SEARCH RESULTS
 
Showing 1-10 of 198 records
 
Expand article

Surprise ARP attack draws attention

2008-06-08 00:00:00 by HASH0x8472e50 in Network World on Security
 
It isn't often that old hacking methods make significant news, but an ARP attack received widespread attention earlier this week, more so for the perceived target than for the actual attack itself
 
 
 
 
 
Expand article

Getting into the Flow With Threat Modeling

The Article has images
2007-10-11 23:25:00 by sdl in The Security Development Lifecycle
...attention Lets take these one at a time Clear Goals Giving people clear goals is important because it helps take them from worrying about what your goals mean to worrying about how to achieve them. Without clear goals, its very challenging to get into the spirit of anything, whether playing a game or shipping an operating system. As goals go,...
 
 
 
 
 
Expand article

Williamson County Schools learns of breach reported nine months ago

The Article has images
2008-07-13 00:12:01 by Evan Francen in The Breach Blog
...attention on June 26th The information given to us indicated that our assessment specialist, Chris Nugent, was involved. This was the first we had heard of this situation We began our investigation immediately asking Mr. Nugent to gather all data that could possibly be associated with this situation We thought at that time he would be able...
 
 
 
 
 
Expand article

Risk Management Lessons from the Mortgage Meltdown

2007-12-14 16:54:17 by Chris McClean in Security & Risk Management
 
...attention. Its still early to tell how far fallout from the sub-prime crisis will reach, but the number of consumers affected has already convinced lawmakers to get involved. Weve seen other industry-wide risk management failures heading toward this level of attention with pharmaceutical , food , and toy companies. The risk of attracting...
 
 
 
 
 
Expand article

Month Of MySpace Bugs

2007-03-20 22:46:00 by Eric Marvets in The Security Samurai
 
...attention, MySpace is extremely popular to get them even more attention, and that MySpace is notoriously dickish in response to security issues Starting on April 1, they will release one MySpace hack a day. Most will center on XSS attacks and they invite anyone to send in a hack as long as you have a proof of concept. It sounds pretty light...
 
 
 
 
 
Expand article

Missing memory stick turns up five months later

The Article has images
2008-01-23 16:44:36 by Evan Francen in The Breach Blog
...attention of The Breach Blog by an informed reader Response From the online source cited above A COMPUTER memory stick holding confidential medical information and personal details of hundreds of people was found in a car park The names, addresses, dates of birth, home and mobile phone numbers and conditions of more than 340 patients were...
 
 
 
 
 
Expand article

A law suit waiting to happen.

2007-12-06 04:25:00 by John Sexton in The Bullet Proof Blog
 
...attention One such occassion happened a few years ago at a fitness center. The center operated on a 24 hour basis and it meant that people were coming to exercise at all hours, day and night. I noticed that not only did the center not have any physical security presence, but they did not even have any security cameras. The parking lot was...
 
 
 
 
 
Expand article

Localizing Cybercrime - Cultural Diversity on Demand

The Article has images
2008-02-21 17:06:11 by HASH0x8b1e62c in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...attention By localization of malware, I mean social engineering attacks, use of spelling and grammar free native language catches, IP Geolocation, in both when it comes to future or current segmented attacks/reports on a national, or city level. We are already seeing localization of phishing and have been seeing it in spam for quite some...
 
 
 
 
 
Expand article

PCI Compliance not going away - 42% not compliant

2008-02-20 14:57:00 by Ryan Shopp in practical risk management
 
...attention! It started out by saying according to VISA, 42% of large and medium-sized US merchants did not reach their respective PCI compliance deadlines. The penalty of non-compliance is merchants incur monthly fines (up to $25,000) until they meet and sustain data security compliance requirements Now that is some attention grabbing...
 
 
 
 
 
Expand article

Why Some Terrorist Attacks Succeed and Others Fail

2008-02-28 06:25:13 by schneier in Schneier on Security