<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr="http://purl.org/syndication/thread/1.0" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" gd:etag="W/&quot;CU8HRX08fCp7ImA9WhRbF0o.&quot;"><id>tag:blogger.com,1999:blog-8787491</id><updated>2012-02-09T02:50:34.374-05:00</updated><category term="book reviews" /><category term="RIT" /><category term="future of security" /><category term="SQL 2005 backup" /><category term="IDS" /><category term="ISTS" /><category term="hacker jeapordy" /><category term="cons" /><category term="security" /><category term="SPARSA" /><category term="nmap" /><category term="Rochester Security Summit" /><category term="Metasploit" /><category term="SQL 2005" /><category term="privacy" /><category term="hacking" /><category term="Outlook anywhere RPC errors" /><category term="PWB" /><category term="wtf" /><category term="TOR" /><category term="networking" /><category term="secviz" /><category term="las vegas" /><category term="bt4 pre" /><category term="black hat" /><category term="info week" /><category term="eff" /><category term="backtrack" /><category term="Winn Schwartau" /><category term="sys admin" /><category term="ossim" /><category term="oinkmaster" /><category term="antiforensics" /><category term="dateline NBC" /><category term="RPC over HTTPS" /><category term="Exchange 2003" /><category term="pen testing" /><category term="shmoocon" /><category term="updating backtrack" /><category term="transaction logs" /><category term="fun" /><category term="Carnal Ownage" /><category term="NECCDC" /><category term="defcon" /><category term="snort" /><category term="CCDC" /><title>Punkrokk's Blog</title><subtitle type="html">Computer Security, Network and Sys Admin, and maybe some Biking and snowboarding (don't forget the Ninjas, (or the Bacon))</subtitle><link rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/posts/default" /><link rel="alternate" type="text/html" href="http://jpbourget.blogspot.com/" /><link rel="next" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><generator version="7.00" uri="http://www.blogger.com">Blogger</generator><openSearch:totalResults>61</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/PunkrokksBlog" /><feedburner:info uri="punkrokksblog" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><entry gd:etag="W/&quot;DkEBR3szcCp7ImA9WxBWF0U.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-2351822018695565041</id><published>2010-02-10T01:40:00.003-05:00</published><updated>2010-02-10T01:50:56.588-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-02-10T01:50:56.588-05:00</app:edited><title>Moved!</title><content type="html">I have migrated over to my own domain and word press here: &lt;a href="http://syncurity.net/"&gt;http://syncurity.net&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-2351822018695565041?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/XyvrQYyGVGUowHEyyN_W6VYbHoM/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/XyvrQYyGVGUowHEyyN_W6VYbHoM/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/XyvrQYyGVGUowHEyyN_W6VYbHoM/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/XyvrQYyGVGUowHEyyN_W6VYbHoM/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/oGoVhABE8jc" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/2351822018695565041/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=2351822018695565041" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/2351822018695565041?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/2351822018695565041?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/oGoVhABE8jc/moved.html" title="Moved!" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2010/02/moved.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkUNSXgycSp7ImA9WxBWEEU.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-5666920097000493217</id><published>2010-02-02T00:19:00.001-05:00</published><updated>2010-02-02T00:24:58.699-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-02-02T00:24:58.699-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="ossim" /><category scheme="http://www.blogger.com/atom/ns#" term="oinkmaster" /><category scheme="http://www.blogger.com/atom/ns#" term="snort" /><category scheme="http://www.blogger.com/atom/ns#" term="IDS" /><title>Finally found a need for Oinkmaster</title><content type="html">I'm sure many of you already know about &lt;a href="http://oinkmaster.sourceforge.net/"&gt;oinkmaster&lt;/a&gt;. Well, I never had a need to use it, and I did today. I am working on a distibuted OSSIM deployment, and I needed to update my snort rules automatically, once a day. After configuring the /etc/oinkmaster.conf file to point to the link for the latest community rules (you can also do the same for the lastest VRT paid for rules) I created this cron job to update my rules, then run a perl script to update correlation, then restart snort and ossim.&lt;br /&gt;
&lt;br /&gt;
Here's the script:&lt;br /&gt;
&lt;blockquote&gt;&lt;span class="Apple-style-span" style="font-family: monospace; font-size: 12px; white-space: pre;"&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="font-family: monospace; font-size: 12px; white-space: pre;"&gt;&lt;pre&gt;&lt;blockquote&gt;#/bin/sh&lt;/blockquote&gt;&lt;blockquote&gt;&lt;/blockquote&gt;&lt;blockquote&gt;/usr/share/oinkmaster/makesidex.pl /etc/snort/rules/ &amp;gt;autodisable.conf&lt;/blockquote&gt;&lt;blockquote&gt;oinkmaster -C /etc/oinkmaster.conf -C /etc/autodisable.conf -o /etc/snort/rules&lt;/blockquote&gt;&lt;blockquote&gt;perl /usr/share/ossim/scripts/create_sidmap.pl /etc/snort/rules&lt;/blockquote&gt;&lt;blockquote&gt;/etc/init.d/ossim-server restart&lt;/blockquote&gt;&lt;/pre&gt;&lt;/span&gt;&lt;/blockquote&gt;&lt;blockquote&gt;&amp;nbsp;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;/etc/init.d/snort restart&lt;/blockquote&gt;&lt;br /&gt;
You can get more background on everything on this &lt;a href="https://www.alienvault.com/forum/index.php?t=msg&amp;amp;th=677&amp;amp;unread=1&amp;amp;S=e7f8639e106d4a09276fcba2ead172da"&gt;thread&lt;/a&gt; over at the OSSIM forums.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-5666920097000493217?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/KK3uamXmwNzwe-MASEVZh2Mh-vo/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KK3uamXmwNzwe-MASEVZh2Mh-vo/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/KK3uamXmwNzwe-MASEVZh2Mh-vo/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KK3uamXmwNzwe-MASEVZh2Mh-vo/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/jbeckFnKyRw" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/5666920097000493217/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=5666920097000493217" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/5666920097000493217?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/5666920097000493217?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/jbeckFnKyRw/finally-found-need-for-oinkmaster.html" title="Finally found a need for Oinkmaster" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2010/02/finally-found-need-for-oinkmaster.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkMHRnszeyp7ImA9WxBXGE4.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-4376990770746440125</id><published>2010-01-30T01:53:00.000-05:00</published><updated>2010-01-30T01:53:57.583-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-01-30T01:53:57.583-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="pen testing" /><category scheme="http://www.blogger.com/atom/ns#" term="PWB" /><category scheme="http://www.blogger.com/atom/ns#" term="backtrack" /><title>Pentesting With Backtrack</title><content type="html">So I started the &lt;a href="http://www.offensive-security.com/penetration-testing-backtrack-online-training.php"&gt;Pentesting with Backtrack&lt;/a&gt; (PWB) course from Offensive Security. So far, I like what I see. It has shown some pretty good info so far, and while I probably won't write a comprehensive review, for the cost ($700) is seems very worth it, especially just to get you out of your own head and get a different perspective on Pen Testing. I hope to improve my personal Pen Testing methodology and learn more about Back Track while doing this course.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-4376990770746440125?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/E0rs4-F7kVcRdaUy8ZDrdy5Y-Vk/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/E0rs4-F7kVcRdaUy8ZDrdy5Y-Vk/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/E0rs4-F7kVcRdaUy8ZDrdy5Y-Vk/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/E0rs4-F7kVcRdaUy8ZDrdy5Y-Vk/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/lsNnvZyG8a4" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/4376990770746440125/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=4376990770746440125" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/4376990770746440125?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/4376990770746440125?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/lsNnvZyG8a4/pentesting-with-backtrack.html" title="Pentesting With Backtrack" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2010/01/pentesting-with-backtrack.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D08HQ3g8eip7ImA9WxBXGU8.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-3030887169782199600</id><published>2010-01-30T01:42:00.001-05:00</published><updated>2010-01-31T03:17:12.672-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-01-31T03:17:12.672-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="shmoocon" /><category scheme="http://www.blogger.com/atom/ns#" term="ossim" /><category scheme="http://www.blogger.com/atom/ns#" term="cons" /><title>Black Hat/Shmoocon/Shmoo Labs</title><content type="html">Well, the DC area has a busy week coming up. I unfortunately don't have an employer that will foot the bill for Blackhat DC, but I will be at &lt;a href="http://www.shmoocon.org/"&gt;shmoocon&lt;/a&gt;! I am most excited for &lt;a href="https://www.shmoocon.org/labs.html"&gt;Shmoo Labs&lt;/a&gt;. I have worked with &lt;a href="http://www.alienvault.com/"&gt;Alien Vault&lt;/a&gt;'s CTO &lt;a href="http://www.alienvault.com/blog/dk"&gt;DK&lt;/a&gt; to acquire an OSSIM v2.1 appliance for Shmoo Labs. I'm really excited to learn more about SIM/SEMs and get the opportunity to analyze a real time malicious network. Hopefully we'll get the chance to demo the box to attendees! Bring us t-shirts Alien Vault!&lt;br /&gt;
&lt;br /&gt;
There are also a bunch of good talks at shmoo, especially the keynote &lt;a href="https://www.shmoocon.org/presentations.html#tls"&gt;"Closing the TLS Authentication Gap."&lt;/a&gt;&amp;nbsp;I also am ready to see Larry Pesce speak about his Shmoo Launcher, Ben Smith show us what he's up to with wireless hacking, and the TF2 tourney, which I'll probably enter, but lose famously at!&lt;br /&gt;
&lt;br /&gt;
Finally, the best part about a con like shmoocon is to see some of my friends/acquaintances I've met the past few years at other cons, as well as meet new ones. Make sure to follow me on &lt;a href="http://www.twitter.com/punkrokk"&gt;Twitter&lt;/a&gt;, and follow the #shmoocon (and #shmoobus, and possibly #shmooflu ;) hash tags) as you know there will be a few awesome surprises there. And don't forget shmoo-ography (sp?) and the new contest &lt;a href="https://www.shmoocon.org/gits.html"&gt;Ghost in the Shellcode&lt;/a&gt; (GITS)&lt;br /&gt;
&lt;br /&gt;
See ya at shmoo! and hopefully I'll be doing some live blogging from there... If you can't make it, I hear it will be streamed live on uStream!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-3030887169782199600?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/1ldzbYi-eCuouGxXqdvOyzovyCQ/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/1ldzbYi-eCuouGxXqdvOyzovyCQ/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/1ldzbYi-eCuouGxXqdvOyzovyCQ/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/1ldzbYi-eCuouGxXqdvOyzovyCQ/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/25rWX3LRcco" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/3030887169782199600/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=3030887169782199600" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/3030887169782199600?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/3030887169782199600?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/25rWX3LRcco/black-hatshmooconshmoo-labs.html" title="Black Hat/Shmoocon/Shmoo Labs" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2010/01/black-hatshmooconshmoo-labs.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CUUGR3c5eCp7ImA9WxBQE0s.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-7103548448208370374</id><published>2010-01-13T01:13:00.001-05:00</published><updated>2010-01-13T01:13:46.920-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-01-13T01:13:46.920-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="pen testing" /><category scheme="http://www.blogger.com/atom/ns#" term="shmoocon" /><category scheme="http://www.blogger.com/atom/ns#" term="defcon" /><category scheme="http://www.blogger.com/atom/ns#" term="backtrack" /><title>Backtrack, Shmoocon Schedule and Defcon price Increase</title><content type="html">Backtrack 4 final is out! (as of yesterday) Woot! Thanks to everyone who puts in hard time creating and maintaining this distro. Download &lt;a href="http://www.backtrack-linux.org/"&gt;here&lt;/a&gt;. New forums and website too! The torrents are the best place to get it right now.&lt;br /&gt;
&lt;br /&gt;
Defcon is going up another $20 to $140, I guess this is to be expected. Another $20 and badge will be twice the cost of the rooms. (Which were more for Defcon 15.)&lt;br /&gt;
&lt;br /&gt;
Finally! Shmoocon&lt;a href="https://www.shmoocon.org/presentations.html"&gt; schedule up&lt;/a&gt;! See you there!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-7103548448208370374?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/s13m0BRLg7ul2QyrJY7wICxX984/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/s13m0BRLg7ul2QyrJY7wICxX984/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/s13m0BRLg7ul2QyrJY7wICxX984/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/s13m0BRLg7ul2QyrJY7wICxX984/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/d8Obl1S9SFE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/7103548448208370374/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=7103548448208370374" title="3 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/7103548448208370374?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/7103548448208370374?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/d8Obl1S9SFE/backtrack-shmoocon-schedule-and-defcon.html" title="Backtrack, Shmoocon Schedule and Defcon price Increase" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>3</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2010/01/backtrack-shmoocon-schedule-and-defcon.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C04GQXcyeCp7ImA9WxBQEk8.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-6495795892168589928</id><published>2010-01-11T09:58:00.000-05:00</published><updated>2010-01-11T09:58:40.990-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-01-11T09:58:40.990-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="CCDC" /><category scheme="http://www.blogger.com/atom/ns#" term="NECCDC" /><category scheme="http://www.blogger.com/atom/ns#" term="security" /><title>Northeast CCDC</title><content type="html">Took me forever to find this link, so here it is for everyone. Info on the 2010 &lt;a href="http://neccdc2010.umcs.maine.edu/index.html"&gt;Northeast Collegiate Cyber Defense Competition (NECCDC)&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
Anyone going?&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-6495795892168589928?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/HRoKxnJCdlrw6392WaYhyLMy9ZE/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/HRoKxnJCdlrw6392WaYhyLMy9ZE/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/HRoKxnJCdlrw6392WaYhyLMy9ZE/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/HRoKxnJCdlrw6392WaYhyLMy9ZE/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/bQesxmNQIaU" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/6495795892168589928/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=6495795892168589928" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/6495795892168589928?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/6495795892168589928?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/bQesxmNQIaU/northeast-ccdc.html" title="Northeast CCDC" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2010/01/northeast-ccdc.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0UGQHkycCp7ImA9WxBQEE0.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-3332265751196104315</id><published>2010-01-08T22:53:00.000-05:00</published><updated>2010-01-08T22:53:41.798-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-01-08T22:53:41.798-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="ISTS" /><category scheme="http://www.blogger.com/atom/ns#" term="Rochester Security Summit" /><category scheme="http://www.blogger.com/atom/ns#" term="Metasploit" /><category scheme="http://www.blogger.com/atom/ns#" term="SPARSA" /><category scheme="http://www.blogger.com/atom/ns#" term="RIT" /><title>RIT SPARSA ISTS this March</title><content type="html">&lt;a href="http://www.sparsa.org/feed/"&gt;SPARSA&lt;/a&gt; (&lt;a href="http://www.rit.edu/"&gt;RIT's&lt;/a&gt; student run Info Sec Club) -- who also ran the CTF at the &lt;a href="http://www.rochestersecurity.org/"&gt;Rochester Security Summit&lt;/a&gt;&amp;nbsp;- to great fanfare I must add -- it preparing for the 7th annual &lt;a href="http://ists.sparsa.org/"&gt;Information Security Talent Search&lt;/a&gt;&amp;nbsp;which will take place March 19-21, 2010 at the &lt;a href="http://www.gccis.rit.edu/"&gt;GCCIS&lt;/a&gt; at RIT. I participated as a student in ISTS 5 in 2006 and it was great fun. It similar to CCDC where you have student teams defending, a white team running things, and a Red Team attacking.&lt;br /&gt;
&lt;br /&gt;
I have the honor of being on the Red Team this year and it should be fun! I'm hoping some sweet exploits come out in February/Early March for us to attack with. In the meantime, I'm brushing up on my Metasploit Foo with the &lt;a href="http://www.offensive-security.com/metasploit-unleashed/"&gt;Metasploit Unleashed online tutorial&lt;/a&gt;&amp;nbsp;over at &lt;a href="http://www.offensive-security.org/"&gt;www.offensive-security.org.&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
In the meantime, I'm excited to do shmoolabs at shmoo con as well as see friends and meet people I just know online!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-3332265751196104315?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/PvugsGYIJ2LKyB6aR4MjWnKpdfM/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/PvugsGYIJ2LKyB6aR4MjWnKpdfM/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/PvugsGYIJ2LKyB6aR4MjWnKpdfM/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/PvugsGYIJ2LKyB6aR4MjWnKpdfM/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/jlM9RdkEZnA" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/3332265751196104315/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=3332265751196104315" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/3332265751196104315?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/3332265751196104315?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/jlM9RdkEZnA/rit-sparsa-ists-this-march.html" title="RIT SPARSA ISTS this March" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2010/01/rit-sparsa-ists-this-march.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEcDRHY_cSp7ImA9WxBRE04.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-2879450432009647492</id><published>2010-01-01T02:29:00.003-05:00</published><updated>2010-01-01T02:47:55.849-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-01-01T02:47:55.849-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="pen testing" /><category scheme="http://www.blogger.com/atom/ns#" term="future of security" /><category scheme="http://www.blogger.com/atom/ns#" term="updating backtrack" /><category scheme="http://www.blogger.com/atom/ns#" term="bt4 pre" /><category scheme="http://www.blogger.com/atom/ns#" term="backtrack" /><title>Updating BT 4 Pre from remote-exploit repos</title><content type="html">I decided to create a VM that I can easily copy following &lt;a href="http://forums.remote-exploit.org/backtrack-4-howto/29779-bt4-update-latest-available-kernel-2-6-30-9-backtrack-repository.html"&gt;these&lt;/a&gt; BT4 forum instructions. I'll update this post and let you know how it went.&lt;br /&gt;
&lt;br /&gt;
Things I'm curious about:&lt;br /&gt;
&lt;br /&gt;
&lt;ul&gt;&lt;li&gt;How well does the kernel upgrade.&amp;nbsp;&lt;/li&gt;
&lt;li&gt;Can i still easily upgrade Fasttrack?&lt;/li&gt;
&lt;li&gt;will the bt repo's update smoothly?&amp;nbsp;&lt;/li&gt;
&lt;/ul&gt;&lt;div&gt;&lt;br /&gt;
&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-2879450432009647492?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/Bz0rdechFoUDrLj_B6Po55tmcHw/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Bz0rdechFoUDrLj_B6Po55tmcHw/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/Bz0rdechFoUDrLj_B6Po55tmcHw/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Bz0rdechFoUDrLj_B6Po55tmcHw/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/Log2oabcbgc" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/2879450432009647492/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=2879450432009647492" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/2879450432009647492?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/2879450432009647492?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/Log2oabcbgc/updating-bt-4-pre-from-remote-exploit.html" title="Updating BT 4 Pre from remote-exploit repos" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2010/01/updating-bt-4-pre-from-remote-exploit.html</feedburner:origLink></entry><entry gd:etag="W/&quot;Dk8EQn0-eSp7ImA9WxBREU8.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-4346995924364566322</id><published>2009-12-29T17:09:00.001-05:00</published><updated>2009-12-29T17:13:23.351-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-29T17:13:23.351-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="antiforensics" /><category scheme="http://www.blogger.com/atom/ns#" term="security" /><category scheme="http://www.blogger.com/atom/ns#" term="privacy" /><category scheme="http://www.blogger.com/atom/ns#" term="hacking" /><title>Update: DECAF is back!</title><content type="html">Well, according to a&amp;nbsp;&lt;a href="http://decafme.org/"&gt;decafme.org&lt;/a&gt;&amp;nbsp;press release, Version 2 is out. It now supports a whole new set of program detection. Seems the big reason he pulled it was due to its phone home functionality, which wasn't really meant to phone home. &lt;br /&gt;
&lt;br /&gt;
From the press release:&lt;br /&gt;
"Version 2 is finished. We are now monitoring Microsoft COFEE, Helix, EnCase, Passware, Elcomsoft, FTK Imager Port, Forensic Toolkit, ISOBuster, and ophcrack. We also give the user the ability to add their own custom signatures. We have also added CD-Rom monitoring. We no longer execute a "self destructive lock-down mode" but rather give the user the ability to execute files, to disable the device where the signatures were found, and start-up in monitor mode."&lt;br /&gt;
&lt;br /&gt;
Anyways... a new tool to play with in VMWare!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-4346995924364566322?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/YF0DG1aG9AzmtrMFc2xC_Iu2-Kw/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/YF0DG1aG9AzmtrMFc2xC_Iu2-Kw/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/YF0DG1aG9AzmtrMFc2xC_Iu2-Kw/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/YF0DG1aG9AzmtrMFc2xC_Iu2-Kw/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/Z0wcmjI7nds" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/4346995924364566322/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=4346995924364566322" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/4346995924364566322?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/4346995924364566322?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/Z0wcmjI7nds/update-decaf-is-back.html" title="Update: DECAF is back!" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2009/12/update-decaf-is-back.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A04NRH89fip7ImA9WxBREE4.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-3011224461932403600</id><published>2009-12-28T20:38:00.001-05:00</published><updated>2009-12-28T17:39:55.166-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-28T17:39:55.166-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="fun" /><title>Bacon Salt</title><content type="html">In good time I would have made this post anyways -- but I'm going to link to this now! &lt;a href="http://www.baconsalt.com/"&gt;Baconsalt!&lt;/a&gt;&amp;nbsp;&amp;nbsp;They also have Baconaise! Yummy!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-3011224461932403600?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/9FS4irlH74uPXx7Z34BtFWzvTnc/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/9FS4irlH74uPXx7Z34BtFWzvTnc/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/9FS4irlH74uPXx7Z34BtFWzvTnc/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/9FS4irlH74uPXx7Z34BtFWzvTnc/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/m2y9IStrIQw" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/3011224461932403600/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=3011224461932403600" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/3011224461932403600?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/3011224461932403600?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/m2y9IStrIQw/bacon-salt.html" title="Bacon Salt" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2009/12/bacon-salt.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0cMRH47fCp7ImA9WxBREEs.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-4894373019048154377</id><published>2009-12-28T17:46:00.002-05:00</published><updated>2009-12-29T01:44:45.004-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-29T01:44:45.004-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Exchange 2003" /><category scheme="http://www.blogger.com/atom/ns#" term="RPC over HTTPS" /><category scheme="http://www.blogger.com/atom/ns#" term="Outlook anywhere RPC errors" /><title>Exchange 2003 RPC over https</title><content type="html">So I was getting an error similar to this:&lt;br /&gt;
/rpc/rpcproxy.dll .com:6004 443 - 4 MSRPC 401 (minus ip address)&lt;br /&gt;
&lt;br /&gt;
I searched hi and low, and after editing the IIS rpc ports and double checking the certificate and authentication settings in IIS6 and Exchange 2003, I found this tool:&amp;nbsp;&lt;a href="http://www.petri.co.il/software/rpcnofrontend.zip"&gt;http://www.petri.co.il/software/rpcnofrontend.zip&lt;/a&gt; designed for configuring the registry when you don't have a front end E2k3 server. Turns out what I was doing differently/wrong is I didn't have any reg entries for my external DNS name. I could have sworn that I have not needed that in that past, but it works! &lt;a href="http://www.petri.co.il/how-can-i-configure-rpc-over-https-on-exchange-2003-single-server-scenario.htm"&gt;Here's&lt;/a&gt; the page I found this tool at.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-4894373019048154377?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/N89AyAQOf53wy2cAjwDVxB6gEAg/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/N89AyAQOf53wy2cAjwDVxB6gEAg/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/N89AyAQOf53wy2cAjwDVxB6gEAg/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/N89AyAQOf53wy2cAjwDVxB6gEAg/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/SVB16EF9c-4" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/4894373019048154377/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=4894373019048154377" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/4894373019048154377?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/4894373019048154377?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/SVB16EF9c-4/exchange-2003-rpc-over-https.html" title="Exchange 2003 RPC over https" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2009/12/exchange-2003-rpc-over-https.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A04MRXs-fip7ImA9WxBREE4.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-7542197896150258893</id><published>2009-12-28T17:37:00.001-05:00</published><updated>2009-12-28T17:39:44.556-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-28T17:39:44.556-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="future of security" /><category scheme="http://www.blogger.com/atom/ns#" term="antiforensics" /><category scheme="http://www.blogger.com/atom/ns#" term="hacking" /><title>DECAF down! &amp; IIS 6 0-day</title><content type="html">I hope everyone had a good holiday or at least a good few days off!&lt;br /&gt;
&lt;br /&gt;
Well the decaf tool I blogged about a few weeks ago was disabled. The site,&amp;nbsp;&lt;a href="http://www.decafme.org/"&gt;http://www.decafme.org/&lt;/a&gt;&amp;nbsp;explains why. Well I'm thrilled he'll bring v2 out shortly, I was a little surprised that it phoned home with usage logs. The sites owner also looks like they have forums up &lt;a href="http://www.cruxt.org/"&gt;here&lt;/a&gt;, although I haven't had a chance to check them out yet...&lt;br /&gt;
&lt;br /&gt;
In other news, the &lt;a href="http://isc.sans.org/"&gt;Internet Storm Center&lt;/a&gt;&amp;nbsp;stated that MS has responded to the IIS 0 day that is currently proof of concept. I haven't seen any code in the Offensive Security database yet, but expect to soon. The next 2 weeks are probably heaven for IIS Web App pentesters. If MS does release a patch on Black Tuesday in January, be prepared to patch!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-7542197896150258893?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/CL5otxdrzjlwaeV9aW0aOvAkPLs/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/CL5otxdrzjlwaeV9aW0aOvAkPLs/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/CL5otxdrzjlwaeV9aW0aOvAkPLs/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/CL5otxdrzjlwaeV9aW0aOvAkPLs/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/WPXevCraqkY" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/7542197896150258893/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=7542197896150258893" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/7542197896150258893?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/7542197896150258893?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/WPXevCraqkY/decaf-down-iis-6-0-day.html" title="DECAF down! &amp; IIS 6 0-day" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2009/12/decaf-down-iis-6-0-day.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0QDRnc8eSp7ImA9WxBREE4.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-2129325392925769107</id><published>2009-12-28T17:29:00.000-05:00</published><updated>2009-12-28T17:29:37.971-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-28T17:29:37.971-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="security" /><category scheme="http://www.blogger.com/atom/ns#" term="hacking" /><title>Facebook Account Hacking, Phishing, and Weird stuff from FB Friends</title><content type="html">Have you had messages from your friends telling you to look at the video of you from last night? While by now (this was a saved post to write about later...) I haven't had one in awhile, I was wondering what else other Facebook Phishing attempts you have seen lately. It has got to be due to weak passwords, users getting phished, or having their computer p0wned by malware. Comments?&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-2129325392925769107?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/5ayejyIIRdwF7lQHWuGtkZrnMr8/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/5ayejyIIRdwF7lQHWuGtkZrnMr8/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/5ayejyIIRdwF7lQHWuGtkZrnMr8/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/5ayejyIIRdwF7lQHWuGtkZrnMr8/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/y3_5rprjGp4" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/2129325392925769107/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=2129325392925769107" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/2129325392925769107?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/2129325392925769107?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/y3_5rprjGp4/facebook-account-hacking-phishing-and.html" title="Facebook Account Hacking, Phishing, and Weird stuff from FB Friends" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2009/12/facebook-account-hacking-phishing-and.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CkcFRnY-fyp7ImA9WxBREEk.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-6002370012419039267</id><published>2009-12-15T11:43:00.001-05:00</published><updated>2009-12-28T17:40:17.857-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-28T17:40:17.857-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="future of security" /><category scheme="http://www.blogger.com/atom/ns#" term="antiforensics" /><category scheme="http://www.blogger.com/atom/ns#" term="hacking" /><title>Decaf Coffee</title><content type="html">Most of you probably know about Microsoft's tool they give law enforcement called COFFEE (&lt;span style="font-family: verdana, arial, helvetica, geneva, sans-serif; font-size: 13px;"&gt;Computer Online Forensic Evidence Extractor). I read over at the &lt;a href="http://isc.sans.org/diary.html?storyid=7741&amp;amp;rss"&gt;Internet Storm Center&lt;/a&gt;&amp;nbsp;that some researchers released some proof of concept code called DECAF (Detect and Eliminate Computer Assisted Forensics). While, it's a cool proof of concept evasion tool, I'm curious to know how a few things work such as the "on the fly power down" (does it just kill the power?)&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: verdana, arial, helvetica, geneva, sans-serif; font-size: 13px;"&gt;&lt;br /&gt;
&lt;/span&gt;&lt;br /&gt;
&lt;span style="font-family: verdana, arial, helvetica, geneva, sans-serif; font-size: small;"&gt;&lt;span style="font-size: 13px;"&gt;All in all though, you can check out DECAF &lt;a href="http://decafme.org/"&gt;here&lt;/a&gt;, and if I get a chance to see how it works more I'll update this post.&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-6002370012419039267?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/gLjpbFTLrHZPkZqjjSZwRFw_EFE/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/gLjpbFTLrHZPkZqjjSZwRFw_EFE/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/gLjpbFTLrHZPkZqjjSZwRFw_EFE/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/gLjpbFTLrHZPkZqjjSZwRFw_EFE/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/tcsdKATwtBg" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/6002370012419039267/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=6002370012419039267" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/6002370012419039267?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/6002370012419039267?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/tcsdKATwtBg/decaf-coffee.html" title="Decaf Coffee" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2009/12/decaf-coffee.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0YBSH85fSp7ImA9WxBTFEo.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-3669687417982820829</id><published>2009-12-10T16:05:00.000-05:00</published><updated>2009-12-10T16:05:59.125-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-10T16:05:59.125-05:00</app:edited><title>The Great American Hack-a-thon</title><content type="html">The &lt;a href="http://www.rit.edu/academicaffairs/centerforstudentinnovation/"&gt;Center for Innovation&lt;/a&gt; at &lt;a href="http://www.rit.edu/"&gt;RIT&lt;/a&gt; is sponsoring an &lt;a href="http://sunlightlabs.com/events/44/"&gt;event&amp;nbsp;&lt;/a&gt;&amp;nbsp;that is part of the &lt;a href="http://www.sunlightlabs.com/hackathon09/"&gt;great american hack-a-thon&lt;/a&gt;. It appears that this is a nation event put on by &lt;a href="http://www.sunlightlabs.com/"&gt;Sunlight Labs&lt;/a&gt;&amp;nbsp;and it's great to see &lt;a href="http://www.rit.edu/"&gt;RIT&lt;/a&gt; taking part in it!&lt;br /&gt;
&lt;br /&gt;
The following projects and more will be worked on:&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: #4f4d4d; font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 12px; line-height: 25px;"&gt;&amp;nbsp;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;nbsp;&lt;a href="http://sunlightlabs.com/projects/FiftyStates/" style="color: #184259; outline-color: initial; outline-style: none; outline-width: initial;"&gt;The Fifty State Project&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;
&lt;span class="Apple-style-span" style="color: #4f4d4d; font-family: 'Helvetica Neue', Helvetica, Arial, sans-serif; font-size: 12px; line-height: 25px;"&gt;&lt;dd class="project" style="float: none; margin-bottom: 2px; margin-left: 118px; margin-right: 20px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; width: 200px;"&gt;&lt;a href="http://sunlightlabs.com/projects/tcorps/" style="color: #184259; outline-color: initial; outline-style: none; outline-width: initial;"&gt;TransparencyCorps&lt;/a&gt;&lt;/dd&gt;&lt;dd class="project" style="float: none; margin-bottom: 2px; margin-left: 118px; margin-right: 20px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; width: 200px;"&gt;&lt;a href="http://sunlightlabs.com/projects/sunlight-labs-api/" style="color: #184259; outline-color: initial; outline-style: none; outline-width: initial;"&gt;Sunlight Labs API&lt;/a&gt;&lt;/dd&gt;&lt;dd class="project" style="float: none; margin-bottom: 2px; margin-left: 118px; margin-right: 20px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; width: 200px;"&gt;&lt;a href="http://sunlightlabs.com/projects/capitol-words/" style="color: #184259; outline-color: initial; outline-style: none; outline-width: initial;"&gt;Capitol Words&lt;/a&gt;&lt;/dd&gt;&lt;dd class="project" style="float: none; margin-bottom: 2px; margin-left: 118px; margin-right: 20px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; width: 200px;"&gt;&lt;a href="http://sunlightlabs.com/projects/datacatalog/" style="color: #184259; outline-color: initial; outline-style: none; outline-width: initial;"&gt;National Data Catalog&lt;/a&gt;&lt;/dd&gt;&lt;dd class="project" style="float: none; margin-bottom: 2px; margin-left: 118px; margin-right: 20px; margin-top: 0px; padding-bottom: 0px; padding-left: 0px; padding-right: 0px; padding-top: 0px; width: 200px;"&gt;&lt;a href="http://sunlightlabs.com/projects/CIVX/" style="color: #184259; outline-color: initial; outline-style: none; outline-width: initial;"&gt;CIVX.us&lt;/a&gt;&lt;/dd&gt;&lt;/span&gt;I hope to get a chance to stop by, even with Xmas on the way, and our first real snowfall here in WNY, I'm hoping to get out on my snowboard! =)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-3669687417982820829?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/GcF7Np4EdvE9menQIELzAyOzOb0/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/GcF7Np4EdvE9menQIELzAyOzOb0/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/GcF7Np4EdvE9menQIELzAyOzOb0/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/GcF7Np4EdvE9menQIELzAyOzOb0/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/UWNGmLePHPQ" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/3669687417982820829/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=3669687417982820829" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/3669687417982820829?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/3669687417982820829?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/UWNGmLePHPQ/great-american-hack-thon.html" title="The Great American Hack-a-thon" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2009/12/great-american-hack-thon.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEAAQXozeip7ImA9WxBTFE0.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-1780172878885527994</id><published>2009-12-09T19:59:00.001-05:00</published><updated>2009-12-09T19:59:00.482-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-09T19:59:00.482-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="nmap" /><category scheme="http://www.blogger.com/atom/ns#" term="secviz" /><category scheme="http://www.blogger.com/atom/ns#" term="security" /><category scheme="http://www.blogger.com/atom/ns#" term="book reviews" /><title>Some old (well a few months) book reviews I have written</title><content type="html">I have written a few book reviews for the site &lt;a href="http://www.ethicalhacker.net/"&gt;www.ethicalhacker.net.&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
Here is a &lt;a href="http://www.ethicalhacker.net/content/view/244/1/"&gt;review&lt;/a&gt; of Fyodor's Nmap book, &amp;nbsp;and a &lt;a href="http://www.ethicalhacker.net/content/view/255/2/"&gt;review&lt;/a&gt; of Raffael Marty's Applied Security Visualization book.&lt;br /&gt;
&lt;br /&gt;
They are both great reads. Alot of Fyodor's book is available &lt;a href="http://nmap.org/book/toc.html"&gt;here.&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-1780172878885527994?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/xHUpQ5MYZMF5pc0DdUzVptluKkI/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/xHUpQ5MYZMF5pc0DdUzVptluKkI/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/xHUpQ5MYZMF5pc0DdUzVptluKkI/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/xHUpQ5MYZMF5pc0DdUzVptluKkI/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/D5lifmUL2u0" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/1780172878885527994/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=1780172878885527994" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/1780172878885527994?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/1780172878885527994?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/D5lifmUL2u0/some-old-well-few-months-book-reviews-i.html" title="Some old (well a few months) book reviews I have written" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2009/12/some-old-well-few-months-book-reviews-i.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D04CQH45cCp7ImA9WxBTE0Q.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-7769638678395843897</id><published>2009-12-09T16:56:00.001-05:00</published><updated>2009-12-09T16:59:21.028-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-09T16:59:21.028-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="SQL 2005 backup" /><category scheme="http://www.blogger.com/atom/ns#" term="SQL 2005" /><category scheme="http://www.blogger.com/atom/ns#" term="transaction logs" /><title>SQL Server Backups</title><content type="html">If you are new (or used to SQL 2000) SQL 2005, you may notice that after your first full backup, your transaction logs aren't clearing. I ran into this problem today with one of our SQL 2005 servers. When you do a full backup in SQL 2005, you are only backing up the actual database, not the log files. In order to actually backup the SQL logs for a given db, you need to actually run a separate "Log Backup" job. This will actually backup the logs, and then truncate them, keeping your log files from getting to large. You can backup the logs multiple times in between full backups, say if you are a bank and need to backup logs every 5 minutes. You will need to backup jobs in say Backup Exec to perform this type of backup scheme.&lt;br /&gt;
&lt;br /&gt;
Another type of backup is a "Simple Backup" which actually backups up the db, commits the Transaction logs, and is roughly&amp;nbsp;equivalent&amp;nbsp;to the "Full" that you think of in SQL 2000, (or Exchange) with the logs flushing and maintaining a manageable logfile size. Know though, that when you do simple backup you can only restore a full backup, and can't "roll back" your logs.&lt;br /&gt;
&lt;br /&gt;
Here is a thread with more info on &lt;a href="http://social.msdn.microsoft.com/Forums/en/sqlgetstarted/thread/8481e0fa-1820-4350-b809-15ea9d05c938"&gt;technet,&lt;/a&gt;&amp;nbsp;and another resource on &lt;a href="http://technet.microsoft.com/en-us/library/ms345583(SQL.90).aspx"&gt;technet&lt;/a&gt; explaining this in more detail.&lt;br /&gt;
&lt;br /&gt;
We ended up choosing simple, as this is the most hands off approach, and we only ever have a need to restore to the last full backup. You can change from Full to Simple in the options section of an individual database's properties.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-7769638678395843897?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/CpbLHBw5sI1NQQSWWbhGEytgS_4/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/CpbLHBw5sI1NQQSWWbhGEytgS_4/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/CpbLHBw5sI1NQQSWWbhGEytgS_4/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/CpbLHBw5sI1NQQSWWbhGEytgS_4/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/SW7g8mdFdWs" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/7769638678395843897/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=7769638678395843897" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/7769638678395843897?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/7769638678395843897?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/SW7g8mdFdWs/sql-server-backups.html" title="SQL Server Backups" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2009/12/sql-server-backups.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUAAQHc6eip7ImA9WxBTE00.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-4196277151509118825</id><published>2009-12-08T16:24:00.002-05:00</published><updated>2009-12-08T16:29:01.912-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-08T16:29:01.912-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="info week" /><category scheme="http://www.blogger.com/atom/ns#" term="future of security" /><category scheme="http://www.blogger.com/atom/ns#" term="Winn Schwartau" /><category scheme="http://www.blogger.com/atom/ns#" term="hacker jeapordy" /><category scheme="http://www.blogger.com/atom/ns#" term="black hat" /><title>Blackhat Info Week "dark Reading"</title><content type="html">So&amp;nbsp; Black Hat and Info Week are sponsoring a &lt;a href="https://www.blackhat.com/html/virtual2009/virtual2009-home.html"&gt;dark reading virtual event&lt;/a&gt;... will this be another regurgitation of stuff we've already heard? I guess I'll check it out for a bit, since work is busy, but with long waits in between.&lt;br /&gt;
&lt;br /&gt;
I recommend the 12pm session with &lt;a href="http://www.winnschwartau.com/"&gt;Winn Schwartau&lt;/a&gt; (of hacker jeapordy fame) who is talking about &lt;b&gt;"How Next-Generation Technologies Could Endander your Data."&lt;/b&gt; I like hearing Winn speak, so I'm hoping it will be good!&lt;span style="border-collapse: separate; color: black; font-family: 'Times New Roman'; font-size: medium; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px;"&gt;&lt;span style="color: white; font-family: Arial,Helvetica,sans-serif; font-size: small; font-style: italic; font-weight: bold;"&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-4196277151509118825?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/UD-WHMBHhEbf_Ft4zO97ohGml0A/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/UD-WHMBHhEbf_Ft4zO97ohGml0A/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/UD-WHMBHhEbf_Ft4zO97ohGml0A/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/UD-WHMBHhEbf_Ft4zO97ohGml0A/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/RVmwWC8wxx8" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/4196277151509118825/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=4196277151509118825" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/4196277151509118825?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/4196277151509118825?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/RVmwWC8wxx8/blackhat-info-week-dark-reading.html" title="Blackhat Info Week &quot;dark Reading&quot;" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2009/12/blackhat-info-week-dark-reading.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0IAQH8-cCp7ImA9WxBTE00.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-318193850494563004</id><published>2009-12-08T14:44:00.001-05:00</published><updated>2009-12-08T14:45:41.158-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-08T14:45:41.158-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="shmoocon" /><category scheme="http://www.blogger.com/atom/ns#" term="sys admin" /><category scheme="http://www.blogger.com/atom/ns#" term="hacking" /><category scheme="http://www.blogger.com/atom/ns#" term="networking" /><title>Shmoocon Labs</title><content type="html">Me and my friend Joe Testa of Positron Security submitted to participate in Shmoocon Labs. Basically you show up 36 hours before the con starts, and you setup the con network. You setup the wireless, wired network, network monitoring, and get to play around with &amp;nbsp;stuff in "Mutli Vendor on the Fly Interoperability. Here's the &lt;a href="http://www.shmoocon.org/labs.html"&gt;link&lt;/a&gt; with the description... anyone going to shmoocon 6 in DC planning on applying?&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-318193850494563004?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/tsAlcMMmlaV94cln2lD9QcjTIa0/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/tsAlcMMmlaV94cln2lD9QcjTIa0/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/tsAlcMMmlaV94cln2lD9QcjTIa0/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/tsAlcMMmlaV94cln2lD9QcjTIa0/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/3uuqHqEgXAE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/318193850494563004/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=318193850494563004" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/318193850494563004?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/318193850494563004?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/3uuqHqEgXAE/shmoocon-labs.html" title="Shmoocon Labs" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2009/12/shmoocon-labs.html</feedburner:origLink></entry><entry gd:etag="W/&quot;Dk8EQX88cCp7ImA9WxBTEko.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-3857120808963626663</id><published>2009-12-08T07:20:00.002-05:00</published><updated>2009-12-08T07:20:00.178-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-08T07:20:00.178-05:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="future of security" /><category scheme="http://www.blogger.com/atom/ns#" term="Carnal Ownage" /><category scheme="http://www.blogger.com/atom/ns#" term="security" /><category scheme="http://www.blogger.com/atom/ns#" term="hacking" /><title>Good Read via Carnal Ownage</title><content type="html">Well I was catching up on my google reader and I ran into this post by Chris Gates/Carnal Ownage, an acquaintance from security cons: &lt;a href="http://carnal0wnage.blogspot.com/2009/11/past-present-and-future-of-security-and.html"&gt;http://carnal0wnage.blogspot.com/2009/11/past-present-and-future-of-security-and.html&lt;/a&gt;. I agree with a key tenant shown through out these clips: security researchers tend to forget the lessons they learned last year and move onto the next fad (i.e. from virtualization to iPhones)&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;I know it's not like we can just come up with a security framework, but as Bruce Potter wrote in his article in Security &amp;amp; Privacy this month: "High Times for Trusted Computing" we need to have a better understanding of what is allowed to run on our computer. UAC didn't work. You continue to be able to exploit the browser, so what will we have to do to really have control over what is run on our systems? &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Another excellent point FX makes is that the adults and guru's in the security industry need to take more of an interest in training their successors. I agree with this. I teach at a university and I see a lot of student while yea, they didn't grow up building computers, they did learn most of what's important inside one. The difference is that an education in IT is much easily obtained these days, but there's no way that can replace the interest of a 15 year old plugging away in their bedroom with the appeal of controlling some really powerful computers. (Don't get me wrong... I do see some of them) What's the answer to get the kids thinking more like hackers? Nearly everything that's a great learning expereince into how things work from a "what a teenager has access to" is frowned upon these days (modding your iPhone, your XBox -- at least Sony encourages some PSP and PS3 modding) &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Another point brought up was a perception of the futility of Pen Testing. I feel Pen Testing has it's place, and you need to be a smart cookie to be effective at it. Problem is you have rules of engagement. You can only attack what they want you to. You don't have the ability -- like the bad guys -- to actually attack anything you want/can. Chris Nickerson does a great job of thinking outside the box on this topic. &lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;I see the next generation of hackers coming from a grass roots movement; a combination of the internet, hackerspaces and similar spaces, and a willingness of adults to take the time to be role models and transfer some of their knowledge over to the next gen of kids getting ready to enter the field. By the time companies realize they need this breed of kid though, it may be already too late... unless we drastically change our security paradigms and ways of thinking to how we compute (TPM?) and how we approach securing ourselves. &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-3857120808963626663?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/Y7BAdGXIt-UhM2p9-DamJKaqfdg/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Y7BAdGXIt-UhM2p9-DamJKaqfdg/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/Y7BAdGXIt-UhM2p9-DamJKaqfdg/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Y7BAdGXIt-UhM2p9-DamJKaqfdg/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/ZoVEXnRhdjA" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/3857120808963626663/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=3857120808963626663" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/3857120808963626663?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/3857120808963626663?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/ZoVEXnRhdjA/good-read-via-carnal-ownage.html" title="Good Read via Carnal Ownage" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2009/12/good-read-via-carnal-ownage.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEYCQHs8cCp7ImA9WxBTEkk.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-3796769228044537261</id><published>2009-12-07T23:15:00.003-05:00</published><updated>2009-12-07T23:22:41.578-05:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-07T23:22:41.578-05:00</app:edited><title>Exchange Client Attachment Documentation</title><content type="html">So we added a new Exchange 2007 server a week ago, and we started to migrate mailboxes over the weekend. So Monday morning (EST) china get's ahold of me stating they can't open attachments in outlook 2003. I think "weird.. I didn't disable anything."&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Turns out the settings to disable all (or some) attachments for Outlook Web Access (OWA) Outlook as well. &lt;span class="Apple-style-span" style="line-height: 16px; "&gt;&lt;span class="Apple-style-span" style="font-size: medium;"&gt;&lt;span class="Apple-style-span"  style="font-family:verdana;"&gt;In the Exchange Management Console see (Server Configuration/Client Access/Outlook Web Access/owa (Default Web Site), Public Computer Access/ Enable direct file access, Customize) there are attachment settings that you need to enable (or not disable) in order to open attachments in Outlook 2003 and 2007. &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt;&lt;span class="Apple-style-span"  style="font-family:verdana;"&gt;&lt;span class="Apple-style-span" style="font-size: medium; line-height: 16px;"&gt;&lt;br /&gt;What bother's me is that E2k7 SP2 has this behavior and it's not documented anywhere. :(&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-3796769228044537261?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/yojjPsnXw7P4gTPx3IvfkSpHaBA/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/yojjPsnXw7P4gTPx3IvfkSpHaBA/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/yojjPsnXw7P4gTPx3IvfkSpHaBA/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/yojjPsnXw7P4gTPx3IvfkSpHaBA/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/bJ5N1mo8YCA" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/3796769228044537261/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=3796769228044537261" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/3796769228044537261?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/3796769228044537261?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/bJ5N1mo8YCA/exchange-client-attachment.html" title="Exchange Client Attachment Documentation" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2009/12/exchange-client-attachment.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUIARn05cCp7ImA9WB5VEks.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-6167828261007975343</id><published>2007-08-04T18:28:00.000-04:00</published><updated>2007-08-04T18:45:47.328-04:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2007-08-04T18:45:47.328-04:00</app:edited><title>Dave Josephsen BGP Hijacking to spam!! cool stuff!</title><content type="html">I'm currently at a presentation by Dave Josephsen who is explaining how if you have a AS Number (meaning you participate in BGP) with a /24 public IP range, that you can hijack someone's /24 for a bit (15 minutes to a few hours) and now he "owns" your IP for a bit. This let's him (since you have a /24 that probably are not on a DNSRBL) so now they can send out a bunch of spam; since your IPs aren't filtered.&lt;br /&gt;&lt;br /&gt;For example, &lt;a href="http://www.xkcd.com/195/"&gt;here's&lt;/a&gt;  an example of what's left on the internet. (Really cool picture)&lt;br /&gt;&lt;br /&gt;This was done by correlating a spam Honeypot and BGP prefix updates.&lt;br /&gt;&lt;br /&gt;More info &lt;a href="http://www.skeptech.org/?p=37"&gt;here!&lt;/a&gt; Great talk Dave!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-6167828261007975343?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/4A6QRxnGkij5LIRyGqrW3MNKqNc/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/4A6QRxnGkij5LIRyGqrW3MNKqNc/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/4A6QRxnGkij5LIRyGqrW3MNKqNc/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/4A6QRxnGkij5LIRyGqrW3MNKqNc/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/mtFddF9H8m0" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/6167828261007975343/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=6167828261007975343" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/6167828261007975343?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/6167828261007975343?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/mtFddF9H8m0/dave-josephsen-bgp-hijacking-to-spam.html" title="Dave Josephsen BGP Hijacking to spam!! cool stuff!" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>1</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2007/08/dave-josephsen-bgp-hijacking-to-spam.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0EBSX08cCp7ImA9WB5VEkg.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-3184994659412903039</id><published>2007-08-04T15:25:00.000-04:00</published><updated>2007-08-04T15:27:38.378-04:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2007-08-04T15:27:38.378-04:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="defcon" /><title>Day 1 wrap up</title><content type="html">So I went to the "Managing your Security Career" in which they had some good points, but it reminded me way too much about a IEEE paper I read a few months ago.&lt;br /&gt;&lt;br /&gt;I couldn't get into the Dark Tangent "cicsogate" pres., but I heard it was really good.&lt;br /&gt;&lt;br /&gt;We went out to some clubs and I blew about $400 dollars today. Woah! Haven't blown that much in awhile!&lt;br /&gt;&lt;br /&gt;I'm now getting settled in for the day of the best presentations!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-3184994659412903039?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/1YW-158nd8jDEGMErU2rJoAfjtU/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/1YW-158nd8jDEGMErU2rJoAfjtU/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/1YW-158nd8jDEGMErU2rJoAfjtU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/1YW-158nd8jDEGMErU2rJoAfjtU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/Snt6r3EEhOk" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/3184994659412903039/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=3184994659412903039" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/3184994659412903039?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/3184994659412903039?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/Snt6r3EEhOk/day-1-wrap-up.html" title="Day 1 wrap up" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2007/08/day-1-wrap-up.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0IFQXk5fyp7ImA9WB5VEkg.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-8478284989188451513</id><published>2007-08-04T15:22:00.000-04:00</published><updated>2007-08-04T15:25:10.727-04:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2007-08-04T15:25:10.727-04:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="eff" /><category scheme="http://www.blogger.com/atom/ns#" term="privacy" /><category scheme="http://www.blogger.com/atom/ns#" term="TOR" /><title>Tor</title><content type="html">Do you use &lt;a href="http://tor.eff.org/"&gt;Tor&lt;/a&gt; for your internet surfing? If so, you should!!!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-8478284989188451513?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/xrHJrKvrQFl1Grxvdt7htf1F_aI/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/xrHJrKvrQFl1Grxvdt7htf1F_aI/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/xrHJrKvrQFl1Grxvdt7htf1F_aI/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/xrHJrKvrQFl1Grxvdt7htf1F_aI/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/bBQDczwmKLw" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/8478284989188451513/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=8478284989188451513" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/8478284989188451513?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/8478284989188451513?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/bBQDczwmKLw/tor.html" title="Tor" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2007/08/tor.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CUIERn8-fyp7ImA9WB5VEkg.&quot;"><id>tag:blogger.com,1999:blog-8787491.post-7130726903846255615</id><published>2007-08-04T14:51:00.001-04:00</published><updated>2007-08-04T14:51:47.157-04:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2007-08-04T14:51:47.157-04:00</app:edited><title>Video of Dateline chick at defcon</title><content type="html">Check &lt;a href="http://www.youtube.com/watch?v=nCvmkxO5hoQ"&gt;this&lt;/a&gt; out!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8787491-7130726903846255615?l=jpbourget.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/gNeXtQjABKGDSBOnBQMYZo2Jtfk/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/gNeXtQjABKGDSBOnBQMYZo2Jtfk/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/gNeXtQjABKGDSBOnBQMYZo2Jtfk/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/gNeXtQjABKGDSBOnBQMYZo2Jtfk/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/PunkrokksBlog/~4/gasVKzIwGXM" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://jpbourget.blogspot.com/feeds/7130726903846255615/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=8787491&amp;postID=7130726903846255615" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/7130726903846255615?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8787491/posts/default/7130726903846255615?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/PunkrokksBlog/~3/gasVKzIwGXM/video-of-dateline-chick-at-defcon.html" title="Video of Dateline chick at defcon" /><author><name>punkrokk</name><uri>http://www.blogger.com/profile/15463277369213868565</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://jpbourget.blogspot.com/2007/08/video-of-dateline-chick-at-defcon.html</feedburner:origLink></entry></feed>

