Archive for the ‘CyberSecurity’ Category

h1

Cloud Computing: Managing File Transfers in the Cloud: 10 Points to Demystify the Process

May 14, 2012

Managed file transfer is a well-accepted way for organizations to share business files point-to-point, quickly, reliably and securely. This is a subject that requires attention, especially when it comes to thorny issues, such as enterprise security and compliance. MFT uses different types of applications to securely transfer data from one computer to another. This small but important area of IT management earned attention in recent years after IBM bought Sterling Commerce for more than a $1 billion, and MFT specialist Ipswitch merged with Message Way. Over the years, despite having lost a bit of its novel cachet, MFT is as effective as ever. But now, due to greater demands for the secure transfer of data through cloud systems, MFT is being refreshed as it morphs and expands to play a critical role in moving large data sets (the so-called big data)—as well as traditional business files—through the cloud. Here, eWEEK offers some key data points about MFT, the cloud, and big data. Our expert source is Robert Fox, director of B2B/EAI Software Development at Liaison Technologies in Alpharetta, Ga. Liaison Technologies cleanses and validates business data for master data management purposes and securely integrates and manages complex business information on-premise or in the cloud. Read More

h1

The Winners of WSJ’s Data Transparency Weekend

April 17, 2012

magine installing a service on your cellphone that lets you see all the data – from location to address book info – transmitted by your phone. Or a simple website where you and your friends could have private chats that couldn’t be read by the most aggressive spying agencies. Or a service that lets you know how many tracking codes are on a site before you clicked on it.

Lam Thuy Vo
One of the coders at the Data Transparency Weekend models the official T-shirt from the event.

Over the weekend, more than 100 computer programmers built those tools and many more at the Wall Street Journal’s first-ever Data Transparency Weekend in New York.

The event was an outgrowth of the Journal’s extensive reporting about how companies and government’s are increasingly using technology to collect personal data. The event was designed to promote the creation of tools that let people see and control their personal data.

After a weekend of coding, nearly 20 projects were submitted for judging on Sunday. The entries were judged by Alessandro Acquisti, professor of information technology and public policy at Carnegie Mellon, Sid Stamm, Web security and privacy strategist at Mozilla and Andrew McLaughlin, former deputy chief technologist at the White House and vice president at Tumblr.

Danny Weitzner, the deputy chief technologist at the White House, handed out the certificates to the winning teams. The winners were:

Outstanding Scanning Project: TOSBack2 – a project to scan the Web to build a “living archive” of all privacy policies online.

Outstanding Education Project: PrivacyBucket – software that lets users of the Chrome Web browser view the type of demographic estimates that Web tracking companies make about them based on their Web browsing history.

Outstanding Control Project: Cryptocat – an instant messaging service that lets people engage in encrypted chats inside their Web browsers or on their phones. Extra bonus: the program lets people generate random numbers (which are needed for encryption) by shaking their phone – allowing the creators to say that their program is powered by dance moves.

Judge’s Choice Award: Site Scoper – a website that scans for tracking files and sensitive content on websites before you visit it.

“Ready for Primetime” Award: MobileScope – a service that lets people see what data is being transmitted without their knowledge by their cellphone. It also offers ad-blocking and do-not-track services for cellphones.

The judges also dreamed up their own three award categories:

The Zuckerberg/Systrom Memorial Award for Opportunistic Optimism Award: Pestagram, for its blatantly commercial mashup of hot Web technologies Instagram and Pinterest.

Best Listener Award: The Price of Free, for the fact that the project was generated by Professor Acquisti’s speech kicking off the weekend, in which he challenged participants to find ways to quantify how much people are paying with their data for free services.

And, finally, The Soup Cans and String Winner: Ostel, for its work on technology that allows people to make encrypted cellphone calls using voice-over-the-Internet technology.

Source: The Winners of WSJ’s Data Transparency Weekend

h1

Apple holds the master decryption key when it comes to iCloud security, privacy

April 5, 2012

Apple can potentially decrypt and access all data stored on iCloud servers. This includes contacts, notes, unencrypted e-mails, application preferences, Safari bookmarks, calendars, and reminders.

This was recently confirmed by a source speaking to Ars, and security researcher and forensic data analysis expert Jonathan Zdziarski agreed. “I can tell you that the iCloud terms and conditions are pretty telling about what the capabilities are at Apple with respect to iCloud, and suggests they can view any and all content,” Zdziarski told Ars.

In particular, Zdziarski cited particular clauses of iCloud Terms and Conditions that state that Apple can “pre-screen, move, refuse, modify and/or remove Content at any time” if the content is deemed “objectionable” or otherwise in violation of the terms of service. Furthermore, Apple can “access, use, preserve and/or disclose your Account information and Content to law enforcement authorities” whenever required or permitted by law. Apple further says that it will review content reportedly in violation of copyright under DMCA statutes.

“If iCloud data was fully encrypted, they wouldn’t be able to review content, provide content to law enforcement, or attempt to identify DMCA violations,” Zdziarski told Ars.

Source

h1

Biometric market set to grow to $14.685 billion by 2019.

March 26, 2012

Frost & Sullivan has carried out a new assessment of the global biometrics market that predicts 2010 revenues of $4.49 billion will increase to $14.685 billion by 2019. Universal adoption of biometric passports will be the driving force in this growth as so-called eGates are implemented at borders around the world. Portable devices used by the police and the military will also become increasingly common in the fight against crime and terrorism, according to the report. Frost & Sullivan also suggests that biometrics will be almost universally adopted in the identification of citizens through IDs, driver’s licenses and healthcards complete with biometric capabilities. Research analyst Krzysztof Rutkowski explained: “The civil and military biometric market will be highly influenced by the universal adoption of biometric passports. This will pave the way for the adoption of other measures, such as eGates, that will enhance the biometric possession experience.”

h1

Health Officials Seeking More Secure Mobile Devices

March 14, 2012

Mobile devices, from smartphones to tablet computers, are increasingly used in hospitals and other health care settings. But regulators fear that manufacturers have not taken adequate steps to safeguard privacy and security with the technology.

To help seal those gaps, the Department of Health and Human Services (HHS) has launched the Privacy & Security Mobile Device project. The initiative will be managed by the Office of the National Coordinator for Health Information Technology’s (ONC) Office of the Chief Privacy Officer and the HHS Office for Civil Rights.

The project also will work to develop case studies to help communicate to health care providers how to secure and protect health information when using mobile devices. An example of a provider use case scenario is the health care provider who is at home and on call, using a laptop to read a patient’s electronic medical record.

“The rationale behind this specific project is that the use of mobile devices in health care has skyrocketed in the last year,” said Joy Pritts, JD, chief privacy officer for ONC, in an interview. “The concern is that health information is some of the most sensitive information that there is.”

h1

Free cloud services compared

March 13, 2012

Not all cloud services are built alike. We take a look at some of the most popular options — what they’re for, how you can use them and, most importantly, what you get.

h1

RSA Unveils Industry-Leading Capabilities For Threat Information Sharing

February 28, 2012

“A shortage of specialized security expertise is a serious challenge for most organizations dealing with advanced threats,” says Bret Hartman, RSA’s chief technology officer. “Collaboration with outside partners is often the most efficient and convenient way to scale advanced threat capabilities and talent. Technology solutions such as RSA’s experimental collaboration platform will help companies with limited experience in advanced threats augment their capabilities, and will enable broader sharing of threat intelligence across the industry. We’d like others in the global security community to join us in exploring new methods, such as this type of framework, to share threat information on a much larger scale.”