Ask The Security Expert: Questions & Answers
Application Security
From email firewalls to url/content filtering, Michael Cobb, CISSP-ISSAP is prepared to answer your application security questions.
Have a question for Mike Cobb? Email editor@searchsecurity.com!
-
Can Android virtual patching thwart Android malware attacks?
Answer - Application security expert Mike Cobb weighs the pros and cons of Android virtual patching to thwart Android malware attacks. 25 January 2012 -
Explaining how trusted SSL certificates and forged SSL certificates work
Answer - Web security relies on valid, trusted SSL certificates, but as Michael Cobb explains, forged SSL certificates undermine the model for trusted Web connections. 25 January 2012 -
Best practices: Gaining executive support for the software security lifecycle
Answer - Recent BSIMM3 study results provide guidelines for why executive support for the software security lifecycle is so important. Michael Cobb explains. 25 January 2012 -
BIOS management best practices: BIOS patches and BIOS updates
Answer - Amid growing concern over BIOS threats, expert Mike Cobb discusses how organizations should manage BIOS patches and BIOS updates. 25 January 2012 -
Dangerous applications: Time to ban Internet Explorer, Adobe in the enterprise?
Answer - CSIS says five dangerous applications are to blame for 99% of malware. Is it time to ban Internet Explorer, Flash and the others in the enterprise? 25 January 2012 -
An intro to free Microsoft security tools for secure software development
Answer - Free Microsoft security tools Threat Modeling, MiniFuzz and RegExFuzz are designed to help developers build secure software. 19 December 2011 -
How penetration testing helps ensure a secure data store
Answer - A third-party penetration test is the best way to determine whether an online data store can be compromised. 16 December 2011 -
Addressing HP netbook security with webOS discontinued
Answer - A company contemplates the security implications of continuing an HP netbook rollout with webOS discontinued 15 December 2011 -
OpenStack security analysis: Pros and cons of open source cloud software
Answer - Expert Michael Cobb examines the open source cloud computing platform OpenStack and relevant OpenStack security issues. 14 December 2011 -
Do WebKit exploits escalate risk of Web browser attacks?
Answer - The WebKit framework suffers from several vulnerabilities that can be exploited to conduct Web browser attacks. Expert Michael Cobb discusses the risk. 13 December 2011