<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Kevin Townsend</title>
	<atom:link href="http://kevtownsend.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://kevtownsend.wordpress.com</link>
	<description>Security centric issues, news and rants – and other things.</description>
	<lastBuildDate>Fri, 27 Jan 2012 14:37:32 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='kevtownsend.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Kevin Townsend</title>
		<link>http://kevtownsend.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://kevtownsend.wordpress.com/osd.xml" title="Kevin Townsend" />
	<atom:link rel='hub' href='http://kevtownsend.wordpress.com/?pushpress=hub'/>
		<item>
		<title>The EU and the UK cannot have signed ACTA: neither the BBC nor the Europa press service know anything about it</title>
		<link>http://kevtownsend.wordpress.com/2012/01/27/the-eu-and-the-uk-cannot-have-signed-acta-neither-the-bbc-nor-the-europa-press-service-know-anything-about-it/</link>
		<comments>http://kevtownsend.wordpress.com/2012/01/27/the-eu-and-the-uk-cannot-have-signed-acta-neither-the-bbc-nor-the-europa-press-service-know-anything-about-it/#comments</comments>
		<pubDate>Fri, 27 Jan 2012 09:35:49 +0000</pubDate>
		<dc:creator>Kevin Townsend</dc:creator>
				<category><![CDATA[All]]></category>
		<category><![CDATA[General Rants]]></category>
		<category><![CDATA[Politics]]></category>
		<category><![CDATA[ACTA]]></category>
		<category><![CDATA[bbc reports]]></category>
		<category><![CDATA[conspiracy of silence]]></category>

		<guid isPermaLink="false">http://kevtownsend.wordpress.com/?p=3664</guid>
		<description><![CDATA[Isn’t it strange that the BBC reports that “Thousands of protesters have taken to Poland&#8217;s streets over the signing of an international treaty activists say amounts to internet censorship”? And then goes on to say that “Poland was one of several European Union countries, including Finland, France, Ireland, Italy, Portugal, Romania and Greece, to sign [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3664&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Isn’t it strange that the BBC reports that “Thousands of protesters have taken to Poland&#8217;s streets over the signing of an international treaty activists say amounts to internet censorship”? And then goes on to say that “Poland was one of several European Union countries, including Finland, France, Ireland, Italy, Portugal, Romania and Greece, to sign the treaty on Thursday but it appeared to be the only place where it caused protest.”</p>
<p>Very strange since the BBC is probably the UK’s leading news service and certainly the UK’s national news service paid for by the UK people – and it omits to mention that the UK also signed this document at the same time in the same place in Tokyo.</p>
<p>Isn’t it strange that the EU’s news service says nothing about it also signing the ACTA agreement at the same time in the same place in Tokyo?</p>
<p>And that neither news service seems to be aware that Kader Arif, the appointed rapporteur for ACTA in the European Parliament, has resigned in protest, saying he will not take part in this masquerade?</p>
<p>Conspiracy of silence? Too damn right.</p>
<p><strong>UPDATE</strong><br />
And finally the BBC catches up – 24 hours after the news breaks. The BBC is supposed to let the cat out of the bag, not chase after it when it escapes.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kevtownsend.wordpress.com/3664/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kevtownsend.wordpress.com/3664/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kevtownsend.wordpress.com/3664/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kevtownsend.wordpress.com/3664/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kevtownsend.wordpress.com/3664/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kevtownsend.wordpress.com/3664/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kevtownsend.wordpress.com/3664/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kevtownsend.wordpress.com/3664/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kevtownsend.wordpress.com/3664/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kevtownsend.wordpress.com/3664/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kevtownsend.wordpress.com/3664/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kevtownsend.wordpress.com/3664/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kevtownsend.wordpress.com/3664/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kevtownsend.wordpress.com/3664/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3664&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kevtownsend.wordpress.com/2012/01/27/the-eu-and-the-uk-cannot-have-signed-acta-neither-the-bbc-nor-the-europa-press-service-know-anything-about-it/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/42a653d686ce11c9c1df1855a3349a94?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">kevtownsend</media:title>
		</media:content>
	</item>
		<item>
		<title>Is this the new national DNA identity database?</title>
		<link>http://kevtownsend.wordpress.com/2012/01/26/is-this-the-new-national-dna-identity-database/</link>
		<comments>http://kevtownsend.wordpress.com/2012/01/26/is-this-the-new-national-dna-identity-database/#comments</comments>
		<pubDate>Thu, 26 Jan 2012 00:01:43 +0000</pubDate>
		<dc:creator>Kevin Townsend</dc:creator>
				<category><![CDATA[All]]></category>
		<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[scam]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[ACTA]]></category>
		<category><![CDATA[data protection]]></category>
		<category><![CDATA[civil liberties]]></category>
		<category><![CDATA[DNA]]></category>
		<category><![CDATA[genome sequence database]]></category>
		<category><![CDATA[national dna database]]></category>
		<category><![CDATA[health researchers]]></category>
		<category><![CDATA[selling drugs]]></category>

		<guid isPermaLink="false">http://kevtownsend.wordpress.com/?p=3657</guid>
		<description><![CDATA[You have to look long and hard, but eventually you find it. There, on page 51 of &#8216;Building on our inheritance &#8211; Genomic technology in healthcare&#8217; is the one and only mention of the national whole genome sequence database. From the beginning you know it must exist. The report talks throughout about the benefits that [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3657&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>You have to look long and hard, but eventually you find it. There, on page 51 of &#8216;Building on our inheritance &#8211; Genomic technology in healthcare&#8217; is the one and only mention of the national whole genome sequence database. From the beginning you know it must exist. The report talks throughout about the benefits that will accrue to mankind from the widespread use whole genome sequence research; but it only makes sense if the data is complete and freely available. But not until page 51, and only on page 51, is the national genome database mentioned.</p>
<blockquote><p>This would not necessarily require data stored locally: patient sequence data could be stored securely in a national database, making it accessible to the centres but also to the patient’s physician or GP.</p></blockquote>
<p>let&#8217;s be clear: this is a national DNA database. But it&#8217;s OK, because this is for health rather than law enforcement. And it will, yeah right, only be available to health officials, and health researchers, and pharmaceutical companies and academics and probably anyone who pays for it &#8211; internationally. The report makes very clear that if national research is good, international research is very much better.</p>
<p>It is, in effect, a national DNA database writ large. It has all the worst elements of the police DNA database combined with the NHS central records database and will undoubtedly cost a great deal more than both and be more dangerous and insecure than either.</p>
<p>And for what? &#8220;Government should not be duped by hype about genomics: some useful applications will exist but most diseases in most people and many adverse drug reactions are not predictable from people&#8217;s genes,&#8221; said Dr Helen Wallace, Director of GeneWatch UK. &#8220;Storing personal genomes for no reason would lead to a massive marketing scam, based on selling drugs to healthy people who are told they are at risk of getting diseases in the future.&#8221;</p>
<p>My concern is that government is quite relaxed about a new national DNA database from which it will gain all the benefits with none of the blame; that, in effect, a national genome database is already a conspiracy between government and the pharmaceutical companies in just the way that ACTA and DEA and SOPA and PIPA and others are a conspiracy between governments and the entertainment industry.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kevtownsend.wordpress.com/3657/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kevtownsend.wordpress.com/3657/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kevtownsend.wordpress.com/3657/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kevtownsend.wordpress.com/3657/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kevtownsend.wordpress.com/3657/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kevtownsend.wordpress.com/3657/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kevtownsend.wordpress.com/3657/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kevtownsend.wordpress.com/3657/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kevtownsend.wordpress.com/3657/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kevtownsend.wordpress.com/3657/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kevtownsend.wordpress.com/3657/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kevtownsend.wordpress.com/3657/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kevtownsend.wordpress.com/3657/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kevtownsend.wordpress.com/3657/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3657&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kevtownsend.wordpress.com/2012/01/26/is-this-the-new-national-dna-identity-database/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/42a653d686ce11c9c1df1855a3349a94?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">kevtownsend</media:title>
		</media:content>
	</item>
		<item>
		<title>Last week’s stories on Infosecurity Magazine</title>
		<link>http://kevtownsend.wordpress.com/2012/01/23/last-weeks-stories-on-infosecurity-magazine/</link>
		<comments>http://kevtownsend.wordpress.com/2012/01/23/last-weeks-stories-on-infosecurity-magazine/#comments</comments>
		<pubDate>Mon, 23 Jan 2012 17:56:24 +0000</pubDate>
		<dc:creator>Kevin Townsend</dc:creator>
				<category><![CDATA[Security News]]></category>
		<category><![CDATA[All]]></category>
		<category><![CDATA[ICO]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[biometrics]]></category>
		<category><![CDATA[data sharing]]></category>
		<category><![CDATA[trustworthy computing initiative]]></category>
		<category><![CDATA[opus research]]></category>
		<category><![CDATA[voice biometrics]]></category>
		<category><![CDATA[european corporate governance]]></category>
		<category><![CDATA[TwC]]></category>

		<guid isPermaLink="false">http://kevtownsend.wordpress.com/?p=3652</guid>
		<description><![CDATA[The news stories written for Infosecurity Magazine last week are: Law Society tougher than the ICO on Andrew Crossley Mixed but depressing findings in European corporate governance recruitment Ransomware pretending to be law enforcement Olympic security dossier left on London train Voice biometrics will be the authentication of choice, says Opus Research SP Toolkit illustrates [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3652&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>The news stories written for Infosecurity Magazine last week are:</p>
<ul>
<li><a href="http://www.infosecurity-magazine.com/view/23358/law-society-tougher-than-the-ico-on-andrew-crossley/" target="_blank">Law Society tougher than the ICO on Andrew Crossley</a></li>
<li><a href="http://www.infosecurity-magazine.com/view/23356/mixed-but-depressing-findings-in-european-corporate-governance-recruitment/" target="_blank">Mixed but depressing findings in European corporate governance recruitment</a></li>
<li><a href="http://www.infosecurity-magazine.com/view/23353/ransomware-pretending-to-be-law-enforcement/" target="_blank">Ransomware pretending to be law enforcement</a></li>
<li><a href="http://www.infosecurity-magazine.com/view/23333/olympic-security-dossier-left-on-london-train/" target="_blank">Olympic security dossier left on London train</a></li>
<li><a href="http://www.infosecurity-magazine.com/view/23332/voice-biometrics-will-be-the-authentication-of-choice-says-opus-research/" target="_blank">Voice biometrics will be the authentication of choice, says Opus Research</a></li>
<li><a href="http://www.infosecurity-magazine.com/view/23331/sp-toolkit-illustrates-the-dangers-inherent-in-many-security-audit-tools/" target="_blank">SP Toolkit illustrates the dangers inherent in many security audit tools</a></li>
<li><a href="http://www.infosecurity-magazine.com/view/23309/hmrcs-failure-to-recruit-security-staff-shows-education-must-change/" target="_blank">HMRC&#8217;s failure to recruit security staff shows education must change</a></li>
<li><a href="http://www.infosecurity-magazine.com/view/23304/ten-years-of-microsofts-trustworthy-computing-initiative-has-it-delivered/" target="_blank">Ten years of Microsoft’s Trustworthy Computing initiative: Has it delivered?</a></li>
<li><a href="http://www.infosecurity-magazine.com/view/23299/a-roadmap-towards-meaningful-security-data-sharing/" target="_blank">A road-map towards meaningful security data sharing</a></li>
<li><a href="http://www.infosecurity-magazine.com/view/23266/research-by-sophos-reveals-the-gang-behind-koobface/" target="_blank">Research by Sophos reveals the gang behind Koobface</a></li>
<li><a href="http://www.infosecurity-magazine.com/view/23264/childrens-online-games-used-to-distribute-malware-/" target="_blank">Children’s online games used to distribute malware</a></li>
<li><a href="http://www.infosecurity-magazine.com/view/23260/axa-global-insurance-company-adopts-data-analytics-to-reduce-fraud/" target="_blank">AXA global insurance company adopts data analytics to reduce fraud</a></li>
<li><a href="http://www.infosecurity-magazine.com/view/23226/health-software-firm-develops-android-app-while-nhs-warns-on-tablet-security/" target="_blank">Health Software firm develops Android app while NHS warns on tablet security</a></li>
<li><a href="http://www.infosecurity-magazine.com/view/23225/new-version-of-sykipot-malware-targets-dod-smart-cards/" target="_blank">New version of Sykipot malware targets DoD smart cards</a></li>
<li><a href="http://www.infosecurity-magazine.com/view/23224/how-darkcodersc-reveals-sfx-files-methodology-/" target="_blank">How DarkCoderSC reveals SFX files methodology</a></li>
</ul>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kevtownsend.wordpress.com/3652/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kevtownsend.wordpress.com/3652/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kevtownsend.wordpress.com/3652/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kevtownsend.wordpress.com/3652/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kevtownsend.wordpress.com/3652/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kevtownsend.wordpress.com/3652/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kevtownsend.wordpress.com/3652/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kevtownsend.wordpress.com/3652/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kevtownsend.wordpress.com/3652/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kevtownsend.wordpress.com/3652/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kevtownsend.wordpress.com/3652/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kevtownsend.wordpress.com/3652/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kevtownsend.wordpress.com/3652/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kevtownsend.wordpress.com/3652/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3652&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kevtownsend.wordpress.com/2012/01/23/last-weeks-stories-on-infosecurity-magazine/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/42a653d686ce11c9c1df1855a3349a94?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">kevtownsend</media:title>
		</media:content>
	</item>
		<item>
		<title>Absinthe &#8211; jailbreaking the Apple 4S</title>
		<link>http://kevtownsend.wordpress.com/2012/01/23/absinthe-jailbreaking-the-apple-4s/</link>
		<comments>http://kevtownsend.wordpress.com/2012/01/23/absinthe-jailbreaking-the-apple-4s/#comments</comments>
		<pubDate>Mon, 23 Jan 2012 15:31:35 +0000</pubDate>
		<dc:creator>Kevin Townsend</dc:creator>
				<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[All]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[jailbreaking]]></category>
		<category><![CDATA[iPad]]></category>
		<category><![CDATA[Android]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[anti virus software]]></category>
		<category><![CDATA[mac virus]]></category>

		<guid isPermaLink="false">http://kevtownsend.wordpress.com/?p=3646</guid>
		<description><![CDATA[There is a new jailbreak for the Apple 4S called Absinthe (a strong alcoholic drink prepared from wormwood and largely banned for its toxicity). I have written about this for Infosecurity Magazine here. But what I want to consider now is perhaps more philosophic: is a jailbroken iPhone basically an Android? Opinions vary. David Harley, [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3646&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>There is a new jailbreak for the Apple 4S called Absinthe (a strong alcoholic drink prepared from wormwood and largely banned for its toxicity). I have written about this for <em><a href="http://www.infosecurity-magazine.com/view/23391/jailbreak-for-iphone-4s-released/" target="_blank">Infosecurity Magazine here</a></em>.</p>
<p>But what I want to consider now is perhaps more philosophic: is a jailbroken iPhone basically an Android? Opinions vary.</p>
<p>David Harley, the independent researcher behind the <em><a href="http://macviruscom.wordpress.com/" target="_blank">Mac Virus</a></em> website, thinks ‘not really’. Jailbreaking alters the Apple’s kernel. If this is done you would get no further support from Apple. As a result, software that really requires co-operation between the developer of the software and the developer of the hardware would be at a disadvantage. Anti-virus software running on a jailbroken Apple, for example, would suffer. “So no,” he says, “jailbreaking isn’t precisely analogous to an unrooted Android: while most Android AV is pretty patchy in performance, you can get AV that could be described as commercial standard.”</p>
<div id="attachment_533" class="wp-caption alignleft" style="width: 120px"><a href="http://kevtownsend.files.wordpress.com/2010/03/luiscorrons.gif"><img class="size-thumbnail wp-image-533" title="Luis Corrons, PandaLabs" src="http://kevtownsend.files.wordpress.com/2010/03/luiscorrons.gif?w=110&#038;h=150" alt="Luis Corrons, PandaLabs" width="110" height="150" /></a><p class="wp-caption-text">Luis Corrons</p></div>
<p>But yes, thinks Luis Corrons of PandaLabs. “At the end of the day, the main difference between both platforms is that Android gives me, as a user, the option to decide what applications I want to install.” Confirming his view, Luis has a jailbroken iPad 1 and used to use a jailbroken iPhone 3GS (which he has now replaced with an Android Galaxy SII).</p>
<div id="attachment_2219" class="wp-caption alignright" style="width: 110px"><a href="http://kevtownsend.files.wordpress.com/2010/12/david-emm.jpg"><img class="size-thumbnail wp-image-2219" title="David Emm" src="http://kevtownsend.files.wordpress.com/2010/12/david-emm.jpg?w=100&#038;h=150" alt="David Emm" width="100" height="150" /></a><p class="wp-caption-text">David Emm</p></div>
<p>Kaspersky’s David Emm has a similar view. “It&#8217;s the commercial models taken by Apple and Google that are different.” The result of these commercial differences is that a jailbroken Apple has access to hundred of thousands of secure apps plus a few hundred unknown apps from Cydia Store. Android users have access to hundreds of thousands of unknown apps. The inference I draw, unstated by David, is that a jailbroken iPhone remains more secure, albeit more restricted, than an Android.</p>
<p>So what can we conclude? Not a lot really. If you jailbreak an iPhone you can technically gain the freedom inherent in an Android – but since most users will still be limited to third-party apps, you don’t gain many more. And you lose the security of the iPhone. In the final analysis, you simply pay your money and take your choice: Apple if you want security; Android if you want freedom. Jailbreaking seems to give you neither.<br />
<em><a href="http://www.kaspersky.co.uk/" target="_blank">Kaspersky</a></em><br />
<em><a href="http://www.pandasecurity.com/" target="_blank">PandaLabs</a></em><br />
<em><a href="http://cache.greenpois0n.com/dl/absinthe-mac-0.1.2-1.zip" target="_blank">Absinthe download</a></em> (unchecked, unverified)</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kevtownsend.wordpress.com/3646/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kevtownsend.wordpress.com/3646/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kevtownsend.wordpress.com/3646/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kevtownsend.wordpress.com/3646/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kevtownsend.wordpress.com/3646/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kevtownsend.wordpress.com/3646/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kevtownsend.wordpress.com/3646/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kevtownsend.wordpress.com/3646/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kevtownsend.wordpress.com/3646/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kevtownsend.wordpress.com/3646/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kevtownsend.wordpress.com/3646/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kevtownsend.wordpress.com/3646/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kevtownsend.wordpress.com/3646/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kevtownsend.wordpress.com/3646/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3646&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kevtownsend.wordpress.com/2012/01/23/absinthe-jailbreaking-the-apple-4s/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/42a653d686ce11c9c1df1855a3349a94?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">kevtownsend</media:title>
		</media:content>

		<media:content url="http://kevtownsend.files.wordpress.com/2010/03/luiscorrons.gif?w=110" medium="image">
			<media:title type="html">Luis Corrons, PandaLabs</media:title>
		</media:content>

		<media:content url="http://kevtownsend.files.wordpress.com/2010/12/david-emm.jpg?w=100" medium="image">
			<media:title type="html">David Emm</media:title>
		</media:content>
	</item>
		<item>
		<title>Public sector data breaches: what should be done?</title>
		<link>http://kevtownsend.wordpress.com/2012/01/18/public-sector-data-breaches-what-should-be-done/</link>
		<comments>http://kevtownsend.wordpress.com/2012/01/18/public-sector-data-breaches-what-should-be-done/#comments</comments>
		<pubDate>Wed, 18 Jan 2012 18:18:45 +0000</pubDate>
		<dc:creator>Kevin Townsend</dc:creator>
				<category><![CDATA[All]]></category>
		<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[ICO]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[public sector]]></category>

		<guid isPermaLink="false">http://kevtownsend.wordpress.com/?p=3640</guid>
		<description><![CDATA[Should staff, not the taxpayer, pay fines for public sector data breaches? This is a question posed by UKauthorITy, a publisher of IT related news for the local sector. It quotes the TaxPayer’s Alliance: Of course people in these situations should be held personally liable as if the council is fined, then that fine is [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3640&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><em>Should staff, not the taxpayer, pay fines for public sector data breaches?</em> This is a question posed by UKauthorITy, a publisher of IT related news for the local sector. It quotes the TaxPayer’s Alliance:</p>
<blockquote><p>Of course people in these situations should be held personally liable as if the council is fined, then that fine is paid for out of the local council taxes. It essence it is a double tax &#8211; once for collecting/storing the data and again for losing it.<br />
<em><a href="http://www.ukauthority.com/NewsArticle/tabid/64/Default.aspx?id=3494" target="_blank">Should staff, not the taxpayer, pay fines for public sector data breaches?</a></em></p></blockquote>
<p>Grant Taylor, UK VP of CryptZone is agin the idea of fining the staff rather than the organization, and puts forward a strong case. “If the penalties are applied to nominated senior managers in the relevant NHS trust, council or other government agency – as is the case with corporate responsibility, for example within transportation authorities – then the public sector could be forced into building liability insurance remuneration into management salaries, as has been required by medical professionals for some time,” he argues. This will simply have the effect of “moving the cost of data breach penalties across the government spreadsheet &#8211; with the taxpayer continuing to foot the bill.”</p>
<p>Grant believes that education and open discussion is the solution. “But to reduce the argument to individual ICO penalties within the workforce would only result in the departure of the most talented member of staff – who will be streamed off into the private sector – with predictable results. This is what makes this argument something of a non-starter in our opinion,” he concludes.</p>
<p>I sort of agree; but I don’t think education will ever be enough to protect our data. The bottom line is the current arrangements just are not working. Personal data continues to be lost, councils are fined, and the ‘double tax’ described by the TaxPayer’s Alliance is a reality. But potential remedies exist, and always have existed, without any action from the ICO. It is the concept of responsibility – when things go wrong, there is always someone at fault.</p>
<p>Consider this. Organizations will have procedures that are part of the security policy and part of the employment contract. If these procedures are followed, then data will not be lost. If they are followed and data is still lost, then the author of the procedures is responsible because he or she simply didn’t do the job properly. If the procedures are not followed and data is lost, then the person who loses the data is responsible because he or she didn’t follow procedures. Because the procedures are part of the employment contract, failure to follow them is a disciplinary offence. It’s not a case of the ICO fining individual staff, it’s a case of the organization sacking staff who haven’t done their job.</p>
<p>The advantage of this simple approach is that it doesn’t frighten off good staff (good staff will always be confident in their own abilities), but it does weed out poor staff. And it doesn’t cost the taxpayer an additional penny.</p>
<p>There are even in-built safeguards in this approach. Organizations always have bullies. Middle managers at fault will generally blame their staff. But that’s why we have employment protection laws and tribunals. If a scapegoat is selected and sacked to protect a manager, that scapegoat has recourse to the law. So we don’t need to fine individual staff or the organization. We don’t even need the ICO. We just need to do what we always could do: in the event of a data breach, the person responsible should automatically be sacked.</p>
<p><em><a href="http://www.cryptzone.com/" target="_blank">CryptZone</a></em></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kevtownsend.wordpress.com/3640/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kevtownsend.wordpress.com/3640/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kevtownsend.wordpress.com/3640/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kevtownsend.wordpress.com/3640/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kevtownsend.wordpress.com/3640/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kevtownsend.wordpress.com/3640/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kevtownsend.wordpress.com/3640/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kevtownsend.wordpress.com/3640/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kevtownsend.wordpress.com/3640/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kevtownsend.wordpress.com/3640/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kevtownsend.wordpress.com/3640/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kevtownsend.wordpress.com/3640/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kevtownsend.wordpress.com/3640/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kevtownsend.wordpress.com/3640/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3640&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kevtownsend.wordpress.com/2012/01/18/public-sector-data-breaches-what-should-be-done/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/42a653d686ce11c9c1df1855a3349a94?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">kevtownsend</media:title>
		</media:content>
	</item>
		<item>
		<title>The commercialisation of the Olympic spirit</title>
		<link>http://kevtownsend.wordpress.com/2012/01/17/the-commercialisation-of-the-olympic-spirit/</link>
		<comments>http://kevtownsend.wordpress.com/2012/01/17/the-commercialisation-of-the-olympic-spirit/#comments</comments>
		<pubDate>Tue, 17 Jan 2012 18:33:53 +0000</pubDate>
		<dc:creator>Kevin Townsend</dc:creator>
				<category><![CDATA[All]]></category>
		<category><![CDATA[General Rants]]></category>
		<category><![CDATA[2012 olympic games]]></category>
		<category><![CDATA[censorship]]></category>
		<category><![CDATA[international olympic committee]]></category>

		<guid isPermaLink="false">http://kevtownsend.wordpress.com/?p=3632</guid>
		<description><![CDATA[The extent to which the legitimate protection of rights begins to overlap outright censorship is a concern. We all know about large-scale developments such as SOPA in the USA and the Digital Rights Act in the UK, where the pretext of defending rightsholders can easily be used by government to take down and censor the [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3632&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>The extent to which the legitimate protection of rights begins to overlap outright censorship is a concern. We all know about large-scale developments such as SOPA in the USA and the Digital Rights Act in the UK, where the pretext of defending rightsholders can easily be used by government to take down and censor the bits of free speech it doesn’t like. But the contagion is spreading (<em><a href="http://order-order.com/2012/01/17/bloggers-and-tweeters-to-be-censored-at-olympics/" target="_blank">hat tip to Guido for highlighting it</a></em>).</p>
<p>The International Olympic Committee (IOC) has issued what it calls ‘guidelines’ but what are actually instructions in a document titled IOC Social Media, Blogging and Internet <span style="color:#000000;"><del>Guidelines</del></span> Instructions for participants and other accredited persons at the London 2012 Olympic Games. The document itself is fully copyrighted, so the IOC could tell me to remove this.</p>
<div id="attachment_3633" class="wp-caption aligncenter" style="width: 442px"><a href="http://kevtownsend.files.wordpress.com/2012/01/iocinstructions.gif"><img class="size-full wp-image-3633" title="ioc instructions" src="http://kevtownsend.files.wordpress.com/2012/01/iocinstructions.gif?w=600" alt="ioc instructions"   /></a><p class="wp-caption-text">IOC guidelines for journalists/bloggers</p></div>
<p>Guido highlights section 2:</p>
<blockquote><p><span style="text-decoration:underline;"><strong>2. Postings, Blogs and Tweets</strong></span><br />
The IOC encourages participants and other accredited persons to post comments on social media platforms or websites and tweet during the Olympic Games, and it is entirely acceptable for a participant or any other accredited person to do a personal posting, blog or tweet. However, any such postings, blogs or tweets must be in a first-person, diary-type format and should not be in the role of a journalist &#8211; i.e. they must not report on competition or comment on the activities of other participants or accredited persons, or disclose any information which is confidential or private in relation to any other person or organisation. A tweet is regarded in this respect as a short blog and the same guidelines are in effect, again, in first-person, diary-type format.</p>
<p>Postings, blogs and tweets should at all times conform to the Olympic spirit and fundamental principles of Olympism as contained in the Olympic Charter, be dignified and in good taste, and not contain vulgar or obscene words or images.</p></blockquote>
<p>Such instructions are, frankly, a bloody nerve; and I would dearly love all journalists to decline to become ‘accredited’ in response. But the bit that really bothers me is this:</p>
<blockquote><p>The IOC will continue to monitor Olympic on-line content to ensure that the integrity of rights-holding broadcasters and sponsor rights as well as the Olympic Charter is maintained&#8230;</p></blockquote>
<p>and if not</p>
<blockquote><p>The IOC reserves all its right to take any other appropriate measures with respect to infringements of these Guidelines, including issuing a Take Down Notice&#8230;</p></blockquote>
<p>Take down? The Olympic spirit has degenerated into a threat to take down stories/websites it doesn’t like? Jesse Owens wept!</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kevtownsend.wordpress.com/3632/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kevtownsend.wordpress.com/3632/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kevtownsend.wordpress.com/3632/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kevtownsend.wordpress.com/3632/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kevtownsend.wordpress.com/3632/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kevtownsend.wordpress.com/3632/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kevtownsend.wordpress.com/3632/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kevtownsend.wordpress.com/3632/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kevtownsend.wordpress.com/3632/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kevtownsend.wordpress.com/3632/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kevtownsend.wordpress.com/3632/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kevtownsend.wordpress.com/3632/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kevtownsend.wordpress.com/3632/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kevtownsend.wordpress.com/3632/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3632&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kevtownsend.wordpress.com/2012/01/17/the-commercialisation-of-the-olympic-spirit/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/42a653d686ce11c9c1df1855a3349a94?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">kevtownsend</media:title>
		</media:content>

		<media:content url="http://kevtownsend.files.wordpress.com/2012/01/iocinstructions.gif" medium="image">
			<media:title type="html">ioc instructions</media:title>
		</media:content>
	</item>
		<item>
		<title>If in doubt – don&#8217;t</title>
		<link>http://kevtownsend.wordpress.com/2012/01/17/if-in-doubt-dont/</link>
		<comments>http://kevtownsend.wordpress.com/2012/01/17/if-in-doubt-dont/#comments</comments>
		<pubDate>Tue, 17 Jan 2012 13:23:51 +0000</pubDate>
		<dc:creator>Kevin Townsend</dc:creator>
				<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[All]]></category>
		<category><![CDATA[scam]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[e-mail]]></category>

		<guid isPermaLink="false">http://kevtownsend.wordpress.com/?p=3624</guid>
		<description><![CDATA[I had the following email from a friend. This friend is big in the Truth movement &#8211; so ‘persuasion’ is strong in his agenda. He also collects, distributes and televises independent ‘truth’ videos. So it’s all reasonable, and because of the friendship I’m tempted to view. But&#8230; He doesn’t usually SHOUT. He invariably says ‘hello’ [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3624&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>I had the following email from a friend.</p>
<div id="attachment_3625" class="wp-caption aligncenter" style="width: 552px"><a href="http://kevtownsend.files.wordpress.com/2012/01/scamemail.gif"><img class="size-full wp-image-3625" title="scam email" src="http://kevtownsend.files.wordpress.com/2012/01/scamemail.gif?w=600" alt="scam email"   /></a><p class="wp-caption-text">Email message</p></div>
<p>This friend is big in the Truth movement &#8211; so ‘persuasion’ is strong in his agenda. He also collects, distributes and televises independent ‘truth’ videos. So it’s all reasonable, and because of the friendship I’m tempted to view.</p>
<p>But&#8230;</p>
<p>He doesn’t usually SHOUT. He invariably says ‘hello’ and ‘how are you’ – and we haven’t spoken since before the holidays. His grammar is usually a bit better, and a belated ‘happy new year’ would be typical.</p>
<p>So I had a niggle. Rather than checking the video I checked the sender.</p>
<blockquote><p>Hi Friend</p>
<p>Happy new year! Can you confirm you sent me this?</p>
<p>If you did, I’ll have a gander. If you didn’t, you’ve been hacked&#8230;</p></blockquote>
<p>Within half an hour I got a reply:</p>
<blockquote><p>Happy new year.</p>
<p>I’ve been hacked!</p></blockquote>
<p>The link in the email is redirected here, by the way. I didn’t, and wouldn’t recommend, going any further. In fact, I wouldn&#8217;t recommend going this far&#8230;</p>
<div id="attachment_3626" class="wp-caption aligncenter" style="width: 579px"><a href="http://kevtownsend.files.wordpress.com/2012/01/tesco-scam.gif"><img class="size-full wp-image-3626" title="Tesco scam" src="http://kevtownsend.files.wordpress.com/2012/01/tesco-scam.gif?w=600" alt="Tesco scam"   /></a><p class="wp-caption-text">Scam email destination</p></div>
<p><strong><span style="color:#ff0000;">The moral to this tale is simple: <em>Look before you Link.</em></span></strong></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kevtownsend.wordpress.com/3624/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kevtownsend.wordpress.com/3624/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kevtownsend.wordpress.com/3624/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kevtownsend.wordpress.com/3624/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kevtownsend.wordpress.com/3624/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kevtownsend.wordpress.com/3624/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kevtownsend.wordpress.com/3624/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kevtownsend.wordpress.com/3624/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kevtownsend.wordpress.com/3624/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kevtownsend.wordpress.com/3624/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kevtownsend.wordpress.com/3624/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kevtownsend.wordpress.com/3624/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kevtownsend.wordpress.com/3624/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kevtownsend.wordpress.com/3624/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3624&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kevtownsend.wordpress.com/2012/01/17/if-in-doubt-dont/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/42a653d686ce11c9c1df1855a3349a94?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">kevtownsend</media:title>
		</media:content>

		<media:content url="http://kevtownsend.files.wordpress.com/2012/01/scamemail.gif" medium="image">
			<media:title type="html">scam email</media:title>
		</media:content>

		<media:content url="http://kevtownsend.files.wordpress.com/2012/01/tesco-scam.gif" medium="image">
			<media:title type="html">Tesco scam</media:title>
		</media:content>
	</item>
		<item>
		<title>This week&#8217;s news stories on Infosecurity Magazine</title>
		<link>http://kevtownsend.wordpress.com/2012/01/13/this-weeks-news-stories-on-infosecurity-magazine/</link>
		<comments>http://kevtownsend.wordpress.com/2012/01/13/this-weeks-news-stories-on-infosecurity-magazine/#comments</comments>
		<pubDate>Fri, 13 Jan 2012 21:58:32 +0000</pubDate>
		<dc:creator>Kevin Townsend</dc:creator>
				<category><![CDATA[All]]></category>
		<category><![CDATA[Security News]]></category>
		<category><![CDATA[cyber risk]]></category>
		<category><![CDATA[disaster recovery plans]]></category>
		<category><![CDATA[fbi issues]]></category>
		<category><![CDATA[global risks]]></category>
		<category><![CDATA[internet action]]></category>
		<category><![CDATA[SOPA]]></category>
		<category><![CDATA[vipre]]></category>

		<guid isPermaLink="false">http://kevtownsend.wordpress.com/?p=3617</guid>
		<description><![CDATA[Apart from this blog, I also do online news for Infosecurity Magazine. Each weekend I shall list here the news stories I’ve written for the magazine. This week’s stories are: PwC report shows public sector fraud rising globally Cyber risk now in the top five global risks European SMBs lack formal disaster recovery plans Has [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3617&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Apart from this blog, I also do online news for Infosecurity Magazine. Each weekend I shall list here the news stories I’ve written for the magazine.</p>
<p>This week’s stories are:</p>
<p style="padding-left:30px;"><a href="http://www.infosecurity-magazine.com/view/23202/pwc-report-shows-public-sector-fraud-rising-globally/" target="_blank">PwC report shows public sector fraud rising globally</a><br />
<a href="http://www.infosecurity-magazine.com/view/23201/cyber-risk-now-in-the-top-five-global-risks/" target="_blank">Cyber risk now in the top five global risks</a><br />
<a href="http://www.infosecurity-magazine.com/view/23198/european-smbs-lack-formal-disaster-recovery-plans/" target="_blank">European SMBs lack formal disaster recovery plans</a><br />
<a href="http://www.infosecurity-magazine.com/view/23183/has-india-got-backdoors-into-rim-nokia-and-apple-probably/" target="_blank">Has India got backdoors into Rim, Nokia and Apple? Probably</a><br />
<a href="http://www.infosecurity-magazine.com/view/23182/malicious-urls-being-disguised-by-qr-codes/" target="_blank">Malicious URLs being disguised by QR codes</a><br />
<a href="http://www.infosecurity-magazine.com/view/23177/uk-fraud-in-excess-of-2bn-per-annum-/" target="_blank">UK Fraud in excess of £2bn per annum </a><br />
<a href="http://www.infosecurity-magazine.com/view/23146/spam-site-becomes-one-of-the-most-popular-locations-on-the-web/" target="_blank">Spam site becomes one of the most popular locations on the web</a><br />
<a href="http://www.infosecurity-magazine.com/view/23145/security-concerns-are-slowing-but-wont-stop-the-growth-of-instant-messaging/" target="_blank">Security concerns are slowing but won’t stop the growth of instant messaging</a><br />
<a href="http://www.infosecurity-magazine.com/view/23143/game-cheat-keys-can-be-dangerous-this-one-is-a-rootkit/" target="_blank">Game cheat keys can be dangerous: this one is a rootkit</a><br />
<a href="http://www.infosecurity-magazine.com/view/23105/december-vipre-report-suggests-that-old-phishing-tactics-are-best/" target="_blank">December VIPRE Report suggests that old phishing tactics are best</a><br />
<a href="http://www.infosecurity-magazine.com/view/23102/esets-latest-threatsense-report-shows-that-business-still-doesnt-patch/" target="_blank">ESET’s latest ThreatSense Report shows that business still doesn’t patch</a><br />
<a href="http://www.infosecurity-magazine.com/view/23086/no-connectivity-means-no-cloud-av-true-or-false/" target="_blank">No connectivity means no cloud AV: true or false?</a><br />
<a href="http://www.infosecurity-magazine.com/view/23071/fbi-issues-a-new-warning-about-the-zeus-variant-called-gameover/" target="_blank">FBI issues a new warning about the Zeus variant called Gameover</a><br />
<a href="http://www.infosecurity-magazine.com/view/23070/the-stratfor-breach-exposes-the-emails-of-hundreds-of-military-and-defense-personnel/" target="_blank">The Stratfor breach exposes the emails of hundreds of military and defense personnel</a><br />
<a href="http://www.infosecurity-magazine.com/view/23056/internet-action-against-sopa-under-discussion-within-net-coalition/" target="_blank">Internet action against SOPA under discussion within Net Coalition</a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kevtownsend.wordpress.com/3617/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kevtownsend.wordpress.com/3617/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kevtownsend.wordpress.com/3617/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kevtownsend.wordpress.com/3617/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kevtownsend.wordpress.com/3617/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kevtownsend.wordpress.com/3617/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kevtownsend.wordpress.com/3617/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kevtownsend.wordpress.com/3617/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kevtownsend.wordpress.com/3617/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kevtownsend.wordpress.com/3617/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kevtownsend.wordpress.com/3617/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kevtownsend.wordpress.com/3617/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kevtownsend.wordpress.com/3617/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kevtownsend.wordpress.com/3617/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3617&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kevtownsend.wordpress.com/2012/01/13/this-weeks-news-stories-on-infosecurity-magazine/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/42a653d686ce11c9c1df1855a3349a94?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">kevtownsend</media:title>
		</media:content>
	</item>
		<item>
		<title>One in four crash victims lie about their injuries: 75% don’t</title>
		<link>http://kevtownsend.wordpress.com/2012/01/13/one-in-four-crash-victims-lie-about-their-injuries-75-dont/</link>
		<comments>http://kevtownsend.wordpress.com/2012/01/13/one-in-four-crash-victims-lie-about-their-injuries-75-dont/#comments</comments>
		<pubDate>Fri, 13 Jan 2012 15:33:40 +0000</pubDate>
		<dc:creator>Kevin Townsend</dc:creator>
				<category><![CDATA[All]]></category>
		<category><![CDATA[General Rants]]></category>
		<category><![CDATA[commons transport committee]]></category>
		<category><![CDATA[crash victims]]></category>
		<category><![CDATA[expert witness]]></category>
		<category><![CDATA[insurance premiums]]></category>

		<guid isPermaLink="false">http://kevtownsend.wordpress.com/?p=3612</guid>
		<description><![CDATA[One in four crash victims admit to faking the extent of their injury in order to claim money. That is the headline. The headline should be “75% of all crash victims are honest about the true extent of their injuries.” But it won’t say that because that doesn’t suit the agenda of the author (in [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3612&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>One in four crash victims admit to faking the extent of their injury in order to claim money. That is the headline. The headline should be “75% of all crash victims are honest about the true extent of their injuries.” But it won’t say that because that doesn’t suit the agenda of the author (in this case the Commons Transport Committee).</p>
<p>I mention this here because Detica comments that “insurers are fighting back with sophisticated analytics solutions that alert fraudulent behaviour by understanding the hidden links in their data. This enables the insurer to build a true and comprehensive picture of individual and groups of claimants, clearly identifying who are the fraudsters&#8230;”</p>
<p>Detica is what I classify as a ‘good’ company. However, the comment (unintended, I’m sure) simply strengthens the whole problem with our current ‘claims’ culture: it reduces the human being who has been injured through no fault of his or her own to statistics on a sheet of paper.</p>
<p>It also paints the victim as the culprit. The victim is the victim: the claims machinery is the culprit. I don’t have any precise figures, but I’m willing to bet that the amount the insurance company pays to the ambulance-chasing RealLawyersJust4U, and the host of expert witness ex-medical businessmen hangers-on who prod and poke the physical and emotional victim, will dwarf the amount paid out in compensation to the injured human being.</p>
<p>Castigating the victim is all wrong. 75% are honest. The remaining 25% are irrelevant since no-one listens to the victim anyway. It is not compensation to the victim that needs to be reduced. What is required is a change in the process so that the victim receives more and the lawyers and experts (who treat the victim as little more than a very lucrative meal-ticket) are removed from the equation. That way victims are better compensated, insurers pay out less, and insurance premiums can come down again.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kevtownsend.wordpress.com/3612/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kevtownsend.wordpress.com/3612/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kevtownsend.wordpress.com/3612/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kevtownsend.wordpress.com/3612/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kevtownsend.wordpress.com/3612/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kevtownsend.wordpress.com/3612/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kevtownsend.wordpress.com/3612/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kevtownsend.wordpress.com/3612/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kevtownsend.wordpress.com/3612/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kevtownsend.wordpress.com/3612/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kevtownsend.wordpress.com/3612/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kevtownsend.wordpress.com/3612/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kevtownsend.wordpress.com/3612/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kevtownsend.wordpress.com/3612/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3612&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kevtownsend.wordpress.com/2012/01/13/one-in-four-crash-victims-lie-about-their-injuries-75-dont/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/42a653d686ce11c9c1df1855a3349a94?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">kevtownsend</media:title>
		</media:content>
	</item>
		<item>
		<title>Security isn&#8217;t working: but it could</title>
		<link>http://kevtownsend.wordpress.com/2012/01/13/security-isnt-working-but-it-could/</link>
		<comments>http://kevtownsend.wordpress.com/2012/01/13/security-isnt-working-but-it-could/#comments</comments>
		<pubDate>Fri, 13 Jan 2012 13:36:57 +0000</pubDate>
		<dc:creator>Kevin Townsend</dc:creator>
				<category><![CDATA[All]]></category>
		<category><![CDATA[Security Issues]]></category>
		<category><![CDATA[bruce mcindoe]]></category>
		<category><![CDATA[data loss prevention]]></category>
		<category><![CDATA[ijet intelligent risk systems]]></category>
		<category><![CDATA[risk management]]></category>
		<category><![CDATA[risk mitigation]]></category>

		<guid isPermaLink="false">http://kevtownsend.wordpress.com/?p=3601</guid>
		<description><![CDATA[This article was first published by, and is reprinted here with kind permission of, Raconteur (Secure Business, the Times, 8 December 2011). For more information on special reports in The Times Newspaper, call Dominic Rodgers on +44 207 033 2106.Security isn’t working. If it were, Sony, Mitsubishi, Citigroup, RSA, the CIA and FBI, Sega, Nintendo, [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3601&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><span style="border:2px solid #32556c;display:block;float:left;width:60%;margin-right:7px;background-color:lightblue;font-size:90%;padding:7px;">This article was first published by, and is reprinted here with kind permission of, <a href="http://www.raconteurmedia.co.uk/"><strong>Raconteur</strong></a> (<em>Secure Business</em>, the Times, 8 December 2011). For more information on special reports in The Times Newspaper, call Dominic Rodgers on +44 207 033 2106.</span>Security isn’t working. If it were, Sony, Mitsubishi, Citigroup, RSA, the CIA and FBI, Sega, Nintendo, Gmail and so many others would not have been hacked this year. The problem is that cyberwar is an asymmetrical war that favours the criminal, and it needs to be rebalanced.</p>
<div id="attachment_3602" class="wp-caption alignright" style="width: 310px"><a href="http://kevtownsend.files.wordpress.com/2012/01/markreeves.jpg"><img class="size-medium wp-image-3602" title="Mark Reeves" src="http://kevtownsend.files.wordpress.com/2012/01/markreeves.jpg?w=300&#038;h=200" alt="Mark Reeves" width="300" height="200" /></a><p class="wp-caption-text">Mark Reeves</p></div>
<p>The first thing is not to abandon what exists; business must not abandon traditional barrier defences (firewalls, anti-malware, filters, data loss prevention, encryption, access control and so on) just because it isn’t enough. On the contrary, business must redouble its efforts in layered security. “Only layered security can fully defend the corporate environment, as it’s incredibly risky to rely on just one level of protection against unauthorised access to a network,” explains Mark Reeves, SVP International at Entrust.</p>
<p>The second step is to abandon the traditional view, if not the traditional defences, of information security. It is not a business category that stands on its own; it is part of the risk mitigation aspect of risk management – and must be treated as part of the overall function of corporate risk.</p>
<div id="attachment_3604" class="wp-caption alignleft" style="width: 140px"><a href="http://kevtownsend.files.wordpress.com/2012/01/bruce-mcindoe.png"><img class="size-full wp-image-3604" title="Bruce McIndoe" src="http://kevtownsend.files.wordpress.com/2012/01/bruce-mcindoe.png?w=600" alt="Bruce McIndoe"   /></a><p class="wp-caption-text">Bruce McIndoe</p></div>
<p>Bruce McIndoe is president of iJET Intelligent Risk Systems, one of the new breed of companies that takes an holistic view of security and risk management. “Our company is founded on taking a risk management approach to the overall threat in order to provide predictive solutions rather than simple event reporting.” As mobility grows in global business, he gives as one example, so must our attitudes change. Right now, since security isn’t working, it is easier for the criminal to hack the system. But as we improve technical security with encryption and location-aware logins, then the traveling user becomes more exposed. “Criminals are going to start going after the employee rather than trying to circumvent security technically.” iJET analyses the overall threat environment around the world, then analyses corporate data exposure so that companies can focus their threat mitigation effort on their areas of greatest hazard. This is an attitude that we must develop: a predictive and holistic view of risk management – we need to get ahead of the criminals.</p>
<div id="attachment_1701" class="wp-caption alignright" style="width: 210px"><a href="http://kevtownsend.files.wordpress.com/2010/08/nigel-hawthorn-con-art.jpg"><img class="size-medium wp-image-1701" title="Nigel Hawthorn" src="http://kevtownsend.files.wordpress.com/2010/08/nigel-hawthorn-con-art.jpg?w=200&#038;h=300" alt="Nigel Hawthorn" width="200" height="300" /></a><p class="wp-caption-text">Nigel Hawthorn</p></div>
<p>The third step is that we need to share global threat information. The UK’s new Cyber Security Strategy is clear on this. Government will, it says, “establish a new operational partnership with the private sector to share information on threats in cyberspace.” It is less clear on how it will do so; but the model already exists. The cloud.</p>
<p>“What’s needed,” says Blue Coat’s Nigel Hawthorn, “is a means to exploit the power of crowds and create a system of sharing that traces threats between millions of users. Like a herd of zebra, we can be the eyes and ears looking out for new threats and keeping each other safe. A collaborative defence cloud system that joins together millions of users, to track and block the malnets that are responsible for launching attacks, will proactively protect users from future attacks.”</p>
<p>Those are three of the major steps that need to be taken to rebalance the battlefield and make cybersecurity work: an increase in layered traditional defences, the adoption of a new holistic and predictive risk management attitude, and the sharing of threat information on a global scale.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kevtownsend.wordpress.com/3601/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kevtownsend.wordpress.com/3601/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kevtownsend.wordpress.com/3601/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kevtownsend.wordpress.com/3601/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kevtownsend.wordpress.com/3601/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kevtownsend.wordpress.com/3601/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kevtownsend.wordpress.com/3601/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kevtownsend.wordpress.com/3601/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kevtownsend.wordpress.com/3601/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kevtownsend.wordpress.com/3601/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kevtownsend.wordpress.com/3601/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kevtownsend.wordpress.com/3601/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kevtownsend.wordpress.com/3601/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kevtownsend.wordpress.com/3601/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kevtownsend.wordpress.com&amp;blog=11514139&amp;post=3601&amp;subd=kevtownsend&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kevtownsend.wordpress.com/2012/01/13/security-isnt-working-but-it-could/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/42a653d686ce11c9c1df1855a3349a94?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">kevtownsend</media:title>
		</media:content>

		<media:content url="http://kevtownsend.files.wordpress.com/2012/01/markreeves.jpg?w=300" medium="image">
			<media:title type="html">Mark Reeves</media:title>
		</media:content>

		<media:content url="http://kevtownsend.files.wordpress.com/2012/01/bruce-mcindoe.png" medium="image">
			<media:title type="html">Bruce McIndoe</media:title>
		</media:content>

		<media:content url="http://kevtownsend.files.wordpress.com/2010/08/nigel-hawthorn-con-art.jpg?w=200" medium="image">
			<media:title type="html">Nigel Hawthorn</media:title>
		</media:content>
	</item>
	</channel>
</rss>
