Posted by Marc Handelman on 2013.04.29 at 08:30 in Mathematics, Physics, Sarcasm | Permalink
Interesting commentary by Adrian Lane, Analyst and CTO of Securosis, writing at DarkReading, and targeting the truncated utilization of DAM, the acronym for Database Activity Monitoring. In this case, the widespread lack of proper deployment and implementation of the query blocking mechanisms inherent to nearly all DAM products.
Coupled with the apparent lack of core competency in the DAM arena, clients of the software manufacturers flogging theses products are probably also deficient in at least three other fundamental aspects of DBMS security activity monitoring products: [1] Education / Training within the scope of the products, [2] Scrutiny of the Monitoring Log Output, and [3] probably the key to everything - the ability to read SQL statements.
Posted by Marc Handelman on 2013.04.29 at 08:00 in Common Sense, Data Security, Database Security, Databases, Information Security | Permalink
via the superbly sarcastic cartoon genius of Wiley Miller at Non Sequitur.
Posted by Marc Handelman on 2013.04.26 at 09:30 in Sarcasm, Tech Humor | Permalink
The National Institute of Standards and Technology's (NIST) National Cybersecurity Center of Excellence (NCCoE) within the mandated scope of the Center's efforts to address industry's needs, has announced its intention to sponsor the first Federally Funded Research and Development Center (FFRDC) dedicated to the Center's work. Outstanding.
Posted by Marc Handelman on 2013.04.26 at 09:00 in Government, Information Security, NCCoE, NIST | Permalink
Posted by Marc Handelman on 2013.04.26 at 08:30 in Sarcasm, Tech Humor | Permalink
Posted by Marc Handelman on 2013.04.26 at 08:00 in All Is Information, Information Security, SCADA Vulnerabilities, War | Permalink
Posted by Marc Handelman on 2013.04.25 at 09:00 in CyberWarfare, Electronic Warfare, Espionage, National Security | Permalink
via the brilliant comic genius of Wiley Miller at Non Sequitor.
Posted by Marc Handelman on 2013.04.25 at 08:30 in Editorial Cartoon, Sarcasm | Permalink
The lastest scuttlebutt points to the recent, so-called 'Aurora' electronic network attacks as counter-intelligence . Really? You be the judge.
Posted by Marc Handelman on 2013.04.25 at 08:00 in All Is Information, Electronic Warfare, Espionage, Information Security, War | Permalink
via 925Mac, and discovered by Subhransu Behera, comes news of a data security failure in the Mailbox Apple Inc. (NasdaqGS: AAPL) iOS application, recently purchased by Dropbox (also not known for their attention to detail in the security arena). The exploit revealed by Behera requires physical access to the device.
Posted by Marc Handelman on 2013.04.24 at 14:00 in All Is Information, Data Security, Information Security, Physical Security | Permalink
Reported by Bloomberg's Karin Matusek and edited by Anthony Aarons comes this well-wrought screed focusing on the recent targeted Bundesrepublik Deutschland fine of Google Inc. (NasdaqGS: GOOG), due to privacy violation in the European Union. The key issue here - other than the obvious egregious criminal privacy infractions - is the unbelievably low sum the search leviathan has been ordered to cough up. As it were...
Posted by Marc Handelman on 2013.04.24 at 09:00 in Advertising, All Is Information, Cybercrime, Database Security, Electronic Crime, Information Security, Law Enforcement, Privacy Violators, You Are Google Inventory | Permalink
via Trustwave Holdings, Inc.'s SpiderLabs blogger Ryan Barnett comes this indication [as well as a short primer on Portswigger's Burp Suite analysis, thereof] as to why the utilization of Zemanta [a related posts cross indexer] is fraught with dangers, both known and unknown.
Posted by Marc Handelman on 2013.04.24 at 09:00 in All Is Information, Cruft, Information Security | Permalink
Posted by Marc Handelman on 2013.04.24 at 08:30 in Sarcasm, Tech Humor, You Are Facebook Inventory | Permalink
'Tor was originally designed, implemented, and deployed as a third-generation onion routing project of the U.S. Naval Research Laboratory. It was originally developed with the US Navy in mind, for the primary purpose of protecting government communications. Today, it is used every day for a wide variety of purposes by normal people, the military, journalists, law enforcement officers, activists, and many others...' - via the Tor Project
Posted by Marc Handelman on 2013.04.24 at 08:00 in Blatant Stupidity, Government, Information Security | Permalink
Posted by Marc Handelman on 2013.04.23 at 09:30 in Sarcasm | Permalink
Evidently, the Federal Consumer Financial Protection Bureau [The Dodd-Frank Wall Street Reform and Consumer Protection Act of 2010 created the CFPB, additionally, President Obama appointed Richard Cordray as the first Director of the CFPB, during the month of January 2012] is requesting records from various (and in this case - sundry) financial organizations, banks, credit bureaus, et cetera) in a bid ot leverage data analytics for contemplated enforcement actions. Further, the financial organizations mentioned, are, how shall we say - pushing back...
Posted by Marc Handelman on 2013.04.23 at 09:00 in All Is Information, Anti-Patterns, Big Big Data, Economic Freedoms, Economics, Government, Information Security | Permalink
Posted by Marc Handelman on 2013.04.23 at 08:30 in Education, Science, Tech Humor | Permalink
Meanwhile, in the seemingly neverending and langorous tale of less than competent curatorial acumen, the Google Inc. (NasdaqGS: GOOG) Google Play store is serving up not-so-playful malware, evidently, to the tune of over 9 million downloads. Tout simplement incroyable...
Posted by Marc Handelman on 2013.04.23 at 08:00 in Advertising, Blatant Stupidity, Crapware, Cybercrime, Information Security, Malware, You Are Google Inventory | Permalink
News, via the inimitable Brian Krebs, at Krebs On Security, of a nationwide, and apparently large(ish) data security breach at a Starbucks Corporation (NasdaqGS: SBUX) subsidiary - monikered Teavana - Starbucks Corporation reportedly tendered $620 million in cash to purchase Teavana Holdings Inc in late 2012. Starbucks Corporation, is evidently declining to confirm a breach at the recently purchased subsidiary. Notwithstanding this misguided reticence [on part of the corporation] if Brian Krebs is reporting it, there is a strong foundation for the security incident to be true, and accurate.
Posted by Marc Handelman on 2013.04.22 at 16:30 in Information Security or the Lack Thereof... | Permalink
Posted by Marc Handelman on 2013.04.22 at 09:30 in Sarcasm, Tech Humor, You Are Facebook Inventory | Permalink
Posted by Marc Handelman on 2013.04.22 at 09:00 in Behaviors, Information Security | Permalink
Posted by Marc Handelman on 2013.04.22 at 08:30 in All Is Information, Sarcasm, Tech Humor | Permalink
Chris Wysopal's (Co-Founder, Chief Technology Officer / Chief Information Security Officer of Veracode) scathing analysis of data security failures within the United States Federal Governement, channelled via ZeroDay. Astonishing, and today's MustRead.
Posted by Marc Handelman on 2013.04.22 at 08:00 | Permalink
Posted by Marc Handelman on 2013.04.20 at 09:30 in Charity, Sarcasm | Permalink
Posted by Marc Handelman on 2013.04.20 at 09:00 in All Is Information, Information Security, Penetration Testing | Permalink
Posted by Marc Handelman on 2013.04.20 at 08:30 in Sarcasm, Tech Humor, You Are Google Inventory | Permalink
Image: oclHashcatplus
via AgileBits blogger Jeff, comes this well written explanatory post, detailing the recent news of Hashcat's capability to crack (as it were) 1Password Master Passwords, and the fallout, thereof. Our advice: Craft a well-built, complex master password when utilziing any password managment facility. That is All.
Posted by Marc Handelman on 2013.04.20 at 08:00 in Cruft, Cryptography, Information Security | Permalink
Posted by Marc Handelman on 2013.04.19 at 10:30 in Mathematics, Sarcasm, Tech Humor | Permalink
Posted by Marc Handelman on 2013.04.19 at 09:45 in Information Security Humor, Sarcasm | Permalink
Posted by Marc Handelman on 2013.04.19 at 09:30 in All Is Information, Arithmetic, Sarcasm, Tech Humor | Permalink
