Friday, July 25, 2014

Better Not Be Storing Passwords In Plaintext Form

from here
If your bank is enforcing simplicity requirements instead of complexity requirements, maybe you should find a safer bank.

Don't Call It A Pentest

tweeted by Steven Maske

Thanks to Steven Maske for tweeting this comic about the gross misunderstanding about relationship between a vulnerability scan and a penetration test - hint: it's like the difference between signing your name with an X and writing a Shakespearean sonnet.

Thursday, July 24, 2014

"Military Grade": The True Story Of Agent.BTZ

from here and here

Obviously, "Military Grade" doesn't mean what you think it means.

Scared Of Webcam Hackers?

link to tweet

Thanks to Maarten Boone for tweeting this visual gag and caption. I'd probably just put something over the webcam, but that's me.

Wednesday, July 23, 2014

They Don't Call Them Security Suites For Nothing

from here

When all you have is a hammer, everything looks like a nail. So what do people have that makes them think all AV looks like a signature-based scanner?

How To Deal With A Computer Virus

tweeted by Heather Brooke

Thanks to Heather Brooke for tweeting this photo of a security advice column parody appearing in a print publication.

Tuesday, July 22, 2014

The Post-It Note Password Fail Is Passé

from here

In this day of ubiquitous photography and videography, a lowly post-it note on it's own where few people will ever really see it can't hold a candle to password fails that get broadcast on international television or plastered all over the Internet.