Security Management
Published on Security Management (http://www.securitymanagement.com)
Morning Security Brief: Cyber Threats, Expedited Airport Screening, and More
By Ann Longmore-Etheridge
Created 01/30/2013 - 08:47



    
Wrap-Up?: 
No
Weight: 
0
Lead Headline?: 
No
Date: 
01/30/2013
By Line: 
By Ann Longmore-Etheridge
Teaser: 

DHS is warning of a specific cyber threat to networking devices, and DHS Secretary Janet Napolitano discusses a broader threat of a cyber 9-11.The TSA is trying to expedite screening for more air travelers. A new new software tool can spot disgruntled employees. And more.

►ZDNet reports that the U.S. Department of Homeland Security is warning of "a serious threat to networking devices [1], such as scanners, printers, computers, and routers. It comes only a few hours after a white paper was released by security researchers at Rapid7, which claimed that approximately 40 to 50 million devices worldwide [2] are vulnerable to infiltration by hackers as a result of a flaw in a networking protocol."

The problem is with Universal Plug and Play (UPnP), which lets devices that connect to networks communicate and discover each other's presence. DHS is "concerned that the vulnerability could impact millions of machines, and warns users to update their software or disable UPnP altogether," the article notes.

►Homeland Security Secretary Janet Napolitano used a speech at Washington, D.C., think tank the Woodrow Wilson Center,to address the possibility of a "cyber 9-11 [3]." Sectors of the privately owned U.S. infrastructure, she said, are highly vulnerable, she said, and she urged Congress [4] to pass cyber security legislation that would help to mitigate any future cyber attack.

►In the same Wilson Center speech, reports HSToday.us, Napolitano also stated [5] that "the goal of TSA to make half of the U.S. population eligible for expedited screening within two years' time." Toward that goal, the TSA "held an industry day to explore the possibility of using commercial data to prescreen air passengers and thus speed their physical screening at U.S. airports. The TSA has been putting trusted travelers through expedited screening through its PreCheck program but the agency is now seeking ways to expand the population of travelers eligible for faster and lighter screening."

►"A new International Business Machines Corp. security tool uses Big Data to help CIOs detect internal and external security threats in new ways—and can even scan email and social media to flag apparently 'disgruntled' employees [6] who might be inclined to reveal company secrets," says the Wall Street Journal. It does so by analyzing e-mails, financial transactions, and website traffic to detect patterns of security threats and fraud.

►Elsewhere in the news, Niger, which is next to Mali, agrees to let U.S. have surveillance drones f [7]ly from there, reports CNN. the Bayoubuzz reports on the U.S. Coast Guard's Super Bowl security [8] plan, which it has begun to implement, and a GAO report finds that the Pentagon still isn't doing enough to address the military's sexual abuse problem [9], especially with regard to protecting the victim's right to confidentiality in seeking medical treatment, reports Danger Room.

 

 

Related Resources: 

Comments


Security Management is the award-winning publication of ASIS International, the preeminent international
organization for security professionals, with more than 38,000 members worldwide.

ASIS International, Inc. Worldwide Headquarters, 1625 Prince Street, Alexandria, Virginia 22314-2818 U.S.A.
703.519.6200 | fax 703.519.6299 | www.asisonline.org

ASIS

© 2013 Security Management
This site is protected by copyright and trade mark laws under U.S. and International law.
No part of this work may be reproduced without the written permission of Security Management.

Powered by: Phase2 Technology

Source URL: http://www.securitymanagement.com/news/morning-security-brief-cyber-threats-expedited-airport-screening-and-more-0011884

Links:
[1] http://www.zdnet.com/homeland-security-disable-upnp-as-tens-of-millions-at-risk-7000010512/
[2] http://www.zdnet.com/millions-of-pcs-exposed-through-network-bugs-security-researchers-find-7000010478/
[3] http://www.esecurityplanet.com/network-security/homeland-security-chief-warns-of-cyber-911.html
[4] http://www.reuters.com/article/2013/01/24/us-usa-cyber-threat-idUSBRE90N1A320130124?feedType=RSS&feedName=technologyNews&utm_source=feedburner&utm_medium=feed&utm_campaign=Feed%3A+reuters%2FtechnologyNews+%28Reuters+Technology+News%29
[5] http://www.hstoday.us/briefings/industry-news/single-article/tsa-looks-for-ways-to-use-data-to-expand-precheck-trusted-travelers/d9a59be737264e6063a73051d3897fcc.html
[6] http://blogs.wsj.com/cio/2013/01/29/ibm-security-tool-can-flag-disgruntled-employees/
[7] http://edition.cnn.com/2013/01/29/us/niger/?hpt=hp_t3
[8] http://www.bayoubuzz.com/component/k2/item/283890-coast-guard-begins-super-bowl-security-patrols-on-the-mississippi-river
[9] http://www.wired.com/dangerroom/2013/01/pentagon-sexual-abuse/