 




<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Irregular Expressions &#187; botnet</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/Irregular-Expressions/tag/botnet/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/Irregular-Expressions</link>
	<description>Insight into current security related events and exploits, including virtualization security and tips.</description>
	<lastBuildDate>Sun, 28 Apr 2013 08:00:32 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>News news news</title>
		<link>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/news-news-news/</link>
		<comments>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/news-news-news/#comments</comments>
		<pubDate>Wed, 25 Jan 2012 05:40:34 +0000</pubDate>
		<dc:creator>Dan O'Connor</dc:creator>
				<category><![CDATA[botnet]]></category>
		<category><![CDATA[megaupload]]></category>
		<category><![CDATA[security news]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/Irregular-Expressions/news-news-news/</guid>
		<description><![CDATA[Found a few things going on that got me fired up. Megaupload head cheese has been denied bail, they assert that he is a flight risk. http://www.bbc.co.uk/news/world-asia-16711416 I am totally on the fence on this one, I have seen a lot of legitimate material hosted on there.  The other material I have seen on there [...]]]></description>
				<content:encoded><![CDATA[<p>Found a few things going on that got me fired up.</p>
<p>Megaupload head cheese has been denied bail, they assert that he is a flight risk.</p>
<p><a href="http://www.bbc.co.uk/news/world-asia-16711416">http://www.bbc.co.uk/news/world-asia-16711416</a></p>
<p>I am totally on the fence on this one, I have seen a lot of legitimate material hosted on there.  The other material I have seen on there is peoples personal stuff, I really have not looked very hard on there of copy righted stuff and what I did look for was already down.  Which fits in with their story / policy of removing it.</p>
<p>I will be following this, I really want to see where all of the figures came from.</p>
<p>Another story is the MS security team has named a bot net creator that looks to have had a previous life at a AV company.</p>
<p><a href="http://www.bbc.co.uk/news/technology-16700192">http://www.bbc.co.uk/news/technology-16700192</a></p>
<p>Another one to follow.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/news-news-news/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Finding FastFlux Botnet</title>
		<link>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/finding-fastflux-botnet/</link>
		<comments>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/finding-fastflux-botnet/#comments</comments>
		<pubDate>Thu, 31 Mar 2011 03:15:39 +0000</pubDate>
		<dc:creator>Dan O'Connor</dc:creator>
				<category><![CDATA[botnet]]></category>
		<category><![CDATA[fastflux]]></category>
		<category><![CDATA[links]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/Irregular-Expressions/finding-fastflux-botnet/</guid>
		<description><![CDATA[Very cool way of locating fastflux botnets. http://www.ece.tamu.edu/~reddy/papers/imc2010-yadav.pdf I&#8217;m still reading it, but it&#8217;s very interesting.]]></description>
				<content:encoded><![CDATA[<p>Very cool way of locating fastflux botnets.</p>
<p>http://www.ece.tamu.edu/~reddy/papers/imc2010-yadav.pdf</p>
<p>I&#8217;m still reading it, but it&#8217;s very interesting.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/finding-fastflux-botnet/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Anti-Zombie Bill</title>
		<link>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/anti-zombie-bill/</link>
		<comments>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/anti-zombie-bill/#comments</comments>
		<pubDate>Thu, 31 Mar 2011 03:02:49 +0000</pubDate>
		<dc:creator>Dan O'Connor</dc:creator>
				<category><![CDATA[anti-virus]]></category>
		<category><![CDATA[botnet]]></category>
		<category><![CDATA[south korea]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/Irregular-Expressions/anti-zombie-bill/</guid>
		<description><![CDATA[http://www.zdnet.com/blog/security/zombie-pc-prevention-bill-to-make-security-software-mandatory/8487 I wonder if this will catch on? I don&#8217;t think this will stop everything but it can&#8217;t hurt.  You will still get infected, but at least there is something there.]]></description>
				<content:encoded><![CDATA[<p>http://www.zdnet.com/blog/security/zombie-pc-prevention-bill-to-make-security-software-mandatory/8487</p>
<p>I wonder if this will catch on?</p>
<p>I don&#8217;t think this will stop everything but it can&#8217;t hurt.  You will still get infected, but at least there is something there.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/anti-zombie-bill/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The 2011 Security Story</title>
		<link>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/the-2011-security-story/</link>
		<comments>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/the-2011-security-story/#comments</comments>
		<pubDate>Wed, 30 Mar 2011 04:49:06 +0000</pubDate>
		<dc:creator>Dan O'Connor</dc:creator>
				<category><![CDATA[botnet]]></category>
		<category><![CDATA[cell phone]]></category>
		<category><![CDATA[cell phone botnet]]></category>
		<category><![CDATA[sms command and control]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/Irregular-Expressions/the-2011-security-story/</guid>
		<description><![CDATA[Well maybe not the 2011 story, but I am pretty sure the next big thing will be mobile devices such as phones and tablets.  There is lots of users that will cross personal devices with business devices, would you allow a laptop or pc in to your environment like that? The other question is what [...]]]></description>
				<content:encoded><![CDATA[<p>Well maybe not the 2011 story, but I am pretty sure the next big thing will be mobile devices such as phones and tablets.  There is lots of users that will cross personal devices with business devices, would you allow a laptop or pc in to your environment like that?</p>
<p>The other question is what you would do with an army of cell phones at your command?</p>
<p>Spam? I doubt that.</p>
<p>What is everyone doing now, or trying to push now with mobile devices that you would want to get behind?</p>
<p>Mobile banking, I think this provides a real bang for your buck if you are going to take over thousands of cell phones.  Using a SMS command and control or even using twitter or other web sites to send your commands out.  You cold also use those channels to push back the information you are gathering.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/the-2011-security-story/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Very cool command and control</title>
		<link>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/very-cool-command-and-control/</link>
		<comments>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/very-cool-command-and-control/#comments</comments>
		<pubDate>Sun, 27 Mar 2011 04:47:59 +0000</pubDate>
		<dc:creator>Dan O'Connor</dc:creator>
				<category><![CDATA[botnet]]></category>
		<category><![CDATA[command and control]]></category>
		<category><![CDATA[links]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/Irregular-Expressions/very-cool-command-and-control/</guid>
		<description><![CDATA[I do find command and control structures of botnets very interesting, I do find the creativity of them incredible. http://www.bbc.co.uk/news/technology-12859591 This is one I have not seen before, using custom encryption and using message board comments as a means of communication.  Depending on the message board I don&#8217;t know if this is a great way [...]]]></description>
				<content:encoded><![CDATA[<p>I do find command and control structures of botnets very interesting, I do find the creativity of them incredible.</p>
<p>http://www.bbc.co.uk/news/technology-12859591</p>
<p>This is one I have not seen before, using custom encryption and using message board comments as a means of communication.  Depending on the message board I don&#8217;t know if this is a great way of distributing commands to the bot members.  If the message got deleted you could have something go wrong, such as an update.  They do get good marks for the custom encryption, I don&#8217;t know if I would have selected the command control structure.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/Irregular-Expressions/very-cool-command-and-control/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
