The link to this has been posted on another thread, but I thought that it was provocative enough to merit discussion on its own. It is about 18 months old.

The article is here:

http://www.ranum.com/security/comput...itorials/dumb/

And the ideas are:

1. The Default Permit
2. Enumerating Badness
3. Penetrate & Patch
4. Hacking is Cool
5. Educating Users
6. Action is Better Than Inaction

Views?