Resources

AppSecDC Recap: SharePoint Security 101

April 5, 2012
By
AppSecDC Recap: SharePoint Security 101

I’ve written about SharePoint security before and my opinion was that it’s getting much better however they have a lot of insecure stigma to shake off. Additionally, securing it can be done however it may become very cumbersome to manage in large environments. Rob Rachwald’s talk pretty much confirmed my thoughts but also led me...
Read more »

Tags: , , ,
Posted in Infosec Blogs/Podcasts, Infosec Conferences | 3 Comments »

AppSecDC Recap: Old Webshells, New Tricks

April 4, 2012
By
AppSecDC Recap: Old Webshells, New Tricks

Back in the day web shells were all the rage so I was curious what “new” was happening in this area. Ryan Kazanciyan started off with a summary of some of the more poplar web shells he’s seen in the past several years. Two examples included ASPXSpy and China Chopper. He discussed how each...
Read more »

Tags: , , ,
Posted in Infosec Blogs/Podcasts, Infosec Conferences | 5 Comments »

AppSecDC Recap: Python Basics for Web App Pentesters

April 4, 2012
By
AppSecDC Recap: Python Basics for Web App Pentesters

I had the opportunity to attend the “Python Basics for Web App Pentesters – Part 2″ by Justin Searle. Being someone that hasn’t program for a good number of years, this Python talk really appealed to me. I’ve been wanting to relearn to code again to simplify or automate some of my day-to-day security-related...
Read more »

Tags: , , ,
Posted in Infosec Blogs/Podcasts, Infosec Conferences | 6 Comments »

Where’s Grecs? At AppSecDC Of Course.

April 3, 2012
By
Where’s Grecs? At AppSecDC Of Course.

As we announced last month AppSecDC is upon us and I’m excited to be heading down into the city soon! For those interested I’m honored to be presenting twice at this event … one on Wednesday at 2:30 and another on Thursday at 4:30. I’ve included the title and abstracts below. I always enjoy...
Read more »

Tags: , , , , , , ,
Posted in Infosec Blogs/Podcasts, Infosec Conferences | 11 Comments »

Poll: Could Selling Zero-Days Be Treason?

April 2, 2012
By
Poll: Could Selling Zero-Days Be Treason?

Last week in our Weekly Rewind post we covered the story “Shopping For Zero-Days” from Forbes. via Forbes.com A clever hacker today has to make tough choices. Find a previously unknown method for dismantling the defenses of a device like an iPhone or iPad, for instance, and you can report it to Apple and...
Read more »

Tags: , , ,
Posted in Infosec Blogs/Podcasts, News | 11 Comments »

Top 3 NoVA Infosec Blog Posts of the Week

March 30, 2012
By
Top 3 NoVA Infosec Blog Posts of the Week

It’s that time of the week again: the time where we take a look at what local security bloggers have been up to. You can take a look at what local security bloggers have been up to but if you can’t get enough of the local security scene, check out our NovaInfosec Twits listfor...
Read more »

Tags: , , , , ,
Posted in Infosec Blogs/Podcasts | 4 Comments »

Weekly Rewind – Top Industry News, More Starbucks, Mac & SharePoint Security, & More

March 30, 2012
By
Weekly Rewind – Top Industry News, More Starbucks, Mac & SharePoint Security, & More

Hey, two weeks in a row for the Weekly Rewind post! If you missed anything or happened to be offline, we hope you find this post useful as a quick reference. For some of those readers that may not have noticed, I actually tack on commentary to the industry articles – so check out...
Read more »

Tags: , , , , , , , , , , ,
Posted in Infosec Blogs/Podcasts, News | 8 Comments »

Tip: Browser Infosec Research Tool

March 29, 2012
By
Tip: Browser Infosec Research Tool

Ok … this post isn’t directly security related but when doing infosec research, this little tool is something I find very helpful in finding and organizing web pages. I’m surprised at the number of security professions that have never heard of it. The name of this little secret tool … Tree-Style Tabs. Tree-Style Tabs...
Read more »

Tags: , , , , , , ,
Posted in Infosec Blogs/Podcasts | 8 Comments »

The Myth of SharePoint Security

March 27, 2012
By
The Myth of SharePoint Security

Every once in a while I’ll be out at a local infosec meetup and the subject of SharePoint will come up. Many in the group immediately start bashing SharePoint’s security. Others are on the border but follow suit out of peer pressure, leaving the ones that don’t know with the impression that SharePoint is...
Read more »

Tags: , ,
Posted in Infosec Blogs/Podcasts, News | 4 Comments »

Mac OS Security – It’s More about Risk

March 27, 2012
By
Mac OS Security – It’s More about Risk

Last week Gizmodo had a nice article on the myth of Mac security fueled by Apple’s announcement of Gatekeeper in Mountain Lion. They discuss all the relevant pros and cons in comparing Windows and Mac security. The author concludes “To stay secure, Mac users need to follow the same fundamental steps as Windows users…”....
Read more »

Tags: , , , , , ,
Posted in Infosec Blogs/Podcasts, News | 6 Comments »

Search

Current Poll

Should We Change Our Name to NovaInfosec.com?

  • Yes, change the name to NovaInfosec.com. (91%, 10 Votes)
  • No, keep it the way it's always been at NovaInfosecPortal.com. (9%, 1 Votes)

Total Voters: 11

Loading ... Loading ...