<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:creativeCommons="http://backend.userland.com/creativeCommonsRssModule" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>InfoSecPodcast.com</title>
	
	<link>http://www.infosecpodcast.com</link>
	<description>Information Security related news, opinions and ramblings</description>
	<lastBuildDate>Sun, 27 Dec 2009 18:01:32 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/Wwwinfosecpodcastcom" /><feedburner:info uri="wwwinfosecpodcastcom" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><geo:lat>43.045076</geo:lat><geo:long>-71.070957</geo:long><creativeCommons:license>http://creativecommons.org/licenses/by-nc-sa/2.0/</creativeCommons:license><image><link>http://www.infosecpodcast.com</link><url>http://www.infosecpodcast.com/images/pod_feed_logo.gif</url><title>InfoSecPodcast.com</title></image><feedburner:feedFlare href="http://add.my.yahoo.com/rss?url=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://us.i1.yimg.com/us.yimg.com/i/us/my/addtomyyahoo4.gif">Subscribe with My Yahoo!</feedburner:feedFlare><feedburner:feedFlare href="http://www.newsgator.com/ngs/subscriber/subext.aspx?url=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://www.newsgator.com/images/ngsub1.gif">Subscribe with NewsGator</feedburner:feedFlare><feedburner:feedFlare href="http://feeds.my.aol.com/add.jsp?url=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://o.aolcdn.com/favorites.my.aol.com/webmaster/ffclient/webroot/locale/en-US/images/myAOLButtonSmall.gif">Subscribe with My AOL</feedburner:feedFlare><feedburner:feedFlare href="http://www.bloglines.com/sub/http://feeds.feedburner.com/Wwwinfosecpodcastcom" src="http://www.bloglines.com/images/sub_modern11.gif">Subscribe with Bloglines</feedburner:feedFlare><feedburner:feedFlare href="http://www.netvibes.com/subscribe.php?url=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://www.netvibes.com/img/add2netvibes.gif">Subscribe with Netvibes</feedburner:feedFlare><feedburner:feedFlare href="http://fusion.google.com/add?feedurl=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://buttons.googlesyndication.com/fusion/add.gif">Subscribe with Google</feedburner:feedFlare><feedburner:feedFlare href="http://www.pageflakes.com/subscribe.aspx?url=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://www.pageflakes.com/ImageFile.ashx?instanceId=Static_4&amp;fileName=ATP_blu_91x17.gif">Subscribe with Pageflakes</feedburner:feedFlare><feedburner:feedFlare href="http://www.plusmo.com/add?url=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://plusmo.com/res/graphics/fbplusmo.gif">Subscribe with Plusmo</feedburner:feedFlare><feedburner:feedFlare href="http://my.feedlounge.com/external/subscribe?url=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://static.feedlounge.com/buttons/subscribe_0.gif">Subscribe with FeedLounge</feedburner:feedFlare><feedburner:feedFlare href="http://www.thefreedictionary.com/_/hp/AddRSS.aspx?http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://img.tfd.com/hp/addToTheFreeDictionary.gif">Subscribe with The Free Dictionary</feedburner:feedFlare><feedburner:feedFlare href="http://www.bitty.com/manual/?contenttype=rssfeed&amp;contentvalue=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://www.bitty.com/img/bittychicklet_91x17.gif">Subscribe with Bitty Browser</feedburner:feedFlare><feedburner:feedFlare href="http://www.newsalloy.com/?rss=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://www.newsalloy.com/subrss3.gif">Subscribe with NewsAlloy</feedburner:feedFlare><feedburner:feedFlare href="http://www.live.com/?add=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://tkfiles.storage.msn.com/x1piYkpqHC_35nIp1gLE68-wvzLZO8iXl_JMledmJQXP-XTBOLfmQv4zhj4MhcWEJh_GtoBIiAl1Mjh-ndp9k47If7hTaFno0mxW9_i3p_5qQw">Subscribe with Live.com</feedburner:feedFlare><feedburner:feedFlare href="http://mix.excite.eu/add?feedurl=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://image.excite.co.uk/mix/addtomix.gif">Subscribe with Excite MIX</feedburner:feedFlare><feedburner:feedFlare href="http://www.yourminis.com/subscribe.aspx?u=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://www.yourminis.com/images/addtoyourminisbadge.gif">Subscribe with Yourminis.com</feedburner:feedFlare><feedburner:feedFlare href="http://download.attensa.com/app/get_attensa.html?feedurl=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://www.attensa.com/blogs/attensa/WindowsLiveWriter/BadgeredintoBadges_10C02/attensa_feed_button5.gif">Subscribe with Attensa for Outlook</feedburner:feedFlare><feedburner:feedFlare href="http://www.webwag.com/wwgthis.php?url=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://www.webwag.com/images/wwgthis.gif">Subscribe with Webwag</feedburner:feedFlare><feedburner:feedFlare href="http://hub.netomat.net/account/account.autoSubscribe.jspa?urls=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://www.netomat.net/blogger/images/icon_netomat_feedbutton.gif">Subscribe with netomat Hub</feedburner:feedFlare><feedburner:feedFlare href="http://www.dailyrotation.com/index.php?feed=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://www.dailyrotation.com/rss-dr2.gif">Subscribe with Daily Rotation</feedburner:feedFlare><feedburner:feedFlare href="http://www.flurry.com/pushRssFeed.do?r=fb&amp;url=http%3A%2F%2Ffeeds.feedburner.com%2FWwwinfosecpodcastcom" src="http://www.flurry.com/images/flurry_rss_logo2.gif">Subscribe with Flurry</feedburner:feedFlare><item>
		<title>How-to on securing PDF documents</title>
		<link>http://feedproxy.google.com/~r/Wwwinfosecpodcastcom/~3/-gf8PMEUV_s/</link>
		<comments>http://www.infosecpodcast.com/2009/12/how-to-on-securing-pdf-documents/#comments</comments>
		<pubDate>Sun, 27 Dec 2009 18:01:32 +0000</pubDate>
		<dc:creator>Chris Harrington</dc:creator>
				<category><![CDATA[Security]]></category>
<category /><category /><category />
		<guid isPermaLink="false">http://www.infosecpodcast.com/?p=205</guid>
		<description>A friend of mine pointed me to a good article on securing PDF documents. http://secforall.info/2009/06/29/securing-pdfs/ It&amp;#8217;s a good tutorial on how to password protect, digitally sign and certify PDF documents. Now if only we could have some intelligence in email clients (or maybe a setting in Acrobat Reader?) that would prohibit or at least strongly [...]</description>
			<content:encoded><![CDATA[<p>A friend of mine pointed me to a good article on securing PDF documents. <a href="http://secforall.info/2009/06/29/securing-pdfs/" target="_blank">http://secforall.info/2009/06/29/securing-pdfs/</a> It&#8217;s a good tutorial on how to password protect, digitally sign and certify PDF documents. Now if only we could have some intelligence in email clients (or maybe a setting in Acrobat Reader?) that would prohibit or at least strongly warn when a user tries to open an un-signed PDF. This would make my life much easier from a malware perspective&#8230;..I think.</p>
<div id="crp_related"><h2>Related Posts:</h2><ul><li><a href="http://www.infosecpodcast.com/2006/10/securing-microsoft-office/" rel="bookmark" class="crp_title">Securing Microsoft Office</a></li><li><a href="http://www.infosecpodcast.com/2007/02/nsas-guide-to-securing-routers/" rel="bookmark" class="crp_title">NSA's guide to securing routers</a></li><li><a href="http://www.infosecpodcast.com/2007/08/spammers-using-fdf-file-format/" rel="bookmark" class="crp_title">Spammers using FDF file format</a></li><li><a href="http://www.infosecpodcast.com/2007/07/reckless-blogging/" rel="bookmark" class="crp_title">Reckless Blogging</a></li><li><a href="http://www.infosecpodcast.com/2007/07/too-much-firewall/" rel="bookmark" class="crp_title">Too much firewall?</a></li><li>Powered by <a href="http://ajaydsouza.com/wordpress/plugins/contextual-related-posts/">Contextual Related Posts</a></li></ul></div><img src="http://www.infosecpodcast.com/?ak_action=api_record_view&id=205&type=feed" alt="" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=-gf8PMEUV_s:I66WR7yfL30:ACf-c_HutVc"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?d=ACf-c_HutVc" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=-gf8PMEUV_s:I66WR7yfL30:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=-gf8PMEUV_s:I66WR7yfL30:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=-gf8PMEUV_s:I66WR7yfL30:2mJPEYqXBVI"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?d=2mJPEYqXBVI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=-gf8PMEUV_s:I66WR7yfL30:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?i=-gf8PMEUV_s:I66WR7yfL30:V_sGLiPBpWU" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Wwwinfosecpodcastcom/~4/-gf8PMEUV_s" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecpodcast.com/2009/12/how-to-on-securing-pdf-documents/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecpodcast.com/2009/12/how-to-on-securing-pdf-documents/</feedburner:origLink></item>
		<item>
		<title>Updating my feed location…thanks Google</title>
		<link>http://feedproxy.google.com/~r/Wwwinfosecpodcastcom/~3/I6T17nB1LVQ/</link>
		<comments>http://www.infosecpodcast.com/2009/06/updating-my-feed-locationthanks-google/#comments</comments>
		<pubDate>Thu, 04 Jun 2009 21:06:28 +0000</pubDate>
		<dc:creator>Chris Harrington</dc:creator>
				<category><![CDATA[Administrative]]></category>

		<guid isPermaLink="false">http://www.infosecpodcast.com/?p=201</guid>
		<description>Well thanks to a borked Feedburner to Google transfer I need to update my feed location.  The current feed feeds.feedburner.com/wwwInfosecpodcastcom will be moved to feeds2.feedburner.com/infosecpodcastcom one week from today, 6/11/09.
&amp;#8211;Chris
Technorati Tags:  Feedburner,  Google Sucks 
Related Posts:Savant Protection supports Google AndroidURL Obfuscation ExamplesGoogle acquires Postini for $625 millionDanger from RSSGoogle exposing IP camerasPowered by [...]</description>
			<content:encoded><![CDATA[<p>Well thanks to a borked Feedburner to Google transfer I need to update my feed location.  The current feed <a href="http://feeds.feedburner.com/wwwInfosecpodcastcom" title="http://feeds.feedburner.com/wwwInfosecpodcastcom" target="_blank">feeds.feedburner.com/wwwInfosecpodcastcom</a> will be moved to <a href="http://feeds2.feedburner.com/infosecpodcastcom" title="http://feeds2.feedburner.com/infosecpodcastcom" target="_blank">feeds2.feedburner.com/infosecpodcastcom</a> one week from today, 6/11/09.</p>
<p>&#8211;Chris</p>
<p>Technorati Tags: <a href="http://technorati.com/tag/Feedburner" rel="tag"> Feedburner</a>, <a href="http://technorati.com/tag/Google+Sucks" rel="tag"> Google Sucks </a></p>
<div id="crp_related"><h2>Related Posts:</h2><ul><li><a href="http://www.infosecpodcast.com/2008/03/savant-protection-supports-google-android/" rel="bookmark" class="crp_title">Savant Protection supports Google Android</a></li><li><a href="http://www.infosecpodcast.com/2006/11/url-obfuscation-examples/" rel="bookmark" class="crp_title">URL Obfuscation Examples</a></li><li><a href="http://www.infosecpodcast.com/2007/07/google-acquires-postini-for-625-million/" rel="bookmark" class="crp_title">Google acquires Postini for $625 million</a></li><li><a href="http://www.infosecpodcast.com/2006/09/danger-from-rss/" rel="bookmark" class="crp_title">Danger from RSS</a></li><li><a href="http://www.infosecpodcast.com/2006/09/google-exposing-ip-cameras/" rel="bookmark" class="crp_title">Google exposing IP cameras</a></li><li>Powered by <a href="http://ajaydsouza.com/wordpress/plugins/contextual-related-posts/">Contextual Related Posts</a></li></ul></div><img src="http://www.infosecpodcast.com/?ak_action=api_record_view&id=201&type=feed" alt="" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=I6T17nB1LVQ:VSi6IyY3hP0:ACf-c_HutVc"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?d=ACf-c_HutVc" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=I6T17nB1LVQ:VSi6IyY3hP0:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=I6T17nB1LVQ:VSi6IyY3hP0:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=I6T17nB1LVQ:VSi6IyY3hP0:2mJPEYqXBVI"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?d=2mJPEYqXBVI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=I6T17nB1LVQ:VSi6IyY3hP0:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?i=I6T17nB1LVQ:VSi6IyY3hP0:V_sGLiPBpWU" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Wwwinfosecpodcastcom/~4/I6T17nB1LVQ" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecpodcast.com/2009/06/updating-my-feed-locationthanks-google/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecpodcast.com/2009/06/updating-my-feed-locationthanks-google/</feedburner:origLink></item>
		<item>
		<title>Most dangerous keywords to search for</title>
		<link>http://feedproxy.google.com/~r/Wwwinfosecpodcastcom/~3/omeSDP_z8Es/</link>
		<comments>http://www.infosecpodcast.com/2009/06/most-dangerous-keywords-to-search-for/#comments</comments>
		<pubDate>Thu, 04 Jun 2009 20:46:00 +0000</pubDate>
		<dc:creator>Chris Harrington</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.infosecpodcast.com/?p=198</guid>
		<description>Dancho Danchev posted on the release of a McAfee report that analyzes what keywords are the most dangerous in terms of the search results linking to malware.
&amp;#8220;Upon searching for 2,658 unique popular keywords and phrases across 413,368 unique URLs, McAfee&amp;#8217;s research concludes that lyrics and anything that includes &amp;#8216;free&amp;#8221; has the highest risk percentage of [...]</description>
			<content:encoded><![CDATA[<p><a href="http://://blogs.zdnet.com/security/?p=3457" target="_blank">Dancho Danchev posted</a> on the release of a <a href="http://us.mcafee.com/en-us/local/docs/most_dangerous_searchterm_us.pdf" target="_blank">McAfee report</a> that analyzes what keywords are the most dangerous in terms of the search results linking to malware.</p>
<p>&#8220;Upon searching for 2,658 unique popular keywords and phrases across 413,368 unique URLs, McAfee&#8217;s research concludes that lyrics and anything that includes &#8216;free&#8221; has the highest risk percentage of exposing users to malware and fraudulent web sites. The research further states that the category with the safest risk profile are health-related search terms.&#8221;</p>
<p>It&#8217;s an interesting read.</p>
<p>&#8211;Chris</p>
<p>Technorati Tags: <a href="http://technorati.com/tag/malware" rel="tag"> malware</a>, <a href="http://technorati.com/tag/search" rel="tag"> search</a>, <a href="http://technorati.com/tag/Dancho+Danchev" rel="tag"> Dancho Danchev</a>, <a href="http://technorati.com/tag/McAfee" rel="tag"> McAfee </a></p>
<div id="crp_related"><h2>Related Posts:</h2><ul><li><a href="http://www.infosecpodcast.com/2006/07/security-search-plugins-for-firefox/" rel="bookmark" class="crp_title">Security Search Plugins for Firefox</a></li><li><a href="http://www.infosecpodcast.com/2006/07/podcast-1-july-20-2006/" rel="bookmark" class="crp_title">Podcast #1, July 20, 2006</a></li><li><a href="http://www.infosecpodcast.com/2006/07/mcafee-blames-open-source-models-for-rise-in-bots/" rel="bookmark" class="crp_title">McAfee blames Open Source models for rise in 'Bots</a></li><li><a href="http://www.infosecpodcast.com/2006/09/trojan-that-uses-windows-efs/" rel="bookmark" class="crp_title">Trojan that uses Windows EFS</a></li><li><a href="http://www.infosecpodcast.com/2006/09/is-that-website-safe/" rel="bookmark" class="crp_title">Is that website safe?</a></li><li>Powered by <a href="http://ajaydsouza.com/wordpress/plugins/contextual-related-posts/">Contextual Related Posts</a></li></ul></div><img src="http://www.infosecpodcast.com/?ak_action=api_record_view&id=198&type=feed" alt="" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=omeSDP_z8Es:k4JHQ76C7Gk:ACf-c_HutVc"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?d=ACf-c_HutVc" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=omeSDP_z8Es:k4JHQ76C7Gk:yIl2AUoC8zA"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?d=yIl2AUoC8zA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=omeSDP_z8Es:k4JHQ76C7Gk:7Q72WNTAKBA"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?d=7Q72WNTAKBA" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=omeSDP_z8Es:k4JHQ76C7Gk:2mJPEYqXBVI"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?d=2mJPEYqXBVI" border="0"></img></a> <a href="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?a=omeSDP_z8Es:k4JHQ76C7Gk:V_sGLiPBpWU"><img src="http://feeds.feedburner.com/~ff/Wwwinfosecpodcastcom?i=omeSDP_z8Es:k4JHQ76C7Gk:V_sGLiPBpWU" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Wwwinfosecpodcastcom/~4/omeSDP_z8Es" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecpodcast.com/2009/06/most-dangerous-keywords-to-search-for/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecpodcast.com/2009/06/most-dangerous-keywords-to-search-for/</feedburner:origLink></item>
		<item>
		<title>MIT Lincoln Lab Network Security Software</title>
		<link>http://feedproxy.google.com/~r/Wwwinfosecpodcastcom/~3/XBOVJkJwVj4/</link>
		<comments>http://www.infosecpodcast.com/2009/02/mit-lincoln-lab-network-security-software/#comments</comments>
		<pubDate>Tue, 10 Feb 2009 19:08:05 +0000</pubDate>
		<dc:creator>Chris Harrington</dc:creator>
				<category><![CDATA[Security Tools]]></category>
		<category><![CDATA[MIT Lincoln Laboratory]]></category>
		<category><![CDATA[NetSPA]]></category>
		<category><![CDATA[Network Security]]></category>

		<guid isPermaLink="false">http://www.infosecpodcast.com/?p=193</guid>
		<description>MIT Lincoln Laboratory has developed a Network Security Analysis application known as NetSPA. In short, I am very impressed with this tool. NetSPA (Network Security Planning Architecture) correlates firewall rules / ACL&amp;#8217;s with vulnerability data such as Nessus output. This tool then visually plots attack paths through an interactive interface that lets you model different [...]</description>
			<content:encoded><![CDATA[<p>MIT Lincoln Laboratory has developed a Network Security Analysis application known as <a href="http://www.ll.mit.edu/publications/labnotes/pluggingtherightholes.html" target="_blank">NetSPA</a>. In short, I am very impressed with this tool. NetSPA (Network Security Planning Architecture) correlates firewall rules / ACL&#8217;s with vulnerability data such as Nessus output. This tool then visually plots attack paths through an interactive interface that lets you model different scenarios. It also allows administrators to prioritize which vulnerabilities should be fixed first. Rather than just relying on the severity of the vulnerability we reliably factor in attack vectors based on current network security rules. We (IT Security Ops team) have been working with the development team and helping to provide test data and general feedback. This tool is so impressive that we will be implementing it as part of our security change management process. We will be able to visualize what a firewall rule change will do to our security posture for example.</p>
<p>Having access to this type of technology and the research community is one of the many benefits of working at one of the finest research laboratories in the world.</p>
<p>&#8211;Chris</p>
<p>Technorati Tags: <a href="http://technorati.com/tag/MIT+Lincoln+Laboratory" rel="tag"> MIT Lincoln Laboratory</a>, <a href="http://technorati.com/tag/NetSPA" rel="tag"> NetSPA</a>, <a href="http://technorati.com/tag/Network+Security" rel="tag"> Network Security </a></p>
<div id="crp_related"><h2>Related Posts:</h2><ul><li><a href="http://www.infosecpodcast.com/2006/07/did-the-us-navy-patent-the-firewallnot-exactly/" rel="bookmark" class="crp_title">Did the U.S. Navy patent the firewall?....not exactly.</a></li><li><a href="http://www.infosecpodcast.com/2008/06/new-job-for-me/" rel="bookmark" class="crp_title">New job for me :)</a></li><li><a href="http://www.infosecpodcast.com/2008/11/3-infosec-positions-mit-lincoln-laboratory/" rel="bookmark" class="crp_title">3 open InfoSec positions at MIT Lincoln Laboratory</a></li><li><a href="http://www.infosecpodcast.com/2007/04/cobia-from-stillsecure/" rel="bookmark" class="crp_title">Cobia from StillSecure</a></li><li><a href="http://www.infosecpodcast.com/2006/08/free-scanner-for-rogue-wireless-access-points/" rel="bookmark" class="crp_title">Free scanner for rogue Wireless Access Points</a></li><li>Powered by <a href="http://ajaydsouza.com/wordpress/plugins/contextual-related-posts/">Contextual Related Posts</a></li></ul></div><img src="http://www.infosecpodcast.com/?ak_action=api_record_view&id=193&type=feed" alt="" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=DKJiV5Fb"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=253" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=NoYytlcz"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=41" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=8uyQMqMj"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=50" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=f8LUoxjB"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?i=f8LUoxjB" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Wwwinfosecpodcastcom/~4/XBOVJkJwVj4" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecpodcast.com/2009/02/mit-lincoln-lab-network-security-software/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecpodcast.com/2009/02/mit-lincoln-lab-network-security-software/</feedburner:origLink></item>
		<item>
		<title>3 open InfoSec positions at MIT Lincoln Laboratory</title>
		<link>http://feedproxy.google.com/~r/Wwwinfosecpodcastcom/~3/gw5WhAxr4JQ/</link>
		<comments>http://www.infosecpodcast.com/2008/11/3-infosec-positions-mit-lincoln-laboratory/#comments</comments>
		<pubDate>Tue, 11 Nov 2008 02:48:47 +0000</pubDate>
		<dc:creator>Chris Harrington</dc:creator>
				<category><![CDATA[Employment]]></category>
		<category><![CDATA[IDS]]></category>
		<category><![CDATA[IPS]]></category>
		<category><![CDATA[MIT Lincoln Laboratory]]></category>

		<guid isPermaLink="false">http://www.infosecpodcast.com/?p=188</guid>
		<description>We currently have 3 Information Security positions open at MIT Lincoln Laboratory. The first position is Information Technology Security Team Lead. It is position #914 on the Employment page. Rather than re-hashing all the details you can read about it there. The other 2 positions do not have job postings up yet. We need 2 [...]</description>
			<content:encoded><![CDATA[<p><a href="http://www.ll.mit.edu" target="_blank"><img class="alignnone size-medium wp-image-189" title="MIT LL" src="http://www.infosecpodcast.com/wp-content/uploads/logo_print-300x45.gif" alt="" width="300" height="45" /></a></p>
<p>We currently have 3 Information Security positions open at <a href="http://www.ll.mit.edu" target="_blank">MIT Lincoln Laboratory</a>. The first position is Information Technology Security Team Lead. It is position #914 on the <a href="http://www.ll.mit.edu/employment/jobs.html" target="_blank">Employment page</a>. Rather than re-hashing all the details you can read about it there. The other 2 positions do not have job postings up yet. We need 2 IDS / IPS analysts full time. Details of the positions should be posted soon.</p>
<p>All 3 positions are in Lexington, MA and will require the candidates to be able to obtain at least a SECRET level security clearance. If you or anybody you know may be interested please contact me at: chris.harrington AT <a href="http://ll.mit.edu" title="http://ll.mit.edu" target="_blank">ll.mit.edu</a></p>
<p>Thanks!</p>
<p>&#8211;Chris</p>
<div id="crp_related"><h2>Related Posts:</h2><ul><li><a href="http://www.infosecpodcast.com/2007/08/new-security-jobs-page/" rel="bookmark" class="crp_title">New security jobs page</a></li><li><a href="http://www.infosecpodcast.com/2007/10/two-job-openings-at-my-company/" rel="bookmark" class="crp_title">Two job openings at my company</a></li><li><a href="http://www.infosecpodcast.com/2008/07/wow-adds-2-factor-authentication/" rel="bookmark" class="crp_title">WoW adds 2 factor authentication</a></li><li><a href="http://www.infosecpodcast.com/2008/06/new-job-for-me/" rel="bookmark" class="crp_title">New job for me :)</a></li><li><a href="http://www.infosecpodcast.com/2009/02/mit-lincoln-lab-network-security-software/" rel="bookmark" class="crp_title">MIT Lincoln Lab Network Security Software</a></li><li>Powered by <a href="http://ajaydsouza.com/wordpress/plugins/contextual-related-posts/">Contextual Related Posts</a></li></ul></div><img src="http://www.infosecpodcast.com/?ak_action=api_record_view&id=188&type=feed" alt="" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=bbBwLWlP"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=253" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=X31GsHQz"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=41" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=iXwHCrSe"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=50" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=cFehECo0"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?i=cFehECo0" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Wwwinfosecpodcastcom/~4/gw5WhAxr4JQ" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecpodcast.com/2008/11/3-infosec-positions-mit-lincoln-laboratory/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		<feedburner:origLink>http://www.infosecpodcast.com/2008/11/3-infosec-positions-mit-lincoln-laboratory/</feedburner:origLink></item>
		<item>
		<title>NAC Panel Discussion: What is the state of NAC?</title>
		<link>http://feedproxy.google.com/~r/Wwwinfosecpodcastcom/~3/X1D8ZRYfRaE/</link>
		<comments>http://www.infosecpodcast.com/2008/10/nac-panel-discussion-what-is-the-state-of-nac/#comments</comments>
		<pubDate>Wed, 29 Oct 2008 23:07:22 +0000</pubDate>
		<dc:creator>Chris Harrington</dc:creator>
				<category><![CDATA[NAC]]></category>
		<category><![CDATA[LinkedIn]]></category>
		<category><![CDATA[Network Access Control]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://www.infosecpodcast.com/?p=184</guid>
		<description>This morning at work I moderated a panel discussion on Network Access Control. The audience was made up of IT Security staff from several research and development organizations. There were representatives from 3 vendors in attendance as well. The audience represented a good cross section of NAC adopters. Some have had it for 2 years, [...]</description>
			<content:encoded><![CDATA[<p>This morning at work I moderated a panel discussion on Network Access Control. The audience was made up of IT Security staff from several research and development organizations. There were representatives from 3 vendors in attendance as well. The audience represented a good cross section of NAC adopters. Some have had it for 2 years, some deploying this year while others had future or no plans to deploy NAC.</p>
<p>There was good audience participation so I only had to pull out 1 or 2 &#8220;canned&#8221; questions in the time allotted. I&#8217;ve tried to summarize the points and information that we learned from this exercise below. These are in no particular order.</p>
<p>1. No clear definition of NAC<br />
One of the first questions from the audience was about barriers to NAC adoption. One of the vendors replied with the question &#8220;what does NAC mean to you?” This person wanted NAC to do machine based authentication with no posture assessment. The next speaker wanted user authentication and posture assessment. A third was looking for post-connect NAC, *cough* IPS *cough*. Yet another wanted machine based authentication followed by user authentication. There was also discussion of machine provisioning on the network based on an HR event. As we have heard before, the definition of NAC is a moving target.</p>
<p>2. Lack of executive buy-in kills<br />
No big revelation here. Without proper senior management participation, understanding and approval almost any initiative will fail. What is interesting is the fact that within this group the challenge of selling NAC to upper management seemed to be more of a barrier to deployment than cost or complexity, the ones usually cited. My guess is that NAC may be an organizational or cultural challenge that is more common in &#8220;academic&#8221; environments where people may be used to doing what they want with less oversight. That is just a guess on my part. Cost was not mentioned once as an issue.</p>
<p>3. 802.1x is still a long way out for wired deployments<br />
Most security professionals will agree that 802.1x authentication is the preferred enforcement mechanism for NAC. IP&#8217;s can be changed, MAC&#8217;s can be spoofed but digital certificates pose a formidable challenge to forge. All 3 vendors said that in their experience 90% of wireless NAC deployments use 802.1x. The reason cited was ease of configuration on the client side and general wider acceptance of the protocol. On the wired side that equation was reversed with only 10% deploying 802.1x. Supplicant issues and the prevalence of devices that may not be able to have a supplicant (printers, VOIP phones, etc.) were said to be big issues.</p>
<p>4. Support for non-Windows clients still developing<br />
The majority of the audience organizations have significant numbers of non-Windows clients, specifically Mac&#8217;s. We get it. Windows is on 90 something percent of the enterprise desktops. That number is changing. More and more companies are offering choices on the desktop / laptop. The NAC vendors present had different levels of support for non-Windows. Some could do authentication only and some could do posture checking if the NAC device was in-line. Note to NAC vendors: Mac support is not a nice to have any more. Mac will have an ever increasing presence on the desktop. The NAC options should be the same for Windows and non-Windows. I do recognize that Linux is a little more of a challenge due to the variants and much further behind Mac in the desktop OS race.</p>
<p>Some of the other take-aways were:<br />
Make sure you have an accurate inventory of network connected devices<br />
Do not underestimate the increased help desk utilization<br />
Automated remediation is not as common as self-remediation in deployments</p>
<p>Those were the ones worth mentioning. Let me know if any of these jump out at you.</p>
<p>&#8211;Chris</p>
<p>Technorati Tags: <a href="http://technorati.com/tag/NAC" rel="tag"> NAC</a>, <a href="http://technorati.com/tag/Network+Access+Control" rel="tag"> Network Access Control </a></p>
<div id="crp_related"><h2>Related Posts:</h2><ul><li><a href="http://www.infosecpodcast.com/2006/08/over-reliance-on-industry-analysts/" rel="bookmark" class="crp_title">Over reliance on industry analysts</a></li><li><a href="http://www.infosecpodcast.com/2008/07/wow-adds-2-factor-authentication/" rel="bookmark" class="crp_title">WoW adds 2 factor authentication</a></li><li><a href="http://www.infosecpodcast.com/2007/06/will-iphone-support-exchange/" rel="bookmark" class="crp_title">Will iPhone support Exchange?</a></li><li><a href="http://www.infosecpodcast.com/2006/07/whats-the-worst-spyware-youve-been-infected-with/" rel="bookmark" class="crp_title">What's the worst Spyware you've been infected with?</a></li><li><a href="http://www.infosecpodcast.com/2008/07/record-im-video-on-the-network/" rel="bookmark" class="crp_title">Record IM video on the network?</a></li><li>Powered by <a href="http://ajaydsouza.com/wordpress/plugins/contextual-related-posts/">Contextual Related Posts</a></li></ul></div><img src="http://www.infosecpodcast.com/?ak_action=api_record_view&id=184&type=feed" alt="" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=eIDYIP2V"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=253" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=ClFpx8eb"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=41" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=hKawQlQA"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=50" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=Rnchtvee"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?i=Rnchtvee" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Wwwinfosecpodcastcom/~4/X1D8ZRYfRaE" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecpodcast.com/2008/10/nac-panel-discussion-what-is-the-state-of-nac/feed/</wfw:commentRss>
		<slash:comments>6</slash:comments>
		<feedburner:origLink>http://www.infosecpodcast.com/2008/10/nac-panel-discussion-what-is-the-state-of-nac/</feedburner:origLink></item>
		<item>
		<title>Record IM video on the network?</title>
		<link>http://feedproxy.google.com/~r/Wwwinfosecpodcastcom/~3/kM4UNPiYoDI/</link>
		<comments>http://www.infosecpodcast.com/2008/07/record-im-video-on-the-network/#comments</comments>
		<pubDate>Tue, 01 Jul 2008 15:23:03 +0000</pubDate>
		<dc:creator>Chris Harrington</dc:creator>
				<category><![CDATA[Security Tools]]></category>
		<category><![CDATA[AIM video]]></category>
		<category><![CDATA[MSN Messenger]]></category>
		<category><![CDATA[record]]></category>
<category>AIM video</category><category>MSN Messenger</category><category>record</category>
		<guid isPermaLink="false">http://www.infosecpodcast.com/?p=183</guid>
		<description>A friend of mine is works in the financial services market. His company has a need to record Instant Messenger video sessions (think AOL and MSN webcam ) and archive them. They need to do this on the network as opposed to having client software do it locally on the desktop. This is due to [...]</description>
			<content:encoded><![CDATA[<p>A friend of mine is works in the financial services market. His company has a need to record Instant Messenger video sessions (think AOL and MSN webcam ) and archive them. They need to do this on the network as opposed to having client software do it locally on the desktop. This is due to the varied desktop systems, only half are Windows based.</p>
<p>Anyone know of a commercial solution or open source libraries that could do this? I know many IPS&#8217; can detect IM video but he needs to record. Is IM video even encrypted? Before you start with the privacy concerns this is done with full knowledge of both parties who are also employees of the same company. It is a pilot program at this point.</p>
<p>&#8211;Chris</p>
<p>Technorati Tags: <a href="http://technorati.com/tag/AIM+video" rel="tag"> AIM video</a>, <a href="http://technorati.com/tag/record" rel="tag"> record</a>, <a href="http://technorati.com/tag/MSN+Messenger" rel="tag"> MSN Messenger </a></p>
<div id="crp_related"><h2>Related Posts:</h2><ul><li><a href="http://www.infosecpodcast.com/2007/08/useful-windows-applications/" rel="bookmark" class="crp_title">Useful Windows applications</a></li><li><a href="http://www.infosecpodcast.com/2006/09/network-security-a-dying-creature/" rel="bookmark" class="crp_title">Network security a dying creature?</a></li><li><a href="http://www.infosecpodcast.com/2007/08/stopping-100-of-web-web-proxies/" rel="bookmark" class="crp_title">Stopping 100% of web web proxies?</a></li><li><a href="http://www.infosecpodcast.com/2007/10/another-reason-to-like-a-mac/" rel="bookmark" class="crp_title">Another reason to like a Mac</a></li><li><a href="http://www.infosecpodcast.com/2006/07/mcafee-blames-open-source-models-for-rise-in-bots/" rel="bookmark" class="crp_title">McAfee blames Open Source models for rise in 'Bots</a></li><li>Powered by <a href="http://ajaydsouza.com/wordpress/plugins/contextual-related-posts/">Contextual Related Posts</a></li></ul></div><img src="http://www.infosecpodcast.com/?ak_action=api_record_view&id=183&type=feed" alt="" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=1k5wpuhq"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=253" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=XBDdmAK9"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=41" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=lA7ECJ1L"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=50" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=WmORTCDD"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?i=WmORTCDD" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Wwwinfosecpodcastcom/~4/kM4UNPiYoDI" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecpodcast.com/2008/07/record-im-video-on-the-network/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		<feedburner:origLink>http://www.infosecpodcast.com/2008/07/record-im-video-on-the-network/</feedburner:origLink></item>
		<item>
		<title>WoW adds 2 factor authentication</title>
		<link>http://feedproxy.google.com/~r/Wwwinfosecpodcastcom/~3/EbhwhNZD5kM/</link>
		<comments>http://www.infosecpodcast.com/2008/07/wow-adds-2-factor-authentication/#comments</comments>
		<pubDate>Tue, 01 Jul 2008 15:12:23 +0000</pubDate>
		<dc:creator>Chris Harrington</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[2 form factor]]></category>
		<category><![CDATA[world of warcraft]]></category>
		<category><![CDATA[wow]]></category>
<category>2 form factor</category><category>world of warcraft</category><category>wow</category>
		<guid isPermaLink="false">http://www.infosecpodcast.com/?p=181</guid>
		<description>World of Warcraft creator Blizzard Entertainment is selling hardware security devices. These small devices can fit on a key ring and provide a second form factor for authentication using something similar to a one time pad. The cost&amp;#8230;..6 EUR.  Robert over at Errata Security has a pretty good write up on it.
Now if only [...]</description>
			<content:encoded><![CDATA[<p><a href="http://www.worldofwarcraft.com/" target="_blank"></a><a href="http://www.infosecpodcast.com/wp-content/uploads/index-world-of-warcraft-logo.jpg"><img class="alignnone size-medium wp-image-182" title="World of Warcraft" src="http://www.infosecpodcast.com/wp-content/uploads/index-world-of-warcraft-logo-300x170.jpg" alt="" width="208" height="119" /></a><a href="http://www.worldofwarcraft.com/" target="_blank"></a></p>
<p><a href="http://www.worldofwarcraft.com/" target="_blank">World of Warcraft</a> creator Blizzard Entertainment is selling hardware security devices. These small devices can fit on a key ring and provide a second form factor for authentication using something similar to a one time pad. The cost&#8230;..6 EUR.  Robert over at Errata Security has a pretty good <a href="http://erratasec.blogspot.com/2008/06/blizzards-two-factor-authentication.html" target="_blank">write up</a> on it.</p>
<p>Now if only my bank could figure this out. Wait a minute&#8230;.don&#8217;t they have to under PCI?? <img src='http://www.infosecpodcast.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>&#8211;Chris</p>
<p>Technorati Tags: <a href="http://technorati.com/tag/WoW" rel="tag"> WoW</a>, <a href="http://technorati.com/tag/World+of+Warcraft" rel="tag"> World of Warcraft</a>, <a href="http://technorati.com/tag/Blizzard+Entertainment" rel="tag"> Blizzard Entertainment</a>, <a href="http://technorati.com/tag/2+form+factor" rel="tag"> 2 form factor </a></p>
<div id="crp_related"><h2>Related Posts:</h2><ul><li><a href="http://www.infosecpodcast.com/2008/11/3-infosec-positions-mit-lincoln-laboratory/" rel="bookmark" class="crp_title">3 open InfoSec positions at MIT Lincoln Laboratory</a></li><li><a href="http://www.infosecpodcast.com/2006/08/how-many-devices-reporting-to-your-sim-sem/" rel="bookmark" class="crp_title">How many devices reporting to your SIM / SEM?</a></li><li><a href="http://www.infosecpodcast.com/2007/02/going-to-rsa/" rel="bookmark" class="crp_title">Going to RSA?</a></li><li><a href="http://www.infosecpodcast.com/2009/02/mit-lincoln-lab-network-security-software/" rel="bookmark" class="crp_title">MIT Lincoln Lab Network Security Software</a></li><li><a href="http://www.infosecpodcast.com/2008/10/nac-panel-discussion-what-is-the-state-of-nac/" rel="bookmark" class="crp_title">NAC Panel Discussion: What is the state of NAC?</a></li><li>Powered by <a href="http://ajaydsouza.com/wordpress/plugins/contextual-related-posts/">Contextual Related Posts</a></li></ul></div><img src="http://www.infosecpodcast.com/?ak_action=api_record_view&id=181&type=feed" alt="" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=7L4bVu0l"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=253" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=SmfG7pyB"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=41" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=XetASPHn"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=50" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=d0hXlEmO"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?i=d0hXlEmO" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Wwwinfosecpodcastcom/~4/EbhwhNZD5kM" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecpodcast.com/2008/07/wow-adds-2-factor-authentication/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		<feedburner:origLink>http://www.infosecpodcast.com/2008/07/wow-adds-2-factor-authentication/</feedburner:origLink></item>
		<item>
		<title>New blog theme</title>
		<link>http://feedproxy.google.com/~r/Wwwinfosecpodcastcom/~3/GKpU2Jj7-4Q/</link>
		<comments>http://www.infosecpodcast.com/2008/06/new-blog-theme/#comments</comments>
		<pubDate>Thu, 26 Jun 2008 15:06:09 +0000</pubDate>
		<dc:creator>Chris Harrington</dc:creator>
				<category><![CDATA[Education]]></category>
		<category><![CDATA[Software]]></category>

		<guid isPermaLink="false">http://www.infosecpodcast.com/?p=180</guid>
		<description>I&amp;#8217;ve been working on a new theme for the blog. Please let me know what you think of the new theme!
Thanks!
&amp;#8211;Chris
Related Posts:New layout / theme in the worksComments not workingTracking hackers by what they typeNew security jobs pageBT buys Counterpane SecurityPowered by Contextual Related Posts</description>
			<content:encoded><![CDATA[<p>I&#8217;ve been working on a new theme for the blog. Please let me know what you think of the new theme!</p>
<p>Thanks!</p>
<p>&#8211;Chris</p>
<div id="crp_related"><h2>Related Posts:</h2><ul><li><a href="http://www.infosecpodcast.com/2007/08/new-layout-theme-in-the-works/" rel="bookmark" class="crp_title">New layout / theme in the works</a></li><li><a href="http://www.infosecpodcast.com/2007/06/comments-not-working/" rel="bookmark" class="crp_title">Comments not working</a></li><li><a href="http://www.infosecpodcast.com/2006/08/tracking-hackers-by-what-they-type/" rel="bookmark" class="crp_title">Tracking hackers by what they type</a></li><li><a href="http://www.infosecpodcast.com/2007/08/new-security-jobs-page/" rel="bookmark" class="crp_title">New security jobs page</a></li><li><a href="http://www.infosecpodcast.com/2006/10/bt-buys-counterpane-security/" rel="bookmark" class="crp_title">BT buys Counterpane Security</a></li><li>Powered by <a href="http://ajaydsouza.com/wordpress/plugins/contextual-related-posts/">Contextual Related Posts</a></li></ul></div><img src="http://www.infosecpodcast.com/?ak_action=api_record_view&id=180&type=feed" alt="" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=XQrLTVfK"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=253" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=xK9hHZsr"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=41" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=pF94yD9E"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=50" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=eJjFs35u"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?i=eJjFs35u" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Wwwinfosecpodcastcom/~4/GKpU2Jj7-4Q" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecpodcast.com/2008/06/new-blog-theme/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		<feedburner:origLink>http://www.infosecpodcast.com/2008/06/new-blog-theme/</feedburner:origLink></item>
		<item>
		<title>Twitter + Security = Security Twits</title>
		<link>http://feedproxy.google.com/~r/Wwwinfosecpodcastcom/~3/Zg7HsxZ7u5M/</link>
		<comments>http://www.infosecpodcast.com/2008/06/twitter-security-security-twits/#comments</comments>
		<pubDate>Thu, 26 Jun 2008 14:29:12 +0000</pubDate>
		<dc:creator>Chris Harrington</dc:creator>
				<category><![CDATA[Industry News]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Security Twits]]></category>
		<category><![CDATA[Twitter]]></category>
<category>Security</category><category>Security Twits</category><category>Twitter</category>
		<guid isPermaLink="false">http://www.infosecpodcast.com/?p=179</guid>
		<description>When I first read about Twitter I didn&amp;#8217;t see much value in it for me. It wasn&amp;#8217;t until I started using it last year when I saw the usefulness for me. Twitter is an interesting communicaiton tool. I call it a cross between an IM client and a Bulletin Board. There are a lot of [...]</description>
			<content:encoded><![CDATA[<p>When I first read about <a href="http://www.twitter.com" target="_blank">Twitter</a> I didn&#8217;t see much value in it for me. It wasn&#8217;t until I started using it last year when I saw the usefulness for me. Twitter is an interesting communicaiton tool. I call it a cross between an IM client and a Bulletin Board. There are a lot of informal groups that use twitter. One of them is the Security Twits.</p>
<p><a href="http://mediaphyter.wordpress.com/security-twits/" target="_blank">Security Twits</a> are people in security related jobs, companies, etc that use Twitter.  We can thank Jennifer, aka <a href="http://twitter.com/mediaphyter" target="_blank">Mediaphyter</a>, for the name and the <a href="http://mediaphyter.wordpress.com/2008/02/01/security-twits/" target="_blank">original blog post</a> on the Twits. It&#8217;s actually a pretty impressive list of security folks using it.</p>
<p>If you have not tried Twitter you should. You may just find it useful if not downright addictive.</p>
<p>&#8211; Chris</p>
<p>Technorati Tags: <a href="http://technorati.com/tag/Twitter" rel="tag"> Twitter</a>, <a href="http://technorati.com/tag/Security" rel="tag"> Security</a>, <a href="http://technorati.com/tag/Security+Twits" rel="tag"> Security Twits </a></p>
<div id="crp_related"><h2>Related Posts:</h2><ul><li><a href="http://www.infosecpodcast.com/2007/08/new-security-jobs-page/" rel="bookmark" class="crp_title">New security jobs page</a></li><li><a href="http://www.infosecpodcast.com/2006/10/new-security-job-board/" rel="bookmark" class="crp_title">New Security Job Board</a></li><li><a href="http://www.infosecpodcast.com/2007/02/security-bloggers-meeting-at-rsa/" rel="bookmark" class="crp_title">Security Bloggers meeting at RSA</a></li><li><a href="http://www.infosecpodcast.com/2006/10/skype-security/" rel="bookmark" class="crp_title">Skype Security</a></li><li><a href="http://www.infosecpodcast.com/2007/06/comments-not-working/" rel="bookmark" class="crp_title">Comments not working</a></li><li>Powered by <a href="http://ajaydsouza.com/wordpress/plugins/contextual-related-posts/">Contextual Related Posts</a></li></ul></div><img src="http://www.infosecpodcast.com/?ak_action=api_record_view&id=179&type=feed" alt="" /><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=WUtnjS2i"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=253" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=bdBhfMC0"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=41" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=frK8pTGN"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?d=50" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?a=Knbr5TRe"><img src="http://feeds.feedburner.com/~f/Wwwinfosecpodcastcom?i=Knbr5TRe" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/Wwwinfosecpodcastcom/~4/Zg7HsxZ7u5M" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.infosecpodcast.com/2008/06/twitter-security-security-twits/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.infosecpodcast.com/2008/06/twitter-security-security-twits/</feedburner:origLink></item>
	</channel>
</rss><!-- Dynamic Page Served (once) in 6.102 seconds -->
