BeyondTrust

Security in Context: The BeyondTrust Blog

Welcome to Security in Context

Bringing you news and commentary on solutions and strategies for protecting critical IT infrastructure in the context of your business.

Securing Your Reputation…because it’s Everything.

Posted June 25, 2012    Peter McCalister

Consumer facing technology companies seem to be falling victim to data breaches more recently and as a result are coming under the microscope for not having proper security measures in place. With so much press focusing on this issue, not only are companies forced to become transparent in their security practices, their reputation is stained, resulting in consumer confidence diminishing.

Earlier this month Vincente Silveira, director at LinkedIn, confirmed a breach of security resulting in six and a half million passwords being posted on a Russian online forum. Roughly 25 percent of their worldwide users were directed to change their passwords due this immense hack. The same hacker also allegedly stole 1.5 milllion passwords from the online dating site eHarmony this month.

As an aftershock to the hype, LinkedIn is now facing a $5 million class-action lawsuit. In a recent article by eWeek, the suit claims the social networking site’s data security measures were ineffective. The article goes on to state that while LinkedIn did use a technique called hashing to encrypt information, they failed to add a second layer called salting.

Diminishing user confidence around the security of a technology’s platform can have long term effects on reputation, especially for a company that recently became publically traded. Not only user base, but investor confidence is tried too. No one says it better than Warren Buffet, “It takes 20 years to build a reputation and five minutes to ruin it.”

Taking the proper steps to have a fortified security perimeter in place prevents having to deal with painstaking damage control. Ongoing and frequently updated security processes are crucial to stay competitive in an ever-changing threat landscape.

Leave a Reply

Additional articles

dave-shackleford-headshot

Tales from the Datacenter: Vulnerability Management Nightmares

Posted May 27, 2015    Dave Shackleford

Vulnerability scanning, threat management, risk analysis, patching, and configuration management are some of the major activities usually associated with vulnerability management, and none of these are new…so why are we failing so badly at many of them?

Tags:
, ,
Sudo_logo

Don’t Create a Different sudoers File for Each System

Posted May 20, 2015    Randy Franklin Smith

What if you have multiple Linux and/or Unix systems? Sudo management can become onerous and unwieldy if you try to manage a different sudoers file on each system. The good news is that sudo supports multiple systems.

password-safety

What Does Microsoft Local Administrator Password Solution Really Do?

Posted May 19, 2015    Morey Haber

LAPS is a feature that allows the randomization of local administrator accounts across the domain. Although it would seem that this capability overlaps with features in BeyondTrust’s PowerBroker Password Safe (PBPS), the reality is it is more suited for simple use cases such as changing the local Windows admin account and not much more.

Tags:
, ,