<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Security Viewpoints &#187; Interesting</title>
	<atom:link href="http://advosys.ca/viewpoints/category/interesting-articles-on-other-sites/feed/" rel="self" type="application/rss+xml" />
	<link>http://advosys.ca/viewpoints</link>
	<description>Security, operating systems and the IT industry</description>
	<lastBuildDate>Tue, 31 Aug 2010 13:06:19 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Interesting links &#8211; August 31</title>
		<link>http://advosys.ca/viewpoints/2010/08/interesting-links-august-31/</link>
		<comments>http://advosys.ca/viewpoints/2010/08/interesting-links-august-31/#comments</comments>
		<pubDate>Tue, 31 Aug 2010 13:06:19 +0000</pubDate>
		<dc:creator>D Webber</dc:creator>
				<category><![CDATA[Interesting]]></category>
		<category><![CDATA[analysis]]></category>
		<category><![CDATA[cisco]]></category>
		<category><![CDATA[configuration]]></category>
		<category><![CDATA[forensics]]></category>
		<category><![CDATA[injection]]></category>
		<category><![CDATA[interesting]]></category>
		<category><![CDATA[livecd]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[tools]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://advosys.ca/viewpoints/?p=897</guid>
		<description><![CDATA[Potentially interesting links for August 31: DLL hijacking vulnerabilities &#8211; Many (most?) Windows apps attempt to load DLLs that they don&#8217;t need and are in fact not there. Just stick your malicious DLL in the DLL search path, give it the right name and the app will load it. All versions of Windows are vulnerable. [...]]]></description>
			<content:encoded><![CDATA[<p>Potentially interesting links for August 31:</p>
<ul>
<li><a href="http://isc.sans.edu/diary.html?storyid=9445">DLL hijacking vulnerabilities</a> &#8211; Many (most?) Windows apps attempt to load DLLs that they don&#8217;t need and are in fact not there. Just stick your malicious DLL in the DLL search path, give it the right name and the app will load it. All versions of Windows are vulnerable.</li>
<li><a href="https://computer-forensics2.sans.org/community/siftkit/">SANS Investigative Forensic Toolkit (SIFT)</a> &#8211; VMware Linux image with some common file forensics tools.</li>
<li><a title="RANCID" href="http://www.shrubbery.net/rancid/">RANCID</a> &#8211; Configuration monitoring and alerting tool. Pulls configs from routers (or potentially any device), stores in CVS, removes routinely variable content then diffs. Can email changes detected.</li>
</ul>
Copyright &copy; 2012 <a href="http://advosys.ca/">Advosys Consulting Inc.</a>

<p><em>Related posts:</em><ul><li><a href='http://advosys.ca/viewpoints/2009/03/helix-forensics-cd-now-payware/' rel='bookmark' title='Permanent Link: Helix forensics CD now payware'>Helix forensics CD now payware</a></li>
</ul></p>]]></content:encoded>
			<wfw:commentRss>http://advosys.ca/viewpoints/2010/08/interesting-links-august-31/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interesting links &#8211; August 17</title>
		<link>http://advosys.ca/viewpoints/2010/08/interesting-links-august-17/</link>
		<comments>http://advosys.ca/viewpoints/2010/08/interesting-links-august-17/#comments</comments>
		<pubDate>Wed, 18 Aug 2010 16:49:23 +0000</pubDate>
		<dc:creator>D Webber</dc:creator>
				<category><![CDATA[Interesting]]></category>
		<category><![CDATA[analysis]]></category>
		<category><![CDATA[antivirus]]></category>
		<category><![CDATA[audit]]></category>
		<category><![CDATA[authentication]]></category>
		<category><![CDATA[compliance]]></category>
		<category><![CDATA[decoder]]></category>
		<category><![CDATA[fisma]]></category>
		<category><![CDATA[flash]]></category>
		<category><![CDATA[government]]></category>
		<category><![CDATA[interesting]]></category>
		<category><![CDATA[javascript]]></category>
		<category><![CDATA[js]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[obfuscation]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[password+cracking]]></category>
		<category><![CDATA[pdf]]></category>
		<category><![CDATA[standards]]></category>
		<category><![CDATA[tools]]></category>
		<category><![CDATA[unpack]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[wordlist]]></category>

		<guid isPermaLink="false">http://advosys.ca/viewpoints/?p=891</guid>
		<description><![CDATA[Potentially interesting links for August 17: OpenFISMA &#8211; Open, customizable application to reduce cost and complexity associated with FISMA compliance and risk management. Locally installed LAMP app. RSMangler &#8211; Keyword-based wordlist generator. Requires Ruby. jsunpack &#8211; Online only generic JavaScript unpacker. Provide URL, paste in JS or upload a PDF, pcap, HTML, or JavaScript file. [...]]]></description>
			<content:encoded><![CDATA[<p>Potentially interesting links for August 17:</p>
<ul>
<li><a href="http://openfisma.org/">OpenFISMA</a> &#8211; Open, customizable application to reduce cost and complexity associated with FISMA compliance and risk management. Locally installed LAMP app.</li>
<li><a href="http://www.randomstorm.com/rsmangler-security-tool.php">RSMangler</a> &#8211; Keyword-based wordlist generator. Requires Ruby.</li>
<li><a href="http://jsunpack.jeek.org/dec/go">jsunpack</a> &#8211; Online only generic JavaScript unpacker. Provide URL, paste in JS or upload a PDF, pcap, HTML, or JavaScript file.</li>
<li><a href="http://wepawet.cs.ucsb.edu/">Wepawet</a> &#8211; Online only service for detecting and analyzing web-based malware. Currently handles Flash, JavaScript, and PDF files.</li>
</ul>
Copyright &copy; 2012 <a href="http://advosys.ca/">Advosys Consulting Inc.</a>

<p><em>Related posts:</em><ul><li><a href='http://advosys.ca/viewpoints/2007/08/port-scanner-with-adobe-flash/' rel='bookmark' title='Permanent Link: Port scanning with Adobe Flash'>Port scanning with Adobe Flash</a></li>
</ul></p>]]></content:encoded>
			<wfw:commentRss>http://advosys.ca/viewpoints/2010/08/interesting-links-august-17/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interesting links &#8211; August 14</title>
		<link>http://advosys.ca/viewpoints/2010/08/interesting-links-august-14/</link>
		<comments>http://advosys.ca/viewpoints/2010/08/interesting-links-august-14/#comments</comments>
		<pubDate>Wed, 18 Aug 2010 16:48:01 +0000</pubDate>
		<dc:creator>D Webber</dc:creator>
				<category><![CDATA[Interesting]]></category>
		<category><![CDATA[business]]></category>
		<category><![CDATA[classification]]></category>
		<category><![CDATA[crime]]></category>
		<category><![CDATA[interesting]]></category>
		<category><![CDATA[papers]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[reference]]></category>
		<category><![CDATA[research]]></category>
		<category><![CDATA[statistics]]></category>
		<category><![CDATA[trends]]></category>

		<guid isPermaLink="false">http://advosys.ca/viewpoints/?p=889</guid>
		<description><![CDATA[Potentially interesting links for August 14: A Taxonomy of Social Networking Data &#8211; Bruce Schneier attempts to define possible types of social network data. Cyberattacks raise e-banking security fears &#8211; From March 2010. Discusses growing trend of looting small business bank accounts. U.S. Office of Justice Programs: Research, Statistics, &#38; Evaluation &#8211; collects, analyzes, publishes, [...]]]></description>
			<content:encoded><![CDATA[<p>Potentially interesting links for August 14:</p>
<ul>
<li><a href="http://www.schneier.com/essay-322.html">A Taxonomy of Social Networking Data</a> &#8211; Bruce Schneier attempts to define possible types of social network data.</li>
<li><a href="http://www.computerworld.com/s/article/print/9168458/Cyberattacks_raise_e_banking_security_fears?taxonomyName=Security&amp;taxonomyId=17">Cyberattacks raise e-banking security fears</a> &#8211; From March 2010. Discusses growing trend of looting small business bank accounts.</li>
<li><a href="http://www.ojp.usdoj.gov/programs/research_stats.htm">U.S. Office of Justice Programs: Research, Statistics, &amp; Evaluation</a> &#8211; collects, analyzes, publishes, and disseminates information on crime, criminal offenders, victims of crime, and the operation of justice systems at all levels of government. Lots of downloadable data, including some on cybercrime stats.</li>
</ul>
Copyright &copy; 2012 <a href="http://advosys.ca/">Advosys Consulting Inc.</a>

<p>No related posts.</p>]]></content:encoded>
			<wfw:commentRss>http://advosys.ca/viewpoints/2010/08/interesting-links-august-14/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interesting links &#8211; August 2</title>
		<link>http://advosys.ca/viewpoints/2010/08/interesting-links-august-2/</link>
		<comments>http://advosys.ca/viewpoints/2010/08/interesting-links-august-2/#comments</comments>
		<pubDate>Wed, 18 Aug 2010 16:46:53 +0000</pubDate>
		<dc:creator>D Webber</dc:creator>
				<category><![CDATA[Interesting]]></category>
		<category><![CDATA[attacks]]></category>
		<category><![CDATA[breaches]]></category>
		<category><![CDATA[detection]]></category>
		<category><![CDATA[government]]></category>
		<category><![CDATA[ids]]></category>
		<category><![CDATA[insider-threat]]></category>
		<category><![CDATA[interesting]]></category>
		<category><![CDATA[intrusion]]></category>
		<category><![CDATA[ips]]></category>
		<category><![CDATA[ipv6]]></category>
		<category><![CDATA[penetration]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[policy]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[reference]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[statistics]]></category>
		<category><![CDATA[system:filetype:pdf]]></category>
		<category><![CDATA[system:media:document]]></category>
		<category><![CDATA[tools]]></category>
		<category><![CDATA[trends]]></category>

		<guid isPermaLink="false">http://advosys.ca/viewpoints/?p=885</guid>
		<description><![CDATA[Potentially interesting links for August 2: DoD policies &#8211; Links the major U.S Department of Defense policy documents on Information Assurance. Canada Revenue Agency grappling with more unauthorized access &#8211; Insider apparently accessed tax records to further her business on the side. Verison 2010 Data Breach Report &#8211; Verizon&#8217;s breach stats and trends report for [...]]]></description>
			<content:encoded><![CDATA[<p>Potentially interesting links for August 2:</p>
<ul>
<li><a href="http://iac.dtic.mil/iatac/ia_policychart.html">DoD policies</a> &#8211; Links the major U.S Department of Defense policy documents on Information Assurance.</li>
<li><a href="http://www.scmagazineus.com/canada-revenue-agency-suffers-more-embarrassement-over-unauthorized-access/article/176714/">Canada Revenue Agency grappling with more unauthorized access</a> &#8211; Insider apparently accessed tax records to further her business on the side.</li>
<li><a href="http://www.verizonbusiness.com/resources/reports/rp_2010-DBIR-combined-reports_en_xg.pdf">Verison 2010 Data Breach Report</a> &#8211; Verizon&#8217;s breach stats and trends report for 2010.</li>
<li><a href="http://openinfosecfoundation.org/index.php/download-suricata">Suricata IDS/IPS</a> &#8211; Open Source Intrusion Detection and Prevention Engine. Intends to replace Snort. Can use Snort rulesets unchanged.</li>
<li><a href="http://freeworld.thc.org/thc-ipv6/">THC-IPV6</a> &#8211; &#8220;A complete tool set to attack the inherent protocol weaknesses of IPV6 and ICMP6, and includes an easy to use packet factory library.&#8221;</li>
</ul>
Copyright &copy; 2012 <a href="http://advosys.ca/">Advosys Consulting Inc.</a>

<p>No related posts.</p>]]></content:encoded>
			<wfw:commentRss>http://advosys.ca/viewpoints/2010/08/interesting-links-august-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interesting links &#8211; June 30</title>
		<link>http://advosys.ca/viewpoints/2010/06/interesting-links-june-30/</link>
		<comments>http://advosys.ca/viewpoints/2010/06/interesting-links-june-30/#comments</comments>
		<pubDate>Wed, 30 Jun 2010 14:18:16 +0000</pubDate>
		<dc:creator>D Webber</dc:creator>
				<category><![CDATA[Interesting]]></category>
		<category><![CDATA[adobe]]></category>
		<category><![CDATA[botnet]]></category>
		<category><![CDATA[bypass]]></category>
		<category><![CDATA[disk]]></category>
		<category><![CDATA[endpoint+security]]></category>
		<category><![CDATA[evasion]]></category>
		<category><![CDATA[flash]]></category>
		<category><![CDATA[flex]]></category>
		<category><![CDATA[forensic]]></category>
		<category><![CDATA[ids]]></category>
		<category><![CDATA[image]]></category>
		<category><![CDATA[interesting]]></category>
		<category><![CDATA[intrusion+prevention]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[tcpip]]></category>
		<category><![CDATA[tools]]></category>
		<category><![CDATA[tracking]]></category>
		<category><![CDATA[vmdk]]></category>
		<category><![CDATA[vmware]]></category>
		<category><![CDATA[zeus]]></category>

		<guid isPermaLink="false">http://advosys.ca/viewpoints/?p=878</guid>
		<description><![CDATA[Potentially interesting links for June 30: ZeuS Tracker &#8211; Tracks ZeuS Command&#38;Control servers (hosts) around the world and provides you a domain- and a IP-blocklist. raw2vmdk &#124; Download raw2vmdk software for free at SourceForge.net &#8211; Mount raw disk images (e.g. dd) on VMware, VirtualBox or other VM platform supporting the VMDK disk format. Cross-platform Java. [...]]]></description>
			<content:encoded><![CDATA[<p>Potentially interesting links for June 30:</p>
<ul>
<li><a href="https://zeustracker.abuse.ch/">ZeuS Tracker</a> &#8211; Tracks ZeuS Command&amp;Control servers (hosts) around the world and provides you a domain- and a IP-blocklist.</li>
<li><a href="http://sourceforge.net/projects/raw2vmdk/">raw2vmdk | Download raw2vmdk software for free at SourceForge.net</a> &#8211; Mount raw disk images (e.g. dd) on VMware, VirtualBox or other VM platform supporting the VMDK disk format. Cross-platform Java.</li>
<li><a href="http://www.gdssecurity.com/l/b/2010/03/17/penetrating-intranets-through-adobe-flex-applications/">Penetrating Intranets through Adobe Flex Applications</a> &#8211; How to exploit Adobe Flex applications that use BlazeDS to access internal networks and other hosts behind the firewall.</li>
<li><a href="http://www.packetstan.com/2010/06/recently-ive-been-on-campaign-to-make.html">IDS/IPS Evasion</a> &#8211; One way to fool most IPS into thinking a TCP session is closed (and thus no longer track it) when it&#8217;s actually still open on the host.</li>
</ul>
Copyright &copy; 2012 <a href="http://advosys.ca/">Advosys Consulting Inc.</a>

<p>No related posts.</p>]]></content:encoded>
			<wfw:commentRss>http://advosys.ca/viewpoints/2010/06/interesting-links-june-30/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interesting links &#8211; June 14</title>
		<link>http://advosys.ca/viewpoints/2010/06/interesting-links-june-14/</link>
		<comments>http://advosys.ca/viewpoints/2010/06/interesting-links-june-14/#comments</comments>
		<pubDate>Mon, 14 Jun 2010 19:06:21 +0000</pubDate>
		<dc:creator>D Webber</dc:creator>
				<category><![CDATA[Interesting]]></category>
		<category><![CDATA[antivirus]]></category>
		<category><![CDATA[content+filtering]]></category>
		<category><![CDATA[interesting]]></category>
		<category><![CDATA[ipv6]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[obfuscation]]></category>

		<guid isPermaLink="false">http://advosys.ca/viewpoints/?p=874</guid>
		<description><![CDATA[Potentially interesting links for June 14: LZH Compression vulnerability &#8211; &#8220;Most of anti-virus softwares can&#8217;t detect viruses embedded in LZH files with falsified header. And most archivers are capable to uncompress them, just as specified.&#8221; Google IPv6 Implementors Conference &#8211; Slides from the event held June 10 and 11 2010. Copyright &#169; 2012 Advosys Consulting [...]]]></description>
			<content:encoded><![CDATA[<p>Potentially interesting links for June 14:</p>
<ul>
<li><a href="http://en.gigazine.net/index.php?/news/comments/20100607_lzh_end/">LZH Compression vulnerability</a> &#8211; &#8220;Most of anti-virus softwares can&#8217;t detect viruses embedded in LZH files with falsified header. And most archivers are capable to uncompress them, just as specified.&#8221;</li>
<li><a href="https://sites.google.com/site/ipv6implementors/2010/agenda">Google IPv6 Implementors Conference</a> &#8211; Slides from the event held June 10 and 11 2010.</li>
</ul>
Copyright &copy; 2012 <a href="http://advosys.ca/">Advosys Consulting Inc.</a>

<p>No related posts.</p>]]></content:encoded>
			<wfw:commentRss>http://advosys.ca/viewpoints/2010/06/interesting-links-june-14/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

