Security News

New National Academies Report on Crypto Policy
2018-02-16 15:17

The National Academies has just published "Decrypting the Encryption Debate: A Framework for Decision Makers." It looks really good, although I have not read it yet. Not much news or analysis yet....

Critical "Same Origin Policy" Bypass Flaw Found in Samsung Android Browser
2017-12-29 12:33

A critical vulnerability has been discovered in the browser app comes pre-installed on hundreds of millions of Samsung Android devices that could allow an attacker to steal data from browser tabs...

Transparency as a Policy
2017-12-19 17:47

Transparency is an interesting concept, especially for cyber security organizations. I say that as I recently experienced a complete lack of transparency – and what followed was confusion turned...

The 10 misconceptions of using a policy-based approach for access control
2017-10-23 14:55

The principle of Attribute Based Access Control (ABAC) has existed for many years. It’s the evolution from simple access control lists and role-based access control, to a highly flexible system...

In wake of recent attacks, it’s time to revisit your patch policy
2017-10-06 14:30

Hurricanes hammered the United States last month and cyber attacks continue to rain down throughout the world. The EternalBlue v1SMB vulnerability continues to be a focus of attacks. Recent...

What’s the use of a privacy policy? (Help Net Security)
2017-09-01 13:25

In 2012 it was reported that “16% of Internet users claim to always read privacy policies of the sites and online services with which they share their private information”. I would probably...

China Enforces Real-Name Policy to Regulate Online Comments (The Hackers News)
2017-08-29 01:06

If you reside in China, your Internet life within the borders will soon be even more challenging. Last Friday, China's top Internet regulator announced a new set of rules that would force citizens...

We can’t rely black swans: Three areas to improve cyber policy now (Help Net Security)
2017-08-09 12:45

What will it take for cybersecurity policy to finally catch up to the digital age? I get this question often, and increasingly I worry that it will take a true “black swan” event to shock the...

Addressing the deficit in cyber security workforce and national policy (Help Net Security)
2017-07-24 12:45

Whether they like it or not, in this day and age nearly all organizations have to think about their cybersecurity posture and find a way to minimize cybersecurity risk. But the main problem about...