Auditing Windows Permissions with Get-ACL
One of the new Microsoft PowerShell cmdlets that auditors should appreciate is the GET-ACL cmdlet. Now, through native PowerShell commands, an auditor can retrieve a list of all the permissions…
One of the new Microsoft PowerShell cmdlets that auditors should appreciate is the GET-ACL cmdlet. Now, through native PowerShell commands, an auditor can retrieve a list of all the permissions…
In our last post we discussed how to gather general information about the configuration of a Microsoft Windows Firewall, host based firewall configuration. But what most people are really interested…
There was an interesting article earlier this week concerning IP blocking by Wikipedia, a wildly popular online encyclopedia tool. Wikipedia's "Arbitration Committee" of experienced volunteer editors voted to block changes…
There is news of a controversial bill before the Nevada legislature that would make felons of people that possess, read or capture the personally identifying RFID information of others. In general, it is a good idea to protect personally identifying information, but let’s separate the good from the bad. The bill in its current form [...]
Cyber gossip… A story posted online yesterday by The Wall Street Journal, quoting unnamed government sources, said that President Obama is expected to name Melissa Hathaway to head a new White House office of cybersecurity. “Ms. Hathaway helped develop a Bush administration cybersecurity initiative aimed at better securing federal systems and critical-infrastructure networks against online threats. The [...]
The Register.com recently reported on a disturbing announcement from the University of Ohio. Professor James W. Davis and grad student Karthik Sankaranarayanan have developed software that can independently, without human intervention, track a person via the CCTV cameras. Davis and Sankaranarayanan’s software works by using a pan-tilt-zoom camera to create a panoramic image of its entire [...]
If you are an Info Sec professional and you are not familiar with the Internet Security Alliance (ISA), you need to check them out. These are fresh observations on how to begin to fix the current state of cyber insecurity.This non profit trade organization is a collaboration between the Electronic Industries Alliance (EIA), and Carnegie [...]