这两天新闻很多, Google和微软打升级赛龙舟. Google那边是SideWiki/Wave/Place, Microsoft这边是免费反病毒套装Security Essentials (MSE). MSE的定位是用来替代Windows Live OneCare和一部分的Windows Defender. 鉴于以前微软免费套装的失望表现, 大家都怀着观望的心态等着 MSE.
从发布后这两天的媒体报道来看, 好评不少. ZDNet的Adrian的体验是很开心, Register的报道认为 MSE 不错的表现将可能重组客户端反病毒/反恶意软件市场, 尤其是免费反病毒软件市场. 这里应该包含了Symantec, Trend Micro, McAfee, Kaspersky等前几大, 应该还有360.cn, 网警等等都会受到影响. 当然, 昨天Symantec已经表示出不快了. Read more…
2.7.1, the first 2.7 maintenance release, is now available. 2.7.1 fixes 68 tickets. For users of version 2.7, it’s just one click to upgrade to 2.7.1. Wow! please begin to enjoy the convenience brought by 2.7!
Security itself isn’t cheap. Adi Shamir says that security and cost are inversely proportional: to halve your vulnerability,
you have to double your expenditure.
1. Improving business processes
2. Attracting and retaining new customers
3. Creating new products and services (innovate)
4. Expanding into new markets or geographies
5. Reducing enterprise cost
6. Improving enterprise workforce effectiveness
7. Expanding current customer relationship
8. Increasing the use of information/analytics
9. Targeting customers and markets more effectively
10. Acquiring new companies and capabilities (M&A)
(Source : Gartner EXP Survey 2008)
1. Delivering projects that enable business growth
2. Linking business and IT strategies and plans
3. Attracting, developing and retaining IT personnel
4. Improving the quality of IT services
5. Implementing IT process improvements
6. Improving IT governance
7. Building business skills in the IT organisation
8. Using information/intelligence in operations, products or services
9. Reducing the cost of IT
10. Managing IT risk and exposure
(Source : Gartner EXP Survey 2008)
1. Business Intelligence (No. 1 for 2006 and 2007)
2. Enterprise applications (ERP, SCM, CRM)
3. Servers and storage technologies
4. Legacy modernisation, upgrade or replacement
5. Technical infrastructure
6. Security technologies
7. Networking, voice and data
8. Collaboration technologies
9. Document management
10. Service Oriented (SOA)
CIOs continue to invest core technologies that can drive distinctive solutions
(Source : Gartner EXP Survey 2008)
“You don’t know who is swimming naked until the tide goes out.” In our world, we don’t know whose systems are running naked, with no controls, until they are attacked.
I changed the theme to “Clean Press“. It’s very simple, concise, crisp. As Dave said it focuses on content. I slightly modified it by changing the sidebar to right. If you like this one, Click to download Clean Press (right sidebar).
近日,央视接连两天对百度竞价排名的弊端进行了报道,各大媒体也没有放过这个机会,百度的媒体形象一度跌入低谷。联系到Google深入人心的“不作恶”形象,两形之下,给人高低立判之感。当公司发展到一定阶段,“民心所向”和“政治”就成为一个非常重要的环节。
虽然百度在国内市场占有率遥遥领先,但是由于其“竞价”方式的排名,搜索结果往往让人难以接受,从而放弃。尤其是专业人士,很依赖搜索结果的公正和客观,如果发现搜索出来的是一个报价的排名,还不如直接看广告了。
我在Google和百度上面分别搜索“信息安全”和”Security”,搜索结果大家一看就可以感觉到百度“竞价”排名对你的嘲弄: Read more…
朋友分享来的”东东枪”译版的奥巴马选举胜利后的演说稿,非常精彩。与大家共享:
Hello,Chicago!
芝城父老,别来无恙,
If there is anyone out there who still doubts that America is a place where all things are possible, who still wonders if the dream of our founders is alive in our time, who still questions the power of our democracy, tonight is your answer.
余尝闻世人有疑,不知当今美利坚凡事皆可成就耶?开国先贤之志方岿然于世耶?民主之伟力不减于昔年耶?凡存诸疑者,今夕当可释然。 Read more…
VMware 提供移动终端上的虚拟化产品 – MVP (Mobile Virtualization Platform)。基于MVP,终端用户可以同时运行多个虚拟的移动操作系统, 例如一个作为公司业务使用,另外一个给自己娱乐游戏使用。这样的技术乍一听起来有点悬,就手机、PDA那么小、那么弱的计算能力,还虚拟呢,那计算能力不就更弱了。但实际上,移动终端的计算能力在近几年来已经获得了快速提升,开始有渐渐重复当年的笔记本电脑的态势。 Read more…
Know where your data is, who has access to what, read your logs, guard your perimeter, minimize complexity, reduce access to “need only” and segment your networks.
美国Computerworld报道一位被裁的系统管理员被逮捕,罪名是对前雇主-位于纽约的某基金公司勒索钱财。
这个前雇员叫Viktor Savtyrev,他对于裁员协议中的补偿条款不愿意,所以写邮件给公司的总顾问和管理层,威胁说如果不提高他的补偿,他将毁坏公司的计算机系统。并威胁说,在攻击服务器系统后,还会通知媒体曝光。
虽然这个故事在当前金融危机的大背景下,很有代表意义,对各大准备裁员的公司都有警示意义。但是这件事情本身并不新鲜,以前类似的“信息安全”案件还有不少。 Read more…
据computerworld.com报道,下周将在东京召开的PacSec会议上将由Erik Tews演示他是如何破解WPA的。透露的主要破解原理是利用WPA将会自动向下兼容旧客户端,从而通过协商使用TKIP。这时他就有机会使用12-15分钟来破解整个通信的密钥。
所以,专家的推荐是:
-Use only CCMP(AES).
-Disable Negotiations to TKIP from CCMP(AES).
-If you must use TKIP, rekey every 120 seconds.
It’s reported that Rising damaged users‘ Outlook Express.
Rising is the largest anti-virus vendor based at China. It just began its globalization journey by tapping Japan market.
The incident was firstly report at Nov.7. The Rising anti-virus software – Kaka was found to kill the Outlook Express folders as virus files.
Rising has apologized to their users for this wrong operation and promised to correct this and help users to recover their files.
It’s another outstanding wrong operation of anti-virus vendors after Symantec at May.18, 2007.
Recent Comments