Re: [ISN] Security organisation's Web site hacked

From: InfoSec News (isn@private)
Date: Wed Jan 26 2005 - 23:26:03 PST


Forwarded from: Harlan Carvey <keydet89@private>

> "In mid-December we switched to a different server and upgraded the
> software," said Richard Starnes, president of the ISSA UK. "In the
> patching process, some of the patches were missed."

Missed?  If security organizations aren't doing it, how can we expect
other organizations that handle sensitive personal data to do the
same?



=====
------------------------------------------
Harlan Carvey, CISSP
"Windows Forensics and Incident Recovery"
http://www.windows-ir.com
http://windowsir.blogspot.com
------------------------------------------



_________________________________________
Open Source Vulnerability Database (OSVDB) Everything is Vulnerable - http://www.osvdb.org/



This archive was generated by hypermail 2.1.3 : Thu Jan 27 2005 - 00:58:28 PST