Update to Security Model

So there is a new model making the rounds on the interwebs as an update to the well known Cyber “Kill-Chain” recently. I think its a reasonable model and makes sense. Forgetting there is an underlying corporate message from Carbon Black here, the general notion that this is more of an iterative loop than a […]

What is old is new again

So I have had this blog for 4+ years. Use it rarely as you can see. Going to give it another crack to put some random musings so I can find them again in a future existence 🙂 – feel free to enjoy or not. 

NTP needs a security update

NTP users and server admins – There are multiple vulnerabilities that are in the wild that are being exploited actively. If you have not been paying attention to security updates, attached is a consolidated report that will give you the resources you need to protect your infrastructure. Take a few minutes to read and see […]

Poodle Bites Back

Another Poodle related vulnerability has been reported in the wild in various channels. This time impacting TLS to a degree. So admin’s should take a moment and read up on it and keep current as its likely to continue developing over the next couple days/weeks as more vendors are likely determined as I am sure […]

Artillery – honeypot and or server protection

I need to spend some quality time looking and testing this further. It appears to be something that I can use in production quickly and easily. Good summary here https://www.binarydefense.com/project-artillery/ Also Holisticinfosec has a good writeup on it. http://holisticinfosec.blogspot.com/ and here http://www.southbasecamp.com/blog/setting-up-a-honeypot-artillery/