SEARCH RESULTS
 
Showing 1-9 of 9 records
1
 
Expand article

Logging Poll #3 "What Do You Do With Logs?" Analysis

The Article has images
2007-12-07 09:19:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
...ponder this one really, really hard. Sorry to use this post to rant, but my conclusion at the time (which is also valid now) was that " SIEM is for some, log management is for everybody ." This poll confirms this further Finally, all my logging polls and analysis are here . Next one is coming up Technorati tags: logging , polls , log...
 
 
 
 
 
Expand article

Show 021 - A Panel Discussion with Cigitals Principals

The Article has images
2007-12-21 20:40:32 by rmacmich in The Silver Bullet Security Podcast
...ponder how much the security testing burden should fall on QA and whether developing expertise in architectural risk analysis or threat modeling is more helpful. John Steven also discusses the hole in his dining room, which threat modeling would not have helped to prevent Transcript of this episode [PDF Justice League blog Threat Modeling - a...
 
 
 
 
 
Expand article

Who Are the Experts, and What Have They Done for Us Lately?

2008-01-07 09:15:52 by Editor in IEEE Security and Privacy
 
The author looks at the problems faced by those claiming to have computer security expertise and by those who use computer security experts, and ponder whether it's possible to determine if these experts are actually improving computer security
 
 
 
 
 
Expand article

Data & Application Security demand continues to rise

2007-12-11 12:38:00 by Ryan Shopp in practical risk management
 
...ponder Rich Mogull's perspectives over at www.securosis.com . Here are some recent gems Rich recently blogged about the upcoming trend around data and application security driving the security business growth in the next 3-5 years . During that post he articulated the "rise of data security" through a very concise recap on why/how we came to...
 
 
 
 
 
Expand article

Not a CISSP

The Article has images
2008-04-18 14:36:41 by Chris Eng in Zero in a bit
...ponder for a bit and then ask, with some confusion, why Id intentionally point out the fact that Im not a CISSP. Id give a brief answer and get back to talking about Veracode (we booth babes have responsibilities, you know So, why indeed? The long answer is that like many security certifications, its an ineffective measure of a security...
 
 
 
 
 
Expand article

Anton Security Tip of the Day #15: Fear and Loathing in Event 560 (and 562 and 567)

The Article has images
2008-05-08 13:37:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
...Ponder the 'Accesses' section of each event until your brain turns blue :-) or until you decide whether such access is authorized or not Overall, this is still very useful for file access monitoring, but the process is paaaaaainful BTW, I am tagging all the tips on my del.icio.us feed . Here is the link: All Security Tips of the Day ...
 
 
 
 
 
Expand article

Holiday Storm Part 3

2007-12-26 23:43:00 by Russ McRee in HolisticInfoSec.org
 
...ponder what else has changed. So 1) New hash: BE22F894AC662C905C37CEFDE66DE065 2) Better hiding skills, no visible running processes, nastiness all hidden from the API (can you say rootkit?). No more hanging out in the open, easily seen The Helios Rootkit Detector , now included in RAPIER , discovered darker voodoo than the last two versions...
 
 
 
 
 
Expand article

Blame for Vista?

2008-05-19 14:25:57 by Doug Woodall in The Spyware Biz Blog
 
...ponder Vista as a preventer of Malware yet, as Im still fighting the BSODs. Although since the SP update 9 days ago, I havent had one. Maybe its fixed clipped from www.liquidmatrix.org New Strategy, Blame The Users clipped from www.liquidmatrix.org Software giant Microsoft has claimed user complacency is to blame for malware infections,...
 
 
 
 
 
Expand article

Even More Logging Questions - Answered

2008-08-06 11:43:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...ponder the meaning of "is" here, but what is meant by "handle"? It is really not that hard to collect logs from a large number of diverse sources (as long as the logs can be delivered via syslog or exist as files and can be collected). Now, there will certainly be challenges when the volume of logs gets large, but if by "handle" you mean...