Some have tried to distinguish between “mobile cloud” and “cloud” by
claiming the former is the use of the web browser on a mobile device to
access services while the latter uses device-native applications. Like all
things cloud, the marketing fluff is purposefully obfuscating and sweeping
under the rug the technology required to make things work for consumers,
whether those consumers be your kids or IT professionals. Infrastructure is
not eliminated when organizations take to the cloud nor do the constraints of
web-based protocols and methodologies become irrelevant when Bob uses a
service to store photos of his kid’s piano recital on Flickr.
The applications and web browsers on a mobile device are using the same
technology, the same protocols, suffering under the same constraints as the
rest of us in wireline land. If developers are as smart as they are lazy (and ... (more)
Cloud-based web and mobile app-testing start-up SOASTA has gotten another $12
million in funding.
The round was led by the Entrepreneurs' Fund, with participation from prior
investors Canaan Partners, Formative Ventures and Pelion Venture Partners.
The money is earmarked for accelerating the company's international expansion
and keeping its lead.
The start-up has already seen investments of $20.7 million, according to
CrunchBase, so the latest round pushes the number close to $33 million.
The company recently expanded its CloudTest Platform with functional test
automation to del... (more)
Recently, there has been a flurry of news emanating from the XML security
world related to researchers demonstrating an attack on Amazon's AWS cloud
management interface. The attack takes advantage of a well known exploit
known as XML signature wrapping or XML signature manipulation.
Amazon since the publication of this paper has plugged the security hole in
its interface. It is a labor intensive effort to plug these holes that
requires constant monitoring especially when cloud service interfaces are
public facing. Risk can be more easily mitigated by a deployment of an XML
secur... (more)
Parasoft Corporation introduced on Monday a new release of Parasoft C/C++test
- a comprehensive testing solution for C and C++ development. This integrated
toolkit features:
Static analysis - static code analysis, data flow static analysis, and
metrics analysis Peer code review process automation - preparation,
notification, and tracking Unit/component testing - test generation &
execution on the host, simulator, or target Code coverage analysis -
supporting multiple levels of DO-178B Runtime error detection - memory access
errors, leaks, corruptions, and more
Wayne Ariola, Vic... (more)
CA Session at Cloud Expo
CA, Inc. on Thursday announced it has joined the Cloud Security Alliance as a
corporate member to help establish and promote best practices for security in
cloud computing.
CA will support the Cloud Security Alliance's initiatives and working groups
with identity and access management knowledge and expertise, and provide
input into the next release of the group's Security Guidance for Critical
Areas of Focus in Cloud Computing.
"CA is working with enterprise customers and cloud service providers to
securely adopt and deliver cloud services. We look forw... (more)