<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:series="http://unfoldingneurons.com/"
	>

<channel>
	<title>InfoSec Tools, Tips &#38; Thoughts &#187; Tools</title>
	<atom:link href="http://infosec3t.com/category/tools/feed/" rel="self" type="application/rss+xml" />
	<link>http://infosec3t.com</link>
	<description>Exploring topics in InfoSec and Cyber Security   including  practical approaches to risk management.</description>
	<lastBuildDate>Sat, 12 May 2012 03:05:50 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<meta xmlns="http://www.w3.org/1999/xhtml" name="robots" content="noindex,follow" />
		<item>
		<title>SMB Cyber Security Alliance helps Small Businesses address Cyber Security Risks</title>
		<link>http://infosec3t.com/2011/01/23/smb-cyber-security-alliance-helps-small-businesses-address-cyber-security-risks/</link>
		<comments>http://infosec3t.com/2011/01/23/smb-cyber-security-alliance-helps-small-businesses-address-cyber-security-risks/#comments</comments>
		<pubDate>Sun, 23 Jan 2011 18:33:15 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Compliance]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Users]]></category>
		<category><![CDATA[awareness]]></category>
		<category><![CDATA[fraud]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[risk]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Management]]></category>
		<category><![CDATA[social engineering]]></category>
		<category><![CDATA[threat]]></category>
		<category><![CDATA[training]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=2397</guid>
		<description><![CDATA[Across all industries, small businesses are increasingly facing new threats related to cyber security. Whereas some have taken minimum steps to address these threats but most have not. New security threats and incidents are reported every day in news reports and a many remain unreported. This underscores the need for cyber security education of small [...]]]></description>
			<content:encoded><![CDATA[<p>Across all industries, small businesses are increasingly facing new <a href="http://infosec3t.com/tag/threats/" class="st_tag internal_tag" rel="tag" title="Posts tagged with threats">threats</a> related to cyber security. Whereas some have taken minimum steps to address these <a href="http://infosec3t.com/tag/threats/" class="st_tag internal_tag" rel="tag" title="Posts tagged with threats">threats</a> but most have not. New security <a href="http://infosec3t.com/tag/threats/" class="st_tag internal_tag" rel="tag" title="Posts tagged with threats">threats</a> and incidents are reported every day in news reports and a many remain unreported. This underscores the need for cyber security education of small business owners and managers. These <a href="http://infosec3t.com/tag/threats/" class="st_tag internal_tag" rel="tag" title="Posts tagged with threats">threats</a> have potentially serious consequences and could lead to unrecoverable damage to small businesses.</p>
<p><strong>What are some consequences of the lack of basic cyber security controls?</strong></p>
<ul>
<li>Loss or stolen customer data<a href="http://infosec3t.com/wp-content/uploads/2011/01/logolarge.jpg"><img class="alignright size-medium wp-image-2398" title="SMB Cyber Security Alliance" src="http://infosec3t.com/wp-content/uploads/2011/01/logolarge-300x108.jpg" alt="" width="270" height="97" /></a></li>
<li>Loss of intellectual property</li>
<li>Decreased productivity</li>
<li>Legal liability</li>
<li>Regulatory sanctions and fines</li>
<li>Computer systems downtime</li>
<li>Loss of reputation and customer confidence</li>
<li>Loss of revenue</li>
<li>Banking Fraud</li>
</ul>
<p><strong>Could this happen to you?</strong></p>
<p>It is very important to understand that neither size nor industry guarantees protection from an attack. The use of computer systems and the Internet makes you vulnerable to attacks and other threats.</p>
<p>A 2010 survey conducted by the Ponemon Institute and Guardian Analytics of over 500 SMBs surfaced these alarming statistics:</p>
<ul>
<li><strong>55%</strong> experienced a fraud attack in the last year</li>
<li><strong>58%</strong> of the incidents involved online banking</li>
<li>Over <strong>50%</strong> experienced multiple incidents</li>
<li><strong>87%</strong> failed to fully recover lost funds</li>
</ul>
<p><strong>You are not a big, well known business. Why would anyone attack you?</strong></p>
<p>While it might be the case that well trained hackers are not very interested in your small company, most online attacks aren&#8217;t carried out by expert hackers. Attacks are perpetrated by low-skilled, common criminals with access to pre-packaged hacking <a href="http://infosec3t.com/tag/tools/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Tools">tools</a>, thereby casting a wide net in hopes of finding an unprotected computer system or network. These <a href="http://infosec3t.com/tag/tools/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Tools">tools</a> are easy to use and readily available on the Internet, often times free of charge. The anonymity of a cyber attack makes it even more attractive to criminals. Many attackers use safe havens in foreign countries which do not have strong cyber crime laws.</p>
<p>Malicious <a href="http://infosec3t.com/tag/software/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Software">software</a> like viruses, worms, trojan horses, spam, bots are all vectors of cyber attacks that are indiscriminately spreading across the Internet. These attacks don&#8217;t only target your small business computer systems but also seek to use your unprotected systems to launch attack on others.</p>
<p><strong>Hasn&#8217;t IT guy(s) already dealt with this issue?</strong></p>
<p>Although cyber security includes traditional &#8220;IT&#8221;related issues, it primarily focuses on protecting your valuable information from all threats including physical attacks, data corruption, equipment failure, social engineering, and bad security choices due to insufficient security awareness education. Effective cyber <a href="http://infosec3t.com/tag/security-management/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Security Management">security management</a> requires specific training related to threats, vulnerabilities, and risks affecting computer systems, business operational processes, and most importantly you and your employees. One&#8217;s security problems cannot be addressed solely by off the shelf products. Security must be addressed in the boardroom before it is addressed in the computer room.</p>
<p><strong>What are the benefits and cost of cyber security?</strong></p>
<p>Besides avoiding some of the devastating consequences mentioned earlier, good security is simply good business. It does far more than increase customer confidence and protects the integrity of your businesses brand. A secure business increases customer confidence, loyalty and adds to the businesses bottom line.</p>
<p>Responsible businesses understand that risk management mandates that all threats, including cyber threats, be assessed and managed to protect the business, employees and customers.</p>
<p>The potential cost of inaction far outweighs the cost of action. Analyzing your businesses risks allows you to weigh the costs and benefits and make informed decisions.</p>
<p><strong>Where do you start? Where can you get help?</strong></p>
<p>Although improving your security may seem a daunting task, it doesn&#8217;t have to be. Increasing cyber security awareness helps small and medium sized businesses proactively implement simple best practices to protect their businesses. Security should be built into your business processes, information technology (IT), and most importantly your employees and contractors. Each business is unique and faces challenges particular to their operations. There is no magic pill that guarantees 100% security. The SMB Cyber Security Alliance have security experts available to help you understand your unique risks and implement solutions that work your your particular business environment.</p>
<p><strong>Visit us today and sign up for your free membership at http://www.smbcybersecurity.org</strong></p>
<p>The SMB Cyber Security Alliance is volunteer-run organization seeking to increase cyber security awareness in small business communities through education, awareness training, free resources and consultations, and active engagements between small business owners and local security professionals.</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/02/08/defend-your-small-business-against-online-bank-fraud/' rel='bookmark' title='Defend your Small Business against Online Bank Fraud'>Defend your Small Business against Online Bank Fraud</a> <small>Is your banking practices putting your business at risk? Protect...</small></li>
<li><a href='http://infosec3t.com/2010/07/08/security-on-a-shoestring-smb-budget/' rel='bookmark' title='Security On A Shoestring SMB Budget'>Security On A Shoestring SMB Budget</a> <small>The e-mail appeared to be an invitation from an old,...</small></li>
<li><a href='http://infosec3t.com/2010/02/01/facebook-poses-biggest-security-threat-to-businesses/' rel='bookmark' title='Facebook poses biggest security threat to businesses'>Facebook poses biggest security threat to businesses</a> <small>According to it&#8217;s  Security Threats 2010 report published today, security...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2011/01/23/smb-cyber-security-alliance-helps-small-businesses-address-cyber-security-risks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Metasploit 3.4.0 Hacking Framework Released – Over 100 New Exploits Added</title>
		<link>http://infosec3t.com/2010/05/20/metasploit-3-4-0-hacking-framework-released-%e2%80%93-over-100-new-exploits-added/</link>
		<comments>http://infosec3t.com/2010/05/20/metasploit-3-4-0-hacking-framework-released-%e2%80%93-over-100-new-exploits-added/#comments</comments>
		<pubDate>Thu, 20 May 2010 17:24:06 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[exploits]]></category>
		<category><![CDATA[Hacking]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=2203</guid>
		<description><![CDATA[Metasploit provides useful information and tools for penetration testers, security researchers, and IDS signature developers. This project was created to provide information on exploit techniques and to create a functional knowledgebase for exploit developers and security professionals. Update Summary Metasploit now has 551 exploit modules and 261 auxiliary modules (from 445 and 216 respectively in [...]]]></description>
			<content:encoded><![CDATA[<p>Metasploit provides useful information and <a href="http://infosec3t.com/tag/tools/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Tools">tools</a> for penetration testers, <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> researchers, and IDS signature developers. This project was created to provide information on exploit techniques and to create a functional knowledgebase for exploit developers and <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> professionals.</p>
<p><strong>Update Summary</strong></p>
<ul>
<li>Metasploit now has 551 exploit modules and 261 auxiliary modules (from 445 and 216 respectively in v3.3)</li>
<li>Metasploit is still about twice the size of the nearest Ruby application according to Ohloh.net (400K lines of Ruby)</li>
<li>Over 100 tickets were closed since the last point release and over 200 since v3.3</li>
</ul>
<p>The full release notes can be found  <a href="http://www.metasploit.com/redmine/projects/framework/wiki/Release_Notes_34" target="_blank">here</a>.</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/01/22/cissp-all-in-one-book-fifth-edition-has-been-released/' rel='bookmark' title='CISSP All In One Book FIFTH EDITION has been released'>CISSP All In One Book FIFTH EDITION has been released</a> <small>The fifth edition of this best-selling comprehensive CISSP training resources...</small></li>
<li><a href='http://infosec3t.com/2010/01/12/backtrack-4-final-released/' rel='bookmark' title='Backtrack 4 Final Released!!'>Backtrack 4 Final Released!!</a> <small>Backtrack is a linux-based penetration testing suite of tools  used...</small></li>
<li><a href='http://infosec3t.com/2010/01/26/2010-cybersecurity-watch-survey/' rel='bookmark' title='2010 CyberSecurity Watch Survey'>2010 CyberSecurity Watch Survey</a> <small>Cybercrime threats posed to targeted organizations are increasing faster than...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/05/20/metasploit-3-4-0-hacking-framework-released-%e2%80%93-over-100-new-exploits-added/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Skipfish-Web Scanning Security Tool from Google</title>
		<link>http://infosec3t.com/2010/03/23/skipfish-web-scanning-security-tool-from-google/</link>
		<comments>http://infosec3t.com/2010/03/23/skipfish-web-scanning-security-tool-from-google/#comments</comments>
		<pubDate>Tue, 23 Mar 2010 18:59:59 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[scanner]]></category>
		<category><![CDATA[security holes]]></category>
		<category><![CDATA[tool]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=1989</guid>
		<description><![CDATA[Google has released an open-source Web security scanner called Skipfish that is designed to allow people to scan Web applications for security holes. The tool scans a Web application for flaws including &#8220;tricky scenarios&#8221; such as blind SQL or XML injection, Google developer Michal Zalewski said in the Skipfish wiki. Skipfish prepares a site map [...]]]></description>
			<content:encoded><![CDATA[<div>
<p><img class="alignright size-full wp-image-710" title="google" src="http://infosec3t.com/wp-content/uploads/2010/01/google.jpg" alt="" width="106" height="40" /><a href="http://infosec3t.com/tag/google/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Google">Google</a> has released an open-source Web <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> <a href="http://infosec3t.com/tag/scanner/" class="st_tag internal_tag" rel="tag" title="Posts tagged with scanner">scanner</a> called Skipfish that is designed to allow people to scan Web applications for <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> holes.</p>
<p>The tool scans a Web application for flaws including &#8220;tricky scenarios&#8221; such as blind SQL or XML injection, Google developer Michal Zalewski said <strong><a href="http://code.google.com/p/skipfish/wiki/SkipfishDoc" target="_blank">in the Skipfish wiki</a></strong>.</p>
<p>Skipfish prepares a site map annotated with interactive crawl results, highlighting flaws, after a recursive crawl and dictionary-based probing of the target site. The tool can also generate a final report that can be used as a basis for a security assessment.</p>
<p><strong></strong><strong>Read more</strong> of &#8220;<a href="http://www.zdnet.co.uk/news/security-management/2010/03/22/google-releases-skipfish-web-security-scanner-40088391/" target="_blank">Google releases Skipfish Web-security scanner</a>&#8221; at ZDNet UK.</p>
</div>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/06/01/pause-your-google-history/' rel='bookmark' title='Pause your Google History'>Pause your Google History</a> <small>Have you ever used your Google search history? If you...</small></li>
<li><a href='http://infosec3t.com/2010/01/29/lynis-security-and-system-auditing-tool/' rel='bookmark' title='Lynis &#8211; Security and System Auditing Tool'>Lynis &#8211; Security and System Auditing Tool</a> <small>Lynis is an auditing tool for Unix (specialists). It scans...</small></li>
<li><a href='http://infosec3t.com/2010/01/04/virtual-networking-and-security-training-tool/' rel='bookmark' title='Virtual Networking and Security Training Tool'>Virtual Networking and Security Training Tool</a> <small>As someone who works in an environment where I have...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/03/23/skipfish-web-scanning-security-tool-from-google/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SAHI – Web Automation &amp; Application Security Testing Tool</title>
		<link>http://infosec3t.com/2010/03/08/sahi-%e2%80%93-web-automation-application-security-testing-tool/</link>
		<comments>http://infosec3t.com/2010/03/08/sahi-%e2%80%93-web-automation-application-security-testing-tool/#comments</comments>
		<pubDate>Mon, 08 Mar 2010 18:09:18 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Application Security]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[tool]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=1781</guid>
		<description><![CDATA[Sahi is an automation tool to test web applications. Sahi injects javascript into web pages using a proxy and the javascript helps automate web applications. Sahi is an open source testing tool for web applications, with the facility to record and playback scripts. Developed in Java, C and Javascript, this tool uses simple Javascript to [...]]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-medium wp-image-1782" title="3SahiController" src="http://infosec3t.com/wp-content/uploads/2010/03/3SahiController-221x300.png" alt="" width="221" height="300" />Sahi is an automation <a href="http://infosec3t.com/tag/tool/" class="st_tag internal_tag" rel="tag" title="Posts tagged with tool">tool</a> to test web applications. Sahi injects javascript into web pages using a proxy and the javascript helps automate web applications.</p>
<p>Sahi is an <a href="http://infosec3t.com/tag/open-source/" class="st_tag internal_tag" rel="tag" title="Posts tagged with open source">open source</a> testing tool for web applications, with the facility to record and playback scripts. Developed in Java, C and Javascript, this tool uses simple Javascript to execute events in the browser.</p>
<p>Features:</p>
<p>In-browser controls<br />
Intelligent recorder<br />
Text-based scripts<br />
Ant support for playback of suites of tests<br />
Multi-threaded playback from a command line<br />
HTTP and HTTPS support<br />
AJAX support</p>
<p>Sahi runs as a proxy server which intercepts traffic from the web browser and records the web browsing actions. Sahi can play back those recorded actions by injecting Javascript into the browser so it can access elements in the web page. This makes the tool independent of the website/ web application.</p>
<p>Read more and download it here:</p>
<p><a href="http://www.darknet.org.uk/2010/03/sahi-web-automation-application-security-testing-tool/" target="_blank">http://www.darknet.org.uk/2010/03/sahi-web-automation-application-security-testing-tool/</a></p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/02/03/google-informs-users-of-terminination-of-support-frr-ie6/' rel='bookmark' title='Google Informs users of terminination of support for IE6'>Google Informs users of terminination of support for IE6</a> <small>I received this email from the good offices of Google...</small></li>
<li><a href='http://infosec3t.com/2010/03/23/skipfish-web-scanning-security-tool-from-google/' rel='bookmark' title='Skipfish-Web Scanning Security Tool from Google'>Skipfish-Web Scanning Security Tool from Google</a> <small>Google has released an open-source Web security scanner called Skipfish...</small></li>
<li><a href='http://infosec3t.com/2010/01/25/web-application-security-testing-white-paper/' rel='bookmark' title='Web Application Security Testing White Paper'>Web Application Security Testing White Paper</a> <small>The need to provide web security and defend web applications...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/03/08/sahi-%e2%80%93-web-automation-application-security-testing-tool/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>keimpx – New Open Source SMB Credential Scanner</title>
		<link>http://infosec3t.com/2010/02/25/keimpx-%e2%80%93-new-open-source-smb-credential-scanner/</link>
		<comments>http://infosec3t.com/2010/02/25/keimpx-%e2%80%93-new-open-source-smb-credential-scanner/#comments</comments>
		<pubDate>Fri, 26 Feb 2010 02:04:12 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[open source]]></category>
		<category><![CDATA[scanner]]></category>
		<category><![CDATA[tool]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=1613</guid>
		<description><![CDATA[keimpx is an open source tool, released under a modified version of Apache License 1.1. It can be used to quickly check for the usefulness of credentials across a network over SMB. Credentials can be: Combination of user / plain-text password. Combination of user / NTLM hash. Combination of user / NTLM logon session token. [...]]]></description>
			<content:encoded><![CDATA[<p>keimpx is an <a href="http://infosec3t.com/tag/open-source/" class="st_tag internal_tag" rel="tag" title="Posts tagged with open source">open source</a> <a href="http://infosec3t.com/tag/tool/" class="st_tag internal_tag" rel="tag" title="Posts tagged with tool">tool</a>, released under a modified version of Apache License 1.1. It can be used to quickly check for the usefulness of credentials across a network over SMB. Credentials can be:</p>
<ul>
<li>Combination of user / plain-text password.</li>
<li>Combination of user / NTLM hash.</li>
<li>Combination of user / NTLM logon session token.</li>
</ul>
<p>If any valid credentials has been discovered across the network after its attack phase, the user is asked to choose which host to connect to and which valid credentials to use, then he will be prompted with an interactive SMB shell where the user can:</p>
<ul>
<li>Spawn an interactive command prompt.</li>
<li>Navigate through the remote SMB shares: list, upload, download files, create, remove files, etc.</li>
<li>Deploy and undeploy his own service, for instance, a backdoor listening on a TCP port for incoming connections.</li>
<li>List users details, domains and password policy.</li>
</ul>
<p>You can download keimpx 0.2 here:</p>
<p><a href="http://keimpx.googlecode.com/files/keimpx-0.2.zip">keimpx-0.2.zip</a></p>
<p>source: http://www.darknet.org.uk/2010/02/keimpx-open-source-smb-credential-<a href="http://infosec3t.com/tag/scanner/" class="st_tag internal_tag" rel="tag" title="Posts tagged with scanner">scanner</a>/</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/01/30/100-open-source-security-tools/' rel='bookmark' title='100+ Open Source Security Tools'>100+ Open Source Security Tools</a> <small>Security testing  or assessment is a process to determine that...</small></li>
<li><a href='http://infosec3t.com/2010/02/08/5-open-source-alternatives-to-microsoft-office/' rel='bookmark' title='5 Open Source Alternatives to Microsoft Office'>5 Open Source Alternatives to Microsoft Office</a> <small>The Microsoft Office productivity suite has risen to become the...</small></li>
<li><a href='http://infosec3t.com/2010/01/26/2010-cybersecurity-watch-survey/' rel='bookmark' title='2010 CyberSecurity Watch Survey'>2010 CyberSecurity Watch Survey</a> <small>Cybercrime threats posed to targeted organizations are increasing faster than...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/02/25/keimpx-%e2%80%93-new-open-source-smb-credential-scanner/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Free Blocking Tool to Stop Drive-By Malware Downloads</title>
		<link>http://infosec3t.com/2010/02/22/free-blocking-tool-to-stop-drive-by-malware-downloads/</link>
		<comments>http://infosec3t.com/2010/02/22/free-blocking-tool-to-stop-drive-by-malware-downloads/#comments</comments>
		<pubDate>Tue, 23 Feb 2010 02:41:43 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[exploits]]></category>
		<category><![CDATA[malicious Web site]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[tool]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=1584</guid>
		<description><![CDATA[The threat of drive-by downloads is very significant as users can get infected just by visiting a compromised or malicious web site. Often, hackers would compromise a web server which would allow them access to all viewers of the web sites hosted on that server. This download of malicious code happens in the background and [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://infosec3t.com/wp-content/uploads/2010/02/blade.jpg"><img class="alignright size-full wp-image-1583" title="blade" src="http://infosec3t.com/wp-content/uploads/2010/02/blade.jpg" alt="" width="100" height="100" /></a>The <a href="http://infosec3t.com/tag/threat/" class="st_tag internal_tag" rel="tag" title="Posts tagged with threat">threat</a> of drive-by downloads is very significant as users can get infected just by visiting a compromised or <a href="http://infosec3t.com/tag/malicious-web-site/" class="st_tag internal_tag" rel="tag" title="Posts tagged with malicious Web site">malicious web site</a>. Often, hackers would compromise a web server which would allow them access to all viewers of the web sites hosted on that server. This download of malicious code happens in the background and aren&#8217;t to unsuspecting users.</p>
<p>Researchers are preparing to release a free <a href="http://infosec3t.com/tag/tool/" class="st_tag internal_tag" rel="tag" title="Posts tagged with tool">tool</a> to stop &#8220;drive-by&#8221; downloads. The new <a href="http://infosec3t.com/tag/tool/" class="st_tag internal_tag" rel="tag" title="Posts tagged with tool">tool</a>, called BLADE (Block All Drive-By Download <a href="http://infosec3t.com/tag/exploits/" class="st_tag internal_tag" rel="tag" title="Posts tagged with exploits">Exploits</a>), stops downloads that are initiated without the user&#8217;s consent.</p>
<p>Read Full Article: <a href="http://www.technologyreview.com/computing/24632/?a=f" target="_blank">http://www.technologyreview.com/computing/24632/?a=f</a></p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/03/01/united-states-department-of-defense-embraces-hacker-certification/' rel='bookmark' title='United States Department of Defense Embraces Hacker Certification'>United States Department of Defense Embraces Hacker Certification</a> <small>Mar 01, 2010 – The U.S. Department of Defense (DoD)...</small></li>
<li><a href='http://infosec3t.com/2010/01/29/lynis-security-and-system-auditing-tool/' rel='bookmark' title='Lynis &#8211; Security and System Auditing Tool'>Lynis &#8211; Security and System Auditing Tool</a> <small>Lynis is an auditing tool for Unix (specialists). It scans...</small></li>
<li><a href='http://infosec3t.com/2010/02/23/company-develops-virtualized-usb-key-for-online-banking-safety/' rel='bookmark' title='Company develops Virtualized USB key for Online Banking Safety'>Company develops Virtualized USB key for Online Banking Safety</a> <small>IronKey has come up with a USB drive that can...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/02/22/free-blocking-tool-to-stop-drive-by-malware-downloads/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Live Hacking CD based on Ubuntu?? Get out!!</title>
		<link>http://infosec3t.com/2010/02/12/live-hacking-cd-based-on-ubuntu-get-out/</link>
		<comments>http://infosec3t.com/2010/02/12/live-hacking-cd-based-on-ubuntu-get-out/#comments</comments>
		<pubDate>Fri, 12 Feb 2010 23:14:50 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Wireless]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[tool]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=1514</guid>
		<description><![CDATA[Dr. Ali Jahangiri, the well known security expert and author of Live Hacking: The Ultimate Guide to Hacking Techniques &#38; Countermeasures for Ethical Hackers &#38; IT Security Experts, is pleased to announce the launch of the Live Hacking CD, a new Linux distribution designed for ethical hacking. The Live Hacking CD contains the tools and [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.alijahangiri.org/"><img class="alignright size-full wp-image-1515" title="Live-Hacking-CD_Small" src="http://infosec3t.com/wp-content/uploads/2010/02/Live-Hacking-CD_Small.gif" alt="" width="176" height="185" />Dr. Ali Jahangiri</a>, the well known <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> expert and author of Live <a href="http://infosec3t.com/tag/hacking/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Hacking">Hacking</a>: The Ultimate Guide to <a href="http://infosec3t.com/tag/hacking/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Hacking">Hacking</a> Techniques &amp; Countermeasures for Ethical Hackers &amp; IT Security Experts, is pleased to announce the launch of the Live <a href="http://infosec3t.com/tag/hacking/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Hacking">Hacking</a> CD, a new <a href="http://infosec3t.com/tag/linux/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Linux">Linux</a> distribution designed for ethical <a href="http://infosec3t.com/tag/hacking/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Hacking">hacking</a>. The <a href="http://www.livehacking.com/" target="_blank">Live Hacking CD</a> contains the tools and utilities you need to test and hack your own network but using the tools and techniques that more malicious hackers would use.﻿</p>
<p>Download it here: <a href="http://www.livehacking.com/cd-dvd/download.htm">http://www.livehacking.com/cd-dvd/download.htm</a></p>
<p>Read the full press release here: <a href="http://www.free-press-release-center.info/pr00000000000000065560_security-expert-releases-new-linux-distribution-for-ethical-hacking-and-penetration-testing-introducing-the-live-hacking-cd.html" target="_blank">http://www.free-press-release-center.info</a></p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/01/12/backtrack-4-final-released/' rel='bookmark' title='Backtrack 4 Final Released!!'>Backtrack 4 Final Released!!</a> <small>Backtrack is a linux-based penetration testing suite of tools  used...</small></li>
<li><a href='http://infosec3t.com/2009/12/08/cloud-based-hacking/' rel='bookmark' title='Cloud-based&#8230;hacking??'>Cloud-based&#8230;hacking??</a> <small>I assigned my class a research paper on the security...</small></li>
<li><a href='http://infosec3t.com/2010/02/09/free-episodes-of-hakin9-magazine-posted/' rel='bookmark' title='Free episodes of Hakin9 Magazine posted'>Free episodes of Hakin9 Magazine posted</a> <small>Hakin9 is a source of advanced, practical guidelines regarding the...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/02/12/live-hacking-cd-based-on-ubuntu-get-out/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Black Hat DC 2010 Presentations are now available</title>
		<link>http://infosec3t.com/2010/02/12/black-hat-dc-2010-presentations-are-now-available/</link>
		<comments>http://infosec3t.com/2010/02/12/black-hat-dc-2010-presentations-are-now-available/#comments</comments>
		<pubDate>Fri, 12 Feb 2010 22:45:06 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Tools]]></category>
		<category><![CDATA[Black Hat]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=1505</guid>
		<description><![CDATA[If you couldn&#8217;t afford to make it to Black Hat DC this year, the presentation are now being made available at: http://www.blackhat.com/html/bh-dc-10/bh-dc-10-archives.html Related posts: United States Department of Defense Embraces Hacker Certification Mar 01, 2010 – The U.S. Department of Defense (DoD)... 2010 CyberSecurity Watch Survey Cybercrime threats posed to targeted organizations are increasing faster [...]]]></description>
			<content:encoded><![CDATA[<p><img class="size-full wp-image-1506 alignleft" title="blackhat4" src="http://infosec3t.com/wp-content/uploads/2010/02/blackhat4.jpg" alt="" width="103" height="99" />If you couldn&#8217;t afford to make it to <a title="Black Hat DC -2010 is here!" href="http://infosec3t.com/2010/01/02/black-hat-dc-2010-is-here/">Black Hat DC</a> this year, the presentation are now being made available at:</p>
<p><a href="http://www.blackhat.com/html/bh-dc-10/bh-dc-10-archives.html" target="_blank">http://www.blackhat.com/html/bh-dc-10/bh-dc-10-archives.html</a></p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/03/01/united-states-department-of-defense-embraces-hacker-certification/' rel='bookmark' title='United States Department of Defense Embraces Hacker Certification'>United States Department of Defense Embraces Hacker Certification</a> <small>Mar 01, 2010 – The U.S. Department of Defense (DoD)...</small></li>
<li><a href='http://infosec3t.com/2010/01/26/2010-cybersecurity-watch-survey/' rel='bookmark' title='2010 CyberSecurity Watch Survey'>2010 CyberSecurity Watch Survey</a> <small>Cybercrime threats posed to targeted organizations are increasing faster than...</small></li>
<li><a href='http://infosec3t.com/2009/12/09/more-on-forensics/' rel='bookmark' title='More on Forensics&#8230;'>More on Forensics&#8230;</a> <small>Follow what the NOVA Information Assurance Strike Team is up...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/02/12/black-hat-dc-2010-presentations-are-now-available/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Free episodes of Hakin9 Magazine posted</title>
		<link>http://infosec3t.com/2010/02/09/free-episodes-of-hakin9-magazine-posted/</link>
		<comments>http://infosec3t.com/2010/02/09/free-episodes-of-hakin9-magazine-posted/#comments</comments>
		<pubDate>Tue, 09 Feb 2010 20:19:01 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Wireless]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[hakin9]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=1437</guid>
		<description><![CDATA[Hakin9 is a source of advanced, practical guidelines regarding the latest hacking methods as well as the ways of securing systems, networks and applications. I have provided a few recommended copies to download as pdf. Get them here. Related posts: CISSP All In One Book FIFTH EDITION has been released The fifth edition of this [...]]]></description>
			<content:encoded><![CDATA[<p><a title="Hakin9 Magazine" href="http://infosec3t.com/resources/hakin9-magazine/"><em>Hakin9</em></a> is a source of advanced, practical guidelines regarding the latest <a href="http://infosec3t.com/tag/hacking/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Hacking">hacking</a> methods as well as the ways of securing systems, networks and applications. I have provided a few recommended copies to download as pdf. Get them <a title="Hakin9 Magazine" href="http://infosec3t.com/resources/hakin9-magazine/">here</a>.</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/01/22/cissp-all-in-one-book-fifth-edition-has-been-released/' rel='bookmark' title='CISSP All In One Book FIFTH EDITION has been released'>CISSP All In One Book FIFTH EDITION has been released</a> <small>The fifth edition of this best-selling comprehensive CISSP training resources...</small></li>
<li><a href='http://infosec3t.com/2009/12/09/more-on-forensics/' rel='bookmark' title='More on Forensics&#8230;'>More on Forensics&#8230;</a> <small>Follow what the NOVA Information Assurance Strike Team is up...</small></li>
<li><a href='http://infosec3t.com/2010/01/09/brevity-is-the-soul-of-getting-yourself-infected-with-all-kinds-of-nasties/' rel='bookmark' title='Brevity is the soul of&#8230;..getting yourself infected with all kinds of nasties!'>Brevity is the soul of&#8230;..getting yourself infected with all kinds of nasties!</a> <small>Would you click on the link : http://www.click-here-to-give-me-access-to-all-your-computer-files.com? No? How...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/02/09/free-episodes-of-hakin9-magazine-posted/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Protecting Wireless Network From Hackers and Neighbors</title>
		<link>http://infosec3t.com/2010/02/01/protecting-wireless-network-from-hackers-and-neighbors/</link>
		<comments>http://infosec3t.com/2010/02/01/protecting-wireless-network-from-hackers-and-neighbors/#comments</comments>
		<pubDate>Mon, 01 Feb 2010 17:33:07 +0000</pubDate>
		<dc:creator>Guest Blogger</dc:creator>
				<category><![CDATA[Networking]]></category>
		<category><![CDATA[Wireless]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[threats]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=1229</guid>
		<description><![CDATA[Local wireless networks, which provide information to receive and  send to the Internet, have become part of the houses and offices. Where as it is  less expensive than wired networks and allows for roaming between the two  offices to remain in contact with the electronic devices.]]></description>
			<content:encoded><![CDATA[<p><a href="http://infosec3t.com/wp-content/uploads/2010/02/AP.jpeg"><img class="alignright size-full wp-image-1230" title="AP" src="http://infosec3t.com/wp-content/uploads/2010/02/AP.jpeg" alt="" width="220" height="220" /></a>Local <a href="http://infosec3t.com/tag/wireless/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Wireless">wireless</a> networks, which provide information to receive and send to the <a href="http://infosec3t.com/tag/internet/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Internet">Internet</a>, have become part of the houses and offices. Where as it is less expensive than wired networks and allows for roaming between the two offices to remain in contact with the electronic devices. But experts warn of the penetration it by the strangers or intruders in order to sabotage it.</p>
<p>According to views of the U.S. experts, unsecured homes networks can also be used by the neighbors in order to spam bots download unauthorized material on the rights of the songs and music, and even pornographic material without knowing the owner, which had led to legal proceedings. In particular, it is difficult to identify the person or organization that used the network. One person was detained when he stopped his car in front of a U.S. charitable organization and used its network to communicate with the Internet.</p>
<p>The offices of small businesses were opened that do not have secured internal networks to penetrate the large companies that make business with them; this also is applied to the home network. To overcome the problems the experts proposed to change the passwords on wireless networks from time to time and installation of cryptographic keys to the codes can be changed according to a regular basis. The radio signals can be adjusted so as not to fall outside the walls of the office.</p>
<p>Finally, the use of advanced <a href="http://infosec3t.com/tag/software/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Software">software</a> to scan wireless networks secures the development of local home and office computers &#8220;in the case of the shadows!&#8221;</p>
<p>Author: Shrif S Kassem<br />Article Source: EzineArticles.com<br />Provided by: <a href="http://hippestphone.com/">Latest trends in mobile phone</a></p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/02/01/protect-the-internal-network-from-hackers/' rel='bookmark' title='Protect the Internal Network From Hackers'>Protect the Internal Network From Hackers</a> <small>Attention! All the hackers on the systems of various according...</small></li>
<li><a href='http://infosec3t.com/2010/01/05/beware-of-free-internet-connections/' rel='bookmark' title='Beware of Free Internet Connections'>Beware of Free Internet Connections</a> <small>Many hotels,coffee shops and other such establishments  offer free wireless...</small></li>
<li><a href='http://infosec3t.com/2010/02/21/a-guide-to-computer-security/' rel='bookmark' title='A Guide to Computer Security'>A Guide to Computer Security</a> <small>As the number of people connecting to the Internet continues...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/02/01/protecting-wireless-network-from-hackers-and-neighbors/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>100+ Open Source Security Tools</title>
		<link>http://infosec3t.com/2010/01/30/100-open-source-security-tools/</link>
		<comments>http://infosec3t.com/2010/01/30/100-open-source-security-tools/#comments</comments>
		<pubDate>Sat, 30 Jan 2010 18:57:11 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Wireless]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[non repudiation]]></category>
		<category><![CDATA[open source tools]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security tools]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[training]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=1139</guid>
		<description><![CDATA[Security testing  or assessment is a process to determine that an Information System adequately protects data and maintains intended functionality from the following points: Confidentiality: A security measure which protects against the disclosure of information to parties other than the intended recipient(s). Often ensured by means of encoding, using a defined algorithm and some secret [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">Security</a> testing  or assessment is a process to determine that an Information System adequately protects data and maintains intended functionality from the following points:</p>
<p><strong>Confidentiality</strong>: A security measure which protects against the disclosure of information to parties other than the intended recipient(s). Often ensured by means of encoding, using a defined algorithm and some secret information known only to the originator of the information and the intended recipient(s) (a process known as cryptography) but that is by no means the only way of ensuring confidentiality.</p>
<p><strong>Integrity</strong>: A measure intended to allow the receiver to determine that the information which it receives has not been altered in transit or by other than the originator of the information. Integrity schemes often use some of the same underlying technologies as confidentiality schemes, but they usually involve adding additional information to a communication to form the basis of an algorithmic check rather than encoding all of the communication.</p>
<p><strong>Authentication</strong>: A measure designed to establish the validity of a transmission, message, or originator. It allows a receiver to have confidence that the information it receives originated from a specific known source.</p>
<p><strong>Authorization</strong>: The process of determining that a requester is allowed to receive a service or perform an operation.</p>
<p><strong>Availability</strong>: Assuring information and communications services will be ready for use when expected. Information must be kept available to authorized persons when they need it.</p>
<p><strong>Non-repudiation</strong>: A measure intended to prevent the later denial that an action happened, or a communication took place, etc. In communication terms, this often involves the interchange of authentication information combined with some form of provable time stamp.</p>
<p>I&#8217;ve listed 100+ free and <a href="http://infosec3t.com/tag/open-source/" class="st_tag internal_tag" rel="tag" title="Posts tagged with open source">open source</a> <a href="http://infosec3t.com/tag/tools/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Tools">tools</a> used in security testing <a title="Security Tools" href="http://infosec3t.com/directory/tools/"><strong>here</strong></a>.</p>
<p style="text-align: center;"><img class="aligncenter" title="Dilbert Phishing" src="http://infosec3t.com/wp-content/uploads/2010/01/Dilbert_Phishing_20050812.gif" alt="Dilbert Phishing" width="587" height="183" /></p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/02/25/keimpx-%e2%80%93-new-open-source-smb-credential-scanner/' rel='bookmark' title='keimpx – New Open Source SMB Credential Scanner'>keimpx – New Open Source SMB Credential Scanner</a> <small>keimpx is an open source tool, released under a modified...</small></li>
<li><a href='http://infosec3t.com/2009/12/11/how-many-security-tools-can-you-fit-on-your-key-chain/' rel='bookmark' title='How many security tools can you fit on your key chain?'>How many security tools can you fit on your key chain?</a> <small>When I first started running Ubuntu as my laptop OS...</small></li>
<li><a href='http://infosec3t.com/2010/02/08/5-open-source-alternatives-to-microsoft-office/' rel='bookmark' title='5 Open Source Alternatives to Microsoft Office'>5 Open Source Alternatives to Microsoft Office</a> <small>The Microsoft Office productivity suite has risen to become the...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/01/30/100-open-source-security-tools/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Lynis &#8211; Security and System Auditing Tool</title>
		<link>http://infosec3t.com/2010/01/29/lynis-security-and-system-auditing-tool/</link>
		<comments>http://infosec3t.com/2010/01/29/lynis-security-and-system-auditing-tool/#comments</comments>
		<pubDate>Sat, 30 Jan 2010 03:32:43 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Tools]]></category>
		<category><![CDATA[audit]]></category>
		<category><![CDATA[sarbanes oxley compliance]]></category>
		<category><![CDATA[scanner]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[tool]]></category>
		<category><![CDATA[Unix]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=1135</guid>
		<description><![CDATA[Lynis is an auditing tool for Unix (specialists). It scans the system and available software, to detect security issues. Beside security related information it will also scan for general system information, installed packages and configuration mistakes. This software aims in assisting automated auditing, software patch management, vulnerability and malware scanning of Unix based systems. It [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://rootkit.nl/projects/lynis.html" target="_blank">Lynis</a> is an auditing <a href="http://infosec3t.com/tag/tool/" class="st_tag internal_tag" rel="tag" title="Posts tagged with tool">tool</a> for <a href="http://infosec3t.com/tag/unix/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Unix">Unix</a> (specialists). It scans the system and available software, to detect <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> issues. Beside <a href="http://infosec3t.com/wp-content/uploads/2010/01/tab_system_audit.png"><img class="alignright size-full wp-image-1136" title="tab_system_audit" src="http://infosec3t.com/wp-content/uploads/2010/01/tab_system_audit.png" alt="" width="141" height="87" /></a>security related information it will also scan for general system information, installed packages and configuration mistakes.</p>
<p>This software aims in assisting automated auditing, software patch management, vulnerability and <a href="http://infosec3t.com/tag/malware-attacks/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Malware">malware</a> scanning of Unix based systems. It can be run without prior installation, so inclusion on read only storage is no problem (USB stick, cd/dvd).</p>
<p>Lynis assists auditors in performing Basel II, GLBA, HIPAA, PCI DSS and SOX (Sarbanes-Oxley) compliance audits.</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/01/04/virtual-networking-and-security-training-tool/' rel='bookmark' title='Virtual Networking and Security Training Tool'>Virtual Networking and Security Training Tool</a> <small>As someone who works in an environment where I have...</small></li>
<li><a href='http://infosec3t.com/2010/01/26/2010-cybersecurity-watch-survey/' rel='bookmark' title='2010 CyberSecurity Watch Survey'>2010 CyberSecurity Watch Survey</a> <small>Cybercrime threats posed to targeted organizations are increasing faster than...</small></li>
<li><a href='http://infosec3t.com/2010/06/06/pentagon-and-congress-wants-control-of-your-network-during-cyberattack/' rel='bookmark' title='Pentagon and Congress wants control of your network during cyberattack'>Pentagon and Congress wants control of your network during cyberattack</a> <small>There has been a lot of chatter in the news...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/01/29/lynis-security-and-system-auditing-tool/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Effectively Scoping Application Security Penetration Testing and Ethical Hacking</title>
		<link>http://infosec3t.com/2010/01/18/effectively-scoping-application-security-penetration-testing-and-ethical-hacking/</link>
		<comments>http://infosec3t.com/2010/01/18/effectively-scoping-application-security-penetration-testing-and-ethical-hacking/#comments</comments>
		<pubDate>Tue, 19 Jan 2010 01:30:44 +0000</pubDate>
		<dc:creator>Guest Blogger</dc:creator>
				<category><![CDATA[Forensics]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Application Security]]></category>
		<category><![CDATA[Hacking]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=752</guid>
		<description><![CDATA[When seeking to test if your web based application or website is secure in deployment it can be very difficult to understand what activities to carry-out and what you should be focused on, there are numerous specialist companies that excel in providing services in this area but they do not fully understand your business or the impact someone could have should they exploit a hole.  This article gives some background information for anyone instructing a Penetration Test or Ethical Hack over what to look for as priorities.]]></description>
			<content:encoded><![CDATA[<p>When scoping an <a href="http://infosec3t.com/tag/application-security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Application Security">application security</a> penetration test, Or thus suggest that you remember the following:</p>
<p>The principal focus of the testing should on the application under test. This means that the vulnerability of the surrounding environment is not under test, nor are for example <a href="http://infosec3t.com/tag/internet/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Internet">Internet</a> facing firewalls, except in their relationship to the application. Therefore it would be appropriate for the Vendor to confirm that the firewalls are configured correctly for this application and that no unnecessary ports are allowed through. Conversely, the vendor should be instructed not to test your firewalls beyond this.</p>
<p>The test should include a paper review of the architectural design, before beginning testing. The review should validate the physical placement of the various network components servers, and identify potential issues or security weaknesses.</p>
<p>It should be left to the vendor to use their judgment as to which particular tests are relevant to a particular application. There are two exceptions to this.</p>
<ul>
<li>If it can be seen that the vendors proposed testing is not comprehensive enough, then the project should insist on extending the scope to include additional areas of testing.</li>
<li>If in the opinion of the project, the tests proposed would have a undesirable effect on production infrastructure or applications. In this case steps must be taken to achieve the same testing via an alternative manner. For example, this may involve the use of application disaster recovery equipment.</li>
</ul>
<p>While its difficult to specifically prescribe which tests are appropriate for any generic set of applications, in principal you should consider the following where applicable:</p>
<ul>
<li>Password cracking scan of password files on servers.</li>
<li>An on-box scan for security vulnerabilities.</li>
<li>An examination of client-side application for information that reveals information about how the application functions that could be used for a more focused attack.</li>
<li>Examination of client-side code and locally stored information such as cookies and session information. This should include alterations to such information in an attempt to:</li>
</ul>
<p>- subvert authentication checking &#8211; establish the bounds of server reliance on client data fields &#8211; test for other unexpected results and potentially access confidential information.</p>
<ul>
<li>Bounds checking and application validation for both accidental and mischievous input. The test should ensure that applications correctly respond to unexpected data formats or sizes.</li>
<li>Potential for buffer overflows.</li>
<li>Examination of application-to-application interaction between resources such as the web service and back-end data feeds. Attempts are made to access application resources by impersonating other system functions or sources.</li>
<li>An examination of application-level traffic passing between various host systems for passwords, CGI parameters, and other data that might be reused as part of an exploitation attempt.</li>
<li>Conduct authenticated user testing to see if they can abuse the system as a &#8220;customer&#8221;.</li>
<li>Attempted permission escalation by, for example, referencing application components with higher server-side permissions, or exploitation of race conditions to identify lax permission or authentication checking.</li>
<li>Susceptibility of the application to replay attack and man in the middle attacks.</li>
<li>Other session orientated attacks, including an analysis of system responses to such data.</li>
<li>Susceptibility of the application to specially crafted packets delivered independently of the front end application checking.</li>
<li>Investigation of robustness and resilience of application Authentication mechanisms.</li>
<li><a href="http://infosec3t.com/tag/software/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Software">Software</a>-specific manufacturer-recognised exploits</li>
<li>Content sharing vulnerabilities</li>
<li>Presence of deployment process vulnerabilities</li>
<li>Presence of activation process vulnerabilities</li>
<li>Request process vulnerabilities</li>
<li>File and user permission vulnerabilities</li>
<li>Cluster connectivity vulnerabilities</li>
<li>Excess build and configuration weaknesses</li>
<li>Application of applicable security patches, fixes and updates</li>
<li>Legacy application code development weaknesses</li>
<li>SQL injection weaknesses</li>
<li>Cross-scripting vulnerabilities</li>
<li>Potential to <a href="http://infosec3t.com/tag/fraud/" class="st_tag internal_tag" rel="tag" title="Posts tagged with fraud">fraud</a> the application</li>
<li>Encryption and authentication vulnerabilities</li>
<li>Defacement weaknesses</li>
<li>Redirections vulnerabilities</li>
<li>Administration rights &amp; controls</li>
<li>Sniffer attack vulnerabilities</li>
</ul>
<p>Some applications may have a number of identical components in the architecture, e.g. a web-enabled application may have 4 web servers in parallel for loading reasons. In these cases, the project should ensure that the vendor is testing all instances of the components. Extending the web server example further, this would mean that each web servers operating system would need to be tested to ensure that any hardening processes undertaken had been completed on each of the servers.</p>
<p>This does not mean that each instance of the actual application code running on each web server is subjected to all tests. In other words it should be sufficient to conduct data validation tests against only 1 of the servers</p>
<p>It happens more often that one would think, but there have been many cases of penetration tests launching attacks against networks that were not authorised for testing. Therefore the project must ensure the vendor knows the limits that they are working under. It is worth asking the vendor what methods they use to limit unintentional damage to your network.</p>
<p>Lastly, the vendor should be reminded by the project that any information collected is to be treated in confidence, and that they must take appropriate steps to ensure any data retained by them is secured and destroyed securely when no longer required.</p>
<p>Author: Penny Reyes<br />Article Source: EzineArticles.com<br />Provided by: <a href="http://instantpot.com/">Smart cooker</a></p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/03/08/sahi-%e2%80%93-web-automation-application-security-testing-tool/' rel='bookmark' title='SAHI – Web Automation &amp; Application Security Testing Tool'>SAHI – Web Automation &amp; Application Security Testing Tool</a> <small>Sahi is an automation tool to test web applications. Sahi...</small></li>
<li><a href='http://infosec3t.com/2010/01/25/web-application-security-testing-white-paper/' rel='bookmark' title='Web Application Security Testing White Paper'>Web Application Security Testing White Paper</a> <small>The need to provide web security and defend web applications...</small></li>
<li><a href='http://infosec3t.com/2010/01/08/revealed-5-web-application-security-threats/' rel='bookmark' title='Revealed &#8211; 5 Web Application Security Threats'>Revealed &#8211; 5 Web Application Security Threats</a> <small>How secure are your Web applications and your Web application...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/01/18/effectively-scoping-application-security-penetration-testing-and-ethical-hacking/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Backtrack 4 Final Released!!</title>
		<link>http://infosec3t.com/2010/01/12/backtrack-4-final-released/</link>
		<comments>http://infosec3t.com/2010/01/12/backtrack-4-final-released/#comments</comments>
		<pubDate>Tue, 12 Jan 2010 20:47:44 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Wireless]]></category>
		<category><![CDATA[Application Security]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[security tools]]></category>
		<category><![CDATA[tool]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=649</guid>
		<description><![CDATA[Backtrack is a linux-based penetration testing suite of tools  used by security professionals to perform assessments. Backtrack has been fully customized as a penetration testing tool. BackTrack 4 (codenamed “pwnsauce”) includes a new kernel, a larger and expanded toolset repository, custom tools that you can only find on BackTrack, and more importantly, fixes to most [...]]]></description>
			<content:encoded><![CDATA[<p><a title="Backtrack 4" href="http://www.backtrack-linux.org/backtrack/backtrack4-release/" target="_blank">Backtrack</a> is a linux-based <a href="http://infosec3t.com/wp-content/uploads/2010/01/bt4-fireworks-1.png"><img class="alignright size-medium wp-image-650" title="bt4-fireworks-1" src="http://infosec3t.com/wp-content/uploads/2010/01/bt4-fireworks-1-300x209.png" alt="Backtrack 4" width="300" height="209" /></a> penetration testing suite of <a href="http://infosec3t.com/tag/tools/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Tools">tools</a>  used by security professionals to perform assessments. Backtrack has been fully customized  as a penetration testing <a href="http://infosec3t.com/tag/tool/" class="st_tag internal_tag" rel="tag" title="Posts tagged with tool">tool</a>.</p>
<p>BackTrack 4 (codenamed “pwnsauce”) includes a new kernel, a larger and expanded toolset repository, custom tools that you can only find on BackTrack, and more importantly, fixes to most major bugs that we knew of. You can install and use it as your primary operating system, run it as a live cd, from a usb drive, or as a virtual machine.</p>
<p>Some of the tools included in the suite are: Metasploit, Kismet, Autoscan, Nmap, Ettercap, Wireshark, etc. These tools can be used for network, system and <a href="http://infosec3t.com/tag/wireless/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Wireless">wireless</a> reconnaissance, enumeration and penetration.</p>
<p>I use the backtrack suite in teaching my ethical <a href="http://infosec3t.com/tag/hacking/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Hacking">hacking</a> class. It is a great tool for anyone interested in learning to perform security assessments.</p>
<p>Other suites with similar functionality can be found in a previous <a title="How many security tools can you fit on your key chain?" href="http://infosec3t.com/2009/12/11/how-many-security-tools-can-you-fit-on-your-key-chain/" target="_self">post</a>.</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2009/12/11/how-many-security-tools-can-you-fit-on-your-key-chain/' rel='bookmark' title='How many security tools can you fit on your key chain?'>How many security tools can you fit on your key chain?</a> <small>When I first started running Ubuntu as my laptop OS...</small></li>
<li><a href='http://infosec3t.com/2010/05/20/metasploit-3-4-0-hacking-framework-released-%e2%80%93-over-100-new-exploits-added/' rel='bookmark' title='Metasploit 3.4.0 Hacking Framework Released – Over 100 New Exploits Added'>Metasploit 3.4.0 Hacking Framework Released – Over 100 New Exploits Added</a> <small>Metasploit provides useful information and tools for penetration testers, security...</small></li>
<li><a href='http://infosec3t.com/2010/02/12/live-hacking-cd-based-on-ubuntu-get-out/' rel='bookmark' title='Live Hacking CD based on Ubuntu?? Get out!!'>Live Hacking CD based on Ubuntu?? Get out!!</a> <small>Dr. Ali Jahangiri, the well known security expert and author...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/01/12/backtrack-4-final-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Beware of Free Internet Connections</title>
		<link>http://infosec3t.com/2010/01/05/beware-of-free-internet-connections/</link>
		<comments>http://infosec3t.com/2010/01/05/beware-of-free-internet-connections/#comments</comments>
		<pubDate>Tue, 05 Jan 2010 18:44:51 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Wireless]]></category>
		<category><![CDATA[Hacking]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=595</guid>
		<description><![CDATA[Many hotels,coffee shops and other such establishments  offer free wireless internet access to their customers. These networks are often unprotected. They typically do not require customers  to  enter a password and provide no encryption to protect the networks traffic.  Any user within wireless access range can potentially connect to this network and sniff or listen [...]]]></description>
			<content:encoded><![CDATA[<p>Many hotels,coffee shops and other such establishments  offer free <a href="http://infosec3t.com/tag/wireless/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Wireless">wireless</a> <a href="http://infosec3t.com/tag/internet/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Internet">internet</a> access to their customers. These networks are often unprotected. They typically do not require customers  to  enter a password and provide no encryption to protect the networks traffic.  Any user within <a href="http://infosec3t.com/tag/wireless/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Wireless">wireless</a> access range can potentially connect to this network and sniff or listen in on the network traffic of any other user. A skilled attacker can perform a man-in-the-middle attacker in a matter of seconds and intercept all your network communications using tools that are freely available on the Internet.  A man-in-the-middle attack is where a hacker places himself/herself between the victim and their gateway connection to the Internet. This is done by simply network packets to the victim&#8217;s computer telling it that the attacker&#8217;s computer is the gateway and telling the real gateway device that the attacker&#8217;s computer is the victim&#8217;s. There are numerous tutorials and videos on web sites like Youtube on how to perform this attack. There is really no way to prevent this and having a firewall, anti-virus, or other <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> software on your computer offers no protection as the attacker is not really trying to access the victim&#8217;s computer directly.</p>
<p>There are some steps you can take to protect yourself however:</p>
<p>The best safeguard is to avoid accessing sensitive websites on public networks i.e. your bank account, email. etc</p>
<p>If you must access such websites, before entering you user name and password, ensure that your connection is encrypted and connected to the real web server. You can do so by verifying that the url begins with an https. HTTPS refers to HTTP over SSL encryption. This means that all communications between your web browser and the web server you are connecting to is encrypted. Anyone sniffing your network traffic will be unable to see what is actually being sent.</p>
<p>You can also verify the legitimacy of the web server where the web pages are hosted. If the connection is over HTTPS, there should be a golden lock on your browser screen. Firefox displays it on the lower right and Internet Explorer displays in it the URL bar. Double clicking on the lock will display the digital certificate which verifies that the web server belongs to the organization whose web site you are trying to connect to.  This digital certificate should be issued by a reputable company like <a title="Verisign" href="http://www.verisign.com/" target="_blank">Verisign</a> or <a title="Thawte" href="http://www.thawte.com/" target="_blank">Thawte</a>.</p>
<p>Lastly, you can use a remote access VPN. A VPN encrypts and protects all your network traffic. VPNs are often used by users to connect to their company&#8217;s internal networks. If you do not have ready access to a personal or company VPN. There are several online services that offer free VPN solutions. Three of such services are:</p>
<p><a title="CyberGhost" href="http://www.cyberghostvpn.com/" target="_blank">CyberGhost</a> is a  free VPN service from Germany which route your through a German IP. The free service is limited to 10Gb of traffic every month. There is also a paid service that is affordable.</p>
<p>UltraVPN is a  free downloadable VPN client from France with no traffic quota.</p>
<p>AlonWeb is a third option. It uses the OpenVPN tunneling server to encrypt your traffic and users are limited to 1GB of traffic a month. AlonWeb is also ad supported so it injects advertisements into the web pages users are browsing.</p>
<p>These VPN services, in addition to verifying your encrypted communication with a legitimate web server, provide an increased level of security to protect your network traffic from prying eyes.</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/02/22/free-blocking-tool-to-stop-drive-by-malware-downloads/' rel='bookmark' title='Free Blocking Tool to Stop Drive-By Malware Downloads'>Free Blocking Tool to Stop Drive-By Malware Downloads</a> <small>The threat of drive-by downloads is very significant as users...</small></li>
<li><a href='http://infosec3t.com/2010/01/08/revealed-5-web-application-security-threats/' rel='bookmark' title='Revealed &#8211; 5 Web Application Security Threats'>Revealed &#8211; 5 Web Application Security Threats</a> <small>How secure are your Web applications and your Web application...</small></li>
<li><a href='http://infosec3t.com/2010/01/18/effectively-scoping-application-security-penetration-testing-and-ethical-hacking/' rel='bookmark' title='Effectively Scoping Application Security Penetration Testing and Ethical Hacking'>Effectively Scoping Application Security Penetration Testing and Ethical Hacking</a> <small>When seeking to test if your web based application or...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/01/05/beware-of-free-internet-connections/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Virtual Networking and Security Training Tool</title>
		<link>http://infosec3t.com/2010/01/04/virtual-networking-and-security-training-tool/</link>
		<comments>http://infosec3t.com/2010/01/04/virtual-networking-and-security-training-tool/#comments</comments>
		<pubDate>Mon, 04 Jan 2010 22:04:30 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Networking]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=587</guid>
		<description><![CDATA[As someone who works in an environment where I have access to networking and security equipment, I am more fortunate than most students in my classes who are trying to break into the networking and/or security fields but lack the necessary access to needed equipment to get the hands-on experience that is usually a prerequisite [...]]]></description>
			<content:encoded><![CDATA[<p>As someone who works in an environment where I have access to networking and <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> equipment, I am more fortunate than most students in my classes who are trying to break into the networking and/or <a href="http://infosec3t.com/tag/security/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security">security</a> fields but lack the necessary access to needed equipment to get the hands-on experience that is usually a prerequisite for employment. As I try to make my classes as practical as possible, one challenge I face is how to get my students as much hands-on access to real equipment as much as possible. There are limited number lab hours especially for students who have to work (most of my students are professional working adults).</p>
<p>This week, I am in a Cisco Security Faculty Development boot camp where college professors are trained on the Cisco CCNA curriculum and given <a href="http://infosec3t.com/tag/tools/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Tools">tools</a> with which to better present that information in their courses. We are using <a title="Cisco Packet Tracer" href="http://www.cisco.com/web/learning/netacad/course_catalog/PacketTracer.html" target="_blank">Cisco Packet Tracer</a> version 5.2.1 which is a network simulation <a href="http://infosec3t.com/tag/software/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Software">software</a> that allows students to experiment with network configuration and behavior. As I&#8217;ve never used Packet Tracer before, I am very impressed with this tool. The ability to simulate local and wide area networks will be a great tool top better acquaint my students with networking and security equipment (atleast Cisco&#8217;s incarnation of them). I try to keep my classes as vendor independent as possible but as the underlying principles are essential the same, if you can configure one, you can figure out the other vendors.</p>
<p><a title="VMWARE" href="http://www.vmware.com/" target="_blank">VMware</a> is also a great tool for training tool. It allows you to install/run different operating systems in software. Using VMware player or the free version of VMware server, I have my students practice with various <a href="http://infosec3t.com/tag/linux/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Linux">linux</a> operating systems or virtual appliances. See <a title="VMware Virtual Appliances" href="http://www.vmware.com/appliances/" target="_blank">http://www.vmware.com/appliances/</a> for devices that have been ported to run as a virtual appliance.</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/03/08/sahi-%e2%80%93-web-automation-application-security-testing-tool/' rel='bookmark' title='SAHI – Web Automation &amp; Application Security Testing Tool'>SAHI – Web Automation &amp; Application Security Testing Tool</a> <small>Sahi is an automation tool to test web applications. Sahi...</small></li>
<li><a href='http://infosec3t.com/2010/03/23/skipfish-web-scanning-security-tool-from-google/' rel='bookmark' title='Skipfish-Web Scanning Security Tool from Google'>Skipfish-Web Scanning Security Tool from Google</a> <small>Google has released an open-source Web security scanner called Skipfish...</small></li>
<li><a href='http://infosec3t.com/2010/01/29/lynis-security-and-system-auditing-tool/' rel='bookmark' title='Lynis &#8211; Security and System Auditing Tool'>Lynis &#8211; Security and System Auditing Tool</a> <small>Lynis is an auditing tool for Unix (specialists). It scans...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2010/01/04/virtual-networking-and-security-training-tool/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>How many security tools can you fit on your key chain?</title>
		<link>http://infosec3t.com/2009/12/11/how-many-security-tools-can-you-fit-on-your-key-chain/</link>
		<comments>http://infosec3t.com/2009/12/11/how-many-security-tools-can-you-fit-on-your-key-chain/#comments</comments>
		<pubDate>Fri, 11 Dec 2009 20:21:02 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Forensics]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Wireless]]></category>
		<category><![CDATA[Application Security]]></category>
		<category><![CDATA[Hacking]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=97</guid>
		<description><![CDATA[When I first started running Ubuntu as my laptop OS of choice, it was partly  because I got fed up with having to rebuild my Windows XP OS whenever it would pick up some particularly stubborn piece of varmint during my browsing of hacking sites around the web. The second reason, however, was that most [...]]]></description>
			<content:encoded><![CDATA[<p>When I first started running Ubuntu as my laptop OS of choice, it was partly  because I got fed up with having to rebuild my <a href="http://infosec3t.com/tag/windows/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Windows">Windows</a> XP OS whenever it would pick up some particularly stubborn piece of varmint during my browsing of hacking sites around the web. The second reason, however, was that most <a href="http://infosec3t.com/tag/security-tools/" class="st_tag internal_tag" rel="tag" title="Posts tagged with security tools">security tools</a> I wanted to use were native to Linux and it was just easier to install them on my Ubuntu laptop and always have them available. You never know when you might get the urge to&#8230;.um&#8230;nevermind.  I tried running them as virtual machines in VMware for a while but I found  the inability to use all the computing resources on the laptop a little limiting. There are several pretty good suites out there that do good job of compiling <a href="http://infosec3t.com/tag/tools/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Tools">tools</a> ( eg. Backtrack, my fave ) but it lacks some of the <a href="http://infosec3t.com/tag/tools/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Tools">tools</a> found in other suites.</p>
<p>I was quite pleased when I came across Katana, which is a multi-boot suite that combines multiple security distributions ( and you can add more ) to one bootable USB. By default, it comes with the following:</p>
<p>- Backtrack 4<br />
- <a title="Ultimate Boot CD" href="http://www.ultimatebootcd.com/" target="_blank">the Ultimate Boot CD</a><br />
- <a title="Organizational Systems Wireless Auditor" href="http://securitystartshere.org/page-training-oswa-assistant.htm" target="_blank">Organizational Systems Wireless Auditor (OSWA) Assistiant</a><br />
- <a title="Ultimate Boot CD for Windows" href="http://www.ubcd4win.com/" target="_blank">the Ultimate Boot CD for Windows</a><br />
- <a href="http://www.slax.org/" target="_blank">Got Root? Slax</a><br />
- <a title="Ophcrack Live" href="http://ophcrack.sourceforge.net/" target="_blank">Ophcrack Live</a><br />
- <a title="Damn Small Linux" href="http://damnsmalllinux.org/" target="_blank">Damn Small Linux</a><br />
- <a title="Damn Vulnerable Linux" href="http://www.damnvulnerablelinux.org/" target="_blank">Damn Vulnerable Linux</a></p>
<p>It also includes &#8220;over 100 portable Windows applications&#8221;. Katana v1.0 can be downloaded from the developer&#8217;s site <a title="Hack from a cave" href="http://www.hackfromacave.com/" target="_blank">here</a>.</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/02/11/aaaah-the-infamous-blue-screen-of-death/' rel='bookmark' title='Aaaah The Infamous Blue Screen of Death'>Aaaah The Infamous Blue Screen of Death</a> <small>On Tuesday, Microsoft issued a patch, MS10-015,  to fix a...</small></li>
<li><a href='http://infosec3t.com/2010/02/15/recent-microsoft-update-bsod-may-be-caused-by-rootkit/' rel='bookmark' title='Recent Microsoft Update BSOD may be caused by Rootkit'>Recent Microsoft Update BSOD may be caused by Rootkit</a> <small>Last week, I posted here about the recent pandemic of...</small></li>
<li><a href='http://infosec3t.com/2010/01/30/100-open-source-security-tools/' rel='bookmark' title='100+ Open Source Security Tools'>100+ Open Source Security Tools</a> <small>Security testing  or assessment is a process to determine that...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2009/12/11/how-many-security-tools-can-you-fit-on-your-key-chain/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>More on Forensics&#8230;</title>
		<link>http://infosec3t.com/2009/12/09/more-on-forensics/</link>
		<comments>http://infosec3t.com/2009/12/09/more-on-forensics/#comments</comments>
		<pubDate>Wed, 09 Dec 2009 19:54:17 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Forensics]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=62</guid>
		<description><![CDATA[Follow what the NOVA Information Assurance Strike Team is up to. Their new web site will prove to be a great resource once it gets going. They already have some good documents on computer forensics here. Related posts: CISSP All In One Book FIFTH EDITION has been released The fifth edition of this best-selling comprehensive [...]]]></description>
			<content:encoded><![CDATA[<p>Follow what the NOVA Information Assurance Strike Team is up to. Their new web site will prove to be a great resource once it gets going. They already have some good documents on computer <a href="http://infosec3t.com/tag/forensics/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Forensics">forensics</a> here.</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/01/22/cissp-all-in-one-book-fifth-edition-has-been-released/' rel='bookmark' title='CISSP All In One Book FIFTH EDITION has been released'>CISSP All In One Book FIFTH EDITION has been released</a> <small>The fifth edition of this best-selling comprehensive CISSP training resources...</small></li>
<li><a href='http://infosec3t.com/2010/01/26/2010-cybersecurity-watch-survey/' rel='bookmark' title='2010 CyberSecurity Watch Survey'>2010 CyberSecurity Watch Survey</a> <small>Cybercrime threats posed to targeted organizations are increasing faster than...</small></li>
<li><a href='http://infosec3t.com/2010/03/01/united-states-department-of-defense-embraces-hacker-certification/' rel='bookmark' title='United States Department of Defense Embraces Hacker Certification'>United States Department of Defense Embraces Hacker Certification</a> <small>Mar 01, 2010 – The U.S. Department of Defense (DoD)...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2009/12/09/more-on-forensics/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Interested in Computer Forensics?</title>
		<link>http://infosec3t.com/2009/12/09/interested-in-computer-forensics/</link>
		<comments>http://infosec3t.com/2009/12/09/interested-in-computer-forensics/#comments</comments>
		<pubDate>Wed, 09 Dec 2009 05:06:51 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[Forensics]]></category>
		<category><![CDATA[cloud computing]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=55</guid>
		<description><![CDATA[I recently went through an EC Council Computer Hacking Forensic Investigator week long boot camp.  Although the instructor was pretty good, it was really information overload. The course outline can be found here. The course materials provided will come in as a good reference. There are even sections on Blackberry and Ipod forensics. Another great [...]]]></description>
			<content:encoded><![CDATA[<p>I recently went through an EC Council <a href="http://www.eccouncil.org/chfi.htm" target="_blank">Computer Hacking Forensic Investigator</a> week long boot camp.  Although the instructor was pretty good, it was really information overload. The course outline can be found <a href="http://www.eccouncil.org/Course-Outline/CHFI%20Course.htm" target="_blank">here</a>. The course materials provided will come in as a good reference. There are even sections on Blackberry and Ipod <a href="http://infosec3t.com/tag/forensics/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Forensics">forensics</a>. Another great resource is the Computer <a href="http://infosec3t.com/tag/forensics/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Forensics">Forensics</a> World, an online community for computer <a href="http://infosec3t.com/tag/forensics/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Forensics">forensics</a> practitioners,  whose Computer <a href="http://infosec3t.com/tag/forensics/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Forensics">Forensics</a> Toolkit can be found <a href="http://computer-forensics.privacyresources.org/" target="_blank">here</a>.  The toolkit provides guides, checklists, procedures, forensic forms,  report template, etc for forensic practitioners and can also be used as a <a href="http://infosec3t.com/tag/training/" class="st_tag internal_tag" rel="tag" title="Posts tagged with training">training</a> <a href="http://infosec3t.com/tag/tool/" class="st_tag internal_tag" rel="tag" title="Posts tagged with tool">tool</a>.</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2009/12/09/more-on-forensics/' rel='bookmark' title='More on Forensics&#8230;'>More on Forensics&#8230;</a> <small>Follow what the NOVA Information Assurance Strike Team is up...</small></li>
<li><a href='http://infosec3t.com/2010/01/02/black-hat-dc-2010-is-here/' rel='bookmark' title='Black Hat DC -2010 is here!'>Black Hat DC -2010 is here!</a> <small>Black Hat, one of the biggest and most popular security...</small></li>
<li><a href='http://infosec3t.com/2010/02/21/a-guide-to-computer-security/' rel='bookmark' title='A Guide to Computer Security'>A Guide to Computer Security</a> <small>As the number of people connecting to the Internet continues...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2009/12/09/interested-in-computer-forensics/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cloud-based&#8230;hacking??</title>
		<link>http://infosec3t.com/2009/12/08/cloud-based-hacking/</link>
		<comments>http://infosec3t.com/2009/12/08/cloud-based-hacking/#comments</comments>
		<pubDate>Wed, 09 Dec 2009 02:42:45 +0000</pubDate>
		<dc:creator>William McBorrough, MSIA, CISSP, CISA, CRISC, CEH</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Wireless]]></category>
		<category><![CDATA[Hacking]]></category>

		<guid isPermaLink="false">http://infosec3t.com/?p=49</guid>
		<description><![CDATA[I assigned my class a research paper on the security implications of moving an enterprises data processing to a cloud provider i.e. a company that provides Software as a Service ( SaaS ) or Platform as a Service ( PaaS). I&#8217;ll leave my views on that topic for another post however I couldn&#8217;t resist sharing [...]]]></description>
			<content:encoded><![CDATA[<p>I assigned my class a research paper on the security implications of moving an enterprises data processing to a cloud provider i.e. a company that provides <a href="http://infosec3t.com/tag/software/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Software">Software</a> as a Service ( SaaS ) or Platform as a Service ( PaaS). I&#8217;ll leave my views on that topic for another post however I couldn&#8217;t resist sharing this article I came across titled <a title="Cloud-based hacking" href="http://www.computerworld.com/s/article/9141921/New_cloud_based_service_steals_Wi_Fi_passwords?taxonomyId=17" target="_blank"><em>New could-based service steals Wi-Fi passwords</em></a>. Launched yesterday, the new WPA cracker service stated purpose is to be  a tool for security auditors and penetration testers to <a href="http://infosec3t.com/tag/audit/" class="st_tag internal_tag" rel="tag" title="Posts tagged with audit">audit</a> their <a href="http://infosec3t.com/tag/wireless/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Wireless">wireless</a> encryption.  There are already entities out there that provide <a href="http://infosec3t.com/tag/hacking/" class="st_tag internal_tag" rel="tag" title="Posts tagged with Hacking">Hacking</a> as a Service ( HaaS) so this is just another one. I mean, why shouldn&#8217;t us good guys get in on the action?</p>
<p>Related posts:<ol>
<li><a href='http://infosec3t.com/2010/01/12/backtrack-4-final-released/' rel='bookmark' title='Backtrack 4 Final Released!!'>Backtrack 4 Final Released!!</a> <small>Backtrack is a linux-based penetration testing suite of tools  used...</small></li>
<li><a href='http://infosec3t.com/2010/05/20/metasploit-3-4-0-hacking-framework-released-%e2%80%93-over-100-new-exploits-added/' rel='bookmark' title='Metasploit 3.4.0 Hacking Framework Released – Over 100 New Exploits Added'>Metasploit 3.4.0 Hacking Framework Released – Over 100 New Exploits Added</a> <small>Metasploit provides useful information and tools for penetration testers, security...</small></li>
<li><a href='http://infosec3t.com/2010/03/08/sahi-%e2%80%93-web-automation-application-security-testing-tool/' rel='bookmark' title='SAHI – Web Automation &amp; Application Security Testing Tool'>SAHI – Web Automation &amp; Application Security Testing Tool</a> <small>Sahi is an automation tool to test web applications. Sahi...</small></li>
</ol></p>]]></content:encoded>
			<wfw:commentRss>http://infosec3t.com/2009/12/08/cloud-based-hacking/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

