<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:blogger='http://schemas.google.com/blogger/2008' xmlns:georss='http://www.georss.org/georss' xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-328486722023700647</id><updated>2024-08-28T15:21:31.905-07:00</updated><category term="conference"/><category term="database"/><category term="lesson"/><category term="log"/><category term="sector"/><category term="security conference"/><category term="thoughts"/><category term="toronto"/><title type='text'>GEEK Speek</title><subtitle type='html'></subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://rg0d.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default'/><link rel='alternate' type='text/html' href='http://rg0d.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>rG0d (CISSP, GCIH, GEEK)</name><uri>http://www.blogger.com/profile/16695420070891007433</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='https://img1.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>10</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-328486722023700647.post-4481756491305017553</id><published>2007-05-31T10:26:00.001-07:00</published><updated>2007-05-31T11:08:08.245-07:00</updated><title type='text'></title><summary type="text">Back in January (damn, that seems so long ago)  I made the statement that, despite the Microsoft push for Vista as a security panacea, security is not a good reason to move to Vista (see So long Superman... Vista will save the world).CRN Australia today just published an article &quot;Vista, XP users equally at peril&quot; detailing Test Center engineers validation of my statements.Reading through their </summary><link rel='replies' type='application/atom+xml' href='http://rg0d.blogspot.com/feeds/4481756491305017553/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment/fullpage/post/328486722023700647/4481756491305017553' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/4481756491305017553'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/4481756491305017553'/><link rel='alternate' type='text/html' href='http://rg0d.blogspot.com/2007/05/back-in-january-damn-that-seems-so-long.html' title=''/><author><name>rG0d (CISSP, GCIH, GEEK)</name><uri>http://www.blogger.com/profile/16695420070891007433</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='https://img1.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-328486722023700647.post-5824849179677184466</id><published>2007-04-09T14:41:00.000-07:00</published><updated>2007-04-09T15:41:24.612-07:00</updated><title type='text'>Credit Agencies - The Ultimate Scam</title><summary type="text">Adam, over at EmergentChaos recently blogged about The Cost of Disclosures, and a Proposal, wherein he proposes that there must be [paraphrasing] some trade-offs to disclosing security breaches of non-critical information vs. breaches of significant information. One statement in particular caught my eye:I&#39;d be perfectly willing to forgo personal notification of the theft of credit card numbers. I</summary><link rel='replies' type='application/atom+xml' href='http://rg0d.blogspot.com/feeds/5824849179677184466/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment/fullpage/post/328486722023700647/5824849179677184466' title='6 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/5824849179677184466'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/5824849179677184466'/><link rel='alternate' type='text/html' href='http://rg0d.blogspot.com/2007/04/credit-agencies-ultimate-scam.html' title='Credit Agencies - The Ultimate Scam'/><author><name>rG0d (CISSP, GCIH, GEEK)</name><uri>http://www.blogger.com/profile/16695420070891007433</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='https://img1.blogblog.com/img/b16-rounded.gif'/></author><thr:total>6</thr:total></entry><entry><id>tag:blogger.com,1999:blog-328486722023700647.post-8991791763637191397</id><published>2007-03-30T12:52:00.000-07:00</published><updated>2007-03-30T13:20:07.831-07:00</updated><title type='text'>Blog Redirects</title><summary type="text">I&#39;ve never been a big fan of people who post blogs that just point to another blog posting, essentially reiterating the original point.  I&#39;ve always thought the motivations behind these can too often be lame attempts at name recognition, increase hit-counters (ad-counters), or just the &quot;I want to be part of something bigger&quot; that I feel permeates the blogosphere.I do feel there is some merit in </summary><link rel='replies' type='application/atom+xml' href='http://rg0d.blogspot.com/feeds/8991791763637191397/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment/fullpage/post/328486722023700647/8991791763637191397' title='4 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/8991791763637191397'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/8991791763637191397'/><link rel='alternate' type='text/html' href='http://rg0d.blogspot.com/2007/03/blog-redirects.html' title='Blog Redirects'/><author><name>rG0d (CISSP, GCIH, GEEK)</name><uri>http://www.blogger.com/profile/16695420070891007433</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='https://img1.blogblog.com/img/b16-rounded.gif'/></author><thr:total>4</thr:total></entry><entry><id>tag:blogger.com,1999:blog-328486722023700647.post-754816644861572986</id><published>2007-03-27T09:08:00.000-07:00</published><updated>2007-03-27T09:41:56.769-07:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="conference"/><category scheme="http://www.blogger.com/atom/ns#" term="sector"/><category scheme="http://www.blogger.com/atom/ns#" term="security conference"/><category scheme="http://www.blogger.com/atom/ns#" term="toronto"/><title type='text'>New Toronto Security Conference</title><summary type="text">In the past, Toronto has hosted a bunch of Security conferences, but most of these, like InfoSec Canada, are essentially technology trade-shows. Surprisingly, there hasn&#39;t been anything like CanSecWest in Toronto which focuses on showing people new and interesting ways that they may be attacked, and not simply pimping their products - essentially, educating the security geeks (like me) on the </summary><link rel='replies' type='application/atom+xml' href='http://rg0d.blogspot.com/feeds/754816644861572986/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment/fullpage/post/328486722023700647/754816644861572986' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/754816644861572986'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/754816644861572986'/><link rel='alternate' type='text/html' href='http://rg0d.blogspot.com/2007/03/new-toronto-security-conference.html' title='New Toronto Security Conference'/><author><name>rG0d (CISSP, GCIH, GEEK)</name><uri>http://www.blogger.com/profile/16695420070891007433</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='https://img1.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-328486722023700647.post-2925278899138753980</id><published>2007-03-23T11:19:00.000-07:00</published><updated>2007-03-23T11:23:55.869-07:00</updated><title type='text'>Whitehouse Directive 2</title><summary type="text">SANS just posted more info - there are now links to these documents which didn&#39;t exist up to yesterday (I&#39;ve been checking daily).UPDATE: FLASH REPORT ON THE WHITE HOUSE SECURE CONFIGURATION MANDATEThe White House posted a second memo last night, confirming its mandate that all federal agencies must use secure configurations if they choose to deploy systems that run Windows Vista or XP. The </summary><link rel='replies' type='application/atom+xml' href='http://rg0d.blogspot.com/feeds/2925278899138753980/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment/fullpage/post/328486722023700647/2925278899138753980' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/2925278899138753980'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/2925278899138753980'/><link rel='alternate' type='text/html' href='http://rg0d.blogspot.com/2007/03/whitehouse-directive-2.html' title='Whitehouse Directive 2'/><author><name>rG0d (CISSP, GCIH, GEEK)</name><uri>http://www.blogger.com/profile/16695420070891007433</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='https://img1.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-328486722023700647.post-2306528898171821408</id><published>2007-03-21T05:06:00.000-07:00</published><updated>2007-03-21T05:31:00.208-07:00</updated><title type='text'>Whitehouse Directive: All systems acquisitions must run on Hardened Configurations</title><summary type="text">I can&#39;t seem to find a link at either DHS or Whitehouse.gov sites yet, but SANS released this information yesterday:FLASH ANNOUNCEMENT: The White House just released (at 9 AM Tuesday, March 20) a directive to all Federal CIOs, requiring that all new IT system acquisitions, beginning June 30, 2007, use a common secure configuration and, even more importantly, requiring information technology </summary><link rel='replies' type='application/atom+xml' href='http://rg0d.blogspot.com/feeds/2306528898171821408/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment/fullpage/post/328486722023700647/2306528898171821408' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/2306528898171821408'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/2306528898171821408'/><link rel='alternate' type='text/html' href='http://rg0d.blogspot.com/2007/03/whitehouse-directive-all-systems.html' title='Whitehouse Directive: All systems acquisitions must run on Hardened Configurations'/><author><name>rG0d (CISSP, GCIH, GEEK)</name><uri>http://www.blogger.com/profile/16695420070891007433</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='https://img1.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-328486722023700647.post-1915360192361437597</id><published>2007-01-09T06:20:00.000-08:00</published><updated>2007-01-09T18:13:26.832-08:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="database"/><category scheme="http://www.blogger.com/atom/ns#" term="lesson"/><category scheme="http://www.blogger.com/atom/ns#" term="log"/><title type='text'>Dealing with Logs (Part 1): What Vendors don&#39;t tell you about Log Management</title><summary type="text">One of my pet projects is log management. Yeah, I know - log management doesn&#39;t sound like fun - and most of the time it&#39;s really not. I became interested in log management when the company I work for wanted to consolidate all the firewall, IPS, etc. logs for easy review and, ideally, correlation. This became a pet project of mine simply because of all the MISINFORMATION many of the vendors were </summary><link rel='replies' type='application/atom+xml' href='http://rg0d.blogspot.com/feeds/1915360192361437597/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment/fullpage/post/328486722023700647/1915360192361437597' title='8 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/1915360192361437597'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/1915360192361437597'/><link rel='alternate' type='text/html' href='http://rg0d.blogspot.com/2007/01/dealing-with-logs-part-1-what-vendors.html' title='Dealing with Logs (Part 1): What Vendors don&#39;t tell you about Log Management'/><author><name>rG0d (CISSP, GCIH, GEEK)</name><uri>http://www.blogger.com/profile/16695420070891007433</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='https://img1.blogblog.com/img/b16-rounded.gif'/></author><thr:total>8</thr:total></entry><entry><id>tag:blogger.com,1999:blog-328486722023700647.post-8924225828633994586</id><published>2007-01-04T06:44:00.001-08:00</published><updated>2007-01-04T06:48:28.731-08:00</updated><title type='text'>Month of Apple Bugs</title><summary type="text">In my last post (just a few minutes ago) I mentioned that it&#39;s the Month of Apple Bugs. Logging onto a local security user&#39;s group website that I&#39;m member of: TASK, a fellow geek (opensrc) posted an article on the forum pointing out that Landon Fuller is attempting to patch the each of the Apple vulnerabilities each day after they come out using Application Enhancer.Kudos to Landon - sounds like </summary><link rel='replies' type='application/atom+xml' href='http://rg0d.blogspot.com/feeds/8924225828633994586/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment/fullpage/post/328486722023700647/8924225828633994586' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/8924225828633994586'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/8924225828633994586'/><link rel='alternate' type='text/html' href='http://rg0d.blogspot.com/2007/01/month-of-apple-bugs.html' title='Month of Apple Bugs'/><author><name>rG0d (CISSP, GCIH, GEEK)</name><uri>http://www.blogger.com/profile/16695420070891007433</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='https://img1.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-328486722023700647.post-7182346171735308137</id><published>2007-01-04T04:56:00.000-08:00</published><updated>2007-01-04T06:14:34.671-08:00</updated><title type='text'>So long Superman... Vista will save the world</title><summary type="text">I&#39;ve read a lot of articles recently like this one, often quoting (mis-representing?) some very respectable sources such as SANS and Postini. They imply that Vista will somehow magically fix all the security woes that MS has been undergoing and that the internet will be a magically safer place. I&#39;m sorry people, but that&#39;s just a pipedream!Is Vista more secure than previous OSes - for sure. Will </summary><link rel='replies' type='application/atom+xml' href='http://rg0d.blogspot.com/feeds/7182346171735308137/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment/fullpage/post/328486722023700647/7182346171735308137' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/7182346171735308137'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/7182346171735308137'/><link rel='alternate' type='text/html' href='http://rg0d.blogspot.com/2007/01/so-long-superman-vista-will-save-world.html' title='So long Superman... Vista will save the world'/><author><name>rG0d (CISSP, GCIH, GEEK)</name><uri>http://www.blogger.com/profile/16695420070891007433</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='https://img1.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-328486722023700647.post-6333693285719274496</id><published>2007-01-03T07:50:00.000-08:00</published><updated>2007-01-03T08:14:29.601-08:00</updated><category scheme="http://www.blogger.com/atom/ns#" term="thoughts"/><title type='text'>Gotta start somewhere</title><summary type="text">They say starting something new is always difficult - and surprisingly, I&#39;ve put off creating my own blog for a long while. Not sure why that is: I&#39;m not a shy person, I don&#39;t really care if people disagree with me or don&#39;t like what I have to say, and I&#39;m certainly not afraid of my own opinion.So today, being a nice, slow day at work :) I decided to finally step up and do what several of my </summary><link rel='replies' type='application/atom+xml' href='http://rg0d.blogspot.com/feeds/6333693285719274496/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment/fullpage/post/328486722023700647/6333693285719274496' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/6333693285719274496'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/328486722023700647/posts/default/6333693285719274496'/><link rel='alternate' type='text/html' href='http://rg0d.blogspot.com/2007/01/gotta-start-somewhere.html' title='Gotta start somewhere'/><author><name>rG0d (CISSP, GCIH, GEEK)</name><uri>http://www.blogger.com/profile/16695420070891007433</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='https://img1.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry></feed>