{"id":462,"date":"2012-06-30T06:59:01","date_gmt":"2012-06-30T06:59:01","guid":{"rendered":"https:\/\/trouble.org\/?p=462"},"modified":"2012-07-01T04:26:42","modified_gmt":"2012-07-01T04:26:42","slug":"security-strikeout","status":"publish","type":"post","link":"https:\/\/trouble.org\/?p=462","title":{"rendered":"security strikeout"},"content":{"rendered":"<p>Everybody&#8217;s Talkin&#8217;&#8230; no one&#8217;s doing?<\/p>\n<p>Talking to a CSO of a fortune 500 company and a CSO of a bank&#8230; asked them if they ran scanners or vulnerability assessment tools on their home systems.<\/p>\n<p>No.  Of course no.  0-3.  And pretty much no one I know in the security profession does&#8230; it&#8217;s way too painful, way too hard, way too&#8230; much of a pain in the ass.  We talk the talk, but don&#8217;t walk the walk.<\/p>\n<p><P><\/p>\n<p>Jesus, what a fuckin&#8217; pain to run nessus, qualys, metasploit, you name your scanner.  Sure, maybe once.  It sort of works.  Then it&#8217;s your turn to decipher the cryptic outlook.  Medium vulnerability&#8230; hmm.  But over time&#8230; who really watches? What should I do?<\/p>\n<p>No one knows.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Everybody&#8217;s Talkin&#8217;&#8230; no one&#8217;s doing? Talking to a CSO of a fortune 500 company and a CSO of a bank&#8230; asked them if they ran scanners or vulnerability assessment tools on their home systems. No. Of course no. 0-3. And pretty much no one I know in the security profession does&#8230; it&#8217;s way too painful, [&hellip;]<\/p>\n","protected":false},"author":44,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[88,16,19,4,6],"tags":[],"class_list":["post-462","post","type-post","status-publish","format-standard","hentry","category-dinosaurs","category-people","category-philosophy","category-security","category-tech"],"_links":{"self":[{"href":"https:\/\/trouble.org\/index.php?rest_route=\/wp\/v2\/posts\/462","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/trouble.org\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/trouble.org\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/trouble.org\/index.php?rest_route=\/wp\/v2\/users\/44"}],"replies":[{"embeddable":true,"href":"https:\/\/trouble.org\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=462"}],"version-history":[{"count":2,"href":"https:\/\/trouble.org\/index.php?rest_route=\/wp\/v2\/posts\/462\/revisions"}],"predecessor-version":[{"id":464,"href":"https:\/\/trouble.org\/index.php?rest_route=\/wp\/v2\/posts\/462\/revisions\/464"}],"wp:attachment":[{"href":"https:\/\/trouble.org\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=462"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/trouble.org\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=462"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/trouble.org\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=462"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}