<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>NovaInfosecPortal.com &#187; cybersecurity</title>
	<atom:link href="http://www.novainfosecportal.com/tag/cybersecurity/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.novainfosecportal.com</link>
	<description>News, events, &#38; resources for infosec professionals in NoVA, DC, &#38; MD</description>
	<lastBuildDate>Mon, 06 Feb 2012 18:30:33 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
		<item>
		<title>Getting Started in Cybersecurity – The University Way</title>
		<link>http://www.novainfosecportal.com/2011/11/10/getting-started-in-cybersecurity-%e2%80%93-the-university-way/</link>
		<comments>http://www.novainfosecportal.com/2011/11/10/getting-started-in-cybersecurity-%e2%80%93-the-university-way/#comments</comments>
		<pubDate>Thu, 10 Nov 2011 05:45:13 +0000</pubDate>
		<dc:creator>judykavuo</dc:creator>
				<category><![CDATA[Career Development]]></category>
		<category><![CDATA[career]]></category>
		<category><![CDATA[certificate]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[education]]></category>
		<category><![CDATA[graduate]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[umuc]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=6534</guid>
		<description><![CDATA[The significant increase in the threats to our computer systems has created a huge demand for professionals with cybersecurity degrees over the last decade. Even though the expertise in information security has been around for a long time, there are estimated 30, 000 cybersecurity related jobs coming to the Baltimore-Washington, D.C. area as DC is specially in need of government IT security specialists according to the University of Maryland University College. This demand has urged many to begin careers in cybersecurity and infosec. Hence the question, what is the best way to prepare for a career in this field? The other day we put out a quick post on the new 22 NSA Centers for Academic Education (CAE) in Information Assurance. We whittled down all of those schools to just the four in our area and also considered local schools that were already on the list. Many of the schools on the CAE list may offer classes or research in information assurance but lack full cybersecurity programs. Here we attempt to identify those that include formal programs you could apply for. There are also many programs that offer general degrees with a concentration in infosec but we didn&#8217;t include those [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Getting+Started+in+Cybersecurity+%E2%80%93+The+University+Way+http%3A%2F%2Fj.mp%2FsnMZZU" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/11/10/getting-started-in-cybersecurity-%e2%80%93-the-university-way/&amp;t=Getting+Started+in+Cybersecurity+%E2%80%93+The+University+Way" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><img class="size-medium wp-image-6717 alignright" src="http://www.novainfosecportal.com/wp-content/uploads/2011/10/cyber-security-banner-300x228.jpg" alt="" width="216" height="164" />The significant increase in the threats to our computer systems has created a huge demand for professionals with cybersecurity degrees over the last decade. Even though the expertise in information security has been around for a long time, there are estimated 30, 000 cybersecurity related jobs coming to the Baltimore-Washington, D.C. area as DC is specially in need of government IT security specialists according to the University of Maryland University College. This demand has urged many to begin careers in cybersecurity and infosec. Hence the question, <em>what is the best way to prepare for a career in this field?</em></p>
<p>The other day we put out a <a href="https://www.novainfosecportal.com/2011/10/07/top-infosec-schools-in-the-metro-dc-area/">quick post on the new 22 NSA Centers for Academic Education (CAE) in Information Assurance</a>. We whittled down all of those schools to just the four in our area and also considered local schools that were already on the list. Many of the schools on the CAE list may offer classes or research in information assurance but lack full cybersecurity programs. Here we attempt to identify those that include formal programs you could apply for.</p>
<p>There are also many programs that offer general degrees with a concentration in infosec but we didn&#8217;t include those here. So you may want to check out local schools like George Washington and Georgetown to explore other options.</p>
<h2>University of Maryland University College, MD</h2>
<p><strong>BS in Cyberseurity:</strong> The curriculum focuses on the techniques, policies, operational procedures, and technologies that secure and defend the availability, integrity, authentication, confidentiality, and nonrepudiation of information and information systems, in local as well as more broadly based domains. It is designed for the following career paths: information systems security professionals, senior system managers, and system administrators. (<a title="Read more" href="http://www.umuc.edu/undergrad/ugprograms/csia.cfm">read more</a>)</p>
<p><strong>MS in Cybersecurity:</strong> This program is designed for mid-career professionals who wish to help meet the challenges posed by increasing cyber-threats. Using a multidisciplinary approach, the curriculum provides students with a broad analytical framework for evaluating and solving cybersecurity problems.It is designed for the following career paths: Chief security officer, cybersecurity manager or administrator, cybersecurity architect, cybersecurity operations analyst, cybersecurity engineer, secure software assurance engineer, cyber operations planner. (<a title="Read more" href="http://www.umuc.edu/grad/gradprograms/csec.cfm">read more</a>)</p>
<p><strong>MS in Cybersecurity Policy: </strong>This program is similar to the cybersecurity program but with three alternate classes. The program is designed to provide students<strong> </strong>with an elaborate analytical framework for evaluating and solving cybersecurity related problems. (<a href="http://www.umuc.edu/grad/gradprograms/csec-policy.cfm">read more</a>)</p>
<p><strong>Graduate Certificate in Foundations of Cybersecurity:</strong> This certificate examines strategies for enterprise-level responses to cybersecurity threats. Students learn to assess measures to prevent anticipated cyber intrusions, employ experiences from past cyber intrusions to mitigate future cyber threats, and formulate and implement enterprise-level policies to successfully prevent and detect cyber intrusions. The role of government regulation in cybersecurity is explored, as are legal concepts such as privacy, intellectual property, and civil liberties. (<a href="http://www.umuc.edu/grad/gradcertificates/cs_foundations.cfm">read more</a>)</p>
<p><strong>Graduate Certificate in Cybersecurity Policy:</strong> The graduate certificate in Cybersecurity Policy examines strategies for societal responses to cybersecurity threats at enterprise and national levels. Students learn to assess organizational controls that can detect cyber intrusions as quickly as possible and to respond to cyber intrusions to restore the operations of an organization. The roles of government, inter-organizational alliances, and international cooperatives are explored, as are legal concepts such as privacy, intellectual property, and civil liberties. (<a href="http://www.umuc.edu/grad/gradcertificates/cs_policy.cfm">read more</a>)</p>
<p><strong>Graduate Certificate in Cybersecurity Technology:</strong> This graduate certificate provides students with the skills to analyze cybersecurity issues from a variety of perspectives, lead teams of cybersecurity professionals, and make strategic decisions to protect entities from cyber threats. The focus is on coherent solutions, including the effectiveness of integrated and coordinated security measures as well as multilevel and multiaspect controls. (<a href="http://www.umuc.edu/grad/gradcertificates/cs_technology.cfm">read more</a>)</p>
<h2>George Mason University, VA</h2>
<p>GMU offers several graduate level options for helping fill the need for information security and</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Getting+Started+in+Cybersecurity+%E2%80%93+The+University+Way+http%3A%2F%2Fj.mp%2FsnMZZU" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2011/11/10/getting-started-in-cybersecurity-%e2%80%93-the-university-way/&amp;t=Getting+Started+in+Cybersecurity+%E2%80%93+The+University+Way" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2011/11/10/getting-started-in-cybersecurity-%e2%80%93-the-university-way/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Top 3 NoVA Infosec Blog Posts of the Week</title>
		<link>http://www.novainfosecportal.com/2009/08/17/top-3-nova-infosec-blog-posts-of-the-week-21/</link>
		<comments>http://www.novainfosecportal.com/2009/08/17/top-3-nova-infosec-blog-posts-of-the-week-21/#comments</comments>
		<pubDate>Mon, 17 Aug 2009 15:00:44 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Blogs/Podcasts]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[geminisecurity]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[NoVA Bloggers]]></category>
		<category><![CDATA[richard-bejtlich]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security-career-advice]]></category>
		<category><![CDATA[security-careers]]></category>
		<category><![CDATA[voting-machine-security]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1951</guid>
		<description><![CDATA[While we love security news sites as much as the next person, we really love hearing from people in the local security community. That&#8217;s why we started our &#8220;Top 3 NoVA Infosec Blog Posts of the Week&#8221; feature; it lets us highlight the best of local security bloggers, and gives you the opportunity to read awesome security material produced by members of the local community. If you&#8217;re a local security blogger that would like to be considered for this feature, please feel free to shoot us an email or send us a tweet @grecs. We also have a handy list of local bloggers, so be sure to contact us if you aren&#8217;t already on the list! #3 &#8211; Election Woes: Just when you thought the election headache was over, @geminisecurity proves you wrong. Because while the election itself might be over, the controversy over voting machines is just beginning. In their post &#8220;AVC Advantage Attack,&#8221; @geminisecurity points out the fact that you can learn to hack a voting machine for around $20, and it&#8217;s a fairly simple task. That&#8217;s right: We are voting on machines that are not only easy to hack, but aren&#8217;t even regulated! Something tells us that George Washington is rolling over in [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week+http%3A%2F%2Fj.mp%2Fq3jgfl" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/08/17/top-3-nova-infosec-blog-posts-of-the-week-21/&amp;t=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>While we love security news sites as much as the next person, we really love hearing from people in the <a href="http://www.novainfosecportal.com/resources/infosec-blogs-podcasts/">local security community</a>. That&#8217;s why we started our &#8220;Top 3 NoVA Infosec Blog Posts of the Week&#8221; feature; it lets us highlight the best of local security bloggers, and gives you the opportunity to read awesome security material produced by members of the local community.</p>
<p>If you&#8217;re a local security blogger that would like to be considered for this feature, please feel free to <a href="http://www.novainfosecportal.com/contact-us/">shoot us an email</a> or send us a tweet <a href="http://www.twitter.com/grecs">@grecs</a>. We also have a handy <a href="http://www.novainfosecportal.com/resources/infosec-blogs-podcasts/">list</a> of local bloggers, so be sure to contact us if you aren&#8217;t already on the list!</p>
<p><strong>#3 &#8211; Election Woes</strong>: Just when you thought the election headache was over, <a href="http://www.twitter.com/geminisecurity">@geminisecurity</a> proves you wrong. Because while the election itself might be over, the controversy over voting machines is just beginning. In their post &#8220;AVC Advantage Attack,&#8221; @geminisecurity points out the fact that you can learn to hack a voting machine for around $20, and it&#8217;s a fairly simple task. That&#8217;s right: We are voting on machines that are not only easy to hack, but aren&#8217;t even regulated! Something tells us that George Washington is rolling over in his grave. Be sure to check out the full post <a href="http://securitymusings.com/article/1401/avc-advantage-attack">here</a>. </p>
<p><strong>#2 &#8211; Simple Security</strong>: We&#8217;ll be honest; this post got our attention before we even read it. With a title like &#8220;Simplicity is Security,&#8221; how could it not? Taking an interesting look at security by examining the use (or lack thereof) of debit and credit cards in Japan, <a href="http://www.twitter.com/mubix">@mubix</a> makes some excellent points about how our desire to jump on every technological advance that comes along is making it harder to have good security. After talking about how people in Japan usually don&#8217;t have credit cards, debit cards, or do any of their banking online, @mubix poses the following question to his readers: &#8220;Should we continue down the path of “MORE SECURITY” or should we deviate a bit for simpler, possibly non-technical practices?&#8221; While we can&#8217;t say that we totally agree with the route of non-technical practices, we do believe that there is a happy medium. To answer the question for yourself, why not check out the <a href="http://www.room362.com/archives/621-simplicity-is-security.html">full post</a>?<span id="more-1951"></span></p>
<p><strong>#1 &#8211; Careers in Security</strong>: With the current economy being what it is, career advice had become rather popular as of late. Richard Bejtlich of TaoSecurity jumped on the career advice train this week in his post &#8220;Thoughts on Security Careers.&#8221; Quoting a number of different posts that deal with popular career trends and career advice for security professionals, Bejtlich gives his own insight, tips, and tricks. Even if you&#8217;re not interested in leaving your current job for another, <a href="http://taosecurity.blogspot.com/2009/08/thoughts-on-security-careers.html">this post</a> is a must-read.</p>
<p>Well, that&#8217;s all for this week. Be sure to check back next week for more great reads from security professionals in your community.</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week+http%3A%2F%2Fj.mp%2Fq3jgfl" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/08/17/top-3-nova-infosec-blog-posts-of-the-week-21/&amp;t=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/08/17/top-3-nova-infosec-blog-posts-of-the-week-21/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Top 3 NoVA Infosec Blog Posts of the Week</title>
		<link>http://www.novainfosecportal.com/2009/08/10/top-3-nova-infosec-blog-posts-of-the-week-20/</link>
		<comments>http://www.novainfosecportal.com/2009/08/10/top-3-nova-infosec-blog-posts-of-the-week-20/#comments</comments>
		<pubDate>Mon, 10 Aug 2009 18:00:58 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Blogs/Podcasts]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[gemini-security]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[mubix]]></category>
		<category><![CDATA[NoVA Bloggers]]></category>
		<category><![CDATA[richard-bejtlich]]></category>
		<category><![CDATA[rybolov]]></category>
		<category><![CDATA[sandboxie]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[taosecuirty]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1905</guid>
		<description><![CDATA[It&#8217;s that time of the week again when we bring you the best of local security blogs. But before we get to that, we thought we&#8217;d share our tweet of the week along with a #totw that deserves honorable mention to get your afternoon started with a few laughs. Our official #totw was a RT by @mubix: grecs RT @mubix RT @secureideas: &#8220;When pen tester tells U they luv something, get it off yr network.&#8221; @agent0x0: &#8220;I luv Sharepoint.&#8221; #defcon #totw Honorable mention belongs to this tweet by @technogeezer because it&#8217;s so true! grecs LOL.. RT: @technogeezer: Someone here at CSC now refers to physical meetings as getting together in &#8216;meatspace&#8217; #totw Now, on to the posts! #3 &#8211; Lessons From the Sandbox: If you are  looking for great technical posts, @geminisecurity should be your first stop. Their latest post, &#8220;Protect Your Computer By Running Applications in Sandboxie&#8221; talks about the Windows utility Sandboxie—a program that allows you to run &#8220;applications in an isolated environment on your computer so you can protect yourself from malware, surf the web, and maintain your registry without affecting your host system.&#8221; They also note that &#8220;Sandboxie is a good alternative to setting up a [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week+http%3A%2F%2Fj.mp%2Fqk8BCu" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/08/10/top-3-nova-infosec-blog-posts-of-the-week-20/&amp;t=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>It&#8217;s that time of the week again when we bring you the best of <a href="http://www.novainfosecportal.com/resources/infosec-blogs-podcasts/">local security blogs</a>. But before we get to that, we thought we&#8217;d share our tweet of the week along with a #totw that deserves honorable mention to get your afternoon started with a few laughs.</p>
<p>Our official #totw was a RT by <a href="http://www.twitter.com/mubix">@mubix</a>:</p>
<blockquote><p><span class="status-body"><a onclick="pageTracker._trackPageview('/exit/to/grecs');" href="http://twitter.com/grecs" target="_blank">grecs</a> <span id="msgtxt3104264498" class="msgtxt en">RT <a onclick="pageTracker._trackPageview('/exit/to/mubix')" href="http://twitter.com/mubix" target="_blank">@mubix</a> RT <a onclick="pageTracker._trackPageview('/exit/to/secureideas')" href="http://twitter.com/secureideas" target="_blank">@secureideas</a>: &#8220;When pen tester tells U they luv something, get it off yr network.&#8221; <a onclick="pageTracker._trackPageview('/exit/to/agent0x0')" href="http://twitter.com/agent0x0" target="_blank">@agent0x0</a>: &#8220;I luv Sharepoint.&#8221; <a title="#defcon" href="http://twitter.com/search?q=%23defcon">#defcon</a> <a title="#totw" href="http://twitter.com/search?q=%23totw"><strong>#totw</strong></a></span></span></p></blockquote>
<p><span class="status-body"><span class="msgtxt en">Honorable mention belongs to this tweet by </span></span><span class="status-body"><span id="msgtxt3134284588" class="msgtxt en"><a onclick="pageTracker._trackPageview('/exit/to/technogeezer')" href="http://twitter.com/technogeezer" target="_blank">@technogeezer</a></span></span> because it&#8217;s so true!</p>
<blockquote><p><span class="status-body"><a onclick="pageTracker._trackPageview('/exit/to/grecs');" href="http://twitter.com/grecs" target="_blank">grecs</a> <span id="msgtxt3134284588" class="msgtxt en">LOL.. RT: <a onclick="pageTracker._trackPageview('/exit/to/technogeezer')" href="http://twitter.com/technogeezer" target="_blank">@technogeezer</a>: Someone here at CSC now refers to physical meetings as getting together in &#8216;meatspace&#8217; <a title="#totw" href="http://twitter.com/search?q=%23totw"><strong>#totw</strong></a></span></span></p></blockquote>
<p><span class="status-body"><span class="msgtxt en">Now, on to the posts!</span></span></p>
<p><strong>#3 &#8211; Lessons From the Sandbox</strong>: If you are  looking for great technical posts, <a href="http://www.twitter.com/geminisecurity">@geminisecurity</a> should be your first stop. Their latest post, &#8220;Protect Your Computer By Running Applications in Sandboxie&#8221; talks about the Windows utility Sandboxie—a program that allows you to run &#8220;applications in an isolated environment on your computer so you can protect yourself from malware, surf the web, and maintain your registry without affecting your host system.&#8221; They also note that &#8220;Sandboxie is a good alternative to setting up a virtual machine, especially if you just want to run a quick test or two without having to wait for an entire operating system to boot up.&#8221; Be sure to read the post and learn more about Sandboxie <a href="http://securitymusings.com/article/1379/protect-your-computer-by-running-applications-in-sandboxie">here</a>. <span id="more-1905"></span></p>
<p><strong>#2 &#8211; The Bureaucracy Is Down</strong>: In his post &#8220;Blast From the Past,&#8221; TaoSecurity&#8217;s Richard <span>Bejtlich uses an example from his own life that illustrates the sometimes ridiculous nature of tasks given by large organizations. In Bejtlich&#8217;s case, it was the Air Force that had given him and his co-workers what seemed to be an impossible mission: </span>Centralize Air Force email within the course of a few months. Needless to say, such a feat was impossible in such a small amount of time. But now, nearly 11 years later, Bejtlich says that it is finally happening; that Air Force email will be starting the centralization process at<em> </em>Keesler Air Force Base, Miss. But as he says at the end of his post, &#8220;[s]o, about 11 years after being told to accomplish the same task, the effort will be done! I think there are lessons here for anyone with a similarly large, bureaucratic, turf-centric, distributed, decentralized, global organization.&#8221; Be sure to read the full post <a href="http://taosecurity.blogspot.com/2009/08/blast-from-past.html">here</a>.</p>
<p><span class="status-body"><span class="msgtxt en"><strong>#1 &#8211; Help Isn&#8217;t Coming</strong>: Leave it to <a href="http://www.twitter.com/rybolov">@</a></span></span><a href="http://www.twitter.com/rybolov">rybolov</a> to hit the nail on the head when it comes to the Cybersecurity Coordinator position and why, even after two months, it <em>still</em> hasn&#8217;t been filled. In his post &#8220;Help Wanted,&#8221; he poses the following question: &#8220;So let me give you a hypothetical job: You have to give up your high-paying private-sector job to be a Government employee. You have tons of responsibility. You have no real authority. You have no dedicated budget. You have no staffers. The job has had half a dozen people filling it in the last 7 years. The job has been open longer than it’s been staffed over the past 7 years.&#8221; Does that sound like a job that any of you would want? Didn&#8217;t think so. By being blunt (unlike government officials), @rybolov makes excellent points as to why the Cybersecurity Coordinator position is still empty, and will likely remain that way unless something changes. Be sure to read his full post <a href="http://www.guerilla-ciso.com/archives/1259">here</a>.</p>
<p>Well, that&#8217;s all for this week. Be sure to follow us <a href="http://www.twitter.com/grecs">@grecs</a> for more great posts throughout the week!</p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week+http%3A%2F%2Fj.mp%2Fqk8BCu" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/08/10/top-3-nova-infosec-blog-posts-of-the-week-20/&amp;t=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/08/10/top-3-nova-infosec-blog-posts-of-the-week-20/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>OWASP &#8211; DC/MD Local Chapter Infosec Meetup Event &#8211; Wednesday, 08-05: Vulnerability Management and SCAP</title>
		<link>http://www.novainfosecportal.com/2009/07/29/owasp-dcmd-local-chapter-infosec-meetup-event-wednesday-08-05-vulnerability-management-and-scap/</link>
		<comments>http://www.novainfosecportal.com/2009/07/29/owasp-dcmd-local-chapter-infosec-meetup-event-wednesday-08-05-vulnerability-management-and-scap/#comments</comments>
		<pubDate>Wed, 29 Jul 2009 17:00:36 +0000</pubDate>
		<dc:creator>paques</dc:creator>
				<category><![CDATA[NoVA Meetups]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[meetups]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[owasp]]></category>
		<category><![CDATA[owasp-appsec-dc]]></category>
		<category><![CDATA[owasp-dc]]></category>
		<category><![CDATA[scap]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security-events]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1858</guid>
		<description><![CDATA[The OWASP &#8211; DC/MD Local Chapter is back this month with a meetup that covers two interesting topics: Vulnerability Management in an Application Security World and how SCAP relates to web application security. The presentations will be given by Dan Cornell of the Denim Group and Mike Smith of Deloitte respectively. For those of you who are itching to hear details about OWASP&#8217;s AppSec DC taking place later this year, Doug Wilson will be giving a brief update about it after Cornell and Smith&#8217;s presentations. To get more details about this meetup, continue reading below. Who: Dan Cornell of the Denim Group and Mike Smith of Deloitte What: &#8220;Vulnerability Management in an Application Security World&#8221; by Cornell and &#8220;SCAP and Web Application Security&#8221; by Smith When: 08-05, 6:30 &#8211; 8:30 PM EST Where: George Washington University (2121 I Street, N.W., Washington, D.C. 20052; Duques Hall &#8211; Room 553D) For more information on the OWASP &#8211; DC/MD Local Chapter, see its description in our NoVA Meetups section. View our Calendar for a complete list of infosec events in and around the NoVA area. Here is a link to the page with information on this meetup. o o o o o Be [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=OWASP+%E2%80%93+DC%2FMD+Local+Chapter+Infosec+Meetup+Event+%E2%80%93+Wednesday%2C+08-05%3A+Vulnerability+Management+and+SCAP+http%3A%2F%2Fj.mp%2FnX4B0u" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/07/29/owasp-dcmd-local-chapter-infosec-meetup-event-wednesday-08-05-vulnerability-management-and-scap/&amp;t=OWASP+%E2%80%93+DC%2FMD+Local+Chapter+Infosec+Meetup+Event+%E2%80%93+Wednesday%2C+08-05%3A+Vulnerability+Management+and+SCAP" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><span id="contentArea" class="normtext">The <a href="../events/nova-meetups/#owasp-dc">OWASP &#8211; DC/MD Local Chapter</a> is back this month with a meetup that covers two interesting topics: Vulnerability Management in an Application Security World and how SCAP relates to web application security. The presentations will be given by Dan Cornell of the Denim Group and Mike Smith of Deloitte respectively.<br />
</span></p>
<p><span id="contentArea" class="normtext">For those of you who are itching to hear details about OWASP&#8217;s AppSec DC taking place later this year, Doug Wilson will be giving a brief update about it after Cornell and Smith&#8217;s presentations. </span></p>
<p><span class="normtext">To get more details about this meetup, continue reading below.</span></p>
<p><span id="more-1858"></span></p>
<ul>
<li><strong>Who:</strong> Dan Cornell of the <a href="http://www.denimgroup.com/">Denim Group</a> and Mike Smith of <a href="http://www.deloitte.com/view/en_US/us/index.htm;jsessionid=Kw1QRCvBHH6ypfj0kl40lvn8nm99HHBk7Qd75kFYcxr2gvJvQf7y!-1198308837">Deloitte</a></li>
<li><strong>What:</strong> &#8220;Vulnerability Management in an Application Security World&#8221; by Cornell and &#8220;SCAP and Web Application Security&#8221; by Smith
<ul></ul>
</li>
<li><strong>When:</strong> 08-05, 6:30 &#8211; 8:30 PM EST</li>
<li><strong>Where:</strong> George Washington University (<a href="http://maps.google.com/maps?f=d&amp;source=s_d&amp;saddr=&amp;daddr=2121+I+Street,+N.W.,+Washington,+D.C.+20052&amp;hl=en&amp;geocode=&amp;mra=ls&amp;sll=37.0625,-95.677068&amp;sspn=40.59616,93.076172&amp;ie=UTF8&amp;z=16">2121 I Street, N.W., Washington, D.C. 20052</a>; Duques Hall &#8211; Room 553D)</li>
</ul>
<p>For more information on the OWASP &#8211; DC/MD Local Chapter, see its <a href="../events/nova-meetups/#owasp-dc">description</a> in our <a href="../events/nova-meetups/">NoVA Meetups</a> section. View our <a href="../events/full-calendar/">Calendar</a> for a complete list of infosec events in and around the NoVA area. Here is a link to the <a href="http://www.owasp.org/index.php/Washington_DC">page with information on this meetup</a>.</p>
<p style="text-align: center;">o     o     o     o     o</p>
<p style="text-align: center;"><em>Be our guest—guest blogger, that is. <a href="../contact-us/">Contact us</a> to learn how you can get your ideas on NovaInfosecportal.</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=OWASP+%E2%80%93+DC%2FMD+Local+Chapter+Infosec+Meetup+Event+%E2%80%93+Wednesday%2C+08-05%3A+Vulnerability+Management+and+SCAP+http%3A%2F%2Fj.mp%2FnX4B0u" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/07/29/owasp-dcmd-local-chapter-infosec-meetup-event-wednesday-08-05-vulnerability-management-and-scap/&amp;t=OWASP+%E2%80%93+DC%2FMD+Local+Chapter+Infosec+Meetup+Event+%E2%80%93+Wednesday%2C+08-05%3A+Vulnerability+Management+and+SCAP" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/07/29/owasp-dcmd-local-chapter-infosec-meetup-event-wednesday-08-05-vulnerability-management-and-scap/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Top 3 NoVA Infosec Blog Posts of the Week</title>
		<link>http://www.novainfosecportal.com/2009/07/27/top-3-nova-infosec-blog-posts-of-the-week-18/</link>
		<comments>http://www.novainfosecportal.com/2009/07/27/top-3-nova-infosec-blog-posts-of-the-week-18/#comments</comments>
		<pubDate>Mon, 27 Jul 2009 15:00:42 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Blogs/Podcasts]]></category>
		<category><![CDATA[blog]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[local-bloggers]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1849</guid>
		<description><![CDATA[Richard Bejtlich and @rybolov return to the top three this week with posts that sum up the recent SANS event and the need for more security folks. @geminisecurity makes the top three with their practical post &#8220;DVWA &#8211; Damn Vulnerable Web App.&#8221; But before we get on to the posts, a small tangent for this week&#8217;s tweet of the week (#totw). grecs: LOL. RT @mckeay Ah the buddy system: I don&#8217;t have to run fast, I just have to run faster than my buddy. totw For those of you who don&#8217;t understand the reference, this tweet is making a play on the classic security philosophy of the buddy system. The philosophy basically goes like this: If a cheetah goes to eat two gazelles, there&#8217;s a good chance that one gazelle will survive—if he&#8217;s faster than his buddy, that is. The cheetah will catch the slower of the two gazelles while the other gazelle is free to run away to live another day. We apply that to security by saying &#8220;always be faster than your buddy&#8221; which means that your security doesn&#8217;t always have to be 100 percent, it just needs to be more secure than others. Now, on to the [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week+http%3A%2F%2Fj.mp%2FncL5J8" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/07/27/top-3-nova-infosec-blog-posts-of-the-week-18/&amp;t=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p style="text-align: left;">Richard Bejtlich and <a href="http://www.twitter.com/rybolov">@rybolov</a> return to the top three this week with posts that sum up the recent SANS event and the need for more security folks. <a href="http://www.twitter.com/geminisecurity">@geminisecurity</a> makes the top three with their practical post &#8220;DVWA &#8211; Damn Vulnerable Web App.&#8221;</p>
<p style="text-align: left;">But before we get on to the posts, a small tangent for this week&#8217;s tweet of the week (#totw).</p>
<div class="msg">
<ul>
<li><a onclick="pageTracker._trackPageview('/exit/to/grecs');" href="http://twitter.com/grecs" target="_blank">grecs</a>: <span id="msgtxt2809316982" class="msgtxt en">LOL. RT <a onclick="pageTracker._trackPageview('/exit/to/mckeay')" href="http://twitter.com/mckeay" target="_blank">@mckeay</a> Ah the buddy system:  I don&#8217;t have to run fast, I just have to run faster than my buddy. <strong>totw</strong></span></li>
</ul>
</div>
<div class="msg">For those of you who don&#8217;t understand the reference, this tweet is making a play on the classic security philosophy of the buddy system. The philosophy basically goes like this: If a cheetah goes to eat two gazelles, there&#8217;s a good chance that one gazelle will survive—if he&#8217;s faster than his buddy, that is. The cheetah will catch the slower of the two gazelles while the other gazelle is free to run away to live another day. We apply that to security by saying &#8220;always be faster than your buddy&#8221; which means that your security doesn&#8217;t always have to be 100 percent, it just needs to be more secure than others.</div>
<div class="msg"></div>
<div class="msg">Now, on to the posts!</div>
<div class="msg"></div>
<div class="msg"><strong>#3 &#8211; Vulnerability Apps Make Us Curse</strong>: Not really, but we were a little surprised when we came across the &#8220;DVWA &#8211; Damn Vulnerable Web App&#8221; post by <a href="http://www.twitter.com/geminisecurity">@geminisecurity</a>. Aside from what the name implies, the DVWA is actually a help, not a menace. A PHP/mySQL web application that is made to be attacked, @geminisecurity says that it is &#8220;intended to be run on a local (closed) network as a learning tool for exploits and vulnerabilities.&#8221; They go on to say that &#8220;[a]s it sits now, it pretty much contains a lot of the basics – brute force, command execution, file inclusion, SQL injection, and XSS.&#8221; While DVWA got pretty positive reviews overall, @geminisecurity did warn experienced users that they might not find DVWA as useful as someone who&#8217;s just starting out. You can read the full review <a href="http://securitymusings.com/article/1350/dvwa-damn-vulnerable-web-app">here</a>.<span id="more-1849"></span></div>
<div class="msg"><strong><br />
</strong></div>
<div class="msg"><strong>#2 &#8211; Bejtlich Strikes Again</strong>: Offering an awesome breakdown of what white hat could do with a million dollars in his post &#8220;White Hat Budgeting&#8221; <a href="http://www.novainfosecportal.com/2009/07/20/top-3-nova-infosec-blog-posts-of-the-week-17/">last week</a>, this week Bejtlich gave an interesting summary of the &#8220;SANS WhatWorks Summit in Forensics and Incident Response&#8221; in his post &#8220;SANS Forensics and Incident Response 2009 Summit Round-Up.&#8221; While he gives a brief overview of the event, what makes the post really interesting is the Q&amp;A style that he uses. Saying that &#8220;I was given a few questions which I promised to answer on this blog,&#8221; Bejtlich gives thoughtful answers to questions that deal with everything from cyber command to the 2014 Verizon Data Breach Report. If you&#8217;re interested in hearing more of Bejtlich&#8217;s answers, you can read them <a href="http://taosecurity.blogspot.com/2009/07/sans-forensics-and-incident-response.html">here</a>.</div>
<div class="msg"></div>
<div class="msg"><strong>#1 &#8211; More Security, Stat</strong>: According to the &#8220;Surprise Report: Not Enough Security Staff&#8221; post by <a href="http://www.twitter.com/rybolov">@rybolov</a>, there isn&#8217;t enough security professionals to go around. There&#8217;s no getting around the fact that security is a quickly growing field and that we need more people to fill the growing job force. But the problem is that many jobs in the security field require years of expertise that recent grads may or may not have. Throw public verses private sector business into the mix and you have a recipe for disaster. @rybolov explains it much better than we can though, so be sure to <a href="http://www.guerilla-ciso.com/archives/1229">check out his post</a> to get the whole scoop.</div>
<div class="msg"></div>
<div class="msg">Well, that&#8217;s all the NoVA Infosec Blog goodness for this week; if you want to find more great posts by local bloggers during the week, be sure to follow us <a href="http://www.twitter.com/grecs">@grecs</a>.</div>
<p style="text-align: center;">o o o o o</p>
<p style="text-align: center;"><em>Know a blog that should be considered for our “Top 3 NoVA Infosec Blog Posts of the Week” feature? If so, <a href="http://www.twitter.com/grecs">send us a tweet</a> with a link to the blog and the request for us to check it out.</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week+http%3A%2F%2Fj.mp%2FncL5J8" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/07/27/top-3-nova-infosec-blog-posts-of-the-week-18/&amp;t=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/07/27/top-3-nova-infosec-blog-posts-of-the-week-18/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CharmSec Infosec Meetup Event &#8211; Wednesday, 07-29: Normal Meeting</title>
		<link>http://www.novainfosecportal.com/2009/07/23/charmsec-infosec-meetup-event-wednesday-07-29-normal-meeting/</link>
		<comments>http://www.novainfosecportal.com/2009/07/23/charmsec-infosec-meetup-event-wednesday-07-29-normal-meeting/#comments</comments>
		<pubDate>Thu, 23 Jul 2009 17:00:05 +0000</pubDate>
		<dc:creator>paques</dc:creator>
				<category><![CDATA[NoVA Meetups]]></category>
		<category><![CDATA[charmsec]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[meetups]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security-events]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1843</guid>
		<description><![CDATA[If you haven&#8217;t already, be sure to check out CharmSec this upcoming Wednesday, July 29th. It&#8217;s a relaxed way to meet local security professionals through good food and good conversation. If you&#8217;d like more details about this meetup, continue reading below. Who: CharmSec What: Normal Meeting When: 07-29, 7:00 PM EST Where: Slainte (1700 Thames St. Baltimore, MD 21231) For more information on CharmSec, see its description in our NoVA Meetups section. View our Calendar for a complete list of infosec events in and around the NoVA area. Here is a link to the CharmSec meetup page. o o o o o Be our guest—guest blogger, that is. Contact us to learn how you can get your ideas on NovaInfosecportal.]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=CharmSec+Infosec+Meetup+Event+%E2%80%93+Wednesday%2C+07-29%3A+Normal+Meeting+http%3A%2F%2Fj.mp%2Fr0UcLs" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/07/23/charmsec-infosec-meetup-event-wednesday-07-29-normal-meeting/&amp;t=CharmSec+Infosec+Meetup+Event+%E2%80%93+Wednesday%2C+07-29%3A+Normal+Meeting" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><span id="contentArea" class="normtext">If you haven&#8217;t already, be sure to check out <a href="../events/nova-meetups/#charmsec">CharmSec</a> this upcoming Wednesday, July 29th. It&#8217;s a relaxed way to meet local security professionals through good food and good conversation.<br />
</span></p>
<p>If you&#8217;d like more details about this meetup, continue reading below.</p>
<p><span id="more-1843"></span></p>
<ul>
<li><strong>Who:</strong> CharmSec</li>
<li><strong>What:</strong> Normal Meeting</li>
<li><strong>When:</strong> 07-29, 7:00 PM EST</li>
<li><strong>Where:</strong> <a href="http://www.slaintepub.com/">Slainte</a> (<a href="http://maps.google.com/maps?f=d&amp;source=s_d&amp;saddr=&amp;daddr=1700+Thames+St.+Baltimore,+MD+21231&amp;hl=en&amp;geocode=&amp;mra=ls&amp;sll=37.0625,-95.677068&amp;sspn=38.502405,93.164063&amp;ie=UTF8&amp;z=16">1700 Thames St. Baltimore, MD 21231</a>)</li>
</ul>
<p>For more information on CharmSec, see its <a href="../events/nova-meetups/#charmsec">description</a> in our <a href="../events/nova-meetups/">NoVA Meetups</a> section. View our <a href="http://www.novainfosecportal.com/events/full-calendar/">Calendar</a> for a complete list of infosec events in and around the NoVA area. Here is a link to the <a href="http://charmsec.org/">CharmSec meetup page</a>.</p>
<p style="text-align: center;">o     o     o     o     o</p>
<p style="text-align: center;"><em>Be our guest—guest blogger, that is. <a href="http://www.novainfosecportal.com/contact-us/">Contact us</a> to learn how you can get your ideas on NovaInfosecportal.</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=CharmSec+Infosec+Meetup+Event+%E2%80%93+Wednesday%2C+07-29%3A+Normal+Meeting+http%3A%2F%2Fj.mp%2Fr0UcLs" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/07/23/charmsec-infosec-meetup-event-wednesday-07-29-normal-meeting/&amp;t=CharmSec+Infosec+Meetup+Event+%E2%80%93+Wednesday%2C+07-29%3A+Normal+Meeting" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/07/23/charmsec-infosec-meetup-event-wednesday-07-29-normal-meeting/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CapSecDC Infosec Meetup Event &#8211; Wednesday, 07-29: Normal Meeting</title>
		<link>http://www.novainfosecportal.com/2009/07/23/capsecdc-infosec-meetup-event-wednesday-07-29-normal-meeting/</link>
		<comments>http://www.novainfosecportal.com/2009/07/23/capsecdc-infosec-meetup-event-wednesday-07-29-normal-meeting/#comments</comments>
		<pubDate>Thu, 23 Jul 2009 15:00:45 +0000</pubDate>
		<dc:creator>paques</dc:creator>
				<category><![CDATA[NoVA Meetups]]></category>
		<category><![CDATA[cap-sec-dc]]></category>
		<category><![CDATA[capsecdc]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[infosec-events]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security-events]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1839</guid>
		<description><![CDATA[Looking for a low-key way to connect with local security professionals? CapSecDC might just be the event for you. An informal event where you can meet other security professionals without the pressure of traditional security meetups, the CapSecDC event is accessible by car and by metro. If you’d like to learn more about the CapSecDC meetup, continue reading below.  Who: CapSecDC What: Normal Meeting When: 07-29, 7:00 PM EST Where: Stetson’s Famous Bar &#38; Grill (1610 U St NW; Washington, DC 20009) For more information on CapSecDC, see its description in our NoVA Meetups section. View our Calendar for a complete list of infosec events in and around the NoVA area. Here is a link to the page with information about this meetup. o o o o o If you&#8217;re unable to make it to CapSecDC, why not check out some of the other great infosec meetup groups in the area?]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=CapSecDC+Infosec+Meetup+Event+%E2%80%93+Wednesday%2C+07-29%3A+Normal+Meeting+http%3A%2F%2Fj.mp%2FqgAwx7" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/07/23/capsecdc-infosec-meetup-event-wednesday-07-29-normal-meeting/&amp;t=CapSecDC+Infosec+Meetup+Event+%E2%80%93+Wednesday%2C+07-29%3A+Normal+Meeting" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p style="border: 1px solid #ffffff; cursor: text;">Looking for a low-key way to connect with local security professionals? <a href="http://www.novainfosecportal.com/events/nova-meetups/#capsecdc">CapSecDC</a> might just be the event for you.</p>
<p style="border: 1px solid #ffffff; cursor: text;">An informal event where you can meet other security professionals without the pressure of traditional security meetups, the CapSecDC event is accessible by car and by <a href="http://www.wmata.com/rail/station_detail.cfm?station_id=73">metro</a>.</p>
<p style="border: 1px solid #ffffff; cursor: text;">If you’d like to learn more about the CapSecDC meetup, continue reading below. <span id="more-1839"></span></p>
<p><!--more--></p>
<ul>
<li><strong>Who:</strong> CapSecDC</li>
<li><strong>What:</strong> Normal Meeting</li>
<li><strong>When:</strong> 07-29, 7:00 PM EST</li>
<li><strong>Where:</strong> <a href="http://www.washingtonpost.com/ac2/wp-dyn?node=cityguide/profile&amp;id=792265">Stetson’s Famous Bar &amp; Grill</a> (<a href="http://maps.google.com/maps?f=q&amp;hl=en&amp;geocode=&amp;q=1610+U+St+NW%3B+Washington,+DC+20009&amp;sll=38.865283,-77.060616&amp;sspn=0.011628,0.01899&amp;ie=UTF8&amp;z=16&amp;iwloc=addr">1610 U St NW; Washington, DC 20009</a>)</li>
</ul>
<p>For more information on CapSecDC, see its <a href="../events/nova-meetups/#capsecdc">description</a> in our <a href="../events/nova-meetups/">NoVA Meetups</a> section. View our <a href="../events/full-calendar/">Calendar</a> for a complete list of infosec events in and around the NoVA area. Here is a link to the <a href="http://capsecdc.org/blog/">page with information about this meetup</a>.</p>
<p style="text-align: center;">o o o o o</p>
<p style="text-align: center;"><em>If you&#8217;re unable to make it to CapSecDC, why not check out some of the other great <a href="http://www.novainfosecportal.com/events/nova-meetups/">infosec meetup groups</a> in the area?</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=CapSecDC+Infosec+Meetup+Event+%E2%80%93+Wednesday%2C+07-29%3A+Normal+Meeting+http%3A%2F%2Fj.mp%2FqgAwx7" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/07/23/capsecdc-infosec-meetup-event-wednesday-07-29-normal-meeting/&amp;t=CapSecDC+Infosec+Meetup+Event+%E2%80%93+Wednesday%2C+07-29%3A+Normal+Meeting" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/07/23/capsecdc-infosec-meetup-event-wednesday-07-29-normal-meeting/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Top 3 NoVA Infosec Blog Posts of the Week</title>
		<link>http://www.novainfosecportal.com/2009/07/13/top-3-nova-infosec-blog-posts-of-the-week-16/</link>
		<comments>http://www.novainfosecportal.com/2009/07/13/top-3-nova-infosec-blog-posts-of-the-week-16/#comments</comments>
		<pubDate>Mon, 13 Jul 2009 14:00:44 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[Infosec Blogs/Podcasts]]></category>
		<category><![CDATA[advanced-persisten-threat]]></category>
		<category><![CDATA[apt]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[dariks-boot-and-nuke]]></category>
		<category><![CDATA[dban]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[local-bloggers]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[NoVA Bloggers]]></category>
		<category><![CDATA[richard-bejtlilch]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[stack-overflow-poc]]></category>
		<category><![CDATA[top-nova-infosec-blog-posts]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1802</guid>
		<description><![CDATA[With all of the information available on the internet, it&#8217;s sometimes hard to decide what you should spend your time reading. That&#8217;s why we started our handy &#8220;Top 3 NoVA Infosec  Blog Posts of the Week&#8221; feature; we tell you about the best blog posts written by local security bloggers each week, and you spend less time wading through the internet trying to find something good to read. So, without further adieu, let&#8217;s get on to the posts. #3 &#8211; Messy Malware: For those of you who become gleeful at the thought of learning about new malware (you know who you are) you will definitely want to check out the post &#8220;Microsoft DirectShow MPEG2TuneRequest Stack Overflow P0C&#8221; on the @carnal0wnage blog. While the malware may no longer be &#8216;brand new&#8217; per say (as pointed out in the post, this malware has been floating around on some Chinese forums for awhile), it&#8217;s still interesting to read about. You can check out the full post here. #2 &#8211; The Meaning of APT: Can you imagine a topic that only retrieves 34 results from Google? According to Richard Bejtlich of TaoSecurity, Advanced Persistent Threat (APT) is one of those things. Says Bejtlich in [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week+http%3A%2F%2Fj.mp%2FnFu1P2" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/07/13/top-3-nova-infosec-blog-posts-of-the-week-16/&amp;t=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>With all of the information available on the internet, it&#8217;s sometimes hard to decide what you should spend your time reading. That&#8217;s why we started our handy &#8220;Top 3 NoVA Infosec  Blog Posts of the Week&#8221; feature; we tell you about the best blog posts written by local security bloggers each week, and you spend less time wading through the internet trying to find something good to read.</p>
<p>So, without further adieu, let&#8217;s get on to the posts.</p>
<p><strong>#3 &#8211; Messy Malware</strong>: For those of you who become gleeful at the thought of learning about new malware (you know who you are) you will definitely want to check out the post &#8220;Microsoft DirectShow MPEG2TuneRequest Stack Overflow P0C&#8221; on the <a href="http://www.twitter.com/carnal0wnage">@carnal0wnage</a> blog. While the malware may no longer be &#8216;brand new&#8217; per say (as pointed out in the post, this malware has been floating around on some Chinese forums for awhile), it&#8217;s still interesting to read about. You can check out the full post <a href="http://carnal0wnage.attackresearch.com/node/370">here</a>. <span id="more-1802"></span></p>
<p><strong>#2 &#8211; The Meaning of APT</strong>: Can you imagine a topic that only retrieves 34 results from Google? According to Richard Bejtlich of TaoSecurity, Advanced Persistent Threat (APT) is one of those things. Says Bejtlich in his post &#8220;You Down with APT?,&#8221; &#8220;APT is one of those subjects that is very important but not well understood outside the defense industry.&#8221; He ends the post by saying &#8220;[i]f you&#8217;re not down with APT, you need to be.&#8221; To &#8216;get down with APT&#8217; and learn more about it, check out Bejtlich&#8217;s full post on APT <a href="http://taosecurity.blogspot.com/2009/07/you-down-with-apt.html">here</a>.</p>
<p><strong>#1 &#8211; Destroy That Data</strong>: In their post &#8220;Darik’s Boot and Nuke (DBAN),&#8221; <a href="http://www.twitter.com/geminisecurity">@geminisecurity</a> tackles a topic that you don&#8217;t hear about often enough: Destroying data before retiring, selling, or destroying computer systems. While @geminisecurity says that you can use DBAN for newer systems, what do you do with the older systems? Other than using &#8220;a chainsaw and a hammer&#8221; to get rid of the data, @geminisecurity suggests the words that make all of the do-it-yourselfer&#8217;s cringe: &#8220;pay someone else to do it.&#8221; While it&#8217;s tempting to think that you can handle the complete destruction or removal of data from an older system, sometimes it &#8216;pays&#8217; to pay a specialist to do it. But for those of you who have the newer systems and would like to know more about DBAN, check out the full post by @geminisecurity <a href="http://securitymusings.com/article/1305/dariks-boot-and-nuke-dban">here</a>.</p>
<p>Well, that’s all for this week. Be sure to follow me <a href="http://www.twitter.com/grecs">@grecs</a> during the week for more great posts from local bloggers.</p>
<p style="text-align: center;">o o o o o</p>
<p style="text-align: center;"><em>Speaking of great local bloggers… we’re looking for some great guest bloggers to feature on NovaInfosecPortal. If you’re interested, feel free to <a href="../2009/07/06/2009/06/29/2009/06/22/contact-us/">contact us</a> or <a href="http://www.twitter.com/grecs">send us a tweet</a>. </em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week+http%3A%2F%2Fj.mp%2FnFu1P2" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/07/13/top-3-nova-infosec-blog-posts-of-the-week-16/&amp;t=Top+3+NoVA+Infosec+Blog+Posts+of+the+Week" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/07/13/top-3-nova-infosec-blog-posts-of-the-week-16/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Grec&#8217;s Weekly Infosec Ramblings for 2009-05-31</title>
		<link>http://www.novainfosecportal.com/2009/05/31/grecs-weekly-infosec-ramblings-for-2009-05-31/</link>
		<comments>http://www.novainfosecportal.com/2009/05/31/grecs-weekly-infosec-ramblings-for-2009-05-31/#comments</comments>
		<pubDate>Sun, 31 May 2009 23:00:00 +0000</pubDate>
		<dc:creator>grecs</dc:creator>
				<category><![CDATA[NoVA Email Lists/Networking]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[digest]]></category>
		<category><![CDATA[grecs]]></category>
		<category><![CDATA[obama]]></category>
		<category><![CDATA[twitter]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/2009/05/31/grecs-weekly-infosec-ramblings-for-2009-05-31/</guid>
		<description><![CDATA[Unless you were a) on vacation, b) avoided all electronic devices, or c) locked yourself away so human contact was impossible for the past week, you are at least a little aware of the big discussion surrounding President Obama&#8217;s Cybersecurity speech. While the Cybersecurity discussion captivated most of the Twittersphere this week, there was some other interesting stuff that happened. (We promise!) First, the obvious topic of choice. RT @TruSecure A Cybersecurity Quiz: Can you tell Obama from Bush?: Shared by Kennedy Risk impact (0)GRC, Mgt Tre.. http://tinyurl.com/lnx74t # As expected. RT @truland Still digesting Cybersec speech &#38; report. Nothing really different, now hard part. Will OMB agencies be funded? # RT @txitua Next Wk is #cfp09. Follow @edfelten @digitalsista @Gauravonomics @wonderwillow @hellrazr @jdp23 @netfreedom @txitua #privacy #con # Wow it&#8217;ll be streaming too. RT @txitua Follow Computer, Freedom &#38; Privacy online at http://www.ustream.tv/channel/cfp09 #cfp09 Pls. RT # And even a streaming schedule! RT @txitua Online schedule for #cfp09 stream is at http://bit.ly/3pCqj # RT @RodBeckstrom Obama cyber speech: http://bit.ly/c8hfB # RT @bobgourley New post: White House Cyber Policy Review: And a Cyber Czar (http://cli.gs/sV0Jyz) #novablogger # RT @SCMagazine Industry reacts to Obama&#8217;s cybersecurity speech: Cybersecurity industry was abuzz Friday [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grec%E2%80%99s+Weekly+Infosec+Ramblings+for+2009-05-31+http%3A%2F%2Fj.mp%2Fr8CFcP" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/05/31/grecs-weekly-infosec-ramblings-for-2009-05-31/&amp;t=Grec%E2%80%99s+Weekly+Infosec+Ramblings+for+2009-05-31" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p>Unless you were a) on vacation, b) avoided all electronic devices, or c) locked yourself away so human contact was impossible for the past week, you are at least <em>a little </em>aware of the big discussion surrounding President Obama&#8217;s Cybersecurity speech.</p>
<p>While the Cybersecurity discussion captivated most of the Twittersphere this week, there was some other interesting stuff that happened. (We promise!)</p>
<p>First, the obvious topic of choice.</p>
<ul class="aktt_tweet_digest">
<li>RT @<a href="http://twitter.com/TruSecure">TruSecure</a> A Cybersecurity Quiz: Can you tell Obama from Bush?: Shared by Kennedy Risk impact (0)GRC, Mgt Tre.. <a rel="nofollow" href="http://tinyurl.com/lnx74t">http://tinyurl.com/lnx74t</a> <a href="http://twitter.com/grecs/statuses/1971818013">#</a></li>
<li>As expected. RT @<a href="http://twitter.com/truland">truland</a> Still digesting Cybersec speech &amp; report. Nothing really different, now hard part. Will  OMB agencies be funded? <a href="http://twitter.com/grecs/statuses/1971838287">#</a></li>
<li>RT @<a href="http://twitter.com/txitua">txitua</a> Next Wk is #cfp09. Follow @<a href="http://twitter.com/edfelten">edfelten</a> @<a href="http://twitter.com/digitalsista">digitalsista</a> @<a href="http://twitter.com/Gauravonomics">Gauravonomics</a> @<a href="http://twitter.com/wonderwillow">wonderwillow</a> @<a href="http://twitter.com/hellrazr">hellrazr</a> @<a href="http://twitter.com/jdp23">jdp23</a> @<a href="http://twitter.com/netfreedom">netfreedom</a> @<a href="http://twitter.com/txitua">txitua</a> #<a href="http://search.twitter.com/search?q=%23privacy">privacy</a> #<a href="http://search.twitter.com/search?q=%23con">con</a> <a href="http://twitter.com/grecs/statuses/1972917251">#</a></li>
<li>Wow it&#8217;ll be streaming too. RT @<a href="http://twitter.com/txitua">txitua</a> Follow Computer, Freedom &amp; Privacy online at <a rel="nofollow" href="http://www.ustream.tv/channel/cfp09">http://www.ustream.tv/channel/cfp09</a> #<a href="http://search.twitter.com/search?q=%23cfp09">cfp09</a> Pls. RT <a href="http://twitter.com/grecs/statuses/1972922704">#</a></li>
<li>And even a streaming schedule! RT @<a href="http://twitter.com/txitua">txitua</a> Online schedule for #<a href="http://search.twitter.com/search?q=%23cfp09">cfp09</a> stream is at <a rel="nofollow" href="http://bit.ly/3pCqj">http://bit.ly/3pCqj</a> <a href="http://twitter.com/grecs/statuses/1974344783">#</a></li>
<li>RT @<a href="http://twitter.com/RodBeckstrom">RodBeckstrom</a> Obama cyber speech: <a rel="nofollow" href="http://bit.ly/c8hfB">http://bit.ly/c8hfB</a> <a href="http://twitter.com/grecs/statuses/1968549521">#</a></li>
<li>RT @<a href="http://twitter.com/bobgourley">bobgourley</a> New post: White House Cyber Policy Review: And a Cyber Czar (http://cli.gs/sV0Jyz)  #<a href="http://search.twitter.com/search?q=%23novablogger">novablogger</a> <a href="http://twitter.com/grecs/statuses/1968560612">#</a></li>
<li>RT @<a href="http://twitter.com/SCMagazine">SCMagazine</a> Industry reacts to Obama&#8217;s cybersecurity speech: Cybersecurity industry was abuzz Friday after Pr.. <a rel="nofollow" href="http://tinyurl.com/n335e4">http://tinyurl.com/n335e4</a> <a href="http://twitter.com/grecs/statuses/1968587522">#</a></li>
<li>RT @<a href="http://twitter.com/securitytwits">securitytwits</a> RT @tqbf: &#8220;Jaquith&#8217;s review on the &#8216;Cybersecurity Review&#8217;, on HN&#8230; <a rel="nofollow" href="http://bit.ly/kCJ43">http://bit.ly/kCJ43</a>&#8221; <a href="http://twitter.com/grecs/statuses/1968477566">#</a></li>
<li>RT @<a href="http://twitter.com/CSOonline">CSOonline</a> NEW: Cybersecurity Announcement: Obama Moves in the Right Direction <a rel="nofollow" href="http://tinyurl.com/m6fede">http://tinyurl.com/m6fede</a> <a href="http://twitter.com/grecs/statuses/1968496710">#</a></li>
<li>RT @<a href="http://twitter.com/CSOonline">CSOonline</a> Blog: Will Obama’s New Cyber-Security Plan Make a Difference? We Can Only Hope: Andrew Jaquith read more <a rel="nofollow" href="http://bit.ly/3VelAc">http://bit.ly/3VelAc</a> <a href="http://twitter.com/grecs/statuses/1968505090">#</a></li>
<li>RT @<a href="http://twitter.com/werntzp">werntzp</a> Devil in the details and prose sloppy in places but I think overall Obama said right things in #<a href="http://search.twitter.com/search?q=%23cybersecurity">cybersecurity</a> speech. <a href="http://twitter.com/grecs/statuses/1968518703">#</a></li>
<li>RT @<a href="http://twitter.com/IBMFedCyber">IBMFedCyber</a> its clear Obama nderstands following: 1.) the threat 2.) the tech &amp; 3.) the mission &#8211; wlkng away hopeful. #<a href="http://search.twitter.com/search?q=%23whitehousecyber">whitehousecyber</a> <a href="http://twitter.com/grecs/statuses/1967730074">#</a></li>
</ul>
<p>With the Cyber Czar debate coming in at a close second. <span id="more-1612"></span></p>
<ul class="aktt_tweet_digest">
<li>RT @<a href="http://twitter.com/packetwerks">packetwerks</a> New cyber czar not cab level, no budget, no authority. 2000 called, it&#8217;s NIPC and they are laughing. <a href="http://twitter.com/grecs/statuses/1967581543">#</a></li>
<li>RT @<a href="http://twitter.com/bobgourley">bobgourley</a> My view of wht ths means: He will not choose anyone as Czar that press has pontificated on. None of those met his criteria. <a href="http://twitter.com/grecs/statuses/1967735555">#</a></li>
<li>RT @<a href="http://twitter.com/cyberwar">cyberwar</a> Cyber Security Czar may be named by end of week. <a rel="nofollow" href="http://tinyurl.com/opgdnv">http://tinyurl.com/opgdnv</a> Or at least the position will be announced. <a href="http://twitter.com/grecs/statuses/1929045674">#</a></li>
<li>RT @<a href="http://twitter.com/danphilpott">danphilpott</a> RT @vaklove: Obama Set to Create A Cybersecurity Czar With Broad Mandate <a rel="nofollow" href="http://ow.ly/9aTM">http://ow.ly/9aTM</a> (via @<a href="http://twitter.com/NickHeller">NickHeller</a>) <a href="http://twitter.com/grecs/statuses/1919826421">#</a></li>
</ul>
<p>We feature<span style="color: #000000;">d Richard Bejtlich&#8217;s take on the whole Cybersecurity issue in our &#8220;</span><a href="http://www.novainfosecportal.com/2009/06/01/top-3-nova-infosec-blog-posts-of-the-week-10/#more-1614">Top 3 NoVA Infosec Blog Posts of the Week</a>&#8221; this week along with posts by @mubix and @geminisecurity.</p>
<ul>
<li>RT @<a href="http://twitter.com/mubix">mubix</a> Blogged Getting your fill of Security &#8211; Room362.com: I recently posted blog post to Ex .. <a rel="nofollow" href="http://tinyurl.com/l6pfhw">http://tinyurl.com/l6pfhw</a> #<a href="http://search.twitter.com/search?q=%23novablogger">novablogger</a> <a href="http://twitter.com/grecs/statuses/1968535539">#</a></li>
<li>RT @<a href="http://twitter.com/geminisecurity">geminisecurity</a> New blog post: How does SSL work anyway? <a rel="nofollow" href="http://bit.ly/hVuWr">http://bit.ly/hVuWr</a> #<a href="http://search.twitter.com/search?q=%23novablogger">novablogger</a> <a href="http://twitter.com/grecs/statuses/1949011181">#</a></li>
</ul>
<p>While the Cybersecurity buzz captured most people&#8217;s attention this week, there <em>was</em> some other news.</p>
<ul class="aktt_tweet_digest">
<li>NEWSBITES: Playing news catchup. <a rel="nofollow" href="http://bit.ly/7pYN6">http://bit.ly/7pYN6</a> <a href="http://twitter.com/grecs/statuses/1932626981">#</a></li>
<li>GAO SEC REPORT: Getting better but still not good. It&#8217;s a hard problem to solve. <a rel="nofollow" href="http://tinyurl.com/pqxcts">http://tinyurl.com/pqxcts</a> <a href="http://twitter.com/grecs/statuses/1932644144">#</a></li>
<li>FBI/U.S. MARSHALS MYSTERY VIRUS: Type of thing we have 2 worry a/b &#8211; the unknown unknowns. <a rel="nofollow" href="http://tinyurl.com/phhe78">http://tinyurl.com/phhe78</a> #<a href="http://search.twitter.com/search?q=%23cmt">cmt</a> <a href="http://twitter.com/grecs/statuses/1932700653">#</a></li>
<li>SECURITY METRICS GALORE: Nice summary of efforts going on. Did we need another one? <a rel="nofollow" href="http://tinyurl.com/rd8vlk">http://tinyurl.com/rd8vlk</a> #<a href="http://search.twitter.com/search?q=%23cmt">cmt</a> <a href="http://twitter.com/grecs/statuses/1932729306">#</a></li>
<li>ADOBE QUARTERLY PATCHES: Slow response should not mean scheduling something to happen 4x/yr. <a rel="nofollow" href="http://www.securityfocus.com/brief/965">http://www.securityfocus.com/brief/965</a> #<a href="http://search.twitter.com/search?q=%23cmt">cmt</a> <a href="http://twitter.com/grecs/statuses/1932766408">#</a></li>
</ul>
<p>As well as a few new tools worth checking out.</p>
<ul class="aktt_tweet_digest">
<li>RT @<a href="http://twitter.com/danphilpott">danphilpott</a> RT @DidierStevens: PDF Structazer tool pres at BH EU 2008 released: <a rel="nofollow" href="http://bit.ly/2lqVX">http://bit.ly/2lqVX</a> &lt;- Deep PDF analysis tool! #<a href="http://search.twitter.com/search?q=%23tool">tool</a> <a href="http://twitter.com/grecs/statuses/1923796143">#</a></li>
<li>RT @<a href="http://twitter.com/mubix">mubix</a> RT @PortSwigger: Burp Suite Pro v1.2.10 released &#8211; <a rel="nofollow" href="http://releases.portswigger.net/2009/05/v1210.html">http://releases.portswigger.net/2009/05/v1210.html</a> #<a href="http://search.twitter.com/search?q=%23tool">tool</a> <a href="http://twitter.com/grecs/statuses/1967648534">#</a></li>
<li>Love these things. RT @<a href="http://twitter.com/sans_isc">sans_isc</a> [Diary] Host file black lists , (5/27): Henry Hertz Hobbit who maintains .. <a rel="nofollow" href="http://tinyurl.com/qq3w94">http://tinyurl.com/qq3w94</a> #<a href="http://search.twitter.com/search?q=%23tool">tool</a> <a href="http://twitter.com/grecs/statuses/1948569164">#</a></li>
<li>RT @<a href="http://twitter.com/mubix">mubix</a> RT @_defcon_: New DEFCON Tools page is up! Thanks to @<a href="http://twitter.com/mubix">mubix</a> for providing the content! <a rel="nofollow" href="http://bit.ly/Qtvz9">http://bit.ly/Qtvz9</a> #<a href="http://search.twitter.com/search?q=%23tool">tool</a> <a href="http://twitter.com/grecs/statuses/1948657157">#</a></li>
<li>RT @<a href="http://twitter.com/ksignal9">ksignal9</a> The Register covers the ressurection of l0phtcrack: <a rel="nofollow" href="http://bit.ly/TdXUN">http://bit.ly/TdXUN</a> #<a href="http://search.twitter.com/search?q=%23tool">tool</a> <a href="http://twitter.com/grecs/statuses/1948693154">#</a></li>
</ul>
<p>Some of them might come in handy if you end up searching for the most &#8216;dangerous&#8217; keywords out there.</p>
<ul>
<li>Looks interesting. RT @<a href="http://twitter.com/TruSecure">TruSecure</a> Web’s most dangerous keywords 2 search 4: Shared by Kennedy Risk impact (?)Dece.. <a rel="nofollow" href="http://tinyurl.com/ojmnp3">http://tinyurl.com/ojmnp3</a> <a href="http://twitter.com/grecs/statuses/1948733405">#</a></li>
<li>Scary! RT @<a href="http://twitter.com/TruSecure">TruSecure</a> Microsoft Update Quietly Installs Firefox Extension: Shared by Kennedy Risk impact (?)WTF? .. <a rel="nofollow" href="http://tinyurl.com/ncttup">http://tinyurl.com/ncttup</a> <a href="http://twitter.com/grecs/statuses/1967539784">#</a></li>
</ul>
<p>But moving on, it looks like there&#8217;s quite a few cool events that have happened recently/will be happening soon.<a href="http://www.novainfosecportal.com/2009/05/22/charmsec-infosec-meetup-event-wednesday-05-27-normal-meeting/">CharmSec</a> is one of them.</p>
<ul class="aktt_tweet_digest">
<li>RT @<a href="http://twitter.com/charmsec">charmsec</a> CharmSec 13: tomorrow at 7PM, Sláinte, Fells Point, Balt, MD, Earth, Sol System, Western Spiral &#8230; <a rel="nofollow" href="http://is.gd/ENF7">http://is.gd/ENF7</a> #<a href="http://search.twitter.com/search?q=%23mtg">mtg</a> <a href="http://twitter.com/grecs/statuses/1923764887">#</a></li>
</ul>
<p>As is Dojosec&#8230;</p>
<ul>
<li>RT @<a href="http://twitter.com/dojosec">dojosec</a> DojoSec Monthly Briefings next Thursday. Visit <a rel="nofollow" href="http://www.dojosec.com">http://www.dojosec.com</a> for details. #<a href="http://search.twitter.com/search?q=%23mtg">mtg</a> <a href="http://twitter.com/grecs/statuses/1949036936">#</a></li>
</ul>
<p>And HacDC.</p>
<ul>
<li>RT @<a href="http://twitter.com/hacdc">hacdc</a> New post: Peter W. Singer and &#8220;Wired for War&#8221; at HacDC on June 2 <a rel="nofollow" href="http://tinyurl.com/lopsnr">http://tinyurl.com/lopsnr</a> #<a href="http://search.twitter.com/search?q=%23mtg">mtg</a> <a href="http://twitter.com/grecs/statuses/1982030139">#</a></li>
</ul>
<p>There&#8217;s also some new information about SANSFIRE that you don&#8217;t want to miss.</p>
<ul class="aktt_tweet_digest">
<li>RT @<a href="http://twitter.com/charmsec">charmsec</a> .@<a href="http://twitter.com/sdwilkerson">sdwilkerson</a> SANSFIRE 09 is in Balt 6/13-22. #<a href="http://search.twitter.com/search?q=%23charmsec">charmsec</a> 13.5 the 14th? 21st Tough 2 not clash w/ SANS <a rel="nofollow" href="http://is.gd/HcFD">http://is.gd/HcFD</a> #<a href="http://search.twitter.com/search?q=%23con">con</a> <a href="http://twitter.com/grecs/statuses/1948458134">#</a></li>
<li><a href="http://twitter.com/grecs/statuses/1948488841">And more. Wow, wish could have made it. RT @</a><a href="http://twitter.com/charmsec">charmsec</a> &#8230;Univ accreditation, and where CharmSec 13.5 should be during SANSFIRE 2009, June 14. <a href="http://twitter.com/grecs/statuses/1948841353">#</a></li>
<li>RT @<a href="http://twitter.com/charmsec">charmsec</a> .@<a href="http://twitter.com/sdwilkerson">sdwilkerson</a> 6/14 it is. There&#8217;re lots of places closer 2 SANSFIRE than Sláinte. Will pick one soon (open to suggestions) #<a href="http://search.twitter.com/search?q=%23mtg">mtg</a> <a href="http://twitter.com/grecs/statuses/1948534799">#</a></li>
</ul>
<p>If you didn&#8217;t get a chance to look at it already, there&#8217;s also some cool stuff about the history of Memorial Day.</p>
<ul class="aktt_tweet_digest">
<li>Remember. RT @<a href="http://twitter.com/planetrussell">planetrussell</a> The Birthplace of Memorial Day, Boalsburg, PA &#8211; 5 mins from my home: <a rel="nofollow" href="http://tr.im/boals">http://tr.im/boals</a> + <a rel="nofollow" href="http://tr.im/boals2">http://tr.im/boals2</a> <a href="http://twitter.com/grecs/statuses/1912778033">#</a></li>
</ul>
<p>Since there&#8217;s no better way to end a post than with a challenge, here&#8217;s a packet challenge posted by Chris Christianson.</p>
<ul>
<li>RT @<a href="http://twitter.com/mubix">mubix</a> FB RT: Chris Christianson Posted a new packet challenge. Have fun. <a rel="nofollow" href="http://bit.ly/p6XTr">http://bit.ly/p6XTr</a> #<a href="http://search.twitter.com/search?q=%23edu">edu</a> <a href="http://twitter.com/grecs/statuses/1967608403">#</a></li>
</ul>
<p style="text-align: center;">o o o o o</p>
<p style="text-align: center;"><em>How <a href="http://www.amazon.com/gp/product/B00155184G?ie=UTF8&amp;tag=grecomconsult-20&amp;linkCode=as2&amp;camp=1789&amp;creative=390957&amp;creativeASIN=B00155184G">Ironclad</a><img style="border: medium none  ! important; margin: 0px ! important;" src="http://www.assoc-amazon.com/e/ir?t=grecomconsult-20&amp;l=as2&amp;o=1&amp;a=B00155184G" border="0" alt="" width="1" height="1" /> is your information? </em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Grec%E2%80%99s+Weekly+Infosec+Ramblings+for+2009-05-31+http%3A%2F%2Fj.mp%2Fr8CFcP" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/05/31/grecs-weekly-infosec-ramblings-for-2009-05-31/&amp;t=Grec%E2%80%99s+Weekly+Infosec+Ramblings+for+2009-05-31" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/05/31/grecs-weekly-infosec-ramblings-for-2009-05-31/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Reminder: CharmSec Meetup is Tomorrow, 05-27</title>
		<link>http://www.novainfosecportal.com/2009/05/26/reminder-charmsec-meetup-is-tomorrow-05-27/</link>
		<comments>http://www.novainfosecportal.com/2009/05/26/reminder-charmsec-meetup-is-tomorrow-05-27/#comments</comments>
		<pubDate>Tue, 26 May 2009 14:00:17 +0000</pubDate>
		<dc:creator>paques</dc:creator>
				<category><![CDATA[NoVA Meetups]]></category>
		<category><![CDATA[charmsec]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[dc]]></category>
		<category><![CDATA[dc-security-events]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[informationsecurity]]></category>
		<category><![CDATA[infosec]]></category>
		<category><![CDATA[md]]></category>
		<category><![CDATA[md-security-events]]></category>
		<category><![CDATA[nova]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.novainfosecportal.com/?p=1569</guid>
		<description><![CDATA[Just a quick reminder that the CharmSec infosec meetup event is tomorrow, May 27th. See our original post for more information. View our Calendar for a complete list of infosec events in and around the NoVA area. o o o o o Be our guest—guest blogger, that is. Contact us to learn how you can get your ideas on NovaInfosecportal.]]></description>
			<content:encoded><![CDATA[<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Reminder%3A+CharmSec+Meetup+is+Tomorrow%2C+05-27+http%3A%2F%2Fj.mp%2FmWJSWV" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/05/26/reminder-charmsec-meetup-is-tomorrow-05-27/&amp;t=Reminder%3A+CharmSec+Meetup+is+Tomorrow%2C+05-27" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div><p><span id="contentArea" class="normtext">Just a quick reminder that the <a href="http://www.novainfosecportal.com/events/nova-meetups/#charmsec">CharmSec</a> infosec meetup event is tomorrow, May 27th. See our <a href="http://www.novainfosecportal.com/2009/05/22/charmsec-infosec-meetup-event-wednesday-05-27-normal-meeting/">original post</a> for more information. View our <a href="http://www.novainfosecportal.com/events/full-calendar/"><span style="color: #3366ff;">Calendar</span></a> for a complete list of infosec events in and around the NoVA area.</span></p>
<p style="text-align: center;">o o o o o</p>
<p style="text-align: center;"><em>Be our guest—guest blogger, that is. <a href="http://www.novainfosecportal.com/contact-us/"><span style="color: #3366ff;">Contact us</span></a> to learn how you can get your ideas on NovaInfosecportal.</em></p>
<div class="tweetthis" style="text-align:left;"><p> <a target="_blank" rel="nofollow" class="tt" href="http://twitter.com/intent/tweet?text=Reminder%3A+CharmSec+Meetup+is+Tomorrow%2C+05-27+http%3A%2F%2Fj.mp%2FmWJSWV" title="Post to Twitter"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro4.png" alt="Post to Twitter" /></a> <a target="_blank" rel="nofollow" class="tt" href="http://www.facebook.com/share.php?u=http://www.novainfosecportal.com/2009/05/26/reminder-charmsec-meetup-is-tomorrow-05-27/&amp;t=Reminder%3A+CharmSec+Meetup+is+Tomorrow%2C+05-27" title="Post to Facebook"><img class="nothumb" src="http://www.novainfosecportal.com/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro4.png" alt="Post to Facebook" /></a></p></div>]]></content:encoded>
			<wfw:commentRss>http://www.novainfosecportal.com/2009/05/26/reminder-charmsec-meetup-is-tomorrow-05-27/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

