SEARCH RESULTS
 
Showing 1-10 of 150 records
 
Expand article

How to Sell Security

2008-05-26 05:57:29 by schneier in Schneier on Security
 
...chance of gaining $1,000. Ask the other group to choose between these two alternatives: a sure loss of $500 and a 50 percent chance of losing $1,000 These two trade-offs are very similar, and traditional economics predicts that the whether you're contemplating a gain or a loss doesn't make a difference: People make trade-offs based on a...
 
 
 
 
 
Expand article

Fuzz Testing at Microsoft and the Triage Process

2007-09-20 18:52:00 by sdl in The Security Development Lifecycle
 
...chance of having to look at duplicates during the triaging process. This was accomplished by creating unique bucket ids calculated from the stack trace using both symbols and offset when the information is available. The bucket id was used to name a folder that was created in the file system to refer to a unique application exception. When an...
 
 
 
 
 
Expand article

The Austin Project

2008-01-21 22:45:39 by RSnake in ha.ckers.org web application security lab
 
...chance to come ask me. Not that I will just be covering basics - oh no, why come to me for the basics? But this will be your chance to get me to slow down and explain things to you in a virtually one on one environment My goal isnt to get the best of the best and put them in a room together (although if I wind up with a bunch of people who...
 
 
 
 
 
Expand article

Do they have to grow up?

The Article has images
2008-02-25 02:57:30 by HASH0x8abc9d0 in StillSecure, After All These Years
...chance to pitch to at least two batters. The first two innings our best pitcher held the other team scoreless and we punched through a run in the 2nd to take the lead. However in the 3rd inning, he ran out of gas and our next two pitchers didn't do any better. Trailing 6 to 1, I decided to give the other kids a chance. 18 runs later (thats...
 
 
 
 
 
Expand article

Do they have to grow up?

The Article has images
2008-02-25 03:55:18 by ashimmy in StillSecure, After All These Years
...chance to pitch to at least two batters. The first two innings our best pitcher held the other team scoreless and we punched through a run in the 2nd to take the lead. However in the 3rd inning, he ran out of gas and our next two pitchers didn't do any better. Trailing 6 to 1, I decided to give the other kids a chance. 18 runs later (thats...
 
 
 
 
 
Expand article

Do people still fall for spam?

2006-10-28 19:14:06 by Administrator in Email security & compliance blog
 
...chance of this stock being traded. On days when spam messages were sent out urging people to buy the stock, the chance of the stocks being traded rose as high as 81%. The study also calculated the percentage that investors are losing. On average, investors who fall for the scam are losing 5.25% in the two day period following the stock...
 
 
 
 
 
Expand article

Diminutive XSS Worm Contest Drama and Status Update

2008-01-06 17:34:38 by RSnake in ha.ckers.org web application security lab
 
...chance of that. However, the goal here is to understand why the propagation methods were chosen so we can build defenses against them. We actually had tons of interesting findings that will help us narrow down the most dangerous strains, and start making suggestions to browser companies and security companies that are in development of...
 
 
 
 
 
Expand article

Security is not all about Security Updates

2007-12-17 12:58:00 by sdl in The Security Development Lifecycle
 
...chance that vulnerabilities are added to the software in the first place . Writing lots of code quickly, shipping it and then racing to fix security bugs later is not engineering, it's chaos, and it's not good for customers. A question I like to ask software developers outside of Microsoft is, "what are you doing to reduce the chance an...
 
 
 
 
 
Expand article

Lost Bank of Ireland laptops affect roughly 10,000 customers

The Article has images
2008-04-22 09:35:39 by Evan Francen in The Breach Blog
...chance that some of the laptops may be used to work with highly confidential information? Do you think there is a good chance that one of these laptops may be lost or stolen? Obviously the answer to both questions is "yes". Why then are these laptops not adequately protected? Is this another "human error had yet to inform any of the 10,000...
 
 
 
 
 
Expand article

Three computers at the University of Colorado are compromised

The Article has images
2008-04-30 08:54:01 by Evan Francen in The Breach Blog
...chance that the intent of the malicious file was to capture and transmit sensitive information and that there was a chance of success. Otherwise, why would the school report it? If it were a run of the mill virus (supposing one exists nowadays), would you report it? Hard to say Bronson Hilliard, a spokesman for CU-Boulder, says one of the...