Saturday, February 28, 2009

Video Cast: Security Strategies During a Recession

Security 7: Security Strategies During a Recession
sponsored by Lumension
ABSTRACT: The reduction of security budgets in today's tough economic climate means that IT managers must plan wisely and work to prioritize projects more effectively and efficiently.

Watch this expert videocast and learn more about:




  • How to work effectively with business and risk managers to create processes that reduce risks and costs

  • The pitfalls in downsizing security too quickly to reduce costs

  • Tips for leveraging your current security strategies to reduce the burden on your IT budget



SecuritySearch Article

Wednesday, February 25, 2009

Site Maintenance

Sorry this blog went down for a short time. We have moved to a new domain: http://www.freenetworksecurity.info/, but the hosting is still the same. We use Afraid.org for DNS hosting now, but forward to Google's Blogger.

Thursday, February 19, 2009

Adobe [Reader] 0-day Exploit Proven

Shadowserver posted regarding the 0-day exploit and their results including antivirus responses and how to remove the risk from your systems.

Basically:


Disabling JavaScript is easy. This is how it can be done in Acrobat Reader:
Click: Edit -> Preferences -> JavaScript and uncheck Enable Acrobat JavaScript

Tuesday, February 10, 2009

List of Security Conferences

Education may be your most effective security measure.

ISC^2's Blog just listed a database that tries to include all security conferences.

Tuesday, February 3, 2009

Contest Entry for Doodle


I put one of my doodles into a contest, alas, I did not win. The odds were good: 41 submissions and 3 won.

ARIN Wants to Fellowship

ARIN, the American Registry for Internet Numbers, who has the responsibility for allocating IP addresses to the U.S., announces a Fellowship Program with the goal "to broaden educational outreach and bring new ideas into the public policy discussions."

Membership will be limited and you must apply. A few people from each sector will be chosen and enjoy the trip on them. A list of benefits:

* Free meeting registration
* Round-trip economy class airfare to the meeting, booked directly by ARIN
* Hotel accommodations at the venue hotel, booked directly by ARIN
* A small stipend to cover meals and incidental travel expenses.

Monday, February 2, 2009

How About A Little Salt In Your Irony?

Today I received a letter destined for the previous owner of my house. It is not my fault he never forwarded his mail. The letter is from BNY Mellon, apparently his investment company, stating that his information may have been compromised because of the loss of a tape. Understandably, "At the time of the incidents, we said there were no indications that the data had been accessed or misused in any way — and that remains the case." They state that they were notified by their tape backup vendor February 2008 - a year ago? The letter is dated August 27, 2008, but I received it today February 2, 2009. The previous owner of my house now has 90 days to request free consumer credit watch service. sigh

Good reason to always encrypt your backups and store the key in a separate location or locations.