Latest Story

The Spy Within: Don’t Trust Anyone

The Spy Within: Don’t Trust Anyone

Federal Bureau of Investigation (FBI) today (Friday May 11th 2012) launched a campaign against corporate espionage. FBI will specifically single out companies that tend to take security less seriously, companies with trade secrets, proprietary research data relating to products and also software makers. FBI estimates that $13 billion has been lost to state-sponsored espionage that has now...

Read more »

Security Evolutionary Process

Security Evolutionary Process

Two top news today May 3rd 2012 Over 1.5 million Visa, MasterCard credit card numbers stolen? - http://www.zdnet.com/blog/security/over-15-million-visa-mastercard-credit-card-numbers-stolen/11755?tag=nl.e036 Attack takes Soca crime agency website down - http://www.bbc.com/news/technology-17936962 Evolutionary process There are...

Read more »

Kinect In A Small Room

Kinect In A Small Room

Do you have XBOX Kinect but your room is simply too small and narrow to be used to play the new Starwars game? I was in exact same position....

Read more »

Project Glass: Innovation Is In Software Engineering

Project Glass: Innovation Is In Software Engineering

Google is taking innovation to a new level. The introduction of Project Glass yesterday had me filled with excitement. In an age where we seem to be getting plenty...

Read more »

The New iPad – Flash without Fire?

The New iPad – Flash without Fire?

Now that the rush for iPad buzz is out of the way, this is good time to evaluate what this new device offers. Firstly, the specs in a snapshot:...

Read more »

Attack Vector Trends On The Network

Attack Vector Trends On The Network

Threat landscape is growing ever so large in today’s hyper-information sharing world.  This is increasingly bringing new wave of threats beyond the perimeter of most networks. If you look...

Read more »

Finding Vulnerabilities – From Fuzzing to Metasploit

Here is a three part video by Andrew Whitaker showing how to use fuzzing to discover a vulnerability in an application and then using Metasploit Framework to exploit that...

Read more »

Secure and Optimize Your Web Application

Secure and Optimize Your Web Application

Given the rate at which we continue to see cyber attacks, it is obvious that there is still a wide gap in how security controls are implemented for web...

Read more »

Android Versus Everyone Else

Android Versus Everyone Else

This weekend, I visited a friend who has now replaced his Blackberry Playbook with Android HTC Sense tablet. I took the pleasure to play around with the device, and...

Read more »

Impact of Security on Compliance.. Which First?

Impact of Security on Compliance.. Which First?

Over the past several years, need to be compliant with a government or industry standard has been driving IT security spending. However, as I highlighted in my last post in which...

Read more »

2011: The Year of Hack Attacks

2011: The Year of Hack Attacks

Year 2011 will forever be known as the year which security finally mattered to businesses. We have had events that served as precursor warnings to us in prior years, but 2011 gave...

Read more »

Quantum Computing, Security and the Future

Quantum Computing, Security and the Future

An interesting news item was released this week highlighting the significance of Quantum Computing and the role played by Canada’s Institute of Quantum Computing (IQC). I have always been particularly interested in...

Read more »

Notary – A viable and effective alternative to Certificate Authorities (CA)

Notary – A viable and effective alternative to Certificate Authorities (CA)

In my last post, I showed excerpts that highlight series of issues with today’s Certificate Authority (CA). So, what’s the alternative? Well, for the past four weeks, I have...

Read more »

Can You Readily Trust All Certificate Authorities?

The following is the most interesting case that I have ever come across on what happens when something that we trust gets compromised. I copied this from segment from...

Read more »

Potential weakness in single sign on from desktop to web apps

Potential weakness in single sign on from desktop to web apps

Today, I opened a Google application called Picasa on my desktop to upload my picture into Google cloud. Of course my password to access my e-directory has been cached...

Read more »

Protecting yourself from zero day attacks such as Tiger M@te

Protecting yourself from zero day attacks such as Tiger M@te

This weekend, Webservers with Inmotion hosting company were hacked by Tiger M@te. The threat agent turned out to be within the management software installed on all InMotion servers. What...

Read more »

Truth serum

Ads

Follow

Get every new post delivered to your Inbox

Join other followers