Exploits, Vulnerabilities and Payloads – Who Knew?

I can't count how many times I've heard vulnerabilities called exploits and exploits called vulnerabilities. I’ve even heard payloads called exploits or vulnerabilities. That's okay for an exploit if the…

Comments Off on Exploits, Vulnerabilities and Payloads – Who Knew?

Brew Your Own ALE

When we at SecureIQLab test security products, we go above and beyond reporting efficacy and cost; we also quantify operational efficiency and a metric we call ROSI: Return on Security…

Comments Off on Brew Your Own ALE

Support Your Local Pub By Using ALE

For a time when I worked at Microsoft, in my department, the booze cart would come by every Friday afternoon for happy hour, and we'd get free alcoholic beverages. The…

Comments Off on Support Your Local Pub By Using ALE

To Breach or Not to Breach

The rapid adoption of could computing was yesterday’s news 5 years ago. Today’s news is that one of the most critical cloud security technologies is woefully ineffective. In addition to…

Comments Off on To Breach or Not to Breach

LastPass, LostPass, or HallPass

I believe that all of our readers have heard about the LastPass Breach. There is a lot of seriously flawed information out there on social media. Yes, it appears to…

Comments Off on LastPass, LostPass, or HallPass

The Myth of Password Cracking AKA Bad Analysis

Fact: The value of a great test can be negated by inaccurate, or missing analysis. Now onto the myth of password cracking. We’ve all heard the advice to make strong passwords. The…

Comments Off on The Myth of Password Cracking AKA Bad Analysis

Planet of the APIs

Yeah, sure I had fun making the Planet of the Apes pun, but this really is the planet of the APIs (application programming interfaces). Want to travel around the earth?…

Comments Off on Planet of the APIs

Putting Firewalls to the Test

The next generation firewall (NGFW) was invented by a gentleman named Jean-Luc Picard on September 28, 1987, but it would be several years before terrestrial bound enterprises (no pun intended)…

Comments Off on Putting Firewalls to the Test

The Case Against Default Libraries

Windows has a sort of handy feature, but nobody has ever found it. Well, yeah, this one is ubiquitous. The “libraries.” Simple enough, a link to default folders for documents,…

Comments Off on The Case Against Default Libraries