<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Karl's Place &#187; security</title>
	<atom:link href="http://blogs.kranich.org/karl/category/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://blogs.kranich.org/karl</link>
	<description></description>
	<lastBuildDate>Mon, 31 Oct 2011 03:44:48 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Analyze a Bot-Infected Host with Wireshark</title>
		<link>http://blogs.kranich.org/karl/2009/07/28/analyze-a-bot-infected-host-with-wireshark/</link>
		<comments>http://blogs.kranich.org/karl/2009/07/28/analyze-a-bot-infected-host-with-wireshark/#comments</comments>
		<pubDate>Tue, 28 Jul 2009 22:51:12 +0000</pubDate>
		<dc:creator>karl.kranich</dc:creator>
				<category><![CDATA[security]]></category>
		<category><![CDATA[tips&tricks]]></category>

		<guid isPermaLink="false">http://blogs.kranich.org/karl/?p=229</guid>
		<description><![CDATA[Here&#8217;s a video by Laura Chappell analyzing the network traffic from a bot-infected host.? Good stuff!]]></description>
			<content:encoded><![CDATA[<p>Here&#8217;s a <a title="wireshark video" href="http://www.securitytube.net/Analyze-a-Bot-Infected-Host-with-Wireshark-video.aspx" target="_blank">video</a> by Laura Chappell analyzing the network traffic from a bot-infected host.?  Good stuff!</p>
<p><a title="wireshark video" href="http://www.securitytube.net/Analyze-a-Bot-Infected-Host-with-Wireshark-video.aspx" target="_blank"><img class="alignnone size-full wp-image-230" title="wireshark" src="http://blogs.kranich.org/karl/wp-content/uploads/2009/07/wireshark.gif" alt="wireshark" width="400" height="299" /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.kranich.org/karl/2009/07/28/analyze-a-bot-infected-host-with-wireshark/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Injection-proof SQL</title>
		<link>http://blogs.kranich.org/karl/2008/10/16/injection-proof-sql/</link>
		<comments>http://blogs.kranich.org/karl/2008/10/16/injection-proof-sql/#comments</comments>
		<pubDate>Thu, 16 Oct 2008 14:22:06 +0000</pubDate>
		<dc:creator>karl.kranich</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blogs.kranich.org/karl/?p=190</guid>
		<description><![CDATA[Bruce Schneier points to an Oracle paper on How to Write Injection-proof SQL.? Sixty-two pages that I hope to look at some day&#8230;]]></description>
			<content:encoded><![CDATA[<p><a title="Bruce Schneier" href="http://www.schneier.com/index.html">Bruce Schneier</a> points to an Oracle paper on <a title="How to Write Injection-proof SQL" href="http://www.schneier.com/blog/archives/2008/10/how_to_write_in.html">How to Write Injection-proof SQL</a>.?  Sixty-two pages that I hope to look at some day&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.kranich.org/karl/2008/10/16/injection-proof-sql/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Eavesdropping on Bluetooth</title>
		<link>http://blogs.kranich.org/karl/2008/04/18/eavesdropping-on-bluetooth/</link>
		<comments>http://blogs.kranich.org/karl/2008/04/18/eavesdropping-on-bluetooth/#comments</comments>
		<pubDate>Fri, 18 Apr 2008 20:29:51 +0000</pubDate>
		<dc:creator>karl.kranich</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blogs.kranich.org/karl/?p=151</guid>
		<description><![CDATA[People assume those bluetooth headsets can&#8217;t be listened in on &#8230; or that it&#8217;s limited to 30 feet.? Both beliefs are false! Joshua Wright is a wireless hacker and security guy extraordinairre.]]></description>
			<content:encoded><![CDATA[<p>People assume those bluetooth headsets can&#8217;t be listened in on &#8230; or that it&#8217;s limited to 30 feet.?  Both beliefs are false!</p>
<p>Joshua Wright is a wireless hacker and security guy extraordinairre.</p>
<p><a href="http://blogs.kranich.org/karl/2008/04/18/eavesdropping-on-bluetooth/"><em>Click here to view the embedded video.</em></a></p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.kranich.org/karl/2008/04/18/eavesdropping-on-bluetooth/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Laura Chappell Interview on Ron Nutter&#8217;s Help Desk Tool Chest</title>
		<link>http://blogs.kranich.org/karl/2008/01/22/laura-chappell-interview-on-ron-nutters-help-desk-tool-chest/</link>
		<comments>http://blogs.kranich.org/karl/2008/01/22/laura-chappell-interview-on-ron-nutters-help-desk-tool-chest/#comments</comments>
		<pubDate>Tue, 22 Jan 2008 19:27:15 +0000</pubDate>
		<dc:creator>karl.kranich</dc:creator>
				<category><![CDATA[security]]></category>
		<category><![CDATA[tips&tricks]]></category>

		<guid isPermaLink="false">http://blogs.kranich.org/karl/2008/01/22/laura-chappell-interview-on-ron-nutters-help-desk-tool-chest/</guid>
		<description><![CDATA[Hear Laura Chappell, the network troubleshooting and packet inspection guru, on episode 6 of Ron Nutter&#8217;s Help Desk Tool Chest podcast (his interview with her is about 37 minutes in). For more great stuff from Laura, see Wireshark University and www.packet-level.com.]]></description>
			<content:encoded><![CDATA[<p>Hear Laura Chappell, the network troubleshooting and packet inspection guru, on episode 6 of <a href="http://www.networkworld.com/podcasts/nutter/" title="Help Desk Tool Chest">Ron Nutter&#8217;s Help Desk Tool Chest</a> podcast (his interview with her is about 37 minutes in).</p>
<p>For more great stuff from Laura, see <a href="http://www.wiresharku.com" title="Wireshark University">Wireshark University</a> and <a href="http://www.packet-level.com/" title="Packet-Level.com">www.packet-level.com</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.kranich.org/karl/2008/01/22/laura-chappell-interview-on-ron-nutters-help-desk-tool-chest/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Time to Update Wireshark</title>
		<link>http://blogs.kranich.org/karl/2007/12/20/time-to-update-wireshark/</link>
		<comments>http://blogs.kranich.org/karl/2007/12/20/time-to-update-wireshark/#comments</comments>
		<pubDate>Thu, 20 Dec 2007 14:08:30 +0000</pubDate>
		<dc:creator>karl.kranich</dc:creator>
				<category><![CDATA[cool tools]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blogs.kranich.org/karl/2007/12/20/time-to-update-wireshark/</guid>
		<description><![CDATA[It&#8217;s time to update your copy of Wireshark, everyone&#8217;s favorite packet analyzer.? Why, you ask? follow UDP streams filter on SNMP OIDs improved Vista support And if you don&#8217;t know about it already, head on over to Laura Chappell&#8217;s Wireshark University and check it out.? Sign up for the free FIN Bit Magazine and download [...]]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s time to update your copy of Wireshark, everyone&#8217;s favorite packet analyzer.?  Why, you ask?</p>
<ul>
<li>follow UDP streams</li>
<li>filter on SNMP OIDs</li>
<li>improved Vista support</li>
</ul>
<p>And if you don&#8217;t know about it already, head on over to Laura Chappell&#8217;s <a href="http://www.wiresharktraining.com/" title="Wireshark training">Wireshark University</a> and check it out.?  Sign up for the free <a href="http://www.wiresharktraining.com/WSU_Magazine.html" title="FIN Bit">FIN Bit</a> Magazine and download the free Wireshark Accelerators reference card (keyboard shortcuts for Wireshark).</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.kranich.org/karl/2007/12/20/time-to-update-wireshark/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Give Snort a try</title>
		<link>http://blogs.kranich.org/karl/2007/10/31/give-snort-a-try/</link>
		<comments>http://blogs.kranich.org/karl/2007/10/31/give-snort-a-try/#comments</comments>
		<pubDate>Wed, 31 Oct 2007 15:26:32 +0000</pubDate>
		<dc:creator>karl.kranich</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blogs.kranich.org/karl/2007/10/31/give-snort-a-try/</guid>
		<description><![CDATA[If you&#8217;ve been wanting to give the open source network intrusion detection system Snort a try, check out Knoppix-NSM. I haven&#8217;t tried it yet, but Russ McRee wrote a nice article about it called Putting Snort to Work in Information Security magazine.]]></description>
			<content:encoded><![CDATA[<p>If you&#8217;ve been wanting to give the open source network intrusion detection system <a href="http://www.snort.org/" title="Snort IDS">Snort</a> a try, check out <a href="http://www.securixlive.com/knoppix-nsm/" title="Knoppix Network Security Monitor">Knoppix-NSM</a>.</p>
<p>I haven&#8217;t tried it yet, but Russ McRee wrote a nice article about it called <a href="http://searchsecurity.techtarget.com/magazineFeature/0,296894,sid14_gci1274443,00.html" title="Putting Snort to Work"><em>Putting Snort to Work</em></a> in Information Security magazine.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.kranich.org/karl/2007/10/31/give-snort-a-try/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Free Antivirus/Antimalware Super-Scanner</title>
		<link>http://blogs.kranich.org/karl/2007/09/27/free-antivirusantimalware-super-scanner/</link>
		<comments>http://blogs.kranich.org/karl/2007/09/27/free-antivirusantimalware-super-scanner/#comments</comments>
		<pubDate>Thu, 27 Sep 2007 20:31:37 +0000</pubDate>
		<dc:creator>karl.kranich</dc:creator>
				<category><![CDATA[cool tools]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[theWeb]]></category>

		<guid isPermaLink="false">http://blogs.kranich.org/karl/2007/09/27/free-antivirusantimalware-super-scanner/</guid>
		<description><![CDATA[If someone sends you a file (or you download a questionable file) and you really want to be sure that the file is safe, try out VirusTotal. VirusTotal is &#8220;a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines&#8221;.&#160; You upload [...]]]></description>
			<content:encoded><![CDATA[<p>If someone sends you a file (or you download a questionable file) and you really want to be sure that the file is safe, try out <a href="http://www.virustotal.com/">VirusTotal</a>.</p>
<p>VirusTotal is &ldquo;a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines&rdquo;.&nbsp; You upload or email a file to them, and they scan it with a bunch of antivirus programs.</p>
<p>They currently list 32 companies whose antivirus engines are used.</p>
<p>This is certainly not a replacement for running antivirus software on your machine, since it only scans individual files that you submit.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.kranich.org/karl/2007/09/27/free-antivirusantimalware-super-scanner/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security Awareness Video Contest</title>
		<link>http://blogs.kranich.org/karl/2007/08/13/security-awareness-video-contest/</link>
		<comments>http://blogs.kranich.org/karl/2007/08/13/security-awareness-video-contest/#comments</comments>
		<pubDate>Mon, 13 Aug 2007 15:39:10 +0000</pubDate>
		<dc:creator>karl.kranich</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blogs.kranich.org/karl/2007/08/13/security-awareness-video-contest/</guid>
		<description><![CDATA[Check out the winners of the 2007 Computer Security Awareness Video Contest conducted by the EDUCAUSE/Internet2 Computer and Network Security Task Force, the National Cyber Security Alliance, and ResearchChannel to raise awareness of and increase computer security at colleges and universities. Quoting from the site: The contest sought videos that explain computer security problems and [...]]]></description>
			<content:encoded><![CDATA[<p>Check out the <a href="http://www.researchchannel.org/securityvideo2007/index.aspx">winners</a> of the 2007 Computer Security Awareness Video Contest conducted by the EDUCAUSE/Internet2 Computer and Network Security Task Force, the National Cyber Security Alliance, and ResearchChannel to raise awareness of and increase computer security at colleges and universities.</p>
<p>Quoting from the site:</p>
<blockquote><p>The contest sought videos that explain computer security problems and specific actions college and university students can take to safeguard their computers or personal information.<br />
<br />Winning videos were selected for creativity, content, technical quality, and overall effectiveness of delivery. Cash prizes were awarded to winners in each category. The two gold winners received $1,000, the two silver winners received $800, and the two bronze winners received $400 in cash prizes. Five honorable mentions were also selected in each category.
</p></blockquote>
]]></content:encoded>
			<wfw:commentRss>http://blogs.kranich.org/karl/2007/08/13/security-awareness-video-contest/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco interviews Ed Skoudis</title>
		<link>http://blogs.kranich.org/karl/2007/04/30/cisco-interviews-ed-skoudis/</link>
		<comments>http://blogs.kranich.org/karl/2007/04/30/cisco-interviews-ed-skoudis/#comments</comments>
		<pubDate>Mon, 30 Apr 2007 13:37:37 +0000</pubDate>
		<dc:creator>karl.kranich</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blogs.kranich.org/karl/2007/04/30/cisco-interviews-ed-skoudis/</guid>
		<description><![CDATA[Cisco&#8217;s Robb Boyd interviews security expert Ed Skoudis in this episode of Cisco&#8217;s Techwise Podcast series. Ed is a popular SANS instructor and an excellent communicator. He and Robb give an overview of the current Internet security scene, and don&#8217;t even try to sell any Cisco products! Probably the easiest way to get this podcast [...]]]></description>
			<content:encoded><![CDATA[<p>Cisco&#8217;s Robb Boyd interviews security expert Ed Skoudis in this episode of Cisco&#8217;s Techwise Podcast series.</p>
<p>Ed is a popular SANS instructor and an excellent communicator.  He and Robb give an overview of the current Internet security scene, and don&#8217;t even try to sell any Cisco products!</p>
<p>Probably the easiest way to get this podcast is to point your podcatcher (like iTunes) to <a href="http://www.cisco.com/cdc_content_elements/rss/podcast/netsol/smb/interaction_network/technology_pcast.xml">this link</a> and choose the episodes you want.  The Skoudis one is called &#8220;Crouching Wi-Fi Hidden Dragon&#8221; after a section from his book, <a href="http://www.counterhack.net">Counter Hack Reloaded</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.kranich.org/karl/2007/04/30/cisco-interviews-ed-skoudis/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>NetworkWorld good stuff</title>
		<link>http://blogs.kranich.org/karl/2007/04/17/networkworld-good-stuff/</link>
		<comments>http://blogs.kranich.org/karl/2007/04/17/networkworld-good-stuff/#comments</comments>
		<pubDate>Tue, 17 Apr 2007 15:32:57 +0000</pubDate>
		<dc:creator>karl.kranich</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blogs.kranich.org/karl/2007/04/17/networkworld-good-stuff/</guid>
		<description><![CDATA[I read NetworkWorld every week, and I usually find something interesting. The April 2, 2007 issue, however, surprised me with the number of articles that directly addressed topics that I&#8217;m currently interested in: Open source NAC IPv6 update MPLS road map Newbury Location Appliance Wi-Fi gear review]]></description>
			<content:encoded><![CDATA[<p>I read <a href="http://www.networkworld.com/">NetworkWorld</a> every week, and I usually find something interesting.  The April 2, 2007 issue, however, surprised me with the number of articles that directly addressed topics that I&#8217;m currently interested in:</p>
<ul>
<li><a href="http://www.networkworld.com/news/2007/032907-open-source-swarms.html">Open source NAC</a></li>
<li><a href="http://www.networkworld.com/news/2007/032807-ipv6-national-security.html">IPv6 update</a></li>
<li><a href="http://www.networkworld.com/research/2007/040207-mpls-migration.html">MPLS road map</a></li>
<li><a href="http://www.networkworld.com/research/2007/040207-mpls-migration.html">Newbury Location Appliance Wi-Fi gear review</a></li>
</ul>
]]></content:encoded>
			<wfw:commentRss>http://blogs.kranich.org/karl/2007/04/17/networkworld-good-stuff/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Free downloadable book:  Security Engineering</title>
		<link>http://blogs.kranich.org/karl/2006/09/25/free-downloadable-book-security-engineering/</link>
		<comments>http://blogs.kranich.org/karl/2006/09/25/free-downloadable-book-security-engineering/#comments</comments>
		<pubDate>Mon, 25 Sep 2006 14:47:19 +0000</pubDate>
		<dc:creator>karl.kranich</dc:creator>
				<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blogs.kranich.org/karl/2006/09/25/free-downloadable-book-security-engineering/</guid>
		<description><![CDATA[Security Engineering: A Guide to Building Dependable Distributed Systems is available as a free chapter-by-chapter pdf download.? I haven&#8217;t read it yet, but the forward is by Bruce Schneier.? If he recommends it, it&#8217;s got to be good.]]></description>
			<content:encoded><![CDATA[<p><em><a title="Security Engineering book" href="http://www.cl.cam.ac.uk/~rja14/book.html">Security Engineering</a>: A Guide to Building Dependable Distributed Systems</em> is available as a free chapter-by-chapter pdf download.?  I haven&#8217;t read it yet, but the forward is by <a title="Bruce Schneier" href="http://www.schneier.com/">Bruce Schneier</a>.?  If he recommends it, it&#8217;s got to be good.</p>
]]></content:encoded>
			<wfw:commentRss>http://blogs.kranich.org/karl/2006/09/25/free-downloadable-book-security-engineering/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

