SEARCH RESULTS
 
Showing 1-10 of 32 records
 
Expand article

The Other Side of Life

2008-03-21 16:06:00 by sdl in The Security Development Lifecycle
 
...contrary, he was laughing along with everyone else. We just know that writing software to satisfy all the scenarios in which our software is deployed requires far more testing than can reasonably be performed on a single desktop system So the tests were scheduled, the developer was proven correct, and were picking up the latest version. Even...
 
 
 
 
 
Expand article

Making Risk Measures Agree with Accounting 100%

2006-12-26 05:27:00 by Jomni in Risk Management Quant
 
...Contrary to risk measurement, accounting focuses on past performance. People tend to be very meticulous in this field to the point that they want things to be correct to the last cent. This is because in most organizations, even in today's banks, profit and loss (past performance) is still more important Nowadays, with all the innovation in...
 
 
 
 
 
Expand article

Password policies. Once again.

2007-09-04 22:14:00 by Steve Riley in Steve Riley on Security
 
...contrary to the claim, enabling this setting actually can have significant impact on usability Account lockout is there for people who absolutely need it. But I can't think of any instance where this is true. Instead, have a policy that requires simple passwords at least 15 characters long. Forget about complexity rules that force people to...
 
 
 
 
 
Expand article

About Penetration Testing

2008-01-07 09:15:52 by Editor in IEEE Security and Privacy
 
Students generally learn red teaming, sometimes called penetration testing or ethical hacking, as "breaking into your own system to see how hard it is to do so." Contrary to this simplistic view, a penetration test requires a detailed analysis of the threats and potential attackers in order to be most valuable. The author looks at penetration...
 
 
 
 
 
Expand article

J.C. Penney customers affected by lost GE Money backup tape

The Article has images
2008-01-18 10:24:59 by Evan Francen in The Breach Blog
...Contrary to what J.C. Penney may think and what GE Money has stated, J.C. Penney does have responsibility in this breach. To state that J.C. Penney "was in no way responsible for this incident" is false. They have the responsibility to ensure that the information given to them from the owner is handled appropriately. Do they audit their...
 
 
 
 
 
Expand article

Missing memory stick turns up five months later

The Article has images
2008-01-23 16:44:36 by Evan Francen in The Breach Blog
...contrary is suffering from a false sense of security Information security is an art. The art entails "best practices" and risk management (among other things). At The Breach Blog , we write about many breaches where no best practices were followed and no risk management applied Past Breaches Unknown
 
 
 
 
 
Expand article

Giving Drivers Licenses to Illegal Immigrants

2008-02-13 05:57:39 by schneier in Schneier on Security
 
...Contrary to popular belief, a driver's license is not required to board a plane. You can use any government-issued photo ID, including a foreign passport. And if you're willing to undergo secondary screening, you can board a plane without an ID at all. This is probably how anybody on the "no fly" list gets around these days A 2003 American...
 
 
 
 
 
Expand article

More on Hating Agents

2008-02-13 14:54:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...contrary to popular belief, one can collect logs securely without agents (e.g. via SCP, FTPS or SFTP just as with agents, one can schedule log collection for off-hours one can choose to pull or push data (e.g. HTTP upload added risk: new open ports (in case of log pull) or running services (in case of upload or log push) on all systems added...
 
 
 
 
 
Expand article

Cold Boot Attacks on Windows Vista BitLocker Encryption Keys

2008-02-22 17:00:07 by Editor in Digg / Security
 
Contrary to popular assumption, DRAMs used in most modern computers retain their contents for seconds to minutes after power is lost, even at operating temperatures and even if removed from a motherboard. Although DRAMs become less reliable when they are not refreshed, they are not immediately erased, and their contents persist
 
 
 
 
 
Expand article

A new world order of computing - an analogy of Microsoft and the US

2008-02-19 00:24:05 by HASH0x8baa6ec in StillSecure, After All These Years
 
...contrary, companies who found out that Microsoft was entering their space would roll over and die. I didn't think I would live to see in my lifetime so much talk of Microsoft being a dinosaur and not able to compete But as I wrote about last week, it seems articles like Grumans are the topic du jour. It is quite fashionable to say that...
 
 
 
 
&nbs