Nigerians Just Don’t Know When to Quit
This is an interesting piece of phishing here. My wife and I are looking for a new place to hang out hats as our lease is up for our apt. and we aren't too pleased with our current place. We look at a variety of places, including craigslist. Here's one ... Read More
Going Around In Circles
Let's not start that again...As of late there has been a heated debate among the community that various forms of standards and compliance are effective/ineffective at actually securing systems and networks. Just a quick note:First post I read today is from Ascension Risk Management. There was a point/counterpoint that was ... Read More

Thoughts on Conficker
well, if you can call them thoughtsLong time since my last post. There has been a lot going on in the personal aspects of my life. One of the things that I am happy about, though, is that Red Sox baseball is now in full swing. Today is the first ... Read More
"Google Hacking" made easy
sort of...A lot of people use Google to find information on a "target" or "mark". A lot of times this is either a person, organization or machine. If your mark is a person, there is now a web service that can do this easily, www.pipl.com. The New York Times outlines ... Read More

Personal Security
In the "Digital Age"I was driving home tonight and I was listening to "On Point, with Tom Ashbrook" (NPR). Today's topic was on "Cyberbullying", specifically a court case that may have far-reaching effects. Listen here.The story starts with two Yale law students were harassed and libeled online by an internet ... Read More

Mobile Devices on the LAN
iPhone Hype, get your iPhone hype here!Those handsome, intelligent and engaging folks over at Astaro Internet Security have just introduced a very easy IPSec client auto-setup for an iPhone to connect to a protected LAN. This got me thinking. There is a lot of information available on securing your iPhone ... Read More
Adobe Reader Exploit in the Wild
Hi All,Just passing this info on. I just read on The Register that fully updated and patched Adobe Reader applications running on fully patched Windows systems are vulnerable to a new exploit. The original info from the Reg. article is at Shadow Server but Adobe fully recognizes the Vulnerability here ... Read More
SPF – Not Just for Your Skin
SPF - I need 200, how 'bout you?Anecdotally, I have seen more reports of targeted "spoofed domain" spam. This is a troubling scenario if your domain really is targeted rather than just picked up by a bot. I'll outline a rather nasty one, no names given of course.The Idea is ... Read More

Art Imitating Life
(or life imitating art?)Above is a comic from one of my favorite geeky websites, www.xkcd.com. I like the site because there are 3 comics a week that are funny because they usually hit close to home. Just by looking at the image above, you know that the people that we ... Read More

More Bad News
Oh The Humanity!!Nobody seems to be untouched by the Hindenburg economy. Right now there is so much hatch battening happening that nobody can afford to move forward. What does this mean to security practitioners (other than having to do more with even less)? It means that as attacks and attackers ... Read More