Security News


Authors provide black-hat insights into security

Since 1996, security guru Dr. Gary McGraw has been admonishing software developers to consider threats and vulnerabilities early in the development cycle. For attackers, it's all about getting to exploitable code, McGraw believes, which ultimately puts the security onus on programmers.

Review: CAS/Tester

CAS/Tester is an innovative product for the .NET developer that shows how your code will react under a variety of security limitations.

HP extends 'Adaptive Enterprise' with TruLogica buy

Hewlett-Packard (HP) Co. last week signed a definitive agreement to buy TruLogica, a Dallas-based provider of identity management software. HP plans to integrate the privately owned company's ID management technology into its OpenView Select Access software to form "a complete federated identity management offering."

The shifting sands of Windows

Windows XP Service Pack 2 is coming. Are you ready to rewrite your applications...again?

Sanctum and Mercury integrate security, QA tools

Web application security software vendor Sanctum Inc., Santa Clara, Calif., has announced a partnership with Sunnyvale, Calif.-based Mercury Interactive Corp. to integrate security testing tools into the QA environment.

Of Money, Information, and Bugs

Microsoft is offering a bounty for writers of malicious code. Maybe they should take some of that money and spend it internally.

IBM reaches security 'checkpoint'; champions SOA

Announcement of new support for Web services security across IBM's WebSphere infrastructure and Tivoli identity management middleware.

Pervasive tightens data security

New versions of three products address data availability, accountability and integrity without having to write additional code.

BEA launches third phase of security plan

Launch of BEA WebLogic Enterprise Security (WLES) first new product resulting from February acquisition of CrossLogix.

CEO complacency blamed for bug incursion

Analysis of the recent wave of virus attacks.

Architecting Security for Web Services

Ponder the security challenges posed by Web services, how to address them with security architecture, and what security architecture can offer going forward when XML traverses firewalls.

Managing for Security

For many reasons, enterprise application security is an inefficient and expensive model. Obviously there''s no such thing as a completely secure application, but enterprises must target an acceptable level of risk.

Microsoft, IBM and others unveil new security specs

New standards rolled out at the Catalyst conference.

CA expert says security model is changing

Company says content management, not content blocking, is the future.

WSDL rolls along

A cornerstone of Web services, the WSDL spec continues to evolve; experts hope upcoming versions can bring it to a new level; a look at today’s WSDL tools.

Blueprinting Your Database Landscape

Crafting a map of your database servers can help you build better systems, from increased security to solid disaster-recovery plans. Take these steps to get your server network in order.

CA, Pinkerton take on security cases

Venerable security takes on high-tech crime.

Pervasive buys security software firm

Database maker adds security function to its BI software.

RSA integrates ID management; discloses 'Nightingale'

Company offers new way to use its security product, and unveils a defense against attacks from inside and out.

Upcoming Training Events

0 AM
Visual Studio Live! San Diego
September 8-12, 2025
Live! 360 Orlando
November 16-21, 2025
Cloud & Containers Live! Orlando
November 16-21, 2025
Data Platform Live! Orlando
November 16-21, 2025
Visual Studio Live! Orlando
November 16-21, 2025