Jan
23

Twitter Weekly Updates for 2012-01-23

  • syndicate re relased for modern PC's – I must have my copy lurking somewhere http://t.co/QoBPuE6w #gaming #
  • transferring a domain should *not* be this hard… quite why I need a "cyber travel number" just to transfer a domain I have no idea #
  • there are some DNS registrars that seem to make it deliberately difficult to transfer a domain away from them… #
  • been listening to the LoTR in the car – I have come to the conclusion that – Bilbo was a thief the ring legally belonged to gollum #
  • given the #password complexity issues in many online auth schemes, is it time for a standard for password complexity ? #
  • ref PW complexity , VISA has one standard, my bank has another, my goverment has another… it is time for a standard – agree ? #
  • if you want to perform APT against infosec people, enter a tenuous product for a sec award, infect entry with malware.Perfect targeting :) #
  • Bring your own device – An Infosec issue ? http://t.co/VxKshAf9 #in #
  • if you want to use wikipedia today, noscript is your friend. Deny wikipedia script running perms etc voila blackout gone #
  • by the way wikipedia, a real blackout means the content is off for 24hrs not that there is a script that overlays a black screen #
  • what ever your views on #PCI this is one to watch http://t.co/h0VL6jO7 will be interesting to see where it goes #
  • in a recent discussion – prezzi is *not* a substitute for content, expect yet more animation in presentations #
  • ICO – "Carrying .. (PII) around on an unencrypted memory stick is clearly unacceptable" from http://t.co/ng3FjSFE #
  • one cant help but wonder if http://t.co/ePglJSJn and http://t.co/Q3iEqbQh are somehow related #symantec #hack #
  • if you are an #oracle enterprise user you need to read this story now http://t.co/OIELCdp5 scary issue. The larger you are the more it hits #
  • Presenting the same #infosec ppt 6 times back to back in workshops today, will be interesting to see how it evolves by run 6 #
  • the backstory on the man behind #Megaupload arrest http://t.co/KVaj5eB0 go to http://t.co/jcMb1kf4 thanks to @attritionorg #
  • annoyance of the day, people who set meeting reminders to be 5-8hrs before the meeting… #1stworldproblem ? #
  • as people are still doing 2012 predictions, can I buck the trend and do some 2011 predictions ? mine will be scarily accurate #
  • #sharepoint max file size is 2gb ? http://t.co/UQ02qvzt err 32bit integer limit still in #sharepoint 2010 ? #
  • #FF @BillBrenner70 @PhysicalDrive0 @DanRaywood @danworthV3 @dakami @BrianHonan @Master_OBASHI @jameslyne @hvcco @MitalGoel and @mikko #
  • I am glad I am not flying over the North Pole Sunday http://t.co/JJFY17NI #solarflare #
  • #Security problems in #grindr http://t.co/2Vzxk2F8 and also apparently in the straight version as well – be careful out there #
  • in in related news today is "international fetish day" err there is a fetish day ? http://t.co/8EUKSBdW #
  • thanks @PhysicalDrive0 @BillBrenner70 and @DanRaywood for the #FF – appreciated #
  • British Airways site doesn't eat from all the major password character food groups, no metacharacters ? #security #fail http://t.co/2xmKEydQ #
  • Oh goody a tax refund :o ), *but wait* how do the HMRC know *that* email address ? Beware the scammers are out there http://t.co/JcTvn7sL #
  • if you handle any #PII this is important http://t.co/Y4EeJvYT decisions are being made that will have long term impact via @Raj_Samani #
  • Based on three's blocking of the torprojects site, are there other sites that are blocked ? #

Jan
18

Bring your own device – An Infosec issue ?

I have been thinking about the Bring Your own Device ( BYod) issue for quite some time now, indeed I am even speaking at a conference in the near future on this very topic. The same question keeps popping up in my mind but seems to be ignored by most of the infosec media, is BYoD an infosec issue ? Certainly of you read the media they will tell you that it is with big fines being leveled ( maybe) for lost or stolen devices and huge security issues if your employees are are allowed to used their own kit. Read the rest of this entry »

Jan
16

Twitter Weekly Updates for 2012-01-16

  • got unwanted mail from talent.me, hit the unsubscribe link, and you need to log into facebook…. but I dont have a FB account so cant login #
  • Why do companies still believe that their #infosec #policies are confidential ? if you want people to follow them they must be able to see #
  • earlier tweet re #facebook got me thinking, as I have never had a FB account, I wonder what info they have on me ?someone gave them my email #
  • I did an infosec strategy session with some non infosec people the other day.. really useful to discuss sec strategy with non infosec peeps #
  • they start to ask questions like "why?" and if you cant really answer then it might be time to modify direction – very refreshing #toptip #
  • and to quote #Einstein "If you can't explain it simply, you don't understand it well enough." – or are just plain incorrect #
  • you have to wonder when someone follows 30k+ people on twitter how much they actually read of the people they follow #
  • why do people still believe that there is a difference between a smartphone and a PC ? from an infosec POV they are the same #forgettheHW #
  • As a follow up to yesterday re #cloud notice that most cloud providers will not let you #audit you have to base the sec process on trust #
  • Like many infosec people I implicitly trust 1 person, and I see him each and every morning in the bathroom mirror when I have a shave #
  • by the way, if your presentation has an agenda slide at the beginning, hide it… please ? I will find out soon enough what the ppt is about #
  • having been round the Mclaren factory,I can confirm that its as good as it looks on the TV.Absolutely spectacular place http://t.co/UGqHenpZ #
  • by the way for all the negativity about #cloud it is the future. we will think local DC's quaint and old fashioned in a few years #infosec #
  • driving in France ? soom you will need to carrry a breathalizer kit as well as the warning triangle etc http://t.co/BDGZCTUJ #strange #
  • spoke to a user today who was *convinced* that using a #mac made you invulnerable to #viruses and #malware Steve what have you done ? #
  • reading stories like this https://t.co/sTQAPmPy makes me realise the good that #microsoft is doing for #infosec – long may it continue #
  • do we really think that the public sector has that many more data breaches than the private sector ? the ICO needs to swap its focus #
  • if you need a quick visio alike diagram but dont have visio I can reccomend Gliffy – does what it says on the tin http://t.co/Ku8af665 #
  • Who owns the mobile update issue ? http://t.co/uhwfsLmL #in #
  • I cant believe that people still use email disclaimers, some times in 2 languages.. what % of your textual mail archive is disclaimer txt? #
  • #FF @DanRaywood @AlecMuffett @jameslyne @BrianHonan @CanonSecurityEU @PhysicalDrive0 @Wh1t3Rabbit @mikejulietbravo @paperghost #
  • the UK Schools ICT curriculum is to be overhauled, http://t.co/F6CjVsPB what would you like to see added? privacy? law? digital citizenship? #
  • Just drove into central london, massive delays around euston. Several roads closed.looks to be 2x RTA's took 2hrs to get through the queue #
  • I just found my #truecrypt rescue USB key *after* I spend hours reinstalling… grrr #
  • If you are curious as to who Zappos are ( and cant get to their www as they are non US) can I suggest http://t.co/NUzkYJf0 – shoe store #

Older posts «