath of the London7/7 terrorist bombings many businesses were affected by this critical incident. Sadly a number of them although not directly affected by the bombing were forced to close down. Many of them were small and medium size businesses. Local coffee bars and retail outlets closed because the police and security services closed down the streets to pedestrians where these businesses were located. Some of the pedestrian restrictions lasted several weeks as scenes of crime officers meticulously investigated these areas. Few small or medium businesses can cope with a loss of all revenue for several weeks.

However if any of these businesses had a business continuity plan in place alternative methods would have been pre-identified to continue with income generation during the time of crisis. Business continuity plans are not restricted to acts of terrorism. They include any type of critical incident which can happen to any type of business small or large. For example; A fire or a flood

destroys your office or shop, an electrical fault blows all your computer and communications equipment. An employee steals valuable data and sells it to your competitors. A disgruntled former employee returns to your business to harm members of your work force. A business continuity plan is a fantastic investment for any business who are seeking long term sustainable business growth.

Top 5 business security secrets #4- Research Your Business Competitors

All intelligence agencies conduct ongoing research and surveillance on their competitors. The old cliché of knowledge is power that every business coach and mentor bands around is severely flawed. Knowledge is not power. Power comes from the actions you take from gaining knowledge. I'm not suggesting you hire a platoon of former KGB agents to spy on your competitors although I personally know that this service is available although generally only to larger businesses. What I do advocate is the ancient Sun Tzu Art of War principle of, 'know your enemy-know yourself'. If this appears somewhat extreme then it's time for a reality check, your business competitors are your business enemies and the war is driven by annual turnover and increased profits, hence the need to research your business competitors.

With such advanced research technology offered by computers and the internet researching your business competitors has never been easier. For example most online search engines now offer competitor analytics which allows you an insight into how much they are paying for online marketing campaigns and who they are targeting. Just as it is in covert intelligence operations, being one step ahead of your competitor is key to success. In business this translates to long term business growth, sustainability, increased turnover and profits.

Top 5 business security secrets #5- Hire A Security Director

This business security secret #5 should not be dismissed because you think it is too expensive or beyond your reach. A select number of security experts and consultants hire themselves out to businesses on an annual retainer basis. The benefits of this concept are many. You and your business will have the ear of a security expert on call 24/7. You will not have to pay a full time salary for this security director, nor will you have to pay PAYE, national Insurance, holiday or sick pay, nor will you have to pay executive director benefits. In fact I know of some security directors who are retained by small business consultancy agencies for small to medium size businesses for the salary equivalent of a junior administrator. The fees payable for your security director are of course tax deductible. When you factor that this security director generally has a wealth of security experience and contacts which will all assist in your business growth and expansion of your business, then it's a very small price to pay.

A professional security director will be able to produce your security audit, and assist with your risk assessments and prepare a business continuity plan in case your business faces an unexpected crisis.




Dr. Mark D. Yates The British American Security Expert has conducted high risk security operations in 42 countries for government, military special forces, Intelligence & security agencies. He is a published author & 5 major TV documentaries have been broadcast about him. Want to claim his FREE 52 security tips then visit him at [http://www.asecurityonestopshop.co.uk] - [http://www.asecurityonestopshop.co.uk] or e-mail him at drmarkdyates@aol.com



This post was made using the Auto Blogging Software from WebMagnates.org This line will not appear when posts are made after activating the software to full version.