<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2enclosuresfull.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:creativeCommons="http://backend.userland.com/creativeCommonsRssModule" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>An Information Security Place</title>
	
	<link>http://infosecplace.com/blog</link>
	<description>Commentary on the State of Information Security</description>
	<lastBuildDate>Thu, 09 Jul 2009 11:50:12 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<media:copyright>Copyright Michael R. Farnum</media:copyright><media:keywords>security,Michael,R,Farnum,podcast,blog,information,security,infosec</media:keywords><media:category scheme="http://www.itunes.com/dtds/podcast-1.0.dtd">Technology</media:category><itunes:owner><itunes:email>m1a1vet@infosecplace.com</itunes:email><itunes:name>Michael R. Farnum</itunes:name></itunes:owner><itunes:author>Michael R. Farnum</itunes:author><itunes:explicit>no</itunes:explicit><itunes:keywords>security,Michael,R,Farnum,podcast,blog,information,security,infosec</itunes:keywords><itunes:subtitle>Commentary on the state of information security.</itunes:subtitle><itunes:summary>Commentary on the state of information security.</itunes:summary><itunes:category text="Technology" /><creativeCommons:license>http://creativecommons.org/licenses/by-nd/2.0/</creativeCommons:license><image><url>http://www.feedburner.com/fb/images/pub/fb_pwrd.gif</url></image><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.feedburner.com/AnInformationSecurityPlace" type="application/rss+xml" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com" /><item>
		<title>An Information Security Place Podcast – Episode 21</title>
		<link>http://feedproxy.google.com/~r/AnInformationSecurityPlace/~3/R0TR_87Ywbg/</link>
		<comments>http://infosecplace.com/blog/2009/07/09/an-information-security-place-podcast-episode-21/#comments</comments>
		<pubDate>Thu, 09 Jul 2009 11:50:12 +0000</pubDate>
		<dc:creator>m1a1vet@infosecplace.com (Michael R. Farnum)</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[algorithm]]></category>
		<category><![CDATA[ATM]]></category>
		<category><![CDATA[auditor]]></category>
		<category><![CDATA[Black Hat]]></category>
		<category><![CDATA[bugs]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[Cyberattacks]]></category>
		<category><![CDATA[Exobox]]></category>
		<category><![CDATA[Federal Government]]></category>
		<category><![CDATA[Goldman Sachs]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[Juniper]]></category>
		<category><![CDATA[MI6]]></category>
		<category><![CDATA[month]]></category>
		<category><![CDATA[North Korea]]></category>
		<category><![CDATA[Oracle]]></category>
		<category><![CDATA[Patching]]></category>
		<category><![CDATA[Physical Security]]></category>
		<category><![CDATA[Shackleford]]></category>
		<category><![CDATA[SMS]]></category>
		<category><![CDATA[Social security numbers]]></category>
		<category><![CDATA[South Korea]]></category>
		<category><![CDATA[speedos]]></category>
		<category><![CDATA[Twitter]]></category>
		<category><![CDATA[US Government]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://infosecplace.com/blog/?p=1078</guid>
		<description><![CDATA[
Link to MP3
Episode 21 is up and going.  Looks like Jim and I are back on a regular cycle again.  Hopefully it stays that way!  Here are the show notes:
InfoSec News Update - 

Goldman Sachs looses its secret sauce online &#8211; Link Here
Fed gets and F on Physical Security &#8211; Link Here
North [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://infosecplacepodcast.com/wp-content/uploads/2008/09/head.jpg"><img class="alignnone size-medium wp-image-21" title="head" src="http://infosecplacepodcast.com/wp-content/uploads/2008/09/head.jpg" alt="" width="159" height="131" /></a></p>

<p><a href="http://www.infosecplace.com/blog/Podcasts/AnInformationSecurityPlacePodcast-Episode21.mp3">Link to MP3</a></p>
<p>Episode 21 is up and going.  Looks like Jim and I are back on a regular cycle again.  Hopefully it stays that way!  Here are the show notes:</p>
<p><strong>InfoSec News Update -</strong> </p>
<ul>
<li>Goldman Sachs looses its secret sauce online &#8211; <a href="http://www.bloomberg.com/apps/news?pid=20601087&#038;sid=ajIMch.ErnD4">Link Here</a></li>
<li>Fed gets and F on Physical Security &#8211; <a href="http://www.cnn.com/2009/POLITICS/07/07/federal.buildings.security/index.html">Link Here</a></li>
<li>North Korea Blamed in Cyber Attacks over July 4th &#8211; <a href="http://www.telegraph.co.uk/news/worldnews/asia/southkorea/5778176/North-Korea-blamed-for-cyber-attack-on-South-Korea.html">Link Here</a></li>
<li>Juniper Pulls ATM hacking preso from BH &#8211; <a href="http://searchsecurity.techtarget.com/news/article/0,289142,sid14_gci1360597,00.html?track=sy160">Link Here</a></li>
<li>Month of Twitter Bugs &#8211; <a href="http://darkreading.com/security/app-security/showArticle.jhtml?articleID=218400029">Link Here</a></li>
<li>10 Things Your Auditor Isn&#8217;t Telling Your &#8211; <a href=" http://daveshackleford.com/?p=211">Link Here</a></li>
<li>New head of MI6 wears Speedos on Facebook &#8211; <a href="http://www.guardian.co.uk/politics/2009/jul/05/mi6-facebook-sawers-wife-miliband">Link Here</a></li>
<li>Algorithm for Predicting and guessing SSNs &#8211; <a href="http://arstechnica.com/tech-policy/news/2009/07/social-insecurity-numbers-open-to-hacking.ars">Link Here</a></li>
<li>Iphone SMS Vulnerability &#8211; <a href="http://www.scmagazineus.com/iPhone-hacker-reveals-SMS-vulnerabity/article/139479">Link Here</a></li>
<li>Study &#8211; Oracle Users struggle with patch management &#8211; <a href="http://ioug.itconvergence.com/pls/apex/f?p=201:1:136152952018385">Link Here</a></li>
</ul>
<p><strong>Discussion Topic -</strong> Cloud Computing &#8211; is it a security nightmare waiting to happen? &#8211; <a href="http://www.darkreading.com/securityservices/security/attacks/showArticle.jhtml?articleID=218102139">Link Here</a></p>
<p><strong>Consultants Corner -</strong> Developing an offering before going public!</p>
<p><strong>Music Notes:</strong></p>
<ul class="noindent">
<li>Intro/Outro &#8211; <a href="http://music.mevio.com/music/listeners/artistdetails.php?BandHash=d65dc8af297fd7a4cc57554b2a826a8e">Digital Breaks &#8211; &quot;Therapy&quot;</a></li>
<li>Segway 1 &#8211; <a href="http://music.mevio.com/music/listeners/artistdetails.php?BandHash=2606003972e352ea2a35e3b97d3a7a5d">Eric Kauschen &#8211; &quot;Speed of Light&quot;</a></li>
<li>Segway 2 &#8211; <a href="http://music.mevio.com/music/listeners/artistdetails.php?BandHash=25860ca362c17aeb878b31194877590e">The WaterMarks &#8211; &quot;Shut Down&quot;</a></li>
<li>Segway 3 &#8211; <a href="http://music.mevio.com/music/listeners/artistdetails.php?BandHash=1089a8c084a1d803912e89f8b9cc6051">Megaphone &#8211; &quot;Not your enemy&quot;</a></li>
</ul>
<p>Vet</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=R0TR_87Ywbg:UzmI7MO9Tuo:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=R0TR_87Ywbg:UzmI7MO9Tuo:5lVTG1FW49M"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=5lVTG1FW49M" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=R0TR_87Ywbg:UzmI7MO9Tuo:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=R0TR_87Ywbg:UzmI7MO9Tuo:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=R0TR_87Ywbg:UzmI7MO9Tuo:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=R0TR_87Ywbg:UzmI7MO9Tuo:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=R0TR_87Ywbg:UzmI7MO9Tuo:D7DqB2pKExk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=R0TR_87Ywbg:UzmI7MO9Tuo:63t7Ie-LG7Y"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=63t7Ie-LG7Y" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://infosecplace.com/blog/2009/07/09/an-information-security-place-podcast-episode-21/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://www.infosecplace.com/blog/Podcasts/AnInformationSecurityPlacePodcast-Episode21.mp3" length="73382016" type="audio/mpeg" />
		<media:content url="http://www.infosecplace.com/blog/Podcasts/AnInformationSecurityPlacePodcast-Episode21.mp3" fileSize="73382016" type="audio/mpeg" /><itunes:explicit>no</itunes:explicit><itunes:subtitle> Link to MP3 Episode 21 is up and going. Looks like Jim and I are back on a regular cycle again. Hopefully it stays that way! Here are the show notes: InfoSec News Update - Goldman Sachs looses its secret sauce online &amp;#8211; Link Here Fed gets and F on P</itunes:subtitle><itunes:author>Michael R. Farnum</itunes:author><itunes:summary> Link to MP3 Episode 21 is up and going. Looks like Jim and I are back on a regular cycle again. Hopefully it stays that way! Here are the show notes: InfoSec News Update - Goldman Sachs looses its secret sauce online &amp;#8211; Link Here Fed gets and F on Physical Security &amp;#8211; Link Here North [...]</itunes:summary><itunes:keywords>security,Michael,R,Farnum,podcast,blog,information,security,infosec</itunes:keywords><feedburner:origLink>http://infosecplace.com/blog/2009/07/09/an-information-security-place-podcast-episode-21/</feedburner:origLink></item>
		<item>
		<title>An Information Security Place Podcast – Episode 20</title>
		<link>http://feedproxy.google.com/~r/AnInformationSecurityPlace/~3/p9EWGUl76NY/</link>
		<comments>http://infosecplace.com/blog/2009/06/19/an-information-security-place-podcast-episode-20/#comments</comments>
		<pubDate>Fri, 19 Jun 2009 13:28:31 +0000</pubDate>
		<dc:creator>m1a1vet@infosecplace.com (Michael R. Farnum)</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[assessor]]></category>
		<category><![CDATA[ATM]]></category>
		<category><![CDATA[auditor sued]]></category>
		<category><![CDATA[blackberry]]></category>
		<category><![CDATA[cyber czar]]></category>
		<category><![CDATA[Eastern Europe]]></category>
		<category><![CDATA[Exobox]]></category>
		<category><![CDATA[IOSCAT]]></category>
		<category><![CDATA[Iran]]></category>
		<category><![CDATA[Keykeriki]]></category>
		<category><![CDATA[L0phtCrack]]></category>
		<category><![CDATA[Obama]]></category>
		<category><![CDATA[T-Mobile]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[Twitter]]></category>

		<guid isPermaLink="false">http://infosecplace.com/blog/?p=1076</guid>
		<description><![CDATA[
Link to MP3
The long-awaited episode 20 is finally here.  Sorry for the crazy long wait!
InfoSec News Update &#8211; 

Data Breach Suit Targets Auditor &#8211; Link Here
Exobox data leak detection coming out &#8211; Link Here
&#34;CloudBurst&#34; allows attackers to break VM guest OS and attack Host &#8211; Link Here
Obama creates the office of Cyber Czar &#8211; [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://infosecplacepodcast.com/wp-content/uploads/2008/09/head.jpg"><img class="alignnone size-medium wp-image-21" title="head" src="http://infosecplacepodcast.com/wp-content/uploads/2008/09/head.jpg" alt="" width="159" height="131" /></a></p>

<p><a href="http://www.infosecplace.com/blog/Podcasts/AnInformationSecurityPlacePodcast-Episode20.mp3">Link to MP3</a></p>
<p>The long-awaited episode 20 is finally here.  Sorry for the crazy long wait!</p>
<p><strong>InfoSec News Update &#8211; </strong></p>
<ul>
<li>Data Breach Suit Targets Auditor &#8211; <a href="http://www.wired.com/threatlev%E2%80%8Bel/2009/06%E2%80%8B/auditor_s%E2%80%8Bued/">Link Here</a></li>
<li>Exobox data leak detection coming out &#8211; <a href="http://www.exobox.com/">Link Here</a></li>
<li>&quot;CloudBurst&quot; allows attackers to break VM guest OS and attack Host &#8211; <a href="http://www.darkreading.com/sec%E2%80%8Burityservi%E2%80%8Bces/securi%E2%80%8Bty/app-sec%E2%80%8Burity/show%E2%80%8BArticle.jh%E2%80%8Btml;jsessi%E2%80%8Bonid=31JOR%E2%80%8B5ROZ5HLOQS%E2%80%8BNDLOSKH0CJ%E2%80%8BUNN2JVN?ar%E2%80%8BticleID=21%E2%80%8B7701908">Link Here</a></li>
<li>Obama creates the office of Cyber Czar &#8211; <a href="http://www.whitehouse.gov/the_%E2%80%8Bpress_offi%E2%80%8Bce/Remarks%E2%80%8B-by-the-Pr%E2%80%8Besident-on%E2%80%8B-Securing-%E2%80%8BOur-Nation%E2%80%8Bs-Cyber-In%E2%80%8Bfrastructu%E2%80%8Bre/">Link Here</a></li>
<li>Twitter and Iran &#8211; <a href="http://www.foxnews.com/story/0%E2%80%8B,2933,5270%E2%80%8B68,00.html">Link Here</a></li>
<li>IOSCAT talk from SANS &#8211; <a href="www.sans.org/reading_room/whitepapers/tools/rss/ioscat_a_port_of_netcats_tcp_functions_to_cisco_ios_33109">Link Here</a></li>
<li>Tmobile Breached&#8230;.Maybe? &#8211; <a href="http://seclists.org/fulldisclosure/2009/Jun/0062.html#start">Link 1</a> / <a href="http://www.pcworld.com/businesscenter/article/166384/is_the_tmobile_breach_the_beginning_of_the_end.html">Link 2</a></li>
<li>Wireless Keyboard sniffing just got alot easier &#8211; <a href="http://www.remote-exploit.org/Keykeriki.html">Link Here</a></li>
<li>LC6 is Officially Released &#8211; <a href="http://www.l0phtcrack.com/index.html">Link Here</a></li>
<li>Trojan Attack on ATMs &#8211; <a href="http://www.darkreading.com/insiderthreat/security/attacks/showArticle.jhtml;jsessionid=31JOR5ROZ5HLOQSNDLOSKH0CJUNN2JVN?articleID=217701880<br />
">Link Here</a></li>
<li>Patch Your Blackberry Servers &#8211; <a href="http://www.blackberry.com/btsc/search.do?cmd=displayKC&#038;docType=kc&#038;externalId=KB18327">Link Here</a></li>
</ul>
<p><strong>Discussion Topic</strong> -Whats the difference between an Auditor and a Assessor?</p>
<p><strong>Consultant&#8217;s Corner </strong>- To Scope or Not to Scope</p>
<p><strong>Music Notes:</strong></p>
<ul class="noindent">
<li>Intro/Outro &#8211; <a href=" http://music.podshow.com/music/listeners/artistdetails.php?BandHash=d65dc8af297fd7a4cc57554b2a826a8e">Digital Breaks &#8211; &quot;Therapy&quot;</a></li>
<li>Segway 1 &#8211; <a href="http://music.podshow.com/music/listeners/artistdetails.php?BandHash=1e3f680c4828ffbca012129500fbc834">PawnShop Diamonds &#8211; &quot;High Road Low Down&quot;</a></li>
<li>Segway 2 &#8211; <a href="http://music.podshow.com/music/listeners/artistdetails.php?BandHash=3b103156bd6087d2fee6a2e281167011">Woodfish &#8211; &quot;Melody&quot;</a></li>
<li>Segway 3 &#8211; <a href='"Shut Down" - http://music.podshow.com/music/listeners/artistdetails.php?BandHash=25860ca362c17aeb878b31194877590e'>The WaterMarks &#8211; &quot;Shut Down&quot;</a></li>
</ul>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=p9EWGUl76NY:nCM4RSSpAz8:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=p9EWGUl76NY:nCM4RSSpAz8:5lVTG1FW49M"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=5lVTG1FW49M" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=p9EWGUl76NY:nCM4RSSpAz8:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=p9EWGUl76NY:nCM4RSSpAz8:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=p9EWGUl76NY:nCM4RSSpAz8:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=p9EWGUl76NY:nCM4RSSpAz8:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=p9EWGUl76NY:nCM4RSSpAz8:D7DqB2pKExk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=p9EWGUl76NY:nCM4RSSpAz8:63t7Ie-LG7Y"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=63t7Ie-LG7Y" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://infosecplace.com/blog/2009/06/19/an-information-security-place-podcast-episode-20/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://www.infosecplace.com/blog/Podcasts/AnInformationSecurityPlacePodcast-Episode20.mp3" length="46254208" type="audio/mpeg" />
		<media:content url="http://www.infosecplace.com/blog/Podcasts/AnInformationSecurityPlacePodcast-Episode20.mp3" fileSize="46254208" type="audio/mpeg" /><itunes:explicit>no</itunes:explicit><itunes:subtitle> Link to MP3 The long-awaited episode 20 is finally here. Sorry for the crazy long wait! InfoSec News Update &amp;#8211; Data Breach Suit Targets Auditor &amp;#8211; Link Here Exobox data leak detection coming out &amp;#8211; Link Here &amp;#34;CloudBurst&amp;#34; allows att</itunes:subtitle><itunes:author>Michael R. Farnum</itunes:author><itunes:summary> Link to MP3 The long-awaited episode 20 is finally here. Sorry for the crazy long wait! InfoSec News Update &amp;#8211; Data Breach Suit Targets Auditor &amp;#8211; Link Here Exobox data leak detection coming out &amp;#8211; Link Here &amp;#34;CloudBurst&amp;#34; allows attackers to break VM guest OS and attack Host &amp;#8211; Link Here Obama creates the office of Cyber Czar &amp;#8211; [...]</itunes:summary><itunes:keywords>security,Michael,R,Farnum,podcast,blog,information,security,infosec</itunes:keywords><feedburner:origLink>http://infosecplace.com/blog/2009/06/19/an-information-security-place-podcast-episode-20/</feedburner:origLink></item>
		<item>
		<title>An Information Security Place Podcast – Episode 19</title>
		<link>http://feedproxy.google.com/~r/AnInformationSecurityPlace/~3/Tl53azsrYmU/</link>
		<comments>http://infosecplace.com/blog/2009/05/18/an-information-security-place-podcast-episode-19/#comments</comments>
		<pubDate>Mon, 18 May 2009 13:14:44 +0000</pubDate>
		<dc:creator>m1a1vet@infosecplace.com (Michael R. Farnum)</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[0-day]]></category>
		<category><![CDATA[Acer]]></category>
		<category><![CDATA[acrobat]]></category>
		<category><![CDATA[admin account]]></category>
		<category><![CDATA[Adobe]]></category>
		<category><![CDATA[database]]></category>
		<category><![CDATA[federal regulations]]></category>
		<category><![CDATA[firewall swapping]]></category>
		<category><![CDATA[McAfee]]></category>
		<category><![CDATA[power]]></category>
		<category><![CDATA[prescription]]></category>
		<category><![CDATA[QNAP TS-809]]></category>
		<category><![CDATA[Twitter]]></category>
		<category><![CDATA[vulnerabilities. Virginia]]></category>
		<category><![CDATA[website]]></category>

		<guid isPermaLink="false">http://infosecplace.com/blog/?p=1071</guid>
		<description><![CDATA[
Link to MP3
So, we officially have our first lost episode.  I recorded episode 18 a while back with Michael Santarcangelo, but we had some crazy technical problems.  When I tried to get everything edited together to make it work, I started having some major problems.  Without getting into all the details, the [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://infosecplacepodcast.com/wp-content/uploads/2008/09/head.jpg"><img class="alignnone size-medium wp-image-21" title="head" src="http://infosecplacepodcast.com/wp-content/uploads/2008/09/head.jpg" alt="" width="159" height="131" /></a></p>

<p><a href="http://www.infosecplace.com/blog/Podcasts/AnInformationSecurityPlacePodcast-Episode19.mp3">Link to MP3</a></p>
<p>So, we officially have our first lost episode.  I recorded episode 18 a while back with Michael Santarcangelo, but we had some crazy technical problems.  When I tried to get everything edited together to make it work, I started having some major problems.  Without getting into all the details, the recording was not salvageable.  Sorry to Michael for this since I know he took his valuable time to record with me.</p>
<p>So know we have episode 19.  I guess we could have just said this one was episode 18 and went on, but we are honest people over here at An Information Security Place Podcast.  And as far as episode 19 goes, Jim and I have been balls-to-the-wall busy lately, and I have had a crazy schedule for over a month.  Jim got a break in his schedule (probably more like forced a break) and coerced Kirk Greene to help him out in my place.  And then Jim had some technical problems as well and ended up recording the last 15 minutes by himself (or Kirk pissed him off &#8211; not sure which).  Yes, it has been a crazy time for us.  But we are back, and hopefully we will get back on a regular schedule.</p>
<p>Now, here are the show notes for episode 19:</p>
<p><strong>InfoSec News Update &#8211; </strong></p>
<ul>
<li>Warm Fuzzy Story &#8211; Many Users say they’d sell company info for the right price! &#8211; <a href="http://www.darkreading.com/insiderthreat/security/client/showArticle.jhtml;jsessionid=DSDDEK13Y1QTSQSNDLOSKHSCJUNN2JVN?articleID=217100330">Link Here</a></li>
<li>Another Twitter Admin Account Compromised &#8211; <a href="http://www.sophos.com/blogs/gc/g/2009/05/01/twitter-security-breach-exposes-accounts-hackers/">Link Here</a></li>
<li>New Tools Emerge To Ease Enterprise Fear Of Firewall Swapping &#8211; <a href="http://www.darkreading.com/security/perimeter/showArticle.jhtml?articleID=217201016">Link Here</a></li>
<li>Acrobat with Yet Another 0-day &#8211; <a href="http://blogs.adobe.com/psirt/">Link Here</a></li>
<li>Feb Bank Worker charged with Data Theft &#8211; <a href="http://www.darkreading.com/insiderthreat/security/privacy/showArticle.jhtml;jsessionid=DSDDEK13Y1QTSQSNDLOSKHSCJUNN2JVN?articleID=217200487">Link Here</a></li>
<li>More Federal Reg ‘a’ Coming for Power companies &#8211; <a href="http://www.eweek.com/c/a/Security/Lawmakers-Move-to-Secure-Electric-Grid-281213/">Link Here</a></li>
<li>Thats gonna leave a mark! &#8211; Multiple Vulns found on Mcaffee’s website &#8211; <a href="http://nemesis.te-home.net/News/20090501_Multiple_Bugs_on_Mcafee_Websites_.html">Link Here</a></li>
<li>Hacker’s demand: $10M for Virginia prescriptions database &#8211; <a href="http://hamptonroads.com/2009/05/hackers-demand-10m-virginia-prescriptions-database">Link Here</a></li>
<li>Economy Note &#8211; Security Suffers Cuts but fares better than most &#8211; <a href=" http://www.virtualpressoffice.com/detail.do?contentId=100815&amp;showId=1215381716906">Link Here</a></li>
</ul>
<p><strong>Geek Toys -</strong></p>
<ul>
<li>Interceptor &#8211; <a href="http://www.hak5.org/episodes/episode-505">Hak5 Episode</a> &#8211; <a href="http://www.digininja.org/interceptor/ ">DigiNinja’s Page</a></li>
<li><a href="http://www.acer.com/aspireone">Acer Aspire One 10.1 Netbook</a></li>
<li>Wifi Card of Choice &#8211; <a href=" http://www.data-alliance.net/servlet/the-90/802.11g-USB-802.11b-802.11n/Detail">Alfa Network AWUS036H</a></li>
<li>Need a second NIC on a laptop? &#8211; <a href="store.apple.com/us/product/MB442Z/ ">Apple USB Ethernet is rather inexpensive and works with Windows / Linux / and OSX (duh).</a> / <a href="http://dl.getdropbox.com/u/23528/Software/Apple%20USB%20Ethernet%20Adapter%20Drivers.zip">Windows Driver</a></li>
<li>NAS From Heaven &#8211; <a href="http://www.qnap.com/pro_detail_feature.asp?p_id=109">QNAP TS-809</a></li>
</ul>
<p><strong>Consultants Corner -</strong> DIY Security Testing Lab</p>
<p><strong>Music Notes:</strong></p>
<ul class="noindent">
<li>Intro/Outro &#8211; <a href=" http://music.podshow.com/music/listeners/artistdetails.php?BandHash=d65dc8af297fd7a4cc57554b2a826a8e">Digital Breaks &#8211; &#8220;Therapy&#8221;</a></li>
<li>Segway 1 &#8211; <a href="http://music.podshow.com/music/listeners/artistdetails.php?BandHash=855fce1cfc0ead0f552963ba3bff22a5 ">Dave Stanley Band &#8211; &#8220;Lights Out&#8221; </a></li>
<li>Segway 2 &#8211; <a href="http://music.podshow.com/music/listeners/artistdetails.php?BandHash=5848a0485a0f4eff28c22288a2396a57">John Taglieri &#8211; &#8221; Make A Mistake With Me&#8221;</a></li>
<li>Segway 3 &#8211; <a href="http://music.podshow.com/music/listeners/artistdetails.php?BandHash=605ec36a6b5e1c91d4ce9e349ca4c444">Junior &#8211; &#8220;What Was I Thinking?&#8221;</a></li>
</ul>
<p>Vet</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=Tl53azsrYmU:HGvoFfZF4ow:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=Tl53azsrYmU:HGvoFfZF4ow:5lVTG1FW49M"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=5lVTG1FW49M" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=Tl53azsrYmU:HGvoFfZF4ow:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=Tl53azsrYmU:HGvoFfZF4ow:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=Tl53azsrYmU:HGvoFfZF4ow:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=Tl53azsrYmU:HGvoFfZF4ow:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=Tl53azsrYmU:HGvoFfZF4ow:D7DqB2pKExk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=Tl53azsrYmU:HGvoFfZF4ow:63t7Ie-LG7Y"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=63t7Ie-LG7Y" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://infosecplace.com/blog/2009/05/18/an-information-security-place-podcast-episode-19/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://www.infosecplace.com/blog/Podcasts/AnInformationSecurityPlacePodcast-Episode19.mp3" length="42784896" type="audio/mpeg" />
		<media:content url="http://www.infosecplace.com/blog/Podcasts/AnInformationSecurityPlacePodcast-Episode19.mp3" fileSize="42784896" type="audio/mpeg" /><itunes:explicit>no</itunes:explicit><itunes:subtitle> Link to MP3 So, we officially have our first lost episode. I recorded episode 18 a while back with Michael Santarcangelo, but we had some crazy technical problems. When I tried to get everything edited together to make it work, I started having some majo</itunes:subtitle><itunes:author>Michael R. Farnum</itunes:author><itunes:summary> Link to MP3 So, we officially have our first lost episode. I recorded episode 18 a while back with Michael Santarcangelo, but we had some crazy technical problems. When I tried to get everything edited together to make it work, I started having some major problems. Without getting into all the details, the [...]</itunes:summary><itunes:keywords>security,Michael,R,Farnum,podcast,blog,information,security,infosec</itunes:keywords><feedburner:origLink>http://infosecplace.com/blog/2009/05/18/an-information-security-place-podcast-episode-19/</feedburner:origLink></item>
		<item>
		<title>Some advice when writing security assessment RFP’s</title>
		<link>http://feedproxy.google.com/~r/AnInformationSecurityPlace/~3/a2x3Wxw6Gks/</link>
		<comments>http://infosecplace.com/blog/2009/05/15/some-advice-when-writing-security-assessment-rfps/#comments</comments>
		<pubDate>Sat, 16 May 2009 01:57:06 +0000</pubDate>
		<dc:creator>m1a1vet@infosecplace.com (Michael R. Farnum)</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://infosecplace.com/blog/2009/05/15/some-advice-when-writing-security-assessment-rfps/</guid>
		<description><![CDATA[I have been answering quite a few security assessment RFP’s lately, most specifically geared towards penetration testing of the external and internal environment (you guessed it – PCI).&#160; And what I have noticed is that the writers of the RFP typically do not include enough detail in the RFP for the organizations attempting to answer [...]]]></description>
			<content:encoded><![CDATA[<p>I have been answering quite a few security assessment RFP’s lately, most specifically geared towards penetration testing of the external and internal environment (you guessed it – PCI).&#160; And what I have noticed is that the writers of the RFP typically do not include enough detail in the RFP for the organizations attempting to answer to give a solid response.&#160; Basically, if you need a good answer to your RFP, you have to give me enough to scope the amount of time it is going to take me to get it done.&#160; </p>
<ol>
<li>If you have 200 external IPs and you want to have those scanned for vulnerabilities, and then you want to have those vulnerabilities used for penetration testing, I have to know that in order to scope. </li>
<li>If you have some applications on those servers, I need to know if I will have credentials or if this is going to be totally black-box testing.&#160; I also need to have SOME idea of how many apps I am going to run up against. </li>
<li>If you want me to scan your internal network for vulnerabilities, I have to know how many machines I am going to be scanning. </li>
<li>Etc, etc, etc </li>
</ol>
<p>If you would provide this quantity type of information up front, I would not have to write up a bunch of questions and send them to you.&#160; You would not have to take the time to answer these questions (and probably send them to me 2 days before the responses are due).&#160; It really is simple: if I don’t have this information, I have to guess, and you are going to get an inaccurate response (of course, you might be looking for a completely black-box test where I am blind to any information – the effectiveness and efficiency of that is for another blog post on another day).</p>
<p>Of course, many people will tell you that RFP’s are often written in such a way to discourage responses because the company writing the RFP already has a partner in mind, and that partner probably already has the answers to any questions.&#160; The RFP writer is simply going through the motions because of company policy.&#160; I get that.</p>
<p>But if you are writing an honest RFP, one that is simply inspired by a need and is seeking multiple responses from which the best is chosen, then <strong>please</strong> include the information needed in the RFP itself so things can proceed smoothly.&#160; Thank you for your consideration.</p>
<p>Vet </p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=a2x3Wxw6Gks:fH3ZIasAUBU:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=a2x3Wxw6Gks:fH3ZIasAUBU:5lVTG1FW49M"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=5lVTG1FW49M" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=a2x3Wxw6Gks:fH3ZIasAUBU:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=a2x3Wxw6Gks:fH3ZIasAUBU:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=a2x3Wxw6Gks:fH3ZIasAUBU:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=a2x3Wxw6Gks:fH3ZIasAUBU:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=a2x3Wxw6Gks:fH3ZIasAUBU:D7DqB2pKExk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=a2x3Wxw6Gks:fH3ZIasAUBU:63t7Ie-LG7Y"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=63t7Ie-LG7Y" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://infosecplace.com/blog/2009/05/15/some-advice-when-writing-security-assessment-rfps/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://infosecplace.com/blog/2009/05/15/some-advice-when-writing-security-assessment-rfps/</feedburner:origLink></item>
		<item>
		<title>Accuvant blog is up and running</title>
		<link>http://feedproxy.google.com/~r/AnInformationSecurityPlace/~3/IPf6AdvHc40/</link>
		<comments>http://infosecplace.com/blog/2009/05/04/accuvant-blog-is-up-and-running/#comments</comments>
		<pubDate>Mon, 04 May 2009 16:00:12 +0000</pubDate>
		<dc:creator>m1a1vet@infosecplace.com (Michael R. Farnum)</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://infosecplace.com/blog/2009/05/04/accuvant-blog-is-up-and-running/</guid>
		<description><![CDATA[Finally the day has come.&#160; I have been pushing to get this done internally at Accuvant for a while, and things just never lined up.&#160; But now we finally are there.&#160; Yes, the Accuvant blog is up and running.&#160; You can find it at http://insight.accuvant.com. 
There are already some great posts up by some of [...]]]></description>
			<content:encoded><![CDATA[<p>Finally the day has come.&#160; I have been pushing to get this done internally at Accuvant for a while, and things just never lined up.&#160; But now we finally are there.&#160; Yes, the Accuvant blog is up and running.&#160; You can find it at <a href="http://insight.accuvant.com">http://insight.accuvant.com</a>. </p>
<p>There are already some great posts up by some of our uber-smart assessment consultants.&#160; We have some very high-end research guys on our team, plus just some of the best all around assessment people.&#160; There is no weak link on that team, and they continue to amaze me.</p>
<p>Some of you may not be aware that Dave Maynor joined our team at the beginning of the year.&#160; I was fortunate enough to sit next to him at a client down here in Houston as he smacked around their AS400 environment.&#160; And not only is Dave smart, he is friggin’ hilarious as well.&#160; </p>
<p>So anyway, go take a gander at the blog.&#160; Look for more great stuff to pop up on there.</p>
<p>Oh, and Accuvant has a Twitter account as well at <a href="http://twitter.com/Accuvant">http://twitter.com/Accuvant</a>.&#160; It will likely be mostly reflecting blog posts right now, but there might be more in the future.</p>
<p>Vet</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=IPf6AdvHc40:Bd0_uSCS5ZI:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=IPf6AdvHc40:Bd0_uSCS5ZI:5lVTG1FW49M"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=5lVTG1FW49M" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=IPf6AdvHc40:Bd0_uSCS5ZI:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=IPf6AdvHc40:Bd0_uSCS5ZI:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=IPf6AdvHc40:Bd0_uSCS5ZI:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=IPf6AdvHc40:Bd0_uSCS5ZI:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=IPf6AdvHc40:Bd0_uSCS5ZI:D7DqB2pKExk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=IPf6AdvHc40:Bd0_uSCS5ZI:63t7Ie-LG7Y"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=63t7Ie-LG7Y" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://infosecplace.com/blog/2009/05/04/accuvant-blog-is-up-and-running/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://infosecplace.com/blog/2009/05/04/accuvant-blog-is-up-and-running/</feedburner:origLink></item>
		<item>
		<title>Copycat Twitter Worm?</title>
		<link>http://feedproxy.google.com/~r/AnInformationSecurityPlace/~3/awQuPfCwSvc/</link>
		<comments>http://infosecplace.com/blog/2009/04/15/copycat-twitter-worm/#comments</comments>
		<pubDate>Wed, 15 Apr 2009 17:39:57 +0000</pubDate>
		<dc:creator>m1a1vet@infosecplace.com (Michael R. Farnum)</dc:creator>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Social Networking]]></category>
		<category><![CDATA[Twitter]]></category>
		<category><![CDATA[copycat Twitter worm]]></category>
		<category><![CDATA[mikeyy]]></category>
		<category><![CDATA[social media]]></category>
		<category><![CDATA[social media malware]]></category>
		<category><![CDATA[Twitter worm]]></category>

		<guid isPermaLink="false">http://infosecplace.com/blog/?p=1053</guid>
		<description><![CDATA[ 
As most of you know, Twitter was hit with a series of worms this past weekend.  They were created by 17 year old, Mikey Mooney, creator of the website StalkDaily.com (don&#8217;t visit the site).  The original worm seemed fairly innocuous, with messages that were created to drive traffic to the StalkDaily website.

I wrote a Computerworld [...]]]></description>
			<content:encoded><![CDATA[<p> </p>
<p>As most of you know, Twitter was hit with a series of worms this past weekend.  They were created by 17 year old, Mikey Mooney, creator of the website StalkDaily.com (don&#8217;t visit the site).  The original worm seemed fairly innocuous, with messages that were created to drive traffic to the StalkDaily website.</p>
<p style="text-align: center;"><img class="aligncenter" src="http://farm4.static.flickr.com/3330/3434222411_65c0f32417.jpg?v=0" alt="" width="500" height="75" /></p>
<p align="center"><a href="http://blogs.computerworld.com/twitter_worm_still_on_the_loose">I wrote a Computerworld blog post, where I detailed the original attack as well as provided a list of security recommendations</a>.  In that post, I commented that <span style="text-decoration: underline;">Twitter users should be on the lookout for modified worms</span>, especially as additional details of the original attack come to light.</p>
<p>After Twitter patched the original cross site scripting (XSS) flaw, which exploited the &#8220;link&#8221; field in a user profile, another variant of the worm appeared.  This time, the worm exploited the &#8220;color&#8221; setting of the user profile.   Modifying the worm highlighted that the XSS vulnerability was not limited to a single field and that Twitter would have to institute a comprehensive patch, not a band-aid solution.</p>
<p>The variant of the worm automatically generated tweets with the term &#8220;mikeyy&#8221;. These were sarcasitic in nature and seemed to be tounge-in-cheek.  Examples include:</p>
<ul class="unIndentedList">
<li> Mikeyy I am done&#8230;</li>
<li> Mikeyy is done&#8230;</li>
<li> Twitter please fix this, regards Mikeyy</li>
</ul>
<p>The general consensus today is that the &#8220;StalkDaily&#8221; and &#8220;Mikeyy&#8221; worms have been adequately addressed.   <strong><span style="text-decoration: underline;">However, I am not fully convinced.</span></strong> Four days after the original worm, I am still seeing suspicious behavior.  A colleague of mine has a Twitter account that automatically started generating tweets saying &#8220;I am not here right now.&#8221;</p>
<p style="text-align: center;"><img class="aligncenter" src="http://farm4.static.flickr.com/3559/3444512943_76d06b622c.jpg?v=0" alt="" width="320" height="407" /></p>
<p>Using a third party iPhone application, TweetStack, I am conducting periodic searches on the string &#8220;I am not here right now.&#8221;  I found that this is not nearly as wide spread as the &#8220;StalkDaily&#8221; Twitter worm, but has affected at least a couple dozen accounts.</p>
<p>While this could be yet another variant of worm created by Mikey Mooney, <strong><span style="text-decoration: underline;">my suspicion is that this is a copycat worm</span></strong> created by another party (most likely a Scriptkiddie).</p>
<p>Are YOU still seeing anomalous behavior on Twitter?  I would love to hear about it!  Please comment below as well as notify the <a href="http://isc.sans.org/">Internet Storm Center</a> if you see anything noteworthy.</p>
<p>- WiFiJedi</p>
<p><em>Douglas J. Haider is a Principal Technologist with <a href="http://www.xirrus.com/">Xirrus</a>.  He hosts a personal blog at <a href="http://wifijedi.com/" target="_blank">WiFiJedi.com</a>, and micro-blogs on Twitter <a href="http://www.twitter.com/wifijedi" target="_blank">@wifijedi</a> (which was not infected by the Twitter worm at the time of this writing&#8230;)</em></p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=awQuPfCwSvc:xstWSd4_IL0:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=awQuPfCwSvc:xstWSd4_IL0:5lVTG1FW49M"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=5lVTG1FW49M" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=awQuPfCwSvc:xstWSd4_IL0:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=awQuPfCwSvc:xstWSd4_IL0:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=awQuPfCwSvc:xstWSd4_IL0:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=awQuPfCwSvc:xstWSd4_IL0:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=awQuPfCwSvc:xstWSd4_IL0:D7DqB2pKExk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=awQuPfCwSvc:xstWSd4_IL0:63t7Ie-LG7Y"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=63t7Ie-LG7Y" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://infosecplace.com/blog/2009/04/15/copycat-twitter-worm/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://infosecplace.com/blog/2009/04/15/copycat-twitter-worm/</feedburner:origLink></item>
		<item>
		<title>Podcast delays</title>
		<link>http://feedproxy.google.com/~r/AnInformationSecurityPlace/~3/J1YwvyX6kBw/</link>
		<comments>http://infosecplace.com/blog/2009/04/08/podcast-delays/#comments</comments>
		<pubDate>Thu, 09 Apr 2009 01:25:56 +0000</pubDate>
		<dc:creator>m1a1vet@infosecplace.com (Michael R. Farnum)</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://infosecplace.com/blog/2009/04/08/podcast-delays/</guid>
		<description><![CDATA[Sorry for the delay in getting the last podcast posted.&#160; I recorded it with Michael Santarcangelo last week (Jim was sick), but we had some issues with the recording (Skype cut out twice, other issues), and I have not had the time to edit everything.&#160; I have a good bit of it done, but I [...]]]></description>
			<content:encoded><![CDATA[<p>Sorry for the delay in getting the last podcast posted.&#160; I recorded it with Michael Santarcangelo last week (Jim was sick), but we had some issues with the recording (Skype cut out twice, other issues), and I have not had the time to edit everything.&#160; I have a good bit of it done, but I am not as good as Jim is on getting all that cut and put together.&#160; I hope to have it done this week.</p>
<p>Vet</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=J1YwvyX6kBw:_8bpYQiFdaU:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=J1YwvyX6kBw:_8bpYQiFdaU:5lVTG1FW49M"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=5lVTG1FW49M" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=J1YwvyX6kBw:_8bpYQiFdaU:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=J1YwvyX6kBw:_8bpYQiFdaU:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=J1YwvyX6kBw:_8bpYQiFdaU:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=J1YwvyX6kBw:_8bpYQiFdaU:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=J1YwvyX6kBw:_8bpYQiFdaU:D7DqB2pKExk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=J1YwvyX6kBw:_8bpYQiFdaU:63t7Ie-LG7Y"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=63t7Ie-LG7Y" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://infosecplace.com/blog/2009/04/08/podcast-delays/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://infosecplace.com/blog/2009/04/08/podcast-delays/</feedburner:origLink></item>
		<item>
		<title>Heading to TRISC in the morning</title>
		<link>http://feedproxy.google.com/~r/AnInformationSecurityPlace/~3/6hawOIhKfMA/</link>
		<comments>http://infosecplace.com/blog/2009/03/22/heading-to-trisc-in-the-morning/#comments</comments>
		<pubDate>Mon, 23 Mar 2009 02:10:33 +0000</pubDate>
		<dc:creator>m1a1vet@infosecplace.com (Michael R. Farnum)</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://infosecplace.com/blog/2009/03/22/heading-to-trisc-in-the-morning/</guid>
		<description><![CDATA[If anyone is heading to TRISC (Texas Regional Infrastructure Security Conference) tomorrow in Austin, let me know.&#160; I will be there tomorrow for a day doing booth duty with Citrix.&#160; I think they will mostly be showing their NetScaler product (load balancer, reverse proxy, and WAF).
Sometimes I like doing booth duty just because it enables [...]]]></description>
			<content:encoded><![CDATA[<p>If anyone is heading to <a href="http://trisc.org">TRISC</a> (Texas Regional Infrastructure Security Conference) tomorrow in Austin, let me know.&#160; I will be there tomorrow for a day doing booth duty with Citrix.&#160; I think they will mostly be showing their NetScaler product (load balancer, reverse proxy, and WAF).</p>
<p>Sometimes I like doing booth duty just because it enables me to do what I like doing, which is talking to people.&#160; I like the interaction, and I enjoy helping people find what they need.&#160; Of course, a security evangelist-type of job is what I would really enjoy, and this falls into that.&#160; Maybe one day.</p>
<p>Vet</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=6hawOIhKfMA:g4LwqR_qe6g:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=6hawOIhKfMA:g4LwqR_qe6g:5lVTG1FW49M"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=5lVTG1FW49M" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=6hawOIhKfMA:g4LwqR_qe6g:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=6hawOIhKfMA:g4LwqR_qe6g:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=6hawOIhKfMA:g4LwqR_qe6g:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=6hawOIhKfMA:g4LwqR_qe6g:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=6hawOIhKfMA:g4LwqR_qe6g:D7DqB2pKExk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=6hawOIhKfMA:g4LwqR_qe6g:63t7Ie-LG7Y"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=63t7Ie-LG7Y" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://infosecplace.com/blog/2009/03/22/heading-to-trisc-in-the-morning/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://infosecplace.com/blog/2009/03/22/heading-to-trisc-in-the-morning/</feedburner:origLink></item>
		<item>
		<title>An Information Security Place Podcast – Episode 17</title>
		<link>http://feedproxy.google.com/~r/AnInformationSecurityPlace/~3/DJsSQeST0DQ/</link>
		<comments>http://infosecplace.com/blog/2009/03/19/an-information-security-place-podcast-episode-17/#comments</comments>
		<pubDate>Thu, 19 Mar 2009 11:42:07 +0000</pubDate>
		<dc:creator>m1a1vet@infosecplace.com (Michael R. Farnum)</dc:creator>
				<category><![CDATA[Podcasts]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Antivirus]]></category>
		<category><![CDATA[autorun]]></category>
		<category><![CDATA[CeBit]]></category>
		<category><![CDATA[data leak]]></category>
		<category><![CDATA[financial fraud]]></category>
		<category><![CDATA[Gartner]]></category>
		<category><![CDATA[HD Moore]]></category>
		<category><![CDATA[L0phtCrack]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Marine One]]></category>
		<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[NSA]]></category>
		<category><![CDATA[PCI DSS]]></category>
		<category><![CDATA[Rod Beckstrom]]></category>
		<category><![CDATA[theives]]></category>
		<category><![CDATA[Visa]]></category>
		<category><![CDATA[WarVox]]></category>

		<guid isPermaLink="false">http://infosecplace.com/blog/?p=1045</guid>
		<description><![CDATA[ 
Link to MP3
Here is Episode 17.  Sorry for the delay in getting it out.  Last week was extremely rough for Jim and I, but we are back at full strength now.  Well, maybe 85% strength anyway.
In this show Jim and I relate the latest news as always, then we have some [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://infosecplacepodcast.com/wp-content/uploads/2008/09/head.jpg"><img class="alignnone size-medium wp-image-21" title="head" src="http://infosecplacepodcast.com/wp-content/uploads/2008/09/head.jpg" alt="" width="159" height="131" /></a>   <a href="http://www.infosecplace.com/blog/Podcasts/AnInformationSecurityPlacePodcast-Episode17.mp3"></a></p>
<p><a href="http://www.infosecplace.com/blog/Podcasts/AnInformationSecurityPlacePodcast-Episode17.mp3">Link to MP3</a></p>
<p>Here is Episode 17.  Sorry for the delay in getting it out.  Last week was extremely rough for Jim and I, but we are back at full strength now.  Well, maybe 85% strength anyway.</p>
<p>In this show Jim and I relate the latest news as always, then we have some discussion about layoffs and how that is causing a lot of orphaned hardware and software.  Then we discuss some challenges for the consultant in walking the mind field of politics at client companies.</p>
<p>Also, we had some listener feedback from Geir.  He was busting on us a bit about our saying you need to patch your stuff when we were talking about 0day.  Thanks for keeping us straight Geir.  If you want to send feedback, you can send it to podcast-at-infosecplace.com.</p>
<p>Here are the show notes:  <strong></strong></p>
<p><strong>InfoSec News Update:</strong></p>
<ul>
<li>Follow up &#8211; Another Payment Processor Has Been Hacked &#8211; Visa says JUST KIDDING! &#8211; <a href="http://www.darkreading.com/security/attacks/showArticle.jhtml;jsessionid=FPQVUMNYPG4ZEQSNDLPCKHSCJUNN2JVN?articleID=215600270">Link Here</a> &#8211; This Just In &#8211; A new timeline of the Unnamed Processor &#8211; <a href="http://datalossdb.org/incident_highlights/23-unnamed-acquirer-processor-breach-timeline">Link Here</a></li>
<li>Gartner &#8211; Nearly 8 Percent of U.S. Adults Lost Money To Financial Fraud in ‘08 &#8211; <a href="http://www.darkreading.com/security/privacy/showArticle.jhtml?articleID=215800482">Link Here</a></li>
<li>Federal cybersecurity director quits, complains of NSA role &#8211; <a href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;taxonomyName=it_in_government&amp;articleId=9129218&amp;taxonomyId=69&amp;intsrc=kc_top">Link Here</a></li>
<li>Health Records Show Up in Yard &#8211; <a href="http://www.thedenverchannel.com/news/18866890/detail.html#-">Link Here</a></li>
<li>Study: Antivirus Software Catches About Half Of Malware &#8211; <a href="http://www.darkreading.com/security/antivirus/showArticle.jhtml?articleID=215600282">Link Here</a></li>
<li>MS Finally killing off AutoRun &#8211; <a href="http://www.microsoft.com/technet/security/advisory/967940.mspx">Link Here</a></li>
<li>Marine One data leak &#8211; <a href="http://www.wpxi.com/news/18818589/detail.html">Link Here</a></li>
<li>The Return of L0phtCrack!! &#8211; <a href="http://blogs.zdnet.com/security/?p=2737">Link Here</a></li>
<li>WarVox Released &#8211; <a href="http://warvox.org">Link Here</a></li>
<li>Theives Steal the Show at Cebit &#8211; <a href="http://www.theinquirer.net/inquirer/news/312/1051312/thieves-steal-cebit">Link Here</a></li>
<li>Checklist for complying with PCI security standard &#8211; <a href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;taxonomyName=security&amp;articleId=9129277&amp;taxonomyId=17&amp;intsrc=kc_top">Link Here</a> / <a href="https://www.pcisecuritystandards.org/education/docs/Prioritized_Approach_PCI_DSS_1_2.pdf">Link To Checklist</a></li>
</ul>
<p><strong>Discussion -</strong> Orphaned hardware and Software &#8211; <a href="http://www.networkworld.com/news/2009/031109-layoffs-leave-orphaned-hardware-unused.html ">Link Here</a> <strong></strong></p>
<p><strong>Consultant’s Corner -</strong> Dealing with political landscapes at your client’s company  <strong></strong></p>
<p><strong>Music Notes:</strong></p>
<ul class="noindent">
<li>Intro/Outro &#8211; <a href=" http://music.podshow.com/music/listeners/artistdetails.php?BandHash=d65dc8af297fd7a4cc57554b2a826a8e">Digital Breaks &#8211; &#8220;Therapy&#8221;</a></li>
<li>Segway 1 &#8211;  <a href="http://music.podshow.com/music/listeners/artistdetails.php?pageNum_MusicList=2&amp;totalRows_MusicList=11&amp;BandHash=c95d995fd4f40459f34cf050e6b1c137">Beth Thornley &#8211; &#8220;Mr. Lovely&#8221;</a></li>
<li>Segway 2 &#8211; <a href="http://music.podshow.com/music/listeners/artistdetails.php?pageNum_MusicList=1&amp;totalRows_MusicList=16&amp;BandHash=2673377414907b3d6d7de87470c872ad">Munk &#8211; &#8220;DirtyWork&#8221;</a></li>
<li>Segway 3 &#8211; <a href="http://music.podshow.com/music/listeners/artistdetails.php?BandHash=d87754a0ef419277dbdf2bbb6b2e284d">By The Wayside &#8211; &#8220;Do You Ever Notice&#8221;</a></li>
</ul>
<p>Vet</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=DJsSQeST0DQ:1LZjqe4C2jQ:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=DJsSQeST0DQ:1LZjqe4C2jQ:5lVTG1FW49M"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=5lVTG1FW49M" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=DJsSQeST0DQ:1LZjqe4C2jQ:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=DJsSQeST0DQ:1LZjqe4C2jQ:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=DJsSQeST0DQ:1LZjqe4C2jQ:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=DJsSQeST0DQ:1LZjqe4C2jQ:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=DJsSQeST0DQ:1LZjqe4C2jQ:D7DqB2pKExk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=DJsSQeST0DQ:1LZjqe4C2jQ:63t7Ie-LG7Y"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=63t7Ie-LG7Y" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://infosecplace.com/blog/2009/03/19/an-information-security-place-podcast-episode-17/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://www.infosecplace.com/blog/Podcasts/AnInformationSecurityPlacePodcast-Episode17.mp3" length="83294336" type="audio/mpeg" />
		<media:content url="http://www.infosecplace.com/blog/Podcasts/AnInformationSecurityPlacePodcast-Episode17.mp3" fileSize="83294336" type="audio/mpeg" /><itunes:explicit>no</itunes:explicit><itunes:subtitle> Link to MP3 Here is Episode 17. Sorry for the delay in getting it out. Last week was extremely rough for Jim and I, but we are back at full strength now. Well, maybe 85% strength anyway. In this show Jim and I relate the latest news as always, then we ha</itunes:subtitle><itunes:author>Michael R. Farnum</itunes:author><itunes:summary> Link to MP3 Here is Episode 17. Sorry for the delay in getting it out. Last week was extremely rough for Jim and I, but we are back at full strength now. Well, maybe 85% strength anyway. In this show Jim and I relate the latest news as always, then we have some [...]</itunes:summary><itunes:keywords>security,Michael,R,Farnum,podcast,blog,information,security,infosec</itunes:keywords><feedburner:origLink>http://infosecplace.com/blog/2009/03/19/an-information-security-place-podcast-episode-17/</feedburner:origLink></item>
		<item>
		<title>No podcast this week</title>
		<link>http://feedproxy.google.com/~r/AnInformationSecurityPlace/~3/WB8IrTdIDOg/</link>
		<comments>http://infosecplace.com/blog/2009/03/12/no-podcast-this-week/#comments</comments>
		<pubDate>Thu, 12 Mar 2009 15:17:50 +0000</pubDate>
		<dc:creator>m1a1vet@infosecplace.com (Michael R. Farnum)</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://infosecplace.com/blog/2009/03/12/no-podcast-this-week/</guid>
		<description><![CDATA[Sorry everyone.&#160; Jim and I are big time swamped with work right now.&#160; Plus I have a friend is very ill, and I am tied up with that as well.&#160; We’ll be back next week.
Vet
]]></description>
			<content:encoded><![CDATA[<p>Sorry everyone.&#160; Jim and I are big time swamped with work right now.&#160; Plus I have a friend is very ill, and I am tied up with that as well.&#160; We’ll be back next week.</p>
<p>Vet</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=WB8IrTdIDOg:vHvizWBNE1U:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=WB8IrTdIDOg:vHvizWBNE1U:5lVTG1FW49M"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=5lVTG1FW49M" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=WB8IrTdIDOg:vHvizWBNE1U:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=WB8IrTdIDOg:vHvizWBNE1U:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=WB8IrTdIDOg:vHvizWBNE1U:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=WB8IrTdIDOg:vHvizWBNE1U:D7DqB2pKExk"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?i=WB8IrTdIDOg:vHvizWBNE1U:D7DqB2pKExk" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?a=WB8IrTdIDOg:vHvizWBNE1U:63t7Ie-LG7Y"><img src="http://feeds.feedburner.com/~ff/AnInformationSecurityPlace?d=63t7Ie-LG7Y" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://infosecplace.com/blog/2009/03/12/no-podcast-this-week/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://infosecplace.com/blog/2009/03/12/no-podcast-this-week/</feedburner:origLink></item>
	<copyright>Copyright Michael R. Farnum</copyright><media:credit role="author">Michael R. Farnum</media:credit><media:rating>nonadult</media:rating></channel>
</rss>
