<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments for noFUD - No Fear Uncertainty or Doubt</title>
	<atom:link href="http://nofud.org/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://nofud.org</link>
	<description>Information security analysis by Akshay Aggarwal</description>
	<lastBuildDate>Wed, 23 Feb 2011 20:46:58 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
	<item>
		<title>Comment on Two Security Startups To Keep An Eye On by News From the Chicagoland Entrepreneurial Center :: TINC Magazine</title>
		<link>http://nofud.org/2011/02/08/two-security-startups-to-keep-an-eye-on/#comment-207</link>
		<dc:creator><![CDATA[News From the Chicagoland Entrepreneurial Center :: TINC Magazine]]></dc:creator>
		<pubDate>Wed, 23 Feb 2011 20:46:58 +0000</pubDate>
		<guid isPermaLink="false">https://nofud.wordpress.com/?p=109#comment-207</guid>
		<description><![CDATA[[...] announcing the close of their $1 million Series A round on 2/4, and was featured on the noFud blog highlighting security startups to watch on [...]]]></description>
		<content:encoded><![CDATA[<p>[...] announcing the close of their $1 million Series A round on 2/4, and was featured on the noFud blog highlighting security startups to watch on [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Secure your Facebook password by Secure your Facebook password &#187; Akshay Aggarwal</title>
		<link>http://nofud.org/2011/01/28/secure-your-facebook-password/#comment-199</link>
		<dc:creator><![CDATA[Secure your Facebook password &#187; Akshay Aggarwal]]></dc:creator>
		<pubDate>Fri, 28 Jan 2011 21:08:55 +0000</pubDate>
		<guid isPermaLink="false">https://nofud.wordpress.com/2011/01/28/secure-your-facebook-password/#comment-199</guid>
		<description><![CDATA[[...] Read more…    Posted by Akshay Aggarwal at 9:08 pm [...]]]></description>
		<content:encoded><![CDATA[<p>[...] Read more…    Posted by Akshay Aggarwal at 9:08 pm [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Advanced Persistent Threat (APT): Real or just hype? by akshay aggarwal</title>
		<link>http://nofud.org/2011/01/11/advanced-persistent-threat-apt-real-or-just-hype/#comment-198</link>
		<dc:creator><![CDATA[akshay aggarwal]]></dc:creator>
		<pubDate>Wed, 26 Jan 2011 08:25:03 +0000</pubDate>
		<guid isPermaLink="false">https://nofud.wordpress.com/2011/01/11/advanced-persistent-threat-apt-real-or-just-hype/#comment-198</guid>
		<description><![CDATA[They represented major financial, energy, technology and manufacturing customers.]]></description>
		<content:encoded><![CDATA[<p>They represented major financial, energy, technology and manufacturing customers.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Advanced Persistent Threat (APT): Real or just hype? by Chris</title>
		<link>http://nofud.org/2011/01/11/advanced-persistent-threat-apt-real-or-just-hype/#comment-190</link>
		<dc:creator><![CDATA[Chris]]></dc:creator>
		<pubDate>Sat, 15 Jan 2011 15:45:58 +0000</pubDate>
		<guid isPermaLink="false">https://nofud.wordpress.com/2011/01/11/advanced-persistent-threat-apt-real-or-just-hype/#comment-190</guid>
		<description><![CDATA[Which industries did those 20 CSOs represent?]]></description>
		<content:encoded><![CDATA[<p>Which industries did those 20 CSOs represent?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on The McAfee Way: Don&#8217;t follow it!! by Lucy</title>
		<link>http://nofud.org/2010/04/25/the-mcafee-way-dont-follow-it/#comment-123</link>
		<dc:creator><![CDATA[Lucy]]></dc:creator>
		<pubDate>Tue, 22 Jun 2010 15:33:42 +0000</pubDate>
		<guid isPermaLink="false">https://nofud.wordpress.com/2010/04/25/the-mcafee-way-dont-follow-it/#comment-123</guid>
		<description><![CDATA[I am part of a company that was barely effected by the false positive fiasco and comments and reactions like yours distress me. Why is no responsibility placed onto the IT teams in place at the companies who are not evaluating prior to pushing out updates??? There is a reason Evaluation and Production are two separate locations. If everyone just assumed that everything produced is 100% and nothing can go wrong we would have no need for warranties.  Evaluate THEN Replicate.]]></description>
		<content:encoded><![CDATA[<p>I am part of a company that was barely effected by the false positive fiasco and comments and reactions like yours distress me. Why is no responsibility placed onto the IT teams in place at the companies who are not evaluating prior to pushing out updates??? There is a reason Evaluation and Production are two separate locations. If everyone just assumed that everything produced is 100% and nothing can go wrong we would have no need for warranties.  Evaluate THEN Replicate.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Baking Security In: A Comic Strip View of SDL by Kurt Mills</title>
		<link>http://nofud.org/2009/02/19/baking-security-in-a-comic-strip-view-of-sdl/#comment-98</link>
		<dc:creator><![CDATA[Kurt Mills]]></dc:creator>
		<pubDate>Fri, 24 Apr 2009 16:17:30 +0000</pubDate>
		<guid isPermaLink="false">http://nofud.wordpress.com/2009/02/19/baking-security-in-a-comic-strip-view-of-sdl/#comment-98</guid>
		<description><![CDATA[Checkout all the strips here. 

http://www.microsoft.com/security/bakingsecurityin/strips.htm]]></description>
		<content:encoded><![CDATA[<p>Checkout all the strips here. </p>
<p><a href="http://www.microsoft.com/security/bakingsecurityin/strips.htm" rel="nofollow">http://www.microsoft.com/security/bakingsecurityin/strips.htm</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Shrinking Budgets: Application Security Tools vs Process Tradeoff by Shrinking Budgets: Application Security Tools vs Process Tradeoff &#124; Coded Style</title>
		<link>http://nofud.org/2010/05/10/shrinking-budgets-application-security-tools-vs-process-tradeoff/#comment-97</link>
		<dc:creator><![CDATA[Shrinking Budgets: Application Security Tools vs Process Tradeoff &#124; Coded Style]]></dc:creator>
		<pubDate>Tue, 21 Apr 2009 18:54:17 +0000</pubDate>
		<guid isPermaLink="false">http://nofud.wordpress.com/2009/04/10/shrinking-budgets-application-security-tools-vs-process-tradeoff/#comment-97</guid>
		<description><![CDATA[[...] Unlike most managers, Alok reached out for advice. Read more… [...]]]></description>
		<content:encoded><![CDATA[<p>[...] Unlike most managers, Alok reached out for advice. Read more… [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Akshay’s Uncertainty Principle: Observing Some Metrics Changes Them by Topics about Economy » Archive » Akshay’s Uncertainty Principle: Observing Some Metrics Changes Them</title>
		<link>http://nofud.org/2010/09/24/akshays-uncertainty-principle-observing-some-metrics-changes-them/#comment-87</link>
		<dc:creator><![CDATA[Topics about Economy » Archive » Akshay’s Uncertainty Principle: Observing Some Metrics Changes Them]]></dc:creator>
		<pubDate>Tue, 24 Mar 2009 18:06:32 +0000</pubDate>
		<guid isPermaLink="false">http://nofud.wordpress.com/2009/03/24/akshays-uncertainty-principle-observing-some-metrics-changes-them/#comment-87</guid>
		<description><![CDATA[[...] noFUD - No Fear Uncertainty or Doubt placed an observative post today on Akshay&#226; [...]]]></description>
		<content:encoded><![CDATA[<p>[...] noFUD &#8211; No Fear Uncertainty or Doubt placed an observative post today on Akshay&acirc; [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Baking Security In: A Comic Strip View of SDL by Abby</title>
		<link>http://nofud.org/2009/02/19/baking-security-in-a-comic-strip-view-of-sdl/#comment-86</link>
		<dc:creator><![CDATA[Abby]]></dc:creator>
		<pubDate>Tue, 24 Mar 2009 05:35:59 +0000</pubDate>
		<guid isPermaLink="false">http://nofud.wordpress.com/2009/02/19/baking-security-in-a-comic-strip-view-of-sdl/#comment-86</guid>
		<description><![CDATA[Its interesting to see how large corporations try to break down tough messages like security into small bite size pieces.]]></description>
		<content:encoded><![CDATA[<p>Its interesting to see how large corporations try to break down tough messages like security into small bite size pieces.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Application Security Development Lifecycle 5A: Is Threat Modeling Right For You? by Phil Agcaoili</title>
		<link>http://nofud.org/2008/06/14/application-security-development-lifecycle-5a-is-threat-modeling-right-for-you/#comment-79</link>
		<dc:creator><![CDATA[Phil Agcaoili]]></dc:creator>
		<pubDate>Mon, 09 Mar 2009 06:57:13 +0000</pubDate>
		<guid isPermaLink="false">http://nofud.wordpress.com/2008/06/14/application-security-development-lifecycle-5a-is-threat-modeling-right-for-you/#comment-79</guid>
		<description><![CDATA[Hey Akshay.

What&#039;s interesting for us is where Threat Modeling worked and did not work.  

We struggled to show success and ROSI for IT engagements, only obtaining 1-2 serious architectural and/or approach flaws using Threat Modeling. The environment is much more stable and there are more knowns, so TM seemed too trivial for some of our IT dev teams.

For our Product development and Software as a Service offerings (SaaS or Cloud Computing), Threat Modeling is at the core of what we do to ensure sound architecture and fundamentals to each of these areas.

Glad to see the tool is updated as well. We have been plodding along using Word/Visio templates for our Threat Models and hoping the tool works better for us this go around.

Thanks,

Phil Agcaoili]]></description>
		<content:encoded><![CDATA[<p>Hey Akshay.</p>
<p>What&#8217;s interesting for us is where Threat Modeling worked and did not work.  </p>
<p>We struggled to show success and ROSI for IT engagements, only obtaining 1-2 serious architectural and/or approach flaws using Threat Modeling. The environment is much more stable and there are more knowns, so TM seemed too trivial for some of our IT dev teams.</p>
<p>For our Product development and Software as a Service offerings (SaaS or Cloud Computing), Threat Modeling is at the core of what we do to ensure sound architecture and fundamentals to each of these areas.</p>
<p>Glad to see the tool is updated as well. We have been plodding along using Word/Visio templates for our Threat Models and hoping the tool works better for us this go around.</p>
<p>Thanks,</p>
<p>Phil Agcaoili</p>
]]></content:encoded>
	</item>
</channel>
</rss>

