If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our “Infosec Ramblings” post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @grecs Twitter account.
There were three meetups and conferences this past week. Did you get to attend any of them?
- Reminder: HIPAA Conference @ Tue May 11 – Wed May 12, 2010 (NovaInfosecPortal.com Calendar) #
- #MEETUP From forensics 2 forescout 2 Metasploit, DNS, nukes & whole lot of fail, this time at #NoVAHA! May Dinner Meetup. (via @mubix) #
- CALENDAR UPD: NoVA Hackers Association Meetup http://bit.ly/dsuKoj http://j.mp/nispcal #
- Reminder: ISACA CM Meetup @ Thu May 13 8am – 1pm (NovaInfosecPortal.com Calendar) #
- Reminder: NoVA Hackers Association Meetup @ Thu May 13 5:30pm – 8:30pm (NovaInfosecPortal.com Calendar) #
- #MEETUP May Dinner Meeting 13 May 2010 http://bit.ly/9tgaie (via @novahackers) #
There’s also some upcoming meetups for those of you who are interested.
- CALENDAR UPD: 2600 Baltimore Meetup http://bit.ly/9KtrHd http://j.mp/nispcal #
- CALENDAR UPD: 2600 Arlington Meetup http://bit.ly/9LUyco http://j.mp/nispcal #
- CALENDAR UPD: OWASP VA Meetup http://bit.ly/9b3WSV http://j.mp/nispcal #
- #MEETUP Node post: Thoughts On Mays Meetings http://j.mp/9D0jrt (via @baltimorenode) #
If you don’t have time to make it to any of the weekly security meetups, why not try attending one of these upcoming conferences?
- #CON Bejtlich 2 Speak at SANS Forensics & IR 2010 http://bit.ly/dfeS3l I’ll be on the APT panel & might get solo gig 2. (via @taosecurity) #
- #CON RT @TrustedComputin: Mark cal 4 GG Security & Risk Mgmt Summit, DC area 6.21-23. Trusted Computing Group to show security.. #
For those of you that don’t know, we have some pretty awesome infosec bloggers in the local area. We looked very busy this week! You can check out some of their articles below.
- #NOVABLOGGER: 0Exploit Privilege Escalation http://bit.ly/aWnso7 http://j.mp/nispblog #
- #NOVABLOGGER: No One is Immune to Security Issues http://bit.ly/cTZtpv http://j.mp/nispblog #
- #NOVABLOGGER: Attention Cloud Fanatics http://bit.ly/cd4gqk http://j.mp/nispblog #
- #NOVABLOGGER: Bejtlich to Speak at SANS Forensics and Incident Response 2010 http://bit.ly/dfeS3l http://j.mp/nispblog #
- #NOVABLOGGER: The Face of Information Warfare http://bit.ly/bOuDih http://j.mp/nispblog #
- #NOVABLOGGER: Android SSL Apps & Burp http://bit.ly/dyCfSl http://j.mp/nispblog #
- #NOVABLOGGER: DLP – Data Loss Prevention http://bit.ly/bmqeoO http://j.mp/nispblog #
- #NOVABLOGGER: Everything I Need to Know About Leadership I Learned as a Patrol Leader http://bit.ly/cpNSPE http://j.mp/nispblog #
- #NOVABLOGGER: Papers Not PowerPoint, Plus Tips for Improvement http://bit.ly/b3w0Yn http://j.mp/nispblog #
- #NOVABLOGGER: Metasploit jboss deployment file repository exploit http://bit.ly/cvMV7Z http://j.mp/nispblog #
- #NOVABLOGGER: Metasploit jboss deployment file repository exploit http://bit.ly/8Y5tkv http://j.mp/nispblog #
- #NOVABLOGGER: Work Hard to Avoid Stupidity http://bit.ly/aZM8iP http://j.mp/nispblog #
- #NOVABLOGGER: Playing with the MS09-012 Windows Local Exploit http://bit.ly/9A7pC0 http://j.mp/nispblog #
- #NOVABLOGGER: Playing with the MS09-012 Windows Local Exploit http://bit.ly/bzHRSo http://j.mp/nispblog #
- #NOVABLOGGER: Joining Gemini Security Solutions http://bit.ly/9A9eG4 http://j.mp/nispblog #
- #NOVABLOGGER: Farewell to Facebook http://bit.ly/axHsEE http://j.mp/nispblog #
In case you missed them, here were our blog posts from this week.
- BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week http://bit.ly/bpZQ1S #
- BLOGGED: Where You Want to Be This Week for 2010-05-10 http://bit.ly/9w3u18 #
In addition, here are a few of our friendly reminders…
- NOVAINFOSEC TWITS: Haven’t mentioned in while. Localized vs of @securitytwits. We’d love 2 have u. http://bit.ly/nisptwit #
- ADD YOUR MEETUPS: Want to add your #meet up events to our calendar at http://bit.ly/nispcal? Contact us at http://bit.ly/nispcontact. #
- ADVERTISE W/ US: Friendly reminder.. NovaInfosecPortal is always looking 4 local advertisers. More info at http://bit.ly/nispadvert. #
And here are a few job/career related tweets from this past week.
- #JOB M is looking for a Software Engineer (Windows Developer) http://bit.ly/c7SnQH (via @Mandiant @wadew) #
- #JOB 4 Steps Toward a Plan for a Career in Information Security http://bit.ly/9hnIIL [Nice article as usual by Lee & Mike.] #
- #JOB New Senior IT Audit opportunity in DC/Metro area. Read more and apply here: http://bit.ly/9cBWam (via @DuvalSearch) #
And in closing, you can also keep yourself busy with these interesting newsbites:
- Yesterday (Wed) last of 13 authoritative DNS root servers enabled DNSSEC. http://bit.ly/aCl1CS (via @arbornetworks @danphilpott) #
- New Attack Bypasses Virtually All AV Protection http://bit.ly/b7ZntK [Interesting.] #
- How to Force Anyone to Follow You on Twitter http://bit.ly/ddaWPr [Wow, nother Twitter bug.] #
- House Bill Would Give Howard Schmidt’s Job Real Teeth http://bit.ly/9fVJRX [Budget controls all.] #
- White House Devs Overlooked Gaping Drupal Vuln http://j.mp/ch4ASd [Interesting.] #
- CSO Compass Award: Erin Jacobs http://j.mp/bxktrF (via @mschafer) [Just realized this was @SecBarbie. Congrats!] #
- Large-Scale Attack on WordPress http://bit.ly/diJvEN [malware hides from Google Safe Browsing API] (via @DrInfoSec) [Grrrrr.] #
- Mozilla Detects Insecure Plugins 4 IE, Chrome, Safari http://bit.ly/dms1ng [Nice service.] #
- It is official: General Alexander confirmed http://bit.ly/dvy1mR (via @IBMFedCyber) #
- May 2010 Microsoft Patches Overview of the May 2010 Mic.. http://bit.ly/aNBWDq (via @sans_isc) [Only 2 this month.] #
- Fantastic article on software architecture http://j.mp/d47DGZ (via @manicode) [What can we learn fr Skype?] #
- Vulnerability Report – May 2010 http://bit.ly/byPCWW (via @VRT_Sourcefire) [Got 3 mins. Nice overview as usual.] #
- BSIMM ‘Measuring Stick’ 4 Software Security Gets Update http://bit.ly/b4grgq [Woot.. Up to version 2.] #
- Aim 2 Reinvent Facebook. http://bit.ly/a142bR (via @cktricky) [4 NYU students looking 2 create new FB b/c fed up w/ privacy issues.] #
- NIST Seeks Cmts on Security Controls Guide http://bit.ly/dlm588 [This tweet is for anyone but @danphilpott.
] # - FB Privacy Policy – More Words than US Constitution http://nyti.ms/cUsqI8 (via @adamp613 @riskybusiness) [Nice!] #
- Facebook Convenes Privacy ‘Crisis’ Meeting http://j.mp/ayOc5S [Wonder if this will result in any significant changes?] #
- NIST rel April 2010 Security Bulletin Guide 2 Protecting PII http://j.mp/aNA2jK (via @danphilpott) [PDF..] #
Well, that’s all for this week. Be sure to follow me on Twitter at @grecs for more great tweets during the week! See ya…
No related posts.


