Category: security

  • RSS Reader Security Check

    With Google testing RSS ADS, predictions of Spyware on RSS soon and RSS exploits slowly emerging, this is a bit refreshing.
    RSS Spyware by Years End
    http://www.digg.com/security/_RSS_To_Carry_Spyware_Before_Year_s_Out
    Mark Pilgrim's RSS Prank
    http://diveintomark.org/archives/2003/06/12/how_to_consume_rss_safely

    read more | digg story

  • Digg 2.0 Beta (Digg 2.1. on the way)

    Beta of Digg 2.1 on the way. Here is the results of the first beta:
    Thanks to everyone for doing a great job beta testing digg 2.0 thus far. please keep it up! We are aware of the dropdown problems and issues with IE (who uses IE anymore? (we joke, we joke) 😉 We are also aware that some users are requesting a “minimalist” interface. We will do our best to satisfy everyone – expect to see something along those lines in 2.1. beta.digg.com un/pw: betatest

    read more | digg story

  • Remove the W32.Codbot WORM

    W32.Codbot is a worm that has been popping up throughout the net. It exploits the SQL Sever LSASS and RPC-DCOM process.

    W32.Codbot.AL masquerades as a system process which allows it to be run
    when the system boots up. Once running it connects to Internet Relay
    Chat (IRC) where it can take command to control you sytem.

    Instructions to remove W32.Codbot.htm:
    http://elamb.blogharbor.com/hacked/codbot.htm

  • Snort Technical Learning Guide

    Snort is touted as one of the best network intrusion-detection systems available, but some consider it complicated to operate. This Technical Guide simplifies Snort operation with answers to questions like how to modify Snort rules and where to place IDS sensors.

    read more | digg story

  • Vulnerability Disclosure List

    VulnWatch was created because the involved individuals felt the need for a forum which didn't currently exist: a non-discussion, non-patch, all-vulnerability annoucement list supported and run by a community of volunteer moderators distributed around the world.

    read more | digg story

  • Computer and Technical Book Reviews

    Author Robert Slade reviews lots and lots of the technical books. Books include everything from “Artificial Minds” by, Stan Franklin to the Official (ISC)^2 Guide to the CISSP Exam to Snow Crash by Stephonson. Excellent reference before you buy.

    read more | digg story

  • "Spies Among Us", Ira Winkler (Rob Slade book review)

    The following is a review by Robert Slade.  Robert Slade is a data communications and security specialist and author of Robert Slade's Guide to Computer Viruses: How to Avoid Them, How to Get Rid of Them, and How to Get Help

    REVIEW: “Spies Among Us”, Ira Winkler  

    by Rob Slade

    “Spies Among Us”, Ira Winkler 2005, 0-7645-8468-5, U$27.50/C$38.99/UK#16.99 Ira Winkler www.irawinkler.com
    5353 Dundas Street West, 4th Floor, Etobicoke, ON   M9B 6H8  2005 0-7645-8468-5
    John Wiley & Sons, Inc.
    416-236-4433 fax: 416-236-4448

      http://www.amazon.com/exec/obidos/ASIN/0764584685/robsladesinterne
      http://www.amazon.co.uk/exec/obidos/ASIN/0764584685/robsladesinte-21
    http://www.amazon.ca/exec/obidos/ASIN/0764584685/robsladesin03-20
    Audience n+ Tech 1 Writing 3 (see revfaq.htm for explanation) 326 p.  “Spies Among Us”

    In the introduction, Winkler admits that the title is slightly
    misleading: most surveillance is not done by international spies, but by common or garden thieves, competitors, and so forth.  The point that he is trying to make is that non-terrorists can hurt you, although he raises the issue with illustrations that are not completely clear.

    Part one deals with espionage concepts.  Chapter one reviews spying terminology, but makes points about the process by explaining the jargon and distinctions.  Risk analysis is introduced in chapter two, but the calculations used may not be clear to all readers.  An attempt to assess the value of information is made in chapter three.  Chapter
    four outlines threats (entities that might harm you) and five covers vulnerabilities–the way your own operations can make you subject to attack.

    Part two describes some case studies of spying.  The content is interesting, although the value is rather concentrated in the short “vulnerabilities exploited” section at the end of each chapter.  I must say that I've read all manner of similar stories and case studies in various security books, and Winkler's are more interesting than most.

    Part three deals with protection.  Chapter twelve lists a number of countermeasures.  These are described in a level of detail that is appropriate for non-specialists (in security), although the content related to technical safety might be a bit thin.  How to plan and implement an overall security program is outlined in chapter thirteen, which includes a very interesting section on how the Department of Homeland Security has taught us valuable lessons about how *not* to execute safeguards.

    While not structured in a formal manner that would make for easier reference, this book nonetheless has some excellent content.  Like Schneier's “Beyond Fear” (cf. BKBYNDFR.RVW ), it is easy enough, and engaging enough, for those outside of the security profession to read.
    Busy managers may find the work a bit wordy and disorganized, but it makes useful points, and has constructive suggestions.  Home users and amateurs will find the style most suited to them, although the recommended controls are aimed at businesses.  Security professionals will not (or should not) find anything new here, but may appreciate the “war stories” and explanations that can be employed in security awareness training.

    copyright Robert M. Slade, 2005   BKSPAMUS.RVW   20050531

    http://victoria.tc.ca/techrev         

    Slade's book reviews — http://sun.soci.niu.edu/~rslade/mnbk.htm

    Slade's Bio — http://sun.soci.niu.edu/~rslade/bkoigtce.rvw

    ======================
    rslade@vcn.bc.ca      slade@victoria.tc.ca      rslade@sun.soci.niu.edu
                

  • DNA Identification

    Bruce Schneier opens up discusion on an interesting application of DNA Identification.

    read more | digg story

  • ITSY-BITSY DRONE

    There are now dozens of different types of drones in the Pentagon's arsenal. But you'd be hard-pressed to find one smaller than this Wasp Micro Air Vehicle (MAV), now being tested aboard the Nimitz Carrier Strike Group off Southern California.

    read more | digg story

  • Thoughts about Cross-View based Rootkit Detection

    Is having Cross-View based Rootkit Detection relevant since it can be tricked? Is Rootkit revealer enough? Joanna Rutkowska gives you a good perspective in this paper. http://invisiblethings.org

    read more | digg story