Stories by David Braue

AusCERT 2013: Unmanaged, unknown privileged logins opening the door for APTs: Cyber-Ark

By David Braue | 24 May, 2013 15:19 | 4 Comments

Many companies find out the hard way that poorly managed distribution of sensitive access credentials is helping advanced persistent threats (APTs) scour networks for privileged-user credentials, Cyber-Ark’s Asia-Pacific vice president Dan Dinnar has warned.

AusCERT 2013: Companies unaware of IPv6 security risk even if they’re not using it

By David Braue | 24 May, 2013 15:17

Software vendors’ proactive approach to IPv6 has created a glaring security hole for companies that think they haven’t activated the next-generation Internet addressing protocol yet, Cisco Systems consulting security engineer Stefan Avgoustakis has warned.

AusCERT 2013: International cyberwar response more complex than geopolitical treaties: NATO CCD COE analyst

By David Braue | 24 May, 2013 12:33

They may not be able to call on real-world cooperation and defence agreements to build their cyberspace defences yet, but government security organisations may find value in emulating Estonia’s experience building a voluntary ‘cyber corps’ of security professionals available in times of need, NATO CCD COE (Cyber Defence Centre of Excellence) analyst Anna-Maria Talihärm has advised.

AusCERT 2013: Visibility critical when selling IT security to execs, says Foxtel CSO

By David Braue | 24 May, 2013 11:20

Hard-to-find security skills and the rapid pace of malware evolution make a strong relationship with a managed security services (MSS) provider as important as maintaining the internal tools to keep business executives apprised of IT-security risk, Foxtel information security manager Kevin Shaw has advised.

AusCERT 2013: Low-level analysis can find, map data deleted from Android phones

By David Braue | 23 May, 2013 15:05

Android-based smartphones are not only gaining notoriety as being susceptible to malware, but research presented by a Queensland University of Technology (QUT) forensic expert confirms that it’s possible to extract personal information from an Android phone long after that data has been deleted.

AusCERT 2013: Cloud-based scanner identifies new malware by its ancestry

By David Braue | 23 May, 2013 14:46

Polymorphic malware may be good at evading signature-based scanning engines, but the application of advanced algorithms to terabytes’ worth of malware dumps is enabling one Deakin University PhD student to detect even new strains of malware by assessing their similarity to existing, known malicious code.

AusCERT 2013: Users, cats more likely hack culprits than cyber-espionage: Trustwave

By David Braue | 22 May, 2013 21:25

Organisations convinced they have been the victims of state-sponsored cyberattacks may want to take a deep breath and look at their employees first, one security expert has advised during his address at the AusCERT 2013 security conference.

AusCERT 2013: Home-electronics gear’s UPnP as insecure in Australia as rest of world: Metasploit

By David Braue | 22 May, 2013 21:10

Australia’s Internet space shows the same distribution of vulnerable IP ports as the rest of the world and a dangerous preponderance of insecure Universal Plug ‘n’ Play (UPnP) devices, Metasploit Project founder HD Moore has warned while recounting the surprising results of his efforts to catalogue the results of communicating with every IP address on the Internet.

Dell targets ANZ security opportunities as SecureWorks debuts locally

By David Braue | 22 May, 2013 14:00

An IT security skills crunch may be hitting many established security providers and security-conscious companies, but new entrant Dell SecureWorks is confident it can thrive as it today throws its white hat into the ANZ security-services ring.

ACMA database keeps finger on Australia’s malware pulse

By David Braue | 21 May, 2013 12:21

Australian ISPs and universities are sending more than 10,000 emails a day to warn customers their systems appear to be infected by malware – but as few as one in five is ever read by its recipient, statistics from the Australian Communications and Media Authority’s (ACMA’s) Australian Internet Security Initiative (AISI) show.

The week in security: Aussie banks targeted as mobiles drive privacy fears

By David Braue | 20 May, 2013 11:14 | 1 Comment

The combination of bring your own device (BYOD) plans and social media are creating a “fantastic avenue” for undermining corporate security, a Frost & Sullivan analyst warned at the Evolve 2013 security conference in Sydney.

Security a key factor in LogMeIn’s Internet of Things platform

By David Braue | 17 May, 2013 17:22

Remote-access success story LogMeIn is staking its claim on the evolving Internet of Things (IoT) market by launching an IoT-enabling platform that uses LogMeIn’s cloud-based connectivity platform to link and secure nearly any kind of device.

Virtual desktops win the security case for Brisbane lawyers

By David Braue | 17 May, 2013 10:17

It may have started out as a way of simplifying an increasingly complicated IT environment, but Brisbane law firm Cooper Grace Ward (CGW) has found its virtual desktop infrastructure (VDI) investment is also delivering improved remote-access security, data protection and integrity of sensitive information.

Despite $1.46b furphy, 2013-14 Budget offers slim pickings for cyber security

By David Braue | 16 May, 2013 10:00

Months on from the government’s bold PR initiative in which it said it would spend $1.46 billion on IT security, the release of the 2013-14 federal budget has shown little additional financial support for this and other cyber security initiatives.

The new IAM: nailing shut the door on the Trojan horse

By David Braue | 15 May, 2013 13:55

Cloud, mobility and bring-your-own-device (BYOD) computing are providing so many new potential ingress points to your network that it’s getting near impossible to keep up. The solution, as David Braue finds, lies in reconsidering your exposure, revisiting your IAM strategy – and picking your battles carefully.

CSO Corporate Partners
  • Webroot
  • Trend Micro
  • NetIQ
rhs_login_lockGet exclusive access to CSO, invitation only events, reports & analysis.
CSO Directory

Trend Micro Mobile Security

Comprehensive enterprise protection for mobile devices

Security Awareness Tip

Incident handling is a vast topic, but here are a few tips for you to consider in your incident response. I hope you never have to use them, but the odds are at some point you will and I hope being ready saves you pain (or your job!).


  1. Have an incident response plan.

  2. Pre-define your incident response team 

  3. Define your approach: watch and learn or contain and recover.

  4. Pre-distribute call cards.

  5. Forensic and incident response data capture.

  6. Get your users on-side.

  7. Know how to report crimes and engage law enforcement. 

  8. Practice makes perfect.

For the full breakdown on this article

Security ABC Guides

Warning: Tips for secure mobile holiday shopping

I’m dating myself, but I remember when holiday shopping involved pouring through ads in the Sunday paper, placing actual phone calls from tethered land lines to research product stock and availability, and actually driving places to pick things up. Now, holiday shoppers can do all of that from a smartphone or tablet in a few seconds, but there are some security pitfalls to be aware of.