SEARCH RESULTS
 
Showing 1-10 of 128 records
 
Expand article

CISA and CISSP Preparation

The Article has images
2008-07-31 13:14:07 by Erik T. Heidt in Art of Information Security
...cover a very broad spectrum of subjects. It is my personal belief that the experience requirements exist as an aid to whittle test takers down to candidates who have the professional experiences required to be successful, and to discourage people from taking the exams before they are ready. If you truly meet the background requirements, then...
 
 
 
 
 
Expand article

7 Seminal Security Books Every Security Wannabe Should Read

The Article has images
2008-03-17 17:49:28 by Craig Balding in Security Wannabe
...cover!). You will learn techniques that shave hours off exploit development time. A great introduction to blowing (precise) holes in software. The Art of Software Security Assessment: Identifying and Preventing Software Vulnerabilities The holy trinity of Software Vulnerability Researchers deliver a mammoth treatise on why my eyes would bleed...
 
 
 
 
 
Expand article

The Austin Project

2008-01-21 22:45:39 by RSnake in ha.ckers.org web application security lab
 
...cover make perfect sense, and there is very little confusion. For the non-techies the technical posts are either misread or left unread. Either way, thats not good for the sake of learning A huge chunk of why I started this site was for my own testing. I wanted to learn on a site that I controlled completely. That works great if youre a guy...
 
 
 
 
 
Expand article

The First Step on the Road to More Secure Software is admitting you have a Problem

2008-02-21 14:26:00 by sdl in The Security Development Lifecycle
 
...Cover up the Mac OS X and Linux stats for a moment so you can only see the Windows XP SP2 and Windows Vista bars. Windows Vista has had fewer security vulnerabilities than Windows XP SP2. Conventional wisdom (which is often wrong, especially when it becomes urban legend) tends to suggest that the more lines of code you have the more bugs you...
 
 
 
 
 
Expand article

Great Service from Network World

2008-03-28 03:36:23 by JJ in Security Uncorked
 
...cover is sporting the 10Gig Shootout , which highlights the HP ProCurve 3500 stackables. Although, I have to note, on the print cover, the photos arent next to the vendor descriptions. Just in case you were wondering, the ProCurve switch came in a very strong second, .03 of a point off I believe, and about half the price (and lifetime...
 
 
 
 
 
Expand article

Software Security Metrics and Commentary on "Metrics Framework" Paper

2007-09-17 20:41:00 by Security Retentive in Security Retentive
 
...cover is a pretty good metric for this. Don't forget that web applications can have inputs other than html forms, etc. Make sure that any/all user input (cookies, http headers, etc.) are covered Broken Access Control Unfortunately this one is a tricky metric to get our hands around. Ideally we'd like to be able to say that our data model has...
 
 
 
 
 
Expand article

FUD About Ruby on Rails?

2007-08-31 08:45:00 by Security Retentive in Security Retentive
 
...cover Ruby I'll address both of these I have yet to come across a single Java application that actually uses Java's security manager to specify security controls, access rights, etc. While there are certainly the hooks to do so, and some tools like Netegrity, Sun Access Mgr, etc. will allow you to override Java's native security manager...
 
 
 
 
 
Expand article

Seven Years of Wi-Fi Networking News

The Article has images
2008-04-04 15:10:45 by Glennf in Wi-Fi Networking News
...cover article in Circuits , the then-separate tech section of The New York Times. The first post is still live, as are all the nearly 4,800 others I had help: Nancy Gohring wrote part-time for WNN for a couple years when we had a bit more traffic; she took a full-time job for and still works for IDG News Service, which I am now slightly...
 
 
 
 
 
Expand article

Quest homes in on Unix password management

2008-04-28 00:00:00 by HASH0x8b58eb0 in Network World on Security
 
Overall, QPM requires moderate Unix administrative skills to both install and use. It doesn't, of course, cover Windows, but does cover Solaris and HP-UX (not tested). It's very highly configurable, and puts reasonably strong barriers in place to prevent undesired privileged access