InfSec - Information Security Blog
Information Security Blog and personal stuff

Archive for the 'Information Security' Category

History of TEMPEST

Thursday, May 1st, 2008

Declassified NSA documents have revealed some historical information about TEMPEST. I love these little stories, read it here

CNN is going down

Friday, April 18th, 2008

At least that is the intention of some chinese dudes and this probably is a form of ‘ethical hacking’ for some people.
Organized (DDOS) attacks for a good cause seems to be a new trend but I doubt if it’s going to make a change.

ClamAV vulnerability

Monday, April 14th, 2008

Secunia Research has discovered a vulnerability in ClamAV, which can be exploited by malicious people to compromise a vulnerable system.
In my humble opinion, security bugs in security tools always seem a bit like a bad joke but the given solution cracked me up when reading it :Do not scan untrusted PE files.
Hmmm, aren’t viruskillers created [...]

Trusted vs Secure

Friday, April 11th, 2008

In the company I work for we have some policy that states that the local area network is trusted. For some reason some people seem to like to interpret this as the local area network is secure. Not wanting to understand the difference between trusted (all parties connecting to the local network are trusted by [...]

Forefront, codename: Stirling

Thursday, April 10th, 2008

Microsoft Released a Beta of their Integrated Security System Forefront codename “Stirling”. Downloaded the Beta version to give it a test spin.
Will write down some first impressions soon.

Microsoft Forefront Security Administration Guide
Jesse Varsalone. Syngress 2008, Paperback, 800 pages, $59.95