Archive for May, 2005|Monthly archive page

SECURE YOUR CAMERAS GEEESH!!!

Strange things happen when the Bofe and I get bored at work. Based on some knowledge we have with Axis cameras in place we were able to come up with some interesting searches on google. Click Here To Search Google for Unsecured Axis Cameras

Kind of scary!!

Finishing Strong

The end of the Academic school year has come to close. Grades were posted today and I was pretty pumped about the results.

Straight A's Baby

I have 12 hours of college left and I will definitely be graduating in December with an Area in Telecommunications Systems Management with specializations in Information Security and E-business.

Unfortunately, the start of summer break means nothing for me. I’m still working full time and I am taking Physics in June. I still plan on having a great summer and I do have some vacation days built up (Thank God).

Google Page Rank

I recently checked my google page rank and it as follows:

Whats Your Google PageRank?

The dmac blog has been up for a total of 10 months, so a 3 out of 10 isn’t to shabby (If you are looking at the individual archive page you must go to my home page). I would like to know what some of my readers page ranks are. Feel free to slap it in a comment.

Futuristic Design!! So Not Me!

Well, I couldn’t stand it. I had to redue my site again. I went for the futuristic look. I’m expecting Yoda to moon walk across my site any minute. I also added the 5 latest links from my linkblog to the sidebar. I had more space due to the addition of a horizontal navbar. It is still up for revision so if you have any suggestions or comments, please let me know.

The Day When Security and Laziness Combine

Everyday I see new security technologies hit the shelf that make great promises to the security world. I see solutions for password management, network perimeter security, server side security, you name it. From a security standpoint, every one of these new great technologies continues to have the same flaw. They are vulnerable to end user laziness. A security solution is only as strong as its weakest link and unfortunately it’s Bill the dad of 4 who doesn’t give two cents about your password policy. He just wants to put in his days work with as little hindrances as possible, get his check, and head to the house.

What does this mean? Are security professionals fighting a loosing battle? It is evident that we will never be able to escape the impact of our weakest link. The solution is to implement security measures that are easy and acceptable to the end user while still maintaining a satisfactory level of security. We have to implement solutions that allow Bill (our weakest link) to continue his normal habits. Security professionals have been shouting “Employee Training” and “User Awareness”. Bill only goes to the training because you make him and it isn’t going to change his habits. Enforcing strict policy only makes Bill angry and then you will see a decline in his productivity (thus a loss of efficiency). Bill shall not be moved because Bill’s pocket book isn’t getting bigger by helping your security team. So what’s the answer?

Security and Laziness must combine! We must transform the way we think as security professionals. We must put ourselves in Bill’s shoes. I see solutions such as “Single Sign On” that are making a push in this direction. Yet many of these create a Bottle Neck and thus a single point of failure. Are we trapped?

I guess your awaiting my grand solution to this problem. Well unfortunately I don’t have an idea for a new technology, but instead a new way of thinking. Security professionals and end users must reach a compromise. The division has to stop. I see this division in my own organization. I recently read an email that was sent out to end users in one department from an IT guy in regards to their poor password management. At the top of his email he addressed them as “Unwashed Herd”. We must reach compromise in our solutions with the “Unwashed Herd”.

Next Page »