{"id":51,"date":"2006-05-23T10:19:03","date_gmt":"2006-05-23T15:19:03","guid":{"rendered":"http:\/\/raffy.ch\/blog\/?p=51"},"modified":"2006-05-23T10:19:03","modified_gmt":"2006-05-23T15:19:03","slug":"insider-threat-issa-article","status":"publish","type":"post","link":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/","title":{"rendered":"Insider Threat &#8211; ISSA Article"},"content":{"rendered":"<p>I haven&#8217;t done any of these reviews in a while. I guess I haven&#8217;t been travelling much lately. Anyways. I came accross this article on <b>Insider Threat<\/b> by Ronald Mendell. I am not sure the author really understands the insider threat problem. Let me give you my perspective:<\/p>\n<p>The author suggests that the primary line of defense against insider threat is using countermeasures based on specific responses to particular threats. That&#8217;s a mouth-full, isn&#8217;t it? He continues by saying that you should follow a recognized standard like ISO 17799 or a checklist to identify needed safeguards. Well, first of all, you can follow a lot of checklists and implement a security program based on ISO 17799 and still have tons of insider problems. Insiders do not use common attack vectors that can be revealed with following standard approached. That&#8217;s the core problem! [Note that I am not saying that you shouldn&#8217;t use a checklist, but it does not help much against your insider problem!]<\/p>\n<p>Well, I would be a bad commentator if I was not offering another approach. If the author spent some time reading research in this area, he would have found a study by Mitre which suggests that most of the insiders can be detected while they do reconnaissance! Think about it. Someone who wants to abuse his privileges is not going to sound all the bells and whistles of your security controls, but he might go off and do some reconnaissance or start behaving abnormal! I am not going into details on how you could actually monitor these things, but you can imagine how (just look at the company I work for \ud83d\ude09<\/p>\n<p>I also don&#8217;t see the point the author tries to make with his very lengthy bat-script example. He describes how someone builds a bat script on windows to collect certain information via different commands, such as the net command. He claims that the problem is that people can build bat scripts on their boxes. That&#8217;s completely wrong. The problem is that this user had privileges to execute the net command. <\/p>\n<p>The article continues with giving a checklist of things to do to detect insiders. Actually it&#8217;s more a checklist that would prevent insiders from being successful. I couldn&#8217;t disagree more with the checklist. The things mentioned are good security practices, but do not help at all in preventing insider abuse. For example, the author urges people to block null sessions by filtering port 139\/tcp and 445\/udp traffic. First of all, it is exactly the other way around: 139\/udp and 445\/tcp. Second, where do you filter that? Between zones? That&#8217;s not going to help. If I am on the same LAN, I can still access other machines. If you turn it off on the end-systems, you won&#8217;t be able to share files among machines anymore. The only thing you really want to do is disabling anonymous connections and disable all default accounts, etc. And why would having a UNIX shell (which by the way is not how I would call a cygwin session) on a Windows machine is bad and needs to be turned off?! That&#8217;s hardly the problem. Does the author actually know what a UNIX shell is and what that means on a Windows box? Just because I might be able to write more powerful shell scripts (Is this even true? I bet bat scripts are pretty powerful too!), but that does not give me more control over what I am after&#8230;<\/p>\n<p>Then again, the author mentions that users learn the vulnerabilities of the network or system and exploit them. Well, that might be a problem, but barely one that pertains to the insider threat problem! insiders don&#8217;t need vulnerabilities. Or do you think the CFO is going to exploit a vulnerability to get to confidential financial records? No dude, he already has legitimate access to them. The problem is if the CFO starts printing these things and takes them places! That&#8217;s what you are after! You gotta start to think differently!<\/p>\n<p>Think profiling, think abnormal behavior, think watch-lists, think roles. That&#8217;s all I have to say!<\/p>\n","protected":false},"excerpt":{"rendered":"<p>I haven&#8217;t done any of these reviews in a while. I guess I haven&#8217;t been travelling much lately. Anyways. I came accross this article on Insider Threat by Ronald Mendell. I am not sure the author really understands the insider threat problem. Let me give you my perspective: The author suggests that the primary line [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[9],"tags":[],"class_list":["post-51","post","type-post","status-publish","format-standard","hentry","category-security-article-reviews"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.0.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"I haven&#039;t done any of these reviews in a while. I guess I haven&#039;t been travelling much lately. Anyways. I came accross this article on Insider Threat by Ronald Mendell. I am not sure the author really understands the insider threat problem. Let me give you my perspective: The author suggests that the primary line\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Raffael Marty\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.0.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"en_US\" \/>\n\t\t<meta property=\"og:site_name\" content=\"Future of Tech and Security: Strategy &amp; Innovation with Raffy \u2013 Insights at the intersection of cybersecurity, strategy, and innovation.\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"Insider Threat \u2013 ISSA Article \u2013 Future of Tech and Security: Strategy &amp; Innovation with Raffy\" \/>\n\t\t<meta property=\"og:description\" content=\"I haven&#039;t done any of these reviews in a while. I guess I haven&#039;t been travelling much lately. Anyways. I came accross this article on Insider Threat by Ronald Mendell. I am not sure the author really understands the insider threat problem. Let me give you my perspective: The author suggests that the primary line\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/raffy.ch\/blog\/wp-content\/uploads\/2025\/09\/ogimage.png\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/raffy.ch\/blog\/wp-content\/uploads\/2025\/09\/ogimage.png\" \/>\n\t\t<meta property=\"og:image:width\" content=\"512\" \/>\n\t\t<meta property=\"og:image:height\" content=\"512\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2006-05-23T15:19:03+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2006-05-23T15:19:03+00:00\" \/>\n\t\t<meta name=\"twitter:card\" content=\"summary\" \/>\n\t\t<meta name=\"twitter:site\" content=\"@raffaelmarty\" \/>\n\t\t<meta name=\"twitter:title\" content=\"Insider Threat \u2013 ISSA Article \u2013 Future of Tech and Security: Strategy &amp; Innovation with Raffy\" \/>\n\t\t<meta name=\"twitter:description\" content=\"I haven&#039;t done any of these reviews in a while. I guess I haven&#039;t been travelling much lately. Anyways. I came accross this article on Insider Threat by Ronald Mendell. I am not sure the author really understands the insider threat problem. Let me give you my perspective: The author suggests that the primary line\" \/>\n\t\t<meta name=\"twitter:creator\" content=\"@raffaelmarty\" \/>\n\t\t<meta name=\"twitter:image\" content=\"https:\/\/raffy.ch\/blog\/wp-content\/uploads\/2025\/09\/ogimage.png\" \/>\n\t\t<script type=\"application\/ld+json\" class=\"aioseo-schema\">\n\t\t\t{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"BlogPosting\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/2006\\\/05\\\/23\\\/insider-threat-issa-article\\\/#blogposting\",\"name\":\"Insider Threat \\u2013 ISSA Article \\u2013 Future of Tech and Security: Strategy & Innovation with Raffy\",\"headline\":\"Insider Threat &#8211; ISSA Article\",\"author\":{\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/author\\\/raffy\\\/#author\"},\"publisher\":{\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/#person\"},\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/2006\\\/05\\\/23\\\/insider-threat-issa-article\\\/#articleImage\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/1a1923877d9dbd00d99847074d62faab586cce0a9ee6a4c85e8bb7c46d7418ac?s=96&d=mm&r=g\",\"width\":96,\"height\":96,\"caption\":\"Raffael Marty\"},\"datePublished\":\"2006-05-23T10:19:03-06:00\",\"dateModified\":\"2006-05-23T10:19:03-06:00\",\"inLanguage\":\"en-US\",\"commentCount\":2,\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/2006\\\/05\\\/23\\\/insider-threat-issa-article\\\/#webpage\"},\"isPartOf\":{\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/2006\\\/05\\\/23\\\/insider-threat-issa-article\\\/#webpage\"},\"articleSection\":\"Security Article Reviews\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/2006\\\/05\\\/23\\\/insider-threat-issa-article\\\/#breadcrumblist\",\"itemListElement\":[{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog#listItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/raffy.ch\\\/blog\",\"nextItem\":{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/category\\\/security-article-reviews\\\/#listItem\",\"name\":\"Security Article Reviews\"}},{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/category\\\/security-article-reviews\\\/#listItem\",\"position\":2,\"name\":\"Security Article Reviews\",\"item\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/category\\\/security-article-reviews\\\/\",\"nextItem\":{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/2006\\\/05\\\/23\\\/insider-threat-issa-article\\\/#listItem\",\"name\":\"Insider Threat &#8211; ISSA Article\"},\"previousItem\":{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog#listItem\",\"name\":\"Home\"}},{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/2006\\\/05\\\/23\\\/insider-threat-issa-article\\\/#listItem\",\"position\":3,\"name\":\"Insider Threat &#8211; ISSA Article\",\"previousItem\":{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/category\\\/security-article-reviews\\\/#listItem\",\"name\":\"Security Article Reviews\"}}]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/#person\",\"name\":\"Raffael Marty\",\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/2006\\\/05\\\/23\\\/insider-threat-issa-article\\\/#personImage\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/1a1923877d9dbd00d99847074d62faab586cce0a9ee6a4c85e8bb7c46d7418ac?s=96&d=mm&r=g\",\"width\":96,\"height\":96,\"caption\":\"Raffael Marty\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/author\\\/raffy\\\/#author\",\"url\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/author\\\/raffy\\\/\",\"name\":\"Raffael Marty\",\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/2006\\\/05\\\/23\\\/insider-threat-issa-article\\\/#authorImage\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/1a1923877d9dbd00d99847074d62faab586cce0a9ee6a4c85e8bb7c46d7418ac?s=96&d=mm&r=g\",\"width\":96,\"height\":96,\"caption\":\"Raffael Marty\"}},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/2006\\\/05\\\/23\\\/insider-threat-issa-article\\\/#webpage\",\"url\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/2006\\\/05\\\/23\\\/insider-threat-issa-article\\\/\",\"name\":\"Insider Threat \\u2013 ISSA Article \\u2013 Future of Tech and Security: Strategy & Innovation with Raffy\",\"description\":\"I haven't done any of these reviews in a while. I guess I haven't been travelling much lately. Anyways. I came accross this article on Insider Threat by Ronald Mendell. I am not sure the author really understands the insider threat problem. Let me give you my perspective: The author suggests that the primary line\",\"inLanguage\":\"en-US\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/#website\"},\"breadcrumb\":{\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/2006\\\/05\\\/23\\\/insider-threat-issa-article\\\/#breadcrumblist\"},\"author\":{\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/author\\\/raffy\\\/#author\"},\"creator\":{\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/author\\\/raffy\\\/#author\"},\"datePublished\":\"2006-05-23T10:19:03-06:00\",\"dateModified\":\"2006-05-23T10:19:03-06:00\"},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/\",\"name\":\"Cyber Security - Strategy and Innovation\",\"description\":\"Insights at the intersection of cybersecurity, strategy, and innovation.\",\"inLanguage\":\"en-US\",\"publisher\":{\"@id\":\"https:\\\/\\\/raffy.ch\\\/blog\\\/#person\"}}]}\n\t\t<\/script>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"Insider Threat \u2013 ISSA Article \u2013 Future of Tech and Security: Strategy & Innovation with Raffy","description":"I haven't done any of these reviews in a while. I guess I haven't been travelling much lately. Anyways. I came accross this article on Insider Threat by Ronald Mendell. I am not sure the author really understands the insider threat problem. Let me give you my perspective: The author suggests that the primary line","canonical_url":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"BlogPosting","@id":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/#blogposting","name":"Insider Threat \u2013 ISSA Article \u2013 Future of Tech and Security: Strategy & Innovation with Raffy","headline":"Insider Threat &#8211; ISSA Article","author":{"@id":"https:\/\/raffy.ch\/blog\/author\/raffy\/#author"},"publisher":{"@id":"https:\/\/raffy.ch\/blog\/#person"},"image":{"@type":"ImageObject","@id":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/#articleImage","url":"https:\/\/secure.gravatar.com\/avatar\/1a1923877d9dbd00d99847074d62faab586cce0a9ee6a4c85e8bb7c46d7418ac?s=96&d=mm&r=g","width":96,"height":96,"caption":"Raffael Marty"},"datePublished":"2006-05-23T10:19:03-06:00","dateModified":"2006-05-23T10:19:03-06:00","inLanguage":"en-US","commentCount":2,"mainEntityOfPage":{"@id":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/#webpage"},"isPartOf":{"@id":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/#webpage"},"articleSection":"Security Article Reviews"},{"@type":"BreadcrumbList","@id":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/#breadcrumblist","itemListElement":[{"@type":"ListItem","@id":"https:\/\/raffy.ch\/blog#listItem","position":1,"name":"Home","item":"https:\/\/raffy.ch\/blog","nextItem":{"@type":"ListItem","@id":"https:\/\/raffy.ch\/blog\/category\/security-article-reviews\/#listItem","name":"Security Article Reviews"}},{"@type":"ListItem","@id":"https:\/\/raffy.ch\/blog\/category\/security-article-reviews\/#listItem","position":2,"name":"Security Article Reviews","item":"https:\/\/raffy.ch\/blog\/category\/security-article-reviews\/","nextItem":{"@type":"ListItem","@id":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/#listItem","name":"Insider Threat &#8211; ISSA Article"},"previousItem":{"@type":"ListItem","@id":"https:\/\/raffy.ch\/blog#listItem","name":"Home"}},{"@type":"ListItem","@id":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/#listItem","position":3,"name":"Insider Threat &#8211; ISSA Article","previousItem":{"@type":"ListItem","@id":"https:\/\/raffy.ch\/blog\/category\/security-article-reviews\/#listItem","name":"Security Article Reviews"}}]},{"@type":"Person","@id":"https:\/\/raffy.ch\/blog\/#person","name":"Raffael Marty","image":{"@type":"ImageObject","@id":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/#personImage","url":"https:\/\/secure.gravatar.com\/avatar\/1a1923877d9dbd00d99847074d62faab586cce0a9ee6a4c85e8bb7c46d7418ac?s=96&d=mm&r=g","width":96,"height":96,"caption":"Raffael Marty"}},{"@type":"Person","@id":"https:\/\/raffy.ch\/blog\/author\/raffy\/#author","url":"https:\/\/raffy.ch\/blog\/author\/raffy\/","name":"Raffael Marty","image":{"@type":"ImageObject","@id":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/#authorImage","url":"https:\/\/secure.gravatar.com\/avatar\/1a1923877d9dbd00d99847074d62faab586cce0a9ee6a4c85e8bb7c46d7418ac?s=96&d=mm&r=g","width":96,"height":96,"caption":"Raffael Marty"}},{"@type":"WebPage","@id":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/#webpage","url":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/","name":"Insider Threat \u2013 ISSA Article \u2013 Future of Tech and Security: Strategy & Innovation with Raffy","description":"I haven't done any of these reviews in a while. I guess I haven't been travelling much lately. Anyways. I came accross this article on Insider Threat by Ronald Mendell. I am not sure the author really understands the insider threat problem. Let me give you my perspective: The author suggests that the primary line","inLanguage":"en-US","isPartOf":{"@id":"https:\/\/raffy.ch\/blog\/#website"},"breadcrumb":{"@id":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/#breadcrumblist"},"author":{"@id":"https:\/\/raffy.ch\/blog\/author\/raffy\/#author"},"creator":{"@id":"https:\/\/raffy.ch\/blog\/author\/raffy\/#author"},"datePublished":"2006-05-23T10:19:03-06:00","dateModified":"2006-05-23T10:19:03-06:00"},{"@type":"WebSite","@id":"https:\/\/raffy.ch\/blog\/#website","url":"https:\/\/raffy.ch\/blog\/","name":"Cyber Security - Strategy and Innovation","description":"Insights at the intersection of cybersecurity, strategy, and innovation.","inLanguage":"en-US","publisher":{"@id":"https:\/\/raffy.ch\/blog\/#person"}}]},"og:locale":"en_US","og:site_name":"Future of Tech and Security: Strategy &amp; Innovation with Raffy \u2013 Insights at the intersection of cybersecurity, strategy, and innovation.","og:type":"article","og:title":"Insider Threat \u2013 ISSA Article \u2013 Future of Tech and Security: Strategy &amp; Innovation with Raffy","og:description":"I haven't done any of these reviews in a while. I guess I haven't been travelling much lately. Anyways. I came accross this article on Insider Threat by Ronald Mendell. I am not sure the author really understands the insider threat problem. Let me give you my perspective: The author suggests that the primary line","og:url":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/","og:image":"https:\/\/raffy.ch\/blog\/wp-content\/uploads\/2025\/09\/ogimage.png","og:image:secure_url":"https:\/\/raffy.ch\/blog\/wp-content\/uploads\/2025\/09\/ogimage.png","og:image:width":512,"og:image:height":512,"article:published_time":"2006-05-23T15:19:03+00:00","article:modified_time":"2006-05-23T15:19:03+00:00","twitter:card":"summary","twitter:site":"@raffaelmarty","twitter:title":"Insider Threat \u2013 ISSA Article \u2013 Future of Tech and Security: Strategy &amp; Innovation with Raffy","twitter:description":"I haven't done any of these reviews in a while. I guess I haven't been travelling much lately. Anyways. I came accross this article on Insider Threat by Ronald Mendell. I am not sure the author really understands the insider threat problem. Let me give you my perspective: The author suggests that the primary line","twitter:creator":"@raffaelmarty","twitter:image":"https:\/\/raffy.ch\/blog\/wp-content\/uploads\/2025\/09\/ogimage.png"},"aioseo_meta_data":{"post_id":"51","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"breadcrumb_settings":null,"limit_modified_date":false,"ai":null,"created":"2021-06-08 17:00:24","updated":"2025-06-12 19:51:51","focus_keyword":null,"additional_keywords":null,"truseo_locale":null,"seo_analyzer_scan_date":null},"aioseo_breadcrumb":"<div class=\"aioseo-breadcrumbs\"><span class=\"aioseo-breadcrumb\">\n\t\t\t<a href=\"https:\/\/raffy.ch\/blog\" title=\"Home\">Home<\/a>\n\t\t<\/span><span class=\"aioseo-breadcrumb-separator\">&raquo;<\/span><span class=\"aioseo-breadcrumb\">\n\t\t\t<a href=\"https:\/\/raffy.ch\/blog\/category\/security-article-reviews\/\" title=\"Security Article Reviews\">Security Article Reviews<\/a>\n\t\t<\/span><span class=\"aioseo-breadcrumb-separator\">&raquo;<\/span><span class=\"aioseo-breadcrumb\">\n\t\t\tInsider Threat \u2013 ISSA Article\n\t\t<\/span><\/div>","aioseo_breadcrumb_json":[{"label":"Home","link":"https:\/\/raffy.ch\/blog"},{"label":"Security Article Reviews","link":"https:\/\/raffy.ch\/blog\/category\/security-article-reviews\/"},{"label":"Insider Threat &#8211; ISSA Article","link":"https:\/\/raffy.ch\/blog\/2006\/05\/23\/insider-threat-issa-article\/"}],"_links":{"self":[{"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/posts\/51","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/comments?post=51"}],"version-history":[{"count":0,"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/posts\/51\/revisions"}],"wp:attachment":[{"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/media?parent=51"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/categories?post=51"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/raffy.ch\/blog\/wp-json\/wp\/v2\/tags?post=51"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}