To The Last Tribe Consulting

Tag: SANS

GCIH Gold Paper Accepted

by Josh on Mar.29, 2010, under Uncategorized

As I alluded to in a past post, I have been working on my GCIH Gold paper for the past 6 months.  Well, I submitted it last month, and just found out that it has been accepted/passed!  This means that I now have my GCIH Gold certification.  I will be working on my GSEC Gold certification next.

As for the paper itself, I decided to do original research on social engineering on social networks–specifically, on the amount of information that people give up on the “harmless” quizzes they take on social networks like Facebook.

Below is the abstract:  (You can find the paper online here)

Social engineering for identity theft has always been around. But now, with the advent of
social networking sites such as Facebook, MySpace, and a host of others, it has become
easier than ever to harvest personal information from unsuspecting targets. This paper
looks into just how much personal information can be gathered by the seeminglyharmless
“What type of personality are you?” quizzes that are so prevalent on social
networking sites. The paper will then look at what the information could be used for, and
how to protect against this particular vector of social engineering.

-Josh

1 Comment :, , , more...

Josh Brower’s GCIH Gold Project

by Josh on Nov.07, 2009, under Uncategorized

Just wanted to give you a brief update on what I have been working on lately.

I am currently working on my GCIH Gold paper–My abstract was accepted by SANS, and I have been working on it for a little over a month now.

I would rather not share the abstract for now, as it is an area of original research, and I would rather not tip my hand.

But to give you a clue of the general direction, here is a pic of some of my source material for the background research.

Current Reading

Josh

2 Comments :, more...

SANS Audit 521: Meeting the Minimum: PCI/DSS 1.2: Becoming and Staying Compliant

by Josh on Aug.09, 2009, under Uncategorized

This week I am starting a new 2 day SANS class.  This class deals with the credit card industry standard PCI DSS.  The organization I work with is working on PCI DSS compliance, and I am heavily involved in it, so we decided that I should go ahead and take the class, to get as educated as I can about the standard.  I will be posting a Lessons Learned and Review of the class after I finish it, sometime in the next few weeks.  I will also be posting what I am currently doing in my new position in Michigan.

Josh

1 Comment :, , more...

Looking for something?

Use the form below to search the site:

Still not finding what you're looking for? Drop a comment on a post or contact us so we can take care of it!

Visit our friends!

A few highly recommended friends...