<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:creativeCommons="http://backend.userland.com/creativeCommonsRssModule" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0" xml:base="http://www.roer.com">
<channel>
 <title>Roer.Com Information Security Blog - Information security for entrepreneurs</title>
 <link>http://www.roer.com</link>
 <description>To collect, discuss and inform about information security related topics. Main target user are business managers, entrepreneurs and others interested in the topic!</description>
 <language>en</language>
<creativeCommons:license>http://creativecommons.org/licenses/by-sa/3.0/</creativeCommons:license><image><link>http://www.roer.com/</link><url>http://www.roer.com/files/logo.gif</url><title>Roer.com</title></image><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.feedburner.com/kairoer" type="application/rss+xml" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com" /><item>
 <title>Speaking at Security 2009</title>
 <link>http://feedproxy.google.com/~r/kairoer/~3/vrblScPdBa0/486</link>
 <description>&lt;p&gt;I will be giving a speak at the Security 2009 even in Oslo, October 1st 2009.&lt;/p&gt;
&lt;p&gt;My topic is strategic use of information security from a top level executive point of view. I will post link etc as soon as it is available.&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=vrblScPdBa0:c9-OUBqHSZs:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=vrblScPdBa0:c9-OUBqHSZs:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=vrblScPdBa0:c9-OUBqHSZs:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=vrblScPdBa0:c9-OUBqHSZs:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=vrblScPdBa0:c9-OUBqHSZs:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=vrblScPdBa0:c9-OUBqHSZs:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=vrblScPdBa0:c9-OUBqHSZs:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=vrblScPdBa0:c9-OUBqHSZs:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=vrblScPdBa0:c9-OUBqHSZs:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=vrblScPdBa0:c9-OUBqHSZs:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/kairoer/~4/vrblScPdBa0" height="1" width="1"/&gt;</description>
 <comments>http://www.roer.com/node/486#comments</comments>
 <category domain="http://www.roer.com/taxonomy/term/18">security</category>
 <category domain="http://www.roer.com/taxonomy/term/523">Security 2009</category>
 <category domain="http://www.roer.com/taxonomy/term/19">speaking</category>
 <pubDate>Tue, 30 Jun 2009 09:38:38 +0000</pubDate>
 <dc:creator>Kai</dc:creator>
 <guid isPermaLink="false">486 at http://www.roer.com</guid>
<feedburner:origLink>http://www.roer.com/node/486</feedburner:origLink></item>
<item>
 <title>Destruction as a state of mind</title>
 <link>http://feedproxy.google.com/~r/kairoer/~3/d6jRdCmCcqo/485</link>
 <description>&lt;p&gt;This is a great image of the humans extraordinary destructive creativity.&lt;/p&gt;
&lt;p&gt;&lt;a href="http://www.behance.net/Gallery/FM365/242634"&gt;&lt;img src="http://behance.vo.llnwd.net/profiles5/91675/projects/242634/916751244607992.gif" width="300" height="375" /&gt;&lt;/a&gt;&lt;/p&gt;
&lt;p&gt; &lt;/p&gt;
&lt;p&gt;More great images (about humans, not security nor weapons) here: http://www.behance.net/Gallery/FM365/242634&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=d6jRdCmCcqo:DiyoTVez-Lk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=d6jRdCmCcqo:DiyoTVez-Lk:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=d6jRdCmCcqo:DiyoTVez-Lk:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=d6jRdCmCcqo:DiyoTVez-Lk:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=d6jRdCmCcqo:DiyoTVez-Lk:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=d6jRdCmCcqo:DiyoTVez-Lk:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=d6jRdCmCcqo:DiyoTVez-Lk:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=d6jRdCmCcqo:DiyoTVez-Lk:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=d6jRdCmCcqo:DiyoTVez-Lk:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=d6jRdCmCcqo:DiyoTVez-Lk:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/kairoer/~4/d6jRdCmCcqo" height="1" width="1"/&gt;</description>
 <comments>http://www.roer.com/node/485#comments</comments>
 <category domain="http://www.roer.com/taxonomy/term/3">Human touch</category>
 <category domain="http://www.roer.com/taxonomy/term/18">security</category>
 <pubDate>Mon, 29 Jun 2009 17:25:59 +0000</pubDate>
 <dc:creator>Kai</dc:creator>
 <guid isPermaLink="false">485 at http://www.roer.com</guid>
<feedburner:origLink>http://www.roer.com/node/485</feedburner:origLink></item>
<item>
 <title>What security pro's do while waiting for the plane</title>
 <link>http://feedproxy.google.com/~r/kairoer/~3/ZGRsyVu6XL8/484</link>
 <description>&lt;br /&gt;&lt;br /&gt;&lt;center&gt;&lt;a href='http://picasaweb.google.com/kairoer/MyBlogPhotos02#5350181276859208946'&gt;&lt;img src='http://lh5.ggpht.com/_P_5y6M7oaiw/Sj-phlsjlPI/AAAAAAAAEr8/ENbGkJiDfmI/s288/iphone_photo.jpg' border='0' width='280' height='281' style='margin:5px'&gt;&lt;/a&gt;&lt;/center&gt;&lt;br /&gt;I am spending quality time at an airport again. The bar serves one of my favorite beers - Guinness. And as in all bars in an airport, there are plenty of other people who mend their thirst with alcohol. 

Like this bloke across my table. I know his name, The company he is with, what he does there and similar info. He knows nothing about me. This is not uncommon, mind you. Getting people to talk is simply a matter of listening. Asking the right questions. Buying another beer. The same mechanisms you play when picking up someone on the town.

So why do I care to write about it this time? 

This blue eyed man with light blond hair, a tendensy of loosing some of it on the top, and a face that could belong to a 25 and a 45 year old. Resting carelessly on the chair, his Dell XPS laptop on the table and his beer in his hand. Midlevel executive, perhaps big accounts sales guy. 

He is another security guy. And now I know his story. The story of his customers, what he did in this country, where his favorite office is and who they are currently combatting in court. 

I must admit it is very tempting to spill his gut all over my blog, but I do not believe he would learn anything at all. So I will only ask you - that is you, not him - to remember that keeping your mouth shut comes with te job. Even when you drink a beer at a foreign airport. 

Who knows - perhaps I where paid by your employer to check how much you talk? Then you would know. What if I where a competitor? A customer? Someone who see an opportunity? 

Awareness is not only for the others. Awareness is for us too. Right?


-- Post From My iPhone&lt;br /&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=ZGRsyVu6XL8:TOh9FepdMhU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=ZGRsyVu6XL8:TOh9FepdMhU:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=ZGRsyVu6XL8:TOh9FepdMhU:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=ZGRsyVu6XL8:TOh9FepdMhU:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=ZGRsyVu6XL8:TOh9FepdMhU:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=ZGRsyVu6XL8:TOh9FepdMhU:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=ZGRsyVu6XL8:TOh9FepdMhU:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=ZGRsyVu6XL8:TOh9FepdMhU:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=ZGRsyVu6XL8:TOh9FepdMhU:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=ZGRsyVu6XL8:TOh9FepdMhU:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/kairoer/~4/ZGRsyVu6XL8" height="1" width="1"/&gt;</description>
 <comments>http://www.roer.com/node/484#comments</comments>
 <pubDate>Mon, 22 Jun 2009 15:55:47 +0000</pubDate>
 <dc:creator>Kai</dc:creator>
 <guid isPermaLink="false">484 at http://www.roer.com</guid>
<feedburner:origLink>http://www.roer.com/node/484</feedburner:origLink></item>
<item>
 <title>WIFI fun</title>
 <link>http://feedproxy.google.com/~r/kairoer/~3/ir1vfgBYSfc/483</link>
 <description>&lt;p&gt;Ever since moving back to Oslo, I have had some challenges with my network access from my office. Due to walls thick as an average american (excuse me if I offend you), made out of steel enforced stone and concrete, I decided that I would use two Wifi APs and just bridge them. I have Wifi just out in the hallway, and the reception has been fine with my laptop.&lt;/p&gt;
&lt;p&gt;Since I moved my workstation here some time ago, I have had some real challenges with accessing any segments of the net outside of my small office segment (laptop, workstation, testbench, printer). I knew that the wifi connection where to blame. And I knew I had to fix it myself. And as you know, I fix my own stuff only after I have fixed all the other stuff (I believe I am not alone in this...).&lt;/p&gt;
&lt;p&gt;I dreaded to have to drill holes in the walls, and stretch cables (from a security point of view, I probably should), and being lazy, I just postponed it.&lt;/p&gt;
&lt;p&gt;Until today. I just had enough of Skype dropping every other minute, downloading being impossible, and worse - not being able to use my workstation to upload changes and administer the all the secret stuff that I mess up around the mesh. (No, I will not tell you where and what, since I do not want you to know that it is me that creates the mess!!)&lt;/p&gt;
&lt;p&gt;Since I am still lazy, I decided that I would not take the elevator down to the server room and fetch cable, connectors, drill and the rest of the bits and pieces required to mount a cable. Instead, I went out in the sunshine, and just bought myself a new AP, reasoning that the Linksys ethernet bridge that I bought back in 2005 (possibly earlier too), had finally decided to die on me, and that it was just a matter of switching it with a different box. I picked up a Jensen AP with switch included, and where able to clean my office while ditching two devices, bundles of cable and two PSUs.&lt;/p&gt;
&lt;p&gt;The Jensen thingie is a cheap box, and after some initial fidling with the setting, connected straight to the AP in the hallway. So far, it seems to be stable, and give me a link to the net that is not going to bug me too much. I hope!&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=ir1vfgBYSfc:1gWJna-u81g:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=ir1vfgBYSfc:1gWJna-u81g:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=ir1vfgBYSfc:1gWJna-u81g:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=ir1vfgBYSfc:1gWJna-u81g:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=ir1vfgBYSfc:1gWJna-u81g:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=ir1vfgBYSfc:1gWJna-u81g:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=ir1vfgBYSfc:1gWJna-u81g:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=ir1vfgBYSfc:1gWJna-u81g:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=ir1vfgBYSfc:1gWJna-u81g:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=ir1vfgBYSfc:1gWJna-u81g:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/kairoer/~4/ir1vfgBYSfc" height="1" width="1"/&gt;</description>
 <comments>http://www.roer.com/node/483#comments</comments>
 <category domain="http://www.roer.com/taxonomy/term/522">access</category>
 <category domain="http://www.roer.com/taxonomy/term/18">security</category>
 <category domain="http://www.roer.com/taxonomy/term/297">wifi</category>
 <pubDate>Tue, 16 Jun 2009 13:04:54 +0000</pubDate>
 <dc:creator>Kai</dc:creator>
 <guid isPermaLink="false">483 at http://www.roer.com</guid>
<feedburner:origLink>http://www.roer.com/node/483</feedburner:origLink></item>
<item>
 <title>Airport Security</title>
 <link>http://feedproxy.google.com/~r/kairoer/~3/_ckJg4PIYL0/482</link>
 <description>As most of my readers know, I really have a hard time with the airport security circus.

So much more fun it is when it actually turns out to be a nice experience. Like today, when there where 9 sec staff waiting to intimidate me, and no line at all. I smiled, they smiled, and they where not only polite but also fun. They joked even. 

No, I did not try to explain that the chewing gum was really plastic explosives. I do not think they would treat me as nice if I had.

-- Post From My iPhone&lt;br /&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=_ckJg4PIYL0:_DwXSjv54Zc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=_ckJg4PIYL0:_DwXSjv54Zc:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=_ckJg4PIYL0:_DwXSjv54Zc:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=_ckJg4PIYL0:_DwXSjv54Zc:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=_ckJg4PIYL0:_DwXSjv54Zc:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=_ckJg4PIYL0:_DwXSjv54Zc:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=_ckJg4PIYL0:_DwXSjv54Zc:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=_ckJg4PIYL0:_DwXSjv54Zc:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=_ckJg4PIYL0:_DwXSjv54Zc:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=_ckJg4PIYL0:_DwXSjv54Zc:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/kairoer/~4/_ckJg4PIYL0" height="1" width="1"/&gt;</description>
 <comments>http://www.roer.com/node/482#comments</comments>
 <pubDate>Tue, 09 Jun 2009 11:42:31 +0000</pubDate>
 <dc:creator>Kai</dc:creator>
 <guid isPermaLink="false">482 at http://www.roer.com</guid>
<feedburner:origLink>http://www.roer.com/node/482</feedburner:origLink></item>
<item>
 <title>Off to Budapest for a week</title>
 <link>http://feedproxy.google.com/~r/kairoer/~3/s3FGlfGiBuU/481</link>
 <description>I am now leaving for the European Conference of Junior Chamber International, where I will conduct trainings, party and meet friends from all over the world. I might get inspired to write some posts, but then again, I may be way to busy enjoying myself! &lt;br /&gt;And - I hope to get the Most Outstanding Trainer Award, as I have been nominated to get.&amp;nbsp; &lt;br /&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=s3FGlfGiBuU:l4qleKboy9w:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=s3FGlfGiBuU:l4qleKboy9w:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=s3FGlfGiBuU:l4qleKboy9w:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=s3FGlfGiBuU:l4qleKboy9w:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=s3FGlfGiBuU:l4qleKboy9w:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=s3FGlfGiBuU:l4qleKboy9w:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=s3FGlfGiBuU:l4qleKboy9w:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=s3FGlfGiBuU:l4qleKboy9w:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=s3FGlfGiBuU:l4qleKboy9w:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=s3FGlfGiBuU:l4qleKboy9w:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/kairoer/~4/s3FGlfGiBuU" height="1" width="1"/&gt;</description>
 <comments>http://www.roer.com/node/481#comments</comments>
 <pubDate>Mon, 08 Jun 2009 09:03:10 +0000</pubDate>
 <dc:creator>Kai</dc:creator>
 <guid isPermaLink="false">481 at http://www.roer.com</guid>
<feedburner:origLink>http://www.roer.com/node/481</feedburner:origLink></item>
<item>
 <title>Is PCI DSS useless?</title>
 <link>http://feedproxy.google.com/~r/kairoer/~3/UOSvziDHzKs/480</link>
 <description>This is the &lt;a href="http://www.infoseccynic.com/2009/06/07/is-pci-dss-useless/"&gt;question asked by the Infosec Cynic&lt;/a&gt;. What is your opinion?&lt;br /&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=UOSvziDHzKs:iTGEi0IwZGk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=UOSvziDHzKs:iTGEi0IwZGk:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=UOSvziDHzKs:iTGEi0IwZGk:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=UOSvziDHzKs:iTGEi0IwZGk:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=UOSvziDHzKs:iTGEi0IwZGk:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=UOSvziDHzKs:iTGEi0IwZGk:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=UOSvziDHzKs:iTGEi0IwZGk:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=UOSvziDHzKs:iTGEi0IwZGk:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=UOSvziDHzKs:iTGEi0IwZGk:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=UOSvziDHzKs:iTGEi0IwZGk:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/kairoer/~4/UOSvziDHzKs" height="1" width="1"/&gt;</description>
 <comments>http://www.roer.com/node/480#comments</comments>
 <pubDate>Mon, 08 Jun 2009 05:58:56 +0000</pubDate>
 <dc:creator>Kai</dc:creator>
 <guid isPermaLink="false">480 at http://www.roer.com</guid>
<feedburner:origLink>http://www.roer.com/node/480</feedburner:origLink></item>
<item>
 <title>Guest post: Security challenges Italian style</title>
 <link>http://feedproxy.google.com/~r/kairoer/~3/1f_gcXcRn7A/479</link>
 <description>&lt;p&gt;&lt;i&gt;&lt;br /&gt;Guest post by David Aminzade – Regional Director &lt;a href="http://www.tufin.com"&gt;Tufin &lt;/a&gt;&lt;/i&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Three years ago I bought a house in the south of Italy and since then I have been trying to immerse myself in the local culture. It recently occurred to me that actually there was a great deal of similarity between the nuances and national characteristics of Italy and the challenges faced by security professionals today &lt;br /&gt;&lt;br /&gt;&lt;b&gt;A love of Spaghetti&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;A rule base that has evolved over several years with several vendors’ products and many different security administrators will certainly resemble the characteristics of spaghetti. When you start pulling on one end you never know what the consequences are. &lt;br /&gt;&lt;br /&gt;Even in the south of Italy companies now-a-days need to improve the efficiency of their firewall operation and make what they have go faster and further as budget for hardware or software upgrades are under close scrutiny. The ability to understand which rules are most frequently used, enable the security professional to improve performance by ensuring a close match between rule ranking and rule usage. This is even more the case when non used rules and shadowed rules can be clearly identified. These classes of rules only add complexity, degrade performance and increase business continuity risk.&lt;/p&gt;
&lt;p&gt;&lt;br /&gt;&lt;a href="http://lh4.ggpht.com/_P_5y6M7oaiw/Sh-6vmcqckI/AAAAAAAADjQ/eLUcb9mnpIE/s640/tuffin_1.JPG"&gt;&lt;img src="http://lh4.ggpht.com/_P_5y6M7oaiw/Sh-6vmcqckI/AAAAAAAADjQ/eLUcb9mnpIE/s640/tuffin_1.JPG" alt="Firewall overview" title="Firewall" width="200" height="124" /&gt;&lt;/a&gt;&lt;br /&gt; &lt;br /&gt;&lt;br /&gt;&lt;b&gt;All road signs are only suggestions&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;For all of you who have driven in the south of Italy you will know that all traffic laws, which by the way are still contained in the Italian criminal not the civil code, are merely suggestions to be adhered to or ignored depending on the situation. &lt;br /&gt;&lt;br /&gt;Such is often the case when people are writing new or changing existing security rules. We all know that we should include a comment or a clean up rule but sometimes expediency makes us ignore these good practice guidelines. &lt;br /&gt;&lt;br /&gt;The need to meet with a growing number of compliancy requirements either internal audit reviews, external audit demands such as SOX or Basel II or from industry specific requirements such as PCI-DSS is far more costly if a history of indiscipline has existed. &lt;br /&gt;It is of little use spending money to optimise your firewall infrastructure and enable automatic compliance if you do not deal stop subsequent non compliance. The ability to flag non compliance to the relevant IT/security/compliance/business manager protects your investment, maintains your firewall estate’s performance and ensures cost free ongoing compliance. &lt;br /&gt;&lt;br /&gt;&lt;a href="http://lh5.ggpht.com/_P_5y6M7oaiw/Sh-68jP7EtI/AAAAAAAADjs/59LxDpqyUME/s512/tuffin_2.JPG"&gt;&lt;img src="http://lh5.ggpht.com/_P_5y6M7oaiw/Sh-68jP7EtI/AAAAAAAADjs/59LxDpqyUME/s512/tuffin_2.JPG" alt="Compliance" title="Compliance" width="200" height="143" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;b&gt;Sleeping in the afternoon&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;One local habit that I have taken the most easily to is sleeping in the afternoon. The opportunity to wind down and take a nap after a nice lunch is a great way to recharge your batteries. I think that this should be added as a criterion for any new security investment. “Does this investment allow me to take a nap in the afternoon?” ?&lt;br /&gt;&lt;br /&gt;In summary it is clear to me that companies are looking for ways to remove cost from firewall administration whilst adding performance. The ever increasing demands of compliance from all quarters means that the delivery of compliance needs to be automated and assured. To ensure ongoing OPEX reduction and operational efficiency, rule changes going forward need to be assessed against and internal or external best practice standard automatically and violations flagged to the responsible manager.&lt;br /&gt;&lt;br /&gt;Ciao Amici&lt;br /&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=1f_gcXcRn7A:-s3Ylk-SnBU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=1f_gcXcRn7A:-s3Ylk-SnBU:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=1f_gcXcRn7A:-s3Ylk-SnBU:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=1f_gcXcRn7A:-s3Ylk-SnBU:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=1f_gcXcRn7A:-s3Ylk-SnBU:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=1f_gcXcRn7A:-s3Ylk-SnBU:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=1f_gcXcRn7A:-s3Ylk-SnBU:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=1f_gcXcRn7A:-s3Ylk-SnBU:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=1f_gcXcRn7A:-s3Ylk-SnBU:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=1f_gcXcRn7A:-s3Ylk-SnBU:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/kairoer/~4/1f_gcXcRn7A" height="1" width="1"/&gt;</description>
 <comments>http://www.roer.com/node/479#comments</comments>
 <category domain="http://www.roer.com/taxonomy/term/521">David Aminzade</category>
 <category domain="http://www.roer.com/taxonomy/term/18">security</category>
 <category domain="http://www.roer.com/taxonomy/term/520">Tuffin</category>
 <pubDate>Fri, 29 May 2009 10:38:48 +0000</pubDate>
 <dc:creator>Kai</dc:creator>
 <guid isPermaLink="false">479 at http://www.roer.com</guid>
<feedburner:origLink>http://www.roer.com/node/479</feedburner:origLink></item>
<item>
 <title>Selfdestructing botnets</title>
 <link>http://feedproxy.google.com/~r/kairoer/~3/EzlwknURcb8/478</link>
 <description>&lt;p&gt;I just read this &lt;a href="http://blogs.techrepublic.com.com/security/?p=1661&amp;amp;tag=nl.e036"&gt;very interesting post &lt;/a&gt;on self destructing botnets.&lt;/p&gt;
&lt;p&gt;The post refer to security experts saying that the kill switch may be used to remove evidence, and to buy phishers time to get away with information - i.e. stealing the info, then kill the net and create havoc.&lt;/p&gt;
&lt;p&gt;I say think like a criminal here. When you have stolen the data, there is really no need to create havoc just to postpone the discovery of the theft. Actually, I believe that by pushing the killswitch, the criminal are actually getting more attention than if he did not. If I had such a botnet installed, I would use it to gather intelligence over time. I can see only two reasons to push the kill switch:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;The botnet has served it's purpose, and you'd like to remove the evidence (still, I would put it to sleep, not kill it...&lt;/li&gt;
&lt;li&gt;Prove that I control the net, and can take it out unless you pay ransom. But - I would only take out a portion to prove it, and the rest only if they do not pay up. &lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;What reasons do you think a botnet master would use to flip the killswitch?&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=EzlwknURcb8:-KISBnNsVEo:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=EzlwknURcb8:-KISBnNsVEo:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=EzlwknURcb8:-KISBnNsVEo:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=EzlwknURcb8:-KISBnNsVEo:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=EzlwknURcb8:-KISBnNsVEo:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=EzlwknURcb8:-KISBnNsVEo:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=EzlwknURcb8:-KISBnNsVEo:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=EzlwknURcb8:-KISBnNsVEo:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=EzlwknURcb8:-KISBnNsVEo:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=EzlwknURcb8:-KISBnNsVEo:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/kairoer/~4/EzlwknURcb8" height="1" width="1"/&gt;</description>
 <comments>http://www.roer.com/node/478#comments</comments>
 <category domain="http://www.roer.com/taxonomy/term/519">botnets</category>
 <category domain="http://www.roer.com/taxonomy/term/18">security</category>
 <pubDate>Tue, 26 May 2009 15:52:50 +0000</pubDate>
 <dc:creator>Kai</dc:creator>
 <guid isPermaLink="false">478 at http://www.roer.com</guid>
<feedburner:origLink>http://www.roer.com/node/478</feedburner:origLink></item>
<item>
 <title>Michael Jackson on infosec...</title>
 <link>http://feedproxy.google.com/~r/kairoer/~3/JOZKvRtoMvE/477</link>
 <description>&lt;p&gt;A sweet laugh from the Infosec cynic! Finally, someone is able to get &lt;a href="http://www.infoseccynic.com/2009/05/08/michael-jackson-on-infosec/"&gt;some wise words&lt;/a&gt; out of MJ!&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=JOZKvRtoMvE:soWPWeKN6bQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=JOZKvRtoMvE:soWPWeKN6bQ:qj6IDK7rITs"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=qj6IDK7rITs" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=JOZKvRtoMvE:soWPWeKN6bQ:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=JOZKvRtoMvE:soWPWeKN6bQ:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=JOZKvRtoMvE:soWPWeKN6bQ:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=JOZKvRtoMvE:soWPWeKN6bQ:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=JOZKvRtoMvE:soWPWeKN6bQ:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=JOZKvRtoMvE:soWPWeKN6bQ:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?i=JOZKvRtoMvE:soWPWeKN6bQ:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/kairoer?a=JOZKvRtoMvE:soWPWeKN6bQ:TzevzKxY174"&gt;&lt;img src="http://feeds.feedburner.com/~ff/kairoer?d=TzevzKxY174" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/kairoer/~4/JOZKvRtoMvE" height="1" width="1"/&gt;</description>
 <comments>http://www.roer.com/node/477#comments</comments>
 <category domain="http://www.roer.com/taxonomy/term/518">Michael Jackson</category>
 <category domain="http://www.roer.com/taxonomy/term/18">security</category>
 <pubDate>Sun, 24 May 2009 20:33:01 +0000</pubDate>
 <dc:creator>Kai</dc:creator>
 <guid isPermaLink="false">477 at http://www.roer.com</guid>
<feedburner:origLink>http://www.roer.com/node/477</feedburner:origLink></item>
</channel>
</rss>
