Welcome Guest. | Log In | Register | Membership Benefits

How To Monitor Employees Without Being A Perv


Posted by Rich Mogull @ 01:09 PM ET | Jan 15, 2012

While we need to monitor our employees to protect organization secrets, there's no need to turn the workplace into a bad episode of Big Brother

Continue reading "How To Monitor Employees Without Being A Perv"

Comments(0)
Topics:   Insider Threat Tech Center : Security Views



Take Off The Data Security Blinders


Posted by Rich Mogull @ 02:39 PM ET | Dec 20, 2011

You can't protect what you can't see. Use these tools to learn how and where your data is at risk

Continue reading "Take Off The Data Security Blinders"

Comments(2)
Topics:   Insider Threat Tech Center : Security Views



It's Time to Dump The 'Insider Threat'


Posted by Rich Mogull @ 11:08 AM ET | Nov 30, 2011

Blaming the "insider threat" merely hides your real security risks

Continue reading "It's Time to Dump The 'Insider Threat'"

Comments(1)
Topics:   Insider Threat Tech Center : Security Views



IPv6 Graduation Day


Posted by Kelly Jackson Higgins @ 01:30 PM ET | Jun 08, 2011

Big Bird, Google, and Facebook participate in first high-profile test flight of new IP protocol amid DDoS threat backdrop

Continue reading "IPv6 Graduation Day"

Comments(4)
Topics:   : Dark Dominion : Insider Threat Tech Center



Taming the Beast: Preventing/Detecting Insider Threat


Posted by Eric Cole @ 11:53 AM ET | Nov 27, 2010

While many companies deal with the problem of insider threat, there are some practical things that can be done to both prevent and detect insider threat. Always remember, prevention is ideal but detection is a must.

Continue reading "Taming the Beast: Preventing/Detecting Insider Threat"

Comments(5)
Topics:   Insider Threat Tech Center : Security Views



Profiling The Evil Insider


Posted by Eric Cole @ 10:18 AM ET | Nov 12, 2010

How to sniff out a rogue insider

Continue reading "Profiling The Evil Insider"

Comments(1)
Topics:   Insider Threat Tech Center : Security Views



Understanding The Mindset Of The Evil Insider


Posted by Eric Cole @ 04:54 PM ET | Oct 04, 2010

Technology is typically going to serve as the basis for insider threat attacks. One of the major key technology areas is information extraction, and it must be clearly understood so an organization can try to stay one step ahead of the malicious insider.

Continue reading "Understanding The Mindset Of The Evil Insider"

Comments(0)
Topics:   Insider Threat Tech Center : Security Views



Why The Insider Threat Is Ignored


Posted by Eric Cole @ 05:49 PM ET | Sep 28, 2010

The insider threat is complicated, and most organizations do not fully understand the magnitude of the problem. There are three main reasons why the insider threat has been ignored: Organizations do not know it's happening, it's easy for organizations to be in denial, and organizations fear bad publicity.

Continue reading "Why The Insider Threat Is Ignored"

Comments(0)
Topics:   Insider Threat Tech Center : Security Views



Different Flavors Of The Insider Threat


Posted by Eric Cole @ 08:52 PM ET | Sep 22, 2010

There are different categories of insider threats, based on the level of access the employee has. There are four types: pure insider, insider associate, insider affiliate, and outside affiliate. Each of these categories also has different motives. Understanding each is a key to building proper preventive and detective defenses.

Continue reading "Different Flavors Of The Insider Threat"

Comments(0)
Topics:   Insider Threat Tech Center : Security Views



Missing The Insider Threat


Posted by Eric Cole @ 04:02 PM ET | Sep 20, 2010

"I trust everyone. It is the devil inside that I do not trust" is a great line from the movie "The Italian Job." Every single person has the potential to do harm if the right circumstances occur. Yes, this includes employees.

Continue reading "Missing The Insider Threat"

Comments(0)
Topics:   Insider Threat Tech Center : Security Views



Are We Missing the Point?


Posted by Eric Cole @ 06:20 PM ET | Aug 29, 2010

Recently there has been a lot of talk about nuclear weapons, terrorism, and peace treaties. At the end of the day, the question remains: how do we protect a country and its citizens from attack? If that is really the purpose of the summits and the meetings, why isn't cybersecurity part of the discussion -- more importantly, the insider threat?

Continue reading "Are We Missing the Point?"

Comments(0)
Topics:   Insider Threat Tech Center : Security Views



Advanced Persistent Threat: The Insider Threat


Posted by Eric Cole @ 12:37 PM ET | Aug 16, 2010

APT is the buzzword everyone is using. Companies are concerned about it, the government is being compromised by it, and consultants are using it in every presentation they give. But people fail to realize that the vulnerabilities these threats compromises are the insider -- not the malicious insider, but the accidental insider who clicks on the wrong link.

Continue reading "Advanced Persistent Threat: The Insider Threat"

Comments(0)
Topics:   Insider Threat Tech Center : Security Views



Social Networks, Data Leaks, And Operation Security


Posted by Gadi Evron @ 05:30 AM ET | Mar 04, 2010

Following a Facebook update from a soldier on an upcoming operation, the Israeli Defense Forces (IDF) canceled an operation into the West Bank, illustrating how the connected world makes maintaining operational security (OPSEC) all the more difficult.

Continue reading "Social Networks, Data Leaks, And Operation Security"

Comments(0)
Topics:   Hacked Off : Insider Threat Tech Center



70% Rise In Malware: Time To Block Facebook?


Posted by Graham Cluley @ 11:19 AM ET | Feb 01, 2010

New research published by Sophos today reveals a 70 percent increase in the number of companies reporting spam and malware attacks via social networks.

Continue reading "70% Rise In Malware: Time To Block Facebook?"

Comments(0)
Topics:   Insider Threat Tech Center : SophosLabs Insights



A Real Insider Threat Story


Posted by Eric Cole @ 12:05 PM ET | Dec 08, 2009

I was sitting at my desk when my phone rang. I answered, and it was a large pharmaceutical company that was interested in consulting services. It had noticed a trend with one of its foreign competitors. Every time it went to release a new product (in this particular case a new drug), one of its competitors would release a similar drug with a similar name, several weeks before it, beating it to market.

Continue reading "A Real Insider Threat Story"

Comments(0)
Topics:   Insider Threat Tech Center : Security Views



Stopping Insider Attacks


Posted by Eric Cole @ 06:16 PM ET | Nov 12, 2009

There is no single thing you can do to prevent an attack from the inside. The concept of defense-in-depth applies here as it does to all areas of security. No single solution is going to make you secure. Only by putting many defense measures together will you be secure, and those measures must encompass both preventive and detective measures.

Continue reading "Stopping Insider Attacks"

Comments(0)
Topics:   Insider Threat Tech Center : Security Views



Measuring Insider Risk


Posted by Eric Cole @ 10:45 PM ET | Nov 11, 2009

The key thing to remember when dealing with insiders is they have access and, in most cases, will exploit the weakest link that gives them the greatest chance of access, while minimizing the chances that they get caught. Why try to break through a firewall and gain access to a system with a private address when you can find someone behind the firewall with full access to the system?

Continue reading "Measuring Insider Risk"

Comments(0)
Topics:   Insider Threat Tech Center : Security Views



Insider Threat Reality Check


Posted by Eric Cole @ 09:39 AM ET | Nov 09, 2009

Organizations tend to think once they hire an employee or a contractor, that person is now part of a trusted group of people. Although an organization might give an employee additional access that an ordinary person would not have, why should it trust that person?

Continue reading "Insider Threat Reality Check"

Comments(0)
Topics:   Insider Threat Tech Center : Security Views



LinkedIN With 'Bill Gates'


Posted by Kelly Jackson Higgins @ 05:04 PM ET | Oct 30, 2009

Bill Gates invited me to join his LinkedIN network. OK, so it wasn't really Bill Gates, but as far as my email system, spam filter, and email client were concerned, it's perfectly normal for Gates to send me a LinkedIn invitation.

Continue reading "LinkedIN With 'Bill Gates'"

Comments(0)
Topics:   Dark Dominion : Insider Threat Tech Center



Metasploit Adds Exploit For Unpatched Windows SMBv2 Bug


Posted by John H. Sawyer @ 06:43 PM ET | Sep 28, 2009

The upcoming stable release of Metasploit Framework version 3.3 is brimming with awesome new features that will make a lot of penetration testers happy. New features include the ability to take screenshots of exploited systems, while others add raw power, like being able to exploit the unpatched SMBv2 vulnerability in Windows Vista and Server 2008.

Continue reading "Metasploit Adds Exploit For Unpatched Windows SMBv2 Bug"

Comments(0)
Topics:   Evil Bytes : Insider Threat Tech Center : Vulnerability Management Tech Center



Social Zombies Out For Your Network, Not Brains


Posted by John H. Sawyer @ 05:11 PM ET | Aug 10, 2009

Last week, I took a shot at the Marines for banning social networks without waiting for the Pentagon to finish looking into the threats posed by members of our armed forces using sites like Facebook and Twitter.

Continue reading "Social Zombies Out For Your Network, Not Brains"

Comments(0)
Topics:   Evil Bytes : Insider Threat Tech Center



IT Admin Gets Jail Time For Sabotaging Ex-Employer's Network


Posted by Graham Cluley @ 01:26 AM ET | Jul 16, 2009

Hell hath no fury like an IT support administrator scorned. At least that's the message being heard loud and clear by firms that are finding their networks at risk of attack from former employees.

Continue reading "IT Admin Gets Jail Time For Sabotaging Ex-Employer's Network"

Comments(0)
Topics:   Insider Threat Tech Center : SophosLabs Insights



Maltego: Going On The Offensive *And* Defensive To Defend Against Social Networks


Posted by John H. Sawyer @ 04:37 PM ET | Jun 22, 2009

You know the military's ol' mantra about "loose lips sink ships"? Well, it's being redefined by sites like Twitter, Flickr, and Facebook, according to a great article from Federal Computer Week that discusses the threats social networks pose to operational security.

Continue reading "Maltego: Going On The Offensive *And* Defensive To Defend Against Social Networks"

Comments(0)
Topics:   Evil Bytes : Insider Threat Tech Center



Data Leakage Through Nontraditional Networks


Posted by John H. Sawyer @ 02:40 PM ET | Jun 19, 2009

Securing our company's data is our job. We build up layers of defense to protect it when it is housed within our corporate network and corporate computer systems. Firewalls, VPNs, encryption, and data leakage prevention all help in some way to protect the data that we don't want anyone else to have. Sometimes, however, we are stuck in the situation where we don't control the network or systems that portions of our data ends up on.

Continue reading "Data Leakage Through Nontraditional Networks"

Comments(0)
Topics:   Evil Bytes : Insider Threat Tech Center



'Kramer' Is In The Building


Posted by Steve Stasiukonis @ 08:30 AM ET | May 15, 2009

My firm, Secure Network Technologies, was recently hired by a large healthcare provider to perform a security assessment. As part of the job, my partner, Bob Clary, posed as an employee, similar to the "Seinfeld" episode in which Kramer shows up and works at a company where he was never actually hired.

Continue reading "'Kramer' Is In The Building"

Comments(0)
Topics:   Hacked Off : Insider Threat Tech Center




Go on to the weblog archives...






  1. Cookies, Social Media And FireSheep
  2. SMB Guide To Credit Card Regulations, Part 2: The Low-Hanging Fruit
  3. HP And The Scary Corporate Fifth Column Concept
  4. Taking USB Attacks To The Next Level
  5. NoSQL: Not Much, Anyway
  1. Taking Cybersecurity Lessons To The Bank
  2. Researchers See Real-Time Phishing Jump
  3. 'BlackSheep' Sniffs Out Firesheep WiFi-Hacking
  4. Slideshow: Ten Free Security Monitoring Tools
  5. A Different Spin On Sleuthing Stuxnet
  6. M&A Activity Muddles Database Security
  1. Secure Managed Web Hosting Saves 960.gs from Malicious Hackers
  2. Access Governance as a Business Service: An Integrated Strategy for Automation with ITSM
  3. Business Driven Access Management and Governance: Simplifying the Delivery and Governance of Access Throughout
 
 


 
  Ars Technica
Boing Boing
Channel 9 Forums
CRN Blogs
Dr.Dobb's Portal: Blogs
Engadget
Gizmodo
GrokLaw
  Lifehacker
Schneier on Security
Slashdot
TechCrunch
Techdirt
Techmeme
Valleywag
 
  February 2012
January 2012
December 2011
November 2011
October 2011
September 2011
August 2011
July 2011
June 2011
May 2011
April 2011
March 2011
February 2011
January 2011
December 2010
November 2010
October 2010
September 2010
August 2010
July 2010
June 2010
  May 2010
April 2010
March 2010
February 2010
January 2010
December 2009
November 2009
October 2009
September 2009
August 2009
July 2009
June 2009
May 2009
April 2009
March 2009
February 2009
January 2009
December 2008
November 2008
October 2008
September 2008