PUBLICATIONS

Michel E. Kabay, PhD, CISSP-ISSMP

2009

Bosworth, S., M. E. Kabay, & E. Whyne (2009), editors. Computer Security Handbook, 5th Edition. Wiley (ISBN 0-471-71652-9). Two volumes; 2040 pp. Index.

 

Chapters:

2.             Kabay, M. E.: History of Computer Crime

10.           Kabay, M. E.: Understanding Studies and Surveys of Computer Crime

15.           Cobb, C., S. Cobb & M. E. Kabay: Penetrating Systems and Networks

38.           Nichols, L. E., M. E. Kabay, & T. Braithwaite: Writing Secure Code

44.           Kabay, M. E. & B. Robertson: Security Policy Guidelines

47.           Kabay, M. E., D. Holden & Myles Walsh: Operations Security and Production Controls

48.           Kabay, M. E. & N. Takacs: E-Mail and Internet Use Policies

50.           Kabay, M. E., B. Robertson, M. Akella & D. T. Lang: Using Social Psychology to Implement Security Policies

56.           Miora, M., M. E. Kabay & B. Cowens: Computer Security Incident Response Teams

57.           Kabay, M. E. & D. Holden: Data Backups and Archives

63.           Hallberg, C., M. E. Kabay, B. Robertson & A. Hutt: Management Responsibilities and Liabilities

66.           Kabay, M. E. & S. Kelley: Developing Security Policies

70.           Kabay, M. E., E. Salveggio & R. Guess: Anonymity and Identity in Cyberspace

74.           Christian, C., M. E. Kabay, K. Henry & S. Schneider: Professional Certification and Training in Information Assurance

 

Network World Security Strategies newsletter http://www.networkworld.com/newsletters/sec/

There are usually 8-10 articles in press at any time. These columns have ~55,000 subscribers (Oct 2008). * indicates collaboration with guest authors.

1.        Security metrics research (05/27/09) http://www.networkworld.com/newsletters/sec/2009/052509sec2.html

2.        Phishing using scary bait (05/22/09) http://www.networkworld.com/newsletters/sec/2009/052509sec1.html

3.        *iPhone Security, Part 2 (05/20/09) http://www.networkworld.com/newsletters/sec/2009/051809sec2.html

4.        *iPhone security, Part 1 (05/19/09) http://www.networkworld.com/newsletters/sec/2009/051809sec1.html

5.        *Implications of proposed Cybersecurity Act of 2009, Part 2 (05/13/09) http://www.networkworld.com/newsletters/sec/2009/051109sec2.html

6.        *Implications of proposed Cybersecurity Act of 2009, Part 1 (05/11/09) http://www.networkworld.com/newsletters/sec/2009/051109sec1.html

7.        *Increasing Internet security for average users (05/07/09) http://www.networkworld.com/newsletters/sec/2009/050409sec2.html

8.        IA career development: Need for IA professionals will grow (05/05/09) http://www.networkworld.com/newsletters/sec/2009/050409sec1.html

9.        Locking out users gives attackers a tool for denial of service (04/30/09) http://www.networkworld.com/newsletters/sec/2009/042709sec2.html

10.     Guide to enterprise password management drafted (04/28/09) http://www.networkworld.com/newsletters/sec/2009/042709sec1.html

11.     *Flaws in 'Internet SAFETY' bill (04/23/09) http://www.networkworld.com/newsletters/sec/2009/042009sec2.html

12.     The state of spam 2009, Part 4 (04/21/09) http://www.networkworld.com/newsletters/sec/2009/042009sec1.html

13.     The state of spam 2009, Part 3 (04/16/09) http://www.networkworld.com/newsletters/sec/2009/041309sec2.html

14.     The state of spam 2009, Part 2 (04/14/09) http://www.networkworld.com/newsletters/sec/2009/041309sec1.html

15.     The state of spam 2009, Part 1 (04/09/09) http://www.networkworld.com/newsletters/sec/2009/040609sec2.html

16.     Chinese information warfare capabilities (04/07/09) http://www.networkworld.com/newsletters/sec/2009/040609sec1.html

17.     2008 was not a good year (04/02/09) http://www.networkworld.com/newsletters/sec/2009/033009sec2.html

18.     Accreditation for IA-related Web sites (03/31/09) http://www.networkworld.com/newsletters/sec/2009/033009sec1.html

19.     *Cold-boot attacks: The 'frozen cache' approach (03/26/09) http://www.networkworld.com/newsletters/sec/2009/032309sec2.html

20.     *Cold-boot attacks change the data leakage landscape (03/24/09) http://www.networkworld.com/newsletters/sec/2009/032309sec1.html

21.     As happy as a rock star in a pig pen (03/19/09) http://www.networkworld.com/newsletters/sec/2009/031609sec2.html

22.     Kraken the botnet: The ethics of counter-hacking (03/17/09) http://www.networkworld.com/newsletters/sec/2009/031609sec1.html

23.     Online auctions: Caveat Mercator Venditorque (03/12/09) http://www.networkworld.com/newsletters/sec/2009/030909sec2.html

24.     Trademarks as keywords for targeted ads? (03/10/09) http://www.networkworld.com/newsletters/sec/2009/030909sec1.html

25.     *The Internet Protectors (03/05/09) http://www.networkworld.com/newsletters/sec/2009/030209sec2.html

26.     Computer Security Handbook Fifth Edition is ready (03/03/09) http://www.networkworld.com/newsletters/sec/2009/030209sec1.html

27.     Bluetooth is not a dental condition (02/26/09) http://www.networkworld.com/newsletters/sec/2009/030209sec1.html

28.     Cell phone security (02/24/09) http://www.networkworld.com/newsletters/sec/2009/022309sec1.html

29.     Guidelines for securing IEEE 802.11i wireless networks (02/19/09) http://www.networkworld.com/newsletters/sec/2009/021609sec2.html

30.     The Habit: or There and Back Again to the NISTy Mountains (02/17/09) http://www.networkworld.com/newsletters/sec/2009/021609sec1.html

31.     NSA identifies top 25 programming errors (02/12/09) http://www.networkworld.com/newsletters/sec/2009/020909sec2.html

32.     *Is compliance with standards achieving the goal of protecting data? (02/10/09) http://www.networkworld.com/newsletters/sec/2009/020909sec1.html

33.     Confounded nonsense (02/05/09) http://www.networkworld.com/newsletters/sec/2009/020209sec2.html

34.     Linux Defenders organize to fight patent trolls (02/03/09) http://www.networkworld.com/newsletters/sec/2009/020209sec1.html

35.     *Information security and the outsider, Part 2 (01/29/09) http://www.networkworld.com/newsletters/sec/2009/012609sec2.html

36.      *Information security and the outsider, Part 1 (01/27/09) http://www.networkworld.com/newsletters/sec/2009/012609sec1.html

37.      Don’t just talk about security - do something! (01/22/09) http://www.networkworld.com/newsletters/sec/2009/011909sec2.html

38.      Users don’t get it (but it’s human nature)  (01/20/09) http://www.networkworld.com/newsletters/sec/2009/011909sec1.html

39.      Avoid conflicts over intellectual property  (01/15/09) http://www.networkworld.com/newsletters/sec/2009/011209sec2.html

40.      MITRE offers recommendation-tracker software and free one-day course (01/13/09) http://www.networkworld.com/newsletters/sec/2009/011209sec1.html

41.      Surfing brain waves: fMRI for lie detection  (01/08/09) http://www.networkworld.com/newsletters/sec/2009/010509sec2.html

42.      Abiding by the law: Blueport vs. U.S.  (01/06/09) http://www.networkworld.com/newsletters/sec/2009/010509sec1.html

 

2008

Brief History of Computer Crime. http://www.mekabay.com/opsmgmt/facilities_security.pdf

Facilities Security: How to protect your site against attacks and damage. http://www.mekabay.com/opsmgmt/facilities_security.pdf

Network World Security Strategies newsletter http://www.networkworld.com/newsletters/sec/

* indicates collaboration with guest authors.

1.        Cornell a LIIder in cyberlaw resources (12/18/08) http://www.networkworld.com/newsletters/sec/2008/121508sec2.html

2.         Pay attention to cyberlaw (12/16/08) http://www.networkworld.com/newsletters/sec/2008/121508sec1.html

3.         Technicalinfo.net has good resources (12/11/08) http://www.networkworld.com/newsletters/sec/2008/120808sec2.html

4.         Great expectations for managing cybersecurity resources (12/09/08) http://www.networkworld.com/newsletters/sec/2008/120808sec1.html

5.         Visible Ops Security, Phase 4 (12/04/08) http://www.networkworld.com/newsletters/sec/2008/120108sec2.html

6.         Visible Ops Security, Phase 3 (12/02/08) http://www.networkworld.com/newsletters/sec/2008/120108sec1.html

7.         Visible Ops Security, Phase 2 (11/25/08) http://www.networkworld.com/newsletters/sec/2008/112408sec1.html

8.        Visible Ops Security, Phase 1 (11/20/08) http://www.networkworld.com/newsletters/sec/2008/111708sec2.html

9.        Introducing Visible Ops Security (11/18/08) http://www.networkworld.com/newsletters/sec/2008/111708sec1.html

10.     Visible Ops Handbook (11/13/08) http://www.networkworld.com/newsletters/sec/2008/111008sec2.html

11.     Swiss mix: Useful copyright resource (11/11/08) http://www.networkworld.com/newsletters/sec/2008/111008sec1.html

12.     New Web site and files for readers (11/06/08) http://www.networkworld.com/newsletters/sec/2008/110308sec2.html

13.     ‘Zero Day Threat’: Deep analysis + fun = excellent read (11/04/08) http://www.networkworld.com/newsletters/sec/2008/110308sec1.html

14.     *Copyright infringement and the CISSP, Part 2 (10/30/08) http://www.networkworld.com/newsletters/sec/2008/102708sec2.html

15.     *Copyright infringement and the CISSP, Part 1 (10/28/08) http://www.networkworld.com/newsletters/sec/2008/102708sec1.html

16.     Arrogance or efficiency? Why Microsoft redesigned the Office user interface, Part 4 (10/23/08) http://www.networkworld.com/newsletters/sec/2008/102008sec2.html

17.     Arrogance or efficiency? Why Microsoft redesigned the Office user interface, Part 3 (10/21/08) http://www.networkworld.com/newsletters/sec/2008/102008sec1.html

18.     Arrogance or efficiency? Why Microsoft redesigned the Office user interface, Part 2 (10/16/08) http://www.networkworld.com/newsletters/sec/2008/101308sec2.html

19.     Arrogance or efficiency? Why Microsoft redesigned the Office user interface, Part 1 (10/14/08) http://www.networkworld.com/newsletters/sec/2008/101308sec1.html

20.     *How to react to a fire alarm (10/09/08) http://www.networkworld.com/newsletters/sec/2008/100608sec2.html

21.     *Don’t be a Blobmonger (10/07/08) http://www.networkworld.com/newsletters/sec/2008/100608sec1.html

22.     Securing the eCampus 2008 (10/02/08) http://www.networkworld.com/newsletters/sec/2008/092908sec2.html

23.     *The data center from hell, Part 3: Lessons learned (09/30/08) http://www.networkworld.com/newsletters/sec/2008/092908sec1.html

24.     *The data center from hell, Part 2 (09/25/08) http://www.networkworld.com/newsletters/sec/2008/092208sec2.html

25.     *The data center from hell, Part 1 (09/23/08) http://www.networkworld.com/newsletters/sec/2008/092208sec1.html

26.     How not to manage lost passwords (09/18/08) http://www.networkworld.com/newsletters/sec/2008/091508sec2.html

27.     reCAPTCHA illustrates human ingenuity (09/16/08) http://www.networkworld.com/newsletters/sec/2008/091508sec1.html

28.     Bad business model: Turning subscriptions into gambling (09/11/08) http://www.networkworld.com/newsletters/sec/2008/090808sec2.html

29.     New kids advance ‘New School’ (09/09/08) http://www.networkworld.com/newsletters/sec/2008/090808sec1.html

30.     The privacy policy problem, Part 4: Reality hits home (09/04/08) http://www.networkworld.com/newsletters/sec/2008/090108sec2.html

31.     The privacy policy problem, Part 3: Opting out of opting out (09/02/08) http://www.networkworld.com/newsletters/sec/2008/090108sec1.html

32.     The privacy policy problem, Part 2: Controlling business partners (08/28/08) http://www.networkworld.com/newsletters/sec/2008/082508sec2.html

33.     The privacy policy problem, Part 1: A model policy (08/26/08) http://www.networkworld.com/newsletters/sec/2008/082508sec1.html

34.     Analyzing fundamental flaws: Opening vs. unlocking (08/21/08) http://www.networkworld.com/newsletters/sec/2008/081808sec2.html

35.     IMCD Business Backup: Prepare for all ContingenZs (08/19/08) http://www.networkworld.com/newsletters/sec/2008/081808sec1.html

36.     Encryption bottleneck: Lessons from performance analysis (08/14/08) http://www.networkworld.com/newsletters/sec/2008/081108sec2.html

37.     WEIS 2008: IPv6 illustrates resistance to new technologies (08/12/08) http://www.networkworld.com/newsletters/sec/2008/081108sec1.html

38.     WEIS 2008: Transition to IPv6 is complex (08/07/08) http://www.networkworld.com/newsletters/sec/2008/080408sec2.html

39.     WEIS 2008: Escalation and incentives for better security (08/05/08) http://www.networkworld.com/newsletters/sec/2008/080408sec1.html

40.     WEIS 2008: Security economics and European policy (07/31/08) http://www.networkworld.com/newsletters/sec/2008/072808sec2.html

41.     WEIS 2008: Do data-breach-disclosure laws reduce identity theft? (07/29/08) http://www.networkworld.com/newsletters/sec/2008/072808sec1.html

42.     *Insider controls still lacking (07/24/08) http://www.networkworld.com/newsletters/sec/2008/072108sec2.html

43.     ‘Bad Verb’: A bad user interface in action (07/22/08) http://www.networkworld.com/newsletters/sec/2008/072108sec1.html

44.     *DoD offers useful certification guidelines (07/17/08) http://www.networkworld.com/newsletters/sec/2008/071408sec2.html

45.     *Biometric blooper? (07/15/08) http://www.networkworld.com/newsletters/sec/2008/071408sec1.html

46.     Verizon data breach report, Part 4: Attack vectors (07/10/08) http://www.networkworld.com/newsletters/sec/2008/070708sec2.html

47.     Verizon data breach report, Part 3: Breach size and source (07/08/08) http://www.networkworld.com/newsletters/sec/2008/070708sec1.html

48.     Verizon data breach investigations report, Part 2: Outsider attacks (07/03/08) http://www.networkworld.com/newsletters/sec/2008/063008sec2.html

49.     Verizon data breach investigations report, Part 1 (07/01/08) http://www.networkworld.com/newsletters/sec/2008/063008sec1.html

50.     Improved security raises threat to the unimproved (06/26/08) http://www.networkworld.com/newsletters/sec/2008/062308sec1.html

51.     *Extreme weather and business continuity (06/24/08) http://www.networkworld.com/newsletters/sec/2008/062308sec1.html

52.     Keep pace with vulnerabilities (06/19/08) http://www.networkworld.com/newsletters/sec/2008/061608sec2.html

53.     Infowar resources (06/17/08) http://www.networkworld.com/newsletters/sec/2008/061608sec1.html

54.     LBB2E: Joel Dubin updates his pocket guide (06/12/08) http://www.networkworld.com/newsletters/sec/2008/060908sec2.html

55.     Master of Science in Business Continuity Management (06/10/08) http://www.networkworld.com/newsletters/sec/2008/060908sec1.html

56.     10 tips for moving e-discovery into the enterprise (06/05/08) http://www.networkworld.com/newsletters/sec/2008/060208sec2.html

57.     Useful guides to e-mail archiving (06/03/08) http://www.networkworld.com/newsletters/sec/2008/060208sec1.html

58.     Workshop on Economics of Information Security (05/29/08) http://www.networkworld.com/newsletters/sec/2008/052608sec2.html

59.     Bordering on insanity (05/27/08) http://www.networkworld.com/newsletters/sec/2008/052608sec1.html

60.     Crossing borders with corporate data (05/22/08) http://www.networkworld.com/newsletters/sec/2008/051908sec2.html

61.     Expanding roles for the CISO (05/20/08) http://www.networkworld.com/newsletters/sec/2008/051908sec1.html

62.     The CISO as strategic resource (05/15/08) http://www.networkworld.com/newsletters/sec/2008/051208sec2.html

63.     Building a bridge from the CISO to the CEO (05/13/08) http://www.networkworld.com/newsletters/sec/2008/051208sec1.html

64.     Identity Finder helps prevent identity theft (05/08/08) http://www.networkworld.com/newsletters/sec/2008/050508sec2.html

65.     Central Ohio InfoSec Summit coming up soon (05/06/08) http://www.networkworld.com/newsletters/sec/2008/050508sec1.html

66.     Zapping ‘zappers’ (05/01/08) http://www.networkworld.com/newsletters/sec/2008/042808sec2.html

67.     Zap! You’re under arrest (04/29/08) http://www.networkworld.com/newsletters/sec/2008/042808sec1.html

68.     Scan ScanSafe’s annual report for heuristic experience (04/24/08) http://www.networkworld.com/newsletters/sec/2008/042108sec2.html

69.     *Comprehensive security needed to prevent printer hacking (04/22/08) http://www.networkworld.com/newsletters/sec/2008/042108sec1.html

70.     *Your printer: An open door for hackers? (04/17/08) http://www.networkworld.com/newsletters/sec/2008/041408sec2.html

71.     *Managing CSIRT burnout and turnover: a case study, Part 3 (04/15/08) http://www.networkworld.com/newsletters/sec/2008/041408sec1.html

72.     *Managing CSIRT burnout and turnover: a case study, Part 2 (04/10/08) http://www.networkworld.com/newsletters/sec/2008/040708sec2.html

73.     *Managing CSIRT burnout and turnover: a case study, Part 1 (04/08/08) http://www.networkworld.com/newsletters/sec/2008/040708sec1.html

74.     April Fool’s lessons (04/03/08) http://www.networkworld.com/newsletters/sec/2008/033108sec2.html

75.     MessageLabs Intelligence Reports make good reading (04/01/08) http://www.networkworld.com/newsletters/sec/2008/033108sec1.html

76.     The state of spam: An interview with Jamie de Guerre, Part 2 (03/27/08) http://www.networkworld.com/newsletters/sec/2008/0324sec2.html

77.     The state of spam: An interview with Jamie de Guerre, Part 1 (03/25/08) http://www.networkworld.com/newsletters/sec/2008/0324sec1.html

78.     Security roles made brilliantly clear (03/20/08) http://www.networkworld.com/newsletters/sec/2008/0317sec2.html

79.     Process over presumption: The Vermont encryption key decision (03/18/08) http://www.networkworld.com/newsletters/sec/2008/0317sec1.html

80.     Chapters in ‘Information Roles & Responsibilities Made Easy’ (03/17/08) http://www.networkworld.com/newsletters/sec/2008/0317sec2a.html

81.     Charles Cresson Wood’s list of common mistakes you should avoid (03/17/08) http://www.networkworld.com/newsletters/sec/2008/0317sec2b.html

82.     Protecting your SSN and your reading habits (03/13/08) http://www.networkworld.com/newsletters/sec/2008/0310sec2.html

83.     Why identity-theft rates are so high (03/11/08) http://www.networkworld.com/newsletters/sec/2008/0310sec1.html

84.     Defending against identity theft: Identity Guard (03/06/08) http://www.networkworld.com/newsletters/sec/2008/0303sec2.html

85.     Defending against identity theft: LifeLock (03/04/08) http://www.networkworld.com/newsletters/sec/2008/0303sec1.html

86.     *Windows Server 2008: The shape of the world to come (02/28/08) http://www.networkworld.com/newsletters/sec/2008/0225sec2.html

87.     Service management metrics significant for CSIRTs (02/26/08) http://www.networkworld.com/newsletters/sec/2008/0225sec1.html

88.     *Two-factor credit-card safety for online transactions (02/21/08) http://www.networkworld.com/newsletters/sec/2008/0218sec2.html

89.     Blurred lines: Reliability of polygraph examinations (02/19/08) http://www.networkworld.com/newsletters/sec/2008/0218sec1.html

90.     Drawing the lines: Applications of the polygraph (02/14/08) http://www.networkworld.com/newsletters/sec/2008/0211sec2.html

91.     Poly want a hacker? (02/12/08) http://www.networkworld.com/newsletters/sec/2008/0211sec1.html

92.     Crystal Ball 2008 in Montreal (02/07/08) http://www.networkworld.com/newsletters/sec/2008/0204sec2.html

93.     CISSP-holders save time and money toward degree (02/05/08) http://www.networkworld.com/newsletters/sec/2008/0204sec1.html

94.     Getting CERIAS about security (01/31/08) http://www.networkworld.com/newsletters/sec/2008/0128sec2.html

95.     Handbook of Computer Networks: Another Bidgoli goldmine (01/29/08) http://www.networkworld.com/newsletters/sec/2008/0128sec1.html

96.     ‘Halting State’ a good read for security geeks (01/24/08) http://www.networkworld.com/newsletters/sec/2008/0121sec2.html

97.     Identity theft: The Shadowcrew case (01/22/08) http://www.networkworld.com/newsletters/sec/2008/0121sec1.html

98.     Identity theft is a burden on the victim (01/17/08) http://www.networkworld.com/newsletters/sec/2008/0114sec2.html

99.     A new Outlook (file) (01/15/08) http://www.networkworld.com/newsletters/sec/2008/0114sec1.html

100.  Controlling outbound e-mail (01/10/08) http://www.networkworld.com/newsletters/sec/2008/0107sec2.html

101.  Don’t let e-mail impair productivity (01/08/08) http://www.networkworld.com/newsletters/sec/2008/0107sec1.html

102.  *Bank of America authenticates via mobile phone (01/03/08) http://www.networkworld.com/newsletters/sec/2008/1231sec2.html

2007

Intellectual property developments in 2007. In: 2007 Year in Review, Peltier Associates, pp 36-39. http://www.peltierassociates.com/index.php?option=com_docman&task=cat_view&gid=64&Itemid=55

Network World Security Strategies newsletter http://www.networkworld.com/newsletters/sec/

1.        Howard Schmidt patrols cyberspace (12/20/07) http://www.networkworld.com/newsletters/sec/2007/1217sec2.html

2.        Federal News Radio spotlights security (12/18/07) http://www.networkworld.com/newsletters/sec/2007/1217sec1.html

3.        *Reducing employee turnover: The STCC case study, Part 2 (12/13/07) http://www.networkworld.com/newsletters/sec/2007/1210sec2.html

4.        *Reducing employee turnover: The STCC case study, Part 1 (12/11/07) http://www.networkworld.com/newsletters/sec/2007/1210sec1.html

5.        Podcasts busting out at CERT/CC (12/06/07) http://www.networkworld.com/newsletters/sec/2007/1203sec2.html

6.        Privaris offers multi-use biometric token (12/04/07) http://www.networkworld.com/newsletters/sec/2007/1203sec1.html

7.        Free password generators, Part 3 (11/29/07) http://www.networkworld.com/newsletters/sec/2007/1126sec2.html

8.        Free password generators, Part 2 (11/27/07) http://www.networkworld.com/newsletters/sec/2007/1126sec1.html

9.        Free password generators, Part 1 (11/20/07) http://www.networkworld.com/newsletters/sec/2007/1119sec1.html

10.     ISACA Winnipeg’s bestseller list: Build Security In (11/15/07) http://www.networkworld.com/newsletters/sec/2007/1112sec2.html

11.     *Social engineering in penetration testing: Overload and fascination (11/13/07) http://www.networkworld.com/newsletters/sec/2007/1112sec1.html

12.     *Social engineering in penetration testing: Intimidation (11/08/07) http://www.networkworld.com/newsletters/sec/2007/1105sec2.html

13.     Social engineering in penetration testing: Postmortem (11/06/07) http://www.networkworld.com/newsletters/sec/2007/1105sec1.html

14.     Social engineering in penetration testing: Planning (11/01/07) http://www.networkworld.com/newsletters/sec/2007/1029sec2.html

15.     *Social engineering in penetration testing: Analysis (10/30/07) http://www.networkworld.com/newsletters/sec/2007/1029sec1.html

16.     *Social engineering in penetration testing: Cases (10/25/07) http://www.networkworld.com/newsletters/sec/2007/1022sec2.html

17.     Incident response: Don’t lie (10/23/07) http://www.networkworld.com/newsletters/sec/2007/1022sec1.html

18.     Hidden costs of passwords. (10/18/07) http://www.networkworld.com/newsletters/sec/2007/1015sec2.html

19.     Jason Holloway’s Holy Grail (10/16/07) http://www.networkworld.com/newsletters/sec/2007/1015sec1.html

20.     Password management: Facing the problem (10/11/07) http://www.networkworld.com/newsletters/sec/2007/1008sec2.html

21.     The way we frame risks influences perception (10/09/07) http://www.networkworld.com/newsletters/sec/2007/1008sec1.html

22.     Why passwords are passé (10/04/07) http://www.networkworld.com/newsletters/sec/2007/1001sec2.html

23.     ISP liability and ‘Net neutrality: an update (10/02/07) http://www.networkworld.com/newsletters/sec/2007/1001sec1.html

24.     The Dao of Microsoft (09/27/07) http://www.networkworld.com/newsletters/sec/2007/0924sec2.html

25.     *CSIRT Management: Politics (09/25/07) http://www.networkworld.com/newsletters/sec/2007/0924sec1.html

26.     *CSIRT Management: Problem-tracking software (09/20/07) http://www.networkworld.com/newsletters/sec/2007/0917sec2.html

27.     *CSIRT Management: Triage (09/18/07) http://www.networkworld.com/newsletters/sec/2007/0917sec1.html

28.     DRM for online versions of magazines (09/13/07) http://www.networkworld.com/newsletters/sec/2007/0910sec2.html

29.     Mail-order bride scams (09/11/07) http://www.networkworld.com/newsletters/sec/2007/0910sec1.html

30.     Ethical decision-making: Principles, rights and duties, and intuitive cues (09/06/07) http://www.networkworld.com/newsletters/sec/2007/0903sec2.html

31.     Ethical decision-making: Using formal and informal guidelines (09/04/07) http://www.networkworld.com/newsletters/sec/2007/0903sec1.html

32.     Ethical decision-making: Identifying the ethical issue (08/30/07) http://www.networkworld.com/newsletters/sec/2007/0827sec2.html

33.     Hacker tips published in Wall Street Journal (08/28/07) http://www.networkworld.com/newsletters/sec/2007/0827sec1.html

34.     New CISSP concentrations (08/23/07) http://www.networkworld.com/newsletters/sec/2007/0820sec2.html

35.     CISSP certification is evolving (08/21/07) http://www.networkworld.com/newsletters/sec/2007/0820sec1.html

36.     *Best practices for online shopping, Part 2 (08/16/07) http://www.networkworld.com/newsletters/sec/2007/0813sec2.html

37.     *Best practices for online shopping, Part 1 (08/14/07) http://www.networkworld.com/newsletters/sec/2007/0813sec1.html

38.     The last ‘word’ in file recovery: Google Desktop (08/09/07) http://www.networkworld.com/newsletters/sec/2007/0806sec2.html

39.     Disk data remanence: Part 2 (0807/07) http://www.networkworld.com/newsletters/sec/2007/0806sec1.html

40.     Disk data remanence: Part 1 (08/02/07) http://www.networkworld.com/newsletters/sec/2007/0730sec2.html

41.     Strengthening defenses against cyberwar (07/31/07) http://www.networkworld.com/newsletters/sec/2007/0730sec1.html

42.     How far could cyberwar go? (07/26/07) http://www.networkworld.com/newsletters/sec/2007/0723sec2.html

43.     YouSendIt provides useful, secure transfer service (07/24/07) http://www.networkworld.com/newsletters/sec/2007/0723sec1.html

44.     Yahoo Groups support appropriate-use policies for e-mail (07/19/07) http://www.networkworld.com/newsletters/sec/2007/0716sec2.html

45.     Managing private e-mail at work (07/17/07) http://www.networkworld.com/newsletters/sec/2007/0716sec1.html

46.     Security workforce study reveals salaries, hot technologies (07/12/07) http://www.networkworld.com/newsletters/sec/2007/0709sec2.html

47.     PayPal Security Key: Two-factor authentication for $5 (07/10/07) http://www.networkworld.com/newsletters/sec/2007/0709sec1.html

48.     *Talk to upper management about security (07/05/07) http://www.networkworld.com/newsletters/sec/2007/0702sec2.html

49.     New INFOSEC workbook now online (07/03/07) http://www.networkworld.com/newsletters/sec/2007/0702sec1.html

50.     Automated harassment (06/28/07) http://www.networkworld.com/newsletters/sec/2007/0625sec2.html

51.     VAleat quantum VAlere potest (06/26/07) http://www.networkworld.com/newsletters/sec/2007/0625sec1.html

52.     VAnishing confidence (06/21/07) http://www.networkworld.com/newsletters/sec/2007/0618sec2.html

53.     VAgue promises of improvement (06/19/07) http://www.networkworld.com/newsletters/sec/2007/0618sec1.html

54.     VAgaries of wandering data (06/14/07) http://www.networkworld.com/newsletters/sec/2007/0611sec2.html

55.     PIIssed off yet? (06/12/07) http://www.networkworld.com/newsletters/sec/2007/0611sec1.html

56.     CIMIP fights identity theft (0607/07) http://www.networkworld.com/newsletters/sec/2007/0604sec2.html

57.     E-tickets for air travel by end of 2007) (06/05/07) http://www.networkworld.com/newsletters/sec/2007/0604sec1.html

58.     Freedom of speech and its consequences (05/31/07) http://www.networkworld.com/newsletters/sec/2007/0528sec2.html

59.     Lack of moderation (05/29/07) http://www.networkworld.com/newsletters/sec/2007/0528sec1.html

60.     Brennan Center provides resources for security activists (05/24/07) http://www.networkworld.com/newsletters/sec/2007/0521sec2.html

61.     Identification vs. knowledge (05/22/07) http://www.networkworld.com/newsletters/sec/2007/0521sec1.html

62.     Identification isn’t enough (05/17/07) http://www.networkworld.com/newsletters/sec/2007/0514sec2.html

63.     The debate over national ID cards (05/15/07) http://www.networkworld.com/newsletters/sec/2007/0514sec1.html

64.     Secuware Security Framework offers interesting functionality (05/10/07) http://www.networkworld.com/newsletters/sec/2007/0507sec2.html

65.     Guide to NIST security documents (05/08/07) http://www.networkworld.com/newsletters/sec/2007/0507sec1.html

66.     Fair and balanced: Enforcing security policies for workstations (05/03/07) http://www.networkworld.com/newsletters/sec/2007/0430sec2.html

67.     ProCurve Networking site has useful white papers (05/01/07) http://www.networkworld.com/newsletters/sec/2007/0430sec1.html

68.     CSIRTM resources online (04/26/07) http://www.networkworld.com/newsletters/sec/2007/0423sec2.html

69.     NoticeBored not boring (04/24/07) http://www.networkworld.com/newsletters/sec/2007/0423sec1.html

70.     The persistence of memory: free speech and career prospects (04/19/07) http://www.networkworld.com/newsletters/sec/2007/0416sec2.html

71.     Free speech and corporate policy (04/17/07) http://www.networkworld.com/newsletters/sec/2007/0416sec1.html

72.     Personal expression vs. corporate policy (04/12/07) http://www.networkworld.com/newsletters/sec/2007/0409sec2.html

73.     Upcoming (ISC)2 seminars (04/10/07) http://www.networkworld.com/newsletters/sec/2007/0409sec1.html

74.     Pesky SiteKey problems (04/05/07) http://www.networkworld.com/newsletters/sec/2007/0402sec2.html

75.     SiteKey tries to counter phishing (04/03/07) http://www.networkworld.com/newsletters/sec/2007/0402sec1.html

76.     Shiftwork and security (03/29/07) http://www.networkworld.com/newsletters/sec/2007/0326sec2.html

77.     Waving a red flag (03/27/07) http://www.networkworld.com/newsletters/sec/2007/0326sec1.html

78.     The people’s flag is deepest red (03/22/07) http://www.networkworld.com/newsletters/sec/2007/0319sec2.html

79.     Proposed rulemaking against identity theft (03/20/07) http://www.networkworld.com/newsletters/sec/2007/0319sec1.html

80.     ‘Breakpoint’ echoes current news (03/15/07) http://www.networkworld.com/newsletters/sec/2007/0312sec2.html

81.     *Effects of full disclosure (03/13/07) http://www.networkworld.com/newsletters/sec/2007/0312sec1.html

82.     *To disclose or not to disclose (03/08/07) http://www.networkworld.com/newsletters/sec/2007/0305sec2.html

83.     *Follow-up: On hacker conventions, SecurityFocus and list sponsorship (03/06/07) http://www.networkworld.com/newsletters/sec/2007/0305sec1.html

84.     Transgressing the unwritten law (03/01/07) http://www.networkworld.com/newsletters/sec/2007/0226sec2.html

85.     *Book tells story of victims of cybercrime (02/27/07) http://www.networkworld.com/newsletters/sec/2007/0226sec1.html

86.     CIRT Management: Share the knowledge (02/22/07) http://www.networkworld.com/newsletters/sec/2007/0219sec2.html

87.     EDPACS archive a treasure trove (02/20/07) http://www.networkworld.com/newsletters/sec/2007/0219sec1.html

88.     CIRT Management: Continuous process improvement (02/15/07) http://www.networkworld.com/newsletters/sec/2007/0212sec2.html

89.     CIRT management: Root-cause analysis (02/13/07) http://www.networkworld.com/newsletters/sec/2007/0212sec1.html

90.     *E-mail retention policies, Part 2 (02/08/07) http://www.networkworld.com/newsletters/sec/2007/0205sec2.html

91.     *E-mail retention policies, Part 1 (02/06/07) http://www.networkworld.com/newsletters/sec/2007/0205sec1.html

92.     *CIRT management: Learning from emergencies (02/01/07) http://www.networkworld.com/newsletters/sec/2007/0129sec2.html

93.     The Net 2.0: Identity theft in Istanbul (01/30/07) http://www.networkworld.com/newsletters/sec/2007/0129sec1.html

94.     Information assurance in Beer-sheba (01/25/07) http://www.networkworld.com/newsletters/sec/2007/0122sec2.html

95.     *Industrial espionage in action (01/23/07) http://www.networkworld.com/newsletters/sec/2007/0122sec1.html

96.     *A counter-intelligence perspective (01/18/07) http://www.networkworld.com/newsletters/sec/2007/0115sec2.html

97.     Preparing for the CISSP exam, Part 4 (01/16/07) http://www.networkworld.com/newsletters/sec/2007/0115sec1.html

98.     Preparing for the CISSP exam, Part 3 (01/11/07) http://www.networkworld.com/newsletters/sec/2007/0108sec2.html

99.     Preparing for the CISSP exam, Part 2 (01/09/07) http://www.networkworld.com/newsletters/sec/2007/0108sec1.html

100.  Preparing for the CISSP exam, Part 1 (01/04/07) http://www.networkworld.com/newsletters/sec/2007/0101sec2.html

101.  On hacker conventions, SecurityFocus and list sponsorship (01/02/07) http://www.networkworld.com/newsletters/sec/2007/0101sec1.html

2006

Intellectual property developments in 2006. In: 2006 Year in Review, Peltier Associates, pp 28-30. (no longer available online)

Tips for Using MS-Word http://www.mekabay.com/methodology/word_tips.pdf

Ubiquity Magazine of the Association for Computing Machinery

·          The Net Neutrality Debate (05/23/06) http://www.acm.org/ubiquity/views/v7i20_neutrality.html

Network World Security Strategies newsletter http://www.networkworld.com/newsletters/sec/

* indicates guest authors.

1.        ALEatory ALE (12/21/06) http://www.networkworld.com/newsletters/sec/2006/1218sec2.html

2.        Cybersecurity management, Part 4 (12/19/06) http://www.networkworld.com/newsletters/sec/2006/1218sec1.html

3.        Cybersecurity management, Part 3 (12/14/06) http://www.networkworld.com/newsletters/sec/2006/1211sec2.html

4.        Cybersecurity management, Part 2 (12/12/06) http://www.networkworld.com/newsletters/sec/2006/1211sec1.html

5.        Cybersecurity management, Part 1 (12/07/06) http://www.networkworld.com/newsletters/sec/2006/1204sec2.html

6.        *Evaluate your cyber-intelligence (12/05/06) http://www.networkworld.com/newsletters/sec/2006/1204sec1.html

7.        Software, music and movie pirates keelhauled (11/30/06) http://www.networkworld.com/newsletters/sec/2006/1127sec2.html

8.        Crime and punishment (11/28/06) http://www.networkworld.com/newsletters/sec/2006/1127sec1.html

9.        CIRT management: Avoiding burnout (11/21/06) http://www.networkworld.com/newsletters/sec/2006/1120sec1.html

10.     CIRT management: Setting the rules for triage (11/16/06) http://www.networkworld.com/newsletters/sec/2006/1113sec2.html

11.     Plagiarism outside the classroom (11/14/06) http://www.networkworld.com/newsletters/sec/2006/1113sec1.html

12.     OCEG Red Book on risk management (11/09/06) http://www.networkworld.com/newsletters/sec/2006/1106sec2.html

13.     OCEG provides valuable resources (11/07/06) http://www.networkworld.com/newsletters/sec/2006/1106sec1.html

14.     Dan Swanson on IT auditing (11/02/06) http://www.networkworld.com/newsletters/sec/2006/1030sec2.html

15.     Identifying problem Internet users (10/31/06) http://www.networkworld.com/newsletters/sec/2006/1030sec1.html

16.     Metadata (10/26/06) http://www.networkworld.com/newsletters/sec/2006/1023sec2.html

17.     More on ‘Net neutrality (10/24/06) http://www.networkworld.com/newsletters/sec/2006/1023sec1.html

18.     Check out Avert Labs’ blog (10/19/06) http://www.networkworld.com/newsletters/sec/2006/1016sec2.html

19.     Picking out digital image forgeries (10/17/06) http://www.networkworld.com/newsletters/sec/2006/1016sec1.html

20.     Michigan CISO speaks online (10/12/06) http://www.networkworld.com/newsletters/sec/2006/1009sec2.html

21.     Paperless e-voting fails again (10/10/06) http://www.networkworld.com/newsletters/sec/2006/1009sec1.html

22.     PSYOP in action (10/05/06) http://www.networkworld.com/newsletters/sec/2006/1002sec2.html

23.     NIST guide to forensics in incident response (10/03/06) http://www.networkworld.com/newsletters/sec/2006/1002sec1.html

24.     NIST guidelines on cell phone forensics (09/28/06) http://www.networkworld.com/newsletters/sec/2006/0925sec2.html

25.     Survey describes state of security management (09/26/06) http://www.networkworld.com/newsletters/sec/2006/0925sec1.html

26.     NIST guide to secure Web services (09/21/06) http://www.networkworld.com/newsletters/sec/2006/0918sec2.html

27.     Beware of vicious ‘vishing’ villains (09/19/06) http://www.networkworld.com/newsletters/sec/2006/0918sec1.html

28.     NIST guide to IDP systems (09/14/06) http://www.networkworld.com/newsletters/sec/2006/0911sec2.html

29.     The Ostrich Maneuver: Burying bad news is a bad idea (09/12/06) http://www.networkworld.com/newsletters/sec/2006/0911sec1.html

30.     NIST guidelines on e-mail security (09/07/06) http://www.networkworld.com/newsletters/sec/2006/0904sec2.html

31.     Legal aspects of managing technology (08/31/06) http://www.networkworld.com/newsletters/sec/2006/0904sec1.html

32.     Two cybercrime textbooks (08/31/06) http://www.networkworld.com/newsletters/sec/2006/0828sec2.html

33.     The Thin Edge (08/29/06) http://www.networkworld.com/newsletters/sec/2006/0828sec1.html

34.     Flights of fancy (08/24/06) http://www.networkworld.com/newsletters/sec/2006/0821sec2.html

35.     That Won’t Fly: How new airplane rules could affect you (08/22/06) http://www.networkworld.com/newsletters/sec/2006/0821sec1.html

36.     U.S. OMB mandates laptop disk encryption as No. 1 precaution (08/17/06) http://www.networkworld.com/newsletters/sec/2006/0814sec2.html

37.     Business discontinuity (08/15/06) http://www.networkworld.com/newsletters/sec/2006/0814sec1.html

38.     More honored in the breach than in the breeches (08/10/06) http://www.networkworld.com/newsletters/sec/2006/0807sec2.html

39.     Fighting plagiarism (08/08/06) http://www.networkworld.com/newsletters/sec/2006/0807sec1.html

40.     Ohio University coping with information breaches (08/03/06) http://www.networkworld.com/newsletters/sec/2006/0731sec2.html

41.     MS-ISAC continues useful Webcasts (08/01/06) http://www.networkworld.com/newsletters/sec/2006/0731sec1.html

42.     DRM-roll for consumer privacy protection (07/27/06) http://www.networkworld.com/newsletters/sec/2006/0724sec2.html

43.     ‘Sage’ advice from McAfee (07/25/06) http://www.networkworld.com/newsletters/sec/2006/0724sec1.html

44.     The eyes have it (07/20/06) http://www.networkworld.com/newsletters/sec/2006/0717sec2.html

45.     Tips for implementing encryption on stored data (07/18/06) http://www.networkworld.com/newsletters/sec/2006/0717sec1.html

46.     IRS wants to liberate our tax returns (07/13/06) http://www.networkworld.com/newsletters/sec/2006/0710sec2.html

47.     Follow the rules - unless you shouldn’t follow the rules (07/11/06) http://www.networkworld.com/newsletters/sec/2006/0710sec1.html

48.     Excel helpers can damage data (07/06/06) http://www.networkworld.com/newsletters/sec/2006/0703sec2.html

49.     BCC prevents e-mail nuisances (06/29/06) http://www.networkworld.com/newsletters/sec/2006/0626sec2.html

50.     Control visible distribution lists in e-mail (06/27/06) http://www.networkworld.com/newsletters/sec/2006/0626sec1.html

51.     Production spreadsheets can cause problems (06/22/06) http://www.networkworld.com/newsletters/sec/2006/0619sec2.html

52.     The computer said so: Credulity vs. credibility (06/20/06) http://www.networkworld.com/newsletters/sec/2006/0619sec1.html

53.     GAO slams FCC on junk fax processing (06/15/06) http://www.networkworld.com/newsletters/sec/2006/0612sec2.html

54.     DHCP is a core technology for network access control (06/13/06) http://www.networkworld.com/newsletters/sec/2006/0612sec1.html

55.     Leaky BlackBerry spills the juice (06/08/06) http://www.networkworld.com/newsletters/sec/2006/0605sec2.html

56.     Unexpected consequences of HIPAA (06/06/06) http://www.networkworld.com/newsletters/sec/2006/0605sec1.html

57.     Unsubscribing not so easy (06/01/06) http://www.networkworld.com/newsletters/sec/2006/0529sec2.html

58.     Wandering laptops should teach lessons (05/30/06) http://www.networkworld.com/newsletters/sec/2006/0529sec1.html

59.     Interpersonal relations matter (05/25/06) http://www.networkworld.com/newsletters/sec/2006/0522sec2.html

60.     Standards can help in communicating security issues to executives (05/23/06) http://www.networkworld.com/newsletters/sec/2006/0522sec1.html

61.     Encrypting backups to avoid disasters (05/18/06) http://www.networkworld.com/newsletters/sec/2006/0515sec2.html

62.     Privacy conference: Schneier comes to Vermont (05/16/06) http://www.networkworld.com/newsletters/sec/2006/0515sec1.html

63.     Postal inspectors provide valuable fraud awareness resources (05/11/06) http://www.networkworld.com/newsletters/sec/2006/0508sec2.html

64.     ISP liability and ‘Net neutrality, Part 2 (05/09/06) http://www.networkworld.com/newsletters/sec/2006/0508sec1.html

65.     ISP liability and ‘Net neutrality, Part 1 (05/04/06) http://www.networkworld.com/newsletters/sec/2006/0501sec2.html

66.     Not TEOTIAWKI (05/02/06) http://www.networkworld.com/newsletters/sec/2006/0501sec1.html

67.     ‘Net neutrality debate heats up (04/27/06) http://www.networkworld.com/newsletters/sec/2006/0424sec2.html

68.     Web-site security Web site (04/25/06) http://www.networkworld.com/newsletters/sec/2006/0424sec1.html

69.     BCI offers useful guidance (04/20/06) http://www.networkworld.com/newsletters/sec/2006/0417sec2.html

70.     Non-independent errors (04/18/06) http://www.networkworld.com/newsletters/sec/2006/0417sec1.html

71.     New security handbook impressive (04/13/06) http://www.networkworld.com/newsletters/sec/2006/0410sec2.html

72.     MS-ISAC offers Webcasts for all (04/11/06) http://www.networkworld.com/newsletters/sec/2006/0410sec1.html

73.     Siemens resources for security educators (04/06/06) http://www.networkworld.com/newsletters/sec/2006/0403sec2.html

74.     Take responsibility (04/04/06) http://www.networkworld.com/newsletters/sec/2006/0403sec1.html

75.     When security procedures yield nothing but an illusion (03/30/06) http://www.networkworld.com/newsletters/sec/2006/0327sec2.html

76.     Bill addresses consumer privacy protection (03/28/06) http://www.networkworld.com/newsletters/sec/2006/0327sec1.html

77.     *The problem with compliance, Part 2 (03/23/06) http://www.networkworld.com/newsletters/sec/2006/0327sec1.html

78.     *The problem with compliance, Part 1 (03/21/06) http://www.networkworld.com/newsletters/sec/2006/0320sec1.html

79.     Dangers of in-flight cell phone use (03/16/06) http://www.networkworld.com/newsletters/sec/2006/0313sec2.html

80.     Google Desktop raises security questions (03/14/06) http://www.networkworld.com/newsletters/sec/2006/0313sec1.html

81.     *HTTP referrer header opens door to abuse (03/09/06) http://www.networkworld.com/newsletters/sec/2006/0306sec2.html

82.     Non-competition agreements, Part 2 (03/07/06) http://www.networkworld.com/newsletters/sec/2006/0306sec1.html

83.     Non-competition agreements, Part 1 (03/02/06) http://www.networkworld.com/newsletters/sec/2006/0227sec2.html

84.     New from NUJIA (02/28/06) http://www.networkworld.com/newsletters/sec/2006/0227sec1.html

85.     Student security videos deserve awards (02/23/06) http://www.networkworld.com/newsletters/sec/2006/0220sec2.html

86.     It’s hard to determine the ROI of information security measures (02/21/06) http://www.networkworld.com/newsletters/sec/2006/0220sec1.html

87.     Baseline Security Manual 2004 (02/16/06) http://www.networkworld.com/newsletters/sec/2006/0213sec2.html

88.     Book details deception techniques and countermeasures (02/14/06) http://www.networkworld.com/newsletters/sec/2006/0213sec1.html

89.     Secure your mainframes, too (02/09/06) http://www.networkworld.com/newsletters/sec/2006/0206sec2.html

90.     MPAA violates its own rules (02/07/06) http://www.networkworld.com/newsletters/sec/2006/0206sec1.html

91.     Egoless work (02/02/06) http://www.networkworld.com/newsletters/sec/2006/0130sec2.html

92.     Cisco ASA 5500 has value (01/31/06) http://www.networkworld.com/newsletters/sec/2006/0130sec1.html

93.     Penetration cases show need for response plans (01/26/06) http://www.networkworld.com/newsletters/sec/2006/0123sec2.html

94.     Many unauthorized disclosures in 2005 (01/24/06) http://www.networkworld.com/newsletters/sec/2006/0123sec1.html

95.     U.S. critical infrastructure needs improved security (01/19/06) http://www.networkworld.com/newsletters/sec/2006/0116sec2.html

96.     Security database updated (01/17/06) http://www.networkworld.com/newsletters/sec/2006/0116sec1.html

97.     AI-yai-AI! Smarter Viruses! (01/12/06) http://www.networkworld.com/newsletters/sec/2006/0109sec2.html

98.     Lost data all over the news in 2005 (01/10/06) http://www.networkworld.com/newsletters/sec/2006/0109sec1.html

99.     The miracle of the apostrophes (01/05/06) http://www.networkworld.com/newsletters/sec/2006/0102sec2.html

100.  Online Windows and Office raise security issues (01/03/06) http://www.networkworld.com/newsletters/sec/2006/0102sec1.html

 

2005

Improving information assurance education key to improving security management. J. Network & Systems Management (online, by subscription only) Sept 2005. Table of Contents < http://www.sce.umkc.edu/jnsm/vols/vol13n3.html >

Ubiquity Magazine of the Association for Computing Machinery

Some notes on malware. (08/16/05) http://www.acm.org/ubiquity/views/v6i30_kabay.html

Network World Fusion Security Newsletter http://www.networkworld.com/newsletters/sec/ * indicates guest authors.

1.        Policies for external links (12/22/05) http://www.networkworld.com/newsletters/sec/2005/1219sec2.html

2.        Internet links pose image and legal problems (12/20/05) http://www.networkworld.com/newsletters/sec/2005/1219sec1.html

3.        Intranet links to Internet servers pose risks (12/15/05) http://www.networkworld.com/newsletters/sec/2005/1212sec2.html

4.        *The Business Continuity Institute (12/13/05) http://www.networkworld.com/newsletters/sec/2005/1212sec1.html

5.        False FBI accusation carries Sober worm (12/08/05) http://www.networkworld.com/newsletters/sec/2005/1205sec2.html

6.        *Is Cisco’s ASA a headache-in-waiting? (12/06/05) http://www.networkworld.com/newsletters/sec/2005/1205sec1.html

7.        Managing the CIRT: Professionalism (12/01/05) http://www.networkworld.com/newsletters/sec/2005/1128sec2.html

8.        Synchronizing computers, Part 4: SyncToy (11/29/05) http://www.networkworld.com/newsletters/sec/2005/1128sec1.html

9.        Sambaza: New e-currency in East Africa (11/22/05) http://www.networkworld.com/newsletters/sec/2005/1121sec1.html

10.     *Synchronizing computers, Part 3: iFolder (11/15/05) http://www.networkworld.com/newsletters/sec/2005/1114sec1.html

11.     Industrial espionage, Part 8: China and Titan Rain (11/10/05) http://www.networkworld.com/newsletters/sec/2005/1107sec2.html

12.     Synchronizing computers, Part 2: BeInSync (11/08/05) http://www.networkworld.com/newsletters/sec/2005/1107sec1.html

13.     Industrial espionage, Part 7: More cases (11/03/05) http://www.networkworld.com/newsletters/sec/2005/1031sec2.html

14.     Synchronizing computers, Part 1: Laplink (11/01/05) http://www.networkworld.com/newsletters/sec/2005/1031sec1.html

15.     Industrial espionage, Part 6: Cases (10/27/05) http://www.networkworld.com/newsletters/sec/2005/1024sec2.html

16.     *The danger of relying solely on Active Directory for backups (10/25/05) http://www.networkworld.com/newsletters/sec/2005/1024sec1.html

17.     Industrial espionage, Part 5: People from many countries targeting U.S. (10/20/05) http://www.networkworld.com/newsletters/sec/2005/1017sec2.html

18.     TinyURLs: a matter of trust (10/18/05) http://www.networkworld.com/newsletters/sec/2005/1017sec1.html

19.     Industrial espionage, Part 4: Risk factors and losses (10/13/05) http://www.networkworld.com/newsletters/sec/2005/1010sec2.html

20.     CallingID fights Web fraud (10/11/05) http://www.networkworld.com/newsletters/sec/2005/1010sec1.html

21.     Industrial espionage, Part 3: Survey results (10/06/05) http://www.networkworld.com/newsletters/sec/2005/1003sec2.html

22.     A good little black book (10/04/05) http://www.networkworld.com/newsletters/sec/2005/1003sec1.html

23.     Industrial espionage, Part 2: More methods (09/29/05) http://www.networkworld.com/newsletters/sec/2005/0926sec2.html

24.     Fight Katrina frauds (09/27/05) http://www.networkworld.com/newsletters/sec/2005/0926sec1.html

25.     Industrial espionage, Part 1: Methods (09/22/05) http://www.networkworld.com/newsletters/sec/2005/0919sec2.html

26.     Nuclear security internship at PNNL (09/20/05) http://www.networkworld.com/newsletters/sec/2005/0919sec1.html

27.     NIST has busy season (09/15/05) http://www.networkworld.com/newsletters/sec/2005/0912sec2.html

28.     Survey takes on security best practices (09/13/05) http://www.networkworld.com/newsletters/sec/2005/0912sec1.html

29.     InfraGard is not a deodorant (09/08/05) http://www.networkworld.com/newsletters/sec/2005/0905sec2.html

30.     In defense of privacy (09/06/05) http://www.networkworld.com/newsletters/sec/2005/0905sec1.html

31.     Junk fax not what it seems, Part 2 (09/01/05) http://www.networkworld.com/newsletters/sec/2005/0829sec2.html

32.     Junk fax not what it seems, Part 1 (08/30/05) http://www.networkworld.com/newsletters/sec/2005/0829sec2.html

33.     How to communicate user IDs and passwords (08/25/05) http://www.networkworld.com/newsletters/sec/2005/0822sec2.html

34.     Security applications for ‘smart dust’ (08/23/05) http://www.networkworld.com/newsletters/sec/2005/0822sec1.html

35.     Long-term perspective: 200-year software (08/18/05) http://www.networkworld.com/newsletters/sec/2005/0815sec2.html

36.     E-mail disclaimer stimulates expletives (08/16/05) http://www.networkworld.com/newsletters/sec/2005/0815sec1.html

37.     Passports as a security measure (08/11/05) http://www.networkworld.com/newsletters/sec/2005/0808sec2.html

38.     Lend me your ears (08/09/05) http://www.networkworld.com/newsletters/sec/2005/0808sec1.html

39.     Security periodicals written by experts (08/04/05) http://www.networkworld.com/newsletters/sec/2005/0801sec2.html

40.     In e-mail, first impressions stick (08/02/05) http://www.networkworld.com/newsletters/sec/2005/0801sec1.html

41.     Two simple ways to improve utility and confidentiality of e-mail (07/28/05) http://www.networkworld.com/newsletters/sec/2005/0725sec2.html

42.     Use TinyURL links with care (07/26/05) http://www.networkworld.com/newsletters/sec/2005/0725sec1.html

43.     Crosswalk hacking and more from BBspot (07/21/05) http://www.networkworld.com/newsletters/sec/2005/0718sec2.html

44.     Thesis spells out threats to VoIP (07/19/05) http://www.networkworld.com/newsletters/sec/2005/0718sec1.html

45.     VoIP books and white papers (07/14/05) http://www.networkworld.com/newsletters/sec/2005/0711sec2.html

46.     NIST reports on VoIP security (07/12/05) http://www.networkworld.com/newsletters/sec/2005/0711sec1.html

47.     The Persistence of Memory (07/07/05) http://www.networkworld.com/newsletters/sec/2005/0704sec2.html

48.     *Spotting outliers is elementary (07/05/05) http://www.networkworld.com/newsletters/sec/2005/0704sec1.html

49.     Securing the CIRT: Walk the talk (06/30/05) http://www.networkworld.com/newsletters/sec/2005/0627sec2.html

50.     *Watch out for this eBay fraud technique (06/28/05) http://www.networkworld.com/newsletters/sec/2005/0627sec1.html

51.     Testing security awareness can be fun (06/23/05) http://www.networkworld.com/newsletters/sec/2005/0620sec2.html

52.     SPF: Some Problems to Face but Seems Pretty Fair (06/21/05) http://www.networkworld.com/newsletters/sec/2005/0620sec1.html

53.     CAPTCHAs look to separate humans from bots (06/16/05) http://www.networkworld.com/newsletters/sec/2005/0613sec2.html

54.     Use common sense when it comes to outliers (06/14/05) http://www.networkworld.com/newsletters/sec/2005/0613sec1.html

55.     Cell phones for spies (06/09/05) http://www.networkworld.com/newsletters/sec/2005/0606sec2.html

56.     Wireless perils are nothing new (06/07/05) http://www.networkworld.com/newsletters/sec/2005/0606sec1.html

57.     Information security cannot stand alone (06/02/05) http://www.networkworld.com/newsletters/sec/2005/0530sec2.html

58.     Newsletter points to European perspectives (05/31/05) http://www.networkworld.com/newsletters/sec/2005/0530sec1.html

59.     Gary Kessler’s Web site a treasure trove (05/26/05) http://www.networkworld.com/newsletters/sec/2005/0523sec2.html

60.     Panko’s book offers valuable resources (05/24/05) http://www.networkworld.com/newsletters/sec/2005/0523sec1.html

61.     Reward smarter password choices (05/19/05) http://www.networkworld.com/newsletters/sec/2005/0516sec2.html

62.     How to enrage hotline callers, Part 2 (05/17/05 ) http://www.networkworld.com/newsletters/sec/2005/0516sec1.html

63.     How to enrage hotline callers, Part 1 (05/12/05 ) http://www.networkworld.com/newsletters/sec/2005/0509sec2.html

64.     CIRT management: The telephone hotline (05/10/05 ) http://www.networkworld.com/newsletters/sec/2005/0509sec1.html

65.     Recipients’ security concerns can foil document formatting attempts (05/05/05 ) http://www.networkworld.com/newsletters/sec/2005/0502sec2.html

66.     Random paper generator fools conference organizers (05/03/05 ) http://www.networkworld.com/newsletters/sec/2005/0502sec1.html

67.     U.S. gov’t work on ID cards could be useful for private sector (04/28/05 ) http://www.networkworld.com/newsletters/sec/2005/0425sec2.html

68.     How to handle bad news (04/26/05 ) http://www.networkworld.com/newsletters/sec/2005/0425sec1.html

69.     The right way to make widespread system changes (04/21/05) http://www.networkworld.com/newsletters/sec/2005/0418sec2.html

70.     How to overcome upper-management resistance (04/19/05) http://www.networkworld.com/newsletters/sec/2005/0418sec1.html

71.     Report highlights cyber security issues (04/14/05) http://www.networkworld.com/newsletters/sec/2005/0411sec2.html

72.     IDS maker has whale of a good site (04/12/05) http://www.networkworld.com/newsletters/sec/2005/0411sec1.html

73.     Another take on privacy (04/07/05) http://www.networkworld.com/newsletters/sec/2005/0404sec2.html

74.     Ethics in security policy (04/05/05) http://www.networkworld.com/newsletters/sec/2005/0404sec1.html

75.     (ISC)2 offers range of certifications (03/31/05) http://www.networkworld.com/newsletters/sec/2005/0328sec2.html

76.     Schneier’s Crypto-Gram always informative (03/29/05) http://www.networkworld.com/newsletters/sec/2005/0328sec1.html

77.     Controlling USB storage devices (03/24/05) http://www.networkworld.com/newsletters/sec/2005/0321sec2.html

78.     Stealth mode utilities, Part 3 (03/22/05) http://www.networkworld.com/newsletters/sec/2005/0321sec1.html

79.     Stealth mode utilities, Part 2 (03/17/05) http://www.networkworld.com/newsletters/sec/2005/0314sec2.html

80.     Stealth mode utilities, Part 1 (03/15/05) http://www.networkworld.com/newsletters/sec/2005/0314sec1.html

81.     Monty Python alum promotes data backups (03/10/05) http://www.networkworld.com/newsletters/sec/2005/0307sec2.html

82.     *Understand the business case for security (03/08/05) http://www.networkworld.com/newsletters/sec/2005/0307sec1.html

83.     An unwanted RAID conversion (03/03/05) http://www.networkworld.com/newsletters/sec/2005/0228sec2.html

84.     USB flash drives spreading like mushrooms (03/01/05) http://www.networkworld.com/newsletters/sec/2005/0228sec1.html

85.     Applications of biometric flash drives (02/24/05) http://www.networkworld.com/newsletters/sec/2005/0221sec2.html

86.     Biometric flash drive is convenient and secure (02/22/05) http://www.networkworld.com/newsletters/sec/2005/0221sec1.html

87.     Personal links not a technical problem, Part 2 (02/17/05) http://www.networkworld.com/newsletters/sec/2005/0214sec2.html

88.     Personal links not a technical problem, Part 1 (02/15/05) http://www.networkworld.com/newsletters/sec/2005/0214sec1.html

89.     ITIL offers help for network operations management (02/10/05) http://www.networkworld.com/newsletters/sec/2005/0207sec2.html

90.     New course, publication from Norwich University (02/08/05) http://www.networkworld.com/newsletters/sec/2005/0207sec1.html

91.     See Ya at FISSEA (02/03/05) http://www.networkworld.com/newsletters/sec/2005/0131sec2.html

92.     A spyware record? (02/01/05) http://www.networkworld.com/newsletters/sec/2005/0131sec1.html

93.     Yahoo’s improved toolbar (01/27/05) http://www.networkworld.com/newsletters/sec/2005/0124sec2.html

94.     Security institute offers valuable research (01/25/05) http://www.networkworld.com/newsletters/sec/2005/0124sec1.html

95.     Resources for fighting fraud and phishing (01/20/05) http://www.networkworld.com/newsletters/sec/2005/0117sec2.html

96.     *CERTs and CIRTs: homonyms but not synonyms, Part 2 (01/18/05) http://www.networkworld.com/newsletters/sec/2005/0110sec2.html

97.     * CERTs and CIRTs: homonyms but not synonyms, Part 1 (01/13/05) http://www.networkworld.com/newsletters/sec/2005/0110sec2.html

98.     Microsoft security documents available online (01/11/05) http://www.networkworld.com/newsletters/sec/2005/0110sec1.html

99.     Security Web seminars: a good training resource (01/06/05) http://www.networkworld.com/newsletters/sec/2005/0103sec2.html

100.  A closer look at Google Desktop Search (01/04/05) http://www.networkworld.com/newsletters/sec/2005/0103sec1.html

2004

Ubiquity Magazine of the Association for Computing Machinery

Airport Safety: A Case Study for Infrastructure Security. http://www.acm.org/ubiquity/views/v5i34_kabay.html

Information assurance careers. AAAS Science Magazine NextWave

http://tinyurl.com/5df23d

Network World Fusion Security Newsletter http://www.networkworld.com/newsletters/sec/ * indicates guest columnist

1.        Firewalls: FAQs and white papers (12/21/04) http://www.networkworld.com/newsletters/sec/2004/1220sec1.html

2.        Book explores human side of white-collar crime (12/14/04) http://www.networkworld.com/newsletters/sec/2004/1213sec1.html

3.        CIRT management: Critical distinctions, Part 2 (12/09/04) http://www.networkworld.com/newsletters/sec/2004/1206sec2.html

4.        CIRT management: Critical distinctions, Part 1 (12/07/04) http://www.networkworld.com/newsletters/sec/2004/1206sec1.html

5.        Matt Bishop’s latest hit (12/02/04) http://www.networkworld.com/newsletters/sec/2004/1129sec2.html

6.        Security on a budget (11/30/04) http://www.networkworld.com/newsletters/sec/2004/1129sec1.html

7.        A stroke of LURHQ (11/23/04) http://www.networkworld.com/newsletters/sec/2004/1122sec1.html

8.        Information security dictionary (11/18/04) http://www.networkworld.com/newsletters/sec/2004/1115sec2.html

9.        Something wiki this way comes (11/16/04) http://www.networkworld.com/newsletters/sec/2004/1115sec1.html

10.     INFOSEC Year in Review database (11/11/04) http://www.networkworld.com/newsletters/sec/2004/1108sec2.html

11.     Beware of self-denial of service (11/09/04) http://www.networkworld.com/newsletters/sec/2004/1108sec1.html

12.     Resources and news on illegal downloads (10/26/04) http://www.networkworld.com/newsletters/sec/2004/1025sec1.html

13.     Move along now (10/21/04) http://www.networkworld.com/newsletters/sec/2004/1018sec2.html

14.     Viral code is not speech (10/19/04) http://www.networkworld.com/newsletters/sec/2004/1018sec1.html

15.     Publishing functional viral code (10/14/04) http://www.networkworld.com/newsletters/sec/2004/1011sec2.html

16.     Anti-virus laws (10/12/04) http://www.networkworld.com/newsletters/sec/2004/1011sec1.html

17.     A prof gets bored sometimes (10/07/04) http://www.networkworld.com/newsletters/sec/2004/1004sec2.html

18.     Numerical Web ID codes allow data leakage (10/05/04) http://www.networkworld.com/newsletters/sec/2004/1004sec1.html

19.     Who locks the locks? (09/30/04) http://www.networkworld.com/newsletters/sec/2004/0927sec2.html

20.     Creating viruses in a university course (2) (09/28/04) http://www.networkworld.com/newsletters/sec/2004/0927sec1.html

21.     Creating viruses in a university course (1) (09/23/04) http://www.networkworld.com/newsletters/sec/2004/0920sec2.html

22.     Foiling Web bugs (09/21/04) http://www.networkworld.com/newsletters/sec/2004/0920sec1.html

23.     Digital forensics (2) (09/16/04) http://www.networkworld.com/newsletters/sec/2004/0913sec2.html

24.     Digital forensics (1) (09/14/04) http://www.networkworld.com/newsletters/sec/2004/0913sec1.html

25.     Computer Security Day: Useful fun. (09/09/04) http://www.networkworld.com/newsletters/sec/2004/0906sec2.html

26.     An iron vault for passwords (09/07/04) http://www.networkworld.com/newsletters/sec/2004/0906sec1.html

27.     Understanding brute-force cracking (09/02/04) http://www.networkworld.com/newsletters/sec/2004/0830sec2.html

28.     Call for input (08/31/04) http://www.networkworld.com/newsletters/sec/2004/0830sec1.html

29.     Just the FACCTs (08/26/04) http://www.networkworld.com/newsletters/sec/2004/0823sec2.html

30.     Do the right thing (08/24/04) http://www.networkworld.com/newsletters/sec/2004/0823sec1.html

31.     CIRT management: Tracking incidents (08/19/04) http://www.networkworld.com/newsletters/sec/2004/0816sec2.html

32.     Security-awareness programs can be imaginative and fun (08/17/04) http://www.networkworld.com/newsletters/sec/2004/0816sec1.html

33.     Book details security analysis (08/05/04) http://www.networkworld.com/newsletters/sec/2004/0802security2.html