<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>Infosec Ramblings</title>
	
	<link>http://www.infosecramblings.com</link>
	<description>ramblings on various information security topics</description>
	<lastBuildDate>Mon, 09 Nov 2009 21:51:04 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.5</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.feedburner.com/InfosecRamblings" type="application/rss+xml" /><feedburner:emailServiceId>InfosecRamblings</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com" /><item>
		<title>Interesting Information Security Bits for 11/09/2009</title>
		<link>http://feedproxy.google.com/~r/InfosecRamblings/~3/5dB-r6AwL6o/</link>
		<comments>http://www.infosecramblings.com/2009/11/09/interesting-information-security-bits-for-11092009/#comments</comments>
		<pubDate>Mon, 09 Nov 2009 21:48:18 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[class]]></category>
		<category><![CDATA[dns]]></category>
		<category><![CDATA[education]]></category>
		<category><![CDATA[exploits]]></category>
		<category><![CDATA[imaging]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[pen testing]]></category>
		<category><![CDATA[program]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[worm]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=1681</guid>
		<description><![CDATA[Good afternoon everybody! I hope your day is going well.
Here are today&#8217;s Interesting Information Security Bits from around the web.

Andy poses the question (paraphrased)  &#8220;You get to build a security program from the ground up. How do you go about it?&#8221; Go over and offer your thoughts.
Building a security program from the ground up [...]]]></description>
			<content:encoded><![CDATA[<p>Good afternoon everybody! I hope your day is going well.</p>
<p>Here are today&#8217;s Interesting Information Security Bits from around the web.</p>
<ol>
<li>Andy poses the question (paraphrased)  &#8220;You get to build a security program from the ground up. How do you go about it?&#8221; Go over and offer your thoughts.<br />
<a href="http://www.andyitguy.com/blog/?p=822&amp;cpage=1#comment-11355" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.andyitguy.com/blog/?p=822_amp_cpage=1_comment-11355&amp;referer=');">Building a security program from the ground up &gt;&gt; Andy ITGuy</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/infosec-program" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/infosec-program?referer=');">infosec-program</a> )</li>
<li>Want to learn how to write exploits. You should really check out Dino&#8217;s exploitation class. I&#8217;ll be going through it at my earliest convenience. Oh, and by the way, it&#8217;s free.<br />
<a href="http://cryptocity.squarespace.com/exploitation" target="_blank" onclick="pageTracker._trackPageview('/outgoing/cryptocity.squarespace.com/exploitation?referer=');">Penetration Testing and Vulnerability Analysis &#8211; Exploitation</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/class" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/class?referer=');">class</a> <a href="http://delicious.com/rigginsk/education" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/education?referer=');">education</a> <a href="http://delicious.com/rigginsk/explolits" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/explolits?referer=');">explolits</a> )</li>
<li>From the site: A group of PenTesters/Researchers have gotten together with the purpose of posting their useful scripts. Feel free to submit your scripts, we will gladly review them, even post them crediting you. You can submit them at scripts@pentesterscripting.com<br />
<a href="http://www.pentesterscripting.com/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.pentesterscripting.com/?referer=');">start [PenTester Scripting]</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/pentest" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/pentest?referer=');">pentest</a> <a href="http://delicious.com/rigginsk/scripts" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/scripts?referer=');">scripts</a> <a href="http://delicious.com/rigginsk/tools" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/tools?referer=');">tools</a> )</li>
<li>Some interesting thoughts that Richard shares from a talk given by Michael Hayden.<br />
<a href="http://taosecurity.blogspot.com/2009/11/notes-from-talk-by-michael-hayden.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/taosecurity.blogspot.com/2009/11/notes-from-talk-by-michael-hayden.html?referer=');">TaoSecurity: Notes from Talk by Michael Hayden</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/general" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/general?referer=');">general</a> )</li>
<li>I agree with the Infosec Cynic. Allowing non-Latin characters is going to open up a whole new way for evil to be propagated.<br />
<a href="http://www.infoseccynic.com/2009/11/08/international-websites/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.infoseccynic.com/2009/11/08/international-websites/?referer=');">International Websites | The Infosec Cynic</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/dns" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/dns?referer=');">dns</a> )</li>
<li>If you haven&#8217;t heard yet, there is a worm running around that Rick Rolls iPhones that have been jailbroken. This post isn&#8217;t really about the worm, but about the individual who wrote, released and then talked about doing it.<br />
<a href="http://www.sophos.com/blogs/gc/g/2009/11/09/worm-author-tells-media-initially-infected-100-iphones/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.sophos.com/blogs/gc/g/2009/11/09/worm-author-tells-media-initially-infected-100-iphones/?referer=');">Worm author tells media he initially infected 100 iPhones | Graham Cluley&#8217;s blog</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/general" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/general?referer=');">general</a> <a href="http://delicious.com/rigginsk/worm" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/worm?referer=');">worm</a> <a href="http://delicious.com/rigginsk/iphone" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/iphone?referer=');">iphone</a> )</li>
<li>A nifty use of netcat to image a drive over the network.<br />
<a href="http://www.roer.com/node/503" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.roer.com/node/503?referer=');">How-to: Cloning a (Laptop) Hard Drive using DD over the network | Roer.com &#8211; Kai Roer&#8217;s Rants on Infosec</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/backup" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/backup?referer=');">backup</a> <a href="http://delicious.com/rigginsk/imaging" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/imaging?referer=');">imaging</a> )</li>
</ol>
<p>That&#8217;s it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank" onclick="pageTracker._trackPageview('/outgoing/feeds2.feedburner.com/InfosecRamblings?referer=');">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=5dB-r6AwL6o:fnbcIVfxGAI:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=5dB-r6AwL6o:fnbcIVfxGAI:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=5dB-r6AwL6o:fnbcIVfxGAI:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=5dB-r6AwL6o:fnbcIVfxGAI:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=5dB-r6AwL6o:fnbcIVfxGAI:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=5dB-r6AwL6o:fnbcIVfxGAI:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=5dB-r6AwL6o:fnbcIVfxGAI:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=5dB-r6AwL6o:fnbcIVfxGAI:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=5dB-r6AwL6o:fnbcIVfxGAI:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=5dB-r6AwL6o:fnbcIVfxGAI:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=l6gmwiTKsz0" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/InfosecRamblings/~4/5dB-r6AwL6o" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2009/11/09/interesting-information-security-bits-for-11092009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecramblings.com/2009/11/09/interesting-information-security-bits-for-11092009/</feedburner:origLink></item>
		<item>
		<title>Interesting Information Security Bits for 11/06/2009</title>
		<link>http://feedproxy.google.com/~r/InfosecRamblings/~3/NDZRGYUZlw4/</link>
		<comments>http://www.infosecramblings.com/2009/11/06/interesting-information-security-bits-for-11062009/#comments</comments>
		<pubDate>Sat, 07 Nov 2009 01:47:08 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[breach law]]></category>
		<category><![CDATA[challenge]]></category>
		<category><![CDATA[naisg]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=1678</guid>
		<description><![CDATA[Good afternoon everybody! I hope your day is going well.
Here are today&#8217;s Interesting Information Security Bits from around the web.

I can&#8217;t remember if I pointed to part one of this, but I think I did. Anyway, here are the answers. There is a link to part 1 if you haven&#8217;t seen it yet.
Can you find [...]]]></description>
			<content:encoded><![CDATA[<p>Good afternoon everybody! I hope your day is going well.</p>
<p>Here are today&#8217;s Interesting Information Security Bits from around the web.</p>
<ol>
<li>I can&#8217;t remember if I pointed to part one of this, but I think I did. Anyway, here are the answers. There is a link to part 1 if you haven&#8217;t seen it yet.<br />
<a href="http://www.securityninja.co.uk/can-you-find-the-vulnerabilites-part-two" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.securityninja.co.uk/can-you-find-the-vulnerabilites-part-two?referer=');">Can you find the vulnerabilites? Part Two &lt;&lt; Security Ninja</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/challenge" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/challenge?referer=');">challenge</a> <a href="http://delicious.com/rigginsk/answers" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/answers?referer=');">answers</a> )</li>
<li>The Atlanta NAISG chapter is celebrating their one year anniversary. You should go check it out next week if you are in the area.<br />
<a href="http://www.andyitguy.com/blog/?p=820" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.andyitguy.com/blog/?p=820&amp;referer=');">Atlanta NAISG November Meeting &gt;&gt; Andy ITGuy</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/meetings" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/meetings?referer=');">meetings</a> <a href="http://delicious.com/rigginsk/naisg" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/naisg?referer=');">naisg</a> <a href="http://delicious.com/rigginsk/atlanta" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/atlanta?referer=');">atlanta</a> )</li>
<li>A couple of federal bills about breaches are getting closer to possibly becoming laws. See inside for a bit more detail.<br />
<a href="http://www.wired.com/threatlevel/2009/11/breach-laws/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.wired.com/threatlevel/2009/11/breach-laws/?referer=');">National Data Breach Laws Move Through Senate | Threat Level | Wired.com</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/data-leakage" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/data-leakage?referer=');">data-leakage</a> <a href="http://delicious.com/rigginsk/breach" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/breach?referer=');">breach</a> <a href="http://delicious.com/rigginsk/law" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/law?referer=');">law</a> )</li>
</ol>
<p>That&#8217;s it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank" onclick="pageTracker._trackPageview('/outgoing/feeds2.feedburner.com/InfosecRamblings?referer=');">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=NDZRGYUZlw4:ZEHthr-Aojc:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=NDZRGYUZlw4:ZEHthr-Aojc:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=NDZRGYUZlw4:ZEHthr-Aojc:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=NDZRGYUZlw4:ZEHthr-Aojc:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=NDZRGYUZlw4:ZEHthr-Aojc:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=NDZRGYUZlw4:ZEHthr-Aojc:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=NDZRGYUZlw4:ZEHthr-Aojc:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=NDZRGYUZlw4:ZEHthr-Aojc:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=NDZRGYUZlw4:ZEHthr-Aojc:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=NDZRGYUZlw4:ZEHthr-Aojc:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=l6gmwiTKsz0" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/InfosecRamblings/~4/NDZRGYUZlw4" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2009/11/06/interesting-information-security-bits-for-11062009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecramblings.com/2009/11/06/interesting-information-security-bits-for-11062009/</feedburner:origLink></item>
		<item>
		<title>Interesting Information Security Bits for 11/05/2009</title>
		<link>http://feedproxy.google.com/~r/InfosecRamblings/~3/a5QXoteCYbU/</link>
		<comments>http://www.infosecramblings.com/2009/11/05/interesting-information-security-bits-for-11052009/#comments</comments>
		<pubDate>Thu, 05 Nov 2009 23:48:45 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[cheet sheets]]></category>
		<category><![CDATA[cloud]]></category>
		<category><![CDATA[metricon]]></category>
		<category><![CDATA[ssl]]></category>
		<category><![CDATA[tls]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=1676</guid>
		<description><![CDATA[Good afternoon everybody! I hope your day is going well.
Here are today&#8217;s Interesting Information Security Bits from around the web.

There is some truth in this post. A corollary is the mommy/daddy principle. I&#8217;ll ask mommy and if I don&#8217;t get the answer I want I&#8217;ll ask daddy.
Network Security Blog &#62;&#62; I&#8217;ll do anything! Absolutely anything!
Tags: [...]]]></description>
			<content:encoded><![CDATA[<p>Good afternoon everybody! I hope your day is going well.</p>
<p>Here are today&#8217;s Interesting Information Security Bits from around the web.</p>
<ol>
<li>There is some truth in this post. A corollary is the mommy/daddy principle. I&#8217;ll ask mommy and if I don&#8217;t get the answer I want I&#8217;ll ask daddy.<br />
<a href="http://www.mckeay.net/2009/11/04/ill-do-anything-absolutely-anything/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.mckeay.net/2009/11/04/ill-do-anything-absolutely-anything/?referer=');">Network Security Blog &gt;&gt; I&#8217;ll do anything! Absolutely anything!</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/general" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/general?referer=');">general</a> )</li>
<li>The CFP for Metricon is open.<br />
<a href="http://newschoolsecurity.com/2009/11/mini-metricon-4-5-call-for-participation/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/newschoolsecurity.com/2009/11/mini-metricon-4-5-call-for-participation/?referer=');">Mini Metricon 4.5 Call For Participation &lt;&lt; The New School of Information Security</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/conferences" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/conferences?referer=');">conferences</a> <a href="http://delicious.com/rigginsk/cfp" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/cfp?referer=');">cfp</a> <a href="http://delicious.com/rigginsk/metricon" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/metricon?referer=');">metricon</a> )</li>
<li>This is a must see.<br />
<a href="http://www.youtube.com/watch?v=jnrs2Bsfpmk&amp;feature=player_embedded" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.youtube.com/watch?v=jnrs2Bsfpmk_amp_feature=player_embedded&amp;referer=');">YouTube &#8211; Marcus J. Ranum on Cloud Computing Security</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/cloud" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/cloud?referer=');">cloud</a> <a href="http://delicious.com/rigginsk/humor" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/humor?referer=');">humor</a> )</li>
<li>Here is the mother lode of cheat sheets. Focused on developers, but there are a few that are security related.<br />
<a href="http://devcheatsheet.com/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/devcheatsheet.com/?referer=');">Cheat Sheet and Quick Reference Card Directory | devcheatsheet.com &#8211; Cheat Sheets for Developers.</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/cheatsheet" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/cheatsheet?referer=');">cheatsheet</a> )</li>
<li>This is the author&#8217;s page regarding the SSL/TLS vulnerability just announced. It was a bit more reader friendly and promises to be so again, but the information is still there.<br />
<a href="http://extendedsubset.com/?p=8" target="_blank" onclick="pageTracker._trackPageview('/outgoing/extendedsubset.com/?p=8&amp;referer=');">extendedsubset.com</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/tls" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/tls?referer=');">tls</a> <a href="http://delicious.com/rigginsk/ssl" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/ssl?referer=');">ssl</a> <a href="http://delicious.com/rigginsk/vulnerability" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/vulnerability?referer=');">vulnerability</a> )</li>
</ol>
<p>That&#8217;s it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank" onclick="pageTracker._trackPageview('/outgoing/feeds2.feedburner.com/InfosecRamblings?referer=');">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=a5QXoteCYbU:eOLiaO8ApP0:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=a5QXoteCYbU:eOLiaO8ApP0:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=a5QXoteCYbU:eOLiaO8ApP0:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=a5QXoteCYbU:eOLiaO8ApP0:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=a5QXoteCYbU:eOLiaO8ApP0:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=a5QXoteCYbU:eOLiaO8ApP0:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=a5QXoteCYbU:eOLiaO8ApP0:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=a5QXoteCYbU:eOLiaO8ApP0:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=a5QXoteCYbU:eOLiaO8ApP0:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=a5QXoteCYbU:eOLiaO8ApP0:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=l6gmwiTKsz0" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/InfosecRamblings/~4/a5QXoteCYbU" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2009/11/05/interesting-information-security-bits-for-11052009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecramblings.com/2009/11/05/interesting-information-security-bits-for-11052009/</feedburner:origLink></item>
		<item>
		<title>Interesting Information Security Bits for 11/04/2009</title>
		<link>http://feedproxy.google.com/~r/InfosecRamblings/~3/73tGaMGFb20/</link>
		<comments>http://www.infosecramblings.com/2009/11/04/interesting-information-security-bits-for-11042009/#comments</comments>
		<pubDate>Thu, 05 Nov 2009 03:57:53 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[milworm]]></category>
		<category><![CDATA[wifi]]></category>
		<category><![CDATA[Windows 7]]></category>
		<category><![CDATA[wordpress]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=1672</guid>
		<description><![CDATA[Good afternoon everybody! I hope your day is going well.
Here are today&#8217;s Interesting Information Security Bits from around the web.

Be careful. It doesn&#8217;t appear that it is very hard to turn you Windows 7 install into an wireless access point.
Errata Security: Windows 7 includes soft-ap
Tags: ( windows-7 wifi )
Some good tips for making sure your [...]]]></description>
			<content:encoded><![CDATA[<p>Good afternoon everybody! I hope your day is going well.</p>
<p>Here are today&#8217;s Interesting Information Security Bits from around the web.</p>
<ol>
<li>Be careful. It doesn&#8217;t appear that it is very hard to turn you Windows 7 install into an wireless access point.<br />
<a href="http://erratasec.blogspot.com/2009/11/windows-7-includes-soft-ap.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/erratasec.blogspot.com/2009/11/windows-7-includes-soft-ap.html?referer=');">Errata Security: Windows 7 includes soft-ap</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/windows-7" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/windows-7?referer=');">windows-7</a> <a href="http://delicious.com/rigginsk/wifi" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/wifi?referer=');">wifi</a> )</li>
<li>Some good tips for making sure your Wordpress install is as secure as possible.<br />
<a href="http://www.hackosis.com/10-ways-to-secure-your-wordpress-install/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.hackosis.com/10-ways-to-secure-your-wordpress-install/?referer=');">10 Ways To Secure Your Wordpress Install</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/wordpress" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/wordpress?referer=');">wordpress</a> )</li>
<li>Offensive Security is setting up the next iteration of milw0rm.<br />
<a href="http://www.offensive-security.com/blog/offsec/offensive-security-exploit-archive/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.offensive-security.com/blog/offsec/offensive-security-exploit-archive/?referer=');">Leaders in Online Information Security Training &gt;&gt; Offensive Security Exploit Archive</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/milw0rm" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/milw0rm?referer=');">milw0rm</a> <a href="http://delicious.com/rigginsk/offensive-security" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/offensive-security?referer=');">offensive-security</a> )</li>
</ol>
<p>That&#8217;s it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank" onclick="pageTracker._trackPageview('/outgoing/feeds2.feedburner.com/InfosecRamblings?referer=');">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=73tGaMGFb20:pI9GoECqJZo:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=73tGaMGFb20:pI9GoECqJZo:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=73tGaMGFb20:pI9GoECqJZo:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=73tGaMGFb20:pI9GoECqJZo:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=73tGaMGFb20:pI9GoECqJZo:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=73tGaMGFb20:pI9GoECqJZo:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=73tGaMGFb20:pI9GoECqJZo:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=73tGaMGFb20:pI9GoECqJZo:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=73tGaMGFb20:pI9GoECqJZo:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=73tGaMGFb20:pI9GoECqJZo:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=l6gmwiTKsz0" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/InfosecRamblings/~4/73tGaMGFb20" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2009/11/04/interesting-information-security-bits-for-11042009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecramblings.com/2009/11/04/interesting-information-security-bits-for-11042009/</feedburner:origLink></item>
		<item>
		<title>Interesting Information Security Bits for 11/03/2009</title>
		<link>http://feedproxy.google.com/~r/InfosecRamblings/~3/g-zMj-Cczh0/</link>
		<comments>http://www.infosecramblings.com/2009/11/03/interesting-information-security-bits-for-11032009/#comments</comments>
		<pubDate>Wed, 04 Nov 2009 01:07:40 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[anti-virus]]></category>
		<category><![CDATA[database]]></category>
		<category><![CDATA[virtualization]]></category>
		<category><![CDATA[webappsec]]></category>
		<category><![CDATA[Windows 7]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=1670</guid>
		<description><![CDATA[Good afternoon everybody! I hope your day is going well.
Here are today&#8217;s Interesting Information Security Bits from around the web.

A few days ago I pointed out an article that discussed some issues with the default settings for UAC in Windows 7. This article shows that the criticism in the other article is well earned.
Windows 7 [...]]]></description>
			<content:encoded><![CDATA[<p>Good afternoon everybody! I hope your day is going well.</p>
<p>Here are today&#8217;s Interesting Information Security Bits from around the web.</p>
<ol>
<li>A few days ago I pointed out an article that discussed some issues with the default settings for UAC in Windows 7. This article shows that the criticism in the other article is well earned.<br />
<a href="http://www.sophos.com/blogs/chetw/g/2009/11/03/windows-7-vulnerable-8-10-viruses/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.sophos.com/blogs/chetw/g/2009/11/03/windows-7-vulnerable-8-10-viruses/?referer=');">Windows 7 vulnerable to 8 out of 10 viruses | Chester Wisniewski&#8217;s Blog</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/virus" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/virus?referer=');">virus</a> <a href="http://delicious.com/rigginsk/windows-7" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/windows-7?referer=');">windows-7</a> )</li>
<li>Interested in cross-subdomain cookie attacks? Check out the paper that mckt wrote. It is based on his presentation at Toorcon recently.<br />
<a href="http://skeptikal.org/2009/11/cross-subdomain-cookie-attacks.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/skeptikal.org/2009/11/cross-subdomain-cookie-attacks.html?referer=');">Skeptikal.org: Cross-subdomain Cookie Attacks</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/webappsec" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/webappsec?referer=');">webappsec</a> <a href="http://delicious.com/rigginsk/exploits" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/exploits?referer=');">exploits</a> )</li>
<li>Thinking about virtualizing your databases? Make sure you are doing so for any of the mythical reasons that Adriane addresses in this article.<br />
<a href="http://securosis.com/blog/myths-surrounding-databases-in-virtual-environments/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/securosis.com/blog/myths-surrounding-databases-in-virtual-environments/?referer=');">Securosis Blog | Myths Surrounding Databases in Virtual Environments</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/virtualization" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/virtualization?referer=');">virtualization</a> <a href="http://delicious.com/rigginsk/database" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/database?referer=');">database</a> )</li>
</ol>
<p>That&#8217;s it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank" onclick="pageTracker._trackPageview('/outgoing/feeds2.feedburner.com/InfosecRamblings?referer=');">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=g-zMj-Cczh0:3WdDSlmtL1s:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=g-zMj-Cczh0:3WdDSlmtL1s:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=g-zMj-Cczh0:3WdDSlmtL1s:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=g-zMj-Cczh0:3WdDSlmtL1s:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=g-zMj-Cczh0:3WdDSlmtL1s:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=g-zMj-Cczh0:3WdDSlmtL1s:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=g-zMj-Cczh0:3WdDSlmtL1s:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=g-zMj-Cczh0:3WdDSlmtL1s:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=g-zMj-Cczh0:3WdDSlmtL1s:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=g-zMj-Cczh0:3WdDSlmtL1s:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=l6gmwiTKsz0" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/InfosecRamblings/~4/g-zMj-Cczh0" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2009/11/03/interesting-information-security-bits-for-11032009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecramblings.com/2009/11/03/interesting-information-security-bits-for-11032009/</feedburner:origLink></item>
		<item>
		<title>Interesting Information Security Bits for 11/02/2009</title>
		<link>http://feedproxy.google.com/~r/InfosecRamblings/~3/VYn8HZfv2xQ/</link>
		<comments>http://www.infosecramblings.com/2009/11/02/interesting-information-security-bits-for-11022009/#comments</comments>
		<pubDate>Mon, 02 Nov 2009 21:21:34 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[cloud]]></category>
		<category><![CDATA[cracking]]></category>
		<category><![CDATA[esapi]]></category>
		<category><![CDATA[fud]]></category>
		<category><![CDATA[intelligence gathering]]></category>
		<category><![CDATA[owasp]]></category>
		<category><![CDATA[passwords]]></category>
		<category><![CDATA[psychology]]></category>
		<category><![CDATA[social media]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=1667</guid>
		<description><![CDATA[Good afternoon everybody! I hope your day is going well.
Here are today&#8217;s Interesting Information Security Bits from around the web.

A very good article on an issue that we need to think about as those who are very social media focused are working in our organizations.
Lifestyle Hackers &#8211; CSO Online &#8211; Security and Risk
Tags: ( social-media [...]]]></description>
			<content:encoded><![CDATA[<p>Good afternoon everybody! I hope your day is going well.</p>
<p>Here are today&#8217;s Interesting Information Security Bits from around the web.</p>
<ol>
<li>A very good article on an issue that we need to think about as those who are very social media focused are working in our organizations.<br />
<a href="http://www.csoonline.com/article/506309/Lifestyle_Hackers" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.csoonline.com/article/506309/Lifestyle_Hackers?referer=');">Lifestyle Hackers &#8211; CSO Online &#8211; Security and Risk</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/social-media" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/social-media?referer=');">social-media</a> )</li>
<li>You know you&#8217;ve been wanting to try it.<br />
<a href="http://news.electricalchemy.net/2009/10/cracking-passwords-in-cloud.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/news.electricalchemy.net/2009/10/cracking-passwords-in-cloud.html?referer=');">Electric Alchemy: Cracking Passwords in the Cloud: Breaking PGP on EC2 with EDPR</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/passwords" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/passwords?referer=');">passwords</a> <a href="http://delicious.com/rigginsk/cloud" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/cloud?referer=');">cloud</a> <a href="http://delicious.com/rigginsk/cracking" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/cracking?referer=');">cracking</a> )</li>
<li>Wonder what the latest changes to MA 201 CMR 17.00 are? Jack does us all a wonderful service by showing us the differences.<br />
<a href="http://blog.uncommonsensesecurity.com/2009/10/diff-ma-201-cmr-1700.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/blog.uncommonsensesecurity.com/2009/10/diff-ma-201-cmr-1700.html?referer=');">Uncommon Sense Security: diff MA 201 CMR 17.00</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/ma-201-cmr-17" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/ma-201-cmr-17?referer=');">ma-201-cmr-17</a> )</li>
<li>Part two of SynJunkie&#8217;s latest story is up.<br />
<a href="http://synjunkie.blogspot.com/2009/10/bobs-double-penetration-adventure-part_31.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/synjunkie.blogspot.com/2009/10/bobs-double-penetration-adventure-part_31.html?referer=');">Syn: Bobs Double Penetration Adventure &#8211; Part 2</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/story" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/story?referer=');">story</a> <a href="http://delicious.com/rigginsk/wifi" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/wifi?referer=');">wifi</a> <a href="http://delicious.com/rigginsk/pentest" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/pentest?referer=');">pentest</a> )</li>
<li>The latest version of Microsoft&#8217;s Security Intelligence Report is available.<br />
<a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=037f3771-330e-4457-a52c-5b085dc0a4cd&amp;displaylang=en" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.microsoft.com/downloads/details.aspx?FamilyID=037f3771-330e-4457-a52c-5b085dc0a4cd_amp_displaylang=en&amp;referer=');">Download details: Microsoft Security Intelligence Report volume 7 (January &#8211; June 2009)</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/intelligence" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/intelligence?referer=');">intelligence</a> <a href="http://delicious.com/rigginsk/report" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/report?referer=');">report</a> <a href="http://delicious.com/rigginsk/microsoft" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/microsoft?referer=');">microsoft</a> )</li>
<li>This post points out that we really need to be able to communicate with non-technical audiences. It then points to a new SANS short course that helps us learn how to do that more effectively. Looks very interesting.<br />
<a href="http://www.enclaveforensics.com/Blog/files/3138ff3ea0976ddfb841f8a22ca421df-27.html#unique-entry-id-27" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.enclaveforensics.com/Blog/files/3138ff3ea0976ddfb841f8a22ca421df-27.html_unique-entry-id-27?referer=');">Keys to Professional Communication | Courses, Training | Enclave Forensics</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/presenting" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/presenting?referer=');">presenting</a> <a href="http://delicious.com/rigginsk/speaking" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/speaking?referer=');">speaking</a> <a href="http://delicious.com/rigginsk/writing" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/writing?referer=');">writing</a> )</li>
<li>This page contains links to a wealth of information on psychology and information security. Fascinating stuff that will keep you busy for quite some time.<br />
Hat tip: Adam @ The New School of Information Security Blog<br />
<a href="http://www.cl.cam.ac.uk/~rja14/psysec.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.cl.cam.ac.uk/_rja14/psysec.html?referer=');">Psychology and Security Resource Page</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/psychology" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/psychology?referer=');">psychology</a> )</li>
<li>Here is the third and final part of SpyLogic&#8217;s Enterprise Open Source Intelligence Gathering series. It focuses on monitoring and social media policies.<br />
<a href="http://www.spylogic.net/2009/10/enterprise-open-source-intelligence-gathering-part-3-monitoring/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.spylogic.net/2009/10/enterprise-open-source-intelligence-gathering-part-3-monitoring/?referer=');">Enterprise Open Source Intelligence Gathering &#8211; Part 3 Monitoring and Social Media Policies &#8212; spylogic.net</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/gathering" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/gathering?referer=');">gathering</a> <a href="http://delicious.com/rigginsk/intelligence" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/intelligence?referer=');">intelligence</a> )</li>
<li>This is a nicely detailed post on using OWASP ESAPI for output validation. You are validating your output, right? It is actual the second in a series. The first part on input validation is linked to at the beginning and is also worthy of a gander.<br />
<a href="http://www.securityninja.co.uk/output-validation-using-the-owasp-esapi" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.securityninja.co.uk/output-validation-using-the-owasp-esapi?referer=');">Output Validation using the OWASP ESAPI &lt;&lt; Security Ninja</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/output-validation" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/output-validation?referer=');">output-validation</a> <a href="http://delicious.com/rigginsk/owasp" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/owasp?referer=');">owasp</a> <a href="http://delicious.com/rigginsk/esapi" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/esapi?referer=');">esapi</a> )</li>
<li>Anton posits that FUD is good sometimes. Interesting perspective. The New School Security blog has an interseted reponse too: http://newschoolsecurity.com/2009/10/just-say-no-to-fud/<br />
<a href="http://fudsec.com/a-treatise-on-fud" target="_blank" onclick="pageTracker._trackPageview('/outgoing/fudsec.com/a-treatise-on-fud?referer=');">A Treatise on FUD &#8211; fudsec.com</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/iis" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/iis?referer=');">iis</a> <a href="http://delicious.com/rigginsk/fud" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/fud?referer=');">fud</a> )</li>
</ol>
<p>That&#8217;s it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank" onclick="pageTracker._trackPageview('/outgoing/feeds2.feedburner.com/InfosecRamblings?referer=');">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=VYn8HZfv2xQ:q-ZMpWExzww:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=VYn8HZfv2xQ:q-ZMpWExzww:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=VYn8HZfv2xQ:q-ZMpWExzww:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=VYn8HZfv2xQ:q-ZMpWExzww:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=VYn8HZfv2xQ:q-ZMpWExzww:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=VYn8HZfv2xQ:q-ZMpWExzww:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=VYn8HZfv2xQ:q-ZMpWExzww:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=VYn8HZfv2xQ:q-ZMpWExzww:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=VYn8HZfv2xQ:q-ZMpWExzww:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=VYn8HZfv2xQ:q-ZMpWExzww:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=l6gmwiTKsz0" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/InfosecRamblings/~4/VYn8HZfv2xQ" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2009/11/02/interesting-information-security-bits-for-11022009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecramblings.com/2009/11/02/interesting-information-security-bits-for-11022009/</feedburner:origLink></item>
		<item>
		<title>Interesting Information Security Bits for 10/29/2009</title>
		<link>http://feedproxy.google.com/~r/InfosecRamblings/~3/ykcQJcqeBbM/</link>
		<comments>http://www.infosecramblings.com/2009/10/29/interesting-information-security-bits-for-10292009/#comments</comments>
		<pubDate>Thu, 29 Oct 2009 20:06:29 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[asset valuation]]></category>
		<category><![CDATA[conferences]]></category>
		<category><![CDATA[hacklu]]></category>
		<category><![CDATA[ie 8]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[risk analysis]]></category>
		<category><![CDATA[rsa 2010]]></category>
		<category><![CDATA[scap]]></category>
		<category><![CDATA[wepappsec]]></category>
		<category><![CDATA[Windows 7]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=1665</guid>
		<description><![CDATA[Good afternoon everybody! I hope your day is going well.
Here are today&#8217;s Interesting Information Security Bits from around the web.

The Security Baselines for Windows 7 and IE 8 are now available.
Now Available: Security Baselines for Windows 7 and Internet Explorer 8 &#8211; Springboard Series Blog &#8211; The Windows Blog
Tags: ( windows-7 ie8 )
The call for [...]]]></description>
			<content:encoded><![CDATA[<p>Good afternoon everybody! I hope your day is going well.</p>
<p>Here are today&#8217;s Interesting Information Security Bits from around the web.</p>
<ol>
<li>The Security Baselines for Windows 7 and IE 8 are now available.<br />
<a href="http://windowsteamblog.com/blogs/springboard/archive/2009/10/29/now-available-security-baselines-for-windows-7-and-internet-explorer-8.aspx" target="_blank" onclick="pageTracker._trackPageview('/outgoing/windowsteamblog.com/blogs/springboard/archive/2009/10/29/now-available-security-baselines-for-windows-7-and-internet-explorer-8.aspx?referer=');">Now Available: Security Baselines for Windows 7 and Internet Explorer 8 &#8211; Springboard Series Blog &#8211; The Windows Blog</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/windows-7" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/windows-7?referer=');">windows-7</a> <a href="http://delicious.com/rigginsk/ie8" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/ie8?referer=');">ie8</a> )</li>
<li>The call for submissions for Peer2Peer sessions at RSA 2010 has opened. Have a topic you want to explore with others in your industry/field/profession? Go ahead and suggest it.<br />
<a href="http://www.rsaconference.com/2010/usa/agenda-and-sessions/peer2peer.htm" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.rsaconference.com/2010/usa/agenda-and-sessions/peer2peer.htm?referer=');">Peer2Peer Sessions</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/rsa-2010" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/rsa-2010?referer=');">rsa-2010</a> <a href="http://delicious.com/rigginsk/cfp" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/cfp?referer=');">cfp</a> )</li>
<li>Xavier&#8217;s first day recap of Hack.lu is up.<br />
<a href="http://blog.rootshell.be/2009/10/28/hack-lu-day-1/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/blog.rootshell.be/2009/10/28/hack-lu-day-1/?referer=');">/dev/random &gt;&gt; hack.lu Day #1</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/conferences" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/conferences?referer=');">conferences</a> <a href="http://delicious.com/rigginsk/hacklu" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/hacklu?referer=');">hacklu</a> )</li>
<li>Jeremiah offers some interesting thoughts on black box vs white box software testing.<br />
<a href="http://jeremiahgrossman.blogspot.com/2009/10/black-box-vs-white-box-you-are-doing-it.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/jeremiahgrossman.blogspot.com/2009/10/black-box-vs-white-box-you-are-doing-it.html?referer=');">Jeremiah Grossman: Black Box vs White Box. You are doing it wrong.</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/webappsec" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/webappsec?referer=');">webappsec</a> )</li>
<li>Another good article on methods and tools to monitor/gather intelligence about your company that might be mentioned on-line. This one focuses on blogs, message boards, and metadata.<br />
<a href="http://www.spylogic.net/2009/10/enterprise-open-source-intelligence-gathering-%e2%80%93-part-2-blogs-message-boards-and-metadata/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.spylogic.net/2009/10/enterprise-open-source-intelligence-gathering-_e2_80_93-part-2-blogs-message-boards-and-metadata/?referer=');">Enterprise Open Source Intelligence Gathering &#8211; Part 2 Blogs, Message Boards and Metadata &#8212; spylogic.net</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/monitoring" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/monitoring?referer=');">monitoring</a> )</li>
<li>This is scary.<br />
<a href="http://hype-free.blogspot.com/2009/10/why-network-neutrality-is-big-deal.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/hype-free.blogspot.com/2009/10/why-network-neutrality-is-big-deal.html?referer=');">hype-free: Why network neutrality is a big deal</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/general" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/general?referer=');">general</a> )</li>
<li>Anton&#8217;s notes from the day he spent at NIST&#8217;s SCAP conference.<br />
<a href="http://chuvakin.blogspot.com/2009/10/notes-from-nist-scap-5th-security.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/chuvakin.blogspot.com/2009/10/notes-from-nist-scap-5th-security.html?referer=');">Anton Chuvakin Blog &#8211; &#8220;Security Warrior&#8221;: Notes from NIST SCAP 5th Security Automation Conference</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/conference" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/conference?referer=');">conference</a> <a href="http://delicious.com/rigginsk/nist-scap" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/nist-scap?referer=');">nist-scap</a> )</li>
<li>Alex has posted a nice exploration of impact vs asset valuation. This is a very FAIResque treatment of the issue if you ask me, which is a good thing in my opinion.<br />
<a href="http://securityblog.verizonbusiness.com/2009/10/29/the-curious-case-of-asset-valuation/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/securityblog.verizonbusiness.com/2009/10/29/the-curious-case-of-asset-valuation/?referer=');">Verizon Business Security Blog &gt;&gt; Blog Archive &gt;&gt; The curious case of asset Valuation.</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/risk-analysis" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/risk-analysis?referer=');">risk-analysis</a> <a href="http://delicious.com/rigginsk/asses-valuation" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/asses-valuation?referer=');">asses-valuation</a> )</li>
</ol>
<p>That&#8217;s it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank" onclick="pageTracker._trackPageview('/outgoing/feeds2.feedburner.com/InfosecRamblings?referer=');">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=ykcQJcqeBbM:CVFF_I4PLFA:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=ykcQJcqeBbM:CVFF_I4PLFA:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=ykcQJcqeBbM:CVFF_I4PLFA:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=ykcQJcqeBbM:CVFF_I4PLFA:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=ykcQJcqeBbM:CVFF_I4PLFA:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=ykcQJcqeBbM:CVFF_I4PLFA:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=ykcQJcqeBbM:CVFF_I4PLFA:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=ykcQJcqeBbM:CVFF_I4PLFA:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=ykcQJcqeBbM:CVFF_I4PLFA:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=ykcQJcqeBbM:CVFF_I4PLFA:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=l6gmwiTKsz0" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/InfosecRamblings/~4/ykcQJcqeBbM" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2009/10/29/interesting-information-security-bits-for-10292009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecramblings.com/2009/10/29/interesting-information-security-bits-for-10292009/</feedburner:origLink></item>
		<item>
		<title>Interesting Information Security Bits for 10/28/2009</title>
		<link>http://feedproxy.google.com/~r/InfosecRamblings/~3/AfYkgT8yNrs/</link>
		<comments>http://www.infosecramblings.com/2009/10/28/interesting-information-security-bits-for-10282009/#comments</comments>
		<pubDate>Wed, 28 Oct 2009 20:46:12 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[a6]]></category>
		<category><![CDATA[amazon]]></category>
		<category><![CDATA[cloud]]></category>
		<category><![CDATA[forensics]]></category>
		<category><![CDATA[google wave]]></category>
		<category><![CDATA[mysql]]></category>
		<category><![CDATA[rds]]></category>
		<category><![CDATA[truecrypt]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=1663</guid>
		<description><![CDATA[Good afternoon everybody! I hope your day is going well.
Here are today&#8217;s Interesting Information Security Bits from around the web.

Andrew shows how to install log2timeline on a SANS Investigative Forensic (SIFT) workstation.
Andrew Hay &#62;&#62; Blog Archive &#62;&#62; Installing log2timeline on SIFT &#8211; Updated Instructions for Ease of Use
Tags: ( forensics )
Before you fire up your [...]]]></description>
			<content:encoded><![CDATA[<p>Good afternoon everybody! I hope your day is going well.</p>
<p>Here are today&#8217;s Interesting Information Security Bits from around the web.</p>
<ol>
<li>Andrew shows how to install log2timeline on a SANS Investigative Forensic (SIFT) workstation.<br />
<a href="http://www.andrewhay.ca/archives/1109" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.andrewhay.ca/archives/1109?referer=');">Andrew Hay &gt;&gt; Blog Archive &gt;&gt; Installing log2timeline on SIFT &#8211; Updated Instructions for Ease of Use</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/forensics" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/forensics?referer=');">forensics</a> )</li>
<li>Before you fire up your new RDS instance with Amazon, you might want to take a gander at Adriane&#8217;s post. This is not to say don&#8217;t do it, just some things to think about before you do.<br />
<a href="http://securosis.com/blog/amazon-rds-announced/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/securosis.com/blog/amazon-rds-announced/?referer=');">Securosis Blog | Amazon RDS Announced</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/mysql" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/mysql?referer=');">mysql</a> <a href="http://delicious.com/rigginsk/amazon" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/amazon?referer=');">amazon</a> <a href="http://delicious.com/rigginsk/rds" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/rds?referer=');">rds</a> )</li>
<li>Some thoughts about cross-gadget security in Google Wave.<br />
<a href="http://socialmediasecurity.com/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/socialmediasecurity.com/?referer=');">Cross-Gadget Security in Google Wave</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/wave" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/wave?referer=');">wave</a> )</li>
<li>Richard pulls together a lot of the conversation about A6.<br />
<a href="http://taosecurity.blogspot.com/2009/10/initial-thoughts-on-cloud-a6.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/taosecurity.blogspot.com/2009/10/initial-thoughts-on-cloud-a6.html?referer=');">TaoSecurity: Initial Thoughts on Cloud A6</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/cloud" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/cloud?referer=');">cloud</a> <a href="http://delicious.com/rigginsk/a6" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/a6?referer=');">a6</a> )</li>
<li>As always, if an attacker has physical access, things get  much easier.<br />
<a href="http://blog.securityactive.co.uk/2009/10/28/my-not-so-evil-maid-truecrypt-encryption-attack/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/blog.securityactive.co.uk/2009/10/28/my-not-so-evil-maid-truecrypt-encryption-attack/?referer=');">My not so evil maid &#8211; Truecrypt encryption attack | Security Active Blog</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/truecrypt" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/truecrypt?referer=');">truecrypt</a> )</li>
</ol>
<p>That&#8217;s it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank" onclick="pageTracker._trackPageview('/outgoing/feeds2.feedburner.com/InfosecRamblings?referer=');">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=AfYkgT8yNrs:zmnRGV3ft4U:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=AfYkgT8yNrs:zmnRGV3ft4U:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=AfYkgT8yNrs:zmnRGV3ft4U:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=AfYkgT8yNrs:zmnRGV3ft4U:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=AfYkgT8yNrs:zmnRGV3ft4U:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=AfYkgT8yNrs:zmnRGV3ft4U:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=AfYkgT8yNrs:zmnRGV3ft4U:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=AfYkgT8yNrs:zmnRGV3ft4U:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=AfYkgT8yNrs:zmnRGV3ft4U:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=AfYkgT8yNrs:zmnRGV3ft4U:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=l6gmwiTKsz0" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/InfosecRamblings/~4/AfYkgT8yNrs" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2009/10/28/interesting-information-security-bits-for-10282009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecramblings.com/2009/10/28/interesting-information-security-bits-for-10282009/</feedburner:origLink></item>
		<item>
		<title>Interesting Information Security Bits for 10/27/2009</title>
		<link>http://feedproxy.google.com/~r/InfosecRamblings/~3/VZr5Pjla3-E/</link>
		<comments>http://www.infosecramblings.com/2009/10/27/interesting-information-security-bits-for-10272009/#comments</comments>
		<pubDate>Wed, 28 Oct 2009 02:03:20 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[Career]]></category>
		<category><![CDATA[data gathering]]></category>
		<category><![CDATA[education]]></category>
		<category><![CDATA[incident-response]]></category>
		<category><![CDATA[logging]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=1660</guid>
		<description><![CDATA[Good afternoon everybody! I hope your day is going well.
Here are today&#8217;s Interesting Information Security Bits from around the web.

Some good tips and resources for gathering intelligence.
Enterprise Open Source Intelligence Gathering &#8211; Part 1 Social Networks &#8212; spylogic.net
Tags: ( gathering )
I always enjoy pointing to posts that contain resources for education and career advancement. Here [...]]]></description>
			<content:encoded><![CDATA[<p>Good afternoon everybody! I hope your day is going well.</p>
<p>Here are today&#8217;s Interesting Information Security Bits from around the web.</p>
<ol>
<li>Some good tips and resources for gathering intelligence.<br />
<a href="http://www.spylogic.net/2009/10/enterprise-open-source-intelligence-gathering-part-1-social-networks/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.spylogic.net/2009/10/enterprise-open-source-intelligence-gathering-part-1-social-networks/?referer=');">Enterprise Open Source Intelligence Gathering &#8211; Part 1 Social Networks &#8212; spylogic.net</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/gathering" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/gathering?referer=');">gathering</a> )</li>
<li>I always enjoy pointing to posts that contain resources for education and career advancement. Here is another one.<br />
<a href="http://www.room362.com/blog/2009/10/26/getting-your-n00b-fill-of-security.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.room362.com/blog/2009/10/26/getting-your-n00b-fill-of-security.html?referer=');">Room362.com &#8211; Blog &#8211; Getting your n00b fill of security</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/career" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/career?referer=');">career</a> <a href="http://delicious.com/rigginsk/learning" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/learning?referer=');">learning</a> <a href="http://delicious.com/rigginsk/education" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/education?referer=');">education</a> )</li>
<li>As always, tools can be used for good or for evil.<br />
<a href="http://theharmonyguy.com/2009/10/26/google-wave-as-a-tool-for-hacking/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/theharmonyguy.com/2009/10/26/google-wave-as-a-tool-for-hacking/?referer=');">Google Wave as a Tool for Hacking | Social Hacking</a><br />
Tags: ( )</li>
<li>This is a fun video. Evolution of Security.<br />
<a href="http://www.f-secure.com/weblog/archives/00001801.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.f-secure.com/weblog/archives/00001801.html?referer=');">A Video For You &#8211; F-Secure Weblog : News from the Lab</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/general" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/general?referer=');">general</a> )</li>
<li>Want to avoid complete failure from a logging perspective? Check out Anton&#8217;s list of logging failures.<br />
<a href="http://chuvakin.blogspot.com/2009/10/top-log-fail.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/chuvakin.blogspot.com/2009/10/top-log-fail.html?referer=');">Anton Chuvakin Blog &#8211; &#8220;Security Warrior&#8221;: Top Log FAIL!</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/logging" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/logging?referer=');">logging</a> )</li>
<li>An incident response plan isn&#8217;t any good if it isn&#8217;t workable. Check out Martin&#8217;s thoughts on the issue.<br />
<a href="http://www.securitycatalyst.com/have-a-workable-plan-or-else/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.securitycatalyst.com/have-a-workable-plan-or-else/?referer=');">Have a workable plan, or else&#8230; : The Security Catalyst</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/incident-response" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/incident-response?referer=');">incident-response</a> )</li>
</ol>
<p>That&#8217;s it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank" onclick="pageTracker._trackPageview('/outgoing/feeds2.feedburner.com/InfosecRamblings?referer=');">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=VZr5Pjla3-E:XnM_BGhXpog:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=VZr5Pjla3-E:XnM_BGhXpog:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=VZr5Pjla3-E:XnM_BGhXpog:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=VZr5Pjla3-E:XnM_BGhXpog:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=VZr5Pjla3-E:XnM_BGhXpog:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=VZr5Pjla3-E:XnM_BGhXpog:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=VZr5Pjla3-E:XnM_BGhXpog:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=VZr5Pjla3-E:XnM_BGhXpog:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=VZr5Pjla3-E:XnM_BGhXpog:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=VZr5Pjla3-E:XnM_BGhXpog:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=l6gmwiTKsz0" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/InfosecRamblings/~4/VZr5Pjla3-E" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2009/10/27/interesting-information-security-bits-for-10272009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecramblings.com/2009/10/27/interesting-information-security-bits-for-10272009/</feedburner:origLink></item>
		<item>
		<title>Interesting Information Security Bits RSA Catch-up Part 2</title>
		<link>http://feedproxy.google.com/~r/InfosecRamblings/~3/jnYea5i-SjY/</link>
		<comments>http://www.infosecramblings.com/2009/10/27/interesting-information-security-bits-rsa-catch-up-part-2/#comments</comments>
		<pubDate>Wed, 28 Oct 2009 01:18:41 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[anonymity]]></category>
		<category><![CDATA[cloud]]></category>
		<category><![CDATA[data leakage]]></category>
		<category><![CDATA[Firefox]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[sharepoint]]></category>
		<category><![CDATA[white listing]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=1658</guid>
		<description><![CDATA[Here is part 2 of my catch-up posts.

 Argument For Anonymity &#8211; Secure Computing: Sec-C
Tags: ( anonymity )
 RaDaJo (RAul, DAvid and JOrge) Security Blog: Samurai Web Testing Framework (WTF) Firefox Add-ons Collection
Tags: (  firefox add-ons )
 Medical Records: Stored in the Cloud, Sold on the Open Market &#124; Threat Level &#124; Wired.com
Tags: ( data-leakage phi cloud [...]]]></description>
			<content:encoded><![CDATA[<p>Here is part 2 of my catch-up posts.</p>
<ol>
<li> <a href="http://www.hackerfactor.com/blog/index.php?/archives/320-Argument-For-Anonymity.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.hackerfactor.com/blog/index.php?/archives/320-Argument-For-Anonymity.html&amp;referer=');">Argument For Anonymity &#8211; Secure Computing: Sec-C</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/anonymity" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/anonymity?referer=');">anonymity</a> )</li>
<li> <a href="http://radajo.blogspot.com/2009/10/samurai-web-testing-framework-wtf.html" target="_blank" onclick="pageTracker._trackPageview('/outgoing/radajo.blogspot.com/2009/10/samurai-web-testing-framework-wtf.html?referer=');">RaDaJo (RAul, DAvid and JOrge) Security Blog: Samurai Web Testing Framework (WTF) Firefox Add-ons Collection</a><br />
Tags: (  <a href="http://delicious.com/rigginsk/firefox" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/firefox?referer=');">firefox</a> <a href="http://delicious.com/rigginsk/add-ons" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/add-ons?referer=');">add-ons</a> )</li>
<li> <a href="http://www.wired.com/threatlevel/2009/10/medicalrecords/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.wired.com/threatlevel/2009/10/medicalrecords/?referer=');">Medical Records: Stored in the Cloud, Sold on the Open Market | Threat Level | Wired.com</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/data-leakage" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/data-leakage?referer=');">data-leakage</a> <a href="http://delicious.com/rigginsk/phi" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/phi?referer=');">phi</a> <a href="http://delicious.com/rigginsk/cloud" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/cloud?referer=');">cloud</a> )</li>
<li> <a href="http://blog.lumension.com/?p=2270" target="_blank" onclick="pageTracker._trackPageview('/outgoing/blog.lumension.com/?p=2270&amp;referer=');">Moving from a Threat Centric to Trust Centric Endpoint Management Model | Optimal Security: The Lumension Blog</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/whitelisting" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/whitelisting?referer=');">whitelisting</a> <a href="http://delicious.com/rigginsk/malware" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/malware?referer=');">malware</a> )</li>
<li> <a href="http://www.retailinfosec.com/2009/10/19/sharepoint-and-security/" target="_blank" onclick="pageTracker._trackPageview('/outgoing/www.retailinfosec.com/2009/10/19/sharepoint-and-security/?referer=');">SharePoint and Security | Retail Information Security</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/sharepoint" target="_blank" onclick="pageTracker._trackPageview('/outgoing/delicious.com/rigginsk/sharepoint?referer=');">sharepoint</a> )</li>
</ol>
<p>That&#8217;s it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank" onclick="pageTracker._trackPageview('/outgoing/feeds2.feedburner.com/InfosecRamblings?referer=');">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
<div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=jnYea5i-SjY:Iz5SvMdj3cw:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=jnYea5i-SjY:Iz5SvMdj3cw:dnMXMwOfBR0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=dnMXMwOfBR0" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=jnYea5i-SjY:Iz5SvMdj3cw:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=jnYea5i-SjY:Iz5SvMdj3cw:V_sGLiPBpWU" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=jnYea5i-SjY:Iz5SvMdj3cw:gIN9vFwOqvQ"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=jnYea5i-SjY:Iz5SvMdj3cw:gIN9vFwOqvQ" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=jnYea5i-SjY:Iz5SvMdj3cw:F7zBnMyn0Lo"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?i=jnYea5i-SjY:Iz5SvMdj3cw:F7zBnMyn0Lo" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=jnYea5i-SjY:Iz5SvMdj3cw:qj6IDK7rITs"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=qj6IDK7rITs" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/InfosecRamblings?a=jnYea5i-SjY:Iz5SvMdj3cw:l6gmwiTKsz0"><img src="http://feeds.feedburner.com/~ff/InfosecRamblings?d=l6gmwiTKsz0" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/InfosecRamblings/~4/jnYea5i-SjY" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2009/10/27/interesting-information-security-bits-rsa-catch-up-part-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecramblings.com/2009/10/27/interesting-information-security-bits-rsa-catch-up-part-2/</feedburner:origLink></item>
	</channel>
</rss>
