<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Metaluxo IT Security</title>
	<atom:link href="http://www.metaluxo.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.metaluxo.com</link>
	<description>Information Security at your reach</description>
	<lastBuildDate>Mon, 19 Nov 2012 18:48:20 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.4.2</generator>
		<item>
		<title>Startups at increasing risk of being hacked</title>
		<link>http://www.metaluxo.com/startups-at-increasing-risk-of-being-hacked/</link>
		<comments>http://www.metaluxo.com/startups-at-increasing-risk-of-being-hacked/#comments</comments>
		<pubDate>Thu, 08 Nov 2012 20:42:41 +0000</pubDate>
		<dc:creator>Κέρβερος</dc:creator>
				<category><![CDATA[SMB]]></category>

		<guid isPermaLink="false">http://www.metaluxo.com/?p=140</guid>
		<description><![CDATA[London is a great place for startups. I am fortunate enough to live not too far from the Silicon Roundabout, where many tech startups are running and truly pushing the boundaries of technology. It&#8217;s a great space for create new<span class="ellipsis">&#8230;</span><div class="read-more"><a href="http://www.metaluxo.com/startups-at-increasing-risk-of-being-hacked/">Read more &#8250;</a></div><!-- end of .read-more -->]]></description>
			<content:encoded><![CDATA[<p>London is a great place for startups. I am fortunate enough to live not too far from the <a title="Silicon Roundabout" href="http://en.wikipedia.org/wiki/Old_Street_Roundabout#Silicon_Roundabout" target="_blank">Silicon Roundabout</a>, where many tech startups are running and truly pushing the boundaries of technology. It&#8217;s a great space for create new things in Europe.</p>
<p>However, it seems that small businesses and startups are neglecting the IT security, not always for lack of resources but many times for lack of reliable information about what information security means for a small business and what consequences data breaches can bring. There is <a title="One in ten SMEs have suffered from a data hack" href="http://www.hiscox.com/news/press-releases/2012/17-07-2012.aspx" target="_blank">a report</a> from the insurance company Hiscox which indicates that 1 in 10 small businesses are suffering from data breaches. The number might not seem big enough, after all 10% seems a rather low figure, however the statistics are quite concerning when we consider that the economy in the European Union is <a title="Small and medium-sized enterprises (SMEs)" href="http://ec.europa.eu/enterprise/policies/sme/index_en.htm" target="_blank">99% driven by small and medium businesses</a>.</p>
<p>Even when many good professional software developers are aware of <a title="OWASP Top 10 2010 Main vulnerabilities" href="https://www.owasp.org/index.php/Top_10_2010-Main" target="_blank">OWASP Top 10</a> vulnerabilities, system security is not limited to this. SMBs need to be more aware that security is a process and not an objective. A penetration test is good in determining the immediate dangers that a particular application might face. However, this is only a small component of the bigger IT security strategy. We agree with the report of Hiscox that seeking for professional advice in IT security can save a company time and money in the long run and it is a money well invested.</p>
<p>After all, it is cheaper to start a security strategy when the company just starts than trying to implement it when the company is growing. However, this requires a change of the mindset of an entrepreneur, and not only of the technical people, but of the very founders of any company.</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.metaluxo.com/startups-at-increasing-risk-of-being-hacked/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Zero-day exploit merchants</title>
		<link>http://www.metaluxo.com/zero-day-exploit-merchants/</link>
		<comments>http://www.metaluxo.com/zero-day-exploit-merchants/#comments</comments>
		<pubDate>Wed, 03 Oct 2012 11:11:55 +0000</pubDate>
		<dc:creator>Κέρβερος</dc:creator>
				<category><![CDATA[Exploits]]></category>

		<guid isPermaLink="false">http://www.metaluxo.info/?p=14</guid>
		<description><![CDATA[There is an interesting article in Tech Week Europe about merchants seeling zero-day exploits in the market. Professor Ross Anderson from University of Cambridge effectively compare the issue with selling burglary tools, which would be illegal in many countries. &#160;<span class="ellipsis">&#8230;</span><div class="read-more"><a href="http://www.metaluxo.com/zero-day-exploit-merchants/">Read more &#8250;</a></div><!-- end of .read-more -->]]></description>
			<content:encoded><![CDATA[<p>There is an <a title="Poll: Do You Love Or Loathe Zero-Day Exploit Merchants?" href="http://www.techweekeurope.co.uk/news/poll-zero-day-exploit-sellers-94667" target="_blank">interesting article</a> in Tech Week Europe about merchants seeling zero-day exploits in the market. Professor Ross Anderson from University of Cambridge effectively compare the issue with selling <em>burglary tools</em>, which would be illegal in many countries.</p>
<p>&nbsp;</p>
<p>However, going further of this debate, a more interesting question is that 50% of the people say that they do not even understand the question. This is a quite alarming rate. Of course, it cannot be expected that everybody understands what a<a title="Wikipedia article: Zero-Day attack" href="http://en.wikipedia.org/wiki/Zero-day_attack" target="_blank"> zero-day exploit</a> is, but considering Tech Week is oriented to IT people, the rate is quite alarming. This is probably one of the reasons why many small and medium businesses, which don&#8217;t have large budgets for IT are neglecting this part of IT security.</p>
<p>&nbsp;</p>
<p>Probably it is time to raise our awareness in IT security, just like we keep raising our awareness in terrorism, telephone scams and similar awareness campaigns, before it&#8217;s too late. Although, it might be already too late, which is even more concerning.</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.metaluxo.com/zero-day-exploit-merchants/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
