Online Banking Fraud Hits the Courtroom: Someone Call Judge Judy!

A while back I wrote a blog about security responsibility and how it relates to online fraud, specifically online banking fraud. This was inspired by a story about...

Continue Reading

The Rule of Law in "Dodge City"

I am thrilled that McAfee is opening the stage to debate and to discussion with their recent white paper...

Continue Reading

What Makes a Cyber War?

I am often amazed by the sensationalism that surrounds the words "Cyber War".

This thought struck me as I read through the results of McAfee's survey of corporate executives in their paper...

Continue Reading

Float Like a Butterfly, Sting Like a Bee*

3D Secure is an XML-based protocol to add security to CNP (“Card Not Present”) transactions: think of credit cards that don’t have a magnetic swipe but are instead just a string of numbers that can be phished or captured. The operative words here are...

Continue Reading

The Sliding Scale of Security

If I ever wanted to shine a spotlight on possible various personal flaws of mine, I need look no further than the now commonly accepted consumer activity known as eCommerce. With eCommerce, I can be lazy – who wants to actually go out to the store? With eCommerce, I can be inattentive – eh, I’ll order that last minute and ship it overnight. I can self-justify – hey, if I look online, I know I can find exactly what is wanted, so why bother doing anything else? I do all these things (Mom, Dad, if you read this – I’m sorry) with eCommerce.

Continue Reading

Speaking of Security Podcast #175

Click to Download/Listen

This week's Speaking of Security podcast features an interview with Joseph Menn, author and award winning writer for Financial Times. He discusses his new book, Fatal System Error: The Hunt for the New Crime Lords Who Are Bringing Down the Internet.

Continue Reading

Fraudster-Operated Call Centers Emerge in the Underground Economy to Facilitate Phone Fraud

Since the beginning of the year, RSA has uncovered several one-stop-shop call centers in the fraud underground that provide fraudsters with all the tools they need to commit fraud over the phone.

Continue Reading

Asking the Right Questions

Topics: Compliance | PCI | Risk | Standards

I attended the National Retail Federation show in New York City last week, and one of the most common questions I received in the EMC/RSA booth was to 'How can RSA/EMC help me become PCI compliant?' (given the target market for the NRF show, that's not too surprising).

Continue Reading

RSA FraudAction Research Lab

Blog


Eric Baize: Software Security Assurance Blog

Blog


Sam Curry

Blog


Todd Graham: Deconstructing Governance, Risk and Compliance

Blog


Dr. Ari Juels

Blog


Shannon Kellogg

Blog


Mischel Kwon

Blog


Uri Rivner

Blog


Paul Stamp: Token Security Guy

Blog

Securing Virtualization Bloggers

Securing Virtualization Blog