<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>An Information Security Place &#187; Physical Security</title>
	<atom:link href="http://infosecplace.com/blog/category/physical-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://infosecplace.com/blog</link>
	<description>Commentary on the State of Information Security</description>
	<lastBuildDate>Wed, 23 Jun 2010 11:19:44 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>TV / Movies and security</title>
		<link>http://infosecplace.com/blog/2006/10/23/tv-movies-and-security/</link>
		<comments>http://infosecplace.com/blog/2006/10/23/tv-movies-and-security/#comments</comments>
		<pubDate>Tue, 24 Oct 2006 02:42:29 +0000</pubDate>
		<dc:creator>Michael Farnum</dc:creator>
				<category><![CDATA[Crime]]></category>
		<category><![CDATA[Defense in Depth]]></category>
		<category><![CDATA[Physical Security]]></category>
		<category><![CDATA[Rant]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Sheesh]]></category>

		<guid isPermaLink="false">http://infosecplace.com/blog/2006/10/23/tv-movies-and-security/</guid>
		<description><![CDATA[I&#8217;ll be the first one that says TV shows and movies are hardly based on reality.Â  But when they screw up something that is near and dear to me, I get very upset.Â 
For instance, I was in the Army and Army National Guard for over 7 years.Â  Though I was never a career soldier, I [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;ll be the first one that says TV shows and movies are hardly based on reality.Â  But when they screw up something that is near and dear to me, I get very upset.Â </p>
<p>For instance, I was in the Army and Army National Guard for over 7 years.Â  Though I was never a career soldier, I still took it seriously, and I still do today.Â  Maybe too seriously.Â  I get very upset when I see a TV show or a movie that screws up things like rank insignia (Army sergeant rank on upside down in some sitcom I watched) or basic military rules (you do NOT salute indoors unless you are reporting to an officer &#8211; that mistake is in too many military movies).</p>
<p>This feeling also bleeds over big time into my chosen profession of information security.Â Â There is aÂ new show on NBC called <a href="http://www.nbc.com/Kidnapped/" target="_blank">Kidnapped</a>Â that I have been watching and enjoying for the last few weeks.Â  Basically, it is about a rich family&#8217;s son getting kidnapped and the family trying to get him back.Â  There are all kinds of twists and turns in the plot.Â  The dad used to be into some bad stuff, so it seems to revolve around someone getting back at him or trying to get some stuff from him.Â </p>
<p>Anyway, last week the family&#8217;sÂ hired gun (ex-military, police dude, etc.) gets asked by the FBIÂ for help.Â  They want him toÂ apply for a job withÂ a civilian-run military company (basically, mercenaries) that supposedly has info on some people they think are involved in the kidnapping.Â  The guy goes through some weird psych-interview, then he is placed in front on some computer by himself that has a program running with pictures flashing.Â  The guy looks around, then easily opens some access panel to the PC and inserts a &#8220;remote control&#8221; device in some very conveniently-placed access port.Â  Of course, I am thinking, &#8220;where are the cameras that should be watching this guy?&#8221;Â </p>
<p>Then, as the agent outside in the FBI van (real unique, right?) takes over the running of the program, he runs down the hall, guided by the blue prints of the inside of the building (which that type of compnay probably just publishes on the Internet) and strolls into the server room with no challenge and no lock on any door that I can see.Â  There are racks of servers, switches, etc.Â Â  Then he sticks another device in the &#8220;mainframe&#8221;, and away they go.Â </p>
<p>He does get caught, but it was only because another agent ran in the building and called a security alert in a ploy to get the main bad guy to start erasing sensitive files.Â  They capture the screens (with all pertinent information on the first screen &#8211; nice, huh?), thus saving them the effort of searching through records.</p>
<p>Yea, ok, right.Â  I know it probably shouldn&#8217;t bother me, but that just pisses me off.Â  At least <strong>TRY</strong> to make it somewhat real.Â Â I think even a layperson without security experience would probably be thinking, &#8220;where&#8217;s the security here?&#8221;</p>
<p>Sheesh.</p>
<p>Vet</p>
]]></content:encoded>
			<wfw:commentRss>http://infosecplace.com/blog/2006/10/23/tv-movies-and-security/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Bump key video</title>
		<link>http://infosecplace.com/blog/2006/08/16/bump-key-video/</link>
		<comments>http://infosecplace.com/blog/2006/08/16/bump-key-video/#comments</comments>
		<pubDate>Wed, 16 Aug 2006 12:01:10 +0000</pubDate>
		<dc:creator>Michael Farnum</dc:creator>
				<category><![CDATA[Crime]]></category>
		<category><![CDATA[Defense in Depth]]></category>
		<category><![CDATA[Physical Security]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://infosecplace.com/blog/2006/08/16/bump-key-video/</guid>
		<description><![CDATA[Watch the video below.Â  I have heard and read some stuff about this, but this video really tells the tale.Â  It seems professionally done.Â  The people all seem very genuine and not actors, or they are very good actors.
Just a few of my thoughts on the issue:

This is from a foreign country, so I don&#8217;t [...]]]></description>
			<content:encoded><![CDATA[<p>Watch the video below.Â  I have heard and read some stuff about this, but this video really tells the tale.Â  It seems professionally done.Â  The people all seem very genuine and not actors, or they are very good actors.</p>
<p>Just a few of my thoughts on the issue:</p>
<ul>
<li>This is from a foreign country, so I don&#8217;t know if the insurance issues are the same here in the states, but basically the concern was that if there are no signs of burglary, then your insurance company won&#8217;t pay a claim.</li>
<li>The claim was that this was the end of security for physical locks.Â  I think this is a little bit of the ol&#8217; FUD game, but hearing it from an experienced (30 years) locksmith makes you think a little bit.</li>
<li>It brings out the need for layers in security.Â  An alarm system is a fairly good layer, even in houses.Â  At least it will deter some low-level crooks, which are your typical crooks in home burglaries.</li>
<li>When it comes to businesses, they will need to start looking into alarms and better locks (keypads, etc.)</li>
<li>And the overall lesson, no matter what you do, if someone is determined to break in, they probably will.Â  All you can do is your best.</li>
</ul>
<p>[gv data="7Uv45y6vkcQ"][/gv]</p>
]]></content:encoded>
			<wfw:commentRss>http://infosecplace.com/blog/2006/08/16/bump-key-video/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
	</channel>
</rss>
