funsec mailing list archives
Re: The PCI sky *isn't* falling!
From: "David Harley" <david.a.harley () gmail com>
Date: Tue, 24 Mar 2009 08:44:13 -0000
To a point, it seems all certification processes can be defeated by creative responses or other activity one could loosely call "cheating".
I don't think it's a matter of "cheating" PCI and various things that start with ISO: most of them have an element of "tell us what you do and we'll audit you for conformance with that". The cheating is to pass off such a certification as something it isn't. -- David Harley BA CISSP FBCS CITP Small Blue-Green World __________ Information from ESET Smart Security, version of virus signature database 3956 (20090323) __________ The message was checked by ESET Smart Security. http://www.eset.com _______________________________________________ Fun and Misc security discussion for OT posts. https://linuxbox.org/cgi-bin/mailman/listinfo/funsec Note: funsec is a public and open mailing list.
Current thread:
- Re: The PCI sky *isn't* falling!, (continued)
- Re: The PCI sky *isn't* falling! Anton Chuvakin (Mar 24)
- Re: The PCI sky *isn't* falling! Justin D. Scott (Mar 23)
- Re: The PCI sky *isn't* falling! Drsolly (Mar 24)
- Re: The PCI sky *isn't* falling! Justin Scott (Mar 24)
- Re: The PCI sky *isn't* falling! Jon Kibler (Mar 24)
- security theater is useful, stop abusing it [was: PCI] Gadi Evron (Mar 24)
- Re: security theater is useful, stop abusing it [was: PCI] Benjamin April (Mar 24)
- Re: security theater is useful, stop abusing it [was: PCI] Imri Goldberg (Mar 24)
- Re: security theater is useful, stop abusing it [was: PCI] nick hatch (Mar 24)
- Re: The PCI sky *isn't* falling! David Harley (Mar 24)
- Re: The PCI sky *isn't* falling! Jon Kibler (Mar 24)
- why is certification useful anyway? [was: PCI] Gadi Evron (Mar 24)
- Re: The PCI sky *isn't* falling! Rob, grandpa of Ryan, Trevor, Devon & Hannah (Mar 23)
- Re: The PCI sky *isn't* falling! Gadi Evron (Mar 24)