<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><!DOCTYPE rss PUBLIC "-//Netscape Communications//DTD RSS 0.91//EN" "http://my.netscape.com/publish/formats/rss-0.91.dtd">
<rss xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="0.91">
<channel>
  <title>      SANS Information Security Reading Room</title>
  <link>       http://www.sans.org/reading_room/</link>
  <description>Last 25 Computer Security Papers added to the Reading Room</description>
  <language>   en-us</language>
<copyright>(C) SANS Institute 2009</copyright>
             <webMaster>webmaster@sans.org</webMaster>
             <image>
               <title>SANS RSS Feed</title>
               <url>http://www.sans.org/images/rss_logo.gif</url>
               <link>http://www.sans.org/reading_room/</link>
             </image>
  <atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.feedburner.com/SansInstituteRRLast25" type="application/rss+xml" /><feedburner:browserFriendly></feedburner:browserFriendly><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com" /><item>
    <title>SANS 2009</title>
    <link>http://www.sans.org/info/35964/</link>
  <guid>       http://www.sans.org/info/35964/</guid>
    <description>More than 35 courses, SANS top instructors, all in one great place! SANS 2009 is being held in Orlando, FL on March 2-9. Register today!</description>
  </item>
  <item>
    <title><![CDATA[Gathering Security Metrics and Reaping the Rewards]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/leadership/rss/gathering_security_metrics_and_reaping_the_rewards_33234</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/leadership/rss/gathering_security_metrics_and_reaping_the_rewards_33234</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Management &amp; Leadership</p><p><strong>Paper Added:</strong> November 16, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Hey Dude! I Can Do a Great Humphrey Bogart!]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/networkdevs/rss/hey_dude_i_can_do_a_great_humphrey_bogart_33233</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/networkdevs/rss/hey_dude_i_can_do_a_great_humphrey_bogart_33233</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Network Devices</p><p><strong>Paper Added:</strong> November 11, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[A Multi-Perspective View of PHP Remote File Include Attacks]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/detection/rss/a_multiperspective_view_of_php_remote_file_include_attacks_33229</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/detection/rss/a_multiperspective_view_of_php_remote_file_include_attacks_33229</guid>
    <description><![CDATA[ <p><strong>Categories:</strong> Intrusion Detection,Intrusion Prevention</p><p><strong>Paper Added:</strong> November 10, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Check Point Firewall Log Analysis In-Depth]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/logging/rss/check_point_firewall_log_analysis_indepth_33228</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/logging/rss/check_point_firewall_log_analysis_indepth_33228</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Logging Technology and Techniques</p><p><strong>Paper Added:</strong> November 10, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Efficiently Deducing IDS False Positives Using System Profiling ]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/detection/rss/efficiently_deducing_ids_false_positives_using_system_profiling_33223</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/detection/rss/efficiently_deducing_ids_false_positives_using_system_profiling_33223</guid>
    <description><![CDATA[ <p><strong>Categories:</strong> Intrusion Detection,Intrusion Prevention</p><p><strong>Paper Added:</strong> November 9, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Why Crack When You Can Pass the Hash?]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/testing/rss/why_crack_when_you_can_pass_the_hash_33219</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/testing/rss/why_crack_when_you_can_pass_the_hash_33219</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Penetration Testing</p><p><strong>Paper Added:</strong> November 3, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[A Fuzzing Approach to Credentials Discovery using Burp Intruder]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/testing/rss/a_fuzzing_approach_to_credentials_discovery_using_burp_intruder_33214</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/testing/rss/a_fuzzing_approach_to_credentials_discovery_using_burp_intruder_33214</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Penetration Testing</p><p><strong>Paper Added:</strong> October 29, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Women in IT Security Project Management]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/leadership/rss/women_in_it_security_project_management_33209</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/leadership/rss/women_in_it_security_project_management_33209</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Management &amp; Leadership</p><p><strong>Paper Added:</strong> October 27, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Two-Factor Authentication: Can You Choose the Right One?]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/authentication/rss/twofactor_authentication_can_you_choose_the_right_one_33093</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/authentication/rss/twofactor_authentication_can_you_choose_the_right_one_33093</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Authentication</p><p><strong>Paper Added:</strong> October 15, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Security Concerns in Using Open Source Software for Enterprise Requirements]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/awareness/rss/security_concerns_in_using_open_source_software_for_enterprise_requirements_1305</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/awareness/rss/security_concerns_in_using_open_source_software_for_enterprise_requirements_1305</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Security Awareness</p><p><strong>Paper Added:</strong> October 8, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Harness the Power of SIEM ]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/detection/rss/harness_the_power_of_siem_33204</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/detection/rss/harness_the_power_of_siem_33204</guid>
    <description><![CDATA[ <p><strong>Categories:</strong> Intrusion Detection,Logging Technology and Techniques</p><p><strong>Paper Added:</strong> October 6, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Cisco Security Agent and Incident Handling ]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/incident/rss/cisco_security_agent_and_incident_handling_33203</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/incident/rss/cisco_security_agent_and_incident_handling_33203</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Incident Handling</p><p><strong>Paper Added:</strong> October 1, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Best Practices in Data Protection:  Encryption, Key Management and Tokenization ]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/application/rss/best_practices_in_data_protection_encryption_key_management_and_tokenization_33199</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/application/rss/best_practices_in_data_protection_encryption_key_management_and_tokenization_33199</guid>
    <description><![CDATA[ <p><strong>Categories:</strong> Application/Database Sec,Best Practices,Encryption & VPNs,Compliance</p><p><strong>Paper Added:</strong> September 29, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Six Ways to Reduce PCI DSS Audit Scope by Tokenizing Cardholder data]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/bestprac/rss/six_ways_to_reduce_pci_dss_audit_scope_by_tokenizing_cardholder_data_33194</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/bestprac/rss/six_ways_to_reduce_pci_dss_audit_scope_by_tokenizing_cardholder_data_33194</guid>
    <description><![CDATA[ <p><strong>Categories:</strong> Best Practices,eCommerce,Encryption & VPNs,Compliance</p><p><strong>Paper Added:</strong> September 29, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Simple Windows Batch Scripting for Intrusion Discovery]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/auditing/rss/simple_windows_batch_scripting_for_intrusion_discovery_33193</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/auditing/rss/simple_windows_batch_scripting_for_intrusion_discovery_33193</guid>
    <description><![CDATA[ <p><strong>Categories:</strong> Auditing & Assessment,Incident Handling</p><p><strong>Paper Added:</strong> September 29, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Mitigating Insider Sabotage]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/casestudies/rss/mitigating_insider_sabotage_33189</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/casestudies/rss/mitigating_insider_sabotage_33189</guid>
    <description><![CDATA[ <p><strong>Categories:</strong> Case Studies,Incident Handling</p><p><strong>Paper Added:</strong> September 28, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Security Incident Handling in High Availability Environments ]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/incident/rss/security_incident_handling_in_high_availability_environments_33188</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/incident/rss/security_incident_handling_in_high_availability_environments_33188</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Incident Handling</p><p><strong>Paper Added:</strong> September 15, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Investigative Tree Models]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/incident/rss/investigative_tree_models_33183</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/incident/rss/investigative_tree_models_33183</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Incident Handling</p><p><strong>Paper Added:</strong> September 15, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Mac OS X Malware Analysis]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/forensics/rss/mac_os_x_malware_analysis_33178</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/forensics/rss/mac_os_x_malware_analysis_33178</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Forensics</p><p><strong>Paper Added:</strong> September 8, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Incident Handlers Guide to SQL Injection Worms]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/incident/rss/incident_handlers_guide_to_sql_injection_worms_33133</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/incident/rss/incident_handlers_guide_to_sql_injection_worms_33133</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Incident Handling</p><p><strong>Paper Added:</strong> June 18, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Building an Automated Behavioral Malware Analysis Environment using Open Source Software]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/tools/rss/building_an_automated_behavioral_malware_analysis_environment_using_open_source_software_33129</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/tools/rss/building_an_automated_behavioral_malware_analysis_environment_using_open_source_software_33129</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Tools</p><p><strong>Paper Added:</strong> June 18, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[PCI DSS and Incident Handling: What is required before, during and after an incident]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/compliance/rss/pci_dss_and_incident_handling_what_is_required_before_during_and_after_an_incident_33119</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/compliance/rss/pci_dss_and_incident_handling_what_is_required_before_during_and_after_an_incident_33119</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Compliance</p><p><strong>Paper Added:</strong> June 16, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Virtual Rapid Response Systems]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/incident/rss/virtual_rapid_response_systems_33114</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/incident/rss/virtual_rapid_response_systems_33114</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Incident Handling</p><p><strong>Paper Added:</strong> June 11, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[Effective Time and Communication Management]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/leadership/rss/effective_time_and_communication_management_33113</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/leadership/rss/effective_time_and_communication_management_33113</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Management &amp; Leadership</p><p><strong>Paper Added:</strong> June 9, 2009</p>]]></description>
  </item>
  <item>
    <title><![CDATA[IOScat - a Port of Netcat's TCP functions to Cisco IOS]]></title>
    <link>http://www.sans.org/reading_room/whitepapers/tools/rss/ioscat_a_port_of_netcats_tcp_functions_to_cisco_ios_33109</link>
  <guid>       http://www.sans.org/reading_room/whitepapers/tools/rss/ioscat_a_port_of_netcats_tcp_functions_to_cisco_ios_33109</guid>
    <description><![CDATA[ <p><strong>Category:</strong> Tools</p><p><strong>Paper Added:</strong> May 29, 2009</p>]]></description>
  </item>
</channel>
</rss>
