Category Archives: Least Privilege
Desktop Misadventures
Bradley Manning – the Private who’s accused of downloading 110,000 U.S. State Department cables to his PC, copying them to a removable drive and then passing the information to Wikileaks – has been in the news again this week as … Continue reading
Who’s in Charge of User Account Control?
Microsoft’s Security Intelligence Report (SIR) v10, published in May this year, revealed figures that show Windows 7 is the company’s most secure operating system, reporting that the OS suffered fewer security incidents per 1000 computers than any other supported version … Continue reading
Protecting Against Kernel-mode Rootkits with Avecto and McAfee
Kernel-mode rootkits install themselves deep inside the operating system. They often use cloaking techniques to hide themselves and other malware to prevent detection or removal. The introduction of kernel patch protection in 64-bit Windows made it more difficult for kernel-mode rootkits … Continue reading
Assigning admin privileges on Domain Controllers
Active Directory (AD) is the core of a Windows Server network and consists of a database that stores usernames and passwords, plus several technologies that work together to provide security and management services to clients and servers. Domain controllers (DCs) … Continue reading
Who Has Admin Rights?
Before implementing a least privilege desktop policy it is generally good practice to know who you are likely to affect. This is not an easy task if you do not already manage or track which users have previously been given … Continue reading
What’s the incentive to secure your desktop systems?
Desktop security may seem to have little to do with an organization’s profit and loss, share prices and overall bottom line, but going beyond antivirus protection can have a significant impact on productivity, total cost of ownership and IT support … Continue reading
Do Users Really Know Best?
The consumerisation of IT has become a fashionable catch phrase over the past few years as some companies choose to give employees the option to decide what hardware and software they use at work. Schemes have been set up, such … Continue reading
Signing policies in Privilege Guard 2.8
Privilege Guard 2.8 introduces the ability to digitally sign policies using a certificate from a PFX file. This ensures that the policies deployed to a client have been published by a trusted source and are genuine. A unique Object Identifier … Continue reading
Better Application Group Management in Privilege Guard 2.8
In version 2.8 of Privilege Guard we have revamped the application group management to include: – A new application groups view – A choice of application views – Inline filtering and highlighting of applications New Application Groups View You can … Continue reading
Privilege Guard 2.8 Anti-tamper Protection
Privilege Guard 2.8 is the first privilege management solution to introduce an intelligent anti-tamper mechanism that can protect the Privilege Guard software and configuration settings against modification from elevated processes, while still allowing the solution to be administered by true … Continue reading