If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our “Infosec Ramblings” post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @grecs Twitter account.
- #CON 2010 Annual Cybersecurity & Homeland Defense Symposium http://j.mp/dqI8X1 (via @technogeezer) #
- Boy, 9, accused of hacking into Fairfax schools’ computer system http://j.mp/cFammy (via @jaysonstreet) [Was BlackBoard webapp.] #
- #NOVABLOGGER: “Cyber insecurity is the paramount national security risk.” http://bit.ly/bg5UfE http://j.mp/nispblog #
- #NOVABLOGGER: Top 3 NoVA Infosec Blog Posts of the Week http://bit.ly/97sdg4 http://j.mp/nispblog #
- BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week http://bit.ly/97sdg4 #
- Cybersecy Boom Creates New Opps 4 Adjunct Faculty. http://bit.ly/9FyYdH [Potential side gigs.] #
- IN CASE U MISSED IT: Top 3 NoVA Infosec Blog Posts of the Week http://bit.ly/dbUZVm #
- remember the laptop spying in Philly? it’s worse than we thought… http://bit.ly/ci5ZJ5 (via @falconsview) #
- RT @mubix: RT @txs_: RT @steaIth: full disclosure is like farting in a restaurant.sometimes its appropriate and sometimes not. #
- Mohawk madness! Hackers for Charity B-Sides fundraiser instructions here: http://bit.ly/cqHZuG @securitytwits (via @Shpantzer) #
- New Full-Disclosure Site Reveals Vulnerable Websites http://bit.ly/8XHx1Z [Interesting.] #
- #NOVABLOGGER: Military asserts right to return cyber attacks http://bit.ly/aVOroF http://j.mp/nispblog #
- #NOVABLOGGER: Almost all Fortune 500 companies show Zeus botnet activity http://bit.ly/9928GT http://j.mp/nispblog #
- #NOVABLOGGER: Security Incidents Rise In Industrial Control Systems http://bit.ly/dtNUwr http://j.mp/nispblog #
- The risks and benefits doing penetration testing in-house: http://j.mp/9vcrbw (via @DarkReading) #
- Episode 15 – “Win = True” http://j.mp/9RnL12 [every s/w dev should read this lesson!] (via @RafalLos @DrInfoSec) [Nice!] #
- Reminder: Global Privacy Summit @ Mon Apr 19 – Wed Apr 21, 2010 (NovaInfosecPortal.com Calendar) #
- Caller ID Spoofing Soon to Be Illegal http://bit.ly/cLGO0v (via @hdmoore @jabra @securitytwits +) #
- “School Snared 1,000s Of Webcam Images Of Students Via Illicit Laptop Spying, Lawyer Says” http://huff.to/dlkC9O (via @jaysonstreet) #
- #MEETUP CapSec DC April is Happening on 4/21. Come help @Shpantzer raise $ & lose hair 4 HFC! http://bit.ly/bz7nMX (via @capsecdc) #
- “Feds Drop Bid for Warrantless Access to Yahoo! Mail” http://bit.ly/bCeA6N (via @regsecurity) #
- RT @rybolov: RT @PrivacyCamp: #privacy2010 #privacy – PrivacyCamp DC 2010 Notes – Google Docs http://ow.ly/1zEMv #
- FBI to Cloud: We Have a Warrant! http://bit.ly/cPrWbO [Looks like the 1st time this has happened (or that's been acknowledged).] #
- #NOVABLOGGER: Measurement Over Models http://bit.ly/afOcjl http://j.mp/nispblog #
- #NOVABLOGGER: Review of The Victorian Internet Posted http://bit.ly/aU4MYH http://j.mp/nispblog #
- “Network Solutions Hacked Again” http://j.mp/dld2ek (via @jeremiahg @jack_mannino) #
- hilarious way to obtain SSL certificates for a webmail provider’s domain http://j.mp/dwjnrT (via @hdmoore @jack_mannino) #
- #NOVABLOGGER: Review of Handbook of Digital Forensics and Investigation Posted http://bit.ly/aIXC1M http://j.mp/nispblog #
- way to obtain SSL certs for webmail provider’s domain: http://j.mp/dwjnrT (via @hdmoore @TheCustos) [Props to @TheCustos too
] # - #CON All @PrivacyCamp DC Live stream archives here > http://bit.ly/ceUjwn (via @rybolov) #
- OWASP Top 10 2010 Available Online http://bit.ly/dhkiEc (via @brennantom @ebellis) #
- “Veteran UK Fraud Fighter ‘BobBear’ Retires” http://j.mp/9iXmMM [Amazing service he's provided over the years.] #
- PLA making prank calls to Foursquare users, knowing where they are: http://j.mp/aziikd (via @mikkohypponen @ThisIsHNN) [Hilarious.] #
- Reminder: ISACA NCA Meetup @ Tue Apr 20 8:30am – 5pm (NovaInfosecPortal.com Calendar) #
- BLOGGED: Where You Want to Be This Week for 2010-04-19 http://bit.ly/9cNzal #
- #NOVABLOGGER: Where You Want to Be This Week for 2010-04-19 http://bit.ly/9cNzal http://j.mp/nispblog #
- #MEETUP Tomorrow, HacDC’s Gentle Hacker’s Literary Salon chats about Lem’s “The Cyberiad.” 7:30 PM at HacDC HQ. (via @hacdc) #
- DISA Expo Lures 5500+ Job Hunters Looking for Cybersec Opps: http://j.mp/crjxxR (via @IBMFedCyber) [5500, really?] #
- #NOVABLOGGER: XSS is Alive and Well http://bit.ly/9eAbRA http://j.mp/nispblog #
- IN CASE U MISSED IT: Where You Want to Be This Week for 2010-04-19 http://bit.ly/bJ5Gaq #
- 12 “White Hat” hackers you should know http://bit.ly/9q2Y1h [many are on Twitter] (via @DrInfoSec) #
- Now that Giz scooped the new iPhone, how long until Apple makes an official announcement? http://bit.ly/dd04HT (via @pmhesse) #
- Reminder: ISSA DC Meetup @ Tue Apr 20 6:30pm – 9:30pm (NovaInfosecPortal.com Calendar) #
- #CON AFCEA Solutions: Critical Issues in C4I, cosponsored by GMU (hi @mason_media). 5/18-19. http://bit.ly/cb2UUd #
- #JOB looking for a FISMA person in DC for a year round gig, anyone know anyone? (via @ashimmy @danphilpott) #
- Cyberattack on Google Said to Hit Password System http://j.mp/bozT55 (via @Nathiet) #
- EFF on Facebook privacy changes http://j.mp/degkNZ (via @simplenomad) [More FB privacy changes to confuse us all.] #
- #NOVABLOGGER: Strokejacking http://bit.ly/bk6mnW http://j.mp/nispblog #
- “Hot Spot Dangers” http://bit.ly/cKvc5U (via @DaneInTexas @bvPredator) [Gotta VPN.] #
- TSA to Download Your iTunes? http://bit.ly/9UH3pl (via @mboman @bvPredator @security4all) [Disturbing.] #
- “Firefox Blocks Unsecure Java Plugin” http://bit.ly/bXK6vy (via @FSLabs) [Nice.] #
- #NOVABLOGGER: Getting Started With IPv6 http://bit.ly/cYrrcP http://j.mp/nispblog #
- NOVAINFOSEC TWITS: Friendly reminder.. NovaInfosec Twits list is opt-in. Find list & instructs 2 join at http://bit.ly/nisptwit. #
- #NOVABLOGGER: A Little Advice From Mike and Lee http://bit.ly/cLslAr http://j.mp/nispblog #
- NIST released draft IR 7511 Rev 2 SCAP 1.0 Validation Program Test Requirements http://bit.ly/cy9g23 (via @danphilpott) #
- 25th Anniversary of Hackers: http://bit.ly/bHiMwa (@cktricky) [Where R they now? Levy's follow-up 25 years later.] #
- Reminder: CapSecDC Meetup @ Wed Apr 21 6pm – 9pm (NovaInfosecPortal.com Calendar) #
- #EDU How Strong is Your Fu ? Hacking Tournament by Offsec http://bit.ly/bLGV6G (via @ThisIsHNN) #
- “Google Tool Ranks Gov Appetite 4 Your Private Data” http://bit.ly/9YSEk8 [Interesting interactive tool.] #
- Help Wanted RFP Project at OWASP http://bit.ly/92yfB3 (via @danphilpott) [Interesting project.] #
- What a tweet really looks like. http://bit.ly/bnBJXT (via @jaysonstreet) [It's alot more than 140 chars.] #
- DHS Fills 2 Key Cybersec Posts http://bit.ly/br1Wl8 [Man, @rybolov didn't get picked again.
] # - “Northeastern Wins National Cyber Defense Competition” http://bit.ly/chdTzi (via @ThisIsHNN) [Congrats!] #
- “Should I Sign This” http://bit.ly/8ZWw8k [Great advice from Mike & Lee re gov contracting. A must read.] #
- Why employees break security policies–and what to do about it: http://j.mp/aqxNRu [Just trying to get their jobs done.] #
- Microsoft drops enterprise end point security suite http://j.mp/bQBKFp (via @regsecurity) #
- ADD YOUR CONS: Want to add your #con events to our calendar at http://bit.ly/nispcal? Contact us at http://bit.ly/nispcontact. #
- Reminder: ISSA NoVA Meetup @ Thu Apr 22 5:30pm – 8:30pm (NovaInfosecPortal.com Calendar) #
- DoD updated Directive 8570.01-M IA Workforce Improvement Program yesterday http://bit.ly/d3h6eQ (PDF) (via @danphilpott) #
- #JOB Security pro looking for employment? Get thee to DC: http://bit.ly/ap123D (via @cyberwar) #
- iPhone app for CyberSec Pros, Docs, Tweets, Links http://bit.ly/bx4vLi (via @Joey_Hernandez @signalmag) [Looks promising.] #
- If U get email saying U have “unreaded” messages at Twitter, it’s not legit. Don’t click! (via @spam @mubix) [Good 2 know.] #
- Reminder: OWASP VA Meetup @ Thu Apr 22 6pm – 9pm (NovaInfosecPortal.com Calendar) #
- “McAfee False Detection Locks Up Windows XP SP3″ http://bit.ly/9Y3qe6 (via @briankrebs) [In cased you missed this.] #
- McAfee has file called EXTRA.DAT to suppress detection until new DAT file is ready 2 go. http://bit.ly/cQj99m (via @evejou) [FYI.] #
- OMB posted M-10-15 FY2010 Reporting Instructs 4 FISMA & Agency Privacy Mgmt http://bit.ly/bvs6nc (PDF) (via @danphilpott) #
- Re McAfee DAT 5958.. updated 5959 emergency DAT now available http://bit.ly/9kqNv9 (via @evejou) [Man, am I behind on this or what?] #
- White House Gives Fed Agencies New Cybersec Marching Orders: http://bit.ly/9G9ftO (via @mschafer @iweeknick) #
- FISMA Reporting Moves Into 21st Century http://bit.ly/a3b11G [Auto tool called CyberScope will mk all better. That & pop quizes.] #
- How McAfee turned Disaster Exercise Into REAL Learning Experience.. http://bit.ly/d8D0zo (via @sans_isc) [Good point.] #
- In case U didn’t notice, FB opted U in 2 share ur data w/ every1 http://bit.ly/ceLvOn (via @jack_mannino) [Stop messing w/ my privacy!] #
- FB may have just jumped shark. It’s reassuring 2 know news reading/sharing habits R now public. http://bit.ly/djyU7y (via @jad_va) [WTF!] #
- #TOTW @securityintern: I tuned into #sourcebostomcam and I’m confronted with some dude’s wang. <-Teh Awesome. (via @rybolov) #
- McAfee flub sets off Twitter backlash storm http://j.mp/cYQ6qU (via @CSOonline) [Summary of how Twitter hurt/helped.] #
- #MEETUP Meeting: 2010.04.15 0×0002 http://j.mp/ciEdxH (via @novahackers) [Wrap-up of speakers & topics.] #
- Finding Remote Vulnerabilities in a Trojan http://j.mp/9Rfq1f (via @FSLabs) [Fuzz malware, find vulns, attack back.] #
- #NOVABLOGGER: Google Shines Light on Government Requests http://bit.ly/bD7gdP http://j.mp/nispblog #
- #NOVABLOGGER: Physical Penetration Testing http://bit.ly/cdsLrT http://j.mp/nispblog #
- #NOVABLOGGER: The Undervaluation of Writing http://bit.ly/94Uequ http://j.mp/nispblog #
- #NOVABLOGGER: Netsparker http://bit.ly/cwOEhF http://j.mp/nispblog #
- HELP US HELP U: Friendly reminder.. Support NovaInfosecPortal by purchasing thru 1 of our affiliates. More info at http://bit.ly/nisphelp. #
- FierceGovernmentIT.com has audio stream of Kundra/Schmidt press call on FISMA changes http://bit.ly/bC3U0e (via @danphilpott) #
- Rogue AV Purveyors Seize on McAfee Snafu http://bit.ly/c0ThHA (via @briankrebs) [These guys don't miss a chance.] #
- Rogue McAfee Update Strikes Police, Hospitals and Intel http://bit.ly/aE5gnv [The aftermath..] #
- Rapid7 Takes Pen Testing Mainstream w/ Metasploit Express http://bit.ly/9rqgzP [$3K/year/user. Not bad 4 corp types.] #
- #MEETUP RT @krvw: Looking forward 2 OWASP NoVA tonight . I’ll b moderating ESAPI panel a/f Jeff Williams’s session on ESAPI. #
- White House: New Policy for FISMA Compliance: http://bit.ly/crDenZ [Follow-up from yesterday.] #
- #NOVABLOGGER: A Few Quick Facebook “Privacy” Suggestions http://bit.ly/b2gR6U http://j.mp/nispblog #
- You want journalism? Meet my friend, John. “Gizmodo and the Prototype iPhone” http://bit.ly/bPaJS8 (via @hotdogsladies @gdead) #
- #CON Interested in SCAP? MITRE has Security Automation Developer Days .. 7/14-16 http://bit.ly/9d1aaD (via @danphilpott) #
- “Crippling McAfee Virus Update Could Have Long-Term Fallout” http://bit.ly/a5WOWW [More consequences from "5958" incident.] #
- HITB eZine Issue 002 out now http://bit.ly/9neTqr (via @mubix) #
Well, that’s all for this week. Be sure to follow me on Twitter at @grecs for more great tweets during the week! See ya…
No related posts.


