How to select a CAAT
CAAT stands for Computer Assisted Audit Techniques
This is a common thing of discussion among IS Auditors is "which one is best - CAATs or Manual method of IS Audit". Sometimes manual method is not enough to find out effective and efficient IS Audit results. On the other hand in many instances use of CAATs gives less efficient results than corresponding manual IS Audit methods.
Monday, November 24, 2008
How to select a CAAT
IP Security & Authentication Header (AH)
IP Security & Authentication Header (AH)
IP Security (IPSec) is a super set of protocols which to large extent ensure security of Internet Protocol (IP). Beside Internet Key Exchange (IKE) two other important protocol supported by IPSec are
1. Authentication Header (AH)
2. Encapsulating Security Payload (ESP)
Monday, November 17, 2008
Access Control in UNIX based operating systems
Access Control in UNIX based operating systems:
A lot of UNIX based operating systems are available. Although basic architecture is same for all these Operating System but they varies in functionality.
Friday, October 24, 2008
Vishing
Vishing like phishing is a socially engineered attempt to get your financial information. Unlike phishing rather than luring you to a website, it lures you to a phone number
read more
Antivirus Plasma
Antivirus Plasma is a faux security program that does not provide any additional security features or functions for your computer. As we thought, Antivirus Plasma is nothing more than another rogue application that performs various malicious actions to get computer users to purchase the Antivirus Plasma
read more
Friday, September 26, 2008
Chrome Antics: Did Google Reverse-Engineer Windows?
Since its release a few weeks ago, curious developers have been sniffing through the source code for Google's new Chrome web browser.
read more
The Hacker's Voice Digest Issue - No. 3 Released Today!!
Contents:# Rough guide to number stations - Part 3 By Demonix# History of BT Strowger Systems - By Belial# List of interesting phone numbers - Blue_Chimp# VoIP spectacular with 10nix and...# Hacking Vonage - Belial# Easy Peasy ID theift - Hyper# Urban Exploration - BT exchanges# Rants# News# Interviews# and a fuckton more!...
read more
Top 5 Very Important Security Tests For Your Computer
Until and unless you are not attacked by any virus or spyware you think that your computer security is very high but when your PC gets infected it is too late. So if you think that you have a good Internet security why not you go for some Internet Security Tests :
read more
IDS – an Information security tool to protect your network
How an Intrusion Detection System or IDS can help Network administrator, Information Security professionals, IS Auditors and Penetration testers for detection of any external or internal network intrusion(s)...
read more | digg story
Thrown in the Fire - Database Corruption Investigation
Analyzing an incident when the manufacturer claims that it's an operator error and the operator claims that it is an application error is one of the most daunting tasks of a security officer.
read more
Monday, September 15, 2008
Five Generations of programming languages
So far 5 generations of programming languages have been defined. These ranges from machine level languages (1GL) to languages necessary for AI & Neural Networks (5GL).
read more | digg story
Friday, September 12, 2008
How Crackers Deface Websites? Why They Do It?
The title speaks itself. Through this blog post I am not purposing to influence you to start defacing, but to briefly give you a better understanding of how and why it is done. ...Almost everyday I visit Zone-H’s archive of special digital attacks, I find that at least 1 or 2 attacks were done against US governmental web servers...
read more
Thursday, September 11, 2008
INCREASE SPEED LIMIT OF INTERNET
Does your ISP deliver the speed you pay for? It’s rather easy to test your broadband internet speed. However, there are a few things to keep in mind. For one, ISPs usually promise an “up to” speed, so you can’t expect top performance at all times
read more | digg story
Wednesday, September 10, 2008
Kerberos - a Single Sign-on Network Security Tool
Have you ever worked in an environment where 10 or more different user credentials and passwords are required for different applications and services.What if, the number of applications and user credentials are even more?
read more | digg story
5 Reasons to Consult Your SysAdmin for New Systems
A lot of organizations isolate system administrators from new system implementations, lead by the premise that their admin teams need to focus on maintenance, and may not bring benefit to the implementation when consultants are engaged to implement. But Bear in mind that SysAdmins have special insight that any project manager will find useful
read more
Thursday, September 4, 2008
Error detection & correction by Parity Checking
In parity checking an extra bit called a parity bit is added to a byte of data or more appropriately a data set to detect if data set is transmitted correctly. This is a means of error detection and sometimes error correction. Parity bit is sometimes also called check bit.
read more | digg story
10 important Benefits of Decision Support System (DSS)
A Decision Support System (DSS) is an Interactive Information System which may encompass Expert System (s), Artificial Intelligence / Business Intelligence whose function is to collect semi structured information (data), to analyze and to shape the data to form a model .and present...
read more | digg story
Tuesday, September 2, 2008
The Web Incidents Hacking Database
The web hacking incident database (WHID) is a Web Application Security Consortium project dedicated to maintaining a list of web applications related security incidents. The database is unique in tracking only media reported security incidents that can be associated with a web application security vulnerability.
read more
Comparison of different SQL implementations
The following tables compare how different DBMS products handle various SQL (and related) features. If possible, the tables also state how the implementations should do things, according to the SQL standard.
read more | digg story
‘Forgot your password?’ may be weakest link in web security
Almost everyone forgets a Web site password once in a while. When you do, you click on the familiar Forgot your password? link. As an experiment, Thompson recently asked a few friends for permission to "hack" into their bank accounts. Using only information gathered from Web sites such as Facebook, he found his way in to each account within minutes
read more
Subscribe free via email
My Favourite Blog List
Blog to watch
Labels
- Access Control (1)
- Anti-Virus (2)
- Article from Others (47)
- backup and Recovery (1)
- CAAT (1)
- Cryptography (1)
- Cyber Security (11)
- Data Protection (6)
- Data Security (10)
- Decision Support System (1)
- DMZ (1)
- Error detection (2)
- Firewall (2)
- Firewall audit (2)
- Google (1)
- Hacking (4)
- Identity Stealing (3)
- IDS (1)
- Information Security (51)
- internet (5)
- IS Audit (5)
- IT Risk (3)
- Kerberos (1)
- Media disposal (1)
- Network Security (2)
- Networking (1)
- OpenID (1)
- Outsourcing (1)
- password (1)
- Penetration Testing (3)
- PKI (1)
- Privacy (1)
- Programming (1)
- SAS 70 (1)
- Single Sign-on (1)
- Social Engineering (1)
- SSO (1)
- sysAdmin (1)
- System Administration (1)
- Vulnerability Assessment (1)
- Web security (4)
- Wireless network (2)
- WLAN (1)