Here are two information security podcasts published this past week:Using the Malicious Mindset in Security AssessmentsNew service packs for Windows Vista and XPAs always, for my past information security content be sure to check out www.principlelogic.com/resources.html.Enjoy!...
Continue Reading...In fact, the threats and vulnerabilities we're up against don't discriminate. Size doesn't matter. Here's a good read on this if you're trying to find some ammo to get management on your side and show that security affects all businesses - large and small.Here's another story about how credit card thieves are targeting small businesses.Oh, one more thing - one of the greatest bits of ammo is the Privacy Rights ...
Continue Reading...This is a very interesting story. Apparently attackers are automating SQL injections on vulnerable sites/apps with SQL Server backends. I've always been a big fan of automated SQL injection tools such as what HP's WebInspect has built-in but this brings a whole new meaning to automated SQL injection!Yet another reason you need to be testing your Web applications for security vulnerabilities consistently and without fail....
Continue Reading...I heard a news story this morning regarding the economy that reminded me of how we got to the point of misusing the word hacker. The essence of what this economic expert being interviewed said is that it doesn't matter if we're technically not in a recession, if the people believe we're in one, then that's all that matters. Well, we're not - but who cares, right?Just like with hacker. ...
Continue Reading...Here's a funny look at technologies to NOT focus on if you're going to boost your salary. I couldn't agree more. It makes me sad about NetWare skills (I'm a CNE and former Novell bigot). Those used to be "elite" skills that garnered you more $$$. Not really any more. Thanks for running NetWare into the ground Novell!...
Continue Reading...If you have to use PowerPoint to get your messages across (and who doesn't these days?), here's a great resource for you. It's David Paradi's web site and newsletter. He's got lots of free content plus you can order his ebooks, etc. I must say his expertise has really helped me out.Also, here's a good survey of David's on what people like/dislike in presentations that's interesting as well:http://www.thinkoutsidetheslide.com/survey2007.htmFYI, I'll be ...
Continue Reading...A couple of weeks ago, my home Internet service provider, SpeedFactory, went kaput. What used to be an awesome small ISP with good prices and tons of flexibility had let me down.I had no DSL, no email, nothing worked from home. Topping off the problem, no one was available to call...Their phone lines (even the fax) were inaccessible. Several days later, they amazingly re-surfaced and apologized for the outage. They ...
Continue Reading..."Compliance as we know it is something that should’ve been in place in businesses all along - without the government having to intervene in the free market." --Yours Truly....
Continue Reading...Here are my information security articles published this week:Vista SP1 vs. XP SP3 -- upgrade or business as usual?SQL Server 2008 security and compliance features reduce security risksAs always, for my past information security content be sure to check out www.principlelogic.com/resources.html.Enjoy!...
Continue Reading...So, you're locked out of one of your Windows systems?...maybe you forgot the password or someone changed it on you and then bailed? Well never fret, there is hope.Elcomsoft has recently released a new version of their Elcomsoft System Recovery tool. Now, if you ever get locked out of Windows NT4, Windows 2000, Windows XP, Windows XP, Windows Server 2003, Windows Server 2008 and Windows Vista (including SP1), you've got ...
Continue Reading...