-
Big or Little brother?
It used to be the fear of 1984 and Big Brother—watching and controlling citizens’ every move. These days the writing is on the wall, while Big Brother is watching via the CCTV networks, little brother is insidiously infiltrating our computers and smart devices to build a cache of information—and it is no longer simply making off with corporate/personal data/information. Enter the RAT.
3 May / CSO Bloggers -
Baseline Security Evaluation - SEPR
Enex TestLab has been providing independent testing services for 24 years now. We cover 90 industry sectors with 8 separate testing divisions.
5 Apr / CSO Bloggers -
There is a reason why we do what we do, and it starts with a 'P'
There has to be a certain level of paranoia in the security industry. It’s what we do, our job is to believe nothing and see gaping holes where others simply trust things are being looked after.
5 Apr / CSO Bloggers -
Data retention, governance and privacy
There has been a lot of coverage in recent months over the Australian Federal Governments proposition to implement a data retention policy. The debate is polarising and highly emotive, similar to that of the shelved mandatory Internet content filtering policy.
18 Mar / CSO Bloggers -
Social media – how’s your privacy?
One of my previous blogs touched upon the Australian Federal Government’s proposed data retention laws and the inevitable storm raised by those opposed - big brother all over again. The digital Australia card. However, some individuals are voluntarily and publicly releasing personal information of far greater value than a list of the internet sites they visit. Indeed the information released is encouraged to be used by marketing and advertisers to characterise an individual and target promotions straight to their screen.
28 Feb / CSO Bloggers -
Close the Interwebz?
In my last CSO blog I posted about the Australian Federal Governments recent proposal that requires Internet Service Providers to retain their customers’ activity logs for a period of two years.
6 Dec / CSO Bloggers -
Whose watching you watching them?
There has been a lot of public debate and emotive outcry over the government's proposal to enable a security agency to gain access to the historical user activity logs of Internet Service Providers. Under that provision the requirement will be for ISPs to retain such information for a period of two years and provide it if requested.
1 Nov / CSO Bloggers -
Content Filtering — the good, the bad, and the ugly!
I was recently engaged to present a half-day workshop to a Government agency on the topic of content filtering technologies. Naturally this is a technology topic that Enex TestLab has had significant involvement with over the years, and something that I have personally had to deal with on a number of levels (and for a number of reasons).
31 Aug / CSO Bloggers -
How important is Mobile Security in a cloud enabled world?
A vast majority of workers these days carry around mobile devices which have the capability of accessing the internet. Some of these devices are supplied by organisations, but in most cases they are the employee’s own personal devices.
22 Jun / CSO Bloggers -
How do you know when your system is hacked?
One thing that I have been pondering recently is how a typical individual knows their system has been compromised.
17 May / CSO Bloggers
-
CSO Bloggers
Coming soon....
- 1
Dell targets ANZ security opportunities as SecureWorks debuts locally
- 2
Bank trojan targets users of Bitcoin exchange Mt Gox
- 3
Australian Information Security Association issues blunt warning as National Cyber Security Awareness Week begins
- 4
ACMA database keeps finger on Australia’s malware pulse
- 5
Review: Mobile Device Management
-
HID Global Awarded Intergraf’s Prestigious “Security Printer” Certification
-
Blue Coat unveils strategy for securely empowering businesses
-
A10 Networks and Brocade reach settlement of legal disputes
-
PR Deadlines scores two more ICT accounts
-
AVG Technologies Acquires Leading Online Privacy Firm PrivacyChoice
- FTTest Analyst (MS Environment) .netNSW
- FTLead Software EngineerSA
- FTTest EngineerVIC
- FTR&D EngineerSA
- FTOS Web Applications DeveloperNSW
- FTFlash / ActionScript Developer - ContractNSW
- FTQuality ManagerSA
- FTTest Analyst (MS Environment) .netNSW
- FTSenior Python DeveloperNSW
- FT.NET - Sitecore Developer - Melbourne - PermNSW
- FTJob Title: Mac Systems/ Enterprise Systems EngineerNZ
Incident handling is a vast topic, but here are a few tips for you to consider in your incident response. I hope you never have to use them, but the odds are at some point you will and I hope being ready saves you pain (or your job!).
- Have an incident response plan.
- Pre-define your incident response team
- Define your approach: watch and learn or contain and recover.
- Pre-distribute call cards.
- Forensic and incident response data capture.
- Get your users on-side.
- Know how to report crimes and engage law enforcement.
- Practice makes perfect.
Warning: Tips for secure mobile holiday shopping
I’m dating myself, but I remember when holiday shopping involved pouring through ads in the Sunday paper, placing actual phone calls from tethered land lines to research product stock and availability, and actually driving places to pick things up. Now, holiday shoppers can do all of that from a smartphone or tablet in a few seconds, but there are some security pitfalls to be aware of.









