Two Vulnerability Scanning Tools Evaluated

November 3, 2009 by ADMIN · 2 Comments

By Bozidar Spirovski, CISSP, MCSA, MCP

In terms of speed, Retina performed much faster. In terms of scan depth, Nessus has a small advantage, since it includes a web mirroring tool that is very helpful in HTTP. In a direct comparison, Nessus wins simply because Retina manifested erroneous results on repeat scans.

A Process Checklist for System Hardening

October 20, 2009 by ADMIN · 6 Comments

By Bozidar Spirovski, CISSP, MCSA, MCP

Most administrators and security officers are well aware of the necessity of system hardening for corporate systems. Hardening is the process of securing a system by reducing its surface of vulnerability. By the nature of operation, the more functions a system performs, the larger the vulnerability surface. Here is a checklist and diagram by which you can perform your hardening activities.

Securing Hardware for Storage and Disposal

August 31, 2009 by ADMIN · Leave a Comment

By Bozidar Spirovski, CISSP, MCSA, MCP

Any organization should have a simple and brief procedure to treat information carriers for systems that are to be discarded. All that hardware contains a lot of confidential information, and it is essential that such data is properly erased so it cannot be recovered. Here is a brief summary of the crucial information disposal procedure elements.