June, 2009

Speaking at Security 2009

I will be giving a speak at the Security 2009 even in Oslo, October 1st 2009.

My topic is strategic use of information security from a top level executive point of view. I will post link etc as soon as it is available.

Destruction as a state of mind

This is a great image of the humans extraordinary destructive creativity.

 

More great images (about humans, not security nor weapons) here: http://www.behance.net/Gallery/FM365/242634

What security pro's do while waiting for the plane




I am spending quality time at an airport again. The bar serves one of my favorite beers - Guinness. And as in all bars in an airport, there are plenty of other people who mend their thirst with alcohol. Like this bloke across my table. I know his name, The company he is with, what he does there and similar info. He knows nothing about me. This is not uncommon, mind you. Getting people to talk is simply a matter of listening. Asking the right questions. Buying another beer. The same mechanisms you play when picking up someone on the town. So why do I care to write about it this time? This blue eyed man with light blond hair, a tendensy of loosing some of it on the top, and a face that could belong to a 25 and a 45 year old. Resting carelessly on the chair, his Dell XPS laptop on the table and his beer in his hand. Midlevel executive, perhaps big accounts sales guy. He is another security guy. And now I know his story. The story of his customers, what he did in this country, where his favorite office is and who they are currently combatting in court. I must admit it is very tempting to spill his gut all over my blog, but I do not believe he would learn anything at all. So I will only ask you - that is you, not him - to remember that keeping your mouth shut comes with te job. Even when you drink a beer at a foreign airport. Who knows - perhaps I where paid by your employer to check how much you talk? Then you would know. What if I where a competitor? A customer? Someone who see an opportunity? Awareness is not only for the others. Awareness is for us too. Right? -- Post From My iPhone

WIFI fun

Ever since moving back to Oslo, I have had some challenges with my network access from my office. Due to walls thick as an average american (excuse me if I offend you), made out of steel enforced stone and concrete, I decided that I would use two Wifi APs and just bridge them. I have Wifi just out in the hallway, and the reception has been fine with my laptop.

Since I moved my workstation here some time ago, I have had some real challenges with accessing any segments of the net outside of my small office segment (laptop, workstation, testbench, printer). I knew that the wifi connection where to blame. And I knew I had to fix it myself. And as you know, I fix my own stuff only after I have fixed all the other stuff (I believe I am not alone in this...).

I dreaded to have to drill holes in the walls, and stretch cables (from a security point of view, I probably should), and being lazy, I just postponed it.

Until today. I just had enough of Skype dropping every other minute, downloading being impossible, and worse - not being able to use my workstation to upload changes and administer the all the secret stuff that I mess up around the mesh. (No, I will not tell you where and what, since I do not want you to know that it is me that creates the mess!!)

Since I am still lazy, I decided that I would not take the elevator down to the server room and fetch cable, connectors, drill and the rest of the bits and pieces required to mount a cable. Instead, I went out in the sunshine, and just bought myself a new AP, reasoning that the Linksys ethernet bridge that I bought back in 2005 (possibly earlier too), had finally decided to die on me, and that it was just a matter of switching it with a different box. I picked up a Jensen AP with switch included, and where able to clean my office while ditching two devices, bundles of cable and two PSUs.

The Jensen thingie is a cheap box, and after some initial fidling with the setting, connected straight to the AP in the hallway. So far, it seems to be stable, and give me a link to the net that is not going to bug me too much. I hope!

Airport Security

As most of my readers know, I really have a hard time with the airport security circus. So much more fun it is when it actually turns out to be a nice experience. Like today, when there where 9 sec staff waiting to intimidate me, and no line at all. I smiled, they smiled, and they where not only polite but also fun. They joked even. No, I did not try to explain that the chewing gum was really plastic explosives. I do not think they would treat me as nice if I had. -- Post From My iPhone

Off to Budapest for a week

I am now leaving for the European Conference of Junior Chamber International, where I will conduct trainings, party and meet friends from all over the world. I might get inspired to write some posts, but then again, I may be way to busy enjoying myself!
And - I hope to get the Most Outstanding Trainer Award, as I have been nominated to get. 

Is PCI DSS useless?

This is the question asked by the Infosec Cynic. What is your opinion?

Recent comments