SEARCH RESULTS
 
Showing 1-10 of 256 records
 
Expand article

Fun Reading on Security - 2

2008-05-09 12:20:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...Fun Reading on Security ." Here is an issue #2, dated May 8, 2008 So my next iteration of fun reading on security, logging and other topics 0x000000 blog has a neat post on security , word definition and all. It reminds us that "security is forever" since it is about people, not broken technologies. A quote: "And so we will never able to...
 
 
 
 
 
Expand article

Fun Reading on Security - 4

2008-06-17 11:36:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...Fun Reading on Security ." Here is an issue #4, dated June 17, 2008 So my next iteration of fun reading on security, logging and other topics Security-as-control" vs "security-as-assurance" - a very useful idea (more here ), which is often confused with bad results (e.g. "secure" software = has password authentication OR has has no overflow...
 
 
 
 
 
Expand article

Fun Reading on Security - 7

2008-08-27 10:56:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...Fun Reading on Security ." Here is an issue #7, dated August 27th, 2008 Sad, but VERY insightful story of Alan Shimmel getting 0wned ( 1 , 2 , 3 , 4 , others on his blog A very good essay on security industry/market/community " Evolution is Punctuated Equilibria " ("Right now, Internet security is due for another period of rapid change As I...
 
 
 
 
 
Expand article

Fun Reading on Security - 1

2008-04-18 17:10:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...Fun Reading on Security ." Here is an issue #1, dated April 18, 2008 Gunnar Peterson has a "must-read" post on security innovation (and lack thereof), where he attributes said "lack" to lack of accountability. Read it and think! If you are tired of people mentioning "RSA", beware, his post does it too... Fun quote: "What is genuinely...
 
 
 
 
 
Expand article

Fun Security Reading - 3

2008-05-15 14:11:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...Fun Reading on Security " or "FRoS." Here is an issue #3, dated May 15, 2008 First, watch Dave Aitel beats the dead horse of academic security "research." Quote: "people who write papers in LaTeX two-column format end up saying the sky has a high negative trajectory." ( other examples I work for a vendor , but I am not "vendor scum." What is...
 
 
 
 
 
Expand article

Fun Reading on Security - 5

2008-07-11 17:57:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...Fun Reading on Security ." Here is an issue #5, dated June 11, 2008 Another fun (and horrible) laptop theft story , to be shown to those naive souls who say "ah, just stolen for hardware Very fun dailydave thread on security future (sad, of course :-)) - here is an excerpt: "The complexity in security is not from any complexity in technology...
 
 
 
 
 
Expand article

Fun Reading on Security - 6

2008-08-07 18:01:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...Fun Reading on Security ." Here is an issue #6, dated August 7th, 2008 DNS + Karma = Boom! Enuf said. Also, hear Pete Linstrom squeal Fun essay on "blocking" and risk. Is it our job to stop'em from using Facebook MS Exploitability Index . Smart ... or misguidedly focused on "vulnerability release" (and not creation Chip-n-PIN, a PCI killer? I...
 
 
 
 
 
Expand article

Two Fun and Thought-provokinng Pieces

2008-03-06 12:58:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...fun and insightful read from Gunnar Peterson: " When Will We See Market Forces in Infosec? " Example fun quote: " ... Wait - they listen to customers, innovate new things, control costs, and deliver safety mechanisms to market while growing their business? When will Silicon Valley answer the bell on this model? " Read on On an unrelated...
 
 
 
 
 
Expand article

Anton Security Tip of the Day #14: More accesslog Fun: What Are You Not GETting?

2008-03-12 13:35:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...Fun: What Are You Not GETting In this tip, we will look at some bizarre artifacts that show up in web server access logs today. Here we have a production log from an Apache web server that is full of interesting (and sometimes ominous!) little mysteries that we will investigate in order to determine their impact on security and operational...