John Pescatore

A member of the Gartner Blog Network

Archives for November, 2009


If You Build A Cloud Securely, and Prove It, They Will Come. Until Then, Not So Much

by John Pescatore  |  November 30, 2009  |  3 Comments

Dark Reading reports on a survey by Launchpad Europe that 50% of enterprises says security concerns are the biggest inhibitor to their use of public cloud technologies, with budgetary constraints secondary at 21.4%. The top security priority was security of the cloud infrastructure, rated twice as important as the “due diligence and track record” of [...]

3 Comments »

Category: Uncategorized     Tags:

Whatever Happened to Getaway Day?

by John Pescatore  |  November 25, 2009  |  2 Comments

It used to be that the Wednesday before Thanksgiving in the US was a very quiet work day. This year I have 10 client inquiry calls scheduled today and they are all over the map: firewalls, WLANs, PCI, cloud security, social networking, MPLS and security program maturity. I guess in tough economic years everyone is [...]

2 Comments »

Category: Uncategorized     Tags:

Twelve Word Tuesday: Thanks for Forty Years of Unix

by John Pescatore  |  November 24, 2009  |  3 Comments

1969 brought Unix, Woodstock and man on the moon. 2009: cloud hype?

3 Comments »

Category: Uncategorized     Tags:

Are You More Secure Using an Alternative to Skype?

by John Pescatore  |  November 23, 2009  |  1 Comment

Last Friday I spent the morning taking questions from two Information Assurance classes at the National Defense University at Ft. McNair in Washington DC. It was a fun two hours – the questions were all over the map, from secure use of the cloud to new threats to how can the government “secure” the Internet. [...]

1 Comment »

Category: Uncategorized     Tags:

Friday Filler: If The Sun Rose in the East, You Had a Cyber-Attack Today

by John Pescatore  |  November 20, 2009  |  Submit a Comment

For some reason, the SANS Newsbites didn’t use my comments on the item below, so here it is to fill the Friday blog: US Government Agencies Say Incidents Are a Daily Occurrence (November 10 & 11, 2009) A CDW-Government survey of 300 US government IT professionals found that 44 percent of agencies noted an increase [...]

Submit a Comment »

Category: Uncategorized     Tags:

Is Apple an “Enterprise-class Vendor” From a Security Perspective? Nah

by John Pescatore  |  November 19, 2009  |  1 Comment

This week’s Twelve Word Tuesday was about all those holiday season presents showing up on your network when everyone comes back to work on January 5th.  Apple is one of the major vendors of those “toys” and last week colleague Nick Jones asked for input on this question: “Is Apple an Enterprise-class Vendor?” At Gartner’s [...]

1 Comment »

Category: Uncategorized     Tags:

Wednesday Whimsy: Invest in Prevention, or Legislate Away Threats?

by John Pescatore  |  November 18, 2009  |  2 Comments

Back in 2007, I nominated Fireeye as a Gartner “Cool Vendor” since I’m constantly looking for vendors doing interesting things to deal with the “arbitrary malware” problem – developing wire-speed techniques to determine if in-bound executables are malicious or not. Today there is an announcement that In-Q-Tel (IQT,) the CIA’s “venture capital” organization, has invested in [...]

2 Comments »

Category: Uncategorized     Tags:

Twelve Word Tuesday: Only 50 Days Until All Those Christmas Presents Show Up On Your Network

by John Pescatore  |  November 17, 2009  |  2 Comments

How will you secure those iPhone and Android stocking stuffers on 1/5/2010?

2 Comments »

Category: Uncategorized     Tags:

Friday Follies: A Busy Week for Hacking of Consumer-Grade Social Networks

by John Pescatore  |  November 13, 2009  |  1 Comment

MSNBC has a piece on a “vigilante” hijacking a number of Facebook group sites. Facebook’s statement helpfully pointed out “We are still investigating this situation, but an extremely small number of groups have been affected.” Sort of like a doctor saying “I haven’t really finished checking, but at first glance the tumor I did find [...]

1 Comment »

Category: Uncategorized     Tags:

Addressing Credit Card Vulnerabilities

by John Pescatore  |  November 11, 2009  |  Submit a Comment

I commented here yesterday, and in this weeks SANS NewsBites, about the overhype in Sunday’s 60 Minutes piece on cybersecurity.  One thing that was mentioned was “white card fraud,” where card data stolen on line is put on blank credit, debit or ATM cards and waves of “card present” fraud happens. Nothing new – I [...]

Submit a Comment »

Category: Uncategorized     Tags: