<?xml version="1.0" encoding="UTF-8"?><rss version="0.92">
<channel>
	<title>MSI :: State of Security</title>
	<link>http://stateofsecurity.com</link>
	<description>Insight from the Information Security Experts</description>
	<lastBuildDate>Wed, 08 Sep 2010 15:15:58 +0000</lastBuildDate>
	<docs>http://backend.userland.com/rss092</docs>
	<language>en</language>
	<!-- generator="WordPress/abc" -->

	<item>
		<title>HoneyPoint Wasp is Almost Ready to Leave the Nest</title>
		<description><![CDATA[As many of you may know, the MSI team has been hard at work the last several months finishing the beta of our new compromised workstation detection product, HoneyPoint Wasp. It is a fully integrated component of HoneyPoint Security Server, capable of executing distributed detection and threat monitoring on Windows workstations across enterprises. The initial [...]]]></description>
		<link>http://stateofsecurity.com/?p=1150</link>
			</item>
	<item>
		<title>Excellent Source for Metrics on PHP RFI</title>
		<description><![CDATA[My friend Eric has put up some excellent statistics and metrics on PHP RFI attacks against his honeynet. This is some excellent data. If you have read other stuff we have pointed to from Eric, then you know what to expect. But, if you are interested in a real world look at trends and metrics [...]]]></description>
		<link>http://stateofsecurity.com/?p=1147</link>
			</item>
	<item>
		<title>Stories of Hacking the Human #security</title>
		<description><![CDATA[He stood before the receptionist, patiently waiting until she was finished with the phone call. He fiddled around with his fake badge while glancing at the security door that led into the main office area, waiting to see if someone would exit or enter soon. Finally, two employees engaged in conversation exited the door while [...]]]></description>
		<link>http://stateofsecurity.com/?p=1142</link>
			</item>
	<item>
		<title>Looking For More Info on SEIM Best Practices?</title>
		<description><![CDATA[I know we get a lot of questions on SEIM tools, their use and the best practices around their deployment and I have talked heavily to some of the folks involved in this SANS webcast tomorrow. If you have an interest in SEIM, I urge you to tune in. You can find the details here. [...]]]></description>
		<link>http://stateofsecurity.com/?p=1139</link>
			</item>
	<item>
		<title>Passwords, Dinosaurs, and 8-Track Tapes</title>
		<description><![CDATA[What do passwords dinosaurs and 8 track tapes all have in common? Pretty soon they will all be in the same category: things of the past! It’s not just a matter of people using short, simple, “stupid” passwords any more. With advances in easily available and cheap computing power such as advanced graphics processors and [...]]]></description>
		<link>http://stateofsecurity.com/?p=1134</link>
			</item>
	<item>
		<title>Security Interview with Rob Anderson, Senior Product Manager with PAETEC</title>
		<description><![CDATA[We caught up with Rob Anderson, Senior Product Manager with PAETEC, who gives us some great thoughts about the future of information security. Powered by Podbean.com]]></description>
		<link>http://stateofsecurity.com/?p=1131</link>
			</item>
	<item>
		<title>Another Good Reason to Increase Internal Security</title>
		<description><![CDATA[Well, the much anticipated 2010 Verizon Data Breach Investigations Report is out, and once again it is an eye-opener! Let me say what a boon these reports are to the infosec community! Verizon and their team are to be praised and congratulated for all their hard work. These reports really help us keep current so [...]]]></description>
		<link>http://stateofsecurity.com/?p=1126</link>
			</item>
	<item>
		<title>Tips for Input Validation</title>
		<description><![CDATA[Input validation is the single best defense against injection and XSS vulnerabilities. Done right, proper input validation techniques can make web-applications invulnerable to such attacks. Done incorrectly, they end up bringing little more than a false sense of security. The bad news is that input validation is difficult. &#8220;White listing,&#8221; or identifying all possible strings [...]]]></description>
		<link>http://stateofsecurity.com/?p=1122</link>
			</item>
	<item>
		<title>2 Ways to Get the Most Out of Security Awareness Training</title>
		<description><![CDATA[A good security training and awareness program is one of, if not the most important part of any effective information security program. After all, people are the ones that cause security problems in the first place and, ultimately, people are the ones that have to deal with them. Not to mention the fact that people [...]]]></description>
		<link>http://stateofsecurity.com/?p=1114</link>
			</item>
	<item>
		<title>Using Honeypots to Track Attackers: Eric Romang&#8217;s FileAve.com Report</title>
		<description><![CDATA[One of MSI&#8217;s Twitter friends, Eric Romang, recently wrote a deep dive about PHP RFI attacks that used the fileave.com service. The write-up was based on a large set of honeypot data that dates back several years! The data is interesting and compelling and goes a long way to show value derived from the use [...]]]></description>
		<link>http://stateofsecurity.com/?p=1104</link>
			</item>
	<item>
		<title>An Explanation of Our HoneyPoint Internet Threat Monitoring Environment #HITME #security</title>
		<description><![CDATA[One of the least understood parts of MicroSolved is how the HoneyPoint Internet Threat Monitoring Environment (#HITME) data is used to better protect our customers. The engineers have asked me to drop this line into the newsletter and give you a “bees knees” perspective of how it works! First, if you don&#8217;t know about the [...]]]></description>
		<link>http://stateofsecurity.com/?p=1094</link>
			</item>
	<item>
		<title>A Quick Word on LiveCD&#8217;s and Bootable USB for Consumers</title>
		<description><![CDATA[I gave a quick interview today for a magazine article to be printed in late July. The topic was pretty interesting; it revolved around consumer fears about online banking. The key point of the discussion was that financial organizations are doing a ton of work on securing your data and their systems from attack. The [...]]]></description>
		<link>http://stateofsecurity.com/?p=1080</link>
			</item>
	<item>
		<title>Review of Puppy Linux 5.0</title>
		<description><![CDATA[Lucid Puppy Linux 5.0 was released back in May of 2010, but as one of my favorite distros, I have been playing with it heavily since then. I have been so impressed with the new version that I wanted to take a moment and write a quick review of this release. You can find the [...]]]></description>
		<link>http://stateofsecurity.com/?p=1066</link>
			</item>
	<item>
		<title>Fighting Second Stage Compromises</title>
		<description><![CDATA[Right now, most organizations are fighting a losing battle against initial stage compromises. Malware, bots and client side attacks are eating many security programs alive. The security team is having a nearly impossible time keeping up with the onslaught and end-user systems are falling left and right in many organizations. Worse, security teams that are [...]]]></description>
		<link>http://stateofsecurity.com/?p=1063</link>
			</item>
	<item>
		<title>New Information Security Blogroll Added</title>
		<description><![CDATA[We just updated our blogroll to include some of the best information security blogs in blogosphere. Take a look on the left to discover them!]]></description>
		<link>http://stateofsecurity.com/?p=1072</link>
			</item>
	<item>
		<title>Adobe Emergency Patch for 17 Holes</title>
		<description><![CDATA[Just a quick heads up post that Adobe has just released an &#8220;emergency patch&#8221; for at least 17 holes in Reader and Acrobat. This is likely worth rushing into testing and ultimately production as PDF attacks have become all the rage lately. You can find more information about the patch here: http://www.theregister.co.uk/2010/06/29/adobe_emergency_patch/]]></description>
		<link>http://stateofsecurity.com/?p=1079</link>
			</item>
	<item>
		<title>HoneyPoint Decoy Host Pays Off</title>
		<description><![CDATA[Just talked to a client who had dropped a HoneyPoint decoy host in their VPN termination segment a couple of weeks ago. Yesterday, it paid off. They caught a machine that had passed the anti-virus and patching requirements of the NAC for the VPN. The machine was AV scanned clean. But, immediately upon connection the [...]]]></description>
		<link>http://stateofsecurity.com/?p=1061</link>
			</item>
	<item>
		<title>Splunk 4 Review</title>
		<description><![CDATA[For this weeks tool review, we&#8217;re looking at Splunk. Splunk is a log collection engine at heart, but it&#8217;s really more than that. Think of it as search engine for your IT infrastructure. Splunk will actually collect and index anything you can throw at it, and this is what made me want to explore it. [...]]]></description>
		<link>http://stateofsecurity.com/?p=1073</link>
			</item>
	<item>
		<title>Join Us! June 24, 2-3 PM EST, Webinar: WordPress and Security</title>
		<description><![CDATA[Note: This webinar is being rescheduled for July. Date and time to be announced. This Thursday, June 24, at 2:00 PM &#8211; 3:00 PM EST, Phil Grimes, Security Analyst with MicroSolved, Inc., will be presenting a slideshow on DimDim. Join us to learn how to harden a WordPress site! Time will be left at the [...]]]></description>
		<link>http://stateofsecurity.com/?p=1068</link>
			</item>
	<item>
		<title>Review of darkjumper v5.7</title>
		<description><![CDATA[In continuing our research and experimentation with PHP and the threat of Remote File Inclusion (RFI), our team has been seeking out and testing various tools that have been made available to help identify web sites that are vulnerable to RFI during our penetration tests. Because we&#8217;re constantly finding more tools to add to the [...]]]></description>
		<link>http://stateofsecurity.com/?p=1056</link>
			</item>
	<item>
		<title>How Cloud Computing Will Leak Into Your Enterprise</title>
		<description><![CDATA[&#8220;Consumer use of the cloud&#8221;; in a phrase, is how the cloud will leak into your enterprise, whether you like it or not. Already, IT is struggling with how to manage the consumer use of devices and services in the enterprise. Skype/VoIP and WIFI were the warning shots, but the BlackBerry, iPhone, iPad and other [...]]]></description>
		<link>http://stateofsecurity.com/?p=1046</link>
			</item>
	<item>
		<title>Choosing Your OS is NOT a Security Control</title>
		<description><![CDATA[Just a quick note on the recent Google announcement about dumping Windows for desktops in favor of Linux and Mac OS X. As you can see from the linked article, there is a lot of hype about this move in the press. Unfortunately, dumping Windows as a risk reducer is just plain silly. It&#8217;s not [...]]]></description>
		<link>http://stateofsecurity.com/?p=1042</link>
			</item>
	<item>
		<title>Three Tips for Banking App Dev for Mobile Devices</title>
		<description><![CDATA[Lately, we have been looking at a lot of banking apps and front ends for the iPhone, Android and other mobile devices in the lab. Our testing thus far has shown some great results and it seems like a lot of banks, credit unions and other financial institutions are interested in having an &#8220;app&#8221; for [...]]]></description>
		<link>http://stateofsecurity.com/?p=1040</link>
			</item>
	<item>
		<title>Piracy as a Crimeware Defense</title>
		<description><![CDATA[So, just a quick thought on this one. What if we, as security folks, made a serious endeavor to reduce the earning capability of those who create crimeware, spyware and other malware? What if we did to them exactly what the gaming companies and MPAA have been saying is killing their business? What if every [...]]]></description>
		<link>http://stateofsecurity.com/?p=1047</link>
			</item>
	<item>
		<title>Fox Hypes Consumers on Cyber Security</title>
		<description><![CDATA[This has to be one of the worst, most FUD-filled articles I have seen yet on cyber security. http://www.foxnews.com/scitech/2010/06/03/ways-your-home-susceptible-hackers-cybersecurity/ In the article, many vulnerabilities and threats are discussed, but the article fails to lay out any sense of real risk based on probability or likely damages. In other words, here is a bunch of the [...]]]></description>
		<link>http://stateofsecurity.com/?p=1035</link>
			</item>
</channel>
</rss>
