Skip to main content

Home/ Information Security/ Group items tagged Security

Rss Feed Group items tagged

netifera platform

netifera - 0 views

  •  
    netifera is a new modular open source platform for creating network security tools.
Rich Hintz

SP-800-66-Revision1.pdf (application/pdf Object) - 0 views

  •  
    Introductory Resource Guide for Implementing HIPPA Security Rule
Rich Hintz

HIPAA.com - Physical Safeguard Standards of the HIPAA Administrative Simplification Sec... - 0 views

  •  
    We cover the four [HIPAA] physical safeguard standards and their 10 implementation specifications in 12 postings.
Seçkin Anıl Ünlü

Plugging the CSS History Leak at Mozilla Security Blog - 0 views

  • History Sniffing
  • Links can look different on web sites based on whether or not you’ve visited the page they reference.
  • The problem is that appearance can be detected by the page showing you links, cluing the page into which of the presented pages you’ve been to. The result: not only can you see where you’ve been, but so can the web site!
  • ...18 more annotations...
  • The most obvious fix is to disable different styles for visited versus unvisted links, but this would be employed at the expense of utility: while sites can no longer figure out which links you’ve clicked, neither can you.
  • David Baron has implemented a way to help keep users’ data private while minimizing the effect on the web, and we are deploying it to protect our users.
  • The biggest threats here are the high-bandwidth techniques, or those that extract lots of information from users’ browsers quickly.
  • The JavaScript function getComputedStyle() and its related functions are fast and can be used to guess visitedness at hundreds of thousands of links per minute.
  • we’re approaching the way we style links in three fairly subtle ways:
  • Change 1: Layout-Based Attacks
  • First of all, we’re limiting what types of styling can be done to visited links to differentiate them from unvisited links.
  • can only be different in color
  • the CSS 2.1 specification takes into consideration how visited links can be abused:
  • implement other measures to preserve the user’s privacy while rendering visited and unvisited links differently
  • Change 2: Some Timing Attacks
  • we are changing some of the guts of our layout engine to provide a fairly uniform flow of execution to minimize differences in layout time for visited and unvisited links.
  • when the link is styled, the appropriate set of styles is chosen making the code paths for visited and unvisited links essentially the same length.
  • Change 3: Computed Style Attacks
  • JavaScript is not going to have access to the same style data it used to.
  • Firefox will give it unvisited style values.
  • it’s the right trade-off to be sure we protect our users’ privacy.
  • fixing CSS history sniffing will not block all of these leaks. But we believe it’s important to stop the scariest, most effective history attacks any way we can since it will be a big win for users’ privacy.
Tsudo

Psychology and Security Resource Page - 3 views

  •  
    Amazing collection of studies and papers about the security
Devid Thomas

Learn how Eliot from Mr.robot hacked into to his therapist's new boyfriend's email and ... - 0 views

  •  
    SOURCE: Information Security Newspaper http://www.securitynewspaper.com/2015/12/08/learn-eliot-mr-robot-hacked-therapists-new-boyfriends-email-bank-accounts/ TAGS: Bank Account Passwords, Mr.robot text-align: ...
  •  
    SOURCE: Information Security Newspaper http://www.securitynewspaper.com/2015/12/08/learn-eliot-mr-robot-hacked-therapists-new-boyfriends-email-bank-accounts/ TAGS: Bank Account Passwords, Mr.robot text-align: ...
vivektrivedi

Cloud based IT Solution Sydney | IT Service Provider - 0 views

  •  
    Based out of Sydney, Australia, Exigo Tech is in the business of helping companies create robust IT infrastructure, develop intuitive applications, automate business processes and add value to their clients with digital transformation and business consulting. As a solution provider, Exigo Tech enables businesses to achieve high operational efficiency and enhanced productivity with their range of services in project management, cognitive solutions, Microsoft Dynamics and more. Exigo Tech is also recognised as one of the leading cloud service providers offering private cloud, public cloud and hybrid cloud solutions. Exigo Tech offers added agility to their customers via perfectly tailored disaster recovery solutions which is inclusive of managed services, backup, recovery and other security services. Exigo Tech provides app or application development services which augments the digital transformation journey for many of their clients.
Select Security  Systems Ltd

Hi-Tech Hidden Surveillance Cameras in Edmonton - 2 views

  •  
    Keep your home, office and other properties safe with the home security camera in Edmonton. Here at Select Security Systems LTD, we provide hidden surveillance camera systems at the best prices. Visit our website for more details!
valuementor

What is advanced Penetration testing - 2 views

Advanced penetration testing is a simulated cyber security testing to check for exploitable vulnerabilities in a system. Pen testing may involve attempted breaching of application systems or front...

security Cyber computer identity penetration testing

valuementor

NESA Compliance Service | SIA | Security Standards & Audit | UAE - 0 views

  •  
    NESA / SIA PCI Compliance is the cyber security standard for critical information infrastructure protection in UAE. Our Nessa Assessment Audit Team has executed more than 20 NESA compliance projects in UAE
bestow adeel

alarm monitoring Sydney - 0 views

  •  
    Joss offers security services like Alarm Monitoring, Concierge and Alarm systems in St Mary, Sydney. We also provide professional security Guards in all over Sydney.
« First ‹ Previous 41 - 60 of 203 Next › Last »
Showing 20 items per page