We would love to stay in touch with you!

Enter your details to join our mailing list and we'll send you a link to exclusive content.

* indicates required
Close

All posts in Threat Mitigation

How to guides on mitigating the risks to your systems. IDS / IPS, Audit Tools, Firewalls etc.

fulldiskencryption
The Benefits of Full Disk Encryption
January 13, 2012, 2 Comments

The Electronic Frontier Foundation is asking everybody to adopt a New Year’s Resolution for 2012 – to use fu ...

password
10% of passwords cracked in 5hrs
January 3, 2012, No Comments

At the end of 2011, the hacking group Anonymous published a million password hashes stolen from US firm Strategic Foreca ...

mydoom
Anti-virus won’t keep your data safe
December 3, 2011, No Comments

Two of the key rules of Information Security are to understand what you are protecting and to understand what you are pr ...

snorby-feat
Snorby – NSM on Rails
August 27, 2011, No Comments

Our last Network Security Monitoring review was of sguil, a distributed application that captures network security data ...

network-ops-center
An intro to Network Security Monitoring
August 26, 2011, 1 Comment

In an article early last year on sguil, I described the concept of Network Security Monitoring (NSM). The concept was de ...

browser-malware-results
Internet Explorer 9 blocks 99% of malware
August 17, 2011, No Comments

Studies this year have shown that users are four times more likely to be exploited by downloading and executing maliciou ...

splunk-login-430x320
Splunk – Log storage, search and reporting
October 18, 2010, No Comments

Splunk is a leading software system used to monitor, report and analyse text-based IT data, namely log files, statistics ...

Adobe Reader Sandbox Protection
October 11, 2010, No Comments

The new version of the popular Adobe Reader software incorporates some major changes in an attempt to stem the flow of c ...

Symantec announces iOS and Android security products
October 11, 2010, No Comments

Most of the big companies in the modern age of business are moving to the acquisition model rather than developing new t ...

people
Secure Hiring Practice and Employee Controls
June 1, 2010, 1 Comment

As part of our popular series on assessment and mitigation of risk in an enterprise, I thought I’d put forward som ...

Risk-ALE-SLE-ARO-430x320
Information Security Risk Analysis
May 17, 2010, 2 Comments

Following our popular article on Threat vs Vulnerability vs Risk, this article digs a little deeper into Risk Analysis, ...

sguil-packetdata
Sguil: Intrusion Detection and Analysis
March 16, 2010, 2 Comments

Network Security Monitoring Sguil (pronounced sgwheel) is a Network Security Analysis tool that facilitates the practise ...

greensql-architecture
Howto: Protect your SQL database with a Firewall
February 17, 2010, No Comments

GreenSQL recently released version 1.20 of their SQL firewall. So, what does an SQL firewall do, how does it work, and h ...