This year was number six in the mostly annually run Ruxcon. First started in 2003 at the UTS in Sydney it has without a doubt become Australia Premier Computer Security conference. 2010 was a scene change with the venue being downtown Melbourne for the first time. Ruxcon this year quite easily sold out well in [...]
Security
From Brisbane to Melbourne’s Ruxcon 2010
Posted in General Business, Security on December 3rd, 2010 by aaron – Be the first to comment
WLAN (802.11) Security Mechanisms
Posted in Security on November 29th, 2010 by Rachael – Be the first to commentThe following blog details the security mechanisms implemented in the 802.11-1997 standard, as well as other configuration and operating modes intended to improve network security. Mechanisms within the 802.11-1997 Standard The original 802.11-1997 standard only contains security mechanisms for the exchange of data between stations [1]. The 802.11-1997 standard claims to offer “confidentiality, authentication and [...]
Typical WLAN (802.11) Threats
Posted in Security on November 27th, 2010 by Rachael – Be the first to commentThe following blog post outlines some of the threats to a typical 802.11 network. Denial of Service This threat could potentially disrupt the connection between two devices, or it could even crash the entire Basic Server Set (BSS) [3]. There are many ways in which this threat can be realised. In an active attack, an [...]
WLAN (802.11) MAC Security Enhancement Amendment
Posted in Security on November 18th, 2010 by Rachael – Be the first to commentThe 802.11i standard was designed to enhance the security in the MAC layer of 802.11 networks. The specification details two categories of security algorithms; RSNA (Robust Security Network Association) and Pre-RSNA [1]. Pre-RSNA security has already been discussed in section 4.1. An RSNA “defines a number of security features in addition to wired equivalent privacy [...]
Phishing and Pharming Defence Mechanisms
Posted in Security on November 16th, 2010 by Rachael – Be the first to commentPhishing and pharming education for employees is essential to begin to counter the previously mentioned threats toward the company and employees [1]. Education combined with anti-spam protection, attachment blocking and digital signing and validation of email would vastly reduce the risk of an adversary using email to try and obtain employee details, install malicious software [...]




