RSS

Tag Archive | "RSA"

APT and attribution

I read an interesting analysis of the malware involved in the March RSA breach. The analysis was done by J. Oquendo and posted over at Infosec Island. After his analysis of the malware involved he believes that “its inconclusive but points more to RBN than APT.”. Read through his analysis and see what you think. [...]

Continue reading...

My new job: Fighting APT at RSA

      Starting Monday July 11th I will be working with a newly formed group at RSA / EMC that is focused on APT and SMT. For 3 years I have been on the front lines of this fight as the IT Security Manager for MIT Lincoln Laboratory, a Federally Funded Research and Development [...]

Continue reading...

Some things to look for in your SecurID / Remote Access logs

    The RSA SecurID token has arguably been the defacto second factor authenticator for many years. Despite the recent breach at RSA I do not see many organizations moving to alternate vendors or other second factor technologies, like PKI / SmartCards or telephone based solutions. In the wake of the RSA breach most companies [...]

Continue reading...

Bad Behavior has blocked 1165 access attempts in the last 7 days.

Rodney's 404 Handler Plugin plugged in.