<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Passionate about Information Security &#187; Security</title>
	<atom:link href="http://blog.ismaelvalenzuela.com/tag/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.ismaelvalenzuela.com</link>
	<description>on ismaelvalenzuela.com</description>
	<lastBuildDate>Tue, 26 Jan 2010 17:58:24 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Teaching Community SANS Security 503: Intrusion Detection In-Depth</title>
		<link>http://blog.ismaelvalenzuela.com/2010/01/26/teaching-community-sans-security-503-intrusion-detection-in-depth/</link>
		<comments>http://blog.ismaelvalenzuela.com/2010/01/26/teaching-community-sans-security-503-intrusion-detection-in-depth/#comments</comments>
		<pubDate>Tue, 26 Jan 2010 17:55:59 +0000</pubDate>
		<dc:creator>Ismael Valenzuela</dc:creator>
				<category><![CDATA[Intrusion Detection Systems]]></category>
		<category><![CDATA[Network Security Monitoring]]></category>
		<category><![CDATA[SANS]]></category>
		<category><![CDATA[Training]]></category>
		<category><![CDATA[IDS]]></category>
		<category><![CDATA[Mike Poor]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blog.ismaelvalenzuela.com/?p=119</guid>
		<description><![CDATA[I'm glad to announce that I will be teaching Community SANS Security 503: Intrusion Detection In-Depth at Banbury, Oxfordshire (UK). This 6-day course will run from Monday, February 15, 2010 through Saturday, February 20, 2010.]]></description>
			<content:encoded><![CDATA[<p>I&#8217;m glad to announce that I will be teaching Community SANS <a title="Security 503: Intrusion Detection In-Depth" href="http://www.sans.org/security-training/intrusion-detection-in-depth-43-mid" target="_blank">Security 503: Intrusion Detection In-Depth</a> at Banbury, Oxfordshire (UK). This 6-day course will run from Monday, February 15, 2010 through Saturday, February 20, 2010.</p>
<p>If you haven&#8217;t heard of <a title="Community SANS" href="http://www.sans.org/community_sans/" target="_blank">Community SANS</a> courses before, I encourage you to have a look at this new format (new outside the US, where it&#8217;s been running for years). This is a great way of bringing the popular <a title="SANS Courses" href="http://www.sans.org/security-training/courses.php" target="_blank">SANS courses</a> to your local security community at a reasonable cost, especially for those that can&#8217;t attend the major events.  It&#8217;s worth mentioning that unlike the <a title="SANS Mentor" href="http://www.sans.org/mentor/about.php" target="_blank">SANS Mentor</a>  sessions, these are delivered over a six-day period, just like it is at a larger SANS event, including the full set of books and access to audio files. They are just delivered in your own community, in a small classroom setting and at a discounted cost for tuition and travel expenses.</p>
<p>I&#8217;ve already <a title="SANS 'Itinerary'" href="http://blog.ismaelvalenzuela.com/2009/03/27/from-brussels-to-amsterdam-calling-at-london-and-sydney/" target="_blank">described my experience with SANS</a>, both as student and facilitator, so I won&#8217;t go over that again. Also, you can find a further detailed description of the Security 503 track on <a title="Security 503" href="http://www.sans.org/security-training/intrusion-detection-in-depth-510-tid" target="_blank">SANS website</a>, an outstanding course that I&#8217;ve already described as the &#8220;most valuable course I&#8217;ve ever taken&#8221;. However, I want you to listen to <a title="Mike Poor at Inguardians" href="http://www.inguardians.com/info/#Poor" target="_blank">Mike Poor</a>, instructor at the SANS Institute and co-author of this course (along with Judy Novak and Guy Bruneau), describing it on YouTube. Mike Poor is both an amazing professional and a great guy that I had the opportunity to meet at <a title="SANS Sydney 2008" href="http://www.sans.org/sydney08/" target="_blank">SANS Sydney in 2008</a>, when I took his <a title="Security 560: Network Penetration Testing and Ethical Hacking" href="http://www.sans.org/sydney08/description.php?tid=1717" target="_blank">Penetration Testing</a> class. As Mike would say, this IDS course is simply &#8220;awesome&#8221;!</p>
<p style="text-align: center;"><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" width="425" height="344" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0"><param name="allowFullScreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="src" value="http://www.youtube.com/v/RoB0mLerbG0&amp;hl=es_ES&amp;fs=1&amp;" /><param name="allowfullscreen" value="true" /><embed type="application/x-shockwave-flash" width="425" height="344" src="http://www.youtube.com/v/RoB0mLerbG0&amp;hl=es_ES&amp;fs=1&amp;" allowfullscreen="true" allowscriptaccess="always"></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ismaelvalenzuela.com/2010/01/26/teaching-community-sans-security-503-intrusion-detection-in-depth/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Links to overcome the post-holiday syndrome</title>
		<link>http://blog.ismaelvalenzuela.com/2008/09/01/links-to-overcome-the-post-holiday-syndrome/</link>
		<comments>http://blog.ismaelvalenzuela.com/2008/09/01/links-to-overcome-the-post-holiday-syndrome/#comments</comments>
		<pubDate>Mon, 01 Sep 2008 15:36:22 +0000</pubDate>
		<dc:creator>Ismael Valenzuela</dc:creator>
				<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Links]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Challenge]]></category>
		<category><![CDATA[LiveCD]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://blog.ismaelvalenzuela.com/?p=57</guid>
		<description><![CDATA[Keep reading then and have a look at the following links to a few interesting security tools, new forensic challenges and even a new Multi-Boot Security Live DVD]]></description>
			<content:encoded><![CDATA[<p>September came quickly and holidays are gone. Well, at least for me and for most of the people that live in this part of the world. If you happen to be one of those that survived the holiday season -and all its hassles- without even approaching your laptop, blackberry, iPhone, PDA or any other kind of &#8220;always-on&#8221; Internet device&#8230; you are either a liar or a hero.</p>
<p>Whatever you did, and despite the amount of money you spent, one thing is for sure: if you are reading this it&#8217;s safe to assume that you are still interested in reading about good infosec stuff, aren&#8217;t you?</p>
<p>Keep reading then and have a look at the following links containing a few interesting security tools, new forensic challenges and even a new Multi-Boot Security Live DVD:</p>
<ul>
<li><strong><a title="DFRWS 2008 Rodeo" href="http://www.dfrws.org/2008/" target="_blank">DFRWS 2008 Rodeo</a> (forensic challenge): </strong>The 8th annual Digital Forensic Research Conference was held from August 11 to 13, 2008 in Baltimore, MD. A key element of this conference is the &#8220;forensic rodeo&#8221;, a challenge where conference attendees form teams to solve a digital forensic problem. The DRFWS has made the materials for the 2008 Forensic Rodeo available on their website for educational purposes and to support further research in memory analysis and file carving. The scenario description and the image files can be downloaded <a title="DRFWS 2008 Forensic Rodeo" href="http://www.dfrws.org/2008/rodeo.shtml" target="_blank">http://www.dfrws.org/2008/rodeo.shtml<span id="more-57"></span></a></li>
<li><strong><a title="OCFA" href="http://ocfa.sourceforge.net/" target="_blank">The Open Computer Forensics Architecture (OCFA)</a>: </strong>OCFA is a modular computer forensic framework developed by the Dutch National Policy Agency meant to be used in large investigations. If you want to give a try you can download the required packages from their main site: <a title="OCFA" href="http://ocfa.sourceforge.net/" target="_blank">http://ocfa.sourceforge.net/</a></li>
<li><strong><a title="Splunk" href="http://www.splunk.com/" target="_blank">Splunk</a></strong>: Splunk is a log archiving product that allows to search, navigate, alert and report on all logs in real time. Plus it&#8217;s free and available for all platforms on <a title="Splunk" href="http://www.splunk.com/download" target="_blank">http://www.splunk.com/download</a></li>
<li><strong><a title="Multi-Boot Security LiveCD DVD" href="http://www.room362.com/archives/218-Multi-Boot-Security-LiveCD-DVD.html" target="_blank">Multi-Boot Security LiveCD DVD</a>: </strong>A new all-in-one multipurpose LiveDVD that combines some of the very popular LiveCD ISOs already available on the Internet:
<ul>
<li>Backtrack 3</li>
<li>Damn Small Linux 4.2.5</li>
<li>Knoppix 5.1.1</li>
<li>Ophcrack 1.2.2 (with 720 mb tables)</li>
<li>Puppy Linux 3.01</li>
<li>and a few more&#8230;</li>
</ul>
</li>
</ul>
<p>I&#8217;m currently downloading the 4GB MultiISO .torrent file and will it give a try soon. Shame that Helix is not part of the DVD, but still looks like a handy tool to have in your Incident Response jump bag.</p>
<p>Enjoy and good luck with you holiday blues!</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.ismaelvalenzuela.com/2008/09/01/links-to-overcome-the-post-holiday-syndrome/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
