Re: [Full-disclosure] Re: Your One-Stop Site For Sony Lawsuit Info

2005-11-22 Thread Anonymous Squirrel
At the risk of this discussion running far afield, I think Jason and Paul may be talking past each other.  My understanding is that Jason has a point -- corporations can't suffer the same punishment as individuals.  They aren't deprived of their freedom in prisons.  The most common corporate punish

[Full-disclosure] SANS Top 20: Mac OS X?

2005-11-23 Thread Anonymous Squirrel
I see SANS has put the Mac OS X in it's "Top 20" list of vulnerabilities.  Not parts of the OS, and not misconfigurations, but ALL of the Mac OS X.  Is that OS really a "vulnerability" of such magnitude that it deserves a "Top 20" listing? I'm puzzled, SANS remediation is merely patch, turn on the

Re: [Full-disclosure] Most common keystroke loggers?

2005-12-02 Thread Anonymous Squirrel
This thread is fascinating...but a bit misguided.  Consider that somone's home computer in the US is used for their finances (e.g. Quicken), tax returns, and other applications.  Think of the wealth of identity-related information in those applications.  If the computer is compromised, the identity

Fwd: [Full-disclosure] [HV-PAPER] Anti-Phishing Tips You Should NotFollow

2006-03-31 Thread Anonymous Squirrel
On 3/31/06, Mike Nice <[EMAIL PROTECTED]> wrote: > > > http://www.hexview.com/sdp/node/24 > > > > (Show this article to your computer-illiterate spouse to confuse him/her > > even more :) > >Better yet, do the right thing and implement Tip #4: Go to the secure > SSL login page of your bank. V

Re: [Full-disclosure] [HV-PAPER] Anti-Phishing Tips You ShouldNotFollow

2006-04-01 Thread Anonymous Squirrel
On 4/1/06, Mike Nice <[EMAIL PROTECTED]> wrote: > > 1) Any different social engineering besides "login to your bank > account". For example, "Chase will pay you $20 to fill out a short > survey!" (of course, after filling out the survey you must provide > your debit card number or account login i