<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>The InfoSec Blog</title>
	
	<link>http://infosecblog.antonaylward.com</link>
	<description>System Integrity: Without Integrity you don't have Security</description>
	<pubDate>Tue, 30 Jun 2009 03:36:49 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6</generator>
	<language>en</language>
			<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.feedburner.com/TheInfosecBlog" type="application/rss+xml" /><feedburner:emailServiceId>TheInfosecBlog</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com" /><item>
		<title>Audit Frequency</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/BtS9nR4rEaU/</link>
		<comments>http://infosecblog.antonaylward.com/2009/06/20/re-iso-27001-security-re-surveillance-audit-frequencey/#comments</comments>
		<pubDate>Sat, 20 Jun 2009 11:59:30 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Risk]]></category>

		<category><![CDATA[Standards]]></category>

		<category><![CDATA[Internal audit]]></category>

		<category><![CDATA[International Organization for Standardization]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=304</guid>
		<description>In one of the forums I subscribe to the question came up &amp;#8220;How often should one carry out an internal audit?&amp;#8221;  There were variations on this to do with external  audits as well.   Lets suppose you aren&amp;#8217;t one of the relicrant types that take the attitude that audits aren&amp;#8217;t necessary or that an audit [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=BtS9nR4rEaU:s-OzkhgKg0I:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=BtS9nR4rEaU:s-OzkhgKg0I:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=BtS9nR4rEaU:s-OzkhgKg0I:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=BtS9nR4rEaU:s-OzkhgKg0I:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=BtS9nR4rEaU:s-OzkhgKg0I:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=BtS9nR4rEaU:s-OzkhgKg0I:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=BtS9nR4rEaU:s-OzkhgKg0I:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=BtS9nR4rEaU:s-OzkhgKg0I:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=BtS9nR4rEaU:s-OzkhgKg0I:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=BtS9nR4rEaU:s-OzkhgKg0I:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2009/06/20/re-iso-27001-security-re-surveillance-audit-frequencey/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2009/06/20/re-iso-27001-security-re-surveillance-audit-frequencey/</feedburner:origLink></item>
		<item>
		<title>Technology does not fix process</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/YmEi3-9DvLA/</link>
		<comments>http://infosecblog.antonaylward.com/2009/06/20/technology-does-not-fix-process/#comments</comments>
		<pubDate>Sat, 20 Jun 2009 11:49:18 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Failures]]></category>

		<category><![CDATA[Human Factors]]></category>

		<category><![CDATA[Incoming]]></category>

		<category><![CDATA[Rants and Raves]]></category>

		<category><![CDATA[Risk]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=315</guid>
		<description>A number of people outside InfoSec have pointed this out to me and I thought I&amp;#8217;d pass it along with a couple of observations.
The first is of course the (ISC)2&amp;#8217;s motto &amp;#8220;Security Transcends Technology&amp;#8221; and the second is Marcus Ranum&amp;#8217;s comment:


&amp;#8220;If you think that technology can solve your problems then you
don&amp;#8217;t understand technology and you [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=YmEi3-9DvLA:G1vWOya8bco:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=YmEi3-9DvLA:G1vWOya8bco:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=YmEi3-9DvLA:G1vWOya8bco:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=YmEi3-9DvLA:G1vWOya8bco:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=YmEi3-9DvLA:G1vWOya8bco:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=YmEi3-9DvLA:G1vWOya8bco:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=YmEi3-9DvLA:G1vWOya8bco:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=YmEi3-9DvLA:G1vWOya8bco:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=YmEi3-9DvLA:G1vWOya8bco:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=YmEi3-9DvLA:G1vWOya8bco:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2009/06/20/technology-does-not-fix-process/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2009/06/20/technology-does-not-fix-process/</feedburner:origLink></item>
		<item>
		<title>Does the Certified Ethical Hacker add value to a CISSP</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/aMeRbh633i0/</link>
		<comments>http://infosecblog.antonaylward.com/2009/06/19/re-cisspforum-would-it-add-value-for-a-cissp-to-do-certified-ethical/#comments</comments>
		<pubDate>Fri, 19 Jun 2009 11:53:17 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Rants and Raves]]></category>

		<category><![CDATA[Security]]></category>

		<category><![CDATA[Social]]></category>

		<category><![CDATA[Certification]]></category>

		<category><![CDATA[Certified Ethical Hacker]]></category>

		<category><![CDATA[Certified Information Systems Security Professional]]></category>

		<category><![CDATA[Employment]]></category>

		<category><![CDATA[Information security]]></category>

		<category><![CDATA[Robert Heinlein]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=303</guid>
		<description>A young colleague asked about the value of the CEH certification.  Would it &amp;#8220;Add Value&amp;#8221; to his existing CISSP?  The syllabus looked interesting to him and he wondered how prospective employers would view this.
This was my reply:
There are TEN domains to the CISSP&amp;#8217;s CBK.  People come to security from
many walks of life [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=aMeRbh633i0:oQAPhWDcA7w:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=aMeRbh633i0:oQAPhWDcA7w:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=aMeRbh633i0:oQAPhWDcA7w:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=aMeRbh633i0:oQAPhWDcA7w:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=aMeRbh633i0:oQAPhWDcA7w:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=aMeRbh633i0:oQAPhWDcA7w:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=aMeRbh633i0:oQAPhWDcA7w:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=aMeRbh633i0:oQAPhWDcA7w:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=aMeRbh633i0:oQAPhWDcA7w:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=aMeRbh633i0:oQAPhWDcA7w:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2009/06/19/re-cisspforum-would-it-add-value-for-a-cissp-to-do-certified-ethical/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2009/06/19/re-cisspforum-would-it-add-value-for-a-cissp-to-do-certified-ethical/</feedburner:origLink></item>
		<item>
		<title>The U.S. has 18 percent of its machines controlled by botnets</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/4iuKOJf4vMk/</link>
		<comments>http://infosecblog.antonaylward.com/2009/05/05/the-us-has-18-percent-of-its-machines-controlled-by-botnets/#comments</comments>
		<pubDate>Tue, 05 May 2009 16:07:30 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Failures]]></category>

		<category><![CDATA[How-to]]></category>

		<category><![CDATA[Rants and Raves]]></category>

		<category><![CDATA[Security]]></category>

		<category><![CDATA[Botnet]]></category>

		<category><![CDATA[Linux]]></category>

		<category><![CDATA[Malware]]></category>

		<category><![CDATA[McAfee]]></category>

		<category><![CDATA[Spam]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=290</guid>
		<description>http://blogs.zdnet.com/BTL/?p=17459&amp;#38;tag=nl.e589
A short while ago I read an article that tried to present both sides of the issue of whether companies should shut down their desktop machines at night.
The &amp;#8216;pro&amp;#8217; was of course the saving of electricity - all good and &amp;#8220;Green&amp;#8220;.
The &amp;#8216;con&amp;#8217; was that this saving would be offset by the cost in time as [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=4iuKOJf4vMk:EpTMqAMGGPo:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=4iuKOJf4vMk:EpTMqAMGGPo:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=4iuKOJf4vMk:EpTMqAMGGPo:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=4iuKOJf4vMk:EpTMqAMGGPo:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=4iuKOJf4vMk:EpTMqAMGGPo:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=4iuKOJf4vMk:EpTMqAMGGPo:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=4iuKOJf4vMk:EpTMqAMGGPo:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=4iuKOJf4vMk:EpTMqAMGGPo:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=4iuKOJf4vMk:EpTMqAMGGPo:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=4iuKOJf4vMk:EpTMqAMGGPo:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2009/05/05/the-us-has-18-percent-of-its-machines-controlled-by-botnets/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2009/05/05/the-us-has-18-percent-of-its-machines-controlled-by-botnets/</feedburner:origLink></item>
		<item>
		<title>Famous Last Words</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/2Nz676weXP8/</link>
		<comments>http://infosecblog.antonaylward.com/2009/04/02/famous-last-words/#comments</comments>
		<pubDate>Thu, 02 Apr 2009 12:33:22 +0000</pubDate>
		<dc:creator>antonaylward</dc:creator>
		
		<category><![CDATA[Failures]]></category>

		<category><![CDATA[Risk]]></category>

		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=283</guid>
		<description>My favourite &amp;#8216;famous last words&amp;#8216; are
&amp;#8220;I wonder what this button is for&amp;#8221;
Mind you, one job I had that worked the graveyard shift, we had a TV
tuned to the late night Axe murder horror movie channel.  They get to
look funny after a while &amp;#8216;cos they are so hackneyed.  Scenes such as
walking backwards though the [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=2Nz676weXP8:NRDu7ZQEZqQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=2Nz676weXP8:NRDu7ZQEZqQ:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=2Nz676weXP8:NRDu7ZQEZqQ:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=2Nz676weXP8:NRDu7ZQEZqQ:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=2Nz676weXP8:NRDu7ZQEZqQ:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=2Nz676weXP8:NRDu7ZQEZqQ:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=2Nz676weXP8:NRDu7ZQEZqQ:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=2Nz676weXP8:NRDu7ZQEZqQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=2Nz676weXP8:NRDu7ZQEZqQ:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=2Nz676weXP8:NRDu7ZQEZqQ:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2009/04/02/famous-last-words/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2009/04/02/famous-last-words/</feedburner:origLink></item>
		<item>
		<title>Vulnerability Management - The Next Fad?</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/UsJ2OHos4_w/</link>
		<comments>http://infosecblog.antonaylward.com/2009/03/16/vulnerability-management-the-next-fad/#comments</comments>
		<pubDate>Mon, 16 Mar 2009 13:22:57 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Human Factors]]></category>

		<category><![CDATA[Security]]></category>

		<category><![CDATA[Social]]></category>

		<category><![CDATA[Computer security]]></category>

		<category><![CDATA[Scanners]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=277</guid>
		<description>The article is at
http://securitywatch.eweek.com/flaws/vulnerability_management_payoff_requires_roadmap.html
but I find it ominous.
Vulnerability management may be the next big thing in terms of IT
security strategy, but deriving the maximum value out of your efforts
requires hard work and a comprehensive plan, industry insiders
recognize.
Well at least the author admits its not the next &amp;#8220;Silver Bullet&amp;#8220;!
Speaking at the SOURCE Boston conference this week, [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=UsJ2OHos4_w:1CNkADfLIAg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=UsJ2OHos4_w:1CNkADfLIAg:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=UsJ2OHos4_w:1CNkADfLIAg:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=UsJ2OHos4_w:1CNkADfLIAg:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=UsJ2OHos4_w:1CNkADfLIAg:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=UsJ2OHos4_w:1CNkADfLIAg:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=UsJ2OHos4_w:1CNkADfLIAg:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=UsJ2OHos4_w:1CNkADfLIAg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=UsJ2OHos4_w:1CNkADfLIAg:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=UsJ2OHos4_w:1CNkADfLIAg:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2009/03/16/vulnerability-management-the-next-fad/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2009/03/16/vulnerability-management-the-next-fad/</feedburner:origLink></item>
		<item>
		<title>Couldn’t happen to a nicer buncha guys …</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/ApsPSsr--Dg/</link>
		<comments>http://infosecblog.antonaylward.com/2009/03/05/couldnt-happen-to-a-nicer-buncha-guys/#comments</comments>
		<pubDate>Thu, 05 Mar 2009 13:01:28 +0000</pubDate>
		<dc:creator>antonaylward</dc:creator>
		
		<category><![CDATA[Failures]]></category>

		<category><![CDATA[Security]]></category>

		<category><![CDATA[Social]]></category>

		<category><![CDATA[Botnet]]></category>

		<category><![CDATA[Consultants]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=266</guid>
		<description>An independent security consultant describes how vulnerabilities in
unpatched releases of the Zeus crimeware kit are being exploited by
hackers in order to steal resources from their fellow criminals. The
security researcher has come across an interesting posting made by a
botnet runner, who asks for help to secure his infrastructure after
being compromised several times by other hackers.
http://news.softpedia.com/news/Cyber-criminals-Target-Their-Own-Kind-105728.shtml&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=ApsPSsr--Dg:iHDVvGUV3bQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=ApsPSsr--Dg:iHDVvGUV3bQ:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=ApsPSsr--Dg:iHDVvGUV3bQ:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=ApsPSsr--Dg:iHDVvGUV3bQ:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=ApsPSsr--Dg:iHDVvGUV3bQ:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=ApsPSsr--Dg:iHDVvGUV3bQ:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=ApsPSsr--Dg:iHDVvGUV3bQ:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=ApsPSsr--Dg:iHDVvGUV3bQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=ApsPSsr--Dg:iHDVvGUV3bQ:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=ApsPSsr--Dg:iHDVvGUV3bQ:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2009/03/05/couldnt-happen-to-a-nicer-buncha-guys/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2009/03/05/couldnt-happen-to-a-nicer-buncha-guys/</feedburner:origLink></item>
		<item>
		<title>Yes! It’s the cardboard PC!</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/lR2MVauHrGw/</link>
		<comments>http://infosecblog.antonaylward.com/2009/02/05/yes-its-the-cardboard-pc/#comments</comments>
		<pubDate>Thu, 05 Feb 2009 14:30:23 +0000</pubDate>
		<dc:creator>antonaylward</dc:creator>
		
		<category><![CDATA[Humour]]></category>

		<category><![CDATA[Bamboo]]></category>

		<category><![CDATA[Hemp]]></category>

		<category><![CDATA[Risk analysis]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=262</guid>
		<description>I would hate to have to do a risk analysis on the use of these!
Oh, and then there&amp;#8217;s Bamboo!
http://www.reghardware.co.uk/2008/12/02/asus_bamboo_laptop/
What&amp;#8217;s next?  Soy?  Hemp?
Related articles by Zemanta

Carry Your Laptop and Still Be Eco-Friendly (geeksugar.com)&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=lR2MVauHrGw:RGTLQP9JCkA:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=lR2MVauHrGw:RGTLQP9JCkA:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=lR2MVauHrGw:RGTLQP9JCkA:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=lR2MVauHrGw:RGTLQP9JCkA:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=lR2MVauHrGw:RGTLQP9JCkA:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=lR2MVauHrGw:RGTLQP9JCkA:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=lR2MVauHrGw:RGTLQP9JCkA:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=lR2MVauHrGw:RGTLQP9JCkA:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=lR2MVauHrGw:RGTLQP9JCkA:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=lR2MVauHrGw:RGTLQP9JCkA:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2009/02/05/yes-its-the-cardboard-pc/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2009/02/05/yes-its-the-cardboard-pc/</feedburner:origLink></item>
		<item>
		<title>Network Segmentation is Common Sense</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/uaOGJPd08WM/</link>
		<comments>http://infosecblog.antonaylward.com/2009/01/26/network-segmentation/#comments</comments>
		<pubDate>Mon, 26 Jan 2009 14:41:31 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Rants and Raves]]></category>

		<category><![CDATA[Risk]]></category>

		<category><![CDATA[Security]]></category>

		<category><![CDATA[Backup]]></category>

		<category><![CDATA[Common sense]]></category>

		<category><![CDATA[Downtime]]></category>

		<category><![CDATA[Individual Standards]]></category>

		<category><![CDATA[ISO/IEC 27001]]></category>

		<category><![CDATA[National Institute of Standards and Technology]]></category>

		<category><![CDATA[NIST]]></category>

		<category><![CDATA[Site Management]]></category>

		<category><![CDATA[Standards]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=246</guid>
		<description>On one of the professional forums I subscribe to there was a request for &amp;#8220;references&amp;#8221; to justify the separation of development and production networks and facilities.&amp;#160; It seems some managers &amp;#8220;don&amp;#8217;t get it&amp;#8221; when it comes to things like change control and undocumented and unplanned changes.&amp;#160; Many guidelines discuss this, but its seems that some [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=uaOGJPd08WM:ovYF59SaLvs:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=uaOGJPd08WM:ovYF59SaLvs:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=uaOGJPd08WM:ovYF59SaLvs:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=uaOGJPd08WM:ovYF59SaLvs:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=uaOGJPd08WM:ovYF59SaLvs:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=uaOGJPd08WM:ovYF59SaLvs:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=uaOGJPd08WM:ovYF59SaLvs:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=uaOGJPd08WM:ovYF59SaLvs:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=uaOGJPd08WM:ovYF59SaLvs:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=uaOGJPd08WM:ovYF59SaLvs:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2009/01/26/network-segmentation/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2009/01/26/network-segmentation/</feedburner:origLink></item>
		<item>
		<title>This should go down really well in homes for the deaf</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/01-EnM6axmw/</link>
		<comments>http://infosecblog.antonaylward.com/2009/01/19/this-should-go-down-really-well-in-homes-for-the-deaf/#comments</comments>
		<pubDate>Mon, 19 Jan 2009 14:24:41 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Failures]]></category>

		<category><![CDATA[Human Factors]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=240</guid>
		<description>http://www.reghardware.co.uk/2009/01/17/ces_video_hitachi_gesture_tv/
Every casual comment will make the TV do something (probably undesired).
Not every security flaw is an opportunity for hackers!&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=01-EnM6axmw:hbYKBUio-1I:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=01-EnM6axmw:hbYKBUio-1I:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=01-EnM6axmw:hbYKBUio-1I:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=01-EnM6axmw:hbYKBUio-1I:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=01-EnM6axmw:hbYKBUio-1I:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=01-EnM6axmw:hbYKBUio-1I:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=01-EnM6axmw:hbYKBUio-1I:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=01-EnM6axmw:hbYKBUio-1I:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=01-EnM6axmw:hbYKBUio-1I:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=01-EnM6axmw:hbYKBUio-1I:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2009/01/19/this-should-go-down-really-well-in-homes-for-the-deaf/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2009/01/19/this-should-go-down-really-well-in-homes-for-the-deaf/</feedburner:origLink></item>
		<item>
		<title>The IDE of Choice: VI</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/HhVHmdmi8-c/</link>
		<comments>http://infosecblog.antonaylward.com/2008/12/17/re-cisspforum-evil-msdn-pricing-leads-to-bad-programming/#comments</comments>
		<pubDate>Wed, 17 Dec 2008 14:24:48 +0000</pubDate>
		<dc:creator>antonaylward</dc:creator>
		
		<category><![CDATA[Human Factors]]></category>

		<category><![CDATA[Editing]]></category>

		<category><![CDATA[Editors]]></category>

		<category><![CDATA[Integrated development environment]]></category>

		<category><![CDATA[Linux]]></category>

		<category><![CDATA[Open source]]></category>

		<category><![CDATA[Ruby]]></category>

		<category><![CDATA[Text editor]]></category>

		<category><![CDATA[Vi]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=235</guid>
		<description>I do a bit of work on the fringe of the Ruby community, and the Mac is popular there along with an IDE or two.  However I&amp;#8217;m beginning to see a few articles to the effect that the IDE is getting in the way after a point and that reverting to your favourite text [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=HhVHmdmi8-c:i3gAhh7pVUw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=HhVHmdmi8-c:i3gAhh7pVUw:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=HhVHmdmi8-c:i3gAhh7pVUw:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=HhVHmdmi8-c:i3gAhh7pVUw:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=HhVHmdmi8-c:i3gAhh7pVUw:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=HhVHmdmi8-c:i3gAhh7pVUw:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=HhVHmdmi8-c:i3gAhh7pVUw:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=HhVHmdmi8-c:i3gAhh7pVUw:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=HhVHmdmi8-c:i3gAhh7pVUw:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=HhVHmdmi8-c:i3gAhh7pVUw:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2008/12/17/re-cisspforum-evil-msdn-pricing-leads-to-bad-programming/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2008/12/17/re-cisspforum-evil-msdn-pricing-leads-to-bad-programming/</feedburner:origLink></item>
		<item>
		<title>Stolen laptop leads to drug bust</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/qX0ShQDbvX0/</link>
		<comments>http://infosecblog.antonaylward.com/2008/12/01/stolen-laptop-leads-to-drug-bust/#comments</comments>
		<pubDate>Mon, 01 Dec 2008 13:06:17 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Crime]]></category>

		<category><![CDATA[Security]]></category>

		<category><![CDATA[Best Buy]]></category>

		<category><![CDATA[Compaq]]></category>

		<category><![CDATA[HP]]></category>

		<category><![CDATA[insurance]]></category>

		<category><![CDATA[Laptop]]></category>

		<category><![CDATA[Law Enforcement]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=223</guid>
		<description>So when I see a laptop valued at $9,000 I get to wonder. If this hadn't been recovered and the owner tried to claim that amount on his insurance policy I wonder what the reaction of the insurance company would have been.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=qX0ShQDbvX0:Uz1aRuGAYHI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=qX0ShQDbvX0:Uz1aRuGAYHI:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=qX0ShQDbvX0:Uz1aRuGAYHI:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=qX0ShQDbvX0:Uz1aRuGAYHI:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=qX0ShQDbvX0:Uz1aRuGAYHI:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=qX0ShQDbvX0:Uz1aRuGAYHI:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=qX0ShQDbvX0:Uz1aRuGAYHI:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=qX0ShQDbvX0:Uz1aRuGAYHI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=qX0ShQDbvX0:Uz1aRuGAYHI:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=qX0ShQDbvX0:Uz1aRuGAYHI:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2008/12/01/stolen-laptop-leads-to-drug-bust/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2008/12/01/stolen-laptop-leads-to-drug-bust/</feedburner:origLink></item>
		<item>
		<title>People under extreme stress may behave unpredictably and have limited capacity for rational thought</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/9B74MAXjynk/</link>
		<comments>http://infosecblog.antonaylward.com/2008/11/27/people-under-stress/#comments</comments>
		<pubDate>Thu, 27 Nov 2008 14:10:16 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Human Factors]]></category>

		<category><![CDATA[Security]]></category>

		<category><![CDATA[Amanda Ripley]]></category>

		<category><![CDATA[Business Continuity Planning]]></category>

		<category><![CDATA[CISSP]]></category>

		<category><![CDATA[Decision making]]></category>

		<category><![CDATA[Disaster]]></category>

		<category><![CDATA[training]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=210</guid>
		<description>"People under extreme stress may behave unpredictably and have limited capacity for rational thought"&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=9B74MAXjynk:dse1X96qjtM:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=9B74MAXjynk:dse1X96qjtM:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=9B74MAXjynk:dse1X96qjtM:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=9B74MAXjynk:dse1X96qjtM:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=9B74MAXjynk:dse1X96qjtM:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=9B74MAXjynk:dse1X96qjtM:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=9B74MAXjynk:dse1X96qjtM:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=9B74MAXjynk:dse1X96qjtM:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=9B74MAXjynk:dse1X96qjtM:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=9B74MAXjynk:dse1X96qjtM:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2008/11/27/people-under-stress/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2008/11/27/people-under-stress/</feedburner:origLink></item>
		<item>
		<title>Going Rogue</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/xwBbhVrs5kY/</link>
		<comments>http://infosecblog.antonaylward.com/2008/11/11/going-rogue/#comments</comments>
		<pubDate>Tue, 11 Nov 2008 16:02:24 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Crime]]></category>

		<category><![CDATA[Failures]]></category>

		<category><![CDATA[Human Factors]]></category>

		<category><![CDATA[Risk]]></category>

		<category><![CDATA[Allied Irish Bank]]></category>

		<category><![CDATA[Business]]></category>

		<category><![CDATA[Canadian Imperial Bank of Commerce]]></category>

		<category><![CDATA[CIBC]]></category>

		<category><![CDATA[fraud]]></category>

		<category><![CDATA[John Rusnak]]></category>

		<category><![CDATA[Morgan Stanley]]></category>

		<category><![CDATA[Nick Leason]]></category>

		<category><![CDATA[Toshihide Iguchi]]></category>

		<category><![CDATA[United Kingdom]]></category>

		<category><![CDATA[WorldCom]]></category>

		<category><![CDATA[Yasuo Hamanaka]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=192</guid>
		<description>In this article at TechRepublic, Tom Olzak tries to address the issue of insider threat by talking about why your employees might &amp;#8216;go rogue&amp;#8217;.   I think he completely misses the point by discussing the motivation for spies and convicted traitors.  This is a different class of people from toss that commit financial fraud [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=xwBbhVrs5kY:2AD1Ab-hGkA:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=xwBbhVrs5kY:2AD1Ab-hGkA:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=xwBbhVrs5kY:2AD1Ab-hGkA:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=xwBbhVrs5kY:2AD1Ab-hGkA:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=xwBbhVrs5kY:2AD1Ab-hGkA:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=xwBbhVrs5kY:2AD1Ab-hGkA:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=xwBbhVrs5kY:2AD1Ab-hGkA:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=xwBbhVrs5kY:2AD1Ab-hGkA:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=xwBbhVrs5kY:2AD1Ab-hGkA:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=xwBbhVrs5kY:2AD1Ab-hGkA:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2008/11/11/going-rogue/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2008/11/11/going-rogue/</feedburner:origLink></item>
		<item>
		<title>Internet addiction defined</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/gTXdPddPEBU/</link>
		<comments>http://infosecblog.antonaylward.com/2008/11/10/internet-addiction-defined/#comments</comments>
		<pubDate>Mon, 10 Nov 2008 14:52:10 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Human Factors]]></category>

		<category><![CDATA[Politics &amp; Economics]]></category>

		<category><![CDATA[Social]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=182</guid>
		<description>http://www.engadget.com/2008/11/10/internet-addiction-defined-in-china-entire-engadget-staff-now-o/
Is a &amp;#8220;dependency&amp;#8221; the same as an &amp;#8220;addiction&amp;#8220;?
Many businesses and business processes, to say nothing of Government, are now _dependent_ on the Internet.  Its a key part of our economy, not just our lifestyle.  The world could possibly give up cell-phones but I doubt it could give up the &amp;#8216;Net and continue without [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=gTXdPddPEBU:GCIIYKAvpbs:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=gTXdPddPEBU:GCIIYKAvpbs:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=gTXdPddPEBU:GCIIYKAvpbs:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=gTXdPddPEBU:GCIIYKAvpbs:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=gTXdPddPEBU:GCIIYKAvpbs:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=gTXdPddPEBU:GCIIYKAvpbs:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=gTXdPddPEBU:GCIIYKAvpbs:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=gTXdPddPEBU:GCIIYKAvpbs:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=gTXdPddPEBU:GCIIYKAvpbs:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=gTXdPddPEBU:GCIIYKAvpbs:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2008/11/10/internet-addiction-defined/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2008/11/10/internet-addiction-defined/</feedburner:origLink></item>
		<item>
		<title>Cyber-terrorism will be punishable by death</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/q2VJfZA647Q/</link>
		<comments>http://infosecblog.antonaylward.com/2008/11/10/cyber-terrorism-will-be-punishable-by-death/#comments</comments>
		<pubDate>Mon, 10 Nov 2008 12:53:39 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Crime]]></category>

		<category><![CDATA[Politics &amp; Economics]]></category>

		<category><![CDATA[Security]]></category>

		<category><![CDATA[Terrorism]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=179</guid>
		<description>http://www.dailytimes.com.pk/default.asp?page=2008\117\story_7-11-2008_pg1_8
Only in Pakistan?  Shame!
The penalty is limited to an offence that ‘causes death of any person’,
according to the ordinance that will be considered effective from
September 29.
And, thinking of the &amp;#8220;for want of a nail&amp;#8221; poem, how indirect does this causality have to be?  OK, I can see zapping someone&amp;#8217;s pacemaker, but how about [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=q2VJfZA647Q:8ZUl9PSDAHI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=q2VJfZA647Q:8ZUl9PSDAHI:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=q2VJfZA647Q:8ZUl9PSDAHI:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=q2VJfZA647Q:8ZUl9PSDAHI:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=q2VJfZA647Q:8ZUl9PSDAHI:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=q2VJfZA647Q:8ZUl9PSDAHI:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=q2VJfZA647Q:8ZUl9PSDAHI:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=q2VJfZA647Q:8ZUl9PSDAHI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=q2VJfZA647Q:8ZUl9PSDAHI:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=q2VJfZA647Q:8ZUl9PSDAHI:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2008/11/10/cyber-terrorism-will-be-punishable-by-death/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2008/11/10/cyber-terrorism-will-be-punishable-by-death/</feedburner:origLink></item>
		<item>
		<title>New Words</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/wc-i2DKrhJk/</link>
		<comments>http://infosecblog.antonaylward.com/2008/10/20/new-words/#comments</comments>
		<pubDate>Mon, 20 Oct 2008 14:14:54 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Humour]]></category>

		<category><![CDATA[British English]]></category>

		<category><![CDATA[Language]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=174</guid>
		<description>A non-native English speaker I was in correspondence with thanked me for helping expand his vocabulary.
It occurs to me that understanding English grammar and the use of prefixes and suffixes cn also help expnad your vocabulary.  Here are some words not often found IN dictionaries. (Of course this is British English spelling,  American English [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=wc-i2DKrhJk:NI23A0CCmAc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=wc-i2DKrhJk:NI23A0CCmAc:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=wc-i2DKrhJk:NI23A0CCmAc:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=wc-i2DKrhJk:NI23A0CCmAc:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=wc-i2DKrhJk:NI23A0CCmAc:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=wc-i2DKrhJk:NI23A0CCmAc:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=wc-i2DKrhJk:NI23A0CCmAc:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=wc-i2DKrhJk:NI23A0CCmAc:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=wc-i2DKrhJk:NI23A0CCmAc:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=wc-i2DKrhJk:NI23A0CCmAc:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2008/10/20/new-words/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2008/10/20/new-words/</feedburner:origLink></item>
		<item>
		<title>All I Need To Know About Project Management I Learnt From My Cats</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/t0Py4kRuSd4/</link>
		<comments>http://infosecblog.antonaylward.com/2008/08/22/all-i-need-to-know-about-project-management-i-learnt-from-my-cats/#comments</comments>
		<pubDate>Fri, 22 Aug 2008 14:29:24 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Human Factors]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=159</guid>
		<description>The most interesting, creative, fun and innovative people don&amp;#8217;t run
with the pack.
You&amp;#8217;re a leader because your team believes you are worth following,
not because you are appointed leader.
You don&amp;#8217;t lead by giving orders, you lead by motivation.
Don&amp;#8217;t expect to generate consensus easily, and be very suspicious when it occurs other than spontaneously.
&amp;#8216;Who&amp;#8217;s to blame&amp;#8217; is the [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=t0Py4kRuSd4:XGXVJsTGHGc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=t0Py4kRuSd4:XGXVJsTGHGc:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=t0Py4kRuSd4:XGXVJsTGHGc:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=t0Py4kRuSd4:XGXVJsTGHGc:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=t0Py4kRuSd4:XGXVJsTGHGc:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=t0Py4kRuSd4:XGXVJsTGHGc:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=t0Py4kRuSd4:XGXVJsTGHGc:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=t0Py4kRuSd4:XGXVJsTGHGc:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=t0Py4kRuSd4:XGXVJsTGHGc:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=t0Py4kRuSd4:XGXVJsTGHGc:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2008/08/22/all-i-need-to-know-about-project-management-i-learnt-from-my-cats/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2008/08/22/all-i-need-to-know-about-project-management-i-learnt-from-my-cats/</feedburner:origLink></item>
		<item>
		<title>Are Mission Statements High Entropy?</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/rFBAjXIS0kw/</link>
		<comments>http://infosecblog.antonaylward.com/2008/08/22/are-mission-statements-high-entropy/#comments</comments>
		<pubDate>Fri, 22 Aug 2008 14:08:35 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Human Factors]]></category>

		<category><![CDATA[Social]]></category>

		<category><![CDATA[Baroque Cycle]]></category>

		<category><![CDATA[Cryptonomicon]]></category>

		<category><![CDATA[English language]]></category>

		<category><![CDATA[Neal Stephenson]]></category>

		<category><![CDATA[Racter]]></category>

		<category><![CDATA[Snowcrash]]></category>

		<category><![CDATA[Talk radio]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=158</guid>
		<description>My friend and fellow security droid Gary Hinson asked why so many corporate mission statements end up being utter gibberish, with more meanings than bits.
Hmm.
A &amp;#8216;bit&amp;#8217; being, according to /usr/share/units.dat, a measure of entropy.
No Gary, I think that corporate mission statements, like political party policies, are high entropy. and with a high negative correlation with [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=rFBAjXIS0kw:QMVFqcw5COQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=rFBAjXIS0kw:QMVFqcw5COQ:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=rFBAjXIS0kw:QMVFqcw5COQ:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=rFBAjXIS0kw:QMVFqcw5COQ:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=rFBAjXIS0kw:QMVFqcw5COQ:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=rFBAjXIS0kw:QMVFqcw5COQ:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=rFBAjXIS0kw:QMVFqcw5COQ:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=rFBAjXIS0kw:QMVFqcw5COQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=rFBAjXIS0kw:QMVFqcw5COQ:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=rFBAjXIS0kw:QMVFqcw5COQ:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2008/08/22/are-mission-statements-high-entropy/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2008/08/22/are-mission-statements-high-entropy/</feedburner:origLink></item>
		<item>
		<title>Billion and Billions.</title>
		<link>http://feedproxy.google.com/~r/TheInfosecBlog/~3/hAr5r6TmlJY/</link>
		<comments>http://infosecblog.antonaylward.com/2008/08/22/billion-and-billions/#comments</comments>
		<pubDate>Fri, 22 Aug 2008 14:00:24 +0000</pubDate>
		<dc:creator>Anton Aylward</dc:creator>
		
		<category><![CDATA[Crime]]></category>

		<category><![CDATA[Human Factors]]></category>

		<category><![CDATA[Social]]></category>

		<category><![CDATA[Confidence trick]]></category>

		<guid isPermaLink="false">http://infosecblog.antonaylward.com/?p=154</guid>
		<description>No, not a Google its a Sagan!
I&amp;#8217;m sure that like me you get mails that read something like
From:Mr.John Lewis
Phone No: 44-702 409 9061
This is to inform you that your funds of US$15 Million
has been approved for immediate delivery to you.
For the purpose of clarification,you are advised to
reconfirm your Full Names,Direct Telephone
Numbers,Physical Address with Zip Code [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=hAr5r6TmlJY:2nRLKWqOSTg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=hAr5r6TmlJY:2nRLKWqOSTg:D7DqB2pKExk"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=hAr5r6TmlJY:2nRLKWqOSTg:D7DqB2pKExk" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=hAr5r6TmlJY:2nRLKWqOSTg:wF9xT3WuBAs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=hAr5r6TmlJY:2nRLKWqOSTg:wF9xT3WuBAs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=hAr5r6TmlJY:2nRLKWqOSTg:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=hAr5r6TmlJY:2nRLKWqOSTg:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=hAr5r6TmlJY:2nRLKWqOSTg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/TheInfosecBlog?a=hAr5r6TmlJY:2nRLKWqOSTg:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/TheInfosecBlog?i=hAr5r6TmlJY:2nRLKWqOSTg:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</description>
		<wfw:commentRss>http://infosecblog.antonaylward.com/2008/08/22/billion-and-billions/feed/</wfw:commentRss>
		<feedburner:origLink>http://infosecblog.antonaylward.com/2008/08/22/billion-and-billions/</feedburner:origLink></item>
	</channel>
</rss>
