(Press-News.org) A new draft computer security publication from the National Institute of Standards and Technology (NIST) provides guidance for vendors and security professionals as they work to protect personal computers as they start up.
The first software that runs when a computer is turned on is the "Basic Input/Output System" (BIOS). This fundamental system software initializes the hardware before the operating system starts. Since it works at such a low level, before other security protections are in place, unauthorized changes—malicious or accidental—to the BIOS can cause a significant security threat.
"Unauthorized changes in the BIOS could allow or be part of a sophisticated, targeted attack on an organization, allowing an attacker to infiltrate an organization's systems or disrupt their operations," said Andrew Regenscheid, one of the authors of BIOS Integrity Measurement Guidelines (NIST Special Publication 800-155). In September, 2011, a security company discovered the first malware designed to infect the BIOS, called Mebromi.* "We believe this is an emerging threat area," said Regenscheid. These developments underscore the importance of detecting changes to the BIOS code and configurations, and why monitoring BIOS integrity is an important element of security.
SP 800-155 explains the fundamentals of BIOS integrity measurement—a way to determine if the BIOS has been modified—and how to report any changes. The publication provides detailed guidelines to hardware and software vendors that develop products that can support secure BIOS integrity measurement mechanisms. It may also be of interest to organizations that are developing deployment strategies for these technologies.
###
This publication is the second in a series of BIOS documents. BIOS Protection Guidelines (NIST SP 800-147) was issued in April, 2011.** It provides guidelines for computer manufacturers to build in features to secure the BIOS against unauthorized modifications. The detection mechanisms in SP 800-155 complement the protection mechanisms outlined in SP 800-147 to provide greater assurance of the security of the BIOS.
NIST requests comments on draft SP 800-155 by January 20, 2012. Copies of the publication can be downloaded from http://csrc.nist.gov/publications/drafts/800-155/draft-SP800-155_Dec2011.pdf. Please submit comments to 800-155comments@nist.gov with "Comment SP 800-155 in the subject line.
* Information on Mebromi: http://www.symantec.com/security_response/writeup.jsp?docid=2011-090609-4557-99
** See the May 10, 2011, Tech Beat article "Build Safety into the Very Beginning of the Computer System" at http://www.nist.gov/public_affairs/tech-beat/tb20110510.cfm#bios.
Protecting computers at start-up: New NIST guidelines
2011-12-22
ELSE PRESS RELEASES FROM THIS DATE:
Cosmetic Dentist in Chicago Extends Office Hours
2011-12-22
Cosmetic dentist in Chicago, Dr. Carolyn Belke, invites patients to take advantage of Belke Dental's new extended office hours. Tuesdays and Thursdays, Dr. Belke is excited to offer patients later office hours.
Rather than closing at five on Tuesdays and Thursdays, Dr. Carolyn Belke, Chicago cosmetic dentist, has extended the office hours to 6:00 p.m. Patients can now enjoy the added hour to office hours for convenience and ease of receiving dental care. Additionally, patients can continue to visit the office during regular hours on Mondays and Wednesdays of 9:00 a.m. ...
NIST special publication expands government authentication options
2011-12-22
A newly revised publication from the National Institute of Standards and Technology (NIST) expands the options for government agencies that need to verify the identity of users of their Web-based services. Electronic Authentication Guideline (NIST Special Publication 800-63-1) is an extensive revision and update of the original document, released in 2006, and it recognizes that times, and technologies, have changed.
"Changes made to the document reflect changes in the state of the art," explains NIST computer security expert Tim Polk, Cryptographic Technology Group manager ...
Myths and truths of obesity and pregnancy
2011-12-22
Ironically, despite excessive caloric intake, many obese women are deficient in vitamins vital to a healthy pregnancy. This and other startling statistics abound when obesity and pregnancy collide. Together, they present a unique set of challenges that women and their doctors must tackle in order to achieve the best possible outcome for mom and baby.
In the December issue of the journal Seminars in Perinatology, maternal fetal medicine expert Loralei L. Thornburg, M.D., reviews many of the pregnancy-related changes and obstacles obese women may face before giving birth. ...
Supersized market economy, supersized belly: Wealthier nations have more fast food and more obesity
2011-12-22
ANN ARBOR, Mich. -- New research from the University of Michigan suggests obesity can be seen as one of the unintended side effects of free market policies.
A study of 26 wealthy nations shows that countries with a higher density of fast food restaurants per capita had much higher obesity rates compared to countries with a lower density of fast food restaurants per capita.
"It's not by chance that countries with the highest obesity rates and fast food restaurants are those in the forefront of market liberalization, such as the United States, the United Kingdom, Australia, ...
Dentist in Boulder Commits to Several Hours of Continuing Education Each Year
2011-12-22
Leading dentist in Boulder, Dr. Mark Barnes, has over 1100 hours of post-graduate training and commits to many hours each year for remaining up-to-date with dental advancements. Dr. Barnes maintains continuing education course, as well as lectures on subjects such as TMJ and sleep apnea treatment in Boulder and other areas.
Dr. Barnes, Boulder dentist, and his staff regularly participate in continuing education programs, while doing everything they can to offer patients the best care possible. Continuing education allows Dr. Barnes to help his patients achieve and maintain ...
Disease-causing strains of Fusarium prevalent in plumbing drains
2011-12-22
A study examining the prevalence of the fungus Fusarium in bathroom sink drains suggests that plumbing systems may be a common source of human infections.
In the first extensive survey of its kind, researchers in Penn State's College of Agricultural Sciences sampled nearly 500 sink drains from 131 buildings -- businesses, homes, university dormitories and public facilities -- in Pennsylvania, Maryland, Virginia, North Carolina, South Carolina, Georgia, Florida and California.
They analyzed fungal DNA to compare the spectrum of Fusarium species and sequence types found ...
Vienna Dentist Encourages Patients to Leave Reviews of Practice
2011-12-22
Dr. Ardalan Sanati, Vienna dentist, invites patients to leave reviews of their experience via online search engines - Google, Yelp and Yahoo! The reviews are easily accessible via any of the available search engines and allow patients to view how other patients' experiences at Dr. Sanati's office were. Patients can visit Google, Yelp and Yahoo! to read reviews from previous patients who have received treatment from Dr. Sanati, cosmetic dentist in McLean.
"It is important for me to know what my patients' concerns are so that I know what I can do to make their time ...
Having a cow can be a heart healthy choice
2011-12-22
Lean beef can contribute to a heart-healthy diet in the same way lean white meats can, according to nutritional scientists.
The DASH diet -- Dietary Approaches to Stop Hypertension -- is currently recommended by the American Heart Association to lower cholesterol and reduce risk of heart disease. People following the DASH diet are encouraged to eat fish and poultry, but not much beef.
According to the Centers for Disease Control about 26 percent of American deaths are caused by heart disease.
"The DASH diet is currently the gold standard for contemporary diet recommendations," ...
East Hartford Family Dentist Spends More One-on-One Time with Patients
2011-12-22
Dr. Robert Katz, East Hartford family dentist, of Burnside Dental Care gives patients a reason to smile. With new patient forms now available online via the practice's website, patients can spend more one-on-one quality time with Drs. Robert Katz, Elzbieta Wallace and Alison Hadden.
"I understand that new patient paperwork often takes up a large amount of time at a patient's first appointment with our office. For this reason, I am happy to offer new patient forms online for easy access and to save time while in the office for more one-on-one treatment time," ...
How do we split our attention?
2011-12-22
Imagine you're a hockey goalie, and two opposing players are breaking in alone on you, passing the puck back and forth. You're aware of the linesman skating in on your left, but pay him no mind. Your focus is on the puck and the two approaching players. As the action unfolds, how is your brain processing this intense moment of "multi-tasking"? Are you splitting your focus of attention into multiple "spotlights?" Are you using one "spotlight" and switching between objects very quickly? Or are you "zooming out" the spotlight and taking it all in at once?
These are the ...