The six dumbest ideas in computer security
An excellent round-up of some of the stupidity you have to deal with in the world. I recently came across an organisation that were so into "Penetrate and Patch" that they thought it meant they'd secured their network.
Anyway - go and read it http://www.ranum.com/security/computer_security/editorials/dumb/
If you want to subscribe, his feed is at http://www.ranum.com/index.rss20