FREE MEMBERSHIP - Create your personalized Bitpipe Service!  Members: Sign in 
Search Bitpipe: 
  Search Help
IT Management  >   Systems Operations  >   Security  >  

Security Threats

RSS Feed    Add to Google    Add to My Yahoo!
ALSO CALLED: Day-zero Threats, Zero Day Threats, Internet Threats, Security Breaches, Virus Threats, Day Zero Threats, Computer Security Threats, Network Security Threats, Threat Mitigation, Network-level Threats, Network Threats, Network Level Threats, Spyware Threats, Internet Security Threats, Application Security Threats, Threat Management, Software Security Threats, Information Security Threats, Threats, Web Threats
DEFINITION: Parameter tampering is a form of Web-based hacking event (called an attack) in which certain parameters in the Uniform Resource Locator (URL) or Web page form field data entered by a user are changed without that user's authorization. This points the browser to a link, page or site other than the one the user intends (although it may look exactly the same to the casual observer). Parameter tampering  … 
Definition continues below.
Security Threats Reports
1 - 25 of 204 Matches Previous Page  |  Next Page
Survival Guide: Securing Networks without Borders Show
sponsored by Cisco Systems, Inc.
WEBCAST: In today’s era of borderless networks, minimizing your exposure to outside threats is more crucial than ever. In this video, discover how to reduce the potential attack surfaces available to data thieves without buying any new hardware or software. Learn the latest methods employed by hackers to gain access to your network and how to eliminate them
Posted: 20 Nov 2009 | Premiered: 20 Nov 2009


This Month in the Threat Webscape for October 2009
sponsored by Websense, Inc.
VIDEO: The Websense Security Labs Threatscape delivers information about breaking security research topics and today's advanced Internet threats. This Month's 'In the Threatscape' is a review of October's Web threat activity. Watch the video to learn more.
Posted: 20 Nov 2009 | Premiered: 20 Nov 2009


Defense in Depth: How Application Whitelisting Can Increase Your Desktop Security
sponsored by Faronics
WHITE PAPER: No single technology guarantees security, however application whitelisting covers situations not addressed by firewalls or anti-virus utilities. This paper focuses on how application whitelisting can be effectively used as an important layer in your security scenario.
Posted: 20 Nov 2009 | Published: 20 Nov 2009


Regulatory Requirements Driving Enterprise Role and Entitlement Management
sponsored by Guardium
VIDEO: Learn how the requirements from various regulations like HIPAA, state privacy laws, and PCI DSS drive the use of role management technology to enable compliance. In this video, Richard Mackey summarizes the technological components that support compliance-focused role management and recommends a strategy for integrating IAM into the enterprise.
Posted: 20 Nov 2009 | Premiered: 20 Nov 2009


Countdown: Top Five Technology Challenges of Role and Entitlement Management
sponsored by Guardium
PODCAST: When an organization commits to implementing the technologies and tools to support role and entitlement management, it faces a number of sizable challenges. In this podcast, expert Richard Mackey counts down these organizational, process, and technical challenges that block the successful deployment of role and entitlement management technology.
Posted: 20 Nov 2009 | Premiered: 20 Nov 2009


Software Reliability: Building Security In
sponsored by Ounce Labs, an IBM Company
VIDEO: Fixing software security vulnerabilities during development is expensive, difficult and time-consuming. But fixing them after deployment is far more expensive and counterproductive. In this video featuring security expert Diana Kelley, learn state-of-the-art techniques for building a secure software development process.
Posted: 19 Nov 2009 | Premiered: 19 Nov 2009


Countdown: Selling security in the SDLC
sponsored by Ounce Labs, an IBM Company
PODCAST: Building security into the software development lifecycle takes more than just a plan. You need the support of both the development and security/audit organizations to make it work. This podcast, featuring Diana Kelley, presents a plan for selling the value of security to all of the constituencies who matter in your organization.
Posted: 19 Nov 2009 | Premiered: 19 Nov 2009


Intelligent Defense: SIMs for Threat Management
sponsored by Q1 Labs
VIDEO: Learn about security information management systems (SIMs) and how they support a security information lifecycle of collection, alerting, reporting, and forensics.
Posted: 18 Nov 2009 | Premiered: 18 Nov 2009


Secrets of Log Management
sponsored by Q1 Labs
VIDEO: This video offers an in-depth look at a number of log management strategies that security administrators use in their organizations today and explain their "secrets" for success.
Posted: 18 Nov 2009 | Premiered: 18 Nov 2009


Why Traditional Anti-Malware Solutions Are No Longer Enough
sponsored by AVG Technologies USA, Inc.
WHITE PAPER: Security used to be a straightforward matter. Email was the primary attack vector. Simply installing an anti-virus product and using caution with attachments was enough. Today's threats are rapidly evolving, stealthy, and targeted. Read this paper to find out where your current security solutions may be lacking and how to close that gap.
Posted: 17 Nov 2009 | Published: 17 Nov 2009


The Keys to Disaster Recovery Planning: i365’s EVault Disaster Recovery Solutions help protect you from losing valuable data due to complete site outage
sponsored by i365, A Seagate Company
WHITE PAPER: Disasters happen in many ways and can disrupt or even completely destroy your business. What happens if and when disaster strikes? Do you have duplicate copies of your mission critical data stored offsite? How fast and reliable will your recovery of information be? Will your company survive?
Posted: 16 Nov 2009 | Published: 16 Nov 2009


Pocket E-Guide: Web 2.0: Problem or Paranoia?
sponsored by Sophos Inc.
EGUIDE: Web 2.0 has radically changed the way information is disseminated and consumed. However, there must be controls in place to create a security balance that prevents serious risks. This Pocket E-Guide reviews the pros and cons of various Web 2.0 strategies for security and compliance. Find out if updating employee usage policies is enough.
Posted: 16 Nov 2009 | Published: 16 Nov 2009


Information Security Magazine November 2009: Stay in Control
sponsored by Information Security Magazine
EZINE: Unmanaged changes to IT systems and networks can recklessly increase risk to enterprises. The key is rolling out an accepted change management process, and sticking to it. Read this magazine and find out how a consistent change management process puts you in charge.
Posted: 16 Nov 2009 | Published: 16 Nov 2009


Pocket E-Guide: Expert Analysis of the Top Ten Windows Security Threats
sponsored by ESET
EGUIDE: This Pocket E-Guide provides expert insight into the common weaknesses that exist in today's Windows-based systems. Explore the top ten most frequent Windows security vulnerabilities and how to counter these threats. Discover the pivotal role proper malware protection, usage of firewalls, and updated patches play in a secure Windows environment.
Posted: 16 Nov 2009 | Published: 16 Nov 2009


Pocket E-Guide: The Top Causes of Windows Server Security Risks
sponsored by ESET
EGUIDE: In this Pocket E-Guide, you will find insight into the causes of persistent Windows server security risks. Learn how a lack of standards adoption, delegation, and coordination among security teams can lead to compliance gaps and security breaches, and why a lack of cohesive priorities within a team can create significant Windows vulnerabilities.
Posted: 16 Nov 2009 | Published: 16 Nov 2009


Rip and Replace: Choosing the Best Strategy when Switching Antivirus Solutions
sponsored by ESET
DATA SHEET: Switching security solutions on a large scale can be challenging for any organization. A well-planned strategy can minimize the impact on business processes without sacrificing security. The most effective approach is one that is customized for the unique needs of your organization. Check out this data sheet to learn about one such strategy.
Posted: 13 Nov 2009 | Published: 13 Nov 2009


Presentation Transcript: Insider Threats -- an Interview with Bill Crowell -- Former Deputy Director of the NSA
sponsored by Imperva
PRESENTATION TRANSCRIPT: Bill Crowell, former Deputy Director of the NSA, is interviewed in this presentation transcript. He talks extensively about insider threats, shares some stories from the trenches, and discusses the nature of cybercrime. Bill also covers the importance of sensitive data protection – especially around mission-critical applications and databases.
Posted: 12 Nov 2009 | Published: 12 Nov 2009


Podcast: Insider Threats - an Interview with the Former Deputy Director of the National Security Agency - NSA
sponsored by Imperva
PODCAST: Bill Crowell, former Deputy Director of the NSA, is interviewed in this podcast. He talks extensively about insider threats, shares some stories from the trenches, and discusses the nature of cybercrime. Bill also covers the importance of sensitive data protection –- especially around mission-critical applications and databases.
Posted: 12 Nov 2009 | Premiered: 12 Nov 2009


Anatomy of a Database Attack
sponsored by Imperva
WEBCAST: Corporate databases are in constant danger. Outside criminals can exploit web applications and employees with malicious intent present an even greater threat. This webcast traces the steps involved in breaking into a database and presents a reference architecture and checklist for implementing iron-clad database security measures.
Posted: 12 Nov 2009 | Premiered: 12 Nov 2009


The Anatomy of an Insider: Bad Guys Don't Always Wear Black
sponsored by Imperva
WHITE PAPER: Rather than focusing on process or technology, this paper examines people. It is based on years of experience and research and offers detailed analysis into the "anatomy of an insider" with the goal of illuminating that which makes insiders tick. Read on to learn more about insider threats and how to protect your organization from them.
Posted: 12 Nov 2009 | Published: 12 Nov 2009


Top-10 Guide for Protecting Sensitive Data from Malicious Insiders
sponsored by Imperva
WHITE PAPER: For years, organizations have worked diligently to lock down their perimeters only to find out that the most devastating enemy is already inside. Insider threats abound -- both careless mistakes and malicious attacks. This guide will explore the top ten ways to protect sensitive data from the very people that need access to it.
Posted: 12 Nov 2009 | Published: 12 Nov 2009


Making Sense of Man-in-the-Browser: Strategies for Mitigating a Menacing Threat
sponsored by RSA, The Security Division of EMC
WHITE PAPER: The increasing implementation of strong two-factor authentication has challenged fraudsters to develop new methods to target online users. One of the latest tactics fraudsters are employing is the use of Trojans to launch man-in-the-browser attacks. Read on to learn more about this type of attack and how to defend against it.
Posted: 12 Nov 2009 | Published: 12 Nov 2009


Complete Security: Out of Reach or Attainable Goal? A Guide to Successfully Mitigating Risk
sponsored by Solera Networks
WHITE PAPER: No security system will keep your organization absolutely secure. As long as assets exist on the network, you have to assume that some threat exists that is capable of finding and exploiting the vulnerabilities in your security. If it doesn’t exist today, it probably will tomorrow. Read this paper to learn a better way of thinking about security.
Posted: 11 Nov 2009 | Published: 11 Nov 2009


eGuide: Signature Vs. Anomaly-Based Behavior Analysis
sponsored by TippingPoint
EDITORIAL RESOURCE GUIDE: Firewall and intrusion prevention systems across various enterprise networks routinely log hundreds of hacker attempts a day. To prevent successful attacks, two key detection approaches have evolved: signature-based and anomaly-based network behavior analysis (NBA). This E-Guide details each approach along with the pros and cons.
Posted: 10 Nov 2009 | Published: 10 Nov 2009


Presentation Transcript: WWW - World Wide Weaponization
sponsored by ESET
PRESENTATION TRANSCRIPT: The growth of the internet brought about massively scalable distributed systems which have proved advantageous not only for governments, businesses and end-users, but also for criminals. In this webcast, review past, present, and future considerations regarding cybercrime, and discover next-generation methods of combating weaponized software.
Posted: 10 Nov 2009 | Published: 10 Nov 2009

1 - 25 of 204 Matches Previous Page   1  2  3  4  ... Next Page
 
SECURITY THREATS DEFINITION (continued): …  can be employed by hackers and identity thieves to surreptitiously obtain personal or business information about the user.Countermeasures specific to the prevention of parameter tampering involve the validation of all parameters to ensure that they conform to standards concerning minimum and maximum allowable length, allowable numeric range, allowable character sequences and patterns, whether or not the parameter is actually required to conduct the transaction in question, and whether or not null is allowed. Whitelisting (accepting only allowable input) is more effective than blacklisting (refusing … 
Security Threats definition sponsored by SearchSecurity.com, powered by WhatIs.com an online computer dictionary
Home | About Us | Contact Us | Advertise with Us | Partner with Us | Site Index
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines

Definitions: A B C D E F G H I J K L M N O P Q R S T U V W X Y Z Other   TechTarget - The Most Targeted IT Media
TechTarget Corporate Web Site  |   Media Kits  




All Rights Reserved, Copyright 2000 - 2009, TechTarget | Read our Privacy Statement