Tag Archives: breach notification

The Professional

An interesting narrative, trapped unfortunately behind a pay wall, comes from the Chronicle of Higher Education – “Chapel Hill Researcher Fights Demotion After Security Breach” A cancer researcher’s database of gets potentially pwnd (two years from incident to discovery), spurring the … Continue reading

Posted in Uncategorized | Tagged , , , , , , , | Leave a comment

Intent

There’s a whole bunch of the IDC/RSA white paper on insider risk management that puzzles me on one level or another. “Whether the threats are accidental or deliberate, the costs are still the same.” I didn’t see much data in … Continue reading

Posted in Uncategorized | Tagged , , , , | Leave a comment

Market Fresh

A curious discussion of terror risk, and a terror prediction futures market by some GMU economist types and at the Chronicle’s Footnoted blog. I don’t know enough to about econ to assess the value of such a market, but I … Continue reading

Posted in Uncategorized | Tagged , , , , , | Leave a comment

I Feel That It’s Almost Crime

Imagine Monster put a click-through license on the malware, adjusted the privacy policy a tad (include an opt-out for additional “services”), and voila! It’s not a privacy breach, it’s an additional revenue stream! The 1.6M bits of Monster job hunter … Continue reading

Posted in Uncategorized | Tagged , , , , , | Leave a comment

Half Baked

What follows are annoying thoughts that have been ground to meaningless gravel in my head for the past month or so. As soon as I think them through, and dismiss them, my brain belches them back up. Committing them to … Continue reading

Posted in Uncategorized | Tagged , , , | Leave a comment

SSNS ON THE LOOSE! (Legacy Edition)

I’m trying to understand the newsworthiness of the latest episode of “SSNS On The L0OzE. OMG!!1!!” Some dude in the mail room puts a bunch of computer tapes in the wrong slot, according to the AP report in the Houston … Continue reading

Posted in Uncategorized | Tagged , , , , , | Leave a comment

Repost Redux: Special SXSW Edition

Having read a few additional commentaries, I began to think some more on two issues I posted about earlier. Greg Abbott vs. The County ClerksMordaxus at Emergent Chaos says we need to chill, which made me wonder if there was … Continue reading

Posted in Uncategorized | Tagged , , , , , | Leave a comment

Charts ‘n Graphs

From Pogo, this article from Physorg on the classic Evil Hacker v. Evil Suit dilemma. From the article: If Phil Howard’s calculations prove true, by year’s end the 2 billionth personal record – some American’s social-security or credit-card number, academic … Continue reading

Posted in Uncategorized | Tagged , , , , | Leave a comment

Impacted Molars: Misguided Ninja Dudes and PCI Awareness

MESIALDark Reading continues its obsession with physical security:Network dude rassels potential bad guy, followed by a stern warning on what a scary world it is out there, cause physical attacks hurt.Forgive me if I’m out of line, but why would … Continue reading

Posted in Uncategorized | Tagged , , , , | Leave a comment

Infosecalypse Now

A number of links in the chain:Mr. Walsh asks Why We Fight?Which spurs Mr. Hoffman’s Nam flashback.Bloginfosec says it’s safe to surf this beach, so its safe to surf this beach. Meanwhile, Charlie squats in the bush, everyday getting stronger, … Continue reading

Posted in Uncategorized | Tagged , , , | Leave a comment