Once again – it’s worth remembering that users, administrators, testers, and developers are probably the most critical security leak. As this article points out http://www.internetnews.com/security/article.php/3835011 real data are often being used in unsecure development environments, and often it operations (and in worst case a bunch of other people) will have access to all sort of critical data.
Just a reminder that sometimes the security design is – perhaps – over designed, and rightfully a larger efford should be spend on improving business procedures instead.
Secure the transport layer, encrypt the message, and keep it away from users
0 responses so far ↓
There are no comments yet...Kick things off by filling out the form below.