Liquidmatrix Security DigestLiquidmatrix Security DigestYour Source For Network and Information Security News Articles
Do your REAL job?
2008-04-14 16:33:00 In an effort to keep El Jefe off guard, here’s the return of what was supposed to be a feature… back when I did the first one. It’s a Monday morning in my part of the universe, and I’d like it to be the kind of Monday morning where good things happen for you all too. In ... More About: Real
Security Briefing: April 14th
2008-04-14 15:03:00 Monday and its back to the grind…well, almost. Working on the book proposal this week. This will be a long process but, one that I feel I need to do. Thinking positive. And now, the news… Hackers open new front in payment card data thefts Government says employee emails are a matter of national security IT ... More About: News , Security , April
Vista?s UAC Security Was Designed To Annoy
2008-04-14 14:50:00 Here is a great article from Ars that sheds some light on the thought process that went into Vista ’s UAC from RSA 2008. Microsoft thought that death by a thousand pop ups. From Ars Technica: User Account Control is easily one of the most hated features of Windows Vista, according to readers. The seemingly endless stream of ... More About: News , Security
US War Robots in Iraq Turn On Soldiers
2008-04-14 14:37:00 You knew this had to happen at some point. From The Register: Ground-crawling US war robots armed with machine guns, deployed to fight in Iraq last year, reportedly turned on their fleshy masters almost at once. The rebellious machine warriors have been retired from combat pending upgrades. The revelations were made by Kevin Fahey, US Army program executive ... More About: News , Robots , Soldiers , Turn
Wiping the Hard Drive
2008-04-12 00:06:00 These days a large number of enterprise customers lease their laptops and desktops. A normal enough business practice. But, when that lease it up do they wipe the hard drives? The ever growing number of data breach stories would lead one to expect that it’s not as common as it should be. Joanna Jasper ... More About: News , Drive , Hard , Hard Drive
Don?t quit your day job?
2008-04-11 17:33:00 In this episode… the triumphant return! Previously on LSD… There are many copies… Sigh. So it’s been a while since I’ve posted. Something that El Jefe Lewis (over there with the smirk) takes up with me every.damn.time.we.talk. So I’m working to remedy that. This week, in reasons that you shouldn’t walk away from the steaming heap of nonsense that ... More About: Quit
Security Briefing: April 11th
2008-04-11 14:52:00 The week is drawing to a close. I mope quietly in my backyard as I ponder the RSA 2008 conference that I missed. From the emails I received it sounds like it was an interesting time. Not to mention the Olympic torch debacle. Ah, well. Have a great weekend everyone! And now, the news… Recipients of RSA(R) ... More About: News , Security , April
From RSA 2008: Insider Security Risks Exposed
2008-04-10 23:31:00 Is this horse dead yet? As long as humans are involved there will always be an “insider threat”. From Silicon: Employees are still one of the biggest threats to corporate IT security both through malicious and accidental actions. Vipin Samar, VP of database security at Oracle, said: “You see a whole range of people through which your security ... More About: News , Security , Threats , Insider , 2008
CNET: Echo Boom Hackers: Shame
2008-04-10 19:52:00 There is a growing trend in the “echo” generation. They’re knee deep in the social networking world without a care for consequences of hacking. It’s amazing how many times I see the MySpace denizens act as if they have some sort of anonymity. News flash folks, you don’t. From CNET: On Thursday morning, at this year’s ... More About: Crime , Hacker , Hackers , Boom , Shame
Reaching Acceptance? Extending Apologies?
2008-04-10 16:02:00 In the past… once or twice… I’ve scrapped with Joe Weiss over issues. Yesterday, Joe got up on a stage at RSA in SF and told people some truth. Wednesday, computer-security experts who recently re-examined the Bellingham incident called its victims the first verified human causalities of a control-system computer incident. They argue that government cybersecurity standards ... More About: Acceptance
10 Security Threats To Watch For
2008-04-10 16:01:00 People do love their “top 10″ lists. Security folks are no different. Here is a list of ten threats to keep an eye on. Of course this is by no means exhaustive. From Network World: Virtualization can help make more efficient use of hardware, but it also creates new security problems. In particular, it ... More About: Watch , Top 10 List , Threats
Security Briefing: April 10th
2008-04-10 13:53:00 OK, based on the emails I received yesterday (thx by the way), I’m sure. I’m going to take the plunge and start working on a book. Now, don’t expect anything soon. Based on Portswigger’s comment I can see at least a year from now. I have toyed with this idea since I was a young ... More About: News , Security , April
Joanna On RSA
2008-04-10 05:13:00 Joanna Rutkowska gave a talk at RSA today and found out the joys of San Francisco fire regulations. From Invisible Things: Today I was giving a speech at the RSA Conference in San Francisco. The RSA is a really big conference and also seems to me like a very well organized one ? e.g. they have ... More About: Conventions , Joanna
Database Administration Security Strategy
2008-04-10 05:03:00 From Computer Weekly: Given the vital importance of the information held within corporate and government databases it is surprising that the security of these databases is often of unknown provenance, at least as far as those charged with information security duties are concerned. I am not setting out to offend an entire section of the IT industry ... More About: Security , Strategy , Data Security , Database , Administration
RSA: Cyber Storm II
2008-04-10 04:54:00 Earlier today there was a town hall meeting that reviewed the recent Cyber Storm II excercise. This was a massive simulated computer attack. I was involved in the first Cyber Storm exercise and one of the funniest parts of that was that someone took it upon themselves to return fire. Amusing, albeit counter productive. From Information ... More About: Conventions
Raytheon Launches Cyber-Security Unit
2008-04-10 04:42:00 To throw more fuel on Myrcurial’s “cyber” fire I figured I would point folks to this article from the Arizona Star. I have to admit that I completely agree with him on the gratuitous use of the word “cyber” by talking heads and mainstream media. From azstarnet: Raytheon Co., which bought data-protection company Oakley Networks last year, ... More About: Security , Cyber , Unit
A Call to Arms?
2008-04-09 21:36:00 It’s time folks. It’s time for us to band together, united in a common cause with critical impacts on our lives. It’s time to stamp out forever the disingenuous use of the prefix “Cyber” by the douchetard squadron of aged wannabes. (Note, The almighty Goog comes up with over 157,000 instances of the prefix on *.gov) It has ... More About: Arms , Call
Veracode Gets The ?Fonz? Rating
2008-04-09 16:50:00 Now, Veracode is a company that I see as an excellent growth company. I’ve been a fan of theirs since I first met them at RSA 2007. The long and the short of it is that this is a company that does binary analysis of your in-house code. For a fee of course. I had ... More About: The Fonz
Security Briefing: April 9th
2008-04-09 14:55:00 Wednesday. Pondering writing a book. A substantial undertaking but, am I up for the task? Hmmm. And now, the news… RSA - Microsoft: Let’s talk about trust Security Sleuths Search for a Single Sign-On Solution Symantec Statistics and Malware’s Mushroom Cloud Three quarters of organisations think applications can be exploited by criminals RSA?s Coviello: Let?s cook up a thinking security defense ... More About: News , April
Enjoying The Sun?Oh Right, It?s Patch Tuesday
2008-04-09 00:00:00 Well, there’s death, taxes and patch Tuesday . Today has 5 critical on tap as well as 3 important patches. MS08-018: Vulnerability in Microsoft Project Could Allow Remote Code Execution (950183) MS08-021: Vulnerabilities in GDI Could Allow Remote Code Execution (948590) MS08-022: Vulnerability in VBScript and JScript Scripting Engines Could Allow Remote Code Execution (944338) MS08-023: Security Update of ActiveX ... More About: Patches , Patch
Japanese Firms Starting Ratings For IT Security
2008-04-08 17:53:00 Well, here is an interesting twist. I can’t say that I’m overly surprised as this type of ranking was inevitable. From the Associated Press: Eighteen Japanese firms said Tuesday they were creating the world’s first ratings agency looking at data security, which they said was a rising concern for companies. The new firm, called IS Rating, will ... More About: Security , Data Security , Information Security , Ratings
RSA Day Two Daily
2008-04-08 16:56:00 Today is the big day. The keynotes will begin momentarily. Among the list of keynotes are Art Coviello from EMC/RSA, John Thompson, CEO of Symantec and Michael Chertoff from DHS. Michael is on at 11:30 am. I have to admit I was really looking forward to being a part of the media scrum for that ... More About: Daily , Conventions
Security Briefing: April 8th
2008-04-08 16:01:00 Sorry for the late news posting this morning. I was tied up in a telecon. I love it when I can “sit in” on a meeting in my boxers with a coffee in hand. The joys of mobile computing. And now, the news… Young workers more likely to break corporate Web apps rules Newfoundland schools tighten security followed ... More About: News , Security , April
Virginia First To Require Internet Safety Lessons
2008-04-08 03:13:00 Very nice. It would appear that common sense is starting to catch on! The Commonwealth of Virginia (one of my my former stomping grounds) has come out as the first US state to mandate internet safety lessons in schools. While I find this to be a bang up idea I just hope that it doesn’t ... More About: Internet , Education , Safety , Child Safety
Thanks To Network World!
2008-04-07 22:18:00 I was checking out my stats for todays readers when I noticed an inordinate spike in traffic from the site Network World . Being the typical curious sort I cruised on over to see what was the hub bub. Well, damn. Jon Brodkin has a piece on “20 useful IT security Web sites” and Liquidmatrix is ...
Encryption Solutions Get Boost from Data Breaches
2008-04-07 19:46:00 I’ve had a rash of phone calls lately from vendors saying “did you hear?” and using that to leverage their product offering. I can’t blame them. I know they have to make a buck. Here is an article over on “Enterprise Security Today” that points to this boost in sales. Data breaches leave organizations vulnerable to ... More About: Encryption , Data Security , Crypto , Solutions
RSA Day One Orientation
2008-04-07 17:06:00 OK, so it’s day one. You’re in San Francisco attending RSA 2008 possibly for the first time. What do you need to do? Well, for starters you should take advantage of the first timers orientation. This might seem overly simplistic but, RSA 2008 is a big show. If you want to get you money’s worth ... More About: Conventions , Orientation
Security Briefing: April 7th
2008-04-07 14:40:00 OK, I’m back in the saddle again. The last several days have served me well for healing up. It’s still a bummer that I can’t be in San Fran for RSA 2008. Ah, well. Next year then. Gives me more time to work on preparing for Sector 2008 And now, the news… HSBC loses 370,000 customer details Wanted: ... More About: News , Security , April
Charlton Heston Has Left The Building
2008-04-06 16:44:00 From CNN: Charlton Heston , who won the 1959 best actor Oscar as the chariot-racing “Ben-Hur” and portrayed Moses, Michelangelo, El Cid and other figures in movie epics of the ’50s and ’60s, has died. He was 84. The actor died Saturday night at his home in Beverly Hills with his wife Lydia at his side, family spokesman ... More About: Building , Physical Security , Left
Google Sued Over Street View
More articles from this author:2008-04-06 16:29:00 Um, huh? A couple in Pennsylvania is suing Google to the tune of $25K+ for “pain and suffering” after their house showed up on Google Street View . The house was purchased for $163,000 according to “The Smoking Gun“. So, this begs the question. Just how ugly is their house that it would cause that much ... More About: Privacy , Sued 1, 2, 3, 4, 5, 6, 7 |



