Grecs’ Weekly Infosec Ramblings for 2009-11-05
If you’re not already following the NovaInfosec Twits and are wondering where to get the best tweets about security in the NoVA, DC, and MD area, look no further than this post.
Posted every Friday, our “Infosec Ramblings” post takes the best security tweets from the past week and puts them into one easy to digest post.
If you don’t want to wait an entire week to read the best security tweets, be sure to stop by @grecs or learn more about the NovaInfosec Twits.
There seemed to be quite a few meetups this past week. Did you get to attend any of them?
- RT @baltimorenode Tomorrow come bend some circuits w/ us. 1pm $10 at the door, $5 in advance http://ow.ly/xK4d #mtg #
- RT @hacdc New post: November DorkbotDC Meeting this Tuesday 7pm! http://tinyurl.com/yhwwe3y #mtg #
- Reminder: Baltimore Node Meetup – Regular Meeting 11/03 + ths #mtg & othrs via iCal http://bit.ly/nipcal #
- Reminder: HacDC Meetup – Microcontroller Mondays C ths nova #mtg & othrs http://bit.ly/nipmtg #
- RT @marcusjcarey DojoSec streaming Live tonight at 6:00PM http://live.saecur.com/dojo... #con #mtg #
- RT @baltimorenode Weekly Meeting tonight @ 7:30. Agenda: http://ow.ly/yVLu #mtg #
If you don’t have time to make it to any of the weekly security meetups, why not try attending one of these upcoming conferences?
- RT @mubix RT @gdead: RT @tf2shmoo The #shmoocon TF2 and TF2 cheater tourneys announced. Get your hax on. http://bit.ly/4C6Fw0 #con #
- REMINDER: ShmooCon Tics go on sale tomorrow at noon! Remember to change your clocks tonight too. http://ow.ly/y3ys #con #
- RT @marcusjcarey: Bookmark DojoCon 2009 Live Stream – Nov 6-7 2009 – http://live.saecur.com/dojocon/ #con #
- RT @marcusjcarey: Follow @DojoCon to ask the speakers/panels questions via Twitter during #DojoCon #con #
- Take a read! #con RT @shmoocon: Changes made 2 ticket purchasing process. Pls rev so U R rdy. https://www.shmoocon.org/news.html #
- REMINDER: ShmooCon Tics go on sale at noon! This is one of 1000 tweets out there like thus now. http://ow.ly/y3ys #con #
- RT @bobgourley A live webcast of today’s INSA and @HSPI cyber deterrence symposium will b at: http://j.mp/3klE6Y #cybersecurity #con #
- RT @TrustBearer Team TrustBearer – at the Smart Cards in Government conference in Washington, D.C. http://bit.ly/3J1gV3 #con #
- RT @marcusjcarey Thanks to @pauldotcom for sponsoring DojoCon and Live Stream http://live.saecur.com/dojocon/ #con #
- APPSECDC INFO: @rybolov has written up a post 4 this #con next week. Check out the themes, man! http://ow.ly/zmsj #novablogger #
- RT @AppSecDC09 Less than one week to go to #OWASP #AppSecDC. Check out our revised schedule here: http://bit.ly/1AiQVp #con #
For those of you that don’t know, we have some pretty awesome infosec bloggers in the local area. You can check out some of their articles below.
- BIG BROTHER’S DB: @moranned ponders if spending so much $ to let so much data fall to floor is worth it. http://ow.ly/xsqw #novablogger #
- WEBAPP HACKER’S HANDBOOK: @taosecurity is back in action w/ book revs. Here’s 1st 1 he gives 5 stars 2. http://ow.ly/xsuQ #novablogger #
- SQL INJECTION ATTACKS & DEFENSE: Wow, another 5 star book review from @taosecurity. http://ow.ly/xsxL #novablogger #
- WEB SEC TESTING COOKBOOK: Another 5 star review. Has someone hacked @taosecurity ’s blog? http://ow.ly/xsyZ #novablogger #
- HACKING EXPOSED WEB2.0: @taosecurity gives 3 stars to this book. Just doesn’t compare 2 competition. http://ow.ly/xsBI #novablogger #
- WHATWORKS IN INCIDENT DETECTION: Darn missed discounted reg date 4 #con @taosecurity is organizing. http://ow.ly/xsFb #novablogger #
- THOUGHTS ON CLOUD A6: @taosecurity does his usual analysis. Nice read. http://ow.ly/xsGi #novablogger #
- TECHNO FORENSICS SUMMARY: Nice write up by @geminisecurity on this #con. http://bit.ly/3yzTBB #novablogger #
- RT @taosecurity Ken Bradley & I will do Webcast 4 SANS on 11/2 at 1pm EST on pro incident detection http://bit.ly/2zAnMM #novablogger #
- RT @taosecurity Check out my post http://bit.ly/2vxJjN 2 c latest speakers 4 SANS Incident Detection Summit 12/9-10 #con #novablogger #
- HOSPITAL THOUGHTS: @falconsview spent night in hospital & wrote up his thoughts. They do keep it damn cold. http://ow.ly/zmp6 #novablogger #
- RT @mubix: Metasploit Blends In (Ninja style): http://bit.ly/26z7D1 #novablogger #
In case you missed them, here were some of our blog posts from this week.
- BLOGGED: Grecs’ Weekly Infosec Ramblings for 2009-10-29 http://ow.ly/15YfMr #
- BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week http://ow.ly/15YlQB #
- BLOGGED: ShmooCon Infosec Conference Event http://ow.ly/15YqXg #
- BLOGGED: New NoVA Group – NoVA Hackers Association http://ow.ly/15YN22 #
- BLOGGED: Where You Want to Be This Week (11-02) http://ow.ly/15YUWO #
- BLOGGED: Upcoming Conferences – November, December, January http://ow.ly/15YUWQ #
- BLOGGED: Tough Decisions for the Calendar http://ow.ly/15ZEHl#
- BLOGGED: Movember – Team Infosecers http://ow.ly/15Zabq #
You can also keep yourself busy with these interesting newsbites:
- RT @sans_isc [Diary] New vs of NIST 800-41, Firewalls & Firewall Policy Guidelines, (Fri, Oct 30th) http://bit.ly/1wwSws #
- Looks like hill b getting dose of own meds. RT @moranned Hill 2 rev its cybersec policies b/c of recent breach. http://bit.ly/15GDXz #
- Take a read! RT @shmoocon: Changes have been made 2 ticket purchasing process. Pls rev so U R rdy. https://www.shmoocon.org/news.html #
- Interesting. More protection for us.. “Kaspersky tool detects malware in Twitter links” http://bit.ly/3o8E0f #
- CRYPTO-GRAM: Missed this earlier this month. Always a good read. http://bit.ly/1E7N8n #
- Thought provoking. RT @sans_isc Password rules: Change them every 25 years, (Mon, Nov 2nd): While there cer.. http://bit.ly/3oEiSP #
- Probably worth a read. RT @regsecurity Microsoft security report shows worms are returning http://bit.ly/4C83k3 #
- More password change thoughts. RT @DarkReading @TechWebSecurity Make Password Changes Like Clockwork @NetEvolution http://bit.ly/15wWti #
- RT @danphilpott NIST rel ITL 2009-10 Protecting Info Sys w/Firewalls: Rvsd Guidelines on Firewall Tech & Policies http://bit.ly/28Dbro #
- RT @danphilpott NIST released IR 7617 Mobile Forensic Reference Materials: A Methodology and Reification http://bit.ly/2aWiGk (PDF) #
- RT @danphilpott NIST has the USGv6 Testing Program (IPv6 for US Gov) info up for comment; SP 500-281, 500-273: http://bit.ly/FKGrU #
- Good points – more than just iPhone. RT @907tothe703 RT @securityshell: Turn off SSH on your jailbroken iPhone! http://bit.ly/3k7ubM #
- RT @briankrebs Spike in Social Media Malware, Phishing Attacks http://bit.ly/25BZ5I #
- Wonder if this is what happened to T-Mobile RT @regsecurity Whitehall plans ‘White Noise’ phone network collapse http://bit.ly/CvHYx #
- More on DAM. RT @DarkReading What the heck DAM does: http://bit.ly/rliqx #
- RT @marcusjcarey RT @mroesch: RT @VRT_Sourcefire: DoJoSec and DoJoCon VRT Information http://bit.ly/1eckUG #mtg #
- RT @mubix RT @jeremiahg: Success! It works! “Tutorial: How to Tether on an iPhone 3G or 3GS running OS 3.1.2″ http://bit.ly/3NmWKP #
- Nother chink in the armor. RT @regsecurity Tech titans meet in secret to plug SSL hole http://bit.ly/1fGA6a #
- Interesting new service. What if your acct gets hacked? Mmmm? RT @regsecurity Google launches privacy Dashboard http://bit.ly/1uyPTA #
- AppSecDC getting some press. @CSOonline @BillBrenner70: 6 Steps to Pull Appsec Back to Future (OWASP/AppSec preview): http://ping.fm/K1VQL #
- More fun for next week. RT @SCMagazine Microsoft to deliver six patches covering 15 flaws http://bit.ly/2vleH5 #
Well, that’s all for this week. Be sure to follow us @grecs for more great tweets during the week!



BLOGGED: Grecs’ Weekly Infosec Ramblings for 2009-11-05 http://ow.ly/15ZM9q
This comment was originally posted on Twitter
BLOGGED: Grecs’ Weekly Infosec Ramblings for 2009-11-05 http://ow.ly/15ZM9p
This comment was originally posted on Twitter
BLOGGED: Grecs’ Weekly Infosec Ramblings for 2009-11-05 http://ow.ly/15ZW10
This comment was originally posted on Twitter
BLOGGED: Grecs’ Weekly Infosec Ramblings for 2009-11-05 http://ow.ly/15ZW11
This comment was originally posted on Twitter