Mobile devices are in the workplace already. Because they are designed to hook into existing information systems, their users have the ability to quickly and easily access the wireless network, email servers, application servers, and file shares that would be available to any PC on the network. But unlike PC’s with their well documented vulnerabilities and widely deployed anti-virus suites, tablets and smartphones have no built in protection. If an organization wants to protect their … Read the rest
Network Security Archives
Mobility Policy – Prevent Network and Application Server Denial of Service
Backup Your Mac to Hidden Location with Rsync
This last weekend I almost lost all the pictures. We have four kids, and have tons of pictures. I had set up the user accounts on our Mac on an external mirrored drive, connected by Firewire. This was mostly good, but this weekend all the applications just refused to connect because of some kind of weird permissions issue. I went through all sorts of stuff to get it working, but at the end of the … Read the rest
Next Generation Firewalls
Regardless of what you call them, Web Application firewalls, Layer 7 firewalls, Next Generation firewalls etc there is a new breed of firewall appliances on the market designed to protect organizations and their data from the ever growing Internet threats. As we have discussed before data theft, web site hacking and denial of service attacks have become big business. These threats are no longer from some script kitty with a DSL account but are now … Read the rest
Fixing a Virus Hobbled PC Quickly with Free Tools
Viruses, trojans, malware, and other problems routinely crop up on Windows machines – they are a fact of life. I just refreshed my computer troubleshooting skills on a Windows 7 laptop that was unusable. It had been taken over by a fake computer security application that was demanding money to continue allow the PC to continue to work. I really did not want to go through and reimage the machine – I just wanted the … Read the rest
Where Does Security Start and Stop
Security is everywhere – First the definition is vague
So what does this mean from a network perspective?
Use a One Time Password App on the Android to Prevent Data Security Loss
Most organizations use single-factor authentication to provide security to important information and resources. That is now being recognized to be insufficient to protect sensitive data from loss due to malicious hacking activity. Hackers use advanced dictionary attacks, social engineering, and key-logging to obtain the passwords they need to remotely enter systems and steal sensitive data like credit card numbers complete identity information.
If a username and password can be guessed or discovered, malicious hackers from … Read the rest
How good is your remote access security?
Every day there are new reports of confidential information being stolen from businesses around the world putting employers at risk for loss of intellectual property, decreased employee productivity and a loss of customer trust. In this time of economic challenges, businesses must do everything they can to protect their valuable assets and intellectual property.
At the same time, an increasingly mobile workforce is demanding easier access to vital company data to do their job in … Read the rest
ScanSafe vs WSA, work together, work separately, do I need both?
With majority of internet based attacks, viruses and workforce management issues all being attributed to the use of the internet over port 80 and 443, the secure environment has become a lot harder to contain.
IOS Zone Based Firewalling
It has been a long time since Cisco released zone based firewalling for the ISR. They have been “threatening” to take away my CBAC for some time, happily they still haven’t done it, but the writing is on the wall. So I guess it is time I discuss this change and show an example or two and give some caveats.
Addressing MAC Security
Is MAC address filtering really the way to go? People have been using this as a layer two method of controlling access for a long time, but it is easily bypassed. There are now more dynamic methods available that will help maintain a secure infrastructure.
MAC address filtering can be easily bypassed by simply finding a machine that is working and steeling its MAC and put it on your computer. In all major operating systems … Read the rest