<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://www.fiercecio.com" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
 <title>security flaws</title>
 <link>http://www.fiercecio.com/tags/security-flaws</link>
 <description></description>
 <language>en</language>
<item>
 <title>More Oracle patches on the way</title>
 <link>http://www.fiercecio.com/story/more-oracle-patches-way/2008-01-17?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FC0</link>
 <description>
&lt;P&gt;What did CIOs do before the patch? It&#039;s certainly being used a lot to fix system security flaws these days. This week alone, Oracle released 26 fixes across its product line in its latest critical patch update--nine of which repair flaws that are remotely exploitable. In October 2007, Oracle fixed a total of 51 vulnerabilities with critical patch update. We expect to see plenty more patches this year as hackers become more creative and new products arrive on the market that tempt them to attack.&lt;/p&gt;
&lt;P&gt;For more on Oracle&#039;s security woes:&lt;BR /&gt;- Check out this &lt;EM&gt;InfoWorld&lt;/em&gt; &lt;A href=&quot;http://www.infoworld.com/article/08/01/16/Oracle-fixes-critical-flaws-in-quarterly-update_1.html&quot;&gt;article&lt;/a&gt;&lt;/p&gt;

</description>
 <comments>http://www.fiercecio.com/story/more-oracle-patches-way/2008-01-17#comments</comments>
 <category domain="http://www.fiercecio.com/tags/critical-patch">critical patch</category>
 <category domain="http://www.fiercecio.com/channel/it-security">IT Security</category>
 <category domain="http://www.fiercecio.com/tags/oracle">Oracle</category>
 <category domain="http://www.fiercecio.com/tags/security-flaws">security flaws</category>
 <category domain="http://www.fiercecio.com/tags/patches">Software Patches</category>
 <pubDate>Thu, 17 Jan 2008 06:59:58 -0500</pubDate>
 <dc:creator />
 <guid isPermaLink="false">16969 at http://www.fiercecio.com</guid>
</item>
<item>
 <title>Google faces security hurdles in the enterprise</title>
 <link>http://www.fiercecio.com/story/google-faces-security-hurdles-in-the-enterprise/2007-07-16?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FC0</link>
 <description>&lt;P&gt;Google seems to be everywhere these days, but as the search giant moves into the enterprise, they&#039;re facing much of the same security scrutiny as those who have gone before them. Researchers at Ponemon Institute are expected to release a report today that outlines the concerns among IT professionals regarding the overall security of Google Desktop, the company&#039;s PC search utility, specifically within the confines of business operations. Their research revolves around a cross-site scripting vulnerability reported and subsequently patched by Google in February; the authors of the report say that their work underscores a growing level of concern over the company&#039;s rapidly expanding footprint in the enterprise. In a survey of more than 600 IT security specialists who indicated that they were familiar with the Google Desktop vulnerability, an overwhelming 71 percent said that they believe that the product likely harbors other security flaws. The company is trying to address security through its acquisitions of software vendors and has sponsored malware research projects such as Stopbadware.org.&lt;/P&gt;
&lt;P&gt;For more on Google&#039;s security challenge in the enterprise:&lt;BR&gt;- read all the details in this&amp;nbsp;&lt;EM&gt;Infoworld.&lt;/EM&gt; &lt;A href=&quot;http://www.infoworld.com/article/07/07/12/Mounting-scrutiny-for-Google-security_1.html&quot;&gt;Article &lt;BR&gt;&lt;/A&gt;&lt;/P&gt;

</description>
 <comments>http://www.fiercecio.com/story/google-faces-security-hurdles-in-the-enterprise/2007-07-16#comments</comments>
 <category domain="http://www.fiercecio.com/tags/business-operations">Business Operations</category>
 <category domain="http://www.fiercecio.com/tags/cross-site-scripting">cross site scripting</category>
 <category domain="http://www.fiercecio.com/tags/footprint">footprint</category>
 <category domain="http://www.fiercecio.com/tags/google">Google</category>
 <category domain="http://www.fiercecio.com/tags/google-desktop">Google Desktop</category>
 <category domain="http://www.fiercecio.com/tags/malware">Malware</category>
 <category domain="http://www.fiercecio.com/tags/mergers-and-acquisitions">Mergers and Acquisitions</category>
 <category domain="http://www.fiercecio.com/tags/outlines">outlines</category>
 <category domain="http://www.fiercecio.com/tags/protective-measures">Security</category>
 <category domain="http://www.fiercecio.com/tags/security-flaws">security flaws</category>
 <category domain="http://www.fiercecio.com/tags/software-vendors">software vendors</category>
 <category domain="http://www.fiercecio.com/tags/vulnerability">Vulnerability</category>
 <pubDate>Sun, 15 Jul 2007 20:01:39 -0400</pubDate>
 <dc:creator />
 <guid isPermaLink="false">4091 at http://www.fiercecio.com</guid>
</item>
<item>
 <title>ALSO NOTED:  Survey: Experience most important; Mapping out a data protection plan;</title>
 <link>http://www.fiercecio.com/story/also-noted-survey-experience-most-important-mapping-out-a-data-protection-p/2007-04-24?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FC0</link>
 <description>&lt;P&gt;&amp;gt; Mapping out a data protection plan. &lt;A href=&quot;http://www.technewsworld.com/story/56998.html?u=karends&amp;p=ENNSS_875cb04d3bb900e9ed07e8aad18d83d9&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; Where to begin with ITIL and configuration management. &lt;A href=&quot;http://articles.techrepublic.com.com/5100-10878_11-6177192.html?tag=nl.e125&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;FONT color=#800000&gt;&amp;gt;&lt;/FONT&gt; &lt;FONT color=#800000&gt;Survey:&lt;/FONT&gt; Experience more important than qualifications for IT management. &lt;A href=&quot;http://www.computerweekly.com/Articles/2007/04/23/223413/focus-on-experience-poses-professionalism-challenge.htm&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; New Bluetooth 2.1 spec will fix security flaws. &lt;A href=&quot;http://advice.cio.com/avishai_wool/new_bluetooth_2_1_spec_to_fix_security_flaws&quot;&gt;Column&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; Executive buy-in and project success. &lt;A href=&quot;http://computerworld.co.nz/news.nsf/mgmt/93AE3B2327D16080CC2572C3000D9417&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; Blogging for effective marketing. &lt;A href=&quot;http://www.businessweek.com/smallbiz/content/apr2007/sb20070423_465239.htm?campaign_id=rss_tech&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;B&gt;And Finally&lt;/B&gt;&amp;#8230; The three-minute meeting. &lt;A href=&quot;http://blogs.techrepublic.com.com/career/?p=109&amp;tag=nl.e124&quot;&gt;Blog&lt;/A&gt;&lt;/P&gt;

</description>
 <comments>http://www.fiercecio.com/story/also-noted-survey-experience-most-important-mapping-out-a-data-protection-p/2007-04-24#comments</comments>
 <category domain="http://www.fiercecio.com/tags/blogging">Blogging</category>
 <category domain="http://www.fiercecio.com/tags/bluetooth">bluetooth</category>
 <category domain="http://www.fiercecio.com/tags/configuration-management">configuration management</category>
 <category domain="http://www.fiercecio.com/tags/data-protection">Data Protection</category>
 <category domain="http://www.fiercecio.com/tags/itil">Information Technology Infrastructure Library (ITIL)</category>
 <category domain="http://www.fiercecio.com/tags/project-success">project success</category>
 <category domain="http://www.fiercecio.com/tags/security-flaws">security flaws</category>
 <pubDate>Mon, 23 Apr 2007 20:01:38 -0400</pubDate>
 <dc:creator />
 <guid isPermaLink="false">3665 at http://www.fiercecio.com</guid>
</item>
<item>
 <title>ALSO NOTED:  Showing appreciation has many payoffs; The IT workforce needs to work on non-tech skills;</title>
 <link>http://www.fiercecio.com/story/also-noted-showing-appreciation-has-many-payoffs-the-it-workforce-needs-to-/2007-04-13?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FC0</link>
 <description>&lt;P&gt;&amp;gt; Praising people for a job well done may lead to bigger profits. &lt;A href=&quot;http://money.cnn.com/2007/04/11/news/economy/annie_praise.fortune/index.htm?section=magazines_fortune&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; The IT workforce needs to buff up its non-technical skills. &lt;A href=&quot;http://management.silicon.com/careers/0,39024671,39166717,00.htm&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; Monitoring employees&#039; Internet and telephone use at work may contravene human rights laws. &lt;A href=&quot;http://management.silicon.com/itpro/0,39024675,39166722,00.htm&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; Application maintenance is a challenge for SMBs. &lt;A href=&quot;http://www.computerweekly.com/Articles/2007/04/17/222975/managed-services-toolbox.htm&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; Mind your manners when social networking. &lt;A href=&quot;http://www.topix.net/business/cio&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; Oracle update will fix 37 security flaws. &lt;A href=&quot;http://www.eweek.com/article2/0,1895,2113043,00.asp&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;B&gt;And Finally&amp;#8230; &lt;/B&gt;How&lt;B&gt; &lt;/B&gt;much would data theft cost you? &lt;A href=&quot;http://www.tech-404.com/calculator.html&quot;&gt;Calculator&lt;/A&gt;&lt;/P&gt;

</description>
 <comments>http://www.fiercecio.com/story/also-noted-showing-appreciation-has-many-payoffs-the-it-workforce-needs-to-/2007-04-13#comments</comments>
 <category domain="http://www.fiercecio.com/tags/profits">profits</category>
 <category domain="http://www.fiercecio.com/tags/security-flaws">security flaws</category>
 <category domain="http://www.fiercecio.com/tags/smbs">SMBs</category>
 <category domain="http://www.fiercecio.com/tags/social-networking-sites">Social networking</category>
 <pubDate>Thu, 12 Apr 2007 20:01:38 -0400</pubDate>
 <dc:creator />
 <guid isPermaLink="false">3586 at http://www.fiercecio.com</guid>
</item>
<item>
 <title>ALSO NOTED:  CIOs as evangelists; keeping server TCO down;</title>
 <link>http://www.fiercecio.com/story/also-noted-cios-as-evangelists-keeping-server-tco-down/2007-03-08?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FC0</link>
 <description>&lt;P&gt;&amp;gt; CIOs as evangelists. &lt;A href=&quot;http://www.infosysblogs.com/thinkflat/2007/03/flat_world_cios_preparing_for.html&quot;&gt;Blog&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; Keeping server TCO down. &lt;A href=&quot;http://www.cio.com/archive/030107/col_zapped.html&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; Microsoft to beta VoIP server soon. &lt;A href=&quot;http://www.cio.com/blog_view.html?CID=29918&quot;&gt;Blog&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; OpenBravo gains converts. &lt;A href=&quot;http://weblog.infoworld.com/openresource/archives/2007/03/openbravo_gathe.html&quot;&gt;Blog&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; Hackers exploiting security flaws device drivers, physical memory and PCI cards. &lt;A href=&quot;http://searchsecurity.techtarget.com/columnItem/0,294698,sid14_gci1246533,00.html&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; Apple works to break into the enterprise market. &lt;A href=&quot;http://www.computerworld.com/blogs/node/5133&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; A minority opinion on SOA. &lt;A href=&quot;http://colin.trematon.com/enterprise-business/why-soa-is-destined-to-die/&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;B&gt;And Finally... &lt;/B&gt;IT departments are under unreasonable pressure to support compliance issues. &lt;A href=&quot;http://www.computerweekly.com/Articles/2007/03/07/222259/it-departments-under-pressure-from-business-on-compliance.htm&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;

</description>
 <comments>http://www.fiercecio.com/story/also-noted-cios-as-evangelists-keeping-server-tco-down/2007-03-08#comments</comments>
 <category domain="http://www.fiercecio.com/tags/beta">beta</category>
 <category domain="http://www.fiercecio.com/tags/compliance-issues">compliance issues</category>
 <category domain="http://www.fiercecio.com/tags/evangelists">evangelists</category>
 <category domain="http://www.fiercecio.com/tags/security-flaws">security flaws</category>
 <category domain="http://www.fiercecio.com/tags/soa">SOA</category>
 <category domain="http://www.fiercecio.com/tags/tco">tco</category>
 <category domain="http://www.fiercecio.com/tags/voice-over-internet-protocol">VoIP</category>
 <pubDate>Wed, 07 Mar 2007 19:01:38 -0500</pubDate>
 <dc:creator />
 <guid isPermaLink="false">3320 at http://www.fiercecio.com</guid>
</item>
<item>
 <title>Black Hat event cites IBM vulnerabilities</title>
 <link>http://www.fiercecio.com/story/black-hat-event-cites-ibm-vulnerabilities/2006-08-08?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FC0</link>
 <description>&lt;P&gt;The Black Hat conference spawned another security risk alert before it ended last week, and this time it is IBM&#039;s database vulnerabilities that came under fire. As &lt;A href=&quot;http://www.fiercecio.com/story/it-s-a-show-of-vulnerabilities-at-black-hat-conference/2006-08-01&quot;&gt;FierceCIO reported &lt;/A&gt;last week, the annual conference began with Microsoft and network access control vendors under scrutiny for poor security and discovered product flaws. Now there are apparently over 20 security flaws with IBM&#039;s Informix database family, according to Next Generation Security Software Ltd. The vulnerabilities could let attacks launch a denial-of-service attack, grab data or simply compromise the database system. &lt;BR&gt;&lt;BR&gt;For more on the database issues:&lt;BR&gt;- check out &lt;EM&gt;Computerworld&lt;/EM&gt;&#039;s &lt;A href=&quot;http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;articleId=9002236&quot;&gt;news item&lt;/A&gt;&lt;/P&gt;

</description>
 <category domain="http://www.fiercecio.com/tags/black-hat">black hat</category>
 <category domain="http://www.fiercecio.com/channel/business-intelligence">Business Intelligence</category>
 <category domain="http://www.fiercecio.com/tags/compromise">compromise</category>
 <category domain="http://www.fiercecio.com/channel/data-management-storage">Data Management/Storage</category>
 <category domain="http://www.fiercecio.com/tags/denial-service">denial of service</category>
 <category domain="http://www.fiercecio.com/tags/denial-service-attack">denial of service attack</category>
 <category domain="http://www.fiercecio.com/channel/it-best-practices">IT Best Practices</category>
 <category domain="http://www.fiercecio.com/channel/it-security">IT Security</category>
 <category domain="http://www.fiercecio.com/tags/network-access-control">network access control</category>
 <category domain="http://www.fiercecio.com/tags/security-flaws">security flaws</category>
 <category domain="http://www.fiercecio.com/tags/security-risk">security risk</category>
 <category domain="http://www.fiercecio.com/tags/security-software">security software</category>
 <pubDate>Mon, 07 Aug 2006 20:01:36 -0400</pubDate>
 <dc:creator />
 <guid isPermaLink="false">1829 at http://www.fiercecio.com</guid>
</item>
<item>
 <title>Symantec reports on Vista account control flaws</title>
 <link>http://www.fiercecio.com/story/symantec-reports-on-vista-account-control-flaws/2006-07-25?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FC0</link>
 <description>&lt;P&gt;Symantec is still spending some time looking at the upcoming Vista system, identifying some bugs and security issues. This week it&#039;s focused on relating how the Microsoft OS has some security flaws within the User Account Control (UAC) feature. According to Symantec, an attacker could commandeer a Vista PC using IE 7 by burying a nasty file on a Vista UAC when a malicious Web site is visited.&amp;nbsp; According to the security vendor&#039;s report, the malware could provide unauthorized access to the PC for malicious intentions. Microsoft, for its part, says the vulnerability is tied to a user logging in with an administrator account, a practice it doesn&#039;t recommend. The Symantec report is the second of three the vendor will be releasing on Vista, due out in January. The third report, supposedly coming this week as well, will highlight security issues with the Vista core.&lt;/P&gt;
&lt;P&gt;For more on Vista vulnerability issues:&lt;BR&gt;- check out this &lt;A href=&quot;http://news.com.com/Symantec+continues+Vista+bug+hunt/2100-1002_3-6097976.html?tag=nefd.top&quot;&gt;article&lt;/A&gt; at &lt;EM&gt;CNet News.com&lt;/EM&gt;&lt;/P&gt;

</description>
 <category domain="http://www.fiercecio.com/tags/bugs">bugs</category>
 <category domain="http://www.fiercecio.com/channel/data-management-storage">Data Management/Storage</category>
 <category domain="http://www.fiercecio.com/tags/ie-7">ie 7</category>
 <category domain="http://www.fiercecio.com/channel/it-best-practices">IT Best Practices</category>
 <category domain="http://www.fiercecio.com/channel/it-security">IT Security</category>
 <category domain="http://www.fiercecio.com/tags/malicious-web">malicious web</category>
 <category domain="http://www.fiercecio.com/tags/malware">Malware</category>
 <category domain="http://www.fiercecio.com/channel/it-networking">Networking</category>
 <category domain="http://www.fiercecio.com/tags/security-flaws">security flaws</category>
 <category domain="http://www.fiercecio.com/tags/security-vendor">Security vendors</category>
 <category domain="http://www.fiercecio.com/tags/symantec">Symantec</category>
 <category domain="http://www.fiercecio.com/tags/vista-system">vista system</category>
 <pubDate>Mon, 24 Jul 2006 20:01:38 -0400</pubDate>
 <dc:creator />
 <guid isPermaLink="false">1726 at http://www.fiercecio.com</guid>
</item>
<item>
 <title>ALSO NOTED:  New security flaws for IE and Firefox; IT salaries on the rise in the UK; and much more...</title>
 <link>http://www.fiercecio.com/story/also-noted-new-security-flaws-for-ie-and-firefox-it-salaries-on-the-rise-in-the-uk-and-much-more/2006-06-07?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FC0</link>
 <description>&lt;P&gt;&amp;gt; New security flaws for IE and Firefox. &lt;A href=&quot;http://www.techweb.com/wire/security/188702202;jsessionid=DHDED4WNN4NIYQSNDBOCKICCJUMEKJVN&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; IT salaries on the rise in the UK. &lt;A href=&quot;http://www.onrec.com/content2/news.asp?ID=12041&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; System admin on trial for network logic bomb incident. &lt;A href=&quot;http://www.informationweek.com/news/showArticle.jhtml;jsessionid=HCLI5XW4SVPD0QSNDBCSKHSCJUMEKJVN?articleID=188702216&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; Texas turns on the Web cam for border patrolling. &lt;A href=&quot;http://www.newsfactor.com/news/Texas-Plans-Border-Patrol-Webcams/story.xhtml?story_id=01300170B7FG&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;gt; AOL puts a big toe into the security market. &lt;A href=&quot;http://news.com.com/AOL+to+enter+security+arena/2100-7355_3-6080800.html?tag=nefd.top&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;And Finally&lt;/STRONG&gt;... The required cultural shift involved in going mobile. &lt;A href=&quot;http://www.computerweekly.com/Articles/2005/10/13/212292/Public+lessons+for+private+firms.htm&quot;&gt;Article&lt;/A&gt;&lt;/P&gt;

</description>
 <category domain="http://www.fiercecio.com/tags/aol">aol</category>
 <category domain="http://www.fiercecio.com/tags/firefox">Firefox</category>
 <category domain="http://www.fiercecio.com/tags/logic-bomb">logic bomb</category>
 <category domain="http://www.fiercecio.com/tags/salaries">salaries</category>
 <category domain="http://www.fiercecio.com/tags/security-flaws">security flaws</category>
 <pubDate>Tue, 06 Jun 2006 20:01:33 -0400</pubDate>
 <dc:creator />
 <guid isPermaLink="false">1400 at http://www.fiercecio.com</guid>
</item>
</channel>
</rss>
