Archive for August, 2009

Contest Prize Update

SANS is sponsoring a prize for our Network Forensics Puzzle Contest! The winner gets a free SANS On-Demand class (worth up to $3500 depending on the class you pick). Prizewinners will be announced during the Sec558 “Network Forensics” class in San Diego, 9/16-9/18. Remember, the MOST ELEGANT solution wins. We highly encourage coding and automated [...]

Read Full Post »

Network Forensics Puzzle Contest!

*Prizewinner to be announced at Sec558 “Network Forensics” in San Diego, 9/16-9/18. Anarchy-R-Us, Inc. suspects that one of their employees, Ann Dercover, is really a secret agent working for their competitor. Ann has access to the company’s prize asset, the secret recipe. Security staff are worried that Ann may try to leak the company’s secret [...]

Read Full Post »

By Jonathan Ham How can you investigate a computer that isn’t there any more? “No Hard Drive? No Problem!” SANS Network Forensics (Sec558) A lot has been written about methods for “fingerprinting” systems with active scanning methods (eg. nmap). These of course require that the system be actively reachable, and that you don’t mind totally [...]

Read Full Post »

Here’s where you can download my “scary” DEFCON presentation: Reverse of the United States Great SealNovus Ordo Seclorum“A New Order of the Ages” “Death of Anonymous Travel”DEFCON 2009 – PDF MD5sum: c772681c37c9ad5d210c19c12eb43095 Thanks to everyone who sent in comments, suggestions, and encouragement. (Special thanks to the EFF lawyers for reviewing this beforehand– you guys rock!) [...]

Read Full Post »