|
Solution Search:
User Search Results
ASK THE EXPERTS
Industry expert Jeremiah Grossman recently wrote a piece on his blog about pivot attacks. What are pivot attacks, and how can we prevent them from affecting our organization? In a pivot attack, an attacker targets a lower security host, where less security is in place, which in turn enables him or her use the access to the lower security host to exploit the access privileges granted to that host to attack a higher security host with better probability of success.
In a traditional... SECURITY TIP OF THE DAY
Innovations in operating system virtualization and server hardware permanently changed the footprint, architecture, and operations of data centers. As such, these innovations have also had a significant impact on how auditors must approach the security assessment of these environments This chapter from IT Auditing: Using Controls to Protect Information Assets discusses auditing virtualized environments, and begins with an overview of common virtualization technologies and key controls.
IT Auditing: Using Controls to Protect Information Assets
Table of contents: Download Chapter 11 of "IT Auditing: Using Controls to Protect Information Assets" as a .pdf
Background |
SECURITY DOWNLOADS
By Egnyte
for business. Enterprise class security, granular access control and mapped drive.
Check out this free trial of a cloud storage solution that’s designed for... SECURITY ARTICLES
A massive data breach at a third-party company that handles customer email messaging for 150 major banks, retailers and... The assault against RSA, the security division of EMC Corp., began with two waves of spear phishing attacks using an...
Less than a month after a sophisticated attack successfully breached its signature product line, RSA, the Security... Most observers would agree that Microsoft's Security Development Lifecycle (SDL) has come a long way since the early... SECURITY COLUMN
Our featured theme this month on SearchSecurity.com has been the Payment Card Industry Data Security Standard, specifically PCI DSS 2.0.
To get the shameless plugs out of the way, be sure to check out our PCI DSS 2.0 virtual seminar for in-depth tutorials on PCI DSS 2.0, and our Eye on PCI Compliance series offers detailed analysis on the key trends surrounding the... More... |