As I look around the marketplace, there are a number of vendors along with Wholesecurity, such as Netegrity, Oblix, Quizid, RSA, VeriSign and Waveset who have parts of the identity management jigsaw but lack the whole solution.
The problem is that the service-orientated approach can expose organisations to new risks that current security solutions, from firewalls to SSL, cannot mitigate. The nature of security and the growing realisation that the perimeter is dissolving...
Cox said that a specially crafted digital certificate could crash the OpenSSL software through either of two flaws, causing a denial-of-service attack. The security flaws exist in the OpenSSL Project's version of the secure sockets layer (SSL...
You can only see that the session is encrypted but you can't tell who you're talking to unless you've verified the certificate," said Baumhof. Andreas Baumhof, chief technical officer, Microdasys, a German-based internet security company...
It refers to the process of using a single ID to authenticate a user across multiple systems - be they IT systems on a network, a group of websites or even different organisations. Most computer users should be aware by now that antivirus software...
Cranor's report could be positive news for a company such as VeriSign, which in December launched a tool with Microsoft that changes the colour of the browser address bar when it's displaying a website that has an "extended validation certificate...