Bios Password

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Sunday, March 17, 2013

ForSec News Linkfest

Posted on 9:26 PM by Unknown

I am super-behind on my blog posting of Forensics/Security news of note.

Here is a rapid-fire linkfest dump.

Some is old news and some is hot-off-the-press.

Cross-pollination is to be expected.

Enjoy!

Mostly “For”

  • CaseLeads: China Cyber Espionage Exposed, Account Issues with Twitter and Plenty of Great How-To's - SANS Computer Forensics and Incident Response Blog
  • Hiding Data in Hard-Drive's Service Areas (PDF Link) - Ariel Berkman - Recover Information Technologies LTD
  • Intro to Report Writing for Digital Forensics - Brad Garnett - Part I - SANS Computer Forensics and Incident Response Blog
  • Report Writing for Digital Forensics: Part II - Brad Garnett - Part I - SANS Computer Forensics and Incident Response Blog
  • HolisticInfoSec: toolsmith: Redline, APT1, and you – we’re all owned - Holistic Info blog
  • Open Source Forensics for Windows, MacOS, and Linux - LoveMyTool blog. Casey Mullis outlines a forensic tool, the Digital Forensics Framework. Available directly or pre-packaged in Debian, Backtrack, DEFT, the SANS SIFT kit, and CERT.org package repository.
  • Location Data within JPGs - Forensics from the Sausage Factory blog
  • High Watermark - The Hacker Factor Blog - I am SO digging into Dr. Neal Krawetz’s awesome blog that covers all manner of things, but primarily photo/image forensics. Jump over and prepare to get lost and overload your favorites/bookmark folder in the process!
  • (IN)SECURE Magazine - Issue 37 “Becoming a malware analyst edition” - now available for free PDF format download.
  • Clean Windows Registry of USB Drives - GetUSB.info
  • 3RPG - Rapid RegRipper Plugin Generator v0.3 - Hexacorn
  • 3RPG – 4 RegRipper Plugins in 15 minutes - Hexacorn
  • 3RPG – Rapid RegRipper Plugin Development - Hexacorn
  • BinMode: IE Index.dat - Windows Incident Response blog

Supplemented with some “Sec”

  • Another Forensics Blog: Finding and Reverse Engineering Deleted SMS Messages
  • In-Depth Look: APT Tools of the Trade - TrendLabs Security Intelligence Blog
  • The strange case of Gamarue propagation - Microsoft Malware Protection Center
  • Research & Analysis of Zero-Day & Advanced Targeted Threats:YAJ0: Yet Another Java Zero-Day - Malware Intelligence Lab from FireEye
  • UAC Impact on Malware - Journey into Incident Response blog
  • Static analysis tool for examining binaries - Help Net Security
  • Update: PDFiD Version 0.1.0 - Didier Stevens
  • Update: pdf-parser Version 0.4.1 - Didier Stevens
  • OS Image Wrangling - SpiderLabs Anterior
  • Windows 8: Tracking Opened Photos - Digital Forensics Stream blog
  • Wow6432Node: Registry Redirection - Windows Incident Response blog
  • Houston We’ve Had a Problem – Wow64 - Journey into Incident Response blog
  • Wipe the drive! Stealthy Malware Persistence Mechanism - Part 1 - SANS ISC Diary blog
  • Wipe the drive! Stealthy Malware Persistence - Part 2 - SANS ISC Diary blog

Please correct me I I am wrong but I am now seeing the terms “YAJ0” and “YAJU” pretty often in blog posts and titles.  YAJ0 seems to mean “Yet Another Java Zero-Day” and YAJU probably means “Yet Another Java Update”.  That both of these are now come in text-worthy shorthand forms is no LOL-ROLFLMAO matter.

And a final object lesson…

Be careful in your watchfulness to not overlook the obvious hiding in plain sight.

  • A Smuggling Trick - Daniel Miessler

Cheers!

Claus Valca

Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest
Posted in forensics, graphics, Link Fest, security, utilities | No comments
Newer Post Older Post Home
View mobile version

0 comments:

Post a Comment

Subscribe to: Post Comments (Atom)

Popular Posts

  • Finally! Time to Post! New material list
    After a recent text from my bro reminding me it has been since March since I’ve done a blog post, I was finally able to clear the schedule a...
  • Oscar watch Linkpost
    Alvis and Lavie are watching the Oscars tonight and I’m along for the ride. I wasn’t able to come even close to getting out some of the pos...
  • New Year’s Day - First Post 2011
    Same day I came out with my first post after a long drought, I fell upon this article Blogging Seems To Have Peaked, Says Pew Report over a...
  • Utility Gumbo
    There’s a lot in this pot.  Probably something everyone can find to enjoy. I’m serving it up tonight out of the back of the truck on the s...
  • iodd : Multi-boot madness!
    Like many computer technicians and responders, I seem to always have at hand a collection of bootable media; CD’s, DVD’s, USB-HDD’s, flash m...
  • Ubuntu 13.10 Upgrade - Lessons Learned & VIDMA utility found
    A few weeks ago a new release of Ubuntu came out. Naturally that meant it was update time! I have been getting pretty good at this now so ...
  • Interesting Malware in Email Attempt - URL Scanner Links
    Last weekend I spent some time with extended family helping confirm for them that their on-line email account got hacked and had been used t...
  • Windows 8 Linkage: A Bit Behind the Ball
    CC attribution: behind the eight ball by Ed Schipul on flickr . OK. Confession time. I’m more than a bit exhausted this weekend. Besides a...
  • This Week in Security and Forensics: Beware the cake!
    Cube Party! image used with permission from John Walker at "rockpapershotgun.com" Yeah, the cake is a Portal thing.  Let’s d...
  • ForSec Linkfest - 2013 DST Fallback Edition
    FYI…tomorrow morning at 2 AM here in the United States of America it will be time to “fall back” from DST . One more hour of sleep and then ...

Categories

  • Active Directory
  • anti-virus software
  • Apple
  • architecture
  • art
  • AVG
  • Blogger
  • blogging
  • books
  • boot-cd's
  • browsers
  • cars
  • cell-phones
  • cheat sheets
  • Chrome/Chromium
  • command-line interface
  • cooking
  • crafts
  • crazy
  • curmudgeon
  • DHC
  • Dr. Who
  • E-P1
  • Education
  • family
  • Firefox
  • firewalls
  • For the Gentleman
  • forensics
  • Gmail
  • Google
  • graphics
  • hacks
  • hardware
  • humor
  • hurricanes
  • imagex
  • Internet Explorer
  • iOS
  • iPhone
  • iPod
  • iTunes
  • Kindle
  • Learning
  • Link Fest
  • Linux
  • malware tools
  • Microsoft
  • movies
  • music
  • networking
  • NewsFox
  • NFAT
  • Nook
  • Opera
  • organization
  • PDF's
  • photography
  • politics
  • PowerShell
  • recipes
  • Remote Support
  • RSS
  • science
  • Scripting
  • search engines
  • security
  • Shuttle SFF
  • software
  • Texana
  • Thunderbird
  • troubleshooting
  • TrueCrypt
  • tutorials
  • utilities
  • VBscript
  • video
  • Virtual PC
  • virtualization
  • viruses
  • Vista
  • Vista mods
  • wallpapers
  • Win FE
  • Win PE
  • Win RE
  • Windows 7
  • Windows 8
  • Windows Home Server
  • Windows Live Writer
  • Windows Phone
  • writing
  • XP
  • XP mods
  • Xplico

Blog Archive

  • ▼  2013 (83)
    • ►  November (8)
    • ►  October (8)
    • ►  September (14)
    • ►  August (6)
    • ►  July (10)
    • ►  June (10)
    • ►  April (11)
    • ▼  March (6)
      • God Made a SysAdmin…and a linkfest to feed them
      • ForSec News Linkfest
      • Internet Explorer 10 (for Win 7), Firefox bits, an...
      • Advanced Tips for Windows Defender with Windows 8
      • Abandon Hope all ye who log into the Web…
      • Google Reader’s Demise: A Big Deal for being not t...
    • ►  February (7)
    • ►  January (3)
  • ►  2012 (96)
    • ►  December (8)
    • ►  November (4)
    • ►  October (9)
    • ►  September (8)
    • ►  August (12)
    • ►  July (4)
    • ►  June (3)
    • ►  May (7)
    • ►  April (13)
    • ►  March (3)
    • ►  February (5)
    • ►  January (20)
  • ►  2011 (41)
    • ►  December (8)
    • ►  November (7)
    • ►  September (4)
    • ►  August (4)
    • ►  July (2)
    • ►  June (6)
    • ►  March (5)
    • ►  February (1)
    • ►  January (4)
  • ►  2010 (69)
    • ►  December (1)
    • ►  October (3)
    • ►  September (2)
    • ►  August (13)
    • ►  July (17)
    • ►  June (3)
    • ►  May (3)
    • ►  April (3)
    • ►  March (11)
    • ►  February (1)
    • ►  January (12)
  • ►  2009 (177)
    • ►  December (20)
    • ►  November (11)
    • ►  October (7)
    • ►  September (7)
    • ►  August (21)
    • ►  July (17)
    • ►  June (7)
    • ►  May (18)
    • ►  April (9)
    • ►  March (17)
    • ►  February (23)
    • ►  January (20)
  • ►  2008 (35)
    • ►  December (23)
    • ►  November (12)
Powered by Blogger.

About Me

Unknown
View my complete profile