<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-7196788127833928948.post7416350611332412872..comments</id><updated>2009-11-23T21:03:06.684+01:00</updated><category term='Computer security'/><category term='steganography'/><category term='Blog carnival'/><category term='How To'/><category term='information strategy'/><category term='malware'/><category term='Network security'/><category term='penetration testing'/><category term='competition'/><category term='privacy'/><category term='Physical security'/><category term='audit'/><category term='trojan'/><category term='business continuity'/><category term='SLA'/><category term='forensics'/><category term='software development'/><category term='Templates'/><category term='Solution building'/><category term='encryption'/><category term='Incident Management'/><category term='information security'/><category term='antivirus'/><category term='training and certification'/><category term='GPS'/><category term='microsoft'/><category term='Instant Messaging'/><category term='windows'/><category term='disaster recovery'/><category term='biometrics'/><category term='Databases'/><category term='fraud'/><title type='text'>Comments on Information Security Short Takes: Database Admin Hacking his Ex Firm - Is It All His...</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://www.shortinfosec.net/feeds/7416350611332412872/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7196788127833928948/7416350611332412872/comments/default'/><link rel='alternate' type='text/html' href='http://www.shortinfosec.net/2009/11/database-admin-hacking-his-ex-firm-is.html'/><author><name>Bozidar Spirovski</name><uri>http://www.blogger.com/profile/08748842042511112038</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='28' height='32' src='http://4.bp.blogspot.com/_Hu1rpxRsqcU/Sx1nDHNUtEI/AAAAAAAAAYY/KrJCug2cYWM/S220/Bspirovski.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>3</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-7196788127833928948.post-1882911026698957119</id><published>2009-11-23T21:03:06.684+01:00</published><updated>2009-11-23T21:03:06.684+01:00</updated><title type='text'>Honestly, yes.  The victim would be right in stati...</title><summary type='text'>Honestly, yes.  The victim would be right in stating that the attacker cost them that much money.&lt;br /&gt;&lt;br /&gt;Would they get it? Probably not.  But GEXA (from what I gathered) wasn&amp;#39;t going after Kim for the money, they just stated how much it cost them.&lt;br /&gt;&lt;br /&gt;This was an attack as a result of internal knowledge (which is one aspect where I have to admit my analogy failed) and had to have </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7196788127833928948/7416350611332412872/comments/default/1882911026698957119'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7196788127833928948/7416350611332412872/comments/default/1882911026698957119'/><link rel='alternate' type='text/html' href='http://www.shortinfosec.net/2009/11/database-admin-hacking-his-ex-firm-is.html?showComment=1259006586684#c1882911026698957119' title=''/><author><name>AppSec</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.shortinfosec.net/2009/11/database-admin-hacking-his-ex-firm-is.html' ref='tag:blogger.com,1999:blog-7196788127833928948.post-7416350611332412872' source='http://www.blogger.com/feeds/7196788127833928948/posts/default/7416350611332412872' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1429924961'/></entry><entry><id>tag:blogger.com,1999:blog-7196788127833928948.post-2415555519466936202</id><published>2009-11-23T17:18:29.440+01:00</published><updated>2009-11-23T17:18:29.440+01:00</updated><title type='text'>The attacker is by all means guilty of the attack....</title><summary type='text'>The attacker is by all means guilty of the attack. I am stating that only that the costs of better security should not be dumped onto the attacker - it is the problem of the victim.&lt;br /&gt;But let&amp;#39;s stick with the same analogy: Does the victim ask for reimbursement from the mugger because from now on he/she has to use a taxi or take a longer but way which is better lit and with more police </summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7196788127833928948/7416350611332412872/comments/default/2415555519466936202'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7196788127833928948/7416350611332412872/comments/default/2415555519466936202'/><link rel='alternate' type='text/html' href='http://www.shortinfosec.net/2009/11/database-admin-hacking-his-ex-firm-is.html?showComment=1258993109440#c2415555519466936202' title=''/><author><name>Bozidar Spirovski</name><uri>http://www.blogger.com/profile/08748842042511112038</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.shortinfosec.net/2009/11/database-admin-hacking-his-ex-firm-is.html' ref='tag:blogger.com,1999:blog-7196788127833928948.post-7416350611332412872' source='http://www.blogger.com/feeds/7196788127833928948/posts/default/7416350611332412872' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-841701462'/></entry><entry><id>tag:blogger.com,1999:blog-7196788127833928948.post-1834244065682708549</id><published>2009-11-23T15:16:34.038+01:00</published><updated>2009-11-23T15:16:34.038+01:00</updated><title type='text'>While I don&amp;#39;t disagree that the lack of proces...</title><summary type='text'>While I don&amp;#39;t disagree that the lack of process and protection was in place..  This is like asking the victim of a mugging to take responsbility for their own actions.&lt;br /&gt;&lt;br /&gt;Yes, maybe the person needed to more aware of their surroundings, but please -- let&amp;#39;s not get in the habit of pointing fingers at the victim.</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7196788127833928948/7416350611332412872/comments/default/1834244065682708549'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7196788127833928948/7416350611332412872/comments/default/1834244065682708549'/><link rel='alternate' type='text/html' href='http://www.shortinfosec.net/2009/11/database-admin-hacking-his-ex-firm-is.html?showComment=1258985794038#c1834244065682708549' title=''/><author><name>AppSec</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.shortinfosec.net/2009/11/database-admin-hacking-his-ex-firm-is.html' ref='tag:blogger.com,1999:blog-7196788127833928948.post-7416350611332412872' source='http://www.blogger.com/feeds/7196788127833928948/posts/default/7416350611332412872' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1429924961'/></entry></feed>
