Christmas Video

December 17, 2008 at 9:58 pm | In Blog | Leave a Comment

We made a Christmas Video this week, you can view it here. Hope you enjoy it.
A version you can play in Media Player is here.

Nmap Network Scanning: The Official Nmap Project Guide to Network Discovery and Security Scanning

December 9, 2008 at 8:52 am | In Blog, NMAP, Network Scanning, Security, network | Leave a Comment

Nmap Network Scanning: The Official Nmap Project Guide to Network Discovery and Security Scanning by Gordon “Fyodor” Lyon has been released. Here is the abstract:

Nmap Network Scanning is the official guide to the Nmap Security Scanner, a free and open source utility used by millions of people for network discovery, administration, and security auditing. From explaining port scanning basics for novices to detailing low-level  packet crafting methods used by advanced hackers, this book by Nmap’s original author suits all levels of security and networking professionals. The reference guide documents every Nmap feature and option, while the remainder demonstrates how to apply them to quickly solve real-world tasks. Examples and diagrams show actual communication on the wire. Topics include subverting firewalls and intrusion detection systems, optimizing Nmap performance, and automating common networking tasks with the Nmap Scripting Engine.

You can find reviews, sample chapters, and a detailed summary at: http://nmap.org/book/

The book is available at Amazon: http://www.amazon.com/dp/0979958717?tag=secbks-20. It’s Amazon.com Sales Rank is #267 in Books and is #1 in Books > Computers & Internet > Networking > Network Security.

About half of the content is available in the free online edition. Chapters exclusive to the print edition include “Detecting and Subverting Firewalls and Intrusion Detection Systems”, “Optimizing Nmap Performance”, “Port Scanning Techniques and Algorithms”, “Host Discovery (Ping Scanning)”, and more. The solution selections which provide detailed instructions on the best way to solve common networking tasks are also exclusive to the printed book. The final table of contents is now available, as is the cover art.

I’ve ordered my copy!

Links for December 3, 2008

December 3, 2008 at 4:42 pm | In Blog, IT Security, IT Service Management, Information Security, MOSS, MOSS 2007, Project Management, Security, SharePoint, Vista, server 2008 | Leave a Comment

 

  • Improved power savings over the RTM release of Windows Server 2008
  • Integration of Hyper-V into Windows Server 2008.  SP2 includes the Hyper-V RTM Code.
  • All previously released hotfixes and security updates are rolled into SP2.
  • For Windows Vista IT Pros will see improvements in:
  • Emerging Hardware Support such as the ability to record data on Blu-Ray media, Bluetooth 2.1 feature pack as well as support for the new VIA 64-Bit CPU.
  • Improvements in performance including Windows Search 4 that enhances indexing performance and integrating Windows Search into Group Policy.
  • A new Wireless Feature Pack and fixes for issues where Wi-Fi Connections were lost after resuming a PC from Sleep.
  • A really cool service pack clean-up tool that restores hard disk space by deleting the previous versions of the files serviced by Windows Vista SP2.
  • Of course this service pack includes all previously released updates, hotfixes, and patches since the release of Vista Service Pack 1.

Paul Thurrott chimes in with What’s new in Windows Vista and Windows Server 2008 SP2?

From Springboard Series: The Resource for Windows Desktop IT ProfessionalsWindows Vista SP2 – What’s Inside? What’s Important?

From SharePoint Blank by John Anderson – Adding a My Links Web Part

From Realtime Nexus: IT eBook alertsThe Shortcut Guide to IT Service Management and Automation

The Shortcut Guide to IT Service Management and Automation by Rebecca Herold is available.

The Shortcut Guide to IT Service Management and Automation provides an insightful overview of IT service management and the service management life cycle. Author and compliance expert Rebecca Herold demonstrates how technology acts as a strategic differentiator by enabling business growth, driving operational efficiencies to lower maintenance costs, optimizing outcomes, and reducing IT risks.

From SharePoint Joel: PostsBuilding Cloud Based Applications of the Future for SharePoint Online and Windows Azure

I think if Developers could grasp these concepts and would start thinking like this, trying to build minimal footprint apps, and where they build their apps tight and with seemless integration into SharePoint with a lightweight client side footprint leveraging a simple javascript "include" mentality with flash, a simple reference passing relevant parameters, even silverlight dropping a bot, the interaction could be as rich as the developers desire and they could manage them the way they want to manage their code… separate from SharePoint.   (Remember this is cloud not intranet.) This is particularly important in the hosted space, and now the sky is the limit when you think of who can consume your cloud service when you build your webparts and gadgets.  Now when you build your gallery, it isn’t a local consumption the world is yours.  As developers move to the hostel model way of thinking I think you’ll see less arguing about modifying custom site definitions, because you won’t be able to touch them.  You’re also much more likely to find a host that will host your aspx pages and assemblies in an isolated while still multi-tennant than you would find a hoster who wants to put your assemblies and code with your SharePoint sites.  Does it restrict what you can do?  Try to think outside the box… Think in the cloud!

Mike Rothman’s (Security Incite Rants) eBay account got compromised.

From PM HutHow to Report Status on a Project

Your boss has asked you to take the lead on a project in your company. Maybe you are a project manager, or maybe you are not. One thing is certain. Very few people know how to report status on a project, even when they are expert project manager…

From End User SharePoint – JQuery for Everyone: Accordion Left Navaccordion-style left navigation menu for your SharePoint site.

Richard Bejtlich (TaoSecurity) – Letters You Will Need to Know: 201 CMR 17.00. Richard follow-up on a post at SecurityCurve on 201 CMR 17.00: Standards for The Protection of Personal Information of Residents of the Commonwealth, a new Massachusetts law. Section 17.03 sets the basic tone:

Every person that owns, licenses, stores or maintains personal information about a resident of the Commonwealth shall develop, implement, maintain and monitor a comprehensive, written information security program applicable to any records containing such personal information.

Links for December 2, 2007

December 2, 2008 at 4:35 pm | In Apple, Blog, Firefox, Information Security, MOSS, MOSS 2007, Mac, Microsoft, Microsoft Live, Security, SharePoint, SkyDrive, antivirus | Leave a Comment

From Brian Krebs – Apple: Mac Users Should Get Antivirus Software

In a notable shift, Apple is now recommending that Mac users install anti-virus software to help users secure their systems. In a technical note quietly published to its support site on Nov. 21, Apple issued the following advice:

"Apple encourages the widespread use of multiple anti-virus utilities so that virus programmers have more than one application to circumvent, thus making the whole virus writing process more difficult."

 

From Indexed – Don’t yell at me. One of my favorite feeds and this one is so true:

image

From cgisecurity.netInsecure Magazine #19 Released

In this issue.

  • The future of AV: looking for the good while stopping the bad
  • Eight holes in Windows login controls
  • Extended validation and online security: EV SSL gets the green light
  • Interview with Giles Hogben, an expert on identity and authentication technologies working at ENISA
  • Web filtering in a Web 2.0 world
  • RSA Conference Europe 2008
  • The role of password management in compliance with the data protection act
  • Securing data beyond PCI in a SOA environment: best practices for advanced data protection
  • Three undocumented layers of the OSI model and their impact on security
  • Interview with Rich Mogull, founder of Securosis

From EndUser SharePoint – How to manage media file types in SharePoint. Mark created a Flash Media Library template that you can download. This is a quick template that will allow you to upload Camtasia Studio screencasts and expose only the HTML wrapper for presenting the screencasts. Good comments discussion on SharePoint vs. File Shares for videos.

EndUSer SharePoint also links us to: Understanding Calendar Columns in a SharePoint List Calendar View

Microsoft Security Assessment Tool updated.

How a Firefox Add-On Can Get You on the Plane First – story about using the Firefox add-on ‘ReloadEvery’ to be first in line on Southwest Airlines flight.

From Windows Experience BlogUpdated Windows Live Web Services: Microsoft is launching updated versions of Windows Live Home, Spaces, Events, and SkyDrive and launching completely new services for Windows Live such as Groups, Photos, and Profile.

A notable changes is 25GB of *free* storage in SkyDrive. I use SkyDrive to backup by Quicken and QuickBooks files and photos. I was getting close to the original 5GB limit so now I have an extra 20GB of storage to use! I also backup everything to an external hard drive. SkyDrive is just an insurance policy.

Blog at WordPress.com. | Theme: Pool by Borja Fernandez.
Entries and comments feeds.