<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-8539880144347728238.post5730619015576440235..comments</id><updated>2011-11-24T23:44:28.932-05:00</updated><category term='puttyhijack'/><category term='Research'/><category term='http options'/><category term='news'/><category term='MAC addresses'/><category term='shotgun posts'/><category term='Val Smith'/><category term='Paterva'/><category term='malware'/><category term='ike-scan'/><category term='tsa'/><category term='privacy'/><category term='webcasts'/><category term='linkedin'/><category term='eeepc'/><category term='Dr-crack'/><category term='shmoocon 08'/><category term='swfscan'/><category term='citrix hacking'/><category term='The Craft of System Security'/><category term='Book Reviews'/><category term='scams'/><category term='wrap-up'/><category term='pwnage'/><category term='EthicalHacker.net'/><category term='DNS exploit'/><category term='sticky ports'/><category term='Traceroute'/><category term='WTF'/><category term='Security Data Visualization'/><category term='silc'/><category term='hack tools'/><category term='rant'/><category term='scripting'/><category term='IPv6'/><category term='infosecwriters.com'/><category term='privacy is dead'/><category term='java'/><category term='Hacking Exposed Windows'/><category term='webdav'/><category term='Metasploit'/><category term='attack analysis'/><category term='wordpress'/><category term='Joe Klein'/><category term='http-dir-enum'/><category term='blackhat DC'/><category term='deauth attack'/><category term='opinion'/><category term='jeremiah grossman'/><category term='Botnets'/><category term='airodump-ng'/><category term='defense'/><category term='ubuntu'/><category term='stupid users'/><category term='windows vista'/><category term='ruby'/><category term='Metasploit Pro'/><category term='education'/><category term='SOURCE Boston 2009'/><category term='carnal0wnage'/><category term='ida pro'/><category term='NTP'/><category term='local root'/><category term='backtrack2'/><category term='Endpoint Security'/><category term='pidgin'/><category term='SQL  Injection'/><category term='conti'/><category term='hacking'/><category term='forenics'/><category term='domo kun video'/><category term='HackerDefender'/><category term='sqlite3'/><category term='sqlmap'/><category term='lft'/><category term='SOURCE Boston 2008'/><category term='usernames'/><category term='chicagocon'/><category term='webshells'/><category term='reDuh'/><category term='karmetasploit'/><category term='google dorks'/><category term='file format'/><category term='irc'/><category term='podcasts'/><category term='backtrack3'/><category term='chris nickerson'/><category term='token kidnaping'/><category term='wmap'/><category term='EFF NSA Shirt'/><category term='shmoocon 09'/><category term='install your own linux distro'/><category term='smbshell'/><category term='The Art of Software Security Testing'/><category term='Dan Hoffman'/><category term='Full Scope Security'/><category term='layer2'/><category term='portqry'/><category term='rainbow tables'/><category term='w3af'/><category term='databases'/><category term='Scapy'/><category term='IE7 Exploit'/><category term='pentoo'/><category term='phishing'/><category term='Traceroute Aggregation'/><category term='metagoofil'/><category term='sensitive data leakage'/><category term='twitter'/><category term='Crash Course in Penetration Testing'/><category term='process injection'/><category term='P2P'/><category term='timestomp'/><category term='foursquare'/><category term='GoogleAds'/><category term='DNS'/><category term='incognito'/><category term='Security Conferences'/><category term='risk management'/><category term='passthehash toolkit'/><category term='zone transfers'/><category term='token impersonation'/><category term='sensepost'/><category term='Network Mapping'/><category term='Chris Gates'/><category term='Learn Security Online'/><category term='Pentesting'/><category term='day in the life'/><category term='mssql_ping'/><category term='toorcon'/><category term='cktricky'/><category term='digging into the chewy center'/><category term='scp'/><category term='SCADA'/><category term='kismet'/><category term='yersinia'/><category term='AttackResearch'/><category term='notes'/><category term='volatility'/><category term='xml'/><category term='Packet Analysis'/><category term='Joe McCray'/><category term='tempest'/><category term='Full Scope Testing'/><category term='rootkit'/><category term='Maltego'/><category term='offtopic'/><category term='msvctl'/><category term='oracle'/><category term='password cracking'/><category term='android'/><category term='non-english'/><category term='null sa'/><category term='Physical Security'/><category term='exploits'/><category term='tnscmd'/><category term='scanning'/><category term='digital signatures'/><category term='Incident Response'/><category term='ssl'/><category term='interviews'/><category term='information Gathering'/><category term='snmp'/><category term='VNC'/><category term='mwr InfoSecurity'/><category term='Traceroute Visulization'/><category term='automation'/><category term='defcon'/><category term='XSS'/><category term='meterpreter'/><category term='Fresh New Look'/><category term='Johnny Long'/><category term='defeating AV'/><category term='Security Metrics'/><category term='Wireless'/><category term='Information Security Day'/><category term='rpcclient'/><category term='aircrack-ng'/><category term='No Tech Hacking'/><category term='javascript'/><category term='coldfusion'/><category term='karmasploit'/><category term='mssql_login'/><category term='karma'/><category term='metacab'/><category term='youtube'/><category term='Security'/><category term='press'/><category term='mssql'/><category term='Programming'/><category term='richard bejtlich'/><category term='sunday comics'/><category term='lotus domino'/><category term='No Place To Hide'/><category term='espionage'/><category term='local to domain account'/><category term='LG voyager'/><category term='sqid'/><category term='hakin9'/><category term='HE Windows'/><category term='Programming Book Review Criteria'/><category term='Geek Mafia'/><category term='dhcp script injection'/><category term='motorola xoom root'/><category term='rfid'/><category term='volreg'/><category term='linux'/><category term='Mail'/><category term='java decompile'/><category term='null-session'/><category term='cadaver'/><category term='8570.1'/><category term='social engineering'/><category term='thin client hacking'/><category term='mike murray'/><category term='politics'/><category term='conspiracy'/><category term='nmap'/><category term='web application testing'/><category term='ncrack'/><category term='firewire'/><category term='unicornscan'/><category term='client side attacks'/><category term='enumeration'/><category term='john the ripper'/><category term='nessus'/><category term='upload.asp'/><category term='life'/><category term='certification'/><category term='antivirus'/><category term='exploit dev course'/><category term='HR Geeks'/><category term='exotic liability'/><category term='NoVA Sec'/><category term='slicehost'/><category term='jboss'/><category term='pass the hash'/><category term='printer hacking'/><category term='quotes'/><category term='DNS Fingerprinting'/><category term='Fuzzing: Brute Force Vulnerability Discovery'/><category term='fail'/><category term='auxiliary modules'/><category term='paranoia'/><category term='webgoat'/><category term='identity theft'/><category term='gsecdump'/><title type='text'>Comments on Carnal0wnage &amp;amp; Attack Research Blog: Lets Get Real</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://carnal0wnage.attackresearch.com/feeds/5730619015576440235/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/5730619015576440235/comments/default'/><link rel='alternate' type='text/html' href='http://carnal0wnage.attackresearch.com/2011/11/lets-get-real.html'/><author><name>CG</name><uri>http://www.blogger.com/profile/11061967917509053185</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='31' height='21' src='http://2.bp.blogspot.com/_bgJlT6eWjGg/SUWqYCLeW0I/AAAAAAAAAY8/tQezLhC2few/S220/toorcongates.JPG'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>4</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-8539880144347728238.post-7617928480671574568</id><published>2011-11-24T23:44:28.932-05:00</published><updated>2011-11-24T23:44:28.932-05:00</updated><title type='text'>Be frank, from IT perspective, they would like to ...</title><content type='html'>Be frank, from IT perspective, they would like to keep systems and network &amp;quot;running&amp;#39; and &amp;quot;available&amp;quot; but not about confidentiality and integrity at the first sight.&lt;br /&gt;&lt;br /&gt;Unless there is a nationwide security guideline and standard the company should fulfill and comply with, otherwise, they will suffer a severe financial and legal risk if outbreaks are reported, otherwise, they will keep themselves loose indeed.&lt;br /&gt;&lt;br /&gt;We keep our work rolling but it readily takes time.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/5730619015576440235/comments/default/7617928480671574568'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/5730619015576440235/comments/default/7617928480671574568'/><link rel='alternate' type='text/html' href='http://carnal0wnage.attackresearch.com/2011/11/lets-get-real.html?showComment=1322196268932#c7617928480671574568' title=''/><author><name>Dark Floyd</name><uri>http://www.blogger.com/profile/01457178333126304897</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='29' src='http://2.bp.blogspot.com/_0b3WKlWLoR0/SQmMZU01odI/AAAAAAAAABM/8KmrirL9u0c/S220/MyBrain.jpg'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://carnal0wnage.attackresearch.com/2011/11/lets-get-real.html' ref='tag:blogger.com,1999:blog-8539880144347728238.post-5730619015576440235' source='http://www.blogger.com/feeds/8539880144347728238/posts/default/5730619015576440235' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-196075103'/></entry><entry><id>tag:blogger.com,1999:blog-8539880144347728238.post-257078730647179227</id><published>2011-11-21T07:51:57.094-05:00</published><updated>2011-11-21T07:51:57.094-05:00</updated><title type='text'>Must agree with what is said. Sadely.
Companies wo...</title><content type='html'>Must agree with what is said. Sadely.&lt;br /&gt;Companies wont act until &amp;#39;something has happened&amp;#39;, and when there is something, the tip of the iceberg,  everyone is happy to down play it. The fundamental flaw is not only money related, but, as often, is also due to a lack of commitment and concern of the management (and staff) as well as a lack of competency in the mot fundamental system and network administration tasks.&lt;br /&gt;&lt;br /&gt;The trues is that I am the admin of swiss cheese full of holes.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/5730619015576440235/comments/default/257078730647179227'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/5730619015576440235/comments/default/257078730647179227'/><link rel='alternate' type='text/html' href='http://carnal0wnage.attackresearch.com/2011/11/lets-get-real.html?showComment=1321879917094#c257078730647179227' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://carnal0wnage.attackresearch.com/2011/11/lets-get-real.html' ref='tag:blogger.com,1999:blog-8539880144347728238.post-5730619015576440235' source='http://www.blogger.com/feeds/8539880144347728238/posts/default/5730619015576440235' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-1611759641'/></entry><entry><id>tag:blogger.com,1999:blog-8539880144347728238.post-532654526446320052</id><published>2011-11-14T16:15:03.732-05:00</published><updated>2011-11-14T16:15:03.732-05:00</updated><title type='text'>Welcome to the desert of the real.</title><content type='html'>Welcome to the desert of the real.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/5730619015576440235/comments/default/532654526446320052'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/5730619015576440235/comments/default/532654526446320052'/><link rel='alternate' type='text/html' href='http://carnal0wnage.attackresearch.com/2011/11/lets-get-real.html?showComment=1321305303732#c532654526446320052' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://carnal0wnage.attackresearch.com/2011/11/lets-get-real.html' ref='tag:blogger.com,1999:blog-8539880144347728238.post-5730619015576440235' source='http://www.blogger.com/feeds/8539880144347728238/posts/default/5730619015576440235' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-3372782'/></entry><entry><id>tag:blogger.com,1999:blog-8539880144347728238.post-5839663698824418961</id><published>2011-11-10T13:46:45.591-05:00</published><updated>2011-11-10T13:46:45.591-05:00</updated><title type='text'>I have two clients that make me laugh with their t...</title><content type='html'>I have two clients that make me laugh with their tech choices. &lt;br /&gt;&lt;br /&gt;Client A: Approx 45k hosts. User facing is all win 2000. Back is a combination of win svr 2k and 2k3.&lt;br /&gt;&lt;br /&gt;Client B: 25k hosts. combo win2k and vista for end users. Backend is NT4&lt;br /&gt;&lt;br /&gt;Its a joke on getting anything done. Firewall rule change to common sense setting? 12 weeks. 3 committees. and a prayer.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/5730619015576440235/comments/default/5839663698824418961'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/5730619015576440235/comments/default/5839663698824418961'/><link rel='alternate' type='text/html' href='http://carnal0wnage.attackresearch.com/2011/11/lets-get-real.html?showComment=1320950805591#c5839663698824418961' title=''/><author><name>Anonymous</name><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://carnal0wnage.attackresearch.com/2011/11/lets-get-real.html' ref='tag:blogger.com,1999:blog-8539880144347728238.post-5730619015576440235' source='http://www.blogger.com/feeds/8539880144347728238/posts/default/5730619015576440235' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-359782982'/></entry></feed>
