Ten of Application Security industry’s coolest, most interesting, important, and entertaining links from the past week — in no particular order. Regularly released until year end
Continued here:
Best of Application Security (Friday, Oct. 30)
Several of Sweden’s websites experienced DDoS attacks yesterday, including the Swedish Police at polisen.se.
Read more:
Swedish Police Experience DDoS Attacks
So you want to convert a file/stream to upper or lower case in Linux? piece of cake, there are thousands of ways to do that.
Continue reading here:
perl one-liner: how to convert file or stream to upper or lower case
Posted by (0) Comment
Symantec Security Response has become aware of a Trojan Horse we detect as Trojan.Ramvicrype . The Trojan uses the RC4 algorithm to encrypt files on compromised computers, rendering them unusable
Read more from the original source:
Tales from the Crypt
Posted by (0) Comment
While looking through some recent customer submissions a particular filename caught my attention. It was called “googlewaveinvitegenerator.exe”. Google Wave is a new communication application being developed by Google
Go here to read the rest:
Xrumer: The Spammer’s Toolkit
A Blackberry application called PhoneSnoop was released recently, which resulted in an advisory from US-CERT. The application allows remote users to listen in on a Blackberry user’s surroundings.
A longstanding debate in Web application security, heck all of application security, is which software testing methodology is the best — that is — the best at finding the most vulnerabilities. Is it black box (aka: vulnerability assessment, dynamic testing, run-time analysis) or white box (aka: source code review, static analysis)
Read the original here:
Black Box vs White Box. You are doing it wrong.
I just ran across this new free training course offered by offensive security, named “metasploit unleashed”. You can check it out at http://www.offensive-security.com/metasploit-unleashed/ My quick glimpse at the materials are :this is a very nice set of materials, instructions are easy to follow
Continue reading here:
offensive security - new free metasploit online course
A new malware variant called Silon is targeting Internet Explorer users, attempting to intercept their sessions and steal credentials.
See more from original here:
Posted by (0) Comment
Our June 12th post mentioned a collaborative film project that’s being produced by the Wreckamovie community. Well, the project is now titled “Griffin” and there’s a teaser available.
Read more here:
Video - Griffin Teaser