SEARCH RESULTS
 
Showing 1-10 of 25 records
 
Expand article

What are the odds?

2007-02-09 00:00:00 by Burt Kaliski in Speaking of Security, the RSA Blog and Podcast
 
The crew at RSA happened upon the following post on Flickr: http://flickr.com/photos/47454997@N00/381185553 and the question was, "what are the odds"? * With a six-digit display, the odds are 1 in 1,000,000 that a token would display all zeros at a given time. The odds are the same for 999999 and any value in between, they're all equally likely
 
 
 
 
 
Expand article

What Does SHA1 is Broken Mean?

2007-12-12 07:35:00 by Eric Marvets in The Security Samurai
 
...odds of guessing a value x to match a known value f(x). If the size of the hash value was 2 1 , there would be a 50/50 chance that the valued guessed would match our known f(x). Thats why SHA1 utilizes a very large hash size of 2 160 . To put that in perspective, the Earth is composed of 2 170 atoms. Its computationally unrealistic that...
 
 
 
 
 
Expand article

Security ROI

2008-09-02 06:05:53 by schneier in Schneier on Security
 
...odds of convincing criminals to rob another store instead. You need to know how much a robbery costs: in merchandise, in time and annoyance, in lost sales due to spooked patrons, in employee morale. You need to know how much not having the cameras costs in terms of employee morale; maybe you're having trouble hiring salespeople to work the...
 
 
 
 
 
Expand article

Are you paying to stay safe online?

2008-08-25 14:23:43 by Doug Woodall in The Spyware Biz Blog
 
...odds of contracting a serious (computer) virus problems are given to be 1 in 7, the yearly costs $2.9 billion. The odds of a serious spyware problem are 1 in 14, with a yearly cost of $3.6 billion. (Note that these figures are for both businesses and consumers
 
 
 
 
 
Expand article

Betting on the SOA Horse

2008-01-05 05:49:38 by Tim Bass in The Complex Event Processing Blog
 
...odds are remote. Very few people win these exactas or trifectas. I recall warm memories of my years inNew Orleanswhen I was a university student at Tulane University . We loved the excitement (and the beer!)at Jefferson Downs, in Kenner, Louisiana. We took our dates to the horse races at Jefferson Downs and these evenings were always great...
 
 
 
 
 
Expand article

Common Criteria and answering the question 'Is it Safe'

2007-12-20 16:57:00 by sdl in The Security Development Lifecycle
 
...odds with how it is used in the real world. For example, as I recall, a few years ago, an operating system was evaluated under the US Controlled Access Protection Profile in a configuration that had only an FTP server (configured for anonymous access) enabled. This sort of fiction doesnt meet customer needs One of the other key challenges of...
 
 
 
 
 
Expand article

The National Cyber Exercise

2008-02-06 13:29:21 by Burton Group in Security and Risk Management Strategies Blog
 
...odds with the other intimate advice we offer to security planners, including security architecture for major systems. Third, our client list simply might not intersect with the invited participants, which, while plausible, means that some really important players are being ignored Here's what makes me nervous: the possibility that DHS isn't...
 
 
 
 
 
Expand article

The National Cyber Exercise

2008-02-06 13:29:21 by Burton Group in Security and Risk Management Strategies Blog
 
...odds with the other intimate advice we offer to security planners, including security architecture for major systems. Third, our client list simply might not intersect with the invited participants, which, while plausible, means that some really important players are being ignored Here's what makes me nervous: the possibility that DHS isn't...
 
 
 
 
 
Expand article

David Brin Rebuts Schneier In Defense of a Transparent Society

2008-03-12 01:00:00 by David Brin in Wired Security
 
Wired.com columnist and security expert Bruce Schneier argues that a world without secrets would only give more power to the powerful. Award-winning science fiction author David Brin defends his thesis that a "transparent society" is the best way to even the odds
 
 
 
 
 
Expand article

Productivity vs Security

2008-02-05 11:13:00 by Allen Baranov, CISSP in Security Thoughts
 
...odds with the processes of the business then either the process is wrong or the information security is wrong If you tack on security after the fact your thinking will always be wrong Example A sales-rep is always on the road. Because he lives in the North part of town that is where his customers are. He has a list of customers and their...