SEARCH RESULTS
 
Showing 1-10 of 310 records
 
Expand article

MSSP and NAC - true love or lust?

2008-05-22 10:51:56 by HASH0x8b2d488 in StillSecure, After All These Years
 
...True Love For the most part I agree with Grant that NAC is a natural for the managed services space. However, I think for the MSSP (managed security services provider) market specifically it may be beyond their current offering levels. Most MSSP offerings today are focused at the perimeter. They have grown from managed firewall to managed...
 
 
 
 
 
Expand article

How safe is "safe"?

2008-09-07 03:56:00 by John Sexton in The Bullet Proof Blog
 
...true, then she would have had an idea that the person behind it was capable of such an act One wonders why people who are in the public eye sometimes do not consider their personal safety. No doubt, denial has much to do with it. Some probably refuse to believe that they are that "important" to require personal protection, while others have...
 
 
 
 
 
Expand article

Review of My 2007 Security Predictions: Too Wimpy

2007-12-23 15:46:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...true ( here , here , here ), but not to the extent I suspected. Some of the walking dead are still, well, walking. And no less dead :-( In 2008 PIV. Risk management: a confusion about what is "risk management" will not subside this year. Business risk? Information risk? Risk as threat x vulnerability x asset? Risk as probability of loss?...
 
 
 
 
 
Expand article

Better exception reporting in ASP.NET part 2

2008-08-04 14:11:14 by keith-brown in Security Briefs
 
...true ); from = GetAndRemoveStringAttribute(config, "from" , true ); subjectPrefix = GetAndRemoveStringAttribute(config, "subjectPrefix" , false ); } public override void ProcessEvent(WebBaseEvent raisedEvent) { SendMail(raisedEvent); } private void SendMail(WebBaseEvent raisedEvent) { string subject = ComputeEmailSubject(raisedEvent); string...
 
 
 
 
 
Expand article

My 2008 Security Predictions!

2008-01-09 15:42:00 by Dr Anton Chuvakin in Anton Chuvakin Blog -
 
...true for those browser-hacking folks who "need" to earn some cash off phishing and other data theft. Thus, "0day use" will no longer constitute news Hacking, data theft, etc Loss of trust towards legitimate Internet sites = yes . This is manifested by things like this point by the WS guys - more 0wned than malicious sites are used to spread...
 
 
 
 
 
Expand article

Third Parties Controlling Information

2008-02-27 05:46:46 by schneier in Schneier on Security
 
...true today; I don't think I could write without so much information so easily accessible. But it's a pretty damned unreliable hard drive The internet is my hard drive, but only if my needs are immediate and my requirements can be satisfied inexactly. It was easy for me to search for information about the MySpace photo hack. And it will be...
 
 
 
 
 
Expand article

The Ethics of Vulnerability Research

2008-05-14 11:29:45 by schneier in Schneier on Security
 
...true in the 1960s when buffer overflows were first exploited to attack computers. It was true in 1988 when the Morris worm exploited a Unix vulnerability to attack computers on the Internet, and it's still how most modern malware works Vulnerabilities are software mistakes--mistakes in specification and design, but mostly mistakes in...
 
 
 
 
 
Expand article

Iowa DNR loses personal information on 7,000

The Article has images
2007-12-19 14:22:00 by Evan Francen in The Breach Blog
...true? Ugh, outdated regulation and bureaucracy He said it is unlikely that people could access the records even if they had the flash drive. That's because the file was a backup copy that would have to be restored, meaning the user would need the same program used to create the file - a program that isn't on many home or office computers....
 
 
 
 
 
Expand article

Oak Ridge National Laboratory visitor information exposed

The Article has images
2007-12-11 13:45:21 by Evan Francen in The Breach Blog
...true, then it is unlikely that a full "reconstructing" will ever be complete every security system at ORNL was in place and in compliance Comfyllama] Compliant DOES NOT MEAN Secure! Although we all need to be compliant, this doesn't mean that efforts should stop at that. Do you want to trust the security of your information to a Senator or...
 
 
 
 
 
Expand article

Prediction for 2008: Service providers avoid straightforward DTV answers