2015 was another difficult year for Cybersecurity practitioners and organizations working to defend themselves against an increasingly innovative, aggressive, and situationally aware set of adversaries. Large breaches made headlines, while many individuals and smaller organizations were victimized by well monetized crimeware[1] (especially ransomware[2]) and various email and other online account compromises. We see susceptibility to social engineering, unpatched (vulnerable) software, and a … [Read more...]
MobileED – Device Security and Content Filtering
With ever expanding mobility usage in the workplace and K-12, the need for real device security is more pressing than ever. Mobile Device Management (MDM) solutions are being touted as a security solution, when really they are an asset management tool. For real device security, you need a multi-layered tool which addresses both the security of the device, so users cannot remove your settings, as well as the content those users are allowed to access. MobileED provides both, with fine … [Read more...]
Java Security
Most software security vulnerabilities are quietly patched by vendors and don’t make front page news. The recently publicized Java 7 vulnerability made headlines after being announced by US-CERT (Vulnerability Alert #625617) on January 10. (US-CERT stands for US Computer Emergency Readiness Team and is a part of the Department of Homeland Security.) Mainstream news outlets such as CNN and NBC began carrying the story on Friday, January 11, 2013 reporting that the Department of … [Read more...]