Robert Siciliano

Robert Siciliano Security Analyst at

Most Unwanted Identity Theft Criminals

Here is a tongue-in-cheek list of the most unwanted identity thieves, describing the various techniques thieves use to steal your information. It’s clever and, unfortunately, very real. Pauly the Pickpocket & Sally Sticky Fingers work as a team to lift wallets and mobile devices from pockets and purses, often in broad daylight. Sally creates a...

/security /regulation

Retired Member

Retired Member 

Have you looked under the virtual mat?

I wonder what the Japanese is for “when you are in a hole it’s usually a good time to stop digging?" I read the new Sony press release with some bemusement; the one with regard to the loss of 25 million further customer details from Sony Online Entertainment. The release had the following statement: Information from an outdated database

/security /regulation Information Security

Steve Dance

Steve Dance Managing Partner at RiskCentric

Information Overload

The CISI survey mentioned on this site yesterday "FSA paper trail hampering compliance activities" raises many issues. But first, congratulations to Julian Sampson for undertaking this service in the first place. It puts some firm data against all of the anecdotal evidence that many compliance departments are spending more time ensuring...


Roy McPherson

Roy McPherson 

Dirty Data

No not the title of a chapter in a John Le Carre book, nor an invitation to spice up my pc. But in a recent survey looking at impediments to accurate counterparty risk measurement (and management) the top answer was, dirty data. If you extend counterparty risk measurement to include cash and liquidity exposure I'd say you're beginning to see the t...

/regulation /wholesale

Retired Member

Retired Member 

Will Quantitative Easing Soothe the Capital Markets?

Someone recently asked how I feel about QE2 wrapping up at the end of June. This has been a big deal for a while, and I’d like to pose the question to you too. But first some contemporary context. People are still talking about Chairman of the Board of Governors of the Federal Reserve System Ben Bernanke’s historic and notable speech last week. Hi...


Robert Siciliano

Robert Siciliano Security Analyst at

My Top 5 Mobile Commerce Apps

The day when your wallet becomes a relic, like an 8-track tape, isn’t here quite yet. But we are getting close. Thinning out your wallet isn’t just nice for your pants pocket. It’s also a good way to minimize your risk for identity theft, should your wallet ever be lost or stolen. As long as you’re keeping your smartphone safe and secure, the follo...

/security /regulation

Keith Appleyard

Keith Appleyard IT Consultant at available for hire

How Security savvy are Sony?

Yesterday (Wed) we had Sony being not very re-assuring, saying "While there is no evidence that credit card data was taken at this time, we cannot rule out the possibility. If you have provided your credit card data through PlayStation Network or Qriocity, to be on the safe side we are advising you that your credit card number (excluding secu...

/security /regulation Whatever...

Retired Member

Retired Member 

Reset your password or the cat gets it

Today we gained further confirmation of details around the Sony Playstation network breach; millions of account names and personal details have been lost and potentially payment card details including the payment card number and Expiry dates too, but excluding the security code. The types of data rumoured to be lost include: names, addresses, e

/security /regulation Information Security

Retired Member

Retired Member 

Time to take control of our identities

As predictable that night follows day you can be sure that identity fraud is not going to go away and the latest data breach involving Sony PlayStation is a clear sign that fraudsters are as inventive and industrious as ever. Attacking Sony’s PlayStation Network, fraudsters are estimated to have obtained sensitive personal and financial data of ove...

/security /regulation Online Banking

Retired Member

Retired Member 

Plan, Do, Manage, Review, Cuthbert, Dibble and Grub

Security and Compliance is an ongoing process. Both in personal and corporate activities, it is worthwhile stepping through the simple four-step process to reduce the risk of compromise. Plan In the same way as when you buy a new house, you plan (at least in your head) to change the locks and possibly add locks to the windows, extend insurance to c...

/security /regulation Information Security

