• 17 Jul 2009

    SSNs a thing of the past?

    You may have already heard about this (I just got around to reading it). It's about how researchers at Carnegie Mellon have reverse engineered the Social Security Number assignment scheme. With just the birth date and state of birth SSNs can be cracked.Yet another reason to limit what you put on Facebook and other social sites...and a good reason to freeze your credit.Perhaps each of us can have a SSN ...

    Continue Reading...
  • 20 Jun 2009

    Time to teach kids about personal responsibility, and prison?

    Here's some insight into what children are doing online these days. Great example of the lack of parenting, discipline, personal responsibility, and ability to think long-term we have going in our society.On a side note, perhaps the "Psychologists have long known that when an attacker does not see their victim, the normal inhibitions that prevent us from doing wrong become much weaker" bit explains why we see so much road ...

    Continue Reading...
  • 12 May 2009

    Do two wrongs make a right?

    I came across this bit recently on whether or not it's considered illegal hacking if security vendors and researchers become Internet crime fighters.Maybe it's just me but I think this is risky behavior. Want to hack something? Then setup your own systems to hack...or find a willing participant or paying client, get their permission in writing, and do it the right way....

    Continue Reading...
  • 11 May 2009

    Insight into the future of spying?

    Have you heard of GhostNet? It's a computer spying ring traced to China. I read about it in my local paper a few weeks ago and it's pretty intriguing stuff. Imagine what the computing world is going to look like 15-20 years from now. Are the superpowers going to be holding each other hostage electronically? Amazing stuff....

    Continue Reading...
  • 02 Dec 2008

    You don’t have to run faster than the bear

    I like the message in this post by my colleague, the one - the only Pete Lindstrom. When securing your network, apps, laptops, whatever, you don't have to have the best security - you just need to have better security than the other folks around you. It's like having a home alarm sign in your yard and while your neighbors don't. Which home is the average criminal going to go ...

    Continue Reading...
  • 12 Nov 2008

    New way to crack WPA on wireless networks

    Everything in security is just a matter of time, right? Well, a couple of researchers - one of which is the author of the Aircrack-ng tool that I've covered a lot over the years - have found a new way to crack the WPA TKIP key in a just a few minutes without using a dictionary attack (previously the only way to crack it). Reaffirms the arms race we're mired ...

    Continue Reading...
  • 05 Nov 2008

    Election-related security stories

    Although I disagree with Becky's push to vote, vote, vote! (too many uninformed and non-tax paying citizens already vote and shouldn't be able to), here's a good post about some recent election/voting stories involving IT and security....

    Continue Reading...
  • 03 Nov 2008

    Think all the hype over MS08-067 is just that…?

    There's been a TON of talk about the latest vulnerability affecting Windows. Message boards have been lighting up with talk about it, vendors are offering webcasts, it's the talk of the security town. In fact, it's so bad that Microsoft is releasing an "out-of-band" patch to fix the problem.So, is it worth the trouble to patch - especially on seemingly critical servers that you can't afford a patch to take ...

    Continue Reading...
  • 01 Aug 2008

    My security content from this week

    Here's a screencast I just recorded for TechTarget that you may be interested in:Hacking Windows VistaEnjoy!As always, check out www.principlelogic.com/resources.html for all of my past articles, webcasts, podcasts, and more....

    Continue Reading...
  • 16 Jul 2008

    Do your users do online banking at work?

    Here's a good reason to not do online banking at work or an untrusted computer. When there's a will there's a way...this is why we'll always have work to do in this field....

    Continue Reading...