Public sector orgs flunk OWASP Top 10 

Public sector orgs flunk OWASP Top 10

Research finds 84 per cent of web apps deemed unacceptable against security benchmarks.
SANS builds digital certificate checker 

SANS builds digital certificate checker

Free tool will monitor changes to web brower certificate lists.
New mass SQL injection attack could be forming 

New mass SQL injection attack could be forming

More than 4,000 websites infected in less than 24 hours.
Microsoft confirms graphics engine flaw 

Microsoft confirms graphics engine flaw

Out-of-band patch unlikely.
Hackers take aim at Cold Fusion 

Hackers take aim at Cold Fusion

Development tool flaws targetted.
Microsoft criticised by SANS for releasing vulnerability details while the patch release is delayed 

Microsoft criticised by SANS for releasing vulnerability details while the patch release is delayed

Microsoft's advance notifications of patching are putting Mac users at risk, according to SANS.
SANS report shows security logs no longer "geek toys" 

SANS report shows security logs no longer "geek toys"

Organisations use security log data to a greater extent than ever before, according to the 2009 Annual Log Management Survey from the SANS Institute.
Researchers plan 'honeypot' security project 

Researchers plan 'honeypot' security project

Security firm Sans Institute is asking developers to volunteer for a new research project due to launch in the coming months.
Last-ditch warning: 'think before you click', during Olympics 

Last-ditch warning: 'think before you click', during Olympics

The opening ceremony for the much anticipated Beijing Olympic Games is only hours away and security experts have sent out an eleventh hour warning to internet users – ‘think ...
SANS says reverse engineering of Cisco patches possible 

SANS says reverse engineering of Cisco patches possible

Three vulnerabilities in Cisco products are open to exploitation, warned the SANS Internet Storm Center.
SANS Institute gets local presence 

SANS Institute gets local presence

Technology research and training organisation SANS Institute has appointed Shearwater Solutions, a provider of information security services, as its local representative in ...
US introduduces certification for  developers 

US introduduces certification for developers

With web applications - and their security risks - becoming more ubiquitous by the day, the SANS Institute has launched its first-ever certification program for code developers.
SANS Institute threatened in zombie spam message 

SANS Institute threatened in zombie spam message

The US SANS Internet Storm Center on Thursday received a malware sample that contained code with a not-so-endearing message for the organisation.
Human error named in latest SANS Top 20 

Human error named in latest SANS Top 20

The SANS Institute, (SysAdmin, Audit, Network, Security Institute), has for the first time named human error to its twice-annual Top 20 Internet Security Attack Targets list, a ...
SANS Top 20: OS X, Firefox more frequent targets 

SANS Top 20: OS X, Firefox more frequent targets

Mac OS X and Mozilla Firefox – widely considered safer than mainstream counterpart Microsoft Internet Explorer (IE) – are rapidly becoming new sources for vulnerabilities, ...
SANS to offer grad degrees 

SANS to offer grad degrees

Information security experts will soon have a new alma mater to call home: the SANS Institute.
SANS list shows hacker strategy shift 

SANS list shows hacker strategy shift

Cyber-criminals have switched targets, the latest edition of the SANS Top 20 reported this week.
SANS report flags backup software flaws 

SANS report flags backup software flaws

Flaws in data back-up products were among the software problems cited as most serious in a quarterly update of the SANS top 20 most critical vulnerabilities released Monday.
SANS issues list of top vulnerabilities for Q1 

SANS issues list of top vulnerabilities for Q1

The SANS Institute, together with security experts from government and industry, released a list of the most critical internet security vulnerabiliites for the first quarter of ...
SANS calls to shame 'underperforming' computer science departments 

SANS calls to shame 'underperforming' computer science departments

SANS research director Alan Paller has criticised educational institutions for a lack of focus on security issues. The comments come with the release of SANS top 20 list, which ...
1
Sign up to receive SC Magazine email newsletters
   FOLLOW US...
Most Read