Google's Unsigned APK Crackdown

I'm late to publicly comment on this hot topic (and do my best not to post "opinions" online in general!), but I thought I'd offer a personal story on Google's moves to required app developers provide personal ID to back the signing of all apps that run on Android (for those who…

Read more

Change Audit for Network Devices

I often post over on the Tripwire/Fortra bIog about the importance of monitoring, but don't typically talk about the "technical ins and outs" of how I approach and think about Change Audit so I'm hoping to start a series of posts about File Integrity Monitoring (FIM) aka Change…

Read more

Configuring IP360 Windows targets via group policy

Group Policy is the typical/preferred method of setting many of the requirements for Tripwire IP360 vulnerability scanning and whilst the official endpoint guide is helpful with identifying various settings, it can take time to map many of the settings to the specific GPO settin…

Read more