More Related News

2004 E-Crime Watch Survey Shows Significant Increase in Electronic Crimes

2004 E-Crime Watch Survey Shows Significant Increase in Electronic Crimes

2005 E-Crime Watch™ Survey Shows E-Crime Fighters Making Headway

2005 E-Crime Watch™ Survey Shows E-Crime Fighters Making Headway

Bank Info Security: Insider Threat: How to Minimize Risks from Vendors

CERT's Randy Trzeciak is quoted in this article that focuses on protecting critical systems and data.

Bank Info Security: Tackling the Insider Threat

CERT's Dawn Cappelli provides insight on motives, means, and mitigation strategies.

Carnegie Mellon SEI and OMG Announce the Launch of CISQ—The Consortium for IT Software Quality (www.it-cisq.org)

Pittsburgh, PA, and Needham, MA, USA, August 19, 2009—The Carnegie Mellon Software Engineering Institute (SEI) and the Object Management Group (OMG) today announced a partnership to sponsor the Consortium of IT Software Quality (CISQ), an industry-led initiative to address the measurement of critical IT application quality attributes.

Carnegie Mellon Software Engineering Institute and Lockheed-Martin to Host Process Improvement in Multimodel Environments Workshop

Carnegie Mellon Software Engineering Institute and Lockheed-Martin to Host Process Improvement in Multimodel Environments Workshop

Carnegie Mellon Software Engineering Institute Announces Exciting Keynote Lineup for 20th Annual SEPG North America 2008 Conference

Video-gaming systems, long-term advances in software development for the U.S. military, and what the future holds for software development will be the featured keynote topics at the Carnegie Mellon Software Engineering Institute (SEI) 20th Annual SEPG North America 2008 Conference.

Carnegie Mellon Software Engineering Institute Announces Release of the CERT Resiliency Engineering Framework

Carnegie Mellon Software Engineering Institute Announces Release of the CERT Resiliency Engineering Framework

Carnegie Mellon Software Engineering Institute CERT Researchers to Present Insider Threat Trends at RSA Conference 2008

Carnegie Mellon Software Engineering Institute CERT Researchers to Present Insider Threat Trends at RSA Conference 2008

Carnegie Mellon Software Engineering Institute CERT® Program and FSTC Introduce Resiliency Engineering Framework to Help Organizations Manage Operational Resiliency

Carnegie Mellon Software Engineering Institute CERT® Program and FSTC Introduce Resiliency Engineering Framework to Help Organizations Manage Operational Resiliency

Carnegie Mellon Software Engineering Institute Hosts Premier Software and Systems Process Management Conference in Tampa, Florida

The SEI will host more than 1,500 software and systems engineering professionals from around the world at the Tampa Convention Center for four information-filled days of professional development and networking opportunities.

Carnegie Mellon Software Engineering Institute to Host European Conference on Improving Software and Systems Performance

SEPG Europe 2008 offers the latest in research and development in software and systems process management.

Carnegie Mellon Software Engineering Institute’s Watts Humphrey Awarded Prestigious National Medal of Technology

Watts S. Humphrey, a fellow of the Carnegie Mellon® Software Engineering Institute (SEI) has been awarded the 2003 National Medal of Technology, the highest honor awarded by the President of the United States to America’s leading innovators. A formal ceremony will take place March 14, 2005 at the White House.

Carnegie Mellon to Host Cyber Security Planning Summit

Carnegie Mellon to Host Cyber Security Planning Summit

Carnegie Mellon University's Software Engineering Institute Hosts TIDE Conference for Small Manufacturers

Carnegie Mellon University's Software Engineering Institute Hosts TIDE Conference for Small Manufacturers

Carnegie Mellon University’s Software Engineering Institute Director Accepts Vice President Position at Georgia Institute of Technology

Stephen E. Cross, director and chief executive officer of the Carnegie Mellon University Software Engineering Institute (SEI), has announced that he will be leaving the SEI to become a vice president at Georgia Institute of Technology and director of the Georgia Tech Research Institute, effective September 1, 2003.

Carnegie Mellon® Software Engineering Institute and General Motors Launch CMMI for Acquisition Organizations Project

Carnegie Mellon® Software Engineering Institute and General Motors Launch CMMI for Acquisition Organizations Project

CERT Computer Forensics Team at Carnegie Mellon Software Engineering Institute Recognized by Congressmen Murtha, Doyle and Altmire

CERT Computer Forensics Team at Carnegie Mellon Software Engineering Institute Recognized by Congressmen Murtha, Doyle and Altmire

CERT Coordination Center Fights Love Letter Virus

CERT Coordination Center Fights Love Letter Virus

CERT Coordination Center Partners With Qatar’s Supreme Council to Battle Cyber Risks

CERT Coordination Center Partners With Qatar’s Supreme Council to Battle Cyber Risks

CERT Coordination Center® (CERT®/CC) Celebrates Ten Years

CERT Coordination Center® (CERT®/CC) Celebrates Ten Years

CERT Program's Nancy R. Mead to Be Recognized at IEEE-CS Conference on Software Engineering Education and Training

CERT Program's Nancy R. Mead to Be Recognized at IEEE-CS Conference on Software Engineering Education and Training

CERT Resiliency Management Model Being Released

CERT has begun releasing individual process areas of the CERT Resiliency Management Model, v1.0, a capability model for operational resiliency management.

CERT Secure Coding Standards Improve the Quality and Security of Commercial Software Products

CERT Secure Coding Standards Improve the Quality and Security of Commercial Software Products

CERT Tactical Response and Analysis Challenge Tests Cybersecurity Skills

Throughout the first day of competition, Poland and Australia were jockeying for the lead, but at the end of the two-day challenge, it was Australia in first place among the 29 competing teams from 20 countries. No, it wasn’t the Olympics or World Cup; the five-person Australia 1 team took first place in the Tactical Response and Analysis Challenge (TRAC) conducted by the SEI’s CERT Program as part of the weeklong International Cyber Defense Workshop (ICDW), which concluded November 13.

CERT® Coordination Center Honored

CERT® Coordination Center Honored

CIOZone: Wal-Mart Spying - Good, Bad, or Just the Future?

Robin Ruefle, a member of the CERT technical staff, describes why it's important to be prepared to handle security incidents.

CMMI Draft Model Public Review Period Closed; Next Draft Released

Public review of Version 0.2 of an integrated model for systems and software engineering improvement, CMMI-SE/SW V0.2, was completed on November 30, 1999.

CMMI Model Draft Released for Public Review

On August 31, Version 0.2 of an integrated model for systems and software engineering improvement, CMMI-SE/SW V0.2, was released for public review.

CMMI Product Suite Released

CMMI-SE/SW Version 1.0, an integrated model for systems engineering and software engineering improvement, was released on August 11, 2000.

Computer Weekly: Spot the Warning Signs of Insider Attacks

According to CERT's Dawn Cappelli, insider attacks on corporate information are highly predictable, but nearly half of companies face losses because they ignore the warning signs.

DDJ.com: Secure Coding in C and C++

CERT's Robert Seacord points out how coding errors can lead to vulnerabilities that can be exploited.

Department of Homeland Security and Carnegie Mellon Software Engineering Institute Launch Software Assurance Web Portal

Department of Homeland Security and Carnegie Mellon Software Engineering Institute Launch Software Assurance Web Portal

eWeek.com: Caught in a (Real) Security Bind

CERT vulnerability analyst Chad Dougherty is quoted in this article about dealing with hacker attacks.

ExecutiveBrief.com: Pairing CMMI and Six Sigma for Optimal Results

Jeannine Siviy, a senior member of the technical staff, outlines fool-proof strategies for accelerating process improvement that use both CMMI and Six Sigma.

ExecutiveBrief.com: Software Process Improvement Essentials: The Right Mix

Lacking the right mix of resources, quality principle, and buy-in for successful process improvement? Read on…

Federal Computer Week: Cybersecurity's New World Order

Jeff Carpenter, CERT/CC's technical manager, is quoted in this article.

FIRST and Carnegie Mellon Software Engineering Institute CERT Coordination Center Unveil New Security Awards

FIRST and Carnegie Mellon Software Engineering Institute CERT Coordination Center Unveil New Security Awards

Framework for Software Product Line Practice

The Framework for Software Product Line Practice is a web-based document that describes essential activities and practices that organizations must master in order to successfully adopt a product line approach.

Inaugural SEPG Asia-Pacific Conference Held in Japan

October 6, 2009—The inaugural SEPG Asia-Pacific conference was held September 16-18 in Osaka, Japan. Delegates came from 13 different countries for the first SEPG conference for process professionals in the Asia-Pacific region.

InfoWorld: Be Prepared - ActiveX Attacks Will Persist

Will Dormann, a CERT vulnerability analyst, is quoted in this article on the risks created by flaws in technology, poor development practices, and a large user base.

Internet Security Alliance Launched

Internet Security Alliance Launched

Internet Security Experts in the United States and Australia Join Forces

Two of the world's leading Internet security groups have signed a collaborative agreement to formalize their working partnership.

ITWorld.com: Developing More Secure Software - Getting Started

Julia Allen, a senior member of CERT's technical staff, takes an excerpt from the book Software Security Engineering to outline what project managers responsible for software development need to do.

Johns Hopkins University Applied Physics Lab and Software Engineering Institute Forge Strategic Partnership

Johns Hopkins University Applied Physics Lab and Software Engineering Institute Forge Strategic Partnership

KDKA-TV: CMU Team Recognized For Helping Crack ID Thefts

In this news clip, Congressmen Murtha, Dolye, and Altmire discuss the efforts of the CERT Program regarding the recent U.S. Department of Justice indictment of 11 individuals allegedly responsible for the largest-ever identity theft ring.

KDKA.com: CMU Team Recognized For Helping Crack ID Thefts

CERT researchers receive federal recognition for cracking the biggest identity theft ring in history.

MyTechnologyLawyer Radio Show: Secure-IT 2009 Conference

Listen to CERT's Julia Allen talk about security.

NetworkWorld: Security Must Evolve, CERT Official Says

Lisa Young, a senior member of the CERT technical staff, explains how the Resiliency Engineering Framework guides security strategy.

New York Times: Keeping That New PC Clean and Pure

CERT vulnerability analyst Chad Dougherty suggests some ways to help keep your new computer free from malware and viruses.

Next World Cyber-Security Contest Launched by FIRST, CERT Coordination Center

Pittsburgh, PA, February 25, 2009 - The second international competition honoring best practices and advances in safeguarding the security of computer systems and networks was announced today by FIRST (the Forum of Incident Response and Security Teams) and the Carnegie Mellon Software Engineering Institute CERT Coordination Center (CERT/CC).

Over-Confidence Is Pervasive Amongst Security Professionals

Over-Confidence Is Pervasive Amongst Security Professionals

Paul D. Nielsen Reappointed as SEI Director, CEO

Pittsburgh, PA, July 30, 2009—Paul D. Nielsen, director and CEO of the Carnegie Mellon Software Engineering Institute (SEI), has been reappointed to a second five-year term, announced Mark Kamlet, executive vice president and provost of Carnegie Mellon University.

Paul D. Nielsen Reappointed as Software Engineering Institute Director, CEO

Paul D. Nielsen, director and CEO of the Carnegie Mellon Software Engineering Institute (SEI), has been reappointed to a second five-year term, announced Mark Kamlet, executive vice president and provost of Carnegie Mellon University.

PC1News: Insider Threat Workshop To Be Held By CERT This May

Blogger Lauren Gerber writes about the upcoming CERT Insider Threat Workshop.

Pittsburgh Business Times: Keeping Information Secure Requires Planning, Vigilance

CERT's Julia Allen explains how businesses should plan and prioritize their assets to increase security.

Pittsburgh Business Times: Protecting Data from Danger

Dawn Cappelli, CERT's insider threat team lead, discusses how insider threats from company employees are becoming increasingly common. CERT's Nick Ianelli is also quoted on emerging malware trends.

Pittsburgh Post-Gazette: U.S. Representatives check out research projects at CMU

The congressmen praised the work of the CERT program, which provided training and analysis technology that aided the Secret Service in indicting the alleged masterminds of the largest identity theft case in history earlier this year.

Pittsburgh Tribune-Review: CERT helped U.S. crack international ID theft case

Computer forensics experts at the SEI helped the U.S. Secret Service investigate a gang accused of stealing 40 million credit and debit card numbers.

Pittsburgh Tribune-Review: CMU Team Zeros in on Electronic Thieves

Dawn Cappelli, CERT's team lead for insider threat, discusses the insider theft of confidential and sensitive information such as Social Security and credit card numbers, personally identifiable information and industrial espionage and how it is a growing concern to both industry and government.

Pittsburgh Tribune-Review: Newsmaker - Kelly Kimberland

Kelly Kimberland, the SEI public relations manager, is featured for her professional accomplishments and role with the Public Relations Society of America, Pittsburgh Chapter.

Reminder of the CMMI Product Suite Version 1.1 and SW-CMM Sunset Dates

Reminder of the CMMI Product Suite Version 1.1 and SW-CMM Sunset Dates

SC Magazine: Adobe, Cisco Advisories Warn of "Critical" Vulnerabilities

CERT vulnerability analyst Will Dormann talks about what the vulnerabilities will do, how to prevent them, and recent trends.

SD Times: LDRA adds CERT C standard to test tools suite

LDRA announces that its entire suite of test tools now supports the security-based CERT C Secure Coding Standard.

Secret Service and CERT Release Report Analyzing Acts of Insider Sabotage Via Computer Systems in Critical Infrastructure Sectors

Secret Service and CERT Release Report Analyzing Acts of Insider Sabotage Via Computer Systems in Critical Infrastructure Sectors

Secret Service and CERT® Coordination Center Release Comprehensive Report Analyzing Insider Threats to Banking and Finance Sector

Secret Service and CERT® Coordination Center Release Comprehensive Report Analyzing Insider Threats to Banking and Finance Sector

Secure Coding in C and C++: Efforts Lead to Book, Course, Community, Coding Standard

It’s a frequent yet unintended mistake among software developers. A software developer copies a string in memory, but in doing so, unwittingly creates a vulnerability that can be exploited by an attacker to execute malicious code.

SEI and EDM Council Partner to Create Process for Measuring Data Management Maturity

New Initiative Extends the SEI’s Proven Capability Maturity Model Integration (CMMI) and CERT Resiliency Management Model to Meet Challenges in the Financial Industry

SEI Introduces New Website

The Carnegie Mellon Software Engineering Institute (SEI) is pleased to announce the launch of a newly redesigned website that focuses on solutions for software engineering problems.

SEI Technical Staff Members Recognized by Leading Associations

Recently, several technical staff members at the SEI were recognized by their peers for their contributions to science, technology, and software engineering.

SEI's Watts Humphrey Selected as ACM Fellow

Pittsburgh, PA, January 20, 2009 – The Carnegie Mellon Software Engineering Institute (SEI) is proud to announce that Watts Humphrey, SEI Fellow, has been named a fellow of the Association for Computing Machinery (ACM).

Software Engineering Institute and U.S. Army Reserve Partner on Information-Assurance Initiative

Carnegie Mellon University’s Software Engineering Institute (SEI) hosted U.S. Senator Rick Santorum (R-Pa.) and representatives from the U.S. Army Reserve’s Chief Information Officer’s office today for the launch of a new partnership between the SEI and the Army Reserve Information Operations Command (ARIOC).

Software Engineering Institute CERT's Richard D. Pethia Receives CSO Compass Award

Pittsburgh, PA, February 10, 2009 – Richard D. Pethia, director of the Carnegie Mellon Software Engineering Institute (SEI) CERT Program has been named a recipient of the 2009 CSO Compass Award sponsored by CSO Magazine. The CSO Compass Award recognizes individuals for their leadership and ability to execute security strategy while bringing business value.

Software Engineering Institute Introduces New Website

The Software Engineering Institute (SEI) is pleased to announce the launch of a newly redesigned website that focuses on solutions for software engineering problems. The new site provides visitors with significant improvements in navigation, accessibility, and appearance.

Software Engineering Institute Opens CERT® Analysis Center

Software Engineering Institute Opens CERT® Analysis Center

Software Engineering Institute Plans Expansion of the CERT Coordination Center (CERT/CC)

The Software Engineering Institute (SEI), a federally funded research and development center (FFRDC) operated by Carnegie Mellon University, has announced plans to expand the CERT Coordination Center (CERT/CC).

Software Engineering Institute’s CERT® Coordination Center Urges Organizations to Update Software

Software Engineering Institute’s CERT® Coordination Center Urges Organizations to Update Software

Testimony to the U.S. Senate Homeland Security and Governmental Affairs Committee

Michael P. Merritt, assistant director, U.S. Secret Service, testifies to the US Senate about cybercrime, computer forensics, and the U.S. Secret Service's preparation of agents and teams to address these issues, including the Secret Service CERT Liaison Program, which provides technical support and education.

The New York Times: Gadgetwise Blog: Is Your PC Security Up to Date?

CERT vulnerability analyst Chad Dougherty tells why it's important to keep software up to date.

The Register Developer: Old People Can Sabotage Software Too

CERT's Dawn Cappelli discusses the common characteristics of disgruntled employees and their potential risk to their organizations.

ThePittsburghChannel.com: Carnegie Mellon Cyber Security Helps Catch Hackers

The recent U.S. Department of Justice indictment of 11 individuals responsible for the largest identity theft case in history was possible in part to the efforts of the CERT Program.

U.S. Department of Homeland Security Announces Partnership with Carnegie Mellon’s CERT Coordination Center

U.S. Department of Homeland Security Announces Partnership with Carnegie Mellon’s CERT Coordination Center

Wall Street Journal: What's Your Favorite Security Question?

CERT's Jason Rafail makes recommendations on how to securely manage online passwords.

Washington Post: San Francisco Case Shows Vulnerability Of Data Networks

CERT's Dawn Cappelli is quoted on the dangers of insider threat.



Customer Satisfaction Survey

For more information

Kelly Kimberland, APR, Public Relations Manager

public-relations@sei.cmu.edu

412-268-4793