StayInTouch no. 22, April 2009

Security news from FortConsult

Read PDF version >
 
1. NEW SECURITY STANDARD LAUNCHED BY THE CREDIT CARD COMPANIES
The widely used security standard, PCI DSS, now has a sister standard called PA DSS (Payment Application Data Security Standard), which is designed to make payment applications more secure. The credit card companies are hereby addressing one of the weakest links in the PCI chain in order to achieve the necessary degree of card security in the many physical as well as electronic retail stores.

Read more >
 
2. DO NOT RELAX SECURITY EVEN THOUGH THEFT MAY SEEM UNLIKELY
The armed robbery at the Danish army barracks at Antvorskov last winter provides a poignant answer to the central question of security: Is it worth securing one's assets even though it seems unlikely that anyone would steal them? Lars Syberg, PCI Product Manager at FortConsult, compares the Danish armed forces and their - in the eyes of criminals - attractive weapons to the situation of business enterprises that handle credit card data.

Read more >
 
3. PCI NEWS
We have news of the latest developments in the PCI field, including PA DSS, which is a new sister standard to PCI DSS, internal PCI penetration tests and a new self-assessment questionnaire (SAQ). Last, but not least, we clarify a couple of typical misunderstandings.

Read more >
 
4. AWARENESS CONCERNING SITE WIDE CROSS SITE SCRIPTING
Read about a newly discovered hacker technique as revealed by two of FortConsult's security consultants. This new technique is called Site Wide Cross Site Scripting. The article provides useful information aimed at web developers and those responsible for security on the issue of how to protect web applications against the new hacker technique.

Read more >
 
5. SECURITY CONSULTANT AT FORTCONSULT IS AWARDED GOLD CERTIFICATION IN WIRELESS SECURITY
FortConsult continuously strives to further develop its expertise within IT security and to accumulate competencies in new and relevant areas. One of our current areas of focus is wireless security, and we are delighted to announce that one of our security consultants has been awarded gold certification in this area.

Read more >
 
6. NEW EMPLOYEES AT FORTCONSULT
FortConsult A/S has appointed two new members of staff: Senior Security Consultant Tom Van de Wiele and Key Account Manager Henning Bahl Larsen.

Read more >