CAcert NEWS Blog

CAcert NEWS and up coming events.

[0x1] CAcert assurance session at linux.conf.au

[0x2] Cloaks on IRC (CAcert IRC network and Freenode IRC network)

[0x3] ATE Manchester / Crewe, UK - Sat 14th January

[0x4] CAcert Polo Shirts (stiched)

[0x5] Events and Sponsoring

[0x6] New Board of Directors constituted

[0x7] Strong Concensus on CPS #7.1.2 “Certificate Extensions” adjustments

[0x8] CAcert AGM and New Board, Rules changes accepted

[0x9] Changes at CAcert: New Points Counting

[0xA] Assurance during Open Radar Conference, Szczecin, Poland

CSOONLINE.com - Business Continuity

[0x1] Cloud and disaster recovery: Load-balanced data centers are not a perfect solution

[0x2] Government engineers actively plan for cyberwar

[0x3] BC/DR spending not a top budget priority

[0x4] 68 great ideas for running a security department

[0x5] Storm brewing

[0x6] Situational awareness: Inside the new World Trade Center

[0x7] BC/DR and cloud-services lessons learned from a recent Amazon outage

[0x8] Cloud services as part of a BC/DR plan after a terror attack

[0x9] Risk's rewards: Organizational models for ERM

[0xA] Global telecom gets a lesson in business continuity

SANS Internet Storm Center, InfoCON: green

[0x1] Infocon: green

[0x2] SSH Password attacks using domain name elements as userid, (Fri, Jan 27th)

[0x3] CISCO Ironport C & M Series telnet vulnerability, (Fri, Jan 27th)

[0x4] ISC StormCast for Friday, January 27th 2012 http://isc.sans.edu/podcastdetail.html?id=2287, (Fri, Jan 27th)

[0x5] ISC Feature of the Week: ISC Link Back, (Wed, Jan 25th)

[0x6] pcAnywhere users – patch now!, (Wed, Jan 25th)

[0x7] ISC StormCast for Thursday, January 26th 2012 http://isc.sans.edu/podcastdetail.html?id=2284, (Thu, Jan 26th)

[0x8] ISC StormCast for Wednesday, January 25th 2012 http://isc.sans.edu/podcastdetail.html?id=2281, (Wed, Jan 25th)

[0x9] Is it time to get rid of NetBIOS?, (Tue, Jan 24th)

[0xA] ISC StormCast for Tuesday, January 24th 2012 http://isc.sans.edu/podcastdetail.html?id=2278, (Tue, Jan 24th)

Evilcodecave's Weblog

Just another RCE Weblog

[0x1] Definitively Moved to Blogspot

[0x2] Fast Overview of SpyEye

[0x3] Rootkit Agent.adah Anatomy and Executables Carving via Cryptoanalytical Approach

[0x4] PHP/Spy.Bull Cryptanalysis of Encryption used and Threat Analysis

[0x5] Siberia ExploitPack and PDF Exploit Analysis

[0x6] DNAScan Malicious Network Activity Reverse Engineering

[0x7] Avast aswRdr.sys Kernel Pool Corruption and Local Privilege Escalation

[0x8] PHPSpyScanBot Analysis

[0x9] [Crimeware] Researches Reversing about Eleonore Exploit Pack

[0xA] [Crimeware] Researches and Reversing about Eleonore Exploit Pack

TaoSecurity

Richard Bejtlich's blog on digital security and the practices of network security monitoring, intrusion detection, and incident response.

[0x1] Best Book Bejtlich Read in 2011

[0x2] Telling a Security Story with Charts

[0x3] Happy 9th Birthday TaoSecurity Blog

[0x4] Mandiant Webinar Wednesday; Help Us Break a Record!

[0x5] Tripwire Names Bejtlich #1 of "Top 25 Influencers in Security"

[0x6] Become a Hunter

[0x7] National Public Radio Talks Chinese Digital Espionage

[0x8] Dustin Webber Creates Network Security Monitoring with Siri

[0x9] Trying NetworkMiner Professional 1.2

[0xA] Thoughts on 2011 ONCIX Report

Verizon Center - News

Keep up with the latest news surrounding Verizon Center. Managed and owned by Monumental Sports & Entertainment, Verizon Center is home to the NBA’s Washington Wizards, the WNBA’s Washington Mystics, the NHL’s Washington Capitals, and the Georgetown Hoyas Men’s Basketball teams. Located in the heart of Chinatown above the Gallery-Place Chinatown Metro stop, Verizon Center is only a few steps away from the White House and hosts more than 220 events and concerts each year.

[0x1] Andrea Bocelli U.S. Tour Kicks-Off Next Month - Dec 2 Show at Verizon Center

[0x2] Roger Waters "The Wall" Returns to North America in 2012 - Includes July 12 Show at Verizon Center

[0x3] Remarkable Rookie Class Highlights Harlem Globetrotters Arrival Into DC and Fairfax March 24-25

[0x4] 17th Annual BB&T Classic - Dec 4 at Verizon Center

[0x5] Hard Times Cafe Brings Local Fare to Verizon Center

[0x6] Monumental Report to Serve as Hyper-Local Online Community Platform

[0x7] KMART presents WWE Holiday Tour Dec 29

[0x8] Verizon Center Debuts Mobile App

[0x9] Cirque du Soleil - Quidam - Nov 16 through 20

[0xA] JAY-Z and Kanye West: Watch the Throne Tour Nov 3

OStatic blogs

[0x1] More Evidence That Microsoft Is Reaching Out to Linux with Azure

[0x2] Samsung's Earnings Illustrate the Economic Power of Android

[0x3] More Automation With AutoKey

[0x4] GhostBSD 2.5 - Now with an Easy Graphic Installer

[0x5] IBM Docs Could Compete with Both Microsoft Word and Google Docs

[0x6] Chromium-based Browsers Continue to Proliferate

[0x7] Gentoo-based Toorox Releases 01.2012 GNOME Edition

[0x8] The Latest Ubuntu Interface: We Don't Need No Stinkin' Menus!

[0x9] Google Claims That This Is No Time to Count Chrome OS Out

[0xA] Google Engineers Argue for Changing Fundamental Web Architecture

Securosis Highlights

Main Securosis Blog

[0x1] Network-based Malware Detection: Identifying Today’s Malware

[0x2] The Last Friday Summary of 2011

[0x3] Network-Based Malware Detection: Introduction [new blog series]

[0x4] Incite 12/21/2011: Regret. Nothing.

[0x5] Introducing the Malware Analysis Quant Project

[0x6] Friday Summary: December 16, 2011

[0x7] New White Paper: Applied Network Security Analysis

[0x8] Incite 12/14/2011: Family Matters

[0x9] Pontification Alert: Upcoming webcast appearances

[0xA] Tokenization Guidance White Paper Available

Twitter / ubuntu_security

Twitter updates from ubuntu_security / ubuntu_security.

[0x1] ubuntu_security: [USN-810-1] NSS vulnerabilities

[0x2] ubuntu_security: [USN-817-1] Thunderbird vulnerabilities

[0x3] ubuntu_security: [USN-813-2] Apache vulnerability

[0x4] ubuntu_security: [USN-824-1] PHP vulnerability

[0x5] ubuntu_security: [USN-816-1] fetchmail vulnerability

[0x6] ubuntu_security: [USN-810-1] NSS vulnerabilities

[0x7] ubuntu_security: [USN-817-1] Thunderbird vulnerabilities

[0x8] ubuntu_security: [USN-813-2] Apache vulnerability

[0x9] ubuntu_security: [USN-824-1] PHP vulnerability

[0xA] ubuntu_security: [USN-816-1] fetchmail vulnerability

Virtual Shadows has MOVED!

[0x1] Virtual Shadows is MOVING!

[0x2] Hacking programmable road signs

[0x3] David Lacey likes my book!

[0x4] Censoring your blog

[0x5] Book launch on Monday Central London

[0x6] ouch ....

[0x7] Achieving miracles when times are tough

[0x8] The book arrived on Tuesday

[0x9] Your iPhone as a wind instrument!

[0xA] China's Net Nannies have been busy

War on Error

One day they'll laugh at what we think is secure. Thankfully, we won't be there to hear them...

[0x1] Microsoft offers access to anti-botnet system

[0x2] Comet has some explaining to do but so does Microsoft

[0x3] Hacker finds Lindsay Lohan Playboy pictures on P2P

[0x4] Dell dumps Streak tablet and cools on Android

[0x5] Windows 8 will struggle, analysts predict

[0x6] Gmail's offline mode rides again

[0x7] The crazy US patent system has turned Apple and Microsoft into trolls

[0x8] Apple and Microsoft, patent trolls. But is Google any better?

[0x9] Apple and Microsoft, patent trolls. But is Google much better?

[0xA] Christine Lagarde and the world's worst 419 scam

SANS Internet Storm Center, InfoCON: green

[0x1] SSH Password attacks using domain name elements as userid, (Fri, Jan 27th)

[0x2] CISCO Ironport C & M Series telnet vulnerability, (Fri, Jan 27th)

[0x3] ISC StormCast for Friday, January 27th 2012 http://isc.sans.edu/podcastdetail.html?id=2287, (Fri, Jan 27th)

[0x4] ISC Feature of the Week: ISC Link Back, (Wed, Jan 25th)

[0x5] pcAnywhere users – patch now!, (Wed, Jan 25th)

[0x6] ISC StormCast for Thursday, January 26th 2012 http://isc.sans.edu/podcastdetail.html?id=2284, (Thu, Jan 26th)

[0x7] ISC StormCast for Wednesday, January 25th 2012 http://isc.sans.edu/podcastdetail.html?id=2281, (Wed, Jan 25th)

[0x8] Is it time to get rid of NetBIOS?, (Tue, Jan 24th)

[0x9] ISC StormCast for Tuesday, January 24th 2012 http://isc.sans.edu/podcastdetail.html?id=2278, (Tue, Jan 24th)

[0xA] Javascript DDoS Tool Analysis, (Sun, Jan 22nd)

ZDNET Video

[0x1] Apple launches digital textbooks

[0x2] At CES, Ballmer highlights Windows phone, Windows 8, Xbox Kinect

[0x3] Gadgets galore at Sony's press conference

[0x4] CES 2012: Intel looks to 'wow' with concept Windows 8 ultrabooks

[0x5] Walt Mossbergs’ best gadget picks

[0x6] Kara Swisher demos the hottest (and quirkiest!) tech toys

[0x7] Father of Google Apps: How Google entered the cloud

[0x8] Google rolls out music service to masses

[0x9] PARC scientist recalls Jobs' famous Xerox visits

[0xA] The story behind Apple's NeXT OS in 1996

(IN)SECURE Magazine Notifications RSS

Notifications of new (IN)SECURE Magazine issues.

[0x1] (IN)SECURE Magazine Issue 32

[0x2] (IN)SECURE Magazine Issue 31

[0x3] (IN)SECURE Magazine Issue 30

[0x4] (IN)SECURE Magazine Issue 29

[0x5] (IN)SECURE Magazine Issue 28

[0x6] (IN)SECURE Magazine Issue 27

[0x7] (IN)SECURE Magazine Issue 26

[0x8] (IN)SECURE Magazine Issue 25

[0x9] (IN)SECURE Magazine Issue 24

[0xA] (IN)SECURE Magazine Issue 23

Episteme: Belief. Knowledge. Wisdom

[0x1] How to Quickly Create New Habits in Your Life

[0x2] Matching and Mirroring (or: Cybernetic Issues in NLP)

[0x3] My Newest Experiment – The Kindle Book

[0x4] Maturity and Business

[0x5] What is it to be Mature?

[0x6] A Branding MAD Lib

[0x7] Suppressing Dissent

[0x8] Byron (and influence through the media)

[0x9] Influence and Failing Kindergarten

[0xA] Return-to-Barry-White Human Exploitation

Dell SecureWorks Info Feed

Dell SecureWorks news, press releases, events, and research alerts.

[0x1] Carrier IQ: Requires Additional Review

[0x2] Transitive trust and SSL certificate verification

[0x3] PCI Guidance on Virtualization and Cloud

[0x4] DELL SECUREWORKS PARTNERS WITH QUALYS TO DELIVER SAAS-BASED VULNERABILITY MANAGEMENT SERVICES

[0x5] Recent events cause re-assessment of SecurID integrity

[0x6] "Imperva SecureSphere XSS and the nature of security-product vulnerabilities"

[0x7] News: Happy birthday Dell: The beginning of an evolution/revolution (TG Daily)

[0x8] "Sony PlayStation Network Breach"

[0x9] April 2011 Patch Tuesday sets a new record

[0xA] The Cloud Security Silver Lining

Infosec Island Latest Articles

Adrift in Threats? Come Ashore!

[0x1] 10,358 Industrial Control Systems Connected to the Internet

[0x2] Symantec: Chinese Connection to Attacks on Defense Contractors

[0x3] Psychology of Information Security - The God Complex

[0x4] NIST Workshop to Support Trusted IDs in Cyberspace

[0x5] Interview with ISMP Founder Marisa Fagan on SECore

[0x6] ICS-CERT: Open Automation Software OPC Systems.NET Vulnerabilities

[0x7] The Emerging Threat to Public-Key Encryption

[0x8] Restaurant Challenges US Bank and PCI DSS after Seizure of Funds

[0x9] Security is in the Cracks

[0xA] Symantec: Too Many Doubts - Disable pcAnywhere Software

Data Management White Papers

Business Intelligence, Database, Data Warehouse, Knowledge Management, and Oracle White Papers

[0x1] Insiders' Guide to Evaluating Remote Control Software

[0x2] Automated Sales Order Processing for Order-to-Cash Performance with SAP(R) Solutions

[0x3] Closing the Order to Cash Performance Gap: Between Document Processes and SAP(R) Solutions

[0x4] Order-to-Cash Best Practices for Billing Documents - Automated Access and Delivery

[0x5] Automating Complete PO Document Packages for Procure-to-Pay Performance with SAP(R) Solutions

[0x6] The Learning Organization Goes Digital

[0x7] 10 Tips - IT Training Support

[0x8] How to Make Your IT Staff Smarter

[0x9] Improving Application Development with Digital Libraries

[0xA] Working Green with Digital Libraries - How it Can Help

shell-fu

[0x1] Tip #894: Watch for Ubuntu 9.10 Launch

[0x2] Tip #892: Check memory and swap from command line

[0x3] Tip #889: Convert virtually any video into a DVD-valid MPEG2 stream

[0x4] Tip #885: Random password generator.

[0x5] Tip #882: Find last modified files on a filesystem

[0x6] Tip #879: Learn not to mistype ls

[0x7] Tip #878: Random xkcd comic

[0x8] Tip #874: Count how many packages have been installed by pacman

[0x9] Tip #873: Import ssh host keys without verification

[0xA] Tip #872: Reverse geocode with bash

Blog by Paul Golding

Blog by Paul Golding

[0x1] Paul G new book released - Connected Services - with Amy Shuen foreword

[0x2] Mobile Ecosystem Dynamics (Slides)

[0x3] Latest Presentation - Apples to Augmented Cognition

[0x4] Slides from Big M Conference

[0x5] Connected Services, Clouds and Incubators...

[0x6] #Blue and the API...

[0x7] Cool Platform job at O2...

[0x8] Big Data, Spawn, Connected Services and Other Stuff

[0x9] Eduserv Symposium - The Mobile University (is years behind)

[0xA] Day one of Chirp conference and my hack...

Information Security Thoughts - Allen Baranov

A blog dedicated to thoughts about Information Security.

[0x1] Google's Next Big Thing

[0x2] A great loss to the IT world. One of its great inventors dies.

[0x3] What are your rights regarding personal email? [Extra Bit]

[0x4] What are your rights regarding personal email?

[0x5] ITWeb Security Summit - Wrap Up [Part One]

[0x6] ITWebSec Tag Cloud part 2

[0x7] ITWebSec tag cloud

[0x8] Miscellaneous Ramblings - Irony, Security Summit etc

[0x9] I cheated....

[0xA] [Slightly OT] Whats Your Number, Cucumber?

XSSed syndication

You are welcome to syndicate and share xssed.com contents

[0x1] www.i12.ch XSS

[0x2] www.e-soft24.com XSS

[0x3] download.cnet.com XSS

[0x4] www.songchangui.jp XSS

[0x5] www.internetdisk.co.kr XSS

[0x6] www.inbumtv.com XSS

[0x7] www.aboki.net XSS

[0x8] www.unice.fr XSS

[0x9] www.seoulsemicon.co.kr XSS

[0xA] www.ime.unicamp.br XSS

The new Security and Penetration Testing Community

A new Information and Penetration Testing Protal for all security and network professionals. The site include a number of whitehat hacking tools and documents like nmap,dsniff,etterkap,yersinia,cisco security.

[0x1] Advance Web Hacking

[0x2] Honeypot

[0x3] The Conflicker Worm

[0x4] Thoughts on Security of the Corporate documents

[0x5] Are Security Audits necessary ?

[0x6] RFID, its implications and how to defeat

[0x7] Assesing Risks

[0x8] FBI Raids: Pertinent or Paranoid?

[0x9] Protecting Children Online

[0xA] Sarbanes Oxley and IT

Help Net Security - News

Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.

[0x1] FBI in the market for app to monitor social networks

[0x2] Facebook scammers leverage the Amazon Cloud

[0x3] Perplexing malware served on social welfare site

[0x4] Unwanted apps on Android smartphones

[0x5] Protect sensitive data on Mac OS X, Windows and Linux

[0x6] A peek into the Sykipot campaigns

[0x7] Multi-cloud security groups

[0x8] Software platform for security in industrial control systems

[0x9] Protecting Mac OS X from privacy threats

[0xA] Ubuntu Unleashed 2012 Edition

HolisticInfoSec

The HolisticInfoSec.org blog includes follow-up on previously written articles and research, as well as research and rants. While the goal is promoting standards, simplicity, and efficiency in achieving holistic information security, we occasionally rally against industry shortcomings where necessary.

[0x1] STOP SOPA!

[0x2] toolsmith: ZeroAccess analysis with OSForensics

[0x3] Choose the 2011 Toolsmith Tool of the Year

[0x4] toolsmith: Registry Decoder

[0x5] Tool review: NetworkMiner Professional 1.2

[0x6] toolsmith: OWASP ZAP - Zed Attack Proxy

[0x7] Presenting OWASP Top 10 Tools & Tactics at ISSA International

[0x8] toolsmith: Log Analysis with Highlighter

[0x9] toolsmith: Memory Analysis with DumpIt and Volatility

[0xA] Phorum Phixes Phast

nixCraft

This is a Linux sys admin journal by Vivek about sys admin work, Linux tips & tricks, hacks, news and more.

[0x1] 30 Best Sources For Linux / *BSD / Unix Documentation On the Web

[0x2] FAQ Updates: Dec/22/2011

[0x3] Linux / UNIX Desktop Fun: Let it Snow On Your Desktop

[0x4] Linux: 20 Iptables Examples For New SysAdmins

[0x5] Download CentOS 6.1 CD / DVD ISO

[0x6] Quick Tip: Find Hidden Processes and Ports [ Linux / Unix / Windows ]

[0x7] HowTo: Linux Update the Adobe Flash Player [ Firefox and Chrome Plugin ]

[0x8] Linux: 25 PHP Security Best Practices For Sys Admins

[0x9] Download Fedora 16 CD / DVD ISO

[0xA] Download Ubuntu 11.10 (Oneiric Ocelot) CD ISO / DVD Images

Crypto-Gram Security Podcast

Security: Bruce Schneier's monthly Crypto-Gram Newsletter (read by Dan Henage)

[0x1] Crypto-Gram 15 Dec 2011

[0x2] Crypto-Gram 15 Nov 2011

[0x3] Crypto-Gram 15 Oct 2011

[0x4] Crypto-Gram 15 Sep 2011

[0x5] Crypto-Gram 15 Aug 2011

[0x6] Crypto-Gram 15 Jul 2011

[0x7] Crypto-Gram 15 Jun 2011

[0x8] Crypto-Gram 15 May 2011

[0x9] Crypto-Gram 15 Apr 2011

[0xA] Crypto-Gram 15 Mar 2011

CSOONLINE.com - Loss Prevention

[0x1] Security at the scene of the crime

[0x2] 4 steps retailers can take to combat flash robs

[0x3] Most fraud is an inside job, says survey

[0x4] Theft, shrink rates rise globally

[0x5] World Trade Center security and progress

[0x6] Corporate security experts: Bin Laden death shouldn't impact business, travel plans

[0x7] Fighting Organized Retail Crime: Forget the hype!

[0x8] Obama, Ballmer urge China to step up IP enforcement

[0x9] Fraud incident reports down, says report

[0xA] IPhone Bandit Foiled By Knives

dropsafe

network security, unix and bicycles

[0x1] Do It Yourself Steadicam Using a Chicken

[0x2] Jante Law: Sounds like American Corporatism; If this is real, I would create severe challenges in Scandinavia

[0x3] Making a couple of minor tweaks to #TwitterTools, not that I code in PHP…

[0x4] I really should work out some way to work out in the greenhouse, it’s 20C in there…

[0x5] Loving the fact that the #ChillingEffects #Twitter page can ironically undo the DMCA notices caused it…

[0x6] Loot from Hartley Wintney WI !!!

[0x7] #IronSky Official Berlin Trailer (2012) HD – YouTube !!1!

[0x8] # WE’LL DRINK BEYOND THE BOUNDARIES OF SENSE, WE’LL DRINK ‘TIL WE START TO SEE LOVELY PINK ELEPHANTS… #neilhannon

[0x9] I’ve only had a couple of batches from them but I am really liking the output of @NakedWines

[0xA] 35ml Plymouth Gin, ice cold. 4x drops Angostura. #andbreatheout

FaberBrent Security Blog

Security risk resilience TSCM debugging security news corporate espionage counter surveillance covert investigations counter terrorism ITSEC Bug sweeping

[0x1] The birth of the mobile phone and PCI payment

[0x2] Nearly half of Brits use the same password for all accounts

[0x3] $27 billion lawsuit could fold due to $50 covert surveillance device

[0x4] Shocking - The DWP do not keep records of how many times your data has been abused

[0x5] Met Police report shows CCTV costs £20,000 per single conviction - how many would an extra officer get per year?

[0x6] Charity offices bugged

[0x7] Mobile-phone handset complexity - the criminals friend.

[0x8] The security lessons from Britian's largest jewellery robbery

[0x9] Labour MP and Dutch VIP's suffer website data leaks found by a Google search

[0xA] Black-hatter shows how to utilise memory in Apple keyboard to create a hardware key-logger

Slashdot

News for nerds, stuff that matters

[0x1] How Allan Scherr Hacked Around the First Computer Password

[0x2] January 28 is Data Privacy Day

[0x3] Mars-Bound Probe Serves As Radiation Guinea Pig

[0x4] USPTO Declares Invalid Third of Three Critical Rambus Patents

[0x5] White House Chief Technology Officer Steps Down

[0x6] DARPA Funding a $50 Drone-Droppable Spy Computer

[0x7] North Star May Be Wasting Away

[0x8] Flaw In YouTube Takedown Process Exposed

[0x9] When Viruses Infect Worms

[0xA] The ACTA Fight Returns: What Is At Stake & What You Can Do

SecuriTeam

Welcome to the SecuriTeam RSS Feed - sponsored by Beyond Security. Know Your Vulnerabilities! Visit BeyondSecurity.com for your web site, network and code security audit and scanning needs.

[0x1] HP Data Protector Notebook Extension RequestCopy SQL Injection Vulnerabilty

[0x2] HP Data Protector Notebook Extension LogClientInstallation SQL Injection Vulnerabilty

[0x3] HP Data Protector Notebook Extension GetPolicies SQL Injection Vulnerabilty

[0x4] GE Proficy Historian ihDataArchiver.exe Trusted Header Size Code Execution Vulnerability

[0x5] HP Data Protector Notebook Extension LogClientHealth SQL Injection Vulnerabilty

[0x6] Apache mod_rewrite Vulnerability PoC

[0x7] netsniff-ng - A Linux Network Analyzer and Networking Toolkit

[0x8] Simple Local File Inclusion Exploiter

[0x9] NiX A Linux Brute Forcer

[0xA] Nchop - A TCP Session Splicing Tool Used to Rvade Intrusion Detection Systems

Search Engine Watch

Keep updated with major stories about search engine marketing and search engines as published by Search Engine Watch.

[0x1] Google Maps Adds Emergency Alerts

[0x2] Con Artist Shares Inside Story of Google Pharmacy Ad Sting

[0x3] Measuring ROI: How to Collect Meaningful PPC Conversion Data

[0x4] SEO Chicks Competition - Win a ticket to SES London!

[0x5] 7 Steps to Prepare For the Search Alliance in the UK

[0x6] Yahoo Search, Display Revenues Dip in Q4 2011

[0x7] Google+ Drops Age Restriction, Now Accepts All Teenagers

[0x8] How Google+ Could Threaten Google's Core Search Business

[0x9] YouTube TrueView Ads Pump Up Search Traffic, Conversions for TRX

[0xA] Yandex Adds Face Recognition Technology

Hackers Center Blogs

[0x1] Not Another Penetration testing course

[0x2] Data Related to Kneber Botnet breach recovered by Netwitness

[0x3] Building security into business processes

[0x4] Spy Eye tool kit goes after Zeus botnet

[0x5] Black Hat: Researcher claims hack of chip used to secure computers, smartcards

[0x6] China steals Google's data

[0x7] PortSwigger.net - web application security

[0x8] eLearnSecurity : Breaking into system is no more enough

[0x9] NIST releases Security Content Automation Protocol for FISMA

[0xA] A zero-day flaw in the TLS and SSL protocols, which are commonly used to encrypt web pages, has been made public.

Computerworld Blogs

[0x1] Bill Gates -- taxing the rich more will help close the budget deficit

[0x2] Why e-textbooks could cost students

[0x3] Apple iPhone is top dog -- and Samsung's Google problem

[0x4] That's pretty sorry, all right

[0x5] In N. Korea, use a cellphone and die

[0x6] Customize Gmail and Google Reader with this one simple tool

[0x7] Welcome to Minority Report IRL: Police armed with pre-crime detection tools

[0x8] Microsoft paid Nokia $250 million in fourth quarter to adopt Windows Phone 7; billions more to follow

[0x9] The PC is dying. The iPad and Mac are not

[0xA] Hard-core porn in Google+ -- Google asleep at the switch

LinuxSecurity.com: Mandriva Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Password guessing with Medusa 2.0

[0x3] Mandriva: 2012:010: cacti

[0x4] Mandriva: 2012:009: perl

[0x5] Mandriva: 2012:008: perl

[0x6] Mandriva: 2012:007: openssl

[0x7] Mandriva: 2012:006: openssl

[0x8] Mandriva: 2012:005: libxml2

[0x9] Mandriva: 2012:004: t1lib

[0xA] Mandriva: 2012:003: apache

websecurity January 2012 Archive

The Web Security Mailing List

[0x1] [WEB SECURITY] [HITB-Announce] Reminder: HITB2012AMS Call For Papers Closing Soon

[0x2] [WEB SECURITY] Only 7 Days Left: SANS AppSec 2012 CFP

[0x3] [WEB SECURITY] user information propagation

[0x4] [WEB SECURITY] user information propagation

[0x5] [WEB SECURITY] Stealing money via CSRF

[0x6] [WEB SECURITY] Parallelizing the crawl

[0x7] [WEB SECURITY] Parallelizing the crawl

[0x8] [WEB SECURITY] Parallelizing the crawl

[0x9] [WEB SECURITY] Parallelizing the crawl

[0xA] [WEB SECURITY] Parallelizing the crawl

Network Security Blog

Join me as I spend 30 minutes each week talking about the computer security issues facing us today. I discuss privacy, hacking, malware and the Payment Card Industry (PCI) Data Security Standards.

[0x1] Standing Desk 2.0

[0x2] Kill pcAnywhere right now!

[0x3] Network Security Podcast, Episode 265

[0x4] SOPA was only an opening salvo

[0x5] Network Security Podcast, Episode 264

[0x6] Open tabs 01/09/12

[0x7] Network Security Podcast, Episode 263

[0x8] Open Tabs 12/26/11

[0x9] Southern Fried Network Security Podcast

[0xA] Open tabs 12/18/11

Martin McKeay's blog

[0x1] Hacking locks instead of computers

[0x2] Did she think this of the potential consequences?

[0x3] Escaping a virtual machine

[0x4] Certs: Added value or minimum requirement?

[0x5] The dubious effects of monitoring surfing habits

[0x6] Should your ISP protect you from yourself?

[0x7] Was the iPhone ready for prime time?

[0x8] Maynor isn't the Sell Out or LMH

[0x9] Infosec Sell Out outed, disappears

[0xA] VA employee tried to hide the damage

blog.fon.com

wifi for everyone

[0x1] BT Fon Receives Best WiFi Award

[0x2] Fon is Now on Google+!

[0x3] Clarifying Password Security at Fon

[0x4] ZON@FON Launches in the Azores

[0x5] ZON@FON Gives Away iPads This Holiday Season!

[0x6] This Holiday Season, Give Fon WiFi!

[0x7] Fon at Mobile Asia Congress

[0x8] Fon and Belgacom Launch 100,000 Hotspots in Belgium

[0x9] How to Get a Strong WiFi Signal with Your Fonera

[0xA] Fon Partners with Oi to Build Largest WiFi Network in Brazil

CSOONLINE.com - Global Security

[0x1] Naming names in APT

[0x2] Getting stuff done: Public vs private sector edition

[0x3] Defense against dark arts: Your multidisciplinary security quiz

[0x4] Bad new world: Cyber risk and the future of our nation

[0x5] 5 secrets to building a great security team

[0x6] Lessons in security leadership: David Komendat

[0x7] Travel security in the Middle East and North Africa

[0x8] Obama, Ballmer urge China to step up IP enforcement

[0x9] The New CISO: How the role has changed in 5 years

[0xA] DHS simulates terror attack in subway systems

SearchSecurity: Threat Monitor

Tactical advice on defending against current threats, including viruses, worms, spyware and bots.

[0x1] Duqu malware advice: Should enterprises worry about the Duqu Trojan?

[0x2] How to implement an enterprise threat assessment methodology

[0x3] Malware on a Mac: How to implement a Mac antimalware program

[0x4] Spear phishing examples: How to stop phishing from compromising users

[0x5] VoIP security best practices: Securing communication in the workplace

[0x6] SSL alternatives? Crafting Web-security programs for emerging threats

[0x7] Evolution of online banking malware: Tatanarg Trojan and OddJob Trojan

[0x8] Android malicious apps: How to tell secure Android apps from malware

[0x9] Locate IP address location: How to confirm the origin of a cyberattack

[0xA] How to protect intellectual property from hacker theft

extraexploit

[0x1] the last/final touch!

[0x2] DigiNotar facts - just some links

[0x3] Operation Shady RAT - HTran

[0x4] an old bug for a new job ? CVE-2004-0194

[0x5] TDSS - SRVs list

[0x6] DroidKungFu - just some piece of code

[0x7] FlashUtil10m_Plugin.exe command line crash

[0x8] cve-2011-0609 - bugix blog analysis

[0x9] mmspicture.ru - mobile malware depot

[0xA] Egypt Telecom back online– ASN8452 TE DATA– prefix 81.10.0.0/17

Latest Articles

silicon.com's news and analysis for business leaders includes 50,404 articles

[0x1] Debt crisis, austerity, markets in turmoil: So what's the future for outsourcing?

[0x2] Time to shut up about the death of the CIO

[0x3] Nokia prepares to do battle in the "war of ecosystems"

[0x4] G-Cloud to target 12-month contracts

[0x5] Waiting for Windows 8 not a factor in tablet rollouts, say CIOs

[0x6] 10 ways to win at business change by keeping staff onside

[0x7] Ultrabooks on the rise - but cost remains an issue for many

[0x8] Peter Cochrane's Blog: Computer forensics - Why you're not so hard to track down

[0x9] Why now is the time for RIM to think big

[0xA] Why the gadgets your company gives you are a pain, not a perk

PandaLabs Blog

Everything you need to know about Internet threats

[0x1] Katy Perry and Russell Brand baits to spread a new Facebook worm

[0x2] Sex, lies and Twitter

[0x3] Megaupload and the cybercrime fight

[0x4] The Rise of the Ransomware

[0x5] 2012 Security Trends

[0x6] Could targeted attacks be avoided?

[0x7] Fake Cloud AV 2012

[0x8] Hong Kong, AVAR 2011

[0x9] PandaLabs Report – Q3 2011

[0xA] Deobfuscating malicious code layer by layer

Kismet Wireless

Kismet development & Wireless security

[0x1] Android Kismet progress

[0x2] Kismet on Android

[0x3] Capturing raw 802.11 on android

[0x4] Reaver / WPS Brute Force IDS

[0x5] Shmoocon

[0x6] Drone wackiness

[0x7] Phy-Neutral changes to drones

[0x8] Kismet G+ page

[0x9] Spectools 2011-08-R1 is out

[0xA] Embedded XSD

Twitter / amrittsering

Twitter updates from Amrit Williams / amrittsering.

[0x1] amrittsering: Lunch with @VicGart, @anton_chuvakin & others at the Pleasanton Information Security Societies - Official Friday Feast (PISSOFF)

[0x2] amrittsering: @kmheintz @mediaphyter Kids are far more resilient than we (adults) give them credit for - remember when you were a kid and what you thought

[0x3] amrittsering: @mediaphyter @kmheintz Men R boys who believe they don't need to be spiritual, emotional & secure providers, kids lose when men don't man up

[0x4] amrittsering: @neilhimself The Bible & Good Omens will walk with me through a future apocalyptic wasteland longing to return to bittersweet normality

[0x5] amrittsering: @adamjodonnell that literally translates to; Hey fatty, come here ho, I want to eat butter pasta w/ roman sausage spread eagle Go Facebook!

[0x6] amrittsering: Me: Formula 1 Race Car http://t.co/eUwDVmMT my brother @nemawilliams: Predator drone http://t.co/gPIVAqeE - who wins? I drove mine ;-)~

[0x7] amrittsering: rt @Security_Ninja Puppy! http://t.co/Vi6RUeK3 <-- Cute, almost looks like my little one http://t.co/BmOtkN4R http://t.co/rfyqy1Kd

[0x8] amrittsering: IT 2012: dinosaurs & elephants roam the data center, predators feast unimpeded, & clouds continue to darken the skies w/ glimpses of lite

[0x9] amrittsering: rt @mortman @Beaker Are you going to bring the elusive @sophiahoff to RSA to we can all meet her? <---Akward...

[0xA] amrittsering: @amandamork what if...?

Science | Mail Online

[0x1] German driver lets BMW's self-driving software take the wheel YouTube video

[0x2] Google hidden 'Ad Preferences' page reveals what privacy-row search giant thinks it knows about you

[0x3] Creepy? Clever? A robotic baby built to play the role of premature infants on television

[0x4] Want to time-travel like Dr Who? Video sums up 50 years and 800 episodes of the cult classic in ten minutes

[0x5] Facebook printed out: 1 year's worth of updates would take 11.5bn sheets of A4

[0x6] Tablet full of crude jokes and riddles about beer is found - dating from the time of the biblical Exodus

[0x7] Japanese scientists create genetically-modified mouse that tweets like a bird

[0x8] Megaupload fans flock to rivals such as Rapidshare and Hotfile after FBI close down site

[0x9] Asteroid shield won't be in time for 19-mile wide monster hurtling past Earth next week

[0xA] Nasa finds 60 planets and 11 new solar systems - all from a fist-sized patch of sky

The Geek Stuff

Guides, HowTos and Tips for Technology Geeks

[0x1] C Pointer to Pointer, Pointer to Functions, Array of Pointers Explained with Examples

[0x2] Linux Time Command Examples

[0x3] How to Setup Rsyslog Remote Logging on Linux (Central Log Server)

[0x4] 6 Nagios Command Line Options Explained with Examples

[0x5] TCP Attacks: TCP Sequence Number Prediction and TCP Reset Attacks

[0x6] What is an IP Address? IPv4 and IPv6 Address Examples

[0x7] Understand UNIX / Linux Inodes Basics with Examples

[0x8] TCP/IP Attacks – ARP Cache Poisoning Fundamentals Explained

[0x9] 3 Work-Life Balance Models

[0xA] Major Linux Vs UNIX Kernel Differences

CGISecurity - Website and Application Security News

All things related to website, database, SDL, and application security since 2000.

[0x1] Security Industry Plagiarism: Finding 3 examples in 5 minutes with Google

[0x2] Quick defcon/blackhat preparation list

[0x3] Summary of Google+ browser security protections

[0x4] Paper: Web Application finger printing Methods/Techniques and Prevention

[0x5] Oracle website vulnerable to SQL Injection

[0x6] WASC Announcement: 'Static Analysis Tool Evaluation Criteria' Call For Participants

[0x7] Results of internet SSL usage published by SSL Labs

[0x8] Another use of Clickjacking, Cookiejacking!

[0x9] NIST publishes 50kish vulnerable code samples in Java/C/C++, is officially krad

[0xA] How not to publish SCADA security advisories

Microsoft news from Network World

Breaking Microsoft news and analysis from NetworkWorld.com

[0x1] First look: Windows 8 breaks new ground

[0x2] Security history: Nothing like an old-fashioned boot sector virus

[0x3] U.K. survey: SharePoint users freely ignore security measures

[0x4] Cloud activity to explode in 2012

[0x5] Mac attack

[0x6] 5 key takeaways from CES

[0x7] Looks like October for Windows 8 general release

[0x8] Microsoft to launch real-time threat intelligence feed

[0x9] IBM software eases role-based security operations

[0xA] Media Player, security bypass are focus of Microsoft's first Patch Tuesday of 2012

WindowSecurity.com blogs

Welcome to our Network Security blogs. The blogs are updated on a regular basis with the latest news, information and insider gossip within the network security world and security related fields, such as cryptography.

[0x1] The list of Notorious Markets!

[0x2] Death, taxes and Google

[0x3] The risk of storing data in the cloud with "unknown others"

[0x4] Megaupload’s founder locks himself in a safe room!

[0x5] Middle East cyberwar cripples web sites

[0x6] Cyber insurance: A must have or the latest scam?

[0x7] Blueprint for Private Cloud Security Solution

[0x8] Microsoft Active Protections Program (MAPP)

[0x9] When someone else's insider is your threat

[0xA] Ten Years of Trustworthy Computing

Twitter / ToolsWatch

Twitter updates from Security Tools Watch / ToolsWatch.

[0x1] ToolsWatch: MegaUpload : où vont les 50 millions de VU quotidiens ? http://t.co/07Sohk0Y La théorie du Transfert Unifiée !!!

[0x2] ToolsWatch: RT @chris_kirsch: Remote-controlling Metasploit through APIs http://t.co/ZVkFNll6

[0x3] ToolsWatch: @devteev very good article !!!

[0x4] ToolsWatch: RT @devteev: VIEWSTATE Vulnerabilities http://t.co/lC5heoip

[0x5] ToolsWatch: RT @opexxx: Installing Metasploit in iPad 2 IOS 5.0.1 http://t.co/4bq0rvpN

[0x6] ToolsWatch: I love this one: "Hi i'm 14 and my boyfriend is 21, dont know what to offer him for xmas" " ... Penal Code" !!!!

[0x7] ToolsWatch: Read here http://t.co/8FAlh328: "Yesterday i named my SSID 'Hack me if you can'. This morning, it changed to 'Challenge accepted' "

[0x8] ToolsWatch: RT @KevinFigueroa: RT @41414141 Cisco IronPort...Appliance default Telnet enabled and vulnerable to CVE-2011-4862 remote root. No fix ht ...

[0x9] ToolsWatch: RT @kevinmitnick: ACTA exposed :-) http://t.co/1dWtEjY2

[0xA] ToolsWatch: The Security Tools Watch Daily is out! http://t.co/jG266h8Q

Search Engine Watch Discussion Forums

Search Engine Watch Forums

[0x1] How to set a polished a- ?

[0x2] Recycling

[0x3] Are Search + Your World Results Better?

[0x4] Pages heavy with ads might get penalized

[0x5] Share your Reviews and Complaints regarding Wildnet Technologies Complaints!

[0x6] How to open a PPC account with Baidu? Help!

[0x7] HTML Title &amp; Description &gt; in Search Results

[0x8] Dealing with expired content - AP, Reuters, etc.

[0x9] Delete or edit, what to do???

[0xA] Bing ROI

Hacked Gadgets - DIY Tech Blog

Many articles about hacking gadgets. Examples of extreme technology. DIY projects describing how to build electronic projects. Fun top 5 and top 10 lists.

[0x1] Learn Electronics with Snap Circuits

[0x2] Bipedal Dynamic Stability Testing

[0x3] Ikea Night Light controlled by an Android Phone

[0x4] LED Illuminated Knot Hole Stair Lights

[0x5] PIC Microntroller based Dual Thermometer using two DS1820 1-Wire Sensors

[0x6] Capricious Clock – Crazy Time Clock

[0x7] Exuberant Clock

[0x8] How to Fix a Worn out Video Game Controller

[0x9] Wifi Garage Door Opener Project Build

[0xA] A look inside a 270mW RGV Laser Show System

The Web Application Security Consortium / FrontPage

The Web Application Security Consortium (WASC) is an international group of experts, industry practitioners, and organizational representatives who produce open source and widely agreed upon best-practice security standards for the World Wide Web.

[0x1] Robert Auger edited FrontPage

[0x2] Robert Auger edited FrontPage

[0x3] Robert Auger edited FrontPage

[0x4] Robert Auger edited FrontPage

[0x5] Robert Auger edited FrontPage

[0x6] Robert Auger edited FrontPage

[0x7] Robert Auger edited FrontPage

[0x8] Robert Auger edited FrontPage

[0x9] Robert Auger edited FrontPage

[0xA] Robert Auger edited FrontPage

Heorot.net

Learning and Managing Penetration Testing in Today's Chaotic World

[0x1] “Going-to-DefCon” Heorot.net Course Discounts

[0x2] Course Updates

[0x3] Interview on PaulDotCom

[0x4] “Best Of” Hakin9 Magazine

[0x5] Book On Sale Now!

[0x6] DefCon 17 Speech

[0x7] Book Deal Announced

[0x8] Hackerdemia Project

[0x9] IRC Chat and Webinars

[0xA] Hakin9 Magazine article

Data Protection

[0x1] Encryption Controversy Continues

[0x2] Zscaler ThreatLabZ launches free security service to analyze web risk

[0x3] An update for ISACA members

[0x4] PR folks: Read this before making RSA pitches

[0x5] Amazon.com gift card offer on Facebook? Don't believe it

[0x6] DreamHost becomes the latest breach statistic

[0x7] Unhappy Hollywood: Statement from SOPA-PIPA advocates

[0x8] Strategies To Protect Yourself in 2012

[0x9] SECURITY WISDOM WATCH: SOPA-PIPA edition

[0xA] Virtualization Security: Better Late Than Never

TraverseCode.com

[0x1] |From: PDF@Exploit| |To: Zeus@Trojan| |Subject: Steals Bank Credentials|

[0x2] Don’t press F1 key in Windows XP

[0x3] Traversing a ‘DLL’: Financial Crimeware (Banker)

[0x4] Orkut Phishing using Blogspot account

[0x5] Social Engineering – Fake TwitterIM Download

[0x6] Scam Mail targeting Indian users “Tax Refund Online Form”

[0x7] Chase Bank Phishing scam Mail

[0x8] Traversing a Financial Crimeware which uses Proxy Technique

[0x9] 1st Rogue Mail in 2010

[0xA] Decrypting the Zeus Config File

Technology News

Get the latest technology news, comment and anlaysis from the Telegraph.

[0x1] Web economy to double by 2016

[0x2] South Africans most avid Twitter users in Africa

[0x3] Europe signs up to controversial ACTA web treaty

[0x4] Twitter will 'censor' tweets by country

[0x5] FBI to use Twitter to predict crimes

[0x6] Android tablets challenge iPad dominance

[0x7] What right do we have to be forgotten?

[0x8] Apple iCloud: will the cloud finally go mainstream?

[0x9] ASA investigates Rio Ferdinand Snickers tweets

[0xA] Is it game over for Nintendo?

Tactical Web Application Security

Tac-ti-cal: of or relating to combat tactics: of or occurring at the battlefront <a tactical defense>

[0x1] Mass Joomla Component LFI Attacks Identified

[0x2] What Web Application Security Monitoring Can Learn From Casino Surveillance

[0x3] WASC WHID Semi-Annual Report for 2010

[0x4] Moving to the Trustwave SpiderLabs Research Team

[0x5] Spammers using Twitter's Update Status API

[0x6] Back to the Future - Economies of Scale Techniques from 2008 Still in Use Today

[0x7] Zone-H Defacement Statistics Report for Q1 2010

[0x8] BSIMM2 and WAFs

[0x9] Botnet Herders Targeting Web Servers

[0xA] Apache.org Compromised Through XSS

Moreover Technologies - Computer security news

Computer security news - more than 340 categories of real-time RSS news feeds

[0x1] Message: This news feed will stop on Jan 23 2012. Thank you for your custom.

[0x2] Hackers uses ex journalist's email to ask for money

[0x3] Europe's firewall demands just keep growing and growing

[0x4] Hacker group Anonymous targets Mexican websites

[0x5] 15. Hacker group Anonymous targets Mexican websites

[0x6] Judges bid to speed up hacking case

[0x7] Judges bid to speed up hacking case

[0x8] Judges bid to speed up hacking case

[0x9] Judges bid to speed up hacking case

[0xA] Judges bid to speed up hacking case

Securelist / Descriptions

[0x1] Exploit.JS.Pdfka.dna

[0x2] Trojan-Downloader.Win32.Genome.asvq

[0x3] Trojan-Downloader.Win32.Genome.asut

[0x4] Trojan.Win32.Slefdel.fpk

[0x5] Trojan.Win32.Sasfis.rer

[0x6] Trojan.Win32.Sasfis.ole

[0x7] Trojan.Win32.Qhost.nhn

[0x8] Trojan-SMS.J2ME.Agent.s

[0x9] Trojan.Win32.Qhost.mxb

[0xA] Trojan.Win32.Agent.fadd

PCI Security Standards Council Press Releases

PCI Security Standards Council latest Press Releases

[0x1] PCI Security Standards Council Announces Winners of Special Interest Group Elections

[0x2] PCI Security Standards Council Adds PCI PIN Security Requirements to PTS Standard

[0x3] PCI Security Standards Council Invites Industry Input During Next Phase of Standards Development

[0x4] PCI Security Standards Council Opens Election for New Special Interest Groups

[0x5] 2011 PCI Community Meetings Break Record for Number of Attendees

[0x6] PCI Security Standards Council Updates PTS Program For Encryption, Mobile

[0x7] PCI Security Standards Council Publishes First Set of PCI Point-to-point Encryption Solution Requirements

[0x8] PCI Security Standards Council Releases Updated PCI DSS Wireless Guidelines

[0x9] PCI Security Standards Council Exceeds 100 Members in Europe

[0xA] PCI Security Standards Council Releases PCI DSS Tokenization Guidelines

Liquidmatrix Security Digest

Bringing Fire To The Village: Your Source For Computer, Network & Information Security News

[0x1] Google Privacy Policy To Be Revised

[0x2] DreamHost, FTC, Zone-H And More Defacements

[0x3] RSA 2012 Parties

[0x4] The French Urban eXperiment

[0x5] Anonymous Snatching Defeat From The Jaws of Victory?

[0x6] Iran To Execute Programmer

[0x7] Feds Shutdown Megaupload, Bust Founder

[0x8] Israeli hackers respond

[0x9] Hackers Hit El Al And Tel Aviv Stock Exchange

[0xA] Norton Source Code To Be Posted Tuesday

Black Hat Announcements

Black Hat Digital Self Defense. Black Hat provides cutting edge content in the information and computer security field. Keep up to date with Black Hat presentations, announcements, and free content.

[0x1] Black Hat USA 2010 Training: Pentesting with Backtrack by Offensive Security

[0x2] Black Hat USA 2010 Training: Application Security: For Hackers and Developers

[0x3] Black Hat USA 2010 Training: Assaulting IPS

[0x4] Free Black Hat March Webcast - Pen Testing the Web with Firefox by Michael Schearer ("theprez98")

[0x5] Black Hat USA 2010 Registration Now Open!

[0x6] Black Hat USA 2010 Call for Papers Closes May 1

[0x7] Black Hat Europe 2010 Call for Papers Closes March 1

[0x8] Feb 18 Webcast

[0x9] Black Hat DC 2010 - News - Security chip that does encryption in PCs hacked

[0xA] Black Hat DC Keynote

Uninformed Journal

Informative information for the uninformed

[0x1] Using dual-mappings to evade automated unpackers

[0x2] Analyzing local privilege escalations in win32k

[0x3] Exploiting Tomorrow's Internet Today: Penetration testing with IPv6

[0x4] Can you find me now? Unlocking the Verizon Wireless xv6800 (HTC Titan) GPS

[0x5] An Objective Analysis of the Lockdown Protection System for Battle.net

[0x6] ActiveX - Active Exploitation

[0x7] Context-keyed Payload Encoding

[0x8] Improving Software Security Analysis using Exploitation Properties

[0x9] Real-time Steganography with RTP

[0xA] PatchGuard Reloaded: A Brief Analysis of PatchGuard Version 3

Enterprise Storage Forum News

Covering security, storage, and networking for the enterprise IT professional

[0x1] Solid State Drives Get Faster with TRIM

[0x2] Solid State Drives in Enterprise Applications

[0x3] Oracle to Keep Sun's Data Storage, Tape Businesses

[0x4] LTO-5 Breathes New Life into Tape Storage

[0x5] NetApp Deepens Ties with Cisco, VMware

[0x6] EMC Reports Strong Data Storage, Deduplication Sales

[0x7] Symantec Adds Deduplication to Backup Software

[0x8] EMC Doubles Clariion, Celerra Density with 2TB SATA Drives

[0x9] RAID Storage Levels Explained

[0xA] NetApp, Cisco and VMware Deal May Be Coming

SecManiac.com

Dave (ReL1K) Kennedy's Security Haven

[0x1] Jailbreaking your iPhone 4S or iPad2 5.0.1

[0x2] The Social-Engineer Toolkit (SET) v2.5.3 has been released.

[0x3] New website design launched!

[0x4] Artillery 0.2 Alpha has been released!

[0x5] The Social-Engineer Toolkit (SET) v2.5 “Rippin and Tearin” has been released!

[0x6] Healthcare most breached industry in 2011

[0x7] The Social-Engineer Toolkit (SET) v2.4 “Renegade” has been released.

[0x8] The Social-Engineer Toolkit (SET) v2.3 “Eclipse” has been released.

[0x9] Brad Smith Donations

[0xA] The Social-Engineer Toolkit v2.2 Codename: “Son of Flynn” has been released.

PortSwigger Web Security Blog

[0x1] Burp is voted #1 web scanner

[0x2] Breaking encrypted data using Burp

[0x3] It's a biggie

[0x4] MDSec online training labs

[0x5] The fame of Peter Wiener

[0x6] Burp Suite Free Edition v1.4 released

[0x7] Web App Hacker's Handbook 2nd Edition - Preview

[0x8] Burp v1.4 beta now available

[0x9] Burp v1.4 preview - Session handling: putting it all together

[0xA] Burp v1.4 preview - Macros

Essential Computer Security

Computer Security In Plain English For Normal People

[0x1] How to Avoid Rogue Security Software

[0x2] What’s a Rogue – And Why Do You Need to Know?

[0x3] Top 10 Ways Computer Security Will Improve in 2010 (Not!)

[0x4] The Year in Malware–A 2009 Review

[0x5] Taking Steps to Protect the Network on Cyber Monday

[0x6] November 2009

[0x7] White Paper: Panda Cloud Protection

[0x8] Facebook and Twitter Phishing Attacks

[0x9] Become a Fan, Win a 1Tb ioSafe Drive

[0xA] Record-Setting Patch Tuesday from Microsoft and Adobe

The Register - Security

Biting the hand that feeds IT

[0x1] Students busted for hacking computers, changing grades

[0x2] Facebook flings clickjack spam lawsuit at ad-slingers

[0x3] US lawmakers question Google over privacy policy

[0x4] Judges set timetable for McKinnon case resolution

[0x5] Microsoft exec says Safe Harbor framework is 'alive and well'

[0x6] Google emails Virgin Media subscribers ... about privacy

[0x7] Blackhole crimeware kit drives web threat spike

[0x8] Symantec's profits up in calm third quarter

[0x9] Why O2 shared your mobile number with the world

[0xA] pcAnywhere let anyone anywhere inject code into PCs

InformationWeek - All Stories And Blogs

InformationWeek

[0x1] Rooting The Samsung Galaxy Tab 7

[0x2] Stolen iPhone Saved By iCloud

[0x3] Google And Privacy: Nothing To See Here, Move On

[0x4] Twitter Country Blocks: 10 Key Facts

[0x5] InformationWeek's RSS Feed is brought to you by The next level in education with NEC

[0x6] Federal CTO Aneesh Chopra Resigns

[0x7] White House Presses For New Cybersecurity Laws

[0x8] India’s HCL Hiring 10,000 In U.S., Europe

[0x9] Facebook's Timeline Soon Will Be Mandatory

[0xA] Nokia Numbers Show Microsoft’s Mobile Madness

CSOONLINE.com - Pandemic Preparedness

[0x1] BC/DR spending not a top budget priority

[0x2] CSO's ultimate guide to business continuity and disaster recovery

[0x3] Lack of Telework Preparedness Puts Business Continuity in Danger?

[0x4] Gartner Joins GAO in Raising Flu Network Congestion Fears

[0x5] Most Businesses READY for Flu Pandemic?

[0x6] Swine Flu Near You? IPhone App Will Let You Know

[0x7] A Swine Flu (H1N1) Business Continuity Planning Guide

[0x8] Swine Flu: Watching the Southern Hemisphere for Signs of H1N1 Havoc

[0x9] WHO Declares Swine flu a Pandemic. Now What?

[0xA] Swine Flu: A Wake-up Call for Emergency Planners

My Security Blog

Security Chronicles By Umesh Thota.
www.SecureBlog.net

[0x1] iPhoned..

[0x2] thats why.. lol…

[0x3] Panda Cloud Antivirus !!!

[0x4] BEST BROWSER (*FIREFOX) ADDONS!!!

[0x5] BORG!!! BOT!!! FIGHT!!!

[0x6] GUIDELINES FOR SAFE COMPUTING:

[0x7] K9 Web Protection - Free Internet Filtering and Parental Controls Software

[0x8] Must Have Security Solutions (for free)

[0x9] Goolag Scanner Released!

[0xA] Change DNS ? for a Safer, Faster Online Experience

Security

[0x1] Government Accountability Office Offers Cyber Security Guidance

[0x2] Security Flaw in Wi-Fi Routers Puts Data at Risk

[0x3] Mobile Malware a Growing Threat

[0x4] Survey: Law Firms Conscious of Cloud Security

[0x5] Researchers Find New Way to Hack PCs Using Smartphones

[0x6] Microsoft Issues Fixes for 23 Bugs

[0x7] 'Massive Security Vulnerability' Found in HTC Android Devices

[0x8] Security Vendors Hope to Capitalize on Mobility Trend

[0x9] Zeus Malware Gets Update

[0xA] Apache Warns of DoS Attack Tool

Twitter / i0n1c

Twitter updates from Stefan Esser / i0n1c.

[0x1] i0n1c: RT @dragosr: I'm going to join the #TwitterBlackout on Jan 28 (Tomorrow) to protest new Twitter censorship. No tweets on Saturday. (Just ...

[0x2] i0n1c: Funny that my followers believe I get part of the donations for a jailbreak I was not involved with. THAT would be a nice life.

[0x3] i0n1c: Half a million iPhone 4S already jailbroken.... Impressive. Imagine everyone had to pay 1 USD for the JB.

[0x4] i0n1c: I like the @Pwn2Own_Contest rules. However with that rule setup I guess one needs a team to win.

[0x5] i0n1c: It is not the best security research that is done by teams during work time. It is only the research with the bigger PR team behind it.

[0x6] i0n1c: OMG http://t.co/JBxjMF78

[0x7] i0n1c: RT @onceuponanop: 새해 복 많이 받으세요!

[0x8] i0n1c: @xantammac http://t.co/XwO11Uwr

[0x9] i0n1c: well @andreasdotorg Debian PHP is usually broken beyond repair.Debian PHP users get no support at http://t.co/2VOlQswD

[0xA] i0n1c: Well @hdmoore don't get me wrong I would prefer if they do not ship it by default. That would stop them from spreading FUD about it.

Dark Reading - All Stories

Dark Reading is the premier online resource helping information security professionals manage the balance between protection and access. It offers breaking news and analysis on attacks, breaches and vulnerabilities, as well as strategies for protecting enterprise data. It also offers guidance on setting risk management and compliance policies.

[0x1] The Mechanics Of Breach Notification

[0x2] Security Careers: A Closer Look At Digital Investigations

[0x3] Smartcards: Still A Smart Choice?

[0x4] Study: The Aftermath Of A Breach

[0x5] Hopping Aboard The Mobile Payment Bandwagon? Bring A Helmet

[0x6] Six-Year-Old Breach Comes Back To Haunt Symantec

[0x7] Hacktivists Turn To DNS Hijacking

[0x8] Database Password Storage Exposes Need For Better ID Management

[0x9] DNSSEC Error Caused NASA Website To Be Blocked

[0xA] Looking Over The RIM And Into The Chasm

LinuxSecurity.com: EnGarde_Secure_Linux Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Password guessing with Medusa 2.0

[0x3] EnGarde Secure Community Release Notes 3.0.10

[0x4] EnGarde Secure Community 3.0.8 Release Notes

[0x5] EnGarde Secure Community 3.0.7 Release Notes

[0x6] EnGarde Secure Community 3.0.6 Release Notes

[0x7] EnGarde Secure Community 3.0.5 Release Notes

[0x8] EnGarde Secure Community 3.0.4 Release Notes

[0x9] EnGarde Secure Community 3.0.3 Release Notes

[0xA] EnGarde Secure Community 3.0.2 Release Notes

Twitter / mdowd

Twitter updates from mdowd / mdowd.

[0x1] mdowd: @scarybeasts @thegrugq @aaronportnoy @justinschuh Yeah, it's a lot of work I expect. Sadly, I can't make it to CSW this year :(

[0x2] mdowd: @thegrugq @scarybeasts @aaronportnoy @justinschuh Chrome is a lot more than just webkit really

[0x3] mdowd: @thegrugq @dlitchfield @georgevhulme @coverity It's the same strategy I adopt when playing boggle with 3+ people :)

[0x4] mdowd: @thegrugq @dlitchfield @georgevhulme @coverity Let other vendors cancel all each others bugs out. Put all your energy in to unusual bugs

[0x5] mdowd: @davehull @zerotao @strcpy Haha awesome. As I've said before, they should just have cameras all over their house. Best reality show ever

[0x6] mdowd: New rap news for Australia Day: http://t.co/Zk96UsIn

[0x7] mdowd: @seanhn prezi?

[0x8] mdowd: RT @silviocesare: A new paper based on my 2010 Masters thesis http://t.co/U8LNDbfQ

[0x9] mdowd: RT @meder: I've blogged about my latest vuln: CVE-2011-3923 or Yet Another Remote Code Execution in Struts2: http://t.co/qOD0fos8

[0xA] mdowd: RT @ax330d: @mdowd Not quite so http://t.co/E0aG92xv

Shlomi Narkolayev

Cutting Edge Information Security Posts.

[0x1] IRANGE - Pays close attention to your valueable items

[0x2] Linkedin ViewLink and ViewArticle mechanism opens new kind of Phishing attacks

[0x3] SCADA Exploitation - Hacking into national infrastructures

[0x4] Source-Link-Phishing (A.K.A. TabNabbing) - New technique for phishing attacks

[0x5] Directory Traversal Cheat Sheet

[0x6] ClickJacking Advertisement

[0x7] Hacking Citrix and Terminal Server Techniques

[0x8] Hacking the Planet - By TinKode

[0x9] ClickJacking Facebook

[0xA] Find SQL Injection using Google Dorks

Securitas Operandi™

Incorporating security and risk into everyday thought.

[0x1] Block Javascript in Adobe Acrobat

[0x2] Why Disaster Recovery Requires a Plan

[0x3] What does a network scanner bring to the company?

[0x4] Demystifying UTM and NGF

[0x5] Threats

[0x6] Healthy Skepticism Required When Using Online Storage

[0x7] Classification of data center reliability

[0x8] Amidst the Growing Web, We Are Rushing Back to Client-Server Computing

[0x9] Taking a Wider View of Application Security

[0xA] Compliance risk, the risk management trump card

LinuxSecurity.com: SuSE Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Password guessing with Medusa 2.0

[0x3] SuSE: 2011-042: Linux kernel

[0x4] SuSE: 2011-041: Linux kernel

[0x5] SuSE: 2011-040: Linux kernel

[0x6] SuSE: 2011-038: Linux kernel

[0x7] SuSE: 2011-037: Mozilla Firefox

[0x8] SuSE: 2011-036: IBM Java 1.4.2

[0x9] SuSE: 2011-035:

[0xA] SuSE: 2011-034: Linux kernel

Syrinx Technologies Podcasts

Interviews with local, regional and international technology experts on various topics.

[0x1] Application Development in a Web 2.0 World

[0x2] Ingredients for a Successful Disaster Recovery Plan

[0x3] Security & Web Facing Applications

[0x4] Different Approaches to SSO

[0x5] Story as Brand

[0x6] Effective Network Management Strategies

[0x7] HIPAA Privacy and Security

[0x8] What’s Wrong with the Federal, State and Local Budget Process

[0x9] Business Continuity Planning

[0xA] Identity Federation and Compliance

Info Security News

Carries news items (generally from mainstream sources) that relate to security.

[0x1] DHS disputes memo on purported railway computer breach

[0x2] Re: The digital hacktivist

[0x3] IT pros say data breach assessment is more valuable than notification, study says

[0x4] DOD to allow Android on classified networks

[0x5] Symantec advises users to turn off PCAnywhere in hack aftermath

[0x6] Newt Threatens China and Russia With Cyberwar

[0x7] Royal Canadian Navy officer charged with espionage

[0x8] 10K Reasons to Worry About Critical Infrastructure

[0x9] Microsoft Names Alleged Botnet Operator Behind Kelihos

[0xA] Linux vendors rush to patch privilege escalation flaw after root exploits emerge

National Vulnerability Database

This feed contains the most recent fully analyzed CVE cyber vulnerabilities published within the National Vulnerability Database.

[0x1] CVE-2012-0807 (suhosin)

[0x2] CVE-2012-0806 (bip)

[0x3] CVE-2012-0395 (networker)

[0x4] CVE-2011-4354 (openssl)

[0x5] CVE-2011-4143 (envision)

[0x6] CVE-2012-0312 (online_merchant, oscommerce)

[0x7] CVE-2012-0311 (oscommerce)

[0x8] CVE-2011-1941 (phpmyadmin)

[0x9] CVE-2011-1940 (phpmyadmin)

[0xA] CVE-2011-4276 (android)

Famous Pete Wood Security

My friends tease me about my role in promoting First Base Technologies through public speaking, articles and interviews ... hence calling me 'Famous Pete Wood Security'

[0x1] Cloud Security Alliance UK & Ireland

[0x2] Cyber Security In Real-Time Systems and CNI

[0x3] Cloud Security Alliance UK and Ireland

[0x4] A Software Engineer, a Hardware Engineer and a Departmental Manager ...

[0x5] Festive Greetings

[0x6] Fighting malware in your browser

[0x7] Vote for us!

[0x8] Personal mobile devices

[0x9] May 2010 ramblings

[0xA] Hot topics for 2010 - discuss!

Twitter / exploitdb

Twitter updates from Exploit Database / exploitdb.

[0x1] exploitdb: [webapps] - vBSEO http://t.co/Gnkm0WmZ

[0x2] exploitdb: [remote] - HP Diagnostics Server magentservice.exe Overflow - [CVE: 2011-4789]: http://t.co/XF2xPsmH

[0x3] exploitdb: [webapps] - Peel SHOPPING - version 2.8 and version 2.9 xss/sql inject Vulnerability: http://t.co/FLWdHHOu

[0x4] exploitdb: [papers] - [Spanish] El fingerprinting dentro de la seguridad web: http://t.co/lUZikFED

[0x5] exploitdb: [remote] - Sysax Multi Server 5.50 Create Folder Remote Code Exec BoF (MSF Module): http://t.co/C1sOQHEH

[0x6] exploitdb: [webapps] - phplist - version 2.10.9 CSRF/XSS Vulnerability: http://t.co/nt1E6o88

[0x7] exploitdb: [webapps] - VR GPub 4.0 CSRF Vulnerability: http://t.co/r6ql6Vu9

[0x8] exploitdb: [webapps] - WordPress http://t.co/Iz2RTekv

[0x9] exploitdb: [webapps] - Stoneware WebNetwork6 Multiple Vulnerabilities - [CVE: 2012-0286]: http://t.co/GTitq8oT

[0xA] exploitdb: [papers] - A Backdoor in the Next Generation Active Directory: http://t.co/RbmYaEeD

CSOONLINE.com - PCI and Compliance

[0x1] Nation's nuclear power watchdog comes up short on FISMA compliance

[0x2] Small company, big security challenges

[0x3] Why healthcare IT security is harder than the rest

[0x4] New SEC security breach rules no big game changer, experts say

[0x5] Data destruction: Why you need NAID

[0x6] SIEM: Dead or alive?

[0x7] Senator to businesses: Protect data or pay

[0x8] Case study: Using remote access securely

[0x9] Nine (and a half) signs your vulnerability management program is failing

[0xA] Creating a cloud SLA from diagnostic data

OVAL News

OVAL news headlines for the latest compatible products, data and schema updates, upcoming conferences, new Web site features, OVAL in the news, etc.

[0x1] Version 5.10.1 of OVAL Now Available

[0x2] OVAL Interpreter Updated for Version 5.10.1

[0x3] OVAL Repository Updated for Version 5.10.1

[0x4] Draft of OVAL Language Windows Component Data Model Specification Now Available

[0x5] Release Candidate 2 of OVAL Version 5.10.1 Now Available

[0x6] OVAL Board Holds Teleconference Meeting

[0x7] MITRE Announces Initial "Making Security Measurable" Calendar of Events for 2012

[0x8] Two New OVAL Board Members

[0x9] OVAL Repository Announces Top Contributors Awards for Q4-2011

[0xA] Release Candidate 1 of OVAL Version 5.10.1 Now Available

ZDI: Upcoming Advisories

Upcoming Advisories

[0x1] ZDI-CAN-1488: EMC

[0x2] ZDI-CAN-1487: EMC

[0x3] ZDI-CAN-1486: EMC

[0x4] ZDI-CAN-1485: EMC

[0x5] ZDI-CAN-1477: Mozilla

[0x6] ZDI-CAN-1471: Microsoft

[0x7] ZDI-CAN-1470: Adobe

[0x8] ZDI-CAN-1469: Microsoft

[0x9] ZDI-CAN-1484: WebKit.Org

[0xA] ZDI-CAN-1476: Oracle

HeapOverflow Computer Security Community & Forums : Heap Overflow.com

Computer security community with forums, blogs and directory covering exploit, vulnerability, advisory with various penetration testing tools.

[0x1] CVE-2011-1940 (phpmyadmin)

[0x2] CVE-2011-1941 (phpmyadmin)

[0x3] CVE-2012-0311 (oscommerce)

[0x4] CVE-2012-0312 (online_merchant, oscommerce)

[0x5] CVE-2011-4143 (envision)

[0x6] CVE-2011-4354 (openssl)

[0x7] CVE-2012-0395 (networker)

[0x8] CVE-2012-0806 (bip)

[0x9] CVE-2012-0807 (suhosin)

[0xA] CVE-2011-3479 (pcanywhere)

Linux Techbits and hackery

A Simple blog debating good linux hacks, security and programming and general sysadministration..

[0x1] Argh blow up parts..

[0x2] Happy Sysadmin appreciation day

[0x3] choosing a web language...

[0x4] Epic fail ftw..

[0x5] found a bug?

[0x6] shellcodes more shellcode stuff.

[0x7] upcoming blog post..

[0x8] amd64/x86_64 shellcode..

[0x9] grabbing a table from a mysql backup...

[0xA] the squirrlemail hole..

phed.org

the rantings of michael eddington

[0x1] Changes to Fuzzing Strategies in Peach 2.3.8

[0x2] Peach Training @ CanSecWest 2011

[0x3] Using Code Coverage to Select Fuzzing Sample Files

[0x4] Using .NET Assemblies with Peach 2

[0x5] Looking forward to Peach 3

[0x6] Fuzzing SQL Stored Procedures

[0x7] Changing Defaults for Data Elements

[0x8] Fuzzing Shared Libraries

[0x9] Peach Dojo @ CanSecWest 2009

[0xA] Still Alive!

CERIAS Blog

[0x1] Gene Schultz, R. I. P.

[0x2] More than passive defense

[0x3] Bullies, Pirates and Lulz

[0x4] U.S. Memorial Day Thoughts on Cyber War

[0x5] Sony, Congress, The Media and Me

[0x6] A Cautionary Incident

[0x7] Panel #4: Securing Web 2.0 (Panel Summary)

[0x8] Panel #3: Fighting Through: Mission Continuity Under Attack (Panel Summary)

[0x9] Panel #2: Scientific Foundations of Cyber Security (Panel Summary)

[0xA] Panel #1: Traitor Tracing and Data Provenance (Panel Summary)

/dev/one

yet another device character

[0x1] Some thoughts about MySQL proxy as a DB Firewall

[0x2] Holograms!

[0x3] Lost in translation: WTF is happening inside my Android phone

[0x4] Python + divert sockets + scapy

[0x5] Video Streamming - Flash/Flex/Actionscript3 - NetConnection+NetStream+RTMP FMS (Flash Media Server)

[0x6] Suricata 1.0.2 Released

[0x7] HowTo setup suricata 1.0.0 on Mac OS X on IDS and IPS mode with IPFW

[0x8] New suricata release 0.8.2

[0x9] Improved version of pcap2rawc

[0xA] Rule2Alert

Unwired: Building & Maintaining Secure Wireless Networks

Journey into the latest in wireless technology! You'll find updates on new security issues and vulnerabilities, information on IEEE standards, advice on networking hardware, and unique insight on building and maintaining a secure wireless network.

[0x1] Quantum Cryptography

[0x2] In-Flight Wi-Fi

[0x3] Economic effects on IT Field

[0x4] Blackberry Storm Simulator

[0x5] 3G Wireless

[0x6] Wireless Network Users have Come a Long Way!

[0x7] Dilemma of a Passionate Programmer

[0x8] Can Old Wireless Network Interface Cards be Upgraded to Support WPA?

[0x9] Ramifications of a Cracked WPA Passphrase

[0xA] More Ramblings on WiFi Allergies

Data center news from Network World Fusion

The latest data-center news and analysis from NetworkWorld.com.

[0x1] CloudPassage launches new security product for public clouds

[0x2] John Deere plows into agile

[0x3] HDD Crunch May Have Far-reaching Effects

[0x4] Oracle Move Could Push Rivals Toward Big Data Bundles

[0x5] U.S. Finds Flaws in ES&S DS200 Voting Machine

[0x6] Micron to acquire PCIe virtualization vendor Virtensys

[0x7] Wall Street Beat: Enterprise spending helps mixed quarter for tech

[0x8] Oracle calls school's revised lawsuit over software project a 'transparent ploy'

[0x9] 4 ways to beat data bloat

[0xA] The Agile Infrastructure

HSC Security Portal

Hackers Center Security Portal is one of the most complete, updated and visited Securty portals on the net. We offer Security Blogs, Exploits, Texts, Tools

[0x1] Scrubyt 0.4

[0x2] Sahi V3

[0x3] UrlParams 2.2.0

[0x4] TemperIE

[0x5] Nikto 2

[0x6] hcraft 1.0.0

[0x7] MSNPawn 1.1

[0x8] httprint

[0x9] DIRB

[0xA] WebInject 1.4

Identity Management

[0x1] Stopping The Insider Threat: The Case for SIEM in Government IT (Part 3 - Wrap-up)

[0x2] More Holiday Cheer: SCIM Cloud Provisioning Standard Reaches A Big Milestone

[0x3] Stopping The Insider Threat: The Case for SIEM in Government IT (Part 2)

[0x4] Security Metrics and the Balanced Scorecard

[0x5] The Dark Side of Collaboration

[0x6] Foxnews.com - Drones, Malware and a Continued Lack of Infosec - Rinse and Repeat

[0x7] Hey, what’s for supper? We are having a risk-based pot roast tonight! Roll the dice.

[0x8] Cyber Surveillance & Warning Striker

[0x9] When to Strike Back!

[0xA] Friends, Foes and Faceless Denizens – The Real Social Network

F.A.T.

Release early, often, and w/ rap music.

[0x1] FAT vs. Art Hack Day

[0x2] Ideaz1 – “USBmoan” – a more expressive computer(companion)

[0x3] Mittens Romney – Browser Extension

[0x4] Book Glasses

[0x5] Jdubs Video Xmix 2011

[0x6] HAPPY DECENTRALIZED APOCALYPSE!

[0x7] Gingers In Paris (X-MIX 2011)

[0x8] Xmas Mix For My Son

[0x9] Stop SOPA/PIPA Blackout

[0xA] OCCU(PI) Bot

StormSecurity

IT Security Research and Services

[0x1] My PhD Thesis

[0x2] From Windows thumbnails vulnerability to remote shell

[0x3] Red Teaming Usage for Assessing Information Security

[0x4] New version of ddosim – DDOS simulator

[0x5] Backward disassembler for ROP exploitation

[0x6] Guide For Designing Cyber Security Exercises

[0x7] GROUP_CONCAT() for Oracle blind SQL injection

[0x8] Check if your email account has been exposed!

[0x9] SqlBit – a new blind SQL injection exploiter

[0xA] Application Layer DDoS Simulator

Dr Anton Chuvakin Blog PERSONAL Blog

LogChat: Andrew Hay and Anton Chuvakin talk about logging, log management and related topics

[0x1] Links for 2012-01-25 [del.icio.us]

[0x2] Links for 2012-01-12 [del.icio.us]

[0x3] Links for 2012-01-11 [del.icio.us]

[0x4] Links for 2012-01-09 [del.icio.us]

[0x5] Annual Blog Round-Up – 2011

[0x6] Links for 2012-01-03 [del.icio.us]

[0x7] Monthly Blog Round-Up – December 2011

[0x8] Links for 2011-12-19 [del.icio.us]

[0x9] Links for 2011-12-16 [del.icio.us]

[0xA] Monthly Blog Round-Up – November 2011

Foro de elhacker.net - Noticias

Información en vivo desde Foro de elhacker.net

[0x1] Ya está disponible la nueva actualización para Modern Warfare 3

[0x2] Facebook anunciará su salida a Bolsa la próxima semana

[0x3] Las cincuenta entidades superconectadas

[0x4] "La gente se sentiría molesta si viera de dónde viene su iPhone"

[0x5] Microsoft pide a los usuarios de Gmail que se pasen a Hotmail

[0x6] Twitter rectifica: "Nuestro anuncio no tiene nada que ver con la censura"

[0x7] Microsoft busca un experto para llevar Linux a su plataforma Azure

[0x8] Dos detenidos por coaccionar a chicas a través de Internet con fines sexuales

[0x9] IBM publica la última versión de Lotus Symphony

[0xA] Google Earth 6.2 actualiza los mapas para evitar el "efecto mosaico" de sus ...

Web App Security

Provides insights on the unique challenges which make web applications notoriously hard to secure, as well as attack methods including SQL injection, cross-site scripting (XSS), cross-site request forgery, and more.

[0x1] Re: Apache Killer - take 2?

[0x2] Re: Apache Killer - take 2?

[0x3] Apache Killer - take 2?

[0x4] CarolinaCon-8/2012 - Final Announcement/Call for Papers/Presenters/Speakers

[0x5] OWASP AsiaPac 2012 - Sydney Australia CFP and CFT

[0x6] RE: Application Security

[0x7] Re: Application Security

[0x8] Application Security

[0x9] Re: stacking proxies

[0xA] AppSec DC 2012 CFP EXTENDED!

Log visualization and log management as seen by Raffael Marty

[0x1] The Steps To a Mature Visual Analytics Practice

[0x2] Cyber Security Visualization – Grand Challenge

[0x3] Learning About Log Analysis and Visualization in Taipei

[0x4] Logging Guidelines Enable Actions

[0x5] Why a Cloud Logging Standard Doesn’t Make Any Sense

[0x6] Mid January Roundup

[0x7] links for 2011-01-07

[0x8] Applied Security Visualization – Book Video

[0x9] November Logging Updates

[0xA] Logging Formats and Standards

Twitter / TrendMicro

Twitter updates from TrendMicro / TrendMicro.

[0x1] TrendMicro: @BrianHonan thanks for the mention Brian, good to hear!!

[0x2] TrendMicro: Malware Leveraging MIDI Remote Code Execution Vulnerability Found [Blog Post] http://t.co/CqchG4cT

[0x3] TrendMicro: SMB employees use cloud services to get around their IT department if IT is too slow. #dellcloudchat @daveasprey @spectoratdell

[0x4] TrendMicro: RT @SpectorAtDell: Enjoyed Chat today on #cloud and SMB #dellcloudchat ; Great Discussion and Questions

[0x5] TrendMicro: If you're an SMB, you already have BYOD which means you're on the cloud whether you like it or not. #dellcloudchat #nodenyingit

[0x6] TrendMicro: If you're an SMB, you already have BYOD, which means you're on the cloud whether you like it or not. #dellcloudchat #nodenyingit

[0x7] TrendMicro: RT @daveasprey: Data encryption in the cloud - details useful for SMBs and enterprises alike http://t.co/ccUSXjGt #dellcloudchat @trendmicro

[0x8] TrendMicro: 2 big trends for 2012 in cloud security: making secure clouds fast enough, and encrypting data in the cloud with secure keys #dellcloudchat

[0x9] TrendMicro: Yes - but avoid "cloudwashed" service providers without real cloud services for SMBs #dellcloudchat @krishnan

[0xA] TrendMicro: Serously? How many private clouds AREN'T open to the Internet? #dellcloudchat @krishnan

Latest MITRE News

The MITRE Corporation is a not–for–profit organization chartered to work in the public interest. As a national resource, we apply our expertise in systems engineering, information technology, operational concepts, and enterprise modernization to address our sponsors' critical needs.

[0x1] MITRE's Lillian Zarrelli Ryals Named Board Chair of Women in Aerospace

[0x2] MITRE Named to Glassdoor.com's 50 Best Places to Work List

[0x3] Conclusion of First MITRE Challenge Brings New Way to Fast–Track Ideas

[0x4] Service–Oriented Architecture for e–Government Conference Spotlights Composable Services

[0x5] MITRE Employees Honored for Achievements in STEM

[0x6] MITRE Named to Boston Globe's 2011 Top Places to Work List

[0x7] MITRE Named to InformationWeek 500 List of Innovative Business Technology Organizations

[0x8] Department of Defense Renames R&D Center Operated by MITRE

[0x9] Top 25 Most Dangerous Software Errors List Released

[0xA] IDG's Computerworld Names MITRE a "Best Place to Work in IT" for Seventh Straight Year

CSOONLINE.com - Compliance

[0x1] How the Red Cross found its ID management groove

[0x2] Hey, CSOs: Suck it up and accept budget cuts

[0x3] Legal quicksand: Shrink-wrap and click-wrap agreements

[0x4] Mobile payments and PCI DSS compliance: Some, but not much, clarity (yet)

[0x5] They're baaack! National data breach notification bills resurface

[0x6] 4 tips for using Facebook legally to conduct background checks (includes video)

[0x7] How ALPS Advisors found its log management groove

[0x8] Security in 3D

[0x9] IT GRC tools: Control your environment

[0xA] Dos and don'ts for IT GRC success

CERIAS Combined Feed

News and Blog posts from CERIAS. This feed does not include our events calendar (http://www.cerias.purdue.edu/feeds/events)

[0x1] Cloud Computing Risks Generally Covered by Cyber Insurance

[0x2] Spafford to Speak at Next Science on Tap

[0x3] No Wikipedia? What if the Internet went down?

[0x4] ACSA Offers Scholarship for Women Studying Information Security

[0x5] The State of Security Education

[0x6] Why Law Enforcement Can’t Stop Hackers

[0x7] Two CERIAS Faculty Receive Honors

[0x8] Cybersecurity Requires a Multifaceted Approach

[0x9] Spafford to Give Keynote Address at Anti-Phishing Conference

[0xA] Sandia National Labs Director to Speak on National Security Challenges

The Falcon's View

Mental meanderings of an infosec obsessive...

[0x1] Bloggers Beware: InfoSec Island

[0x2] PCI, QSAs, and the Audit-Industrial Complex

[0x3] The Gross Example of STRATFOR

[0x4] It's (nearly) 2012 - So What? ;)

[0x5] You Gotta See These :)

[0x6] Impact, Value, and What's Really Important

[0x7] 3 Uncommon Solutions for the 3 Common Problems

[0x8] 3 Common Ways Security Fails People

[0x9] Various Updates

[0xA] RSA US 2012

Leadership 101

Enhancing Global Leadership from the Inside-Out.

[0x1] Leadership Transferability...

[0x2] Growing Your Seeds... Part III

[0x3] Growing Your Seeds... Part II

[0x4] Growing Your Seeds...

[0x5] Your People... Part III

[0x6] Your People... Part II

[0x7] Your People...

[0x8] Building That Institution... Part III

[0x9] Building That Institution... Part II

[0xA] Building That Institution...

Networking & Infrastructure White Papers

Hardware, Linux, Networking, Security, Storage, UNIX, Windows, and Wireless White Papers

[0x1] Insiders' Guide to Evaluating Remote Control Software

[0x2] The Learning Organization Goes Digital

[0x3] 10 Tips - IT Training Support

[0x4] How to Make Your IT Staff Smarter

[0x5] Improving Application Development with Digital Libraries

[0x6] Working Green with Digital Libraries - How it Can Help

[0x7] Minimizing Technology Project Delays with Digital Libraries

[0x8] How VMware Virtualization Right-sizes IT Infrastructure to Reduce Power Consumption

[0x9] Reduce Energy Costs and Go Green with VMware Virtualization

[0xA] VMware Customer Success: Consolidating Data Centers at First American

US-CERT Current Activity

The US-CERT Current Activity web page is a regularly updated summary of the most frequent, high-impact types of security incidents currently being reported to the US-CERT.

[0x1] Denial-of-Service Malware Campaign

[0x2] Google Releases Chrome 16.0.912.77

[0x3] Symantec pcAnywhere Hotfix

[0x4] Best Practices for Recovery from the Malicious Erasure of Files

[0x5] Oracle Releases Critical Patch Update for January 2012

[0x6] Phishing Campaign Using Spoofed US-CERT Email Addresses

[0x7] Microsoft Releases January Security Bulletin

[0x8] Adobe Releases Security Advisory for Adobe Reader and Acrobat

[0x9] Google Releases Chrome 16.0.912.75

[0xA] Multiple Programming Language Implementations Vulnerable to Hash Table Collision Attacks

InformationWeek Security News

InformationWeek

[0x1] Stolen iPhone Saved By iCloud

[0x2] Twitter Country Blocks: 10 Key Facts

[0x3] White House Presses For New Cybersecurity Laws

[0x4] Megaupload: What's Next for Founders, Users?

[0x5] Mobile Payment Technology Gotchas

[0x6] InformationWeek's RSS Feed is brought to you by How drive-by malware works, and are small web sites at risk?

[0x7] Smartcards: Still A Smart Choice?

[0x8] Google Study: Social Media Enhances Privacy

[0x9] U.S. Intel Chief: Insider Leaks A Top Priority

[0xA] FBI Seeks Data-Mining App for Social Media

The Ethical Hacker Network RSS News Feed

Most Recent Additions to The Ethical Hacker Network, the best, single source of educational content for forensics, pen testing and incident response. Hacker Challenges with prizes, free monthly giveaways, tutorials, articles, forums, certification info and more.

[0x1] Top 5 Tips To Make Social Engineering Your Career

[0x2] December 2011 Free Giveaway Winner - SANS

[0x3] InfoSec in the Boardroom

[0x4] Book Review: A Bug Hunter’s Diary

[0x5] November 2011 Free Giveaway Winner - Black Hat Events

[0x6] CASP – The Evolution of Technical Security Certifications?

[0x7] Oracle Web Hacking Part II

[0x8] October 2011 Free Giveaway Winners - Mile2

[0x9] Video: Keyloggers 101

[0xA] The Logic Behind Application Logic Defects

Help Net Security - News

Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.

[0x1] FBI in the market for app to monitor social networks

[0x2] Facebook scammers leverage the Amazon Cloud

[0x3] Perplexing malware served on social welfare site

[0x4] Unwanted apps on Android smartphones

[0x5] Protect sensitive data on Mac OS X, Windows and Linux

[0x6] A peek into the Sykipot campaigns

[0x7] Multi-cloud security groups

[0x8] Software platform for security in industrial control systems

[0x9] Protecting Mac OS X from privacy threats

[0xA] Ubuntu Unleashed 2012 Edition

Security Justice

Security Justice

[0x1] Security Justice Episode 36 – Security Turtles, Podcast Updates, DEFCON and Black Hat

[0x2] Security Justice Episode 35- THOTCON Edition

[0x3] Streaming Live at #THOTCON

[0x4] Security Justice Episode 34 – THOTCON, Notacon and the Penetration Testing Execution Standard with @kaospunk

[0x5] Shmoocon 2011 Podcaster Meetup Details

[0x6] Security Justice Episode 33 – ShmooCon, BSidesCLE, Notacon, THOTCON, O-ISC, AIDE and DerbyCon

[0x7] Security Justice Episode 32 – Talking Risk with Alex Hutton (@alexhutton)

[0x8] Security Justice Episode 31 – The Kevin Johnson (@secureideas) Special

[0x9] Security Justice Episode 30 – Rafal Los (@Wh1t3Rabbit) and Dave Kennedy (@dave_rel1k) at the InfoSec Summit

[0xA] Security Justice Episode 29 – Building Blocks for Building Docs with Alex Hamerstone, James Arlen

F5 White Papers

F5 white papers provide information on critical technology areas and how F5 products help you improve upon or prepare for their deployment.

[0x1] Adaptable and Resilient VDI Deployments

[0x2] Secure Access with the BIG-IP System

[0x3] The New Data Center Firewall Paradigm

[0x4] Vulnerability Assessment with Application Security

[0x5] Optimizing Data Backup with Intelligent File Virtualization

[0x6] IBM and F5 Cloud Reference Guide

[0x7] Carrier-Grade Network Address Translation (CGNAT)

[0x8] Oracle Database Firewall White Paper (includes reference to F5 ASM)

[0x9] Strategic Solutions for Government IT

[0xA] APT Dot Gov: Protecting Federal Systems from Advanced Threats | SANS White Paper

CERT/CC Blog

[0x1] CNAME flux

[0x2] Challenges in Network Monitoring above the Enterprise

[0x3] Signed Java and Cisco AnyConnect

[0x4] Effectiveness of Microsoft Office File Validation

[0x5] A Security Comparison: Microsoft Office vs. Oracle Openoffice

[0x6] Announcing the CERT Basic Fuzzing Framework 2.0

[0x7] "Network Monitoring for Web-Based Threats" released

[0x8] Blog reorganization

[0x9] CERT Basic Fuzzing Framework Update

[0xA] Study of Malicious Domain Names: TLD Distribution

ITWeb Internet

Latest ICT Internet news

[0x1] MS deepens Facebook ties

[0x2] Branded Internet presents wholesale dept

[0x3] X for expensive?

[0x4] Pilots get online training

[0x5] Low connectivity hinders e-business

[0x6] Sony intros classical music e-store

[0x7] MWEB Business expands uncapped services

[0x8] How will SA lower broadband cost?

[0x9] Amazon plans app store

[0xA] MWEB Business extends ADSL offerings

CSOONLINE.com - Emergency Preparedness

[0x1] Security at the scene of the crime

[0x2] Government engineers actively plan for cyberwar

[0x3] Experts advise caution, information sharing in wake of alleged utility attacks

[0x4] Will 2012 REALLY be the year of the cyberwar?

[0x5] Smartphones, social media tied into ELERTS emergency system

[0x6] BC/DR spending not a top budget priority

[0x7] Storm brewing

[0x8] BC/DR and cloud-services lessons learned from a recent Amazon outage

[0x9] Cloud services as part of a BC/DR plan after a terror attack

[0xA] Smart grid (in)securities

Cisco Security Notices

Cisco Security Notices (the 40 most recent notices )

[0x1] Cisco IPSec VPN Implementation Group Name Enumeration Vulnerability

[0x2] Crafted DNS Packet Can Cause Denial Of Service

[0x3] Cisco IPsec VPN Implementation Group Password Usage Vulnerability

[0x4] Response to BugTraq - Cisco Clean Access Agent (Perfigo) Bypass

[0x5] CSS SSL Authentication Bypass

[0x6] ZOTOB and WORM_RBOT.CBQ Mitigation Recommendations

[0x7] Response to Full-Disclosure - Potential Denial of Service Bug in Cisco Pix Firewall IOS 6.2.2 and 6.3.(3.102)

[0x8] Cisco 802.1x Voice-Enabled Interfaces Allow Anonymous Voice VLAN Access

[0x9] Vulnerability in a Variant of the TCP Timestamps Option

[0xA] W32.BLASTER Worm Mitigation Recommendations

Light Blue Touchpaper

Security Research, Computer Laboratory, University of Cambridge

[0x1] Observations from two weeks of SSH brute force attacks

[0x2] Call for Papers: 12th Privacy Enhancing Technologies Symposium (PETS 2012)

[0x3] Metrics for dynamic networks

[0x4] Beware of cybercrime data memes

[0x5] Call for Papers: USENIX Security 2012

[0x6] Brute force password-guessing attempts on SSH

[0x7] Bankers’ Christmas present

[0x8] Blood donation and privacy

[0x9] Job ad: post-doctoral researcher in security, operating systems, computer architecture

[0xA] Privacy event on Wednesday

Splunk Blogs

[0x1] Nothing says “I love you” like a Splunk Koozie

[0x2] Web Analytics Solution from Splunk

[0x3] Splunk Named An Application Performance Management (APM) Innovator

[0x4] Introducing SplunkNews: The place to go for what you need to know about Splunk

[0x5] New Feature on Splunkbase: Star Ratings for Apps

[0x6] Splunk 4.3: shiny new security features

[0x7] New, easier Splunk 4.3. But don’t just take our word for it!

[0x8] Splunk even more data with 4.3!

[0x9] Three Splunk 4.3 features security pros should start using today

[0xA] Splunk 4.3 : Faster and Insightful Web Analysis

Remove reviews

Pipes Output

[0x1] Relaxed JSON parsing

[0x2] Updating the root certificates for Java

[0x3] Vagrant and VirtualBox on Windows

[0x4] Another friend blogging

[0x5] Using Jython from Maven

[0x6] How to post high-quality videos to Google Video

[0x7] Integrating Maven with Ivy

[0x8] Upgrading the Options (GlobeTrotter) GI515m

[0x9] Getting the most out of your audio recording with Audacity

[0xA] More videos

Network World on Windows

The latest Windows news, analysis and feature articles from NetworkWorld.com.

[0x1] First look: Windows 8 breaks new ground

[0x2] Mac attack

[0x3] 5 key takeaways from CES

[0x4] Looks like October for Windows 8 general release

[0x5] 4 sweet smartphones from CES 2012

[0x6] Microsoft aims Windows 8 storage at enterprise data centers

[0x7] Windows 8 can scrub data from disk, but not up to tough security specifications

[0x8] Microsoft Research delves into economics

[0x9] Windows 8 may prompt malware attacks on hardware, McAfee predicts

[0xA] Biggest Windows 8 news for week ending Dec. 23

CSOONLINE.com - Executive Communication

[0x1] Getting stuff done, your style

[0x2] How your signature can propel your security career

[0x3] Navigating your political landscape

[0x4] Getting stuff done: Public vs private sector edition

[0x5] 9 secrets of getting stuff done in a big company

[0x6] Laggard to leader: What it takes to get there

[0x7] Hey, CSOs: Suck it up and accept budget cuts

[0x8] Finding security's opportunity to engage

[0x9] Master these two words to advance your security career

[0xA] Greetings and salutations!

The MITRE Digest

The MITRE Digest is an online magazine that showcases our latest work in aviation systems, defense and intelligence, federal sector modernization, homeland security, and cutting–edge research. We cover timely topics that affect our sponsors and the national interest.

[0x1] Getting Key Players Together Results in More Army Radios for Less

[0x2] At MITRE, Linking Past and Future Means Preserving Accumulated Knowledge

[0x3] With MITRE's Help, Republic of China Overhauls Air Traffic Management System

[0x4] Building a Sturdy Platform for Government's Internet Presence

[0x5] ARIAS: A Near–Term Runway Safety Solution

[0x6] Shrink to Fit: MITRE–Harvard Collaboration Continues Nanoprocessing Chain of Success

[0x7] MITRE On–Site Support Helps Post–Earthquake Japan Get Back on its Feet

[0x8] By Design: Integrating Privacy into Information Systems

[0x9] EyesFirst Aims to Automatically Detect Chronic Diseases Through Retinal Scans

[0xA] Developing a Healthy "Cyber Ecosystem"

Jeremiah Grossman

A page to show up #1 on Google when searching for "Jeremiah" (Currently #4).
Only the prophet and TV show left!
I have the edge, TV show is cancelled and the prophet isn't generating any new content.

The prophet, TV show, and that pesky Owyang guy going down!
A page to show up #1 on Google when searching for "Jeremiah Grossman", and it FINALLY has!

[0x1] TEDxMaui -- Hack Yourself First

[0x2] Terrified

[0x3] How I got my start -- in Brazilian Jiu-Jitsu

[0x4] Web security content moving to new WhiteHat Security corp blog

[0x5] Sentinel SecurityCheck

[0x6] 11th WhiteHat Website Security Statistic Report: Windows of Exposure

[0x7] Robert “RSnake” Hansen, age 34, has passed away, on Facebook

[0x8] Top Ten Web Hacking Techniques of 2011

[0x9] BINGO! for Application Security

[0xA] Web Browsers and Opt-In Security

Nibble Security

"I've forgotten your password, could you please remind me?"

[0x1] "No More Free Bugs" Initiatives

[0x2] On exploits and assessing security

[0x3] MS Access SQL Injection Cheat Sheet Reloaded

[0x4] TYPO3-SA-2010-020, TYPO3-SA-2010-022 explained

[0x5] Unspecified vulnerabilities

[0x6] VASTO has a new home!

[0x7] Announcing VASTO 0.2

[0x8] Announcing VASTO beta

[0x9] Modern magicians

[0xA] [Confidence0902] The Glass Cage - Virtualization Security

CSOONLINE.com - Access Control

[0x1] The Battle for Biometrics in India

[0x2] How the Red Cross found its ID management groove

[0x3] Sykipot Trojan Hijacks Department of Defense Authentication Smart Cards

[0x4] Watching the watchers

[0x5] With great privilege comes great responsibility

[0x6] CA Takes to the Cloud for Identity Management

[0x7] Amazon Adds App for Easier Two-Factor Authentication

[0x8] Ongoing Drive-By Download Campaign Hijacked MIT Server

[0x9] IBM Anoints Q1 Labs Technology As Centerpiece of Security Portfolio

[0xA] How to rob a bank: A social engineering walkthrough

Wired Top Stories

Top Stories

[0x1] Ai Weiwei: Never Sorry Documents Artist's Social Media Dissent

[0x2] SEC Goes After Online Trading Firms That Unwittingly Helped Latvian Hacker

[0x3] Apple's New iBooks Won't School College Bookstores Any Time Soon

[0x4] Solar-Storm-Fueled Auroras Make for Awesome Backyard Photography

[0x5] Twitter Censorship Move Sparks Backlash: Is It Justified?

[0x6] Simulate Daylight to Combat SAD

[0x7] Pentagon Confused by Its Own 'Subs vs. Terrorists' Plan

[0x8] Microsoft Kinect Could Make Its Way to Laptops

[0x9] Lark Wristband Reveals the Best Lifestyle Choices For a Good Night's Sleep

[0xA] You Aren't Tough. These Guys Are Tough

XSSed syndication

You are welcome to syndicate and share xssed.com contents

[0x1] download.cnet.com XSS

[0x2] www.ime.unicamp.br XSS

[0x3] www.bet365.com XSS

[0x4] fluid.media.mit.edu XSS

[0x5] www.securepay.com XSS

[0x6] atlaswww.hep.anl.gov XSS

[0x7] robotics.research.yale.edu XSS

[0x8] groups.csail.mit.edu XSS

[0x9] wiki.naissance.asso.fr XSS

[0xA] www.speedbit.com XSS

SecureLexicon

[0x1] Designing Brand-aligned Processes

[0x2] Establishing a Brand-aligned Infosec Service

[0x3] Let your clients set your infosec service standards.

[0x4] 2011 Verizon Breach Report – Strategic Attacks on the Rise

[0x5] Slimware – Applied Crowd-Sourcing in the Cloud

[0x6] BlackHat career advice from Kushner and Murray

[0x7] Visualize- A fresh perspective from NetWitness

[0x8] Spying on Hackers – A BlackHat Imperva Interview

[0x9] DefCon interview with Dasient’s Neil Daswani

[0xA] BlackHat 2010 Interview – Preview of Dasient’s ModAntiMalware presentation

NovaInfosecPortal.com

News, events, & resources for infosec professionals in NoVA, DC, & MD

[0x1] Fight Club Rules for ShmooCon 2012

[0x2] Do Security Maturity Models Work?

[0x3] ShmooCon 2012 FireTalks – Update 5 (Schedule)

[0x4] Where You Want to Be This Week for 2012-01-23

[0x5] Job: Security Specialist in DC Metro Area

[0x6] ShmooCon 2012 FireTalks – Update 4 (Second Round Speaker Announcements)

[0x7] Free Online Nmap, OpenVas & More for One-Off Scans

[0x8] Have Passwords Become Obsolete?

[0x9] Motivating Security through Cyber Insurance

[0xA] Where You Want to Be This Week for 2012-01-16

LinuxSecurity.com: Red_Hat Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Password guessing with Medusa 2.0

[0x3] Red Hat: 2012:0062-01: t1lib: Moderate Advisory

[0x4] Red Hat: 2012:0060-01: openssl: Moderate Advisory

[0x5] Red Hat: 2012:0059-01: openssl: Moderate Advisory

[0x6] Red Hat: 2012:0058-01: glibc: Moderate Advisory

[0x7] Red Hat: 2012:0051-01: kvm: Important Advisory

[0x8] Red Hat: 2012:0050-01: qemu-kvm: Important Advisory

[0x9] Red Hat: 2012:0033-01: php: Moderate Advisory

[0xA] Red Hat: 2012:0034-01: java-1.6.0-ibm: Critical Advisory

lkml.org

lkml.org - the realtime linux kernel mailinglist archive

[0x1] Re: [PATCH/RFC G-U-P experts] IB/umem: Modernize our get_user_page ...

[0x2] Re: [PATCH/RFC G-U-P experts] IB/umem: Modernize our get_user_page ...

[0x3] Re: [PATCH 2/2] net caif: Register properly as a pernet subsystem.

[0x4] Re: [PATCH 1/2] netns: Fail conspicously if someone uses net_gener ...

[0x5] Re: pull request: wireless 2012-01-27

[0x6] [PATCH] regmap: Properly round reg_bytes and val_bytes

[0x7] Re: [PATCH 1/3] regmap: Properly round reg_bytes and val_bytes

[0x8] 3.0.18 tcsetattr on fd 0 when detached freezes system (RCU timeout ...

[0x9] Re: [PATCH v5 1/3] seccomp: kill the seccomp_t typedef

[0xA] Re: [PATCH] rtc: twl: optimize IRQ bit access

CSOONLINE.com - Malware/Cybercrime

[0x1] Security Roundup: the Triumph of Hactivists, the Sorrow of Symantec

[0x2] Kenyan Officials Say Government Sites Hit By Indonesian Hacker

[0x3] Drive-By-Download Attack Exploits Critical Vulnerability in Windows Media Player

[0x4] Are You At Risk? What Cybercriminals Do with Your Personal Data

[0x5] Norm spreads cheer in the security sandbox with Malware Analyzer G2 (MAG2)

[0x6] Accused Kelihos Botmaster's Former Employer 'angered' At Revelation

[0x7] Goal of new security service: More involvement from ISPs, carriers

[0x8] Nokia to Pay $55k for Spam SMS

[0x9] Microsoft Names Alleged Kelihos Botnet Creator

[0xA] Twitter Acquires Antimalware Company Dasient

CSOONLINE.com - Security Industry

[0x1] Managing information security during an innovation void

[0x2] Open Data Center Alliance working on cloud usage models

[0x3] Blind spots: How cyber defense is like stopping Tim Tebow

[0x4] 2011 Women of Influence award winners named

[0x5] The 3rd annual CSO holiday gift guide

[0x6] Finding security's opportunity to engage

[0x7] Selling technology to cops, part 2

[0x8] What NetWitness brings to the RSA table

[0x9] Certifiable! The quiz

[0xA] Symantec's Salem: Cloud was game-changer for us

US-CERT Technical Cyber Security Alerts

US-CERT Technical Cyber Security Alerts provide timely information about current security issues, vulnerabilities, and exploits.

[0x1] TA12-024A: "Anonymous" DDoS Activity

[0x2] TA12-010A: Microsoft Updates for Multiple Vulnerabilities

[0x3] TA12-006A: Wi-Fi Protected Setup (WPS) Vulnerable to Brute-Force Attack

[0x4] TA11-350A: Adobe Updates for Multiple Vulnerabilities

[0x5] TA11-347A: Microsoft Updates for Multiple Vulnerabilities

[0x6] TA11-312A: Microsoft Updates for Multiple Vulnerabilities

[0x7] TA11-286A: Apple Updates for Multiple Vulnerabilities

[0x8] TA11-284A: Microsoft Updates for Multiple Vulnerabilities

[0x9] TA11-256A: Microsoft Updates for Multiple Vulnerabilities

[0xA] TA11-222A: Adobe Updates for Multiple Vulnerabilities

mr_me's IT security blog

Exploiting, Reversing, Fuzzing, Code Analysis and Web Application Security

[0x1] Heap Overflows For Humans 103.5

[0x2] Heap Overflows For Humans 103

[0x3] Heap Overflows For Humans 102.5

[0x4] Heap Overflows For Humans – 102

[0x5] Introducing FiveBelow, the dummy file fuzzer

[0x6] Ruxmon presentation – Hostile exploitation under win32

[0x7] Securabit interview, ie aurora dep bypass

[0x8] Breaking web security – its all about RCE.

[0x9] Heap Overflows For Humans – 101

[0xA] Format strings, from %x to calc

Ministry of Justice Latest news

[0x1] Tribunal awards: defaulters' names to be put on public debt register

[0x2] Powers of Attorney cost reduction takes effect

[0x3] New probation trusts announced to cut reoffending

[0x4] Law firms to allow non-lawyer partners

[0x5] Appointment of new members to Advisory Panel on Public Sector Information

[0x6] Guide to Criminal Procedure (Amendment No. 2) Rules 2008

[0x7] Her Majesty's Courts Service key performance indicators 2009-10

[0x8] Public have their say on how criminals payback

[0x9] Domestic violence: 18 new special courts announced

[0xA] Justice minister welcomes annual report on deaths in custody

Networking/Security Forums

Security Forums Dot Com :: Share Your Knowledge

[0x1] is it possible you help me personally

[0x2] En av varldens ledande oversattningsbyraer

[0x3] Think I have a Problem..

[0x4] Learning from Windows to Linux

[0x5] dual ISP routers

[0x6] Yahoo and Rediff opens Google ads page

[0x7] Basic question regarding hacking

[0x8] Was I hacked?

[0x9] Config change control

[0xA] BIOS password

Well, I'm Back

Robert O'Callahan. Christian. Repatriate Kiwi. Mozilla hacker.

[0x1] You Know You're In Australia When...

[0x2] MediaStreams Processing Demos

[0x3] "Cut The Rope" and HTML5 Audio

[0x4] Risk Tolerance

[0x5] A Case For Non-Fatal Assertions

[0x6] Revelation

[0x7] Television

[0x8] Love

[0x9] Developernomics

[0xA] Moves In Computer Science Education

Open Source Security

Discussion of security flaws, concepts, and practices in the Open Source community

[0x1] Re: non-Linux advance notification list

[0x2] Re: non-Linux advance notification list

[0x3] Re: CVE Request: Debian (others?) openssh-server: Forced Command handling leaks private information to ssh clients

[0x4] Re: non-Linux advance notification list

[0x5] Re: non-Linux advance notification list

[0x6] Re: Subscribe to linux-distros

[0x7] Re: Subscribe to linux-distros

[0x8] Re: CVE Request: Debian (others?) openssh-server: Forced Command handling leaks private information to ssh clients

[0x9] Re: CVE Request: Debian (others?) openssh-server: Forced Command handling leaks private information to ssh clients

[0xA] Re: Subscribe to linux-distros

Suspekt...

A Blog About Code, Information Security, PHP And More

[0x1] Improving the ASLR of Mac OS X Snow Leopard

[0x2] Speaking at POC 2010 - ASLR for jailbroken iPhones

[0x3] Month of PHP Security 2010 has begun…

[0x4] SyScan-Workshop: Advanced PHP Auditing at Source and Bytecode Level

[0x5] MOPS CFP: Deadline Extension - April 18, 2010

[0x6] MOPS - Zend Webinar: Secure Application Development with the Zend Framework

[0x7] Zend Webinar: Sichere Applikationen auf Basis des Zend Frameworks

[0x8] Suhosin-Patch 0.9.9.1

[0x9] Month of PHP Security - Blog Post Drawing

[0xA] Patch breaks Suhosin Security Feature in Debian Unstable/Testing

Security Labs

[0x1] Phoenix, Phoenix, I need help!

[0x2] entrepreneur.com compromised with CrimePack

[0x3] Search for Google Chrome leads to Compromised Chrome Plugin Forum

[0x4] The rise of a typosquatting army

[0x5] Trending Topic Search for "QuickTime" Leads to Phishing Site

[0x6] My email address was shared on Twitter, but who cares?

[0x7] Malicious email scam "Re: Scan from a Xerox W. Pro #XXXXXXX" returns with a new face

[0x8] One critical and six important Microsoft patches to start 2012

[0x9] Typosquatting social web gains top Alexa ranking

[0xA] Spam Emails Link To QR Codes

Computerworld - Security RSS feed

[0x1] Twitter's country-specific blocking brings hazards and hope

[0x2] Adscend denies Facebook, AG allegations

[0x3] Facebook IPO could come as soon as next week

[0x4] Facebook scammers redirect victims through Amazon's cloud

[0x5] Security roundup: The triumph of hactivists, the sorrow of Symantec

[0x6] Hawaii legislators bid aloha to controversial data retention bill

[0x7] White House CTO Chopra leaving his post

[0x8] Rubinstein leaves HP

[0x9] Researchers unearth more Chinese links to defense contractor attacks

[0xA] CloudPassage launches new security product for public clouds

Codenomicon News - RSS Feed

Codenomicon News - RSS Feed

[0x1] New Fuzzing Platform Defensics X Released!

[0x2] Codenomicon and FH Brandenburg work together for safer tomorrow

[0x3] Codenomicon Network Analyzer wins IT Security Product of the Year Award

[0x4] MultiServiceForum Introduces Robustness Testing at VoLTE Interoperability Event

[0x5] Codenomicon warns about poor quality of Bluetooth equipment

[0x6] Webcast on NGN Security featuring Ovum Analyst

[0x7] Check out the August 2011 issue of Codenomicon Newsletter

[0x8] Codenomicon brings fuzzing to the cloud

[0x9] Codenomicon endorses rugged software movement

[0xA] The Leading Experts in Fuzz Testing Come Together in Las Vegas

DVLabs: Published Advisories

Published Advisories

[0x1] TPTI-11-14 - Adobe Shockwave DEMX Remote Code Execution Vulnerability

[0x2] TPTI-11-13 - McAfee SaaS myCIOScn.dll Scan Method Script Injection Remote Code Execution Vulnerability

[0x3] TPTI-11-12 - McAfee SaaS MyAsUtil5.2.0.603.dll SecureObjectFactory Instantiation Design Flaw Remote Code Execution Vulnerability

[0x4] TPTI-11-08 - Adobe Shockwave iml32.dll DEMX Chunk GIF Parsing Remote Code Execution Vulnerability

[0x5] TPTI-11-09 - Adobe Shockwave iml32.dll CSWV Chunk Byte Array Parsing Remote Code Execution Vulnerability

[0x6] TPTI-11-10 - Adobe Shockwave dirapi.dll rcsL Chunk Parsing Remote Code Execution Vulnerability

[0x7] TPTI-11-11 - Adobe Shockwave Lnam Chunk Parsing Remote Code Execution Vulnerability

[0x8] TPTI-11-07 - Adobe Shockwave iml32.dll CSWV Chunk Parsing Remote Code Execution Vulnerability

[0x9] TPTI-11-06 - Oracle Java ICC Profile rcs2 Tag Parsing Remote Code Execution Vulnerability

[0xA] TPTI-11-04 - Adobe Shockwave GIF Logical Screen Descriptor Parsing Remote Code Execution Vulnerability

Deb Shinder's Blog

Deb Shinder is MS SECURITY. An Enterprise Security MVP, she has the “inside story” on all topics related to securing Microsoft networks, from the server all the way down to the network-connected smart phone. Her blog will address Microsoft’s security products and technologies including those built into the operating system (access controls and permissions, EFS, BitLocker, etc.), network security technologies (Active Directory, IPsec, DirectAccess, etc.) and separate security products (ISA Server/TMG, IAG, ILM and the Forefront family of client and server security products and services). This blog focuses on how network administrators and network security specialists can create a multi-layered security strategy, develop sound security policies, and build a strong line of defense around the network to prevent both internal and external attack.

[0x1] Death, taxes and Google

[0x2] The risk of storing data in the cloud with “unknown others”

[0x3] Middle East cyberwar cripples web sites

[0x4] Cyber insurance: A must have or the latest scam?

[0x5] Blueprint for Private Cloud Security Solution

[0x6] When someone else’s insider is your threat

[0x7] Ten Years of Trustworthy Computing

[0x8] Phishers impersonate Facebook security personnel

[0x9] Microsoft update conquers the Beast

[0xA] Mac malware threat

TechRadar: All latest news feeds

TechRadar UK latest feeds

[0x1] Motorola Droid Razr Maxx gives 8 hours of LTE battery life

[0x2] Imminent Facebook IPO may value company at $100 billion

[0x3] LG 55-inch OLED to ship in second half of 2012

[0x4] Tim Cook hits back at Apple labour abuse claims

[0x5] Jon Rubinstein leaves HP

[0x6] More Canon 5D Mark III 'specs' leaked

[0x7] 7 days...: Has Apple created a BlackBerry robot?

[0x8] News in Brief: One more thing: today's other news

[0x9] Asus Windows 8 prototypes feature baked-in Kinect

[0xA] Android Developers say bye to Menu button

Apple

[0x1] Yahoo kills a bunch of mobile apps you’ve never used

[0x2] Macworld | iWorld 2012 highlights for home theater nuts and audiophiles

[0x3] Games for the weekend: Tank Riders

[0x4] Apple to buy Hollywood? Not a chance.

[0x5] For Apple, iCloud is just the beginning

[0x6] Samsung probably sold the most smartphones in 2011

[0x7] Why the iPad is a salesperson’s best friend

[0x8] Siri isn’t a bandwidth hog & users aren’t the problem

[0x9] Macworld | iWorld 2012 highlights for developers

[0xA] KeepRecipes creates an iTunes for cookbooks

Room362.com RSS Feed

Blog

[0x1] (UAC) User Assisted Compromise

[0x2] Hak5 Segment Sneak Peak

[0x3] Shared Links

[0x4] Hash Types for John the Ripper

[0x5] First day of a No Starch Christmas - Winner

[0x6] 12 Days of No Starch Press

[0x7] Run POST Modules On All Sessions

[0x8] MSFConsole Prompt Fiddling

[0x9] The Dirty Little Secrets They Didn't Teach You In Pentesting Class - Video

[0xA] The Dirty Little Secrets They Didn't Teach You In Pentesting Class - Slides

ITWeb News Feed

Latest ICT news

[0x1] Apple stock breaks $300 for first time

[0x2] Sony delays Gran Turismo release

[0x3] MS deepens Facebook ties

[0x4] Media firms approached on Yahoo sale

[0x5] Doing more with less

[0x6] Bytes People Solutions honoured

[0x7] Virtualisation benefits SME market

[0x8] MCI adapts Adapt on Demand

[0x9] Intel reports $11bn revenue quarter

[0xA] Konica Minolta SA offers green toner

Check Point Update Services Advisories

You are viewing a feed that contains frequently updated content. When you subscribe to a feed, it is added to the Common Feed List. Updated information from the feed is automatically downloaded to your computer and can be viewed in Internet Explorer and other programs.

[0x1] Samba SRVSVC RPC sec_io_acl Request Handling Heap Buffer Overflow

[0x2] Microsoft Office Excel Label Record Buffer Overflow

[0x3] Preemptive Protection against Adobe Reader and Acrobat Embedded BMP Malicious JavaScript Memory Corruption (APSB12-01; CVE-2011-4372)

[0x4] Adobe Reader and Acrobat Embedded BMP Memory Corruption (APSB12-01; CVE-2012-4373)

[0x5] Adobe Reader and Acrobat Malformed JavaScript Heap Corruption (APSB12-01; CVE-2011-4371)

[0x6] Adobe Acrobat and Reader JPEG DCT Dequantizer Memory Corruption (APSB12-01; CVE-2011-4370)

[0x7] MIT Kerberos KDC LDAP Back Null Pointer Dereference Denial of Service (CVE-2011-1527)

[0x8] Oracle Database CTXSYS.DRVDISP.TABLEFUNC_ASOWN Buffer Overflow (CVE-2011-2301)

[0x9] Apple Safari WebKit Form Elements Denial of Service (CVE-2011-2813)

[0xA] Google Chrome and Apple Safari Apple Webkit Ruby Memory Corruption (CVE-2011-1440)

CIO Security

Latest Security issues from CIO UK

[0x1] Demand for IT contractors may grow due to Vickers bank report

[0x2] Universal Credit IT plans too optimistic, MPs warn

[0x3] Criminals impersonate UK police to spread ransom Trojan

[0x4] John Lewis's IT director Paul Coby outlines IT strategy

[0x5] HP in DWP job offshoring U-turn

[0x6] Algorithmic stock trading rapidly replacing humans

[0x7] Algorithmic stock trading rapidly replacing humans, warns government paper

[0x8] Poundland spends on new LAN

[0x9] Many businesses lining up cloud computing but not yet migrating

[0xA] Many businesses lining up cloud computing but not yet migrating, report claims

Free and Useful Online Resources for Designers and Developers

Free and useful online resources for designer and developers

[0x1] 15 Best Magento Themes For eCommerce Websites

[0x2] 55 Fresh And Free Texture Packs To Spice Up Your Designs

[0x3] 15 Useful And Free High Quality Folder Icon Sets

[0x4] 50 Beautiful Yet Free HTML5 And CSS3 Templates

[0x5] 16 Free High Quality Floral Photoshop Brush Sets

[0x6] 15 jQuery Calendar Date Picker Plugins

[0x7] 7 Highly Useful Online Tools For Website Validation And Testing

[0x8] 40 Fresh And High Quality Free Icon Sets In PSD Format

[0x9] Web Hosting Accounts (With Unlimited Resources) Giveaway From Zyma

[0xA] Three Useful Web Applications For Designers And Alike

Rootsecure.net

The security news site for systems administrators & hackers - keeping you informed about all the top security news stories updated daily

[0x1] arstechnica: "TWO *REAL* GUNS POINTED AT ME" - how the FBI raided Anonymous

[0x2] Navy Times: Chinese virus targets DoD Common Access Card

[0x3] CNBC: Supreme Court: Warrant Needed for GPS Tracking

[0x4] Computer World: What Megaupload's Demise Teaches about Cloud Storage

[0x5] timeslive.co.za: It was a happy New Year's Day for gang who pulled off...R42m Postbank heist

[0x6] Fox News: Hackers zap Zappos - Info from 24 million users stolen

[0x7] Boing Boing: Researcher - T-Mobile UK is secretly disrupting secure communications, leaving customers vulnerable to spying

[0x8] Acros Security: Is Your Online Bank Vulnerable To Currency Rounding Attacks?

[0x9] Net Security: BackTrack 5 Wireless Penetration Testing

[0xA] Acros Security: Google Chrome HTTPS Address Bar Spoofing

Threat Level

Privacy, Crime and Security Online

[0x1] SEC Goes After Online Trading Firms That Unwittingly Helped Latvian Hacker

[0x2] Twitter Censorship Move Sparks Backlash: Is It Justified?

[0x3] Symantec: We Didn’t Know in 2006 Source Code Was Stolen

[0x4] Eight Reasons Anonymous Should Welcome Glenn Beck With Open Arms

[0x5] The Fast, Fabulous, Allegedly Fraudulent Life of Megaupload’s Kim Dotcom

[0x6] Railroad Association Says Hack Memo Was Inaccurate

[0x7] Anonymous Goes After World Governments in Wake of Anti-SOPA Protests

[0x8] Legality of Mobile Phone Tracking Still Unclear Despite Supreme Court GPS Decision

[0x9] Bail Denied for Megaupload’s Kim Dotcom

[0xA] Hackers Breached Railway Network, Disrupted Service

CSOONLINE.com - Investigations/Forensics

[0x1] Security at the scene of the crime

[0x2] U.S. border security strategy faces budget woes

[0x3] Theft, shrink rates rise globally

[0x4] The Collar Bomber's Explosive Tech Gaffe

[0x5] Metasploit 4.0 Sets the Stage for Mass Penetration Testing

[0x6] 5 free ways to use crowdsourcing for investigations

[0x7] Symantec to Acquire Clearwell for E-Discovery

[0x8] Disinformation and digital disappearance

[0x9] Selling technology to cops: 3 ways to make them interested

[0xA] Fighting Organized Retail Crime: Forget the hype!

xorl %eax, %eax

[0x1] Knife: KA-BAR USMC #1217

[0x2] CVE-2011-4362: Lighttpd Remote Signedness Issue

[0x3] CVE-2011-4607: PuTTY Password-not-Wiped Vulnerability

[0x4] CVE-2011-4339: OpenIPMI Event Daemon Insecure PID File Creation

[0x5] CVE-2011-4620: PLIB Stack Based Buffer Overflow

[0x6] acpid UNIX Domain Socket Name Buffer Overflow

[0x7] Knife: Böker Wurfmesser Magnum Profi II

[0x8] Book: A Bug Hunter’s Diary

[0x9] Admin Mistakes: Apache Reload and Log Files

[0xA] CVE-2011-4132: Linux kernel jbd/jbd2 Local DoS

Liquidmatrix Security Digest

Bringing Fire To The Village: Your Source For Computer, Network & Information Security News

[0x1] Google Privacy Policy To Be Revised

[0x2] DreamHost, FTC, Zone-H And More Defacements

[0x3] RSA 2012 Parties

[0x4] The French Urban eXperiment

[0x5] Anonymous Snatching Defeat From The Jaws of Victory?

[0x6] Iran To Execute Programmer

[0x7] Feds Shutdown Megaupload, Bust Founder

[0x8] Israeli hackers respond

[0x9] Hackers Hit El Al And Tel Aviv Stock Exchange

[0xA] Norton Source Code To Be Posted Tuesday

Network World on Intrustion Detection and Prevention

The latest intrusion detection and prevention news and analysis from NetworkWorld.com.

[0x1] DreamHost resets customer FTP passwords following database breach

[0x2] Romanian NASA hacker gets a three-year suspended prison sentence

[0x3] Sykipot Trojan hijacks Department of Defense authentication smart cards

[0x4] Father's attempt at parental control resulted in hacked German police system

[0x5] Oracle's latest Java moves frustrate users and vendors

[0x6] Ten IT news stories we'll read in 2012

[0x7] Why Law Enforcement Can't Stop Hackers

[0x8] Hacker selling access to compromised websites gets hacked

[0x9] Biden, Cameron hit out at Internet censorship, hacking

[0xA] Researcher finds major flaw in Facebook

Security Tool Files ≈ Packet Storm

Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers

[0x1] Dark D0rk3r 0.5

[0x2] p0f 3.03b Windows Port

[0x3] Mobius Forensic Toolkit 0.5.11

[0x4] Dark D0rk3r 0.4

[0x5] OpenDNSSEC 1.3.5

[0x6] MagicHash Collision Testing Tool

[0x7] IPT_PKD Iptables Port Knocking Detection 1.10

[0x8] Dark D0rk3r 0.3

[0x9] Dark D0rk3r 0.2

[0xA] Suricata IDPE 1.2.1

PenTester Scripting

[0x1] discovery:ssl_tests

[0x2] authors:jason_haddix

[0x3] discovery

[0x4] mapping

[0x5] mapping:nmap_open_port_stats - created

[0x6] exploitation

[0x7] exploitation:p0wnpr0xy - created

[0x8] mapping:userpass - created

[0x9] exploitation:sqlinjector - created

[0xA] exploitation:get_to_post - created

Dark Reading - All Stories

Dark Reading is the premier online resource helping information security professionals manage the balance between protection and access. It offers breaking news and analysis on attacks, breaches and vulnerabilities, as well as strategies for protecting enterprise data. It also offers guidance on setting risk management and compliance policies.

[0x1] The Mechanics Of Breach Notification

[0x2] Security Careers: A Closer Look At Digital Investigations

[0x3] Smartcards: Still A Smart Choice?

[0x4] Study: The Aftermath Of A Breach

[0x5] Hopping Aboard The Mobile Payment Bandwagon? Bring A Helmet

[0x6] Six-Year-Old Breach Comes Back To Haunt Symantec

[0x7] Hacktivists Turn To DNS Hijacking

[0x8] Database Password Storage Exposes Need For Better ID Management

[0x9] DNSSEC Error Caused NASA Website To Be Blocked

[0xA] Looking Over The RIM And Into The Chasm

Gandi IWI Blog

[0x1] IP Transit Outage in France Telecom

[0x2] Maintenance Gandi.Net and API

[0x3] .CN domain creation suspension

[0x4] -50% discount for .ME extensions

[0x5] .HK domains now available at Gandi!

[0x6] Accented .EU domain names open on December 10th at 11:00 CET!

[0x7] .PT domains available at Gandi

[0x8] Network Maintenance overnight 19-20 November

[0x9] Hosting: Launch of multiple IP addresses for your servers

[0xA] Your server on IPv6?

LinuxSecurity.com

The central voice for Linux and Open Source security news.

[0x1] Hacking stunt: Stealing smartphone crypto keys using plain old radio

[0x2] Judges set timetable for McKinnon case resolution

[0x3] Apache Shiro 1.2.0 enhances its password hashing

[0x4] Hackers ramping up their firepower, says study

[0x5] Security Software Aims To Trick Hackers

[0x6] DNSSEC Error Caused NASA Website To Be Blocked

[0x7] Debian: 2394-1: libxml2: Multiple vulnerabilities

[0x8] Ubuntu: 1349-1: X.Org vulnerability

[0x9] Ubuntu: 1348-1: ICU vulnerability

[0xA] Ubuntu: 1342-1: Linux kernel (Oneiric backport) vulnerability

Security Tools News & Tips

Just another WordPress weblog

[0x1] Microsoft Security Essentials

[0x2] NSMXpress

[0x3] Korea to train 3,000 ‘cyber sheriffs’

[0x4] FortiClient standard edition

[0x5] 10 Solid Tips to Safeguard Your Facebook Privacy

[0x6] K9 Web Protection

[0x7] Check Point Power-1 Appliances

[0x8] Wordpress blogs hacked – Upgrade your Wordpress NOW!

[0x9] Cisco ASA 5500 Series Firewall

[0xA] (IN)SECURE Magazine Issue 22 is out

IT.com.mk

[0x1] Илјадници полски интернет корисници излегоа на протести против ACTA

[0x2] Основачот на Megaupload веќе не е најдобар играч во Call of Duty

[0x3] Србија започна да регистрира кирилични .срб домени

[0x4] Twitter ќе цензура твитови во одредени земји

[0x5] Google+ сега е достапен и за малолетните корисници

[0x6] FBI развива апликации за анализа на друштвените мрежи

[0x7] Кажете му збогум на копчето Menu, вели Android тимот

[0x8] Забавната индустрија ги обвини Google и Bing дека споделуваат пиратерија

[0x9] EУ ja потпиша контроверзната ACTA

[0xA] Angry Birds доаѓа на Facebook

Ed Smiley's Blog

IT and Infosec Security Ramblings

[0x1] Bookmarks for October 11th through October 13th

[0x2] Bookmarks for October 11th from 00:00 to 20:00

[0x3] Bookmarks for October 9th through October 10th

[0x4] Bookmarks for October 8th through October 9th

[0x5] Bookmarks for October 7th through October 8th

[0x6] Bookmarks for October 6th through October 7th

[0x7] Bookmarks for October 6th from 00:00 to 06:01

[0x8] Bookmarks for October 5th from 17:00 to 23:01

[0x9] Bookmarks for October 5th from 10:00 to 16:00

[0xA] Bookmarks for October 5th from 03:00 to 09:00

Security University 2011 Class Schedule

2011 Security University Classes

[0x1] CISSP® Prep/The Official SU CISSP® Prep Class

[0x2] Q/EH® Qualified/ Ethical Hacker Class - Enroll Now!

[0x3] Q/SA® Qualified/ Security Analyst Penetration Tester Certification w/ Q/PTL® License - Enroll Now!

[0x4] Q/FE® Qualified/ Forensic Expert - Enroll Now!

[0x5] Q/ND® Qualified/ Network Defender - Enroll Now!

[0x6] Q/NSP® Qualified/ Network Security Policy Admin and SOA Security Oriented Architect - Enroll Now!

[0x7] Q/AAP® Qualified Access, Authentication and PKI Professional - Enroll Now!

[0x8] CWNA™/CWSP™ Boot Camp - Enroll Now!

[0x9] Q/WAD® Qualified/ Wireless Analyst and Defender - Enroll Now!

[0xA] Q/SSE® Qualified/ Software Security Expert Cert. - Enroll Now!

NYT > Cryptography

News about cryptography, including commentary and archival articles published in The New York Times.

[0x1] Britain’s GCHQ Uses Online Puzzle to Recruit Hackers

[0x2] How 18th-Century Copiale Cipher Was Cracked

[0x3] One-Time Pad Encryption Dates Back to Telegraph Codebook

[0x4] A Crack in the Code Kryptos Is Keeping

[0x5] Debate Over P vs. NP Proof Highlights Web Collaboration

[0x6] Universities Spar Over Disappearing Electronic Messages

[0x7] Goodbye, Passwords. You Aren’t a Good Defense.

[0x8] Adding Math to List of Security Threats

[0x9] Studios’ DVDs Face a Crack in Security

[0xA] A Cryptologist Takes a Crack at Deciphering DNA’s Deep Secrets

C-skills

A blog dedicated to software and network trickery.

[0x1] sshttp is in the git

[0x2] All your servers are belong to us

[0x3] me hubbing and gitting on github

[0x4] Censorship

[0x5] openpam trickery

[0x6] Fun with git-upload-pack

[0x7] AIO

[0x8] New sshttp available

[0x9] refactored IPv6 load balancing software

[0xA] pwnies 2011

Evil Routers

[0x1] Wireless Field Day 2

[0x2] How to Upgrade the License on a Cisco ASA

[0x3] HP Eliminates Premium Licenses; Existing Customers Shafted

[0x4] life# reload

[0x5] iou2net and IOUlive86 now available on Github

[0x6] IOU License Generator on Github

[0x7] Why Gigamon Scares The Crap Out of Me

[0x8] Choose Internetworking

[0x9] Hold Yourself Accountable, in Public

[0xA] Why You Should Be Blogging

HITBSecNews - Keeping Knowledge Free for Over a Decade

[0x1] AirAsia blames 'IT issues' in price case

[0x2] Computer Coding: Not for Geeks Only

[0x3] Logitech Cuts Forecasts on Euro, Slowing Sales

[0x4] iPhone 5 release details "leaked"

[0x5] Tim Cook: Apple does not turn a blind eye to supply chain problems

[0x6] Motorola sells 200,000 tablets, reports $80-million loss

[0x7] Malicious MIDI files lead to rootkit malware

[0x8] Megaupload case gets weirder with gun charges, flight risks, and an inflatable tank

[0x9] How Web giants store big - and we mean big - data

[0xA] EFF: Keep Jailbreaking Legal

TechRadar: Internet news

TechRadar UK latest feeds

[0x1] Imminent Facebook IPO may value company at $100 billion

[0x2] News in Brief: One more thing: today's other news

[0x3] Google Music intros complete library downloads

[0x4] Opinion: Twitter tweet takedowns: censorship or sensible?

[0x5] Google: we are being upfront about privacy

[0x6] In Depth: LoveFilm vs Netflix: which is best for you?

[0x7] Twitter outlines new tweet-takedown plans

[0x8] Week in Tech: Nokia and Apple smash records

[0x9] Spotify Premium subscribers top 3 million

[0xA] Logitech officially out of Google TV game

Security Career/Staffing

[0x1] ShmooCon 2012 is this weekend. Boohoo

[0x2] Key Sessions at CISO Executive Summit 2011

[0x3] Blogging Cybersecurity: Looking Back at the Best, Worst and Most Surprising

[0x4] Security Metrics and the Balanced Scorecard

[0x5] Why Government Security Pros Are Vital

[0x6] Foxnews.com - Drones, Malware and a Continued Lack of Infosec - Rinse and Repeat

[0x7] What's Holding CISO's Back?

[0x8] Hey, what’s for supper? We are having a risk-based pot roast tonight! Roll the dice.

[0x9] Drive Customer Growth And Business Differentiation

[0xA] Cyber Surveillance & Warning Striker

XSSed syndication

You are welcome to syndicate and share xssed.com contents

[0x1] Exploitation of Self-Only Cross-Site Scripting in Google Code

[0x2] The Beginners Guide to XSS

[0x3] Blog: Reducing XSS by way of Automatic Context-Aware Escaping in Template Systems

[0x4] Browser Hijacking Techniques 2009

[0x5] WordPress.com permanent XSS vulnerability

[0x6] How to write a XSS (cross site scripting) worm for McCodes sites

[0x7] Open redirect vulnerabilities: definition and prevention

[0x8] Paper: Smashing the Web for fun & profit using XSS

[0x9] Paper: Defending against XSS with .NET

[0xA] Paper: Carnival, or how to camouflage data for XSS filters

Google Online Security Blog

The latest news and insights from Google on security and safety on the Internet.

[0x1] Tech tips that are Good to Know

[0x2] Expanding Safe Browsing Alerts to include malware distribution domains

[0x3] Reminder: Safe Browsing version 1 API turning down December 1

[0x4] Protecting data for the long term with forward secrecy

[0x5] Safe Browsing Alerts for Network Administrators is graduating from Labs

[0x6] Gmail account security in Iran

[0x7] An update on attempted man-in-the-middle attacks

[0x8] Four Years of Web Malware

[0x9] Fuzzing at scale

[0xA] 2-step verification: stay safe around the world in 40 languages

Latest Secunia Blog Entries

Secunia collects, evaluates, verifies, and analyses vulnerability information.

[0x1] SVCRP Status Update and Winners

[0x2] CIO: Secunia’s new vulnerability disclosure deadline

[0x3] Frost & Sullivan: Vulnerability Research Q3 2011

[0x4] Secunia Research Sets Half Year Coordination Deadline

[0x5] Ovum Technology Audit: Secunia CSI 5.0

[0x6] CBS News: Security tips from legendary hacker

[0x7] TechCrunch: Microsoft IE silent upgrades

[0x8] KrebsOnSecurity: Attempted Malvertising

[0x9] Computerworld: Java exploits

[0xA] Blast: Secunia PSI a top 10 free app

PandaLabs Blog

Everything you need to know about Internet threats

[0x1] Katy Perry and Russell Brand baits to spread a new Facebook worm

[0x2] Sex, lies and Twitter

[0x3] Megaupload and the cybercrime fight

[0x4] The Rise of the Ransomware

[0x5] 2012 Security Trends

[0x6] Could targeted attacks be avoided?

[0x7] Fake Cloud AV 2012

[0x8] Hong Kong, AVAR 2011

[0x9] PandaLabs Report – Q3 2011

[0xA] Deobfuscating malicious code layer by layer

Twitter / Panda_Security

Twitter updates from Panda Security / Panda_Security.

[0x1] Panda_Security: We have launched a new beta version of Panda Cloud Office Protection 6.0. You can win 200$ and free licenses: http://t.co/aIdfyHKW

[0x2] Panda_Security: @AnonMatrix @Techgeekandmore @helpartaroeu @RealDavidCarter @techionary Thanks for the RT!!

[0x3] Panda_Security: Take a look at this new post on PandaLabs blog. Katy Perry and Russell Brand, baits to spread a new Facebook worm http://t.co/OjrpMUWJ

[0x4] Panda_Security: Katy Perry and Russell Brand Used as Bait to Spread New Facebook Worm, According to PandaLabs. More at: http://t.co/yD2C9Xns

[0x5] Panda_Security: @LivedinItaly Thanks for your tip! Glad you like and enjoy Panda ActiveScan

[0x6] Panda_Security: Apps, apps, and more apps. New article on Panda Tech Support blog: http://t.co/EE9DZXgC #LaPiazza #PandaSecurity

[0x7] Panda_Security: Tx!! RT @gcluley: Panda's @Luis_Corrons has got himself into some trouble internet dating one of his Twitter followers http://t.co/Hkr3avG3

[0x8] Panda_Security: Sex, lies and Twitter. New post on PandaLabs blog--> http://t.co/Hkr3avG3 @Luis_Corrons risk his marriage to write this post :-)

[0x9] Panda_Security: Absinthe – jailbreaking the Apple 4S http://t.co/C7onGzMk via @kevtownsend. Quotes by @Luis_Corrons, Tech Director at PandaLabs

[0xA] Panda_Security: Microsoft Names New Defendant in Kelihos Case -->http://t.co/bytuKQt8

Securelist / Alerts

[0x1] Trojan-Ransom.Win32.Gpcode.ax

[0x2] Email-Worm.Win32.VBMania

[0x3] Net-Worm.Win32.Kido

[0x4] Virus.Win32.Gpcode.ak

[0x5] Email-Worm.Win32.Warezov.nf

[0x6] Email-Worm.Win32.Warezov.mx

[0x7] Email-Worm.Win32.Warezov.ms

[0x8] Email-Worm.Win32.Zhelatin

[0x9] Email-Worm.Win32.Zhelatin.u

[0xA] Email-Worm.Win32.Zhelatin.r

Hungry Hacker

The Hungry Hacker's Explanation of Everything

[0x1] Our DSL Modem was overheating…

[0x2] Review: Logitech G330 Headset

[0x3] FreeBSD on Linode

[0x4] Buggy Digital Volume Controls

[0x5] Fixing an Office Chair

[0x6] Buying a little more time from my Microsoft Optical Mouse

[0x7] lspci for Windows… Sort of…

[0x8] Super-caching with TimThumb

[0x9] Low-pressure Spyder with Pure Energy Regulator

[0xA] UPnP-IGD on FreeBSD with PF

Jeremy's Brain Dump

Some worthless information from my brain.

[0x1] FISMA

[0x2] Access Controls Article

[0x3] PMP Equations

[0x4] Math

[0x5] What is security

[0x6] New Hosting

[0x7] WordPress 2.3 and Feedburn Widget

[0x8] So, what is a CISSP anyways?

[0x9] Upgrading the OS on my MythBox

[0xA] Blogs vs. Forums

IT Management & Trends White Papers

CIO, Emerging Technologies, and Project Management White Papers

[0x1] Insiders' Guide to Evaluating Remote Control Software

[0x2] Best-Practice Automation of Invoice Delivery from SAP(R) Solutions - Keeping Customers Satisfied While Making the Move

[0x3] The Learning Organization Goes Digital

[0x4] 10 Tips - IT Training Support

[0x5] How to Make Your IT Staff Smarter

[0x6] Improving Application Development with Digital Libraries

[0x7] Working Green with Digital Libraries - How it Can Help

[0x8] Minimizing Technology Project Delays with Digital Libraries

[0x9] How VMware Virtualization Right-sizes IT Infrastructure to Reduce Power Consumption

[0xA] Reduce Energy Costs and Go Green with VMware Virtualization

Dr Anton Chuvakin Blog PERSONAL Blog

LogChat: Andrew Hay and Anton Chuvakin talk about logging, log management and related topics

[0x1] Links for 2012-01-25 [del.icio.us]

[0x2] Links for 2012-01-12 [del.icio.us]

[0x3] Links for 2012-01-11 [del.icio.us]

[0x4] Links for 2012-01-09 [del.icio.us]

[0x5] Annual Blog Round-Up – 2011

[0x6] Links for 2012-01-03 [del.icio.us]

[0x7] Monthly Blog Round-Up – December 2011

[0x8] Links for 2011-12-19 [del.icio.us]

[0x9] Links for 2011-12-16 [del.icio.us]

[0xA] Monthly Blog Round-Up – November 2011

Abysssec Security Research

Security Researches , Advisories , Coding , Projects , Reversing , Exploitation , Fuzzing

[0x1] Microsoft Excel 2007 SP2 Buffer Overwrite Vulnerability BA / Exploit (MS11-021)

[0x2] bypassing all anti-virus in the world (Good Bye Detection , Hello Infection)

[0x3] Exploit for CVE-2011-0222 Safari SVG Vulnerability

[0x4] Analysis of CVE-2011-0041 vulnerability in GDI+

[0x5] DEP/ASLR bypass using 3rd party + Clarification

[0x6] Exploiting Adobe Flash Player on Windows 7

[0x7] Hacking / Exploiting / Cheating in Online Games

[0x8] Exploiting Internet Explorer 8 on Windows 7

[0x9] Adobe Shockwave player rcsL chunk memory corruption 0day

[0xA] MOAUB – Day by Day

Outscribe

All The Tech That Matters...

[0x1] Binatone iHomePhone 2 Is An Android Landline Phone No One Should Own

[0x2] Smart Battery Charger

[0x3] 128 MB Is Gigantic File Size For Microsoft

[0x4] Happy New Year 2011

[0x5] Android Infographic

[0x6] The Android Privacy Fuss

[0x7] The 47 Top Apps On My Android Phone

[0x8] [Updated] Yes, Google Is Testing Android Paid Apps In India

[0x9] Successful Migration of My Blog to WordPress

[0xA] Blog Under Maintenance – Update

The Hacker Diaries

Ethical Hacking, Security Tools, and all things Cyber Security

[0x1] Sony Security Breach

[0x2] How Can You Protect Against Future Epsilon-Like Breaches?

[0x3] Healthcare & Security: A Hacker’s Perspective

[0x4] Best Offensive Security Tools Survey 2010

[0x5] Inside the Mind of a Hacker

[0x6] Hacktivists change the Global Warming Debate

[0x7] Protecting from Identity Theft? A good Start

[0x8] Social Security number code cracked, study claims

[0x9] Pink Floyd star David Gilmour joins fight to halt extradition to US of hacker Gary McKinnon

[0xA] The Myth of the Virus Free Mac

ITWeb Computing

Latest ICT Computing news

[0x1] Sony delays Gran Turismo release

[0x2] MS calls for student innovators

[0x3] Data centres get innovative

[0x4] Sony Ericsson pioneers green phone

[0x5] Fujitsu offers USB zero client

[0x6] Grade 11 wins Computer Olympiad

[0x7] Intel powers local youth

[0x8] Best-case cloud computing years away

[0x9] Desktop virtualisation demand surges

[0xA] Czech operators support mobile payment

Security Watch

[0x1] End of Year Security Reports, The Complete List

[0x2] GSM Security, 2011

[0x3] Ad Networks Drive-by Download attack

[0x4] Materials, SecTor 2010

[0x5] Google Hacking Database Reborn

[0x6] Reports, State of the Internet 2010, CA Threat Landscape

[0x7] Materials, VB2010 conference

[0x8] Reports, NSSLabs Consumer Anti-Malware Products Test Report Q3 2010

[0x9] Materials, HITB Malaysia, 2010

[0xA] Patching Days for Oracle, Java, and Microsoft

[H]ardOCP News/Article Feed

News/Article Feed for [H]ardOCP

[0x1] [H]ard|OCP Week in Reviews

[0x2] Former Groupon Sales Reps Countersue Over Tactics

[0x3] [H]ardware Round-Up II

[0x4] Star Trek Enterprise Coffee Table

[0x5] Is Facebook Really Worth $100 Billion?

[0x6] Ubuntu's Heads-Up Display Desktop

[0x7] Free Cocaine With Your Amazon Book Order

[0x8] Why History Needs Software Piracy

[0x9] Gaming [H]eadlines

[0xA] Social Media 'Private' Data Is Fair Game In Court

SecurityVibes UK

Security & Compliance Community

[0x1] The analyst view: 2011 in perspective

[0x2] The pen tester’s view of 2011: awareness rises but complacency reigns

[0x3] Stratfor clients braced for disclosures

[0x4] Northrop Grumman and Finmeccanica aim for NATO cyber role

[0x5] Security poised for place on government fast track?

[0x6] Spammers turn on festive themes

[0x7] Company bosses: barrier to security in essential services

[0x8] Cisco: get to work on known unknowns in 2012

[0x9] Tough cookies – ICO on new privacy rules

[0xA] Are reports of the death of the hardware token premature?

Aladdin Knowledge Systems Latest HASP Press Releases

Aladdin Knowledge Systems Latest HASP Press Releases - RSS Feed

[0x1] China's Largest CAD/CAM Software Developer Selects Aladdin HASP SRM

[0x2] HASP SRM v 3.60 Provides Automatic File Wrapping for Windows x64 Applications

[0x3] Leading Network Engineering Firm in China Selects Aladdin HASP SRM to Stop Software Piracy

[0x4] Aladdin Announces Enhanced HASP SRM Anti-Piracy Tool for Mac Software Developers

[0x5] Aladdin HASP SRM Adds Automatic File Wrapping to Secure Intellectual Property in Java-Based Applications

[0x6] Aladdin HASP SRM Adds Linux Support

[0x7] Iris Biometrics Leader Secures Software with Aladdin HASP SRM

[0x8] Aladdin HASP SRM Wins Codie Award for Best Digital Rights Management Solution

[0x9] Aladdin Announces First Runtime Installer Certified for Windows Vista

[0xA] Aladdin HASP SRM Receives CompTIA SoftwareCEO Innovation Award

Packetstan

A blog about packets, tools, and bacon

[0x1] Snort Fortification Against Evasions

[0x2] What I Learned At Camp

[0x3] Sorting Packet Captures with Scapy

[0x4] Crafting Overlapping Fragments ….. Finally!

[0x5] Crafting Overlapping Fragments ..... Eventually (Part 2)

[0x6] Crafting Overlapping Fragments ..... Eventually

[0x7] NBNS Spoofing on your way to World Domination

[0x8] Extracting AP names from Packet Captures

[0x9] Exploiting Networks with Loki on Backtrack 4 R2

[0xA] Scapy, and Random Acts of Packety Violence

Securityvulns exploits channel

Securityvulns exploits newsline

[0x1] iptoolsex.pl

[0x2] p_cve-2011-4362.c

[0x3] enumerator_asterisk_nat_peers.rb

[0x4] https://twitter.com/#!/w3bd3vil/status/148454992989261824

[0x5] 7350roaringbeastv3.zip

[0x6] oracleocepoc.php

[0x7] zftpex.py

[0x8] knftpd_exploit.py

[0x9] bwocxrun_1.zip

[0xA] killapache.pl

contagio

malware dump

[0x1] An Overview of Exploit Packs (Update 14) January 19, 2012

[0x2] Blackhole Ramnit - samples and analysis

[0x3] Adobe Zero Day CVE-2011-2462 - with samples

[0x4] 30 PDF files processed by Cuckoo Sandbox - results and samples

[0x5] Nov 3 CVE-2011-0611 1104statment.pdf analyzed via Cuckoo sandbox

[0x6] Hi

[0x7] Step by step binary analysis with Frankie Li ( dg003.exe dropper from "XinTang Event.chm" )

[0x8] Oct 18 CVE-2009-3129 XLS 2011-10-18 101 calendar

[0x9] Oct 17 CVE-2010-2883 PDF Report on the coming Presidential Election in TW

[0xA] Oct 24 CVE-2011-0611 PDF 2011-10-24 NorthKorea with Taidoor

Twitter / unitedsummit

Twitter updates from UNITEDSecuritySummit / unitedsummit.

[0x1] unitedsummit: Check out all the UNITED presentations posted in the Rapid7 Community: http://t.co/Bzg7FhXa #Fridayworkavoidance ;-)

[0x2] unitedsummit: Directions on reporting UNITED Security Summit 2011 (ISC)2 CISSP CPEs http://t.co/Ay2yhWFp

[0x3] unitedsummit: Thanks to everyone that attended the UNITED Security Summit. We hope you enjoyed it as much as we did. Those staying for training: enjoy!

[0x4] unitedsummit: There's too much focus on achieving compliance, rather, use the framework as a tool to prioritize, classify and reduce risk. #UNITEDsummit

[0x5] unitedsummit: Compliance is like washing your hands - it's good hygene, but it won't necessarily help you when you get malaria. #UNITEDsummit

[0x6] unitedsummit: There is still a need for greater innovation around security tools to help those below the security poverty line get started #UNITEDsummit

[0x7] unitedsummit: It's been a great two days focused on Innovation and Collaboration at #UNITEDsummit - thanks to sponsors and attendees for participating!

[0x8] unitedsummit: Marcus Carey - you need to hack your own network to ensure that your security tools & vendors are actually doing their job - #UNITEDsummit

[0x9] unitedsummit: Marcus Carey - organizations should use Google alerts for pastebin to know when hackers post information about their company #UNITEDsummit

[0xA] unitedsummit: Marcus Carey recapping the breach scenario used at the #UNITEDsummit - lots of low hanging fruit for people to grab for better security

Zscaler Research

The Zscaler Research Team is focused on bleeding edge web security research in the cloud computing era. This blog provides an opportunity for us to share our thoughts and ideas and interact with the community at-large. We welcome your feedback and encourage you to join the dialogue.

[0x1] Introducing Project Zulu

[0x2] Fake missing plugin warnings used for spam/spyware

[0x3] Zscaler keygen: beware of what you are looking for

[0x4] SOPA Protest: Wikipedia Traffic Trend (updated)

[0x5] Popularity of Exploit kits leading to an increase in compromised websites

[0x6] An example of likejacking (Facebook clickjacking)

[0x7] Google serves ad for Adware/Spyware

[0x8] Web threats: trends and statistics

[0x9] Facebook used to make scams look legitimate

[0xA] 2012 Security Predictions

Splunk Blogs

[0x1] Nothing says “I love you” like a Splunk Koozie

[0x2] Web Analytics Solution from Splunk

[0x3] Splunk Named An Application Performance Management (APM) Innovator

[0x4] Introducing SplunkNews: The place to go for what you need to know about Splunk

[0x5] New Feature on Splunkbase: Star Ratings for Apps

[0x6] Splunk 4.3: shiny new security features

[0x7] New, easier Splunk 4.3. But don’t just take our word for it!

[0x8] Splunk even more data with 4.3!

[0x9] Three Splunk 4.3 features security pros should start using today

[0xA] Splunk 4.3 : Faster and Insightful Web Analysis

Microsoft Security Content: Comprehensive Edition

Microsoft Security Content: Comprehensive Edition

[0x1] MS12-004 - Critical : Vulnerabilities in Windows Media Could Allow Remote Code Execution (2636391) - Version: 1.2

[0x2] MS11-049 - Important : Vulnerability in the Microsoft XML Editor Could Allow Information Disclosure (2543893) - Version: 2.3

[0x3] MS11-025 - Important : Vulnerability in Microsoft Foundation Class (MFC) Library Could Allow Remote Code Execution (2500212) - Version: 4.2

[0x4] Microsoft Security Advisory (2641690): Fraudulent Digital Certificates Could Allow Spoofing - Version: 3.0

[0x5] MS12-006 - Important : Vulnerability in SSL/TLS Could Allow Information Disclosure (2643584) - Version: 1.1

[0x6] Summary for June 2011 - Version: 3.1

[0x7] MS11-100 - Critical : Vulnerabilities in .NET Framework Could Allow Elevation of Privilege (2638420) - Version: 1.2

[0x8] MS12-007 - Important : Vulnerability in AntiXSS Library Could Allow Information Disclosure (2607664) - Version: 2.1

[0x9] Summary for January 2012 - Version: 2.0

[0xA] MS12-005 - Important : Vulnerability in Microsoft Windows Could Allow Remote Code Execution (2584146) - Version: 1.0

Rational Survivability

PLEASE NOTE: I HAVE PERMANENTLY MOVED MY BLOG TO http://www.rationalsurvivability.com/blog <-- All these posts/comments have been moved there and all new posts since May 2009 appear there.

[0x1] IMPORTANT REMINDER: My Blog and RSS Feed Have Moved To http://www.rationalsurvivability.com/blog

[0x2] IMPORTANT REMINDER: My Blog and RSS Feed Have Moved

[0x3] IMPORTANT: Moving My Blog & RSS Feed

[0x4] BeanSec! Wednesday, March 18, 2009 - 6PM to ?

[0x5] How To Be PCI Compliant in the Cloud...

[0x6] On the Overcast Podcast with Geva Perry and James Urquhart

[0x7] More On Clouds & Botnets: MeatClouds, CloudFlux, LeapFrog, EDoS and More!

[0x8] Source Boston - Video Interviews of Security Rockstars...

[0x9] Oh Noes: We Can't Monitor/Protect Against Intra-VM Traffic!

[0xA] Sun vs. Cisco? I'm Getting My Popcorn...

Panda Research Blog

Leading the way in proactive malware detection

[0x1] Q2 2011 Test Results of Security Suites

[0x2] Tis the comparative season

[0x3] Microsoft’s 6-year long open door to malware

[0x4] Panda Antivirus Command Line Scanner 9.5.1.2

[0x5] AV-Test.org 2010 Test Results

[0x6] Microsoft just doesn’t get it…. Security is about diversity

[0x7] Dear Microsoft: Please Stop Pushing Potentially Unwanted Software Through Windows Update

[0x8] Virus Bulletin 2010

[0x9] AV-Comparatives Performance Test 2010

[0xA] PC Security Labs July 2010 Test Results

The Web Application Security Consortium

The Web Application Security Consortium (WASC) is an international group of experts, industry practitioners, and organizational representatives who produce open source and widely agreed upon best-practice security standards for the World Wide Web.

[0x1] Ryan Barnett edited Distributed Web Honeypots FAQ

[0x2] Sherif Koussa edited Static Analysis Tool Evaluation Criteria Working

[0x3] Sherif Koussa edited Static Analysis Tool Evaluation Criteria

[0x4] Sherif Koussa edited Static Analysis Tool Evaluation Criteria Working

[0x5] Sherif Koussa edited Static Analysis Tool Evaluation Criteria Working

[0x6] Sherif Koussa edited Static Analysis Tool Evaluation Criteria Working

[0x7] Sherif Koussa edited Static Analysis Tool Evaluation Criteria Working

[0x8] Sherif Koussa edited Static Analysis Tool Evaluation Criteria Working

[0x9] Sherif Koussa edited Static Analysis Tool Evaluation Criteria Working

[0xA] Robert Auger edited The Web Security Glossary

Network Security Podcast

[0x1] Network Security Podcast, Episode 265

[0x2] Network Security Podcast, Episode 264

[0x3] Network Security Podcast, Episode 263

[0x4] Southern Fried Network Security Podcast

[0x5] Network Security Podcast, Episode 262

[0x6] Network Security Podcast, Episode 261

[0x7] Network Security Podcast, Episode 260

[0x8] Network Security Podcast, Episode 259

[0x9] Network Security Podcast, Episode 258

[0xA] Network Security Podcast, Episode 257

MSDN Blogs

via RSS Feed & Other Development Resources

[0x1] Add a BI Semantic Model Connection Content Type to a Library (PowerPivot for SharePoint)

[0x2] Imagine Grant announced! Good work LifeLens!

[0x3] MVP Friday Five: January 27, 2012

[0x4] Drill to Dynamics GP – Management Reporter 2012 Feature Highlight

[0x5] [#MetroLynch] Forismatic

[0x6] Team Foundation Service Preview – Configure a master backlog and sub-teams

[0x7] I want to use Canvas but need to support IE8

[0x8] WindowsPhone 7.5 Apps: 2-Day HACKATHON

[0x9] Buildnummern-Übersicht Microsoft Dynamics 5.0 Service Pack 1

[0xA] Omid’s developer journey

Danger Room

What's Next in National Security

[0x1] Pentagon Confused by Its Own ‘Subs vs. Terrorists’ Plan

[0x2] Mexico Launches New Offensive Against Cartel, Ratcheting Up Drug War

[0x3] For Newt, ‘World War III’ Is Just the Beginning

[0x4] America’s Most Dangerous Mall: Going Shopping at the Pentagon

[0x5] Humans Lose, Robots Win in New Defense Budget

[0x6] Vigilante Torturer Dies in Mexico

[0x7] East Africa Is the New Epicenter of America’s Shadow War

[0x8] Invisibility’s Next Frontier: Scientists Cloak 3-D Objects

[0x9] Black Hawk Up: Spec Ops Rescue Hostages in Somalia

[0xA] Cairo Contagion: Military Tracks Uprising’s ‘Infectious’ Ideas

News ≈ Packet Storm

Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers

[0x1] Anonymous' Topiary Gets A Plea Date

[0x2] Kelios Botnet Suspect Denies Microsoft Accusations

[0x3] Students Busted For Hacking Computers, Changing Grades

[0x4] US Lawmakers Question Google Over Privacy Policy

[0x5] Judges Set Timetable For McKinnon Case Resolution

[0x6] Facebook And Washington State Take On A Clickjacker

[0x7] European Parliament Rapporteur Quits In Acta Protest

[0x8] Linux Vendors Urgently Patch A Security Flaw

[0x9] Sophos Warns Of Rising Android Malware Threats In 2012

[0xA] How Google Keeps Your Secrets Private

Dr. Dobb's Security

Dr. Dobb's

[0x1] OpenSSL Closes Security Hole Six Pack

[0x2] Former Hacker: Software Should Be More Secure

[0x3] The Best of 2011

[0x4] Top Security Threats for 2012

[0x5] Cast Software's Five Pillars of Application Integrity

[0x6] Testing the Final SHA-3 Hashing Algorithms

[0x7] Finding the New Encryption Standard, SHA-3

[0x8] 360° Load Testing for Web, Mobile, and Cloud

[0x9] Jolt Awards for Books: The Rest of the Best

[0xA] ThoughtWorks Updates Release Management and Testing Tools

Steve (GRC) Gibson's Blog

Steve's Public Brain Dumping Ground (watch where you step!)

[0x1] Reverse Engineering RSA’s “Statement”

[0x2] Why Firesheep’s Time Has Come

[0x3] Instant Hotspot Protection from “FireSheep”

[0x4] iPhone 4 External Antenna Problem

[0x5] HCP 0-Day Quick Fix

[0x6] FLASH Adobe Forward to v10.1

[0x7] Pads ARE Next

[0x8] The Obvious Genius of iPad

[0x9] Facebook and the Ford Pinto

[0xA] Steve Gets a Blog!

cryptography on SWiK

[0x1] Stream-Cipher-Test-Algorithm-1

[0x2] cryptoolinux

[0x3] del.icio.us/popular/cryptography

[0x4] password

[0x5] mosref

[0x6] MatrixSSL - embedded SSL for devices

[0x7] Cryptonit

[0x8] turbid

[0x9] cryptlib

[0xA] Galois Field Arithmetic Library

Published Security Alerts

Published Security Alerts

[0x1] SQL Injection in SYS.KUPV$FT in Oracle 10g. Rel. 1

[0x2] SQL Injection in SYS.KUPV$FT_INT in Oracle 10g. Rel. 1

[0x3] Event 10053 logs TDE wallet password in cleartext

[0x4] Transparent Data Encryption stores key unencrypted in the SGA

[0x5] Cross-Site-Scripting in Oracle Workflow wf_route

[0x6] Cross-Site-Scripting in Oracle Workflow wf_monitor

[0x7] Shutdown listener via iSQL*Plus

[0x8] Shutdown listener via Forms Servlet

[0x9] Plaintext Passwords logged during Installation of Oracle HTMLDB

[0xA] Cross-Site-Scripting Vulnerabilities in Oracle HTMLDB

Virtual Shadows

the privacy blog!

[0x1] No surprises……you are being hacked by your government!

[0x2] Santa hacked

[0x3] Patriots in the Cloud

[0x4] Security innovation

[0x5] Hack this as government spy

[0x6] Cyber attacks on critical infrastructure

[0x7] Proving you are secure over compliance

[0x8] Happy bunny finds iPhone

[0x9] HP Enterprise Security – this is what we are about!

[0xA] Power of information

Full Disclosure

A lightly moderated high-traffic forum for disclosure of security information. Fresh vulnerabilities sometimes hit this list many hours before they pass through the Bugtraq moderation queue. The relaxed atmosphere of this quirky list provides some comic relief and certain industry gossip. Unfortunately, most of the posts are worthless drivel, so finding the gems takes patience.

[0x1] Re: when did piracy/theft become expression of freedom

[0x2] Re: when did piracy/theft become expression of freedom

[0x3] [ GLSA 201201-16 ] X.Org X Server/X Keyboard Configuration Database: Screen lock bypass

[0x4] [SECURITY] [DSA 2396-1] qemu-kvm security update

[0x5] Re: when did piracy/theft become expression of freedom

[0x6] [SECURITY] [DSA 2395-1] wireshark security update

[0x7] Re: when did piracy/theft become expression of freedom

[0x8] Advisory: Remote Command Execution in Gitorious

[0x9] Fortigate UTM WAF Appliance - Multiple Web Vulnerabilities

[0xA] [ GLSA 201201-15 ] ktsuss: Privilege escalation

Reformed(?) Hacker

[0x1] Simple way to do a headless install of Sun/Oracle Java6 on ubuntu

[0x2] NoSQL in a Sharded MySQL Context

[0x3] P != NP

[0x4] Lessons learned from a vendor

[0x5] Wiki tab sweep

[0x6] Graph processing

[0x7] Tab Sweep: Search

[0x8] Identifier Tab Sweep

[0x9] When two people know less than one

[0xA] Typical scaling progression for a large website

Episteme: Belief. Knowledge. Wisdom

[0x1] How to Quickly Create New Habits in Your Life

[0x2] Matching and Mirroring (or: Cybernetic Issues in NLP)

[0x3] My Newest Experiment – The Kindle Book

[0x4] Maturity and Business

[0x5] What is it to be Mature?

[0x6] A Branding MAD Lib

[0x7] Suppressing Dissent

[0x8] Byron (and influence through the media)

[0x9] Influence and Failing Kindergarten

[0xA] Return-to-Barry-White Human Exploitation

SecuObs.com

Observatoire de la securite Internet

[0x1] Network Sniffing Using Wireshark to Find Network Vulnerabilities

[0x2] UID Nilekani PC strike deal on biometric data

[0x3] botnet avi

[0x4] Video 4 Botnet

[0x5] PRECRIME BIOMETRIC SYSTEM Fingerprints for Traffic Stops

[0x6] PalmSecure Biometric Scanner

[0x7] Pentesting with Backtrack Bob2

[0x8] India Implements First Biometric ID Program

[0x9] Gunvault GVB1000 Mini Vault Biometric Gun Safe

[0xA] Biometric ID And The Coming Cashless Society YouTube

Carnal0wnage & Attack Research Blog

carnal0wnage and Attack Research Blog

[0x1] psexec fail? upload and exec instead

[0x2] "Sanitize Input"

[0x3] Insecure Object Mapping

[0x4] Not 0wning That ColdFusion Server but Helping...

[0x5] Root that Motorola Xoom and Get You Some BT5

[0x6] SQLMap -- Searching Databases for Specific Columns/Data & Extracting from Specific Columns

[0x7] Aggressive Mode VPN -- IKE-Scan, PSK-Crack, and Cain

[0x8] Embeding A Link To A Network Share In A Word Doc

[0x9] Oracle Report Server - 2-cent hack trick

[0xA] Oracle Web Hacking Part II

Gremwell blogs

[0x1] NeXpose XML - A Rant

[0x2] MagicTree Forum

[0x3] A tool to search for serialized Java objects in a binary stream

[0x4] "Proper" pfSense backup script

[0x5] Ubuntu 11 on Kingston SV100S2/256G SSD

[0x6] MagicTree 1.0 Released

[0x7] Pentesting Web Services with Proprietary Formatted Input

[0x8] MagicTree Build 1559

[0x9] Taming Vulnerability Data - Our article on MagicTree in PenTest Magazine

[0xA] Interview with Data News

StoneBlog.stonesoft.com

Share knowledge about StoneGate

[0x1] Why 2012 is a special year for Helsinki and why this matters for security

[0x2] Variables in SSL VPN startup command path

[0x3] Stonesoft FW/VPN IPsec IKEv2 and IPv6 Interoperability

[0x4] Network Security Update: Your Printer: Benign or Beachhead for Attack?

[0x5] Secure your Exchange in the Cloud with Stonesoft SSL VPN

[0x6] FW AntiVirus settings for max file size limits

[0x7] Stonesoft Mass Security – A Whole Lot of Good Stuff Going On

[0x8] A2Cloud – with a little of that human touch

[0x9] Stonesoft IPS Outperforms Leading Devices in ICSA Labs Tests

[0xA] If you can’t trust the security of the channel, raise the entropy

tanasi.it

Alessandro `jekil` Tanasi blog

[0x1] Cinema: Salt

[0x2] Cinema: Inception

[0x3] Server RPS da Ovh.it e il lungo buio

[0x4] Cosa e` il bunga bunga?

[0x5] Ereditarieta` in Ruby on Rails

[0x6] Cinema: A-Team

[0x7] End Summer Camp

[0x8] Lol: Java sara` il futuro?

[0x9] Router Alice: trovate le password!

[0xA] Cinema: Alice in Wonderland

CSOONLINE.com - Data Protection

[0x1] Security Roundup: the Triumph of Hactivists, the Sorrow of Symantec

[0x2] New Privacy Laws Could Boost EU Cloud Industry

[0x3] Massive Android Malware Op May have Infected 5 Million Users

[0x4] How to Hack an IPad

[0x5] The Real Reasons Why SOPA and PIPA Are Real Bad

[0x6] Researchers Unearth More Chinese Links to Defense Contractor Attacks

[0x7] How to Prevent Thumb Drive Security Disasters

[0x8] Cycling Star Landis Sentenced for Alleged Trojan Attack

[0x9] Middle East Stock Exchanges Hit By Hackers

[0xA] Zscaler Launches Free-to-Use URL Scanning Service

ha.ckers.org web application security lab

Web Application Security Blog

[0x1] And Beyond…

[0x2] FAQ

[0x3] What’s Left?

[0x4] Mod_Security and Slowloris

[0x5] Minimalistic UI Decisions in Browsers

[0x6] Cheating Part 2

[0x7] Cheating Part 1

[0x8] FireSheep

[0x9] Detecting Malice With ModSecurity

[0xA] Performance Primitives

Zone-H.org Defacements

Latest defacements published by Zone-H.org

[0x1] http://www.louweretpartners.nl/templates/beez/index.php

[0x2] http://googleplusonesecrets.com/s3c.html

[0x3] http://menb.mijnbedrijfmobiel.nl/s3c.html

[0x4] http://m.mijnbedrijfmobiel.nl/s3c.html

[0x5] http://htmc.mijnbedrijfmobiel.nl/s3c.html

[0x6] http://buyplusonestoday.com/s3c.html

[0x7] http://getplusonevotes.com/s3c.html

[0x8] http://mgfsa.mijnbedrijfmobiel.nl/s3c.html

[0x9] http://giz-o.com/s3c.html

[0xA] http://girlsandfootballsa.com/s3c.html

CSOONLINE.com - Data Privacy

[0x1] Google Stirs Up Privacy Hornet's Nest

[0x2] EU Regulators Drop Legal Case After UK Implements EPrivacy Legislation

[0x3] Final Phase of Mass. Data Protection Law Kicks in March 1

[0x4] 4 Ways to Manage Your Online Reputation

[0x5] Supreme Court GPS Ruling Called a Win for Privacy

[0x6] Supreme Court: GPS Tracking Needs Court Warrant

[0x7] How smarter hypervisor use can lead to a 'big, big change' in security

[0x8] HTC Phone Update Reportedly Drops Carrier IQ Software

[0x9] Clamor for cloud apps increases corporate data breach risk

[0xA] Tide turns against SOPA, but it's not dead yet

StalkR's Blog

Blog of a security enthusiast

[0x1] Ghost in the Shellcode 2012 Teaser - Hackquest

[0x2] HSTS preloading, public key pinning and Chrome

[0x3] Twitter Archiver

[0x4] Hack in the Box Amsterdam 2011 CTF

[0x5] Ubuntu 10.10->11.04 encrypted LVM fail, rebuilding initramfs, rdinit

[0x6] pCTF 2011 #18 A small bug

[0x7] pCTF 2011 #19 Another small bug

[0x8] pCTF 2011 #26 Hashcalc2

[0x9] pCTF 2011 #22 Hashcalc1

[0xA] pCTF 2011 #32 That's no bluetooth

Techworld.com security

Latest IT articles from Techworld's security channel

[0x1] O&O AutoBackup review

[0x2] Lawmakers seek answers from Google on new privacy measures

[0x3] European Parliament website taken offline in retaliation of ACTA

[0x4] Zscaler launches free link malware scanner Zulu

[0x5] FBI developing social networking spy app

[0x6] FBI devolping social networking spy app

[0x7] Israeli hackers deface Iranian Government websites

[0x8] Accused Kelihos botmaster's former employer 'angered' at revelation

[0x9] Data breach harm assessment 'more important than telling victims'

[0xA] New Zealand judge bails two of Megaupload accused

www.derkeiler.com: Pen-Test

Pen-Test

[0x1] [HITB-Announce] Reminder: HITB2012AMS Call For Papers Closing Soon

[0x2] DoS attacks using Exploit Pack

[0x3] Technology Neutral Healthcheck

[0x4] Exploit Pack - New release

[0x5] Goofile 1.0 - Command line google search for files by domain

[0x6] Best route to penetration testing learning

[0x7] Arachni v0.4 has been released (Open Source Web Application Security Scanner Framework)

[0x8] [TOOL RELEASE] Technitium MAC Address Changer v6 (FREEWARE)

[0x9] IPv6 spoofing

[0xA] Exploitation with Armitage

Technibble

Helping Computer Technicians Become Computer Business Owners

[0x1] How to Leverage Google Voice for Your Computer Repair Business

[0x2] MailStore Home – Easy Email Archiving, Backup and Migration

[0x3] Interview with Computer Repair Inspiration Kevin Berg

[0x4] Thinking of Introducing a Late Fee?

[0x5] Eraser – Secure and Permanent Data Removal

[0x6] What Windows 8 Will Mean for Computer Repair Technicians

[0x7] Manage Your Home Office with Windows Home Server

[0x8] Fabs Autobackup 4 Tech – Now 25% OFF

[0x9] The DOs and DON’Ts of Invoicing Computer Repair Customers

[0xA] Boost Your Revenue with Cloud Storage & Backup

Declan McCullagh's Politech

Politech is the oldest Internet resource devoted to politics and technology. Launched in 1994, the Politech mailing list and then the web site has chronicled the growing intersection of law, culture, technology, politics, and law. Edited by Declan McCullagh.

[0x1] Politicians push for mandatory data retention laws, bipartisanly

[0x2] Who'd make the most technology-friendly president? Discuss.

[0x3] Judge rules defendant can't be forced to divulge PGP passphrase

[0x4] ITU botnet paper published in draft form, comments requested

[0x5] David Burt and his Filtering Facts Web site are back

[0x6] FTC Internet advertising summit in Washington this week

[0x7] Hamline University student suspended after pro-gun rights email

[0x8] MIT student picking up friend at airport nearly shot, charged with "infernal machine" crime

[0x9] Paul Levy: Politicians, infomercial kings try to stifle anonymous Internet speech

[0xA] Colorado sheriff creates roadblock so private firm can demand DNA blood samples

Wired: Threat Level

Kevin Poulsen and Ryan Singel's daily briefing on security, freedom and privacy in the wired and unwired world.

[0x1] SEC Goes After Online Trading Firms That Unwittingly Helped Latvian Hacker

[0x2] Twitter Censorship Move Sparks Backlash: Is It Justified?

[0x3] Symantec: We Didn’t Know in 2006 Source Code Was Stolen

[0x4] Eight Reasons Anonymous Should Welcome Glenn Beck With Open Arms

[0x5] The Fast, Fabulous, Allegedly Fraudulent Life of Megaupload’s Kim Dotcom

[0x6] Railroad Association Says Hack Memo Was Inaccurate

[0x7] Anonymous Goes After World Governments in Wake of Anti-SOPA Protests

[0x8] Legality of Mobile Phone Tracking Still Unclear Despite Supreme Court GPS Decision

[0x9] Bail Denied for Megaupload’s Kim Dotcom

[0xA] Hackers Breached Railway Network, Disrupted Service

CSOONLINE.com - Network Security

[0x1] Norm spreads cheer in the security sandbox with Malware Analyzer G2 (MAG2)

[0x2] Goal of new security service: More involvement from ISPs, carriers

[0x3] Enough defense: Is it time for an IT security offensive?

[0x4] How to Keep Your PC Safe with Sandboxing

[0x5] Avira Teams with Secure.Me for Facebook Security

[0x6] Passwords aren't dead, though maybe yours should be

[0x7] Privacy 2012: I know what you did at 3:30 a.m.

[0x8] More SCADA security flaws surface

[0x9] Will Kim Jong Un be for cyberwarfare what his dad was for nukes?

[0xA] Antivirus Software Sales Expected to Show Strong Growth in 2012

Fortinet Security Blog

The latest news and information about Fortinet products and services for Real Time Network Protection.

[0x1] Thus spoke the Beninese: scammers hijacking Facebook chat

[0x2] SSL VPN with FortiClient Lite for Android

[0x3] Top 10 Posts of 2011 from Fortinet’s FortiGuard Blog

[0x4] Security Minute December 2011 edition

[0x5] Security risks of BYOD policies (podcast interview)

[0x6] Security threat predictions for 2012 (Podcast interview)

[0x7] Analyzing CarrierIQ’s defense

[0x8] 2012 Threat Predictions

[0x9] Android/Foncy emanating and propagating in France

[0xA] Carrier IQ on Android – FAQ

Aladdin Knowledge Systems Latest Press Releases

Aladdin Knowledge Systems Latest Press Releases - RSS Feed

[0x1] Ontario's York Regional Police Meet Canadian Government Regulations with Aladdin eToken

[0x2] Software Piracy in a Recession - Getting Kicked When You Are Down

[0x3] China's Largest CAD/CAM Software Developer Selects Aladdin HASP SRM

[0x4] HASP SRM v 3.60 Provides Automatic File Wrapping for Windows x64 Applications

[0x5] Aladdin Knowledge Systems to Hold Extraordinary General Meeting of Shareholders on February 20, 2009

[0x6] Blog: When good blogs go bad. Or, What is cool about promoting software piracy?

[0x7] Aladdin Announces HASP SRM SaaS Pass

[0x8] Aladdin Knowledge Systems Enters Into Merger Agreement with Vector Capital Affiliate

[0x9] Aladdin Knowledge Systems Comments on Media Reports about Jasmine Discussions

[0xA] Aladdin Named Finalist in 2009 SC Awards Program

The InfoSec Blog

System Integrity: Without Integrity you don't have Security

[0x1] How to decide on what DVD backup software to use

[0x2] Doubts about “Defense in Depth”

[0x3] On the HP Printer Hack

[0x4] Warning – they are out to get you.

[0x5] The real reasons for documentation – and how much

[0x6] Your Asset is my Consumable

[0x7] TV kills!

[0x8] His Bipolar made him do it

[0x9] Using ALE … inappropriately

[0xA] Schneier on Security: Hacking Cars Through Wireless Tire-Pressure

Tech Digest

Gadgets, mobile phones, news and reviews

[0x1] Asda offering 40-inch full HDTV for just £249

[0x2] Power Ethernet replaces your double-gang plug socket with 4-port Powerline connectivity

[0x3] Motorola latest to post Q4 2011 profit woes

[0x4] Galaxy S III pops up on official Samsung website

[0x5] What do Twitter's new international censorship rules mean for you?

[0x6] HTC Sense 4.0 update will add 50GB of Dropbox cloud storage

[0x7] To use a mobile phone in North Korea is now a war crime. Thanks, Dear Dead Leader!

[0x8] BlackBerry Bold 9790 now on sale through Vodafone

[0x9] Action Bar rings the death knell for Android Menu button

[0xA] Steam PC gaming platform getting iPhone and Android app

Jeremiah Grossman

A page to show up #1 on Google when searching for "Jeremiah" (Currently #4).
Only the prophet and TV show left!
I have the edge, TV show is cancelled and the prophet isn't generating any new content.

The prophet, TV show, and that pesky Owyang guy going down!
A page to show up #1 on Google when searching for "Jeremiah Grossman", and it FINALLY has!

[0x1] TEDxMaui -- Hack Yourself First

[0x2] Terrified

[0x3] How I got my start -- in Brazilian Jiu-Jitsu

[0x4] Web security content moving to new WhiteHat Security corp blog

[0x5] Sentinel SecurityCheck

[0x6] 11th WhiteHat Website Security Statistic Report: Windows of Exposure

[0x7] Robert “RSnake” Hansen, age 34, has passed away, on Facebook

[0x8] Top Ten Web Hacking Techniques of 2011

[0x9] BINGO! for Application Security

[0xA] Web Browsers and Opt-In Security

Twitter / sans_isc

Twitter updates from SANS ISC / sans_isc.

[0x1] sans_isc: [Diary] SSH Password attacks using domain name elements as userid, (Fri, Jan 27th): A reader (Thanks Ji... http://t.co/X6tDgdB3 #sansisc

[0x2] sans_isc: [Diary] CISCO Ironport C & M Series telnet vulnerability, (Fri, Jan 27th): In case you missed it there ... http://t.co/uVX8BoNt #sansisc

[0x3] sans_isc: [Diary] ISC StormCast for Friday, January 27th 2012 http://t.co/vZ9UF8K4, (Fr... http://t.co/deyrUsL1 #sansisc

[0x4] sans_isc: [Diary] ISC Feature of the Week: ISC Link Back, (Wed, Jan 25th): Overview Need to attribute informatio... http://t.co/J1kZPlcE #sansisc

[0x5] sans_isc: [Diary] ISC StormCast for Thursday, January 26th 2012 http://t.co/Jf1Nwgoj, (... http://t.co/mHKwBFSt #sansisc

[0x6] sans_isc: [Diary] pcAnywhere users – patch now!, (Wed, Jan 25th): Symantec released a patch for pcAnywhere produc... http://t.co/f0qkp1KU #sansisc

[0x7] sans_isc: RT @johullrich: The not-so-advanced persistent threat http://t.co/scVEVcu3

[0x8] sans_isc: RT @sansappsec: Last day to save €250 on DEV522 Defending Web #AppSec Essentials with @johullrich in Stuttgart http://t.co/AvIF0tFH

[0x9] sans_isc: [Diary] ISC StormCast for Wednesday, January 25th 2012 http://t.co/JWfSfsas, ... http://t.co/UK7Q6ige #sansisc

[0xA] sans_isc: [Diary] Is it time to get rid of NetBIOS?, (Tue, Jan 24th): NetBIOS, and its weaknesses that allow extr... http://t.co/1Bzo0aLB #sansisc

CSOONLINE.com - Strategic Planning/ERM

[0x1] Managing information security during an innovation void

[0x2] Tactics versus strategy

[0x3] What are your risk managers thinking about?

[0x4] How your signature can propel your security career

[0x5] 9 secrets of getting stuff done in a big company

[0x6] How to have real risk management

[0x7] Laggard to leader: What it takes to get there

[0x8] 5 secrets to building a great security team

[0x9] 2011 State of the CSO

[0xA] Lessons in security leadership: Jamil Farshchi

Leetupload News

The latest news for Leetupload.com's largest hacker's database!

[0x1] Mind the Gap!

[0x2] No Root for You -- ISACA

[0x3] Good.Times.Search.Engine -- Hack a Day

[0x4] New Tutorial - How the Microprocessor Works

[0x5] Famous - Copper Heatsink/Wine Chiller Idea on engadget and Hack a Day!

[0x6] Copper Heatsink on the Rocks Mod Finished

[0x7] Another Tutorial - Technical Practical Jokes

[0x8] New Tutorial - Campus WarWalking

[0x9] IRC Up For Use, and IRC Java Client is Here to Stay!

[0xA] VIRII AND EXPLOIT DATABASE IS UP!

Corelan Team

:: Knowledge is not an object, it's a flow ::

[0x1] Exploit writing tutorial part 11 : Heap Spraying Demystified

[0x2] Donations

[0x3] Many roads to IAT

[0x4] WoW64 Egghunter

[0x5] Copyright Dispute resolved

[0x6] Corelan T-Shirt Contest – Derbycon 2011

[0x7] Metasploit Bounty – the Good, the Bad and the Ugly

[0x8] Installing Watobo on BackTrack 5

[0x9] mona.py – the manual

[0xA] ROP your way into B-Sides Las Vegas 2011

CSOONLINE.com - Disaster Recovery

[0x1] Cloud and disaster recovery: Load-balanced data centers are not a perfect solution

[0x2] BC/DR spending not a top budget priority

[0x3] BC/DR and cloud-services lessons learned from a recent Amazon outage

[0x4] Cloud services as part of a BC/DR plan after a terror attack

[0x5] Amazon's cloud failed: How can your cloud be better?

[0x6] CSO's ultimate guide to business continuity and disaster recovery

[0x7] In Canterbury earthquake, mobiles for emergency calls only

[0x8] Cloud disaster recovery: Can you trust your provider?

[0x9] Selected security book excerpts

[0xA] Survey: Business continuity plans still need work

Daily Dave

This technical discussion list covers vulnerability research, exploit development, and security events/gossip. It was started by ImmunitySec founder Dave Aitel and many security luminaries participate. Many posts simply advertise Immunity products, but you can't really fault Dave for being self-promotional on a list named DailyDave.

[0x1] Cyber Politics By Other Means

[0x2] Alligators

[0x3] Open Bars

[0x4] Security Event Horizons

[0x5] New Paper - Acquisition and Analysis of Volatile Memory from Android Devices

[0x6] Re: Symantec AV source compromised and the questions it raises

[0x7] Symantec AV source compromised and the questions it raises

[0x8] Symantec AV source compromised and the questions it raises

[0x9] Apache Struts

[0xA] Re: INFILTRATE Book Club Part 2

PenTestIT

Your source for Information Security Related information!

[0x1] UPDATE: Mobius Forensic Toolkit v0.5.11!

[0x2] PoC Linux privilege escalation exploits

[0x3] Happy Republic Day!

[0x4] UPDATE: Mutillidae 2.1.13!

[0x5] UPDATE: JavaSnoop 1.1 RC2!

[0x6] Anti: Android Network Toolkit

[0x7] UPDATE: WeBaCoo 0.2.1!

[0x8] UPDATE: Risu v1.4.9!

[0x9] UPDATE: Bokken 1.6!

[0xA] MySQLPasswordAuditor: MySQL Audit/Password Recovery & Cracking Tool

Free Information Technology Magazines and Downloads from bestsecuritytips.tradepub.com

Free publications about information technology and digital communication.

[0x1] Server Virtualization: Branching Out of the Data Center

[0x2] A Comprehensive Framework for Securing Virtualized Data Centers

[0x3] Rethinking Server Virtualization: Breaking Performance & Manageability Barriers

[0x4] Desktop Virtualization: The SMB's Answer to Office Productivity

[0x5] The Important Role of Storage for Success in Server Virtualization

[0x6] Comparison of Cisco and ShoreTel Unified Communication Solutions

[0x7] Aberdeen Analyst Insight Paper: ERP & BI: When 1+1=3

[0x8] PC Maintenance Guide (eBook) - Limited Time Offer

[0x9] Security White Paper: Google Apps Messaging and Collaboration Products

[0xA] Moving Your Business to the Cloud with NetSuite and Google Apps

ComPly With Me--- a HIPAA Forum

[0x1] Preventing Cybercrime

[0x2] 3 I's

[0x3] Blue Suit, Red Cape and Red Boots

[0x4] International Talk Like a Pirate Day!

[0x5] Ah, Sweet Mystery

[0x6] Baby One More Time

[0x7] Over and over

[0x8] My Way

[0x9] Time After Time

[0xA] It Wasn't Me

My Security Planet

My Security Planet

[0x1] Mozilla Webdev: Better Know a WebDev: Greg Koberger aka gkoberger

[0x2] Schneier on Security: Password Sharing Among American Teenagers

[0x3] 1 Raindrop: Fatal Separation of Risk Theory and Practice

[0x4] Zero in a bit: Weekly News Round Up

[0x5] cat slave diary: Political expediency

[0x6] Schneier on Security: Evidence on the Effectiveness of Terrorism

[0x7] Zero in a bit: A Conversation With Richard Clarke – Part II

[0x8] Schneier on Security: Federal Judge Orders Defendant to Decrypt Laptop

[0x9] Schneier on Security: Supreme Court Rules that GPS Tracking Requires a Warrant

[0xA] 1 Raindrop: Understanding Cloud Security Standards Part 3

BBC News - Technology

The latest stories from the Technology section of the BBC News web site.

[0x1] Facebook clickjacking legal row

[0x2] Top Euro MP quits in piracy row

[0x3] Botnet suspect denies involvement

[0x4] FBI social network scraping app

[0x5] Twitter 'can censor by country'

[0x6] Intel buys RealNetworks patents

[0x7] Fines threat for credit messages

[0x8] Call for illegal site demotion

[0x9] Web economy 'to double by 2016'

[0xA] Samsung in year end sales boost

Moreover Technologies - Computer security news - 30 of 3324 returned

Moreover Technologies - Real-time news and blogs from thousands of sources

[0x1] Message: This news feed will stop on Jan 23 2012. Thank you for your custom.

[0x2] Get tO Know About Ethical Hacking and Information Security

[0x3] Lithuanian central bank hit by cyber-attack

[0x4] Hacker group Anonymous targets Mexican websites 6:18 pm Reuters

[0x5] Constitution Project Report on Proposed Cybersecurity Programs

[0x6] Geithner: IMF Support Hinges on Higher Euro Firewall

[0x7] Chinas Trojan Horse in Europe

[0x8] Hacker group Anonymous targets Mexican websites

[0x9] SpotAgent: Baltimore speed cams account for 27 percent of ticket revenue

[0xA] Hacker group Anonymous targets Mexican websites (Reuters)

Zero Day Blog RSS | ZDNet

[0x1] Hackers pounce on just-patched Windows Media vulnerability

[0x2] How SCADA highlights the futility of finding security vulnerabilities

[0x3] Microsoft: 'Kelihos' botnet master worked for AV vendor

[0x4] CanSecWest Pwn2Own hacker challenge gets a $105,000 makeover

[0x5] DreamHost hacked, mass password-reset issued

[0x6] Research: Spammers actively harvesting emails from Twitter in real-time

[0x7] New variants of premium rate SMS trojan 'RuFraud' detected in the wild

[0x8] Researchers spot scammers using fake browser plug-ins

[0x9] Was Koobface exposé the right move?

[0xA] TED video: Three types of online attacks

EduGeek.net

EduGeek.net - The I.T. professionals' life line

[0x1] Archive Of Magazine Covers And Contents

[0x2] Shockwave + Macromedia

[0x3] [Video] Remote Control Ornithopter

[0x4] Heritage Library Management Information System

[0x5] Computer Technician - Amersham & Wycombe College

[0x6] GMail Users: Remove/Hide All Gmail Ads

[0x7] multiple user profiles to (rooted) Android phones and tablets

[0x8] Software Use Auditing

[0x9] VAT changes to Educational Services

[0xA] Save the Outdoor Education Centres

Social-Engineer.Org » Blog

Security Through Education

[0x1] Social Engineering Yourself A BotNet

[0x2] Holiday Social Engineering Scrimmage

[0x3] How To Bluff Like a Pro in Vegas

[0x4] The Power of Nonsexual Touch

[0x5] Social Engineering Poll – Endearment vs Authority

[0x6] Social-Engineer.org is GROWING!

[0x7] $99 HP Tablets – Social Engineering, Scams or a Real Deal?

[0x8] Defcon 19 – Lessons Learned

[0x9] Defcon Hackers Steal Data from Oracle – REALLY?

[0xA] Metasploit: A Penetration Testers Guide book from NoStarch Press

Zend Developer Zone (DevZone) - Advancing the art of PHP

advancing the art of PHP. Best practices, samples, articles, news, and community for PHP 4, PHP 5, and beyond.

[0x1] Zend Framework 2.0.0beta1 Released!

[0x2] Zend Framework 1.11.11 Released

[0x3] Announcing September's Zend Framework Bug Hunt Days

[0x4] ZendCon Early Bird Registration ends soon!

[0x5] Announcing the August 2011 Zend Framework Bug-Hunt

[0x6] Zend Framework 1.11.10 Released

[0x7] ZendCon '11 Alumni Discount

[0x8] Announcing July's Zend Framework Bug Hunt Days

[0x9] Zend Framework 1.11.9 Released

[0xA] Zend Framework 1.11.8 Released

honeyblog

A blog on honeypots, honeynets, and more...

[0x1] 2011 Honeynet Project Security Workshop Slides + Videos

[0x2] SysSec Workshop

[0x3] The Last Line of Defense - http://tllod.com

[0x4] Call for Papers: EC2ND'10

[0x5] Chaosradio Express #155

[0x6] Challenge 4 of the Forensic Challenge 2010 - VoIP

[0x7] "Is the Internet for Porn? An Insight Into the Online Adult Industry"

[0x8] USENIX LEET'10 & RAID 2010

[0x9] Technical Report: "Abusing Social Networks for Automated User Profiling"

[0xA] Twitter Spamdetector Service

iDefense Public Vulnerability Disclosures

Feed of Current Public Security Vulnerabilities Disclosed on labs.idefense.com

[0x1] Microsoft Internet Explorer Time Element Behavior Use-After-Free Vulnerability

[0x2] Microsoft Windows Media Player DVR-MS Memory Corruption Vulnerability

[0x3] Microsoft Excel LABELSST Record Memory Corruption Vulnerability

[0x4] Microsoft OLE CPropertyStorage::ReadMultiple Variant Type Confusion Vulnerability

[0x5] Microsoft Windows Kernel Invalid Trap-Frame Management Privilege Escalation Vulnerability

[0x6] RealNetworks RealPlayer RVRENDER Heap Buffer Overflow Vulnerability

[0x7] RealNetworks RealPlayer RealVideo Renderer Memory Corruption Vulnerability

[0x8] RealNetworks RealPlayer AAC Codec Memory Corruption Vulnerability

[0x9] Apple Safari font-face Use-After-Free Vulnerability

[0xA] Multiple Vendor WebKit XML Use-After-Free Vulnerability

CSOONLINE.com - Application Security

[0x1] Kenyan Officials Say Government Sites Hit By Indonesian Hacker

[0x2] Norm spreads cheer in the security sandbox with Malware Analyzer G2 (MAG2)

[0x3] Linux Vendors Rush to Patch Privilege Escalation Flaw After Root Exploits Emerge

[0x4] Secunia Sets Six-Month Deadline for Vulnerability Disclosures

[0x5] Clamor for cloud apps increases corporate data breach risk

[0x6] Oracle to Issue 78 Patches, Including 27 for MySQL

[0x7] Facebook Chat-Based Phishing Attack Impersonates Facebook Security

[0x8] Sykipot Trojan Hijacks Department of Defense Authentication Smart Cards

[0x9] Anonymous Publishes Israeli SCADA Log-in Details

[0xA] Attack Code Published for Serious ASP.NET DoS Vulnerability

Exotic Liability

Exotic Liability

[0x1] Exotic Liability 82 Holidays are Errata funz

[0x2] InfoSec Santa

[0x3] Exotic Liability 80: Unbreakable

[0x4] EL 79: ConGestion

[0x5] Episode 78: Con-dom

[0x6] Exotic Liability 77- Winehouse

[0x7] Exotic Liability 76 - Down the Rabbit Hole

[0x8] Exotic Liability 75: Major Marcus

[0x9] Exotic Liability 74: Emo

[0xA] Exotic Liability 73: A Bad Joke

SecurityInfoWatch Forums - Discussions for the Security Professional

Security discussion forums on topics of security management, policies, guard services, loss prevention, homeland security, alarm systems, network video, security jobs

[0x1] Private Security Service in San Diego

[0x2] N-Tweezy where are you?

[0x3] If You Missed Wage & Hour Webinar

[0x4] NYS 47 Armed Course Questions

[0x5] Professional Security Newsletter

[0x6] Best Practice Review

[0x7] Another Stimulus Company Bankrupt

[0x8] HS and my new hobby

[0x9] Senior Security Analyst (Corporate)

[0xA] RIP and Good Riddance, Maggot

Government Technology

[0x1] Government Technology - January 2009

[0x2] Government Technology - December 2008

[0x3] Government Technology - December 2008

[0x4] Government Technology - November 2008

[0x5] Government Technology - November 2008

[0x6] Government Technology - October 2008

[0x7] Government Technology - October 2008

[0x8] Government Technology - September 2008

[0x9] Government Technology - September 2008

[0xA] Government Technology - August 2008

Cisco Security Advisories

Cisco Security Advisories (the 40 most recent advisories)

[0x1] Attention: New Cisco Security Advisory RSS Feed Locations

[0x2] Denial of Service Vulnerability in Cisco Video Surveillance IP Cameras

[0x3] Cisco Unified Contact Center Express Directory Traversal Vulnerability

[0x4] Cisco Unified Communications Manager Directory Traversal Vulnerability

[0x5] Buffer Overflow Vulnerabilities in the Cisco WebEx Player

[0x6] Cisco Security Agent Remote Code Execution Vulnerabilities

[0x7] Cisco Show and Share Security Vulnerabilities

[0x8] CiscoWorks Common Services Arbitrary Command Execution Vulnerability

[0x9] Cisco TelePresence Video Communication Server Cross-Site Scripting Vulnerability

[0xA] Cisco IOS Software Smart Install Remote Code Execution Vulnerability

Darknet - The Darkside

Ethical Hacking, Penetration Testing & Computer Security

[0x1] Super Powered Malware Sandwiches Found In The Wild – Frankenmalware

[0x2] Mobius Forensic Toolkit 0.5.10 – Forensics Framework To Manage Cases & Case Items

[0x3] Sprint Adds Google Wallet Into New NFC Capable Phones

[0x4] Arachni v0.4 Released – High-Performance (Open Source) Web Application Security Scanner Framework

[0x5] Ramnit Worm Stealing Facebook Account Passwords, E-mail Address & Bank Details

[0x6] Patator – Multi Purpose Brute Forcing Tool

[0x7] US Subway Stores POS Hacked For $3Million Dollars

[0x8] Social Engineering Vulnerability Evaluation and Recommendation Project

[0x9] Cybercrooks May Be Able To Force Mobile Phones To Send Premium-Rate SMS Messages

[0xA] MySQLPasswordAuditor – Free MySQL Audit/Password Recovery & Cracking Tool

US-CERT Cyber Security Bulletins

US-CERT Cyber Security Bulletins provide bi-weekly summaries of security issues and new vulnerabilities. They also provide patches, workarounds, and other actions to help mitigate risk.

[0x1] SB12-023: Vulnerability Summary for the Week of January 16, 2012

[0x2] SB12-016: Vulnerability Summary for the Week of January 9, 2012

[0x3] SB12-009: Vulnerability Summary for the Week of January 2, 2012

[0x4] SB12-002: Vulnerability Summary for the Week of December 26, 2011

[0x5] SB11-360: Vulnerability Summary for the Week of December 19, 2011

[0x6] SB11-353: Vulnerability Summary for the Week of December 12, 2011

[0x7] SB11-346: Vulnerability Summary for the Week of December 5, 2011

[0x8] SB11-339: Vulnerability Summary for the Week of November 28, 2011

[0x9] SB11-332: Vulnerability Summary for the Week of November 21, 2011

[0xA] SB11-325: Vulnerability Summary for the Week of November 14, 2011

Xatrix Security Headlines

Latest Computer Security Headlines

[0x1] Hack Attack: Get Windows XP SP3 Through Windows Update

[0x2] TPB files charges against media companies

[0x3] Storm worm: again.

[0x4] Onslaught on .ORGs

[0x5] OpenOffice.org insecure

[0x6] Leave your laptop at home

[0x7] Hack in the Box – Capture the Flag

[0x8] 35% of pay-per-click fraud?

[0x9] New variant mobile worm

[0xA] Google will help users surf safely

Free Information Technology Magazines and Downloads from bestsecuritytips.tradepub.com

Free publications about information technology and digital communication.

[0x1] Server Virtualization: Branching Out of the Data Center

[0x2] A Comprehensive Framework for Securing Virtualized Data Centers

[0x3] Rethinking Server Virtualization: Breaking Performance & Manageability Barriers

[0x4] Desktop Virtualization: The SMB's Answer to Office Productivity

[0x5] The Important Role of Storage for Success in Server Virtualization

[0x6] Comparison of Cisco and ShoreTel Unified Communication Solutions

[0x7] Aberdeen Analyst Insight Paper: ERP & BI: When 1+1=3

[0x8] PC Maintenance Guide (eBook) - Limited Time Offer

[0x9] Security White Paper: Google Apps Messaging and Collaboration Products

[0xA] Moving Your Business to the Cloud with NetSuite and Google Apps

Securelist / Blog

[0x1] CVE-2012-0003 Exploit ITW

[0x2] Brazilian cybercriminals’ daily earnings - more than you’ll ever earn in a year!

[0x3] Malware wallpaper calendars for 2012

[0x4] Lab Matters - The threat from P2P botnets

[0x5] Two-pronged attack: Argentine site hit by malware and data leak

[0x6] The Zappos Breach and Textual Password Based Authentication

[0x7] A School for Cybercrime: How to Become a Black Hat

[0x8] IRC bot for Android

[0x9] Facebook Security Phishing Attack In The Wild

[0xA] Lab Matters - Cloudy with a chance of stolen data

blog ntic de revolunet

Blog des Nouvelles Technologies de l'Information et de la Communication

[0x1] Le point sur ExtJs 4

[0x2] Revolunet réalise l’application de E-coffrefort.fr

[0x3] Revolunet réalise le magazine digital BellesDemeures.com

[0x4] Présentation de documents en direct

[0x5] Recrute développeur PHP

[0x6] Django internationalisation made easy with i18n

[0x7] Google apps tips

[0x8] Recrutement développeur PHP sur Paris

[0x9] Symbian : l’open source comme ultime recours ?

[0xA] Appels illimités vers le Maroc

Security Bytes

[0x1] Typosquatter hive targets holiday shoppers

[0x2] Nitro attackers sending malicious emails using Symantec report

[0x3] Symantec launches mobile security evaluation, app assessment services

[0x4] Rapid7 massive VC funding opens door to acquisitions, expansion and maybe IPO?

[0x5] Cloud security among PCI Council 2012 special interest groups

[0x6] Report: ‘R&D is under attack’ from China, Russia

[0x7] Secunia brings own spin to vulnerability rewards programs

[0x8] Windows zero-day flaw used in Duqu attacks

[0x9] Duqu Trojan investigation: Indian authorities seize Web hosting provider servers

[0xA] Draft report highlights U.S. government satellites under attack

got privacy?  Musings on the state of Privacy in a connected world. - Blog

Blog

[0x1] Why Information Security (InfoSec) differs from Information Technology security (IT Security)

[0x2] Working Party’s Opinion 13/2011 on the current EU personal data breach framework and recommendations for future policy developments.

[0x3] UK and Germany interception actions

[0x4] RESPONSIBILITY FOR PRIVACY VIOLATIONS IN USER GENERATED CONTENT PROVIDERS (GOOGLE CASE IN ITALY)

[0x5] THE UNITED STATES OF MEXICO’S PRIVACY LAW

[0x6] HB1149: Part II - Who needs to worry about HB1149? (or, Who's Who in the Zoo?)

[0x7] What does the Bavarian Lager case signify for Privacy?

[0x8] Analysis of the EC "Cookie Directive"

[0x9] Privacy implications of Bavarian Lager

[0xA] HB 1149: Did anyone involved in drafting this legislation actually read the PCI DSS?

Electronic Frontiers Australia

Representing Internet users concerned with on-line freedoms and rights

[0x1] Planned US anti-piracy laws a draconian mess

[0x2] Melbourne event: War on the Internet

[0x3] In principle support of R18+ rating for video games

[0x4] New domain names on the way

[0x5] EFA News

[0x6] Conroy: Filter alive and kicking

[0x7] EFA Welcomes R18+ games guidelines

[0x8] Righting the Copyright Imbalance

[0x9] Copyright fight heating up in Australia

[0xA] ICANN San Francisco meeting

Oracle Bloggers

Welcome to Oracle Blogs

Welcome to the Oracle blogging community!

[0x1] Rundum sicher. Ganzheitlich gut beraten.

[0x2] ATG Live Webcast: Oracle E-Business Suite Secure Configuration

[0x3] Best Practices for Database Security and Compliance Webcast Series Begins Feb 1

[0x4] ArchBeat Link-o-Rama for 2012-01-20

[0x5] Fundamental Oracle flaw revealed??? Really ...?

[0x6] Einladung zum Oracle Database Security Seminar

[0x7] Critical Patch Update for January 2012 Now Available

[0x8] Security Newsletter January Edition is Out Now

[0x9] Customers Talk: 5 Identity Platform Webcasts You Can’t Miss

[0xA] Enabling Case-Sensitive Passwords with E-Business Release 12

The RISKS Forum

Peter G. Neumann moderates this regular digest of current events which demonstrate risks to the public in computers and related systems. Security risks are often discussed.

[0x1] Risks Digest 26.70

[0x2] Risks Digest 26.69

[0x3] Risks Digest 26.68

[0x4] Risks Digest 26.67

[0x5] Risks Digest 26.66

[0x6] Risks Digest 26.65

[0x7] Risks Digest 26.64

[0x8] Risks Digest 26.63

[0x9] Risks Digest 26.62

[0xA] Risks Digest 26.61

Security Systems News - Top Stories

[0x1] Simpson Security Systems finishing $7m prison job

[0x2] Honeywell acquires Fire Sentry

[0x3] axonX flourishes under Fike

[0x4] SW24 gears up for intrusion market

[0x5] Alarm.com: New motion sensor/camera launched

[0x6] World Wide acquires three

[0x7] ESTA: An open-book association

[0x8] Hackett Security acquires in Illinois

[0x9] Guardian buys American Alarm

[0xA] ISA poised for growth under new management

Hack a Day

Fresh hacks every day

[0x1] Followup: Troll physics solved

[0x2] DSLR performance measured with audio editing software

[0x3] [Jackson Pollock] is now a robot

[0x4] How to add flair to a webpage that shows your project data

[0x5] Synthesize with a hard drive

[0x6] @publictextbox is a Twitter enabled phone booth

[0x7] Sixty4Racer an 8×8 Game

[0x8] Analog Joypad for your Retro PC

[0x9] Program a microcontroller over the Internet

[0xA] [Sprite_tm]‘s three-component FM transmitter

CSOONLINE.com - Security Leadership

[0x1] Enough defense: Is it time for an IT security offensive?

[0x2] Tide turns against SOPA, but it's not dead yet

[0x3] Managing information security during an innovation void

[0x4] Nation's nuclear power watchdog comes up short on FISMA compliance

[0x5] 2011 Women of Influence award winners named

[0x6] Tactics versus strategy

[0x7] What are your risk managers thinking about?

[0x8] Getting stuff done, your style

[0x9] How your signature can propel your security career

[0xA] 9 secrets of getting stuff done in a big company

ZDI: Published Advisories

Published Advisories

[0x1] ZDI-12-018: Symantec PCAnywhere awhost32 Remote Code Execution Vulnerability

[0x2] ZDI-12-017: Oracle Outside In OOXML Relationship Tag Parsing Remote Code Execution Vulnerability

[0x3] ZDI-12-016: (0Day) HP Diagnostics Server magentservice.exe Remote Code Execution Vulnerability

[0x4] ZDI-12-015: (0Day) HP StorageWorks P2000 G3 Directory Traversal and Default Account Vulnerabilities

[0x5] ZDI-12-014: HP Easy Printer Care XMLSimpleAccessor Class ActiveX Control Remote Code Execution Vulnerability

[0x6] ZDI-12-013: HP Easy Printer Care XMLCacheMgr Class ActiveX Control Remote Code Execution Vulnerability

[0x7] ZDI-12-012: (0Day) McAfee SaaS myCIOScn.dll ShowReport Method Remote Command Execution

[0x8] ZDI-12-011: Novell Netware XNFS caller_name xdrDecodeString Remote Code Execution Vulnerability

[0x9] ZDI-12-010: Citrix Provisioning Services Stream Service 0x40020006 Remote Code Execution Vulnerability

[0xA] ZDI-12-009: Citrix Provisioning Services Stream Service 0x40020000 Remote Code Execution Vulnerability

The Hacker Academy

[0x1] Business Intelligence- A Students Perspective

[0x2] Professional Penetration Testing

[0x3] The Mind Of A Hacker- A Students Perspective

[0x4] Security Fundamentals- A Students Perspective

[0x5] The Hacker Academy from a student’s perspective- The set up

[0x6] Special THA Panel Discussion Webinar: Vulnerability Research Reporting

[0x7] The Problems with Hypnosis and Social Engineering

[0x8] Finally, a THA Frequently Asked Questions page!

[0x9] THA Free Live Webinar: Social Penetration, April 14th @ 1:30 pm ET

[0xA] Two New THA Network Pen Testing Modules to Start April!

CSOONLINE.com - Employee Protection

[0x1] World Trade Center security and progress

[0x2] Corporate security experts: Bin Laden death shouldn't impact business, travel plans

[0x3] Security stepped up around U.S. following Bin Laden news

[0x4] Travel security in the Middle East and North Africa

[0x5] What it's like to respond to a bomb threat

[0x6] What it's like...

[0x7] Executive protection: Why the private sector model is broken

[0x8] Artful security: Design elements that ensure security, but also emphasize style

[0x9] World Cup security: Guard labor strike was a game changer

[0xA] World Cup security: Preparing for the unexpected

The Grey Corner

A blog focused on the related subjects of software exploitation, penetration testing and computer incident detection and response.

[0x1] Restricted Character Set Buffer Overflow Tutorial for Vulnserver

[0x2] Egghunter based exploit for Vulnserver

[0x3] SEH Based Buffer Overflow Tutorial for Vulnserver

[0x4] Running Dradis in Apache on Ubuntu

[0x5] High Level Windows Shellcode Development Methods

[0x6] Simple Stack Based Buffer Overflow Tutorial for Vulnserver

[0x7] Exploit Writers Debugging Tutorial

[0x8] An Introduction to Fuzzing: Using SPIKE to find vulnerabilities in Vulnserver

[0x9] Introducing Vulnserver

[0xA] Version 0.4 of SSL Testing Tool ssltest.pl

PacketWars

Attack. Defend. Survive.

[0x1] PacketWars Innagural Battle In Germany 2011

[0x2] Heading To The Heidelberg

[0x3] See the Action

[0x4] PacketWars Confirmed At Troopers11

[0x5] Online News: Help Net Security

[0x6] Day-Con IV Content Added to Flickr [THX FLO]

[0x7] And the winner is…

[0x8] Tornado Warning: Cyber Storm III

[0x9] Day-Con IV Promo Video

[0xA] Pro Shop Video Posted

Command Line Kung Fu

This blog will include fun, useful, interesting, security related, non-security related, tips, and tricks associated with the command line. It will include OS X, Linux, and even Windows!

[0x1] Episode #165: What's the Frequency Kenneth?

[0x2] Episode #164: Exfiltration Nation

[0x3] Episode #163: Pilgrim's Progress

[0x4] Episode #162: Et Tu Bruteforce

[0x5] Episode #161: Cleaning up the Joint

[0x6] Episode #160: Plotting to Take Over the World

[0x7] Episode #159: Portalogical Exam

[0x8] Revisiting Episode #151: Readers' Revenge!

[0x9] Episode #158: The Old Switcheroo

[0xA] Episode #157: I Ain't No Fortunate One

Veracode in the News

Read the latest news about Veracode

[0x1] 1.12.12 DarkReading

[0x2] 1.9.12 Nextgov

[0x3] 1.5.12 SearchSecurity

[0x4] 1.5.12 CNET

[0x5] 1.3.12 eWeek

[0x6] 11.8.11 Financial Times

[0x7] 11.1.11 Financial Times

[0x8] 10.21.11 eWeek

[0x9] 10.19.11 TechNewsWorld

[0xA] 10.18.11 SD Times

Security forum - dslreports.com community

Security forum current topics

[0x1] Why do people not care about their privacy anymore?

[0x2] Symantec: Stop Using PCAnywhere

[0x3] Why do websites require changing the password every so often

[0x4] 900 UK police charged w/ illegal data access over 4 years

[0x5] Judge Orders Defendant to Decrypt Laptop

[0x6] OpenDNS blocks Googleapis.com, breaks sites for users

[0x7] FBI releases plans to monitor social networks

[0x8] Google to Mandate User Tracking - No Opt Out

[0x9] TOR Settings

[0xA] What are the top domains used for spam?

Virus and worm news from Network World

The latest virus and worm news and analysis from NetworkWorld.com.

[0x1] Accused Kelihos botmaster's former employer 'angered' at revelation

[0x2] Intego: 2011 offered bumper crop of Mac malware

[0x3] Security history: Nothing like an old-fashioned boot sector virus

[0x4] Social engineering attacks on the enterprise are trending upward

[0x5] Antivirus software sales expected to show strong growth in 2012

[0x6] Facebook easily infiltrated by data-harvesting bots, researchers find

[0x7] Peer-to-peer update to Zeus Trojan confers resistance to take-downs

[0x8] German officials admit to deploying intercept software

[0x9] Firefox advises users to disable McAfee plugin

[0xA] Google highlights trouble in detecting Web-based malware

dropsafe

network security, unix and bicycles

[0x1] Do It Yourself Steadicam Using a Chicken

[0x2] Jante Law: Sounds like American Corporatism; If this is real, I would create severe challenges in Scandinavia

[0x3] Making a couple of minor tweaks to #TwitterTools, not that I code in PHP…

[0x4] I really should work out some way to work out in the greenhouse, it’s 20C in there…

[0x5] Loving the fact that the #ChillingEffects #Twitter page can ironically undo the DMCA notices caused it…

[0x6] Loot from Hartley Wintney WI !!!

[0x7] #IronSky Official Berlin Trailer (2012) HD – YouTube !!1!

[0x8] # WE’LL DRINK BEYOND THE BOUNDARIES OF SENSE, WE’LL DRINK ‘TIL WE START TO SEE LOVELY PINK ELEPHANTS… #neilhannon

[0x9] I’ve only had a couple of batches from them but I am really liking the output of @NakedWines

[0xA] 35ml Plymouth Gin, ice cold. 4x drops Angostura. #andbreatheout

CSOONLINE.com - Wireless/Mobile Security

[0x1] Goal of new security service: More involvement from ISPs, carriers

[0x2] How smarter hypervisor use can lead to a 'big, big change' in security

[0x3] Clamor for cloud apps increases corporate data breach risk

[0x4] Privacy 2012: I know what you did at 3:30 a.m.

[0x5] Android vs iOS vs BlackBerry: Which is the most secure holiday gift?

[0x6] Mobile Security Needed

[0x7] The security threat Stephen King warned us about?

[0x8] Carrier IQ security risks overblown?

[0x9] Carrier IQ: A privacy tempest in your pants pocket

[0xA] Tips for Mobile Device Users Worried About Latest Security Flaws

An Expert's Guide to Database Solutions

Experienced DBA, Strategist, Architect, and Performance Expert James Koopmann provides information, guidance, technical savvy, and solutions for your database needs.

[0x1] 3 Steps to Configuring Oracle for Automatic Database Monitoring

[0x2] Monitoring an Oracle Database Automatically

[0x3] Methods of Performance Tuning

[0x4] Getting Ready to Tune Your Oracle Database

[0x5] The PL/SQL Developer Job Interview; Query Tactics

[0x6] How Do You Address Security for Your Next PL/SQL Developer Job Interview - User Defined Encryption

[0x7] How Do You Address Security for Your Next PL/SQL Developer Job Interview - Oracle's Transparent Encryption

[0x8] Know How to Answer Questions on Performance for Your Next PL/SQL Developer Job Interview

[0x9] The PL/SQL Developer Job Interview; Procedures, Functions, and Packages

[0xA] Passing the Oracle Database SQL Test for Your Next PL/SQL Job Interview

Edible Apple

Apple News, Rumors, and Analysis

[0x1] Apple HDTV will include a 42-inch OLED with facial recognition – Crazy Rumor

[0x2] Steve Jobs alleged threat to Push Pop Press

[0x3] Apple retail stores now a possibility in India

[0x4] iCloud – Apple’s strategy for the next decade

[0x5] Nintendo on track for first annual loss in 3 decades

[0x6] AT&T activates 7.6 million iPhones, 80.8% of all smartphone activations

[0x7] Tim Cook announces that Apple employees, starting in June, will receive $500 off of Macs and $250 off iPads

[0x8] About all those Google+ users

[0x9] iPhone 5 with 4-inch screen set to begin production – Rumor

[0xA] Inside Apple’s “Top 100″ retreat

Latest Articles on Security

ZDNet UK's news and analysis for business leaders includes 7,606 articles on Security

[0x1] Judge lights fire under McKinnon proceedings

[0x2] Symantec warns customers to disable PCAnywhere

[0x3] Firms face tough new EU fines for data breaches

[0x4] Microsoft fingers alleged Kelihos botnet culprit

[0x5] Megaupload founder poses 'extreme' bail flight risk

[0x6] DreamHost web-hosting service warns of hack

[0x7] Anonymous floods web with links to aid DDoS attacks

[0x8] Megaupload takedown shows need for fresh debate

[0x9] Megaupload arrests and shutdown spark hack attacks

[0xA] Man arrested over theft of federal bank source code

Security Database Tools Watch

[0x1] Complemento v0.7.6 - Collection of Tools

[0x2] MetaGoofil v1.4b released

[0x3] Suricata v0.9 RC1 released

[0x4] Xplico v0.5.7 released

[0x5] iScanner v0.5 released - Malicious codes scanner

[0x6] WebTest 1.2.1 - Testing Web Application with Python

[0x7] SQLNinja v0.2.5 released!

[0x8] WireShark 1.2.8 released

[0x9] fuu v0.1 Beta - [F]aster [U]niversal [U]npacker

[0xA] Lansweeper v4.0 released

Rational Survivability

Hoff's Ramblings about Information Survivability, Information Centricity, Risk Management and Disruptive Innovation. Oh, I have a fondness for virtualization and cloud computing security, too...

[0x1] With Cloud, The PaaSibilities Are Endless…

[0x2] QuickQuip: Vint Cerf “Internet Access Is Not a Human Right” < Agreed…

[0x3] QuickQuip: Don’t run your own data center if you’re a public IaaS < Sorta…

[0x4] QuickQuip: “Networking Doesn’t Need a VMWare” < tl;dr

[0x5] When A FAIL Is A WIN – How NIST Got Dissed As The Point Is Missed

[0x6] Stuff I’ve Really Wanted To Blog About But Haven’t Had the Time…

[0x7] Enter the Data Huggers…

[0x8] 802.bah – Beware the SiriSheep Attack!

[0x9] Cloud: The Turducken Of Computing? [Oh, and Happy Thanksgiving]

[0xA] Oh, c’mon…

HacDC

HacDC's mission is to improve the world by creatively rethinking technology.

[0x1] Learn to Code in 2012

[0x2] Byzantium v0.1a (Scarab) Released!

[0x3] New Area Meetup Group: Geeks and Depression

[0x4] Byzantium Sprint Reminder

[0x5] Byzantium Post Thanksgiving

[0x6] Microcontroller Mondays are Awesome

[0x7] Special Guests

[0x8] Byzantium Sprint Reminder

[0x9] Quantified Self @ HacDC

[0xA] HacDC Welcomes Xin Che Jian

Techworld.com networking

Latest IT articles from Techworld's networking channel

[0x1] Top tips for troubleshooting Fibre Channel networks

[0x2] LTE-Advanced is the future, but don't expect a rocket ship

[0x3] Tibco adds location data to Tibbr social network

[0x4] AT&T to launch unified communication services

[0x5] IBM and NEC team up to offer OpenFlow networking products

[0x6] Hull and East Yorkshire to get 100Mbps fibre broadband

[0x7] Ericsson appoints new CTO Ulf Ewaldsson

[0x8] Microsoft Windows 8 mobile broadband improvements revealed

[0x9] Google Plus has more than 90 million users, claims Larry Page

[0xA] WAN optimisation market shakeup predicted by industry experts

Mu Dynamics Blog

[0x1] blitz.io: Using Redis Transactions with CouchDB

[0x2] How to win in the age of cyber war

[0x3] Validating Application Detection Signatures

[0x4] Dear Angry Nerds, meet Blitz the Bird Thrower

[0x5] 4 full bars but no buzz?… start doing DPI

[0x6] Using real apps to test billing and charging on 4G/LTE networks

[0x7] Mu App Quadrant #3 – Skype Voice on Mac (OS X) Expends at Least 28% More for Consumers and Operator Networks than on Other Devices

[0x8] blitz.io: Geo-located Traceroutes with Heroku, AWS and CouchDB

[0x9] Driving Real Application Traffic Through Junosphere Virtual Infrastructure

[0xA] Ensuring the Accuracy of the Mu TestCloud Application Tests

Observations from a Tech Architect: Enterprise Implementation Issues & Solutions

Enterprise Technology Architect Craig Borysowich shares the challenges and achievements of enterprise solution design and implementation.

[0x1] Project Management Lite: Model for Project Team Organization

[0x2] Project Management Lite: A PM’s Responsibilities

[0x3] Project Management Lite: Partnership

[0x4] Project Management Lite: Project Visibility

[0x5] Project Management Lite: Responsibility & Commitment

[0x6] Project Management Lite: Steering Committee Meetings

[0x7] Project Management Lite: the RAP Chart

[0x8] Project Management Lite: the PERT Chart

[0x9] Project Management Lite: The Gantt Chart

[0xA] Project Management Lite: Scheduling

Naked Security - Sophos

News, opinion, advice and research on computer security threats from Sophos

[0x1] Facebook sues alleged clickjacking firm

[0x2] Poll reveals widespread concern over Facebook Timeline

[0x3] US Police use games consoles in crime investigations

[0x4] Opinion: Google's privacy change - evil or business as usual?

[0x5] Symantec: Stop using pcAnywhere, right now

[0x6] Chuck Norris is NOT dead - beware the Facebook scam!

[0x7] Sophos Security Threat Report 2012 - seeing through the hype

[0x8] Is your smartphone telling every website you visit your telephone number?

[0x9] Hacking boardroom videoconferencing systems

[0xA] Canadian resident sentenced to death for writing a computer program

iDefense Topical Research Reports

Feed of Topical Research Reports Posted on labs.idefense.com

[0x1] Cloud Computing: Enterprise Risks & Mitigation Strategies

[0x2] Mobile Security: New Risks, Old Consequences

[0x3] 2008 Cyber Trends and 2009 Predictions

[0x4] Taking Virtual Worlds Seriously: Implications to the Intelligence Community

[0x5] The Cyber Threat Landscape of Brazil

[0x6] Detecting and Tracking Trojan Horse Command-and-Control Servers

[0x7] A Nodal Analysis of Islamic Extremist Websites

[0x8] Cyber Fraud Trends 2008

[0x9] BBB: A Threat Analysis of Targeted Spear-Phishing Attacks

[0xA] IFrame Attacks - An Examination of the Business of IFrame Exploitation

Episteme: Belief. Knowledge. Wisdom

[0x1] How to Quickly Create New Habits in Your Life

[0x2] Matching and Mirroring (or: Cybernetic Issues in NLP)

[0x3] My Newest Experiment – The Kindle Book

[0x4] Maturity and Business

[0x5] What is it to be Mature?

[0x6] A Branding MAD Lib

[0x7] Suppressing Dissent

[0x8] Byron (and influence through the media)

[0x9] Influence and Failing Kindergarten

[0xA] Return-to-Barry-White Human Exploitation

MITRE Career News

The MITRE Career News feed offers stories about working at MITRE, from our popular Employee Spotlight features, to useful information about upcoming recruiting events and more.

[0x1] Empowering Nurses with Advanced Technology

[0x2] MITRE Named to Glassdoor.com's 50 Best Places to Work List

[0x3] A Career in Aviation Technical Leadership

[0x4] New Challenges Keep Engineer on the Move

[0x5] MITRE Named to Boston Globe's 2011 Top Places to Work List

[0x6] With Nanotechnology, Small Science Makes a Big Impact

[0x7] Unlocking Multimedia Treasures with Creative Software Design

[0x8] Properly Practicing Privacy

[0x9] Applying Economics Expertise to Healthcare Challenges

[0xA] MITRE Named to InformationWeek 500 List of Innovative Business Technology Organizations

Advisory Files ≈ Packet Storm

Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers

[0x1] AWS Hash Collisions

[0x2] Fortigate UTM WAF Appliance Cross Site Scripting

[0x3] Gentoo Linux Security Advisory 201201-16

[0x4] Debian Security Advisory 2396-1

[0x5] Debian Security Advisory 2395-1

[0x6] Gentoo Linux Security Advisory 201201-15

[0x7] Debian Security Advisory 2394-1

[0x8] Secunia Security Advisory 47617

[0x9] Secunia Security Advisory 47615

[0xA] Secunia Security Advisory 47654

Twitter / RuggedSoftware

Twitter updates from Rugged / RuggedSoftware.

[0x1] RuggedSoftware: RT @RealGeneKim: Blog: My notes on @wickett #LASCON PPT on Infosec View Of #DevOps (#rugged): http://t.co/hx6kyOSz (cc @ernestmueller/@ ...

[0x2] RuggedSoftware: RT @veracode: Veracode is hiring for 80+ new positions. Where do YOU fit in? RSVP our Open House on Feb 9th here: http://t.co/s3tBWoUR

[0x3] RuggedSoftware: Happy 13th B-day SQLi Dec 25, 1998 #Phrack 54 “NT Web Technology Vulnerabilities” rain.forest.puppy http://t.co/wvw1c2AX

[0x4] RuggedSoftware: RT @wickett: @joshcorman #rugged mentioned in control engineering article > http://t.co/dU9DzQVV <-Nice James!

[0x5] RuggedSoftware: RT @brennantom: RT @OWASP_feed: The 12 Days of Christmas: Ok kids, gather around and sing http://t.co/g9OvchEy

[0x6] RuggedSoftware: RT @brennantom: If all you want for 2012 is a new career in INFOSEC check out the 69 open jobs here: http://t.co/nfc00R7d

[0x7] RuggedSoftware: RT @joshcorman: Dear @InfoSecSanta , instead of 2012 chasing all OWASP Top 10, can we just systemically fix ONE of them? XSS? SQLi?

[0x8] RuggedSoftware: RT @0wasp: Remember guys, we need to reach out to the dev community.... its not just infosec for infosec peeps @owasp

[0x9] RuggedSoftware: RT @SecInnovation: Can you hack it? http://t.co/y0unK5Lm <- They are Hiring AppSec Engineers and have a "challenge" barrier to submit.

[0xA] RuggedSoftware: RT @BrianDuPrix: #security Wanted: Software Security Specialists... Are There Any? http://t.co/UbmOa0Rj

شروحات الفيديو - iSecur1ty

مجتمع عربي للهاكر الأخلاقي وخبراء الحماية يركّز على مفهوم اختبار الاختراق وجديد أخبار الحماية والثغرات, شروحات فيديو ومقالات أمنيّة.

[0x1] فيديو : التعامل مع الملفات والشبكات في python

[0x2] فيديو : أساسيات البرمجه بلغة Python

[0x3] فيديو: تخطي حماية ASLR

[0x4] فيديو: شرح ثغرات reflected XSS و stored XSS

[0x5] فيديو: Burp Suite لاستغلال ثغرات Command Execution

[0x6] فيديو: Exploit Development تطوير و ترقية ثغرات BOF

[0x7] فيديو: اكتشاف و استغلال ثغرات Local Buffer Over Flow

[0x8] فيديو: التعامل مع الملفات والمجلدات في روبي

[0x9] فيديو: IGHASHGPU كسر تشفير كلمات المرور باستخدام كرت الشاشة

[0xA] فيديو: أساسيات البرمجة بلغة Ruby

WarGame's Blog

A blog about IT security and virus writing

[0x1] Blog update

[0x2] Android exploit

[0x3] The art of unpacking

[0x4] Malwares reversing

[0x5] Government malware

[0x6] BIOS rootkit

[0x7] EOF#3

[0x8] EOF#3!

[0x9] SMS controlled Android bot

[0xA] Valhalla zine

Infosec Writers Latest Security Papers

Papers submitted by security professionals are published on the site and archived for readers. Categories include cryptography, E-mail security, exploitation, firewalls, forensics, honeypots, IDS, malware & wireless security.

[0x1] Old School Newbie Guide circa 2000

[0x2] Analysis of Malicious Software Infections

[0x3] Malware in Information Security

[0x4] DoS! Denial of Service

[0x5] An Analysis of the IDS Penetration Tool: Metasploit

[0x6] Experimental Review of IPSec Features to Enhance IP Security

[0x7] Cloud Computing – Storm Clouds or is it Smooth Flying?

[0x8] The Evolving World of Computer Security and Laws

[0x9] Web Access Management and Single Sign-On

[0xA] Reverse Honey Trap

IBM Internet Security Systems Frequency X Blog

Frequency X, the blog site for IBM Internet Security Systems' world-renowned security research and development team, X-Force, provides an opportunity for the researchers to converse directly with the world about threats and vulnerability research.

[0x1] CVE-2012-0003 Exploited in the Wild

[0x2] January 2012 Microsoft Super Tuesday

[0x3] A Note on Critical Infrastructure

[0x4] December 2011 Microsoft Super Tuesday

[0x5] Tune in to the December Blackhat Webcast

[0x6] No More Blind Spots

[0x7] November 2011 Microsoft Super Tuesday

[0x8] DoS/DDoS tools by The Hacker Choice (THC) group adds to attack concerns

[0x9] October 2011 Microsoft Super Tuesday

[0xA] Key Findings in the IBM X-Force 2011 Trend & Risk Report

Wireless LAN Security Blog - AirTight Networks

[0x1] AirTight SpectraGuard Products Achieve FIPS 140-2 and DISA UC APL Certification

[0x2] NRF: See AirTight’s unique cloud-based Secure Wi-Fi and captive portal for distributed retail

[0x3] Skyjacking attack – then Cisco, now Aruba?

[0x4] AirTight Rated “Strong Positive” by Leading Analyst Firm

[0x5] Gartner Wireless IPS Marketscope rates AirTight “Strong Positive”!

[0x6] IMF, Citigroup, Sony Hacks – Security Lessons to be learned

[0x7] WIPS complements MDM security by blocking personal smart devices

[0x8] Aberdeen Wireless LAN Report Tracks Impact of Smart Devices

[0x9] Android found vulnerable to sidejacking!

[0xA] AirTight demos PCI and WiFi cloud solutions at NACStech conference

Layer 7 Technologies

Layer 7 Technologies markets a family of XML appliances and software to secure, simplify and scale Web services.

[0x1] New Article - Layer 7 Expands into Dutch Market with ION-IP Partnership - ChannelWeb

[0x2] New Press Release - Working Opportunity Fund makes follow on investment in Layer 7 Technologies (February 2, 2009)

[0x3] New Award - 2009 Ready to Rocket List - Rocketbuilders

[0x4] Watch VP Marketing & Alliances, Dimitri Sirota, interviewed by Sys-Con.TV at JavaOne Conference in June, 2008.

[0x5] New Press Release - SOA Consortium Releases New Podcast from K. Scott Morrison, Layer 7 Technologies, on How to Fail at SOA (August 18, 2008)

[0x6] New Press Release - Layer 7 Joins SOA Consortium as Silver Sponsor (June 30, 2008)

[0x7] New Article - Layer 7 Nominated for SYS-CON's "SOA World Magazine Readers' Choice Awards": The SecureSpan XML Networking Gateway Nominated for "Best Security Solution" - SOA World

[0x8] New Press Release - Layer 7 Technologies Enhances Field Collaboration for SOA Through HP ISV Marketplace Referral Program (June 18, 2008)

[0x9] New Article - Layer 7 to Provide Security and Operational Governance for Sun Java CAPS - eBizQ

[0xA] New Press Release - Layer 7 Technologies to Provide Security and Operational Governance for Sun Java CAPS (June 9, 2008)

MacRumors: Mac News and Rumors - Front Page

the mac news you care about

[0x1] Macworld 2012: Autodesk Inventor Fusion for Mac Coming

[0x2] Civil Suit Against Google, Apple and Others Over Employee-Poaching Ban Can Continue

[0x3] Tim Cook Responds to Report on Working Conditions at Suppliers' Factories

[0x4] Apple Estimated to Retake Title of World's Largest Smartphone Vendor

[0x5] iWorld 2012: Bottle Opener Cases, Wave Cradle, Nomad Brush, Wallet Case

[0x6] Macworld 2012: WDC Shows Off MyBook Thunderbolt Duo

[0x7] iPhone Average Selling Price Remains Steady Even With Free 3GS Offer

[0x8] Part-Time Apple Employees Now Eligible to Participate in Charitable Matching Program

[0x9] Macworld 2012: 'Clear' To Do App for iOS, WDC MyBook Thunderbolt Duo

[0xA] Former Apple Executives Address Working Conditions in Suppliers' Factories

CSOONLINE.com - Identity Theft Prevention

[0x1] Facebook Chat-Based Phishing Attack Impersonates Facebook Security

[0x2] Sykipot Trojan Hijacks Department of Defense Authentication Smart Cards

[0x3] Medical data breaches soar, according to study

[0x4] New Jersey charges four in identity theft cases

[0x5] Facebook Easily Infiltrated By Data-Harvesting Bots, Researchers Find

[0x6] 111 Arrested in Massive ID Theft Bust

[0x7] XSS Web Attacks Could Live Forever, Researcher Warns

[0x8] Man Stole Data From U.S. Service Members Via P2P

[0x9] US Agencies Making Progress on Cybercrime, Officials Say

[0xA] Online Seller of Counterfeit Credit Cards Gets Prison Time

Peter Guerra

All about security

[0x1] Malware implicated in fatal Spanair plane crash

[0x2] Cybersecurity and National Policy

[0x3] How Robber Barons hijacked the telegraph system

[0x4] The Bedazzler

[0x5] iPhone fix

[0x6] Twitter for Botnet control

[0x7] BlackHat 2009 Presentation

[0x8] SLE, Quantitative versus Qualitative Risk, and Finance

[0x9] BlackHat 2009

[0xA] White House Cyber Security Review is out

Executive Spotlight Podcasts

Listen online, download to your computer, or subscribe and get the latest information automatically.

[0x1] Executive Spotlight Podcast: County of York, Pennsylvania

[0x2] Executive Spotlight Podcast: IT Transformation at Missouri’s Laclede Gas Company

[0x3] Executive Spotlight Podcast: IT from the CFO's Point of View

[0x4] Executive Spotlight Podcast: IT Security and Privacy at New Jersey’s Barnabas Health

[0x5] Executive Spotlight Podcast: Italian National Cancer Institute

[0x6] Executive Spotlight Podcast: Great Eastern Life Assurance Malaysia

[0x7] Executive Spotlight Podcast: University Hospitals of Leuven

[0x8] Executive Spotlight Podcast: Lotus Renault GP

[0x9] Executive Spotlight Podcast: Deloitte U.K.

[0xA] Executive Spotlight Podcast: Thai Airways International

Nmap Hackers

Moderated list for the most important new releases and announcements regarding the Nmap Security Scanner and related projects. We recommend that all Nmap users subscribe.

[0x1] Updates on Download.Com caught adding malware to Nmap installer

[0x2] C|Net Download.Com is now bundling Nmap with malware!

[0x3] SecTools.Org relaunched based on your survey responses!

[0x4] Nmap 5.59BETA1 Released!

[0x5] Happy World IPv6 Day From the Nmap Project!

[0x6] Nmap 5.51 and SoC Opportunity

[0x7] Nmap 5.50: Now with Gopher protocol support!

[0x8] Nmap Defcon Release: Version 5.35DC1

[0x9] Nmap News and Last Chance to Take the Survey

[0xA] Survey Reminder

Dogbert's Blog

hardware hacking and other ramblings...

[0x1] Password Recovery for FSI Amilo Pi Laptops

[0x2] Conrado strikes again

[0x3] Dell 1D3B

[0x4] "Donate" Button

[0x5] Free Unlocker for Palm/HP Phones

[0x6] Shmuck of the Week: Alexis Toledo / novatec / biosremoval

[0x7] Roll Call - State of Electronics

[0x8] Shmuck of the Month: Sony

[0x9] Shmuck of the Month: Conrado Davila / laptoprebirth.com

[0xA] Yet Another BIOS Broken by Design: InsydeH20

Help Net Security - Vulnerabilities

Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.

[0x1] Oracle OpenSSO Remote Security Vulnerability

[0x2] Kayako SupportSuite Multiple Vulnerabilities

[0x3] Oracle Communications Unified Multiple Vulnerabilities

[0x4] Wibu-Systems CodeMeter TCP Packets Denial of Service

[0x5] HP Diagnostics Server Remote Stack Buffer Overflow

[0x6] VBulletin Multiple Products "blog_post.php" Security Bypass

[0x7] MailEnable "ForgottonPassword.aspx" Cross-Site Scripting

[0x8] Oracle Database Server Multiple Vulnerabilities

[0x9] Wireshark Buffer Overflow and Denial of Service Vulnerabilities

[0xA] HP Easy Printer Care Software Remote Code Execution

chandanlog(3C)

Chandan's blog or sayings of an hearer

[0x1] CVSS Worksheet

[0x2] Cross Domain Blog Migration

[0x3] Everything you need to know about cryptography in 1 hour

[0x4] Fast Forward in Time: Flower Bloom

[0x5] Desktop OS for Personal Computing

[0x6] Netbooks and the end of the Laptop Decade

[0x7] Home Theater Architecture

[0x8] Doing the same thing again and expecting different results

[0x9] To prevent auto-reply e-mails

[0xA] Secure your Wi-Fi networks now!

DVLabs: Upcoming Advisories

Upcoming Advisories

[0x1] Novell

[0x2] Oracle

[0x3] Novell

[0x4] Oracle

[0x5] Adobe

[0x6] Adobe

[0x7] Adobe

[0x8] Adobe

[0x9] Adobe

[0xA] Adobe

Gizmo's Freeware: Top selections

The best freeware finds from Gizmo's Freeware (www.techsupportalert.com)

[0x1] This Great Free PIM Looks a Lot Like MS Outlook

[0x2] How to add an Additional Layer of Security to Your PC for Free

[0x3] Website of the Week

[0x4] Understanding and Optimizing the UAC in Windows 7

[0x5] Finds of the Week

[0x6] Wallpaper of the Week

[0x7] Nominate Your Favorite Game for the Best Free Game of 2011

[0x8] New Top Pick for Best Free Genealogy or Family Tree Software

[0x9] A 3D Marble Rolling Game That's Fun To Play and it's Free Too

[0xA] Best Free Ways to Learn Programming

eWEEK Security

News, reviews and commentary on technology security and data, application and network integrity, anti-virus and more.

[0x1] Is Network Solutions Snatching Domain Names?

[0x2] Reforming the DisGrace Period

[0x3] Critical TCP/IP Worm Hole Dings Windows Vista

[0x4] RSA Lays Off Security, Sales Staff

[0x5] Phishing at the Top Level

[0x6] Spam on the Run: Notorious Spammer on the Lam

[0x7] Microsoft: Critical Vista Patch Coming

[0x8] Code Testing Tools Could Be Acquisition Targets in '08

[0x9] More Bad Drivers on the Information Superhighway

[0xA] Passenger Hacks NYC Taxi Computer System

Techworld.com operating-systems

Latest IT articles from Techworld's operating-systems channel

[0x1] HP to open source webOS in September

[0x2] Samsung Galaxy Tab can be sold in The Netherlands, court rules

[0x3] Ubuntu 12.04 replaces application menus with 'heads up display'

[0x4] Ubuntu 12.04 replaces menus with 'heads up display'

[0x5] A first look at Windows 8 - the OS for everything

[0x6] How to adjust OS X’s software update

[0x7] How to customise Ubuntu's Unity interface

[0x8] Microsoft Windows 8 mobile broadband improvements revealed

[0x9] Goodbye BIOS: A simple guide to UEFI

[0xA] HTC phone update has deleted Carrier IQ, say reports

SANS Information Security Reading Room

Last 25 Computer Security Papers added to the Reading Room

[0x1] SANSFIRE 2011

[0x2] Using SNORT® for intrusion detection in MODBUS TCP/IP communications

[0x3] Securing Blackboard Learn on Linux

[0x4] Computer Forensic Timeline Analysis with Tapestry

[0x5] Using Web Application Firewall to detect and block common web application attacks

[0x6] iPad Security Settings And Risk Review For iOS 4.X

[0x7] A Process for Continuous Improvement Using Log Analysis

[0x8] Cloud Computing - Maze in the Haze

[0x9] A Detailed Analysis of an Advanced Persistent Threat Malware

[0xA] Net Neutrality, Rest in Peace

Paranoia, Insecurity, and Overall Anxiety

I decided to create this blog to share information with those readers who are interested in some of the topics addressed. These topics will primarily be information security focused, but don't be surprised if I throw in a conspiracy theory or two from time to time.

[0x1] PA School Activates Spycam on Laptop

[0x2] Spyware for Your Blackberry

[0x3] Don't Forget Iron Man

[0x4] Pursuit Robots

[0x5] I Have Returned

[0x6] Ubiquitous Computing - I Don't Like IT!

[0x7] A Little Satire

[0x8] Bundled Facial Recognition Software on New Laptops

[0x9] I Have Been Slipping!

[0xA] Unleash the Cracken aka DARPA

MySecured.com

Covering Mobile Phone Forensics, Information Security and Computer Security

[0x1] Push for cigarette-like warnings on mobiles in the USA

[0x2] Blackbox JTAG Reverse Engineering @ 26th Chaos Communication Congress

[0x3] Happy Holidays from MySecured.com

[0x4] Sexting and Mobile Phone Forensics

[0x5] NIST Releases a New Report within Mobile Forensic Reference Materials: A Methodology and Reification. NISTIR 7617.

[0x6] New NIST SIM Data Population Tool For Mobile Phone Forensics Uses

[0x7] Augmented Reality Projection Tracking System from Japan

[0x8] Android 2.0 Perview Video (On G1 from SDK)

[0x9] Wearable, Projector and Mobile Phone based Sixth Sense

[0xA] Real-Time Interactive Augmented Reality Billboard

Learning Solaris 10

Check out the Zones F.A.Q. !

[0x1] CentOS 3.9 running in an lx branded zone

[0x2] OpenSolaris & Sun Secure Global desktop

[0x3] Opensolaris & wifi Broadcom BCM4312 on Dell Vostro 1710

[0x4] Security Advantages of the Solaris Zones Software

[0x5] Understanding the Security Capabilities of Solaris Zones Software

[0x6] New blueprint over the M-Series servers configuration

[0x7] Sun Forums: A Sun Java System Web Server 7.0 Reference Deployment

[0x8] Network virtualization in Solaris : project Crossbow

[0x9] Setting Up OpenDS 1.0.0 as a Naming Service

[0xA] Sun Fire X4500 as a Media Server for Symantec Veritas NetBackup 6.5

XSSed syndication

You are welcome to syndicate and share xssed.com contents

[0x1] Diigo Toolbar - Global XSS and Information Leakage in SSL URLs

[0x2] Dot Net Nuke (DNN) XSS Vulnerability

[0x3] Sun Java Server Faces Input Handling Cross-Site Scripting

[0x4] ManageEngine ServiceDesk Plus Cross-Site Scripting Vulnerability

[0x5] Savvy Content Manager "searchterms" Cross-Site Scripting

[0x6] Alkacon OpenCms "filePath" Cross-Site Scripting and File Disclosure

[0x7] IBM Lotus QuickPlace Cross-Site Scripting Vulnerability

[0x8] BosClassifieds Classified Ads System "returnTo" Cross-Site Scripting

[0x9] Zimbra Collaboration Suite Script Insertion Vulnerability

[0xA] WebCT Mail/Discussion Board Message Script Insertion

Securelist / Glossary

[0x1] Kaspersky Security Network (KSN)

[0x2] Toolkit

[0x3] ITW (In-the-Wild) samples

[0x4] Crimeware

[0x5] Keylogger

[0x6] World Wide Web

[0x7] WildList

[0x8] WiFi

[0x9] Whitelist

[0xA] Web browser

Casper Dik's Weblog

Casper Dik's Weblog

[0x1] OGP election

[0x2] NLOSUG: 26/10/2006 Dutch OpenSolaris User Group First Meeting

[0x3] Updated drivers: but only at www.opensolaris.org

[0x4] Small acpidrv update

[0x5] OpenSolaris User Group Meeting, Amsterdam, October 18th

[0x6] Laptop community live!

[0x7] Laptops

[0x8] First Installment (of frkit)

[0x9] User Credentials and all that

[0xA] Southpark Stdio

Google Online Security Blog

The latest news and insights from Google on security and safety on the Internet.

[0x1] Tech tips that are Good to Know

[0x2] Expanding Safe Browsing Alerts to include malware distribution domains

[0x3] Reminder: Safe Browsing version 1 API turning down December 1

[0x4] Protecting data for the long term with forward secrecy

[0x5] Safe Browsing Alerts for Network Administrators is graduating from Labs

[0x6] Gmail account security in Iran

[0x7] An update on attempted man-in-the-middle attacks

[0x8] Four Years of Web Malware

[0x9] Fuzzing at scale

[0xA] 2-step verification: stay safe around the world in 40 languages

Internet Security

Internet security news and updates

[0x1] eIQnetworks Webinar on How to Address Advanced Persistent Threats without Increasing Budgets or Personnel

[0x2] Hacking Group hit US security firm Stratfor

[0x3] Origins of Computer Viruses and Protecting your PC from them

[0x4] Social Networking danger signs to your Internet Security this Holiday Season

[0x5] iPhone apps vulnerability discovered, researcher faces 1 year ban

[0x6] Show Password Bookmarklet

[0x7] Best Internet Security Software to tackle online security threats

[0x8] How to secure your network from Malware

[0x9] How helpful are Internet Security software Reviews

[0xA] Overlooking Internet Security may Hurt your Internet Business

The Hacker's Choice - Freeworld News

News around The Hacker's Choice including releases, papers, exploits and other activities

[0x1] Hydra v6.5 is now available!

[0x2] Hydra v6.4 is now available with module enhancements and ...

[0x3] THC T-Shirts for 2011 can now be ordered.

[0x4] Get the new thc-ipv6 v1.6 release - lots of cool new tool...

[0x5] Hydra v6.3 is available with new oracle and smtp-enum mod...

[0x6] Amap v5.4 is now available which fixes an IPv6 bug introd...

[0x7] Amap v5.3 is now available.

[0x8] Hydra v6.2 is available with a new password bruteforcing ...

[0x9] Join the THC t-shirt design contest!

[0xA] Hydra v6.1 is available with SSHv1 support, a few fixes a...

TechBU

Latest technology, Social media news and computing tips

[0x1] YouTube Gets A New Browse Page, Video Editor & Video Manager

[0x2] Nokia Reveals Their Results for Q4 2011 – $1.3 Million of Operating Loss

[0x3] Best AntiVirus Softwares for Windows

[0x4] Updated List of Smartphones scheduled to Receive ICS Upgrade in 2012

[0x5] Jailbreak iPhone 4s and iPad 2 using Absinthe [Full Step-by-Step How To]

[0x6] Breaking: Untethered Jailbreak for iPhone 4s and iPad 2 released! Everything you need to know

[0x7] Now Use AirPlay with Windows to Play Songs from iPhone, iPod, iPad and iTunes

[0x8] Best Linux Distros – Which one suits you?

[0x9] Hi-Fi or Hi-Tech: Mobile Phone Comparisons

[0xA] Top 5 Screen Capture Softwares for Windows

The Falcon's View

Mental meanderings of an infosec obsessive...

[0x1] Upgrade+Migration Update

[0x2] FYI: Pending Site Upgrade+Migration

[0x3] Email Platform Migration

[0x4] AppSec DC 2010 Video Posted

[0x5] Survivability Rather Than Security Metrics

[0x6] RSA 2011: In Summary

[0x7] RSA 2011: Meet Federated Networks

[0x8] RSA 2011: Imation Expands Offerings

[0x9] RSA 2011: (dis)Innovation Sandbox

[0xA] Forget SmartGrid, Micro-Generation Is the Future

Securelist / Blog

[0x1] CVE-2012-0003 Exploit ITW

[0x2] Brazilian cybercriminals’ daily earnings - more than you’ll ever earn in a year!

[0x3] Malware wallpaper calendars for 2012

[0x4] Lab Matters - The threat from P2P botnets

[0x5] Two-pronged attack: Argentine site hit by malware and data leak

[0x6] The Zappos Breach and Textual Password Based Authentication

[0x7] A School for Cybercrime: How to Become a Black Hat

[0x8] IRC bot for Android

[0x9] Facebook Security Phishing Attack In The Wild

[0xA] Lab Matters - Cloudy with a chance of stolen data

Security Labs

[0x1] Phoenix, Phoenix, I need help!

[0x2] entrepreneur.com compromised with CrimePack

[0x3] Search for Google Chrome leads to Compromised Chrome Plugin Forum

[0x4] The rise of a typosquatting army

[0x5] Trending Topic Search for "QuickTime" Leads to Phishing Site

[0x6] My email address was shared on Twitter, but who cares?

[0x7] Malicious email scam "Re: Scan from a Xerox W. Pro #XXXXXXX" returns with a new face

[0x8] One critical and six important Microsoft patches to start 2012

[0x9] Typosquatting social web gains top Alexa ranking

[0xA] Spam Emails Link To QR Codes

BetaNews

Technology News and Analysis

[0x1] That's a wrap: Jon Rubinstein leaves HP, Palm, webOS

[0x2] Suddenly 37M iPhones isn't so many

[0x3] Manage Windows apps with Stardock Tiles

[0x4] Don't miss the end-of-January software sale

[0x5] Twitter updates policies, will censor tweets on demand

[0x6] Sync multiple Google calendars to Windows Phone 7.5

[0x7] Who's doing what on that shared PC? History Viewer can tell you

[0x8] Microsoft invests $1 billion to sell a million Nokia Windows Phones

[0x9] Nivio opens in beta, brings Windows to iPad, Android tablets

[0xA] Symantec tells users to stop using pcAnywhere amid security breach

CSOONLINE.com - Supply Chain Security

[0x1] Smart grid (in)securities

[0x2] Global telecom gets a lesson in business continuity

[0x3] Opinion: COAC is a security risk for the U.S.

[0x4] Supply Chain Security Threats: 5 Game-Changing Forces

[0x5] SLIDESHOW: Chemical Safety Training

[0x6] Chemical Spill Response: How Dow is Training Small Town America to Handle Hazmat Emergencies

[0x7] Swine Flu: How to Make Biz Continuity Plans

[0x8] UPDATED: Pandemic Preparedness Primer

[0x9] What New Air Cargo Security Rules Mean for Business

[0xA] CBP and Smart Containers: What Does It Know?

Exploit KB

exploit ~#

[0x1] Windows 7 Fake Access Point With Alfa AWUS036H

[0x2] Setup a Fake Access Point With BackTrack5

[0x3] Resolver

[0x4] Wophcrack – Ophcrack web interface

[0x5] New home for exploit.co.il

[0x6] ScreenSpy – New Meterpreter Script Review

[0x7] Meterpreter Script – Windows Service Creator

[0x8] Installing USB-B2K Telbox On UBUNTU 10.04 64 Bit

[0x9] Exploit KB Vulnerable Web App

[0xA] Patching and Compiling Cowpatty UBUNTU 10.04

CSOONLINE.com - Federated Identity

[0x1] Leverage government innovation to reduce the risks of Web 2.0 identity management

[0x2] SaaS, Security and the Cloud: It's All About the Contract

[0x3] Social Networking a Tool for More Secure Identity Management? No Joke!

[0x4] News Flash: Data Debauchery That Happens in Vegas Doesn't Stay There

[0x5] Why Security Pros Hate Microsoft SharePoint (and What to Do About It)

[0x6] Federated ID: An Idea Whose Time Never Came?

[0x7] Identity Management: Implementation Dos and Dont's

[0x8] Identity Management: Critical Components

[0x9] An Introduction to Identity Management

[0xA] Strong Authentication for Online Banking: Success Factors

OSF Data Loss - Latest Incidents

This feed contains the latest incidents approved for inclusion in OSF Data Loss.

[0x1] 1.8 million customers Social Security numbers, dates of birth and, in some cases, financial institution account numbers compromised

[0x2] Unauthorized access to a database server exposes unencrypted customer passwords including FTP/shell and email accounts

[0x3] 5,294 e-mail addresses, MD5 passwords, and usernames dumped on the Internet

[0x4] 44 employees' names, e-mail addresses, phone numbers, and clear-text passwords dumped on the Internet

[0x5] 124,410 names, dates of birth, e-mail addresses, phone numbers, and MD5 passwords dumped on Internet

[0x6] 24 million email addresses, billing and shipping addresses, phone numbers, the last four digits from credit cards, passwords and more illegally accessed

[0x7] Call center employee pleads guilty to stealing and misusing customers' credit card numbers

[0x8] 342,000 records of subscriber/customers, including 315K e-mail addresses and phone numbers, 85K dates of birth, and 27K MD5 passwords dumped on web

[0x9] Banking information and other data from perhaps tens of thousands of students, faculty and administrators were exfiltrated overseas by numerous viruses that were on systems for over a decade

[0xA] Office of the Privacy Commissioner retrieved hundreds of medical records that were scattered amongst debris in an abandoned rural property belonging to a doctor who had been disciplined

Department of Homeland Security News

Department of Homeland Security News

[0x1] Secretary Napolitano Unveils National Strategy for Global Supply Chain Security

[0x2] Secretary Napolitano Highlights DHS' Progress in 2011

[0x3] Readout of Secretary Napolitano’s Remarks at the National Sheriffs’ Association 2012 Winter Conference

[0x4] Secretary Napolitano Meets with State, Local, and Tribal Law Enforcement on Countering Violent Extremism

[0x5] Readout of Secretary Napolitano’s Participation in Panel Discussion Hosted by the Aspen Homeland Security Group

[0x6] Secretary Napolitano Participates in Human Trafficking Roundtable

[0x7] Remarks by Secretary Janet Napolitano

[0x8] DHS Announces "If You See Something, Say Something™" Campaign Partnership with the National Hockey League

[0x9] Statement by Secretary Napolitano on Commissioner Bersin's Resignation

[0xA] DHS and DOD Announce Continued Partnership in Strengthening Southwest Border Security

InfoSecPodcast.com

[0x1] Taking SANS FOR610 malware forensics class

[0x2] APT and attribution

[0x3] McAfee acquires NitroSecurity

[0x4] Splunk Users Conference

[0x5] RIM fix your Blackberry S/MIME experience, please?

[0x6] My new job: Fighting APT at RSA

[0x7] Some things to look for in your SecurID / Remote Access logs

[0x8] Call for papers — eCrime Researchers Summit

[0x9] WPScan – WordPress Security Scanner

[0xA] Do you digitally sign email?

Xatrix Security Advisories

Xatrix Security Advisories

[0x1] Ubuntu Linux: Firefox vulnerabilities

[0x2] Red Hat: Ruby safe-level vulnerability

[0x3] Red Hat: Seamonkey critical security vulnerabilities

[0x4] Debian: Drupal several remote vulnerabilities

[0x5] Debian: Kernel local race condition

[0x6] SUSE: Kernel local privilege escalation

[0x7] Ubuntu Linux: Update introduced regression

[0x8] Ubuntu Linux: Mozilla-Thunderbird vulnerabilities

[0x9] Mandriva: Perl log flaw

[0xA] Ubuntu Linux: Mozilla various vulnerabilities

Aladdin Knowledge Systems Latest eToken Press Releases

Aladdin Knowledge Systems Latest eToken Press Releases - RSS Feed

[0x1] Ontario's York Regional Police Meet Canadian Government Regulations with Aladdin eToken

[0x2] Russian Bank Secures Online Banking with Aladdin Authentication

[0x3] Aladdin eToken Solidifies Its Position in Government Sector on Carahsoft GSA Schedule

[0x4] Aladdin eToken and Aladdin SafeWord are Verified as Citrix Ready

[0x5] Aladdin and Wyse Partner to Secure Virtual Desktops

[0x6] Korea's Largest Bank Deploys 5,000 Aladdin eToken Authentication Devices

[0x7] Aladdin Secures Transactions for China's Largest Online Financial Information and Services Provider

[0x8] Aladdin eToken Debuts New Generation of Strong Authentication Solutions

[0x9] Toronto-Area Police Secure Data and Meet CPIC Regulations with Aladdin eToken

[0xA] Secure Computing Named Reader Trust Finalist in SC Magazine Award Program and Best of 2006 in Three Categories

National Vulnerability Database

This feed contains the most recent CVE cyber vulnerabilities published within the National Vulnerability Database.

[0x1] CVE-2012-0931

[0x2] CVE-2012-0930

[0x3] CVE-2012-0929

[0x4] CVE-2012-0814

[0x5] CVE-2012-0056

[0x6] CVE-2012-0029

[0x7] CVE-2011-4622

[0x8] CVE-2011-4608

[0x9] CVE-2011-4330

[0xA] CVE-2011-4325

Security - Infoworld

[0x1] Facebook scammers redirect victims through Amazon's cloud

[0x2] Drive-by-download attack exploits critical vulnerability in Windows Media Player

[0x3] How to prevent thumb drive security disasters

[0x4] 15 worst Internet privacy scandals of all time

[0x5] How does Google's new privacy policy compare?

[0x6] Threatened by Anonymous, Symantec tells users to pull pcAnywhere's plug

[0x7] Google stirs up privacy hornet's nest

[0x8] Goal of new security service: More involvement from ISPs, carriers

[0x9] Google to combine users' data across its services

[0xA] 2011: The year Mac malware got interesting

M86 Security Labs Blog

News and commentary about Internet-borne security threats from M86 Security.

[0x1] Zbot Trojan spreads through fake ConEdison billing notification email

[0x2] Web Hijacks with AJAX

[0x3] Prevalent Exploit Kits Updated with a New Java Exploit

[0x4] A new Adobe 0-day In the Wild – – But No Worries, You are Already Protected with Our Secure Web Gateway!

[0x5] Cutwail Spam Campaigns Lure Users to Blackhole Exploit Kit

[0x6] TrueType but not Truly Safe: The New Zero-Day Event

[0x7] “Steve Jobs Alive!” Spam Campaign Leads To Exploit Page

[0x8] New Google AdWords Phish In-the-wild

[0x9] The Beauty and the BEAST

[0xA] DigiNotar Certificates Revoked Following Theft

Twitter / exploitdb

Twitter updates from Exploit Database / exploitdb.

[0x1] exploitdb: [webapps] - vBSEO http://t.co/Gnkm0WmZ

[0x2] exploitdb: [remote] - HP Diagnostics Server magentservice.exe Overflow - [CVE: 2011-4789]: http://t.co/XF2xPsmH

[0x3] exploitdb: [webapps] - Peel SHOPPING - version 2.8 and version 2.9 xss/sql inject Vulnerability: http://t.co/FLWdHHOu

[0x4] exploitdb: [papers] - [Spanish] El fingerprinting dentro de la seguridad web: http://t.co/lUZikFED

[0x5] exploitdb: [remote] - Sysax Multi Server 5.50 Create Folder Remote Code Exec BoF (MSF Module): http://t.co/C1sOQHEH

[0x6] exploitdb: [webapps] - phplist - version 2.10.9 CSRF/XSS Vulnerability: http://t.co/nt1E6o88

[0x7] exploitdb: [webapps] - VR GPub 4.0 CSRF Vulnerability: http://t.co/r6ql6Vu9

[0x8] exploitdb: [webapps] - WordPress http://t.co/Iz2RTekv

[0x9] exploitdb: [webapps] - Stoneware WebNetwork6 Multiple Vulnerabilities - [CVE: 2012-0286]: http://t.co/GTitq8oT

[0xA] exploitdb: [papers] - A Backdoor in the Next Generation Active Directory: http://t.co/RbmYaEeD

Dark Reading - All Stories

Dark Reading is the premier online resource helping information security professionals manage the balance between protection and access. It offers breaking news and analysis on attacks, breaches and vulnerabilities, as well as strategies for protecting enterprise data. It also offers guidance on setting risk management and compliance policies.

[0x1] The Mechanics Of Breach Notification

[0x2] Security Careers: A Closer Look At Digital Investigations

[0x3] Smartcards: Still A Smart Choice?

[0x4] Study: The Aftermath Of A Breach

[0x5] Hopping Aboard The Mobile Payment Bandwagon? Bring A Helmet

[0x6] Six-Year-Old Breach Comes Back To Haunt Symantec

[0x7] Hacktivists Turn To DNS Hijacking

[0x8] Database Password Storage Exposes Need For Better ID Management

[0x9] DNSSEC Error Caused NASA Website To Be Blocked

[0xA] Looking Over The RIM And Into The Chasm

pentestmonkey

Taking the monkey work out of pentesting

[0x1] mimikatz: Tool To Recover Cleartext Passwords From Lsass

[0x2] windows-privesc-check

[0x3] Finding IP Addresses of Other Network Interfaces on Linux

[0x4] gateway-finder

[0x5] The Science of Safely Finding an Unused IP Address

[0x6] timing-attack-checker

[0x7] Exposing only part of C: over Terminal Services

[0x8] Post-Exploitation in Windows: From Local Admin To Domain Admin (efficiently)

[0x9] Reverse Shell Cheat Sheet

[0xA] “Hackers for Charity” Needs You

Shellcodes - Shell-Storm.org

Last shellcodes

[0x1] Linux/x86 - Search php,html writable files and add your code - 380+ bytes

[0x2] Linux/x86 - setuid(0)+setgid(0)+add user iph without password to /etc/passwd - 124 bytes

[0x3] Linux/mips - reboot() - 32 bytes

[0x4] Linux/mips - connect back shellcode (port 0x7a69) - 168 bytes

[0x5] Linux/mips - add user(UID 0) with password - 164 bytes

[0x6] Linux/mips - execve /bin/sh - 48 bytes

[0x7] Linux/SuperH - sh4 - setuid(0) ; execve(/bin/sh, NULL, NULL) - 27 bytes

[0x8] Osx/x86-64 - universal OSX dyld ROP shellcode

[0x9] Windows - win32/PerfectXp-pc1/sp3 (Tr) Add Admin Shellcode - 112 bytes

[0xA] Linux/x86 - egghunt shellcode - 29 bytes

The RISKS Digest

The website of the RISKS mailing list

[0x1] Deducing causality?

[0x2] More on total-system issues; We are all interconnected

[0x3] The Wired Car

[0x4] Risks of Instant Messaging in Indy Racing

[0x5] Passengers on British Airways warned of crash landing

[0x6] Lawyer Demands Pacemaker Vendor Supply Source Code

[0x7] $44 million bill from Bronx-Lebanon Hospital

[0x8] Cameras may open up the board room to hackers

[0x9] Belarus Is Now Home to the Internet's Most Insane Law

[0xA] Top 1% NYT Readers are Consuming 50% of the text!

Search Engine Watch - Latest

Latest News

[0x1] Google Maps Adds Emergency Alerts

[0x2] Con Artist Shares Inside Story of Google Pharmacy Ad Sting

[0x3] Measuring ROI: How to Collect Meaningful PPC Conversion Data

[0x4] SEO Chicks Competition - Win a ticket to SES London!

[0x5] 7 Steps to Prepare For the Search Alliance in the UK

[0x6] Yahoo Search, Display Revenues Dip in Q4 2011

[0x7] Google+ Drops Age Restriction, Now Accepts All Teenagers

[0x8] How Google+ Could Threaten Google's Core Search Business

[0x9] YouTube TrueView Ads Pump Up Search Traffic, Conversions for TRX

[0xA] Yandex Adds Face Recognition Technology

Dana Epp's ramblings at the Sanctuary

Life, the Universe and everything Security

[0x1] Announcing Elevation of Privilege: The Threat Modeling Game

[0x2] Reflecting on our Windows 7 birthday party

[0x3] Time to party! Windows 7 is here!

[0x4] RunAs Radio podcasts you might want to listen to

[0x5] Coding Tip: Why you should always use well known SIDs over usernames for security groups

[0x6] Major Windows 7 gotcha you should know about that may block you from upgrading

[0x7] Microsoft SDL bans mempcy()... next it will be zeros!!!!

[0x8] Using TS RemoteApp as an attack vector

[0x9] Is Twittering safe?

[0xA] Come have Coffee and Code in Vancouver with me and Microsoft tomorrow

Microsoft Security Blog

The official Microsoft blog for discussing industry and Microsoft security topics.

[0x1] Weekly Roundup : Jan 20, 2012 : Congress Withdraws SOPA, PIPA anti-Piracy Measures

[0x2] Weekly Roundup : Jan 13, 2012 : Microsoft Trustworthy Computing Turns 10 “You’ve come a long way, baby”

[0x3] Trustworthy Computing, a Commitment of Significance

[0x4] Weekly Roundup : Jan 6, 2012 : Tracking and Disabling Cyber Attacks

[0x5] The Threat Landscape in India – More Active Than First Thought

[0x6] Weekly Roundup : Dec 30, 2011 : Taking a Look Back at Some of the Year’s Top Security Stories

[0x7] Weekly Roundup : Dec 23, 2011 : U.S. Chamber of Commerce Reportedly Hacked with Spear Phishing

[0x8] Weekly Roundup : Dec 16, 2011 : Iranian Engineers Reportedly Used GPS Spoof to Hijack U.S. Spy Drone to Safe Landing

[0x9] Koreans Vanquish Top Malware Threat, Threat Landscape Continues to be Incredibly Active

[0xA] What You Should Know About Drive-By Download Attacks – Part 2

physicsworld.com: all content

Latest content from physicsworld.com

[0x1] Carbon membranes excel at separating liquids

[0x2] Graphene could be a perfect absorber of light

[0x3] Parting the clouds

[0x4] Parting the clouds

[0x5] Between the lines

[0x6] Between the lines

[0x7] D-Compact Series KD*P Pockels Cells

[0x8] Henniker Scientific Ltd.

[0x9] Online tools are 'distraction' for science

[0xA] ktp

Business:Security Articles from EzineArticles.com

EzineArticles.com is Trusted By Millions as The Source For Quality Original Articles

[0x1] How to Stay Secure When Working the Move - Part 2

[0x2] Security and Safety Consultant

[0x3] Choosing the Right CCTV

[0x4] The Value of Security Consultations

[0x5] The Advantages of Hiring Security Guards for Warehouses

[0x6] Security Company Management

[0x7] A Guide to PCI Compliance Merchant Types and Levels

[0x8] How to Detect Surveillance Attempts

[0x9] How to Prevent Fraud Using Out-Of-Band Authentication

[0xA] Fiber Optic Camera - A Useful Device For Spying And Snooping Around

ASTALAVISTA Forum Feed

[0x1] How To Hack Email

[0x2] Reverse Engineering Citrix Netscaler Persistence Cookies

[0x3] Logic Gate Sim

[0x4] Invites For Bitme, Bitspyder, Demonoid, Etc..

[0x5] How To Find A Md5 Salt

[0x6] Most Secure/best Email Program

[0x7] howto capture desktop

[0x8] Office, Process And Building Automation Over One Network

[0x9] Videoweb Tv Box: Check For Vulnerabilities

[0xA] Just Another Intro...

AVG Top Threats

Latest security threats

[0x1] I-Vers/Nuwar

[0x2] Win32/Mabezat.A

[0x3] Trojan Downloader.Agent.UZM

[0x4] I-Worm/Stration downloader

[0x5] I-Worm/Stration downloader

[0x6] Stration downloader

[0x7] Win32/Virut

[0x8] Exploit.ANI

[0x9] BackDoor.Generic3.GBB et .GBC

[0xA] AVI 271.1.1/4171 - new threats

Dragos Lungu Dot Com | Security Tools And Tips

100% Unbiased Security Tools Reviews. Computer Security Blog about Phishing, Spyware, Malware and other Threats and Vulnerabilities we face everyday .

[0x1] Animated Presentation on Sony PSN Hack

[0x2] ArcSight Tip #1 – arcsight managersetup notification test

[0x3] I’m a CISSP

[0x4] Operation:Payback or Social Vendetta is Here

[0x5] I got owned by Malware Destructor 2011 Virus

[0x6] New Downtime Cost Calculator by Storagepipe.com. What if ?

[0x7] Securing Your Network from Web Threats

[0x8] My Twitter Notes on 2010-07-25

[0x9] New NetWitness Visualize : Welcome To The Future!

[0xA] My Twitter Notes on 2010-07-18

Security Basics

A high-volume list which permits people to ask "stupid questions" without being derided as "n00bs". I recommend this list to network security newbies, but be sure to read Bugtraq and other lists as well.

[0x1] Re: Building an Information Asset database

[0x2] SOAP

[0x3] RE: Regularly Vulnerability Assessment using QualysGuard - Pro/Cons?

[0x4] [HITB-Announce] Reminder: HITB2012AMS Call For Papers Closing Soon

[0x5] Re: [Full-disclosure] DNS bind attacks

[0x6] Re: [Full-disclosure] DNS bind attacks

[0x7] DNS bind attacks

[0x8] Re: DoS attacks using Exploit Pack

[0x9] Re: Cyber Warfare / Network Defense Simulation

[0xA] PPP / NCP Vulnerability Research

Dark Reading - All Stories

Dark Reading is the premier online resource helping information security professionals manage the balance between protection and access. It offers breaking news and analysis on attacks, breaches and vulnerabilities, as well as strategies for protecting enterprise data. It also offers guidance on setting risk management and compliance policies.

[0x1] The Mechanics Of Breach Notification

[0x2] Security Careers: A Closer Look At Digital Investigations

[0x3] Smartcards: Still A Smart Choice?

[0x4] Study: The Aftermath Of A Breach

[0x5] Hopping Aboard The Mobile Payment Bandwagon? Bring A Helmet

[0x6] Six-Year-Old Breach Comes Back To Haunt Symantec

[0x7] Hacktivists Turn To DNS Hijacking

[0x8] Database Password Storage Exposes Need For Better ID Management

[0x9] DNSSEC Error Caused NASA Website To Be Blocked

[0xA] Looking Over The RIM And Into The Chasm

Microsoft Sec Notification

Beware that MS often uses these security bulletins as marketing propaganda to downplay serious vulnerabilities in their products—note how most have a prominent and often-misleading "mitigating factors" section.

[0x1] Microsoft Security Bulletin Minor Revisions

[0x2] Microsoft Security Bulletin Minor Revisions

[0x3] Microsoft Security Bulletin Minor Revisions

[0x4] Microsoft Security Bulletin Minor Revisions

[0x5] Microsoft Security Bulletin Minor Revisions

[0x6] Microsoft Security Bulletin Re-Releases

[0x7] Microsoft Security Bulletin Minor Revisions

[0x8] Microsoft Security Bulletin Summary for January 2012

[0x9] Microsoft Security Advisory Notification

[0xA] Microsoft Security Bulletin Minor Revisions

SearchSecurity: Security Wire Daily News

The latest information security news on IT threats, vulnerabilities and market trends from the award-winning SearchSecurity.com.

[0x1] Malicious Android applications may have infected millions, Symantec warns

[0x2] Fake Firefox update delivers malware, exploit kits

[0x3] McAfee adds SMS filtering, smartphone threat intelligence to Android security app

[0x4] Understanding data security breaches eclipses preventing them

[0x5] Symantec pulls pcAnywhere, man-in-the-middle attacks are possible

[0x6] Kelihos botnet operator named in Microsoft botnet lawsuit

[0x7] New Epsilon CISO to expand security team, assess security practices

[0x8] Twitter acquires Dasient in security buying spree, Android platform focus

[0x9] Black Hole kit fuels drive-by attacks, rogue antivirus declines, Sophos finds

[0xA] HP TippingPoint revamps Pwn2Own hacking contest, removes mobile hacks

Securelist / Analysis

[0x1] Congratulations, you’ve won! The reality behind online lotteries

[0x2] Spam report: December 2011

[0x3] Stuxnet/Duqu: The Evolution of Drivers

[0x4] Spam report: November 2011

[0x5] Monthly Malware Statistics: November 2011

[0x6] Online shopping made safe and convenient

[0x7] Legit bootkits

[0x8] Spam report: October 2011

[0x9] IT Threat Evolution: Q3 2011

[0xA] Monthly Malware Statistics: October 2011

Veracode Blog

Application security testing, analysis, and metrics

[0x1] Weekly News Round Up

[0x2] A Conversation With Richard Clarke – Part II

[0x3] A Conversation with Richard Clarke – Part I

[0x4] 2012 Social Security Blogger Awards

[0x5] New Platforms, Old Mistakes

[0x6] Weekly News Roundup

[0x7] Cloud Based Application Security Testing

[0x8] SOPA Grabs Headlines Today

[0x9] Where Were You? 10th Anniversary of Gates Trustworthy Computing Memo – Part 2

[0xA] Delivering Unhappiness

CSOONLINE.com - Critical Infrastructure

[0x1] Will Kim Jong Un be for cyberwarfare what his dad was for nukes?

[0x2] Naming names in APT

[0x3] Experts advise caution, information sharing in wake of alleged utility attacks

[0x4] Will 2012 REALLY be the year of the cyberwar?

[0x5] U.S. border security strategy faces budget woes

[0x6] Who's hacking your refrigerator?

[0x7] Getting stuff done: Public vs private sector edition

[0x8] Bad new world: Cyber risk and the future of our nation

[0x9] World Trade Center security and progress

[0xA] Portland General Electric flips switch on smart security monitoring

LinuxSecurity.com: Fedora Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Password guessing with Medusa 2.0

[0x3] Fedora 10 ruby-1.8.6.368-2.fc10

[0x4] Fedora 12 moodle-1.9.7-1.fc12

[0x5] Fedora 12 ntp-4.2.4p8-1.fc12

[0x6] Fedora 10 moodle-1.9.7-1.fc10

[0x7] Fedora 12 kernel-2.6.31.6-166.fc12

[0x8] Fedora 10 httpd-2.2.14-1.fc10

[0x9] Fedora 12 nss-util-3.12.5-1.fc12.1

[0xA] Fedora 10 rubygem-actionpack-2.1.1-5.fc10

CNET News.com

Tech news and business reports by CNET News. Focused oninformation technology, core topics include computers, hardware, software,networking, and Internet media..

[0x1] Hawaiian politician backs away from Web dossier law

[0x2] Twitter to block tweets locally, not globally

[0x3] Mobile security app from McAfee hits 2.0

[0x4] Politicians aim some pointed privacy questions at Google

[0x5] Hawaii may keep track of all Web sites visited

[0x6] Facebook denies Anonymous 'claims' of takedown

[0x7] DHS disputes memo on purported railway computer breach

[0x8] O2 fixes phone number leak, explains blunder

[0x9] Symantec tells customers to disable PCAnywhere

[0xA] EU overhauling data-privacy policies to protect consumers

Top 10 Latest Virus Threats from Aladdin

Virus List from Aladdin - RSS Feed

[0x1] Win32.Gimmiv.a - Updated on: 10/26/2008 - Threat Level: Low

[0x2] Win32.ACVE.o - Updated on: 10/2/2008 - Threat Level: Low

[0x3] Win32.Adload.aro - Updated on: 10/2/2008 - Threat Level: Low

[0x4] Win32.Adload.asj - Updated on: 10/2/2008 - Threat Level: Low

[0x5] Win32.Adload.ask - Updated on: 10/2/2008 - Threat Level: Low

[0x6] Win32.Adload.asn - Updated on: 10/2/2008 - Threat Level: Low

[0x7] Win32.Adload.asq - Updated on: 10/2/2008 - Threat Level: Low

[0x8] Win32.Adload.atq - Updated on: 10/2/2008 - Threat Level: Low

[0x9] Win32.Adload.atz - Updated on: 10/2/2008 - Threat Level: Low

[0xA] Win32.Adload.aub - Updated on: 10/2/2008 - Threat Level: Low

Antionline Forums - Maximum Security for a Connected World

AntiOnline Forums - Computer security community for internet safety and trusted networks

[0x1] Are there more tutorials?

[0x2] Pre-Windows beeping (not hardware error code)

[0x3] Weird IP's trying to connect to my computer

[0x4] Weird DVD Issue

[0x5] Slow motion Dos attacks!

[0x6] iPhone 4S Absinthe Procedure (What will actually work)

[0x7] PC-BSD 9.0 Isotope Released!

[0x8] Bond multiple internet connections

[0x9] interesting site

[0xA] Recovering Overwritten Data - SD Card

GeekDad

Parents, Kids and the Stuff We Obsess About

[0x1] 5 Questions For The Creator of The Call of Cthulhu (For Beginning Readers)

[0x2] Memoir Recounts Youthful Quest for Meaning in D&D, Comics, Zeppelin

[0x3] A Wrinkle in Time 50th Anniversary Blog Tour: Tesser With Me

[0x4] Happy Birthday, Frank Miller!

[0x5] Flannery Brothers’ “Dip N’ Flip” Video

[0x6] A Canoe Built (By a Geek Dad) for Two…

[0x7] Parenthood Brings Songs of Guilt & Revenge From the Backpeddlers

[0x8] Boy Scouts Partner With Edison Nation to Host Innovation Challenge

[0x9] Developer Profile: Brighter Futures for Beautiful Minds – EdTech for Autism

[0xA] Conquest Tactics: Card-Based War Gaming

US-CERT Cyber Security Alerts

US-CERT Cyber Security Alerts provide timely information about current security issues, vulnerabilities, and exploits. Cyber Security Alerts are released in conjunction with Technical Cyber Security Alerts when there is an issue that affects the general public. Cyber Security Alerts outline the steps and actions that non-technical home and corporate computer users can take to protect themselves from attack.

[0x1] SA12-010A: Microsoft Updates for Multiple Vulnerabilities

[0x2] SA12-006A: Wi-Fi Protected Setup (WPS) Vulnerable to Brute-Force Attack

[0x3] SA11-350A: Adobe Updates for Multiple Vulnerabilities

[0x4] SA11-347A: Microsoft Updates for Multiple Vulnerabilities

[0x5] SA11-312A: Microsoft Updates for Multiple Vulnerabilities

[0x6] SA11-286A: Apple Updates for Multiple Vulnerabilities

[0x7] SA11-284A: Microsoft Updates for Multiple Vulnerabilities

[0x8] SA11-256A: Microsoft Updates for Multiple Vulnerabilities

[0x9] SA11-222A: Adobe Updates for Multiple Vulnerabilities

[0xA] SA11-221A: Microsoft Updates for Multiple Vulnerabilities

F-Secure Antivirus Research Weblog

Weblog of F-Secure Antivirus Research Team

[0x1] Facebook Spammers Use Amazon's Cloud

[0x2] Cracking Polish Passwords

[0x3] Pole Position: Poland Attacked by Anti-ACTA Hackers

[0x4] What the heck is SOPA?

[0x5] Mac Malware Summary 2011 (Q2/Q3/Q4)

[0x6] Unlock Your Phone's Hidden Features!... Not.

[0x7] Android Permissions: For Apps or Ads?

[0x8] Learning to Analyze Computer Viruses: Year Five

[0x9] Cheap Professional DDoS Service

[0xA] Do you think like a German or a Pole?

SecurityFocus News

SecurityFocus is the most comprehensive and trusted source of security information on the Internet. We are a vendor-neutral site that provides objective, timely and comprehensive security information to all members of the security community, from end users, security hobbyists and network administrators to security consultants, IT Managers, CIOs and CSOs.

[0x1] News: Change in Focus

[0x2] News: Twitter attacker had proper credentials

[0x3] News: PhotoDNA scans images for child abuse

[0x4] News: Conficker data highlights infected networks

[0x5] Brief: Google offers bounty on browser bugs

[0x6] Brief: Cyberattacks from U.S. "greatest concern"

[0x7] Brief: Microsoft patches as fraudsters target IE flaw

[0x8] Brief: Attack on IE 0-day refined by researchers

[0x9] News: Monster botnet held 800,000 people's details

[0xA] News: Google: 'no timetable' on China talks

Voice+Data RSS Feed

Aggregate RSS Feed

[0x1] Top 5 Things You Need in a Virtualisation Management Solution

[0x2] AVG Community Powered Threat Report Q4 2011

[0x3] Ultrabook growth to explode over next five years

[0x4] NEC appoints executive general manager for NECare

[0x5] Telstra to provide open access wholesale service on some new fibre networks

[0x6] Huawei, Global Marine and ASSC-1 team up for submarine 6.4 Tbps Perth to Singapore link

[0x7] First Australian 4G smartphone to arrive 24 Jan

[0x8] Smart Technologies Smart Vantage interactive whiteboard management software

[0x9] Free internet security suite for Westpac customers

[0xA] CeBIT Australia 2012

hacklab.to

Toronto's hacker collective

[0x1] Gamfternoon Continues

[0x2] Introduction to Programming (Python)

[0x3] Soldering and Arduino Workshops

[0x4] Basic Electronics Class: RSVP

[0x5] Molding and Casting Workshop: January 9th, 7pm at Hacklab

[0x6] Basic Electronic Class

[0x7] Upcoming Workshops: 3D printing, Soldering, Arduino

[0x8] Gamfternoon Today

[0x9] Arduino Projects Workshop, Soldering Workshop

[0xA] Reviving Gamfternoon, take II

Upcoming Security Alerts

Upcoming Security Alerts

[0x1] Oracle Database

[0x2] Oracle Database

[0x3] Oracle Database

[0x4] Oracle Secure Enterprise Search

[0x5] Documentation bug concerning a special privilege

[0x6] Oracle Database

[0x7] Oracle Database

[0x8] Oracle Database

[0x9] Oracle Database

[0xA] Oracle Database

US-CERT Technical Cyber Security Alerts

US-CERT Technical Cyber Security Alerts provide timely information about current security issues, vulnerabilities, and exploits.

[0x1] TA12-024A: "Anonymous" DDoS Activity

[0x2] TA12-010A: Microsoft Updates for Multiple Vulnerabilities

[0x3] TA12-006A: Wi-Fi Protected Setup (WPS) Vulnerable to Brute-Force Attack

[0x4] TA11-350A: Adobe Updates for Multiple Vulnerabilities

[0x5] TA11-347A: Microsoft Updates for Multiple Vulnerabilities

[0x6] TA11-312A: Microsoft Updates for Multiple Vulnerabilities

[0x7] TA11-286A: Apple Updates for Multiple Vulnerabilities

[0x8] TA11-284A: Microsoft Updates for Multiple Vulnerabilities

[0x9] TA11-256A: Microsoft Updates for Multiple Vulnerabilities

[0xA] TA11-222A: Adobe Updates for Multiple Vulnerabilities

Latest Alerts From Websense Security Labs

This is the Alert Rss Feed from Websense Security Labs

[0x1] None: Please update your RSS readers and bookmarks, the Security Labs blog has moved!

[0x2] Malicious Web Site / Malicious Code: New Zbot campaign comes in a PDF

[0x3] Malicious Web Site / Malicious Code: Fake Apple App Store Malicious Spam

[0x4] Malicious Web Site / Malicious Code: Skype Toolbar for Outlook Scam

[0x5] Malicious Web Site / Malicious Code: Searching for Corey Haim Leads to Rogue AV

[0x6] Malicious Web Site / Malicious Code: BBS of Sougou Compromised

[0x7] Malicious Web Site / Malicious Code: Blackhat SEO turns to PDF with Chile and Hawaii disasters

[0x8] Malicious Web Site / Malicious Code: Searching For Joannie Rochette Leads To Rogue AV

[0x9] Malicious Web Site / Malicious Code: Bloom Box Black SEO

[0xA] Malicious Web Site / Malicious Code: Microsoft's Ninemsn Australia Web Site Compromised

Juniper

Juniper RSS Feed

[0x1] Security: It's Everyone's Job

[0x2] Assumed Risk: Trusting Open Source in Production

[0x3] Juniper to Integrate BitGravity’s CDN Technology -- What It Means for Customers

[0x4] Forrester Research Verifies Real-World TCO of Junos

[0x5] Always On, Always Connected, Not Always Costly

[0x6] January 2012 Microsoft Patch Tuesday Summary

[0x7] Security: A year that was! A year that will be ?

[0x8] IDP Protocol Anomaly provides Zero-Day Protection for Chaos Hash Table DOS (CVE-2011-3414)

[0x9] Is it time to embrace “Bring Your Own Device” (BYOD)?

[0xA] All I want for Christmas is a Juniper Networks SRX 100

I Am Security

[0x1] Guest post: Why you need patch management

[0x2] Hackers, Credit Cards, and the Media

[0x3] Advanced Data Exfiltration – full paper

[0x4] IL-CERT finally picking up speed

[0x5] [Offtopic] AirPlay on the home network

[0x6] Intelligence on Ashiyane and the Iranian Cyber Army

[0x7] So, what about that SecurityZone?

[0x8] Introducing SexyDefence

[0x9] SecurityZone – to finish this year with a bang!

[0xA] Information Security, Homeland Security, and finding someone to pin it on

Internet Security News - SecurityProNews

Breaking news and top stories from the world of Internet security.

[0x1] Facebook Becomes A Favorite Target Of Phishers

[0x2] Google Goes After Impersonator Scammers

[0x3] Senate Uncovers Online Credit Card Tricks

[0x4] McAfee: Cyberwarfare A Big Threat

[0x5] ICSA Labs Finds Flaws In New Security Products

[0x6] Nigeria Announces Early Results Of Anti-Scammer Initiative

[0x7] MessageLabs Names Most- (And Least-) Spammed States

[0x8] Enormous Malware Archive Creates Stir

[0x9] Avsim Hacker (Maybe) Brought Before Cops

[0xA] Email Password Hackers Present Real Threat

SecTechno

Information Security Blog

[0x1] Twitter Takes on Security

[0x2] Several Zero-Days on Latest WordPress CMS

[0x3] Using your Brain as a Multi-Tasking System

[0x4] How to Improve Your Organization’s Web Security

[0x5] tunCERT Raise the Cyber Threat Level

[0x6] ZeuS Botnet with Excellent Customer Care

[0x7] Infosec Weekly Radar, January 16 -22 , 2012

[0x8] Review: uCertify CEH v7 your Quick path to be certified

[0x9] MBSA to Keep your Windows System up-to-date

[0xA] New zero-day Joomla exploit in the wide

Microsoft Security Bulletins

[0x1] MS12-004 - Critical : Vulnerabilities in Windows Media Could Allow Remote Code Execution (2636391) - Version: 1.2

[0x2] MS11-049 - Important : Vulnerability in the Microsoft XML Editor Could Allow Information Disclosure (2543893) - Version: 2.3

[0x3] MS11-025 - Important : Vulnerability in Microsoft Foundation Class (MFC) Library Could Allow Remote Code Execution (2500212) - Version: 4.2

[0x4] MS12-006 - Important : Vulnerability in SSL/TLS Could Allow Information Disclosure (2643584) - Version: 1.1

[0x5] MS11-100 - Critical : Vulnerabilities in .NET Framework Could Allow Elevation of Privilege (2638420) - Version: 1.2

[0x6] MS12-007 - Important : Vulnerability in AntiXSS Library Could Allow Information Disclosure (2607664) - Version: 2.1

[0x7] MS12-005 - Important : Vulnerability in Microsoft Windows Could Allow Remote Code Execution (2584146) - Version: 1.0

[0x8] MS12-003 - Important : Vulnerability in Windows Client/Server Run-time Subsystem Could Allow Elevation of Privilege (2646524) - Version: 1.0

[0x9] MS12-002 - Important : Vulnerability in Windows Object Packager Could Allow Remote Code Execution (2603381) - Version: 1.0

[0xA] MS12-001 - Important : Vulnerability in Windows Kernel Could Allow Security Feature Bypass (2644615) - Version: 1.0

CSOONLINE.com - Physical Security

[0x1] Security at the scene of the crime

[0x2] FAQ: What You Should Know About Illinois Water-District SCADA Breach

[0x3] U.S. border security strategy faces budget woes

[0x4] Most fraud is an inside job, says survey

[0x5] US Agencies to Test Emergency Alert System

[0x6] 68 great ideas for running a security department

[0x7] Theft, shrink rates rise globally

[0x8] Data destruction: Why you need NAID

[0x9] 5 secrets to building a great security team

[0xA] Video surveillance: The march to megapixel IP cameras continues

kuro5hin.org

technology and culture, from the trenches

[0x1] kuro5hin's Membership Fees Are a Good Thing

[0x2] Jetset Psychopath Pleads Guilty

[0x3] Fuck the Fat Acceptance Movement

[0x4] Is crawl-66-249-71-82.googlebot.com Trying to Root Your PHP Board? (Abridged)

[0x5] K5 Images of the Year (2011)

[0x6] cancel

[0x7] I support SOPA

[0x8] The Open Proxy Party's Electoral Corruption Killer

[0x9] A Brief History of the ASCII Penis

[0xA] Warning: Beware of Sex with Eric S. Raymond

Cisco Security Responses

Cisco Security Responses (the 40 most recent responses)

[0x1] Attention: New Cisco Security Response RSS Feed Locations

[0x2] Infected Cisco Information Packet and Warranty CDs

[0x3] Cisco IOS Software Denial of Service Vulnerabilities

[0x4] Rootkits on Cisco IOS Devices

[0x5] Cisco IPSec VPN Implementation Group Name Enumeration Vulnerability

[0x6] Multiple Vulnerabilities in Cisco Unified Videoconferencing Products

[0x7] Cisco Unified MeetingPlace XSS Vulnerability

[0x8] Cisco Unified MeetingPlace XSS Vulnerability (November 2007)

[0x9] Cisco IronPort Desktop Flag Plug-in for Outlook Information Disclosure

[0xA] Unmatched Request Discloses Client Internal IP Address

Computer Security News

News on Computer Security continually updated from thousands of sources around the net.

[0x1] Spear Phishing and the Modern Cyber Attack

[0x2] The Real Reasons Why SOPA and PIPA Are Real Bad

[0x3] 3 Palos Verdes High students arrested in grade-tampering plot

[0x4] Judges try to speed up hacking case

[0x5] US cybersecurity efforts trigger privacy concerns

[0x6] Build up your phone's defenses against hackers

[0x7] SEC charges trader with hacking into accounts

[0x8] European parliament website under cyber attack

[0x9] Jailbreaking Is Not A Crime say hackers over DMCA changes

[0xA] The top-10 web security threats you should avoid

Paul Thurrott's WinInfo News

News about Windows and Microsoft. No fluff.

[0x1] WinInfo Short Takes, January 27, 2012

[0x2] You Must Be Crazy: News from the Messaging World

[0x3] Nokia Sold "Well Over" 1 Million Windows Phones in 2 Months

[0x4] Sourcefire Takes Visual Approach to Malware Protection with FireAMP

[0x5] Apple Blows the Doors Off in Spectacular Quarter

[0x6] Data Storage: From the Floppy Disk to the Cloud

[0x7] Microsoft Names Creator of Kelihos Botnet

[0x8] Nokia Off to Great Start, Has Already Sold Millions of Windows Phone Handsets

[0x9] Study: Tablets, eBook Readers a Big Hit Over the Holidays

[0xA] Finally, RIM Co-CEOs Step Aside

Daniel's Blog

Information security, scuba diving and some other things I am interested in...

[0x1] Travel safe!

[0x2] “I can’t get no satisfaction” from the ATO

[0x3] !Me encanta Colombia!

[0x4] That “flip” thing

[0x5] MBAs and GMAT

[0x6] Where should you buy it? Try Mustafa*!

[0x7] Bondi got flipped!

[0x8] Are you aware of the new business models which are now available on the web?

[0x9] Hello Merlion!

[0xA] Movember video!

Kioptrix

Learning Security together

[0x1] Merry Christmas and Happy New Year

[0x2] Recovering Hashes from Domain Controller

[0x3] Another Hackfest has come and gone…

[0x4] Plausible Client side Attack…

[0x5] SSH tunnel yourself out of the work place…

[0x6] Hackfest_ca 2011

[0x7] Metasploit Penetration Tester’s Guide

[0x8] Generic Letter one can use…

[0x9] Well… We’ve been hacked

[0xA] Challenge VM #3 is now available.

HBH News Feed

HellBoundHackers RSS Feed

[0x1] Zappos accounts hacked

[0x2] Hacking group releases more Stratfor data

[0x3] Apple Customers Warned of Phishing Attack

[0x4] 'Anonymous' hackers threaten Mexican drug cartel

[0x5] Hackers break SSL encryption used by millions of sites

[0x6] Database Of U.S. Internet Pirates Will Be Decentralized

[0x7] Notice: Some Challenges Offline

[0x8] HBH v2 Update

[0x9] Was this the e-mail that took down RSA?

[0xA] News of the World will close after hacking scandal

Free IT - Data Management Magazines and Downloads from bestsecuritytips.tradepub.com

Free publications and offers about databases and data management.

[0x1] Aberdeen Analyst Insight Paper: ERP & BI: When 1+1=3

[0x2] Continually Improve Program Outcomes: Measure What Matters and Gain Detailed Insight Into Program Performance

[0x3] Making Critical Connections: Predictive Analytics in Government

[0x4] 4 Steps to Maximize Customer Profitability

[0x5] Insurance Study: Transforming Customer Relationships with Analytics

[0x6] Cloud Computing - Latest Buzzword or a Glimpse of the Future?

[0x7] IT Management in the Cloud: Ways to Transform IT

[0x8] Lowering Storage Costs with the World's Fastest Tape Drive

[0x9] Debunking Five Myths About Tape Storage

[0xA] Why Business Managers Must Prioritize Remote Backup

SecDocs Feed

Latest security documents RSS feed

[0x1] [Slides] URI Use and Abuse

[0x2] [Paper] URI Use and Abuse

[0x3] [Paper] 0-Day Patch -Exposing Vendors (In)Security Performance

[0x4] [Slides] New Viral Threats of PDF Language

[0x5] [Paper] New Viral Threats of PDF Language

[0x6] [Slides] Side Channel Analysis on Embedded Systems. Impact and Countermeasures

[0x7] [Slides] CrackStation

[0x8] [Paper] CrackStation

[0x9] [Slides] Malware on the Net - Behind the Scenes

[0xA] [Paper] Malware on the Net - Behind the Scenes

PaulDotCom

[0x1] Hack Naked TV Episode 25

[0x2] PaulDotCom Security Weekly Episode 274

[0x3] Tonight on PaulDotCom: HD Moore and Dave Kennedy

[0x4] PaulDotCom Security Weekly Episode 273

[0x5] Hack Naked TV Episode 24

[0x6] Security Onion - Snorby Now Included

[0x7] Framing with Chris Hadnagy tonight on Episode 273 at 6PM ET

[0x8] PaulDotCom Security Weekly Episode 272 - Featuring Bruce Schneier!

[0x9] HNTV Episode 23

[0xA] Episode 272 with Bruce Schneier Thursday night at 6PM ET!

SANS Internet Storm Center, InfoCON: green

[0x1] SSH Password attacks using domain name elements as userid, (Fri, Jan 27th)

[0x2] CISCO Ironport C & M Series telnet vulnerability, (Fri, Jan 27th)

[0x3] ISC StormCast for Friday, January 27th 2012 http://isc.sans.edu/podcastdetail.html?id=2287, (Fri, Jan 27th)

[0x4] ISC Feature of the Week: ISC Link Back, (Wed, Jan 25th)

[0x5] pcAnywhere users – patch now!, (Wed, Jan 25th)

[0x6] ISC StormCast for Thursday, January 26th 2012 http://isc.sans.edu/podcastdetail.html?id=2284, (Thu, Jan 26th)

[0x7] ISC StormCast for Wednesday, January 25th 2012 http://isc.sans.edu/podcastdetail.html?id=2281, (Wed, Jan 25th)

[0x8] Is it time to get rid of NetBIOS?, (Tue, Jan 24th)

[0x9] ISC StormCast for Tuesday, January 24th 2012 http://isc.sans.edu/podcastdetail.html?id=2278, (Tue, Jan 24th)

[0xA] Javascript DDoS Tool Analysis, (Sun, Jan 22nd)

Here you'll find observations, anecdotes, and analysis from our experienced staff of reporters and editors, with links to stories, surveys and other content that appear on InformationWeek.com, TechWeb.com, and many other points on the Web. We welcome discussion, and invite you to share your opinions and thoughts. Please participate with us!

[0x1] Solid State Storage Can Save You Money

[0x2] Smartphone Option Overload Confuses Consumers

[0x3] Google Has Lost Control Of Android Fragmentation

[0x4] RIM Investors Give Thumbs Down On New CEO

[0x5] Windows Phone Predicted To Overtake iOS By 2015

[0x6] Solid State Disk's True Cost

[0x7] Can Nokia Crack The Verizon Nut?

[0x8] Why RIM Should Cut BlackBerry Losses

[0x9] InformationWeek's RSS Feed is brought to you by

[0xA] Biggest Storage Trend of 2012

Physical Security

[0x1] What's this have to do with infosec?

[0x2] ShmooCon travelers enjoy TSA hospitality

[0x3] More evidence critical infrastructure is a train wreck waiting to happen

[0x4] Mutating H5N1 in a lab was reckless

[0x5] It's not always the TSA's fault

[0x6] Security Metrics and the Balanced Scorecard

[0x7] Foxnews.com - Drones, Malware and a Continued Lack of Infosec - Rinse and Repeat

[0x8] Hey, what’s for supper? We are having a risk-based pot roast tonight! Roll the dice.

[0x9] Cyber Surveillance & Warning Striker

[0xA] When to Strike Back!

Latest Security Advisories

[0x1] Microsoft Security Advisory (2641690): Fraudulent Digital Certificates Could Allow Spoofing - Version: 3.0

[0x2] Microsoft Security Advisory (2588513): Vulnerability in SSL/TLS Could Allow Information Disclosure - Version: 2.0

[0x3] Microsoft Security Advisory (2659883): Vulnerability in ASP.NET Could Allow Denial of Service - Version: 2.0

[0x4] Microsoft Security Advisory (2639658): Vulnerability in TrueType Font Parsing Could Allow Elevation of Privilege - Version: 2.0

[0x5] Microsoft Security Advisory (2269637): Insecure Library Loading Could Allow Remote Code Execution - Version: 13.0

[0x6] Microsoft Security Advisory (2607712): Fraudulent Digital Certificates Could Allow Spoofing - Version: 5.0

[0x7] Microsoft Security Advisory (2562937): Update Rollup for ActiveX Kill Bits - Version: 1.0

[0x8] Microsoft Security Advisory (2524375): Fraudulent Digital Certificates Could Allow Spoofing - Version: 5.0

[0x9] Microsoft Security Advisory (2501584): Release of Microsoft Office File Validation for Microsoft Office - Version: 2.0

[0xA] Microsoft Security Advisory (2506014): Update for the Windows Operating System Loader - Version: 1.0

Adventures in Security

Commentary, reviews, and tips relevant to anyone responsible for information security. Including how to build and manage a security program, editorials about the state of information security, and do's and don't's based on my 26 years of IT experience.

[0x1] Firefox Sync: Think Twice before Use

[0x2] Looks aren't everything...

[0x3] Google, wireless networks, and ethics...

[0x4] Twitter down... Why should you care?

[0x5] Give Facebook a break...

[0x6] Integrated Malware

[0x7] Patch, patch, patch... and then patch

[0x8] Media management must include printers

[0x9] So, who is liable for negligence?

[0xA] Security double-standards are still a bad idea

security_watchdog

All the IT security issues that affect you and your business. Direct reports from all the security conferences throughout the year, including RSA conference and Infosec.

[0x1] Google: complete privacy 'does not exist'

[0x2] Kiwi hacker to work for police

[0x3] Data leaks worst security threat

[0x4] UK businesses still don’t ‘get’ security

[0x5] Storm worm fabricates news

[0x6] Road warriors leaking secrets

[0x7] Cyber-crooks sting South Africa for £13m

[0x8] Public wants data breach legislation

[0x9] Hong Kong becomes most dangerous domain

[0xA] Scammers targeting LinkedIn

CSOONLINE.com - Security Awareness

[0x1] Tide turns against SOPA, but it's not dead yet

[0x2] Managing information security during an innovation void

[0x3] 4 spear-phishing hooks for the holidays

[0x4] How your signature can propel your security career

[0x5] 9 secrets of getting stuff done in a big company

[0x6] How to have real risk management

[0x7] How to rob a bank: A social engineering walkthrough

[0x8] Social engineering: My career as a professional bank robber

[0x9] Welcome to UltraCorp, Millennials!

[0xA] Finding security's opportunity to engage

CSOONLINE.com - Metrics/Budgets

[0x1] Small company, big security challenges

[0x2] Getting stuff done: Public vs private sector edition

[0x3] 9 secrets of getting stuff done in a big company

[0x4] Survey finds dangerous gap in prevention

[0x5] Case study: Security on a shoestring budget

[0x6] Hey, CSOs: Suck it up and accept budget cuts

[0x7] 10 identity management metrics that matter

[0x8] 2011 State of the CSO

[0x9] Making the ROI case for GRC platforms

[0xA] The great IT risk measurement debate, part 2

Symantec Security Response Podcasts

Listen online, download to your computer, or subscribe and get the latest information automatically.

[0x1] Intelligence Report Podcast – November 2011

[0x2] Intelligence Report Podcast – October 2011

[0x3] Intelligence Report Podcast – August 2011

[0x4] Symantec Report Finds Cyber Threats Skyrocket in Volume and Sophistication

[0x5] Symantec Appliance Strategy: Messaging Gateway & Web Gateway

[0x6] Update from Symantec Security Technology & Response

[0x7] Search Engine Poisoning

[0x8] Symantec Security Response Profile: Zulfikar Ramzan

[0x9] ISTR XIV - Phishing and Spam in the Economic Downturn

[0xA] ISTR XIV - Financially Motivated Malicious Code Development

LinuxSecurity.com: FreeBSD Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Password guessing with Medusa 2.0

[0x3] FreeBSD: Kernel memory disclosure in procfs and linprocfs

[0x4] FreeBSD: fetch Overflow error

[0x5] FreeBSD: syscons Boundary checking errors in syscons

[0x6] FreeBSD: cvs number of vulnerabilities

[0x7] FreeBSD: kernel Improper memory access vulnerability

[0x8] FreeBSD: kernel Excessive privilege vulnerability

[0x9] FreeBSD: core:sys Buffer cache invalidation vulnerability

[0xA] FreeBSD: cvs Heap overflow vulnerability

Files ≈ Packet Storm

Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers

[0x1] Gitorious Remote Command Execution

[0x2] HP Diagnostics Server magentservice.exe Overflow

[0x3] MS12-004 midiOutPlayNextPolyEvent Heap Overflow

[0x4] AWS Hash Collisions

[0x5] Studio Manolibera Listarivisteuk SQL Injection

[0x6] Dark D0rk3r 0.5

[0x7] IBBY SQL Injection

[0x8] Kraken Payload Generator Beta 1.0

[0x9] Fortigate UTM WAF Appliance Cross Site Scripting

[0xA] Adobe Cross Site Scripting

Help Net Security - News

Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.

[0x1] FBI in the market for app to monitor social networks

[0x2] Facebook scammers leverage the Amazon Cloud

[0x3] Perplexing malware served on social welfare site

[0x4] Unwanted apps on Android smartphones

[0x5] Protect sensitive data on Mac OS X, Windows and Linux

[0x6] A peek into the Sykipot campaigns

[0x7] Multi-cloud security groups

[0x8] Software platform for security in industrial control systems

[0x9] Protecting Mac OS X from privacy threats

[0xA] Ubuntu Unleashed 2012 Edition

US-CERT Cyber Security Tips

US-CERT Cyber Security Tips describe and offer advice about common security issues for non-technical computer users. Tips are restricted to a single topic, although complex issues may span multiple tips. Each tip builds upon the knowledge, both terminology and content, of those published prior to it.

[0x1] ST11-001: Holiday Traveling with Personal Internet-Enabled Devices

[0x2] ST06-001: Understanding Hidden Threats: Rootkits and Botnets

[0x3] ST04-024: Understanding ISPs

[0x4] ST06-005: Dealing with Cyberbullies

[0x5] ST05-002: Keeping Children Safe Online

[0x6] ST08-001: Using Caution with USB Drives

[0x7] ST06-004: Avoiding the Pitfalls of Online Trading

[0x8] ST06-006: Understanding Hidden Threats: Corrupted Software Files

[0x9] ST06-002: Debunking Some Common Myths

[0xA] ST06-003: Staying Safe on Social Network Sites

Network World on Security

The latest security news, analysis, reviews and feature articles from NetworkWorld.com.

[0x1] Researchers unearth more Chinese links to defense contractor attacks

[0x2] Drive-by-download attack exploits critical vulnerability in Windows Media Player

[0x3] How to Prevent Thumb Drive Security Disasters

[0x4] CloudPassage launches new security product for public clouds

[0x5] Security at the scene of the crime

[0x6] Google says privacy change won't affect government users

[0x7] Hacking stunt: Stealing smartphone crypto keys using plain old radio

[0x8] Lawmakers question Google on its new privacy practices

[0x9] Facebook, Washington state sue alleged ad scammer

[0xA] Video conferencing mistakes make espionage easy, say researchers

Managing Intellectual Property & IT Security

New methods of communications are changing the way that we do business, from hiring people, to designing scalable systems, to breaking down silos across organizations, how we manage information and systems in the Web 2.0 world is going to determine how well we compete as people and as companies in the future.

[0x1] Robert Heinlein, Makerbot, and the Pirate Bay

[0x2] Judge rules that you have to decrypt your laptop

[0x3] YCombinator declares war on Hollywood post SOPA

[0x4] MegaUpload Raided and shut down

[0x5] The day the internet protested SOPA and PIPA

[0x6] New Book on Cloud Computing

[0x7] Facebook scam for the Iphone today

[0x8] There is no reason not to be socially connected anymore

[0x9] Four Short Links for 27 December 2011

[0xA] Four Short Links December 16 2011

Splunk Blogs

[0x1] Nothing says “I love you” like a Splunk Koozie

[0x2] Web Analytics Solution from Splunk

[0x3] Splunk Named An Application Performance Management (APM) Innovator

[0x4] Introducing SplunkNews: The place to go for what you need to know about Splunk

[0x5] New Feature on Splunkbase: Star Ratings for Apps

[0x6] Splunk 4.3: shiny new security features

[0x7] New, easier Splunk 4.3. But don’t just take our word for it!

[0x8] Splunk even more data with 4.3!

[0x9] Three Splunk 4.3 features security pros should start using today

[0xA] Splunk 4.3 : Faster and Insightful Web Analysis

SecuraBit

A show for security professionals.

[0x1] SecuraBit Episode 97: Ron Gula and Cyber Warfare!

[0x2] SecuraBit Episode 96: Year in Review!

[0x3] SecuraBit Episode 95: Words with Alec Baldwin!

[0x4] SecuraBit Episode 94: Late Night with Securaline!

[0x5] Challenge 2 Update

[0x6] SecuraBit Episode 93: Playing in the Sandbox!

[0x7] SecuraLabs Challenge #2

[0x8] SecuraBit Episode 92: Hammers, Nails, and Screwed!

[0x9] Derbycon Challenge and Attendance Wrap-Up

[0xA] SecuraBit Episode 91: The Show That Almost Wasn’t

Techworld.com operating-systems

Latest IT articles from Techworld's operating-systems channel

[0x1] HP to open source webOS in September

[0x2] Samsung Galaxy Tab can be sold in The Netherlands, court rules

[0x3] Ubuntu 12.04 replaces application menus with 'heads up display'

[0x4] Ubuntu 12.04 replaces menus with 'heads up display'

[0x5] A first look at Windows 8 - the OS for everything

[0x6] How to adjust OS X’s software update

[0x7] How to customise Ubuntu's Unity interface

[0x8] Microsoft Windows 8 mobile broadband improvements revealed

[0x9] Goodbye BIOS: A simple guide to UEFI

[0xA] HTC phone update has deleted Carrier IQ, say reports

BlogInfoSec.com

An Information Security Magazine in a Blog Format

[0x1] China Chamber Hack

[0x2] Printer Too Ready

[0x3] The Personalization of Risk

[0x4] Security in the Dark

[0x5] The Security of Fools

[0x6] SEC-urity’s Catch 22

[0x7] Normative Cyber Security

[0x8] Will Cloud Security Drive You Insane?

[0x9] So-so SASO … So What?

[0xA] Risk Mismanagement – Scoring vs. Monte Carlo vs. Scoring

CNET News - Security

[0x1] Anonymous takes aim over Europe's SOPA

[0x2] Microsoft's Kelihos botnet suspect says he's innocent

[0x3] Mobile security app from McAfee hits 2.0

[0x4] Facebook denies Anonymous 'claims' of takedown

[0x5] DHS disputes memo on purported railway computer breach

[0x6] O2 fixes phone number leak, explains blunder

[0x7] Symantec tells customers to disable PCAnywhere

[0x8] EU overhauling data-privacy policies to protect consumers

[0x9] Grappling with O2's phone number leaks

[0xA] Mystery and mayhem surrounding MegaUpload (roundup)

GlobalSecurity.org

Reliable Security Information from GlobalSecurity.org.

[0x1] Combined Force Captures Taliban Facilitator

[0x2] Taliban leader's control weakens as infighting infects group's top ranks

[0x3] Odierno: Army Will Become More Capable Through Drawdown

[0x4] The 31st Marine Expeditionary Unit departs for Cobra Gold 2012

[0x5] Syrian Violence Escalates as Diplomatic Efforts Falter

[0x6] UN Chief Says 'Onus Is On Iran' In Nuclear Row

[0x7] 13 Killed In Russia's Volatile North Caucasus

[0x8] Satellite Images Show Artillery Barrage in S. Kordofan

[0x9] Navy Minehunting Fleet Upgraded with Improved Sonar Capability

[0xA] Panetta Announces Fiscal 2013 Budget Priorities

Exploit Files ≈ Packet Storm

Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers

[0x1] Gitorious Remote Command Execution

[0x2] HP Diagnostics Server magentservice.exe Overflow

[0x3] MS12-004 midiOutPlayNextPolyEvent Heap Overflow

[0x4] Studio Manolibera Listarivisteuk SQL Injection

[0x5] IBBY SQL Injection

[0x6] Adobe Cross Site Scripting

[0x7] Interactive Web Design SQL Injection

[0x8] Global Media Service SQL Injection

[0x9] vBSEO 3.6.0 proc_deutf() Remote PHP Code Injection

[0xA] Peel SHOPPING 2.8 / 2.9 Cross Site Scripting / SQL Injection

InfoSecPodcast.com » Security Tools

[0x1] MIT Lincoln Lab Network Security Software

[0x2] Record IM video on the network?

[0x3] RFP for PenTesting

[0x4] Declassified window film stops wireless / cell signals

[0x5] List of Malware Analysis tool from SANS

[0x6] Malware Analyzing Sandbox

[0x7] Free Windows Honeypot from NetVigilance

[0x8] Ajax based port scanner

[0x9] Web based VMX file creator

[0xA] Bootable Linux security distros

Business Continuity

[0x1] More evidence critical infrastructure is a train wreck waiting to happen

[0x2] SECURITY WISDOM WATCH: SOPA-PIPA edition

[0x3] Key Sessions at CISO Executive Summit 2011

[0x4] Securing Mobile Data at the Application Layer

[0x5] Security Metrics and the Balanced Scorecard

[0x6] The Dark Side of Collaboration

[0x7] Foxnews.com - Drones, Malware and a Continued Lack of Infosec - Rinse and Repeat

[0x8] Hey, what’s for supper? We are having a risk-based pot roast tonight! Roll the dice.

[0x9] The Snake Oil Days of Internet Health

[0xA] Cyber Surveillance & Warning Striker

[ISN] InfoSec News Mailing List

InfoSecNews

[0x1] Advance Announcement: 2011 ACM Cloud Computing Security Workshop (CCSW) is back !

[0x2] Unfollowed: How a (Possible) Social Network Spy Came Undone

[0x3] US-Russian dictionary defines cyber war, other concepts

[0x4] ICANN taps DefCon founder for top security spot

[0x5] Teacher Passwords Stolen, Grades Hacked At 3 Seattle High Schools

[0x6] [ACM CCS'11] Reminder: Deadline Approaching (May 6, 2011)

[0x7] Cyberespionage: US finds FBI agents in elite unit lack necessary skills

[0x8] Experts dissect hacker attacks during cybersecurity forum at Hagerstown Community College

[0x9] Are we talking "cyber war" like the Bush admin talked WMDs?

[0xA] Oracle hedging its vulnerability reports?

LWN.net comments

This feed contains the text of all comments posted to the LWN.net site.

[0x1] XFS: the filesystem of the future?

[0x2] XFS: the filesystem of the future?

[0x3] The case for the /usr merge

[0x4] The future calculus of memory management

[0x5] The case for the /usr merge

[0x6] Software is The Glass Bead Game

[0x7] Opponents protest signing of ACTA without adequate debate (ars technica)

[0x8] The case for the /usr merge

[0x9] A missed point

[0xA] A missed point

Post Politics: Breaking Politics News, Political Analysis & More - The Washington Post

Post Politics from The Washington Post is the source for political news headlines, in-depth politics coverage and political opinion, plus breaking news on the Obama administration and White House, Congress, the Supreme Court, elections and more.

[0x1] Gingrich professes shock at Romney’s ‘dishonest’ debate performance

[0x2] Obama, Biden rally Democrats at annual retreat

[0x3] What would Mitt Romney’s offshore account filings show?

[0x4] The GOP empire strikes back at Gingrich

[0x5] Report: 7 ex-lawmakers now lobby for groups that got earmarks

[0x6] Santorum pushed to limit malpractice awards but sought larger payout for wife

[0x7] Associates: Paul pursued strategy of publishing controversial newsletters

[0x8] Mike Huckabee: Newt Gingrich ad ‘not authorized’

[0x9] Florida primary playlist: A Fix List!

[0xA] Newt Gingrich still badly outspent in Florida ads

Black Hat Forum Black Hat SEO

BlackHatWorld is a backhat SEO Forum dedicated to learning black hat seo, cloaking, doorway pages, blogging, automatic content generators and more. Master the ART of "BlackHat"!

[0x1] Cold faxing

[0x2] FileFactory Premium - 50% Off (1 Year Access, Now $39)

[0x3] New theme for bhw possible?

[0x4] $175.21 CPC! Free Domains

[0x5] [HOW TO] Sell stuff for much more than they cost

[0x6] Need good PPD site ? What is the best one for you ?

[0x7] [JV]Use my VPS with Scrapebox, Tweetattacks and 10 Proxies

[0x8] Question about disabled fb app

[0x9] Xrumer blast gig?

[0xA] Where else to market seo services?

The TSA Blog

Terrorists Evolve. Threats Evolve. Security Must Stay Ahead. You Play A Part.

[0x1] This blog has moved

[0x2] Traveling With Airbags

[0x3] Advanced Imaging Technology Off To a Great Start

[0x4] Response to: TSA to Download Your iTunes?

[0x5] Federal Air Marshals on Flight 663

[0x6] Traveling with E-readers, Netbooks, and Other Small Gadgets (Including the iPad)

[0x7] Advanced Imaging Technology - Yes, It's Worth It

[0x8] Helping Wounded Warriors

[0x9] Advanced Imaging Technology: "Radiation Risk Tiny"

[0xA] Live Aviation Security Chat with Secretary Napolitano on Facebook 3/9/10

ZDI: Recent Press

Recent Press Hits

[0x1] Google offers $20,000 prize in annual hack-off

[0x2] Pwn2Own 2011: Google offering $20,000 for Chrome sandbox exploit

[0x3] Google Offers Bucks For Bugs In Its Web Applications

[0x4] How Microsoft ranks with the most tardy bug fixers

[0x5] HP TippingPoint gives deadline to vendors

[0x6] TippingPoint sets six-month deadline for flaw fixes

[0x7] HP's Zero Day Initiative Gives Vendors Patching Deadline

[0x8] Researchers Throw Down Vulnerability-Disclosure Gauntlet

[0x9] TippingPoint gives vendors six months to fix holes

[0xA] New vulnerability disclosure deadline puts pressure on tardy software vendors

LinuxSecurity.com: OpenBSD Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Password guessing with Medusa 2.0

[0x3] OpenBSD: kernel heap overflow in IPsec

[0x4] OpenBSD: login_radius security flaw

[0x5] OpenBSD: Xpm security fix

[0x6] OpenBSD: zlib reliabilty fix

[0x7] OpenBSD: cvs Multiple vulnerabilities

[0x8] OpenBSD: cvs Heap overflow vulnerability

[0x9] OpenBSD: procfs Incorrect bounds checking vulnerability

[0xA] OpenBSD: cvs Pathname validation vulnerabilities

Boaz Gelbord

A look at information security management, spending in the security industry, and everything along the way.

[0x1] Comodo, RSA, and Security Priorities

[0x2] Security Scoreboard - Join the Conversation

[0x3] iPad and the Illusion of Privacy

[0x4] Napera selling security at the Google Apps Marketplace

[0x5] Flash Security Under the Microscope

[0x6] Google Secure Search and Security Overkill

[0x7] Facebook and Security Minimalism

[0x8] Application Security Underfunded

[0x9] Security Scoreboard is Live!

[0xA] Mass Security Regulation Gets Tech Priorities Wrong

iSecur1ty - Arab Security Community

مجتمع عربي للهاكر الأخلاقي وخبراء الحماية يركّز على مفهوم اختبار الاختراق وجديد أخبار الحماية والثغرات, شروحات فيديو ومقالات أمنيّة.

[0x1] فيديو : التعامل مع الملفات والشبكات في python

[0x2] نقاش : كيفيه بناء عمليه أختبار أختراق ناجحه

[0x3] كتاب: A Bug Hunter’s Diary

[0x4] ثغره جديده في متصفح FireFox بسبب Java

[0x5] فيديو : أساسيات البرمجه بلغة Python

[0x6] فيديو: تخطي حماية ASLR

[0x7] فيديو: شرح ثغرات reflected XSS و stored XSS

[0x8] كتاب: Metasploit The Penetration Tester’s Guide

[0x9] F5: لحماية الانظمة الضخمة من الاختراق

[0xA] فيديو: Burp Suite لاستغلال ثغرات Command Execution

Dr Anton Chuvakin Blog PERSONAL Blog

LogChat: Andrew Hay and Anton Chuvakin talk about logging, log management and related topics

[0x1] Links for 2012-01-25 [del.icio.us]

[0x2] Links for 2012-01-12 [del.icio.us]

[0x3] Links for 2012-01-11 [del.icio.us]

[0x4] Links for 2012-01-09 [del.icio.us]

[0x5] Annual Blog Round-Up – 2011

[0x6] Links for 2012-01-03 [del.icio.us]

[0x7] Monthly Blog Round-Up – December 2011

[0x8] Links for 2011-12-19 [del.icio.us]

[0x9] Links for 2011-12-16 [del.icio.us]

[0xA] Monthly Blog Round-Up – November 2011

GLOBAL SECURITY ADVISOR RESEARCH BLOG

[0x1] Password Best Practices

[0x2] Ransomware Exploits the Italian Police

[0x3] Detailed analysis of malware sample removed from android market

[0x4] The woes of a Physical Security breach

[0x5] New Zero-Day Attack in Adobe Products (CVE-2011-2462)

[0x6] ‘Duqu’ 0-day exploit gets a temporary fix

[0x7] Analysis of an Android Malware family doing multi impersonations

[0x8] Mac OS X Threat Disguises as Adobe Flash Player Installer

[0x9] Mac OS X Threat Masquerading as a PDF Document

[0xA] The SMSer Trojan returns as Fake Browser Again.

The SMB Minute

The SMB Minute

[0x1] Great collection of different tools at grassrootssecurity

[0x2] Four Must-Have SMB Security Tools

[0x3] How to choose the right Firewall for Your SMB

[0x4] Fake Anti-Virus Progams

[0x5] Interview with Chirs Nickerson Part3

[0x6] Those Who Cannot Remember the Past are Condemned to Repeat it

[0x7] Your photos are NOT posted online

[0x8] More Phishing attempts

[0x9] Interview with Chris Nickerson Part 2, NOW with BETTER audio

[0xA] Interview with Chris Nickerson (part 1)

Linus' blog

Eventually this might even contain some Torvalds family pictures.

[0x1] Glamorous pictures?

[0x2] Pearls before swine..

[0x3] Thank you for ...

[0x4] Early Halloween Guest

[0x5] "13744 supplied"

[0x6] Meanwhile, in Finland..

[0x7] A Pig Lover's Oath

[0x8] Silly grin

[0x9] Turst me, I know what I'm doing...

[0xA] Demons? Really?

The UNIX and Linux Forums

UNIX and Linux Forums - Learn UNIX, UNIX commands, Linux, Operating Systems, System Administration, Programming, Shell, Shell Scripts

[0x1] Beginning to learn Linux from home

[0x2] Urgent question how to get lines from the file

[0x3] Booting error in Sun V210

[0x4] change log vertical to horizontal lines

[0x5] Login Screen in Solaris 11

[0x6] SSH in maintainance mode in solaris 10

[0x7] awk record limition

[0x8] Delete X amount of similar files in a directory

[0x9] Help with NIS client

[0xA] Why does my test fail ??

Murky

Tending to Geekiness

[0x1] Ukulele

[0x2] A Mini Christmas Marketing Suggestion

[0x3] Links for 2011-11-15 [del.icio.us]

[0x4] 7 billion and counting

[0x5] Rock Choir

[0x6] Les Misérables

[0x7] River Song

[0x8] BBC Proms – Prom 59: Hooray for Hollywood

[0x9] Evolution and Creationism

[0xA] Let’s Kill Hitler

ThinkGeek - What's New

ThinkGeek's latest and greatest stuff for smart masses brought to you with love from the minions of the Zombie Monkey Army.

[0x1] T-Shirts & Apparel : Zombie Friendship Necklace Set

[0x2] T-Shirts & Apparel : Anatomical Brain Pendant

[0x3] T-Shirts & Apparel : Star Wars Cufflinks

[0x4] Geek Toys : Deluxe Starcraft Figures

[0x5] T-Shirts & Apparel : LoveCraft Ladies' Shirt

[0x6] Geek Kids : Smartphone Controlled Desk Pet Tankbots

[0x7] Books : The Unofficial Hunger Games Cookbook

[0x8] Home & Office : Merlotte's Bar & Grill Pint Glass

[0x9] Home & Office : Portion - Cooking Spoon w/ Measuring Grooves

[0xA] Geek Toys : Quarriors Mega Dice Battle Game

Identity Theft Blog

Welcome to the most progressive identity theft blog which includes hundreds of original identity theft articles written by Henry Bagdasarian.

[0x1] Jan 24, Customer Education

[0x2] Jan 10, Red Flags Rule Shortfalls

[0x3] Dec 16, Safe Online Shopping

[0x4] Dec 13, Do Credit Monitoring Services Work?

[0x5] Dec 3, Privacy Law Expansion

[0x6] Nov 28, Invasion of Privacy Laws

[0x7] Nov 6, Social Network Profile

[0x8] Oct 29, Everyday is Halloween

[0x9] Oct 27, Product Tampering Risks

[0xA] Oct 25, Identity Theft Protection Services

CSOONLINE.com - Video Surveillance

[0x1] Security at the scene of the crime

[0x2] U.S. border security strategy faces budget woes

[0x3] Video surveillance: The march to megapixel IP cameras continues

[0x4] World Trade Center security and progress

[0x5] The 2nd annual CSO holiday gift guide

[0x6] TSA and the freedom thing: We're the problem

[0x7] The retail paradox

[0x8] Hybrid DVRs bridge move from analog to IP surveillance

[0x9] VSaaS: The basics of surveillance as a service

[0xA] Video surveillance as a service: VSaaS dos and don'ts

OVAL Repository Latest Updates

This feed provides information about the latest updates to the OVAL Repository, including new OVAL definitions; definitions that have changed status (e.g., from Draft to Interim or Interim to Accepted); and definitions that have been modified is posted here. Each update to the OVAL Repository will also update this feed. The OVAL Repository is updated as edits and additions are completed. It is possible for this feed to be updated several times per day, but updates rarely occure more often than once per day.

[0x1] Definition oval:org.mitre.oval:def:7995 has been added to the OVAL Repository.

[0x2] Definition oval:org.mitre.oval:def:7604 has been added to the OVAL Repository.

[0x3] Definition oval:org.mitre.oval:def:7561 has been added to the OVAL Repository.

[0x4] Definition oval:org.mitre.oval:def:7427 has been added to the OVAL Repository.

[0x5] Definition oval:org.mitre.oval:def:7221 has been added to the OVAL Repository.

[0x6] Definition oval:org.mitre.oval:def:7217 has been added to the OVAL Repository.

[0x7] Definition oval:org.mitre.oval:def:7178 has been added to the OVAL Repository.

[0x8] Definition oval:org.mitre.oval:def:7110 has been added to the OVAL Repository.

[0x9] Definition oval:org.mitre.oval:def:7061 has been added to the OVAL Repository.

[0xA] Definition oval:org.mitre.oval:def:7049 has been added to the OVAL Repository.

Hak5 - Technolust since 2005

Trust Your Technolust

[0x1] Hak5 1021 – Build a free PXE server to boot Linux over the network!

[0x2] Hak5 at CES 2012

[0x3] CES 2012 and Revision3 Vegas Meetup!

[0x4] Hak5 1020 – Gladinet Cloud Desktop and Keylogging with AutoIt

[0x5] Hak5 1019 – Social Network Scamming, Tracelytics and Plex

[0x6] Thank You For An Awesome 2011!

[0x7] Hak5 1018 – Damn Cheap VoIP, Jolicloud and Bash scripts

[0x8] Behind Hak5

[0x9] Hak5 1017 – 23 Questions with Kevin Mitnick

[0xA] Hak5 1016 – Virtualized USB booting with QEMU, Steganalysis with Scalpel, x11vnc, screen for windows

Insanely Low-Level

An Arkon Blog

[0x1] Appfront

[0x2] Kernel Exploits

[0x3] IsDebuggerPresent – When To Attach a Debugger

[0x4] isX64 Gem

[0x5] Finding Kernel32 Base Address Shellcode

[0x6] Private Symbols Look Up by Binary Signatures

[0x7] diStorm Goes on Diet

[0x8] Binary Hooking Problems

[0x9] Executing .PYC Files in Python

[0xA] JavaScript Once Again

good coders code, great reuse

Peteris Krumins' blog about programming, hacking, software reuse, software ideas, computer security, google and technology.

[0x1] Node.js modules you should know about: procstreams

[0x2] Browserling has a new design!

[0x3] Node.js modules you should know about: everyauth

[0x4] How to setup Stripe payments with node.js

[0x5] A Perl Regular Expression That Matches Prime Numbers

[0x6] Node.js modules you should know about: jsonstream

[0x7] Node.js modules you should know about: cradle

[0x8] Node.js modules you should know about: semver

[0x9] Node.js modules you should know about: express

[0xA] Node.js modules you should know about: redis

[0x1] Too Good to Be True! The Reality Behind Online Lotteries

[0x2] Kaspersky Lab Granted New Patent in the US Covering Malware Protection Using Virtualization

[0x3] Kaspersky Lab Ends Year with Winning Streak of Comparative Test Victories

[0x4] Kaspersky Lab Named a "Leader" in Magic Quadrant for Endpoint Protection Platforms

[0x5] Kaspersky Lab Becomes a "Global Growth Company Industry Shaper" at the World Economic Forum

[0x6] Update for Kaspersky Security for Microsoft Exchange Servers Provides Better E-mail Security with Cloud Support

[0x7] Kaspersky Lab Announces that Felicity Aston Has Completed Her Record-Setting Expedition

[0x8] Kaspersky Lab Secures Top Marks Yet Again in Independent Testing - This Time for Kaspersky Mobile Security, by PC Security Labs

[0x9] Kaspersky Internet Security 2012 Ranked Top in Comparative Testing by Computer Bild

[0xA] Kaspersky Lab Joins Samsung Enterprise Alliance Program

2600: The Hacker Quarterly

Off The Hook and Off The Wall

[0x1] Off The Hook show for January 25, 2012

[0x2] Off The Wall show for January 24, 2012

[0x3] HOPE NUMBER NINE SPEAKER SUBMISSIONS NOW OPEN

[0x4] 2600 WEBSITES TO GO BLACK ON WEDNESDAY

[0x5] HOPE NUMBER NINE PREREGISTRATION ONLINE

[0x6] WINTER ISSUE OF 2600 RELEASED

[0x7] HOTEL PENNSYLVANIA SAVED?

[0x8] 20TH CENTURY DISCOUNT ABOUT TO END

[0x9] CLUB-MATE IS BACK!

[0xA] BEYOND HOPE VIDEO ARCHIVE GOES ONLINE THIS WEEKEND

Techworld.com networking

Latest IT articles from Techworld's networking channel

[0x1] Top tips for troubleshooting Fibre Channel networks

[0x2] LTE-Advanced is the future, but don't expect a rocket ship

[0x3] Tibco adds location data to Tibbr social network

[0x4] AT&T to launch unified communication services

[0x5] IBM and NEC team up to offer OpenFlow networking products

[0x6] Hull and East Yorkshire to get 100Mbps fibre broadband

[0x7] Ericsson appoints new CTO Ulf Ewaldsson

[0x8] Microsoft Windows 8 mobile broadband improvements revealed

[0x9] Google Plus has more than 90 million users, claims Larry Page

[0xA] WAN optimisation market shakeup predicted by industry experts

Capi's Corner

Development, Network, Security, Ideas & Opinions

[0x1] A geek’s unified instant messaging setup

[0x2] Fix two Ubuntu 10.04 window manager annoyances

[0x3] The power of git aliases

[0x4] OCZ Vertex2, Linux, and ancient nForce 430 chipset

[0x5] Remaining Windows Vista/7 “rearm count”

[0x6] Novatel Merlin U740 using only Windows 7 onboard tools

[0x7] tr.im to be shut down

[0x8] URL shortening services soon to be under siege?

[0x9] Windows Vista Home/Business/Enterprise has a telnet client, too

[0xA] How to force Git to consider a file as binary

msnbc.com: Security

Msnbc.com is a leader in breaking news and original journalism.

[0x1] 'Frankenware': When a virus infects a virus

[0x2] Do Google and Facebook respect Data Privacy

[0x3] Newly found Android malware infects millions: report

[0x4] Facebook Timeline poll: 'Overwhelming negative'

[0x5] Activists and bloggers fear Twitter censorship

[0x6] Hacker group Anonymous targets Mexican sites

[0x7] Hawaii says 'aloha' to invasive Web-tracking bill

[0x8] FTC head calls out Facebook, Google on Data Privacy Day

[0x9] House wants Google privacy answers

[0xA] Twitter to restrict user content in some countries

XSSed syndication

You are welcome to syndicate and share xssed.com contents

[0x1] F-Secure, McAfee and Symantec websites again XSSed

[0x2] Happy New Year 2012!

[0x3] Not surprisingly, McAfee websites are susceptible to XSS attacks

[0x4] Secure Amazon Seller Central password reset page XSSed

[0x5] EV SSL-secured live PayPal site vulnerable to XSS

[0x6] Persistent XSS bug discovered on eBay

[0x7] More American Express sites vulnerable to XSS and open redirects

[0x8] Cross-site scripting hole in American Express site using EV SSL

[0x9] Amazon hit by persistent XSS vulnerability

[0xA] MasterCard and Visa sites bitten by XSS bugs

Network Security Blog

Join me as I spend 30 minutes each week talking about the computer security issues facing us today. I discuss privacy, hacking, malware and the Payment Card Industry (PCI) Data Security Standards.

[0x1] Standing Desk 2.0

[0x2] Kill pcAnywhere right now!

[0x3] Network Security Podcast, Episode 265

[0x4] SOPA was only an opening salvo

[0x5] Network Security Podcast, Episode 264

[0x6] Open tabs 01/09/12

[0x7] Network Security Podcast, Episode 263

[0x8] Open Tabs 12/26/11

[0x9] Southern Fried Network Security Podcast

[0xA] Open tabs 12/18/11

Penetration Testing

While this list is intended for "professionals", participants frequenly disclose techniques and strategies that would be useful to anyone with a practical interest in security and network auditing.

[0x1] [HITB-Announce] Reminder: HITB2012AMS Call For Papers Closing Soon

[0x2] DoS attacks using Exploit Pack

[0x3] Technology Neutral Healthcheck

[0x4] Re: Goofile 1.0 - Command line google search for files by domain

[0x5] Exploit Pack - New release

[0x6] Goofile 1.0 - Command line google search for files by domain

[0x7] Re: Best route to penetration testing learning

[0x8] Re: Best route to penetration testing learning

[0x9] Re: Best route to penetration testing learning

[0xA] Best route to penetration testing learning

Palisade Magazine : Application Security Intelligence

A publication by Paladion Networks

[0x1] Quiz: Specifying life time for a webpage

[0x2] SAP Baseline Security Audit

[0x3] Defeating Encryption in Some Thick Clients

[0x4] Database Links Security

[0x5] Quiz: Proposal to amend Same Origin Policy

[0x6] Cache Control Directives Demystified

[0x7] The Payment Application Data Security Standard (PA DSS)

[0x8] Defend against Reverse Engineering

[0x9] Quiz: Cross Site Printing

[0xA] CSRF - The hidden menace

GNUCITIZEN

Information Security Think tank

[0x1] Well Websecurify Runs on The iPhone

[0x2] Stuxnet

[0x3] Having fun with BeEF, the browser exploitation framework

[0x4] ColdFusion directory traversal FAQ (CVE-2010-2861)

[0x5] 1ST European Edition of HITB Coming Up!

[0x6] Hacking Linksys IP Cameras (pt 6)

[0x7] Dnsmap v0.30 is now out!

[0x8] Old-school Remote Command Exec Vulnerabilities on Avaya Intuity

[0x9] Skydive

[0xA] Free Web Application Security Testing Tool

ITtoolbox Downloads

[0x1] Using WebSphere DataStage with IBM DataMirror Change Data Capture

[0x2] Extend and Reuse Existing Mainframe Functions Through SOA - Part 4 of the Roadmap To Reduce Webcast Series

[0x3] Consolidate Applications From Non-Strategic Platforms Onto z/OS - Part 3 of the Roadmap To Reduce Webcast Series

[0x4] Tech Talk:: Strategic Solutions To Help Solve Top Issues In The Data Center Today

[0x5] How Safe Is Your Network? - Analyst #1 Choice for Vulnerability Management - Free Trial

[0x6] Always be Open for Business

[0x7] Make Compliance Work for You

[0x8] Reduce Operational Costs By Up To 95% - Part 1 of the Roadmap To Reduce Webcast Series

[0x9] Increase productivity by up to 40% - Part 2 of the Roadmap To Reduce Webcast Series

[0xA] Database Trends and Applications Survey Results: The Freshest BI Data from the Journal of Enterprise Data Management

ThinkGeek :: Clearance Products

Stuff for Smart Masses - Clearance Items

[0x1] Little Big Planet Knitted Plush

[0x2] Hex Wrench Pendant

[0x3] Star Wars Trash Compactor Bookends

[0x4] Hello Kitty Double Cupcakes Babydoll

[0x5] Dexter's Kill Shirt

[0x6] Umbrella Corporation

[0x7] Crest of Hyrule

[0x8] Horn Stand for iPhone

[0x9] Case o' Bawls

[0xA] Ghost Pepper Chili Flakes

LinuxSecurity.com: Foresight Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Password guessing with Medusa 2.0

[0x3] Foresight: firefox

[0x4] Foresight: python

[0x5] Foresight: firefox

[0x6] Foresight: imageop

[0x7] Foresight: nss_ldap

[0x8] Foresight: rsync

[0x9] Foresight: e2fsprogs

[0xA] Foresight: tetex

Lenny Zeltser on Information Security

Discussing IT with a focus on information security. Lenny Zeltser helps safeguard customers’ IT operations at NCR Corporation. He also teaches how to analyze and combat malware at SANS Institute.

[0x1] Dealing With The Illusion of Invulnerability in Information Security

[0x2] "2012 may well become known as the year the criminal underground started getting a clue about how to..."

[0x3] Using Free Windows XP Mode as a VMware Virtual Machine

[0x4] New Release of the REMnux Linux Distro is Now Available

[0x5] 5 Favorite Security Reads of the Week

[0x6] 5 Favorite Security Reads of the Week

[0x7] Incident Response on 64-Bit Windows Using 32-Bit Tools

[0x8] Balancing Brevity and Verbosity in Business Communications

[0x9] 5 Favorite Security Reads of the Week

[0xA] Extracting Malicious Flash Objects from PDFs Using SWF Mastah

الأخبار - iSecur1ty

مجتمع عربي للهاكر الأخلاقي وخبراء الحماية يركّز على مفهوم اختبار الاختراق وجديد أخبار الحماية والثغرات, شروحات فيديو ومقالات أمنيّة.

[0x1] كتاب: A Bug Hunter’s Diary

[0x2] ثغره جديده في متصفح FireFox بسبب Java

[0x3] كتاب: Metasploit The Penetration Tester’s Guide

[0x4] ثغرة XSS خطيرة في Skype قد تؤدي لسرقة الحساب

[0x5] ثغرة 0-Day في نظام iOS

[0x6] ثغرات خطيرة في phpMyAdmin

[0x7] توقف شبكة Playstation عن العمل

[0x8] MSS: مضاد للفيروسات محمول من Microsoft

[0x9] Google تصلح ثغرة Flash و ثلاث ثغرات اخرى في متصفح Chrome

[0xA] Microsoft تطرح أداتين أمنيتنين جديدتين

Wilders Security Forums

This is a Computer Security discussion forum.

[0x1] The Best Tools to check for Software Updates

[0x2] F-Secure defs update 01.28.2012

[0x3] Emsisoft Anti-Malware signature update 01.28.2012

[0x4] KAV defs update 01.28.2012

[0x5] Ad-Aware defs update 01.28.2012

[0x6] Microsoft schtum on Dropbox snags with IE

[0x7] Sandboxie never asked to reboot

[0x8] WSA update

[0x9] WSA Version 8.0.1.92

[0xA] Unable to open Thunderbird attachments after NOD32 install

Veracode Blog

Application security testing, analysis, and metrics

[0x1] Weekly News Round Up

[0x2] A Conversation With Richard Clarke – Part II

[0x3] A Conversation with Richard Clarke – Part I

[0x4] 2012 Social Security Blogger Awards

[0x5] New Platforms, Old Mistakes

[0x6] Weekly News Roundup

[0x7] Cloud Based Application Security Testing

[0x8] SOPA Grabs Headlines Today

[0x9] Where Were You? 10th Anniversary of Gates Trustworthy Computing Memo – Part 2

[0xA] Delivering Unhappiness

CSOONLINE.com - Other

[0x1] Resumption of the crypto wars?

[0x2] PCI 2.0 reviewed

[0x3] How to do a hotel room security check

[0x4] Schneier: Eavesdropping on 'smart homes'

[0x5] "The biggest and worst deal in security history"

[0x6] Passwords in the wild: the future

[0x7] Website vulnerability analysis: fast, cheap, good - pick 2

[0x8] Riggins: FAIR and vulnerabilities

[0x9] Bejtlich: Dell needs a PSIRT

[0xA] Trojan pong and other visualizations

OSF Data Loss - The Blotter

This feed contains the latest blotter articles posted to datalossdb.org.

[0x1] Feds target South Florida for identity theft prevention

[0x2] Massive identity theft scheme nets up to $5 million

[0x3] Identity theft insurance not always worth the cost

[0x4] Consumer Reports: Debunking ID-theft hype

[0x5] 12 indicted in multi-state identity theft ring

[0x6] Second fraud case linked to UVic data theft in B.C.

[0x7] Data Theft Doesn’t Always Mean Being Hacked

[0x8] Ex-Bank Employee Arrested for ID Theft

[0x9] Zappo Zapped: Biggest Consumer Danger Not Credit Cards But Identity Theft

[0xA] Better Business Bureau names top identity theft scam of the year for 2011

Security - RSS Feed

Security news - RSS Feed

[0x1] Verdasys Offers Enterprise Data Leak Protection as Managed Service

[0x2] EU 24-Hour Data Breach Notification Rule 'Unworkable': ATandT Executive

[0x3] Catbird Unveils vSecurity 5.0 for Virtualized and Cloud Computing

[0x4] Symantec Warns pcAnywhere Users to Disable Tool Due to Source Code Theft

[0x5] Secret Government Talks Create Treaty Stricter Than SOPA, PIPA

[0x6] Attackers Using DNS Poisoning to Hijack Website Domains, Divert Traffic

[0x7] EU-Proposed New Data Privacy Laws to Impact U.S. Internet Giants

[0x8] Google Privacy Policies Rile Users, Regulators With Zero Opt-Out

[0x9] SCADA Systems in Railways Vulnerable to Attack

[0xA] Google Centers Privacy Policies Around Google+

CSOONLINE.com - Security Career/Staffing

[0x1] 2011 Women of Influence award winners named

[0x2] How your signature can propel your security career

[0x3] Security technology or staffing gap: Which is the greater enterprise challenge?

[0x4] Hey, CSOs: Suck it up and accept budget cuts

[0x5] Finding security's opportunity to engage

[0x6] Master these two words to advance your security career

[0x7] 5 secrets to building a great security team

[0x8] Improve your security leadership with one simple lesson from improv

[0x9] Lessons in security leadership: Dwaine Nichol

[0xA] Security leadership with three "Roadhouse" rules

Oracle Security Alerts

Security Alerts Issued by Oracle

[0x1] Oracle Critical Patch Update (CPU) Advisory - January 2012

[0x2] Oracle Critical Patch Update (CPU) Advisory - October 2011

[0x3] Oracle Security Alert for CVE-2011-3192

[0x4] Oracle Critical Patch Update (CPU) Advisory - July 2011

[0x5] Oracle Java SE Critical Patch Update Advisory - June 2011

[0x6] Oracle Critical Patch Update (CPU) - April 2011

[0x7] Oracle Java SE and Java for Business Critical Patch Update Advisory - February 2011

[0x8] Oracle Critical Patch Update (CPU) - January 2011

[0x9] Oracle Critical Patch Update (CPU) - October 2010

[0xA] Oracle Critical Patch Update (CPU) - July 2010

DVLabs: Blogs

Recent Blog Posts

[0x1] Pwn2Own Pre-Game

[0x2] 2011: The Year in Review

[0x3] Using Pastebin for Malicious Sample Collection

[0x4] Shellcode Detection Using Python

[0x5] Malicious Content Harvesting with Python, WebKit, and Scapy

[0x6] Honeypotting the Cloud

[0x7] Ekoparty - Texas BBQ vs Argentine Asado

[0x8] MindshaRE: Hooking ReadFile and MapViewOfFile for Vulnerability Analysis

[0x9] MindshaRE: Debugging via Code Injection with Python

[0xA] REcon 2011 Training: Bug Hunting and Analysis 0x65

LinuxSecurity.com: Slackware Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Password guessing with Medusa 2.0

[0x3] Slackware: 2011-284-01: httpd: Security Update

[0x4] Slackware: 2011-252-01: httpd: Security Update

[0x5] Slackware: 2011-249-01: mozilla-firefox: Security Update

[0x6] Slackware: 2011-249-02: mozilla-thunderbird: Security Update

[0x7] Slackware: 2011-249-03: seamonkey: Security Update

[0x8] Slackware: 2011-237-01: php: Security Update

[0x9] Slackware: 2011-224-01: bind: Security Update

[0xA] Slackware: 2011-210-03: samba: Security Update

Security

Hacking everything, by Chris Evans / scarybeasts

[0x1] Alert: vsftpd download backdoored

[0x2] libxml vulnerability and interesting integer issues

[0x3] Bug bounties vs. black (& grey) markets

[0x4] Fiddling with Chromium's new certificate pinning

[0x5] Multi-browser heap address leak in XSLT

[0x6] Busy Chrome day...

[0x7] Dangerous file write bug in Foxit PDF Reader

[0x8] I got accidental code execution via glibc?!

[0x9] Some less obvious benefits of HSTS

[0xA] A harmless SVG + XSLT curiousity

News from trapkit.de

News from trapkit.de

[0x1] [16.07.2010] Oracle Solaris Kernel Security Advisory

[0x2] [22.02.2010] avast! Security Advisory

[0x3] [02.02.2010] Apple iPhone OS and Mac OS X Security Advisory

[0x4] [31.01.2010] Oracle Solaris Kernel Security Advisory

[0x5] [27.12.2009] New version of checksec.sh

[0x6] [09.09.2009] Apple iPhone OS AudioCodecs Heap Buffer Overflow (TKADV2009-007)

[0x7] [16.05.2009] libsndfile/Winamp Security Advisory (TKADV2009-006)

[0x8] [04.04.2009] xine-lib Security Advisory (TKADV2009-005)

[0x9] [15.02.2009] xine-lib also affected by TKADV2009-004

[0xA] [28.01.2009] FFmpeg Security Advisory (TKADV2009-004)

Smart Security by Dharmesh M Mehta

An Application Security Blog

[0x1] What do you say? Yes / No / Don't Care

[0x2] 7 UID bogus centers shut down

[0x3] Mobile Apps Security – Are you worried?

[0x4] Simple Autocomplete

[0x5] Past few months

[0x6] OTP adoption from India to the US?

[0x7] Getting Hands Dirty with Ettercap Tool

[0x8] About the 'Rugged' Initiative

[0x9] Plenty of (IN)Secure Broadband Routers

[0xA] Mumbai to Host India’s First e-Crime Forum

It's a shampoo world anyway

...la lausige Leben, revisited

[0x1] The grand Hillbilly Bank Robbery

[0x2] NoScript now includes LocalRodeo-like functionality

[0x3] OWASP Germany Conference

[0x4] LocalRodeo (beta) for Firefox 3

[0x5] Travel ahead

[0x6] DeepSec 2007 Roundup

[0x7] Why I do not like taint tracking

[0x8] DNS rebinding at CCS'07

[0x9] CfP: NordSec 2007 - The 12th Nordic Workshop on Secure IT Systems

[0xA] 2nd Rule: You do blog about Bar Camp

DEF CON 18 [Audio] Speeches from the Hacker Convention.

DEF CON 18 [Audio] Speeches from the Hacker Convention.

[0x1] A.P. Delchi - Physical Security : You're Doing It Wrong!

[0x2] Adam Pridgen & Matt Wollenweber - Toolsmithing an IDA Bridge, Case Study for Building a Reverse Engineering Tool

[0x3] Adrian Crenshaw - Programmable HID USB Keystroke Dongle: Using the Teensy as a Pen Testing Device

[0x4] Ki-Chan Ahn & Dong-Joo Ha - Malware Migrating to Gaming Consoles: Embedded Devices, an Antivirus-Free Safe Hideout For Malware

[0x5] Andrew Kongs & Dr. Gerald Kane - Training the Next Generation of Hardware Hackers -- Teaching Computer Organization and Assembly Language Hands-On with Embedded Systems

[0x6] Anthony Lai, Jake Appelbaum & Jon Oberheide - The Power of Chinese Security

[0x7] Anthony Lineberry, David Luke Richardson & Tim Wyatt - These Aren't the Permissions You're Looking For

[0x8] Barrett Weisshaar & Garret Picchioni - The Night The Lights Went Out In Vegas: Demystifying Smartmeter Networks

[0x9] Barnaby Jack - Jackpotting Automated Teller Machines Redux

[0xA] Blake Self & bitemytaco - Hacking DOCSIS For Fun and Profit

Network World on Firewalls

The latest firewall news, analysis and reviews on NetworkWorld.com.

[0x1] 10 questions for Skybox Security CFO Lior Barak

[0x2] 10 questions for Palo Alto Networks CFO Michael Lehman

[0x3] Cisco, Juniper, Check Point, Palo Alto among firms in security contest

[0x4] WatchGuard launches iOS-friendly security appliance

[0x5] Twitter scoops up mobile security developer Whisper Systems

[0x6] Two-thirds of firewall managers lack confidence in their security posture

[0x7] Cisco how-to guides for firewalls, IPv6, contact centers and taking that security exam

[0x8] Clouds of anxiety: Companies worry about security of cloud computing

[0x9] How to have real risk management

[0xA] They are the 11 percent (or less) who really get security

Bugtraq

The premier general security mailing list. Vulnerabilities are often announced here first, so check frequently!

[0x1] AdaCore Security Advisory SA-2012-L119-003 Hash collisions in AWS

[0x2] [HITB-Announce] Reminder: HITB2012AMS Call For Papers Closing Soon

[0x3] [ GLSA 201201-15 ] ktsuss: Privilege escalation

[0x4] [SECURITY] [DSA 2394-1] libxml2 security update

[0x5] ESA-2012-007: RSA, The Security Division of EMC, announces security fixes for RSA enVision

[0x6] ESA-2012-005: EMC NetWorker buffer overflow vulnerability

[0x7] Cisco Security Advisory: Cisco IronPort Appliances Telnet Remote Code Execution Vulnerability

[0x8] ZDI-12-018 : Symantec PCAnywhere awhost32 Remote Code Execution Vulnerability

[0x9] NX Web Companion Spoofing Arbitrary Code Execution Vulnerability

[0xA] [SECURITY] [DSA-2393-1] bip security update

Michael Howard's Web Log

A Simple Software Security Guy at Microsoft!

[0x1] Security Sessions at TechEd in Australia and New Zealand

[0x2] ATL, MS09-035 and the SDL

[0x3] Integrating the SDL process into Visual Studio

[0x4] A Conversation About Threat Modeling

[0x5] Ken Johnson (Skywing) joins Microsoft

[0x6] Free Download: Writing Secure Code for Windows Vista

[0x7] Secure software development practices 'not rocket science'

[0x8] A Proactive Approach to Building a Successful Security Development Lifecycle Program

[0x9] Improvements in Office Security

[0xA] Volume 5 of the Microsoft Security Intelligence Report is out

lkml.org :

lkml.org - the realtime linux kernel mailinglist archive

[0x1] Re: Incorrect uses of get_driver()/put_driver()

[0x2] Re: Incorrect uses of get_driver()/put_driver()

[0x3] Re: Incorrect uses of get_driver()/put_driver()

[0x4] Re: loading firmware while usermodehelper disabled.

[0x5] Re: loading firmware while usermodehelper disabled.

[0x6] Re: loading firmware while usermodehelper disabled.

[0x7] Huge amount of randomness with cuse and "urandompar"

[0x8] Re: [PATCH] drivers/ssb/driver_chipcommon_pmu.c: uninitilized warning

[0x9] Re: [PATCH][WAS:bcmai,axi] bcma: add Broadcom specific AMBA bus driver

[0xA] Re: [PATCH][WAS:bcmai,axi] bcma: add Broadcom specific AMBA bus driver

VX Heavens

What's new on the site

[0x1] 2012-01-18

[0x2] 2012-01-18

[0x3] 2012-01-18

[0x4] 2012-01-13

[0x5] 2012-01-12

[0x6] 2012-01-12

[0x7] 2012-01-12

[0x8] 2012-01-12

[0x9] 2012-01-11

[0xA] 2012-01-10

SriniCenthala

Welcome ! You come to the right place for datawarehouse , Business Intelligence BI , Extraction Transformation and Loading ETL Process , Decision Support System (DSS) and OLTP System Design , Data Modeler , Data Architect who has extensive experience in building Very Large Systems. Project Management process PMI Process and PMP Certification. Provide help to any one who wants to know about PMO Office setup & also handling any IT Projects.

[0x1] Wish You Happy New Year 2011 !

[0x2] Study in India: www.eduhelp.in

[0x3] Stay Agile & Succeed - Pairworks - Agile Project Management Tool On-Demand

[0x4] PureApp.com - Monitor & Control Continues Integration On-Demand

[0x5] "There are times brick hits your head!"..."Do not lose your faith on what you love to do!"

[0x6] Agile Project Management Tool - www.PairWorks.com

[0x7] Planning for "eServicePlace LinkedIn Application"

[0x8] New Launch of Datamartist

[0x9] eServicePlace.com How it works

[0xA] New Services Market Place , so What for you?

DEFCON Announcements!

DEFCON is the world's largest annual hacker convention, held every year in Las Vegas, Nevada. The first DEFCON took place in June 1993. DEF CON is renowned for the "arcane arts" of drinking, socializing, debugging, and crowd control. DEFCON is what you make of it, so get involved and help the community grow. This Feed will keep you up to date with some announcements surrounding pre and post con events, references to DEFCON in the news, and other errata. For the most up to date information visit or subscribe to the rss feeds on the forums (http://forum.defcon.org/) See http://www.defcon.org/ for more details, discussion forums, past speeches, and planning for the next year.

[0x1] New Speaker's Corner!

[0x2] Merry Christmas from DEF CON! Here's a Special Gift!

[0x3] Welcome New DEF CON Groups!

[0x4] Christmas Deal on DEF CON 19 DVD Sets From TSOK!

[0x5] Hacker Jeopardy, Hacker Pyramid and Closing Ceremonies Video!

[0x6] DEF CON 19 Video is Live!

[0x7] Welcome New DEF CON Groups!

[0x8] Download the DEF CON 19 DVD!

[0x9] Press Page updated for DEF CON 19!

[0xA] Contest Results Page is Up!

Moreover Technologies - Computer security news

Computer security news - more than 340 categories of real-time RSS news feeds

[0x1] Message: This news feed will stop on Jan 23 2012. Thank you for your custom.

[0x2] SEC Goes After Online Trading Firms That Unwittingly Helped Latvian Hacker

[0x3] Judges hope to speed up long-running Gary McKinnon hacking case

[0x4] How Allan Scherr Hacked Around the First Computer Password

[0x5] Judges attempt to speed up Scot?s hacking case Gary McKinnon

[0x6] Hackers trial delay is blasted by judges

[0x7] Hacker group Anonymous targets Mexican websites

[0x8] Kenyan Officials Say Government Sites Hit By Indonesian Hacker

[0x9] Odin U Disk Encrypt Creator 7.6.3

[0xA] Paper describes how to network legacy security systems

2600: The Hacker Quarterly

Off The Hook and Off The Wall

[0x1] Off The Hook show for January 25, 2012

[0x2] Off The Wall show for January 24, 2012

[0x3] HOPE NUMBER NINE SPEAKER SUBMISSIONS NOW OPEN

[0x4] 2600 WEBSITES TO GO BLACK ON WEDNESDAY

[0x5] HOPE NUMBER NINE PREREGISTRATION ONLINE

[0x6] WINTER ISSUE OF 2600 RELEASED

[0x7] HOTEL PENNSYLVANIA SAVED?

[0x8] 20TH CENTURY DISCOUNT ABOUT TO END

[0x9] CLUB-MATE IS BACK!

[0xA] BEYOND HOPE VIDEO ARCHIVE GOES ONLINE THIS WEEKEND

Hackers For Charity

Hackers For Charity

[0x1] Handmade Ugandan iPhone cases!

[0x2] Shmoocon schwag

[0x3] Shirt Leak #2

[0x4] The Jan, 2012 “Beg List”

[0x5] Shmoocon 2012

[0x6] Stop Sopa.

[0x7] After a bit of a break..

[0x8] Nov 25, 2011

[0x9] Nov 11 ..

[0xA] Nov 5 2011

CSOONLINE.com - Identity & Access

[0x1] How the Red Cross found its ID management groove

[0x2] Passwords aren't dead, though maybe yours should be

[0x3] More SCADA security flaws surface

[0x4] Watching the watchers

[0x5] With great privilege comes great responsibility

[0x6] Carrier IQ: A privacy tempest in your pants pocket

[0x7] Medical data breaches soar, according to study

[0x8] 68 great ideas for running a security department

[0x9] Dos and don'ts for next-gen firewalls

[0xA] Many employees would sell corporate information, finds study.

National Security

National Security

[0x1] Pentagon To Rethink Its Strategy, Cut Troops

[0x2] Panetta Announces Impact Of Defense Cuts

[0x3] Obama's Military Tactics: Risky Missions, Elite Units

[0x4] Navy SEALs Rescue Kidnapping Victims In Somalia

[0x5] Ex-CIA Officer Charged With Leaking Information

[0x6] U.S. Prepares To Redefine Mission In Afghanistan

[0x7] In Iraqi Killings Case, Marine Takes Plea Deal

[0x8] CIA Officer Charged With Leaking Information

[0x9] CIA Tracks Public Information For The Private Eye

[0xA] France Threatens To Remove Troops In Afghanistan

Development & Integration White Papers

C Languages, EAI, Java, Visual Basic, and Web Design White Papers

[0x1] Insiders' Guide to Evaluating Remote Control Software

[0x2] Improving Application Development with Digital Libraries

[0x3] Introduction to The Most Popular Commercial Open Source Backup Software - Amanda Enterprise

[0x4] How Can I Back Up MySQL Database Without Killing Application Performance? NetApp and Zmanda Have the Answer.

[0x5] Achieving the Impossible- Unlimited Application Scalability

[0x6] Data Centre Transitions: UNIX to Linux

[0x7] Data Grids and Service  Oriented Architecture

[0x8] An Innovative Approach to Managing Software Requirements

[0x9] Using Virtualization to Maximize Your IT Environment

[0xA] Why Every Data Center Needs Automation

Twitter / steaIth

Twitter updates from Sebastian Krahmer / steaIth.

[0x1] steaIth: @trenc @dysternis so siehts nämlich aus

[0x2] steaIth: Unsere Zwickauer Terrorzelle hiess damals Trabant 601 de-luxe.

[0x3] steaIth: @_xhr_ Und im Seminar, da gehts? :p

[0x4] steaIth: @kingcope mempodipper.c

[0x5] steaIth: @cocaman Da will mich wohl einer missverstehen :p Man wird noch die Arbeit anderer exploit coder gut finden dürfen :)

[0x6] steaIth: @cocaman nono, there is only one exploit this week and its not by me :)

[0x7] steaIth: what a great and cool exploit

[0x8] steaIth: @i0n1c Nich so viel gegen die Leute mit Presse-Rabatt hetzen, sonst musst du nachher noch von deinem Amt als Stefan Esser zurücktreten.

[0x9] steaIth: @infamous41md makes sense

[0xA] steaIth: RT @insecuremobile: NSA releases security-enhanced Android, 'SEAndroid', based on SELinux project: http://t.co/OT3oNMRN /via @goodeintel

Optimal Security

the Lumension Blog

[0x1] Exploring 2012 Data Privacy Threats: Part 2 of 3

[0x2] Your Data Privacy Day: 1 of 3

[0x3] Cyber Security and Hollywood: More In Common Than You May Think

[0x4] January 2012 Patch Tuesday Security Briefing

[0x5] Microsoft Slays The Beast

[0x6] QR Codes – Leading Lambs To the Slaughter

[0x7] Resist Enterprise Mobility? Another Knee Jerk Reaction

[0x8] Some Holiday Cheer from Microsoft

[0x9] December 2011 Patch Tuesday Security Briefing

[0xA] Two Bets on 2012

Podcasts

Listen to the latest Podcasts from Veracode

[0x1] Detecting "Certified Pre-owned" Software and Devices

[0x2] Application Outsourcing Podcast

[0x3] PCI Primer - Introduction to PCI Compliance

[0x4] Veracode Talks Security with InfoWorld

[0x5] How Vulnerabilities Get Into All Software

[0x6] Software Security Testing: Strengthening Your Defense Strategy

[0x7] Software Security Testing: Demanding Software Security

[0x8] Software Security Testing: Future of Software Flaws

[0x9] Veracode Shines Spotlight on Application Backdoors Threat

[0xA] Security Media Group: Interview with Veracode Founders

HSC Security Portal

Hackers Center Security Portal is one of the most complete, updated and visited Securty portals on the net. We offer Security Blogs, Exploits, Texts, Tools

[0x1] Scrubyt 0.4

[0x2] Sahi V3

[0x3] UrlParams 2.2.0

[0x4] TemperIE

[0x5] Nikto 2

[0x6] hcraft 1.0.0

[0x7] MSNPawn 1.1

[0x8] httprint

[0x9] DIRB

[0xA] WebInject 1.4

Skypher

The blog for absolutely nothing!

[0x1] Transformed polygons fractal rendering engine

[0x2] JavaScript 1K poptart cat

[0x3] JavaScript Mandelbrot fractal rendering engine

[0x4] Window Zoom Chrome Extension

[0x5] w32 speaking shellcode – Pwn in style

[0x6] Merry Christmas and a Happy New Year!

[0x7] JsSfx3.2 – JavaScript compression tool updated.

[0x8] JavaScript Perlin flames source

[0x9] JavaScript Perlin flames in 1k

[0xA] Bypassing Export address table Address Filter (EAF)

Techrights

Free Software Sentry – watching and reporting maneuvers of those threatened by software freedom

[0x1] Links 27/1/2012: GlusterFS Becomes Truly Open Source, Tablets Become Linuxed

[0x2] Microsoft Looks for New Ways to Tax All GNU/Linux Servers, Red Hat Included

[0x3] Intel, a Promoter of Software Patents, Buys Software Patents

[0x4] Android Gains Upper Hand in Battle to Defend Android, Microsoft Lobbyists Still Spin the Subject

[0x5] Links 27/1/2012: GNOME 3.3.4 Development Release, GhostBSD 2.5 With Graphical Installer

[0x6] Links 26/1/2012: Btrfs in Oracle Linux, Linux Mint 13 Chatter, ODF Toolkit

[0x7] IRC Proceedings: January 26th, 2012

[0x8] Links 26/1/2012: Toorox 01.2012, Red Hat’s MRG Linux

[0x9] IRC Proceedings: January 25th, 2012

[0xA] Links 25/1/2012: KDE 4.8, Pandora is Back, Open webOS 1.0

Free Network / Communications Magazines and Downloads from bestsecuritytips.tradepub.com

Free publications about networking and communication technologies and management.

[0x1] Microwave Journal

[0x2] Investigating UC Vendors

[0x3] Best Practices in Business Continuity and Disaster Recovery

[0x4] Chalk Talk for Disaster Recovery

[0x5] How to Improve Disaster Recovery for the Enterprise: Advanced Replications Powered by WAN Optimization

[0x6] Creating and Managing a Blog Network with WordPress

[0x7] Accelerating Cloud Performance with WAN Optimization

[0x8] Accelerating Data Migration with WAN Optimization

[0x9] The Changing Requirements of WAN Optimization

[0xA] Assessing ROI for Mobile Acceleration Clients

Wired: Politics

The intersection of technology and government.

[0x1] Pentagon Confused by Its Own 'Subs vs. Terrorists' Plan

[0x2] For Newt, 'World War III' Is Just the Beginning

[0x3] Humans Lose, Robots Win in New Defense Budget

[0x4] Vigilante Torturer Dies in Mexico

[0x5] Human Nature and the Neurobiology of Conflict

[0x6] East Africa Is the New Epicenter of America's Shadow War

[0x7] Invisibility's Next Frontier: Scientists Cloak 3-D Objects

[0x8] Legality of Mobile Phone Tracking Still Unclear Despite Supreme Court GPS Decision

[0x9] Black Hawk Up: Spec Ops Rescue Hostages in Somalia

[0xA] Newt Threatens China and Russia With Cyberwar

OSVDB Blog :

Everything Is Vulnerable

[0x1] Open Security Foundation Announces New Advisory Board

[0x2] Open Security Foundation Launches New Cloud Security Project

[0x3] March Update: Challenge: OSVDB Winter 2010 Fundraising Goal = done

[0x4] iDefense VCP as seen through OSVDB

[0x5] February Update: OSVDB Winter 2010 Fundraising Goal

[0x6] Time to.. Track More Data

[0x7] Open Security Foundation - Advisory Board - Call for Nominations

[0x8] Open Security Foundation - State of the Union 2010

[0x9] January Update: OSVDB Winter 2010 Fundraising Goal

[0xA] Microsoft, Aurora and something about forest and trees?

Network-7 : Cyberwarfare - Homeland Security - Financial & Privacy Intrusions

[0x1] Twitter Mailbag: Talking UFC on FOX 2, Hackers, Testosterone, and More

[0x2] UFC president hacked after scrapping with Anonymous

[0x3] Call for cyberwar ‘peacekeepers’

[0x4] SEC Files Charges in Hacking Case

[0x5] Dana White to UFC.com hackers: Try it again

[0x6] Facing up to threat of a ‘cyberwar’

[0x7] What EU Data Privacy Proposal Means For Business

[0x8] Smartphone Privacy Snafu: U.K. Carrier Broadcasts Numbers

[0x9] FBI Seeks Data-Mining App for Social Media

[0xA] A vision for secure mobility management in the enterprise

Rational Survivability

Hoff's Ramblings about Information Survivability, Information Centricity, Risk Management and Disruptive Innovation. Oh, I have a fondness for virtualization and cloud computing security, too...

[0x1] With Cloud, The PaaSibilities Are Endless…

[0x2] QuickQuip: Vint Cerf “Internet Access Is Not a Human Right” < Agreed…

[0x3] QuickQuip: Don’t run your own data center if you’re a public IaaS < Sorta…

[0x4] QuickQuip: “Networking Doesn’t Need a VMWare” < tl;dr

[0x5] When A FAIL Is A WIN – How NIST Got Dissed As The Point Is Missed

[0x6] Stuff I’ve Really Wanted To Blog About But Haven’t Had the Time…

[0x7] Enter the Data Huggers…

[0x8] 802.bah – Beware the SiriSheep Attack!

[0x9] Cloud: The Turducken Of Computing? [Oh, and Happy Thanksgiving]

[0xA] Oh, c’mon…

Reuters: Top News

Reuters.com is your source for breaking news, business, financial and investing news, including personal finance and stocks. Reuters is the leading global provider of news, financial information and technology solutions to the world's media, financial institutions, businesses and individuals.

[0x1] Fading Gingrich attacks Romney in ad

[0x2] Fitch cuts Italy, Spain, other euro zone ratings

[0x3] Growth quickens, but speed bumps ahead

[0x4] Syria violence kills over 40

[0x5] Subpoenas issued to financial firms in expanded probe

[0x6] Greece, creditors laboriously piece together debt deal

[0x7] In Facebook IPO, bankers seek prestige over fees

[0x8] Apple not turning "blind eye" to supply chain problems: CEO

[0x9] Obama seeks to rally Democrats to election-year fight

[0xA] Ford hit by commodity costs, international woes

ARN Security

ARN Security

[0x1] Security roundup: The triumph of hactivists, the sorrow of Symantec

[0x2] Hawaii legislators bid aloha to controversial data retention bill

[0x3] Researchers unearth more Chinese links to defense contractor attacks

[0x4] CloudPassage launches new security product for public clouds

[0x5] Hacking stunt: Stealing smartphone crypto keys using plain old radio

[0x6] Video conferencing mistakes make espionage easy, say researchers

[0x7] 6 security companies to watch

[0x8] European Parliament says its website taken offline by attackers

[0x9] A vision for secure mobility management in the enterprise

[0xA] Symantec recommends disabling pcAnywhere and waiting for security patches

SOURCE Conference Blog

Boston - Seattle - Barcelona

[0x1] The SOURCE Barcelona Apartment Experience

[0x2] links for 2011-08-08

[0x3] When In Rome (Or When At Caesars…)

[0x4] Call For Papers on Software Static Analysis

[0x5] THE Security Problem is Scale

[0x6] “We Don’t Sell It? Then It’s Not Important”

[0x7] Mobile Security – Users Just Don’t Care

[0x8] SOURCE Seattle, ho!

[0x9] Possible PlayStation Network Attack Vectors

[0xA] Buffer Overflows in SCADA ActiveX Controls Put Critical Infrastructure at Risk

LinuxSecurity.com: Ubuntu Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Password guessing with Medusa 2.0

[0x3] Ubuntu: 1349-1: X.Org vulnerability

[0x4] Ubuntu: 1348-1: ICU vulnerability

[0x5] Ubuntu: 1342-1: Linux kernel (Oneiric backport) vulnerability

[0x6] Ubuntu: 1347-1: Evince vulnerability

[0x7] Ubuntu: 1263-2: OpenJDK 6 regression

[0x8] Ubuntu: 1346-1: curl vulnerability

[0x9] Ubuntu: 1345-1: Linux kernel vulnerabilities

[0xA] Ubuntu: 1344-1: linux vulnerabilities

Linux Journal - The Original Magazine of the Linux Community

Since 1994: The Original Monthly Magazine of the Linux Community

[0x1] Using Plop Boot Manager for USB Boot

[0x2] Moose

[0x3] Basic Chemistry on the GNOME Desktop

[0x4] Black Wednesday

[0x5] Can we help AT&T solve its mobile data problem?

[0x6] ZevenOS - Does it recapture the flavor of BeOS?

[0x7] Enter to Win a Free "Oops... Wrong window" TShirt!

[0x8] gStrings in Your Pocket

[0x9] Short Notices: News In Linux Audio

[0xA] Linux Mint 12 Offers a Traditional Gnome Feel

LinuxSecurity.com: Debian Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Password guessing with Medusa 2.0

[0x3] Debian: 2394-1: libxml2: Multiple vulnerabilities

[0x4] Debian: 2393-1: bip: buffer overflow

[0x5] Debian: 2392-1: openssl: out-of-bounds read

[0x6] Debian: 2392-1: rails: Multiple vulnerabilities

[0x7] Debian: 2391-1: phpmyadmin: Multiple vulnerabilities

[0x8] Debian: 2389-1: linux-2.6: privilege escalation/denial

[0x9] Debian: 2390-1: openssl: Multiple vulnerabilities

[0xA] Debian: 2388-1: t1lib: Multiple vulnerabilities

Linux, Network and Security Research

[0x1] Wireshark updates close security holes

[0x2] Security threats Toolkit

[0x3] Unusual disk latency: The other day I met a friend and between...

[0x4] Untangle 7.1

[0x5] Lynis 1.2.9

[0x6] Wireshark 1.2.5

[0x7] Multiple Cisco WebEx WRF Player Vulnerabilities

[0x8] US drones hacked by Iraqi insurgents

[0x9] Video Interview with MacBook Bullet Girl

[0xA] Android Forensics

[0x1] Hakin9 Magazine EXTRA Issue: Cryptography

[0x2] Hakin9 Magazine New Mobile Security Issue: You’re are Infected

[0x3] Security Magazine January Issue Released

[0x4] Hakin9 First January 2012 Issue: SQL Injection

[0x5] Pentest Magazine New January 2012 Issue

[0x6] You Sh0t the Sheriff Security Conference 2012, Brazil

[0x7] CHMag ClubHACK Magazine’s Issue 23 (December) released

[0x8] HITB Security Conference 2012 Amsterdam

[0x9] CanSecWest Vancouver 2012 Conference

[0xA] SANS AppSec 2012 Conference

Techworld Blogs

Aggregate feed of all active Techworld Blogs

[0x1] Machine-to-machine 3G: a new thing?

[0x2] Asterisk in a carrier setup?

[0x3] Website Monitoring in 10 Easy Steps with Opsview

[0x4] Are Mac-based Windows VMs be as good as the real thing?

[0x5] Take two Aspirin for that headache

[0x6] A privacy-centered economy

[0x7] Microsoft offers access to anti-botnet system

[0x8] Comet has some explaining to do but so does Microsoft

[0x9] Up and running

[0xA] Hacker finds Lindsay Lohan Playboy pictures on P2P

CSOONLINE.com - IT Audit

[0x1] Nation's nuclear power watchdog comes up short on FISMA compliance

[0x2] Small company, big security challenges

[0x3] Cisco CSO on self-defending networks: The marketing's dead, the goal's alive

[0x4] Forget new threats: It's the old-school attacks that keep getting you

[0x5] Healthcare security needs a booster shot

[0x6] Mac OS X Lion: Losing its security pride

[0x7] SIEM: Dead or alive?

[0x8] Senator to businesses: Protect data or pay

[0x9] Data breach risks: Not just the insider threat

[0xA] Creating a cloud SLA from diagnostic data

Security Leadership

[0x1] ShmooCon attendees: Don't miss the Fire Talks

[0x2] Cyber Shafarat 2012

[0x3] ShmooCon 2012 is this weekend. Boohoo

[0x4] The Proliferation of Cyber Janitors (and the mentality behind this movement)

[0x5] Unhappy Hollywood: Statement from SOPA-PIPA advocates

[0x6] #FFSec: Security pros to follow on Twitter, Jan. 27

[0x7] Harry Reid postpones PIPA vote, seeks compromise

[0x8] SECURITY WISDOM WATCH: SOPA-PIPA edition

[0x9] Privacy, Piracy and Parental Controls: Where In the World Are We Going in 2012 And Beyond?

[0xA] Personal attacks from Security Errata and Attrition.org? No.

CSOONLINE.com - Identity Management

[0x1] How the Red Cross found its ID management groove

[0x2] Watching the watchers

[0x3] 10 identity management metrics that matter

[0x4] Digitized medical records are easy prey, but all is not lost

[0x5] Automating and securing file transfers: key issues

[0x6] Leverage government innovation to reduce the risks of Web 2.0 identity management

[0x7] Financial services firms get enhanced authentication guidance

[0x8] Password management systems: How to compare and use them

[0x9] Experts: Government trusted Internet identities a long way off

[0xA] Privileged Identity Management: 7 tips to make it work for you

Hacking Evolution

Another Egyptian hacker

[0x1] Kill all Chrome/Chromium renderer and plugin processes on Linux

[0x2] Sagittarius: PHP Code Obfuscater

[0x3] Your Time Is Almost Up

[0x4] SHRED: Usability Vs. Philosophy

[0x5] Resolved: Facebook Unsubscribe All

[0x6] SCAF And The Revolution

[0x7] Egypt’s Constitution Referendum

[0x8] libgcrypt C++ Wrapper

[0x9] C++ trick or treat

[0xA] CSFI Stuxnet Report v1

Rational Survivability

PLEASE NOTE: I HAVE PERMANENTLY MOVED MY BLOG TO http://www.rationalsurvivability.com/blog <-- All these posts/comments have been moved there and all new posts since May 2009 appear there.

[0x1] IMPORTANT REMINDER: My Blog and RSS Feed Have Moved To http://www.rationalsurvivability.com/blog

[0x2] IMPORTANT REMINDER: My Blog and RSS Feed Have Moved

[0x3] IMPORTANT: Moving My Blog & RSS Feed

[0x4] BeanSec! Wednesday, March 18, 2009 - 6PM to ?

[0x5] How To Be PCI Compliant in the Cloud...

[0x6] On the Overcast Podcast with Geva Perry and James Urquhart

[0x7] More On Clouds & Botnets: MeatClouds, CloudFlux, LeapFrog, EDoS and More!

[0x8] Source Boston - Video Interviews of Security Rockstars...

[0x9] Oh Noes: We Can't Monitor/Protect Against Intra-VM Traffic!

[0xA] Sun vs. Cisco? I'm Getting My Popcorn...

GFI Labs blog

A blog about activities, products and ideas at GFI (formerly Sunbelt Software), one of the leading developers of security software to protect against spyware, spam and other threats.

[0x1] Criminals Serve Bogus Browser Updates

[0x2] Fake Tumblr Staff Blog Leads to Starbucks Gift Cards

[0x3] Megaup…D’oh!

[0x4] The Microsoft-Kelihos Tango Continues

[0x5] Halo 4 Beta Invites? Nope.

[0x6] BBB Scam Returns

[0x7] Incoming: GFI SandBox 4.0

[0x8] Phishers Use US-CERT Email Address as Bait

[0x9] StalkTrak App Gets Naked, Famous.

[0xA] GFI’s Take on What Online Crime Will be Like in 2012

Will Hack For SUSHI

Hacking and Defending Wireless

[0x1] Things I Wish Amazon.com Didn’t Tell Me

[0x2] The Changing Wireless Attack Landscape

[0x3] Pen Test Perfect Storm 6: We Love Cisco!

[0x4] ISACA Review: Hacking Exposed Wireless 2nd Edition

[0x5] Packet Capture Payload Assessment

[0x6] GIAC GAWN Ethical Hacking Wireless Testing Aid

[0x7] Reflections on “hole196″

[0x8] Evading IPS/IDS with TCP Checksum Forgery

[0x9] FaceTime Protocol Analysis

[0xA] WiMAX Network Scanning Work-in-Progress

Network World on Spam

The latest spam and anti-spam news and analysis from NetworkWorld.com

[0x1] Feds draw a bead on Russian behind Mega-D botnet

[0x2] Ransomware Attack Resurfaces to Hold Files Hostage

[0x3] Adobe Reader X Makes PDF Files Safer

[0x4] McAfee Reports Malware at All-Time High

[0x5] PayPal Users Beware of Holiday Phishing Scam

[0x6] Phishing Attack Targets Merchant Accounts

[0x7] Secure a PC, Website From Firesheep Session Hijacking

[0x8] Is Microsoft Crossing the Line With Security Essentials

[0x9] In-Depth Look at Boonana Malware

[0xA] Phishing Scam Targets United States Military Members

Why Joseph

InfoSec Thoughts Ideas and Practice

[0x1] BASH WHILE Loop: article 201107

[0x2] Breakdown of C Format Parameters: article 201106

[0x3] Notes on Memory Segmentation: article 201105

[0x4] Incident Repsonse; When To Call the Posse: article 201104

[0x5] Honeynet Forensics Challenge 7 winner: article 201103

[0x6] PCRE CHEAT SHEET: article 201102

[0x7] Malicious Domain Check: article 201101

[0x8] iPHONE Apps for Information Security: article 201003

[0x9] Penetration Testing Debate: Security Controls On or Off: article 201002

[0xA] First virus removal of 2010: article 201001

CSOONLINE.com - Fraud Prevention

[0x1] Facebook Scammers Redirect Victims Through Amazon's Cloud

[0x2] Carrier IQ Detection Tool Converted to Premium SMS Trojan

[0x3] Report: Phishing Attack Targets Apple Customers

[0x4] New MobileMe Phishing Scam Attempts to Relieve Users of Login Data

[0x5] UK Police Arrest Six in Student Loan Phishing Scam

[0x6] 4 steps retailers can take to combat flash robs

[0x7] Most fraud is an inside job, says survey

[0x8] Social engineering: My career as a professional bank robber

[0x9] Theft, shrink rates rise globally

[0xA] Romania's Anti-Cybercrime Efforts Lack a Social Component