Re: 7 shortcuts To Get Your Network Hacked (huh?)

2012-11-03 Thread Mike Tavares
to companies that are bigger than theirs. From: Ken Schaefer Sent: Friday, November 02, 2012 10:46 PM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) The problem with security or DR is that spending is, potentially, a bottomless pit. You can insure against

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-11-03 Thread Ken Schaefer
Issues Subject: Re: 7 shortcuts To Get Your Network Hacked (huh?) Security doesn’t need to be a bottomless pit (DR is a whole different beast). If you look at the security concerns of most of us that have posted to this thread. Most of them is fixed by having strong enforced POLICIES (like

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-11-02 Thread Ziots, Edward
...@lifespan.org From: Mike Tavares [mailto:miketava...@comcast.net] Sent: Thursday, November 01, 2012 6:49 PM To: NT System Admin Issues Subject: Re: 7 shortcuts To Get Your Network Hacked (huh?) My guess is it is going to later rather sooner for most companies. I recently attended a CEO level

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-11-02 Thread Ken Schaefer
been determined yet. Cheers Ken From: Jon Harris [mailto:jk.har...@live.com] Sent: Saturday, 3 November 2012 10:30 AM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) I guess that like having a datacenter disaster management will bury their heads or make excuses

Re: 7 shortcuts To Get Your Network Hacked (huh?)

2012-11-01 Thread Mike Tavares
31, 2012 3:39 AM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) I’m curious to know how people are coming up with these lists. Are they based on personal experience of hacks in your own workplace? Or what you are seeing/reading “in the media”? My

Re: 7 shortcuts To Get Your Network Hacked (huh?)

2012-11-01 Thread Mike Tavares
and think about it. From: Ziots, Edward Sent: Wednesday, October 31, 2012 3:49 AM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) I would say that BYOD is going to creep up to the top of the list sooner than laters for the following reasons. 1

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-11-01 Thread Charlie Kaiser
...@golden-eagle.org Kingman, AZ *** -Original Message- From: Mike Tavares [mailto:miketava...@comcast.net] Sent: Thursday, November 01, 2012 3:49 PM To: NT System Admin Issues Subject: Re: 7 shortcuts To Get Your Network Hacked (huh?) My guess is it is going to later

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread Ziots, Edward
Sjouwerman [mailto:s...@sunbelt-software.com] Sent: Tuesday, October 30, 2012 1:39 PM To: NT System Admin Issues Subject: 7 shortcuts To Get Your Network Hacked (huh?) Hi Guys, Yes, that was on purpose. In your opinion, what are the most gruesome errors a system admin can make which

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread Ziots, Edward
ezi...@lifespan.org -Original Message- From: Webster [mailto:webs...@carlwebster.com] Sent: Tuesday, October 30, 2012 4:48 PM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) Dos Equis I don't always test, but when I do, I prefer to use the Production

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread Ziots, Edward
...@lifespan.org -Original Message- From: Kurt Buff [mailto:kurt.b...@gmail.com] Sent: Tuesday, October 30, 2012 7:15 PM To: NT System Admin Issues Subject: Re: 7 shortcuts To Get Your Network Hacked (huh?) BTW - apropos of this: https://isc.sans.edu/diary/Cyber+Security+Awareness+Month+-+Day

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread Ken Schaefer
...@lifespan.org] Sent: Wednesday, 31 October 2012 6:29 PM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) 1) Failure to properly harden their systems from attack. ( Patching, Access-lists, Firewall settings) 2) Using unapproved software on systems

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread Ziots, Edward
From: Mike Tavares [mailto:miketava...@comcast.net] Sent: Tuesday, October 30, 2012 7:48 PM To: NT System Admin Issues Subject: Re: 7 shortcuts To Get Your Network Hacked (huh?) 1. Listening to Management tell you that security is inconvenience to the end users and keep it as simple as possible

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread Ziots, Edward
+, Network + Security Engineer Lifespan Organization ezi...@lifespan.org From: Ken Schaefer [mailto:k...@adopenstatic.com] Sent: Wednesday, October 31, 2012 3:39 AM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) I'm curious to know how people are coming up

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread Ken Schaefer
I agree with the statement below. But it's not an answer to my question. From: Ziots, Edward [mailto:ezi...@lifespan.org] Sent: Wednesday, 31 October 2012 6:51 PM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) Ken everyone's experiences are different

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread Ziots, Edward
AM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) I agree with the statement below. But it's not an answer to my question. From: Ziots, Edward [mailto:ezi...@lifespan.org] Sent: Wednesday, 31 October 2012 6:51 PM To: NT System Admin Issues Subject

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread Ken Schaefer
Cheers Ken From: Ziots, Edward [mailto:ezi...@lifespan.org] Sent: Wednesday, 31 October 2012 7:38 PM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) I can say this: 1) People aren't going to talk about internal hacks on their networks (Op-Sec is in effect

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread Ziots, Edward
, October 31, 2012 7:16 AM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) If people are not reporting the hacks on their own network, then my question is, again: how are people determining what goes on their lists? The media was just an example on my part

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread Ken Schaefer
these types of issues. Cheers Ken From: Ziots, Edward [mailto:ezi...@lifespan.org] Sent: Wednesday, 31 October 2012 11:09 PM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) Personal experience, Professional conferences ( SANS, ISC, ISACA otherwise) plus threat

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread Rene de Haas
PM *To:* NT System Admin Issues *Subject:* RE: 7 shortcuts To Get Your Network Hacked (huh?) ** ** Personal experience, Professional conferences ( SANS, ISC, ISACA otherwise) plus threat intelligence I get from legit sources and from the underground. When you are looking at packets

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread Ziots, Edward
Engineer Lifespan Organization ezi...@lifespan.org From: Ken Schaefer [mailto:k...@adopenstatic.com] Sent: Wednesday, October 31, 2012 8:32 AM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) Thanks for the response. From what I've seen in NIPS only finds

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread Jim Mediger
. Separate development network/domain 12. Not informing management of all the above. From: Stu Sjouwerman [mailto:s...@sunbelt-software.com] Sent: Tuesday, October 30, 2012 12:39 PM To: NT System Admin Issues Subject: 7 shortcuts To Get Your Network Hacked (huh?) Hi Guys, Yes, that was on purpose

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-31 Thread David Lum
Schaefer [mailto:k...@adopenstatic.com] Sent: Wednesday, October 31, 2012 5:32 AM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) Thanks for the response. From what I've seen in NIPS only finds low hanging fruit attacks - not actual compromises. I suspect

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread David Mazzaccaro
Allowing users to run as local admins From: Stu Sjouwerman [mailto:s...@sunbelt-software.com] Sent: Tuesday, October 30, 2012 1:39 PM To: NT System Admin Issues Subject: 7 shortcuts To Get Your Network Hacked (huh?) Hi Guys, Yes, that was on purpose. In your opinion, what

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread Damien Solodow
Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) Allowing users to run as local admins From: Stu Sjouwerman [mailto:s...@sunbelt-software.com] Sent: Tuesday, October 30, 2012 1:39 PM To: NT System Admin Issues Subject: 7 shortcuts To Get Your Network Hacked (huh?) Hi Guys, Yes

Re: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread Rankin, James R
@lyris.sunbelt-software.comSubject: RE: 7 shortcuts To Get Your Network Hacked (huh?) Allowing users to run as local admins From: Stu Sjouwerman [mailto:s...@sunbelt-software.com] Sent: Tuesday, October 30, 2012 1:39 PM To: NT System Admin Issues Subject: 7 shortcuts To Get Your Network Hacked

Re: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread Kurt Buff
[mailto:s...@sunbelt-software.com] Sent: Tuesday, October 30, 2012 1:39 PM To: NT System Admin Issues Subject: 7 shortcuts To Get Your Network Hacked (huh?) Hi Guys, Yes, that was on purpose. In your opinion, what are the most gruesome errors a system admin can make which will result

Re: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread Kurt Buff
Resources - Core-Systems Texas State University 1.512.245.6861 f...@txstate.edu From: Rankin, James R [mailto:kz2...@googlemail.com] Sent: Tuesday, October 30, 2012 2:51 PM To: NT System Admin Issues Subject: Re: 7 shortcuts To Get Your Network Hacked (huh?) Not upgrading software

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread Webster
But how can you properly test stuff in development unless you test it in (on) production? :) Carl Webster Consultant and Citrix Technology Professional http://www.CarlWebster.com -Original Message- From: Kurt Buff [mailto:kurt.b...@gmail.com] Subject: Re: 7 shortcuts To Get Your

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread Michael B. Smith
You know, even with the smiley, some people may think you are serious! -Original Message- From: Webster [mailto:webs...@carlwebster.com] Sent: Tuesday, October 30, 2012 4:32 PM To: NT System Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) But how can you properly

Re: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread Rankin, James R
...@carlwebster.com Date: Tue, 30 Oct 2012 20:32:03 To: NT System Admin Issuesntsysadmin@lyris.sunbelt-software.com Reply-To: NT System Admin Issues ntsysadmin@lyris.sunbelt-software.comSubject: RE: 7 shortcuts To Get Your Network Hacked (huh?) But how can you properly test stuff in development unless you test

Re: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread Steven Peck
in development unless you test it in (on) production? :) Carl Webster Consultant and Citrix Technology Professional http://www.CarlWebster.com -Original Message- From: Kurt Buff [mailto:kurt.b...@gmail.com] Subject: Re: 7 shortcuts To Get Your Network Hacked (huh

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread Webster
shortcuts To Get Your Network Hacked (huh?) You know, even with the smiley, some people may think you are serious! -Original Message- From: Webster [mailto:webs...@carlwebster.com] Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) But how can you properly test stuff

RE: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread Damien Solodow
Admin Issues Subject: RE: 7 shortcuts To Get Your Network Hacked (huh?) Dos Equis I don't always test, but when I do, I prefer to use the Production environment. /Dos Equis Carl Webster Consultant and Citrix Technology Professional http://www.CarlWebster.com -Original Message- From

Re: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread Kurt Buff
unless you test it in (on) production? :) Carl Webster Consultant and Citrix Technology Professional http://www.CarlWebster.com -Original Message- From: Kurt Buff [mailto:kurt.b...@gmail.com] Subject: Re: 7 shortcuts To Get Your Network Hacked (huh?) That leads to #7 on my list

Re: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread Kurt Buff
: Stu Sjouwerman s...@sunbelt-software.com To: NT System Admin Issues ntsysadmin@lyris.sunbelt-software.com Sent: Tuesday, October 30, 2012 12:39 PM Subject: 7 shortcuts To Get Your Network Hacked (huh?) Hi Guys, Yes, that was on purpose. In your opinion, what are the most gruesome errors

Re: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread Kurt Buff
BTW - apropos of this: https://isc.sans.edu/diary/Cyber+Security+Awareness+Month+-+Day+30+-+DSD+35+mitigating+controls/14419 On Tue, Oct 30, 2012 at 10:39 AM, Stu Sjouwerman s...@sunbelt-software.com wrote: Hi Guys, Yes, that was on purpose. In your opinion, what are the most gruesome

Re: 7 shortcuts To Get Your Network Hacked (huh?)

2012-10-30 Thread Mike Tavares
. A fairly new one for some no policies for BYON From: Stu Sjouwerman Sent: Tuesday, October 30, 2012 1:39 PM To: NT System Admin Issues Subject: 7 shortcuts To Get Your Network Hacked (huh?) Hi Guys, Yes, that was on purpose. In your opinion, what are the most gruesome errors a system admin