Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Report: Too Much Cyber Security at CIA
Kevin Poulsen, SecurityFocus 2003-05-28

While other government agencies struggle with their cyber security practices, the Central Intelligence Agency apparently suffers from the opposite problem: too much security -- according to a recent study of the agency's use of information technology.

Comments Mode:
Report: Too Much Cyber Security at CIA 2003-05-29
Anonymous (1 replies)
Never Too Much Cyber Security at CIA 2003-06-02
Anonymous2
I agree. National security is too important to intoroduce a complex multi-tiered system, with each associated with different levels of risk. Better an arcane binary system with controls, than a multitiered dynamic that can't be effectively managed.

One last point "Internet Access at the Desktops" ?!! What were they thinking? Outbound port 80 is the biggest hole of them all. Hopefully they strip our all Active-X and JavaScript at the gateway.

Can anyone say "Browser based RDP over 443?"

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/5201/20280#20280
Report: Too Much Cyber Security at CIA 2003-05-29
fruid (1 replies)
Report: Too Much Cyber Security at CIA 2003-05-30
LumpyGames (at) hotmail (dot) com [email concealed]







 

Privacy Statement
Copyright 2009, SecurityFocus