Archive for April, 2007

12 Crisis Lessons from India

Monday, April 30th, 2007

This special crisis management report from CIO India shares the experiences of 12 CIOs who recall unique crises - including government policy changes, industrial action, floods and power blowouts- that interrupted their businesses and tested their IT organizations. Even without contingency plans in place, these businesses had to find a way to grapple with these crises to keep their companies on course. While many companies worldwide now hire IT talent from India, it’s interesting to note that the prevalence of IT systems in Indian business is still relatively new. As an IT leader from the manufacturing sector notes: “[For a long time], situations in business in India were not so dependant on IT that it would lead to a shutdown or something of that sort.” It’s only in the past eight years that IT has revolutionized the way business functions - through thick and thin. A few CIOs believe […]

Read more…

Marshal aims to secure laptop content

Monday, April 30th, 2007

Will extend its messaging security to control PC files too
Messaging security developer Marshal is to launch content security software for PCs - but there are questions over how it will work for remote users, as it will require users to be online before they can get permission to copy or share new content.…
Tag:400m, security vendors, surf control websense

Read more…

MIX - Microsoft to open source some of Silverlight

Monday, April 30th, 2007

Microsoft is expected to show a new friendliness to the open-source community by unveiling plans to release the source code to a part of its Silverlight technology at MIX 07 next week, according to sources familiar with the company’s plans. Sources said Microsoft will also release a beta of Silverlight, a recently unveiled browser plug-in that allows Web content providers to offer a rich video and interactive media experience from directly within Web sites. The technology leverages Vista’s new graphics framework, Windows Presentation Foundation (WPF), and Microsoft is promoting it as a direct competitor to Adobe Systems Inc.’s Flash tool and delivery mechanism for rich multimedia content on the Web. Specifics on which aspect of Silverlight will be open-sourced were not available, and Microsoft’s public relations firm declined to comment Friday. The final version of Microsoft’s Expression toolset for building rich Internet applications (RIAs) also may make an appearance […]

Read more…

Microsoft explains how the ANI bug got baked into Vista

Monday, April 30th, 2007

In a postmortem of last month’s Windows animated (.ANI) cursor vulnerability, one of Microsoft’s security development gurus Friday spelled out how the bug sneaked into Vista. Michael Howard, an authority on Microsoft’s Security Development Lifecycle (SDL) — a multipart initiative that aims to get developers to design more secure code — posted an extensive entry on the brand-new SDL blog that outlined lessons learned from the ANI vulnerability. “SDL is not perfect, nor will it ever be perfect,” Howard acknowledged Thursday. “We still have work to do, and this bug shows that.”
Tag:aim, array, bill subject, caller id data, caller id spoofing, committee head, crack, crimes, financial fraud, harassment, lawmakers, presidents, senate floor, senate judiciary committee, spoof, violators voice vote

Read more…

Guidelines for Securing Radio Frequency Identification (RFID) Systems

Sunday, April 29th, 2007

The National Institute of Standards and Technology (NIST) developed this document in furtherance of its statutory responsibilities under the Federal Information Security Management Act (FISMA) of 2002, Public Law 107-347. This document presents information that is independent of particular hardware platforms, operating systems, and applications. The emphasis is on RFID systems that are based on industry and international standards, although the existence of proprietary approaches is noted when they offer relevant security features not found in current standards.
Tag:accused, gary mckinnon, hacker, hackers, infosec, pentagon pops

Read more…