<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://www.websitemagazine.com/content/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>'Net Features : web security</title><link>http://www.websitemagazine.com/content/blogs/posts/archive/tags/web+security/default.aspx</link><description>Tags: web security</description><dc:language>en</dc:language><generator>CommunityServer 2008 SP2 (Build: 31104.93)</generator><item><title>Retail Cyber Attacks Increasing </title><link>http://www.websitemagazine.com/content/blogs/posts/archive/2013/02/18/retail-cyber-attacks-increasing.aspx</link><pubDate>Mon, 18 Feb 2013 17:15:00 GMT</pubDate><guid isPermaLink="false">1e469e21-c924-44fa-a132-47b5d0a8ad47:23342</guid><dc:creator>Pete Prestipino</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://www.websitemagazine.com/content/blogs/posts/rsscomments.aspx?PostID=23342</wfw:commentRss><comments>http://www.websitemagazine.com/content/blogs/posts/archive/2013/02/18/retail-cyber-attacks-increasing.aspx#comments</comments><description>&lt;p&gt;&lt;strong&gt;Both the number and severity of cyber attacks on retailers is accelerating according to TrustWave&amp;#39;s 2013 Global Security Report. 
&lt;br /&gt;&lt;/strong&gt;&lt;br /&gt;
The report indicates that those in the retail sector are now the top target for cyber criminals, making up 45 percent of TrustWave&amp;rsquo;s data breach investigations &amp;ndash; a 15 percent increase over 2011. &lt;/p&gt;
&lt;p&gt;&lt;i&gt;Some of the other noteworthy highlights from the report include:&lt;/i&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Applications are the most popular attack vector, with e-commerce sites the number one target&lt;/li&gt;
&lt;li&gt;64 percent of organizations attacked took more than 90 days to detect an intrusion with the average time for detection being 210 days -- 35 days longer than in 2011&lt;/li&gt;
&lt;li&gt;The two most noteworthy methods of intrusion, SQL injection and remote access, made up 73 percent of the infiltration methods used by criminals in 2012.&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&amp;quot;Cyber-criminals will never stop trying to compromise systems to obtain valuable information such as customer and private user data, corporate trade secrets and payment card information,&amp;quot; said Robert J. McCullen, Chairman, Chief Executive Officer and President of Trustwave. &lt;/p&gt;
&lt;p&gt;&amp;quot;This year&amp;#39;s Global Security Report pulls back the curtain revealing how breaches happen and how potential victims around the world can protect themselves so that they stay one step ahead and eliminate potential security threats. After reading this report, businesses and government agencies will be one step closer to building a comprehensive security strategy to reduce risk, protect data and safeguard their reputation.&amp;quot;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Trustwave&amp;rsquo;s 2013 report examined 450 data breaches, 2,500 penetration tests, 9 million Web application attacks, 2 million network and vulnerability scans, 5 million malicious websites and 20 billion emails.&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://www.websitemagazine.com/content/aggbug.aspx?PostID=23342" width="1" height="1"&gt;</description><category domain="http://www.websitemagazine.com/content/blogs/posts/archive/tags/web+security/default.aspx">web security</category><category domain="http://www.websitemagazine.com/content/blogs/posts/archive/tags/wm-hosting/default.aspx">wm-hosting</category><category domain="http://www.websitemagazine.com/content/blogs/posts/archive/tags/data+breaches/default.aspx">data breaches</category><category domain="http://www.websitemagazine.com/content/blogs/posts/archive/tags/vulnerability+scans/default.aspx">vulnerability scans</category><category domain="http://www.websitemagazine.com/content/blogs/posts/archive/tags/Robert+J.+McCullen/default.aspx">Robert J. McCullen</category><category domain="http://www.websitemagazine.com/content/blogs/posts/archive/tags/cyber+criminals/default.aspx">cyber criminals</category><category domain="http://www.websitemagazine.com/content/blogs/posts/archive/tags/TrustWave/default.aspx">TrustWave</category></item><item><title>Cyber Attacks a Top Concern for Most Business Owners</title><link>http://www.websitemagazine.com/content/blogs/posts/archive/2012/04/04/cyber-attacks-a-top-concern-of-most-business-owners.aspx</link><pubDate>Wed, 04 Apr 2012 18:00:00 GMT</pubDate><guid isPermaLink="false">1e469e21-c924-44fa-a132-47b5d0a8ad47:19471</guid><dc:creator>Linc Wonham</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://www.websitemagazine.com/content/blogs/posts/rsscomments.aspx?PostID=19471</wfw:commentRss><comments>http://www.websitemagazine.com/content/blogs/posts/archive/2012/04/04/cyber-attacks-a-top-concern-of-most-business-owners.aspx#comments</comments><description>&lt;hr /&gt;
&lt;p&gt;&lt;img src="http://www.websitemagazine.com/images/blog/greensql-mini.gif" style="float:left;margin:10px;" height="73" width="73" alt="" /&gt;&lt;b&gt;Database security solutions provider GreenSQL recently surveyed more than 6,000 small and medium-sized business IT professionals, database administrators and data security consultants about their most critical security concerns, and the results show that fears are as widespread among SMBs as they are in the enterprise class.&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;&lt;i&gt;The respondents&amp;rsquo; primary concerns were as follows:&lt;/i&gt;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;51 percent:&lt;/b&gt; SQL injection attacks from internal and external users&lt;/p&gt;
&lt;p&gt;&lt;b&gt;31 percent:&lt;/b&gt; Internal threats, including unauthorized database access, database administrator errors and data exposure to non-privileged internal users&lt;/p&gt;
&lt;p&gt;&lt;b&gt;18 percent:&lt;/b&gt; Regulatory compliance&lt;/p&gt;
&lt;p&gt;&amp;ldquo;In today&amp;rsquo;s environment, it isn&amp;rsquo;t a matter of whether you will be hacked, but when,&amp;rdquo; says GreenSQL CEO, Amir Sadeh. &amp;ldquo;Cybercriminals recognize that not only enterprises but also SMBs are especially vulnerable. Databases contain the crown jewels of an organization, which means a break-in by insiders or outsiders can cost millions in fines, lawsuits and customer attrition.&amp;rdquo;&lt;/p&gt;
&lt;p&gt;Cybercriminals use SQL injection to target both external websites and internal databases when seeking data for identity theft and other profitable black market activities. Public websites serving as the face of an organization are known to be vulnerable to SQL injection attacks but so are internal collaborative sites as shown by the recent assault on the internal Nokia developer application.&lt;/p&gt;
&lt;p&gt;Internal data security leaks, a concern of 31 percent of GreenSQL users surveyed, let corporate data get into the wrong hands. While developers, administrators and customer service representatives all need data access, they should have different access privileges.&lt;/p&gt;
&lt;p&gt;In addition, true data protection covers threats from both employee theft and error. Coordinating database access control and command permissions can significantly reduce data loss from errors while lowering the cost to repair any that remain.&lt;/p&gt;
&lt;p&gt;Compliance ranks third in the survey as a top security concern. Lack of compliance with Sarbanes Oxley, PCI DSS, HIPPA, or other regulations can result in significant legal fees, negatively impinge on a company&amp;rsquo;s ability to do business and reduce client and customer trust.&lt;/p&gt;
&lt;p&gt;Used by more than 100,000 SMBs in over 190 countries, GreenSQL offers four different database security technology packages.&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://www.websitemagazine.com/content/aggbug.aspx?PostID=19471" width="1" height="1"&gt;</description><category domain="http://www.websitemagazine.com/content/blogs/posts/archive/tags/sql+injection/default.aspx">sql injection</category><category domain="http://www.websitemagazine.com/content/blogs/posts/archive/tags/web+security/default.aspx">web security</category><category domain="http://www.websitemagazine.com/content/blogs/posts/archive/tags/database+security/default.aspx">database security</category><category domain="http://www.websitemagazine.com/content/blogs/posts/archive/tags/greensql/default.aspx">greensql</category></item></channel></rss>