PUBLI
Michel E. Kabay, PhD, CISSP-ISSMP
Bosworth, S., M. E. Kabay, & E. Whyne (2009), editors. Computer Security Handbook, 5th Edition. Wiley (ISBN 0-471-71652-9). Two volumes; 2040 pp. Index.
Chapters:
2. Kabay, M. E.: History of Computer Crime
10. Kabay, M. E.: Understanding Studies and Surveys of Computer Crime
15. Cobb, C., S. Cobb & M. E. Kabay: Penetrating Systems and Networks
38. Nichols, L. E., M. E. Kabay, & T. Braithwaite: Writing Secure Code
44. Kabay, M. E. & B. Robertson: Security Policy Guidelines
47. Kabay, M. E., D. Holden & Myles Walsh: Operations Security and Production Controls
48. Kabay, M. E. & N. Takacs: E-Mail and Internet Use Policies
50. Kabay, M. E., B. Robertson, M. Akella & D. T. Lang: Using Social Psychology to Implement Security Policies
56. Miora, M., M. E. Kabay & B. Cowens: Computer Security Incident Response Teams
57. Kabay, M. E. & D. Holden: Data Backups and Archives
63. Hallberg, C., M. E. Kabay, B. Robertson & A. Hutt: Management Responsibilities and Liabilities
66. Kabay, M. E. & S. Kelley: Developing Security Policies
70. Kabay, M. E., E. Salveggio & R. Guess: Anonymity and Identity in Cyberspace
74. Christian, C., M. E. Kabay, K. Henry & S. Schneider: Professional Certification and Training in Information Assurance
Network World
Security Strategies newsletter http://www.networkworld.com/newsletters/sec/
There are usually 8-10 articles in press at any time. These columns have ~55,000 subscribers (Oct 2008). * indicates collaboration with guest authors.
1. Internet addiction in China: Some teens harshly treated (12/23/09) http://www.networkworld.com/newsletters/sec/2009/122109sec2.html
2. Debate over Internet "Addiction" (12/21/09) http://www.networkworld.com/newsletters/sec/2009/122109sec1.html
3. Internet habit? Dependency? Addiction? Pop psychology? (12/16/09) http://www.networkworld.com/newsletters/sec/2009/121409sec2.html
4. Traveling to dictatorships (12/14/09) http://www.networkworld.com/newsletters/sec/2009/121409sec1.html
5. H4ck3rs are people too: Film review (12/09/09) http://www.networkworld.com/newsletters/sec/2009/120709sec2.html
6. The Fruit of the Poisoned Tree (12/07/09) http://www.networkworld.com/newsletters/sec/2009/120709sec1.html
7. Why Criminal Hackers Must Not Be Rewarded (12/02/09) http://www.networkworld.com/newsletters/sec/2009/113009sec2.html
8. *SANS official talks security (11/30/09) http://www.networkworld.com/newsletters/sec/2009/113009sec1.html
9. *Information security and business strategy Part 1 (11/23/09) http://www.networkworld.com/newsletters/sec/2009/112309sec1.html
10. Advice to beginners (11/18/09) http://www.networkworld.com/newsletters/sec/2009/111609sec2.html
11. A different kind of antiviral donation for Africa (11/16/09) http://www.networkworld.com/newsletters/sec/2009/111609sec1.html
12. IA
job prospects bright (11/11/09) http://www.networkworld.com/newsletters/sec/2009/110909sec2.html
13. Detailing
contingency planning (11/09/09) http://www.networkworld.com/newsletters/sec/2009/110909sec1.html
14. *SP
800-53 is essential for security in federal government IT systems (11/04/09) http://www.networkworld.com/newsletters/sec/2009/110209sec2.html
15. *Extensive
Catalog Provides Security Controls for Contemporary Security Requirements (11/02/09) http://www.networkworld.com/newsletters/sec/2009/110209sec1.html
16. *NIST
SP800-53 Rev. 3: Risk Management Framework Underpins the Security Life
Cycle (10/28/09) http://www.networkworld.com/newsletters/sec/2009/102609sec2.html
17. *NIST SP800-53 Rev. 3: Key to Unified Security Across Federal Government and Private Sectors (10/26/09) http://www.networkworld.com/newsletters/sec/2009/102609sec1.html
18. Understanding
and implementing information security metrics (10/21/09) http://www.networkworld.com/newsletters/sec/2009/101909sec2.html
19. *Hiring
hackers: A rebuttal (part 2) (10/19/09) http://www.networkworld.com/newsletters/sec/2009/101909sec1.html
20. *Hiring
hackers: A Rebuttal (part 1) (10/14/09) http://www.networkworld.com/newsletters/sec/2009/101209sec2.html
21. Data-theft
Trojans and the changing face of the Web (10/12/09) http://www.networkworld.com/newsletters/sec/2009/101209sec1.html
22. *The
Norm Coleman Web crash and full disclosure (2)
(10/07/09) http://www.networkworld.com/newsletters/sec/2009/100509sec2.html
23. *The
Norm Coleman Web crash and full disclosure (1)
(10/05/09) http://www.networkworld.com/newsletters/sec/2009/100509sec1.html
24. Applying
the science of persuasion to security awareness (09/30/09) http://www.networkworld.com/newsletters/sec/2009/092809sec2.html
25.
*The IA Professional's Toolkit Part 7 (09/28/09)
http://www.networkworld.com/newsletters/sec/2009/092809sec1.html
26. *The IA Professional's Toolkit Part 6 (09/23/09) http://www.networkworld.com/newsletters/sec/2009/092109sec2.html
27. *The
IA Professional's Toolkit Part 5 (09/21/09) http://www.networkworld.com/newsletters/sec/2009/092109sec1.html
28. *The
IA Professional's Toolkit Part 4 (09/16/09) http://www.networkworld.com/newsletters/sec/2009/091409sec2.html
29. *The IA Professional's Toolkit Part 3 (09/14/09) http://www.networkworld.com/newsletters/sec/2009/091409sec1.html
30. *The
IA Professional's Toolkit Part 2 (09/09/09) http://www.networkworld.com/newsletters/sec/2009/090709sec2.html
31. *The
IA Professional's Toolkit Part 1 (09/07/09) http://www.networkworld.com/newsletters/sec/2009/090709sec1.html
32. Pseudonymous
critic impugns integrity of all security professionals (09/02/09) http://www.networkworld.com/newsletters/sec/2009/083109sec2.html
33. Identity
Theft Resource Center Part 2 (08/31/09) http://www.networkworld.com/newsletters/sec/2009/083109sec1.html
34. Identity
theft resource center (08/26/09) http://www.networkworld.com/newsletters/sec/2009/082409sec2.html
35. *IA
Policies Part 2 (08/24/09) http://www.networkworld.com/newsletters/sec/2009/082409sec1.html
36. *IA
policies (part 1) (08/19/09) http://www.networkworld.com/newsletters/sec/2009/081709sec2.html
37. Hiring
hackers (part 2) (08/17/09) http://www.networkworld.com/newsletters/sec/2009/081709sec1.html
38. Hiring
hackers (part 1) (08/12/09) http://www.networkworld.com/newsletters/sec/2009/081009sec2.html
39. *Case
studies in working with law enforcement (part 2) (08/10/09) http://www.networkworld.com/newsletters/sec/2009/081009sec1.html
40. *Case studies in working with law enforcement (Part 1) (08/05/09) http://www.networkworld.com/newsletters/sec/2009/080309sec2.html
41. Crisis communications: A primer for teams (part 2) (08/03/09) http://www.networkworld.com/newsletters/sec/2009/080309sec1.html
42. Crisis communications: A primer for teams (Part 1) (07/29/09) http://www.networkworld.com/newsletters/sec/2009/072709sec2.html
43. Preparing for the next solar max (07/27/09) http://www.networkworld.com/newsletters/sec/2009/072709sec1.html
44. Solar storms have caused serious disruptions (07/22/09) http://www.networkworld.com/newsletters/sec/2009/072009sec2.html
45. Solar
storms are more than a curiosity (07/17/09) http://www.networkworld.com/newsletters/sec/2009/072009sec1.html
46. CSH5
discussion group opens for business (07/15/09) http://www.networkworld.com/newsletters/sec/2009/071309sec2.html
47. Reality
trumps theory (07/13/09) http://www.networkworld.com/newsletters/sec/2009/071309sec1.html
48. AMiloration of security: Milo and future hacking (07/08/09) http://www.networkworld.com/newsletters/sec/2009/070609sec2.html
49. *CSIRT Management: Lessons from Other Group Postmortems (Part 2) (07/06/09) http://www.networkworld.com/newsletters/sec/2009/070609sec1.html
50. *CSIRT
Management: Lessons from other group postmortems (07/01/09) http://www.networkworld.com/newsletters/sec/2009/062909sec2.html
51. Iran, disintermediation and cyberwar (06/29/09) http://www.networkworld.com/newsletters/sec/2009/062909sec1.html
52. Subtle
pressures for security policy compliance (06/24/09) http://www.networkworld.com/newsletters/sec/2009/062209sec2.html
53. Working
with consultants, part 4 (06/22/09) http://www.networkworld.com/newsletters/sec/2009/062209sec1.html
54. Working with consultants, part 3 (06/17/09) http://www.networkworld.com/newsletters/sec/2009/061509sec2.html
55. Working
with consultants, part 2 (06/15/09) http://www.networkworld.com/newsletters/sec/2009/061509sec1.html
56. Working
with consultants (06/10/09) http://www.networkworld.com/newsletters/sec/2009/060809sec2.html
57. Consensus
metrics for information security (06/08/09) http://www.networkworld.com/newsletters/sec/2009/060809sec1.html
58. Quality
control, data integrity, and the silly season (06/03/09) http://www.networkworld.com/newsletters/sec/2009/060109sec2.html
59. Dr.
Johnston's Security Maxims: Sense and Humor (06/01/09) http://www.networkworld.com/newsletters/sec/2009/060109sec1.html
60. Security metrics research (05/27/09) http://www.networkworld.com/newsletters/sec/2009/052509sec2.html
61. Phishing
using scary bait (05/22/09) http://www.networkworld.com/newsletters/sec/2009/052509sec1.html
62. *iPhone
Security, Part 2 (05/20/09) http://www.networkworld.com/newsletters/sec/2009/051809sec2.html
63. *iPhone
security, Part 1 (05/19/09) http://www.networkworld.com/newsletters/sec/2009/051809sec1.html
64. *Implications
of proposed Cybersecurity Act of 2009, Part 2 (05/13/09) http://www.networkworld.com/newsletters/sec/2009/051109sec2.html
65. *Implications
of proposed Cybersecurity Act of 2009, Part 1 (05/11/09) http://www.networkworld.com/newsletters/sec/2009/051109sec1.html
66. *Increasing
Internet security for average users (05/07/09) http://www.networkworld.com/newsletters/sec/2009/050409sec2.html
67. IA
career development: Need for IA professionals will grow (05/05/09) http://www.networkworld.com/newsletters/sec/2009/050409sec1.html
68. Locking
out users gives attackers a tool for denial of service (04/30/09) http://www.networkworld.com/newsletters/sec/2009/042709sec2.html
69. Guide
to enterprise password management drafted (04/28/09) http://www.networkworld.com/newsletters/sec/2009/042709sec1.html
70. *Flaws
in 'Internet SAFETY' bill (04/23/09) http://www.networkworld.com/newsletters/sec/2009/042009sec2.html
71. The
state of spam 2009, Part 4 (04/21/09) http://www.networkworld.com/newsletters/sec/2009/042009sec1.html
72. The
state of spam 2009, Part 3 (04/16/09) http://www.networkworld.com/newsletters/sec/2009/041309sec2.html
73. The
state of spam 2009, Part 2 (04/14/09) http://www.networkworld.com/newsletters/sec/2009/041309sec1.html
74. The
state of spam 2009, Part 1 (04/09/09) http://www.networkworld.com/newsletters/sec/2009/040609sec2.html
75. Chinese
information warfare capabilities (04/07/09) http://www.networkworld.com/newsletters/sec/2009/040609sec1.html
76. 2008
was not a good year (04/02/09) http://www.networkworld.com/newsletters/sec/2009/033009sec2.html
77. Accreditation
for IA-related Web sites (03/31/09) http://www.networkworld.com/newsletters/sec/2009/033009sec1.html
78. *Cold-boot
attacks: The 'frozen cache' approach (03/26/09) http://www.networkworld.com/newsletters/sec/2009/032309sec2.html
79. *Cold-boot
attacks change the data leakage landscape (03/24/09) http://www.networkworld.com/newsletters/sec/2009/032309sec1.html
80. As
happy as a rock star in a pig pen (03/19/09) http://www.networkworld.com/newsletters/sec/2009/031609sec2.html
81. Kraken
the botnet: The ethics of counter-hacking (03/17/09) http://www.networkworld.com/newsletters/sec/2009/031609sec1.html
82.
Online auctions: Caveat Mercator Venditorque (03/12/09) http://www.networkworld.com/newsletters/sec/2009/030909sec2.html
83. Trademarks
as keywords for targeted ads? (03/10/09) http://www.networkworld.com/newsletters/sec/2009/030909sec1.html
84. *The Internet Protectors (03/05/09) http://www.networkworld.com/newsletters/sec/2009/030209sec2.html
85. Computer Security Handbook Fifth Edition is ready (03/03/09) http://www.networkworld.com/newsletters/sec/2009/030209sec1.html
86. Bluetooth is not a dental condition (02/26/09) http://www.networkworld.com/newsletters/sec/2009/030209sec1.html
87. Cell phone security (02/24/09) http://www.networkworld.com/newsletters/sec/2009/022309sec1.html
88. Guidelines for securing IEEE 802.11i wireless networks (02/19/09) http://www.networkworld.com/newsletters/sec/2009/021609sec2.html
89. The Habit: or There and Back Again to the NISTy Mountains (02/17/09) http://www.networkworld.com/newsletters/sec/2009/021609sec1.html
90. NSA identifies top 25 programming errors (02/12/09) http://www.networkworld.com/newsletters/sec/2009/020909sec2.html
91. *Is compliance with standards achieving the goal of protecting data? (02/10/09) http://www.networkworld.com/newsletters/sec/2009/020909sec1.html
92. Confounded nonsense (02/05/09) http://www.networkworld.com/newsletters/sec/2009/020209sec2.html
93. Linux Defenders organize to fight patent trolls (02/03/09) http://www.networkworld.com/newsletters/sec/2009/020209sec1.html
94. *Information security and the outsider, Part 2 (01/29/09) http://www.networkworld.com/newsletters/sec/2009/012609sec2.html
95. *Information security and the outsider, Part 1
(01/27/09) http://www.networkworld.com/newsletters/sec/2009/012609sec1.html
96. Don’t just talk about security - do something!
(01/22/09) http://www.networkworld.com/newsletters/sec/2009/011909sec2.html
97. Users don’t get it (but it’s human
nature) (01/20/09) http://www.networkworld.com/newsletters/sec/2009/011909sec1.html
98. Avoid conflicts over intellectual property (01/15/09) http://www.networkworld.com/newsletters/sec/2009/011209sec2.html
99. MITRE offers recommendation-tracker software and free one-day course (01/13/09) http://www.networkworld.com/newsletters/sec/2009/011209sec1.html
100. Surfing brain waves: fMRI for lie
detection (01/08/09) http://www.networkworld.com/newsletters/sec/2009/010509sec2.html
101. Abiding by the law: Blueport vs. U.S. (01/06/09) http://www.networkworld.com/newsletters/sec/2009/010509sec1.html
2008
Brief History of Computer Crime. http://www.mekabay.com/opsmgmt/facilities_security.pdf
Facilities Security: How to protect your site against attacks and damage. http://www.mekabay.com/opsmgmt/facilities_security.pdf
Network World
Security Strategies newsletter http://www.networkworld.com/newsletters/sec/
* indicates collaboration with guest authors.
1. Cornell a LIIder in cyberlaw resources (12/18/08) http://www.networkworld.com/newsletters/sec/2008/121508sec2.html
2. Pay attention to cyberlaw (12/16/08) http://www.networkworld.com/newsletters/sec/2008/121508sec1.html
3. Technicalinfo.net has good resources (12/11/08) http://www.networkworld.com/newsletters/sec/2008/120808sec2.html
4. Great expectations for managing cybersecurity resources (12/09/08) http://www.networkworld.com/newsletters/sec/2008/120808sec1.html
5. Visible Ops Security, Phase 4 (12/04/08) http://www.networkworld.com/newsletters/sec/2008/120108sec2.html
6. Visible Ops Security, Phase 3 (12/02/08) http://www.networkworld.com/newsletters/sec/2008/120108sec1.html
7. Visible Ops Security, Phase 2 (11/25/08) http://www.networkworld.com/newsletters/sec/2008/112408sec1.html
8. Visible Ops Security, Phase 1 (11/20/08) http://www.networkworld.com/newsletters/sec/2008/111708sec2.html
9. Introducing
Visible Ops Security (11/18/08) http://www.networkworld.com/newsletters/sec/2008/111708sec1.html
10. Visible
Ops Handbook (11/13/08) http://www.networkworld.com/newsletters/sec/2008/111008sec2.html
11. Swiss mix: Useful copyright resource (11/11/08) http://www.networkworld.com/newsletters/sec/2008/111008sec1.html
12. New
Web site and files for readers (11/06/08) http://www.networkworld.com/newsletters/sec/2008/110308sec2.html
13. ‘Zero
Day Threat’: Deep analysis + fun = excellent read (11/04/08) http://www.networkworld.com/newsletters/sec/2008/110308sec1.html
14. *Copyright
infringement and the CISSP, Part 2 (10/30/08) http://www.networkworld.com/newsletters/sec/2008/102708sec2.html
15. *Copyright
infringement and the CISSP, Part 1 (10/28/08) http://www.networkworld.com/newsletters/sec/2008/102708sec1.html
16. Arrogance
or efficiency? Why Microsoft redesigned the Office user interface, Part 4
(10/23/08) http://www.networkworld.com/newsletters/sec/2008/102008sec2.html
17. Arrogance
or efficiency? Why Microsoft redesigned the Office user interface, Part 3
(10/21/08) http://www.networkworld.com/newsletters/sec/2008/102008sec1.html
18. Arrogance or efficiency? Why Microsoft redesigned the Office user interface, Part 2 (10/16/08) http://www.networkworld.com/newsletters/sec/2008/101308sec2.html
19. Arrogance or efficiency? Why Microsoft redesigned the Office user interface, Part 1 (10/14/08) http://www.networkworld.com/newsletters/sec/2008/101308sec1.html
20. *How to react to a fire alarm (10/09/08) http://www.networkworld.com/newsletters/sec/2008/100608sec2.html
21. *Don’t be a Blobmonger (10/07/08) http://www.networkworld.com/newsletters/sec/2008/100608sec1.html
22. Securing the eCampus 2008 (10/02/08) http://www.networkworld.com/newsletters/sec/2008/092908sec2.html
23. *The
data center from hell, Part 3: Lessons learned (09/30/08) http://www.networkworld.com/newsletters/sec/2008/092908sec1.html
24. *The
data center from hell, Part 2 (09/25/08) http://www.networkworld.com/newsletters/sec/2008/092208sec2.html
25.
*The data center from hell, Part 1 (09/23/08) http://www.networkworld.com/newsletters/sec/2008/092208sec1.html
26. How
not to manage lost passwords (09/18/08) http://www.networkworld.com/newsletters/sec/2008/091508sec2.html
27. reCAPTCHA
illustrates human ingenuity (09/16/08) http://www.networkworld.com/newsletters/sec/2008/091508sec1.html
28. Bad
business model: Turning subscriptions into gambling (09/11/08) http://www.networkworld.com/newsletters/sec/2008/090808sec2.html
29. New
kids advance ‘New School’ (09/09/08) http://www.networkworld.com/newsletters/sec/2008/090808sec1.html
30. The
privacy policy problem, Part 4: Reality hits home (09/04/08) http://www.networkworld.com/newsletters/sec/2008/090108sec2.html
31. The
privacy policy problem, Part 3: Opting out of opting out (09/02/08) http://www.networkworld.com/newsletters/sec/2008/090108sec1.html
32. The
privacy policy problem, Part 2: Controlling business partners (08/28/08) http://www.networkworld.com/newsletters/sec/2008/082508sec2.html
33. The
privacy policy problem, Part 1: A model policy (08/26/08) http://www.networkworld.com/newsletters/sec/2008/082508sec1.html
34. Analyzing
fundamental flaws: Opening vs. unlocking (08/21/08) http://www.networkworld.com/newsletters/sec/2008/081808sec2.html
35. IMCD
Business Backup: Prepare for all ContingenZs (08/19/08) http://www.networkworld.com/newsletters/sec/2008/081808sec1.html
36. Encryption
bottleneck: Lessons from performance analysis (08/14/08) http://www.networkworld.com/newsletters/sec/2008/081108sec2.html
37. WEIS
2008: IPv6 illustrates resistance to new technologies (08/12/08) http://www.networkworld.com/newsletters/sec/2008/081108sec1.html
38. WEIS
2008: Transition to IPv6 is complex (08/07/08) http://www.networkworld.com/newsletters/sec/2008/080408sec2.html
39. WEIS
2008: Escalation and incentives for better security (08/05/08) http://www.networkworld.com/newsletters/sec/2008/080408sec1.html
40. WEIS
2008: Security economics and European policy (07/31/08) http://www.networkworld.com/newsletters/sec/2008/072808sec2.html
41. WEIS 2008: Do data-breach-disclosure laws reduce identity theft? (07/29/08) http://www.networkworld.com/newsletters/sec/2008/072808sec1.html
42. *Insider
controls still lacking (07/24/08) http://www.networkworld.com/newsletters/sec/2008/072108sec2.html
43. ‘Bad
Verb’: A bad user interface in action (07/22/08) http://www.networkworld.com/newsletters/sec/2008/072108sec1.html
44. *DoD
offers useful certification guidelines (07/17/08) http://www.networkworld.com/newsletters/sec/2008/071408sec2.html
45. *Biometric blooper? (07/15/08) http://www.networkworld.com/newsletters/sec/2008/071408sec1.html
46. Verizon data breach report, Part 4: Attack vectors (07/10/08) http://www.networkworld.com/newsletters/sec/2008/070708sec2.html
47.
Verizon data breach report, Part 3: Breach size
and source (07/08/08) http://www.networkworld.com/newsletters/sec/2008/070708sec1.html
48. Verizon
data breach investigations report, Part 2: Outsider attacks (07/03/08) http://www.networkworld.com/newsletters/sec/2008/063008sec2.html
49. Verizon data breach investigations report, Part 1 (07/01/08) http://www.networkworld.com/newsletters/sec/2008/063008sec1.html
50. Improved security raises threat to the unimproved (06/26/08) http://www.networkworld.com/newsletters/sec/2008/062308sec1.html
51. *Extreme weather and business continuity (06/24/08) http://www.networkworld.com/newsletters/sec/2008/062308sec1.html
52. Keep pace with vulnerabilities (06/19/08) http://www.networkworld.com/newsletters/sec/2008/061608sec2.html
53. Infowar
resources (06/17/08) http://www.networkworld.com/newsletters/sec/2008/061608sec1.html
54. LBB2E: Joel Dubin updates his pocket guide (06/12/08) http://www.networkworld.com/newsletters/sec/2008/060908sec2.html
55. Master of Science in Business Continuity Management (06/10/08) http://www.networkworld.com/newsletters/sec/2008/060908sec1.html
56. 10 tips for moving e-discovery into the enterprise (06/05/08) http://www.networkworld.com/newsletters/sec/2008/060208sec2.html
57. Useful guides to e-mail archiving (06/03/08) http://www.networkworld.com/newsletters/sec/2008/060208sec1.html
58. Workshop
on Economics of Information Security (05/29/08) http://www.networkworld.com/newsletters/sec/2008/052608sec2.html
59. Bordering
on insanity (05/27/08) http://www.networkworld.com/newsletters/sec/2008/052608sec1.html
60. Crossing
borders with corporate data (05/22/08) http://www.networkworld.com/newsletters/sec/2008/051908sec2.html
61. Expanding
roles for the CISO (05/20/08) http://www.networkworld.com/newsletters/sec/2008/051908sec1.html
62. The
CISO as strategic resource (05/15/08) http://www.networkworld.com/newsletters/sec/2008/051208sec2.html
63. Building a bridge from the CISO to the CEO (05/13/08) http://www.networkworld.com/newsletters/sec/2008/051208sec1.html
64. Identity Finder helps prevent identity theft (05/08/08) http://www.networkworld.com/newsletters/sec/2008/050508sec2.html
65. Central Ohio InfoSec Summit coming up soon (05/06/08) http://www.networkworld.com/newsletters/sec/2008/050508sec1.html
66. Zapping ‘zappers’ (05/01/08) http://www.networkworld.com/newsletters/sec/2008/042808sec2.html
67. Zap! You’re under arrest (04/29/08) http://www.networkworld.com/newsletters/sec/2008/042808sec1.html
68. Scan ScanSafe’s annual report for heuristic experience (04/24/08) http://www.networkworld.com/newsletters/sec/2008/042108sec2.html
69. *Comprehensive security needed to prevent printer hacking (04/22/08) http://www.networkworld.com/newsletters/sec/2008/042108sec1.html
70. *Your printer: An open door for hackers? (04/17/08) http://www.networkworld.com/newsletters/sec/2008/041408sec2.html
71. *Managing CSIRT burnout and turnover: a case study, Part 3 (04/15/08) http://www.networkworld.com/newsletters/sec/2008/041408sec1.html
72. *Managing CSIRT burnout and turnover: a case study, Part 2 (04/10/08) http://www.networkworld.com/newsletters/sec/2008/040708sec2.html
73. *Managing CSIRT burnout and turnover: a case study, Part 1 (04/08/08) http://www.networkworld.com/newsletters/sec/2008/040708sec1.html
74. April Fool’s lessons (04/03/08) http://www.networkworld.com/newsletters/sec/2008/033108sec2.html
75. MessageLabs Intelligence Reports make good reading (04/01/08) http://www.networkworld.com/newsletters/sec/2008/033108sec1.html
76. The state of spam: An interview with Jamie de Guerre, Part 2 (03/27/08) http://www.networkworld.com/newsletters/sec/2008/0324sec2.html
77. The state of spam: An interview with Jamie de Guerre, Part 1 (03/25/08) http://www.networkworld.com/newsletters/sec/2008/0324sec1.html
78. Security roles made brilliantly clear (03/20/08) http://www.networkworld.com/newsletters/sec/2008/0317sec2.html
79. Process over presumption: The Vermont encryption key decision (03/18/08) http://www.networkworld.com/newsletters/sec/2008/0317sec1.html
80. Chapters
in ‘Information Roles & Responsibilities Made Easy’ (03/17/08) http://www.networkworld.com/newsletters/sec/2008/0317sec2a.html
81. Charles
Cresson Wood’s list of common mistakes you should avoid (03/17/08) http://www.networkworld.com/newsletters/sec/2008/0317sec2b.html
82. Protecting
your SSN and your reading habits (03/13/08) http://www.networkworld.com/newsletters/sec/2008/0310sec2.html
83. Why
identity-theft rates are so high (03/11/08) http://www.networkworld.com/newsletters/sec/2008/0310sec1.html
84. Defending
against identity theft: Identity Guard (03/06/08) http://www.networkworld.com/newsletters/sec/2008/0303sec2.html
85. Defending
against identity theft: LifeLock (03/04/08) http://www.networkworld.com/newsletters/sec/2008/0303sec1.html
86. *Windows
Server 2008: The shape of the world to come (02/28/08) http://www.networkworld.com/newsletters/sec/2008/0225sec2.html
87. Service
management metrics significant for CSIRTs (02/26/08) http://www.networkworld.com/newsletters/sec/2008/0225sec1.html
88. *Two-factor
credit-card safety for online transactions (02/21/08) http://www.networkworld.com/newsletters/sec/2008/0218sec2.html
89. Blurred
lines: Reliability of polygraph examinations (02/19/08) http://www.networkworld.com/newsletters/sec/2008/0218sec1.html
90. Drawing
the lines: Applications of the polygraph (02/14/08) http://www.networkworld.com/newsletters/sec/2008/0211sec2.html
91. Poly want a hacker? (02/12/08) http://www.networkworld.com/newsletters/sec/2008/0211sec1.html
92. Crystal
Ball 2008 in Montreal (02/07/08) http://www.networkworld.com/newsletters/sec/2008/0204sec2.html
93. CISSP-holders
save time and money toward degree (02/05/08) http://www.networkworld.com/newsletters/sec/2008/0204sec1.html
94. Getting
CERIAS about security (01/31/08) http://www.networkworld.com/newsletters/sec/2008/0128sec2.html
95. Handbook
of Computer Networks: Another Bidgoli goldmine (01/29/08) http://www.networkworld.com/newsletters/sec/2008/0128sec1.html
96. ‘Halting
State’ a good read for security geeks (01/24/08) http://www.networkworld.com/newsletters/sec/2008/0121sec2.html
97. Identity
theft: The Shadowcrew case (01/22/08) http://www.networkworld.com/newsletters/sec/2008/0121sec1.html
98. Identity
theft is a burden on the victim (01/17/08) http://www.networkworld.com/newsletters/sec/2008/0114sec2.html
99. A new Outlook (file) (01/15/08) http://www.networkworld.com/newsletters/sec/2008/0114sec1.html
100. Controlling outbound e-mail (01/10/08) http://www.networkworld.com/newsletters/sec/2008/0107sec2.html
101. Don’t let e-mail impair productivity (01/08/08) http://www.networkworld.com/newsletters/sec/2008/0107sec1.html
102. *Bank of America authenticates via mobile phone (01/03/08) http://www.networkworld.com/newsletters/sec/2008/1231sec2.html
Intellectual property developments
in 2007. In: 2007 Year in Review,
Peltier Associates, pp 36-39. http://www.peltierassociates.com/index.php?option=com_docman&task=cat_view&gid=64&Itemid=55
Network World
Security Strategies newsletter http://www.networkworld.com/newsletters/sec/
1.
Howard Schmidt patrols cyberspace (12/20/07) http://www.networkworld.com/newsletters/sec/2007/1217sec2.html
2.
Federal News Radio spotlights security
(12/18/07) http://www.networkworld.com/newsletters/sec/2007/1217sec1.html
3. *Reducing
employee turnover: The STCC case study, Part 2 (12/13/07) http://www.networkworld.com/newsletters/sec/2007/1210sec2.html
4. *Reducing
employee turnover: The STCC case study, Part 1 (12/11/07) http://www.networkworld.com/newsletters/sec/2007/1210sec1.html
5. Podcasts
busting out at CERT/CC (12/06/07) http://www.networkworld.com/newsletters/sec/2007/1203sec2.html
6. Privaris
offers multi-use biometric token (12/04/07) http://www.networkworld.com/newsletters/sec/2007/1203sec1.html
7. Free
password generators, Part 3 (11/29/07) http://www.networkworld.com/newsletters/sec/2007/1126sec2.html
8. Free
password generators, Part 2 (11/27/07) http://www.networkworld.com/newsletters/sec/2007/1126sec1.html
9. Free
password generators, Part 1 (11/20/07) http://www.networkworld.com/newsletters/sec/2007/1119sec1.html
10. ISACA
Winnipeg’s bestseller list: Build Security In (11/15/07) http://www.networkworld.com/newsletters/sec/2007/1112sec2.html
11. *Social
engineering in penetration testing: Overload and fascination (11/13/07) http://www.networkworld.com/newsletters/sec/2007/1112sec1.html
12. *Social
engineering in penetration testing: Intimidation (11/08/07) http://www.networkworld.com/newsletters/sec/2007/1105sec2.html
13. Social
engineering in penetration testing: Postmortem (11/06/07) http://www.networkworld.com/newsletters/sec/2007/1105sec1.html
14. Social
engineering in penetration testing: Planning (11/01/07) http://www.networkworld.com/newsletters/sec/2007/1029sec2.html
15. *Social
engineering in penetration testing: Analysis (10/30/07) http://www.networkworld.com/newsletters/sec/2007/1029sec1.html
16. *Social
engineering in penetration testing: Cases (10/25/07) http://www.networkworld.com/newsletters/sec/2007/1022sec2.html
17. Incident
response: Don’t lie (10/23/07) http://www.networkworld.com/newsletters/sec/2007/1022sec1.html
18. Hidden costs of passwords. (10/18/07) http://www.networkworld.com/newsletters/sec/2007/1015sec2.html
19. Jason
Holloway’s Holy Grail (10/16/07) http://www.networkworld.com/newsletters/sec/2007/1015sec1.html
20. Password
management: Facing the problem (10/11/07) http://www.networkworld.com/newsletters/sec/2007/1008sec2.html
21. The
way we frame risks influences perception (10/09/07) http://www.networkworld.com/newsletters/sec/2007/1008sec1.html
22. Why
passwords are passé (10/04/07) http://www.networkworld.com/newsletters/sec/2007/1001sec2.html
23. ISP
liability and ‘Net neutrality: an update (10/02/07) http://www.networkworld.com/newsletters/sec/2007/1001sec1.html
24. The
Dao of Microsoft (09/27/07) http://www.networkworld.com/newsletters/sec/2007/0924sec2.html
25.
*CSIRT Management: Politics (09/25/07) http://www.networkworld.com/newsletters/sec/2007/0924sec1.html
26. *CSIRT
Management: Problem-tracking software (09/20/07) http://www.networkworld.com/newsletters/sec/2007/0917sec2.html
27.
*CSIRT Management: Triage (09/18/07) http://www.networkworld.com/newsletters/sec/2007/0917sec1.html
28. DRM
for online versions of magazines (09/13/07) http://www.networkworld.com/newsletters/sec/2007/0910sec2.html
29. Mail-order
bride scams (09/11/07) http://www.networkworld.com/newsletters/sec/2007/0910sec1.html
30. Ethical
decision-making: Principles, rights and duties, and intuitive cues (09/06/07) http://www.networkworld.com/newsletters/sec/2007/0903sec2.html
31. Ethical
decision-making: Using formal and informal guidelines (09/04/07) http://www.networkworld.com/newsletters/sec/2007/0903sec1.html
32. Ethical
decision-making: Identifying the ethical issue (08/30/07) http://www.networkworld.com/newsletters/sec/2007/0827sec2.html
33. Hacker
tips published in Wall Street Journal (08/28/07) http://www.networkworld.com/newsletters/sec/2007/0827sec1.html
34. New
CISSP concentrations (08/23/07) http://www.networkworld.com/newsletters/sec/2007/0820sec2.html
35. CISSP
certification is evolving (08/21/07) http://www.networkworld.com/newsletters/sec/2007/0820sec1.html
36. *Best
practices for online shopping, Part 2 (08/16/07) http://www.networkworld.com/newsletters/sec/2007/0813sec2.html
37. *Best
practices for online shopping, Part 1 (08/14/07) http://www.networkworld.com/newsletters/sec/2007/0813sec1.html
38. The
last ‘word’ in file recovery: Google Desktop (08/09/07) http://www.networkworld.com/newsletters/sec/2007/0806sec2.html
39. Disk
data remanence: Part 2 (0807/07) http://www.networkworld.com/newsletters/sec/2007/0806sec1.html
40. Disk
data remanence: Part 1 (08/02/07) http://www.networkworld.com/newsletters/sec/2007/0730sec2.html
41. Strengthening
defenses against cyberwar (07/31/07) http://www.networkworld.com/newsletters/sec/2007/0730sec1.html
42. How
far could cyberwar go? (07/26/07) http://www.networkworld.com/newsletters/sec/2007/0723sec2.html
43. YouSendIt
provides useful, secure transfer service (07/24/07) http://www.networkworld.com/newsletters/sec/2007/0723sec1.html
44. Yahoo
Groups support appropriate-use policies for e-mail (07/19/07) http://www.networkworld.com/newsletters/sec/2007/0716sec2.html
45. Managing
private e-mail at work (07/17/07) http://www.networkworld.com/newsletters/sec/2007/0716sec1.html
46. Security
workforce study reveals salaries, hot technologies (07/12/07) http://www.networkworld.com/newsletters/sec/2007/0709sec2.html
47. PayPal
Security Key: Two-factor authentication for $5 (07/10/07) http://www.networkworld.com/newsletters/sec/2007/0709sec1.html
48. *Talk
to upper management about security (07/05/07) http://www.networkworld.com/newsletters/sec/2007/0702sec2.html
49. New
INFOSEC workbook now online (07/03/07) http://www.networkworld.com/newsletters/sec/2007/0702sec1.html
50. Automated
harassment (06/28/07) http://www.networkworld.com/newsletters/sec/2007/0625sec2.html
51.
VAleat quantum VAlere potest (06/26/07) http://www.networkworld.com/newsletters/sec/2007/0625sec1.html
52. VAnishing
confidence (06/21/07) http://www.networkworld.com/newsletters/sec/2007/0618sec2.html
53. VAgue
promises of improvement (06/19/07) http://www.networkworld.com/newsletters/sec/2007/0618sec1.html
54. VAgaries
of wandering data (06/14/07) http://www.networkworld.com/newsletters/sec/2007/0611sec2.html
55. PIIssed
off yet? (06/12/07) http://www.networkworld.com/newsletters/sec/2007/0611sec1.html
56. CIMIP
fights identity theft (0607/07) http://www.networkworld.com/newsletters/sec/2007/0604sec2.html
57. E-tickets
for air travel by end of 2007) (06/05/07) http://www.networkworld.com/newsletters/sec/2007/0604sec1.html
58. Freedom
of speech and its consequences (05/31/07) http://www.networkworld.com/newsletters/sec/2007/0528sec2.html
59. Lack
of moderation (05/29/07) http://www.networkworld.com/newsletters/sec/2007/0528sec1.html
60. Brennan
Center provides resources for security activists (05/24/07) http://www.networkworld.com/newsletters/sec/2007/0521sec2.html
61. Identification
vs. knowledge (05/22/07) http://www.networkworld.com/newsletters/sec/2007/0521sec1.html
62. Identification
isn’t enough (05/17/07) http://www.networkworld.com/newsletters/sec/2007/0514sec2.html
63. The
debate over national ID cards (05/15/07) http://www.networkworld.com/newsletters/sec/2007/0514sec1.html
64. Secuware
Security Framework offers interesting functionality (05/10/07) http://www.networkworld.com/newsletters/sec/2007/0507sec2.html
65. Guide
to NIST security documents (05/08/07) http://www.networkworld.com/newsletters/sec/2007/0507sec1.html
66. Fair
and balanced: Enforcing security policies for workstations (05/03/07) http://www.networkworld.com/newsletters/sec/2007/0430sec2.html
67. ProCurve
Networking site has useful white papers (05/01/07) http://www.networkworld.com/newsletters/sec/2007/0430sec1.html
68. CSIRTM
resources online (04/26/07) http://www.networkworld.com/newsletters/sec/2007/0423sec2.html
69. NoticeBored
not boring (04/24/07) http://www.networkworld.com/newsletters/sec/2007/0423sec1.html
70. The
persistence of memory: free speech and career prospects (04/19/07) http://www.networkworld.com/newsletters/sec/2007/0416sec2.html
71. Free
speech and corporate policy (04/17/07) http://www.networkworld.com/newsletters/sec/2007/0416sec1.html
72. Personal
expression vs. corporate policy (04/12/07) http://www.networkworld.com/newsletters/sec/2007/0409sec2.html
73. Upcoming
(ISC)2 seminars (04/10/07) http://www.networkworld.com/newsletters/sec/2007/0409sec1.html
74. Pesky
SiteKey problems (04/05/07) http://www.networkworld.com/newsletters/sec/2007/0402sec2.html
75. SiteKey
tries to counter phishing (04/03/07) http://www.networkworld.com/newsletters/sec/2007/0402sec1.html
76. Shiftwork
and security (03/29/07) http://www.networkworld.com/newsletters/sec/2007/0326sec2.html
77. Waving
a red flag (03/27/07) http://www.networkworld.com/newsletters/sec/2007/0326sec1.html
78. The
people’s flag is deepest red (03/22/07) http://www.networkworld.com/newsletters/sec/2007/0319sec2.html
79. Proposed
rulemaking against identity theft (03/20/07) http://www.networkworld.com/newsletters/sec/2007/0319sec1.html
80. ‘Breakpoint’
echoes current news (03/15/07) http://www.networkworld.com/newsletters/sec/2007/0312sec2.html
81. *Effects
of full disclosure (03/13/07) http://www.networkworld.com/newsletters/sec/2007/0312sec1.html
82. *To
disclose or not to disclose (03/08/07) http://www.networkworld.com/newsletters/sec/2007/0305sec2.html
83. *Follow-up:
On hacker conventions, SecurityFocus and list sponsorship (03/06/07) http://www.networkworld.com/newsletters/sec/2007/0305sec1.html
84. Transgressing
the unwritten law (03/01/07) http://www.networkworld.com/newsletters/sec/2007/0226sec2.html
85. *Book
tells story of victims of cybercrime (02/27/07) http://www.networkworld.com/newsletters/sec/2007/0226sec1.html
86. CIRT
Management: Share the knowledge (02/22/07) http://www.networkworld.com/newsletters/sec/2007/0219sec2.html
87. EDPACS
archive a treasure trove (02/20/07) http://www.networkworld.com/newsletters/sec/2007/0219sec1.html
88. CIRT
Management: Continuous process improvement (02/15/07) http://www.networkworld.com/newsletters/sec/2007/0212sec2.html
89.
CIRT management: Root-cause analysis (02/13/07) http://www.networkworld.com/newsletters/sec/2007/0212sec1.html
90.
*E-mail retention policies, Part 2 (02/08/07) http://www.networkworld.com/newsletters/sec/2007/0205sec2.html
91.
*E-mail retention policies, Part 1 (02/06/07) http://www.networkworld.com/newsletters/sec/2007/0205sec1.html
92. *CIRT
management: Learning from emergencies (02/01/07) http://www.networkworld.com/newsletters/sec/2007/0129sec2.html
93. The
Net 2.0: Identity theft in Istanbul (01/30/07) http://www.networkworld.com/newsletters/sec/2007/0129sec1.html
94. Information
assurance in Beer-sheba (01/25/07) http://www.networkworld.com/newsletters/sec/2007/0122sec2.html
95. *Industrial
espionage in action (01/23/07) http://www.networkworld.com/newsletters/sec/2007/0122sec1.html
96. *A
counter-intelligence perspective (01/18/07) http://www.networkworld.com/newsletters/sec/2007/0115sec2.html
97. Preparing
for the CISSP exam, Part 4 (01/16/07) http://www.networkworld.com/newsletters/sec/2007/0115sec1.html
98. Preparing
for the CISSP exam, Part 3 (01/11/07) http://www.networkworld.com/newsletters/sec/2007/0108sec2.html
99. Preparing
for the CISSP exam, Part 2 (01/09/07) http://www.networkworld.com/newsletters/sec/2007/0108sec1.html
100. Preparing
for the CISSP exam, Part 1 (01/04/07) http://www.networkworld.com/newsletters/sec/2007/0101sec2.html
101. On
hacker conventions, SecurityFocus and list sponsorship (01/02/07) http://www.networkworld.com/newsletters/sec/2007/0101sec1.html
Intellectual property developments in 2006. In: 2006 Year in Review, Peltier Associates,
pp 28-30. (no longer available online)
Tips
for Using MS-Word http://www.mekabay.com/methodology/word_tips.pdf
Ubiquity Magazine of the
Association for Computing Machinery
·
The Net Neutrality Debate (05/23/06) http://www.acm.org/ubiquity/views/v7i20_neutrality.html
Network World Security
Strategies newsletter http://www.networkworld.com/newsletters/sec/
* indicates guest authors.
1. ALEatory
2. Cybersecurity
management, Part 4 (12/19/06) http://www.networkworld.com/newsletters/sec/2006/1218sec1.html
3. Cybersecurity
management, Part 3 (12/14/06) http://www.networkworld.com/newsletters/sec/2006/1211sec2.html
4. Cybersecurity
management, Part 2 (12/12/06) http://www.networkworld.com/newsletters/sec/2006/1211sec1.html
5. Cybersecurity
management, Part 1 (12/07/06) http://www.networkworld.com/newsletters/sec/2006/1204sec2.html
6. *Evaluate
your cyber-intelligence (12/05/06) http://www.networkworld.com/newsletters/sec/2006/1204sec1.html
7. Software,
music and movie pirates keelhauled (11/30/06) http://www.networkworld.com/newsletters/sec/2006/1127sec2.html
8. Crime
and punishment (11/28/06) http://www.networkworld.com/newsletters/sec/2006/1127sec1.html
9. CIRT
management: Avoiding burnout (11/21/06) http://www.networkworld.com/newsletters/sec/2006/1120sec1.html
10. CIRT
management: Setting the rules for triage (11/16/06) http://www.networkworld.com/newsletters/sec/2006/1113sec2.html
11. Plagiarism
outside the classroom (11/14/06) http://www.networkworld.com/newsletters/sec/2006/1113sec1.html
12. OCEG
Red Book on risk management (11/09/06) http://www.networkworld.com/newsletters/sec/2006/1106sec2.html
13. OCEG
provides valuable resources (11/07/06) http://www.networkworld.com/newsletters/sec/2006/1106sec1.html
14. Dan
Swanson on IT auditing (11/02/06) http://www.networkworld.com/newsletters/sec/2006/1030sec2.html
15. Identifying
problem Internet users (10/31/06) http://www.networkworld.com/newsletters/sec/2006/1030sec1.html
16. Metadata (10/26/06) http://www.networkworld.com/newsletters/sec/2006/1023sec2.html
17. More
on ‘Net neutrality (10/24/06) http://www.networkworld.com/newsletters/sec/2006/1023sec1.html
18. Check
out Avert Labs’ blog (10/19/06) http://www.networkworld.com/newsletters/sec/2006/1016sec2.html
19. Picking
out digital image forgeries (10/17/06) http://www.networkworld.com/newsletters/sec/2006/1016sec1.html
20. Michigan
CISO speaks online (10/12/06) http://www.networkworld.com/newsletters/sec/2006/1009sec2.html
21. Paperless
e-voting fails again (10/10/06) http://www.networkworld.com/newsletters/sec/2006/1009sec1.html
22. PSYOP
in action (10/05/06) http://www.networkworld.com/newsletters/sec/2006/1002sec2.html
23. NIST
guide to forensics in incident response (10/03/06) http://www.networkworld.com/newsletters/sec/2006/1002sec1.html
24. NIST
guidelines on cell phone forensics (09/28/06) http://www.networkworld.com/newsletters/sec/2006/0925sec2.html
25. Survey
describes state of security management (09/26/06) http://www.networkworld.com/newsletters/sec/2006/0925sec1.html
26. NIST
guide to secure Web services (09/21/06) http://www.networkworld.com/newsletters/sec/2006/0918sec2.html
27. Beware
of vicious ‘vishing’ villains (09/19/06) http://www.networkworld.com/newsletters/sec/2006/0918sec1.html
28. NIST
guide to IDP systems (09/14/06) http://www.networkworld.com/newsletters/sec/2006/0911sec2.html
29. The
Ostrich Maneuver: Burying bad news is a bad idea (09/12/06) http://www.networkworld.com/newsletters/sec/2006/0911sec1.html
30. NIST
guidelines on e-mail security (09/07/06) http://www.networkworld.com/newsletters/sec/2006/0904sec2.html
31. Legal
aspects of managing technology (08/31/06) http://www.networkworld.com/newsletters/sec/2006/0904sec1.html
32. Two
cybercrime textbooks (08/31/06) http://www.networkworld.com/newsletters/sec/2006/0828sec2.html
33. The
Thin Edge (08/29/06) http://www.networkworld.com/newsletters/sec/2006/0828sec1.html
34. Flights
of fancy (08/24/06) http://www.networkworld.com/newsletters/sec/2006/0821sec2.html
35. That
Won’t Fly: How new airplane rules could affect you (08/22/06) http://www.networkworld.com/newsletters/sec/2006/0821sec1.html
36. U.S.
OMB mandates laptop disk encryption as No. 1 precaution (08/17/06) http://www.networkworld.com/newsletters/sec/2006/0814sec2.html
37. Business
discontinuity (08/15/06) http://www.networkworld.com/newsletters/sec/2006/0814sec1.html
38. More
honored in the breach than in the breeches (08/10/06) http://www.networkworld.com/newsletters/sec/2006/0807sec2.html
39. Fighting
plagiarism (08/08/06) http://www.networkworld.com/newsletters/sec/2006/0807sec1.html
40. Ohio
University coping with information breaches (08/03/06) http://www.networkworld.com/newsletters/sec/2006/0731sec2.html
41. MS-
42. DRM-roll
for consumer privacy protection (07/27/06) http://www.networkworld.com/newsletters/sec/2006/0724sec2.html
43. ‘Sage’
advice from McAfee (07/25/06) http://www.networkworld.com/newsletters/sec/2006/0724sec1.html
44. The
eyes have it (07/20/06) http://www.networkworld.com/newsletters/sec/2006/0717sec2.html
45. Tips
for implementing encryption on stored data (07/18/06) http://www.networkworld.com/newsletters/sec/2006/0717sec1.html
46.
47. Follow
the rules - unless you shouldn’t follow the rules (07/11/06) http://www.networkworld.com/newsletters/sec/2006/0710sec1.html
48. Excel
helpers can damage data (07/06/06) http://www.networkworld.com/newsletters/sec/2006/0703sec2.html
49.
50. Control
visible distribution lists in e-mail (06/27/06) http://www.networkworld.com/newsletters/sec/2006/0626sec1.html
51. Production
spreadsheets can cause problems (06/22/06) http://www.networkworld.com/newsletters/sec/2006/0619sec2.html
52. The
computer said so: Credulity vs. credibility (06/20/06) http://www.networkworld.com/newsletters/sec/2006/0619sec1.html
53. GAO
slams FCC on junk fax processing (06/15/06) http://www.networkworld.com/newsletters/sec/2006/0612sec2.html
54. DHCP
is a core technology for network access control (06/13/06) http://www.networkworld.com/newsletters/sec/2006/0612sec1.html
55. Leaky
BlackBerry spills the juice (06/08/06) http://www.networkworld.com/newsletters/sec/2006/0605sec2.html
56. Unexpected
consequences of HIPAA (06/06/06) http://www.networkworld.com/newsletters/sec/2006/0605sec1.html
57. Unsubscribing
not so easy (06/01/06) http://www.networkworld.com/newsletters/sec/2006/0529sec2.html
58. Wandering
laptops should teach lessons (05/30/06) http://www.networkworld.com/newsletters/sec/2006/0529sec1.html
59. Interpersonal
relations matter (05/25/06) http://www.networkworld.com/newsletters/sec/2006/0522sec2.html
60. Standards
can help in communicating security issues to executives (05/23/06) http://www.networkworld.com/newsletters/sec/2006/0522sec1.html
61. Encrypting
backups to avoid disasters (05/18/06) http://www.networkworld.com/newsletters/sec/2006/0515sec2.html
62. Privacy
conference: Schneier comes to Vermont (05/16/06) http://www.networkworld.com/newsletters/sec/2006/0515sec1.html
63. Postal
inspectors provide valuable fraud awareness resources (05/11/06) http://www.networkworld.com/newsletters/sec/2006/0508sec2.html
64.
65.
66. Not
TEOTIAWKI (05/02/06) http://www.networkworld.com/newsletters/sec/2006/0501sec1.html
67. ‘Net
neutrality debate heats up (04/27/06) http://www.networkworld.com/newsletters/sec/2006/0424sec2.html
68. Web-site
security Web site (04/25/06) http://www.networkworld.com/newsletters/sec/2006/0424sec1.html
69. BCI
offers useful guidance (04/20/06) http://www.networkworld.com/newsletters/sec/2006/0417sec2.html
70. Non-independent
errors (04/18/06) http://www.networkworld.com/newsletters/sec/2006/0417sec1.html
71. New
security handbook impressive (04/13/06) http://www.networkworld.com/newsletters/sec/2006/0410sec2.html
72. MS-
73. Siemens
resources for security educators (04/06/06) http://www.networkworld.com/newsletters/sec/2006/0403sec2.html
74. Take
responsibility (04/04/06) http://www.networkworld.com/newsletters/sec/2006/0403sec1.html
75. When
security procedures yield nothing but an illusion (03/30/06) http://www.networkworld.com/newsletters/sec/2006/0327sec2.html
76. Bill
addresses consumer privacy protection (03/28/06) http://www.networkworld.com/newsletters/sec/2006/0327sec1.html
77. *The
problem with compliance, Part 2 (03/23/06) http://www.networkworld.com/newsletters/sec/2006/0327sec1.html
78. *The
problem with compliance, Part 1 (03/21/06) http://www.networkworld.com/newsletters/sec/2006/0320sec1.html
79. Dangers
of in-flight cell phone use (03/16/06) http://www.networkworld.com/newsletters/sec/2006/0313sec2.html
80. Google
Desktop raises security questions (03/14/06) http://www.networkworld.com/newsletters/sec/2006/0313sec1.html
81. *HTTP
referrer header opens door to abuse (03/09/06) http://www.networkworld.com/newsletters/sec/2006/0306sec2.html
82. Non-competition
agreements, Part 2 (03/07/06) http://www.networkworld.com/newsletters/sec/2006/0306sec1.html
83. Non-competition
agreements, Part 1 (03/02/06) http://www.networkworld.com/newsletters/sec/2006/0227sec2.html
84. New
from NUJIA (02/28/06) http://www.networkworld.com/newsletters/sec/2006/0227sec1.html
85. Student
security videos deserve awards (02/23/06) http://www.networkworld.com/newsletters/sec/2006/0220sec2.html
86. It’s
hard to determine the ROI of information security measures (02/21/06) http://www.networkworld.com/newsletters/sec/2006/0220sec1.html
87. Baseline
Security Manual 2004 (02/16/06) http://www.networkworld.com/newsletters/sec/2006/0213sec2.html
88. Book
details deception techniques and countermeasures (02/14/06) http://www.networkworld.com/newsletters/sec/2006/0213sec1.html
89. Secure
your mainframes, too (02/09/06) http://www.networkworld.com/newsletters/sec/2006/0206sec2.html
90.
91. Egoless
work (02/02/06) http://www.networkworld.com/newsletters/sec/2006/0130sec2.html
92. Cisco
ASA 5500 has value (01/31/06) http://www.networkworld.com/newsletters/sec/2006/0130sec1.html
93. Penetration
cases show need for response plans (01/26/06) http://www.networkworld.com/newsletters/sec/2006/0123sec2.html
94. Many
unauthorized disclosures in 2005 (01/24/06) http://www.networkworld.com/newsletters/sec/2006/0123sec1.html
95. U.S.
critical infrastructure needs improved security (01/19/06) http://www.networkworld.com/newsletters/sec/2006/0116sec2.html
96. Security
database updated (01/17/06) http://www.networkworld.com/newsletters/sec/2006/0116sec1.html
97. AI-yai-AI!
Smarter Viruses! (01/12/06) http://www.networkworld.com/newsletters/sec/2006/0109sec2.html
98. Lost
data all over the news in 2005 (01/10/06) http://www.networkworld.com/newsletters/sec/2006/0109sec1.html
99. The
miracle of the apostrophes (01/05/06) http://www.networkworld.com/newsletters/sec/2006/0102sec2.html
100. Online
Windows and Office raise security issues (01/03/06) http://www.networkworld.com/newsletters/sec/2006/0102sec1.html
Improving
information assurance education key to improving security management. J.
Network & Systems Management (online, by subscription only) Sept 2005. Table
of Contents < http://www.sce.umkc.edu/jnsm/vols/vol13n3.html >
Ubiquity Magazine of the
Association for Computing Machinery
Some
notes on malware. (08/16/05) http://www.acm.org/ubiquity/views/v6i30_kabay.html
Network World
Fusion Security Newsletter http://www.networkworld.com/newsletters/sec/
* indicates guest authors.
1. Policies
for external links (12/22/05) http://www.networkworld.com/newsletters/sec/2005/1219sec2.html
2. Internet
links pose image and legal problems (12/20/05) http://www.networkworld.com/newsletters/sec/2005/1219sec1.html
3. Intranet
links to Internet servers pose risks (12/15/05) http://www.networkworld.com/newsletters/sec/2005/1212sec2.html
4. *The
Business Continuity Institute (12/13/05) http://www.networkworld.com/newsletters/sec/2005/1212sec1.html
5. False
FBI accusation carries Sober worm (12/08/05) http://www.networkworld.com/newsletters/sec/2005/1205sec2.html
6. *Is
Cisco’s ASA a headache-in-waiting? (12/06/05) http://www.networkworld.com/newsletters/sec/2005/1205sec1.html
7. Managing
the CIRT: Professionalism (12/01/05) http://www.networkworld.com/newsletters/sec/2005/1128sec2.html
8. Synchronizing
computers, Part 4: SyncToy (11/29/05) http://www.networkworld.com/newsletters/sec/2005/1128sec1.html
9. Sambaza:
New e-currency in East Africa (11/22/05) http://www.networkworld.com/newsletters/sec/2005/1121sec1.html
10. *Synchronizing
computers, Part 3: iFolder (11/15/05) http://www.networkworld.com/newsletters/sec/2005/1114sec1.html
11. Industrial
espionage, Part 8: China and Titan Rain (11/10/05) http://www.networkworld.com/newsletters/sec/2005/1107sec2.html
12. Synchronizing
computers, Part 2: BeInSync (11/08/05) http://www.networkworld.com/newsletters/sec/2005/1107sec1.html
13. Industrial
espionage, Part 7: More cases (11/03/05) http://www.networkworld.com/newsletters/sec/2005/1031sec2.html
14. Synchronizing
computers, Part 1: Laplink (11/01/05) http://www.networkworld.com/newsletters/sec/2005/1031sec1.html
15. Industrial
espionage, Part 6: Cases (10/27/05) http://www.networkworld.com/newsletters/sec/2005/1024sec2.html
16. *The
danger of relying solely on Active Directory for backups (10/25/05) http://www.networkworld.com/newsletters/sec/2005/1024sec1.html
17. Industrial
espionage, Part 5: People from many countries targeting U.S. (10/20/05) http://www.networkworld.com/newsletters/sec/2005/1017sec2.html
18. TinyURLs:
a matter of trust (10/18/05) http://www.networkworld.com/newsletters/sec/2005/1017sec1.html
19. Industrial
espionage, Part 4: Risk factors and losses (10/13/05) http://www.networkworld.com/newsletters/sec/2005/1010sec2.html
20. CallingID
fights Web fraud (10/11/05) http://www.networkworld.com/newsletters/sec/2005/1010sec1.html
21. Industrial
espionage, Part 3: Survey results (10/06/05) http://www.networkworld.com/newsletters/sec/2005/1003sec2.html
22. A
good little black book (10/04/05) http://www.networkworld.com/newsletters/sec/2005/1003sec1.html
23. Industrial
espionage, Part 2: More methods (09/29/05) http://www.networkworld.com/newsletters/sec/2005/0926sec2.html
24. Fight
Katrina frauds (09/27/05) http://www.networkworld.com/newsletters/sec/2005/0926sec1.html
25. Industrial
espionage, Part 1: Methods (09/22/05) http://www.networkworld.com/newsletters/sec/2005/0919sec2.html
26. Nuclear
security internship at PNNL (09/20/05) http://www.networkworld.com/newsletters/sec/2005/0919sec1.html
27. NIST
has busy season (09/15/05) http://www.networkworld.com/newsletters/sec/2005/0912sec2.html
28. Survey
takes on security best practices (09/13/05) http://www.networkworld.com/newsletters/sec/2005/0912sec1.html
29. InfraGard
is not a deodorant (09/08/05) http://www.networkworld.com/newsletters/sec/2005/0905sec2.html
30. In
defense of privacy (09/06/05) http://www.networkworld.com/newsletters/sec/2005/0905sec1.html
31. Junk
fax not what it seems, Part 2 (09/01/05) http://www.networkworld.com/newsletters/sec/2005/0829sec2.html
32. Junk
fax not what it seems, Part 1 (08/30/05) http://www.networkworld.com/newsletters/sec/2005/0829sec2.html
33. How
to communicate user IDs and passwords (08/25/05) http://www.networkworld.com/newsletters/sec/2005/0822sec2.html
34. Security
applications for ‘smart dust’ (08/23/05) http://www.networkworld.com/newsletters/sec/2005/0822sec1.html
35. Long-term
perspective: 200-year software (08/18/05) http://www.networkworld.com/newsletters/sec/2005/0815sec2.html
36. E-mail
disclaimer stimulates expletives (08/16/05) http://www.networkworld.com/newsletters/sec/2005/0815sec1.html
37. Passports
as a security measure (08/11/05) http://www.networkworld.com/newsletters/sec/2005/0808sec2.html
38. Lend
me your ears (08/09/05) http://www.networkworld.com/newsletters/sec/2005/0808sec1.html
39. Security
periodicals written by experts (08/04/05) http://www.networkworld.com/newsletters/sec/2005/0801sec2.html
40. In
e-mail, first impressions stick (08/02/05) http://www.networkworld.com/newsletters/sec/2005/0801sec1.html
41. Two
simple ways to improve utility and confidentiality of e-mail (07/28/05) http://www.networkworld.com/newsletters/sec/2005/0725sec2.html
42. Use
TinyURL links with care (07/26/05) http://www.networkworld.com/newsletters/sec/2005/0725sec1.html
43. Crosswalk
hacking and more from BBspot (07/21/05) http://www.networkworld.com/newsletters/sec/2005/0718sec2.html
44. Thesis
spells out threats to VoIP (07/19/05) http://www.networkworld.com/newsletters/sec/2005/0718sec1.html
45. VoIP
books and white papers (07/14/05) http://www.networkworld.com/newsletters/sec/2005/0711sec2.html
46. NIST
reports on VoIP security (07/12/05) http://www.networkworld.com/newsletters/sec/2005/0711sec1.html
47. The
Persistence of Memory (07/07/05) http://www.networkworld.com/newsletters/sec/2005/0704sec2.html
48. *Spotting
outliers is elementary (07/05/05) http://www.networkworld.com/newsletters/sec/2005/0704sec1.html
49. Securing
the CIRT: Walk the talk (06/30/05) http://www.networkworld.com/newsletters/sec/2005/0627sec2.html
50. *Watch
out for this eBay fraud technique (06/28/05) http://www.networkworld.com/newsletters/sec/2005/0627sec1.html
51. Testing
security awareness can be fun (06/23/05) http://www.networkworld.com/newsletters/sec/2005/0620sec2.html
52.
53. CAPTCHAs
look to separate humans from bots (06/16/05) http://www.networkworld.com/newsletters/sec/2005/0613sec2.html
54. Use
common sense when it comes to outliers (06/14/05) http://www.networkworld.com/newsletters/sec/2005/0613sec1.html
55. Cell
phones for spies (06/09/05) http://www.networkworld.com/newsletters/sec/2005/0606sec2.html
56. Wireless
perils are nothing new (06/07/05) http://www.networkworld.com/newsletters/sec/2005/0606sec1.html
57. Information
security cannot stand alone (06/02/05) http://www.networkworld.com/newsletters/sec/2005/0530sec2.html
58. Newsletter
points to European perspectives (05/31/05) http://www.networkworld.com/newsletters/sec/2005/0530sec1.html
59. Gary
Kessler’s Web site a treasure trove (05/26/05) http://www.networkworld.com/newsletters/sec/2005/0523sec2.html
60. Panko’s
book offers valuable resources (05/24/05) http://www.networkworld.com/newsletters/sec/2005/0523sec1.html
61. Reward
smarter password choices (05/19/05) http://www.networkworld.com/newsletters/sec/2005/0516sec2.html
62. How
to enrage hotline callers, Part 2 (05/17/05 ) http://www.networkworld.com/newsletters/sec/2005/0516sec1.html
63. How
to enrage hotline callers, Part 1 (05/12/05 ) http://www.networkworld.com/newsletters/sec/2005/0509sec2.html
64. CIRT
management: The telephone hotline (05/10/05 ) http://www.networkworld.com/newsletters/sec/2005/0509sec1.html
65. Recipients’
security concerns can foil document formatting attempts (05/05/05 ) http://www.networkworld.com/newsletters/sec/2005/0502sec2.html
66. Random
paper generator fools conference organizers (05/03/05 ) http://www.networkworld.com/newsletters/sec/2005/0502sec1.html
67. U.S.
gov’t work on ID cards could be useful for private sector (04/28/05 ) http://www.networkworld.com/newsletters/sec/2005/0425sec2.html
68. How
to handle bad news (04/26/05 ) http://www.networkworld.com/newsletters/sec/2005/0425sec1.html
69. The
right way to make widespread system changes (04/21/05) http://www.networkworld.com/newsletters/sec/2005/0418sec2.html
70. How
to overcome upper-management resistance (04/19/05) http://www.networkworld.com/newsletters/sec/2005/0418sec1.html
71. Report
highlights cyber security issues (04/14/05) http://www.networkworld.com/newsletters/sec/2005/0411sec2.html
72.
73. Another
take on privacy (04/07/05) http://www.networkworld.com/newsletters/sec/2005/0404sec2.html
74. Ethics
in security policy (04/05/05) http://www.networkworld.com/newsletters/sec/2005/0404sec1.html
75. (ISC)2
offers range of certifications (03/31/05) http://www.networkworld.com/newsletters/sec/2005/0328sec2.html
76. Schneier’s
Crypto-Gram always informative (03/29/05) http://www.networkworld.com/newsletters/sec/2005/0328sec1.html
77. Controlling
78. Stealth
mode utilities, Part 3 (03/22/05) http://www.networkworld.com/newsletters/sec/2005/0321sec1.html
79. Stealth
mode utilities, Part 2 (03/17/05) http://www.networkworld.com/newsletters/sec/2005/0314sec2.html
80. Stealth
mode utilities, Part 1 (03/15/05) http://www.networkworld.com/newsletters/sec/2005/0314sec1.html
81. Monty
Python alum promotes data backups (03/10/05) http://www.networkworld.com/newsletters/sec/2005/0307sec2.html
82. *Understand
the business case for security (03/08/05) http://www.networkworld.com/newsletters/sec/2005/0307sec1.html
83. An
unwanted RAID conversion (03/03/05) http://www.networkworld.com/newsletters/sec/2005/0228sec2.html
84.
85. Applications
of biometric flash drives (02/24/05) http://www.networkworld.com/newsletters/sec/2005/0221sec2.html
86. Biometric
flash drive is convenient and secure (02/22/05) http://www.networkworld.com/newsletters/sec/2005/0221sec1.html
87. Personal
links not a technical problem, Part 2 (02/17/05) http://www.networkworld.com/newsletters/sec/2005/0214sec2.html
88. Personal
links not a technical problem, Part 1 (02/15/05) http://www.networkworld.com/newsletters/sec/2005/0214sec1.html
89. ITIL
offers help for network operations management (02/10/05) http://www.networkworld.com/newsletters/sec/2005/0207sec2.html
90. New
course, publication from Norwich University (02/08/05) http://www.networkworld.com/newsletters/sec/2005/0207sec1.html
91. See
Ya at FISSEA (02/03/05) http://www.networkworld.com/newsletters/sec/2005/0131sec2.html
92. A
spyware record? (02/01/05) http://www.networkworld.com/newsletters/sec/2005/0131sec1.html
93. Yahoo’s
improved toolbar (01/27/05) http://www.networkworld.com/newsletters/sec/2005/0124sec2.html