OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Mike Lyman (mlymanwest-point.org)
Date: Tue Jan 15 2002 - 14:54:13 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    On 1/15/2002 at 4:11 PM Evan Mann wrote:
    >Up until now, I've been under the assumption, that as
    >long as any of my external devices are patched and
    >protected with the most current available, that I havn't
    >had much to worry about, largely because everything

    Not a good assumption. If you can get in to the network so could somebody
    else. Also, don't forget that the majority of break ins are done by
    insiders. Still 70-80% last time I saw any numbers. Those insiders are
    explointing their own access and vulnerabilities that weren't patched
    because the systems are "safely" inside the firewall.

    Don't forget RAS users. If your RAS users are not protected, you are not
    protected.

    A hard crunchy perimeter won't protect you from a poorly configured and
    managed interior network.

    Mike Lyman
    mlymanwest-point.org
    pgp keyid 0xD7BBADAD