Security Corner:

Security


July 25, 2008  1:45 AM

Sure-fire Spam Zombie Killer



Posted by: Ken Harthun
email, Email security, Exchange, Firewalls, Networking, Routers, Security, spam

The other day, I got a call from one of my clients who said that their email was bouncing back from people they had always been able to send to. I investigated and found that the error message was to the effect of <hostname.domain #5.5.0 smtp;550 Blocked;Spam/Zombie address listed at...

July 22, 2008  12:26 AM

If Spam Has You Irate, Obfuscate!



Posted by: Ken Harthun
Email security, Opinion, Security, Security maxim

Spam email is not only a nuisance, it's a security risk. Most of the viruses, worms, and trojans floating around these days are transmitted in one form or another via spam. The threat can be attached directly to the email or it can rely on some subterfuge to get a clueless victim to click on a link...


July 19, 2008  12:58 AM

Unpatched PC “0wn3d” in Four Minutes or 16 Hours; Which is it?



Posted by: Ken Harthun
Firewalls, Malware, Microsoft Windows, NAT, Networking, Routers, Security, Vulnerabilities

I just love stories like this one. On the one hand, Internet Storm Center researchers say an unpatched PC connected to the Internet will be compromised in less...


July 17, 2008  1:07 AM

Windows SteadyState Can Protect Your Family & Your Family Computer



Posted by: Ken Harthun
Anti-malware, Anti-virus, Browsers, Microsoft Windows, Security

A while back, I used the Microsoft Public Access Computer Security Tool, predecessor to Windows SteadyState, to secure a...


July 5, 2008  2:43 PM

The #1 Security Priority: Protect The Information



Posted by: Ken Harthun
Embedded systems, Encryption, Firmware security, Networking, Opinion, Security, Security management, Storage, Vulnerabilities

SANS recently reported that a Ponemon Institute survey, commissioned by Dell,...


June 30, 2008  3:55 PM

Virtual Safe Deposit Box?



Posted by: Ken Harthun
Cryptography, DataManagement, Encryption, Opinion, Portable computing, Security

A bank safe deposit box, securely stored in a vault behind several feet of concrete on five sides with a virtually impenetrable combination-and-time-lock-protected door on the sixth side, is about as safe a storage place as you can get for your cash, gold, jewels, important documents, and other...


June 27, 2008  1:54 AM

The Safest Way To Do Remote Desktop Support



Posted by: Ken Harthun
Buffer Overflow, Remote management, Vulnerabilities

In a recent Q & A episode of the Security Now! podcast with Steve Gibson and Leo Laporte, a reader was concerned...


June 20, 2008  1:31 AM

HP’s iLO is not Vulnerable to Phlashing Attack



Posted by: Ken Harthun
Development, Embedded systems, Firmware security, Opinion, Remote management, Security, Security management, Vulnerabilities

My May 29th post, "Phlashing Attack Can Damage Systems Beyond Repair," generated some...


June 20, 2008  1:02 AM

WiFi Security–The Only Way is WPA



Posted by: Ken Harthun
Cryptography, Encryption, Password, Security, Security management, Security maxim, Wireless

Please note: since this article was posted, WPA-TKIP has been found to be vulnerable. See my post of 2008.11.13 entitled "WPA-TKIP Vulnerable to Attack" for more...


June 14, 2008  1:57 PM

Infected PC? Don’t Just Clean–Wipe and Reload



Posted by: Ken Harthun
Anti-malware, Malware, Opinion, Rootkit, Security, Security maxim

You've seen them: PCs with serious malware infections that seem to defy any and all attempts to clean them up. You persevere and eventually get rid of the files that regenerate upon deletion, clean up the autorun registry entries that keep the malware going, and kill all the malicious processes...