Stories by Rodney Gedda

Windows Event Viewer phishing scam remains active

By Rodney Gedda | 10 August, 2009 11:12

What do you get when you combine malware, IP telephony and an offshore call centre? A new breed of brazen phishing scam designed to target unwary Windows users.

Patriot Act, not products, ups Cloud risks for CIOs

By Rodney Gedda | 04 July, 2011 11:39

The global release of Microsoft’s Office 365 last week has raised a simple, sobering thought about dealing with US Cloud providers – they are subject to the US Patriot Act and the data they manage may be accessed by the US government regardless of where it is stored around the world. Before CIOs shun Cloud services altogether, let’s put the news in context.

Local .au DNSSEC scoping complete: auDA

By Rodney Gedda | 27 June, 2011 11:48

Australia has moved a step closer to secure DNS services with the Australian .au Domain Administration (auDA) completing the assessment phase of the planned transition, but a final go-live data is yet to be decided.

NSW DSTA adds risk management software

By Rodney Gedda | 04 April, 2011 12:01

The NSW government department tasked with the state’s data centre reform program, the Department of Services Technology and Administration, has the green light to procure a software package to support internal audit and corporate risk management.

Days of individual security over, says IIA chief

By Rodney Gedda | 29 March, 2011 16:08

People solely relying on patching and upgrades are leading themselves into a false sense of security and individual protection is no longer sufficient in the age of multi-vector attacks, according to the president of the Internet Industry Association of Australia.

Open source identity: Bitcoin technical lead Gavin Andresen

By Rodney Gedda | 21 March, 2011 14:29

Originally from Melbourne, Australia but now living in the US, Gavin Andresen is the technical lead of the Bitcoin virtual currency system. Started by Satoshi Nakamoto in 2009, Bitcoin is a digital currency system consisting of an open source client and P2P network. The aim of the Bitcoin project is a decentralised, secure peer-to-peer currency system that does not rely on banks or central transaction processing authorities. To generate “Bitcoins” people on the network use a cross-platform, open source client developed in C++. In addition to the open source aspect of Bitcoin, there is now an emerging market in services around the cryptocurrency such as exchange portals and virtual clearing houses. Previously, the Open Source Identity series has featured interviews with Ruby on Rails creator David Heinemeier Hansson, Linux’s Linus Torvalds, Jan Schneider of Horde, Mark Spencer of Asterisk fame, Spine CMS creator Hendrick van Belleghem, Free Telephony Project founder David Rowe, and PulseAudio creator Lennart Poettering. This time we talk to Gavin Andresen about the new, decentralised approach to money – Bitcoin.

CIOs in the crosshairs: Cloudwashing reaches carbon proportions

By Rodney Gedda | 18 March, 2011 13:03

Earlier this month a press release lobbed into my inbox from Salesforce.com evangelising the environmental benefits of using public cloud computing. The idea has its merits, but the message bordered on demonising on-house infrastructure in a line that Salesforce.com needs to carefully tread.

Bouris brings security products to local data centres

By Rodney Gedda | 14 March, 2011 15:41

Sydney-based serial entrepreneur and star of The Apprentice Australia, Mark Bouris, has launched a suite of IP-based, data centre access control systems to local customers in a partnership with cabling supplier Anixter.

Vodafone comes clean with network, service update

By Rodney Gedda | 22 February, 2011 10:55

Following a spate of complaints about its service levels and security standards, mobile carrier Vodafone has issued a statement of its ongoing engineering work and commitment to customers.

5 open source security projects to watch

By Rodney Gedda | 20 January, 2011 11:23 | 1 Comment

Data security is always top of mind for CIOs and CSOs, and there is no shortage of challenges when it comes to picking the right tool for the job. With network and software vulnerabilities growing at a perpetual rate, good security software can help defend against many of the large-scale threats that occur locally and from all over the Internet. In this edition of 5 open source things to watch, we take a look at security products that will guard against threats without robbing your kitty.

Vodafone reassures customers personal data is secure

By Rodney Gedda | 12 January, 2011 12:08

Vodafone has attempted to hose down concern about alleged data leaks by sending an e-mail to its customers stating their information, including credit card details, remains encrypted and secure.

Mobile benefits outweigh the risks: Westpac CTO

By Rodney Gedda | 28 December, 2010 09:00

The new paradigm of mobile banking carries with it inherent risks, but there’s no reason for consumers to be less confident about the security of their data if the right safeguards are in place, says the chief technology officer (CTO) of Westpac bank.

Tax Office releases AUSkey for Linux

By Rodney Gedda | 17 December, 2010 10:08

The Australian Taxation Office (ATO) has made good on its promise to support Linux in its next-generation authentication software, dubbed AUSkey, with the reference distribution being Ubuntu with the Firefox Web browser.

Aussie developer claims cure for ‘Wikileaks syndrome’

By Rodney Gedda | 10 December, 2010 16:19

Confidential information released via Wikileaks has sent governments around the world into a spin and put businesses on high alert but one Sydney-based software developer claims to have a solution to the perennial problem of data leakage.

Reserve Bank seeks new high-speed DR network

By Rodney Gedda | 09 December, 2010 10:16

The Reserve Bank of Australia (RBA) will refresh its existing network services over the next 12 months to keep pace with growing disaster recovery requirements at its $38 million data centre.

CSO Corporate Partners
  • Webroot
  • Trend Micro
  • NetIQ
rhs_login_lockGet exclusive access to CSO, invitation only events, reports & analysis.
CSO Directory

Access Risk Management Suite

The Access Risk Management Suite enables organizations in industries across the board, to improve security, corporate and regulatory compliance and increase operational efficiency.

Security Awareness Tip

Incident handling is a vast topic, but here are a few tips for you to consider in your incident response. I hope you never have to use them, but the odds are at some point you will and I hope being ready saves you pain (or your job!).


  1. Have an incident response plan.

  2. Pre-define your incident response team 

  3. Define your approach: watch and learn or contain and recover.

  4. Pre-distribute call cards.

  5. Forensic and incident response data capture.

  6. Get your users on-side.

  7. Know how to report crimes and engage law enforcement. 

  8. Practice makes perfect.

For the full breakdown on this article

Security ABC Guides

Warning: Tips for secure mobile holiday shopping

I’m dating myself, but I remember when holiday shopping involved pouring through ads in the Sunday paper, placing actual phone calls from tethered land lines to research product stock and availability, and actually driving places to pick things up. Now, holiday shoppers can do all of that from a smartphone or tablet in a few seconds, but there are some security pitfalls to be aware of.