<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://blogs.technet.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>"Stay Safe" Cyber Security Blog</title><link>http://blogs.technet.com/b/staysafe/</link><description>Protecting your family, identity &amp;amp; computers against cyberthreats &amp;amp; hackers</description><dc:language>en-US</dc:language><generator>Telligent Evolution Platform Developer Build (Build: 5.6.50428.7875)</generator><item><title>PKI Certificate Renewal Strategy:  A Simple Cascading Schedule</title><link>http://blogs.technet.com/b/staysafe/archive/2012/08/21/pki-certificate-renewal-strategy-a-simple-cascading-schedule.aspx</link><pubDate>Wed, 22 Aug 2012 01:08:03 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3515560</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=3515560</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2012/08/21/pki-certificate-renewal-strategy-a-simple-cascading-schedule.aspx#comments</comments><description>&lt;p&gt;Designing a&lt;strong&gt; strategy&lt;/strong&gt; for &lt;strong&gt;Certificate Authority (CA) certificate &lt;/strong&gt;renewal schedule can cause some confusion if you don’t understand the relationship between CA certificate renewals to end-entity certificate renewal overlaps.&amp;#160; However, the following these general guidelines can help CA certificate renew easily without shortening the life of the certificates.&lt;/p&gt;  &lt;p&gt;Let’s take the example of a 3-tier CA hierarchy (Root CA, Intermediate CA and Issuing CA) with end-entity certificates valid for 2-year maximum.&amp;#160; One approach is to have &lt;strong&gt;Issuing CA&lt;/strong&gt; certificates valid for at least &lt;strong&gt;double&lt;/strong&gt; the life of its &lt;strong&gt;issued certificates&lt;/strong&gt;, yet scheduled &lt;strong&gt;renewal with &lt;/strong&gt;at least 2 years remaining (corresponding to the max life of end-entity&amp;#160; certificates).&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;For example:&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;In this example PKI with &lt;strong&gt;2-year &lt;/strong&gt;maximum end-entity &lt;strong&gt;certificate lifetimes,&lt;/strong&gt; the &lt;strong&gt;green&lt;/strong&gt; bar shows the &lt;strong&gt;validity period&lt;/strong&gt; of the Issuing CA certificate while the schedule (year 3, 6, 9, etc.) to the left of the bar shows the scheduled renewal times &lt;strong&gt;every 3 years&lt;/strong&gt;.&amp;#160; (See chart below):&lt;/p&gt;  &lt;p&gt;&lt;a href="http://blogs.technet.com/cfs-file.ashx/__key/communityserver-blogs-components-weblogfiles/00-00-00-58-16-metablogapi/4024.image_5F00_07F9DE5E.png"&gt;&lt;img title="image" style="border-top: 0px; border-right: 0px; background-image: none; border-bottom: 0px; padding-top: 0px; padding-left: 0px; border-left: 0px; display: inline; padding-right: 0px" border="0" alt="image" src="http://blogs.technet.com/cfs-file.ashx/__key/communityserver-blogs-components-weblogfiles/00-00-00-58-16-metablogapi/3750.image_5F00_thumb_5F00_60536233.png" width="666" height="368" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Since &lt;strong&gt;end-entity certificates&lt;/strong&gt; in this example are available for &lt;strong&gt;2 years maximum, &lt;/strong&gt;the end-entity would be always be able to be issued for those full 2 years because the Issuing CAs would have more than 2 years left because the &lt;strong&gt;Issuing CA certificates&lt;/strong&gt; here are &lt;strong&gt;valid for 5 years&lt;/strong&gt; total.&lt;/p&gt;  &lt;p&gt;The &lt;strong&gt;Issuing CA&lt;/strong&gt; in this example is scheduled for renewal &lt;strong&gt;every 3 years&lt;/strong&gt;.&amp;#160; The &lt;strong&gt;Intermediate CA Certificates&lt;/strong&gt; which are &lt;strong&gt;valid for 10 years&lt;/strong&gt; could then be renewed prior to the &lt;u&gt;3&lt;sup&gt;rd&lt;/sup&gt; renewal&lt;/u&gt; of the &lt;strong&gt;Issuing CA certificate&lt;/strong&gt; (every 9 years).&amp;#160; This would then allow the &lt;strong&gt;Root CA Certificate&lt;/strong&gt; which is &lt;strong&gt;valid for&lt;/strong&gt; &lt;strong&gt;20 years&lt;/strong&gt; to be renewed prior to the &lt;u&gt;2&lt;sup&gt;nd&lt;/sup&gt; renewal&lt;/u&gt; of the &lt;strong&gt;Intermediate CA certificate&lt;/strong&gt; (every 18 years).&lt;/p&gt;  &lt;p&gt;This type of &lt;strong&gt;cascading schedule&lt;/strong&gt; is just one simple strategy that allows the end-entity and CA certificates to be issued on a regular schedule in a simple and easy-to-follow while allowing &lt;strong&gt;full certificate lifetimes&lt;/strong&gt; for all issued end-entity and CA certificates.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3515560" width="1" height="1"&gt;</description></item><item><title>Driving Safely Online &amp; Legislation of Technology: Mandating Hands-Free Availability Built Into All Vehicles Instead of Disabling or Banning Cell Phones</title><link>http://blogs.technet.com/b/staysafe/archive/2012/06/11/driving-safely-online-amp-legislation-of-technology-mandating-hands-free-availability-built-into-all-vehicles-instead-of-disabling-or-banning-cell-phones.aspx</link><pubDate>Mon, 11 Jun 2012 12:57:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3503169</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=3503169</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2012/06/11/driving-safely-online-amp-legislation-of-technology-mandating-hands-free-availability-built-into-all-vehicles-instead-of-disabling-or-banning-cell-phones.aspx#comments</comments><description>&lt;p&gt;This 21&lt;sup&gt;st&lt;/sup&gt; century world with its enumerable social gadgets intertwined on the Web make driving hazardous. Our world is accustomed to life on the go via LinkedIn, blog postings, Facebook &amp;ldquo;likes&amp;rdquo;, and e-mail in our pockets. Our society is in &lt;b&gt;need&lt;/b&gt; of status updates, real-time collaboration, video calls and electronic social gratification both at work and in our personal lives.&lt;/p&gt;
&lt;p&gt;Online distractions like texting and driving, though, can be very dangerous and deadly as shown in the recently &lt;a href="http://usnews.msnbc.msn.com/_news/2012/06/06/12090348-massachusetts-teen-sentenced-to-prison-for-texting-while-driving?lite"&gt;reported&lt;/a&gt; double-tragedy of a teen who was convicted of &lt;b&gt;&lt;i&gt;motor vehicle homicide&lt;/i&gt;&lt;/b&gt; as a result of texting while driving in an event resulting in the death of another driver. There is little doubt that the sentence imposed by the judge was strict and meant to send a message of deterrence to the public in an attempt to curb texting and driving.&lt;/p&gt;
&lt;p&gt;What may seem surprising to some, however, is the &lt;a href="http://www.msnbc.msn.com/id/47754789"&gt;response&lt;/a&gt; from the Transportation Department (DOT)&lt;strong&gt;. I listened to a story on National Public Radio (NPR) last Thursday entitled, &lt;a href="http://www.npr.org/2012/06/07/154533043/texting-and-driving-bans-may-make-roads-less-safe"&gt;Texting and Driving Bans May Make Roads Less Safe&lt;/a&gt; by Robert Siegel and Audie Cornish. NPR reported that, &lt;/strong&gt;&lt;i&gt;&amp;ldquo;Thirty-nine states have rushed in recent years to pass bans on texting while driving like the one used to convict the Massachusetts teenager. Secretary LaHood says the remaining states should hurry up and follow suit. And he announced a $2.5 million grant to beef up enforcement&amp;rdquo;&lt;/i&gt;&lt;/p&gt;
&lt;p&gt;Furthermore, Neal Conan of NPR reported the same day on &amp;ldquo;Talk of the Nation on &amp;ldquo;&lt;a href="http://www.npr.org/2012/06/07/154519836/whatd-make-you-stop-texting-while-driving"&gt;What'd Make You Stop Texting While Driving?&lt;/a&gt;&amp;rdquo; In it he reported that:&lt;/p&gt;
&lt;p&gt;&lt;i&gt;&amp;ldquo;Secretary of Transportation Ray LaHood earlier suggested technology to disable cell phones in vehicles. There's a lot of technology out there now, he said, which can &lt;b&gt;disable phones&lt;/b&gt;. We're looking at that, he said on MSNBC, the possibility - I think it will be done, said Ray LaHood. I think the technology is there, and I think &lt;b&gt;you're going to see the technology become adaptable in automobiles to disable cell phones&lt;/b&gt;. We do need to do this a lot more if we're going to save lives.&amp;rdquo;&lt;/i&gt;&lt;/p&gt;
&lt;p&gt;Obviously there is a &lt;b&gt;&lt;i&gt;real threat&lt;/i&gt;&lt;/b&gt; that needs to be addressed; there is no question on the danger. However, a ban of specific types of technology or restricting driving freedom is not a real solution. &lt;b&gt;&lt;i&gt;Disabling cell phones in vehicles is just a bad idea and can have unintended consequences. &lt;/i&gt;&lt;/b&gt;Just briefly aftermarket hacks and scenarios where someone experiences their own tragedy because they are unable to access their cell phone to call a loved one in an emergency. Just imagine the &amp;ldquo;&lt;b&gt;&lt;i&gt;What if....&amp;rdquo;&lt;/i&gt;&lt;/b&gt;&lt;i&gt; &lt;/i&gt;situations.&lt;b&gt;&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;Still it does not really address the distraction issue. According to the &lt;a href="http://www.npr.org/2012/06/07/154533043/texting-and-driving-bans-may-make-roads-less-safe"&gt;NPR&lt;/a&gt; report,&lt;i&gt; &amp;ldquo;Russ Rader is with the Insurance Institute for Highway Safety, which does research for insurers. He says laws can even backfire as drivers try to hide their phones lower down in their lap. Also, he says cellphone bans can only do so much since cellphones are only a small fraction of what distracts drivers.&amp;rdquo;&lt;/i&gt;&lt;/p&gt;
&lt;p&gt;Russ goes on to say, &amp;ldquo;&lt;i&gt;there is dispute about whether any law can actually get drivers to put down their phones&amp;hellip;Distracted driving is as old as driving. And whether it's putting on lipstick, or reading the newspaper, or reaching into the backseat for the MP3 player, all those things are distracting. So focusing on phone use will have limited effect on reducing crashes&lt;/i&gt;.&amp;rdquo;&lt;/p&gt;
&lt;p&gt;Furthermore according to futurist &lt;a href="http://futurereality.wordpress.com/2012/04/14/futurist-profile-michio-kaku/"&gt;Michio Kaku&lt;/a&gt;, we will, in the not-so-different future, have &amp;ldquo;&lt;i&gt;&lt;a href="http://mkaku.org/"&gt;millions of chips in all our possessions: furniture, cars, appliances, clothes&amp;rdquo;.&lt;/a&gt; &lt;/i&gt;Today it may be a phone ban, but where does the ban stop or start for other devices? Are we going to disable all devices and gadgets going forward too? What about scenarios not involving vehicles that can be just as deadly such as pedestrians &lt;a href="http://www.msnbc.msn.com/id/46130096/ns/technology_and_science-science/t/texting-walking-study-reveals-why-combo-dangerous/"&gt;walking down a busy street while distracted while texting&lt;/a&gt;?&lt;/p&gt;
&lt;p&gt;There is, however, a historically proven and practical &lt;b&gt;&lt;i&gt;approach&lt;/i&gt;&lt;/b&gt; to staying safe online while on the go. It&amp;rsquo;s the model that&amp;rsquo;s been used for year&amp;rsquo;s successfully with other safety technologies in vehicles. &lt;b&gt;&lt;i&gt;&lt;span style="text-decoration: underline;"&gt;If&lt;/span&gt;&lt;/i&gt;&lt;/b&gt; we decide &lt;b&gt;&lt;i&gt;legislation of technology is &lt;span style="text-decoration: underline;"&gt;required&lt;/span&gt; &lt;/i&gt;&lt;/b&gt;to solve the problem of the distracted driver, then let&amp;rsquo;s legislate an &lt;b&gt;&lt;i&gt;enabling technology solution&lt;/i&gt;&lt;/b&gt;.&lt;/p&gt;
&lt;p&gt;There are plenty of examples of legislation enforcing the provision of a technology that will then create a safer driving environment without impeding our freedoms. Whether you like them or not, most modern cars come with &lt;a href="http://en.wikipedia.org/wiki/Safety_belt_law"&gt;seat belts&lt;/a&gt; and &lt;a href="http://search.dmv.org/dmv/air-bag-laws"&gt;air bags&lt;/a&gt; as a result of mandated legislation. Though some would argue that seat belts limit freedom, a seat belt can easily be un-latched or air bags disabled as needed for required scenarios while driving or dealing with internal distractions. Furthermore, &lt;a href="http://en.wikipedia.org/wiki/Safety_belt_law"&gt;seat belts&lt;/a&gt;, &lt;a href="http://search.dmv.org/dmv/air-bag-laws"&gt;air bags&lt;/a&gt;, tail lights, emergency flashers, catalytic converters, and anti-lock brakes are safety features that are built-in to the motorist&amp;rsquo;s ecosystem. All cars come with these safety features and a plethora of other technology designed to keep motorists safe and healthy while driving. The usage of the technology is enforced by laws, but the technology does not have to be purchased or installed aftermarket.&lt;/p&gt;
&lt;p&gt;How many of us, despite the risks, would go out and buy a driver-side air bag for an older car without one and install it? &lt;b&gt;&lt;i&gt;&lt;span style="text-decoration: underline;"&gt;If&lt;/span&gt;&lt;/i&gt;&lt;/b&gt; we decide &lt;b&gt;&lt;i&gt;legislation of technology is &lt;span style="text-decoration: underline;"&gt;required&lt;/span&gt;,&lt;/i&gt;&lt;/b&gt; then draft a legal solution that resolves the problem. &lt;b&gt;&lt;span style="text-decoration: underline;"&gt;If&lt;/span&gt;&lt;/b&gt; &lt;b&gt;hands-free&lt;/b&gt; technology &lt;b&gt;solves the problem&lt;/b&gt;, why not make &lt;b&gt;hands-free technology&lt;/b&gt; required components of &lt;b&gt;&lt;span style="text-decoration: underline;"&gt;ALL&lt;/span&gt;&lt;/b&gt; modern vehicles. Then train motorists how to use the enabling technology rather than restricting freedoms with an un-proven cell-phone disabling technology or banning cell phones in vehicles.&lt;/p&gt;
&lt;p&gt;Combine the new technology with a strong public awareness campaign similar to the &lt;a href="http://en.wikipedia.org/wiki/Designated_driver"&gt;designated driver&lt;/a&gt; message done for DUIs that will promote change in risky behaviors. In either case, let&amp;rsquo;s take advantage of safe technology like &lt;a href="http://www.ford.com/technology/sync/"&gt;Microsoft Sync&lt;/a&gt; which let you keep your eyes on the road and make hands-free technology mandatory in all cars. If we need to draft legislation to solve this difficult and epidemic problem; let&amp;rsquo;s embrace safer technology to address the real issue which are distractions as a result of the cell phone form-factor.&lt;/p&gt;
&lt;p&gt;&lt;b&gt;&lt;i&gt;Once the technology is available everywhere&lt;/i&gt;&lt;/b&gt;, then we can enforce laws to &lt;b&gt;&lt;i&gt;mandate hands-free use&lt;/i&gt;&lt;/b&gt; as we do with seat belts and turn signals, and people will mostly comply because it&amp;rsquo;s simple-to-use, safe and readily available in every vehicle.&amp;nbsp; In the meantime, check out &lt;a href="http://msdn.microsoft.com/en-us/sync/bb821992.aspx"&gt;Microsoft Sync&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Note:&lt;/strong&gt;&amp;nbsp;Just to be clear, even though&amp;nbsp;I provide a&amp;nbsp;link to &lt;a href="http://msdn.microsoft.com/en-us/sync/bb821992.aspx"&gt;Microsoft Sync&lt;/a&gt;, I am not suggesting (or&amp;nbsp;implying) that Microsoft Sync (or any specific branded hands-free technology) should be the solution.&amp;nbsp; I suspect there&amp;nbsp;could be many types of competitive technologies available in the vehicle market.&amp;nbsp;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3503169" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/staysafe/archive/tags/safe/">safe</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/online/">online</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/cell+phone/">cell phone</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/department+of+transportation/">department of transportation</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/distracted+driver/">distracted driver</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/legislation/">legislation</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/texting/">texting</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/DOT/">DOT</category></item><item><title>The Value of Certificate Revocation Lists (CRLs) in a PKI</title><link>http://blogs.technet.com/b/staysafe/archive/2012/02/09/the-value-of-certificate-revocation-lists-crls-in-a-pki.aspx</link><pubDate>Fri, 10 Feb 2012 02:26:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3480080</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>1</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=3480080</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2012/02/09/the-value-of-certificate-revocation-lists-crls-in-a-pki.aspx#comments</comments><description>&lt;p&gt;In &lt;a href="http://blogs.msdn.com/b/ieinternals/archive/2011/04/07/10151106.aspx" target="_blank"&gt;Internet explorer&lt;/a&gt;, inside &lt;strong&gt;Tools --&amp;gt; Internet Options --&amp;gt; Advanced&lt;/strong&gt; there are two controls for revocation checking. &lt;strong&gt;&lt;a href="http://technet.microsoft.com/en-us/library/ee619754(WS.10).aspx" target="_blank"&gt;Check for server certificate revocation&lt;/a&gt;&lt;/strong&gt; controls whether revocation checks occur for HTTPS connections. &lt;a href="http://technet.microsoft.com/en-us/library/ee619754(WS.10).aspx" target="_blank"&gt;&lt;strong&gt;Check for publisher&amp;rsquo;s certificate revocation&lt;/strong&gt;&lt;/a&gt; controls whether revocation checks occur when validating the Authenticode digital signatures on downloaded programs and ActiveX controls. Microsoft&amp;rsquo;s recommendation as noted in &lt;a href="http://support.microsoft.com/kb/926717" target="_blank"&gt;Security Compliance Manager&lt;/a&gt; for server certificate revocation checking in IE8 and IE9 is to enable this setting.&lt;/p&gt;
&lt;p&gt;In a recent announcement by Lucian Constantin, it was noted that &lt;a href="http://www.computerworld.com/s/article/9224078/Google_Chrome_will_no_longer_check_for_revoked_SSL_certificates_online" target="_blank"&gt;&lt;strong&gt;Google Chrome will no longer check for revoked SSL certificates online&lt;/strong&gt;&lt;/a&gt;.&amp;nbsp; The article begins discussing a background of how:&lt;/p&gt;
&lt;blockquote&gt;
&lt;p&gt;&amp;ldquo;&lt;em&gt;Google plans to remove online certificate revocation checks from future versions of Chrome because it considers the process inefficient and slow&lt;/em&gt;.&amp;rdquo;&lt;/p&gt;
&lt;/blockquote&gt;
&lt;p&gt;There is little doubt that in some cases revocation checking can actually be slow if it is not designed appropriately or if there are mitigating factors like large Certificate Revocation Lists (CRLs) transferred over networks lacking the bandwidth capacity for timely delivery or even too many clients checking in far too often to download full CRLs.&amp;nbsp; This can be the case on Internet facing sites and could affect HTTPS site verification performance for some sites.&amp;nbsp; However, lets take a look at how CRLs work, and recommended practices for ensuring optimal performance for a PKI.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Certificate Revocation List&lt;/strong&gt; (CRL) - A CRL is really just a list of revoked certificate serial numbers that has been digitally signed by a &lt;a href="http://en.wikipedia.org/wiki/Certificate_authority" target="_blank"&gt;Certificate Authority&lt;/a&gt; and time-stamped and placed in a public in a repository such as a web site.&amp;nbsp; Applications that use certificates have the option of checking the CDP repositories for CRLs.&amp;nbsp; Many applications ignore CRLs altogether while other applications check CRLs and choose what to do if the certificate has been revoked as is the case with many web browsers.&lt;/p&gt;
&lt;blockquote&gt;
&lt;p&gt;There are different kinds of CRLs that are generally published on repositories known as CRL distribution points or CDPs:&lt;/p&gt;
&lt;/blockquote&gt;
&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Full CRL &lt;/strong&gt;or &lt;strong&gt;Base CRL&lt;/strong&gt; - The most common and widely supported are the full CRLs also known as base CRLs which contain serial numbers of all revoked certificates for a particular Certificate Authority (CA).&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;Delta CRL&lt;/strong&gt; &amp;ndash; Delta CRLs contain the list of serial numbers of only certificates that have been revoked since the last Base CRL was published.&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;a href="http://social.technet.microsoft.com/wiki/contents/articles/4954.certificate-status-and-revocation-checking.aspx#Delta_CRLs" target="_blank"&gt;&lt;img style="display: block; float: none; margin-left: auto; margin-right: auto;" src="http://social.technet.microsoft.com/wiki/resized-image.ashx/__size/550x0/__key/communityserver-wikis-components-files/00-00-00-00-05/0412.tshtcr05_5F00_big.gif" /&gt;&lt;/a&gt;&lt;/p&gt;
&lt;blockquote&gt;
&lt;p&gt;One of the challenges with designing a PKI is to determine the best publication interval, and there are several factors to consider.&lt;/p&gt;
&lt;/blockquote&gt;
&lt;p&gt;&lt;strong&gt;CRL Publishing considerations:&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Publishing a base CRL &lt;strong&gt;&lt;span style="text-decoration: underline;"&gt;more frequently&lt;/span&gt;&lt;/strong&gt;, revoked certificates could be more quickly known, but the CRLs are &lt;strong&gt;downloaded more often&lt;/strong&gt;, and consequently as the CRLs grow can generate more traffic for the full CRL downloading by all clients.&lt;/li&gt;
&lt;li&gt;Publishing CRLs &lt;strong&gt;&lt;span style="text-decoration: underline;"&gt;less often&lt;/span&gt;&lt;/strong&gt; can increase the latency before a client becomes aware of a newly revoked certificate, but may reduce overall network traffic because CRLs are downloaded less often.&lt;/li&gt;
&lt;/ul&gt;
&lt;blockquote&gt;
&lt;p&gt;Care has to be taken to make sure the PKI is designed with these considerations in mind.&lt;/p&gt;
&lt;/blockquote&gt;
&lt;p&gt;&lt;strong&gt;Delta CRLs&lt;/strong&gt; which are much smaller than base CRLs generally are defined in RFC 2380 and allow base CRLs to be downloaded at intervals further apart with more frequent downloads of the delta CRL.&amp;nbsp; This allows for more frequent updates to the known revoked certificates without the necessity to download the full CRL very often.&amp;nbsp; Not all devices or applications recognize delta CRLs.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;OCSP &lt;/strong&gt;- for real-time validation, the &lt;strong&gt;&lt;a href="http://technet.microsoft.com/en-us/library/cc732526.aspx" target="_blank"&gt;Online Certificate Services Protocol&lt;/a&gt;&lt;/strong&gt; (OCSP) is an HTTP protocol that acts as an intermediary to responder to clients that support the protocol.&amp;nbsp; The OCSP response is a digitally signed response for the certificate status, but the response size does not change regardless of the number of revoked certificates.&amp;nbsp; On the back end, the OCSP responder generally relies on CRLs.&amp;nbsp; The advantage with OCSP over CRLs, is that in the event of a revocation that requires near immediate response a new CRL can be published and the OCSP responder can be configured to get the new CRL at a pre-determined interval (i.e. a few minutes) rather than waiting on the next update cached in the CRL.&lt;/p&gt;
&lt;p&gt;If CDPs are highly available, distributed appropriately and publishing frequency published with careful consideration to the factors involved such as latency, network traffic, and CRL then they can be efficient at providing accurate revocation information.&amp;nbsp; Further optimization can be achieve if clients support Delta CRLs, and the OCSP protocol.&lt;/p&gt;
&lt;blockquote&gt;
&lt;p&gt;The aforementioned &lt;a href="http://www.computerworld.com/s/article/9224078/Google_Chrome_will_no_longer_check_for_revoked_SSL_certificates_online" target="_blank"&gt;announcement&lt;/a&gt; goes on to state:&lt;/p&gt;
&lt;/blockquote&gt;
&lt;blockquote&gt;
&lt;p&gt;&lt;em&gt;If browsers were to insist on talking to the CA before accepting a certificate, all these cases would stop working. There's also the concern that the CA may experience downtime and it's bad engineering practice to build in single points of failure.&lt;/em&gt;&lt;/p&gt;
&lt;/blockquote&gt;
&lt;p&gt;&lt;strong&gt;CRL Distribution Points&lt;/strong&gt; - Recommended practices for CAs are that &lt;a href="http://technet.microsoft.com/en-us/library/ee382302(WS.10).aspx" target="_blank"&gt;CDPs be placed on highly available servers&lt;/a&gt; that are resilient to downtime and outages.&amp;nbsp; In fact an outage of a certificate authority should not affect the availability of CRLs unless the CA is down for an extended period of time extending beyond the next CRL publishing interval.&amp;nbsp; Even in those cases, the CRL can be &lt;a href="http://technet.microsoft.com/en-us/library/cc782041(WS.10).aspx" target="_blank"&gt;re-signed&lt;/a&gt; with the CA&amp;rsquo;s private key even if the CA is unavailable.&lt;/p&gt;
&lt;blockquote&gt;
&lt;p&gt;Furthermore, the discussion focuses on an &lt;a href="http://www.computerworld.com/s/article/9224078/Google_Chrome_will_no_longer_check_for_revoked_SSL_certificates_online" target="_blank"&gt;attacker scenario&lt;/a&gt; where:&lt;/p&gt;
&lt;/blockquote&gt;
&lt;blockquote&gt;
&lt;p&gt;&lt;em&gt;If the attacker is close to the server then online revocation checks can be effective, but an attacker close to the server can get certificates issued from many CAs and deploy different certificates as needed.&lt;/em&gt;&lt;/p&gt;
&lt;/blockquote&gt;
&lt;p&gt;&lt;strong&gt;Certificate Issuance&lt;/strong&gt; - In general, recommended practice for a PKI is to limit certificate issuance to only authorized recipient users and devices approved by the certificate manager.&amp;nbsp; If the CAs are well-protected with good physical&amp;nbsp; and logical security and the private keys secured and possibly protected by hardware security modules (HSM)s then the attack surface on the CAs themselves is greatly reduced as is the likelihood of CAs issuing certificates to unauthorized entities.&lt;/p&gt;
&lt;blockquote&gt;
&lt;p&gt;Most of the &lt;a href="http://blogs.msdn.com/b/ieinternals/archive/2011/04/07/10151106.aspx" target="_blank"&gt;successful attacks on HTTPS&lt;/a&gt; sites require control of both the certificates and the DNS.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Examples:&lt;/strong&gt;&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a title="http://www.symantec.com/connect/blogs/new-ssl-attack-revealed-black-hat" href="http://www.symantec.com/connect/blogs/new-ssl-attack-revealed-black-hat"&gt;http://www.symantec.com/connect/blogs/new-ssl-attack-revealed-black-hat&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a title="http://pcworld.about.net/od/securit1/Kaminsky-Many-Ways-to-Attack.htm" href="http://pcworld.about.net/od/securit1/Kaminsky-Many-Ways-to-Attack.htm"&gt;http://pcworld.about.net/od/securit1/Kaminsky-Many-Ways-to-Attack.htm&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a title="http://www.eweek.com/c/a/Security/Fake-SSL-Certificate-Incident-Highlights-Flaws-in-DNS-Comodo-CEO-440985/" href="http://www.eweek.com/c/a/Security/Fake-SSL-Certificate-Incident-Highlights-Flaws-in-DNS-Comodo-CEO-440985/"&gt;http://www.eweek.com/c/a/Security/Fake-SSL-Certificate-Incident-Highlights-Flaws-in-DNS-Comodo-CEO-440985/&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/blockquote&gt;
&lt;p&gt;The assertion here also suggested that &amp;ldquo;&lt;em&gt;While the benefits of online revocation checking are hard to find, the costs are clear: online revocation checks&amp;hellip;compromise privacy.&amp;rdquo;&amp;nbsp; &lt;/em&gt;What is the &amp;ldquo;&lt;em&gt;privacy concern because the CA learns the IP address of users and which sites they're visiting?&amp;rdquo;&lt;/em&gt;&amp;nbsp; A web browser or any application can check revocation using CRLs or OCSP from a CDP, but typically not a CA if following recommended practices for protecting CAs.&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;SSL Authentication&lt;/strong&gt; - If a client visits a secure sites (https), then the browser may check revocation status of the &lt;a href="http://support.microsoft.com/kb/257591" target="_blank"&gt;SSL certificate&lt;/a&gt; on that site (server) and optionally server will do the same for the certificates on the client, but these will usually checked against different CDP altogether unless client and server were published from the same CA.&amp;nbsp; In this type of scenario, two different IP addresses for client and server check revocation against two different CDP locations for the others&amp;rsquo; certs.&amp;nbsp; The general case for this does not lend itself to a loss of privacy using CRLs or OCSP for SSL communications.&lt;/p&gt;
&lt;p&gt;While the future of PKI and certificate trust model may change in the future; for the foreseeable future, CRLs still have an important role and provide tremendous value for PKIs&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3480080" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/staysafe/archive/tags/PKI+CRL+SSL+Certificate/">PKI CRL SSL Certificate</category></item><item><title>Mitigating Photo GeoTagging Safety Concerns with Windows Phone 7 Privacy Settings &amp; Pro Photo Tools</title><link>http://blogs.technet.com/b/staysafe/archive/2011/02/25/mitigating-photo-geotagging-safety-concerns-with-windows-phone-7-privacy-settings-amp-pro-photo-tools.aspx</link><pubDate>Fri, 25 Feb 2011 22:41:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3390369</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=3390369</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2011/02/25/mitigating-photo-geotagging-safety-concerns-with-windows-phone-7-privacy-settings-amp-pro-photo-tools.aspx#comments</comments><description>&lt;ul&gt;
&lt;li&gt;&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;&lt;strong&gt;&lt;a href="http://en.wikipedia.org/wiki/Geotagging"&gt;Photo GeoTagging&lt;/a&gt;&lt;/strong&gt; seems to be making headlines this week and bring to our attention the potential dangers of Photo GeoTagging.&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="http://abclocal.go.com/wabc/video?id=7621105&amp;amp;syndicate=syndicate&amp;amp;section"&gt;http://abclocal.go.com/wabc/video?id=7621105&amp;amp;syndicate=syndicate&amp;amp;section&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.myfoxtwincities.com/dpp/news/scitech/smart-phone-&amp;lsquo;geo-tagging&amp;rsquo;-tracks-location-feb-22-2011"&gt;http://www.myfoxtwincities.com/dpp/news/scitech/smart-phone-&amp;lsquo;geo-tagging&amp;rsquo;-tracks-location-feb-22-2011&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;There is also popular web site &lt;a href="http://icanstalku.com/"&gt;ICanStalkU.com&lt;/a&gt; which also brings out the security and privacy issues implicated by this technology as well which states that they are raising awareness and noting that:&lt;/p&gt;
&lt;p style="padding-left: 30px;"&gt;&lt;i&gt;"After analyzing your photos, someone could find out:&lt;/i&gt;&amp;nbsp; &lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;i&gt;Where you live&lt;/i&gt;&lt;/li&gt;
&lt;li&gt;&lt;i&gt;Who else lives there&lt;/i&gt;&lt;/li&gt;
&lt;li&gt;&lt;i&gt;Your commuting patterns&lt;/i&gt;&lt;/li&gt;
&lt;li&gt;&lt;i&gt;Where you go for lunch each day&lt;/i&gt;&lt;/li&gt;
&lt;li&gt;&lt;i&gt;Who you go to lunch with&lt;/i&gt;&lt;/li&gt;
&lt;li&gt;&lt;i&gt;Why you...like to visit a certain nice restaurant on a regular basis&lt;/i&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p style="padding-left: 30px;"&gt;&lt;i&gt;I think that most people if they realized they were posting exactly where they were each time they clicked "send" on their phone to post a photo to Twitter they would stop doing it at all!&amp;rdquo;&lt;/i&gt;&lt;/p&gt;
&lt;p&gt;&lt;i&gt;&lt;/i&gt;&lt;/p&gt;
&lt;p&gt;How can you protect yourself and others from potential privacy threats when using Windows Phone 7 privacy settings or Microsoft tools.&lt;/p&gt;
&lt;p&gt;If you've allowed Camera to access your location, when you capture a photo with WP7, your location will be stored as metadata of the captured photo.&amp;nbsp; For photos, your location information is stored in the Exchangeable Image File Format (EXIF) tag.&lt;/p&gt;
&lt;p&gt;&lt;b&gt;&lt;/b&gt;&lt;/p&gt;
&lt;p&gt;There are a couple of options within WP7 to disable GeoTagging altogether or just when uploading to Facebook or Skydrive.&lt;/p&gt;
&lt;ol&gt;
&lt;li&gt;To &lt;b&gt;disable&lt;/b&gt; Camera's&lt;b&gt; ability to tag photos and videos you've captured &lt;/b&gt;with your phone's location 
&lt;ul&gt;
&lt;li&gt;Go to &lt;strong&gt;Settings &amp;gt;&lt;/strong&gt;&lt;strong&gt;Applications &amp;gt;&lt;/strong&gt;&lt;strong&gt;Pictures + camera&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;Toggle the &lt;strong&gt;Include location (GPS) info in pictures you take&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;Switch to &lt;strong&gt;Off&lt;/strong&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;If you would like to have location information&lt;b&gt; removed from the metadata of &lt;/b&gt;photos you upload from your phone to&lt;b&gt; Facebook&lt;/b&gt; or&lt;b&gt; SkyDrive&lt;/b&gt; 
&lt;ul&gt;
&lt;li&gt;Go to &lt;strong&gt;Settings &amp;gt;&lt;/strong&gt;&lt;strong&gt;Applications &amp;gt;&lt;/strong&gt;&lt;strong&gt;Pictures + camera&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;Toggle the &lt;strong&gt;Keep location info on uploaded pictures&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;Switch to &lt;strong&gt;Off&lt;/strong&gt;.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ol&gt;
&lt;p&gt;Additional details on picture privacy settings can be found here: &lt;a href="http://www.microsoft.com/windowsphone/en-us/privacy.aspx"&gt;http://www.microsoft.com/windowsphone/en-us/privacy.aspx&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;To clean up existing GeoTags in photos already captured or posted, you can manually edit the GeoTag metadata out of photos using a free downloadable tool from Microsoft &lt;a href="http://www.microsoft.com/downloads/en/details.aspx?FamilyID=184075d2-40b5-4172-88ae-878f81896d4d&amp;amp;displaylang=en"&gt;Pro Photo Tools&lt;/a&gt; v2.&lt;/p&gt;
&lt;p&gt;&lt;em&gt;&lt;/em&gt;&lt;/p&gt;
&lt;blockquote&gt;
&lt;p&gt;&lt;em&gt;The Pro Photo Tools allow you to &lt;strong&gt;add, change, and delete common metadata properties for digital photographs&lt;/strong&gt;. You can place photos on the Live Earth map and then drag them to the right location. The GPS information will be stored back into the photos. If you have a GPS device, you can load track route files from the most popular formats (NMEA, GPX, and KML) and see them on the map. Then you can place your photos on the track route. Again, the GPS info will be stored into your file. When you have the right GPS location for your photos, you can automatically generate location info like country, state, city and even street names. Or if you know the location where a picture was taken, you can type it in and get the GPS location information automatically.&lt;/em&gt;&lt;/p&gt;
&lt;/blockquote&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3390369" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Photo+Privacy+Metadata+WP7+Windows+Phone+Safety/">Photo Privacy Metadata WP7 Windows Phone Safety</category></item><item><title>E-Gov Security Part 3 (Trusting the Cloud)</title><link>http://blogs.technet.com/b/staysafe/archive/2011/02/18/e-gov-security-part-3-trusting-the-cloud.aspx</link><pubDate>Fri, 18 Feb 2011 20:48:55 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3388471</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=3388471</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2011/02/18/e-gov-security-part-3-trusting-the-cloud.aspx#comments</comments><description>&lt;p&gt;E-Government continues to grow with citizens demanding more online services daily and the consumerization of IT devices that need access to those services from anywhere in the world.&amp;nbsp;&amp;nbsp;Threats to these systems&amp;nbsp;can&amp;nbsp;outpace that growth at an even greater rate if&amp;nbsp;government omits comprehensive security planning either carelessly or even willfully out of a need for quick deployment to meet citizen demands, legal obligations or to avoid losing budgeted project funds.&lt;/p&gt;
&lt;p&gt;The foundation for e-Government Services is a &lt;strong&gt;Services Oriented Architecture&lt;/strong&gt; (SOA) whereby citizens coming through any number of access channels or routed to any number of interoperability services whereby government agencies taking in, processing or distributing e-government data do not have to be the intake and exchange engine, and can instead focus on their core competency or government service.&lt;/p&gt;
&lt;table border="0"&gt;
&lt;caption&gt;Common E-Government Access Channels&lt;/caption&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td&gt;&lt;img src="http://blogs.technet.com/resized-image.ashx/__size/550x0/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-58-16/4477.Web.png" border="0" /&gt;&lt;/td&gt;
&lt;td&gt;&lt;img src="http://blogs.technet.com/resized-image.ashx/__size/550x0/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-58-16/6888.e_2D00_mail.png" border="0" /&gt;&lt;/td&gt;
&lt;td&gt;&lt;img src="http://blogs.technet.com/resized-image.ashx/__size/550x0/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-58-16/8446.Digital-TV.png" border="0" /&gt;&lt;/td&gt;
&lt;td&gt;&lt;img src="http://blogs.technet.com/resized-image.ashx/__size/550x0/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-58-16/8726.Fax.png" border="0" /&gt;&lt;/td&gt;
&lt;td&gt;&lt;img src="http://blogs.technet.com/resized-image.ashx/__size/550x0/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-58-16/5621.Phone.png" border="0" /&gt;&lt;/td&gt;
&lt;td&gt;&lt;img src="http://blogs.technet.com/resized-image.ashx/__size/550x0/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-58-16/1307.In-Person.png" border="0" /&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style="text-align: center;"&gt;Web&lt;/td&gt;
&lt;td style="text-align: center;"&gt;E-mail&lt;/td&gt;
&lt;td style="text-align: center;"&gt;Digital TV&lt;/td&gt;
&lt;td style="text-align: center;"&gt;Fax&lt;/td&gt;
&lt;td style="text-align: center;"&gt;Phone&lt;/td&gt;
&lt;td style="text-align: center;"&gt;In Person&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;table border="0"&gt;
&lt;tbody&gt;
&lt;tr&gt;
&lt;td style="TEXT-ALIGN: center"&gt;&lt;/td&gt;
&lt;td&gt;
&lt;p&gt;&lt;strong&gt;Content Delivery&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Search&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Electronic Forms&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Document Submission&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Collaboration&lt;/strong&gt;&lt;/p&gt;
&lt;/td&gt;
&lt;td&gt;&lt;/td&gt;
&lt;td&gt;&lt;img height="200" width="204" src="http://blogs.technet.com/resized-image.ashx/__size/550x0/__key/CommunityServer-Blogs-Components-WeblogFiles/00-00-00-58-16/8547.SOA.png" border="0" /&gt;&lt;/td&gt;
&lt;td&gt;&lt;/td&gt;
&lt;td&gt;
&lt;p&gt;&lt;strong&gt;Application Integration&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Process Orchestration&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Message Routing&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Identity Management&lt;/strong&gt;&lt;/p&gt;
&lt;/td&gt;
&lt;td&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;tr&gt;
&lt;td style="TEXT-ALIGN: center; BACKGROUND-COLOR: #8b0000"&gt;&lt;strong&gt;&lt;span style="color: #ffffff;"&gt;Agency A&lt;/span&gt;&lt;/strong&gt;&lt;/td&gt;
&lt;td style="TEXT-ALIGN: center; BACKGROUND-COLOR: #ff8c00"&gt;&lt;strong&gt;&lt;span style="color: #ffffff;"&gt;Agency B&lt;/span&gt;&lt;/strong&gt;&lt;/td&gt;
&lt;td style="TEXT-ALIGN: center; BACKGROUND-COLOR: #ffd700"&gt;&lt;strong&gt;&lt;span style="color: #ffffff;"&gt;Agency C&lt;/span&gt;&lt;/strong&gt;&lt;/td&gt;
&lt;td style="TEXT-ALIGN: center; BACKGROUND-COLOR: #006400"&gt;&lt;strong&gt;&lt;span style="color: #ffffff;"&gt;Shared Services&lt;/span&gt;&lt;/strong&gt;&lt;/td&gt;
&lt;td style="TEXT-ALIGN: center; BACKGROUND-COLOR: #0000ff"&gt;&lt;strong&gt;&lt;span style="color: #ffffff;"&gt;Agency D&lt;/span&gt;&lt;/strong&gt;&lt;/td&gt;
&lt;td style="TEXT-ALIGN: center; BACKGROUND-COLOR: #4b0082"&gt;&lt;strong&gt;&lt;span style="color: #ffffff;"&gt;Agency E&lt;/span&gt;&lt;/strong&gt;&lt;/td&gt;
&lt;td style="TEXT-ALIGN: center; BACKGROUND-COLOR: #800080"&gt;&lt;strong&gt;&lt;span style="color: #ffffff;"&gt;Agency F&lt;/span&gt;&lt;/strong&gt;&lt;/td&gt;
&lt;/tr&gt;
&lt;/tbody&gt;
&lt;/table&gt;
&lt;p&gt;&amp;nbsp;Moving this model to the Microsoft cloud has tremendous benefits.&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Access is virtually anywhere, anytime&lt;/li&gt;
&lt;li&gt;Share location-independent resources and costs in an environmentally sustainable way&lt;/li&gt;
&lt;li&gt;Allocate resources flexibly and rapidly&lt;/li&gt;
&lt;li&gt;Only pay for what you use&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;See Microsoft's &lt;a href="http://www.microsoft.com/industry/government/guides/cloud_computing.aspx" title="Government Cloud"&gt;Government Cloud&lt;/a&gt; solutions and begin operating E-Government with increased security and compliance&amp;nbsp;(IS027001, FISMA, SAS70).&lt;/p&gt;
&lt;p&gt;For additional information on Microsoft soltutions for Government, check out.&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="http://blogs.technet.com/industry/government/guides/software-plus-services.mspx" class="default_link"&gt;Cloud Computing&lt;/a&gt; &lt;/li&gt;
&lt;li&gt;&lt;a href="http://blogs.technet.com/industry/government/solutions/CloudApplications.aspx" class="default_link"&gt;Cloud Application Center&lt;/a&gt; &lt;/li&gt;
&lt;li&gt;&lt;a href="http://blogs.technet.com/industry/government/guides/Gov20.mspx" class="default_link"&gt;Gov 2.0&lt;/a&gt; &lt;/li&gt;
&lt;/ul&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3388471" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Application/">Application</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Defense/">Defense</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Web/">Web</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Security+Application+Code+Firewall+SAFECode+Development/">Security Application Code Firewall SAFECode Development</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Security+Windows/">Security Windows</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/E_2D00_Government/">E-Government</category></item><item><title>E-GOV Security (Part 2–Twenty Critical Cyber Defense Controls to Secure Citizen Data &amp; Maintain Public Trust)</title><link>http://blogs.technet.com/b/staysafe/archive/2010/12/22/e-gov-security-part-2-twenty-critical-cyber-defense-controls-to-secure-citizen-data-amp-maintaining-public-trust.aspx</link><pubDate>Wed, 22 Dec 2010 21:50:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3376903</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=3376903</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2010/12/22/e-gov-security-part-2-twenty-critical-cyber-defense-controls-to-secure-citizen-data-amp-maintaining-public-trust.aspx#comments</comments><description>&lt;p&gt;The National Association of State CIO’s (NASCIO) &amp;amp; Deloitte released findings from “&lt;b&gt;&lt;a href="http://www.deloitte.com/view/en_US/us/Industries/us-state-government/ae3572eefd25b210VgnVCM2000001b56f00aRCRD.htm"&gt;The 2010 Deloitte-NASCIO Cybersecurity Study&lt;/a&gt;” &lt;/b&gt;which found that State governments are &lt;b&gt;&lt;u&gt;NOT&lt;/u&gt;&lt;/b&gt; doing enough to &lt;b&gt;secure citizen data &lt;/b&gt;and &lt;b&gt;maintain public trust&lt;/b&gt;. In fact looking at the &lt;a href="http://www.deloitte.com/assets/Dcom-UnitedStates/Local%20Assets/Documents/us_state_2010DeloitteNASCIOCybersecurityStudy_110910.pdf"&gt;details&lt;/a&gt; of this study it’s evident that state governments have more personally identifiable information (PII) of citizens than any other organizations.&lt;/p&gt;  &lt;p&gt;State governments fund security less than other entities and often CISO’s lack enforcement authority for broad security enforcement throughout the government. The funding problem results in shortage of IT security personnel. The &lt;a href="http://www.deloitte.com/view/en_US/us/Industries/us-state-government/ae3572eefd25b210VgnVCM2000001b56f00aRCRD.htm"&gt;study&lt;/a&gt; shows that only 2% of state governments have more than 50 information security FTEs compared to 48.5% for similar sized organizations.&lt;/p&gt;  &lt;p&gt;While many state CISO’s at the state have adopted NIST standards for risk assessment, most state governments still do not adhere to &lt;b&gt;enforcement mandates&lt;/b&gt; or audit compliance like &lt;b&gt;FISMA&lt;/b&gt; (Federal Information Security Management Act) which is enforced at the federal government level. The irony is that adopting better security standards can actually save SLG money on IT procurement and daily management and operations.&lt;/p&gt;  &lt;p&gt;According to Gartner's, 2008 &amp;quot;&lt;b&gt;&lt;a href="http://www.gartner.com/DisplayDocument?id=596207&amp;amp;ref=g_sitelink"&gt;Case Study: Air Force Commodity Councils Take Aim at Mission Effectiveness&lt;/a&gt;&lt;/b&gt;&amp;quot;: The U.S. Air Force adopted new security standards including the Federal Desktop Core Configuration (FDCC) &amp;amp; utilization of a Microsoft support agreement which helped&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;Speed up implementation of critical &lt;b&gt;enterprise wide security standards&lt;/b&gt; &lt;/li&gt;    &lt;li&gt;Save approximately &lt;b&gt;$156 million in hardware &lt;/b&gt;costs &lt;/li&gt;    &lt;li&gt;Enforce &lt;b&gt;enterprise-level cybersecurity&lt;/b&gt; policies &lt;/li&gt;    &lt;li&gt;Timely distribution of &lt;b&gt;software updates&lt;/b&gt; &amp;amp; &lt;b&gt;configuration management&lt;/b&gt; &lt;/li&gt;    &lt;li&gt;Save &lt;b&gt;$100+ million&lt;/b&gt; in&lt;b&gt; software licenses &lt;/b&gt;&amp;amp;&lt;b&gt; other life cycle costs&lt;/b&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;In all the USAF achieved better security and saved more than &lt;b&gt;$256 million&lt;/b&gt; in 4 years by simply implementing stricter security standards and reining in spending for procurements and excessive IT staff by reducing the number of required systems administrators required to manage systems.&lt;/p&gt;  &lt;p&gt;SLG needs to first improve security by implementing the &lt;b&gt;&lt;a href="http://www.sans.org/critical-security-controls/cag.pdf"&gt;Twenty Critical Controls for Effective Cyber Defense&lt;/a&gt;&lt;/b&gt;. &lt;b&gt;Few&lt;/b&gt; SLG agencies have adopted &lt;b&gt;&lt;u&gt;ALL&lt;/u&gt;&lt;/b&gt; of these safeguards and as a result we are losing the “Cyber War” in state and local government and subject to threats and data loss potential that could dwarf by magnitudes that which was released by Wikileaks.org.&lt;/p&gt;  &lt;p&gt;Automation and software can be mapped to the controls as well in order to combat back and gain the tactical advantage in cyberspace while implementing these controls. In an effort to simplify adoption, SANS has mapped a list of generically user-vetted tools &lt;a href="http://www.sans.org/critical-security-controls/user-tools.php"&gt;here&lt;/a&gt;, however there are a number of Microsoft Cloud &amp;amp; On-Premise technologies that map to each of these 20 Critical Controls:&lt;/p&gt;  &lt;p&gt;&lt;b&gt;1. &lt;/b&gt;&lt;b&gt;Inventory of Authorized and Unauthorized Devices&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/bb632437.aspx"&gt;Microsoft System Center Configuration Manager&lt;/a&gt; (SCCM)- Hardware Inventory&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/windows/enterprise/products/mdop/ais.aspx"&gt;System Center Online Asset Inventory Service&lt;/a&gt; (AIS)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/windows/windowsintune/pc-management.aspx"&gt;Windows Intune&lt;/a&gt; (In the Cloud)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/solutionaccelerators/dd627343.aspx"&gt;Microsoft Assessment and Planning (MAP) Toolkit&lt;/a&gt;&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;Inventory of Authorized and Unauthorized Software&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/bb632437.aspx"&gt;Microsoft System Center Configuration Manager&lt;/a&gt; (SCCM)- Software Inventory&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/windows/dd320283.aspx"&gt;Windows 7 AppLocker&lt;/a&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/bb457006.aspx"&gt;Software Restriction Policies&lt;/a&gt; (Active Directory GPO)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/downloads/en/details.aspx?displaylang=en&amp;amp;FamilyID=c25884f2-9ab6-419f-a22f-d39225eac339"&gt;Microsoft Software Inventory Analyzer&lt;/a&gt; (MSIA) – &lt;b&gt;Free Tool&lt;/b&gt;&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;2. &lt;/b&gt;&lt;b&gt;Secure Configurations for Hardware and Software on Laptops, Workstations, and Servers&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/industry/government/federal/fdccdeployment.aspx"&gt;Federal Desktop Core Configuration (FDCC) Image&lt;/a&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/dd548350(WS.10).aspx"&gt;Microsoft Active Directory GPOs&lt;/a&gt; &amp;amp; &lt;a href="http://technet.microsoft.com/en-us/library/dd548350(WS.10).aspx"&gt;Security Guidance&lt;/a&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/downloads/en/details.aspx?FamilyID=5534bee1-3cad-4bf0-b92b-a8e545573a3e&amp;amp;displayLang=en"&gt;Microsoft Security Compliance Manager&lt;/a&gt;(Central Security Baseline Management)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/bb693504.aspx"&gt;Microsoft System Center Configuration Manager&lt;/a&gt; (SCCM)| &lt;a href="http://technet.microsoft.com/en-us/library/bb693504.aspx"&gt;Desired Configuration Manager&lt;/a&gt;&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;3. &lt;/b&gt;&lt;b&gt;Secure Configurations for Network Devices such as Firewalls, Routers, and Switches&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/cc771455(WS.10).aspx"&gt;802.1X Wired Authentication&lt;/a&gt; &lt;/i&gt;&lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/cc771455(WS.10).aspx"&gt;802.1X Wireless Authentication&lt;/a&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/dd314175(WS.10).aspx"&gt;Network Access Protection&lt;/a&gt; (NAP) | Cisco &lt;a href="http://technet.microsoft.com/en-us/library/dd296894(WS.10).aspx"&gt;Network Access Control&lt;/a&gt; (NAC)&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;4. &lt;/b&gt;&lt;b&gt;Boundary Defense&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/forefront/threat-management-gateway/en/us/"&gt;Microsoft Threat Management Gateway&lt;/a&gt; (TMG)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/forefront/unified-access-gateway/en/us/"&gt;Microsoft Unified Access Gateway&lt;/a&gt; (UAG)&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;5. &lt;/b&gt;&lt;b&gt;Maintenance, Monitoring, and Analysis of Security Audit Logs&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/systemcenter/en/us/operations-manager.aspx"&gt;Microsoft System Center Operations Manager&lt;/a&gt; (SCOM)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/bb381258.aspx"&gt;Audit Collection Services&lt;/a&gt;&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;6. &lt;/b&gt;&lt;b&gt;Application Software Security&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/security/sdl/default.aspx"&gt;Microsoft Security Development Lifecycle&lt;/a&gt; (SDL)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/security/sdl/getstarted/threatmodeling.aspx"&gt;SDL Threat Modeling Tool&lt;/a&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/downloads/en/details.aspx?FamilyID=6aed14bd-4766-4d9d-9ee2-fa86aad1e3c9&amp;amp;displaylang=en"&gt;Banned.h&lt;/a&gt; (Header file to sanitize code listing banned APIs)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/downloads/en/details.aspx?FamilyID=917023f6-d5b7-41bb-bbc0-411a7d66cf3c&amp;amp;displaylang=en"&gt;FxCop&lt;/a&gt; (Static code analysis of .NET)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://msdn.microsoft.com/en-us/library/ms182025.aspx"&gt;Code Analysis for C/C++&lt;/a&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/downloads/en/details.aspx?FamilyId=051ee83c-5ccf-48ed-8463-02f56a6bfc09&amp;amp;displaylang=en"&gt;Anti-XSS Library&lt;/a&gt; (Mitigates Cross Site Scripting)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/downloads/en/details.aspx?displaylang=en&amp;amp;FamilyID=90e6181c-5905-4799-826a-772eafd4440a"&gt;BinScope Binary Analyzer&lt;/a&gt; (Free Tool)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/downloads/en/details.aspx?displaylang=en&amp;amp;FamilyID=b2307ca4-638f-4641-9946-dc0a5abe8513"&gt;MiniFuzz&lt;/a&gt; (Free Tool)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/downloads/en/details.aspx?FamilyID=8737519c-52d3-4291-9034-caa71855451f"&gt;SDL Regex Fuzzer&lt;/a&gt; (Free Too)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/downloads/en/details.aspx?FamilyID=c4a25ab9-649d-4a1b-b4a7-c9d8b095df18"&gt;AppVerifier&lt;/a&gt; (Free Tool)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/visualstudio/en-us/"&gt;Visual Studio 2010&lt;/a&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/forefront/threat-management-gateway/en/us/"&gt;Microsoft Threat Management&lt;/a&gt; Gateway (TMG)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/forefront/unified-access-gateway/en/us/"&gt;Microsoft Unified Access Gateway&lt;/a&gt; (UAG)&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;7. &lt;b&gt;Controlled Use of Administrative Privileges&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;Microsoft Active Directory&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/bb693504.aspx"&gt;Microsoft System Center Configuration Manager&lt;/a&gt;&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;8. &lt;/b&gt;&lt;b&gt;Controlled Access Based on Need to Know&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/windowsserver2008/en/us/fci.aspx"&gt;Windows Server 2008 R2 File Classification Infrastructure&lt;/a&gt; (FCI)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/windowsserver2008/en/us/ad-rms-overview.aspx"&gt;AD Rights Management Services (RMS)&lt;/a&gt;&lt;/i&gt;&lt;i&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;Microsoft Active Directory&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;9. &lt;/b&gt;&lt;b&gt;Continuous Vulnerability Assessment and Remediation&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/systemcenter/en/us/configuration-manager/cm-software-update-management.aspx"&gt;System Center Configuration Manager&lt;/a&gt; (SCCM) – Software Update Management&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/cc706995(WS.10).aspx"&gt;Microsoft Software Update Services&lt;/a&gt; (WSUS)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://shavlik.com/scupdates.aspx"&gt;Shavlik&lt;/a&gt;&lt;/i&gt;&lt;i&gt; (SCUPdates) – System Center (SCCM) deployment of updates for both Microsoft &amp;amp; 3&lt;sup&gt;rd&lt;/sup&gt; party applications&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://eminentware.com/sccm-third-party-patch-management.html"&gt;Eminentware&lt;/a&gt;&lt;/i&gt;&lt;i&gt; – Simplify 3&lt;sup&gt;rd&lt;/sup&gt; party patch management via WSUS and SCCM&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="https://secunia.com/vulnerability_scanning/corporate/sccm/"&gt;Secunia&lt;/a&gt;&lt;b&gt; &lt;/b&gt;&lt;/i&gt;&lt;i&gt;(Corporate Software Inspector - CSI) integrates with WSUS and SCCM for 3&lt;sup&gt;rd&lt;/sup&gt; party patch management &lt;/i&gt;&lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/forefront/endpoint-protection/en/us/default.aspx"&gt;Forefront Endpoint Protection 2010&lt;/a&gt; (FEP)&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;10. &lt;/b&gt;&lt;b&gt;Account Monitoring and Control&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/systemcenter/en/us/operations-manager.aspx"&gt;Microsoft System Center Operations Manager&lt;/a&gt; (SCOM)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/bb381258.aspx"&gt;Audit Collection Services&lt;/a&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://msdn.microsoft.com/en-us/library/aa385780(VS.85).aspx"&gt;Microsoft Windows Event Log&lt;/a&gt;&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;11. &lt;/b&gt;&lt;b&gt;Malware Defenses&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/forefront/endpoint-protection/en/us/default.aspx"&gt;Forefront Endpoint Protection 2010&lt;/a&gt; (FEP)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/forefront/online-protection-for-exchange/en/us/default.aspx"&gt;Microsoft Forefront Protection for Exchange&lt;/a&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/forefront/protection-for-sharepoint/en/us/default.aspx"&gt;Microsoft Forefront Protection for SharePoint&lt;/a&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/forefront/serversecurity/ocs/en/us/default.aspx"&gt;Microsoft Forefront Security for OCS&lt;/a&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/forefront/threat-management-gateway/en/us/"&gt;Microsoft Forefront Threat Management Gateway&lt;/a&gt; (TMG)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/online/exchange-email-filtering.aspx"&gt;Microsoft Forefront Online Protection for Exchange (&lt;/a&gt;FOPE)&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;12. &lt;/b&gt;&lt;b&gt;Limitation and Control of Network Ports, Protocols, and Services&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/forefront/endpoint-protection/en/us/default.aspx"&gt;Forefront Endpoint Protection 2010&lt;/a&gt; (FEP)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/systemcenter/en/us/configuration-manager/cm-desired-configuration-management.aspx"&gt;System Center Configuration Manager&lt;/a&gt; (SCCM) – &lt;a href="http://www.microsoft.com/systemcenter/en/us/configuration-manager/cm-desired-configuration-management.aspx"&gt;Desired Configuration Management&lt;/a&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://windows.microsoft.com/en-US/windows7/products/features/windows-firewall"&gt;Windows Firewall&lt;/a&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/forefront/threat-management-gateway/en/us/"&gt;Microsoft Forefront Threat Management Gateway&lt;/a&gt; (TMG)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/forefront/unified-access-gateway/en/us/"&gt;Microsoft Forefront Unified Access Gateway&lt;/a&gt; (UAG)&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;13. &lt;/b&gt;&lt;b&gt;Wireless Device Control&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/cc771455(WS.10).aspx"&gt;802.1X Wireless Authentication&lt;/a&gt;&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/network/bb643123.aspx"&gt;Microsoft Internet Authentication Service&lt;/a&gt; &lt;/i&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;14. &lt;/b&gt;&lt;b&gt;Data Loss Prevention&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/windowsserver2008/en/us/ad-rms-overview.aspx"&gt;AD Rights Management Services&lt;/a&gt; (RMS)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/windowsserver2008/en/us/ad-rms-dlp.aspx"&gt;RSA Data Loss Prevention&lt;/a&gt; (integrates with RMS)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/forefront/unified-access-gateway/en/us/"&gt;Microsoft Forefront Unified Access Gateway&lt;/a&gt; (UAG)- HTTP redaction &amp;amp; Attachment Wiper&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/cc732774.aspx"&gt;BitLocker Drive Encryption&lt;/a&gt;&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;15. &lt;/b&gt;&lt;b&gt;Secure Network Engineering&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/microsoftservices/en/us/home.aspx"&gt;Microsoft Consulting Services&lt;/a&gt; (MCS)&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;16. &lt;/b&gt;&lt;b&gt;Penetration Tests and Red Team Exercises&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://download.microsoft.com/download/b/5/6/b563c549-4064-4b24-9d3d-b8c57cd2a3c6/MicrosoftITAttackAndPenetrationTestingTeamPPT.ppt"&gt;Microsoft IT Attack &amp;amp; Penetration Testing Case Study&lt;/a&gt;&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;17. &lt;/b&gt;&lt;b&gt;Incident Response Capability&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/security/sdl/default.aspx"&gt;Microsoft Security Development Lifecycle&lt;/a&gt; (SDL)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/microsoftservices/en/us/support_premier.aspx"&gt;Microsoft Services Premier Support&lt;/a&gt;&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;18. &lt;/b&gt;&lt;b&gt;Data Recovery Capability&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/systemcenter/en/us/data-protection-manager.aspx"&gt;Microsoft System Center Data Protection Manager&lt;/a&gt; (DPM)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://technet.microsoft.com/en-us/library/ee923636(WS.10).aspx"&gt;Volume Shadow Copy Service&lt;/a&gt; (VSCS)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://windows.microsoft.com/en-us/windows7/products/features/system-restore"&gt;Windows System Restore&lt;/a&gt;&lt;/i&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;b&gt;19. &lt;/b&gt;&lt;b&gt;Security Skills Assessment and Appropriate Training to Fill Gaps&lt;/b&gt;&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;i&gt;Microsoft &lt;a href="http://technet.microsoft.com/en-us/library/dd548350(WS.10).aspx"&gt;Security Guidance&lt;/a&gt; on TechNet&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;i&gt;&lt;a href="http://www.microsoft.com/security/sdl/default.aspx"&gt;Microsoft Security Development Lifecycle&lt;/a&gt; (SDL)&lt;/i&gt; &lt;/li&gt;    &lt;li&gt;&lt;a href="https://www.microsoftelearning.com/"&gt;&lt;em&gt;Microsoft E-Learning&lt;/em&gt;&lt;/a&gt; &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;Microsoft&amp;#160; has solutions, products and technologies that map into each of these weak control&amp;#160; areas identified by the NSA &amp;amp; NIST, and many of them are already licensed by SLG agencies or free&amp;#160; downloads but&amp;#160; many controls still have yet to be deployed.&amp;#160; State and local governments agencies may drastically improve security while saving money by implementing these security controls holistically rather than piecemeal as historically has been the case.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3376903" width="1" height="1"&gt;</description></item><item><title>E-GOV Security (Part 1–Data Loss Prevention)</title><link>http://blogs.technet.com/b/staysafe/archive/2010/10/23/e-gov-security-part-1-data-loss-prevention.aspx</link><pubDate>Sat, 23 Oct 2010 06:00:20 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3363637</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=3363637</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2010/10/23/e-gov-security-part-1-data-loss-prevention.aspx#comments</comments><description>&lt;p&gt;State &amp;amp; Local Government (SLG) is quickly adopting to demands of 21st century U.S. citizens demanding e-government (E-GOV) services.&amp;#160; With E-GOV comes both the convenience of Internet services necessary to support tech-savvy Cyber Citizens along with the not-so-convenient threat of transactional man-in-the-middle attacks or data theft / loss to profit-seeking malevolent cyber squatters or foreign governments bent on sacking the little guys.&amp;#160; Little guys here in the sense that without structured CIA assurance models adopted by the U.S. military or OMB-supervised Federal agencies which have significant budgeting and training strategic IT security defenses.&lt;/p&gt;  &lt;p&gt;U.S. SLG agencies on the other hand, not so much sometimes.&amp;#160; Consider for example some of the crown jewels and adjoining vulnerabilities at State &amp;amp; Local government cities and counties that make SLG such coveted targets of these profiteering cyber crooks and hacking ne’er do wells.&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;strong&gt;Public Safety &amp;amp; Environmental Security Risks:&lt;/strong&gt;&amp;#160; SLG agencies manage supervisory control and data acquisition (SCADA) and industrial control systems (ICS) controlling critical energy (gas &amp;amp; electric),water supply, and waste management systems.&amp;#160; These systems are distributed across much of the U.S..&amp;#160; In fact, much of our nation’s critical infrastructure is managed not by large highly organized and regulated agencies of the U.S. federal government or Defense Department, but by smaller often disjointed entities operating independently on a shared&amp;#160; interagency computing infrastructure or network.&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;Take these risks and compound them with the nearly endless array of personally identifiable information (PII) data stores available on these computer systems, and it becomes even more compelling for those interested in selling data on the black market to the highest bidder.&amp;#160; This highly sensitive data is found typically unclassified (i.e. no designation for public, private, personal data etc.…) and unencrypted on file shares, USB drives, electronic databases, optical media and on laptops/PCs usually without even basic rights management or file auditing enabled to track access by authorized users.&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;strong&gt;National &amp;amp; Homeland Security Secrets:&lt;/strong&gt;&amp;#160; SLG maintains control of valuable and often unique electronic data including PII in the form of&lt;/li&gt;    &lt;/ul&gt;&lt;ul&gt;     &lt;li&gt;Legal, criminal, and health records&lt;/li&gt;      &lt;li&gt;Juror names &amp;amp; Judges information&lt;/li&gt;      &lt;li&gt;Juvenile Criminal Records (under 18 files protected by law from public disclosure)&lt;/li&gt;      &lt;li&gt;Domestic Assault &amp;amp; Rape Victims Names and Addresses&lt;/li&gt;      &lt;li&gt;Police &amp;amp; Sheriff Fingerprint Databases&lt;/li&gt;      &lt;li&gt;County Hospital &amp;amp; Health Department Medical Records&lt;/li&gt;      &lt;li&gt;Registered Voters‘ Social Security Numbers&lt;/li&gt;      &lt;li&gt;Etc.…&lt;/li&gt;   &lt;/ul&gt;   &lt;p&gt;Finally, the perfect storm emerges once the weaknesses in many SLG communities are exposed by the weak IT security standards or enforcement mechanisms which result out of low budgeting constraints, political boundaries to security enforcement authority, and limited availability of security-trained application developers or security personnel to address detected problems.&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;strong&gt;Organizational Weaknesses:&lt;/strong&gt; SLG agencies are fundamentally organized differently than federal agencies or businesses which often creates a potentially high risk operational environment.&lt;/li&gt;    &lt;/ul&gt;&lt;ul&gt;     &lt;li&gt;Counties run hosted revenue system for the states, but are often left to manage their own security standards.&lt;/li&gt;      &lt;li&gt;Complex disjointed departments without a unified top down management or security enforcement ability are still typically interconnected on the same networks to other agencies without clear security protocols or defined encryption methods or interagency firewalls&lt;/li&gt;      &lt;li&gt;Many cities and counties have low or zero funds for developer security training or dedicated security staff&lt;/li&gt;      &lt;li&gt;Local Election Commissions manage voting at local, state, and federal levels&lt;/li&gt;   &lt;/ul&gt;   &lt;p&gt;&lt;strong&gt;Data Breaches&lt;/strong&gt; in State &amp;amp; Local Government affect our personal privacy, financial information or federal constitutional rights&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;E-Voting machines affect outcome of city, county, state, and federal elections and eventually the laws of our land&lt;/li&gt;    &lt;li&gt;Stolen Social Security numbers from laptops affects identity’s security&lt;/li&gt;    &lt;li&gt;Tax systems affect personal finances and legal/criminal accountabilities &lt;/li&gt;    &lt;li&gt;Legal &amp;amp; justice system databases affects us legally and possibly our privacy&lt;/li&gt;    &lt;li&gt;SCADA &amp;amp; ICS systems affects the environment and our personal safety as utility consumers&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;strong&gt;Data Loss Prevention&lt;/strong&gt; technologies comes in many forms from Microsoft, but there are a few technologies at different defense-in-depth layers that stick out to help SLG prevent loss of this sensitive data in government.&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;a href="http://technet.microsoft.com/en-us/library/cc771234(WS.10).aspx"&gt;AD Rights Management Services&lt;/a&gt; (File layer)&lt;/li&gt;    &lt;li&gt;&lt;a href="http://www.microsoft.com/windowsserver2008/en/us/ad-rms-dlp.aspx"&gt;RSA Data Loss Prevention Suite&lt;/a&gt; (File, app &amp;amp; network layers) - integrates with RMS&lt;/li&gt;    &lt;li&gt;&lt;a href="https://mail.microsoft.com/owa/redir.aspx?C=7e7d3a8eb9694e9da181bee4cbd86624&amp;amp;URL=http%3a%2f%2ftechnet.microsoft.com%2fen-us%2flibrary%2fff358694.aspx"&gt;Forefront Unified Access Gateway&lt;/a&gt; (App layer)&lt;/li&gt;    &lt;/ul&gt;&lt;ul&gt;     &lt;li&gt;HTTP redaction to remove PII in web apps&lt;/li&gt;      &lt;li&gt;Attachment wiper&lt;/li&gt;   &lt;/ul&gt;    &lt;ul&gt;&lt;li&gt;&lt;a href="http://technet.microsoft.com/en-us/library/dd875547(WS.10).aspx?ITPID=secnews"&gt;BitLocker&lt;/a&gt; (Drive/volume layer)&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;Technology alone will not make SLG data secure, but if SLG combines these technologies with a good security policies, a security development lifecycle (SDL), encrypted connections (SSL/IPsec) using the doctrine of least privileges access and a top-down security management approach that’s enforceable; then these technologies from Microsoft can assist government is securing its data on premise, in transit and in the cloud., &lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3363637" width="1" height="1"&gt;</description></item><item><title>Free Microsoft Security Tools</title><link>http://blogs.technet.com/b/staysafe/archive/2009/11/30/free-microsoft-security-tools.aspx</link><pubDate>Mon, 30 Nov 2009 19:06:59 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3297314</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=3297314</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2009/11/30/free-microsoft-security-tools.aspx#comments</comments><description>&lt;p&gt;I often get asked where someone can find a comprehensive list of Security tools from Microsoft.&amp;#160; Many tools which may be used by an administrator are not the same set of tools used by a developer or a consumer, but its nice to have a comprehensive list.&lt;/p&gt;  &lt;p&gt;There are four sites that a good landing points:&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;a href="http://technet.microsoft.com/en-us/security/cc297183.aspx"&gt;&lt;strong&gt;Security Tools on TechNet&lt;/strong&gt;&lt;/a&gt;&lt;/li&gt;    &lt;li&gt;&lt;a href="http://www.microsoft.com/sysinternals"&gt;&lt;strong&gt;Sysinternals&lt;/strong&gt;&lt;/a&gt;&lt;/li&gt;    &lt;li&gt;&lt;a href="http://www.codeplex.com"&gt;&lt;strong&gt;Codeplex&lt;/strong&gt;&lt;/a&gt; (Microsoft's open source project hosting web site)&lt;/li&gt;    &lt;li&gt;&lt;a href="http://www.microsoft.com/security/portal/"&gt;&lt;strong&gt;Microsoft’s Security Portal&lt;/strong&gt;&lt;/a&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;All of these are good starting points to learn about these tools and how to use them to tackle IT security.&amp;#160; I have compiled a summary of some of the most useful security tools below.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Virus and Malware Protection and Removal&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/security_essentials/"&gt;Microsoft Security Essentials&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Real-time protection for your home PC that guards against viruses, spyware, and other malicious software.&amp;#160; (For Commercial Antimalware see: &lt;a href="http://www.microsoft.com/forefront"&gt;www.microsoft.com/forefront&lt;/a&gt;) &lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/security/malwareremove/default.mspx"&gt;Malicious Software Removal Tool&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;This tool checks your computer for infection by specific, prevalent malicious software and helps to remove the infection if it is found. Microsoft will release an updated version of this tool on the second Tuesday of each month, and as needed to respond to security incidents. &lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/windows/products/winfamily/defender/default.mspx"&gt;Windows Defender&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;This free program helps protect PCs from pop-ups, slow performance, and security threats caused by spyware and other unwanted software. &lt;/p&gt;  &lt;p&gt;&lt;a href="http://onecare.live.com/site/en-us/default.htm"&gt;Windows Live OneCare Safety Scanner&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;This free service scans PCs for viruses, spyware, and potentially unwanted software.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/security/portal/Threat/SIR.aspx"&gt;Microsoft Security Intelligence Report (SIR)&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Provides an in-depth perspective on the changing threat landscape including software vulnerability disclosures and exploits, malicious software (malware), and potentially unwanted software&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;System &amp;amp; Network Utilities that can be used to troubleshoot security &amp;amp; malware&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://technet.microsoft.com/bb896653.aspx"&gt;Process Explorer&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Shows you information about which handles and DLLs processes have opened or loaded.&amp;#160; See: &lt;a href="http://www.microsoft.com/belux/technet/fr/spotlight/sessionh.aspx?videoid=359"&gt;Advanced Malware Cleaning -&amp;#160; Mark Russinovich&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://technet.microsoft.com/bb963902.aspx"&gt;AutoRuns&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This utility, which has the most comprehensive knowledge of auto-starting locations of any startup monitor, shows you what programs are configured to run during system bootup or login, and shows you the entries in the order Windows processes them&lt;/p&gt;  &lt;p&gt;&lt;a href="http://technet.microsoft.com/bb896645.aspx"&gt;Process Monitor&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Advanced monitoring tool for Windows that shows real-time file system, Registry and process/thread activity&lt;/p&gt;  &lt;p&gt;&lt;a href="http://technet.microsoft.com/bb896649.aspx"&gt;PsTools&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;A number of command-line tools that allow you to manage remote systems as well as the local one&lt;/p&gt;  &lt;p&gt;&lt;a href="http://technet.microsoft.com/bb897445.aspx"&gt;RootkitRevealer&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;RootkitRevealer is an advanced rootkit detection utility. It runs on Windows NT 4 and higher and its output lists Registry and file system API discrepancies that may indicate the presence of a user-mode or kernel-mode rootkit&lt;/p&gt;  &lt;p&gt;&lt;a href="http://technet.microsoft.com/bb897437.aspx"&gt;TcpView&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;A Windows program that will show you detailed listings of all TCP and UDP endpoints on your system&lt;/p&gt;  &lt;p&gt;&lt;a href="http://go.microsoft.com/fwlink/?LinkID=103158&amp;amp;clcid=0x409"&gt;Network Monitor 3.3&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;A protocol analyzer. It enables you to capture, to view, and to analyze network data. You can use it to help troubleshoot problems with applications on the network.&amp;#160;&amp;#160; See: &lt;a title="https://connect.microsoft.com/site/sitehome.aspx?SiteID=216" href="https://connect.microsoft.com/site/sitehome.aspx?SiteID=216"&gt;https://connect.microsoft.com/site/sitehome.aspx?SiteID=216&lt;/a&gt; for release notes and information.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Developer Tools &amp;amp; Threat Modeling:&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://msdn.microsoft.com/en-us/library/ms220948.aspx"&gt;Microsoft Application Verifier &lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Runtime Verification tool for unmanaged code&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=9AEAA970-F281-4FB0-ABA1-D59D7ED09772&amp;amp;displaylang=en"&gt;Microsoft FxCOP&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Checks .NET managed code assemblies&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=0178E2EF-9DA8-445E-9348-C93F24CC9F9D&amp;amp;displaylang=en"&gt;Microsoft Code Analysis Tool&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Code analysis tool that helps identify common variants of certain prevailing vulnerabilities &lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=59888078-9daf-4e96-b7d1-944703479451&amp;amp;displaylang=en"&gt;Microsoft Threat Analysis &amp;amp; Modeling&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Threat modeling to empower application risk management&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=A48CCCB1-814B-47B6-9D17-1E273F65AE19&amp;amp;displaylang=en"&gt;Microsoft SDL Threat Modeling Tool 3.1&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Helps engineers analyze security &amp;amp; address design issues early in the software lifecycle&lt;/p&gt;  &lt;p&gt;&lt;a href="http://msdn.microsoft.com/en-us/library/ms933794.aspx"&gt;Microsoft PREfast Analysis Tool&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Identifies defects in C/C++ Programs&lt;/p&gt;  &lt;p&gt;&lt;b&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Security Update Management&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://go.microsoft.com/?linkid=3646732"&gt;Microsoft Update&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Microsoft Update consolidates updates provided by Windows Update and Office Update into one location and enables you to choose automatic delivery and installation of high-priority updates.&amp;#160; See: &lt;a href="http://www.microsoft.com/downloads/details.aspx?displaylang=en&amp;amp;FamilyID=c3d986d0-ecc3-4ce0-9c25-048ec5b52a4f"&gt;The Microsoft Security Update Guide&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://technet.microsoft.com/wsus/default.aspx"&gt;Windows Server Update Services (WSUS)&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;WSUS simplifies the process of keeping Windows-based systems current with the latest updates, with minimal administrative intervention.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://technet.microsoft.com/en-us/configmgr/default.aspx"&gt;System Center Configuration Manager&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;System Center Configuration Manager 2007 enables operating system and application deployment and configuration management, enhancing system security and providing comprehensive asset management of servers, desktops, and mobile devices.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://technet.microsoft.com/sms/bb676783.aspx"&gt;Systems Management Server 2003 Inventory Tool for Microsoft Updates&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Systems Management Server administrators can use the Inventory Tool for Microsoft Updates (ITMU) to determine the update compliance of managed systems.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Security Update Detection&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://technet.microsoft.com/en-us/security/cc184924.aspx"&gt;Microsoft Baseline Security Analyzer (MBSA)&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;MBSA scans for missing security updates and common security misconfigurations. It can be used in conjunction with Microsoft Update and Windows Server Update Services.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://technet.microsoft.com/en-us/security/cc184925.aspx"&gt;Microsoft Office Visio 2007 Connector for the Microsoft Baseline Security Analyzer&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This connector lets you view the results of an MBSA scan in a clear, comprehensive Microsoft Office Visio 2007 network diagram.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=2c93da1d-48a0-4e5c-991f-87e08954f61b"&gt;Extended Security Update Inventory Tool&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;The Extended Security Update Inventory Tool is used to detect security bulletins not covered by MBSA including MS04-028, February 2005 bulletins, and future security bulletins that are exceptions to MBSA.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Security Assessment&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://technet.microsoft.com/solutionaccelerators/dd627343.aspx?SA_CE=SQL-MAP-WEB-TECHNET-2009-10-12"&gt;Microsoft Assessment and Planning (MAP) Toolkit for PC Security Assessment&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This free toolkit assesses your entire IT environment for desktop and laptop vulnerabilities to viruses and malware, to determine your PC readiness for Forefront Client Security. &lt;/p&gt;  &lt;p&gt;&lt;a href="http://technet.microsoft.com/en-us/security/cc185712.aspx"&gt;Microsoft Security Assessment Tool (MSAT)&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;MSAT provides information and recommendations to help enhance security within your information technology infrastructure.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;Lockdown, Auditing, and Intrusion Detection and Remediation&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=7AF2E69C-91F3-4E63-8629-B999ADDE0B9E"&gt;Account Lockout and Management Tools&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;These tools can help you manage accounts and troubleshoot account lockouts.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=2786fde9-5986-4ed6-8fe4-f88e2492a5bd"&gt;BitLocker Active Directory Recovery Password Viewer&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This tool helps to locate BitLocker Drive Encryption recovery passwords for Windows Vista- or Windows Server 2008- based computers in Active Directory Domain Services.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=320b9aa9-47e8-44f9-b8d0-4d7d6a75add0"&gt;BitLocker Drive Preparation Tool&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This tool configures the hard disk drives in your computer properly to support enabling BitLocker.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=4ffd0d16-a51b-48b1-9042-ae1fb2de40c6"&gt;Bitlocker Repair Tool&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This tool can help recover data from a corrupted or damaged disk volume that was encrypted with BitLocker.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=9989D151-5C55-4BD3-A9D2-B95A15C73E92"&gt;EventCombMT&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Available as part of the Security Guide Scripts Download, this is a multi-threaded tool that will parse event logs from many servers at the same time.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://support.microsoft.com/default.aspx?scid=kb;en-us;841290"&gt;File Checksum Integrity Verifier&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This command-line tool computes and verifies MD5 or SHA-1 cryptographic hash values of files. These values can be displayed on the screen or saved in an XML file database for later use and verification.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/technet/security/tools/locktool.mspx"&gt;IIS Lockdown Tool&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This tool reduces the attack surface of earlier versions of Internet Information Services (IIS) and includes URLScan to provide multiple layers of protection against attackers. (All of the default security-related configuration settings in IIS versions 6.0 and 7.0 meet or exceed the security configuration settings made by the IIS Lockdown tool.)&lt;/p&gt;  &lt;p&gt;&lt;a href="http://support.microsoft.com/?id=837243"&gt;Port Reporter&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This tool runs as a service on computers running Windows Server 2003, Windows XP, or Windows 2000, and logs TCP and UDP port activity.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://support.microsoft.com/kb/884289"&gt;Port Reporter Parser (PR-Parser)&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This tool that parses the logs that the Port Reporter service generates. The PR-Parser tool has many advanced features that can help you analyze the Port Reporter service log files. You can use the PR-Parser with the Port Reporter tool in a number of scenarios, including troubleshooting and security-related scenarios.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://support.microsoft.com/default.aspx?kbid=832919"&gt;PortQry&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This command-line utility helps you troubleshoot TCP/IP connectivity issues on Windows Server 2003, Windows XP, or Windows 2000.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://support.microsoft.com/kb/892853"&gt;PromQry&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Promqry and PromqryUI allow you to detect network sniffers on computers that are running Windows Server 2003, Windows XP, and Windows 2000.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=e8ba3e56-d8fe-4a91-93cf-ed6985e3927b"&gt;SubInACL&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This command-line tool enables you to obtain security information about files, registry keys, and services. It also lets you transfer this information from user to user, from local or global group to group, and from domain to domain.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://learn.iis.net/page.aspx/473/using-urlscan"&gt;UrlScan Security Tool 3.0&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This tool helps prevent potentially harmful HTTP requests from reaching IIS Web servers. UrlScan 3.0 includes new features to help protect against SQL injection attacks, and can be used with IIS 5.1 and later.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://technet.microsoft.com/en-us/security/cc242650.aspx"&gt;UrlScan Security Tool 2.5&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;This tool helps prevent potentially harmful HTTP requests from reaching IIS Web servers. UrlScan 2.5 can be used with IIS 4.0 and later. (Users running IIS 6.0 and later will most likely want to use UrlScan 3.0.)&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=d077a52d-93e9-4b02-bd95-9d770ccdb431"&gt;Windows SteadyState&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Whether you manage computers in a school computer lab or an Internet cafe, a library, or even in your home, Windows SteadyState helps make it easy for you to keep your computers running the way you want them to.&lt;/p&gt;  &lt;p&gt;&lt;b&gt;&lt;/b&gt;There are many more useful tools on &lt;a href="http://technet.microsoft.com/en-us/security/default.aspx"&gt;Microsoft's TechNet Security Center&lt;/a&gt; and &lt;a href="http://www.codeplex.com"&gt;Codeplex.&lt;/a&gt;&lt;/p&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3297314" width="1" height="1"&gt;</description></item><item><title>Flying Pigs at the Turn of the Tide: Microsoft is finally emerging as a leader the cyber security industry</title><link>http://blogs.technet.com/b/staysafe/archive/2009/06/23/flying-pigs-at-the-turn-of-the-tide-microsoft-is-finally-emerging-as-a-leader-the-cyber-security-industry.aspx</link><pubDate>Tue, 23 Jun 2009 18:31:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3257873</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=3257873</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2009/06/23/flying-pigs-at-the-turn-of-the-tide-microsoft-is-finally-emerging-as-a-leader-the-cyber-security-industry.aspx#comments</comments><description>&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;Microsoft has been dealing with cyber treats for years both internally and with our customers, but just in case you haven’t noticed; there has been a significant change in the tide from both in the focus of such malevolent attacks and public perception of Microsoft ability to deal with those threats effectively.&lt;?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;To see the trends in Cyber Warfare, one needs to just read some of the headlines in &lt;A href="http://www.microsoft.com/security/portal/sir.aspx"&gt;The Latest Microsoft Security Intelligence Report&lt;/A&gt; or News articles and the focus of recent attacks now on the rise.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;Just take a look at some recent news articles:&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;February 24&lt;SUP&gt;th&lt;/SUP&gt; 2009&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt; – &lt;A href="http://securitywatch.eweek.com/exploits_and_attacks/sql_attacks_-_half_a_million_sites_already_owned.html"&gt;SQL Attacks - Half a Million Sites Already Owned &lt;/A&gt;-”Current epidemic of online SQL injection attacks maintains that over a &lt;B&gt;half million sites &lt;/B&gt;were victimized by the threats during 2008 alone” &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;April 3&lt;SUP&gt;rd&lt;/SUP&gt; 2009&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt; – &lt;/SPAN&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-ansi-language: EN" lang=EN&gt;&lt;A href="http://isc.sans.org/diary.html?storyid=6190"&gt;VMware exploits - just how bad is it?&lt;/A&gt; - &lt;/SPAN&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;“When Tony reported on the release of new VMware patches on April 4th, we didn't immediately spot that the same day there was also a release of a for-pay exploit against CVE-2009-1244 (announced in VMSA-2009-0006).&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;Seems a few days later, there is also a white paper available -for pay as well-, and now also a &lt;/SPAN&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-ansi-language: EN" lang=EN&gt;&lt;A href="http://www.immunityinc.com/documentation/cloudburst-vista.html"&gt;&lt;FONT color=#0000ff&gt;flash video&lt;/FONT&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt; of the alleged exploit showing a XP client OS exploiting a Vista host OS (launching calc.exe). The video also comments that they get a data leak back from the host to the client”&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;April 14th 2009&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt; - &lt;A href="http://www.darkreading.com/security/vulnerabilities/showArticle.jhtml?articleID=216500687"&gt;Attack Sneaks Rootkits Into Linux Kernel&lt;/A&gt; - “A researcher at Black Hat Europe this week will demonstrate a more stealthy way to hack Linux “.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;“One of bonuses of this [approach] is that most kernel module rootkits make a lot noise when they are inserting [the code]. This one is directly manipulating" the memory, so it's less noticeable, he says” &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;April 16&lt;SUP&gt;th&lt;/SUP&gt; 2009&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt; - &lt;A title="Permanent Link to iBotnet: Researchers find signs of zombie Macs" href="http://blogs.zdnet.com/security/?p=3157"&gt;iBotnet: Researchers find signs of zombie Macs&lt;/A&gt; – “Writing in the &lt;A href="http://www.virusbtn.com/virusbulletin/archive/2009/04/vb200904-ibotnet"&gt;&lt;FONT color=#0000ff&gt;current issue of Virus Bulletin&lt;/FONT&gt;&lt;/A&gt; (subscription required), researchers Mario Ballano Barcena and Alfredo Pesoli found two malware variants — OSX.Iservice and OSX.Iservice.B — using different techniques to obtain the user’s password and take control of the infected Mac machine”&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;Contrast this with the trend of positive security reports from Gartner, Av-Comparatives and other Security experts raving about Microsoft’s SDL, security software and best practice guidance.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;March 25&lt;SUP&gt;th&lt;/SUP&gt; 2009&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt; - &lt;A title="Gartner: No need to wait for Windows 7 SP1" href="http://www.neowin.net/news/main/09/03/25/windows-7-upgrade-program-shifts-to-june-26-2009"&gt;Gartner: No need to wait for Windows 7 SP1&lt;/A&gt; - A &lt;A href="http://mediaproducts.gartner.com/reprints/microsoft/vol5/article2/article2.html" target=_blank&gt;&lt;FONT color=#0000ff&gt;Gartner analysis report&lt;/FONT&gt;&lt;/A&gt; recommends IT departments to depart from the usual SP1 milestone when deciding to deploy &lt;A href="http://www.neowin.net/index.php?act=view&amp;amp;id=53744" target=_top&gt;Windows 7 &lt;o:p&gt;&lt;/o:p&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;SPAN class=MsoHyperlink&gt;&lt;SPAN style="LINE-HEIGHT: 115%; DISPLAY: none; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-hide: all; mso-no-proof: yes"&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;&lt;I style="mso-bidi-font-style: normal"&gt;"Conventional wisdom has been that organizations need to wait for the first Service Pack to ship before they deploy a new client OS. This used to be a necessity. The availability of beta software to test the new product was not as broad as it is today, and people expected the initial release to be buggy and unstable. The first Service Pack usually would ship approximately nine to 12 months after the initial OS shipment, and would usually represent a marked improvement in stability. Today, SP1 does not represent the milestone it used to"&lt;o:p&gt;&lt;/o:p&gt;&lt;/I&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;May 20&lt;SUP&gt;th&lt;/SUP&gt; 2009 - &lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;&lt;A href="http://news.cnet.com/8301-1009_3-10245931-83.html"&gt;Adobe to release security updates a la Patch Tuesday&lt;/A&gt;&lt;B style="mso-bidi-font-weight: normal"&gt; - &lt;/B&gt;“Adobe said on Wednesday it will release quarterly security updates to coincide with Microsoft's Patch Tuesday as part of a new approach to product security for Adobe Reader and Acrobat. “&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;“All new code and features for Adobe Reader and Acrobat have been put through a Secure product Lifecycle that is similar to Microsoft's much-touted Security Development Lifecycle.”&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/B&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;June 10&lt;SUP&gt;th&lt;/SUP&gt; 2009&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt; - &lt;A href="http://blogs.technet.com/quenguyen/archive/2009/06/10/microsoft-ranks-first-in-av-comparatives-may-edition-for-proactive-detection-testing.aspx"&gt;Microsoft Ranks First in AV-Comparatives May Edition for Proactive Detection Testing!&lt;/A&gt; – “&lt;/SPAN&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-bidi-font-weight: bold; mso-ansi-language: EN" lang=EN&gt;We are #1 this time!&lt;B&gt;&amp;nbsp; &lt;/B&gt;&lt;/SPAN&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-ansi-language: EN" lang=EN&gt;And it is our first time scoring Advanced+ in AV-comparatives testing.&amp;nbsp; We scored very well on both ends: second best in detection rate and we had the fewest false positives. AV-Comparatives.org published the May edition of the proactive/retrospective testing of the May Edition….Our detection rate was…the second best among the participants, and we had&amp;nbsp;the fewest false positive samples.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-ansi-language: EN" lang=EN&gt;For details, please check AV-comparatives May edition published below: &lt;/SPAN&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;&lt;A href="http://www.av-comparatives.org/images/stories/test/ondret/avc_report22.pdf"&gt;http://www.av-comparatives.org/images/stories/test/ondret/avc_report22.pdf&lt;/A&gt;”&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;June 29&lt;SUP&gt;th&lt;/SUP&gt; 2009&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt; - &lt;A href="http://www.infoworld.com/d/security-central/pigs-fly-microsoft-leads-in-security-200"&gt;Pigs fly! Microsoft leads in security&lt;/A&gt; – “&lt;/SPAN&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; COLOR: black; FONT-SIZE: 10pt; mso-bidi-font-family: Arial; mso-bidi-font-weight: bold; mso-ansi-language: EN" lang=EN&gt;Microsoft's success with Security Development Lifecycle has security experts buzzing and offers lessons…&lt;/SPAN&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-ansi-language: EN; mso-bidi-font-style: italic" lang=EN&gt;Many of the world's most knowledgeable security experts are urging their favorite software vendors to follow in the footsteps of Microsoft.&lt;I&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/I&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt 0.5in" class=MsoNormal&gt;&lt;I&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-ansi-language: EN" lang=EN&gt;"Microsoft becomes high priest of secure software development." - &lt;B&gt;&lt;A href="http://news.cnet.com/8301-1009_3-10042248-83.html" target=_blank&gt;CNET&lt;/A&gt;&lt;/B&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt 0.5in" class=MsoNormal&gt;&lt;I&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-ansi-language: EN" lang=EN&gt;“As an industry we should recognize the sea change in Microsoft's approach to security… and encourage other vendors to follow Microsoft's lead." - &lt;B&gt;&lt;A href="http://www.sans.org/newsletters/newsbites/newsbites.php?vol=10&amp;amp;issue=74#sID202" target=_blank&gt;&lt;FONT color=#0000ff&gt;SANS NewsBites&lt;/FONT&gt;&lt;/A&gt;&lt;/B&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt 0.5in" class=MsoNormal&gt;&lt;I&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-ansi-language: EN" lang=EN&gt;“In 2004 Microsoft was a couple years into its Trustworthy Computing Initiative but it remained the software company IT security practitioners hated with glee.... That's not so much the case today." -- &lt;A href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;amp;taxonomyName=&amp;amp;articleId=9134190&amp;amp;taxonomyId=&amp;amp;intsrc=kc_feat" target=_blank&gt;&lt;B&gt;&lt;FONT color=#0000ff&gt;Computerworld&lt;/FONT&gt;&lt;/B&gt;&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt 0.5in" class=MsoNormal&gt;&lt;I&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-ansi-language: EN" lang=EN&gt;"As repugnant as it sounds, Apple will need to take a page from Microsoft's book in this area. Years of combating viral threats, malware, and so on - &lt;A href="http://www.crunchgear.com/2009/06/08/security-boffins-apples-blowing-it" target=_blank&gt;&lt;B&gt;&lt;FONT color=#0000ff&gt;CrunchGear&lt;/FONT&gt;&lt;/B&gt;&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-ansi-language: EN; mso-bidi-font-style: italic" lang=EN&gt;“It isn't just press talk alone. Every common security and vulnerability metric shows Microsoft's software security has dramatically improved over the years, especially compared to its main competitors. Vulnerabilities found by employees and external researchers are down well over half from just a few years ago. For some products, such as IIS and SQL Server, the improvement is startling going from dozens of exploits a year to barely a handful over five years.”&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-ansi-language: EN; mso-bidi-font-style: italic" lang=EN&gt;“Hackers have moved on from focusing on Windows holes to attacking third-party applications or social engineering the end-user as the primary attack vector. Patch Tuesday was derided when it first appeared. Now it has become a model for many other popularly attacked products, and vendors not using a regularly scheduled patch period are being asked to get on board by their customers.”&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-bidi-font-family: Arial; mso-ansi-language: EN" lang=EN&gt;“I challenge you to find anywhere near the amount of free resources on improving your software security from any other source.”&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt; mso-ansi-language: EN; mso-bidi-font-style: italic" lang=EN&gt;Summary:&lt;/SPAN&gt;&lt;/B&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;Microsoft has made contributions with &lt;A href="http://msdn.microsoft.com/en-us/security/cc448177.aspx"&gt;The Microsoft Security Development Lifecycle (SDL)&lt;/A&gt;.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;This SDL framework along with Microsoft’s free security tools, patch Tuesday example, and Microsoft’s Forefront Security products, have forced the trend of attacks to shift to 3&lt;SUP&gt;rd&lt;/SUP&gt; party and applications and low hanging fruit, and simultaneously bolstered Microsoft reputation as not only a security player, but a leader in the industry.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;Look for more to come with the Forefront “&lt;A href="http://www.microsoft.com/forefront/stirling"&gt;Stirling&lt;/A&gt;” wave and &lt;A href="http://www.microsoft.com/windows7"&gt;&lt;FONT color=#0000ff&gt;Windows 7&lt;/FONT&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P style="MARGIN: 0in 0in 10pt" class=MsoNormal&gt;&lt;SPAN style="LINE-HEIGHT: 115%; FONT-FAMILY: 'Verdana','sans-serif'; FONT-SIZE: 10pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P mce_keep="true"&gt;&amp;nbsp;&lt;/P&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3257873" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Warfare/">Warfare</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Hacker/">Hacker</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Cyberwar/">Cyberwar</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/antivirus/">antivirus</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/malware/">malware</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Application/">Application</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Security+Windows/">Security Windows</category></item><item><title>Secure Applications - Part Deux</title><link>http://blogs.technet.com/b/staysafe/archive/2008/10/10/secure-applications-part-deux.aspx</link><pubDate>Fri, 10 Oct 2008 21:33:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:3135160</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=3135160</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2008/10/10/secure-applications-part-deux.aspx#comments</comments><description>&lt;P&gt;According to a &lt;A title="CSI/FBI Study" target=_blank href="http://www.eweek.com/c/a/Security/Computer-Viruses-Reach-into-Corporate-Pocketbooks/" mce_href="http://www.eweek.com/c/a/Security/Computer-Viruses-Reach-into-Corporate-Pocketbooks/"&gt;study&lt;/A&gt; done by the Computer Security Institute and the FBI, &lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;97% of interviewed companies and administrations were using antivirus&lt;/LI&gt;
&lt;LI&gt;98% have a network firewall&lt;/LI&gt;
&lt;LI&gt;Yet, 15% have reported suffering from network intrusions&lt;/LI&gt;&lt;/UL&gt;
&lt;P&gt;Almost every&amp;nbsp;business and government is&amp;nbsp;going to have ports 80/443 through their firewall, so that is where the bad guys are attacking us.&amp;nbsp; We need to change the focus of our thinking from &lt;STRONG&gt;Network &amp;amp; Operating System&amp;nbsp;Security&lt;/STRONG&gt;&amp;nbsp;to &lt;STRONG&gt;Application&amp;nbsp;Security&lt;/STRONG&gt;.&amp;nbsp; Attackers are still using Buffer Overflows, SQL Injection and Cross Site Scripting attacks successfully and how many years have we known about these types of attacks as in IT, yet we still seem defenseless against them.&lt;/P&gt;
&lt;P&gt;In just about every IT security conference&amp;nbsp;I speak, most of the IT people in the room cannot explain what XSS or SQL Injection attack is or how to prevent such an attack.&amp;nbsp; We tend to think that since we have up-to-date antivirus, perimeter network firewalls, IDS and patched servers that we are fairly safe, and that's simply not true&amp;nbsp;especially if our&amp;nbsp;applications are not secure.&amp;nbsp; Our own applications if not coded securely&amp;nbsp;nor published with a&amp;nbsp;secure&amp;nbsp;application firewall such as &lt;A title="Microsoft's Intelligent Application Gateway" target=_blank href="http://www.microsoft.com/forefront/edgesecurity/iag/en/us/default.aspx" mce_href="http://www.microsoft.com/forefront/edgesecurity/iag/en/us/default.aspx"&gt;Microsoft Intelligent Application Gateway&lt;/A&gt;&amp;nbsp;to protect the applications; the apps themselves&amp;nbsp;become the portals into our internal data and the technology&amp;nbsp;albatross around our necks as it were that give the bad guys money in their pockets and our agencies front page stories in the newspapers.&lt;/P&gt;
&lt;P&gt;This week &lt;A title=SAFECode target=_blank href="http://www.safecode.org/" mce_href="http://www.safecode.org/"&gt;SAFECode.org&lt;/A&gt; released an excellent application security guide entitled "&lt;A title="Fundamental Practices for Secure Software Development" href="http://www.safecode.org/publications/SAFECode_Dev_Practices1008.pdf" mce_href="http://www.safecode.org/publications/SAFECode_Dev_Practices1008.pdf"&gt;Fundamental Practices for Secure Software Development&lt;/A&gt;" which includes updated information from &lt;A title="Michael Howard" href="http://blogs.msdn.com/michael_howard/archive/2008/10/08/safecode-releases-fundamental-practices-for-secure-software-development-document.aspx" mce_href="http://blogs.msdn.com/michael_howard/archive/2008/10/08/safecode-releases-fundamental-practices-for-secure-software-development-document.aspx"&gt;Michael Howard&lt;/A&gt;, a simple security guy from Microsoft and 15 other co-authors on how to write applications securely.&amp;nbsp; This is an excellent security guide not just for developers, but also for IT Management to review and understand at least the basic concepts to enable and empower our&amp;nbsp;developers with the security training and tools needed to ensure that our applications are&amp;nbsp;strategic assets&amp;nbsp;for our businesses and governments.&amp;nbsp; Developers are usually great at what they code, but many do not necessarily understand security unless it's been part of their training curriculum or job functions, so IT as a whole needs to ensure we have security awareness, training, and tools for testing security for our&amp;nbsp;developers as we do for our network engineers and firewall administrators.&lt;/P&gt;
&lt;P&gt;The&amp;nbsp;&lt;A title="Fundamental Practices for Secure Software Development" href="http://www.safecode.org/publications/SAFECode_Dev_Practices1008.pdf" mce_href="http://www.safecode.org/publications/SAFECode_Dev_Practices1008.pdf"&gt;guide&lt;/A&gt; covers many&amp;nbsp;aspects of Application Development&amp;nbsp;that&amp;nbsp;I did not address in my previous post &lt;A title="Secure Applications - The Microsoft Way" href="http://blogs.technet.com/staysafe/archive/2007/11/29/secure-web-applications-the-microsoft-way.aspx" mce_href="http://blogs.technet.com/staysafe/archive/2007/11/29/secure-web-applications-the-microsoft-way.aspx"&gt;Secure Applications - The Microsoft Way&lt;/A&gt;&amp;nbsp;and is so well written and comprehensive, that I will not blog in detail on its contents here, but will instead encourage you to download it and read it for yourself and make sure you make this part of your security library:&amp;nbsp; &lt;A title="Fundamental Practices for Secure Software Development" href="http://www.safecode.org/publications/SAFECode_Dev_Practices1008.pdf" mce_href="http://www.safecode.org/publications/SAFECode_Dev_Practices1008.pdf"&gt;Fundamental Practices for Secure Software Development&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;Great Job &lt;A title=SAFECode href="http://www.safecode.org/" mce_href="http://www.safecode.org/"&gt;SAFECode&lt;/A&gt;!!!&lt;/P&gt;
&lt;P mce_keep="true"&gt;&amp;nbsp;&lt;/P&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=3135160" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Security+Application+Code+Firewall+SAFECode+Development/">Security Application Code Firewall SAFECode Development</category></item><item><title>Defense-in-Depth vs. BitUnlocker: How to defeat Cold DRAM attacks using BitLocker, Power Options, and Physical Security</title><link>http://blogs.technet.com/b/staysafe/archive/2008/02/24/defense-in-depth-vs-bitunlocker-how-to-defeat-cold-dram-attacks-using-bitlocker-power-options-and-physical-security.aspx</link><pubDate>Sun, 24 Feb 2008 20:42:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:2928408</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>6</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=2928408</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2008/02/24/defense-in-depth-vs-bitunlocker-how-to-defeat-cold-dram-attacks-using-bitlocker-power-options-and-physical-security.aspx#comments</comments><description>&lt;P&gt;Princeton University published a paper this week entitled: &lt;A href="http://citp.princeton.edu.nyud.net/pub/coldboot.pdf" target=_blank mce_href="http://citp.princeton.edu.nyud.net/pub/coldboot.pdf"&gt;Lest We Remember: Cold Boot Attacks on Encryption Keys&lt;/A&gt; which shows how an attacker can extract the contents of DRAM from a computer that is powered off and retrieve the encryption keys from memory offline and decrypt disks that were encrypted by many popular disk encryption software such as Microsoft BitLocker, FileVault, dm-crypt, and TrueCrypt on Linux, Vista and Mac OS 10 — using no special devices or materials.&lt;/P&gt;
&lt;P&gt;They also published a &lt;A href="http://citp.princeton.edu/memory/" target=_blank mce_href="http://citp.princeton.edu/memory/"&gt;video&lt;/A&gt; which includes a special form of this attack on BitLocker which they dubbed "BitUnlocker" which demonstrates the attack using the following method:&lt;/P&gt;
&lt;P&gt;1. The machine is powered on and locked&lt;/P&gt;
&lt;P&gt;2. They attach a USB disk&lt;/P&gt;
&lt;P&gt;3. They cut power by removing the battery&lt;/P&gt;
&lt;P&gt;4. They quickly replace the battery and restart the laptop&lt;/P&gt;
&lt;P&gt;5. The computer boots to the external drive which copies everything in memory capturing most of the data still in DRAM.&lt;/P&gt;
&lt;P&gt;6. The program then looks for the encryption keys offline.&lt;/P&gt;
&lt;P&gt;The attack vectors are for computers using BitUnlocker that are machines that are sleeping, locked or in the case of BitLocker if there is no required PIN or USB Key.&amp;nbsp; Here is Microsoft's official response:&lt;/P&gt;
&lt;P&gt;&lt;I&gt;The claims detailed in the Princeton paper are not vulnerabilities, per se, but simply detail the fact that contents that remain in a computer's memory can be accessed by a determined third party if the system is running. BitLocker is an effective solution to help safe guard personal and private data on mobile PCs and provides a number of protection options that meet different end-user needs. Like all full volume encryption products BitLocker has a key-in memory when the system is running in order to encrypt/decrypt data, on the fly, for the drive/s in use. If a system is in 'Sleep mode' it is, in effect, still running. We recognize users want advice with regards to BitLocker and have published best practice guidance in the Data Encryption Toolkit (available &lt;A href="http://www.microsoft.com/technet/security/guidance/clientsecurity/dataencryption/analysis/4e6ce820-fcac-495a-9f23-73d65d846638.mspx" mce_href="http://www.microsoft.com/technet/security/guidance/clientsecurity/dataencryption/analysis/4e6ce820-fcac-495a-9f23-73d65d846638.mspx"&gt;here&lt;/A&gt;). In it we discuss the balance of security and usability and detail that the most secure method to use BitLocker is hibernate mode and with multi-factor authentication. &lt;/I&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;How do you defeat such an attack practically?&lt;/STRONG&gt; - the answer is simply that you follow Microsoft's recommended best practice security and "Defense in Depth"&amp;nbsp; Here are my recommendations in order to Defeat &lt;A href="http://citp.princeton.edu/memory/" mce_href="http://citp.princeton.edu/memory/"&gt;BitUnlocker&lt;/A&gt; with &lt;STRONG&gt;BitLocker&lt;/STRONG&gt;, &lt;STRONG&gt;Power Options&lt;/STRONG&gt;, and &lt;STRONG&gt;Physical Security&lt;/STRONG&gt; Best Practices:&lt;/P&gt;
&lt;P&gt;You must have TPM 1.2, “TPM+PIN”&amp;nbsp; (or “TPM+USB”) configured, and machine must be in Hibernate or Powered Off state when not in use or when attacked by BitUnlocker.&lt;/P&gt;
&lt;P&gt;&lt;B&gt;Note:&lt;/B&gt;&amp;nbsp; If machine is still running and locked or only been shut off for a few seconds and attacked it is still vulnerable to this attack.&amp;nbsp; (This is where physical security is key).&lt;/P&gt;
&lt;P&gt;The main attack vector is that non physically secured machines (i.e. laptops, PCs in unlocked buildings) that are not in use (in the hotel room or at the desk when you are at lunch), are still running (i.e. sleeping or active/locked).&lt;/P&gt;
&lt;P&gt;The following will show you how to configure Bitlocker 1.2 with TPM + PIN configuration and to configure your Laptop to Hibernate or Shutdown (not Sleep) so that you will not be easily defeated by this attack.&lt;/P&gt;
&lt;P&gt;1. &lt;STRONG&gt;Use Bitlocker with a TPM 1.2 with “TPM + PIN” configuration&lt;/STRONG&gt; – This is Microsoft’s recommended most secure BitLocker option anyway, it basically requires a pin on boot and anytime it wakes up from Hibernation or started.&amp;nbsp; You can back up your recovery key to a network share – In my case, My Documents is mapped to a network server, so I can get to the recover the Key from another machine if I forget my pin.&amp;nbsp; &lt;STRONG&gt;Caution:&lt;/STRONG&gt;&amp;nbsp; If you save your recovery key to a USB drive or print it and that USB drive or printed document is stolen with your laptop or lost, then you are at risk or even unable to recover your pin which I why I prefer a network drive that’s secured and backed up.&lt;/P&gt;
&lt;P&gt;2. &lt;STRONG&gt;Configure BitLocker:&lt;/STRONG&gt; Pre-Requisites &amp;amp; Step-by-Step Guide - For BitLocker to work, you must be running Vista Ultimate or Vista Enterprise edition and have at least two partitions on your hard disk.&amp;nbsp; Review &lt;A href="http://download.microsoft.com/download/c/3/8/c3815ed7-aee7-4435-802b-8e855d549154/BitLocker_StepByStep.doc" mce_href="http://download.microsoft.com/download/c/3/8/c3815ed7-aee7-4435-802b-8e855d549154/BitLocker_StepByStep.doc"&gt;http://download.microsoft.com/download/c/3/8/c3815ed7-aee7-4435-802b-8e855d549154/BitLocker_StepByStep.doc&lt;/A&gt; for minimum system requirements and disk partitioning information and basic BitLocker setup configuration, then proceeded to Step 3 to configure TPM+PIN.&lt;/P&gt;
&lt;P&gt;3. Configure TPM+PIN (or TPM+USB)&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;To turn on BitLocker Drive Encryption with a TPM plus a PIN or with a TPM plus a startup key on a USB flash drive&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;1.&amp;nbsp;&amp;nbsp; Click Start, type gpedit.msc in the Start Search box, and then press ENTER.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;2.&amp;nbsp;&amp;nbsp; If the User Account Control dialog box appears, verify that the proposed action is what you requested, and then click Continue. For more information, see &lt;A href="http://download.microsoft.com/download/c/3/8/c3815ed7-aee7-4435-802b-8e855d549154/BitLocker_StepByStep.doc#DSDOC_BKMK_addresc61f2a12_8ae6_4957_b031" mce_href="http://download.microsoft.com/download/c/3/8/c3815ed7-aee7-4435-802b-8e855d549154/BitLocker_StepByStep.doc#DSDOC_BKMK_addresc61f2a12_8ae6_4957_b031"&gt;Additional Resources&lt;/A&gt; later in this document.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;3.&amp;nbsp;&amp;nbsp; In the Group Policy Object Editor console tree, click Local Computer Policy, click Administrative Templates, click Windows Components, and then double-click BitLocker Drive Encryption.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;4.&amp;nbsp;&amp;nbsp; Double-click the setting Control Panel Setup: Enable Advanced Startup Options. The Control Panel Setup: Enable Advanced Startup Options dialog box appears.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;5.&amp;nbsp;&amp;nbsp; Select the Enabled option. For TPM plus a PIN or startup key configurations, you do not need to change any further settings, but you can choose to require or disallow users to create a startup key or PIN. Click OK.&lt;/P&gt;
&lt;P&gt;&lt;A href="http://blogs.technet.com/blogfiles/staysafe/WindowsLiveWriter/Def.BitUnlockerHowtodefeatColdDRAMattack_B29D/clip_image002_2.jpg" mce_href="http://blogs.technet.com/blogfiles/staysafe/WindowsLiveWriter/Def.BitUnlockerHowtodefeatColdDRAMattack_B29D/clip_image002_2.jpg"&gt;&lt;IMG style="BORDER-RIGHT: 0px; BORDER-TOP: 0px; BORDER-LEFT: 0px; BORDER-BOTTOM: 0px" height=244 alt=clip_image002 src="http://blogs.technet.com/blogfiles/staysafe/WindowsLiveWriter/Def.BitUnlockerHowtodefeatColdDRAMattack_B29D/clip_image002_thumb.jpg" width=220 border=0 mce_src="http://blogs.technet.com/blogfiles/staysafe/WindowsLiveWriter/Def.BitUnlockerHowtodefeatColdDRAMattack_B29D/clip_image002_thumb.jpg"&gt;&lt;/A&gt;&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;6.&amp;nbsp;&amp;nbsp; Click Start, type gpupdate.exe /force in the Search box, and then press ENTER.Wait for the process to finish.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;7.&amp;nbsp;&amp;nbsp; Click Start, click Control Panel, click Security, and then click BitLocker Drive Encryption.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;8.&amp;nbsp;&amp;nbsp; If the User Account Control message appears, verify that the proposed action is what you requested, and then click Continue. For more information, see &lt;A href="http://download.microsoft.com/download/c/3/8/c3815ed7-aee7-4435-802b-8e855d549154/BitLocker_StepByStep.doc#DSDOC_BKMK_addresc61f2a12_8ae6_4957_b031" mce_href="http://download.microsoft.com/download/c/3/8/c3815ed7-aee7-4435-802b-8e855d549154/BitLocker_StepByStep.doc#DSDOC_BKMK_addresc61f2a12_8ae6_4957_b031"&gt;Additional Resources&lt;/A&gt; later in this document.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;9.&amp;nbsp;&amp;nbsp; On the BitLocker Drive Encryption page, click Turn On BitLocker on the system volume.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;10.&amp;nbsp; On the Set BitLocker startup preferences page, select the startup option you want. You can choose only one of these options:&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;·&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Require PIN at every startup. You will see the Set the startup PIN page. Enter your PIN, confirm it, and then click Set PIN.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;·&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Require Startup USB key at every startup. You will see the Save your Startup Key page. Insert your USB flash drive, choose the drive location, and then click Save.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;11.&amp;nbsp; On the Save the recovery password page, you will see the following options:&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;·&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Save the password on a USB drive. Saves the password to a USB flash drive.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;·&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Save the password in a folder. Saves the password to a network drive or other location.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;·&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Print the password. Prints the password.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;&lt;STRONG&gt;Important:&lt;/STRONG&gt;&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;The recovery password will be required in the event the encrypted drive must be moved to another computer, or changes are made to the system startup information. This password is so important that it is recommended that you make additional copies of the password stored in safe places to assure you access to your data. You will need your recovery password to unlock the encrypted data on the volume if BitLocker Drive Encryption enters a locked state (see &lt;A href="http://download.microsoft.com/download/c/3/8/c3815ed7-aee7-4435-802b-8e855d549154/BitLocker_StepByStep.doc#DSDOC_BKMK_S6c61f2a12_8ae6_4957_b031_97b" mce_href="http://download.microsoft.com/download/c/3/8/c3815ed7-aee7-4435-802b-8e855d549154/BitLocker_StepByStep.doc#DSDOC_BKMK_S6c61f2a12_8ae6_4957_b031_97b"&gt;Scenario 4: Recovering Data Protected by BitLocker Drive Encryption&lt;/A&gt;). This recovery password is unique to this particular BitLocker encryption. You cannot use it to recover encrypted data from any other BitLocker encryption session.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;Choose any of these options to preserve the recovery password. Store recovery passwords apart from the computer for maximum security. To choose more than one recovery password storage method, select one, follow the wizard to determine the location for saving or printing, and then click Next. You can then repeat this step to choose additional recovery password storage methods.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;12.&amp;nbsp; On the Encrypt the selected disk volume page, confirm that the Run BitLocker System Check check box is selected, and then click Continue. &lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;Confirm that you want to restart the computer by clicking Restart Now. The computer restarts and BitLocker ensures that the computer is BitLocker-compatible and ready for encryption. If it is not, you will see an error message alerting you to the problem before encryption starts.&amp;nbsp; &lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;13.&amp;nbsp; If it is ready for encryption, the Encryption in Progress status bar is displayed. You can monitor the ongoing completion status of the disk volume encryption by dragging your mouse cursor over the BitLocker Drive Encryption icon in the tool bar at the bottom of your screen or clicking on the Encryption balloon.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;By completing this procedure, you have encrypted the operating system volume and created a recovery password unique to that volume. The next time you turn your computer on, the USB flash drive must be plugged into a USB port on the computer or you must enter your PIN. If you do not, you will not be able to access data on your encrypted volume. Store the startup key away from the computer to increase security. Without the startup key, or your PIN, you will need to go to recovery mode and supply the recovery password to access your data.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;4. Choose a PIN with at least 7 numbers of which at least 4 digits are unique - For additional information please review: &lt;A title=http://blogs.msdn.com/si_team/archive/2006/04/10/572888.aspx href="http://blogs.msdn.com/si_team/archive/2006/04/10/572888.aspx" mce_href="http://blogs.msdn.com/si_team/archive/2006/04/10/572888.aspx"&gt;MSDN Blog - Finding a Secure Pin&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;5. If your machine is sufficiently fast, while you are in GPEDIT.MSC, I would recommend changing the “Configure Encryption Method” policy to “AES 256 bit with Diffuser” to reduce the chance of a Brute Force attack being successful.&amp;nbsp; More information on differences between 128-bit and 256-bit drive encryption are found at: &lt;A href="http://windowshelp.microsoft.com/Windows/en-US/Help/c4500bf7-8392-4c38-a56e-d018a2438aa21033.mspx" mce_href="http://windowshelp.microsoft.com/Windows/en-US/Help/c4500bf7-8392-4c38-a56e-d018a2438aa21033.mspx"&gt;http://windowshelp.microsoft.com/Windows/en-US/Help/c4500bf7-8392-4c38-a56e-d018a2438aa21033.mspx&lt;/A&gt;.&amp;nbsp; The default is 128 bit with Diffuser, but I am using 256 with no performance degradation.&lt;/P&gt;
&lt;P&gt;&lt;A href="http://blogs.technet.com/blogfiles/staysafe/WindowsLiveWriter/Def.BitUnlockerHowtodefeatColdDRAMattack_B29D/clip_image006_2.jpg" mce_href="http://blogs.technet.com/blogfiles/staysafe/WindowsLiveWriter/Def.BitUnlockerHowtodefeatColdDRAMattack_B29D/clip_image006_2.jpg"&gt;&lt;IMG style="BORDER-RIGHT: 0px; BORDER-TOP: 0px; BORDER-LEFT: 0px; BORDER-BOTTOM: 0px" height=244 alt=clip_image006 src="http://blogs.technet.com/blogfiles/staysafe/WindowsLiveWriter/Def.BitUnlockerHowtodefeatColdDRAMattack_B29D/clip_image006_thumb.jpg" width=220 border=0 mce_src="http://blogs.technet.com/blogfiles/staysafe/WindowsLiveWriter/Def.BitUnlockerHowtodefeatColdDRAMattack_B29D/clip_image006_thumb.jpg"&gt;&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;6. From Control Panel-&amp;gt;Power Options, Change the “Choose what the power&amp;nbsp; buttons do”&amp;nbsp; options from Sleep to Shutdown or Hibernate.&amp;nbsp; In my example below, I changed from Sleep to Hibernate.&amp;nbsp; The effect of this is that you will have a minute delay on shutting down and powering up your Laptop and you will be required to Enter a Pin&lt;/P&gt;
&lt;P&gt;&lt;A href="http://blogs.technet.com/blogfiles/staysafe/WindowsLiveWriter/Def.BitUnlockerHowtodefeatColdDRAMattack_B29D/clip_image007_2.jpg" mce_href="http://blogs.technet.com/blogfiles/staysafe/WindowsLiveWriter/Def.BitUnlockerHowtodefeatColdDRAMattack_B29D/clip_image007_2.jpg"&gt;&lt;IMG style="BORDER-RIGHT: 0px; BORDER-TOP: 0px; BORDER-LEFT: 0px; BORDER-BOTTOM: 0px" height=184 alt=clip_image007 src="http://blogs.technet.com/blogfiles/staysafe/WindowsLiveWriter/Def.BitUnlockerHowtodefeatColdDRAMattack_B29D/clip_image007_thumb.jpg" width=244 border=0 mce_src="http://blogs.technet.com/blogfiles/staysafe/WindowsLiveWriter/Def.BitUnlockerHowtodefeatColdDRAMattack_B29D/clip_image007_thumb.jpg"&gt;&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;7. Once you have configured your power options, any time you start your machine, you will be required to enter your pin number, but the advantage here against the attack’s shown in the video are that the memory is written to disk which is protected by BitLocker in Hibernate mode.&amp;nbsp; &lt;/P&gt;
&lt;P&gt;8. Please remember that the most dangerous automated attack vector here from the paper was using &lt;STRONG&gt;BitUnlocker&lt;/STRONG&gt; to attack a machine that was “Sleeping” because the machine is still running memory is still active.&amp;nbsp; That gives a thief ample time to get access to the memory and cool it or launch the automated BitUnlocker attack at anytime.&lt;/P&gt;
&lt;P&gt;When shutting off your Laptop or go into “Hibernate” all memory is written to disk which is now protected by BitLocker, however remember that there is still a few seconds to a couple of minutes where you need to watch your laptop after it shuts down while the DRAM diffuses its memory.&lt;/P&gt;
&lt;P&gt;Once it’s shutdown or in hibernate mode and memory is diffused, BitUnlocker cannot access the key in memory if TPM+PIN is configured.&amp;nbsp; They will have to resort to Brute Force attack on the PIN which is very difficult because of built-in &lt;A href="http://blogs.msdn.com/si_team/archive/2006/04/10/572888.aspx" mce_href="http://blogs.msdn.com/si_team/archive/2006/04/10/572888.aspx"&gt;anti-hammering&lt;/A&gt; technology.&lt;/P&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=2928408" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/staysafe/archive/tags/BitLocker+DRAM+BitUnlocker+Encryption/">BitLocker DRAM BitUnlocker Encryption</category></item><item><title>Home Router Hacks, VOIP Phishing &amp; Driveby Pharming</title><link>http://blogs.technet.com/b/staysafe/archive/2008/01/24/home-router-hacks-voip-phishing-driveby-pharming.aspx</link><pubDate>Fri, 25 Jan 2008 00:45:13 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:2777393</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=2777393</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2008/01/24/home-router-hacks-voip-phishing-driveby-pharming.aspx#comments</comments><description>&lt;p&gt;A new era is dawning in mainstream hacking techniques that target devices that are not very well defended in most homes:&amp;#160; The routers that you get at your local retailer to protect your high-speed DSL or Cable connected PC from malevolent hackers is now the very platform that malefactors are using to steal your information, redirect your phone calls and to send you to data harvesting illegitimate banking web sites.&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Drive-by Pharming:&lt;/strong&gt;&amp;#160; Check out this article &amp;quot;&lt;a href="http://www.symantec.com/enterprise/security_response/weblog/2008/01/driveby_pharming_in_the_wild.html"&gt;Drive-by Pharming in the Wild&lt;/a&gt;&amp;quot; on Symantec's web site.&amp;#160; The basic form of attack was one in which the hack &amp;quot;modified the router&amp;#8217;s DNS settings so that the URL for a popular Mexico-based banking site (as well as other related domains) would be mapped to an attacker&amp;#8217;s Web site.&amp;quot;&amp;#160; Many of the common home routers from D-Link, Linksys, and Netgear can be vulnerable to this attack not because of a vulnerability, but because the &lt;strong&gt;DEFAULT PASSWORD WAS NOT CHANGED &lt;/strong&gt;on the router.&amp;#160; This type of attack will be less common in the business world assuming that the routers are well managed, but home users are slow to adopt security when they don't understand the risks or if its inconvenient or difficult to change.&amp;#160; How many home users even know how to login to their home router once its initially setup and configured?&amp;#160; This type of attack was only a theory last year, but now its REAL!&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;VOIP Call Jacking:&lt;/strong&gt;&amp;#160; The next big wave that's coming in telephony is a new type of VOIP attack called &amp;quot;&lt;a href="http://www.darkreading.com/document.asp?doc_id=143828&amp;amp;WT.svl=news1_2"&gt;Call Jacking&lt;/a&gt;&amp;quot; which can be used both as a classic phishing attack to harvest information, but also as a toll fraud mechanism.&amp;#160; As with any technology that's widely adopted, Voice over IP telephone has grown tremendously in the past few years because of its low cost alternative to traditional telephone lines.&amp;#160; With this technology come new security challenges. VOIP may turn out to be more costly than we initially thought.&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Home Router Hacks:&lt;/strong&gt;&amp;#160; There is not currently a good way to get home users to update their routers with security patches and firmware upgrades.&amp;#160; Most users don't know they are vulnerable or how to fix a vulnerable home router, but Secunia lists at least 19 &lt;a href="http://secunia.com/product/OS_L/#list"&gt;Linksys&lt;/a&gt; devices with 1 or more vulnerabilities, 24 &lt;a href="http://secunia.com/product/OS_D/#list"&gt;D-link devices&lt;/a&gt;, and 11 &lt;a href="http://secunia.com/product/OS_N/#list"&gt;Netgear&lt;/a&gt; devices.&amp;#160; The number of vulnerabilities and models listed do not really matter for how secure a home router may be in relation to the others - they are all state-of-the-art routers and firewalls that are being probed continually for weaknesses to exploit.&amp;#160; The manufacturers do issue advisories and patches for these devices, but home users rarely get the updates or even know they are at risk much of the time.&lt;/p&gt;  &lt;p&gt;So what do we do about these new types of attacks?&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Short term - &lt;/strong&gt;we need to understand the changing landscape and educate users about these risks - chances are if you are reading this blog you are already concerned about security - go tell your friends, families and co-workers about security best practices and what to watch for.&amp;#160; Have them read good article on &lt;a href="http://www.cs.indiana.edu/~atsow/mal-router/"&gt;DNS spoofing&lt;/a&gt; and change default passwords on their Home Routers.&amp;#160; There are always going to be risks when online, we just need to minimize those risks when possible and changing the default password is a good start.&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Long term&lt;/strong&gt; - there needs to be a shift in how home devices are designed so that non-technical users be sure to use best practices and notified if their devices are not secured or configured properly.&amp;#160; Perhaps anti-phishing &amp;amp; malware technology should be built into the routers themselves.&amp;#160; &lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Summary:&lt;/strong&gt;&amp;#160; Attackers are creative and will continue to get more sophisticated &amp;amp; go after the targets that are least likely to be detected and hardest to recover.&amp;#160; Some of these new kinds of attacks will never go through an anti-virus filter on a PC.&amp;#160; Because of that, I believe that Home Routers are a low hanging fruit for the next few years and will be one are that is targeted more and more.&lt;/p&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=2777393" width="1" height="1"&gt;</description></item><item><title>Secure Web Applications - The Microsoft Way</title><link>http://blogs.technet.com/b/staysafe/archive/2007/11/29/secure-web-applications-the-microsoft-way.aspx</link><pubDate>Thu, 29 Nov 2007 19:15:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:2589687</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>4</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=2589687</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2007/11/29/secure-web-applications-the-microsoft-way.aspx#comments</comments><description>&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;A question came up this week on how to &lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Secure Web Applications&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt; &lt;/SPAN&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;the Microsoft way.&lt;?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Microsoft has extensive prescriptive&lt;/SPAN&gt;&lt;/B&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 18pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt; &lt;/SPAN&gt;&lt;/B&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;guidance&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt; &lt;/SPAN&gt;&lt;FONT size=3&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;that applies to secure online applications.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 12.0pt"&gt;&lt;FONT face=Calibri&gt;Defense in Depth&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;1.&lt;/FONT&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;Start by building on&amp;nbsp;a&lt;B style="mso-bidi-font-weight: normal"&gt; &lt;/B&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Secure Platform&lt;/SPAN&gt;&lt;/B&gt;&lt;FONT size=3&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;:&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l2 level1 lfo5"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Windows Server 2003 with latest Service Pack - &lt;U&gt;&lt;A href="http://www.microsoft.com/windowsserver2003/default.mspx" mce_href="http://www.microsoft.com/windowsserver2003/default.mspx"&gt;http://www.microsoft.com/windowsserver2003/default.mspx&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l2 level1 lfo5"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Windows SQL Server 2005 with Latest Service Pack &lt;U&gt;&lt;A href="http://www.microsoft.com/sql/default.mspx" mce_href="http://www.microsoft.com/sql/default.mspx"&gt;http://www.microsoft.com/sql/default.mspx&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l2 level1 lfo5"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Implement Microsoft Best Practice Security Guidance for Servers - &lt;U&gt;&lt;A href="http://www.microsoft.com/technet/security/guidance/serversecurity.mspx" mce_href="http://www.microsoft.com/technet/security/guidance/serversecurity.mspx"&gt;http://www.microsoft.com/technet/security/guidance/serversecurity.mspx&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;2.&lt;/FONT&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;Build the application using best practice &lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Secure Coding&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt; techniques&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l0 level1 lfo6"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Secure Coding Guidelines - &lt;U&gt;&lt;A href="http://msdn2.microsoft.com/en-us/library/d55zzx87.aspx" mce_href="http://msdn2.microsoft.com/en-us/library/d55zzx87.aspx"&gt;http://msdn2.microsoft.com/en-us/library/d55zzx87.aspx&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l0 level1 lfo6"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Writing Secure Code - &lt;U&gt;&lt;A href="http://msdn2.microsoft.com/en-us/security/aa570401.aspx" mce_href="http://msdn2.microsoft.com/en-us/security/aa570401.aspx"&gt;http://msdn2.microsoft.com/en-us/security/aa570401.aspx&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;3.&lt;/FONT&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;Be aware of common threats to Applications and avoid &lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;SQL Injection &amp;amp; Cross Site Scripting&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt; &lt;/SPAN&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;attacks:&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l8 level1 lfo7"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;“Stop SQL Injection Attacks Before They Stop You” - &lt;U&gt;&lt;A href="http://msdn.microsoft.com/msdnmag/issues/04/09/SQLInjection" mce_href="http://msdn.microsoft.com/msdnmag/issues/04/09/SQLInjection"&gt;http://msdn.microsoft.com/msdnmag/issues/04/09/SQLInjection&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l8 level1 lfo7"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;“How To: Protect From SQL Injection in ASP.NET” - &lt;U&gt;&lt;A href="http://msdn2.microsoft.com/en-us/library/ms998271.aspx" mce_href="http://msdn2.microsoft.com/en-us/library/ms998271.aspx"&gt;http://msdn2.microsoft.com/en-us/library/ms998271.aspx&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l8 level1 lfo7"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;“How to Prevent Cross Site Scripting” - &lt;U&gt;&lt;A href="http://support.microsoft.com/kb/252985" mce_href="http://support.microsoft.com/kb/252985"&gt;http://support.microsoft.com/kb/252985&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l8 level1 lfo7"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;“Anti-Cross Site Scripting Library” - &lt;U&gt;&lt;A href="http://msdn2.microsoft.com/en-us/security/aa973814.aspx" mce_href="http://msdn2.microsoft.com/en-us/security/aa973814.aspx"&gt;http://msdn2.microsoft.com/en-us/security/aa973814.aspx&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;4.&lt;/FONT&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;Use Network based &lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Firewall &lt;/SPAN&gt;&lt;/B&gt;&lt;FONT size=3&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;at the perimeter –Forefront Edge: ISA 2006&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l7 level1 lfo8"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-bidi-font-size: 10.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;FONT size=3&gt;&lt;SPAN style="FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Secure remote access - &lt;U&gt;&lt;A href="http://www.microsoft.com/forefront/edgesecurity/sra.mspx" mce_href="http://www.microsoft.com/forefront/edgesecurity/sra.mspx"&gt;http://www.microsoft.com/forefront/edgesecurity/sra.mspx&lt;/A&gt;&lt;/U&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l7 level1 lfo8"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-bidi-font-size: 10.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;FONT size=3&gt;Network protection against Floods &amp;amp; Attacks - &lt;U&gt;&lt;A href="http://www.microsoft.com/technet/isa/2006/flood_resiliency.mspx" mce_href="http://www.microsoft.com/technet/isa/2006/flood_resiliency.mspx"&gt;http://www.microsoft.com/technet/isa/2006/flood_resiliency.mspx&lt;/A&gt;&lt;/U&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-FAMILY: 'Calibri','sans-serif'; mso-bidi-font-size: 11.0pt; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;?xml:namespace prefix = v ns = "urn:schemas-microsoft-com:vml" /&gt;&lt;v:shapetype id=_x0000_t75 coordsize="21600,21600" path="m@4@5l@4@11@9@11@9@5xe" o:spt="75" o:preferrelative="t" filled="f" stroked="f"&gt;&lt;FONT size=3&gt; &lt;v:stroke joinstyle="miter"&gt;&lt;/v:stroke&gt;&lt;v:formulas&gt;&lt;v:f eqn="if lineDrawn pixelLineWidth 0"&gt;&lt;/v:f&gt;&lt;v:f eqn="sum @0 1 0"&gt;&lt;/v:f&gt;&lt;v:f eqn="sum 0 0 @1"&gt;&lt;/v:f&gt;&lt;v:f eqn="prod @2 1 2"&gt;&lt;/v:f&gt;&lt;v:f eqn="prod @3 21600 pixelWidth"&gt;&lt;/v:f&gt;&lt;v:f eqn="prod @3 21600 pixelHeight"&gt;&lt;/v:f&gt;&lt;v:f eqn="sum @0 0 1"&gt;&lt;/v:f&gt;&lt;v:f eqn="prod @6 1 2"&gt;&lt;/v:f&gt;&lt;v:f eqn="prod @7 21600 pixelWidth"&gt;&lt;/v:f&gt;&lt;v:f eqn="sum @8 21600 0"&gt;&lt;/v:f&gt;&lt;v:f eqn="prod @7 21600 pixelHeight"&gt;&lt;/v:f&gt;&lt;v:f eqn="sum @10 21600 0"&gt;&lt;/v:f&gt;&lt;/v:formulas&gt;&lt;v:path o:extrusionok="f" gradientshapeok="t" o:connecttype="rect"&gt;&lt;/v:path&gt;&lt;o:lock v:ext="edit" aspectratio="t"&gt;&lt;/o:lock&gt;&lt;/FONT&gt;&lt;/v:shapetype&gt;&lt;v:shape id=_x0000_s1026 style="MARGIN-TOP: 0px; Z-INDEX: 251658240; LEFT: 0px; VISIBILITY: hidden; MARGIN-LEFT: 0px; WIDTH: 50pt; POSITION: absolute; HEIGHT: 50pt; TEXT-ALIGN: left; mso-position-horizontal-relative: text; mso-position-vertical-relative: text" type="#_x0000_t75" o:preferrelative="f" u1:preferrelative="t" u1:spt="75"&gt;&lt;v:path o:extrusionok="t" o:connecttype="segments" u1:connecttype="rect" u1:extrusionok="f"&gt;&lt;/v:path&gt;&lt;o:lock v:ext="edit" aspectratio="f" selection="t"&gt;&lt;/o:lock&gt;&lt;/v:shape&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;5.&lt;/FONT&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;FONT size=3&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;Access the Application securely by Publishing through the Firewall &amp;amp; using appropriate security&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l5 level1 lfo9"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Publish Site using Forefront Edge&lt;/SPAN&gt;&lt;SPAN style="FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;FONT size=3&gt; &lt;B style="mso-bidi-font-weight: normal"&gt;Internet Application Gateway (IAG)&lt;/B&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt; &lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;with Application Layer Firewall - &lt;U&gt;&lt;A href="http://www.microsoft.com/forefront/edgesecurity/iag/default.mspx" mce_href="http://www.microsoft.com/forefront/edgesecurity/iag/default.mspx"&gt;http://www.microsoft.com/forefront/edgesecurity/iag/default.mspx&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l5 level1 lfo9"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;IAG Secure Remote Access White Papers - &lt;U&gt;&lt;A href="http://www.microsoft.com/forefront/edgesecurity/iag/whitepapers.mspx" mce_href="http://www.microsoft.com/forefront/edgesecurity/iag/whitepapers.mspx"&gt;http://www.microsoft.com/forefront/edgesecurity/iag/whitepapers.mspx&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l5 level1 lfo9"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Use the practice of Least Privilege account access - &lt;U&gt;&lt;A href="http://www.microsoft.com/technet/security/secnews/articles/lpuseacc.mspx" mce_href="http://www.microsoft.com/technet/security/secnews/articles/lpuseacc.mspx"&gt;http://www.microsoft.com/technet/security/secnews/articles/lpuseacc.mspx&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;6.&lt;/FONT&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Audit &lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;your Firewall, Application and Operating System Logs&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l9 level1 lfo10"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Audit Active Directory - &lt;U&gt;&lt;A href="http://support.microsoft.com/kb/814595" mce_href="http://support.microsoft.com/kb/814595"&gt;http://support.microsoft.com/kb/814595&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l9 level1 lfo10"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Audit Policy - &lt;U&gt;&lt;A href="http://www.microsoft.com/technet/security/guidance/serversecurity/tcg/tcgch03n.mspx" mce_href="http://www.microsoft.com/technet/security/guidance/serversecurity/tcg/tcgch03n.mspx"&gt;http://www.microsoft.com/technet/security/guidance/serversecurity/tcg/tcgch03n.mspx&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l9 level1 lfo10"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Audit ISA - &lt;U&gt;&lt;A href="http://www.microsoft.com/technet/isa/2006/security_guide.mspx" mce_href="http://www.microsoft.com/technet/isa/2006/security_guide.mspx"&gt;http://www.microsoft.com/technet/isa/2006/security_guide.mspx&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;7.&lt;/FONT&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;Use &lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Secure Authentication&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt; &lt;/SPAN&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;Mechanisms (IAG can use AD, Kerberos, RADIUS, LDAP etc…)&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l4 level1 lfo4"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;IIS Authentication - &lt;U&gt;&lt;A href="http://support.microsoft.com/kb/324274" mce_href="http://support.microsoft.com/kb/324274"&gt;http://support.microsoft.com/kb/324274&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l4 level1 lfo4"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Kerberos Authentication in Windows Server 2003 &lt;U&gt;&lt;A href="http://www.microsoft.com/windowsserver2003/technologies/security/kerberos/default.mspx" mce_href="http://www.microsoft.com/windowsserver2003/technologies/security/kerberos/default.mspx"&gt;http://www.microsoft.com/windowsserver2003/technologies/security/kerberos/default.mspx&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;8.&lt;/FONT&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;Use Host based &lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Antivirus &amp;amp; Antimalware&lt;/SPAN&gt;&lt;/B&gt;&lt;FONT size=3&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt; protection on Clients and Servers&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l3 level1 lfo3"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Forefront Client Security - &lt;A href="http://www.microsoft.com/forefront/clientsecurity/default.mspx" mce_href="http://www.microsoft.com/forefront/clientsecurity/default.mspx"&gt;http://www.microsoft.com/forefront/clientsecurity/default.mspx&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;9.&lt;/FONT&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;Keep all systems patched with latest &lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Security Patches&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt; &lt;/SPAN&gt;&lt;FONT size=3&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;using Microsoft Update or WSUS&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l6 level1 lfo2"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Microsoft Windows Server Update Services (WSUS) - &lt;U&gt;&lt;A href="http://technet.microsoft.com/en-us/wsus/default.aspx" mce_href="http://technet.microsoft.com/en-us/wsus/default.aspx"&gt;http://technet.microsoft.com/en-us/wsus/default.aspx&lt;/A&gt;&lt;/U&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l6 level1 lfo2"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;How to keep your Windows up-to-date - &lt;A href="http://support.microsoft.com/kb/311047" target=_blank mce_href="http://support.microsoft.com/kb/311047"&gt;&lt;SPAN style="COLOR: windowtext"&gt;http://support.microsoft.com/kb/311047&lt;/SPAN&gt;&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l6 level1 lfo2"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;Patch 3&lt;SUP&gt;rd&lt;/SUP&gt; party products that&amp;nbsp;are not managed by Microsoft&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l6 level2 lfo2"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Courier New'; mso-fareast-font-family: 'Courier New'"&gt;&lt;SPAN style="mso-list: Ignore"&gt;o&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Backup Software&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l6 level2 lfo2"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Courier New'; mso-fareast-font-family: 'Courier New'"&gt;&lt;SPAN style="mso-list: Ignore"&gt;o&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;Zip or Compression Utilities&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l6 level2 lfo2"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Courier New'; mso-fareast-font-family: 'Courier New'"&gt;&lt;SPAN style="mso-list: Ignore"&gt;o&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;Antivirus&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l6 level2 lfo2"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Courier New'; mso-fareast-font-family: 'Courier New'"&gt;&lt;SPAN style="mso-list: Ignore"&gt;o&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;IE Plug-ins&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l6 level2 lfo2"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Courier New'; mso-fareast-font-family: 'Courier New'"&gt;&lt;SPAN style="mso-list: Ignore"&gt;o&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Management Software&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1in; TEXT-INDENT: -0.25in; mso-list: l6 level2 lfo2"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Courier New'; mso-fareast-font-family: 'Courier New'"&gt;&lt;SPAN style="mso-list: Ignore"&gt;o&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;etc….&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 0.5in; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;FONT size=3&gt;&lt;B&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;Note:&amp;nbsp; &lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-weight: bold"&gt;A System that is Fully Patched with Microsoft Updates can be vulnerable by &lt;/SPAN&gt;&lt;/FONT&gt;&lt;B&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;un-patched vulnerable software&lt;/SPAN&gt;&lt;/B&gt;&lt;FONT size=3&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-weight: bold"&gt; with a driver or running with administrator privileges.&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;10.&lt;/FONT&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;Remember the CIA Triad of security of &lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Confidentiality&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;, &lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Integrity&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;, and &lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Availability&lt;/SPAN&gt;&lt;/B&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; TEXT-INDENT: 0.25in; LINE-HEIGHT: normal"&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;There are a number of other considerations to consider as well focusing on these 3&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l1 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-bidi-font-size: 11.0pt; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Backups&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt; of Server 2003 &amp;amp; SQL 2005 Database&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-fareast-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;a.&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;A href="http://www.microsoft.com/technet/prodtechnol/sql/2005/bkupssas.mspx" mce_href="http://www.microsoft.com/technet/prodtechnol/sql/2005/bkupssas.mspx"&gt;http://www.microsoft.com/technet/prodtechnol/sql/2005/bkupssas.mspx&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-fareast-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;b.&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;A href="http://technet.microsoft.com/en-us/library/aa998799.aspx" mce_href="http://technet.microsoft.com/en-us/library/aa998799.aspx"&gt;http://technet.microsoft.com/en-us/library/aa998799.aspx&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;c.&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;A href="http://technet.microsoft.com/en-us/library/ms175477.aspx"&gt;http://technet.microsoft.com/en-us/library/ms175477.aspx&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l1 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol; mso-bidi-font-size: 12.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-bidi-font-size: 12.0pt; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Load Balancing &amp;amp; Clustering&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-fareast-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;a.&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;A href="http://technet2.microsoft.com/WindowsServer/en/Library/1611cae3-5865-4897-a186-7e6ebd8855cb1033.mspx?mfr=true" mce_href="http://technet2.microsoft.com/WindowsServer/en/Library/1611cae3-5865-4897-a186-7e6ebd8855cb1033.mspx?mfr=true"&gt;http://technet2.microsoft.com/WindowsServer/en/Library/1611cae3-5865-4897-a186-7e6ebd8855cb1033.mspx?mfr=true&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-fareast-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;b.&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;A href="http://www.microsoft.com/technet/prodtechnol/WindowsServer2003/Library/IIS/2d5977cf-06b7-4d4b-8e8c-ce083ac8a6ee.mspx?mfr=true" mce_href="http://www.microsoft.com/technet/prodtechnol/WindowsServer2003/Library/IIS/2d5977cf-06b7-4d4b-8e8c-ce083ac8a6ee.mspx?mfr=true"&gt;http://www.microsoft.com/technet/prodtechnol/WindowsServer2003/Library/IIS/2d5977cf-06b7-4d4b-8e8c-ce083ac8a6ee.mspx?mfr=true&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l1 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-bidi-font-size: 11.0pt; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;High Availability &amp;amp; Disaster Recovery&lt;/SPAN&gt;&lt;/B&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-fareast-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;a.&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;A href="http://www.microsoft.com/technet/security/guidance/disasterrecovery.mspx" mce_href="http://www.microsoft.com/technet/security/guidance/disasterrecovery.mspx"&gt;http://www.microsoft.com/technet/security/guidance/disasterrecovery.mspx&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-fareast-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;b.&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;A href="http://www.microsoft.com/technet/windowsserver/sharepoint/V2/reskit/c2861881x.mspx" mce_href="http://www.microsoft.com/technet/windowsserver/sharepoint/V2/reskit/c2861881x.mspx"&gt;http://www.microsoft.com/technet/windowsserver/sharepoint/V2/reskit/c2861881x.mspx&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-fareast-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;c.&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;A href="http://technet.microsoft.com/en-us/sqlserver/bb331801.aspx" mce_href="http://technet.microsoft.com/en-us/sqlserver/bb331801.aspx"&gt;http://technet.microsoft.com/en-us/sqlserver/bb331801.aspx&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l1 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-bidi-font-size: 11.0pt; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;File Encryption&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt; (EFS &amp;amp; BitLocker)&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-fareast-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;a.&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;A href="http://www.microsoft.com/technet/security/guidance/cryptographyetc/efs.mspx" mce_href="http://www.microsoft.com/technet/security/guidance/cryptographyetc/efs.mspx"&gt;http://www.microsoft.com/technet/security/guidance/cryptographyetc/efs.mspx&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-fareast-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;b.&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;A href="http://technet.microsoft.com/en-us/windowsvista/aa905065.aspx" mce_href="http://technet.microsoft.com/en-us/windowsvista/aa905065.aspx"&gt;http://technet.microsoft.com/en-us/windowsvista/aa905065.aspx&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1in"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Note:&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt; BitLocker will be available in Windows Server 2008&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;&lt;A href="http://technet2.microsoft.com/WindowsVista/en/library/58358421-a7f5-4c97-ab41-2bcc61a58a701033.mspx?mfr=true" mce_href="http://technet2.microsoft.com/WindowsVista/en/library/58358421-a7f5-4c97-ab41-2bcc61a58a701033.mspx?mfr=true"&gt;http://technet2.microsoft.com/WindowsVista/en/library/58358421-a7f5-4c97-ab41-2bcc61a58a701033.mspx?mfr=true&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 0.75in; TEXT-INDENT: -0.25in; mso-list: l1 level1 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-bidi-font-size: 11.0pt; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;Rights Management&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt; Services (RMS)&lt;SPAN style="mso-tab-count: 1"&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-fareast-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;a.&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;A href="http://www.microsoft.com/windowsserver2003/technologies/rightsmgmt/default.mspx" mce_href="http://www.microsoft.com/windowsserver2003/technologies/rightsmgmt/default.mspx"&gt;http://www.microsoft.com/windowsserver2003/technologies/rightsmgmt/default.mspx&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: auto 0in auto 1.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo1"&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin; mso-fareast-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;b.&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 11pt; FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;A href="http://www.microsoft.com/windowsserver2003/techinfo/overview/rm.mspx" mce_href="http://www.microsoft.com/windowsserver2003/techinfo/overview/rm.mspx"&gt;http://www.microsoft.com/windowsserver2003/techinfo/overview/rm.mspx&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;&lt;FONT face=Calibri&gt;Case Study&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-weight: bold"&gt;&lt;FONT size=3&gt;The Infrastructure of&lt;B&gt; &lt;/B&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;B&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;www.microsoft.com&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-weight: bold"&gt;&lt;FONT size=3&gt;,&lt;/FONT&gt;&lt;/SPAN&gt;&lt;B&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt; Microsoft Update&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-weight: bold"&gt;&lt;FONT size=3&gt;, and the&lt;B&gt; &lt;/B&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;B&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Download Center&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;SPAN style="COLOR: black"&gt;&lt;A href="http://download.microsoft.com/download/6/2/b/62bae197-0d3d-4dbb-913a-acd21c57a2c7/DRJ_MSCom_Design_for_Resilience_FINAL.ppt" mce_href="http://download.microsoft.com/download/6/2/b/62bae197-0d3d-4dbb-913a-acd21c57a2c7/DRJ_MSCom_Design_for_Resilience_FINAL.ppt"&gt;&lt;FONT color=#0000ff&gt;http://download.microsoft.com/download/6/2/b/62bae197-0d3d-4dbb-913a-acd21c57a2c7/DRJ_MSCom_Design_for_Resilience_FINAL.ppt&lt;/FONT&gt;&lt;/A&gt;&amp;nbsp;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;&lt;FONT face=Calibri&gt;Conclusion&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;These are a few things to consider, but the key is to thinking about &lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;Defense in Depth&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt; &lt;/SPAN&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;and end-to-end security of the Data, Systems, Network Infrastructure, and Application.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;You need to know first how to &lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;secure the application&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;, but then you need to know how to &lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;identify threats&lt;/SPAN&gt;&lt;/B&gt;&lt;FONT size=3&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt; &lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;when security is being tested and/or compromised and how to &lt;/SPAN&gt;&lt;/FONT&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 11.0pt"&gt;respond &lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT size=3&gt;to those threats.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=2589687" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/staysafe/archive/tags/security/">security</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Application/">Application</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/IIS/">IIS</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Server+2003/">Server 2003</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/SQL+2005/">SQL 2005</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Defense/">Defense</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Web/">Web</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Firewall/">Firewall</category></item><item><title>Why Social Engineering always works :(</title><link>http://blogs.technet.com/b/staysafe/archive/2007/08/08/why-social-engineering-always-works.aspx</link><pubDate>Wed, 08 Aug 2007 03:09:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:1719985</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>1</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=1719985</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2007/08/08/why-social-engineering-always-works.aspx#comments</comments><description>&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;FONT face=Calibri&gt;What is Social Engineering &amp;amp; why should you care?&lt;?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri size=3&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;SPAN lang=EN style="FONT-SIZE: 16pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 23.5pt; mso-bidi-font-family: Arial; mso-ansi-language: EN"&gt;&lt;A href="http://en.wikipedia.org/wiki/Social_engineering_%28security%29"&gt;&lt;FONT face=Calibri&gt;Social engineering (security)&lt;/FONT&gt;&lt;/A&gt;&lt;FONT face=Calibri&gt; - a definition from Wikipedia:&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;FONT face=Calibri&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 16pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;Social engineering&lt;/SPAN&gt;&lt;/B&gt;&lt;I style="mso-bidi-font-style: normal"&gt;&lt;SPAN style="FONT-SIZE: 16pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt; &lt;/SPAN&gt;&lt;/I&gt;&lt;I style="mso-bidi-font-style: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;is a collection of techniques used to manipulate people into performing actions or divulging confidential information.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;While similar to a confidence trick or simple fraud, the term typically applies to trickery for information gathering or computer system access and in most cases the attacker never comes face-to-face with the victim.&lt;/SPAN&gt;&lt;/I&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;Basically it’s applied &lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;Used Car Sales tactics&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 14pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt; &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;to the workplace in order to trick people giving out computer passwords and security codes over the phone, by mail or in person. &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;FONT face=Calibri&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 16pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;Kevin Mitnik&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 16pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt; &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;who was arguably the most infamous hacker in U.S. history wrote a book called “The Art of Deception” in which he exposes the weakness in human security when people are deceived.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;The book described on &lt;A href="http://kevinmitnick.com/products.php"&gt;Mitnik’s website&lt;/A&gt; state: “he [Mitnik] illustrates just how susceptible even the most locked-down information systems are to a slick con artist impersonating an IRS agent”&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri size=3&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;FONT face=Calibri&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;It’s really quite&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt; &lt;B style="mso-bidi-font-weight: normal"&gt;easy to bypass security rules, firewalls and policies if a user is authorized to do so as part of their daily job&lt;/B&gt;. That’s why we don’t give out passwords.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;But really all you have to do is ask for a password and people will give it to you if they think you are trying to help them.&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri size=3&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;FONT face=Calibri&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 16pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;How it works:&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 16pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;If you want to gain illegal unauthorized access to a computer system, just call up the company in the phone directory, press zero for the operator, and ask for the department of your choice.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;You then simply ask an employee who answers to give you their user Employee ID, Username and Password using what every angle fits your style.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;Help Desk &amp;amp; HR are usually often good choices to impersonate.&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri size=3&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;FONT face=Calibri&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 16pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;Why use the phone?&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 16pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;It’s easier to conceal our nervous expressions when we lie.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;We can disguise our voice much easier than we can our countenance.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;We can do it anonymously without recognition of our true self.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;And using the phone is much easier than hacking into a network using traditional technological means and methods.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;FONT face=Calibri&gt;The attacked employee when called will be busy most of the time doing their job and would rather not think about why they are getting a call from you as the supposed Help Desk technician or the local Human Resources Representative, they just want to get back to work.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;In fact if you like to talk, you can ask about their pets, favorite ball team, and their kids, and see if they don’t open up to you and spill the beans to just about any question you want.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;FONT face=Calibri&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 16pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;Why?&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 16pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;It’s probably because, we naturally trust people on the phone at work.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;At home we feel someone is always trying to sell us something and are a little more cautious especially with all the news stories on identity theft and phishing scams via email.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;We have caller block and do not call lists in our house, and we have antivirus, firewall, and phishing filters in our browsers, but there is something magical about a corporate office that gives us a sense of security that our employer screens our calls for us.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;We don’t feel threatened and we genuinely want to help people in need and especially want to cooperate with those individuals trying to solve a problem for us at work.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 14pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 16pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;FONT face=Calibri&gt;So what can you do?&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoListParagraph style="MARGIN: 0in 0in 0pt 0.25in; TEXT-INDENT: -0.25in; mso-list: l2 level1 lfo3; mso-add-space: auto"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT face=Calibri size=3&gt;1.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;ASK QUESTIONS&lt;/B&gt;?&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri size=3&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;SPAN style="FONT-SIZE: 12pt; COLOR: black; LINE-HEIGHT: 115%; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT face=Calibri&gt;If someone phones or appears and asks you for information that you know is confidential company, client or personal information, don’t be afraid to ask them a few questions yourself.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;TABLE class=MsoTableGrid style="BORDER-RIGHT: medium none; BORDER-TOP: medium none; BORDER-LEFT: medium none; BORDER-BOTTOM: medium none; BORDER-COLLAPSE: collapse; mso-border-alt: solid black .5pt; mso-yfti-tbllook: 1184; mso-padding-alt: 0in 5.4pt 0in 5.4pt; mso-border-themecolor: text1" cellSpacing=0 cellPadding=0 border=1 class="MsoTableGrid"&gt;
&lt;TBODY&gt;
&lt;TR style="mso-yfti-irow: 0; mso-yfti-firstrow: yes"&gt;
&lt;TD class="" style="BORDER-RIGHT: black 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: black 1pt solid; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: black 1pt solid; WIDTH: 239.4pt; PADDING-TOP: 0in; BORDER-BOTTOM: black 1pt solid; BACKGROUND-COLOR: transparent; mso-border-alt: solid black .5pt; mso-border-themecolor: text1" vAlign=top width=319&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT face=Calibri&gt;By phone&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: black 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: black 1pt solid; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: #f0f0f0; WIDTH: 239.4pt; PADDING-TOP: 0in; BORDER-BOTTOM: black 1pt solid; BACKGROUND-COLOR: transparent; mso-border-alt: solid black .5pt; mso-border-themecolor: text1; mso-border-left-alt: solid black .5pt; mso-border-left-themecolor: text1" vAlign=top width=319&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT face=Calibri&gt;In Person&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR style="mso-yfti-irow: 1; mso-yfti-lastrow: yes"&gt;
&lt;TD class="" style="BORDER-RIGHT: black 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: #f0f0f0; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: black 1pt solid; WIDTH: 239.4pt; PADDING-TOP: 0in; BORDER-BOTTOM: black 1pt solid; BACKGROUND-COLOR: transparent; mso-border-alt: solid black .5pt; mso-border-themecolor: text1; mso-border-top-alt: solid black .5pt; mso-border-top-themecolor: text1" vAlign=top width=319&gt;
&lt;UL type=disc&gt;
&lt;LI class=MsoNormal style="MARGIN: 0in 0in 10pt; COLOR: black; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo1; tab-stops: list .5in"&gt;&lt;SPAN style="FONT-SIZE: 12pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT face=Calibri&gt;Ask for the correct spelling of the caller's name.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI class=MsoNormal style="MARGIN: 0in 0in 10pt; COLOR: black; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo1; tab-stops: list .5in"&gt;&lt;SPAN style="FONT-SIZE: 12pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT face=Calibri&gt;Ask for a number where you can return the call.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI class=MsoNormal style="MARGIN: 0in 0in 10pt; COLOR: black; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo1; tab-stops: list .5in"&gt;&lt;SPAN style="FONT-SIZE: 12pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT face=Calibri&gt;Ask why the information is needed.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI class=MsoNormal style="MARGIN: 0in 0in 10pt; COLOR: black; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo1; tab-stops: list .5in"&gt;&lt;SPAN style="FONT-SIZE: 12pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT face=Calibri&gt;Ask who has authorized the request and let the caller know that you will verify the authorization.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: black 1pt solid; PADDING-RIGHT: 5.4pt; BORDER-TOP: #f0f0f0; PADDING-LEFT: 5.4pt; PADDING-BOTTOM: 0in; BORDER-LEFT: #f0f0f0; WIDTH: 239.4pt; PADDING-TOP: 0in; BORDER-BOTTOM: black 1pt solid; BACKGROUND-COLOR: transparent; mso-border-alt: solid black .5pt; mso-border-themecolor: text1; mso-border-left-alt: solid black .5pt; mso-border-left-themecolor: text1; mso-border-top-alt: solid black .5pt; mso-border-top-themecolor: text1; mso-border-bottom-themecolor: text1; mso-border-right-themecolor: text1" vAlign=top width=319&gt;
&lt;UL type=disc&gt;
&lt;LI class=MsoNormal style="MARGIN: 0in 0in 10pt; COLOR: black; LINE-HEIGHT: normal; TEXT-ALIGN: justify; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l1 level1 lfo2; tab-stops: list .5in"&gt;&lt;SPAN style="FONT-SIZE: 12pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT face=Calibri&gt;Ask for some identification. &lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI class=MsoNormal style="MARGIN: 0in 0in 10pt; COLOR: black; LINE-HEIGHT: normal; TEXT-ALIGN: justify; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l1 level1 lfo2; tab-stops: list .5in"&gt;&lt;SPAN style="FONT-SIZE: 12pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT face=Calibri&gt;Ask who has authorized this request so you may verify the authorization. &lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI class=MsoNormal style="MARGIN: 0in 0in 10pt; COLOR: black; LINE-HEIGHT: normal; TEXT-ALIGN: justify; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l1 level1 lfo2; tab-stops: list .5in"&gt;&lt;SPAN style="FONT-SIZE: 12pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT face=Calibri&gt;If you are not authorized to provide that information, offer to locate the correct person.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI class=MsoNormal style="MARGIN: 0in 0in 10pt; COLOR: black; LINE-HEIGHT: normal; TEXT-ALIGN: justify; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l1 level1 lfo2; tab-stops: list .5in"&gt;&lt;SPAN style="FONT-SIZE: 12pt; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;FONT face=Calibri&gt;Seek assistance if you are unsure.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;I style="mso-bidi-font-style: normal"&gt;&lt;FONT face=Calibri size=3&gt;Sample questions taken from &lt;/FONT&gt;&lt;A href="http://www.nd.gov/itd/security/start/soceng4.htm"&gt;&lt;FONT face=Calibri size=3&gt;http://www.nd.gov/itd/security/start/soceng4.htm&lt;/FONT&gt;&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; TEXT-ALIGN: center" align=center&gt;&lt;o:p&gt;&lt;FONT face=Calibri size=3&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/P&gt;
&lt;P class=MsoListParagraphCxSpFirst style="MARGIN: 0in 0in 0pt 0.25in; TEXT-INDENT: -0.25in; mso-list: l2 level1 lfo3; mso-add-space: auto"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT face=Calibri size=3&gt;2.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;RECOGNIZE SUSPICIOUS BEHAVIOR&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoListParagraphCxSpMiddle style="MARGIN: 0in 0in 0pt 0.75in; TEXT-INDENT: -0.25in; mso-list: l3 level1 lfo4; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-size: 11.0pt; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;FONT face=Calibri&gt;If you hold a &lt;B style="mso-bidi-font-weight: normal"&gt;clipboard while talking on a cell phone&lt;/B&gt;, people will hold the company doors open for you and let you in almost any building.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;Remember that Uniforms and Clipboards are cheap.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraphCxSpMiddle style="MARGIN: 0in 0in 0pt 0.75in; TEXT-INDENT: -0.25in; mso-list: l3 level1 lfo4; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-size: 11.0pt; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;FONT face=Calibri&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;Passwords are Personal&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt; – Helpdesk should never ask you to give them your password, and if you reset a password with one provided by the helpdesk, change it immediately.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraphCxSpMiddle style="MARGIN: 0in 0in 0pt 0.75in; TEXT-INDENT: -0.25in; mso-list: l3 level1 lfo4; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; FONT-FAMILY: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-size: 11.0pt; mso-bidi-font-family: Symbol"&gt;&lt;SPAN style="mso-list: Ignore"&gt;·&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;FONT face=Calibri&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;If you didn’t ask for help &lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;– be surprised when someone offers to fix something.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraphCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; mso-add-space: auto"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;o:p&gt;&lt;FONT face=Calibri size=3&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoListParagraphCxSpLast style="MARGIN: 0in 0in 0pt 0.25in; TEXT-INDENT: -0.25in; mso-list: l2 level1 lfo3; mso-add-space: auto"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT face=Calibri size=3&gt;3.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;RESPOND TO SOCIAL ENGINEERING ATTACKS&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 0.25in"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;FONT face=Calibri&gt;Report questionable behavior to Security or Management&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 0.25in"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;FONT face=Calibri&gt;Additional Resources:&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 15.5pt; mso-font-kerning: 18.0pt"&gt;&lt;A href="http://www.microsoft.com/downloads/details.aspx?FamilyID=05033e55-aa96-4d49-8f57-c47664107938&amp;amp;DisplayLang=en"&gt;&lt;FONT face=Calibri&gt;How to Protect Insiders from Social Engineering Threats&lt;/FONT&gt;&lt;/A&gt;&lt;FONT face=Calibri&gt; (Microsoft)&lt;/FONT&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 9pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;A href="http://www.sans.org/reading_room/whitepapers/engineering/920.php"&gt;&lt;FONT face=Calibri&gt;A Multi-Level Defense Against Social Engineering&lt;/FONT&gt;&lt;/A&gt;&lt;FONT face=Calibri&gt; (SANS)&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;o:p&gt;&lt;FONT face=Calibri size=3&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;FONT face=Calibri&gt;Other links are available from:&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;A href="http://www.securityfocus.com/infocus/1527"&gt;&lt;FONT face=Calibri&gt;http://www.securityfocus.com/infocus/1527&lt;/FONT&gt;&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=1719985" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Social+Engineering/">Social Engineering</category></item><item><title>Online Internet Safety Resources</title><link>http://blogs.technet.com/b/staysafe/archive/2007/07/30/why-are-people-too-busy-to-learn-about-online-safety.aspx</link><pubDate>Mon, 30 Jul 2007 08:00:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:1649555</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=1649555</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2007/07/30/why-are-people-too-busy-to-learn-about-online-safety.aspx#comments</comments><description>&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt; LINE-HEIGHT: normal; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Here are some resources&amp;nbsp;from&amp;nbsp;the &lt;A title="Microsoft's Internet Safety Toolkit" href="http://www.staysafe.org/unicef/downloads/Microsoft_InternetSafetyToolkit.pdf" mce_href="http://www.staysafe.org/unicef/downloads/Microsoft_InternetSafetyToolkit.pdf"&gt;&lt;SPAN style="COLOR: blue; mso-bidi-font-size: 11.0pt"&gt;Microsoft' Internet Safety Toolkit&lt;/SPAN&gt;&lt;/A&gt;&amp;nbsp;below to help keep you kids and family safe online:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• StaySafe.org (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.staysafe.org&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) - Educational site intended to help consumers understand both the positive aspects of the Internet as well as how to manage a variety of safety and security issues that exist online&lt;?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• Be Web Aware (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.bewebaware.org&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) - N&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.0pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;ational, bilingual public education program on Internet safety designed to ensure that young Canadians benefit from the Internet, while being safe and responsible in their online activities&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• Safe Kids Worldwide (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.safekids.org&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) - Global network of organizations whose mission is to prevent accidental childhood injury, a leading killer of children 14 and under&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• WebSafe Crackerz (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.websafecrackerz.com&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) - Interactive games and puzzles designed to help teenagers and offer strategies for dealing with different situations online including spam, phishing, and scams&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• GetNetWise (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.getnetwise.org&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) - Public service offered by a coalition of Internet industry corporations and public interest organizations that want Internet users to be only "one click away" from the resources they need to make informed decisions about their and their family's use of the Internet&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• iSafe (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.isafe.org&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) - Worldwide leader in Internet safety education; incorporates classroom curriculum with dynamic community outreach to empower students, teachers, parents, law enforcement, and concerned adults to make the Internet a safer place&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• International Centre for Missing &amp;amp; Exploited Children (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.icmec.org&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) – Global agency that promotes the safety and well-being of children through activism, policy development and multinational coordination&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• Interpol (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.interpol.int&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) - International police organization that facilitates crossborder police cooperation, and supports and assists all organizations, authorities, and services whose mission is to prevent or combat international crime&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• UNICEF (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.unicef.org&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) – Global advocate for the protection of children's rights dedicated to providing long-term humanitarian and developmental assistance to children and parents in developing countries&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• ECPAT (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.ecpat.net&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) - Network of organizations and individuals working together to eliminate the commercial sexual exploitation of children&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• INHOPE (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://inhope.org&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) - International association that supports Internet hotlines in their aim to respond to reports of illegal content to make the Internet safer&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• Childnet International (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.childnet-int.org&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) - Non-profit organization that works in partnership with others around the world to help make the Internet a great and safe place for children&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• SafeKids.com (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.safekids.com&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) – Resources to help families make the Internet and technology fun, safe, and productive&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• Net Family News (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://netfamilynews.org&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) – Non-profit public service providing a forum and "kid-tech news" for parents and educators in more than 50 countries&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• Microsoft Security At Home (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.microsoft.com/protect&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) – Information and resources to help the public protect their computers, protect themselves, and protect their families&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• Center for Safe and Responsible Internet Use (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://csriu.org&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) – Organization providing provide outreach services addressing the issues of the safe and responsible use of the Internet &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.0pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;Microsoft Internet Safety Toolkit | 21&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• WiredSafety (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.wiredsafety.org&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) – Online safety, education, and help group that offers help for online victims of cyber-crime and harassment, assistance to law enforcement worldwide on preventing and investigating cyber-crimes, and information on all aspects of online safety, privacy and security.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• National Council for Motherhood and Childhood (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://www.nccm.org.eg&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) – Egyptian organization dedicated to supporting childhood and motherhood from a rights-based approach&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;• &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.0pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;NetAlert Limited (&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: #0066ff; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.0pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;http://netalert.net.au&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;) – Non-profit community organization established by the Australian government&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&amp;nbsp;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;In addition to these education resources above, I have also provided a list of Family Protection Software reviewed on:&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;B&gt;&lt;I&gt;&lt;SPAN style="FONT-SIZE: 7.5pt; COLOR: red; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.filterguide.com/ratings.htm" mce_href="http://www.filterguide.com/ratings.htm"&gt;&lt;SPAN style="COLOR: blue; mso-bidi-font-size: 11.0pt"&gt;http://www.filterguide.com/ratings.htm&lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/I&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt; LINE-HEIGHT: normal; TEXT-ALIGN: center" align=center&gt;&lt;B&gt;&lt;SPAN style="FONT-SIZE: 12pt; COLOR: teal; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 10.0pt"&gt;Best Parental Control Software Review -&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 12pt; COLOR: black; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 10.0pt"&gt; &lt;/SPAN&gt;&lt;B&gt;&lt;I&gt;&lt;SPAN style="FONT-SIZE: 9pt; COLOR: red; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 7.5pt"&gt;"Editor's Choice"&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/I&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt; LINE-HEIGHT: normal; TEXT-ALIGN: center" align=center&gt;&lt;B&gt;&lt;I&gt;&lt;SPAN style="FONT-SIZE: 7.5pt; COLOR: red; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.filterguide.com/ratings.htm" mce_href="http://www.filterguide.com/ratings.htm"&gt;&lt;SPAN style="COLOR: blue; mso-bidi-font-size: 11.0pt"&gt;http://www.filterguide.com/ratings.htm&lt;/SPAN&gt;&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/I&gt;&lt;/B&gt;&lt;/P&gt;
&lt;TABLE class=MsoNormalTable style="BORDER-RIGHT: #cccccc 1pt outset; BORDER-TOP: #cccccc 1pt outset; BACKGROUND: white; BORDER-LEFT: #cccccc 1pt outset; WIDTH: 100%; BORDER-BOTTOM: #cccccc 1pt outset; mso-border-alt: outset #CCCCCC .75pt; mso-yfti-tbllook: 1184; mso-padding-alt: 0in 0in 0in 0in; mso-cellspacing: 2.0pt; mso-background-themecolor: background1; mso-border-insideh: .75pt outset #CCCCCC; mso-border-insidev: .75pt outset #CCCCCC" cellSpacing=3 cellPadding=0 width="100%" border=1 class="MsoNormalTable"&gt;
&lt;TBODY&gt;
&lt;TR style="mso-yfti-irow: 0; mso-yfti-firstrow: yes"&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 118.95pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=159&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.filterguide.com/safebrowse.htm" target=_blank mce_href="http://www.filterguide.com/safebrowse.htm"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"&gt;Safe Eyes&lt;/SPAN&gt;&lt;/B&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;InternetSafety.com&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 354.3pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=472&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;Parental Control&lt;B&gt; – SafeEyes Platinum &lt;/B&gt;content filter and parental control filter monitoring software will allow you to block porn, popups and more.&lt;B&gt;&lt;I&gt;&lt;SPAN style="COLOR: red"&gt; &lt;/SPAN&gt;&lt;/I&gt;&lt;/B&gt;&lt;/SPAN&gt;&lt;B&gt;&lt;I&gt;&lt;SPAN style="FONT-SIZE: 7.5pt; COLOR: red; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;"Editor's Choice"&lt;/SPAN&gt;&lt;/I&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR style="mso-yfti-irow: 1"&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 118.95pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=159&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.filterguide.com/netnanny.htm" target=_blank mce_href="http://www.filterguide.com/netnanny.htm"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"&gt;NetNanny&lt;/SPAN&gt;&lt;/B&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;BR&gt;NetNanny.com&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 354.3pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=472&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;Content Filtering – &lt;B&gt;Net Nanny&lt;/B&gt; internet filtering software was produced to filter, stop, and monitor internet porn sites. &lt;/SPAN&gt;&lt;B&gt;&lt;I&gt;&lt;SPAN style="FONT-SIZE: 7.5pt; COLOR: red; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;"Editor's Choice"&lt;/SPAN&gt;&lt;/I&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR style="mso-yfti-irow: 2"&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 118.95pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=159&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.filterguide.com/contentprotect.htm" mce_href="http://www.filterguide.com/contentprotect.htm"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"&gt;ContentPrtoect&lt;/SPAN&gt;&lt;/B&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: red; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;ContentWatch.com&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 354.3pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=472&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;Content Filtering – ContentPrtotect is now combined with the Net Nanny web filter and is listed as one of our top filters. &lt;/SPAN&gt;&lt;B&gt;&lt;I&gt;&lt;SPAN style="FONT-SIZE: 7.5pt; COLOR: red; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;"Editor's Choice"&lt;/SPAN&gt;&lt;/I&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR style="mso-yfti-irow: 3"&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 118.95pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=159&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.filterguide.com/bsafeonline.htm" target=_blank mce_href="http://www.filterguide.com/bsafeonline.htm"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"&gt;BSafeOnline&lt;/SPAN&gt;&lt;/B&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;BSafeHome.com&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 354.3pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=472&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;Parental Control Software&lt;B&gt; – &lt;/B&gt;Use the &lt;B&gt;BsafeHome&amp;nbsp; &lt;/B&gt;parental controls for internet blocking of porn and sits that are objectionable. &lt;/SPAN&gt;&lt;B&gt;&lt;I&gt;&lt;SPAN style="FONT-SIZE: 7.5pt; COLOR: red; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;"Editor's Choice"&lt;/SPAN&gt;&lt;/I&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR style="mso-yfti-irow: 4"&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 118.95pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=159&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.filterguide.com/cybersitter.htm" target=_blank mce_href="http://www.filterguide.com/cybersitter.htm"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"&gt;Cybersitter&lt;/SPAN&gt;&lt;/A&gt;&lt;A href="http://www.filterguide.com/alldigitalguide/imtoompegencoder.htm" target=_blank mce_href="http://www.filterguide.com/alldigitalguide/imtoompegencoder.htm"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"&gt; &lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;CyberSitter.com&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 354.3pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=472&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;B&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;Cybersitter &lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;content filter software stops profanity, sex, nudity and pornography internet web sites from your computer. &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR style="mso-yfti-irow: 5"&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 118.95pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=159&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.filterguide.com/actmon.htm" target=_blank mce_href="http://www.filterguide.com/actmon.htm"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"&gt;Actmon&lt;/SPAN&gt;&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;ActMon.com&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 354.3pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=472&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;Internet Blocking Software – &lt;B&gt;Act Mon Computer Control&lt;/B&gt; internet filtering software will keep an eye on and filter computer and PC workstations.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR style="mso-yfti-irow: 6"&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 118.95pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=159&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.filterguide.com/cyberpatrol7.htm" target=_blank mce_href="http://www.filterguide.com/cyberpatrol7.htm"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"&gt;CyberPatrol &lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;CyberPatrol.com&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 354.3pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=472&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;Internet Filter Software Review – &lt;B&gt;CyberPatrol 7&lt;/B&gt; will watch who is permitted admittance to the internet, and filter everyplace those users surf on the internet. &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR style="mso-yfti-irow: 7"&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 118.95pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=159&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.filterguide.com/guardianmonitor.htm" target=_blank mce_href="http://www.filterguide.com/guardianmonitor.htm"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"&gt;Guardian&lt;/SPAN&gt;&lt;/A&gt;&lt;A href="http://www.filterguide.com/guardianmonitor.htm" target=_blank mce_href="http://www.filterguide.com/guardianmonitor.htm"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"&gt; Monitor&lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;GuardianSoftware.com&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 354.3pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=472&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;Internet Filters Software – &lt;B&gt;Guardian Monitor&lt;/B&gt; monitors Peer to Peer, instant messaging, chat rooms, emails and websites.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR style="mso-yfti-irow: 8"&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 118.95pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=159&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.filterguide.com/childwebguardian.htm" target=_blank mce_href="http://www.filterguide.com/childwebguardian.htm"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"&gt;ChildwebGuardian&lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-themecolor: text1"&gt;ChildWebGuardian.com&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'; mso-themecolor: text1"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 354.3pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=472&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;Internet Parental Software – &lt;B&gt;Childwebguardian&lt;/B&gt; blocks profanity, sex, nudity, violence, adult websites, pornography, and more.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR style="mso-yfti-irow: 9"&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 118.95pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=159&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.filterguide.com/computercop.htm" target=_blank mce_href="http://www.filterguide.com/computercop.htm"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"&gt;ComputerCop&lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;ComputerCop.com&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 354.3pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=472&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;Parental Controls Filters – &lt;B&gt;ComputerCOP &lt;/B&gt;scans and views a computer, allowing parents a easy way to locate if the computer system has been incorrectly used.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;
&lt;TR style="mso-yfti-irow: 10; mso-yfti-lastrow: yes"&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 118.95pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=159&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.filterguide.com/soskidproof.htm" target=_blank mce_href="http://www.filterguide.com/soskidproof.htm"&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: blue; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"&gt;SOS KidProof&lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;
&lt;TD class="" style="BORDER-RIGHT: #cccccc 1pt inset; PADDING-RIGHT: 0.75pt; BORDER-TOP: #cccccc 1pt inset; PADDING-LEFT: 0.75pt; BACKGROUND: none transparent scroll repeat 0% 0%; PADDING-BOTTOM: 0.75pt; BORDER-LEFT: #cccccc 1pt inset; WIDTH: 354.3pt; PADDING-TOP: 0.75pt; BORDER-BOTTOM: #cccccc 1pt inset; mso-border-alt: inset #CCCCCC .75pt" width=472&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'"&gt;Parental Control Internet Filter – &lt;B&gt;SOS KidProof&lt;/B&gt; is the most far-reaching, well-featured software program offered for protecting and viewing your children’s website activity.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt; LINE-HEIGHT: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; COLOR: black; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;While I cannot guarantee the reliability of these 3&lt;SUP&gt;rd&lt;/SUP&gt; party sites and services, I do hope these resources are a helpful start in educating yourself and others about online cyber threats and responsible ways to deal with those threats.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="FONT-SIZE: 10pt; COLOR: black; mso-fareast-font-family: 'Times New Roman'; mso-bidi-font-family: 'Times New Roman'; mso-bidi-font-size: 8.5pt; mso-ascii-font-family: Calibri; mso-hansi-font-family: Calibri"&gt;:&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri size=3&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/P&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=1649555" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Computers/">Computers</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/safe/">safe</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/innocent/">innocent</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/security/">security</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/antivirus/">antivirus</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/malware/">malware</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/FBI/">FBI</category><category domain="http://blogs.technet.com/b/staysafe/archive/tags/cybercrime/">cybercrime</category></item><item><title>Espionage &amp; Counter Intelligence for the "Average Joe"</title><link>http://blogs.technet.com/b/staysafe/archive/2007/07/19/espionage-counter-intelligence-for-the-average-joe.aspx</link><pubDate>Thu, 19 Jul 2007 22:21:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:1559739</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=1559739</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2007/07/19/espionage-counter-intelligence-for-the-average-joe.aspx#comments</comments><description>&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt"&gt;&lt;SPAN style="mso-bidi-font-weight: bold; mso-bidi-font-style: italic"&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;Today in the news there was a story of a major security breach where nuclear secrets were stolen from Oak Ridge National Laboratory.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;A contract employee allegedly obtained highly classified information on uranium enrichment to be sold to a foreign country.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;See the news article on MSNBC:&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;A href="http://www.msnbc.msn.com/id/19850505/" mce_href="http://www.msnbc.msn.com/id/19850505/"&gt;&lt;FONT face=Calibri size=3&gt;National lab worker accused of stealing secrets.&lt;/FONT&gt;&lt;/A&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;It’s a stark reminder again that information is both valuable and important, and people who want said information and are willing to sacrifice and go to great extents to obtain it.&lt;?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt"&gt;&lt;SPAN style="mso-bidi-font-weight: bold; mso-bidi-font-style: italic"&gt;&lt;FONT face=Calibri size=3&gt;It reminded me that I recently had the opportunity to attend the “Five Pillars of Executive Leadership in a Non Secure World Conference” in Research Triangle Park, NC sponsored by the &lt;/FONT&gt;&lt;A href="http://www.ncta.org/" mce_href="http://www.ncta.org/"&gt;&lt;FONT face=Calibri color=#0000ff size=3&gt;North Carolina Technology Association (NCTA)&lt;/FONT&gt;&lt;/A&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;The conference focused on corporate security as a business ethic, and was discussed in light of potential criminal &amp;amp; terrorist attacks against U.S. citizens.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;SPAN style="mso-bidi-font-weight: bold; mso-bidi-font-style: italic"&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;The 5 pillars referenced in the seminar’s name were:&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraphCxSpFirst style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: 115%; mso-list: l0 level1 lfo3"&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT size=3&gt;1.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;FONT size=3&gt;Protecting People&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraphCxSpMiddle style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: 115%; mso-list: l0 level1 lfo3"&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT size=3&gt;2.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;FONT size=3&gt;Physical Security&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraphCxSpMiddle style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: 115%; mso-list: l0 level1 lfo3"&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT size=3&gt;3.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;FONT size=3&gt;Intellectual Property Protection&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraphCxSpMiddle style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: 115%; mso-list: l0 level1 lfo3"&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT size=3&gt;4.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;FONT size=3&gt;Cyber Security&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoListParagraphCxSpLast style="MARGIN: 0in 0in 0pt 0.5in; TEXT-INDENT: -0.25in; LINE-HEIGHT: 115%; mso-list: l0 level1 lfo3"&gt;&lt;FONT face="Times New Roman"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT size=3&gt;5.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;FONT size=3&gt;Business Continuity Planning&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri size=3&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;The conference which targeted business leaders addressed identity theft, terrorism and natural disasters, but what I was most intrigued by was threat of Industrial Espionage especially when travelling and Counter Intelligence efforts that can be conducted by everyday Average&amp;nbsp;Joe’s carrying laptops &amp;amp; cell phones.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;It suddenly occurred to me: &lt;B style="mso-bidi-font-weight: normal"&gt;I am that “Average Joe” and so are you!!!&lt;/B&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;&lt;B&gt;&lt;SPAN style="mso-bidi-font-style: italic"&gt;Definitions:&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;SPAN style="mso-bidi-font-style: italic"&gt;from Wikipedia &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;B&gt;&lt;I&gt;&lt;A href="http://en.wikipedia.org/wiki/Counter_intelligence" mce_href="http://en.wikipedia.org/wiki/Counter_intelligence"&gt;&lt;FONT face=Calibri size=3&gt;Counter Intelligence&lt;/FONT&gt;&lt;/A&gt;&lt;FONT face=Calibri size=3&gt; &lt;/FONT&gt;&lt;/I&gt;&lt;/B&gt;&lt;I&gt;&lt;FONT face=Calibri size=3&gt;– Efforts designed to prevent enemy intelligence organizations &amp;amp; competitors from successfully gathering and collecting intelligence.&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;B&gt;&lt;I&gt;&lt;A href="http://en.wikipedia.org/wiki/Espionage" mce_href="http://en.wikipedia.org/wiki/Espionage"&gt;&lt;FONT face=Calibri size=3&gt;Espionag&lt;/FONT&gt;&lt;/A&gt;&lt;FONT face=Calibri size=3&gt;e&lt;/FONT&gt;&lt;/I&gt;&lt;/B&gt;&lt;I&gt;&lt;FONT face=Calibri size=3&gt; – The practice of obtaining information about an organization that is considered secret or confidential without the permission of the holder of the information.&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;o:p&gt;&lt;FONT face=Calibri size=3&gt;&amp;nbsp;&lt;/FONT&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;What can we do?&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt"&gt;&lt;SPAN style="LINE-HEIGHT: 115%; mso-bidi-font-size: 14.0pt"&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;Armed with just a little bit of knowledge, we can stay alert and use security best practice when travelling to minimize risk to our physical safety and the intellectual property stored digitally in our bags and pockets.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;We need to take responsibility to protect ourselves, our businesses &amp;amp; effectively the U.S. government from losing sensitive information or secrets including intellectual property, financials, or secret formulas that would give competitors a competitive business or military advantage.&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;B&gt;&lt;SPAN style="mso-bidi-font-style: italic"&gt;&lt;FONT face=Calibri size=3&gt;Some examples of Espionage:&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 1in; TEXT-INDENT: -0.25in; mso-list: l2 level2 lfo1; tab-stops: list 1.0in"&gt;&lt;SPAN style="FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT size=3&gt;•&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;I&gt;&lt;FONT face=Calibri size=3&gt;A foreign airport official confiscates your corporate laptop to “Check it” – after duplicating your drive, it is returned to you apparently undamaged.&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 1in; TEXT-INDENT: -0.25in; mso-list: l2 level2 lfo1; tab-stops: list 1.0in"&gt;&lt;SPAN style="FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT size=3&gt;•&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;I&gt;&lt;FONT face=Calibri size=3&gt;Your cell phone is used as a bug to eavesdrop on your “private” business &lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;conversation&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 1in; TEXT-INDENT: -0.25in; mso-list: l2 level2 lfo1; tab-stops: list 1.0in"&gt;&lt;SPAN style="FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT size=3&gt;•&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;I&gt;&lt;FONT face=Calibri size=3&gt;A foreign government gives or sells your business data to your foreign competitor.&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 1in; TEXT-INDENT: -0.25in; mso-list: l2 level2 lfo1; tab-stops: list 1.0in"&gt;&lt;SPAN style="FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT size=3&gt;•&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;I&gt;&lt;FONT face=Calibri size=3&gt;A contract worker at a nuclear lab obtains classified secrets with intent to sell them.&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt 1in; TEXT-INDENT: -0.25in; mso-list: l2 level2 lfo1; tab-stops: list 1.0in"&gt;&lt;EM&gt;&lt;FONT face=Calibri size=3&gt;&lt;/FONT&gt;&lt;/EM&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 12pt; LINE-HEIGHT: 115%; mso-bidi-font-size: 11.0pt"&gt;&lt;FONT face=Calibri&gt;Some useful travel tips:&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoListParagraphCxSpFirst style="MARGIN: 0in 0in 0pt 0.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo2; tab-stops: list 1.0in; mso-add-space: auto"&gt;&lt;SPAN style="FONT-FAMILY: 'Calibri','sans-serif'; mso-fareast-font-family: Calibri; mso-bidi-font-family: Calibri; mso-ascii-theme-font: minor-latin; mso-fareast-theme-font: minor-latin; mso-hansi-theme-font: minor-latin; mso-bidi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT size=3&gt;1.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;I&gt;&lt;SPAN style="FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;FONT size=3&gt;Never let a laptop out of your sight in an airport &amp;amp; use encrypted drives (i.e. &lt;/FONT&gt;&lt;A href="http://www.microsoft.com/windows/products/windowsvista/features/details/bitlocker.mspx" mce_href="http://www.microsoft.com/windows/products/windowsvista/features/details/bitlocker.mspx"&gt;&lt;FONT size=3&gt;BitLocker Drive Encryption&lt;/FONT&gt;&lt;/A&gt;&lt;FONT size=3&gt;) so that only a piece of hardware, but no data is stolen with the computer.&lt;/FONT&gt;&lt;/SPAN&gt;&lt;/I&gt;&lt;SPAN style="FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoListParagraphCxSpLast style="MARGIN: 0in 0in 0pt 0.25in; mso-add-space: auto"&gt;&lt;FONT size=3&gt;&lt;I&gt;&lt;SPAN style="FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/I&gt;&lt;SPAN style="FONT-FAMILY: 'Calibri','sans-serif'; mso-ascii-theme-font: minor-latin; mso-hansi-theme-font: minor-latin"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt 0.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo2; tab-stops: list 1.0in"&gt;&lt;SPAN style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT face=Calibri size=3&gt;2.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;I&gt;&lt;FONT face=Calibri size=3&gt;Never, ever, check your laptop (or other valuables) with your luggage.&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt 0.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo2; tab-stops: list 1.0in"&gt;&lt;SPAN style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT face=Calibri size=3&gt;3.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;I&gt;&lt;FONT face=Calibri size=3&gt;Assume any conversation on phones to be public &amp;amp; do not disclose business confidential data on phones in &lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;foreign country&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt 0.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo2; tab-stops: list 1.0in"&gt;&lt;SPAN style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT face=Calibri size=3&gt;4.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;I&gt;&lt;FONT face=Calibri size=3&gt;Assume any Internet activity to be public, so be sure to encrypt any communication that need to be private.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;For example do not send sensitive work-related e-mail from a public hotspot.&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt 0.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo2; tab-stops: list 1.0in"&gt;&lt;SPAN style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT face=Calibri size=3&gt;5.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;I&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;When overseas, contact the U.S. Embassy and let them know where you are staying &amp;amp; when traveling away from your hotel.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt 0.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo2; tab-stops: list 1.0in"&gt;&lt;SPAN style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT face=Calibri size=3&gt;6.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;I&gt;&lt;FONT face=Calibri size=3&gt;Stay in hotel floors between 2&lt;SUP&gt;nd&lt;/SUP&gt; and 6&lt;SUP&gt;th&lt;/SUP&gt; floors.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;Avoid first floor rooms especially if it faces a parking lot as theft is most convenient for criminals to easily reach.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;Avoid rooms above the 6&lt;SUP&gt;th&lt;/SUP&gt; floor as many fire departments are unable to reach rooms higher than 6&lt;SUP&gt;th&lt;/SUP&gt; floor with a ladder.&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt 0.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo2; tab-stops: list 1.0in"&gt;&lt;SPAN style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT face=Calibri size=3&gt;7.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;I&gt;&lt;FONT face=Calibri size=3&gt;In regions highly susceptible to terrorism, you may want to consider using a local hotel instead of a mainstream hotel chains that may be targeted simply because of its affiliation with a country.&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt 0.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo2; tab-stops: list 1.0in"&gt;&lt;SPAN style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT face=Calibri size=3&gt;8.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;I&gt;&lt;FONT face=Calibri size=3&gt;Never leave valuables in a hotel with business sensitive information.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;If you use a room safe, it may protect against a curious maid, but will not keep out trained professionals who want your data.&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt 0.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo2; tab-stops: list 1.0in"&gt;&lt;SPAN style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT face=Calibri size=3&gt;9.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;I&gt;&lt;FONT face=Calibri size=3&gt;Don’t leave passwords or dial-in remote access numbers attached to labels on your computer or in your laptop case&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 10pt 0.25in; TEXT-INDENT: -0.25in; mso-list: l1 level2 lfo2; tab-stops: list 1.0in"&gt;&lt;SPAN style="mso-bidi-font-family: Calibri; mso-bidi-theme-font: minor-latin"&gt;&lt;SPAN style="mso-list: Ignore"&gt;&lt;FONT face=Calibri size=3&gt;10.&lt;/FONT&gt;&lt;SPAN style="FONT: 7pt 'Times New Roman'"&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;I&gt;&lt;FONT face=Calibri size=3&gt;Espionage is theft of information not hardware, so someone may just want a copy of your drive.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;The airport official may bring your laptop back and nothing may be missing from your room when you noticed it looks like someone had been in your stuff – but that doesn’t mean nothing was taken.&lt;/FONT&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt;&lt;SPAN style="mso-bidi-font-style: italic"&gt;Further Reading &amp;amp; Useful Travel Safety Links:&lt;/SPAN&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;I&gt;&lt;A href="http://travel.state.gov/" mce_href="http://travel.state.gov/"&gt;&lt;FONT face=Calibri color=#0000ff size=3&gt;http://travel.state.gov&lt;/FONT&gt;&lt;/A&gt;&lt;/I&gt;&lt;FONT size=3&gt;&lt;FONT face=Calibri&gt; &lt;B style="mso-bidi-font-weight: normal"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/B&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;I&gt;&lt;A href="http://www.state.gov/travelandbusiness" mce_href="http://www.state.gov/travelandbusiness"&gt;&lt;FONT face=Calibri color=#0000ff size=3&gt;http://www.state.gov/travelandbusiness&lt;/FONT&gt;&lt;/A&gt;&lt;/I&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;FONT face=Calibri size=3&gt;“&lt;/FONT&gt;&lt;A href="http://www.ntc.doe.gov/cita/CI_Awareness_Guide/T4travel/Theft.htm" mce_href="http://www.ntc.doe.gov/cita/CI_Awareness_Guide/T4travel/Theft.htm"&gt;&lt;FONT face=Calibri size=3&gt;Theft While Traveling&lt;/FONT&gt;&lt;/A&gt;&lt;FONT face=Calibri size=3&gt;” on the U.S. Department of Energy website&lt;/FONT&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;A href="http://news.bbc.co.uk/1/hi/business/3853913.stm" mce_href="http://news.bbc.co.uk/1/hi/business/3853913.stm"&gt;&lt;FONT face=Calibri size=3&gt;Industrial Espionage ‘Real and out there’&lt;/FONT&gt;&lt;/A&gt;&lt;FONT face=Calibri size=3&gt; – by Will Smale – BBC News&lt;/FONT&gt;&lt;/P&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=1559739" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/staysafe/archive/tags/Counter+Intelligence/">Counter Intelligence</category></item><item><title>You don't have to be a Rocket Scientist to stay safe online.</title><link>http://blogs.technet.com/b/staysafe/archive/2007/07/17/you-don-t-have-to-be-a-rocket-scientist-to-stay-safe-online.aspx</link><pubDate>Wed, 18 Jul 2007 00:03:00 GMT</pubDate><guid isPermaLink="false">d5e57398-b9ef-4490-9955-07cbb4e4a80d:1544274</guid><dc:creator>Troy Arwine</dc:creator><slash:comments>1</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://blogs.technet.com/b/staysafe/rsscomments.aspx?WeblogPostID=1544274</wfw:commentRss><comments>http://blogs.technet.com/b/staysafe/archive/2007/07/17/you-don-t-have-to-be-a-rocket-scientist-to-stay-safe-online.aspx#comments</comments><description>&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Simply following a few basic safety tips can minimize your risk of being hacked; having your identity stolen; or accidently exposing your children to adult content on the Web.&lt;?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;How?&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;Take the time to understand the threats and how to respond to them.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;Realize that the Internet is a dangerous place with people you have never met who want your stuff, time, money, kids affection &amp;amp; ideas.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;There is lots of good stuff online, but we need to responsible, educated &amp;amp; wise in cyberspace as we are in the real world.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;If I've heard it once, I've heard it a&amp;nbsp;dozen times: "I don't really have anything important on my computer" - That's simply not true!&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;It's like leaving the keys in your car ignition with the windows rolled down.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;The thief is likely to use your auto as a getaway car in a bank robbery.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Do you bank online?&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;Your passwords can be stolen!&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Do you send email to friends &amp;amp; family?&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;Your addresses can be harvested for spam!&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Do you have family photos?&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;Your pictures can be posted online for strangers to view!&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Almost any data can be exploited or sold, and even if you really have nothing but an empty PC connected to the Internet,&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;it's important to the bad guys who can use it as a Botnet weapon of mass disruption (a zombie as it were) without your&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;permission or knowledge.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;Your compromised machine can be used to attack innocent victims &amp;amp; the FBI will track the attack to your house, not the attacker’s.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;In fact many of the problems with cyberthreats to families are not the result of a sophisticated hacker attack or advanced targeted viruses.&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp; &lt;/SPAN&gt;They are the result of home users not taking the time to follow basic online safety rules that can protect their family.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;What can you do?&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;B style="mso-bidi-font-weight: normal"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/B&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: Arial"&gt;1.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Arial"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Understand the 10 Immutable Laws of Security:&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="mso-tab-count: 1"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Law #1: If a bad guy can persuade you to run his program on your computer, it's not your computer anymore &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="mso-tab-count: 1"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Law #2: If a bad guy can alter the operating system on your computer, it's not your computer anymore &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="mso-tab-count: 1"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Law #3: If a bad guy has unrestricted physical access to your computer, it's not your computer anymore &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="mso-tab-count: 1"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Law #4: If you allow a bad guy to upload programs to your website, it's not your website any more &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="mso-tab-count: 1"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Law #5: Weak passwords trump strong security &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="mso-tab-count: 1"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Law #6: A computer is only as secure as the administrator is trustworthy &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="mso-tab-count: 1"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Law #7: Encrypted data is only as secure as the decryption key &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="mso-tab-count: 1"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Law #8: An out of date virus scanner is only marginally better than no virus scanner at all &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="mso-tab-count: 1"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Law #9: Absolute anonymity isn't practical, in real life or on the Web &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;SPAN style="mso-spacerun: yes"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="mso-tab-count: 1"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Law #10: Technology is not a panacea &lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: Arial"&gt;2.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Arial"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Discover more safety information online:&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Read the FBI's: "A Parent's Guide to Internet Safety"&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.fbi.gov/publications/pguide/pguidee.htm" mce_href="http://www.fbi.gov/publications/pguide/pguidee.htm"&gt;&lt;SPAN style="COLOR: blue; mso-bidi-font-size: 11.0pt"&gt;http://www.fbi.gov/publications/pguide/pguidee.htm&lt;/SPAN&gt;&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Visit Microsoft's "Protect Your Family" site:&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;A href="http://www.microsoft.com/protect/family/default.mspx" mce_href="http://www.microsoft.com/protect/family/default.mspx"&gt;&lt;SPAN style="COLOR: blue; mso-bidi-font-size: 11.0pt"&gt;http://www.microsoft.com/protect/family/default.mspx&lt;/SPAN&gt;&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&amp;nbsp;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Review online safety tips from StaySafe.org:&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;A href="http://staysafe.org/" mce_href="http://staysafe.org/"&gt;&lt;SPAN style="COLOR: blue; mso-bidi-font-size: 11.0pt"&gt;http://staysafe.org&lt;/SPAN&gt;&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&amp;nbsp;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: Arial"&gt;4.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Arial"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Use Parental Controls &amp;amp; Internet filters&amp;nbsp;to protect your kids&amp;nbsp;from potentially harmful or unwanted Internet content.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;-Use built-in Windows Vista Parental Controls&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;-Use 3rd party&amp;nbsp;filters such as InternetSafety.com, CyberPatrol.com or NetNanny&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&amp;nbsp;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt; 
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: Arial"&gt;5.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Arial"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Don't talk to strangers&amp;nbsp;or give out personally identifiable information to anyone you don't trust:&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;-Parents often teach their kids to not talk to strangers in real life, and cyberspace should be no different!&lt;/SPAN&gt;&lt;/P&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&amp;nbsp;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: Arial"&gt;7.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Arial"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Patch! Patch! Patch!&amp;nbsp; Microsoft makes it easy to keep security patches up-to-date with Automatic Updates, WSUS&amp;nbsp;or Microsoft Updates&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;-But don't forget to keep all your 3rd party applications, antivirus and backup software up-to-date as well&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;-An un-patched app gives the bad guys an open door into your computer regardless of you antivirus solution or Windows updates.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&amp;nbsp;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: Arial"&gt;8.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Arial"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Backup your important files on a regular basis and keep those files in a separate location than your computer (in the car, at work etc...)&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;-You can burn important files to CD, use the built-in backup software, 3rd party backup software or use an online file service that you trust.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;-&lt;A title="Windows Live Folders" href="http://folders.live.com/" mce_href="http://folders.live.com/"&gt;&lt;SPAN style="COLOR: blue; mso-bidi-font-size: 11.0pt"&gt;Windows Live Folders&lt;/SPAN&gt;&lt;/A&gt; lets you have password protected storage on the Internet that you can secure or share with others.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;-Check it out - it’s FREE! - &lt;A href="http://folders.live.com/" mce_href="http://folders.live.com/"&gt;&lt;SPAN style="COLOR: blue; mso-bidi-font-size: 11.0pt"&gt;http://folders.live.com/&lt;/SPAN&gt;&lt;/A&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&amp;nbsp;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: Arial"&gt;9.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Arial"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Keep your antivirus signatures up-to-date.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;-but don't expect antivirus to protect you if you don't follow these other recommendations&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&amp;nbsp;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; TEXT-INDENT: -0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: Arial"&gt;10.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 7pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: Arial"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Don't click on e-mail attachments even from people you trust until you verify that the attachment is trustworthy and the user meant to send it.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;-Remember though, just because your friend clicked on the "Flying Pig" and laughed doesn't mean they were not secretly infected with a virus.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;-Verify the source of the attachment - where did they get it?&amp;nbsp; If you don't know the original source or author, please&amp;nbsp;be careful.&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormalCxSpMiddle style="MARGIN: 0in 0in 0pt 0.25in; LINE-HEIGHT: normal; mso-layout-grid-align: none; mso-add-space: auto"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&amp;nbsp;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Many of these processes are automatic and easy,&amp;nbsp;or can be with a little time invested up-front, but the return on investment is peace of mind.&lt;/SPAN&gt;&lt;SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Times New Roman','serif'; mso-fareast-font-family: 'Times New Roman'"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal; mso-layout-grid-align: none"&gt;&lt;SPAN style="FONT-SIZE: 10pt; FONT-FAMILY: 'Arial','sans-serif'; mso-fareast-font-family: 'Times New Roman'"&gt;Be responsible &amp;amp; take the time to protect your family &amp;amp; stay safe online!&lt;/SPAN&gt;&lt;/P&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://blogs.technet.com/aggbug.aspx?PostID=1544274" width="1" height="1"&gt;</description><category domain="http://blogs.technet.com/b/staysafe/archive/tags/hackers/">hackers</category></item></channel></rss>