<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
>

<channel>
	<title>SecuraBit &#187; Chris Mills &#8211; ChrisAM</title>
	<atom:link href="http://www.securabit.com/tag/chris-mills-chrisam/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.securabit.com</link>
	<description>SecuraBit Before It Bytes!</description>
	<lastBuildDate>Mon, 26 Jul 2010 04:33:47 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
<!-- podcast_generator="Blubrry PowerPress/1.0.9" mode="advanced" entry="normal" -->
	<itunes:summary>This is a Computer Security podcast brought to you by the guys at SecuraBit.com.  Please visit our web site at http://www.securabit.com or send questions/comments to feedback@securabit.com

Thanks for listening!</itunes:summary>
	<itunes:author>SecuraBit</itunes:author>
	<itunes:explicit>no</itunes:explicit>
	<itunes:image href="http://staging.securabit.com/itunessecurabit.jpg" />
	<itunes:owner>
		<itunes:name>SecuraBit</itunes:name>
		<itunes:email>feedback@securabit.com</itunes:email>
	</itunes:owner>
	<managingEditor>feedback@securabit.com (SecuraBit)</managingEditor>
	<copyright>SecuraBit LLC</copyright>
	<itunes:subtitle>SecuraBit Before It Bytes!</itunes:subtitle>
	<itunes:keywords>security, forensics, hacking, infosec, securabit, podcast, sans, drinking, beer</itunes:keywords>
	<image>
		<title>SecuraBit &#187; Chris Mills &#8211; ChrisAM</title>
		<url>http://securabit.com/securabitrsssmall.jpg</url>
		<link>http://www.securabit.com</link>
	</image>
	<itunes:category text="Technology">
		<itunes:category text="Tech News" />
		<itunes:category text="Software How-To" />
	</itunes:category>
		<item>
		<title>SecuraBit Episode 25: Jayson E. Street Talks about his book f0rb1dd3n</title>
		<link>http://www.securabit.com/2009/03/21/securabit-episode-25-jayson-e-street-talks-about-his-book-f0rb1dd3n/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=securabit-episode-25-jayson-e-street-talks-about-his-book-f0rb1dd3n</link>
		<comments>http://www.securabit.com/2009/03/21/securabit-episode-25-jayson-e-street-talks-about-his-book-f0rb1dd3n/#comments</comments>
		<pubDate>Sat, 21 Mar 2009 19:02:45 +0000</pubDate>
		<dc:creator>AnthonyGartner</dc:creator>
				<category><![CDATA[SecuraBits]]></category>
		<category><![CDATA[Show Releases]]></category>
		<category><![CDATA[announcements]]></category>
		<category><![CDATA[Chris Mills - ChrisAM]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[securabit]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[tech news]]></category>

		<guid isPermaLink="false">http://securabit.com/?p=508</guid>
		<description><![CDATA[SecuraBit Episode 25: &#8220;Jayson E. Street&#8217;s f0rb1dd3n&#8221; This week we interview Jayson E. Street about his new novel f0rb1dd3n. f0rb1dd3n is a fictional story that also provides an overview of the tools, techniques, and culture of hackers. Throughout the story there are references to an appendix that will provide detailed information about that particular part [...]]]></description>
			<content:encoded><![CDATA[<p>SecuraBit Episode 25: &#8220;Jayson E. Street&#8217;s f0rb1dd3n&#8221;</p>
<p>This week we interview Jayson E. Street about his new novel f0rb1dd3n.</p>
<p>f0rb1dd3n is a fictional story that also provides an overview of the tools, techniques, and culture of hackers. Throughout the story there are references to an appendix that will provide detailed information about that particular part of the book, such as the exact process for using metasploit to take over a machine. The expected release date is in July 2009 around Black Hat and Defcon.</p>
<p>A beta of Sumo LINUX is targeted for release the first week of April.</p>
<p>Quine will be our next guest interview.</p>
<p>Hosts:<br />
Anthony Gartner &#8211; <a title="Anthony Gartner" href="http://AnthonyGartner.com">AnthonyGartner.com</a> <a title="Anthony Gartner" href="http://twitter.com/AnthonyGartner">@AnthonyGartner</a><br />
Chris Gerling &#8211; Hak5Chris, <a title="Chris Gerling" href="http://Chrisgerling.com">Chrisgerling.com</a> <a title="Chris Gerling" href="http://twitter.com/Hak5chris">@Hak5chris</a><br />
Chris Mills &#8211; ChrisAM <a title="Chris Mills" href="http://twitter.com/TheChrisAM">@TheChrisAM</a></p>
<p>Guest:<br />
Jayson E. Street &#8211; <a title="http://f0rb1dd3n.com/author.php" href="http://f0rb1dd3n.com/author.php">http://f0rb1dd3n.com/author.php</a></p>
<p>Links:<br />
<a title="http://f0rb1dd3n.com" href="http://f0rb1dd3n.com"> http://f0rb1dd3n.com</a><br />
<a title="http://osvdb.org" href="http://osvdb.org"> http://osvdb.org</a><br />
<a title="http://datalossdb.org" href="http://datalossdb.org"> http://datalossdb.org</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.securabit.com/2009/03/21/securabit-episode-25-jayson-e-street-talks-about-his-book-f0rb1dd3n/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Securabit EP 19 MS DOS&#8217;s itself, and more!!!</title>
		<link>http://www.securabit.com/2009/01/24/securabit-ep-19-ms-doss-itself-and-more/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=securabit-ep-19-ms-doss-itself-and-more</link>
		<comments>http://www.securabit.com/2009/01/24/securabit-ep-19-ms-doss-itself-and-more/#comments</comments>
		<pubDate>Sat, 24 Jan 2009 17:02:30 +0000</pubDate>
		<dc:creator>AnthonyGartner</dc:creator>
				<category><![CDATA[SecuraBits]]></category>
		<category><![CDATA[Show Releases]]></category>
		<category><![CDATA[Chris Mills - ChrisAM]]></category>
		<category><![CDATA[episodes]]></category>
		<category><![CDATA[forensics]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[securabit]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security practices]]></category>
		<category><![CDATA[tshirts]]></category>

		<guid isPermaLink="false">http://securabit.com/?p=410</guid>
		<description><![CDATA[In this episode which is likely to be out of sequence.  SecuraBit did a recording on the 31st of the year and we will likely release it but episode 18 was a potential lost]]></description>
			<content:encoded><![CDATA[<p>In this episode which is likely to be out of sequence.  SecuraBit did a recording on the 31st of the year and we will likely release it but episode 18 was a potential lost episode.  Chris Mills talks about how twitter has changed some of it&#8217;s security measures in the aftermath of the hack on its admin accounts.  He even did some testing of a bogus account.  We even got into some discussions on which types of phones handle what kind of sites.  Please be careful, Jay is going to be getting a twitter account and might actually post.  Oh FRAK!!!!</p>
<p>The next part on the agenda was the new Windows 7 Beta.  This caused Microsoft to DOS itself.  Which really takes a LOT to happen.</p>
<p>After the break we started to go into some tools we actually use or have used and wanted to recommend.  Jay spoke of his Retina software they use.  We did play a nice practical joke on jay and left him hanging in the wind for a few moments, but he did recover.   Spoke about running <a title="http://www.iss.net/" href="http://www.iss.net/">ISS</a> for the nice pretty reports for the higher up&#8217;s and <a title="http://www.nessus.org/nessus" href="http://www.nessus.org/nessus" target="_blank">Nessus</a> for the technicians.  Anthony mentioned <a title="hotspotshield.com" href="hotspotshield.com">Hot Spot Shield</a> which works on windows, mac, iphone and many other platforms.  The chat room recommended <a title="http://openvpn.net" href="http://openvpn.net">Open VPN</a> but none of us had used it. Chris Mills also went into one of the tools he used back in the day but recently started to use again called <a title="http://www.ntop.org" href="http://www.ntop.org">NTop</a>.<br />
Talked about itunes going DRM free.  Always a good thing!!!  This then drifted in to a conversation about players in general.  Jay recommended engadget.com and how they covered CES so well.  This then divulged into computers for kids as well as netbooks.<br />
Anthony is getting close to being able to do the Mix MInus.  This means there will be the chance to play the music / voice mails / audio feedback on to everyone so that we can comment or answer the questions.  This will be a welcome addition to the show.<br />
Jay stated our new goal &#8211; to be &#8220;Internet Famous&#8221;</p>
<p>Don’t forget to give us a feedback on Itunes so we can bump the old shows off the list.</p>
<p>Thanks again for all the donations for the Tip Jar.</p>
<p>Hosts:</p>
<p>Rob Fuller &#8211; Mubix,<a onclick="pageTracker._trackPageview('/outgoing/www.room362.com/?referer=');" href="http://www.room362.com/"> room362.com</a> <a onclick="pageTracker._trackPageview('/outgoing/twitter.com/mubix?referer=');" href="http://twitter.com/mubix">@mubix</a><br />
Anthony Gartner &#8211; <a onclick="pageTracker._trackPageview('/outgoing/www.AnthonyGartner.com?referer=');" href="http://www.anthonygartner.com/">AnthonyGartner.com</a> <a onclick="pageTracker._trackPageview('/outgoing/twitter.com/AnthonyGartner?referer=');" href="http://twitter.com/AnthonyGartner">@AnthonyGartner</a><br />
Chris Gerling &#8211; Hak5Chris, <a onclick="pageTracker._trackPageview('/outgoing/www.chrisgerling.com?referer=');" href="http://www.chrisgerling.com/">Chrisgerling.com</a> <a onclick="pageTracker._trackPageview('/outgoing/twitter.com/Hak5chris?referer=');" href="http://twitter.com/Hak5chris">@Hak5chris</a><br />
Chris Mills &#8211; ChrisAM <a onclick="pageTracker._trackPageview('/outgoing/twitter.com/packetsense?referer=');" href="http://twitter.com/packetsense">@packetsense</a><br />
Jason Mueller &#8211; SecurabitJay</p>
<p><a onclick="pageTracker._trackPageview('/outgoing/www.securityjustice.com?referer=');" href="http://www.securityjustice.com/"></a></p>
<p>Important links for the show and documents used:</p>
<p>http://www.iss.net/</p>
<p>http://www.nessus.org/nessus</p>
<p>hotspotshield.com</p>
<p>http://openvpn.net</p>
<p>http://www.ntop.org</p>
<p>Check out the end of the cast for Jay&#8217;s audition for American 1dol!!!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.securabit.com/2009/01/24/securabit-ep-19-ms-doss-itself-and-more/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Securabit EP 19 MS DOS&#039;s itself, and more!!!</title>
		<link>http://www.securabit.com/2009/01/24/securabit-ep-19-ms-doss-itself-and-more-2/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=securabit-ep-19-ms-doss-itself-and-more-2</link>
		<comments>http://www.securabit.com/2009/01/24/securabit-ep-19-ms-doss-itself-and-more-2/#comments</comments>
		<pubDate>Sat, 24 Jan 2009 17:02:30 +0000</pubDate>
		<dc:creator>AnthonyGartner</dc:creator>
				<category><![CDATA[SecuraBits]]></category>
		<category><![CDATA[Show Releases]]></category>
		<category><![CDATA[Chris Mills - ChrisAM]]></category>
		<category><![CDATA[episodes]]></category>
		<category><![CDATA[forensics]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[securabit]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security practices]]></category>
		<category><![CDATA[tshirts]]></category>

		<guid isPermaLink="false">http://securabit.com/?p=410</guid>
		<description><![CDATA[In this episode which is likely to be out of sequence.  SecuraBit did a recording on the 31st of the year and we will likely release it but episode 18 was a potential lost]]></description>
			<content:encoded><![CDATA[<p>In this episode which is likely to be out of sequence.  SecuraBit did a recording on the 31st of the year and we will likely release it but episode 18 was a potential lost episode.  Chris Mills talks about how twitter has changed some of it&#8217;s security measures in the aftermath of the hack on its admin accounts.  He even did some testing of a bogus account.  We even got into some discussions on which types of phones handle what kind of sites.  Please be careful, Jay is going to be getting a twitter account and might actually post.  Oh FRAK!!!!</p>
<p>The next part on the agenda was the new Windows 7 Beta.  This caused Microsoft to DOS itself.  Which really takes a LOT to happen.</p>
<p>After the break we started to go into some tools we actually use or have used and wanted to recommend.  Jay spoke of his Retina software they use.  We did play a nice practical joke on jay and left him hanging in the wind for a few moments, but he did recover.   Spoke about running <a title="http://www.iss.net/" href="http://www.iss.net/">ISS</a> for the nice pretty reports for the higher up&#8217;s and <a title="http://www.nessus.org/nessus" href="http://www.nessus.org/nessus" target="_blank">Nessus</a> for the technicians.  Anthony mentioned <a title="hotspotshield.com" href="hotspotshield.com">Hot Spot Shield</a> which works on windows, mac, iphone and many other platforms.  The chat room recommended <a title="http://openvpn.net" href="http://openvpn.net">Open VPN</a> but none of us had used it. Chris Mills also went into one of the tools he used back in the day but recently started to use again called <a title="http://www.ntop.org" href="http://www.ntop.org">NTop</a>.<br />
Talked about itunes going DRM free.  Always a good thing!!!  This then drifted in to a conversation about players in general.  Jay recommended engadget.com and how they covered CES so well.  This then divulged into computers for kids as well as netbooks.<br />
Anthony is getting close to being able to do the Mix MInus.  This means there will be the chance to play the music / voice mails / audio feedback on to everyone so that we can comment or answer the questions.  This will be a welcome addition to the show.<br />
Jay stated our new goal &#8211; to be &#8220;Internet Famous&#8221;</p>
<p>Don’t forget to give us a feedback on Itunes so we can bump the old shows off the list.</p>
<p>Thanks again for all the donations for the Tip Jar.</p>
<p>Hosts:</p>
<p>Rob Fuller &#8211; Mubix,<a onclick="pageTracker._trackPageview('/outgoing/www.room362.com/?referer=');" href="http://www.room362.com/"> room362.com</a> <a onclick="pageTracker._trackPageview('/outgoing/twitter.com/mubix?referer=');" href="http://twitter.com/mubix">@mubix</a><br />
Anthony Gartner &#8211; <a onclick="pageTracker._trackPageview('/outgoing/www.AnthonyGartner.com?referer=');" href="http://www.anthonygartner.com/">AnthonyGartner.com</a> <a onclick="pageTracker._trackPageview('/outgoing/twitter.com/AnthonyGartner?referer=');" href="http://twitter.com/AnthonyGartner">@AnthonyGartner</a><br />
Chris Gerling &#8211; Hak5Chris, <a onclick="pageTracker._trackPageview('/outgoing/www.chrisgerling.com?referer=');" href="http://www.chrisgerling.com/">Chrisgerling.com</a> <a onclick="pageTracker._trackPageview('/outgoing/twitter.com/Hak5chris?referer=');" href="http://twitter.com/Hak5chris">@Hak5chris</a><br />
Chris Mills &#8211; ChrisAM <a onclick="pageTracker._trackPageview('/outgoing/twitter.com/packetsense?referer=');" href="http://twitter.com/packetsense">@packetsense</a><br />
Jason Mueller &#8211; SecurabitJay</p>
<p><a onclick="pageTracker._trackPageview('/outgoing/www.securityjustice.com?referer=');" href="http://www.securityjustice.com/"></a></p>
<p>Important links for the show and documents used:</p>
<p>http://www.iss.net/</p>
<p>http://www.nessus.org/nessus</p>
<p>hotspotshield.com</p>
<p>http://openvpn.net</p>
<p>http://www.ntop.org</p>
<p>Check out the end of the cast for Jay&#8217;s audition for American 1dol!!!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.securabit.com/2009/01/24/securabit-ep-19-ms-doss-itself-and-more-2/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SecuraByte Episode 05 Happiness, Fail Whale beaches Itself!!!</title>
		<link>http://www.securabit.com/2009/01/07/securabyte-episode-05-happiness-fail-whale-beaches-itself/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=securabyte-episode-05-happiness-fail-whale-beaches-itself</link>
		<comments>http://www.securabit.com/2009/01/07/securabyte-episode-05-happiness-fail-whale-beaches-itself/#comments</comments>
		<pubDate>Wed, 07 Jan 2009 19:59:24 +0000</pubDate>
		<dc:creator>AnthonyGartner</dc:creator>
				<category><![CDATA[SecuraBytes]]></category>
		<category><![CDATA[Show Releases]]></category>
		<category><![CDATA[Chris Mills - ChrisAM]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[securabit]]></category>
		<category><![CDATA[securabyte]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://securabit.com/?p=394</guid>
		<description><![CDATA[News at 11.  Well really we started recording about 8 PM on Monday January 5th.  In this SecuraByte episode, Securabit had its largest conference call yet.  Securabit was joined by the guys from both]]></description>
			<content:encoded><![CDATA[<p>News at 11.  Well really we started recording about 8 PM on Monday January 5th.  In this SecuraByte episode, Securabit had its largest conference call yet.  Securabit was joined by the guys from both SecurityJustice.com and SMBMinute.com, as well as Melissa on Twitter AKA @Geekgrrl. We discussed the security vulnerability discovered with twitter.com&#8217;s tech support.  This is a service many of us use and enjoy.  Please have a listen in while we discuss amongst ourselves.</p>
<p>Don’t forget to give us a feedback on Itunes so we can bump the old shows off the list.</p>
<p>Thanks again for all the donations for the Tip Jar.</p>
<p>Hosts:</p>
<p>Rob Fuller &#8211; Mubix,<a href="http://www.room362.com/"> room362.com</a> <a href="http://twitter.com/mubix">@mubix</a><br />
Anthony Gartner &#8211; <a href="http://www.AnthonyGartner.com">AnthonyGartner.com</a> <a href="http://twitter.com/AnthonyGartner">@AnthonyGartner</a><br />
Chris Gerling &#8211; Hak5Chris, <a href="http://www.chrisgerling.com">Chrisgerling.com</a> <a href="http://twitter.com/Hak5chris">@Hak5chris</a><br />
Chris Mills &#8211; ChrisAM <a href="http://twitter.com/packetsense">@packetsense</a><br />
Jason Mueller &#8211; SecurabitJay</p>
<p>Special Guests: Melissa (<a href="http://twitter.com/geekgrrl">@geekgrrl</a>), Tim Krabec (<a href="http://twitter.com/tkrabec">@tkrabec</a>) of the<a href="http://www.SMBMinute.com"> SMBMinute.com</a>, Tom (<a href="http://twitter.com/agent0x0">@agent0x0</a>) <a href="http://www.securityjustice.com">securityjustice.com</a>, and Dave (<a href="http://twitter.com/Securi-D">@Securi-D</a>) <a href="http://www.securityjustice.com">securityjustice.com</a></p>
<p>Important links for the show and documents used:</p>
<p>Naivete: Web 2.0’s biggest security threat<a href="http://blogs.zdnet.com/feeds/?p=382"></p>
<p>http://blogs.zdnet.com/feeds/?p=382</a></p>
<p>Britney, Obama Twitter Feeds Hijacked Following Phishing Attack<br />
<a href="http://blog.wired.com/27bstroke6/2009/01/twits-get-phish.html">http://blog.wired.com/27bstroke6/2009/01/twits-get-phish.html</a><br />
Fire Fox Addon &#8220;Long URL Please&#8221;<br />
<a href="http://www.longurlplease.com/">http://www.longurlplease.com/</a><br />
WIRED just posted this follow up:<br />
<a href="http://blog.wired.com/27bstroke6/2009/01/professed-twitt.html">http://blog.wired.com/27bstroke6/2009/01/professed-twitt.html</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.securabit.com/2009/01/07/securabyte-episode-05-happiness-fail-whale-beaches-itself/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Securabit Episode 17 for xmass Santa gave us an Nmap book to give away!!!</title>
		<link>http://www.securabit.com/2008/12/22/securabit-episode-17-for-xmass-santa-gave-us-an-nmap-book-to-give-away/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=securabit-episode-17-for-xmass-santa-gave-us-an-nmap-book-to-give-away</link>
		<comments>http://www.securabit.com/2008/12/22/securabit-episode-17-for-xmass-santa-gave-us-an-nmap-book-to-give-away/#comments</comments>
		<pubDate>Mon, 22 Dec 2008 17:54:13 +0000</pubDate>
		<dc:creator>AnthonyGartner</dc:creator>
				<category><![CDATA[SecuraBits]]></category>
		<category><![CDATA[Show Releases]]></category>
		<category><![CDATA[Chris Mills - ChrisAM]]></category>
		<category><![CDATA[ethical]]></category>
		<category><![CDATA[forensics]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[MS08-067]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[podcast]]></category>
		<category><![CDATA[securabit]]></category>
		<category><![CDATA[securabyte]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security practices]]></category>

		<guid isPermaLink="false">http://securabit.com/?p=383</guid>
		<description><![CDATA[<span> </span>This is a unique episode for SecuraBit, we are teaming up with the Security Justice Podcast to do a double header show.  SecuraBit recorded their show from 8-9 EST, then handed off the]]></description>
			<content:encoded><![CDATA[<p><span> </span>This is a unique episode for SecuraBit, we are teaming up with the Security Justice Podcast to do a double header show.  SecuraBit recorded their show from 8-9 EST, then handed off the reins to Security Justice to finish out the night.  In doing so we had a combined set of prizes.  Winning the prize required that you listen and get the correct answer to a trivia question given on SecuraBit.  You also had to listen to the Security Justice Podcast to and know the answer to their question.  SecuraBit even manged to start on time as well as hand off on time.  It was a very different type of show due to trying to condense everything in to a single hour.  (Good thing we didn&#8217;t have any real content, Just kidding!)</p>
<p><span><span> </span></span>We opened the show but because Jay needed to switch some things out we actually went to a break faster than normal.  When we returned from the break Jay was back with us.  We started to go into the new Microsoft Zero Day, and Jay informed us that he had been out of the loop for a week but since the patch only came out 73 minutes before he found out about it he figured he was right on time.</p>
<p><span> The next topic was Chris Gerling going to SANS and taking the forensics 508 course.  Chris then told us that he felt like he should never have picked up a helix disk based on the level of knowledge he has now compared to before the course.</span> We also discussed that many states are requiring a Private Investigators license to do forensics.   That none of us on the show agreed that this was a good idea, but yet several lobbyists have been pushing for this very idea.  Jay asked the question about what was thought about the BGP security vulnerability.  Anthony discussed a new site he went to as a security review.</p>
<p><span> </span>After the break, we went into the trivia question.  The trivia Question was: What are the flags you have to set in order to do an NMAP-style XMAS scan in Unicornscan? We will post the winner soon in conjunction with the Security Justice podcast.  After the trivia question we went into thoughts on what to do about prior employees, handling creditials, voice mails, and emails.  We referenced the guy in San Francisco who was fired from the job, but yet still was able to hold the network he left hostage.</p>
<p>Send all answers to the trivia question to feedback@securabit.com</p>
<p>Don&#8217;t forget to give us a feedback on Itunes so we can bump the old shows off the list.</p>
<p>Thanks again for all the donations for the Tip Jar.</p>
<p>Hosts:</p>
<p>Rob Fuller &#8211; Mubix, room362.com<br />
Anthony Gartner &#8211; AnthonyGartner.com<br />
Chris Gerling &#8211; Hak5Chris, Chrisgerling.com<br />
Chris Mills &#8211; ChrisAM<br />
Jason Mueller &#8211; SecurabitJay</p>
<p>Important links for the show and documents used:</p>
<p>No links this time!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.securabit.com/2008/12/22/securabit-episode-17-for-xmass-santa-gave-us-an-nmap-book-to-give-away/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Securabit Episode 16 How many F-Bombs are required for $40</title>
		<link>http://www.securabit.com/2008/12/10/securabit-episode-16-how-many-f-bombs-are-required-for-40/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=securabit-episode-16-how-many-f-bombs-are-required-for-40</link>
		<comments>http://www.securabit.com/2008/12/10/securabit-episode-16-how-many-f-bombs-are-required-for-40/#comments</comments>
		<pubDate>Wed, 10 Dec 2008 06:17:05 +0000</pubDate>
		<dc:creator>AnthonyGartner</dc:creator>
				<category><![CDATA[SecuraBits]]></category>
		<category><![CDATA[Show Releases]]></category>
		<category><![CDATA[Anthony Gartner - AnthonyGartner]]></category>
		<category><![CDATA[Chris Gerling - Hak]]></category>
		<category><![CDATA[Chris Mills - ChrisAM]]></category>
		<category><![CDATA[computer forensics investigation]]></category>
		<category><![CDATA[cyber defense]]></category>
		<category><![CDATA[defense initiative]]></category>
		<category><![CDATA[donations]]></category>
		<category><![CDATA[feedback]]></category>
		<category><![CDATA[freenode]]></category>
		<category><![CDATA[Iphone]]></category>
		<category><![CDATA[irc]]></category>
		<category><![CDATA[Jason Mueller - SecurabitJay]]></category>
		<category><![CDATA[Rob Fuller - Mubix]]></category>
		<category><![CDATA[securabit]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[sock monkey]]></category>
		<category><![CDATA[sourcefire]]></category>
		<category><![CDATA[washington post]]></category>

		<guid isPermaLink="false">http://securabit.com/?p=365</guid>
		<description><![CDATA[In this episode we talk about Chris Gerling attending the <a title="http://www.sans.org/cdi08/" href="http://www.sans.org/cdi08/" target="_blank">SANS Cyber Defense Initiative 2008</a> in Washing DC.  He will be taking the <a title="http://www.sans.org/training/description.php?mid=98" href="http://www.sans.org/training/description.php?mid=98" target="_blank">Security 508 Computer Forensics, Investigation, and</a>]]></description>
			<content:encoded><![CDATA[<p>In this episode we talk about Chris Gerling attending the <a title="http://www.sans.org/cdi08/" href="http://www.sans.org/cdi08/" target="_blank">SANS Cyber Defense Initiative 2008</a> in Washing DC.  He will be taking the <a title="http://www.sans.org/training/description.php?mid=98" href="http://www.sans.org/training/description.php?mid=98" target="_blank">Security 508 Computer Forensics, Investigation, and Response course</a>.  If you are at the conference please make sure you look for Chris.  He also plans to take the new <a title="http://www.sans.org/press/giac_pentest_cert.php" href="http://www.sans.org/press/giac_pentest_cert.php" target="_blank">GPEN test</a> while there.  We might be bringing the sock monkey to Shmoocon and have him do some interviews.</p>
<p>We also spoke about how few businesses are actually checking a persons signature or id for credit cards.  Most businesses are simply not checking the cards like they should be. Chris is beginning to wonder if they will card his fiancee between now and when they get married.</p>
<p>After the break we came back and mentioned that we were not going going to drop the Fbomb for 40 bucks as was hinted at in the chat room.  Went into the issue of dns forwarding being done on  <a title="CheckFree.com" href="CheckFree.com" target="_blank">CheckFree.com </a> The article was actually from <a title="http://voices.washingtonpost.com/securityfix/2008/12/hackers_hijacked_large_e-bill.html?nav=rss_blog" href="http://voices.washingtonpost.com/securityfix/2008/12/hackers_hijacked_large_e-bill.html?nav=rss_blog" target="_blank">The Washington Post by Brian Krebs</a>.  Anthony put a shout out to Ed Smiley for sending both Mubix and Anthony a copy of  <a title="http://agilewebsolutions.com/products/1Password" href="http://agilewebsolutions.com/products/1Password" target="_blank">1password</a>.  It was a Great hookup.  Then we covered various apps on the IPhone.  We touched on what the <a title="http://www.google.com/url?sa=t&amp;source=web&amp;ct=res&amp;cd=3&amp;url=http%3A%2F%2Fchoices.cs.uiuc.edu%2FMobilSec%2Fposted_docs%2F3G_Security_Overview.ppt&amp;ei=SEA_SZfELpqYwwHEjNzjDg&amp;usg=AFQjCNEk8TMsmdDPBFNPZazURf0eZRzQjg&amp;sig2=DLx7hQFHbPcDtIIJjSDdbw" href="http://www.google.com/url?sa=t&amp;source=web&amp;ct=res&amp;cd=3&amp;url=http%3A%2F%2Fchoices.cs.uiuc.edu%2FMobilSec%2Fposted_docs%2F3G_Security_Overview.ppt&amp;ei=SEA_SZfELpqYwwHEjNzjDg&amp;usg=AFQjCNEk8TMsmdDPBFNPZazURf0eZRzQjg&amp;sig2=DLx7hQFHbPcDtIIJjSDdbw" target="_blank">encryption is on a 3g network</a>.  We found a great powerpoint slide show explaining it.</p>
<p>After the last break we went into firewall set ups.  Everyone but Anthony is running FIOS so the discussion on how to set up the coax or ethernet wan links ensued.  You will just have to listen to it to see what kind of sense it makes.  We did get lots of comments from our faithfull in the irc channel (irc.freenode.net #Securabit).  From there the show just went down hill with strippers and alcohol.</p>
<p>Don&#8217;t forget to give us a feedback on Itunes so we can bump the old shows off the list.</p>
<p>Thanks again for all the donations for the Tip Jar.</p>
<p>Hosts:</p>
<p>Rob Fuller &#8211; Mubix, room362.com<br />
Anthony Gartner &#8211; AnthonyGartner.com<br />
Chris Gerling &#8211; Hak5Chris, Chrisgerling.com<br />
Chris Mills &#8211; ChrisAM<br />
Jason Mueller &#8211; SecurabitJay</p>
<p>Special Guest: Joel Esler from sourcefire.com and Joelesler.net</p>
<p>Important links for the show and documents used:</p>
<p>http://www.sans.org/cdi08/</p>
<p>http://www.sans.org/training/description.php?mid=98</p>
<p>http://www.sans.org/press/giac_pentest_cert.php</p>
<p>http://voices.washingtonpost.com/securityfix/2008/12/hackers_hijacked_large_e-bill.html?nav=rss_blog</p>
]]></content:encoded>
			<wfw:commentRss>http://www.securabit.com/2008/12/10/securabit-episode-16-how-many-f-bombs-are-required-for-40/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Securabit EP 15 Will the real Joel Esler please step forward!</title>
		<link>http://www.securabit.com/2008/11/30/securabit-ep-15-will-the-real-joel-esler-please-step-forward/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=securabit-ep-15-will-the-real-joel-esler-please-step-forward</link>
		<comments>http://www.securabit.com/2008/11/30/securabit-ep-15-will-the-real-joel-esler-please-step-forward/#comments</comments>
		<pubDate>Mon, 01 Dec 2008 01:00:18 +0000</pubDate>
		<dc:creator>AnthonyGartner</dc:creator>
				<category><![CDATA[SecuraBits]]></category>
		<category><![CDATA[Show Releases]]></category>
		<category><![CDATA[Anthony Gartner - AnthonyGartner]]></category>
		<category><![CDATA[batman]]></category>
		<category><![CDATA[batmobile]]></category>
		<category><![CDATA[castlecops]]></category>
		<category><![CDATA[Chris Gerling - Hak]]></category>
		<category><![CDATA[Chris Mills - ChrisAM]]></category>
		<category><![CDATA[CSI]]></category>
		<category><![CDATA[IPS]]></category>
		<category><![CDATA[itunes]]></category>
		<category><![CDATA[Jason Mueller - SecurabitJay]]></category>
		<category><![CDATA[Josh Wright]]></category>
		<category><![CDATA[ProjectHoneypot]]></category>
		<category><![CDATA[QEMU]]></category>
		<category><![CDATA[Rob Fuller - Mubix]]></category>
		<category><![CDATA[Sandboxie]]></category>
		<category><![CDATA[securabit]]></category>
		<category><![CDATA[security professionals]]></category>
		<category><![CDATA[sorry for the delay]]></category>
		<category><![CDATA[sourcefire]]></category>
		<category><![CDATA[steven gibson]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[vmdk]]></category>
		<category><![CDATA[wiki]]></category>
		<category><![CDATA[WPA]]></category>

		<guid isPermaLink="false">http://securabit.com/?p=352</guid>
		<description><![CDATA[Sorry for the delay in getting this episode out this time.  Anthony got stuck with doing some actual work and then we all got hit by the holidays.  We do hope you enjoy the show]]></description>
			<content:encoded><![CDATA[<p>Sorry for the delay in getting this episode out this time.  Anthony got stuck with doing some actual work and then we all got hit by the holidays.  We do hope you enjoy the show this week.</p>
<p>Mubix attended the CSI Conference and no not CSI on TV, the <a title="http://www.csiannual.com/" href="http://www.csiannual.com/" target="_blank">CSI Anual conference</a>. The topic he found intriguing is Security and Responsibility.  If something happens how and to what extent as security professionals are we responsible and accountable.  This is a topic he brought up on twitter as well and got a lot of replies back.  Some agreeing and some not, Feel free to weigh in on this one.</p>
<p>Some of the references that were brought up in response to this topic were <a title="http://sandboxie.com/" href="http://sandboxie.com/" target="_blank">Sandboxie</a>, <a title="http://www.castlecops.com/" href="http://www.castlecops.com/" target="_blank">castlecops</a>, and <a title="http://en.wikipedia.org/wiki/Web_of_trust" href="http://en.wikipedia.org/wiki/Web_of_trust" target="_blank">Web of Trust</a>.</p>
<p>After the break we went into a discussion on <a title="http://en.wikipedia.org/wiki/Dd_(Unix)" href="http://en.wikipedia.org/wiki/Dd_(Unix)" target="_blank">DD Images</a> and using <a title="http://liveview.sourceforge.net/" href="http://liveview.sourceforge.net/" target="_blank">live view</a> on them, but since that was a fail, Chris used <a title="http://en.wikipedia.org/wiki/QEMU" href="http://en.wikipedia.org/wiki/QEMU" target="_blank">QEMU</a>.   You can even go get some test images at <a title="http://www.projecthoneypot.org/" href="http://www.projecthoneypot.org/" target="_blank">ProjectHoneypot.org</a> and convert them using a tool <a title="http://www.bschatz.org/2006/p2v/" href="http://www.bschatz.org/2006/p2v/" target="_blank">dd2vmdk</a> .  The conversation went into WPA is not Busted.  We referenced Steven Gibson&#8217;s explantion and Joel Eslers <a title="http://isc.sans.org/diary.html?storyid=5300" href="http://isc.sans.org/diary.html?storyid=5300" target="_blank">blog posts</a> on the subject.  During the break we discussed a great site as well from Josh Wright about <a title="http://www.wirelessve.org/news_entries" href="http://www.wirelessve.org/news_entries" target="_parent">Wireless Vulnerabilities &amp; Exploits</a></p>
<p>After the Break we were able to bring in the real Joel Esler.  Joel is part time batman as well and Joel has aggred to give us at least one batmobile, but we digress.  He actually works for <a title="http://www.sourcefire.com/" href="http://www.sourcefire.com/" target="_blank">sourcefire</a>.  This is an organzation that you should take a look at, it is well worth your time.  He also is an avid security blogger and has his own blog at Joel Esler.net  Joel talks about he IPS&#8217;s of today are simply not the same as many of the original IPS&#8217;s.</p>
<p>We lose Joel a little bit during the break and we cut a little more abruptly to break than we normally do.  Sorry about that!  But we kind of ran out of content and time.</p>
<p>SecuraBit would like to make sure everyone has a Happy Holidays and don&#8217;t forget to leave us feedback on Itunes even if you don&#8217;t listen via Itunes.  We want to get some of these casts out of there that have not posted in years.</p>
<p>Hosts:</p>
<p>Rob Fuller &#8211; Mubix, room362.com<br />
Anthony Gartner &#8211; AnthonyGartner.com<br />
Chris Gerling &#8211; Hak5Chris, Chrisgerling.com<br />
Chris Mills &#8211; ChrisAM<br />
Jason Mueller &#8211; SecurabitJay</p>
<p>Special Guest: Joel Esler from sourcefire.com and Joelesler.net</p>
<p>Important links for the show and documents used:</p>
<p>http://www.phishtank.com/</p>
<p>http://projecthoneypot.org/</p>
<p>http://www.sourcefire.com/products/3D/?semg=USSFR2&amp;gclid=CISstozXgpcCFQVKtAodijdxXQ</p>
<p>http://www.joelesler.net/finshake/Blog/Blog.html</p>
<p>http://www.wirelessve.org/news_entries</p>
<p>http://en.wikipedia.org/wiki/Dd_(Unix)</p>
<p>http://en.wikipedia.org/wiki/QEMU</p>
<p>http://isc.sans.org/diary.html?rss</p>
<p>http://isc.sans.org/diary.html?storyid=5300</p>
<p>http://www.clamav.net/</p>
<p>http://sandboxie.com/</p>
<p>http://www.castlecops.com/</p>
<p>http://en.wikipedia.org/wiki/Web_of_trust</p>
]]></content:encoded>
			<wfw:commentRss>http://www.securabit.com/2008/11/30/securabit-ep-15-will-the-real-joel-esler-please-step-forward/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Securabit Episode 14 We remind you to not get SWACKED!!!</title>
		<link>http://www.securabit.com/2008/11/10/securabit-episode-14-we-remind-you-to-not-get-swacked/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=securabit-episode-14-we-remind-you-to-not-get-swacked</link>
		<comments>http://www.securabit.com/2008/11/10/securabit-episode-14-we-remind-you-to-not-get-swacked/#comments</comments>
		<pubDate>Mon, 10 Nov 2008 18:14:28 +0000</pubDate>
		<dc:creator>AnthonyGartner</dc:creator>
				<category><![CDATA[SecuraBits]]></category>
		<category><![CDATA[Show Releases]]></category>
		<category><![CDATA[Adrian]]></category>
		<category><![CDATA[Anthony Gartner - AnthonyGartner]]></category>
		<category><![CDATA[binrev]]></category>
		<category><![CDATA[CEH]]></category>
		<category><![CDATA[Chris Gerling - Hak]]></category>
		<category><![CDATA[Chris Mills - ChrisAM]]></category>
		<category><![CDATA[Irongeek]]></category>
		<category><![CDATA[Jason Mueller - SecurabitJay]]></category>
		<category><![CDATA[MS08-067]]></category>
		<category><![CDATA[Rougefix]]></category>
		<category><![CDATA[sans]]></category>
		<category><![CDATA[shmoocon]]></category>
		<category><![CDATA[smbminute.com]]></category>
		<category><![CDATA[stickam]]></category>

		<guid isPermaLink="false">http://securabit.com/?p=338</guid>
		<description><![CDATA[In this episode we have a special guest Adrian from <a title="http://irongeek.com" href="http://irongeek.com" target="_blank">Irongeek.com</a>.  We conversed about the going's on at <a title="http://www.phreaknic.info/pn12/" href="http://www.phreaknic.info/pn12/" target="_blank">phreaknic</a>. Adrian presented down there and this is where he ended]]></description>
			<content:encoded><![CDATA[<p>In this episode we have a special guest Adrian from <a title="http://irongeek.com" href="http://irongeek.com" target="_blank">Irongeek.com</a>.  We conversed about the going&#8217;s on at <a title="http://www.phreaknic.info/pn12/" href="http://www.phreaknic.info/pn12/" target="_blank">phreaknic</a>. Adrian presented down there and this is where he ended up meeting Bruce and Heidi Potter from the <a title="http://shmoocon.org" href="http://shmoocon.org" target="_blank">Shmoocon Group</a>.  The discussion covered a little more on the MS08-067 issues, Sans Training, and CEH.  This is the first episode where we experimented and used stickam.com to allow the listeners to see just how messed up we really are.</p>
<p>After the break, Adrian spoke about how one of the guys from <a title="http://www.binrev.com/" href="http://www.binrev.com/" target="_blank">binrev.com</a> turned him on to a book for review called <a title="http://www.amazon.com/Googling-Security-Much-Google-About/dp/0321518667" href="http://www.amazon.com/Googling-Security-Much-Google-About/dp/0321518667" target="_blank">Googling Security: How Much Does Google Know About You?</a> written by Greg Conti.  Anthony ended up going into some of new virus / trojan infections.  These were on the lines of antivirus 2009 and others of the type.  Consensus was that a good cleaner tool was called <a title="http://www.technibble.com/repair-tool-of-the-week-roguefix/" href="http://www.technibble.com/repair-tool-of-the-week-roguefix/" target="_blank">Rougefix</a> (recommendatin from the IRC channel by Tim Krabek).  Adrian recommended a song by <a title="http://www.tomsmithonline.com/main1.htm" href="http://www.tomsmithonline.com/main1.htm" target="_blank">Tom Smith</a> about Technical Suport for Dad.</p>
<p>We went into a little more information on the <a title="http://www.dvorak.org/blog/?p=29213" href="http://www.dvorak.org/blog/?p=29213" target="_blank">New York School district&#8217;s vulnerability</a>. We also went into a little bit on how to lock down a printer as well.  Found a list of the <a title="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&amp;cc=us&amp;taskId=120&amp;prodSeriesId=84028&amp;prodTypeId=18972&amp;prodSeriesId=84028&amp;objectID=bpl01965" href="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&amp;cc=us&amp;taskId=120&amp;prodSeriesId=84028&amp;prodTypeId=18972&amp;prodSeriesId=84028&amp;objectID=bpl01965" target="_blank">PJL</a> commands for HP.</p>
<p>Securabit wanted to remind everyone that if you have anything to say you are welcome to come on the show and tell us what you think and know.  It is an open invitation. We want to thank those individuals who have donated to the podcast as well.  Check out a couple of our friends podcasts at http://securityjustice.com and the http://SMBminute.com</p>
<p>Hosts:</p>
<p>Chris Mills &#8211; ChrisAM</p>
<p>Chris Gerling &#8211; Hak5Chris, Chrisgerling.com</p>
<p>Anthony Gartner &#8211; AnthonyGartner.com</p>
<p>Jason Mueller &#8211; SecurabitJay</p>
<p>Special Guest: Adrian from Irongeek.com</p>
<p>Important links for the show and documents used:</p>
<p><a href="http://irongeek.com">http://irongeek.com</a><br />
<a href="http://www.phreaknic.info/pn12/">http://www.phreaknic.info/pn12/</a><br />
<a href="http://shmoocon.org">http://shmoocon.org</a><br />
<a href="http://www.binrev.com/">http://www.binrev.com/</a><br />
<a href="http://www.amazon.com/gp/product/0321518667?ie=UTF8&amp;tag=httpwwwalfgco-20&amp;linkCode=as2&amp;camp=1789&amp;creative=390957&amp;creativeASIN=0321518667">Googling Security: How Much Does Google Know About You?</a><img style="border:none !important; margin:0px !important;" src="http://www.assoc-amazon.com/e/ir?t=httpwwwalfgco-20&amp;l=as2&amp;o=1&amp;a=0321518667" border="0" alt="" width="1" height="1" /><br />
<a href="http://www.technibble.com/repair-tool-of-the-week-roguefix/">http://www.technibble.com/repair-tool-of-the-week-roguefix/</a><br />
<a href="http://www.tomsmithonline.com/main1.htm">http://www.tomsmithonline.com/main1.htm</a><br />
<a href="http://timesunion.com/AspStories/story.asp?storyID=732745">http://timesunion.com/AspStories/story.asp?storyID=732745</a><br />
<a href="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&amp;cc=us&amp;taskId=120&amp;prodSeriesId=84028&amp;prodTypeId=18972&amp;prodSeriesId=84028&amp;objectID=bpl01965">http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?lang=en&amp;cc=us&amp;taskId=120&amp;prodSeriesId=84028&amp;prodTypeId=18972&amp;prodSeriesId=84028&amp;objectID=bpl01965</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.securabit.com/2008/11/10/securabit-episode-14-we-remind-you-to-not-get-swacked/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>
