SEARCH RESULTS
 
Showing 1-10 of 367 records
 
Expand article

If you can't tell a booth babe from a real girl, you got problems!

The Article has images
2008-04-10 23:10:00 by HASH0x8471d50 in StillSecure, After All These Years
...pretty face". All of our employees working the StillSecure booth wore these t-shirts (guys and girls alike). It is a direct jab at booth babes, that StillSecure doesn't do booth babes and pretty faces. Is the fact that Sonya is pretty mean she is sentenced to be nothing but a booth babe? I suggest you take a good look in the mirror and ask...
 
 
 
 
 
Expand article

Buy Diggs and Votes on StumbleUpon

2008-01-04 00:32:12 by RSnake in ha.ckers.org web application security lab
 
...Pretty interesting business model, and at worst its against the ToS of the various companies - its probably not illegal in any way. Blackhat SEM at its finest. Its really not much different than buying paid links on websites if you think about it Some of the testimonials on the Subvert and Profit blog are pretty telling, such as, the...
 
 
 
 
 
Expand article

WPF Layout Tips

The Article has images
2007-12-20 08:38:00 by Keith Brown in Security Briefs
...Pretty simple, you'd think When the result of my efforts looked like stretched silly putty, I figured that I must have taken the wrong approach, so I hooked up with the author of our WPF short course , Ian Griffiths . Ian reminded me about constraints in layout, and I was able to fix my problem pretty quickly Unless you use absolute...
 
 
 
 
 
Expand article

Blogging for the sake of blogging

2008-03-23 01:09:33 by HASH0x8b4990c in StillSecure, After All These Years
 
...pretty consistent for a long time. I am sorry if that ruffles his feathers, but I do blog for the sake of blogging and say what I think. One thing though, if I say something, I always have the courage to say I said it and put my name to it. Whether to your face or on this blog, I am pretty straight forward and don't hide behind anything Now,...
 
 
 
 
 
Expand article

What is 802.1X? Here's a Technology Primer for You

2008-04-02 03:10:42 by JJ in Security Uncorked
 
...pretty confidently eliminate any chances of gaining rogue devices Note that, in reality, 802.1X is not something you wake up one day and willie-nillie enable on every port. Youll want to start with edge ports in public areas, such as conference rooms, then roll out the rest in phases In the wireless world, 802.1X is the chosen authentication...
 
 
 
 
 
Expand article

The Checklist

2008-02-07 20:14:00 by Security Retentive in Security Retentive
 
...pretty clearly to tell whether his process changes were having a positive or negative effect. He had lots of public data to draw from, and the incidence rate at any given hospital is large enough that we can start to make valid statistical judgments about the impact of our changes Contrast this with software and the differences in both area,...
 
 
 
 
 
Expand article

Software Security Metrics and Commentary on "Metrics Framework" Paper

2007-09-17 20:41:00 by Security Retentive in Security Retentive
 
...pretty good metric for this. Don't forget that web applications can have inputs other than html forms, etc. Make sure that any/all user input (cookies, http headers, etc.) are covered Broken Access Control Unfortunately this one is a tricky metric to get our hands around. Ideally we'd like to be able to say that our data model has proper...
 
 
 
 
 
Expand article

In Passing on DLP

2008-05-16 19:08:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...pretty darn useful: after all, overall, employee mistakes still cause more damage than hackers However, whenever I heard about DLP, I always felt some deeper longing for more - maybe for a technology that CAN actually stop some, clearly defined classes of malicious data theft, perpetrated by non-idiots What such technology might be? Well,...
 
 
 
 
 
Expand article

Notes from IEEE Web 2.0 Security and Privacy Workshop (W2SP2008)

2008-05-27 22:45:00 by Security Retentive in Security Retentive
 
...pretty successful on goal #1, not 100% successful on goal #2 This post is mostly brain dump of notes about the talks followed by a few things of architectural interest that I think were discussed enough at the workshop. A quick preview - the first half of the conference was spent talking about general security holes in Web-1.0 that we still...