PUBLICATIONS

Michel E. Kabay, PhD, CISSP-ISSMP

2009

Bosworth, S., M. E. Kabay, & E. Whyne (2009), editors. Computer Security Handbook, 5th Edition. Wiley (ISBN 0-471-71652-9). Two volumes; 2040 pp. Index.

 

Chapters:

2.            Kabay, M. E.: History of Computer Crime

10.          Kabay, M. E.: Understanding Studies and Surveys of Computer Crime

15.          Cobb, C., S. Cobb & M. E. Kabay: Penetrating Systems and Networks

38.          Nichols, L. E., M. E. Kabay, & T. Braithwaite: Writing Secure Code

44.          Kabay, M. E. & B. Robertson: Security Policy Guidelines

47.          Kabay, M. E., D. Holden & Myles Walsh: Operations Security and Production Controls

48.          Kabay, M. E. & N. Takacs: E-Mail and Internet Use Policies

50.          Kabay, M. E., B. Robertson, M. Akella & D. T. Lang: Using Social Psychology to Implement Security Policies

56.          Miora, M., M. E. Kabay & B. Cowens: Computer Security Incident Response Teams

57.          Kabay, M. E. & D. Holden: Data Backups and Archives

63.          Hallberg, C., M. E. Kabay, B. Robertson & A. Hutt: Management Responsibilities and Liabilities

66.          Kabay, M. E. & S. Kelley: Developing Security Policies

70.          Kabay, M. E., E. Salveggio & R. Guess: Anonymity and Identity in Cyberspace

74.          Christian, C., M. E. Kabay, K. Henry & S. Schneider: Professional Certification and Training in Information Assurance

 

Network World Security Strategies newsletter http://www.networkworld.com/newsletters/sec/

There are usually 8-10 articles in press at any time. These columns have ~55,000 subscribers (Oct 2008). * indicates collaboration with guest authors.

1.      Internet addiction in China: Some teens harshly treated (12/23/09) http://www.networkworld.com/newsletters/sec/2009/122109sec2.html

2.      Debate over Internet "Addiction" (12/21/09) http://www.networkworld.com/newsletters/sec/2009/122109sec1.html

3.      Internet habit? Dependency? Addiction? Pop psychology? (12/16/09) http://www.networkworld.com/newsletters/sec/2009/121409sec2.html

4.      Traveling to dictatorships (12/14/09) http://www.networkworld.com/newsletters/sec/2009/121409sec1.html

5.      H4ck3rs are people too: Film review (12/09/09) http://www.networkworld.com/newsletters/sec/2009/120709sec2.html

6.      The Fruit of the Poisoned Tree  (12/07/09) http://www.networkworld.com/newsletters/sec/2009/120709sec1.html

7.      Why Criminal Hackers Must Not Be Rewarded (12/02/09) http://www.networkworld.com/newsletters/sec/2009/113009sec2.html

8.      *SANS official talks security (11/30/09) http://www.networkworld.com/newsletters/sec/2009/113009sec1.html

9.      *Information security and business strategy Part 1  (11/23/09) http://www.networkworld.com/newsletters/sec/2009/112309sec1.html

10.    Advice to beginners (11/18/09) http://www.networkworld.com/newsletters/sec/2009/111609sec2.html

11.    A different kind of antiviral donation for Africa (11/16/09) http://www.networkworld.com/newsletters/sec/2009/111609sec1.html

12.    IA job prospects bright (11/11/09) http://www.networkworld.com/newsletters/sec/2009/110909sec2.html

13.    Detailing contingency planning (11/09/09) http://www.networkworld.com/newsletters/sec/2009/110909sec1.html

14.    *SP 800-53 is essential for security in federal government IT systems (11/04/09) http://www.networkworld.com/newsletters/sec/2009/110209sec2.html

15.    *Extensive Catalog Provides Security Controls for Contemporary Security Requirements  (11/02/09) http://www.networkworld.com/newsletters/sec/2009/110209sec1.html

16.    *NIST SP800-53 Rev. 3: Risk Management Framework Underpins the Security Life Cycle  (10/28/09) http://www.networkworld.com/newsletters/sec/2009/102609sec2.html

17.    *NIST SP800-53 Rev. 3: Key to Unified Security Across Federal Government and Private Sectors (10/26/09) http://www.networkworld.com/newsletters/sec/2009/102609sec1.html

18.    Understanding and implementing information security metrics (10/21/09) http://www.networkworld.com/newsletters/sec/2009/101909sec2.html

19.    *Hiring hackers: A rebuttal (part 2) (10/19/09) http://www.networkworld.com/newsletters/sec/2009/101909sec1.html

20.    *Hiring hackers: A Rebuttal (part 1) (10/14/09) http://www.networkworld.com/newsletters/sec/2009/101209sec2.html

21.    Data-theft Trojans and the changing face of the Web (10/12/09) http://www.networkworld.com/newsletters/sec/2009/101209sec1.html

22.    *The Norm Coleman Web crash and full disclosure (2)  (10/07/09) http://www.networkworld.com/newsletters/sec/2009/100509sec2.html

23.    *The Norm Coleman Web crash and full disclosure (1)  (10/05/09) http://www.networkworld.com/newsletters/sec/2009/100509sec1.html

24.    Applying the science of persuasion to security awareness (09/30/09) http://www.networkworld.com/newsletters/sec/2009/092809sec2.html

25.    *The IA Professional's Toolkit Part 7 (09/28/09) http://www.networkworld.com/newsletters/sec/2009/092809sec1.html

26.    *The IA Professional's Toolkit Part 6 (09/23/09)  http://www.networkworld.com/newsletters/sec/2009/092109sec2.html

27.    *The IA Professional's Toolkit Part 5 (09/21/09)  http://www.networkworld.com/newsletters/sec/2009/092109sec1.html

28.    *The IA Professional's Toolkit Part 4 (09/16/09)  http://www.networkworld.com/newsletters/sec/2009/091409sec2.html

29.    *The IA Professional's Toolkit Part 3 (09/14/09)  http://www.networkworld.com/newsletters/sec/2009/091409sec1.html

30.    *The IA Professional's Toolkit Part 2 (09/09/09)  http://www.networkworld.com/newsletters/sec/2009/090709sec2.html

31.    *The IA Professional's Toolkit Part 1 (09/07/09)  http://www.networkworld.com/newsletters/sec/2009/090709sec1.html

32.    Pseudonymous critic impugns integrity of all security professionals (09/02/09)  http://www.networkworld.com/newsletters/sec/2009/083109sec2.html

33.    Identity Theft Resource Center Part 2 (08/31/09)  http://www.networkworld.com/newsletters/sec/2009/083109sec1.html

34.    Identity theft resource center (08/26/09)  http://www.networkworld.com/newsletters/sec/2009/082409sec2.html

35.    *IA Policies Part 2 (08/24/09)  http://www.networkworld.com/newsletters/sec/2009/082409sec1.html

36.    *IA policies (part 1) (08/19/09)  http://www.networkworld.com/newsletters/sec/2009/081709sec2.html

37.    Hiring hackers (part 2) (08/17/09)  http://www.networkworld.com/newsletters/sec/2009/081709sec1.html

38.    Hiring hackers (part 1) (08/12/09)  http://www.networkworld.com/newsletters/sec/2009/081009sec2.html

39.    *Case studies in working with law enforcement (part 2) (08/10/09)  http://www.networkworld.com/newsletters/sec/2009/081009sec1.html

40.    *Case studies in working with law enforcement (Part 1) (08/05/09)  http://www.networkworld.com/newsletters/sec/2009/080309sec2.html

41.    Crisis communications: A primer for teams (part 2) (08/03/09)  http://www.networkworld.com/newsletters/sec/2009/080309sec1.html

42.    Crisis communications: A primer for teams (Part 1) (07/29/09)  http://www.networkworld.com/newsletters/sec/2009/072709sec2.html

43.    Preparing for the next solar max (07/27/09)  http://www.networkworld.com/newsletters/sec/2009/072709sec1.html

44.    Solar storms have caused serious disruptions (07/22/09)  http://www.networkworld.com/newsletters/sec/2009/072009sec2.html

45.    Solar storms are more than a curiosity (07/17/09)  http://www.networkworld.com/newsletters/sec/2009/072009sec1.html

46.    CSH5 discussion group opens for business (07/15/09)  http://www.networkworld.com/newsletters/sec/2009/071309sec2.html

47.    Reality trumps theory (07/13/09)  http://www.networkworld.com/newsletters/sec/2009/071309sec1.html

48.    AMiloration of security: Milo and future hacking (07/08/09)  http://www.networkworld.com/newsletters/sec/2009/070609sec2.html

49.    *CSIRT Management: Lessons from Other Group Postmortems (Part 2) (07/06/09)  http://www.networkworld.com/newsletters/sec/2009/070609sec1.html

50.    *CSIRT Management: Lessons from other group postmortems (07/01/09)  http://www.networkworld.com/newsletters/sec/2009/062909sec2.html

51.    Iran, disintermediation and cyberwar (06/29/09)  http://www.networkworld.com/newsletters/sec/2009/062909sec1.html

52.    Subtle pressures for security policy compliance (06/24/09)  http://www.networkworld.com/newsletters/sec/2009/062209sec2.html

53.    Working with consultants, part 4 (06/22/09)  http://www.networkworld.com/newsletters/sec/2009/062209sec1.html

54.    Working with consultants, part 3 (06/17/09)  http://www.networkworld.com/newsletters/sec/2009/061509sec2.html

55.    Working with consultants, part 2 (06/15/09)  http://www.networkworld.com/newsletters/sec/2009/061509sec1.html

56.    Working with consultants (06/10/09)  http://www.networkworld.com/newsletters/sec/2009/060809sec2.html

57.    Consensus metrics for information security (06/08/09)  http://www.networkworld.com/newsletters/sec/2009/060809sec1.html

58.    Quality control, data integrity, and the silly season (06/03/09)  http://www.networkworld.com/newsletters/sec/2009/060109sec2.html

59.    Dr. Johnston's Security Maxims: Sense and Humor (06/01/09)  http://www.networkworld.com/newsletters/sec/2009/060109sec1.html

60.    Security metrics research (05/27/09) http://www.networkworld.com/newsletters/sec/2009/052509sec2.html

61.    Phishing using scary bait (05/22/09) http://www.networkworld.com/newsletters/sec/2009/052509sec1.html

62.    *iPhone Security, Part 2 (05/20/09) http://www.networkworld.com/newsletters/sec/2009/051809sec2.html

63.    *iPhone security, Part 1 (05/19/09) http://www.networkworld.com/newsletters/sec/2009/051809sec1.html

64.    *Implications of proposed Cybersecurity Act of 2009, Part 2 (05/13/09) http://www.networkworld.com/newsletters/sec/2009/051109sec2.html

65.    *Implications of proposed Cybersecurity Act of 2009, Part 1 (05/11/09) http://www.networkworld.com/newsletters/sec/2009/051109sec1.html

66.    *Increasing Internet security for average users (05/07/09) http://www.networkworld.com/newsletters/sec/2009/050409sec2.html

67.    IA career development: Need for IA professionals will grow (05/05/09) http://www.networkworld.com/newsletters/sec/2009/050409sec1.html

68.    Locking out users gives attackers a tool for denial of service (04/30/09) http://www.networkworld.com/newsletters/sec/2009/042709sec2.html

69.    Guide to enterprise password management drafted (04/28/09) http://www.networkworld.com/newsletters/sec/2009/042709sec1.html

70.    *Flaws in 'Internet SAFETY' bill (04/23/09) http://www.networkworld.com/newsletters/sec/2009/042009sec2.html

71.    The state of spam 2009, Part 4 (04/21/09) http://www.networkworld.com/newsletters/sec/2009/042009sec1.html

72.    The state of spam 2009, Part 3 (04/16/09) http://www.networkworld.com/newsletters/sec/2009/041309sec2.html

73.    The state of spam 2009, Part 2 (04/14/09) http://www.networkworld.com/newsletters/sec/2009/041309sec1.html

74.    The state of spam 2009, Part 1 (04/09/09) http://www.networkworld.com/newsletters/sec/2009/040609sec2.html

75.    Chinese information warfare capabilities (04/07/09) http://www.networkworld.com/newsletters/sec/2009/040609sec1.html

76.    2008 was not a good year (04/02/09) http://www.networkworld.com/newsletters/sec/2009/033009sec2.html

77.    Accreditation for IA-related Web sites (03/31/09) http://www.networkworld.com/newsletters/sec/2009/033009sec1.html

78.    *Cold-boot attacks: The 'frozen cache' approach (03/26/09) http://www.networkworld.com/newsletters/sec/2009/032309sec2.html

79.    *Cold-boot attacks change the data leakage landscape (03/24/09) http://www.networkworld.com/newsletters/sec/2009/032309sec1.html

80.    As happy as a rock star in a pig pen (03/19/09) http://www.networkworld.com/newsletters/sec/2009/031609sec2.html

81.    Kraken the botnet: The ethics of counter-hacking (03/17/09) http://www.networkworld.com/newsletters/sec/2009/031609sec1.html

82.    Online auctions: Caveat Mercator Venditorque (03/12/09) http://www.networkworld.com/newsletters/sec/2009/030909sec2.html

83.    Trademarks as keywords for targeted ads? (03/10/09) http://www.networkworld.com/newsletters/sec/2009/030909sec1.html

84.    *The Internet Protectors (03/05/09) http://www.networkworld.com/newsletters/sec/2009/030209sec2.html

85.    Computer Security Handbook Fifth Edition is ready (03/03/09) http://www.networkworld.com/newsletters/sec/2009/030209sec1.html

86.    Bluetooth is not a dental condition (02/26/09) http://www.networkworld.com/newsletters/sec/2009/030209sec1.html

87.    Cell phone security (02/24/09) http://www.networkworld.com/newsletters/sec/2009/022309sec1.html

88.    Guidelines for securing IEEE 802.11i wireless networks (02/19/09) http://www.networkworld.com/newsletters/sec/2009/021609sec2.html

89.    The Habit: or There and Back Again to the NISTy Mountains (02/17/09) http://www.networkworld.com/newsletters/sec/2009/021609sec1.html

90.    NSA identifies top 25 programming errors (02/12/09) http://www.networkworld.com/newsletters/sec/2009/020909sec2.html

91.    *Is compliance with standards achieving the goal of protecting data? (02/10/09) http://www.networkworld.com/newsletters/sec/2009/020909sec1.html

92.    Confounded nonsense (02/05/09) http://www.networkworld.com/newsletters/sec/2009/020209sec2.html

93.    Linux Defenders organize to fight patent trolls (02/03/09) http://www.networkworld.com/newsletters/sec/2009/020209sec1.html

94.    *Information security and the outsider, Part 2 (01/29/09) http://www.networkworld.com/newsletters/sec/2009/012609sec2.html

95.     *Information security and the outsider, Part 1 (01/27/09) http://www.networkworld.com/newsletters/sec/2009/012609sec1.html

96.     Don’t just talk about security - do something! (01/22/09) http://www.networkworld.com/newsletters/sec/2009/011909sec2.html

97.     Users don’t get it (but it’s human nature)  (01/20/09) http://www.networkworld.com/newsletters/sec/2009/011909sec1.html

98.     Avoid conflicts over intellectual property  (01/15/09) http://www.networkworld.com/newsletters/sec/2009/011209sec2.html

99.     MITRE offers recommendation-tracker software and free one-day course (01/13/09) http://www.networkworld.com/newsletters/sec/2009/011209sec1.html

100.  Surfing brain waves: fMRI for lie detection  (01/08/09) http://www.networkworld.com/newsletters/sec/2009/010509sec2.html

101.  Abiding by the law: Blueport vs. U.S.  (01/06/09) http://www.networkworld.com/newsletters/sec/2009/010509sec1.html

 

2008

Brief History of Computer Crime. http://www.mekabay.com/opsmgmt/facilities_security.pdf

Facilities Security: How to protect your site against attacks and damage. http://www.mekabay.com/opsmgmt/facilities_security.pdf

Network World Security Strategies newsletter http://www.networkworld.com/newsletters/sec/

* indicates collaboration with guest authors.

1.      Cornell a LIIder in cyberlaw resources (12/18/08) http://www.networkworld.com/newsletters/sec/2008/121508sec2.html

2.       Pay attention to cyberlaw (12/16/08) http://www.networkworld.com/newsletters/sec/2008/121508sec1.html

3.       Technicalinfo.net has good resources (12/11/08) http://www.networkworld.com/newsletters/sec/2008/120808sec2.html

4.       Great expectations for managing cybersecurity resources (12/09/08) http://www.networkworld.com/newsletters/sec/2008/120808sec1.html

5.       Visible Ops Security, Phase 4 (12/04/08) http://www.networkworld.com/newsletters/sec/2008/120108sec2.html

6.       Visible Ops Security, Phase 3 (12/02/08) http://www.networkworld.com/newsletters/sec/2008/120108sec1.html

7.       Visible Ops Security, Phase 2 (11/25/08) http://www.networkworld.com/newsletters/sec/2008/112408sec1.html

8.      Visible Ops Security, Phase 1 (11/20/08) http://www.networkworld.com/newsletters/sec/2008/111708sec2.html

9.      Introducing Visible Ops Security (11/18/08) http://www.networkworld.com/newsletters/sec/2008/111708sec1.html

10.    Visible Ops Handbook (11/13/08) http://www.networkworld.com/newsletters/sec/2008/111008sec2.html

11.    Swiss mix: Useful copyright resource (11/11/08) http://www.networkworld.com/newsletters/sec/2008/111008sec1.html

12.    New Web site and files for readers (11/06/08) http://www.networkworld.com/newsletters/sec/2008/110308sec2.html

13.    ‘Zero Day Threat’: Deep analysis + fun = excellent read (11/04/08) http://www.networkworld.com/newsletters/sec/2008/110308sec1.html

14.    *Copyright infringement and the CISSP, Part 2 (10/30/08) http://www.networkworld.com/newsletters/sec/2008/102708sec2.html

15.    *Copyright infringement and the CISSP, Part 1 (10/28/08) http://www.networkworld.com/newsletters/sec/2008/102708sec1.html

16.    Arrogance or efficiency? Why Microsoft redesigned the Office user interface, Part 4 (10/23/08) http://www.networkworld.com/newsletters/sec/2008/102008sec2.html

17.    Arrogance or efficiency? Why Microsoft redesigned the Office user interface, Part 3 (10/21/08) http://www.networkworld.com/newsletters/sec/2008/102008sec1.html

18.    Arrogance or efficiency? Why Microsoft redesigned the Office user interface, Part 2 (10/16/08) http://www.networkworld.com/newsletters/sec/2008/101308sec2.html

19.    Arrogance or efficiency? Why Microsoft redesigned the Office user interface, Part 1 (10/14/08) http://www.networkworld.com/newsletters/sec/2008/101308sec1.html

20.    *How to react to a fire alarm (10/09/08) http://www.networkworld.com/newsletters/sec/2008/100608sec2.html

21.    *Don’t be a Blobmonger (10/07/08) http://www.networkworld.com/newsletters/sec/2008/100608sec1.html

22.    Securing the eCampus 2008 (10/02/08) http://www.networkworld.com/newsletters/sec/2008/092908sec2.html

23.    *The data center from hell, Part 3: Lessons learned (09/30/08) http://www.networkworld.com/newsletters/sec/2008/092908sec1.html

24.    *The data center from hell, Part 2 (09/25/08) http://www.networkworld.com/newsletters/sec/2008/092208sec2.html

25.    *The data center from hell, Part 1 (09/23/08) http://www.networkworld.com/newsletters/sec/2008/092208sec1.html

26.    How not to manage lost passwords (09/18/08) http://www.networkworld.com/newsletters/sec/2008/091508sec2.html

27.    reCAPTCHA illustrates human ingenuity (09/16/08) http://www.networkworld.com/newsletters/sec/2008/091508sec1.html

28.    Bad business model: Turning subscriptions into gambling (09/11/08) http://www.networkworld.com/newsletters/sec/2008/090808sec2.html

29.    New kids advance ‘New School’ (09/09/08) http://www.networkworld.com/newsletters/sec/2008/090808sec1.html

30.    The privacy policy problem, Part 4: Reality hits home (09/04/08) http://www.networkworld.com/newsletters/sec/2008/090108sec2.html

31.    The privacy policy problem, Part 3: Opting out of opting out (09/02/08) http://www.networkworld.com/newsletters/sec/2008/090108sec1.html

32.    The privacy policy problem, Part 2: Controlling business partners (08/28/08) http://www.networkworld.com/newsletters/sec/2008/082508sec2.html

33.    The privacy policy problem, Part 1: A model policy (08/26/08) http://www.networkworld.com/newsletters/sec/2008/082508sec1.html

34.    Analyzing fundamental flaws: Opening vs. unlocking (08/21/08) http://www.networkworld.com/newsletters/sec/2008/081808sec2.html

35.    IMCD Business Backup: Prepare for all ContingenZs (08/19/08) http://www.networkworld.com/newsletters/sec/2008/081808sec1.html

36.    Encryption bottleneck: Lessons from performance analysis (08/14/08) http://www.networkworld.com/newsletters/sec/2008/081108sec2.html

37.    WEIS 2008: IPv6 illustrates resistance to new technologies (08/12/08) http://www.networkworld.com/newsletters/sec/2008/081108sec1.html

38.    WEIS 2008: Transition to IPv6 is complex (08/07/08) http://www.networkworld.com/newsletters/sec/2008/080408sec2.html

39.    WEIS 2008: Escalation and incentives for better security (08/05/08) http://www.networkworld.com/newsletters/sec/2008/080408sec1.html

40.    WEIS 2008: Security economics and European policy (07/31/08) http://www.networkworld.com/newsletters/sec/2008/072808sec2.html

41.    WEIS 2008: Do data-breach-disclosure laws reduce identity theft? (07/29/08) http://www.networkworld.com/newsletters/sec/2008/072808sec1.html

42.    *Insider controls still lacking (07/24/08) http://www.networkworld.com/newsletters/sec/2008/072108sec2.html

43.    ‘Bad Verb’: A bad user interface in action (07/22/08) http://www.networkworld.com/newsletters/sec/2008/072108sec1.html

44.    *DoD offers useful certification guidelines (07/17/08) http://www.networkworld.com/newsletters/sec/2008/071408sec2.html

45.    *Biometric blooper? (07/15/08) http://www.networkworld.com/newsletters/sec/2008/071408sec1.html

46.    Verizon data breach report, Part 4: Attack vectors (07/10/08) http://www.networkworld.com/newsletters/sec/2008/070708sec2.html

47.    Verizon data breach report, Part 3: Breach size and source (07/08/08) http://www.networkworld.com/newsletters/sec/2008/070708sec1.html

48.    Verizon data breach investigations report, Part 2: Outsider attacks (07/03/08) http://www.networkworld.com/newsletters/sec/2008/063008sec2.html

49.    Verizon data breach investigations report, Part 1 (07/01/08) http://www.networkworld.com/newsletters/sec/2008/063008sec1.html

50.    Improved security raises threat to the unimproved (06/26/08) http://www.networkworld.com/newsletters/sec/2008/062308sec1.html

51.    *Extreme weather and business continuity (06/24/08) http://www.networkworld.com/newsletters/sec/2008/062308sec1.html

52.    Keep pace with vulnerabilities (06/19/08) http://www.networkworld.com/newsletters/sec/2008/061608sec2.html

53.    Infowar resources (06/17/08) http://www.networkworld.com/newsletters/sec/2008/061608sec1.html

54.    LBB2E: Joel Dubin updates his pocket guide (06/12/08) http://www.networkworld.com/newsletters/sec/2008/060908sec2.html

55.    Master of Science in Business Continuity Management (06/10/08) http://www.networkworld.com/newsletters/sec/2008/060908sec1.html

56.    10 tips for moving e-discovery into the enterprise (06/05/08) http://www.networkworld.com/newsletters/sec/2008/060208sec2.html

57.    Useful guides to e-mail archiving (06/03/08) http://www.networkworld.com/newsletters/sec/2008/060208sec1.html

58.    Workshop on Economics of Information Security (05/29/08) http://www.networkworld.com/newsletters/sec/2008/052608sec2.html

59.    Bordering on insanity (05/27/08) http://www.networkworld.com/newsletters/sec/2008/052608sec1.html

60.    Crossing borders with corporate data (05/22/08) http://www.networkworld.com/newsletters/sec/2008/051908sec2.html

61.    Expanding roles for the CISO (05/20/08) http://www.networkworld.com/newsletters/sec/2008/051908sec1.html

62.    The CISO as strategic resource (05/15/08) http://www.networkworld.com/newsletters/sec/2008/051208sec2.html

63.    Building a bridge from the CISO to the CEO (05/13/08) http://www.networkworld.com/newsletters/sec/2008/051208sec1.html

64.    Identity Finder helps prevent identity theft (05/08/08) http://www.networkworld.com/newsletters/sec/2008/050508sec2.html

65.    Central Ohio InfoSec Summit coming up soon (05/06/08) http://www.networkworld.com/newsletters/sec/2008/050508sec1.html

66.    Zapping ‘zappers’ (05/01/08) http://www.networkworld.com/newsletters/sec/2008/042808sec2.html

67.    Zap! You’re under arrest (04/29/08) http://www.networkworld.com/newsletters/sec/2008/042808sec1.html

68.    Scan ScanSafe’s annual report for heuristic experience (04/24/08) http://www.networkworld.com/newsletters/sec/2008/042108sec2.html

69.    *Comprehensive security needed to prevent printer hacking (04/22/08) http://www.networkworld.com/newsletters/sec/2008/042108sec1.html

70.    *Your printer: An open door for hackers? (04/17/08) http://www.networkworld.com/newsletters/sec/2008/041408sec2.html

71.    *Managing CSIRT burnout and turnover: a case study, Part 3 (04/15/08) http://www.networkworld.com/newsletters/sec/2008/041408sec1.html

72.    *Managing CSIRT burnout and turnover: a case study, Part 2 (04/10/08) http://www.networkworld.com/newsletters/sec/2008/040708sec2.html

73.    *Managing CSIRT burnout and turnover: a case study, Part 1 (04/08/08) http://www.networkworld.com/newsletters/sec/2008/040708sec1.html

74.    April Fool’s lessons (04/03/08) http://www.networkworld.com/newsletters/sec/2008/033108sec2.html

75.    MessageLabs Intelligence Reports make good reading (04/01/08) http://www.networkworld.com/newsletters/sec/2008/033108sec1.html

76.    The state of spam: An interview with Jamie de Guerre, Part 2 (03/27/08) http://www.networkworld.com/newsletters/sec/2008/0324sec2.html

77.    The state of spam: An interview with Jamie de Guerre, Part 1 (03/25/08) http://www.networkworld.com/newsletters/sec/2008/0324sec1.html

78.    Security roles made brilliantly clear (03/20/08) http://www.networkworld.com/newsletters/sec/2008/0317sec2.html

79.    Process over presumption: The Vermont encryption key decision (03/18/08) http://www.networkworld.com/newsletters/sec/2008/0317sec1.html

80.    Chapters in ‘Information Roles & Responsibilities Made Easy’ (03/17/08) http://www.networkworld.com/newsletters/sec/2008/0317sec2a.html

81.    Charles Cresson Wood’s list of common mistakes you should avoid (03/17/08) http://www.networkworld.com/newsletters/sec/2008/0317sec2b.html

82.    Protecting your SSN and your reading habits (03/13/08) http://www.networkworld.com/newsletters/sec/2008/0310sec2.html

83.    Why identity-theft rates are so high (03/11/08) http://www.networkworld.com/newsletters/sec/2008/0310sec1.html

84.    Defending against identity theft: Identity Guard (03/06/08) http://www.networkworld.com/newsletters/sec/2008/0303sec2.html

85.    Defending against identity theft: LifeLock (03/04/08) http://www.networkworld.com/newsletters/sec/2008/0303sec1.html

86.    *Windows Server 2008: The shape of the world to come (02/28/08) http://www.networkworld.com/newsletters/sec/2008/0225sec2.html

87.    Service management metrics significant for CSIRTs (02/26/08) http://www.networkworld.com/newsletters/sec/2008/0225sec1.html

88.    *Two-factor credit-card safety for online transactions (02/21/08) http://www.networkworld.com/newsletters/sec/2008/0218sec2.html

89.    Blurred lines: Reliability of polygraph examinations (02/19/08) http://www.networkworld.com/newsletters/sec/2008/0218sec1.html

90.    Drawing the lines: Applications of the polygraph (02/14/08) http://www.networkworld.com/newsletters/sec/2008/0211sec2.html

91.    Poly want a hacker? (02/12/08) http://www.networkworld.com/newsletters/sec/2008/0211sec1.html

92.    Crystal Ball 2008 in Montreal (02/07/08) http://www.networkworld.com/newsletters/sec/2008/0204sec2.html

93.    CISSP-holders save time and money toward degree (02/05/08) http://www.networkworld.com/newsletters/sec/2008/0204sec1.html

94.    Getting CERIAS about security (01/31/08) http://www.networkworld.com/newsletters/sec/2008/0128sec2.html

95.    Handbook of Computer Networks: Another Bidgoli goldmine (01/29/08) http://www.networkworld.com/newsletters/sec/2008/0128sec1.html

96.    ‘Halting State’ a good read for security geeks (01/24/08) http://www.networkworld.com/newsletters/sec/2008/0121sec2.html

97.    Identity theft: The Shadowcrew case (01/22/08) http://www.networkworld.com/newsletters/sec/2008/0121sec1.html

98.    Identity theft is a burden on the victim (01/17/08) http://www.networkworld.com/newsletters/sec/2008/0114sec2.html

99.    A new Outlook (file) (01/15/08) http://www.networkworld.com/newsletters/sec/2008/0114sec1.html

100. Controlling outbound e-mail (01/10/08) http://www.networkworld.com/newsletters/sec/2008/0107sec2.html

101. Don’t let e-mail impair productivity (01/08/08) http://www.networkworld.com/newsletters/sec/2008/0107sec1.html

102. *Bank of America authenticates via mobile phone (01/03/08) http://www.networkworld.com/newsletters/sec/2008/1231sec2.html

2007

Intellectual property developments in 2007. In: 2007 Year in Review, Peltier Associates, pp 36-39. http://www.peltierassociates.com/index.php?option=com_docman&task=cat_view&gid=64&Itemid=55

Network World Security Strategies newsletter http://www.networkworld.com/newsletters/sec/

1.      Howard Schmidt patrols cyberspace (12/20/07) http://www.networkworld.com/newsletters/sec/2007/1217sec2.html

2.      Federal News Radio spotlights security (12/18/07) http://www.networkworld.com/newsletters/sec/2007/1217sec1.html

3.      *Reducing employee turnover: The STCC case study, Part 2 (12/13/07) http://www.networkworld.com/newsletters/sec/2007/1210sec2.html

4.      *Reducing employee turnover: The STCC case study, Part 1 (12/11/07) http://www.networkworld.com/newsletters/sec/2007/1210sec1.html

5.      Podcasts busting out at CERT/CC (12/06/07) http://www.networkworld.com/newsletters/sec/2007/1203sec2.html

6.      Privaris offers multi-use biometric token (12/04/07) http://www.networkworld.com/newsletters/sec/2007/1203sec1.html

7.      Free password generators, Part 3 (11/29/07) http://www.networkworld.com/newsletters/sec/2007/1126sec2.html

8.      Free password generators, Part 2 (11/27/07) http://www.networkworld.com/newsletters/sec/2007/1126sec1.html

9.      Free password generators, Part 1 (11/20/07) http://www.networkworld.com/newsletters/sec/2007/1119sec1.html

10.    ISACA Winnipeg’s bestseller list: Build Security In (11/15/07) http://www.networkworld.com/newsletters/sec/2007/1112sec2.html

11.    *Social engineering in penetration testing: Overload and fascination (11/13/07) http://www.networkworld.com/newsletters/sec/2007/1112sec1.html

12.    *Social engineering in penetration testing: Intimidation (11/08/07) http://www.networkworld.com/newsletters/sec/2007/1105sec2.html

13.    Social engineering in penetration testing: Postmortem (11/06/07) http://www.networkworld.com/newsletters/sec/2007/1105sec1.html

14.    Social engineering in penetration testing: Planning (11/01/07) http://www.networkworld.com/newsletters/sec/2007/1029sec2.html

15.    *Social engineering in penetration testing: Analysis (10/30/07) http://www.networkworld.com/newsletters/sec/2007/1029sec1.html

16.    *Social engineering in penetration testing: Cases (10/25/07) http://www.networkworld.com/newsletters/sec/2007/1022sec2.html

17.    Incident response: Don’t lie (10/23/07) http://www.networkworld.com/newsletters/sec/2007/1022sec1.html

18.    Hidden costs of passwords. (10/18/07) http://www.networkworld.com/newsletters/sec/2007/1015sec2.html

19.    Jason Holloway’s Holy Grail (10/16/07) http://www.networkworld.com/newsletters/sec/2007/1015sec1.html

20.    Password management: Facing the problem (10/11/07) http://www.networkworld.com/newsletters/sec/2007/1008sec2.html

21.    The way we frame risks influences perception (10/09/07) http://www.networkworld.com/newsletters/sec/2007/1008sec1.html

22.    Why passwords are passé (10/04/07) http://www.networkworld.com/newsletters/sec/2007/1001sec2.html

23.    ISP liability and ‘Net neutrality: an update (10/02/07) http://www.networkworld.com/newsletters/sec/2007/1001sec1.html

24.    The Dao of Microsoft (09/27/07) http://www.networkworld.com/newsletters/sec/2007/0924sec2.html

25.    *CSIRT Management: Politics (09/25/07) http://www.networkworld.com/newsletters/sec/2007/0924sec1.html

26.    *CSIRT Management: Problem-tracking software (09/20/07) http://www.networkworld.com/newsletters/sec/2007/0917sec2.html

27.    *CSIRT Management: Triage (09/18/07) http://www.networkworld.com/newsletters/sec/2007/0917sec1.html

28.    DRM for online versions of magazines (09/13/07) http://www.networkworld.com/newsletters/sec/2007/0910sec2.html

29.    Mail-order bride scams (09/11/07) http://www.networkworld.com/newsletters/sec/2007/0910sec1.html

30.    Ethical decision-making: Principles, rights and duties, and intuitive cues (09/06/07) http://www.networkworld.com/newsletters/sec/2007/0903sec2.html

31.    Ethical decision-making: Using formal and informal guidelines (09/04/07) http://www.networkworld.com/newsletters/sec/2007/0903sec1.html

32.    Ethical decision-making: Identifying the ethical issue (08/30/07) http://www.networkworld.com/newsletters/sec/2007/0827sec2.html

33.    Hacker tips published in Wall Street Journal (08/28/07) http://www.networkworld.com/newsletters/sec/2007/0827sec1.html

34.    New CISSP concentrations (08/23/07) http://www.networkworld.com/newsletters/sec/2007/0820sec2.html

35.    CISSP certification is evolving (08/21/07) http://www.networkworld.com/newsletters/sec/2007/0820sec1.html

36.    *Best practices for online shopping, Part 2 (08/16/07) http://www.networkworld.com/newsletters/sec/2007/0813sec2.html

37.    *Best practices for online shopping, Part 1 (08/14/07) http://www.networkworld.com/newsletters/sec/2007/0813sec1.html

38.    The last ‘word’ in file recovery: Google Desktop (08/09/07) http://www.networkworld.com/newsletters/sec/2007/0806sec2.html

39.    Disk data remanence: Part 2 (0807/07) http://www.networkworld.com/newsletters/sec/2007/0806sec1.html

40.    Disk data remanence: Part 1 (08/02/07) http://www.networkworld.com/newsletters/sec/2007/0730sec2.html

41.    Strengthening defenses against cyberwar (07/31/07) http://www.networkworld.com/newsletters/sec/2007/0730sec1.html

42.    How far could cyberwar go? (07/26/07) http://www.networkworld.com/newsletters/sec/2007/0723sec2.html

43.    YouSendIt provides useful, secure transfer service (07/24/07) http://www.networkworld.com/newsletters/sec/2007/0723sec1.html

44.    Yahoo Groups support appropriate-use policies for e-mail (07/19/07) http://www.networkworld.com/newsletters/sec/2007/0716sec2.html

45.    Managing private e-mail at work (07/17/07) http://www.networkworld.com/newsletters/sec/2007/0716sec1.html

46.    Security workforce study reveals salaries, hot technologies (07/12/07) http://www.networkworld.com/newsletters/sec/2007/0709sec2.html

47.    PayPal Security Key: Two-factor authentication for $5 (07/10/07) http://www.networkworld.com/newsletters/sec/2007/0709sec1.html

48.    *Talk to upper management about security (07/05/07) http://www.networkworld.com/newsletters/sec/2007/0702sec2.html

49.    New INFOSEC workbook now online (07/03/07) http://www.networkworld.com/newsletters/sec/2007/0702sec1.html

50.    Automated harassment (06/28/07) http://www.networkworld.com/newsletters/sec/2007/0625sec2.html

51.    VAleat quantum VAlere potest (06/26/07) http://www.networkworld.com/newsletters/sec/2007/0625sec1.html

52.    VAnishing confidence (06/21/07) http://www.networkworld.com/newsletters/sec/2007/0618sec2.html

53.    VAgue promises of improvement (06/19/07) http://www.networkworld.com/newsletters/sec/2007/0618sec1.html

54.    VAgaries of wandering data (06/14/07) http://www.networkworld.com/newsletters/sec/2007/0611sec2.html

55.    PIIssed off yet? (06/12/07) http://www.networkworld.com/newsletters/sec/2007/0611sec1.html

56.    CIMIP fights identity theft (0607/07) http://www.networkworld.com/newsletters/sec/2007/0604sec2.html

57.    E-tickets for air travel by end of 2007) (06/05/07) http://www.networkworld.com/newsletters/sec/2007/0604sec1.html

58.    Freedom of speech and its consequences (05/31/07) http://www.networkworld.com/newsletters/sec/2007/0528sec2.html

59.    Lack of moderation (05/29/07) http://www.networkworld.com/newsletters/sec/2007/0528sec1.html

60.    Brennan Center provides resources for security activists (05/24/07) http://www.networkworld.com/newsletters/sec/2007/0521sec2.html

61.    Identification vs. knowledge (05/22/07) http://www.networkworld.com/newsletters/sec/2007/0521sec1.html

62.    Identification isn’t enough (05/17/07) http://www.networkworld.com/newsletters/sec/2007/0514sec2.html

63.    The debate over national ID cards (05/15/07) http://www.networkworld.com/newsletters/sec/2007/0514sec1.html

64.    Secuware Security Framework offers interesting functionality (05/10/07) http://www.networkworld.com/newsletters/sec/2007/0507sec2.html

65.    Guide to NIST security documents (05/08/07) http://www.networkworld.com/newsletters/sec/2007/0507sec1.html

66.    Fair and balanced: Enforcing security policies for workstations (05/03/07) http://www.networkworld.com/newsletters/sec/2007/0430sec2.html

67.    ProCurve Networking site has useful white papers (05/01/07) http://www.networkworld.com/newsletters/sec/2007/0430sec1.html

68.    CSIRTM resources online (04/26/07) http://www.networkworld.com/newsletters/sec/2007/0423sec2.html

69.    NoticeBored not boring (04/24/07) http://www.networkworld.com/newsletters/sec/2007/0423sec1.html

70.    The persistence of memory: free speech and career prospects (04/19/07) http://www.networkworld.com/newsletters/sec/2007/0416sec2.html

71.    Free speech and corporate policy (04/17/07) http://www.networkworld.com/newsletters/sec/2007/0416sec1.html

72.    Personal expression vs. corporate policy (04/12/07) http://www.networkworld.com/newsletters/sec/2007/0409sec2.html

73.    Upcoming (ISC)2 seminars (04/10/07) http://www.networkworld.com/newsletters/sec/2007/0409sec1.html

74.    Pesky SiteKey problems (04/05/07) http://www.networkworld.com/newsletters/sec/2007/0402sec2.html

75.    SiteKey tries to counter phishing (04/03/07) http://www.networkworld.com/newsletters/sec/2007/0402sec1.html

76.    Shiftwork and security (03/29/07) http://www.networkworld.com/newsletters/sec/2007/0326sec2.html

77.    Waving a red flag (03/27/07) http://www.networkworld.com/newsletters/sec/2007/0326sec1.html

78.    The people’s flag is deepest red (03/22/07) http://www.networkworld.com/newsletters/sec/2007/0319sec2.html

79.    Proposed rulemaking against identity theft (03/20/07) http://www.networkworld.com/newsletters/sec/2007/0319sec1.html

80.    ‘Breakpoint’ echoes current news (03/15/07) http://www.networkworld.com/newsletters/sec/2007/0312sec2.html

81.    *Effects of full disclosure (03/13/07) http://www.networkworld.com/newsletters/sec/2007/0312sec1.html

82.    *To disclose or not to disclose (03/08/07) http://www.networkworld.com/newsletters/sec/2007/0305sec2.html

83.    *Follow-up: On hacker conventions, SecurityFocus and list sponsorship (03/06/07) http://www.networkworld.com/newsletters/sec/2007/0305sec1.html

84.    Transgressing the unwritten law (03/01/07) http://www.networkworld.com/newsletters/sec/2007/0226sec2.html

85.    *Book tells story of victims of cybercrime (02/27/07) http://www.networkworld.com/newsletters/sec/2007/0226sec1.html

86.    CIRT Management: Share the knowledge (02/22/07) http://www.networkworld.com/newsletters/sec/2007/0219sec2.html

87.    EDPACS archive a treasure trove (02/20/07) http://www.networkworld.com/newsletters/sec/2007/0219sec1.html

88.    CIRT Management: Continuous process improvement (02/15/07) http://www.networkworld.com/newsletters/sec/2007/0212sec2.html

89.    CIRT management: Root-cause analysis (02/13/07) http://www.networkworld.com/newsletters/sec/2007/0212sec1.html

90.    *E-mail retention policies, Part 2 (02/08/07) http://www.networkworld.com/newsletters/sec/2007/0205sec2.html

91.    *E-mail retention policies, Part 1 (02/06/07) http://www.networkworld.com/newsletters/sec/2007/0205sec1.html

92.    *CIRT management: Learning from emergencies (02/01/07) http://www.networkworld.com/newsletters/sec/2007/0129sec2.html

93.    The Net 2.0: Identity theft in Istanbul (01/30/07) http://www.networkworld.com/newsletters/sec/2007/0129sec1.html

94.    Information assurance in Beer-sheba (01/25/07) http://www.networkworld.com/newsletters/sec/2007/0122sec2.html

95.    *Industrial espionage in action (01/23/07) http://www.networkworld.com/newsletters/sec/2007/0122sec1.html

96.    *A counter-intelligence perspective (01/18/07) http://www.networkworld.com/newsletters/sec/2007/0115sec2.html

97.    Preparing for the CISSP exam, Part 4 (01/16/07) http://www.networkworld.com/newsletters/sec/2007/0115sec1.html

98.    Preparing for the CISSP exam, Part 3 (01/11/07) http://www.networkworld.com/newsletters/sec/2007/0108sec2.html

99.    Preparing for the CISSP exam, Part 2 (01/09/07) http://www.networkworld.com/newsletters/sec/2007/0108sec1.html

100. Preparing for the CISSP exam, Part 1 (01/04/07) http://www.networkworld.com/newsletters/sec/2007/0101sec2.html

101. On hacker conventions, SecurityFocus and list sponsorship (01/02/07) http://www.networkworld.com/newsletters/sec/2007/0101sec1.html

2006

Intellectual property developments in 2006. In: 2006 Year in Review, Peltier Associates, pp 28-30. (no longer available online)

Tips for Using MS-Word http://www.mekabay.com/methodology/word_tips.pdf

Ubiquity Magazine of the Association for Computing Machinery

·        The Net Neutrality Debate (05/23/06) http://www.acm.org/ubiquity/views/v7i20_neutrality.html

Network World Security Strategies newsletter http://www.networkworld.com/newsletters/sec/

* indicates guest authors.

1.      ALEatory ALE (12/21/06) http://www.networkworld.com/newsletters/sec/2006/1218sec2.html

2.      Cybersecurity management, Part 4 (12/19/06) http://www.networkworld.com/newsletters/sec/2006/1218sec1.html

3.      Cybersecurity management, Part 3 (12/14/06) http://www.networkworld.com/newsletters/sec/2006/1211sec2.html

4.      Cybersecurity management, Part 2 (12/12/06) http://www.networkworld.com/newsletters/sec/2006/1211sec1.html

5.      Cybersecurity management, Part 1 (12/07/06) http://www.networkworld.com/newsletters/sec/2006/1204sec2.html

6.      *Evaluate your cyber-intelligence (12/05/06) http://www.networkworld.com/newsletters/sec/2006/1204sec1.html

7.      Software, music and movie pirates keelhauled (11/30/06) http://www.networkworld.com/newsletters/sec/2006/1127sec2.html

8.      Crime and punishment (11/28/06) http://www.networkworld.com/newsletters/sec/2006/1127sec1.html

9.      CIRT management: Avoiding burnout (11/21/06) http://www.networkworld.com/newsletters/sec/2006/1120sec1.html

10.    CIRT management: Setting the rules for triage (11/16/06) http://www.networkworld.com/newsletters/sec/2006/1113sec2.html

11.    Plagiarism outside the classroom (11/14/06) http://www.networkworld.com/newsletters/sec/2006/1113sec1.html

12.    OCEG Red Book on risk management (11/09/06) http://www.networkworld.com/newsletters/sec/2006/1106sec2.html

13.    OCEG provides valuable resources (11/07/06) http://www.networkworld.com/newsletters/sec/2006/1106sec1.html

14.    Dan Swanson on IT auditing (11/02/06) http://www.networkworld.com/newsletters/sec/2006/1030sec2.html

15.    Identifying problem Internet users (10/31/06) http://www.networkworld.com/newsletters/sec/2006/1030sec1.html

16.    Metadata (10/26/06) http://www.networkworld.com/newsletters/sec/2006/1023sec2.html

17.    More on ‘Net neutrality (10/24/06) http://www.networkworld.com/newsletters/sec/2006/1023sec1.html

18.    Check out Avert Labs’ blog (10/19/06) http://www.networkworld.com/newsletters/sec/2006/1016sec2.html

19.    Picking out digital image forgeries (10/17/06) http://www.networkworld.com/newsletters/sec/2006/1016sec1.html

20.    Michigan CISO speaks online (10/12/06) http://www.networkworld.com/newsletters/sec/2006/1009sec2.html

21.    Paperless e-voting fails again (10/10/06) http://www.networkworld.com/newsletters/sec/2006/1009sec1.html

22.    PSYOP in action (10/05/06) http://www.networkworld.com/newsletters/sec/2006/1002sec2.html

23.    NIST guide to forensics in incident response (10/03/06) http://www.networkworld.com/newsletters/sec/2006/1002sec1.html

24.    NIST guidelines on cell phone forensics (09/28/06) http://www.networkworld.com/newsletters/sec/2006/0925sec2.html

25.    Survey describes state of security management (09/26/06) http://www.networkworld.com/newsletters/sec/2006/0925sec1.html

26.    NIST guide to secure Web services (09/21/06) http://www.networkworld.com/newsletters/sec/2006/0918sec2.html

27.    Beware of vicious ‘vishing’ villains (09/19/06) http://www.networkworld.com/newsletters/sec/2006/0918sec1.html

28.    NIST guide to IDP systems (09/14/06) http://www.networkworld.com/newsletters/sec/2006/0911sec2.html

29.    The Ostrich Maneuver: Burying bad news is a bad idea (09/12/06) http://www.networkworld.com/newsletters/sec/2006/0911sec1.html

30.    NIST guidelines on e-mail security (09/07/06) http://www.networkworld.com/newsletters/sec/2006/0904sec2.html

31.    Legal aspects of managing technology (08/31/06) http://www.networkworld.com/newsletters/sec/2006/0904sec1.html

32.    Two cybercrime textbooks (08/31/06) http://www.networkworld.com/newsletters/sec/2006/0828sec2.html

33.    The Thin Edge (08/29/06) http://www.networkworld.com/newsletters/sec/2006/0828sec1.html

34.    Flights of fancy (08/24/06) http://www.networkworld.com/newsletters/sec/2006/0821sec2.html

35.    That Won’t Fly: How new airplane rules could affect you (08/22/06) http://www.networkworld.com/newsletters/sec/2006/0821sec1.html

36.    U.S. OMB mandates laptop disk encryption as No. 1 precaution (08/17/06) http://www.networkworld.com/newsletters/sec/2006/0814sec2.html

37.    Business discontinuity (08/15/06) http://www.networkworld.com/newsletters/sec/2006/0814sec1.html

38.    More honored in the breach than in the breeches (08/10/06) http://www.networkworld.com/newsletters/sec/2006/0807sec2.html

39.    Fighting plagiarism (08/08/06) http://www.networkworld.com/newsletters/sec/2006/0807sec1.html

40.    Ohio University coping with information breaches (08/03/06) http://www.networkworld.com/newsletters/sec/2006/0731sec2.html

41.    MS-ISAC continues useful Webcasts (08/01/06) http://www.networkworld.com/newsletters/sec/2006/0731sec1.html

42.    DRM-roll for consumer privacy protection (07/27/06) http://www.networkworld.com/newsletters/sec/2006/0724sec2.html

43.    ‘Sage’ advice from McAfee (07/25/06) http://www.networkworld.com/newsletters/sec/2006/0724sec1.html

44.    The eyes have it (07/20/06) http://www.networkworld.com/newsletters/sec/2006/0717sec2.html

45.    Tips for implementing encryption on stored data (07/18/06) http://www.networkworld.com/newsletters/sec/2006/0717sec1.html

46.    IRS wants to liberate our tax returns (07/13/06) http://www.networkworld.com/newsletters/sec/2006/0710sec2.html

47.    Follow the rules - unless you shouldn’t follow the rules (07/11/06) http://www.networkworld.com/newsletters/sec/2006/0710sec1.html

48.    Excel helpers can damage data (07/06/06) http://www.networkworld.com/newsletters/sec/2006/0703sec2.html

49.    BCC prevents e-mail nuisances (06/29/06) http://www.networkworld.com/newsletters/sec/2006/0626sec2.html

50.    Control visible distribution lists in e-mail (06/27/06) http://www.networkworld.com/newsletters/sec/2006/0626sec1.html

51.    Production spreadsheets can cause problems (06/22/06) http://www.networkworld.com/newsletters/sec/2006/0619sec2.html

52.    The computer said so: Credulity vs. credibility (06/20/06) http://www.networkworld.com/newsletters/sec/2006/0619sec1.html

53.    GAO slams FCC on junk fax processing (06/15/06) http://www.networkworld.com/newsletters/sec/2006/0612sec2.html

54.    DHCP is a core technology for network access control (06/13/06) http://www.networkworld.com/newsletters/sec/2006/0612sec1.html

55.    Leaky BlackBerry spills the juice (06/08/06) http://www.networkworld.com/newsletters/sec/2006/0605sec2.html

56.    Unexpected consequences of HIPAA (06/06/06) http://www.networkworld.com/newsletters/sec/2006/0605sec1.html

57.    Unsubscribing not so easy (06/01/06) http://www.networkworld.com/newsletters/sec/2006/0529sec2.html

58.    Wandering laptops should teach lessons (05/30/06) http://www.networkworld.com/newsletters/sec/2006/0529sec1.html

59.    Interpersonal relations matter (05/25/06) http://www.networkworld.com/newsletters/sec/2006/0522sec2.html

60.    Standards can help in communicating security issues to executives (05/23/06) http://www.networkworld.com/newsletters/sec/2006/0522sec1.html

61.    Encrypting backups to avoid disasters (05/18/06) http://www.networkworld.com/newsletters/sec/2006/0515sec2.html

62.    Privacy conference: Schneier comes to Vermont (05/16/06) http://www.networkworld.com/newsletters/sec/2006/0515sec1.html

63.    Postal inspectors provide valuable fraud awareness resources (05/11/06) http://www.networkworld.com/newsletters/sec/2006/0508sec2.html

64.    ISP liability and ‘Net neutrality, Part 2 (05/09/06) http://www.networkworld.com/newsletters/sec/2006/0508sec1.html

65.    ISP liability and ‘Net neutrality, Part 1 (05/04/06) http://www.networkworld.com/newsletters/sec/2006/0501sec2.html

66.    Not TEOTIAWKI (05/02/06) http://www.networkworld.com/newsletters/sec/2006/0501sec1.html

67.    ‘Net neutrality debate heats up (04/27/06) http://www.networkworld.com/newsletters/sec/2006/0424sec2.html

68.    Web-site security Web site (04/25/06) http://www.networkworld.com/newsletters/sec/2006/0424sec1.html

69.    BCI offers useful guidance (04/20/06) http://www.networkworld.com/newsletters/sec/2006/0417sec2.html

70.    Non-independent errors (04/18/06) http://www.networkworld.com/newsletters/sec/2006/0417sec1.html

71.    New security handbook impressive (04/13/06) http://www.networkworld.com/newsletters/sec/2006/0410sec2.html

72.    MS-ISAC offers Webcasts for all (04/11/06) http://www.networkworld.com/newsletters/sec/2006/0410sec1.html

73.    Siemens resources for security educators (04/06/06) http://www.networkworld.com/newsletters/sec/2006/0403sec2.html

74.    Take responsibility (04/04/06) http://www.networkworld.com/newsletters/sec/2006/0403sec1.html

75.    When security procedures yield nothing but an illusion (03/30/06) http://www.networkworld.com/newsletters/sec/2006/0327sec2.html

76.    Bill addresses consumer privacy protection (03/28/06) http://www.networkworld.com/newsletters/sec/2006/0327sec1.html

77.    *The problem with compliance, Part 2 (03/23/06) http://www.networkworld.com/newsletters/sec/2006/0327sec1.html

78.    *The problem with compliance, Part 1 (03/21/06) http://www.networkworld.com/newsletters/sec/2006/0320sec1.html

79.    Dangers of in-flight cell phone use (03/16/06) http://www.networkworld.com/newsletters/sec/2006/0313sec2.html

80.    Google Desktop raises security questions (03/14/06) http://www.networkworld.com/newsletters/sec/2006/0313sec1.html

81.    *HTTP referrer header opens door to abuse (03/09/06) http://www.networkworld.com/newsletters/sec/2006/0306sec2.html

82.    Non-competition agreements, Part 2 (03/07/06) http://www.networkworld.com/newsletters/sec/2006/0306sec1.html

83.    Non-competition agreements, Part 1 (03/02/06) http://www.networkworld.com/newsletters/sec/2006/0227sec2.html

84.    New from NUJIA (02/28/06) http://www.networkworld.com/newsletters/sec/2006/0227sec1.html

85.    Student security videos deserve awards (02/23/06) http://www.networkworld.com/newsletters/sec/2006/0220sec2.html

86.    It’s hard to determine the ROI of information security measures (02/21/06) http://www.networkworld.com/newsletters/sec/2006/0220sec1.html

87.    Baseline Security Manual 2004 (02/16/06) http://www.networkworld.com/newsletters/sec/2006/0213sec2.html

88.    Book details deception techniques and countermeasures (02/14/06) http://www.networkworld.com/newsletters/sec/2006/0213sec1.html

89.    Secure your mainframes, too (02/09/06) http://www.networkworld.com/newsletters/sec/2006/0206sec2.html

90.    MPAA violates its own rules (02/07/06) http://www.networkworld.com/newsletters/sec/2006/0206sec1.html

91.    Egoless work (02/02/06) http://www.networkworld.com/newsletters/sec/2006/0130sec2.html

92.    Cisco ASA 5500 has value (01/31/06) http://www.networkworld.com/newsletters/sec/2006/0130sec1.html

93.    Penetration cases show need for response plans (01/26/06) http://www.networkworld.com/newsletters/sec/2006/0123sec2.html

94.    Many unauthorized disclosures in 2005 (01/24/06) http://www.networkworld.com/newsletters/sec/2006/0123sec1.html

95.    U.S. critical infrastructure needs improved security (01/19/06) http://www.networkworld.com/newsletters/sec/2006/0116sec2.html

96.    Security database updated (01/17/06) http://www.networkworld.com/newsletters/sec/2006/0116sec1.html

97.    AI-yai-AI! Smarter Viruses! (01/12/06) http://www.networkworld.com/newsletters/sec/2006/0109sec2.html

98.    Lost data all over the news in 2005 (01/10/06) http://www.networkworld.com/newsletters/sec/2006/0109sec1.html

99.    The miracle of the apostrophes (01/05/06) http://www.networkworld.com/newsletters/sec/2006/0102sec2.html

100. Online Windows and Office raise security issues (01/03/06) http://www.networkworld.com/newsletters/sec/2006/0102sec1.html

 

2005

Improving information assurance education key to improving security management. J. Network & Systems Management (online, by subscription only) Sept 2005. Table of Contents < http://www.sce.umkc.edu/jnsm/vols/vol13n3.html >

Ubiquity Magazine of the Association for Computing Machinery

Some notes on malware. (08/16/05) http://www.acm.org/ubiquity/views/v6i30_kabay.html

Network World Fusion Security Newsletter http://www.networkworld.com/newsletters/sec/ * indicates guest authors.

1.      Policies for external links (12/22/05) http://www.networkworld.com/newsletters/sec/2005/1219sec2.html

2.      Internet links pose image and legal problems (12/20/05) http://www.networkworld.com/newsletters/sec/2005/1219sec1.html

3.      Intranet links to Internet servers pose risks (12/15/05) http://www.networkworld.com/newsletters/sec/2005/1212sec2.html

4.      *The Business Continuity Institute (12/13/05) http://www.networkworld.com/newsletters/sec/2005/1212sec1.html

5.      False FBI accusation carries Sober worm (12/08/05) http://www.networkworld.com/newsletters/sec/2005/1205sec2.html

6.      *Is Cisco’s ASA a headache-in-waiting? (12/06/05) http://www.networkworld.com/newsletters/sec/2005/1205sec1.html

7.      Managing the CIRT: Professionalism (12/01/05) http://www.networkworld.com/newsletters/sec/2005/1128sec2.html

8.      Synchronizing computers, Part 4: SyncToy (11/29/05) http://www.networkworld.com/newsletters/sec/2005/1128sec1.html

9.      Sambaza: New e-currency in East Africa (11/22/05) http://www.networkworld.com/newsletters/sec/2005/1121sec1.html

10.    *Synchronizing computers, Part 3: iFolder (11/15/05) http://www.networkworld.com/newsletters/sec/2005/1114sec1.html

11.    Industrial espionage, Part 8: China and Titan Rain (11/10/05) http://www.networkworld.com/newsletters/sec/2005/1107sec2.html

12.    Synchronizing computers, Part 2: BeInSync (11/08/05) http://www.networkworld.com/newsletters/sec/2005/1107sec1.html

13.    Industrial espionage, Part 7: More cases (11/03/05) http://www.networkworld.com/newsletters/sec/2005/1031sec2.html

14.    Synchronizing computers, Part 1: Laplink (11/01/05) http://www.networkworld.com/newsletters/sec/2005/1031sec1.html

15.    Industrial espionage, Part 6: Cases (10/27/05) http://www.networkworld.com/newsletters/sec/2005/1024sec2.html

16.    *The danger of relying solely on Active Directory for backups (10/25/05) http://www.networkworld.com/newsletters/sec/2005/1024sec1.html

17.    Industrial espionage, Part 5: People from many countries targeting U.S. (10/20/05) http://www.networkworld.com/newsletters/sec/2005/1017sec2.html

18.    TinyURLs: a matter of trust (10/18/05) http://www.networkworld.com/newsletters/sec/2005/1017sec1.html

19.    Industrial espionage, Part 4: Risk factors and losses (10/13/05) http://www.networkworld.com/newsletters/sec/2005/1010sec2.html

20.    CallingID fights Web fraud (10/11/05) http://www.networkworld.com/newsletters/sec/2005/1010sec1.html

21.    Industrial espionage, Part 3: Survey results (10/06/05) http://www.networkworld.com/newsletters/sec/2005/1003sec2.html

22.    A good little black book (10/04/05) http://www.networkworld.com/newsletters/sec/2005/1003sec1.html

23.    Industrial espionage, Part 2: More methods (09/29/05) http://www.networkworld.com/newsletters/sec/2005/0926sec2.html

24.    Fight Katrina frauds (09/27/05) http://www.networkworld.com/newsletters/sec/2005/0926sec1.html

25.    Industrial espionage, Part 1: Methods (09/22/05) http://www.networkworld.com/newsletters/sec/2005/0919sec2.html

26.    Nuclear security internship at PNNL (09/20/05) http://www.networkworld.com/newsletters/sec/2005/0919sec1.html

27.    NIST has busy season (09/15/05) http://www.networkworld.com/newsletters/sec/2005/0912sec2.html

28.    Survey takes on security best practices (09/13/05) http://www.networkworld.com/newsletters/sec/2005/0912sec1.html

29.    InfraGard is not a deodorant (09/08/05) http://www.networkworld.com/newsletters/sec/2005/0905sec2.html

30.    In defense of privacy (09/06/05) http://www.networkworld.com/newsletters/sec/2005/0905sec1.html

31.    Junk fax not what it seems, Part 2 (09/01/05) http://www.networkworld.com/newsletters/sec/2005/0829sec2.html

32.    Junk fax not what it seems, Part 1 (08/30/05) http://www.networkworld.com/newsletters/sec/2005/0829sec2.html

33.    How to communicate user IDs and passwords (08/25/05) http://www.networkworld.com/newsletters/sec/2005/0822sec2.html

34.    Security applications for ‘smart dust’ (08/23/05) http://www.networkworld.com/newsletters/sec/2005/0822sec1.html

35.    Long-term perspective: 200-year software (08/18/05) http://www.networkworld.com/newsletters/sec/2005/0815sec2.html

36.    E-mail disclaimer stimulates expletives (08/16/05) http://www.networkworld.com/newsletters/sec/2005/0815sec1.html

37.    Passports as a security measure (08/11/05) http://www.networkworld.com/newsletters/sec/2005/0808sec2.html

38.    Lend me your ears (08/09/05) http://www.networkworld.com/newsletters/sec/2005/0808sec1.html

39.    Security periodicals written by experts (08/04/05) http://www.networkworld.com/newsletters/sec/2005/0801sec2.html

40.    In e-mail, first impressions stick (08/02/05) http://www.networkworld.com/newsletters/sec/2005/0801sec1.html

41.    Two simple ways to improve utility and confidentiality of e-mail (07/28/05) http://www.networkworld.com/newsletters/sec/2005/0725sec2.html

42.    Use TinyURL links with care (07/26/05) http://www.networkworld.com/newsletters/sec/2005/0725sec1.html

43.    Crosswalk hacking and more from BBspot (07/21/05) http://www.networkworld.com/newsletters/sec/2005/0718sec2.html

44.    Thesis spells out threats to VoIP (07/19/05) http://www.networkworld.com/newsletters/sec/2005/0718sec1.html

45.    VoIP books and white papers (07/14/05) http://www.networkworld.com/newsletters/sec/2005/0711sec2.html

46.    NIST reports on VoIP security (07/12/05) http://www.networkworld.com/newsletters/sec/2005/0711sec1.html

47.    The Persistence of Memory (07/07/05) http://www.networkworld.com/newsletters/sec/2005/0704sec2.html

48.    *Spotting outliers is elementary (07/05/05) http://www.networkworld.com/newsletters/sec/2005/0704sec1.html

49.    Securing the CIRT: Walk the talk (06/30/05) http://www.networkworld.com/newsletters/sec/2005/0627sec2.html

50.    *Watch out for this eBay fraud technique (06/28/05) http://www.networkworld.com/newsletters/sec/2005/0627sec1.html

51.    Testing security awareness can be fun (06/23/05) http://www.networkworld.com/newsletters/sec/2005/0620sec2.html

52.    SPF: Some Problems to Face but Seems Pretty Fair (06/21/05) http://www.networkworld.com/newsletters/sec/2005/0620sec1.html

53.    CAPTCHAs look to separate humans from bots (06/16/05) http://www.networkworld.com/newsletters/sec/2005/0613sec2.html

54.    Use common sense when it comes to outliers (06/14/05) http://www.networkworld.com/newsletters/sec/2005/0613sec1.html

55.    Cell phones for spies (06/09/05) http://www.networkworld.com/newsletters/sec/2005/0606sec2.html

56.    Wireless perils are nothing new (06/07/05) http://www.networkworld.com/newsletters/sec/2005/0606sec1.html

57.    Information security cannot stand alone (06/02/05) http://www.networkworld.com/newsletters/sec/2005/0530sec2.html

58.    Newsletter points to European perspectives (05/31/05) http://www.networkworld.com/newsletters/sec/2005/0530sec1.html

59.    Gary Kessler’s Web site a treasure trove (05/26/05) http://www.networkworld.com/newsletters/sec/2005/0523sec2.html

60.    Panko’s book offers valuable resources (05/24/05) http://www.networkworld.com/newsletters/sec/2005/0523sec1.html

61.    Reward smarter password choices (05/19/05) http://www.networkworld.com/newsletters/sec/2005/0516sec2.html

62.    How to enrage hotline callers, Part 2 (05/17/05 ) http://www.networkworld.com/newsletters/sec/2005/0516sec1.html

63.    How to enrage hotline callers, Part 1 (05/12/05 ) http://www.networkworld.com/newsletters/sec/2005/0509sec2.html

64.    CIRT management: The telephone hotline (05/10/05 ) http://www.networkworld.com/newsletters/sec/2005/0509sec1.html

65.    Recipients’ security concerns can foil document formatting attempts (05/05/05 ) http://www.networkworld.com/newsletters/sec/2005/0502sec2.html

66.    Random paper generator fools conference organizers (05/03/05 ) http://www.networkworld.com/newsletters/sec/2005/0502sec1.html

67.    U.S. gov’t work on ID cards could be useful for private sector (04/28/05 ) http://www.networkworld.com/newsletters/sec/2005/0425sec2.html

68.    How to handle bad news (04/26/05 ) http://www.networkworld.com/newsletters/sec/2005/0425sec1.html

69.    The right way to make widespread system changes (04/21/05) http://www.networkworld.com/newsletters/sec/2005/0418sec2.html

70.    How to overcome upper-management resistance (04/19/05) http://www.networkworld.com/newsletters/sec/2005/0418sec1.html

71.    Report highlights cyber security issues (04/14/05) http://www.networkworld.com/newsletters/sec/2005/0411sec2.html

72.    IDS maker has whale of a good site (04/12/05) http://www.networkworld.com/newsletters/sec/2005/0411sec1.html

73.    Another take on privacy (04/07/05) http://www.networkworld.com/newsletters/sec/2005/0404sec2.html

74.    Ethics in security policy (04/05/05) http://www.networkworld.com/newsletters/sec/2005/0404sec1.html

75.    (ISC)2 offers range of certifications (03/31/05) http://www.networkworld.com/newsletters/sec/2005/0328sec2.html

76.    Schneier’s Crypto-Gram always informative (03/29/05) http://www.networkworld.com/newsletters/sec/2005/0328sec1.html

77.    Controlling USB storage devices (03/24/05) http://www.networkworld.com/newsletters/sec/2005/0321sec2.html

78.    Stealth mode utilities, Part 3 (03/22/05) http://www.networkworld.com/newsletters/sec/2005/0321sec1.html

79.    Stealth mode utilities, Part 2 (03/17/05) http://www.networkworld.com/newsletters/sec/2005/0314sec2.html

80.    Stealth mode utilities, Part 1 (03/15/05) http://www.networkworld.com/newsletters/sec/2005/0314sec1.html

81.    Monty Python alum promotes data backups (03/10/05) http://www.networkworld.com/newsletters/sec/2005/0307sec2.html

82.    *Understand the business case for security (03/08/05) http://www.networkworld.com/newsletters/sec/2005/0307sec1.html

83.    An unwanted RAID conversion (03/03/05) http://www.networkworld.com/newsletters/sec/2005/0228sec2.html

84.    USB flash drives spreading like mushrooms (03/01/05) http://www.networkworld.com/newsletters/sec/2005/0228sec1.html

85.    Applications of biometric flash drives (02/24/05) http://www.networkworld.com/newsletters/sec/2005/0221sec2.html

86.    Biometric flash drive is convenient and secure (02/22/05) http://www.networkworld.com/newsletters/sec/2005/0221sec1.html

87.    Personal links not a technical problem, Part 2 (02/17/05) http://www.networkworld.com/newsletters/sec/2005/0214sec2.html

88.    Personal links not a technical problem, Part 1 (02/15/05) http://www.networkworld.com/newsletters/sec/2005/0214sec1.html

89.    ITIL offers help for network operations management (02/10/05) http://www.networkworld.com/newsletters/sec/2005/0207sec2.html

90.    New course, publication from Norwich University (02/08/05) http://www.networkworld.com/newsletters/sec/2005/0207sec1.html

91.    See Ya at FISSEA (02/03/05) http://www.networkworld.com/newsletters/sec/2005/0131sec2.html

92.    A spyware record? (02/01/05) http://www.networkworld.com/newsletters/sec/2005/0131sec1.html

93.    Yahoo’s improved toolbar (01/27/05) http://www.networkworld.com/newsletters/sec/2005/0124sec2.html