When Social Networking Clashes with Security
From the Infosec Island Network
The need for businesses to have an online foot print is critical to reach the masses in today’s competitive environment, but the potential loss of client data and security threats to your network are daunting…
Spam Block: Public Servants or Vigilantes?
From the Infosec Island Network
Does building block lists of IP addresses that are not spammers and distributing this list without notifying the offending party vigilantism or service provision? I lean toward them being vigilantes. Perhaps if a mechanism was in place to warn the alleged spammer they are about to be blocked, the service would seem more friendly…
Sticky Situations in Social Media
From the Infosec Island Network
The Internet has made our personal and professional lives very transparent. We now live in the fishbowl. Despite what many will argue, your privacy is no longer fully in your control. What you say, do and post can live forever. You are being judged in the process. And there are repercussions for those choices you make more now than ever…
Quick Tips for Using Secure Shell
From the Infosec Island Network
SSH is a perfect security alternative to Telnet and has been used by system administrators and IT managers to configure, implement servers and network devices. Here I wanted to list a manual on Secure Shell usage…
Consolidate Compliance With Open Source
From the Infosec Island Network
Fragmented efforts to comply Sarbanes-Oxley (sarbox or SOX), Gramm Leach Bliley Act (GLBA), Health Insurance Portability and Accountability Act (HIPAA), Payment Card Industry - Data Security Standard (PCI-DSS), and ISO 27000 series, to name a few, can result in costly duplication of efforts, or worse, security holes due to the confusion of so many resources trying to tackle similar or the same problems…
DoS Attack Reveals Widespread Vulnerabilities
By Anthony M. Freed, Director of Business Development, Infosec Island Network
Infosec Island has once again gained exclusive access to a video demonstration of the XerXeS DoS attack recently developed by the infamous patriot-hacker known only as The Jester. As noted in an analysis of DoS vulnerabilities by security consultant Michael Menefee, more than half of all the websites in the world use Apache, which means this exploit potentially poses a very serious problem should it ever be utilized by nefarious elements…
Study Shows Employees Put Data at Risk
From the Infosec Island Network
The study found that 15% of German and 13% Swedish business managers have disengaged their encryption solution. In contrast, 52% of Canadian, 53% of British, and 50% of French business managers have disengaged their encryption, while U.S. business managers are the most likely to circumvent company data security policy – topping the survey at 60%…
Tracking Google’s Script Kiddie Hackers
From the Infosec Island Network
If you choose believe the writings of Mandiant, you’re under the impression that Chinese hackers are hellbent on taking over every large corporation in the United States…
Newbie Introduction to Digital Forensics Part 2
From the Infosec Island Network
Up to this point in my career Digital Forensic Analysis consisted of a basic scan for documents from the “exited” employees hard drive. Given the “extensive” nature of my past investigations, I was convinced that I could easily impress the executives at my company by doing more. So, the research part of my journey began…
Simple Log Review Checklist Released
From the Infosec Island Network
Today, many people are looking for very simple solutions to big and complex problems – and the area of logging and log management is no exception. Following that theme, we have created a “Critical Log Review Checklist for Security Incidents” which is released to the world today…


