<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>DojoSec</title>
	<atom:link href="http://www.dojosec.com/feed" rel="self" type="application/rss+xml" />
	<link>http://www.dojosec.com</link>
	<description>Security. Thought. Leadership.</description>
	<lastBuildDate>Fri, 05 Mar 2010 04:46:51 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Interview with Dan Kaminsky at ShmooCon 2010</title>
		<link>http://www.dojosec.com/interview-with-dan-kaminsky-at-shmoocon-2010</link>
		<comments>http://www.dojosec.com/interview-with-dan-kaminsky-at-shmoocon-2010#comments</comments>
		<pubDate>Fri, 05 Mar 2010 04:46:51 +0000</pubDate>
		<dc:creator>Marcus J. Carey</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.dojosec.com/?p=151</guid>
		<description><![CDATA[Dan Kaminsky provided some insight on the hacker community and culture at ShmooCon 2010. I always enjoy talking to different people on their views. I&#8217;m playing devil&#8217;s advocate a bit here probe for good answers. Dan Kaminsky &#8211; Dissecting the Hack Interview from Marcus J. Carey on Vimeo.]]></description>
			<content:encoded><![CDATA[<p></p><p>Dan Kaminsky provided some insight on the hacker community and culture at ShmooCon 2010. I always enjoy talking to different people on their views. I&#8217;m playing devil&#8217;s advocate a bit here probe for good answers.</p>
<p><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="400" height="225" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="src" value="http://vimeo.com/moogaloop.swf?clip_id=9927824&amp;server=vimeo.com&amp;show_title=1&amp;show_byline=1&amp;show_portrait=0&amp;color=ff9933&amp;fullscreen=1" /><embed type="application/x-shockwave-flash" width="400" height="225" src="http://vimeo.com/moogaloop.swf?clip_id=9927824&amp;server=vimeo.com&amp;show_title=1&amp;show_byline=1&amp;show_portrait=0&amp;color=ff9933&amp;fullscreen=1" allowscriptaccess="always" allowfullscreen="true"></embed></object></p>
<p><a href="http://vimeo.com/9927824">Dan Kaminsky &#8211; Dissecting the Hack Interview</a> from <a href="http://vimeo.com/marcuscarey">Marcus J. Carey</a> on <a href="http://vimeo.com">Vimeo</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.dojosec.com/interview-with-dan-kaminsky-at-shmoocon-2010/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Information Security and Starfish</title>
		<link>http://www.dojosec.com/information-security-and-starfish</link>
		<comments>http://www.dojosec.com/information-security-and-starfish#comments</comments>
		<pubDate>Wed, 17 Feb 2010 03:29:17 +0000</pubDate>
		<dc:creator>Marcus J. Carey</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.dojosec.com/?p=128</guid>
		<description><![CDATA[One of my favorite stories when it comes to helping people out is the story of a little girl on the beach. The story tells the tale of a young girl throwing starfish back into the ocean to save them from dying. An old man approaches a young girl, then tells her that there are [...]]]></description>
			<content:encoded><![CDATA[<p></p><div id="_mcePaste">One of my favorite stories when it comes to helping people out is the story of a little girl on the beach. The story tells the tale of a young girl throwing starfish back into the ocean to save them from dying. An old man approaches a young girl, then tells her that there are hundreds of starfish on the beach, it would be impossible to save all of them.</div>
<p></p>
<div id="_mcePaste">The old man told her the work she was doing didn&#8217;t matter.The little girl picked up another starfish and looked at the old man. She then throws the starfish in the ocean and tells the old man, &#8220;It mattered to that one.&#8221;</div>
<p></p>
<div>My goal is to help as many as possible. If what I say matters to one person that needs guidance in information security, I consider my efforts a success. Our industry is filled with brilliant people. Sometimes if things aren&#8217;t considered groundbreaking, it can be easily dismissed as nothing new. We tend to focus on the things that we know, instead of picking up any new nuggets that may be available for the taking.</div>
<p></p>
<div>Everything little bit matters in this game.</div>
]]></content:encoded>
			<wfw:commentRss>http://www.dojosec.com/information-security-and-starfish/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Jeremy Brown &#8211; From Static Analysis to 0day Exploit</title>
		<link>http://www.dojosec.com/dojosec-sessions-ep-1-jeremy-brown-from-static-analysis-to-0day-exploit</link>
		<comments>http://www.dojosec.com/dojosec-sessions-ep-1-jeremy-brown-from-static-analysis-to-0day-exploit#comments</comments>
		<pubDate>Mon, 07 Dec 2009 17:34:00 +0000</pubDate>
		<dc:creator>Marcus J. Carey</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.dojosec.com/?p=124</guid>
		<description><![CDATA[At DojoSec the mission is to spread security knowledge in all forms of delivery. Our newest effort is called DojoSec Sessions which will feature screen captures and presentations from top-notch security professionals. DojoSec presents Jeremy Brown with an excellent presentation on Finding Vulnerabilities with Static Analysis. Thanks Jeremy for your contribution!]]></description>
			<content:encoded><![CDATA[<p></p><p><object id="viddler" classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="437" height="370" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="Movie" value="http://www.viddler.com/player/2af2aaf3/" /><param name="Src" value="http://www.viddler.com/player/2af2aaf3/" /><param name="WMode" value="Window" /><param name="Play" value="-1" /><param name="Loop" value="-1" /><param name="Quality" value="High" /><param name="Menu" value="-1" /><param name="AllowScriptAccess" value="always" /><param name="Scale" value="ShowAll" /><param name="DeviceFont" value="0" /><param name="EmbedMovie" value="0" /><param name="SeamlessTabbing" value="1" /><param name="Profile" value="0" /><param name="ProfilePort" value="0" /><param name="AllowNetworking" value="all" /><param name="AllowFullScreen" value="true" /><param name="name" value="viddler" /><param name="flashvars" value="fake=1" /><param name="src" value="http://www.viddler.com/player/2af2aaf3/" /><param name="allowfullscreen" value="true" /><param name="wmode" value="Window" /><param name="quality" value="High" /><embed id="viddler" type="application/x-shockwave-flash" width="437" height="370" src="http://www.viddler.com/player/2af2aaf3/" flashvars="fake=1" name="viddler" allowfullscreen="true" allownetworking="all" profileport="0" profile="0" seamlesstabbing="1" embedmovie="0" devicefont="0" scale="ShowAll" allowscriptaccess="always" menu="-1" quality="High" loop="-1" play="-1" wmode="Window" movie="http://www.viddler.com/player/2af2aaf3/"></embed></object></p>
<p>At DojoSec the mission is to spread security knowledge in all forms of delivery. Our newest effort is called DojoSec Sessions which will feature screen captures and presentations from top-notch security professionals. DojoSec presents <a href="http://jbrownsec.blogspot.com/">Jeremy Brown</a> with an excellent presentation on Finding Vulnerabilities with Static Analysis. Thanks Jeremy for your contribution!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.dojosec.com/dojosec-sessions-ep-1-jeremy-brown-from-static-analysis-to-0day-exploit/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Mobile Communications Security Symposium</title>
		<link>http://www.dojosec.com/mobile-communications-security-symposium</link>
		<comments>http://www.dojosec.com/mobile-communications-security-symposium#comments</comments>
		<pubDate>Mon, 30 Nov 2009 14:16:00 +0000</pubDate>
		<dc:creator>Marcus J. Carey</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.dojosec.com/?p=123</guid>
		<description><![CDATA[REGISTER ASAP &#8211; The Capitol College Innovation and Leadership Institute will host the Mobile Communications Security Symposium on December 4, 2009 from 8 a.m. to 12 p.m., on campus, in the Avrum Gudelsky Memorial Auditorium. There is no cost to attend this event. To learn more about the program and the speakers, please visit http://www.capitol-college.edu/news-events/news-headlines/698. [...]]]></description>
			<content:encoded><![CDATA[<p></p><p><span class="Apple-style-span"   style="font-family:Times;font-size:medium;">
<div><span class="Apple-style-span"  style="color:#1f497d;"><span class="Apple-style-span" style="BORDER-COLLAPSE: collapse"><span class="Apple-style-span" style="COLOR: rgb(0,0,0)"><span style="font-family:verdana;"><span style="font-size:85%;"><span lang="EN" style="COLOR: rgb(31,73,125)"><span class="Apple-style-span">REGISTER ASAP &#8211; </span></span><span lang="EN" style="COLOR: rgb(0,51,102)"><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;">The Capitol College Innovation and Leadership Institute will host the </span></span><strong><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;">Mobile Communications Security Symposium</span></span></strong><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;"> on </span></span><strong><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;">December 4, 2009</span></span></strong><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;"> from </span></span><b><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;">8 a.m. to 12 p.m., </span></span></b><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;">on campus, in the Avrum Gudelsky Memorial Auditorium. </span></span><b><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;">There is no cost to attend this event</span></span></b><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;">. To learn more about the program and the speakers, please visit</span></span></span><span lang="EN"  style="color:navy;"><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;"> </span></span><a class="" style="COLOR: rgb(42,93,176)" href="http://www.capitol-college.edu/news-events/news-headlines/698" target="_blank"><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;">http://www.capitol-college.</span></span><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;"><wbr>edu/news-events/news-</span></span><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;"><wbr>headlines/698</span></span></a></span><span lang="EN" style="COLOR: rgb(0,51,102)"><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;">. </span></span></span></span></span></span></span></span></div>
<div><span class="Apple-style-span"  style="color:#003366;"><span class="Apple-style-span" style="BORDER-COLLAPSE: collapse"><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;"><br /></span><span style="font-size:85%;"><span style="font-family:verdana;"></span></span></span></span></span></div>
<div><span class="Apple-style-span"  style="color:#1f497d;"><span class="Apple-style-span" style="BORDER-COLLAPSE: collapse"><span class="Apple-style-span" style="COLOR: rgb(0,0,0)"><span lang="EN" style="COLOR: rgb(0,51,102)"><span class="Apple-style-span"><span class="Apple-style-span"   style="font-family:verdana;font-size:85%;">To register for the symposium:</span></span></span></span></span></span></div>
<div><span class="Apple-style-span"  style="color:#003366;"><span class="Apple-style-span" style="BORDER-COLLAPSE: collapse"><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;"><br /></span><span style="font-size:85%;"><span style="font-family:verdana;"></span></span></span></span></span></div>
<div><span class="Apple-style-span"  style="color:#1f497d;"><span class="Apple-style-span" style="BORDER-COLLAPSE: collapse"><span class="Apple-style-span" style="COLOR: rgb(0,0,0)"><span lang="EN" style="COLOR: rgb(0,51,102)"><span style="font-family:verdana;"><span style="font-size:85%;"><span class="Apple-style-span">Send an email to </span><span style="COLOR: rgb(0,51,102)"><a class="" style="COLOR: rgb(42,93,176)" href="mailto:ili@capitol-college.edu" target="_blank"><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;">ili@capitol-college.edu</span></span></a><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;"> </span></span></span></span></span></span></span></span></span></div>
<div><span class="Apple-style-span"  style="color:#1f497d;"><span class="Apple-style-span" style="BORDER-COLLAPSE: collapse"><span class="Apple-style-span" style="COLOR: rgb(0,0,0)"><span lang="EN" style="COLOR: rgb(0,51,102)"><span style="COLOR: rgb(0,51,102)"><span class="Apple-style-span"><span class="Apple-style-span"   style="font-family:verdana;font-size:85%;">Subject: Register, Mobile Comm. Security Symposium</span></span></span></span></span></span></span></div>
<div><span class="Apple-style-span"><span class="Apple-style-span"  style="font-size:small;"><br /></span><span style="font-size:85%;"><span style="font-family:verdana;"></span></span></span></div>
<div><span class="Apple-style-span"><span class="Apple-style-span"   style="font-family:verdana;font-size:85%;">_MJC_</span></span></div>
<p></span></p>
]]></content:encoded>
			<wfw:commentRss>http://www.dojosec.com/mobile-communications-security-symposium/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Marcus&#8217; Mailbag: Policy, Enforcement, and Monitoring</title>
		<link>http://www.dojosec.com/marcus-mailbag-policy-enforcement-and-monitoring</link>
		<comments>http://www.dojosec.com/marcus-mailbag-policy-enforcement-and-monitoring#comments</comments>
		<pubDate>Thu, 26 Nov 2009 01:14:00 +0000</pubDate>
		<dc:creator>Marcus J. Carey</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.dojosec.com/?p=122</guid>
		<description><![CDATA[I received the following email on Commercial vs. Open Source, Policy, Enforcement, and Security Monitoring. I&#8217;m posting this email in order to share some of the views. It could be perceived as a bit of a rant, but I&#8217;m posting it below because it could spark some thought and conversation. Let me know what you [...]]]></description>
			<content:encoded><![CDATA[<p></p><p><span class="Apple-style-span"   style="  ;font-family:arial;font-size:13px;">
<div></div>
<div><span class="Apple-style-span" style="border-collapse: collapse; -webkit-border-horizontal-spacing: 2px; -webkit-border-vertical-spacing: 2px; "><span class="Apple-style-span"  style="font-size:small;">I received the following email on Commercial vs. Open Source, Policy, Enforcement, and Security Monitoring. I&#8217;m posting this email in order to share some of the views. It could be perceived as a bit of a rant, but I&#8217;m posting it below because it could spark some thought and conversation. Let me know what you think. If you have problem with the grammar, please rely on context clues. _MJC_ <img src='http://www.dojosec.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </span></span></div>
<div><span class="Apple-style-span" style="border-collapse: collapse; -webkit-border-horizontal-spacing: 2px; -webkit-border-vertical-spacing: 2px;  "><span class="Apple-style-span"  style="font-size:small;"><br /></span></span></div>
<div><span class="Apple-style-span" style="border-collapse: collapse;  -webkit-border-horizontal-spacing: 2px; -webkit-border-vertical-spacing: 2px;"><span class="Apple-style-span"  style="font-size:small;">=-=-=-=- BEGIN E-MAIL -=-=-=-=</span></span></div>
<div><span class="Apple-style-span" style="border-collapse: collapse; -webkit-border-horizontal-spacing: 2px; -webkit-border-vertical-spacing: 2px; "><span class="Apple-style-span"  style="font-size:small;"><i><br /></i></span></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i>In the Network security field they are vendors that sell products. They claim the products will catch the bad guys, disassemble malware and save the world. All we need to do is buy their products.</i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i><br /></i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i>Then they are those Open Source vendors that sell support of some open source tool like Clam AV or Snort all we need to do is use it right and we are safe and they sell themselves as consultants. This model for doing business is not new, In the Financial services industry you have those who claim to be financial planners and when you go and see them they do a budget workup with you and then sell you commission based products like life or medical insurance. Then you have those who claim to be fee based financial planners (much like the open source pimps) and sell you things like Term insurance or no load mutual funds you supposedly pay for their expertise. </i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i><br /></i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i>The problem with these approaches is they are PRODUCT based. The real solution is a mindset and action to get the desired results not some product Open Source or otherwise.</i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i><br /></i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i>Network Security is not brain surgery. You need policy, enforcement and monitoring. If those 3 are not done then things break down. </i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i><br /></i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i>Policy that is not enforced is useless, it&#8217;s just as bad as if there was no policy at all. In fact if you have a policy you are lured into a sense of false security. If there is no Policy users know they are left to fend for themselves. At </i></span><span class="Apple-style-span"  style="font-size:small;"><i>[ XYZ ]</i></span><span class="Apple-style-span"  style="font-size:small;"><i> we don&#8217;t have a problem in areas like Europe where privacy laws demand they users not be monitored or punished for breaking policy. It&#8217;s the areas where we have the strictest policies that we have problems. </i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i><br /></i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i>Enforcement &#8211; If policies are not enforced then it is useless. Same with dealing with problem areas of the network. If management turns a blind eye  towards tunneling and insists on using systems that are not locked down. Giving most users admin rights and walking on egg shells and not going after employees equally for violations you will never secure the network. </i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i><br /></i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i>Monitoring &#8211; I know a few companies we work with and problems arise and you find out that they have a special internet connection that is not being monitoring. They have this special RESEARCH network they can surf porn on. They tether their laptops with their Blackberries or use a SSL tunnel to do whatever they want on the network. Especially in the technical companies the very ones that should be examples and protecting their networks are doing these things. I have seen individuals have their IP addresses Whitelisted so they could watch movies all day claiming they are doing company business then we all wonder how malware got on the network.</i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i><br /></i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i>Products do not protect or defend the real network. They point out the obvious and until someone pokes their finger at the sore and lets the world know they need to change network security is a charade. Even DojoSec with it open source pimps is not making things better unless it goes after the above mentioned issues.</i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i><br /></i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><i>That&#8217;s my 2 cents&#8230;</i></span></div>
<div><span class="Apple-style-span"  style="font-size:small;"><br /></span></div>
<div><span class="Apple-style-span" style="border-collapse: collapse; -webkit-border-horizontal-spacing: 2px; -webkit-border-vertical-spacing: 2px; "><span class="Apple-style-span"  style="font-size:small;">=-=-=-=- END E-MAIL -=-=-=-=</span></span></div>
<div><span class="Apple-style-span"  style="font-size:130%;"><span class="Apple-style-span"  style="border-collapse: collapse;  -webkit-border-horizontal-spacing: 2px; -webkit-border-vertical-spacing: 2px;font-size:16px;"><br /></span></span></div>
<p></span></p>
]]></content:encoded>
			<wfw:commentRss>http://www.dojosec.com/marcus-mailbag-policy-enforcement-and-monitoring/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Virtualization is Great for Forensics</title>
		<link>http://www.dojosec.com/virtualization-is-great-for-forensics</link>
		<comments>http://www.dojosec.com/virtualization-is-great-for-forensics#comments</comments>
		<pubDate>Tue, 24 Nov 2009 15:03:00 +0000</pubDate>
		<dc:creator>Marcus J. Carey</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.dojosec.com/?p=121</guid>
		<description><![CDATA[The rumblings suggesting that &#8220;The Cloud&#8221; and Virtualization is an enormous hindrance to digital investigations are exaggerated. These claims sound like scare tactics to me, I think virtualization makes incident response to computer crime much more efficient. The goal of incident response is to preserve as much information as possible. Software such as Live View [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>The rumblings suggesting that &#8220;The Cloud&#8221; and Virtualization is an enormous hindrance to digital investigations are exaggerated. These claims sound like scare tactics to me, I think virtualization makes incident response to computer crime much more efficient. The goal of incident response is to preserve as much information as possible. Software such as <a href="http://liveview.sourceforge.net/">Live View</a> from CERT is great because it allows investigators to boot disk images.
<div></div>
<div>Virtualization is cutting out the middle man here, as an investigator I&#8217;d rather have a virtual machine instead of a disk image. Virtual machine copies provided by service providers provide a &#8220;self contained crime scene&#8221;, since the virtual machine is frozen in time including the memory. At <a href="http://www.dojocon.org">DojoCon</a> 2009, <a href="http://taosecurity.blogspot.com">Richard Bejtlich</a> shared a story were investigators responded to an incident working with a Cloud Provider and were greeted with a shrink wrapped crime scene. </div>
<div></div>
<div>Anyone who as ever used a product such as VMware may have copied and moved images, this is a good thing. It seems that when some are dedicated to screaming about problems, they may be ignoring a great solution staring them right in the face.</div>
<div></div>
<div>_MJC_</div>
<div></div>
<div></div>
]]></content:encoded>
			<wfw:commentRss>http://www.dojosec.com/virtualization-is-great-for-forensics/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Google Hacking Renders Redaction Futile</title>
		<link>http://www.dojosec.com/google-hacking-renders-redaction-futile</link>
		<comments>http://www.dojosec.com/google-hacking-renders-redaction-futile#comments</comments>
		<pubDate>Mon, 23 Nov 2009 16:11:00 +0000</pubDate>
		<dc:creator>Marcus J. Carey</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.dojosec.com/?p=120</guid>
		<description><![CDATA[Lately, I&#8217;ve been looking at tons of SQL injections and SWF login blog posts and screen captures. I notice most hackers attempt to redact the compromised URLs. However, in most cases there is enough information from the screen captures to find the sites. The attempt to redact the information is an attempt to protect the [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Lately, I&#8217;ve been looking at tons of SQL injections and SWF login blog posts and screen captures. I notice most hackers attempt to redact the compromised URLs. However, in most cases there is enough information from the screen captures to find the sites.
<div></div>
<div>The attempt to redact the information is an attempt to protect the innocent. The latest instance of this was a blog post on a <a href="http://unu123456.baywords.com/2009/11/23/symantec-exposed-passwordsserials-sql-injection-full-database-access/" style="text-decoration: none;">Symantec SQL Injection</a> that yielded tons of information including serials and passwords. The image below is a screen capture posted within the blog post.</div>
<div></div>
<div><img style="float:left; margin:0 10px 10px 0;cursor:pointer; cursor:hand;width: 400px; height: 126px;" src="http://1.bp.blogspot.com/_ZmiTHVAxVhU/Swq1u37VayI/AAAAAAAAADY/JH66O-mN4jY/s400/symantec_sqli.png" border="0" alt="" id="BLOGGER_PHOTO_ID_5407334119503129378" /></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div>Next, I visit Google and type: site:symantec.com intitle:Teacher Sima
<div></div>
<div><img style="float:left; margin:0 10px 10px 0;cursor:pointer; cursor:hand;width: 400px; height: 172px;" src="http://4.bp.blogspot.com/_ZmiTHVAxVhU/Swq4j8DgOxI/AAAAAAAAADg/aQJC3AXkubY/s400/google_teacher_sima.png" border="0" alt="" id="BLOGGER_PHOTO_ID_5407337230167456530" /></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div>This is just basic Google Hacking here, nothing advanced. This is something I&#8217;ve been instinctively doing when I see something like this. </div>
<div></div>
<div>So the question is &#8220;Why redact?&#8221;</div>
<div></div>
<div>_MJC_</div>
</div>
]]></content:encoded>
			<wfw:commentRss>http://www.dojosec.com/google-hacking-renders-redaction-futile/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Metasponse Talk at Techno Forensics</title>
		<link>http://www.dojosec.com/metasponse-talk-at-techno-forensics</link>
		<comments>http://www.dojosec.com/metasponse-talk-at-techno-forensics#comments</comments>
		<pubDate>Thu, 29 Oct 2009 12:14:00 +0000</pubDate>
		<dc:creator>Marcus J. Carey</dc:creator>
				<category><![CDATA[Metasponse]]></category>
		<category><![CDATA[Videos]]></category>

		<guid isPermaLink="false">http://www.dojosec.com/?p=119</guid>
		<description><![CDATA[My friend Joshua Marpet recorded video of me doing my Metasponse talk at the Techno Forensics Conference at NIST on his iPhone. He&#8217;ll be sending me the complete video so I can post it as one. Although I could take my own video equipment everywhere with me, it sometimes feels stage. This is as real [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>My friend <a href="http://www.datadevastation.com/">Joshua Marpet</a> recorded video of me doing my Metasponse talk at the Techno Forensics Conference at NIST on his iPhone. He&#8217;ll be sending me the complete video so I can post it as one. Although I could take my own video equipment everywhere with me, it sometimes feels stage. This is as real as it gets. Thanks Joshua!!</p>
<p><object width="400" height="227"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="movie" value="http://vimeo.com/moogaloop.swf?clip_id=7340534&amp;server=vimeo.com&amp;show_title=1&amp;show_byline=1&amp;show_portrait=0&amp;color=ff9933&amp;fullscreen=1" /><embed src="http://vimeo.com/moogaloop.swf?clip_id=7340534&amp;server=vimeo.com&amp;show_title=1&amp;show_byline=1&amp;show_portrait=0&amp;color=ff9933&amp;fullscreen=1" type="application/x-shockwave-flash" allowfullscreen="true" allowscriptaccess="always" width="400" height="227"></embed></object>
<p><a href="http://vimeo.com/7340534">Marcus J. Carey &#8211; Metasponse Talk @ Techno Forensics Conference</a> from <a href="http://vimeo.com/marcuscarey">Marcus J. Carey</a> on <a href="http://vimeo.com">Vimeo</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.dojosec.com/metasponse-talk-at-techno-forensics/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cloud Computing and Sunburn</title>
		<link>http://www.dojosec.com/cloud-computing-and-sunburn</link>
		<comments>http://www.dojosec.com/cloud-computing-and-sunburn#comments</comments>
		<pubDate>Wed, 14 Oct 2009 15:14:00 +0000</pubDate>
		<dc:creator>Marcus J. Carey</dc:creator>
				<category><![CDATA[Cloud Computing]]></category>

		<guid isPermaLink="false">http://www.dojosec.com/?p=118</guid>
		<description><![CDATA[Can you get sunburn if it’s cloudy outside? The answer is yes, because the clouds don’t block the dangerous rays that burn and cause cancer. Many people believe that the clouds give their skin protection against the sun. This is a big mistake that I’ve found out first hand many times recently. So I tend [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Can you get sunburn if it’s cloudy outside? The answer is yes, because the clouds don’t block the dangerous rays that burn and cause cancer. Many people believe that the clouds give their skin protection against the sun. This is a big mistake that I’ve found out first hand many times recently. So I tend to put on sun block before I go outside for long days. Our skin is a major asset because it is the first line of defense against infection. We are personally responsible for protecting our asset by applying sun block when needed.</p>
<p>In the information technology industry, Cloud Computing has reminded me of the false sense of security that real clouds have given us. Recently the T-Mobile/Microsoft Sidekick data loss debacle has put into question the reliability of Cloud Computing and Cloud Storage. It is important to remember, when we outsource services and infrastructure to the Cloud, we don’t outsource responsibility.</p>
<p>The T-Mobile Sidekick issue affected many consumers. Just imagine if this was a billion dollar sales organization which lost sales leads, bad news. Several Google Apps services have been disrupted lately, thank goodness there has been no data loss associated with those outages. If Google were to lose my critical data, whose fault would it be for no back-ups? The old saying goes, “When you point your finger at someone, there are three fingers pointing back at you.”</p>
<p>I believe that Cloud solution providers will do their best job (hopefully) to maintain confidentiality, integrity, and availability of their client&#8217;s data. When it comes down to it, each organization still must accept responsibility and accountability for their critical assets. If you moved to the Cloud, your business continuity and disaster recovery plans should reflect the worst case scenario.</p>
<p>This means you should have some sort of limited backups that your organization controls. At least perform an assessment of what the minimum requirements are, and then make plans accordingly. I’m not telling you anything new here, it takes a bit of effort. Who are we kidding? Hard drives fail, tape backups didn’t backup anything, back-ups fall off trucks, dog ate my homework, etc…</p>
<p>No one, not even the Cloud, is going to do your pushups for you. Cloud Computing won’t keep your organization from getting burned.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.dojosec.com/cloud-computing-and-sunburn/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Malwarebytes &#8211; An Effective Malware Removal Tool</title>
		<link>http://www.dojosec.com/malwarebytes-an-effective-malware-removal-tool</link>
		<comments>http://www.dojosec.com/malwarebytes-an-effective-malware-removal-tool#comments</comments>
		<pubDate>Sun, 04 Oct 2009 22:50:00 +0000</pubDate>
		<dc:creator>Marcus J. Carey</dc:creator>
				<category><![CDATA[General Security]]></category>

		<guid isPermaLink="false">http://www.dojosec.com/?p=117</guid>
		<description><![CDATA[If you are having a tough time removing malware from your PC, you might want to check out Malwarebytes Anti-Malware software. Thankfully, you can download a free version which is very effective at removing malware from your Microsoft Windows based system. Malwarebytes is so effective, that it is one of the preferred tools used for [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>If you are having a tough time removing malware from your PC, you might want to check out <a href="http://www.malwarebytes.org/">Malwarebytes</a> Anti-Malware software. Thankfully, you can download a free version which is very effective at removing malware from your Microsoft Windows based system.
<div></div>
<div>Malwarebytes is so effective, that it is one of the preferred tools used for malware removal within the U.S. Government.  It produces equal or better results than many other commercial tools on the market. It&#8217;s very simple to use and the scanning process is relatively fast in comparison to other malware removal tools.</div>
]]></content:encoded>
			<wfw:commentRss>http://www.dojosec.com/malwarebytes-an-effective-malware-removal-tool/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
