SEARCH RESULTS
 
Showing 1-6 of 6 records
1
 
Expand article

RAPIER featured in SANS Ask The Expert Webcast

2008-03-16 15:51:00 by Russ McRee in HolisticInfoSec.org
 
...Malcode Analysis and Response: Proficiency vs. Complexity on March 20th, 2008 The threat landscape changes constantly, driven in part by the "bot economy" and changing malcode techniques. In response, incident handler techniques must keep pace. This presentation will cover the use of RAPIER, a security tool built to facilitate first response...
 
 
 
 
 
Expand article

Testing Signature-based Antivirus Products Contest

The Article has images
2008-05-02 06:31:36 by HASH0x8b205fc in Dancho Danchev's Blog - Mind Streams of Information Security Knowledge
...malcode to modify and upload through the contest portal. The portal passes the modified samples through a number of antivirus engines and determines if the sample is a known threat. The first team or individual to pass their s ample past all antivirus engines undetected wins that round. Each round increases in complexity as the contest...
 
 
 
 
 
Expand article

Malware analysis tools

2007-12-26 11:54:00 by Russ McRee in HolisticInfoSec.org
 
...Malcode Analysis Software Tools from iDefense Labs are extremely useful. toolsmith featured the suite in the July 2007 column API-Logger can be used as a standalone tool or you can run the .exe through SysAnalyzer which includes API-Logger output Other important pieces in my sandbox included VMWare Server (Linux host, Windows VMs), PE...
 
 
 
 
 
Expand article

Upcoming conference presentations

2008-03-21 20:56:00 by Russ McRee in HolisticInfoSec.org
 
...Malcode Analysis Techniques for Incident Handlers at the 20th Annual FIRST Conference in Vancouver, B.C. on June 25th, 2008. Details here
 
 
 
 
 
Expand article

Visualized Storm fireworks for your 4th of July

The Article has images
2008-07-03 20:54:00 by Russ McRee in HolisticInfoSec.org
...Malcode Analysis for Incident Handlers are here So, a little AfterGlow magic tcpdump -vttttnnelr /home/rmcree/pcap/fireworks.pcap | ./tcpdump2csv.pl "sip dip ttl" | perl ../graph/afterglow.pl -c /home/rmcree/afterglow/src/perl/graph/color.properties -p 2 | neato -Tgif -o fireworks.gif , and the results look just like the fireworks we hoped...
 
 
 
 
 
Expand article

Insecure Online Updates Toolkit For DNS Cache Poisoning Exploited In The Wild

2008-07-29 16:52:35 by CyberInsecure in CyberInsecure.com
 
...malcode distribution toolkit capable of launching man-in-the-middle attacks against popular products that use insecure update mechanisms. The toolkit, called Evilgrade, works in conjunction with man-in-the-middle techniques (DNS, ARP and DHCP spoofing) to exploit a wide range of applications, according to a post on the Metasploit blog. The...
 
 
 
 
 
 
Showing 1-6 of 6 records
1
 
TOP SEARCH
Expand / MinimizeClose Widget
  •  
RECENT SEARCH
Expand / Minimize
  •  
RELATED VIDEO
Expand / Minimize
SecurityRatty FAQ
Sergey Zarubin, 31yo
CISSP, CCSP
Moscow, Russia