Viewing posts by admin
culture-of-fear
Posted by: admin 16 years, 3 months ago
When you're afraid all the time, inter-company promotional faxes that include a picture of match being lit combined with the coincidental delivery of package are enough to create a bomb scare. Hopefully, this is limited to Massachusetts, but I have my doubts.
thanksgiving
Posted by: admin 16 years, 3 months ago
It will probably be a little quiet around here for the rest of the week as it's the Thanksgiving holiday here in the US. I'll still be checking my e-mail via the blackberry, of course :). Thanks to all who have made this a great year for WiKID.
texas-considers-requiring-pci-compliance
Posted by: admin 16 years, 3 months ago
In an interesting twist in the continuing PCI story, the Texas legislature may mandate PCI compliance:
According to the language of the bill, "A business that, in the regular course of business, collects, maintains, or stores sensitive personal information in connection with an access device must comply with payment card industry data security standards." The bill would allow a financial institution in the state to request a breached entity to provide certification of its compliance with PCI specified controls. HB 3222 would require the certification to be issued by a PCI-approved auditor no earlier than 90-days before the breach.It sounds like retailers would have to be audited every 90 days! Is this bill the work of the financial institutions or the auditors?
identity-theft-the-nanny-state-and-ambulance
Posted by: admin 16 years, 3 months ago
Mordaxus at Emergent Choas has an inciteful post on how the government can protect people from identity theft.
I can think of a situation we need protection from. Here is a scenario. Let us take the case of a lender, Larry. We need a law to make it so that if Larry lends money to Alice, he cannot try to collect it from Bob. That's all we need. If we have that, we'll have all the legal protection we need to solve identity theft.This is an interesting idea, but I fear that it is too simplistic. I suspect that this is the current law. The problem is really the burden of proof. Currently, Bob has to prove to Larry that he did not borrow the money. Larry gets to put all sorts of nastiness onto Bob's credit report that Bob will never be able to get off. Bob can sue Larry, butas mordaxus points out, the way to change the business practice is to make it not worthwhile, which means a class-action lawsuit.
telework-promoted-to-cut-gas-costs
Posted by: admin 16 years, 3 months ago
According to a recent study, federal workers could save $55 on monthly fuel costs.
The online-based telework promoting organization figured that current fuel prices cost typical GS-7, Step 5 federal employees $138.80 a month, nearly 7 percent of their after-tax income. The organization's study, titled "Gas Fuels Telework," is based on a survey of 3,500 federal employees registered with the Telework Exchange Web site.If you've been in DC area traffic, then you know that anything that gets cars off the roads is a good thing.
Recent Posts
- Blast-RADIUS attack
- The latest WiKID version includes an SBOM
- WiKID 6 is released!
- Log4j CVE-2021-44228
- Questions about 2FA for AD admins
Archive
2024
2022
- December (1)
2021
2019
2018
2017
2016
2015
2014
- December (2)
- November (3)
- October (3)
- September (5)
- August (4)
- July (5)
- June (5)
- May (2)
- April (2)
- March (2)
- February (3)
- January (1)
2013
2012
- December (1)
- November (1)
- October (5)
- September (1)
- August (1)
- June (2)
- May (2)
- April (1)
- March (2)
- February (3)
- January (1)
2011
2010
- December (2)
- November (3)
- October (3)
- September (4)
- August (1)
- July (1)
- June (3)
- May (3)
- April (1)
- March (1)
- February (6)
- January (3)
2009
- December (4)
- November (1)
- October (3)
- September (3)
- August (2)
- July (5)
- June (6)
- May (8)
- April (7)
- March (6)
- February (4)
- January (427)
2008
- December (1)
Categories
- PCI-DSS (2)
- Two-factor authentication (3)
Tags
- wireless-cellular-mobile-devices (7)
- Two-factor authentication (10)
- Wireless, cellular, mobile devices (6)
- NPS (1)
- Phishing and Fraud (111)
- Active Directory (1)
- pam-radius (3)
- privileged access (2)
- Cloud Security (10)
- Mutual Authentication (60)
- Web Application Authentication (1)
- Authentication Attacks (99)
- pci (50)
- Security and Economics (97)
- WiKID (133)
- pam (2)
- VPN (1)
- Installation (2)
- RADIUS Server (1)
- Open Source (64)
- Tutorial (2)
- Strong Authentication (35)
- Information Security (137)
- Transaction Authentication (13)
- Miscellaneous (100)
- Linux (2)
- transaction-authentication (6)
- Two Factor Authentication (254)