Latest news
Tool analyzes patches
The new Radia Patch Manager applies a policy-based model to the process of updating security patches across servers, workstations and mobile devices. It will initially support Windows servers but will quickly follow up with support for a variety of Unix platforms, officials said.
"We take a life-cycle approach to discover what is and isn't there, who's at most risk, take action to do something about it and maintain it at a steady state," said Joseph Fitzgerald, chief technology officer and co-founder of the Mahwah, N.J., company.
The tool automates the range of patch management functions from patch acquisition, impact analysis and vulnerability assessment to deployment and ongoing patch compliance with policies so devices remain configured correctly.
The tool is intended to help enterprises close the gaps in patch availability, testing and deployment.
"Most enterprises are six months behind in patches. They favor stability over vulnerability until there's a big problem," said Fitzgerald. "We help determine the impact, figure out which groups would be affected, so that if you have the SQL Slammer patch installed on 10,000 servers but only used on 2,000, we can identify that."
[ Read more ]
Spotlight

Information security executives need to be strategic thinkers
Posted on 17 June 2013. | George Baker, the Director of Information Security at Exostar, talks about the challenges in working in a dynamic threat landscape, offers tips for aspiring infosec leaders, and more.

Large orgs in denial about own security breaches?
Posted on 14 June 2013. | Over two thirds (66%) of large organizations said they either had not experienced a security incident in the last 12-18 months or were unsure if they had.

Vulnerability scanning with PureCloud
Posted on 12 June 2013. | nCircle PureCloud is a cloud-based network security scanning product built upon the companies' vulnerability and risk management system IP360.

To hack back or not to hack back?
Posted on 12 June 2013. | If you think of cyberspace as a new resource for you and your organization, it makes sense to protect your part of it as best you can. But is it a good idea?

Reactions from the security community to the NSA spying scandal
Posted on 11 June 2013. | Read on for comments on this scandal that Help Net Security received from a variety of security professionals and analysts.
By subscribing to our early morning news update, you will receive a daily digest of the latest security news published on Help Net Security.
With over 500 issues so far, reading our newsletter every Monday morning will keep you up-to-date with security risks out there.







