<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>tanasi.it &#187; Week&#8217;s Links</title>
	<atom:link href="http://www.tanasi.it/category/weeks-links/feed" rel="self" type="application/rss+xml" />
	<link>http://www.tanasi.it</link>
	<description>Alessandro `jekil` Tanasi blog</description>
	<lastBuildDate>Mon, 01 Mar 2010 11:44:39 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Week&#8217;s Links</title>
		<link>http://www.tanasi.it/1169-weeks-links-50.html</link>
		<comments>http://www.tanasi.it/1169-weeks-links-50.html#comments</comments>
		<pubDate>Fri, 14 Dec 2007 00:59:00 +0000</pubDate>
		<dc:creator>jekil</dc:creator>
				<category><![CDATA[In English]]></category>
		<category><![CDATA[Techie]]></category>
		<category><![CDATA[Week's Links]]></category>

		<guid isPermaLink="false">http://localhost/wordpress/?p=1087</guid>
		<description><![CDATA[The best security links of this week from Planet Security.

You really think that can stop me? Another example of secuity through obscurity which is futile.
UCSB iCTF Results
InformationWeek and Virtualization Security
Real Network Visualization
Aspect-Oriented Programming and Security
Man-in-the-Middle Attack by Tor Exit Node
IOS Emulation Just Got Better
An Analysis of Security Mechanisms in the OSI Model
MDAC ActiveX Code Execution [...]]]></description>
			<content:encoded><![CDATA[<p>The best security links of this week from <a href="http://www.planetsecurity.info/">Planet Security</a>.
<ul>
<li><a href="http://silverstr.ufies.org/blog/archives/001028.html">You really think that can stop me? Another example of secuity through obscurity which is futile.</a></li>
<li><a href="http://honeyblog.org/archives/151-UCSB-iCTF-Results.html">UCSB iCTF Results</a></li>
<li><a href="http://www.bloginfosec.com/2007/12/07/informationweek-and-virtualization-security/" rel="bookmark" title="Permalink: InformationWeek and Virtualization Security">InformationWeek and Virtualization Security</a></li>
<li><a href="http://honeyblog.org/archives/150-Real-Network-Visualization.html">Real Network Visualization</a></li>
<li><a href="http://www.securityfocus.com/infocus/1895?ref=rss">Aspect-Oriented Programming and Security</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/12/maninthemiddle.html">Man-in-the-Middle Attack by Tor Exit Node</a></li>
<li><a href="http://www.ciscoblog.com/archives/2007/12/ios_emulation_j.html">IOS Emulation Just Got Better</a></li>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/KRodriguez_OSI_Model.pdf">An Analysis of Security Mechanisms in the OSI Model</a></li>
<li><a href="http://ddanchev.blogspot.com/2007/12/mdac-activex-code-execution-exploit.html">MDAC ActiveX Code Execution Exploit Still in the Wild</a></li>
<li><a href="http://jeremiahgrossman.blogspot.com/2007/10/best-web-application-vulnerability.html">The Best Web Application Vulnerability Scanner in the World</a></li>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/AHerring_Email_Compliance.pdf">Email Compliance and Management in Education</a></li>
<li><a href="http://www.securityfocus.com/columnists/455?ref=rss">Rebinding attacks unbound</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/12/mi5_sounds_alar.html">MI5 Sounds Alarm on Internet Spying from China</a></li>
<li><a href="http://www.avertlabs.com/research/blog/index.php/2007/12/03/from-fast-flux-to-rockphish-part-2/">From Fast-Flux to RockPhish</a></li>
<li><a href="http://computer.forensikblog.de/en/2007/12/comparing_jpeg_quantization_tables.html">Comparing JPEG Quantization Tables</a></li>
<li><a href="http://www.slate.com/id/2179052/entry/0/fr/rss/" target="_blank">The Pedophile&#8217;s Secret Code</a></li>
</ul>
<h3  class="related_post_title">Random Posts</h3><ul class="related_post"><li><a href="http://www.tanasi.it/802-hacker-quotes.html" title="Hacker Quotes">Hacker Quotes</a></li><li><a href="http://www.tanasi.it/717-10-best-security-live-cd-distros.html" title="10 Best Security Live CD Distros">10 Best Security Live CD Distros</a></li><li><a href="http://www.tanasi.it/663-forensic-analysis-test-and-training-tools.html" title="Forensic Analysis Test and Training Tools">Forensic Analysis Test and Training Tools</a></li><li><a href="http://www.tanasi.it/664-weeks-links-9.html" title="Week&#8217;s Links">Week&#8217;s Links</a></li><li><a href="http://www.tanasi.it/614-weeks-links-5.html" title="Week&#8217;s Links">Week&#8217;s Links</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.tanasi.it/1169-weeks-links-50.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Week&#8217;s Links</title>
		<link>http://www.tanasi.it/1163-weeks-links-49.html</link>
		<comments>http://www.tanasi.it/1163-weeks-links-49.html#comments</comments>
		<pubDate>Thu, 06 Dec 2007 21:06:00 +0000</pubDate>
		<dc:creator>jekil</dc:creator>
				<category><![CDATA[In English]]></category>
		<category><![CDATA[Techie]]></category>
		<category><![CDATA[Week's Links]]></category>

		<guid isPermaLink="false">http://localhost/wordpress/?p=1082</guid>
		<description><![CDATA[The best security links of this week from Planet Security.

27Mhz Wireless Keyboard Analysis Report aka &#34;We Know What You Typed Last Summer&#34;
Active exploit site for Quicktime RTSP Response vulnerability
Expert Commentary on SPAN and RSPAN Weaknesses
ENISA botnet study
What is RAM, legally speaking?
Anton Security Tip of the Week #13: Into the Darkness &#8230; or The Ominous World [...]]]></description>
			<content:encoded><![CDATA[<p>The best security links of this week from <a href="http://www.planetsecurity.info/">Planet Security</a>.
<ul>
<li><a href="http://www.securiteam.com/securityreviews/6G0030KKKI.html">27Mhz Wireless Keyboard Analysis Report aka &quot;We Know What You Typed Last Summer&quot;</a></li>
<li><a href="http://isc.sans.org/diary.html?storyid=3713">Active exploit site for Quicktime RTSP Response vulnerability</a></li>
<li><a href="http://taosecurity.blogspot.com/2007/12/expert-commentary-on-span-and-rspan.html">Expert Commentary on SPAN and RSPAN Weaknesses</a></li>
<li><a href="http://honeyblog.org/archives/144-ENISA-botnet-study.html">ENISA botnet study</a></li>
<li><a href="http://windowsir.blogspot.com/2007/06/what-is-ram-legally-speaking.html">What is RAM, legally speaking?</a></li>
<li><a href="http://www.oreillynet.com/sysadmin/blog/2007/11/anton_security_tip_of_the_day_1.html">Anton Security Tip of the Week #13: Into the Darkness &#8230; or The Ominous World of Unix Binary Audit Logs</a></li>
<li><a href="http://isc.sans.org/diary.html?storyid=3708">Facebook, pr0n and privacy</a></li>
<li><a href="http://www.oreillynet.com/sysadmin/blog/2007/11/ideal_log_management_tool.html">Ideal Log Management Tool?</a></li>
<li><a href="http://isc.sans.org/diary.html?storyid=3705">Bot Roast II</a></li>
<li><a href="http://www.win.tue.nl/hashclash/Nostradamus/">Predicting the winner of the 2008 US Presidential Elections using a Sony PlayStation 3</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/11/cybercrime_vs_c.html">Cybercrime vs Cyberterrorism</a></li>
<li><a href="http://www.avertlabs.com/research/blog/index.php/2007/11/27/fun-with-symbian-platform-security/">Fun With Symbian Platform Security</a></li>
<li><a href="http://www.avertlabs.com/research/blog/index.php/2007/11/27/hacker-targets-mac-fan-blogs/">Hacker targets Mac fan blogs</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/11/college_cryptog.html">College Cryptography Course Online</a></li>
<li><a href="http://blog.loglogic.com/2007/11/protecting_logs_from_admins_a_lost_battle/">Protecting logs from admins</a></li>
</ul>
<h3  class="related_post_title">Random Posts</h3><ul class="related_post"><li><a href="http://www.tanasi.it/553-lol-bruce-schneier-fun.html" title="Lol: Bruce Schneier Fun">Lol: Bruce Schneier Fun</a></li><li><a href="http://www.tanasi.it/222-cinema-the-interpreter.html" title="Cinema: The interpreter">Cinema: The interpreter</a></li><li><a href="http://www.tanasi.it/444-charles-bukowski.html" title="Charles Bukowski">Charles Bukowski</a></li><li><a href="http://www.tanasi.it/1359-whats-new-in-the-flash-10-security.html" title="What&#8217;s new in the Flash 10 security">What&#8217;s new in the Flash 10 security</a></li><li><a href="http://www.tanasi.it/68-67.html" title=""></a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.tanasi.it/1163-weeks-links-49.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Week&#8217;s Links</title>
		<link>http://www.tanasi.it/1159-weeks-links-48.html</link>
		<comments>http://www.tanasi.it/1159-weeks-links-48.html#comments</comments>
		<pubDate>Wed, 28 Nov 2007 00:20:00 +0000</pubDate>
		<dc:creator>jekil</dc:creator>
				<category><![CDATA[Techie]]></category>
		<category><![CDATA[Week's Links]]></category>

		<guid isPermaLink="false">http://localhost/wordpress/?p=1079</guid>
		<description><![CDATA[The best security links of this week from Planet Security.

Apple QuickTime 7.3 RTSP Response 0day
Exceeding CIS and NIST Benchmarks &#8211; Third Party Patch Auditing
QuickTime exploited by media-handling flaw
XSRF: Checking HTTP Referer Header Is Not Enough
A cryptographic hash function reading guide
Wi-Fi Jacking Extremely Common
Using CSRF to Attack Mobile Phones
Russian Business Network &#8211; Additional Analysis
Interview with Dan [...]]]></description>
			<content:encoded><![CDATA[<p>The best security links of this week from <a href="http://www.planetsecurity.info/">Planet Security</a>.
<ul>
<li><a href="http://isc.sans.org/diary.html?storyid=3690">Apple QuickTime 7.3 RTSP Response 0day</a></li>
<li><a href="http://blog.tenablesecurity.com/2007/11/exceeding-cis-a.html">Exceeding CIS and NIST Benchmarks &#8211; Third Party Patch Auditing</a></li>
<li><a href="http://www.securityfocus.com/brief/633?ref=rss">QuickTime exploited by media-handling flaw</a></li>
<li><a title="Permanent Link: XSRF: Checking HTTP Referer Header Is Not Enough" rel="bookmark" href="http://www.secureworks.com/research/blog/index.php/2007/10/30/xsrf-checking-http-referer-header-is-not-enough/">XSRF: Checking HTTP Referer Header Is Not Enough</a></li>
<li><a href="http://www.lightbluetouchpaper.org/2007/11/23/a-cryptographic-hash-function-reading-guide/" rel="bookmark" title="Permanent Link: A cryptographic hash function reading guide">A cryptographic hash function reading guide</a></li>
<li><a href="http://www.darknet.org.uk/2007/11/wi-fi-jacking-extremely-common-45-of-people-do/">Wi-Fi Jacking Extremely Common</a></li>
<li><a class="TitleLinkStyle" rel="bookmark" href="http://aviv.raffon.net/2007/11/22/UsingCSRFToAttackMobilePhones.aspx">Using CSRF to Attack Mobile Phones</a></li>
<li><a href="http://isc.sans.org/diary.html?storyid=3681">Russian Business Network &#8211; Additional Analysis</a></li>
<li><a href="http://www.zone-h.org/content/view/14895/31/">Interview with Dan Egerstad</a></li>
<li><a href="http://www.f-secure.com/weblog/archives/00001322.html">Converting an iPhone into Full-Featured Spy Tool</a></li>
<li><a href="http://isc.sans.org/diary.html?storyid=3672">“There is nothing on my computer that a hacker would be interested in”</a></li>
<li><a href="http://www.securityfocus.com/infocus/1894?ref=rss">Passive Network Analysis</a></li>
<li><a href="http://jeremiahgrossman.blogspot.com/2007/10/1000000-xss-vulnerabilities-and.html">1,000,000 XSS vulnerabilities and counting</a></li>
<li><a href="http://www.f-secure.com/weblog/archives/00001321.html">Testing TOR Nodes for Man-in-the-Middle Attacks</a></li>
<li><a _base_target="_blank" href="http://www.cfreds.nist.gov/">NIST Computer Forensic Reference Data Sets (CFReDS)</a> </li>
<li><a href="http://windowsir.blogspot.com/2007/06/eventlog-analysis.html"> EventLog Analysis</a></li>
<li><a href="http://erratasec.blogspot.com/2007/11/apple-quicktime-rtsp-update.html">Apple Quicktime RTSP update</a></li>
<li><a href="http://jeremiahgrossman.blogspot.com/2007/09/business-logic-flaws-freshly-minted.html">Business Logic Flaws, freshly minted White Paper</a></li>
<li><a href="http://erratasec.blogspot.com/2007/10/funny-vista-tricks-with-aslr.html">Funny Vista Tricks with ASLR</a></li>
</ul>
<h3  class="related_post_title">Random Posts</h3><ul class="related_post"><li><a href="http://www.tanasi.it/371-lol-similitudini.html" title="Lol: Similitudini">Lol: Similitudini</a></li><li><a href="http://www.tanasi.it/585-domande-a-lezione.html" title="Domande a lezione">Domande a lezione</a></li><li><a href="http://www.tanasi.it/753-lol-uomini.html" title="Lol: Uomini">Lol: Uomini</a></li><li><a href="http://www.tanasi.it/1494-cinema-burn-after-reading-a-prova-di-spia.html" title="Cinema: Burn After Reading, a prova di spia">Cinema: Burn After Reading, a prova di spia</a></li><li><a href="http://www.tanasi.it/1145-cinema-resident-evil-extinction.html" title="Cinema: Resident Evil Extinction">Cinema: Resident Evil Extinction</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.tanasi.it/1159-weeks-links-48.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Week&#8217;s Links</title>
		<link>http://www.tanasi.it/1156-weeks-links-47.html</link>
		<comments>http://www.tanasi.it/1156-weeks-links-47.html#comments</comments>
		<pubDate>Sun, 18 Nov 2007 23:59:00 +0000</pubDate>
		<dc:creator>jekil</dc:creator>
				<category><![CDATA[In English]]></category>
		<category><![CDATA[Techie]]></category>
		<category><![CDATA[Week's Links]]></category>

		<guid isPermaLink="false">http://localhost/wordpress/?p=1078</guid>
		<description><![CDATA[The best security links of this week from Planet Security.

Determining the version of XP
NIST encryption standard may have NSA backdoor
The 15 Dumbest Apple Predictions Of All Time
Bundle of mayhem: mmcodecs
DoS &#38; China to Install Red Phone Hoteline
Dilbert on IdM and Strong Authentication
Architecture, security and assurance
snort &#34;unified&#34; file api in ruby
The hack of the year
Five mistakes [...]]]></description>
			<content:encoded><![CDATA[<p>The best security links of this week from <a href="http://www.planetsecurity.info/">Planet Security</a>.
<ul>
<li><a href="http://windowsir.blogspot.com/2007/06/determining-version-of-xp.html">Determining the version of XP</a></li>
<li><a href="http://www.hackinthebox.org/modules.php?op=modload&#038;name=News&#038;file=article&#038;sid=24893&#038;mode=thread&#038;order=0&#038;thold=0">NIST encryption standard may have NSA backdoor</a></li>
<li><a target="_blank" href="http://blog.wired.com/gadgets/2007/11/analysts-dont-k.html#">The 15 Dumbest Apple Predictions Of All Time</a></li>
<li><a href="http://sunbeltblog.blogspot.com/2007/11/bundle-of-mayhem-mmcodecs.html">Bundle of mayhem: mmcodecs</a></li>
<li><a href="http://djtechnocrat.blogspot.com/2007/11/dos-china-to-install-red-phone-hoteline.html">DoS &amp; China to Install Red Phone Hoteline</a></li>
<li><a href="http://www.aniltj.com/blog/2007/11/18/DilbertOnIdMAndStrongAuthentication.aspx">Dilbert on IdM and Strong Authentication</a></li>
<li><a href="http://isc.sans.org/diary.html?storyid=3659">Architecture, security and assurance</a></li>
<li><a href="http://www.shmoo.com/%7Ebmc/software/ruby/unified.html">snort &quot;unified&quot; file api in ruby</a></li>
<li><a href="http://www.smh.com.au/news/security/the-hack-of-the-year/2007/11/12/1194766589522.html?page=fullpage#contentSwap1">The hack of the year</a></li>
<li><a href="http://www.computerworld.com/action/article.do?command=printArticleBasic&#038;articleId=9011740">Five mistakes of data encryption</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/11/thoughts_on_the.html">Thoughts on the Security of qmail</a></li>
<li><a href="http://www.cgisecurity.com/2007/10/15">Visual Studio Plugin XSSDetect Available To Detect Cross-Site Scripting In Your Code</a></li>
<li><a href="http://www.darknet.org.uk/2007/11/doubleclick-involved-in-malware-distribution/"> Doubleclick Involved in Malware Distribution</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/11/the_strange_sto.html">The Strange Story of Dual_EC_DRBG</a></li>
<li><a href="http://taosecurity.blogspot.com/2007/11/analyzing-protocol-hopping-covert.html">Analyzing Protocol Hopping Covert Channel Tool</a></li>
<li><a href="http://www.freebsddiary.org/pf.php">Fighting spam with pf</a></li>
<li><a href="http://www.secureworks.com/research/threats/callforward/?threat=callforward">Call Forwarding Phishing Attack</a></li>
<li><a href="http://www.secureworks.com/research/threats/ddos/?threat=ddos">HTTP DDoS Attack Mitigation Using Tarpitting</a></li>
<li><a href="http://www.sans.org/score/incidentforms/index.php">Sample Incident Handling Forms</a></li>
<li><a href="http://www.sans.org/reading_room/whitepapers/application/1996.php">Analyzing Attack Surface Code Coverage</a></li>
<li><a href="http://eprint.iacr.org/2007/419">Cryptanalysis of the Random Number Generator of the Windows Operating System</a></li>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/THyslip_Malware.pdf">Malware Response and Analysis</a></li>
<li><a title="Permanent Link: Effects of DNS Rebinding On IE’s Trust Zones" href="http://ha.ckers.org/blog/20071112/effects-of-dns-rebinding-on-ies-trust-zones/">Effects of DNS Rebinding On IE’s Trust Zones</a></li>
<li><a href="http://ha.ckers.org/blog/feed/">Live-response on SUN Solaris</a></li>
<li><a href="http://taosecurity.blogspot.com/2007/11/great-papers-from-honeynet-project.html">Great Papers from Honeynet Project</a></li>
<li><a href="http://taosecurity.blogspot.com/2007/11/great-papers-from-honeynet-project.html"></a><a href="http://www.openrce.org/blog/view/922/Visual_Patterns_for_File_Format_Fuzzing">Visual Patterns for File Format Fuzzing</a></li>
</ul>
<h3  class="related_post_title">Random Posts</h3><ul class="related_post"><li><a href="http://www.tanasi.it/509-lol-video-selection-2.html" title="Lol: Video Selection">Lol: Video Selection</a></li><li><a href="http://www.tanasi.it/530-programming-assembly-in-unix.html" title="Programming assembly in unix">Programming assembly in unix</a></li><li><a href="http://www.tanasi.it/459-lol-sua-altezza-reale.html" title="Lol: Sua altezza reale">Lol: Sua altezza reale</a></li><li><a href="http://www.tanasi.it/618-lol-assistenza-tecnica.html" title="Lol: Assistenza tecnica">Lol: Assistenza tecnica</a></li><li><a href="http://www.tanasi.it/1225-lol-vista-error-message.html" title="Lol: Vista error message">Lol: Vista error message</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.tanasi.it/1156-weeks-links-47.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Week&#8217;s Links</title>
		<link>http://www.tanasi.it/1081-weeks-links-46.html</link>
		<comments>http://www.tanasi.it/1081-weeks-links-46.html#comments</comments>
		<pubDate>Sun, 02 Sep 2007 21:17:00 +0000</pubDate>
		<dc:creator>jekil</dc:creator>
				<category><![CDATA[In English]]></category>
		<category><![CDATA[Techie]]></category>
		<category><![CDATA[Week's Links]]></category>

		<guid isPermaLink="false">http://localhost/wordpress/?p=1017</guid>
		<description><![CDATA[
Recursive Request DoS
How S/MIME could suck slightly less with a simple GETSMIME
Improving Security from the Inside Out: A Business Case for Corporate Security Awareness
Overwriting Attributes
Inside Carnivore
Computer Forensics Case Study
Web Services Security
Six Mistakes of Log Management
Desktop Application Virtualization and Application Streaming: Function and Security Benefits
Technical Details on the FBI&#8217;s Wiretapping Network
Old Threats Never Die
New German Hacking [...]]]></description>
			<content:encoded><![CDATA[<ul>
<li><a href="http://ha.ckers.org/blog/20070901/recursive-request-dos/">Recursive Request DoS</a></li>
<li><a href="https://financialcryptography.com/mt/archives/000966.html">How S/MIME could suck slightly less with a simple GETSMIME</a></li>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/Improving_Security_from_the_Inside_Out_NSI.pdf">Improving Security from the Inside Out: A Business Case for Corporate Security Awareness</a></li>
<li><a href="http://ha.ckers.org/blog/20070830/overwriting-attributes/">Overwriting Attributes</a></li>
<li><a href="http://www.emergentchaos.com/archives/2007/08/inside_carnivore.html">Inside Carnivore</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/08/computer_forens.html">Computer Forensics Case Study</a></li>
<li><a href="http://www.modsecurity.org/blog/archives/2007/08/web_services_se.html">Web Services Security</a></li>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/Six_Mistakes_of_Log_Management_AChuvakin.pdf">Six Mistakes of Log Management</a></li>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/Desktop_Virtualization_TOlzak.pdf">Desktop Application Virtualization and Application Streaming: Function and Security Benefits</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/08/technical_detai.html">Technical Details on the FBI&#8217;s Wiretapping Network</a></li>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/IBM_ISS_old_threats_never_die_GOllmann.pdf">Old Threats Never Die</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/08/new_german_hack.html">New German Hacking Law</a></li>
<li><a href="http://www.wired.com/gadgets/wireless/news/2007/08/iphone_forensics">IPhone Tantalizes, Frustrates Forensics Experts</a></li>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/IBM_ISS_vishing_guide_GOllmann.pdf">The Vishing Guide</a></li>
<li><a href="http://www.darknet.org.uk/2007/08/vista-security-feature-teredo-protocol-analysis/"> Vista Security Feature &#8211; Teredo Protocol Analysis</a></li>
<li><a href="http://ha.ckers.org/blog/20070827/paper-on-hacking-intranets-using-websites-not-web-browsers/">Paper on Hacking Intranets Using Websites (Not Web Browsers)</a></li>
</ul>
<h3  class="related_post_title">Random Posts</h3><ul class="related_post"><li><a href="http://www.tanasi.it/784-lol-un-geek-a-natale.html" title="Lol: Un geek a Natale">Lol: Un geek a Natale</a></li><li><a href="http://www.tanasi.it/440-lol-la-bellezza-e-lalcool.html" title="Lol: La bellezza e l&#8217;alcool">Lol: La bellezza e l&#8217;alcool</a></li><li><a href="http://www.tanasi.it/214-signals-intelligence-and-human-rights.html" title="Signals intelligence and human rights">Signals intelligence and human rights</a></li><li><a href="http://www.tanasi.it/1221-whats-new-in-rails-2.html" title="What&#8217;s new in Rails 2">What&#8217;s new in Rails 2</a></li><li><a href="http://www.tanasi.it/182-assistenza-dell-e-ventolina-arresa.html" title="Assistenza Dell e ventolina arresa">Assistenza Dell e ventolina arresa</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.tanasi.it/1081-weeks-links-46.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>(A lot of holiday) Week&#8217;s Links</title>
		<link>http://www.tanasi.it/1074-a-lot-of-holiday-weeks-links.html</link>
		<comments>http://www.tanasi.it/1074-a-lot-of-holiday-weeks-links.html#comments</comments>
		<pubDate>Wed, 29 Aug 2007 00:33:00 +0000</pubDate>
		<dc:creator>jekil</dc:creator>
				<category><![CDATA[In English]]></category>
		<category><![CDATA[Techie]]></category>
		<category><![CDATA[Week's Links]]></category>

		<guid isPermaLink="false">http://localhost/wordpress/?p=1011</guid>
		<description><![CDATA[
X-morphic Exploitation
Skype&#8217;s Protection Is Limited
Student cracks Government&#8217;s $84m porn filter
Catching hook based keyloggers using IceSword
Core GRASP &#8211; SQL injection prevention for PHP
Interview with National Intelligence Director Mike McConnell
Feds use robots.txt files to stay invisible online. Lame.
XSS and Possible Information Disclosure in Urchin
&#34;Cyberwar&#34; in Estonia
Good Articles on CAPTCHAs
Why Was Skype Offline?
Using Modsec2sguil for HTTP transaction logging [...]]]></description>
			<content:encoded><![CDATA[<ul>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/IBM_ISS_x-morphic_exploitation_GOllmann.pdf">X-morphic Exploitation</a></li>
<li><a href="http://www.eweek.com/article2/0,1759,2175278,00.asp?kc=EWRSS03119TX1K0000594">Skype&#8217;s Protection Is Limited</a></li>
<li><a href="http://www.news.com.au/sundaytelegraph/story/0,,22304224-5005941,00.html">Student cracks Government&#8217;s $84m porn filter</a></li>
<li><a href="http://swatrant.blogspot.com/2006/05/catching-hook-based-keyloggers-using.html">Catching hook based keyloggers using IceSword</a></li>
<li><a href="http://advosys.ca/viewpoints/2007/08/core-grasp-php-sql-injection-prevention/">Core GRASP &#8211; SQL injection prevention for PHP</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/08/interview_with_6.html">Interview with National Intelligence Director Mike McConnell</a></li>
<li><a href="http://news.com.com/8301-13578_3-9765451-38.html?part=rss&#038;subj=news&#038;tag=2547-1_3-0-20">Feds use robots.txt files to stay invisible online. Lame.</a></li>
<li><a href="http://ha.ckers.org/blog/20070823/xss-and-possible-information-disclosure-in-urchin/">XSS and Possible Information Disclosure in Urchin</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/08/cyberwar_in_est.html">&quot;Cyberwar&quot; in Estonia</a></li>
<li><a href="http://ha.ckers.org/blog/20070822/good-articles-on-captchas/">Good Articles on CAPTCHAs</a></li>
<li><a href="http://www.freedom-to-tinker.com/?p=1190">Why Was Skype Offline?</a></li>
<li><a href="http://www.inliniac.net/blog/2007/08/22/using-modsec2sguil-for-http-transaction-logging-revisited.html">Using Modsec2sguil for HTTP transaction logging revisited</a></li>
<li><a href="http://blog.dkbza.org/2007/05/scanning-data-for-entropy-anomalies.html">Scanning data for entropy anomalies</a></li>
<li><a href="http://taosecurity.blogspot.com/2007/08/marcus-ranum-highlights-from-usenix.html">Marcus Ranum Highlights from USENIX Class</a></li>
<li><a href="http://www.securityfocus.com/columnists/451?ref=rss">Virtualized rootkits &#8211; Part 1</a></li>
<li><a href="http://www.networkperformancedaily.com/2007/08/voip_without_monitoring_is_lik.html">VoIP without monitoring is like cooking without tasting.</a></li>
<li><a href="http://isc.sans.org/diary.html?storyid=3294">Principle of Most Privilege and the Snort/ClamAV Purchase</a></li>
<li><a href="http://advosys.ca/viewpoints/2007/08/port-scanner-with-adobe-flash/">Port scanning with Adobe Flash</a></li>
<li><a href="http://www.securityfocus.com/brief/572?ref=rss">Skype: Outage prompted by Microsoft Update</a></li>
<li><a href="http://windowsir.blogspot.com/2007/05/forensic-visualization.html"> Forensic Visualization</a></li>
<li><a href="http://www.lightbluetouchpaper.org/2007/08/16/phishing-and-the-gaining-of-clue/">Phishing and the gaining of “clue”</a></li>
<li><a href="http://blog.gnist.org/article.php?story=HollidayCracking">Holliday cracking</a></li>
<li><a href="http://www.darknet.org.uk/2007/08/german-hacker-successfully-clones-e-passports/"> German Hacker Successfully Clones E-Passports</a></li>
<li><a href="http://www.metacafe.com/watch/545672/unlock_plastic_handcuffs_police_style/">Unlock Plastic Handcuffs! Police Style!</a></li>
<li><a href="http://voipsa.org/blog/2007/08/15/how-to-break-asterisk/">How to Break Asterisk</a></li>
<li><a href="http://ha.ckers.org/blog/20070814/preventing-xss-using-data-binding/">Preventing XSS Using Data Binding</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/08/social_phishing.html">Phishing Studies</a></li>
<li><a href="http://blogsecurity.net/wordpress/article-210607/">Hardening WordPress with htaccess</a></li>
<li><a href="http://computer.forensikblog.de/en/2007/08/evtx_parser.html">A Parser to Transform Vista Event Log Files into Plain Text</a></li>
<li><a href="http://www.ciscoblog.com/archives/2007/08/the_mother_of_a_1.html">The Mother of all Cisco PPT Icon Collections</a></li>
</ul>
<h3  class="related_post_title">Random Posts</h3><ul class="related_post"><li><a href="http://www.tanasi.it/167-call-center-vodafone.html" title="Call center Vodafone">Call center Vodafone</a></li><li><a href="http://www.tanasi.it/799-cinema-fahrenheit-911.html" title="Cinema: Fahrenheit 9/11">Cinema: Fahrenheit 9/11</a></li><li><a href="http://www.tanasi.it/282-pesci-daprile.html" title="Pesci d&#8217;Aprile">Pesci d&#8217;Aprile</a></li><li><a href="http://www.tanasi.it/1256-kaminsky-dns-vulnerability-for-dummies.html" title="Kaminsky DNS Vulnerability for dummies">Kaminsky DNS Vulnerability for dummies</a></li><li><a href="http://www.tanasi.it/9-uomo-immagine.html" title="Uomo immagine">Uomo immagine</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.tanasi.it/1074-a-lot-of-holiday-weeks-links.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Week&#8217;s Links</title>
		<link>http://www.tanasi.it/1040-weeks-links-45.html</link>
		<comments>http://www.tanasi.it/1040-weeks-links-45.html#comments</comments>
		<pubDate>Tue, 24 Jul 2007 13:28:00 +0000</pubDate>
		<dc:creator>jekil</dc:creator>
				<category><![CDATA[In English]]></category>
		<category><![CDATA[Techie]]></category>
		<category><![CDATA[Week's Links]]></category>

		<guid isPermaLink="false">http://localhost/wordpress/?p=986</guid>
		<description><![CDATA[
Multi-factor Authentication for Online Banking: Security or Snake Oil?
DCT, MPack developer
The Nduja Job: Into The World Of XSS Worms
Lessons Learned From the Deployment of a Smartphone-Based Access-Control System
Measuring Privacy Loss and the Impact of Privacy Protection in Web Browsing
The TSA and the Case of the Strange Battery Charger
Google&#8217;s Black Box Lemon
Using Data Samples
The Patriot Act [...]]]></description>
			<content:encoded><![CDATA[<ul>
<li><a href="http://usablesecurity.com/2007/07/19/multi-factor-authentication-for-online-banking-security-or-snake-oil/">Multi-factor Authentication for Online Banking: Security or Snake Oil?</a></li>
<li><a href="http://www.securityfocus.com/news/11476?ref=rss">DCT, MPack developer</a></li>
<li><a href="http://www.avertlabs.com/research/blog/index.php/2007/07/19/the-nduja-job-into-the-world-of-xss-worms/">The Nduja Job: Into The World Of XSS Worms</a></li>
<li><a href="http://usablesecurity.com/2007/07/19/lessons-learned-from-the-deployment-of-a-smartphone-based-access-control-system/">Lessons Learned From the Deployment of a Smartphone-Based Access-Control System</a></li>
<li><a href="http://usablesecurity.com/2007/07/19/measuring-privacy-loss-and-the-impact-of-privacy-protection-in-web-browsing/">Measuring Privacy Loss and the Impact of Privacy Protection in Web Browsing</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/07/the_tsa_and_the.html">The TSA and the Case of the Strange Battery Charger</a></li>
<li><a href="http://www.esecurityplanet.com/prevention/article.php/3689686">Google&#8217;s Black Box Lemon</a></li>
<li><a href="http://www.rootkit.com/blog.php?newsid=756">Using Data Samples</a></li>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/Patriot_Act_KWatson.pdf">The Patriot Act and Illegal and Legal Electronic Warrantless Searches</a></li>
<li><a href="http://taosecurity.blogspot.com/2007/07/no-undetectable-breaches.html">No Undetectable Breaches</a></li>
<li><a href="http://news.com.com/Will+security+firms+detect+police+spyware/2100-7348_3-6197020.html?tag=nefd.lede">Will security firms detect police spyware?</a></li>
<li><a href="http://asert.arbornetworks.com/2007/07/from-elk-to-peacomm-a-quarter-century-of-malware/">From Elk Cloner to Peacomm: A quarter century of malware</a></li>
<li><a href="http://spiresecurity.typepad.com/spire_security_viewpoint/2007/07/what-is-threate.html">What is threatening about ROI in security?</a></li>
<li><a href="http://www.lightbluetouchpaper.org/2007/07/18/economics-of-tor-performance/">Economics of Tor performance</a></li>
<li><a href="http://taosecurity.blogspot.com/2007/07/norad-inspired-security-metrics.html">NORAD-Inspired Security Metrics</a></li>
<li><a href="http://www.securityfocus.com/blogs/238">C++: A Cautionary Tale, or, 1 Hour Of Your Black Hat Trip is Spoken For</a></li>
<li><a href="http://www.dhanjani.com/archives/2007/07/the_complexities_of_assessing.html">The Complexities of Assessing XSRF Automatically Yet Accurately</a></li>
<li><a href="http://rdist.root.org/2007/07/16/tpm-hardware-attacks/" rel="bookmark">TPM hardware attacks</a></li>
<li><a href="http://www.caida.org/publications/papers/2007/dns_anomalies/"> Passive Monitoring of DNS Anomalies</a></li>
<li><a href="http://www.inliniac.net/blog/2007/07/16/snort-license-changes-revisited.html">Snort license changes revisited</a></li>
<li><a href="http://windowsir.blogspot.com/2007/05/ppt-metadata.html"> PPT Metadata</a></li>
<li><a href="http://honeyblog.org/archives/127-Know-your-Enemy-Fast-Flux-Service-Networks.html">Know your Enemy: Fast-Flux Service Networks</a></li>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/Mobile_Device_AGreen.pdf">Management of Security Policies for Mobile Devices</a></li>
<li><a href="http://www.channelinsider.com/article/Google+Homebrews+Powerful+Automatic+Scanning+Fuzzer/211797_1.aspx">Google Home-Brews Powerful Automatic Scanning Fuzzer</a></li>
<li><a href="http://blogs.techrepublic.com.com/tech-news/?p=816">Vista makes computer search easier… for the law</a></li>
</ul>
<h3  class="related_post_title">Random Posts</h3><ul class="related_post"><li><a href="http://www.tanasi.it/240-cinema-la-regola-del-sospetto.html" title="Cinema: La regola del sospetto">Cinema: La regola del sospetto</a></li><li><a href="http://www.tanasi.it/733-workrave.html" title="Workrave">Workrave</a></li><li><a href="http://www.tanasi.it/402-report-lultimo-giorno.html" title="Report: L&#8217;ultimo giorno">Report: L&#8217;ultimo giorno</a></li><li><a href="http://www.tanasi.it/253-miscellanea-della-giornata.html" title="Miscellanea della giornata">Miscellanea della giornata</a></li><li><a href="http://www.tanasi.it/245-cinema-the-jackal.html" title="Cinema: The Jackal">Cinema: The Jackal</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.tanasi.it/1040-weeks-links-45.html/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Week&#8217;s Links</title>
		<link>http://www.tanasi.it/1030-weeks-links-44.html</link>
		<comments>http://www.tanasi.it/1030-weeks-links-44.html#comments</comments>
		<pubDate>Sun, 15 Jul 2007 11:33:00 +0000</pubDate>
		<dc:creator>jekil</dc:creator>
				<category><![CDATA[In English]]></category>
		<category><![CDATA[Techie]]></category>
		<category><![CDATA[Week's Links]]></category>

		<guid isPermaLink="false">http://localhost/wordpress/?p=985</guid>
		<description><![CDATA[
How to restore XP activation status information after a reformat
Web Vulnerabilities in the Age of the iPhone
No ROI? No Problem
Event Logs in Unallocated Space
Ivan Voras FreeBSD 7 Live CD
Windows Vista Integrity Mechanism Technical Reference
Sguil vs. BASE
Mitigating the effects of a DDoS attack
Exploiting Online Games
Security paper shows how application can steal CPU cycles
Correspondent Inference Theory
Anti Forensics: [...]]]></description>
			<content:encoded><![CDATA[<ul>
<li><a href="http://sunbeltblog.blogspot.com/2007/07/sunbelt-weekly-techtips-51-how-to.html">How to restore XP activation status information after a reformat</a></li>
<li><a href="http://extra.fortifysoftware.com/blog/2007/07/web_vulnerabilities_in_the_age.html">Web Vulnerabilities in the Age of the iPhone</a></li>
<li><a href="http://taosecurity.blogspot.com/2007/07/no-roi-no-problem.html">No ROI? No Problem</a></li>
<li><a href="http://windowsir.blogspot.com/2007/05/event-logs-in-unallocated-space.html">Event Logs in Unallocated Space</a></li>
<li><a href="http://taosecurity.blogspot.com/2007/07/ivan-voras-freebsd-7-live-cd.html">Ivan Voras FreeBSD 7 Live CD</a></li>
<li><a target="_blank" href="http://msdn2.microsoft.com/en-us/library/bb625964.aspx">Windows Vista Integrity Mechanism Technical Reference</a></li>
<li><a href="http://blog.vorant.com/2006/12/sguil-vs-base.html">Sguil vs. BASE</a></li>
<li><a href="http://resources.zdnet.co.uk/articles/tutorials/0,1000002006,39287975,00.htm">Mitigating the effects of a DDoS attack</a></li>
<li><a href="http://www.freedom-to-tinker.com/?p=1177">Exploiting Online Games</a></li>
<li><a href="http://arstechnica.com/news.ars/post/20070711-security-paper-shows-how-applications-can-steal-cpu-cycles.html">Security paper shows how application can steal CPU cycles</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/07/correspondent_i.html">Correspondent Inference Theory</a></li>
<li><a href="http://www.securiteam.com/securityreviews/5DP0D0KM0I.html">Anti Forensics: Making Computer Forensics Hard</a></li>
<li><a href="http://www.darknet.org.uk/2007/07/hacking-with-ramzi/"> Hacking with Ramzi</a></li>
<li><a href="http://taosecurity.blogspot.com/2007/07/are-questions-sound.html">Are the Questions Sound?</a></li>
<li><a href="http://blogs.msdn.com/larryosterman/archive/2007/07/11/how-do-i-compare-two-different-netbios-names.aspx">How do I compare two different NetBIOS names?</a></li>
<li><a href="http://computer.forensikblog.de/en/2007/07/evtx_event_record.html">Evtx Event Record</a></li>
<li><a href="http://www.mullingsecurity.com/2005/12/vmware-presentation-on-security.html">Vmware presentation on security</a></li>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/Security_Code_Review_KMaraju.pdf">Security Code Review Advantages over Black-Box/Grey-Box Application Security Assessment</a></li>
<li><a href="http://www.windowsecurity.com/articles/Binders-Malware-Part1.html">Binders and Malware</a></li>
<li><a href="http://blog.vorant.com/2006/10/comparing-automated-malware-analysis.html">Comparing Automated Malware Analysis Services</a></li>
</ul>
<h3  class="related_post_title">Random Posts</h3><ul class="related_post"><li><a href="http://www.tanasi.it/1444-photo-gallery-with-ajax-and-javascript.html" title="Photo gallery with AJAX and Javascript">Photo gallery with AJAX and Javascript</a></li><li><a href="http://www.tanasi.it/536-lol-debugging.html" title="Lol: Debugging">Lol: Debugging</a></li><li><a href="http://www.tanasi.it/637-lol-gadget-usb.html" title="Lol: Gadget USB">Lol: Gadget USB</a></li><li><a href="http://www.tanasi.it/15-vmware.html" title="vmware">vmware</a></li><li><a href="http://www.tanasi.it/191-alcuni-paper-sui-worm.html" title="Alcuni paper sui worm">Alcuni paper sui worm</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.tanasi.it/1030-weeks-links-44.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Week&#8217;s Links</title>
		<link>http://www.tanasi.it/1017-weeks-links-43.html</link>
		<comments>http://www.tanasi.it/1017-weeks-links-43.html#comments</comments>
		<pubDate>Mon, 09 Jul 2007 16:39:00 +0000</pubDate>
		<dc:creator>jekil</dc:creator>
				<category><![CDATA[In English]]></category>
		<category><![CDATA[Techie]]></category>
		<category><![CDATA[Week's Links]]></category>

		<guid isPermaLink="false">http://localhost/wordpress/?p=976</guid>
		<description><![CDATA[
Data Backup and Recovery Options
Good Practice Guide for Computer-Based Electronic Evidence Updated
Hackers gain shell access to iPhone
Yahoo Follow-up
The Effect of Compliance on Database Integrity, Security and Administration
iPhone default passwd: Won’t people ever learn?
Top 11 reasons to look at your logs
Default Password List
Persistence of data on storage media

Random PostsForensic StoriesDa una chat di programmatoriCakePHP TutorialsLa potenza [...]]]></description>
			<content:encoded><![CDATA[<ul>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/Backup_JDrake.pdf">Data Backup and Recovery Options</a></li>
<li><a href="http://computer.forensikblog.de/en/2007/07/good_practice_guide_updated.html">Good Practice Guide for Computer-Based Electronic Evidence Updated</a></li>
<li><a href="http://www.hackinthebox.org/modules.php?op=modload&amp;name=News&amp;file=article&amp;sid=23785&amp;mode=thread&amp;order=0&amp;thold=0">Hackers gain shell access to iPhone</a></li>
<li><a href="http://isc.sans.org/diary.html?storyid=3112">Yahoo Follow-up</a></li>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/Database_Compliance_PJessup.pdf">The Effect of Compliance on Database Integrity, Security and Administration</a></li>
<li><a href="http://blogs.securiteam.com/index.php/archives/951">iPhone default passwd: Won’t people ever learn?</a></li>
<li><a href="http://blog.loglogic.com/2007/07/top_11_reasons_to_look_at_your_logs/">Top 11 reasons to look at your logs</a></li>
<li><a href="http://www.phenoelit-us.org/dpl/dpl.html">Default Password List</a></li>
<li><a href="http://www.securityfocus.com/infocus/1891">Persistence of data on storage media</a></li>
</ul>
<h3  class="related_post_title">Random Posts</h3><ul class="related_post"><li><a href="http://www.tanasi.it/900-luks.html" title="LUKS">LUKS</a></li><li><a href="http://www.tanasi.it/560-lol-duracell.html" title="Lol: Duracell">Lol: Duracell</a></li><li><a href="http://www.tanasi.it/1069-the-down-of-skype.html" title="The down of Skype">The down of Skype</a></li><li><a href="http://www.tanasi.it/169-cinema-valiant.html" title="Cinema: Valiant">Cinema: Valiant</a></li><li><a href="http://www.tanasi.it/379-lol-bug-o-feature.html" title="Lol: Bug o feature?">Lol: Bug o feature?</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.tanasi.it/1017-weeks-links-43.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Two Week&#8217;s Links</title>
		<link>http://www.tanasi.it/1002-two-weeks-links.html</link>
		<comments>http://www.tanasi.it/1002-two-weeks-links.html#comments</comments>
		<pubDate>Thu, 05 Jul 2007 17:16:00 +0000</pubDate>
		<dc:creator>jekil</dc:creator>
				<category><![CDATA[In English]]></category>
		<category><![CDATA[Techie]]></category>
		<category><![CDATA[Week's Links]]></category>

		<guid isPermaLink="false">http://localhost/wordpress/?p=971</guid>
		<description><![CDATA[
Web Application Vulnerability Assessment Essentials: Your First Step to a Highly Secure Web Site
Bootable USB Security Distro on USB Key
Airport Security: Israel vs. the United States
Incident response for the mobile enterprise
Asset-Centric vs Threat-Centric Digital Situational Awareness
Protect your data: everything else is just plumbing
Identity Theft
 iPhone Live Disassembly
Mass website hosting = mass defacements
Monitoring PF firewalls for [...]]]></description>
			<content:encoded><![CDATA[<ul>
<li><a href="http://www.infosecwriters.com/text_resources/pdf/Web_App_Vuln_Assess_CSima.pdf">Web Application Vulnerability Assessment Essentials: Your First Step to a Highly Secure Web Site</a></li>
<li><a href="http://isc.sans.org/diary.html?storyid=3066">Bootable USB Security Distro on USB Key</a></li>
<li><a href="http://www.schneier.com/blog/archives/2007/07/airport_securit_7.html">Airport Security: Israel vs. the United States</a></li>
<li><a href="http://isc.sans.org/diary.html?storyid=3084">Incident response for the mobile enterprise</a></li>
<li><a href="http://taosecurity.blogspot.com/2007/07/asset-centric-vs-threat-centric-digital.html">Asset-Centric vs Threat-Centric Digital Situational Awareness</a></li>
<li><a href="http://blogs.technet.com/steriley/archive/2007/07/02/protect-your-data-everything-else-is-just-plumbing.aspx">Protect your data: everything else is just plumbing</a></li>
<li><a href="http://www.sans.org/reading_room/whitepapers/awareness/1806.php">Identity Theft</a></li>
<li><a href="http://www.ifixit.com/Guide/iPhone"> iPhone Live Disassembly</a></li>
<li><a href="http://isc.sans.org/diary.html?storyid=3078">Mass website hosting = mass defacements</a></li>
<li><a href="http://prefetch.net/articles/monitoringpf.html">Monitoring PF firewalls for health and performance</a></li>
<li><a href="http://www.hizook.com/blog/2007/06/19/glow-in-the-dark-printer-ink-a-possible-covert-channel-and-spys-best-friend">Glow-In-The-Dark Printer Ink:  A Possible Covert Channel (And Spy&#8217;s Best Friend)?</a></li>
<li><a href="http://www.modsecurity.org/blog/archives/2007/06/scalywack_modse.html">ScallyWack: ModSecurity Rules Package to Deal with Trac Comment Spam</a></li>
<li><a href="http://www.enterpriseitplanet.com/security/features/article.php/3685576">Antiforensics: When Tools Enable the Masses</a></li>
<li><a href="http://www.net-security.org/dl/articles/Cisco_IOS_Exploitation_Techniques.pdf">Cisco IOS Exploitation Techniques</a></li>
<li><a href="http://www.theregister.co.uk/2007/06/27/wade_alcorn_metasploit_interview/">Worms 2.0!</a></li>
<li><a href="http://computer.forensikblog.de/en/2007/06/memory_analysis_cheat_sheet.html">Memory Analysis Cheat Sheet</a></li>
<li><a href="http://www.secureworks.com/research/threats/ddos/?threat=ddos">HTTP DDoS Attack Mitigation Using Tarpitting</a></li>
<li><a href="http://www.ciscoblog.com/archives/2007/06/throttle_bandwi.html">Throttle Bandwidth Based on the Time of Day</a></li>
<li><a href="http://www.caida.org/research/dns/influence-map/">Influence Map of DNS Root Anycast Servers</a></li>
<li><a href="http://c-skills.blogspot.com/2007/06/note-on-privilege-separation.html">A Note on Privilege Separation</a></li>
</ul>
<h3  class="related_post_title">Random Posts</h3><ul class="related_post"><li><a href="http://www.tanasi.it/1469-virus-che-ti-spiano-il-cellulare-o-bufale.html" title="Virus che ti spiano il cellulare, o bufale?">Virus che ti spiano il cellulare, o bufale?</a></li><li><a href="http://www.tanasi.it/619-lol-ikea.html" title="Lol: Ikea">Lol: Ikea</a></li><li><a href="http://www.tanasi.it/539-lol-sysadmin-with-a-gun.html" title="Lol: Sysadmin with a gun">Lol: Sysadmin with a gun</a></li><li><a href="http://www.tanasi.it/887-lol-perche-usare-il-cervello-quando-puoi-fidarti-dellistinto.html" title="Lol: Perché usare il cervello quando puoi fidarti dell&#8217;istinto?">Lol: Perché usare il cervello quando puoi fidarti dell&#8217;istinto?</a></li><li><a href="http://www.tanasi.it/817-citazioni-varie.html" title="Citazioni varie">Citazioni varie</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.tanasi.it/1002-two-weeks-links.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
