<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/"
>

<channel>
	<title>Network Security Blog &#187; Testing</title>
	<atom:link href="http://www.mckeay.net/category/testing/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.mckeay.net</link>
	<description>The views of one man on security, privacy and anything else that catches his attention</description>
	<lastBuildDate>Wed, 08 Sep 2010 02:14:24 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=abc</generator>
	<!-- podcast_generator="podPress/8.8" - maintenance_release="8.8.6.3" -->
	<copyright>Copyright &#xA9; 2010 Network Security Blog </copyright>
	<managingEditor>martin@mckeay.net</managingEditor>
	<webMaster>martin@mckeay.net</webMaster>
	<category>posts</category>
	<ttl>1440</ttl>
	<image>
		<url>http://mckeay.net/wp-content/plugins/podpress/images/networksecuritylogo144.jpg</url>
		<title>Network Security Blog &#187; Testing</title>
		<link>http://mckeay.net</link>
		<width>144</width>
		<height>144</height>
	</image>
	<itunes:subtitle></itunes:subtitle>
	<itunes:summary>The views of one man on security, privacy and anything else that catches his attention</itunes:summary>
	<itunes:keywords></itunes:keywords>
	<itunes:category text="Society &amp; Culture" />
	<itunes:author></itunes:author>
	<itunes:owner>
		<itunes:name></itunes:name>
		<itunes:email>martin@mckeay.net</itunes:email>
	</itunes:owner>
	<itunes:block>no</itunes:block>
	<itunes:explicit>no</itunes:explicit>
	<itunes:image href="http://mckeay.net/wp-content/plugins/podpress/images/networksecuritylogo300.jpg" />
		<item>
		<title>Mykonos:  WAF, IPS or honeypot?</title>
		<link>http://www.mckeay.net/2010/03/15/mykonos-waf-ips-or-honeypot/</link>
		<comments>http://www.mckeay.net/2010/03/15/mykonos-waf-ips-or-honeypot/#comments</comments>
		<pubDate>Mon, 15 Mar 2010 14:02:36 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Testing]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2010/03/15/mykonos-waf-ips-or-honeypot/</guid>
		<description><![CDATA[I&#8217;m not an expert on web application firewalls, which is why I&#8217;m asking for feedback on the Mykonos Security Appliance.&#160; I was given a demo of the product at the RSA Conference this year and it&#8217;s one of the few products I&#8217;ve seen lately that&#8217;s doing something new and innovative.&#160; Or more accurately, it appears [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;m not an expert on web application firewalls, which is why I&#8217;m asking for feedback on the <a href="http://www.mykonossoftware.com/">Mykonos Security Appliance</a>.&nbsp; I was given a demo of the product at the RSA Conference this year and it&#8217;s one of the few products I&#8217;ve seen lately that&#8217;s doing something new and innovative.&nbsp; Or more accurately, it appears to be doing something new and innovative; it&#8217;s still in beta and this is a technology that&#8217;s outside my comfort zone.&nbsp; If you&#8217;re someone with an expertise in WAF&#8217;s, it should be worth at least a short look.</p>
<p>In a lot of ways, Mykonos appears to be a standard WAF; it can be used to protect your site from many of the standard coding errors that a WAF is designed to deal with.&nbsp; It addresses the OWASP Top 10, it has all the reporting capabilities to tell you something&#8217;s wrong; in this area it doesn&#8217;t appear to have a lot of extra punch you can&#8217;t get elsewhere.&nbsp; The place it does start to have some distinguishing capabilities is in the tracking, categorizing and response to malicious attacks on your web site.</p>
<p>You want to know more about who&#8217;s probing your web site?&nbsp; Mykonos will dynamically modify the code your site is serving to get you more information on who&#8217;s attacking.&nbsp; It&#8217;ll tell you about the level of sophistication of the attacker, whether they&#8217;re just trying to manipulate a price in the shopping cart, if they&#8217;re trying a SQL injection attack or if they&#8217;re working on something at the higher end of the attack scale.&nbsp; And it gives you a lot of choices about how you want to respond; simply block the user, send custom code telling them they&#8217;ve been identified and logged or act as a honeypot to get even more information about the attacker and how he&#8217;s planning on attacking your site.&nbsp; The tracking and information gathering abilities seem to be pretty impressive and it may be worth looking at for that alone.</p>
<p>Mykonos looks like more than a plain vanilla web application firewall and the downside to that is it requires more work from the administrator and more work from your developers to make full use of it&#8217;s capabilities.&nbsp; This also means it&#8217;s potential for becoming shelfware is much greater as well.&nbsp; But if you&#8217;re looking for more than what a standard WAF offers, it might be worth looking at this product.&nbsp; And once you do, I&#8217;d appreciate feedback on your impression of the product.&nbsp; Is Mykonos a potential new product market, a single product with greater capabilities or just a flash in the pan that won&#8217;t amount to much?</p>
<p>
<div class="zemanta-pixie"><img class="zemanta-pixie-img" alt="" src="http://img.zemanta.com/pixy.gif?x-id=a70db174-51f9-8282-9d33-256b3cd1a592" /></div>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F15%2Fmykonos-waf-ips-or-honeypot%2F&amp;title=Mykonos%3A++WAF%2C+IPS+or+honeypot%3F" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F15%2Fmykonos-waf-ips-or-honeypot%2F&amp;title=Mykonos%3A++WAF%2C+IPS+or+honeypot%3F" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F15%2Fmykonos-waf-ips-or-honeypot%2F&amp;title=Mykonos%3A++WAF%2C+IPS+or+honeypot%3F" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F15%2Fmykonos-waf-ips-or-honeypot%2F&amp;title=Mykonos%3A++WAF%2C+IPS+or+honeypot%3F" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F15%2Fmykonos-waf-ips-or-honeypot%2F&amp;title=Mykonos%3A++WAF%2C+IPS+or+honeypot%3F', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F15%2Fmykonos-waf-ips-or-honeypot%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F15%2Fmykonos-waf-ips-or-honeypot%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F15%2Fmykonos-waf-ips-or-honeypot%2F&amp;title=Mykonos%3A++WAF%2C+IPS+or+honeypot%3F" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F15%2Fmykonos-waf-ips-or-honeypot%2F&amp;title=Mykonos%3A++WAF%2C+IPS+or+honeypot%3F" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2010/03/15/mykonos-waf-ips-or-honeypot/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>RSAC2010:  ICSA Labs</title>
		<link>http://www.mckeay.net/2010/03/03/rsac2010-icsa-labs/</link>
		<comments>http://www.mckeay.net/2010/03/03/rsac2010-icsa-labs/#comments</comments>
		<pubDate>Wed, 03 Mar 2010 14:59:18 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[Risk]]></category>
		<category><![CDATA[Testing]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2010/03/03/rsac2010-icsa-labs/</guid>
		<description><![CDATA[One of the things I don&#8217;t believe we see enough of in the security field is independent testing.&#160; Vendors of all stripes make claims about what their products do, and without independent testing it&#8217;s hard to tell if they&#8217;re the cream of the crop or a bad apple.&#160; ICSA Labs is one of the few [...]]]></description>
			<content:encoded><![CDATA[<p>One of the things I don&#8217;t believe we see enough of in the security field is independent testing.&nbsp; Vendors of all stripes make claims about what their products do, and without independent testing it&#8217;s hard to tell if they&#8217;re the cream of the crop or a bad apple.&nbsp;<a href="http://www.icsalabs.com/"> ICSA Labs</a> is one of the few companies that do the sort of testing that&#8217;s needed to provide the information to tell the two extremes apart.&nbsp; I took a few minutes to sit down with Andy Hayter of ICSA Labs to talk about anti-virus testing, education of consumers and a new initiative to use the testing ICSA does in the real world.&nbsp; For the sake of transparency, ICSA is a part of Verizon, the company I work for as well.</p>
<p><a href="http://media.libsyn.com/media/mckeay/NSP-RSAC2010-ICSALab.mp3">NSP-RSAC2010-ICSALabs.mp3</a></p>
<div class="zemanta-pixie"><img class="zemanta-pixie-img" alt="" src="http://img.zemanta.com/pixy.gif?x-id=a73f191a-cf86-82e7-ae35-180f00d11ef9" /></div>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F03%2Frsac2010-icsa-labs%2F&amp;title=RSAC2010%3A++ICSA+Labs" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F03%2Frsac2010-icsa-labs%2F&amp;title=RSAC2010%3A++ICSA+Labs" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F03%2Frsac2010-icsa-labs%2F&amp;title=RSAC2010%3A++ICSA+Labs" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F03%2Frsac2010-icsa-labs%2F&amp;title=RSAC2010%3A++ICSA+Labs" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F03%2Frsac2010-icsa-labs%2F&amp;title=RSAC2010%3A++ICSA+Labs', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F03%2Frsac2010-icsa-labs%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F03%2Frsac2010-icsa-labs%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F03%2Frsac2010-icsa-labs%2F&amp;title=RSAC2010%3A++ICSA+Labs" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2010%2F03%2F03%2Frsac2010-icsa-labs%2F&amp;title=RSAC2010%3A++ICSA+Labs" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2010/03/03/rsac2010-icsa-labs/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://media.libsyn.com/media/mckeay/NSP-RSAC2010-ICSALab.mp3" length="12979444" type="audio/mpeg" />
	</item>
		<item>
		<title>Firefox and IE8 tied, Safari 4 loses big</title>
		<link>http://www.mckeay.net/2009/08/16/firefox-and-ie8-tied-safari-4-loses-big/</link>
		<comments>http://www.mckeay.net/2009/08/16/firefox-and-ie8-tied-safari-4-loses-big/#comments</comments>
		<pubDate>Sun, 16 Aug 2009 19:53:36 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[Phishing, scams, etc.]]></category>
		<category><![CDATA[Risk]]></category>
		<category><![CDATA[Social Networking]]></category>
		<category><![CDATA[Testing]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2009/08/16/firefox-and-ie8-tied-safari-4-loses-big/</guid>
		<description><![CDATA[I finally had the time to sit down and read the NSS Labs Web Browser Security Phishing Protection paper this morning. This paper is a test of the more popular browsers in use today and how well the reputation based systems they&#8217;ve built work to protect users against phishing attempts by malicious sites.&#160; The big [...]]]></description>
			<content:encoded><![CDATA[<p>I finally had the time to sit down and read the <a href="http://nsslabs.com/browser-security-phishing-3Q2009">NSS Labs Web Browser Security Phishing Protection paper</a> this morning. This paper is a test of the more popular browsers in use today and how well the reputation based systems they&#8217;ve built work to protect users against phishing attempts by malicious sites.&nbsp; The big winners in the test were Firefox 3 (not 3.5) and IE8, which almost tied at 80% and 83% accuracy for blocking phishing sites.&nbsp; Given that the study quotes a margin of error of 3.6%, the two browsers are equal for most intents and purposes.&nbsp; The big loser of the test was Safari 4, which only had a 2% blocking rate for malicious sites.&nbsp; I hope Safari on my iPhone is better than it is on my Macbook, or at least that there are less phishing sites targeting the iPhone.</p>
<p>It&#8217;s very interesting that Firefox 3, Chrome 2 and Safari 4 all use Google&#8217;s Safebrowsing data feed but have very different results from the same data.&nbsp; Chrome 2 only had a 16% success rate in blocking, compared with Firefox 3 at 80% and Safari 4 at 2%.&nbsp; So why the big difference between the three browsers running off of the same information?&nbsp; NSS Labs doesn&#8217;t offer an explanation and apparently none of the developers did either, so either Firefox is pulling in a lot of additional information from somewhere or the Chrome and Safari developers have some learning to do.</p>
<p>What I personally found the most interesting about the paper though was that the Anti-Phishing Working Group is quoted as saying that the average phishing site only has a lifespan of approximately 52 hours.&nbsp; None of the browsers really reach full effectiveness for blocking a phishing site for about 48 hours after the site has become active, therefore you&#8217;re only getting 4 hours of maximum benefits.&nbsp; The long term trends look good, but it&#8217;s a little disturbing that many phishing sites are relatively undetected for at least the first 24 to 48 hours they&#8217;re live.&nbsp; </p>
<p>I&#8217;d be curious to see how Firefox 3.5 changes this mix.&nbsp; Apparently it wasn&#8217;t stable enough to be used in this test, but maybe we&#8217;ll see a new set of tests next quarter.&nbsp; I&#8217;m also wondering what affect the FF plugin <a href="http://www.google.com/url?sa=t&amp;source=web&amp;ct=res&amp;cd=1&amp;url=http%3A%2F%2Fnoscript.net%2F&amp;ei=N2OISoOGCoWeswObrt3iAg&amp;usg=AFQjCNG6f-6kQ1nuYLCdbdDXbHA9r3LjHQ&amp;sig2=cP5BE37DnFDNxE1PtcXsRA">NoScript</a> would have on the results.&nbsp; Since NoScript isn&#8217;t strictly speaking an anti-phishing tool, I doubt NSS Labs will be testing it any time soon, but I&#8217;d like to know how much more secure it makes my web surfing experience.</p>
<p>Now to go back and read the <a href="http://nsslabs.com/browser-security-malware-3Q2009">Socially Engineered Malware</a> report.&nbsp; </p>
<div class="zemanta-pixie"><img class="zemanta-pixie-img" alt="" src="http://img.zemanta.com/pixy.gif?x-id=4fff7e60-5344-8186-b35a-7037c381677e" /></div>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2009%2F08%2F16%2Ffirefox-and-ie8-tied-safari-4-loses-big%2F&amp;title=Firefox+and+IE8+tied%2C+Safari+4+loses+big" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2009%2F08%2F16%2Ffirefox-and-ie8-tied-safari-4-loses-big%2F&amp;title=Firefox+and+IE8+tied%2C+Safari+4+loses+big" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2009%2F08%2F16%2Ffirefox-and-ie8-tied-safari-4-loses-big%2F&amp;title=Firefox+and+IE8+tied%2C+Safari+4+loses+big" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2009%2F08%2F16%2Ffirefox-and-ie8-tied-safari-4-loses-big%2F&amp;title=Firefox+and+IE8+tied%2C+Safari+4+loses+big" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2009%2F08%2F16%2Ffirefox-and-ie8-tied-safari-4-loses-big%2F&amp;title=Firefox+and+IE8+tied%2C+Safari+4+loses+big', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2009%2F08%2F16%2Ffirefox-and-ie8-tied-safari-4-loses-big%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2009%2F08%2F16%2Ffirefox-and-ie8-tied-safari-4-loses-big%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2009%2F08%2F16%2Ffirefox-and-ie8-tied-safari-4-loses-big%2F&amp;title=Firefox+and+IE8+tied%2C+Safari+4+loses+big" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2009%2F08%2F16%2Ffirefox-and-ie8-tied-safari-4-loses-big%2F&amp;title=Firefox+and+IE8+tied%2C+Safari+4+loses+big" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2009/08/16/firefox-and-ie8-tied-safari-4-loses-big/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Got Chrome?</title>
		<link>http://www.mckeay.net/2008/09/02/got-chrome/</link>
		<comments>http://www.mckeay.net/2008/09/02/got-chrome/#comments</comments>
		<pubDate>Tue, 02 Sep 2008 20:39:10 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Testing]]></category>
		<category><![CDATA[browser]]></category>
		<category><![CDATA[Chrome]]></category>
		<category><![CDATA[Google]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2008/09/02/got-chrome/</guid>
		<description><![CDATA[Unless you&#8217;ve been hiding under a rock today, you&#8217;ve probably heard that Google released their own browser, Chrome. The comic book that they&#8217;ve posted with it is cool, if for no other reason than it&#8217;s illustrated by Scott McCloud. But my first reaction to Chrome is &#8220;So what?&#8221; Yes, it has a lot of security [...]]]></description>
			<content:encoded><![CDATA[<p>Unless you&#8217;ve been hiding under a rock today, you&#8217;ve probably heard that Google released their own browser, <a href="http://gears.google.com/chrome/">Chrome</a>.  The <a href="http://www.google.com/googlebooks/chrome/index.html">comic book</a> that they&#8217;ve posted with it is cool, if for no other reason than it&#8217;s illustrated by Scott McCloud.  But my first reaction to Chrome is &#8220;So what?&#8221;</p>
<p>Yes, it has a lot of security features built in.  But so do IE 7/8 and Firefox 3.  I was a little disturbed when I realized that Chrome not only copied all of my bookmarks and history from FF, it also downloaded my user names and passwords.  I&#8217;m less concerned that Chrome was able to do this then the fact that the passwords can be exported from Firefox at all.  I need to rethink saving any of my account information to the browsers at all knowing this.  </p>
<p>There are a lot of other people writing reviews of Chrome, so I&#8217;m going to keep it simple.  After a short test run, it seems to render everything at least as well as Firefox.  It&#8217;s a bit faster to load and it gives me just a touch more screen space by using the top bar for tabs rather than as just a place holder.  One interesting thing is that it appears to use quite a bit of memory, but it&#8217;s using it for individual tabs as separate processes rather than one process as Firefox and IE do.  This is obviously part of the virtualization and sandboxing Google promised.</p>
<p>I&#8217;ll be interested in reading what people have to say about Chrome over the next couple of weeks, but I think I&#8217;ll be doing the majority of my surfing in Firefox 3 for the foreseeable future.  I rely too heavily on many of the add-ons in Firefox to switch easily.  How are your experiences with Chrome turning out and do you see yourself moving to Chrome from your current browser?</p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F09%2F02%2Fgot-chrome%2F&amp;title=Got+Chrome%3F" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F09%2F02%2Fgot-chrome%2F&amp;title=Got+Chrome%3F" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F09%2F02%2Fgot-chrome%2F&amp;title=Got+Chrome%3F" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F09%2F02%2Fgot-chrome%2F&amp;title=Got+Chrome%3F" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F09%2F02%2Fgot-chrome%2F&amp;title=Got+Chrome%3F', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2008%2F09%2F02%2Fgot-chrome%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2008%2F09%2F02%2Fgot-chrome%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2008%2F09%2F02%2Fgot-chrome%2F&amp;title=Got+Chrome%3F" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F09%2F02%2Fgot-chrome%2F&amp;title=Got+Chrome%3F" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2008/09/02/got-chrome/feed/</wfw:commentRss>
		<slash:comments>11</slash:comments>
		</item>
		<item>
		<title>Finally upgraded to FF3</title>
		<link>http://www.mckeay.net/2008/07/07/finally-upgraded-to-ff3/</link>
		<comments>http://www.mckeay.net/2008/07/07/finally-upgraded-to-ff3/#comments</comments>
		<pubDate>Mon, 07 Jul 2008 14:01:23 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Testing]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2008/07/07/finally-upgraded-to-ff3/</guid>
		<description><![CDATA[I upgraded my secondary computers, the Mac Book Pro and the wife&#8217;s desktop, to Firefox 3 the day it came out last month, but I put off upgrading my primary system until this weekend. Why? Because I dislike a number of the default tab behaviors Firefox displays by default; they&#8217;re fine for lite browsing, but [...]]]></description>
			<content:encoded><![CDATA[<p>I upgraded my secondary computers, the Mac Book Pro and the wife&#8217;s desktop, to Firefox 3 the day it came out last month, but I put off upgrading my primary system until this weekend.  Why?  Because I dislike a number of the default tab behaviors Firefox displays by default; they&#8217;re fine for lite browsing, but for my more serious browsing, it got to be annoying.  Trying to organize show notes and organize articles for blog posts is just easier when tabs behave the way I want them too, not the way Mozilla wants them to.  So I waited for <a href="http://tmp.garyr.net/forum/viewtopic.php?t=7031%20">Tab Mix Plus</a> to catch up with Firefox 3.  Which they&#8217;ve done, even though it&#8217;s still a &#8216;development&#8217; version.</p>
<p>There are a few features that TMP offers that I really need.  The first is opening up URL&#8217;s I type in in a new tab rather than in the current window by default.  There&#8217;s probably a way to get FF3 to exhibit this behavior without TMP, but I&#8217;ve never been able to work right.  Another feature is the ability to automatically reload a particular tab on a regular basis.  I have a couple of stats windows I keep open that I want to reload every 15 minutes, like my blog stat and podcast stat pages.  Neither of these features is absolutely necessary, but it makes my browsing experience more enjoyable.</p>
<p>Now to upgrade the kids computer and the other household laptop.  It&#8217;s a bit scary that we&#8217;ve got more computers than people in our household.  But I guess that&#8217;s part of what happens when you&#8217;re a computer geek.</p>
<p></p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F07%2F07%2Ffinally-upgraded-to-ff3%2F&amp;title=Finally+upgraded+to+FF3" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F07%2F07%2Ffinally-upgraded-to-ff3%2F&amp;title=Finally+upgraded+to+FF3" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F07%2F07%2Ffinally-upgraded-to-ff3%2F&amp;title=Finally+upgraded+to+FF3" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F07%2F07%2Ffinally-upgraded-to-ff3%2F&amp;title=Finally+upgraded+to+FF3" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F07%2F07%2Ffinally-upgraded-to-ff3%2F&amp;title=Finally+upgraded+to+FF3', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2008%2F07%2F07%2Ffinally-upgraded-to-ff3%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2008%2F07%2F07%2Ffinally-upgraded-to-ff3%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2008%2F07%2F07%2Ffinally-upgraded-to-ff3%2F&amp;title=Finally+upgraded+to+FF3" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F07%2F07%2Ffinally-upgraded-to-ff3%2F&amp;title=Finally+upgraded+to+FF3" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2008/07/07/finally-upgraded-to-ff3/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>RSA 2008: Rick Moy, NSS Labs</title>
		<link>http://www.mckeay.net/2008/04/09/rsa-2008-rick-moy-nss-labs/</link>
		<comments>http://www.mckeay.net/2008/04/09/rsa-2008-rick-moy-nss-labs/#comments</comments>
		<pubDate>Wed, 09 Apr 2008 17:58:46 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Testing]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2008/04/09/rsa-2008-rick-moy-nss-labs/</guid>
		<description><![CDATA[NSS Labs is an independent testing lab that certifies firewalls, UTM&#8217;s and a host of other products for compliance with programs such as PCI. I had a chance to talk to Rick Moy for a few minutes and talk about the proper use of these reports. nsp-RSA2008-RickMoy.mp3]]></description>
			<content:encoded><![CDATA[<p>NSS Labs is an independent testing lab that certifies firewalls, UTM&#8217;s and a host of other products for compliance with programs such as PCI.  I had a chance to talk to Rick Moy for a few minutes and talk about the proper use of these reports.</p>
<p><a href="http://media.libsyn.com/media/mckeay/nsp-RSA2008-RickMoy.mp3">nsp-RSA2008-RickMoy.mp3</a></p>
<p></p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F09%2Frsa-2008-rick-moy-nss-labs%2F&amp;title=RSA+2008%3A+Rick+Moy%2C+NSS+Labs" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F09%2Frsa-2008-rick-moy-nss-labs%2F&amp;title=RSA+2008%3A+Rick+Moy%2C+NSS+Labs" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F09%2Frsa-2008-rick-moy-nss-labs%2F&amp;title=RSA+2008%3A+Rick+Moy%2C+NSS+Labs" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F09%2Frsa-2008-rick-moy-nss-labs%2F&amp;title=RSA+2008%3A+Rick+Moy%2C+NSS+Labs" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F09%2Frsa-2008-rick-moy-nss-labs%2F&amp;title=RSA+2008%3A+Rick+Moy%2C+NSS+Labs', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F09%2Frsa-2008-rick-moy-nss-labs%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F09%2Frsa-2008-rick-moy-nss-labs%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F09%2Frsa-2008-rick-moy-nss-labs%2F&amp;title=RSA+2008%3A+Rick+Moy%2C+NSS+Labs" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F09%2Frsa-2008-rick-moy-nss-labs%2F&amp;title=RSA+2008%3A+Rick+Moy%2C+NSS+Labs" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2008/04/09/rsa-2008-rick-moy-nss-labs/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://media.libsyn.com/media/mckeay/nsp-RSA2008-RickMoy.mp3" length="4205266" type="audio/mpeg" />
		<itunes:duration>4:23</itunes:duration>
		<itunes:subtitle>NSS Labs is an independent testing lab that certifies firewalls, UTM's and a host of other products for compliance with programs such as PCI.  ...</itunes:subtitle>
		<itunes:summary>NSS Labs is an independent testing lab that certifies firewalls, UTM's and a host of other products for compliance with programs such as PCI.  I had a chance to talk to Rick Moy for a few minutes and talk about the proper use of these reports.

nsp-RSA2008-RickMoy.mp3

</itunes:summary>
		<itunes:keywords>Testing</itunes:keywords>
		<itunes:author>martin@mckeay.net</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>You&#8217;ve got to appreciate truth in advertising</title>
		<link>http://www.mckeay.net/2007/07/16/youve-got-to-appreciate-truth-in-advertising/</link>
		<comments>http://www.mckeay.net/2007/07/16/youve-got-to-appreciate-truth-in-advertising/#comments</comments>
		<pubDate>Mon, 16 Jul 2007 16:10:58 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Apple/Mac]]></category>
		<category><![CDATA[Blogging]]></category>
		<category><![CDATA[CISSP/ISC2]]></category>
		<category><![CDATA[Encryption]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[General]]></category>
		<category><![CDATA[Government]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Humor]]></category>
		<category><![CDATA[IDS]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[PCI]]></category>
		<category><![CDATA[Phishing, scams, etc.]]></category>
		<category><![CDATA[Podcast]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Security Advisories]]></category>
		<category><![CDATA[Simple Security]]></category>
		<category><![CDATA[Site Configuration]]></category>
		<category><![CDATA[Testing]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2007/07/16/youve-got-to-appreciate-truth-in-advertising/</guid>
		<description><![CDATA[
]]></description>
			<content:encoded><![CDATA[<p>I use Gmail as my central email repository and usually the spam filters they use are pretty good.&nbsp; But lately they&#8217;ve been a little overly aggressive, so I have to comb through to make sure no legitimate email is being caught accidentally.&nbsp; There&#8217;s not a lot that&#8217;s misidentified, but there&#8217;s enough to make it worth the few minutes a day it takes to double-check the spam folder.</p>
<p>I&#8217;ve been amazed at some of the subject lines I see, as well as what I see in the preview of the email.&nbsp; There&#8217;s no way I&#8217;m going to click on any of them to find out what else is in the spam, because it&#8217;s just not worth the risk.&nbsp; But I do have to say that my favorite subject line so far is &#8220;Thanks for contributing to our financial success&#8221;.&nbsp; It&#8217;s honest and straight forward even if it is just an attempt to rip off people around the globe.</p>
<p>On a side note, I used to clean out my spam folder every couple of days, but in March I started letting them accumulate and get deleted automatically when they&#8217;ve aged 30 days.&nbsp; It&#8217;s been interesting watching the number of spams spike and drop.&nbsp; At one point I had gathered nearly 9000 spams in a 30 day period, which works out to an average of 300 spams a day.&nbsp;&nbsp; Personally, that means about 60% of my email is spam, a far lower percentage of spam than most people see.&nbsp; I guess being subscribed to ten or so mailing lists had to have some benefit.</p>
<p>Mine is just a single data point, compared to the millions some anti-spam vendors get to see.&nbsp; But  I like having a personal high water mark to compare to what the vendors are reporting. I&#8217;m not a spam expert, so it&#8217;s interesting to see new spam subjects that companies like&nbsp; <a href="http://www.f-secure.com/weblog/">F-secure</a> report.&nbsp; Anyone else out there keep track of the spam they receive for fun?</p>
<p>Technorati Tags: <a class="performancingtags" href="http://technorati.com/tag/security" rel="tag">security</a>, <a class="performancingtags" href="http://technorati.com/tag/spam" rel="tag">spam</a>, <a class="performancingtags" href="http://technorati.com/tag/McKeay" rel="tag">McKeay</a></p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F16%2Fyouve-got-to-appreciate-truth-in-advertising%2F&amp;title=You%26%238217%3Bve+got+to+appreciate+truth+in+advertising" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F16%2Fyouve-got-to-appreciate-truth-in-advertising%2F&amp;title=You%26%238217%3Bve+got+to+appreciate+truth+in+advertising" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F16%2Fyouve-got-to-appreciate-truth-in-advertising%2F&amp;title=You%26%238217%3Bve+got+to+appreciate+truth+in+advertising" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F16%2Fyouve-got-to-appreciate-truth-in-advertising%2F&amp;title=You%26%238217%3Bve+got+to+appreciate+truth+in+advertising" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F16%2Fyouve-got-to-appreciate-truth-in-advertising%2F&amp;title=You%26%238217%3Bve+got+to+appreciate+truth+in+advertising', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F16%2Fyouve-got-to-appreciate-truth-in-advertising%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F16%2Fyouve-got-to-appreciate-truth-in-advertising%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F16%2Fyouve-got-to-appreciate-truth-in-advertising%2F&amp;title=You%26%238217%3Bve+got+to+appreciate+truth+in+advertising" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F16%2Fyouve-got-to-appreciate-truth-in-advertising%2F&amp;title=You%26%238217%3Bve+got+to+appreciate+truth+in+advertising" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2007/07/16/youve-got-to-appreciate-truth-in-advertising/feed/</wfw:commentRss>
		<slash:comments>7</slash:comments>
		</item>
		<item>
		<title>Using charities to test stolen cards</title>
		<link>http://www.mckeay.net/2007/07/10/using-charities-to-test-stolen-cards/</link>
		<comments>http://www.mckeay.net/2007/07/10/using-charities-to-test-stolen-cards/#comments</comments>
		<pubDate>Tue, 10 Jul 2007 17:51:06 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Apple/Mac]]></category>
		<category><![CDATA[Blogging]]></category>
		<category><![CDATA[CISSP/ISC2]]></category>
		<category><![CDATA[Encryption]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[General]]></category>
		<category><![CDATA[Government]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Humor]]></category>
		<category><![CDATA[IDS]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[PCI]]></category>
		<category><![CDATA[Phishing, scams, etc.]]></category>
		<category><![CDATA[Podcast]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Security Advisories]]></category>
		<category><![CDATA[Simple Security]]></category>
		<category><![CDATA[Site Configuration]]></category>
		<category><![CDATA[Testing]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2007/07/10/using-charities-to-test-stolen-cards/</guid>
		<description><![CDATA[
]]></description>
			<content:encoded><![CDATA[<p>This makes sense in a twisted way:&nbsp; <a href="http://www.symantec.com/enterprise/security_response/weblog/2007/07/scammers_make_friends_with_cha.html">scammers are using charities to test stolen credit cards</a>. As the post points out, they&#8217;re using charities because most banks aren&#8217;t going to flag a donation, since it&#8217;s something most people only do on special occasions and it&#8217;s hard to create a behavioral monitoring program that could catch this as being an unusual activity with any accuracy.</p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F10%2Fusing-charities-to-test-stolen-cards%2F&amp;title=Using+charities+to+test+stolen+cards" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F10%2Fusing-charities-to-test-stolen-cards%2F&amp;title=Using+charities+to+test+stolen+cards" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F10%2Fusing-charities-to-test-stolen-cards%2F&amp;title=Using+charities+to+test+stolen+cards" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F10%2Fusing-charities-to-test-stolen-cards%2F&amp;title=Using+charities+to+test+stolen+cards" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F10%2Fusing-charities-to-test-stolen-cards%2F&amp;title=Using+charities+to+test+stolen+cards', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F10%2Fusing-charities-to-test-stolen-cards%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F10%2Fusing-charities-to-test-stolen-cards%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F10%2Fusing-charities-to-test-stolen-cards%2F&amp;title=Using+charities+to+test+stolen+cards" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F07%2F10%2Fusing-charities-to-test-stolen-cards%2F&amp;title=Using+charities+to+test+stolen+cards" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2007/07/10/using-charities-to-test-stolen-cards/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The target was material for phishing attacks</title>
		<link>http://www.mckeay.net/2006/09/01/the-target-was-material-for-phishing-attacks/</link>
		<comments>http://www.mckeay.net/2006/09/01/the-target-was-material-for-phishing-attacks/#comments</comments>
		<pubDate>Fri, 01 Sep 2006 21:32:08 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Apple/Mac]]></category>
		<category><![CDATA[Blogging]]></category>
		<category><![CDATA[CISSP/ISC2]]></category>
		<category><![CDATA[Encryption]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[General]]></category>
		<category><![CDATA[Government]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Humor]]></category>
		<category><![CDATA[IDS]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[PCI]]></category>
		<category><![CDATA[Phishing, scams, etc.]]></category>
		<category><![CDATA[Podcast]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Security Advisories]]></category>
		<category><![CDATA[Simple Security]]></category>
		<category><![CDATA[Site Configuration]]></category>
		<category><![CDATA[Testing]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2006/09/01/the-target-was-material-for-phishing-attacks/</guid>
		<description><![CDATA[
]]></description>
			<content:encoded><![CDATA[<p>According to the SFGate, the intrusion that AT&amp;T reported earlier this week was not aimed at stealing credit card information, it was <a href="http://www.sfgate.com/cgi-bin/article.cgi?f=/c/a/2006/09/01/BUGVBKSUIE1.DTL">aimed at providing the raw data to allow the crackers to perform targetted phishing attacks on a massive scale</a>.&nbsp; By seeding an email with information gathered from AT&amp;T&#8217;s database, the phishers can add a level authenticity that makes even some of the most suspicious people on the Internet accept an email as authentic. </p>
<p>This is just one more reason to never respond directly to any request from a merchant or bank that comes to you in the form of an email.&nbsp; As always, if you think an email alert is real, open a browser window and manually type in your bank&#8217;s URL, never click on the link in the email.&nbsp; </p>
<p>Technorati Tags: <a href="http://technorati.com/tag/security" rel="tag">security</a>, <a href="http://technorati.com/tag/McKeay" rel="tag">McKeay</a>, <a href="http://technorati.com/tag/AT&amp;T" rel="tag">AT&amp;T</a>, <a href="http://technorati.com/tag/phishing" rel="tag">phishing</a></p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2006%2F09%2F01%2Fthe-target-was-material-for-phishing-attacks%2F&amp;title=The+target+was+material+for+phishing+attacks" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2006%2F09%2F01%2Fthe-target-was-material-for-phishing-attacks%2F&amp;title=The+target+was+material+for+phishing+attacks" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2006%2F09%2F01%2Fthe-target-was-material-for-phishing-attacks%2F&amp;title=The+target+was+material+for+phishing+attacks" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2006%2F09%2F01%2Fthe-target-was-material-for-phishing-attacks%2F&amp;title=The+target+was+material+for+phishing+attacks" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2006%2F09%2F01%2Fthe-target-was-material-for-phishing-attacks%2F&amp;title=The+target+was+material+for+phishing+attacks', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2006%2F09%2F01%2Fthe-target-was-material-for-phishing-attacks%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2006%2F09%2F01%2Fthe-target-was-material-for-phishing-attacks%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2006%2F09%2F01%2Fthe-target-was-material-for-phishing-attacks%2F&amp;title=The+target+was+material+for+phishing+attacks" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2006%2F09%2F01%2Fthe-target-was-material-for-phishing-attacks%2F&amp;title=The+target+was+material+for+phishing+attacks" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2006/09/01/the-target-was-material-for-phishing-attacks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>I need some cheap USB thumb drives!</title>
		<link>http://www.mckeay.net/2006/06/09/i-need-some-cheap-usb-thumb-drives/</link>
		<comments>http://www.mckeay.net/2006/06/09/i-need-some-cheap-usb-thumb-drives/#comments</comments>
		<pubDate>Fri, 09 Jun 2006 16:25:31 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Apple/Mac]]></category>
		<category><![CDATA[Blogging]]></category>
		<category><![CDATA[CISSP/ISC2]]></category>
		<category><![CDATA[Encryption]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[General]]></category>
		<category><![CDATA[Government]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Humor]]></category>
		<category><![CDATA[IDS]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[PCI]]></category>
		<category><![CDATA[Phishing, scams, etc.]]></category>
		<category><![CDATA[Podcast]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Security Advisories]]></category>
		<category><![CDATA[Simple Security]]></category>
		<category><![CDATA[Site Configuration]]></category>
		<category><![CDATA[Testing]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2006/06/09/i-need-some-cheap-usb-thumb-drives/</guid>
		<description><![CDATA[
]]></description>
			<content:encoded><![CDATA[<p>What an <a href="http://www.darkreading.com/document.asp?doc_id=95556&amp;WT.svl=column1_1">evil, sneaky, underhanded way to social engineer</a> a business!&nbsp; I like it!&nbsp; This company took twenty USB thumb drives, seeded them liberally with malware and pictures, and left them on the ground outside the credit union they were targeting.&nbsp;&nbsp;  People fell for it, and quite frankly I can&#8217;t say I blame them.&nbsp; If I found a thumb drive laying around in the parking lot, I&#8217;d probably plug it into a system to see who it belonged to myself.&nbsp; Or at least I would have before I read this article.&nbsp; </p>
<p>This was done as part of a penatration test, with the full approval of the company that was attacked.&nbsp; But is it really safe for anyone to assume that the any media you find laying around was lost, not placed there on purpose?&nbsp; This really would be a good way to target almost any company you might want to mention.&nbsp; It&#8217;s so much safer to always assume a malicious intent and take the proper precautions than it is to assume innocence.&nbsp; This is why I always get so angry when businesses talk about stolen laptops and the thieves not knowing what they have.&nbsp; You have to assume malicious intent and prove that none exists, not the other way around.</p>
<p>Technorati Tags: <a href="http://technorati.com/tag/security" rel="tag">security</a>, <a href="http://technorati.com/tag/USB%20drive" rel="tag">USB drive</a>, <a href="http://technorati.com/tag/social%20engineering" rel="tag">social engineering</a></p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2006%2F06%2F09%2Fi-need-some-cheap-usb-thumb-drives%2F&amp;title=I+need+some+cheap+USB+thumb+drives%21" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2006%2F06%2F09%2Fi-need-some-cheap-usb-thumb-drives%2F&amp;title=I+need+some+cheap+USB+thumb+drives%21" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2006%2F06%2F09%2Fi-need-some-cheap-usb-thumb-drives%2F&amp;title=I+need+some+cheap+USB+thumb+drives%21" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2006%2F06%2F09%2Fi-need-some-cheap-usb-thumb-drives%2F&amp;title=I+need+some+cheap+USB+thumb+drives%21" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2006%2F06%2F09%2Fi-need-some-cheap-usb-thumb-drives%2F&amp;title=I+need+some+cheap+USB+thumb+drives%21', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2006%2F06%2F09%2Fi-need-some-cheap-usb-thumb-drives%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2006%2F06%2F09%2Fi-need-some-cheap-usb-thumb-drives%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2006%2F06%2F09%2Fi-need-some-cheap-usb-thumb-drives%2F&amp;title=I+need+some+cheap+USB+thumb+drives%21" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2006%2F06%2F09%2Fi-need-some-cheap-usb-thumb-drives%2F&amp;title=I+need+some+cheap+USB+thumb+drives%21" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2006/06/09/i-need-some-cheap-usb-thumb-drives/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
