Security Incidents mailing list archives
RE: Incident investigation methodologies
From: "Tim Hollebeek" <tholleb () teknowledge com>
Date: Thu, 10 Jun 2004 10:40:42 -0700
Harlan Carvey wrote:As do I. And I also think that it would greatly benefit the community, by moving us beyond the stagnation faced by phrases like "...but a hacker could...". Some small degree of paranoia...perhaps "caution" is a better term...is necessary in the security profession, as no one person can know everything there is to know. However, many of us working together can know quite a lot...
I remember I was in the office of the head of a security consulting group, and on his whiteboard was a list of quotes including "Trust Nothing". I asked him if he really believed it, since after all you always have to trust SOMETHING, if only just a little. He smiled, and shrugged, and said the customers like to hear it.
Current thread:
- Re: Incident investigation methodologies FRCMSEC (Jun 04)
- Re: Incident investigation methodologies Harlan Carvey (Jun 04)
- <Possible follow-ups>
- Re: Incident investigation methodologies Maarten Van Horenbeeck (Jun 04)
- RE: Incident investigation methodologies Fiscus, Kevin (Jun 04)
- RE: Incident investigation methodologies Harlan Carvey (Jun 07)
- Re: Incident investigation methodologies Barry Fitzgerald (Jun 09)
- RE: Incident investigation methodologies Tim Hollebeek (Jun 10)
- Re: Incident investigation methodologies Harlan Carvey (Jun 14)
- RE: Incident investigation methodologies Harlan Carvey (Jun 07)
- RE: Incident investigation methodologies Gaydosh, Adam (Jun 04)
- RE: Incident investigation methodologies Steven Trewick (Jun 07)
- RE: Incident investigation methodologies Harlan Carvey (Jun 07)
- RE: Incident investigation methodologies Dave Paris (Jun 07)
- RE: Incident investigation methodologies Harlan Carvey (Jun 07)
- RE: Incident investigation methodologies Fiscus, Kevin (Jun 07)
- RE: Incident investigation methodologies pfft (Jun 13)
- RE: Incident investigation methodologies Harlan Carvey (Jun 14)
- RE: Incident investigation methodologies pfft (Jun 14)
- RE: Incident investigation methodologies pfft (Jun 13)