<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>NovaInfosecPortal.com &#187; NoVA Email Lists/Networking</title>
	<atom:link href="http://www.novainfosecportal.com/category/resources/nova-email-lists-networking/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.novainfosecportal.com</link>
	<description>News, events, &#38; resources for infosec professionals in NoVA, DC, &#38; MD</description>
	<lastBuildDate>Mon, 06 Feb 2012 18:30:33 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2011-06-09</title>
		<link>http://www.novainfosecportal.com/2011/06/09/grecs-weekly-infosec-ramblings-for-2011-06-09/</link>
		<comments>http://www.novainfosecportal.com/2011/06/09/grecs-weekly-infosec-ramblings-for-2011-06-09/#comments</comments>
		<pubDate>Fri, 10 Jun 2011 01:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2011/06/09/grecs-weekly-infosec-ramblings-for-2011-06-09/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @grecs Twitter account. There seemed to be quite a few meetups this past week. Did you get to attend any of them? DC2600: 3 people showed up to the meeting on 06/03/2011. # OWASPNoVA: Was this past Thursday. # If you don&#8217;t have time to make it to any of the weekly security meetups, why not try attending one of these upcoming conferences? And be sure to check out our event calendar for even more upcoming meetups and conferences. ISSA International Conference: The agenda is published. # Maryland Cyber Challenge &#38; Conference # For those of you that don’t know, we have some pretty awesome infosec bloggers in the local area. You can check out some of their articles below. Product Review: The hiddn Crypto Adapter Offers Secure [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-06-09+http%3A%2F%2Fj.mp%2Fj2mm8b" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/06/09/grecs-weekly-infosec-ramblings-for-2011-06-09/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-06-09" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><img class="alignright size-medium wp-image-5282" title="Rambling Stream" src="http://www.novainfosecportal.com/wp-content/uploads/2011/05/ramblingstream-200x300.jpg" alt="Picture of a Rambling Stream" width="140" height="210" />If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="/events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="/events/nova-meetups/#events-in-dc">DC</a>-, and <a href="/events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>There seemed to be quite a few <strong>meetups this past week</strong>. Did you get to attend any of them?</p>
<ul>
<li>DC2600: 3 people showed up to the meeting on 06/03/2011. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/77368308063666176">#</a></li>
<li><a href="http://j.mp/iXqlZd">OWASPNoVA</a>: Was this past Thursday. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/78583371881652224">#</a></li>
</ul>
<p>If you don&#8217;t have time to make it to any of the weekly security meetups, why not try attending one of these <strong>upcoming conferences</strong>? And be sure to check out <a href="/full-calendar/">our event calendar</a> for even more upcoming meetups and conferences.</p>
<ul>
<li><a href="http://bit.ly/jgZN6G">ISSA International Conference</a>: The agenda is published. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76759673075806208">#</a></li>
<li><a href="http://www.mdc3.org/">Maryland Cyber Challenge &amp; Conference</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/78283604756672512">#</a></li>
</ul>
<p>For those of you that don’t know, we have some pretty awesome <strong>infosec bloggers in the local area</strong>. You can check out some of their articles below.</p>
<ul>
<li><a href="http://bit.ly/mfCZWq">Product Review: The hiddn Crypto Adapter Offers Secure USB Storage</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/77035941289668610">#</a></li>
<li><a href="http://bit.ly/jtZltm">China&#8217;s View Is More Important Than Yours</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/77035947069423616">#</a></li>
<li><a href="http://bit.ly/lbanoj">wXf module buby/keyword_search_send</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/77035944213090305">#</a></li>
<li><a href="http://bit.ly/j2gvwp">Security Conference Recommendations</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/77130332771586048">#</a></li>
<li><a href="http://j.mp/mj3N6f">Blackbox Vs. Whitebox Mobile Security Testing</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/78454283900690432">#</a></li>
<li><a href="http://bit.ly/laS0bU">Using S/MIME on iOS 5 (Beta)</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/78553401994129409">#</a></li>
</ul>
<p>In case you missed them, here were <strong>some of our blog posts</strong> from this week.</p>
<ul>
<li><a href="http://bit.ly/mSQIoN">Grecs’ Weekly Infosec Ramblings for 2011-06-02</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76455257051377664">#</a></li>
<li><a href="http://bit.ly/l8PN73">NISPod 002: Is It Loud Enough</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/77453364845223937">#</a></li>
<li><a href="http://bit.ly/ihFq4E">Where You Want to Be This Week for 2011-06-06</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/77781941147025409">#</a></li>
</ul>
<p>You can also keep yourself busy with these <strong>interesting newsbites</strong>:</p>
<ul>
<li>Sony has been <a href="http://bit.ly/joBbTo">hit</a> again. A million accts here .. a million there accts there .. no biggie. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76614001915727872">#</a></li>
<li><a href="http://j.mp/iyaA0Y">OWASP Mobile Top Ten Project Looking for Volunteers</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76628797969014785">#</a></li>
<li><a href="http://bit.ly/j1appY">Webmail Buggers Attack Yahoo!, Hotmail Users</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76750176953434112">#</a></li>
<li><a href="http://j.mp/isASkU">Admin: Gmail Phishers Stalked Victims for Months</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76991103575924736">#</a></li>
<li><a href="http://bit.ly/mG0cbf">Sony Hackers LulzSec Strike FBI Affiliate InfraGard</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/77231166771564544">#</a> <a href="http://twitter.com/grecs/statuses/77561399089430528">#</a></li>
<li>Nice @<span class="aktt_username">attritionorg</span> <a href="http://j.mp/mib9lc">timeline</a> of Sony hacks (12 so far, DoS not included). <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/77407172165771264">#</a></li>
<li><a href="http://j.mp/kmKmiq">Hackers Attack Nintendo</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/77464235835260930">#</a></li>
<li><a href="http://j.mp/jEHEdg">Reversing the Incognito Exploit Kit</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/77718166951833600">#</a></li>
<li><a href="http://j.mp/ltQNQv">Adobe Rushes Out Patch for All-Platform Flash Vuln</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/77805401684455424">#</a></li>
<li>Eric Corley <a href="http://j.mp/lp94wX">says</a> underground has been so thoroughly infiltrated by FBI that 1/4 is informer <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/77807066202374144">#</a></li>
<li><a href="http://bit.ly/iXL6H4">DHS FISMA Metrics Released</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/77842230370512896">#</a></li>
<li>RSA: Yes, <a href="http://bit.ly/izKuEj">we were breached</a>. Us: Really, that never entered my mind. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/78074916804628480">#</a></li>
<li><a href="http://bit.ly/kUU46I">TN Passes Law to Ban Sharing Passwords</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/78076666085261312">#</a></li>
<li><a href="http://j.mp/kpYcFP">iOS 5 Jailbroken</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/78155879173734400">#</a></li>
<li><a href="http://j.mp/msFGUj">Attribution Problems Hinder U.S. Cyberwar Strategy</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/78429664015691776">#</a></li>
<li><a href="http://bit.ly/iFwPJW">Password Reuse Looks Bad</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/78442339592437760">#</a></li>
<li><a href="http://bit.ly/jZJV4T">Court: Passwords + Secret Questions = ‘Reasonable’ eBanking Security</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/78443024270626818">#</a></li>
<li><a href="http://bit.ly/jdqK9N">FB Facial Recognition Enabled by Default</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/78467092768231424">#</a></li>
<li><a href="http://cnet.co/k1XxRH">Senators Target Bitcoin Currency</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/78880552345812992">#</a></li>
<li>Nice, the blackhats are <a href="http://bit.ly/jhQ1E1">targeting</a> the whitehats&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/78896349961129984">#</a></li>
</ul>
<p>And in closing, who could forget the <strong>tweets of the week</strong>?</p>
<ul>
<li>Mr. President the attack was launched from 127.0.0.1. That&#8217;s China right? Unleash the hounds!! (via @<a class="aktt_username" href="http://twitter.com/iFail">iFail</a>) [Lol.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76760032632508416">#</a></li>
<li>RT @<a class="aktt_username" href="http://twitter.com/derekcslater">derekcslater</a> .. @<a class="aktt_username" href="http://twitter.com/eric_andersen">eric_andersen</a>: how two #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23security">security</a> experts verify one other on Twitter: <a rel="nofollow" href="http://twitpic.com/55yqtd">http://twitpic.com/55yqtd</a> &lt;- Nice <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/78437275138129920">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-06-09+http%3A%2F%2Fj.mp%2Fj2mm8b" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/06/09/grecs-weekly-infosec-ramblings-for-2011-06-09/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-06-09" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/06/09/grecs-weekly-infosec-ramblings-for-2011-06-09/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2011-06-02</title>
		<link>http://www.novainfosecportal.com/2011/06/02/grecs-weekly-infosec-ramblings-for-2011-06-02/</link>
		<comments>http://www.novainfosecportal.com/2011/06/02/grecs-weekly-infosec-ramblings-for-2011-06-02/#comments</comments>
		<pubDate>Fri, 03 Jun 2011 01:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2011/06/02/grecs-weekly-infosec-ramblings-for-2011-06-02/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @grecs Twitter account. [Being a lazy blogger once again... At least your getting podcasts now. -Grecs] #EDU New blogpost &#8220;Malicious PDF Analysis Workshop Screencasts&#8221; http://j.mp/jQ6Xni (via @DidierStevens @kpyke) # New &#8216;MACDefender&#8217; Variant Installs Without Admin Password Requirement http://j.mp/jS0oVG (via @jasonmoliver) # NIST Sec Bulletin 2011-05 Using Security Config Checklists &#38; National Checklist Prog http://j.mp/kJprXa [PDF] (via @danphilpott) # Is FISMA-compliance required 4 any cloud computing company doing biz with gov? http://j.mp/iTDHJ9 (via @danphilpott) # #MEETUP 3 people showed up to the DC2600 meeting on 05/06/2011 #meetup #2600 #dc2600 (via @DC2600) # iOS 4 hardware encryption cracked http://j.mp/mljrxG (via @regsecurity) [In case U missed.] # Apple has a real security opportunity, but will it seize moment? http://j.mp/lkRut4 (via @CSOonline) [I only hope.] # More Sony woes, and the company [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-06-02+http%3A%2F%2Fj.mp%2FmSQIoN" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/06/02/grecs-weekly-infosec-ramblings-for-2011-06-02/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-06-02" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><img class="alignright size-medium wp-image-5282" title="Rambling Stream" src="http://www.novainfosecportal.com/wp-content/uploads/2011/05/ramblingstream-200x300.jpg" alt="Picture of a Rambling Stream" width="140" height="210" />If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="/events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="/events/nova-meetups/#events-in-dc">DC</a>-, and <a href="/events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>[Being a lazy blogger once again... At least your getting <a href="/2011/06/05/nispod-002-is-it-loud-enough/">podcasts</a> now. -Grecs]</p>
<ul class="aktt_tweet_digest">
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23EDU">EDU</a> New blogpost &#8220;Malicious PDF Analysis Workshop Screencasts&#8221; <a rel="nofollow" href="http://j.mp/jQ6Xni">http://j.mp/jQ6Xni</a> (via @<a class="aktt_username" href="http://twitter.com/DidierStevens">DidierStevens</a> @kpyke) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73859262815809536">#</a></li>
<li>New &#8216;MACDefender&#8217; Variant Installs Without Admin Password Requirement <a rel="nofollow" href="http://j.mp/jS0oVG">http://j.mp/jS0oVG</a> (via @<a class="aktt_username" href="http://twitter.com/jasonmoliver">jasonmoliver</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73864241882464256">#</a></li>
<li>NIST Sec Bulletin 2011-05 Using Security Config Checklists &amp; National Checklist Prog <a rel="nofollow" href="http://j.mp/kJprXa">http://j.mp/kJprXa</a> [PDF] (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73868873702715393">#</a></li>
<li>Is FISMA-compliance required 4 any cloud computing company doing biz with gov? <a rel="nofollow" href="http://j.mp/iTDHJ9">http://j.mp/iTDHJ9</a> (via  @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73870304316895232">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> 3 people showed up to the DC2600 meeting on 05/06/2011 #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23meetup">meetup</a> #2600 #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23dc2600">dc2600</a> (via @<a class="aktt_username" href="http://twitter.com/DC2600">DC2600</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73912675482079232">#</a></li>
<li>iOS 4 hardware encryption cracked <a rel="nofollow" href="http://j.mp/mljrxG">http://j.mp/mljrxG</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) [In case U missed.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73913266119774208">#</a></li>
<li>Apple has a real security opportunity, but will it seize moment? <a rel="nofollow" href="http://j.mp/lkRut4">http://j.mp/lkRut4</a> (via @<a class="aktt_username" href="http://twitter.com/CSOonline">CSOonline</a>) [I only hope.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73916641557217280">#</a></li>
<li>More Sony woes, and the company brings in identity theft service <a rel="nofollow" href="http://j.mp/mqgg33">http://j.mp/mqgg33</a> (via @<a class="aktt_username" href="http://twitter.com/DarkReading">DarkReading</a>) [Bout time!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73933830490292224">#</a></li>
<li>DHS Hears Gov Infosec Pros&#8217; Concerns <a rel="nofollow" href="http://j.mp/ihZpcs">http://j.mp/ihZpcs</a> [US govt still planning 2 hire more cybersec folks] (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73988153870000128">#</a></li>
<li>3 Simple Security Principles <a rel="nofollow" href="http://j.mp/kkXu3t">http://j.mp/kkXu3t</a> [good points; like infosec version of Asimov's 3 laws of robotics] (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73989628423712768">#</a></li>
<li>Wow, @<a class="aktt_username" href="http://twitter.com/hak5darren">hak5darren</a> &amp; @<a class="aktt_username" href="http://twitter.com/snubs">snubs</a> on Yahoo front page re story on mking some $ blogging. <a rel="nofollow" href="http://www.yahoo.com/">http://www.yahoo.com/</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74083458737111040">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NOVABLOGGER">NOVABLOGGER</a> Revisiting Android TapJacking (PoC app included) <a rel="nofollow" href="http://j.mp/iHD9NP">http://j.mp/iHD9NP</a> (via @<a class="aktt_username" href="http://twitter.com/jack_mannino">jack_mannino</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74089218913222656">#</a></li>
<li>BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://bit.ly/j3lBq2">http://bit.ly/j3lBq2</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74178264599506944">#</a></li>
<li>iPhone crypto issue isn&#8217;t all it&#8217;s cracked up to be <a rel="nofollow" href="http://j.mp/ip2qjY">http://j.mp/ip2qjY</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) [Was thinking this too.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74221529336000512">#</a></li>
<li>Linguists use sounds to bypass Skype crypto <a rel="nofollow" href="http://j.mp/jTbEZG">http://j.mp/jTbEZG</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74226177388191745">#</a></li>
<li>Holly molly is it raining out&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74261724122972160">#</a></li>
<li>Nice piece on Mac Defender/scareware scams fr @<a class="aktt_username" href="http://twitter.com/briankrebs">briankrebs</a> <a rel="nofollow" href="http://j.mp/kLChLV">http://j.mp/kLChLV</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74455690382557184">#</a></li>
<li>Managing CVE-0: Vuln Advisory: User clicks on something that they sho&#8230; <a rel="nofollow" href="http://j.mp/lyUND0">http://j.mp/lyUND0</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) [Lol.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74463492530388992">#</a></li>
<li>Google Chrome OS: Too secure to need security? <a rel="nofollow" href="http://j.mp/ijKMQc">http://j.mp/ijKMQc</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) [Unbreakable, right?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74463943275446273">#</a></li>
<li>Evidence RSA tokens are compromised. <a rel="nofollow" href="http://bit.ly/jtCbSm">http://bit.ly/jtCbSm</a> The opposition. <a rel="nofollow" href="http://j.mp/jONDTb">http://j.mp/jONDTb</a> (via @<a class="aktt_username" href="http://twitter.com/dmz006">dmz006</a> @manicode) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74479939537211392">#</a></li>
<li>If U’d like to nominate someone to be a local D-lister, Contact Us <a rel="nofollow" href="http://bit.ly/nispcontact">http://bit.ly/nispcontact</a> &amp; let us know why they should be featured. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74492999274463233">#</a></li>
<li>BTW, here were our previous D-list posts: <a rel="nofollow" href="http://bit.ly/ieVrm1">http://bit.ly/ieVrm1</a> <a rel="nofollow" href="http://bit.ly/e3caB">http://bit.ly/e3caB</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74493249422753793">#</a></li>
<li>Very interesting piece by @<a class="aktt_username" href="http://twitter.com/lennyzeltser">lennyzeltser</a> on importance of rituals in society &amp; their role in infosec. <a rel="nofollow" href="http://j.mp/iCSTR5">http://j.mp/iCSTR5</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74547110598557696">#</a></li>
<li>DHS Advances Einstein Cybersecurity Deployment &#8212; InformationWeek <a rel="nofollow" href="http://j.mp/kFVtLo">http://j.mp/kFVtLo</a> (via @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74594235348828160">#</a></li>
<li>Obama admin proposes exchange of cyberskills experts w/ private industry <a rel="nofollow" href="http://j.mp/mIH8YM">http://j.mp/mIH8YM</a> (via @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74594730427682816">#</a></li>
<li>Charmsec is experimenting with a wiki. feel free to look around and add stuff. <a rel="nofollow" href="http://charmsec.org/wiki/">http://charmsec.org/wiki/</a> (via @<a class="aktt_username" href="http://twitter.com/charmsec">charmsec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74623039991586816">#</a></li>
<li>Good evening last night talking shop with @<a class="aktt_username" href="http://twitter.com/cktricky">cktricky</a>. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74859125992988673">#</a></li>
<li>What is Memorial Day?  <a rel="nofollow" href="http://j.mp/liUgp5">http://j.mp/liUgp5</a> &lt;- Thanks to all those who have served! (via @<a class="aktt_username" href="http://twitter.com/ziplock581">ziplock581</a> @DaKahuna2007) [+10000...] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74889087579996160">#</a></li>
<li>Good security assessment of Google Chrome Netbooks <a rel="nofollow" href="http://j.mp/kNqRDS">http://j.mp/kNqRDS</a> (via @<a class="aktt_username" href="http://twitter.com/jeffreycarr">jeffreycarr</a> @briankrebs) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74889979469381633">#</a></li>
<li>“@jjx: We&#8217;re married!!! @<a class="aktt_username" href="http://twitter.com/daveminella">daveminella</a> <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ”&#8212;&gt; congrats!!! Enjoy your special day!!! (via @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) [+1] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74890458886709248">#</a></li>
<li>10 simple privacy tricks <a rel="nofollow" href="http://j.mp/lYWbGq">http://j.mp/lYWbGq</a> (via @<a class="aktt_username" href="http://twitter.com/eduinfosec">eduinfosec</a> @derekcslater) [Excellent write-up fr LifeHacker.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74892507753877506">#</a></li>
<li>Chinese hackers use same backdoor required by US law 2 eavesdrop on Gmail accts. <a rel="nofollow" href="http://j.mp/mAP3LP">http://j.mp/mAP3LP</a> (via.. @<a class="aktt_username" href="http://twitter.com/carnal0wnage">carnal0wnage</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/74948341900910592">#</a></li>
<li>Updating calendar. Looks to be pretty slow week.. Just 2600 Arlington on Friday.. <a rel="nofollow" href="http://bit.ly/nispfullcal">http://bit.ly/nispfullcal</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75055669845299200">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> NoVA Forensic Meetup: NoVA Forensic Meetup, Wed, 6/1 at ReverseSpace <a rel="nofollow" href="http://j.mp/muZuaI">http://j.mp/muZuaI</a> (via @<a class="aktt_username" href="http://twitter.com/keydet89">keydet89</a> @charmsec) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75287103260463105">#</a></li>
<li>Just found out about NoVA Forensics Meetup this Wed.. Might be of interest to some of you. <a rel="nofollow" href="http://bit.ly/nispfullcal">http://bit.ly/nispfullcal</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75393573398388737">#</a></li>
<li>Week 21 in Review <a rel="nofollow" href="http://bit.ly/is90eJ">http://bit.ly/is90eJ</a> [Good summary as usual.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75393800410894336">#</a></li>
<li>Woot! NoVA Hackers the 6th (bar version at GB) &amp; 13th (regular meeting). <a rel="nofollow" href="http://bit.ly/nispfullcal">http://bit.ly/nispfullcal</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75397809624457216">#</a></li>
<li>Holy cheatsheets! Here&#8217;s a treasure trove. <a rel="nofollow" href="http://j.mp/izgHE7">http://j.mp/izgHE7</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75527819744129024">#</a></li>
<li>More updates to CSOonline&#8217;s security data and survey directory <a rel="nofollow" href="http://j.mp/hN20OV">http://j.mp/hN20OV</a> (via @<a class="aktt_username" href="http://twitter.com/derekcslater">derekcslater</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75627324741140480">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23CON">CON</a> EH-Net Global Calendar of Sec Events June <a rel="nofollow" href="http://j.mp/mTXSuv">http://j.mp/mTXSuv</a> (via @<a class="aktt_username" href="http://twitter.com/ethicalhacker">ethicalhacker</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75629653318053888">#</a></li>
<li>New Data Proves &#8216;Please ReTweet&#8217; Generates 4x More ReTweets <a rel="nofollow" href="http://j.mp/mNVFsJ">http://j.mp/mNVFsJ</a> (via @<a class="aktt_username" href="http://twitter.com/angelinaward">angelinaward</a>) [Lol, plz RT. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75727060970115072">#</a></li>
<li>Konboot from a USB flash drive files and instructions updated <a rel="nofollow" href="http://j.mp/mdrsFG">http://j.mp/mdrsFG</a> (via @<a class="aktt_username" href="http://twitter.com/irongeek_adc">irongeek_adc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75729685509713920">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23JOB">JOB</a> RT @<a class="aktt_username" href="http://twitter.com/j0emccray">j0emccray</a>: I have 2 clients needing to hire security people. 1 in .., 1 in MD &#8211; Information Assurance Manager. (via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75730069250785280">#</a></li>
<li>Pentagon: Hack attacks can be act of war <a rel="nofollow" href="http://j.mp/iCOVGe">http://j.mp/iCOVGe</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75730771943489536">#</a></li>
<li>NOVAINFOSEC TWITS: .. list is opt-in. List &amp; instructs 2 join at <a rel="nofollow" href="http://bit.ly/nisptwit">http://bit.ly/nisptwit</a>. (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) cc  @<a class="aktt_username" href="http://twitter.com/securitytwits">securitytwits</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75731265499832320">#</a></li>
<li>Apple built in an automatic Malware Updater <a rel="nofollow" href="http://j.mp/kxCvPc">http://j.mp/kxCvPc</a> (via @<a class="aktt_username" href="http://twitter.com/JoelEsler">JoelEsler</a> @sans_isc) [Just the start..] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75733178983264256">#</a></li>
<li>Apple Improving OS X Anti-Malware Feature <a rel="nofollow" href="http://j.mp/l4q8ar">http://j.mp/l4q8ar</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75735624681914368">#</a></li>
<li>Social Media at Work: Viral Shift towards Information Age <a rel="nofollow" href="http://j.mp/kG6VSn">http://j.mp/kG6VSn</a> (via @<a class="aktt_username" href="http://twitter.com/bobgourley">bobgourley</a>) [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75890469153947649">#</a></li>
<li>Apple security update targets MacDefender malware <a rel="nofollow" href="http://j.mp/lhC87D">http://j.mp/lhC87D</a> (via @<a class="aktt_username" href="http://twitter.com/briankrebs">briankrebs</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75891055098208256">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23CON">CON</a> Announcing the FedCyber.com Government-Industry Computer Security Summit <a rel="nofollow" href="http://j.mp/mx8Aen">http://j.mp/mx8Aen</a> (via @<a class="aktt_username" href="http://twitter.com/bobgourley">bobgourley</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75893407989514240">#</a></li>
<li>Wave of Trojans breaks over Android <a rel="nofollow" href="http://j.mp/mfmwjw">http://j.mp/mfmwjw</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/75996361459384321">#</a></li>
<li>BLOGGED: Meetup Reminder <a rel="nofollow" href="http://bit.ly/j73Nhs">http://bit.ly/j73Nhs</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76013532881223681">#</a></li>
<li>Mac trojan evades Apple&#8217;s brand new security fix <a rel="nofollow" href="http://j.mp/ipOwuu">http://j.mp/ipOwuu</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) [And so cat/mouse game begins.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76090710406864897">#</a></li>
<li>&#8216;Significant&#8217; Facebook attack doesn&#8217;t care if you&#8217;re a PC or a Mac <a rel="nofollow" href="http://j.mp/jkTRHb">http://j.mp/jkTRHb</a> [Wonder if Apple has sig 4 this?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76092151037042689">#</a></li>
<li>Eric Schmidt: Want Security? Get a Mac <a rel="nofollow" href="http://j.mp/krfUZD">http://j.mp/krfUZD</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) [What, not ChromeOS?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76095593088421888">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> One more reminder: Please RSVP for June 9th mtg &#8211; <a rel="nofollow" href="http://j.mp/iXqlZd">http://j.mp/iXqlZd</a> (via @<a class="aktt_username" href="http://twitter.com/falconsview">falconsview</a> @OWASPNoVA) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76096744055783424">#</a></li>
<li>Google: Hacker in China has obtained access to hundreds of email accounts <a rel="nofollow" href="http://j.mp/jUQKmT">http://j.mp/jUQKmT</a> (via @<a class="aktt_username" href="http://twitter.com/jasonmoliver">jasonmoliver</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76098785037651968">#</a></li>
<li>BLOGGED: NISPod 001 Epic Remix <a rel="nofollow" href="http://bit.ly/iU4GAw">http://bit.ly/iU4GAw</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76138448066580480">#</a></li>
<li>Fed Agencies Embrace iPhones, iPads <a rel="nofollow" href="http://j.mp/mvkaCR">http://j.mp/mvkaCR</a> (via @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) [Nice. Device mgmt tech finally catching up.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76263067901624321">#</a></li>
<li>BLOGGED: NISPod 001 Epic Remix <a rel="nofollow" href="http://bit.ly/iU4GAw">http://bit.ly/iU4GAw</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76328757723545600">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23EDU">EDU</a> 2011-06-10 Crypto Challenge Posted <a rel="nofollow" href="http://j.mp/gE5HrC">http://j.mp/gE5HrC</a> Expires June 10th 5:00PM WIN 100$USD! (via @<a class="aktt_username" href="http://twitter.com/DaKahuna2007">DaKahuna2007</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76331872900231169">#</a></li>
<li>FaceNiff is firesheep for mobile:  <a rel="nofollow" href="http://j.mp/kPunWF">http://j.mp/kPunWF</a> &#8211; how cute. (via @<a class="aktt_username" href="http://twitter.com/EnzOnInfoSec">EnzOnInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/76332665938255873">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-06-02+http%3A%2F%2Fj.mp%2FmSQIoN" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/06/02/grecs-weekly-infosec-ramblings-for-2011-06-02/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-06-02" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/06/02/grecs-weekly-infosec-ramblings-for-2011-06-02/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2011-05-26</title>
		<link>http://www.novainfosecportal.com/2011/05/26/grecs-weekly-infosec-ramblings-for-2011-05-26/</link>
		<comments>http://www.novainfosecportal.com/2011/05/26/grecs-weekly-infosec-ramblings-for-2011-05-26/#comments</comments>
		<pubDate>Fri, 27 May 2011 01:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2011/05/26/grecs-weekly-infosec-ramblings-for-2011-05-26/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @grecs Twitter account. [Anther lazy blogging week for me again. At least I'll be able to reference these in the future. -Grecs] BLOGGED: Grecs’ Weekly Infosec Ramblings for 2011-05-19 http://bit.ly/mkqgEb # Facebook&#8217;s CTO: We use privacy by design for all of our products. (via @csoghoian @quine) [Lol, really?] # Can we get #FF 4 Infosec? #SecFF or #FFSec @securitytwits Wanna monitor hashtag to get best people. (via @Shpantzer) [Nice!] # #NOVABLOGGER Thoughts On the Dropbox Controversy http://bit.ly/kGG0MK http://j.mp/nispblog (via @novainfosec) # Keep it Simple Stupid (David Lacey&#8217;s IT Security Blog) http://j.mp/jWGpt5 [good pts] (via @DrInfoSec) [+1] # FB gets publishing rights 2 your pics unless U change setting http://j.mp/kwX1g5 (via @jeremiahg @DrInfoSec) [Another complexity.] # Google breakthrough makes SSL less painful http://j.mp/kCnknU [Interesting .. but is this really [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-26+http%3A%2F%2Fj.mp%2Fqbdr7G" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/05/26/grecs-weekly-infosec-ramblings-for-2011-05-26/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-26" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><img class="alignright size-medium wp-image-5282" title="Rambling Stream" src="http://www.novainfosecportal.com/wp-content/uploads/2011/05/ramblingstream-200x300.jpg" alt="Picture of a Rambling Stream" width="140" height="210" />If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="/events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="/events/nova-meetups/#events-in-dc">DC</a>-, and <a href="/events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>[Anther lazy blogging week for me again. At least I'll be able to reference these in the future. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  -Grecs]</p>
<ul class="aktt_tweet_digest">
<li>BLOGGED: Grecs’ Weekly Infosec Ramblings for 2011-05-19 <a rel="nofollow" href="http://bit.ly/mkqgEb">http://bit.ly/mkqgEb</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71389881292689408">#</a></li>
<li>Facebook&#8217;s CTO: We use privacy by design for all of our products. (via @<a class="aktt_username" href="http://twitter.com/csoghoian">csoghoian</a> @quine) [Lol, really?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71409984994414592">#</a></li>
<li>Can we get #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23FF">FF</a> 4 Infosec? #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23SecFF">SecFF</a> or #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23FFSec">FFSec</a> @<a class="aktt_username" href="http://twitter.com/securitytwits">securitytwits</a> Wanna monitor hashtag to get best people. (via @<a class="aktt_username" href="http://twitter.com/Shpantzer">Shpantzer</a>) [Nice!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71552481867481089">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NOVABLOGGER">NOVABLOGGER</a> Thoughts On the Dropbox Controversy <a rel="nofollow" href="http://bit.ly/kGG0MK">http://bit.ly/kGG0MK</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71553596679925760">#</a></li>
<li>Keep it Simple Stupid (David Lacey&#8217;s IT Security Blog) <a rel="nofollow" href="http://j.mp/jWGpt5">http://j.mp/jWGpt5</a> [good pts] (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [+1] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71555268353335296">#</a></li>
<li>FB gets publishing rights 2 your pics unless U change setting <a rel="nofollow" href="http://j.mp/kwX1g5">http://j.mp/kwX1g5</a> (via @<a class="aktt_username" href="http://twitter.com/jeremiahg">jeremiahg</a> @DrInfoSec) [Another complexity.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71558110690553856">#</a></li>
<li>Google breakthrough makes SSL less painful <a rel="nofollow" href="http://j.mp/kCnknU">http://j.mp/kCnknU</a> [Interesting .. but is this really prob anymore?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71562086009946112">#</a></li>
<li>RE prev tweet: SSL sessions last a lot longer than originally implemented. Google&#8217;s breakthrough still help some. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71562730833842176">#</a></li>
<li>NSA&#8217;s hardening tips for OS X 10.6 <a rel="nofollow" href="http://j.mp/l3AaVh">http://j.mp/l3AaVh</a> [PDF] (via @<a class="aktt_username" href="http://twitter.com/jeremiahg">jeremiahg</a> @danphilpott) [Nice quick 2 pg cheatsheet.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71563337535717376">#</a></li>
<li>BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://bit.ly/jli1NU">http://bit.ly/jli1NU</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71597388321656833">#</a></li>
<li>Woot! Stopped family member fr being infected with MacDefender. Running ClamXAV on entire drive just in case. Any other suggestions? <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71659271384866816">#</a></li>
<li>Schmidt: &#8216;Elites&#8217; not &#8216;common men&#8217; fret over net privacy <a rel="nofollow" href="http://j.mp/mi1Skf">http://j.mp/mi1Skf</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71687986827370496">#</a></li>
<li>We now have a web page that tells a little about SecurityTwits, how to join.. <a rel="nofollow" href="http://j.mp/mOZ9Au">http://j.mp/mOZ9Au</a> (via @<a class="aktt_username" href="http://twitter.com/securitytwits">securitytwits</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71689938118254592">#</a></li>
<li>New Mac Malware Fools Customers, But Threat Still Relatively Small <a rel="nofollow" href="http://j.mp/kIPLaF">http://j.mp/kIPLaF</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) [What I found.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71692236626206720">#</a></li>
<li>Distributed Denial of Service Cheat Sheet <a rel="nofollow" href="http://j.mp/kOkHR7">http://j.mp/kOkHR7</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) [Another 1 from CERT Societe Generale.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71693296006725632">#</a></li>
<li>Common Vulnerability Reporting Framework (CVRF) <a rel="nofollow" href="http://j.mp/lEcktM">http://j.mp/lEcktM</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71697666760900608">#</a></li>
<li>Firefox add-on with 7m downloads can invade privacy <a rel="nofollow" href="http://j.mp/lrqDXH">http://j.mp/lrqDXH</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71713127510708225">#</a></li>
<li>New Mac fake-defenders similar to Windows scareware <a rel="nofollow" href="http://j.mp/kwn48t">http://j.mp/kwn48t</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) [More details fr MS.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71717623699742720">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23JOB">JOB</a> Any1 hunting C&amp;A gig in DC? if so hit @<a class="aktt_username" href="http://twitter.com/jasonmoliver">jasonmoliver</a> up, he has 2 groups looking &#8211; one for ISSO &amp; other for C&amp;A spot. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71718702416015360">#</a></li>
<li>Since @<a class="aktt_username" href="http://twitter.com/SGgrc">SGgrc</a> pointed out 1 of my simplest online safety tips, I thought I&#8217;d jot down Top 3: <a rel="nofollow" href="http://j.mp/lbpL9G">http://j.mp/lbpL9G</a> (via @<a class="aktt_username" href="http://twitter.com/briankrebs">briankrebs</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71742824906895360">#</a></li>
<li>Submission period for Exploitable Mobile App Challenge has been extended! <a rel="nofollow" href="http://j.mp/kppjW5">http://j.mp/kppjW5</a> (via @<a class="aktt_username" href="http://twitter.com/nVisiumSecurity">nVisiumSecurity</a> @mubix) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71744482336456704">#</a></li>
<li>Checking out &#8220;Northern Virginia OWASP&#8221; on OWASP: <a rel="nofollow" href="http://j.mp/lEgsha">http://j.mp/lEgsha</a> (via @<a class="aktt_username" href="http://twitter.com/jack_mannino">jack_mannino</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71745872186195968">#</a></li>
<li>NIST recommends security measures for cloud subscribers <a rel="nofollow" href="http://j.mp/mt7U8w">http://j.mp/mt7U8w</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) [Nice quick summary.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71746488987955200">#</a></li>
<li>Critics demand halt to &#8220;fishing expedition&#8221; laptop searches <a rel="nofollow" href="http://j.mp/ljeAIg">http://j.mp/ljeAIg</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71747692409257985">#</a></li>
<li>Gr8 writeup by @<a class="aktt_username" href="http://twitter.com/cyberwar">cyberwar</a> on Google Chrome False Start concept &amp; implications  <a rel="nofollow" href="http://j.mp/jrHnUL">http://j.mp/jrHnUL</a> (via @<a class="aktt_username" href="http://twitter.com/EnzOnInfoSec">EnzOnInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71995404174102528">#</a></li>
<li>It&#8217;s called &#8220;Air&#8221; because Adobe engineers thought it cool to make your laptop&#8217;s fans blow full speed (via @<a class="aktt_username" href="http://twitter.com/rjamestaylor">rjamestaylor</a> @schuetzdj) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72033868668092416">#</a></li>
<li>LinkedIn SSL Cookie Vulnerability. <a rel="nofollow" href="http://j.mp/mPGpS0">http://j.mp/mPGpS0</a> (via @<a class="aktt_username" href="http://twitter.com/hackingexposed">hackingexposed</a> @DaKahuna2007) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72404925845487616">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NOVABLOGGER">NOVABLOGGER</a> JRuby + Buby + wXf = fun <a rel="nofollow" href="http://bit.ly/lsxyF9">http://bit.ly/lsxyF9</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72428290077499393">#</a></li>
<li>How to remove MacDefender fake antivirus program <a rel="nofollow" href="http://j.mp/mcCA4N">http://j.mp/mcCA4N</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72432544947249152">#</a></li>
<li>My Canadian Television debut: <a rel="nofollow" href="http://j.mp/luGD1O">http://j.mp/luGD1O</a> with @<a class="aktt_username" href="http://twitter.com/haxorthematrix">haxorthematrix</a> and @<a class="aktt_username" href="http://twitter.com/parishilton">parishilton</a>?! (via @<a class="aktt_username" href="http://twitter.com/vincentkadmon">vincentkadmon</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72433073148530688">#</a></li>
<li>Pst, hey Sony: Forgot Password Cheat Sheet <a rel="nofollow" href="http://j.mp/lmnJcb">http://j.mp/lmnJcb</a> (via @<a class="aktt_username" href="http://twitter.com/manicode">manicode</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72643884584407040">#</a></li>
<li>A botched fix, not legal demands, nixed SCADA security talk <a rel="nofollow" href="http://j.mp/mhGZKH">http://j.mp/mhGZKH</a> (via @<a class="aktt_username" href="http://twitter.com/CSOonline">CSOonline</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72644594420035584">#</a></li>
<li>The Care and Feeding of your Hacker: A Managers Guide <a rel="nofollow" href="http://j.mp/lVX0HI">http://j.mp/lVX0HI</a> (via @<a class="aktt_username" href="http://twitter.com/DaveMarcus">DaveMarcus</a> @DaKahuna2007) [Nice.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72673664344129536">#</a></li>
<li><a rel="nofollow" href="http://j.mp/kIkz74">http://j.mp/kIkz74</a> &lt; SCADA researcher adds his thoughts to SCADA mailing list (via @<a class="aktt_username" href="http://twitter.com/dicipulus">dicipulus</a> @georgevhulme @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72676496216555520">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> Speaking at ISSA DC on 6/21 on Android security. Come listen to/&amp; or heckle me! <a rel="nofollow" href="http://www.issa-dc.org/">http://www.issa-dc.org/</a> (via @<a class="aktt_username" href="http://twitter.com/jack_mannino">jack_mannino</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72676972605616128">#</a></li>
<li>BLOGGED: Where You Want to Be This Week for 2011-05-23 <a rel="nofollow" href="http://bit.ly/jSXk0s">http://bit.ly/jSXk0s</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72712285721870336">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> Remotely find outdated insecure Acrobat Reader installations w/ AcroScrub: <a rel="nofollow" href="http://j.mp/iitd1q">http://j.mp/iitd1q</a> (via @<a class="aktt_username" href="http://twitter.com/lennyzeltser">lennyzeltser</a> @sans_isc) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72722026846093312">#</a></li>
<li>Fed Agencies Uncertain How to Respond to &#8216;Cloud 1st&#8217; <a rel="nofollow" href="http://j.mp/iDJA3p">http://j.mp/iDJA3p</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) [Guess what their big concern is.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72725860997808129">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23JOB">JOB</a> Where Are the Ethics in Hacking? <a rel="nofollow" href="http://j.mp/lb5oo3">http://j.mp/lb5oo3</a> (via @<a class="aktt_username" href="http://twitter.com/GovInfoSecurity">GovInfoSecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72727811172990977">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> Intro to Programming Class IS HAPPENING! by Alli: <a rel="nofollow" href="http://j.mp/lWd19i">http://j.mp/lWd19i</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23hacdc">hacdc</a> (via @<a class="aktt_username" href="http://twitter.com/hacdc">hacdc</a>) [Python!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72729414227607553">#</a></li>
<li>Wouldn&#8217;t it be ironic if Sony hacks originated from corp machine compromised by their old CD rootkit? (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72730717666291712">#</a></li>
<li>Week 20 In Review <a rel="nofollow" href="http://bit.ly/ivvj2L">http://bit.ly/ivvj2L</a> [As always an awesome summary of last week.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72763533087084544">#</a></li>
<li>NSA&#8217;s Guide to Securing Your PC <a rel="nofollow" href="http://bit.ly/m2hy6g">http://bit.ly/m2hy6g</a> [More goodness from the NSA.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72763866722992129">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23CON">CON</a> We&#8217;ve been radio silent 4 while, but stay tuned. We hope to have very exciting announcement in next few weeks! (via @<a class="aktt_username" href="http://twitter.com/AppSecDC">AppSecDC</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72764459189420033">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> Reminder .. if not on mailing list, #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23CapSecDC">CapSecDC</a> is THIS Wed. Come meet us at Stetsons after work! (via @<a class="aktt_username" href="http://twitter.com/capsecdc">capsecdc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72764696255660032">#</a></li>
<li>Obama&#8217;s car gets stuck at US Embassy <a rel="nofollow" href="http://youtu.be/yo5zH0Il8B0">http://youtu.be/yo5zH0Il8B0</a> (via @<a class="aktt_username" href="http://twitter.com/oneguynick">oneguynick</a> @danphilpott) [Lol.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72768100055003136">#</a></li>
<li>Finished reviewing cal for this week. ISSA/CapSecDC on Wed &amp; CharmSec on Thur. <a rel="nofollow" href="http://bit.ly/nispfullcal">http://bit.ly/nispfullcal</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72787524040400896">#</a></li>
<li>We officially have no more ethics <a rel="nofollow" href="http://bit.ly/m4bb1P">http://bit.ly/m4bb1P</a> (via @<a class="aktt_username" href="http://twitter.com/wimremes">wimremes</a> @jack_daniel) [Lol, nice one.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72797024763912193">#</a></li>
<li>Hey, @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a> put out our weekly summary of meetups this morning. Check it out over at <a rel="nofollow" href="http://bit.ly/jSXk0s">http://bit.ly/jSXk0s</a> . <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72850933264031744">#</a></li>
<li>Researchers find irreparable flaw in popular CAPTCHAs <a rel="nofollow" href="http://j.mp/kq7u2p">http://j.mp/kq7u2p</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72978945510875136">#</a></li>
<li>LinkedIn cookie vulnerable, claims researcher <a rel="nofollow" href="http://j.mp/kcCiLG">http://j.mp/kcCiLG</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/72990935482511360">#</a></li>
<li>Exploited Hotmail bug stole email without warning <a rel="nofollow" href="http://j.mp/iDyHqB">http://j.mp/iDyHqB</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) [To the cloud.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73124855817572353">#</a></li>
<li>ElcomSoft Breaks iPhone Encryption, Offers Forensic Access to File Sys Dumps <a rel="nofollow" href="http://j.mp/l0CBDm">http://j.mp/l0CBDm</a> (via @<a class="aktt_username" href="http://twitter.com/WeldPond">WeldPond</a> @manicode) [Whoa!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73130536171880448">#</a></li>
<li>Sony&#8217;s data breach costs likely to scream higher <a rel="nofollow" href="http://j.mp/jFyvzT">http://j.mp/jFyvzT</a> via @<a class="aktt_username" href="http://twitter.com/ZDNet">ZDNet</a> (via @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) [Agreed.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73202472096763904">#</a></li>
<li>Twitter has acquired TweetDeck 4 more than $40 million <a rel="nofollow" href="http://j.mp/mSL9UF">http://j.mp/mSL9UF</a> (via @<a class="aktt_username" href="http://twitter.com/mpbailey1911">mpbailey1911</a>) [Thought alrdy happened.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73203575894974465">#</a></li>
<li>LinkedIn slashes cookie lifespan after research exposes security flaws <a rel="nofollow" href="http://j.mp/iSLjPG">http://j.mp/iSLjPG</a> [Not bad reaction time.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73204148119666688">#</a></li>
<li>Freebie Blackhole exploit kit appears on file-sharing websites <a rel="nofollow" href="http://j.mp/kS4o5A">http://j.mp/kS4o5A</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73207035956695040">#</a></li>
<li>Kaspersky: Android is the new Windows <a rel="nofollow" href="http://j.mp/k5RoBZ">http://j.mp/k5RoBZ</a> [it's not meant as a compliment; ..] (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73340405898416128">#</a></li>
<li>ENISA Secure Software Engineering Initiatives <a rel="nofollow" href="http://j.mp/jhMmNV">http://j.mp/jhMmNV</a> (via @<a class="aktt_username" href="http://twitter.com/ebellis">ebellis</a> @dallendoug) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73346247154610176">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> Reminder_1 &#8211; Please RSVP for June 8th mtg: <a rel="nofollow" href="http://j.mp/iXqlZd">http://j.mp/iXqlZd</a> (via @<a class="aktt_username" href="http://twitter.com/falconsview">falconsview</a> @OWASPNoVA) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73578306569641984">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> Reminder_2: Please join/move to the new Google Group <a rel="nofollow" href="http://j.mp/kQahPv">http://j.mp/kQahPv</a> (via @<a class="aktt_username" href="http://twitter.com/falconsview">falconsview</a> @OWASPNoVA) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73578484651409408">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> er, correct re Reminder_1 &#8211; June *9th* mtg&#8230; <a rel="nofollow" href="http://j.mp/iXqlZd">http://j.mp/iXqlZd</a> (via @<a class="aktt_username" href="http://twitter.com/falconsview">falconsview</a> @OWASPNoVA) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73579048592347136">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> Register for OWASP NoVa <a rel="nofollow" href="http://bit.ly/j1xbmC">http://bit.ly/j1xbmC</a> and for my ISSA DC talk in June <a rel="nofollow" href="http://bit.ly/kkIuIL">http://bit.ly/kkIuIL</a> (via @<a class="aktt_username" href="http://twitter.com/jack_mannino">jack_mannino</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73579854129401856">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> Dradis Framework 2.7.1 released! <a rel="nofollow" href="http://j.mp/k4qMyR">http://j.mp/k4qMyR</a> (via @<a class="aktt_username" href="http://twitter.com/cktricky">cktricky</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73583316921626624">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> Introducing msfvenom  <a rel="nofollow" href="http://j.mp/mTybay">http://j.mp/mTybay</a> (replaces msfpayload/msfencode) (via @<a class="aktt_username" href="http://twitter.com/hdmoore">hdmoore</a> @msfbannedit @<a class="aktt_username" href="http://twitter.com/iFail">iFail</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73584197746434048">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23EDU">EDU</a> Metasploit Unleashed By Offensive Security <a rel="nofollow" href="http://j.mp/jByuRR">http://j.mp/jByuRR</a> (via @<a class="aktt_username" href="http://twitter.com/sec385con">sec385con</a> @DaKahuna2007) [Free .. as in beer.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73585989087531008">#</a></li>
<li>Apple advisory on &#8220;MacDefender&#8221; malware <a rel="nofollow" href="http://j.mp/k11Rxd">http://j.mp/k11Rxd</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73587294132641792">#</a></li>
<li>Site for learning about FedRAMP/cloud computing FISMA compliance: <a rel="nofollow" href="http://www.fedramp.net/">http://www.fedramp.net/</a> (via @<a class="aktt_username" href="http://twitter.com/fedrampgov">fedrampgov</a>) (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73588865956446208">#</a></li>
<li>Apple admits scareware problem, at last <a rel="nofollow" href="http://j.mp/jxe5aQ">http://j.mp/jxe5aQ</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) [Finally.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73716090898890752">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> Redline&#8211;@Mandiant&#8217;s new free tool 4 analyzing memory of infected Win sys <a rel="nofollow" href="http://j.mp/l4XEsk">http://j.mp/l4XEsk</a> (via @<a class="aktt_username" href="http://twitter.com/lennyzeltser">lennyzeltser</a> @dallendoug) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73725196409905152">#</a></li>
<li>Great looking talk. Quick recap: <a rel="nofollow" href="http://j.mp/lGtGZy">http://j.mp/lGtGZy</a> @<a class="aktt_username" href="http://twitter.com/i0n1c">i0n1c</a>: Talk about the iPhone Data Protection (via @<a class="aktt_username" href="http://twitter.com/schuetzdj">schuetzdj</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73795792795742208">#</a></li>
<li>How @<a class="aktt_username" href="http://twitter.com/jonoberheide">jonoberheide</a> was able 2 silently push Android malware w/ any perms 2 any phone <a rel="nofollow" href="http://j.mp/kpMYSh">http://j.mp/kpMYSh</a> (via @<a class="aktt_username" href="http://twitter.com/dugsong">dugsong</a> @dallendoug) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73798066209173504">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> Released w3af-1.0-stable! Kudos to all contributors 4 our 1st stable release! <a rel="nofollow" href="http://j.mp/l0YrzI">http://j.mp/l0YrzI</a> (via @<a class="aktt_username" href="http://twitter.com/iFail">iFail</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/73799553056382976">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-26+http%3A%2F%2Fj.mp%2Fqbdr7G" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/05/26/grecs-weekly-infosec-ramblings-for-2011-05-26/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-26" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/05/26/grecs-weekly-infosec-ramblings-for-2011-05-26/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2011-05-19</title>
		<link>http://www.novainfosecportal.com/2011/05/19/grecs-weekly-infosec-ramblings-for-2011-05-19/</link>
		<comments>http://www.novainfosecportal.com/2011/05/19/grecs-weekly-infosec-ramblings-for-2011-05-19/#comments</comments>
		<pubDate>Fri, 20 May 2011 01:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2011/05/19/grecs-weekly-infosec-ramblings-for-2011-05-19/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @grecs Twitter account. There seemed to be a few meetups this past week. Here&#8217;s one. Did you get to attend any others? Unallocated Flex Your Rights Night is 5/17 # There’s also some upcoming meetups for those of you who are interested. Charmsec 36: Never been? It&#8217;s 20 or so security geeks chatting on security news, hacks,&#8230;  # # OWASPNoVA: Please RSVP for the June chapter mtg. # If you don&#8217;t have time to make it to any of the weekly security meetups, why not try attending this upcoming conference? And be sure to check out our event calendar for even more upcoming meetups and conferences. NIST NSTIC Workshop # For those of you that don’t know, we have some pretty awesome infosec bloggers in the local area. [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-19+http%3A%2F%2Fj.mp%2FmkqgEb" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/05/19/grecs-weekly-infosec-ramblings-for-2011-05-19/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-19" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><img class="alignright size-medium wp-image-5282" title="Rambling Stream" src="http://www.novainfosecportal.com/wp-content/uploads/2011/05/ramblingstream-200x300.jpg" alt="Picture of a Rambling Stream" width="200" height="300" />If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="/events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="/events/nova-meetups/#events-in-dc">DC</a>-, and <a href="/events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>There seemed to be a few <strong>meetups this past week</strong>. Here&#8217;s one. Did you get to attend any others?</p>
<ul>
<li><a href="http://j.mp/kKdYuh">Unallocated Flex Your Rights Night is 5/17</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69624568733634560">#</a></li>
</ul>
<p>There’s also some <strong>upcoming meetups</strong> for those of you who are interested.</p>
<ul>
<li><a href="http://charmsec.org">Charmsec 36</a>: Never been? It&#8217;s 20 or so security geeks chatting on security news, hacks,&#8230;  <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70281691335376896">#</a> <a href="http://twitter.com/grecs/statuses/71208636143247360">#</a></li>
<li><a href="http://j.mp/iXqlZd">OWASPNoVA</a>: Please RSVP for the June chapter mtg. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71000460173127682">#</a></li>
</ul>
<p>If you don&#8217;t have time to make it to any of the weekly security meetups, why not try attending this <strong>upcoming conference</strong>? And be sure to check out <a href="/full-calendar/">our event calendar</a> for even more upcoming meetups and conferences.</p>
<ul>
<li><a href="http://1.usa.gov/jOysjW">NIST NSTIC Workshop</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68846634729091073">#</a></li>
</ul>
<p>For those of you that don’t know, we have some pretty awesome<strong> infosec bloggers in the local area</strong>. Here are some of my selections&#8230;</p>
<ul>
<li><a href="http://bit.ly/jtKe1i">Dumping Hashes on Win2k8 R2 x64 with Metasploit</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70152712708296705">#</a></li>
<li><a href="http://j.mp/kOyQH9">Automated Coverage Validation in Special Scenarios</a><a rel="nofollow" href="http://j.mp/kOyQH9"></a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70164083818758144">#</a></li>
</ul>
<p>In case you missed them, here were some of <strong>our blog posts</strong> from this week.</p>
<ul>
<li><a href="http://bit.ly/iPThUL">NISPod 001: Length vs Width &amp; the Relative Merits of Both</a><a rel="nofollow" href="http://bit.ly/iPThUL"></a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69509308324380672">#</a></li>
<li><a href="http://bit.ly/mzbmnM">Where You Want to Be This Week for 2011-05-16</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70146915353890817">#</a></li>
</ul>
<p>And in closing, you can also keep yourself busy with these [unorganized again] interesting <strong>newsbites</strong>:</p>
<ul>
<li>White House releases cybersecurity legislative proposal fact sheet: <a rel="nofollow" href="http://j.mp/iOnHuP">http://j.mp/iOnHuP</a> (via @<a class="aktt_username" href="http://twitter.com/EnzOnInfoSec">EnzOnInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68813928045608961">#</a></li>
<li>Twitter for Mac upd to 2.1. <a rel="nofollow" href="http://j.mp/lyIxaq">http://j.mp/lyIxaq</a> (via @<a class="aktt_username" href="http://twitter.com/da_BiGKahuna">da_BiGKahuna</a> @briankrebs) [Bout time they had multi-column support.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68814834254348288">#</a></li>
<li>WH Unveils Cybersec Legislative Plan: DHS Power Grows, No Senate-OKd Cyberczar, Nt&#8217;l Breach Notice Law. <a rel="nofollow" href="http://j.mp/ltQbRQ">http://j.mp/ltQbRQ</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68815312832831489">#</a></li>
<li>BackTrack 5 &#8211; After initial download storm, direct downloads now enabled. <a rel="nofollow" href="http://j.mp/kfzVtv">http://j.mp/kfzVtv</a> (via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68816909088468993">#</a></li>
<li>NIST rel draft SP 800-146 Cloud Computing Synopsis &amp; Recommendations, cmts due 6/13 <a rel="nofollow" href="http://1.usa.gov/lZKaSQ">http://1.usa.gov/lZKaSQ</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68845860099858434">#</a></li>
<li>Five Guys is ridiculously good food. They should buy McDonald&#8217;s &amp; get it over with.  #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23cuzyougottahavedreams">cuzyougottahavedreams</a> (via @<a class="aktt_username" href="http://twitter.com/Shpantzer">Shpantzer</a>) [+1] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68847347777544192">#</a></li>
<li>Skype for Mac 0day was XSS?!? *Facepalm* <a rel="nofollow" href="http://bit.ly/jKEYUA">http://bit.ly/jKEYUA</a> (via @<a class="aktt_username" href="http://twitter.com/dinodaizovi">dinodaizovi</a> @Wh1t3Rabbit) [Pics showing it in action.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68847982346379267">#</a></li>
<li>Little new in Obama cybersecurity proposal  <a rel="nofollow" href="http://j.mp/j1hNG5">http://j.mp/j1hNG5</a> (via @<a class="aktt_username" href="http://twitter.com/jaivijayan">jaivijayan</a> @mschafer) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69118763152326656">#</a></li>
<li>One thumb up for Facebook security improvements <a rel="nofollow" href="http://j.mp/jHNOXd">http://j.mp/jHNOXd</a> [Another step in right direction.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69120976100655105">#</a></li>
<li>What New WH Cybersecurity Proposal Means For IT Security Industry, Businesses, &amp; Consum&#8230; <a rel="nofollow" href="http://j.mp/kJnt9c">http://j.mp/kJnt9c</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69122546510999552">#</a></li>
<li>Hackers turn Cisco phones into remote bugging devices <a rel="nofollow" href="http://bit.ly/jr6FXD">http://bit.ly/jr6FXD</a> [+1 for default settings. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69124909233733632">#</a></li>
<li>Sony yet to fully secure its networks <a rel="nofollow" href="http://j.mp/k7ozkK">http://j.mp/k7ozkK</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) [Yeah, pretty hard to do backwards.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69332708244979712">#</a></li>
<li>PlayStation Network Hack Launched from Amazon EC2 <a rel="nofollow" href="http://j.mp/lKrhCQ">http://j.mp/lKrhCQ</a> [Interesting. Will Sony sue Amazon?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69443270173929472">#</a></li>
<li>Password Managers, the good and the ugly: <a rel="nofollow" href="http://j.mp/mvNux5">http://j.mp/mvNux5</a> (via @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) [Very nice writeup.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69551191092240384">#</a></li>
<li>Backtrack 5 &#8211; Full Disk Encryption How-to Published <a rel="nofollow" href="http://j.mp/ingsin">http://j.mp/ingsin</a> (via @<a class="aktt_username" href="http://twitter.com/lizborden">lizborden</a> @jaysonstreet) [Nice.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69783623934545921">#</a></li>
<li>At least I&#8217;m also on show with good company. I&#8217;m looking at you @<a class="aktt_username" href="http://twitter.com/vincentkadmon">vincentkadmon</a>!  <a rel="nofollow" href="http://twitpic.com/4xs0pb">http://twitpic.com/4xs0pb</a> (via @<a class="aktt_username" href="http://twitter.com/haxorthematrix">haxorthematrix</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69784743079710720">#</a></li>
<li>Fingerprinting author of Zeus <a rel="nofollow" href="http://j.mp/kukeJy">http://j.mp/kukeJy</a> &#8211; think he/she is a native speaker of English? (via @<a class="aktt_username" href="http://twitter.com/briankrebs">briankrebs</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69785349664157696">#</a></li>
<li>Report fr @<a class="aktt_username" href="http://twitter.com/TheHackersNews">TheHackersNews</a> claims US DoD/NSA Hacked <a rel="nofollow" href="http://j.mp/lqiwyf">http://j.mp/lqiwyf</a> (via @<a class="aktt_username" href="http://twitter.com/mikkohypponen">mikkohypponen</a> @DaKahuna2007) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69808978556760064">#</a></li>
<li>Here&#8217;s 12s clip of Armitage on Breaking In. <a rel="nofollow" href="http://j.mp/jvxSD8">http://j.mp/jvxSD8</a> (via @<a class="aktt_username" href="http://twitter.com/armitagehacker">armitagehacker</a> @mubix) [Nice, Congratz!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69813402884780032">#</a></li>
<li>Outstanding primer on latest vs of TDSS/TDL rootkit, TDL4, which infects 64-bit.. <a rel="nofollow" href="http://j.mp/m5TFXP">http://j.mp/m5TFXP</a> (via @<a class="aktt_username" href="http://twitter.com/briankrebs">briankrebs</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69814186456256512">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> killerbee: Framework &amp; tools 4 exploiting ZigBee/IEEE 802.15.4 networks <a rel="nofollow" href="http://j.mp/iM1dU0">http://j.mp/iM1dU0</a> (via @<a class="aktt_username" href="http://twitter.com/stalkr_">stalkr_</a> @mubix) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69822920309997569">#</a></li>
<li>Dropbox Lied to Users a/b Data Security <a rel="nofollow" href="http://j.mp/jz8y6V">http://j.mp/jz8y6V</a> (via .. @<a class="aktt_username" href="http://twitter.com/endrazine">endrazine</a> @jaysonstreet) [This really irks me.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69826156735635456">#</a></li>
<li>The Offline Social Network (YouTube) <a rel="nofollow" href="http://j.mp/iW8nRk">http://j.mp/iW8nRk</a> (via @<a class="aktt_username" href="http://twitter.com/ksignal9">ksignal9</a>) [Pretty funny.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69866005576421376">#</a></li>
<li>Hackers used fake info 2 reg server on EC2 cloud service &amp; attack PSN. <a rel="nofollow" href="http://j.mp/kf6x4g">http://j.mp/kf6x4g</a> (via @<a class="aktt_username" href="http://twitter.com/stevewerby">stevewerby</a> @angelinaward) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69885407533342720">#</a></li>
<li>Anyone out there having probs buying/updating stuff from iTunes/App Store? Recently been getting billing addy errors. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/69905749400231936">#</a></li>
<li>Something old is new again: Mac RATs, CrimePacks, Sunspots and Zeus leaks <a rel="nofollow" href="http://j.mp/jG13HA">http://j.mp/jG13HA</a> (via @<a class="aktt_username" href="http://twitter.com/briankrebs">briankrebs</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70208899394961408">#</a></li>
<li>Evil flash cookies easier to delete with new Adobe player <a rel="nofollow" href="http://j.mp/jOnKp2">http://j.mp/jOnKp2</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) [Yeah!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70209867717148673">#</a></li>
<li>Proposed CA Law Would Require Social Networks Private by Default <a rel="nofollow" href="http://j.mp/k3tspy">http://j.mp/k3tspy</a> (via @<a class="aktt_username" href="http://twitter.com/jasonmoliver">jasonmoliver</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70211068097593344">#</a></li>
<li>Week 19 In Review – 2011 <a rel="nofollow" href="http://bit.ly/jBix2x">http://bit.ly/jBix2x</a> [Good read as always.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70327854788902912">#</a></li>
<li>10 Facebook settings to check right now <a rel="nofollow" href="http://j.mp/l8vCaV">http://j.mp/l8vCaV</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) [Notes 4 my upcoming book on securing FB. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70464049208492032">#</a></li>
<li>WH sets global cybersec strategy policy that makes it clear that this is an international effort. <a rel="nofollow" href="http://j.mp/jEqeAZ">http://j.mp/jEqeAZ</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70470273475952640">#</a></li>
<li>Star-Studded White House Unveiling of Int&#8217;l Cybersecurity Strategy. <a rel="nofollow" href="http://j.mp/kCh7b9">http://j.mp/kCh7b9</a> [More on this.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70471062420336640">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23IsItJustMe">IsItJustMe</a> Whenever U read Mother Goose Nursery Rhymes, next line you&#8217;re thinking about is always old Dice Clay version. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70491121247203329">#</a></li>
<li>Quick Test: Little Boy Blue; ___ ___ ___ ___. #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23diceclay">diceclay</a> #isitjustme <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70491468405538816">#</a></li>
<li>Latest WHID Entries (@wascwhid) &#8211; <a rel="nofollow" href="http://bit.ly/lU9QzW">http://bit.ly/lU9QzW</a> (via @<a class="aktt_username" href="http://twitter.com/ryancbarnett">ryancbarnett</a> @manicode) [Good ref.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70589060636352512">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23JOB">JOB</a> DHS posted some interesting new cybersec jobs, from analysts to directorships <a rel="nofollow" href="http://j.mp/c3To6V">http://j.mp/c3To6V</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70591380984037376">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> OWASP ESAPI 2.0GA released <a rel="nofollow" href="http://j.mp/j0F7uo">http://j.mp/j0F7uo</a> via #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23OWASP">OWASP</a> (via @<a class="aktt_username" href="http://twitter.com/endrazine">endrazine</a> @danphilpott) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70591481483767808">#</a></li>
<li>PC emulator in JS. U can run linux on it, right in your browser. <a rel="nofollow" href="http://ljv.me/4Z">http://ljv.me/4Z</a> (via @<a class="aktt_username" href="http://twitter.com/carnal0wnage">carnal0wnage</a>) [Can it run msf tho?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70597977814732800">#</a></li>
<li>MS&#8217; security report shows Win7 is safer <a rel="nofollow" href="http://j.mp/iQaQeS">http://j.mp/iQaQeS</a> [safer than what is better Q] (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [Looks like XP.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70600031505354752">#</a></li>
<li>Well, good. @<a class="aktt_username" href="http://twitter.com/kriggins">kriggins</a> now has @<a class="aktt_username" href="http://twitter.com/securitytwits">securitytwits</a>. (via @<a class="aktt_username" href="http://twitter.com/quine">quine</a>) [@quine tx 4 your efforts.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70600397030559745">#</a></li>
<li>DoD issued Instruction 8520.03 Identity Authentication for Info Systems <a rel="nofollow" href="http://j.mp/lcvtqa">http://j.mp/lcvtqa</a> (PDF) (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70653113127813120">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23CON">CON</a> Follow the MD Cyber Challenge and Conference (@MDC3_2011)  <a rel="nofollow" href="http://j.mp/iBzHiI">http://j.mp/iBzHiI</a> (via @<a class="aktt_username" href="http://twitter.com/EnzOnInfoSec">EnzOnInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70656373146390528">#</a></li>
<li>Journo was arrested, says Qld cop <a rel="nofollow" href="http://j.mp/jVomeh">http://j.mp/jVomeh</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70816788073558016">#</a></li>
<li>RT @<a class="aktt_username" href="http://twitter.com/SaveBreakingIn">SaveBreakingIn</a>: @<a class="aktt_username" href="http://twitter.com/AlyssaMilano">AlyssaMilano</a>, @<a class="aktt_username" href="http://twitter.com/LaurenConrad">LaurenConrad</a>, @<a class="aktt_username" href="http://twitter.com/MichaelIanBlack">MichaelIanBlack</a> don’t want to see us go! #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23SaveBreakingIn">SaveBreakingIn</a> (via @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70833878583091200">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> OpenDLP 0.2.6 rel w/ pass-the-hash support. Tx @<a class="aktt_username" href="http://twitter.com/steponequit">steponequit</a>! <a rel="nofollow" href="http://j.mp/k7HUWF">http://j.mp/k7HUWF</a> (via @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70834378309251075">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23EDU">EDU</a> Wi-Fi Challenge 3 Posted! <a rel="nofollow" href="http://j.mp/kQUwaH">http://j.mp/kQUwaH</a> Prize: $50 Gift from Amazon! (via @<a class="aktt_username" href="http://twitter.com/digininja">digininja</a> @DaKahuna2007) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70846909576781824">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23JOB">JOB</a> Information Security Careers Cheatsheet <a rel="nofollow" href="http://j.mp/kkNqJ3">http://j.mp/kkNqJ3</a> (via @<a class="aktt_username" href="http://twitter.com/espreto">espreto</a> @securitytwits) [Nice!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70926872158015488">#</a></li>
<li>Looking for additional wiki contributions for the OWASP Mobile Security Project.  <a rel="nofollow" href="http://j.mp/m5df5X">http://j.mp/m5df5X</a> (via @<a class="aktt_username" href="http://twitter.com/jack_mannino">jack_mannino</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70927689057447936">#</a></li>
<li>When in-house rivalries, bureaucracies impede security monitoring: <a rel="nofollow" href="http://j.mp/muOw5a">http://j.mp/muOw5a</a> [So true.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70966511690465281">#</a></li>
<li>Sony&#8217;s PlayStation Network hacked again.. <a rel="nofollow" href="http://j.mp/jpnUpC">http://j.mp/jpnUpC</a> (via @<a class="aktt_username" href="http://twitter.com/adrianweckler">adrianweckler</a> @jaysonstreet) [Man, tough month.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/70976619455586304">#</a></li>
<li>Top Cybersecurity Official Resigns &#8211; Wednesday, May 18, 2011 <a rel="nofollow" href="http://j.mp/j6YWJ9">http://j.mp/j6YWJ9</a> (via @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) [Mmm? Odd?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71033443680665600">#</a></li>
<li>Browse/search security conf spkrs <a rel="nofollow" href="http://cc.thinkst.com/">http://cc.thinkst.com/</a> Speaker timelines &amp; links .. (via @<a class="aktt_username" href="http://twitter.com/Beaker">Beaker</a> @haroonmeer @<a class="aktt_username" href="http://twitter.com/schuetzdj">schuetzdj</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71035342525964288">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> EMET 2.1 published <a rel="nofollow" href="http://j.mp/l64L43">http://j.mp/l64L43</a> (via @<a class="aktt_username" href="http://twitter.com/fjserna">fjserna</a> @mubix) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71038214969896961">#</a></li>
<li>Cool to see drive-by downloads for Mac OS X <a rel="nofollow" href="http://bit.ly/iq0wlZ">http://bit.ly/iq0wlZ</a> who shared this pic <a rel="nofollow" href="http://j.mp/jBvCOZ">http://j.mp/jBvCOZ</a> (via @<a class="aktt_username" href="http://twitter.com/taosecurity">taosecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71204382049447936">#</a></li>
<li>SCADA hack talk canceled after DHS/Siemens complain <a rel="nofollow" href="http://j.mp/jyhgkj">http://j.mp/jyhgkj</a> (via @<a class="aktt_username" href="http://twitter.com/elinormills">elinormills</a> @WeldPond @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71207446969987072">#</a></li>
<li>.@twitter continues to disappoint with another pointless dick move. <a rel="nofollow" href="http://j.mp/l6zsrZ">http://j.mp/l6zsrZ</a> (via @<a class="aktt_username" href="http://twitter.com/samerfarha">samerfarha</a> @dallendoug) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71212679750098944">#</a></li>
<li>Apple App Store apps are often old, vulnerable versions <a rel="nofollow" href="http://j.mp/k2d0rO">http://j.mp/k2d0rO</a> [Downside to app stores.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71230230135709698">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> Release of Gorilla &#8211; A Security Tool 4 Apple&#8217;s iOS <a rel="nofollow" href="http://j.mp/kDaUin">http://j.mp/kDaUin</a> (via @<a class="aktt_username" href="http://twitter.com/tobiklein">tobiklein</a> @alexhutton) [Required jailbrk.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71231698154692608">#</a></li>
<li>Reitinger quits DHS cybersecurity post <a rel="nofollow" href="http://j.mp/igl4Go">http://j.mp/igl4Go</a> [In case U missed.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71292191837913088">#</a></li>
<li>New AWS Security Whitepaper <a rel="nofollow" href="http://j.mp/kiKWWr">http://j.mp/kiKWWr</a> plus a bonus on risk and compliance (via @<a class="aktt_username" href="http://twitter.com/justin_foster">justin_foster</a> @danphilpott) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71296595630628864">#</a></li>
<li>US CDC has guide on surviving zombie apocalypse <a rel="nofollow" href="http://j.mp/iI51E9">http://j.mp/iI51E9</a> (via @<a class="aktt_username" href="http://twitter.com/LO_TEK">LO_TEK</a> @danphilpott) [What a sense of humor.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71297217268432896">#</a></li>
<li>Consulting 4 Profit: Building Biz on Sec Assessments <a rel="nofollow" href="http://j.mp/m0h797">http://j.mp/m0h797</a> (via  @<a class="aktt_username" href="http://twitter.com/iFail">iFail</a>) [Wait, when did @<a class="aktt_username" href="http://twitter.com/jack_daniel">jack_daniel</a> goto @<a class="aktt_username" href="http://twitter.com/rapid7">rapid7</a>?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71298689246838784">#</a></li>
<li>Schmidt: Google will let you erase yourself from it <a rel="nofollow" href="http://j.mp/jr90hM">http://j.mp/jr90hM</a> [Let's see how hard they mk it.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/71299441231007744">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-19+http%3A%2F%2Fj.mp%2FmkqgEb" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/05/19/grecs-weekly-infosec-ramblings-for-2011-05-19/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-19" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/05/19/grecs-weekly-infosec-ramblings-for-2011-05-19/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2011-05-12</title>
		<link>http://www.novainfosecportal.com/2011/05/12/grecs-weekly-infosec-ramblings-for-2011-05-12/</link>
		<comments>http://www.novainfosecportal.com/2011/05/12/grecs-weekly-infosec-ramblings-for-2011-05-12/#comments</comments>
		<pubDate>Fri, 13 May 2011 01:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">https://www.novainfosecportal.com/2011/05/12/grecs-weekly-infosec-ramblings-for-2011-05-12/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @grecs Twitter account. There seemed to be quite a few meetups this past week. Did you get to attend any of them? DC 2600 Meeting: It&#8217;s today! Ham Radio Night: Learn about schematic diagrams &#38; building electronic circuits. # There’s also some upcoming meetups for those of you who are interested. Official Cloud Security Alliance&#8217;s DC Chapter:  It&#8217;s now official. Can&#8217;t wait 4 future events. # Secure Use of Cloud Computing: ISSA DC event on May 17, 2011 at 6:30 PM If you don&#8217;t have time to make it to any of the weekly security meetups, why not try attending this upcoming conference? And be sure to check out our event calendar for even more upcoming meetups and conferences. ISACA World Congress: Coming up on 6/27-29 in DC [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-12+http%3A%2F%2Fj.mp%2Foxdo5W" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/05/12/grecs-weekly-infosec-ramblings-for-2011-05-12/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-12" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><img class="alignright size-medium wp-image-5282" title="Rambling Stream" src="http://www.novainfosecportal.com/wp-content/uploads/2011/05/ramblingstream-200x300.jpg" alt="Picture of a Rambling Stream" width="200" height="300" />If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="/events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="/events/nova-meetups/#events-in-dc">DC</a>-, and <a href="/events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>There seemed to be quite a few <strong>meetups this past week</strong>. Did you get to attend any of them?</p>
<ul>
<li><a href="http://twitter.com/grecs/statuses/66582451455131648">DC 2600 Meeting</a>: It&#8217;s today!</li>
<li><a href="http://j.mp/iQQiaO">Ham Radio Night</a>: Learn about schematic diagrams &amp; building electronic circuits. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68109575995400192">#</a></li>
</ul>
<p>There’s also some <strong>upcoming meetups</strong> for those of you who are interested.</p>
<ul>
<li><a href="http://www.csadc.us/">Official Cloud Security Alliance&#8217;s DC Chapter</a>:  It&#8217;s now official. Can&#8217;t wait 4 future events. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66320176303456256">#</a></li>
<li><a href="http://twitter.com/grecs/statuses/66646988665532416">Secure Use of Cloud Computing</a>: ISSA DC event on May 17, 2011 at 6:30 PM</li>
</ul>
<p>If you don&#8217;t have time to make it to any of the weekly security meetups, why not try attending this <strong>upcoming conference</strong>? And be sure to check out <a href="/full-calendar/">our event calendar</a> for even more upcoming meetups and conferences.</p>
<ul>
<li><a href="http://twitter.com/grecs/statuses/67914828479602689">ISACA World Congress</a>: Coming up on 6/27-29 in DC</li>
</ul>
<p>For those of you that don’t know, we have some pretty awesome <strong>infosec bloggers in the local area</strong>. Here are some of my picks&#8230;</p>
<ul>
<li><a href="http://bit.ly/lYdQYX">Metasploit Unleashed at Reverse Space (links to each week)</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66316874643812352">#</a></li>
<li><a href="http://bit.ly/iygyc9">Recap of framework changes; Message to readers</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67066323754172417">#</a></li>
<li><a href="http://bit.ly/l8y1zQ">Buby Script Basics Part 1</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67069744624320513">#</a></li>
<li><a href="http://bit.ly/iQ8S7F">Buby Script Basics Part 2</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67404601686622208">#</a></li>
<li><a href="http://bit.ly/kLguoO">A Cloud of Suspicion…</a>: Interesting .. OTF cloud data encryption. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68276981011197952">#</a></li>
</ul>
<p>In case you missed them, here were some of <strong>our blog posts</strong> from this week. As you can tell we were a little bit more busy than usual.</p>
<ul>
<li><a href="http://bit.ly/lVCEMo">Grecs’ Weekly Infosec Ramblings for 2011-05-05</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66320020971585536">#</a></li>
<li><a href="http://bit.ly/ktEgPR">Top 3 NoVA Infosec Blog Posts of the Week</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66503916916981760">#</a></li>
<li><a href="http://bit.ly/lRcg0E">Mom’s Guide to the NSA’s Home Security Guidelines</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67271097715920896">#</a></li>
<li><a href="http://bit.ly/jZNrsT">Where You Want to Be This Week for 2011-05-09</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67590096043511808">#</a></li>
<li><a href="http://bit.ly/mklAUW">Skype 0-Day – What about 2.8?</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67790260666515456">#</a></li>
<li><a href="http://bit.ly/kc9vvy">NovaHackers May Videos</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68510283999621120">#</a></li>
</ul>
<p>And in closing, you can also keep yourself busy with these interesting <strong>newsbites</strong> that I failed to organize this week.</p>
<ul>
<li>New Incident Response Methodology Cheat Sheet <a rel="nofollow" href="http://j.mp/mkWqDq">http://j.mp/mkWqDq</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66268186361856002">#</a></li>
<li>It&#8217;s like firesheep of driftnet on Android phone. Piik at what people R doing on wifi near U. <a rel="nofollow" href="http://piik.co/">http://piik.co/</a> (via @<a class="aktt_username" href="http://twitter.com/surbo">surbo</a> @jaysonstreet) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66269158052069377">#</a></li>
<li>Breaking Down Probable LastPass Breach <a rel="nofollow" href="http://j.mp/m4myvd">http://j.mp/m4myvd</a> (via @<a class="aktt_username" href="http://twitter.com/quine">quine</a>) [Should b good if have hard 2 bruteforce pwd.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66312786480857090">#</a></li>
<li>Spafford .. Sony used old, unpatched Apache w/ no Firewall <a rel="nofollow" href="http://j.mp/jJCk8c">http://j.mp/jJCk8c</a> (via @<a class="aktt_username" href="http://twitter.com/EnzOnInfoSec">EnzOnInfoSec</a>) [Along w/ all other corps.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66313610338648064">#</a></li>
<li>Looking to teach monthly weekend seminars like the Metasploit Unleashed class, looking for venues. (via @<a class="aktt_username" href="http://twitter.com/vincentkadmon">vincentkadmon</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66315818371256320">#</a></li>
<li>Microsoft readying fixes for Windows, Office flaws <a rel="nofollow" href="http://j.mp/kZnIBP">http://j.mp/kZnIBP</a> [Wow, just 3 vulns.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66317323203649537">#</a></li>
<li>Tweeting when driving: converting from frustration at not moving to frustration *at* moving. (via @<a class="aktt_username" href="http://twitter.com/csoandy">csoandy</a> @schuetzdj) [So true.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66321105631182848">#</a></li>
<li>Java-based malware tries Mac-smacking cross-platform attack <a rel="nofollow" href="http://bit.ly/m6CubD">http://bit.ly/m6CubD</a> ["Write once, pwn anywhere"] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66472338165735424">#</a></li>
<li>New release of Harvester #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23tool">tool</a> &#8211; Emails,Employee names &amp; Subdomain/Hostnames finder. <a rel="nofollow" href="http://j.mp/lowDWP">http://j.mp/lowDWP</a> (via @<a class="aktt_username" href="http://twitter.com/_metalslug_">_metalslug_</a> @indi303) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66480661019631616">#</a></li>
<li>Can U imagine bunch of Al Qaeda operative sitting around w/ NIST 800-53 arguing a/b H/M/L ctrls? (via @<a class="aktt_username" href="http://twitter.com/selil">selil</a> @electricfork) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66480957242347521">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23EDU">EDU</a> List of Vuln Web Apps for learning (08/2010) <a rel="nofollow" href="http://j.mp/mGY1aB">http://j.mp/mGY1aB</a> [nice] HT to TJ from my infowar class (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66656522146545664">#</a></li>
<li><a rel="nofollow" href="http://bit.ly/jaFfVX">http://bit.ly/jaFfVX</a> (via @<a class="aktt_username" href="http://twitter.com/make1train">make1train</a> @jaysonstreet) [No way. I think I've seen him at Paneras in Merrifield (Fairfax, VA) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66657812272525312">#</a></li>
<li>Google Experimenting w/ Redesigned Search Results Page <a rel="nofollow" href="http://yhoo.it/lLD3ZC">http://yhoo.it/lLD3ZC</a> [Yep, noticed this tonight. Caught me off guard.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66713856197660673">#</a></li>
<li>Skype 4 Mac Hole Can be Used in Attack <a rel="nofollow" href="http://cnet.co/ksHWL0">http://cnet.co/ksHWL0</a> [Since new GUI sux, stayed w/ old vs. Wonder if that's vuln?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66715022390337536">#</a></li>
<li>Alert issued for OpenID attribute exchange flaw:  <a rel="nofollow" href="http://j.mp/lK6hjA">http://j.mp/lK6hjA</a> (via @<a class="aktt_username" href="http://twitter.com/EnzOnInfoSec">EnzOnInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66719226156691458">#</a></li>
<li>Thanks to @<a class="aktt_username" href="http://twitter.com/wilmutechnology">wilmutechnology</a> we&#8217;ll host #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23BSidesDE">BSidesDE</a> 11/11/11 &amp; 11/12/11 &lt; Sweet! I&#8217;ll be there (via @<a class="aktt_username" href="http://twitter.com/kickfroggy">kickfroggy</a> @bbaskin @<a class="aktt_username" href="http://twitter.com/iFail">iFail</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66720574034034688">#</a></li>
<li>Metasploit 3.7 Takes Aim at Apple iOS <a rel="nofollow" href="http://j.mp/iUgSz6">http://j.mp/iUgSz6</a> [new: iTunes backup file extraction tool] (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66851663629127680">#</a></li>
<li>Web privacy Do-Not-Track laws gain US momentum <a rel="nofollow" href="http://j.mp/liI8e6">http://j.mp/liI8e6</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66855259489845248">#</a></li>
<li>Some PERSONAL thoughts on the Sophos/Astaro deal: <a rel="nofollow" href="http://j.mp/jUfflH">http://j.mp/jUfflH</a> (via @<a class="aktt_username" href="http://twitter.com/jack_daniel">jack_daniel</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66986451941867520">#</a></li>
<li>Here is what a Mac malware attack looks like <a rel="nofollow" href="http://j.mp/mEe3rW">http://j.mp/mEe3rW</a> (via @<a class="aktt_username" href="http://twitter.com/GetCocoon">GetCocoon</a> @r0bertmart1nez @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67063246221357056">#</a></li>
<li>A list of Armitage (Metasploit GUI) videos on YouTube: <a rel="nofollow" href="http://j.mp/k69qQX">http://j.mp/k69qQX</a> (via @<a class="aktt_username" href="http://twitter.com/armitagehacker">armitagehacker</a> @DaKahuna2007) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67066123992039424">#</a></li>
<li>Happy Mothers Day to those of that persuasion who celebrate it. (via @<a class="aktt_username" href="http://twitter.com/jack_daniel">jack_daniel</a>) [+ infinity <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67222363615412224">#</a></li>
<li>Visiting Mom today? Why not lock her computer down some per some NSA recommentations. <a rel="nofollow" href="http://bit.ly/lRcg0E">http://bit.ly/lRcg0E</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67291005564620800">#</a></li>
<li>Seems like a potential #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23dropbox">dropbox</a> encrytion solution. <a rel="nofollow" href="http://j.mp/l0aeso">http://j.mp/l0aeso</a> (via @<a class="aktt_username" href="http://twitter.com/EnzOnInfoSec">EnzOnInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67292736742633473">#</a></li>
<li>Also lots of funny cmts on Mom&#8217;s Day NSA post.. Is this the year of desktop Linux? <a rel="nofollow" href="http://bit.ly/lRcg0E">http://bit.ly/lRcg0E</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67399632707264512">#</a></li>
<li>Don&#8217;t forget NoVA Hackers monthly meeting tomorrow. (via @<a class="aktt_username" href="http://twitter.com/DaKahuna2007">DaKahuna2007</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67404783107055616">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> <a rel="nofollow" href="http://j.mp/jSV8Re">http://j.mp/jSV8Re</a> Useful if U don&#8217;t want to visit link but want to see whats at end. (via @<a class="aktt_username" href="http://twitter.com/Pizza1337">Pizza1337</a> @DaKahuna2007) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67440845464412160">#</a></li>
<li>Anonymous meets its own insider threat <a rel="nofollow" href="http://j.mp/l0y6D8">http://j.mp/l0y6D8</a> (via @<a class="aktt_username" href="http://twitter.com/CSOonline">CSOonline</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67556162475798528">#</a></li>
<li>Security Pros Launch Cybersecurity Index <a rel="nofollow" href="http://j.mp/ka2Q1V">http://j.mp/ka2Q1V</a> [Not a fan of opinion-based surveys but interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67611937093074944">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NEWS">NEWS</a> Can Companies Share Security Data? New Report Says Yes <a rel="nofollow" href="http://j.mp/jZmVNl">http://j.mp/jZmVNl</a> (via @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67615801435373569">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NEWS">NEWS</a> If U use Skype on Mac better get new hotfix to address 0day. <a rel="nofollow" href="http://j.mp/mETIqg">http://j.mp/mETIqg</a> (via @<a class="aktt_username" href="http://twitter.com/shonharris">shonharris</a> @jaysonstreet) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67616519068192769">#</a></li>
<li>Best Pwd is a Sentence, says expert <a rel="nofollow" href="http://bit.ly/mhqZFv">http://bit.ly/mhqZFv</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) [A very long sentence. Good suggestions tho.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67662084413988864">#</a></li>
<li>Microsoft Security Essentials ranked 2nd last in AV-Test&#8217;s protection rating <a rel="nofollow" href="http://bit.ly/lUe78w">http://bit.ly/lUe78w</a> (via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67662681724821504">#</a></li>
<li>&#8220;Time spent on Twitter&#8221; scam spreads virally <a rel="nofollow" href="http://bit.ly/k4Jt5B">http://bit.ly/k4Jt5B</a> [Be careful who you give permission to.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67665005197275137">#</a></li>
<li>Week 18 In Review – 2011 <a rel="nofollow" href="http://bit.ly/mhwKPV">http://bit.ly/mhwKPV</a> [As always a good post. Now I just need to get mine out.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67665559034142720">#</a></li>
<li>Getting cash for #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NoVAHackers">NoVAHackers</a> .. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67701660008460288">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23JOB">JOB</a> Cyber Hiring to Surge by 2015 &#8211; Wired Workplace <a rel="nofollow" href="http://j.mp/kJ5eE1">http://j.mp/kJ5eE1</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67706138770157568">#</a></li>
<li>Presos at #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NoVAHackers">NoVAHackers</a> starting up&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67718359768248322">#</a></li>
<li>Sony delays PSN restart as 3rd breach is discovered <a rel="nofollow" href="http://j.mp/jYLoVO">http://j.mp/jYLoVO</a> [And the hits just keep on coming.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67771766478606337">#</a></li>
<li>Wow, another awesome #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NoVAHackers">NoVAHackers</a> meeting tonight. 6 great presos! <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67776141888466945">#</a></li>
<li>Running Skype 2.8? Are U vuln to latest 0-day? Just a quick post of what I&#8217;ve found. <a rel="nofollow" href="http://bit.ly/mklAUW">http://bit.ly/mklAUW</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67785528606588928">#</a></li>
<li>Free browser-based security assessment <a rel="nofollow" href="http://bit.ly/l6CVHN">http://bit.ly/l6CVHN</a> [Worth checking out.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67921724351578112">#</a></li>
<li>Skype IM (MAC OS X) &#8211; Is this the 0day? <a rel="nofollow" href="http://bit.ly/jKEYUA">http://bit.ly/jKEYUA</a> [Looks like Skype 2.8 may be vuln to something too.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67923898938830848">#</a></li>
<li>French researchers demo attack on Chrome <a rel="nofollow" href="http://j.mp/ioOo8l">http://j.mp/ioOo8l</a> &lt;- Irresponsible if not reported to Google. (via @<a class="aktt_username" href="http://twitter.com/manicode">manicode</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/67925533794631680">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> BackTrack 5 Released. The time has come. <a rel="nofollow" href="http://bit.ly/kfzVtv">http://bit.ly/kfzVtv</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68009227196694528">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> SWFRETools v.1.1.0 Released <a rel="nofollow" href="http://j.mp/iWqbw1">http://j.mp/iWqbw1</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23tools">tools</a> (via @<a class="aktt_username" href="http://twitter.com/cktricky">cktricky</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68101546738589698">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> Burp v1.4beta2 will fully support IPv6. (via @<a class="aktt_username" href="http://twitter.com/jasonmoliver">jasonmoliver</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68111637214797824">#</a></li>
<li>Tenable NetSec Pod 81 <a rel="nofollow" href="http://j.mp/mPg944">http://j.mp/mPg944</a> .., Mom&#8217;s guide 2 NSA hardening (via @<a class="aktt_username" href="http://twitter.com/pauldotcom">pauldotcom</a>) [Woot, my post. Hopefully it didn't get slammed.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68114979873751040">#</a></li>
<li>Source code leaked for pricey ZeuS crimeware kit <a rel="nofollow" href="http://j.mp/kTztKf">http://j.mp/kTztKf</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68118751282855936">#</a></li>
<li>Finally home and seeding. #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23bt5">bt5</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68128656832208896">#</a></li>
<li>WH launches its internl cybersec strategy next Mon 16th. Any1 have info on what it contains? (via @<a class="aktt_username" href="http://twitter.com/thedarktangent">thedarktangent</a> @jaysonstreet) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68157174290984961">#</a></li>
<li>Apple &amp; Google Wriggle on US Senate Hot Seat <a rel="nofollow" href="http://bit.ly/ki3Hol">http://bit.ly/ki3Hol</a> [In case you missed the hearing.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68159483305664512">#</a></li>
<li>New graphics engines imperil users of Firefox &amp; Chrome <a rel="nofollow" href="http://bit.ly/jy66xW">http://bit.ly/jy66xW</a> [Instructs to disable too.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68160458900783104">#</a></li>
<li>Damn, Breaking In cancelled by Fox <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' />  <a rel="nofollow" href="http://bit.ly/m2gSuI">http://bit.ly/m2gSuI</a> (via @<a class="aktt_username" href="http://twitter.com/grostad">grostad</a> @mruef @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68274110794436610">#</a></li>
<li>Your photos? Not so according to most popular photo-sharing apps <a rel="nofollow" href="http://tnw.co/jwp78G">http://tnw.co/jwp78G</a> (via @<a class="aktt_username" href="http://twitter.com/Zee">Zee</a> @jaysonstreet) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68284416698499072">#</a></li>
<li>RE <a rel="nofollow" href="http://bit.ly/lLAMIX">http://bit.ly/lLAMIX</a> If U don&#8217;t want them to profit from your pics, upload to your own server or use mobypic. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68285305542807552">#</a></li>
<li>RE <a rel="nofollow" href="http://bit.ly/lLAMIX">http://bit.ly/lLAMIX</a> Of course ToS change all the time without notice .. such a pain. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68285448241426432">#</a></li>
<li>Rising Use of SSL Raises New Risks <a rel="nofollow" href="http://bit.ly/jMOr6B">http://bit.ly/jMOr6B</a> [Guess they'll have 2 install corp certs on all their computers.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68329601960648705">#</a></li>
<li>RE <a rel="nofollow" href="http://bit.ly/lA5bIt">http://bit.ly/lA5bIt</a> Shouldn&#8217;t be that hard. Establish baseline &amp; as move forward use that baseline. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68330624934621184">#</a></li>
<li>RE <a rel="nofollow" href="http://bit.ly/lA5bIt">http://bit.ly/lA5bIt</a> Overtime most of your org should be covered. &amp; now org has insight into SSL. No privacy sux tho. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68330816446533632">#</a></li>
<li>Your Security? Not Our Problem, Say Cloud Providers <a rel="nofollow" href="http://bit.ly/lKHfSu">http://bit.ly/lKHfSu</a> (via @<a class="aktt_username" href="http://twitter.com/Hfuhs">Hfuhs</a> @Nathiet) [Mmm?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68333130758627328">#</a></li>
<li>Sometimes, it is best to burn bridges before you cross them. [Lol, Deep Thoughts with @<a class="aktt_username" href="http://twitter.com/jack_daniel">jack_daniel</a>.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68333761204469763">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23JOB">JOB</a> Fed IT Security Workforce to Double? Survey Projects Workforce Expansion by 2015. <a rel="nofollow" href="http://bit.ly/lnHfTK">http://bit.ly/lnHfTK</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68333951634243584">#</a></li>
<li>FB Apps Found Giving Access to User Accts to 3rd Parties <a rel="nofollow" href="http://bit.ly/mBRM8w">http://bit.ly/mBRM8w</a> [I'm sure you've all seen this by now.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68335152715141120">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> Demoed Smartlocker on the latest @<a class="aktt_username" href="http://twitter.com/Hak5">Hak5</a> episode, more info about smartlocker here: <a rel="nofollow" href="http://j.mp/fwmTOX">http://j.mp/fwmTOX</a> (via @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68373494882246656">#</a></li>
<li>Just put up post w/ vids/summary fr Monday&#8217;s @<a class="aktt_username" href="http://twitter.com/novahackers">novahackers</a> meeting! Thx 2 @<a class="aktt_username" href="http://twitter.com/vincentkadmon">vincentkadmon</a> 4 recording! <a rel="nofollow" href="http://bit.ly/kc9vvy">http://bit.ly/kc9vvy</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68484681921863680">#</a></li>
<li>Hopefully more to come out later this week&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68484754097455104">#</a></li>
<li>Obi-Wan Kenobi Is Dead, Vader Says <a rel="nofollow" href="http://bit.ly/mkZWXV">http://bit.ly/mkZWXV</a> (don&#8217;t skip the comments) (via @<a class="aktt_username" href="http://twitter.com/lseltzer">lseltzer</a> @pmhesse) [Toooo funny.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68488689499648001">#</a></li>
<li>US CERT warns of critical industrial control bug <a rel="nofollow" href="http://j.mp/jE4sGh">http://j.mp/jE4sGh</a> [Wonder how common these type warnings will get?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68649337885954048">#</a></li>
<li>Apple&#8217;s Mac OS X NEVER had superior security <a rel="nofollow" href="http://j.mp/iM3DXc">http://j.mp/iM3DXc</a> (via @<a class="aktt_username" href="http://twitter.com/CSOonline">CSOonline</a>) [Agree. Nice read.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68650247630491650">#</a></li>
<li>Google &amp; VUPEN spar over 0day used in Chrome hack, but both parties are right @<a class="aktt_username" href="http://twitter.com/dakami">dakami</a> says <a rel="nofollow" href="http://j.mp/iYTD3g">http://j.mp/iYTD3g</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68651032489623552">#</a></li>
<li>Can&#8217;t believe I missed news&#8211;you can now get Metro directions in Google Maps. <a rel="nofollow" href="http://j.mp/jReKfI">http://j.mp/jReKfI</a> (via @<a class="aktt_username" href="http://twitter.com/jad_va">jad_va</a>) [Cool.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68656799699582976">#</a></li>
<li>Activating Nessus on Backtrack 5 <a rel="nofollow" href="http://bit.ly/kb8f5n">http://bit.ly/kb8f5n</a> (via @<a class="aktt_username" href="http://twitter.com/RonGula">RonGula</a> @jasonmoliver) [Nice that this was finally added.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68676458251427840">#</a></li>
<li>Real Story Behind Fed IT Sec #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23Job">Job</a> Growth <a rel="nofollow" href="http://bit.ly/l8O5ct">http://bit.ly/l8O5ct</a> [Don't see gov being able 2 compete w contractors 4 talent.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68678901576105984">#</a></li>
<li>Here&#8217;s @<a class="aktt_username" href="http://twitter.com/rybolov">rybolov</a> &#8216;s comments on <a rel="nofollow" href="http://bit.ly/mO8uuE">http://bit.ly/mO8uuE</a> : &#8220;My SWAG is there are only about 20K people working in the field.&#8221; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68679798137962496">#</a></li>
<li>HIPAA Security Toolkit in the Works <a rel="nofollow" href="http://bit.ly/lAasRj">http://bit.ly/lAasRj</a> (via @<a class="aktt_username" href="http://twitter.com/GovInfoSecurity">GovInfoSecurity</a>) [Looks interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68680154293084160">#</a></li>
<li>If you&#8217;re in Canada check out 16&#215;9 The Bigger Picture on Global TV Sat featuring me. <a rel="nofollow" href="http://bit.ly/ixmmG0">http://bit.ly/ixmmG0</a> (via @<a class="aktt_username" href="http://twitter.com/vincentkadmon">vincentkadmon</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68680732192681985">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23JOB">JOB</a> Project Manager, an Alternate Project Manager.. <a rel="nofollow" href="http://bit.ly/kG9HRb">http://bit.ly/kG9HRb</a> (via @<a class="aktt_username" href="http://twitter.com/CSOonline">CSOonline</a>) [Mmm? Don't even include word "cyber".] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68681759633584128">#</a></li>
<li>Security still a struggle between usability and safety <a rel="nofollow" href="http://j.mp/lOGpcW">http://j.mp/lOGpcW</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) [Somethings will never change.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68710535172067328">#</a></li>
<li>MS Security Intelligence Report warns business of social network phishing attack <a rel="nofollow" href="http://j.mp/kTfqbQ">http://j.mp/kTfqbQ</a> (via @<a class="aktt_username" href="http://twitter.com/Nathiet">Nathiet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68711673481003008">#</a></li>
<li>White House set to unveil cyber plan <a rel="nofollow" href="http://j.mp/jGJHxH">http://j.mp/jGJHxH</a> &lt;- Oh thank goodness! Another plan! (via @<a class="aktt_username" href="http://twitter.com/jorisevers">jorisevers</a> @briankrebs) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/68741656224075776">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-12+http%3A%2F%2Fj.mp%2Foxdo5W" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/05/12/grecs-weekly-infosec-ramblings-for-2011-05-12/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-12" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/05/12/grecs-weekly-infosec-ramblings-for-2011-05-12/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2011-05-05</title>
		<link>http://www.novainfosecportal.com/2011/05/05/grecs-weekly-infosec-ramblings-for-2011-05-05/</link>
		<comments>http://www.novainfosecportal.com/2011/05/05/grecs-weekly-infosec-ramblings-for-2011-05-05/#comments</comments>
		<pubDate>Fri, 06 May 2011 01:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2011/05/05/grecs-weekly-infosec-ramblings-for-2011-05-05/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @grecs Twitter account. [Hey all ... it was another busy week so there wasn't much time to clean this up. On the other hand I did get a few "real" blog posts out. -Grecs] ICANN Hires Defcon Founder as Security Chief http://cnet.co/iDbL6N [Damn this guy is busy. ] # BLOGGED: Clouds, FISMA, and the Lawyers http://bit.ly/mxAagc # Check out this DC-focused spear phishing survey scam. They&#8217;re even offering $25 to 1 lucky person. http://bit.ly/f42Lfy # U.S. Is Hyping Threat Of Cyber War http://j.mp/kkR2Bn &#60;- full report in my queue (via @georgevhulme @jack_daniel) # Austin Hackers Anonymous is tonight! Talks R mandatory 4 new attendees. .. (via @hdmoore @jaysonstreet) [Idea 4 NOVAH? cc @mubix] # #TOOL 10 must-have utilities for small networks http://j.mp/kNNWfB (via @jaysonstreet) # Google sued over [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-05+http%3A%2F%2Fj.mp%2FlVCEMo" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/05/05/grecs-weekly-infosec-ramblings-for-2011-05-05/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-05" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><img class="alignright size-medium wp-image-5282" title="Rambling Stream" src="http://www.novainfosecportal.com/wp-content/uploads/2011/05/ramblingstream-200x300.jpg" alt="Picture of a Rambling Stream" width="200" height="300" />If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="/events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="/events/nova-meetups/#events-in-dc">DC</a>-, and <a href="/events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>[Hey all ... it was another busy week so there wasn't much time to clean this up. On the other hand I did get a few "real" blog posts out. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  -Grecs]</p>
<ul class="aktt_tweet_digest">
<li>ICANN Hires Defcon Founder as Security Chief <a rel="nofollow" href="http://cnet.co/iDbL6N">http://cnet.co/iDbL6N</a> [Damn this guy is busy. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63778562943107075">#</a></li>
<li>BLOGGED: Clouds, FISMA, and the Lawyers <a rel="nofollow" href="http://bit.ly/mxAagc">http://bit.ly/mxAagc</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63785150349185024">#</a></li>
<li>Check out this DC-focused spear phishing survey scam. They&#8217;re even offering $25 to 1 lucky person. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' />  <a rel="nofollow" href="http://bit.ly/f42Lfy">http://bit.ly/f42Lfy</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63787941255847936">#</a></li>
<li>U.S. Is Hyping Threat Of Cyber War <a rel="nofollow" href="http://j.mp/kkR2Bn">http://j.mp/kkR2Bn</a> &lt;- full report in my queue (via @<a class="aktt_username" href="http://twitter.com/georgevhulme">georgevhulme</a> @jack_daniel) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63820410235531264">#</a></li>
<li>Austin Hackers Anonymous is tonight! Talks R mandatory 4 new attendees. .. (via @<a class="aktt_username" href="http://twitter.com/hdmoore">hdmoore</a> @jaysonstreet) [Idea 4 NOVAH? cc @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63823486262591488">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> 10 must-have utilities for small networks  <a rel="nofollow" href="http://j.mp/kNNWfB">http://j.mp/kNNWfB</a> (via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63823922889637888">#</a></li>
<li>Google sued over – yes – Android location tracking <a rel="nofollow" href="http://j.mp/mjLe6D">http://j.mp/mjLe6D</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) [And now it's Google's turn.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63824724681170944">#</a></li>
<li>Interesting take on APT.. Probably underestimated 1,000 grains of sand.. <a rel="nofollow" href="http://j.mp/ikXgLk">http://j.mp/ikXgLk</a> (via @<a class="aktt_username" href="http://twitter.com/k_sec">k_sec</a> @moranned) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63930919559512064">#</a></li>
<li>SQLi + plain text pwds = FAIL. DSLReports gets its 15 mins of shame. <a rel="nofollow" href="http://j.mp/k0x78M">http://j.mp/k0x78M</a> (via @<a class="aktt_username" href="http://twitter.com/stevewerby">stevewerby</a> @mubix) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63931554400964608">#</a></li>
<li>Toshiba Reveals Write-Once SD Card <a rel="nofollow" href="http://j.mp/kJjepm">http://j.mp/kJjepm</a> [interesting, but I'd rather USB w/ write-lock] (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [+1] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63943996925419520">#</a></li>
<li>RE AHA: &#8220;fwiw, we had 30 people and *10* talks tonight, badass turnout, and three new first talks&#8221; (via @<a class="aktt_username" href="http://twitter.com/hdmoore">hdmoore</a>) [Awesome!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63946565726900224">#</a></li>
<li>Watch How the Police Raid a Cellphone <a rel="nofollow" href="http://j.mp/mBVZ6d">http://j.mp/mBVZ6d</a> (via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63981541008736257">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> 11 days until #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23BackTrackLinux">BackTrackLinux</a> 5 release! (via @<a class="aktt_username" href="http://twitter.com/ArchangelAmael">ArchangelAmael</a> @DaKahuna2007) [Nice!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63984736070152193">#</a></li>
<li>&#8220;If you&#8217;re going to kill it, open source it.&#8221; <a rel="nofollow" href="http://j.mp/lLm9Dl">http://j.mp/lLm9Dl</a> (via @<a class="aktt_username" href="http://twitter.com/evejou">evejou</a>) [Great suggestion.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63986393852035072">#</a></li>
<li>BLOGGED: Top 3 NoVA Infosec Blog Posts of the Week <a rel="nofollow" href="http://bit.ly/kucOtM">http://bit.ly/kucOtM</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63994021038665729">#</a></li>
<li>NIST rel SP 800-144 BIOS Protection Guidelines final version <a rel="nofollow" href="http://j.mp/mrlOtO">http://j.mp/mrlOtO</a> (PDF) (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64073253932630016">#</a></li>
<li>NIST rel SP 800-147 BIOS Protection Guidelines final version <a rel="nofollow" href="http://j.mp/mrlOtO">http://j.mp/mrlOtO</a> (PDF) (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) [Wrong number before.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64073660998230016">#</a></li>
<li>NIST rel Sec Bulletin Apr. 2011 Full Virtualization Tech: Guidelines For Secure Implement/Mgmt <a rel="nofollow" href="http://j.mp/lPOEvZ">http://j.mp/lPOEvZ</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64143762825285633">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23CON">CON</a> NIST/DHS hosting Homeland Security Modeling &amp; Simulation Workshop on 6/14-15 <a rel="nofollow" href="http://j.mp/ixo6gb">http://j.mp/ixo6gb</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64144036839165952">#</a></li>
<li>U.S. Gov borrows $188,000,000 every hour. I guess @<a class="aktt_username" href="http://twitter.com/ramseyshow">ramseyshow</a> isn&#8217;t on the radio in DC. (via @<a class="aktt_username" href="http://twitter.com/another71">another71</a> @jasonmoliver) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64144911443820544">#</a></li>
<li>great blog on blackhole exploit kit <a rel="nofollow" href="http://j.mp/kXDkFt">http://j.mp/kXDkFt</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23tippingpoint">tippingpoint</a> #dvlabs (via @<a class="aktt_username" href="http://twitter.com/wgragido">wgragido</a> @Wh1t3Rabbit) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64328481567285248">#</a></li>
<li><a href="mailto:georgia@reversespace.com">georgia@reversespace.com</a> is dead. georgia [at] grmn00bs [dot] com me instead. (via @<a class="aktt_username" href="http://twitter.com/vincentkadmon">vincentkadmon</a>) [FYI..] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64328968538562560">#</a></li>
<li>Schneier TED Talking.. <a rel="nofollow" href="http://j.mp/ju41Cn">http://j.mp/ju41Cn</a> (via @<a class="aktt_username" href="http://twitter.com/schneierblog">schneierblog</a>) [Worth a listen.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64378565965254656">#</a></li>
<li>Commentary on Amazon&#8217;s post-mortem: <a rel="nofollow" href="http://j.mp/jtKKDg">http://j.mp/jtKKDg</a> (via @<a class="aktt_username" href="http://twitter.com/Albatross">Albatross</a> @falconsview) [Lol.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64379421406134272">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> Foca: Free metadata extract tool for docs U post online. <a rel="nofollow" href="http://j.mp/js8cdv">http://j.mp/js8cdv</a> (via @<a class="aktt_username" href="http://twitter.com/jabolins">jabolins</a> @danphilpott) [Nice!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64380706591215616">#</a></li>
<li>Attackers Increasingly Cribbing Code from Existing Exploits <a rel="nofollow" href="http://j.mp/kEn2J9">http://j.mp/kEn2J9</a> [Makes sense; a lot faster.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64428175018573824">#</a></li>
<li>Symantec&#8217;s Cyber 4 Awards 4 individuals who exemplify excellence in gov cybersec; due 5/6 <a rel="nofollow" href="http://j.mp/jZHKCn">http://j.mp/jZHKCn</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64436692215533568">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> Please RSVP for May 5th OWASPNoVA mtg: <a rel="nofollow" href="http://j.mp/jEPUoh">http://j.mp/jEPUoh</a> (via @<a class="aktt_username" href="http://twitter.com/falconsview">falconsview</a> @OWASPNoVA) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64519255781154816">#</a></li>
<li>List of major national cybersec breaches since 2006: <a rel="nofollow" href="http://j.mp/kbGn6X">http://j.mp/kbGn6X</a> (via @<a class="aktt_username" href="http://twitter.com/nils_gilman">nils_gilman</a> @mroesch) [Good refs.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64526201535995904">#</a></li>
<li>Seeking feedback on a stealth PHP backdoor that uses.. <a rel="nofollow" href="http://j.mp/lTqAhL">http://j.mp/lTqAhL</a> (via @<a class="aktt_username" href="http://twitter.com/madirish2600">madirish2600</a> @mubix) [Very interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64677330882269184">#</a></li>
<li>Interesting idea, beer pancakes.. <a rel="nofollow" href="http://twitpic.com/4riv8e">http://twitpic.com/4riv8e</a> (via @<a class="aktt_username" href="http://twitter.com/jasonmoliver">jasonmoliver</a>) [Mmm .. beer.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64679498423087105">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23EDU">EDU</a> Educating Nxt Gen of Sec Pros <a rel="nofollow" href="http://j.mp/l46wF1">http://j.mp/l46wF1</a> &lt; art on value of hacking/sec competitions (via @<a class="aktt_username" href="http://twitter.com/phat32">phat32</a> @DaKahuna2007) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64692916345503744">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> THC-Hydra network logon cracker version 6.3 released <a rel="nofollow" href="http://j.mp/gMKPGU">http://j.mp/gMKPGU</a> (via @<a class="aktt_username" href="http://twitter.com/siatiras">siatiras</a> @mubix) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64693461365948416">#</a></li>
<li>Friendly reminder .. our survey will end this week. Wld appreciate U taking few mins 2 fill out. <a rel="nofollow" href="http://bit.ly/f42Lfy">http://bit.ly/f42Lfy</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64764029813530624">#</a></li>
<li>Finished reviewing events 4 this week. Nuclear con starting W &amp; OWASP/2600 meetups on R/F. <a rel="nofollow" href="http://bit.ly/nispfullcal">http://bit.ly/nispfullcal</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64775870572802049">#</a></li>
<li>More cons/training events around the world. One mentioned is in Baltimore. <a rel="nofollow" href="http://bit.ly/lEViNI">http://bit.ly/lEViNI</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64778516478181377">#</a></li>
<li>NIST took gr8 little 2-page cloud defs doc &amp; made it 7 pgs without adding actual content or value? WTF. (via @<a class="aktt_username" href="http://twitter.com/jack_daniel">jack_daniel</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64851118630506496">#</a></li>
<li>Want to see if Google has your wi-fi location pinpointed? <a rel="nofollow" href="http://j.mp/mpMBoI">http://j.mp/mpMBoI</a> (via @<a class="aktt_username" href="http://twitter.com/geekami">geekami</a> @kingtuna) [Cool?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64861063136550912">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> Charmsec #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%2336">36</a> will be on May 26th, a Thursday, at @<a class="aktt_username" href="http://twitter.com/Slaintepub">Slaintepub</a>. (via @<a class="aktt_username" href="http://twitter.com/charmsec">charmsec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/64861707385835520">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23EDU">EDU</a> OWASP&#8217;s Hackademic challenge: <a rel="nofollow" href="http://j.mp/eqmRBr">http://j.mp/eqmRBr</a> (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65012006985535488">#</a></li>
<li>Bin Laden Death Related Malware <a rel="nofollow" href="http://j.mp/mkmw2m">http://j.mp/mkmw2m</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) [Be careful.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65084506952040448">#</a></li>
<li>&#8220;.. never wished man dead, but I have read some obituaries w/ gr8 pleasure.&#8221; M Twain <a rel="nofollow" href="http://j.mp/kz5CG8">http://j.mp/kz5CG8</a> (via @<a class="aktt_username" href="http://twitter.com/ignitemsg">ignitemsg</a> @GoldbergLawDC) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65094128563798016">#</a></li>
<li>&#8220;New IDLE scan sees through your firewall to scan hosts inside your network!&#8221; <a rel="nofollow" href="http://j.mp/lSkWVL">http://j.mp/lSkWVL</a> (via @<a class="aktt_username" href="http://twitter.com/pauldotcom">pauldotcom</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65187758888587264">#</a></li>
<li>Videos from SOURCE Boston are available <a rel="nofollow" href="http://j.mp/m78mcC">http://j.mp/m78mcC</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23sourceboston">sourceboston</a> (via @<a class="aktt_username" href="http://twitter.com/mubix">mubix</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65217966555406336">#</a></li>
<li>Cybercriminals Using Osama Bin Laden&#8217;s Death to Spread Malware <a rel="nofollow" href="http://j.mp/jeByEC">http://j.mp/jeByEC</a> (via @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) [As expected.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65224591978672128">#</a></li>
<li>Privacy Lost: The amazing benefits of completely examined life <a rel="nofollow" href="http://j.mp/ljJZDg">http://j.mp/ljJZDg</a> [Interesting POV.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65225573399662595">#</a></li>
<li>I tossed some cloud computing resources up on the bloggy: <a rel="nofollow" href="http://j.mp/m2cXMx">http://j.mp/m2cXMx</a> (via @<a class="aktt_username" href="http://twitter.com/jack_daniel">jack_daniel</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65226523858305024">#</a></li>
<li>&#8220;Do It Yourself&#8221; Crimeware Kit for OSX <a rel="nofollow" href="http://j.mp/kx3hlQ">http://j.mp/kx3hlQ</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65226932958142464">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23CON">CON</a> EH-Net&#8217;s Global Calendar of Events for May 2011 <a rel="nofollow" href="http://j.mp/lvPfBL">http://j.mp/lvPfBL</a> (via @<a class="aktt_username" href="http://twitter.com/ethicalhacker">ethicalhacker</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65227557057994752">#</a></li>
<li>Our demographics survey is winding down next few days. Wld appreciate every1 taking few mins 2 fill out. <a rel="nofollow" href="http://bit.ly/f42Lfy">http://bit.ly/f42Lfy</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65242166007562240">#</a></li>
<li>And thanks to everyone that have already completed the survey!!! <a rel="nofollow" href="http://bit.ly/f42Lfy">http://bit.ly/f42Lfy</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65242293208223745">#</a></li>
<li>Rumor: Twitter purchased TweetDeck for $40-50 million <a rel="nofollow" href="http://yhoo.it/mFuORb">http://yhoo.it/mFuORb</a> [I still have no clue how any1 is making $. Tx tho.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65243237136334848">#</a></li>
<li>How to avoid sharing personal info online <a rel="nofollow" href="http://cnet.co/j7zdmW">http://cnet.co/j7zdmW</a> [I always used Mailinator. 10 Min Mail seems more secure.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65244965760008192">#</a></li>
<li>Fake &#8220;MacDefender&#8221; Brings Malware to Macs <a rel="nofollow" href="http://yhoo.it/iFrYeg">http://yhoo.it/iFrYeg</a> [But Macs don't get .. wait .. WTF.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65246459469119488">#</a></li>
<li>Week 17 In Review <a rel="nofollow" href="http://bit.ly/lizdWO">http://bit.ly/lizdWO</a> [Always a good read.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65247000056172544">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> Reminder to register for OWASP NoVa&#8217;s Cinco de Mayo meeting: <a rel="nofollow" href="http://j.mp/lXZutK">http://j.mp/lXZutK</a> (via @<a class="aktt_username" href="http://twitter.com/jack_mannino">jack_mannino</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65254177529540608">#</a></li>
<li>Sony slide on PSN hack shows app flaw used to inject comm tool <a rel="nofollow" href="http://j.mp/jyn6Dk">http://j.mp/jyn6Dk</a> (via @<a class="aktt_username" href="http://twitter.com/WeldPond">WeldPond</a> @packetwerks) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65409562286632960">#</a></li>
<li>Dark Reading launches the Cloud Security Tech Center: <a rel="nofollow" href="http://j.mp/ivHdYh">http://j.mp/ivHdYh</a> [Looks like good resource to track.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65464502375809024">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> ModSecurity v2.6.0-rc2 is out!  Please help us with testing.  <a rel="nofollow" href="http://j.mp/mB20zy">http://j.mp/mB20zy</a> (via @<a class="aktt_username" href="http://twitter.com/manicode">manicode</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65489780124819457">#</a></li>
<li>BLOGGED: Where You Want to Be This Week for 2011-05-02 <a rel="nofollow" href="http://bit.ly/loiMRv">http://bit.ly/loiMRv</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65490574731522048">#</a></li>
<li>EFF obtains new FBI documents on surveillance spyware called CIPAV <a rel="nofollow" href="http://j.mp/mgXj3K">http://j.mp/mgXj3K</a> (via @<a class="aktt_username" href="http://twitter.com/jasonmoliver">jasonmoliver</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65491925058330624">#</a></li>
<li>Basic securityzeitgeist.com splash page is up. If you want to know what basic idea of project is check it out. (via @<a class="aktt_username" href="http://twitter.com/transzorp">transzorp</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65492768499318784">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> John the Ripper 1.7.7 released <a rel="nofollow" href="http://j.mp/k2jkj3">http://j.mp/k2jkj3</a> The Ultimate Password Cracker !!! (via @<a class="aktt_username" href="http://twitter.com/ToolsWatch">ToolsWatch</a> @mubix) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65562302799290368">#</a></li>
<li>Hacker pwns police cruiser and lives to tell tale <a rel="nofollow" href="http://j.mp/m8y3ca">http://j.mp/m8y3ca</a> [Can't believe he was able to do this.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65563612214870016">#</a></li>
<li>NoVA 4n6 meetup, 4 May, 7pm, Reston Public Library, mtg rm 1 (via @<a class="aktt_username" href="http://twitter.com/keydet89">keydet89</a> @charmsec) [Anyone know what this is about?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65565076819677184">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23EDU">EDU</a> Collegiate Cyber Defense Challenge: Shaping the Cyber Warriors of Tomorrow <a rel="nofollow" href="http://j.mp/mmgsRq">http://j.mp/mmgsRq</a> (via @<a class="aktt_username" href="http://twitter.com/vincentkadmon">vincentkadmon</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65580863529820160">#</a></li>
<li>is using info from @<a class="aktt_username" href="http://twitter.com/grecs">grecs</a> &#8216;s Novainfosecportal for his weekly Transportation Cyber Security Newsletter. (via @<a class="aktt_username" href="http://twitter.com/sintixerr">sintixerr</a>) [Awesome! Tx!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65581810570108928">#</a></li>
<li>Less than 24 hours to complete NovaInfosecPortal.com demographics survey. Let&#8217;s give it a big push! <a rel="nofollow" href="http://bit.ly/f42Lfy">http://bit.ly/f42Lfy</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65628619363450880">#</a></li>
<li>Also re demographics survey .. 1 lucky person could win $25! And it only takes 2 mins to complete. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  <a rel="nofollow" href="http://bit.ly/f42Lfy">http://bit.ly/f42Lfy</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65629170641809408">#</a></li>
<li>Can&#8217;t wait to stop bugging everyone about this survey. It&#8217;s an necessary evil tho. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65629407234097152">#</a></li>
<li>Cloud Security Alliance Makes Case for Cloud Security Standards <a rel="nofollow" href="http://j.mp/mD82YX">http://j.mp/mD82YX</a> [Like term minimum baseline instead.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65783125581631491">#</a></li>
<li>NSA Presents “Best Practices for Keeping Your Home Network Secure” <a rel="nofollow" href="http://j.mp/miYS0A">http://j.mp/miYS0A</a> (via @<a class="aktt_username" href="http://twitter.com/darkoperator">darkoperator</a> @jasonmoliver) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65791489904623616">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NOVABLOGGER">NOVABLOGGER</a> May Progress Update <a rel="nofollow" href="http://j.mp/lMouJj">http://j.mp/lMouJj</a> (via @<a class="aktt_username" href="http://twitter.com/RedSpartan">RedSpartan</a> @cyberhiker) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65812067067760641">#</a></li>
<li>Monitor/control what your Android apps R communicating w/ WhisperMonitor <a rel="nofollow" href="http://j.mp/lutnGo">http://j.mp/lutnGo</a> (via @<a class="aktt_username" href="http://twitter.com/securityninja">securityninja</a> @moxie__ @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65827520259424256">#</a></li>
<li>Where &#8220;Dark Reading&#8221; came from&#8211;and where it&#8217;s going: <a rel="nofollow" href="http://j.mp/jYgFnX">http://j.mp/jYgFnX</a> [Gr8 folks over there. Look forward to what's coming.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65838348274638848">#</a></li>
<li>Is there anything to find on bin Laden&#8217;s hard drive? <a rel="nofollow" href="http://j.mp/lLZwuj">http://j.mp/lLZwuj</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) [Nice crytpo refs.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65843428239486976">#</a></li>
<li>More on Google image poisoning <a rel="nofollow" href="http://j.mp/iP9iBf">http://j.mp/iP9iBf</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) [Interesting.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65880657645150208">#</a></li>
<li>5 stories over 5 years: a retrospective on organized crime, USB sticks, &#8220;soupnazi,&#8221; &amp; APTs. <a rel="nofollow" href="http://j.mp/mDFuOG">http://j.mp/mDFuOG</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65883556106354688">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> Metasploit Framework 3.7.0 Released! <a rel="nofollow" href="http://j.mp/lxqk1p">http://j.mp/lxqk1p</a> (via @<a class="aktt_username" href="http://twitter.com/hdmoore">hdmoore</a> @jaysonstreet) [Nice!] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65897700603863042">#</a></li>
<li>Forty Years of P=NP? <a rel="nofollow" href="http://j.mp/jzpBjY">http://j.mp/jzpBjY</a> (via @<a class="aktt_username" href="http://twitter.com/slashdot">slashdot</a> @GoldbergLawDC) [I'm gettin old. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65898385584033793">#</a></li>
<li>Here&#8217;s our late &#8220;summary&#8221; post that was supposed to have gone out over the weekend. <a rel="nofollow" href="http://bit.ly/la0CCZ">http://bit.ly/la0CCZ</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65930998591926272">#</a></li>
<li>Last chance to fill out NovaInfosecPortal.com survey. Tx 2 all that&#8217;ve already completed! <a rel="nofollow" href="http://bit.ly/f42Lfy">http://bit.ly/f42Lfy</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65946178478542848">#</a></li>
<li>Sony implicates Anonymous in PlayStation Network hack <a rel="nofollow" href="http://j.mp/kUbhqb">http://j.mp/kUbhqb</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65993629491138560">#</a></li>
<li>Microsoft Sysinterals Update <a rel="nofollow" href="http://j.mp/kXFR6N">http://j.mp/kXFR6N</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) [Awesome set of tools.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/65994087207149568">#</a></li>
<li>Apple squashes location tracking &#8216;bugs&#8217; with iOS update <a rel="nofollow" href="http://j.mp/iMVJW7">http://j.mp/iMVJW7</a> [Yeah, we are all anonymous now. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66099022619885568">#</a></li>
<li>LastPass resets passwords following possible hack <a rel="nofollow" href="http://bit.ly/kuhiXs">http://bit.ly/kuhiXs</a> [Whoa.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66111030471827456">#</a></li>
<li>IE gets tough on Flash cookies but ignores homegrown threat <a rel="nofollow" href="http://j.mp/m9gQqh">http://j.mp/m9gQqh</a> [1 step forward, 2 steps back.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/66119098559500288">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-05+http%3A%2F%2Fj.mp%2FlVCEMo" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/05/05/grecs-weekly-infosec-ramblings-for-2011-05-05/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-05-05" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/05/05/grecs-weekly-infosec-ramblings-for-2011-05-05/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2011-04-28</title>
		<link>http://www.novainfosecportal.com/2011/04/28/grecs-weekly-infosec-ramblings-for-2011-04-28/</link>
		<comments>http://www.novainfosecportal.com/2011/04/28/grecs-weekly-infosec-ramblings-for-2011-04-28/#comments</comments>
		<pubDate>Fri, 29 Apr 2011 01:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">https://www.novainfosecportal.com/2011/04/28/grecs-weekly-infosec-ramblings-for-2011-04-28/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @grecs Twitter account. And before you start reading this, if you could head on over and take our anonymous demographics survey, we&#8217;d appreciate it. It should only take a minute or two. Thanks! There seemed to be quite a few meetups this past week. Did you get to attend any of them? Unallocated Space CISSP Review Seminars: First monthly review was on 4/27. # # # # Unallocated LAN Party: Happened last Saturday. Looked like fun. # CharmSec: Their 35th event happened this past Thursday. # # CapSecDC: Another fun CitySec event from Wednesday. # OWASP NoVA is also coming up this week for those of you who are interested. And be sure to check out our event calendar for even more upcoming meetups and conferences. OWASP NoVA: [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-28+http%3A%2F%2Fj.mp%2Fla0CCZ" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/04/28/grecs-weekly-infosec-ramblings-for-2011-04-28/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-28" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="/events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="/events/nova-meetups/#events-in-dc">DC</a>-, and <a href="/events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>And before you start reading this, if you could head on over and take our anonymous <a href="http://bit.ly/f42Lfy">demographics survey</a>, we&#8217;d appreciate it. It should only take a minute or two. Thanks!</p>
<p>There seemed to be quite a few <strong>meetups this past week</strong>. Did you get to attend any of them?</p>
<ul>
<li><a href="http://www.unallocatedspace.org/uas/2011/04/17/monthly-cissp-review-seminar/">Unallocated Space CISSP Review Seminars</a>: First monthly review was on 4/27.  <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61443494081867776">#</a> <a href="http://twitter.com/grecs/statuses/62361250738348032">#</a> <a href="http://twitter.com/grecs/statuses/63212911782404096">#</a> <a href="http://twitter.com/grecs/statuses/61990343276630016">#</a></li>
<li><a href="http://www.unallocatedspace.org/uas/">Unallocated LAN Party</a>: Happened last Saturday. Looked like fun. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61457800919920640">#</a></li>
<li><a href="http://charmsec.org/">CharmSec</a>: Their 35th event happened this past Thursday. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62522126569189376">#</a> <a href="http://twitter.com/grecs/statuses/63424112399360000">#</a></li>
<li><a href="http://capsecdc.org/blog/2011/04/20/april-capsec-next-week/">CapSecDC</a>: Another fun CitySec event from Wednesday. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62948374416064512">#</a></li>
</ul>
<p>OWASP NoVA is also coming up <strong>this week</strong> for those of you who are interested. And be sure to check out <a href="/full-calendar/">our event calendar</a> for even more upcoming meetups and conferences.</p>
<ul>
<li><a href="https://www.owasp.org/index.php/Virginia#tab=Schedule">OWASP NoVA</a>: Coming up on Cinco de Mayo, it&#8217;ll be at Akamai in Reston. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62688673312935936">#</a></li>
</ul>
<p>For those of you that don’t know, we have some pretty awesome <strong>infosec bloggers in the local area</strong>. Here are some of my favorites.</p>
<ul>
<li><a href="http://j.mp/gDqEKJ"><span class="aktt_hashtag">Oracle</span> Web #<span class="aktt_hashtag">Hacking</span> Part I</a> <a rel="nofollow" href="http://j.mp/gDqEKJ"></a><a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61494556193062912">#</a></li>
<li><a href="http://bit.ly/eIzSQ8">Analysis of iOS Location Data fr Multiple Devices</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62689431034937344">#</a></li>
<li><a href="http://bit.ly/gDLVSx">XSS: More Than Just Alert Boxes</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63029733822173184">#</a></li>
<li><a href="http://bit.ly/lIUBKw">PSN break in</a><a rel="nofollow" href="http://bit.ly/lIUBKw"></a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63696827035299840">#</a></li>
</ul>
<p>In case you missed them, here were some of <strong>our blog posts</strong> from this past week.</p>
<ul>
<li><a href="http://bit.ly/hX7mvI">Top 3 NoVA Infosec Blog Posts of the Week</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61467898509668352">#</a></li>
<li><a href="http://bit.ly/gM5rsE">Where You Want to Be This Week for 2011-04-25</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62525901144997888">#</a></li>
</ul>
<p>iPhone, Andriod, Windows Phone &#8230; they all store <strong>location data</strong> &#8230; but is it a bad thing? Lots of people expressed their opinions and research last week.</p>
<ul>
<li><a href="http://j.mp/e8f57s">Actually, iPhone Sends Your Location to Apple Twice a Day</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61221302580678657">#</a></li>
<li><a href="http://j.mp/gbAA1Z">Senator Questions Apple Over iPhone Tracking</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61225656238882817">#</a></li>
<li><a href="http://j.mp/g6TRpb">Quick Note on iPhone Location Tracking Disclosure</a>: Hack to clear out location data&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61229684431650816">#</a></li>
<li><a href="http://j.mp/f5SZzL">No, iPhone Location Tracking Isn&#8217;t Harmless and Here&#8217;s Why</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61586518573191168">#</a></li>
<li><a href="http://j.mp/fsrjsF">iPhoneMap</a>: iPhoneTracker port to Linux; Windows version also mentioned in comments. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61753181755027456">#</a></li>
<li><a href="http://j.mp/gf4pMk">New Apple iOS Backup File Post Module</a>: Metasploit &#8230; there&#8217;s a hack for that. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62358181732556801">#</a></li>
<li><a href="http://bit.ly/fxnLM9">Apple Sued Over iPhone Location Tracking</a>: And as expected. Next will be Google. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62685960323874816">#</a></li>
<li><a href="http://j.mp/ejb3hw">Disable Location Tracking on iPhone</a>: Complex for non-jailbroken phones though. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62992234219438080">#</a></li>
<li><a href="http://j.mp/fLfRRT">MS Also Collects Location Data Of Win Phone Users</a>: Everybody&#8217;s doing it. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63027269660196864">#</a></li>
<li><a href="http://bit.ly/e392Jz">Apple Q&amp;A on Location Data</a>: Apple finally responds. Look for upd in next 3 weeks. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63240656130293761">#</a></li>
</ul>
<p>Came across lots of <strong>hacking challenges</strong> last week &#8230; I need to try more of these.</p>
<ul>
<li><a href="http://j.mp/eqmRBr">OWASP AppSec EU Hackademic Challenge</a>: Win a free ticket to AppSec EU 2011. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61227299659456513">#</a></li>
<li><a href="http://j.mp/hnWFcs">Notacon pwn0 CTF</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61837612826107904">#</a></li>
<li><a href="http://j.mp/gMJODw">Hak5 Crack the Code Challenge</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62359274340360192">#</a></li>
<li><a href="http://j.mp/mGY1aB">List of Vulnerable Sites to Learn On</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63384473181487105">#</a></li>
</ul>
<p>And as usual &#8230; lots of <strong>tool releases and updates</strong>.</p>
<ul>
<li><a href="http://j.mp/g0lNbg">Scalpel 2.0</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61497641334341632">#</a></li>
<li><a href="http://redspartan.com/redmine/">RedSpartan</a>: They&#8217;re still looking for alpha testers. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61619343959658496">#</a></li>
<li><a href="http://j.mp/fnmDXw">sslsniff 0.7</a>: Bug fixes &amp; basic BSD support&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61902088778686464">#</a></li>
<li><a href="http://j.mp/hVBQ8R">sslstrip</a>: Major speed enhancements &amp; bug fixes&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62295735248502785">#</a></li>
<li><a href="http://j.mp/g1aIgu">SWFREtools</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62957582763044864">#</a></li>
<li><a href="http://j.mp/m9wuTD">wXf Update</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63421366451437568">#</a></li>
</ul>
<p>There were some <strong>government</strong> cyber security happenings last week as normal.</p>
<ul>
<li><a href="http://j.mp/ijV95i">Continuous Monitoring Still A Long Way Off For The Feds</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61640032963919872">#</a></li>
<li><a href="http://j.mp/hmeXpi">Shielding the Privacies of Life</a>: On limiting gov laptop seizures from US citizens at borders&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61894778748547072">#</a></li>
<li><a href="http://bit.ly/8ZbzBR">USGCB has Kickstart &amp; Puppet Configs for Redhat Linux</a>: <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62524363097899008">#</a></li>
<li><a href="http://bit.ly/fnS2ky">NSA Recommendations for RSA SecurID Users a/f Cyber Intrusion</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62668457770090496">#</a></li>
<li><a href="http://bit.ly/dYOt9M">SecureWorks</a>: Dell has FISMA, NIST &amp; FIPS service offerings. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62686461413167104">#</a></li>
<li><a href="http://j.mp/eOOFhb">Threat Inflation in Cybersecurity Policy</a>: If you read one thing today, make it this. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62954725598969856">#</a></li>
</ul>
<p>Any way not &#8230; here&#8217;s another section dedicated to the <strong>PSN compromise</strong>.</p>
<ul>
<li><a href="http://j.mp/gDtNog">PlayStation Hacker Got Personal Data</a>:  &#8220;if you can’t protect it, don’t collect it.” <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63030093185953792">#</a></li>
<li><a href="http://j.mp/euAA57">Sony Admits Utter PSN Failure</a>: Includes list of exposed data. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63077708636237824">#</a></li>
<li><a href="http://j.mp/mo8lIY">PlayStation Network Credit Cards Protected by Encryption</a>: Hopefully not easily cracked. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63424806351159297">#</a></li>
<li><a href="http://j.mp/lfLJHO">PSN Hack Triggers Lawsuit</a>: Bring on the lawsuits. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63633536418189312">#</a></li>
</ul>
<p>Here are just <strong>some cool things</strong> I came across that didn&#8217;t fit anywhere else.</p>
<ul>
<li><a href="http://j.mp/gCH0lz">8 Scenes That Prove Hollywood Doesn&#8217;t Get Technology</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61236823187394560">#</a></li>
<li><a href="http://bit.ly/gjmMZe">Hackertyper</a>: Hack like movie star &#8211; just type random keys. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62687137669189632">#</a></li>
<li><a href="http://j.mp/eVwEVc">Love Bug Malware-Inspired Film Gets Big Screen Premiere</a>: Mmm? First I heard of this. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63215038361636864">#</a></li>
<li><a href="http://j.mp/mQUFDj">State of Security from 1971 &#8211; 2020 Video</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63383652393947136">#</a></li>
</ul>
<p>And in closing, you can also keep yourself busy with these interesting <strong>newsbites</strong>:</p>
<ul>
<li><a href="http://j.mp/hzwpvQ">MSP Statement on Use of Cell Phone DEDs</a>: Only with search warrant or if consent given&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61723111283900416">#</a></li>
<li><a href="http://j.mp/e9ig07">Amazon Crash Reveals &#8216;Cloud&#8217; Computing Actually Based on Data Centers</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61745958937042944">#</a></li>
<li><a href="http://j.mp/flXlxC">Many AWS Sites Recover, Some Face Longer Wait</a>: Roundup of notable stories&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61750146530160640">#</a></li>
<li><a href="http://bit.ly/fQH1cB">Week 16 In Review</a>: Good recap as always. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62593981439148032">#</a></li>
<li><a href="http://reut.rs/fAyk2u">Iran is Seeing Stars</a>: New virus already pegged as &#8216;cyber attack&#8217;. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62667715978080257">#</a></li>
<li><a href="http://bit.ly/f0MAD8">UK Firm Offered Spy Software to Egypt</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62716974022668290">#</a></li>
<li><a href="http://j.mp/fu7E5y">SETI Institute Suspends Search for Aliens</a>: But the truth is out there. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/62949837196369920">#</a></li>
<li><a href="http://j.mp/idoBEF">MSP Seem to be Hiding Information</a>: Whether surreptitiously copied motorists&#8217; phone data&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63019613985832960">#</a></li>
<li><a href="http://j.mp/m7me5y">Kind of a Mess</a>: SSL inventor says need better authentication. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/63414035718217728">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-28+http%3A%2F%2Fj.mp%2Fla0CCZ" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/04/28/grecs-weekly-infosec-ramblings-for-2011-04-28/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-28" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/04/28/grecs-weekly-infosec-ramblings-for-2011-04-28/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2011-04-21</title>
		<link>http://www.novainfosecportal.com/2011/04/21/grecs-weekly-infosec-ramblings-for-2011-04-21/</link>
		<comments>http://www.novainfosecportal.com/2011/04/21/grecs-weekly-infosec-ramblings-for-2011-04-21/#comments</comments>
		<pubDate>Fri, 22 Apr 2011 01:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2011/04/21/grecs-weekly-infosec-ramblings-for-2011-04-21/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @grecs Twitter account. [Sorry for the unorganized data dump this week. New projects are keeping me busy. -Grecs] New Magazine Dedicated to Penetration Testing http://j.mp/fUA5wW #PTES #InfoSec (via @indi303) [Fr the Hackin9 guys.] # &#8220;@grecs @cktricky updated deck from troopers11 is here http://bit.ly/fIlIyz&#38;quot; (via @carnal0wnage) # An Interview With Twitter&#8217;s Forgotten Founder, Noah Glass http://j.mp/hzegzn &#60;&#8211; Interesting Read. (via @jasonmoliver) # Lolz, checking out @vincentkadmon on @pauldotcom. # Still looking 4 part-time website ad sales/marketing person or agency. If you know of someone, wld appreciate an intro. # Ok, finally got that 800-53 article out. Thanks to @Raelyn75 for the initial draft. # Now to prep another post from @cktricky. This is going to be a good one. # Apple releases Safari, Snow Leopard security updates http://bit.ly/gB7j9k [Isn't [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-21+http%3A%2F%2Fj.mp%2FmWCelb" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/04/21/grecs-weekly-infosec-ramblings-for-2011-04-21/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-21" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="/events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="/events/nova-meetups/#events-in-dc">DC</a>-, and <a href="/events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>[Sorry for the unorganized data dump this week. New projects are keeping me busy. -Grecs]</p>
<ul class="aktt_tweet_digest">
<li>New Magazine Dedicated to Penetration Testing <a rel="nofollow" href="http://j.mp/fUA5wW">http://j.mp/fUA5wW</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23PTES">PTES</a> #InfoSec (via @<a class="aktt_username" href="http://twitter.com/indi303">indi303</a>) [Fr the Hackin9 guys.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58688729778368512">#</a></li>
<li>&#8220;@grecs @<a class="aktt_username" href="http://twitter.com/cktricky">cktricky</a> updated deck from troopers11 is here <a rel="nofollow" href="http://bit.ly/fIlIyz&amp;quot">http://bit.ly/fIlIyz&amp;quot</a>; (via @<a class="aktt_username" href="http://twitter.com/carnal0wnage">carnal0wnage</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58693069947674625">#</a></li>
<li>An Interview With Twitter&#8217;s Forgotten Founder, Noah Glass <a rel="nofollow" href="http://j.mp/hzegzn">http://j.mp/hzegzn</a> &lt;&#8211; Interesting Read. (via @<a class="aktt_username" href="http://twitter.com/jasonmoliver">jasonmoliver</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58700316018868224">#</a></li>
<li>Lolz, checking out @<a class="aktt_username" href="http://twitter.com/vincentkadmon">vincentkadmon</a> on @<a class="aktt_username" href="http://twitter.com/pauldotcom">pauldotcom</a>. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58709837105729536">#</a></li>
<li>Still looking 4 part-time website ad sales/marketing person or agency. If you know of someone, wld appreciate an intro. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58733637482450944">#</a></li>
<li>Ok, finally got that 800-53 article out. Thanks to @<a class="aktt_username" href="http://twitter.com/Raelyn75">Raelyn75</a> for the initial draft. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58737745870340097">#</a></li>
<li>Now to prep another post from @<a class="aktt_username" href="http://twitter.com/cktricky">cktricky</a>. This is going to be a good one. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58737841202675712">#</a></li>
<li>Apple releases Safari, Snow Leopard security updates <a rel="nofollow" href="http://bit.ly/gB7j9k">http://bit.ly/gB7j9k</a> [Isn't this  2 major updates in 3 weeks?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58745764247109632">#</a></li>
<li>Apple iOS 4.3.2 released <a rel="nofollow" href="http://bit.ly/gPXhCc">http://bit.ly/gPXhCc</a> [Not Mac .. but another one for i* devices.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58746137456279552">#</a></li>
<li>BLOGGED: NIST Calls on Public for Security Controls Input <a rel="nofollow" href="http://bit.ly/gWt4hE">http://bit.ly/gWt4hE</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58748498471960577">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23JOB">JOB</a> IT security salaries remain flat even in wake of high-profile breaches <a rel="nofollow" href="http://j.mp/dKHqcb">http://j.mp/dKHqcb</a> (via @<a class="aktt_username" href="http://twitter.com/DarkReading">DarkReading</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58750386902802432">#</a></li>
<li>White House cybersecurity announcement today: <a rel="nofollow" href="http://j.mp/i8YkWY">http://j.mp/i8YkWY</a> by @<a class="aktt_username" href="http://twitter.com/BillBrenner70">BillBrenner70</a> @CSOonline (via @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58868753840078848">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> THC-Hydra v6.2 released <a rel="nofollow" href="http://j.mp/gMKPGU">http://j.mp/gMKPGU</a> (via @<a class="aktt_username" href="http://twitter.com/maxisoler">maxisoler</a> @mubix) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58906335290458112">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> April 19th is next Flex Your Rights Night at @<a class="aktt_username" href="http://twitter.com/Unallocated">Unallocated</a> Space! <a rel="nofollow" href="http://j.mp/eGXLtc">http://j.mp/eGXLtc</a> (via @<a class="aktt_username" href="http://twitter.com/Unallocated">Unallocated</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58907629954666496">#</a></li>
<li>Still looking 4 part-time website ad sales/marketing person or agency. If you know of someone, wld appreciate an intro. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58955375273189377">#</a></li>
<li>BLOGGED: NIST Calls on Public for Security Controls Input <a rel="nofollow" href="http://bit.ly/gWt4hE">http://bit.ly/gWt4hE</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58955721622032384">#</a></li>
<li>WordPress Hack Puts Government and Commercial Clients at Risk: <a rel="nofollow" href="http://j.mp/fiwVXI">http://j.mp/fiwVXI</a> (via @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58956164427300864">#</a></li>
<li>Happy 40th b-day FTP! But how secure is protocol written in 1971, last upd in 1985? <a rel="nofollow" href="http://j.mp/efaQbc">http://j.mp/efaQbc</a> (via @<a class="aktt_username" href="http://twitter.com/virusbtn">virusbtn</a> @iFail) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59022502223020032">#</a></li>
<li>Here is NSTIC Explanatory Video.. with fancy 3d graphics <a rel="nofollow" href="http://j.mp/gy5L5s">http://j.mp/gy5L5s</a> (via @<a class="aktt_username" href="http://twitter.com/EnzOnInfoSec">EnzOnInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59039788723998720">#</a></li>
<li>The NSTIC Strategy  <a rel="nofollow" href="http://j.mp/edBZGW">http://j.mp/edBZGW</a> (via @<a class="aktt_username" href="http://twitter.com/EnzOnInfoSec">EnzOnInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59040183428972545">#</a></li>
<li>Administration unveils strategy to create single digital pwd credential.. <a rel="nofollow" href="http://j.mp/eh0GA8">http://j.mp/eh0GA8</a> (via @<a class="aktt_username" href="http://twitter.com/GovInfoSecurity">GovInfoSecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59076974362099712">#</a></li>
<li>Scores Drop in AV-Test Lab Results <a rel="nofollow" href="http://j.mp/efuA8P">http://j.mp/efuA8P</a> (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [Let the AV company complaints begin.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59078141641109504">#</a></li>
<li>Oracle readies 73 patches in security update <a rel="nofollow" href="http://j.mp/hBgoNz">http://j.mp/hBgoNz</a> [Not bad considering they patch quarterly.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59078808652877824">#</a></li>
<li>AT&amp;T changed unlimited texting plan 2 include free mobile 2 mobile calling w/ any carrier in US U MUST call 2 change (via @<a class="aktt_username" href="http://twitter.com/jasonmoliver">jasonmoliver</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59243972635262976">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> Just released SET v.1.3.4, adds set-proxy, .. may be buggy <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  (via @<a class="aktt_username" href="http://twitter.com/dave_rel1k">dave_rel1k</a> @jasonmoliver) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59244685880852480">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NEWS">NEWS</a> In Google-Microsoft dustup, what does &#8216;FISMA-certified&#8217; mean? <a rel="nofollow" href="http://j.mp/i2x7JF">http://j.mp/i2x7JF</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) [Good read.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59273214047690752">#</a></li>
<li>Execute Metasploit payloads bypassing any anti-virus <a rel="nofollow" href="http://j.mp/fHkGEu">http://j.mp/fHkGEu</a> (via @<a class="aktt_username" href="http://twitter.com/carnal0wnage">carnal0wnage</a>) [Nice.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59275618998685696">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> New Versions of Wireshark released <a rel="nofollow" href="http://j.mp/g1CpXV">http://j.mp/g1CpXV</a> #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23sansisc">sansisc</a> (via @<a class="aktt_username" href="http://twitter.com/sans_isc">sans_isc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59459716883021824">#</a></li>
<li>Yesterday in 1971 RFC 114 was published. <a rel="nofollow" href="http://j.mp/gISnt7">http://j.mp/gISnt7</a> (via @<a class="aktt_username" href="http://twitter.com/bobgourley">bobgourley</a>) [Some good Sunday morning reading.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59617874863595520">#</a></li>
<li><a rel="nofollow" href="http://j.mp/f5lt3E">http://j.mp/f5lt3E</a>. &#8220;5 of 6 firewalls failed to handle a TCP Split Handshake or Sneak ACK attack.&#8221; (via @<a class="aktt_username" href="http://twitter.com/taosecurity">taosecurity</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59736317310926848">#</a></li>
<li>Titans Battle over $20B Annual GovCloud Market (by @<a class="aktt_username" href="http://twitter.com/GovCloud">GovCloud</a>) <a rel="nofollow" href="http://j.mp/hhjZzK">http://j.mp/hhjZzK</a> (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [More FISMA stuff.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59736880379465728">#</a></li>
<li>Good overview of proposed cybersec id plan from @<a class="aktt_username" href="http://twitter.com/DarkReading">DarkReading</a> <a rel="nofollow" href="http://j.mp/gFtzSO">http://j.mp/gFtzSO</a> (via @<a class="aktt_username" href="http://twitter.com/IdentityG_Steve">IdentityG_Steve</a> @mschafer) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59740116905762816">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23EDU">EDU</a> Plaid CTF <a rel="nofollow" href="http://www.plaidctf.com/">http://www.plaidctf.com/</a> starts next weekend &#8230;  yay (via @<a class="aktt_username" href="http://twitter.com/bojanz">bojanz</a> @DaKahuna2007) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59753790580064257">#</a></li>
<li>Grecs’ Weekly Infosec Ramblings for Last Week <a rel="nofollow" href="http://bit.ly/hqF3vN">http://bit.ly/hqF3vN</a> [Finally finished this. Recap of last week.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59776695510642688">#</a></li>
<li>Finished reviewing meetups for this week. Looks like there are 3. Plus SANS con still going on. http:/bit.ly/nispfullcal <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59838892274229248">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23EDU">EDU</a> 4/27 will b 1st of our monthly CISSP Seminars at @<a class="aktt_username" href="http://twitter.com/Unallocated">Unallocated</a>. All R welcome! <a rel="nofollow" href="http://j.mp/ecx5Ed">http://j.mp/ecx5Ed</a> (via @<a class="aktt_username" href="http://twitter.com/Unallocated">Unallocated</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59940374751363072">#</a></li>
<li>Apple faces class action lawsuit over in-app purchases <a rel="nofollow" href="http://j.mp/fOiqqC">http://j.mp/fOiqqC</a> [Why don't they just let us do returns?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59941236911513600">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> ISSA-DC 4/19 meeting speaker: Georgia #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23Weidman">Weidman</a> (@vincentkadmon) on mobile exploits. RSVP at <a rel="nofollow" href="http://www.issa-dc.org">http://www.issa-dc.org</a>. (via @<a class="aktt_username" href="http://twitter.com/issa_dc">issa_dc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59942799654653952">#</a></li>
<li>Dropbox has updated its privacy policy to acknowledge that it can decrypt users&#8217; files when compelled to do so. (via @<a class="aktt_username" href="http://twitter.com/csoghoian">csoghoian</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59950432109330432">#</a></li>
<li>Locking OS/X Computer <a rel="nofollow" href="http://bit.ly/eSxDVT">http://bit.ly/eSxDVT</a> (via @<a class="aktt_username" href="http://twitter.com/DaveMarcus">DaveMarcus</a> @DaKahuna2007) [Cool, locks when your iPhone is out of range.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59977973947842560">#</a></li>
<li>BLOGGED: Where You Want to Be This Week for 2011-04-18 <a rel="nofollow" href="http://bit.ly/gY2xnK">http://bit.ly/gY2xnK</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/59984845840986113">#</a></li>
<li>(ISC)2 is accepting U.S. Gov Infosec Leadership Awards (GISLA) nominations <a rel="nofollow" href="http://bit.ly/feJ4Q2">http://bit.ly/feJ4Q2</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60010954573877248">#</a></li>
<li>Grecs’ Weekly Infosec Ramblings for Last Week <a rel="nofollow" href="http://bit.ly/hqF3vN">http://bit.ly/hqF3vN</a> [Recap of last week.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60011233071468544">#</a></li>
<li>Yahoo Extends Data Retention fr 90 Days to 18 Months <a rel="nofollow" href="http://huff.to/esNtw9">http://huff.to/esNtw9</a> (via @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) [Any thoughts on this?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60012224000958464">#</a></li>
<li>RE <a rel="nofollow" href="http://bit.ly/hk6s6s">http://bit.ly/hk6s6s</a> I just find it odd that Google decreased their retention period few months back. I guess it wasn&#8217;t a trend. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60012609646239744">#</a></li>
<li>NIST issued draft 800-76-2 Biometric Data Specification for PIV <a rel="nofollow" href="http://1.usa.gov/i36n6J">http://1.usa.gov/i36n6J</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60038447829749760">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23JOB">JOB</a> Shortage of skilled cyber specialists fuels debate over pay <a rel="nofollow" href="http://bit.ly/hQFNz8">http://bit.ly/hQFNz8</a> (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) [Good news.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60159106094350336">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> Come watch me talk bots (possibly while still red..) @ issa-dc Tues 6:30 <a rel="nofollow" href="http://bit.ly/dOz2Bp">http://bit.ly/dOz2Bp</a> (via @<a class="aktt_username" href="http://twitter.com/vincentkadmon">vincentkadmon</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60161994141077504">#</a></li>
<li>redsn0w updated to include 4.3.2 untether by @<a class="aktt_username" href="http://twitter.com/i0n1c">i0n1c</a>: <a rel="nofollow" href="http://bit.ly/fQQaCM">http://bit.ly/fQQaCM</a> (via @<a class="aktt_username" href="http://twitter.com/MuscleNerd">MuscleNerd</a> @jaysonstreet) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60162473566801920">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> Windows Credentials Editor (WCE) v1.2 released <a rel="nofollow" href="http://bit.ly/eCeyLh">http://bit.ly/eCeyLh</a> (via @<a class="aktt_username" href="http://twitter.com/carnal0wnage">carnal0wnage</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60163154788892672">#</a></li>
<li>Ten-Year-Old, 2 Million PC Botnet Finally Killed; Stole up to $100M #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23USD">USD</a> <a rel="nofollow" href="http://bit.ly/ihYG9I">http://bit.ly/ihYG9I</a> (via @<a class="aktt_username" href="http://twitter.com/bobgourley">bobgourley</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60164392226009088">#</a></li>
<li>Verizon 2011 Data Breach Investigations Report <a rel="nofollow" href="http://j.mp/h3CNzj">http://j.mp/h3CNzj</a> (via @<a class="aktt_username" href="http://twitter.com/mschafer">mschafer</a>) [Looks like it is here.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60300778497245185">#</a></li>
<li>Dear Facebook: your privacy sucks <a rel="nofollow" href="http://j.mp/dGRCZF">http://j.mp/dGRCZF</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) [Go Sophos. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60302536447500288">#</a></li>
<li>97% drop in data theft leaves sec experts worrying how 2 sell shit <a rel="nofollow" href="http://j.mp/eIMyzr">http://j.mp/eIMyzr</a> (via @<a class="aktt_username" href="http://twitter.com/iamleeg">iamleeg</a> @Security_FAQs @<a class="aktt_username" href="http://twitter.com/jaysonstreet">jaysonstreet</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60303531692933121">#</a></li>
<li>Lost records down even though breach incidents soared <a rel="nofollow" href="http://j.mp/hWg8uA">http://j.mp/hWg8uA</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) [More on odd trends.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60304424064655361">#</a></li>
<li>BLOGGED: The Web Exploitation Framework (wXf) Project <a rel="nofollow" href="http://bit.ly/hmMQHh">http://bit.ly/hmMQHh</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60354727778594816">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23TOOL">TOOL</a> Dradis Framework 2.7 is out <a rel="nofollow" href="http://bit.ly/eMZcfJ">http://bit.ly/eMZcfJ</a> (via @<a class="aktt_username" href="http://twitter.com/cktricky">cktricky</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60365695246012416">#</a></li>
<li>How to Read &amp; Act on 2011 Verizon DBIR <a rel="nofollow" href="http://bit.ly/hxsYH1">http://bit.ly/hxsYH1</a> (via @<a class="aktt_username" href="http://twitter.com/EvilFingers">EvilFingers</a> @DaKahuna2007) [Some good actionable info.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60366606559219713">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> Tonight is Flex Your Rights Night at @<a class="aktt_username" href="http://twitter.com/Unallocated">Unallocated</a> Space! <a rel="nofollow" href="http://bit.ly/eGXLtc">http://bit.ly/eGXLtc</a> (via @<a class="aktt_username" href="http://twitter.com/Unallocated">Unallocated</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60366816832266241">#</a></li>
<li>Rogue Twitter Counter App Punts Survey Ccam <a rel="nofollow" href="http://bit.ly/hgPkCf">http://bit.ly/hgPkCf</a> (via @<a class="aktt_username" href="http://twitter.com/regsecurity">regsecurity</a>) [Be on the lookout this morning.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60367725972824065">#</a></li>
<li>2011 TDBIR (Twitter #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23DBIR">DBIR</a> : Attacks change, but still exploit poor security; breaches avoidable via basic controls. Do &#8216;em. (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60440057860988928">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NOVABLOGGER">NOVABLOGGER</a> Data Breach Report Overload <a rel="nofollow" href="http://bit.ly/h5LU4P">http://bit.ly/h5LU4P</a> <a rel="nofollow" href="http://j.mp/nispblog">http://j.mp/nispblog</a> (via @<a class="aktt_username" href="http://twitter.com/novainfosec">novainfosec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60502303236558848">#</a></li>
<li>Skytalks CFP now open <a rel="nofollow" href="http://bit.ly/egcmmR">http://bit.ly/egcmmR</a> (via @<a class="aktt_username" href="http://twitter.com/dcskytalks">dcskytalks</a> @carnal0wnage) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60503252256559104">#</a></li>
<li>RT @<a class="aktt_username" href="http://twitter.com/iamnowonmai">iamnowonmai</a>: Anyone have any guesses what &#8220;heavily encrypted&#8221; means and how they &#8220;cracked it?&#8221; <a rel="nofollow" href="http://goo.gl/nIU7x">http://goo.gl/nIU7x</a> &lt;- +1 <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60504150458368000">#</a></li>
<li>Crazy idea: hybrid light w/ traditional incandescant filament that shuts off once CFL component warms. (via @<a class="aktt_username" href="http://twitter.com/schuetzdj">schuetzdj</a>) &lt;- Nice! <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60525195764580352">#</a></li>
<li>RT @<a class="aktt_username" href="http://twitter.com/skynetOFFICIAL">skynetOFFICIAL</a>: JUST REALIZED I&#8217;M THE SHIT.  #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23HELLOWORLD">HELLOWORLD</a> (via @<a class="aktt_username" href="http://twitter.com/nonrational">nonrational</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60530391899045889">#</a></li>
<li>Get with IT: Once More Into the Breach <a rel="nofollow" href="http://j.mp/hHikJ1">http://j.mp/hHikJ1</a> [good read] (via @<a class="aktt_username" href="http://twitter.com/DrInfoSec">DrInfoSec</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60669923298521089">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NOVABLOGGER">NOVABLOGGER</a> Had some fun making flat files from NMAP XML output .. <a rel="nofollow" href="http://j.mp/gNJlN2">http://j.mp/gNJlN2</a> (via @<a class="aktt_username" href="http://twitter.com/jasonmoliver">jasonmoliver</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60679991867879424">#</a></li>
<li>MI police extracting data from cell phones when they stop motorists: <a rel="nofollow" href="http://bit.ly/eu0G2Y">http://bit.ly/eu0G2Y</a> (via @<a class="aktt_username" href="http://twitter.com/alexhutton">alexhutton</a>) [Mmm?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60749719416209409">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23MEETUP">MEETUP</a> ONE WEEK until next #<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23capsecdc">capsecdc</a> Hope to see U all at Stetson&#8217;s on 27th! <a rel="nofollow" href="http://bit.ly/g3xeLx">http://bit.ly/g3xeLx</a> (via @<a class="aktt_username" href="http://twitter.com/capsecdc">capsecdc</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60752053319905280">#</a></li>
<li>Facebook adds 2-factor authentication <a rel="nofollow" href="http://j.mp/dG1BKt">http://j.mp/dG1BKt</a> (via @<a class="aktt_username" href="http://twitter.com/DarkReading">DarkReading</a>) [Woot! Now need private by default.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60790563271741440">#</a></li>
<li>iphone logging your location <a rel="nofollow" href="http://j.mp/e4Oqvx">http://j.mp/e4Oqvx</a> &lt;- very interesting! (via @<a class="aktt_username" href="http://twitter.com/johullrich">johullrich</a> @agent0x0 @<a class="aktt_username" href="http://twitter.com/cktricky">cktricky</a>) [Why?] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60791591056572416">#</a></li>
<li>Mmm? iPhone4 self-tracking .. MI police imaging your phone .. Hopefully, data on phone is encrypted without pwd. Anyone know? <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60792900744781824">#</a></li>
<li>If I recall only a portion of data on iPhone4s are encrypted. Everything else is available to MI police dept. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60793141044842496">#</a></li>
<li>iPhones secretly track &#8216;scary amount&#8217; of your movements <a rel="nofollow" href="http://bit.ly/hsbrO2">http://bit.ly/hsbrO2</a> [Mmm? Get pwned &amp; they download this data.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60796736108625920">#</a></li>
<li>Looking 4 part-time website ad sales/marketing person or agency. If you know of someone, wld appreciate an intro. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60798541114785793">#</a></li>
<li>Anyone got suggestions for native Pandora OS X app (not AIR-based)? AppStore has Musicality. Also found PandoraJam. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60846258071420928">#</a></li>
<li>Just finished a quick post. Nothing important .. just trying to find out more about the readers. <a rel="nofollow" href="http://bit.ly/f42Lfy">http://bit.ly/f42Lfy</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60912189250342912">#</a></li>
<li>Oh and there&#8217;s a $25 prize .. just to lure you all in. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' />  <a rel="nofollow" href="http://bit.ly/f42Lfy">http://bit.ly/f42Lfy</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60912399498215424">#</a></li>
<li>BLOGGED: Who are you all? <a rel="nofollow" href="http://bit.ly/f42Lfy">http://bit.ly/f42Lfy</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/60917948168151040">#</a></li>
<li>Would appreciate all U in DC metro area taking this 2min survey. <a rel="nofollow" href="http://bit.ly/f42Lfy">http://bit.ly/f42Lfy</a> RTs are of course welcomed. Tx! <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61079752869556224">#</a></li>
<li>Oh &amp; there&#8217;s a $25 sweepstakes prize as well. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' />  <a rel="nofollow" href="http://bit.ly/f42Lfy">http://bit.ly/f42Lfy</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61079968477753344">#</a></li>
<li>More on cops snarfing cellphone data.. <a rel="nofollow" href="http://bit.ly/hdK09T">http://bit.ly/hdK09T</a> [One solution .. carry an old charged phone in the car. <img src='http://www.novainfosecportal.com/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> ] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61081871433478144">#</a></li>
<li>#<a class="aktt_hashtag" href="http://search.twitter.com/search?q=%23NOVABLOGGER">NOVABLOGGER</a> Is the iOS 4 location tracking privacy issue overblown? <a rel="nofollow" href="http://bit.ly/dK6NWi">http://bit.ly/dK6NWi</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61083035994570754">#</a></li>
<li>USDA awards FISMA certification for Microsoft&#8217;s Business Productivity Online Suite  <a rel="nofollow" href="http://bit.ly/hzlMVS">http://bit.ly/hzlMVS</a> (via @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61098336291258368">#</a></li>
<li>RE <a rel="nofollow" href="http://bit.ly/dHLdLc">http://bit.ly/dHLdLc</a> I think they mean &#8220;accreditation&#8221; (not &#8220;certification&#8221;). Right, @<a class="aktt_username" href="http://twitter.com/danphilpott">danphilpott</a> ? <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/61099243573739521">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-21+http%3A%2F%2Fj.mp%2FmWCelb" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/04/21/grecs-weekly-infosec-ramblings-for-2011-04-21/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-21" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/04/21/grecs-weekly-infosec-ramblings-for-2011-04-21/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2011-04-14</title>
		<link>http://www.novainfosecportal.com/2011/04/14/grecs-weekly-infosec-ramblings-for-2011-04-14/</link>
		<comments>http://www.novainfosecportal.com/2011/04/14/grecs-weekly-infosec-ramblings-for-2011-04-14/#comments</comments>
		<pubDate>Fri, 15 Apr 2011 01:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2011/04/14/grecs-weekly-infosec-ramblings-for-2011-04-14/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @grecs Twitter account. There were a few meetups this past week. Did you get to attend any of them? NoVA Hackers Meeting &#8211; April 11, 2011 # OWASP NoVA April 2011 Preso Decks are posted # There’s also some upcoming meetups for those of you who are interested. OWASP NoVA: They&#8217;re looking for speaker(s), host(s), &#38; food sponsors for 5/5 meeting. # # Charmsec: Looks to be set for 4/28. # If you don&#8217;t have time to make it to any of the weekly security meetups, why not try attending this upcoming conference? And be sure to check out our event calendar for even more upcoming meetups and conferences. National Cyber Security Innovations Conference: A SANS thing&#8230; # For those of you that don’t know, we have some [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-14+http%3A%2F%2Fj.mp%2FhqF3vN" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/04/14/grecs-weekly-infosec-ramblings-for-2011-04-14/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-14" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="/events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="/events/nova-meetups/#events-in-dc">DC</a>-, and <a href="/events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>There were a few <strong>meetups this past week</strong>. Did you get to attend any of them?</p>
<ul>
<li><a href="http://bit.ly/fohAr1">NoVA Hackers Meeting &#8211; April 11, 2011</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56870541230997504">#</a></li>
<li><a href="http://j.mp/hytWN7">OWASP NoVA April 2011 Preso Decks are posted</a><a rel="nofollow" href="http://j.mp/hytWN7"></a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58329367486533633">#</a></li>
</ul>
<p>There’s also some <strong>upcoming meetups</strong> for those of you who are interested.</p>
<ul>
<li><a href="https://www.owasp.org/index.php/Virginia#tab=Schedule">OWASP NoVA</a>: They&#8217;re looking for speaker(s), host(s), &amp; food sponsors for 5/5 meeting. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56378477200412673">#</a> <a href="http://twitter.com/grecs/statuses/56485633614553088">#</a></li>
<li><a href="http://www.charmsec.org/">Charmsec</a>: Looks to be set for 4/28. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57642660449624064">#</a></li>
</ul>
<p>If you don&#8217;t have time to make it to any of the weekly security meetups, why not try attending this <strong>upcoming conference</strong>? And be sure to check out <a href="/full-calendar/">our event calendar</a> for even more upcoming meetups and conferences.</p>
<ul>
<li><a href="http://www.sans.org/cyber-security-innovation-2011/">National Cyber Security Innovations Conference</a>: A SANS thing&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58618500557709314">#</a></li>
</ul>
<p>For those of you that don’t know, we have some pretty awesome <strong>infosec bloggers in the local area</strong>. Here are some of my picks.</p>
<ul>
<li><a href="http://bit.ly/eHJ1Y5">Some Comments on SP 800-39</a><a rel="nofollow" href="http://j.mp/nispblog"></a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56414957029429248">#</a></li>
<li><a href="http://bit.ly/gOqqy2">Why The New School Is Important</a>: Metrics won’t solve your probs&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56444061019672576">#</a></li>
<li><a href="http://bit.ly/gYs32n">Sharing on a Need-to-Know Basis</a>: Word. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56882117707182080">#</a></li>
<li><a href="http://bit.ly/fGio6Y">Announcing RedSpartan</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57629184155074560">#</a></li>
<li><a href="http://j.mp/eHxLoz">What is Risk (again)?</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57771892093878273">#</a></li>
<li><a href="http://bit.ly/eIoQaM">If It Were Simple, We’d Do It All the Time</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57848585139666945">#</a></li>
</ul>
<p>In case you missed them, here were some of <strong>our blog posts</strong> from this week.</p>
<ul>
<li><a href="http://bit.ly/dY2vw1">Grecs’ Weekly Infosec Ramblings for 2011-04-07</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57289743922249728">#</a></li>
<li><a href="http://bit.ly/dZy6Un">Where You Want to Be This Week for 2011-04-11</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57457867095146497">#</a></li>
</ul>
<p>As usual &#8230; lots of <strong>government</strong> related things happening in the &#8220;cyber security&#8221; area.</p>
<ul>
<li><a href="http://bit.ly/f7I2Su">Feds Face Cybersecurity Challenges in Government Shutdown</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56109280163659776">#</a></li>
<li><a href="http://bloom.bg/gCVAYv">Energy Infrastructure Lacks Advanced Defense From Cyber Attacks</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56112244936818688">#</a></li>
<li><a href="http://bit.ly/dMyHqJ">Budget Icebergs, Fiscal Anchors &amp; Boat (Fed)RAMP to Nowhere?</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56498750876696576">#</a></li>
<li><a href="http://fis.ma/hW5S1z">DARPA Will Spend $20 Million To Search For Crypto’s Holy Grail</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56692454564433921">#</a></li>
<li><a href="http://fis.ma/h7IZCK">Mapping of ISO17799:2000/5, 800-53r3, CIP, HIPAA, SOX, GLB, SB-1386</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57628336503013376">#</a></li>
<li><a href="http://j.mp/gyzeYN">NIST, GSA: Real #<span class="aktt_hashtag">Cloud</span> Guidance by Fall 2011</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57639368445280256">#</a></li>
<li><a href="http://twitter.com/grecs/statuses/57807483988746240">GSA expected to finalize FedRAMP (IT risk assessment) plan tomorrow&#8230;</a>: Did this happen?</li>
<li><a href="http://j.mp/fp085D">DOJ Takes Down Financial Information-Stealing &#8216;Coreflood&#8217; Botnet</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58376173117382656">#</a> (<a href="http://j.mp/eOLMaZ">more</a> <a href="http://twitter.com/grecs/statuses/58493726921728000">#</a>)</li>
</ul>
<p>Although despite all the money we are spending, the various <strong>breaches and compromises</strong> continue to flood the news streams.</p>
<ul>
<li><a href="http://bit.ly/fOJLVz">Epsilon worries it may lose business after major data breach</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56114370819788800">#</a></li>
<li><a href="http://bit.ly/hgnRoq">Infographic: Anatomy of a Phishing Attack</a>: Good awareness poster to pass around. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56146602330554368">#</a></li>
<li><a href="http://bit.ly/hSjlk9">Opt Out of All <span class="aktt_hashtag">Epsilon</span> Email Lists</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56379994053677056">#</a></li>
<li><a href="http://bit.ly/h9bWoA">Blackhole Exploit Posted on US Postal Service Site</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56481712858857472">#</a></li>
<li><a href="http://bit.ly/h857MK">Epsilon Breach Highlights Cloud Computing Sec Concerns</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57406606681444352">#</a></li>
<li><a href="http://bit.ly/fiIZoW">WordPress.com Hack Exposes Confidential Code</a>: More WordPress woes. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58255242818617344">#</a></li>
<li><a href="http://j.mp/etJLvF">VMWare Customer Detail Lookup</a>: VMware responded quickly on this 1. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58521290545430528">#</a></li>
</ul>
<p>Of course with all these <strong>new and updated tools</strong>, no wonder it&#8217;s so easy.</p>
<ul>
<li><a href="http://bit.ly/dV0fTV">Security Onion 20110321</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56117212645294080">#</a></li>
<li><a href="http://bit.ly/etGxs5">Cain &amp; Abel 4.9.40 Released</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56340924472639488">#</a></li>
<li><a href="http://bit.ly/exyjLj">Maltego 3.0.4 Released</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56484397209223169">#</a></li>
<li><a href="http://bit.ly/gRfhKc">Armitage 04.10.11 is out</a>: Post-expl host discovery, nmap in a tab, loot viewer, &#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57125446902489088">#</a></li>
<li><a href="http://bit.ly/ibKbmG">BEEF Documentation Update</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57201233236197376">#</a></li>
<li><a href="http://bit.ly/gqZZ5H">RawCap Released</a>: A 17kb Win packet capture tool that doesn&#8217;t need WinPcap&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57261963113267200">#</a></li>
<li><a href="http://bit.ly/iaV3Nc">YUMI &#8211; Multiboot USB Creator</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57262564165435392">#</a></li>
<li><a href="http://bit.ly/eXbk61">SQLMap 0.9 Released</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57518860676509696">#</a></li>
<li><a href="http://bit.ly/dYHZFJ">RedSpartan Announced</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57519829917245440">#</a></li>
<li><a href="http://j.mp/hOTGkA">wXf / Dradis New Logger Function</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57628811415654400">#</a></li>
<li><a href="http://j.mp/eeOM1t">OllyDbg 2.01 alpha 3 Released</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57911490145038336">#</a></li>
<li><a href="http://j.mp/emwlhL">Toshiba Self-Wiping Hard Drives</a>: Now we just need SSDs that do same. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58329063399493632">#</a></li>
</ul>
<p>But if you still want to make a difference, here are some <strong>job and educational opportunities</strong>.</p>
<ul>
<li><a href="http://rtn.co/dORf1u">Unconventional Methods Needed to Recruit Cyberwarriors</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56415737698463744">#</a></li>
<li><a href="http://1.usa.gov/e4I9FB">Supervisory Information Technology Specialist</a>: <span class="aktt_hashtag">DHS</span> job working cybersec ctrl systems&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57113182296227840">#</a></li>
<li><a href="http://j.mp/dKe3Zi">US Cyber Challenge Seeks Competitors for Online Quest</a>: Great opp for students. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57907070107787266">#</a></li>
<li><a href="http://j.mp/gLxC9T">Cyber Forensics &#8211; SRA International</a>: Position in <span class="aktt_hashtag">Leesburg</span>, VA&#8230; <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58134335164919809">#</a></li>
</ul>
<p>Or you could write some good <strong>analysis, opinion, or research pieces</strong> like these people.</p>
<ul>
<li><a href="http://bit.ly/fKI6fO">Security and Ultra Violence</a>:Use CM to replace sec products. Nice! <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56676874637688832">#</a></li>
<li><a href="http://bit.ly/efmZ54">Pros/Cons of &#8220;Secure&#8221; Wi-Fi Access</a>: Excellent post! <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57120043921715200">#</a></li>
<li><a href="http://bit.ly/ezT75M">How is SSL hopelessly broken? Let us count the ways.</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57284233546305536">#</a></li>
<li><a href="http://bit.ly/hd3y8m">Lack of Admin Rights Mitigates Most Microsoft Vulnerabilities</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57846561094369280">#</a></li>
<li><a href="http://j.mp/hbMEeK">Security Researcher Warns over Dropbox Authentication Security Flaw</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58001033716187136">#</a></li>
<li><a href="http://j.mp/fDsAIB">Taming Your &#8220;Unknown Unknowns&#8221; through Network Traffic Analysis</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58331756817956865">#</a></li>
</ul>
<p>You can also keep yourself busy with these interesting <strong>newsbites</strong>:</p>
<ul>
<li><a href="http://dlvr.it/Mp1QP">Microsoft&#8217;s April Patch Batch to Address 64 Flaws</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56208997501509632">#</a></li>
<li><a href="http://bit.ly/hI5QNg">EFF Uncovers Evidence Of Certificate Authority Apathy</a>: Nother chink in SSL. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56341114927579136">#</a></li>
<li><a href="http://bit.ly/gel4eO">4Square Enhances Security by Moving to HTTPS</a>: So glad 2 see this happening. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57121363151962112">#</a></li>
<li><a href="http://j.mp/gRVZNN">Apple AirPlay Private Key Exposed</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57565258428059648">#</a></li>
<li><a href="http://j.mp/hvtUGI">TheOpenGroup Releases Maturity Model for Infosec Mgmt</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57639872093097984">#</a></li>
<li><a href="http://j.mp/hiLNmf">Google Says It Has FISMA &#8211; DOJ Says No&#8230;</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57642097880203265">#</a> (<a href="http://j.mp/hZCfK7">Google&#8217;s Response</a> <a href="http://twitter.com/grecs/statuses/57770645362188288">#</a>)</li>
<li><a href="http://j.mp/fM79Oz">Cloud Security: Amazon&#8217;s EC2 Serves Up &#8216;Certified Pre-Owned&#8217; Server Images</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/58202635110580225">#</a></li>
</ul>
<p>And in closing, who could forget the <strong>tweets of the week</strong>?</p>
<ul>
<li>Me: Have you ever heard a busy signal? My friend&#8217;s 15 year-old son:  What&#8217;s that? Me: &#8230; My friend: &#8230; His son: &#8230;what? (via @<a href="http://twitter.com/wilw">wilw</a>) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/56884535484358656">#</a></li>
<li>Hmm &#8230; Beltway software = Beltware? &lt;- CyberBeltWare (via @<a class="aktt_username" href="http://twitter.com/451wendy">451wendy</a> @andrewsmhay) [Lol.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/57771477424029696">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-14+http%3A%2F%2Fj.mp%2FhqF3vN" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/04/14/grecs-weekly-infosec-ramblings-for-2011-04-14/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-14" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/04/14/grecs-weekly-infosec-ramblings-for-2011-04-14/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Grecs&#8217; Weekly Infosec Ramblings for 2011-04-07</title>
		<link>http://www.novainfosecportal.com/2011/04/07/grecs-weekly-infosec-ramblings-for-2011-04-07/</link>
		<comments>http://www.novainfosecportal.com/2011/04/07/grecs-weekly-infosec-ramblings-for-2011-04-07/#comments</comments>
		<pubDate>Fri, 08 Apr 2011 01:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">https://www.novainfosecportal.com/2011/04/07/grecs-weekly-infosec-ramblings-for-2011-04-07/</guid>
		<description><![CDATA[If you’re not already following some of our excellent NovaInfosec Twits and are wondering where to get the best NoVA-, DC-, and MD-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @grecs Twitter account. There seemed to be quite a few meetups this past week. Did you get to attend any of them? 2600 Arlington: Met the 1st Fri of the month. 4 people showed up. # # OWASP NoVA: They talked XSS this month. # Unallocated Space: Ran their monthly lock picking session and installed a loft. # If you don&#8217;t have time to make it to any of the weekly security meetups, why not try attending one of these upcoming conferences? Except for DEFCON (which I had to make an exception for) everything else is local. And be sure to check out our event calendar for even more upcoming meetups and conferences. Cyber Warfare &#38; Security Summit 2011 # DEFCON: CTF qualifier registration is now open. # [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-07+http%3A%2F%2Fj.mp%2FdY2vw1" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/04/07/grecs-weekly-infosec-ramblings-for-2011-04-07/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-07" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>If you’re not already following some of our excellent <a href="/resources/nova-email-lists-networking/novainfosec-twits/">NovaInfosec Twits</a> and are wondering where to get the best <a href="/events/nova-meetups/#events-in-nova">NoVA</a>-, <a href="/events/nova-meetups/#events-in-dc">DC</a>-, and <a href="/events/nova-meetups/#events-in-md">MD</a>-related security tweets, look no further than this post. Published every Friday, our &#8220;Infosec Ramblings&#8221; post takes many of my security tweets/RTs from the past week and puts them into one easy to digest post. And if you don’t want to wait an entire week, just stop on by my @<a href="http://twitter.com/grecs">grecs</a> Twitter account.</p>
<p>There seemed to be quite a few <strong>meetups this past week</strong>. Did you get to attend any of them?</p>
<ul>
<li>2600 Arlington: Met the 1st Fri of the month. 4 people showed up. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/53881251827953665">#</a> <a href="http://twitter.com/grecs/statuses/55306120796971008">#</a></li>
<li><a href="http://bit.ly/fj5beu">OWASP NoVA</a>: They talked XSS this month. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55742995726741505">#</a></li>
<li><a href="http://bit.ly/hE0vRJ">Unallocated Space</a>: Ran their monthly lock picking session and installed a loft. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55757308449402881">#</a></li>
</ul>
<p>If you don&#8217;t have time to make it to any of the weekly security meetups, why not try attending one of these <strong>upcoming conferences</strong>? Except for DEFCON (which I had to make an exception for) everything else is local. And be sure to check out <a href="/full-calendar/">our event calendar</a> for even more upcoming meetups and conferences.</p>
<ul>
<li><a href="http://is.gd/ylb2ph">Cyber Warfare &amp; Security Summit 2011</a><a rel="nofollow" href="http://is.gd/ylb2ph"></a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/54316215283367936">#</a></li>
<li><a href="http://www.ddtek.biz/">DEFCON</a>: CTF qualifier registration is now open. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/54357916362358784">#</a></li>
<li><a href="http://bit.ly/e4XpLe">Health Info Security Conference</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55047157396410368">#</a></li>
<li><a href="http://bit.ly/gscEve">Information Security Events For April</a><a rel="nofollow" href="http://bit.ly/gscEve"></a>: Here are some other events. Only one in NoVA. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/54375466567602176">#</a></li>
</ul>
<p>For those of you that don’t know, we have some pretty awesome <strong>infosec bloggers in the local area</strong>. Here were some of my top picks.</p>
<ul>
<li><a href="http://bit.ly/gwVUxu">All Reading Is Not Equal or Fast</a><a rel="nofollow" href="http://bit.ly/gwVUxu"></a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/53881144684457984">#</a></li>
<li><a href="http://bit.ly/euBdjV">Error, Will Robinson, Error: Implications of Rate vs Instance in Cyber Security</a><a rel="nofollow" href="http://bit.ly/euBdjV"></a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/54651318387736576">#</a></li>
<li><a href="http://bit.ly/gjxjGU">Sammy Hagar &amp; <span class="aktt_hashtag">SourceBoston</span></a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55042044325928960">#</a></li>
</ul>
<p>In case you missed them .. <strong>our blog posts from this week</strong>. Hopefully, we can get this up some. Anyone want to guest post?</p>
<ul>
<li><a href="http://bit.ly/h77D0M">Top 3 NoVA Infosec Blog Posts of the Week</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/53876990771593216">#</a></li>
<li><a href="http://bit.ly/guKn9b">Where You Want to Be This Week for 2011-04-04</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/54950963785637888">#</a></li>
</ul>
<p>The <strong>infosec job market</strong> continues to look good.</p>
<ul>
<li><a href="http://is.gd/aarK0n">Info Security Analysts Jobless Rate: Zilch</a>: No 100% true. I know a few. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/54325515875647488">#</a></li>
<li><a href="http://dlvr.it/MS5zq">How do you begin an information security career?</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55058418595135488">#</a></li>
<li><a href="http://bit.ly/hiWh3u">Web App Security Consultant</a>: Here&#8217;s a possible telecommuting position. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55328680699891712">#</a></li>
<li><a href="http://1.usa.gov/dXaMtn">Supervisory Information Technology Specialist</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55340413099311105">#</a></li>
<li><a href="http://bit.ly/csVBoR">Mandiant Positions</a>: They&#8217;re hiring in DC too. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55450753594179584">#</a></li>
<li><a href="http://nmap.org/soc">Nmap Summer of Code</a>: Seeking students for their annual project. Earn $5,000! <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55464135563022336">#</a></li>
<li><a href="http://bit.ly/eHl7aT">Global Cyber Security Market to Reach $80.02 Billion by 2017</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55751715424698368">#</a></li>
<li><a href="http://bit.ly/g7gBWo">10 Top Gov IT Security Certs</a>: There&#8217;s a few infosec certs there too. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55970134501769216">#</a></li>
</ul>
<p>As usual the <strong>government</strong> continues to be active in this new field called &#8220;cyber security.&#8221; It&#8217;s like information security except that it involves the government.</p>
<ul>
<li><a href="http://is.gd/9UP40c">Advanced Persistent Threat Definition Evolves</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/53642505073336320">#</a></li>
<li><a href="http://is.gd/Ndw4uh">White House IT Dashboard Released as Open Source</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/53642527940685825">#</a> (<a href="http://bit.ly/i58Gef">also</a> <a href="http://twitter.com/grecs/statuses/55327315982426112">#</a>)</li>
<li><a href="http://fis.ma/gm427F">NIST issued SB 2011-03 Managing Info Sec Risk: Org, Mission &amp; Info Sys View</a> (PDF) <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55755758071058432">#</a></li>
<li><a href="http://bit.ly/fEymif">OPM Provides Shutdown Briefing</a>: Thank goodness this didn&#8217;t happen &#8230; this week. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55758511627440128">#</a></li>
<li><a href="http://bit.ly/i4sqwN">Laptops Brought into US May Be Seized &amp; Sent to Secondary Site 4 Forensic Inspection</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55852233673281536">#</a></li>
</ul>
<p>Lots of interesting new and updated <strong>security tools and resources</strong> were released or updated this past week.</p>
<ul>
<li><a href="http://is.gd/F64u9M">Creepy App Warns of End to Privacy</a><a rel="nofollow" href="http://is.gd/F64u9M"></a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/53798329653526528">#</a></li>
<li><a href="http://is.gd/9z8bky">New Metasploit Website</a>: Good place to learn, download &amp; contribute. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/53839015006318593">#</a></li>
<li><a href="http://is.gd/XlAiMD">Metasploit Exploit Browser</a>: Want more info on an exploit module? <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/54324346415616000">#</a></li>
<li>SET v.1.3.1 Released: Got a great tutorial on this at Metasploit Unleashed class. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/54886693848883200">#</a></li>
<li><a href="http://bit.ly/h8hfy0">Bizploit is First Opensource ERP Penetration Testing Framework</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55850917089640448">#</a></li>
</ul>
<p>You can also keep yourself busy with these interesting <strong>newsbites</strong>:</p>
<ul>
<li><a href="http://is.gd/tBikcS">DNSSEC Finally Goes Mainstream</a>: .com finally gets signed. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/53883833417859073">#</a></li>
<li><a href="http://is.gd/rOgCWE">Identity Theft&#8217;s Next Frontier: Your Kids</a>: This is sooooo not cool. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/54196582656118784">#</a></li>
<li><a href="http://is.gd/8V1XLo">Lizamoon Strikes Millions of URLs</a>: SQLi seems to be so &#8220;in&#8221; right now. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/54325023103660033">#</a> (<a href="http://is.gd/18PpIj">more</a> <a href="http://twitter.com/grecs/statuses/53664845970669568">#</a>)</li>
<li><a href="http://sns.mx/AUcty3">New Privacy Rules re Buzz Settlement</a>: Man, is this still going on? <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/54519394465886208">#</a></li>
<li><a href="http://is.gd/5Lhu7r">Untethered iOS 4.3.1 Jailbreak</a>: Why does Apple even try anymore? <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/54645545872015360">#</a></li>
<li><a href="http://is.gd/dJkOXB">E-mail Compromised at Epsilon</a>: Way too much <a href="http://bit.ly/gITRyB">media</a> <a href="http://twitter.com/grecs/statuses/55740562204147713">#</a> <a href="http://cnet.co/ekwNSS">attention</a> <a href="http://twitter.com/grecs/statuses/55751207221866497">#</a>. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/54700593050173440">#</a><a href="http://twitter.com/grecs/statuses/55751207221866497"></a></li>
<li><a href="http://bit.ly/ejZZ7L">NetWitness acquired by EMC (RSA)</a>: The security industry continues to consolidate. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/54932662573477889">#</a></li>
<li><a href="http://bit.ly/hoNpAQ">Attack Hijacks Sensitive Data using Windows Features</a>: Bad defaults as usual. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55086742449029120">#</a></li>
<li><a href="http://bit.ly/h3G4nV">Pandora Subpoenaed Over Privacy of iPhone/Android Apps</a>: Why Pandora? Why? <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55091520063279104">#</a> (<a href="http://bit.ly/eRyKme">more</a> <a href="http://twitter.com/grecs/statuses/55756898707845120">#</a>)</li>
<li><a href="http://bit.ly/eXpRa0">No Such Thing as Bad Publicity: RSA Breach Might Help Drive Sales</a>: Interesting thoughts. <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55690380196319232">#</a></li>
<li><a href="http://bit.ly/hjxHZQ">Storing Passwords as Hashes Instead of Plaintext Now Illegal in France</a>: Really? <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55971145178030082">#</a></li>
</ul>
<p>And in closing, who could forget the tweets of the week?</p>
<ul>
<li>RT @<a class="aktt_username" href="http://twitter.com/Shpantzer">Shpantzer</a>: Artist&#8217;s rendering of .gov/.mil infosec holy grrrrrrail.. <a rel="nofollow" href="http://twitpic.com/4h26ua">http://twitpic.com/4h26ua</a> Inspired by @<a class="aktt_username" href="http://twitter.com/bbaskin">bbaskin</a> <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55092546195558400">#</a></li>
<li>APTaaS (via @<a class="aktt_username" href="http://twitter.com/jack_daniel">jack_daniel</a>) [Nice.] <a class="aktt_tweet_time" href="http://twitter.com/grecs/statuses/55329056358539264">#</a></li>
</ul>
<p>Well, that&#8217;s all for this week. Be sure to follow me on Twitter at @<a href="http://twitter.com/grecs">grecs</a> for more great tweets during the week! See ya&#8230;</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-07+http%3A%2F%2Fj.mp%2FdY2vw1" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/04/07/grecs-weekly-infosec-ramblings-for-2011-04-07/&amp;t=Grecs%E2%80%99+Weekly+Infosec+Ramblings+for+2011-04-07" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/04/07/grecs-weekly-infosec-ramblings-for-2011-04-07/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

