Become a fan of Slashdot on Facebook

 



Forgot your password?
typodupeerror
Check out the new SourceForge HTML5 internet speed test! No Flash necessary and runs on all devices. ×
Security

Submission + - Should security firms sandbox their executives?

Giorgio Maone writes: "Brian Krebs of the Security Fix Washington Post blog is attending the RSA Conference 2007 in San Francisco and noticed that "the kiosks of Microsoft Windows XP machines set up for attendees to freely access e-mail were running under the all-powerful Administrator account". More amusing, he's been watching executives from the major security firms which happily used those insecure Windows boxes to check their messages or even access their remote desktops. "Had I spent a bit more than 10 seconds at the terminals", he says, "I could have downloaded software that would let me steal user names and passwords from important companies in the information security community". Brrrr..."

With your bare hands?!?

Working...