IT Trenches:

forensics

May 9 2008   6:20PM GMT

Did you see this? - a live honeynet



Posted by: Troy Tate
anti-virus, Data security, howto, CIO, DataManagement, Sandbox, Security, antivirus, forensics, malware, Monitoring, research, honeynet, honeypot, botnet, SQL Server

I just came across the Shadowserver Foundation. According to their mission:

The Shadowserver Foundation is an all volunteer watchdog group of security professionals that gather, track, and report on malware, botnet activity, and electronic fraud. It is the mission of the Shadowserver Foundation to improve the security of the Internet by raising awareness of the presence of compromised servers, malicious attackers, and the spread of malware.

This is a great resource to find out what’s happening “in the wild” and to help sell security protection to your organization. This is real stuff happening in the real world. For example, take a look at how detailed the blog entry is on the winzipices.cn SQL injection / malware attack. This gives you enough information to fight the threat and feel confident you understand it.  Well done to the Shadowserver Foundation!

Thanks for your time. Let’s be good network citizens together &
practice safe networking!

 

May 9 2008   12:51PM GMT

Did you see this? - the viral bitgirl



Posted by: Troy Tate
howto, troubleshooting, Networking, LAN, WAN, forensics, Monitoring, metrics, Performance, reporting, tools, humor, packet capture, wireshark, network analysis

I have always had an appreciation for Laura Chappel of www.packet-level.com fame and her quirky sense of … hmmmmm.. sense?? hahaha… well… she does have a great sense of humor and a heightened sense of awareness with respect to those bits and bytes flowing across our wired and wireless networks.

Laura Chappell has now gone viral after her “initial concern about being somewhat infectious”. She has launched the BitSpitters video series - fast answers to fast questions. The BitSpitters videos are hosted on YouTube right now - feel free to link to her BitSpitters page at www.wiresharktraining.com/bitspitters.html to always get the latest. After seeing the initial response from viewers, it seems more folks are interested in the humorous “How Do I Look Smarterest?” style so according to her recent Wireshark U newsletter she will be putting out some more ‘unique’ short videos for your viewing pleasure - and her newsletter has the following warning: “just wait until you see the ‘beach scene’ coming up! [Don’t even get that ‘bathing suit’ thought in your head!]

In case you want more packet level and data networking education, I HIGHLY recommend her Master Library which you can purchase through WiresharkU. For a short time only, she is offering an dditional 50% off already discounted price. Coupon code: NLMAY Expiry: May 31, 2008.

Thanks for your time. Let’s be good network citizens together & practice safe networking!


Mar 26 2008   6:04PM GMT

Did you see this? - The People’s Forensics



Posted by: Troy Tate
Data security, tools, wiki, howto, Security, forensics

This blog topic, and future versions, will be dedicated to websites I discover in my internet journey that seems to be useful and may help someone else out there with some need they may have.

Today’s website is called the Forensics Wiki . Of interest in particular to you security practitioners out there would be the tools section. To gain some education and knowledge, you might want to check out the How-To section. This wiki seems to be in it’s infancy stage. The value potential is high though.

Thanks for your time. Let’s be good network citizens together & practice safe networking!