jameso@elwood.net
February 23, 2010
Nebraska’s murder rate for black residents ranks as the third highest in the United States, and that the rate is 18 times greater than for white residents. It is incredible that in our State—one of the least affected by the current recession—the poverty rate for African-American residents in our largest city ranks as the 11th highest in the country.
Comments (View)
Comments (View)
February 22, 2010
What if I told you that I had a survey commissioned by a reputable company in your local community. The results from a sizable sample showed that 100% of the homes in your community were broken into last year. The average loss per break in was $20,000 dollars. What would you think? What would you do? Chances are you wouldn’t be sitting on your duff. You would be screaming bloody murder that something needs to be done about it. Hire more police, install alarm systems, give people guns. Something, anything to get this nightmare under control. This is the exactly the situation facing the security market according to the 2010 State of Enterprise Security report by Symantec. 100% of the respondents reported experiencing cyber losses. The average cost of these cyber losses were $2m dollars! Think about that 100% had cyber losses and the loss averaged two million dollars.
Comments (View)
February 21, 2010
Comments (View)
Comments (View)
February 19, 2010
Comments (View)
February 15, 2010
Comments (View)
February 12, 2010
Comments (View)
If you try to use your credit card out of state to buy a cup of coffee, they’ll freeze your account,” she said. But wiring $150,000 to Croatia, when you’ve never sent a dime there before? That’s not going to set off any alarms.
Comments (View)
February 10, 2010
reDuh is actually a tool that can be used to create a TCP circuit through validly formed HTTP requests. Essentially this means that if we can upload a JSP/PHP/ASP page on a server, we can connect to hosts behind that server trivially
Comments (View)
February 9, 2010
Comments (View)
January 30, 2010
Comments (View)
January 26, 2010
The most significant discovery is that the attackers had selected employees at the companies with access to proprietary data, then learnt who their friends were. The hackers compromised the social network accounts of those friends, hoping to enhance the probability that their final targets would click on the links they sent.
Comments (View)
January 25, 2010

Numb3rs’ description of IRC: This is EXACTLY how it is to do an Cyber Investigation. I can’t believe they got this so right. Amazing research they do for TV shows now.

Comments (View)
January 24, 2010
How many of these large security product vendors employ even one full-time person to play the role of a dedicated attacker attempting to bypass or defeat their defensive systems? Or have even hired one attack-oriented consultant on a contract for an independent assessment of the efficacy of their product or solution? Don’t let the same product vendors who failed to protect the victims of Operation Aurora turn right around and sell you those same products as a solution to “the APT threat.
Comments (View)