Grecs’ Weekly Infosec Ramblings for 2010-01-28
- RT @DrInfoSec New Cyber-Security liability insurance provider http://bit.ly/5q7Bnk [excluded biz R interesting group] <- Inreresting. #
- BLOGGED: Grecs’ Weekly Infosec Ramblings for 2010-01-21 http://ow.ly/16osCo #
- Get lowdown on BT4! RT @geminisecurity New blog post: Backtrack 4: The big cheese http://j.mp/7w1Jyb #novablogger #
- TOR HACKED: Whoa, well at least its fixed now. http://ow.ly/Zmhs #
- Spread the word! RT @angelinaward: #followfriday Women in #InfoSec list: http://ow.ly/Zl63 #
- RT @carnal0wnage: [Blog Spam] Ruby, Nmap XML, and Databases http://bit.ly/6s2idQ #novablogger #
- RT @rybolov: New Blog Thingie: 20 Critical Security Controls: What They Did Right & What They Did Wrong http://bit.ly/7dd6Gx #novablogger #
- BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week http://ow.ly/16oEoh #
- Just in case you haven't heard of these. RT @InfosecCareer: 106 Univs Stand Out for IA Programs http://bit.ly/8n54xd #
- Reminder. RT @baltimorenode: Sat Mitch Altman, TV-B-Gone, workshop assembling kits http://ow.ly/ZmY7 Cost of.. Starts at Noon. #
- Reminder. #mtg RT @baltimorenode: Saturday 7pm 6 mnth anniv party! We got a keg. All are welcome. Directions http://ow.ly/ZmYI #
- Reminder. #mtg RT @baltimorenode: Sat Mitch Altman, TV-B-Gone, workshop assembling kits http://ow.ly/ZmY7 Cost of.. Starts at Noon. #
- RT @mubix: So, all you #ShmooCon attendees (virtual or physical) will be attending the FireTalks and Podcasters Meetup right? #con #
- RT @taosecurity: http://bit.ly/4yetZr Attribution Using 20 Characteristics, a follow up to my post that malware analy.. #novablogger #
- HELP A BRO OUT: @taosecurity asks to help Bro open source project out by completing a short survey. http://bit.ly/7kkR9N #novablogger #
- Does anyone attending #ShmooCon have countdown timer I can use for the #Firetalks? Something big enough that the presenters could see. #
- RT @briankrebs: If researchers who reported vuln 2 MS in Aug09 had published instead, would this have been example of full disclosure win? #
- Geez, they mk it confusing. RT @StrongwaterSec: RT @WeldPond: 3 Facebook Settings Every User Should Check Now http://bit.ly/6ChQ57 #fb #
- RT @StrongwaterSec: RT @WeldPond: The 3 Facebook Settings Every User Should Check Now http://bit.ly/6ChQ57 #
- This is hilarious! RT @dallendoug movie buff couples take note RT @NguyetVuong: prolly best Save Date invite ever seen. http://bit.ly/6BzOXr #
- TRIMMING PATCH MGMT TIME: Interesting read over at @DarkReading. And it only takes 4 steps.
http://ow.ly/Zygw # - This would be nice. RT @manicode @mckt_: @jeremiahg R we talking a/b move 2 all-SSL web? That'd solve a lot of problems. 1 can dream.. #
- In case U missed it, Top 3 NoVA Infosec Blog Posts of the Week http://ow.ly/16oSxM #
- Fingers crossed. RT @gdead: The #shmoocon #tf2 tourney dry run is tomorrow. Wish us (and the electrical circuits in my house) luck. #
- #totw RT @bobgourley Was reminded of this .. yesterday: "Excellence is achieved by the mastery of the fundamentals" – Vince Lombardi #
- RT @briankrebs Upd 4 Shockwave Player. What's diff b/t Shockwave, Flash, Shockwave Flash & Shockwave Player? http://bit.ly/7k22II #
- RT @gdead #shmoocon #tf2 is going full throttle (including python tracebacks) http://yfrog.com/3243292228j #con #
- Woot! RT @rybolov http://twitpic.com/zexn5 – My decorated #AppSecDC conference bag. #
- Tweetup Apps – CalendarTweet http://ow.ly/ZPRC & TwtVite http://ow.ly/ZPRY. Thought @falconsview @Shpantzer might b interested. #
- CalendarTweet seems little better as you can do most functions through Twitter vs going to their website. Enjoy .. @falconsview @Shpantzer! #
- CALENDARED: CapSecDC Meetup http://bit.ly/52oh1O http://bit.ly/nipcal #
- CALENDARED: SANS WhatWorks in Incident Detection & Log Management Summit http://bit.ly/5xV1e2 http://bit.ly/nipcal #
- CALENDARED: SANS WhatWorks in Virtualization & Cloud Computing Summit http://bit.ly/6xvsKU http://bit.ly/nipcal #
- CALENDARED: SANS What Works in Forensics & Incident Response Summit http://bit.ly/4HImdM http://bit.ly/nipcal #
- CALENDARED: SANS What Works in Pen Testing & Ethical Hacking Summit http://bit.ly/6S0rMj http://bit.ly/nipcal #
- Finally getting around to updating consolidated novabloggers feed. #
- And finally here is a shortened Feedburner feed for everyone that I know of: http://feeds.feedburner.com/nipnovabloggers #
- If you look on right side of http://bit.ly/nipsite I've include everyone in the NoVA Bloggers area. Let me know if I missed U. #
- Yahoo Pipes rulz.
# - Note: Updated feed url. RT @grecs: And finally here is a shortened Feedburner feed for..: http://feeds.feedburner.com/nispnovabloggers #
- And updated site bitly link. Darn bitly messen things up. RT @grecs: If you look on right side of http://bit.ly/nispsite I've include eve.. #
- RT @gdead: Spread the word. The #tf2 cheater tourney is going to be awesome. We'll have some cheats but bring yours if you can #shmoocon #
- CALENDAR UPD: ICANN Public Meetup http://bit.ly/73NUPB http://j.mp/nispcal #
- BLOGGED: Where You Want to Be This Week for 2010-01-25 http://ow.ly/16pEX5 #
- RT @taosecurity: 5 star review of Network Maintenance and Troubleshooting Guide, 2nd Ed posted http://bit.ly/4HRY6e #novablogger #
- Interesting. RT @DrInfoSec New Ponemon cost-of-breach report: $204/record in 2009 http://bit.ly/6CkZrk [up from $202 in 2008] #
- BLOGGED: Where You Want to Be This Week for 2010-01-25 http://ow.ly/16pRro #
- RT @taosecurity: Dino's wrong http://bit.ly/8WX7ic Exploits R skirmishes in campaign. Threat rm is prob. http://bit.ly/5tO0i1 #novablogger #
- RT @baltimorenode: Reminder: This Weds @ 7pm Baltimore Opensource Meetup http://ow.ly/VMer #meet #
- Start rumor & exploit it. Nice. <shakes head> RT @DarkReading: Johnny Depp is NOT dead: don't watch malware-laden vid. http://ow.ly/10df3 #
- Interesting. RT @briankrebs: A peek inside one of the more popular browser exploit kits. the stats might surprise you: http://bit.ly/8KkJ69 #
- RT @SecuraBit_Jay @SecuraBit: Do U want 2 sponsor Podcasters Meetup at Shmoocon? They could use cash & schwag! http://bit.ly/7DnHjt #
- Unfortunately, #podcastresmeetup overlaps with #firetalks on Sat. Maybe we can work something out. #
- RT @taosecurity: Props 2 @rmogull 4 his post http://bit.ly/6EPLdJ It’s Called Espionage not Information Warfare; 7 good insights 2 share #
- Sounds nice .. still complicated. RT @SCMagazine: Securing the network fabric versus the perimeter http://bit.ly/7XNmJR #
- RT @mpbailey1911: RT @leighhollowell: 4 people w/ extra shmoocon tickets i hear there R people looking 4 them on shmoocon facebook grp #con #
- RT @baltimorenode: Reminder: Intro to Processing programming class tomorrow at 7. #mtg #
- From novahackers list, 2 local security #job s with Evolver. See http://bit.ly/5GRYzs for details. #
- RT @ThisIsHNN: RT @2600 The Next HOPE Call For Speakers is out! http://www.hope.net/speak – Spread The Word! #
- RT @sintixerr @capsecdc CapSec kicks off 2010! Come join us on Wed 27th at Stetson's! (1610 U St NW) http://bit.ly/7ZDiGy #mtg #
- RT @mubix: RT @hevnsnt: ShmooCon 2010 Barcode for sale: ALL PROCEEDS TO CHARITY. http://bit.ly/6HeBOg (Pls RT) #IhackedHaiti #con #
- RT @danphilpott: NIST released SP 800-38E Recommendation for Block Cipher Modes of Operation: XTS-AES Mode http://bit.ly/8jHY6g #
- In case U missed it, Where You Want to Be This Week for 2010-01-25 http://ow.ly/16q7dv #
- MBR WORM: Haven't seen this in while. Overwrites MBR, making data recovery diff. Watch out 4 IQ test.
http://bit.ly/7JnC7s # - RT @capsecdc Reminder that CapSec is this Wed! Stetson's "after work" then U Street & beyond! http://bit.ly/7ZDiGy #meet #
- RT @capsecdc & stayed tuned 4 info about ye 1st Annual CapSec/Shmoocon Pub Crawl, which we are currently trying to hatch. #con #
- NOVA BLOGGER POST: Simply Unfair: The NFL OT Rules http://bit.ly/6ci5tp #novablogger #
- NOVA BLOGGER POST: Non-Fiction: The 50th Law & Managing Softly http://bit.ly/8vINZd #novablogger #
- NOVA BLOGGER POST: Where You Want to Be This Week for 2010-01-25 http://bit.ly/5y40GP #novablogger #
- NOVA BLOGGER POST: Look Beyond the Exploit http://bit.ly/87lvwo #novablogger #
- NOVA BLOGGER POST: More work on research http://bit.ly/5QolCZ #novablogger #
- TECHCRUNCH OWNED: In case you missed it. http://bit.ly/4yFC4F #
- PIC OR DIDN'T HAPPEN: RT @ThisIsHNN RT @mikkohypponen TechCrunch defaced. Pic here: http://twitpic.com/ztrsy #
- MORE APT: It's ExxonMobil, ConocoPhillips and Marathon this time. Looking 4 pricing info? http://bit.ly/7HaMVx #
- Interesting. RT @DrInfoSec Attackers sent Google workers IMs from 'friends' http://bit.ly/6O1ckO [good 4 #awareness] #
- So true. RT @FSLabs: #Blog Twitter as a Professional Tool http://bit.ly/5JttJe #
- RT @baltimorenode: Blog post with video of the workshop with @maltman23: http://ow.ly/10yYy Thanks again Mitch for coming by! #meet #
- What would U do if U won the lottery? @mubix collected/analyzed a few responses. http://bit.ly/4Fo1ap #
- What would U do if U won the lottery? @mubix collected/analyzed a few responses. http://bit.ly/4Fo1ap #novablogger #
- NOVA BLOGGER POST: Security (CAN BE) an ART not a SCIENCE http://bit.ly/8LDHSK #novablogger #
- NOVA BLOGGER POST: Social Engineering via Social Networks http://bit.ly/84T5OW #novablogger #
- Won't b going but $200 is $200. RT @Shpantzer: Discount code for RSA conference ($200 savings for new registrations): PRMSP8211EEP #
- Nice. RT @sans_isc: VMware vSphere Hardening Guide Draft posted 4 public review http://bit.ly/4Fpvlf #
- MAC/IPHONE SECURITY REPORT: @DrInfoSec pointed out nice article sum report. Looks good fr Apple side of house. http://bit.ly/bwaHB9 #
- #meet RT @baltimorenode: 7pm 2night FREE intro 2 Processing class. Bring laptop if U have 1. http://bit.ly/a6WRI1 #
- Interesting browser stats graphic pointed out by @briankrebs. Looks plain at 1st but move your mouse over it. http://bit.ly/cJIQZP #
- That's DC Org of Hackers. #meet. RT @mubix: DoH! is meeting THIS WEDS Jan 27th at 7pm! Again at GWU/Foggy Bottom. #
- Reminder: ISSA Baltimore Meetup @ Wed Jan 27 4:30pm – 6:30pm (NovaInfosecPortal.com Calendar) #
- Reminder: ICANN Public Meetup @ Wed Jan 27 5pm – 7pm (NovaInfosecPortal.com Calendar) #
- Reminder: CapSecDC Meetup @ Wed Jan 27 5pm – 8pm (NovaInfosecPortal.com Calendar) #
- NOVA BLOGGER POST: The cost of a compromised record http://bit.ly/bmxLU8 #novablogger #
- Nice. RT @jack_mannino: Any1 else think Gary Coleman looks like Yoda in this pic? "Talking a/b what Willis, U R?" http://bit.ly/do4iee #
- RT @electricfork: charmsec 21 is this Thur. Nxt milestone will b 25 where Charmsec gets 2 rent cars & get better car insurance rates. #meet #
- RT @mubix: RT @ashimmy: #ShmooCon podcaster meet up sponsors needed http://bit.ly/bVcdob #con #
- Sweet. RT @mubix @achillean: #shodan index updated & new search option: os. filter results by OS (experimental) http://bit.ly/auZGRq #
- Reminder: DC Organization of Hackers Meetup @ Wed Jan 27 7pm – 10pm (NovaInfosecPortal.com Calendar) #
- GOOGLE TOOLBAR TRACKING: Privacy settings can b tricky – @regsecurity. Tracks U when set 2 disabled. http://bit.ly/aWbjyh #
- NOVA BLOGGER POST: Energy Sector v China http://bit.ly/a1Btqx #novablogger #
- Writing tomorrow's #shmoocon #firetalks post… #
- Ok, 2 posts for tomorrow ready to go out. Hope everyone enjoys them.
# - RT @pauldotcom: Bid on Shmoocon ticket http://is.gd/77D9T All proceeds donated to Red Cross to help victims in Haiti #con #
- Lot's of ShmooCon #con updates from Security Justice Episode 21. http://bit.ly/9NopTG. #
- RT @regsecurity Potty mouth hackers pwn TechCrunch (again) http://bit.ly/8YLbMg #
- NOVA BLOGGER POST: US oil industry hit by cyberattacks: Was China involved? http://bit.ly/b0jxcy #novablogger #
- Reminder: NoVA Hackers Association Meetup @ Thu Jan 28 11:30am – 1pm (NovaInfosecPortal.com Calendar) #
- NOVA BLOGGER POST: We Haz Sponsors (a.k.a., Firetalks – Update 3) http://bit.ly/cxcgWM #novablogger #
- BLOGGED: We Haz Sponsors (a.k.a., Firetalks – Update 3) http://ow.ly/16qYT2 #
- RT @baltimorenode: Opensource Meetup tonight at 7pm. http://bit.ly/cmym93 #meet #
- BLOGGED: NovaInfosecPortal ShmooCon Internship http://ow.ly/16r5sh #
- NOVA BLOGGER POST: NovaInfosecPortal ShmooCon Internship http://bit.ly/bVidex #novablogger #
- XSS/SQLi BARCODE CHEATSHEET: Fr PDC mailing list & thought @rybolov & @jack_mannino would b interested in. http://bit.ly/cWQoZi #
- RT @dallendoug: RT @capsecdc CapSec is now in session! #
- RT @jack_mannino: Shmoocon Firetalks prizes posted at NovaInfoSecPortal.com http://bit.ly/c1ljyx #con
# - Reminder: CharmSec Meetup @ Thu Jan 28 7pm – 10pm (NovaInfosecPortal.com Calendar) #
- In case U missed it, NovaInfosecPortal ShmooCon Internship http://ow.ly/16rdCl #
- In case U missed it, We Haz Sponsors (a.k.a., Firetalks – Update 3) http://ow.ly/16rdCn #
- NOVA BLOGGER POST: Review of Professional Penetration Testing Posted http://bit.ly/cHgQvb #novablogger #
- BLOGGED: NovaInfosecPortal ShmooCon Internship http://bit.ly/bVidex #
- BLOGGED: We Haz Sponsors (a.k.a., Firetalks – Update 3) http://bit.ly/cxcgWM #
- RT @electricfork: Charmsec is tonight. #
- RT @mubix: NoVA Hackers Luncheon today ( some restrictions apply, see site for details: http://bit.ly/9b8pQ3 ) #
- CONGRESSIONAL SITES DEFACED: Yeah this kind of stuff still goes on. Looks like Joomla vuln. http://bit.ly/bMauJS #
- RT @DrInfoSec @Hacksec: Today is National Privacy Day. #Infosec & #Privacy need 2 communicate the importance. http://bit.ly/cPJgRF #
- What's this BHDC thing U speak of? Did you mean #Shmoocon?
#con RT @dionthegod @_snagg: Info a/b my BHDC talk http://bit.ly/djijZV # - RT .. RT @electricfork: Charmsec is tonight. #meet #
- RT .. RT @mubix: NoVA Hackers Luncheon 2day ( some restrictions apply, see site for details: http://bit.ly/9b8pQ3 ) #meet #
- #NOVABLOGGER: Clive Thompson on Obscurity http://bit.ly/cPRAHi http://j.mp/nispblog #
- First BHDC article I've come across .. about how researchers will review a new class of webapp vulns. http://bit.ly/c6Uy57 #con #
- RT @CSOonline: Please welcome our newest guest blogger, @Shpantzer! His blog is The CSO Advisor: http://bit.ly/dbfFcv #
- RT @angelinaward: RT @syngress: Want to go to #shmoocon but don't have barcode? Stay tuned 4 details on how 2 win 1 fr @syngress!! #con #
- RT @ThisIsHNN: RT this message & follow @syngress 2 b entered to win barcode 4 #shmoocon! Winner pulled at random on 1/31-must b avail 2 go! #
- RT @kodefupanda: Lost dog found at #woodbridge #va high school. Msg me if yours. Please rt http://yfrog.com/1yoqkj #
- TAKING A BREAK: @rybolov is breaking from his blog for a few weeks .. for a good cause. http://bit.ly/d5SasT #novablogger #
- SCHNEIER'S OP-ED: @moranned presents 4 some reading. http://bit.ly/dwSd5m #novablogger #
- SQUIL ON UBUNTU: @taosecurity discusses trying to get this setup working. http://bit.ly/cNoxLz #novablogger #
- Just for completeness even though it's too late. Ok, guys no more blogging tonight.
http://bit.ly/90WNr1 #novablogger # - Nice. RT @iamnowonmai: Cool flickr photo set. Old news to everyone but me: http://bit.ly/aqhjN8 #
- More press on same BHDC talk I mentioned earlier. http://bit.ly/aA8yiR #con #
- Rule #1 for RT Contests: Keep the original tweet short.
@syngress @angelinaward #



BLOGGED: Grecs’ Weekly Infosec Ramblings for 2010-01-28 http://bit.ly/ahUgzv
This comment was originally posted on Twitter
BLOGGED: Grecs’ Weekly Infosec Ramblings for 2010-01-28 http://bit.ly/ahUgzv
This comment was originally posted on Twitter
Security Blogger Grecs’ Weekly Infosec Ramblings for 2010-01-28: RT @DrInfoSec New Cyber-Security liability insura… http://bit.ly/d1qF4t
This comment was originally posted on Twitter
Grecs’ Weekly Infosec Ramblings for 2010-01-28 http://bit.ly/d2LW41 #Security
This comment was originally posted on Twitter
Grecs’ Weekly Infosec Ramblings for 2010-01-28 http://bit.ly/d2LW41 #Security
This comment was originally posted on Twitter
Security news: Grecs’ Weekly Infosec Ramblings for 2010-01-28 http://ow.ly/16rT32
This comment was originally posted on Twitter
HEADLINE: Grecs’ Weekly Infosec Ramblings for 2010-01-28 | NovaInfosecPortal.com – http://bit.ly/csjaBv
This comment was originally posted on Twitter
HEADLINE: Grecs’ Weekly Infosec Ramblings for 2010-01-28 | NovaInfosecPortal.com – http://bit.ly/csjaBv (via @logzilla)
This comment was originally posted on Twitter
#NOVABLOGGER: Grecs’ Weekly Infosec Ramblings for 2010-01-28 http://bit.ly/ahUgzv http://j.mp/nispblog
This comment was originally posted on Twitter
In case U missed it, Grecs’ Weekly Infosec Ramblings for 2010-01-28 http://ow.ly/16shxV
This comment was originally posted on Twitter
In case U missed it, Grecs’ Weekly Infosec Ramblings for 2010-01-28 http://ow.ly/16shxW
This comment was originally posted on Twitter
IN CASE U MISSED IT: Grecs’ Weekly Infosec Ramblings for 2010-01-28 http://bit.ly/ahUgzv
This comment was originally posted on Twitter