<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
		xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/"
>

<channel>
	<title>Network Security Blog &#187; Uncategorized</title>
	<atom:link href="http://www.mckeay.net/category/uncategorized/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.mckeay.net</link>
	<description>The views of one man on security, privacy and anything else that catches his attention.  The views expressed on this blog do not reflect the views of my employer or anyone other than myself.</description>
	<lastBuildDate>Wed, 01 Feb 2012 20:45:53 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
	<copyright>2006-2007 </copyright>
	<managingEditor>martin@mckeay.net (Network Security Blog)</managingEditor>
	<webMaster>martin@mckeay.net (Network Security Blog)</webMaster>
	<ttl>1440</ttl>
	<image>
		<url>http://mckeay.net/wp-content/plugins/podpress/images/networksecuritylogo144.jpg</url>
		<title>Network Security Blog</title>
		<link>http://www.mckeay.net</link>
		<width>144</width>
		<height>144</height>
	</image>
	<itunes:subtitle></itunes:subtitle>
	<itunes:summary>The views of one man on security, privacy and anything else that catches his attention</itunes:summary>
	<itunes:keywords></itunes:keywords>
	<itunes:category text="Society &#38; Culture" />
	<itunes:author>Network Security Blog</itunes:author>
	<itunes:owner>
		<itunes:name>Network Security Blog</itunes:name>
		<itunes:email>martin@mckeay.net</itunes:email>
	</itunes:owner>
	<itunes:block>no</itunes:block>
	<itunes:explicit>no</itunes:explicit>
	<itunes:image href="http://mckeay.net/wp-content/plugins/podpress/images/networksecuritylogo300.jpg" />
		<item>
		<title>The Internet is a public place</title>
		<link>http://www.mckeay.net/2008/06/26/the-internet-is-a-public-place/</link>
		<comments>http://www.mckeay.net/2008/06/26/the-internet-is-a-public-place/#comments</comments>
		<pubDate>Fri, 27 Jun 2008 00:42:51 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2008/06/26/the-internet-is-a-public-place/</guid>
		<description><![CDATA[Some time in the distant past, or maybe just a couple of years ago, I signed up for the US-CERT Cyber Security Tips mailing list. Every week they send out an email concerning online security, targeting the average home user with a simple concept they should be able to digest fairly easily. It&#8217;s not something [...]]]></description>
			<content:encoded><![CDATA[<p>Some time in the distant past, or maybe just a couple of years ago, I signed up for the <a href="http://www.us-cert.gov/cas/signup.html">US-CERT Cyber Security Tips mailing list</a>.  Every week they send out an email concerning online security, targeting the average home user with a simple concept they should be able to digest fairly easily.  It&#8217;s not something that&#8217;s going to educate most of the professional paranoids who hang out and read a blog like this one, but it is usually a subject your parents or non-technical friends can learn from.  </p>
<p>This week&#8217;s mailing is &#8220;<a href="http://www.us-cert.gov/cas/tips/ST05-013.html">Guidelines for Publishing Information Online</a>&#8220;.  To quote their own synopsis, <br />
<blockquote><font face="arial, geneva, helvetica">Remember that the internet is a public resource. Avoid putting anything online that you don&#8217;t want the public to see or that you may want to retract.</font></p></blockquote>
<p>If you&#8217;ve reading the blog or listening to the podcast, you&#8217;ll probably have seen me use words very similar to that a number of times.  Especially when <a href="http://securityincite.com/blog/mike-rothman/the-daily-incite-june-26-2008">Uncle Mike Rothman</a> tries to get me going on a subject like privacy.  Privacy isn&#8217;t dead, but the vultures are gathering and it&#8217;s up to each and every one of us to safeguard our own privacy by being aware of what we put on the Internet.  &#8216;Cause once it&#8217;s out there and Google&#8217;s indexed it, you&#8217;ll never get that piece of information back in the bottle.</p>
<p>Isn&#8217;t it funny when someone who blogs as much as I do says be careful what you put on the Internet?</p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F06%2F26%2Fthe-internet-is-a-public-place%2F&amp;title=The+Internet+is+a+public+place" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F06%2F26%2Fthe-internet-is-a-public-place%2F&amp;title=The+Internet+is+a+public+place" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F06%2F26%2Fthe-internet-is-a-public-place%2F&amp;title=The+Internet+is+a+public+place" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F06%2F26%2Fthe-internet-is-a-public-place%2F&amp;title=The+Internet+is+a+public+place" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F06%2F26%2Fthe-internet-is-a-public-place%2F&amp;title=The+Internet+is+a+public+place', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2008%2F06%2F26%2Fthe-internet-is-a-public-place%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2008%2F06%2F26%2Fthe-internet-is-a-public-place%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2008%2F06%2F26%2Fthe-internet-is-a-public-place%2F&amp;title=The+Internet+is+a+public+place" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F06%2F26%2Fthe-internet-is-a-public-place%2F&amp;title=The+Internet+is+a+public+place" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2008/06/26/the-internet-is-a-public-place/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>xkcd: Security Holes</title>
		<link>http://www.mckeay.net/2008/05/15/xkcd-security-holes/</link>
		<comments>http://www.mckeay.net/2008/05/15/xkcd-security-holes/#comments</comments>
		<pubDate>Fri, 16 May 2008 04:19:04 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2008/05/16/xkcd-security-holes/</guid>
		<description><![CDATA[Not to be outdone by Dilbert, xkcd has it&#8217;s own Debian related humor today. Who ever thought that the words &#8220;encryption&#8221; and &#8220;humor&#8221; would apply to the same blog post.]]></description>
			<content:encoded><![CDATA[<p>Not to be outdone by <a href="http://www.mckeay.net/2008/05/15/the-debian-random-number-generator/">Dilbert</a>, xkcd has it&#8217;s own Debian related humor today.  Who ever thought that the words &#8220;encryption&#8221; and &#8220;humor&#8221; would apply to the same blog post.
<div style="text-align: center;"><a href="http://xkcd.com/424/"><img style="max-width: 800px; width: 273px; height: 291px;" src="http://mckeay.net/wp-content/uploads/2008/05/security-holes.png" /><br /></a></div>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F15%2Fxkcd-security-holes%2F&amp;title=xkcd%3A+Security+Holes" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F15%2Fxkcd-security-holes%2F&amp;title=xkcd%3A+Security+Holes" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F15%2Fxkcd-security-holes%2F&amp;title=xkcd%3A+Security+Holes" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F15%2Fxkcd-security-holes%2F&amp;title=xkcd%3A+Security+Holes" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F15%2Fxkcd-security-holes%2F&amp;title=xkcd%3A+Security+Holes', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F15%2Fxkcd-security-holes%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F15%2Fxkcd-security-holes%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F15%2Fxkcd-security-holes%2F&amp;title=xkcd%3A+Security+Holes" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F15%2Fxkcd-security-holes%2F&amp;title=xkcd%3A+Security+Holes" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2008/05/15/xkcd-security-holes/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>WP Security Scan</title>
		<link>http://www.mckeay.net/2008/05/14/wp-security-scan/</link>
		<comments>http://www.mckeay.net/2008/05/14/wp-security-scan/#comments</comments>
		<pubDate>Wed, 14 May 2008 17:19:34 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2008/05/14/wp-security-scan/</guid>
		<description><![CDATA[I don&#8217;t care if you&#8217;re a security blogger or just plain vanilla blogger, you owe it to yourself to check out WP Security Scan. This plugin will scan your WordPress installation and give you suggestions on how to make it more more secure. It found a number of permissions on my blog that had been [...]]]></description>
			<content:encoded><![CDATA[<p>I don&#8217;t care if you&#8217;re a security blogger or just plain vanilla blogger, you owe it to yourself to check out <a href="http://wordpress.org/extend/plugins/wp-security-scan/">WP Security Scan</a>.  This plugin will scan your WordPress installation and give you suggestions on how to make it more more secure.  It found a number of permissions on my blog that had been set incorrectly (now fixed) and gave me other suggestions such as changing the names of the directories from the easily guessed defaults.  I know that a lot of people have a hard enough time just keeping their blogs up to date, but given the rash of WordPress compromises I&#8217;ve heard of recently, this is something everyone running a WP installation needs to do.</p>
<p>Another plugin in the same vein worth checking out is <a href="http://wordpress.org/extend/plugins/wordpress-automatic-upgrade/#post-2560">WordPress Automatic Upgrade</a>.  No more waiting for your service provider to get around to the upgrade or mess with all the funky files yourself.   The only problem I have with it is re-enabling the plugins after an upgrade, which is a relatively minor issue.  I run the plugin occasionally just to get a backup of the blog.  See, I do learn from my mistakes occasionally.</p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F14%2Fwp-security-scan%2F&amp;title=WP+Security+Scan" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F14%2Fwp-security-scan%2F&amp;title=WP+Security+Scan" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F14%2Fwp-security-scan%2F&amp;title=WP+Security+Scan" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F14%2Fwp-security-scan%2F&amp;title=WP+Security+Scan" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F14%2Fwp-security-scan%2F&amp;title=WP+Security+Scan', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F14%2Fwp-security-scan%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F14%2Fwp-security-scan%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F14%2Fwp-security-scan%2F&amp;title=WP+Security+Scan" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F05%2F14%2Fwp-security-scan%2F&amp;title=WP+Security+Scan" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2008/05/14/wp-security-scan/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Bill Brenner leaving SearchSecurity.com</title>
		<link>http://www.mckeay.net/2008/04/25/bill-brenner-leaving-searchsecuritycom/</link>
		<comments>http://www.mckeay.net/2008/04/25/bill-brenner-leaving-searchsecuritycom/#comments</comments>
		<pubDate>Fri, 25 Apr 2008 17:44:16 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2008/04/25/bill-brenner-leaving-searchsecuritycom/</guid>
		<description><![CDATA[Just got an email update from SearchSecurity.com: Bill Brenner has announced that he&#8217;s leaving the company to &#8216;pursue a new challenge&#8217;. That usually means he got a better offer somewhere else, which bodes well for Bill. I&#8217;ve talked to Bill a few times for different articles he was writing and he seems like a pretty [...]]]></description>
			<content:encoded><![CDATA[<p>Just got an email update from <a href="http://searchsecurity.techtarget.com">SearchSecurity.com</a>:  Bill Brenner has announced that he&#8217;s leaving the company to &#8216;pursue a new challenge&#8217;.  That usually means he got a better offer somewhere else, which bodes well for Bill.  I&#8217;ve talked to Bill a few times for different articles he was writing and he seems like a pretty nice guy, so I wish him the best of luck in his new adventure.  Hopefully he tells us all what it is sooner rather than later.  For some odd reason I couldn&#8217;t find the update on the SearchSecurity site yet.</p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F25%2Fbill-brenner-leaving-searchsecuritycom%2F&amp;title=Bill+Brenner+leaving+SearchSecurity.com" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F25%2Fbill-brenner-leaving-searchsecuritycom%2F&amp;title=Bill+Brenner+leaving+SearchSecurity.com" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F25%2Fbill-brenner-leaving-searchsecuritycom%2F&amp;title=Bill+Brenner+leaving+SearchSecurity.com" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F25%2Fbill-brenner-leaving-searchsecuritycom%2F&amp;title=Bill+Brenner+leaving+SearchSecurity.com" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F25%2Fbill-brenner-leaving-searchsecuritycom%2F&amp;title=Bill+Brenner+leaving+SearchSecurity.com', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F25%2Fbill-brenner-leaving-searchsecuritycom%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F25%2Fbill-brenner-leaving-searchsecuritycom%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F25%2Fbill-brenner-leaving-searchsecuritycom%2F&amp;title=Bill+Brenner+leaving+SearchSecurity.com" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F25%2Fbill-brenner-leaving-searchsecuritycom%2F&amp;title=Bill+Brenner+leaving+SearchSecurity.com" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2008/04/25/bill-brenner-leaving-searchsecuritycom/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Network Security Podcast, Episode 101</title>
		<link>http://www.mckeay.net/2008/04/15/network-security-podcast-episode-101/</link>
		<comments>http://www.mckeay.net/2008/04/15/network-security-podcast-episode-101/#comments</comments>
		<pubDate>Wed, 16 Apr 2008 02:58:49 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2008/04/15/network-security-podcast-episode-101/</guid>
		<description><![CDATA[Rich and I review some of the events that went on at RSA, including Rich&#8217;s Analyst panel and Thursday morning&#8217;s &#8216;Avoiding the Security Groundhog Day&#8217; panel. Neither of us were all that impressed with the showroom floor or the keynote speeches given at RSA, but we both enjoyed getting reacquainted with the security professionals we [...]]]></description>
			<content:encoded><![CDATA[<p>Rich and I review some of the events that went on at RSA, including Rich&#8217;s Analyst panel and Thursday morning&#8217;s &#8216;Avoiding the Security Groundhog Day&#8217; panel.  Neither of us were all that impressed with the showroom floor or the keynote speeches given at RSA, but we both enjoyed getting reacquainted with the security professionals we tend to only catch up with at events like this.  Finally we talked about what events we&#8217;d go to in pursuit of furthering a burgeoning security career.  And just in case you&#8217;re wondering where <a href="http://netsecpodcast.com/?p=32">Episode 100</a> is, it was the live video we took last week at the Security Bloggers Meetup.  Not that anyone could have missed it, given the amount we&#8217;ve been talking about it lately.</p>
<p></p>
<p>Tonight&#8217;s Music:  <a href="http://music.podshow.com/sue_html/images/websiteIcon.jpg">Pride by Paula Toledo</a></p>
<p><a href="http://media.libsyn.com/media/mckeay/nsp-041508-ep101.mp3">Network Security Podcast, Episode 101, April 15th, 2008<br /><img style="max-width: 800px;" src="http://www.mckeay.net/mp3button.jpg" /></a></p>
<p>Time:  42:26</p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F15%2Fnetwork-security-podcast-episode-101%2F&amp;title=Network+Security+Podcast%2C+Episode+101" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F15%2Fnetwork-security-podcast-episode-101%2F&amp;title=Network+Security+Podcast%2C+Episode+101" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F15%2Fnetwork-security-podcast-episode-101%2F&amp;title=Network+Security+Podcast%2C+Episode+101" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F15%2Fnetwork-security-podcast-episode-101%2F&amp;title=Network+Security+Podcast%2C+Episode+101" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F15%2Fnetwork-security-podcast-episode-101%2F&amp;title=Network+Security+Podcast%2C+Episode+101', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F15%2Fnetwork-security-podcast-episode-101%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F15%2Fnetwork-security-podcast-episode-101%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F15%2Fnetwork-security-podcast-episode-101%2F&amp;title=Network+Security+Podcast%2C+Episode+101" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F04%2F15%2Fnetwork-security-podcast-episode-101%2F&amp;title=Network+Security+Podcast%2C+Episode+101" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2008/04/15/network-security-podcast-episode-101/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://media.libsyn.com/media/mckeay/nsp-041508-ep101.mp3" length="40804301" type="audio/mpeg" />
		<itunes:duration>0:42:26</itunes:duration>
		<itunes:subtitle>Rich and I review some of the events that went on at RSA, including Rich&#8217;s Analyst panel and Thursday morning&#8217;s &#8216;Avoiding the Security Groundhog Day&#8217; panel.  Neither of us were all that impressed with the showroom floor or th[...]</itunes:subtitle>
		<itunes:summary>Rich and I review some of the events that went on at RSA, including Rich&#8217;s Analyst panel and Thursday morning&#8217;s &#8216;Avoiding the Security Groundhog Day&#8217; panel.  Neither of us were all that impressed with the showroom floor or the keynote speeches given at RSA, but we both enjoyed getting reacquainted with the security professionals we tend to only catch up with at events like this.  Finally we talked about what events we&#8217;d go to in pursuit of furthering a burgeoning security career.  And just in case you&#8217;re wondering where Episode 100 is, it was the live video we took last week at the Security Bloggers Meetup.  Not that anyone could have missed it, given the amount we&#8217;ve been talking about it lately.

Tonight&#8217;s Music:  Pride by Paula Toledo
Network Security Podcast, Episode 101, April 15th, 2008
Time:  42:26










</itunes:summary>
		<itunes:keywords>Uncategorized</itunes:keywords>
		<itunes:author>martin@mckeay.net</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Network Security Podcast, Episode 90</title>
		<link>http://www.mckeay.net/2008/01/15/network-security-podcast-episode-90/</link>
		<comments>http://www.mckeay.net/2008/01/15/network-security-podcast-episode-90/#comments</comments>
		<pubDate>Wed, 16 Jan 2008 04:55:21 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2008/01/15/network-security-podcast-episode-90/</guid>
		<description><![CDATA[Martin is flying solo on the podcast tonight, sort of.&#160; Rich is at Macworld this week and phoned in a two segments, one on Steve Jobs keynote address and one on security vendors at the show.&#160; Add to that one Mac-related security item and we&#8217;ve got a pretty Apple heavy show this week.&#160; Everyone else [...]]]></description>
			<content:encoded><![CDATA[<p>Martin is flying solo on the podcast tonight, sort of.&nbsp; Rich is at Macworld this week and phoned in a two segments, one on Steve Jobs keynote address and one on security vendors at the show.&nbsp; Add to that one Mac-related security item and we&#8217;ve got a pretty Apple heavy show this week.&nbsp; Everyone else in anything related to tech is covering Macworld, so why not us?</p>
<p></p>
<p><span style="font-weight: bold;">Show notes:</span></p>
<ul>
<li>Rich&#8217;s <a href="http://securosis.com/2008/01/15/macworld-keynote-impressions/">Macworld Keynote Impressions</a></li>
<li><a href="http://www.informationweek.com/management/showArticle.jhtml?articleID=205602931">Congressional report slams TSA for security breach</a>.</li>
<li><a href="http://www.symantec.com/enterprise/security_response/weblog/2008/01/banking_in_silence.html">Banking in Silence</a> &#8211; And remember, these things are only going to get smarter and better</li>
<li><a href="http://www.f-secure.com/weblog/archives/00001362.html">First Rogue Cleaning tool for the Mac</a></li>
<li>Tonight&#8217;s song:&nbsp; <a href="http://music.podshow.com/music/listeners/artistdetails.php?BandHash=ddd8227a72c1b501c5f259a39b77332a">Amy B with Brainwashing Machine</a></li>
</ul>
<p><a href="http://media.libsyn.com/media/mckeay/nsp-011508-ep90.mp3">Network Security Podcast, Episode 90<br />
<img src="http://www.mckeay.net/mp3button.jpg" /></a></p>
<p>Time:&nbsp; 27:41</p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F15%2Fnetwork-security-podcast-episode-90%2F&amp;title=Network+Security+Podcast%2C+Episode+90" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F15%2Fnetwork-security-podcast-episode-90%2F&amp;title=Network+Security+Podcast%2C+Episode+90" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F15%2Fnetwork-security-podcast-episode-90%2F&amp;title=Network+Security+Podcast%2C+Episode+90" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F15%2Fnetwork-security-podcast-episode-90%2F&amp;title=Network+Security+Podcast%2C+Episode+90" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F15%2Fnetwork-security-podcast-episode-90%2F&amp;title=Network+Security+Podcast%2C+Episode+90', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F15%2Fnetwork-security-podcast-episode-90%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F15%2Fnetwork-security-podcast-episode-90%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F15%2Fnetwork-security-podcast-episode-90%2F&amp;title=Network+Security+Podcast%2C+Episode+90" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F15%2Fnetwork-security-podcast-episode-90%2F&amp;title=Network+Security+Podcast%2C+Episode+90" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2008/01/15/network-security-podcast-episode-90/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
			<enclosure url="http://media.libsyn.com/media/mckeay/nsp-011508-ep90.mp3" length="1" type="audio/mpeg" />
		<itunes:duration>0:00:01</itunes:duration>
		<itunes:subtitle>Martin is flying solo on the podcast tonight, sort of.&#160; Rich is at Macworld this week and phoned in a two segments, one on Steve Jobs keynote address and one on security vendors at the show.&#160; Add to that one Mac-related security item and w[...]</itunes:subtitle>
		<itunes:summary>Martin is flying solo on the podcast tonight, sort of.&#160; Rich is at Macworld this week and phoned in a two segments, one on Steve Jobs keynote address and one on security vendors at the show.&#160; Add to that one Mac-related security item and we&#8217;ve got a pretty Apple heavy show this week.&#160; Everyone else in anything related to tech is covering Macworld, so why not us?

Show notes:

Rich&#8217;s Macworld Keynote Impressions
Congressional report slams TSA for security breach.
Banking in Silence &#8211; And remember, these things are only going to get smarter and better
First Rogue Cleaning tool for the Mac
Tonight&#8217;s song:&#160; Amy B with Brainwashing Machine

Network Security Podcast, Episode 90

Time:&#160; 27:41










</itunes:summary>
		<itunes:keywords>Uncategorized</itunes:keywords>
		<itunes:author>martin@mckeay.net</itunes:author>
		<itunes:explicit>no</itunes:explicit>
		<itunes:block>no</itunes:block>
	</item>
		<item>
		<title>Web server fall down, go boom!</title>
		<link>http://www.mckeay.net/2008/01/04/web-server-fall-down-go-boom/</link>
		<comments>http://www.mckeay.net/2008/01/04/web-server-fall-down-go-boom/#comments</comments>
		<pubDate>Fri, 04 Jan 2008 16:30:29 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://mckeay.net/?p=3</guid>
		<description><![CDATA[I woke up this morning with a long list of things to do, but the Gods of Computing had other ideas. One of the first things I noticed when I logged into email was a lack of new emails, which is odd considering I usually get several hundred spams a night if nothing else. My [...]]]></description>
			<content:encoded><![CDATA[<p>I woke up this morning with a long list of things to do, but the Gods of Computing had other ideas.  One of the first things I noticed  when I logged into email was a  lack of new emails, which is odd considering I usually get several hundred spams a night if nothing else.  My brain was still fuzzy from lack of caffeine, but this set up some alarm bells in my head.  A quick surf to the web site showed that my server was down, and a few pings got now response, and SSH wasn&#8217;t responding either.  After a few words I was glad my children weren&#8217;t awake to hear, I got a cup of coffee and started troubleshooting.</p>
<p>Turns out that somewhere in the middle of the night, the PCI bus on the server&#8217;s motherboards decided to bite the dust.  It shows memory errors where there were none before.  The system comes up, and even though the NIC responds, it&#8217;s not allowing connectivity in any way shape or form.  I can get on the server locally, but no network connections are being established.</p>
<p>Taking this as a sign from above that maybe it&#8217;s time to switch from hosting the site and my email at my house, I&#8217;ve switched all of my DNS, email and web services over to BlueHost.  And since I have to rebuild everything anyways, I&#8217;ve switched from Movable Type to WordPress, something I&#8217;ve been thinking about doing for over a year now.  And despite an earlier resolution to backup the entire database on a regular basis, the latest backup I have is from the end of August, so I&#8217;ll be losing a number of posts and comments until I take the time to recover them from the now defunct server.    Luckily I&#8217;ve hardly been posting the last few months, so it&#8217;s probably no more than a couple of dozen posts lost.</p>
<p>I am not a happy camper, especially since I already had a full days worth of work ahead of me.  I&#8217;ll probably take some more time this morning to at least get a better looking page up, but most of the real work is going to have to wait until another time.  And since I have a report dues Monday, it looks like I&#8217;ll be working all weekend.  And to top it all off, I managed to spill coffee on my sound board while trying to reach around to the back of the dying server.  It seems to be okay so far, but I said more words the kids shouldn&#8217;t hear when that happened.</p>
<p>At least mail is working and the site is back up, even though it&#8217;ll take a day or two to have the DNS changes to propagate throughout the Internet.  If you haven&#8217;t already changed over to the Feedburner feed, now would be a good time.  As soon as I get that pointed to the new RSS feed that is.  Speaking of which, I&#8217;ll be back once I&#8217;ve fixed that too</p>
<p>Edit:  The FeedBurner feed is <a href="http://feeds.feedburner.com/MartinMcKeaysNetworkSecurityBlog">http://feeds.feedburner.com/MartinMcKeaysNetworkSecurityBlog</a></p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F04%2Fweb-server-fall-down-go-boom%2F&amp;title=Web+server+fall+down%2C+go+boom%21" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F04%2Fweb-server-fall-down-go-boom%2F&amp;title=Web+server+fall+down%2C+go+boom%21" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F04%2Fweb-server-fall-down-go-boom%2F&amp;title=Web+server+fall+down%2C+go+boom%21" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F04%2Fweb-server-fall-down-go-boom%2F&amp;title=Web+server+fall+down%2C+go+boom%21" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F04%2Fweb-server-fall-down-go-boom%2F&amp;title=Web+server+fall+down%2C+go+boom%21', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F04%2Fweb-server-fall-down-go-boom%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F04%2Fweb-server-fall-down-go-boom%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F04%2Fweb-server-fall-down-go-boom%2F&amp;title=Web+server+fall+down%2C+go+boom%21" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2008%2F01%2F04%2Fweb-server-fall-down-go-boom%2F&amp;title=Web+server+fall+down%2C+go+boom%21" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2008/01/04/web-server-fall-down-go-boom/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>PCI (and compliance) are just tools</title>
		<link>http://www.mckeay.net/2007/05/29/pci-and-compliance-are-just-tools/</link>
		<comments>http://www.mckeay.net/2007/05/29/pci-and-compliance-are-just-tools/#comments</comments>
		<pubDate>Wed, 30 May 2007 05:46:31 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2007/05/29/pci-and-compliance-are-just-tools/</guid>
		<description><![CDATA[
]]></description>
			<content:encoded><![CDATA[<p>Michael Dahn started an interesting conversation with his post, &#8220;<a href="http://pcianswers.com/2007/05/22/putting-an-end-to-compliance-via-continous-security/">Putting an end to compliance via continuous security</a>&#8220;.&nbsp; He wonders why he and other auditors come back to companies and find the same problems year after year.&nbsp; Why can&#8217;t a company stay compliant over the course of a year?&nbsp; The reason, or at least a reason is because the technologies might be changing, but the mentality that created the problem in the first case is still there.&nbsp; </p>
<p>I don&#8217;t claim this as an original idea, it&#8217;s something I picked up from my teacher when I trained for my GSNA.&nbsp; She stated that until you can change the way people are thinking about security, similar problems are going to continue to evolve again and again.&nbsp; Policy might change the perception of security measures, education works better and sometimes people have to be replaced.&nbsp; But until you can instill a proper security mindset in your users, problems will continue.</p>
<p>I always thought of PCI and compliance in general as a lever to promote change in the corporation.&nbsp; People don&#8217;t like change and management really doesn&#8217;t like security managers who ask for large increases in their budgets.&nbsp; But when you can use the compliance issue as a justification, you&#8217;ve taken that item from a &#8216;nice to have&#8217; to a &#8216;must have&#8217;.&nbsp; There are other ways to justify you&#8217;re work and your technology, but an itemized list of requirements helps a lot.</p>
<p>I also view becoming complaint as a secondary goal to becoming secure.&nbsp; If you keep your priorities in that order, it should make doing both much easier in the long run.&nbsp; I can&#8217;t say I&#8217;ve been completely successful at this in the past, but I found it made my life much easier when I do.&nbsp; Focusing on a security solution that also happens go be a compliance solution is much more important than finding a compliance solution that&#8217;s secure.&nbsp; </p>
<p>There are a lot of good comments on this thread.&nbsp; I like the idea of a continuous approach to security, but it will be a change to the way people think.&nbsp; If PCI or some other compliance framework is the tool you need to effect that change, use it.&nbsp; But don&#8217;t lose sight of the real goal, which is the security of your company, not the compliance itself.</p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F05%2F29%2Fpci-and-compliance-are-just-tools%2F&amp;title=PCI+%28and+compliance%29+are+just+tools" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F05%2F29%2Fpci-and-compliance-are-just-tools%2F&amp;title=PCI+%28and+compliance%29+are+just+tools" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F05%2F29%2Fpci-and-compliance-are-just-tools%2F&amp;title=PCI+%28and+compliance%29+are+just+tools" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F05%2F29%2Fpci-and-compliance-are-just-tools%2F&amp;title=PCI+%28and+compliance%29+are+just+tools" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F05%2F29%2Fpci-and-compliance-are-just-tools%2F&amp;title=PCI+%28and+compliance%29+are+just+tools', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2007%2F05%2F29%2Fpci-and-compliance-are-just-tools%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2007%2F05%2F29%2Fpci-and-compliance-are-just-tools%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2007%2F05%2F29%2Fpci-and-compliance-are-just-tools%2F&amp;title=PCI+%28and+compliance%29+are+just+tools" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F05%2F29%2Fpci-and-compliance-are-just-tools%2F&amp;title=PCI+%28and+compliance%29+are+just+tools" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2007/05/29/pci-and-compliance-are-just-tools/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>I only wish Greg Dean was right</title>
		<link>http://www.mckeay.net/2007/04/17/i-only-wish-greg-dean-was-right/</link>
		<comments>http://www.mckeay.net/2007/04/17/i-only-wish-greg-dean-was-right/#comments</comments>
		<pubDate>Tue, 17 Apr 2007 23:17:07 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2007/04/17/i-only-wish-greg-dean-was-right/</guid>
		<description><![CDATA[
]]></description>
			<content:encoded><![CDATA[<p>Unluckily, given what&#8217;s been <a href="http://blog.wired.com/27bstroke6/2007/04/docs_from_flori.html">happening in Florida the last couple of months</a>, I think Greg Dean of the <a href="http://www.reallifecomics.com/archive/070417.html">Real Life cartoon is wrong</a> and the premise of &#8220;Man of the Year&#8221; is closer to reality than the thinks.</p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F17%2Fi-only-wish-greg-dean-was-right%2F&amp;title=I+only+wish+Greg+Dean+was+right" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F17%2Fi-only-wish-greg-dean-was-right%2F&amp;title=I+only+wish+Greg+Dean+was+right" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F17%2Fi-only-wish-greg-dean-was-right%2F&amp;title=I+only+wish+Greg+Dean+was+right" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F17%2Fi-only-wish-greg-dean-was-right%2F&amp;title=I+only+wish+Greg+Dean+was+right" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F17%2Fi-only-wish-greg-dean-was-right%2F&amp;title=I+only+wish+Greg+Dean+was+right', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F17%2Fi-only-wish-greg-dean-was-right%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F17%2Fi-only-wish-greg-dean-was-right%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F17%2Fi-only-wish-greg-dean-was-right%2F&amp;title=I+only+wish+Greg+Dean+was+right" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F17%2Fi-only-wish-greg-dean-was-right%2F&amp;title=I+only+wish+Greg+Dean+was+right" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2007/04/17/i-only-wish-greg-dean-was-right/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hacking the Cisco NAC</title>
		<link>http://www.mckeay.net/2007/04/11/hacking-the-cisco-nac/</link>
		<comments>http://www.mckeay.net/2007/04/11/hacking-the-cisco-nac/#comments</comments>
		<pubDate>Wed, 11 Apr 2007 14:01:48 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://www.mckeay.net/2007/04/11/hacking-the-cisco-nac/</guid>
		<description><![CDATA[
]]></description>
			<content:encoded><![CDATA[<p>Mirko from <a href="http://www.insecuremag.com/">(In)Secure Magazine</a> and <a href="http://www.net-security.org/">Help Net Security</a> sent me a link to a <a href="http://www.net-security.org/article.php?id=1001">video they recently published</a> from Black Hat Europe.&nbsp; Two researchers presented a paper there on how to hack Cisco NAC.&nbsp; I think many people already realized that client side controls for NAC are circumventable, but this is the first time I&#8217;ve heard of that someone actually created an exploit.&nbsp; The two researchers had just given a talk and while they haven&#8217;t posted the exploit code yet, it probably won&#8217;t be too long before it becomes available.</p>
<p>Technorati Tags: <a class="performancingtags" href="http://technorati.com/tag/security" rel="tag">security</a>, <a class="performancingtags" href="http://technorati.com/tag/mckeay" rel="tag">mckeay</a>, <a class="performancingtags" href="http://technorati.com/tag/black%20hat%20europe" rel="tag">black hat europe</a>, <a class="performancingtags" href="http://technorati.com/tag/Cisco" rel="tag">Cisco</a>, <a class="performancingtags" href="http://technorati.com/tag/NAC" rel="tag">NAC</a></p>

<span class="slashdigglicious">
<a href="http://slashdot.org/bookmark.pl?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F11%2Fhacking-the-cisco-nac%2F&amp;title=Hacking+the+Cisco+NAC" title="Slashdot It!"><img src="http://slashdot.org/favicon.ico" height="16" width="16" alt="[Slashdot]" /></a>
<a href="http://digg.com/submit?phase=2&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F11%2Fhacking-the-cisco-nac%2F&amp;title=Hacking+the+Cisco+NAC" title="Digg This Story"><img src="http://digg.com/favicon.ico" width="16" height="16" alt="[Digg]" /></a>
<a href="http://reddit.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F11%2Fhacking-the-cisco-nac%2F&amp;title=Hacking+the+Cisco+NAC" title="Reddit"><img src="http://reddit.com/favicon.ico" width="16" height="16" alt="[Reddit]" /></a>
<a href="http://del.icio.us/post?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F11%2Fhacking-the-cisco-nac%2F&amp;title=Hacking+the+Cisco+NAC" title="Save to del.icio.us" onclick="window.open('http://del.icio.us/post?v=4&amp;noui&amp;jump=close&amp;url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F11%2Fhacking-the-cisco-nac%2F&amp;title=Hacking+the+Cisco+NAC', 'delicious', 'toolbar=no,width=700,height=400'); return false;"><img src="http://images.del.icio.us/static/img/delicious.small.gif" width="16" height="16" alt="[del.icio.us]" /></a>
<a href="http://www.facebook.com/share.php?u=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F11%2Fhacking-the-cisco-nac%2F" title="Share on Facebook"><img src="http://www.facebook.com/favicon.ico" width="16" height="16" alt="[Facebook]" /></a>
<a href="http://technorati.com/faves?add=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F11%2Fhacking-the-cisco-nac%2F" title="Add to my Technorati Favorites"><img src="http://technorati.com/favicon.ico" width="16" height="16" alt="[Technorati]" /></a>
<a href="http://www.google.com/bookmarks/mark?op=edit&amp;output=popup&amp;bkmk=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F11%2Fhacking-the-cisco-nac%2F&amp;title=Hacking+the+Cisco+NAC" title="Save to Google Bookmarks"><img src="http://www.google.com/favicon.ico" width="16" height="16" alt="[Google]" /></a>
<a href="http://www.stumbleupon.com/submit?url=http%3A%2F%2Fwww.mckeay.net%2F2007%2F04%2F11%2Fhacking-the-cisco-nac%2F&amp;title=Hacking+the+Cisco+NAC" title="Stumble it!"><img src="http://www.stumbleupon.com/favicon.ico" width="16" height="16" alt="[StumbleUpon]" /></a>
</span>]]></content:encoded>
			<wfw:commentRss>http://www.mckeay.net/2007/04/11/hacking-the-cisco-nac/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

