FAQ Group: Compliance
-
Mandos Limitations
Application Whitelisting with Mandos is an effective way to prevent unwanted applications from executing. But it must be made clear that there are limitations to what the Application Whitelister can do. This section explains some limitations. Mandos blocks execution (execve() and variants). Mandos doesn’t block dynamic libraries loaded with dlopen(), libraries on disk that have…
-
Which Frameworks Require Restricting Access to Administrators
Australian Cyber Security Centre (ACSC) Essential Eight: Part of the Essential Eight framework focuses on limiting administrative privileges and restricting internet access for accounts with administrative permissions. This is to prevent attackers from using admin accounts to download malware or communicate with command-and-control servers. NIST Cybersecurity Framework (CSF): NIST Special Publication 800-53 (Security and Privacy…
-
Which Frameworks Require Application Whitelisting
Australian Cyber Security Centre (ACSC) Essential Eight: The Essential Eight recommends application whitelisting as one of its top strategies for mitigating cybersecurity incidents. It specifies whitelisting of applications for all servers and workstations to prevent the execution of unauthorized software, which reduces the risk of malware attacks. NIST Cybersecurity Framework (CSF): Promote practices like application…
-
What do we mean by Compliance
When working in certain industries like Defence, Finance, and Governments, there’s often rules that your business must adhere to in order to be considered for contacts. These compliance rules are generally more difficult to achieve the higher the sensitivity of the work being sought. Using Australia as an example, for a business to be considered…
-
What we offer & don’t offer
Our tools are focused on simplifying the path to compliance. We want your journey to be as painless as possible. We aim to make the tools simple and quick to install and to maintain, and with a licensing model that makes sense. We don’t suggest for a moment that our tools (by themselves) will make…