SEARCH RESULTS
 
Showing 1-10 of 37 records
 
Expand article

Screencast: An introduction to the Open Source Security Testing Methodology Manual (OSSTMM)

2008-05-27 07:49:22 by Peter Giannoulis in WhatIs: Enterprise IT tips and expert advice
 
Watch Peter Giannoulis as he introduces the Open Source Security Testing Methodology Manual (OSSTMM)and demonstrates how it can be used to defend machines from a brute-force dictionary attack
 
 
 
 
 
Expand article

Intellectual Property- what is it and how do we secure it?

2007-12-29 06:43:45 by Editor in Security Links
 
...manual, then Intellectual Property Law, Fourth Edition provides a worldwide perspective and introduction to the subjects Both the books mentioned above are available for immediate despatch from the IT Governance online store. IT Governance have searched the book publishing world exhaustively for the most interesting and highly authoritative...
 
 
 
 
 
Expand article

Software Security Metrics and Commentary on "Metrics Framework" Paper

2007-09-17 20:41:00 by Security Retentive in Security Retentive
 
...Manual review Broken Access Control AnomalousSessionCount Runtime Audit Trail review Broken Authentication / Session Management BrokenAccountCount Runtime Account Review Cross-Site-Scripting XsiteVulnCount Deployment Pen Test Tool Buffer Overflow OverflowVulnCount Deployment Vuln Testing Tools Injection Flaws InjectionFlawCount Runtime Pen...
 
 
 
 
 
Expand article

Risk ROI for Some Provisioning Solutions

2008-04-19 02:22:29 by Erik T. Heidt in Art of Information Security
 
...manual updates in favor of automated entitlement updates All provisioning solution providers strive to have a compelling story for these items. Additionally, these were the focus of the first generation of solutions which emerged in the 90s For the Identity Management programs with which I have been involved, automation and risk management...
 
 
 
 
 
Expand article

When Too Much Security Means No Security at All

2007-12-24 12:30:19 by Posted By: Paul Proctor, Research VP in IT Leaders - Security and Risk Management
 
...manual governing the handling of confidential information. But in the days after the data breach, HMRC apparently decided that the manual itself was so sensitive that it had to be kept confidential. According to the media reports, only senior staff are allowed physical access to the manual, while lower-level personnel receive only a Web-based...
 
 
 
 
 
Expand article

Security Tidbits

2007-12-26 19:58:00 by NGO Security in NGO Security
 
...manual published by the New Zealand government. Entitled Security in Government Sectors , even though the manual isn't NGO-specific, it's quite comprehensive and has a lot of good information that can be applied outside government circles. Definitely worth a bookmark A belated pointer to humanitarian adviser (and frequent commenter to NGO...
 
 
 
 
 
Expand article

Manuals (CIA and NGO)

2008-05-07 16:57:00 by NGO Security in NGO Security
 
...manual day, and here's a quick selection of interesting manuals to read At the top of the list is the CIA's Psychology of Intelligence Analysis by Richards J. Heuer. This is a must read if you're into critical thinking and the inner game of security. It covers information gathering, analysis and the various biases that can creep in and...
 
 
 
 
 
Expand article

NSA Attacks West Point! Relax, It's a Cyberwar Game

2008-05-10 01:00:00 by David Axe in Wired Security
 
...manual tweaking of the SQL database to "avoid any surprises," in the words of Lt Col. Joe Adams, a West Point instructor who helped coach the team But the kernel-level rootkit was much more dangerous. This stealthy operating-system hijacker can open unseen "back doors" into even highly protected networks. When they detected the rootkit's...
 
 
 
 
 
Expand article

Microsoft Hits Back at Atsiv

2007-08-02 22:17:32 by Editor in Cheap Hack
 
...manual check option that users could schedule to run periodically. The system should probably throw an exception or something similarly dramatic if the cert for a running driver is determined to be revoked
 
 
 
 
 
Expand article

Hackers get busted

2