- Chris over at Carnal0wnage has a great post on "Metasploit at WMAP"
- Larry over at Pauldotcom has a good post on "Creating Custom Wordlists For Password Brute Forcing"
- Engadget has a post on "IEEE 1667 pledges secure portable storage for all"
- DVLabs has a post on "MindshaRE: Utilizing PyDbg Within IDA"
- Kees Leune on "Tips for getting started in information security"
Tuesday, November 25, 2008
Security related posts I wanted to share...
Keeping 3rd party apps up-to-date on Windows.
Today version 1.0 of Secunia Personal Software Inspector was released. You can download it free for personal use here. I have been using PSI since RC1 and I?ve blogged about it on my other website. If you are running Windows and have installed more applications then Microsoft Office you want PSI. PSI pickups up where Windows Update leaves off. Once you install PSI it will scan your system for applications including MS Office and Windows Patches. When it has a list of the applications installed it will tell you which, it any have updates are available. It even makes it easy to download and install them.
We all know that Windows has its security problems but the majority of Windows attacks are through 3rd party software not typically the host OS. So you can have a secured Windows install but your system can still be exploited if you?re running a vulnerable version of Yahoo! Messenger or other 3rd party application.
Now PSI doesn?t track every application but it covers most of them. Again with security it?s all about mitigating risk. If PSI helps you to update one application on your system, then you have just eliminated one more attack vector. PSI is free for personal use so please give it a shot I?m sure you will like it. I would suggest that you run it only when needed. The program can run as a services and monitor your applications real-time but that can be a waste of system resources. I usually run a scan of my system whenever I get a Windows Update alert or install new software which is about bi-weekly.
If you have a business and would like to install PSI on all your clients they have a solution called NSI 2.0 which is the same thing as PSI but in an agent form so that you can manage multiple machines from one host. This version does cost ?20.00 per computer.
If your using PSI or NSI I would like to get your feedback in the comments.
Monday, November 24, 2008
Off the AVG bandwagan.
- AVG isn't as good as I thought?
- AVG "restores" some of the viruses it removes after you uninstall it? I doubt it but...
- The new "Genetic Heuristic" technology works better then I thought?
- My system is totally screw with or without Anti-Virus? Highly probable.
After the latest issues in the news with AVG removing "critical" files from Windows host forcing a recover/re-install. I was happy I jumped off that wagon when I did. I'm still trialing the first security suite for another 4 days. After the first trial is over I'll start the next trail before giving my review. So my question is do you really get what you pay for? If I pay for the full version of AVG would that have found all the viruses it missed in the free version? Also do you use any anti-virus or end-point security and if so how do you like it. Please post in the comments your feedback.
Thursday, November 20, 2008
Thanks for your continued support!
I have been contacted by some asking if they can make donations (both equipment and money). I am looking into what the legal ramifications are of that now. I am also looking into setting up a PayPal "donations" button. For those that are interested in me consulting, I am looking into that as well and will post the details when I have them worked out.
Thanks for your continued support!
