Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
×

Comment Re:no this is what you get with outsourced IT VA (Score 1) 86

I don't know that what you experienced is quite what the article's talking about.

I'm not at DHS-OIG, but in reading their report, it looks to me like it's a pen test or internal vulnerability scan, not an inventory of what patches they have installed. Nessus exists to find actual holes, not just see what patches you had installed compared to FDCC. The report said a Nessus scan found 202 high-risk security holes (as well as 338 medium- and low-risk) in 1085 instances on 174 computers, not just missing patches for systems that aren't actual vulnerabilities.

I'd like to be able to see the report that says exactly what the holes are, but I suspect that that level of detail is probably classified. Given the other findings and recommendations in the report, I'd be inclined to believe that there are real problems and not just a few missing patches.

I hate security theater as much as anybody, but I think this vulnerability scan might be serving a worthwhile purpose.

Comment Re:no this is what you get with outsourced IT VA (Score 4, Informative) 86

Commonwealth of Virginia != Department of Homeland Security.

This is an entirely different issue. The Virginia thing was a waste of money and an added frustration which, as anyone who's been to Virginia DMV can tell you, is NOT necessary.

What we're looking at here is the one Cabinet-level department specifically charged with maintaining IT infrastructure getting nailed by their IG for having a security profile slightly better than your average baby's candy protection perimeter.

While it's very difficult to keep out an experienced, dedicated attacker, you could at least shore up the defenses enough to keep the /b/tards and script kiddies out.

Comment Re:Am I a cheap bastard? (Score 1) 208

Unless there are some REALLY fuckin' stupid people over there in the states with lots of money

Sir or madam, speaking as an American, I can ASSURE you that there are more than a thousand people here who fit your description. If you desire evidence, I would like to remind you of the kind of candidate Big Money likes to elect in this country, and the judgment (or lack thereof) that illustrates. I don't think they'll have any problem selling out of this particular piece of hardware. It just won't be to working stiffs.

Comment The plural of "anecdote" is "data", right? (Score 1) 337

I was a victim of this. I'd been playing about four hours straight of Gran Turismo or Forza or one of those sim-style racers, and immediately after finishing I had to head out to an appointment. I floored it, maintained a nice outside-inside-out line around the first curve, then realized I was doing 50mph in a residential zone. Stopped at the first (well, second, I blew the first) stop sign, took a breath, made a conscious effort to recalibrate myself back to Reality, and carried on to wherever it was I had to go in a more "civilian" style and pace.

These games have made me a better driver on every other day, more cognizant of the weight distribution on my tires, available friction to turn/accelerate/brake and the like, so it's been a positive thing on the whole, but for that minute or so, I wouldn't've wanted to be out there with me.

Slashdot Top Deals

"The one charm of marriage is that it makes a life of deception a neccessity." - Oscar Wilde

Working...