logo
 Login
Username:

Password:


Lost Password?

Register now!
 Main Menu
     

(1) 2 3 4 ... 6 »
New Job Postings on Our Site
Posted by GFeez on 2008/6/26 14:23:11 (5 reads)
Security News

Be sure to regularly check this website if you are in the hunt for a new job as new openings are regularly posted in the Career Related section of the forums.

Recent Postings:
IT Security Practice Manager
IT Security Analyst
Web Application Developer
IT Coordinator


If you are logged in you'll be able to access it via this link:
Career Related forum

  0   Article ID : 112
NEOISF June Meeting set for Wed the 18th
Posted by GFeez on 2008/6/15 12:02:53 (0 reads)
Meetings

Northeast Ohio Information Security Forum Monthly Meeting
Wednesday June 18th
Northeast Ohio Information Security Forum Monthly Meeting
Wednesday June 18th


Meeting starts 6:30 PM
Food and networking starts 6:00 PM

Agenda:

* To be posted

As always, the meetings are free and no need to register to attend.

Location:
to be posted

  0   Article ID : 111
4th Annual GFIRST National Conference
Posted by GFeez on 2008/4/8 11:07:15 (2 reads)
Meetings

4th Annual GFIRST National Conference

Just 8 weeks away! Don't wait to register! Cant beat the price, FREE TO ATTEND!

The 4th Annual Government Forum of Incident Response and Security Teams (GFIRST) National Conference, Uniting the Cyber Response Community is June 1-6, 2008 - just 8 weeks away!

Agenda Now Available on Website!

An action packed agenda has been posted to
http://www.us-cert.gov/GFIRST/agenda.html
We are pleased to announce there will be over 55 speakers and nearly 90 sessions.

Also Featuring...

Networking opportunities with over 700 Industry and Government attendees!

Plenary Sessions:

Will There Be Any Security in a Web-Services World, Dr. Whitfield Diffie,Vice President and Fellow - Chief Security Officer, Sun Microsystems

Information Sharing and Collaboration: The Power of Leaderless Organizations, Rod Beckstrom, Director, National Cybersecurity Center.

...and NEO Info Sec Forums very own Tyler Hudak and Greg Feezel will be presenting two different talks about the latest malware techniques and why analyzing malware is important.

Register Today!

Register to attend the 4th Annual GFIRST National Conference:
https://forms.us-cert.gov/gfirst-reg/

Hotel Information
The 4th Annual GFIRST National Conference will be held at the Caribe Royale Orlando All-Suites Hotel & Convention Center in Orlando, Florida. A block of rooms is being held for Conference attendees at special "GFIRST Conference" rates. To ensure you receive these special rates, book your room today!

Hotel room block ends May 9th! Reservations are being accepted on a first-come, first-serve basis. Please visit http://www.us-cert.gov/GFIRST/travel.html for more information.

  0   Article ID : 108
Local NE Ohio Events in April and May
Posted by GFeez on 2008/3/20 1:56:54 (6 reads)
Meetings

Notacon 5
April 4-6
Downtown Cleveland, OH
Cost: $100 at the door
http://www.notacon.org/

HISP certification class and exam
April 14-18
Wolcott Group
www.wolcottgroup.com/training/hisp/

Web application security hands-on
April 24-25
Tri-C Corporate College East
https://www.123signup.com/WebSecurity

HTCIA Spring Training
Lakeland Community College
May 12-14
http://www.ohiohtcia.org/conference.html

SANS Columbus
Security 401: Security Essentials
May 19-24
NEO Info Sec Forum members receive a special discount of 10%, which is in addition to the $250 Early Bird discount for registering by April 9th
http://www.sans.org/info/23384

  0   Article ID : 107
Links from Website Attacks talk by Hudak and Feezel
Posted by GFeez on 2008/3/20 1:53:05 (0 reads)
Meetings

As promised here are the links from the Website Attacks by Tyler Hudak and Greg Feezel at March 19th meeting.

SEO Poisoning Attack
http://ddanchev.blogspot.com/2008/03/injecting-iframes-by-abusing-input.html

VMWare Escape
http://www.coresecurity.com/?action=item&id=2129
http://chitchat.at.infoseek.co.jp/vmware/

Enjoy.

  0   Article ID : 106
McAfee/NCSA Cyber Security Survey Oct 07: Think Your Home Computer Is Safe?
Posted by GFeez on 2007/12/19 18:40:21 (2 reads)
Security News

Intro to study:Quote:

When it comes to home computer security, Americans agree that keeping their computer
safe is important, but they are not as secure as they think. A new national survey conducted
by McAfee and NCSA compared online Americans’ opinions of their computer security to the
reality – what security software they were actually running – and found that when it comes to
cyber security, most Americans are in dire need of a reality check.
http://download.mcafee.com/products/manuals/en-us/McAfeeNCSA_Analysis09-25-07.pdf

  0   Article ID : 105
DayCon2007 Dayton Hacker Con Oct 12-14th
Posted by GFeez on 2007/10/8 20:48:30 (5 reads)
  0   Article ID : 103
Certified Ethical Hacker training offering NEOISF members discount
Posted by GFeez on 2007/9/24 2:07:49 (12 reads)
Security News

Course Title: CERTIFIED ETHICAL HACKER (CEH)

Instructor:
Dan Garfield IT security training and consulting expert. Dan brings over 25 years of experience to his courses and backs them up with multiple certifications and top notch course deliveries all across the country. Some of his related certifications include: CEH, CISSP, SCNP, CHSS, CCNP, MCS

  0   Article ID : 102
Looking for a security job?
Posted by GFeez on 2007/6/14 2:02:42 (3 reads)
Security News

Looking for a job in security? Be sure to watch our Career-Related forum.

http://www.neoinfosecforum.org/modules/newbb/viewforum.php?forum=24

There are several openings and they continue to flow in

Good luck in your search.

  0   Article ID : 101
Links from monthly meetings
Posted by GFeez on 2007/5/25 2:08:28 (1 reads)
Meetings

Don't forget to check out this forum after our monthly meetings for links to great resources, talks, etc that were talked about at the meeting.

http://www.neoinfosecforum.org/modules/newbb/viewforum.php?forum=15

  0   Article ID : 100
SANS Columbus May 21-26
Posted by GFeez on 2007/5/9 2:28:22 (3 reads)

SANS Columbus
Monday, May 21, 2007 - Saturday, May 26, 2007
Featuring track Hacker Techniques, Exploits & Incident Handling
Instructed by John Strand, Northrop Grumman

Snippit from course description:
Quote:

By helping you understand attackers' tactics and strategies in detail, giving you hands-on experience in finding vulnerabilities and discovering intrusions, and equipping you with a comprehensive incident handling plan, the in-depth information in this course helps you turn the tables on computer attackers. This course addresses the latest cutting-edge insidious attack vectors and the "oldie-but-goodie" attacks that are still so prevalent, and everything in between. Instead of merely teaching a few hack attack tricks, this course includes a time-tested, step-by-step process for responding to computer incidents, a detailed description of how attackers undermine systems so you can prepare, detect, and respond to them, and a hands-on workshop for discovering holes before the bad guys do. Additionally, the course explores the legal issues associated with responding to computer attacks, including employee monitoring, working with law enforcement, and handling evidence.

This challenging course is particularly well suited to individuals who lead or are a part of an incident handling team. Furthermore, general security practitioners, system administrators, and security architects will benefit by understanding how to design, build, and operate their systems to prevent, detect, and respond to attacks.
Visit link for more information:
http://www.sans.org/columbus07_cs/description.php?tid=243

  0   Article ID : 99
Upcoming InfraGard Meetings in April and May
Posted by GFeez on 2007/4/6 15:13:09 (2 reads)
Meetings

InfraGard members, there are a couple meetings you'll want to be aware of...

April 27th 1pm-4pm at FBI Cleveland office
This is a members-only meeting in the FBI's office in downtown Cleveland where they will discuss threats they are seeing nationally, regionally, and locally. Not to miss.

May 17-18th in Columbus
This is a meeting of all the InfraGard Ohio chapters. Thu May 17th is an evening reception with keynote and sessions on May 18th. This meeting is open to members and non-members.

See Northern Ohio Chapter website (http://www.nocinfragard.org/) for details and to register. REGISTER NOW because seats are limited for both events!

http://www.nocinfragard.org/

  0   Article ID : 98
UPDATE regarding Windows animated cursor 0-day
Posted by GFeez on 2007/4/2 2:10:18 (2 reads)
Security Alerts

UPDATE 3PM ET 3/31/2007: ALERT LEVELS RAISED!
UPDATE 11PM ET 4/1/2007: ZERT RELEASES PATCH!

UPDATE 11:30PM ET 4/1/2007: MICROSOFT TO RELEASE PATCH TUES 4/3/2007

Great news: Microsoft plans to release a patch for this issue on Tuesday 4/3/2007. :)

Things have gone from bad to WORSE! Several threat monitoring systems have raised their alert level in response to the recent unpatched ANI/animated cursor issue, the reason: NUMEROUS attacks and threats.
Further, Miscrosoft has clarified some details regarding just what is vulnerable and it isn't pretty.

There are over 30 website domains currently hosting malware exploiting this issue - the true number could be hundreds as the 30 count is root domains only - and late last night I actually visited one of these websites just to see what the malware does. What I found is one of the critters being used basically turns the victim PC into a bot/zombie which connects to a botnet in China. The interesting thing I discovered is that the exploitation was being done with .JPG files, so filtering on file extension is not enough. Turns out that the .JPG was actually an animated cursor in disguise as a JPG. Good news is that several AV vendors detected the ANI exploit inside these files.

ZERT has released a unofficial patch for the issue that is better than the eEye patch. See here for details: http://zert.isotf.org/advisories/zert-2007-01.htm

Here's what I know...

* SANS Internet Storm Center, Symantec ThreatCon, and FS/ISAC Cyber Threat Advisory all raised their status one notch higher than what they were previously at - which puts them pretty high!
* Websites Exploiting: Over 30 domains are hosting malware exploiting the vulnerability
- Number of websites exploiting this issue is rising VERY quickly making blacklisting difficult
* Anti-virus vendors seem to have caught up with signatures detecting the exploits - this is GREAT news!
* Emails opened in plaintext will not show embedded ANI files
* Vulnerability was reported in December and MS is working on a fix/patch
* Outlook 2003 is vulnerable in both preview mode and when opened when using default settings - reading in plain text mode protects you
* Outlook 2007 users are protected
* IE7 running with Protection Mode are reportedly protected
* eEye Digital has released an unofficial patch - see http://research.eeye.com/html/alerts/zeroday/20070328.html
* ZERT has released an unofficial patch
http://zert.isotf.org/advisories/zert-2007-01.htm

  0   Article ID : 97
New Unpatched Vuln with Animated Cursors in Windows
Posted by GFeez on 2007/3/29 19:52:03 (0 reads)
Security Alerts

If you haven't already seen this, there's a new vulnerability affecting animated cursor and icons in Windows that has just been announced. No patch exists for the vulnerability and exploit code has been released and there are reports of some malware exploiting this problem. Further, Microsoft has acknowledged the issue raising the potential for an increase in exploitation.

According to McAfee, IE version 6 and version 7 running on fully patched versions of Windows XP SP2 are vulnerable. Windows version 2000 SP4 and Server 2003 (non & SP1) are also reportedly vulnerable. Vista is also reported to be vulnerable but only witnessed as a denial-of-service at this point.

Computers can be infected by simply visiting a website containing a malicious ANI file or HTML email message with one placed on it. In recent past, malicious websites have used this type of vulnerability to silently install malware onto an unsuspecting visitor. These types of attacks are called "drive-by" installs.

More information:
http://www.microsoft.com/technet/security/advisory/935423.mspx
http://www.avertlabs.com/research/blog/?p=230
http://www.avertlabs.com/research/blog/?p=233

  0   Article ID : 96
Reminder to vote for Steering Committee Candidates
Posted by GFeez on 2007/2/17 2:20:22 (1 reads)
Security News

See Group News posting HERE for details.

  0   Article ID : 92
(1) 2 3 4 ... 6 »
 Headlines
Internet Storm Center
Viruslist.com - Virus Alerts
Active Virus Alerts
Sunbelt Blog
US-CERT Cyber Security Alerts and Tips
US-CERT Cyber Security Alerts
US-CERT Technical Cyber Security Alerts
Security Focus
SecurityFocus
RootSecure
eSecurityPlanet
Flying Hamster

Hosted by Systems Management, Inc.