<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://www.brighthub.comhttp://www.brighthub.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Enterprise Security</title><link>http://www.brighthub.com/computing/enterprise-security.aspx</link><description /><dc:language>en</dc:language><item><title>Check Your Online Database with SQL Injections - HP Scrawlr</title><link>http://www.brighthub.com/computing/enterprise-security/articles/13751.aspx</link><pubDate>Sat, 17 Oct 2009 18:59:50 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:13751</guid><dc:creator>SteveMallard</dc:creator><description>Need to check your online databases for vulnerabilities&amp;#63; HP offers a free tool to check your website for SQL Injection vulnerabilities. HP Scrawlr crawls your website looking for exploits and flaws in your code. This software is free and easy to use. Introduction SQL databases are the world’s fastest database. With SQL millions of transactions ...</description></item><item><title>The Dangers of Alternate Data Streams - Files Hidden Inside of other Files</title><link>http://www.brighthub.com/computing/enterprise-security/articles/14989.aspx</link><pubDate>Sat, 17 Oct 2009 18:59:38 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:14989</guid><dc:creator>SteveMallard</dc:creator><description>Security Analyst often aren&amp;#39;t trained in the dangers of file streaming through NTFS&amp;#39;s Alternate Data Streams. This tutorial teaches you how to create and detect it. Files can be hidden within files. These files can hide porn, company secrets or may contain information on terrorism. File Streaming Alternate Data Streams with the NTFS file sy...</description></item><item><title>How Do Hackers Think?</title><link>http://www.brighthub.com/computing/enterprise-security/articles/5299.aspx</link><pubDate>Sat, 17 Oct 2009 18:59:12 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:5299</guid><dc:creator>SteveMallard</dc:creator><description>What motivates hackers to do what they do&amp;#63; How do they do what they do&amp;#63; And what is Leet Speak&amp;#63; Who are the people who break into, modify or steal data. Read this article for a look into the inner workings of a hacker&amp;#39;s mind. Hackers Brighthub is the gathering of professionals. 8RIghthu8 i5 +H3 G4th3RINg OF pROF3$51oN@l5. (Leet – a ...</description></item><item><title>DoD Contractors to be 8570.1 Compliance by 2010</title><link>http://www.brighthub.com/computing/enterprise-security/articles/5510.aspx</link><pubDate>Sat, 17 Oct 2009 18:58:59 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:5510</guid><dc:creator>SteveMallard</dc:creator><description>What is 8570.1 Compliance&amp;#63; 8570.1 provides guidance and procedures for the training, certification, and management of the Department of Defense contractors and workforce who work in Information Assurance and Information Technology. This line of security is important for contractors of the DoD. 8570.1 The Importance of 8570.1 Compliance 8570.1 p...</description></item><item><title>LogonSessions and PsLoggedOn to Oversee and Manage System Access</title><link>http://www.brighthub.com/computing/enterprise-security/articles/7562.aspx</link><pubDate>Tue, 06 Oct 2009 18:51:32 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:7562</guid><dc:creator>tomolzak</dc:creator><description>Sometimes a script or other application providing automatic management oversight over end-user devices or servers needs session and logon data. Two free utilities provide the functionality necessary to achieve these outcomes in a Microsoft Windows environment. Overview Occasionally, security and network administrators need information about who is ...</description></item><item><title>The Data Security Incident Management Process: Policies, Teams, and Communication</title><link>http://www.brighthub.com/computing/enterprise-security/articles/3098.aspx</link><pubDate>Mon, 21 Sep 2009 17:57:41 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:3098</guid><dc:creator>tomolzak</dc:creator><description>In this series of articles, we examine how to prepare for and manage data loss incidents in a way that minimizes financial business impact or harm to customers or employees. In Part 1, we begin with an overview of the process and a look at the first steps of the process. Why Security Incident Management Is Necessary Once a security incident occurs,...</description></item><item><title>Fundamentals of Network Security: Understanding Encryption and Decryption</title><link>http://www.brighthub.com/computing/enterprise-security/articles/7732.aspx</link><pubDate>Thu, 17 Sep 2009 15:28:51 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:7732</guid><dc:creator>ashwinsatyanarayana</dc:creator><description>Did you ever send a secret message to someone&amp;#63; Maybe you never felt the need to, but in most cases - all the way from ancient days of Greece to the present and beyond - encryption has always been around. So how does it work&amp;#63; What does it do&amp;#63; Why is encryption mentioned so important&amp;#63; Encrypting and Decrypting Messages Julius Ceaser, ...</description></item><item><title>Challenges of Managing Data Security &amp; Causes and Effects of Data System Failures</title><link>http://www.brighthub.com/computing/enterprise-security/articles/3105.aspx</link><pubDate>Mon, 31 Aug 2009 05:30:39 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:3105</guid><dc:creator>tomolzak</dc:creator><description>This is the final article in the series on data security incident management. This focuses on how to manage data security systems and the causes and effects of data systems or network system failures in a company. Reviewing Data Security Management and How to Improve Overall Data Security The activities related to this step take place after all oth...</description></item><item><title>Recovering Corporate Data After a Data Security Attack</title><link>http://www.brighthub.com/computing/enterprise-security/articles/3104.aspx</link><pubDate>Fri, 28 Aug 2009 03:37:23 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:3104</guid><dc:creator>tomolzak</dc:creator><description>In this article, we continue the series on data security incident management with an examination of what happens after a software or human security threat is identified and contained&amp;#58; eliminate the data security threat and restore data and network services. Eliminating Possible Data Security Threats and Attacks It’s nearly impossible to define ...</description></item><item><title>Reducing the Damage Caused by Network Security Threats and Identifying Attackers</title><link>http://www.brighthub.com/computing/enterprise-security/articles/3101.aspx</link><pubDate>Thu, 27 Aug 2009 22:25:04 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:3101</guid><dc:creator>tomolzak</dc:creator><description>In the previous articles in this series, we looked at preparing for incidents and how to detect and analyze them when they happen. In this article, we examine how to contain a network security threat agent, minimizing the impact to a business. Minimizing Data Security Threats Once you understand the nature of the security threat on your enterprise,...</description></item><item><title>Preventing and Containing Data Loss by Detecting and Analyzing Data Security Issues</title><link>http://www.brighthub.com/computing/enterprise-security/articles/3099.aspx</link><pubDate>Thu, 27 Aug 2009 21:49:15 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:3099</guid><dc:creator>tomolzak</dc:creator><description>In Part 1 we defined data incident management and examined how to prepare for incidents when they occur. In this article, we continue the series by examining how to prevent data loss and network outages. The methods of detecting, analyzing, and reporting data issues to recovery teams are explained. Types of Data and Network Security Controls Detect...</description></item><item><title>Map system configs with PsInfo</title><link>http://www.brighthub.com/computing/enterprise-security/articles/12141.aspx</link><pubDate>Wed, 26 Aug 2009 21:31:31 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:12141</guid><dc:creator>tomolzak</dc:creator><description>PsInfo is a free, downloadable utiliy which enables both local and remote Windows platform configuration retrieval. The Challenge Both system administrators and security analysts frequently need information about Microsoft Windows patch levels, applications installed, and drivers used. It isn’t always easy to obtain this and other information. Eith...</description></item><item><title>PSExec: Free Security Testing and System Management Tool</title><link>http://www.brighthub.com/computing/enterprise-security/articles/9805.aspx</link><pubDate>Wed, 26 Aug 2009 21:31:01 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:9805</guid><dc:creator>tomolzak</dc:creator><description>PSExec is a free Sysinternals utility. With it, system administrators can manage remote desktops via scripts or command line. Security analysts can use it to test system vulnerabilities. The Challenge System administrators and help desk personnel often need access to perform a quick lookup on a remote system. They might also want to check system st...</description></item><item><title>PsLogList: Free Utility to Parse &amp; Review Windows Logs</title><link>http://www.brighthub.com/computing/enterprise-security/articles/11257.aspx</link><pubDate>Wed, 26 Aug 2009 21:30:46 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:11257</guid><dc:creator>tomolzak</dc:creator><description>PsLogList is a free Sysinternals &amp;#40;Microsoft&amp;#41; download which allows security and system administrators access to local and remote system application, security, and system log entries. It&amp;#39;s also a great forensics tool. The Challenge Microsoft Windows platforms can generate a large number of Event Log entries, spanning application, securit...</description></item><item><title>Streamline Kiosk Operation with Auto-logon</title><link>http://www.brighthub.com/computing/enterprise-security/articles/6752.aspx</link><pubDate>Wed, 26 Aug 2009 21:30:28 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:6752</guid><dc:creator>tomolzak</dc:creator><description>Many organizations need shared workstations, kiosks providing general information to most or all its employees. The challenge is getting a network-connected computer to access resources without giving every employee a network login. Auto-logon can help. The Challenge Delivering information to employees using computers for day-to-day tasks is easy. ...</description></item><item><title>Use Autoruns to improve performance and identify malware</title><link>http://www.brighthub.com/computing/enterprise-security/articles/7991.aspx</link><pubDate>Wed, 26 Aug 2009 21:30:14 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:7991</guid><dc:creator>tomolzak</dc:creator><description>Over time, all Windows-based computers accumulate services, drivers, and other applications that load at boot up or on logon. Some just slow down the system while others might perform more insidious tasks. Understanding what exists, what&amp;#39;s new, and what should go is often tedious. Enter Autoruns. The Challenge Normal use of systems on which use...</description></item><item><title>Use SigCheck to validate system files</title><link>http://www.brighthub.com/computing/enterprise-security/articles/13389.aspx</link><pubDate>Wed, 26 Aug 2009 21:28:33 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:13389</guid><dc:creator>tomolzak</dc:creator><description>Knowing the system files and other application components on your computer are genuine is an important part of troubleshooting anomalous behavior or cleaning critical systems. It can also come in handy when determining who to blame when your computer frequently displays the BSOD. The Challenge System admnistrators and security analysts often need t...</description></item><item><title>Validate system access with AccessChk</title><link>http://www.brighthub.com/computing/enterprise-security/articles/5784.aspx</link><pubDate>Wed, 26 Aug 2009 21:28:13 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:5784</guid><dc:creator>tomolzak</dc:creator><description>AccessChk is a free utility, which allows you to quickly assess access to folders, files, processes, or services on Windows workstations or servers. The Challenge System administrators and security professionals usually know what to do to ensure trustworthy processing environments. After all, there are plenty of blogs, articles, books, etc. on the ...</description></item><item><title>ISO 27001 AND 27002- Information Security Standards</title><link>http://www.brighthub.com/computing/enterprise-security/articles/5613.aspx</link><pubDate>Mon, 24 Aug 2009 21:09:19 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:5613</guid><dc:creator>SteveMallard</dc:creator><description>This article looks at information security standards for enterprise-level businesses and data protection and privacy as well as the certification process. Security Standards for Your Company ISO 27001 AND 27002- Information Security Standards ISO 2700x series is the control and certification for information security in the enterprise. Companies nee...</description></item><item><title>Manage, Monitor, and Kill Windows Processes with Process Explorer</title><link>http://www.brighthub.com/computing/enterprise-security/articles/9584.aspx</link><pubDate>Wed, 29 Jul 2009 16:56:36 GMT</pubDate><guid isPermaLink="false">b133e95a-c263-4882-8f2a-b24547eff78e:9584</guid><dc:creator>tomolzak</dc:creator><description>Microsoft&amp;#39;s task manager is fine for high-level looks at running processes. However, we often require a deeper look into process resource use, dependencies, registry entries, executable paths, etc. Process Explorer, a free Sysinternals download, provides these views, and more. The Challenge Today's Microsoft Windows-based systems are relatively...</description></item></channel></rss>