Skip to content
/dev/random

/dev/random

"If the enemy leaves a door open, you must rush in." – Sun Tzu

  • About Me
    • About Me
    • Online Presentations
    • PGP Public Key
  • Disclaimer
  • Tools
    • alerts2afterglow
    • hoover
    • inotes.py
    • known_hosts_bruteforcer
    • pastemon
    • oplb
    • ossec_dashboard
    • ossec2dshield
    • twittermon
    • rrhunter
    • syslog2loggly

Month: October 2011

Hit by the RSA Attackers == Potential Target for V€ndor$?

October 28, 2011 Security Leave a comment

Just a small reflection about the list of potential victims of the RSA attackers published by Brian Krebs a few days ago… I won’t come back on this attack, almost everything has been said on this topic. Brian’s post reports a list of AS (“Autonomous Systems“) which exchanged some traffic

Continue reading »

Book Review: BT5 Wireless Penetration Testing

October 27, 2011 Pentesting, Security One comment

Finally, I found some time to write my review of another book: “BackTrack 5 Wireless Penetration Testing“. The book was written by Vivek Ramachadran. Good coincidence? Vivek was present during the last edition of BruCON and gave a workshop called “Wi-Fi malware for fun and profit“. Being quite busy during

Continue reading »

Detecting Defaced Websites with OSSEC

October 25, 2011 Logs Management / SIEM, OSSEC, Security, Software One comment

In the scope of the OSSEC Week, here is a quick contribution which can greatly help you to monitor suspicious changes on a website. Today, your corporate website is the very first contact you have with your customers, partners, press, etc. It’s your window to the world. Nobody can pretend

Continue reading »

Mapping OSSEC Alerts with AfterGlow

October 24, 2011 Logs Management / SIEM, Software 5 comments

This week is the third annual OSSEC week! A good initiative to promote this open source log management solution. This post is my first contribution to the OSSEC community, I hope to publish more posts if I’ve enough time. OSSEC is a excellent tool to collect and analyze the events

Continue reading »

Quick ISSA-Be Meeting Wrap-Up

October 18, 2011 Belgium, Event, Security 2 comments

Quick wrap-up about the last ISSA-Be chapter meeting… Wim Remes (@wimremes) was on stage to speak about visualization and his project to join the (ISC)² board. In our world (information security), we collect a lot of (technical) data. How to present them in an efficient way to manager or non-techies?

Continue reading »

Use the Ports, Luke!

October 17, 2011 IPv6, ISP, Logs Management / SIEM One comment

Last week, I went to London to attend the RSA Conference Europe (my wrap up is here). One of the sessions I followed was presented by Eric Vyncke about “forensics in a post IPv4 exhaustion“. You should live on another planet if you’re not aware of the coming IPv4 exhaustion.

Continue reading »

RSA Conference Europe 2011 Wrap-Up

October 13, 2011 Event, Security Leave a comment

This is my wrap-up of the last RSA Conference which occurred in London. As usual, it’s a mix of t-shirts and ties. But, vendors followed the rules of the game and came with less promotional material for their next-top-ultra-last-generation-solution-to-beat-all-hackers-from-outer-space. As usual, the first half-day was dedicated to keynotes with great

Continue reading »

The Great Firewall of Belgium is Back!

October 4, 2011 Belgium, ISP 4 comments

Waaaaaaarning! Evil leechers! Internet censorship is back in Belgium! The “DNS blocking” technique was already applied in Belgium in 2009 to block access to some controversial websites (read my old post here). Today, we learned that the “Belgium Antipiracy Federation” finally won its court case against two major Belgian ISPs.

Continue reading »

Upcoming Events

Here is a list of events that I will attend and cover via Twitter and wrap-ups. Ping me if you want to meet! The list is regularly updated.

SANS Munich 2023

Recent Articles

  • Hack.lu 2023 Wrap-Up
  • [SANS ISC] macOS: Who’s Behind This Network Connection?
  • [SANS ISC] Python Malware Using Postgresql for C2 Communications
  • [SANS ISC] More Exotic Excel Files Dropping AgentTesla
  • [SANS ISC] Have You Ever Heard of the Fernet Encryption Algorithm?

Time Machine

Recent Tweets

  • Error: Could not authenticate you.

RSS NVD Vulnerabilities Feed

Copyright Xavier Mertens © 2003-2023 | Powered by Xameco.
This website uses cookies to improve your experience. By using our services, you agree to our use of cookies. Accept Learn more
Privacy & Cookies Policy

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Non-necessary
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
SAVE & ACCEPT