Grecs’ Weekly Infosec Ramblings for 2009-10-15
If you’re not already following the NovaInfosec Twits and are wondering where to get the best tweets about security in the NoVA, DC, and MD area, look no further than this post.
Posted every Friday, our “Infosec Ramblings” post takes the best security tweets from the past week and puts them into one easy to digest post.
If you don’t want to wait an entire week to read the best security tweets, be sure to stop by @grecs or learn more about the NovaInfosec Twits.
There seemed to be quite a few meetups this past week. Did you get to attend any of them?
- HacDC Infosec Meetup 10-12 http://ow.ly/tYsi c ths #mtg & othrs via iCal http://bit.ly/nipcal #
- Baltimore Node Meetup Oct 13 http://ow.ly/u46U C ths nova #mtg & othrs http://bit.ly/nipmtg #
For those of you that don’t know, we have some pretty awesome infosec bloggers in the local area. You can check out some of their articles below.
- TRAFFIC TALK 7: @taosecurity ’s Traffic Talk was posted last week. This one deals with NetFlow. http://ow.ly/tuFO #novablogger #
- WORK FOR @TAOSECURITY: Well not local .. but in Michigan. And not for his blog .. but GE. http://ow.ly/tuGC #novablogger #
- MAY HACKIN9 MAG: @taosecurity notes the 5/2009 edition just came out and points out a few goodies. http://ow.ly/tuHj #novablogger #
- VISIBILITY: @taosecurity writes up a post on technical visibility levels. Interesting. http://ow.ly/tuIi #novablogger #
- AUGMENTING AERIAL MAPS: @moranned talks a/b augmenting maps w/ dynamic info & contemplates privacy impact. http://ow.ly/tuJ0 #novablogger #
- BALANCING ACT: @moranned ’s guest speaker on balancing patient privacy versus info sharing benefits. http://ow.ly/tuK0 #novablogger #
- NOT FAN OF WEBAPP TESTING: Fr @carnal0wnage .. unless U have high traffic site, it really stands out. http://ow.ly/tuL3 #novablogger #
- JTR WORDLISTS: @carnal0wnage talks a/b creating additional wordlists 2 try when password cracking. http://ow.ly/tuM9 #novablogger #
- MALWAREBYTES: Recommended tool fr @marcusjcarey on getting rid of malware on your Windows computer. http://ow.ly/tuNo #novablogger #
- OWASP PODCAST WITH @RYBOLOV: Yes, ice fishing dude (& much more 2 DC infosecers) made it on podcast. http://ow.ly/tuOT #novablogger #
- CLOUD LOLCATS: Bet you can’t guess who put this post out. (no peeking) http://ow.ly/tuPT #novablogger #
- PACKET CAPTURES: @mubix has been off grid lately. Now w/ new site & all, he’s back – pointing out nice vid. http://ow.ly/tuQO #novablogger #
- RT @geminisecurity: New blog post: SimpleCAPI and the Case of the Disappearing KeySet http://bit.ly/fhuGA #novablogger #
- RT @mubix: Blogged APPLE: A Modern DAY WILLY WONKA STORY: Yes, I just called everyone who works.. http://bit.ly/MwNiS #novablogger #
- BURP NIKTO TIP: Just reading some of @mubix ’s blog. Here’s post on importing the Nikto db. http://ow.ly/u59t #novablogger #
- KEEP UPDATED W/ THOSE PATCHES: @geminisecurity has new post on how 2 keep various systems up 2 date. http://ow.ly/uhOF #novablogger #
- SUNBURN ON CLOUDY DAY: Post fr @marcusjcarey. “Cloud Computing won’t keep your org fr getting burned.” http://ow.ly/uAdA #novablogger #
- JMU CYBER DEFENSE COMPETITION: Nice summary fr @geminisecurity. Get planning for 2010! http://ow.ly/uAnG #novablogger #
- NSM: @taosecurity Q&A time.. Reader asks for recommended products. http://ow.ly/uHId #novablogger #
- DISSECTING THE HACK BOOK REVIEW: @marcusjcarey gives a thumbs up! http://ow.ly/u5b7 #novablogger #toread #
In case you missed them, here were some of our blog posts from this week.
- BLOGGED: Grec’s Weekly Infosec Ramblings for 2009-10-08 http://ow.ly/15TJf9 #
- BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week http://ow.ly/15TSJL #
- BLOGGED: Grec’s Weekly Infosec Ramblings for 2009-10-09 http://ow.ly/15TTre #
- BLOGGED: Where You Want to Be This Week – 10-12 http://ow.ly/15UnSh #
- BLOGGED: HacDC Infosec Meetup Today, 10-12: Microcontroller Mondays http://ow.ly/15Up3r #
- BLOGGED: Baltimore Node Meetup Tomorrow, 10-13: Normal Meeting http://ow.ly/15Uqh6 #
- BLOGGED: HacDC Infosec Meetup Monday, 10-19: Microcontroller Mondays http://ow.ly/15UD0E #
- BLOGGED: ISACA – CM Chapter Infosec Meetup Event – Tuesday, 10-20: Establishing a Cost-Effective Application Securi… http://ow.ly/15UFZQ #
- BLOGGED: Baltimore Node Meetup Tuesday, 10-20: Normal Meeting http://ow.ly/15UTdi #
- BLOGGED: Baltimore Node Meetup Tuesday, 10-21: Learn to Solder and Build A Multimeter http://ow.ly/15UVo5 #
- BLOGGED: InfraGard – NCMA Chapter Infosec Meetup Event – Wednesday, 10-21: State of the Hack http://ow.ly/15UVo7 #
- BLOGGED: CharmSec Infosec Meetup Event – Thursday, 10-22: Normal Meeting http://ow.ly/15V8il #
You can also keep yourself busy with these interesting newsbites:
- FBI DIRECTOR SPOOKED: @briankrebs summarized this recent story based on a speech he gave. No e-banking for him. http://ow.ly/tuty #
- PHISHPHRY: On the other hand the FBI did good here according to @DarkReading. Largest indictment ever! http://ow.ly/tuur #
- Nice article on @DarkReading fr @jeremiahg. Being reactive is way of life 4 most. Being “proactive” is often too hard. http://ow.ly/tuxg #
- Interesting. Does make ISP’s respons now? RT @briankrebs: Comcast Trials Browser Alerts 4 Bot-Infected Customer PCs http://bit.ly/ZjEDt #
- Good 2 know. RT @IBMFedCyber: 3rd Qtr Threat report out on ISS – Phising is Back Baby! Gov targets on rise: http://bit.ly/iqZM0 #
- U beat @danphilpott! RT @IBMFedCyber: NIST IR 7628, Smart Grid CyberSec Strat & Reqs, is avail 4 public cmt. http://bit.ly/4FjVuQ #
- E-BANKING 1: @briankrebs suggests using alt non-Windows PC for banking. Interesting but usability issues. http://bit.ly/49SfxO #
- E-BANKING 2: In 2nd art @briankrebs suggests doing on LiveCD. Better but avg usr prob wouldn’t go through trouble. http://bit.ly/3f5kpS #
- Good for all those local bloggers out there. RT @DrInfoSec: RT @teksquisite #Google Helps Webmasters Spot Malware http://bit.ly/d1GPH #
And if you still have some time after all of that, why not take 5 minutes to check this out?
- RT @danphilpott: NIST released an errata of NIST SP 800-53 Rev 3 fixing two small errors I identified: http://bit.ly/9bF2D (PDF) #
Well, that’s all for this week. Be sure to follow us @grecs for more great tweets during the week!



BLOGGED: Grecs’ Weekly Infosec Ramblings for 2009-10-15 http://ow.ly/15VfqW
This comment was originally posted on Twitter
BLOGGED: Grecs’ Weekly Infosec Ramblings for 2009-10-15 http://ow.ly/15VfqV
This comment was originally posted on Twitter
Security Blogger Grecs’ Weekly Infosec Ramblings for 2009-10-15: If you’re not already following.. http://bit.ly/OWRw3
This comment was originally posted on Twitter