<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>infosec4all.com</title>
	<atom:link href="http://infosec4all.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://infosec4all.com</link>
	<description>Information Security Blog</description>
	<lastBuildDate>Sun, 21 Feb 2010 04:26:32 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Insidious Worm Makes Unauthorized Purchases When Computer User Is Drunk</title>
		<link>http://infosec4all.com/2010/02/20/insidious-worm-makes-unauthorized-purchases-when-computer-user-is-drunk/</link>
		<comments>http://infosec4all.com/2010/02/20/insidious-worm-makes-unauthorized-purchases-when-computer-user-is-drunk/#comments</comments>
		<pubDate>Sun, 21 Feb 2010 04:26:32 +0000</pubDate>
		<dc:creator>Branko S. Bokan</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://infosec4all.com/2010/02/20/insidious-worm-makes-unauthorized-purchases-when-computer-user-is-drunk/</guid>
		<description><![CDATA[
Insidious Worm Makes Unauthorized Purchases When Computer User Is Drunk
]]></description>
			<content:encoded><![CDATA[<p><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="480" height="430" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="wmode" value="transparent" /><param name="src" value="http://www.theonion.com/content/themes/common/assets/onn_embed/embedded_player.swf?image=http%3A%2F%2Fwww.theonion.com%2Fcontent%2Ffiles%2Fimages%2FDRUNK_WORM_ARTICLE_redo.jpg&amp;videoid=100660&amp;title=Insidious%20Worm%20Makes%20Unauthorized%20Purchases%20When%20Computer%20User%20Is%20Drunk" /><param name="flashvars" value="image=http%3A%2F%2Fwww.theonion.com%2Fcontent%2Ffiles%2Fimages%2FDRUNK_WORM_ARTICLE_redo.jpg&amp;videoid=100660&amp;title=Insidious%20Worm%20Makes%20Unauthorized%20Purchases%20When%20Computer%20User%20Is%20Drunk" /><embed type="application/x-shockwave-flash" width="480" height="430" src="http://www.theonion.com/content/themes/common/assets/onn_embed/embedded_player.swf?image=http%3A%2F%2Fwww.theonion.com%2Fcontent%2Ffiles%2Fimages%2FDRUNK_WORM_ARTICLE_redo.jpg&amp;videoid=100660&amp;title=Insidious%20Worm%20Makes%20Unauthorized%20Purchases%20When%20Computer%20User%20Is%20Drunk" allowscriptaccess="always" allowfullscreen="true" wmode="transparent" flashvars="image=http%3A%2F%2Fwww.theonion.com%2Fcontent%2Ffiles%2Fimages%2FDRUNK_WORM_ARTICLE_redo.jpg&amp;videoid=100660&amp;title=Insidious%20Worm%20Makes%20Unauthorized%20Purchases%20When%20Computer%20User%20Is%20Drunk"></embed></object><br />
<a href="http://www.theonion.com/content/video/insidious_worm_makes_unauthorized?utm_source=videoembed">Insidious Worm Makes Unauthorized Purchases When Computer User Is Drunk</a></p>
]]></content:encoded>
			<wfw:commentRss>http://infosec4all.com/2010/02/20/insidious-worm-makes-unauthorized-purchases-when-computer-user-is-drunk/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The rise of the cyber war</title>
		<link>http://infosec4all.com/2010/02/06/the-rise-of-the-cyber-war/</link>
		<comments>http://infosec4all.com/2010/02/06/the-rise-of-the-cyber-war/#comments</comments>
		<pubDate>Sat, 06 Feb 2010 22:14:05 +0000</pubDate>
		<dc:creator>Branko S. Bokan</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://infosec4all.com/?p=111</guid>
		<description><![CDATA[
]]></description>
			<content:encoded><![CDATA[<p><object id="ep" classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="416" height="374" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="wmode" value="transparent" /><param name="bgcolor" value="#000000" /><param name="src" value="http://i.cdn.turner.com/cnn/.element/apps/cvp/3.0/swf/cnn_416x234_embed.swf?context=embed_edition&amp;videoId=world/2010/02/05/amanpour.intv.cyber.wars.cnn" /><embed id="ep" type="application/x-shockwave-flash" width="416" height="374" src="http://i.cdn.turner.com/cnn/.element/apps/cvp/3.0/swf/cnn_416x234_embed.swf?context=embed_edition&amp;videoId=world/2010/02/05/amanpour.intv.cyber.wars.cnn" bgcolor="#000000" allowfullscreen="true" allowscriptaccess="always" wmode="transparent"></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://infosec4all.com/2010/02/06/the-rise-of-the-cyber-war/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Dilbert on infosec</title>
		<link>http://infosec4all.com/2009/11/24/dilbert-on-infosec-5/</link>
		<comments>http://infosec4all.com/2009/11/24/dilbert-on-infosec-5/#comments</comments>
		<pubDate>Tue, 24 Nov 2009 15:28:17 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://infosec4all.com/?p=108</guid>
		<description><![CDATA[
]]></description>
			<content:encoded><![CDATA[<p><a href="http://dilbert.com/strips/comic/2009-11-19/" title="Dilbert.com"><img src="http://dilbert.com/dyn/str_strip/000000000/00000000/0000000/000000/70000/4000/100/74150/74150.strip.gif" border="0" alt="Dilbert.com" /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://infosec4all.com/2009/11/24/dilbert-on-infosec-5/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cloud Computing Risk Assessment</title>
		<link>http://infosec4all.com/2009/11/24/cloud-computing-risk-assessment/</link>
		<comments>http://infosec4all.com/2009/11/24/cloud-computing-risk-assessment/#comments</comments>
		<pubDate>Tue, 24 Nov 2009 15:23:50 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://infosec4all.com/?p=106</guid>
		<description><![CDATA[The European Network and Information Security Agency (ENISA) identified 35 key security risks of cloud computing. Supported by a group of subject matter expert comprising representatives from Industries, Academia and Governmental Organizations, ENISA has conducted a risks assessment on cloud computing business model and technologies. The report provide also a set of practical recommendations.
http://www.enisa.europa.eu/act/rm/files/deliverables/cloud-computing-risk-assessment/
]]></description>
			<content:encoded><![CDATA[<p>The European Network and Information Security Agency (ENISA) identified 35 key security risks of cloud computing. Supported by a group of subject matter expert comprising representatives from Industries, Academia and Governmental Organizations, ENISA has conducted a risks assessment on cloud computing business model and technologies. The report provide also a set of practical recommendations.</p>
<p><a href="http://www.enisa.europa.eu/act/rm/files/deliverables/cloud-computing-risk-assessment/">http://www.enisa.europa.eu/act/rm/files/deliverables/cloud-computing-risk-assessment/</a></p>
]]></content:encoded>
			<wfw:commentRss>http://infosec4all.com/2009/11/24/cloud-computing-risk-assessment/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Information Security Jobs in 2009</title>
		<link>http://infosec4all.com/2009/09/17/information-security-jobs-in-2009/</link>
		<comments>http://infosec4all.com/2009/09/17/information-security-jobs-in-2009/#comments</comments>
		<pubDate>Thu, 17 Sep 2009 18:06:13 +0000</pubDate>
		<dc:creator>Branko S. Bokan</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://infosec4all.com/?p=104</guid>
		<description><![CDATA[Foote Partners LLC released updated report on trends in IT skills, certifications, and pay. &#8220;[... the] trends survey research indicates that the recession has had only a minimal impact on demand for critical IT skills in the areas such as architecture, business process, information security, communications, e-commerce and several ERP and infrastructure specializations&#8221;. Click here [...]]]></description>
			<content:encoded><![CDATA[<p>Foote Partners LLC released updated report on trends in IT skills, certifications, and pay. &#8220;[... the] trends survey research indicates that the recession has had only a minimal impact on demand for critical IT skills in the areas such as architecture, business process, information security, communications, e-commerce and several ERP and infrastructure specializations&#8221;. Click <a href="http://www.footepartners.com/2009TrendsReport.htm" target="_blank">here </a>to download a free copy of <strong>2009 IT Skills Trends Report Update</strong>.</p>
]]></content:encoded>
			<wfw:commentRss>http://infosec4all.com/2009/09/17/information-security-jobs-in-2009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PCI Security Standards Council Guidelines for Deploying WLANs</title>
		<link>http://infosec4all.com/2009/07/21/pci-security-standards-council-guidelines-for-deploying-wlans/</link>
		<comments>http://infosec4all.com/2009/07/21/pci-security-standards-council-guidelines-for-deploying-wlans/#comments</comments>
		<pubDate>Tue, 21 Jul 2009 15:57:12 +0000</pubDate>
		<dc:creator>Branko S. Bokan</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://infosec4all.com/?p=102</guid>
		<description><![CDATA[PCI Security Standards Council issues guidance and installation suggestions for testing and deploying 802.11 Wireless Local Area Networks.
More&#8230;
]]></description>
			<content:encoded><![CDATA[<p>PCI Security Standards Council issues guidance and installation suggestions for testing and deploying 802.11 Wireless Local Area Networks.</p>
<p><a href="https://www.pcisecuritystandards.org/pdfs/PCI_DSS_Wireless_Guidelines.pdf">More&#8230;</a></p>
]]></content:encoded>
			<wfw:commentRss>http://infosec4all.com/2009/07/21/pci-security-standards-council-guidelines-for-deploying-wlans/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Predicting Social Security numbers from public data</title>
		<link>http://infosec4all.com/2009/07/09/predicting-social-security-numbers-from-public-data/</link>
		<comments>http://infosec4all.com/2009/07/09/predicting-social-security-numbers-from-public-data/#comments</comments>
		<pubDate>Thu, 09 Jul 2009 19:01:10 +0000</pubDate>
		<dc:creator>Branko S. Bokan</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://infosec4all.com/?p=99</guid>
		<description><![CDATA[This is nothing new. I already blogged about covert channels and how publicly  available data can be used to accurately guess personal information.
[...]Using only publicly available information, we observed a correlation between individuals&#8217; SSNs and their birth data [...] The inferences are made possible by the public availability of the Social Security Administration&#8217;s Death Master [...]]]></description>
			<content:encoded><![CDATA[<p>This is nothing new. I already blogged about <a href="http://infosec4all.com/2007/12/19/covert-channels/">covert channels </a>and how publicly  available data can be used to accurately guess personal information.</p>
<p>[...]Using only publicly available information, we observed a correlation between individuals&#8217; SSNs and their birth data [...] The inferences are made possible by the public availability of the Social Security Administration&#8217;s Death Master File and the widespread accessibility of personal information from multiple sources, [...] results highlight the unexpected privacy consequences of the complex interactions among multiple data sources in modern information economies [...]</p>
<p><a href="http://www.pnas.org/content/early/2009/07/02/0904891106.abstract">Full article.</a></p>
]]></content:encoded>
			<wfw:commentRss>http://infosec4all.com/2009/07/09/predicting-social-security-numbers-from-public-data/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>UK Government Launches Cybersecurity Agency with Cyberattack Capability</title>
		<link>http://infosec4all.com/2009/06/25/uk-government-launches-cybersecurity-agency-with-cyberattack-capability/</link>
		<comments>http://infosec4all.com/2009/06/25/uk-government-launches-cybersecurity-agency-with-cyberattack-capability/#comments</comments>
		<pubDate>Thu, 25 Jun 2009 17:44:35 +0000</pubDate>
		<dc:creator>Branko S. Bokan</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://infosec4all.com/2009/06/25/uk-government-launches-cybersecurity-agency-with-cyberattack-capability/</guid>
		<description><![CDATA[The Office of Cyber Security (OCS), dedicated to protecting Britain&#8217;s IT infrastructure, will be created in line with a model proposed — and in part practised by the US.
The government will develop information systems to allow it to launch denial-of-service attacks and to spy on chosen targets&#8230; 
At the same time Defense Secretary Robert Gates [...]]]></description>
			<content:encoded><![CDATA[<p>The <a href="http://news.zdnet.co.uk/security/0,1000000189,39667231,00.htm">Office of Cyber Security </a>(OCS), dedicated to protecting Britain&#8217;s IT infrastructure, will be created in line with a model proposed — and in part practised by the US.</p>
<p>The government will develop information systems to allow it to launch denial-of-service attacks and to spy on chosen targets&#8230; </p>
<p>At the same time Defense Secretary Robert Gates ordered the establishment of a <a href="http://www.scmagazineus.com/Defense-secretary-creates-cyberspace-command/article/138955/">U.S. Cyber Command </a>to protect military networks and organize digital security efforts underway at the Pentagon.</p>
<p>The command also is charged with &#8220;synchronizing warfighting effects across the global security environment, as well as providing support to civil authorities and international partners,&#8221; according to a memo issued Tuesday by Gates to senior military officials.</p>
]]></content:encoded>
			<wfw:commentRss>http://infosec4all.com/2009/06/25/uk-government-launches-cybersecurity-agency-with-cyberattack-capability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>BackTrack 4 released</title>
		<link>http://infosec4all.com/2009/06/25/backtrack-4-released/</link>
		<comments>http://infosec4all.com/2009/06/25/backtrack-4-released/#comments</comments>
		<pubDate>Thu, 25 Jun 2009 17:40:00 +0000</pubDate>
		<dc:creator>Branko S. Bokan</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://infosec4all.com/2009/06/25/backtrack-4-released/</guid>
		<description><![CDATA[BackTrack is the most top rated linux live distribution focused on penetration testing. With no installation whatsoever, the analysis platform is started directly from the CD-Rom and is fully accessible within minutes.
For more information visit: http://remote-exploit.org/backtrack.html 
]]></description>
			<content:encoded><![CDATA[<p>BackTrack is the most top rated linux live distribution focused on penetration testing. With no installation whatsoever, the analysis platform is started directly from the CD-Rom and is fully accessible within minutes.<br />
For more information visit: http://remote-exploit.org/backtrack.html </p>
]]></content:encoded>
			<wfw:commentRss>http://infosec4all.com/2009/06/25/backtrack-4-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CNN on credit card theft</title>
		<link>http://infosec4all.com/2009/02/23/cnn-on-credit-card-theft/</link>
		<comments>http://infosec4all.com/2009/02/23/cnn-on-credit-card-theft/#comments</comments>
		<pubDate>Mon, 23 Feb 2009 23:21:04 +0000</pubDate>
		<dc:creator>Branko S. Bokan</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://infosec4all.com/2009/02/23/cnn-on-credit-card-theft/</guid>
		<description><![CDATA[I already wrote about this topic. It cannot be stressed enough that credit card theft is not identity theft. However, an interesting video from CNN:
Embedded video from CNN Video
]]></description>
			<content:encoded><![CDATA[<p>I already wrote about this topic. It cannot be stressed enough that credit card theft is not identity theft. However, an interesting video from CNN:</p>
<p><script src="http://i.cdn.turner.com/cnn/.element/js/2.0/video/evp/module.js?loc=dom&#038;vid=/video/tech/2009/02/23/endo.cyber.crime.fighting.cnn" type="text/javascript"></script><noscript>Embedded video from <a href="http://www.cnn.com/video">CNN Video</a></noscript></p>
]]></content:encoded>
			<wfw:commentRss>http://infosec4all.com/2009/02/23/cnn-on-credit-card-theft/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
