<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Infosec Ramblings</title>
	<atom:link href="http://infosecramblings.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://infosecramblings.wordpress.com</link>
	<description>Various ramblings on Information Security topics</description>
	<pubDate>Mon, 21 Jul 2008 18:10:08 +0000</pubDate>
	<generator>http://wordpress.org/?v=MU</generator>
	<language>en</language>
			<item>
		<title>Interesting Information Security Bits for July  21st, 2008</title>
		<link>http://infosecramblings.wordpress.com/2008/07/21/interesting-information-security-bits-for-july-21st-2008/</link>
		<comments>http://infosecramblings.wordpress.com/2008/07/21/interesting-information-security-bits-for-july-21st-2008/#comments</comments>
		<pubDate>Mon, 21 Jul 2008 18:09:40 +0000</pubDate>
		<dc:creator>Kevin Riggins</dc:creator>
		
		<category><![CDATA[Interesting Bits]]></category>

		<category><![CDATA[vulnerablity]]></category>

		<category><![CDATA[perimeter]]></category>

		<category><![CDATA[web appsec]]></category>

		<category><![CDATA[memory]]></category>

		<category><![CDATA[keys]]></category>

		<category><![CDATA[google tech talk]]></category>

		<category><![CDATA[crackme]]></category>

		<category><![CDATA[laptop]]></category>

		<guid isPermaLink="false">http://infosecramblings.wordpress.com/2008/07/21/interesting-information-security-bits-for-july-21st-2008/</guid>
		<description><![CDATA[And we&#8217;re off.
From the Blogosphere
Via F-Secure&#8217;s blog, a discussion of what needs to happen to exploit the Microsoft Access Viewer vulnerability under a couple of different scenario&#8217;s.  Worth a look.
Gunnar Peterson has an pointed view of outside vs. inside as it applies to our enterprise networks. I won&#8217;t spoil it for you since it [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>And we&#8217;re off.</p>
<p><b>From the Blogosphere</p>
<p></b>Via F-Secure&#8217;s blog, a discussion of what needs to happen to <a target="_blank" href="http://www.f-secure.com/weblog/archives/00001472.html">exploit the Microsoft Access Viewer vulnerability</a> under a couple of different scenario&#8217;s.  Worth a look.</p>
<p>Gunnar Peterson has an pointed view of <a target="_blank" href="http://1raindrop.typepad.com/1_raindrop/2008/07/the-network-firewall-is-a-consensual-hallucination.html">outside vs. inside</a> as it applies to our enterprise networks. I won&#8217;t spoil it for you since it is a good read.</p>
<p>Jeramiah has <a target="_blank" href="http://jeremiahgrossman.blogspot.com/2008/07/web-application-security-professionals.html">survey up for Web Application Security Professionals</a>.  He will be releasing the results in the near future.  I took it and so should you if you have anything to do with WebApp security.  Good questions.</p>
<p>Via Wesley McGrew, Princeton <a target="_blank" href="http://www.mcgrewsecurity.com/?p=147">released their tools for dumping and retrieving keys from memory after a cold boot</a>.  There was a bit of twittering going on about these tools during <a target="_blank" href="http://search.twitter.com/search?q=%23thelasthope">The Last Hope</a> conference.  Intersting stuff.</p>
<p>Via DevCentral, a <a target="_blank" href="http://devcentral.f5.com/weblogs/macvittie/archive/2008/07/18/3469.aspx">new Google tech talk</a> is up.  This time covering SQL injection, XSRF, and XSSI.  Good stuff.</p>
<p>LearnSecurityOnline has released <a target="_blank" href="http://learnsecurityonline.com//index.php?option=com_content&amp;task=view&amp;id=303&amp;Itemid=1">Crackme 0&#215;04</a> for us to solve.</p>
<p>TaoSecurity has a perspective on the <a target="_blank" href="http://taosecurity.blogspot.com/2008/07/vulnerabilities-in-perspective.html">recent DNS vulnerability</a> that is worth reading.</p>
<p>The tisecurityguy brings to our attention an <a target="_blank" href="http://theitsecurityguy.blogspot.com/2008/07/tracking-stolen-laptops-new-open-source.html">open source tool for tracking your laptop should it be stolen</a>.  As he says, &#8220;best of all, it&#8217;s open source, which means free.&#8221;</p>
<p><b>From the Newsosphere</p>
<p></b><a target="_blank" href="http://www.darkreading.com/document.asp?doc_id=159479">DarkReading</a>: The U.K.&#8217;s Ministry of Defence lost some USB sticks&#8230;.with secret information on them.</p>
<p><a target="_blank" href="http://www.darkreading.com/document.asp?doc_id=159470">DarkReading</a>: Damballa Inc. is to release and new tool for malware analysis at Black Hat 2008 in Las Vegas.  Free to enterprises and vendors.</p>
<p>Information Week: RIM has <a target="_blank" href="http://www.informationweek.com/news/mobility/security/showArticle.jhtml?articleID=209101357&amp;cid=RSSfeed_IWK_Security">fixed the BlackBerry Enterprise Server pdf vulnerability</a>.</p>
<p>That&#8217;s all folks.  Have a great day.</p>
<p>Kevin</p>
<p>Technorati Tags: <a class="performancingtags" href="http://technorati.com/tag/vulnerablity" rel="tag">vulnerablity</a>, <a class="performancingtags" href="http://technorati.com/tag/perimeter" rel="tag">perimeter</a>, <a class="performancingtags" href="http://technorati.com/tag/web%20appsec" rel="tag">web appsec</a>, <a class="performancingtags" href="http://technorati.com/tag/memory" rel="tag">memory</a>, <a class="performancingtags" href="http://technorati.com/tag/keys" rel="tag">keys</a>, <a class="performancingtags" href="http://technorati.com/tag/google%20tech%20talk" rel="tag">google tech talk</a>, <a class="performancingtags" href="http://technorati.com/tag/crackme" rel="tag">crackme</a>, <a class="performancingtags" href="http://technorati.com/tag/laptop" rel="tag">laptop</a></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/infosecramblings.wordpress.com/79/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/infosecramblings.wordpress.com/79/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/infosecramblings.wordpress.com/79/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/infosecramblings.wordpress.com/79/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/infosecramblings.wordpress.com/79/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/infosecramblings.wordpress.com/79/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/infosecramblings.wordpress.com/79/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/infosecramblings.wordpress.com/79/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/infosecramblings.wordpress.com/79/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/infosecramblings.wordpress.com/79/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/infosecramblings.wordpress.com/79/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/infosecramblings.wordpress.com/79/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=infosecramblings.wordpress.com&blog=3242326&post=79&subd=infosecramblings&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://infosecramblings.wordpress.com/2008/07/21/interesting-information-security-bits-for-july-21st-2008/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Interesting Information Security Bits for July 18th, 2008</title>
		<link>http://infosecramblings.wordpress.com/2008/07/18/interesting-information-security-bits-for-july-18th-2008/</link>
		<comments>http://infosecramblings.wordpress.com/2008/07/18/interesting-information-security-bits-for-july-18th-2008/#comments</comments>
		<pubDate>Fri, 18 Jul 2008 18:45:30 +0000</pubDate>
		<dc:creator>Kevin Riggins</dc:creator>
		
		<category><![CDATA[Interesting Bits]]></category>

		<category><![CDATA[malware]]></category>

		<category><![CDATA[nessus]]></category>

		<category><![CDATA[mozilla]]></category>

		<category><![CDATA[pentest]]></category>

		<guid isPermaLink="false">http://infosecramblings.wordpress.com/2008/07/18/interesting-information-security-bits-for-july-18th-2008/</guid>
		<description><![CDATA[Here ya go.
From the Blogoshpere0&#215;000000 has the first of a series of pieces that cover Mozilla malware, how to write it and how to detect it, posted.  Interesting stuff.
CG has a post up about a tool called Metagoofil and how it can be used to develop an email list.  Very interesting stuff.  [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>Here ya go.</p>
<p><b>From the Blogoshpere<br /></b><br />0&#215;000000 has the <a target="_blank" href="http://www.0x000000.com/?i=615">first</a> of a series of pieces that cover Mozilla malware, how to write it and how to detect it, posted.  Interesting stuff.</p>
<p>CG has a <a target="_blank" href="http://carnal0wnage.blogspot.com/2008/07/lack-of-usable-emails-for-your-pentest.html">post</a> up about a tool called <a target="_blank" href="http://www.edge-security.com/metagoofil.php">Metagoofil</a> and how it can be used to develop an email list.  Very interesting stuff.  I haven&#8217;t played with it yet, but will be soon.</p>
<p><a target="_blank" href="http://blog.tenablesecurity.com/2008/07/charitable-and.html">Tenable</a> has setup a way for charities and classrooms that provide information security training to get a full professional feed for free.  Way to go Tenable.</p>
<p>Have a good one.</p>
<p>Kevin</p>
<p>Technorati Tags: <a class="performancingtags" href="http://technorati.com/tag/malware" rel="tag">malware</a>, <a class="performancingtags" href="http://technorati.com/tag/mozilla" rel="tag">mozilla</a>, <a class="performancingtags" href="http://technorati.com/tag/pentest" rel="tag">pentest</a>, <a class="performancingtags" href="http://technorati.com/tag/nessus" rel="tag">nessus</a></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/infosecramblings.wordpress.com/77/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/infosecramblings.wordpress.com/77/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/infosecramblings.wordpress.com/77/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/infosecramblings.wordpress.com/77/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/infosecramblings.wordpress.com/77/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/infosecramblings.wordpress.com/77/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/infosecramblings.wordpress.com/77/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/infosecramblings.wordpress.com/77/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/infosecramblings.wordpress.com/77/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/infosecramblings.wordpress.com/77/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/infosecramblings.wordpress.com/77/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/infosecramblings.wordpress.com/77/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=infosecramblings.wordpress.com&blog=3242326&post=77&subd=infosecramblings&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://infosecramblings.wordpress.com/2008/07/18/interesting-information-security-bits-for-july-18th-2008/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Interesting Information Security Bits for July 17th, 2008</title>
		<link>http://infosecramblings.wordpress.com/2008/07/17/interesting-information-security-bits-for-july-17th-2008/</link>
		<comments>http://infosecramblings.wordpress.com/2008/07/17/interesting-information-security-bits-for-july-17th-2008/#comments</comments>
		<pubDate>Thu, 17 Jul 2008 16:16:49 +0000</pubDate>
		<dc:creator>Kevin Riggins</dc:creator>
		
		<category><![CDATA[Interesting Bits]]></category>

		<category><![CDATA[dlp]]></category>

		<category><![CDATA[infosec career]]></category>

		<category><![CDATA[kaminsky]]></category>

		<category><![CDATA[talks]]></category>

		<category><![CDATA[vmware]]></category>

		<guid isPermaLink="false">http://infosecramblings.wordpress.com/2008/07/17/interesting-information-security-bits-for-july-17th-2008/</guid>
		<description><![CDATA[Hello all.  I apologize for the lack of posts over the last couple of weeks.  Life and death have taken up all my time.  Things should be back to normal now. So without further ado, here&#8217;s are some things to take a look at today.
From the BlogosphereWesley over at McGrewSecurity has collected [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>Hello all.  I apologize for the lack of posts over the last couple of weeks.  Life and death have taken up all my time.  Things should be back to normal now. So without further ado, here&#8217;s are some things to take a look at today.</p>
<p><b>From the Blogosphere<br /></b><br />Wesley over at <a target="_blank" href="http://www.mcgrewsecurity.com">McGrewSecurity</a> has collected a bunch of <a target="_blank" href="http://www.mcgrewsecurity.com/?p=146">links and embedded a bunch of videos of Dan Kaminsky talks</a>.  Very cool.</p>
<p>Craig at <a target="_blank" href="http://securitywannabe.com/">SecurityWannabe</a> gives us a link to a <a target="_blank" href="http://securitywannabe.com/blog/2008/07/16/standing-out-in-a-pool-of-infosec-wannabes-are-you-special-enough/">video of Lee Kushner and Mike Murry&#8217;s talk about a career in Information Security</a>.  I attended their session at Defcon 15 and the informal Q&amp;A after.  Really good stuff.  Go watch the video or even better attend their session at this year&#8217;s Defcon.</p>
<p>Rich Mogull writes on <a target="_blank" href="http://securosis.com/">Securosis</a> that he will be giving a webcast entitled <a target="_blank" href="http://securosis.com/2008/07/16/upcoming-webcast-dlp-and-dam-together/">Using Data Leakage Prevention and Database Activity Monitoring for Data Protection</a> on July 29th.  Register <a target="_blank" href="http://www.tizor.com/News-And-Events/Events/July-29-2008-Webinar">here</a>. I&#8217;ll be watching.  You should too.</p>
<p>Via <a target="_blank" href="http://security4all.blogspot.com/2008/07/vmware-esx-and-virtualcenter-security.html">security4all</a>, VMWare has released an updated paper on hardening ESX 3.5 and VirtualCenter 2.5.  It can be found <a target="_blank" href="http://www.vmware.com/files/pdf/vi35_security_hardening_wp.pdf">here</a>.</p>
<p><b>From the Newsosphere<br /></b><br />Via Dark Reading, <a target="_blank" href="http://www.darkreading.com/document.asp?doc_id=159140">Half of Financial Firms Don&#8217;t Investigate</a>. That&#8217;s not good.</p>
<p>Via Tech Republic, <a target="_blank" href="http://blogs.techrepublic.com.com/tech-manager/?p=554">When your network admin hijacks your system</a>.  Talks about the San Fransisco situation you have already heard about.</p>
<p>Via Search Security, <a target="_blank" href="http://searchsecurity.techtarget.com/news/article/0,289142,sid14_gci1321486,00.html?track=sy160">Blackberry server faced with critical zero-day</a>. There is a flaw in the PDF handling function of the BlackBerrty Attachement Service.  Bad stuff.</p>
<p>Via Dark Reading, <a target="_blank" href="http://www.darkreading.com/document.asp?doc_id=159151">MessageLabs Reveals Most Spammed States</a>. Illinois apparently has the largest bulls eye painted on its forehead.</p>
<p>Via Information Week, <a target="_blank" href="http://www.informationweek.com/news/internet/google/showArticle.jhtml?articleID=209100486&amp;cid=RSSfeed_IWK_Security">Gmail Privacy Hole Shows User Names</a>. Be careful with Google calendar.</p>
<p>That&#8217;s it for today&#8217;s bits.  Have a great day.</p>
<p>Kevin</p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/infosecramblings.wordpress.com/75/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/infosecramblings.wordpress.com/75/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/infosecramblings.wordpress.com/75/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/infosecramblings.wordpress.com/75/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/infosecramblings.wordpress.com/75/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/infosecramblings.wordpress.com/75/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/infosecramblings.wordpress.com/75/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/infosecramblings.wordpress.com/75/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/infosecramblings.wordpress.com/75/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/infosecramblings.wordpress.com/75/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/infosecramblings.wordpress.com/75/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/infosecramblings.wordpress.com/75/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=infosecramblings.wordpress.com&blog=3242326&post=75&subd=infosecramblings&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://infosecramblings.wordpress.com/2008/07/17/interesting-information-security-bits-for-july-17th-2008/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Taxonomy of coding errors&#8230;</title>
		<link>http://infosecramblings.wordpress.com/2008/07/16/taxonomy-of-coding-errors/</link>
		<comments>http://infosecramblings.wordpress.com/2008/07/16/taxonomy-of-coding-errors/#comments</comments>
		<pubDate>Wed, 16 Jul 2008 20:34:09 +0000</pubDate>
		<dc:creator>Kevin Riggins</dc:creator>
		
		<category><![CDATA[secure coding]]></category>

		<category><![CDATA[securre coding]]></category>

		<category><![CDATA[taxonomy]]></category>

		<guid isPermaLink="false">http://infosecramblings.wordpress.com/2008/07/16/taxonomy-of-coding-errors/</guid>
		<description><![CDATA[A quick note about something that @cji tweeted about.
Fortify has a taxonomy of coding errors that affect security.  The really cool thing is the examples in many different languages.
Its right here, go check it out.
       ]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>A quick note about something that <a target="_blank" href="http://twitter.com/cgi">@cji</a> tweeted about.</p>
<p>Fortify has a taxonomy of coding errors that affect security.  The really cool thing is the examples in many different languages.</p>
<p>Its right <a target="_blank" href="http://www.fortify.com/vulncat/">here</a>, go check it out.</p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/infosecramblings.wordpress.com/72/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/infosecramblings.wordpress.com/72/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/infosecramblings.wordpress.com/72/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/infosecramblings.wordpress.com/72/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/infosecramblings.wordpress.com/72/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/infosecramblings.wordpress.com/72/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/infosecramblings.wordpress.com/72/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/infosecramblings.wordpress.com/72/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/infosecramblings.wordpress.com/72/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/infosecramblings.wordpress.com/72/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/infosecramblings.wordpress.com/72/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/infosecramblings.wordpress.com/72/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=infosecramblings.wordpress.com&blog=3242326&post=72&subd=infosecramblings&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://infosecramblings.wordpress.com/2008/07/16/taxonomy-of-coding-errors/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Interesting Information Security Bits for June 26th, 2008</title>
		<link>http://infosecramblings.wordpress.com/2008/06/26/interesting-information-security-bits-for-june-26th-2008/</link>
		<comments>http://infosecramblings.wordpress.com/2008/06/26/interesting-information-security-bits-for-june-26th-2008/#comments</comments>
		<pubDate>Thu, 26 Jun 2008 19:18:54 +0000</pubDate>
		<dc:creator>Kevin Riggins</dc:creator>
		
		<category><![CDATA[Interesting Bits]]></category>

		<category><![CDATA[ie]]></category>

		<category><![CDATA[insecure]]></category>

		<category><![CDATA[waf]]></category>

		<guid isPermaLink="false">http://infosecramblings.wordpress.com/2008/06/26/interesting-information-security-bits-for-june-26th-2008/</guid>
		<description><![CDATA[Here we go.
From the Blogosphere.
F-Secure has released their Security Threat Summary for the First Half of 2008.
(IN)SECURE Magazine issue 17 is available.  Good stuff as always.
Continuing their week of War on WAF&#8217;s (Web Application Firewall), ts/sci security talks about language specificity in WAFs.
Well, looky there, there&#8217;s as a new Zero-day flaw in Internet Explorer. [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>Here we go.</p>
<p><b>From the Blogosphere.</p>
<p></b><a target="_blank" href="http://www.f-secure.com/weblog/archives/00001462.html">F-Secure</a> has released their <a target="_blank" href="http://www.f-secure.com/2008/1/index.html">Security Threat Summary for the First Half of 2008</a>.</p>
<p><a target="_blank" href="http://www.net-security.org/insecuremag.php">(IN)SECURE Magazine issue 17</a> is available.  Good stuff as always.</p>
<p>Continuing their week of War on WAF&#8217;s (Web Application Firewall), ts/sci security talks about <a target="_blank" href="http://www.tssci-security.com/archives/2008/06/26/week-of-war-on-wafs-day-3-language-specific/">language specificity in WAFs</a>.</p>
<p>Well, looky there, there&#8217;s as a new <a target="_blank" href="http://blogs.zdnet.com/security/?p=1348">Zero-day flaw in Internet Explorer</a>. Who&#8217;d a thunk it?  Caveat: It is for version 6.</p>
<p><b>From the Newsosphere.</p>
<p></b>Nothing today.</p>
<p>Have a good one folks.</p>
<p>Kevin</p>
<p>Technorati Tags: <a class="performancingtags" href="http://technorati.com/tag/insecure" rel="tag">insecure</a>, <a class="performancingtags" href="http://technorati.com/tag/waf" rel="tag">waf</a>, <a class="performancingtags" href="http://technorati.com/tag/ie" rel="tag">ie</a></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/infosecramblings.wordpress.com/71/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/infosecramblings.wordpress.com/71/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/infosecramblings.wordpress.com/71/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/infosecramblings.wordpress.com/71/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/infosecramblings.wordpress.com/71/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/infosecramblings.wordpress.com/71/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/infosecramblings.wordpress.com/71/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/infosecramblings.wordpress.com/71/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/infosecramblings.wordpress.com/71/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/infosecramblings.wordpress.com/71/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/infosecramblings.wordpress.com/71/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/infosecramblings.wordpress.com/71/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=infosecramblings.wordpress.com&blog=3242326&post=71&subd=infosecramblings&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://infosecramblings.wordpress.com/2008/06/26/interesting-information-security-bits-for-june-26th-2008/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Firefox, SQLite and DOM, oh my&#8230;</title>
		<link>http://infosecramblings.wordpress.com/2008/06/25/firefox-sqlite-and-dom-oh-my/</link>
		<comments>http://infosecramblings.wordpress.com/2008/06/25/firefox-sqlite-and-dom-oh-my/#comments</comments>
		<pubDate>Wed, 25 Jun 2008 19:32:25 +0000</pubDate>
		<dc:creator>Kevin Riggins</dc:creator>
		
		<category><![CDATA[Firefox]]></category>

		<category><![CDATA[dom]]></category>

		<category><![CDATA[sql]]></category>

		<guid isPermaLink="false">http://infosecramblings.wordpress.com/?p=70</guid>
		<description><![CDATA[I want to preface the following with

I am probably late to the party and everybody already know all about this and
There probably isn&#8217;t any issue here.  Just got me to thinking.

I was reading the Firefox&#8217;s Super Cookies post on the CERIAS Blog and it made me go hmmm.  You should go read Pascal&#8217;s post [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>I want to preface the following with<a title="Lions, Tigers and Bears, oh my." href="http://www.flickr.com/photos/annarchy1/2117493423/" target="_blank"><img class="alignright" src="http://farm3.static.flickr.com/2341/2117493423_e7cf5df15e_m.jpg" alt="Lions, Tigers and Bears, oh my." /></a></p>
<ol>
<li>I am probably late to the party and everybody already know all about this and</li>
<li>There probably isn&#8217;t any issue here.  Just got me to thinking.</li>
</ol>
<p>I was reading the <a href="http://infosecramblings.wordpress.com/wp-admin/post.php?action=edit&amp;post=70" target="_blank">Firefox&#8217;s Super Cookies</a> post on the CERIAS Blog and it made me go hmmm.  You should go read Pascal&#8217;s post first because it is an interesting bit o&#8217; info, but here are the bits that are germane to my thoughts.</p>
<p>First:</p>
<blockquote><p><em>DOM storage allows web sites to store all kinds of information in a persistent manner on your computer, much like cookies but with a greater capacity and efficiency. </em></p></blockquote>
<p>Then:</p>
<blockquote><p><em>To find out what information web sites store on your computer using DOM storage (if any)</em></p></blockquote>
<p>and:</p>
<blockquote><p><em>You should find a file named “webappsstore.sqlite”.  To view the contents in human readable form, install sqlite3</em></p></blockquote>
<p>So, this makes me think there is a sql interface somewhere in Firefox.  In light of all the SQL injections issues recently, I just have to wonder what kind of fun might exist here.</p>
<p>Kevin</p>
<p>Photo by <a href="http://www.flickr.com/photos/annarchy1/" target="_blank">annarchy1</a></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/infosecramblings.wordpress.com/70/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/infosecramblings.wordpress.com/70/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/infosecramblings.wordpress.com/70/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/infosecramblings.wordpress.com/70/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/infosecramblings.wordpress.com/70/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/infosecramblings.wordpress.com/70/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/infosecramblings.wordpress.com/70/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/infosecramblings.wordpress.com/70/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/infosecramblings.wordpress.com/70/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/infosecramblings.wordpress.com/70/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/infosecramblings.wordpress.com/70/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/infosecramblings.wordpress.com/70/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=infosecramblings.wordpress.com&blog=3242326&post=70&subd=infosecramblings&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://infosecramblings.wordpress.com/2008/06/25/firefox-sqlite-and-dom-oh-my/feed/</wfw:commentRss>
	
		<media:content url="http://farm3.static.flickr.com/2341/2117493423_e7cf5df15e_m.jpg" medium="image">
			<media:title type="html">Lions, Tigers and Bears, oh my.</media:title>
		</media:content>
	</item>
		<item>
		<title>Interesting Information Security Bits for June 25th, 2008</title>
		<link>http://infosecramblings.wordpress.com/2008/06/25/interesting-information-security-bits-for-june-25th-2008/</link>
		<comments>http://infosecramblings.wordpress.com/2008/06/25/interesting-information-security-bits-for-june-25th-2008/#comments</comments>
		<pubDate>Wed, 25 Jun 2008 19:15:03 +0000</pubDate>
		<dc:creator>Kevin Riggins</dc:creator>
		
		<category><![CDATA[Interesting Bits]]></category>

		<category><![CDATA[adobe]]></category>

		<category><![CDATA[attack surface]]></category>

		<category><![CDATA[backtrack]]></category>

		<category><![CDATA[macosx]]></category>

		<category><![CDATA[nessus]]></category>

		<category><![CDATA[pdf]]></category>

		<category><![CDATA[trojans]]></category>

		<category><![CDATA[virtualization]]></category>

		<guid isPermaLink="false">http://infosecramblings.wordpress.com/2008/06/25/interesting-information-security-bits-for-june-25th-2008/</guid>
		<description><![CDATA[Hi there.  Here are today&#8217;s interesting bits.
From the Blogosphere.
F-secure has posted a notice about two Mac OSX trojans.
Adobe is in the news again with a patch for yet another critical PDF Reader flaw.  Head-up provide by Zero Day.
Via TaoSecurity, a post by Pascal Meunier, Virtualization Is Successful Because Operating Systems are Weak, puts [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>Hi there.  Here are today&#8217;s interesting bits.</p>
<p><b>From the Blogosphere.</p>
<p></b>F-secure has posted a notice about <a target="_blank" href="http://www.f-secure.com/weblog/archives/00001461.html">two Mac OSX trojans.</a></p>
<p>Adobe is in the news again with a patch for yet another critical PDF Reader flaw.  Head-up provide by <a target="_blank" href="http://blogs.zdnet.com/security/?p=1331">Zero Day</a>.</p>
<p>Via <a target="_blank" href="http://taosecurity.blogspot.com/2008/06/spaf-is-right-about-virtualization.html">TaoSecurity</a>, a post by Pascal Meunier,<a target="_blank" href="http://www.cerias.purdue.edu/site/blog/post/virtualization-is-successful-because-operating-systems-are-weak/"> Virtualization Is Successful Because Operating Systems are Weak</a>, puts forth an interesting way to look at virtualization.</p>
<blockquote><p><i>What it looks like is that we have sinking boats, so we’re putting them inside a bigger, more powerful boat, virtualization&#8230;</i></p></blockquote>
<p>Chris Eng at Veracode has Part 1 of <a target="_blank" href="http://www.veracode.com/blog/?p=111">Minimizing the Attack Surface</a> up.  Good read.</p>
<p><a target="_blank" href="http://security4all.blogspot.com/2008/06/installing-nessus-on-backtrack-3-final.html">Security4all</a> points us at a way to get <a target="_blank" href="http://www.voipsec.eu/?p=205">Nessus 3 installed on Backtrack 3</a>.  Very cool, but watch that new licensing.</p>
<p><b>From the Newsosphere.</p>
<p></b>Verisign <a target="_blank" href="http://www.darkreading.com/complink_redirect.asp?vl_id=6145">has been picked by Microsoft as the OpenID provider for users of HealthVault</a>.</p>
<p>The Marshall Islands, a small country in the South Pacific, was effectively <a target="_blank" href="http://www.darkreading.com/complink_redirect.asp?vl_id=6145">denied access to email by a denial of service attack</a>.</p>
<p>Yahoo! Mail was <a target="_blank" href="http://www.darkreading.com/document.asp?doc_id=157454">vulnerable to a XSS</a> attack which allowed access to confidential information.  It&#8217;s fixed now.</p>
<p>Some HSBC websites are also <a target="_blank" href="http://www.theregister.co.uk/2008/06/25/hsbc_scripting_flaws/">susceptible to XSS attacks</a>.</p>
<p>Surprise, Surprise, <a target="_blank" href="http://www.theregister.co.uk/2008/06/24/stopbadware_report/">China networks host a large number of the websites pushing malware</a>.</p>
<p>That&#8217;s it for today folks.</p>
<p>Have a good one.</p>
<p>Kevin</p>
<p>Technorati Tags: <a class="performancingtags" href="http://technorati.com/tag/macosx" rel="tag">macosx</a>, <a class="performancingtags" href="http://technorati.com/tag/trojans" rel="tag">trojans</a>, <a class="performancingtags" href="http://technorati.com/tag/pdf" rel="tag">pdf</a>, <a class="performancingtags" href="http://technorati.com/tag/adobe" rel="tag">adobe</a>, <a class="performancingtags" href="http://technorati.com/tag/virtualization" rel="tag">virtualization</a>, <a class="performancingtags" href="http://technorati.com/tag/attack%20surface" rel="tag">attack surface</a>, <a class="performancingtags" href="http://technorati.com/tag/nessus" rel="tag">nessus</a>, <a class="performancingtags" href="http://technorati.com/tag/backtrack" rel="tag">backtrack</a></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/infosecramblings.wordpress.com/69/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/infosecramblings.wordpress.com/69/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/infosecramblings.wordpress.com/69/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/infosecramblings.wordpress.com/69/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/infosecramblings.wordpress.com/69/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/infosecramblings.wordpress.com/69/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/infosecramblings.wordpress.com/69/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/infosecramblings.wordpress.com/69/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/infosecramblings.wordpress.com/69/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/infosecramblings.wordpress.com/69/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/infosecramblings.wordpress.com/69/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/infosecramblings.wordpress.com/69/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=infosecramblings.wordpress.com&blog=3242326&post=69&subd=infosecramblings&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://infosecramblings.wordpress.com/2008/06/25/interesting-information-security-bits-for-june-25th-2008/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Interesting Information Security Bits for June 24th, 2008</title>
		<link>http://infosecramblings.wordpress.com/2008/06/24/interesting-information-security-bits-for-june-24th-2008/</link>
		<comments>http://infosecramblings.wordpress.com/2008/06/24/interesting-information-security-bits-for-june-24th-2008/#comments</comments>
		<pubDate>Tue, 24 Jun 2008 18:24:32 +0000</pubDate>
		<dc:creator>Kevin Riggins</dc:creator>
		
		<category><![CDATA[Interesting Bits]]></category>

		<category><![CDATA[airpcap]]></category>

		<category><![CDATA[cryptography]]></category>

		<category><![CDATA[iam]]></category>

		<category><![CDATA[waf]]></category>

		<guid isPermaLink="false">http://infosecramblings.wordpress.com/2008/06/24/interesting-information-security-bits-for-june-24th-2008/</guid>
		<description><![CDATA[Here are today&#8217;s bits.
From the Blogosphere.
Marcin has posted a really interesting treatise at the ts/sci security blog about Web Application Firewalls.  Some really good stuff to think about.
The Princess of Antiquity continues her series on Cryptography (Non-Technical) with a post titled Earlier Forms of Cyptography.  Very well written and easy to understand with [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>Here are today&#8217;s bits.</p>
<p><b>From the Blogosphere.</b></p>
<p>Marcin has posted a really interesting treatise at the <a target="_blank" href="http://www.tssci-security.com/">ts/sci security blog</a> about <a target="_blank" href="http://www.tssci-security.com/archives/2008/06/23/web-application-firewalls-a-slight-change-of-heart/">Web Application Firewalls</a>.  Some really good stuff to think about.</p>
<p>The Princess of Antiquity continues her series on Cryptography (Non-Technical) with a post titled <a target="_blank" href="http://abbicabanding.wordpress.com/2008/06/24/earlier-forms-of-cryptography-non-technical/">Earlier Forms of Cyptography</a>.  Very well written and easy to understand with really good info.</p>
<p>Didier has given us <a target="_blank" href="http://blog.didierstevens.com/2008/06/24/quickpost-wifi-probe-request-logging-with-an-airpcap-adapter/">another tool written in python</a>, apc-pr-log, which uses the <a target="_blank" href="http://www.cacetech.com/products/airpcap_family.htm">AirPcap</a> adapter to log all probe requests with a SSID for easy viewing. Should be fun to play with.</p>
<p><b>From the Newsophere.</p>
<p></b>Whitehat Security has <a target="_blank" href="http://www.whitehatsec.com/home/news/08presssarchives/NR_funding062308.html">raised some VC cash</a>. Congrats Jeremiah.</p>
<p>Sun has released version 8 of <a target="_blank" href="http://www.darkreading.com/document.asp?doc_id=157231">Identity Manager</a>.</p>
<p>That&#8217;s it for today.  Have a good one.</p>
<p>Kevin</p>
<p>Technorati Tags: <a class="performancingtags" href="http://technorati.com/tag/waf" rel="tag">waf</a>, <a class="performancingtags" href="http://technorati.com/tag/cryptography" rel="tag">cryptography</a>, <a class="performancingtags" href="http://technorati.com/tag/airpcap" rel="tag">airpcap</a>, <a class="performancingtags" href="http://technorati.com/tag/iam" rel="tag">iam</a></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/infosecramblings.wordpress.com/68/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/infosecramblings.wordpress.com/68/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/infosecramblings.wordpress.com/68/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/infosecramblings.wordpress.com/68/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/infosecramblings.wordpress.com/68/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/infosecramblings.wordpress.com/68/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/infosecramblings.wordpress.com/68/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/infosecramblings.wordpress.com/68/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/infosecramblings.wordpress.com/68/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/infosecramblings.wordpress.com/68/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/infosecramblings.wordpress.com/68/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/infosecramblings.wordpress.com/68/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=infosecramblings.wordpress.com&blog=3242326&post=68&subd=infosecramblings&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://infosecramblings.wordpress.com/2008/06/24/interesting-information-security-bits-for-june-24th-2008/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Interesting Information Security Bits for June 23rd, 2008</title>
		<link>http://infosecramblings.wordpress.com/2008/06/23/interesting-information-security-bits-for-june-23rd-2008/</link>
		<comments>http://infosecramblings.wordpress.com/2008/06/23/interesting-information-security-bits-for-june-23rd-2008/#comments</comments>
		<pubDate>Mon, 23 Jun 2008 18:00:33 +0000</pubDate>
		<dc:creator>Kevin Riggins</dc:creator>
		
		<category><![CDATA[Interesting Bits]]></category>

		<category><![CDATA[cee]]></category>

		<category><![CDATA[cissp]]></category>

		<category><![CDATA[fortinet]]></category>

		<category><![CDATA[generalist]]></category>

		<category><![CDATA[mobile computing risk]]></category>

		<category><![CDATA[officecat]]></category>

		<category><![CDATA[pdos]]></category>

		<category><![CDATA[sourcefire]]></category>

		<category><![CDATA[specialist]]></category>

		<category><![CDATA[webappsec]]></category>

		<guid isPermaLink="false">http://infosecramblings.wordpress.com/2008/06/23/interesting-information-security-bits-for-june-23rd-2008/</guid>
		<description><![CDATA[Hi folks.  Lots of stuff today so let&#8217;s just get to it.
From the Blogosphere.
Alan over at Security Thoughts answers Dre&#8217;s post about the CISSP is on it way out.  I tend to agree with Alan more that Dre, but understand Dre&#8217;s point also.  How&#8217;s that for being wishy washy.  Go read [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>Hi folks.  Lots of stuff today so let&#8217;s just get to it.</p>
<p><b>From the Blogosphere.</p>
<p></b>Alan over at Security Thoughts <a target="_blank" href="http://securethink.blogspot.com/2008/06/cissp-is-here-to-stay-sorry-dre.html">answers</a> Dre&#8217;s post about the <a target="_blank" href="http://www.tssci-security.com/archives/2008/06/19/rip-cissp/">CISSP is on it way out</a>.  I tend to agree with Alan more that Dre, but understand Dre&#8217;s point also.  How&#8217;s that for being wishy washy.  Go read both.</p>
<p>Jeremiah asks <a target="_blank" href="http://jeremiahgrossman.blogspot.com/2008/06/top-5-questions-to-get-webappsec.html">5 questions about webappsec</a> in order to generate some conversation.  Good reading in there.</p>
<p>By way of <a target="_blank" href="http://blogs.zdnet.com/security/?p=1307">Zero Day</a>, Sourcefire has released a free tool, <a target="_blank" href="http://www.snort.org/vrt/tools/officecat.html">OfficeCat</a>, that attempts to scan Microsoft Office files for detection of possible exploits.  Very nifty.</p>
<p>Rebecca has an article up that gives us <a target="_blank" href="http://www.realtime-itcompliance.com/lost_stolen_laptops/2008/06/six_ways_organizations_can_les.htm">Sixs Ways Organizations Can Lessen Mobile Computing Risks</a>.  Good collection of things to think about.</p>
<p><a target="_blank" href="http://www.matasano.com/log/1070/updates-on-drew-yaos-terrible-ruby-vulnerabilities/">Matasano</a> has some comments available about <a target="_blank" href="http://www.ruby-lang.org/en/news/2008/06/20/arbitrary-code-execution-vulnerabilities/">several vulnerabilities in Ruby</a>.  Everybody using Ruby has some patching to do.</p>
<p>Anton is <a target="_blank" href="http://chuvakin.blogspot.com/2008/06/cee-white-paper-out-finally.html">happy</a> about the release of their <a target="_blank" href="http://cee.mitre.org/docs/Common_Event_Expression_White_Paper_June_2008.pdf">CEE (Common Event Expression) white paper</a>.</p>
<p>Jeremiah is really on a roll with the asking of interesting questions that spark some great interaction.  The question this time, &#8220;<a target="_blank" href="http://jeremiahgrossman.blogspot.com/2008/06/day-1-starting-at-beginning.html">Day 1: Starting at the beginning</a>&#8220;. Your a new hire in charge of security, what are your first steps. BTW - Congratulate him on achieving his purple belt in Brazillian Jiu Jitsu while you are there.</p>
<p><b>From the Newsophere.</p>
<p></b>Via <a target="_blank" href="http://www.darkreading.com/document.asp?doc_id=154270&amp;WT.svl=news1_1">Dark Reading</a>, a researcher is going to be demonstrating a remote permanent denial-of-service (PDOS) attack at <a target="_blank" href="http://www.eusecwest.com/agenda.html">EUSecWest</a> this week. Should be interesting.</p>
<p>Also from <a target="_blank" href="http://www.darkreading.com/document.asp?doc_id=157101">Dark Reading</a>, Fortinet has been awarded four new patents for network virtualization and security related inventions.<br /><a target="_blank" href="http://www.informationweek.com/news/security/government/showArticle.jhtml?articleID=208700876&amp;cid=RSSfeed_IWK_Security"><br />Information Week</a> has a Reuters article up that informs us that the bill shielding U.S. telephone companies from lawsuits has passed the House.</p>
<p>Well that&#8217;s it.  Have a great day.</p>
<p>KevinTechnorati Tags: <a class="performancingtags" href="http://technorati.com/tag/webappsec" rel="tag">webappsec</a>, <a class="performancingtags" href="http://technorati.com/tag/cissp" rel="tag">cissp</a>, <a class="performancingtags" href="http://technorati.com/tag/generalist" rel="tag">generalist</a>, <a class="performancingtags" href="http://technorati.com/tag/specialist" rel="tag">specialist</a>, <a class="performancingtags" href="http://technorati.com/tag/officecat" rel="tag">officecat</a>, <a class="performancingtags" href="http://technorati.com/tag/sourcefire" rel="tag">sourcefire</a>, <a class="performancingtags" href="http://technorati.com/tag/mobile%20computing%20risk" rel="tag">mobile computing risk</a>, <a class="performancingtags" href="http://technorati.com/tag/cee" rel="tag">cee</a>, <a class="performancingtags" href="http://technorati.com/tag/pdos" rel="tag">pdos</a>, <a class="performancingtags" href="http://technorati.com/tag/fortinet" rel="tag">fortinet</a></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/infosecramblings.wordpress.com/67/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/infosecramblings.wordpress.com/67/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/infosecramblings.wordpress.com/67/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/infosecramblings.wordpress.com/67/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/infosecramblings.wordpress.com/67/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/infosecramblings.wordpress.com/67/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/infosecramblings.wordpress.com/67/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/infosecramblings.wordpress.com/67/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/infosecramblings.wordpress.com/67/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/infosecramblings.wordpress.com/67/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/infosecramblings.wordpress.com/67/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/infosecramblings.wordpress.com/67/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=infosecramblings.wordpress.com&blog=3242326&post=67&subd=infosecramblings&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://infosecramblings.wordpress.com/2008/06/23/interesting-information-security-bits-for-june-23rd-2008/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Interesting Information Security Bits for June 20th, 2008</title>
		<link>http://infosecramblings.wordpress.com/2008/06/20/interesting-information-security-bits-for-june-20th-2008/</link>
		<comments>http://infosecramblings.wordpress.com/2008/06/20/interesting-information-security-bits-for-june-20th-2008/#comments</comments>
		<pubDate>Fri, 20 Jun 2008 14:36:31 +0000</pubDate>
		<dc:creator>Kevin Riggins</dc:creator>
		
		<category><![CDATA[Interesting Bits]]></category>

		<category><![CDATA[802.1x]]></category>

		<category><![CDATA[backtrack]]></category>

		<category><![CDATA[cissp]]></category>

		<category><![CDATA[cryptography]]></category>

		<category><![CDATA[dan greer]]></category>

		<category><![CDATA[macos]]></category>

		<category><![CDATA[owasp]]></category>

		<category><![CDATA[salaries]]></category>

		<category><![CDATA[social networking]]></category>

		<category><![CDATA[survey]]></category>

		<category><![CDATA[virtualization]]></category>

		<guid isPermaLink="false">http://infosecramblings.wordpress.com/2008/06/20/interesting-information-security-bits-for-june-20th-2008/</guid>
		<description><![CDATA[And another Friday dawns.  I hope yours goes well.  Here we go with today&#8217;s bits.
From the Blogosphere.
Via Alan over at StillSecure, the Aberdeen Group is looking for some data on IT Security Patch and Vulnerability Management.  To get it, they are asking for us to participate in a survey.  We get [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>And another Friday dawns.  I hope yours goes well.  Here we go with today&#8217;s bits.</p>
<p><b>From the Blogosphere.</p>
<p></b>Via Alan over at <a target="_blank" href="http://www.stillsecureafteralltheseyears.com/ashimmy/2008/06/help-an-analyst.html">StillSecure</a>, the <a target="_blank" href="http://www.aberdeen.com/">Aberdeen Group</a> is looking for some data on IT Security Patch and Vulnerability Management.  To get it, they are asking for us to participate in a <a target="_blank" href="http://click.aberdeenreport.com/?ju=fe5911727c6c067f7310&amp;ls=fdff15707465017973137674&amp;m=fef91275706402&amp;l=fecd1c767464067c&amp;s=fe1515757d6c0d747c1479&amp;jb=ffcf14&amp;t=">survey</a>.  We get a shiny report gratis if we do. I probably will.</p>
<p>There is post up over at <a target="_blank" href="http://click.aberdeenreport.com/?ju=fe5911727c6c067f7310&amp;ls=fdff15707465017973137674&amp;m=fef91275706402&amp;l=fecd1c767464067c&amp;s=fe1515757d6c0d747c1479&amp;jb=ffcf14&amp;t=">tssci-security</a> that is taking a look at a several of topics all mashed together, the value of the CISSP certification, specialist or generalist when it comes to InfoSec and a new project being put together by the OWASP group, the <a target="_blank" href="http://www.owasp.org/index.php/Category:OWASP_Certification_Project">People Certification Project</a>.  Some interesting thoughts in both the post and comments.  BTW - he references <a target="_blank" href="http://geer.tinho.net/geer.sourceboston.txt">Dan Greer&#8217;s Source Boston keynote speech</a>.  It is well worth reading several times as I believe I have noted before. </p>
<p>Looks like there are some local root shennanegins that can be excersized on a Mac with versions 10.4 and 10.5 of  Mac OS X installed.  Good old suid fun, but does it really matter?  Check out <a target="_blank" href="http://blogs.zdnet.com/security/?p=1301">Zero Day&#8217;s</a> post and come to your own conclusions.</p>
<p>The <a target="_blank" href="http://abbicabanding.wordpress.com/2008/06/20/introduction-to-cryptography-non-technical/">Princess of Antiquity</a> is tackling fairly daunting task in bringing a <a target="_blank" href="http://abbicabanding.wordpress.com/2008/06/20/introduction-to-cryptography-non-technical/">series of articles to us about cryptography</a> that are couched terms the layman can understand. The first is up and is well written.  Check it out.</p>
<p>Tom over at <a target="_blank" href="http://spylogic.net">Spylogic</a> gave a talk about <a target="_blank" href="http://spylogic.net/item/288">Online Social Networks: 5 threats and 5 ways to use them safely</a>.  He has made his presentaion available <a target="_blank" href="http://spylogic.net/downloads/online_social_networks.pdf">here</a>.</p>
<p>JJ has some good guidance for us if we are <a target="_blank" href="http://securityuncorked.squarespace.com/security-uncorked/2008/6/20/successful-8021x-every-time.html">considering the implimentaion of 802.1x.</a>  Very good stuff.</p>
<p>Via <a target="_blank" href="http://security4all.blogspot.com/2008/06/backtrack-3-final-is-released.html">Security4All</a>, <a target="_blank" href="http://www.remote-exploit.org/backtrack_download.html">Backtrack 3 Final</a> has been released.</p>
<p><b>From the Newsosphere.</p>
<p></b>Via <a target="_blank" href="http://www.networkworld.com/community/node/29120">NetworkWorld</a>, Mitchell Ashley reports to us that Red Hat has decided to develop their own virtualization platform based on the Kernel Virtual Mode which is built into the Linux kernel.  Go read his article for the reasons for this decision.</p>
<p>From <a target="_blank" href="http://hackinthebox.org/index.php?name=News&amp;file=article&amp;sid=27149">Hack in the Box</a> and <a target="_blank" href="http://www.arnnet.com.au/index.php/id;1104875200">ARN</a>, a new report is out about a skills shortage in IT positions, including security specialists, is causing salaries to rise.  Good for those down under.</p>
<p>Have a great Friday and wonderful weekend.</p>
<p>Kevin</p>
<p>Technorati Tags: <a class="performancingtags" href="http://technorati.com/tag/survey" rel="tag">survey</a>, <a class="performancingtags" href="http://technorati.com/tag/cissp" rel="tag">cissp</a>, <a class="performancingtags" href="http://technorati.com/tag/owasp" rel="tag">owasp</a>, <a class="performancingtags" href="http://technorati.com/tag/dan%20greer" rel="tag">dan greer</a>, <a class="performancingtags" href="http://technorati.com/tag/macos" rel="tag">macos</a>, <a class="performancingtags" href="http://technorati.com/tag/cryptography" rel="tag">cryptography</a>, <a class="performancingtags" href="http://technorati.com/tag/social%20networking" rel="tag">social networking</a>, <a class="performancingtags" href="http://technorati.com/tag/802.1x" rel="tag">802.1x</a>, <a class="performancingtags" href="http://technorati.com/tag/backtrack" rel="tag">backtrack</a>, <a class="performancingtags" href="http://technorati.com/tag/virtualization" rel="tag">virtualization</a>, <a class="performancingtags" href="http://technorati.com/tag/salaries" rel="tag">salaries</a></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/infosecramblings.wordpress.com/66/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/infosecramblings.wordpress.com/66/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/infosecramblings.wordpress.com/66/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/infosecramblings.wordpress.com/66/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/infosecramblings.wordpress.com/66/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/infosecramblings.wordpress.com/66/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/infosecramblings.wordpress.com/66/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/infosecramblings.wordpress.com/66/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/infosecramblings.wordpress.com/66/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/infosecramblings.wordpress.com/66/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/infosecramblings.wordpress.com/66/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/infosecramblings.wordpress.com/66/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=infosecramblings.wordpress.com&blog=3242326&post=66&subd=infosecramblings&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://infosecramblings.wordpress.com/2008/06/20/interesting-information-security-bits-for-june-20th-2008/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>