


 <?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>NightLion</title>
	<atom:link href="http://www.nightlion.net/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.nightlion.net</link>
	<description>OSX and iOS App Reviews, Cyber Security, Ethical Hacking, Social Engineering, Technology News</description>
	<lastBuildDate>Wed, 22 Feb 2012 04:08:46 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>&#9733; Teaching my Wife Italian with Rosetta Stone TOTALe (Part 1)</title>
		<link>http://www.nightlion.net/reviews/2012/teaching-my-wife-italian-with-rosetta-stone-totale-part-1/</link>
		<comments>http://www.nightlion.net/reviews/2012/teaching-my-wife-italian-with-rosetta-stone-totale-part-1/#comments</comments>
		<pubDate>Fri, 10 Feb 2012 18:39:32 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Reviews]]></category>
		<category><![CDATA[education]]></category>
		<category><![CDATA[italian]]></category>
		<category><![CDATA[language]]></category>
		<category><![CDATA[rosetta stone]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3999</guid>
		<description><![CDATA[Over the next few months, I will be writing a series of reviews on Rosetta Stone, and my wife's progress in learning Italian.
No related posts.]]></description>
			<content:encoded><![CDATA[<div class="appImageSlice">
<a href="http://www.nightlion.net/wp-content/uploads/2012/02/rosettastone2.png"><img src="http://www.nightlion.net/wp-content/uploads/2012/02/rosettastone2.png" alt="" title="Rosetta Stone Logo" width="600" height="200" class="alignnone size-full wp-image-4010 colorbox-3999" /></a>
</div>
<p>My wife has been wanting to learn Italian for some time now, in order to be able to fully communicate with my family. For the most part, my family speaks mostly italian, with bits of broken english. My mom does a great job of translating for her at the dinner table, but she would rather be able to hold conversations one her own.</p>
<p>Enter Rosetta Stone. I&#8217;ve heard nothing but good things about their software and learning program, and with the introduction of their iPad app, it seemed like a great way for her to learn on-the-go.</p>
<p>Over the next few months, I will be writing a series of reviews on Rosetta Stone, and my wife&#8217;s progress in learning Italian. This is an article I wish I would have been able to find, so I&#8217;m glad I&#8217;m the one writing it. We just received our software the other day.. More details and a through review will follow. Stay tuned.</p>
<p>No related posts.</p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/reviews/2012/teaching-my-wife-italian-with-rosetta-stone-totale-part-1/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; Vega &#8211; My #1 Web Vulnerability Scanner for Mac OSX and Linux</title>
		<link>http://www.nightlion.net/reviews/osx/2012/vega-my-1-web-vulnerability-scanner-for-mac-osx-and-linux/</link>
		<comments>http://www.nightlion.net/reviews/osx/2012/vega-my-1-web-vulnerability-scanner-for-mac-osx-and-linux/#comments</comments>
		<pubDate>Tue, 17 Jan 2012 04:09:08 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[OSX]]></category>
		<category><![CDATA[Reviews]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[pen testing]]></category>
		<category><![CDATA[vega]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3991</guid>
		<description><![CDATA[Vega has quickly become the first tool in my web vulnerability and pen testing arsenal. It's fast and copiously comes up with more results than any other scanner I've come across. It's also a free (open-source) tool, with a host of great features. It also runs sm on Mac OSX and Linux.
Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/how-to-create-a-bootable-usb-flash-drive-with-unetbootin/' rel='bookmark' title='How to create a bootable USB Flash Drive with UNetBootIn and use it to install Mac OSX, Linux, or any other Operating System'>How to create a bootable USB Flash Drive with UNetBootIn and use it to install Mac OSX, Linux, or any other Operating System</a></li>
<li><a href='http://www.nightlion.net/reviews/2011/parallels-7-destroy-vmware-fusion-4-in-windows-and-linux-pen-testing-environments/' rel='bookmark' title='Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments'>Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/xss-harvest-harvesting-cross-site-scripting-clicks-keystrokes-and-cookies/' rel='bookmark' title='XSS-Harvest: Harvesting Cross Site Scripting, Clicks, Keystrokes and Cookies'>XSS-Harvest: Harvesting Cross Site Scripting, Clicks, Keystrokes and Cookies</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">Vega</h3>
<h3 class="reviewSubhead">Vulnerability Scanner</h3>
</div>
<div class="appImageSlice">
<img class="colorbox-3991"  src="http://www.nightlion.net/wp-content/uploads/2012/01/Vega-Scanner.png" alt="Vega Scanner" title="Vega-Scanner.png" border="0" width="600" height="250" />
</div>
<p>I wanted to take a few moments and commend the <a href="http://subgraph.com/">Subgraph</a> staff on their excellent work of their open source vulnerability scanner, <a href="http://subgraph.com/">Vega</a>. </p>
<p>Vega does a fantastic job of scanning targets and listing potential vulnerabilities in a very short amount of time. Vega has quickly become my <strong>primary</strong> web vulnerability scanner, and the absolute first tool I use when I&#8217;m performing any type of web app testing. It&#8217;s fast, and continuously comes up with more resulting data than any other scanner I&#8217;ve come across. </p>
<p>As a Mac OSX user, I generally do most of my penetration testing from within a Backtrack virtual machine. Since Vega is built on Java, it runs on Mac OSX. It&#8217;s fairly new software, so it has its fair share of bugs, but you can always download and compile from their development branch to get the latest, cutting-edge updates. </p>
<p>There is also a feature for a built-in web proxy which I will write more about in a more detailed review. In the meantime, I suggest you check out <a href="http://subgraph.com/">Vega</a>. It&#8217;s an absolute 10. </p>
</div>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/how-to-create-a-bootable-usb-flash-drive-with-unetbootin/' rel='bookmark' title='How to create a bootable USB Flash Drive with UNetBootIn and use it to install Mac OSX, Linux, or any other Operating System'>How to create a bootable USB Flash Drive with UNetBootIn and use it to install Mac OSX, Linux, or any other Operating System</a></li>
<li><a href='http://www.nightlion.net/reviews/2011/parallels-7-destroy-vmware-fusion-4-in-windows-and-linux-pen-testing-environments/' rel='bookmark' title='Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments'>Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/xss-harvest-harvesting-cross-site-scripting-clicks-keystrokes-and-cookies/' rel='bookmark' title='XSS-Harvest: Harvesting Cross Site Scripting, Clicks, Keystrokes and Cookies'>XSS-Harvest: Harvesting Cross Site Scripting, Clicks, Keystrokes and Cookies</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/reviews/osx/2012/vega-my-1-web-vulnerability-scanner-for-mac-osx-and-linux/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; Backtrack 5: Social Engineering Toolkit Primer for Penetration Testing</title>
		<link>http://www.nightlion.net/hacking/2012/backtrack-5-social-engineering-toolkit-primer-for-penetration-testing/</link>
		<comments>http://www.nightlion.net/hacking/2012/backtrack-5-social-engineering-toolkit-primer-for-penetration-testing/#comments</comments>
		<pubDate>Sat, 14 Jan 2012 06:02:43 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Guides]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[back-door]]></category>
		<category><![CDATA[backtrack]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[penetration tests]]></category>
		<category><![CDATA[phishing]]></category>
		<category><![CDATA[set]]></category>
		<category><![CDATA[shellcode]]></category>
		<category><![CDATA[social engineering]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3972</guid>
		<description><![CDATA[Social engineering attacks are one of the top techniques used against networks today. Why spend days, weeks or even months trying to penetrate layers of network security when you can just trick a user into running a file that allows you full access to their machine and bypasses anti-virus, firewalls and many intrusion detection systems? [...]
Related posts:<ol>
<li><a href='http://www.nightlion.net/hacking/2011/the-social-engineering-toolkit-set-1-5-released/' rel='bookmark' title='The Social Engineering Toolkit (SET) 1.5 released'>The Social Engineering Toolkit (SET) 1.5 released</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/social-engineer-toolkit-v1-5-released-osx-support-added/' rel='bookmark' title='Social-Engineer Toolkit v1.5 Released &#8211; OSX Support Added'>Social-Engineer Toolkit v1.5 Released &#8211; OSX Support Added</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/pangolin-3-2-3-automatic-sql-injection-penetration-testing-tool-new-release/' rel='bookmark' title='Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !'>Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>Social engineering attacks are one of the top techniques used against networks today.</p>
<p>Why spend days, weeks or even months trying to penetrate layers of network security when you can just trick a user into running a file that allows you full access to their machine and bypasses anti-virus, firewalls and many intrusion detection systems?</p>
<p>This is most commonly used in phishing attacks today &#8211; craft an e-mail, or create a fake website that tricks users into running a malicious file that creates a backdoor into their system. But as a security expert, how could you test this against your network? Would such an attack work, and how could you defend against it? <em>(click image to enlarge)</em></p>
<p><a href="http://cyberarms.files.wordpress.com/2011/12/backtrack5-set1.png" target="_blank"><img class="alignnone size-full wp-image-3079 colorbox-3972" title="Backtrack5 -Set1" src="http://cyberarms.files.wordpress.com/2011/12/backtrack5-set1.png" alt="" width="497" height="437" /></a></p>
<p>The Backtrack Linux penetration testing platform includes one of the most popular social engineering attack toolkits available. My previous “How-To” on Backtrack 4′s SET has been extremely popular. Well, Backtrack 5′s SET includes a whole slew of new features and I figured it was time to update the tutorial.</p>
<p>We will use SET to create a fake website that offers a backdoored program to any system that connects. So here goes…</p>
<p>Okay, timeout for a disclaimer: This is for security testing purposes only, never attempt to use any security checks or tools on a network that you do not have the authorization and written permission to do so. Doing so could cost you your job and you could end up in jail.</p>
<ol>
<li>Obtain <a title="Backtrack 5 r1" href="http://www.backtrack-linux.org/downloads/" target="_blank">Backtrack 5 release 1.</a>You can use the LiveCD version, install it on a new system or run it in a Virtual Machine.</li>
<li>The first thing you will want to do is update both the Metasploit Framework and the Social Engineering Toolkit to make sure you have the latest version. Update both, restart SET and check updates one more time.</li>
<li>Select number 1, “Social Engineering Attacks”</li>
<li>Next select 2, “Website Attack Vectors”. Notice the other options available.</li>
<li>Then 1, “Java Applet Attack Method”. This will create a Java app that has a backdoor shell in it.</li>
<li>Next choose 1, “Web Templates” to have SET create a generic webpage to use. Option 2, “Site Cloner” allows SET to use an existing webpage as a template for the attack webpage.</li>
<li>Now choose 1, “Java Required”. Notice the other social media options available.</li>
<li>Pick a payload you want delivered, I usually choose 2, “Windows Reverse_TCP Meterpreter”, but you have several to choose from including your own program . Number 13, “ShellCodeExec Alphanum Shellcode” is interesting as it runs from memory, never touching the hard drive, thus effectively by-passing most anti-virus programs.</li>
<li>Next choose an encoding type to bypass anti-virus. “Shikata_ga_nai” is very popular, Multi-Encoder uses several encoders, but number 16 is best, “Backdoored Executable”. It adds the backdoor program to a legitimate program, like Calc.exe.</li>
<li>Set the port to listen on, I just took the default.</li>
</ol>
<p>Now Backtrack is all set and does several things. It creates the backdoor program, encodes and packs it. Creates the website that you want to use and starts up a listening service looking for people to connect. When done, your screen will look like this <em>(click image to enlarge):</em></p>
<p><a href="http://cyberarms.files.wordpress.com/2011/12/backtrack-set1.png" target="_blank"><img class="alignnone size-medium wp-image-3080 colorbox-3972" style="width: 500px; height: 432px;" title="Backtrack-SET1" src="http://cyberarms.files.wordpress.com/2011/12/backtrack1-set.png" alt="" /></a></p>
<p>Okay we are all set. Now if we go to a “Victim” machine and surf to the IP address of the “attacker” machine we will see this <em>(click image to enlarge):</em></p>
<p><a href="http://cyberarms.files.wordpress.com/2011/12/backtrack5-set2.png" target="_blank"><img class="alignnone size-medium wp-image-3082 colorbox-3972" style="width: 500px; height: 373px;" title="Backtrack5-SET2" src="http://cyberarms.files.wordpress.com/2011/12/backtrack5-set2.png" alt="" /></a></p>
<p>If the “Victim” allows this Java script to run, we get a remote session on our attacking machine <em>(click image to enlarge):</em></p>
<p><a href="http://cyberarms.files.wordpress.com/2011/12/backtrack5-set2.png" target="_blank"><img class="alignnone size-medium wp-image-3082 colorbox-3972" style="width: 500px; height: 373px;" title="Backtrack5-SET2" src="http://cyberarms.files.wordpress.com/2011/12/backtrack5-set4.png" alt="" /></a><br />
You now have access to the victims PC. Use “Sessions -i” and the Session number to connect to the session. Once connected, you can use linux commands to browse the remote PC, or running “shell” will give you a remote windows command shell. <em>(click image to enlarge)</em></p>
<p><a href="http://cyberarms.files.wordpress.com/2011/12/backtrack5-set5.png" target="_blank"><img class="alignnone size-medium wp-image-3082 colorbox-3972" style="width: 300px; height: 109px;" title="Backtrack5-SET2" src="http://cyberarms.files.wordpress.com/2011/12/backtrack5-set5.png" alt="" /></a></p>
<p>That’s it, one bad choice on the victim’s side and security updates and anti-virus means nothing. The “Victim” in this case was a fully updated Windows XP Professional with the top name anti-virus internet security suite installed and updated.</p>
<p>They can even surf away or close the webpage, because once the shell has connected the web browser is no longer needed. Most attackers will then solidify their hold on the PC and merge the session into another process effectively making the shell disappear.</p>
<p>This is why informing your users about the dangers of clicking on unknown links in e-mails, suspicious web links, online anti-virus messages and video codec updates is critical. It can be very hazardous to your network.</p>
<p>The easiest way to stop this type of attack is to simply run the FireFox add-in “Noscript”, also BitDefender AV 2012 seems very, very resilient against these types of attacks.</p>
<p><em>Cross-posted from <a href="http://cyberarms.wordpress.com/2011/12/22/backtrack-5-penetration-testing-with-social-engineering-toolkit/" target="_blank">Cyber Arms</a></em></p>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/hacking/2011/the-social-engineering-toolkit-set-1-5-released/' rel='bookmark' title='The Social Engineering Toolkit (SET) 1.5 released'>The Social Engineering Toolkit (SET) 1.5 released</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/social-engineer-toolkit-v1-5-released-osx-support-added/' rel='bookmark' title='Social-Engineer Toolkit v1.5 Released &#8211; OSX Support Added'>Social-Engineer Toolkit v1.5 Released &#8211; OSX Support Added</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/pangolin-3-2-3-automatic-sql-injection-penetration-testing-tool-new-release/' rel='bookmark' title='Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !'>Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/hacking/2012/backtrack-5-social-engineering-toolkit-primer-for-penetration-testing/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>&#9733; Wireless Security Tool Update: New EAPScan Features Check for WPS</title>
		<link>http://www.nightlion.net/hacking/2012/wireless-security-tool-update-new-eapscan-features-check-for-wps/</link>
		<comments>http://www.nightlion.net/hacking/2012/wireless-security-tool-update-new-eapscan-features-check-for-wps/#comments</comments>
		<pubDate>Fri, 13 Jan 2012 06:19:06 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[InfoSec]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3974</guid>
		<description><![CDATA[Due to the fact that WPS is an expanded EAP type, SecureState added support to the EAPScan tool of the EAPeak Suite to actively probe an access point to checkif WPS is enabled.
Related posts:<ol>
<li><a href='http://www.nightlion.net/hacking/2011/cracking-wep-security-video-tutorials-wireless-password-hacking/' rel='bookmark' title='Cracking WEP Security Video Tutorials &#8211; Wireless Password Hacking'>Cracking WEP Security Video Tutorials &#8211; Wireless Password Hacking</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/pangolin-3-2-3-automatic-sql-injection-penetration-testing-tool-new-release/' rel='bookmark' title='Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !'>Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>
	Recently, WPS has been given a lot of attention due to research by Stefan Viehböck that exposed a vulnerability that allowed the PIN of WPS enabled devices to be brute-forced in an efficient manner.</p>
<p>
	This is a major concern because it can ultimately expose the WPA passphrase used to join the network.</p>
<p>
	Due to the fact that WPS is an expanded EAP type, SecureState added support to the EAPScan tool of the EAPeak Suite to actively probe an access point to checkif WPS is enabled.</p>
<p>
	Wi-Fi Protected Setup is used for easily configuring wireless devices to join a network. Many of the inner workings of WPS are explained in <a href="http://sviehb.files.wordpress.com/2011/12/viehboeck_wps.pdf" target="_blank">Viehböck&#8217;s whitepaper</a>.</p>
<p>
	The protocol itself is based on the Extensible Authentication Protocol (EAP), specifically the use of an “Expanded EAP” type as described in RFC3748 Section 5.7. WPS uses a Vendor ID of 0x372A, but like most Expanded EAP types, it defines and utilizes its own fields.</p>
<p>
	The latest revisions of EAPScan has added support for the <strong>&#8211;check-wps</strong> option which will actively probe an access point to determine if WPS is enabled.</p>
<p>
	This option is functionally similar to specifying an EAP type of 254 and an identity of “WFA-SimpleConfig-Registrar-1-0” which can also be specified from the command line.</p>
<p>
	Once WPS is identified, one of the tools based on &nbsp;Viehböck&#8217;s paper, such as <a href="http://code.google.com/p/reaver-wps/" target="_blank">reaver-wps</a>, can be used in an attempt to attack the access point.</p>
<p>
	<img class="colorbox-3974"  alt="" src="http://www.infosecisland.com/uploads/remoteimg/2a3eec4635109d6ed050f98a07093e4e.jpg" style="height: 103px; width: 550px;"><br />
	<strong><em>Figure 1: EAPScan using the &#8211;check-wps option</em></strong></p>
<p>
	Find out more about resources related to this attack here:</p>
<p>
	Stefan Viehböck&#8217;s Whitepaper:<a href="http://sviehb.files.wordpress.com/2011/12/viehboeck_wps.pdf" target="_blank">http://sviehb.files.wordpress.com/2011/12/viehboeck_wps.pdf</a></p>
<p>
	EAPeak Suite: <a href="http://code.google.com/p/eapeak" target="_blank">eapeak</p>
<p>
	SecureState:<a href="http://www.securestate.com/">http://www.securestate.com/</a></p>
<p>
	Expanded EAP Specification:<a href="http://tools.ietf.org/html/rfc3748#section-5.7" target="_blank"> http://tools.ietf.org/html/rfc3748#section-5.7</a></p>
<p>
	Reaver-WPS Tool: <a href="http://code.google.com/p/reaver-wps/" target="_blank">http://code.google.com/p/reaver-wps/</a></p>
<p>
	<em>Cross-posted from <a href="http://blog.securestate.com/post/2012/01/12/Wireless-Security-Tool-Update-New-EAPScan-Features-Check-for-WPS.aspx" target="_blank">SecureState</a></em></p>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/hacking/2011/cracking-wep-security-video-tutorials-wireless-password-hacking/' rel='bookmark' title='Cracking WEP Security Video Tutorials &#8211; Wireless Password Hacking'>Cracking WEP Security Video Tutorials &#8211; Wireless Password Hacking</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/pangolin-3-2-3-automatic-sql-injection-penetration-testing-tool-new-release/' rel='bookmark' title='Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !'>Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/hacking/2012/wireless-security-tool-update-new-eapscan-features-check-for-wps/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; Guide to Installing Metasploit 4 and Armitage on Mac OSX Lion</title>
		<link>http://www.nightlion.net/hacking/2011/guide-to-installing-metasploit-4-and-armitage-on-mac-osx-lion/</link>
		<comments>http://www.nightlion.net/hacking/2011/guide-to-installing-metasploit-4-and-armitage-on-mac-osx-lion/#comments</comments>
		<pubDate>Mon, 26 Dec 2011 08:22:05 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Guides]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[armitage]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[macports]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[msgpack]]></category>
		<category><![CDATA[mysql]]></category>
		<category><![CDATA[postgresql]]></category>
		<category><![CDATA[ruby]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3913</guid>
		<description><![CDATA[A quick step by step on installing the Metasploit 4 framework
Related posts:<ol>
<li><a href='http://www.nightlion.net/hacking/2011/metasploit-framework-4-0-released/' rel='bookmark' title='Metasploit Framework 4.0 Released!'>Metasploit Framework 4.0 Released!</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/spoof-your-mac-address-in-osx-lion-and-snow-leopard-quick-3-step-guide/' rel='bookmark' title='Spoof your MAC address in OSX Lion and Snow Leopard &#8211; Quick 3 Step Guide.'>Spoof your MAC address in OSX Lion and Snow Leopard &#8211; Quick 3 Step Guide.</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/pangolin-3-2-3-automatic-sql-injection-penetration-testing-tool-new-release/' rel='bookmark' title='Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !'>Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<div class="appImageSlice">
<img src="http://www.nightlion.net/wp-content/uploads/2011/12/armitage.png" alt="" title="armitage logo" width="600" height="250" class="alignnone size-full wp-image-3964 colorbox-3913" />
</div>
<p>After many hours of trial and error, I have been able to put together a guide to getting Metasploit 4 and Armitage working properly on Mac OSX. I would also like to give a tremendous amount of credit to BrianCanFixIT @ <a title="Faulty Logic" href="http://briancanfixit.blogspot.com" target="_blank">Faulty Logic</a>. <a title="Setting up metasploit and armitage" href="http://briancanfixit.blogspot.com/2011/12/setting-up-metasploit-and-armitage-on.html" target="_blank">His blog post on setting up Armitage</a> helped me through the missing piece of getting the PostgreSQL database up and running properly.</p>
<h3>Prerequisites</h3>
<ol>
<li>Install XCode (I am running v4.2)</li>
</ol>
<h3>PostgreSQL Installation</h3>
<ol>
<li>Download and Install PostgreSQL via the <a title="PostgreSQL Installer Download" href="http://www.enterprisedb.com/products-services-training/pgdownload#osx" target="_blank">free GUI installer</a>.</li>
<li>Setup your root PostgreSQL password during installation.</li>
<li>Launch the newly installed PGAdmin III application.</li>
<li>Connect (double click) on the local PostgreSQL database and enter your root password when prompted.</li>
<li>Under the PostgreSQL drop down, right click on &#8220;Login Roles&#8221;, and select &#8220;New Login Role&#8221;</li>
<li>Set the role name to<strong> msfuser.<br />
</strong></li>
<li>Click on the definition tab, and set the password as <strong>msfpassword</strong>.</li>
<li>Click OK to continue.</li>
<li>Next, right click on the databases list, and select &#8220;New Database&#8221;.</li>
<li>Set the name to <strong>metasploitdb</strong>, and set the owner to <strong>msfuser</strong>.</li>
<li>Press OK, and we&#8217;re done. You can close PGAdmin.</li>
</ol>
<h3>MacPorts</h3>
<ol>
<li>Download and install MacPorts from <a title="Download MacPorts" href="http://www.macports.org/install.php" target="_blank">http://www.macports.org/install.php</a></li>
<li><strong>Good Tip:</strong> add &#8220;/opt/local&#8221; to your spotlight privacy settings to avoid excessive compile times &amp; unnecessary indexing by spotlight.<br />
(System Preferences-&gt;Spotlight-&gt;Privacy-&gt;&#8221;+&#8221;)</li>
<li>Quit terminal &amp; relaunch to accept new path settings added by MacPorts</li>
</ol>
<h3>Install Ruby, RubyGems (PostgreSQL and MsgPack)</h3>

<div class="wp_codebox"><table><tr id="p39131"><td class="line_numbers"><pre>1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
</pre></td><td class="code" id="p3913code1"><pre class="bash" style="font-family:monospace;"><span style="color: #666666; font-style: italic;"># Run as Root</span>
<span style="color: #c20cb9; font-weight: bold;">sudo</span> <span style="color: #c20cb9; font-weight: bold;">bash</span>
&nbsp;
<span style="color: #666666; font-style: italic;"># Update MacPorts</span>
port selfupdate
&nbsp;
<span style="color: #666666; font-style: italic;">#Install Ruby</span>
port <span style="color: #c20cb9; font-weight: bold;">install</span> ruby19 +nosuffix
&nbsp;
<span style="color: #666666; font-style: italic;"># Install PostgreSQL gem connector (64bit Systems)</span>
<span style="color: #c20cb9; font-weight: bold;">env</span> <span style="color: #007800;">ARCHFLAGS</span>=<span style="color: #ff0000;">'-arch x86_64'</span> gem <span style="color: #c20cb9; font-weight: bold;">install</span> pg <span style="color: #660033;">--</span> <span style="color: #660033;">--with-opt-include</span>=<span style="color: #000000; font-weight: bold;">/</span>Library<span style="color: #000000; font-weight: bold;">/</span>PostgreSQL<span style="color: #000000; font-weight: bold;">/</span><span style="color: #000000;">9.1</span><span style="color: #000000; font-weight: bold;">/</span>include<span style="color: #000000; font-weight: bold;">/</span> <span style="color: #660033;">--with-opt-lib</span>=<span style="color: #000000; font-weight: bold;">/</span>Library<span style="color: #000000; font-weight: bold;">/</span>PostgreSQL<span style="color: #000000; font-weight: bold;">/</span><span style="color: #000000;">9.1</span><span style="color: #000000; font-weight: bold;">/</span>lib<span style="color: #000000; font-weight: bold;">/</span>
&nbsp;
<span style="color: #666666; font-style: italic;">#Install Ruby Msgpack</span>
port <span style="color: #c20cb9; font-weight: bold;">install</span> msgpack
&nbsp;
<span style="color: #666666; font-style: italic;">#Install the gem MSGPACK</span>
gem <span style="color: #c20cb9; font-weight: bold;">install</span> msgpack
&nbsp;
<span style="color: #666666; font-style: italic;"># Add Ruby to your path</span>
<span style="color: #7a0874; font-weight: bold;">export</span> <span style="color: #007800;">PATH</span>=<span style="color: #000000; font-weight: bold;">/</span>opt<span style="color: #000000; font-weight: bold;">/</span>msf3:<span style="color: #007800;">$PATH</span>
&nbsp;
<span style="color: #666666; font-style: italic;"># Ensure that /opt/local/bin appears before /usr/bin, else edit ~/.bash_profile file and source it</span>
<span style="color: #7a0874; font-weight: bold;">echo</span> <span style="color: #007800;">$PATH</span></pre></td></tr></table></div>

<h3>Metasploit 4 Installation</h3>

<div class="wp_codebox"><table><tr id="p39132"><td class="line_numbers"><pre>1
2
3
4
5
6
7
</pre></td><td class="code" id="p3913code2"><pre class="bash" style="font-family:monospace;"><span style="color: #666666; font-style: italic;"># Download Metasploit via Subversion</span>
<span style="color: #c20cb9; font-weight: bold;">sudo</span> <span style="color: #c20cb9; font-weight: bold;">svn</span> <span style="color: #c20cb9; font-weight: bold;">co</span> https:<span style="color: #000000; font-weight: bold;">//</span>www.metasploit.com<span style="color: #000000; font-weight: bold;">/</span>svn<span style="color: #000000; font-weight: bold;">/</span>framework3<span style="color: #000000; font-weight: bold;">/</span>trunk<span style="color: #000000; font-weight: bold;">/</span> <span style="color: #000000; font-weight: bold;">/</span>opt<span style="color: #000000; font-weight: bold;">/</span>local<span style="color: #000000; font-weight: bold;">/</span>msf<span style="color: #000000; font-weight: bold;">/</span>
&nbsp;
<span style="color: #666666; font-style: italic;"># Create a system link to the msf applications</span>
<span style="color: #666666; font-style: italic;"># This is done because including it in your path configuration doesn't seem to work. </span>
&nbsp;
<span style="color: #c20cb9; font-weight: bold;">sudo</span> <span style="color: #c20cb9; font-weight: bold;">ln</span> <span style="color: #660033;">-s</span> <span style="color: #000000; font-weight: bold;">/</span>opt<span style="color: #000000; font-weight: bold;">/</span>local<span style="color: #000000; font-weight: bold;">/</span>msf<span style="color: #000000; font-weight: bold;">/</span>msf<span style="color: #000000; font-weight: bold;">*</span> <span style="color: #000000; font-weight: bold;">/</span>opt<span style="color: #000000; font-weight: bold;">/</span>local<span style="color: #000000; font-weight: bold;">/</span>bin</pre></td></tr></table></div>

<h3>Configure the Metasploit Database</h3>

<div class="wp_codebox"><table><tr id="p39133"><td class="line_numbers"><pre>1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
</pre></td><td class="code" id="p3913code3"><pre class="bash" style="font-family:monospace;">&nbsp;
<span style="color: #666666; font-style: italic;"># Create the configuration directory</span>
<span style="color: #c20cb9; font-weight: bold;">sudo</span> <span style="color: #c20cb9; font-weight: bold;">mkdir</span> <span style="color: #000000; font-weight: bold;">/</span>opt<span style="color: #000000; font-weight: bold;">/</span>local<span style="color: #000000; font-weight: bold;">/</span>config
&nbsp;
<span style="color: #666666; font-style: italic;"># Create/Edit the following file </span>
<span style="color: #c20cb9; font-weight: bold;">sudo</span> <span style="color: #c20cb9; font-weight: bold;">vi</span> <span style="color: #000000; font-weight: bold;">/</span>opt<span style="color: #000000; font-weight: bold;">/</span>local<span style="color: #000000; font-weight: bold;">/</span>config<span style="color: #000000; font-weight: bold;">/</span>database.yml
&nbsp;
<span style="color: #666666; font-style: italic;"># Include the following in your database.yml file</span>
&nbsp;
<span style="color: #666666; font-style: italic;"># These settings are for the database used by the Metasploit Framework</span>
<span style="color: #666666; font-style: italic;"># unstable tree included in this installer, not the commercial editions.</span>
<span style="color: #666666; font-style: italic;">#</span>
&nbsp;
production:
  adapter: <span style="color: #ff0000;">&quot;postgresql&quot;</span>
  database: <span style="color: #ff0000;">&quot;metasploitdb&quot;</span>
  username: <span style="color: #ff0000;">&quot;msfuser&quot;</span>
  password: <span style="color: #ff0000;">&quot;msfpassword&quot;</span>
  port: <span style="color: #000000;">5432</span>
  host: <span style="color: #ff0000;">&quot;localhost&quot;</span>
  pool: <span style="color: #000000;">256</span>
  timeout: <span style="color: #000000;">5</span></pre></td></tr></table></div>

<h3> Running Metasploit and Armitage </h3>

<div class="wp_codebox"><table><tr id="p39134"><td class="line_numbers"><pre>1
2
3
4
5
6
7
8
9
</pre></td><td class="code" id="p3913code4"><pre class="bash" style="font-family:monospace;">&nbsp;
<span style="color: #666666; font-style: italic;"># Include the database location in your config</span>
<span style="color: #7a0874; font-weight: bold;">export</span> <span style="color: #007800;">MSF_DATABASE_CONFIG</span>=<span style="color: #000000; font-weight: bold;">/</span>opt<span style="color: #000000; font-weight: bold;">/</span>local<span style="color: #000000; font-weight: bold;">/</span>config<span style="color: #000000; font-weight: bold;">/</span>database.yml
&nbsp;
<span style="color: #666666; font-style: italic;"># Launch Metasploit</span>
<span style="color: #c20cb9; font-weight: bold;">sudo</span> msfrpcd <span style="color: #660033;">-U</span> msfuser2 <span style="color: #660033;">-P</span> msfpassword2 <span style="color: #660033;">-t</span> Msg
&nbsp;
<span style="color: #666666; font-style: italic;"># Launch Armitage</span>
<span style="color: #c20cb9; font-weight: bold;">sudo</span> armitage</pre></td></tr></table></div>

<h3>Enjoy!</h3>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/hacking/2011/metasploit-framework-4-0-released/' rel='bookmark' title='Metasploit Framework 4.0 Released!'>Metasploit Framework 4.0 Released!</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/spoof-your-mac-address-in-osx-lion-and-snow-leopard-quick-3-step-guide/' rel='bookmark' title='Spoof your MAC address in OSX Lion and Snow Leopard &#8211; Quick 3 Step Guide.'>Spoof your MAC address in OSX Lion and Snow Leopard &#8211; Quick 3 Step Guide.</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/pangolin-3-2-3-automatic-sql-injection-penetration-testing-tool-new-release/' rel='bookmark' title='Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !'>Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/hacking/2011/guide-to-installing-metasploit-4-and-armitage-on-mac-osx-lion/feed/</wfw:commentRss>
		<slash:comments>12</slash:comments>
		</item>
		<item>
		<title>&#9733; How to Check Exchange 2003 IMAP email from Mac OSX Mail clients</title>
		<link>http://www.nightlion.net/guides/2011/how-to-check-exchange-2003-email-from-mac-osx-mail-clients-imap-pop-smtp-ldap/</link>
		<comments>http://www.nightlion.net/guides/2011/how-to-check-exchange-2003-email-from-mac-osx-mail-clients-imap-pop-smtp-ldap/#comments</comments>
		<pubDate>Tue, 15 Nov 2011 20:55:41 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Guides]]></category>
		<category><![CDATA[email]]></category>
		<category><![CDATA[exchange]]></category>
		<category><![CDATA[mail]]></category>
		<category><![CDATA[OSX]]></category>
		<category><![CDATA[outlook]]></category>
		<category><![CDATA[owa]]></category>
		<category><![CDATA[proxy]]></category>
		<category><![CDATA[webmail]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3909</guid>
		<description><![CDATA[DavMail is a free app that creates a reverse proxy connection to Outlook Exchange 2003 OWA webmail. You can then use the app's local IMAP and SMTP settings to send and receive mail from Exchange 2003. DavMail works with POP, IMAP, SMTP, Caldav, Cardav and LDAP.
Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/sparrow-mail-for-mac-osx-my-growing-email-obsession/' rel='bookmark' title='Sparrow Mail for Mac OSX &#8211; my growing email obsession.'>Sparrow Mail for Mac OSX &#8211; my growing email obsession.</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/mail-5-for-osx-lion-5-things-apple-should-fix-to-make-it-perfect/' rel='bookmark' title='Mail 5 for OSX Lion: 5 things Apple should fix to make it perfect.'>Mail 5 for OSX Lion: 5 things Apple should fix to make it perfect.</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/mass-email-marketing-and-mailing-list-manager-for-osx-with-maxbulk-mailer/' rel='bookmark' title='Mass Email Marketing and Mailing List Manager for OSX with MaxBulk Mailer'>Mass Email Marketing and Mailing List Manager for OSX with MaxBulk Mailer</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p><a href="http://davmail.sourceforge.net/">DavMail</a> is a free app that creates a reverse proxy connection to Outlook Exchange 2003 OWA webmail. You can then use the app&#8217;s local IMAP and SMTP settings to send and receive mail from Exchange 2003.</p>
<p><a href="http://davmail.sourceforge.net/">DavMail</a> is a POP/IMAP/SMTP/Caldav/Carddav/LDAP exchange gateway allowing users to use any mail/calendar client (e.g. Thunderbird with Lightning or Apple iCal) with an Exchange server, even from the internet or behind a firewall through Outlook Web Access. DavMail now includes an LDAP gateway to Exchange global address book and user personal contacts to allow recipient address completion in mail compose window and full calendar support with attendees free/busy display. </p>
<p><a href="http://davmail.sourceforge.net/">Download DavMail here.</a></p>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/sparrow-mail-for-mac-osx-my-growing-email-obsession/' rel='bookmark' title='Sparrow Mail for Mac OSX &#8211; my growing email obsession.'>Sparrow Mail for Mac OSX &#8211; my growing email obsession.</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/mail-5-for-osx-lion-5-things-apple-should-fix-to-make-it-perfect/' rel='bookmark' title='Mail 5 for OSX Lion: 5 things Apple should fix to make it perfect.'>Mail 5 for OSX Lion: 5 things Apple should fix to make it perfect.</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/mass-email-marketing-and-mailing-list-manager-for-osx-with-maxbulk-mailer/' rel='bookmark' title='Mass Email Marketing and Mailing List Manager for OSX with MaxBulk Mailer'>Mass Email Marketing and Mailing List Manager for OSX with MaxBulk Mailer</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/guides/2011/how-to-check-exchange-2003-email-from-mac-osx-mail-clients-imap-pop-smtp-ldap/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; 6 Lifestyle Apps for Mac OSX reviewed &#8211; Journal, Finance, Recipe, Family Tree, Stocks and a Productivity Timer</title>
		<link>http://www.nightlion.net/reviews/2011/6-lifestyle-apps-for-mac-osx-reviewed-journal-finance-recipe-family-tree-stocks-and-a-productivity-timer/</link>
		<comments>http://www.nightlion.net/reviews/2011/6-lifestyle-apps-for-mac-osx-reviewed-journal-finance-recipe-family-tree-stocks-and-a-productivity-timer/#comments</comments>
		<pubDate>Mon, 07 Nov 2011 18:27:28 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Reviews]]></category>
		<category><![CDATA[cooking]]></category>
		<category><![CDATA[dropbox]]></category>
		<category><![CDATA[family tree]]></category>
		<category><![CDATA[finance]]></category>
		<category><![CDATA[mac]]></category>
		<category><![CDATA[mutual funds]]></category>
		<category><![CDATA[OSX]]></category>
		<category><![CDATA[productivity]]></category>
		<category><![CDATA[projects]]></category>
		<category><![CDATA[recipe]]></category>
		<category><![CDATA[small business]]></category>
		<category><![CDATA[stocks]]></category>
		<category><![CDATA[sync]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3877</guid>
		<description><![CDATA[An overview of 6 of my favorite, and most used, Mac OSX apps. The apps included in this article are DayOne Journal, Jumsoft Money, YummySoup Recipe Manager, Mac Family Tree Maker, Timing personal time tracker, and Investoscope stock tracker.
Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/chronicle-family-bill-payment-done-right/' rel='bookmark' title='Chronicle &#8211; Family Bill Tracking and Payment for Mac OSX done right'>Chronicle &#8211; Family Bill Tracking and Payment for Mac OSX done right</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/top-11-must-have-mac-osx-apps-for-2011/' rel='bookmark' title='12 must have Mac OSX apps and utilities for 2011'>12 must have Mac OSX apps and utilities for 2011</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/growl-the-original-notification-system-for-mac-gets-a-major-overhaul/' rel='bookmark' title='Growl, the Original Notification System for Mac, gets a Lion Overhaul'>Growl, the Original Notification System for Mac, gets a Lion Overhaul</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">DayOne Journal</h3>
<h3 class="reviewSubhead">Journal / Diary / Text Logger</h3>
</div>
<div class="appImageSlice">
<img class="colorbox-3877"  src="http://www.nightlion.net/wp-content/uploads/2011/11/dayone.png" alt="Dayone" title="dayone.png" border="0" width="600" height="250" />
</div>
<p>The easiest to use journal / diary / text logging application for the Mac is also the best looking. Day One is designed and focused to encourage you to write more. Using the Menu Bar quick entry and Reminder system, your memories and thoughts will be quickly preserved. Dropbox sync allows easy backup and syncing with the Day One iPhone and iPad applications. </p>
<p>I didn&#8217;t think I would use this as much as I do, but the reminder system is awesome. It pops up a notification once a day (which can be manually set), and reminds me to enter a quick thought. I generally don&#8217;t enter more than a few sentences, but over time, it will be a nice stream of collected throats. I&#8217;m really glad that I started using this. It will be nice to be able to look back and read whatever was going on in my life at the time. </p>
<div class="thumbWrap">
<div class="reviewThumb">
<a href="http://www.nightlion.net/wp-content/uploads/2011/11/dayone_mac.jpg"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/dayone_mac-150x150.jpg" alt="" title="dayone_mac" width="150" height="150" class="alignnone size-thumbnail wp-image-3881 colorbox-3877" /></a>
</div>
<div class="reviewThumb">
<a href="http://www.nightlion.net/wp-content/uploads/2011/11/dayone_mac_2.jpg"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/dayone_mac_2-150x150.jpg" alt="" title="dayone_mac_2" width="150" height="150" class="alignnone size-thumbnail wp-image-3882 colorbox-3877" /></a>
</div>
</div>
<p>Price: $9.99 | <a href="http://dayoneapp.com/">Homepage</a> | <a href="http://itunes.apple.com/us/app/day-one/id422304217?mt=12">App Store Link</a> </p>
</div>
<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">Jumsoft Money</h3>
<h3 class="reviewSubhead">Personal Finance Manager</h3>
</div>
<div class="appImageSlice">
<img class="colorbox-3877"  src="http://www.nightlion.net/wp-content/uploads/2011/11/jumsoft_money.png" alt="Jumsoft money" title="jumsoft_money.png" border="0" width="600" height="250" />
</div>
<p>The best designed financial management app for Mac OSX. Period. There is finally a decent financial management app for the Mac. </p>
<p>Money provides small businesses and home users with a tool to track their finances. Among other features, version 4 features a redesigned interface, allows direct downloads from banks, and institutes smart importing rules and a document-based system that allows multiple users to work with a single copy of the application. </p>
<p>A slick interface. A document-based system designed for multiple users. A brand-new way of adding transactions. Direct downloads from financial institutions. Smart importing rules. Overhauled reports. More convenient budgets. Check-printing capability. </p>
<div class="thumbWrap">
<div class="reviewThumb">
<a href="http://www.nightlion.net/wp-content/uploads/2011/11/jumsoft_money4.jpg"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/jumsoft_money4-150x150.jpg" alt="" title="jumsoft_money4" width="150" height="150" class="alignnone size-thumbnail wp-image-3884 colorbox-3877" /></a>
</div>
<div class="reviewThumb">
<a href="http://www.nightlion.net/wp-content/uploads/2011/11/jumsoft_money4_3.jpg"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/jumsoft_money4_3-150x150.jpg" alt="" title="jumsoft_money4_3" width="150" height="150" class="alignnone size-thumbnail wp-image-3885 colorbox-3877" /></a>
</div>
</div>
<p>Price: $38.99 | <a href="http://www.jumsoft.com/money/">Homepage</a> | <a href="http://itunes.apple.com/us/app/money3/id402410845?mt=12">App Store Link</a> </p>
</div>
<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">YummySoup!</h3>
<h3 class="reviewSubhead">Recepie Manager</h3>
</div>
<div class="appImageSlice">
<img class="colorbox-3877"  src="http://www.nightlion.net/wp-content/uploads/2011/11/yummysoup.png" alt="Yummysoup" title="yummysoup.png" border="0" width="600" height="250" />
</div>
<p>Yummysoup! is a simple yet excellent recipe management application.<br />
The web importer helps you browse popular recipe websites like Epicurious, AllRecipes, Cookstr, and lets you automatically import recipes from 11 of the most popular cooking sites all with a single click. YummySoup! also makes quick work of importing recipes from any other website. Just highlight-and-go.Edit, e-mail, print, browse, and view your recipes in a powerful full-screen view.</p>
<p>YummySoup! is, in my wife&#8217;s opinion, the nicest looking, and easiest to use recipe manager for the Mac. Now that the iPad app is available, she can easily sync her data and not have to keep her laptop in the kitchen while she is cooking. </p>
<div class="thumbWrap">
<div class="reviewThumb">
<a href="http://www.nightlion.net/wp-content/uploads/2011/11/yummysoup_screen2.jpg"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/yummysoup_screen2-150x150.jpg" alt="" title="yummysoup_screen2" width="150" height="150" class="alignnone size-thumbnail wp-image-3887 colorbox-3877" /></a>
</div>
<div class="reviewThumb">
<a href="http://www.nightlion.net/wp-content/uploads/2011/11/yummysoup_screen11.jpg"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/yummysoup_screen11-150x150.jpg" alt="" title="yummysoup_screen1" width="150" height="150" class="alignnone size-thumbnail wp-image-3888 colorbox-3877" /></a>
</div>
<div class="reviewThumb">
<a href="http://www.nightlion.net/wp-content/uploads/2011/11/yummysoup_screen3.jpg"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/yummysoup_screen3-150x150.jpg" alt="" title="yummysoup_screen3" width="150" height="150" class="alignnone size-thumbnail wp-image-3889 colorbox-3877" /></a>
</div>
</div>
<p>Price: $19.99 | <a href="http://hungryseacow.com/">Homepage</a> | <a href="http://itunes.apple.com/us/app/yummysoup/id402757302?mt=12">App Store Link</a> </p>
</div>
<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">Mac Family Tree</h3>
<h3 class="reviewSubhead">Family Tree Maker</h3>
</div>
<div class="appImageSlice">
<img class="colorbox-3877"  src="http://www.nightlion.net/wp-content/uploads/2011/11/mac_family_tree.png" alt="Mac family tree" title="mac_family_tree.png" border="0" width="600" height="250" />
</div>
<p>When I first started using Mac Family Tree, I didn&#8217;t realize how much I would get into it. It&#8217;s incredibly easy to use, and equally as addictive. Mac Family tree allows you to browse and create custom 3D tree diagrams. You can also easily import/export GEDCOM files, which is the standard format for online family trees. </p>
<p>Going back and researching my family lineage turned out to be a lot of fun. My mom even got involved and purchased her own copy so she could help with our family tree. My mom is not a very savvy computer person. She recently purchased her first mac, and the fact that she can easily navigate the application is a testament to to how well the interface is designed. We now share access to the same tree over dropbox so we can both access / modify it as needed. </p>
<p>If you want a more in-depth review of Mac Family Tree Maker, please check out this <a href="http://www.macnn.com/reviews/macfamilytree-6.html" target="_blank">great review at MacNN</a></p>
<div class="thumbWrap">
<div class="reviewThumb">
<a href="http://www.nightlion.net/wp-content/uploads/2011/11/mac_family_tree_1.jpg"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/mac_family_tree_1-150x150.jpg" alt="" title="mac_family_tree_1" width="150" height="150" class="alignnone size-thumbnail wp-image-3893 colorbox-3877" /></a>
</div>
<div class="reviewThumb">
<a href="http://www.nightlion.net/wp-content/uploads/2011/11/mac_family_tree_2.jpg"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/mac_family_tree_2-150x150.jpg" alt="" title="mac_family_tree_2" width="150" height="150" class="alignnone size-thumbnail wp-image-3894 colorbox-3877" /></a>
</div>
<div class="reviewThumb">
<a href="http://www.nightlion.net/wp-content/uploads/2011/11/mac_family_tree_3.jpg"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/mac_family_tree_3-150x150.jpg" alt="" title="mac_family_tree_3" width="150" height="150" class="alignnone size-thumbnail wp-image-3895 colorbox-3877" /></a>
</div>
</div>
<p>Price: $59 | <a href="http://www.syniumsoftware.com/macfamilytree/">Homepage</a> | <a href="http://itunes.apple.com/us/app/macfamilytree/id402390872?mt=12">App Store Link </a></p>
</div>
<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">Timing</h3>
<h3 class="reviewSubhead">Personal Time Tracker</h3>
</div>
<div class="appImageSlice">
<img class="colorbox-3877"  src="http://www.nightlion.net/wp-content/uploads/2011/11/Timing.png" alt="Timing" title="Timing.png" border="0" width="600" height="250" />
</div>
<p>Timing might actually be my favorite app of the bunch. Simply put, Timing tracks your application usage. It runs in the background; you never even know it&#8217;s there. When you finally open the application, you can see exactly how much time you spent on your computer, and where it was spent. You can also categorize the applications by group, which allows me to see how much time I&#8217;m spending with certain types of applications. Timing automatically tracks which documents you are editing, which applications you use, and the domains of the websites you visit. Afterwards, just drag and drop activities into projects. Development apps are one of my personal groups, so I can track trends in usage (daily, weekly, monthly, etc). This turned out to be a great organizational tool for me, since it now allows me to so see how much time I have (or haven&#8217;t) been using wisely. </p>
<div class="thumbWrap">
<div class="reviewThumb">
<a href="http://www.nightlion.net/wp-content/uploads/2011/11/timing-full.png"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/timing-full-150x150.png" alt="" title="timing-full" width="150" height="150" class="alignnone size-thumbnail wp-image-3891 colorbox-3877" /></a>
</div>
<div class="reviewThumb">
<a href="http://www.nightlion.net/wp-content/uploads/2011/11/timing-full2.png"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/timing-full2-150x150.png" alt="" title="timing-full2" width="150" height="150" class="alignnone size-thumbnail wp-image-3892 colorbox-3877" /></a>
</div>
</div>
<p>Price: $19.99 | <a href="http://timingapp.com/">Homepage</a> | <a href="http://itunes.apple.com/app/id431511738">App Store Link</a> </p>
</div>
<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">Investoscope</h3>
<h3 class="reviewSubhead">Stock / Fund Tracker</h3>
</div>
<div class="appImageSlice">
<img class="colorbox-3877"  src="http://www.nightlion.net/wp-content/uploads/2011/11/investoscope.png" alt="Investoscope" title="investoscope.png" border="0" width="600" height="250" />
</div>
<p>Investoscope is a portfolio tracker for the individual investor. This is actually the only stocks app that I was able to find with this level of detail and ease. There aren&#8217;t many apps currently available in the app store for monitoring and tracking stocks / mutual funds, but this one is a winner. Admittedly, I only use a basic level of features to track my current and potential future mutual funds. The reporting features look pretty awesome though, as I have the time I will defiantly get more into this app. The price point is a little high, but if you want a way to properly research and plan for buying and selling stocks, you might have to bite the bullet and invest in this app. </p>
<div class="thumbWrap">
<div class="reviewThumb">
<p><a href="http://www.nightlion.net/wp-content/uploads/2011/11/investoscope_screen1.png"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/investoscope_screen1-150x150.png" alt="" title="investoscope_screen1" width="150" height="150" class="alignnone size-thumbnail wp-image-3896 colorbox-3877" /></a>
</div>
<div class="reviewThumb">
<a href="http://www.nightlion.net/wp-content/uploads/2011/11/investoscope_screen2.png"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/investoscope_screen2-150x150.png" alt="" title="investoscope_screen2" width="150" height="150" class="alignnone size-thumbnail wp-image-3897 colorbox-3877" /></a>
</div>
<div class="reviewThumb">
<a href="http://www.nightlion.net/wp-content/uploads/2011/11/investoscope_screen4.png"><img src="http://www.nightlion.net/wp-content/uploads/2011/11/investoscope_screen4-150x150.png" alt="" title="investoscope_screen4" width="150" height="150" class="alignnone size-thumbnail wp-image-3898 colorbox-3877" /></a>
</div>
</div>
<p>Price: $59 | <a href="http://investoscope.com/">Homepage</a> | <a href="http://itunes.apple.com/us/app/investoscope/id405506218?mt=12">App Store Link</a> </p>
</div>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/chronicle-family-bill-payment-done-right/' rel='bookmark' title='Chronicle &#8211; Family Bill Tracking and Payment for Mac OSX done right'>Chronicle &#8211; Family Bill Tracking and Payment for Mac OSX done right</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/top-11-must-have-mac-osx-apps-for-2011/' rel='bookmark' title='12 must have Mac OSX apps and utilities for 2011'>12 must have Mac OSX apps and utilities for 2011</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/growl-the-original-notification-system-for-mac-gets-a-major-overhaul/' rel='bookmark' title='Growl, the Original Notification System for Mac, gets a Lion Overhaul'>Growl, the Original Notification System for Mac, gets a Lion Overhaul</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/reviews/2011/6-lifestyle-apps-for-mac-osx-reviewed-journal-finance-recipe-family-tree-stocks-and-a-productivity-timer/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title><![CDATA[Duqu exploits zero-day flaw in Windows kernel]]></title>
		<link><![CDATA[http://www.networkworld.com/news/2011/110111-duqu-exploits-zero-day-flaw-in-252643.html]]></link>
		<comments>http://www.nightlion.net/infosec/2011/duqu-exploits-zero-day-flaw-in-windows-kernel/#comments</comments>
		<pubDate>Thu, 03 Nov 2011 02:16:57 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[0day]]></category>
		<category><![CDATA[duqu]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[windows]]></category>
		<category><![CDATA[zero-day]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3863</guid>
		<description><![CDATA[The Duqu trojan infects systems by exploiting a previously unknown Windows kernel vulnerability that is remotely executable, security vendor Symantec said today.<p><a href="http://www.nightlion.net/infosec/2011/duqu-exploits-zero-day-flaw-in-windows-kernel/" rel="bookmark" title="Permanent link to 'Duqu exploits zero-day flaw in Windows kernel'" class="glyph">&#9733;</a></p>

Related posts:<ol>
<li><a href='http://www.nightlion.net/news/2011/fbi-cracks-international-bot-network/' rel='bookmark' title='FBI cracks International Bot Network !'>FBI cracks International Bot Network !</a></li>
<li><a href='http://www.nightlion.net/reviews/2011/parallels-7-destroy-vmware-fusion-4-in-windows-and-linux-pen-testing-environments/' rel='bookmark' title='Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments'>Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/prep-for-the-ceh-v7-exam-tune-your-web-hacking-skills-with-these-live-hackable-simulation-environments/' rel='bookmark' title='Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments'>Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>The Duqu trojan infects systems by exploiting a previously unknown Windows kernel vulnerability that is remotely executable, security vendor Symantec said today.</p>
<p><a href="http://www.nightlion.net/infosec/2011/duqu-exploits-zero-day-flaw-in-windows-kernel/" rel="bookmark" title="Permanent link to 'Duqu exploits zero-day flaw in Windows kernel'" class="glyph">&#9733;</a></p>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/news/2011/fbi-cracks-international-bot-network/' rel='bookmark' title='FBI cracks International Bot Network !'>FBI cracks International Bot Network !</a></li>
<li><a href='http://www.nightlion.net/reviews/2011/parallels-7-destroy-vmware-fusion-4-in-windows-and-linux-pen-testing-environments/' rel='bookmark' title='Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments'>Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/prep-for-the-ceh-v7-exam-tune-your-web-hacking-skills-with-these-live-hackable-simulation-environments/' rel='bookmark' title='Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments'>Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/infosec/2011/duqu-exploits-zero-day-flaw-in-windows-kernel/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; Change the Mac OSX hostname via command line</title>
		<link>http://www.nightlion.net/guides/2011/change-the-mac-osx-hostname-via-command-line/</link>
		<comments>http://www.nightlion.net/guides/2011/change-the-mac-osx-hostname-via-command-line/#comments</comments>
		<pubDate>Wed, 02 Nov 2011 22:47:41 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Guides]]></category>
		<category><![CDATA[hostname]]></category>
		<category><![CDATA[mac]]></category>
		<category><![CDATA[OSX]]></category>
		<category><![CDATA[terminal]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3855</guid>
		<description><![CDATA[For some reason, changing the Mac OSX hostname isn't as simple as changing the name in the share settings. Here is quick guide on manually changing the hostname in terminal.
Related posts:<ol>
<li><a href='http://www.nightlion.net/guides/2011/burn-iso-to-bootable-usb-flash-drive-in-mac-osx-terminal-via-command-line-diskutil/' rel='bookmark' title='Burn ISO to bootable USB flash drive in Mac OSX terminal (via command line Diskutil)'>Burn ISO to bootable USB flash drive in Mac OSX terminal (via command line Diskutil)</a></li>
<li><a href='http://www.nightlion.net/reviews/ios/2010/convert-iphone-sms-db-to-txt-csv-or-excel-via-command-line/' rel='bookmark' title='Convert iPhone sms.db to txt (csv or excel) via command line'>Convert iPhone sms.db to txt (csv or excel) via command line</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/getting-parallels-6-to-work-in-osx-lion/' rel='bookmark' title='Parallels 6 in OSX Lion &#8211; Solving &#8220;Unable to Load the Parallels Driver&#8221;'>Parallels 6 in OSX Lion &#8211; Solving &#8220;Unable to Load the Parallels Driver&#8221;</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>For some reason, changing the Mac OSX hostname isn&#8217;t as simple as changing the name in the share settings. Here is quick guide on manually changing the hostname in terminal. </p>
<p>You must run all three of these commands in order to fully change the computer&#8217;s hostname.</p>

<div class="wp_codebox"><table><tr id="p38555"><td class="line_numbers"><pre>1
2
3
</pre></td><td class="code" id="p3855code5"><pre class="bash" style="font-family:monospace;"><span style="color: #c20cb9; font-weight: bold;">sudo</span> scutil <span style="color: #660033;">--set</span> ComputerName <span style="color: #ff0000;">&quot;newname&quot;</span>
<span style="color: #c20cb9; font-weight: bold;">sudo</span> scutil <span style="color: #660033;">--set</span> LocalHostName <span style="color: #ff0000;">&quot;newname&quot;</span>
<span style="color: #c20cb9; font-weight: bold;">sudo</span> scutil <span style="color: #660033;">--set</span> HostName <span style="color: #ff0000;">&quot;newname&quot;</span></pre></td></tr></table></div>

<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/guides/2011/burn-iso-to-bootable-usb-flash-drive-in-mac-osx-terminal-via-command-line-diskutil/' rel='bookmark' title='Burn ISO to bootable USB flash drive in Mac OSX terminal (via command line Diskutil)'>Burn ISO to bootable USB flash drive in Mac OSX terminal (via command line Diskutil)</a></li>
<li><a href='http://www.nightlion.net/reviews/ios/2010/convert-iphone-sms-db-to-txt-csv-or-excel-via-command-line/' rel='bookmark' title='Convert iPhone sms.db to txt (csv or excel) via command line'>Convert iPhone sms.db to txt (csv or excel) via command line</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/getting-parallels-6-to-work-in-osx-lion/' rel='bookmark' title='Parallels 6 in OSX Lion &#8211; Solving &#8220;Unable to Load the Parallels Driver&#8221;'>Parallels 6 in OSX Lion &#8211; Solving &#8220;Unable to Load the Parallels Driver&#8221;</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/guides/2011/change-the-mac-osx-hostname-via-command-line/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; Parallels Desktop 7 for Mac &#8211; Free Giveaway Contest!</title>
		<link>http://www.nightlion.net/reviews/osx/2011/parallels-desktop-7-for-mac-free-giveaway-contest-4-copies-available/</link>
		<comments>http://www.nightlion.net/reviews/osx/2011/parallels-desktop-7-for-mac-free-giveaway-contest-4-copies-available/#comments</comments>
		<pubDate>Tue, 01 Nov 2011 16:02:15 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[OSX]]></category>
		<category><![CDATA[Reviews]]></category>
		<category><![CDATA[contest]]></category>
		<category><![CDATA[giveaway]]></category>
		<category><![CDATA[parallels]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3763</guid>
		<description><![CDATA[We've teamed up with Parallels to give away 4 copies of their new Parallels Desktop 7 product. We will be announcing 1 winner each week. All you have to do to enter is retweet a message. You will be allowed to enter the contest each week with a new retweet for more changes to win! 
Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/getting-parallels-6-to-work-in-osx-lion/' rel='bookmark' title='Parallels 6 in OSX Lion &#8211; Solving &#8220;Unable to Load the Parallels Driver&#8221;'>Parallels 6 in OSX Lion &#8211; Solving &#8220;Unable to Load the Parallels Driver&#8221;</a></li>
<li><a href='http://www.nightlion.net/reviews/2011/parallels-7-destroy-vmware-fusion-4-in-windows-and-linux-pen-testing-environments/' rel='bookmark' title='Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments'>Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2010/iphone-explorer-free-software-to-use-your-iphone-as-a-usb-flash-drive/' rel='bookmark' title='iPhone Explorer &#8211; Free software to use your iPhone as a usb flash drive'>iPhone Explorer &#8211; Free software to use your iPhone as a usb flash drive</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">Parallels 7 Mac</h3>
<h3 class="reviewSubhead">Desktop Virtualization</h3>
</div>
<div class="appImageSlice"><img class="colorbox-3763"  title="Parallels7-logo.png" src="http://www.nightlion.net/wp-content/uploads/2011/10/Parallels7-logo.png" alt="Parallels7 logo" width="600" height="250" border="0" /></div>
<p>NightLion and Parallels have teamed up to give away away 4 copies of their new Parallels Desktop 7 product for Mac OSX. Parallels Desktop for Mac has been my desktop virtualization tool of choice for a while now. It crushes VMWARE in any speed and performance tests that I’ve ever put it through.</p>
<h3>Security Training Through Virtualization</h3>
<p>In the past few months, I’ve been using virtual machines to run pen testing tools like Backtrack and full simulation pen testing environments to prep for my CEH v7 exam. Parallels is a great tool for running one of the many hacking simulations available (previously discussed in this article). As we continue to narrow the scope of our content to more security related software and reviews, I contacted Parallels to offer this giveaway as a way to promote additional awareness for the growing number of security professionals using Mac OSX. </p>
<h4>4 Copies up for grabs! Here&#8217;s How to Win</h4>
<ul>
<li>1 winner will be chosen each week, for 4 weeks.</li>
<li>Follow @NightLion and @ParallelsMac on Twitter</li>
<li>Retweet the message below to enter. </li>
<li>Each retweet will be counted as another vote</li>
<li>Weekly contest winners will be announced on Twitter and on this site.</li>
<li>Leaving a comment on our site probably wouldn&#8217;t hurt. </li>
</ul>
</ol>
</div>
<div class="contestDiv">
<div class="contestTwitter">
<a href="https://twitter.com/share" class="twitter-share-button" data-text="Win a copy of @ParallelsMac 7 via @NightLion. Follow &#038; RT to win. Each RT counts as a new vote. #ParallelsMac tinyurl.com/3peaawy" data-count="vertical" data-url="http://www.nightlion.net/reviews/osx/2011/parallels-desktop-7-for-mac-free-giveaway-contest-4-copies-available/" data-counturl="http://www.nightlion.net/reviews/osx/2011/parallels-desktop-7-for-mac-free-giveaway-contest-4-copies-available/">Tweet</a><script type="text/javascript" src="//platform.twitter.com/widgets.js"></script>
</div>
<div class="contestText">Win a copy of @ParallelsMac 7 via @NightLion. Follow &#038; RT to win. Each RT counts as a new vote. #ParallelsMac tinyurl.com/3peaawy</div>
</div>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/getting-parallels-6-to-work-in-osx-lion/' rel='bookmark' title='Parallels 6 in OSX Lion &#8211; Solving &#8220;Unable to Load the Parallels Driver&#8221;'>Parallels 6 in OSX Lion &#8211; Solving &#8220;Unable to Load the Parallels Driver&#8221;</a></li>
<li><a href='http://www.nightlion.net/reviews/2011/parallels-7-destroy-vmware-fusion-4-in-windows-and-linux-pen-testing-environments/' rel='bookmark' title='Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments'>Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2010/iphone-explorer-free-software-to-use-your-iphone-as-a-usb-flash-drive/' rel='bookmark' title='iPhone Explorer &#8211; Free software to use your iPhone as a usb flash drive'>iPhone Explorer &#8211; Free software to use your iPhone as a usb flash drive</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/reviews/osx/2011/parallels-desktop-7-for-mac-free-giveaway-contest-4-copies-available/feed/</wfw:commentRss>
		<slash:comments>19</slash:comments>
		</item>
		<item>
		<title>&#9733; Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments</title>
		<link>http://www.nightlion.net/reviews/2011/parallels-7-destroy-vmware-fusion-4-in-windows-and-linux-pen-testing-environments/</link>
		<comments>http://www.nightlion.net/reviews/2011/parallels-7-destroy-vmware-fusion-4-in-windows-and-linux-pen-testing-environments/#comments</comments>
		<pubDate>Tue, 01 Nov 2011 04:22:51 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Reviews]]></category>
		<category><![CDATA[backtrack]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[Hackxor]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[OSX]]></category>
		<category><![CDATA[pen testing]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[virtual machine]]></category>
		<category><![CDATA[vmware]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3779</guid>
		<description><![CDATA[Parallels 7 vs VMWare Fusion 4 Desktop Virtualization Head to Head for Mac OSX I started using Parallels 7 to run virtual machine labs to practice my security assessment skills. I&#8217;ve read a ton of reviews comparing Parallels 7 to VMWare Fusion 4, but I wanted to try testing the two myself. I&#8217;ll save you [...]
Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/parallels-desktop-7-for-mac-free-giveaway-contest-4-copies-available/' rel='bookmark' title='Parallels Desktop 7 for Mac &#8211; Free Giveaway Contest!'>Parallels Desktop 7 for Mac &#8211; Free Giveaway Contest!</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/getting-parallels-6-to-work-in-osx-lion/' rel='bookmark' title='Parallels 6 in OSX Lion &#8211; Solving &#8220;Unable to Load the Parallels Driver&#8221;'>Parallels 6 in OSX Lion &#8211; Solving &#8220;Unable to Load the Parallels Driver&#8221;</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/prep-for-the-ceh-v7-exam-tune-your-web-hacking-skills-with-these-live-hackable-simulation-environments/' rel='bookmark' title='Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments'>Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">Parallels 7 vs VMWare Fusion 4</h3>
<h3 class="reviewSubhead">Desktop Virtualization Head to Head for Mac OSX</h3>
</div>
<div class="appImageSlice">
<img src="http://www.nightlion.net/wp-content/uploads/2011/10/parallels_vs_vmware.jpg" alt="" title="parallels_vs_vmware" width="680" height="300" class="alignnone size-full wp-image-3811 colorbox-3779" />
</div>
<p>I started using Parallels 7 to run virtual machine labs to practice my security assessment skills. I&#8217;ve read a ton of reviews comparing Parallels 7 to VMWare Fusion 4, but I wanted to try testing the two myself. <strong><em>I&#8217;ll save you the time and energy of this article and let you know now that Parallels Desktop 7 smoked VMWare Fusion 4. </em></strong></p>
<h4>Tests Performed</h4>
<p><strong>Tools Used</strong></p>
<ul>
<li><a href="http://www.backtrack-linux.org/">BackTrack 5</a>: Linux-based penetration testing arsenal that aids security professionals in the ability to perform assessments in a purely native environment dedicated to hacking.</li>
<li><a href="http://hackxor.sourceforge.net">Hackxor</a>: Web app hacking game where players must locate and exploit vulnerabilities to progress through the story</li>
<li><a href="http://blog.metasploit.com/2010/05/introducing-metasploitable.html">Metasploitable</a> &#8211; Exploitable VM to test against</li>
<li>Windows Vista</li>
</ul>
<p><strong>Tests Performed</strong></p>
<ul>
<li>Running Backtrack 5 alongside Metasploitable and Hackxor virtual machines</li>
<li>Converting pre-made VMWare images to Parallels images</li>
</ul>
<h4>Performance Results</h4>
<p>The following machines were using in the performance testing of the two products:</p>
<ul>
<li>2011 Macbook Pro, 2ghz Core i7
<ul>
<li>8gb ram, OSX Lion 10.7.2.</li>
<li>OSX and Applications running on OWC Mercury Extreme SSD</li>
<li>VMs running on 7200 rpm Scorpio Black</li>
</ul>
</li>
<li>2009 Mac Pro, Quad Core Xeon
<ul>
<li>8gb ram, OSX Lion 10.7.2</li>
<li>OS and VMs running on separate 7200 rpm Scorpio Black hard drives</li>
</ul>
</li>
</ul>
<div class="wiki-content">
<div class="table-wrap">
<table class="confluenceTable">
<tbody>
<tr class="confluenceTr">
<th colspan="3" class="confluenceTh">
							Test 1: Running Backtrack 5
						</th>
</tr>
<tr class="confluenceTr">
<td class="confluenceTd">
							<strong>System</strong>
						</td>
<td class="confluenceTd">
							<strong>Details</strong>
						</td>
<td class="confluenceTd">
							<strong>Score</strong>
						</td>
</tr>
<tr class="confluenceTr">
<td class="confluenceTd">
							Parallels 7
						</td>
<td rowspan="2" class="confluenceTd">
<ul>
<li>Using only a live instance of Backtrack 5, both virtual machines performed equally.
								</li>
<li>No visible signs of virtual machine lag or OSX performance degradation.
								</li>
<li>Tested with various scanning tools scanning and password brute forcing using John the Ripper.
								</li>
</ul>
</td>
<td class="confluenceTd">
							10
						</td>
</tr>
<tr class="confluenceTr">
<td colspan="1" class="confluenceTd">
							VMWare 4
						</td>
<td colspan="1" class="confluenceTd">
							10
						</td>
</tr>
</tbody>
</table></div>
<div class="table-wrap">
<table class="confluenceTable">
<tbody>
<tr>
<th colspan="3" class="confluenceTh">
							Test 2: Running a Backtrack 5 alongside Windows Vista
						</th>
</tr>
<tr>
<td class="confluenceTd">
							<strong>System</strong>
						</td>
<td class="confluenceTd">
							<strong>Details</strong>
						</td>
<td class="confluenceTd">
							<strong>Score</strong>
						</td>
</tr>
<tr>
<td class="confluenceTd">
							Parallels 7
						</td>
<td class="confluenceTd">
<ul>
<li>OSX and both VMs performed great.
								</li>
<li>Boot up time for Windows Vista VM significantly faster with Parallels.
								</li>
</ul>
</td>
<td class="confluenceTd">
							10
						</td>
</tr>
<tr>
<td colspan="1" class="confluenceTd">
							VMWare 4
						</td>
<td colspan="1" class="confluenceTd">
<ul>
<li>Boot time &amp;amp; performance for Backtrack seemed to be about the same
								</li>
<li>
									<em>Boot time for Vista VM measured at 3x SLOWER than parallels</em>
								</li>
<li>Noticeable performance lag noticed when trying to run multiple VMs
								</li>
</ul>
</td>
<td colspan="1" class="confluenceTd">
							7
						</td>
</tr>
</tbody>
</table></div>
<div class="table-wrap">
<table class="confluenceTable">
<tbody>
<tr class="confluenceTr">
<th colspan="3" class="confluenceTh">
							Test 3: Windows Vista Standalone Performance and Lion Integration
						</th>
</tr>
<tr class="confluenceTr">
<td class="confluenceTd">
							<strong>System</strong>
						</td>
<td class="confluenceTd">
							<strong>Details</strong>
						</td>
<td class="confluenceTd">
							<strong>Score</strong>
						</td>
</tr>
<tr class="confluenceTr">
<td class="confluenceTd">
							Parallels 7
						</td>
<td class="confluenceTd">
<ul>
<li>Even in a single instance, Parallels 7 performed faster booting Windows Visa
								</li>
<li>Lion Integration performed very well. No complaints or issues.
								</li>
<li>Running heavy applications like Visio booted very quickly. Performance continued as large documents were opened.
								</li>
<li>Startup and Shutdown times seemed normal compared to a normal Windows machine &amp; suspend time only took a few seconds.
								</li>
</ul>
</td>
<td class="confluenceTd">
							9
						</td>
</tr>
<tr class="confluenceTr">
<td colspan="1" class="confluenceTd">
							VMWare 4
						</td>
<td colspan="1" class="confluenceTd">
<ul>
<li>Boot time &amp;amp; performance for Backtrack seemed to be about the same
								</li>
<li>Boot time for Vista VM measured at 3x SLOWER than parallels
								</li>
<li>Lion Integration performed well. No complaints or issues.&nbsp;
								</li>
<li>Startup and Shutdown times seemed normal compared to a normal Windows machine &amp; suspend time only took a few seconds.
								</li>
<li>Running heavy applications like Visio started quickly, but performance quickly degraded as large visio documents were opened.Performance became choppy and sluggish.
								</li>
<li>I really like the idea of having the &#8220;Start Menu&#8221; present from the task bar (as opposed to having it on the dock)
								</li>
</ul>
</td>
<td colspan="1" class="confluenceTd">
							7
						</td>
</tr>
</tbody>
</table></div>
<div class="table-wrap">
<table class="confluenceTable">
<tbody>
<tr>
<th colspan="3" class="confluenceTh">
							Test 4: <strong>Converting VMWare images to Parallels (and vice versa)</strong>
						</th>
</tr>
<tr>
<td class="confluenceTd">
							<strong>System</strong>
						</td>
<td class="confluenceTd">
							<strong>Details</strong>
						</td>
<td class="confluenceTd">
							<strong>Score</strong>
						</td>
</tr>
<tr>
<td class="confluenceTd">
							Parallels 7
						</td>
<td class="confluenceTd">
<ul>
<li>Converting both Backtrack and Metasploitable VMs to Parallels virtual machines was extremely simple. Just select the VMWare file to be opened and Parallels automatically converts it.
								</li>
<li>Total time to convert the Backtrack 5 image (8gb) was about 90 seconds.
								</li>
</ul>
<p>
								&nbsp;
							</p>
</td>
<td class="confluenceTd">
							10
						</td>
</tr>
<tr>
<td colspan="1" class="confluenceTd">
							VMWare 4
						</td>
<td colspan="1" class="confluenceTd">
<ul>
<li>Conversion process just as painless with VMWare
								</li>
<li>Conversion time for the Backtrack 5 image was about the same at 100 seconds.&nbsp;
								</li>
</ul>
<p>
								&nbsp;
							</p>
</td>
<td colspan="1" class="confluenceTd">
							10
						</td>
</tr>
</tbody>
</table>
</div>
</div>
<h4>Final Score &#8211; Parallels is the clear winner</h4>
<p><strong>Parallels Desktop 7 is the clear winner</strong>. VMWare&#8217;s performance really doesn&#8217;t even come close. VMWare has some nice features, especially in the department of Windows unity/integration. Unfortunately, VMWare just doesn&#8217;t cut it when compared to Parallels&#8217; overall performance. With Parallels, Bootup and load times are significantly faster. Overall system performance is also better when running virtual machines. In my opinion, Parallels Desktop 7 is the clear winner. </p>
<h4>Parallels Giveaway Contest</h4>
<p>As a result of the incredible performance tests, I was able to contact Parallels and arrange for a giveaway to our audience. Starting later this week, We will be giving away 4 copies of Parallels Desktop 7 for Mac, 1 per week for the next 4 weeks. Stay tuned for directions and more information on the contest! </p>
</div>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/parallels-desktop-7-for-mac-free-giveaway-contest-4-copies-available/' rel='bookmark' title='Parallels Desktop 7 for Mac &#8211; Free Giveaway Contest!'>Parallels Desktop 7 for Mac &#8211; Free Giveaway Contest!</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/getting-parallels-6-to-work-in-osx-lion/' rel='bookmark' title='Parallels 6 in OSX Lion &#8211; Solving &#8220;Unable to Load the Parallels Driver&#8221;'>Parallels 6 in OSX Lion &#8211; Solving &#8220;Unable to Load the Parallels Driver&#8221;</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/prep-for-the-ceh-v7-exam-tune-your-web-hacking-skills-with-these-live-hackable-simulation-environments/' rel='bookmark' title='Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments'>Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/reviews/2011/parallels-7-destroy-vmware-fusion-4-in-windows-and-linux-pen-testing-environments/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>&#9733; HIPPA Compliance Checklist 2011</title>
		<link>http://www.nightlion.net/guides/2011/hippa-compliance-checklist-2011/</link>
		<comments>http://www.nightlion.net/guides/2011/hippa-compliance-checklist-2011/#comments</comments>
		<pubDate>Mon, 17 Oct 2011 20:38:42 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Guides]]></category>
		<category><![CDATA[compliance]]></category>
		<category><![CDATA[HIPPA]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3756</guid>
		<description><![CDATA[An important component of preparing for a potential HIPAA compliance audit is to complete a "walk through" to make sure privacy and security policies and procedures are practical and effective." Here is a short HIPAA Compliance Check List:
Related posts:<ol>
<li><a href='http://www.nightlion.net/guides/2011/passing-the-g2700-iso-2700127002-certification-what-materials-you-will-need-for-the-exam/' rel='bookmark' title='Passing the G2700 ISO 27001/27002 certification: What Materials you will need for the Exam.'>Passing the G2700 ISO 27001/27002 certification: What Materials you will need for the Exam.</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>Howard Anderson interviewed former HIPAA enforcer Adam Greene, who stated:</p>
<p>&#8220;An important component of preparing for a potential HIPAA compliance audit is to complete a &#8220;walk through&#8221; to make sure privacy and security policies and procedures are practical and effective.&#8221;</p>
<p>We have long recommended this informal process and in fact have supplied a short HIPAA Compliance Check List:</p>
<p><strong>HIPAA Compliant Checklist</strong></p>
<ol>
<li>Have you formally designated a person or position as your organization’s privacy and security officer?</li>
<li>Do you have documented privacy and information security policies and procedures?</li>
<li>Have they been reviewed and updated, where appropriate, in the last six months?</li>
<li>Have the privacy and information security policies and procedures been communicated to all personnel, and made available for them to review at any time?</li>
<li>Do you provide regular training and ongoing awareness communications for information security and privacy for all your workers?</li>
<li>Have you done a formal information security risk assessment in the last 12 months?</li>
<li>Do you regularly make backups of business information, and have documented disaster recovery and business continuity plans?</li>
<li>Do you require all types of sensitive information, including personal information and health information, to be encrypted when it is sent through public networks and when it is stored on mobile computers and mobile storage devices?</li>
<li>Do you require information, in all forms, to be disposed of using secure methods?</li>
<li>Do you have a documented breach response and notification plan, and a team to support the plan?</li>
</ol>
<p>It is critical that you make sure that your written policies and procedures are the  actual business rules by which you run you company.  The auditor will compare staff actions with the written policies and procedures to see if they match.</p>
<p>Cross-posted from <a href="http://www.compliancehelper.com/post/416896-do-your-privacy-security-policies-really">Compliance Helper</a></p>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/guides/2011/passing-the-g2700-iso-2700127002-certification-what-materials-you-will-need-for-the-exam/' rel='bookmark' title='Passing the G2700 ISO 27001/27002 certification: What Materials you will need for the Exam.'>Passing the G2700 ISO 27001/27002 certification: What Materials you will need for the Exam.</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/guides/2011/hippa-compliance-checklist-2011/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; Create vanity name servers with Godaddy (ns1, ns2) and use your custom DNS with external client domains</title>
		<link>http://www.nightlion.net/guides/2011/create-vanity-name-servers-with-godaddy-ns1-ns2-and-use-your-custom-dns-with-external-client-domains/</link>
		<comments>http://www.nightlion.net/guides/2011/create-vanity-name-servers-with-godaddy-ns1-ns2-and-use-your-custom-dns-with-external-client-domains/#comments</comments>
		<pubDate>Sun, 16 Oct 2011 21:14:59 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Guides]]></category>
		<category><![CDATA[dns]]></category>
		<category><![CDATA[godaddy]]></category>
		<category><![CDATA[hosting]]></category>
		<category><![CDATA[nameservers]]></category>
		<category><![CDATA[server]]></category>
		<category><![CDATA[webserver]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3744</guid>
		<description><![CDATA[I manage several client domains and I wanted a way to centrally manage their DNS while pointing their DNS records to my custom vanity name servers: ns1.curvve.net and ns2.curvve.net. This isn't a straight forward solution that godaddy offers, but it does work. WHOIS my domain and see for yourself.
Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/linkinus-irc-client-for-mac/' rel='bookmark' title='Linkinus &#8211; Extraordinarily awesome IRC client for Mac'>Linkinus &#8211; Extraordinarily awesome IRC client for Mac</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p><strong>Problem: </strong>I manage several client domains and I wanted a way to centrally manage their DNS while pointing their DNS records to my custom vanity name servers: ns1.curvve.net and ns2.curvve.net. This isn&#8217;t a straight forward solution that Godaddy offers, but it does work. WHOIS my domain and see for yourself.</p>
<p>At first, I tried signing up for Godaddy&#8217;s Premium DNS server. The service itself is really nice because it allows you to batch modify your DNS records. In order to use Godaddy&#8217;s premium DNS, the domains have to be pointed to Godaddy&#8217;s DNS Servers.</p>
<h3>Godaddy&#8217;s Vanity DNS Failure</h3>
<p>Godaddy also offers custom vanity DNS, but it only applies to the specific domain domain that has registered for the vanity domain. In short: If my domain has vanity name server (e.g., ns1.curvve.net), I can&#8217;t point another domains&#8217;s DNS records to my vanity name servers. Believe me, I tried. If you have a domain that is registered with Godaddy, and you try to add your custom vanity name servers to that domain, Godaddy will throw an error.</p>
<h3>Vanity Name Server Workaround</h3>
<p>My solution is actually fairly simple:</p>
<ol>
<li>Pick the domain that you want to use as your name server domain (in my case, curvve.net).</li>
<li>Edit the DNS details of that domain in the DNS Manager.</li>
<li>Create an A-record (Host) alias for each of the name servers you want to use, and point them to the correct IP address of the corresponding DNS servers.</li>
</ol>
<h2> GoDaddy Update for Premium DNS Users</h2>
<p><strong>Optional for use with Godaddy Premium DNS</strong><br />
Setting up custom DNS with Godaddy is now a bit easier, especially if you want to manage your DNS from Godaddy&#8217;s Premium DNS services.</p>
<ul>
<li>In order to create your custom name server, go to the Premium DNS Manager, find the domain you want to use, and pressed the &#8220;advanced settings&#8221; link.
<li>Click on the &#8220;Vanity Nameservers&#8221; tab.
<li>Activate the vanity name servers. </li>
<li>Now, if you point any domain to those vanity name servers, GoDaddy will automatically recognize them and they will still appear in your DNS Manager. </li>
</ul>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/linkinus-irc-client-for-mac/' rel='bookmark' title='Linkinus &#8211; Extraordinarily awesome IRC client for Mac'>Linkinus &#8211; Extraordinarily awesome IRC client for Mac</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/guides/2011/create-vanity-name-servers-with-godaddy-ns1-ns2-and-use-your-custom-dns-with-external-client-domains/feed/</wfw:commentRss>
		<slash:comments>9</slash:comments>
		</item>
		<item>
		<title><![CDATA[Gather Intelligence from Google using these hand picked Google Dorks]]></title>
		<link><![CDATA[http://zer0byte.com/2011/09/20/hand-picked-google-dorks/]]></link>
		<comments>http://www.nightlion.net/hacking/2011/hand-picked-google-dorks/#comments</comments>
		<pubDate>Sun, 16 Oct 2011 03:48:53 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[dorks]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[intelligence]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3740</guid>
		<description><![CDATA[Google dorks can be defined as keywords in a Google search that dig out juicy information like usernames , passwords , documents files , databases etc. from websites (simple and to the point). These google dorks can also be used in Intelligence Gathering.<p><a href="http://www.nightlion.net/hacking/2011/hand-picked-google-dorks/" rel="bookmark" title="Permanent link to 'Gather Intelligence from Google using these hand picked Google Dorks'" class="glyph">&#9733;</a></p>

Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2010/harmonize-iphone-ical-with-google-calendar/' rel='bookmark' title='Automatically Sync iPhone &amp; iCal with Google Calendar'>Automatically Sync iPhone &#038; iCal with Google Calendar</a></li>
<li><a href='http://www.nightlion.net/guides/2010/disable-google-instant-search/' rel='bookmark' title='Disable Google Instant Search'>Disable Google Instant Search</a></li>
<li><a href='http://www.nightlion.net/news/2009/experimenter-breeds-swarm-intelligence-robots-evolve-the-ability-to-deceive/' rel='bookmark' title='Experimenter Breeds Swarm Intelligence &#8211; Robots &#8216;Evolve&#8217; the Ability to Deceive'>Experimenter Breeds Swarm Intelligence &#8211; Robots &#8216;Evolve&#8217; the Ability to Deceive</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>This is a great post from <a href="http://www.zerobyte.com">ZeroByte.com</a>.</p>
<p>Google dorks can be defined as keywords in a Google search that dig out juicy information like usernames , passwords , documents files , databases etc. from websites (simple and to the point). These google dorks can also be used in Intelligence Gathering.</p>
<p> <a href="http://zer0byte.com/2011/09/20/hand-picked-google-dorks/">Read the post here</a>.</p>
<p><a href="http://www.nightlion.net/hacking/2011/hand-picked-google-dorks/" rel="bookmark" title="Permanent link to 'Gather Intelligence from Google using these hand picked Google Dorks'" class="glyph">&#9733;</a></p>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2010/harmonize-iphone-ical-with-google-calendar/' rel='bookmark' title='Automatically Sync iPhone &amp; iCal with Google Calendar'>Automatically Sync iPhone &#038; iCal with Google Calendar</a></li>
<li><a href='http://www.nightlion.net/guides/2010/disable-google-instant-search/' rel='bookmark' title='Disable Google Instant Search'>Disable Google Instant Search</a></li>
<li><a href='http://www.nightlion.net/news/2009/experimenter-breeds-swarm-intelligence-robots-evolve-the-ability-to-deceive/' rel='bookmark' title='Experimenter Breeds Swarm Intelligence &#8211; Robots &#8216;Evolve&#8217; the Ability to Deceive'>Experimenter Breeds Swarm Intelligence &#8211; Robots &#8216;Evolve&#8217; the Ability to Deceive</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/hacking/2011/hand-picked-google-dorks/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>&#9733; Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments</title>
		<link>http://www.nightlion.net/hacking/2011/prep-for-the-ceh-v7-exam-tune-your-web-hacking-skills-with-these-live-hackable-simulation-environments/</link>
		<comments>http://www.nightlion.net/hacking/2011/prep-for-the-ceh-v7-exam-tune-your-web-hacking-skills-with-these-live-hackable-simulation-environments/#comments</comments>
		<pubDate>Tue, 11 Oct 2011 23:12:11 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[ceh]]></category>
		<category><![CDATA[certified ethical hacker]]></category>
		<category><![CDATA[exam]]></category>
		<category><![CDATA[exam material]]></category>
		<category><![CDATA[parallels]]></category>
		<category><![CDATA[school]]></category>
		<category><![CDATA[vm]]></category>
		<category><![CDATA[vmware]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3661</guid>
		<description><![CDATA[I am preparing for for my Certified Ethical Hacker (CEH) certification and have compiled a handful of really helpful 'Live' Simulations that you can practice hacking into. Some are webpages, others are virtual environments. I recomend checking these out, even if you're in the security field and just want to sharpen your skills.
Related posts:<ol>
<li><a href='http://www.nightlion.net/hacking/2011/test-your-web-penetration-skills-with-damn-vulnerable-web-app/' rel='bookmark' title='Test your Web Penetration Skills with Damn Vulnerable Web App'>Test your Web Penetration Skills with Damn Vulnerable Web App</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/live-hacking-dvd-v1-3-beta-download/' rel='bookmark' title='Live Hacking DVD v1.3 Beta &#8211; Download !'>Live Hacking DVD v1.3 Beta &#8211; Download !</a></li>
<li><a href='http://www.nightlion.net/reviews/2011/parallels-7-destroy-vmware-fusion-4-in-windows-and-linux-pen-testing-environments/' rel='bookmark' title='Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments'>Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>I am preparing for my Certified Ethical Hacker (CEH) certification, and have compiled several resources to aid in my studying. I already have a high level of technical knowledge, and am generally more of a hands-on person. I am not as concerned with reading book material; I would rather learn by doing.</p>
<p>Some of simulations are website files (don&#8217;t place these in a live server), others are full virtual machines. I&#8217;m on a Mac, so my emulator of choice is <a href="http://www.parallels.com/products/desktop/" target="_new">Parallels Desktop 7</a>. It&#8217;s considerably faster than VMWare, but I will be doing a full review on that another time. It&#8217;s important to note that the HackXor simulation below is a VMWare image, but Parallels has no problem converting it.</p>
<div class="reviewLink">
<h3>1. Web Goat</h3>
<p><a href="https://www.owasp.org/index.php/Category:OWASP_WebGoat_Project">WebGoat</a> is a deliberately insecure J2EE web application maintained by OWASP designed to teach web application security lessons. In each lesson, users must demonstrate their understanding of a security issue by exploiting a real vulnerability in the WebGoat application. For example, in one of the lessons the user must use SQL injection to steal fake credit card numbers. WebGoat is written in Java and therefore installs on any platform with a Java virtual machine. There are installation programs for Linux, OS X Tiger and Windows. Once deployed, the user can go through the lessons and track their progress with the scorecard.</p>
<p><a href="https://www.owasp.org/index.php/Category:OWASP_WebGoat_Project">Download Web Goat</a></p>
</div>
<div class="reviewLink">
<h3>2. Damn Vulnerable Web Application</h3>
<p><a href="http://www.dvwa.co.uk/" target="_new">Damn Vulnerable Web App</a> (DVWA) is a PHP/MySQL web application that is damn vulnerable. Its main goals are to be an aid for security professionals to test their skills and tools in a legal environment, help web developers better understand the processes of securing web applications and aid teachers/students to teach/learn web application security in a class room environment.It is a best platform to practice web application hacking and security.</p>
<p><a href="http://www.dvwa.co.uk/" target="_new">Download DVWA</a></p>
</div>
<div class="reviewLink">
<h3>3. HackXor</h3>
<p><a href="http://hackxor.sourceforge.net/cgi-bin/index.pl" target="_new">Hackxor</a> is a webapp hacking game where players must locate and exploit vulnerabilities to progress through the story. Think WebGoat but with a plot and a focus on realism&amp;difficulty. Contains XSS, CSRF, SQLi, ReDoS, DOR, command injection, etc.</p>
<p><a href="http://hackxor.sourceforge.net/cgi-bin/index.pl" target="_new">Download HackXor</a></p>
</div>
<div class="reviewLink">
<h3>4. Hackademic</h3>
<p>The OWASP Hackademic Challenges Project is an open source project that helps you test your knowledge on web application security. You can use it to actually attack web applications in a realistic but also controllable and safe environment. On the left menu you can see all attack scenarios that are currently available.</p>
<p><a href="https://code.google.com/p/owasp-hackademic-challenges/">Download Hackademic</a></p>
</div>
<div class="reviewLink">
<h3>5. Web Security Dojo</h3>
<p>A free open-source self-contained training environment for Web Application Security penetration testing. Tools + Targets = Dojo. Various web application security testing tools and vulnerable web applications were added to a clean install of Ubuntu v10.04.2, which is patched with the appropriate updates and VM additions for easy use.</p>
<p><a href="http://www.mavensecurity.com/web_security_dojo/" target="_new">Download Web Security Dojo</a></p>
</div>
<div class="reviewLink">
<h3>6. WebMaven</h3>
<p><a href="http://www.mavensecurity.com/WebMaven/" target="_new">WebMaven</a> (better known as Buggy Bank) was an interactive learning environment for web application security. It emulated various security flaws for the user to find. This enabled users to safely &amp; legally practice web application vulnerability assessment techniques. In addition, users could benchmark their security audit tools to ensure they perform as advertised.</p>
<p><a href="http://www.mavensecurity.com/WebMaven/" target="_new">Download WebMaven</a></p>
</div>
<div class="reviewLink">
<h3>7. Additional Vulnerable Web Applications</h3>
<p>Want more? Check out this list of about 30 intentionally vulnerable web applications (PHP, JSP, CGI, Java) to test your skills.</p>
<p><a href="http://securitythoughts.wordpress.com/2010/03/22/vulnerable-web-applications-for-learning/" target="_new">View the website here.</a></p>
</div>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/hacking/2011/test-your-web-penetration-skills-with-damn-vulnerable-web-app/' rel='bookmark' title='Test your Web Penetration Skills with Damn Vulnerable Web App'>Test your Web Penetration Skills with Damn Vulnerable Web App</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/live-hacking-dvd-v1-3-beta-download/' rel='bookmark' title='Live Hacking DVD v1.3 Beta &#8211; Download !'>Live Hacking DVD v1.3 Beta &#8211; Download !</a></li>
<li><a href='http://www.nightlion.net/reviews/2011/parallels-7-destroy-vmware-fusion-4-in-windows-and-linux-pen-testing-environments/' rel='bookmark' title='Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments'>Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/hacking/2011/prep-for-the-ceh-v7-exam-tune-your-web-hacking-skills-with-these-live-hackable-simulation-environments/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; OmniFocus for Mac Theme 4 &#8211; Cleaner, Slimmer, and Styled for Lion</title>
		<link>http://www.nightlion.net/themes/2011/omnifocus-for-mac-theme-4-cleaner-slimmer-and-styled-for-lion/</link>
		<comments>http://www.nightlion.net/themes/2011/omnifocus-for-mac-theme-4-cleaner-slimmer-and-styled-for-lion/#comments</comments>
		<pubDate>Mon, 10 Oct 2011 23:38:06 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Themes]]></category>
		<category><![CDATA[lion]]></category>
		<category><![CDATA[omnifocus]]></category>
		<category><![CDATA[OSX]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3664</guid>
		<description><![CDATA[This is by far the most clean and slimmed down theme I've designed for Omnifocus. I styled it to match the colors and themes found in the new OSX Lion interface. I think it's a great fit.
Related posts:<ol>
<li><a href='http://www.nightlion.net/themes/2011/omnifocus-theme-3-clean-simple-and-elegant/' rel='bookmark' title='OmniFocus Theme 3: Clean, simple and elegant'>OmniFocus Theme 3: Clean, simple and elegant</a></li>
<li><a href='http://www.nightlion.net/themes/2009/putty-dark-color-theme/' rel='bookmark' title='PuTTY SSH Custom Dark Color Theme for Windows'>PuTTY SSH Custom Dark Color Theme for Windows</a></li>
<li><a href='http://www.nightlion.net/guides/2011/creating-a-mac-os-x-10-7-lion-bootable-flash-drive/' rel='bookmark' title='Creating a Mac OS X 10.7 Lion Bootable Flash Drive'>Creating a Mac OS X 10.7 Lion Bootable Flash Drive</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>This is by far the most clean and slimmed down theme I&#8217;ve designed for Omnifocus. I styled it to match the colors and themes found in the new OSX Lion interface. I think it&#8217;s a great fit. I hope you enjoy it.</p>
<div class="productImage"><a href="http://www.nightlion.net/download/NightLion4-OF-Theme.zip"><img class="colorbox-3664"  title="Omnifocus-NightLion-Theme4.png" src="http://www.nightlion.net/wp-content/uploads/2011/10/Omnifocus-NightLion-Theme41.png" alt="Omnifocus NightLion Theme4" width="700" height="503" border="0" /></a></div>
<div class="productImage"><a href="http://www.nightlion.net/download/NightLion4-OF-Theme.zip"><img class="colorbox-3664"  title="Omnifocus-NightLion-Theme4-context-view.png" src="http://www.nightlion.net/wp-content/uploads/2011/10/Omnifocus-NightLion-Theme4-context-view1.png" alt="Omnifocus NightLion Theme4 context view" width="700" height="417" border="0" /></a></div>
<div class="downloadButton"><a href="http://www.nightlion.net/download/NightLion4-OF-Theme.zip"><img class="colorbox-3664"  src="/images/download-button.png" alt="Download NightLion theme 4 for Omnifocus" /></a></div>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/themes/2011/omnifocus-theme-3-clean-simple-and-elegant/' rel='bookmark' title='OmniFocus Theme 3: Clean, simple and elegant'>OmniFocus Theme 3: Clean, simple and elegant</a></li>
<li><a href='http://www.nightlion.net/themes/2009/putty-dark-color-theme/' rel='bookmark' title='PuTTY SSH Custom Dark Color Theme for Windows'>PuTTY SSH Custom Dark Color Theme for Windows</a></li>
<li><a href='http://www.nightlion.net/guides/2011/creating-a-mac-os-x-10-7-lion-bootable-flash-drive/' rel='bookmark' title='Creating a Mac OS X 10.7 Lion Bootable Flash Drive'>Creating a Mac OS X 10.7 Lion Bootable Flash Drive</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/themes/2011/omnifocus-for-mac-theme-4-cleaner-slimmer-and-styled-for-lion/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>&#9733; Growl, the Original Notification System for Mac, gets a Lion Overhaul</title>
		<link>http://www.nightlion.net/reviews/osx/2011/growl-the-original-notification-system-for-mac-gets-a-major-overhaul/</link>
		<comments>http://www.nightlion.net/reviews/osx/2011/growl-the-original-notification-system-for-mac-gets-a-major-overhaul/#comments</comments>
		<pubDate>Fri, 07 Oct 2011 17:36:40 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[OSX]]></category>
		<category><![CDATA[Reviews]]></category>
		<category><![CDATA[growl]]></category>
		<category><![CDATA[lion]]></category>
		<category><![CDATA[mac]]></category>
		<category><![CDATA[notifications]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3628</guid>
		<description><![CDATA[Growl has been (and still is) the defacto standard notification system for your mac. This latest update revives the interface and modernizes the app. Growl is one of those rare apps that instantly becomes indispensable, and you just can't live without.
Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/mail-5-for-osx-lion-5-things-apple-should-fix-to-make-it-perfect/' rel='bookmark' title='Mail 5 for OSX Lion: 5 things Apple should fix to make it perfect.'>Mail 5 for OSX Lion: 5 things Apple should fix to make it perfect.</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2009/subversion-svn-osx-and-finder-integration-smartsvn-finally-a-tortoise-equivalent/' rel='bookmark' title='Subversion SVN, OSX and Finder Integration: SmartSVN (Finally, a Tortoise equivalent)'>Subversion SVN, OSX and Finder Integration: SmartSVN (Finally, a Tortoise equivalent)</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/how-to-enable-and-make-scrollbars-in-osx-lion-visible/' rel='bookmark' title='How to Enable and Make Scrollbars in OSX Lion Visible'>How to Enable and Make Scrollbars in OSX Lion Visible</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">Growl</h3>
<h3 class="reviewSubhead">Notification System</h3>
</div>
<div class="appImageSlice"><img class="colorbox-3628"  title="Growl_Logo.png" src="http://www.nightlion.net/wp-content/uploads/2011/10/Growl_Logo1.png" alt="Growl Logo" width="600" height="250" border="0" /></div>
<p>Within a day of release, Growl soared to the top of the paid charts in the Mac App Store. That alone should tell you something.</p>
<p>Growl has been (and still is) the defacto standard for notifications on your mac. Growl is one of those rare apps that instantly becomes indispensable, and you just can&#8217;t live without.</p>
<p>The new version of Growl, besides adding support for OSX Lion, adds a completely redesigned interface and several new features worth mentioning:</p>
<ul>
<li>New Rollup notification lists everything that happened while you were away</li>
<li>Full notification history, so you can see what has been going on.</li>
<li>Networking so that two or more macs can forward notifications to each other</li>
<li>Works with the iPhone and iPad via Prowl.</li>
<li>Completely skinnable alerts</li>
</ul>
<p>The low price of $2 is extremely reasonable considering just how much you end up using this app without even realizing it. Bottom line, this app is rock solid; Apple couldn&#8217;t have done it any better.</p>
<p>Price: 1.99 | <a href="http://growl.info/">Homepage</a> | <a href="http://itunes.apple.com/us/app/growl/id467939042?mt=12">App Store Link</a></p>
<div class="thumbWrap">
<div class="reviewThumb"><a href="http://www.nightlion.net/wp-content/uploads/2011/10/growl_lion_screen.png"><img class="colorbox-3628"  title="growl_lion_screen.png" src="http://www.nightlion.net/wp-content/uploads/2011/10/growl_lion_screen-150x150.png" alt="" width="150" height="150" /></a>
</div>
<div class="reviewThumb"><a href="http://www.nightlion.net/wp-content/uploads/2011/10/growl_lion_history.png"><img class="colorbox-3628"  title="growl_lion_history.png" src="http://www.nightlion.net/wp-content/uploads/2011/10/growl_lion_history-150x150.png" alt="" width="150" height="150" /></a></div>
</div>
</div>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/mail-5-for-osx-lion-5-things-apple-should-fix-to-make-it-perfect/' rel='bookmark' title='Mail 5 for OSX Lion: 5 things Apple should fix to make it perfect.'>Mail 5 for OSX Lion: 5 things Apple should fix to make it perfect.</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2009/subversion-svn-osx-and-finder-integration-smartsvn-finally-a-tortoise-equivalent/' rel='bookmark' title='Subversion SVN, OSX and Finder Integration: SmartSVN (Finally, a Tortoise equivalent)'>Subversion SVN, OSX and Finder Integration: SmartSVN (Finally, a Tortoise equivalent)</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/how-to-enable-and-make-scrollbars-in-osx-lion-visible/' rel='bookmark' title='How to Enable and Make Scrollbars in OSX Lion Visible'>How to Enable and Make Scrollbars in OSX Lion Visible</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/reviews/osx/2011/growl-the-original-notification-system-for-mac-gets-a-major-overhaul/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title><![CDATA[Test your Web Penetration Skills with Damn Vulnerable Web App]]></title>
		<link><![CDATA[http://code.google.com/p/dvwa/]]></link>
		<comments>http://www.nightlion.net/hacking/2011/test-your-web-penetration-skills-with-damn-vulnerable-web-app/#comments</comments>
		<pubDate>Wed, 05 Oct 2011 16:51:05 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[mysql]]></category>
		<category><![CDATA[penetration]]></category>
		<category><![CDATA[php]]></category>
		<category><![CDATA[web applications]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3624</guid>
		<description><![CDATA[Damn Vulnerable Web App (DVWA) is a PHP/MySQL web application that is damn vulnerable. Its main goals are to be an aid for security professionals to test their skills and tools in a legal environment, help web developers better understand the processes of securing web applications and aid teachers/students to teach/learn web application security in a class room environment.<p><a href="http://www.nightlion.net/hacking/2011/test-your-web-penetration-skills-with-damn-vulnerable-web-app/" rel="bookmark" title="Permanent link to 'Test your Web Penetration Skills with Damn Vulnerable Web App'" class="glyph">&#9733;</a></p>

Related posts:<ol>
<li><a href='http://www.nightlion.net/hacking/2011/prep-for-the-ceh-v7-exam-tune-your-web-hacking-skills-with-these-live-hackable-simulation-environments/' rel='bookmark' title='Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments'>Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/pangolin-3-2-3-automatic-sql-injection-penetration-testing-tool-new-release/' rel='bookmark' title='Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !'>Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/xss-harvest-harvesting-cross-site-scripting-clicks-keystrokes-and-cookies/' rel='bookmark' title='XSS-Harvest: Harvesting Cross Site Scripting, Clicks, Keystrokes and Cookies'>XSS-Harvest: Harvesting Cross Site Scripting, Clicks, Keystrokes and Cookies</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>Damn Vulnerable Web App (DVWA) is a PHP/MySQL web application that is damn vulnerable. Its main goals are to be an aid for security professionals to test their skills and tools in a legal environment, help web developers better understand the processes of securing web applications and aid teachers/students to teach/learn web application security in a class room environment.</p>
<p><object width="500" height="281"><param name="movie" value="http://www.youtube.com/v/Q3p_joL7X8E?version=3"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/Q3p_joL7X8E?version=3" type="application/x-shockwave-flash" width="500" height="281" allowscriptaccess="always" allowfullscreen="true"></embed></object></p>
<p><a href="http://code.google.com/p/dvwa/">Download Damn Vulnerable Web App</a></p>
<p><a href="http://www.nightlion.net/hacking/2011/test-your-web-penetration-skills-with-damn-vulnerable-web-app/" rel="bookmark" title="Permanent link to 'Test your Web Penetration Skills with Damn Vulnerable Web App'" class="glyph">&#9733;</a></p>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/hacking/2011/prep-for-the-ceh-v7-exam-tune-your-web-hacking-skills-with-these-live-hackable-simulation-environments/' rel='bookmark' title='Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments'>Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/pangolin-3-2-3-automatic-sql-injection-penetration-testing-tool-new-release/' rel='bookmark' title='Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !'>Pangolin 3.2.3 &#8211; Automatic SQL injection penetration testing tool New Release !</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/xss-harvest-harvesting-cross-site-scripting-clicks-keystrokes-and-cookies/' rel='bookmark' title='XSS-Harvest: Harvesting Cross Site Scripting, Clicks, Keystrokes and Cookies'>XSS-Harvest: Harvesting Cross Site Scripting, Clicks, Keystrokes and Cookies</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/hacking/2011/test-your-web-penetration-skills-with-damn-vulnerable-web-app/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; Navicat Premium &#8211; An Exceptional Database Management Powerhouse, available for Mac OSX, Windows and Linux</title>
		<link>http://www.nightlion.net/reviews/osx/2011/navicat-premium-an-exceptional-database-management-powerhouse-tool/</link>
		<comments>http://www.nightlion.net/reviews/osx/2011/navicat-premium-an-exceptional-database-management-powerhouse-tool/#comments</comments>
		<pubDate>Mon, 03 Oct 2011 14:47:43 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[OSX]]></category>
		<category><![CDATA[Reviews]]></category>
		<category><![CDATA[database]]></category>
		<category><![CDATA[db]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[mysql]]></category>
		<category><![CDATA[sql]]></category>
		<category><![CDATA[SSH]]></category>
		<category><![CDATA[ssh tunnel]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3612</guid>
		<description><![CDATA[Navicat delivers incredible functionality database management functionality, wrapped in a perfectly designed package. while handling support for the major database types including MySQL, SQL Server, SQLite, Oracle and PostgreSQL.
Related posts:<ol>
<li><a href='http://www.nightlion.net/guides/2009/backup-multiple-mysql-databases/' rel='bookmark' title='How to Automatically Backup Multiple MySQL Databases on Centos Linux'>How to Automatically Backup Multiple MySQL Databases on Centos Linux</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2010/querious-1-0-2-macosx/' rel='bookmark' title='Querious 1.0.2 (MacOSX)'>Querious 1.0.2 (MacOSX)</a></li>
<li><a href='http://www.nightlion.net/reviews/2011/parallels-7-destroy-vmware-fusion-4-in-windows-and-linux-pen-testing-environments/' rel='bookmark' title='Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments'>Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">Navicat Premium</h3>
<h3 class="reviewSubhead">Database Manager</h3>
</div>
<div class="appImageSlice">
<a href="http://www.navicat.com"><img class="colorbox-3612"  src="http://www.nightlion.net/wp-content/uploads/2011/09/navicat_mysql.png" alt="Navicat Logo" title="navicat_mysql.png" border="0" width="600" height="250" /></a></p>
</div>
<h3>Overview</h3>
<p><a href="http://www.navicat.com">Navicat</a> comes in several specific database flavors, including MySQL, SQL Server, SQLite, Oracle and PostgreSQL. <a href="http://www.navicat.com">Navicat Premium</a> handles support for all of those databases combined. First and foremost, The interface feels like it is a native mac app. It is so incredibly intuitive that setting up a connection to a local or remote database doesn&#8217;t take longer than a minute. Once connected, navigating through the database schemas is as simple as point and click; everything flows exceptionally well. Kudos to the application designers, they did a tremendous job. </p>
<p>Here are my top 5 favorite (and most useful) features of Navicat: </p>
<h3>1. Connect using SSH / HTTP Tunnel </h3>
<p>W O W . I&#8217;ll be honest, my jaw almost hit the floor when I saw this feature. I&#8217;ve often had problems connecting to remote MySQL databases because of various permission issues. I can&#8217;t describe just how useful this feature is. All I have to do is create an SSH tunnel to my server with my SSH credentials, and I can connect to the DB at localhost with absolutely no issues. This feature alone makes this product worth every penny in my book. </p>
<p><img class="colorbox-3612"  src="http://www.nightlion.net/wp-content/uploads/2011/10/premium_ssh_mac.jpg" alt="Premium ssh mac" title="premium_ssh_mac.jpg" border="0" width="482" height="494" /></p>
<h3>2. Database Wide Search</h3>
<p>The name says it all. There have been many times when I am looking for a particular piece of data nested in some unknown table. Rather than writing a complex query, Navicat will just search all of the tables for you; it&#8217;s fast and painless. </p>
<h3>3. The Reverse Database to Modeling Tool is insane! </h3>
<p>This is probably one of the coolest feature&#8217;s I&#8217;ve ever seen in a DB tool. Just select Reverse Database to Model and Navicat will literally take all of the database tables and lay them out in a graphical data modeler. It&#8217;s awesome. You can then make changes to the DB via the graphical model and SYNC it back with the tables. This feature is AWESOME. </p>
<p><img class="colorbox-3612"  src="http://www.nightlion.net/wp-content/uploads/2011/10/reverseEng_Premium_mac.gif" alt="ReverseEng Premium mac" title="reverseEng_Premium_mac.gif" border="0" width="600" height="410" /></p>
<h3>4. Import / Export</h3>
<p>Last but not least, the import/export feature of Navicat makes it so incredibly easy to backup or restore your databases without having to go through the effort of either doing is via the command line or through phpMyAdmin. It&#8217;s a real time saver. </p>
<h3>5. Many Different Database Flavors Available</h3>
<p><a href="http://www.navicat.com">Navicat Premium</a> handles database connections for MySQL, SQL Server, SQLite, Oracle and PostgreSQL. I personally only use the MySQL and PostgreSQL, but that&#8217;s part of what makes Navicat so great (and affordable). You don&#8217;t necessarily have to shell out for the most expensive package if you don&#8217;t need it. Just focus on the databases that you care about to keep your costs low, and you still get all of the same features. </p>
<p><img class="colorbox-3612"  src="http://www.nightlion.net/wp-content/uploads/2011/10/premium_features_mac.jpg" alt="Premium features mac" title="premium_features_mac.jpg" border="0" width="600" height="436" /></p>
<h3>Rating</h3>
<p><strong>Ease of Use</strong>: 10 <br />
<strong>Look and Feel</strong>: 10 <br />
<strong>Functionality</strong>: 10</p>
<p><strong>Overall Rating:</strong> 10/10 </p>
<p>Price: $69 &#8211; $249 | Trial? Yes | <a href="http://www.navicat.com/">Navicat Homepage</a> </p>
</div>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/guides/2009/backup-multiple-mysql-databases/' rel='bookmark' title='How to Automatically Backup Multiple MySQL Databases on Centos Linux'>How to Automatically Backup Multiple MySQL Databases on Centos Linux</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2010/querious-1-0-2-macosx/' rel='bookmark' title='Querious 1.0.2 (MacOSX)'>Querious 1.0.2 (MacOSX)</a></li>
<li><a href='http://www.nightlion.net/reviews/2011/parallels-7-destroy-vmware-fusion-4-in-windows-and-linux-pen-testing-environments/' rel='bookmark' title='Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments'>Parallels 7 destroys VMWare Fusion 4 in Windows and Linux Pen Testing Environments</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/reviews/osx/2011/navicat-premium-an-exceptional-database-management-powerhouse-tool/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; Quickbooks 2012 for Mac &#8211; Intuit delivers a business accounting product worthy of OSX</title>
		<link>http://www.nightlion.net/reviews/osx/2011/quickbooks-2012-for-mac-intuit-delivers-an-business-accounting-product-worthy-of-osx/</link>
		<comments>http://www.nightlion.net/reviews/osx/2011/quickbooks-2012-for-mac-intuit-delivers-an-business-accounting-product-worthy-of-osx/#comments</comments>
		<pubDate>Mon, 26 Sep 2011 15:45:29 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[OSX]]></category>
		<category><![CDATA[Reviews]]></category>
		<category><![CDATA[accounting]]></category>
		<category><![CDATA[business accounting]]></category>
		<category><![CDATA[credit card processing]]></category>
		<category><![CDATA[finance]]></category>
		<category><![CDATA[intuit]]></category>
		<category><![CDATA[invoice]]></category>
		<category><![CDATA[small business]]></category>
		<category><![CDATA[workflow]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3571</guid>
		<description><![CDATA[Quickbooks 2012 Business Accounting &#160; For those of you that don&#8217;t like to read long winded reviews, I&#8217;ll get right to the point: As an OSX user, you probably share the distaste left by Intuit over the previous Quickbooks product releases. In fact, at the time that Quickbooks 2012 was announced, I was in the process [...]
Related posts:<ol>
<li><a href='http://www.nightlion.net/news/2010/pentagon-military-purchasing-powerpoint-slide/' rel='bookmark' title='Pentagon Powerpoint outlining Military purchasing and product life cycles.'>Pentagon Powerpoint outlining Military purchasing and product life cycles.</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">Quickbooks 2012</h3>
<h3 class="reviewSubhead">Business Accounting</h3>
</div>
<div class="appImageSlice"><img class="colorbox-3571"  title="quickbooks_2012_icon.png" src="http://www.nightlion.net/wp-content/uploads/2011/09/quickbooks_2012_icon.png" alt="Quickbooks 2012 icon" width="600" height="250" border="0" /></div>
<p>&nbsp;</p>
<p>For those of you that don&#8217;t like to read long winded reviews, I&#8217;ll get right to the point: As an OSX user, you probably share the distaste left by Intuit over the previous Quickbooks product releases. In fact, at the time that Quickbooks 2012 was announced, I was in the process of looking at online alternatives. Even though I am still highly annoyed at the fact that Quickbooks still does not support automatic credit card processing, I can honestly say that <em><strong>Quickbooks 2012 has blown me away.</strong></em> Quickbooks 2012 represents a significant improvement in both workflow and user interface. The process flows and smooth UI feel like you are working in a Mac application it&#8217;s terrific. In my opinion, this version represents a huge leap forward in finance and accounting programs for the Mac. </p>
<h3>The Interface</h3>
<p>The first thing I noticed is how much smoother the process flow of the application is. Entering an invoice is still just as easy, but the updated UI allows you to quickly click not the payment button, grab the invoice you want from the list on the left, and rapidly enter a payment. The entire prices is incredibly smooth.The one thing I hated about Quickbooks 2011, was the it always took me a good amount of time to figure out where the &#8216;receive payments&#8217; button was located. Now everything is centrally located; it just makes sense.</p>
<p><img class="colorbox-3571"  src="http://www.nightlion.net/wp-content/uploads/2011/09/Quickbooks_2012_screen_invoice.png" alt="Quickbooks 2012 screen invoice" title="Quickbooks_2012_screen_invoice.png" border="0" width="600" height="324" /></p>
<h3>Importing Bank Transactions</h3>
<p>This process has also gotten considerably easier. I have a stack of unmatched transactions sitting in my register because I haven&#8217;t wanted to go through them one at a time. QB 2012 is defiantly better at handling unmatched transactions, but it&#8217;s not quite 100% in my opinion. The new batch &#8216;Add Multiple&#8217; and Renaming Rules options go a long way in speeding up this process. Once you add a vendor to your register once, you can click the Add Multiple button to have quickbooks automatically enter the rest for you.</p>
<p>While this does save a considerable amount of time, a perfect solution would be to have an &#8220;Add All&#8221; button, which goes ahead and enters everything for you, using a generic spending category. I know it&#8217;s not proper accounting, but sometimes you need to just get things done and move on. It&#8217;s certainly a nice to have feature, but by no means a deal breaker for me. The new import functionality is awesome.</p>
<p><img class="colorbox-3571"  src="http://www.nightlion.net/wp-content/uploads/2011/09/quickbooks_2012_download_transactions.jpg" alt="Quickbooks 2012 download transactions" title="quickbooks_2012_download_transactions.jpg" border="0" width="560" height="276" /></p>
<h3>Progress Invoicing</h3>
<p>At first I just glanced over this, but this is actually a pretty cool feature. I generally collect deposits on projects, but have always just worked off the same invoice. Now, I create an estimate for the entire project, and I can have quickbooks generate a &#8216;Progress Invoice&#8217; for the amount that I would like to bill for. Then I can have separate invoices for each piece that I&#8217;ve built. This will change my workflow a little bit, but I think it&#8217;s worth it. I think my this is something that my customers will greatly appreciate.</p>
<p><img class="colorbox-3571"  src="http://www.nightlion.net/wp-content/uploads/2011/09/quickbooks_2012_progressinvoice.png" alt="Quickbooks 2012 progressinvoice" title="quickbooks_2012_progressinvoice.png" border="0" width="600" height="356" /></p>
<h3>Automated Reoccurring Merchant Account Transactions are STILL missing</h3>
<p>Can you tell that this is a sore spot for me? Intuit, if you read this review, please add this feature! <strong>This is probably the most frustrating part about Quickbooks.</strong><em> Merchant account support has been available for the Mac for 4 years now. Automatic credit card billing has been available for windows for over 5 years. Why can&#8217;t this feature be added to the Mac version? Doesn&#8217;t it make sense that the merchant account features of both products would match, especially considering the fact that the only merchant account service available to use within Quickbooks is owned by Intuit? All of my billing is done on the first of the month. Why can&#8217;t I automate that process of billing my same 20 clients each month so I don&#8217;t have to manually bill them one at a time?</em></p>
<h3>Overall Impressions</h3>
<p>I definitely don&#8217;t consider myself pro Intuit, as they&#8217;ve certainly given the shaft to Mac OSX users in the past&#8230; but I have to give credit where credit is due: Quickbooks 2012 is fantastic. I wouldn&#8217;t hesitate to pay the upgrade price tag, as this app now towers over all other small business finance apps for OSX. </p>
<p><strong>Ease of Use</strong>: 10<br />
<strong>Look and Feel</strong>: 10<br />
<strong>Functionality</strong>: 8<br />
<strong>Overall Rating:</strong> 9</p>
<p>Price: $249 | Trial? yes | <a href="http://quickbooks.intuit.com/" target="_blank">Homepage</a></p>
</div>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/news/2010/pentagon-military-purchasing-powerpoint-slide/' rel='bookmark' title='Pentagon Powerpoint outlining Military purchasing and product life cycles.'>Pentagon Powerpoint outlining Military purchasing and product life cycles.</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/reviews/osx/2011/quickbooks-2012-for-mac-intuit-delivers-an-business-accounting-product-worthy-of-osx/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title><![CDATA[Automate Daily Backups of MySQL databases with AutoMySQLBackup]]></title>
		<link><![CDATA[http://sourceforge.net/projects/automysqlbackup/develop/]]></link>
		<comments>http://www.nightlion.net/guides/2011/automate-daily-backups-of-mysql-databases-with-automysqlbackup/#comments</comments>
		<pubDate>Sat, 24 Sep 2011 16:24:47 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Guides]]></category>
		<category><![CDATA[backups]]></category>
		<category><![CDATA[centos]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[mysql]]></category>
		<category><![CDATA[mysqldump]]></category>
		<category><![CDATA[redhat]]></category>
		<category><![CDATA[server]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3595</guid>
		<description><![CDATA[A script to take daily, weekly and monthly backups of your MySQL databases using mysqldump. Features - Backup mutiple databases - Single backup file or to a seperate file for each DB - Compress backup files - Backup remote servers - E-mail logs -<p><a href="http://www.nightlion.net/guides/2011/automate-daily-backups-of-mysql-databases-with-automysqlbackup/" rel="bookmark" title="Permanent link to 'Automate Daily Backups of MySQL databases with AutoMySQLBackup'" class="glyph">&#9733;</a></p>

Related posts:<ol>
<li><a href='http://www.nightlion.net/guides/2009/backup-multiple-mysql-databases/' rel='bookmark' title='How to Automatically Backup Multiple MySQL Databases on Centos Linux'>How to Automatically Backup Multiple MySQL Databases on Centos Linux</a></li>
<li><a href='http://www.nightlion.net/guides/2011/automate-server-to-server-backups-with-rsync-and-ssh/' rel='bookmark' title='Automate server to server backups with rsync and ssh'>Automate server to server backups with rsync and ssh</a></li>
<li><a href='http://www.nightlion.net/guides/2011/suexec-policy-violation-error-permission-denied-running-php-as-cgi-suexec-error-centos-plesk/' rel='bookmark' title='Suexec Policy violation error &#8211; permission denied running php as CGI suexec error (centos / plesk)'>Suexec Policy violation error &#8211; permission denied running php as CGI suexec error (centos / plesk)</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>This Linux shell script has been a life saver on many occasions. It automates the process of backing-up and rotating your MySQL backups using mysqldump. It creates separate backup files on a daily, weekly and monthly basis. It also provides email logs in the event of an error.  </p>
<p>Download the script here: <a href="http://sourceforge.net/projects/automysqlbackup/develop/">http://sourceforge.net/projects/automysqlbackup/develop/</a></p>
<p><a href="http://www.nightlion.net/guides/2011/automate-daily-backups-of-mysql-databases-with-automysqlbackup/" rel="bookmark" title="Permanent link to 'Automate Daily Backups of MySQL databases with AutoMySQLBackup'" class="glyph">&#9733;</a></p>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/guides/2009/backup-multiple-mysql-databases/' rel='bookmark' title='How to Automatically Backup Multiple MySQL Databases on Centos Linux'>How to Automatically Backup Multiple MySQL Databases on Centos Linux</a></li>
<li><a href='http://www.nightlion.net/guides/2011/automate-server-to-server-backups-with-rsync-and-ssh/' rel='bookmark' title='Automate server to server backups with rsync and ssh'>Automate server to server backups with rsync and ssh</a></li>
<li><a href='http://www.nightlion.net/guides/2011/suexec-policy-violation-error-permission-denied-running-php-as-cgi-suexec-error-centos-plesk/' rel='bookmark' title='Suexec Policy violation error &#8211; permission denied running php as CGI suexec error (centos / plesk)'>Suexec Policy violation error &#8211; permission denied running php as CGI suexec error (centos / plesk)</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/guides/2011/automate-daily-backups-of-mysql-databases-with-automysqlbackup/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; Create a Printable Document Index with PDF Index Generator</title>
		<link>http://www.nightlion.net/reviews/osx/2011/create-a-printable-document-index-with-pdf-index-generator/</link>
		<comments>http://www.nightlion.net/reviews/osx/2011/create-a-printable-document-index-with-pdf-index-generator/#comments</comments>
		<pubDate>Wed, 21 Sep 2011 07:23:37 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Guides]]></category>
		<category><![CDATA[OSX]]></category>
		<category><![CDATA[Reviews]]></category>
		<category><![CDATA[27001]]></category>
		<category><![CDATA[27002]]></category>
		<category><![CDATA[exam]]></category>
		<category><![CDATA[g2700]]></category>
		<category><![CDATA[giac]]></category>
		<category><![CDATA[indexes]]></category>
		<category><![CDATA[information]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[interface]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[practice exams]]></category>
		<category><![CDATA[word index]]></category>
		<category><![CDATA[word list]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3548</guid>
		<description><![CDATA[Since the G2700 ISO 27001 / 27002 certification was an open book exam, I needed a way to quickly find the material I was looking for without having to go through mounds of papers during the exam. Having a printed Index seemed like a logical solution. I tested several applications and was extremely happy with PDF Index Generator.
Related posts:<ol>
<li><a href='http://www.nightlion.net/guides/2011/css3-generator/' rel='bookmark' title='CSS3 Generator'>CSS3 Generator</a></li>
<li><a href='http://www.nightlion.net/guides/2010/ultimate-css-gradient-generator/' rel='bookmark' title='Ultimate CSS Gradient Generator'>Ultimate CSS Gradient Generator</a></li>
<li><a href='http://www.nightlion.net/guides/2010/font-face-generator-css3-cross-browser-compatible/' rel='bookmark' title='@font-face Generator &#8211; CSS3 cross browser compatible'>@font-face Generator &#8211; CSS3 cross browser compatible</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>Since the G2700 ISO 27001 / 27002 certification was an open book exam, I needed a way to quickly find the material I was looking for without having to go through mounds of papers during the exam. If you are interested in the exam material, refer to my article on what materials you will need to bring with you to the exam. </p>
<p>After trying a few different pieces of software, I settled with <a href="http://www.pdfindexgenerator.com/">PDF Index Generator</a>. It took some time to get over the initial humps, but <a href="http://www.pdfindexgenerator.com/">PDF Index Generator</a> is actually a really powerful piece of software. I ultimately ended up creating two separate indexes for reference purposes (which I will get into in a minute). </p>
<h3>Step 1: Create the Index List</h3>
<p>Creating the initial index was a completely grueling process. It was pure grunt work, and unfortunately, there is no way around it. </p>
<p><a href="http://www.pdfindexgenerator.com/">PDF Index Generator</a> will create an index list for you, but it will index <em>every</em> word, minus the built in &#8216;excluded&#8217; words. I thought the application would be able to automate the creation of the index terms, but I quickly found out that the software can&#8217;t determine groupings of words and phrases: e.g., &#8216;information security management&#8217;. The Index creator can index each word individually, but it would have no way of knowing that Index Security Management is a term that you want to specifically search for, unless you manually specify it in the &#8216;include list&#8217;. </p>
<p>To try and expedite this process, I copy and pasted the index (word list) from several ISO 27001 books, and the GIAC G2700 exam information prep guides. Finally, I used the U-Certify practice exams and copied the answer to all of the questions into the word lists. This actually accounted for most of my most valuable infuriation as the multiple choice answers covered just about ever combination of technical term needed to create a full and robust word index. </p>
<h3>Step 2: Clean the List</h3>
<p>The my initial index &#8216;include&#8217; list was a mess, so here&#8217;s how I cleaned it: </p>
<ul>
<li>I copied / pasted the list into Excel</li>
<li> Removed the duplicate entries</li>
<li> Sorted the list alphabetically</li>
<li> Copied the data back out to a flat text file. </li>
</ul>
<p>My index word list was complete, with a staggering 3,759 words. </p>
<h3>Step 3: Creating the printed PDF Index with PDF Index Generator </h3>
<p>To generate the index, I used <a href="http://www.pdfindexgenerator.com/">PDF Index Generator</a>. It is a Java app, so it will run on any operating system. I scoured the web for a program that will create indexes of PDF documents, and there really weren&#8217;t many out there. Of the few I found, PDF Index Generator is definitely my choice. It&#8217;s not a very expensive app, and it gets the job done. </h3>
<p>The user interface is very simple to use, and there are actually only a handful of steps involved. You select your file, determine how to index the PDF document (include lists, exclude lists, etc), and process. It&#8217;s pretty simple. I will say that the one thing that I didn&#8217;t like is the header/sub header creation process. The app doesn&#8217;t do a very good job of working with sub headers, so I didn&#8217;t include any in my index. Here are some additional comments on the app: </p>
<p><strong>PROs</strong></p>
<ul>
<li> Professional, customizable output</li>
<li> Exports as PDF or appends index to existing PDF</li>
<li> Extremely simple to import your own Include and Exclude text lists</li>
</ul>
<p><strong>CONs</strong></p>
<ul>
<li>software can&#8217;t determine groupings of words and phrases (e.g., &#8216;information security&#8217;).</li>
<li>Java process hangs when trying to add/edit sub headers, so save often</li>
<li>Words that are plural are not automatically detected, e.g., system and systems </li>
<li>Having to manually create the Headers / Sub Header terms is painful</li>
<li>Aesthetically, since the program is written in Java, it doesn&#8217;t have the same look and feel as a native OSX app </li>
</ul>
<h3>Final Thoughts </h3>
<p>Overall, I had a good experience with the app. Here are my ratings: </p>
<p><strong>Ease of Use</strong>:  7 <br />
<strong>Look and Feel</strong>: 5 <br />
<strong>Functionality</strong>: 9 </p>
<p><strong>Overall Rating: 7/10</strong>  </p>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/guides/2011/css3-generator/' rel='bookmark' title='CSS3 Generator'>CSS3 Generator</a></li>
<li><a href='http://www.nightlion.net/guides/2010/ultimate-css-gradient-generator/' rel='bookmark' title='Ultimate CSS Gradient Generator'>Ultimate CSS Gradient Generator</a></li>
<li><a href='http://www.nightlion.net/guides/2010/font-face-generator-css3-cross-browser-compatible/' rel='bookmark' title='@font-face Generator &#8211; CSS3 cross browser compatible'>@font-face Generator &#8211; CSS3 cross browser compatible</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/reviews/osx/2011/create-a-printable-document-index-with-pdf-index-generator/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title><![CDATA[Spoof your MAC address in OSX Lion and Snow Leopard &#8211; Quick 3 Step Guide.]]></title>
		<link><![CDATA[http://osxdaily.com/2008/01/17/how-to-spoof-your-mac-address-in-mac-os-x/]]></link>
		<comments>http://www.nightlion.net/hacking/2011/spoof-your-mac-address-in-osx-lion-and-snow-leopard-quick-3-step-guide/#comments</comments>
		<pubDate>Thu, 15 Sep 2011 15:11:22 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Guides]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[ip address]]></category>
		<category><![CDATA[mac]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[spoof]]></category>
		<category><![CDATA[spoofing]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3513</guid>
		<description><![CDATA[Great tutorial on how to spoof your mac address in Mac OSX. This works in Lion.<p><a href="http://www.nightlion.net/hacking/2011/spoof-your-mac-address-in-osx-lion-and-snow-leopard-quick-3-step-guide/" rel="bookmark" title="Permanent link to 'Spoof your MAC address in OSX Lion and Snow Leopard &#8211; Quick 3 Step Guide.'" class="glyph">&#9733;</a></p>

Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2009/mac-osx-address-book-to-thunderbird-3-contacts-converter/' rel='bookmark' title='Mac OSX Address Book to Thunderbird 3 Contacts Converter (vCard to CSV or LDIF)'>Mac OSX Address Book to Thunderbird 3 Contacts Converter (vCard to CSV or LDIF)</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/guide-to-installing-metasploit-4-and-armitage-on-mac-osx-lion/' rel='bookmark' title='Guide to Installing Metasploit 4 and Armitage on Mac OSX Lion'>Guide to Installing Metasploit 4 and Armitage on Mac OSX Lion</a></li>
<li><a href='http://www.nightlion.net/themes/2010/osx-terminal-theme/' rel='bookmark' title='OSX Dark Terminal Theme for Mac Snow Leopard with Custom Bash Prompt'>OSX Dark Terminal Theme for Mac Snow Leopard with Custom Bash Prompt</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>A MAC address is a unique identifier assigned to your network card, and some networks implement MAC address filtering as a method of security. Spoofing a MAC address can be desired for multiple reasons, and it is very easy to spoof your MAC address in Mac OS X 10.4, 10.5, and 10.6. For the purpose of this article, we are going to assume you want to spoof your Mac’s wireless MAC address. So without further ado, here’s a 3 step process on how to do it:</p>
<p><a href="http://osxdaily.com/2008/01/17/how-to-spoof-your-mac-address-in-mac-os-x/">http://osxdaily.com/2008/01/17/how-to-spoof-your-mac-address-in-mac-os-x/</a></p>
<p><a href="http://www.nightlion.net/hacking/2011/spoof-your-mac-address-in-osx-lion-and-snow-leopard-quick-3-step-guide/" rel="bookmark" title="Permanent link to 'Spoof your MAC address in OSX Lion and Snow Leopard &#8211; Quick 3 Step Guide.'" class="glyph">&#9733;</a></p>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2009/mac-osx-address-book-to-thunderbird-3-contacts-converter/' rel='bookmark' title='Mac OSX Address Book to Thunderbird 3 Contacts Converter (vCard to CSV or LDIF)'>Mac OSX Address Book to Thunderbird 3 Contacts Converter (vCard to CSV or LDIF)</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/guide-to-installing-metasploit-4-and-armitage-on-mac-osx-lion/' rel='bookmark' title='Guide to Installing Metasploit 4 and Armitage on Mac OSX Lion'>Guide to Installing Metasploit 4 and Armitage on Mac OSX Lion</a></li>
<li><a href='http://www.nightlion.net/themes/2010/osx-terminal-theme/' rel='bookmark' title='OSX Dark Terminal Theme for Mac Snow Leopard with Custom Bash Prompt'>OSX Dark Terminal Theme for Mac Snow Leopard with Custom Bash Prompt</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/hacking/2011/spoof-your-mac-address-in-osx-lion-and-snow-leopard-quick-3-step-guide/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>&#9733; Reasons to Jailbreak iOS5</title>
		<link>http://www.nightlion.net/reviews/ios/2011/reasons-to-jailbreak-ios5/</link>
		<comments>http://www.nightlion.net/reviews/ios/2011/reasons-to-jailbreak-ios5/#comments</comments>
		<pubDate>Fri, 09 Sep 2011 19:41:11 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[iOS]]></category>
		<category><![CDATA[apple]]></category>
		<category><![CDATA[cydia]]></category>
		<category><![CDATA[ios5]]></category>
		<category><![CDATA[jailbreak]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3497</guid>
		<description><![CDATA[Apple has a great new OS on its hands with iOS5, but there are still some changes that warrant jail breaking your device. Here are the top reasons why I will be jailbreaking.
Related posts:<ol>
<li><a href='http://www.nightlion.net/guides/2010/iphone-4-jailbreak-all-devices-jailbreak-for-ios4/' rel='bookmark' title='iPhone 4 Jailbreak!! All Devices jailbreak for iOS4!'>iPhone 4 Jailbreak!! All Devices jailbreak for iOS4!</a></li>
<li><a href='http://www.nightlion.net/guides/2011/greenpois0n-rc-6-untethered-jailbreak-apple-tv-and-all-ios-4-2-1-devices/' rel='bookmark' title='Untethered Jailbreak Apple TV2 and all iOS 4.2.1 devices with greenpois0n RC 6'>Untethered Jailbreak Apple TV2 and all iOS 4.2.1 devices with greenpois0n RC 6</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>Apple has a great new OS on its hands with iOS5, but there are still some changes that warrant jail breaking your device. Here are the top reasons why I will be jailbreaking. Apple, if you&#8217;re reading this, I am not alone in my opinions. Hopefully these changes will be implemented sooner than later. </p>
<ol>
<li><strong>Flashlight Activator</strong><br />
Being able to use my phone as an emergency flashlight has saved me on a few occasions. You shouldn&#8217;t have to fumble with unlocking your phone, finding the right app, starting it, then starting the flashlight. Being able to have a assign a quick key command (such as double clicking the lock button) to turn on the flashlight is really helpful when you finally need it. </li>
<p></p>
<li><strong>Folder Closer</strong><br />
When you open a folder and click on an app, the open folder should automatically close. Instead, it&#8217;s waiting for you when you return to your home screen, forcing you to click it closed; it&#8217;s really annoying.
</li>
<p></p>
<li><strong>Action Menu</strong><br />
Action Menu enhances the copy/paste function of your iPhone by adding a bunch of add-ons to it. The most important being a stored favorites preset menu where you can quickly paste repetitive information.
</li>
<p></p>
<li><strong>Lock Screen Notification Center (Lockinfo)<br />
</strong>iOS5&#8242;s new notification center is great, but why can&#8217;t I have a notification center view on my lock screen?</li>
<p></p>
<li><strong>Pictures for Address Book and SMS messages (Cyntact)</strong><br />
It&#8217;s now the 5th version of iOS and we still don&#8217;t have contact pictures next to people&#8217;s names?</li>
<p></p>
<li><strong>Multi Icon Mover</strong><br />
Handy for moving icons in batch</li>
<p></p>
<li><strong>SBSettings</strong><br />
All of those handy, easily accessible settings are a real time saver. </li>
</ol>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/guides/2010/iphone-4-jailbreak-all-devices-jailbreak-for-ios4/' rel='bookmark' title='iPhone 4 Jailbreak!! All Devices jailbreak for iOS4!'>iPhone 4 Jailbreak!! All Devices jailbreak for iOS4!</a></li>
<li><a href='http://www.nightlion.net/guides/2011/greenpois0n-rc-6-untethered-jailbreak-apple-tv-and-all-ios-4-2-1-devices/' rel='bookmark' title='Untethered Jailbreak Apple TV2 and all iOS 4.2.1 devices with greenpois0n RC 6'>Untethered Jailbreak Apple TV2 and all iOS 4.2.1 devices with greenpois0n RC 6</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/reviews/ios/2011/reasons-to-jailbreak-ios5/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; SpamSieve &#8211; The missing spam filter for Mac OSX Mail</title>
		<link>http://www.nightlion.net/reviews/osx/2011/spamsieve-the-missing-spam-filter-for-mac-osx-mail/</link>
		<comments>http://www.nightlion.net/reviews/osx/2011/spamsieve-the-missing-spam-filter-for-mac-osx-mail/#comments</comments>
		<pubDate>Thu, 01 Sep 2011 21:55:21 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[OSX]]></category>
		<category><![CDATA[Reviews]]></category>
		<category><![CDATA[e-mail]]></category>
		<category><![CDATA[email]]></category>
		<category><![CDATA[fiter]]></category>
		<category><![CDATA[mail]]></category>
		<category><![CDATA[postbox]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[thunderbird]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3473</guid>
		<description><![CDATA[The best email spam filter for the Mac, period. Spamsieve provides the missing spam filter for Mac Mail, Thunderbird and Postbox.
Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/mail-5-for-osx-lion-5-things-apple-should-fix-to-make-it-perfect/' rel='bookmark' title='Mail 5 for OSX Lion: 5 things Apple should fix to make it perfect.'>Mail 5 for OSX Lion: 5 things Apple should fix to make it perfect.</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/sparrow-mail-for-mac-osx-my-growing-email-obsession/' rel='bookmark' title='Sparrow Mail for Mac OSX &#8211; my growing email obsession.'>Sparrow Mail for Mac OSX &#8211; my growing email obsession.</a></li>
<li><a href='http://www.nightlion.net/news/2011/spam-drops-13-after-rustock-botnet-gets-crushed/' rel='bookmark' title='Spam Drops 1/3 After Rustock Botnet Gets Crushed'>Spam Drops 1/3 After Rustock Botnet Gets Crushed</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">Spamsieve</h3>
<h3 class="reviewSubhead">Spam Filter for OSX Mail</h3>
</div>
<div class="appImageSlice"><a href="http://www.nightlion.net/?attachment_id=3476" rel="attachment wp-att-3476"><img class="alignnone size-full wp-image-3476 colorbox-3473" title="SpamSieve" src="http://www.nightlion.net/wp-content/uploads/2011/09/SpamSieve.png" alt="" width="600" height="250" /></a></div>
<p>Spam Sieve has been a god send for me. It&#8217;s by far the best email spam filter for the mac, period. I&#8217;m forced to continue to check one of my email boxes which is littered with about 50-100 spam messages a day. Server controls can only do so much, and OSX Mai&#8217;s built in spam control is nonexistent.</p>
<p>There isn&#8217;t a lot to say except that Spam Sieve provides the missing link to filtering your junk mail. <strong>If you need to filter spam on your mac email, either with Mail, Thunderbird or Postbox, you <em>need</em> Spamsieve. </strong>Once you have the application open, you can install the correct plugin for your mail client. From there, open up mail and start training some messages. It doesn&#8217;t take long before you are fully up and running.</p>
<p>The only thing I don&#8217;t like about Spamsieve is the icon that continues to hang around the dock everything your email has launched. Luckily, there is a quick way to get around that. Click here for instructions on <a href="http://c-command.com/spamsieve/manual-ah/how-can-i-hide-spamsiev">removing the SpamSieve icon from your dock</a>.</p>
<p>
Price: $30 | Trial? Yes | <a href="http://c-command.com/spamsieve/">Homepage</a></p>
<p><img class="colorbox-3473"  src="http://www.nightlion.net/wp-content/uploads/2011/09/spamsieve-whitelist.png" alt="Spamsieve whitelist" title="spamsieve-whitelist.png" border="0" width="585" height="340" /></p>
<p><img class="colorbox-3473"  src="http://www.nightlion.net/wp-content/uploads/2011/09/spamsieve-blocklist.png" alt="Spamsieve blocklist" title="spamsieve-blocklist.png" border="0" width="599" height="249" /></p>
</div>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/mail-5-for-osx-lion-5-things-apple-should-fix-to-make-it-perfect/' rel='bookmark' title='Mail 5 for OSX Lion: 5 things Apple should fix to make it perfect.'>Mail 5 for OSX Lion: 5 things Apple should fix to make it perfect.</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/sparrow-mail-for-mac-osx-my-growing-email-obsession/' rel='bookmark' title='Sparrow Mail for Mac OSX &#8211; my growing email obsession.'>Sparrow Mail for Mac OSX &#8211; my growing email obsession.</a></li>
<li><a href='http://www.nightlion.net/news/2011/spam-drops-13-after-rustock-botnet-gets-crushed/' rel='bookmark' title='Spam Drops 1/3 After Rustock Botnet Gets Crushed'>Spam Drops 1/3 After Rustock Botnet Gets Crushed</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/reviews/osx/2011/spamsieve-the-missing-spam-filter-for-mac-osx-mail/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>&#9733; Refog: A Powerful KeyLogger for Mac OSX</title>
		<link>http://www.nightlion.net/reviews/2011/refog-a-powerful-keylogger-for-mac-osx/</link>
		<comments>http://www.nightlion.net/reviews/2011/refog-a-powerful-keylogger-for-mac-osx/#comments</comments>
		<pubDate>Wed, 31 Aug 2011 23:07:45 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Reviews]]></category>
		<category><![CDATA[capture]]></category>
		<category><![CDATA[key logger]]></category>
		<category><![CDATA[keylog]]></category>
		<category><![CDATA[refog]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3468</guid>
		<description><![CDATA[Refog Key Logger Mac My wife and I needed a way to spy on monitor her teenage daughter. I experimented with a few key logging solutions for the mac, but none were as elegant as Refog. It only took me a few minutes to setup, and once it was up and running, I never had [...]
Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/archiver-simple-powerful-archiving-for-mac-osx/' rel='bookmark' title='Archiver &#8211; Simple, Powerful Archiving for Mac OSX'>Archiver &#8211; Simple, Powerful Archiving for Mac OSX</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">Refog</h3>
<h3 class="reviewSubhead">Key Logger Mac</h3>
</div>
<div class="appImageSlice">
<a href="http://www.refog.com/"><img class="colorbox-3468"  src="http://www.nightlion.net/wp-content/uploads/2011/08/refog.png" alt="Refog" title="refog.png" border="0" width="600" height="250" /></a>
</div>
<p>My wife and I needed a way to spy on monitor her teenage daughter. I experimented with a few key logging solutions for the mac, but none were as elegant as <a href="http://www.refog.com/">Refog</a>. It only took me a few minutes to setup, and once it was up and running, I never had to go back and mess with any of the settings. Overall, the capabilities of <a href="http://www.refog.com/">Refog</a> are awesome. </p>
<ul>
<li>Invisibility mode can easily be toggled with a user defined hot key</li>
<li>All applications were logged, including passwords</li>
<li>Distinctions for which application was being logged and at what time (e.g. chat, Facebook, etc)</li>
<li>Screenshot capturing</li>
<li>Website history</li>
<li>Application history</li>
</ul>
<p>Once the logs were captured, I could easily log in from a remote machine and grab the logs. Alternatively, there is an email delivery system which automatically emails you a copy of the logs. </p>
<p>There&#8217;s not much more to say about it. If you need a key logging solution, I would look no further than Refog. </p>
<p>Price: $39.95 | Trial? Yes | <a href="http://www.refog.com/">Homepage</a></a> </p>
</div>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/archiver-simple-powerful-archiving-for-mac-osx/' rel='bookmark' title='Archiver &#8211; Simple, Powerful Archiving for Mac OSX'>Archiver &#8211; Simple, Powerful Archiving for Mac OSX</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/reviews/2011/refog-a-powerful-keylogger-for-mac-osx/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; Passing the G2700 ISO 27001/27002 certification: What Materials you will need for the Exam.</title>
		<link>http://www.nightlion.net/guides/2011/passing-the-g2700-iso-2700127002-certification-what-materials-you-will-need-for-the-exam/</link>
		<comments>http://www.nightlion.net/guides/2011/passing-the-g2700-iso-2700127002-certification-what-materials-you-will-need-for-the-exam/#comments</comments>
		<pubDate>Mon, 29 Aug 2011 00:31:39 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[Guides]]></category>
		<category><![CDATA[27001]]></category>
		<category><![CDATA[27002]]></category>
		<category><![CDATA[access control]]></category>
		<category><![CDATA[exam questions]]></category>
		<category><![CDATA[g2700]]></category>
		<category><![CDATA[governance]]></category>
		<category><![CDATA[implementation guide]]></category>
		<category><![CDATA[ipsec]]></category>
		<category><![CDATA[iso]]></category>
		<category><![CDATA[iso 27001]]></category>
		<category><![CDATA[iso 27002]]></category>
		<category><![CDATA[management risk]]></category>
		<category><![CDATA[plain english]]></category>
		<category><![CDATA[policy objectives]]></category>
		<category><![CDATA[practice tests]]></category>
		<category><![CDATA[principles of information security]]></category>
		<category><![CDATA[risk management framework]]></category>
		<category><![CDATA[security handbook]]></category>
		<category><![CDATA[security policy development]]></category>
		<category><![CDATA[security risk analysis]]></category>
		<category><![CDATA[smart policy]]></category>
		<category><![CDATA[standard iso]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3460</guid>
		<description><![CDATA[This guide will provide a set of links and terms to help you gather the correct information needed to pass the G2700 ISO 27001 certification exam.
Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/create-a-printable-document-index-with-pdf-index-generator/' rel='bookmark' title='Create a Printable Document Index with PDF Index Generator'>Create a Printable Document Index with PDF Index Generator</a></li>
<li><a href='http://www.nightlion.net/guides/2011/hippa-compliance-checklist-2011/' rel='bookmark' title='HIPPA Compliance Checklist 2011'>HIPPA Compliance Checklist 2011</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/prep-for-the-ceh-v7-exam-tune-your-web-hacking-skills-with-these-live-hackable-simulation-environments/' rel='bookmark' title='Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments'>Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>The G2700 exam crams a lot of different security based information into one exam. Even though it&#8217;s an open book exam, if you don&#8217;t already know the information, or don&#8217;t have a fast way to find it, you won&#8217;t pass the exam.</p>
<p>This will be a two part article. The first, being a set of links and guides to gather the information necessary to pass the G2700 ISO 27001 certification exam. The second, will be how to create a printed index of your collected material, so you can quickly find the information you need during the exam.</p>
<p>After a bit of research, I was able to compile a set of material to material to bring to the exam. Here&#8217;s what you need to look for.</p>
<ul>
<li>ISO27k SOA Sample</li>
<li>ISO 27001 Standard</li>
<li>ISO 27001 Controls</li>
<li>ISO 27001 Implementation Guide</li>
<li>Policies Guidelines Standards and Procedures</li>
<li>Principles of Information Security</li>
<li>Detailed info on the PDCA method</li>
<li>Smart Policy Objectives</li>
<li>IT Governance &#8211; Chapter 5</li>
<li>IT Security Handbook &#8211; Chapter 41</li>
<li>How to Achieve ISO 27001 &#8211; Chapter 4</li>
<li>ISMS Steps with ISO Controls</li>
<li>ISMS Implementation guide</li>
<li>12 principles of Risk Management</li>
<li>Risk Treatment Plans</li>
<li>Access Control</li>
<li>IPSec Overview</li>
<li>Writing an Information Security Policy</li>
<li>Measuring the Effectiveness of Security using ISO 27001</li>
<li>Risk Management Framework Steps</li>
<li>Security Risk Analysis and Management</li>
<li>ISO 27001 &#8211; ISMS Requirements</li>
<li>ISO 27001 and ISO 27002 Information Security Definitions</li>
<li>Risk Management &#8211; ISO 27005</li>
<li>ISO 27001 implementation checklist</li>
<li>ISO27002 code of practice</li>
<li>Measuring the Effectiveness of Security using ISO 27001</li>
<li>ISO Responsibilities</li>
<li>FMECA</li>
<li>BCM &#8211; BS 25999 </li>
<li>Organization of information security</li>
<li>Fundamentals of Information Systems Security</li>
<li>CRAMM</li>
<li>Four key benefits of ISO 27001 implementation</li>
<li>Information Security Policy Development Guide for Large and Small Companies</li>
<li>Tackling ISO 27001 &#8211; A Project to build an ISMS</li>
<li>The Sans G2700 practice exam (copy and paste from your practice tests)</li>
<li>uCertify study guide and exam questions</li>
</ul>
<p>&nbsp;</p>
<p><strong>Here are some great resources to start out with: </strong></p>
<p><a href="http://www.iso27001security.com/">ISO 27001 Security </a></p>
<p><a href="http://www.praxiom.com/iso-27001.htm">ISO 27001 Information Security Standard in Plain English</a></p>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/create-a-printable-document-index-with-pdf-index-generator/' rel='bookmark' title='Create a Printable Document Index with PDF Index Generator'>Create a Printable Document Index with PDF Index Generator</a></li>
<li><a href='http://www.nightlion.net/guides/2011/hippa-compliance-checklist-2011/' rel='bookmark' title='HIPPA Compliance Checklist 2011'>HIPPA Compliance Checklist 2011</a></li>
<li><a href='http://www.nightlion.net/hacking/2011/prep-for-the-ceh-v7-exam-tune-your-web-hacking-skills-with-these-live-hackable-simulation-environments/' rel='bookmark' title='Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments'>Prep for the CEH v7 exam: Tune your Web Hacking Skills with these Live Hackable Simulation Environments</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/guides/2011/passing-the-g2700-iso-2700127002-certification-what-materials-you-will-need-for-the-exam/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title><![CDATA[US Debt VIsualization &#8211; Banned from Facebook!]]></title>
		<link><![CDATA[http://usdebt.kleptocracy.us/]]></link>
		<comments>http://www.nightlion.net/news/2011/us-debt-visualization-banned-from-facebook/#comments</comments>
		<pubDate>Fri, 19 Aug 2011 20:13:42 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[News]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3452</guid>
		<description><![CDATA[This is a great visual representation of the US Debt, visually represented in the stacking of $100 bills. What's even more interesting, is the fact that the direct link to this site is no longer allowed on Facebook…<p><a href="http://www.nightlion.net/news/2011/us-debt-visualization-banned-from-facebook/" rel="bookmark" title="Permanent link to 'US Debt VIsualization &#8211; Banned from Facebook!'" class="glyph">&#9733;</a></p>

Related posts:<ol>
<li><a href='http://www.nightlion.net/hacking/2010/how-to-mass-export-all-of-your-facebook-friends%e2%80%99-private-email-addresses/' rel='bookmark' title='How To Mass Export All Of Your Facebook Friends’ Private Email Addresses'>How To Mass Export All Of Your Facebook Friends’ Private Email Addresses</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>This is a great visual representation of the US Debt, visually represented in the stacking of $100 bills. What&#8217;s even more interesting, is the fact that the direct link to this site is no longer allowed on Facebook…  </p>
<p><a href="http://usdebt.kleptocracy.us/">http://usdebt.kleptocracy.us/</a></p>
<p><a href="http://www.nightlion.net/news/2011/us-debt-visualization-banned-from-facebook/" rel="bookmark" title="Permanent link to 'US Debt VIsualization &#8211; Banned from Facebook!'" class="glyph">&#9733;</a></p>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/hacking/2010/how-to-mass-export-all-of-your-facebook-friends%e2%80%99-private-email-addresses/' rel='bookmark' title='How To Mass Export All Of Your Facebook Friends’ Private Email Addresses'>How To Mass Export All Of Your Facebook Friends’ Private Email Addresses</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/news/2011/us-debt-visualization-banned-from-facebook/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; Linkinus &#8211; Extraordinarily awesome IRC client for Mac</title>
		<link>http://www.nightlion.net/reviews/osx/2011/linkinus-irc-client-for-mac/</link>
		<comments>http://www.nightlion.net/reviews/osx/2011/linkinus-irc-client-for-mac/#comments</comments>
		<pubDate>Tue, 09 Aug 2011 21:12:03 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[OSX]]></category>
		<category><![CDATA[Reviews]]></category>
		<category><![CDATA[eefnet]]></category>
		<category><![CDATA[irc]]></category>
		<category><![CDATA[irc client]]></category>
		<category><![CDATA[irc users]]></category>
		<category><![CDATA[mac irc clients]]></category>
		<category><![CDATA[server settings]]></category>
		<category><![CDATA[sidebar]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3443</guid>
		<description><![CDATA[Linkinus IRC Client Conceited Software’s Linkinus is the be-all end-all for Mac IRC clients. I realize that&#8217;s a fairly strong statement to make, but it&#8217;s well deserved. Linkinus is easy enough for new-IRC users to grasp, and powerful enough for veteran IRC users to maximize. A common trend of the apps I like to review, [...]
Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/cornerstone-svn-ultra-subversion-client-for-mac-osx/' rel='bookmark' title='Cornerstone SVN &#8211; The Ultimate Subversion Client for Mac OSX'>Cornerstone SVN &#8211; The Ultimate Subversion Client for Mac OSX</a></li>
<li><a href='http://www.nightlion.net/guides/2011/create-vanity-name-servers-with-godaddy-ns1-ns2-and-use-your-custom-dns-with-external-client-domains/' rel='bookmark' title='Create vanity name servers with Godaddy (ns1, ns2) and use your custom DNS with external client domains'>Create vanity name servers with Godaddy (ns1, ns2) and use your custom DNS with external client domains</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">Linkinus</h3>
<h3 class="reviewSubhead">IRC Client</h3>
</div>
<div class="appImageSlice">
<img class="colorbox-3443"  src="http://www.nightlion.net/wp-content/uploads/2011/08/linkinus.png" alt="Linkinus" title="linkinus.png" border="0" width="600" height="250" />
</div>
<p>Conceited Software’s Linkinus is the be-all end-all for Mac IRC clients. I realize that&#8217;s a fairly strong statement to make, but it&#8217;s well deserved. Linkinus is easy enough for new-IRC users to grasp, and powerful enough for veteran IRC users to maximize. A common trend of the apps I like to review, Linkinus has an extremely clean and un-cluttered user interface; an accomplishment for an IRC client. Linkinus also boasts some pretty powerful features including: </p>
<ul>
<li>Smart Highlighting</li>
<li>Embedable Media</li>
<li>Applescript Support</li>
<li>Ident Manager</li>
<li>Custom Themes</li>
<li>Custom Channel and Server settings</li>
</ul>
<p>Another note of praise is the fact that you can customize server and channel settings just by clicking on the name (in the sidebar). You can add things like custom join commands, ident switching, and specific word highlighting for traffic monitoring.  </p>
<p>I don&#8217;t say this often, but I have to admit that Conceited Software has really thought of everything on this one. I can&#8217;t think of a single feature I would add. With that being said, if you plan on using IRC on your Mac, look no further than Linkinus. At $9.99, it&#8217;s a steal. </p>
<p><strong>Ease of Use</strong>: 10 <br />
<strong>Look and Feel</strong>: 10 <br />
<strong>Functionality</strong>: 10</p>
<p><strong>Overall Rating:</strong> 10 </p>
<p>Price: $9.99 | Trial? Yes | <a href="http://www.conceitedsoftware.com/linkinus">Homepage</a> | <a href="http://itunes.apple.com/br/app/linkinus/id402390998">App Store Link</a> </p>
<p><img class="colorbox-3443"  src="http://www.nightlion.net/wp-content/uploads/2011/08/linkinus_screenshot_irc.png" alt="Linkinus screenshot irc" title="linkinus_screenshot_irc.png" border="0" width="600" height="369" /></p>
</div>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2011/cornerstone-svn-ultra-subversion-client-for-mac-osx/' rel='bookmark' title='Cornerstone SVN &#8211; The Ultimate Subversion Client for Mac OSX'>Cornerstone SVN &#8211; The Ultimate Subversion Client for Mac OSX</a></li>
<li><a href='http://www.nightlion.net/guides/2011/create-vanity-name-servers-with-godaddy-ns1-ns2-and-use-your-custom-dns-with-external-client-domains/' rel='bookmark' title='Create vanity name servers with Godaddy (ns1, ns2) and use your custom DNS with external client domains'>Create vanity name servers with Godaddy (ns1, ns2) and use your custom DNS with external client domains</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/reviews/osx/2011/linkinus-irc-client-for-mac/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#9733; The Hit List for Mac and iPhone &#8211; An objective review from an Omnifocus power user</title>
		<link>http://www.nightlion.net/reviews/osx/2011/the-hit-list-for-mac-and-iphone-an-objective-review-from-an-omnifocus-power-user/</link>
		<comments>http://www.nightlion.net/reviews/osx/2011/the-hit-list-for-mac-and-iphone-an-objective-review-from-an-omnifocus-power-user/#comments</comments>
		<pubDate>Fri, 05 Aug 2011 18:02:03 +0000</pubDate>
		<dc:creator>NightLion</dc:creator>
				<category><![CDATA[iOS]]></category>
		<category><![CDATA[OSX]]></category>
		<category><![CDATA[Reviews]]></category>
		<category><![CDATA[context]]></category>
		<category><![CDATA[get things done]]></category>
		<category><![CDATA[gtd]]></category>
		<category><![CDATA[interface]]></category>
		<category><![CDATA[iphone]]></category>
		<category><![CDATA[mac]]></category>
		<category><![CDATA[omnifocus]]></category>
		<category><![CDATA[OTA]]></category>
		<category><![CDATA[over the air]]></category>
		<category><![CDATA[sync]]></category>
		<category><![CDATA[task list]]></category>
		<category><![CDATA[task manager]]></category>
		<category><![CDATA[tasks]]></category>

		<guid isPermaLink="false">http://www.nightlion.net/?p=3408</guid>
		<description><![CDATA[The Hit List is very powerfultask list that is dead simple to use; it&#8217;s as easy as Wunderlist, and considerably more powerful. While I still continue to use Omnifocus, my wife has made the switch to The Hit List. It&#8217;s perfectly suited for her needs without giving her the feeling of being overly complex and [...]
Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2010/iphone-explorer-free-software-to-use-your-iphone-as-a-usb-flash-drive/' rel='bookmark' title='iPhone Explorer &#8211; Free software to use your iPhone as a usb flash drive'>iPhone Explorer &#8211; Free software to use your iPhone as a usb flash drive</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/mass-email-marketing-and-mailing-list-manager-for-osx-with-maxbulk-mailer/' rel='bookmark' title='Mass Email Marketing and Mailing List Manager for OSX with MaxBulk Mailer'>Mass Email Marketing and Mailing List Manager for OSX with MaxBulk Mailer</a></li>
<li><a href='http://www.nightlion.net/reviews/ios/2011/fitness-hd-health-diet-exercise-and-nutrition-tracker-for-ipad-and-iphone/' rel='bookmark' title='FItness HD &#8211; Health, Diet, Exercise, and Nutrition Tracker for iPad and iPhone'>FItness HD &#8211; Health, Diet, Exercise, and Nutrition Tracker for iPad and iPhone</a></li>
</ol>]]></description>
			<content:encoded><![CDATA[<p>The Hit List is very powerfultask list that is dead simple to use; it&#8217;s as easy as Wunderlist, and considerably more powerful. While I still continue to use Omnifocus, my wife has made the switch to The Hit List. It&#8217;s perfectly suited for her needs without giving her the feeling of being overly complex and overbearing. There are a few features that I would still like to see before making a switch, but I am probably in a special class of tech users. I actually think that The Hit List would be a perfect solution for most people.</p>
<p>The wait for an updated desktop and iPhone app of the Hit List has been long overdue, and I think it was worth the wait. The Hit List&#8217;s sync is blazing fast and extremely reliable. It&#8217;s a great solution. Interestingly enough, if it wasn&#8217;t for Cultured Code&#8217;s lack of OTA sync for Things, I probably would never have switched away from it. I guess this is a true tale of the Tortoise and the Hare.</p>
<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">The Hit List for Mac</h3>
<h3 class="reviewSubhead">Simple, Powerful Task Manager with OTA Sync</h3>
</div>
<div class="appImageSlice"><a href="http://itunes.apple.com/us/app/the-hit-list/id432764806?mt=12&amp;ls=1"><img class="colorbox-3408"  src="http://www.nightlion.net/wp-content/uploads/2011/08/the_hit_list_logo.png" alt="The hit list logo" title="the_hit_list_logo.png" border="0" width="600" height="250" /></a></div>
<p>The Hit List is very powerfultask list that is dead simple to use; it&#8217;s as easy as Wunderlist, and considerably more powerful. While I still continue to use Omnifocus, my wife has made the switch to The Hit List. It&#8217;s perfectly suited for her needs without giving her the feeling of being overly complex and overbearing. There are a few features that I would still like to see before making a switch, but I am probably in a special class of tech users. I actually think that The Hit List would be a perfect solution for most people.</p>
<p>The wait for an updated desktop and iPhone app of the Hit List has been long overdue, and I think it was worth the wait. The Hit List&#8217;s sync is blazing fast and extremely reliable. It&#8217;s a great solution. Interestingly enough, if it wasn&#8217;t for Cultured Code&#8217;s lack of OTA sync for Things, I probably would never have switched away from it. I guess this is a true tale of the Tortoise and the Hare.</p>
<ul>
<li>Clean interface; Does not seem overwhelming</li>
<li>Very well organized.</li>
<li>Entering tasks is fast and the keyboard shortcuts give it a very fluid feel</li>
<li>Switching between list and context mode is very nice and well thought out.</li>
<li>Printing looks as great on paper as it does on screen. This was a very big deal for my wife who likes to take paper with her.</li>
<li>The Hit List also syncs with iCAL! This hasn&#8217;t worked for Omnifocus for quite some time. It&#8217;s a feature that I really miss.</li>
<li>Over-the-air sync is lightning fast.</li>
</ul>
<p>Again, the entire process is very simple and streamlined. The whole thing is incredibly well done.</p>
<p><strong>Suggestions / Wish list</strong></p>
<ul>
<li>The Repeating tasks feature is hard to find. I had written a portion of this article on the lack of repeating tasks before I found out that The Hit List actually supported it. I would consider adding a &#8216;Repeat&#8217; button in the taskbar.</li>
<li>Project Start / Due dates. I would like to be able to set a start or due date for an entire task list, rather than having to assign it to each task.</li>
<li>Predictive tag/context feature can be confusing to someone who doesn&#8217;t understand what is going on. I would consider turning that off by default.</li>
<li>There should be a way to define a default list for contexts or tags (e.g. Tasks in my Walgreens and Target contexts always fall under my &#8216;Shopping&#8217; list)</li>
<li>Today shows tasks in the &#8220;next three days&#8221;. This is kind of confusing and annoying. The today view should only show you tasks that are due today. Upcoming should show you what&#8217;s coming next.</li>
<li>Add a Time field to the start and due options. This is useful for keeping appointments, or scheduling a task at a particular point in the day (e.g, &#8216;Take out Trash&#8217;)</li>
<li>Add the ability to enter multiple tasks in the Quick Entry window. Hit enter to cycle to the next task, or Esc when done entering tasks.</li>
<li>Setting to hide tasks that have not started (or will not start for x amount of days). For example, I have a Bills list, which contain a list of monthly repeating bills that need to be paid. There should be an active filter to not show items which have not yet started. Seeing every bill in the list becomes confusing.</li>
</ul>
<p><strong>Ease of Use</strong>: 9</p>
<p><strong>Look and Feel</strong>: 10</p>
<p><strong>Functionality</strong>: 7</p>
<p><strong>Overall Rating:</strong> 8.5/10</p>
<p>Price: $49.95 | Trial? Yes | <a href="http://www.potionfactory.com/thehitlist/">Homepage</a> | <a href="http://itunes.apple.com/us/app/the-hit-list/id432764806?mt=12&amp;ls=1">App Store Link</a></p>
</div>
<div class="reviewContainer">
<div class="reviewTitleArea">
<h3 class="reviewHead">The Hit List for iPhone</h3>
<h3 class="reviewSubhead"></h3>
</div>
<div class="appImageSlice">
<a href="http://itunes.apple.com/us/app/the-hit-list/id430219336?mt=8&amp;ls=1"><img class="colorbox-3408"  src="http://www.nightlion.net/wp-content/uploads/2011/08/the_hit_list_iphone.png" alt="The hit list iphone" title="the_hit_list_iphone.png" border="0" width="700" height="291" /></a>
</div>
<p>The iPhone app was definitely worth the wait. It&#8217;s not as full featured as I would like, but again, for someone like my wife, it&#8217;s perfect. However, considering this is the first release of the app, I understand that it&#8217;s just a starting point. Overall, it is very well laid out and extremely easy to use. The only downside that I&#8217;ve found is that it seems to be extremely buggy; the app crashes quite a bit for me. </p>
<ul>
<li><strong>The rapid entry feature is by far my favorite feature of the iPhone app.</strong> All other GTD companies should take not of this feature as I consider it to be ground-breaking and simple.</li>
<li>The interface is very well designed and streamlined.</li>
<li>The batch moving feature is very useful.</li>
</ul>
<p><strong>Suggestions / Wish List</strong></p>
<ul>
<li>Push Notifications for due tasks.</li>
<li>Ability to reduce the font size of tasks of the tasks lists and folders. The size 16 font is a bit large. I would probably drop the icon size, too.</li>
<li>When looking at a task, you should be able to click a field to edit it, rather than clicking edit, then the field name</li>
<li>An iPad app</li>
<li>Buggy</li>
</ul>
<p>Overall, The Hit List is a great app which, depending on your specific needs, you should definitely consider.</p>
<p><strong>Ease of Use</strong>: 9</p>
<p><strong>Look and Feel</strong>: 8</p>
<p><strong>Functionality</strong>: 6</p>
<p><strong>Overall Rating:</strong> 7/10</p>
<p>Price: $9.99 | Trial? Yes | <a href="http://www.potionfactory.com/thehitlist/iphone/">Homepage</a> | <a href="http://itunes.apple.com/us/app/the-hit-list/id430219336?mt=8&amp;ls=1">App Store Link</a></p>
</div>
<p>Related posts:<ol>
<li><a href='http://www.nightlion.net/reviews/osx/2010/iphone-explorer-free-software-to-use-your-iphone-as-a-usb-flash-drive/' rel='bookmark' title='iPhone Explorer &#8211; Free software to use your iPhone as a usb flash drive'>iPhone Explorer &#8211; Free software to use your iPhone as a usb flash drive</a></li>
<li><a href='http://www.nightlion.net/reviews/osx/2011/mass-email-marketing-and-mailing-list-manager-for-osx-with-maxbulk-mailer/' rel='bookmark' title='Mass Email Marketing and Mailing List Manager for OSX with MaxBulk Mailer'>Mass Email Marketing and Mailing List Manager for OSX with MaxBulk Mailer</a></li>
<li><a href='http://www.nightlion.net/reviews/ios/2011/fitness-hd-health-diet-exercise-and-nutrition-tracker-for-ipad-and-iphone/' rel='bookmark' title='FItness HD &#8211; Health, Diet, Exercise, and Nutrition Tracker for iPad and iPhone'>FItness HD &#8211; Health, Diet, Exercise, and Nutrition Tracker for iPad and iPhone</a></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://www.nightlion.net/reviews/osx/2011/the-hit-list-for-mac-and-iphone-an-objective-review-from-an-omnifocus-power-user/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

