<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: connectivity]]></title>
    <link>http://securityratty.com/tag/connectivity</link>
    <description></description>
    <pubDate>Sun, 06 Jul 2008 04:37:16 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Check Point appliances fight spam, protect industrial networks ]]></title>
      <link>http://securityratty.com/article/9f3a86491d90c9f5c3204ccf39fb0718</link>
      <guid>http://securityratty.com/article/9f3a86491d90c9f5c3204ccf39fb0718</guid>
      <description><![CDATA[Check Point Software is upgrading its multifunction security appliances with antispam capabilities, support for secure wireless connectivity and protection for devices that control industrial...]]></description>
      <content:encoded><![CDATA[Check Point Software is upgrading its multifunction security appliances with antispam capabilities, support for secure wireless connectivity and protection for devices that control industrial infrastructure.]]></content:encoded>
      <pubDate>Thu, 20 Nov 2008 21:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/multifunction security appliances">multifunction security appliances</category>
      <category domain="http://securityratty.com/tag/control industrial infrastructure">control industrial infrastructure</category>
      <category domain="http://securityratty.com/tag/secure wireless connectivity">secure wireless connectivity</category>
      <category domain="http://securityratty.com/tag/antispam capabilities">antispam capabilities</category>
      <category domain="http://securityratty.com/tag/check">check</category>
      <category domain="http://securityratty.com/tag/protection">protection</category>
      <category domain="http://securityratty.com/tag/support">support</category>
      <category domain="http://securityratty.com/tag/devices">devices</category>
      <category domain="http://securityratty.com/tag/software">software</category>
      <source url="http://www.networkworld.com/news/2008/112108-check-point-security-appliances-upgrades.html?fsrc=rss-security">Check Point appliances fight spam, protect industrial networks </source>
    </item>
    <item>
      <title><![CDATA[Frustration with PGP-9.6 and networking]]></title>
      <link>http://securityratty.com/article/1211e2354185cb54588b99973c0191f0</link>
      <guid>http://securityratty.com/article/1211e2354185cb54588b99973c0191f0</guid>
      <description><![CDATA[So, I recently upgraded from PGp-8.1 to PGp-9.6 and I thought I'd share a bit of the frustration

I was running what I believe to be a fairly standard configuration

Corporate desktop image

Outlook...]]></description>
      <content:encoded><![CDATA[So, I recently upgraded from PGp-8.1 to PGp-9.6 and I thought I'd share a bit of the frustration.<br /><br />I was running what I believe to be a fairly standard configuration.<br /><ul><li>Corporate desktop image<br /></li><li>Outlook 2003</li><li>Symantec AV</li><li>PGP-8.1<br /></li></ul>I decided to upgrade my Outlook to 2007.  Turns out that PGP-8.1 isn't compatible with Outlook 2003, so I needed upgrade.<br /><ol><li>Install PGP-9.6</li><li>reboot twice per instructions</li><li>Find that my networking completely doesn't work.</li></ol>Turns out that in order to get PGP-9.6 working with things like Symantec's AV that hook the network stack you need to back out PGP's POP/IMAP network stack hooking.<br /><ol><li>regsvr32 /u PGPfsshl.dll</li><li>Run a Registry merge on c:\WINDOWS\system32\PGPlspRollback.reg</li><li>Reboot</li></ol>Then of course, if you should happen to upgrade PGP to 9.9 because the update is out, you get to repeat all of those last few steps again.<br /><br />This process of course is made a lot easier if you happen to have another machine with network connectivity, otherwise you're kind of SOL.<br /><br />Just my bit of unfun for the afternoon.<br /><br />It is of course working now and reasonably well.  Kind of sucks that the install isn't a lot easier.<img src="http://feeds.feedburner.com/~r/SecurityRetentive/~4/426964111" height="1" width="1"/>]]></content:encoded>
      <pubDate>Mon, 20 Oct 2008 13:44:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/pgp-9">pgp-9</category>
      <category domain="http://securityratty.com/tag/pgp">pgp</category>
      <category domain="http://securityratty.com/tag/install pgp-9">install pgp-9</category>
      <category domain="http://securityratty.com/tag/pgp-8">pgp-8</category>
      <category domain="http://securityratty.com/tag/upgrade pgp">upgrade pgp</category>
      <category domain="http://securityratty.com/tag/popimap network stack">popimap network stack</category>
      <category domain="http://securityratty.com/tag/network stack">network stack</category>
      <category domain="http://securityratty.com/tag/lot easier">lot easier</category>
      <category domain="http://securityratty.com/tag/upgrade">upgrade</category>
      <source url="http://feeds.feedburner.com/~r/SecurityRetentive/~3/426964111/frustration-with-pgp-96-and-networking.html">Frustration with PGP-9.6 and networking</source>
    </item>
    <item>
      <title><![CDATA[AF083-022: Visualization for Command and Control of Cyberspace Operations]]></title>
      <link>http://securityratty.com/article/04478e019cd46327427f88b45cf76a53</link>
      <guid>http://securityratty.com/article/04478e019cd46327427f88b45cf76a53</guid>
      <description><![CDATA[AF083-022 TITLE: Visualization for Command and Control of Cyberspace Operations
TECHNOLOGY AREAS: Air Platform, Information Systems, Space Platforms, Human Systems
The technology within this topic is...]]></description>
      <content:encoded><![CDATA[<p>AF083-022  TITLE: Visualization for Command and Control of Cyberspace Operations</p>
<p>TECHNOLOGY AREAS: Air Platform, Information Systems, Space Platforms, Human Systems</p>
<p>The technology within this topic is restricted under the International Traffic in Arms Regulation (ITAR), which controls the export and import of defense-related material and services. Offerors must disclose any proposed use of foreign nationals, their country of origin, and what tasks each would accomplish in the statement of work in accordance with section 3.5.b.(7) of the solicitation.</p>
<p>OBJECTIVE: Develop visualization techniques for planning and execution of Cyberspace operations.</p>
<p>DESCRIPTION: Fulfilling the Air Force mission “… to fly and fight in Air, Space, and Cyberspace” requires effective C2 tools for the observation, planning and execution of cyberspace operations. Conventional battlespace visualization tools were developed for the physical world (i.e., geospatially oriented), where the battlespace, weapons and effects are concrete, often observable entities. Cyberspace and its critical electronic infrastructures are an artificial world that must be created, modified and sustained by the warfighter. This artificial world of cyberspace has concrete links back to the physical world that shape the information landscape, affect the decision-making process, and control the communication channels crucial to C2.</p>
<p>Standard, geospatially oriented C2 tools are not suitable for providing cyber combatants with comparable situation awareness to understand events, evaluate options, and make decisions in the electromagnetic domain. The combatants in the cyber domain needs to be able to quickly see and understand not just the physical relationships of the traditional battlespace, but also the logical relationships and information dependencies in the abstract landscape of cyberspace. Cyber C2 visualizations need to provide information for strategy, tactics and execution of effects that may, or may not, have physical correlates. Examples of these cyber events include network attack detection, attack identification, damage assessment, denial of service (DOS) warnings, and information warfare or cyber-attack operations.</p>
<p>For example, a commander may be planning to intentionally disrupt a portion of his network to investigate a cyber-attack. He will need to understand what ripple effects will occur across the functionally diverse and geographically distributed network. These ripple effects will have both a cyber component (e.g., locations that will lose connectivity or suffer degraded performance characteristics) and a real-world component (e.g., information about enemy forces may be unavailable or delayed, reducing blue force effectiveness) that must be visualized, explored and tasked from within his C2 tools.</p>
<p>Decision makers will greatly benefit from innovative visualization tools that can improve their understanding of all aspects of the Cyber domain. These aspects include 1) the current state of the information environment, the physical and virtual battlespace and enemy and friendly capabilities and vulnerabilities; 2) the scope and scale of courses of action that affect information or information networks; 3) the primary effects and ripple effects of an operation in both the physical and cyber battlespaces, and 4) the risks for collateral damage associated with cyber warfare activities.</p>
<p>PHASE I: Identify cyberspace characteristics relevant to C2 visualization. Identify correlation methods and visualization techniques to understand battlespace, operations, and effects. Define metrics to evaluate efficacy. Document results in a written report, including mockups of proposed visualizations.</p>
<p>PHASE II: Construct a working prototype to demonstrate integrated visualization of cyber data showing 1) the status of information environment, 2) its effect on the conventional battlespace, and 3) the status of information operations. Evaluate effectiveness using metrics defined in Phase I.</p>
<p>PHASE III / DUAL USE: Military application: Additional military applications include command and control environments, like the Air Operations Centers (AOCs). Commercial application: Monitoring and defending infrastructures (e.g., financial and energy) against cyber-attacks. Visualization cyberspace is beneficial for security of commercial communication and information networks.</p>
<p>REFERENCES:</p>
<p>1. ‘<a href="www.af.mil/news/story.asp?id=123028524" target="_blank">Air Force leaders to discuss new ‘Cyber Command’</a></p>
<p>2. Laura S. Tinnel, O. Sami Saydjari, and Joshua W. Haines, An Integrated Cyber Panel System, IEEE Computer Society,</p>
<p>3. Anita D’Amico and Stephen Salas, Visualization as an Aid for Assessing the Mission Impact of Information Security Breaches, IEEE 2003.</p>
<p>4. Tim Bass, “<a href="http://www.silkroad-asia.com/d/node/34" target="_blank">Cyberspace Situational Awareness Demands Mimic Traditional Command Requirements</a>,” AFCEA Signal Magazine, February 2000.</p>
<p>KEYWORDS: visualization, cyber, human factors, planning, situation awareness, command and control, HCI</p>
<p>Reference. <a href="http://www.dodsbir.net/sitis/display_topic.asp?Bookmark=34486">SITIS Topic Details, Visualization for Command and Control of Cyberspace Operations</a></p>
<p>See also:  <a href="http://www.dodsbir.net/solicitation/sbir083/af083.doc">http://www.dodsbir.net/solicitation/sbir083/af083.doc</a></p>
]]></content:encoded>
      <pubDate>Fri, 17 Oct 2008 20:01:42 +0000</pubDate>
      <category domain="http://securityratty.com/tag/visualization">visualization</category>
      <category domain="http://securityratty.com/tag/information landscape">information landscape</category>
      <category domain="http://securityratty.com/tag/information">information</category>
      <category domain="http://securityratty.com/tag/information operations">information operations</category>
      <category domain="http://securityratty.com/tag/operations">operations</category>
      <category domain="http://securityratty.com/tag/visualization techniques">visualization techniques</category>
      <category domain="http://securityratty.com/tag/develop visualization techniques">develop visualization techniques</category>
      <category domain="http://securityratty.com/tag/cyber-attack">cyber-attack</category>
      <category domain="http://securityratty.com/tag/cyber-attack operations">cyber-attack operations</category>
      <source url="http://www.thecepblog.com/2008/10/18/af083-022-visualization-for-command-and-control-of-cyberspace-operations/">AF083-022: Visualization for Command and Control of Cyberspace Operations</source>
    </item>
    <item>
      <title><![CDATA[Complex Event Processing An Emerging Paradigm in Business Intelligence, Security and Monitoring and Control]]></title>
      <link>http://securityratty.com/article/85dd8ffe0f10a11626880b7de9e30386</link>
      <guid>http://securityratty.com/article/85dd8ffe0f10a11626880b7de9e30386</guid>
      <description><![CDATA[The following quote is from Complex Event Processing An Emerging Paradigm in Business Intelligence, Security and Monitoring and Control by Evo Eftimov, iSec Consulting Ltd
Complex Event Processing...]]></description>
      <content:encoded><![CDATA[<p>The following quote is from <a href="http://www.top-consultant.com/articles/CEP.pdf" target="_blank">Complex Event Processing – An Emerging Paradigm in Business Intelligence, Security and Monitoring and Control</a> by Evo Eftimov, <a href="http://www.isecc.com" target="_blank">iSec Consulting Ltd</a></p>
<blockquote><p>&#8220;Complex Event Processing (CEP) is a technology which has been used for many years in the Aerospace and Defence Industry for Situational Awareness and Data Fusion modules in Command, Control, Communications, Computing and Intelligence Systems (aka C4I).</p>
<p>Currently CEP is being rediscovered as a foundation for new class of extremely effective Business Intelligence, Security and System/Network/SCADA Monitoring solutions in industries like Financial Services, Telecommunications, Oil and Gas, Manufacturing, Logistics etc. The increasing connectivity and processing power of the modern IT and Telecom technologies lead to increasing speed and volume of the dataflow available to the organisations. By using CEP solutions companies can gain competitive advantage by achieving real-time situational awareness and tapping the information value that is hidden within the streams of real-time event data that are coming from a variety of sources such as enterprise applications, financial transactions, sensor networks and supply chains.&#8221;</p></blockquote>
<p style="text-align: left;">Unfortunately, the author does not cite references in the paper.</p>
]]></content:encoded>
      <pubDate>Sun, 21 Sep 2008 01:59:21 +0000</pubDate>
      <category domain="http://securityratty.com/tag/complex event">complex event</category>
      <category domain="http://securityratty.com/tag/cep solutions companies">cep solutions companies</category>
      <category domain="http://securityratty.com/tag/cep">cep</category>
      <category domain="http://securityratty.com/tag/situational awareness">situational awareness</category>
      <category domain="http://securityratty.com/tag/real-time situational awareness">real-time situational awareness</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/solutions">solutions</category>
      <category domain="http://securityratty.com/tag/control">control</category>
      <category domain="http://securityratty.com/tag/business intelligence">business intelligence</category>
      <source url="http://www.thecepblog.com/2008/09/21/complex-event-processing-%e2%80%93-an-emerging-paradigm-in-business-intelligence-security-and-monitoring-and-control/">Complex Event Processing An Emerging Paradigm in Business Intelligence, Security and Monitoring and Control</source>
    </item>
    <item>
      <title><![CDATA[Interop NY Keynotes: Cisco]]></title>
      <link>http://securityratty.com/article/c55a3293fe594f4363a5830f6da4d48c</link>
      <guid>http://securityratty.com/article/c55a3293fe594f4363a5830f6da4d48c</guid>
      <description><![CDATA[After some rousing introduction music, Marie Hatter , Vice President, Network Systems and Security Solutions Marketing / CMO of Cisco began her presentation on virtualization
Introduction...]]></description>
      <content:encoded><![CDATA[<p>After some rousing introduction music, <a href="http://blogs.cisco.com/authors/bio/83" target="_blank">Marie Hatter</a>, Vice President, Network Systems and Security Solutions Marketing / CMO of Cisco began her presentation on virtualization.</p>
<p><strong>Introduction</strong></p>
<p>Virtualization is a word used by consumers and also by IT. But, do we all mean the same thing?</p>
<p>A very cool video from Cisco provided answers to &#8220;what is virtualization&#8221; from an  engineering perspective, data center perspective, IT perspective and the user perspective (virtual world).</p>
<p>Virtualization is about breaking the bonds between applications and server hardware, nodes and networks, applications and operating systems.</p>
<p>Why is this interesting? Virtualization holds the promise to transform the way we work, live, learn and play.</p>
<p><strong>Why virtualize?</strong></p>
<p>The real estate boom over the last 30 years has driven people to the suburbs. People didn&#8217;t mind commuting for an hour with lower gas prices. Today, we have a weak economy and gas prices are high. Something has to change.</p>
<p>Many are opting to stay at home. Businesses are trying out telecommuting, some (like Cisco) are even offering telepresence. This helps by reducing carbon footprint. Corporations are breaking free from physical requirements. The global workforce is also having an impact on the network. These changes are having a huge impact on the network.</p>
<p>We are on the cusp of transitioning from virtualization to VIRTUALIZATION.</p>
<p><strong>&#8220;One to many&#8230;.many to one.&#8221;</strong></p>
<p>This is Cisco&#8217;s idea of virtualization.</p>
<p>Consider the different roles we play in life - one to many. Spouse, executive, friend, parent, gym rat. This would be &#8220;one to many&#8221;. This is exactly what virtualization does. It allows you to partition resources off that you can use on the fly.</p>
<p><strong>Where do I start?</strong></p>
<p>Virtualization starts with server and storage. But, it&#8217;s the network that touches everything - it spans the physical, the virtual, and the cloud. This provides the connectivity to all these resources. The network brings transparency to the picture. It allows you to better monitor performance and better implement security - great benefits!</p>
<p><strong>Why do I need this?</strong></p>
<p>At Cisco, we saw that we were only using 20% of our storage utilization. We wanted to virtualize our datacenters. When we did that, we were able to get 68% storage utilization. For each year that we were able to defer buildup, we saved $40 million.</p>
<p>From a business standpoint, virtualization helps you differentiate and work faster. Provisioning in minutes, improved productivity and competitive differentiation, using less power (environmental impact), and up the ante of business continuity. If VMWare fails? It&#8217;s OK. You can reprovision it on the fly.</p>
<p><strong>Is it for everyone?</strong></p>
<p>IT organizations tend to be siloed. You have the IT side and the Operations side. Each has responsibility. For virtualization to work, these walls have to come down. The concept of virtualization depends on shared resources.</p>
<p><strong><a href="http://en.wikipedia.org/wiki/Metcalfe%27s_law" target="_blank">Metcalfe&#8217;s Law of the Network</a> Effect</strong></p>
<p>Everytime you add a node to the network, you increase the value. This is what happens with virtualization. Every device you virtualize increases the power of each device. More control of environment and more efficiency.</p>
<p>This leads to&#8230;</p>
<p><strong>Cloud computing.</strong></p>
<p>Wow, show of hands from the audience when Marie asked &#8220;how many are using cloud computing?&#8221; and &#8220;how many are using your own clouds?&#8221; - not a lot of hands were raised. Interesting considering the coverage cloud computing has and the focus of it.</p>
<p>Cloud computing has three possibilities at Cisco:</p>
<ul>
<li>Flexible infrastructure (hosting)</li>
<li>Abstract services (APIs)</li>
<li>Application services (SaaS)</li>
</ul>
<p>Automation is going to be key, and will need to integrate virtualization-aware elements.</p>
<p>Can you imagine if you wanted interoperability in the cloud? People haven&#8217;t even begun thinking about it.</p>
<p><strong>Conclusion</strong></p>
<p>As you virtualize, your role will change. You will think more about strategy. But keep in mind these &#8220;minefields&#8221; of virtualization:</p>
<ul>
<li>Insufficient planning</li>
<li>Lack of standards</li>
<li>Weak security</li>
</ul>
<p>Security cannot be an afterthought. It has to be planned. We&#8217;ve seen new forms of malware, hypervisor attacks, and root kit infections.</p>
<p>As higher expectations from end users evolve, we&#8217;re becoming not server oriented, but SERVICE oriented.</p>
<p><strong>Tips:</strong></p>
<ul>
<li>Think holistically</li>
<li>Consider IT culture - equipment and people</li>
</ul>
]]></content:encoded>
      <pubDate>Wed, 17 Sep 2008 10:11:05 +0000</pubDate>
      <category domain="http://securityratty.com/tag/virtualization">virtualization</category>
      <category domain="http://securityratty.com/tag/virtualization starts">virtualization starts</category>
      <category domain="http://securityratty.com/tag/virtualization helps">virtualization helps</category>
      <category domain="http://securityratty.com/tag/helps">helps</category>
      <category domain="http://securityratty.com/tag/virtualization depends">virtualization depends</category>
      <category domain="http://securityratty.com/tag/virtualization holds">virtualization holds</category>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/network brings transparency">network brings transparency</category>
      <category domain="http://securityratty.com/tag/cisco">cisco</category>
      <source url="http://blog.sciencelogic.com/interop-ny-keynotes-cisco/09/2008">Interop NY Keynotes: Cisco</source>
    </item>
    <item>
      <title><![CDATA[Links List 8.29.08]]></title>
      <link>http://securityratty.com/article/f1038682e1a7f7e06f6d230b158bd8a3</link>
      <guid>http://securityratty.com/article/f1038682e1a7f7e06f6d230b158bd8a3</guid>
      <description><![CDATA[ChangeWave Research released a survey of 1,947 people responsible for IT spending. Thirty percent of the respondents reported that third-quarter IT spending was lower than previously planned while 12...]]></description>
      <content:encoded><![CDATA[<p><img style="border-right: 0px; border-top: 0px; margin: 0px 10px 10px 0px; border-left: 0px; border-bottom: 0px" height="240" alt="michaelphelps" src="http://blog.sciencelogic.com/wp-content/uploads/2008/08/michaelphelps.jpg" width="174" align="left" border="0" /> ChangeWave Research released a survey of 1,947 people responsible for IT spending. Thirty percent of the respondents <a href="http://www.infoworld.com/article/08/08/27/Grim_outlook_for_US_IT_spending_1.html?source=NLC-DAILY&amp;cgd=2008-08-28" target="_blank">reported that third-quarter IT spending was lower</a> than previously planned &#8211; while 12 percent spent more than planned. Thirty-five percent cited higher energy costs as the top factor for spending slowdown. </p>
<p>Parlez-vous open source? While wide-spread open source usage is still debated in many companies, the French have been advocating for <a href="http://www.infoworld.com/article/08/08/28/35NF-open-source-france-lessons_1.html" target="_blank">all open source all the time in government and education</a>. French President Nicolas Sarkozy set up an economic commission that recommended tax benefits to stimulate more open source development. Lesson learned from France: start &#8216;em early. &#8220;All students in France use open source.&#8221;</p>
<p>Just in time for Labor Day, John Edwards (no, not that one) comes out with an informative guide on &#8220;<a href="http://www.infoworld.com/article/08/08/27/35NF-cloud-providers_1.html" target="_blank">Who provides what in the cloud</a>&#8221;. No doubt, this will be a rapidly expanding list, but what&#8217;s really interesting is the comment on the article. People have very strong opinions on the cloud&#8230;</p>
<p>Research firm Aberdeen Group reports that <a href="http://www.cio.com/article/445863/Network_Management_Tips_for_Managing_Costs?page=1" target="_blank">network costs will increase</a> slightly more than 5 percent over 2007. Contributing factors: &#8220;need for speed&#8221;, shift from standard to mobile PCs (more end points of connectivity), and the ever-expanding network. And of course the hidden costs of multiple tools with multiple management consoles &#8211; if you&#8217;re not smart enough to choose say a comprehensive network management solution that is vendor agnostic&#8230;One tool to monitor them all&#8230;</p>
<p>And just because I miss the Olympics already, here&#8217;s an irreverent take on what it&#8217;s like to lose to Michael Phelps. <a href="http://www.thetechstop.net/?p=1503">http://www.thetechstop.net/?p=1503</a></p>
<p>Enjoy your long Labor Day Weekend!</p>
]]></content:encoded>
      <pubDate>Fri, 29 Aug 2008 10:00:44 +0000</pubDate>
      <category domain="http://securityratty.com/tag/percent">percent</category>
      <category domain="http://securityratty.com/tag/source">source</category>
      <category domain="http://securityratty.com/tag/source development">source development</category>
      <category domain="http://securityratty.com/tag/thirty percent">thirty percent</category>
      <category domain="http://securityratty.com/tag/labor day">labor day</category>
      <category domain="http://securityratty.com/tag/source usage">source usage</category>
      <category domain="http://securityratty.com/tag/costs">costs</category>
      <category domain="http://securityratty.com/tag/energy costs">energy costs</category>
      <category domain="http://securityratty.com/tag/thirty-five percent cited">thirty-five percent cited</category>
      <source url="http://blog.sciencelogic.com/links-list-82908/08/2008">Links List 8.29.08</source>
    </item>
    <item>
      <title><![CDATA[Old laws dont cover Cybercrime]]></title>
      <link>http://securityratty.com/article/f9bae1b796c4a6d1b215809f4cbd3027</link>
      <guid>http://securityratty.com/article/f9bae1b796c4a6d1b215809f4cbd3027</guid>
      <description><![CDATA[We really need to get our laws updated quickly. Cybercrime is up 20
Businesses are being targeted more routinely


clipped from www.crime-research.org

Scene of the Cybercrime: Inside Todays...]]></description>
      <content:encoded><![CDATA[<div>We really need to get our laws updated quickly. Cybercrime is up 20%.<br />
Businesses are being targeted more routinely.</div>
<table style="border: 4px solid #e5e5e5; margin: 12px 0px; background: #ffffff none repeat scroll 0%; font-family: arial; color: #333333; width: 100%; clear: left;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td valign="top">
<table class="CM_CTB_Content_Wrap" style="margin: 0px; padding: 0px;background-color: #ffffff;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td valign="top">
<table style="border-bottom: 1px solid #dcdcdc; white-space: nowrap; margin-bottom: 8px; background-color: #eeeeee; background-image: url(http://clipmarks.com/images/source-bg.gif); background-repeat: repeat-x; height: 24px; line-height: 24px; vertical-align: middle; padding-bottom: 4px; color: #666666; font-size: 10px;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td valign="top"><a title="go to this clipmark" href="http://clipmarks.com/clipmark/64B02289-0173-4D25-8D18-B2E876E5E3D6/"><img style="vertical-align: middle; margin: 0px 4px; display: inline; border: none; float:none;" src="http://content.clipmarks.com/blog_icon/a09d3640-cf18-4e6d-b96e-e15292ab93eb/64B02289-0173-4D25-8D18-B2E876E5E3D6/" border="0" alt="" width="19" height="19" /></a>clipped from <a style="font-size: 11px;" title="http://www.crime-research.org/news/10.08.2008/3498/" href="http://www.crime-research.org/news/10.08.2008/3498/">www.crime-research.org</a></td>
</tr>
</tbody>
</table>
<table style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.crime-research.org/news/10.08.2008/3498/ --></p>
<div style="margin: 4px 0px; color: #000000; font-size: 20px;">Scene of the Cybercrime: Inside Today&#8217;s Cybercrime World</div>
</td>
</tr>
</tbody>
</table>
<table style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.crime-research.org/news/10.08.2008/3498/ --></p>
<div>
<div></div>
<p>Today we live and work in a world of global connectivity. We can exchange casual conversation or conduct multimillion-dollar monetary transactions with people on the other side of the planet quickly and inexpensively. The proliferation of personal computers, easy access to the Internet, and a booming market for related new communications devices have changed the way we spend our leisure time and the way we do business.</p></div>
</td>
</tr>
</tbody>
</table>
</td>
</tr>
</tbody>
</table>
<div style="margin: 0px 6px 6px 4px;">
<table style="font-size: 11px;border-spacing: 0px;padding: 0px;" border="0" cellspacing="0" cellpadding="0" width="100%">
<tbody>
<tr>
<td style="background:transparent;border-width:0px;padding:0px;"></td>
<td style="border-width: 0px; padding: 0px; background: transparent none repeat scroll 0%; width: 107px;" width="107" align="right"><a title="blog or email this clip" href="http://clipmarks.com/share/64B02289-0173-4D25-8D18-B2E876E5E3D6/blog/"><img style="border-width:0px;padding:0px;margin:0px;" src="http://content6.clipmarks.com/images/c2b-foot.png" border="0" alt="blog it" width="107" height="17" /></a></td>
</tr>
</tbody>
</table>
</div>
</td>
</tr>
</tbody>
</table>
]]></content:encoded>
      <pubDate>Sat, 16 Aug 2008 12:38:41 +0000</pubDate>
      <category domain="http://securityratty.com/tag/cybercrime">cybercrime</category>
      <category domain="http://securityratty.com/tag/exchange casual conversation">exchange casual conversation</category>
      <category domain="http://securityratty.com/tag/planet quickly">planet quickly</category>
      <category domain="http://securityratty.com/tag/quickly">quickly</category>
      <category domain="http://securityratty.com/tag/communications devices">communications devices</category>
      <category domain="http://securityratty.com/tag/easy access">easy access</category>
      <category domain="http://securityratty.com/tag/monetary transactions">monetary transactions</category>
      <category domain="http://securityratty.com/tag/personal computers">personal computers</category>
      <category domain="http://securityratty.com/tag/leisure time">leisure time</category>
      <source url="http://spywarebiz.com/spywarebizblog/?p=561">Old laws dont cover Cybercrime</source>
    </item>
    <item>
      <title><![CDATA[Wireless as Fashion]]></title>
      <link>http://securityratty.com/article/d8fae85309ceead82498875148309760</link>
      <guid>http://securityratty.com/article/d8fae85309ceead82498875148309760</guid>
      <description><![CDATA[As a security guy, Ive spent a lot of time thinking about the security ramifications of wireless connectivity. Wireless has evolved from a single protocol, 802.11b, to a veritable alphabet soup...]]></description>
      <content:encoded><![CDATA[<p>As a security guy, I’ve spent a lot of time thinking about the security ramifications of wireless connectivity.&nbsp; Wireless has evolved from a single protocol, 802.11b, to a veritable alphabet soup loosely defined as &quot;Mobility.&quot;&nbsp; We now have 11a/b/g and maybe n, Bluetooth, RFID, CDMA, Wi-Max, and a bunch of other stuff that all provides wireless access, often without even a thought of security.&nbsp; As people scramble to have the latest, coolest, most connected devices in the company, they are tossing security right out the window. </p>

<p>I once was working on a project to install a robust wireless network for a company.&nbsp; I asked the guy I was working with why they were doing it. This company had a general attitude of paranoia where security was concerned, so the drive to fast-track an expensive wireless network seemed out of place.&nbsp; It turns out, this company’s president had been playing golf with the president of another company.&nbsp; The president of the other company started bragging about his company’s new wireless network and how he could take his laptop anywhere in the building and get on the network.&nbsp; Embarrassed, the president came back to work and immediately told his IT staff to install a WLAN so that he would never again suffer such indignation.&nbsp; Halfway through the project, cooler heads pointed out to the president that since his company focused on critical infrastructure, the security risks of wireless were too great for them to bear.&nbsp; &nbsp;</p>

<p>This new push for mobility has created a hierarchy within companies.&nbsp; The important people get the coolest phones and PDAs.&nbsp; I once discovered a disturbing trend during a policy review related to mobile devices:&nbsp; when a new phone or PDA came out, a rash of dropped, damaged, and broken phones were turned into the person in charge of handing out mobile devices.&nbsp; Many &quot;accidentally&quot; fell into the toilet.&nbsp; Real money was being lost here, as employees jockeyed for status brought by the flashiest new phones.&nbsp; Yes, <a href="http://radar.oreilly.com/archives/2008/06/phone-in-the-toilet.html">this</a> does really happen. I guess I shouldn’t have been shocked by <a href="http://gizmodo.com/5021615/sony-ericsson-c702-toilet-test-is-gross-yet-intriguing">this</a>.&nbsp; The mobile phone folks figured it out long ago…</p>

<p><object height="344" width="425"><param value="http://www.youtube.com/v/5dlE6loF6Uo&amp;hl=en" name="movie" /><param value="transparent" name="wmode" /><embed height="344" width="425" wmode="transparent" type="application/x-shockwave-flash" src="http://www.youtube.com/v/5dlE6loF6Uo&amp;hl=en"></embed></object></p>]]></content:encoded>
      <pubDate>Mon, 14 Jul 2008 12:53:19 +0000</pubDate>
      <category domain="http://securityratty.com/tag/expensive wireless network">expensive wireless network</category>
      <category domain="http://securityratty.com/tag/wireless network">wireless network</category>
      <category domain="http://securityratty.com/tag/robust wireless network">robust wireless network</category>
      <category domain="http://securityratty.com/tag/wireless">wireless</category>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/wireless connectivity">wireless connectivity</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/wireless access">wireless access</category>
      <category domain="http://securityratty.com/tag/security guy">security guy</category>
      <source url="http://blogs.forrester.com/srm/2008/07/wireless-as-fas.html">Wireless as Fashion</source>
    </item>
    <item>
      <title><![CDATA[Firewalls On Your Windows Servers]]></title>
      <link>http://securityratty.com/article/0d3a5ed02686a6d75aef94ae06705f87</link>
      <guid>http://securityratty.com/article/0d3a5ed02686a6d75aef94ae06705f87</guid>
      <description><![CDATA[A survey last year by David Litchfield of NGS Software showed &quot; ...there are approximately 368,000 Microsoft SQL Servers directly accessible on the Internet and around 124,000 Oracle database servers...]]></description>
      <content:encoded><![CDATA[<A href="http://regmedia.co.uk/2007/11/15/thedatabaseexposuresurvey2007.pdf">A survey last year by David Litchfield of NGS Software</A> showed "<i>...there are approximately 368,000 Microsoft SQL Servers directly accessible on the Internet and around 124,000 Oracle database servers directly accessible on the Internet.</i>" Egad! That's almost certainly not a good thing. Many of them are accessible by accident and many of them are run by just plain incompetent people; 4% of the SQL servers were so old they were still vulnerable to the Slammer worm from many years ago.

One point it raises, even if you don't in intend for your server to be accessible directly on the Internet, is defense in-depth. There should be a firewall on the server so that at least the attack surface is somewhat restricted. Out of this philosophy, starting with Windows Server 2008, the Windows Firewall is turned on by default.

Many users will notice this change in the form of connectivity failures, but that's a good thing because it forces you to think about what's open and closed on your server and make a decision about it. <a href="http://blogs.msdn.com/sqlsecurity/archive/2008/07/01/sql-server-and-the-windows-server-2008-firewall.aspx">An entry on the SQL Server Security Blog</a> discusses these changes and how you can approach them to make your Windows Server 2008-hosted SQL Servers secure.

First you have to locate your servers; it's a good bet that quite a few owners of those Internet-facing servers that Litchfield found don't even know the servers are up. You need to review the host security implementations on those servers to make sure that they conform to your policy. You also need to review your <i>network</i> firewall policies to make sure that the two are compatible. Verify that it's all working as expected; in other words, test the configuration. Then remedy the problems.

Read the blog for more details. On your Windows Server 2003 servers you might even want to turn the firewall on as a defensive measure. Or you might want to turn it off on 2008. But it should be you making a conscious decision.<br style="clear: both;"/>
  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=35d3a5c73bd4a65ab2f70def6ff10c2c" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=35d3a5c73bd4a65ab2f70def6ff10c2c" style="display: none;" border="0" height="1" width="1" alt=""/><img src="http://feeds.ziffdavisenterprise.com/~r/RSS/cheap_hack/~4/328040439" height="1" width="1"/>]]></content:encoded>
      <pubDate>Sun, 06 Jul 2008 04:37:16 +0000</pubDate>
      <category domain="http://securityratty.com/tag/servers">servers</category>
      <category domain="http://securityratty.com/tag/sql servers">sql servers</category>
      <category domain="http://securityratty.com/tag/sql servers secure">sql servers secure</category>
      <category domain="http://securityratty.com/tag/server">server</category>
      <category domain="http://securityratty.com/tag/windows server">windows server</category>
      <category domain="http://securityratty.com/tag/firewall">firewall</category>
      <category domain="http://securityratty.com/tag/network firewall policies">network firewall policies</category>
      <category domain="http://securityratty.com/tag/windows firewall">windows firewall</category>
      <category domain="http://securityratty.com/tag/litchfield">litchfield</category>
      <source url="http://feeds.ziffdavisenterprise.com/~r/RSS/cheap_hack/~3/328040439/firewalls_on_your_windows_servers.html">Firewalls On Your Windows Servers</source>
    </item>
    <item>
      <title><![CDATA[Firewalls on Your Windows Servers]]></title>
      <link>http://securityratty.com/article/88957247ef2cc20dab545ca9881efa23</link>
      <guid>http://securityratty.com/article/88957247ef2cc20dab545ca9881efa23</guid>
      <description><![CDATA[A survey last year by David Litchfield of NGS Software showed &quot; ...there are approximately 368,000 Microsoft SQL Servers directly accessible on the Internet and around 124,000 Oracle database servers...]]></description>
      <content:encoded><![CDATA[<A href="http://regmedia.co.uk/2007/11/15/thedatabaseexposuresurvey2007.pdf">A survey last year by David Litchfield of NGS Software</A> showed "<i>...there are approximately 368,000 Microsoft SQL Servers directly accessible on the Internet and around 124,000 Oracle database servers directly accessible on the Internet.</i>" Egad! That's almost certainly not a good thing. Many of them are accessible by accident and many of them are run by just plain incompetent people; 4 percent of the SQL servers were so old they were still vulnerable to the Slammer worm from many years ago.

One point it raises, even if you don't intend for your server to be accessible directly on the Internet, is defense in-depth. There should be a firewall on the server so that at least the attack surface is somewhat restricted. Out of this philosophy, starting with Windows Server 2008, the Windows Firewall is turned on by default.

Many users will notice this change in the form of connectivity failures, but that's a good thing because it forces you to think about what's open and closed on your server and make a decision about it. <a href="http://blogs.msdn.com/sqlsecurity/archive/2008/07/01/sql-server-and-the-windows-server-2008-firewall.aspx">An entry on the SQL Server Security Blog</a> discusses these changes and how you can approach them to make your Windows Server 2008-hosted SQL Servers secure.

First you have to locate your servers; it's a good bet that quite a few owners of those Internet-facing servers that Litchfield found don't even know the servers are up. You need to review the host security implementations on those servers to make sure that they conform to your policy. You also need to review your <i>network</i> firewall policies to make sure that the two are compatible. Verify that it's all working as expected; in other words, test the configuration. Then remedy the problems.

Read the blog for more details. On your Windows Server 2003 servers you might even want to turn the firewall on as a defensive measure. Or you might want to turn it off on 2008. But it should be you making a conscious decision.<br style="clear: both;"/>
  <img alt="" style="border: 0; height:1px; width:1px;" border="0" src="http://www.pheedo.com/img.phdo?i=874c73e92c0984e88ceac8103c1d55a8" height="1" width="1"/>
<img src="http://www.pheedo.com/feeds/tracker.php?i=874c73e92c0984e88ceac8103c1d55a8" style="display: none;" border="0" height="1" width="1" alt=""/><img src="http://feeds.ziffdavisenterprise.com/~r/RSS/cheap_hack/~4/338277688" height="1" width="1"/>]]></content:encoded>
      <pubDate>Sun, 06 Jul 2008 04:37:16 +0000</pubDate>
      <category domain="http://securityratty.com/tag/servers">servers</category>
      <category domain="http://securityratty.com/tag/sql servers">sql servers</category>
      <category domain="http://securityratty.com/tag/sql servers secure">sql servers secure</category>
      <category domain="http://securityratty.com/tag/server">server</category>
      <category domain="http://securityratty.com/tag/windows server">windows server</category>
      <category domain="http://securityratty.com/tag/firewall">firewall</category>
      <category domain="http://securityratty.com/tag/network firewall policies">network firewall policies</category>
      <category domain="http://securityratty.com/tag/windows firewall">windows firewall</category>
      <category domain="http://securityratty.com/tag/litchfield">litchfield</category>
      <source url="http://feeds.ziffdavisenterprise.com/~r/RSS/cheap_hack/~3/338277688/firewalls_on_your_windows_servers.html">Firewalls on Your Windows Servers</source>
    </item>
  </channel>
</rss>
