Risks to Know About

How to Prepare Your Enterprise for the Recently Disclosed TCP Denial of Service Vulnerability

The TCP Denial of Service vulnerability that was recently partially disclosed by Outpost24 has left many InfoSec managers wondering whether any action is required to protect their enterprise.  While there are no patches available, and no workarounds have been discovered, now is the time to begin preparations for actions that may need to be taken [...]


Robert E. Lee Discusses TCP Denial of Service Vulnerability with SC Magazine

A full transcript of the October 6th edition of the SC Magazine Podcast, in which Robert E. Lee discusses the TCP Denial of Service vulnerability that was discovered by Outpost24.


Outpost24 TCP Denial of Service Vulnerability Interview Transcript

The following text is the complete transcript of an interview of Robert Lee and Jack Louis from Outpost24.  Robert and Jack discuss their discovery of a flaw in TCP that results in a denial of service with Brenno de Winter of De Beveiligingsupdate. The article (in Dutch) can be found here, and the full MP3 [...]


Google Chrome in the Enterprise

Google released a beta version of their Google Chrome browser a few weeks ago, and many enterprises haven’t yet decided how Chrome impacts them. I suggest that it’s important to be proactive and disallow installation of Chrome on enterprise-managed machines.
Google has a truly admirable record for releasing products that have no known vulnerabilities, even [...]


High-Profile Domain Expirations Highlight Need for Better Domain Name Management

How are you managing your company’s Internet domain names?  Based on my informal survey of the domain names of the Fortune 100 largest public companies in the US, it seems apparent that domain name management is an area that needs some attention.
Though domain names are (obviously) crucial to a company’s Internet presence, many companies [...]