Blog

/Blog/

Operation Aurora, Zero-day IE Flaw and Google Hacking – Don’t Panic!

The past couple of weeks have been a whirlwind of news about the events happening around Google, Microsoft and Operation Aurora. Story upon story had been published on news sites, analysis upon analysis pored over in blog posts and opinions upon opinions voiced out by security professionals around the globe. It's a bit heady to [...]

2017-03-12T17:40:15-07:00 January 28th, 2010|Security Vulnerabilities|1 Comment

Week 3 in Review – 2010

Resources: SecurityPodcasts Boxee App - ethicalhack3r.co.uk How to add this podcast series to your Boxee media center. Tools: Flash Cookie Remover 0.9 Beta Released - misec.net Just like what the title says, it removes Flash cookies as well as all info related to them. Nmap 5.20 Released - layeredsec.com The new version includes new scripting [...]

SANS AppSec Summit 2010 Free Pass Giveaway

SANS is conducting another Application Security summit on February 4 and 5 in San Francisco. The event will feature talks by Gary McGraw, Michael Howard and David Rice as well as several user and vendor panels. Attendees will learn what works and what does not work in Application Security. In order to help promote the [...]

2010-01-24T15:24:18-07:00 January 24th, 2010|Security Conferences|12 Comments

Week 2 in Review – 2010

Resources: HITB eZine 'Reloaded' - Issue #001 - security-database.com Hack in the Box releases free ezine pdf. Threat Classification References Mapping Proposal - webappsec.pbworks.com A table for classifying security threats An excellent improvement to Adobe Reader security - msmvps.com You can disable Javascript and enable Enhanced Security in the latest Adobe Reader. Mapping between OWASP [...]

Week 1 in Review – 2010

Resources: WASC Threat Classification to OWASP Top Ten RC1 Mapping - jeremiahgrossman.blogspot.com A table of the OWASP Top 10 in relation to the WASC list. Wireshark Network Analyzer Mind Map - mindcert.com A mind map for Wireshark OWASP O2 Platform - owasp.org O2 is a collection of open source modules to help webapp security professionals. [...]

2017-03-12T17:40:17-07:00 January 11th, 2010|Security Tools, Security Vulnerabilities|0 Comments

Events Calendar Updates

A few quick updates to North America calendar of events: 17th Annual Network and Distributed System Security (NDSS) Symposium - February 28 - March 3 in San Diego SANS AppSec Summit - February 4-5 in San Francisco Conference feature keynotes from Michael Howard and Gary McGraw. You can use the discount code "AppSecSummit10" to get [...]

2010-01-10T19:16:59-07:00 January 10th, 2010|Security Conferences|0 Comments

Week 54 in Review – 2009

Events Related: It's the 26the Chaos Communication Congress! A roundup of recent related news to this event. The CCCs retrospect for 2009 - events.ccc.de A look back at some of the happenings in this conference 26c3 Backstage - events.ccc.de A few observations on what happens behind the curtain in this congress. The Official 26C3 Twitter [...]

26C3 Conference Videos Released

The 26th Chaos Communication Congress in Berlin wrapped up recently and they've now posted the first batch of videos on their site. Links to the audio and video can be found on their wiki site and on many mirrors. Here are some of the picks we have from this event. Here Be Electric Dragons From the [...]

2017-03-12T17:40:17-07:00 January 2nd, 2010|Security Conferences|2 Comments