You may have all seen this already, but I just came across it. It’s been around for a while, but I thought it was interesting. How to Become a Hacker by Eric Steven Raymond.
Interesting Information Security Bits for May 16th, 2008
May 16, 2008Howdy, here are some things to take a look at for today.
Dave Aitel writes about automatic exploit generation from patches. According to Dave, it isn’t as easy as it sounds. I agree with him. Go give it a read.
GNUCITIZEN has another good post up that takes a look at resident scripts and cross-domain issues using javascript.
Kees, as usual, has a thought provoking post up which points out that Perception IS Reality (emphasis added). Go read it.
Later folks. Have a great day.
Kevin
Hey Nessus, do you do sudo?
May 16, 2008We all know and love Nessus. Well today, Tenable made it even better. Nessus now fully supports su and sudo for audit and patch compliance checks. This is very cool.
Next, in response to the ssh key bruhaha this week, there are now a couple of plugins that will check for weak keys in SSH and SSL protected webservers.
Caveat: It appears that you need to be Direct Feed/Professional subscriber to use these features.
Kevin

Posted by Kevin Riggins
Posted by Kevin Riggins
Posted by Kevin Riggins