<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Angel Anderson &#187; Computers</title>
	<atom:link href="http://www.angelanderson.com/category/computers/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.angelanderson.com</link>
	<description>Designer, Developer, Web Monster</description>
	<lastBuildDate>Fri, 02 Jul 2010 18:39:56 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Illegal physical and internet intrusion to the database</title>
		<link>http://www.angelanderson.com/illegal-physical-and-internet-intrusion-to-the-database/</link>
		<comments>http://www.angelanderson.com/illegal-physical-and-internet-intrusion-to-the-database/#comments</comments>
		<pubDate>Thu, 08 Apr 2010 18:04:20 +0000</pubDate>
		<dc:creator>Angel</dc:creator>
				<category><![CDATA[Computers]]></category>

		<guid isPermaLink="false">http://www.angelanderson.com/?p=155</guid>
		<description><![CDATA[Recently “Software Company” hire me to perform a security risk assessment audit, “Software Company” want it me to determine the value of its assets and the current physical and network security risks. I started using a passive network sniffer on the network backbone to show the frequency if any of remote access attempts and probes, [...]]]></description>
			<content:encoded><![CDATA[<p>Recently “Software Company” hire me to perform a security risk assessment audit, “Software Company” want it me to determine the value of its assets and the current physical and network security risks.</p>
<p>I started using a passive network sniffer on the network backbone to show the frequency if any of remote access attempts and probes, I quickly realize that “Software Company” it’s at risk.</p>
<p><em>Why “Software Company” would want to perform this type of risk assessment?</em></p>
<p>Computer crime will cost a company thousands of dollars, this price not includes loss of business when public finds out “Software Company” information was compromise. Yet companies still drag their feet on proactive physical and network security. I can stress enough how important security is, not only that business reputation, revenue and profits will be impact, especially if there’s a widespread report that your information has been compromised.</p>
<p>After my initial check with a network sniffer, I generated a risk report by using a high-profile tool to attack your network from the outside and found plenty of the recommended security layers of protection in place.</p>
<p>Firewalls, email filtering, IDS, and IDP systems protect the perimeter and critical network segments.  Hardened servers, anti-malware and carefully managed access controls protect individual devices as deperimeterization increases.</p>
<p>But these controls are ineffective for the most part, activity, of successful or unsuccessful, that indicates that one or more controls might have failed was visible. This kind of information was easily access in large part by security log management. Security logs contain information relevant to security management are generated by many sources, including:</p>
<ul>
<li>Firewalls</li>
<li>Intrusion detection and prevention systems</li>
<li>Anti-malware systems, especially centrally managed      solutions with aggregated reporting</li>
<li>Operating systems</li>
<li>Switches</li>
<li>Routers</li>
<li>Workstations</li>
<li>Applications</li>
</ul>
<p>We recommend that administrators read looks on a daily basis and not wait until there’s a security incident and have them check for:</p>
<ul>
<li>Password hacking</li>
<li>Large numbers of login failures</li>
<li>Malware attacks</li>
<li>Port scans</li>
<li>Denial of service attacks</li>
<li>Excessive errors on network devices</li>
</ul>
<ul>
<li>Policy violations</li>
<li>Fraudulent activities</li>
<li>Operational problems</li>
<li>Regulatory compliance issues</li>
<li>Ensure all antivirus software at all points of entry is      updated regularly.</li>
<li>Require all desktops have antivirus detection</li>
<li>Scan all files on command or access</li>
<li>A provision against downloading files from the Internet</li>
<li>Assign each staff member a virus or form of attack to      research and monitor.</li>
<li>Require that at least one member of your staff attend a      security conference.</li>
<li>Make sure you’re familiar with what sort of support and      help your antivirus vendor offers. Most offer some advice and support for      top-tier customers.</li>
<li>Create an outbreak checklist that delineates how your      staff will recover after an outbreak, The checklist should outlines each      step needed to mobilize your staff during an outbreak and how to update      servers within 90 minutes.</li>
</ul>
<p>The challenges to log review can be overwhelming to many businesses.  Logs are continuously growing, are located in many silos, and the staffing and skills necessary to make sense from all the information collected is unavailable.  Security Log Management helps with the process of aggregating, correlating, and reacting to information captured in logs across an enterprise.</p>
<p>Recommendations are as follow,</p>
<p>Implementing the right log management solution, whether in-house or from a managed security services provider, is the best way to ensure log analysis provides the best picture of network activity. Log management is an essential part of any security program.  Without the visibility it provides, a security manager lacks the ability to proactively address potential weaknesses in security controls—while reacting blindly to security incidents.</p>
<p>Implement an offsite backup solution, and test it on the regular basis. You want to test how long it takes for a full backup and incremental backups to be perform, you want to test a full data recovery time and check after the restore if the data is intact or no loss of data is found.</p>
<p>Physical security is very important, only authorize, trained personnel need to have access to the machines and or data. Make them sign a network user agreement.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.angelanderson.com/illegal-physical-and-internet-intrusion-to-the-database/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Free Anti-Virus from Microsoft</title>
		<link>http://www.angelanderson.com/free-anti-virus-from-microsoft/</link>
		<comments>http://www.angelanderson.com/free-anti-virus-from-microsoft/#comments</comments>
		<pubDate>Sun, 04 Oct 2009 10:45:51 +0000</pubDate>
		<dc:creator>Angel</dc:creator>
				<category><![CDATA[Computers]]></category>
		<category><![CDATA[Free]]></category>

		<guid isPermaLink="false">http://www.angelanderson.com/?p=85</guid>
		<description><![CDATA[Anti-virus software is a necessity for all Windows users. Microsoft have finally released their own security package named Security Essentials. It offers protection against viruses, malware, trojans, rootkits, and other malicious software. The product is free and can be downloaded by anyone using a genuine copy of Windows from the Security Essentials website. Versions are [...]]]></description>
			<content:encoded><![CDATA[<p>Anti-virus software is a necessity for all Windows users. Microsoft have finally released their own security package named Security Essentials. It offers protection against viruses, malware, trojans, rootkits, and other malicious software.</p>
<p>The product is free and can be downloaded by anyone using a genuine copy of Windows from the <a href="http://www.microsoft.com/security_essentials/">Security Essentials website</a>. Versions are available for Windows XP, Vista, and 7. No registration is required and the software can be installed on any number of PCs without restrictions.</p>
<p>Security Essentials takes over from Windows Live OneCare, a commercial offering that was phased out in June. Although Security Essentials is free, it will not be installed with Windows or provided as an automatic update. That’s probably a wise move: automatic installations could clash with existing anti-virus software. It would also attract unwanted attention from anti-trust regulators, especially in the EU.</p>
<p>The big question: is Security Essentials any good? I’m testing it now and will report back soon.</p>
<p>Links: <a href="http://www.microsoft.com/security_essentials/">Microsoft Security Essentials website</a></p>
<p>Have you tried Security Essentials? What did you think? What’s the best anti-virus software you’ve found? Or are they all awful?!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.angelanderson.com/free-anti-virus-from-microsoft/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Card cracking and data retrieving</title>
		<link>http://www.angelanderson.com/card-cracking-and-data-retrieving/</link>
		<comments>http://www.angelanderson.com/card-cracking-and-data-retrieving/#comments</comments>
		<pubDate>Tue, 15 Sep 2009 07:16:30 +0000</pubDate>
		<dc:creator>Angel</dc:creator>
				<category><![CDATA[Computers]]></category>

		<guid isPermaLink="false">http://www.angelanderson.com/?p=73</guid>
		<description><![CDATA[Design for law enforcement and the military Crowbar is effective but has limited use. If you need to break into a password protected computer, one without a lock out timer or a security subsystem that looks for attacks. You simply need a program that performs a dictionary attack against the password, trying every possible combination. [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Design for law enforcement and the military Crowbar is effective but has limited use.</strong></p>
<p>If you need to break into a password protected computer, one without a lock out timer or a security subsystem that looks for attacks. You simply need a program that performs a dictionary attack against the password, trying every possible combination.</p>
<p>If the dictionary attack fails, the next step is to try words with numbers, and eventually it will work. It might take hours or even days but it will work.</p>
<p><em>You will be surprise how many people use big word as passwords and think that it can’t be hacked.</em></p>
<p>If you have the money, you need to try The Crowbar, I found it to be a powerful and subtle device. You can use it to crack security on a handheld device without alerting the owner that the device’s security has been compromise.</p>
<p>If you need to hack an MMC/SC card, this is the perfect tool.</p>
<p>Performances and use I give it a A, price is a bit high at $2,300</p>
<p><strong>For more information</strong></p>
<p>Cybersolutions.mantech.com</p>
]]></content:encoded>
			<wfw:commentRss>http://www.angelanderson.com/card-cracking-and-data-retrieving/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Get a free PC safety scan</title>
		<link>http://www.angelanderson.com/get-a-free-pc-safety-scan/</link>
		<comments>http://www.angelanderson.com/get-a-free-pc-safety-scan/#comments</comments>
		<pubDate>Fri, 31 Jul 2009 18:28:35 +0000</pubDate>
		<dc:creator>Angel</dc:creator>
				<category><![CDATA[Computers]]></category>
		<category><![CDATA[Free]]></category>

		<guid isPermaLink="false">http://www.angelanderson.com/?p=43</guid>
		<description><![CDATA[Windows Live OneCare safety scanner is a free service designed to help ensure the health of your PC. Check for and remove viruses Get rid of junk on your hard disk Improve your PC&#8217;s performance Windows Vista users, try the Windows Vista edition of the scanner. Firefox users: see the special instructions for running the [...]]]></description>
			<content:encoded><![CDATA[<p>Windows Live OneCare safety scanner is a <strong>free</strong> service designed to help ensure the health of your PC.<a href="http://onecare.live.com/site/en-us/default.htm"><img class="alignright size-full wp-image-46" title="onecare" src="http://www.angelanderson.com/wp-content/uploads/2009/07/0000000001_000000000000000301315.jpg" alt="onecare" width="300" height="250" /></a></p>
<ul>
<li>Check for and remove viruses</li>
<li>Get rid of junk on your hard disk</li>
<li>Improve your PC&#8217;s performance</li>
</ul>
<p>Windows Vista users, try the <a href="http://onecare.live.com/site/en-us/center/whatsnew.htm">Windows Vista edition</a> of the scanner.</p>
<p><strong>Firefox users:</strong> see the <a href="http://onecare.live.com/site/en-us/article/firefox.htm">special instructions</a> for running the scanner using Firefox.</p>
<p id="CentersDivide">
<h3>Fix specific PC issues</h3>
<p>Use the full service scan to check everything. To help fix particular problems on your PC, turn to the individual scanners below.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.angelanderson.com/get-a-free-pc-safety-scan/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
