DoS Attacks and Continuity of Operations
By Sean Wilkins, Contributor at CIOZone
These types of attacks are typically launched from computer robots (bots) which are exploited computers which have an Internet connection. These bots are then directed by central controllers to do the tasks assigned. These tasks vary but can include initiating a DDoS attack on a specified target. Now when the combined bandwidth of thousands of bots comes into play, any company can have their Internet connectivity partially or completely blocked.
Broadcasting Vulnerabilities Hinders Security
By Tom Groenfeldt, Technology Journalist - Contributor at CIOZone
The way most of the vendors do PC security makes it very easy for the bad guys to circumvent their software pretty quickly, said John Viega, vice president of engineering at McAfee and author of a new book, The Myths of Security: What the Computer Security Industry Doesn’t Want You to Know. The technologies generally have not gotten good enough fast enough, and there hasn’t been the best collaboration between vendors, even though they do collaborate, he added. They are getting better, but some vendors, who market by publicly announcing vulnerabilities in popular software packages, do more to hurt than help…
ISR News: CA To Expand Breach Notification
Excerpts From Blog.Wired.com
California State Sen. Joe Simitian, the man responsible in large part for the nation’s first data-breach notification law, has introduced new legislation that would require companies doing business in the the state to provide more information in their breach notification letters to consumers, and to send simultaneous notices to state authorities. “The future of e-commerce is directly linked to the public’s confidence in online protection and data security,” he said. “Enlightened self-interest should have made the hi-tech industry an advocate rather than an adversary for this legislation.”


