Perspectives provides out-of-band verification for SSH
There is more to Perspectives than the Firefox extension for TLS/SSL validation.
Tags: Network security, PC security, Data security
Is Firefox + Perspectives the most secure browser for TLS/SSL encryption?
Perspectives is a TLS/SSL encryption certificate validation tool that works even for self-signed certificates.
Tags: Network security, PC security, Data security
IT security: Maxims for the ages
Roger G. Johnston of the Argonne National Laboratory's Nuclear Engineering Division attempts to enlighten the rest of the world about managing security.
Tags: Network security, PC security, Data security
Hire security pros based on reasoning and aptitude
In-house education--not resume bullet points--is the key to having the best possible employees.
Tags: Network security, PC security, Data security
The Bobby Tables guide to SQL injection
Avoiding SQL injection vulnerabilities is much easier than you might think. XKCD inspired a simple tutorial.
Tags: Network security, PC security, Data security
Is paranoid cookie management for you?
How much paranoia you employ in Web cookie management determines how much work you must put in, and which strategies you'll use.
Tags: Network security, PC security, Data security
Flash cookies: What's new with online privacy
If you thought refusing HTTP cookies prevented tracking, think again. Web site developers have found a way.
Tags: Network security, PC security, Data security
IT security policies: Why they don't always work
IT security policies never pleases everyone, and can be nebulous and difficult to get right. Learn from one company's experience of getting its plan to work.
Tags: Network security, PC security, Data security
Unmask your passwords with this JavaScript trick
If you think you mistyped a password into a password field in your browser, a simple JavaScript trick can help you find out by unmasking the password.
Tags: Network security, PC security, Data security
Use RFC 2606 example domains for example e-mail
Example e-mail domains were created specifically for use in examples, so that people with real e-mail accounts that happen to coincide with your examples don't suffer the fallout of an unfortunate choice of example.
Tags: Network security, PC security, Data security
Why automatic updates may be the next big threat
Michael Kassner discusses a potential problem--an attacker hijacking automatic updates and downloading malware onto users' computers.
Tags: Network security, PC security, Data security
IPv6: Oops, it's on by default
Do you know whether your computers are actively using IPv6 or not? Better check, as the bad guys probably already know.
Tags: Network security, PC security, Data security
Understanding risk, threat and vulnerability
IT security, like any other technical field, has its own specialized language developed to make it easier for experts to discuss the subject. It pays to understand this jargon when researching security.
Tags: Network security, PC security, Data security
Basics of secure admin privilege use with Unix
Sometimes, it's worthwhile to get back to basics. Read about the basics of secure administrative privilege use on Unix-like systems.
Tags: Network security, PC security, Data security
Why masking passwords isn't a good idea
A respected individual argued that password masking isn't worth the effort, even detrimental. Michael Kassner digs deeper to see if that's really the case.
Tags: Network security, PC security, Data security
Six principles of practical ciphers
Core ideas of a set of principles familiar to cryptographers and other security experts as Kerckhoffs' Principle, are still relevant today--more than 125 years after they were articulated.
Tags: Network security, PC security, Data security
Intellectual property: Do you have a leak?
Is your organization's intellectual property floating around the Internet? Not sure? Here are some ways to check.
Tags: Network security, PC security, Data security
Microsoft may be Firefox's worst vulnerability
In a surprise move, Microsoft decided to install what could amount to a massive security vulnerability in Firefox without user knowledge. Find out the company's stance, and how you can undo the damage.
Tags: Network security, PC security, Data security
China chooses FreeBSD as basis for secure OS
What OS would one choose as a basis for fortified software platforms? China decided to go open source, and it may be pulling ahead of the West in information warfare preparedness.
Tags: Network security, PC security, Data security
Compromised at boot
It's not just theory any longer--your computer can be compromised at boot, at least for Microsoft Windows and certain Linux distributions.
Tags: Network security, PC security, Data security






