Cloud Security

Cloud Security news, analysis, research, how-to, opinion, and video.

Indianapolis 148492252
foggy morning

enterprise cloud thinkstock

Study: Compliance biggest cloud security challenge

According to a new report by cloud security company CipherCloud, compliance is the single biggest concern for large organizations looking at cloud adoption

cloud head

Your guide to compliance in the cloud

You can ensure cloud compliance with PCI DSS, HIPAA and other regulatory requirements, but it takes investigation and persistence to get the answers and documentation you need to prove it.

credit cards keyboard

Can software-based POS encryption improve PCI compliance?

In the wake of the recent Verizon report that shows that 80 percent are out of PCI DSS compliance between audits, some vendors are urging the PCI Council to consider approving software-based point-to-point encryption, in addition to...

reboot cloud security

What happens inside Amazon when there’s a Xen vulnerability

When a Xen vulnerability is found, Amazon security engineers scramble to respond.

slide to unlock

iPhone theft victims tricked into unlocking devices

Symantec has discovered a campaign that aims to unlock Apple devices after they've been lost, which requires either the device's passcode or the credentials for a person's iCloud account.

nsa director vice adm michael rogers

NSA director wants gov't access to encrypted communications

The U.S. should be able to craft a policy that allows the NSA and law enforcement agencies to read encrypted data when they need to, NSA director Michael Rogers said during an appearance at a cybersecurity policy event Monday.

photonics

Hamamatsu eliminates malware with virtual appliances

OpenDNS rescues optical sensor maker from crippling infections.

facebook not like

Facebook sees challenges to sharing threat data with US

Facebook's new platform for sharing information about security threats appears to be gaining support, though it's unclear if the U.S. government or law enforcement will get a seat at the table, something a Facebook official said is...

cloud computing

Microsoft adopts international standard for cloud privacy

Microsoft said it would follow a new standard of the International Organization for Standardization

Wifi sign on gate

Personal weather stations can expose your Wi-Fi network

In the latest Internet of Things security blunder, personal weather station devices made by Netatmo were found sending users' Wi-Fi passwords back to the company over unencrypted connections.

jaguar land rover

Senators to push privacy, security legislation for IoT

Some Democratic senators want new laws that mandate security and privacy measures on the Internet of Things, as concern grows over personal data collected by connected devices.

cso50 winners

CSO50 winners announced

Find out the winners of CSO's upcoming event.

sitting on cloud

Do executives think you are relevant to cloud security decisions?

Findings from a recent report suggest the need to make some shifts to stay relevant in executive and board-level conversations about security

shadow it

Only 8 percent of companies can track shadow IT

Only 8 percent of companies know the scope of shadow IT at their organizations, according to a new survey by the Cloud Security Alliance

big data in the cloud

Akamai predicts more cheap hacking toolkits, political attacks next year

We'll be seeing more severe vulnerabilities like Shellshock and Heartbleed in 2015, cheap online hacking and politically motivated attacks predicts Akamai

120214blog airplane laptop

Gogo Inflight Internet serves up 'man-in-the-middle' with fake SSL

A Google Chrome security engineer has discovered that Gogo In-flight Internet is issuing fake Google certificates.

bit coins

Police suspect fraud took most of Mt. Gox's missing bitcoins

Japanese police believe only 1 percent of some 650,000 bitcoins was taken by hackers, according to the Yomiuri Shimbun newspaper

Over 30 vulnerabilities found in Google App Engine

Researchers escaped the Java sandbox on the cloud platform and executed code on the underlying system

Load More