SEARCH RESULTS
 
Showing 1-10 of 19 records
 
Expand article

Do you have an example for FUD Watch?

2008-05-29 20:47:46 by HASH0x847264c in StillSecure, After All These Years
 
...FUD Watch. Bill has had enough of his mailbox being full of every chicken little saying the sky is falling with the latest security threat. He gives on of many examples but is asking for others. An obvious one is the recent Symantec call for everyone to stop using Flash. Than today , it retracted saying that in fact the latest version of...
 
 
 
 
 
Expand article

Sitting on your hands is not an option - FUD, Compliance, what will it take to sell security?

2008-03-13 00:17:43 by HASH0x84729f8 in StillSecure, After All These Years
 
...FUD to compliance. There was a time when to sell security you would ask your customer, what would happen to your business if your network was brought down? What would happen if your IP was stolen? What would the negative publicity of a security breach cost you? Of course some of these questions could be turned on their side into the infamous...
 
 
 
 
 
Expand article

No, FISMA Doesnt Require That, Silly Product Pushers

2008-07-31 14:36:31 by rybolov in The Guerilla CISO
 
...FUD, FUD, and more FUD because unless its in a memo to agency heads, its all posturingsomething everybody in this town knows how to do very well. OMB would rather stay out ofmandating DNSSEC and maybe give a due date onceNISThas a final standard My one word of wisdom for today: anybody who tries to sell a product and uses FISMA as the...
 
 
 
 
 
Expand article

Black Hat WiFi Cover-Up?

2006-08-22 11:43:43 by Editor in Endpoint Security: Translating Policy Into Reality
 
How about a smidgen of paranoia, a pound of FUD, and an extra helping of "Full Disclosure" rhetoric? This posting's got it all
 
 
 
 
 
Expand article

MDAC ActiveX Code Execution Exploit Still in the Wild

The Article has images
2007-12-05 12:08:56 by HASH0x89e6630 in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...FUD-ish one, and by not following it , ended up with operating the largest botnet known for the time being - a botnet that was built on the foundations of outdated vulnerabilities pushed through emails, using sites as the infection vector , and not a single zero day one How are risks hedged? Risks are hedged by following the simple...
 
 
 
 
 
Expand article

Scary World Ahead?!

2008-01-16 19:54:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...FUD , but one of my 2008 predictions is coming to life with scary, scary speed I predicted that "Loss of trust towards legitimate Internet sites = yes . This is manifested by things like this point by the WS guys - more 0wned than malicious sites are used to spread malware. Even now I shudder from the thought that ANY site I visit might be...
 
 
 
 
 
Expand article

Now Thats a Novel Way to Kill the FUD

2008-02-17 22:14:51 by mcurphey in Mark Curphey - SecurityBuddha.com
 
Static Analysis Tools Exposition (SATE). If these guys would do this on other tool classes I think we could breakdown some more security religion and get back to creating pragmatic solutions to real problems. Wow, the first two rants ever on my blog each within a few minutes, strange day
 
 
 
 
 
Expand article

The First Step on the Road to More Secure Software is admitting you have a Problem

2008-02-21 14:26:00 by sdl in The Security Development Lifecycle
 
...FUD Yeah, but it's not an apples to apples comparison How can you believe this guy? He works for Microsoft What would Microsoft know about security For his next trick That chart really hits home the fact that statistics can be used to prove any side of any argument Of course he says Windows is the best, that's what he's paid to do Counting...
 
 
 
 
 
Expand article

FUD About Ruby on Rails?

2007-08-31 08:45:00 by Security Retentive in Security Retentive
 
James McGovern has a piece " The Insecurity of Ruby on Rails " that Alex picked up on and I think the whole idea is a little overblown The points raised by James were Java has a security manager, Ruby does not None of the common static analysis tools cover Ruby I'll address both of these I have yet to come across a single Java application...