<?xml version="1.0" encoding="UTF-8"?>

<!-- generator="wordpress/2.0.3" -->
<rss version="2.0" 
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

http://www.ngssoftware.com<channel>
	<title> NGSSoftware news</title>
	<link>/news/ </link>
	<description>NGS In The News</description>	<pubDate>Tue, 18 Nov 2008 09:06:07 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.0.3</generator>
	<language>en</language>
			<item>
		<title>Blocking Traffic by Country on Production Networks</title>
		<link>http://www.ngssoftware.com/news/blocking-traffic-by-country-on-production-networks/ </link>
		<comments>http://www.ngssoftware.com/news/blocking-traffic-by-country-on-production-networks/#comments</comments>
		<pubDate>Mon, 21 Jul 2008 05:50:52 +0000</pubDate>
		<dc:creator>NGS</dc:creator>
		
	<category>news</category>
		<guid isPermaLink="false">http://www.ngssoftware.com/news/blocking-traffic-by-country-on-production-networks/</guid>
		<description><![CDATA[NGSSoftware&#8217;s Tim Mullen has posted a new article at Security Focus.
&#8220;Here is some more detailed information on the use of country-by-country data  sets in firewall configurations, where it may be appropriate, and methods by  which one may use the sets to create traffic reports. While the methods listed  and tools available are [...]]]></description>
			<content:encoded><![CDATA[<p>NGSSoftware&#8217;s Tim Mullen has posted a new article at Security Focus.</p>
<p>&#8220;Here is some more detailed information on the use of country-by-country data  sets in firewall configurations, where it may be appropriate, and methods by  which one may use the sets to create traffic reports. While the methods listed  and tools available are created specifically for ISA, the concept can be applied  to any product that supports the necessary data elements&#8221;</p>
<p><a target="_blank" href="http://www.securityfocus.com/infocus/1900/1">Read the full article at Security Focus</a>.
</p>
]]></content:encoded>
			<wfw:commentRSS>http://www.ngssoftware.com/news/blocking-traffic-by-country-on-production-networks/feed/ </wfw:commentRSS>
		</item>
		<item>
		<title>Guide to VOIP Security</title>
		<link>http://www.ngssoftware.com/news/guide-to-voip-security/ </link>
		<comments>http://www.ngssoftware.com/news/guide-to-voip-security/#comments</comments>
		<pubDate>Mon, 14 Jul 2008 05:50:00 +0000</pubDate>
		<dc:creator>NGS</dc:creator>
		
	<category>news</category>
		<guid isPermaLink="false">http://www.ngssoftware.com/advisories/guide-to-voip-security/</guid>
		<description><![CDATA[&#8220;&#8221;The problem lies not in VOIP technology but in its implementation&#8221;, says Barrie Dempster, a senior security consultant for Next Generation Security Software. &#8220;If you apply traditional network security logic to VOIP you can make it as secure as any other protocol,&#8221; he says.&#8221;
Read the full article at PC World (Aus).

]]></description>
			<content:encoded><![CDATA[<p>&#8220;&#8221;The problem lies not in VOIP technology but in its implementation&#8221;, says Barrie Dempster, a senior security consultant for Next Generation Security Software. &#8220;If you apply traditional network security logic to VOIP you can make it as secure as any other protocol,&#8221; he says.&#8221;</p>
<p><a target="_blank" href="http://www.pcworld.idg.com.au/index.php/id;545169124;fp;4;fpid;782452">Read the full article at PC World (Aus)</a>.
</p>
]]></content:encoded>
			<wfw:commentRSS>http://www.ngssoftware.com/news/guide-to-voip-security/feed/ </wfw:commentRSS>
		</item>
		<item>
		<title>Ghosts of Java Haunt Users</title>
		<link>http://www.ngssoftware.com/news/ghosts-of-java-haunt-users/ </link>
		<comments>http://www.ngssoftware.com/news/ghosts-of-java-haunt-users/#comments</comments>
		<pubDate>Fri, 11 Jul 2008 08:30:27 +0000</pubDate>
		<dc:creator>NGS</dc:creator>
		
	<category>news</category>
		<guid isPermaLink="false">http://www.ngssoftware.com/news/ghosts-of-java-haunt-users/</guid>
		<description><![CDATA[John Heasman, Vice-President of Research at NGSSoftware, discusses his Java security work with Brian Krebs of the Washington Post Security Fix blog.
 Read the full article at WashingtonPost.com
 

]]></description>
			<content:encoded><![CDATA[<p>John Heasman, Vice-President of Research at NGSSoftware, discusses his Java security work with Brian Krebs of the Washington Post Security Fix blog.</p>
<p> <a href="http://blog.washingtonpost.com/securityfix/2008/07/remnant_java_versions_again_po.html" target="_blank">Read the full article at WashingtonPost.com</a></p>
<p> 
</p>
]]></content:encoded>
			<wfw:commentRSS>http://www.ngssoftware.com/news/ghosts-of-java-haunt-users/feed/ </wfw:commentRSS>
		</item>
		<item>
		<title>SC AWARDS EUROPE 2008: Winners announced</title>
		<link>http://www.ngssoftware.com/news/sc-awards-europe-2008-winners-announced/ </link>
		<comments>http://www.ngssoftware.com/news/sc-awards-europe-2008-winners-announced/#comments</comments>
		<pubDate>Wed, 23 Apr 2008 14:15:04 +0000</pubDate>
		<dc:creator>NGS</dc:creator>
		
	<category>news</category>
		<guid isPermaLink="false">http://www.ngssoftware.com/news/sc-awards-europe-2008-winners-announced/</guid>
		<description><![CDATA[&#8220;The accolade for Best Security Company went to UK based NGSSoftware. A beaming  David Litchfield, the managing director, accepted the award from Lumension’s  Andrew Clarke. &#8221;
Read the full article at SC Magazine.
NGSSoftware&#8217;s Press Release.

]]></description>
			<content:encoded><![CDATA[<p>&#8220;The accolade for Best Security Company went to UK based NGSSoftware. A beaming  David Litchfield, the managing director, accepted the award from Lumension’s  Andrew Clarke. &#8221;</p>
<p><a target="_blank" href="http://scmagazine.com/uk/news/article/804222/sc-awards-europe-2008-winners-announced/">Read the full article at SC Magazine</a>.</p>
<p><a target="_blank" href="http://www.ngssoftware.com/press-releases/ngssoftware-wins-best-security-company-at-sc-awards-2008/">NGSSoftware&#8217;s Press Release</a>.
</p>
]]></content:encoded>
			<wfw:commentRSS>http://www.ngssoftware.com/news/sc-awards-europe-2008-winners-announced/feed/ </wfw:commentRSS>
		</item>
		<item>
		<title>David LeBlanc&#8217;s 15 Most Influential Security People</title>
		<link>http://www.ngssoftware.com/news/david-leblancs-15-most-influential-security-people/ </link>
		<comments>http://www.ngssoftware.com/news/david-leblancs-15-most-influential-security-people/#comments</comments>
		<pubDate>Tue, 18 Mar 2008 06:42:59 +0000</pubDate>
		<dc:creator>NGS</dc:creator>
		
	<category>news</category>
		<guid isPermaLink="false">http://www.ngssoftware.com/news/david-leblancs-15-most-influential-security-people/</guid>
		<description><![CDATA[&#8220;Same thing for SQL – used to be a security mess, now it&#8217;s really solid – and  thanks to NGS for helping&#8221;
Read the full article at David LeBlanc&#8217;s Web Log.

]]></description>
			<content:encoded><![CDATA[<p>&#8220;Same thing for SQL – used to be a security mess, now it&#8217;s really solid – and  thanks to NGS for helping&#8221;</p>
<p>Read the full article at <a target="_blank" href="http://blogs.msdn.com/david_leblanc/archive/2008/02/14/15-most-influential-security-people.aspx">David LeBlanc&#8217;s Web Log</a>.
</p>
]]></content:encoded>
			<wfw:commentRSS>http://www.ngssoftware.com/news/david-leblancs-15-most-influential-security-people/feed/ </wfw:commentRSS>
		</item>
		<item>
		<title>How to combat the Sans Institute&#8217;s top 10 security threats</title>
		<link>http://www.ngssoftware.com/press-releases/how-to-combat-the-sans-institutes-top-10-security-threats/ </link>
		<comments>http://www.ngssoftware.com/press-releases/how-to-combat-the-sans-institutes-top-10-security-threats/#comments</comments>
		<pubDate>Mon, 14 Jan 2008 13:58:59 +0000</pubDate>
		<dc:creator>NGS</dc:creator>
		
	<category>press releases</category>
	<category>news</category>
		<guid isPermaLink="false">http://www.ngssoftware.com/press-releases/how-to-combat-the-sans-institutes-top-10-security-threats/</guid>
		<description><![CDATA[Read the latest article from NGSSoftware&#8217;s Tim Mullen at ComputerWeekly.com.
&#8220;If one were to go back through the archives of the Sans Institute&#8217;s Top Threats lists, some of which I have contributed to, one would find the range of threats and vulnerabilities shifting and changing through the years along with the ever-changing security landscape itself - [...]]]></description>
			<content:encoded><![CDATA[<p>Read the latest article from NGSSoftware&#8217;s Tim Mullen at <a target="_blank" href="http://www.computerweekly.com/Articles/2008/01/14/228871/how-to-combat-the-sans-institutes-top-10-security-threats.htm">ComputerWeekly.com</a>.</p>
<p>&#8220;If one were to go back through the archives of the Sans Institute&#8217;s Top Threats lists, some of which I have contributed to, one would find the range of threats and vulnerabilities shifting and changing through the years along with the ever-changing security landscape itself - writes Timothy Mullen, vice-president of consulting services at NGSSoftware.&#8221;
</p>
]]></content:encoded>
			<wfw:commentRSS>http://www.ngssoftware.com/press-releases/how-to-combat-the-sans-institutes-top-10-security-threats/feed/ </wfw:commentRSS>
		</item>
		<item>
		<title>Survey finds thousands of database servers open to attack</title>
		<link>http://www.ngssoftware.com/news/survey-finds-thousands-of-database-servers-open-to-attack/ </link>
		<comments>http://www.ngssoftware.com/news/survey-finds-thousands-of-database-servers-open-to-attack/#comments</comments>
		<pubDate>Wed, 14 Nov 2007 10:32:33 +0000</pubDate>
		<dc:creator>NGS</dc:creator>
		
	<category>news</category>
		<guid isPermaLink="false">http://www.ngssoftware.com/news/survey-finds-thousands-of-database-servers-open-to-attack/</guid>
		<description><![CDATA[&#8220;Litchfield said. &#8220;Whilst it&#8217;s not possible to say how many of these systems are engaged in a commercial function, with just under half a million servers accessible there is clearly potential for external hackers and criminals to gain access to these systems and to sensitive information.&#8221;"
Read the full article at SearchSecurity.com.

]]></description>
			<content:encoded><![CDATA[<p>&#8220;Litchfield said. &#8220;Whilst it&#8217;s not possible to say how many of these systems are engaged in a commercial function, with just under half a million servers accessible there is clearly potential for external hackers and criminals to gain access to these systems and to sensitive information.&#8221;"</p>
<p><a target="_blank" href="http://searchsecurity.techtarget.com/originalContent/0,289142,sid14_gci1281896,00.html">Read the full article at SearchSecurity.com</a>.
</p>
]]></content:encoded>
			<wfw:commentRSS>http://www.ngssoftware.com/news/survey-finds-thousands-of-database-servers-open-to-attack/feed/ </wfw:commentRSS>
		</item>
		<item>
		<title>Thousands of Unprotected Databases Litter the Internet</title>
		<link>http://www.ngssoftware.com/news/thousands-of-unprotected-databases-litter-the-internet/ </link>
		<comments>http://www.ngssoftware.com/news/thousands-of-unprotected-databases-litter-the-internet/#comments</comments>
		<pubDate>Wed, 14 Nov 2007 10:26:10 +0000</pubDate>
		<dc:creator>NGS</dc:creator>
		
	<category>news</category>
		<guid isPermaLink="false">http://www.ngssoftware.com/advisories/thousands-of-unprotected-databases-litter-the-internet/</guid>
		<description><![CDATA[&#8220;The findings represent a &#8220;significant risk,&#8221; according to David Litchfield, the security researcher who authored the report. &#8220;With just under half a million servers accessible, there is clearly potential for external hackers and criminals to gain access to these systems and to sensitive information,&#8221; he said. &#8221;
Read the full article at eWeek.com.

]]></description>
			<content:encoded><![CDATA[<p>&#8220;The findings represent a &#8220;significant risk,&#8221; according to David Litchfield, the security researcher who authored the report. &#8220;With just under half a million servers accessible, there is clearly potential for external hackers and criminals to gain access to these systems and to sensitive information,&#8221; he said. &#8221;</p>
<p><a target="_blank" href="http://www.eweek.com/article2/0,1895,2217123,00.asp">Read the full article at eWeek.com</a>.
</p>
]]></content:encoded>
			<wfw:commentRSS>http://www.ngssoftware.com/news/thousands-of-unprotected-databases-litter-the-internet/feed/ </wfw:commentRSS>
		</item>
		<item>
		<title>Half Million Database Servers Lack Firewall Security</title>
		<link>http://www.ngssoftware.com/news/half-million-database-servers-lack-firewall-security/ </link>
		<comments>http://www.ngssoftware.com/news/half-million-database-servers-lack-firewall-security/#comments</comments>
		<pubDate>Wed, 14 Nov 2007 10:23:07 +0000</pubDate>
		<dc:creator>NGS</dc:creator>
		
	<category>news</category>
		<guid isPermaLink="false">http://www.ngssoftware.com/news/half-million-database-servers-lack-firewall-security/</guid>
		<description><![CDATA[&#8220;Litchfield took a look at just over 1 million randomly generated Internet Protocol [IP] addresses, checking them to see if he could access them on the IP ports reserved for Microsoft SQL Server or Oracle&#8217;s database. The results? He found 157 SQL servers and 53 Oracle servers. Litchfield then relied on known estimates of the [...]]]></description>
			<content:encoded><![CDATA[<p>&#8220;Litchfield took a look at just over 1 million randomly generated Internet Protocol [IP] addresses, checking them to see if he could access them on the IP ports reserved for Microsoft SQL Server or Oracle&#8217;s database. The results? He found 157 SQL servers and 53 Oracle servers. Litchfield then relied on known estimates of the number of systems on the Internet to arrive at his conclusion: &#8220;There are approximately 368,000 Microsoft SQl Servers&#8230; and about 124,000 Oracle database servers directly accessible on the Internet,&#8221; he wrote in his report, due to be made public next week.&#8221;</p>
<p><a target="_blank" href="http://www.pcworld.com/businesscenter/article/139622/half_million_database_servers_lack_firewall_security.html">Read the full article at PCWorld.com</a>.
</p>
]]></content:encoded>
			<wfw:commentRSS>http://www.ngssoftware.com/news/half-million-database-servers-lack-firewall-security/feed/ </wfw:commentRSS>
		</item>
		<item>
		<title>Black Hat 2007: New database forensics tool could aid data breach cases</title>
		<link>http://www.ngssoftware.com/news/black-hat-2007-new-database-forensics-tool-could-aid-data-breach-cases/ </link>
		<comments>http://www.ngssoftware.com/news/black-hat-2007-new-database-forensics-tool-could-aid-data-breach-cases/#comments</comments>
		<pubDate>Fri, 03 Aug 2007 08:07:02 +0000</pubDate>
		<dc:creator>NGS</dc:creator>
		
	<category>news</category>
		<guid isPermaLink="false">http://www.ngssoftware.com/news/black-hat-2007-new-database-forensics-tool-could-aid-data-breach-cases/</guid>
		<description><![CDATA[&#8220;A new database forensics tool being developed by database security guru David Litchfield could help data breach investigators build evidence against attackers.
itchfield, managing director at UK-based NGS (Next Generation Security) Software Ltd. plans to release the Forensic Examiners Database Scalpel. The new tool is designed for Oracle database management systems and automates the process of [...]]]></description>
			<content:encoded><![CDATA[<p>&#8220;A new database forensics tool being developed by database security guru David Litchfield could help data breach investigators build evidence against attackers.</p>
<p>itchfield, managing director at UK-based NGS (Next Generation Security) Software Ltd. plans to release the Forensic Examiners Database Scalpel. The new tool is designed for Oracle database management systems and automates the process of sifting through mountains of system metadata to discover the cause and extent of a data security breach.&#8221;</p>
<p><a target="_blank" href="http://searchsecurity.techtarget.com/originalContent/0,289142,sid14_gci1266525,00.html">Read the full article at SearchSecurity.com</a>.
</p>
]]></content:encoded>
			<wfw:commentRSS>http://www.ngssoftware.com/news/black-hat-2007-new-database-forensics-tool-could-aid-data-breach-cases/feed/ </wfw:commentRSS>
		</item>
	</channel>
</rss>
