Image
 
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 21 guests and 2 members online
EH-Net Donations

Enter Amount:
$

Google Ads
ChicagoCon 2008f
chicagocon2008f_125x200banner.jpg
ChicagoCon 2008f
EH-Net News Feeds
Latest Additions
Book Recommendations





 
Advertisement

You are here: Home arrow Forum
Ethical Hacker Community Forums
October 06, 2008, 06:17:19 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Registration Now Open for ChicagoCon 2008f Oct 27 - Nov 2! Visit www.chicagocon.com.
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 [2] 3 4 ... 14
16  Resources / News from the Outside World / Re: Stop Snitching...geek style on: August 18, 2008, 01:28:39 PM
D'oh!  Always check your work, kids...
17  Resources / News from the Outside World / Stop Snitching...geek style on: August 18, 2008, 10:15:01 AM
Crazy-ass story from Wired about one hacker being kidnapped and "tortured" by another after talking to media.

Hacker Reportedly Kidnaps and Tortures Informant, Posts Picture as a Warning to Others
18  EH-Net / Calendar Of Events / Re: ChicagoCon 2008f on: August 15, 2008, 02:58:50 PM
A mention about ChicagoCon and a "Thanks" for the Tweener party over on the Securabit Podcast
19  Columns / Editor-In-Chief / Re: Man Looks Into the Abyss... on: August 15, 2008, 08:09:35 AM
Congrats Don!  Shame you just got over the DefCon hangover...now you've got to do it all over again after going out to celebrate tonight  Wink
20  EH-Net / News Items and General Discussion About EH-Net / Re: Registration Experience, and Security on: August 15, 2008, 08:05:30 AM
Quote from: don
And the password you use for this or any other public site should NEVER be the same as the ones for you bank account, corp network, etc.

...lest ye end up with all your goodies posted on seclists.org as some of our esteemed colleagues recently have.
21  Ethical Hacking Discussions and Related Certifications / Other / Re: Drive Imaging on: August 14, 2008, 11:46:14 AM
I was for a long time using a product that I believe was called CloneEZ or EZClone.  However, when I consulted the great, wise oracle, I kept getting links for pot plant cloning products.  Shocked
22  Features / /root / Re: Webcast: Pen Testing Ninjitsu III with Ed Skoudis: After the Initial Comprom on: August 14, 2008, 10:10:39 AM
Already registered and looking forward to this one Smiley

Me too.  Going back over the first two for a refresher of where Ed left off.
23  Resources / News from the Outside World / Re: Looks like people are starting to take notice... on: August 12, 2008, 02:16:43 PM
How many of you have had a laptop stolen or lost?

Not this guy. 

You're probably right about the carelessness, Don.  But at the same time, that doesn't excuse his employer from neglecting the oversight to prevent such a thing from occurring.

Although, even if they had...

Quote from: Sarah Chambers
Artificial intellegence is no match for natural stupidity.
24  Resources / Career Central / Re: Planning a career in information security. Any tips and recommendations for me? on: August 12, 2008, 02:04:29 PM
Martin Mckeay interviewed Mike Murray and Lee Kushner over on the Network Security Podcast regarding their DefCon talk about this exact topic.

Highly recommended for anyone just getting started.

Happy listening
25  Ethical Hacking Discussions and Related Certifications / Other / Re: Networking question on: August 12, 2008, 12:07:57 PM
Then what the hell are they "auto-sensing?"

*edit - there's a "y" in "they"  Grin
26  Resources / News from the Outside World / Re: Looks like people are starting to take notice... on: August 12, 2008, 11:40:07 AM
I don't think the issue is taking care of the employer owned asset of the machine itself, but of the customer-owned data.

It's not mentioned in this article whether or not the hospital had an encryption policy (one would assume that they'd at least have some form of security policy, though). 

Should the laptop have been encrypted?  Duh.

Should the employee have NOT stored EPHI on the unencrypted laptop?  Double Duh.

As Jamie Cowper of PGP is quoted in the article:
Quote
"Technologies such as encryption should be implemented and managed on an enterprise-wide basis, not left up to the individual. Unless there is evidence of grievous misconduct, the responsibility for data security should lie with the organisation as a whole – and that means that in cases such as this, punishment should be top-down rather than bottom-up."

However, I do see it as a step in the right direction.  Seems to me that there is more than one party at fault here.  It sucks that this one person had to be the fall guy, but with any luck he'll hire a good lawyer who can take the case and make a greater precedent.  i.e. "Should my client have been dismissed from his possition when there was no enterprise policy to protect the data in the first place?" 

Jimbob's got it right...there is NO reason for this data to be on a manager's laptop (should he even NEED a laptop anyway), but it is the responsibility of upper management, the board, and us security geeks to see to it that this doesn't happen in the first place.
27  Resources / News from the Outside World / Re: Looks like people are starting to take notice... on: August 12, 2008, 10:54:49 AM
Best precedent EVAR!!!
28  Resources / Links to cool sites. / Re: Wiley InterScience - Security & Comm Networks - Complimentary Online Access on: August 12, 2008, 09:11:07 AM
As the site clearly states, you can purchase a 24-hour membership, or have your school librarian apply for the complimentary access.
29  Resources / Tools / Surf-Jack on: August 11, 2008, 02:15:26 PM
I don't recall having seen anything about this one on here and couldn't find it in the archives.

Sandro Gauci from enablesecurity posted this demo of stealing cookies and hacking a gmail account.

Wonder if that's what happened to pdp?
30  Ethical Hacking Discussions and Related Certifications / Malware / Re: Injecting Virus in pics... on: August 11, 2008, 01:32:19 PM
Nate and Rob discuss the GIFAR talk on the Network Security Podcast
Pages: 1 [2] 3 4 ... 14
Powered by MySQL Powered by PHP Powered by SMF 1.1.5 | SMF © 2006-2008, Simple Machines LLC
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.05 seconds with 21 queries.
 

Microsoft Blue Hat Hackers Headline ChicagoCon
Ethical Hacking Conference Oct 31 - Nov 2

Help spread the word!

Polls
Why a Career in Ethical Hacking:
 
Support EH-Net
chicagocon2008f_125x200banner.jpg
ChicagoCon 2008f


Support EH-Net by
Buying all of your
Amazon items using
the search bar above.

cbtnuggets_logo_125.jpg
Try CBT Nuggets Free!
Recent Forum Topics
Vote For EH-Net

progenic.com
Click here to Vote!

Sadikhov.com
Top IT Cert Sites

binarica.com
Binarica Logo

Add to Technorati Favorites
technorati fave

chicagocon2008f_125x200banner.jpg
ChicagoCon 2008f
 
         
Advertisement

© 2008 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.