Is Windows security an afterthought?
As the editor of SearchWindowsSecurity.com, I often speak with users about their Windows security responsibilities. One senior systems analyst in particular sent me an interesting note recently… To give you some background, he’s in charge of configuring and administering desktop systems (primarily Win2000 and XP)for a large company, and he developed many of the security [...]
Answer Question
| April 21, 2005 3:00 PM
Administration,
Application security,
Architecture/Design,
backdoors,
Biometrics,
Compliance,
configuration,
CRM,
Current threats,
Database,
Digital certificates,
Disaster Recovery,
Documentation,
Encryption,
Exchange,
Features/Functionality,
Firewalls,
Forensics,
Hacking,
human factors,
Identity & Access Management,
IDS/IPS management,
Incident response,
Installation,
Instant Messaging,
Intrusion management,
Managed security services,
Management,
Network security,
patching,
PEN testing,
Platform Security,
Policies,
Product evaluation,
Product/Service evaluation,
provisioning,
Remote users,
Risk management,
Secure Coding,
Security,
Security management,
Security products,
Security Program Management,
Security tokens,
Service and support,
Signature updating/Management,
Single sign-on,
Spam,
Spyware,
Trojans,
Viruses,
VPN,
Vulnerability Assessment & Audit,
vulnerability management,
Wireless,
worms
0 pts.
Found Trojan.ByteVerify on my computer
Hi All, Symantec recently discovered Trojan.ByteVerify on my computer. I run system checks weekly and am always cautious about the e-mails I open, the web sites I go to and what I click on, so I was pretty surprised to find I had a Trojan. It was quarantined and removed, but I’m worried about what [...]
Answer Question
| June 24, 2010 10:20 AM
Administration,
Architecture/Design,
backdoors,
Compliance,
configuration,
CRM,
Current threats,
Disaster Recovery,
Documentation,
Features/Functionality,
Firewalls,
Forensics,
Hacking,
human factors,
IDS/IPS management,
Incident response,
Installation,
Intrusion management,
Management,
Network security,
patching,
PEN testing,
Platform Security,
Policies,
Risk management,
Security,
Security Program Management,
Service and support,
Signature updating/Management,
Spyware,
Trojans,
Viruses,
VPN,
vulnerability management,
Wireless,
worms
0 pts.
Internet Explorer vs. Firefox
Hello, I’m the Assistant Editor on SearchWindowsSecurity.com. I’m looking to start a discussion about what browser people are using and why. Also, is anyone considering switching from IE to Firefox, or are your plans to stay with IE? Here’s some food for thought… As of Feb. 2005, an estimated 35 million users had switched from [...]
Answer Question
| June 29, 2012 2:14 PM
Addamark,
Administration,
Aladdin Knowledge Systems,
Application security,
AppSec,
Architecture/Design,
ArcSight,
Bindview,
Biometrics,
Caymas,
CipherTrust,
Compliance,
Computer Associates,
configuration,
Courion,
CRM,
Cylant,
Database,
DataCenter,
Desktop management applications,
Desktops,
Digital certificates,
Disaster Recovery,
Documentation,
e-Security,
Emerging technologies,
Encryption,
Enterasys Networks,
Entrust,
Exchange,
Features/Functionality,
GuardedNet,
Hardware,
Host-based IDS/IPS,
IBM/Tivoli,
Identity & Access Management,
IDS vs IPS,
IDS/IPS management,
Imprivata,
Installation,
Instant Messaging,
Intellitactics,
Internet Security Systems,
Intrusion management,
Juniper Networks,
KavaDo,
M-Tech,
Magnifire,
Managed security services,
Management,
Maxware,
Microsoft Windows,
Netegrity,
NetForensics,
NetIQ,
Network Associates,
Network-based IDS/IPS,
NFR Security,
NGS Software,
Novell,
Ounce Labs,
Outsourcing,
Outsourcing/Managed services,
Passlogix,
patching,
PEN testing,
Platform Security,
Policies,
Product evaluation,
Product/Service evaluation,
provisioning,
Risk management,
RSA Security,
Sana Security,
Secure Coding,
Security,
Security management,
Security Program Management,
Security tokens,
Servers,
Service and support,
Service contracts,
Service evaluation,
Single sign-on,
Snort/Sourcefire,
SPI Dynamics,
StillSecure,
Tech support,
Teros,
Thor,
Tripwire,
TruSecure,
Vendors,
VeriSign,
VPN,
VSecure,
Vulnerability Assessment & Audit,
vulnerability management,
Watchfire,
Waveset/Sun Micro,
Windows,
Windows XP
0 pts.
Safe user sandbox?
*This question is from a SearchWindowsSecurity.com reader: I’m in a position to redesign our IT systems (network, servers, PCs, software, etc.) this summer, and I am undecided on which path to take. I’d like to disconnect our systems from the Internet so that we don’t have to deal with all of the garbage that comes [...]
Answer Question
| April 13, 2005 2:15 PM
Application security,
backdoors,
Biometrics,
Compliance,
configuration,
CRM,
Current threats,
Database,
Development,
Digital certificates,
Disaster Recovery,
Encryption,
Exchange,
Hacking,
human factors,
Identity & Access Management,
Instant Messaging,
Intrusion management,
Management,
patching,
PEN testing,
Platform Security,
Policies,
Product evaluation,
provisioning,
Risk management,
Secure Coding,
Security,
Security Program Management,
Security tokens,
Single sign-on,
Spyware,
Trojans,
Vendors,
Viruses,
vulnerability management,
worms
0 pts.
I’ve been hacked — I think….
I’m an IT administrator with a little over 500 end users, running Windows 2000 and XP. One of our users is experiencing a problem with her Internet connection suddenly dropping for no apparent reason. When she restarts her computer, everything works fine for awhile, but then the connection drops again. The funny thing is, she’s [...]
Answer Question
| August 2, 2009 9:52 AM
Administration,
Application security,
Architecture/Design,
Bigfix,
Biometrics,
Cisco,
Citadel,
Compliance,
Computer Associates,
configuration,
Configuresoft,
CRM,
Cylant,
Database,
DataCenter,
Desktop antivirus,
Desktop management applications,
Digital certificates,
Disaster Recovery,
Documentation,
Ecora,
Encryption,
Enterasys Networks,
Exchange,
Features/Functionality,
Firewalls,
Forensics,
GFI,
Hewlett-Packard,
Host-based IDS/IPS,
Identity & Access Management,
IDS vs IPS,
IDS/IPS management,
Incident response,
Installation,
Instant Messaging,
Internet Security Systems,
Intrusion management,
Juniper Networks,
Managed security services,
Management,
Microsoft Windows,
Network Associates,
Network Elements,
Network security,
Network-based IDS/IPS,
NFR Security,
Outsourcing,
Outsourcing/Managed services,
patching,
Patchlink,
PEN testing,
Platform Security,
Policies,
Product evaluation,
Product/Service evaluation,
provisioning,
Redundancy,
Risk management,
Sana Security,
Secure Coding,
Security,
Security Program Management,
Security tokens,
Service and support,
Service contracts,
Service evaluation,
Shavlink Technologies,
Single sign-on,
Snort/Sourcefire,
St. Bernard Software,
StillSecure,
Symantec,
Tripwire,
Vendors,
VPN,
VSecure,
Vulnerability Assessment & Audit,
vulnerability management,
Wireless
0 pts.
How did I get a virus on my computer?
Do you hear that question or something similar too often? We’re taking an informal survery on SearchSecurity.com to find out what the most common security-related user questions are. Results will be compiled into a question and answer tip that you will be able to post or handout to your users. What are the top 5 [...]
Answer Question
| April 15, 2005 6:07 PM
Administration,
Application security,
Architecture/Design,
backdoors,
Biometrics,
Compliance,
configuration,
CRM,
Current threats,
Database,
DataCenter,
Digital certificates,
Disaster Recovery,
Documentation,
Encryption,
Exchange,
Features/Functionality,
Firewalls,
Forensics,
Hacking,
human factors,
Identity & Access Management,
IDS/IPS management,
Incident response,
Installation,
Instant Messaging,
Intrusion management,
Managed security services,
Management,
Network security,
patching,
PEN testing,
Platform Security,
Policies,
provisioning,
Risk management,
Secure Coding,
Security,
Security Program Management,
Security tokens,
Service and support,
Service contracts,
Service evaluation,
Signature updating/Management,
Single sign-on,
Spyware,
Trojans,
Viruses,
VPN,
Vulnerability Assessment & Audit,
vulnerability management,
Wireless,
worms
0 pts.
migration from 2000 to 2003 using ADMT v 2.0
We have multiple forests in our organisation.We are now planning to consolidate them into a single forest and a single domain.We have more than 200 different sites spread all across the world. We have now upgraded all our domain controllers to 2000 and 2003 servers.We have a proper test lab being setup for performining all [...]
Answer Question
| March 16, 2005 6:32 AM
Data center operations,
Database Management Systems,
DataCenter,
Disaster Recovery,
Hardware,
Microsoft Operations Manager,
Servers,
Systems management software,
Tech support,
Windows,
Windows 2000 Server,
Windows Server 2003,
Windows tools/WSRM
0 pts.
VIRUS Scan
Using the command line prompt in windows (the black box) which command i can use to scan my machine for viruses without using any virus scan tools ?
Answer Question
| January 30, 2012 12:45 AM
Auditing,
Cooling,
Data center operations,
Disaster Recovery,
Electrical,
Information risk management,
Physical security,
SAN,
Security management,
Security products,
Software Quality Assurance,
Space/structure
0 pts.
ID Theft and National Security
If it turns out, as I believe, that enemies of the United States are behind a lot of the major ID thefts in the US, that would mean that a lot of money is going to our enemies. Can we therefore surmise that those who mishandle our identity information, by means of their poor stewardship [...]
Answer Question
| September 21, 2010 10:35 PM
Application security,
Auditing,
Biometrics,
Business/IT alignment,
California Security Breach Information Act,
Can Spam Act,
Compliance,
CRM,
Database,
Digital certificates,
Disaster Recovery,
E-business,
Encryption,
Exchange,
Gramm-Leach-Bliley Act,
HIPAA,
Identity & Access Management,
Incident response,
Information risk management,
Instant Messaging,
ISO 17799,
Laws,
Policies,
provisioning,
Regulations,
Risk management,
Sarbanes-Oxley Act,
Secure Coding,
Security,
Security management,
Security products,
Security Program Management,
Security tokens,
Single sign-on,
standards,
USA Patriot Act,
Vulnerability Assessment & Audit
75 pts.
Front-End Reporting Tools for Secure Web Service Application with MS-SQL server-2
Hi… We are a Cdn Govt agency involved in Satellite Operations with a commercial partner based across the country. We will need to build/buy a small secure web service application for reporting purposes that will require minimal IT experise to build or maintain, and will deliver maximum performance in terms of response time and data [...]
Answer Question
| March 7, 2005 10:03 AM
Compliance,
CRM,
Disaster Recovery,
Dreamweaver,
E-business,
Microsoft Access,
Microsoft Office,
Microsoft Windows,
Policies,
Risk management,
Security Program Management,
Servers,
SQL Server
0 pts.
Front-End Reporting Tools for Secure Web Service Application with MS-SQL server
Hi… We are a Cdn Govt agency involved in Satellite Operations with a commercial partner based across the country. We will need to build/buy a small web service application for reporting purposes that will require minimal IT experise to build or maintain. The back end RDBMS engine is built with MS SQL server and will [...]
Answer Question
| March 2, 2005 9:49 AM
Compliance,
CRM,
Disaster Recovery,
Dreamweaver,
E-business,
Microsoft Access,
Microsoft Office,
Microsoft Windows,
Policies,
Risk management,
Security Program Management,
Servers,
SQL Server
0 pts.
Reporting domain/workgroup membership on your LAN using PERL
This is more of an FYI. I just posted a perl script that I use to generate a daily report of all Workstations and Servers located on our LAN. This report is sorted by domain/workgroup membership and includes any visible shares on the machine. If anyone is interested you can read it here: http://frankenrouter.homeip.net/System+Admin+Articles/111.aspx Thanks, [...]
Answer Question
| August 23, 2005 12:13 PM
Active Directory,
Compliance,
CRM,
Desktops,
DHCP,
Disaster Recovery,
DNS,
Ethernet,
IPv4,
Lotus Domino,
NetBIOS,
Networking,
Networking services,
Policies,
Risk management,
Security,
Security Program Management,
Vulnerability Assessment & Audit
0 pts.
Secure Email Delivery Applications
I am currently searching for the best application or service to provide end to end security for delivering encrypted emails from one company to another accross the Internet. I need the solutions to provide Smime, PGP, TLS, SSL, etc. My goal is to some how have the app or user decide if the email needs [...]
Answer Question
| March 4, 2005 9:21 AM
Application security,
Compliance,
CRM,
Database,
Disaster Recovery,
E-mail applications,
Encryption,
Exchange,
Instant Messaging,
Policies,
Risk management,
Secure Coding,
Security,
Security Program Management
0 pts.
0 pts.
ChoicePoint CISO says breach not an information security issue
The CISO of ChoicePoint says the theft of private information on 145,000 from its databases isn’t an information security issue because conmen used fraud, not hacking tools or techniques, to get the information. Anyone agree with that? Check it out: http://searchsecurity.techtarget.com/originalContent/0,289142,sid14_gci1062076,00.html
Answer Question
| March 8, 2005 5:29 PM
Compliance,
CRM,
Disaster Recovery,
Policies,
Risk management,
Security,
Security Program Management
0 pts.
Authorization in MIGO
I would like to grant a user authorization to object S_TCODE MIGO (Goods Receipt specifically for Purchase Order (movement type 101) where they could then enter any related data but restrict their activity to HOLD. A subsequent user would have the authorization to POST the document. I have checked SU24 but fail to see any [...]
Answer Question
| February 27, 2005 1:52 PM
Application security,
Biometrics,
Compliance,
CRM,
Database,
Development,
Digital certificates,
Disaster Recovery,
Encryption,
Exchange,
Identity & Access Management,
Instant Messaging,
Policies,
provisioning,
Risk management,
Secure Coding,
Security Program Management,
Security tokens,
Single sign-on
0 pts.
Developing an antivirus (efficient):for Windows:Using VC++-2
I am working on a Project for making an antivirus.I have 2 other project parteners. But we don’t have an guidance on how to develop the antivirus.Plz give me any relevent Information on this subject.(like components of AV,Algorithms(efficient),methods,general dection & removal of virus).(Also tell me )where can i find this information ?
Answer Question
| June 29, 2012 3:49 AM
Application security,
Architecture/Design,
Central Command,
Compliance,
Computer Associates,
configuration,
CRM,
Database,
DataCenter,
Desktop antivirus,
Development,
Disaster Recovery,
Documentation,
Encryption,
Exchange,
F-Secure,
Features/Functionality,
Fortinet,
Help Desk,
Information risk management,
Instant Messaging,
Intrusion management,
Lifecycle development,
Microsoft Windows,
patching,
PEN testing,
Platform Security,
Policies,
Product evaluation,
Redundancy,
Risk management,
Secure Coding,
Security,
Security management,
Security products,
Security Program Management,
Service and support,
Signature updating/Management,
Software Quality Assurance,
Storage,
Tech support,
Third-party services,
Trend Micro,
Vendor support,
Vendors,
VPN,
Vulnerability Assessment & Audit,
vulnerability management
0 pts.
Developing an antivirus (efficient):for Windows:Using VC++
I am working on a Project for making an antivirus.I have 2 other project parteners. But we don’t have an guidance on how to develop the antivirus.Plz give me any relevent Information on this subject.(like components of AV,Algorithms(efficient),methods,general detection & removal of virus).(Also tell me )where can i find this information ?
Answer Question
| June 29, 2012 3:49 AM
Application security,
Architecture/Design,
Central Command,
Compliance,
Computer Associates,
CRM,
Database,
DataCenter,
Desktop antivirus,
Development,
Disaster Recovery,
Documentation,
Encryption,
Exchange,
F-Secure,
Features/Functionality,
Fortinet,
Help Desk,
Information risk management,
Instant Messaging,
Intrusion management,
Lifecycle development,
Panda,
Policies,
Product evaluation,
Redundancy,
Risk management,
Secure Coding,
Security,
Security management,
Security products,
Security Program Management,
Service and support,
Signature updating/Management,
Software Quality Assurance,
Storage,
Tech support,
Third-party services,
Trend Micro,
Vendor support,
Vendors,
VPN,
Vulnerability Assessment & Audit
0 pts.
Need an Exchange migration guru
Hello, ITKE techies. My name is Christine Polewarczyk. I am the editor for SearchExchange.com, which is part of the Windows Family of TechTarget sites. Thank you so much for being a participant in ITKE beta. ITKnowledgeExchange is blossoming into a great hub for peer information exchange. I have been enjoying watching the growing trade of [...]
Answer Question
| February 20, 2005 12:02 PM
Administration,
Application management,
Backup,
Client management,
Clustering/High availability,
Database issues,
DataManagement,
Disaster Recovery,
Exchange,
Exchange 2000,
Exchange 2003,
Exchange 5.5,
Exchange Server ActiveSync,
Installation,
Maintenance,
Migration,
Outlook,
Outlook Mobile Access,
Storage management,
Tech support
0 pts.
MS Office Outlook 2003 Address book
I use MS office outlook 2003 but this is not adding the e-mail addresses to the address book/contacts automatically when I reply to someone. This feature is available in Outlook express but I didn’t find this feature in MSOO 2003. Is there any simple way I can add e-mail ids to contacts /address book without [...]
Answer Question
| February 18, 2005 5:32 AM
Compliance,
configuration,
CRM,
DataCenter,
DataManagement,
Desktop management applications,
Desktops,
DHCP,
Disaster Recovery,
DNS,
E-business,
E-mail applications,
Exchange,
Help Desk,
HP OpenMail,
IMAP4,
Intel,
Intrusion management,
IT architecture,
LANDesk,
Managed security services,
Microsoft Windows,
Netscape Mail,
Networking,
Networking Products,
Networking services,
Operating system platforms,
Outlook,
Outlook Mobile Access,
patching,
PEN testing,
Platform Security,
Policies,
POP3,
Risk management,
Security,
Security management,
Security products,
Security Program Management,
Sendmail,
SMTP,
System utilities,
Systems management software,
Tech support,
Third-party services,
Vendor support,
Vulnerability Assessment & Audit,
vulnerability management,
Wireless
10 pts.