<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Infosec Ramblings &#187; Interesting Bits</title>
	<atom:link href="http://www.infosecramblings.com/category/interesting-bits/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.infosecramblings.com</link>
	<description>ramblings on various information security topics</description>
	<lastBuildDate>Fri, 30 Jul 2010 13:14:53 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Interesting Information Security Bits for 07/30/2010</title>
		<link>http://www.infosecramblings.com/2010/07/30/interesting-information-security-bits-for-07302010/</link>
		<comments>http://www.infosecramblings.com/2010/07/30/interesting-information-security-bits-for-07302010/#comments</comments>
		<pubDate>Fri, 30 Jul 2010 13:12:44 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[iisb]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=2329</guid>
		<description><![CDATA[Here are today's Interesting Information Security Bits from around the web.

In their continuing series that documents the infosec community in various cities, InfosecEvents looks at Las Vegas this week.
Las Vegas Security Community &#124; Infosec Events
Tags: ( community )
Looks like the folks on the Vulnerability Research Team at Sourcefire have come up with a new tool [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Here are today's Interesting Information Security Bits from around the web.</p>
<ol>
<li>In their continuing series that documents the infosec community in various cities, InfosecEvents looks at Las Vegas this week.<br />
<a href="http://bit.ly/cIOOSp" target="_blank">Las Vegas Security Community | Infosec Events</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/community" target="_blank">community</a> )</li>
<li>Looks like the folks on the Vulnerability Research Team at Sourcefire have come up with a new tool for us to play with, Razorback. From the post "Razorback is an Open-Source Framework for an intelligence driven security solution." Looks like fun.<br />
<a href="http://bit.ly/bujfmM" target="_blank">Project Razorback has been unleashed on the World | Joel Esler</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/sourcefire" target="_blank">sourcefire</a> <a href="http://delicious.com/rigginsk/tools" target="_blank">tools</a> <a href="http://delicious.com/rigginsk/razorback" target="_blank">razorback</a> )</li>
<li>A new certificate is coming that hope to raise the knowledge level of IT professionals on the topic of security and cloud computing. The reference material is very good material from ENISA and the Cloud Security Alliance.<br />
<a href="http://bit.ly/cgFC5A" target="_blank">Certificate of Cloud Security Knowledge | Cloud Security Alliance</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/cloud" target="_blank">cloud</a> <a href="http://delicious.com/rigginsk/certification" target="_blank">certification</a> )</li>
</ol>
<p>That's it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2010/07/30/interesting-information-security-bits-for-07302010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interesting Information Security Bits for 07/28/2010</title>
		<link>http://www.infosecramblings.com/2010/07/28/interesting-information-security-bits-for-07282010/</link>
		<comments>http://www.infosecramblings.com/2010/07/28/interesting-information-security-bits-for-07282010/#comments</comments>
		<pubDate>Wed, 28 Jul 2010 13:06:59 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=2316</guid>
		<description><![CDATA[Here are today's Interesting Information Security Bits from around the web.

There is a data dump of all publicly searchable Facebook users out there right now. The Harmony Guy has an interesting post talking about the situation.
Security Through Obscurity and Privacy in Practice &#124; Social Hacking
Tags: ( facebook privacy )
Check out this post for some information [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Here are today's Interesting Information Security Bits from around the web.</p>
<ol>
<li>There is a data dump of all publicly searchable Facebook users out there right now. The Harmony Guy has an interesting post talking about the situation.<br />
<a href="http://bit.ly/9fBqK9" target="_blank">Security Through Obscurity and Privacy in Practice | Social Hacking</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/facebook" target="_blank">facebook</a> <a href="http://delicious.com/rigginsk/privacy" target="_blank">privacy</a> )</li>
<li>Check out this post for some information about two privacy bills currently working their way through the US Congress.<br />
<a href="http://bit.ly/aLD6iH" target="_blank">Sunbelt Blog: Privacy bills in U.S. Congress in brief</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/privacy" target="_blank">privacy</a> <a href="http://delicious.com/rigginsk/laws" target="_blank">laws</a> )</li>
<li>Here a reasoned post on the susceptibility of Apple products to the same threats that exist for Windows products.<br />
<a href="http://bit.ly/arQwJ9" target="_blank">Yes Virginia, Mac's Can Get Viruses | Optimal Security: The Lumension Blog</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/apple" target="_blank">apple</a> <a href="http://delicious.com/rigginsk/malware" target="_blank">malware</a> )</li>
<li>Here is a machine readable Defcon 18 schedule. Very nice. It is available in XML, iCal and HTML formats.<br />
<a href="http://bit.ly/9SFpBC" target="_blank">DefCon 18 Schedule | Perimeter Grid</a><br />
Tags: ( )</li>
<li>The 2010 Verizon Data Breach report has been released. This  year it includes data from the U.S. Secret Service. I am looking forward to reading it. You should too.<br />
<a href="http://bit.ly/cq8Kd2" target="_blank">Verizon Business Security Blog &gt;&gt; Blog Archive &gt;&gt; 2010 Data Breach Investigations Report Released</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/data-breach" target="_blank">data-breach</a> <a href="http://delicious.com/rigginsk/dbir" target="_blank">dbir</a> )</li>
</ol>
<p>That's it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2010/07/28/interesting-information-security-bits-for-07282010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interesting Information Security Bits for 07/26/2010</title>
		<link>http://www.infosecramblings.com/2010/07/26/interesting-information-security-bits-for-07262010/</link>
		<comments>http://www.infosecramblings.com/2010/07/26/interesting-information-security-bits-for-07262010/#comments</comments>
		<pubDate>Mon, 26 Jul 2010 14:20:14 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[iisb]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=2308</guid>
		<description><![CDATA[Here are today's Interesting Information Security Bits from around the web.

In the continuing series on the infosec community in various cities, Washington D.C. gets some attention. If you are in the DC area, you should check out these opportunities.
Washington, DC Security Community &#124; Infosec Events
Tags: ( community )
Mike and Lee's 2010 Compensation Survey results are [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Here are today's Interesting Information Security Bits from around the web.</p>
<ol>
<li>In the continuing series on the infosec community in various cities, Washington D.C. gets some attention. If you are in the DC area, you should check out these opportunities.<br />
<a href="http://bit.ly/ab93uk" target="_blank">Washington, DC Security Community | Infosec Events</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/community" target="_blank">community</a> )</li>
<li>Mike and Lee's 2010 Compensation Survey results are now available. Some interesting stuff in there.<br />
<a href="http://bit.ly/cHdl82" target="_blank">2010 Compensation Survey : Information Security Leaders</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/career" target="_blank">career</a> <a href="http://delicious.com/rigginsk/compensation" target="_blank">compensation</a> )</li>
<li>Anton has penned another career focused post. Very good advice in here. You should read it.<br />
<a href="http://bit.ly/bBzaz9" target="_blank">Anton Chuvakin Blog - "Security Warrior": Skills for Work vs Skills for Getting Hired</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/career" target="_blank">career</a> )</li>
<li>Hmm. Interesting thoughts on DMCA and reverse engineering software.<br />
<a href="http://bit.ly/9owzmJ" target="_blank">HP Blogs - The DMCA vs "Reverse Engineering" Software - HP Blogs</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/general" target="_blank">general</a> )</li>
<li>If you like podcasts, check out Wim's list.<br />
<a href="http://bit.ly/cV2NzW" target="_blank">The Security Kitchen &gt;&gt; Blog Archive &gt;&gt; list of podcasts</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/podcasts" target="_blank">podcasts</a> )</li>
<li>Andrew offers up a few basic things you can do to make your SSH service a bit more secure.<br />
<a href="http://bit.ly/a2t3bH" target="_blank">Basic SSH server hardening &lt;&lt; Infosanity's Blog</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/ssh" target="_blank">ssh</a> <a href="http://delicious.com/rigginsk/tips" target="_blank">tips</a> )</li>
<li>Alex points out that Cisco's security report is available.<br />
<a href="http://bit.ly/adzfVr" target="_blank">Cisco's Artichoke of Attack &lt;&lt; The New School of Information Security</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/report" target="_blank">report</a> <a href="http://delicious.com/rigginsk/cisco" target="_blank">cisco</a> )</li>
</ol>
<p>That's it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2010/07/26/interesting-information-security-bits-for-07262010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interesting Information Security Bits for 07/23/2010</title>
		<link>http://www.infosecramblings.com/2010/07/22/interesting-information-security-bits-for-07232010/</link>
		<comments>http://www.infosecramblings.com/2010/07/22/interesting-information-security-bits-for-07232010/#comments</comments>
		<pubDate>Fri, 23 Jul 2010 01:05:48 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[iisb]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=2306</guid>
		<description><![CDATA[Here are today's Interesting Information Security Bits from around the web.

Alchemist has offered up some dos and don'ts for when you are evaluating products/solutions. Some good tips and things to think about.
Technology Evaluation Do's and Don'ts &#60;&#60; An alchemists view from the bar
Tags: ( infoec evaluation )
Just read it. It kind of defies description.
Last In [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Here are today's Interesting Information Security Bits from around the web.</p>
<ol>
<li>Alchemist has offered up some dos and don'ts for when you are evaluating products/solutions. Some good tips and things to think about.<br />
<a href="http://bit.ly/chNWuv" target="_blank">Technology Evaluation Do's and Don'ts &lt;&lt; An alchemists view from the bar</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/infoec" target="_blank">infoec</a> <a href="http://delicious.com/rigginsk/evaluation" target="_blank">evaluation</a> )</li>
<li>Just read it. It kind of defies description.<br />
<a href="http://bit.ly/9WUmGv" target="_blank">Last In - First Out: Just another day in Internet-land</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/general" target="_blank">general</a> )</li>
<li>This looks like a nifty post installation script. It installs some stuff and tweaks some stuff. I have taken a cursory look at what it does and it appears good. Please double check everything yourself though.<br />
<a href="http://bit.ly/9Ni5hG" target="_blank">infond: infondlinux - a post installation script for Ubuntu</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/linux" target="_blank">linux</a> )</li>
<li>Looks like Adobe is taking a very good step forward in security Reader.<br />
<a href="http://bit.ly/9Daqxi" target="_blank">Adobe: 'Sandbox' Will Stave Off Reader Attacks -- Krebs on Security</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/adobe" target="_blank">adobe</a> <a href="http://delicious.com/rigginsk/reader" target="_blank">reader</a> )</li>
</ol>
<p>That's it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2010/07/22/interesting-information-security-bits-for-07232010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interesting Information Security Bits for 07/21/2010</title>
		<link>http://www.infosecramblings.com/2010/07/20/interesting-information-security-bits-for-07212010/</link>
		<comments>http://www.infosecramblings.com/2010/07/20/interesting-information-security-bits-for-07212010/#comments</comments>
		<pubDate>Wed, 21 Jul 2010 01:06:31 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[iisb]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=2303</guid>
		<description><![CDATA[Here are today's Interesting Information Security Bits from around the web.

Ukraine now has a data protection law.
Ukraine Adopts a New Data Protection Law : Privacy &#38; Information Security Law Blog
Tags: ( privacy law ukraine )
Wow. This is both very very cool and very very scary. That means it is useful for showing the dangers of [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Here are today's Interesting Information Security Bits from around the web.</p>
<ol>
<li>Ukraine now has a data protection law.<br />
<a href="http://bit.ly/aVn1EM" target="_blank">Ukraine Adopts a New Data Protection Law : Privacy &amp; Information Security Law Blog</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/privacy" target="_blank">privacy</a> <a href="http://delicious.com/rigginsk/law" target="_blank">law</a> <a href="http://delicious.com/rigginsk/ukraine" target="_blank">ukraine</a> )</li>
<li>Wow. This is both very very cool and very very scary. That means it is useful for showing the dangers of XSS. Check it out.<br />
<a href="http://bit.ly/aR31za" target="_blank">Attack and Defense Labs: Shell of the Future - Reverse Web Shell Handler for XSS Exploitation</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/pentesting" target="_blank">pentesting</a> <a href="http://delicious.com/rigginsk/xss" target="_blank">xss</a> <a href="http://delicious.com/rigginsk/shell" target="_blank">shell</a> )</li>
<li>As I clicked publish on the last IISB, which mentioned this challenge, I saw tweet with the answer. Sorry about that folks.<br />
<a href="http://bit.ly/aCIj0X" target="_blank">Solution and Winner of the 1st Panda Challenge 2010 | PandaLabs Blog</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/challenge" target="_blank">challenge</a> <a href="http://delicious.com/rigginsk/panda" target="_blank">panda</a> )</li>
<li>Just go read this. It's important.<br />
<a href="http://bit.ly/aXzj8G" target="_blank">What's "a risk" anyway? | RiskAnalys.is</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/risk" target="_blank">risk</a> )</li>
<li>Here is nifty plugin from Qualys. It checks for security updates for a number of browser support apps like Reader, Java, etc.<br />
<a href="http://bit.ly/9wMb0X" target="_blank">Qualys BrowserCheck</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/browser" target="_blank">browser</a> <a href="http://delicious.com/rigginsk/tools" target="_blank">tools</a> )</li>
</ol>
<p>That's it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2010/07/20/interesting-information-security-bits-for-07212010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interesting Information Security Bits for 07/19/2010</title>
		<link>http://www.infosecramblings.com/2010/07/19/interesting-information-security-bits-for-07192010/</link>
		<comments>http://www.infosecramblings.com/2010/07/19/interesting-information-security-bits-for-07192010/#comments</comments>
		<pubDate>Mon, 19 Jul 2010 13:26:45 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[iisb]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=2294</guid>
		<description><![CDATA[Good afternoon everybody! I hope your day is going well.
Here are today's Interesting Information Security Bits from around the web.

The 1st 2010 challenge from Panda is up.
Panda Challenge 2010 Edition: 1st challenge up! &#124; PandaLabs Blog
Tags: ( challenge panda )
Malware is very tricky in how it makes itself available across reboots. This post points out [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Good afternoon everybody! I hope your day is going well.</p>
<p>Here are today's Interesting Information Security Bits from around the web.</p>
<ol>
<li>The 1st 2010 challenge from Panda is up.<br />
<a href="http://bit.ly/9Mzmms" target="_blank">Panda Challenge 2010 Edition: 1st challenge up! | PandaLabs Blog</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/challenge" target="_blank">challenge</a> <a href="http://delicious.com/rigginsk/panda" target="_blank">panda</a> )</li>
<li>Malware is very tricky in how it makes itself available across reboots. This post points out yet another way it does so.<br />
<a href="http://bit.ly/aOr0il" target="_blank">M-unition &gt;&gt; Blog Archive &gt;&gt; Malware Persistence without the Windows Registry</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/malware" target="_blank">malware</a> <a href="http://delicious.com/rigginsk/auto-start" target="_blank">auto-start</a> )</li>
<li>What do Shakespeare and botnets have in common? Lori knows something about both. Take a peek. Good suggestions in here.<br />
<a href="http://bit.ly/dzN4K0" target="_blank">Out, Damn'd Bot! Out, I Say!</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/botnets" target="_blank">botnets</a> )</li>
<li>Ghostnomad uses the cleaning of his kitchen floor tile grout as an analogy for dealing with infosec risk. I like it.<br />
<a href="http://bit.ly/aAsmQv" target="_blank">GhostNomad.com &gt;&gt; Tale of Grout</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/risk-management" target="_blank">risk-management</a> )</li>
<li>Mark has a list of 10 crazy ideas that he thinks might just change the state of the information security industry. Check it out.<br />
<a href="http://bit.ly/9nk2rX" target="_blank">Curphey 2.0 &gt;&gt; 10 Crazy Ideas That Might Just Change the State of the Security Industry</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/general" target="_blank">general</a> )</li>
</ol>
<p>That's it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2010/07/19/interesting-information-security-bits-for-07192010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interesting Information Security Bits for 07/13/2010</title>
		<link>http://www.infosecramblings.com/2010/07/13/interesting-information-security-bits-for-07132010/</link>
		<comments>http://www.infosecramblings.com/2010/07/13/interesting-information-security-bits-for-07132010/#comments</comments>
		<pubDate>Wed, 14 Jul 2010 01:09:04 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[iisb]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=2277</guid>
		<description><![CDATA[Here are today's Interesting Information Security Bits from around the web.

Anton is looking for some feedback from you for the 2010 version of the SANS Top 5 Essential Log Reports. Go help him out.
Anton Chuvakin Blog - "Security Warrior": SANS Top 5 Essential Log Reports Update!
Tags: ( logging )
Another great response to a good question [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Here are today's Interesting Information Security Bits from around the web.</p>
<ol>
<li>Anton is looking for some feedback from you for the 2010 version of the SANS Top 5 Essential Log Reports. Go help him out.<br />
<a href="http://bit.ly/aEdmhL" target="_blank">Anton Chuvakin Blog - "Security Warrior": SANS Top 5 Essential Log Reports Update!</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/logging" target="_blank">logging</a> )</li>
<li>Another great response to a good question from Mike and Lee. It covers compensation negotiation for a new gig.<br />
<a href="http://bit.ly/btILj5" target="_blank">Career Advice Tuesday - "Advice on Negotiating Compensation" | Information Security Leaders</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/career" target="_blank">career</a> <a href="http://delicious.com/rigginsk/negotiation" target="_blank">negotiation</a> )</li>
<li>Looks like AppSec USA 2010 has been announced.<br />
<a href="http://bit.ly/aLS00X" target="_blank">The Ashimmy Blog: AppSec USA 2010, September 7 to 10 at the University of California at Irvine</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/owasp" target="_blank">owasp</a> <a href="http://delicious.com/rigginsk/conferences" target="_blank">conferences</a> <a href="http://delicious.com/rigginsk/appsec" target="_blank">appsec</a> )</li>
<li>Rich has posted a sneak peek at some of the data from the Data Security Survey that Securosis has been running. Interesting stuff. There is still time to contribute if you haven't yet.<br />
<a href="http://bit.ly/aX9i1Z" target="_blank">Securosis Blog | Preliminary Results from the Data Security Survey</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/data" target="_blank">data</a> )</li>
<li>HTML 5 is cool and has nifty things like local storage, but beware, there are some things to think about from an information security perspective. Check out Michael's post for a few items.<br />
<a href="http://bit.ly/cQGmBD" target="_blank">...Application Security...: HTML5, Local Storage, and XSS</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/html5" target="_blank">html5</a> )</li>
</ol>
<p>That's it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2010/07/13/interesting-information-security-bits-for-07132010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interesting Information Security Bits for 07/12/2010</title>
		<link>http://www.infosecramblings.com/2010/07/12/interesting-information-security-bits-for-07122010/</link>
		<comments>http://www.infosecramblings.com/2010/07/12/interesting-information-security-bits-for-07122010/#comments</comments>
		<pubDate>Mon, 12 Jul 2010 14:31:04 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[iisb]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=2275</guid>
		<description><![CDATA[Hello everybody. This post brings us up-to-date on the bits posts from my time off over the few couple weeks. See how dedicated I am to you, my faithful readers. While tempted, I didn't click 'mark all read'  
Here are today's Interesting Information Security Bits from around the web.

While I agree in spirit with [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Hello everybody. This post brings us up-to-date on the bits posts from my time off over the few couple weeks. See how dedicated I am to you, my faithful readers. While tempted, I didn't click 'mark all read' <img src='http://www.infosecramblings.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>Here are today's Interesting Information Security Bits from around the web.</p>
<ol>
<li>While I agree in spirit with @shrdlu's thoughts, in practice, regulatory requirements get in the way really quickly. I will say there appears to be some things brewing on the horizon that will make this easier...hopefully.<br />
<a href="http://bit.ly/ccCEVK" target="_blank">Layer 8 - Crazy talk.</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/mobile" target="_blank">mobile</a> )</li>
<li>Rich offers three tips to help us simplify our DLP implementation.<br />
<a href="http://bit.ly/bmMjcO" target="_blank">Securosis Blog | Top 3 Steps to Simplify DLP Without Compromise</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/dlp" target="_blank">dlp</a> )</li>
<li>Shrdlu has taken on the topic of exceptions to policy. Very good stuff. Go read it.<br />
<a href="http://bit.ly/9zy7yt" target="_blank">The exception IS the rule.</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/policy" target="_blank">policy</a> )</li>
<li>Want to do some malware reverse-engineering, but don't have the tools? Check out REMnux.<br />
<a href="http://bit.ly/95GIY0" target="_blank">REMnux: A Linux Distribution For Reverse-Engineering Malware | Darknet - The Darkside</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/reverse-engineering" target="_blank">reverse-engineering</a> <a href="http://delicious.com/rigginsk/malware" target="_blank">malware</a> )</li>
<li>In what I think is the first in a series of posts about local infosec get to-gethers in various cities, InfosecEvents covers New York City. A very nice list.<br />
<a href="http://bit.ly/9BYwl0" target="_blank">New York City Security Community | Infosec Events</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/meetings" target="_blank">meetings</a> )</li>
<li>Mexico's new Data Protection Law is now in effect.<br />
<a href="http://bit.ly/d9s8nn" target="_blank">Mexico's Data Protection Law Now in Effect : Privacy &amp; Information Security Law Blog</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/privacy" target="_blank">privacy</a> <a href="http://delicious.com/rigginsk/mexico" target="_blank">mexico</a> <a href="http://delicious.com/rigginsk/legistation" target="_blank">legistation</a> )</li>
<li>Very cool.  A new feature in Metasploit, called railgun, was released about a month ago. Windows API calls without custom DLLs. Neat.<br />
<a href="http://bit.ly/9XOBIl" target="_blank">Room362.com - Blog - Intro to RailGun: WIN API for Meterpreter</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/metasploit" target="_blank">metasploit</a> )</li>
<li>Interesting way to prevent your screen saver from kicking in. Granted there are very limited cases when you want this to happen, but I can think of some sneaky reasons to do it.<br />
<a href="http://bit.ly/94mAHo" target="_blank">/dev/random &gt;&gt; How to Prevent the Windows Screensaver Autolock Feature?</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/tricks" target="_blank">tricks</a> )</li>
</ol>
<p>That's it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2010/07/12/interesting-information-security-bits-for-07122010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interesting Information Security Bits for 07/09/2010</title>
		<link>http://www.infosecramblings.com/2010/07/08/interesting-information-security-bits-for-07092010/</link>
		<comments>http://www.infosecramblings.com/2010/07/08/interesting-information-security-bits-for-07092010/#comments</comments>
		<pubDate>Fri, 09 Jul 2010 01:47:44 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[iisb]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=2271</guid>
		<description><![CDATA[Thought for the day: "“You know, it would be better if you would get  more coachable.” ~ Coach Bill Starr
Ever had the opportunity to learn from somebody, but you didn't because you weren't coachable? You said you were ready to learn something, but you ended up not paying attention or arguing with the individual [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Thought for the day: "“You know, it would be better if you would get  more coachable.” ~ Coach Bill Starr</p>
<p>Ever had the opportunity to learn from somebody, but you didn't because you weren't coachable? You said you were ready to learn something, but you ended up not paying attention or arguing with the individual you are trying to learn from.</p>
<p>I've been that person before and probably will be again, but boy do I work hard to be coachable now.</p>
<p>We should all strive to be a sponge when those with more knowledge than us deign to share it. Otherwise, we should just let them get on with more important things than trying to put up with us wasting their time.</p>
<p>Here are today's Interesting Information Security Bits from around the web.</p>
<ol>
<li>Split-horizon assessment, i.e. audience dependent reporting. Interesting concept. rybolov is looking for thoughts on this idea. Go offer yours.<br />
<a href="http://bit.ly/9HApiQ" target="_blank">Split-Horizon Assessments and the Oversight Effect | The Guerilla CISO</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/security-assessment" target="_blank">security-assessment</a> )</li>
<li>If you must ask these 7 questions as an interviewer, then you need to be able to answer them as an interviewee.<br />
<a href="http://bit.ly/bfmQcx" target="_blank">The 7 Interview Questions You Must Ask | BNET</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/career" target="_blank">career</a> <a href="http://delicious.com/rigginsk/interviewing" target="_blank">interviewing</a> )</li>
<li>Looking for some penetration testing tools written in Python? Look no further. Here is an awesome list.<br />
<a href="http://bit.ly/cm6G3P" target="_blank">Dirk Loss: Python tools for penetration testers</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/pentesting" target="_blank">pentesting</a> <a href="http://delicious.com/rigginsk/tools" target="_blank">tools</a> <a href="http://delicious.com/rigginsk/python" target="_blank">python</a> )</li>
<li>This is a nice post about cloud security for Federal IT. It also contains a pointer to a nice whitepaper on cloud security considerations for the rest of us. Take peek.<br />
<a href="http://bit.ly/cbwXLa" target="_blank">Cloud Computing: Benefits and Risks of Moving Federal IT into the Cloud - Roger's Security Blog - Site Home - TechNet Blogs</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/cloud" target="_blank">cloud</a> )</li>
<li>If you ever wanted to run an SSH honeypot, check out Andrew's post on Kippo.<br />
<a href="http://bit.ly/a1zvsH" target="_blank">Starting with Kippo &lt;&lt; Infosanity's Blog</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/honeypost" target="_blank">honeypost</a> <a href="http://delicious.com/rigginsk/ssh" target="_blank">ssh</a> <a href="http://delicious.com/rigginsk/tools" target="_blank">tools</a> )</li>
<li>Here is a handy post if you ever need to compile the OSSEC Windows agent on a Windows platform.<br />
<a href="http://bit.ly/dzoVsS" target="_blank">Immutable Security &gt;&gt; Compiling the OSSEC Windows Agent on Windows</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/ossec" target="_blank">ossec</a> )</li>
<li>Here are 10 things you can do to make your WordPress install a bit more secure.<br />
<a href="http://bit.ly/9nof0d" target="_blank">10 Useful WordPress Security Tweaks - Smashing Magazine</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/wordpress" target="_blank">wordpress</a> )</li>
</ol>
<p>That's it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2010/07/08/interesting-information-security-bits-for-07092010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interesting Information Security Bits for 07/06/2010</title>
		<link>http://www.infosecramblings.com/2010/07/06/interesting-information-security-bits-for-07062010/</link>
		<comments>http://www.infosecramblings.com/2010/07/06/interesting-information-security-bits-for-07062010/#comments</comments>
		<pubDate>Wed, 07 Jul 2010 02:26:39 +0000</pubDate>
		<dc:creator>kriggins</dc:creator>
				<category><![CDATA[Interesting Bits]]></category>
		<category><![CDATA[iisb]]></category>

		<guid isPermaLink="false">http://www.infosecramblings.com/?p=2260</guid>
		<description><![CDATA[Here are today's Interesting Information Security Bits from around the web.

All sorts of interesting posts about executives popping up. Mike has a different perspective regarding executives than Jack does, but he does offer some suggestions on how to work with executives that are valuable either way.
Securosis Blog &#124; Know Your Adversary
Tags: ( general )
I pointed [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Here are today's Interesting Information Security Bits from around the web.</p>
<ol>
<li>All sorts of interesting posts about executives popping up. Mike has a different perspective regarding executives than Jack does, but he does offer some suggestions on how to work with executives that are valuable either way.<br />
<a href="http://bit.ly/95KMGU" target="_blank">Securosis Blog | Know Your Adversary</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/general" target="_blank">general</a> )</li>
<li>I pointed to Jack Freund's post yesterday about executives not being stupid. Jay has taken that post as a launching pad for a post on decision making. As he says, "Once they [we] realize that there is a process, however informal, they [we] may begin to influence change." Cool stuff.<br />
<a href="http://bit.ly/9uHt2U" target="_blank">Supporting the Decision Process &lt;&lt; Behavioral Security</a><br />
Tags: ( <a href="http://delicious.com/rigginsk/thinking" target="_blank">thinking</a> <a href="http://delicious.com/rigginsk/decisions" target="_blank">decisions</a> <a href="http://delicious.com/rigginsk/general" target="_blank">general</a> )</li>
</ol>
<p>That's it for today.  Have fun!</p>
<p>Subscribe to my <a href="http://feeds2.feedburner.com/InfosecRamblings" target="_blank">RSS Feed</a> if you enjoy these daily Interesting Bits posts.</p>
<p>Kevin</p>
]]></content:encoded>
			<wfw:commentRss>http://www.infosecramblings.com/2010/07/06/interesting-information-security-bits-for-07062010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
