Sunday, March 21, 2010

Bookmark and Share

Archive for the ‘Resources’ Category

Cool Infosec Resource

Throughout the course of my travels, I came across an interesting resource: the Infosecpedia. It is, as the name implies, an information security wiki. Anyway, it’s pretty darn cool – cool enough that I’m thinking about contributing. Maybe one article a week or so. Not that I have a ton of free time, but this seems to me like it could be an awesome resource.

Bookmark and Share

LSO – “Learn Security Online”?

I stumbled across the LSO or “Learn Security Online site the other day. I happened to be reading the security newswire (sometimes I do this if I feel like I’m too alert early in the day,) and their press release just leapt out at me because it was so different from the other cruft that you see on the wire. Granted, I did think that LSO CEO arguing with Gene Spafford in his own press release was a bit strange, but I just thought “huh” and plowed through:

When asked what he thought of the comment made by Gene Spafford, professor of computer sciences at Purdue University. “Criminal justice programs don’t have students steal cars or commit rape to understand what motivates criminals or how to stop them.” Joe replied,

Bookmark and Share

HoneyMonkeys….

MS HoneyMonkeys. Cool idea, good execution, valuable results. Maybe I’m wrong on this one, but it seems to me that Microsoft is the only vendor with a plan for catching zero-day vulnerabilities; not to mention the fact that it’s actually paying off.

So… Oracle, Sun, Netscape… What was that mantra again about how MSFT was the bane of information security? I’m not biased, just keeping my eyes open.

Bookmark and Share

Televised Hijinx

Something tells me that if AT&T really is planning to broadcast an information security news channel, that said channel will be less about streaming security news and more about keeping various hijinkery to a minimum. I mean, really – think about it; if you wanted to, could you think up a bigger target for misguided jouvinile hacker shenanegans than 24hour streaming infosec from AT&T?

Bookmark and Share

“Know Your Enemy”

The Honeynet Project, http://www.honeynet.org/ has released a short but informative, and moderately entertaining to boot, report on credit card fraudsters and how they operate. The report includes snippets of IRC chats between experienced and newbie fraudsters. For anyone that wants to know how the fraudsters do it, it’s a terrific read. The report can be downloaded from the Honeynet site.

Bookmark and Share

Filtering Dos and Don’ts

Filtering routers don’t get a lot of attention these days. But they’re still a great first line of defense with the right ACLs (access control list) configured. This recent NWFusion article is a good primer for anyone not aware of what filters on routers can do and a great reminder to anyone who hasn’t checked their router ACLs lately.

Bookmark and Share
“Comprehensive, detailed, and trustworthy guidance in the information security market.”
Blog Cloud

The Law: Fear It Administrative Cruft (16)
Analysts (31)
Apple (25)
AppSec (12)
Assessments (2)
Auditors (2)
Biometrics (4)
Blogs (13)
Breaches (21)
Buzzwords (2)
By Grabthar's Hammer!! (1)
Certifications (1)
Change Management (1)
Cheezburger Network (1)
Chupacabra (1)
Cloud Computing Security (4)
Collaborative Strategy Guild (2)
Compliance (4)
Copyright (9)
Credit Cards (3)
Crypto (11)
CXO Summit 2010 (1)
Cyberterrorism (2)
Data Protection (2)
DHS (25)
eBay (1)
Emergence (1)
End-to-End Encryption (2)
England (1)
Financial Fraud (1)
FISAP (1)
Forensics (5)
FTC Red Flad Rules (1)
FUD (12)
gnisreveR (2)
Google (2)
Holidays! (3)
Humor (16)
Identity Theft (4)
James Bond Shiz (1)
Legal Shiz (13)
Linux (3)
Malware (35)
Marketing and PR (9)
Messaging Security (1)
Microsoft (26)
Monoculture (3)
Mouth-Frothing (2)
Musings (17)
Open Source (3)
Oracle (21)
Outsourcing (4)
Paris Hilton (1)
Passwords (1)
PCI (4)
Phish-Eye (8)
Phones (5)
Planes (1)
Privacy (1)
Programming (1)
QDSP Blues (15)
Research (30)
Resources (6)
Rhesus Monkeys (2)
Risk Management (18)
RSA 2009 (1)
RSA 2010 (1)
SAML (1)
SAN (1)
SC Mag Blues (1)
SCADA (1)
Security Curve (8)
SecurityCurve Speaking (2)
SIEM and Log Management (5)
Social Networking (1)
SOX (1)
Speaking (2)
Spinach (1)
Spy Stuff (1)
Stealing Stuff (8)
Storage (1)
Symantec (7)
Tarot (1)
Teleological suspension of the ethical (3)
The Great Borack (1)
The Law: Fear It (10)
The Old Man of the Mountain (1)
The Regs (5)
Tokenization (1)
Useless Shizz (13)
Vendors (37)
Virtual Worlds (2)
Voting (2)
Vulnerabilities (40)
Walt Disney (2)
Wi-Fi (16)

WP Cumulus Flash tag cloud by Roy Tanck and Luke Morton requires Flash Player 9 or better.

Archives