Latest Blog Posts
GPU Crackers Make 7 Character Passwords Inadequate
August 18, 2010 Added by:Dan Dieterle
That's the news from the Georgia Tech Research Institute. Using the power of a graphics video card processor to crack passwords is not new news. But with the speeds that the GPU's are reaching, they now have the ability to easily brute force up to seven character passwords...
Comments (0)
Is your z/OS System Secure?
August 18, 2010 Added by:Barry Schrager
There is a great article in the current issue of z/Journal Magazine -- Is Your z/OS System Secure? We all assume that our z/OS systems, if properly configured, are secure. But, there is a lot of work to do that and, even then, z/OS and the Independent Software Vendor products, and even your own staff, have system vulnerabilities that can be exploited to circumvent system controls.
Comments (0)
Another Good Reason to Increase Internal Security
August 17, 2010 Added by:Brent Huston
The 2010 Verizon Data Breach Investigations Report is out, and let me say what a boon these reports are to the infosec community! It was compiled from nearly 900 actual incidents and includes a lot of input from the U. S. Secret Service...
Comments (0)
Information Privacy and Workplace Investigations
August 17, 2010 Added by:Lindsay Walker
Executives and investigation managers of multinational companies need to understand the different laws and regulations governing the transfer of information across borders to begin implementing channels for cross-border data transfers...
Comments (0)
Infosec Island Security News Digest for 8-17-2010
August 17, 2010 Added by:Anthony M. Freed
A Computer Forensics Process Tutorial -Hacking Forensic Security - Application Logging - Win A Free Cyber Security Course - Extensive User and Group Privileges - Data Classification Key to Enterprise Rights Management - IT Security History and Architecture Part 3 - Security and Privacy...
Comments (0)
Threats to Critical Medical Monitoring Devices
August 17, 2010 Added by:Danny Lieberman
A threat analysis was performed on a network of Windows-based embedded medical devices, which help prevent crisis situations through ongoing supervision of patient status, early detection of warning signs, and alert notifications of changes in patient condition...
Comments (2)
How Do You Know That Your Software Is Secure?
August 17, 2010 Added by:PCI Guru
Software is everywhere these days, and is in almost everything from flat panel televisions to furnaces. As more devices get connected to networks, the risk that backdoors or sleeper code will be used to obtain surreptitious access to these devices increases...
Comments (0)
SOX Compliance Evolution to GRC Conference
August 17, 2010 Added by:Anthony M. Freed
The SOX Compliance conference series is targeted at senior level executives to maintain an intimate atmosphere for the delegates. Since this is not a vendor driven conference, the higher level focus allows the delegates to network with their industry peers and speakers...
Comments (0)
National Strategy for Online Identification
August 17, 2010 Added by:Robert Siciliano
The NSTIC calls for the creation of an online environment where individuals and organizations can complete online transactions with confidence, trusting the identities of each other and the infrastructure that facilitates the transaction...
Comments (0)
Security and Privacy in 2010
August 16, 2010 Added by:Mark Gardner
Wikileaks thrives because of a lack of openness, leading to the conclusion that there is potential for more openness in all Government. However, as in our private lives, some things should stay just that - private - particularly with regard to areas of national security...
Comments (0)
IT Security History and Architecture Part 3 of 6
August 16, 2010 Added by:Dr. Steve Belovich
Quick History of Computer and OS Technology: Early on, the need for security did not exist because there was no remote access, and physical security of the computer hardware equated to IT system security. Physical access meant that you were authorized – simple and effective...
Comments (0)
Data Classification Key to Enterprise Rights Management
August 16, 2010 Added by:Peter Abatan
Data classification is core to a successful enterprise rights management project, it ensures information that needs locking down is locked down, while information that does not need securing is not in anyway difficult to access...
Comments (0)
Infosec Island Security News Digest for 8-16-2010
August 16, 2010 Added by:Anthony M. Freed
Cloud Delivered Security - After Hours Security Reviews - Continuous Monitoring and FCPA Compliance - Summertime Scams and Identity Theft - Now Scale Up is Out and Scale Out is In - Information Privacy and Security - The Valley of Death Between IT and Infosec - Zeus Botnet TCP/IP Packet Capture...
Comments (0)
A Computer Forensics Process Tutorial
August 16, 2010 Added by:Bozidar Spirovski
Computer forensics is currently a very popular term, and brings an aura of certain magical steps that forensics teams use. In reality, the computer forensics just job is a standard process. Here is a simple tutorial on what is involved in computer forensics...
Comments (3)
Extensive User and Group Privileges
August 16, 2010 Added by:Application Security, Inc.
The process of collecting a comprehensive list of all rights that a user has can become a daunting task. Privileges aren't typically just assigned directly to the users they also inherit privileges from groups or roles they belong to...
Comments (0)
How to Do Application Logging Right
August 16, 2010 Added by:Anton Chuvakin
Organizations have finally gotten network device logging and server logging under control. However, security incident investigators trying to respond to the next wave of attacks have been thrust into the horrific world of application logging....
Comments (2)
Your Own Private Island
December 24, 2011Coming Soon! Build your own Island right here!
Make your home Infosec Island with your own private vanity URL, design options and private network of followers.
Infosec Island v2
December 24, 2011The latest version of Infosec Island is now available. There are more content options and more ways to connect and interact with your peers.
Thanks to everyone for a great year, and we're looking forward to an excellent 2012!




