Aug 12 2009

WordPress jQuery Carousel

Published by admin under Just fun, Software

A good friend of mine recently posted a great how to on integrating a jQuery Carousel into your WordPress blog. It is a great read and a really cool feature to add into your wordpress blog.

Check it out here.

Good work Dre.

No responses yet

Aug 05 2009

It is that time again SAN Mentoring (SEC 508)

Published by admin under Business, Misc Security, Training

It is time for me to do another SANS mentor class. Are you interested in Computer Forensics? Then this mentor class is for you. With the rise in data breaches it is imperative that all organizations develop an in house Incident Response and Computer Forensics program.

Starting on Tuesday October 13th I will be Mentoring the SANS Sec 508: Computer Forensics, Investigation, and Response Program.

Fell free contact me with any questions you may have.

More information here: SANS SEC 508 Mentor

No responses yet

May 29 2009

RIM + PDF = Exploit me

Published by admin under Exploits, Vulnerabilities

Earlier this week RIM, the makers of BlackBerry, released a new vulnerability that scores rather high on the CVSS scale. In case you are not familar with CVSS this score is rather high.

It is recommeded that you either patch or apply the workaround as outlined in the RIM advisory.

No responses yet

May 18 2009

Time to pick things back up

Published by admin under Uncategorized

It is time for me to pick things back up. It has been along time since I have done anything with this blog and I need to start things back up. If you have any ideas about posts drop me a line.

No responses yet

Dec 11 2008

Patch Tuesday – Fail

Published by admin under Exploits, Malware, Virus, Vulnerabilities

This week contained the proverbial MSFT patch Tuesday, this set of patches contained 8 advisories patching items from Internet Explorer, MS Office Components, Windows Explorer, etc.. So in all this was a pretty heavy Black Tuesday for MSFT.

The Fail

As MSFT was releasing their patches another group of people were releasing their own little bug. On Tuesday morning as the patches from MSFT were being released several online publications starting reporting a new IE 0day exploit in the wild. All the publicity started here at PC World and from there it just rolls down hill.

The flaw was made public in Chinese language discussion forums two days ago by a security group called the Knownsec team. In tests, it worked on IE 7 running on Windows XP, Service Pack 2.

Since the initial report out of PC World the news starts to spiral out of other media outlets. However nothingĀ  good gets published until HD Moore does some really good analysis on the exploit over at the Breaking Point Security blog.

Defenses

  1. Start off by switching browsers to FireFox. You can get it here.
  2. Enable DEP on your system,

Until MSFT releases a patch for this I would recommend switching to another browser.

No responses yet

« Prev - Next »