Let a Hundred Flowers Blossom
I know many of us work in large, diverse organizations. The larger or more complex the organization, the more difficult it is to enforce uniform security countermeasures. The larger the population to be “secure,” the more likely exceptions will bloom. Any standard tends to devolve to the least common denominator. There are some exceptions, such as FDCC , but I do not know how…
Related Posts
The post One Exploit Should Not Ruin Your Day by Dino Dai Zovi made me think: Finally, the larger problem is that it only took one exploit to compromise these organizations. One exploit should never ruin you day. [sic] No, that is wrong. The larger problem is not that it “only took one exploit to compromise these organizations.” I...
I just got my hands on a new promo item our Marketing department came out with, which looks quite interesting: It’s Mikado, an old European stick game. Basically, the idea is to carefully pick up sticks without moving the pile, in order to gain points; player with the most points wins. OK, so the game is rather cute, but it is supposed to...
An imam with the city Department of Correction was busted trying to smuggle razors and a pair of scissors into the Tombs on Wednesday morning, sources said. Zul-Qarnain Shahid, 58, had his briefcase scanned at about 9 a.m. after reporting to work at the Manhattan Detention Complex, sources said. “He put his briefcase through the X-ray machine,”...
More than one quarter of data breaches so far this year involved consumer records that were jeopardized when organizations lost control over sensitive paper documents. Experts say those incidents came to light in large part due to a proliferation of state data breach notification laws, yet current federal proposals to preempt those state measures...
This appears not to be a joke: The state’s “Subversive Activities Registration Act,” passed last year and now officially on the books, states that “every member of a subversive organization, or an organization subject to foreign control, every foreign agent and every person who advocates, teaches, advises or practices the duty,...
One of our readers recently sent us a wallpaper he created, using our new style and logo: It was a nice gesture – thanks George J.! His work looks a bit like a re-imagined version of our old WorldMap wallpaper: We’ve had a few F-Secure wallpapers over the years, most of them pretty simple and unadorned – nothing fancy. Still,...
“Crisis brings opportunity to change.” Keep that quote in mind for a moment as you read this blog post. You can’t watch a cable news channel, particularly CNN, without hearing some reference to Twitter. Facebook has pretty much supplanted myspace as the dominant social networking platform, thanks in large part all of the applications,...
The latest Federal Computer Week magazine features an article titled Cyber warfare: Sound the alarm or move ahead in stride? I’d like to highlight a few excerpts. Military leaders and analysts say evolving cyber threats will require the Defense Department to work more closely with experts in industry … Indeed, the Pentagon must ultimately...
Some of our antivirus products had a brief false alarm today. The alert was from a common Javascript file called show_ads.js . The false alarm was for a trojan called Trojan.JS.Redirector.ar . The false alarm has been fixed in our update 2010-01-25_17 . This only affected our older products, such as the 2009 product range. F-Secure Internet Security...
Jihadist terror organizations have set economic terrorism as their new target, intending to harm and paralyze Western economies, the United Sates in particular, claims Prof. Gabriel Weimann, expert researcher of terrorism over the Internet at the University of Haifa. Prof. Weimann monitored websites hosted by terrorist and terrorism-supporting organizations...
Related Tweets from Twitter
|
oneraindrop (gunnar peterson) : RT @owasp_podcast: OWASP Podcast #61 - an interview with @taosecurity (Richard Bejtlich) from GE - is now live! http://www.owasp.org/index.p.. Updated : 2010-03-10T17:33:32Z | Reply | View Tweet |
|
0x58 (Xavier Santolaria) : RT @OWASP_podcast: Podcast #61 - iview with @taosecurity (Richard Bejtlich) from GE - is now live! http://bit.ly/bGk7Ph.. Updated : 2010-03-10T16:44:40Z | Reply | View Tweet |
|
pcapr (pcapr) : RT @tomwparker: Nice post by @taosecurity on pcapr. Great to see my old friends at @mudynamics getting more traction with researchers http:/.. Updated : 2010-03-10T16:35:00Z | Reply | View Tweet |
|
Iglobalcast (IGlobalcast.com) : TaoSecurity: Bejtlich OWASP Podcast Posted: Richard Bejtlich's blog on digital security and the practices of netwo... http://bit.ly/9Afo1d.. Updated : 2010-03-10T16:01:19Z | Reply | View Tweet |
|
cybfor (Cyber Informant) : Bejtlich OWASP Podcast Posted: [taosecurity.blogspot.com] My appearance on OWASP Podcast 61 is available. The .mp3 is... http://dlvr.it/98QB.. Updated : 2010-03-10T15:53:16Z | Reply | View Tweet |
Related News from Digg
-
OpenPacket.org 1.0 Is Live
[Security]
The mission of OpenPacket.org is to provide quality network traffic traces to researchers, analysts, and other members of the digital security community. One of the most difficult problems facing researchers, analysts, and others is understanding traffic carried by networks.
1 Diggs, 0 Comments
-
Chinese Hack France
[Security]
The news is coming in that France was the latest victim of the Chinese hackers, following the recent announcements of United States and United Kingdom being compromised.
7 Diggs, 0 Comments
-
Thanks for the Memories Sys Admin Magazine
[Linux/Unix]
Thanks for the Memories Sys Admin Magazine...
2 Diggs, 0 Comments
-
Black Hat USA 2007 Round-Up Part 1 and 2
[Security]
I'm waiting in the airport for my flight home after spending 6 days in Las Vegas at Black Hat USA 2007. I last attended in 2003. Put simply I was blown away by the quality of the majority of the talks I saw. I'll summarize the talks and my response.
11 Diggs, 1 Comments
-
US Air Force now fights in air, space, and cyberspace.
[Security]
The Air Force believes it must be able to control cyberspace, when need be, as it at times controls the air. The goal is to make cyberspace capabilities fully available to commanders. --Via TaoSecurity.
5 Diggs, 0 Comments