<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>MadMark&#039;s Blog</title>
	<atom:link href="http://kohi10.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://kohi10.wordpress.com</link>
	<description>Balance convenience with security.</description>
	<lastBuildDate>Thu, 26 Jan 2012 18:58:55 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='kohi10.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://0.gravatar.com/blavatar/ade5f0c7c3fdcfcf2edad9788bd15560?s=96&#038;d=http%3A%2F%2Fs2.wp.com%2Fi%2Fbuttonw-com.png</url>
		<title>MadMark&#039;s Blog</title>
		<link>http://kohi10.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://kohi10.wordpress.com/osd.xml" title="MadMark&#039;s Blog" />
	<atom:link rel='hub' href='http://kohi10.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Cisco IronPort Vulnerability</title>
		<link>http://kohi10.wordpress.com/2012/01/26/cisco-ironport-vulnerability/</link>
		<comments>http://kohi10.wordpress.com/2012/01/26/cisco-ironport-vulnerability/#comments</comments>
		<pubDate>Thu, 26 Jan 2012 18:58:54 +0000</pubDate>
		<dc:creator>kohi10</dc:creator>
				<category><![CDATA[Help!]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Security Info]]></category>
		<category><![CDATA[awareness]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[security configuration management]]></category>
		<category><![CDATA[vulnerabilities]]></category>

		<guid isPermaLink="false">http://kohi10.wordpress.com/?p=2877</guid>
		<description><![CDATA[Advisory ID: cisco-sa-20120126-ironport Cisco IronPort Email Security and IronPort Security Management Appliances contain a vulnerability that may allow a remote, unauthenticated attacker to execute arbitrary code with elevated privileges.  Fixed software versions or patches are not yet available.  Configuration workarounds that mitigate this vulnerability are available. Cisco IronPort Email Security Appliance (C-Series and X-Series) versions prior [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2877&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft size-thumbnail wp-image-502" title="weaklink" src="http://kohi10.files.wordpress.com/2010/04/weaklink.jpg?w=150&#038;h=97" alt="" width="150" height="97" />Advisory ID: cisco-sa-20120126-ironport</p>
<p>Cisco IronPort Email Security and IronPort Security Management Appliances contain a vulnerability that may allow a remote, unauthenticated attacker to execute arbitrary code with elevated privileges.  Fixed software versions or patches are not yet available.  Configuration workarounds that mitigate this vulnerability are available.</p>
<p>Cisco IronPort Email Security Appliance (C-Series and X-Series) versions prior to 7.6.0 and IronPort Security Management Appliance (M-Series) versions prior to 7.8.0 are affected by the FreeBSD telnetd remote code execution vulnerability documented by Common Vulnerabilities and Exposures (CVE) identifier CVE-2011-4862.  This one scores a 19 out of 20 on the CVSS score (BASE &amp; TEMPORAL), so you may want to exercise the workaround on this one.</p>
<p><a href="http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120126-ironport">http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120126-ironport</a></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<br />Filed under: <a href='http://kohi10.wordpress.com/category/help/'>Help!</a>, <a href='http://kohi10.wordpress.com/category/industry/'>Industry</a>, <a href='http://kohi10.wordpress.com/category/security-info/'>Security Info</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kohi10.wordpress.com/2877/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kohi10.wordpress.com/2877/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kohi10.wordpress.com/2877/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kohi10.wordpress.com/2877/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kohi10.wordpress.com/2877/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kohi10.wordpress.com/2877/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kohi10.wordpress.com/2877/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kohi10.wordpress.com/2877/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kohi10.wordpress.com/2877/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kohi10.wordpress.com/2877/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kohi10.wordpress.com/2877/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kohi10.wordpress.com/2877/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kohi10.wordpress.com/2877/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kohi10.wordpress.com/2877/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2877&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kohi10.wordpress.com/2012/01/26/cisco-ironport-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/8de577878bcab208f102a8f28d3b227d?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">kohi10</media:title>
		</media:content>

		<media:content url="http://kohi10.files.wordpress.com/2010/04/weaklink.jpg?w=150" medium="image">
			<media:title type="html">weaklink</media:title>
		</media:content>
	</item>
		<item>
		<title>Symantec Recommends Not Using PcAnywhere</title>
		<link>http://kohi10.wordpress.com/2012/01/26/symantec-recommends-not-using-pcanywhere/</link>
		<comments>http://kohi10.wordpress.com/2012/01/26/symantec-recommends-not-using-pcanywhere/#comments</comments>
		<pubDate>Thu, 26 Jan 2012 12:43:39 +0000</pubDate>
		<dc:creator>kohi10</dc:creator>
				<category><![CDATA[Help!]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Security Info]]></category>
		<category><![CDATA[awareness]]></category>
		<category><![CDATA[best practices]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[Guidance]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[security configuration management]]></category>
		<category><![CDATA[vulnerabilities]]></category>

		<guid isPermaLink="false">http://kohi10.wordpress.com/?p=2874</guid>
		<description><![CDATA[Reuters reports that Symantec has taken the rare step of advising customers not to use one of its mainstay products, saying that remote control software product pcAnywhere is at increased risk of getting hacked after details and code were stolen.  Symantec is asking customers to temporarily stop using the product, until it releases an update to the software [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2874&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-thumbnail wp-image-2450" title="Chain" src="http://kohi10.files.wordpress.com/2011/10/cormac-1.jpg?w=150&#038;h=112" alt="Weak Link" width="150" height="112" /><a href="http://www.reuters.com/article/2012/01/25/us-symantec-hacking-idUSTRE80O1UY20120125" target="_blank">Reuters reports</a> that Symantec has taken the rare step of advising customers not to use one of its mainstay products, saying that remote control software product pcAnywhere is at increased risk of getting hacked after details and code were stolen.  Symantec is asking customers to <span style="text-decoration:underline;">temporarily</span> stop using the product, until it releases an update to the software that will mitigate the risk of an attack. PcAnywhere is also bundled with other titles, like Symantec&#8217;s Altiris line of software for managing corporate PCs.</p>
<p>This is a serious step, and I applaud Symantec for coming clean on the risks of this powerful and popular product.  Most vendors woould simply warn users of increased risk and provide workaround and mitigation steps that may or may not be implementable or effective.  I hope that Symantec can release new code quickly, and overcome this unfortunate problem.</p>
<br />Filed under: <a href='http://kohi10.wordpress.com/category/help/'>Help!</a>, <a href='http://kohi10.wordpress.com/category/industry/'>Industry</a>, <a href='http://kohi10.wordpress.com/category/security-info/'>Security Info</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kohi10.wordpress.com/2874/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kohi10.wordpress.com/2874/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kohi10.wordpress.com/2874/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kohi10.wordpress.com/2874/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kohi10.wordpress.com/2874/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kohi10.wordpress.com/2874/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kohi10.wordpress.com/2874/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kohi10.wordpress.com/2874/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kohi10.wordpress.com/2874/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kohi10.wordpress.com/2874/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kohi10.wordpress.com/2874/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kohi10.wordpress.com/2874/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kohi10.wordpress.com/2874/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kohi10.wordpress.com/2874/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2874&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kohi10.wordpress.com/2012/01/26/symantec-recommends-not-using-pcanywhere/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/8de577878bcab208f102a8f28d3b227d?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">kohi10</media:title>
		</media:content>

		<media:content url="http://kohi10.files.wordpress.com/2011/10/cormac-1.jpg?w=150" medium="image">
			<media:title type="html">Chain</media:title>
		</media:content>
	</item>
		<item>
		<title>Fake App On Apple&#8217;s App Store</title>
		<link>http://kohi10.wordpress.com/2012/01/24/fake-app-on-apples-app-store/</link>
		<comments>http://kohi10.wordpress.com/2012/01/24/fake-app-on-apples-app-store/#comments</comments>
		<pubDate>Tue, 24 Jan 2012 09:29:00 +0000</pubDate>
		<dc:creator>kohi10</dc:creator>
				<category><![CDATA[Security Info]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Help!]]></category>

		<guid isPermaLink="false">http://kohi10.wordpress.com/?p=2870</guid>
		<description><![CDATA[Naked Security is warning that just because Apple has put in procedures to police their App Store and pre-approve each app, doesn&#8217;t mean that fake or malicious apps never appear.  This weekend the iPhoneography blog spotted a bogus app posing as the popular Camera+ application.  It&#8217;s not just fake software you have to watch out [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2870&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft  wp-image-2556" title="Matrix-BLUE-Room" src="http://kohi10.files.wordpress.com/2011/11/matrix-blue-room.jpg?w=98&#038;h=69" alt="" width="98" height="69" /><a href="http://nakedsecurity.sophos.com/2012/01/23/fake-camera-app-hits-app-store/" target="_blank">Naked Security is warning</a> that just because Apple has put in procedures to police their App Store and pre-approve each app, doesn&#8217;t mean that fake or malicious apps never appear.  This weekend the <a title="Link to article on iPhoneography" href="http://www.iphoneography.com/journal/2012/1/21/warning-fake-camera-app-is-in-the-app-store.html" rel="nofollow">iPhoneography blog</a> spotted a bogus app posing as the popular Camera+ application.  It&#8217;s not just fake software you have to watch out for, malicious code <em>has</em> made it into the App Store <a href="http://nakedsecurity.sophos.com/2011/11/08/apple%E2%80%99s-app-store-security-compromised/">in the past</a> too.</p>
<p>&nbsp;</p>
<br />Filed under: <a href='http://kohi10.wordpress.com/category/help/'>Help!</a>, <a href='http://kohi10.wordpress.com/category/industry/'>Industry</a>, <a href='http://kohi10.wordpress.com/category/security-info/'>Security Info</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kohi10.wordpress.com/2870/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kohi10.wordpress.com/2870/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kohi10.wordpress.com/2870/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kohi10.wordpress.com/2870/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kohi10.wordpress.com/2870/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kohi10.wordpress.com/2870/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kohi10.wordpress.com/2870/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kohi10.wordpress.com/2870/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kohi10.wordpress.com/2870/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kohi10.wordpress.com/2870/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kohi10.wordpress.com/2870/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kohi10.wordpress.com/2870/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kohi10.wordpress.com/2870/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kohi10.wordpress.com/2870/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2870&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kohi10.wordpress.com/2012/01/24/fake-app-on-apples-app-store/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/8de577878bcab208f102a8f28d3b227d?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">kohi10</media:title>
		</media:content>

		<media:content url="http://kohi10.files.wordpress.com/2011/11/matrix-blue-room.jpg?w=150" medium="image">
			<media:title type="html">Matrix-BLUE-Room</media:title>
		</media:content>
	</item>
		<item>
		<title>Insecure Conference Rooms</title>
		<link>http://kohi10.wordpress.com/2012/01/24/insecure-conference-rooms/</link>
		<comments>http://kohi10.wordpress.com/2012/01/24/insecure-conference-rooms/#comments</comments>
		<pubDate>Tue, 24 Jan 2012 08:58:17 +0000</pubDate>
		<dc:creator>kohi10</dc:creator>
				<category><![CDATA[Security Info]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Help!]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[Guidance]]></category>
		<category><![CDATA[best practices]]></category>
		<category><![CDATA[configuration management]]></category>
		<category><![CDATA[security configuration management]]></category>
		<category><![CDATA[exploitation]]></category>
		<category><![CDATA[human]]></category>
		<category><![CDATA[awareness]]></category>
		<category><![CDATA[DLP]]></category>

		<guid isPermaLink="false">http://kohi10.wordpress.com/?p=2867</guid>
		<description><![CDATA[The New York Times is reporting that Rapid7 researchers have discovered that they could remotely infiltrate conference rooms in some of the top venture capital, law firms, pharmaceutical and oil companies across North America by simply calling in to unsecured videoconferencing systems found by scanning the internet. Moore found he was able to listen in on meetings, remotely [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2867&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-thumbnail wp-image-2450" title="Chain" src="http://kohi10.files.wordpress.com/2011/10/cormac-1.jpg?w=150&#038;h=112" alt="Weak Link" width="150" height="112" />The <a href="http://www.nytimes.com/2012/01/23/technology/flaws-in-videoconferencing-systems-put-boardrooms-at-risk.html" target="_blank">New York Times is reporting</a> that Rapid7 researchers have discovered that they could remotely infiltrate conference rooms in some of the top venture capital, law firms, pharmaceutical and oil companies across North America by simply calling in to unsecured videoconferencing systems found by scanning the internet.</p>
<p>Moore found he was able to listen in on meetings, remotely steer a camera, and zoom in on items in the room to read proprietary information on documents.  Most expensive videoconferencing systems offer encryption, password protection and camera lock down capabiilties, but they found that administrators were setting them up outside of firewalls for convenience, and not properly configuring security features.  Some systems were set up to <span style="text-decoration:underline;"><em>automatically</em></span> accept inbound calls, opening the way for anyone to call in and eavesdrop on a meeting.</p>
<p>“These are literally some of the world’s most important boardrooms — this is where their most critical meetings take place — and there could be silent attendees in all of them.”</p>
<p>Time to review your video and conference  call setups, folks.  It would be terrible to find out that privileged client or finiancial information was so easily obtainable AFTER the fact!</p>
<br />Filed under: <a href='http://kohi10.wordpress.com/category/help/'>Help!</a>, <a href='http://kohi10.wordpress.com/category/industry/'>Industry</a>, <a href='http://kohi10.wordpress.com/category/security-info/'>Security Info</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kohi10.wordpress.com/2867/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kohi10.wordpress.com/2867/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kohi10.wordpress.com/2867/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kohi10.wordpress.com/2867/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kohi10.wordpress.com/2867/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kohi10.wordpress.com/2867/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kohi10.wordpress.com/2867/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kohi10.wordpress.com/2867/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kohi10.wordpress.com/2867/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kohi10.wordpress.com/2867/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kohi10.wordpress.com/2867/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kohi10.wordpress.com/2867/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kohi10.wordpress.com/2867/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kohi10.wordpress.com/2867/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2867&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kohi10.wordpress.com/2012/01/24/insecure-conference-rooms/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/8de577878bcab208f102a8f28d3b227d?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">kohi10</media:title>
		</media:content>

		<media:content url="http://kohi10.files.wordpress.com/2011/10/cormac-1.jpg?w=150" medium="image">
			<media:title type="html">Chain</media:title>
		</media:content>
	</item>
		<item>
		<title>Twitter Acquires Dasient</title>
		<link>http://kohi10.wordpress.com/2012/01/24/twitter-acquires-dasient/</link>
		<comments>http://kohi10.wordpress.com/2012/01/24/twitter-acquires-dasient/#comments</comments>
		<pubDate>Tue, 24 Jan 2012 08:25:03 +0000</pubDate>
		<dc:creator>kohi10</dc:creator>
				<category><![CDATA[Security Info]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Help!]]></category>

		<guid isPermaLink="false">http://kohi10.wordpress.com/?p=2862</guid>
		<description><![CDATA[Twitter has just acquired anti-malware vendor Dasient, who is no longer developing for the security industry.  &#8220;Effective immediately, we will be bringing our technology, tools, and team to the revenue engineering team at Twitter,&#8221; Dasient wrote on its blog.  &#8220;As part of this merger, Dasient is winding down its business and is no longer able [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2862&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft  wp-image-2557" title="Questions and Answers signpost" src="http://kohi10.files.wordpress.com/2011/11/consulting.jpg?w=115&#038;h=67" alt="" width="115" height="67" />Twitter has just acquired anti-malware vendor Dasient, who is no longer developing for the security industry.  &#8220;Effective immediately, we will be bringing our technology, tools, and team to the revenue engineering team at Twitter,&#8221; Dasient wrote on its <a href="http://blog.dasient.com/2012/01/dasient-has-been-acquired-by-twitter.html">blog</a>.  &#8220;As part of this merger, Dasient is winding down its business and is no longer able to accept new customers.&#8221;</p>
<p>So, what does that indicate to you?</p>
<ul>
<li>Does Twitter know that the Internet is a dangerous playground, and is investing in application security from the inside out?</li>
<li>Are they hedging their bets that they can re-enter the security market with a new Twit-Brand?</li>
<li>Was it just the right time and place to merge development resources?</li>
</ul>
<br />Filed under: <a href='http://kohi10.wordpress.com/category/help/'>Help!</a>, <a href='http://kohi10.wordpress.com/category/industry/'>Industry</a>, <a href='http://kohi10.wordpress.com/category/security-info/'>Security Info</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kohi10.wordpress.com/2862/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kohi10.wordpress.com/2862/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kohi10.wordpress.com/2862/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kohi10.wordpress.com/2862/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kohi10.wordpress.com/2862/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kohi10.wordpress.com/2862/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kohi10.wordpress.com/2862/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kohi10.wordpress.com/2862/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kohi10.wordpress.com/2862/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kohi10.wordpress.com/2862/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kohi10.wordpress.com/2862/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kohi10.wordpress.com/2862/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kohi10.wordpress.com/2862/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kohi10.wordpress.com/2862/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2862&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kohi10.wordpress.com/2012/01/24/twitter-acquires-dasient/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/8de577878bcab208f102a8f28d3b227d?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">kohi10</media:title>
		</media:content>

		<media:content url="http://kohi10.files.wordpress.com/2011/11/consulting.jpg?w=150" medium="image">
			<media:title type="html">Questions and Answers signpost</media:title>
		</media:content>
	</item>
		<item>
		<title>Anonymous&#8217; Latest Shennanigns</title>
		<link>http://kohi10.wordpress.com/2012/01/24/anonymous-latest-shennanigns/</link>
		<comments>http://kohi10.wordpress.com/2012/01/24/anonymous-latest-shennanigns/#comments</comments>
		<pubDate>Tue, 24 Jan 2012 08:03:11 +0000</pubDate>
		<dc:creator>kohi10</dc:creator>
				<category><![CDATA[Help!]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Security Info]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[awareness]]></category>
		<category><![CDATA[exploitation]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://kohi10.wordpress.com/?p=2859</guid>
		<description><![CDATA[Over the weekend, Anonymous defaced CBS&#8216; website, and apparently deleted all of their online content.  Monday they were working on defacing a Brazilian city site.  Now they have taken to Twitter, asking their &#8221;followers&#8221; to select their next targets for them, The Register reports. Still seething over the arrest of Megaupload mogul Kim Dotcom, Anonymous tweeted [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2859&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-thumbnail wp-image-1084" title="B-spy" src="http://kohi10.files.wordpress.com/2010/11/b-spy.jpg?w=150&#038;h=140" alt="" width="150" height="140" />Over the weekend, Anonymous <a href="http://thehackernews.com/2012/01/cbs-broadcasting-hacked-by-anonymous.html" target="_blank">defaced CBS</a>&#8216; website, and apparently deleted all of their online content.  Monday they were working on defacing a Brazilian city site.  Now they have taken to Twitter, asking their &#8221;followers&#8221; to select their next targets for them, The Register reports.</p>
<p>Still seething over the arrest of Megaupload mogul Kim Dotcom, Anonymous tweeted the following:</p>
<p style="padding-left:30px;"><em>Just out of curiosity, what would you like to see #Anonymous hack next? Tweet and let us know&#8230;</em></p>
<p>They are vowing to keep up the pressure, launching attacks and causing disruptions until Dotcom is released.</p>
<br />Filed under: <a href='http://kohi10.wordpress.com/category/help/'>Help!</a>, <a href='http://kohi10.wordpress.com/category/industry/'>Industry</a>, <a href='http://kohi10.wordpress.com/category/security-info/'>Security Info</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kohi10.wordpress.com/2859/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kohi10.wordpress.com/2859/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kohi10.wordpress.com/2859/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kohi10.wordpress.com/2859/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kohi10.wordpress.com/2859/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kohi10.wordpress.com/2859/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kohi10.wordpress.com/2859/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kohi10.wordpress.com/2859/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kohi10.wordpress.com/2859/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kohi10.wordpress.com/2859/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kohi10.wordpress.com/2859/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kohi10.wordpress.com/2859/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kohi10.wordpress.com/2859/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kohi10.wordpress.com/2859/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2859&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kohi10.wordpress.com/2012/01/24/anonymous-latest-shennanigns/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/8de577878bcab208f102a8f28d3b227d?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">kohi10</media:title>
		</media:content>

		<media:content url="http://kohi10.files.wordpress.com/2010/11/b-spy.jpg?w=150" medium="image">
			<media:title type="html">B-spy</media:title>
		</media:content>
	</item>
		<item>
		<title>Cisco Q4-11 Global Threat Report</title>
		<link>http://kohi10.wordpress.com/2012/01/24/cisco-q4-11-global-threat-report/</link>
		<comments>http://kohi10.wordpress.com/2012/01/24/cisco-q4-11-global-threat-report/#comments</comments>
		<pubDate>Tue, 24 Jan 2012 07:42:08 +0000</pubDate>
		<dc:creator>kohi10</dc:creator>
				<category><![CDATA[Security Info]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Help!]]></category>
		<category><![CDATA[anti-virus]]></category>
		<category><![CDATA[awareness]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Guidance]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Threat Report]]></category>

		<guid isPermaLink="false">http://kohi10.wordpress.com/?p=2838</guid>
		<description><![CDATA[&#8216;Tis the season for 2011 threat reports to start emerging, and here is Cisco&#8217;s contribution.  The Q4-11 report covers the period from 1 October 2011 through 31 December 2011.  This quarter’s contributors were Cisco Intrusion Prevention System (IPS), Cisco IronPort, Cisco Security Research and Operations (SR&#38;O), and Cisco ScanSafe. . . Highlights from the Cisco [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2838&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft size-thumbnail wp-image-1292" title="hand-tools-list-important" src="http://kohi10.files.wordpress.com/2011/01/hand-tools-list-important.jpg?w=150&#038;h=125" alt="" width="150" height="125" />&#8216;Tis the season for 2011 threat reports to start emerging, and here is Cisco&#8217;s contribution.  The Q4-11 report covers the period from 1 October 2011 through 31 December 2011.  This quarter’s contributors were Cisco Intrusion Prevention System (IPS), Cisco IronPort, Cisco Security Research and Operations (SR&amp;O), and Cisco ScanSafe.</p>
<p>.</p>
<p>.</p>
<p>Highlights from the Cisco 4Q11 Global Threat Report include:</p>
<ul>
<li>An overall average of 362 Web malware encounters per month occurred throughout 2011.</li>
<li>Enterprise users experienced an average of 339 Web malware encounters per month in the quarter.</li>
<li>The highest average rate of encounters occurred during September and October (698 and 697).</li>
<li>An average of 20,141 unique Web malware hosts were encountered per month in 2011, compared to 14,217/month in 2010</li>
<li>During 4Q11, 33% of Web malware was zero-day, not detectable by traditional signature-based methodologies.</li>
<li>The rate of SQL injection signature events remained steady, with a slight decrease observed as the quarter progressed.</li>
<li>Denial-of-service events increased slightly over the course of 4Q11.</li>
<li>Global spam volumes continued to decline throughout 2011.<span id="more-2838"></span></li>
</ul>
<p>The new <a href="http://cisco.com/security" target="_blank">Cisco Security Intelligence Operations (SIO) portal</a> provides early-warning intelligence, threat and vulnerability analysis, and proven Cisco mitigation solutions to help protect your network.  Cisco Global Threat Reports, as well as previous publications, including the Cisco Annual Security Reports, are now located there.</p>
<p>Download a copy of the <a href="http://www.cisco.com/web/about/security/intelligence/reports/cisco_global_threat_report_4Q11.pdf">Cisco 4Q11 Global Threat Report</a>.</p>
<br />Filed under: <a href='http://kohi10.wordpress.com/category/help/'>Help!</a>, <a href='http://kohi10.wordpress.com/category/industry/'>Industry</a>, <a href='http://kohi10.wordpress.com/category/security-info/'>Security Info</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kohi10.wordpress.com/2838/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kohi10.wordpress.com/2838/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kohi10.wordpress.com/2838/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kohi10.wordpress.com/2838/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kohi10.wordpress.com/2838/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kohi10.wordpress.com/2838/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kohi10.wordpress.com/2838/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kohi10.wordpress.com/2838/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kohi10.wordpress.com/2838/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kohi10.wordpress.com/2838/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kohi10.wordpress.com/2838/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kohi10.wordpress.com/2838/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kohi10.wordpress.com/2838/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kohi10.wordpress.com/2838/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2838&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kohi10.wordpress.com/2012/01/24/cisco-q4-11-global-threat-report/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/8de577878bcab208f102a8f28d3b227d?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">kohi10</media:title>
		</media:content>

		<media:content url="http://kohi10.files.wordpress.com/2011/01/hand-tools-list-important.jpg?w=150" medium="image">
			<media:title type="html">hand-tools-list-important</media:title>
		</media:content>
	</item>
		<item>
		<title>US Supreme Court Court Rules On GPS Tracking [sort of]</title>
		<link>http://kohi10.wordpress.com/2012/01/23/us-supreme-court-court-rules-on-gps-tracking-sort-of/</link>
		<comments>http://kohi10.wordpress.com/2012/01/23/us-supreme-court-court-rules-on-gps-tracking-sort-of/#comments</comments>
		<pubDate>Mon, 23 Jan 2012 23:10:41 +0000</pubDate>
		<dc:creator>kohi10</dc:creator>
				<category><![CDATA[Help!]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Security Info]]></category>
		<category><![CDATA[awareness]]></category>
		<category><![CDATA[Guidance]]></category>
		<category><![CDATA[Law]]></category>

		<guid isPermaLink="false">http://kohi10.wordpress.com/?p=2834</guid>
		<description><![CDATA[According to a post on Wired, the US Supreme Court has ruled that installation of a GPS tracking device is legal, but installation and use for an extended period of time (as yet undefined), MAY not be.  Good of them to have made such a clear and concise decision, before dismissing a drug-lord&#8217;s life sentence&#8230; [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2834&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-thumbnail wp-image-502" title="weaklink" src="http://kohi10.files.wordpress.com/2010/04/weaklink.jpg?w=150&#038;h=97" alt="" width="150" height="97" />According to a <a href="http://www.wired.com/threatlevel/2012/01/scotus-gps-ruling" target="_blank">post on Wired</a>, the US Supreme Court has ruled that installation of a GPS tracking device is legal, but installation <em>and use for an extended period of time</em> (as yet undefined), MAY not be.  Good of them to have made such a clear and concise decision, before dismissing a drug-lord&#8217;s life sentence&#8230;</p>
<p>“We hold that the government’s installation of a GPS device on a target’s vehicle, and its use of that device to monitor the vehicle’s movements, constitutes a ‘search,” Justice Antonin Scalia wrote.  They declined to clarify <a href="http://volokh.com/2012/01/23/what-jones-does-not-hold/">whether that search was unreasonable and required a warrant</a>.</p>
<br />Filed under: <a href='http://kohi10.wordpress.com/category/help/'>Help!</a>, <a href='http://kohi10.wordpress.com/category/industry/'>Industry</a>, <a href='http://kohi10.wordpress.com/category/security-info/'>Security Info</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kohi10.wordpress.com/2834/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kohi10.wordpress.com/2834/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kohi10.wordpress.com/2834/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kohi10.wordpress.com/2834/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kohi10.wordpress.com/2834/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kohi10.wordpress.com/2834/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kohi10.wordpress.com/2834/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kohi10.wordpress.com/2834/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kohi10.wordpress.com/2834/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kohi10.wordpress.com/2834/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kohi10.wordpress.com/2834/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kohi10.wordpress.com/2834/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kohi10.wordpress.com/2834/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kohi10.wordpress.com/2834/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2834&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kohi10.wordpress.com/2012/01/23/us-supreme-court-court-rules-on-gps-tracking-sort-of/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/8de577878bcab208f102a8f28d3b227d?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">kohi10</media:title>
		</media:content>

		<media:content url="http://kohi10.files.wordpress.com/2010/04/weaklink.jpg?w=150" medium="image">
			<media:title type="html">weaklink</media:title>
		</media:content>
	</item>
		<item>
		<title>Core Security Technologies Breached Again?</title>
		<link>http://kohi10.wordpress.com/2012/01/23/core-security-technologies-breached-again/</link>
		<comments>http://kohi10.wordpress.com/2012/01/23/core-security-technologies-breached-again/#comments</comments>
		<pubDate>Mon, 23 Jan 2012 22:54:55 +0000</pubDate>
		<dc:creator>kohi10</dc:creator>
				<category><![CDATA[Help!]]></category>
		<category><![CDATA[Industry]]></category>
		<category><![CDATA[Security Info]]></category>
		<category><![CDATA[awareness]]></category>
		<category><![CDATA[configuration management]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[exploitation]]></category>
		<category><![CDATA[Incident Response]]></category>
		<category><![CDATA[security configuration management]]></category>
		<category><![CDATA[vulnerabilities]]></category>

		<guid isPermaLink="false">http://kohi10.wordpress.com/?p=2831</guid>
		<description><![CDATA[Core Security Technologies may be in trouble again.  &#8220;snc0pe&#8221; claims to have breached their networks for the third time, posting IDs and passwords publicly.  The last time snc0pe hacked Core Security was September 2011, leaving the front page defaced. Core Security Technologies is a computer and network security company that provides penetration testing and security measurement [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2831&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img class="alignleft size-thumbnail wp-image-2450" title="Chain" src="http://kohi10.files.wordpress.com/2011/10/cormac-1.jpg?w=150&#038;h=112" alt="Weak Link" width="150" height="112" /><a href="http://www.coresecurity.com/" target="_blank">Core Security Technologies</a> may be in trouble again.  &#8220;snc0pe&#8221; <a href="http://thehackernews.com/2012/01/third-security-breach-at-core-security.html" target="_blank">claims</a> to have breached their networks for the third time, posting IDs and passwords publicly.  The last time snc0pe hacked Core Security was September 2011, leaving the front page defaced.</p>
<p>Core Security Technologies is a computer and network security company that provides penetration testing and security measurement software products and services.  The company’s research arm, CoreLabs, identifies security vulnerabilities, publishes advisories, and works with vendors to eliminate the exposures they find.</p>
<p>Core is dismissing the attack as insignificant, claiming that it was launched against an 8 year old, unused server that contains no relevant information.</p>
<p>Questions;</p>
<ul>
<li>What is an unused server doing connected to the internet?</li>
<li>What access does it offer to other internal and external resources?</li>
<li>Just how irrelevant is the information that is stored on it, or accessible using its credentials?</li>
</ul>
<br />Filed under: <a href='http://kohi10.wordpress.com/category/help/'>Help!</a>, <a href='http://kohi10.wordpress.com/category/industry/'>Industry</a>, <a href='http://kohi10.wordpress.com/category/security-info/'>Security Info</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kohi10.wordpress.com/2831/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kohi10.wordpress.com/2831/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kohi10.wordpress.com/2831/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kohi10.wordpress.com/2831/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kohi10.wordpress.com/2831/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kohi10.wordpress.com/2831/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kohi10.wordpress.com/2831/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kohi10.wordpress.com/2831/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kohi10.wordpress.com/2831/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kohi10.wordpress.com/2831/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kohi10.wordpress.com/2831/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kohi10.wordpress.com/2831/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kohi10.wordpress.com/2831/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kohi10.wordpress.com/2831/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2831&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kohi10.wordpress.com/2012/01/23/core-security-technologies-breached-again/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/8de577878bcab208f102a8f28d3b227d?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">kohi10</media:title>
		</media:content>

		<media:content url="http://kohi10.files.wordpress.com/2011/10/cormac-1.jpg?w=150" medium="image">
			<media:title type="html">Chain</media:title>
		</media:content>
	</item>
		<item>
		<title>Why Do We Network, Socially?</title>
		<link>http://kohi10.wordpress.com/2012/01/21/why-do-we-network-socially/</link>
		<comments>http://kohi10.wordpress.com/2012/01/21/why-do-we-network-socially/#comments</comments>
		<pubDate>Sun, 22 Jan 2012 01:17:32 +0000</pubDate>
		<dc:creator>kohi10</dc:creator>
				<category><![CDATA[Industry]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[WhAtEvEr]]></category>
		<category><![CDATA[Guidance]]></category>
		<category><![CDATA[human]]></category>
		<category><![CDATA[People Management]]></category>

		<guid isPermaLink="false">http://kohi10.wordpress.com/?p=2826</guid>
		<description><![CDATA[A LinkedIn acquaintance of mine has posed what I believe is a very good question, and has caused me to reflect this weekend.  I have responded, but am frustrated with the very short box (a few hundred letters?  I&#8217;m noisier than that!!)  that is allotted to respond.  I will try to say here what I have [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2826&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><img class="alignright size-thumbnail wp-image-2557" title="Questions and Answers signpost" src="http://kohi10.files.wordpress.com/2011/11/consulting.jpg?w=150&#038;h=99" alt="" width="150" height="99" />A LinkedIn acquaintance of mine has posed what I believe is a very good question, and has caused me to reflect this weekend.  I have responded, but am frustrated with the very short box (a few hundred letters?  I&#8217;m noisier than that!!)  that is allotted to respond.  I will try to say here what I have said on LinkedIn, with the complete freedom to use as many characters as I please.  I would appreciate your input as well, to find out why others use LinkedIn to connect.</p>
<p style="padding-left:30px;"><strong>HC&#8217;s question:</strong><em>  Why do we connect on LinkedIn?  When I log into LinkedIn, I usually see just line after line, &#8220;So-as-so is now connected to So-and-so&#8230;&#8221;.  Okay, that&#8217;s great.  Then I see that I have something in my Inbox, and it&#8217;s a couple of folks I&#8217;ve never met, or perhaps someone who attended a presentation, who wants to connect with me.  For the past couple of months, I&#8217;ve been asking folks, &#8220;why do you want to connect with me?&#8221;  What&#8217;s the value in this &#8220;relationship&#8221; to you?  Most often, the response is, &#8220;oh, sorry to offend&#8230;&#8221;, and then nothing else.  The thing is&#8230;I&#8217;m not offended</em>.</p>
<p>I too have been asking, if I didn&#8217;t invite the link, what the nature of the request is, or how I can help them otherwise.  Again, not intended to offend, I have always been somewhat selective with my Social Networking connections.  I will gladly share information with others, but will try my hardest to avoid sharing others&#8217; information.  In my 5 or so years on LinkedIn I still only have 250 connections.<span id="more-2826"></span></p>
<p>There are people in the &#8220;real world&#8221; that are members of my LinkedIn network.  People that I have worked very closely with, care a good deal about, and respect greatly.  I want to make myself avaialble to them as easily as possible, and am on the move often, have changed email addresses and phone numbers, and may only be in their thoughts occassionally (Security folks are about as popular as Auditors at parties).  I use LinkedIn to serve that purpose.  My info and locale may change, but you can find me there.</p>
<p>There are also people on my roster that I have met, worked with, attended conferences with, or had business conversations with somewhere.  Acquaintances.  I like to keep up with where they are working, what they are working on, and occassionally ping them to get together socially or professionally if a mutually interesting topic or activity presents itself.  They also offer a symbiotic relationship; they are often a source of continued employment through contacts and contracts, and recipients of investigative efforts and intell should their need arise.</p>
<p>There are also people that I have never directly met.  These are the few individuals that I have email-based conversations with, have authored books on subjects that I am interested in, published research or useful tools, and have impressed and/or influenced me in some positive manner.  I link with these folks more selfishly than with others, as I am interested in what they are becoming interested in.  They are my thought leaders, if you will.  I look to see what areas they are exploring, what keeps them awake at night, what do they fear is hiding over the horizon?  They provide initial links to papers about new discoveries, vulnerabilities, threats, and solutions.  I hope that if they spot something new in the InfoSec or IT domains, they will share it on LinkedIn, and allow me to start looking over my own shoulder, and the shoulders of those I hold near and dear.</p>
<p>The value of these relationships, and my LinkedIn relationship with HC, <span style="text-decoration:underline;"><strong>is</strong></span> selfish.  I work in Information Security, and often in the field of Incident Response.  This is a field that is both complex and dangerous.  Not dangerous like police work, I don&#8217;t anticipate being shot at every morning, but there is a hint of danger in that I am the thin pink line between some organized crime boss and the loot stored in the electronic vault.  In some places, that can make you a real target.  I respect the work that HC has done, have read a couple of books with his name on them, and have placed his name in my online rolodex to be pulled out if the event arises that I come across something that I and perhaps my local, trusted, CSIRT buddies can&#8217;t figure out for ourselves.  I don&#8217;t solicit his opinion on things lightly, as I assume that he has bills to pay, consults on things that require his expertise, and may not appreciate every Tom Dick and Mark constantly pleading for free advice.  I haven&#8217;t needed to bother him to date beyond the initial link request, as I prefer to do my own homework, until I reach my limits, then look to engage the closest allies first.  It is reassuring to know that I <em>can</em> access HC if I need to, though.</p>
<p>I may never reach out to HC, and I solicited a connection to him with a selfish heart.  Now I ask you all, if we are linked-in, why did you accept my request, and why do you link to others?</p>
<br />Filed under: <a href='http://kohi10.wordpress.com/category/industry/'>Industry</a>, <a href='http://kohi10.wordpress.com/category/uncategorized/'>Uncategorized</a>, <a href='http://kohi10.wordpress.com/category/whatever/'>WhAtEvEr</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/kohi10.wordpress.com/2826/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/kohi10.wordpress.com/2826/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/kohi10.wordpress.com/2826/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/kohi10.wordpress.com/2826/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/kohi10.wordpress.com/2826/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/kohi10.wordpress.com/2826/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/kohi10.wordpress.com/2826/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/kohi10.wordpress.com/2826/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/kohi10.wordpress.com/2826/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/kohi10.wordpress.com/2826/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/kohi10.wordpress.com/2826/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/kohi10.wordpress.com/2826/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/kohi10.wordpress.com/2826/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/kohi10.wordpress.com/2826/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=kohi10.wordpress.com&amp;blog=5518246&amp;post=2826&amp;subd=kohi10&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://kohi10.wordpress.com/2012/01/21/why-do-we-network-socially/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/8de577878bcab208f102a8f28d3b227d?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=PG" medium="image">
			<media:title type="html">kohi10</media:title>
		</media:content>

		<media:content url="http://kohi10.files.wordpress.com/2011/11/consulting.jpg?w=150" medium="image">
			<media:title type="html">Questions and Answers signpost</media:title>
		</media:content>
	</item>
	</channel>
</rss>
