<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Defeating the Hacker: A non-technical guide to computer security</title>
	<atom:link href="http://spinsafe.com/2010/03/02/defeating-the-hacker-a-non-technical-guide-to-computer-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://spinsafe.com/2010/03/02/defeating-the-hacker-a-non-technical-guide-to-computer-security/</link>
	<description>Secure Remote Access</description>
	<lastBuildDate>Mon, 12 Dec 2011 20:31:39 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Thomas Duff</title>
		<link>http://spinsafe.com/2010/03/02/defeating-the-hacker-a-non-technical-guide-to-computer-security/comment-page-1/#comment-476</link>
		<dc:creator>Thomas Duff</dc:creator>
		<pubDate>Tue, 02 Mar 2010 19:46:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.spinsafe.com/2010/03/02/defeating-the-hacker-a-non-technical-guide-to-computer-security/#comment-476</guid>
		<description>Have you ever wished for a security book that covers nearly all the potential security risks one can face with computers, but without going into mind-numbing detail on it all?  Robert Schifreen does a pretty good job of that in his book Defeating the Hacker : A nontechnical guide to computer security.
&lt;br /&gt;
&lt;br /&gt;Contents: Introduction; A Hacker is Made; Preparation and Planning; International Laws and Standards; Passwords and Beyond; Your Information Security Policy; Security Awareness Training; Patch Management; Windows Workstation Security; Basic Server Security; Understanding Firewalls; Protecting Your Website; Wireless Networking; Penetration Testing; Security Through Obscurity; Windows Vista; Email; The Curse of Spam; Viruses; Spyware, Adware and Rogue Dialers; Piracy; File Sharing and &#039;P2P&#039;; Backups and Archives; Preventing Internet Misuse; Document Security; Data Theft; Encryption; Employees&#039; Own Computers; How Hackers Use Search Engines; Denial of Service Attacks; Provisioning and Identity Management; Data Interception; Out of the Office; Social Engineering; E-Commerce Fraud; Intrusion Detection Systems; Outsourcing; Securing your Premises; Forensics; Planning for the Worst; Hardware Theft; Let&#039;s Be Careful Out There; Index
&lt;br /&gt;
&lt;br /&gt;As you can see from the table of contents, Schifreen covers quite a bit of ground.  Each chapter is relatively short (7 to 10 pages) and covers the subject from a conceptual and practical view.  It&#039;s more along the lines of &quot;here&#039;s a problem, here&#039;s how it affects you, and here&#039;s what you need to do to address it in your organization.&quot;  Schifreen was an active hacker who has turned &quot;white hat&quot;, so it&#039;s not like all this is just theoretical material that he&#039;s not actually experienced.  He&#039;s done a lot (most?) of this stuff at one time or another, so he knows of what he speaks.  It&#039;s also somewhat unique in that it views things from a distinctly English viewpoint.  Since he lives in Great Britain, his writing and choice of words are a little unusual to an American.  For instance, taking something to the dump is referred to as the &quot;tip&quot;.  Prices are stated in pounds, and many of the examples are located in various places in Europe.  This particular slant will probably be welcomed by those who are tired of authors who assume that the United States is where all IT takes place.
&lt;br /&gt;
&lt;br /&gt;The only real issue I have with the book is the stated target audience.  It is indeed a nontechnical guide to IT security, and much of the emphasis is on protecting your organization.  I&#039;m not sure how much value an organization would get out of this unless you&#039;re a small shop who really hasn&#039;t thought much about your computer(s).  For a large organization, there&#039;s not enough here to allow you to implement solutions completely (from a technical perspective), and you probably already have techno-geeks that do that.  For the small shop, this would open your eyes to potential problems, but again there might not be enough to allow the non-techy user to properly implement AND maintain their security.  Still, if the reader is someone who really hasn&#039;t thought much about computer security beyond the occasional virus scan, this book will open their eyes.
&lt;br /&gt;
&lt;br /&gt;Good book, and surprisingly readable given the amount of material covered.  Just don&#039;t go into it thinking that this single book will make your company hack-proof and turn you into a security expert...
Rating: 4 / 5</description>
		<content:encoded><![CDATA[<p>Have you ever wished for a security book that covers nearly all the potential security risks one can face with computers, but without going into mind-numbing detail on it all?  Robert Schifreen does a pretty good job of that in his book Defeating the Hacker : A nontechnical guide to computer security.</p>
<p>Contents: Introduction; A Hacker is Made; Preparation and Planning; International Laws and Standards; Passwords and Beyond; Your Information Security Policy; Security Awareness Training; Patch Management; Windows Workstation Security; Basic Server Security; Understanding Firewalls; Protecting Your Website; Wireless Networking; Penetration Testing; Security Through Obscurity; Windows Vista; Email; The Curse of Spam; Viruses; Spyware, Adware and Rogue Dialers; Piracy; File Sharing and &#8216;P2P&#8217;; Backups and Archives; Preventing Internet Misuse; Document Security; Data Theft; Encryption; Employees&#8217; Own Computers; How Hackers Use Search Engines; Denial of Service Attacks; Provisioning and Identity Management; Data Interception; Out of the Office; Social Engineering; E-Commerce Fraud; Intrusion Detection Systems; Outsourcing; Securing your Premises; Forensics; Planning for the Worst; Hardware Theft; Let&#8217;s Be Careful Out There; Index</p>
<p>As you can see from the table of contents, Schifreen covers quite a bit of ground.  Each chapter is relatively short (7 to 10 pages) and covers the subject from a conceptual and practical view.  It&#8217;s more along the lines of &#8220;here&#8217;s a problem, here&#8217;s how it affects you, and here&#8217;s what you need to do to address it in your organization.&#8221;  Schifreen was an active hacker who has turned &#8220;white hat&#8221;, so it&#8217;s not like all this is just theoretical material that he&#8217;s not actually experienced.  He&#8217;s done a lot (most?) of this stuff at one time or another, so he knows of what he speaks.  It&#8217;s also somewhat unique in that it views things from a distinctly English viewpoint.  Since he lives in Great Britain, his writing and choice of words are a little unusual to an American.  For instance, taking something to the dump is referred to as the &#8220;tip&#8221;.  Prices are stated in pounds, and many of the examples are located in various places in Europe.  This particular slant will probably be welcomed by those who are tired of authors who assume that the United States is where all IT takes place.</p>
<p>The only real issue I have with the book is the stated target audience.  It is indeed a nontechnical guide to IT security, and much of the emphasis is on protecting your organization.  I&#8217;m not sure how much value an organization would get out of this unless you&#8217;re a small shop who really hasn&#8217;t thought much about your computer(s).  For a large organization, there&#8217;s not enough here to allow you to implement solutions completely (from a technical perspective), and you probably already have techno-geeks that do that.  For the small shop, this would open your eyes to potential problems, but again there might not be enough to allow the non-techy user to properly implement AND maintain their security.  Still, if the reader is someone who really hasn&#8217;t thought much about computer security beyond the occasional virus scan, this book will open their eyes.</p>
<p>Good book, and surprisingly readable given the amount of material covered.  Just don&#8217;t go into it thinking that this single book will make your company hack-proof and turn you into a security expert&#8230;<br />
Rating: 4 / 5</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: John Matlock</title>
		<link>http://spinsafe.com/2010/03/02/defeating-the-hacker-a-non-technical-guide-to-computer-security/comment-page-1/#comment-474</link>
		<dc:creator>John Matlock</dc:creator>
		<pubDate>Tue, 02 Mar 2010 18:25:23 +0000</pubDate>
		<guid isPermaLink="false">http://www.spinsafe.com/2010/03/02/defeating-the-hacker-a-non-technical-guide-to-computer-security/#comment-474</guid>
		<description>The key to this book is the sub-title. It is &#039;a non-technical guide to computer security.&#039; The author is a journalist with a good grasp of the language and of the various aspects of hacking into a computer system. The book seems to me to be written for two types of people. 
&lt;br /&gt;
&lt;br /&gt;One would be the manager in an IT department where he has security people dedicated to keeping the systems secure. The manager needs the information in this book to keep these people from snowing him with techno-speak about what they are doing. 
&lt;br /&gt;
&lt;br /&gt;The other reader would be the owner/manager of a small business who wants or has to set up security for a company. This book will tell him the general concepts and some suggestions on how to get started. For him, this is the place to start. This won&#039;t provide enough information on any of the subjects, but it provides enough that when you go look at the available hardware or software packages you can at least have some idea about the meaning of the words. 
&lt;br /&gt;
&lt;br /&gt;The web is a lot like the old west of the movies, law and order is noticably absent. After all, if you have a hacker in Russia, attached to a server in Nigeria, that&#039;s hiding behind a server in China and hustling money from an elderly retired woman in Flowida, who&#039;s in charge. This book gives you a better than average introduction to the common protection systems you may need. 
&lt;br /&gt;
&lt;br /&gt;As I said earlier, it&#039;s well written in clear, but not very technical.
Rating: 5 / 5</description>
		<content:encoded><![CDATA[<p>The key to this book is the sub-title. It is &#8216;a non-technical guide to computer security.&#8217; The author is a journalist with a good grasp of the language and of the various aspects of hacking into a computer system. The book seems to me to be written for two types of people. </p>
<p>One would be the manager in an IT department where he has security people dedicated to keeping the systems secure. The manager needs the information in this book to keep these people from snowing him with techno-speak about what they are doing. </p>
<p>The other reader would be the owner/manager of a small business who wants or has to set up security for a company. This book will tell him the general concepts and some suggestions on how to get started. For him, this is the place to start. This won&#8217;t provide enough information on any of the subjects, but it provides enough that when you go look at the available hardware or software packages you can at least have some idea about the meaning of the words. </p>
<p>The web is a lot like the old west of the movies, law and order is noticably absent. After all, if you have a hacker in Russia, attached to a server in Nigeria, that&#8217;s hiding behind a server in China and hustling money from an elderly retired woman in Flowida, who&#8217;s in charge. This book gives you a better than average introduction to the common protection systems you may need. </p>
<p>As I said earlier, it&#8217;s well written in clear, but not very technical.<br />
Rating: 5 / 5</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: William D. Tompkins</title>
		<link>http://spinsafe.com/2010/03/02/defeating-the-hacker-a-non-technical-guide-to-computer-security/comment-page-1/#comment-473</link>
		<dc:creator>William D. Tompkins</dc:creator>
		<pubDate>Tue, 02 Mar 2010 17:59:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.spinsafe.com/2010/03/02/defeating-the-hacker-a-non-technical-guide-to-computer-security/#comment-473</guid>
		<description>This is not an exciting book but rather a guidebook with all the links to companies that offer the tools to defend your companies&#039; IT holdings.
Rating: 5 / 5</description>
		<content:encoded><![CDATA[<p>This is not an exciting book but rather a guidebook with all the links to companies that offer the tools to defend your companies&#8217; IT holdings.<br />
Rating: 5 / 5</p>
]]></content:encoded>
	</item>
</channel>
</rss>

