Optimal Security : the Lumension Blog

Subscribe

Data Extortion – A Real World Example

I was surprised to read about the on-going attempted extortion case involving an apparent data breach at Express Scripts, a pharmacy benefit management company based in St. Louis, MO. The company received an anonymous letter containing Personally Identifiable Information (names, SSNs, DOBs, and some prescription information) from 75 customers. It then demanded an unspecified payment [...]

Department of Defense Issues a Tasking Order Regarding the Use of USB Sticks Due to Recent Security Event

A recent event in which an unidentified USB thumb drive introduced a Trojan onto both the SIPRNet and NIPRNet, has caused a DOD-wide reaction to “suspend use of thumb drives on all classified and unclassified networks.” This directive is meant to contain the Trojan activity primarily on systems using Microsoft Windows.
While this serious incident requires [...]

Bank on it: An end to anti-virus

Has the anti-virus market become obsolete? It seems that some network administrators are opting out in favor of newer, more flexible options.
Brent Rickels, senior vice president of First National Bank, headquartered in Valley Mills, Texas, recalls that when the license renewal for his company’s previous anti-virus tool was getting close, it just seemed that the [...]

Visa Sets PCI Compliance Deadlines for Rest of World

The largest merchants operating overseas will have less than two years to secure credit card transactions, Visa announced on Monday.
Level-one retailers — those processing more than six million Visa transactions per year — must prove adherence to the Payment Card Industry Data Security Standard (PCI DSS) by Sept. 30, 2010, Visa said in a news [...]

Why Whitelisting is the Future of Security

In this video I discuss the changes in the threat landscape that has resulted in the need to protect against the unknown with Whitelisting (Application-Control).

Cutting the Cost of Compliance without Compromising Security

In this video I discuss how organizations can effectively address compliance while still cutting costs.

A Practical Approach to IT Security Risks

In this Videocast, Information Security Magazine’s Andy Briney and I sat down to discuss how organizations can implement a practical approach to identifying, prioritizing and responding to IT security risks. See how this type of proactive, policy-based approach can establish, enforce and maintain desired security postures.

Welcome To Our Optimal Security Blog

Why start another security blog? That was the question we asked ourselves at the start of this project.

As data breaches and malicious security viruses and attacks plague global business networks, we wanted to provide an open forum to encourage two way conversations with our ecosystem:  our customers, partners, key influencers, and IT users about the [...]

New Obama Election and Google Malware Tactics Lure Users

The election has created yet another opportunity for the bad guys to use a popular event to entice users to click on URLS and infect their PC. The current Barack Obama mania is blinding many to the normal common sense they apply to opening emails and surfing the Web.
Malware, using the media hype surrounding Barack [...]

November 2008 - Patch Tuesday Security Briefing

Video Blog discussing Patch Tuesday November 2008.





Don't Miss This!
BrightTALK
On-Demand Webcasts
from BrightTALK™
Are you a BrightTALK member?

Many of Lumension webcasts are also available on the BrightTALK platform.



Lijit Search