<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: builders]]></title>
    <link>http://securityratty.com/tag/builders</link>
    <description></description>
    <pubDate>Sun, 13 Apr 2008 12:06:19 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Web services talk at OWASP]]></title>
      <link>http://securityratty.com/article/6137f8e4cc033bf825ba725790030679</link>
      <guid>http://securityratty.com/article/6137f8e4cc033bf825ba725790030679</guid>
      <description><![CDATA[The video from my OWASP AppSec Conference talk on OWASP Top Ten for Web services is online here

OWASP is consistently the most interesting and practical security conference, its probably the closest...]]></description>
      <content:encoded><![CDATA[<p>The video from my OWASP AppSec Conference talk on OWASP Top Ten for &#0160;Web services &#0160;is online <a href="http://video.google.com/videoplay?docid=-7008552133222293089&amp;ei=WNPzSPLIAon0-wH7iujiDg&amp;q=owasp.tv">here</a>.</p><br /><div>OWASP is consistently the most interesting and practical security conference, its probably the closest thing we have to a true software security conference. Sure, we could use a few more <a href="http://1raindrop.typepad.com/1_raindrop/2008/09/mark-curphey-on-builders-and-breakers.html">builders</a>, but I still think its the best we have right now.</div>]]></content:encoded>
      <pubDate>Mon, 13 Oct 2008 14:14:40 +0000</pubDate>
      <category domain="http://securityratty.com/tag/owasp">owasp</category>
      <category domain="http://securityratty.com/tag/web services">web services</category>
      <category domain="http://securityratty.com/tag/practical security conference">practical security conference</category>
      <category domain="http://securityratty.com/tag/owasp top">owasp top</category>
      <category domain="http://securityratty.com/tag/video">video</category>
      <category domain="http://securityratty.com/tag/builders">builders</category>
      <category domain="http://securityratty.com/tag/online">online</category>
      <category domain="http://securityratty.com/tag/consistently">consistently</category>
      <source url="http://1raindrop.typepad.com/1_raindrop/2008/10/web-services-talk-at-owasp.html">Web services talk at OWASP</source>
    </item>
    <item>
      <title><![CDATA[Fake Windows XP Activation Trojan Wants Your CVV2 Code]]></title>
      <link>http://securityratty.com/article/fac8ba92dd4114941015e75bba3149c4</link>
      <guid>http://securityratty.com/article/fac8ba92dd4114941015e75bba3149c4</guid>
      <description><![CDATA[In a self-contradicting social engineering attempt, a malware author is offering to sale a ( updated version of Kardphisher) DIY fake Windows XP activation builder, which despite the fact that it...]]></description>
      <content:encoded><![CDATA[<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://3.bp.blogspot.com/_wICHhTiQmrA/SOqbO7J3tvI/AAAAAAAACPg/YNDy4vo817c/s1600-h/fake_windows_xp_activation1.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://3.bp.blogspot.com/_wICHhTiQmrA/SOqbO7J3tvI/AAAAAAAACPg/BYpcW4rkU0o/s200-R/fake_windows_xp_activation1.png" /></a>In a self-contradicting social engineering attempt, a malware author is offering to sale a (<a href="http://www.symantec.com/security_response/writeup.jsp?docid=2007-042705-0108-99">updated version</a> of Kardphisher) DIY fake Windows XP activation builder, which despite the fact that it claims "<i>We will ask for your billing details, but your credit card will NOT be charged</i>", is requesting and remotely uploading all the credit card details required for a successfully credit card theft.<br />
<br />
Perhaps among the main reasons why such simplistic social engineering attempts never scaled in a "malicious economies of scale" approach, is because sophisticated crimeware kits capable of obtaining the very same data automatically, started leaking for everyone to start taking advantage of - including yesterday's cybercriminals using such DIY fake message builders. <br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div>Moreover, according to <a href="http://news.ncsu.edu/news/2008/09/wmswogalterfakemessage.php">recently reseased survey results</a>, end users cannot distinguish between fake popups and real ones, and on their way to continue doing what they were doing, click OK on that pesky warning message telling them that they're about to get infected with malware. Taking into consideration the fact that the popup windows the researchers used look like cheap creative compared to the average fake security software's layout high quality GUIs, it is perhaps worth restating your research questions with something in the lines of - <b>What motivates end users to install an antivirus application going under the name of Super Antivirus 2009 or Mega Virus Cleaner 2008?</b> The fact that the fake status bar is telling them that they're infected with 47 spyware cookies, or the fact that they ended up at the fake site while browsing their trusted web services? <br />
<br />
<a href="http://1.bp.blogspot.com/_wICHhTiQmrA/SOqf_xbxL7I/AAAAAAAACPo/6uvXj2AuS_A/s1600-h/fake_windows_xp_activation2.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://1.bp.blogspot.com/_wICHhTiQmrA/SOqf_xbxL7I/AAAAAAAACPo/fa1jUBjFGOU/s200-R/fake_windows_xp_activation2.png" /></a>The increase of <a href="http://ddanchev.blogspot.com/2008/09/diverse-portfolio-of-fake-security_30.html">rogue security software domains</a> is happening due to the high payout affiliation based model, the standardized creative allowing the participants to come up with their own fake names if they want to, and due to the fact that the fake security threats scareware approach seems to be perfectly taking advantage of the overall suspicion on the effectiveness of their legitimate security software.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=mw30M"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=mw30M" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=WJFzM"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=WJFzM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=jNfpm"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=jNfpm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=9lodm"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=9lodm" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=6go3M"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=6go3M" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=TLsPM"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=TLsPM" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=JuYBm"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=JuYBm" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/413264124" height="1" width="1"/>]]></content:encoded>
      <pubDate>Mon, 06 Oct 2008 15:01:01 +0000</pubDate>
      <category domain="http://securityratty.com/tag/credit card details">credit card details</category>
      <category domain="http://securityratty.com/tag/credit card">credit card</category>
      <category domain="http://securityratty.com/tag/credit card theft">credit card theft</category>
      <category domain="http://securityratty.com/tag/details">details</category>
      <category domain="http://securityratty.com/tag/malware">malware</category>
      <category domain="http://securityratty.com/tag/malware author">malware author</category>
      <category domain="http://securityratty.com/tag/social">social</category>
      <category domain="http://securityratty.com/tag/mega virus cleaner">mega virus cleaner</category>
      <category domain="http://securityratty.com/tag/creative">creative</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/413264124/fake-windows-xp-activation-trojan-wants.html">Fake Windows XP Activation Trojan Wants Your CVV2 Code</source>
    </item>
    <item>
      <title><![CDATA[Mark Curphey On Builders and Breakers]]></title>
      <link>http://securityratty.com/article/207400daa5782f9a7cfce814ad45404e</link>
      <guid>http://securityratty.com/article/207400daa5782f9a7cfce814ad45404e</guid>
      <description><![CDATA[Superb post by Mark on what I think is the biggest problem we have in security. One thing you learn in consulting is that no matter what anyone tells you when you start a project about what problem...]]></description>
      <content:encoded><![CDATA[<p>Superb <a href="http://securitybuddha.com/2008/09/10/are-you-a-builder-or-a-breaker/">post</a> by Mark on what I think is the biggest problem we have in security. One thing you learn in consulting is that no matter what anyone tells you when you start a project about what problem you are trying to solve, it is <span style="font-style: italic;">always</span> a people problem. The single biggest problem in security is too many breakers not enough builders. Please understand I am not saying that breakers are not useful, we need them, and we need them to continue to get better so we can build more resilient systems. But the industry is about 90% breaking and 10% building and thats plain bad.</p><br /><blockquote class="webkit-indent-blockquote" style="margin: 0 0 0 40px; border: none; padding: 0px;"><p><span style="font-family: Georgia; line-height: 19px; ">It’s still predominantly made up of an army of skilled hackers focused on better ways to break systems apart and find new ways to exploit vulnerabilities than “security architects” who are designing secure components, protocols and ultimately secure systems. If you don’t believe me go have a conversation with a&#160; so called application security&#160; consultant about SAML or security issues in Enterprise Message Buses and you’ll almost definitely draw blank stares. Ask application security consultants if they know about the latest HTTP or HTML spec and they’ll likely say yes (and want to demonstrate the latest issues) but if you ask them about the latest WS-x spec you’ll likely draw more blank stares.&#160; When was the last time you saw an attack drawn out as a UML sequence diagram? This is worrying and somewhat sad. I don’t think we are culturing, encouraging and nurturing people with the right skills to make a positive difference.&#160;</span></p></blockquote><br /><div>This is exactly my experience as well. Not only that, we have too much destruction and not enough construction, this is a big enough problem all by itself. I would go one step further and say we need creative destruction, breakers breaking things that lead to better systems over time. Maybe we need an OWASP Builders project?</div><br /><div>In any case, for my small part I am builder. I teach a <a href="http://arctecgroup.net/training.htm">class</a> (and will at <a href="http://www.owasp.org/index.php/OWASP_NYC_AppSec_2008_Conference">OWASP</a>) that is 100% focused on building secure Web services, identity management, distribut authN, authZ, message security and so on. I can tell you first hand there are not a lot of people approaching the problem from a builder mindset.&#160;</div>]]></content:encoded>
      <pubDate>Fri, 19 Sep 2008 08:02:10 +0000</pubDate>
      <category domain="http://securityratty.com/tag/issues">issues</category>
      <category domain="http://securityratty.com/tag/security issues">security issues</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/application security consultants">application security consultants</category>
      <category domain="http://securityratty.com/tag/message security">message security</category>
      <category domain="http://securityratty.com/tag/builders">builders</category>
      <category domain="http://securityratty.com/tag/systems">systems</category>
      <category domain="http://securityratty.com/tag/security architects">security architects</category>
      <category domain="http://securityratty.com/tag/resilient systems">resilient systems</category>
      <source url="http://1raindrop.typepad.com/1_raindrop/2008/09/mark-curphey-on-builders-and-breakers.html">Mark Curphey On Builders and Breakers</source>
    </item>
    <item>
      <title><![CDATA[The Commoditization of Anti Debugging Features in RATs]]></title>
      <link>http://securityratty.com/article/d357b72fd1cde8f737f42b6043955d6b</link>
      <guid>http://securityratty.com/article/d357b72fd1cde8f737f42b6043955d6b</guid>
      <description><![CDATA[Is it a Remote Administration Tool (RAT) or is it malware ? That's the rhetorical question , since RATs are not supposed to have built-in Virustotal submission for the newly generated server,...]]></description>
      <content:encoded><![CDATA[<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://3.bp.blogspot.com/_wICHhTiQmrA/SL1nh-1oqdI/AAAAAAAACJc/FJtmUCHs730/s1600-h/anti_debugging_rat_malware.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://3.bp.blogspot.com/_wICHhTiQmrA/SL1nh-1oqdI/AAAAAAAACJc/m8B4yux3_5I/s200-R/anti_debugging_rat_malware.png" /></a>Is it a <a href="http://ddanchev.blogspot.com/2007/07/shark2-rat-or-malware.html">Remote Administration Tool</a> (RAT) or is it <a href="http://ddanchev.blogspot.com/2007/08/rats-or-malware.html">malware</a>? That's the <a href="http://ddanchev.blogspot.com/2007/08/shark-2-diy-malware.html">rhetorical question</a>, since <a href="http://ddanchev.blogspot.com/2007/12/shark-malware-new-versions-coming.html">RATs are not supposed</a> to have built-in Virustotal submission for the newly generated server, antivirus software "killing" and <a href="http://ddanchev.blogspot.com/2007/10/multiple-firewalls-bypassing.html">firewall bypassing capabilities</a>.<br />
<br />
Taking a peek into some of commodity features aiming to make it harder to analyze the malware found in pretty much all the average DIY malware builders available at the disposal at the average script kiddies, one of the latest releases pitched as RAT while it's malware clearly indicates the commoditization and availability of such modules :<br />
<br />
" <i>- FWB (DLL Injection, The DLL is Never Written to Disk)<br />
&nbsp;- Decent Strong Traffic Encryption<br />
&nbsp;- Try to Unhook UserMode APIs<br />
&nbsp;- No Plugins/3rd Party Applications<br />
&nbsp;- 4 Startup Methods (Shell, Policies, ActiveX, UserInIt)<br />
&nbsp;- Set Maximum Connections<br />
&nbsp;- Built In File Binder<br />
&nbsp;- Multi Threaded Transfers<br />
&nbsp;- Anti Debugging (Anti VMware, Anti Sandboxie, Anti Norman Sandbox, Anti VirtualPC, Anti Anubis Sandbox, Anti CW Sandbox)</i>"<br />
<br />
<div style="text-align: left;"></div><div class="separator" style="clear: both; text-align: center;"></div><a href="http://1.bp.blogspot.com/_wICHhTiQmrA/SL6CyJQUdnI/AAAAAAAACJk/b4Erkx13fpg/s1600-h/anti_debugging_rat_malware_stats.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"><img border="0" src="http://1.bp.blogspot.com/_wICHhTiQmrA/SL6CyJQUdnI/AAAAAAAACJk/Lum7M48FdSQ/s200-R/anti_debugging_rat_malware_stats.png" /></a>Malware coders or "malware modulators"? With the currently emerging <a href="http://ddanchev.blogspot.com/2007/08/malware-as-web-service.html">malware as a web service</a> toolkits porting common malware tools to the web, drag and drop web interfaces for malware building are <a href="http://ddanchev.blogspot.com/2008/07/coding-spyware-and-malware-for-hire.html">definitely in the works</a>.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=2qWlBL"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=2qWlBL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=BQjJaL"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=BQjJaL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=6b1sjl"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=6b1sjl" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=CVEqWl"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=CVEqWl" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=BzubfL"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=BzubfL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=7ZXFYL"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=7ZXFYL" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=LhD8dl"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=LhD8dl" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/382311481" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 03 Sep 2008 03:46:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/anti">anti</category>
      <category domain="http://securityratty.com/tag/anti vmware">anti vmware</category>
      <category domain="http://securityratty.com/tag/anti norman sandbox">anti norman sandbox</category>
      <category domain="http://securityratty.com/tag/common malware tools">common malware tools</category>
      <category domain="http://securityratty.com/tag/malware">malware</category>
      <category domain="http://securityratty.com/tag/anti virtualpc">anti virtualpc</category>
      <category domain="http://securityratty.com/tag/malware coders">malware coders</category>
      <category domain="http://securityratty.com/tag/anti anubis sandbox">anti anubis sandbox</category>
      <category domain="http://securityratty.com/tag/malware modulators">malware modulators</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/382311481/commoditization-of-anti-debugging.html">The Commoditization of Anti Debugging Features in RATs</source>
    </item>
    <item>
      <title><![CDATA[Thieves Target Homeowners and Builders]]></title>
      <link>http://securityratty.com/article/67d7747ad19221ce58f6109953ee7bee</link>
      <guid>http://securityratty.com/article/67d7747ad19221ce58f6109953ee7bee</guid>
      <description><![CDATA[We have written about thefts of copper wire and even street manhole covers in the past. It appears that new homes and those being foreclosed upon are ripe targets for unscrupulous thieves

Thankfully,...]]></description>
      <content:encoded><![CDATA[We have written about thefts of copper wire and even street manhole covers in the past.  It appears that <a href="http://www.nytimes.com/2008/08/28/garden/28theft.html?_r=1&oref=slogin">new homes and those being foreclosed upon </a>are ripe targets for unscrupulous thieves.  <br /><span id="fullpost"><br />Thankfully, there are many more solutions than in days past.  Global Positioning Systems can now be hidden in materials and the thieves can be tracked in real time and the Police notified by the security consultant who has been hired to monitor their movements.<br /><br />The highlighted link from "The New York Times", tells the sad story of a young couple and their 7 month old child who had to live onsite at their new house for many months in order to deter thieves.<br /><br />We have spoken with home builders in the past regarding supplying security officers to monitor unfinished homes.  One of the hurdles has been the cost of security. The escalating cost of these thefts may now make Home Builders think twice though.  <br /><br />The National Association of Home Builders claims that $5 BILLION a year is being stolen nationally by theives from homes under construction.  That would purchase a lot of security services.  Not to mention the cost of labor to replace that missing copper wire, plumbing fittings, doors & windows, etc. <br /><br />Like we always say, thieves are opportunists.  If you give them an opportunity such as leaving valuable building supplies unprotected, they will take them.  On the other hand, if you put an obstacle in their path such as a site that is monitored by security cameras (with somebody on the other end of the camera - you'd be surprised how many businesses put in cameras but have nobody to monitor them)or a roving security vehicle, they will move along and ply their trade elsewhere.<br /><br />That is called "target hardening".  Quite literally, you make yourself (or your property) a harder, more difficult target.  They then move along to some other target.  Bad for someone else, but good for you.     <br /></span><div class="blogger-post-footer">Visit Sexton Executive Security at www.sextonsecurity.com</div>]]></content:encoded>
      <pubDate>Fri, 29 Aug 2008 15:51:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/thieves">thieves</category>
      <category domain="http://securityratty.com/tag/security cameras">security cameras</category>
      <category domain="http://securityratty.com/tag/security vehicle">security vehicle</category>
      <category domain="http://securityratty.com/tag/target">target</category>
      <category domain="http://securityratty.com/tag/security consultant">security consultant</category>
      <category domain="http://securityratty.com/tag/home builders">home builders</category>
      <category domain="http://securityratty.com/tag/home builders claims">home builders claims</category>
      <category domain="http://securityratty.com/tag/deter thieves">deter thieves</category>
      <source url="http://www.thebulletproofblog.com/2008/08/thieves-target-homeowners-and-builders.html">Thieves Target Homeowners and Builders</source>
    </item>
    <item>
      <title><![CDATA[Yet Another DIY Proprietary Malware Builder]]></title>
      <link>http://securityratty.com/article/54b401f56e85754f2ca1eb376de06068</link>
      <guid>http://securityratty.com/article/54b401f56e85754f2ca1eb376de06068</guid>
      <description><![CDATA[Following the most recent proprietary web malware exploitation kits, and DIY malware tools found in the wild , this is among the latest malware builders with a special emphasis on spreading from PCs...]]></description>
      <content:encoded><![CDATA[<a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://bp3.blogger.com/_wICHhTiQmrA/SDQp2ntDXFI/AAAAAAAABuw/7wJqM8Xt9uU/s1600-h/proprietary_malware_builder1.JPG"><img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://bp3.blogger.com/_wICHhTiQmrA/SDQp2ntDXFI/AAAAAAAABuw/7wJqM8Xt9uU/s200/proprietary_malware_builder1.JPG" alt="" id="BLOGGER_PHOTO_ID_5202829487867386962" border="0" /></a>Following <a href="http://ddanchev.blogspot.com/2008/05/small-pack-web-malware-exploitation-kit.html">the most recent</a> proprietary <a href="http://ddanchev.blogspot.com/2008/04/diy-exploit-embedding-tool-proprietary.html">web malware</a> exploitation kits, and <a href="http://ddanchev.blogspot.com/2008/04/firepack-exploitation-kit-part-two.html">DIY malware</a> tools <a href="http://ddanchev.blogspot.com/2008/04/skype-spamming-tool-in-wild.html">found in the wild</a>, this is among the latest malware builders with a special emphasis on spreading from PCs to USB mass storage devices, and from USB mass storage devices to PCs. On 2008/04/28 when a sample generated binary was checked with multiple antivirus scanners, the detection was 2/32 with Panda Security and F-Secure detecting it, according to the seller of the builder.<br /><br />For the time being, malware authors continue emphasizing on the product concept, namely they build a malware based on their perception of what a malware should constitute of, then start offering it for sale as well as it's source code. In the long-term however, based on the increasing number of malware and spyware coding on demand, malware authors would undoubtedly embrace the customerization concept and start putting more efforts into figuring out what the customer really want compared to their current "built it, price, advertise it" and they'll come mentality.<br /><br />Moreover, despite the <a href="http://arstechnica.com/news.ars/post/20080428-malware-authors-turn-to-eulas-to-protect-their-work.html">generated buzz</a> over <a href="http://ddanchev.blogspot.com/2008/04/crimeware-in-middle-zeus.html">the Zeus banker malware</a> and its copyright notice, Zeus remains publicly available, and so is its source code, <a href="http://ddanchev.blogspot.com/2007/09/custom-ddos-capabilities-within-malware.html">placing it</a> under the <a href="http://ddanchev.blogspot.com/2007/09/localizing-open-source-malware.html">open-source malware</a> segment. So emphasizing on how malware authors are trying to protect their work is exactly what's not happening right now. Releasing it in open-source form increases its life cycle, and both, the original authors, and the community build around the malware benefit from the new features introduced within.<br /><br />And now that the most popular web malware exploitation kits are already localized to Chinese due to their open-source nature, making it harder to maintain a decent situational awareness on the new features introduced courtesy of third-party coders, we may that easily see Zeus localized to Chinese as well. It's a trend, not a fad.<div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=EmElVH"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=EmElVH" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=Vf0M9H"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=Vf0M9H" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=noxwZh"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=noxwZh" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=pLg6Vh"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=pLg6Vh" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=avsFaH"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=avsFaH" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=8fklJH"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=8fklJH" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=kHIl3h"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=kHIl3h" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/295075867" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 21 May 2008 05:18:09 +0000</pubDate>
      <category domain="http://securityratty.com/tag/malware">malware</category>
      <category domain="http://securityratty.com/tag/malware authors">malware authors</category>
      <category domain="http://securityratty.com/tag/malware authors continue">malware authors continue</category>
      <category domain="http://securityratty.com/tag/malware benefit">malware benefit</category>
      <category domain="http://securityratty.com/tag/open-source malware segment">open-source malware segment</category>
      <category domain="http://securityratty.com/tag/malware based">malware based</category>
      <category domain="http://securityratty.com/tag/diy malware tools">diy malware tools</category>
      <category domain="http://securityratty.com/tag/zeus remains publicly">zeus remains publicly</category>
      <category domain="http://securityratty.com/tag/zeus">zeus</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/295075867/yet-another-diy-proprietary-malware.html">Yet Another DIY Proprietary Malware Builder</source>
    </item>
    <item>
      <title><![CDATA[Three Essays on Muni-Fi You Should Read]]></title>
      <link>http://securityratty.com/article/45037ba4b3a574e07b9a0a98bfb0b3cc</link>
      <guid>http://securityratty.com/article/45037ba4b3a574e07b9a0a98bfb0b3cc</guid>
      <description><![CDATA[In the aftermath of the last man standing, MetroFi, announcing its metro-scale Wi-Fi endgame, three useful essays have appeared: If you're trying to understand the past, present, and future of the...]]></description>
      <content:encoded><![CDATA[<p><img src="http://wifinetnews.com/images/muni_icon.jpg" align="right" border="0" hspace="5" />In the aftermath of the last man standing, MetroFi, announcing its metro-scale Wi-Fi endgame, three useful essays have appeared: If you're trying to understand the past, present, and future of the space, I recommend you read these short opinion pieces.</p>

<p>First, Karl Edwards of Excelsio, a firm that consults on municipal broadband, <a href="http://www.muniwireless.com/2008/05/20/what-went-wrong-with-muni-wi-fi-what-cities-can-do-now/"><strong>lays out a pretty straight case</strong></a> as to why EarthLink, Kite, and MetroFi's networks, among other one-offs, were designed to fail. I've written about aspects of this over the last four years, but Edwards is succinct. In part, EarthLink offering to build Philadelphia's network at no cost to the city set the mold wrong for all networks to follow. We're resetting now, and Wi-Fi's moment may have passed. </p>

<p>Edwards offers as one the constraints set by cities, "Expectation that the network would cover 90-95% of the City with wireless coverage as opposed to just in the areas where there was a solid business case." This has been a problem I've had for a couple of years when it started to become clear that 90-plus percent coverage wasn't in the interest of the ISP--nor in the city's interest because these networks couldn't be completed.</p>

<p>Edwards also notes that when consulting for Grand Rapids, Mich., which chose Clearwire as its wireless partner, EarthLink told the city that they expected a conservative 22-percent uptake for their Wi-Fi service by end of the fourth year. Given that in mature markets, a high-single-digit uptake is considered very good, that's shows how the Excel spreadsheets were skewed. USI Wireless's estimates for break-even require less than 10 percent of the population in their covered areas to subscribe, and their numbers of subscribers to date are tracking that number closely.</p>

<p>He closes with a set of eight principles for wireless network builders to come to the table with and cities to adopt, all of which I agree with.</p>

<p>Next, <a href="http://www.muniwireless.com/2008/05/17/how-sf-and-other-cities-could-have-created-citywide-wi-fi-access-the-easy-way/"><strong>Esme Vos suggests a very modest proposal:</strong></a> San Francisco should have required all its cafes to offer free Wi-Fi, and then Fon or others could have aggregated and bundled access to these locations. There's a long set of comments accusing Esme of communism, socialism, utopianism, and other isms. The post and the comments make for lively reading.</p>

<p>Finally, Craig Plunkett, who operates hotspot networks around New York City and Long Island, chimes in with a summary of these opinions and the notion that <a href="http://www.cedx.com/2008/05/when-did-muniwi.html?cid=115472508#comment-115472508"><strong>muni-Fi jumped the shark</strong></a> when Ocean City, N.J., decided to put Wi-Fi in garbage cans. He points out that "an infill strategy" of providing service where needed and then extending from there is effective.</p>]]></content:encoded>
      <pubDate>Tue, 20 May 2008 08:50:08 +0000</pubDate>
      <category domain="http://securityratty.com/tag/ocean city">ocean city</category>
      <category domain="http://securityratty.com/tag/wi-fi">wi-fi</category>
      <category domain="http://securityratty.com/tag/wi-fi service">wi-fi service</category>
      <category domain="http://securityratty.com/tag/city">city</category>
      <category domain="http://securityratty.com/tag/york city">york city</category>
      <category domain="http://securityratty.com/tag/offer free wi-fi">offer free wi-fi</category>
      <category domain="http://securityratty.com/tag/percent">percent</category>
      <category domain="http://securityratty.com/tag/city set">city set</category>
      <category domain="http://securityratty.com/tag/90-plus percent coverage">90-plus percent coverage</category>
      <source url="http://wifinetnews.com/archives/008327.html">Three Essays on Muni-Fi You Should Read</source>
    </item>
    <item>
      <title><![CDATA[Wayport Tops 10,000 McDonald's Locations]]></title>
      <link>http://securityratty.com/article/f8771881a38c1fc7d001b68fa32359dc</link>
      <guid>http://securityratty.com/article/f8771881a38c1fc7d001b68fa32359dc</guid>
      <description><![CDATA[Ten thousand is an arbitrary place to put a stick in the sand, but significant nonetheless: The milestone of 10,000 McDonald's wired up--a few hundred have back access only, due to being stores within...]]></description>
      <content:encoded><![CDATA[<p><strong><a href="http://www.wayport.com/NewsReleases.aspx?id=1832">Ten thousand is an arbitrary place to put a stick in the sand, but significant nonetheless:</a></strong> The milestone of 10,000 McDonald's wired up--a few hundred have back access only, due to being stores within WalMart centers--is a vindication of Wayport's long-term strategy, dating back to 2004. Wayport switched at that point from a slightly more public-faced, public-access company to one that understood that back-office operations could be just as valuable, if less sexy, than front-facing consumer networks. Dan Lowden, Wayport's long-time marketing and business development chief, said yesterday, "In a lot of these venues, the back office comes first. The Wi-Fi public access for some is a big priority, but for others it's a nice to have, great thing to have, but the priority is the back office."</p>

<p>Although several other quick-service restaurants like McDonald's lack any comprehensive Wi-Fi plan--Burger King, Wendy's, and Subway to name three of the largest--Wayport is locked out of working with direct competitors. This opens the potential for another firm to handle a several-thousand-location network. Wayport has worked with both McDonald's corporate-owned stores (about 2/3rds of stores in the U.S.), as well as reaching out to franchisees, who Lowden noted pay a predetermined flat rate for the service via McDonald's. "It's made them incredibly efficient to be able to offer this to their franchisees at one price, instead of variable pricing," he noted. Wayport acts as the layer between various telecom providers, applications and services, and the stores.</p>

<p>Wayport provides several kinds of back-office services, although credit-card processing was the first thing htey rolled out. They've extended to remote video feeds for security, Redbox DVD rental systems that are found in some McDonald's, and kiosks used for job applications. Lowden said Wayport offers things as straightforward but critical as a dial-up fail-safe when a broadband connection drops. </p>

<p>Wayport also manages AT&T's hotspot network, which puts them in the unwiring seat for the 7,000-odd Starbucks stores that will converted from T-Mobile to AT&T service during 2008. Wayport was once the clear leader in the hotspot builder market, with T-Mobile in the second position. Now, Wayport will be operating through a direct contract or management agreement over 18,000 hotspots in the U.S.; T-Mobile will likely be the second biggest with a couple thousand locations (Borders and FedEx/Kinko's tops among them). The No. 3 player is hard to figure. Panera? </p>

<p>I've been predicting for some time that media on the edge--music, videos, movies, and games stored on servers on the local Wi-Fi network--will be the next big development in venue-oriented Wi-Fi, with Starbucks likely far in the lead. Lowden wouldn't comment on any specific plans in the works, of course, but said generally, "Storing and caching all that content on the edge...hasn't been leveraged in the past, but it will be in the future to create a very unique experience." At Barnes & Noble, Wayport caches some multimedia data that's available to customers in the stores.</p>

<p>The advantage for in-store media storage is that you can leverage the speed of the local network, and add additional access points to distribute network load. The choke point is no longer the Internet connection, but local network speed. I expect--though Wayport, AT&T, and Starbucks haven't said it--that Starbucks infrastructure will be all 802.11n for this reason, likely with both 2.4 GHz and 5 GHz support for the best throughput in the higher-frequency band for media transactions. (In fact, I wouldn't be surprised if you could only buy movies via 5 GHz.)</p>

<p>Lowden also noted that the proliferation of mobile devices with Wi-Fi built in have led to them reaching out to venues that wouldn't have made sense for them to work with previously, and for unlikely candidates to reach out to them, too. Wayport is now working with a number of healthcare facilities that, while they have their own network infrastructure, wanted to outsource public access Wi-Fi (whether they choose to charge or underwrite it), and certain applications that they're not as experienced with running themselves.</p>

<p><strong>A little history:</strong> In 2001 and again in 2004, the heat seemed to be on the public side of Wi-Fi: lots of money to be made, ostensibly, lots of partnerships and venues to be built, and an overcrowded supply of infrastructure builders. The year before, Wayport looked to be an also-ran in the hotspot provider business. </p>

<p>Despite being one of the earliest firms to put Ethernet and then Wi-Fi into hotels, and build out hotspots in airports; and despite their survival of the first hotspot meltdown in 2001 during the dotcom crash and brief venture capital shortage; and despite their early entrance into allowing wholesale pricing for hotspot aggregators; the firm seemed about to be eclipsed by apparently deep-pocketed Cometa (with AT&T, IBM, and Intel in various capital and support roles), Toshiba's mom-and-pop focused turnkey system, and T-Mobile, which had the Starbucks contract. What a difference a year makes.</p>

<p>Cometa, Toshiba, and Wayport contended for the contract to build out back-office and public-access service at McDonald's in the U.S., and Wayport won. Within a few weeks, Toshiba passed its few hundred locations to Cometa, which shut its doors in May 2004. Wayport, meanwhile, had <a href="http://wifinetnews.com/archives/003377.html">cooked up a strategy</a> for McDonald's that it announced later that month. </p>

<p>Their approach involved a fixed-rate charged for unlimited access by retail network partners for all the locations in their pool. This meant that partners had a fixed cost, instead of a per-session cost, and Wayport could obtain specific revenue even before usage by a partner ramped up. Wayport hasn't discussed the details of this arrangement in depth since, but has partnered with Sony with its Mylo, Nintendo with its DS game player, and ZipIt with its wireless messaging appliance. </p>

<p>The McDonald's deal also apparently gave Wayport a way to extend its work with SBC-later-AT&T; Wayport had earlier in 2004 <a href="http://wifinetnews.com/archives/003151.html">became the managed-services contractor</a> for SBC to build out The UPS Store/Mailboxes Etc. nationwide. (UPS <a href="http://wifinetnews.com/archives/007770.html">dropped AT&T as its partner</a> in mid-2007, although that didn't appear to have anything to do with Wayport's role.)</p>

<p>AT&T through Wayport developed its large resold/managed footprint that incorporated resale of Wayport's McDonald's locations with the UPS Store and a few hundred other managed locations, including a handful of airports. The Cingular acquisition of AT&T Wireless put more airports in SBC's hands, too. (SBC was once the 60 percent majority owner of Cingular; when SBC and BellSouth, the other owner, merged that put the newly rebranded AT&T in charge of Cingular which it relabeled as AT&T. Confusing, huh?)</p>]]></content:encoded>
      <pubDate>Tue, 29 Apr 2008 05:25:32 +0000</pubDate>
      <category domain="http://securityratty.com/tag/wayport">wayport</category>
      <category domain="http://securityratty.com/tag/wi-fi">wi-fi</category>
      <category domain="http://securityratty.com/tag/comprehensive wi-fi plan">comprehensive wi-fi plan</category>
      <category domain="http://securityratty.com/tag/local wi-fi network">local wi-fi network</category>
      <category domain="http://securityratty.com/tag/att service">att service</category>
      <category domain="http://securityratty.com/tag/service">service</category>
      <category domain="http://securityratty.com/tag/wayport offers">wayport offers</category>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/wayport caches">wayport caches</category>
      <source url="http://wifinetnews.com/archives/008294.html">Wayport Tops 10,000 McDonald's Locations</source>
    </item>
    <item>
      <title><![CDATA[12 Signs that Your Company is Already in the Cloud]]></title>
      <link>http://securityratty.com/article/a94cc4fdd9f7e59addfde334e0a08d2a</link>
      <guid>http://securityratty.com/article/a94cc4fdd9f7e59addfde334e0a08d2a</guid>
      <description><![CDATA[What are the telltale signs that your company is already Computing in the Cloud
Is it when the CIO makes a big announcement at the monthly IT meeting
Is it when the IT newsletter drops a reference to...]]></description>
      <content:encoded><![CDATA[<p><a title="building_gap" href="http://www.flickr.com/photos/74471232@N00/506202234/" target="_blank"><img src="http://farm1.static.flickr.com/227/506202234_636bc16be9_m.jpg" border="0" alt="building_gap" /></a></p>
<p>What are the telltale signs that your company is already Computing in the Cloud?</p>
<p>Is it when the CIO makes a big announcement at the monthly IT meeting?</p>
<p>Is it when the IT newsletter drops a reference to pilot testing of some &#8216;web based&#8217; software?</p>
<p>Or, is it when the secretary whips out the boss&#8217;s Corporate Credit Card and <a href="http://www.mindtouch.com/blog/2008/04/07/">signs up</a> to a Cloud Service?</p>
<p>Here are 12 indicators that your company is *already* part of the Cloud:</p>
<ol>
<li>Your internal helpdesk reports fewer password resets.</li>
<li>Finance contacts you to confirm all the DVD readers are disabled - they are puzzled by the number of recurring credit card charges for Amazon (are the secretaries spreading out their orders for &#8220;Lost&#8221; DVDs again?).</li>
<li>You are asked to authorise a network change ticket to send all outbound network traffic via the perimeter firewall, before being routed back to the internal server room (for performance reasons). </li>
<li>You walk into the Data Center and it feels cooler than usual.</li>
<li>When the builders next door accidentally saw through the company Internet connection, people complain there must be a DoS attack going on as they can&#8217;t get to their files.</li>
<li>During physical inspections, you notice unexplained gaps in server cabinets.</li>
<li>Login failures go down, in fact login &#8220;attempts&#8221; in general go down but the company car park is full.</li>
<li>As you walk through the office, you notice all the &#8220;Security Awareness&#8221; posters have been replaced with pictures of <a href="http://images.businessweek.com/mz/04/51/0451_18innova.jpg">Jeff Bezos</a> (!)</li>
<li>You are asked to authorise a visit from the local environment group.  Fearing protesters, you are surprised to learn that your company has won a prize for reducing its Carbon Footprint</li>
<li>Your Intrusion Prevention System is preventing the call center from uploading contracts stored as GIF files.</li>
<li>You detect the presence of &#8216;malware&#8217; in the form of unexplained &#8216;Machine Images&#8217; on IT&#8217;s desktops.</li>
<li>You stop finding Windows passwords under keyboards, instead you find random hex digits next to the words &#8216;Access Key&#8217; and &#8216;Secret Key&#8217;.  You sigh, but at least they are setting difficult to guess passwords now!</li>
</ol>
<p>If you are charged with IT security in your company, you may want to start checking your web proxy logs for telltale signs that people are talking to the Cloud&#8230;or just talk to finance.</p>
<p> </p>
<p> </p>
<p> </p>
<img src="http://feeds.feedburner.com/~r/CloudSecurity/~4/277808874" height="1" width="1"/>]]></content:encoded>
      <pubDate>Fri, 25 Apr 2008 15:14:19 +0000</pubDate>
      <category domain="http://securityratty.com/tag/company">company</category>
      <category domain="http://securityratty.com/tag/company car park">company car park</category>
      <category domain="http://securityratty.com/tag/signs">signs</category>
      <category domain="http://securityratty.com/tag/cloud">cloud</category>
      <category domain="http://securityratty.com/tag/company internet connection">company internet connection</category>
      <category domain="http://securityratty.com/tag/telltale signs">telltale signs</category>
      <category domain="http://securityratty.com/tag/credit card">credit card</category>
      <category domain="http://securityratty.com/tag/credit card charges">credit card charges</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <source url="http://feeds.feedburner.com/~r/CloudSecurity/~3/277808874/">12 Signs that Your Company is Already in the Cloud</source>
    </item>
    <item>
      <title><![CDATA[Securing Virtual Environments Through Partnerships]]></title>
      <link>http://securityratty.com/article/25a154081192f4f83515088806957470</link>
      <guid>http://securityratty.com/article/25a154081192f4f83515088806957470</guid>
      <description><![CDATA[Im back from the RSA 2008 Security Show in San Francisco and it was another great year of business development activity for security vendors. It felt like there was a decent amount of end user...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml"><p><strong><o:p></o:p></strong>I’m back from the RSA 2008 Security Show in San Francisco
and it was another great year of business development activity for security
vendors. It felt like there was a decent
amount of end user customers at the show but a lot more vendors touting their
wares and looking to do work with each other. I sat and listened to many vendors complain about this however and listened
to them complain about how they spend money year after year for these shows and
rarely get to talk to customers. It felt
to them that they hear more from other vendors that come up to their booth asking
about partnering or OEM’ing there technology. Well, this does get old pretty fast when you are looking to sell product
to justify your existence but for me it was refreshing to talk with other
companies about partnering. I had the
opportunity to talk to customers also but it was really exciting for me to have
partnership discussions.



</p>

<p class="MsoNormal">Why? Well over at Montego Networks where we are focusing on securing
a new type of network (one that’s virtual) we believe in security through partnerships.
Securing virtual environments is like exploring new frontier or a planned
venture to Mars. Research scientists, chemists,
doctors, collective minds and in this case a unity of security vendors we feel
is the best approach to getting ready for this venture to the new Virtual World.</p>



<p class="MsoNormal"><img width="239" height="174" src="file:///C:/Users/JOHNPE~1/AppData/Local/Temp/msohtmlclip1/01/clip_image002.jpg" v:shapes="_x0000_i1026" /></p>

<p class="MsoNormal"><o:p></o:p></p>

<p><a href="http://vmwaresecurity.typepad.com/.shared/image.html?/photos/uncategorized/2008/04/13/earthpic.jpg" onclick="window.open(this.href, '_blank', 'width=640,height=400,scrollbars=no,resizable=no,toolbar=no,directories=no,location=no,menubar=no,status=no,left=0,top=0'); return false"><img width="100" height="62" border="0" alt="Earthpic" title="Earthpic" src="http://vmwaresecurity.typepad.com/security_in_the_virtual_w/images/2008/04/13/earthpic.jpg" style="margin: 0px 5px 5px 0px; float: left;" /></a>
 </p>

<p class="MsoNormal">Virtual Environments need to be studied jointly in order to understand
the new security risks, performance impacts and how to effectively secure it.&nbsp; Montego Networks plans to do that and has
announced its HyperVSecurity Alliance at RSA and has joined forces with
Cyberoam, Lancope StillSecure and Plixer International in an effort to provide
Anti-Malware, Network Access Control, Intrusion Prevention, Behavioral Analysis
and Network Monitoring for the virtual environment. </p>





<p class="MsoNormal">See:<o:p>&nbsp;</o:p></p>

<p class="MsoNormal"><a href="http://www.montegonetworks.com/node/54">http://www.montegonetworks.com/node/54</a></p>







<p class="MsoNormal"><a href="http://www.eweek.com/c/a/Security/Partnerships-are-Key-in-Virtualization-Security/">http://www.eweek.com/c/a/Security/Partnerships-are-Key-in-Virtualization-Security/</a><o:p>&nbsp;</o:p></p>

<p class="MsoNormal">By establishing this type of alliance research engineers and
vendors will be able to journey to the new Virtual Datacenter with all of the
needed components and insight on securing networks. At the epicenter of this alliance is a security
frame work designed by Montego Networks that allows various technologies to
plug in to the center of the virtual environment which is the switching
infrastructure.</p>





<p class="MsoNormal">Through Montego Networks HyperSwitch, which has the ability
see virtual network communication between systems (virtual desktops &amp;
servers), a frame work is created that allows for user defined policy that can send
traffic off to various places. An
example of this is via the HyperSwitches Policy Based Switching engine which
allows a user to create a policy that dictates that all email traffic will be
directed to an Anti-Virus Gateway or its NetFlow capability which exports flow
information to a Behavioral Analysis Engine.<o:p>&nbsp;</o:p></p>

<p class="MsoNormal">After these various systems do what they do with the data,
they are also able to respond back to the frame work via an API called NSCP (Network
Security Control Protocol) to instruct it to tack appropriate action. This could be an IDS system invoking a
firewall policy or a Behavioral Analysis system telling the frame work to
throttle back (slow down) a users traffic flow. The possibilities are limitless!</p>





<p class="MsoNormal">So, much like the frontier to the USA from England where we
needed Doctors, Lawyers, Law Enforcement, Builders and Farmers, virtualization
needs a coalition of security forces that can provide Anti-Virus, IPS,
Firewall, Network Monitoring, Behavioral Analysis, etc. etc.&nbsp; <o:p>&nbsp;</o:p></p>

<p class="MsoNormal">The goal is to all co-exist in the virtual environment vs.
fight for the same piece of land. I
think this makes sense because all is needed in the virtual world!</p>



<p class="MsoNormal">Stay tuned, as the alliance will get bigger and stronger and
give customers choice and independence as they look to secure the virtual
datacenter. Learn your ABC’s! Anything But Cisco, Let Freedom Ring! </p>

<p class="MsoNormal"><o:p>&nbsp;</o:p></p>

<p><a href="http://vmwaresecurity.typepad.com/.shared/image.html?/photos/uncategorized/2008/04/13/freedom.jpg" onclick="window.open(this.href, '_blank', 'width=118,height=118,scrollbars=no,resizable=no,toolbar=no,directories=no,location=no,menubar=no,status=no,left=0,top=0'); return false"><img width="200" height="200" border="0" alt="Freedom" title="Freedom" src="http://vmwaresecurity.typepad.com/security_in_the_virtual_w/images/2008/04/13/freedom.jpg" style="margin: 0px 5px 5px 0px; float: left;" /></a>
</p>

<p class="MsoNormal"><img width="116" height="116" border="0" src="file:///C:/Users/JOHNPE~1/AppData/Local/Temp/msohtmlclip1/01/clip_image004.jpg" v:shapes="_x0000_i1025" /></p>

</div>
]]></content:encoded>
      <pubDate>Sun, 13 Apr 2008 12:06:19 +0000</pubDate>
      <category domain="http://securityratty.com/tag/virtual">virtual</category>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/virtual network communication">virtual network communication</category>
      <category domain="http://securityratty.com/tag/networks">networks</category>
      <category domain="http://securityratty.com/tag/montego networks plans">montego networks plans</category>
      <category domain="http://securityratty.com/tag/virtual datacenter">virtual datacenter</category>
      <category domain="http://securityratty.com/tag/montego networks">montego networks</category>
      <category domain="http://securityratty.com/tag/virtual environment">virtual environment</category>
      <category domain="http://securityratty.com/tag/security">security</category>
      <source url="http://feeds.feedburner.com/~r/SecurityInTheVirtualWorld/~3/269553477/securing-virtua.html">Securing Virtual Environments Through Partnerships</source>
    </item>
  </channel>
</rss>
