Security is a Journey, not a destination.

So you got: Clampi/Ilomo

So you got one of the most interesting pieces of Malware I have every had the displeasure of doing IR on… Multi-Stage, evolving, silent… It seems to always come from drive-by attacks and silently waits for the C&C to provide instructions… I drops onto the system and creates a number of registry keys with difficult to anticipate keys, and files with semi random names. That can...

Review: NMAP Network Scanning

I am a lucky man… I received NMAP Network Scanning as a gift, but at even double the sticker price this book is worth it. The author, Gordon “Fyodor” Lyon, can easily be described as an NMAP expert… he wrote the program the book is about after all. The time taken by Fyodor to write not only a technical repository, but a instructional tool is amazing. Chapters on the history...

Review: The Visible OPS Handbook

Ever had the boss walk into your office and ask “What do you do all day.” The dreaded line that can strike fear into any IT workers heart. In most organizations IT is like the janitor no one wants to see it. So if your doing your job right and no one notices the small downtime or other various issues, how do you prove that they need you. One Word: Documentation Most boss’ love...
All video presented on PathSecurity are in the highest quality available, Load times may seem high, But I think its worth the wait… Get the Flash Player to see the wordTube Media Player.

Boot VM from USB

Posted by admin On June - 18 - 2010
USB-TestVM -> http://www.mediafire.com/?oydn0xngdlz VMware Player -> http://www.vmware.com/products/player/ VMware Player (DDL) -> http://download3.vmware.com/software/vmpla….5.3-185404.exe PLoP Bootmanager -> http://www.plop.at/en/bootmanager.html

Cisco Cheat Sheet

Posted by admin On June - 18 - 2010
Deny WAN HTTP/S to all systems except Proxy: !Permit HTTP port 80 traffic access-list 102 deny tcp any any eq 80 access-list 102 permit tcp any {proxy address} eq 80 !Permit HTTPS port 443 traffic access-list 102 deny tcp any any eq 443 access-list 102 permit tcp any {proxy address} eq 443 Deny WAN DNS to all systems except DNS server: access-list 101 permit tcp any any access-list 101 permit udp any any access-list 101 deny 53 any any access-list 101 deny 55 any any access-list 101 deny 77 any any access-list 101 deny 103 any any !— insert any other previously applied ACL entries here !—...

So you got: Clampi/Ilomo

Posted by admin On June - 18 - 2010
So you got one of the most interesting pieces of Malware I have every had the displeasure of doing IR on… Multi-Stage, evolving, silent… It seems to always come from drive-by attacks and silently waits for the C&C to provide instructions… I drops onto the system and creates a number of registry keys with difficult to anticipate keys, and files with semi random names. That can make it hard to find, but the one key you can count on appearing is, – HKCU\Software\Microsoft\Internet Explorer\Settings\Gateslist The most important thing you can do to prevent the spread of...

About Us

Path Security is run by Richard E. Baker. Richard has been working with computers since he found an old Apple IIe in the bin outside of his elementary school. One man trash and all, the video connector was soon fixed and soon consumed more time on the TV then the Nintendo. Who else remembers Apple Basic? He is currently refocusing on the Information Security Path. Come and walk the Path.

Recent Comments