<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>NovaInfosecPortal.com &#187; NoVA Email Lists/Networking</title>
	<atom:link href="http://www.novainfosecportal.com/category/resources/nova-email-lists-networking/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.novainfosecportal.com</link>
	<description>News, events, &#38; resources for infosec professionals in NoVA, DC, &#38; MD</description>
	<lastBuildDate>Tue, 27 Jul 2010 15:00:27 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=abc</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2010-07-22</title>
		<link>http://www.novainfosecportal.com/2010/07/26/grecs-weekly-infosec-ramblings-for-2010-07-22/</link>
		<comments>http://www.novainfosecportal.com/2010/07/26/grecs-weekly-infosec-ramblings-for-2010-07-22/#comments</comments>
		<pubDate>Tue, 27 Jul 2010 02:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2010/07/22/grecs-weekly-infosec-ramblings-for-2010-07-22/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday (usually   ), our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them [...]]]></description>
			<content:encoded><![CDATA[<p>If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="events/nova-meetups/#events-in-dc">DC</a>-, and <a href="events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday (usually <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' />  ), our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>[Sorry but I haven't had time to summarize this like I usually do but just wanted to get it off my plate so I can focus on more important things (like prepping for BSidesLV and Defcon). Anyway enjoy the dump and be sure to say hi if you are going to be in Vegas this week. Grecs]</p>
<ul class="aktt_tweet_digest">
<li>#CON #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NOVABLOGGER">NOVABLOGGER</a>: Thoughts on SANS WhatWorks Summit in Forensics &amp; IR 2010 <a rel="nofollow" href="http://bit.ly/9xbNbz">http://bit.ly/9xbNbz</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [Good recap.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18653923039">#</a></li>
<li>#NOVABLOGGER: Network Forensics Vendors: Get in the Cloud! <a rel="nofollow" href="http://bit.ly/92Opw6">http://bit.ly/92Opw6</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18653987315">#</a></li>
<li>#BSidesLV Participant  sign-up list will close on 7/20. U MUST B on official list 2 gain entry. <a rel="nofollow" href="http://bit.ly/doE06e">http://bit.ly/doE06e</a> (via @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18657989991">#</a></li>
<li>#MEETUP DNSSEC/FISMA Seminar in DC w/ DNSSEC Experts fr NIST, MS &amp; Secure64 <a rel="nofollow" href="http://bit.ly/ah5NaF">http://bit.ly/ah5NaF</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a> @<a class="aktt_username" href="http://twitter.com/vapigilt">vapigilt</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18658617858">#</a></li>
<li>HTCIA &#8220;Vetting Ligatt&#8221; <a rel="nofollow" href="http://bit.ly/9mrTpn">http://bit.ly/9mrTpn</a> (via @<a class="aktt_username" href="http://twitter.com/attritionorg">attritionorg</a> @<a class="aktt_username" href="http://twitter.com/marcusjcarey">marcusjcarey</a>) [In case U missed earlier today.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18658861567">#</a></li>
<li>Vuln Report &#8211; July 2010 <a rel="nofollow" href="http://bit.ly/awGLyl">http://bit.ly/awGLyl</a> [Get a quick 3 min summary of the July patches fr @VRT_Sourcefire.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18659070605">#</a></li>
<li>RT @rybolov: Dear @<a class="aktt_username" href="http://twitter.com/whitehouse">whitehouse</a> &amp; OMB: can U please make your memoranda available in RSS? <a rel="nofollow" href="http://bit.ly/aKGKPc">http://bit.ly/aKGKPc</a> [Plz RT.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18659709466">#</a></li>
<li>BLOGGED: Grecs’ Weekly Infosec Ramblings for 2010-07-15 <a rel="nofollow" href="http://bit.ly/bjQcTs">http://bit.ly/bjQcTs</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18693062862">#</a></li>
<li>BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://bit.ly/aTWhQJ">http://bit.ly/aTWhQJ</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18706017630">#</a></li>
<li>IN CASE U MISSED IT: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://bit.ly/9iZHXD">http://bit.ly/9iZHXD</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18712142871">#</a></li>
<li>IN CASE U MISSED IT: Grecs’ Weekly Infosec Ramblings for 2010-07-15 <a rel="nofollow" href="http://bit.ly/cAGenr">http://bit.ly/cAGenr</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18712522155">#</a></li>
<li>#MEETUP Can&#8217;t get enough #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23DNSSEC">DNSSEC</a>? Reg 4 DNSSEC/FISMA seminar at Spy Museum 7/27 (<a rel="nofollow" href="http://j.mp/dvhHUh">http://j.mp/dvhHUh</a>) (via @<a class="aktt_username" href="http://twitter.com/scottr_nist">scottr_nist</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18727892524">#</a></li>
<li>Just heard that MS is going to support Window XP SP3 through 2010. I just can&#8217;t imagine using XP 10 yrs from now. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18729928138">#</a></li>
<li>WackoPicko vuln webapp released! &#8211; <a rel="nofollow" href="http://bit.ly/cbKCvp">http://bit.ly/cbKCvp</a> (via @<a class="aktt_username" href="http://twitter.com/carnal0wnage">carnal0wnage</a>) [@<a class="aktt_username" href="http://twitter.com/dallendoug">dallendoug</a> - another free webapp 2 use 4 that VM distro.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18731296070">#</a></li>
<li>#MEETUP CapSecDC Not in Vegas edition is early this yr. Come 2 Stetson&#8217;s 7/21 before people head 2 Vegas <a rel="nofollow" href="http://bit.ly/aV59MZ">http://bit.ly/aV59MZ</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18732342420">#</a></li>
<li>Nmap 5.35DC1 (Defcon edition) released! 17 new NSE scripts &amp; much more: <a rel="nofollow" href="http://bit.ly/aUuO2j">http://bit.ly/aUuO2j</a> (via @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) [Woot!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18795887776">#</a></li>
<li>Feds Look for Wikileaks Founder at NYC Hacker Event <a rel="nofollow" href="http://bit.ly/djJIgd">http://bit.ly/djJIgd</a> (via @<a class="aktt_username" href="http://twitter.com/WeldPond">WeldPond</a>) [Drama at #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23thenexthope">thenexthope</a>.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18796047497">#</a></li>
<li>Defcon &amp; Blackhat Parties List Updated <a rel="nofollow" href="http://bit.ly/c6psXT">http://bit.ly/c6psXT</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23Blackhat2010">Blackhat2010</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23Defcon">Defcon</a> Help me add! pls RT (via @<a class="aktt_username" href="http://twitter.com/Jhaddix">Jhaddix</a> @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18864269855">#</a></li>
<li>#NOVABLOGGER: Review of The Cuckoo&#8217;s Egg Posted <a rel="nofollow" href="http://bit.ly/dbukvP">http://bit.ly/dbukvP</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [Agree. Loved this book.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18864690838">#</a></li>
<li>#NOVABLOGGER: Review of Crypto Posted <a rel="nofollow" href="http://bit.ly/dcwBWH">http://bit.ly/dcwBWH</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [Another awesome book.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18864856453">#</a></li>
<li>#NOVABLOGGER: Review of Code Version 2.0 Posted <a rel="nofollow" href="http://bit.ly/9pihz8">http://bit.ly/9pihz8</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [I have v1.0 &amp; read when I can't sleep. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18865047297">#</a></li>
<li>New Metasploit GUI Written in Java: If you don&#8217;t like cmd mode 2 interact w/ metas.. <a rel="nofollow" href="http://bit.ly/9MQnfw">http://bit.ly/9MQnfw</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) [Cool.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18874797703">#</a></li>
<li>BLOGGED: Win Three TaoSecurity Recommended Books <a rel="nofollow" href="http://bit.ly/cUiA4K">http://bit.ly/cUiA4K</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18914523911">#</a></li>
<li>#JOB NPR had a story on Cybersecurity specialist shortage this AM <a rel="nofollow" href="http://n.pr/93nOhm">http://n.pr/93nOhm</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18917692348">#</a></li>
<li>Running a little contest giving away 3 @<a class="aktt_username" href="http://twitter.com/taosecurity">taosecurity</a> recommended books. See <a rel="nofollow" href="http://bit.ly/cUiA4K">http://bit.ly/cUiA4K</a> for details &amp; RT my next tweet to enter. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18917983406">#</a></li>
<li>I want 2 win 3 @<a class="aktt_username" href="http://twitter.com/taosecurity">taosecurity</a> recommended books from @grecs. #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23infosecclassics">infosecclassics</a> <a rel="nofollow" href="http://bit.ly/cUiA4K">http://bit.ly/cUiA4K</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18918019519">#</a></li>
<li>MS Confirms Windows Shortcut Zero-Day flaw <a rel="nofollow" href="http://bit.ly/8YZzDR">http://bit.ly/8YZzDR</a> [Nother reason to disable autoplay.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18918512908">#</a></li>
<li>#MEETUP Just a reminder that @<a class="aktt_username" href="http://twitter.com/CapSecDC">CapSecDC</a> is THIS Wed. &#8220;After Work&#8221; at Stetson&#8217;s, 1610 U St NW. Looks like a full house this month! <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18926062578">#</a></li>
<li>Our Infocon is at Yellow: 4 details: <a rel="nofollow" href="http://bit.ly/cXlMZ6">http://bit.ly/cXlMZ6</a> We R trying 2 mk our Infocon more useful.. (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) [This is new. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18930140866">#</a></li>
<li>IN CASE U MISSED IT: Win Three TaoSecurity Recommended Books <a rel="nofollow" href="http://bit.ly/c7u5MS">http://bit.ly/c7u5MS</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18940273849">#</a></li>
<li>#NOVABLOGGER: The Biggest Problem <a rel="nofollow" href="http://bit.ly/ap4UCm">http://bit.ly/ap4UCm</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) ["Learn how to write." Nuff said.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18942939784">#</a></li>
<li>#NOVABLOGGER: Notes fr The Next HOPE <a rel="nofollow" href="http://bit.ly/avN5Kh">http://bit.ly/avN5Kh</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> (@<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [Wish I could have made it.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18943368656">#</a></li>
<li>BLOGGED: Where You Want to Be This Week for 2010-07-19 <a rel="nofollow" href="http://bit.ly/bJuNQn">http://bit.ly/bJuNQn</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18960733686">#</a></li>
<li>Exploit 4 Windows Shell flaw (LNK) added 2 #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23metasploit">metasploit</a> <a rel="nofollow" href="http://bit.ly/a5OwFm">http://bit.ly/a5OwFm</a> (via @<a class="aktt_username" href="http://twitter.com/hdmoore">hdmoore</a> @<a class="aktt_username" href="http://twitter.com/TheCustos">TheCustos</a>) [Wow, that was fast.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18986004637">#</a></li>
<li>Court Fails to Protect Privacy of Whistleblower&#8217;s Email <a rel="nofollow" href="http://bit.ly/aQrryY">http://bit.ly/aQrryY</a> (via @<a class="aktt_username" href="http://twitter.com/GoldbergLawDC">GoldbergLawDC</a>) [Not good.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18986711748">#</a></li>
<li>TrueCrypt 7.0 Released <a rel="nofollow" href="http://bit.ly/9r7Yxk">http://bit.ly/9r7Yxk</a> [Woot! No whole disk encryption support for Mac tho. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18998254728">#</a></li>
<li>BLOGGED: Starbucks VPN Options for Wifi Security <a rel="nofollow" href="http://bit.ly/d1KFnH">http://bit.ly/d1KFnH</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19002748962">#</a></li>
<li>Adobe to Fortify Widely Exploited Reader with Security Sandbox <a rel="nofollow" href="http://bit.ly/98BMFf">http://bit.ly/98BMFf</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19006490828">#</a></li>
<li>#EDU Certified Ethical Hacker Courses &#8211; Again.. <a rel="nofollow" href="http://bit.ly/aXJdMn">http://bit.ly/aXJdMn</a> (via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) [Good for baseline knowledge.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19006870644">#</a></li>
<li>IN CASE U MISSED IT: Starbucks VPN Options for Wifi Security <a rel="nofollow" href="http://bit.ly/cB0VLu">http://bit.ly/cB0VLu</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19018751951">#</a></li>
<li>IN CASE U MISSED IT: Where You Want to Be This Week for 2010-07-19 <a rel="nofollow" href="http://bit.ly/b5BYyA">http://bit.ly/b5BYyA</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19019086750">#</a></li>
<li>Opinion: Apple App Store&#8217;s security track record unblemished after two years <a rel="nofollow" href="http://bit.ly/9GGbtQ">http://bit.ly/9GGbtQ</a> (via @<a class="aktt_username" href="http://twitter.com/krvw">krvw</a>) [True.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19031920622">#</a></li>
<li>Lowering infocon back 2 green .. <a rel="nofollow" href="http://bit.ly/9sFpLl">http://bit.ly/9sFpLl</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) [Darn, it was so cool being yellow 4 a change. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19032484948">#</a></li>
<li>Security BSides Announces 2010 Speaker Line-Up at BSides LV <a rel="nofollow" href="http://bit.ly/bqRJs4">http://bit.ly/bqRJs4</a> (via @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) [I'm finally in the mix. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19033023487">#</a></li>
<li>Reminder: CapSecDC Meetup @ Wed Jul 21 6pm &#8211; 9pm (NovaInfosecPortal.com  Calendar) (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19033100836">#</a></li>
<li>Nonprofit Launches Open-Source IDS/IPS <a rel="nofollow" href="http://bit.ly/batnao">http://bit.ly/batnao</a> [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19033661657">#</a></li>
<li>Hackers Unite! .. #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23BSidesLV">BSidesLV</a> <a rel="nofollow" href="http://bit.ly/aIJqDe">http://bit.ly/aIJqDe</a> (via @<a class="aktt_username" href="http://twitter.com/adamely">adamely</a> @<a class="aktt_username" href="http://twitter.com/petermannmc">petermannmc</a> @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) [Woot! Tx 4 rec. Hope I don't disappoint..] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19036665904">#</a></li>
<li>Harsh Words 4 Professional Infosec Certification <a rel="nofollow" href="http://bit.ly/aefdkn">http://bit.ly/aefdkn</a> ["Creating a Dangerously False Sense of Security." Nuff said.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19047544013">#</a></li>
<li>Innovation &#8211; You Keep Using That Word <a rel="nofollow" href="http://bit.ly/9gKc9O">http://bit.ly/9gKc9O</a> [@<a class="aktt_username" href="http://twitter.com/VRT_Sourcefire">VRT_Sourcefire</a> 's response to Suricata v1.0 release.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19048273866">#</a></li>
<li>BSides Las Vegas 2010 Speaker Line-Up Announced <a rel="nofollow" href="http://bit.ly/bVhu9F">http://bit.ly/bVhu9F</a> [More #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23BSidesLV">BSidesLV</a> press and not-to-miss talks.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19072254759">#</a></li>
<li>#CON Metricon 5.0 <a rel="nofollow" href="http://bit.ly/9TI2yM">http://bit.ly/9TI2yM</a> [And heading back to DC, another interesting event 2 attend.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19072349601">#</a></li>
<li>Tool Blunts Threat from Windows Shortcut Flaw <a rel="nofollow" href="http://bit.ly/djxaIB">http://bit.ly/djxaIB</a> [MS released a FitIt tool 2 mk same registry changes.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19072541018">#</a></li>
<li>RT @TheCustos: RT @secureideas: Submitted Friendly Traitor 2 &amp; Social Zombies Gone Wild 2 AppSec DC! &lt;- register now 4 @appsecdc! &lt;- +1 <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19072654932">#</a></li>
<li>Dell Warns on Spyware Infected Server Motherboards <a rel="nofollow" href="http://bit.ly/aBNkzZ">http://bit.ly/aBNkzZ</a> [Wow, taking it a step further.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19072927406">#</a></li>
<li>BLOGGED: Winner of TaoSecurity Recommended Books <a rel="nofollow" href="http://bit.ly/9aZn1j">http://bit.ly/9aZn1j</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19083061164">#</a></li>
<li>NIST Static Analysis Tool Exposition 2009 reports &amp; data are online <a rel="nofollow" href="http://bit.ly/d8MEGA">http://bit.ly/d8MEGA</a> (via @<a class="aktt_username" href="http://twitter.com/rgaucher">rgaucher</a>) [Worth a read.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19083995791">#</a></li>
<li>BackTrack 4 R1 BlackHat Edition <a rel="nofollow" href="http://bit.ly/a6nXI2">http://bit.ly/a6nXI2</a> (via @ @<a class="aktt_username" href="http://twitter.com/security4all">security4all</a> @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) [Nice!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19084161834">#</a></li>
<li>IN CASE U MISSED IT: Winner of TaoSecurity Recommended Books <a rel="nofollow" href="http://bit.ly/awOyUB">http://bit.ly/awOyUB</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19101791636">#</a></li>
<li>Is ubiquitous encryption technology on the horizon? <a rel="nofollow" href="http://bit.ly/aDVioI">http://bit.ly/aDVioI</a> [Hopefully..] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19104316869">#</a></li>
<li>RT @capsecdc: CapSecDC is TONIGHT. Hope to see you there! Stetson&#8217;s, 1610 U Street NW. Follow us here &amp; check for updates if you are late! <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19104799058">#</a></li>
<li>Google: Plug Critical Holes within 60 Days Across Industry <a rel="nofollow" href="http://bit.ly/aTDxZ3">http://bit.ly/aTDxZ3</a> [Not perfect but at least a start.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19106304160">#</a></li>
<li>RT @angelinaward: RT @Beaker: We&#8217;d b grateful if U could spread word a/b sponsorship of non-profit HacKid con. <a rel="nofollow" href="http://www.hackid.org">http://www.hackid.org</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19109624523">#</a></li>
<li>Survey: security pros feel underpaid, but willing to take a pay cut in some cases <a rel="nofollow" href="http://j.mp/dtw0S5">http://j.mp/dtw0S5</a> [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19113059422">#</a></li>
<li>#EDU University Offers New Cybersecurity Degrees <a rel="nofollow" href="http://bit.ly/chWlCB">http://bit.ly/chWlCB</a> [Yep, online and from UMUC.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19250136823">#</a></li>
<li>Astaro Security Gateway Vs 8 Home <a rel="nofollow" href="http://bit.ly/bmuNoI">http://bit.ly/bmuNoI</a> [As I mentioned in <a rel="nofollow" href="http://bit.ly/d1KFnH">http://bit.ly/d1KFnH</a> nice free product 2 play w/.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19250504189">#</a></li>
<li>Demonstration of Scriptless XSS <a rel="nofollow" href="http://bit.ly/b5XrIm">http://bit.ly/b5XrIm</a> (via @<a class="aktt_username" href="http://twitter.com/peterkruse">peterkruse</a> @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19251423106">#</a></li>
<li>#CON RT @falconsview: anybody else planning to go to the Cybersecurity Symposium in DC next Tues (7/27)? &lt;- Nope <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19251519096">#</a></li>
<li>Don&#8217;t Wait 4 Adobe Sandboxing 2 Secure Your PDF Viewing (via @<a class="aktt_username" href="http://twitter.com/bobgourley">bobgourley</a>) <a rel="nofollow" href="http://bit.ly/9p5hhv">http://bit.ly/9p5hhv</a> [Yep, FoxIt and Nuance alrdy have.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19251841999">#</a></li>
<li>IT Security Professional: Heal Thyself: Cybersec Lessons 2 b Learned fr Medicine Field <a rel="nofollow" href="http://bit.ly/afx3oM">http://bit.ly/afx3oM</a> [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19281797225">#</a></li>
<li>#JOB Apply now! #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23InfoSecMentors">InfoSecMentors</a> Meetup 4 all project participants 7-9pm 7/28 @ BSides <a rel="nofollow" href="http://bit.ly/cf4ae0">http://bit.ly/cf4ae0</a> (via @<a class="aktt_username" href="http://twitter.com/joshcorman">joshcorman</a> @<a class="aktt_username" href="http://twitter.com/petermannmc">petermannmc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19282327755">#</a></li>
<li>MS&#8217;s Mike Reavey Talks a/b New &#8220;Coordinated Vuln Disclosure&#8221; Approach <a rel="nofollow" href="http://bit.ly/dzurYv">http://bit.ly/dzurYv</a> [Will rebranding really help?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19283188561">#</a></li>
<li>RT @InfoSecMentors: #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23BSidesLV">BSidesLV</a> InfoSec Careers Grand Slam! Wed 4pm-@<a class="aktt_username" href="http://twitter.com/grecs">grecs</a> 5pm-@<a class="aktt_username" href="http://twitter.com/jsokoly">jsokoly</a> 6pm-@<a class="aktt_username" href="http://twitter.com/infosecmentors">infosecmentors</a> 7pm-Mentors Meetup! <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19284799513">#</a></li>
<li>Dissecting the Hack: How We Rewrote STAR Section <a rel="nofollow" href="http://bit.ly/cH1x9n">http://bit.ly/cH1&#215;9n</a> (via @<a class="aktt_username" href="http://twitter.com/bbaskin">bbaskin</a> @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) [I'm getting stressed just reading this.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19296577352">#</a></li>
<li>Fed Cyber Strategy Gets Modestly Clearer <a rel="nofollow" href="http://bit.ly/b99bPZ">http://bit.ly/b99bPZ</a> &lt;- Disagree, it made responsibilities much less clear. (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19297091651">#</a></li>
<li>#JOB We&#8217;re hiring again see <a rel="nofollow" href="http://bit.ly/9I5v5P">http://bit.ly/9I5v5P</a> and <a rel="nofollow" href="http://bit.ly/aljRLn">http://bit.ly/aljRLn</a> (via @<a class="aktt_username" href="http://twitter.com/VRT_Sourcefire">VRT_Sourcefire</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/19297352078">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2010/07/26/grecs-weekly-infosec-ramblings-for-2010-07-22/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2010-07-15</title>
		<link>http://www.novainfosecportal.com/2010/07/16/grecs-weekly-infosec-ramblings-for-2010-07-15/</link>
		<comments>http://www.novainfosecportal.com/2010/07/16/grecs-weekly-infosec-ramblings-for-2010-07-15/#comments</comments>
		<pubDate>Fri, 16 Jul 2010 15:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2010/07/15/grecs-weekly-infosec-ramblings-for-2010-07-15/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-3920" title="Bla Bla Bla" src="http://www.novainfosecportal.com/wp-content/uploads/2010/07/blablabla.jpg" alt="Bla Bla Bla" width="200" height="175" />If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="events/nova-meetups/#events-in-dc">DC</a>-, and <a href="events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>There aren&#8217;t a lot of <strong>meetups</strong> going on due to summer vacations but a summary and an event did pop up.</p>
<ul>
<li>#MEETUP Meeting: 2010.06.10 0&#215;0004 <a rel="nofollow" href="http://bit.ly/cLkftm">http://bit.ly/cLkftm</a> (via @<a class="aktt_username" href="http://twitter.com/novahackers">novahackers</a>) [Notes fr last meeting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18218559714">#</a></li>
<li>#MEETUP Baltimore Node is showcasing Powertool Drag Racing Sat &amp; Sun. <a rel="nofollow" href="http://bit.ly/bLnk8v">http://bit.ly/bLnk8v</a> [This could get dangerous. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18407263590">#</a></li>
</ul>
<p>But have no fear &#8230; <strong>more meetups are coming</strong>&#8230;</p>
<ul>
<li>#MEETUP State of the Hack: M-Trends- The Advanced Persistent Threat, 7/20 at 6:30 PM (via @<a class="aktt_username" href="http://twitter.com/dallendoug">dallendoug</a> @<a class="aktt_username" href="http://twitter.com/Mandiant">Mandiant</a> @<a class="aktt_username" href="http://twitter.com/issa_dc">issa_dc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18408854126">#</a></li>
<li>#MEETUP Not going to Defcon? Need a pity party? Good news! Charmsec 27 is Thur, July 29th 7:00PM at @<a class="aktt_username" href="http://twitter.com/Slaintepub">Slaintepub</a> (via @<a class="aktt_username" href="http://twitter.com/charmsec">charmsec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18460070491">#</a></li>
</ul>
<p>If you don&#8217;t have time to make it to any of the weekly security meetups, why not try attending one of these <strong>upcoming conferences</strong>?</p>
<ul>
<li>#CON NIST will host National Initiative Cybersec Education (NICE) Workshop on Aug 11-12, 2010 <a rel="nofollow" href="http://bit.ly/bZgEbX">http://bit.ly/bZgEbX</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18406696429">#</a></li>
<li>Black Hat, DefCon &amp; B-Sides: A Survival Guide <a rel="nofollow" href="http://bit.ly/cY0WBm">http://bit.ly/cY0WBm</a> [Good read for 1st time attendees .. ahhh hem] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18463547643">#</a></li>
<li>#AppSecDC 2010 CFP closes end of this month. Get that submission in before U head 2 Black Hat! <a rel="nofollow" href="http://bit.ly/c3RzxJ">http://bit.ly/c3RzxJ</a> (via @<a class="aktt_username" href="http://twitter.com/appsecdc">appsecdc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18574438028">#</a></li>
<li>#CON Registration is NOW OPEN for #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23AppSecDC">AppSecDC</a> 2010. <a rel="nofollow" href="http://bit.ly/dg4zDp">http://bit.ly/dg4zDp</a> 1 month 2 take adv of early bird discounts! (via @<a class="aktt_username" href="http://twitter.com/appsecdc">appsecdc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18574619164">#</a></li>
</ul>
<p>For those of you that don’t know, we have some pretty awesome <strong>infosec bloggers in the local area</strong>. You can check out some of their articles below.</p>
<ul>
<li>#NOVABLOGGER: My Article on APT Posted <a rel="nofollow" href="http://bit.ly/9LnwPT">http://bit.ly/9LnwPT</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> (@<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [Check it out.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18463668410">#</a></li>
<li>#NOVABLOGGER: Code w/ JavaScript: Letters &amp; Numbers Optional <a rel="nofollow" href="http://bit.ly/bxiJiB">http://bit.ly/bxiJiB</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18464332675">#</a></li>
</ul>
<p>In case you missed them, here were some of <strong>our blog posts</strong> from this week.</p>
<ul>
<li>BLOGGED: Grecs’ Weekly Infosec Ramblings for 2010-07-08 <a rel="nofollow" href="http://bit.ly/baJWOu">http://bit.ly/baJWOu</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18133834871">#</a></li>
<li>BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://bit.ly/aVr97J">http://bit.ly/aVr97J</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18141355462">#</a></li>
<li>BLOGGED: Where You Want to Be This Week for 2010-07-12 <a rel="nofollow" href="http://bit.ly/ctfn88">http://bit.ly/ctfn88</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18447205061">#</a></li>
</ul>
<p>As usual there are lots of <strong>education, career enhancement, and potential job opportunities</strong> floating around.</p>
<ul>
<li>#EDU First 2-Year Schools 2 B Designated Centers of Excellence by NSA. <a rel="nofollow" href="http://bit.ly/aQXCrO">http://bit.ly/aQXCrO</a> [Hey, there's 2 close by.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18156177118">#</a></li>
<li>#JOB RT @Shpantzer: RT @gattaca: Any one interested in a certification &amp; accreditation gig in DC? Drop me a DM #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23job">job</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23jobs">jobs</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18461128972">#</a></li>
<li>In Security? Check out InfoSec Mentors: <a rel="nofollow" href="http://bit.ly/9Wrjvh">http://bit.ly/9Wrjvh</a>. Spread the love. (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a> @<a class="aktt_username" href="http://twitter.com/kriggins">kriggins</a> @<a class="aktt_username" href="http://twitter.com/RonW123">RonW123</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18464675485">#</a></li>
<li>#JOB Three new software security consultant jobs posted for VA.. <a rel="nofollow" href="http://bit.ly/cFa7Bm">http://bit.ly/cFa7Bm</a> (via @<a class="aktt_username" href="http://twitter.com/cigital">cigital</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18483342810">#</a></li>
<li>#JOB &#8220;Skill Matrix 4 CISO of Future&#8221;  <a rel="nofollow" href="http://j.mp/di1yd7">http://j.mp/di1yd7</a> (via @<a class="aktt_username" href="http://twitter.com/LJKush">LJKush</a> @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) [Looks interesting. Unfort need 2 reg.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18629334884">#</a></li>
</ul>
<p>And in closing, you can also keep yourself busy with these <strong>interesting articles and newsbites</strong>:</p>
<ul>
<li>New AV Testing Methods Stir Debate <a rel="nofollow" href="http://bit.ly/9ZWUAH">http://bit.ly/9ZWUAH</a> [Yeah, whoever scores low will debate. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18086761327">#</a></li>
<li>Reverse engineer extracts Skype crypto secret recipe <a rel="nofollow" href="http://bit.ly/bLtGvM">http://bit.ly/bLtGvM</a> [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18136346073">#</a></li>
<li>&#8220;The Time is Now 4 WiFi Neighborhood Watch Programs&#8221; <a rel="nofollow" href="http://bit.ly/aJf9Ic">http://bit.ly/aJf9Ic</a> (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a> @<a class="aktt_username" href="http://twitter.com/burgessct">burgessct</a>) [Excellent idea.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18136507352">#</a></li>
<li>Apple Ranks 1st in Surging Security Bug Count <a rel="nofollow" href="http://j.mp/awti3h">http://j.mp/awti3h</a> [Should I head back to a PC? <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18351087133">#</a></li>
<li>&#8220;When all else fails, sue&#8221; ..hilarity from #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23LIGATT">LIGATT</a> <a rel="nofollow" href="http://bit.ly/cvlskq">http://bit.ly/cvlskq</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a> @<a class="aktt_username" href="http://twitter.com/RafalLos">RafalLos</a>) [@<a class="aktt_username" href="http://twitter.com/tiffanyrad">tiffanyrad</a> called this 1.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18408219456">#</a></li>
<li>#NEWS Security Rule No. 1: Assume You&#8217;re Hacked <a rel="nofollow" href="http://bit.ly/dBZsHv">http://bit.ly/dBZsHv</a> (via @<a class="aktt_username" href="http://twitter.com/DaveMarcus">DaveMarcus</a> @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [fully agree!] &lt;- +1 <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18461780094">#</a></li>
<li>Microsoft Fixes Ormandy Zero-Day, Four Other Bugs <a rel="nofollow" href="http://bit.ly/bh4D1Q">http://bit.ly/bh4D1Q</a> [Finally!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18465196506">#</a></li>
<li>Mozilla Snuffs Password Pilfering Firefox Add-On <a rel="nofollow" href="http://bit.ly/bKtFZb">http://bit.ly/bKtFZb</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18571320975">#</a></li>
<li>Secunia Half Year Report for 2010 Shows Interesting Trends <a rel="nofollow" href="http://bit.ly/d8nepa">http://bit.ly/d8nepa</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) [Interesting. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18575868199">#</a></li>
<li>&#8220;Millions&#8221; Of Home Routers Vulnerable To Web Hack <a rel="nofollow" href="http://bit.ly/dlVYmk">http://bit.ly/dlVYmk</a> [DNS bites us again] (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18576346651">#</a></li>
<li>Winners 4 #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23DHS">DHS</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23cybersecurity">cybersecurity</a> awareness challenge <a rel="nofollow" href="http://j.mp/bePtiJ">http://j.mp/bePtiJ</a> (via @<a class="aktt_username" href="http://twitter.com/werntzp">werntzp</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18606710970">#</a></li>
<li>Password length more important than complexity #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23R00t">R00t</a>$H3ll = 195 yrs 2 crack; abcdefg1234567 = 5722 yrs <a rel="nofollow" href="http://j.mp/cY1gWR">http://j.mp/cY1gWR</a> (via @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18607208696">#</a></li>
<li>Researchers Expose Privacy Flaws in Chatroulette <a rel="nofollow" href="http://j.mp/aNuiE5">http://j.mp/aNuiE5</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) [Uh oh..] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18607447096">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2010/07/16/grecs-weekly-infosec-ramblings-for-2010-07-15/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2010-07-08</title>
		<link>http://www.novainfosecportal.com/2010/07/09/grecs-weekly-infosec-ramblings-for-2010-07-08/</link>
		<comments>http://www.novainfosecportal.com/2010/07/09/grecs-weekly-infosec-ramblings-for-2010-07-08/#comments</comments>
		<pubDate>Fri, 09 Jul 2010 17:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2010/07/08/grecs-weekly-infosec-ramblings-for-2010-07-08/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-full wp-image-3920" title="Bla Bla Bla" src="http://www.novainfosecportal.com/wp-content/uploads/2010/07/blablabla.jpg" alt="Bla Bla Bla" width="200" height="175" />If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="events/nova-meetups/#events-in-dc">DC</a>-, and <a href="events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>Not many <strong>meetups/cons</strong> this past week but you can&#8217;t beat a free SANS evening and their annual forensics summit.</p>
<ul>
<li>#CON OPEN TO ALL &#8211; Digital Forensics Awards Night – 7/8/10 <a rel="nofollow" href="http://bit.ly/8Xezfm">http://bit.ly/8Xezfm</a> (via @<a class="aktt_username" href="http://twitter.com/Shpantzer">Shpantzer</a>) [Get chance 2 experience SANS 4 free.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17598973713">#</a></li>
<li>#CON Last minute change #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23forensicsummit">forensicsummit</a>. Mischel Kwon 2 keynote day 2. <a rel="nofollow" href="http://bit.ly/bELuyU">http://bit.ly/bELuyU</a> (via @<a class="aktt_username" href="http://twitter.com/Shpantzer">Shpantzer</a> @<a class="aktt_username" href="http://twitter.com/robtlee">robtlee</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18005088454">#</a></li>
</ul>
<p>SANS is on the ball announcing an <strong>upcoming conference</strong> later this year.</p>
<ul>
<li>#CON Once again chairing SANS Virtualization &amp; Cloud Computing Summit <a rel="nofollow" href="http://bit.ly/9NmKss">http://bit.ly/9NmKss</a> (via @<a class="aktt_username" href="http://twitter.com/Shpantzer">Shpantzer</a> @<a class="aktt_username" href="http://twitter.com/tliston">tliston</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18065268736">#</a></li>
</ul>
<p>For those of you that don’t know, we have some pretty awesome <strong>infosec bloggers in the local area</strong>. You can check out some of their articles below.</p>
<ul>
<li>#NOVABLOGGER: Did U Know? US has an Industrial Ctrl Systems (SCADA) CERT.. <a rel="nofollow" href="http://bit.ly/9fU1AW">http://bit.ly/9fU1AW</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17662115993">#</a></li>
<li>#NOVABLOGGER Forget Trying 2 Color the Swan, Focus on What You Do Know <a rel="nofollow" href="http://bit.ly/cGB0kw">http://bit.ly/cGB0kw</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17984282226">#</a></li>
<li>#NOVABLOGGER: Intro 2 RailGun: WIN API for Meterpreter <a rel="nofollow" href="http://bit.ly/aVA701">http://bit.ly/aVA701</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [Nice!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18083415920">#</a></li>
</ul>
<p>In case you missed them, here were some of <strong>our blog posts</strong> from this week.</p>
<ul>
<li>BLOGGED: Grecs’ Weekly Infosec Ramblings for 2010-07-01 <a rel="nofollow" href="http://bit.ly/bllHyh">http://bit.ly/bllHyh</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17593264805">#</a></li>
<li>BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://bit.ly/asbKgf">http://bit.ly/asbKgf</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17604134175">#</a></li>
<li>BLOGGED: Where You Want to Be This Week for 2010-07-05 <a rel="nofollow" href="http://bit.ly/cJijMs">http://bit.ly/cJijMs</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17883963979">#</a></li>
<li>BLOGGED: Upcoming Conferences for July, August, September <a rel="nofollow" href="http://bit.ly/aM1prA">http://bit.ly/aM1prA</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17887596799">#</a></li>
<li>BLOGGED: Starbucks and Wifi Security Awareness <a rel="nofollow" href="http://bit.ly/ar6Wox">http://bit.ly/ar6Wox</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17965284161">#</a></li>
<li>BLOGGED: Forget this Network, Pretty Please <a rel="nofollow" href="http://bit.ly/bijcse">http://bit.ly/bijcse</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18043846570">#</a></li>
</ul>
<p>As usual &#8230; lots of stuff going on in the <strong>government related</strong> to infosec&#8230;</p>
<ul>
<li>Agencies moving slowly to TICs. <a rel="nofollow" href="http://bit.ly/a4iduG">http://bit.ly/a4iduG</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23cybersecurity">cybersecurity</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23OMB">OMB</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23DHS">DHS</a> (via @<a class="aktt_username" href="http://twitter.com/werntzp">werntzp</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17622895766">#</a></li>
<li>US DHS shares privacy expertise in new handbook <a rel="nofollow" href="http://bit.ly/9eapkF">http://bit.ly/9eapkF</a> [interesting read] (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17959337513">#</a></li>
<li>NIST rel Interagency Report 7559 Forensics Web Services <a rel="nofollow" href="http://bit.ly/cHNeLA">http://bit.ly/cHNeLA</a> (PDF) (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17959918526">#</a></li>
<li>NIST draft SP 800-38A Rec 4 Block Cipher Modes of Op <a rel="nofollow" href="http://bit.ly/daqlB3">http://bit.ly/daqlB3</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) [More NIST candy.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17959991449">#</a></li>
<li>Threat of Cyberwar .. Grossly Exaggerated <a rel="nofollow" href="http://bit.ly/bD9f4N">http://bit.ly/bD9f4N</a> (@<a class="aktt_username" href="http://twitter.com/schneierblog">schneierblog</a> calling it like he sees it.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17970814270">#</a></li>
<li>NIST rel draft of SP 800-125 Guide 2 Security 4 Full Virtualization Technologies <a rel="nofollow" href="http://bit.ly/970Lhx">http://bit.ly/970Lhx</a> (PDF) (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17983262714">#</a></li>
<li>OMB M-10-28 Clarifying Cybersec Responsibilities &amp; Activities of EOP/DHS <a rel="nofollow" href="http://bit.ly/bIgDNS">http://bit.ly/bIgDNS</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17983937863">#</a></li>
<li>DHS Given More Cybersecurity Responsibilities <a rel="nofollow" href="http://bit.ly/b25tSD">http://bit.ly/b25tSD</a> Will they step up? And who defends .com? (via @<a class="aktt_username" href="http://twitter.com/taosecurity">taosecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18042339366">#</a></li>
<li>Proposed #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23HHS">HHS</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23rulemaking">rulemaking</a> 4 #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23HIPAA">HIPAA</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23HITECH">HITECH</a> sec, privacy, &amp; enforce rules, 60-day cmt period <a rel="nofollow" href="http://bit.ly/bJcq3a">http://bit.ly/bJcq3a</a> (via @<a class="aktt_username" href="http://twitter.com/rybolov">rybolov</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18043578935">#</a></li>
<li>NSA Plan 2 Monitor Cyberthreats Draws Cautious Support <a rel="nofollow" href="http://bit.ly/d1eki9">http://bit.ly/d1eki9</a> (via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a> @<a class="aktt_username" href="http://twitter.com/AndLax">AndLax</a>) [Name sounds Orwellian.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18066558153">#</a></li>
</ul>
<p>Some<strong> job postings and trends</strong> for an infosec career&#8230;</p>
<ul>
<li>#JOB Stach &amp; Liu has positions open 4 security consultants w/ focus on risk assess/pen testing.. (via @<a class="aktt_username" href="http://twitter.com/vinnieliu">vinnieliu</a> @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a> <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' />  ) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17624934617">#</a></li>
<li>#JOB When 2 Leave a Job <a rel="nofollow" href="http://bit.ly/cymG5M">http://bit.ly/cymG5M</a> (via @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) [More good career advice from @<a class="aktt_username" href="http://twitter.com/LJKush">LJKush</a> &amp; Mike Murray.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17963702894">#</a></li>
<li>#JOB Career Opps on Legal Side of Information Security <a rel="nofollow" href="http://bit.ly/ap55oV">http://bit.ly/ap55oV</a> [Not interested but m/b @<a class="aktt_username" href="http://twitter.com/GoldbergLawDC">GoldbergLawDC</a> could cmt on. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17983697300">#</a></li>
<li>#JOB DHS has a cybersecurity job ensuring app security is considered in dev &amp; acquisitions <a rel="nofollow" href="http://bit.ly/dC73kc">http://bit.ly/dC73kc</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18041788089">#</a></li>
<li>#JOB My friend at infolock is hiring a senior security consultant. <a rel="nofollow" href="http://bit.ly/9WrgEn">http://bit.ly/9WrgEn</a> (via @<a class="aktt_username" href="http://twitter.com/pacohope">pacohope</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18063756342">#</a></li>
<li>#JOB Jobs Aplenty 4 IT Security Pro. Infosec is among most difficult positions 2 fill. <a rel="nofollow" href="http://bit.ly/9epGm2">http://bit.ly/9epGm2</a> [Yeah!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18072087370">#</a></li>
</ul>
<p>And in closing, you can also keep yourself busy with these interesting <strong>newsbites</strong>:</p>
<ul>
<li>Suspicious login protection extended 2 all Google accts <a rel="nofollow" href="http://bit.ly/9Sk3ea">http://bit.ly/9Sk3ea</a> (via @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) [Nice, didn't realize was everything.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17660973557">#</a></li>
<li>Youtube Vulnerable to HTML Code Injection <a rel="nofollow" href="http://bit.ly/9o20Ph">http://bit.ly/9o20Ph</a> (via @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a> @<a class="aktt_username" href="http://twitter.com/TinKode">TinKode</a>) [Big news for a holiday Sunday.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17728640571">#</a></li>
<li>App Store, Hacked <a rel="nofollow" href="http://bit.ly/b2m62c">http://bit.ly/b2m62c</a> (via @<a class="aktt_username" href="http://twitter.com/SecBarbie">SecBarbie</a> @<a class="aktt_username" href="http://twitter.com/jeffisageek">jeffisageek</a>) [In other big Sunday news..] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17728811594">#</a></li>
<li>Big W Infecting Photo Printing Customers? <a rel="nofollow" href="http://bit.ly/d188rw">http://bit.ly/d188rw</a> (via @<a class="aktt_username" href="http://twitter.com/securityninja">securityninja</a> @<a class="aktt_username" href="http://twitter.com/mikkohypponen">mikkohypponen</a> @<a class="aktt_username" href="http://twitter.com/drinfosec">drinfosec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17828130301">#</a></li>
<li>Twitter Kit, a Spammer&#8217;s Dream Come True <a rel="nofollow" href="http://bit.ly/cHYE07">http://bit.ly/cHYE07</a> [And it's only $20!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17835872098">#</a></li>
<li>Credit Card Hackers Visit Hotels All Too Often <a rel="nofollow" href="http://nyti.ms/bq7kfb">http://nyti.ms/bq7kfb</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17883828378">#</a></li>
<li>&#8216;Robin Sage&#8217; Profile Duped Military Intelligence, IT Security Pros <a rel="nofollow" href="http://bit.ly/cHkc3q">http://bit.ly/cHkc3q</a> [Well that answers that question.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17903449336">#</a></li>
<li>Hi! I&#8217;m security researcher &amp; here&#8217;s your invoice. <a rel="nofollow" href="http://bit.ly/9rCQsj">http://bit.ly/9rCQsj</a> (via @<a class="aktt_username" href="http://twitter.com/lcamtuf">lcamtuf</a> @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) [Interesting read &amp; good cmts.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17958762274">#</a></li>
<li>PCI Security Stds Go 2 3 Year Lifecycle <a rel="nofollow" href="http://bit.ly/9PfMqh">http://bit.ly/9PfMqh</a> (via @<a class="aktt_username" href="http://twitter.com/mckeay">mckeay</a> @<a class="aktt_username" href="http://twitter.com/BrandenWilliams">BrandenWilliams</a>) [Haven't they learned anything from FISMA?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/18043219923">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2010/07/09/grecs-weekly-infosec-ramblings-for-2010-07-08/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2010-07-01</title>
		<link>http://www.novainfosecportal.com/2010/07/02/grecs-weekly-infosec-ramblings-for-2010-07-01/</link>
		<comments>http://www.novainfosecportal.com/2010/07/02/grecs-weekly-infosec-ramblings-for-2010-07-01/#comments</comments>
		<pubDate>Fri, 02 Jul 2010 17:30:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2010/07/01/grecs-weekly-infosec-ramblings-for-2010-07-01/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to [...]]]></description>
			<content:encoded><![CDATA[<p>If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="events/nova-meetups/#events-in-dc">DC</a>-, and <a href="events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>There seemed to be quite a few <strong>meetups this past week</strong>. Did you get to attend any of them? And don&#8217;t forget &#8230; there are two 2600 meetups later this evening.</p>
<ul>
<li>#MEETUP Holy heck! Look at time! CapSec is NEXT WED! Stetson&#8217;s, 1610 U Street, around 5, yadda yadda. See you there! (via @<a class="aktt_username" href="http://twitter.com/capsecdc">capsecdc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17061379981">#</a></li>
<li>#MEETUP W/ so much going on, we&#8217;re testing waters w/ meetup grp 2 get word out. Join at <a rel="nofollow" href="http://bit.ly/dze4dW">http://bit.ly/dze4dW</a> (via @<a class="aktt_username" href="http://twitter.com/hacdc">hacdc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17262405500">#</a></li>
<li>Reminder: InfraGard NCMA Meetup @ Tue Jun 29 6pm &#8211; 8:30pm  (NovaInfosecPortal.com Calendar) (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17290294638">#</a></li>
<li>#MEETUP Updated our meetup URL since last tweet! Join our meetup grp. &#8220;Use your brain again.&#8221; <a rel="nofollow" href="http://bit.ly/beQktG">http://bit.ly/beQktG</a> (via @<a class="aktt_username" href="http://twitter.com/hacdc">hacdc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17291826818">#</a></li>
<li>Reminder: CapSecDC Meetup @ Wed Jun 30 6pm &#8211; 9pm (NovaInfosecPortal.com  Calendar) (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17368245328">#</a></li>
</ul>
<p>If you didn&#8217;t have time to make it to any of the weekly security meetups, why not try attending one of these <strong>upcoming conferences</strong>?</p>
<ul>
<li>#CON Digital SANS Forensics/IR Summit 2010: Advanced Persistent Threat Panel Questions Released! <a rel="nofollow" href="http://bit.ly/dDktdc">http://bit.ly/dDktdc</a> (via @<a class="aktt_username" href="http://twitter.com/taosecurity">taosecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17061599794">#</a></li>
<li>#CON Planning my trip 2 SANS &#8220;What Works in Forensics &amp; Incident Response Summit 2010&#8243; <a rel="nofollow" href="http://bit.ly/aA7fOK">http://bit.ly/aA7fOK</a> (via @<a class="aktt_username" href="http://twitter.com/angelinaward">angelinaward</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17216299575">#</a></li>
<li>#CON NIST 2 hold symposium on 7/27, Cybersecurity &amp; Innovation in Info Economy <a rel="nofollow" href="http://bit.ly/b4780Y">http://bit.ly/b4780Y</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17353322828">#</a></li>
</ul>
<p>For those of you that don’t know, we have some pretty awesome <strong>infosec bloggers in the local area</strong>. You can check out some of their articles below.</p>
<ul>
<li>#NOVABLOGGER: Secure UR WordPress by Learning fr My Mistakes <a rel="nofollow" href="http://bit.ly/ah34aW">http://bit.ly/ah34aW</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [Gr8 read 4 all bloggers.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17173619838">#</a></li>
<li>#NOVABLOGGER: iPhone Geo Blocking <a rel="nofollow" href="http://bit.ly/bwlGYT">http://bit.ly/bwlGYT</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [Tx @mubix. Any quick ways of rm loc data fr existing pics?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17177729660">#</a></li>
<li>#NOVABLOGGER Thinking a/b Cloud Security &amp; Vuln Research: 3 True Outcomes <a rel="nofollow" href="http://bit.ly/bYuyBM">http://bit.ly/bYuyBM</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17263748359">#</a></li>
<li>#NOVABLOGGER: Firefox Saved PWs <a rel="nofollow" href="http://bit.ly/aYX33I">http://bit.ly/aYX33I</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [B sure 2 set master pw!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17291575169">#</a></li>
</ul>
<p>In case you missed them, here were some of <strong>our blog posts</strong> from this week.</p>
<ul>
<li>BLOGGED: Grecs’ Weekly Infosec Ramblings for 2010-06-24 <a rel="nofollow" href="http://bit.ly/bIUlsl">http://bit.ly/bIUlsl</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16982997418">#</a></li>
<li>BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://bit.ly/ckRXsw">http://bit.ly/ckRXsw</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17035533818">#</a></li>
<li>BLOGGED: Where You Want to Be This Week for 2010-06-28 <a rel="nofollow" href="http://bit.ly/cfCHbJ">http://bit.ly/cfCHbJ</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17272338928">#</a></li>
<li>BLOGGED: Cookie Use … How Agencies Should Set Example for Broader Industry <a rel="nofollow" href="http://bit.ly/c3ASpP">http://bit.ly/c3ASpP</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17344142948">#</a></li>
<li>BLOGGED: IE6 ‘More Security’ than Chrome/Opera … Really? <a rel="nofollow" href="http://bit.ly/daovt7">http://bit.ly/daovt7</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17425278896">#</a></li>
</ul>
<p>I noticed a lot of <strong>career-related information</strong> as well as a number of <strong>job posts</strong>.</p>
<ul>
<li>#JOB Looking 4 candidates interested in data analytics/mining <a rel="nofollow" href="http://bit.ly/9JTqtt">http://bit.ly/9JTqtt</a> (via @<a class="aktt_username" href="http://twitter.com/DuvalSearch">DuvalSearch</a>) [1 NoVA spot too.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17258884423">#</a></li>
<li>#JOB Ever wanted 2 lead a #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23DHS">DHS</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23cybersec">cybersec</a> ctr? <a rel="nofollow" href="http://bit.ly/bURVgu">http://bit.ly/bURVgu</a> (NCCIC Director job posting) (via @<a class="aktt_username" href="http://twitter.com/werntzp">werntzp</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17262056448">#</a></li>
<li>#JOB Prepare for Careers in the Cloud <a rel="nofollow" href="http://bit.ly/bSXMBq">http://bit.ly/bSXMBq</a> [Some career advice to consider.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17447668234">#</a></li>
<li>#JOB VA &amp; CA Security Specialist &#8211; JASON Program FSO: Location: McLean, VA an.. <a rel="nofollow" href="http://bit.ly/duASN6">http://bit.ly/duASN6</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17526940598">#</a></li>
<li>#JOB NoVA Sr IT Audit opening, 3-7yrs exp, GCC&#8217;s, App, SDLC reviews. CISA preferred. <a rel="nofollow" href="http://bit.ly/bxFJYK">http://bit.ly/bxFJYK</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17528553908">#</a></li>
<li>#JOB Stratum looking 4 ppl w/ nunchuku, bow hunting, &amp; hacking skills. Mostly hacking tho <a rel="nofollow" href="http://bit.ly/94cvOr">http://bit.ly/94cvOr</a> (via @<a class="aktt_username" href="http://twitter.com/packetwerks">packetwerks</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17540271995">#</a></li>
</ul>
<p>And if you work in the <strong>federal government</strong> space, you&#8217;ll definitely want to take a look at these posts.</p>
<ul>
<li>Agencies Get Rdy 4 FISMA Changes <a rel="nofollow" href="http://bit.ly/aBnIAX">http://bit.ly/aBnIAX</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17035032508">#</a></li>
<li>WH Unveils Online Authentication Plan: Internet Fraud, ID Theft Prompts Nt&#8217;l Strategy 4 Trust Initiative <a rel="nofollow" href="http://bit.ly/cpQKCr">http://bit.ly/cpQKCr</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17061888565">#</a></li>
<li>Use TrueCrypt 2 encrypt ur sensitive data,.. Don&#8217;t cross border w/ unencrypted data. <a rel="nofollow" href="http://bit.ly/cdduNL">http://bit.ly/cdduNL</a> (via @<a class="aktt_username" href="http://twitter.com/GoldbergLawDC">GoldbergLawDC</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17184843409">#</a></li>
<li>US Gov Sites Can Now Use Cookies/Web Analytics <a rel="nofollow" href="http://oreil.ly/9Ev8UU">http://oreil.ly/9Ev8UU</a> (via @<a class="aktt_username" href="http://twitter.com/ibmfedcyber">ibmfedcyber</a> @<a class="aktt_username" href="http://twitter.com/digiphile">digiphile</a>) [Google Analytics 2 get boost.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17261768352">#</a></li>
<li>BREAKING: Supreme Court strikes down SOX <a rel="nofollow" href="http://bit.ly/bgHXeU">http://bit.ly/bgHXeU</a> (via @<a class="aktt_username" href="http://twitter.com/alexhutton">alexhutton</a>) [Just part of it. Not whole thing.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17264397454">#</a></li>
<li>#NEWS OMB Ends Fed Agency Cookie Ban <a rel="nofollow" href="http://bit.ly/aO1wlH">http://bit.ly/aO1wlH</a> [Decision 2 use opt-in/out up 2 agency. As exple all shld use opt-in.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17281207981">#</a></li>
<li>#EDU NIST has online course “Applying Risk Mgmt Framework to Fed Info Systems” <a rel="nofollow" href="http://bit.ly/9c04rR">http://bit.ly/9c04rR</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17288479909">#</a></li>
<li>Supreme Court Ruling Will Have Little Impact On SOX.. Sorry <a rel="nofollow" href="http://bit.ly/9p1aUl">http://bit.ly/9p1aUl</a> [Commentary no morning's big news.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17290577060">#</a></li>
<li>NIST rel SP 800-53A Rev 1 Guide 4 Assessing Security Ctrls in Fed Info Systems/Orgs <a rel="nofollow" href="http://bit.ly/92G8xc">http://bit.ly/92G8xc</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17367336479">#</a></li>
</ul>
<p>And in closing, you can also keep yourself busy with these interesting <strong>newsbites</strong>:</p>
<ul>
<li>How 2 Access the Internet (A Guide fr Year 2025) <a rel="nofollow" href="http://bit.ly/dg0U5l">http://bit.ly/dg0U5l</a> (via @<a class="aktt_username" href="http://twitter.com/mikkohypponen">mikkohypponen</a> @<a class="aktt_username" href="http://twitter.com/drinfosec">drinfosec</a>) [Slipperly slope?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17034813841">#</a></li>
<li>Hacker High <a rel="nofollow" href="http://bit.ly/bj9cdP">http://bit.ly/bj9cdP</a> [Just a reminder and a trip down memory lane.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17171248267">#</a></li>
<li>Google Can Kill or INSTALL Apps on Androids <a rel="nofollow" href="http://bit.ly/8Xt6jy">http://bit.ly/8Xt6jy</a> [Whoa!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17254068898">#</a></li>
<li>Rancid IE6 &#8216;More Secure&#8217; than Chrome/Opera US Bank Says <a rel="nofollow" href="http://bit.ly/cbhlak">http://bit.ly/cbhlak</a> [Really? Again there's that "more secure" argument.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17288722312">#</a></li>
<li>Russian Spy Ring Bust Uncovers Tech Toolkit <a rel="nofollow" href="http://bit.ly/at3sSL">http://bit.ly/at3sSL</a> [Fascinating read.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17348765940">#</a></li>
<li>How 2 B Better Spy: Cybersec Lessons fr Recent Russian Spy Arrests <a rel="nofollow" href="http://bit.ly/b8ns2N">http://bit.ly/b8ns2N</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) [Nice follow-up.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17351974724">#</a></li>
<li>Facebook Apps Must Now Seek Permission 4 User Data <a rel="nofollow" href="http://bit.ly/bDdcpO">http://bit.ly/bDdcpO</a> [Definately a step in right direction.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17444939808">#</a></li>
<li>The Failure Of Cryptography To Secure Modern Networks <a rel="nofollow" href="http://bit.ly/bdwjQG">http://bit.ly/bdwjQG</a> [Nice read.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17447870458">#</a></li>
<li>Top Apps Largely Forgo Built-In Windows Security Protections <a rel="nofollow" href="http://bit.ly/cMIVZL">http://bit.ly/cMIVZL</a> (via @<a class="aktt_username" href="http://twitter.com/briankrebs">briankrebs</a>) [Nice read.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17527190266">#</a></li>
<li>Social Security Number Format <a rel="nofollow" href="http://bit.ly/c5NQ4F">http://bit.ly/c5NQ4F</a> (via @<a class="aktt_username" href="http://twitter.com/carnal0wnage">carnal0wnage</a>) [Awesome find!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17527506020">#</a></li>
<li>How 2 Stay Safe on Public Wi-Fi Nets <a rel="nofollow" href="http://bit.ly/aydfJd">http://bit.ly/aydfJd</a> (via @<a class="aktt_username" href="http://twitter.com/bvPredator">bvPredator</a>) [Basic but timely given Starbuck's new free service.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17528275229">#</a></li>
<li>#EDU 15 Must-Listen Podcasts 4 Security Pros <a rel="nofollow" href="http://bit.ly/9rUN9z">http://bit.ly/9rUN9z</a> [Great list! L listen 2 about 5 of them.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/17529057982">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. And hey, you should congratulate me for not mentioning the &#8220;L&#8221; word. And I only mentioned the &#8220;F&#8221; word once. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  Anyway, be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2010/07/02/grecs-weekly-infosec-ramblings-for-2010-07-01/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2010-06-24</title>
		<link>http://www.novainfosecportal.com/2010/06/24/grecs-weekly-infosec-ramblings-for-2010-06-24/</link>
		<comments>http://www.novainfosecportal.com/2010/06/24/grecs-weekly-infosec-ramblings-for-2010-06-24/#comments</comments>
		<pubDate>Fri, 25 Jun 2010 03:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2010/06/24/grecs-weekly-infosec-ramblings-for-2010-06-24/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to [...]]]></description>
			<content:encoded><![CDATA[<p>If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="events/nova-meetups/#events-in-dc">DC</a>-, and <a href="events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>There were a few <strong>meetups this past week</strong>. Did you get to attend any of them?</p>
<ul>
<li>#MEETUP .@<a class="aktt_username" href="http://twitter.com/Defcon410">Defcon410</a> Thanks for the shout outs on <a rel="nofollow" href="http://bit.ly/cLSm6W">http://bit.ly/cLSm6W</a>. See you on Thursday! (via @<a class="aktt_username" href="http://twitter.com/charmsec">charmsec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16708545986">#</a></li>
<li>#MEETUP To Whom It May Concern: Charmsec 26 is this Thur at 7:00PM. Sincerely, @<a class="aktt_username" href="http://twitter.com/charmsec">charmsec</a> PS <a rel="nofollow" href="http://bit.ly/devJRV">http://bit.ly/devJRV</a> (via @<a class="aktt_username" href="http://twitter.com/charmsec">charmsec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16709226205">#</a></li>
<li>#MEETUP Our #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23dcweek">dcweek</a> HacDC Lightning Talks were awesomesauce. Updated wiki, including pic &amp; some slides. <a rel="nofollow" href="http://bit.ly/9ejO0B">http://bit.ly/9ejO0B</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16710930016">#</a></li>
<li>And speaking of @charmsec, there is a #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23meetup">meetup</a> in a few hours&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16960917743">#</a></li>
<li>#MEETUP Charmsec 26 is 2night! 7PM. We&#8217;ll b on 2nd floor past bar at @<a class="aktt_username" href="http://twitter.com/Slaintepub">Slaintepub</a> &lt;- I&#8217;ll be there.  Who else? (via @<a class="aktt_username" href="http://twitter.com/dionthegod">dionthegod</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16960989030">#</a></li>
</ul>
<p>If you didn&#8217;t have time to make it to any of the weekly security meetups, were you at least able to hit some of the <strong>local conferences</strong>?</p>
<ul>
<li>#CON Who&#8217;s coming to Gartner security in DC tonight/this week? /via @<a class="aktt_username" href="http://twitter.com/Shpantzer">Shpantzer</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16649157630">#</a></li>
<li>#CON On my way 2 Software Assurance Working Groups #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23SwA">SwA</a> /via @<a class="aktt_username" href="http://twitter.com/dallendoug">dallendoug</a> [Sounds like fun. I need co that supports such things.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16703814212">#</a></li>
</ul>
<p>For those of you that don’t know, we have some excellent <strong>infosec bloggers in the local area</strong>. You can check out some of their articles below.</p>
<ul>
<li>#NOVABLOGGER AT&amp;T is Wrong About iPad Breach &amp; I have code to prove it <a rel="nofollow" href="http://bit.ly/aBFvLI">http://bit.ly/aBFvLI</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16448494332">#</a></li>
<li>#NOVABLOGGER: FD 4 Attacker Tools <a rel="nofollow" href="http://bit.ly/cRDPge">http://bit.ly/cRDPge</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> /via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a> [Very interesting read fr @taosecurity.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16703007288">#</a></li>
<li>#NOVABLOGGER: Charmsec <a rel="nofollow" href="http://bit.ly/9Rdm5O">http://bit.ly/9Rdm5O</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [Nice history of @charmsec.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16960827177">#</a></li>
</ul>
<p>In case you missed them, here were some of <strong>our blog posts</strong> from this week.</p>
<ul>
<li>BLOGGED: Grecs’ Weekly Infosec Ramblings for 2010-06-17 <a rel="nofollow" href="http://bit.ly/cvgvJd">http://bit.ly/cvgvJd</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16438069603">#</a></li>
<li>BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://bit.ly/ayGMAK">http://bit.ly/ayGMAK</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16486080371">#</a></li>
<li>BLOGGED: Where You Want to Be This Week for 2010-06-21 <a rel="nofollow" href="http://bit.ly/a98mEk">http://bit.ly/a98mEk</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16709535837">#</a></li>
</ul>
<p>And this whole <strong>LIGATT</strong> thing broke big time. I hope next week not to have an entire section dedicated to this guy&#8230;</p>
<ul>
<li>The #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23ligatt">ligatt</a> exclusive interview 4 #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23shitcast">shitcast</a> is out. <a rel="nofollow" href="http://bit.ly/9Wz0Nn">http://bit.ly/9Wz0Nn</a> Please RT &amp; spread word. (via @<a class="aktt_username" href="http://twitter.com/matthewhughes">matthewhughes</a> @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16447915789">#</a></li>
<li>RT @carnal0wnage: sweet, i&#8217;ve been plagiarized by LIGATT.. <a rel="nofollow" href="http://bit.ly/9HZE31">http://bit.ly/9HZE31</a> &amp; article&#8230; <a rel="nofollow" href="http://bit.ly/dkdx15">http://bit.ly/dkdx15</a> any1 have copy? <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16449555772">#</a></li>
<li>&#8216;World&#8217;s No. 1 Hacker&#8217; Tome Rocks Security World <a rel="nofollow" href="http://bit.ly/cK5Scs">http://bit.ly/cK5Scs</a> [Article on @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a> a/b our fav guy.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16804355261">#</a></li>
<li>InfoSec Community Launches Campaign Against Security Firm <a rel="nofollow" href="http://bit.ly/aXfbmj">http://bit.ly/aXfbmj</a> (via @<a class="aktt_username" href="http://twitter.com/cktricky">cktricky</a> @<a class="aktt_username" href="http://twitter.com/benrothke">benrothke</a>) [Nother #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23LIGATT">LIGATT</a> article.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16864193998">#</a></li>
<li>Big update to <a rel="nofollow" href="http://bit.ly/9JvWMP">http://bit.ly/9JvWMP</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23ligatt">ligatt</a> (via @<a class="aktt_username" href="http://twitter.com/simplenomad">simplenomad</a>) [At least he's getting a free pen test.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16972135244">#</a></li>
</ul>
<p>More importantly there&#8217;s been a lot of progress in <strong>enacting a cybersec law</strong>. For a quick review of the whole process, you may want to <a href="http://www.youtube.com/watch?v=mEJL2Uuv-oQ">check this video out</a>.</p>
<ul>
<li>Full text of S.3480 Protecting Cyberspace as a National Asset Act of 2010 <a rel="nofollow" href="http://bit.ly/bDEnXu">http://bit.ly/bDEnXu</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23FISMA">FISMA</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16488517955">#</a></li>
<li>New Bill Grants Fed Power to Shut Down Web <a rel="nofollow" href="http://bit.ly/cNxtMP">http://bit.ly/cNxtMP</a> [Same 1 fr earlier this week but hadn't noticed this point.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16514494426">#</a></li>
<li>Senate Panel Clears Major Cybersecurity Bill <a rel="nofollow" href="http://bit.ly/96Aood">http://bit.ly/96Aood</a> [I'm just a Bill.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16971198677">#</a></li>
</ul>
<p>And on other <strong>government news</strong>&#8230;</p>
<ul>
<li>Darpa Taking Fire for Its Cyberwar Range <a rel="nofollow" href="http://bit.ly/bRtwTc">http://bit.ly/bRtwTc</a> (via @<a class="aktt_username" href="http://twitter.com/0xjudd">0xjudd</a> @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) [Moving too slow.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16776275728">#</a></li>
<li>Microsoft Execs Like What They See in DC <a rel="nofollow" href="http://bit.ly/achp51">http://bit.ly/achp51</a> [Stuff like this makes me suspicious.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16779396115">#</a></li>
<li>Einstein Presents Big Challenge to U.S.-CERT <a rel="nofollow" href="http://bit.ly/8ZGIPD">http://bit.ly/8ZGIPD</a> [IG says they're not sharing info.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16798077862">#</a></li>
<li>#EDU NSA pub National Centers of Academic Excellence in IA Education (CAE/IAE) List <a rel="nofollow" href="http://bit.ly/9TyqF0">http://bit.ly/9TyqF0</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16799682543">#</a></li>
<li>#EDU MD has 3 community colleges in Nat Ctrs of Acad Excel in IA 2-year Education (CAE2Y) (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16799845717">#</a></li>
<li>NIST Issues Computer Security Division Annual Report <a rel="nofollow" href="http://bit.ly/cniq44">http://bit.ly/cniq44</a> [Looks like they've been busy.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16803701769">#</a></li>
<li>Howard Schmidt on cybersec: &#8220;The more complex it is, the less people use it.&#8221; <a rel="nofollow" href="http://bit.ly/9SvA37">http://bit.ly/9SvA37</a> (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [So true.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16866999841">#</a></li>
<li>FTC Forces Twitter 2 Upgrade its IT Sec Program <a rel="nofollow" href="http://bit.ly/9ONQlW">http://bit.ly/9ONQlW</a> [No 1 wants 2 do sec by themselves. Gotta b forced I guess.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16959043144">#</a></li>
<li>#JOB Want 2 help DHS w/ national communications infrastructure &amp; support NCCIC? <a rel="nofollow" href="http://bit.ly/96vwHP">http://bit.ly/96vwHP</a> (via @<a class="aktt_username" href="http://twitter.com/werntzp">werntzp</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16976948895">#</a></li>
</ul>
<p>And if you haven&#8217;t heard, this fancy <strong>new mobile OS and phone</strong> were released this week. &#8230; No, I didn&#8217;t get one yet but as you can tell below I did do the OS upgrade.</p>
<ul>
<li>Any1 notice passcode being disabled after upgrading to iOS4? I had it set in 3.x but now it&#8217;s disabled by default. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16749771748">#</a></li>
<li>Also noticed podcasts that deleted earlier reappearing after upgr to #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23ios4">ios4</a>. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16751117374">#</a></li>
<li>More #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23ios4">ios4</a> upgr annoyances.. Some cool cover art lost. No custom background on 3G. No multitasking on 3G. Total unread email counts off. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16768968321">#</a></li>
<li>&#8220;The Complete Guide to Using iOS 4&#8243; <a rel="nofollow" href="http://bit.ly/bnsYMP">http://bit.ly/bnsYMP</a> (via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) [Enjoyed reading.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16778127449">#</a></li>
<li>Apple #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23iOS4">iOS4</a> deals w/ 60+ Vulns <a rel="nofollow" href="http://bit.ly/biO7Vq">http://bit.ly/biO7Vq</a> (via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a> @<a class="aktt_username" href="http://twitter.com/CyberCrime101">CyberCrime101</a>) [Now the security stuff.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16778230962">#</a></li>
<li>Apple Collecting/Sharing iPhone Users&#8217; Precise Locations <a rel="nofollow" href="http://bit.ly/a5OYwh">http://bit.ly/a5OYwh</a> (via @<a class="aktt_username" href="http://twitter.com/techsavvy">techsavvy</a> @<a class="aktt_username" href="http://twitter.com/Shpantzer">Shpantzer</a>) [And then privacy issues.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16778534200">#</a></li>
<li>iPhone Encryption in iOS4 .. few extra steps U must take 2 mk it actually work <a rel="nofollow" href="http://bit.ly/dAHIuA">http://bit.ly/dAHIuA</a> (via @<a class="aktt_username" href="http://twitter.com/IBMFedCyber">IBMFedCyber</a>) [Good 2 know.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16865294280">#</a></li>
<li>iPhone iOS 4 Security <a rel="nofollow" href="http://bit.ly/ah3qwM">http://bit.ly/ah3qwM</a> (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a> @<a class="aktt_username" href="http://twitter.com/georgevhulme">georgevhulme</a>) [Step in right dir but far fr where need 2 go.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16972731329">#</a></li>
<li>Re iOS 4 security .. Can&#8217;t we just have full &#8220;disk&#8221; encryption? <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16972960973">#</a></li>
<li>&amp; what&#8217;s w/ weird backup/restore/run around circle/reset/throw salt over shoulder thing we need 2 do? &amp; that&#8217;s just 2 get sucky encryption. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16973318627">#</a></li>
<li>I mean come on .. I thought Apple was known for this whole magical simple and usable thing. I feel like I&#8217;m back on a PC. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16973464823">#</a></li>
</ul>
<p>You can also keep yourself busy with these <strong>interesting newsbites</strong>:</p>
<ul>
<li>And on other non-Ligatt security news .. Researcher shows how to strike back at web assailants <a rel="nofollow" href="http://bit.ly/alpuJq">http://bit.ly/alpuJq</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16449973272">#</a></li>
<li>Firefox add-on does &#8216;HTTPS Everywhere&#8217; <a rel="nofollow" href="http://bit.ly/c5RJRb">http://bit.ly/c5RJRb</a> [Will have 2 try out. Obviously doesn't work with all sites.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16488693330">#</a></li>
<li>Danger Room: DHS Geek Squad: No Power, No Plan, Lots of Vacancies <a rel="nofollow" href="http://bit.ly/bVUCBx">http://bit.ly/bVUCBx</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16500632015">#</a></li>
<li>Looking 4 Vulns in All Right Places: Experts Say U May B Missing Few <a rel="nofollow" href="http://bit.ly/cgJv0v">http://bit.ly/cgJv0v</a> [Don't forget all those "appliances."] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16501568783">#</a></li>
<li>It&#8217;s Signed, therefore it&#8217;s Clean, right? <a rel="nofollow" href="http://j.mp/aINbGj">http://j.mp/aINbGj</a> [Malware authors using code signing techniques 2 their advantage.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16703652710">#</a></li>
<li>When Twitter Resets Your Password <a rel="nofollow" href="http://bit.ly/aC6jrZ">http://bit.ly/aC6jrZ</a> [Interesting on how they do do things like this.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16707651171">#</a></li>
<li>Testing Reveals Security Software Often Misses New Malware <a rel="nofollow" href="http://bit.ly/9Ix9CF">http://bit.ly/9Ix9CF</a> (via @<a class="aktt_username" href="http://twitter.com/CSOonline">CSOonline</a>) [We're always reacting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16709955577">#</a></li>
<li>Defenders of the Faith <a rel="nofollow" href="http://bit.ly/dDfq86">http://bit.ly/dDfq86</a> (via @<a class="aktt_username" href="http://twitter.com/VRT_Sourcefire">VRT_Sourcefire</a>). [More on recent FD debate.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16710501322">#</a></li>
<li>Say Goodbye 2 WEP &amp; TKIP <a rel="nofollow" href="http://bit.ly/9dK0EW">http://bit.ly/9dK0EW</a> (via @<a class="aktt_username" href="http://twitter.com/aircrackng">aircrackng</a> @<a class="aktt_username" href="http://twitter.com/nickitsec">nickitsec</a>) [Only in new devices &amp; starting in 2011.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16797715348">#</a></li>
<li>Case 4 Cybersec Insurance <a rel="nofollow" href="http://bit.ly/a42IJ0">http://bit.ly/a42IJ0</a> (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [Nice read fr @BrianKrebs. And wow, it actually worked.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16868228190">#</a></li>
<li>YouTube Wins Case Against Viacom <a rel="nofollow" href="http://bit.ly/aNCzQF">http://bit.ly/aNCzQF</a> (via @<a class="aktt_username" href="http://twitter.com/bobgourley">bobgourley</a>) [Wow.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16884745278">#</a></li>
<li>Exploiting the Exploiters <a rel="nofollow" href="http://bit.ly/criHhX">http://bit.ly/criHhX</a> [Nice read.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16885359031">#</a></li>
<li>Google Vanishes Android Apps fr Citizen Phones <a rel="nofollow" href="http://bit.ly/bpDw9Y">http://bit.ly/bpDw9Y</a> [Freakin security researchers messing w/ marketplace.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16971497788">#</a></li>
</ul>
<p>And in closing, who could forget the <strong>tweet of the week</strong>?</p>
<ul>
<li>Finally iPhone wallpaper 4 Security folks still doing obscurity thing <a rel="nofollow" href="http://bit.ly/bjDQim">http://bit.ly/bjDQim</a> (via @<a class="aktt_username" href="http://twitter.com/IBMFedCyber">IBMFedCyber</a>) #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23totw">totw</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16800122086">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2010/06/24/grecs-weekly-infosec-ramblings-for-2010-06-24/feed/</wfw:commentRss>
		<slash:comments>8</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2010-06-17</title>
		<link>http://www.novainfosecportal.com/2010/06/17/grecs-weekly-infosec-ramblings-for-2010-06-17/</link>
		<comments>http://www.novainfosecportal.com/2010/06/17/grecs-weekly-infosec-ramblings-for-2010-06-17/#comments</comments>
		<pubDate>Fri, 18 Jun 2010 03:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2010/06/17/grecs-weekly-infosec-ramblings-for-2010-06-17/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to [...]]]></description>
			<content:encoded><![CDATA[<p>If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="events/nova-meetups/#events-in-dc">DC</a>-, and <a href="events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>There were a <strong>few events this past week</strong>. Did you get to attend any of them?</p>
<ul>
<li>Just got back from @novahackers. Gr8 talks as usual .. except the first one kinda sucked. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' />  <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15901618827">#</a></li>
<li>#MEETUP Learn electronics at HacDC! Our class starts tonight at 7PM and goes for 8-10 weeks. No prior XP needed. <a rel="nofollow" href="http://bit.ly/amd2fc">http://bit.ly/amd2fc</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16317524685">#</a></li>
<li>#CON Pen Test Summit 2010 Thoughts/Summary <a rel="nofollow" href="http://bit.ly/8ZCbJc">http://bit.ly/8ZCbJc</a> (via @<a class="aktt_username" href="http://twitter.com/pauldotcom">pauldotcom</a>) [Sum of of con earlier this week in Balt.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16394419572">#</a></li>
</ul>
<p>Here’s an <strong>upcoming meetup</strong> for those of you who are interested.</p>
<ul>
<li>#MEETUP Propose 5min talk 4 #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23DCWeek">DCWeek</a> HacDC Lightning Talks 6/19 (NOT 7/19) <a rel="nofollow" href="http://bit.ly/aP41iK">http://bit.ly/aP41iK</a> (via @<a class="aktt_username" href="http://twitter.com/daniel_packer">daniel_packer</a> @<a class="aktt_username" href="http://twitter.com/hacdc">hacdc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16239297200">#</a></li>
</ul>
<p>For those of you that don’t know, we have some pretty awesome <strong>infosec bloggers in the local area</strong>. You can check out some of their articles below.</p>
<ul>
<li>#NOVABLOGGER Framing Software Security <a rel="nofollow" href="http://bit.ly/ctGIQa">http://bit.ly/ctGIQa</a> [@<a class="aktt_username" href="http://twitter.com/falconsview">falconsview</a> snuck a post in over at @fudsec] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15936967975">#</a></li>
<li>#NOVABLOGGER: Maintaining Sec w/ Enterprise Virtualization <a rel="nofollow" href="http://bit.ly/9ysTM2">http://bit.ly/9ysTM2</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> [Pros &amp; cons of virt.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15966660013">#</a></li>
<li>#NOVABLOGGER: June 2010 Hakin9 Mag Published <a rel="nofollow" href="http://bit.ly/cNvAHv">http://bit.ly/cNvAHv</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> [Some nice reading for the weekend.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15966763589">#</a></li>
<li>#NOVABLOGGER Risk Appetite: Counting Risk Calories is All You Can Do <a rel="nofollow" href="http://bit.ly/aAH5DT">http://bit.ly/aAH5DT</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16394124114">#</a></li>
</ul>
<p>In case you missed them, here were some of <strong>our blog posts</strong> from this week.</p>
<ul>
<li>BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://tinyurl.com/37blns7">http://tinyurl.com/37blns7</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15963839630">#</a></li>
<li>BLOGGED: Grecs’ Weekly Infosec Ramblings for 2010-06-10 <a rel="nofollow" href="http://bit.ly/aglIxF">http://bit.ly/aglIxF</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16168097122">#</a></li>
<li>BLOGGED: AppSecDC Infosec Conference Event <a rel="nofollow" href="http://bit.ly/96aoAK">http://bit.ly/96aoAK</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16238376434">#</a></li>
<li>BLOGGED: Where You Want to Be This Week for 2010-06-14 <a rel="nofollow" href="http://bit.ly/bbiFyC">http://bit.ly/bbiFyC</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16257099529">#</a></li>
</ul>
<p>And this guy is just too <strong>&#8220;ligatt&#8221;</strong> to quit&#8230;</p>
<ul>
<li>Review of ‘How 2 Become The Worlds No 1 Hacker’ <a rel="nofollow" href="http://bit.ly/bmTJ9l">http://bit.ly/bmTJ9l</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23LIGATT">LIGATT</a> (via @<a class="aktt_username" href="http://twitter.com/benrothke">benrothke</a> @<a class="aktt_username" href="http://twitter.com/schuetzdj">schuetzdj</a>) [More #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23LIGATT">LIGATT</a> fun.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15935830528">#</a></li>
<li>RT @dallendoug: If we can get ATT 2 sue LIGATT, we&#8217;ve got win! RT @<a class="aktt_username" href="http://twitter.com/danielkennedy74">danielkennedy74</a> @<a class="aktt_username" href="http://twitter.com/LIGATT">LIGATT</a> Step 2) Predict seq num &lt;- Plagiarizing Goatse <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16185232778">#</a></li>
<li>RT @LIGATT: If there is another computer hacker better than me&#8230;please stand up or shut the hell up! <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16269586578">#</a></li>
<li>RT @cktricky: RT @LigattHaxx0r: Hacking Tip # 13- Use a different password for your Twitter and Facebook accounts. &lt;~Lol, nice &lt;- +1 <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16270578568">#</a></li>
<li>Here U go <a rel="nofollow" href="http://bit.ly/99bodu">http://bit.ly/99bodu</a> <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_biggrin.gif' alt=':D' class='wp-smiley' />  (via @<a class="aktt_username" href="http://twitter.com/Equix3n">Equix3n</a> @<a class="aktt_username" href="http://twitter.com/bitkitty">bitkitty</a>) [Here's Ligatt BSing it a/b women. Whatever. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16336540114">#</a></li>
</ul>
<p>In more pertinent things that went on this past week, there were plenty of <strong>career discussions</strong> and suggestions to improve yourself.</p>
<ul>
<li>#JOB Stratum Security is looking 4 software sec folks. Web app sec, rev eng, malware, protocol analysis.. Contact us. (via @<a class="aktt_username" href="http://twitter.com/packetwerks">packetwerks</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15957796525">#</a></li>
<li>#JOB Sourcefire VRT Expansion Plans (We are Hiring) <a rel="nofollow" href="http://bit.ly/datFvK">http://bit.ly/datFvK</a> [I'm assuming this in their MD office. Good opp.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16148780914">#</a></li>
<li>Exploit writing tutorial 10 released <a rel="nofollow" href="http://bit.ly/aPCBA8">http://bit.ly/aPCBA8</a> &#8211; Chaining DEP with ROP <a rel="nofollow" href="http://bit.ly/ayOy06">http://bit.ly/ayOy06</a> (via @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a> @<a class="aktt_username" href="http://twitter.com/corelanc0d3r">corelanc0d3r</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16323934082">#</a></li>
<li>#JOB 9 Career Tips 4 Security Pros <a rel="nofollow" href="http://bit.ly/brR7Uc">http://bit.ly/brR7Uc</a> [Good things 2 consider.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16393602166">#</a></li>
<li>#Job Trends <a rel="nofollow" href="http://bit.ly/9xeRQg">http://bit.ly/9xeRQg</a> [Mentions some good verticals to focus on.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16393864591">#</a></li>
<li>#EDU How Strong is Your Fu &#8211; 4 Charity <a rel="nofollow" href="http://bit.ly/b1oOuX">http://bit.ly/b1oOuX</a> (via @<a class="aktt_username" href="http://twitter.com/offsectraining">offsectraining</a>) [Looks like still open. Gr8 way 2 improve skillz.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16394777343">#</a></li>
</ul>
<p>And of course there was a lot going related to cyber security in the <strong>federal government</strong>.</p>
<ul>
<li>FISMA Reform: Lieberman, Collins &amp; Carper Intro Bill <a rel="nofollow" href="http://bit.ly/9s4X3k">http://bit.ly/9s4X3k</a> [Mention of @danphilpott, FISMApedia, and Guerilla CISO.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15905050424">#</a></li>
<li>Senate hearing tomorrow on Cybersecurity and legislation <a rel="nofollow" href="http://bit.ly/bBTb8Q">http://bit.ly/bBTb8Q</a> (via @<a class="aktt_username" href="http://twitter.com/rybolov">rybolov</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16150371185">#</a></li>
<li>CBS re-aired 60 Minutes piece on cyberwar fr Nov &amp; it hasn&#8217;t improved w/ age <a rel="nofollow" href="http://bit.ly/dex9Fa">http://bit.ly/dex9Fa</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16165319098">#</a></li>
<li>If U R in2 cyber, plz view archived testimony here.. HSGAC Hearings <a rel="nofollow" href="http://bit.ly/9mJehz">http://bit.ly/9mJehz</a> (via @<a class="aktt_username" href="http://twitter.com/bobgourley">bobgourley</a>) [#todo] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16269211011">#</a></li>
<li>Who&#8217;s In Charge During Cyber Attack? <a rel="nofollow" href="http://bit.ly/9SSTgt">http://bit.ly/9SSTgt</a> [Aaaah, that guy. &lt;WH/DHS pointing 2 each other when sh*t hits fan&gt;] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16350397508">#</a></li>
<li>DHS Voluntary Private Sector Prep Accred&amp;Cert Prog <a rel="nofollow" href="http://bit.ly/c0tbcx">http://bit.ly/c0tbcx</a> (via @<a class="aktt_username" href="http://twitter.com/cyberwar">cyberwar</a>) [Term that'll ensure #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23fail">fail</a> "voluntary".] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16351091390">#</a></li>
<li>NIST rel draft SP 800-130 Framework 4 Designing Crypto Key Mgmt Systems <a rel="nofollow" href="http://bit.ly/aeghJr">http://bit.ly/aeghJr</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16393307454">#</a></li>
<li>DHS Slams US Gov Network Security <a rel="nofollow" href="http://bit.ly/9Kzg2u">http://bit.ly/9Kzg2u</a> [Interesting but bit over-the-top headline.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16397240568">#</a></li>
<li>Gov TLD Registry/Registrar Service RFP Posted <a rel="nofollow" href="http://bit.ly/c3akbJ">http://bit.ly/c3akbJ</a> (via @<a class="aktt_username" href="http://twitter.com/scottr_nist">scottr_nist</a>) [Get your prop team ready.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16397382327">#</a></li>
<li>NIST rel 2nd draft SP 800-131 Rec 4 Transitioning of Crypto Algs.. <a rel="nofollow" href="http://bit.ly/aeghJr">http://bit.ly/aeghJr</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) [I'm sleeping already. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16397955371">#</a></li>
<li>Switch 2 Cont Mon Requ New Skillz <a rel="nofollow" href="http://bit.ly/biLOSN">http://bit.ly/biLOSN</a> [Really? Love this - "what we R doing .. is operationalizing compliance."] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16404204477">#</a></li>
</ul>
<p>You can also keep yourself busy with these interesting <strong>newsbites</strong>:</p>
<ul>
<li>Encrypted Laptop Stolen While in Use <a rel="nofollow" href="http://j.mp/ceExZ0">http://j.mp/ceExZ0</a> [Problem with existing solutions. Suggestions on how 2 address?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15900840533">#</a></li>
<li>AT&amp;T Explains iPad email Breach <a rel="nofollow" href="http://nyti.ms/aVbIhi">http://nyti.ms/aVbIhi</a> /via @<a class="aktt_username" href="http://twitter.com/dallendoug">dallendoug</a> @<a class="aktt_username" href="http://twitter.com/WeldPond">WeldPond</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16120024253">#</a></li>
<li>Shed Vulns w/ 1 Simple Rule <a rel="nofollow" href="http://bit.ly/dlVfVY">http://bit.ly/dlVfVY</a> [Let's get basics right. "uninstall software .. that R not in use"] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16165861688">#</a></li>
<li>SAFECode Report Highlights Best Practices <a rel="nofollow" href="http://bit.ly/9fyK2V">http://bit.ly/9fyK2V</a> [Good 2 c this being taken more seriously.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16166462552">#</a></li>
<li>RT @spookerlabs: Awesome Read &#8220;IDS/IPS Evasion &#8211; Step 1. Awareness&#8221; <a rel="nofollow" href="http://j.mp/bTu8Qw">http://j.mp/bTu8Qw</a> /via @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16197531269">#</a></li>
<li>Cloud Keyloggers? <a rel="nofollow" href="http://bit.ly/9uuXBK">http://bit.ly/9uuXBK</a> (via @<a class="aktt_username" href="http://twitter.com/briankrebs">briankrebs</a>) [Interesting insight into what loggers record.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16229184835">#</a></li>
<li>French ISP&#8217;s Attempt 2 Block File-Sharing Ends in Failure <a rel="nofollow" href="http://bit.ly/d95uhd">http://bit.ly/d95uhd</a> [admin:admin anyone?] (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [Nice.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16258431666">#</a></li>
<li>10 of Top Data Breaches of Decade <a rel="nofollow" href="http://bit.ly/cZNLZu">http://bit.ly/cZNLZu</a> (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [Not huge fan of Top 10s but interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16267756061">#</a></li>
<li>Researchers probe net&#8217;s most blighted darknet <a rel="nofollow" href="http://bit.ly/aOXTkb">http://bit.ly/aOXTkb</a> [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16268664260">#</a></li>
<li><a rel="nofollow" href="http://j.mp/dzxWE3">http://j.mp/dzxWE3</a> now in beta &#8211; ff extension, auto redirect 2 https site /via @<a class="aktt_username" href="http://twitter.com/rgaucher">rgaucher</a> @<a class="aktt_username" href="http://twitter.com/alien8">alien8</a> @<a class="aktt_username" href="http://twitter.com/fmavituna">fmavituna</a> [Just need encryped proxy.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16303310068">#</a></li>
<li>(IN)SECURE Mag 26 rel <a rel="nofollow" href="http://bit.ly/cWj5tx">http://bit.ly/cWj5tx</a> (PDF) (via @<a class="aktt_username" href="http://twitter.com/helpnetsecurity">helpnetsecurity</a> @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) [iPhone encryption/forensics art.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16324109741">#</a></li>
<li>New Attack on AES Claims 2 Reduce Entropy from 128 to 32 Bits <a rel="nofollow" href="http://bit.ly/aHmDfu">http://bit.ly/aHmDfu</a> (via @<a class="aktt_username" href="http://twitter.com/ivanristic">ivanristic</a> @<a class="aktt_username" href="http://twitter.com/jack_mannino">jack_mannino</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16335421736">#</a></li>
<li>.. cocreator of public-key crypto says &#8220;e-mail crypto is pain in the ass&#8221; <a rel="nofollow" href="http://bit.ly/btyPf6">http://bit.ly/btyPf6</a> (via @<a class="aktt_username" href="http://twitter.com/kanendosei">kanendosei</a> @<a class="aktt_username" href="http://twitter.com/shpantzer">shpantzer</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16351466112">#</a></li>
<li>July Edition of Crypto-Gram <a rel="nofollow" href="http://bit.ly/98XldU">http://bit.ly/98XldU</a> (via @<a class="aktt_username" href="http://twitter.com/ksignal9">ksignal9</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16395075068">#</a></li>
</ul>
<p>And in closing, who could forget the <strong>tweet of the week</strong>?</p>
<ul>
<li>Now that&#8217;s a music video <a rel="nofollow" href="http://j.mp/baBH7T">http://j.mp/baBH7T</a> /via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a> [Whoa!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/16074682548">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2010/06/17/grecs-weekly-infosec-ramblings-for-2010-06-17/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2010-06-10</title>
		<link>http://www.novainfosecportal.com/2010/06/14/grecs-weekly-infosec-ramblings-for-2010-06-10/</link>
		<comments>http://www.novainfosecportal.com/2010/06/14/grecs-weekly-infosec-ramblings-for-2010-06-10/#comments</comments>
		<pubDate>Mon, 14 Jun 2010 18:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2010/06/10/grecs-weekly-infosec-ramblings-for-2010-06-10/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday (well Monday this week), our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them [...]]]></description>
			<content:encoded><![CDATA[<p>If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="events/nova-meetups/#events-in-dc">DC</a>-, and <a href="events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every <span style="text-decoration: line-through;">Friday</span> (well Monday this week), our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>There seemed to be quite a few <strong>meetups this past week</strong>. Did you get to attend any of them?</p>
<ul>
<li>#MEETUP Looking forward 2 cing every HacDC member (&amp; potential member) at mo member meeting 2morrow,  6/8 7:30PM! /via @<a class="aktt_username" href="http://twitter.com/hacdc">hacdc</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15635123158">#</a></li>
<li>#MEETUP Reminder &#8212; This Wed! #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23OWASPDC">OWASPDC</a> at 6:30 on 7/9 at 2201 G St. NW, Rm 553D GWU Campus in Foggy Bottom (via @<a class="aktt_username" href="http://twitter.com/owaspdc">owaspdc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15669090871">#</a></li>
<li>#MEETUP C U TONIGHT! #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23OWASPDC">OWASPDC</a> at 6:30, 2201 G St. NW, Rm 553D GWU Campus in Foggy Bottom, going for drinks after.. (via @<a class="aktt_username" href="http://twitter.com/owaspdc">owaspdc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15796041292">#</a></li>
<li>#MEETUP Alex Meisel <a rel="nofollow" href="http://bit.ly/aATuOQ">http://bit.ly/aATuOQ</a> speaking at @<a class="aktt_username" href="http://twitter.com/owaspdc">owaspdc</a> on distrib WAFs. @<a class="aktt_username" href="http://twitter.com/rybolov">rybolov</a> answers some of hard questions (via @<a class="aktt_username" href="http://twitter.com/Shpantzer">Shpantzer</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15822082173">#</a></li>
</ul>
<p>There’s also some <strong>upcoming meetups</strong> for those of you who are interested.</p>
<ul>
<li>#MEETUP Give 5 min talk at HacDC Lightning Talks @<a class="aktt_username" href="http://twitter.com/DCWeek">DCWeek</a> on 7/19! Tweet @<a class="aktt_username" href="http://twitter.com/daniel_packer">daniel_packer</a> w/ your proposal! <a rel="nofollow" href="http://j.mp/aP41iK">http://j.mp/aP41iK</a> /via @<a class="aktt_username" href="http://twitter.com/hacdc">hacdc</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15637354941">#</a></li>
<li>#MEETUP Charmsec 26 will b at @<a class="aktt_username" href="http://twitter.com/Slaintepub">Slaintepub</a> on 6/24 at 7:00. <a rel="nofollow" href="http://bit.ly/devJRV">http://bit.ly/devJRV</a> (via @<a class="aktt_username" href="http://twitter.com/charmsec">charmsec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15730213671">#</a></li>
<li>#MEETUP Charmsec 26 will b @<a class="aktt_username" href="http://twitter.com/Slaintepub">Slaintepub</a> on 6/24 at 7:00. You should come. <a rel="nofollow" href="http://bit.ly/devJRV">http://bit.ly/devJRV</a> (via @<a class="aktt_username" href="http://twitter.com/capsecdc">capsecdc</a> @<a class="aktt_username" href="http://twitter.com/charmsec">charmsec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15795923703">#</a></li>
<li>#MEETUP HacDC iz in ur city, teaching ur workshops! We&#8217;ve got electronics &amp; disassembly workshops.. <a rel="nofollow" href="http://bit.ly/bwatLV">http://bit.ly/bwatLV</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15876095548">#</a></li>
</ul>
<p>If you don&#8217;t have time to make it to any of the weekly security meetups, why not plan on attending <strong>AppSecDC</strong> in November?</p>
<ul>
<li>RT @AppSecDC: And, in case U missed it.. we&#8217;re back! Here again in 2010, <a rel="nofollow" href="http://appsecdc.org">http://appsecdc.org</a> &#8211; CFP now open, closes 7/31! <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15459633623">#</a></li>
<li>#CON RSVP for #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23AppSecDC">AppSecDC</a> on LinkedIn <a rel="nofollow" href="http://bit.ly/9Vbp8c">http://bit.ly/9Vbp8c</a> (via @<a class="aktt_username" href="http://twitter.com/AppSecDC">AppSecDC</a> @<a class="aktt_username" href="http://twitter.com/TheCustos">TheCustos</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15729341458">#</a></li>
<li>#CON &#8220;Keeping the Crooks out of your Webapp: AppSecDC CFP&#8221; <a rel="nofollow" href="http://bit.ly/avwC1I">http://bit.ly/avwC1I</a> (via @<a class="aktt_username" href="http://twitter.com/AppSecDC">AppSecDC</a> @<a class="aktt_username" href="http://twitter.com/translucent_eye">translucent_eye</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15863756220">#</a></li>
<li>AppSecUS site now up <a rel="nofollow" href="http://is.gd/cKo02">http://is.gd/cKo02</a>. Reg: <a rel="nofollow" href="http://is.gd/cKo1H">http://is.gd/cKo1H</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23CFP">CFP</a> 6/30: <a rel="nofollow" href="http://is.gd/cKo3E">http://is.gd/cKo3E</a>, hit up US then swing by DC @<a class="aktt_username" href="http://twitter.com/appsec2010">appsec2010</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15875742214">#</a></li>
</ul>
<p>For those of you that don’t know, we have some pretty awesome <strong>infosec bloggers in the local area</strong>. You can check out some of their articles below.</p>
<ul>
<li>#NOVABLOGGER: Evolving Changes, Challenges for FISMA <a rel="nofollow" href="http://bit.ly/bC9QVf">http://bit.ly/bC9QVf</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [Nice sum.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15421282124">#</a></li>
<li>#NOVABLOGGER: How 2 Not Let FISMA Become Paperwork Exercise <a rel="nofollow" href="http://bit.ly/cfLrzJ">http://bit.ly/cfLrzJ</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> /via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a> [Nice!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15648524687">#</a></li>
<li>#NOVABLOGGER: &#8220;Untrained&#8221; IT Workers R Not Primary Sec Prob <a rel="nofollow" href="http://bit.ly/dA96XA">http://bit.ly/dA96XA</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [Nice post.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15872167399">#</a></li>
</ul>
<p>In case you missed them, here were some of <strong>our blog posts</strong> from this week.</p>
<ul>
<li>BLOGGED: Grecs’ Weekly Infosec Ramblings for 2010-06-03 <a rel="nofollow" href="http://bit.ly/asR8b0">http://bit.ly/asR8b0</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15436526861">#</a></li>
<li>BLOGGED: Where You Want to Be This Week for 2010-06-07 <a rel="nofollow" href="http://bit.ly/cQMDLz">http://bit.ly/cQMDLz</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15658289930">#</a></li>
</ul>
<p>And <strong>Ligatt</strong> seems to be all over Twitter as well&#8230;</p>
<ul>
<li>Now there&#8217;s @FakeLIGATT. Wonder if Twitter will cave &amp; shut that 1 down, too. (via @<a class="aktt_username" href="http://twitter.com/quine">quine</a>) [Excellent!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15583302009">#</a></li>
<li>RT @FakeLIGATT: Yo twitter, hook me up with a new logo. #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%231">1</a> Hacker needs a new look (via @<a class="aktt_username" href="http://twitter.com/rybolov">rybolov</a>) [Lol.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15583377572">#</a></li>
<li>ROFL! Full page #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23LIGATT">LIGATT</a> ad in new hackin9.. <a rel="nofollow" href="http://bit.ly/d7W1dF">http://bit.ly/d7W1dF</a> (via @<a class="aktt_username" href="http://twitter.com/kodefupanda">kodefupanda</a>) [Have U stopped laughing yet?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15731014156">#</a></li>
<li>My 1 star review of &#8220;How To Become The Worlds No. 1 Hacker&#8221; <a rel="nofollow" href="http://amzn.to/d62J5W">http://amzn.to/d62J5W</a> (via @<a class="aktt_username" href="http://twitter.com/jack_mannino">jack_mannino</a>) [Nice job Jack.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15796458253">#</a></li>
</ul>
<p>And of course we have our usual stream of <strong>government</strong> related stuff going on.</p>
<ul>
<li>NIST has released SP 800-34 Rev 1 Contingency Planning Guide 4 Fed Info Systems <a rel="nofollow" href="http://bit.ly/98nTR9">http://bit.ly/98nTR9</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15669284560">#</a></li>
<li>7-Step Contingency Planning Process. Revised guidance from NIST. <a rel="nofollow" href="http://bit.ly/bzwkwk">http://bit.ly/bzwkwk</a> [Quick summary of new NIST doc.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15669941682">#</a></li>
<li>DoD issued Instruction 8581.01 IA Policy 4 Space Systems Used by the DoD <a rel="nofollow" href="http://bit.ly/bi8Ty2">http://bit.ly/bi8Ty2</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15739568568">#</a></li>
<li>Senators Unveil Long-Awaited Cyber Bill That Est Senate-OK&#8217;d WH Cybersec Director <a rel="nofollow" href="http://bit.ly/9NmAzj">http://bit.ly/9NmAzj</a> [2 leads? WTF?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15874872493">#</a></li>
</ul>
<p>There seemed to be a lot of <strong>job/career</strong> stuff out there too.</p>
<ul>
<li>#EDU New Honeynet Project Forensic Challenge) <a rel="nofollow" href="http://j.mp/chIEpg">http://j.mp/chIEpg</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) [Summer fun.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15582682565">#</a></li>
<li>#JOB So U Want 2 Get Started in an Infosec Career <a rel="nofollow" href="http://bit.ly/9M2f2m">http://bit.ly/9M2f2m</a> (via @<a class="aktt_username" href="http://twitter.com/quine">quine</a> @<a class="aktt_username" href="http://twitter.com/marcinw">marcinw</a>) [Nice way to pull it all together.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15604659952">#</a></li>
<li>Career insights fr sr leaders who have md it 2 top of infosec profession. <a rel="nofollow" href="http://j.mp/9vHlwK">http://j.mp/9vHlwK</a> [This could b interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15637078316">#</a></li>
<li>How Strong is your Fu &#8211; 4 Charity. Reg 2 the evt is open! <a rel="nofollow" href="http://j.mp/b1oOuX">http://j.mp/b1oOuX</a> Please re-tweet harder! /via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a> @<a class="aktt_username" href="http://twitter.com/bufferzone">bufferzone</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15666928867">#</a></li>
<li>#JOB So who&#8217;s going 2 apply 4 Twitter Gov Relations position? wht a super cool job! <a rel="nofollow" href="http://bit.ly/akWtXr">http://bit.ly/akWtXr</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15796610707">#</a></li>
<li>#EDU A challenge 4 U? -&gt; <a rel="nofollow" href="http://bit.ly/a1Y3lD">http://bit.ly/a1Y3lD</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23Honeynet">Honeynet</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23VoIP">VoIP</a> Challenge (via @<a class="aktt_username" href="http://twitter.com/briankrebs">briankrebs</a> @<a class="aktt_username" href="http://twitter.com/sjurusken">sjurusken</a>) [Fun times.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15797237132">#</a></li>
<li>WH Commission Debates Cert Requirements 4 Cybersec Feds/Contractors <a rel="nofollow" href="http://bit.ly/aVTWFC">http://bit.ly/aVTWFC</a> [Interesting read.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15821806010">#</a></li>
</ul>
<p>Here are some quick <strong>how-to&#8217;s</strong> that were floating around there last week.</p>
<ul>
<li>&#8220;How to Encrypt and Hide Your Entire Operating System from Prying Eyes&#8221; <a rel="nofollow" href="http://j.mp/a5IbL0">http://j.mp/a5IbL0</a> (via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) [Wow.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15421003433">#</a></li>
<li>Competitive Intel Tools (useful in cyber threat analysis) <a rel="nofollow" href="http://bit.ly/9BaEHf">http://bit.ly/9BaEHf</a> (via @<a class="aktt_username" href="http://twitter.com/IBMFedCyber">IBMFedCyber</a>) [Vid w/ tons of online tools.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15750152312">#</a></li>
<li>Changed how SYN scan detects open ports based on split-handshake <a rel="nofollow" href="http://bit.ly/tcp-sh">http://bit.ly/tcp-sh</a>. Details <a rel="nofollow" href="http://bit.ly/sh-disc">http://bit.ly/sh-disc</a> (via @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a> @<a class="aktt_username" href="http://twitter.com/nmap">nmap</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15757792837">#</a></li>
<li>“Here is script that grabbed 114K iPad ownrs info fr AT&amp;T <a rel="nofollow" href="http://bit.ly/9VRovi">http://bit.ly/9VRovi</a> (via @<a class="aktt_username" href="http://twitter.com/bvPredator">bvPredator</a> @<a class="aktt_username" href="http://twitter.com/ThisIsHNN">ThisIsHNN</a>) [Cool!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15870830617">#</a></li>
</ul>
<p>And in closing, you can also keep yourself busy with these interesting <strong>newsbites</strong>:</p>
<ul>
<li>Adobe warns hackers targeting prev unknown flaw in Flash Player, Reader &amp; Acrobat <a rel="nofollow" href="http://j.mp/dvevya">http://j.mp/dvevya</a> (via @<a class="aktt_username" href="http://twitter.com/briankrebs">briankrebs</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15519922646">#</a></li>
<li>History of Hacking Timeline <a rel="nofollow" href="http://bit.ly/dC7d93">http://bit.ly/dC7d93</a> [Of course the more interesting things will never mk it 2 such a timeline.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15584406088">#</a></li>
<li>Opt-Out Required 2 Prevent Your Yahoo! Mail Contacts Fr Being Used 4 Social Net <a rel="nofollow" href="http://bit.ly/d4iGY1">http://bit.ly/d4iGY1</a> [Will they ever learn?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15584523946">#</a></li>
<li>Go2 <a rel="nofollow" href="http://bit.ly/cmFxPw">http://bit.ly/cmFxPw</a> &amp; uncheck Share My Updates box. #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23yahoofail">yahoofail</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15584738098">#</a></li>
<li>Also go2 <a rel="nofollow" href="http://bit.ly/bsONmF">http://bit.ly/bsONmF</a> &amp; uncheck &#8220;Allow my connections to share..&#8221; #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23yahoofail">yahoofail</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15584744224">#</a></li>
<li>Details on iPhone security weakness :  <a rel="nofollow" href="http://j.mp/anj3an">http://j.mp/anj3an</a> /via @<a class="aktt_username" href="http://twitter.com/IBMFedCyber">IBMFedCyber</a> [Upds on this bug.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15647351426">#</a></li>
<li>Researchers Release Point-and-Click Website Exploitation Tool <a rel="nofollow" href="http://bit.ly/a8tNSl">http://bit.ly/a8tNSl</a> [Problem w/ implementing AES/DES..] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15673951354">#</a></li>
<li>June 2010 Microsoft Black Tues Sum <a rel="nofollow" href="http://bit.ly/dnGF86">http://bit.ly/dnGF86</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) [Looks like it's going 2 b busy week.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15729188567">#</a></li>
<li>MS Patches Bug Used in Pwn2Own Contest Win that Bypassed DEP/ASLR <a rel="nofollow" href="http://bit.ly/aecemq">http://bit.ly/aecemq</a> [Wasn't that like 3 months ago?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15750368567">#</a></li>
<li>Encrypted Laptop Stolen While in Use <a rel="nofollow" href="http://j.mp/ceExZ0">http://j.mp/ceExZ0</a> [Problem with existing solutions. Suggestions on how 2 address?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15792816229">#</a></li>
<li>Mules. Villains or Victims? <a rel="nofollow" href="http://bit.ly/b5flYM">http://bit.ly/b5flYM</a> [MUST READ! simply amazing acct of ops] (via @<a class="aktt_username" href="http://twitter.com/Shpantzer">Shpantzer</a> @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [+1] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15804361990">#</a></li>
<li>Security Breach Allows Hackers 2 Obtain Info on 114,000 AT&amp;T iPad Owners <a rel="nofollow" href="http://bit.ly/cTXZ0U">http://bit.ly/cTXZ0U</a> (via @<a class="aktt_username" href="http://twitter.com/cktricky">cktricky</a> @<a class="aktt_username" href="http://twitter.com/cyberlocksmith">cyberlocksmith</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15821382595">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2010/06/14/grecs-weekly-infosec-ramblings-for-2010-06-10/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2010-06-03</title>
		<link>http://www.novainfosecportal.com/2010/06/04/grecs-weekly-infosec-ramblings-for-2010-06-03/</link>
		<comments>http://www.novainfosecportal.com/2010/06/04/grecs-weekly-infosec-ramblings-for-2010-06-03/#comments</comments>
		<pubDate>Fri, 04 Jun 2010 18:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2010/06/03/grecs-weekly-infosec-ramblings-for-2010-06-03/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to [...]]]></description>
			<content:encoded><![CDATA[<p>If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="events/nova-meetups/#events-in-dc">DC</a>-, and <a href="events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>There seemed to be &#8230; aaaahhhh &#8230; <strong>one meetup this past week</strong>. Did you get to attend it? (Of course tonight two local 2600s will be in action.)</p>
<ul>
<li>#MEETUP #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23OWASP">OWASP</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NoVA">NoVA</a> come here @<a class="aktt_username" href="http://twitter.com/alexhutton">alexhutton</a> talk a/b risk (what? no way!) Thu 6pm @ OWASP NoVA in Herndon (via @<a class="aktt_username" href="http://twitter.com/falconsview">falconsview</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15273389104">#</a></li>
</ul>
<p>There’s also an <strong>upcoming meetup</strong> I tweeted three times about for those of you who are interested.</p>
<ul>
<li>#MEETUP Next #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23OWASPDC">OWASPDC</a> is 6/9. Location TBD. <a rel="nofollow" href="http://bit.ly/cdzXhe">http://bit.ly/cdzXhe</a> Alex Meisel Art of Defence CTO speaking a/b WAF in Cloud (via @<a class="aktt_username" href="http://twitter.com/owaspdc">owaspdc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14986199781">#</a></li>
<li>#MEETUP Next #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23OWASPDC">OWASPDC</a> is 6/9. <a rel="nofollow" href="http://bit.ly/cdzXhe">http://bit.ly/cdzXhe</a> Alex Meisel speaking a/b WAF in Cloud (via ~owaspdc @<a class="aktt_username" href="http://twitter.com/Shpantzer">Shpantzer</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15295178335">#</a></li>
<li>#MEETUP June #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23OWASPDC">OWASPDC</a> will b at 6:30 PM on 6/9 at 2201 G St NW, Rm 553D (Duques Hall on GWU Campus in Foggy Bottom) (via @<a class="aktt_username" href="http://twitter.com/owaspdc">owaspdc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15386352796">#</a></li>
</ul>
<p>If you don&#8217;t have time to make it to any of the weekly security meetups, why not try attending this <strong>upcoming conference</strong>? It&#8217;s sort of a big deal. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<ul>
<li>#CON #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23OWASP">OWASP</a> AppSecDC 11/8-11 at DC Convention Ctr <a rel="nofollow" href="http://bit.ly/9equvP">http://bit.ly/9equvP</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23CFP">CFP</a> now OPEN <a rel="nofollow" href="http://bit.ly/aZrghQ">http://bit.ly/aZrghQ</a> (via @<a class="aktt_username" href="http://twitter.com/AppSecDC">AppSecDC</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15330124942">#</a></li>
</ul>
<p>For those of you that don’t know, we have some pretty awesome <strong>infosec bloggers in the local area</strong>. You can check out some of their articles below.</p>
<ul>
<li>#NOVABLOGGER: Lessons from Google Wi-Fi Gaffe <a rel="nofollow" href="http://bit.ly/a5VPtk">http://bit.ly/a5VPtk</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14914510315">#</a></li>
<li>#NOVABLOGGER: SANS WhatWorks Summit in Forensics &amp; Incident Response <a rel="nofollow" href="http://bit.ly/9BEkel">http://bit.ly/9BEkel</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14948260642">#</a></li>
<li>#NOVABLOGGER: Exploit Kit Try-out <a rel="nofollow" href="http://bit.ly/afpBwY">http://bit.ly/afpBwY</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14987651627">#</a></li>
<li>#NOVABLOGGER: Wepaweb Deficiency <a rel="nofollow" href="http://bit.ly/dqmExK">http://bit.ly/dqmExK</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14987650953">#</a></li>
<li>#NOVABLOGGER: Chinese Hack 101 <a rel="nofollow" href="http://bit.ly/9ywHh1">http://bit.ly/9ywHh1</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14994521545">#</a></li>
<li>#NOVABLOGGER: Happy Memorial Day! <a rel="nofollow" href="http://bit.ly/d48Kwl">http://bit.ly/d48Kwl</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [Awesome post by @cyberhiker. +1] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15110115050">#</a></li>
<li>#NOVABLOGGER: &#8220;Best Practice&#8221; (You&#8217;re Saying it Wrong) <a rel="nofollow" href="http://bit.ly/cDDvOq">http://bit.ly/cDDvOq</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) [So true.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15231469704">#</a></li>
</ul>
<p>In case you missed them, here were some of <strong>our blog posts</strong> from this week.</p>
<ul>
<li>BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://bit.ly/a4mLsW">http://bit.ly/a4mLsW</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14915182343">#</a></li>
<li>BLOGGED: Grecs’ Weekly Infosec Ramblings for 2010-05-27 <a rel="nofollow" href="http://bit.ly/axjRLF">http://bit.ly/axjRLF</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14985396664">#</a></li>
<li>BLOGGED: Where You Want to Be This Week for 2010-06-31 <a rel="nofollow" href="http://bit.ly/cT7yr2">http://bit.ly/cT7yr2</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15185830251">#</a></li>
</ul>
<p>And if you haven&#8217;t heard, I am trying to <strong>clean up my Twitter stream</strong> a bit.</p>
<ul>
<li>Trying to clean up my Twitter stream some. From now on.. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15001374105">#</a></li>
<li>..#NOVABLOGGER tweet stream &amp; other related website stuff is only going 2 b published on @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a> instead of both @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a> &amp; @grecs. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15001408473">#</a></li>
<li>Please follow @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a> 2 continue receiving website-related updates. Just trying to mk @<a class="aktt_username" href="http://twitter.com/grecs">grecs</a> a bit more personal focused. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15001471160">#</a></li>
</ul>
<p><strong>NIST</strong> is busy as usual.</p>
<ul>
<li>NIST released draft IR-7298 Rev. 1 Glossary of Key Information Security Terms <a rel="nofollow" href="http://bit.ly/a3HaoJ">http://bit.ly/a3HaoJ</a> (PDF) (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14954618351">#</a></li>
<li>NIST rel 2nd draft of Technical Specification 4 SCAP 1.1 <a rel="nofollow" href="http://bit.ly/cFuraV">http://bit.ly/cFuraV</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14954736107">#</a></li>
<li>NIST FAQ on Continuous Monitoring, clarifies it does not replace FISMA: <a rel="nofollow" href="http://bit.ly/cVhz0o">http://bit.ly/cVhz0o</a> (PDF) (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15208906017">#</a></li>
</ul>
<p>And <strong>Facebook</strong> gets its own category again&#8230;</p>
<ul>
<li>What sites such as Facebook &amp; Google know &amp; whom they tell <a rel="nofollow" href="http://bit.ly/aYkaCS">http://bit.ly/aYkaCS</a> (via @<a class="aktt_username" href="http://twitter.com/manicode">manicode</a> @<a class="aktt_username" href="http://twitter.com/dshiao">dshiao</a>) [Nice read. Scary!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15084936032">#</a></li>
<li>&#8220;Quit Facebook Day Flops&#8221; <a rel="nofollow" href="http://bit.ly/aBKZeQ">http://bit.ly/aBKZeQ</a> [Well it was a worthy attempt.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15185252966">#</a></li>
<li>Download @agent0&#215;0&#8217;s updated FB Privacy &amp; Security Guide. <a rel="nofollow" href="http://bit.ly/brZ3b7">http://bit.ly/brZ3b7</a> (via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a> @<a class="aktt_username" href="http://twitter.com/streetsec">streetsec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15274563917">#</a></li>
<li>&#8220;Facebook &#8216;likejacking&#8217; attacks continue..&#8221; <a rel="nofollow" href="http://bit.ly/aosmk1">http://bit.ly/aosmk1</a> (via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) [Nother cool term 2 latch on2.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15330569851">#</a></li>
<li>FB Cracks Down on Rogue Apps w/ New Verification Prog <a rel="nofollow" href="http://bit.ly/aC9kZE">http://bit.ly/aC9kZE</a> (via @<a class="aktt_username" href="http://twitter.com/sarahintampa">sarahintampa</a> @<a class="aktt_username" href="http://twitter.com/evejou">evejou</a> +) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15339298577">#</a></li>
</ul>
<p>And in place of LIGATT, who has apparently been shamed out of the press, we have tons of <strong>Google news</strong>.</p>
<ul>
<li>Heh. Google moving to Mac/Linux internally <a rel="nofollow" href="http://bit.ly/95YKFh">http://bit.ly/95YKFh</a> (via @<a class="aktt_username" href="http://twitter.com/schuetzdj">schuetzdj</a>) [Cool. Don't know if would stop APT tho.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15206147127">#</a></li>
<li>Re Google phasing out Windows.. Maybe it&#8217;ll just make other companies more attractive targets. That whole bear thing.. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15207115873">#</a></li>
<li>Poll: Would U consider phasing out Win in your org due 2 security? <a rel="nofollow" href="http://bit.ly/a9sE06">http://bit.ly/a9sE06</a> [After 7 hours .. 17% Yes 78% No] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15207350942">#</a></li>
<li>Google Browser Targets Fed Market <a rel="nofollow" href="http://bit.ly/bDRY0d">http://bit.ly/bDRY0d</a> (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [Interesting. Looking 2 get Google Apps FISMA certified.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15230208193">#</a></li>
</ul>
<p>You can also keep yourself busy with these other<strong> interesting newsbites</strong>:</p>
<ul>
<li>(ISC)²® Evolves Name, Structure Of CAP® Credential 2 Reflect New NIST Guidance <a rel="nofollow" href="http://bit.ly/abz2qJ">http://bit.ly/abz2qJ</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14955419624">#</a></li>
<li>Sameer Bhalotra named senior director of cybersec under Howard Schmidt, White House confirms (via @<a class="aktt_username" href="http://twitter.com/iweeknick">iweeknick</a> @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14955745259">#</a></li>
<li>House Adopts Cybersec Measure. [Good] FISMA Reform Fate Tied to Don&#8217;t Ask, Don&#8217;t Tell. [WTF?] .. <a rel="nofollow" href="http://bit.ly/cESNnD">http://bit.ly/cESNnD</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14956048529">#</a></li>
<li>Woman Scammed Out of $50k <a rel="nofollow" href="http://bit.ly/b0zBtQ">http://bit.ly/b0zBtQ</a> (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [Hey &amp; she's from Fairfax County.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14956869465">#</a></li>
<li>&#8220;An Overview of Exploit Packs&#8221; <a rel="nofollow" href="http://bit.ly/de6181">http://bit.ly/de6181</a> [Nice quick discussion. Wow, up to $1000 for one of these.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15107415854">#</a></li>
<li>&#8220;$2.95 &#8211; Price 4 All Your Personal Details&#8221; <a rel="nofollow" href="http://bit.ly/bzn5ou">http://bit.ly/bzn5ou</a> [Downside of all this public info. U can save $3 by using Google.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15108251958">#</a></li>
<li>Should we be encrypting backups? <a rel="nofollow" href="http://bit.ly/bBIcEt">http://bit.ly/bBIcEt</a> [Well yeah .. key mgmt is hard tho.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15205898482">#</a></li>
<li>Cybersecurity: A Year in Review <a rel="nofollow" href="http://bit.ly/bZYMwh">http://bit.ly/bZYMwh</a> (via @<a class="aktt_username" href="http://twitter.com/IBMFedCyber">IBMFedCyber</a>) [I thought these only occured in December. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15206860767">#</a></li>
<li>House Approves FISMA Reform <a rel="nofollow" href="http://bit.ly/9H0lJh">http://bit.ly/9H0lJh</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) [Except how much is actually going 2 b "reformed"?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15231593550">#</a></li>
<li>Gr8 article on cloud ITAR compliance, presents variety concerns <a rel="nofollow" href="http://bit.ly/9TBKTI">http://bit.ly/9TBKTI</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) [Wow, more cloud issues.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15232530081">#</a></li>
<li>Windows, Mac, or Linux: It&#8217;s Not the OS, It&#8217;s the User <a rel="nofollow" href="http://bit.ly/dl96aQ">http://bit.ly/dl96aQ</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15295046889">#</a></li>
<li>Adobe #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%231">1</a> target 4 Hackers in Q1 2010 <a rel="nofollow" href="http://bit.ly/b07Dog">http://bit.ly/b07Dog</a> [PDF accounts for 47.5%] (fixed link) (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [Wow!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15339595933">#</a></li>
<li>New Open-Source OS Will Come w/ &#8216;Disposable&#8217; VM <a rel="nofollow" href="http://bit.ly/cAyBmh">http://bit.ly/cAyBmh</a> [This could work .. maintenance a pain tho.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15344999246">#</a></li>
</ul>
<p>And in closing, who could forget the <strong>tweet of the week</strong>?</p>
<ul>
<li>Can&#8217;t stop laughing at this. <a rel="nofollow" href="http://bit.ly/asShRC">http://bit.ly/asShRC</a> (via @<a class="aktt_username" href="http://twitter.com/rgaucher">rgaucher</a> @<a class="aktt_username" href="http://twitter.com/manicode">manicode</a>) [I agree. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/15085298676">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2010/06/04/grecs-weekly-infosec-ramblings-for-2010-06-03/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2010-05-27</title>
		<link>http://www.novainfosecportal.com/2010/05/29/grecs-weekly-infosec-ramblings-for-2010-05-27/</link>
		<comments>http://www.novainfosecportal.com/2010/05/29/grecs-weekly-infosec-ramblings-for-2010-05-27/#comments</comments>
		<pubDate>Sat, 29 May 2010 16:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2010/05/27/grecs-weekly-infosec-ramblings-for-2010-05-27/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to [...]]]></description>
			<content:encoded><![CDATA[<p>If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="events/nova-meetups/#events-in-dc">DC</a>-, and <a href="events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>There seemed to be quite a few meetups and conferences this past week. Did you get to attend any of them?</p>
<ul>
<li>#MEETUP #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%2325">25</a>: ~25 folks, epic @<a class="aktt_username" href="http://twitter.com/shpantzer">shpantzer</a> v. @<a class="aktt_username" href="http://twitter.com/electricfork">electricfork</a> cage match, @<a class="aktt_username" href="http://twitter.com/grantstavely">grantstavely</a> skipping town, CTF qual-chatter, &amp;c. (via @<a class="aktt_username" href="http://twitter.com/charmsec">charmsec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14421847129">#</a></li>
<li>#MEETUP RT @capsecdc: CapSec is Next Week! 26-May at Stetson&#8217;s, 1610 U St NW! <a rel="nofollow" href="http://bit.ly/9WhjR7">http://bit.ly/9WhjR7</a> or on Upcoming at <a rel="nofollow" href="http://bit.ly/bdYesS">http://bit.ly/bdYesS</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14472786292">#</a></li>
<li>Reminder: SecureAmericas Conference @ Mon May 24 &#8211; Tue May 25, 2010  (NovaInfosecPortal.com Calendar) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14516342253">#</a></li>
<li>Reminder: ISSA Baltimore Meetup @ Wed May 26 4:30pm &#8211; 6:30pm  (NovaInfosecPortal.com Calendar) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14715839567">#</a></li>
<li>Reminder: CapSecDC Meetup @ Wed May 26 6pm &#8211; 9pm (NovaInfosecPortal.com  Calendar) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14720130207">#</a></li>
<li>#MEETUP CapSecDC, Wed. 26 May 2010, Stetson’s, 1610 U St NW Wash, DC 20009, 5 p.m. &#8211; (via @<a class="aktt_username" href="http://twitter.com/capsecdc">capsecdc</a> @<a class="aktt_username" href="http://twitter.com/sabletek">sabletek</a>) [2 more hours!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14782288323">#</a></li>
</ul>
<p>There’s also some upcoming meetups for those of you who are interested.</p>
<ul>
<li>CALENDAR UPD: ISSA NoVA Meetup <a rel="nofollow" href="http://bit.ly/cT3R1w">http://bit.ly/cT3R1w</a> <a rel="nofollow" href="http://j.mp/nispcal">http://j.mp/nispcal</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14593517158">#</a></li>
<li>CALENDAR UPD: ISSA Baltimore Meetup <a rel="nofollow" href="http://bit.ly/c7pNIO">http://bit.ly/c7pNIO</a> <a rel="nofollow" href="http://j.mp/nispcal">http://j.mp/nispcal</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14682025771">#</a></li>
<li>CALENDAR UPD: Charmsec Meetup <a rel="nofollow" href="http://bit.ly/9OLi5B">http://bit.ly/9OLi5B</a> <a rel="nofollow" href="http://j.mp/nispcal">http://j.mp/nispcal</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14682026245">#</a></li>
</ul>
<p>If you don&#8217;t have time to make it to any of the weekly security meetups, why not try attending one of these upcoming conferences?</p>
<ul>
<li>#CON SANS Forensics &amp; IR Summit, Washington, DC July 6-8 <a rel="nofollow" href="http://bit.ly/cohF2r">http://bit.ly/cohF2r</a> (via @<a class="aktt_username" href="http://twitter.com/namedeplume">namedeplume</a> @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14465363633">#</a></li>
<li>#CON SANS 2010 Digital Forensics Summit &#8211; APT Based Forensic Challenge <a rel="nofollow" href="http://bit.ly/cicsiO">http://bit.ly/cicsiO</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14578255055">#</a></li>
<li>#CON RT @charmsec: .@<a class="aktt_username" href="http://twitter.com/stephenNorthcut">stephenNorthcut</a> has invited any1 fr Charmsec out 2 SansFIRE&#8217;s Reception on Mon the 7th. .. RSVP is required. DM me <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14635308927">#</a></li>
<li>#CON NoVA Hackers Metasploit Workshop CFP is open <a rel="nofollow" href="http://bit.ly/9rzDR1">http://bit.ly/9rzDR1</a> (via @<a class="aktt_username" href="http://twitter.com/novahackers">novahackers</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14635598387">#</a></li>
</ul>
<p>For those of you that don’t know, we have some pretty awesome infosec bloggers in the local area. You can check out some of their articles below.</p>
<ul>
<li>#NOVABLOGGER: Digital Signatures DII Workshop <a rel="nofollow" href="http://bit.ly/a5ePOV">http://bit.ly/a5ePOV</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14454237123">#</a></li>
<li>#NOVABLOGGER: Watch Your WHOIS Entries <a rel="nofollow" href="http://bit.ly/aQWP6N">http://bit.ly/aQWP6N</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14529634362">#</a></li>
<li>#NOVABLOGGER: FACTA Red Flags and Credit <a rel="nofollow" href="http://bit.ly/dfWixH">http://bit.ly/dfWixH</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14630067245">#</a></li>
<li>#NOVABLOGGER: More on Black Hat Costs <a rel="nofollow" href="http://bit.ly/bNrmFj">http://bit.ly/bNrmFj</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14665205632">#</a></li>
<li>#NOVABLOGGER: Forget Pre-Incident Cost, How Much Did Your Last Incident Cost? <a rel="nofollow" href="http://bit.ly/9jaax2">http://bit.ly/9jaax2</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14668710240">#</a></li>
<li>#NOVABLOGGER: On Greed and Complianciness <a rel="nofollow" href="http://bit.ly/9N6CgK">http://bit.ly/9N6CgK</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14693859838">#</a></li>
<li>#NOVABLOGGER: Categories of Security Controls in Outsourcing <a rel="nofollow" href="http://bit.ly/bujSFk">http://bit.ly/bujSFk</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14708117694">#</a></li>
<li>#NOVABLOGGER: Compliance &amp; Risk Management Are Not the Devil <a rel="nofollow" href="http://bit.ly/c92y6h">http://bit.ly/c92y6h</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14711098537">#</a></li>
<li>#NOVABLOGGER: Genealogy Research – aka stalking <a rel="nofollow" href="http://bit.ly/d1ciJo">http://bit.ly/d1ciJo</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14758733341">#</a></li>
<li>#NOVABLOGGER: “Machines Don’t Cause Risk, People Do!” <a rel="nofollow" href="http://bit.ly/bqGwFa">http://bit.ly/bqGwFa</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14773018204">#</a></li>
<li>#NOVABLOGGER: Burp 1.3.5 &amp; Android SSL Apps update <a rel="nofollow" href="http://bit.ly/bc0JKj">http://bit.ly/bc0JKj</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14773019215">#</a></li>
<li>#NOVABLOGGER: LOLCATS Building Firewalls <a rel="nofollow" href="http://bit.ly/b0Qgrz">http://bit.ly/b0Qgrz</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14836846386">#</a></li>
</ul>
<p>In case you missed them, here were some of our blog posts from this week.</p>
<ul>
<li>BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://bit.ly/dyg91J">http://bit.ly/dyg91J</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14449135358">#</a></li>
<li>BLOGGED: Where You Want to Be This Week for 2010-05-24 <a rel="nofollow" href="http://bit.ly/dcBdLU">http://bit.ly/dcBdLU</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14702068766">#</a></li>
</ul>
<p>And here are a few of our friendly reminders&#8230;</p>
<ul>
<li>NOVAINFOSEC TWITS: Haven&#8217;t mentioned in while. Localized vs of @securitytwits. We&#8217;d love 2 have u. <a rel="nofollow" href="http://bit.ly/nisptwit">http://bit.ly/nisptwit</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14711485174">#</a></li>
<li>ADD YOUR MEETUPS: Want to add your #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23meet">meet</a> up events to our calendar at <a rel="nofollow" href="http://bit.ly/nispcal?">http://bit.ly/nispcal?</a> Contact us at <a rel="nofollow" href="http://bit.ly/nispcontact">http://bit.ly/nispcontact</a>. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14782081389">#</a></li>
</ul>
<p>There was so much talk about LIGATT this week, there getting their own section. When is this company and the self-proclaimed &#8220;world&#8217;s greatest hacker&#8221; going to go away?</p>
<ul>
<li>Awesome sum of #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23LIGATT">LIGATT</a> BS .. Fundamentals of Manipulating Perception thru Press Rel <a rel="nofollow" href="http://bit.ly/cjWx3C">http://bit.ly/cjWx3C</a> (via @<a class="aktt_username" href="http://twitter.com/dallendoug">dallendoug</a>) [Wow.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14465149026">#</a></li>
<li>Hey @LIGATT, nice plagiarism. <a rel="nofollow" href="http://is.gd/cjXIj">http://is.gd/cjXIj</a> (via @<a class="aktt_username" href="http://twitter.com/ksignal9">ksignal9</a> @<a class="aktt_username" href="http://twitter.com/attritionorg">attritionorg</a> @<a class="aktt_username" href="http://twitter.com/dan_crowley">dan_crowley</a>) [U gotta b kidding me.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14577006388">#</a></li>
<li>LIGATT Twitter Plagiarism <a rel="nofollow" href="http://bit.ly/9g7TGW">http://bit.ly/9g7TGW</a> (via @<a class="aktt_username" href="http://twitter.com/quine">quine</a>) [Can this guy at least try. I mean come on. Just paraphrase it a bit.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14720525112">#</a></li>
<li>Infosec TV Commercial: LIGATT Sec hopes 2 scare people.. <a rel="nofollow" href="http://bit.ly/a6lL0e">http://bit.ly/a6lL0e</a> (via @<a class="aktt_username" href="http://twitter.com/schneierblog">schneierblog</a>) [More LIGATT LOLZ.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14723319750">#</a></li>
</ul>
<p>Not to be outdone by LIGATT, Facebook probably won this week with all the latest privacy brouhaha.</p>
<ul>
<li>Zuckerburg&#8217;s WP Column  <a rel="nofollow" href="http://j.mp/9QwVl3">http://j.mp/9QwVl3</a> (via @<a class="aktt_username" href="http://twitter.com/mckeay">mckeay</a>) [Article is total BS! We choose 2 share. Right? Your default is 4 us 2 share.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14629014852">#</a></li>
<li>Great @<a class="aktt_username" href="http://twitter.com/quine">quine</a> line on NetSecPodcast: You are not Facebook&#8217;s customer. You&#8217;re Facebook&#8217;s Product. (via @<a class="aktt_username" href="http://twitter.com/joshcorman">joshcorman</a> @<a class="aktt_username" href="http://twitter.com/mckeay">mckeay</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14636279432">#</a></li>
<li>Facebook&#8217;s Culture Problem May Be Fatal <a rel="nofollow" href="http://bit.ly/befqLw">http://bit.ly/befqLw</a> (via @<a class="aktt_username" href="http://twitter.com/hackernewsbot">hackernewsbot</a> @<a class="aktt_username" href="http://twitter.com/evejou">evejou</a>) [Nice write up.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14723799253">#</a></li>
<li>Facebook Forces Users 2 Expose or Remove Connections <a rel="nofollow" href="http://bit.ly/aUYr5n">http://bit.ly/aUYr5n</a> [WTF R they thinking. Really bad timing.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14764516677">#</a></li>
<li>Facebook Unveils New Privacy Controls <a rel="nofollow" href="http://tcrn.ch/csSUIS">http://tcrn.ch/csSUIS</a> [We'll see how this plays out. Still missing private defaults.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14790197282">#</a></li>
<li>Facebook Reveals New Privacy Setting Changes <a rel="nofollow" href="http://bit.ly/bm2nfH">http://bit.ly/bm2nfH</a> [Here's @<a class="aktt_username" href="http://twitter.com/DarkReading">DarkReading</a> 's writeup. Yep, weak defaults.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14790344466">#</a></li>
<li>Security&#8217;s Top 4 Social Engineers of All Time <a rel="nofollow" href="http://bit.ly/d01iMd">http://bit.ly/d01iMd</a> [Nice. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14791111374">#</a></li>
<li>R very own @<a class="aktt_username" href="http://twitter.com/theharmonyguy">theharmonyguy</a> was quoted in this SC Mag art a/b FB&#8217;s simplified privacy ctrls <a rel="nofollow" href="http://bit.ly/cGiqWF">http://bit.ly/cGiqWF</a> (via @<a class="aktt_username" href="http://twitter.com/geminisecurity">geminisecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14861402183">#</a></li>
</ul>
<p>And in closing, you can also keep yourself busy with these interesting newsbites:</p>
<ul>
<li>#Blog Twitter Attack <a rel="nofollow" href="http://j.mp/aWcNZ3">http://j.mp/aWcNZ3</a> (via @<a class="aktt_username" href="http://twitter.com/FSLabs">FSLabs</a>) [Watch out.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14432840642">#</a></li>
<li>Google SSL beta is live. .. U can now search more securely using <a rel="nofollow" href="http://bit.ly/9dxO3L">http://bit.ly/9dxO3L</a> (via @<a class="aktt_username" href="http://twitter.com/geekgrrl">geekgrrl</a> @<a class="aktt_username" href="http://twitter.com/evejou">evejou</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14463475327">#</a></li>
<li>Google Turns on SSL Encryption 4 Search <a rel="nofollow" href="http://bit.ly/9bziDZ">http://bit.ly/9bziDZ</a> [SSL 4 other services too .. didn't see iGoogle mentioned tho.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14463927898">#</a></li>
<li>VA Senator&#8217;s Credit Card Used 2 Buy Pot <a rel="nofollow" href="http://bit.ly/cVfwBw">http://bit.ly/cVfwBw</a> (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [Pretty funny.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14466256673">#</a></li>
<li>Is Your Home Printer a Security Risk? <a rel="nofollow" href="http://j.mp/bHjXjF">http://j.mp/bHjXjF</a> (via @<a class="aktt_username" href="http://twitter.com/securitywatch">securitywatch</a> @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) [We all too often forget these.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14531968639">#</a></li>
<li>SW Liability Settlement <a rel="nofollow" href="http://bit.ly/c0fHME">http://bit.ly/c0fHME</a> &lt; vendor liable beyond purchase price 4 unfit SW (via @<a class="aktt_username" href="http://twitter.com/manicode">manicode</a> @rickmoy..) [Wow!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14578080147">#</a></li>
<li>&#8220;Top 10 Privacy Tweaks You Should Know About&#8221; <a rel="nofollow" href="http://bit.ly/94uiWm">http://bit.ly/94uiWm</a> (via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) [Some really nice tips!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14592207082">#</a></li>
<li>Hey kids, go get your shiny new Threatpost iPhone app! <a rel="nofollow" href="http://bit.ly/dxfnvM">http://bit.ly/dxfnvM</a>. (via @<a class="aktt_username" href="http://twitter.com/mckeay">mckeay</a> @<a class="aktt_username" href="http://twitter.com/dennisf">dennisf</a>) [Nice!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14635180154">#</a></li>
<li>V2 of my History of Web Application Scanning project <a rel="nofollow" href="http://bit.ly/bgpi1r">http://bit.ly/bgpi1r</a> (via @<a class="aktt_username" href="http://twitter.com/silvexis">silvexis</a> @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) [Great project..] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14667232022">#</a></li>
<li>Interesting site of day: W3Domain Tools <a rel="nofollow" href="http://bit.ly/96YbVu">http://bit.ly/96YbVu</a> Port scan, HTTP Header Retrieval, HTTP &#8220;Recon&#8221;. (via @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) [Nice!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14667944823">#</a></li>
<li>Daily Dashboard 4 Sec &amp; Biz Continuity <a rel="nofollow" href="http://bit.ly/aIevKY">http://bit.ly/aIevKY</a> [Interesting. Like <a rel="nofollow" href="http://bit.ly/9vkDjL">http://bit.ly/9vkDjL</a> better.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14720738079">#</a></li>
<li>Tabnapping Attack Baits Phishing Trawl <a rel="nofollow" href="http://bit.ly/c2b1TY">http://bit.ly/c2b1TY</a> [I love these names. Look interesting tho.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14722379512">#</a></li>
<li>The Society of Information Risk Analysts &#8211; NewSchool Blog <a rel="nofollow" href="http://bit.ly/bZoUbz">http://bit.ly/bZoUbz</a> (via @<a class="aktt_username" href="http://twitter.com/alexhutton">alexhutton</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14723463621">#</a></li>
<li>Fun w/ Printers Part 1 <a rel="nofollow" href="http://bit.ly/97AzjA">http://bit.ly/97AzjA</a> Part 2 <a rel="nofollow" href="http://bit.ly/drf5zn">http://bit.ly/drf5zn</a> Part 3 <a rel="nofollow" href="http://bit.ly/cgWhPQ">http://bit.ly/cgWhPQ</a> (via @<a class="aktt_username" href="http://twitter.com/pauldotcom">pauldotcom</a>) [Nice!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14769531082">#</a></li>
<li>Online #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23tool">tool</a> 2 check if URLs R infected <a rel="nofollow" href="http://bit.ly/aQOzBv">http://bit.ly/aQOzBv</a> (via @<a class="aktt_username" href="http://twitter.com/NickITSec">NickITSec</a> @<a class="aktt_username" href="http://twitter.com/cedricpernet">cedricpernet</a>) [Metascanner using 12 scanners.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14782164833">#</a></li>
<li>Vuln in iPhone Data Encryption <a rel="nofollow" href="http://bit.ly/c9VcQ5">http://bit.ly/c9VcQ5</a> (via @<a class="aktt_username" href="http://twitter.com/907tothe703">907tothe703</a>) [Wow, didn't know was encrypted by default. Darn, it's broke.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14790541699">#</a></li>
<li>DARPA is building the National Cyber Range for security testing <a rel="nofollow" href="http://bit.ly/aB8uqf">http://bit.ly/aB8uqf</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) [Nice.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14871767618">#</a></li>
<li>RT @zwned: @<a class="aktt_username" href="http://twitter.com/grecs">grecs</a> NCR range for nex gen threats, DISA has a range for current threats and exercises  #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23IARange">IARange</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14872218856">#</a></li>
<li>DoD 2 shift focus to protecting .coms? <a rel="nofollow" href="http://bit.ly/aQjRRw">http://bit.ly/aQjRRw</a> (HT several) (via @<a class="aktt_username" href="http://twitter.com/dallendoug">dallendoug</a>) [Where 2 draw the boundary tho?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14877519894">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2010/05/29/grecs-weekly-infosec-ramblings-for-2010-05-27/feed/</wfw:commentRss>
		<slash:comments>9</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2010-05-20</title>
		<link>http://www.novainfosecportal.com/2010/05/21/grecs-weekly-infosec-ramblings-for-2010-05-20/</link>
		<comments>http://www.novainfosecportal.com/2010/05/21/grecs-weekly-infosec-ramblings-for-2010-05-20/#comments</comments>
		<pubDate>Fri, 21 May 2010 19:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2010/05/20/grecs-weekly-infosec-ramblings-for-2010-05-20/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to [...]]]></description>
			<content:encoded><![CDATA[<p>If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="events/nova-meetups/#events-in-dc">DC</a>-, and <a href="events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<ul class="aktt_tweet_digest">
<li>#JOB Six Hot &amp; Sought-After IT Security Skills <a rel="nofollow" href="http://bit.ly/bcWAxG">http://bit.ly/bcWAxG</a> [Didn't know "clearance" was a skill. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/13956206650">#</a></li>
<li>Single Group Did 66% of World&#8217;s Phishing <a rel="nofollow" href="http://bit.ly/9iHKZq">http://bit.ly/9iHKZq</a> [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/13956334583">#</a></li>
<li>Twitter-Controlled Botnets Come 2 Unwashed Masses <a rel="nofollow" href="http://bit.ly/bJDQC1">http://bit.ly/bJDQC1</a> [Doing C&amp;C via Twitter.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/13957025497">#</a></li>
<li>Great article on creating a malware analysis lab by @<a class="aktt_username" href="http://twitter.com/lennyzeltser">lennyzeltser</a> at <a rel="nofollow" href="http://bit.ly/9PZ8XJ">http://bit.ly/9PZ8XJ</a> (via @<a class="aktt_username" href="http://twitter.com/RayDavidson">RayDavidson</a> @<a class="aktt_username" href="http://twitter.com/moranned">moranned</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/13957452539">#</a></li>
<li>#NOVABLOGGER: Kish Cypher <a rel="nofollow" href="http://bit.ly/dpD7YN">http://bit.ly/dpD7YN</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/13958777311">#</a></li>
<li>#NOVABLOGGER Scale Of Vendor Lameness &amp; FUD <a rel="nofollow" href="http://j.mp/a7ipnF">http://j.mp/a7ipnF</a> &lt;&#8211;please participate, help improve. (via @<a class="aktt_username" href="http://twitter.com/Shpantzer">Shpantzer</a> @<a class="aktt_username" href="http://twitter.com/nselby">nselby</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/13973553405">#</a></li>
<li>#NOVABLOGGER: Using the Metasploit PHP Remote File Include Module <a rel="nofollow" href="http://bit.ly/a4Dp6t">http://bit.ly/a4Dp6t</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/13980370627">#</a></li>
<li>#NOVABLOGGER: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://bit.ly/dwBOnY">http://bit.ly/dwBOnY</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/13985496676">#</a></li>
<li>BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://bit.ly/dwBOnY">http://bit.ly/dwBOnY</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/13987310799">#</a></li>
<li>#NOVABLOGGER: GoDaddy XSS <a rel="nofollow" href="http://bit.ly/9TfVOE">http://bit.ly/9TfVOE</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/13989450787">#</a></li>
<li>BLOGGED: Grecs’ Weekly Infosec Ramblings for 2010-05-13 <a rel="nofollow" href="http://bit.ly/ddRbMI">http://bit.ly/ddRbMI</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/13990584904">#</a></li>
<li>#NOVABLOGGER: Grecs’ Weekly Infosec Ramblings for 2010-05-13 <a rel="nofollow" href="http://bit.ly/ddRbMI">http://bit.ly/ddRbMI</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/13993008105">#</a></li>
<li>IN CASE U MISSED IT: Grecs’ Weekly Infosec Ramblings for 2010-05-13 <a rel="nofollow" href="http://bit.ly/btrqxh">http://bit.ly/btrqxh</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/13994965677">#</a></li>
<li>IN CASE U MISSED IT: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://bit.ly/bMWkST">http://bit.ly/bMWkST</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/13995272127">#</a></li>
<li>Boffins Warn on Car Computer Security Risk <a rel="nofollow" href="http://bit.ly/bOgqIR">http://bit.ly/bOgqIR</a> (via @<a class="aktt_username" href="http://twitter.com/EASIserv">EASIserv</a> @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) [Wow, let's hack a car.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14002075321">#</a></li>
<li>#NOVABLOGGER: This week’s in review <a rel="nofollow" href="http://bit.ly/d62Mp6">http://bit.ly/d62Mp6</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14006265193">#</a></li>
<li>#MEETUP CharmSec 25 will be next Thursday, the 20th of May, at @slaintepub, at 7PM. <a rel="nofollow" href="http://bit.ly/devJRV">http://bit.ly/devJRV</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14006360405">#</a></li>
<li>Wow.. Twitter botnet SDK. These R fascinating. <a rel="nofollow" href="http://bit.ly/9l6mjU">http://bit.ly/9l6mjU</a> (via @<a class="aktt_username" href="http://twitter.com/helpnetsecurity">helpnetsecurity</a> @<a class="aktt_username" href="http://twitter.com/IBMFedCyber">IBMFedCyber</a>) [Nice article.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14006586807">#</a></li>
<li>#CON And speaking of AppSecs, you might want to save these dates: 8-11 November 2010..(via @<a class="aktt_username" href="http://twitter.com/AppSecDC">AppSecDC</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14006967226">#</a></li>
<li>#NOVABLOGGER: Facebook Backlash <a rel="nofollow" href="http://bit.ly/cbGrcw">http://bit.ly/cbGrcw</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14038206048">#</a></li>
<li>#NOVABLOGGER: How To Get OPEN NAT with Multiple 360’s. <a rel="nofollow" href="http://bit.ly/bdzwJM">http://bit.ly/bdzwJM</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14052306647">#</a></li>
<li>FB Intros Security Measures <a rel="nofollow" href="http://j.mp/cqkfl5">http://j.mp/cqkfl5</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) [Nice but not enabled by default &amp; least of their probs right now.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14109794014">#</a></li>
<li>#CON A friendly reminder: Metricon 5.0 CFP ends May 30.  <a rel="nofollow" href="http://j.mp/dtIIaj">http://j.mp/dtIIaj</a> (via @<a class="aktt_username" href="http://twitter.com/rybolov">rybolov</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14111343403">#</a></li>
<li>#EDU Honeynet project announces winners 2 last challenge <a rel="nofollow" href="http://j.mp/9vyRO2">http://j.mp/9vyRO2</a> (via @<a class="aktt_username" href="http://twitter.com/SecShoggoth">SecShoggoth</a> @<a class="aktt_username" href="http://twitter.com/taosecurity">taosecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14117808792">#</a></li>
<li>Reminder: GMU &#8211; AFCEA Symposium @ Tue May 18 &#8211; Wed May 19, 2010  (NovaInfosecPortal.com Calendar) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14119987290">#</a></li>
<li>#NOVABLOGGER: Review of Masters of Deception Posted <a rel="nofollow" href="http://bit.ly/acURn6">http://bit.ly/acURn6</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14125502163">#</a></li>
<li>#NOVABLOGGER: Review of Cyberpunk Posted <a rel="nofollow" href="http://bit.ly/d1DbWv">http://bit.ly/d1DbWv</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14125502768">#</a></li>
<li>#NOVABLOGGER: Review of The Hacker Crackdown Posted <a rel="nofollow" href="http://bit.ly/9nBPST">http://bit.ly/9nBPST</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14125503511">#</a></li>
<li>CALENDAR UPD: CharmSec Meetup <a rel="nofollow" href="http://bit.ly/ahLH8y">http://bit.ly/ahLH8y</a> <a rel="nofollow" href="http://j.mp/nispcal">http://j.mp/nispcal</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14133240220">#</a></li>
<li>CALENDAR UPD: Gartner Security &amp; Risk Management Summit <a rel="nofollow" href="http://bit.ly/9OjXa9">http://bit.ly/9OjXa9</a> <a rel="nofollow" href="http://j.mp/nispcal">http://j.mp/nispcal</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14142273718">#</a></li>
<li>CALENDAR UPD: OWASP AppSecDC Conference <a rel="nofollow" href="http://bit.ly/cnVcZF">http://bit.ly/cnVcZF</a> <a rel="nofollow" href="http://j.mp/nispcal">http://j.mp/nispcal</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14142274300">#</a></li>
<li>Reminder: ISACA NCA Meetup @ Tue May 18 8am &#8211; 4:30pm  (NovaInfosecPortal.com Calendar) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14156886279">#</a></li>
<li>Google 2 Offer Encrypted Search <a rel="nofollow" href="http://bit.ly/bd6cle">http://bit.ly/bd6cle</a> (via @<a class="aktt_username" href="http://twitter.com/appsecurity">appsecurity</a> @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) [Why can't they offer encrypted everything?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14164718974">#</a></li>
<li>Have U seen Secure Web App Framework Manifesto? <a rel="nofollow" href="http://bit.ly/aMKvUn">http://bit.ly/aMKvUn</a> (via @<a class="aktt_username" href="http://twitter.com/mcgoverntheory">mcgoverntheory</a> @<a class="aktt_username" href="http://twitter.com/DinisCruz">DinisCruz</a> @<a class="aktt_username" href="http://twitter.com/manicode">manicode</a>) [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14165559723">#</a></li>
<li>#NOVABLOGGER: Metricon is Coming to DC <a rel="nofollow" href="http://bit.ly/d0O0d3">http://bit.ly/d0O0d3</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14165835252">#</a></li>
<li>#NOVABLOGGER: Professor Rybolov’s Guide to InfoSec and Public Policy Analysis <a rel="nofollow" href="http://bit.ly/cGQILr">http://bit.ly/cGQILr</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14165837441">#</a></li>
<li>#MEETUP This Thursday (20th) &#8211; C @<a class="aktt_username" href="http://twitter.com/charmsec">charmsec</a> or <a rel="nofollow" href="http://bit.ly/dhODuM">http://bit.ly/dhODuM</a> 4 details. (via @<a class="aktt_username" href="http://twitter.com/pusscat">pusscat</a> @<a class="aktt_username" href="http://twitter.com/dionthegod">dionthegod</a> @<a class="aktt_username" href="http://twitter.com/charmsec">charmsec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14166826330">#</a></li>
<li>Teach a Man to Phish <a rel="nofollow" href="http://bit.ly/brgjnp">http://bit.ly/brgjnp</a> (via @<a class="aktt_username" href="http://twitter.com/briankrebs">briankrebs</a>) [Nice research. Followed a phisher 4 18mos. Great insight.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14167055294">#</a></li>
<li>JS based Independent &amp; Open Tool 4 Scanning ur FB Privacy Settings. <a rel="nofollow" href="http://bit.ly/cimhPO">http://bit.ly/cimhPO</a> (via @<a class="aktt_username" href="http://twitter.com/packetwerks">packetwerks</a>) [Nice.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14168026651">#</a></li>
<li>#NOVABLOGGER: Where You Want to Be This Week for 2010-05-17 <a rel="nofollow" href="http://bit.ly/9WFuS6">http://bit.ly/9WFuS6</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14175971941">#</a></li>
<li>BLOGGED: Where You Want to Be This Week for 2010-05-17 <a rel="nofollow" href="http://bit.ly/9WFuS6">http://bit.ly/9WFuS6</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14178338927">#</a></li>
<li>IN CASE U MISSED IT: Where You Want to Be This Week for 2010-05-17 <a rel="nofollow" href="http://bit.ly/cwYEP1">http://bit.ly/cwYEP1</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14180556107">#</a></li>
<li>Reminder: OWASP VA Meetup @ Tue May 18 6pm &#8211; 9pm (NovaInfosecPortal.com  Calendar) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14186198593">#</a></li>
<li>Reminder: ISSA DC Meetup @ Tue May 18 6:30pm &#8211; 8pm  (NovaInfosecPortal.com Calendar) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14187578018">#</a></li>
<li>Facebook Privacy Check <a rel="nofollow" href="http://bit.ly/9UDXcH">http://bit.ly/9UDXcH</a> [Nother FB privacy checker. Although @<a class="aktt_username" href="http://twitter.com/fslabs">fslabs</a> found some probs with it.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14187825268">#</a></li>
<li>Coming Wave of Mobile Attacks <a rel="nofollow" href="http://bit.ly/96YPro">http://bit.ly/96YPro</a> [let users install malware themselves] (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [Nice read.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14188333233">#</a></li>
<li>Most Browsers Leave Fingerprint that Can ID Users <a rel="nofollow" href="http://bit.ly/a302Jc">http://bit.ly/a302Jc</a> [Wasn't there article a/b this few months back?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14189588217">#</a></li>
<li>#MEETUP 24 seats left! NCAC conf Fed IT-Trends/FISMA <a rel="nofollow" href="http://bit.ly/djd0SN">http://bit.ly/djd0SN</a> &lt; Wish I were going. (via @<a class="aktt_username" href="http://twitter.com/ISACA_WashDC">ISACA_WashDC</a> @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14198105484">#</a></li>
<li>#NOVABLOGGER: Hardening Adobe Reader <a rel="nofollow" href="http://bit.ly/aehbaA">http://bit.ly/aehbaA</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14243748830">#</a></li>
<li>NOVAINFOSEC TWITS: Friendly reminder.. NovaInfosec Twits list is opt-in. Find list &amp; instructs 2 join at <a rel="nofollow" href="http://bit.ly/nisptwit">http://bit.ly/nisptwit</a>. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14244416860">#</a></li>
<li>Triggered bug in OSX Snow Leop &#8211; could still click &amp; view things on locked screen. <a rel="nofollow" href="http://bit.ly/anDwiW">http://bit.ly/anDwiW</a> (via @<a class="aktt_username" href="http://twitter.com/pmhesse">pmhesse</a>) [Great find.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14250785391">#</a></li>
<li>Huge &#8217;sexiest video ever&#8217; attack hits Facebook <a rel="nofollow" href="http://bit.ly/dj0pNx">http://bit.ly/dj0pNx</a> [Mmmm? Hotbar is back.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14250959761">#</a></li>
<li>Public SSL Server Database / SSL Server Test <a rel="nofollow" href="http://bit.ly/bUzsht">http://bit.ly/bUzsht</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) [Cool site to test certs/ssl.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14253805766">#</a></li>
<li>Symantec 2 Buy Verisign Security Biz 4 $1.3B <a rel="nofollow" href="http://bit.ly/bDPeiq">http://bit.ly/bDPeiq</a> (via @<a class="aktt_username" href="http://twitter.com/jaivijayan">jaivijayan</a> @<a class="aktt_username" href="http://twitter.com/jolenebonina">jolenebonina</a> @<a class="aktt_username" href="http://twitter.com/jsutera654">jsutera654</a>) [Whoa.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14266269714">#</a></li>
<li>ADD YOUR CONS: Want to add your #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23con">con</a> events to our calendar at <a rel="nofollow" href="http://bit.ly/nispcal?">http://bit.ly/nispcal?</a> Contact us at <a rel="nofollow" href="http://bit.ly/nispcontact">http://bit.ly/nispcontact</a>. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14314522253">#</a></li>
<li>Reminder: ISSA NoVA Meetup @ Thu May 20 5:30pm &#8211; 8:30pm  (NovaInfosecPortal.com Calendar) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14317610975">#</a></li>
<li>#NOVABLOGGER: DirSnatch_v2.1 <a rel="nofollow" href="http://bit.ly/9mgfqJ">http://bit.ly/9mgfqJ</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14318326252">#</a></li>
<li>Facebook Readies Simpler Privacy Options <a rel="nofollow" href="http://bit.ly/9ih9TJ">http://bit.ly/9ih9TJ</a> [I'll believe it when I see it.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14320100389">#</a></li>
<li>Calling All Security Bloggers, Come Out, Come Out Where Ever U Rhttp://bit.ly/c8P9fJ (via @<a class="aktt_username" href="http://twitter.com/ashimmy">ashimmy</a> @<a class="aktt_username" href="http://twitter.com/darkreading">darkreading</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14320820782">#</a></li>
<li>We just released Metasploitable, a target VM 4 testing Metasploit: <a rel="nofollow" href="http://bit.ly/acDikg">http://bit.ly/acDikg</a> (via @<a class="aktt_username" href="http://twitter.com/hdmoore">hdmoore</a> @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) [Awesome!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14321204563">#</a></li>
<li>Recs on 500G hardware encrypted hard drive? Prefer not 2 install app on machine 2 unlock. Thinking something like IronKey but a hard drive. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14321443247">#</a></li>
<li>Reminder: CharmSec Meetup @ Thu May 20 7pm &#8211; 10pm  (NovaInfosecPortal.com Calendar) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14322115828">#</a></li>
<li>#MEETUP Looks like OWASP VA will b on 6/3 at BAH. They&#8217;re looking 4 speakers (contact @<a class="aktt_username" href="http://twitter.com/falconsview">falconsview</a> if interested). <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14322717107">#</a></li>
<li>#MEETUP Wow, just learned that @<a class="aktt_username" href="http://twitter.com/capsecdc">capsecdc</a> will b next week on 5/26 .. same time (6ish) .. same place (Stetson&#8217;s). <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14322999581">#</a></li>
<li>CALENDAR UPD: OWASP VA Meetup <a rel="nofollow" href="http://bit.ly/9xOY2K">http://bit.ly/9xOY2K</a> <a rel="nofollow" href="http://j.mp/nispcal">http://j.mp/nispcal</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14341035780">#</a></li>
<li>CALENDAR UPD: CapSecDC Meetup <a rel="nofollow" href="http://bit.ly/bY2Y8T">http://bit.ly/bY2Y8T</a> <a rel="nofollow" href="http://j.mp/nispcal">http://j.mp/nispcal</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14341036286">#</a></li>
<li>#NOVABLOGGER: Beware the Audit Hammer <a rel="nofollow" href="http://bit.ly/acPLvf">http://bit.ly/acPLvf</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14365012679">#</a></li>
<li>#NOVABLOGGER: To Buy Shiny New Products Or Not To Buy <a rel="nofollow" href="http://bit.ly/9k4YUa">http://bit.ly/9k4YUa</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14372642053">#</a></li>
<li>HELP US HELP U: Friendly reminder.. Support NovaInfosecPortal by purchasing thru 1 of our affiliates. More info at <a rel="nofollow" href="http://bit.ly/nisphelp">http://bit.ly/nisphelp</a>. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14379772685">#</a></li>
<li>#NOVABLOGGER: I&#8217;m Your Huckleberry <a rel="nofollow" href="http://bit.ly/dgFmMR">http://bit.ly/dgFmMR</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14384445785">#</a></li>
<li>#NOVABLOGGER: Education, Training, and Awareness &#8211; There&#8217;s a Difference! <a rel="nofollow" href="http://bit.ly/bQEzkV">http://bit.ly/bQEzkV</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14384446425">#</a></li>
<li>#NOVABLOGGER: I&#8217;m Your Huckleberry <a rel="nofollow" href="http://bit.ly/bcg0v7">http://bit.ly/bcg0v7</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14386743435">#</a></li>
<li>#CON Rob Lee set up LinkedIn page <a rel="nofollow" href="http://bit.ly/ase4VJ">http://bit.ly/ase4VJ</a> 4 his July SANS IR &amp; Forensics Summit <a rel="nofollow" href="http://bit.ly/c0uWO7">http://bit.ly/c0uWO7</a> (via  @<a class="aktt_username" href="http://twitter.com/taosecurity">taosecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14388437831">#</a></li>
<li>Hah, thanks @<a class="aktt_username" href="http://twitter.com/woot">woot</a> 4 Sending Over Bag&#8217;s O Crap 4 Shmoocon <a rel="nofollow" href="http://bit.ly/dwXyuS">http://bit.ly/dwXyuS</a> (via @<a class="aktt_username" href="http://twitter.com/haxorthematrix">haxorthematrix</a>) [Memooorrreeeiiis.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14388770022">#</a></li>
<li>Symantec&#8217;s $1.28 bn Purchase of VeriSign&#8217;s Authentication Biz <a rel="nofollow" href="http://bit.ly/9mXwmQ">http://bit.ly/9mXwmQ</a> [Consolidation time. So many buys lately.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14389498886">#</a></li>
<li>Technically it&#8217;s not a #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23novablogger">novablogger</a> blog but @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a> &#8217;s FISMApedia is a great resource. <a rel="nofollow" href="http://bit.ly/bUYCgZ">http://bit.ly/bUYCgZ</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14389806667">#</a></li>
<li>Detecting Browser History <a rel="nofollow" href="http://bit.ly/aH1LET">http://bit.ly/aH1LET</a> (via @<a class="aktt_username" href="http://twitter.com/schneierblog">schneierblog</a>) [Interesting. I use clear browser cache upon close method.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14390693835">#</a></li>
<li>Detecting Browser History <a rel="nofollow" href="http://bit.ly/aH1LET">http://bit.ly/aH1LET</a> (via @<a class="aktt_username" href="http://twitter.com/schneierblog">schneierblog</a>) [Interesting. I use the clear browser cache on close method.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14390754549">#</a></li>
<li>Most Browsers Silently Expose Intimate Viewing Habits <a rel="nofollow" href="http://bit.ly/bSCo8t">http://bit.ly/bSCo8t</a> [More on this. Known 4 a decade. FF4 2 b 1st to fix.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14399729255">#</a></li>
<li>ReclaimPrivacy.org: FB Privacy 101 <a rel="nofollow" href="http://bit.ly/atuXmk">http://bit.ly/atuXmk</a> [More on this. Detects stuff fine but fix button doesn't always work.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14399883083">#</a></li>
<li>#NOVABLOGGER: ReclaimPrivacy.org <a rel="nofollow" href="http://bit.ly/d8Konz">http://bit.ly/d8Konz</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> [Nother article on this tool.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/14400576412">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2010/05/21/grecs-weekly-infosec-ramblings-for-2010-05-20/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
