SEARCH RESULTS
 
Showing 1-10 of 38 records
 
Expand article

Data Breaches Targeting Presentation and App Layers

2008-06-13 11:53:58 by Editor in IT Security - The IT Security Industry's Web Resource
 
...layers. Breaches have been moving up the OSI stack in recent years
 
 
 
 
 
Expand article

The Order of Diminishing Returns

The Article has images
2008-06-17 21:41:00 by RaviC in Musings on Information Security
...layers of Firewall to prevent intruders. The security manager claimed to me that it is there to really protect the information assets, but sooner I realized these firewalls were not configured right and they were a set of a fireholes than a set of firewalls. Moreover, the maintenance costs in this type of complex security framework can be...
 
 
 
 
 
Expand article

HSBC loses a server in branch renovation

The Article has images
2008-05-14 16:16:19 by Evan Francen in The Breach Blog
...layers of security" and the risk of data breaches and fraud is "deemed to be low Evan] What kind of "multiple layers of security"? This is one of those statements that is misused and overused. Without details, who knows what they are talking about the server contained no PIN codes or online banking login credentials The bank said it has...
 
 
 
 
 
Expand article

Assets Good Until Reached For

2008-09-15 09:41:43 by Gunnar Peterson in 1 Raindrop
 
...layers and layer of abstraction on top of it. It also means that we help to design, build, deploy, and operate systems with margins of safety. Understanding the failure modes and accounting for this in design. Developers (because they are supposed to) and architects (because they haven't been properly trained) focus on functional...
 
 
 
 
 
Expand article

Article: Analytics Brief: Securing The New Data Center

The Article has images
2008-01-07 05:28:32 by Editor in Security Links
...layers report that building a secure hypervisor is a top priority. VMwares CTO, Mendel Rosenblum, goes so far as to boast that no security holes will show up in VMwares ESX product because of design flawsof course, that leaves open the possibility of implementation errors. Unfortunately, the enterprise is left with little other than vendor...
 
 
 
 
 
Expand article

Protect your data: everything else is just plumbing

The Article has images
2007-07-02 20:46:32 by Steve Riley in Steve Riley on Security
...layers that are crucial. If you apply this model, the network can return to doing its only true job: moving bits around as fast as possible Traveling to the new world So how do you get from there to here? One word: cool technology (OK, two words). Full drive encryption For some time, Ive been advocating that using host-based firewalls isnt...
 
 
 
 
 
Expand article

Davidson Companies illegal network intrusion exposes clients

The Article has images
2008-02-01 14:51:54 by Evan Francen in The Breach Blog
...layers of defense such as firewalls, hardened servers, IDS/IPS, etc. (supposing they exist), but I can tell you that if this was the case, this is rare. Why go through all the work, when there are more effective means to access the same information A majority of security breaches are the result of simple mistakes, lack of knowledge,...
 
 
 
 
 
Expand article

Links for 2008-02-25 [del.icio.us]

2008-02-26 00:00:00 by Editor in Anton Chuvakin Blog -
 
...layers". Truly secure application is a far fetched statement. 1. What is the application made of? - Complexity. 2. How was the Log Management Explained; Aberdeen Featured Report; Web Malicious Code; SecureFacts: Log Management and Log Retention - Research - Managed, Monitored, On-Demand Security Services Provider Log Management consists of...
 
 
 
 
 
Expand article

Application Due Care

2008-02-18 08:55:12 by RaviC in Musings on Information Security
 
...layers". Truly secure application is a far fetched statement 1. What is the application made of? - Complexity 2. How was the application built? - Methodology 3. Where does the application run? - Environment 1. Complexity - Applications are developed using one or more of open source software, third party libraries, re-used libraries (from the...
 
 
 
 
 
Expand article

Chip & PIN terminals vulnerable to simple attacks

The Article has images
2008-02-26 20:33:32 by Saar Drimer in Light Blue Touchpaper
...layers of security will detect fraud. There is no evidence to support these claims. APACS state that the PEDs we examined will not be de-certified or removed, and the same for the labs who certified them and would not even tell us who they are The threat is very real: tampered PEDs have already been used for fraud. See our press release and...