<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-3285005982004154848</id><updated>2012-01-01T18:08:36.882-06:00</updated><category term='cheat sheet'/><category term='incident response information security joseph kahlich'/><category term='windows scripting vaiables microsoft'/><category term='adobe reader acrobat microsoft excel zero day exploit security best practices'/><category term='xcacls subinacl hangs file permissions'/><category term='wireless hacking airodump-ng aircrack-ng aireplay-ng wep spoonwep'/><category term='joseph kahlich resume linkedin information security cissp'/><category term='malicious web sites domain lookup'/><category term='iphone security applications apps'/><category term='nmap network security scanning'/><category term='bootable usb backtrack 3 unetbootin persistant writable usb drive'/><category term='adobe research forensics filemon regmon olly debug pdf java information security application'/><category term='computer forencis'/><category term='Network Penetration Testing SANS 560 information security'/><category term='Perl compatible regular expression'/><category term='plano fireworks photography joseph kahlich photos canon rebel'/><category term='unetbootin backtrack ubuntu install bootable usb'/><category term='PERL VB SHELL script scripting automation administration security languages batch files commands command line CLI read from list automate joseph kahlich information security cissp'/><category term='PCRE'/><category term='information security data encryption truecrypt'/><title type='text'>Why Joseph</title><subtitle type='html'>InfoSec Thoughts Ideas and Practice</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>26</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-295315743054038466</id><published>2011-12-28T15:42:00.000-06:00</published><updated>2011-12-28T15:42:02.985-06:00</updated><title type='text'>BASH WHILE Loop: article 201107</title><summary type='text'>Loop every 1 minute for 7 hours, provide a date stamp, listen for syslog traffic with TCPDUMP, put the output to screen.  This was to have a check running in a Putty screen so I could keep a manual check on syslog not feeding my appliance.

#!/bin/bash

COUNTER=0
while [ $COUNTER -lt 421 ]; do
           date
           tcpdump -i eth0 port 514 -c 3
           let COUNTER=COUNTER+1
           </summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/295315743054038466/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2011/12/bash-while-loop-article-201107.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/295315743054038466'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/295315743054038466'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2011/12/bash-while-loop-article-201107.html' title='BASH WHILE Loop: article 201107'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-2301131321861560021</id><published>2011-12-11T18:42:00.001-06:00</published><updated>2011-12-11T19:11:46.005-06:00</updated><title type='text'>Breakdown of C Format Parameters: article 201106</title><summary type='text'>Study notes from Hacking: The Art of Exploitation and C Programming in Easy Steps. This is a table of format parameters in the C programming language

















 


.</summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/2301131321861560021/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2011/12/breakdown-of-c-format-parameters.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/2301131321861560021'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/2301131321861560021'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2011/12/breakdown-of-c-format-parameters.html' title='Breakdown of C Format Parameters: article 201106'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-6432708986352133911</id><published>2011-12-04T18:24:00.001-06:00</published><updated>2012-01-01T18:08:36.890-06:00</updated><title type='text'>Notes on Memory Segmentation: article 201105</title><summary type='text'>Notes taken from "Hacking: The Art of Exploitation, 2nd ed."  Author Jon Erickson; Publisher No Starch Press.

Take aways: Compiled programs on x86 systems memory is divided into 5 segements each with specific purposes.  The segments are: text, data, bss, heap, and stack.

Fortunately my career is also my hobby; information security.  Forgiving all of the tired cliches, it is true; to really </summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/6432708986352133911/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2011/12/notes-on-memory-segmentation-article.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/6432708986352133911'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/6432708986352133911'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2011/12/notes-on-memory-segmentation-article.html' title='Notes on Memory Segmentation: article 201105'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/-d4jT-H72UyM/TwD1Rapbq8I/AAAAAAAAAtM/VpkrNwT2wPk/s72-c/memory+map.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-6257673376767570156</id><published>2011-06-28T20:57:00.019-05:00</published><updated>2011-07-05T11:45:41.094-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='incident response information security joseph kahlich'/><title type='text'>Incident Repsonse; When To Call the Posse: article 201104</title><summary type='text'>A security incident as defined in NIST SP800-61 rev 1 is a violation or imminent threat of violation of computer security policies, acceptable use policies, or standard security practices. That being the case then triggered web filters, IDS/IPS alerts, AV alerts, failed login attempts etc all combined can easily add up to hundreds if not thousands, possibly millions of "incidents" a day within an</summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/6257673376767570156/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2011/06/incident-repsonse-when-to-call-posse.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/6257673376767570156'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/6257673376767570156'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2011/06/incident-repsonse-when-to-call-posse.html' title='Incident Repsonse; When To Call the Posse: article 201104'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/-YB2IHNjgdEQ/TgqRzeySK8I/AAAAAAAAAqQ/ZmxoxnblLwM/s72-c/table1.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-5294417413433710887</id><published>2011-05-08T19:14:00.001-05:00</published><updated>2011-05-08T19:15:25.193-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='computer forencis'/><title type='text'>Honeynet Forensics Challenge 7 winner: article 201103</title><summary type='text'>I am excited and honored to have tied for third place.  Many thanks to Honeynet for offering these challenges! Forensic Challenge 7 – “Forensic Analysis of a Compromised System” - And the winners are...Sat, 05/07/2011 - 15:09 — angelo.dellaeraFolks, Guillame and Hugo have judged all submissions and results have been posted on the challenge web site. The winners are:1. Dev Anand2. Fernando </summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/5294417413433710887/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2011/05/honeynet-forensics-challenge-7-winner.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/5294417413433710887'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/5294417413433710887'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2011/05/honeynet-forensics-challenge-7-winner.html' title='Honeynet Forensics Challenge 7 winner: article 201103'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-7753127955232466936</id><published>2011-04-12T08:23:00.006-05:00</published><updated>2011-04-12T08:42:54.496-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='cheat sheet'/><category scheme='http://www.blogger.com/atom/ns#' term='Perl compatible regular expression'/><category scheme='http://www.blogger.com/atom/ns#' term='PCRE'/><title type='text'>PCRE CHEAT SHEET: article 201102</title><summary type='text'>Takeaways: Perl Compatible Regular Expression Cheat SheetThis is straight from the horses mouth: http://www.pcre.org/pcre.txt.  The information below is a copy and paste from of the PCRESYNTAX (3) section.  As it mentions below this a quick reference for syntax to perform matching.  A deep description of the below can be found at the same link in the PCREPATTERN (3).This comes in handy for me </summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/7753127955232466936/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2011/04/pcre-cheat-sheet-article-201102.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/7753127955232466936'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/7753127955232466936'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2011/04/pcre-cheat-sheet-article-201102.html' title='PCRE CHEAT SHEET: article 201102'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-3888861270798643762</id><published>2011-01-16T17:44:00.002-06:00</published><updated>2011-01-16T18:31:13.657-06:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='malicious web sites domain lookup'/><title type='text'>Malicious Domain Check: article 201101</title><summary type='text'>Takeaways: 3 websites to query to help determine if a site is or has possibly hosted malicious software: http://www.google.com/safebrowsing/diagnostic?site=whyjoseph.com, http://www.siteadvisor.com/ and http://www.malwaredomainlist.com/mdl.php During the course of my duties I want to verify if a URL visited is indeed possibly malicious.  You see I have a "trust but verify" philosophy when it </summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/3888861270798643762/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2011/01/malicious-domain-check-article-201101.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/3888861270798643762'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/3888861270798643762'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2011/01/malicious-domain-check-article-201101.html' title='Malicious Domain Check: article 201101'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-4464292986116500735</id><published>2010-07-04T19:50:00.007-05:00</published><updated>2010-08-06T21:51:57.155-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='iphone security applications apps'/><title type='text'>iPHONE Apps for Information Security: article 201003</title><summary type='text'>I have had the iPhone 3G for a little over a 1/2 a year now and  in that time have accumulated some apps that could come in handy for the InfoSec  Engineer / Analyst.  In this write up I quickly describe one of my two folders of tools.Screen shot 1:RBL Status:  A nice look up tool to see if a domain is on any one of 13 Black List services.Nice Trace:  A handy little trace route tool that </summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/4464292986116500735/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2010/07/iphone-apps-for-information-security.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/4464292986116500735'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/4464292986116500735'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2010/07/iphone-apps-for-information-security.html' title='iPHONE Apps for Information Security: article 201003'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_FQVAS1GlXa8/TDEvNxGPoXI/AAAAAAAAApc/wlz_3kYlofs/s72-c/photo1.PNG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-6270928009983086291</id><published>2010-03-14T22:30:00.006-05:00</published><updated>2010-03-14T22:52:03.520-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Network Penetration Testing SANS 560 information security'/><title type='text'>Penetration Testing Debate: Security Controls On or Off: article 201002</title><summary type='text'>Take away:  Topics: To turn off security measures for a penetration test or not.I have just started the SANS 560 course Network Penetration Testing and Ethical Hacking and the initial reading brought some topics back to mind.I have discussed and seen debates on such sites as Linkedin.com that covers the topic of whether or not to turn off security controls during a penetration test.  My stance is</summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/6270928009983086291/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2010/03/penetration-testing-debates-article.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/6270928009983086291'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/6270928009983086291'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2010/03/penetration-testing-debates-article.html' title='Penetration Testing Debate: Security Controls On or Off: article 201002'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-7128237544510366101</id><published>2010-01-28T09:49:00.000-06:00</published><updated>2010-01-28T09:50:03.071-06:00</updated><title type='text'>First virus removal of 2010: article 201001</title><summary type='text'>Sitting at a friends computer trying to install McAfee right now  so I figure I will jot down some notes about this virus removal.When I arrived the virus had changed their desktop wall paper to a nasty lime green and red warning that that there system was infected.  Pop ups were also being presented repeatedly that their system was infected a provided a link to install an AV program to have it </summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/7128237544510366101/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2010/01/first-virus-removal-of-2010-article.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/7128237544510366101'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/7128237544510366101'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2010/01/first-virus-removal-of-2010-article.html' title='First virus removal of 2010: article 201001'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-1345999286898384636</id><published>2009-11-17T09:12:00.005-06:00</published><updated>2009-11-17T14:56:57.300-06:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='joseph kahlich resume linkedin information security cissp'/><title type='text'></title><summary type='text'>G. Joseph Kahlich; MBA, CISSP2417 Havard OakPlano, Texas 75074214 797-3701joseph@whyjoseph.comEmployment and ResponsibilitiesMedAssets 2008 - 2009Information Security Analyst• Perform internal audits and reporting towards compliance, risk analysis, threats• Security architecture; research, development, and improvement• Consulting for Customers, RFP’s, Projects, Host External Audits: HIPAA, SAS 70</summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/1345999286898384636/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/11/g.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/1345999286898384636'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/1345999286898384636'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/11/g.html' title=''/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-4447468166727769035</id><published>2009-11-17T08:14:00.003-06:00</published><updated>2009-11-17T08:22:42.026-06:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='joseph kahlich resume linkedin information security cissp'/><title type='text'>Looking for a New Opportunity</title><summary type='text'>My position of Information Security Analyst was downsized November 16th.  I am in the process of updating my resume; in the mean time please feel free to learn more about me on LinkedIn at:http://www.linkedin.com/pub/joseph-kahlich-cissp/2/145/a33I may be contacted at:  Joseph@whyjoseph.com or 214 797-3701.</summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/4447468166727769035/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/11/looking-for-new-opportunity.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/4447468166727769035'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/4447468166727769035'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/11/looking-for-new-opportunity.html' title='Looking for a New Opportunity'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-3458095627757503970</id><published>2009-07-26T15:16:00.009-05:00</published><updated>2009-07-26T16:36:07.637-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='bootable usb backtrack 3 unetbootin persistant writable usb drive'/><title type='text'>Bootable BackTrack 3 USB drive that allows Persistent Changes: article 200914</title><summary type='text'>Take Aways: Using at least a 2 Gig USB stick create 2 partitions one for the BT3 OS the other to write files too.Tools I used: 2 GB USB stick, Unebootin for Windows, a Desktop running XP and a laptop running a LIVE CD of BackTrack3First giving credit where it is due: wirelessdefence.org Which is where I pulled my info on how to partition the USB stick and set it for persistent changes.http://</summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/3458095627757503970/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/07/bootable-backtrack-3-usb-drive-that.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/3458095627757503970'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/3458095627757503970'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/07/bootable-backtrack-3-usb-drive-that.html' title='Bootable BackTrack 3 USB drive that allows Persistent Changes: article 200914'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_FQVAS1GlXa8/SmzFTIAmKYI/AAAAAAAAAnE/yHYCJqLsWiA/s72-c/unbootin.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-7436945865504172466</id><published>2009-07-05T15:26:00.011-05:00</published><updated>2009-07-05T15:40:24.120-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='plano fireworks photography joseph kahlich photos canon rebel'/><title type='text'>My July 4th Photo's from Plano Texas: article200913</title><summary type='text'>.</summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/7436945865504172466/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/07/my-july-4th-photos-from-plano-texas.html#comment-form' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/7436945865504172466'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/7436945865504172466'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/07/my-july-4th-photos-from-plano-texas.html' title='My July 4th Photo&apos;s from Plano Texas: article200913'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_FQVAS1GlXa8/SlEOhs5nRHI/AAAAAAAAAjY/du1dyG_eCPc/s72-c/2009_07_04_IMG_5153.JPG' height='72' width='72'/><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-7462305362657375534</id><published>2009-06-28T18:27:00.004-05:00</published><updated>2009-06-28T18:29:00.329-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='wireless hacking airodump-ng aircrack-ng aireplay-ng wep spoonwep'/><title type='text'>FOLLOW UP Hacking Practical 1: Cracking WEP: article 200912</title><summary type='text'>Quick Follow UpMy buddy was able to crack WEP 128 just fine on his Linksys today as well as another 3COM 7760.  I went and verified and I was able to crack 128 as well on my Linksys.  ODD!.</summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/7462305362657375534/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/06/follow-up-hacking-practical-1-cracking.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/7462305362657375534'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/7462305362657375534'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/06/follow-up-hacking-practical-1-cracking.html' title='FOLLOW UP Hacking Practical 1: Cracking WEP: article 200912'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-6237465923085608426</id><published>2009-06-28T12:14:00.006-05:00</published><updated>2009-06-28T18:47:03.039-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='wireless hacking airodump-ng aircrack-ng aireplay-ng wep spoonwep'/><title type='text'>Hacking Practical 1: Cracking WEP: article 200911</title><summary type='text'>Takeway: Cracked 64 bit WEP in 5 minutes, could get 128 to breakWith the help of a friend brining over a 3 COM 7760 Wireless AP last night we were able to practice and observe from the victims standpoint the cracking of WEP 64 and 128.Booting to BackTrack 3 we first tested that we could crack the WEP 64 using SpoonWep.SpoonWep is a graphical interface that does just what it says spoon feeds the </summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/6237465923085608426/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/06/hacking-practical-1-cracking-wep.html#comment-form' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/6237465923085608426'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/6237465923085608426'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/06/hacking-practical-1-cracking-wep.html' title='Hacking Practical 1: Cracking WEP: article 200911'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_FQVAS1GlXa8/SkemHoFl80I/AAAAAAAAAVM/wzEeXkNSPzc/s72-c/spoonwep.bmp' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-9064259168677031425</id><published>2009-06-23T19:43:00.006-05:00</published><updated>2009-06-23T20:31:53.678-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='windows scripting vaiables microsoft'/><title type='text'>Script the World 2; Know Your Variables: article 200910</title><summary type='text'>Take Away: Know your windows variables for portability of your scripts%time%, %date%, and %computername% are my most commonly used Windows variables. A lot of times when I run a script I am spitting text out to log file and this is where the 3 variables come in handy. I place them at the top of my script preceded with an echo command. This helps me to know when the script kicked off and on what </summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/9064259168677031425/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/06/script-world-2-know-your-variables.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/9064259168677031425'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/9064259168677031425'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/06/script-world-2-know-your-variables.html' title='Script the World 2; Know Your Variables: article 200910'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-2420971612088889937</id><published>2009-06-22T22:42:00.004-05:00</published><updated>2009-06-22T22:59:01.385-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='unetbootin backtrack ubuntu install bootable usb'/><title type='text'>Unetbootin for OS on a  USB Stick: article 200909</title><summary type='text'>OS on a Stick; Super Quick with just a Click!(sorry)For father's day I received an Acer Netbook. What a great toy and what I was most excited about was to have an Atheros wireless NIC compatible with BackTrack 3 and Kismet. I was actually dreading that I was going to have to work to get BackTrack installed onto a USB to boot the OS on my XP OS Netbook. To my suprise while researching the web on </summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/2420971612088889937/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/06/unetbootin-for-os-on-stick-article.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/2420971612088889937'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/2420971612088889937'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/06/unetbootin-for-os-on-stick-article.html' title='Unetbootin for OS on a  USB Stick: article 200909'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-4250584766788294640</id><published>2009-06-20T19:43:00.005-05:00</published><updated>2009-06-20T20:46:56.410-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='xcacls subinacl hangs file permissions'/><title type='text'>XCACLS over SubInACL: article 200908</title><summary type='text'>FOR THE BUSY (or IMPATIANT): Point of the Story: SubINACL scans every single folder and file unless you tell it not to.I am working on modifying permissions on up to 3 million folder and file objects on one root drive. In a Microsoft environment. I obviously am scripting this as well as performing the process in stages; right now I am in the testing stage in a non-production environment (see my </summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/4250584766788294640/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/06/xcacls-over-subinacl-article-200908.html#comment-form' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/4250584766788294640'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/4250584766788294640'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/06/xcacls-over-subinacl-article-200908.html' title='XCACLS over SubInACL: article 200908'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-6830422963961530369</id><published>2009-06-17T20:02:00.017-05:00</published><updated>2009-06-20T19:53:16.727-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='PERL VB SHELL script scripting automation administration security languages batch files commands command line CLI read from list automate joseph kahlich information security cissp'/><title type='text'>Script the World 1; Simple Scripting Reading from a List: article 200907</title><summary type='text'>INTRO AND READING FROM A LISTA programmer I am not! I do study scripting languages but with my positition and other tools we utilze scripting can be spread far enough apart that I have to pull the books back off the shelf or dig around google to refresh my memory. I try and practice shell scripting, PERL, and VB Script when I need to automate a task and I do keep my scripts around as I have found</summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/6830422963961530369/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/06/automate-world-with-simple-scripting-1.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/6830422963961530369'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/6830422963961530369'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/06/automate-world-with-simple-scripting-1.html' title='Script the World 1; Simple Scripting Reading from a List: article 200907'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-5381744406858048860</id><published>2009-06-02T22:26:00.002-05:00</published><updated>2009-06-02T22:30:40.333-05:00</updated><title type='text'>Free Great Educational Security Videos: article 200906</title><summary type='text'>Been busy and too burnt to type anything up after work but I have found a great site for security videos and its free. http://securitytube.netReally good stuff especially a great series of videos on learning assembly language for hackers.</summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/5381744406858048860/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/06/free-great-educational-security-videos.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/5381744406858048860'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/5381744406858048860'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/06/free-great-educational-security-videos.html' title='Free Great Educational Security Videos: article 200906'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-8068194620321456080</id><published>2009-03-01T22:18:00.013-06:00</published><updated>2009-03-01T23:45:54.717-06:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='adobe research forensics filemon regmon olly debug pdf java information security application'/><title type='text'>A Little Malware Research:  article 200905</title><summary type='text'>The past few days I decided to wade into some application security and forensics; especially down at the assembly language level. Since my last post I have been playing with the malicious PDF I downloaded from the Internet into a VM with Windows 2000 Professional SP 4. I have installed Adobe 9.0 and FoxIT readers. I used Sysinternals Filemon, Regmon, Olly DBG, and Win Diff to try and determine </summary><link rel='enclosure' type='video/mp4' href='http://www.blogger.com/video-play.mp4?contentId=9465ca7fb25f106b&amp;type=video%2Fmp4' length='0'/><link rel='enclosure' type='video/mp4' href='http://www.blogger.com/video-play.mp4?contentId=b5fdb3cdc20ab677&amp;type=video%2Fmp4' length='0'/><link rel='enclosure' type='video/mp4' href='http://www.blogger.com/video-play.mp4?contentId=df5b6cc0e8094114&amp;type=video%2Fmp4' length='0'/><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/8068194620321456080/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/03/past-few-days-i-decided-to-wade-into.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/8068194620321456080'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/8068194620321456080'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/03/past-few-days-i-decided-to-wade-into.html' title='A Little Malware Research:  article 200905'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/_FQVAS1GlXa8/SatgMt0FpYI/AAAAAAAAABw/7-3d1jZ6xBs/s72-c/first+big+difference+cropped.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-8650691060235175267</id><published>2009-02-25T19:51:00.009-06:00</published><updated>2009-03-04T06:48:13.611-06:00</updated><title type='text'>Adobe Vulnerabilty More Info and Mitigations:  article 200904</title><summary type='text'>Yesterday I wrote about the Adobe flaw and reviewing my post realized I did not mention that another step to help mitigate this vulnerability is to use an alternative PDF reader that is offered free by Foxit Software . ZD Net posted an article today that pretty much bashes on Adobe but if get past that down towards the end of the Secunia (who has a great free tool I will write about in a future </summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/8650691060235175267/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/02/adobe-vulnerabilty-more-info-and.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/8650691060235175267'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/8650691060235175267'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/02/adobe-vulnerabilty-more-info-and.html' title='Adobe Vulnerabilty More Info and Mitigations:  article 200904'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-3868022487443198412</id><published>2009-02-24T22:15:00.005-06:00</published><updated>2009-03-04T06:45:50.101-06:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='adobe reader acrobat microsoft excel zero day exploit security best practices'/><title type='text'>Adobe and Excel exploits in the Wild:  article 200903</title><summary type='text'>Adobe announced last week that there is an exploit affecting their Reader and Acrobat programs and that they would not be releasing a fix until March 11th and then on the heels of that today Microsoft announced that their Excel program has an exploit affecting versions 2007 and earlier.So whats the good news in all of this? It was announced that the exploits do exist! It has been reported that </summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/3868022487443198412/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/02/adobe-and-excel-exploits-in-wild.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/3868022487443198412'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/3868022487443198412'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/02/adobe-and-excel-exploits-in-wild.html' title='Adobe and Excel exploits in the Wild:  article 200903'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-4873537644950720522</id><published>2009-02-23T22:04:00.001-06:00</published><updated>2009-03-04T06:43:03.753-06:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='information security data encryption truecrypt'/><title type='text'>Personal and Small Business Data Encryption: article 200902</title><summary type='text'>I am not a lawyer and the below statements are only my understanding of the laws. Therefore nothing below is legal advice but merely the suggestions of what I would do to best protect myself.In the past much attention has been paid to the confidentiality of data as it flows across the Internet (a.k.a data in transit). Well have you ever thought about data in transit from different perspective say</summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/4873537644950720522/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/02/personal-and-small-business-data.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/4873537644950720522'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/4873537644950720522'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/02/personal-and-small-business-data.html' title='Personal and Small Business Data Encryption: article 200902'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3285005982004154848.post-1004900268316544838</id><published>2009-02-22T08:57:00.001-06:00</published><updated>2009-03-04T06:29:31.156-06:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='nmap network security scanning'/><title type='text'>Nmap: article 200901</title><summary type='text'>Below is a nice video and some great links that can help you wade into using Nmap.Nmap nmap.org created by Fyodor is one of my favorite tools for everything from pen-testing to network inventory and the price is right; free. I find it helpful for discovering nodes on a network and if you come across something interesting it's helpful for determining what that node possibly could be.An example of </summary><link rel='replies' type='application/atom+xml' href='http://whyjoseph.blogspot.com/feeds/1004900268316544838/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://whyjoseph.blogspot.com/2009/02/test-1.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/1004900268316544838'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3285005982004154848/posts/default/1004900268316544838'/><link rel='alternate' type='text/html' href='http://whyjoseph.blogspot.com/2009/02/test-1.html' title='Nmap: article 200901'/><author><name>Joseph Kahlich</name><uri>http://www.blogger.com/profile/04732459645244314872</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://1.bp.blogspot.com/-WZBSuhP0pmo/Tl6BTYUn1XI/AAAAAAAAAsM/-mzrX7Xq18M/s220/meCARD_N_Joseph_Kahlich_.png'/></author><thr:total>0</thr:total></entry></feed>
