<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Silver Tail Systems Blog</title>
	<atom:link href="http://silvertailsystems.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://silvertailsystems.wordpress.com</link>
	<description>Preventing Online Fraud Through Web Session Intelligence</description>
	<lastBuildDate>Thu, 26 Jan 2012 17:31:09 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='silvertailsystems.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://1.gravatar.com/blavatar/577fb613fda4531b5f1cbba10427b2bb?s=96&#038;d=http%3A%2F%2Fs2.wp.com%2Fi%2Fbuttonw-com.png</url>
		<title>Silver Tail Systems Blog</title>
		<link>http://silvertailsystems.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://silvertailsystems.wordpress.com/osd.xml" title="Silver Tail Systems Blog" />
	<atom:link rel='hub' href='http://silvertailsystems.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Redesigning Security Strategy to Protect the Navigation Layer</title>
		<link>http://silvertailsystems.wordpress.com/2012/01/26/redesigning-security-strategy-to-protect-the-navigation-layer/</link>
		<comments>http://silvertailsystems.wordpress.com/2012/01/26/redesigning-security-strategy-to-protect-the-navigation-layer/#comments</comments>
		<pubDate>Thu, 26 Jan 2012 17:31:06 +0000</pubDate>
		<dc:creator>Jesse McKenna</dc:creator>
				<category><![CDATA[Detection]]></category>
		<category><![CDATA[Fraud]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[Prevention]]></category>
		<category><![CDATA[Navigation Layer]]></category>

		<guid isPermaLink="false">http://silvertailsystems.wordpress.com/?p=1668</guid>
		<description><![CDATA[In a recent conversation with Fahmida Rashid, senior writer at eWeek, the concept of the Navigation Layer and how companies can begin to secure this layer of the Web was of particular interest. I wanted to briefly recap the highlights of this discussion, as it may be helpful for organizations looking to improve their Navigation Layer security to protect against malware and abuses of site logic.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1668&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>In a recent conversation with <a href="https://twitter.com/#!/zdfyrashid">Fahmida Rashid</a>, senior writer at eWeek, the concept of the Navigation Layer and how companies can begin to secure this layer of the Web was of particular interest. I wanted to briefly recap the highlights of this discussion, as it may be helpful for organizations looking to improve their Navigation Layer security to protect against malware and abuses of site logic.</p>
<p>Ultimately we all know that having the right security strategy in place from the outset is cheaper and better because it means that protections are in place from the get-go, and you avoid the potential losses associated with data breaches, business logic abuse and various forms of cyberattacks. However, what kinds of costs are organizations looking at if they have to now (with greater awareness) go back to their Websites and applications and make sure that they are secure at the Navigation Layer so as not to be taken advantage of by cybercriminals?</p>
<p>Re-doing your security from scratch is not a viable option as it requires enormous development efforts and project resources as well as the expertise to actually build systems to monitor the Navigation layer,which is typically not readily available. Moreover, it&#8217;s an ongoing challenge to keep home-grown systems up to date with the latest attack signatures and advanced analytics. Patch jobs are also tough for the same reasons, though depending on the site this may be more or less expensive and resourcing the expertise remains a key hurdle.</p>
<p>Companies can’t, however, sit back and ignore the Navigation Layer threat, as that approach pretty much equates to covering your eyes and ears and pretending everything is a-OK.</p>
<p>As a result, more companies are turning to third party solutions to supplement or solely provide risk detection and mitigation systems at the Navigation Layer. A few key things for companies to consider when evaluating third party solutions include:</p>
<p>·       How much back-end development work is needed to get the solution deployed?  Does site code need to be modified?<br />
·       Does the solution provide signature-based detection, heuristic models, or both?<br />
·       How much visibility will the solution have into the site traffic?  Will it be able to see more than individual login and transaction events?<br />
·       Is it able to monitor for emerging threats or can it only detect attacks that are already known?  How quickly can it adapt to new threats?<br />
·       How well does the solution scale for larger websites?</p>
<p>Companies certainly have their work cut out for them, but an accurate evaluation of build vs. buy options &#8211; once you consider development, deployment, project management, product management, statisticians/scientists, fraud analysis, hardware, and resource bandwidth made unavailable for other projects &#8211; will almost always show that purchasing a proven solution is the more cost effective option.</p>
<br /> Tagged: <a href='http://silvertailsystems.wordpress.com/tag/detection/'>Detection</a>, <a href='http://silvertailsystems.wordpress.com/tag/fraud/'>Fraud</a>, <a href='http://silvertailsystems.wordpress.com/tag/information-security/'>information security</a>, <a href='http://silvertailsystems.wordpress.com/tag/navigation-layer/'>Navigation Layer</a>, <a href='http://silvertailsystems.wordpress.com/tag/prevention/'>Prevention</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/silvertailsystems.wordpress.com/1668/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/silvertailsystems.wordpress.com/1668/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/silvertailsystems.wordpress.com/1668/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/silvertailsystems.wordpress.com/1668/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/silvertailsystems.wordpress.com/1668/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/silvertailsystems.wordpress.com/1668/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/silvertailsystems.wordpress.com/1668/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/silvertailsystems.wordpress.com/1668/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/silvertailsystems.wordpress.com/1668/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/silvertailsystems.wordpress.com/1668/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/silvertailsystems.wordpress.com/1668/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/silvertailsystems.wordpress.com/1668/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/silvertailsystems.wordpress.com/1668/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/silvertailsystems.wordpress.com/1668/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1668&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://silvertailsystems.wordpress.com/2012/01/26/redesigning-security-strategy-to-protect-the-navigation-layer/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d410e1d6f2f984b046126ff810657af6?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">stsjesse</media:title>
		</media:content>
	</item>
		<item>
		<title>E-Commerce and Mobile Payments Expected to Grow in 2012</title>
		<link>http://silvertailsystems.wordpress.com/2012/01/19/e-commerce-and-mobile-payments-expected-to-grow-in-2012/</link>
		<comments>http://silvertailsystems.wordpress.com/2012/01/19/e-commerce-and-mobile-payments-expected-to-grow-in-2012/#comments</comments>
		<pubDate>Thu, 19 Jan 2012 18:02:48 +0000</pubDate>
		<dc:creator>Laz</dc:creator>
				<category><![CDATA[Online Fraud]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[e-commerce]]></category>

		<guid isPermaLink="false">http://silvertailsystems.wordpress.com/?p=1665</guid>
		<description><![CDATA[The European Union recently released a plan that encourages consumers to make purchases via the internet, as the goal is to increase online retail sales from 3.4% to 6.8% by 2015. <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1665&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>The European Union recently <a href="http://www.thepaypers.com/news/e-commerce/eu-aims-to-double-e-commerce-volume-by-2015/746394-25">released a plan</a> that encourages consumers to make purchases via the internet, as the goal is to increase online retail sales from 3.4% to 6.8% by 2015.</p>
<p>One of the barriers cited by the EU that prevents the proliferation of e-commerce is the limited protection available for internet users. In a <a href="http://www.ft.com/cms/s/0/ba2f78e0-4134-11e1-936b-00144feab49a.html#axzz1jr40b8xm">Financial Times article</a> detailing the recent <a href="http://www.zappos.com/">Zappos.com</a> breach, Cathy Halligan, a former chief marketing officer at <a href="http://www.walmart.com/">Walmart.com</a>, said that people who do not shop online cite security worries as the main reason. The interesting point that Halligan brings up is that while online shoppers are worried about security, they will ultimately buy the products if they really want them, regardless of security.</p>
<p>Mobile payments and e-commerce will continue to grow over time and this industry presents somewhat of a greenfield to cybercriminals, so merchants must take steps to better protect their customers&#8217; data. This will be increasingly important as mobile payment devices become common in brick-and-mortar stores – as is the case with cosmetics company Sephora, which has deployed dozens of iPads as mobile point-of-sale devices in several of its stores and in several new stores, they are relying solely on mobile devices for their points of payment.</p>
<p>It is essential for merchants to monitor the Navigation Layer of websites for any malicious activity. The Navigation Layer is where customers interact with the Web, and behavioral analysis has been proven to be the most effective way to detect and mitigate abnormal activity both at the user and population level. The more we can work to protect e-commerce, mobile platforms, and third party integrated websites, the more confident consumers can be when shopping online or paying via mobile devices in-store. Customers need to have peace-of-mind when making their purchases, and it&#8217;s up to the merchants to ensure that their information is safeguarded to the absolute best of their ability.</p>
<br /> Tagged: <a href='http://silvertailsystems.wordpress.com/tag/e-commerce/'>e-commerce</a>, <a href='http://silvertailsystems.wordpress.com/tag/information-security/'>information security</a>, <a href='http://silvertailsystems.wordpress.com/tag/security/'>security</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/silvertailsystems.wordpress.com/1665/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/silvertailsystems.wordpress.com/1665/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/silvertailsystems.wordpress.com/1665/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/silvertailsystems.wordpress.com/1665/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/silvertailsystems.wordpress.com/1665/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/silvertailsystems.wordpress.com/1665/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/silvertailsystems.wordpress.com/1665/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/silvertailsystems.wordpress.com/1665/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/silvertailsystems.wordpress.com/1665/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/silvertailsystems.wordpress.com/1665/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/silvertailsystems.wordpress.com/1665/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/silvertailsystems.wordpress.com/1665/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/silvertailsystems.wordpress.com/1665/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/silvertailsystems.wordpress.com/1665/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1665&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://silvertailsystems.wordpress.com/2012/01/19/e-commerce-and-mobile-payments-expected-to-grow-in-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/6162bce501d09322c99ddcd85a762f90?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">lazsts</media:title>
		</media:content>
	</item>
		<item>
		<title>Banks Tackle Cybercrime Through Information Sharing</title>
		<link>http://silvertailsystems.wordpress.com/2012/01/12/banks-tackle-cybercrime-through-information-sharing/</link>
		<comments>http://silvertailsystems.wordpress.com/2012/01/12/banks-tackle-cybercrime-through-information-sharing/#comments</comments>
		<pubDate>Thu, 12 Jan 2012 19:17:08 +0000</pubDate>
		<dc:creator>timothyeades</dc:creator>
				<category><![CDATA[Detection]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[financial institutions]]></category>
		<category><![CDATA[Investigation]]></category>
		<category><![CDATA[online security]]></category>

		<guid isPermaLink="false">http://silvertailsystems.wordpress.com/?p=1651</guid>
		<description><![CDATA[According to PWC's 2012 Global State of Information Security Survey, only 80% of financial services survey respondents are sure that their organizations are prepared to address the threats that confront their critical information. This is a 12% increase since 2006, and more than just a bit disturbing. 
<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1651&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>According to PWC&#8217;s 2012 <a href="http://www.pwc.com/gx/en/information-security-survey/giss.jhtml">Global State of Information Security Survey</a>, only 80% of financial services survey respondents are sure that their organizations are prepared to address the threats that confront their critical information. This is a 12% increase since 2006, and more than just a bit disturbing.</p>
<p>Additionally, in 2011, an increasing number of respondents noted that they had experienced negative events. Even with improved security best practices and technology, financial organizations are still falling behind.</p>
<p><a href="http://silvertailsystems.wordpress.com/2012/01/12/banks-tackle-cybercrime-through-information-sharing/tim/" rel="attachment wp-att-1658"><img class="aligncenter size-large wp-image-1658" title="tim" src="http://silvertailsystems.files.wordpress.com/2012/01/tim.jpg?w=600&#038;h=122" alt="" width="600" height="122" /></a></p>
<p>As it&#8217;s been historically the case, financial institutions continue to be among the top targets for cybercriminals. In a recent Wall Street Journal article, Gartner analyst Avivah Litan noted that she <a href="http://online.wsj.com/article/SB10001424052970203436904577151230598919896.html">expects fraud detection</a> spending and customer authentication systems to increase by as much as 12% to $1 billion across financial companies in the next two years. This will be a record.</p>
<p>That said, financial organizations are beginning to work together to share intelligence surrounding cybercrime in order to better identify potential attacks and negative events. Banks have often shied away from sharing internal data so as not to provide anyone with a competitive advantage – but not sharing has begun to give criminals that advantage instead. Keith Gordon, Bank of America senior vice president of security said it well, &#8220;We realized that just as the fraudsters collaborate with each other, we as an industry must collaborate.&#8221;</p>
<p>We expect see more banks sharing critical data to help prevent the proliferation of online fraud. Private discussions around security strategy will also likely be a part of this information exchange, which has been a rarity in times past. The common goal of preventing against cybercrime is quickly uniting the financial services industry, and we hope to see additional steps made in this direction.</p>
<p>As this collaboration begins to take effect in the market, Silver Tail Systems certainly expects to play a large role. We work with some of the biggest banks in the industry, and with our ability to gather web session intelligence in real-time at the Navigation Layer of the web, we can help financial institutions instantly detect and nullify malicious behavior on an even larger scale. Our ability to help share this information across our customer base would enable our banking customers to better thwart potential attacks – and this would be a true industry breakthrough.</p>
<br /> Tagged: <a href='http://silvertailsystems.wordpress.com/tag/financial-institutions/'>financial institutions</a>, <a href='http://silvertailsystems.wordpress.com/tag/information-security/'>information security</a>, <a href='http://silvertailsystems.wordpress.com/tag/investigation/'>Investigation</a>, <a href='http://silvertailsystems.wordpress.com/tag/online-security/'>online security</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/silvertailsystems.wordpress.com/1651/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/silvertailsystems.wordpress.com/1651/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/silvertailsystems.wordpress.com/1651/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/silvertailsystems.wordpress.com/1651/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/silvertailsystems.wordpress.com/1651/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/silvertailsystems.wordpress.com/1651/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/silvertailsystems.wordpress.com/1651/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/silvertailsystems.wordpress.com/1651/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/silvertailsystems.wordpress.com/1651/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/silvertailsystems.wordpress.com/1651/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/silvertailsystems.wordpress.com/1651/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/silvertailsystems.wordpress.com/1651/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/silvertailsystems.wordpress.com/1651/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/silvertailsystems.wordpress.com/1651/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1651&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://silvertailsystems.wordpress.com/2012/01/12/banks-tackle-cybercrime-through-information-sharing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/a9f91276c51addd2cf740d27f8ed14da?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">timothyeades</media:title>
		</media:content>

		<media:content url="http://silvertailsystems.files.wordpress.com/2012/01/tim.jpg?w=600" medium="image">
			<media:title type="html">tim</media:title>
		</media:content>
	</item>
		<item>
		<title>2012: A New Year &#8211; New Threats?</title>
		<link>http://silvertailsystems.wordpress.com/2012/01/04/2012-a-new-year-new-threats/</link>
		<comments>http://silvertailsystems.wordpress.com/2012/01/04/2012-a-new-year-new-threats/#comments</comments>
		<pubDate>Wed, 04 Jan 2012 18:22:56 +0000</pubDate>
		<dc:creator>Laz</dc:creator>
				<category><![CDATA[Fraud]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[Man-in-the-Browser]]></category>

		<guid isPermaLink="false">http://silvertailsystems.wordpress.com/?p=1649</guid>
		<description><![CDATA[On behalf of Silver Tail Systems, I&#8217;d like to begin this blog post by wishing all of you a very Happy New Year. 2011 has come and gone, and with 2012 officially upon us, that can only mean one thing: new cyber threats. Of course that&#8217;s not all 2012 will bring, but it is forecasted [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1649&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>On behalf of Silver Tail Systems, I&#8217;d like to begin this blog post by wishing all of you a very Happy New Year. 2011 has come and gone, and with 2012 officially upon us, that can only mean one thing: new cyber threats. Of course that&#8217;s not all 2012 will bring, but it is forecasted to be a top concern for banks, federal organizations, and e-commerce sites worldwide. In fact, according to <a href="http://www.gartner.com/it/page.jsp?id=1862714">Gartner</a>,  financial impact of cybercrime will grow 10% per year through 2016, due to the continuing discovery of new vulnerabilities.</p>
<p>We closed out the 2011 holiday season with Anonymous announcing its intention to steal from banks and &#8220;bring happiness and gratitude to families around the globe&#8221; with its &#8216;DestructiveSec&#8217; campaign and with that, security experts predict more pain from cybercriminals for the coming year. This is only one group of threats, and many others – particularly in the mobile arena – will remain a priority for cybersecurity professionals and vendors throughout 2012.</p>
<p>The role that web session intelligence plays in the detection and prevention of online fraud  is increasingly important as the use of web-based applications expands and I believe this needs to be a key focus area for 2012. Visibility into the Navigation Layer is so important because it better enables organizations to determine whether or not they need to report a potential risk or attack, and ideally limits the exposure to the attack.</p>
<p>January will mark the launch of the <a href="http://www.prlog.org/11756498-securing-national-critical-infrastructure-cybersecurity-awareness-workforce-education-innovation.html">National Critical Infrastructure Cybersecurity Education Initiative</a>, which aims to develop cybersecurity education programs between the private and public sectors. With both private and public companies today undergoing a very real shift in the online security landscape, I believe it is imperative to protect the freedoms and rights of US citizens while protecting their electronic safety. We may not be able to guarantee networks are completely bullet-proof, but we can help fight cybercrime by being more proactive. It is no longer sufficient to monitor only the web pages that support online transactions. Instead, we need to monitor every click on a website to ensure the criminals aren&#8217;t finding new means for perpetrating their attacks. By detecting and stopping threats in real-time, we can minimize the impact of cybercriminals and continue to safeguard sensitive computing networks and platforms.</p>
<br /> Tagged: <a href='http://silvertailsystems.wordpress.com/tag/fraud/'>Fraud</a>, <a href='http://silvertailsystems.wordpress.com/tag/information-security/'>information security</a>, <a href='http://silvertailsystems.wordpress.com/tag/man-in-the-browser/'>Man-in-the-Browser</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/silvertailsystems.wordpress.com/1649/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/silvertailsystems.wordpress.com/1649/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/silvertailsystems.wordpress.com/1649/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/silvertailsystems.wordpress.com/1649/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/silvertailsystems.wordpress.com/1649/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/silvertailsystems.wordpress.com/1649/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/silvertailsystems.wordpress.com/1649/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/silvertailsystems.wordpress.com/1649/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/silvertailsystems.wordpress.com/1649/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/silvertailsystems.wordpress.com/1649/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/silvertailsystems.wordpress.com/1649/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/silvertailsystems.wordpress.com/1649/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/silvertailsystems.wordpress.com/1649/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/silvertailsystems.wordpress.com/1649/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1649&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://silvertailsystems.wordpress.com/2012/01/04/2012-a-new-year-new-threats/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/6162bce501d09322c99ddcd85a762f90?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">lazsts</media:title>
		</media:content>
	</item>
		<item>
		<title>How Do You Trust the Insider?</title>
		<link>http://silvertailsystems.wordpress.com/2011/12/22/how-do-you-trust-the-insider/</link>
		<comments>http://silvertailsystems.wordpress.com/2011/12/22/how-do-you-trust-the-insider/#comments</comments>
		<pubDate>Thu, 22 Dec 2011 19:34:51 +0000</pubDate>
		<dc:creator>Laura Mather</dc:creator>
				<category><![CDATA[Detection]]></category>
		<category><![CDATA[Fraud]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[Online Fraud]]></category>
		<category><![CDATA[Insider Threats]]></category>
		<category><![CDATA[online security]]></category>

		<guid isPermaLink="false">http://silvertailsystems.wordpress.com/?p=1645</guid>
		<description><![CDATA[SC Magazine recently released information about 55 individuals who were charged in cyber fraud in NewYork City. They were part of an organized crime ring executing very targeted attacks, which we are seeing so much more of than we have in years past.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1645&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>SC Magazine recently <a href="http://www.scmagazineus.com/nyc-authorities-charge-55-in-cyber-fraud-id-theft-ring/article/220013/">released information</a> about 55 individuals who were charged in cyber fraud in NewYork City. They were part of an organized crime ring executing very targeted attacks, which we are seeing so much more of than we have in years past.</p>
<p>This crime ring was able to steal personal information and gain access to banking accounts, which then enabled money to be transferred out. One thing that allowed them to do this was the involvement of insiders who used their positions to access the personal information and sell the data to either make money themselves or enable their accomplices to do just that. The insiders were the key to the success of this cyber fraud ring, and they were able to prevent immediate detection by the banks’ anti-fraud and anti-money laundering systems.</p>
<p>The insider threat is definitely one to take seriously, and it is imperative that security organizations adopt a zero-trust model, even when it comes to their own teams. As many key internal assets are increasingly accessed via HTTP/HTTPS, web session intelligence is critical for spotting internal traffic that doesn’t look like legitimate usage that comes from the vast majority of typical users. In order to circumvent the security controls, a malicious insider would have to bypass security controls and processes, which web session intelligence would spot and stop before an attack has even happened.</p>
<p>What sort of processes and technologies do you all have in place to prevent insiders from committing fraud? How do you prevent insiders from circumventing your anti-fraud technology? There are many answers and many different approaches that organizations take, and I’d be interested to hear from you.</p>
<br /> Tagged: <a href='http://silvertailsystems.wordpress.com/tag/fraud/'>Fraud</a>, <a href='http://silvertailsystems.wordpress.com/tag/insider-threats/'>Insider Threats</a>, <a href='http://silvertailsystems.wordpress.com/tag/online-fraud/'>Online Fraud</a>, <a href='http://silvertailsystems.wordpress.com/tag/online-security/'>online security</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/silvertailsystems.wordpress.com/1645/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/silvertailsystems.wordpress.com/1645/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/silvertailsystems.wordpress.com/1645/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/silvertailsystems.wordpress.com/1645/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/silvertailsystems.wordpress.com/1645/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/silvertailsystems.wordpress.com/1645/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/silvertailsystems.wordpress.com/1645/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/silvertailsystems.wordpress.com/1645/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/silvertailsystems.wordpress.com/1645/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/silvertailsystems.wordpress.com/1645/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/silvertailsystems.wordpress.com/1645/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/silvertailsystems.wordpress.com/1645/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/silvertailsystems.wordpress.com/1645/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/silvertailsystems.wordpress.com/1645/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1645&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://silvertailsystems.wordpress.com/2011/12/22/how-do-you-trust-the-insider/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ea92b086d3a5647be783f387715694ee?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Laura Mather</media:title>
		</media:content>
	</item>
		<item>
		<title>Anonymous: A Modern Day Robin Hood?</title>
		<link>http://silvertailsystems.wordpress.com/2011/12/20/anonymous-a-modern-day-robin-hood/</link>
		<comments>http://silvertailsystems.wordpress.com/2011/12/20/anonymous-a-modern-day-robin-hood/#comments</comments>
		<pubDate>Tue, 20 Dec 2011 18:13:26 +0000</pubDate>
		<dc:creator>Jesse McKenna</dc:creator>
				<category><![CDATA[information security]]></category>
		<category><![CDATA[Online Fraud]]></category>
		<category><![CDATA[risk management]]></category>
		<category><![CDATA[Fraud]]></category>
		<category><![CDATA[malware]]></category>

		<guid isPermaLink="false">http://silvertailsystems.wordpress.com/?p=1641</guid>
		<description><![CDATA[According to SC Magazine’s Dan Raywood, the “hacktivist group Anonymous has announced its intention to steal from banks and ‘bring happiness and gratitude to families around the globe’ with a new campaign called 'DestructiveSec.’”<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1641&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>According to <a href="http://www.scmagazineuk.com/anonymous-plans-christmas-offensive-with-lulzxmas-stealing-from-the-rich-and-giving-to-the-poor/article/219905/">SC Magazine’s Dan Raywood</a>, the “hacktivist group Anonymous has announced its intention to steal from banks and ‘bring happiness and gratitude to families around the globe’ with a new campaign called &#8216;DestructiveSec.’”</p>
<p>This is a classic Robin Hood scenario – stealing from the rich and giving to the poor – but the fact that this campaign is being called &#8216;DestructiveSec&#8217; is a clear indication that this isn&#8217;t a heroic action by any means. As we&#8217;ve seen from the data breaches in 2011, it&#8217;s apparent that attacks will become more prevalent as time goes on and organizations need a better way to protect themselves and their counterparts. Various hacking groups around the world are infiltrating computer networks and web properties to expose data, which is ultimately a sign of poor security compliance. This is quite scary and even unacceptable for any institution, particularly as many attacks have not been all that sophisticated – they were easily preventable.</p>
<p>With hacking and malware acknowledged as the most prominent types of data security attacks, no longer are all web-based attacks targeting sign-on and transactions. Instead, we&#8217;re seeing attacks against almost every website function. The only way to stop the impact of cyber criminals is to know immediately that abnormal behavior is occurring, and web session intelligence is key to doing just that.</p>
<p>The actions that are carried out via the web server are defined as the Navigation Layer of a website. Visibility into the Navigation Layer enables organizations to determine whether or not they need to report a potential risk or attack, and ideally limit the exposure to the attack. As the availability of data and functionality continue to be moved to web servers (whether for traditional web browser use or mobile application use) it is critical to monitor this portion of the infrastructure to determine if events are occurring and where appropriate, alert as close to the first occurrence of the event as possible. Using the Navigation Layer to garner true web intelligence is the surest way to ensure you are monitoring and protecting this critical layer of your infrastructure.</p>
<p>Cybercrime is a growing problem that will continue to increase if organizations don’t begin to take necessary security precautions and this concept is a critical component to corporate security strategy.</p>
<br /> Tagged: <a href='http://silvertailsystems.wordpress.com/tag/fraud/'>Fraud</a>, <a href='http://silvertailsystems.wordpress.com/tag/information-security/'>information security</a>, <a href='http://silvertailsystems.wordpress.com/tag/malware/'>malware</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/silvertailsystems.wordpress.com/1641/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/silvertailsystems.wordpress.com/1641/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/silvertailsystems.wordpress.com/1641/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/silvertailsystems.wordpress.com/1641/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/silvertailsystems.wordpress.com/1641/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/silvertailsystems.wordpress.com/1641/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/silvertailsystems.wordpress.com/1641/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/silvertailsystems.wordpress.com/1641/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/silvertailsystems.wordpress.com/1641/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/silvertailsystems.wordpress.com/1641/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/silvertailsystems.wordpress.com/1641/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/silvertailsystems.wordpress.com/1641/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/silvertailsystems.wordpress.com/1641/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/silvertailsystems.wordpress.com/1641/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1641&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://silvertailsystems.wordpress.com/2011/12/20/anonymous-a-modern-day-robin-hood/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/d410e1d6f2f984b046126ff810657af6?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">stsjesse</media:title>
		</media:content>
	</item>
		<item>
		<title>Mobile Platform Risk on the Rise in 2012</title>
		<link>http://silvertailsystems.wordpress.com/2011/12/15/mobile-platform-risk-on-the-rise-in-2012/</link>
		<comments>http://silvertailsystems.wordpress.com/2011/12/15/mobile-platform-risk-on-the-rise-in-2012/#comments</comments>
		<pubDate>Thu, 15 Dec 2011 20:47:45 +0000</pubDate>
		<dc:creator>Laz</dc:creator>
				<category><![CDATA[risk management]]></category>
		<category><![CDATA[Detection]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[man-in-the-mobile]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://silvertailsystems.wordpress.com/?p=1638</guid>
		<description><![CDATA[Each year, Cisco releases a security report about some of the biggest trends of the year, and one of the key findings that most aligns with what we've found at Silver Tail Systems is that cybercrimes seem to be much more targeted than in years past. Cybercriminals aren't producing mass spam nearly as much as they used to and unfortunately it's the targeted attacks that are even more worrisome because they are much harder for traditional security solutions to detect.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1638&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Each year, Cisco releases a security report about some of the biggest trends of the year, and one of the <a href="http://www.zdnet.com/blog/btl/cisco-cyber-criminals-dropping-mass-spam-in-favor-of-targeted-attacks/51730?tag=content;siu-container">key findings</a> that most aligns with what we&#8217;ve found at Silver Tail Systems is that cybercrimes seem to be much more targeted than in years past. Cybercriminals aren&#8217;t producing mass spam nearly as much as they used to and unfortunately it&#8217;s the targeted attacks that are even more worrisome because they are much harder for traditional security solutions to detect.</p>
<p>One of the threat areas we (and Cisco) are seeing on the rise is mobile, and this will likely continue in 2012 – particularly as we see commerce and business soar across mobile platforms. According to another <a href="http://techcrunch.com/2011/12/13/lookouts-2012-mobile-security-threat-predictions-sms-fraud-botnets-and-malvertising/">recent report</a>, more than $1 million was stolen from Android users in 2011, the annual likelihood of an Android user encountering malware today has increased to 4% from 1% in early 2011, and Android users now have a 36% chance of clicking on an unsafe link – up 6% since July.</p>
<p><a href="http://silvertailsystems.wordpress.com/2011/03/21/the-android-mobile-security-scare/">Last March</a> we discussed security issues across the Android platform, and as it remains the most popular mobile operating system, it will likely continue to be the most heavily targeted by cybercriminals moving forward. As we know, bad actors are looking for the most return with the least effort, and the mobile platform presents them with a large opportunity as it simply widens the playing field. I know the industry is working toward better mobile security for 2012, and my hope is that the reports that come out a year from now reflect the efforts that so many of us are making.</p>
<br /> Tagged: <a href='http://silvertailsystems.wordpress.com/tag/detection/'>Detection</a>, <a href='http://silvertailsystems.wordpress.com/tag/malware/'>malware</a>, <a href='http://silvertailsystems.wordpress.com/tag/man-in-the-mobile/'>man-in-the-mobile</a>, <a href='http://silvertailsystems.wordpress.com/tag/security/'>security</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/silvertailsystems.wordpress.com/1638/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/silvertailsystems.wordpress.com/1638/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/silvertailsystems.wordpress.com/1638/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/silvertailsystems.wordpress.com/1638/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/silvertailsystems.wordpress.com/1638/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/silvertailsystems.wordpress.com/1638/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/silvertailsystems.wordpress.com/1638/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/silvertailsystems.wordpress.com/1638/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/silvertailsystems.wordpress.com/1638/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/silvertailsystems.wordpress.com/1638/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/silvertailsystems.wordpress.com/1638/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/silvertailsystems.wordpress.com/1638/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/silvertailsystems.wordpress.com/1638/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/silvertailsystems.wordpress.com/1638/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1638&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://silvertailsystems.wordpress.com/2011/12/15/mobile-platform-risk-on-the-rise-in-2012/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/6162bce501d09322c99ddcd85a762f90?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">lazsts</media:title>
		</media:content>
	</item>
		<item>
		<title>Protecting Internet Liberties: 2011&#8242;s Freedom Online Conference</title>
		<link>http://silvertailsystems.wordpress.com/2011/12/14/protecting-internet-liberties-2011s-freedom-online-conference/</link>
		<comments>http://silvertailsystems.wordpress.com/2011/12/14/protecting-internet-liberties-2011s-freedom-online-conference/#comments</comments>
		<pubDate>Wed, 14 Dec 2011 21:25:49 +0000</pubDate>
		<dc:creator>Laura Mather</dc:creator>
				<category><![CDATA[information security]]></category>
		<category><![CDATA[risk management]]></category>
		<category><![CDATA[Global Network Initiative]]></category>

		<guid isPermaLink="false">http://silvertailsystems.wordpress.com/?p=1635</guid>
		<description><![CDATA[Governments, companies and civil liberties groups vowed to work to promote online freedom during last week's two-day Freedom Online Conference at the Foreign Ministry in The Hague. With an emphasis on helping bloggers who operate under oppressive regimes, fourteen countries including the United States were among the parties hoping to create a coalition of like-minded groups to promote Internet freedom.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1635&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Governments, companies and civil liberties groups vowed to work to promote online freedom during last week&#8217;s two-day <a href="http://news.yahoo.com/eu-commissioner-calls-tools-bloggers-125056024.html">Freedom Online Conference</a> at the Foreign Ministry in The Hague. With an emphasis on helping bloggers who operate under oppressive regimes, fourteen countries including the United States were among the parties hoping to create a coalition of like-minded groups to promote Internet freedom.</p>
<p>Opening the Freedom Online conference on Thursday was U.S. Secretary of State Hillary Clinton with a direct call for companies not to sell surveillance tools to authoritarian regimes. Syrian blogger Amjad Baiazy was arrested and tortured in May for expressing his opinion online. Individuals should be able to exercise their human rights and express their opinions, and the Internet provides a channel for them to do just that. This conference helped stress the importance of this particular liberty, and the hope is that there were changes identified that could help protect Internet freedom and also encourage it amongst a larger audience.</p>
<p>While I don&#8217;t condone freedom of speech where a person can exploit government systems or individuals online, I classify myself as an advocate for free expression on the Internet, and Hillary Clinton <a href="http://www.pbs.org/newshour/rundown/2011/12/internet-freedom.html">also discussed</a> the fact that The United Nations and the Organization for Economic Cooperation and Development have issued guidelines to advise companies on how to meet responsibilities and carry out due diligence. The new Global Network Initiative is a forum where companies can work through challenges with other industry partners, and academics, investors and activists, and this sort of collaboration is exactly what can be used to stop a number of bad actors on the Internet – cybercriminals being one of them.</p>
<br /> Tagged: <a href='http://silvertailsystems.wordpress.com/tag/global-network-initiative/'>Global Network Initiative</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/silvertailsystems.wordpress.com/1635/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/silvertailsystems.wordpress.com/1635/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/silvertailsystems.wordpress.com/1635/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/silvertailsystems.wordpress.com/1635/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/silvertailsystems.wordpress.com/1635/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/silvertailsystems.wordpress.com/1635/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/silvertailsystems.wordpress.com/1635/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/silvertailsystems.wordpress.com/1635/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/silvertailsystems.wordpress.com/1635/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/silvertailsystems.wordpress.com/1635/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/silvertailsystems.wordpress.com/1635/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/silvertailsystems.wordpress.com/1635/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/silvertailsystems.wordpress.com/1635/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/silvertailsystems.wordpress.com/1635/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1635&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://silvertailsystems.wordpress.com/2011/12/14/protecting-internet-liberties-2011s-freedom-online-conference/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ea92b086d3a5647be783f387715694ee?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Laura Mather</media:title>
		</media:content>
	</item>
		<item>
		<title>2012 Security Predictions Starting to Appear – Thinking Outside the Box</title>
		<link>http://silvertailsystems.wordpress.com/2011/12/08/2012-security-predictions-starting-to-appear-thinking-outside-the-box/</link>
		<comments>http://silvertailsystems.wordpress.com/2011/12/08/2012-security-predictions-starting-to-appear-thinking-outside-the-box/#comments</comments>
		<pubDate>Thu, 08 Dec 2011 19:17:22 +0000</pubDate>
		<dc:creator>Laura Mather</dc:creator>
				<category><![CDATA[education]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[predictions]]></category>

		<guid isPermaLink="false">http://silvertailsystems.wordpress.com/?p=1633</guid>
		<description><![CDATA[Imperva recently noted some of their predictions for security trends in 2012. I must admit that when I think about future trends, I often end up with something like "more of the same." This set of trends, is nothing like that. It really brings together a lot of what is happening or going to happen in the industry.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1633&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Imperva recently noted some of their <a href="http://www.businesscomputingworld.co.uk/top-9-cyber-security-trends-for-2012/">predictions for security trends in 2012</a>. I must admit that when I think about future trends, I often end up with something like &#8220;more of the same.&#8221; This set of trends, is nothing like that. It really brings together a lot of what is happening or going to happen in the industry.</p>
<p>Some observations about these predictions: First, many attacks are moving to the application layer. HTML 5 giving more functionality to hackers, DDoS moving up the stack, internal collaborations&#8217; evil twin, and anti-social media all are examples of the application layer being used more frequently in attacks.</p>
<p>Second, security will trump compliance. While I&#8217;m not sure if this will come true, I am hopeful it will. As I&#8217;ve been looking at regulations from 2011 (FFIEC, SEC, etc.), I am dismayed about the checklist approach to security. I understand why these regulations are important, but it would be so much better if companies took a thoughtful, realistic approach to the systems they have in place and make sure that there is organizational integrity around the security of their infrastructure. Given the lack of resources, I struggle to see a world where this has happened, though I will always be hopeful.</p>
<p>We&#8217;ll publish our own predictions soon, but it&#8217;s great to see people who really think outside the box on these things.</p>
<br /> Tagged: <a href='http://silvertailsystems.wordpress.com/tag/predictions/'>predictions</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/silvertailsystems.wordpress.com/1633/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/silvertailsystems.wordpress.com/1633/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/silvertailsystems.wordpress.com/1633/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/silvertailsystems.wordpress.com/1633/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/silvertailsystems.wordpress.com/1633/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/silvertailsystems.wordpress.com/1633/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/silvertailsystems.wordpress.com/1633/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/silvertailsystems.wordpress.com/1633/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/silvertailsystems.wordpress.com/1633/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/silvertailsystems.wordpress.com/1633/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/silvertailsystems.wordpress.com/1633/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/silvertailsystems.wordpress.com/1633/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/silvertailsystems.wordpress.com/1633/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/silvertailsystems.wordpress.com/1633/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1633&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://silvertailsystems.wordpress.com/2011/12/08/2012-security-predictions-starting-to-appear-thinking-outside-the-box/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ea92b086d3a5647be783f387715694ee?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Laura Mather</media:title>
		</media:content>
	</item>
		<item>
		<title>Good Guys Collaborating as well as the Bad Guys? Congress Taking Steps</title>
		<link>http://silvertailsystems.wordpress.com/2011/12/06/good-guys-collaborating-as-well-as-the-bad-guys-congress-taking-steps/</link>
		<comments>http://silvertailsystems.wordpress.com/2011/12/06/good-guys-collaborating-as-well-as-the-bad-guys-congress-taking-steps/#comments</comments>
		<pubDate>Tue, 06 Dec 2011 22:48:52 +0000</pubDate>
		<dc:creator>Laura Mather</dc:creator>
				<category><![CDATA[Detection]]></category>
		<category><![CDATA[education]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[Investigation]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[government]]></category>
		<category><![CDATA[online security]]></category>

		<guid isPermaLink="false">http://silvertailsystems.wordpress.com/?p=1631</guid>
		<description><![CDATA[Many of you may be tired of me harping about how well the criminals coordinate with one another and how poorly we, on the other side, work together. It looks like the government may be taking a step to help organizations work more closely together to protect each other.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1631&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Many of you may be tired of me harping about how well the criminals coordinate with one another and how poorly we, on the other side, work together. It looks like the<a href="http://thehill.com/blogs/hillicon-valley/technology/196173-house-intel-committee-unveils-cyber-bill"> government may be taking a step</a> to help organizations work more closely together to protect each other.</p>
<p>The article talks about how the government doesn&#8217;t want to add too much burden to businesses and that is obviously critical. But, I&#8217;m thrilled by the idea that corporations and other organizations can have the opportunity to work together in a way that could benefit the entire ecosystem.</p>
<p>One of the biggest hurdles I see with this is that many times organizations see their data about attacks as a valuable asset. If it takes an organization fifty man hours and $200,000 in development of tools to identify a particular threat or set of data, why would they want to share that with others? Should they get paid for sharing this data? Is there some other way that these organizations could be compensated for this information?</p>
<br /> Tagged: <a href='http://silvertailsystems.wordpress.com/tag/cybersecurity/'>cybersecurity</a>, <a href='http://silvertailsystems.wordpress.com/tag/government/'>government</a>, <a href='http://silvertailsystems.wordpress.com/tag/information-security/'>information security</a>, <a href='http://silvertailsystems.wordpress.com/tag/online-security/'>online security</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/silvertailsystems.wordpress.com/1631/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/silvertailsystems.wordpress.com/1631/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/silvertailsystems.wordpress.com/1631/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/silvertailsystems.wordpress.com/1631/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/silvertailsystems.wordpress.com/1631/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/silvertailsystems.wordpress.com/1631/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/silvertailsystems.wordpress.com/1631/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/silvertailsystems.wordpress.com/1631/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/silvertailsystems.wordpress.com/1631/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/silvertailsystems.wordpress.com/1631/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/silvertailsystems.wordpress.com/1631/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/silvertailsystems.wordpress.com/1631/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/silvertailsystems.wordpress.com/1631/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/silvertailsystems.wordpress.com/1631/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=silvertailsystems.wordpress.com&amp;blog=5811723&amp;post=1631&amp;subd=silvertailsystems&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://silvertailsystems.wordpress.com/2011/12/06/good-guys-collaborating-as-well-as-the-bad-guys-congress-taking-steps/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ea92b086d3a5647be783f387715694ee?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Laura Mather</media:title>
		</media:content>
	</item>
	</channel>
</rss>
