720-891-1663

Security News for the Week Ending March 5, 2021

Google Gives Up On Address Space Layout Randomization (ASLR) ASLR is a security technique that has been used for years to make it harder for hackers to FIND code in memory to compromise it. There is a problem in the rendering engine in the Chromium project that breaks ASLR and Google says that they won’t […]

Continue reading → [DISPLAY_ACURAX_ICONS]

NSA and CISA Issue Guidance on DNS Filtering

Starting from the beginning. DNS is the service that converts the web site address that you type in your browser like WWW.CNN.COM into the numbers, like 2a04:4e42:200::323:, that the Internet needs in order to connect you to that web site. DNS was invented because they didn’t think the web would be really popular if you […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Congress Digs into Dumpster Fire of Fed Cybersecurity

While there are plenty of private companies that were compromised by the SolarWinds attack, more importantly, many federal government departments and agencies including Treasury, State, the Nuclear Management folks, the FAA and others were compromised and information was stolen. Congress is getting into the act; we will see if anything positive happens or Congress loses […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News for the Week Ending February 26, 2021

DoD Working on CMMC-Fedramp ‘Reciprocity’ by Year End CMMC, the DoD’s new cybersecurity standard is designed to measure security practices of companies and the servers in the computer rooms and data centers. But what about the stuff in the cloud. That is covered by another government standard called FedRAMP. But those two standards have different […]

Continue reading → [DISPLAY_ACURAX_ICONS]