Quick Tips for Using Secure Shell
From the Infosec Island Network
SSH is a perfect security alternative to Telnet and has been used by system administrators and IT managers to configure, implement servers and network devices. Here I wanted to list a manual on Secure Shell usage…
Consolidate Compliance With Open Source
From the Infosec Island Network
Fragmented efforts to comply Sarbanes-Oxley (sarbox or SOX), Gramm Leach Bliley Act (GLBA), Health Insurance Portability and Accountability Act (HIPAA), Payment Card Industry - Data Security Standard (PCI-DSS), and ISO 27000 series, to name a few, can result in costly duplication of efforts, or worse, security holes due to the confusion of so many resources trying to tackle similar or the same problems…
DoS Attack Reveals Widespread Vulnerabilities
By Anthony M. Freed, Director of Business Development, Infosec Island Network
Infosec Island has once again gained exclusive access to a video demonstration of the XerXeS DoS attack recently developed by the infamous patriot-hacker known only as The Jester. As noted in an analysis of DoS vulnerabilities by security consultant Michael Menefee, more than half of all the websites in the world use Apache, which means this exploit potentially poses a very serious problem should it ever be utilized by nefarious elements…
Study Shows Employees Put Data at Risk
From the Infosec Island Network
The study found that 15% of German and 13% Swedish business managers have disengaged their encryption solution. In contrast, 52% of Canadian, 53% of British, and 50% of French business managers have disengaged their encryption, while U.S. business managers are the most likely to circumvent company data security policy – topping the survey at 60%…
Tracking Google’s Script Kiddie Hackers
From the Infosec Island Network
If you choose believe the writings of Mandiant, you’re under the impression that Chinese hackers are hellbent on taking over every large corporation in the United States…
Newbie Introduction to Digital Forensics Part 2
From the Infosec Island Network
Up to this point in my career Digital Forensic Analysis consisted of a basic scan for documents from the “exited” employees hard drive. Given the “extensive” nature of my past investigations, I was convinced that I could easily impress the executives at my company by doing more. So, the research part of my journey began…
Simple Log Review Checklist Released
From the Infosec Island Network
Today, many people are looking for very simple solutions to big and complex problems – and the area of logging and log management is no exception. Following that theme, we have created a “Critical Log Review Checklist for Security Incidents” which is released to the world today…
Press F1 for Help? Microsoft Zero Day Threat!
From the Infosec Island Network
Microsoft published security advisory 981169 yesterday in response to the zero day vulnerability reported a few days prior. The vulnerability is in the help system and can be triggered by luring an Internet Explorer user into pressing the F1 key…
A Newbie’s Introduction to Digital Forensics
From the Infosec Island Network
The economic and business challenges of the last year have forced changes to business priorities in many areas. For IT, increased scrutiny was placed on data leakage and security. When times are good, businesses can become distracted with new products and technologies. It is not until budgets are cut that the focus moves inward…
Security Best Practice: Trust But Verify…
From the Infosec Island Network
Very interestingly enough, in the past five or six days we have been detecting ad networks including Google Adsense, Adultadwords, and Adbrite allowing malware-laden ads on their networks. We are not the only ones who have identified this issue, check out the following links for more information about them…


