Tuesday, 28 April 2015

iboss Cybersecurity to open malware research center

San Diego’s iboss Cybersecurity said Monday that it will include a new malware research center to find data-stealing computer viruses when it moves to a new headquarters in August.

The research facility will work with the University of California-San Diego Supercomputer Center to provide threat intelligence that iboss believes will benefit not only its customers but the cybersecurity industry at large.

“We are going to profile millions and millions of files, like we have been doing, but at a much larger scale and basically build a huge behavioral repository of malware,” said Paul Martini, chief executive of iboss.

The research center could help fuel San Diego’s efforts toward becoming a Cyber Center of Excellence. The region wants to tap its military and private sector cybersecurity expertise to form a cyberindustry cluster in the region.

Iboss plans to share its behavioral malware information from the research center through a pending software platform called CyberNOC – or Cyber Network Operations Center.

It will function something like the professional social media website LinkedIn but for corporate chief security officers, said Martini. Through CyberNOC, CSOs can share information with each other — including malware — uncovered at the research center.

“Basically your hackers are working in teams right now and they are very networked,” said Martini. “The other side, the good side, is not. They are in silos. This provides that fabric so you can tackle the problems in a non-siloed way.”

Iboss uses a relatively new method to stop hackers from stealing large amounts of data. Cybersecurity software typically blocks viruses from penetrating a corporate network by examining known malware signatures as they reach the network firewall.

What iboss does is monitor suspicious traffic on the network. When it sees unusual behavior, it automatically contains potential malware before hackers can steal large amounts of sensitive information.

Martini co-founded the company with his brother, Peter, 12 years ago. The firm has about 4,000 clients including Xerox, Sears and the U.S. Department of the Interior.

Its revenue is forecast at $60 million this year, said Martini, and could eclipse that based on the company recently signing a distribution agreement with Accuvant, a large information security services firm.

Privately held iboss is moving into the former SAIC data center building at 4110 Campus Point. The 43,000-square-foot structure was chosen in part because of its fiber optic lines that supply ample bandwidth, backup generators and other heavy duty infrastructure.

The company expects to employ about 350 worldwide this year. It currently has about 100 workers at its corporate headquarters in Sorrento Valley but also has locations in Florida, the United Kingdom and elsewhere. Martini thinks the company could go public in the next 12 months to 24 months if its growth continues.

Source: http://ift.tt/1JMgelp



from cyber security caucus http://ift.tt/1Ij9Jbj
via IFTTT

Monday, 27 April 2015

NSA Surveillance On U.S. Citizens Just As Bad If Not Worse Since Snowden, Survey says

The RSA Conference is one of the largest cybersecurity business events in the world. The conference just wrapped up on Friday in San Francisco, where it brought together a collage of industry experts, programmers, industry developers, hackers and investors, in one spot to discuss the current and future atmosphere of 21st century security. Washington, D.C.-based cybersecurity startup Thycotic was one of those companies in attendance — and they came away with a host of new answers. According to a survey conducted by Thycotic at RSA 2015, 94 percent of participants believed that citizen-targeted NSA surveillance had increased or at least remained the same since the Snowden revelations of June 2013.

This is important for two reasons: 1.) those participants surveyed represent a group that is intimately aware of the NSA’s network and/or are highly knowledgable of the general cyber realm — potentially due to previous DoD work experience 2.) due to the conference’s typical guest list, it also suggests a private tech industry that remains entirely skeptical of working with the government on cyber defense initiatives.

Founded in 1996, Thycotic develops IT security and password management solutions for a cohort of fortune 500 companies. The company is a consistent RSA conference guest. This year the RSA Conference theme was to challenge contemporary security thinking. More than likely, the theme was related to Section 215 of the Patriot Act covering government surveillance, which expires at the end of May.

The survey consisted of answers from 202 RSA Conference 2015 attendees, conducted between April 20th and 21st in San Francisco on event grounds. Approximately half of those participants believed that the NSA has increased its surveillance of U.S. citizens since 2013, while 45 percent felt that there had been virtually no change. Perhaps more importantly, just 6 percent said that the national exposure of classified NSA documents actually led to a decrease in U.S. citizen surveillance.

66 percent of respondents said that Section 215 of the Patriot Act should not be renewed. Interestingly, about 70 percent of respondents believed that the Fed’s newly formed Cyber Threat Intelligence Integration Center (CTIIC), tasked with producing coordinated cyber threat assessments and sharing said information with the relevant agencies, would be a positive national asset — indicating an increased confidence in the government’s ability to combat cybercrime.

“While the overwhelming majority of respondents believe that the CTIIC will have a positive impact on national security, this is not the time for organizations of any size to let their guard down, as we’ve seen countless high-profile cyber attacks and data breaches in just the last year,” said Jonathan Cogley, CEO and founder of Thycotic, in a statement. “As cyber threats increasingly become more sophisticated, organizations should be mindful of both external and insider threats. Privileged account management is still the best way for organizations to ensure that their sensitive data is kept out of the wrong hands.”

Source: http://ift.tt/1b571Jb



from cyber security caucus http://ift.tt/1Gps69Z
via IFTTT

Cyber Security Dojo on Twitter


from Cyber Security Dojo http://ift.tt/1DtVSIG
via IFTTT

Cyber Security Dojo on Twitter


from Cyber Security Dojo http://ift.tt/1DtVSIG
via IFTTT

The Unfortunate Growth Sector: Cybersecurity | cyber security dojo


from Cyber Security Dojo http://ift.tt/1bLlE5J
via IFTTT

The Unfortunate Growth Sector: Cybersecurity | cyber security dojo


from Cyber Security Dojo http://ift.tt/1bLlE5J
via IFTTT

Cyber Security Dojo on Twitter


from Cyber Security Dojo http://ift.tt/1zfryX2
via IFTTT