SEARCH RESULTS
 
Showing 1-10 of 14 records
 
Expand article

Threat Modeling Self Checks and Rules of Thumb

2007-10-22 21:04:01 by sdl in The Security Development Lifecycle
 
...actionable. Review this carefully, or Focus your attention here are more actionable. People threat modeling are already concerned Good rules of thumb encourage flow by empowering people to make a snap decision and move along
 
 
 
 
 
Expand article

Summarizing June's Threatscape

The Article has images
2008-07-01 07:05:01 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...actionable intelligence gathered in the shortest timeframe possible is already proving accurate and highly valuable. How come? Stay tuned for more developments 06. ImageShack Typosquatted to Serve Malware - In a rare instance of a creative attack combining typosquatting in order to impersonate ImageShack and serve malware by...
 
 
 
 
 
Expand article

Playing around with my blog

2007-09-26 18:40:21 by Steve Riley in Steve Riley on Security
 
...actionable for ordinary citizens. This website has some good commentary that'll make your blood boil Technorati stuff--authority display (which isn't working, maybe it takes a while?), reaction counts and link, and a button for you to add me to your Technorati favorites As time goes on, I'll probably add more. Hope you find this useful
 
 
 
 
 
Expand article

Cached Malware Embedded Sites

The Article has images
2007-12-16 18:18:26 by HASH0x8a09e44 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...actionable historical intelligence in the form of what was embedded at the site, where was it pointing, are there many other sites currently embedded by the same campaign etc. This is an interesting opinion stating that cached malware embedded sites are a security problem, well they're, but the bigger problem to me is that it's only Google...
 
 
 
 
 
Expand article

The Dutch Embassy in Moscow Serving Malware

The Article has images
2008-01-28 16:07:58 by HASH0x8af6a58 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...actionable intelligence on who's what and what's when is a necessity. Here are for instance two far more in-depth assessments given the exploits URLs were still alive back then, discussing the malware embedded at the sites of the U.S Consulate in St. Petersburg , and the Syrian Embassy in the U.K Related posts MDAC ActiveX Code Execution...
 
 
 
 
 
Expand article

Healthcare Best Practices Security Framework

2007-12-27 17:37:00 by Ryan Shopp in practical risk management
 
We are excited to see this announcement about the formation of HITRUST (Health Information Trust Alliance). A health care vertical specific initiative around establishing and collaborating on information security best practices. Why are we excited, our solution (along with other IT-GRC solutions) are specifically designed to enable a major...
 
 
 
 
 
Expand article

Central Bank of the UAE reports ATM fraud to lenders

The Article has images
2008-03-03 11:41:37 by Evan Francen in The Breach Blog
...actionable for the people affected. There is not enough information to help anyone It is often very (and I mean VERY) difficult to notice good card skimmers and cameras. Here is an example borrowed from the University of Texas Card skimmer being installed Card skimmer after installation Camera to capture PIN numbers hidden in an...
 
 
 
 
 
Expand article

UNICEF Too IFRAME Injected and SEO Poisoned

The Article has images
2008-04-01 07:42:20 by HASH0x8b227b4 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...actionable intelligence data, in between the added value out of the historical preservation of evidence. The malicious parties behind this know what they're doing, they've been doing it in the past, and will continue doing it, therefore it's extremely important to document what was going on at a particular moment in time. It's all a matter of...
 
 
 
 
 
Expand article

Implementing the Event Cloud

2008-04-13 14:01:56 by Greg Reemler in The Complex Event Processing Blog
 
...actionable situational knowledgefrom the cloud However, event clouds are represented as POSETS. This is directly from the CEP literature Note: See also, these posts on POSETS