Profile_bird

Hey there! cbyrd01 is using Twitter.

Twitter is a free service that lets you keep in touch with people through the exchange of quick, frequent answers to one simple question: What's happening? Join today to start receiving cbyrd01's tweets.

Already using Twitter
from your phone? Click here.

cbyrd01

  1. New blog post: Open Source SIM setup (PreludeIDS+OSSEC+Snort) http://riosec.com/open-source-sim-installation-prelude
  2. @Beaker In case you didn't know, http://www.cloudsecurityalliance.org/guidance/domains/ is currently returning a 404 Not Found
  3. @brianljohnson Outlook<->Exchange uses MAPI/RPC. It's going to be difficult even if the client and server are not set to use encryption.
  4. @brianljohnson I'd try NetWitness Investigator - I don't know if it supports it, but worth a shot I suppose.
  5. RT @hdmoore: Adobe PDF 0.9-day added to Metasploit: [msf> use exploit/windows/fileformat/adobe_media_newplayer.rb] (via jduck/pusscat ...
  6. @hdmoore Awesome! Will meterpreter over passivex be re-enabled? The new pivoting/multitasking + passivex would be killer!
  7. I figure someone at Palo Alto Networks or McAfee (Enterprise Firewall) would want L7FW.com at least.
  8. Any @securitytwits interested in the domain name L7FW.com?
  9. @theharmonyguy Not vuln to sniffing by itself, but check out Moxie Marlinspike's sslsniff and sslstrip: http://j.mp/5PFARq
  10. @theharmonyguy The requested domain name leaks through Server Name Indication (SNI) and in the CN or SubAltName part of the server cert
  11. @theharmonyguy They don't see the URI just by sniffing. It is in the TLS session, and why name-based virtual hosts and TLS don't mix well.
  12. RT @HenkvanRoest: Google CEO says privacy doesn't matter. Google blacklists CNet for violating CEO's privacy. Retweet of @Rhalbheer http ...
  13. @Beaker I really enjoyed your presentation! Trying to read the slides was a little frustrating though; are they available anywhere else?
  14. @redpig I didn't much mention of SELinux, was that considered? Very interested in the comparison vs. grsecurity, Tomoyo, etc.
  15. @redpig I hope to get time to play with it more soon. I like the practical approach you're taking rather than trying to reinvent security.
  16. Standards? Where we're going we don't need standards.
  17. @greensql From the docs it sounds like IPS mode checks suspicious first then whitelist? Seems like perf. would be better the opposite?
  18. Also, SSL VPN (Cisco AnyConnect, OpenVPN) != browser-based VPN (Cisco WebVPN, OpenVPN ALS)
  19. Talk amongst yourselves. I'll give you a topic. Clientless VPNs are neither clientless nor VPNs. Discuss.
  20. RT @hdmoore: Rapid7 released NeXpose Community Edition (free): http://bit.ly/8d3vMe Metasploit Integration: http://bit.ly/75xibt