-
Using SSH to customize and secure Unix servers
Using a Secure Shell (SSH) is a better way to manage Unix servers than command-line access or Telnet, and expert Joel Snyder details three simple modifications you can make in SSH to make your serv...
-
Securing Windows 7 desktops in 5 quick steps
Although Windows 7 is more secure than its predecessors, it remains vulnerable to security threats. In this tip, Brien Posey details five steps for securing Windows 7 desktops.
-
How to use an edge firewall for network bandwidth manag
These five tips will help your organization apply quality-of-service controls on a network perimeter firewall.
-
Considerations for an effective SMB password security p
Passwords are much easier to crack than they used to be. Joel Snyder takes a fresh look at password security policy considerations for the midmarket.
-
How to conduct endpoint application security triage
Many patch management systems fail to address endpoint application security. Tom Chmielarski suggests three areas to examine to ensure that your endpoint applications are secure.
-
Firesheep: Are midsized businesses more vulnerable?
A new exploit tool called Firesheep revealed just how vulnerable applications like Facebook and Twitter are to session hijacking attacks. Mike Chapple lists four steps you can take to protect your ...
-
Keeping smartphones secure when syncing with Exchange
How can employees securely sync their smartphones to your company's Exchange email system? Greg Braunton details the features and products you need to keep data secure.
-
Essential security upgrades for midsized enterprises
As companies create their security management plan for the coming year, they should look to upgrades in Linux and Windows operating systems, Adobe applications and Internet browsers to improve thei...
-
Best WiFi Security for the Midsized Business
To choose the best WiFi security for the small or midsized business, consider using WPA Enterprise or wireless access points with WPA-E authentication, or use a Windows hosted RADIUS service. Netwo...
-
Outsourcing your data center can boost compliance
Learn best practices for outsourcing data center services and about the security and compliance considerations that influence whether an SMB should outsource data center services.
-
Data Execution Prevention: Pros and Cons
When attackers inject malicious code into an application, Microsoft's Data Execution Prevention (DEP) technique can thwart the attack and save the day. But expert Tom Chmielarski says DEP does have...
-
PDF document security: Inside Google Chrome PDF viewer
You don't have to rely on Adobe's Acrobat Reader as your only PDF viewer; Google Chrome provides a secure PDF viewer that cuts down on your chances of falling victim to a PDF exploit.
-
PCI DSS 2.0 and virtualization compliance for SMBs
PCI DSS 2.0, which debuts this month, includes key changes for SMBs in the areas of virtualization and vulnerability assessments. Expert Mike Chapple details the changes and explains what midmarket...
-
Buffer overflow prevention: Add apps to Microsoft EMET
Adding vulnerable applications to the Microsoft Enhanced Mitigation Experience Toolkit is simple once you've mastered the command line configuration tool.
-
Using Microsoft Security Essentials 2.0 for SMB antivir
Even though it's a consumer offering, the free Microsoft Security Essentials 2.0 endpoint security software may be a perfect fit for many midmarket firms. Robbie Higgins explains why.
-
Windows 7 backup tool: Three Windows 7 Backup and Resto
Windows 7's built-in backup tool is a reliable options for smaller organizations wanting to preserve the confidentiality and availability of stored data.
-
Key technologies in a network perimeter intrusion defen
In this article, Joel Snyder introduces technologies that act as strong network perimeter defenses.
-
Enhanced Mitigation Experience Toolkit reduces buffer o
Microsoft Windows Enhanced Mititgation Experience Toolkit version 2 introduces six mitigations that reduce the risks posed by malware trying to cause an application buffer overflow attack.
-
Windows 7 Backup and Restore Center a critical data pro
Windows 7's built-in backup tool is a reliable options for smaller organizations wanting to preserve the confidentiality and availability of stored data.
-
How to remove rogue security software
Social engineering attacks trick users into installing rogue security software. Users need to be educated to avoid falling prey, and IT needs the tools to remove the fake security software.
-
Assessing Windows Phone 7 security features
Windows Phone 7 security features are proving to be a mixed bag. Sam Cattle assesses the enterprise security pros and cons of the latest Windows mobile platform.
-
Which security certifications are best for your career?
Whether starting your career or planning your next step as an IT security professional, this tip will guide you toward the best certifications for your interests and experience.
-
An SMB security risk assessment in five steps
Assessing your organization's security threats and risks takes just five steps, says Robbie Higgins. Check out his quick guide to the SMB security risk assessment process.
-
Nmap, Nessus, Nikto for do-it-yourself pen tests
Nmap, Nessus and Nikto are penetration testing tools that security operators can use to conduct pentests on their networks and applications.