| Publications & Events |
|
|
|
PublicationsHolisticInfoSec.org's Russ McRee writes and speaks regularly on information security topics in the hope of sharing knowledge and resources with a wide audience. Microsoft Internet Explorer Blog: Statistical Validation of the IE8 XSS Filter Microsoft Malware Protection Center Threat Research & Response Blog: Another Reason to Avoid Piracy October's issue covers fwsnort, application layer IDS/IPS with iptables. November's column takes a close look at Bipartisan server politi...er, security. In December, we'll examine Ftimes, the first of a two part series on tools from The Integrity Project. toolsmith offers insights on tools useful to the infosec practitioner, typically open source or inexpensive. The ISSA Journal is available to members in print and online at issa.org. Article copies are available on the toolsmith page. July's (IN)SECURE features Russ's article Open Redirect Vulnerabilities: Definition and Prevention. Download Issue 17 . June's ISSA Jounal features Russ's article, Anatomy of an XSS Attack, as its title piece. This is a unique effort written in the 1st person, as a cybercriminal, to exemplify the grave harm that can come to users and consumers when cross-site scripting (XSS) vulnerabilities are left unmitigated. With kind permission from the ISSA Journal, holistiinfosec.org is able to bring non-members the pdf copy of Anatomy of an XSS Attack. Please consider joining the ISSA today. Testy Eft , Russ's article on security testing with nUbuntu , is available in the November 2007 issue 84 of Linux Magazine. A piece covering Network Security Monitoring and Sguil via Knoppix-NSM is available in the October 2007 Information Security Magazine titled Putting Snort to Work. OWASP offers Secure Web App Server , in its Papers collection. The paper covers the use of SELinux, iptables, mod_jk, mod_security, and mod_evasive to build a secure web app server. This paper is a living document, updated as needed to stay current. Current version is 1.3 with change notes included. SMaK - Smoothwall, MySQL and Kiwi Syslog Daemon: Cost Effective Firewall and Logging with Database and Analysis Systems Security Assessment: A Simple Baseline EventsPending Past EventsRuss participated in a panel discussion at the Ziff Davis Enterprise Security Summit 2008 on October 21, 2008 at the Fairmont Olympic Hotel in Seattle, WA. Details here . Russ presented The XSS Epidemic: Discovery, Disclosure, and Remediation to the Puget Sound chapter of the ISSA on August 23, 2008. Russ presented The XSS Epidemic: Discovery, Disclosure, and Remediation to the Washington Technology Industry Association Security Special Interest Group on July 14, 2008. Details here .
Russ presented Malcode Analysis Techniques for Incident Handlers at the 20th Annual FIRST Conference in Vancouver, B.C. on June 25th, 2008. Details here. Slides here .
Russ presented The XSS Epidemic: Discovery, Disclosure, and Remediation at the 2008 ISSA NW Regional Security Conference on April 23rd, 2008, in Olympia, WA. This presentation was the result of a great deal of research for the April 2008 toolsmith of the same approximate title. The most disturbing finding during this process was the discovery of yet another batch of Hacker Safe branded sites that are certainly not. Refer to the blog post and video for more information.
Russ gave an overview of RAPIER during a SANS Ask The Expert Webcast, Malcode Analysis and Response: Proficiency vs. Complexity on March 20th, 2008.
Russ offered Malcode Analysis Techniques for Incident Handlers at SecureWorld Expo Seattle 2007 : The threat landscape changes constantly, driven in part by the "bot economy" and changing malcode techniques. In response, incident handler techniques must keep pace. This presentation will cover tools and methodology useful to handlers, analysts, and administrators. From detection and discovery, capture and containment, count on a useful discussion meant to further your understanding of the information security practitioner's greatest bane.Slides available below.
Russ taught SANS Stay Sharp Google Hacking and Defense on July 19th, 2007 in Bellevue, WA. SSP-GHD offers a "fundamental understanding of technical defense measures to uncover unintended information disclosures, close common holes in web servers and Internet connected devices as well as clean up the exposures discovered."
PresentationsMalcode Analysis for Incident Handlers is being updated for the 20th Annual FIRST Conference. |
| < Prev | Next > |
|---|







