Lost your password?

Blogs about: Security Best Practices

Featured Blog

Combatting Scareware

Tom wrote 1 month ago: TrustCC helps banks and credit unions navigate many kinds of IT threats. One of the most interesting … more →

Tags: emerging threats, Adware, Kaspersky Labs, Scareware, Spyware, Virus

You'd Think a Security Product Would Make You More Secure!

Alison wrote 2 months ago: This week we hacked a bank using an exploit that takes advantage of a vulnerability in Symantec … more →

Tags: emerging threats, Adobe, Domain Administrator Privileges, Microsoft, Patch Management, SYM09-007, symantec anti virus

Did I mention Banner Ads can deliver a malicious payload?

Tom wrote 2 months ago: At both last week’s Washington Banker’s Association (WBA) Technology Conference and this … more →

Tags: emerging threats, Best Practice, security awareness training, Virus

Swine Flu Part 2… Are You Prepared?

Alison wrote 4 months ago: With the second phase of the Novel A (H1N1) influenza virus (commonly known as Swine Flu) coming ove … more →

Tags: IT Audit Best Practices, Business Continuity Planning, CDC, h1n1, Pandemic Preparedness, swine flu

Network Enclaves – Enhanced Internal Network Segmentation

Alison wrote 4 months ago: As the size of a Community Financial Institution grows, so will their network environment. And with … more →

Tags: DMZ, Firewall, Network Enclave, network segmentation, Security Enclave

Be attentive to Non-Microsoft Vulnerabilities

Tom wrote 5 months ago: Most TrustCC clients have active and effective patch management programs.  We have certainly encoura … more →

Tags: TrustCC, emerging threats, software updates, Patch Management, Best Practice, Hardening Procedures

Sanitize Your Flash Drive

Alison wrote 7 months ago: Ever thought about what really happens to your files after you empty your recycle bin? Are they real … more →

Tags: flash drive, data sanitization, eraser, Storage Device, Delete Files, Department of Defense

Hardening Procedures

Alison wrote 9 months ago: As an IT audit and penetration testing firm, one of the key areas we see as deficient in most organi … more →

Tags: IT Audit Best Practices, Firewall, Vendor Management, Best Practice, default settings, laptop security, Hardening Procedures, server

Playing it safe on the World Wireless Web

Tom wrote 10 months ago: At nearly every presentation we give, there is always at least one or two people that ask us about w … more →

Tags: Best Practice, default settings, Wireless Security, WPA2, laptop security

Were You Able to Hack Our Mainframe?

Tom wrote 10 months ago: We just spent the last 15 minutes laying out for our client how we had hacked their Microsoft networ … more →

Tags: IT Audit Best Practices, Security Weakness, Security testing, Penetration Testing, Mainframe

The Effectiveness of Exploit Frameworks and Point-and-Click Hacking

Tom wrote 11 months ago: Within the past two weeks we hacked into and gained access to privileged customer information at thr … more →

Tags: Security Weakness, Patch Management, Security testing, Vulnerability, Penetration Testing, Vulnerability Assessment

Top 25 Most Dangerous Programming Errors2 comments

Kapil Viren Ahuja wrote 11 months ago: The 2009 CWE/SANS Top 25 Most Dangerous Programming Errors is a list of the most significant program … more →

Tags: Architecture, Beginner, Design, Expert, Intermediate, Security

Keep your Home Computer Safe!

Tom wrote 11 months ago: TrustCC’s blog is intended to provide articles relevant to financial institutions.  Why an art … more →

Tags: emerging threats, Remote Access, Firewall, software updates, Anti-Virus, Anti Spyware, security awareness training

Are you "at the mercy of your service provider"?

Tom wrote 1 year ago: We received an email today from a credit union examiner in the eastern United States.  We had the pr … more →

Tags: glba compliance, security awareness training, Vendor Management, SAS70

Browsers fail password tests...

Tom wrote 1 year ago: A security research firm* posted the results of their recent browser password tests about a week ago … more →

Tags: emerging threats, security awareness training, Password Requirements, Policy

We've hacked several more financial institutions using old exploits...

Tom wrote 1 year ago: Microsoft released an “out of band” Security Bulletin again this week (MS08-078).  See M … more →

Tags: Security Weakness, Exploit, Patch Management, Security testing

NEW ClickJacking Attack

Tom wrote 1 year ago: A new attack method that is being addressed by web technologists is the ClickJacking attack.  ClickJ … more →

Tags: emerging threats, Anti-Virus, Anti Spyware, security awareness training, Vulnerability, Software Update

How Secure R your Systems?

Tom wrote 1 year ago: I was asked the other day by a multinational business man whether or not the typical business is “se … more →

Tags: IT Audit Best Practices, Firewall, IT Risk Assessment, Penetration Testing, Vulnerability Assessment, Router, default settings

Ask Employees, What is More Valuable?

Tom wrote 1 year ago: The Office of Thrift Supervision (OTS) is the federal regulatory agency that oversees federally char … more →

Tags: glba compliance, security awareness training, Best Practice


Related Tags
All →

Follow this tag via RSS