top of page
SecuSolutions Blog


The IT Security Budget Tug of War... and the Consequences of Not Having One
For as long as I have been in security, there’s been one reaction after a company gets breached, and that is they suddenly see the value in security and a budget to support it, magically appears. Sadly, this is all too common with companies that consider security an afterthought, or those that place it at the bottom of their IT budget. Security is like mandatory insurance such as automotive insurance, or other insurances such as theft, vandalism, natural disasters and even li
jimkootnekoff
4 min read


Going Phishing? Use the Right Bait!
### Why Phishing? Hackers have been phishing for information since the late 90’s, and the number of attacks has increased, for good reason: phishing attacks work! Since the dawn of time, humans have been the cause and effect of all things good and bad. They are, in terms of security, the weakest link in the security chain. Hackers know this and that is why around 90% of cyber-attacks begin with a phishing attack. There are many reasons for this. It’s likely that the biggest r
jimkootnekoff
5 min read


Complacency and its Role in "Insecurity"
*Complacency* is a feeling of quiet pleasure or security, often while unaware of some potential danger, defect, or the like; self-satisfaction or smug satisfaction with an existing situation, condition. Complacency to a bad actor is like prey for a predator. It is what most hackers count on when singling out a victim. They know that most companies only cover the basics, or are only interested in checking a box. They also know that many companies rely heavily on technology to
jimkootnekoff
2 min read


Penetration Testing - The Good The Bad and The Ugly
As most know, the SecuSolutions team are strong advocates of penetration testing and red teaming. It’s a sizable chunk of our business and growing month over month thanks to the referrals and repeat business we are enjoying; however, it’s not always smooth sailing. ### The Good Depending on which side of the aisle you’re standing on, penetration testing can be a blessing or a curse. If you’re on our side, you view it as a valuable experience that helps the customer understand
jimkootnekoff
3 min read


A Vulnerability Assessment is NOT a Penetration Test
A Vulnerability Assessment is NOT a Penetration test. Don’t be misled, it could be a costly mistake. Before starting my first security company in Japan in 1999, a security administration tool called Satan was released. This appears to be the first assessment tool made available to scan networks and identify possible vulnerabilities. Shortly after, the Common Vulnerabilities and Exposures (CVE) data base was made available. Together these platforms paved the way for other comp
jimkootnekoff
3 min read
Don’t Drink the Marketing Cool Aid
Marketing is a masterful art. It works on each and everyone of us in different ways. It could be an advertisement on a car you’ve been dreaming of, or it could be a new gadget you think you may need. It might be a motorcycle or a new RV but whatever it is that got you to buy, clever marketing has played a role in it. You may be thinking, what does this have to do with work or my profession. How does marketing affect me and what’s this got to do with security? It affects you t
jimkootnekoff
3 min read
Introducing your Weakest Security Link
Isn’t it interesting that despite all the statistics that suggest humans are the weakest security link, many organizations turn a blind eye to the importance of providing their staff with information security (InfoSec) awareness security training or the tools to help them defend the corporation they work for? Many of the corporations that SecuSolutions Ltd. serves have nothing in place. No policy, no rules …no guidance. This is alarming since these corporations are of signifi
jimkootnekoff
2 min read
bottom of page

