Monday May 21

Archive for July, 2009

Jul
23/09
Blog Inter-Video-Views: Who do you want to see? [JJ]
Last Updated on Saturday, 28 January 2012 07:04
Written by jj
Thursday, July 23rd, 2009

Okay, I keep THINKING about doing this (for more than a year now) but haven’t actually done it. If I blog and talk about doing it, then I’ll have to follow through, so, HERE GOES.

My plan is to start at Black Hat / Defcon / Security B-Sides and conduct some video interviews with interesting folks. Lord knows there are plenty of them out there! (more…)

Tags: , , , ,   |  Posted under Events  |  Comments  4 Comments
Jul
23/09
Be a Part of Security B-Sides: Sponsors and Donations
Last Updated on Saturday, 28 January 2012 07:05
Written by jj
Thursday, July 23rd, 2009

In all my excitement, I forgot one major detail in my post yesterday about the upcoming Security B-Sides Conference, hosted during Black Hat and co-located with Neighborcon – The organization is still seeking a bit of support. (more…)

Tags: ,   |  Posted under Events  |  Comments  No Comments
Jul
22/09
Security B-Sides Conference in Vegas
Last Updated on Saturday, 28 January 2012 07:06
Written by jj
Wednesday, July 22nd, 2009

I’m not sure exactly how this all came to be. I can tell you somewhere along the way, several tweets were flying about a variety of Black Hat presentations turned down this year from pretty prominent speakers. (Mine was turned down as well, although I’m definitely not going to group myself in the prominent speakers category.) Public tweets turned in to private messages amongst several of us. I went to bed that night and when I woke up, some magical hamsters running this wheel had pulled together a killer idea, a web site and were working on the supporting structure of the event’s logistics – location, space, transportation, sponsors. (more…)

Jul
22/09
Adobe PDF Exploit in the Wild > Aggregated Data
Last Updated on Wednesday, 22 July 2009 03:27
Written by jj
Wednesday, July 22nd, 2009

There’s a new PDF exploit active and in the wild just identified by Symantec’s Security Response team.  I don’t have any additional magic insight or recommendations for this, but I wanted to help spread the word and provide some links to additional resources.

Quick Vulnerability Overview

  • Process happens when a malicious PDF is downloaded and drops payload of malware locally on the computer.
  • Vulnerability in Flash (which is embedded in browsers, PDF and other applications) and here is exploited by a malicious PDF file.
  • Protection by updating your antivirus software and verifying they are protecting from this exploit.
  • Malicious PDFs are detected as Trojan.Pidief.G and the dropped files as Trojan Horse.
  • Operating systems current version exploits Windows XP and Vista (if UAC is not enabled).
  • Any software that uses Flash is potentially vulnerable to this issue.

Symantec’s Recommendation Overview
We (Symantec) are in contact with the Adobe PSIRT team in relation to this issue. We urge our customers to ensure their antivirus definitions are up to date. Like the vulnerability Dowd discovered, it’s likely that we will see many attacks over the coming months that will attempt to exploit this vulnerability. As always, keep an eye out for the official patch from Adobe and ensure all products are up to date. As an extra safety measure, Vista users should avail of the UAC (User Account Control) feature as this will help mitigate a successful compromise.

Original Vulnerability info from Symantec
http://www.symantec.com/connect/blogs/next-generation-flash-vulnerability

More on why Flash exploits are important
http://www.matasano.com/log/1032/this-new-vulnerability-dowds-inhuman-flash-exploit/

Tags: , , , ,   |  Posted under Random-izations  |  Comments  No Comments
Jul
03/09
Four Options for Handling Non-Compliant NAC Devices
Last Updated on Saturday, 28 January 2012 06:44
Written by jj
Friday, July 3rd, 2009

Management is on board with your decision to roll out NAC, and your team is working diligently on a migration strategy. You have your organization’s policies clearly defined. You’re ready to create a set of recommendations for handling non-compliant devices and take them to management. Where do you start? (more…)

Tags: , ,   |  Posted under NAC & 802.1X  |  Comments  2 Comments

More Content

Find more of my content at
- Low Tech Hacking book
- Dark Reading
- Network Computing
- IANS
- SearchSecurity
- TechTarget

Get Social

RSSFacebookLinkedinYoutube