Search my blog for the term unpredictable and the majority of the results describe discussions of one of my three security principles, namely
Many intruders are unpredictable.
Two posts by pdp perfectly demonstrate this:
- Bugs in the Browser: Firefox’s DATA URL Scheme Vulnerability
- Web Mayhem: Firefox’s JAR: Protocol issues
How many of you who are not security researchers even knew that data: or jar: protocols existed? (It's rhetorical, no need to answer in a comment.) Do you think your silver bullet security product knows about it? How about your users or developers?


RNA and, from this point of enlightenment, ongoing network analysis via NSM and, ideally, other forms of instrumentation (logs, etc.) facilitates impact assessment. Who cares if the sky is falling somewhere else, as reported in whatever online news story -- is your sky falling? If yes, what's the damage? How best can we mitigate and recover? These are the sorts of questions one can answer when some data is available, enabling management by fact and avoiding management by belief.
0 komentar:
Posting Komentar