<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Security is Golden</title>
	<atom:link href="http://securityisgolden.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://securityisgolden.wordpress.com</link>
	<description>This blog is dedicated to validating Security Return on Investment</description>
	<lastBuildDate>Sat, 23 Oct 2010 16:02:56 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='securityisgolden.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Security is Golden</title>
		<link>http://securityisgolden.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://securityisgolden.wordpress.com/osd.xml" title="Security is Golden" />
	<atom:link rel='hub' href='http://securityisgolden.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Malicious code that comes with release notes?</title>
		<link>http://securityisgolden.wordpress.com/2010/09/26/malicious-code-with-release-notes/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/26/malicious-code-with-release-notes/#comments</comments>
		<pubDate>Sun, 26 Sep 2010 22:13:54 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Metrics]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=581</guid>
		<description><![CDATA[New security report shows that’s how sophisticated cybercriminals have become By Robert Mullins Network World I was astonished when Mike Dausin of security provider HP TippingPoint briefed me on a new state of network security report and explained how much more sophisticated writers of malicious code had become. Their code is much cleaner than it [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=581&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>New security report shows that’s how sophisticated cybercriminals have become</strong></p>
<p>By Robert Mullins<br />
Network World</p>
<p>I was astonished when Mike Dausin of security provider HP TippingPoint briefed me on a new state of network security report and explained how much more sophisticated writers of malicious code had become. Their code is much cleaner than it had been in years past and that recently, some updated versions of this code had actually come with release notes.</p>
<p>“When you think about code having release notes, that implies a level of maturity that just wasn’t there before,” said Dausin, manager of advance security intelligence for TippingPoint, whose DVLabs unit conducts research into network vulnerabilities and helped produce “<a onclick="return mugicPopWin(this,event);" oncontextmenu="mugicRightClick(this);" href="http://www8.hp.com/us/en/hp-news/article_detail.html?compURI=tcm:245-647886&amp;pageTitle=New%20Report%20Highlights%20Enterprise%20Computing%20Trends%20and%20Network%20Security%20Impact%20Analysis" target="_blank">The Top Cyber Security Risks Report</a>,” which was published today.</p>
<p>Read more: Click to access the <a href="http://www.networkworld.com/community/node/66361" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-metrics/'>Information Security Metrics</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/581/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/581/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/581/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/581/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/581/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/581/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/581/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/581/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/581/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/581/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/581/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/581/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/581/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/581/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=581&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/26/malicious-code-with-release-notes/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Payment Card Security: Risk &amp; Control Assessments</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/pci-risk-control-assessments/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/pci-risk-control-assessments/#comments</comments>
		<pubDate>Sun, 19 Sep 2010 03:11:59 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Resources]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=578</guid>
		<description><![CDATA[By Gideon T. Rasmussen (IN)SECURE Magazine The PCI Data Security Standard mandates foundational controls, most of which are information security best practices. It is a one-size-fits-all standard meant to address all business and technological environments that store, process or transmit payment card data. Minimum compliance with PCI standards may not adequately protect card data. Therefore, [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=578&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>By Gideon T. Rasmussen<br />
(IN)SECURE Magazine</p>
<p>The PCI Data Security Standard mandates foundational controls, most of which are information security best practices. It is a one-size-fits-all standard meant to address all business and technological environments that store, process or transmit payment card data. Minimum compliance with PCI standards may not adequately protect card data.  Therefore, it is necessary to conduct a risk assessment in accordance with PCI requirements.</p>
<p>Read more: Click to access the <a href="http://www.gideonrasmussen.com/article-23.html" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-resources/'>Information Security Resources</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/578/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/578/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/578/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/578/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/578/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/578/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/578/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/578/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/578/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/578/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/578/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/578/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/578/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/578/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=578&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/pci-risk-control-assessments/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>State Security Breach Laws (memo and chart)</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/state-security-breach-laws/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/state-security-breach-laws/#comments</comments>
		<pubDate>Sun, 19 Sep 2010 02:56:13 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Resources]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=573</guid>
		<description><![CDATA[Schwartz and Ballen LLP Memorandum Re: State Security Breach Laws This memorandum summarizes state legislation requiring notification to consumers of unauthorized disclosures of their personal information. To date, forty-six states, the District of Columbia, Puerto Rico, and the U.S. Virgin Islands have enacted legislation addressing security breaches. Most recently, Mississippi enacted security breach legislation, and [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=573&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Schwartz and Ballen LLP Memorandum</p>
<p>Re: State Security Breach Laws</p>
<p>This memorandum summarizes state legislation requiring notification to consumers of unauthorized disclosures of their personal information. To date, forty-six states, the District of Columbia, Puerto Rico, and the U.S. Virgin Islands have enacted legislation addressing security breaches. Most recently, Mississippi enacted security breach legislation, and Washington amended its law.</p>
<p>Read more: Click to access the <a href="http://www.schwartzandballen.com/Memos%202010/State%20Security%20Breach%20Memo%2009-17-10%20CLEAN.pdf" target="_blank">Memorandum</a> and the <a href="http://www.schwartzandballen.com/pdf_news/State%20Security%20Breach%20Chart%2009-17-10%20CLEAN.pdf" target="_blank">Security Breach Chart</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-resources/'>Information Security Resources</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/573/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/573/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/573/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/573/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/573/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/573/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/573/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/573/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/573/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/573/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/573/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/573/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/573/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/573/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=573&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/state-security-breach-laws/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Reducing Risk Detection and Reaction Time</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/reducing-risk-detection/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/reducing-risk-detection/#comments</comments>
		<pubDate>Sun, 19 Sep 2010 02:45:38 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Metrics]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=570</guid>
		<description><![CDATA[Due to the many different facets of today’s business environment, businesses worldwide have been confronted with a substantial increase in risk-related challenges. The 2008 and 2009 economic downturn has forced companies to feel pressed for time when redefining their business priorities and strategies. Looking back on these years, many companies believe that if they only [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=570&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Due to the many different facets of today’s business environment, businesses worldwide have been confronted with a substantial increase in risk-related challenges. The 2008 and 2009 economic downturn has forced companies to feel pressed for time when redefining their business priorities and strategies. Looking back on these years, many companies believe that if they only had known earlier that the economy was changing, they could have had more time to prepare themselves for the conditions they currently face. Most companies have learned the hard way about the importance of reducing risk detection and reaction time for the success of their businesses. A recent article by Ernst and Young, examines how organizations can reduce their risk detection and reaction times in order to gain value and competitive advantage. Their advice is applicable during any economic condition as risks arise constantly in our global, fast-changing, competitive world.</p>
<p>Read more: Click to access the <a href="http://www.mgt.ncsu.edu/erm/index.php/articles/entry/reducing-risk-detection" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-metrics/'>Information Security Metrics</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/570/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/570/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/570/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/570/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/570/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/570/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/570/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/570/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/570/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/570/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/570/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/570/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/570/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/570/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=570&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/reducing-risk-detection/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Social Engineering Report Shows Corporate America At Risk</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/social-engineering-corporate-america/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/social-engineering-corporate-america/#comments</comments>
		<pubDate>Sun, 19 Sep 2010 02:32:13 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Event]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=566</guid>
		<description><![CDATA[Final report from Defcon contest details information employees gave up over the phone By Kelly Jackson Higgins DarkReading Among the unsettling results in the final report, released today, from the Social Engineering Capture The Flag contest held in August at Defcon: Security companies were just as susceptible to social engineering as nontechnology firms, Internet Explorer [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=566&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>Final report from Defcon contest details information employees gave up over the phone</strong></p>
<p>By Kelly Jackson Higgins<br />
DarkReading</p>
<p>Among the unsettling results in the final report, released today, from the Social Engineering Capture The Flag contest held in August at Defcon: Security companies were just as susceptible to social engineering as nontechnology firms, Internet Explorer 6 was still in use at 65 percent of the Fortune 500 companies targeted in the contest, and nearly 90 percent of the targets willingly opened a URL that the contestants gave them.</p>
<p>The contest, in which the art of social engineering was demonstrated on a rare public stage using real-world targets, was aimed at gauging the vulnerability of major corporations to social engineering. And the 17 contestants, who had to compile a dossier of as much information as they could gather passively on their assigned target company beforehand (no phone calls, email, or direct contact), had little trouble scoring information in the 25 minutes they had to social-engineer someone on the other end of the telephone line during the contest. The event was open to Defcon attendees to watch as the contestants made their calls from a soundproof booth.</p>
<p>Read more: Click to access the <a href="http://www.darkreading.com/insiderthreat/security/vulnerabilities/showArticle.jhtml?articleID=227400472" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-event/'>Information Security Event</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/566/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/566/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/566/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/566/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/566/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/566/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/566/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/566/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/566/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/566/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/566/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/566/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/566/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/566/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=566&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/social-engineering-corporate-america/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Incentives &amp; challenges for cyber security information sharing</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/security-information-sharing/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/security-information-sharing/#comments</comments>
		<pubDate>Sun, 19 Sep 2010 02:21:24 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Resources]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=561</guid>
		<description><![CDATA[The EU ‘cyber security’ Agency ENISA, i.e. the European Network and Information Security Agency, launched a new report on barriers to and incentives for cyber security information sharing. The report shows e.g. that the economic incentives are much more important for practitioners than what academic literature indicate. The importance of information sharing for the Critical [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=561&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>The EU ‘cyber security’ Agency ENISA, i.e. the European Network and Information Security Agency, launched a new report on barriers to and incentives for cyber security information sharing. The report shows e.g. that the economic incentives are much more important for practitioners than what academic literature indicate.</strong></p>
<p>The importance of information sharing for the Critical Information Infrastructure Protection –CIIP-is widely acknowledged by policy-makers, technical and practitioner communities alike. The Agency has researched peer-to-peer groups, e.g. Information Exchanges (IEs) and Information Sharing Analysis Centres (ISACs). The report identifies the most important barriers and incentives in day-to-day practice in IEs and ISACs for CIIP. This research differs from other reports by being focused on the practitioners’ experiences. The material stems from three sources, literature analysis, interviews, and a two-round ‘Delphi’ exercise with security professionals. The report is launched in conjunction with the NIS Summer School, taking place 13-17 September, in Crete.</p>
<p>Read more: Click to access the <a href="http://www.enisa.europa.eu/media/press-releases/incentives-challenges-for-cyber-security-information-sharing-in-europe-identified" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-resources/'>Information Security Resources</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/561/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/561/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/561/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/561/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/561/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/561/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/561/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/561/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/561/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/561/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/561/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/561/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/561/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/561/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=561&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/security-information-sharing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Smoking Out Attackers Hiding in Encrypted Data</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/smoking-out-attackers-hiding-in-encrypted-data/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/smoking-out-attackers-hiding-in-encrypted-data/#comments</comments>
		<pubDate>Sun, 19 Sep 2010 02:10:02 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Resources]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=558</guid>
		<description><![CDATA[By David Wells TechNewsWorld For an enterprise concerned about security, which most are, addressing the risks posed by threats hidden within encrypted SSL traffic is clearly not something that can be ignored. If SSL were being used for no purpose, then the problem could be solved by simply avoiding or preventing the use of SSL. [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=558&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>By David Wells<br />
TechNewsWorld</p>
<p><strong>For an enterprise concerned about security, which most are, addressing the risks posed by threats hidden within encrypted SSL traffic is clearly not something that can be ignored. If SSL were being used for no purpose, then the problem could be solved by simply avoiding or preventing the use of SSL. However, the reality is that SSL is used to provide much-needed security for a wide range of network applications.</strong></p>
<p>Today, most enterprises have a number of network security appliances that provide protection against attacks aimed at enterprise computing resources, as well as prevent the loss of sensitive enterprise data due to deliberate or unintentional leakage. These security appliances work by matching network traffic with threat signatures or tracking application state as a means to detect suspicious behavior.</p>
<p>Read more: Click to access the <a href="http://www.technewsworld.com/rsstory/70807.html" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-resources/'>Information Security Resources</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/558/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/558/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/558/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/558/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/558/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/558/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/558/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/558/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/558/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/558/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/558/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/558/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/558/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/558/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=558&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/smoking-out-attackers-hiding-in-encrypted-data/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Fraud At Sprint Offers Lessons For Enterprises</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/fraud-offers-lessons/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/fraud-offers-lessons/#comments</comments>
		<pubDate>Sun, 19 Sep 2010 01:59:12 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Event]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=554</guid>
		<description><![CDATA[Insider attacks could have been prevented with a few simple practices By Robert Lemos, Contributing Writer DarkReading The recently revealed abuse of insiders&#8217; system privileges to commit fraud at Sprint could be a wake-up call for other enterprises to implement more stringent security practices, experts said this week. Last week, nine Sprint employees were charged [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=554&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>Insider attacks could have been prevented with a few simple practices</strong></p>
<p>By Robert Lemos, Contributing Writer<br />
DarkReading</p>
<p>The recently revealed abuse of insiders&#8217; system privileges to commit fraud at Sprint could be a wake-up call for other enterprises to implement more stringent security practices, experts said this week.</p>
<p>Last week, nine Sprint employees were charged with misusing their access to the telecommunications giant&#8217;s systems to redirect phone charges to other customers by &#8220;cloning&#8221; their cell phones &#8212; to the tune of more than $15 million in fraudulent charges in the first six months of this year.</p>
<p>Read more: Click to access the <a href="http://www.darkreading.com/insiderthreat/security/management/showArticle.jhtml?articleID=227300424" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-event/'>Information Security Event</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/554/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/554/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/554/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/554/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/554/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/554/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/554/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/554/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/554/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/554/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/554/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/554/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/554/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/554/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=554&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/fraud-offers-lessons/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Cybercrime is Rampant Around the World</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/cybercrime-is-rampant/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/cybercrime-is-rampant/#comments</comments>
		<pubDate>Sun, 19 Sep 2010 01:51:32 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Metrics]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=551</guid>
		<description><![CDATA[Internet crime is a big problem globally, according to a survey done in 14 nations by security vendor Symantec. By Jeff Bertolucci PC World A new study by security vendor Symantec reports that Internet crime has grown into a widespread problem globally. It also provides intriguing insights into consumers&#8217; lax attitudes toward online piracy, plagiarism, [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=551&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>Internet crime is a big problem globally, according to a survey done in 14 nations by security vendor Symantec.</strong></p>
<p>By Jeff Bertolucci<br />
PC World</p>
<p>A new study by security vendor Symantec reports that Internet crime has grown into a widespread problem globally. It also provides intriguing insights into consumers&#8217; lax attitudes toward online piracy, plagiarism, and other illegally or unethical activities.</p>
<p>Some 7,000 adults in 14 nations participated in the Norton Cybercrime Report: The Human Impact, which was released Wednesday.</p>
<p>Read more: Click to access the <a href="http://www.networkworld.com/news/2010/090810-cybercrime-is-rampant-around-the.html" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-metrics/'>Information Security Metrics</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/551/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/551/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/551/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/551/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/551/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/551/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/551/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/551/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/551/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/551/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/551/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/551/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/551/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/551/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=551&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/cybercrime-is-rampant/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Toward a Culture of Security Measurement</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/toward-a-culture-of-security-measurement/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/toward-a-culture-of-security-measurement/#comments</comments>
		<pubDate>Sat, 18 Sep 2010 23:47:26 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Metrics]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=545</guid>
		<description><![CDATA[by Brian Krebs Krebs on Security “Our dependence on all things cyber as a society is now inestimably irreversible and irreversibly inestimable.” Yeah, I had to re-read that line a few times, too. Which is probably why I’ve put off posting a note here about the article from which the above quote was taken, a [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=545&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>by Brian Krebs<br />
Krebs on Security</p>
<p>“Our dependence on all things cyber as a society is now inestimably irreversible and irreversibly inestimable.”</p>
<p>Yeah, I had to re-read that line a few times, too. Which is probably why I’ve put off posting a note here about the article from which the above quote was taken, a thought-provoking essay in the Harvard National Security Journal by Dan Geer, chief information security <span style="text-decoration:line-through;">philosopher</span> officer for In-Q-Tel, the not-for-profit venture capital arm of the Central Intelligence Agency.</p>
<p>Read more: Click to access the <a href="http://krebsonsecurity.com/2010/09/toward-a-culture-of-security-measurement" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-metrics/'>Information Security Metrics</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/545/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/545/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/545/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/545/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/545/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/545/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/545/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/545/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/545/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/545/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/545/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/545/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/545/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/545/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=545&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/toward-a-culture-of-security-measurement/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Preparing For A Future Cyberwar</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/preparing-for-cyberwar/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/preparing-for-cyberwar/#comments</comments>
		<pubDate>Sat, 18 Sep 2010 23:37:36 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Resources]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=542</guid>
		<description><![CDATA[By Kim S. Nash CIO In Cyber War: The Next Threat to National Security and What to Do About It, you write about how vulnerable America is to electronic attack. Is it possible to create an effective deterrence policy against cyberwar, as was done for nuclear war? That doesn&#8217;t work in cyberspace for lots of [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=542&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>By Kim S. Nash<br />
CIO</p>
<p>In Cyber War: The Next Threat to National Security and What to Do About It, you write about how vulnerable America is to electronic attack. Is it possible to create an effective deterrence policy against cyberwar, as was done for nuclear war?</p>
<p>That doesn&#8217;t work in cyberspace for lots of reasons. In the nuclear era, there were more than 2,000 tests worldwide. Nations demonstrated they could do damage. It&#8217;s hard to demonstrate cyberweapons in advance. In a nuclear war, you see missiles. In cyberwar, it&#8217;s not clear who&#8217;s attacking. People can pretend to be other people.</p>
<p>Read more: Click to access the <a href="http://www.computerworld.com/s/article/9182783/Richard_Clarke_Preparing_For_A_Future_Cyberwar" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-resources/'>Information Security Resources</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/542/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/542/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/542/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/542/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/542/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/542/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/542/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/542/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/542/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/542/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/542/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/542/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/542/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/542/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=542&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/preparing-for-cyberwar/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Four Best Practices For Tokenization</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/best-practices-for-tokenization/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/best-practices-for-tokenization/#comments</comments>
		<pubDate>Sat, 18 Sep 2010 23:26:50 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Resources]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=540</guid>
		<description><![CDATA[Going beyond Visa&#8217;s best practices guide By Ericka Chickowski DarkReading With Visa releasing its tokenization best practices guide earlier this summer, security professionals and encryption vendors have debated the strengths and weaknesses of the guide. As one of the most debated topics in encryption-land, tokenization still has a long way to go before it achieves [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=540&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>Going beyond Visa&#8217;s best practices guide</strong></p>
<p>By Ericka Chickowski<br />
DarkReading</p>
<p>With Visa releasing its tokenization best practices guide earlier this summer, security professionals and encryption vendors have debated the strengths and weaknesses of the guide. As one of the most debated topics in encryption-land, tokenization still has a long way to go before it achieves any kind of true standardization of best practices.</p>
<p>Read more: Click to access the <a href="http://www.darkreading.com/database_security/security/app-security/showArticle.jhtml?articleID=227100131" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-resources/'>Information Security Resources</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/540/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/540/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/540/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/540/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/540/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/540/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/540/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/540/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/540/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/540/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/540/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/540/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/540/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/540/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=540&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/best-practices-for-tokenization/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>No Telling How Many Unpatched Web Threats Are Out There</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/many-unpatched-web-threats/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/many-unpatched-web-threats/#comments</comments>
		<pubDate>Sat, 18 Sep 2010 23:21:06 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Metrics]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=537</guid>
		<description><![CDATA[By Kimberly Hill TechNewsWorld IBM&#8217;s X-Force security team reported that thousands of known Web app security threats remained unpatched during the first half of 2010. What&#8217;s more disturbing is the researchers&#8217; observation that because most Web apps are custom developed &#8212; and their vulnerabilities may never be publicly disclosed &#8212; the real extent of the [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=537&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>By Kimberly Hill<br />
TechNewsWorld</p>
<p><strong>IBM&#8217;s X-Force security team reported that thousands of known Web app security threats remained unpatched during the first half of 2010. What&#8217;s more disturbing is the researchers&#8217; observation that because most Web apps are custom developed &#8212; and their vulnerabilities may never be publicly disclosed &#8212; the real extent of the problem is likely much larger than enterprises suspect.</strong></p>
<p>During the first half of 2010, more than 4,300 new disclosures of software security issues came to light. That&#8217;s according to the mid-year report issued by IBM&#8217;s (NYSE: IBM) special X-Force security research team. What&#8217;s perhaps a bit more disturbing is how many of those vulnerabilities remain unfixed.</p>
<p>Read more: Click to access the <a href="http://www.technewsworld.com/rsstory/70709.html" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-metrics/'>Information Security Metrics</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/537/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/537/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/537/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/537/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/537/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/537/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/537/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/537/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/537/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/537/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/537/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/537/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/537/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/537/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=537&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/many-unpatched-web-threats/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Stealthy Attacks, Vulnerability Disclosures Rise</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/stealthy-attacks-vulnerability-disclosures-rise/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/stealthy-attacks-vulnerability-disclosures-rise/#comments</comments>
		<pubDate>Sat, 18 Sep 2010 23:15:15 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Metrics]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=534</guid>
		<description><![CDATA[X-Force report says 35 percent of vulnerabilities affecting virtualization servers also affect the hypervisor By Kelly Jackson Higgins DarkReading Covert and obfuscated attacks on organizations have increased by more than 50 percent in the past year worldwide, according to newly released report by IBM&#8217;s X-Force research team. The new IBM X-Force 2010 Mid-Year Trend and [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=534&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>X-Force report says 35 percent of vulnerabilities affecting virtualization servers also affect the hypervisor</strong></p>
<p>By Kelly Jackson Higgins<br />
DarkReading</p>
<p>Covert and obfuscated attacks on organizations have increased by more than 50 percent in the past year worldwide, according to newly released report by IBM&#8217;s X-Force research team.</p>
<p>The new IBM X-Force 2010 Mid-Year Trend and Risk Report also found that the total number of new vulnerabilities disclosed had increased 36 percent over the same period last year, to 4,396 for the first half of &#8217;10. And 55 percent of these bugs had not been fixed by the end of the first half.</p>
<p>Read more: Click to access the <a href="http://darkreading.com/vulnerability_management/security/vulnerabilities/showArticle.jhtml?articleID=227001090" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-metrics/'>Information Security Metrics</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/534/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/534/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/534/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/534/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/534/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/534/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/534/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/534/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/534/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/534/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/534/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/534/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/534/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/534/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=534&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/stealthy-attacks-vulnerability-disclosures-rise/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Avoid Being Collateral Damage In A Cyber War</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/avoid-damage-in-a-cyber-war/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/avoid-damage-in-a-cyber-war/#comments</comments>
		<pubDate>Sat, 18 Sep 2010 23:09:03 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Resources]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=531</guid>
		<description><![CDATA[Larry Dietz talks to Richard Power about critical infrastructure and how businesses should think about digital conflict By Richard Power CSO Online All around the world, governments declare they are gearing up for cyber war. I know, I know, to anyone who has been at this for any significant length of time, many of the [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=531&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>Larry Dietz talks to Richard Power about critical infrastructure and how businesses should think about digital conflict</strong></p>
<p>By Richard Power<br />
CSO Online</p>
<p>All around the world, governments declare they are gearing up for cyber war. I know, I know, to anyone who has been at this for any significant length of time, many of the news stories we are reading today could have, or should have, been written a decade ago, or more. The term &#8220;Cyber war&#8221; seems to be on everyone&#8217;s lips again. (Cue the theme music for &#8220;Groundhog Day&#8221; &#8211; again!) In one way, it is hard to take it seriously anymore; in another way, it is incredible that so many governments sound like they are just getting started, again. Nevertheless, even though the chest-beating seems to be a redux, and much of the blustering rhetoric seems to be recycled, the reality on the virtual ground in cyber space is that the capabilities (the offensive ones, at least) have evolved over the last decade, and so have the opportunities. Furthermore, the appetite to use them seems to have grown apace.</p>
<p>Read more: Click to access the <a href="http://www.csoonline.com/article/604663/how-your-business-can-avoid-being-collateral-damage-in-a-cyber-war" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-resources/'>Information Security Resources</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/531/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/531/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/531/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/531/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/531/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/531/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/531/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/531/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/531/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/531/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/531/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/531/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/531/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/531/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=531&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/avoid-damage-in-a-cyber-war/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Testing shows most AV suites fail against exploits</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/most-av-suites-fail-against-exploits/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/most-av-suites-fail-against-exploits/#comments</comments>
		<pubDate>Sat, 18 Sep 2010 23:01:27 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Resources]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=527</guid>
		<description><![CDATA[Many vendors fail to develop further signatures to guard against different exploits that use the same vulnerability By Jeremy Kirk Network World A majority of security software suites still fail to detect attacks on PCs even after the style of attack has been known for some time, underscoring how cybercriminals still have the upper hand. [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=527&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>Many vendors fail to develop further signatures to guard against different exploits that use the same vulnerability</strong></p>
<p>By Jeremy Kirk<br />
Network World</p>
<p>A majority of security software suites still fail to detect attacks on PCs even after the style of attack has been known for some time, underscoring how cybercriminals still have the upper hand.</p>
<p>NSS Labs, which conducts tests of security software suites, tested how security packages from 10 major companies detect so-called &#8220;client-side exploits.&#8221; In such incidents a hacker attacks a vulnerability in software such as Web browsers, browser plug-ins or desktop applications such as Adobe Acrobat and Flash.</p>
<p>Read more: Click to access the <a href="http://www.networkworld.com/news/2010/081710-nss-labs-testing-shows-most.html" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-resources/'>Information Security Resources</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/527/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/527/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/527/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/527/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/527/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/527/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/527/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/527/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/527/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/527/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/527/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/527/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/527/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/527/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=527&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/most-av-suites-fail-against-exploits/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Using Network Segmentation And Access Control To Isolate Attacks</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/network-segmentation-to-isolate-attacks/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/network-segmentation-to-isolate-attacks/#comments</comments>
		<pubDate>Sat, 18 Sep 2010 22:47:35 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Resources]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=523</guid>
		<description><![CDATA[The right network design can protect against hidden threats from embedded systems and rogue access points By John Sawyer, Contributing Writer DarkReading Insider attacks might have doubled during the past year, according to new case data from the U.S. Secret Service included in the recent Verizon Data Breach Investigations Report, but external attacks are still [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=523&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>The right network design can protect against hidden threats from embedded systems and rogue access points</strong></p>
<p>By John Sawyer, Contributing Writer<br />
DarkReading</p>
<p>Insider attacks might have doubled during the past year, according to new case data from the U.S. Secret Service included in the recent Verizon Data Breach Investigations Report, but external attacks are still the major threat and account for the most records stolen &#8212; indicating companies still are not securing their networks and data properly.</p>
<p>Proactive security controls and secure network design can play an important part in preventing attacks both from the inside and outside. Unfortunately, without proper network segmentation and access control, once the attacker gains access to the victim&#8217;s internal network, it&#8217;s often game over: Sensitive servers are sitting there, just waiting to be pillaged. </p>
<p>Read more: Click to access the <a href="http://www.darkreading.com/security_monitoring/security/intrusion-prevention/showArticle.jhtml?articleID=226900007" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-resources/'>Information Security Resources</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/523/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/523/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/523/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/523/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/523/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/523/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/523/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/523/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/523/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/523/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/523/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/523/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/523/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/523/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=523&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/network-segmentation-to-isolate-attacks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Deep Theater Defense</title>
		<link>http://securityisgolden.wordpress.com/2010/09/18/deep-theater-defense/</link>
		<comments>http://securityisgolden.wordpress.com/2010/09/18/deep-theater-defense/#comments</comments>
		<pubDate>Sat, 18 Sep 2010 22:21:40 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Resources]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=508</guid>
		<description><![CDATA[We all know perimeter firewalls are necessary but not sufficient. But what&#8217;s the right strategy for building additional layers of security? Greg Machler dives in. By Greg Machler CSO Online As an executive, do you ever get worried wondering if your corporate brand is properly protected from a lack of technological integrity? Corporations today have [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=508&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><strong>We all know perimeter firewalls are necessary but not sufficient. But what&#8217;s the right strategy for building additional layers of security? Greg Machler dives in.</strong></p>
<p>By Greg Machler<br />
CSO Online</p>
<p>As an executive, do you ever get worried wondering if your corporate brand is properly protected from a lack of technological integrity? Corporations today have sensitive HR data, financial data, and often consumer data. If this data is compromised, often the outside world finds out about it, lawsuits are initiated and the corporate brand is tarnished. This could lead to consumers thinking twice about purchasing your products or services. </p>
<p>Read more: Click to access the <a href="http://www.csoonline.com/article/603542/deep-theater-defense-" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-resources/'>Information Security Resources</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/508/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/508/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/508/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/508/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/508/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/508/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/508/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/508/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/508/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/508/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/508/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/508/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/508/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/508/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=508&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/09/18/deep-theater-defense/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Handicapping the Global Cybersecurity War</title>
		<link>http://securityisgolden.wordpress.com/2010/08/16/handicapping-the-global-cybersecurity-war/</link>
		<comments>http://securityisgolden.wordpress.com/2010/08/16/handicapping-the-global-cybersecurity-war/#comments</comments>
		<pubDate>Tue, 17 Aug 2010 01:20:35 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Resources]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=504</guid>
		<description><![CDATA[By Kenneth Corbin Datamation.com WASHINGTON &#8212; Looking ahead to the next major global conflict, the more appropriate question might be to ask whether the United States will be able to defend against a major cyberattack, rather than if one will occur. Students of information warfare point out that physical attacks rarely, if ever, transpire any [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=504&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>By Kenneth Corbin<br />
Datamation.com</p>
<p>WASHINGTON &#8212; Looking ahead to the next major global conflict, the more appropriate question might be to ask whether the United States will be able to defend against a major cyberattack, rather than if one will occur. </p>
<p>Students of information warfare point out that physical attacks rarely, if ever, transpire any longer without a cyber component, and that assaults on digital systems such as the electrical grid or telecommunications networks are quickly becoming the face of modern combat. </p>
<p>&#8220;This revolution is so profound that the whole history of warfare is now going to look very different,&#8221; said Scott Borg, director of the U.S. Cyber Consequences Unit, a nonprofit group that works closely with the government to evaluate the effects of potential cyberattacks. (&#8220;It&#8217;s our job to figure out how to destroy America and its allies,&#8221; Borg says of his organization.) </p>
<p>Read more: Click to access the <a href="http://itmanagement.earthweb.com/secu/article.php/3898536/Handicapping-the-Global-Cybersecurity-War.htm" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-resources/'>Information Security Resources</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/504/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/504/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/504/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/504/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/504/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/504/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/504/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/504/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/504/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/504/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/504/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/504/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/504/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/504/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=504&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/08/16/handicapping-the-global-cybersecurity-war/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
		<item>
		<title>Do you need network security and privacy loss insurance?</title>
		<link>http://securityisgolden.wordpress.com/2010/08/14/network-security-and-privacy-loss-insurance/</link>
		<comments>http://securityisgolden.wordpress.com/2010/08/14/network-security-and-privacy-loss-insurance/#comments</comments>
		<pubDate>Sun, 15 Aug 2010 01:56:59 +0000</pubDate>
		<dc:creator>gideonras</dc:creator>
				<category><![CDATA[Information Security Resources]]></category>

		<guid isPermaLink="false">http://securityisgolden.wordpress.com/?p=501</guid>
		<description><![CDATA[By Andreas M. Antonopoulos Network World If your business manages personal information about health or finances, a security breach can cost millions. HITECH and other regulations not only apply fines, but they require disclosure and notification of those affected. In some cases, companies must pay for free credit reports too. These costs can range from [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=501&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>By Andreas M. Antonopoulos<br />
Network World</p>
<p>If your business manages personal information about health or finances, a security breach can cost millions. HITECH and other regulations not only apply fines, but they require disclosure and notification of those affected. In some cases, companies must pay for free credit reports too. These costs can range from $80 to $200 per compromised record. The problem for many companies is the sheer volume of information that can be compromised in a single breach. If you lose 5,000, 50,000 or 500,000 records, the math may mean bankruptcy. Fortunately, you can now get insurance to cover these risks.</p>
<p>Read more: Click to access the <a href="http://www.networkworld.com/columnists/2010/081210-andreas.html" target="_blank">related article</a>.</p>
<br />Filed under: <a href='http://securityisgolden.wordpress.com/category/information-security-resources/'>Information Security Resources</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/securityisgolden.wordpress.com/501/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/securityisgolden.wordpress.com/501/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/securityisgolden.wordpress.com/501/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/securityisgolden.wordpress.com/501/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/securityisgolden.wordpress.com/501/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/securityisgolden.wordpress.com/501/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/securityisgolden.wordpress.com/501/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/securityisgolden.wordpress.com/501/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/securityisgolden.wordpress.com/501/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/securityisgolden.wordpress.com/501/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/securityisgolden.wordpress.com/501/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/securityisgolden.wordpress.com/501/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/securityisgolden.wordpress.com/501/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/securityisgolden.wordpress.com/501/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=securityisgolden.wordpress.com&amp;blog=7312961&amp;post=501&amp;subd=securityisgolden&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://securityisgolden.wordpress.com/2010/08/14/network-security-and-privacy-loss-insurance/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/fa710ad0536e73c39a8ac868b7eaa18d?s=96&#38;d=http%3A%2F%2F1.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">gideonras</media:title>
		</media:content>
	</item>
	</channel>
</rss>
