Oct 1 2009 1:49PM GMT
Posted by: Margaret Rouse
Malware,
Trojan horse,
RAT,
remote access tool,
remote access Trojan,
Security,
risk management
 |
“In an even more sophisticated ploy, the Trojan altered the victim’s online banking page to change the amount of the transfer to a smaller number. In one transaction, the cybercriminals stole more than $8,000, but to the victim, it appeared like a $53 transaction.”
Angela Moscaritolo, URLZone touted as most sophisticated banking Trojan yet |
Today’s WhatIs.com Word of the Day is RAT. It’s a type of malware horse.
Feb 6 2009 12:55PM GMT
Posted by: Margaret Rouse
Compliance,
change managment,
risk management,
IT Governance
If you missed Kelly’s article when it first came out, take moment and read through it. I bet you’ll learn something.
Key points I want to remember:
- Two of their most common reasons for failing an audit are poor documentation and poor training programs.
- It’s all about proving that data isn’t tampered with — from inside or out.
- Manage change in a consistent manner.
- Clearly define roles and permissions.
- Know who (and where) users are, what role they play and what permissions they have.
- Align physical security with IT security.
- Be ready to demonstrate how you monitor security.
- Be ready to demonstrate how you are able to detect and act on anomalies.
- Map security processes to business processes. A checklist isn’t enough.