Internet Storm Center
phpbb and sql errors asp sqlserver odbc sql errors

Today´s Diary

If you have more information or corrections regarding our diary, please share.


ISC StormCast for Thursday, May 23rd 2013 http://isc.sans.edu/podcastdetail.html?id=3326

advertisement
Diary Advertisement

Use Discount Code SANSFIREISC10 when registering to get a 10% discount!!

MoVP II

Published: 2013-05-23,
Last Updated: 2013-05-23 14:00:31 UTC
by Adrien de Beaupre (Version: 1)

1 comment(s)

Volatility is a Python framework for performing memory forensics. If you haven't tried it yet I highly recommend it. The Volatility Month of Volatility Plugins II is on! As announced here: http://volatility-labs.blogspot.ca/2013/05/whats-happening-in-world-of-volatility.html Volatility 2.3 is entering beta and the second MoVP (Month of Volatility Plugins) has started and is actually in their second installment. Some very exciting new stuff:

1.1 - Mach-O Address Space
1.2 - VirtualBox ELF64 Core Dumps
1.3 - VMware Snapshot and Saved State Analysis
1.4 - New HPAK Address Space
1.5 - ARM Address Space (Volatility and Andriod / Mobile)
2.1 - RSA Private Keys and Certificates
2.2 - Unloaded Windows Kernel Modules

Cheers,
Adrien de Beaupré
Intru-shun.ca Inc.
My SANS Teaching Schedule

 

1 comment(s)
Wireshark 1.10.0rc2 is now available http://www.wireshark.org/download.html

If you have more information or corrections regarding our diary, please share.

Diary Archive

DateAuthorTitle
2013-05-23 Adrien de Beaupre MoVP II (1 Comments)
2013-05-22 Adrien de Beaupre Privilege escalation, why should I care? (13 Comments)
2013-05-21 Adrien de Beaupre Moore, Oklahoma tornado charitable organization scams, malware, and phishing (0 Comments)
2013-05-20 Johannes Ullrich Ubuntu Package available to submit firewall logs to DShield (3 Comments)
2013-05-20 Guy Bruneau Safe - Tools, Tactics and Techniques (0 Comments)
2013-05-19 Kevin Shortt Port 51616 - Got Packets? (1 Comments)
2013-05-17 Daniel Wesemann e-netprotections.su ? (3 Comments)
2013-05-17 Johannes Ullrich SSL: Another reason not to ignore IPv6 (3 Comments)
2013-05-16 Joel Esler Cisco TelePresence Supervisor MSE 8050 Denial of Service Vulnerability (1 Comments)
2013-05-16 Daniel Wesemann Extracting signatures from Apple .apps (0 Comments)
Folder Icon Complete Archive
Search Diaries:

Diary Tagslink arrow

  tools     ipv6     apple     51616     cyberterrorism     cloudflare     mt6d     boston marathon scams     plugins     outage     firefox     advance notification     email     scam     rfc6724     oklahoma     spamhaus     thunderbird     certificate     port 51616     postgresql     internet status     bcp 38     movp ii     cisco     packets     frequency hopping     privilege escalation     volatility     patch tuesday     watering hole     kernel     patches     web app sec     rfc6555     psexec     malware     sourcefire     java vulnerability     ubuntu     denial of service     relays     flash     vulnerability     fantasia     patch     java 7u21     perimeter     ie 8     hak5     ipv6 focus month     cve20120158     adobe     phishing     fake tech calls     blackhole     updates     certificates     preference     java     protocol     spam     opendoc     trojan     0 day     javascript     google     gov     boston marathon explosions     xss     cnn     webserver     ios     firewall     tornado     cyberbunker     overview     enterprise certificate authority     chargen     fake charities     msft     ipv4     memory forensics     mozilla     apache     security advisory     sysinternals     incident     configuration     ddos     security intelligence     61     boston marathon bombing     safe     dos     waco fertilizer plant explosion     microsoft     typo squatting     dshield     remnux     usbexe     passwords     certutil     exploit     usbdoc     malware containment     black tuesday     ssl     linux     micorsoft     notification     anti virus     malware analysis     happy eyeballs     boston marathon     java security update     bgp     got packets     back tuesday     disaster     charity     vrt     phish     signature     snort     spoofing  
site/port/ip search:

Announcement!

IPv6 Support Added

Our iptables client now supports submitting IPv6 firewall logs.

ISC Polllink arrow

What are your plans when XP is no longer supported?

World Map

world map

Trends

trend graph