Thursday, December 01, 2005

wHAX live CD pen_test demo'd

Last night's TASK.to meeting was particularly interesting as the Demo showed vulnerability exploit testing. The wHAX live CD offers a collection of pen test tools. A great way to test your firm's current security online. It's based on SLAX and is modular. One from the whoppix team mentions that some of the v3.0 tools (build) is broken and will be fixed soon.
The product is noted _here_.




Wednesday, November 30, 2005

MSRC ponders critical IE-flaw patch early

Seems MSRC(Microsoft Security Response Center) is looking to get a patch out prior to the usual December monthy Super Tueday sked. See this report. A good time to switch to Firefox yet?




Nov. TASK group monthly meeting

The Toronto Area Security Klatch group meeting is Wednesday evening (tonight) with a topic set on "LinuxLive CD's - a PenTester's Dream". Presenter will be Jeremy Richards of nCircle. Note the alternate location this evening.
If you're nearby downtown Toronto, it's highly recommended as a free to attend event. More info _here_.




Tuesday, November 29, 2005

CNS '06 test

Today, a few local reps sat in on the Novell presentation and wrote the test for Certified Novell Salesperson 2006. Piece of Cake!




VMware Workstation 5.5 released

VMware introduced VMware Workstation 5.5 today.




Tuesday, November 01, 2005

Spam at 500 again

While it whittled down, my gmail mailbox has again reached 500 spam messages in the Gmail Spam Filter. Will these unsolicited offers for mortgages & watches ever end?Can we really stop spam ?




Monday, October 31, 2005

MS Exchange tar pit feature switch ON

A couple weeks ago, Microsoft released Service Pack 2 for Exchange Server 2003. Typically, I wouldn't mention this type of news but the product does have a new SMTP 'tar-pitting' function against hackers. Too little, too late if you ask me...

"Boost your defenses with Microsoft Exchange Server Intelligent Message Filter and Sender ID. SP2 raises the bar in the antispam war. The latest Exchange Server Intelligent Message Filter incorporates checks against phishing scams and domain spoofing tactics."
"Gain more mobile e-mail security options.
Support for Secure/Multipurpose Internet Mail Extensions (S/MIME) message encryption and certificate-based authentication of mobile e-mail gives you more options for more securely handling your mobile e-mail."




Sunday, October 30, 2005

what's it worth?

a recent calculation of your blog's worth using the same link to dollar ratio as the AOL-Weblogs Inc deal:

Saturday, October 29, 2005

Novell IDM solution tops InfoWorld review

Not that I'm biased but, recently Novell's Novell Identity Manager 2 product topped the InfoWorld Identity Challenge in the Oct.12 Issue. For a top down look, see the chart _here_.

This is a continuation of my earlier _posting_.




Friday, October 28, 2005

MS nixes VMware platform support for Windows

Seemingly, yesterday Microsoft announced it was dropping support for VMware GSX or ESX server.
Check A. Perilli's comments _here_.


Thursday, October 27, 2005

ZEN Asset and Patch Management demo after thoughts

in attending the ZEN Asset and Patch Management demo today, there were a few take-away thoughts:

-the Inventory & Asset Management Module does not rely on eDirectory
-the next version of Inventory & Asset Management should provide open source Linux database Server support

-The Patch Management Module (PatchLink) is an OEM product and does not integrate with the ZEN Suite
-The Patch Management Module (PatchLink) does not integrate with eDirectory
-The Patch Management Module (PatchLink) runs on a Windows Server