If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our “Infosec Ramblings” post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @grecs Twitter account.
[Another busy week ... another unsorted post...
Regardless, lots of good stuff happened this past week. -Grecs]
- Cloud Security Market to Reach $1.5 Billion in 5 Years http://bit.ly/9drZT4 [Time to specialize?] #
- FREE CLOUDS ! Thanks @amazon http://bit.ly/a3XpSV (via @exoticliability @jasonmoliver) [Hey, now we can practice could security!] #
- Drink ur good booze, burn the candles,.. Don’t save it 4 special occasion. Today is special. (via @gattaca @sintixerr) #
- #CON Basic info up about CTF at #ASDC10 We recommend registering in adv. http://bit.ly/aR8L4Z for more info. (via @AppSecDC) #
- #Apple abandons #Java in future versions of Mac OS X http://bit.ly/9BUFiQ (via @etdsoft @cktricky) [Next it'll b Flash.] #
- Wireshark Bought by Riverbed http://bit.ly/a9k47a (via @bug_bear @CyberCrime101 @InsiderThreats @jaysonstreet) [Whoa.] #
- BLOGGED: Grecs’ Weekly Infosec Ramblings for 2010-10-21 http://bit.ly/9UDaCu #
- BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week http://bit.ly/bh9UF8 #
- IN CASE U MISSED IT: Top 3 NoVA Infosec Blog Posts of the Week http://bit.ly/ajn0OV #
- IN CASE U MISSED IT: Grecs’ Weekly Infosec Ramblings for 2010-10-21 http://bit.ly/9ntacq #
- #CON Happily watching ticket count for #BSidesDE steadily increase. Sign up now! http://bit.ly/bAy8C8 (via @bbaskin @charmsec) #
- CAG Vs. IG: Conflict Over Infosec http://bit.ly/ccm1k9 [Looks like interesting podcast to catch.] #
- Apple Ditching Preinstalled Flash on Future Macs http://bit.ly/dlugW5 [Anyone see this coming.
] # - NIST rel IR 7497 Security Arch Design Process for Health Info Exchanges (HIEs) http://bit.ly/cXvuEm (via @danphilpott) #
- Tx to @mjcdotme @alexhutton @derekcslater @secuobs for the #FF #
- How to Secure IPads for Corporate Use http://j.mp/c1xOLk (via @CSOonline) #
- iScanner detects & removes malicious code from your website http://j.mp/bwX7Kj (via @ethicalhack3r @jaysonstreet) [Interesting.] #
- Cyber Security Awareness Month – Day 22 – Security of Removable Media http://j.mp/bVOp97 (via @sans_isc) #
- Privacy & the Internet – a Helpful Venn Diagram http://j.mp/a78mXm (via @alexhutton) [Awesome diagram! Lolz.] #
- #NOVABLOGGER I Swear I’ll Get This Post Written By Time I Crack ur Pwd http://bit.ly/cTny2h (via @novainfosec) #
- Some Facts About Advanced Evasion Techniques http://bit.ly/9Gq5Ki (via @VRT_Sourcefire) #
- Google: Street View Cars Grabbed Emails, Urls, Passwords http://bit.ly/alFoSN [Jeez, will this story plz die.] #
- Cyber Security Awarenes Month – Day 23 – The Importance of Compliance http://bit.ly/aHY6GB (via @sans_isc) #
- Survey: Fed IT Leaders Lack Confidence in CyberScope http://bit.ly/a6pttr (via @Nathiet) [+1 .. still love the name tho.
] # - Book lending coming 2 Kindle. I will happily loan ebooks
http://usat.ly/9DkAly (via @pmhesse) [Don't U just love competition?] # - #CON Reg 4 #ASDC10 CTF, details here http://bit.ly/dCOiOY Challenges created by @bNull @mubix & me. (via @cktricky) #
- #MEETUP Opening Party @ReverseSpace, NoVA hackerspace, 10/30, 9pm-2am. Wear ur costume! DJ, beverages & 21+. (via @TiffanyRad) #
- Trying to install MetaSploit on Mac. Instructions say to install XCode. Freakin 3Gig. Is this really needed? #
- Wait, flying cars exist but just aren’t being adopted? RT @dakami: Secure email is Internet’s flying car. (via @pmhesse) [Lolz.] #
- Re xcode question RT @hdmoore: @grecs U need compiler suite in order 2 build ports, we wish their stock ruby/readline/rubygems act worked #
- More re xcode question. RT @jasonmoliver: @grecs xcode should be an optional install from your OS Disc #
- Nessus scanning through a Meterpreter pivot with SOCKS, all in memory http://bit.ly/dAWA3F (via @digininja @mubix) [Cool!] #
- #JOB Few years doing Fed/DoD C&A work? Want 2 learn #nuclear #cybersec? http://bit.ly/aAXdop 186561 186552 <- contact me (via @frednecksec) #
- SCADA Vendors Still Need Security Wake Up Call http://bit.ly/bWHnme (via @ITDataSecurity) [And speaking of scada..] #
- ZeuS Author Gives Up Source Code 2 Bot; Dev 2 Merge w/ SpyEye Trojan http://bit.ly/cH69Vh (via @briankrebs) [Interesting.] #
- For playing w/ Metasploit .. finally got around to installing Xcode. 8G installed … whoa. Rm iOS SDK. That got it down to 2.6G. #
- Also unchecked Documentation as well .. even tho it listed size as 0. Tx @wayne_gipson. #
- What is Cloud AntiVirus & How Does it Work? http://bit.ly/dnRg9Q (via @fpmulder @briankrebs) [Intersting.] #
- Reminder: CSI Annual Conference @ Tue Oct 26 – Fri Oct 29, 2010 (NovaInfosecPortal.com Calendar) (via @novainfosec) [For any1 going..] #
- BTW .. MetaSploit install on Mac seemed to go fine. Now gotta find time to play. #
- Researchers hack toys, attack iPhones at ToorCon http://bit.ly/d4bB72 (via @Nathiet) [Nice summary.] #
- Cyber Security Awarenes Month – Day 24 – Using work computers at home http://bit.ly/a1RkSn (via @sans_isc) #
- The “Iranian Cyber Army” Strikes Back http://bit.ly/b1rJ9b (via @briankrebs) [Featuring Phoenix exploit kit.] #
- Other fun activities this weekend .. was playing w/ zenmap. Is it my mac or is that interface sloowww? Specially when switching tabs. #
- Cyber Security Awareness Month – Day 25 – Using Home Computers for Work http://bit.ly/b4tBoX (via @sans_isc) #
- Firesheep Flames Cookie Capture Risks http://bit.ly/9lWkZy [FF add-on makes sidejacking simple. #toorcon #
- #NOVABLOGGER Thoughts on Wall Street Journal’s FB Investigation http://bit.ly/9polZf http://j.mp/nispblog (via @novainfosec) #
- In Chantilly,VA for the next few days. Anyone up for dinner? (via @haxorthematrix) [Sure. #tweetup ] #
- #JOB Info Risk Manager/IT Security Consultant: Location: Washington, DC .. IMF http://bit.ly/c0UZRB (via @CSOonline) #
- Direct download for Firesheep. Looks interesting. http://bit.ly/azfqiZ #
- BLOGGED: Where You Want to Be This Week for 2010-10-25 http://bit.ly/aomB0W #
- Ubuntu Privacy Remix 10.04r1 Released http://bit.ly/awmwv0 [Looks intersting.] #
- Week 41 in Review – 2010 http://bit.ly/cIZVCZ [A look back at this past week.] #
- More technical analysis on Firesheet from @fslabs. http://bit.ly/9r44Ud #
- #MEETUP Thur at 7:00. @Slaintepub – http://bit.ly/devJRV – no RSVP required, just show up. 2nd floor, past bar. (via @charmsec) #
- #JOB Info Systems Security – Career Path Worth Considering http://bit.ly/beUoQ0 (via @Nathiet) [Lot's of nice advice.] #
- #CON #ASDC10 #CTF RT @bNull: Challenges 4 @appsecdc are almost completed. This is going to be really good time. (via @AppSecDC) #
- IN CASE U MISSED IT: Where You Want to Be This Week for 2010-10-25 http://bit.ly/9XRMsC #
- Week 42 in Review – 2010 http://bit.ly/aBcXsb [Mmm? iPhone CIS benchmark. Interesting.] #
- ISO: infosec mgmt certs jumped 40% last year http://bit.ly/dkOxuA (via @Nathiet) [Is this good or bad.] #
- Google Privacy Lesson: Tighten Your Wi-Fi Security http://bit.ly/cytYoa (via @Nathiet) [Finally people R getting it.] #
- #MEETUP Just say note about CapSecDC this Wed… #
- #CON CSI Annual Conference 2010 Starts Tomorrow. Discuss on EH-Net http://bit.ly/b46tHB @CSI_community (via @ethicalhacker) #
- Web Pioneer Profiles Users by Name http://bit.ly/b1pU7w [as fascinating as it is scary; kudos to WSJ] (via @DrInfoSec) #
- Google Focuses on Privacy in Every Way but Ones that Count http://bit.ly/blidgW [many good pts] (via @DrInfoSec) #
- iOS Bug Unlocks iPhones sans Password http://bit.ly/dqX78R [Whoa .. deja vu.] #
- Just found stickers I got in 2004 at #defcon advertising for 1st #Shmoocon in 2005. http://bit.ly/a7PEfL (via @TiffanyRad) #
- Mac OS X Security Tools http://bit.ly/cecO8S (via @danphilpott @jasonmoliver) [Nice list of sec tools. Tx @secbarbie.] #
- #NOVABLOGGER Firesheep: SideJacking Made Painfully Simple http://bit.ly/cmcTl5 http://j.mp/nispblog (via @novainfosec) #
- Got “check it out” bit.ly link fr acct start w/ Fannie. Directed 2 @haxorthematrix & @hdmoore too. Ended in 92lIfb?65d2. Ideas on what does? #
- Why security is the enemy of privacy, by @BillBrenner70: http://bit.ly/cB7vpQ [Interesting take.] #
- Heading to Sweetwater for dinner. Of coarse traffic sucks. #
- And testing out Dragon dictation in the car. #
- Awesome dinner/discussion with @reswob1 & @haxorthematrix at #sweetwater @pmhesse missed out.
# - GSA’s next cloud offering: e-mail-as-a-service http://bit.ly/aBo9Qh (via @danphilpott) #
- #MEETUP We’ll b getting CapSec started ~ 5 or 6 tomorrow evening (27-Oct) at Star & Shamrock on H St NE. Come join us! (via @capsecdc) #
- Reminder: ISSA Baltimore Chapter @ Wed Oct 27 4:30pm – 6:30pm (NovaInfosecPortal.com Calendar) (via @novainfosec) #
- #CON Less than 2 wks away! Still time to sign up 4 quality training at discount prices, or just our excellent speakers! (via @AppSecDC) #
- #CON Also, we hope to have a surprise speaker addition in the near future. Stay tuned! #ASDC10 (via @AppSecDC) #
- Cyber Security Awareness Month – Day 26 – Sharing Office Files http://j.mp/azaqXK #
- Looking 4 pwd cracking prog? try Hashkill, opensource multi threaded plugin based tool http://j.mp/dkxZRX (via @indi303) [Run in FF?
] # - Bus spotter admits ÂŁ11k database fees fraud http://j.mp/bLH1G6 (via @regsecurity) [Bus spotting? I just don't get that one.] #
- #EDU Top Schools for Information Assurance: NSA and DHS Tap 123 Centers of Academic Excellence. http://j.mp/cp48FQ #
- I’m currently away from Twitter, please leave an at reply and I’ll return your tweet as soon as possible. (via @MJCdotMe) #
- #MEETUP hey @novainfosec folks – @OWASPNoVA needs space 11/4 & 12/2 for chapter mtgs, up to 30 ppl – any help? (via @falconsview) #
- #MEETUP via @falconsview: Looking for a food sponsor for Nov 4th meeting – any volunteers? (via @OWASPNoVA) #
- #MEETUP via @falconsview: Next Mtg: Nov 4, 6pm, at Akamai in Reston, VA. Speaker: Ben Tomhave details: http://j.mp/ctZFS9 (via @OWASPNoVA) #
- IBM X-Force “Secure Open Wireless Access” http://j.mp/bNsB50 #firesheep (via @IBMFedCyber) [Interesting.] #
- Notorious Koobface worm ported to Mac OS X http://j.mp/c1th79 (via @regsecurity) #
- Cloud Creates SIEM Blind Spot http://j.mp/boBMbO [Interesting. Maybe cloud provided SIEM APIs could help?] #
- Reminder: CharmSec Meetup @ Thu Oct 28 7pm – 10pm (NovaInfosecPortal.com Calendar) (via @novainfosec) #
- Cyber Security Awareness Month – Day 27 – Social Media Use in the Office http://j.mp/9DMGXc (via @sans_isc) #
- Fav fr SW dev: Can’t have baby in 1mo using 9 women. U may have it fast, good, cheap; choose 2. (via @GoldbergLawDC @sdwilkerson) #
- Cyber Security Awareness Month – Day 28 – Role of the Employee http://j.mp/boRlRm (via @sans_isc) #
- #TOOL Watching talk on Netglub.org! Fully opensource Intel gathering framework like Maltego but free. (via @indi303) [Interesting.] #
- #MOBILE Feature comparison puts mobistealth and trackway as best remote spyware for smartphones #hacklu (via @indi303) #
Well, that’s all for this week. Be sure to follow me on Twitter at @grecs for more great tweets during the week! See ya…
No related posts.




