Security Basics mailing list archives
a basic lesson in security
From: Paul O'Malley <ompaul () eircom net>
Date: Mon, 27 Oct 2003 19:32:15 +0000
Hiya, Problem information disclosure. Method auto responders. Issue telling me (and who knows who else) you are out of the office and being giving enough information to do social engineering. I am amazed at the amount of people who have set auto responders to this mailing list - bad form folks unless you are all running honey pot organisations (or sub organisations). I suggest that if you have a piece of software that you set it to cause the minimum of messages (i.e. internal only) if you must mail externally you put the organisation at risk. Should you have you a policy to help with dealing with caller verification? Solution: Have a second mail address that you use for list based material. (Now that was hard was it not?) Cheers have a good week folks. Paul O'Malley --------------------------------------------------------------------------- Forum Systems PRESIDIO: PGP / XML GATEWAY APPLIANCE The Presidio integrates PGP data encryption and XML Web Services security to simplify the management and deployment of PGP and reduce overall PGP costs by up to 80%. FREE WHITEPAPER & 30 Day Trial - http://www.securityfocus.com/sponsor/ForumSystems_security-basics_031027 ----------------------------------------------------------------------------
Current thread:
- a basic lesson in security Paul O'Malley (Oct 27)
- Re: a basic lesson in security Andy Cuff [Talisker] (Oct 28)
- Re: a basic lesson in security Ivan Hernandez (Oct 28)
- RE: a basic lesson in security marco misitano (Oct 30)