SEARCH RESULTS
 
Showing 1-10 of 57 records
 
Expand article

Vulnerabilities in Antivirus Software - Conflict of Interest

The Article has images
2008-07-24 04:38:07 by Dancho Danchev in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...natural event, however, the conflict of interests and failure of communication between those finding them and those failing to acknowledge them as vulnerabilities in general, harms the customer. How they get count, and how is their severity measured in a situation where a vulnerability bypassing the scanning method of an antivirus software...
 
 
 
 
 
Expand article

Iowa DNR loses personal information on 7,000

The Article has images
2007-12-19 14:22:00 by Evan Francen in The Breach Blog
...Natural Resources (DNR Salem Associates Victims Waste water and drinking water worker permit applicants Number Affected 7,000 Types of Data Applicant data including names, addresses, phone numbers, and Social Security numbers Breach Description An employee of Salem Associates, a contractor working for the Iowa DNR lost a thumb (flash)...
 
 
 
 
 
Expand article

Are Microsoft's obits premature?

The Article has images
2008-02-14 13:26:10 by HASH0x8b3bd70 in StillSecure, After All These Years
...natural to root for the underdog and we have been so used Microsoft being unbeatable, that Google appearing as the "great white hope is also natural. But are we know going to cast Microsoft as the underdog here? Have their fortunes sunk so low that we think they are lost? I think not. A company with the assets of Microsoft will continue to...
 
 
 
 
 
Expand article

Are Microsoft's obits premature?

The Article has images
2008-02-14 14:25:59 by ashimmy in StillSecure, After All These Years
...natural to root for the underdog and we have been so used Microsoft being unbeatable, that Google appearing as the "great white hope is also natural. But are we know going to cast Microsoft as the underdog here? Have their fortunes sunk so low that we think they are lost? I think not. A company with the assets of Microsoft will continue to...
 
 
 
 
 
Expand article

Audit/Monitor Controls or Audit/Monitor BEFORE Control?

The Article has images
2008-02-28 11:38:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
...Natural Order Of Security Yields The Greatest Benefits " proclaimed that "the adoption of security has a natural order: 1) authentication; 2) authorization; 3) administration and 4) audit ." Note that audit which, in this case, broadly includes audit, monitoring and detection, comes last. It seems to be fairly in line with common sense: you...
 
 
 
 
 
Expand article

The Security Mindset

2008-03-25 05:27:19 by schneier in Schneier on Security
 
...natural for most people. It's not natural for engineers. Good engineering involves thinking about how things can be made to work; the security mindset involves thinking about how things can be made to fail. It involves thinking like an attacker, an adversary or a criminal. You don't have to exploit the vulnerabilities you find, but if you...
 
 
 
 
 
Expand article

The Security Mindset

2008-03-25 05:27:19 by schneier in Schneier on Security
 
...natural for most people. It's not natural for engineers. Good engineering involves thinking about how things can be made to work; the security mindset involves thinking about how things can be made to fail. It involves thinking like an attacker, an adversary or a criminal. You don't have to exploit the vulnerabilities you find, but if you...
 
 
 
 
 
Expand article

MSSP and NAC - true love or lust?

2008-05-22 10:51:56 by HASH0x8b2d488 in StillSecure, After All These Years
 
...natural for the managed services space. However, I think for the MSSP (managed security services provider) market specifically it may be beyond their current offering levels. Most MSSP offerings today are focused at the perimeter. They have grown from managed firewall to managed IDS/IPS, managed anti-spam and managed content filtering. Now...
 
 
 
 
 
Expand article

The Top Ten Cybersecurity Threats for 2008

2008-01-05 17:22:36 by Tim Bass in The Complex Event Processing Blog
 
...Natural disasters, accidents or errors without malicious intent Acknowledgements and References A special word of appreciation for the reviews, comments and suggestions from the Certified Information Systems and Security Professionals (CISSPs) community and the LinkedIn professional network In particular, comments and suggestions from Gary...
 
 
 
 
 
Expand article

The New Media Malware Gang - Part Two