ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login
    1. Topics
    2. Tags
    3. security
    Log in to post
    • All categories
    • mlnewsM

      Using Kali Linux to Read Word Documents from Memory

      News
      • security linux kali linux word windows • • mlnews
      1
      1
      Votes
      1
      Posts
      1.6k
      Views

      No one has replied

    • mlnewsM

      Tech Support Scammer Threatens to Kill Canadian Man

      News
      • security • • mlnews
      4
      1
      Votes
      4
      Posts
      567
      Views

      scottalanmillerS

      @thecreativeone91 said:

      @Reid-Cooper said:

      That's pretty scary. Makes an argument for just hanging up and not messing with them. This takes it far beyond scamming. This is now threatening and extortion.

      Scary but not quite as scary as ISIS using DMCA request to get american's personal information http://www.reddit.com/r/news/comments/2lgot5/terrorists_used_false_dmca_claims_to_get_personal/

      Well as the goals of ISIS and of DMCA are both purely to hurt Americans, it makes sense that they would join forces.

    • mlnewsM

      Seven Warning Signs You Have a Rogue Employee

      News
      • security infoworld • • mlnews
      9
      3
      Votes
      9
      Posts
      959
      Views

      tonyshowoffT

      Sleeping with uppermanagement

      A big company I worked at years ago, there was an employee sleeping with a under executive and basically got away with murder all the time, and this was against policy, and yet nobody ever did anything. This company is almost bankrupt today, I wonder why...

    • LakshmanaL

      IT Infrastructure Career

      IT Careers
      • security • • Lakshmana
      48
      4
      Votes
      48
      Posts
      14.2k
      Views

      thanksajdotcomT

      @scottalanmiller said:

      As Americans, the costs of certification tests are quite low. We don't really think of it as an onerous cost. But to much of the world, any cert test represents a significant investment, especially to people just entering the field. In the US we are used to "grab any cert you can pass", which mostly makes sense. Skip a few nights out, have a few fewer drinks and you've paid for an exam. Doesn't work that way for a lot of people, it's a major investment and picking the wrong cert could be a devastating loss of income.

      Ok, fair enough.

    • scottalanmillerS

      CloudFlare Exposes More Malware from Komodia and Superfish

      IT Discussion
      • superfish komodia security • • scottalanmiller
      4
      0
      Votes
      4
      Posts
      1.1k
      Views

      scottalanmillerS

      LOL, GeekSquad just figured out what malware is.

    • gjacobseG

      Linux Mint: 17: MDM Login Screen

      IT Discussion
      • linux mint 17.1 security • • gjacobse
      4
      0
      Votes
      4
      Posts
      1.3k
      Views

      scottalanmillerS

      There is auto-login, but that is probably a step farther than you want to go.

      http://www.dedoimedo.com/computers/ubuntu-mint-autologin.html

    • scottalanmillerS

      Kaspersky Labs Finds NSA Spyware on Hard Drives

      News
      • security kaspersky nsa storage stuxnet • • scottalanmiller
      10
      0
      Votes
      10
      Posts
      2.2k
      Views

      tonyshowoffT

      @scottalanmiller I got an itch to disassemble it, I gotta see it! It's tearing me apart!

    • nadnerBN

      Firewalls for single PC's

      IT Discussion
      • firewall security • • nadnerB
      5
      1
      Votes
      5
      Posts
      1.2k
      Views

      DashrenderD

      @scottalanmiller said:

      What issue did you have with XP? I've never heard of an issue with the XP firewall.

      The only issues I ever recall hearing about where that some where unhappy that XP didn't block outbound by default. And even today it's easy to setup. But then again I don't want normal users to do that to themselves anyhow.

    • gjacobseG

      Office 365: Password Policy

      IT Discussion
      • security office 365 • • gjacobse
      6
      0
      Votes
      6
      Posts
      1.2k
      Views

      tonyshowoffT

      @JaredBusch said:

      I prefer a 12 month or non-expiring password but at least 16 characters long. Complexity can go fly a kite. Those only cause users to write things down.

      Finally! For a long time I thought I was the only person who enforced this policy. Even as a part of GPO on our domains I set it as minimum of 12 (due to the entropy at the time), but basically turned down the complexity. Even some of the more non-technical users have extremely complex passwords now that they don't need to write down, because I encourage four random words with maybe a number or two between them.

      And hey, if you wanna get inventive with the spelling, go ahead, if it's easier for you to remember, helps against broad dictionary attack as well. More experienced people will try cracking passwords with multiple words and even numbers, especially these days, but obviously even some crap like (3fOe38!45b is not only easy to crack, but also hard to remember, and I'm still baffled as to why this is encouraged. I'm sure you're aware of this, but I'm just saying it for people who may not realise that complex to remember does not mean complex to guess.

    • Reid CooperR

      Microsoft Pulls KB For Breaking PowerPoint on Windows RT

      News
      • security patching windows microsoft windows rt powerpoint • • Reid Cooper
      1
      2
      Votes
      1
      Posts
      922
      Views

      No one has replied

    • gjacobseG

      Are you (your users) a Hack waiting to happen?

      IT Discussion
      • security password • • gjacobse
      6
      1
      Votes
      6
      Posts
      1.2k
      Views

      tonyshowoffT

      @scottalanmiller Social engineering is a great way to get what you want. Buffer overflows, unescaped SQL queries can be patched, people wanting to be "helpful" is an aspect of our culture and I imagine only by hiring the most irritating, least helpful people on the planet can you begin to really secure yourself against your own employees.

    • M

      VMware & Intranet vs Internet

      IT Discussion
      • vmware vmworld internet virtualization security • • MrWright4hire
      5
      0
      Votes
      5
      Posts
      1.9k
      Views

      M

      @Reid-Cooper said:

      If you do not want your VMware host to reach the Internet or any other subnet, you could also not give it a default gateway thus blocking it from communicating over any router automatically.

      It's the computer I didn't want to reach the internet. However, I wanted the VMware to be alble to. I've, since then, achieved that mission.

    • Reid CooperR

      Microsoft Security Bulletin MS15-010

      News
      • security • • Reid Cooper
      5
      2
      Votes
      5
      Posts
      842
      Views

      Bill KindleB

      If this is the font patch, there's been reports of it breaking systems.

    • scottalanmillerS

      Ten Million Usernames and Passwords Released

      News
      • security • • scottalanmiller
      1
      2
      Votes
      1
      Posts
      335
      Views

      No one has replied

    • Reid CooperR

      1984 is Here, Samsung Smart TV is Monitoring You

      News
      • security • • Reid Cooper
      48
      3
      Votes
      48
      Posts
      10.8k
      Views

      JaredBuschJ

      WTF, they use 443 but do not encrypt. lazy pricks.

    • Reid CooperR

      Werner Kock: The Man Behind GPG

      IT Discussion
      • security email gpg • • Reid Cooper
      7
      3
      Votes
      7
      Posts
      2.5k
      Views

      StrongBadS

      That is really nice that so many companies stepped in so quickly to remedy the situation. Kudos to them.

    • scottalanmillerS

      Forever 21 Caught Pirating Software

      News
      • security piracy adobe • • scottalanmiller
      7
      0
      Votes
      7
      Posts
      2.1k
      Views

      nadnerBN

      Lol, pwnt

    • AmbarishrhA

      GHOST: glibc gethostbyname buffer overflow

      News
      • linux security • • Ambarishrh
      11
      1
      Votes
      11
      Posts
      1.2k
      Views

      scottalanmillerS

      @Reid-Cooper wonderful

    • StrongBadS

      Mozilla Firefox Working to Protect Us from Referer Headers

      News
      • security firefox mozilla • • StrongBad
      2
      2
      Votes
      2
      Posts
      1.2k
      Views

      StrongBadS

      This comes after the government site healthcare.gov has been caught sending private information to advertisers via headers.

      http://abcnews.go.com/Technology/wireStory/privacy-concerns-governments-health-care-website-28340119

    • thanksajdotcomT

      Setting Up Keys between Linux Servers

      IT Discussion
      • linux ssh authentication security • • thanksajdotcom
      13
      0
      Votes
      13
      Posts
      3.5k
      Views

      J

      It's always best practice to disable root login over SSH, especially from the Internet; use su or sudo for root access. Another good practice is to disable password-based authentication; only use keys with a passphrase. The setup you're doing here is useful for allowing scripted/automated connections between machines (e.g. for backups, scheduled tasks, etc) but they should be accounts with limited access, not root. You should be creating layers that make it difficult for someone to gain access to your systems; root keys with no passphrase means you're solely relying on that one strong password (which is one keylogger away from being defeated.)

    • 1
    • 2
    • 26
    • 27
    • 28
    • 29
    • 30
    • 31
    • 32
    • 28 / 32