SEARCH RESULTS
 
Showing 1-10 of 17 records
 
Expand article

Your Turn At The Bar Again? Security Costs in a Pay Per Drink Cloud

The Article has images
2008-05-01 20:55:26 by Craig Balding in Cloud Security
...compute power you paid for. If you over-specify, you have excess computer power or disk - you are wasting money. If you under-specify, you may be forced to raid your rainy day budget and order new hardware A primary selling point of Cloud Computing is the pay by the drink billing model - you only pay for the CPU cycles and storage you use -...
 
 
 
 
 
Expand article

Assessing the Security Benefits of Cloud Computing

The Article has images
2008-07-21 07:00:15 by Craig Balding in Cloud Security
...computers pose less risk than transporting data buckets in the form of laptops. Ask the CISO of any large company if all laptops have company mandated controls consistently applied; e.g. full disk encryption. Youll see the answer by looking at the whites of their eyes. Despite best efforts around asset management and endpoint security we...
 
 
 
 
 
Expand article

The Attack of the Spiders from the Clouds

2008-07-31 15:09:19 by Tim Bass in The Complex Event Processing Blog
 
...compute-1.amazonaws.com/24 DROP all ec2-75-101-243-0.compute-1.amazonaws.com/24 DROP all ec2-75-101-197-0.compute-1.amazonaws.com/24 DROP all ec2-75-101-213-0.compute-1.amazonaws.com/24 Well, imagine a not-so-distant future dystopian world where criminals or terrorists want to launch a massive denial-of-service attack against some critical...
 
 
 
 
 
Expand article

Whats New in the Amazon Cloud?: Security Vulnerability in Amazon EC2 and SimpleDB Fixed (7.5 Months After Notification)

The Article has images
2008-12-18 23:09:54 by Craig Balding in Cloud Security
...Compute is now available in the EU More worryingly, however and missing from the Amazon AWS homepage, is that Amazon just rolled out an important security fix to correct a basic, but significant, cryptographic weakness in their request signing code. The flaw affects their database API (SimpleDB) and compute API (EC2) services Colin Percival...
 
 
 
 
 
Expand article

Interop NY: Cloud Language: The Taxonomy of On-Demand Computing

2008-09-17 18:25:32 by Valerie Barber in ScienceLogic
 
...computer technology (Computing) delivered by an ecosystem of providers. - Sam Johnston, July 2008 Definition #2 - Cloud computing = network computing. I love the idea of cloud computing, the next evolution of the most network intensive architecture possible, but one that if it works well, is transparent. Its all about the transparency. -...
 
 
 
 
 
Expand article

To sleep, power off or hibernate - cold boot and user behaviour..

2008-03-14 16:14:00 by Manu Namboodiri in Data Protection, Management and Leakage
 
...compute with the risk scenario from the cold boot attack.. If I were an IT pro in a large organization, I would take a serious look at the power modes my mobile users use on their laptops
 
 
 
 
 
Expand article

Cloud Stacks: Please Mind The Gap

The Article has images
2008-04-24 20:54:37 by Craig Balding in Cloud Security
...Compute, Cloud Security These providers in turn depend upon other service providers at the next layer down in the Cloud and so on See where Im going with this This is a new game Im going to call Join the Security Dots in Cloud Land And even then it isnt as simple as Ive presented it To end this post Im going to ask a question to readers of...
 
 
 
 
 
Expand article

J-PAKE: From Dining Cryptographers to Jugglers

2008-05-29 20:31:05 by Feng Hao in Light Blue Touchpaper
 
...compute a common session key, if they supplied the same passwords. Otherwise, the protocol leaks nothing more than: the supplied passwords at two sides are not the same. In other words, one can prove his knowledge of the password without revealing it. A Java implementation of the protocol on a MacBook Pro laptop shows that the total...
 
 
 
 
 
Expand article

Catalyzing security in service orientation

2008-06-30 16:31:36 by Burton Group in Security and Risk Management Strategies Blog
 
...compute-intensive XML schema validation, is an ideal candidate for infrastructure security, and so is service-to-service authentication. User authorization is all over the map depending on its granularity and requirements for data-awareness. With encryption it also depends on whether we're talking data transport or storage. Service-enabling...