Unstable Path

Always take the road less traveled.

Blog

News and Notables for Thursday & Friday

In case you haven’t heard, many Drupal hosting providers and users dropped the ball on getting their systems patched.  Tripwire reports automated scans started compromising sites just hours after the most recent patch announcement.  The lesson here: Pay attention to…

News and Notables

Microsoft releases an advisory and fix-it tool to disable SSL3 in Internet Explorer, recommends SSL 3 is disabled on all systems.  It appears they are also disabling SSL3 on all their hosted internet services.  I recommend we all do likewise.

Dollars for InfoSec News! Send them a couple!

If you subscribe to the InfoSecNews mailing list, as I have for several years, you know they provide valuable content.  If you don’t, wander over to http://www.infosecnews.org/ and take a look at their content. Join me in donating a $1 to help…

Help Fight for The Future defend the Internet!

FFTF’s Net neutrality campaign against big media appears to be paying off – according to them.  As a collective group, we “The Internet” have fought off corporate mongers before.  Can we do it again and permanently institute fair bandwidth allocation for…

Suricata/Snorby multi-machine setup

Boredom and too many “junk” computers scattered around my home finally congealed into a small-scale IDS system.  I’ve been toying with the idea of setting up Suricata to see how it compares to Snort, but I wanted to prototype a…

Nessus can scan for ASA holes

Nessus just released a plugin to scan for the lastest Cisco ASA vulnerabilities.  I haven’t yet heard of any IDS rules for this.  I also have yet to try the plugin.

Kmart & Dairy Queen hacked!

Looks like cybercrooks planted malware on Dairy Queen and Kmart’s point of sale systems.  Kmart customers are at risk of having their cards clone, but the company assured customers no personal information was at risk.  Dairy Queen did not specify…