<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet href="http://feeds.feedburner.com/~d/styles/rss2full.xsl" type="text/xsl" media="screen"?><?xml-stylesheet href="http://feeds.feedburner.com/~d/styles/itemcontent.css" type="text/css" media="screen"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:creativeCommons="http://backend.userland.com/creativeCommonsRssModule" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>.:Computer Defense:.</title>
	
	<link>http://www.computerdefense.org</link>
	<description>Sharing my thoughts with the world.</description>
	<pubDate>Thu, 13 Nov 2008 04:10:44 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.2</generator>
	<language>en</language>
			<creativeCommons:license>http://creativecommons.org/licenses/by/2.0/</creativeCommons:license><image><link>http://creativecommons.org/licenses/by/2.0/</link><url>http://creativecommons.org/images/public/somerights20.gif</url><title>Some Rights Reserved</title></image><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" href="http://feeds.feedburner.com/computerdefense" type="application/rss+xml" /><feedburner:emailServiceId>596815</feedburner:emailServiceId><feedburner:feedburnerHostname>http://www.feedburner.com</feedburner:feedburnerHostname><item>
		<title>Go Software! KiTTY and Komodo Edit</title>
		<link>http://feeds.feedburner.com/~r/computerdefense/~3/446326298/</link>
		<comments>http://www.computerdefense.org/2008/11/08/go-software-kitty-and-komodo-edit/#comments</comments>
		<pubDate>Sat, 08 Nov 2008 08:45:09 +0000</pubDate>
		<dc:creator>Tyler Reguly</dc:creator>
		
		<category><![CDATA[IT]]></category>

		<category><![CDATA[Tools]]></category>

		<category><![CDATA[kitty]]></category>

		<category><![CDATA[komodo edit]]></category>

		<category><![CDATA[komodo ide]]></category>

		<category><![CDATA[putty]]></category>

		<guid isPermaLink="false">http://www.computerdefense.org/?p=575</guid>
		<description><![CDATA[Odd Title... but it's 3:30am.
The first thing I wanted to mention was KiTTY ( via /dev/random). It's a fork of PuTTY, which is nice given PuTTY is on a rather slow development cycle, and new features are almost non-existent. Some of the features include folders within the saved sessions box (although, not implemented as "friendly" [...]]]></description>
			<content:encoded><![CDATA[<p>Odd Title... but it's 3:30am.</p>
<p>The first thing I wanted to mention was <a href="http://www.9bis.net/kitty/">KiTTY</a> ( via <a href="http://blog.rootshell.be/2008/11/06/kitty-a-fork-of-putty/">/dev/random</a>). It's a fork of PuTTY, which is nice given PuTTY is on a rather slow development cycle, and new features are almost non-existent. Some of the features include folders within the saved sessions box (although, not implemented as "friendly" as they could be), transparency (this didn't work for me), login scripts (also didn't work for me) and integrated scp support. The features list is actually quite a bit longer than that, feel free to read it on the KiTTY website. As mentioned, a number of the features didn't work for me. I'm going to give it a try on a second computer before I rule it out, but I wanted to mention it now. A second bad experience would most likely lead to me never using it or mentioning it here, and it may work wonderfully for others.</p>
<p>The second thing I wanted to mention is that <a href="http://www.activestate.com/Products/komodo_ide/komodo_edit.mhtml">Komodo Edit 5.0</a> (the free version of Komodo IDE) is now available. Some of the biggest things are limited to Komodo IDE unfortunately, such as Source Code Checkout capabiliies and the ability to "beautify" your code. It does provide some UI clean-up and an update to Firefox 3.0 in the Edit version though.</p>
<p>One of the problems that I had was that my favourite plugin, <a href="http://community.activestate.com/node/1958">Sourcetree</a> ended up attached to the left pane instead of the right pane, which is very unnatural to me. It took me a couple of hours, but I dove into plugins for the first time, opening the jar file and pulling out the javascript. After I tracked down the name of the two panes online (not easily documented), I was able to modify the code and re-archive it. If anyone wants a step by step, or just my modified file, let me know.</p>

<p><a href="http://feeds.feedburner.com/~a/computerdefense?a=s1MhGr"><img src="http://feeds.feedburner.com/~a/computerdefense?i=s1MhGr" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/computerdefense?a=CiOpN"><img src="http://feeds.feedburner.com/~f/computerdefense?i=CiOpN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=2z8Hn"><img src="http://feeds.feedburner.com/~f/computerdefense?i=2z8Hn" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=KkT8N"><img src="http://feeds.feedburner.com/~f/computerdefense?i=KkT8N" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=ekCmn"><img src="http://feeds.feedburner.com/~f/computerdefense?i=ekCmn" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.computerdefense.org/2008/11/08/go-software-kitty-and-komodo-edit/feed/</wfw:commentRss>
		<feedburner:origLink>http://www.computerdefense.org/2008/11/08/go-software-kitty-and-komodo-edit/</feedburner:origLink></item>
		<item>
		<title>Labs Feature in Google Apps</title>
		<link>http://feeds.feedburner.com/~r/computerdefense/~3/438797277/</link>
		<comments>http://www.computerdefense.org/2008/11/01/labs-feature-in-google-apps/#comments</comments>
		<pubDate>Sat, 01 Nov 2008 06:33:09 +0000</pubDate>
		<dc:creator>Tyler Reguly</dc:creator>
		
		<category><![CDATA[Personal]]></category>

		<category><![CDATA[gmail]]></category>

		<category><![CDATA[google]]></category>

		<category><![CDATA[google apps]]></category>

		<category><![CDATA[google labs]]></category>

		<guid isPermaLink="false">http://www.computerdefense.org/?p=573</guid>
		<description><![CDATA[This is a "wish post". I'm a huge fan of Google Apps, I love using my @computerdefense.org email address with everything Google and having it inside of GMail is great. However there are a number of labs features that I would love to have access to and don't get because I use Google Apps intead [...]]]></description>
			<content:encoded><![CDATA[<p>This is a "wish post". I'm a huge fan of Google Apps, I love using my @computerdefense.org email address with everything Google and having it inside of GMail is great. However there are a number of labs features that I would love to have access to and don't get because I use Google Apps intead of GMail. So this is a request that Google make the Labs feature of GMail available to Google Apps users.</p>

<p><a href="http://feeds.feedburner.com/~a/computerdefense?a=hn3wry"><img src="http://feeds.feedburner.com/~a/computerdefense?i=hn3wry" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/computerdefense?a=ovMfN"><img src="http://feeds.feedburner.com/~f/computerdefense?i=ovMfN" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=e4HWn"><img src="http://feeds.feedburner.com/~f/computerdefense?i=e4HWn" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=ec46N"><img src="http://feeds.feedburner.com/~f/computerdefense?i=ec46N" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=f9Nan"><img src="http://feeds.feedburner.com/~f/computerdefense?i=f9Nan" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.computerdefense.org/2008/11/01/labs-feature-in-google-apps/feed/</wfw:commentRss>
		<feedburner:origLink>http://www.computerdefense.org/2008/11/01/labs-feature-in-google-apps/</feedburner:origLink></item>
		<item>
		<title>Microsoft Out-of-Band Bulletin</title>
		<link>http://feeds.feedburner.com/~r/computerdefense/~3/429317708/</link>
		<comments>http://www.computerdefense.org/2008/10/23/microsoft-out-of-band-bulletin/#comments</comments>
		<pubDate>Thu, 23 Oct 2008 05:55:43 +0000</pubDate>
		<dc:creator>Tyler Reguly</dc:creator>
		
		<category><![CDATA[Uncategorized]]></category>

		<category><![CDATA[microsoft]]></category>

		<category><![CDATA[out-of-band]]></category>

		<guid isPermaLink="false">http://www.computerdefense.org/?p=566</guid>
		<description><![CDATA[So, for anyone who didn't get the email, or hasn't heard yet... it looks like Microsoft is releasing an Out-of-Band Bulletin tomorrow. I'm excited to find out why there was cause for an emergency patch release.
Side Note: Possibly the shortest blog post ever. 
]]></description>
			<content:encoded><![CDATA[<p>So, for anyone who didn't get the email, or hasn't heard yet... it looks like Microsoft is releasing an <a href="http://www.microsoft.com/technet/security/bulletin/ms08-oct.mspx">Out-of-Band Bulletin</a> tomorrow. I'm excited to find out why there was cause for an emergency patch release.</p>
<p><em>Side Note: Possibly the shortest blog post ever. </em></p>

<p><a href="http://feeds.feedburner.com/~a/computerdefense?a=cLwoBB"><img src="http://feeds.feedburner.com/~a/computerdefense?i=cLwoBB" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/computerdefense?a=SM1RM"><img src="http://feeds.feedburner.com/~f/computerdefense?i=SM1RM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=xzzom"><img src="http://feeds.feedburner.com/~f/computerdefense?i=xzzom" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=0Zj1M"><img src="http://feeds.feedburner.com/~f/computerdefense?i=0Zj1M" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=SK5pm"><img src="http://feeds.feedburner.com/~f/computerdefense?i=SK5pm" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.computerdefense.org/2008/10/23/microsoft-out-of-band-bulletin/feed/</wfw:commentRss>
		<feedburner:origLink>http://www.computerdefense.org/2008/10/23/microsoft-out-of-band-bulletin/</feedburner:origLink></item>
		<item>
		<title>NoScript Force SSL</title>
		<link>http://feeds.feedburner.com/~r/computerdefense/~3/426714076/</link>
		<comments>http://www.computerdefense.org/2008/10/20/noscript-force-ssl/#comments</comments>
		<pubDate>Mon, 20 Oct 2008 19:17:41 +0000</pubDate>
		<dc:creator>Tyler Reguly</dc:creator>
		
		<category><![CDATA[IT]]></category>

		<category><![CDATA[Security]]></category>

		<category><![CDATA[Tools]]></category>

		<category><![CDATA[firefox]]></category>

		<category><![CDATA[https]]></category>

		<category><![CDATA[noscript]]></category>

		<guid isPermaLink="false">http://www.computerdefense.org/?p=560</guid>
		<description><![CDATA[I've always commented that I'm not a big fan of NoScript... I find browsing "modern" websites to be almost impossible with the plugin installed. For this reason, I don't know how popular it is with "the masses". That being said, I use it because a hindrance is better than a gaping security hole.
However, I've now [...]]]></description>
			<content:encoded><![CDATA[<p>I've always commented that I'm not a big fan of <a href="http://noscript.net/">NoScript</a>... I find browsing "modern" websites to be almost impossible with the plugin installed. For this reason, I don't know how popular it is with "the masses". That being said, I use it because a hindrance is better than a gaping security hole.</p>
<p>However, I've now found what I feel to be the best feature in NoScript. The ability to force HTTPS. Sites like Linkedin have always had issues with provided adequate HTTPS support. There are other sites that are HTTPS only, yet don't redirect HTTP to HTTPS. I've always found these issues to be frustrating. NoScript has solved these problems.</p>
<p>I've inserted a number of common websites I visit into the force HTTPS dialog and now, even if they have flakey HTTPS support that pushes you to HTTP on every request, I'm always using HTTPS. If I type in a address manually to a site that's configured only for HTTPS, NoScript forces the connection over to HTTPS and I no longer curse and go to the address bar to add the 's'.</p>
<p>This is an amazing feature and has greatly increased the value of NoScript in my eyes. Given that this isn't the core focus of the plugin, it's probably the single greatest addition that could have occured.</p>
<p><strong>Update</strong></p>
<p><a href="http://www.tssci-security.com/">Marcin</a> just pointed out that LinkedIn public profiles don't exist over HTTPS (<a href="http://www.linkedin.com/in/treguly">treguly (http)</a> works, <a href="https://www.linkedin.com/in/treguly">treguly (https)</a> doesn't)</p>
<p>To resolve this, simply add www.linkedin.com/in/ to the "never force https connections" portion of NoScript.</p>

<p><a href="http://feeds.feedburner.com/~a/computerdefense?a=2r3ULp"><img src="http://feeds.feedburner.com/~a/computerdefense?i=2r3ULp" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/computerdefense?a=dngkM"><img src="http://feeds.feedburner.com/~f/computerdefense?i=dngkM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=gmXHm"><img src="http://feeds.feedburner.com/~f/computerdefense?i=gmXHm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=n4VTM"><img src="http://feeds.feedburner.com/~f/computerdefense?i=n4VTM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=tDF5m"><img src="http://feeds.feedburner.com/~f/computerdefense?i=tDF5m" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.computerdefense.org/2008/10/20/noscript-force-ssl/feed/</wfw:commentRss>
		<feedburner:origLink>http://www.computerdefense.org/2008/10/20/noscript-force-ssl/</feedburner:origLink></item>
		<item>
		<title>Why I Changed Feed Aggregators</title>
		<link>http://feeds.feedburner.com/~r/computerdefense/~3/419164993/</link>
		<comments>http://www.computerdefense.org/2008/10/13/why-i-changed-feed-aggregators/#comments</comments>
		<pubDate>Mon, 13 Oct 2008 04:40:37 +0000</pubDate>
		<dc:creator>Tyler Reguly</dc:creator>
		
		<category><![CDATA[IT]]></category>

		<category><![CDATA[Tools]]></category>

		<category><![CDATA[bloglines]]></category>

		<category><![CDATA[blogs]]></category>

		<category><![CDATA[google reader]]></category>

		<category><![CDATA[keyboard shortcuts]]></category>

		<category><![CDATA[newsfox]]></category>

		<category><![CDATA[viigo]]></category>

		<guid isPermaLink="false">http://www.computerdefense.org/?p=557</guid>
		<description><![CDATA[For the longest time I've been using Bloglines to read RSS feeds. I've used standalone readers in the past (NewsFox and Viigo) but I've found that there's no way to sync them (I read feeds on 3-4 computers, as well as my phone) and that was a real problem for me. Bloglines is very clean [...]]]></description>
			<content:encoded><![CDATA[<p>For the longest time I've been using <a href="http://www.bloglines.com/">Bloglines</a> to read RSS feeds. I've used standalone readers in the past (<a href="http://newsfox.mozdev.org/">NewsFox</a> and <a href="http://viigo.com/home">Viigo</a>) but I've found that there's no way to sync them (I read feeds on 3-4 computers, as well as my phone) and that was a real problem for me. Bloglines is very clean and fast. It's easy to use and works well when I'm on my phone. However more and more I've been noticing it "down for maintenance", and I've noticed others use <a href="http://www.google.com/reader">Google Reader</a> so I decided to give it a go.</p>
<p>I exported my feeds from Bloglines and imported them into Google Reader. I noticed right away that the layout was familiar (since it was similar to GMail), however I would prefer if I could have subscriptions at the top of the left pane, with Home, Trends, etc below them. As I browsed, I noticed that there were a few other annoyances. One of the things I enjoy about Bloglines is that if don't want to read a certain feed, I can simply click on it as I work my way through new feeds. With Google Reader, if you don't visit the article, it isn't actually marked as read. While technically more accurate, it's not what I'm accustomed to, and unfortunately there isn't a setting to change this. The other annoying issue, was related to Google Reader on my Blackberry... instead of being able to browse based on subscription, the items from the feeds are grouped together and displayed chronologically. This is horrid design compared to Bloglines mobile solution, however I'm finding I can live with the pain in order to have the standard Google Reader UI.</p>
<p>The thing that finally won me over to Google Reader is shortcut keys. I love keyboard shortcuts. The less often I have to use the mouse, the better and Google Reader is great for that. g + u and then you can type the name of the feed you want to read. Even better though is for when I'm browsing my feeds. I can use Shift+n (down) or Shift+p (up) to scroll through my subscription list, Shift+o will open that subscription and then n (down) or p (up) will let me scroll through items in that feed, using enter to open/close the items. It is extraordinarily handy and I highly recommend it to anyone that hasn't tried it yet.</p>

<p><a href="http://feeds.feedburner.com/~a/computerdefense?a=MGDZia"><img src="http://feeds.feedburner.com/~a/computerdefense?i=MGDZia" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/computerdefense?a=57WVM"><img src="http://feeds.feedburner.com/~f/computerdefense?i=57WVM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=38EXm"><img src="http://feeds.feedburner.com/~f/computerdefense?i=38EXm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=WKC2M"><img src="http://feeds.feedburner.com/~f/computerdefense?i=WKC2M" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=Kbypm"><img src="http://feeds.feedburner.com/~f/computerdefense?i=Kbypm" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.computerdefense.org/2008/10/13/why-i-changed-feed-aggregators/feed/</wfw:commentRss>
		<feedburner:origLink>http://www.computerdefense.org/2008/10/13/why-i-changed-feed-aggregators/</feedburner:origLink></item>
		<item>
		<title>SecTor - Day 2</title>
		<link>http://feeds.feedburner.com/~r/computerdefense/~3/416061195/</link>
		<comments>http://www.computerdefense.org/2008/10/09/sector-day-2/#comments</comments>
		<pubDate>Thu, 09 Oct 2008 19:36:24 +0000</pubDate>
		<dc:creator>Tyler Reguly</dc:creator>
		
		<category><![CDATA[Conferences / Training Sessions]]></category>

		<category><![CDATA[Reviews]]></category>

		<category><![CDATA[Checkpoint]]></category>

		<category><![CDATA[Cisco]]></category>

		<category><![CDATA[ESX]]></category>

		<category><![CDATA[hoff]]></category>

		<category><![CDATA[Johnny Long]]></category>

		<category><![CDATA[MSRC]]></category>

		<category><![CDATA[sector]]></category>

		<category><![CDATA[Stepto]]></category>

		<guid isPermaLink="false">http://www.computerdefense.org/?p=555</guid>
		<description><![CDATA[I'll start of by saying the second day of SecTor was amazing compared to the first day. We started off with Stepto giving the opening keynote. While it wasn't anything groundbreaking, it was exactly as advertised and well presented. I fully enjoyed hearing him walk through how he got into security, his time with MSRC [...]]]></description>
			<content:encoded><![CDATA[<p>I'll start of by saying the second day of <a href="http://www.sector.ca">SecTor</a> was amazing compared to the first day. We started off with <a href="http://www.stepto.com/default.aspx">Stepto</a> giving the opening keynote. While it wasn't anything groundbreaking, it was exactly as advertised and well presented. I fully enjoyed hearing him walk through how he got into security, his time with MSRC and how things he'd learned working in security applied to other aspects of his life... it was great.</p>
<p>Following the keynote, I was torn between Pwning the Proxy and Lock picking. In the end personal interest won out and I attended the lock picking session. There was quite a bit of interest information shared and I managed to take a couple pages of notes. One of the coolest things was the how-to on making a combination lock shim using a piece of aluminum from a pop/beer can.</p>
<p>Following the lock picking session was lunch. The meal was much better than the day before. One thing that I didn't get was why so many tables were reserved and there was staff keeping people from sitting at them. The same thing existed on day 1 and the tables were never used, so why were they there are day 2?</p>
<p>Lunch was also great because <a href="http://johnny.ihackstuff.com/">Johnny Long</a> was the lunch keynote. If you've never seen Johnny speak... make every attempt you can to see him somewhere. He spoke with regards to his <a href="http://www.amazon.com/No-Tech-Hacking-Engineering-Dumpster/dp/1597492159">No Tech Hacking boo</a>k (proceeds of which go to <a href="http://www.hackersforcharity.org/">Charity</a>) and the presentation was quite amusing and a lot of fun to watch. He gave examples of information gathered by shoulder surfing, dumpster diving, etc. It essentially centered around the non-technical side of reconnaissance or pen-testing. The entire crowd spent the time laughing and fully enjoying themselves (or at least that's how it seemed).</p>
<p>After lunch I checked in on <a href="http://rationalsecurity.typepad.com/">Hoff's</a> virtualization talk. It actually had some interesting information and I was really glad that I'd attended it. I was unaware that there was a <a href="http://www.cisco.com/en/US/products/ps9902/index.html">Cisco vSwitch</a> for ESX but I really like the concept. It'll enable some very interesting things to happen.</p>
<p>I had planned on attending the talk on identifying crypto in code for the last session of the day, but a old coworker showed up and we spent the session catching up in the keynote room. Following that there was some brief conversation and the wrap-up (which including the awarding of prizes). I did note that a couple of the prizes weren't given away (Checkpoint wireless router/firewall for instance), so hopefully that wasn't just a scam to get business cards.</p>
<p>Then a small group of us (9 people I believe, both speakers and attendees) went out for all you can eat sushi, and a few drinks. I really enjoyed myself day 2 and really enjoyed the con as a whole, there were just some really bad experience on the first day.</p>
<p>I'm definitely looking forward to SecTor 2009!</p>

<p><a href="http://feeds.feedburner.com/~a/computerdefense?a=VQdJ63"><img src="http://feeds.feedburner.com/~a/computerdefense?i=VQdJ63" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/computerdefense?a=OxLvM"><img src="http://feeds.feedburner.com/~f/computerdefense?i=OxLvM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=wODTm"><img src="http://feeds.feedburner.com/~f/computerdefense?i=wODTm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=ZgMqM"><img src="http://feeds.feedburner.com/~f/computerdefense?i=ZgMqM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=XRoam"><img src="http://feeds.feedburner.com/~f/computerdefense?i=XRoam" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.computerdefense.org/2008/10/09/sector-day-2/feed/</wfw:commentRss>
		<feedburner:origLink>http://www.computerdefense.org/2008/10/09/sector-day-2/</feedburner:origLink></item>
		<item>
		<title>SecTor - Day 1</title>
		<link>http://feeds.feedburner.com/~r/computerdefense/~3/415376972/</link>
		<comments>http://www.computerdefense.org/2008/10/08/sector-day-1/#comments</comments>
		<pubDate>Thu, 09 Oct 2008 03:05:15 +0000</pubDate>
		<dc:creator>Tyler Reguly</dc:creator>
		
		<category><![CDATA[Conferences / Training Sessions]]></category>

		<category><![CDATA[Reviews]]></category>

		<category><![CDATA[cmlh]]></category>

		<category><![CDATA[david black]]></category>

		<category><![CDATA[Googless]]></category>

		<category><![CDATA[hd moore]]></category>

		<category><![CDATA[hoff]]></category>

		<category><![CDATA[jay beale]]></category>

		<category><![CDATA[microsoft]]></category>

		<category><![CDATA[middler]]></category>

		<category><![CDATA[raven]]></category>

		<category><![CDATA[rcmp]]></category>

		<category><![CDATA[sector]]></category>

		<guid isPermaLink="false">http://www.computerdefense.org/?p=551</guid>
		<description><![CDATA[I debated what to write here, and if I would present the positive or negative points but I figured the only fair way was to describe both, so without further ado, I present SecTor Day 1 - The Good, The Bad and the Ugly.
I figured I'd describe my day from start to fishing, instead of [...]]]></description>
			<content:encoded><![CDATA[<p>I debated what to write here, and if I would present the positive or negative points but I figured the only fair way was to describe both, so without further ado, I present SecTor Day 1 - The Good, The Bad and the Ugly.</p>
<p>I figured I'd describe my day from start to fishing, instead of breaking it up by what I did or didn't enjoy.  The day started off with breakfast at Cora's, a group of us met there only because this years SecTor schedule made no mention of a breakfast similar to the one provided last year. Of course, when we showed up, it turned out there was a provided breakfast... at least we know for tomorrow.</p>
<p>The initial keynote was done by the RCMP and I don't even know what to say. Last year's RCMP presentation was depressing (many people that I spoke to today said it was the worst part of last year, and there was a debate over which RCMP keynote was actually worse. This years was made worse by the fact that it was first thing in the morning. It was presented with little enthusiasm and I'll say it... it sucked.</p>
<p>When the RCMP speaks, you'd expect to learn something interesting, in fact a number of attendees mentioned that to me today. Yet nothing interesting was learned. I was eager for this talk (as I was eager for the keynote last year), I figured they had learned from last year and that this year the RCMP would do better. I took about a page of notes, but got nothing of interest. The names of a few councils (ITAC Cyber Security Forum and CBOC's Council on Security &amp; Tech) and learned that there was a Cyber Security Conference in Gatineau on Nov. 5 &amp; 6. That could have been a single slide, or better yet a hand-out. The rest was useless, this was evident by the people falling asleep and the <a href="https://twitter.com/daveoj/statuses/949648238">notes left on Twitter</a>.m</p>
<p>I was also rather offended by a closing remark that David Black made regarding them looking for trained University graduates. I attempted to open my notebook and write down his email address to contact him but unfortunately the slide was removed from the screen. If anyone wants to pass this along to him, it would be appreciated. [Begin Side Rant] I'm getting really tired of this biased hiring practice in many places that requires a University degree, it's a useless, archaic requirement (much like the requirement for various certifications [which we see more and more people dropping from job postings]).  Many of the really bright IT/IS people that I know have no formal education or a college education... it's a shame to see so many places discriminate... especially places like the government. I'd think that workplace equality would include method of education, and place the importance on actual skills and knowledge[End Side Rant].</p>
<p>Needless to say... KeyNote #1 was a fail.</p>
<p>Up next was the first session. None of the session interested me, so I decided to check out the lock picking village. I was in the hall by the vendor displays, so I visited each display on my way over, and failed to make it to the lock picking village before the first session was over. I did have some great conversations with the vendors that were present though. A big thank you to all of them for the sponsorship that they provide.</p>
<p>While there was nothing that caught my interest, I know people that attended both 'Double Trouble: SQL Rootkits and Encryption' and 'Network Security Stripped: From layered technologies to the bare essentials". I can say that I didn't hear negative reviews about either presentation. In fact most people liked what they saw, and those that didn't like it were fairly neutral in their comments.</p>
<p>Lunch and a Panel Discussion were up next. The lunch was Monday's left overs... my chicken fell off the plate and bounced; there was Twitter discussion around having a <a href="https://twitter.com/gattaca/statuses/949898645">chicken bouncing competition</a>. Yet that was almost the highlight of the lunch. The real saving grace on the panel was <a href="http://rationalsecurity.typepad.com/">Hoff</a>. I understand why everyone was up there; a number of them were sponsors and probably wanted to say their piece, but still... We basically had 8-minute, extremely dry lightning talks. A panel usually involves some sort of discussion or interaction, they was basically everyone bragging about themselves and drew <a href="https://twitter.com/gattaca/statuses/949901756">quite</a> a <a href="https://twitter.com/myrcurial/statuses/949875068">bit</a> of <a href="https://twitter.com/myrcurial/statuses/949883009">twitter</a> traffic</p>
<p>Following lunch, we had what I would call worst organizational decision made by the organizers. They did fairly well this year... there is some good content (you just have to dig to find it -- My favourite part of today was hearing (a couple of times), 'the talk that you submitted would have been much better than this'), the swag was cool, a lot of people had positive comments about the notebooks and the bags and there's an increased social aspect. The mistake however, was a really bad one... it was the mistake of placing the bulk of the good speakers in competing time slots. This happened today by having HD Moore, Jay Beale and Raven in the same time slot. Those are three talks I would have gladly gone to see, and I had to pick one. From what I hear this happens tomorrow as well. I'm really looking forward to Hoff's talk, however I've been told that James Arlen is quite the impressive presenter as well.</p>
<p>In the end I decided to go with Jay Beale's discussion of the concepts behind his new tool, 'The Middler'. It was everything that a tool presentation should be. The tool wasn't shown or mentioned... the concepts and techniques were discussed. Not only did the presentation have some interesting information (I filled three pages in my notebook) but Jay did an amazing job with his presentation. This presentation alone made up for the lackluster performances up to that point (although I was quite disappointed about the stacking of the time slot).</p>
<p>To briefly go back to the time slot, I believe the concept that was tried was to put the big speakers up against each other and then everyone else was grouped together, this was to ensure a somewhat even distribution of attendees and to avoid empty rooms. My feeling on this... if the persons presentation runs the risk of an empty room, regardless of what they are up against... don't accept the presentation. I'll stop ranting on this now... it's done and unfortunately it can't be fixed.</p>
<p>For the next time slot, I decided on attending Googless. I was excited... it seemed really relevant to some of the work that I do. I don't even want to talk about this presentation... the slide show background was disturbing, and Christian had no life to him, as well he asked for donations on like the third slide (also the first time I've seen a license on a presentation) and informed us that would have to wait until December to see obtain the slide deck. I guess Christian <a href="https://twitter.com/cmlh/statuses/950211868">thought</a> that this was the most popular presentation at SecTor... judging by how many of us walked out during the presentation, I really doubt that. It wasn't good.</p>
<p>I spent the last portion of that presentation speaking with colleagues before the rooms emptied out and the last series of sessions were to begin. I had originally intended to see the RFID presentation, however I managed to catch up with Jay Beale to further discuss the Middler as I was rather intrigued. So we were able to sit and discuss it for a short period of time. A few more people joined us and we moved to the keynote room for discussion and to await alcohol. This once again was an amazing opportunity to network with people, and proved to be more useful than attending the talks (or so I <a href="https://twitter.com/daveoj/statuses/950184206">read</a> (and heard)). I once again have to say kudos to the organizers for this... Anything that lets you get together with other people to basically 'talk shop' is a great thing and many opportunities were presented.</p>
<p>During the Microsoft sponsored reception our table grew and we had a lot of fun. Then speakers departed and the bar closed, and unfortunately I wasn't able to make it to the party, however the day still had a number of high points. I realize this may seem like a griped a lot, but given that this was year two, I had higher expectations than last year and I'm not sure those expectations were fully met... but as I said, I did enjoy quite a bit of it. Tomorrow is another day, and there are a number of time slots where I'm interested in more than one presenter, so we'll see how it goes.</p>

<p><a href="http://feeds.feedburner.com/~a/computerdefense?a=DIIhGO"><img src="http://feeds.feedburner.com/~a/computerdefense?i=DIIhGO" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/computerdefense?a=8vVMM"><img src="http://feeds.feedburner.com/~f/computerdefense?i=8vVMM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=NChum"><img src="http://feeds.feedburner.com/~f/computerdefense?i=NChum" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=fOMqM"><img src="http://feeds.feedburner.com/~f/computerdefense?i=fOMqM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=06Nlm"><img src="http://feeds.feedburner.com/~f/computerdefense?i=06Nlm" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.computerdefense.org/2008/10/08/sector-day-1/feed/</wfw:commentRss>
		<feedburner:origLink>http://www.computerdefense.org/2008/10/08/sector-day-1/</feedburner:origLink></item>
		<item>
		<title>SecTor - Training</title>
		<link>http://feeds.feedburner.com/~r/computerdefense/~3/414455830/</link>
		<comments>http://www.computerdefense.org/2008/10/08/sector-training/#comments</comments>
		<pubDate>Wed, 08 Oct 2008 04:16:33 +0000</pubDate>
		<dc:creator>Tyler Reguly</dc:creator>
		
		<category><![CDATA[Conferences / Training Sessions]]></category>

		<category><![CDATA[Reviews]]></category>

		<category><![CDATA[hd moore]]></category>

		<category><![CDATA[metasploit]]></category>

		<category><![CDATA[sector]]></category>

		<category><![CDATA[training]]></category>

		<guid isPermaLink="false">http://www.computerdefense.org/?p=549</guid>
		<description><![CDATA[So I was lucky enough to be able to take part in SecTor training this week (as I previously mentioned). I spent all day Monday in HD Moore's Metasploit training.
Having been been an avid metasploit user for quite some time, I was hoping that the training would include some features that were unknown to me.  [...]]]></description>
			<content:encoded><![CDATA[<p>So I was lucky enough to be able to take part in <a href="http://www.sector.ca">SecTor</a> training this week (as I previously mentioned). I spent all day Monday in HD Moore's Metasploit training.</p>
<p>Having been been an avid metasploit user for quite some time, I was hoping that the training would include some features that were unknown to me.  I definitely wasn't disappointed.</p>
<p>The initial portion of the training was fairly straight forward and included writing a basic auxiliary module and a plugin. The basics of Metasploit use were also covered.</p>
<p>This occupied roughly half the day, at which point we had lunch... the food wasn't great but it also wasn't awful. Then we were right back into the training.</p>
<p>Over the course of the afternoon we covered meterpreter, NTLM (smb_relay, and some others), Wireless and IPv6. A number of new and interesting things were covered and I really enjoyed the afternoon.</p>
<p>Following the training, myself and a colleague who also attended to the training met up with HD and a few other speakers and attendees to grab dinner. This was the sort of thing that I really enjoy about the cons, sitting around the table with a few beer talking shop. While I enjoy the talks, a lot of the time there's nothing overly new and it's when you're chilling and chatting that you really get a chance to discuss the interesting things.</p>
<p>At the end of the day, the training was definitely worth it. The only real shame (although a bonus for those of us attending) was that the training room was so empty... We had ~11 people. My worry is that SecTor won't be able to get decent trainers next year unless they can increase the attendance numbers.</p>
<p>Stayed tuned for another post on SecTor - Day 1... (which will eventually be followed by SecTor - Day 2).</p>

<p><a href="http://feeds.feedburner.com/~a/computerdefense?a=eZ2cNB"><img src="http://feeds.feedburner.com/~a/computerdefense?i=eZ2cNB" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/computerdefense?a=uEENM"><img src="http://feeds.feedburner.com/~f/computerdefense?i=uEENM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=YJFXm"><img src="http://feeds.feedburner.com/~f/computerdefense?i=YJFXm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=TbI4M"><img src="http://feeds.feedburner.com/~f/computerdefense?i=TbI4M" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=b0LEm"><img src="http://feeds.feedburner.com/~f/computerdefense?i=b0LEm" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.computerdefense.org/2008/10/08/sector-training/feed/</wfw:commentRss>
		<feedburner:origLink>http://www.computerdefense.org/2008/10/08/sector-training/</feedburner:origLink></item>
		<item>
		<title>SecTor Goodies</title>
		<link>http://feeds.feedburner.com/~r/computerdefense/~3/413503499/</link>
		<comments>http://www.computerdefense.org/2008/10/07/sector-goodies/#comments</comments>
		<pubDate>Tue, 07 Oct 2008 05:53:46 +0000</pubDate>
		<dc:creator>Tyler Reguly</dc:creator>
		
		<category><![CDATA[Conferences / Training Sessions]]></category>

		<category><![CDATA[IT]]></category>

		<category><![CDATA[Reviews]]></category>

		<category><![CDATA[Security]]></category>

		<category><![CDATA[sector]]></category>

		<guid isPermaLink="false">http://www.computerdefense.org/?p=545</guid>
		<description><![CDATA[So I spent today in training @ SecTor. I attending HD Moore's metasploit training and rather enjoyed myself... I picked up a couple of things that I'd been previously unaware of.  Since I was already onsite, I took advantage of the open registration booth and picked up my SecTor goodies.
Instead of the cooler bag (last [...]]]></description>
			<content:encoded><![CDATA[<p>So I spent today in training @ <a href="http://www.sector.ca">SecTor</a>. I attending HD Moore's metasploit training and rather enjoyed myself... I picked up a couple of things that I'd been previously unaware of.  Since I was already onsite, I took advantage of the open registration booth and picked up my SecTor goodies.</p>
<p>Instead of the cooler bag (last years very cool SecTor registration goodie), there's a rather nice tote with the SecTor logo on it. Inside the bag was the usual advertising literature, a nice Leed's notebook with a metal (I think) cover, with the SecTor logo, and a pen and BlackBerry screen cleaner.</p>
<p>The badges are quite nice... given that the program includes a picture of the DefCon badge, I imagine they were trying to go with something along those lines. Rather than the hard plastic, "corners will cut you when you attempt to touch it" badge of last year, the badge this year is rather cool. There's a usb cable enclosed on the back of the badge and when you connect it, you find that it's a 1GB storage device. Definitely a step up.</p>
<p>I took pictures to attach, but I'm getting an error, so I won't be uploading them tonight... I'll try again tomorrow.</p>
<p>Now given that it's 2AM and I'm meeting people for breakfast in 5.5 hours, I should probably grab some sleep... but on that note... The program this year doesn't mention a breakfast, so some of us are meeting at Cora's on Spadina (not far from the MTCC) at 7:30 if anyone happens to read this between now and then and wants to join us.</p>

<p><a href="http://feeds.feedburner.com/~a/computerdefense?a=NJhk3M"><img src="http://feeds.feedburner.com/~a/computerdefense?i=NJhk3M" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/computerdefense?a=Hyi0M"><img src="http://feeds.feedburner.com/~f/computerdefense?i=Hyi0M" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=Cl23m"><img src="http://feeds.feedburner.com/~f/computerdefense?i=Cl23m" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=O97gM"><img src="http://feeds.feedburner.com/~f/computerdefense?i=O97gM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=y3iLm"><img src="http://feeds.feedburner.com/~f/computerdefense?i=y3iLm" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.computerdefense.org/2008/10/07/sector-goodies/feed/</wfw:commentRss>
		<feedburner:origLink>http://www.computerdefense.org/2008/10/07/sector-goodies/</feedburner:origLink></item>
		<item>
		<title>Python 2.6 Released</title>
		<link>http://feeds.feedburner.com/~r/computerdefense/~3/408966708/</link>
		<comments>http://www.computerdefense.org/2008/10/02/python-26-released/#comments</comments>
		<pubDate>Thu, 02 Oct 2008 05:58:10 +0000</pubDate>
		<dc:creator>Tyler Reguly</dc:creator>
		
		<category><![CDATA[IT]]></category>

		<category><![CDATA[Python]]></category>

		<guid isPermaLink="false">http://www.computerdefense.org/?p=543</guid>
		<description><![CDATA[I haven't been blogging much lately (hopefully that will change shortly). However, I wanted to make sure I mentioned this. Python 2.6 has been released. What's new in Python 2.6 can be found here.
]]></description>
			<content:encoded><![CDATA[<p>I haven't been blogging much lately (hopefully that will change shortly). However, I wanted to make sure I mentioned this. Python 2.6 has been <a href="http://www.python.org/download/releases/2.6/">released</a>. What's new in Python 2.6 can be found <a href="http://docs.python.org/dev/whatsnew/2.6.html">here</a>.</p>

<p><a href="http://feeds.feedburner.com/~a/computerdefense?a=KAADVn"><img src="http://feeds.feedburner.com/~a/computerdefense?i=KAADVn" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/computerdefense?a=HaM2M"><img src="http://feeds.feedburner.com/~f/computerdefense?i=HaM2M" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=nrhJm"><img src="http://feeds.feedburner.com/~f/computerdefense?i=nrhJm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=YE0sM"><img src="http://feeds.feedburner.com/~f/computerdefense?i=YE0sM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/computerdefense?a=K5Ogm"><img src="http://feeds.feedburner.com/~f/computerdefense?i=K5Ogm" border="0"></img></a>
</div>]]></content:encoded>
			<wfw:commentRss>http://www.computerdefense.org/2008/10/02/python-26-released/feed/</wfw:commentRss>
		<feedburner:origLink>http://www.computerdefense.org/2008/10/02/python-26-released/</feedburner:origLink></item>
	</channel>
</rss>
