<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-249740660683386337</id><updated>2011-11-23T14:07:41.216-08:00</updated><title type='text'>Security Watch</title><subtitle type='html'></subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://www.okamalo.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><link rel='next' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default?start-index=101&amp;max-results=100'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>233</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-634169172115919521</id><published>2011-02-27T04:13:00.001-08:00</published><updated>2011-04-19T05:47:45.411-07:00</updated><title type='text'>End of Year Security Reports, The Complete List</title><summary type='text'>This is a list of annual security reports by vendors, non-vendors and governments that I was able to collect in the last few weeks.Vendors list:Akamai, state of the internet report, (pdf)Arbor, Network Infrastructure Security Report 2010, (pdf)Blue Coat, 2011 Web Security Report, (pdf)Cisco 2010 Annual Security Report, (pdf)Damballa Top 10 Botnet threat Report, (pdf)GFI Labs, 2010 report on Fake </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/634169172115919521/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=634169172115919521' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/634169172115919521'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/634169172115919521'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2011/02/end-of-year-security-reports-complete.html' title='End of Year Security Reports, The Complete List'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-737470809511733584</id><published>2011-01-05T21:23:00.000-08:00</published><updated>2011-01-05T21:54:20.187-08:00</updated><title type='text'>GSM Security, 2011</title><summary type='text'>The recently ended 27C3 event in Berlin was a good closing of 2010, with some interesting GSM security related topics.1st presentation is about running your own GSM stack on your phone using OsmocomBB Open Source Baseband software on old Motorola phone, while it does not sound like a threat, but it opened the door into conducting lots of attacks, considering that you now have full access to what </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/737470809511733584/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=737470809511733584' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/737470809511733584'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/737470809511733584'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2011/01/gsm-security-2011.html' title='GSM Security, 2011'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/TSVXcgpZngI/AAAAAAAAA2E/uEMn2RDMZNk/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-5977040672319672316</id><published>2010-12-14T00:50:00.000-08:00</published><updated>2010-12-14T01:00:43.035-08:00</updated><title type='text'>Ad Networks Drive-by Download attack</title><summary type='text'>Here is a very nice explanation on how a drive-by-download was done in the recent attack using Ad networks such as DoubleClick and MSN, the attack seems to be started with a social engineering on the Ad  networks to allow adshuffle.com to post adds on their networks instead of the legitimate addshuffle.com.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/5977040672319672316/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=5977040672319672316' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5977040672319672316'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5977040672319672316'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/12/ad-networks-drive-by-download-attack.html' title='Ad Networks Drive-by Download attack'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/TQcxkyXbtwI/AAAAAAAAA10/fpu4LW92_x8/s72-c/doubleclick_hdd_plus_adshufffle_illu.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-3170130224534676518</id><published>2010-11-22T22:37:00.000-08:00</published><updated>2010-11-22T22:41:30.605-08:00</updated><title type='text'>Materials, SecTor 2010</title><summary type='text'>SecTor presentations and videos are now available online.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/3170130224534676518/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=3170130224534676518' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3170130224534676518'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3170130224534676518'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/11/materials-sector-2010.html' title='Materials, SecTor 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/TOthhBwBodI/AAAAAAAAA1c/46PRmHCkzTk/s72-c/logo.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-1593816340859028760</id><published>2010-11-16T00:46:00.000-08:00</published><updated>2010-11-16T00:49:37.628-08:00</updated><title type='text'>Google Hacking Database Reborn</title><summary type='text'>Google Hacking Database (GHDB) is now actively maintained and updated here.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/1593816340859028760/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=1593816340859028760' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1593816340859028760'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1593816340859028760'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/11/google-hacking-database-reborn.html' title='Google Hacking Database Reborn'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/TOJFlgjZE9I/AAAAAAAAA1U/kCA38h5emI0/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-7237593953790941615</id><published>2010-10-24T23:59:00.000-07:00</published><updated>2010-10-25T00:27:03.114-07:00</updated><title type='text'>Reports, State of the Internet 2010, CA Threat Landscape</title><summary type='text'>CA released their Threat Landscape report for 2010, here is a summary:- Notable movement from Windows executables to the web as an executable platform.- IE, Java, PDF, and Flash player vulnerabilities are the biggest Zero-day attacks vectors.- 84% of the total active exploited vulnerabilities are found in browser-based attacks.- The top most prevalent worms propagate through removable drives, </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/7237593953790941615/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=7237593953790941615' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7237593953790941615'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7237593953790941615'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/10/reports-state-of-internet-2010-ca.html' title='Reports, State of the Internet 2010, CA Threat Landscape'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/TMUw0AYx1GI/AAAAAAAAA1M/pdSfk0rU87M/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-6843113866142285136</id><published>2010-10-21T01:02:00.000-07:00</published><updated>2010-10-21T01:02:00.315-07:00</updated><title type='text'>Materials, VB2010 conference</title><summary type='text'>Virus bulletin conference slides are now available here.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/6843113866142285136/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=6843113866142285136' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6843113866142285136'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6843113866142285136'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/10/materials-vb2010-conference.html' title='Materials, VB2010 conference'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/TL7FzXcDH-I/AAAAAAAAAz0/XTtPxQP-fl8/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-6439203440825616240</id><published>2010-10-20T03:08:00.000-07:00</published><updated>2010-10-20T03:14:35.370-07:00</updated><title type='text'>Reports, NSSLabs Consumer Anti-Malware Products Test Report Q3 2010</title><summary type='text'>NSSLabs released a public consumer report on the effectiveness of Anti-malware products. Here are some summary statistics:</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/6439203440825616240/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=6439203440825616240' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6439203440825616240'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6439203440825616240'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/10/reports-nsslabs-consumer-anti-malware.html' title='Reports, NSSLabs Consumer Anti-Malware Products Test Report Q3 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/TL7Abrl8UoI/AAAAAAAAAy8/xIB_7l7UBfA/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-7346273121767950033</id><published>2010-10-16T21:37:00.000-07:00</published><updated>2010-10-16T22:35:10.904-07:00</updated><title type='text'>Materials, HITB Malaysia, 2010</title><summary type='text'>HITB Malaysia is over, here are the slides.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/7346273121767950033/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=7346273121767950033' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7346273121767950033'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7346273121767950033'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/10/materials-hitb-malaysia-2010.html' title='Materials, HITB Malaysia, 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/TLp-HGxYHtI/AAAAAAAAAy0/mRi-_xHVDQw/s72-c/hitbsecconf2010mal-banner.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-6770366385033325648</id><published>2010-10-12T23:32:00.000-07:00</published><updated>2010-10-12T23:43:00.652-07:00</updated><title type='text'>Patching Days for Oracle, Java, and Microsoft</title><summary type='text'>Huge number of patches released by Microsoft, and Oracle, Good luck....Microsoft16 updates covering 49 vulnerabilities Oracle85 Security fixJava29 Security fix</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/6770366385033325648/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=6770366385033325648' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6770366385033325648'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6770366385033325648'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/10/patching-days-oracle-java-microsoft.html' title='Patching Days for Oracle, Java, and Microsoft'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-6726577223115501528</id><published>2010-10-12T23:02:00.000-07:00</published><updated>2010-10-12T23:22:40.364-07:00</updated><title type='text'>Reports, Cyveillance Cyber Intelligence Report for 1st Half of 2010</title><summary type='text'>Cyveillance released their Cyber Intelligence report for 1st Half 2010, as usual, a picture worth a thousand words....</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/6726577223115501528/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=6726577223115501528' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6726577223115501528'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6726577223115501528'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/10/reports-cyveillance-cyber-intelligence.html' title='Reports, Cyveillance Cyber Intelligence Report for 1st Half of 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/TLVOjgCl_vI/AAAAAAAAAx8/oVJH-z69fkI/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-3249596973395849287</id><published>2010-09-28T23:53:00.000-07:00</published><updated>2010-09-29T00:06:01.072-07:00</updated><title type='text'>Materials, BruCON 2010</title><summary type='text'>Check out the presentations of BruCON 2010, lots of interesting presentations.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/3249596973395849287/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=3249596973395849287' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3249596973395849287'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3249596973395849287'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/09/materials-brucon-2010.html' title='Materials, BruCON 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/TKLi8CuK5GI/AAAAAAAAAx0/DEbNVcQR8_I/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-4231712463033988230</id><published>2010-09-19T01:11:00.000-07:00</published><updated>2010-09-19T03:45:44.928-07:00</updated><title type='text'>Reports, Mobile Security Tools, by AV-Comparatives</title><summary type='text'>AV-Comparatives released their Mobile Security report, testing 4  different AV for smart phones, vendors tested are: ESET, F-Secure, Kaspersky, and Trend Micro.The test examine several  features of those security software including:- Theft- Protection- Virus Protection- FirewallThe report is missing some important players in the mobile security area, such as Lookout which provide an additional </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/4231712463033988230/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=4231712463033988230' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4231712463033988230'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4231712463033988230'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/09/reports-mobile-security-tools-by-av.html' title='Reports, Mobile Security Tools, by AV-Comparatives'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/TJXF5ZVTN8I/AAAAAAAAAxs/kBo_GePCWAM/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-3262296838669350733</id><published>2010-08-19T01:01:00.000-07:00</published><updated>2010-08-26T14:05:23.037-07:00</updated><title type='text'>COLLAGE, Exchanging Messages Through Hidden Channels</title><summary type='text'>An interesting tool "Collage", will be released soon to allow people to exchange hidden messages through user-generated content, utilizing public websites such as Flicker, Youtube, Twitter, or other social media websites ....The tool require NO dedicated infrastructure. The sender use Collage to: - Encrypt and embed the message in UGC (User-Generated Content)- Upload the UGC with embedded message</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/3262296838669350733/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=3262296838669350733' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3262296838669350733'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3262296838669350733'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/08/collage-exchanging-messages-through.html' title='COLLAGE, Exchanging Messages Through Hidden Channels'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/THbXDCswBAI/AAAAAAAAAxc/utUPIUZOnwU/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-4881275822038920725</id><published>2010-08-18T00:29:00.000-07:00</published><updated>2010-08-26T14:06:30.400-07:00</updated><title type='text'>Materials, DEFCON 18</title><summary type='text'>Here is a torrent download for over 100 presentations from Defcon 18.And here is the official archive.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/4881275822038920725/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=4881275822038920725' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4881275822038920725'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4881275822038920725'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/08/materials-defcon-18.html' title='Materials, DEFCON 18'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/TGuMoRSgCdI/AAAAAAAAAxU/8hJ0KW7Y7_Q/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-8980365177866761251</id><published>2010-08-15T12:50:00.000-07:00</published><updated>2010-08-15T13:10:14.239-07:00</updated><title type='text'>Materials, Blackhat US 2010</title><summary type='text'>Tons of slides and papers to go through, enjoy the summer here.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/8980365177866761251/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=8980365177866761251' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8980365177866761251'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8980365177866761251'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/08/materials-blackhat-us-2010.html' title='Materials, Blackhat US 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_P4KmVMnbtiU/TGhI2_PwXZI/AAAAAAAAAxM/2Q5jLMvXCM8/s72-c/bh.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-7616987368881770039</id><published>2010-08-09T03:09:00.000-07:00</published><updated>2010-08-09T03:26:03.961-07:00</updated><title type='text'>Reports, Barracuda 2010 Midyear Security Report</title><summary type='text'>Barracuda Labs released their midyear 2010 security report. get it from here.The report is focusing on Twitter usage trends trying to identify illegitimate accounts, also the usage of search engine for finding malware.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/7616987368881770039/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=7616987368881770039' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7616987368881770039'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7616987368881770039'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/08/reports-barracuda-2010-midyear-security.html' title='Reports, Barracuda 2010 Midyear Security Report'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/TF_U04EegCI/AAAAAAAAAwo/wb20H6sbpPU/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-8565753280231766676</id><published>2010-08-08T02:13:00.000-07:00</published><updated>2010-08-08T02:13:00.204-07:00</updated><title type='text'>Reports, Cyveillance AV detection rate</title><summary type='text'>As usual Cyveillance are publishing their Anti-Virus detection rate for the leading AV vendors, results are stressing that the usual AV solutions can not adequately detect and protect against new and quickly changing malware threats. get the report from here.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/8565753280231766676/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=8565753280231766676' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8565753280231766676'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8565753280231766676'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/08/reports-cyveillance-av-detection-rate.html' title='Reports, Cyveillance AV detection rate'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/TF0ljqg9SbI/AAAAAAAAAwg/avPPzfwjOoU/s72-c/cyv.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-5946757214365823776</id><published>2010-08-07T02:04:00.000-07:00</published><updated>2010-08-07T02:10:43.726-07:00</updated><title type='text'>Reports, Cenzic midyear 2010</title><summary type='text'>I am back after a long vacation, Check out Cenzic Q1/Q2 2010 Security trends report.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/5946757214365823776/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=5946757214365823776' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5946757214365823776'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5946757214365823776'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/08/reports-cenzic-midyear-2010.html' title='Reports, Cenzic midyear 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_P4KmVMnbtiU/TF0isLj-ymI/AAAAAAAAAwQ/1cIvPt4TfMc/s72-c/cenzic.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-1212088364730420739</id><published>2010-07-24T00:28:00.000-07:00</published><updated>2010-07-24T00:28:00.614-07:00</updated><title type='text'>Reports, Cisco Midyear 2010</title><summary type='text'>Cisco released its 2010 midyear security report, the report shows focus on social media. Get it from here.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/1212088364730420739/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=1212088364730420739' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1212088364730420739'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1212088364730420739'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/07/reports-cisco-midyear-2010.html' title='Reports, Cisco Midyear 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_P4KmVMnbtiU/TElFN2gf6pI/AAAAAAAAAv0/IaGrffM4lDs/s72-c/1.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-1283070986672251983</id><published>2010-07-23T00:08:00.000-07:00</published><updated>2010-07-23T00:15:27.401-07:00</updated><title type='text'>Reports, BitDefender H1 2010</title><summary type='text'>Bitdefender released 2010 H1 threat report, get it from here.The report shows that cyber criminals are moving to Web 2.0, focusing on social media like Facebook and Twitter.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/1283070986672251983/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=1283070986672251983' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1283070986672251983'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1283070986672251983'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/07/reports-bitdefender-h1-2010.html' title='Reports, BitDefender H1 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/TElBaGx_2BI/AAAAAAAAAvs/3TKESHTJz2w/s72-c/1.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-6235625022561368188</id><published>2010-07-10T06:49:00.000-07:00</published><updated>2010-07-10T07:07:49.329-07:00</updated><title type='text'>Materials, HITB Europe 2010</title><summary type='text'>Hack in the Box conference was held in Amsterdam, download the conference materials from here.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/6235625022561368188/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=6235625022561368188' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6235625022561368188'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6235625022561368188'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/07/materials-hitb-europe-2010.html' title='Materials, HITB Europe 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/TDh-jhNvkVI/AAAAAAAAAvE/D_Jp_e7T8RQ/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-6604192413623935469</id><published>2010-06-29T00:02:00.000-07:00</published><updated>2010-06-29T01:10:55.840-07:00</updated><title type='text'>Spy Software on Mobile Phones</title><summary type='text'>I just noticed that there are large number of spy software easily available for almost all kind of mobile phones, blackberry, iPhone, windows, Symbian, Android or even old non-smart phones , with price range of $50 to less than $500 per year, depends on vendor and features.Most of them offer different feature set for different flavors, so here is a summary of the common features I came across </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/6604192413623935469/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=6604192413623935469' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6604192413623935469'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6604192413623935469'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/06/spy-software-on-mobile-phones.html' title='Spy Software on Mobile Phones'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-1761746931099526791</id><published>2010-06-20T00:10:00.000-07:00</published><updated>2010-11-16T00:42:23.148-08:00</updated><title type='text'>DNS sinkhole ISO image</title><summary type='text'>Guy Bruneau has created a DNS sinkhole ISO image, available for 32-bit and 64-bit. sinkhole is using 3 public lists for known bad domains (Malware Domain Blocklist, Zeus Tracker, and SRI malware list).A step-by-step guide is available here. I will be waiting for other lists to be added, such as Phishtank, GoogleSafeBrowsing, XSSED, and others.DNS can be used effectively to detect and prevent </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/1761746931099526791/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=1761746931099526791' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1761746931099526791'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1761746931099526791'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/06/dns-sinkhole-iso-image.html' title='DNS sinkhole ISO image'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-9109897303348259122</id><published>2010-06-19T00:35:00.000-07:00</published><updated>2010-06-19T00:55:49.623-07:00</updated><title type='text'>Web Historian, Browser Forensics</title><summary type='text'>Visualize web browsing history, web historian from Mandiant. Supports Firefox 2/3+, Chrome 3+, and Internet Explorer 5 through 8, collects web, cookie, download history, export data sets to XML, HTML or CSV, and many more features ...You may want to check this old comparison about different tools for browsers forensics tools, note the old version of some of these tools including Web Historian.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/9109897303348259122/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=9109897303348259122' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/9109897303348259122'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/9109897303348259122'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/06/web-historian-browser-forensics.html' title='Web Historian, Browser Forensics'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/TBxzemQElBI/AAAAAAAAAuQ/5nt4-7uAMoA/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-5485951330791001228</id><published>2010-06-14T01:16:00.000-07:00</published><updated>2010-06-14T03:23:16.052-07:00</updated><title type='text'>Log Analysis, Web Servers</title><summary type='text'>Here is a list of free resources for analyzing web servers logs.Apache-scalpSplunkMicrosoft LogParser SNARE</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/5485951330791001228/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=5485951330791001228' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5485951330791001228'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5485951330791001228'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/06/log-analysis-web-servers.html' title='Log Analysis, Web Servers'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/TBXooO5E4uI/AAAAAAAAAuI/QzV5pV339To/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-6148640907951567625</id><published>2010-06-07T23:38:00.001-07:00</published><updated>2010-06-07T23:53:51.341-07:00</updated><title type='text'>Materials, AusCERT 2010</title><summary type='text'>If you need to download AusCERT 2010 materials, just email me and I will send you the password to their online materials.user name : presentationIf you need some coverage on the conference, check ZDNet.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/6148640907951567625/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=6148640907951567625' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6148640907951567625'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6148640907951567625'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/06/materials-auscert-2010.html' title='Materials, AusCERT 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/TA3oqcKTXCI/AAAAAAAAAuA/Xlr2ZSkP1-M/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-2812602314897815644</id><published>2010-05-29T11:40:00.000-07:00</published><updated>2010-05-29T11:40:00.717-07:00</updated><title type='text'>Botnets, Infographics</title><summary type='text'>Nice representation of botnets on mozy infographics based on Messagelabs and M86 reports.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/2812602314897815644/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=2812602314897815644' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2812602314897815644'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2812602314897815644'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/05/botnets-infographics.html' title='Botnets, Infographics'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/TAAOcf2sDuI/AAAAAAAAAtk/iwId-b8SzHs/s72-c/Mozy-Botnets.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-4883348600437881715</id><published>2010-05-27T04:35:00.000-07:00</published><updated>2010-05-27T11:23:06.831-07:00</updated><title type='text'>Encrypt Your Mobile VoIP Calls</title><summary type='text'>Whisper Systems, announced the availability of it public beta Mobile Security Suite, with two applications for Encrypting SMS and VoIP calls on Android devices. The VoIP application uses a new method of establishing a call using SMS as a signaling protocol instead of the initial SIP signaling, to overcome the SIP constant connection requirements.The encryption is done using the well-known ZRTP </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/4883348600437881715/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=4883348600437881715' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4883348600437881715'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4883348600437881715'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/05/encrypt-you-mobile-voip-calls.html' title='Encrypt Your Mobile VoIP Calls'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/S_5byCKzLUI/AAAAAAAAAtc/uMjVbITJCrw/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-7390362677530571071</id><published>2010-05-19T01:04:00.000-07:00</published><updated>2010-05-28T12:12:46.543-07:00</updated><title type='text'>Malware Impact in Enterprise</title><summary type='text'>A recent paper from RSA highlighting the impact of malware infection in enterprise, by analyzing one month of Zeus malware data collected, looking for US Fortune 500 related data.- 88% of Fortune 500 were shown to have been accessed by computer infected with Zeus trojan- 60% of Fortune 500 have at least one email address compromised- Security managers have little visibility into employees online </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/7390362677530571071/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=7390362677530571071' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7390362677530571071'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7390362677530571071'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/05/malware-impact-in-enterprise.html' title='Malware Impact in Enterprise'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/S_OiY7FHg5I/AAAAAAAAAs0/p6BJLQS_dIk/s72-c/1.png' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-1398450299301969102</id><published>2010-05-16T23:54:00.000-07:00</published><updated>2010-05-17T00:38:35.421-07:00</updated><title type='text'>Monitor your online login activities</title><summary type='text'>Facebook recently added a new feature that will alert you if you or someone else logged in with your account from unusual computer or Mobile.Gmail also provided similar feature a while ago, but with no alerts, just an easy way of checking your login activities with time stamp and IP address.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/1398450299301969102/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=1398450299301969102' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1398450299301969102'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1398450299301969102'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/05/monitor-your-online-login-activities.html' title='Monitor your online login activities'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_P4KmVMnbtiU/S_DxsUTyEcI/AAAAAAAAAss/eM_eRao7d3Q/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-8498538230830848751</id><published>2010-05-09T04:31:00.000-07:00</published><updated>2010-05-09T04:48:09.051-07:00</updated><title type='text'>Materials, SOURCE Boston 2010</title><summary type='text'>SOURCE Boston 2010 slides are now available online. They are still adding more slides, so check it every while.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/8498538230830848751/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=8498538230830848751' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8498538230830848751'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8498538230830848751'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/05/materials-source-boston-2010.html' title='Materials, SOURCE Boston 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/S-adbI-7G8I/AAAAAAAAAsU/9LKy1UtRueo/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-4600655840743896617</id><published>2010-05-03T04:38:00.000-07:00</published><updated>2010-05-03T05:02:39.785-07:00</updated><title type='text'>Web exploitation toolkits</title><summary type='text'>M86 just released a report looking in general at exploit toolkits in terms of prices, usage, simplicity, and features.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/4600655840743896617/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=4600655840743896617' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4600655840743896617'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4600655840743896617'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/05/web-exploitation-toolkits.html' title='Web exploitation toolkits'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/S967RJs8BhI/AAAAAAAAArY/nmbq9dx0KXw/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-1060293814938838782</id><published>2010-05-01T00:02:00.000-07:00</published><updated>2010-05-01T00:22:19.009-07:00</updated><title type='text'>Materials, LEET's 10, SAN JOSE</title><summary type='text'>LEET'10 workshop just ended few days ago, there are some interesting presentations and papers out there. Program details are here.Some of the interesting topics:A View of Botnet Management from InfiltrationWebCop: Locating Neighborhoods of Malware on the WebOn the Potential of Proactive Domain BlacklistingDetection of Spam Hosts and Spam Bots Using Network Flow Traffic ModelingHoneybot, Your Man </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/1060293814938838782/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=1060293814938838782' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1060293814938838782'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1060293814938838782'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/05/materials-leets-10-san-jose.html' title='Materials, LEET&apos;s 10, SAN JOSE'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/S9vVULQ-yeI/AAAAAAAAArQ/_YYLSH7bhwA/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-3944284461049782168</id><published>2010-04-27T01:06:00.000-07:00</published><updated>2010-04-27T01:22:01.684-07:00</updated><title type='text'>Reports, Microsoft Security Intelligence Report 2H09</title><summary type='text'>Microsoft released its 248 pages Security Intelligence Report volume 8, for 2nd Half 2009.Here are some regional statistics:</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/3944284461049782168/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=3944284461049782168' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3944284461049782168'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3944284461049782168'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/04/reports-microsoft-security-intelligence.html' title='Reports, Microsoft Security Intelligence Report 2H09'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_P4KmVMnbtiU/S9absQzMqyI/AAAAAAAAAqg/S0A7eyCjdqM/s72-c/8.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-7145842750888875393</id><published>2010-04-22T01:29:00.000-07:00</published><updated>2010-04-22T01:29:00.053-07:00</updated><title type='text'>Reports, Symantec 2009 Threat Report</title><summary type='text'>Released in April 2010, a must read report as usual from Symantec.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/7145842750888875393/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=7145842750888875393' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7145842750888875393'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7145842750888875393'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/04/reports-symantec-2009-threat-report.html' title='Reports, Symantec 2009 Threat Report'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_P4KmVMnbtiU/S86qR3YKyBI/AAAAAAAAApE/uW7W6WT34Ao/s72-c/15.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-3085782376240581775</id><published>2010-04-18T01:01:00.000-07:00</published><updated>2010-04-18T01:01:00.376-07:00</updated><title type='text'>Materials, Blackhat Barcelona 2010</title><summary type='text'>Blackhat Europe just ended, check the media archive.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/3085782376240581775/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=3085782376240581775' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3085782376240581775'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3085782376240581775'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/04/materials-blackhat-barcelona-2010.html' title='Materials, Blackhat Barcelona 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/S8lYsNvQ-DI/AAAAAAAAAmc/DA3qBB7PAcg/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-7713446030984349073</id><published>2010-04-14T10:26:00.000-07:00</published><updated>2010-04-14T22:55:40.747-07:00</updated><title type='text'>Spy Eye Crimeware Toolkit</title><summary type='text'>The Russian crimeware toolkit Spy Eye, the Zeus killer is now offered for much lower prices than the famous Zeus crimekit.Jerome Segura has a couple of articles ( 1, 2 )  looking at Spy Eye. Zeus and Spy Eye are competing head-to-head in the underground market, as noted by Symantec and discussed by Brian Krebs.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/7713446030984349073/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=7713446030984349073' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7713446030984349073'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7713446030984349073'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/04/spy-eys-crimeware-toolkit.html' title='Spy Eye Crimeware Toolkit'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/S8X9N2X1gBI/AAAAAAAAAmU/4mzJgln297Q/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-1919387480774391409</id><published>2010-04-06T01:02:00.000-07:00</published><updated>2010-04-06T02:03:47.475-07:00</updated><title type='text'>Perl for Log Analysis</title><summary type='text'>When it comes to log handling and analysis, perl is my preferred scripting language, with loads of ready-made libraries for all your needs, here are some useful resources:Text::CSV (handling csv files)Net::Whois::IP (retrieving whois information)IP::Country::Fast (retrieving country code information)Net::DNS::Resolver (resolve dns queries)XML::RSS::Parser::Lite  (retrieving RSS feeds)Mail::</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/1919387480774391409/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=1919387480774391409' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1919387480774391409'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1919387480774391409'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/04/perl-for-log-analysis.html' title='Perl for Log Analysis'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/S7rJgFnqvaI/AAAAAAAAAlE/K-6JMF6TWpI/s72-c/1.png' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-8379524630914025882</id><published>2010-04-01T01:52:00.000-07:00</published><updated>2010-05-19T23:18:40.841-07:00</updated><title type='text'>Looking for exploits?</title><summary type='text'>Intelligent Exploit Aggregation Network is a new website for aggregating exploits for specific platforms including Windows and some CMS. The exploits are aggregated from multiple sources like Exploit-db , VUPN, and SEBUG.net.Also check this old list.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/8379524630914025882/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=8379524630914025882' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8379524630914025882'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8379524630914025882'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/04/looking-for-exploits.html' title='Looking for exploits?'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-7511642317347980118</id><published>2010-03-31T01:21:00.000-07:00</published><updated>2010-04-01T00:00:08.930-07:00</updated><title type='text'>Microsoft IE out-of band updates</title><summary type='text'>Microsoft released out-of-band updates targeting increased attacks using CVE-2010-0806, and other several vulnerabilities on IE8 as well. These updates does not address the recent vulnerability used in pwn2own contest @ CanSecWest.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/7511642317347980118/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=7511642317347980118' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7511642317347980118'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7511642317347980118'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/03/microsoft-ie-out-of-band-updates.html' title='Microsoft IE out-of band updates'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-4087829831675803483</id><published>2010-03-31T01:07:00.000-07:00</published><updated>2010-03-31T01:07:00.397-07:00</updated><title type='text'>Materials, Octopus Interface 2010, Cooperation Against Cybercrime</title><summary type='text'>Last week, representatives from  governments, law enforcement authorities, international organizations, and the Internet industry gathered to discuss the “Cooperation Against Cybercrime” in Octopus Interface conference, here are the presentations.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/4087829831675803483/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=4087829831675803483' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4087829831675803483'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4087829831675803483'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/03/materials-octopus-interface-2010.html' title='Materials, Octopus Interface 2010, Cooperation Against Cybercrime'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-3878869009197750930</id><published>2010-03-29T10:26:00.000-07:00</published><updated>2010-03-29T10:56:53.796-07:00</updated><title type='text'>Smartphone Security - Part 4</title><summary type='text'>In CanSecWest Pwn2Own 2010, researchers were able to break in a fully patched IPhone using unknown Safari vulnerability, it took them 2 weeks to find the vulnerability and write the exploit and took them 20 seconds to hijack the entire SMS database and uploaded it to a server.The researchers claim that they can also hijack the emails and photos using the same vulnerability. Vulnerability details </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/3878869009197750930/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=3878869009197750930' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3878869009197750930'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3878869009197750930'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/03/smartphone-security-part-4.html' title='Smartphone Security - Part 4'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_P4KmVMnbtiU/S7DjDtUx9HI/AAAAAAAAAkk/DdJ7NIfCZ4o/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-843142929929092272</id><published>2010-03-24T23:52:00.000-07:00</published><updated>2010-03-24T23:58:24.870-07:00</updated><title type='text'>Open Source and Free security Tools</title><summary type='text'>Top 75 Open Source Security Tools, and 26 Open Source Tools with commercial support, both lists worth checking.check also:Must-have firefox add-ons and free personal security tools.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/843142929929092272/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=843142929929092272' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/843142929929092272'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/843142929929092272'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/03/open-source-and-free-security-tools.html' title='Open Source and Free security Tools'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-6547706047170244850</id><published>2010-03-21T04:25:00.000-07:00</published><updated>2010-03-21T23:55:27.058-07:00</updated><title type='text'>Finding Malware Using Cached DNS entries</title><summary type='text'>This is an interesting way of checking your DNS cash for malicious domains, an easier method instead of examining the DNS server log. This might miss some domains with low TTL value, but still very handy.After some trials on a small ISP DNS server, the short TTL is dominating Zeus domain (1  min on average) , so checks should be on-going, with DNS overheads in mind.Another good idea is to add </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/6547706047170244850/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=6547706047170244850' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6547706047170244850'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6547706047170244850'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/03/finding-malware-using-cached-dns.html' title='Finding Malware Using Cached DNS entries'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-2540096263252652482</id><published>2010-03-10T02:52:00.000-08:00</published><updated>2010-03-10T10:45:15.682-08:00</updated><title type='text'>Mariposa, Game Over</title><summary type='text'>After shutting down Mariposa, PandaLabs published some statistics on the infection rate per country, and it is really interesting that US and China are not on top, instead we are seeing several Arab countries in the top list, Egypt, Saudi Arabia, Morocco, and Emirates.I compared the data from PandaLabs with the internet usage in each country, and came up with the infection percentage with </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/2540096263252652482/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=2540096263252652482' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2540096263252652482'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2540096263252652482'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/03/mariposa-game-over.html' title='Mariposa, Game Over'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/S5ePYG3RxxI/AAAAAAAAAjc/dNCuyIdC27Q/s72-c/3.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-81630474291305659</id><published>2010-03-08T01:42:00.000-08:00</published><updated>2010-03-08T01:42:00.296-08:00</updated><title type='text'>Firewall Rules Scanner, Open Source</title><summary type='text'>Flint is the name of the tool, it examines firewalls,  and spots problems so you can:- Clean up configuration- Check if new rules will create problems- Discover overly rules</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/81630474291305659/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=81630474291305659' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/81630474291305659'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/81630474291305659'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/03/firewall-rules-scanner-open-source.html' title='Firewall Rules Scanner, Open Source'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/S5Sc-eMLmhI/AAAAAAAAAjU/xKNT7eGfrjU/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-3465501587121048370</id><published>2010-03-04T03:38:00.000-08:00</published><updated>2010-03-04T03:59:18.776-08:00</updated><title type='text'>Botnet network behavior analysis lab</title><summary type='text'>Here is a suggestion for building a botnet network behavior analysis lab based on netflow, DNS, Snort, proxy, and packet capture logs .Notes:- Vyatta vc6 alpha version supports netflow.- Net:DNS:Nameserver can be configured to be a fake DNS.- Malicious domains can be collected from some feeds in this list- Other sources of malicious domains could be spamtraps, twitter timeline, .... </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/3465501587121048370/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=3465501587121048370' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3465501587121048370'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3465501587121048370'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/03/botnet-network-behavior-analysis-lab.html' title='Botnet network behavior analysis lab'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/S4-gMLzdnRI/AAAAAAAAAjI/7msyMz5iFvA/s72-c/1.png' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-6395941485409278167</id><published>2010-03-01T22:31:00.001-08:00</published><updated>2010-03-01T22:34:24.602-08:00</updated><title type='text'>Materials, Shmoocon 2010</title><summary type='text'>Here are the slides and videos of Shmoocon 2010. Do no forget to check also the Firetalks.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/6395941485409278167/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=6395941485409278167' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6395941485409278167'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6395941485409278167'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/03/materials-shmoocon-2010.html' title='Materials, Shmoocon 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/S4yw9WDQ1kI/AAAAAAAAAiA/wxLXForq86U/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-9118397007438041580</id><published>2010-02-24T00:12:00.000-08:00</published><updated>2010-05-25T01:15:56.570-07:00</updated><title type='text'>Smartphone Security - Part 3</title><summary type='text'>Lots of researchers are working on the same hot topic, here is another paper presented few hours ago in HotMobile 2010, the researchers presented 3 proof-of-concept rootkits that can be used for various malicious use. I was surprised that Android has 20 million lines of code, adding the external interfaces of the mobile such as GPS, Camera, voice, mic, sms, etc.., things are really getting more </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/9118397007438041580/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=9118397007438041580' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/9118397007438041580'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/9118397007438041580'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/02/smartphone-security-part-3.html' title='Smartphone Security - Part 3'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/S4ThU6mvfgI/AAAAAAAAAh4/en9x5QlRQ58/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-2776345120166296435</id><published>2010-02-18T10:32:00.000-08:00</published><updated>2010-05-09T04:57:13.393-07:00</updated><title type='text'>Smartphone Security - Part 2</title><summary type='text'>Another alarming presentation from Shmoocon 2010, discussing Blackberry spyware is now available online. The presentation gives an example of what happened in Etisalat Trojan in 2009, and raises lots of issues as written in the conclusion part:- Mobile spyware is trivial to write- Minimal methods of real time eradication or detection of spyware type activities- Security model of mobile platforms </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/2776345120166296435/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=2776345120166296435' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2776345120166296435'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2776345120166296435'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/02/smartphone-security-part-2.html' title='Smartphone Security - Part 2'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/S32LG6oFzxI/AAAAAAAAAho/OQe0meKk2ak/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-1793746491987905313</id><published>2010-02-17T03:50:00.000-08:00</published><updated>2010-06-28T23:04:42.191-07:00</updated><title type='text'>Smartphone Security</title><summary type='text'>In the Shmoocon 2010 conference, an interesting presentation on smartphone security is now available on line. Jail broken iPhones have lots of risks, with default root password and default services enabled, scanning the mobile network revealed lots of interesting services making them easily hacked.  The presenter gives some sample applications that can be installed on the hacked device remotely </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/1793746491987905313/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=1793746491987905313' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1793746491987905313'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1793746491987905313'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/02/smartphone-security.html' title='Smartphone Security'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/S3vbUKQaXNI/AAAAAAAAAhc/pZAIW-a7SvY/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-8399805171996674751</id><published>2010-02-15T22:57:00.000-08:00</published><updated>2010-02-15T23:02:46.476-08:00</updated><title type='text'>Materials, FireTalks, Shmoocon 2010</title><summary type='text'>Here is the link for the streaming and downloadable media, Shmoocon 2010.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/8399805171996674751/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=8399805171996674751' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8399805171996674751'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8399805171996674751'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/02/materials-firetalks-shmoocon-2010.html' title='Materials, FireTalks, Shmoocon 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/S3pC9DaI-ZI/AAAAAAAAAhU/ZUfTGU5Pwk4/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-2063844406054178303</id><published>2010-02-11T03:05:00.000-08:00</published><updated>2010-02-11T03:16:03.461-08:00</updated><title type='text'>Materials, Internet Early Warning and Network Intelligence, EWNI 2010</title><summary type='text'>EWNI 2010 was held in Hamburg, Germany, few weeks ago. This kind of focused events are worth attending, I was there in -15 degrees, anyway check the slides here.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/2063844406054178303/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=2063844406054178303' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2063844406054178303'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2063844406054178303'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/02/materials-internet-early-warning-and.html' title='Materials, Internet Early Warning and Network Intelligence, EWNI 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-3796719134544242221</id><published>2010-02-07T01:07:00.000-08:00</published><updated>2010-02-07T01:07:00.072-08:00</updated><title type='text'>Materials, Black Hat DC 2010</title><summary type='text'>Presentations, and papers are now available online on Black Hat archive.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/3796719134544242221/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=3796719134544242221' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3796719134544242221'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3796719134544242221'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/02/materials-black-hat-dc-2010.html' title='Materials, Black Hat DC 2010'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_P4KmVMnbtiU/S25zH0TWmdI/AAAAAAAAAgo/MYYRSPG7O18/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-399318031390311393</id><published>2010-02-06T23:51:00.000-08:00</published><updated>2010-02-06T23:54:33.802-08:00</updated><title type='text'>Materials, SANS Forensics Summit, 2009</title><summary type='text'>If you missed out SANS Forensics Summit few months ago, it is never too late to check out the presentations available online here.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/399318031390311393/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=399318031390311393' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/399318031390311393'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/399318031390311393'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/02/materials-sans-forensics-summit-2009.html' title='Materials, SANS Forensics Summit, 2009'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-5666934918819786106</id><published>2010-02-01T04:52:00.000-08:00</published><updated>2010-02-01T05:02:42.573-08:00</updated><title type='text'>Botnet Detection with Network Anomaly Detection</title><summary type='text'>Botnet detection using Network Anomaly Detection has some strengths and weaknesses,  Damballa blog discussed some interesting points, and came up with a conclusion that NAD has a minor role to play in botnet detection and mitigation due to the new trends in botnets.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/5666934918819786106/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=5666934918819786106' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5666934918819786106'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5666934918819786106'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/02/botnet-detection-with-network-anomaly.html' title='Botnet Detection with Network Anomaly Detection'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-7889083954144610792</id><published>2010-01-21T01:05:00.000-08:00</published><updated>2010-01-21T03:35:18.370-08:00</updated><title type='text'>Reports, Arbor 2009 Worldwide Infrastructure Security</title><summary type='text'>Arbor Networks released their 2009 report based on their operational security survey. </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/7889083954144610792/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=7889083954144610792' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7889083954144610792'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7889083954144610792'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/01/reports-arbor-2009-worldwide.html' title='Reports, Arbor 2009 Worldwide Infrastructure Security'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/S1f9zP3H9UI/AAAAAAAAAfY/A57KQv9OQ_k/s72-c/r10.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-7666828632261358336</id><published>2010-01-18T04:45:00.000-08:00</published><updated>2010-01-18T04:53:19.844-08:00</updated><title type='text'>Google attack in China</title><summary type='text'>This seems to be a very good reading about the story. Some great technical details and background have been compiled by extraexploit.As it was mentioned by Andrew Jaquith , human remain the weak link, and I guess it will remain...</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/7666828632261358336/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=7666828632261358336' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7666828632261358336'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7666828632261358336'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/01/google-attack-in-china.html' title='Google attack in China'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/S1RYMRKB56I/AAAAAAAAAfM/rjj3O4FQmPE/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-1021768817354022519</id><published>2010-01-13T01:01:00.000-08:00</published><updated>2010-03-07T22:13:52.969-08:00</updated><title type='text'>Online Password Crackers</title><summary type='text'>Here is a nice interesting list of online password crackers by Chris Gates, since the same blog is moving to a new host, check the comments on both the old and new host, as readers are posting more interesting links.Updated:And here is a list of password dictionaries.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/1021768817354022519/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=1021768817354022519' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1021768817354022519'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1021768817354022519'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/01/online-password-crackers.html' title='Online Password Crackers'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/S011RXR63jI/AAAAAAAAAes/om9SrlzFd1U/s72-c/1.PNG' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-7299453124803050072</id><published>2010-01-11T01:07:00.000-08:00</published><updated>2010-01-11T01:07:00.052-08:00</updated><title type='text'>Trojans and Bots collection</title><summary type='text'>How easy is it to get some good collection of trojans and bots with different versions, types, and plugins??I wonder how many of them are not backdoored??</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/7299453124803050072/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=7299453124803050072' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7299453124803050072'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7299453124803050072'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/01/trojans-and-bots-collection.html' title='Trojans and Bots collection'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_P4KmVMnbtiU/S0q6ru4nDFI/AAAAAAAAAek/HHM_EHRo8_s/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-2454193542991080977</id><published>2010-01-10T09:16:00.000-08:00</published><updated>2010-01-10T20:51:05.440-08:00</updated><title type='text'>BIND DNS Sinkhole</title><summary type='text'>Guy Bruneau, posted an entry on SANS handler's diary on how to setup DNS sinkhole.The same technique was previously discussed with different DNS formats by malwaredomains.com.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/2454193542991080977/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=2454193542991080977' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2454193542991080977'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2454193542991080977'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/01/bind-dns-sinkhole.html' title='BIND DNS Sinkhole'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_P4KmVMnbtiU/S0oNsByJy3I/AAAAAAAAAec/Hqp7gURdphs/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-4514621521258513806</id><published>2010-01-07T05:10:00.000-08:00</published><updated>2010-01-07T05:17:23.045-08:00</updated><title type='text'>Reports, Panda 2009 Annual Report</title><summary type='text'>Here is the 2009 Annual Report from PandaLabs.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/4514621521258513806/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=4514621521258513806' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4514621521258513806'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4514621521258513806'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/01/reports-panda-2009-annual-report.html' title='Reports, Panda 2009 Annual Report'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/S0Xe1EppyGI/AAAAAAAAAeU/G4e_hhlYtBo/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-564068680101835931</id><published>2010-01-05T01:06:00.000-08:00</published><updated>2010-01-05T01:06:00.665-08:00</updated><title type='text'>Analysis, Waledac Peer-to-Peer Botnet</title><summary type='text'>Analysis of Waledac botnet propagation technique is available here. Waledac botnet size estimated to be 390,000 infected host.The researchers produced a cloned version from Waledac called Walowdac to analyze it.Trendmicro  previously produced an analysis of the same botnet.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/564068680101835931/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=564068680101835931' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/564068680101835931'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/564068680101835931'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/01/analysis-waledac-peer-to-peer-botnet.html' title='Analysis, Waledac Peer-to-Peer Botnet'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_P4KmVMnbtiU/S0LCdXpc-DI/AAAAAAAAAd8/XmeW36OebZk/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-984685060515202639</id><published>2010-01-04T01:07:00.000-08:00</published><updated>2010-01-04T20:06:26.214-08:00</updated><title type='text'>Credit Card Honeypot, and Some Privacy Issues</title><summary type='text'>Credit Cards companies are using their own honeypot too, here is what a fraud prevention agent recently disclosed:Credit Card details: 4485 0489 2408 7591, expires 9/2010, CCV 721Anyone using these numbers anywhere will have his IP tracked and added to a database. This card has a $0.01 limit; any transaction will be denied, except $0.01 orders of course.Another interesting and scary part in the </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/984685060515202639/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=984685060515202639' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/984685060515202639'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/984685060515202639'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2010/01/credit-card-honeypot-and-some-privace.html' title='Credit Card Honeypot, and Some Privacy Issues'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-7358717475876903323</id><published>2009-12-31T01:34:00.000-08:00</published><updated>2009-12-31T05:03:21.542-08:00</updated><title type='text'>Materials, 26th Chaos Communication Congress (26C3)</title><summary type='text'>26th Chaos Communication Congress (26C3) was the lastconference on 2009,  here is the mp4 video sessions ( torrent)</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/7358717475876903323/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=7358717475876903323' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7358717475876903323'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7358717475876903323'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/12/materials-26th-chaos-communication.html' title='Materials, 26th Chaos Communication Congress (26C3)'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-6902520064195102831</id><published>2009-12-30T00:08:00.000-08:00</published><updated>2009-12-30T00:32:45.335-08:00</updated><title type='text'>Cracking GSM Encryption for Public</title><summary type='text'>Few days ago, in 26th Chaos Communication Congress(26C3), researchers presented a live proof-of-concept for cracking GSM encryption protocol A5/1 that is used in many GSM networks worldwide nowadays.- Security agencies worldwide are cracking the A5/1 for years, now it is publicly available- It was previously cracked in 2008 by someone else, but the tables was never released- The crack is using </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/6902520064195102831/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=6902520064195102831' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6902520064195102831'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6902520064195102831'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/12/cracking-gsm-encryption-for-public.html' title='Cracking GSM Encryption for Public'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/SzpSo02ENwI/AAAAAAAAAd0/48FxYTqy5-c/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-8127465818780936211</id><published>2009-12-28T01:34:00.000-08:00</published><updated>2009-12-28T01:34:00.236-08:00</updated><title type='text'>2009 Blog Summary</title><summary type='text'>Here is a summary of my blog in 2009:Open Source Information Gathering:DIY Threat Monitoring System - Part 1DIY Threat Monitoring System - Part 2Enterprise Open Source Intelligence Gathering Monitoring Social mediaWardriving setupDNS BlackholingLists:Malware online databases and analysis sitesJavascript obfuscatorsMalicious FREE IPs and URLs DatabasesFree Personal Security ToolsLocal News:47 </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/8127465818780936211/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=8127465818780936211' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8127465818780936211'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8127465818780936211'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/12/2009-blog-summary.html' title='2009 Blog Summary'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/Szee8auOJ-I/AAAAAAAAAdc/xOtJrZyQkWs/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-2753554513905369181</id><published>2009-12-24T01:02:00.000-08:00</published><updated>2009-12-24T01:02:00.216-08:00</updated><title type='text'>Reports, Anti Virus Comparatives, 2009</title><summary type='text'>AV-Comparatives released the 2009 summary report commenting on various AV products and comparing the results of various tests. Best products of the year is Symantec, followed by Kaspersky, followed by ESETMicrosoft is doing a very good job, with their Security Essentials product, based on various reports and based on my own experience.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/2753554513905369181/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=2753554513905369181' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2753554513905369181'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2753554513905369181'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/12/reports-anti-virus-comparatives-2009.html' title='Reports, Anti Virus Comparatives, 2009'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/SzMPiZFShsI/AAAAAAAAAdM/TRz5T8bWmVA/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-3186357913905956173</id><published>2009-12-23T03:49:00.000-08:00</published><updated>2009-12-23T04:28:34.581-08:00</updated><title type='text'>Wardriving Setup</title><summary type='text'>Here is how to build your own wardriving setup:Here is my checklist:- Laptop :)- High power wireless card (200mw or higher)- High gain omni antenna 15dBi (choose the correct cables &amp; connector to your wireless card)- USB GPS receiver- Fedora 12- Google Earth- Kismet New-CoreKismet New-Core comes with a new log format, so all the old tools used to convert kismet logs to Google Earth format is not </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/3186357913905956173/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=3186357913905956173' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3186357913905956173'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3186357913905956173'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/12/wardriving-setup.html' title='Wardriving Setup'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/SzIMxFGTjoI/AAAAAAAAAc8/0arNL65cqqs/s72-c/2.PNG' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-6129703370870709497</id><published>2009-12-21T02:12:00.000-08:00</published><updated>2009-12-21T02:30:43.684-08:00</updated><title type='text'>The most phished brands in 2009</title><summary type='text'>The guys in Avira have compiled a list of the most phished brands in 2009.Facebook is on the list. </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/6129703370870709497/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=6129703370870709497' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6129703370870709497'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6129703370870709497'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/12/most-phished-brands-in-2009.html' title='The most phished brands in 2009'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/Sy9Mp-aPHvI/AAAAAAAAAcs/KFzfsF1D5Lo/s72-c/av1.JPG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-8728441803869762843</id><published>2009-12-19T11:30:00.000-08:00</published><updated>2009-12-19T11:46:54.287-08:00</updated><title type='text'>Spam Tactics after .cn Registration Restrictions</title><summary type='text'>CNNIC (China Internet Network Information Center) has changed the rules for registering new .cn domains, requiring business registration documents starting from 14th December.Here is how Sophos detected the behavior change in the spam tactics, where spammers are started using specific free web hosting services in their Canadian pharmacy spam.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/8728441803869762843/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=8728441803869762843' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8728441803869762843'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8728441803869762843'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/12/spam-tactics-after-cn-registration.html' title='Spam Tactics after .cn Registration Restrictions'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/Sy0s2YOrtBI/AAAAAAAAAcM/mK__9vT8zgc/s72-c/2.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-2078191527106242286</id><published>2009-12-18T19:54:00.000-08:00</published><updated>2009-12-18T21:07:42.353-08:00</updated><title type='text'>Analysis of the iKee.B (Duh) iphone Botnet</title><summary type='text'>Analysis of iKee.B iphone botnet by SRI.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/2078191527106242286/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=2078191527106242286' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2078191527106242286'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2078191527106242286'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/12/analysis-of-ikeeb-duh-iphone-botnet.html' title='Analysis of the iKee.B (Duh) iphone Botnet'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/SyxfUXAk4FI/AAAAAAAAAb8/h_OACMDxQwI/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-3791868267954015968</id><published>2009-12-12T04:39:00.000-08:00</published><updated>2009-12-12T04:52:17.241-08:00</updated><title type='text'>Paid WPA Cracking Service, on the Cloud</title><summary type='text'>WPA Cracker is a new paid service for cracking WPA or WPA2 Pres-Shared Key.- The service is running on cloud with 400 CPU- Uses dictionaries with 130 million word, tailored for wireless cracking- 2 pricing models 17$ (using CPU half capacity) and 34$ (using full capacity to shorten time)- Require pcap file with WPA handshake- Accept Amazon payments- Cracking the key is not guaranteed.So are you </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/3791868267954015968/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=3791868267954015968' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3791868267954015968'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3791868267954015968'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/12/paid-wpa-cracking-service-on-cloud.html' title='Paid WPA Cracking Service, on the Cloud'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/SyOPugrF_fI/AAAAAAAAAbw/iowBB3VHWps/s72-c/1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-699292134348311497</id><published>2009-12-11T03:38:00.000-08:00</published><updated>2009-12-23T03:47:37.373-08:00</updated><title type='text'>SHODAN, The Banner Grabbing Search Engine</title><summary type='text'>SHODAN is an interesting search service, this is a banner grabbing search service that could reveal some useful information for interested people. SHODAN is scanning the internet on specific ports and provide the scan results in a searchable way.I did a simple search using SIP keywork, and  easily got web access to lots of voip devices on the internet. The IP ranges I checked randomly are all </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/699292134348311497/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=699292134348311497' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/699292134348311497'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/699292134348311497'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/12/shodan-banner-grabbing-search-engine.html' title='SHODAN, The Banner Grabbing Search Engine'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_P4KmVMnbtiU/Sx-NPJnM2OI/AAAAAAAAAZY/igD_BXAgBdI/s72-c/shodan.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-2084318874645850692</id><published>2009-12-10T04:07:00.000-08:00</published><updated>2009-12-10T04:07:01.166-08:00</updated><title type='text'>Reports, MessageLabs 2009 Annual Report</title><summary type='text'>The MessageLabs Intelligence Annual Security Report for 2009 has been released.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/2084318874645850692/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=2084318874645850692' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2084318874645850692'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2084318874645850692'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/12/reports-messagelabs-2009-annual-report.html' title='Reports, MessageLabs 2009 Annual Report'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/Sx-bdmLdsaI/AAAAAAAAAZg/D5mO-6xUNr4/s72-c/ml18.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-5227550666968412440</id><published>2009-12-09T01:33:00.000-08:00</published><updated>2009-12-09T05:08:34.238-08:00</updated><title type='text'>Reports, Cisco 2009 Report</title><summary type='text'>I am back after a long vacation, with Cisco 2009 Security report.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/5227550666968412440/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=5227550666968412440' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5227550666968412440'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5227550666968412440'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/12/reports-cisco-2009-report.html' title='Reports, Cisco 2009 Report'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/Sx90hJgr8qI/AAAAAAAAAZI/Xt8-N0azTIE/s72-c/cisco5.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-1348167848086304740</id><published>2009-11-30T08:46:00.000-08:00</published><updated>2009-11-30T08:46:00.772-08:00</updated><title type='text'>Splunk, in Cisco CSIRT</title><summary type='text'>I am a big fan of Splunk, I should spend more time playing with the new free version. Here is how Cisco CSIRT team is using it.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/1348167848086304740/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=1348167848086304740' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1348167848086304740'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1348167848086304740'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/11/splunk-in-cisco-csirt.html' title='Splunk, in Cisco CSIRT'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/SwLUd6mLGeI/AAAAAAAAAYg/HnhAZ1omzNE/s72-c/1.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-5059169197594043475</id><published>2009-11-24T08:41:00.000-08:00</published><updated>2009-11-24T08:41:00.093-08:00</updated><title type='text'>Obfuscating Malicious IFrames</title><summary type='text'>This is an interesting discussion about obfuscating malicious IFrames.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/5059169197594043475/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=5059169197594043475' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5059169197594043475'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5059169197594043475'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/11/obfuscating-malicious-iframes.html' title='Obfuscating Malicious IFrames'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-8963943165498093623</id><published>2009-11-16T10:15:00.002-08:00</published><updated>2009-11-16T10:51:50.762-08:00</updated><title type='text'>DIY Threat Monitoring System, Part 2</title><summary type='text'>This is my Part 2 of DIY, Threat Monitoring System. Here is an example of several connectors to download some public lists and save them internally for further processing.The script will download the following lists:CBL, Phishtank, GoogleSafeBrowsing, Dshield, TOR Exit nodes, MalwareDomainList, MalwareURL.1- You will need to install some perl modules first:Net::Google::SafeBrowsing::</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/8963943165498093623/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=8963943165498093623' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8963943165498093623'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8963943165498093623'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/11/diy-threat-monitoring-system-part-2.html' title='DIY Threat Monitoring System, Part 2'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-6477027893700321926</id><published>2009-11-12T04:30:00.000-08:00</published><updated>2009-11-12T04:36:04.360-08:00</updated><title type='text'>DIY Threat Monitoring System</title><summary type='text'>Building your own threat monitoring system can be done using the above architecture, you will need to write some connectors and parsers to filter data and check if your IPs or URLs appear in any of the free public databases  I am using perl and shell scripts along with Mysql database. Visualization can be done using google charts API, which has nice easy-to-use charts.If you are a cloud fan, you </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/6477027893700321926/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=6477027893700321926' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6477027893700321926'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6477027893700321926'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/11/diy-threat-monitoring-system.html' title='DIY Threat Monitoring System'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/Svu8nHrJE_I/AAAAAAAAAYY/VtdLao59fOo/s72-c/tm.JPG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-4042795302368291958</id><published>2009-11-11T02:28:00.000-08:00</published><updated>2009-11-11T02:32:41.895-08:00</updated><title type='text'>More on Security Information Event Management (SIEM)</title><summary type='text'>Anton Chuvakin in his blog is discussing SIEM must-have features, use cases, and different users.nice reading, in addition to SANS paper on benchmarking SIEM. </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/4042795302368291958/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=4042795302368291958' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4042795302368291958'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4042795302368291958'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/11/more-on-security-information-event.html' title='More on Security Information Event Management (SIEM)'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-6313373552244213255</id><published>2009-11-05T01:05:00.000-08:00</published><updated>2009-11-05T01:05:00.350-08:00</updated><title type='text'>Enterprise Open Source Intelligence Gathering</title><summary type='text'>A series of blog entries ( 1, 2, 3)  by Tom Eston, about Open Source information gathering has some useful techniques and tools that can be easily used in enterprises for monitoring social media. An overall presentation is available here.More tools can be found here.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/6313373552244213255/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=6313373552244213255' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6313373552244213255'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6313373552244213255'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/11/enterprise-open-source-intelligence.html' title='Enterprise Open Source Intelligence Gathering'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-7660344755081657142</id><published>2009-11-03T00:55:00.000-08:00</published><updated>2011-06-06T22:44:49.627-07:00</updated><title type='text'>Malicious IPs and URL FREE Databases</title><summary type='text'>Lenny Zeltser is always inspiring me, he recently published a list of blocklist.Here is my own list, the issue is how to use these IPs and URLs for your benefit? The answer is a project I am working on, stay tuned.CBL BlackList: (Spam ip, FREE) UCEProtect: (Spam ip, FREE)MS SNDS (ip, FREE)SpamHaus: (Spam, $$) There are lots of other SPAM databases, just google them..Malware Domain list: (domains,</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/7660344755081657142/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=7660344755081657142' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7660344755081657142'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7660344755081657142'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/11/malicious-ips-and-url-free-databases.html' title='Malicious IPs and URL FREE Databases'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-4045245167789697033</id><published>2009-11-03T00:45:00.000-08:00</published><updated>2009-11-03T00:51:56.991-08:00</updated><title type='text'>Fast Flux statistics, from Arbor</title><summary type='text'>Arbor is releasing statistics from their systems and spamtraps for tracking Fast-Flux networks.Q3, 2009 statistics:Q2, 2009 Statistics:</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/4045245167789697033/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=4045245167789697033' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4045245167789697033'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4045245167789697033'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/11/fast-flux-statistics-from-arbor.html' title='Fast Flux statistics, from Arbor'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/Su_ui4ST37I/AAAAAAAAAXg/jrYy4qITs6I/s72-c/1.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-7014995850500500381</id><published>2009-11-01T00:16:00.000-07:00</published><updated>2009-11-01T00:20:12.268-07:00</updated><title type='text'>Materials, Louisville Infosec 2009</title><summary type='text'>Louisville Infosec 2009 conference videos are available here.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/7014995850500500381/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=7014995850500500381' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7014995850500500381'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7014995850500500381'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/11/materials-louisville-infosec-2009.html' title='Materials, Louisville Infosec 2009'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/Su02mYeGA-I/AAAAAAAAAWw/ksiNf-kM07k/s72-c/1.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-853550857213249747</id><published>2009-10-30T01:08:00.000-07:00</published><updated>2009-10-30T01:08:00.271-07:00</updated><title type='text'>SANS, Cyber Security Awareness Month</title><summary type='text'>The guys @ SANS are putting daily articles on 31 different ports/services/protocols/applications during October, the list is very good and the comments of the readers also worth checking.123  NTP53    DNS22   SSH25   smtp23   Telnet514   syslog5900  VNC20,21  FTP5060,5061 SIP445 SMB over TCP1433,1434    MS-SQL67,68 bootp and DHCP80,443   HTTP/HTTPS995,465,993  Secure Mail1521  Oracle TNS </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/853550857213249747/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=853550857213249747' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/853550857213249747'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/853550857213249747'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/10/sans-cyber-security-awareness-month.html' title='SANS, Cyber Security Awareness Month'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-1340858734056907029</id><published>2009-10-27T01:00:00.000-07:00</published><updated>2009-10-28T03:21:01.389-07:00</updated><title type='text'>Awareness Material, FREE</title><summary type='text'>This is a list of some useful awareness materials including videos, posters, presentations, ...etcEnisa posters, cartoons and videos GoogleMicrosoft brochures,  videos, and presentationsOnGuard: tips, games, and videos.Secure Bytes: posters and wallpapers</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/1340858734056907029/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=1340858734056907029' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1340858734056907029'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1340858734056907029'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/10/awareness-material-free.html' title='Awareness Material, FREE'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-1284383026372123263</id><published>2009-10-25T00:01:00.000-07:00</published><updated>2009-10-25T00:01:01.437-07:00</updated><title type='text'>Koobface, Arabic Localized Attack</title><summary type='text'>A new localized wave with SEO in Arabic, making use of Palestinian internal conflict, seems like a new direction, the link points to a blog on blogspot. (hxxp://otkiwmxoakdklfbyc.blogspot.com/)A redirection from the blog to infected urls, will result in the the below page:Setup.exe file is downloaded to the machine, the anti-virus detection rate of that file is below 35%.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/1284383026372123263/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=1284383026372123263' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1284383026372123263'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1284383026372123263'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/10/koobface-arabic-localized-attack.html' title='Koobface, Arabic Localized Attack'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/SuPt0i25wmI/AAAAAAAAAWY/6ewwU78YVE8/s72-c/local.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-5655029907938138917</id><published>2009-10-23T12:50:00.000-07:00</published><updated>2009-10-23T12:56:45.697-07:00</updated><title type='text'>Koobface New Campaign - updated list of infected domains</title><summary type='text'>Here is another list of infected domains used in Koobface campaign.http://armadasound.com/498/http://phobos.de/619/http://javanesemassage.com/361/http://jean-jacques-goldman.hostzi.com/393/http://www.redsparkmusic.com/757/index.phphttp://geci-international.net16.net/568/http://osenf.com/247/http://suhaibalsheikh.com/376/http://sereshgi.com/328/http://seassociation.sg/232/http://</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/5655029907938138917/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=5655029907938138917' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5655029907938138917'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5655029907938138917'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/10/koobface-new-campaign-updated-list-of.html' title='Koobface New Campaign - updated list of infected domains'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-3455038520379541863</id><published>2009-10-22T16:41:00.000-07:00</published><updated>2009-10-22T17:22:19.439-07:00</updated><title type='text'>Koobface New Campaign</title><summary type='text'>A friend of mine just got hit with what it seems to be new koobface campaign; hundreds of posts from his account to his friend's walls with the following message samples:You musst see tthis vvideo nnow! It'ss the bbest one!!You mmust see tthis viideo now!! It'ss the bestt onne!You mustt see thhis vvideo now!! It''s the bbest one!!andI ccan't falll assleep affter viiewing tthis videoo. I havven't </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/3455038520379541863/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=3455038520379541863' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3455038520379541863'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/3455038520379541863'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/10/koobface-new-campaign.html' title='Koobface New Campaign'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-5110829519968000228</id><published>2009-10-22T09:51:00.000-07:00</published><updated>2009-10-22T09:56:57.994-07:00</updated><title type='text'>Facebook Privacy and Security Guide</title><summary type='text'>For Facebook users, this guide is a must read.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/5110829519968000228/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=5110829519968000228' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5110829519968000228'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/5110829519968000228'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/10/facebook-privacy-and-security-guide.html' title='Facebook Privacy and Security Guide'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/SuCOxTdrMEI/AAAAAAAAAWQ/Bmm4sGeGzls/s72-c/1.bmp' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-8316463215018101012</id><published>2009-10-21T01:01:00.000-07:00</published><updated>2009-10-21T03:24:01.509-07:00</updated><title type='text'>Reports, Web Application Security Statistics</title><summary type='text'>Web Application Security Consortium (WASC) released statistics from 2008 project, the goals are:Identify the prevalence and probability of different vulnerability classes.Compare testing methodologies against what types of vulnerabilities they are likely to identify.They have scanned over 12,000 web site, resulting in 4 data sets:Overall statistics by all kinds of activities;Automatic scanning </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/8316463215018101012/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=8316463215018101012' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8316463215018101012'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8316463215018101012'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/10/reports-web-application-security.html' title='Reports, Web Application Security Statistics'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/St644u8yIrI/AAAAAAAAAWI/ZZVWwHlaUJc/s72-c/3.JPG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-200061823612239665</id><published>2009-10-20T10:26:00.000-07:00</published><updated>2009-10-20T10:47:11.102-07:00</updated><title type='text'>Reports, Symantec Report on Rogue Security Software</title><summary type='text'>Check the report here.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/200061823612239665/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=200061823612239665' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/200061823612239665'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/200061823612239665'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/10/reports-symantec-report-on-rogue.html' title='Reports, Symantec Report on Rogue Security Software'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_P4KmVMnbtiU/St31kPDgCsI/AAAAAAAAAVg/iJuREgyCHWM/s72-c/3.JPG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-8209287000656786034</id><published>2009-10-17T05:05:00.000-07:00</published><updated>2009-10-17T05:34:02.852-07:00</updated><title type='text'>Building a Virtual Lab</title><summary type='text'>A couple of recent blog posts by Andrew Waite, Infosanity, has put some details on implementing a full visualized lab, using VMWare ESXi with Vyatta (virtual FW and router),  De-ICE PenTest LiveCDs , and BT4.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/8209287000656786034/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=8209287000656786034' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8209287000656786034'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/8209287000656786034'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/10/building-virtual-lab.html' title='Building a Virtual Lab'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-4627437510706937680</id><published>2009-10-14T00:02:00.000-07:00</published><updated>2009-10-14T00:09:08.098-07:00</updated><title type='text'>Keep your Firefox Plugins up to date!</title><summary type='text'>Mozilla has just released a web page that will check your main plugins for updates, all what you need to do is visiting this page.  Mozilla plan for  automatic updating of Firefox plugins, that is a major step in fighting malware propagation methods.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/4627437510706937680/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=4627437510706937680' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4627437510706937680'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/4627437510706937680'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/10/keep-your-firefox-plugins-up-to-date.html' title='Keep your Firefox Plugins up to date!'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/StV4oDdvDnI/AAAAAAAAAVI/ZWyDBZjlA-c/s72-c/1.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-7520774220852405258</id><published>2009-10-12T01:00:00.000-07:00</published><updated>2009-10-12T01:00:02.524-07:00</updated><title type='text'>Materials, VB2009 Conference, Geneva</title><summary type='text'>Slides are available here.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/7520774220852405258/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=7520774220852405258' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7520774220852405258'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/7520774220852405258'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/10/materials-vb2009-conference-geneva.html' title='Materials, VB2009 Conference, Geneva'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_P4KmVMnbtiU/StLGxBgpYYI/AAAAAAAAAU4/F1J1aR1KRo8/s72-c/t.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-6747829768880350180</id><published>2009-10-11T00:27:00.000-07:00</published><updated>2010-03-23T10:38:46.565-07:00</updated><title type='text'>Materials, Hack inThe Box 2009</title><summary type='text'>Materials are available online for Hack in The Box 2009, Kuala Lumpur.Check the updated location for materials and videos.I like the Ed Skoudis keynote "The bad guys are winning", specially the part discussing  the implication of current threats on enterprise security personnel, and the need to divert some enterprise security resources from prevention to detection and eradication.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/6747829768880350180/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=6747829768880350180' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6747829768880350180'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/6747829768880350180'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/10/materials-hack-inthe-box-2009.html' title='Materials, Hack inThe Box 2009'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_P4KmVMnbtiU/StA72McfGDI/AAAAAAAAAUo/9FSpeOxag8E/s72-c/1.JPG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-1785592756726587014</id><published>2009-10-10T01:06:00.000-07:00</published><updated>2009-10-10T01:06:00.614-07:00</updated><title type='text'>Anti-virus Reactive and Proactive Quadrant</title><summary type='text'>11 out of 26 Anti-virus products fail VB100 certification called RAP, Reactive and Proactive detection. G Data, Avira, and Trustport got the best scores.The results are close to what av-comparatives released in its August report.</summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/1785592756726587014/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=1785592756726587014' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1785592756726587014'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/1785592756726587014'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/10/anti-virus-reactive-and-proactive.html' title='Anti-virus Reactive and Proactive Quadrant'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_P4KmVMnbtiU/StApUTw90CI/AAAAAAAAAUg/BIyMnsc-b7c/s72-c/vb.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-249740660683386337.post-2070640836259799029</id><published>2009-10-07T14:30:00.000-07:00</published><updated>2009-10-08T23:14:03.523-07:00</updated><title type='text'>47 Egyptians Arrested in Phishing Attack</title><summary type='text'>U.S. and Egyptian authorities are arresting dozens of people in an identity theft ring. The gang used phishing attacks and successfully managed to get financial and personal information from thousands of victims. Expected loss is around 2 million US$.The story is alarming in the middle east, for the number of charged people (47 in Egypt, 33  in USA), and the ease of attacks.The indictment is </summary><link rel='replies' type='application/atom+xml' href='http://www.okamalo.com/feeds/2070640836259799029/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=249740660683386337&amp;postID=2070640836259799029' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2070640836259799029'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/249740660683386337/posts/default/2070640836259799029'/><link rel='alternate' type='text/html' href='http://www.okamalo.com/2009/10/37-egyptians-arrested-in-phishing.html' title='47 Egyptians Arrested in Phishing Attack'/><author><name>OkamalO</name><uri>http://www.blogger.com/profile/11332410613453519243</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='24' height='32' src='http://1.bp.blogspot.com/_P4KmVMnbtiU/S_uTAosNhqI/AAAAAAAAAs8/AunzlSEHw-M/S220/os.PNG'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_P4KmVMnbtiU/Ss0K57KYldI/AAAAAAAAAUY/8W3qWdc71AM/s72-c/goog.bmp' height='72' width='72'/><thr:total>0</thr:total></entry></feed>
