Categories
-
Recent Posts
- Security Awareness and Social Networks: Why You Should Care, and What You Should Teach
- Poor Delivery – 5 Reasons Why Security Awareness Training Programs Fail – Part 2
- If You’re Going to Use PowerPoint
- Don’t Get Bogged Down in “How To”
- The Wrong Content – 5 Reasons Why Security Awareness Training Programs Fail – Part 1
Archives
Category Archives: Information Security
Shopping Tips from the FBI

Following my post about McAfee’s 12 Scams of Christmas, here’s some safe shopping advice from the FBI. Good source material for a seasonal security awareness message to your staff.
Posted in Information Security
Leave a comment
Scanners and Shared Drives

Along the same lines as my recent post on photocopiers and information security, a friend of mine tells me that, in his organization: … we have a major issue with people leaving scanned expenses on a shared drive. It’s great … Continue reading
Posted in Information Security
Leave a comment
Sometimes the Medium Can Be the Message

An article in a recent issue of Business Week highlighted security issues with software produced by Adobe – especially Adobe Reader which is widely used in small and large organizations. The article quotes Kapersky researcher Roel Schouwenberg saying “Adobe at … Continue reading
Posted in Information Security
1 Comment
FBI Warning – Hackers Targeting Law Firms and PR Companies

The Washington Post talks about a recent FBI warning that hackers are increasingly attacking law firms and PR companies using spear-phishing emails. These emails – previously used against military and defense targets – contain hyperlinks or file attachments which launch … Continue reading
Posted in Information Security
Leave a comment
The 12 Scams of Christmas

Plenty of people are blogging, tweeting and quoting this article from McAfee posted on CNET, and justifiably so – it’s well-timed and contains pertinent information. If you’re involved in an ongoing process of security awareness training, consider including these topics … Continue reading
Posted in Information Security
Leave a comment
Photocopiers and Information Security

Are you covering the security risks of photocopiers (and multi-function machines) in your security awareness training? A recent news report from WINK-TV in Fort Myers, FL, has reminded us that the humble photocopier can be a security threat. Or perhaps … Continue reading
Posted in Information Security
Leave a comment
Cost of a Careless Mouse Click – $195,000

The Washington Post is reporting that the American Realty company lost $195,000 when an employee clicked on a link in an email that purported to be from the IRS. The link then installed a Trojan Horse which stole passwords that … Continue reading
Posted in Information Security
Leave a comment
Call Centers Not Erasing Credit Card Data from Audio Recordings

Call centers routinely record calls for quality control and training purposes. In a recent survey by Veritape reported in The Register, 95% of the call centers surveyed were found to be storing credit card data such as the three-digit verification … Continue reading
Posted in Information Security
Leave a comment
A Reminder About Availability

When we talk to end users about security, we usually focus on the confidentiality part of the CIA triad – probably because it’s the most visible part of information security. But, every now and then, there’s a news item that … Continue reading
Posted in Information Security
Leave a comment
Phishing URLs at All-Time High

SC Magazine reports that MarkMonitor, an internet fraud and brand-protection vendor, has determined that the number of phishing URLs reached a record high during Q2 2009 with more than 150,000 phishing URLs being established – eclipsing the previous record set … Continue reading
Posted in Information Security
Leave a comment