<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" gd:etag="W/&quot;D0IGQHk5fSp7ImA9WxNWFEU.&quot;"><id>tag:blogger.com,1999:blog-14940812</id><updated>2009-10-14T05:58:41.725+04:00</updated><title>4Sec - 4 Seconds -- For Security</title><subtitle type="html">In today's complex world security is elusive. We use the latest electronics, mobiles and internet. It can take as little as 4 Seconds to gain or lose security...</subtitle><link rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/posts/default" /><link rel="alternate" type="text/html" href="http://4sec.blogspot.com/" /><link rel="hub" href="http://pubsubhubbub.appspot.com/" /><link rel="next" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" /><author><name>JS</name><email>noreply@blogger.com</email></author><generator version="7.00" uri="http://www.blogger.com">Blogger</generator><openSearch:totalResults>47</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><link rel="self" href="http://feeds.feedburner.com/4sec-4Seconds--ForSecurity" type="application/atom+xml" /><feedburner:browserFriendly>This is an XML content feed. It is intended to be viewed in a newsreader or syndicated to another site, subject to copyright and fair use.</feedburner:browserFriendly><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com" /><entry gd:etag="W/&quot;A0UHSHw_eip7ImA9WxZQGE8.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-6401104730877608272</id><published>2008-02-24T07:56:00.002+03:00</published><updated>2008-02-24T08:00:39.242+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-02-24T08:00:39.242+03:00</app:edited><title>Failures of Disk Encryption</title><content type="html">"Security is not a product but a skilled continuous process which requires thought..." Jorge Sebastiao, 1999.&lt;br /&gt;&lt;br /&gt;Even for the best technologies there is always a weak point which must be addressed, in this case Disk Encryption as its weakness. The weakness is that even in memory the keys exist in some readable format, if we can get to it, then it is game over:&lt;br /&gt;&lt;br /&gt;&lt;a style="left: 0px ! important; top: 15px ! important;" title="Click here to block this object with Adblock Plus" class="abp-objtab-016027062752206356 visible ontop" href="http://www.youtube.com/v/JDaicPIgn9U&amp;amp;rel=1"&gt;&lt;/a&gt;&lt;a style="left: 0px ! important; top: 15px ! important;" title="Click here to block this object with Adblock Plus" class="abp-objtab-016027062752206356 visible ontop" href="http://www.youtube.com/v/JDaicPIgn9U&amp;amp;rel=1"&gt;&lt;/a&gt;&lt;object height="355" width="425"&gt;&lt;param name="movie" value="http://www.youtube.com/v/JDaicPIgn9U&amp;amp;rel=1"&gt;&lt;param name="wmode" value="transparent"&gt;&lt;embed src="http://www.youtube.com/v/JDaicPIgn9U&amp;amp;rel=1" type="application/x-shockwave-flash" wmode="transparent" height="355" width="425"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-6401104730877608272?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/6401104730877608272/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=6401104730877608272" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/6401104730877608272?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/6401104730877608272?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/IDDBKWEG_64/failures-of-disk-encryption.html" title="Failures of Disk Encryption" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/02/failures-of-disk-encryption.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0ABQ3k-fip7ImA9WxZRFko.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-1847810519158251092</id><published>2008-02-10T23:16:00.000+03:00</published><updated>2008-02-10T23:35:52.756+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-02-10T23:35:52.756+03:00</app:edited><title>Social engineering targets jobseekers</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_edMpyFux25g/R69eZ0lat3I/AAAAAAAAA6Q/JLG9EvTAvAI/s1600-h/jobseeker.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://3.bp.blogspot.com/_edMpyFux25g/R69eZ0lat3I/AAAAAAAAA6Q/JLG9EvTAvAI/s200/jobseeker.jpg" alt="" id="BLOGGER_PHOTO_ID_5165451095322572658" border="0" /&gt;&lt;/a&gt;Social engineering for profit see no limits. This time the social engineer aka Hackers are targeting the job seekers by creating a fake web site which is collecting:&lt;br /&gt;- personal data&lt;br /&gt;- CV information&lt;br /&gt;- fees for visa processing (profit motive)&lt;br /&gt;&lt;br /&gt;Please find the links to the original site:&lt;br /&gt;- &lt;a href="http://www.mol.gov.ae/"&gt;Real Ministry of Labor&lt;/a&gt;  http://www.mol.gov.ae/&lt;br /&gt;and the fake site&lt;br /&gt;- &lt;a href="http://www.uaeministryoflabour.tk/"&gt;Fake Ministry of Labor&lt;/a&gt;   http://www.uaeministryoflabour.tk/&lt;br /&gt;&lt;br /&gt;Real site and Fake site are mirror copies of each other&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_edMpyFux25g/R69flklat4I/AAAAAAAAA6Y/dD5bWv3twWA/s1600-h/uaeminlabor.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://2.bp.blogspot.com/_edMpyFux25g/R69flklat4I/AAAAAAAAA6Y/dD5bWv3twWA/s400/uaeminlabor.jpg" alt="" id="BLOGGER_PHOTO_ID_5165452396697663362" border="0" /&gt;&lt;/a&gt; as pictured below.&lt;br /&gt;&lt;a href="http://www.itp.net/news/510788-fake-uae-ministry-website-targets-jobseekers"&gt;More details about the story can also be found here.&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-1847810519158251092?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/1847810519158251092/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=1847810519158251092" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/1847810519158251092?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/1847810519158251092?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/CkzXG-NaM7Y/social-engineering-targets-jobseekers.html" title="Social engineering targets jobseekers" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/_edMpyFux25g/R69eZ0lat3I/AAAAAAAAA6Q/JLG9EvTAvAI/s72-c/jobseeker.jpg" height="72" width="72" /><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/02/social-engineering-targets-jobseekers.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0IFR34-fip7ImA9WxZREkk.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-8112902557409922967</id><published>2008-02-05T22:18:00.000+03:00</published><updated>2008-02-05T22:58:36.056+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-02-05T22:58:36.056+03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="jorge sebastiao" /><category scheme="http://www.blogger.com/atom/ns#" term="comment" /><category scheme="http://www.blogger.com/atom/ns#" term="security" /><category scheme="http://www.blogger.com/atom/ns#" term="social networks" /><title>Security Issues with social networks</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_edMpyFux25g/R6i_ci_hM0I/AAAAAAAAA5w/PiFMk1iATiM/s1600-h/social-networks.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://2.bp.blogspot.com/_edMpyFux25g/R6i_ci_hM0I/AAAAAAAAA5w/PiFMk1iATiM/s200/social-networks.jpg" alt="" id="BLOGGER_PHOTO_ID_5163587469930738498" border="0" /&gt;&lt;/a&gt;I have been using heavily social networks for the past 3 years, started with linkedin can now reach over 7,000,000 persons online. So the power of the technology is really incredible. Theses are some of the top ones I use:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;linkedin&lt;/li&gt;&lt;li&gt;xing&lt;/li&gt;&lt;li&gt;ecademy&lt;br /&gt;&lt;/li&gt;&lt;li&gt;plaxo&lt;/li&gt;&lt;li&gt;youtube&lt;/li&gt;&lt;li&gt;slideshare&lt;br /&gt;&lt;/li&gt;&lt;li&gt;twitter&lt;/li&gt;&lt;li&gt;mypodcast&lt;/li&gt;&lt;li&gt;lastfm&lt;br /&gt;&lt;/li&gt;&lt;li&gt;myspace&lt;/li&gt;&lt;li&gt;face book&lt;/li&gt;&lt;li&gt;...&lt;/li&gt;&lt;/ul&gt;But these social networks practical experiences are bring in some important questions (which will try to address over this year posts). Some of the main security issues I see are:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;propagation of malware (virus, trojans, keyloggers)&lt;/li&gt;&lt;li&gt;defacement of profile, impact in public image&lt;/li&gt;&lt;li&gt;who owns the data? some networks make it easy to get the data in but very difficult out (usage of images to protect contact information)&lt;/li&gt;&lt;li&gt;how to archive and backup this data? who is responsible?&lt;/li&gt;&lt;li&gt;how to delete the data permanently if required?&lt;br /&gt;&lt;/li&gt;&lt;li&gt;predator attacks against minors and kids (parents must learn new ropes)&lt;/li&gt;&lt;li&gt;identity theft, impersonation&lt;br /&gt;&lt;/li&gt;&lt;li&gt;how to maintain so many user IDs (opendID is trying to address this)&lt;/li&gt;&lt;li&gt;how to move data from one site, application to the other (open social is work on this), some users have seen this usage blocked after using automated conversion, migration tools&lt;br /&gt;&lt;/li&gt;&lt;li&gt;how to do investigations, forensics on so many sites to track down criminals effectively&lt;/li&gt;&lt;li&gt;how to separate between business, and personal lives?&lt;/li&gt;&lt;li&gt;effects on corporate information&lt;br /&gt;&lt;/li&gt;&lt;li&gt;leakages&lt;/li&gt;&lt;li&gt;effects on corporate productivity&lt;br /&gt;&lt;/li&gt;&lt;/ul&gt;In short network, do business, have fun, but becarefull out-there.&lt;br /&gt;&lt;br /&gt;More details on:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://blogs.csoonline.com/social_networking_security_risks"&gt;CSO Blog&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href="http://onguardonline.gov/socialnetworking.html"&gt;Parents Guide&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href="http://www.securityfocus.com/news/7739"&gt;At security focus&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href="http://www.us-cert.gov/cas/tips/ST06-003.html"&gt;USA Cert&lt;/a&gt;&lt;br /&gt;&lt;/li&gt;&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-8112902557409922967?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/8112902557409922967/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=8112902557409922967" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/8112902557409922967?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/8112902557409922967?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/7N8rT4vB5ag/security-issues-with-social-networks.html" title="Security Issues with social networks" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/_edMpyFux25g/R6i_ci_hM0I/AAAAAAAAA5w/PiFMk1iATiM/s72-c/social-networks.jpg" height="72" width="72" /><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/02/security-issues-with-social-networks.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0cDSXo4cSp7ImA9WxZSGEU.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-7143696752776271876</id><published>2008-02-01T20:54:00.000+03:00</published><updated>2008-02-01T21:04:38.439+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-02-01T21:04:38.439+03:00</app:edited><title>2008 Security Priorities</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_edMpyFux25g/R6NdSC_hMzI/AAAAAAAAA5k/Sh-XZFzFtLY/s1600-h/2008-security-priorities.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 410px; height: 329px;" src="http://3.bp.blogspot.com/_edMpyFux25g/R6NdSC_hMzI/AAAAAAAAA5k/Sh-XZFzFtLY/s400/2008-security-priorities.jpg" alt="" id="BLOGGER_PHOTO_ID_5162072162519036722" border="0" /&gt;&lt;/a&gt;Just finished conducting a poll with the help of Plaxo on security  priorities of 2008. About 9% of the persons requested replied (from a poll size of approximately 2000 persons 183 replied).&lt;br /&gt;&lt;br /&gt;The top 3 areas of focus are therefore:&lt;br /&gt;- Governance and compliance&lt;br /&gt;- Infrastructure security&lt;br /&gt;- Business Continuity and Disaster Recovery (as mentioned by some in the survey comments, the BCP, DRP issue is much bigger then being just part of security, we all agreed on this ...)&lt;br /&gt;&lt;br /&gt;So what are your plans for security for 2008... Be ready as this year will be full  of events.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-7143696752776271876?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/7143696752776271876/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=7143696752776271876" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/7143696752776271876?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/7143696752776271876?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/xMiYV7PI3co/2008-security-priorities.html" title="2008 Security Priorities" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/_edMpyFux25g/R6NdSC_hMzI/AAAAAAAAA5k/Sh-XZFzFtLY/s72-c/2008-security-priorities.jpg" height="72" width="72" /><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/02/2008-security-priorities.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CU8MQXw4cSp7ImA9WxZSF0w.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-6386484978039709574</id><published>2008-01-30T20:18:00.000+03:00</published><updated>2008-01-30T20:24:40.239+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-30T20:24:40.239+03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="esgulf" /><category scheme="http://www.blogger.com/atom/ns#" term="identity theft" /><category scheme="http://www.blogger.com/atom/ns#" term="jorge sebastiao" /><category scheme="http://www.blogger.com/atom/ns#" term="security" /><category scheme="http://www.blogger.com/atom/ns#" term="awareness" /><title>Identity Theft Slidecast</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_edMpyFux25g/R6Cxxi_hMyI/AAAAAAAAA5c/Wjf08q69MH4/s1600-h/idtheft.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://2.bp.blogspot.com/_edMpyFux25g/R6Cxxi_hMyI/AAAAAAAAA5c/Wjf08q69MH4/s200/idtheft.jpg" alt="" id="BLOGGER_PHOTO_ID_5161320637731517218" border="0" /&gt;&lt;/a&gt;Identity Theft continuous to become an increase threat to security and must be address by using regular awareness sessions with end-users.&lt;br /&gt;The following is an identity theft slidecast and podcast which is simultaneously published on  &lt;a href="http://www.slideshare.net/jorges/identify-theft-v30/"&gt;slideshare (slides and audio)&lt;/a&gt; and &lt;a href="http://esgulf.mypodcast.com/2008/01/Indentity_Theft_security_Awareness_Presentation-76621.html"&gt;mypodcast (audit only) &lt;/a&gt;&lt;br /&gt;...&lt;br /&gt;&lt;div style="width: 425px; text-align: left;" id="__ss_231865"&gt;&lt;object style="margin: 0px;" height="355" width="425"&gt;&lt;param name="movie" value="http://static.slideshare.net/swf/ssplayer2.swf?doc=identify-theft-v30-1200594491926206-3"&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;param name="allowScriptAccess" value="always"&gt;&lt;embed src="http://static.slideshare.net/swf/ssplayer2.swf?doc=identify-theft-v30-1200594491926206-3" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" height="355" width="425"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;div style="font-size: 11px; font-family: tahoma,arial; height: 26px; padding-top: 2px;"&gt;&lt;a href="http://www.slideshare.net/?src=embed"&gt;&lt;img src="http://static.slideshare.net/swf/logo_embd.png" style="border: 0px none ; margin-bottom: -5px;" alt="SlideShare" /&gt;&lt;/a&gt; | &lt;a href="http://www.slideshare.net/jorges/identify-theft-v30?src=embed" title="View 'Identify Theft' on SlideShare"&gt;View&lt;/a&gt; | &lt;a href="http://www.slideshare.net/upload?src=embed"&gt;Upload your own&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-6386484978039709574?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/6386484978039709574/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=6386484978039709574" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/6386484978039709574?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/6386484978039709574?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/LogjzvEALfY/identity-theft-slidecast.html" title="Identity Theft Slidecast" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/_edMpyFux25g/R6Cxxi_hMyI/AAAAAAAAA5c/Wjf08q69MH4/s72-c/idtheft.jpg" height="72" width="72" /><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/identity-theft-slidecast.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkUFQXg5cCp7ImA9WxZSF00.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-3867156177963916156</id><published>2008-01-29T18:27:00.000+03:00</published><updated>2008-01-30T18:50:10.628+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-30T18:50:10.628+03:00</app:edited><title>Are you ready for Cyberwar?</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_edMpyFux25g/R6CYyy_hMxI/AAAAAAAAA44/XWud1m0ZqKk/s1600-h/cyber-warriors.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 127px; height: 185px;" src="http://3.bp.blogspot.com/_edMpyFux25g/R6CYyy_hMxI/AAAAAAAAA44/XWud1m0ZqKk/s200/cyber-warriors.jpg" alt="" id="BLOGGER_PHOTO_ID_5161293171415659282" border="0" /&gt;&lt;/a&gt;Last year I wrote about the events of cyberwar between Estonia and Russia. Other ones have happened recently as well such as:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;between USA and China, (more covert activities and experimentation)&lt;/li&gt;&lt;li&gt;between AlQaeda and USA&lt;br /&gt;&lt;/li&gt;&lt;li&gt;between North and South Korea&lt;br /&gt;&lt;/li&gt;&lt;li&gt;between India and Pakistan&lt;/li&gt;&lt;li&gt;....&lt;/li&gt;&lt;/ul&gt;In any cyberwar there are: "cyberwarriors", targets (key infrastructure  such as financial institutions, government, utilities) and collateral damage (potentially your innocent business). So are we ready? Do we understand the dangers? A recent story in CSO magazine highlight the threat level and readiness of given countries as they focus resources for cyberwar.&lt;br /&gt;&lt;table _base_target="_top" border="1"&gt;&lt;tbody _base_target="_top"&gt;&lt;tr&gt; &lt;td&gt;Country&lt;/td&gt; &lt;td&gt;Est Mil Budget&lt;/td&gt; &lt;td&gt;Status&lt;/td&gt; &lt;td&gt;Est Threat&lt;/td&gt;&lt;/tr&gt; &lt;tr&gt; &lt;td&gt;China&lt;/td&gt; &lt;td&gt;$56B&lt;/td&gt; &lt;td&gt;complex&lt;/td&gt; &lt;td&gt;4.78&lt;/td&gt;&lt;/tr&gt; &lt;tr&gt;&lt;td&gt;Russia&lt;/td&gt;&lt;td&gt;$44B&lt;/td&gt;&lt;td&gt;complex&lt;/td&gt;&lt;td&gt;4.39&lt;/td&gt;&lt;/tr&gt; &lt;tr&gt;&lt;td&gt;Iran&lt;/td&gt;&lt;td&gt;$9.7B&lt;/td&gt;&lt;td&gt;advanced&lt;/td&gt;&lt;td&gt;3.79&lt;/td&gt;&lt;/tr&gt; &lt;tr&gt; &lt;td&gt;N Korea&lt;/td&gt; &lt;td&gt;$5.2B&lt;/td&gt; &lt;td&gt;advanced&lt;/td&gt; &lt;td&gt;3.03&lt;/td&gt;&lt;/tr&gt; &lt;tr&gt;&lt;td&gt;Libya&lt;/td&gt;&lt;td&gt;$1.3B&lt;/td&gt;&lt;td&gt;advanced&lt;/td&gt;&lt;td&gt;2.86&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;from this table we notice both China and Russia devoting a substantial military budget and having acquired a complex infrastructure with associated Threat level (ranked from 1 to 5, 5 being highest)&lt;br /&gt;&lt;a href="http://www2.csoonline.com/exclusives/column.html?CID=33496&amp;amp;=nlt_csoupdate"&gt;More details on this story can be found here.&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-3867156177963916156?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/3867156177963916156/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=3867156177963916156" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/3867156177963916156?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/3867156177963916156?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/a8ENZaEJkwg/are-you-ready-for-cyberwar.html" title="Are you ready for Cyberwar?" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/_edMpyFux25g/R6CYyy_hMxI/AAAAAAAAA44/XWud1m0ZqKk/s72-c/cyber-warriors.jpg" height="72" width="72" /><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/are-you-ready-for-cyberwar.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CkMFQH84eCp7ImA9WxZSFUk.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-1649805387687106984</id><published>2008-01-26T02:01:00.000+03:00</published><updated>2008-01-28T20:13:31.130+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-28T20:13:31.130+03:00</app:edited><title>UK government mandates encrypted Laptops</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_edMpyFux25g/R54LQC_hMvI/AAAAAAAAA4M/lRHue9DFuEw/s1600-h/Laptopencryption.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://2.bp.blogspot.com/_edMpyFux25g/R54LQC_hMvI/AAAAAAAAA4M/lRHue9DFuEw/s200/Laptopencryption.jpg" alt="" id="BLOGGER_PHOTO_ID_5160574593322267378" border="0" /&gt;&lt;/a&gt;In response to the one of the largest disclosures of information in history the UK government responds with policy which mandates the usage of encryption on laptops and media devices when taken away from the offices.&lt;br /&gt;An email was sent to all UK civil servants (government employees) which informs them of the new policy--"prohibts laptops and hard drives containing sensitive data from being taken out of the government buildings unless the devices are encrypted.&lt;br /&gt;More details on this story are contained here:&lt;br /&gt;- &lt;a href="http://www.vnunet.com/vnunet/news/2207901/whitehall-locks-laptops"&gt;Vunet News&lt;/a&gt;&lt;br /&gt;- &lt;a href="http://www.mod.uk/DefenceInternet/DefenceNews/DefencePolicyAndBusiness/BrowneAnnouncesReviewOnModInformationSecurity.htm"&gt;MOD information Security&lt;/a&gt;&lt;br /&gt;This is good news for organization like &lt;a href="http://www.secude.com"&gt;Secude &lt;/a&gt;which offer advanced solutions for &lt;a href="http://www.secude.com/htm/584/en/Products.htm?Produkt=2533"&gt;hard disk encryption and laptop encryption.&lt;br /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-1649805387687106984?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/1649805387687106984/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=1649805387687106984" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/1649805387687106984?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/1649805387687106984?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/PFXIYSjgKxc/uk-government-mandates-encrypted.html" title="UK government mandates encrypted Laptops" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/_edMpyFux25g/R54LQC_hMvI/AAAAAAAAA4M/lRHue9DFuEw/s72-c/Laptopencryption.jpg" height="72" width="72" /><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/uk-government-mandates-encrypted.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0ABSH8ycSp7ImA9WxZSFU4.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-2469193053429166713</id><published>2008-01-22T19:12:00.001+03:00</published><updated>2008-01-28T20:02:39.199+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-28T20:02:39.199+03:00</app:edited><title>Largest Bank Fraud $ 7 Billion dollars</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/_edMpyFux25g/R54Ati_hMtI/AAAAAAAAA38/ccJ6C25o9wM/s1600-h/jeromekerviel.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://4.bp.blogspot.com/_edMpyFux25g/R54Ati_hMtI/AAAAAAAAA38/ccJ6C25o9wM/s200/jeromekerviel.jpg" alt="" id="BLOGGER_PHOTO_ID_5160563005500502738" border="0" /&gt;&lt;/a&gt;French bank SOCGEN, Societe General is the victim of the largest bank fraud of the year total amount $7Billion (over €5billion Euros). A junior trader Jerome Kerviel makes trades that cause the bank substantial losses. Jerome is capable of hidding is actions by modifying the information in the Banks computers.&lt;br /&gt;&lt;br /&gt;The trader was able to create fictitious accounts to hide is actions; and support this with falsified documents. In short massive risk, massive losses and total lack of appropriate controls.&lt;br /&gt;&lt;br /&gt;In security there is a simple concept known as dual control; under this control critical system transactions of system information can not be updated by a single individual but requires approval and verification from another party or employee in the organization (these controls are contained in the most basic and simple accounting systems). Why were such controls absent or ignored, I am sure the investigations and postmortem analysis will provide plenty of reading....&lt;br /&gt;D.K. Matai good friend and Chairman of &lt;a href="http://www.mi2g.net/cgi/mi2g/press/240108.php"&gt;Asymmetric Threats also discusses the topic in MI2G press release postings&lt;/a&gt;.&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.socgen.com"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://1.bp.blogspot.com/_edMpyFux25g/R54Duy_hMuI/AAAAAAAAA4E/Jnd9_yR0ugY/s200/socgen-logo.jpg" alt="" id="BLOGGER_PHOTO_ID_5160566325510222562" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Some more recent updates on the story are contained here:&lt;br /&gt;- &lt;a href="http://www.reuters.com/article/businessNews/idUSL2816064620080128"&gt;Reuters Time Line&lt;/a&gt;&lt;br /&gt;- &lt;a href="http://www.telegraph.co.uk/money/main.jhtml?xml=/money/2008/01/24/bcnsocgen924.xml"&gt;Telegraph UK&lt;/a&gt;&lt;br /&gt;- &lt;a href="http://www.socgen.com/sg/file/actualiteig/homeSC_3/fraudnote.pdf"&gt;the company explanation&lt;/a&gt;&lt;br /&gt;- &lt;a href="http://www.ft.com/cms/s/0/bd9f55d6-ca4b-11dc-a960-000077b07658.html"&gt;Financial Times&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-2469193053429166713?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/2469193053429166713/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=2469193053429166713" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/2469193053429166713?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/2469193053429166713?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/UOxE9gxsGVo/largest-bank-fraud-7-billion-dollars.html" title="Largest Bank Fraud $ 7 Billion dollars" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/_edMpyFux25g/R54Ati_hMtI/AAAAAAAAA38/ccJ6C25o9wM/s72-c/jeromekerviel.jpg" height="72" width="72" /><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/largest-bank-fraud-7-billion-dollars.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0QGRHk6fyp7ImA9WxZTFkk.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-4939041898077081503</id><published>2008-01-17T23:59:00.000+03:00</published><updated>2008-01-18T12:42:05.717+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-18T12:42:05.717+03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="security now" /><category scheme="http://www.blogger.com/atom/ns#" term="policy" /><category scheme="http://www.blogger.com/atom/ns#" term="security" /><category scheme="http://www.blogger.com/atom/ns#" term="podcast" /><category scheme="http://www.blogger.com/atom/ns#" term="awareness" /><title>Security for the iPod generation</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.grc.com/securitynow.htm"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://4.bp.blogspot.com/_edMpyFux25g/R5Btc1_GwFI/AAAAAAAAA2U/5qPHyD3BB58/s200/sn_security.gif" alt="" id="BLOGGER_PHOTO_ID_5156741915634745426" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;The iPod generation likes to stay informed while on the move by downloading music, book, news, podcasts to their portable device. The following Podcast on security gives you a good source to stay in tune with security while on the move "Security Now!". The example of this podcast, talks about:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;latest virus and trojans&lt;/li&gt;&lt;li&gt;corporate security&lt;/li&gt;&lt;li&gt;security policies&lt;/li&gt;&lt;/ul&gt;&lt;a href="http://www.grc.com/sn/SN-127.htm"&gt;The text transcript Security Now Jan 17&lt;/a&gt; oryou can listen by  clicking/higlight icon...&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://media.grc.com/sn/SN-127.mp3"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer; width: 139px; height: 43px;" src="http://3.bp.blogspot.com/_edMpyFux25g/R5BzUl_GwII/AAAAAAAAA2s/FYAWzY--l7g/s200/podcast.gif" alt="" id="BLOGGER_PHOTO_ID_5156748370970591362" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.grc.com/securitynow.htm"&gt;Security now &lt;/a&gt;&lt;a href="http://www.grc.com/securitynow.htm"&gt;full site can be found here...&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-4939041898077081503?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/4939041898077081503/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=4939041898077081503" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/4939041898077081503?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/4939041898077081503?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/2PzXBS1L5ko/security-for-ipod-generation.html" title="Security for the iPod generation" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/_edMpyFux25g/R5Btc1_GwFI/AAAAAAAAA2U/5qPHyD3BB58/s72-c/sn_security.gif" height="72" width="72" /><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/security-for-ipod-generation.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CkEBRXc-eip7ImA9WxZTFkg.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-8656211543475925162</id><published>2008-01-17T02:40:00.000+03:00</published><updated>2008-01-18T13:04:14.952+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-18T13:04:14.952+03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="psychology" /><category scheme="http://www.blogger.com/atom/ns#" term="bruce schneiner" /><category scheme="http://www.blogger.com/atom/ns#" term="security" /><category scheme="http://www.blogger.com/atom/ns#" term="podcast" /><title>Bruce Schneier on Security And Psychology</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.archive.org/download/SecurityAndPsychologyByBruceSchneier/securityandpsychology_64kb.mp3"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://2.bp.blogspot.com/_edMpyFux25g/R5B07V_GwJI/AAAAAAAAA20/yfi-Of9MZ70/s200/book-cover.jpg" alt="" id="BLOGGER_PHOTO_ID_5156750136202150034" border="0" /&gt;&lt;/a&gt;Bruce Schneier visited the Kingdom of Bahrain for the first time in 2005 for the conference HITB 2005 organized by &lt;a href="http://www.esgulf.com/pages/pastevents.html"&gt;E-Security Gulf Group - eSgulf&lt;/a&gt;. It was Bruce first visit to Middle East, we also toke the time to visit Riyadh in the Kingdom of Saudi Arabia as well. During this he presented security in a practical in modern way. He also authored the book beyond fear distributed during the conference. In security Psychology plays an important part to achieve the objectives of success.&lt;br /&gt;At Penguicon 2007 during last year Bruce addresses Security And Psychology the podcast of this talk can be listened here...&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.archive.org/download/SecurityAndPsychologyByBruceSchneier/securityandpsychology_64kb.mp3"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer;" src="http://3.bp.blogspot.com/_edMpyFux25g/R5B5el_GwLI/AAAAAAAAA3E/73Ff8hn5AE0/s200/listen-podcast.png" alt="" id="BLOGGER_PHOTO_ID_5156755139839049906" border="0" /&gt;&lt;/a&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.archive.org/download/SecurityAndPsychologyByBruceSchneier/securityandpsychology_64kb.mp3"&gt;&lt;br /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-8656211543475925162?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/8656211543475925162/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=8656211543475925162" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/8656211543475925162?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/8656211543475925162?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/fbT5Ow_iFSI/bruce-schneier-on-security-and.html" title="Bruce Schneier on Security And Psychology" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/_edMpyFux25g/R5B07V_GwJI/AAAAAAAAA20/yfi-Of9MZ70/s72-c/book-cover.jpg" height="72" width="72" /><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/bruce-schneier-on-security-and.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkAMR3YzcCp7ImA9WxZTFkk.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-8656464607351039363</id><published>2008-01-15T21:37:00.000+03:00</published><updated>2008-01-18T11:26:26.888+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-18T11:26:26.888+03:00</app:edited><title>Are you the passenger or the pilot</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_edMpyFux25g/R5Bf7l_GwDI/AAAAAAAAA14/9BLZOGc8ypo/s1600-h/cockpitboeing787.gif"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 258px; height: 206px;" src="http://3.bp.blogspot.com/_edMpyFux25g/R5Bf7l_GwDI/AAAAAAAAA14/9BLZOGc8ypo/s200/cockpitboeing787.gif" alt="" id="BLOGGER_PHOTO_ID_5156727050752933938" border="0" /&gt;&lt;/a&gt;&lt;span style="font-size:100%;"&gt;When you get in the seat of your airplane today you have a complete entertainment and communication system which gives you more then you expected. According to&lt;/span&gt;&lt;span style=";font-family:Arial;font-size:100%;"  &gt; FAA: Boeing's New 787 May Be Vulnerable to Hacker  Attack&lt;/span&gt; &lt;div&gt;&lt;span style=";font-family:Arial;font-size:100%;"  &gt;According to the &lt;a href="http://www.thefederalregister.com/d.p/2007-12-28-E7-25075"&gt;FAA document published in the  Federal Register&lt;/a&gt;. Vulnerability exists because  the plane's computer systems is connected to the passenger network with the  flight-safety, control and navigation network. It also connects to the airline's  business and administrative-support network, which communicates maintenance  issues to ground crews.&lt;/span&gt;&lt;/div&gt; &lt;div&gt; &lt;/div&gt; &lt;div&gt;&lt;span style=";font-family:Arial;font-size:100%;"  &gt;The design "allows new kinds of passenger  connectivity to previously isolated data networks connected to systems that  perform functions required for the safe operation of the airplane," says the FAA  document. "Because of this new passenger connectivity, the proposed data-network  design and integration may result in security vulnerabilities from intentional  or unintentional corruption of data and systems critical to the safety and  maintenance of the airplane."&lt;/span&gt;&lt;/div&gt; &lt;div&gt; &lt;/div&gt;   &lt;div align="left"&gt;&lt;span style=";font-family:Arial;font-size:100%;"  &gt;The information is published in a "special  conditions" document that the FAA produces when it encounters new aircraft  designs and technologies that aren't addressed by existing regulations and  standards. Also more details here...&lt;/span&gt; &lt;/div&gt; &lt;div align="left"&gt;&lt;span style=";font-family:Arial;font-size:100%;"  &gt;&lt;a href="http://www.wired.com/politics/security/news/2008/01/dreamliner_security"&gt;http://www.wired.com/politics/security/news/2008/01/dreamliner_security&lt;/a&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span style="color: rgb(0, 0, 255);font-family:Arial;font-size:85%;"  &gt;&lt;/span&gt; &lt;/div&gt; &lt;div dir="ltr" align="left"&gt;&lt;span style="font-size:85%;"&gt;&lt;br /&gt;&lt;/span&gt;  &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-8656464607351039363?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/8656464607351039363/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=8656464607351039363" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/8656464607351039363?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/8656464607351039363?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/PD2eJDrpLd4/are-you-passenger-or-pilot.html" title="Are you the passenger or the pilot" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/_edMpyFux25g/R5Bf7l_GwDI/AAAAAAAAA14/9BLZOGc8ypo/s72-c/cockpitboeing787.gif" height="72" width="72" /><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/are-you-passenger-or-pilot.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkcHRns4fyp7ImA9WxZTFE0.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-2886021573334658127</id><published>2008-01-14T02:22:00.000+03:00</published><updated>2008-01-15T16:33:57.537+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-15T16:33:57.537+03:00</app:edited><title>Top 10 Data Breaches of 2007</title><content type="html">2007 was a year were several information records were broken for quantities of private information being leaked or hacked...&lt;br /&gt;The Chief Security Officer - CSO magazine top 10 are:&lt;br /&gt;1. TJX Credit cards&lt;br /&gt;Victims: Millions of bargain shoppers worldwide&lt;br /&gt;2. Her Majesty’s Revenue and Customs -- One Regrets the Error&lt;br /&gt;Victims: 25 million&lt;br /&gt;3. TSA, 2 of 2 - Thieves stole a computer hard drive &lt;br /&gt;Victims: 100,000&lt;br /&gt;4. The Nature Conservancy and Recycled Data&lt;br /&gt;Victims: 14,000&lt;br /&gt;5. Swedish Urology Group - Doctors lost 3 drives containing patients personal info&lt;br /&gt;Victims: "Hundreds"&lt;br /&gt;6. Shaw’s Supermarket -- Passwords&lt;br /&gt;Victims: 472 store employees&lt;br /&gt;7. TSA 1 of 2 Doing DHS Proud!&lt;br /&gt;Victims: 3,930&lt;br /&gt;8. Indianapolis Power and Light&lt;br /&gt;Victims: 3,000&lt;br /&gt;9. Commerce Bank of Wichita, Kansas&lt;br /&gt;Victims: 20&lt;br /&gt;10. Monster.com -- CISO looking for New Job&lt;br /&gt;Victims: 1.3 million&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www2.csoonline.com/exclusives/column.html?CID=33366"&gt;Full details are here.... CSO site&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-2886021573334658127?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/2886021573334658127/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=2886021573334658127" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/2886021573334658127?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/2886021573334658127?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/oOOatBLi-lY/top-10-data-breaches-of-2007.html" title="Top 10 Data Breaches of 2007" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/top-10-data-breaches-of-2007.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CUYERngyfyp7ImA9WxZTFE0.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-8951025457107272434</id><published>2008-01-13T02:14:00.000+03:00</published><updated>2008-01-15T16:18:27.697+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-15T16:18:27.697+03:00</app:edited><title>Fear as a tool</title><content type="html">Fear can be used as a very effective tool for home land security. The biggest users of this tool are the politicians in every country. The media amplifies the news being broadcast and feeds it for public consumption; so always:&lt;br /&gt;- beware&lt;br /&gt;- ask, question&lt;br /&gt;- investigate&lt;br /&gt;- collaborate from multiple sources (eliminate duplicates)&lt;br /&gt;- use common sense&lt;br /&gt;- mis-information is used as a tool&lt;br /&gt;&lt;br /&gt;&lt;object height="355" width="425"&gt;&lt;param name="movie" value="http://www.youtube.com/v/ka5FdP-gNF0&amp;amp;rel=1"&gt;&lt;param name="wmode" value="transparent"&gt;&lt;embed src="http://www.youtube.com/v/ka5FdP-gNF0&amp;amp;rel=1" type="application/x-shockwave-flash" wmode="transparent" height="355" width="425"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-8951025457107272434?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/8951025457107272434/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=8951025457107272434" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/8951025457107272434?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/8951025457107272434?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/AwKUX_2l8TI/fear-as-tool.html" title="Fear as a tool" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/fear-as-tool.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkIEQnw9eCp7ImA9WxZTEEo.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-277978241141118797</id><published>2008-01-11T11:39:00.000+03:00</published><updated>2008-01-11T21:01:43.260+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-11T21:01:43.260+03:00</app:edited><title>Security Awareness Calendar 2008 on Slide Share</title><content type="html">Added a security awareness calendar and introduction presentation(s) on slide share.&lt;br /&gt;One security tip for each month of the year. You can download the PPT and custimize it for your own organization. Have a safe 2008.&lt;br /&gt;&lt;br /&gt;&lt;div style="width:425px;text-align:left" id="__ss_224916"&gt;&lt;object style="margin:0px" width="425" height="355"&gt;&lt;param name="movie" value="http://static.slideshare.net/swf/ssplayer2.swf?doc=2008-security-awareness-calendar-new-1200074244689105-2"/&gt;&lt;param name="allowFullScreen" value="true"/&gt;&lt;param name="allowScriptAccess" value="always"/&gt;&lt;embed src="http://static.slideshare.net/swf/ssplayer2.swf?doc=2008-security-awareness-calendar-new-1200074244689105-2" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="355"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;div style="font-size:11px;font-family:tahoma,arial;height:26px;padding-top:2px;"&gt;&lt;a href="http://www.slideshare.net/?src=embed"&gt;&lt;img src="http://static.slideshare.net/swf/logo_embd.png" style="border:0px none;margin-bottom:-5px" alt="SlideShare"/&gt;&lt;/a&gt; | &lt;a href="http://www.slideshare.net/jorges/2008-security-awareness-calendar-new" title="View '2008 Security Awareness Calendar - New' on SlideShare"&gt;View&lt;/a&gt; | &lt;a href="http://www.slideshare.net/upload"&gt;Upload your own&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-277978241141118797?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/277978241141118797/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=277978241141118797" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/277978241141118797?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/277978241141118797?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/bXFJJ-m7h0w/profile-presentation-on-slide-share.html" title="Security Awareness Calendar 2008 on Slide Share" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/profile-presentation-on-slide-share.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0QFRXw8eCp7ImA9WxZTEE0.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-5776813959546794787</id><published>2008-01-10T13:13:00.000+03:00</published><updated>2008-01-11T00:41:54.270+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-11T00:41:54.270+03:00</app:edited><title>Is my LCD screen secure?</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_edMpyFux25g/R4XwJF_Gq9I/AAAAAAAAAAg/7pFk-nyFlrE/s1600-h/R1250-Receiver_medium.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 154px; height: 177px;" src="http://2.bp.blogspot.com/_edMpyFux25g/R4XwJF_Gq9I/AAAAAAAAAAg/7pFk-nyFlrE/s200/R1250-Receiver_medium.jpg" alt="" id="BLOGGER_PHOTO_ID_5153789387611745234" border="0" /&gt;&lt;/a&gt;&lt;span style="font-weight: bold;"&gt;Can someone see your computer LCD screen, behind a wall?&lt;/span&gt;&lt;br /&gt;The answer is yes, someone can recreate and see your screen information. If the person, company or government organization has the know how... The technology required to do it is freely available. This can be done yes... Because the technology we use today emits "wireless" waves which can then be amplified, captured, processed and enhanced to &lt;a href="http://en.wikipedia.org/wiki/Reverse_engineer"&gt;"reverse engineer"&lt;/a&gt; the original information.&lt;br /&gt;This kind of research is not new, it was done a few years back under the names of "&lt;a href="http://en.wikipedia.org/wiki/TEMPEST"&gt;TEMPEST&lt;/a&gt;" and "&lt;a href="http://en.wikipedia.org/wiki/Van_Eck_phreaking"&gt;Van Eck&lt;/a&gt;", for older &lt;a href="http://en.wikipedia.org/wiki/Cathode_ray_tube"&gt;CRT&lt;/a&gt;&lt;a href="http://en.wikipedia.org/wiki/Cathode_ray_tube"&gt; screens&lt;/a&gt;.&lt;br /&gt;Markus Kuhn a researcher from Cambridge University, published a paper on this some time back. &lt;span class="txt_18px_bold"&gt;&lt;a href="http://www.tfot.info/pod/234/reading-your-screen-through-a-wall.html"&gt;Reading your Screen through a Wall&lt;/a&gt;.&lt;/span&gt; The technology is low cost and could easily be put together.&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_edMpyFux25g/R4Xzv1_Gq-I/AAAAAAAAAAo/kJc4k_YAVQ0/s1600-h/screen-accross-rooms.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 353px; height: 267px;" src="http://1.bp.blogspot.com/_edMpyFux25g/R4Xzv1_Gq-I/AAAAAAAAAAo/kJc4k_YAVQ0/s200/screen-accross-rooms.jpg" alt="" id="BLOGGER_PHOTO_ID_5153793351866559458" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;A result sample of the screen can be seen here...&lt;br /&gt;&lt;img src="file:///C:/Users/jorge/AppData/Local/Temp/moz-screenshot.jpg" alt="" /&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-5776813959546794787?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/5776813959546794787/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=5776813959546794787" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/5776813959546794787?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/5776813959546794787?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/MNBhFvuVqT0/is-my-lcd-screen-secure.html" title="Is my LCD screen secure?" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/_edMpyFux25g/R4XwJF_Gq9I/AAAAAAAAAAg/7pFk-nyFlrE/s72-c/R1250-Receiver_medium.jpg" height="72" width="72" /><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/is-my-lcd-screen-secure.html</feedburner:origLink></entry><entry gd:etag="W/&quot;Dk4GSH07cSp7ImA9WB9aGUw.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-7035868202623198703</id><published>2008-01-10T01:10:00.000+03:00</published><updated>2008-01-10T00:42:09.309+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-10T00:42:09.309+03:00</app:edited><title>Technology, people and data sharing</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://dataportability.org/basemedia/images/logo.png"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 352px; height: 72px;" src="http://dataportability.org/basemedia/images/logo.png" alt="" border="0" /&gt;&lt;/a&gt;The number of sites we use keeps growing. Many times we have to re-enter the same information again and again. So data portability, data harvesting, data sharing, data migration, date integration is important; what about security in privacy. Some web sites like face book have monitoring which identify automated tools and will try to stop them. The approach is good but it may turn some powerful users away. &lt;a href="http://scobleizer.com/2008/01/05/plaxo-the-social-monster/"&gt;Check out this users experience with technology.&lt;/a&gt;   &lt;a href="http://www.networkworld.com/newsletters/gwm/2008/0107msg1.html?nlhtcomms=ts_010808&amp;amp;nladname=010808unifiedcommunicationsal"&gt;Also discussed here.&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Some important announcements about progress in this area are coming form &lt;a href="http://www.readwriteweb.com/archives/goog-fb-data.php"&gt;Google, Facebook and&lt;/a&gt; data &lt;a href="http://dataportability.org/"&gt;portability.org&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-7035868202623198703?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/7035868202623198703/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=7035868202623198703" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/7035868202623198703?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/7035868202623198703?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/ezWeaLxNs00/technology-people-and-data-sharing.html" title="Technology, people and data sharing" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/technology-people-and-data-sharing.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0AAQXc4fCp7ImA9WB9aGEo.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-6462683739105191532</id><published>2008-01-09T02:21:00.000+03:00</published><updated>2008-01-09T12:42:20.934+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-09T12:42:20.934+03:00</app:edited><title>iPhone Virus - Trojan</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://tbn0.google.com/images?q=tbn:AaWJZbhjD6s-CM:http://computershopper.com/shoptalk/i/iphone_home.gif"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 90px; height: 149px;" src="http://tbn0.google.com/images?q=tbn:AaWJZbhjD6s-CM:http://computershopper.com/shoptalk/i/iphone_home.gif" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;The new iPhone is very tightly controlled by "Apple". Even this environment, virus are possible, no one is immune to all virus even the iPhone. The first virus for the iPhone is out.&lt;br /&gt;The first warnings about this new virus were posted on on the iPhone  modification forum &lt;a href="http://modmyifone.com/"&gt;ModMyiFone.com&lt;/a&gt; and then on &lt;a href="http://news.zdnet.com/2424-9595_22-182554.html"&gt;Zdnet News.&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Since this is a first, it is important for users to pay attention when installing new applications on the device. All applications must come from trusted sources.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-6462683739105191532?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/6462683739105191532/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=6462683739105191532" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/6462683739105191532?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/6462683739105191532?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/mwLcw0c56Tg/jphone-virus-trojan.html" title="iPhone Virus - Trojan" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/jphone-virus-trojan.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEAFRXszfCp7ImA9WB9aGEo.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-617204168732804213</id><published>2008-01-03T02:13:00.000+03:00</published><updated>2008-01-09T12:58:34.584+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-09T12:58:34.584+03:00</app:edited><title>Human Element</title><content type="html">The human element continues to lead the pace in security. There is a daily struggle towards more security and less risk...&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://imgs.xkcd.com/comics/network.png"&gt;&lt;img style="cursor: pointer; width: 676px; height: 361px;" src="http://imgs.xkcd.com/comics/network.png" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;1- Network diagram&lt;br /&gt;2- pretty ? Beautiful?&lt;br /&gt;3- Virtual machines accepting all the virus&lt;br /&gt;4- Not a network diagram, but a displays of virus growing&lt;br /&gt;5- Normal people look at aquariums ....&lt;br /&gt;&lt;br /&gt;extracted from &lt;a href="http://xkcd.com/350/"&gt;http://xkcd.com/350/&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-617204168732804213?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/617204168732804213/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=617204168732804213" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/617204168732804213?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/617204168732804213?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/68qupXhCGAU/human-element.html" title="Human Element" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/human-element.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CUcFR304eCp7ImA9WB9aGEo.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-3540971494287152291</id><published>2008-01-02T01:51:00.000+03:00</published><updated>2008-01-09T13:03:36.330+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-09T13:03:36.330+03:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="back security blog mobile website" /><title>I am back and new website for 2008</title><content type="html">After a long absence from blogging it is time to return. As part of the New Year resolution for 2008 I will try to post new blog entries more often. The objective is to bring more security awareness. I will just have to stay up a little longer at night...&lt;br /&gt;Maybe also try and learn new techniques like mobile blogging, more videos, audio blog entries.&lt;br /&gt;&lt;br /&gt;In 2008 it was also time to launch a new web site with a fresh look for&lt;br /&gt;"E-Security Gulf Group" -"eSgulf" details can be found here... &lt;a href="http://www.esgulf.com/"&gt;www.esgulf.com&lt;/a&gt;&lt;br /&gt;eSgulf now has presence in European Union - EU, Middle East and Asia.&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.esgulf.com/"&gt;&lt;img style="cursor: pointer;" src="http://2.bp.blogspot.com/_edMpyFux25g/R4QBOV_Gq8I/AAAAAAAAAAU/QOAWgRjDV94/s200/logopic.gif" alt="" id="BLOGGER_PHOTO_ID_5153245219550309314" border="0" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-3540971494287152291?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/3540971494287152291/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=3540971494287152291" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/3540971494287152291?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/3540971494287152291?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/W89Z534nIew/time-to-be-back-and-wew-website-for.html" title="I am back and new website for 2008" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/_edMpyFux25g/R4QBOV_Gq8I/AAAAAAAAAAU/QOAWgRjDV94/s72-c/logopic.gif" height="72" width="72" /><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/time-to-be-back-and-wew-website-for.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEMEQXY5eCp7ImA9WB9aGEo.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-5506139437945230602</id><published>2008-01-01T01:01:00.000+03:00</published><updated>2008-01-09T12:53:20.820+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-09T12:53:20.820+03:00</app:edited><title>Happy New Year 2008</title><content type="html">&lt;object width="320" height="266" class="BLOG_video_class" id="BLOG_video-53b2cd4db52ca078" classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"&gt;&lt;param name="movie" value="http://www.blogger.com/img/videoplayer.swf?videoUrl=http%3A%2F%2Fvp.video.google.com%2Fvideodownload%3Fversion%3D0%26secureurl%3DqAAAAPEbdexZYqODP9Nt5kZfcH0ualOhZTaNStCzegrCRdzXYxFhurgcYKDv8u0jaPmpvmkf3DeRYU3bwy5Cb90BJtW5a6MARKz7u4nb2VpXHbumvs9RYxF3D8TZjiCFdRXtanq2A6MbfqSZRzwDfte2eat07KxpWqQ4Z_C_pNA3uV_4VY25O4YENnxc6wPonNRlqVY5WMZ722y6M8fxd9xQ-rKR7it3v9Bpg5--8MAh2gDJ%26sigh%3DDdEQ3Yny9L65PneolpaEVvPEVk8%26begin%3D0%26len%3D86400000%26docid%3D0&amp;amp;nogvlm=1&amp;amp;thumbnailUrl=http%3A%2F%2Fvideo.google.com%2FThumbnailServer2%3Fapp%3Dblogger%26contentid%3D53b2cd4db52ca078%26offsetms%3D5000%26itag%3Dw320%26sigh%3Das2w1_GOcQImQb2IRkGIziyRe54&amp;amp;messagesUrl=video.google.com%2FFlashUiStrings.xlb%3Fframe%3Dflashstrings%26hl%3Den"&gt;
&lt;param name="bgcolor" value="#FFFFFF"&gt;
&lt;embed width="320" height="266" src="http://www.blogger.com/img/videoplayer.swf?videoUrl=http%3A%2F%2Fvp.video.google.com%2Fvideodownload%3Fversion%3D0%26secureurl%3DqAAAAPEbdexZYqODP9Nt5kZfcH0ualOhZTaNStCzegrCRdzXYxFhurgcYKDv8u0jaPmpvmkf3DeRYU3bwy5Cb90BJtW5a6MARKz7u4nb2VpXHbumvs9RYxF3D8TZjiCFdRXtanq2A6MbfqSZRzwDfte2eat07KxpWqQ4Z_C_pNA3uV_4VY25O4YENnxc6wPonNRlqVY5WMZ722y6M8fxd9xQ-rKR7it3v9Bpg5--8MAh2gDJ%26sigh%3DDdEQ3Yny9L65PneolpaEVvPEVk8%26begin%3D0%26len%3D86400000%26docid%3D0&amp;amp;nogvlm=1&amp;amp;thumbnailUrl=http%3A%2F%2Fvideo.google.com%2FThumbnailServer2%3Fapp%3Dblogger%26contentid%3D53b2cd4db52ca078%26offsetms%3D5000%26itag%3Dw320%26sigh%3Das2w1_GOcQImQb2IRkGIziyRe54&amp;amp;messagesUrl=video.google.com%2FFlashUiStrings.xlb%3Fframe%3Dflashstrings%26hl%3Den" type="application/x-shockwave-flash"&gt;&lt;/embed&gt;&lt;/object&gt;
&lt;br /&gt;Happy New Year 2008, all the best for the family, friends, colleagues, coworkers, business partners, social networkers.&lt;br /&gt;Welcome to "flat world of 2008"... Be safe and secure.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-5506139437945230602?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="enclosure" type="video/mp4" href="http://www.blogger.com/video-play.mp4?contentId=53b2cd4db52ca078&amp;type=video%2Fmp4" length="0" /><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/5506139437945230602/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=5506139437945230602" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/5506139437945230602?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/5506139437945230602?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/mHjw5o02C_A/happy-new-2008.html" title="Happy New Year 2008" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2008/01/happy-new-2008.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUINQ345eCp7ImA9WB9aGE4.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-3805773931117747043</id><published>2007-10-15T03:02:00.000+04:00</published><updated>2008-01-09T03:13:12.020+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-09T03:13:12.020+03:00</app:edited><title>Power of Google</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.maip.com/media/images/Google%20Logo.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 270px; height: 108px;" src="http://www.maip.com/media/images/Google%20Logo.jpg" alt="" border="0" /&gt;&lt;/a&gt;The power of information comes through its access and ease of use. &lt;span style="font-weight: bold;"&gt;Google &lt;/span&gt;has become synonymous with this. Give us ease of access to information, some time private and confidential.&lt;br /&gt;The two founders and owners of the company have found this out the hard way, by getting some potential embarrassing information published released on the news. &lt;a href="http://www.motherjones.com/news/feature/2006/11/google.html"&gt;Google and personal privacy on the  news.&lt;/a&gt; The power of the Google engines is so deep that even the NSA could benefit from a few tips for future systems.&lt;br /&gt;For those which want to become experts on google more details can be found in the &lt;a href="http://johnny.ihackstuff.com/ghdb.php"&gt;Google Hacking Database.&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-3805773931117747043?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/3805773931117747043/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=3805773931117747043" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/3805773931117747043?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/3805773931117747043?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/4bTjqBEHqLw/power-of-google.html" title="Power of Google" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2007/10/power-of-google.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEENQHc-fip7ImA9WB9aGE4.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-8299618617478868883</id><published>2007-09-22T02:49:00.000+04:00</published><updated>2008-01-09T02:58:11.956+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-09T02:58:11.956+03:00</app:edited><title>Security can be seen from Different perpective</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.proof7.com/p7nyc/images/mit2_070921_ms-thumb.jpg"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 270px; height: 202px;" src="http://www.proof7.com/p7nyc/images/mit2_070921_ms-thumb.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;In today's world quicker readiness and rapid response, can lead to dangerous situations.&lt;br /&gt;One persons "piece of art" in this case a shirt with some circuit board and a few cables can be another persons (the security guard) "nightmare".&lt;br /&gt;A student from Boston college got in trouble for  wearing this shirt at Boston airport. So no only you must address the quantity of liquids you carry but also the potential dangerous look of your wear. &lt;a href="http://www.thebostonchannel.com/news/14171964/detail.html"&gt;More details Boston News.&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-8299618617478868883?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/8299618617478868883/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=8299618617478868883" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/8299618617478868883?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/8299618617478868883?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/gzONJ1H0LiA/security-can-be-seen-from-different.html" title="Security can be seen from Different perpective" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2007/09/security-can-be-seen-from-different.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkAHSXcyfCp7ImA9WB9aGE4.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-8998548166777273599</id><published>2007-08-24T03:22:00.000+04:00</published><updated>2008-01-09T03:32:18.994+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-09T03:32:18.994+03:00</app:edited><title>Estonia cyberwar stories</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://tbn0.google.com/images?q=tbn:pL5Gi5qcu8TCbM:http://www.wiiw.ac.at/img/estonia.gif"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 200px;" src="http://tbn0.google.com/images?q=tbn:pL5Gi5qcu8TCbM:http://www.wiiw.ac.at/img/estonia.gif" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;The more we depend on the technology the more exposed we are when an attack comes about. Estonia and a few friends working in security as well found this out the hard way during the cyberwar launched against this EU country. &lt;a href="http://blog.wired.com/27bstroke6/2007/08/cyber-war-and-e.html"&gt;More detailed information can be found here.&lt;/a&gt;&lt;br /&gt;In a country were technology plays such an important role, better defenses are required, the internet is not only used for banking (&lt;a href="http://thebankwatch.com/2007/05/29/cyber-war-estonia-shut-down-including-focus-on-banks/"&gt;the branch--less bank can have serious consequences when there is no backup plan&lt;/a&gt;) but also for voting, click and elect...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-8998548166777273599?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/8998548166777273599/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=8998548166777273599" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/8998548166777273599?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/8998548166777273599?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/qc8SNqXG3GI/estonia-cyberwar-stories.html" title="Estonia cyberwar stories" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2007/08/estonia-cyberwar-stories.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DU4EQXc5fyp7ImA9WB9aGE4.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-117403592211549186</id><published>2007-03-16T13:05:00.000+03:00</published><updated>2008-01-09T03:18:20.927+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-09T03:18:20.927+03:00</app:edited><title>Security in VoIP matures with new tools</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.hackingvoip.com/he_voip.gif"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 132px; height: 145px;" src="http://www.hackingvoip.com/he_voip.gif" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;span style="font-weight: bold;"&gt;Voice over IP&lt;/span&gt; &lt;span style="font-weight: bold;"&gt;(VoIP)&lt;/span&gt; currently at 50Million users world wide is due to increase to 100Million by 2009. Recently Microsoft also launched a new beta offering into VoIP. All this means security focus on VoIP will become more important. There is an important web site devote to security over VoIP &lt;a href="http://www.voipsa.org/"&gt;VoIPSA.org&lt;/a&gt;. VoIPSA just release a new set of tools to assist with VoIP Security testing. They are grouped as follows:&lt;/p&gt;          &lt;ul&gt;            &lt;li&gt;Sniffing&lt;/li&gt;          &lt;li&gt;Scanning&lt;/li&gt;          &lt;li&gt;Packet Creation&lt;/li&gt;          &lt;li&gt;Fuzzing&lt;/li&gt;          &lt;li&gt;Signal and Media Manipulation&lt;/li&gt;          &lt;li&gt;Tutorials and Presentations&lt;/li&gt;          &lt;/ul&gt;        &lt;p&gt;The tools can be found here &lt;a href="http://www.voipsa.org/Resources/tools.php"&gt;VoIPSA tools&lt;/a&gt;.&lt;br /&gt;            &lt;/p&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-117403592211549186?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/117403592211549186/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=117403592211549186" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/117403592211549186?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/117403592211549186?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/LsYWUf_FoKE/security-in-voip-matures-with-new.html" title="Security in VoIP matures with new tools" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2007/03/security-in-voip-matures-with-new.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0ABQnszfip7ImA9WB9aGUU.&quot;"><id>tag:blogger.com,1999:blog-14940812.post-5335065780260607941</id><published>2007-01-10T19:57:00.000+03:00</published><updated>2008-01-10T20:22:33.586+03:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-01-10T20:22:33.586+03:00</app:edited><title>Voting machines and security</title><content type="html">Even basic computers when not protected correctly, can have serious impact on our daily lives. One of the best examples is elections. Politicians are not always the most liked people given the decision and actions they take. But their election can also be hacked and stolen &lt;a href="http://www.homelandstupidity.us/2006/09/14/election-can-be-stolen-in-under-a-minute-with-diebold-machines/"&gt;by attacking the now used electronic voting machines&lt;/a&gt;. We must then accept the elected decision for the next 3-5 years (or even more) depends on the countries. Critical devices such as voting machines therefore require extra protection, testing and validation before being put in productive usage.&lt;br /&gt;&lt;br /&gt;Both videos can be view in their small version using "snapshoot" by passing with the mouse pointer over the links below.&lt;br /&gt;&lt;a href="http://www.youtube.com/v/aZws98jw67g"&gt;Live example: Video 1 &lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.youtube.com/v/HvwnJqLLgK8"&gt;Funny video: Video 2 &lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;object height="373" width="425"&gt;&lt;param name="movie" value="http://www.youtube.com/v/aZws98jw67g&amp;amp;rel=1&amp;amp;border=1"&gt;&lt;param name="wmode" value="transparent"&gt;&lt;embed src="http://www.youtube.com/v/aZws98jw67g&amp;amp;rel=1&amp;amp;border=1" type="application/x-shockwave-flash" wmode="transparent" height="373" width="425"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;br /&gt;One in a more funny video the results could be remotely changed to satisfy the preferred candidate.&lt;br /&gt;&lt;br /&gt;&lt;object height="373" width="425"&gt;&lt;param name="movie" value="http://www.youtube.com/v/HvwnJqLLgK8&amp;amp;rel=1&amp;amp;border=1"&gt;&lt;param name="wmode" value="transparent"&gt;&lt;embed src="http://www.youtube.com/v/HvwnJqLLgK8&amp;amp;rel=1&amp;amp;border=1" type="application/x-shockwave-flash" wmode="transparent" height="373" width="425"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/14940812-5335065780260607941?l=4sec.blogspot.com'/&gt;&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://4sec.blogspot.com/feeds/5335065780260607941/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=14940812&amp;postID=5335065780260607941" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/5335065780260607941?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/14940812/posts/default/5335065780260607941?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/4sec-4Seconds--ForSecurity/~3/QHRlz-_vDzg/voting-machines-and-security.html" title="Voting machines and security" /><author><name>JS</name><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="09788629947734240208" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://4sec.blogspot.com/2007/01/voting-machines-and-security.html</feedburner:origLink></entry></feed>
