<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0"><channel><atom:link rel="hub" href="http://tumblr.superfeedr.com/" xmlns:atom="http://www.w3.org/2005/Atom"/><description>Just trying to make it through the morass of information security issues slamming the Net every day.  Helping others to do the same.</description><title>Mostly Security Snippets from Tom Olzak</title><generator>Tumblr (3.0; @chagong)</generator><link>http://chagong.tumblr.com/</link><item><title>Is Comcast Pulling Wool</title><description>&lt;a href="http://olzak.wordpress.com/2009/03/17/is-comcast-pulling-wool/"&gt;Is Comcast Pulling Wool&lt;/a&gt;: &lt;p&gt;Reports of data breaches aren’t uncommon. And explanations are typically slow in coming, but most large organizations fall on the proverbial sword and admit their security controls played a role in…&lt;/p&gt;</description><link>http://chagong.tumblr.com/post/87429533</link><guid>http://chagong.tumblr.com/post/87429533</guid><pubDate>Tue, 17 Mar 2009 20:48:04 -0400</pubDate></item><item><title>PCI DSS Compliance Made Easier, but Upside Down</title><description>&lt;a href="http://olzak.wordpress.com/2009/03/16/pci-dss-compliance-made-easier-but-upside-down/"&gt;PCI DSS Compliance Made Easier, but Upside Down&lt;/a&gt;: &lt;p&gt;Most companies required to jump on the PCI DSS wagon are SMBs. So implementing security controls to protect cardholder information is not an easy task. And the difficulties begin when business owners…&lt;/p&gt;</description><link>http://chagong.tumblr.com/post/87092355</link><guid>http://chagong.tumblr.com/post/87092355</guid><pubDate>Mon, 16 Mar 2009 19:42:37 -0400</pubDate></item><item><title>Maybe we should use the threat of space aliens next</title><description>&lt;a href="http://olzak.wordpress.com/2009/03/14/maybe-we-should-use-the-threat-of-space-aliens-next/"&gt;Maybe we should use the threat of space aliens next&lt;/a&gt;: &lt;p&gt;Now security researchers and vendors are using the threat of cyber-warfare to push vulnerability mitigation. Maybe we should try space aliens next.&lt;/p&gt;</description><link>http://chagong.tumblr.com/post/86405229</link><guid>http://chagong.tumblr.com/post/86405229</guid><pubDate>Sat, 14 Mar 2009 09:52:54 -0400</pubDate></item><item><title>Risk Mitigation Drives Breach Prevention Costs</title><description>&lt;a href="http://blogs.csoonline.com/Breach_Risk"&gt;Risk Mitigation Drives Breach Prevention Costs&lt;/a&gt;: &lt;p&gt;Remember the objective of breach risk mitigation is to increase the effort necessary to successfully breach a network, system, etc. beyond the value gained by a successful attack. Most…&lt;/p&gt;</description><link>http://chagong.tumblr.com/post/86194032</link><guid>http://chagong.tumblr.com/post/86194032</guid><pubDate>Fri, 13 Mar 2009 14:46:08 -0400</pubDate></item><item><title>New Centralized Storage for SMBs</title><description>&lt;a href="http://olzak.wordpress.com/2009/03/12/new-centralized-storage-for-smbs/"&gt;New Centralized Storage for SMBs&lt;/a&gt;: &lt;p&gt;Keeping all your sensitive information in a centralized location helps with security. However, SMBs with large storage needs (or home users with way too much audio-video gear) may find the new D-Link…&lt;/p&gt;</description><link>http://chagong.tumblr.com/post/85807703</link><guid>http://chagong.tumblr.com/post/85807703</guid><pubDate>Thu, 12 Mar 2009 08:43:16 -0400</pubDate></item><item><title>The DoS Still Does Not Get It</title><description>&lt;a href="http://olzak.wordpress.com/2009/03/11/the-dod-still-doesnt-get-it/"&gt;The DoS Still Does Not Get It&lt;/a&gt;: &lt;p&gt;The DoD not only doesn’t protect national defense secrets like they’re, well, national defense secrets. It simply doesn’t follow basic security practices.&lt;/p&gt;</description><link>http://chagong.tumblr.com/post/85546286</link><guid>http://chagong.tumblr.com/post/85546286</guid><pubDate>Wed, 11 Mar 2009 11:42:15 -0400</pubDate></item><item><title>Penetration tools continue to improve, how about your defenses?</title><description>&lt;a href="http://it.toolbox.com/blogs/adventuresinsecurity/penetration-tools-continue-to-improve-how-about-your-defenses-30423"&gt;Penetration tools continue to improve, how about your defenses?&lt;/a&gt;: &lt;p&gt;Developers of tools used to penetrate networks seem to have unlimited resources to draw upon as they continue to improve ways to crack through your network and device defenses. Your defense should…&lt;/p&gt;</description><link>http://chagong.tumblr.com/post/85035340</link><guid>http://chagong.tumblr.com/post/85035340</guid><pubDate>Mon, 09 Mar 2009 20:12:12 -0400</pubDate></item><item><title>"Juniper is set to launch software to allows security products from competing vendors to share and..."</title><description>“&lt;p&gt;Juniper is set to launch software to allows security products from competing vendors to share and analyse log information in order to determine the root cause of network problems and fix them.&lt;/p&gt;

&lt;p&gt;Called Adaptive Threat Management, the data-sharing software includes upgrades to its SSL VPN and Unified Access Control devices that enable them to publish log information to a UAC server that shares the data with other platforms.&lt;/p&gt;”&lt;br/&gt;&lt;br/&gt; - &lt;em&gt;&lt;i&gt;&lt;a target="_blank" href="http://www.techworld.com/security/news/index.cfm?RSS&amp;NewsID=112382"&gt;Juniper offers multi-vendor threat management&lt;/a&gt;&lt;/i&gt;, Tim Greene, Network World, 9 March 2009&lt;/em&gt;</description><link>http://chagong.tumblr.com/post/84918753</link><guid>http://chagong.tumblr.com/post/84918753</guid><pubDate>Mon, 09 Mar 2009 12:33:47 -0400</pubDate><category>juniper</category><category>threat management</category><category>adaptive threat management</category><category>unified access control</category><category>uac</category></item><item><title>Cyber profiling benefits and pitfalls</title><description>&lt;a href="http://blogs.csoonline.com/cyber_profiling"&gt;Cyber profiling benefits and pitfalls&lt;/a&gt;: &lt;p&gt;Cyber profiling provides deeper insights into a prospective candidate character. It can also send the wrong message.&lt;/p&gt;</description><link>http://chagong.tumblr.com/post/84729402</link><guid>http://chagong.tumblr.com/post/84729402</guid><pubDate>Sun, 08 Mar 2009 20:47:05 -0400</pubDate></item><item><title>Vet employees, vet employees, vet employees</title><description>&lt;a href="http://olzak.wordpress.com/2009/03/06/vet-employees-vet-employees-vet-employees/"&gt;Vet employees, vet employees, vet employees&lt;/a&gt;: &lt;p&gt;Placing new employees in positions of trust requires establishing how far new people can actually be trusted. This seems like common sense, but a recent incident demonstrates just how little some…&lt;/p&gt;</description><link>http://chagong.tumblr.com/post/84133817</link><guid>http://chagong.tumblr.com/post/84133817</guid><pubDate>Fri, 06 Mar 2009 12:43:03 -0500</pubDate></item><item><title>Windows Mobile Protection on a Smart Card</title><description>&lt;a href="http://olzak.wordpress.com/2009/03/06/windows-mobile-protection-on-a-smart-card/"&gt;Windows Mobile Protection on a Smart Card&lt;/a&gt;: &lt;p&gt;Smartcard protection on an SD card, easy and pain free.&lt;/p&gt;</description><link>http://chagong.tumblr.com/post/84118772</link><guid>http://chagong.tumblr.com/post/84118772</guid><pubDate>Fri, 06 Mar 2009 11:42:58 -0500</pubDate></item><item><title>"A senior Democratic lawmaker said on Thursday he would push to pass legislation to repeal a..."</title><description>“&lt;p&gt;A senior Democratic lawmaker said on Thursday he would push to pass legislation to repeal a three-year-old U.S. ban on Internet gambling that has hurt trade ties with European Union. &lt;/p&gt;

&lt;p&gt;“I’m going to be pushing it,” House of Representatives Financial Services Committee Chairman Barney Frank told reporters at a press conference to lay out his agenda for reforming U.S. financial regulation. &lt;/p&gt;

&lt;p&gt;Work on drafting the legislation should be completed this month, a House aide said. &lt;/p&gt;

&lt;p&gt;Congress attempted in 2006 to quash online gambling in the United States by barring businesses from knowingly accepting payments in connection with unlawful Internet gambling, including payments made through credit cards, electronic fund transfers and checks.&lt;/p&gt;”&lt;br/&gt;&lt;br/&gt; - &lt;em&gt;&lt;a href="http://www.internetnews.com/breakingnews/article.php/3809041" target="_blank"&gt;Online Gambling Ban May Get Nixed&lt;/a&gt;, Reuters&lt;/em&gt;</description><link>http://chagong.tumblr.com/post/84112255</link><guid>http://chagong.tumblr.com/post/84112255</guid><pubDate>Fri, 06 Mar 2009 11:16:23 -0500</pubDate></item><item><title>Cyber-terrorism: Private organizations have responsibilities, too</title><description>&lt;a href="http://olzak.wordpress.com/2009/03/05/cyber-terrorism-private-organizations-have-responsibilities-too/"&gt;Cyber-terrorism: Private organizations have responsibilities, too&lt;/a&gt;: &lt;p&gt;Reports of corporate and government database breaches aren’t new. Neither are reports of Chinese and Russian efforts to find ways of compromising the national infrastructure, and therefore the…&lt;/p&gt;</description><link>http://chagong.tumblr.com/post/83842222</link><guid>http://chagong.tumblr.com/post/83842222</guid><pubDate>Thu, 05 Mar 2009 13:33:57 -0500</pubDate></item><item><title>Firefox 3.1 beta will be available on March 10.</title><description>&lt;img src="http://24.media.tumblr.com/8lpaMjP19kp4ehroi8EVH0u4o1_500.jpg"/&gt;&lt;br/&gt;&lt;br/&gt;&lt;p&gt;&lt;a target="_blank" href="http://www.maximumpc.com/article/news/firefox_beta_3_will_be_available_march_10"&gt;Firefox 3.1 beta will be available on March 10&lt;/a&gt;.&lt;/p&gt;</description><link>http://chagong.tumblr.com/post/83791129</link><guid>http://chagong.tumblr.com/post/83791129</guid><pubDate>Thu, 05 Mar 2009 10:11:35 -0500</pubDate></item><item><title>AV software doesn't protect against bots... duh!</title><description>&lt;p&gt;I&amp;#8217;ve written several times about the need for extrusion detection systems to track bots on networks.  At home, personal frewalls configured to block unwanted outgoing traffic are usually sufficient.  And the large number of articles, blog posts, tweets, etc. about the global botnet problem should make any security manager anxious.  However, a security company claims &lt;a target="_blank" href="http://www.id-theftprotect.com/news.php?news_id=819"&gt;3 to 5 percent of company systems still infected by bots&lt;/a&gt;?   &lt;/p&gt;</description><link>http://chagong.tumblr.com/post/83513312</link><guid>http://chagong.tumblr.com/post/83513312</guid><pubDate>Wed, 04 Mar 2009 12:38:00 -0500</pubDate><category>bots</category><category>bot</category><category>botnet</category><category>extrusion</category><category>defense</category></item><item><title>"For the first time, scientists have successfully teleported information between two separate atoms..."</title><description>“&lt;p&gt;For the first time, scientists have successfully teleported information between two separate atoms in unconnected enclosures a meter apart – a significant milestone in the global quest for practical quantum information processing.&lt;/p&gt;

&lt;p&gt;Teleportation may be nature’s most mysterious form of transport: Quantum information, such as the spin of a particle or the polarization of a photon, is transferred from one place to another, but without traveling through any physical medium. It has previously been achieved between photons over very large distances, between photons and ensembles of atoms, and between two nearby atoms through the intermediary action of a third. None of those, however, provides a feasible means of holding and managing quantum information over long distances.&lt;/p&gt;”&lt;br/&gt;&lt;br/&gt; - &lt;em&gt;&lt;a target="_blank" href="http://jqi.umd.edu/news/teleportation.pdf"&gt;Long-distance Teleportation Between Atoms&lt;/a&gt;&lt;/em&gt;</description><link>http://chagong.tumblr.com/post/83456995</link><guid>http://chagong.tumblr.com/post/83456995</guid><pubDate>Wed, 04 Mar 2009 08:57:40 -0500</pubDate></item><item><title>Windows 7: Mobile Data Protection with Bitlocker ToGo</title><description>&lt;a href="http://blogs.techrepublic.com.com/security/?p=1008"&gt;Windows 7: Mobile Data Protection with Bitlocker ToGo&lt;/a&gt;: &lt;p&gt;Still looking for an easy, affordable solution for encrypting USB storage? Working on a limited budge while trying to figure out how to force encryption of mobile data? Your problems may be over if…&lt;/p&gt;</description><link>http://chagong.tumblr.com/post/83451395</link><guid>http://chagong.tumblr.com/post/83451395</guid><pubDate>Wed, 04 Mar 2009 08:30:39 -0500</pubDate></item><item><title>No this isn’t security, but it’s still very cool.</title><description>&lt;iframe width="400" height="323" src="http://www.youtube.com/embed/m2dSge_9U2g?wmode=transparent&amp;autohide=1&amp;egm=0&amp;hd=1&amp;iv_load_policy=3&amp;modestbranding=1&amp;rel=0&amp;showinfo=0&amp;showsearch=0" frameborder="0" allowfullscreen&gt;&lt;/iframe&gt;&lt;br/&gt;&lt;br/&gt;&lt;p&gt;No this isn’t security, but it’s still very cool.&lt;/p&gt;</description><link>http://chagong.tumblr.com/post/82892129</link><guid>http://chagong.tumblr.com/post/82892129</guid><pubDate>Mon, 02 Mar 2009 14:38:14 -0500</pubDate><category>jellyfish</category><category>energy</category><category>alternative energy</category></item><item><title>Vue peel and stick personal video network going into beta....</title><description>&lt;img src="http://25.media.tumblr.com/8lpaMjP19kl03scxVOTaimajo1_500.jpg"/&gt;&lt;br/&gt;&lt;br/&gt;&lt;p&gt;&lt;a href="http://www.vuezone.com/" target="_blank"&gt;Vue peel and stick personal video network&lt;/a&gt; going into beta. Inexpensive solution for home or small business security. &lt;/p&gt;</description><link>http://chagong.tumblr.com/post/82865468</link><guid>http://chagong.tumblr.com/post/82865468</guid><pubDate>Mon, 02 Mar 2009 13:00:00 -0500</pubDate></item><item><title>Forensics: Reassembling fragmented digital images</title><description>&lt;p&gt;A new, &lt;a href="http://www.nytimes.com/2009/03/01/business/01novel.html?_r=3&amp;amp;ref=technology" target="_blank"&gt;inexpensive product&lt;/a&gt; can piece together deleted or fragmented digital images.   &lt;/p&gt;</description><link>http://chagong.tumblr.com/post/82859013</link><guid>http://chagong.tumblr.com/post/82859013</guid><pubDate>Mon, 02 Mar 2009 12:40:14 -0500</pubDate><category>digital image</category><category>graphics</category><category>forensics</category><category>fragmented</category></item></channel></rss>
