Comments

    The Technical Side of PCI DSS

    If you’re new here, you may want to subscribe to my RSS feed. Thanks for visiting!

    The Technical Side of PCI DSS: “

    What merchants don’t know about the technical side of protecting customer data can be costly.

    The Payment Card Industry Data Security Standard (PCI DSS) describes 12 system and procedural requirements for securing customer credit card data that is transmitted, processed, [...]

    Secure websites in plain English

    Secure websites in plain English: “

    Commoncraft has released a new video: ‘Secure websites in plain English’, which teaches the
    basics of website security and how to recognize a secure site.

    An overview of the most common security threats
    How SSL encryption works
    How to recognize a secure connection
    In which situations security is most important

    Secure websites in plain English

    (Via Jane’s E-Learning Pick of the Day.)

    Call for Papers: CARO2010 Workshop

    Call for Papers: CARO2010 Workshop: “F-Secure is organizing the next CARO Technical Workshop. It will be held in the end of May in Helsinki, Finland. Previous workshops have been in Iceland, The Netherlands and Hungary.

    Call for Papers is open. We’re looking for technical presentation relevant to the topic of Big Numbers in malware field.

    For more information, please see CARO2010.org.

    On 19/11/09 At 12:51 PM

    (Via [...]

    Security vs. Usability

    Security vs. Usability: “

    Good essay: ‘When Security Gets in the Way.’

    The numerous incidents of defeating security measures prompts my cynical slogan: The more secure you make something, the less secure it becomes. Why? Because when security gets in the way, sensible, well-meaning, dedicated people develop hacks and workarounds that defeat the security. Hence the prevalence of doors propped open by bricks and wastebaskets, of [...]

    OpenSSO Single Sign-on Plugin for WordPress

    OpenSSO Single Sign-on Plugin for WordPress: “

    Encouraged by a comment on my post about the OpenSSO module for Drupal, and the amount of OpenSSO/Drupal buzz on Twitter, I decided to attack WordPress next. Although WordPress has a very different plugin model from Drupal, I was able to reuse much of the code from the Drupal module and get a basic single sign-on plugin [...]

    Google Apps + OpenID = identity hub for SaaS

    Google Apps + OpenID = identity hub for SaaS: “We’re happy to announce that the Google OpenID Federated Login API has been extended to Google Apps accounts used by businesses, schools, and other organizations. Individuals in these organizations can now sign in to third party websites using their Google Apps account, without sharing their credentials with third parties.

    In addition, Google Apps can now [...]