In my presentation I shared the principles and practical experiences of cyber warfare with the audience. All of this is to avoid tabloids, and to highlight the approach of military science.
The sudden proliferation of smart phones are a serious challenge for professionals responsible to the regulation and control of information security all over the world. In my lecture I reviewed the recommendations of ISACA in this area, and their extent of usability in practice. I gave an overview of audit support functionality of the market-leading solutions, and analyzed to what extent they support the implementation of the principles laid down by the ISACA.
A short discussion about cyber-terrorism and hacktivism and their relationship. In the presentation I analyzed the potential threat of cyberterror in Hungary.
This presentation discusses how security can be built into the development life-cycle during e-government application development, and what efforts are needed to enforce this.
Careful testing is required to detect programming errors. However, while functional and stress tests have sophisticated methodology, procedures for detecting security errors were established in the last few years. The study aims to present the relevant standards and recommendations that help the developers of e-government systems to filter the most important security errors of web applications in a systematic manner. Introducing the wide range of vulnerability assessment methodologies and the Common Criteria intrusion testing requirements will help establishing the required depth of control. Our aim is to compile a security test standard based on common errors which is customizable for any internet application and helps reducing the attack surface of the e-government environment.