Windows IT Pro is the authoritative and independent resource for windows nt, windows 2000, windows 2003, windows xp. Features a collection of resources and magazines for windows IT professionals.
  
  
  Advanced Search 


April 09, 2008

RSA Conference 2008, Day 1

RSS
Subscribe to Windows IT Pro | See More Products / Software Articles Here | Reprints | Or get the Monthly Online Pass—only $5.95 a month!
back to blog index

The biggest story of the RSA Conference 2008 meeting of security professionals yesterday (opening day) was Department of Homeland Security Secretary Michael Chertoff's keynote address. He said that enhancing cybersecurity is a major focus for this year. He talked about a national cybersecurity initiative "that would be almost like a Manhattan Project to defend our cybernetworks." He promoted a partnership between the federal government and businesses to fight cybercrime. He encouraged private enterprises to take advantage of what government has learned in its fight against cybercriminals and to send their "best and brightest" to work in government cybersecurity efforts. You can view this and any of the other keynote addresses here.

The liveliest presenter award goes to Dan Kaminsky for his talk "Black Ops of Web 2.0: DNS Rebinding Attacks." He introduced his grandmother, who was in the audience and had brought some baked goods for attendees to enjoy, thus enabling Dan to inform the audience that he had "session cookies." Here's the essence of the talk, as described in the session abstract: "At the root of web security is the same origin policy, which allows most resources to communicate with each other only if they come from the same host name. But one name can be mapped via DNS to many IP addresses, some local and others not. The effect? You come to my page, I VPN onto your LAN. And that's only the beginning." If you want to learn more about this vulnerability, keep an eye out at Dan's Web site, where he said he'd post the session slides.

The most passionate security educator prize goes to Paul Ducklin of Sophos. We scoured the Moscone Center in San Francisco for a quiet spot with an electrical outlet for Paul's laptop so he could demo a couple pieces of malware for me. (Note that he did not connect wired or wirelessly to the Internet--he created a self-contained network on his machine--to avoid inadvertently spreading the bad stuff to others.) I came away convinced of how easy it is to become the victim of a malicious Web site--for example, to be duped into providing authentication credentials to a fake banking site. Sophos recently announced Sophos Endpoint Security and Control 8.0, which added Network Access Control (NAC) technology to the product's antivirus, antispyware, host intrusion prevention, application control, and firewall capabilities.

In a meeting on the RSA Expo floor, Larry Bridwell and Karel Obluk of AVG Technologies reinforced how prevalent infected Web sites are becoming by showing me the results of a Google search (I forget the search topic, but it was pretty innocuous) on a computer protected by AVG Internet Security 8.0. Red flags marked multiple sites containing suspicious content. Scary! AVG announced the availability of AVG Internet Security 8.0 Network Edition yesterday at the conference. The 8.0 versions of the standalone and network AVG Internet Security products incorporate the LinkScanner technology that AVG acquired in its Exploit Prevention Labs purchase late last year.

Microsoft 's keynote speech featured Craig Mundie engaging in a "fireside chat" with Chris Leahy about end to end trust. Microsoft also released a white paper on that topic. And Microsoft's Ryan Hamlin and Josue Fontanez briefed me about yesterday's release of the first public beta of Microsoft Forefront "Stirling," the code name that encompasses new versions of Forefront Client Security, Forefront Security for Exchange, Forefront Security for SharePoint, and Forefront Threat Management Gateway (formerly Internet Security and Acceleration (ISA) Server) and a management console that will be used for all the Forefront products. Ryan emphasized that the console is intended to differentiate Stirling from other security products on the market, integrating the different components and bringing down the cost of ownership by making them easier to manage. Josue demonstrated Stirling's "dynamic response" capabilities, which let an administrator define any specific security policy's response plan (including the taking of an immediate action). A beta "refresh" should occur by the end of the year, and the general availability of the Stirling console and components is targeted for mid-2009.

And finally, CrossTec's Jeff Richards brought me up to date on the Activeworx product line. CrossTec announced the release of Activeworx 5.0 yesterday, which adds the Activeworx Log Center standalone log storage solution to the Activeworx line. The other products in this line are the Activeworx Enterprise unified security incident and event management (SIEM)/log management solution and the Activeworx Security Center standalone SIEM tool. When I looked this morning, information about Activeworkx 5.0 wasn't on the CrossTec Web site yet, but I’m sure it will show up there soon.

End of Article



Reader Comments

You must log on before posting a comment.

If you don't have a username & password, please register now.





Search Industry Bytes
 
Industry Bytes
SEPTEMBER 2008
  1 2 3 4 5 6
7 8 9 10 11 12 13
14 15 16 17 18 19 20
21 22 23 24 25 26 27
28 29 30     
or

 Recently in Industry Bytes
Microsoft Fights Back: Vista Ad Campaign Unveiled

Last Comment
I think they should get Rodney Dangerfield if they're going to use old (and in Dangerfield's case, d...
(2 Comments)
Review: Canary Wireless Digital Hotspotter HS20
Make a Comment
Special Delivery: Malware

Last Comment
Aside from the usual fake sender Email address, most shipping countries have lengthy invoice numbers...
(1 Comments)
Maintaining Security in a Tight Economy
Make a Comment
Americans Aren't Necessarily Walking the Talk When It Comes to Going Green
Make a Comment

More blogs about technology,
software, and Windows.

ADS BY GOOGLE SPONSORED LINKS FEATURED LINKS

IT Connections
Dive into the new Microsoft platforms and products you implement and support with the experts from Microsoft, TechNet Magazine, Windows ITPro and industry gurus. There are 70+ sessions and interactive panels with networking opportunities.

Attention User Group Leaders...
Announcing the eNews Generator—a FREE HTML e-newsletter builder for user group leaders. Build your HTML and text e-newsletters in minutes and add Windows IT Pro & SQL Server Mag articles alongside your own message!.

Master SharePoint with 3 eLearning Seminars
Learn how to build a better SharePoint infrastructure and enable powerful collaboration with MVPs Dan Holme and Michael Noel. Register today!

Get SQL Server 2008 at WinConnections
Don’t miss Microsoft Exchange and Windows Connections conferences, the premier events for Microsoft IT Professionals in Las Vegas, November 10-13. Every attendee will receive a copy of SQL Server 2008 Standard Edition with one CAL.



Interested in Email Encryption?
Read about the advantages of identity-based encryption in this free report.

Order Your SQL Fundamentals CD Today!
Learn how to use SQL Server, understand Office integration techniques and dive into the essentials of SQL Express and Visual Basic with this free SQL Fundamentals CD.

Virtualization Congress Oct. 14-16 in London
Don't miss Virtualization Congress, the premiere EMEA conference dedicated to hardware, OS and application virtualization. Oct. 14-16.
Windows IT Pro Home Register FAQ for Windows WinInfo News
Europe Edition About Us Contact Us/Customer Service Media Kit Affiliates / Licensing  
SQL Server Magazine Office & SharePoint Pro Windows Dev Pro IT Job Hound ITTV
IT Library Technical Resources Directory Connected Home Windows Excavator Windows SuperSite 
 
 Windows IT Pro is a Division of Penton Media Inc.
 Copyright © 2008 Penton Media, Inc., All rights reserved. Terms and Use | Privacy Statement | Reprints and Licensing