If the Apple iPhone AppStore “censorship” banned insecure apps, security leap forward!
Entries from April 2009
Twelve Word Tuesday: We Need App Stores on Other Platforms
April 28th, 2009 · No Comments
Tags: Uncategorized
Happy Birthday, Samuel FB Morse
April 27th, 2009 · 2 Comments
In case you are wondering why the Google logo today is a bunch of multicolored dots and dashes, today is the birthday of Samuel Finley Breese Morse, inventor of the telegraph. Well, even though Morse did obtain a patent for the telegraph, inventor is a strong word – Morse was more of an integrator. He [...]
Tags: Uncategorized
Whither Mobile Malware?
April 24th, 2009 · No Comments
To combat a lot of mobile malware hype at the time, back in 2005, John Girard of Gartner and I put out a Gartner Research Note “Fast Spreading Virus or Worm Won’t Hit Mobile Devices Before Year-End 2007.” In the note we laid out three requirements that were necessary and we thought those three would [...]
Tags: Uncategorized
Last Day at RSA
April 23rd, 2009 · 2 Comments
Wednesday morning I was on a panel about the state of the information security business – you can see a summary here. I’m always struck by how people want to either treat information security as just like any other technology business, or as totally different from every other technology business. Of course, it is really [...]
Tags: Uncategorized
RSA Conference Day 1
April 22nd, 2009 · No Comments
The RSA Conference has followed a standard format for a long time now. The first couple of hours are talks by the major vendor sponsors and then comes the Cryptographer’s Panel, for me always the best part of the show. Like most years, up on stage are Whit Diffie and Martin Hellman, of Diffie-Hellman fame; [...]
Tags: Uncategorized
Twelve Word Tuesday: The Shortcomings of Software Reputation Services
April 21st, 2009 · 1 Comment
If being on 1,000,000 PCs over a month equals trusted, Conficker’s trusted.
(Source: Great comment by Adi Shamir on this morning’s Cryptographer’s Panel at the RSA Conference)
Tags: Uncategorized
Security Thoughts: Oracle Acquiring Sun
April 20th, 2009 · 3 Comments
From a security perspective, Oracle acquiring Sun is mostly about Identity and Access Management – Earl Perkins and Gartner’s IAM team will be putting out a First Take with our official position. From the larger security market perspective, mega-deals like this always have ripple effects:
Herd mentality – there will likely be copycat mergers, as merger-itis [...]
Tags: Uncategorized
It’s RSA Conference Week!
April 20th, 2009 · No Comments
I’ve been going to what used to be called the RSA Data Security conference since 1995. It was a lot more fun the first few years I went, as it really was a data security conference and lots of deep diving into cryptography. When the Internet blew up and then Security Dynamics bought RSA, it [...]
Tags: Uncategorized
The Difference Between Awareness and Enforcement
April 17th, 2009 · 5 Comments
AWARENESS
30 mile per hour speed limit signs every 1/4 mile on a stretch of road that goes past the elementary school where my wife works. Result: everyone knows the speed limit and drives 40-50 mph.
ENFORCEMENT
Traffic cameras that automatically issue $40 tickets if you exceed 39 mph were installed. Result: everyone obeys the speed limit and [...]
Tags: Uncategorized
Prioritize Patching! Payoff Pirates?
April 16th, 2009 · No Comments
Today we highlight security topics that begin with the letter P, in honor of the 16th day of the month:
PATCHING
Ah, April 16th – US tax day is over, the sun in shining in the Washington DC area after several days of rain. But as our attention turns to spring, don’t forget: this week included the [...]
Tags: Uncategorized