<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Suspicious Minds</title>
	<atom:link href="http://suspiciousminds.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://suspiciousminds.wordpress.com</link>
	<description>Information Security Musings</description>
	<lastBuildDate>Fri, 21 Oct 2011 05:02:32 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='suspiciousminds.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Suspicious Minds</title>
		<link>http://suspiciousminds.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://suspiciousminds.wordpress.com/osd.xml" title="Suspicious Minds" />
	<atom:link rel='hub' href='http://suspiciousminds.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Change is the Only True Constant</title>
		<link>http://suspiciousminds.wordpress.com/2011/10/20/change-is-the-only-true-constant/</link>
		<comments>http://suspiciousminds.wordpress.com/2011/10/20/change-is-the-only-true-constant/#comments</comments>
		<pubDate>Fri, 21 Oct 2011 05:02:27 +0000</pubDate>
		<dc:creator>Bill Wildprett</dc:creator>
				<category><![CDATA[Careers]]></category>
		<category><![CDATA[Incident Response]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[IT Auditing]]></category>
		<category><![CDATA[IT Certifications]]></category>
		<category><![CDATA[Personal Branding]]></category>
		<category><![CDATA[Personal Growth]]></category>
		<category><![CDATA[Relationships]]></category>

		<guid isPermaLink="false">http://suspiciousminds.wordpress.com/?p=184</guid>
		<description><![CDATA[Change is good.  Sometimes it can be painful and it may take a while to get some perspective and realize you&#8217;ve grown.  It&#8217;s all part of the process and I&#8217;ve learned to embrace or at least accept it. What&#8217;s new?  I did a stint as an incident response handler earlier this year, then moved into [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=184&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><span style="color:#003366;">Change is good.  Sometimes it can be painful and it may take a while to get some perspective and realize you&#8217;ve grown.  It&#8217;s all part of the process and I&#8217;ve learned to embrace or at least accept it.</span></p>
<p><span style="color:#003366;">What&#8217;s new?  I did a stint as an incident response handler earlier this year, then moved into SOX compliance and finally fell into a wormhole and emerged as an IT Security Auditor.  Not a stretch per se, but my information security talents have been stretched, in a good way, growth-wise.</span></p>
<p><span style="color:#003366;">So now I&#8217;m immersed in GLBA/FFIEC compliance engagements and have eyes on PCI-DSS and NERC-CIP work.  I&#8217;m thinking about adding another certification, possibly a CISM.</span></p>
<p><span style="color:#003366;">I&#8217;ve recently seen some friends in our industry brutalized by bad management, and then upon abrupt exits, become reborn and renewed, with a new sense of purpose and drive infusing their love of infosec.  In the past, many people helped me when I was &#8216;<em>dazed and confused</em>&#8216;; if you find yourself able, reach out to someone and ask them &#8216;what&#8217;s the good word?&#8217;  Shower them with positivity and possibility!</span></p>
<p><span style="color:#003366;">Always keep moving and remember, even when you go one step forward, two steps back, you&#8217;re <em>still</em> making progress&#8230;</span></p>
<p><a href="http://suspiciousminds.files.wordpress.com/2011/10/plant-growth-circle.jpg"><img title="plant-growth-circle" src="http://suspiciousminds.files.wordpress.com/2011/10/plant-growth-circle.jpg?w=300&#038;h=225" alt="" width="300" height="225" /></a><em>image courtesy of <a title="Impact Lab" href="http://www.impactlab.net/2009/02/14/12-incredible-time-lapse-plant-growth-videos/" target="_blank">Impact Lab</a></em></p>
<p>Peace y&#8217;all</p>
<p>&nbsp;</p>
<br />Filed under: <a href='http://suspiciousminds.wordpress.com/category/careers/'>Careers</a>, <a href='http://suspiciousminds.wordpress.com/category/incident-response/'>Incident Response</a>, <a href='http://suspiciousminds.wordpress.com/category/information-security/'>Information Security</a>, <a href='http://suspiciousminds.wordpress.com/category/it-auditing/'>IT Auditing</a>, <a href='http://suspiciousminds.wordpress.com/category/it-certifications/'>IT Certifications</a>, <a href='http://suspiciousminds.wordpress.com/category/personal-branding/'>Personal Branding</a>, <a href='http://suspiciousminds.wordpress.com/category/personal-growth/'>Personal Growth</a>, <a href='http://suspiciousminds.wordpress.com/category/relationships/'>Relationships</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/suspiciousminds.wordpress.com/184/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/suspiciousminds.wordpress.com/184/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/suspiciousminds.wordpress.com/184/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/suspiciousminds.wordpress.com/184/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/suspiciousminds.wordpress.com/184/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/suspiciousminds.wordpress.com/184/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/suspiciousminds.wordpress.com/184/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/suspiciousminds.wordpress.com/184/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/suspiciousminds.wordpress.com/184/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/suspiciousminds.wordpress.com/184/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/suspiciousminds.wordpress.com/184/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/suspiciousminds.wordpress.com/184/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/suspiciousminds.wordpress.com/184/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/suspiciousminds.wordpress.com/184/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=184&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://suspiciousminds.wordpress.com/2011/10/20/change-is-the-only-true-constant/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/9e5fa37ee7c54fe2ae9522af356e65ca?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">bwild56</media:title>
		</media:content>

		<media:content url="http://suspiciousminds.files.wordpress.com/2011/10/plant-growth-circle.jpg?w=300" medium="image">
			<media:title type="html">plant-growth-circle</media:title>
		</media:content>
	</item>
		<item>
		<title>2010 Rearview Mirror</title>
		<link>http://suspiciousminds.wordpress.com/2011/01/12/2010-rearview-mirror/</link>
		<comments>http://suspiciousminds.wordpress.com/2011/01/12/2010-rearview-mirror/#comments</comments>
		<pubDate>Thu, 13 Jan 2011 02:43:59 +0000</pubDate>
		<dc:creator>Bill Wildprett</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[IT Auditing]]></category>
		<category><![CDATA[CISA]]></category>
		<category><![CDATA[IT Certifications]]></category>
		<category><![CDATA[Training]]></category>
		<category><![CDATA[Personal Branding]]></category>
		<category><![CDATA[Careers]]></category>
		<category><![CDATA[Relationships]]></category>
		<category><![CDATA[Risk Assessments]]></category>
		<category><![CDATA[Vulnerability Assessments]]></category>
		<category><![CDATA[Consulting]]></category>

		<guid isPermaLink="false">http://suspiciousminds.wordpress.com/?p=180</guid>
		<description><![CDATA[January is a time of reflection and renewal, thinking about the past year and the present one.  We use this time to measure ourselves and set or renew goals, pointing our inner compass needles towards our own True North. Looking back, 2010 was a successful year for me.  I didn&#8217;t get to do some things [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=180&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><span style="color:#000080;">January is a time of reflection and renewal, thinking about the past year and the present one.  We use this time to measure ourselves and set or renew goals, pointing our inner compass needles towards our own <em>True North</em>.</span></p>
<p><span style="color:#000080;">Looking back, 2010 was a successful year for me.  I didn&#8217;t get to do some things or attend all the conferences I wanted, but other items were handily accomplished and some good work got done!</span></p>
<p><span style="color:#000080;">Foremost, I partnered with <a href="http://ioactive.com/" target="_blank">IOActive</a>, <a title="Act with Knowledge" href="http://www.consciere.com/" target="_blank">Consciere</a>, and <a href="http://www.insyndia.com/" target="_blank">Insyndia </a>to do consulting work.  This led to interesting security audit, risk assessment and vulnerability assessment work and I was fortunate to meet and work with some great people.  Shouts-out to </span><a title="SecBarbie!" href="http://www.linkedin.com/pub/erin-jacobs/9/899/582" target="_blank"><span style="color:#000080;">Erin Jacobs</span></a><span style="color:#000080;">, </span><a href="http://www.linkedin.com/in/glennkaleta" target="_blank"><span style="color:#000080;">Glenn Kaleta</span></a><span style="color:#000080;">, </span><a href="http://www.linkedin.com/in/mdavidbaker" target="_blank"><span style="color:#000080;">David Baker</span></a><span style="color:#000080;">, </span><a href="http://www.linkedin.com/in/tabpierce" target="_blank"><span style="color:#000080;">Tab Pierce</span></a><span style="color:#000080;">,</span><span style="color:#000080;"> and </span><a href="http://www.linkedin.com/in/joelscambray" target="_blank"><span style="color:#000080;">Joel Scambray</span></a><span style="color:#000080;"> in particular!</span></p>
<p><span style="color:#000080;">I also earned my CISA which gives me a stronger understanding of formally auditing information security environments.  Now, I&#8217;m thinking of how to use this new-found knowledge and where I&#8217;ll go next.</span></p>
<p><span style="color:#000080;">What will 2011 bring?  As I chart this year&#8217;s course, I intend to visit new shores, make new acquantances, and continue to grow as a person and infosec professional.  I welcome the journey and it&#8217;s challenges!</span></p>
<p><span style="color:#000080;">Be well friends&#8230;</span></p>
<p><span style="color:#000080;">by Bill Wildprett, </span><a href="http://suspiciousminds.wordpress.com/" target="_blank"><span style="color:#000080;">Suspicious Minds</span></a><span style="color:#000080;"> blog, Copyright 2011</span></p>
<br />Filed under: <a href='http://suspiciousminds.wordpress.com/category/careers/'>Careers</a>, <a href='http://suspiciousminds.wordpress.com/category/cisa/'>CISA</a>, <a href='http://suspiciousminds.wordpress.com/category/consulting/'>Consulting</a>, <a href='http://suspiciousminds.wordpress.com/category/information-security/'>Information Security</a>, <a href='http://suspiciousminds.wordpress.com/category/it-auditing/'>IT Auditing</a>, <a href='http://suspiciousminds.wordpress.com/category/it-certifications/'>IT Certifications</a>, <a href='http://suspiciousminds.wordpress.com/category/personal-branding/'>Personal Branding</a>, <a href='http://suspiciousminds.wordpress.com/category/relationships/'>Relationships</a>, <a href='http://suspiciousminds.wordpress.com/category/risk-assessments/'>Risk Assessments</a>, <a href='http://suspiciousminds.wordpress.com/category/training/'>Training</a>, <a href='http://suspiciousminds.wordpress.com/category/vulnerability-assessments/'>Vulnerability Assessments</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/suspiciousminds.wordpress.com/180/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/suspiciousminds.wordpress.com/180/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/suspiciousminds.wordpress.com/180/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/suspiciousminds.wordpress.com/180/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/suspiciousminds.wordpress.com/180/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/suspiciousminds.wordpress.com/180/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/suspiciousminds.wordpress.com/180/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/suspiciousminds.wordpress.com/180/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/suspiciousminds.wordpress.com/180/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/suspiciousminds.wordpress.com/180/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/suspiciousminds.wordpress.com/180/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/suspiciousminds.wordpress.com/180/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/suspiciousminds.wordpress.com/180/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/suspiciousminds.wordpress.com/180/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=180&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://suspiciousminds.wordpress.com/2011/01/12/2010-rearview-mirror/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/9e5fa37ee7c54fe2ae9522af356e65ca?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">bwild56</media:title>
		</media:content>
	</item>
		<item>
		<title>Cleaning the Mental Gutters</title>
		<link>http://suspiciousminds.wordpress.com/2010/10/24/cleaning-the-mental-gutters/</link>
		<comments>http://suspiciousminds.wordpress.com/2010/10/24/cleaning-the-mental-gutters/#comments</comments>
		<pubDate>Mon, 25 Oct 2010 02:09:42 +0000</pubDate>
		<dc:creator>Bill Wildprett</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Books]]></category>
		<category><![CDATA[IT Auditing]]></category>
		<category><![CDATA[CISA]]></category>
		<category><![CDATA[IT Certifications]]></category>
		<category><![CDATA[OSSTMM]]></category>
		<category><![CDATA[Critical Thinking]]></category>

		<guid isPermaLink="false">http://suspiciousminds.wordpress.com/?p=172</guid>
		<description><![CDATA[No, I&#8217;m not thinking about porn or any other nasty stuff, just reflecting that like during Fall when we clean our house gutters, it&#8217;s appropriate to think about how we think and remove clogs and other impediments. For me, that means diversifying my security readings and practices and thinking about where I might have blinders [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=172&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><span style="color:#000080;">No, I&#8217;m not thinking about porn or any other nasty stuff, just reflecting that like during Fall when we clean our house gutters, it&#8217;s appropriate to <em>think about how we think</em> and remove clogs and other impediments.</span></p>
<p><span style="color:#000080;">For me, that means diversifying my security readings and practices and thinking about where I might have blinders on.  This was brought home recently from someone I respect, <a title="Pete on OSSTMM 3" href="https://www.infosecisland.com/blogview/5297-Ending-the-Security-Business-of-Guessing.html" target="_blank">Pete Herzog</a> the Founder of ISECOM and the <a title="OSSTMM!" href="http://www.isecom.org/osstmm/" target="_blank">OSSTMM</a>.  I had asked Pete via email if any of the <a title="Smarter, Safer, Better seminars" href="http://www.isecom.org/seminars.shtml" target="_blank"><em>Smarter, Safer, Better</em></a> seminars would be on the West Coast (none yet); he kindly responded with information about who I could contact who might sponsor them and also gave me a backhanded compliment about passing the CISA exam, saying <em>&#8216;now we&#8217;ll have to teach you the right way&#8217;</em> in essence.</span></p>
<p><span style="color:#000080;">I wasn&#8217;t offended but my curiosity was piqued.  My mind had been wrapped around earning a CISA for continued competence and professional respect; was my thinking so constrained by my learnings?  So, I&#8217;m resolved to read the OSSTMM Version 3 and work to use it.  I&#8217;d read through (read, skimmed) Version 2.2 a while back but hadn&#8217;t immersed myself.  From<a title="Intro to OSSTMM 3" href="https://www.infosecisland.com/blogview/7797-An-Introduction-to-OSSTMM-Version-3.html" target="_blank"> other authors</a>, now I understand it as possibly a paradigm shift in how to think about security assessments, at least for me.</span></p>
<p><span style="color:#000080;">Another mental dustbuster for me has come from reading <a title="Black Swan theory" href="http://en.wikipedia.org/wiki/Black_swan_theory" target="_blank"><em>The Black Swan</em></a> by Nassim Nicholas Taleb.  I&#8217;m not finished with the book, a testament to how well-written and insightful it is.  I find myself lingering over it and re-reading sections prior to moving on.  This is partially because &#8216;NNT&#8217;, as he refers to himself, is one deep thinker!  This tome takes some time to absorb and digest.  Taleb discusses extreme outliers, huge events that are completely unforeseen and that subsequently shake our foundations, institutions and psyches.  9/11 is one such event.  The salient idea is not to focus on prediction of such events but to build sufficient robustness against negative Black Swan Events and to take advantage of positive ones.</span></p>
<p><span style="color:#000080;">My challenge and task is to apply this modality of critical thinking to the domains of information security, along with that of the OSSTMM.</span></p>
<p><span style="color:#000080;">Like more physical exercise will clean the arterial plaque from your personal system, it&#8217;s important to floss your brain or defrag your mind, however you want to put it and at least recognize that you might need to.</span></p>
<p><span style="color:#000080;">Peace friends!</span></p>
<p><span style="color:#000080;">by Bill Wildprett, <a href="http://suspiciousminds.wordpress.com/">Suspicious Minds</a> blog, Copyright 2010</span></p>
<br />Filed under: <a href='http://suspiciousminds.wordpress.com/category/books/'>Books</a>, <a href='http://suspiciousminds.wordpress.com/category/cisa/'>CISA</a>, <a href='http://suspiciousminds.wordpress.com/category/critical-thinking/'>Critical Thinking</a>, <a href='http://suspiciousminds.wordpress.com/category/information-security/'>Information Security</a>, <a href='http://suspiciousminds.wordpress.com/category/it-auditing/'>IT Auditing</a>, <a href='http://suspiciousminds.wordpress.com/category/it-certifications/'>IT Certifications</a>, <a href='http://suspiciousminds.wordpress.com/category/osstmm/'>OSSTMM</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/suspiciousminds.wordpress.com/172/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/suspiciousminds.wordpress.com/172/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/suspiciousminds.wordpress.com/172/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/suspiciousminds.wordpress.com/172/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/suspiciousminds.wordpress.com/172/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/suspiciousminds.wordpress.com/172/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/suspiciousminds.wordpress.com/172/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/suspiciousminds.wordpress.com/172/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/suspiciousminds.wordpress.com/172/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/suspiciousminds.wordpress.com/172/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/suspiciousminds.wordpress.com/172/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/suspiciousminds.wordpress.com/172/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/suspiciousminds.wordpress.com/172/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/suspiciousminds.wordpress.com/172/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=172&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://suspiciousminds.wordpress.com/2010/10/24/cleaning-the-mental-gutters/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/9e5fa37ee7c54fe2ae9522af356e65ca?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">bwild56</media:title>
		</media:content>
	</item>
		<item>
		<title>Sweetness!</title>
		<link>http://suspiciousminds.wordpress.com/2010/08/12/sweetness/</link>
		<comments>http://suspiciousminds.wordpress.com/2010/08/12/sweetness/#comments</comments>
		<pubDate>Fri, 13 Aug 2010 02:01:33 +0000</pubDate>
		<dc:creator>Bill Wildprett</dc:creator>
				<category><![CDATA[Careers]]></category>
		<category><![CDATA[CISA]]></category>
		<category><![CDATA[IT Auditing]]></category>
		<category><![CDATA[IT Certifications]]></category>
		<category><![CDATA[Training]]></category>

		<guid isPermaLink="false">http://suspiciousminds.wordpress.com/?p=166</guid>
		<description><![CDATA[After waiting two months to the day following the Certified Information Systems Auditor exam (CISA), I just learned that I PASSED! Now I need to submit my Application for Certification to ISACA and wait another two months (so they say) for it to be approved before I can use my new certification title. Reviewing my [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=166&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><span style="color:#000080;">After waiting two months to the day following the <em>Certified Information Systems Auditor</em> exam (CISA), I just learned that I PASSED!</span></p>
<p><span style="color:#000080;">Now I need to submit my Application for Certification to ISACA and wait another two months (so they say) for it to be approved before I can use my new certification title.</span></p>
<p><span style="color:#000080;">Reviewing my test scores by subject area told me that I didn&#8217;t do as well in some areas and better in others.  So, more studying is in order&#8230;</span></p>
<p><span style="color:#000080;">Oh Happy Day!  <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </span></p>
<p><span style="color:#000080;"><a href="http://suspiciousminds.files.wordpress.com/2010/08/88387453.jpg"><img class="alignright size-medium wp-image-167" title="Happy Buddha!" src="http://suspiciousminds.files.wordpress.com/2010/08/88387453.jpg?w=201&#038;h=300" alt="" width="201" height="300" /></a>by Bill Wildprett, <a href="http://suspiciousminds.wordpress.com/" target="_blank">Suspicious Minds</a> blog, Copyright 2010</span></p>
<p><span style="color:#000080;">Image courtesy of <a title="Happy Buddha!" href="http://www.pentaxsalon.com/2007/11/happy-buddha-smile.html" target="_blank">Pentax Salon</a><br />
</span></p>
<br />Filed under: <a href='http://suspiciousminds.wordpress.com/category/careers/'>Careers</a>, <a href='http://suspiciousminds.wordpress.com/category/cisa/'>CISA</a>, <a href='http://suspiciousminds.wordpress.com/category/it-auditing/'>IT Auditing</a>, <a href='http://suspiciousminds.wordpress.com/category/it-certifications/'>IT Certifications</a>, <a href='http://suspiciousminds.wordpress.com/category/training/'>Training</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/suspiciousminds.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/suspiciousminds.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/suspiciousminds.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/suspiciousminds.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/suspiciousminds.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/suspiciousminds.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/suspiciousminds.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/suspiciousminds.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/suspiciousminds.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/suspiciousminds.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/suspiciousminds.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/suspiciousminds.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/suspiciousminds.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/suspiciousminds.wordpress.com/166/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=166&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://suspiciousminds.wordpress.com/2010/08/12/sweetness/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/9e5fa37ee7c54fe2ae9522af356e65ca?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">bwild56</media:title>
		</media:content>

		<media:content url="http://suspiciousminds.files.wordpress.com/2010/08/88387453.jpg?w=201" medium="image">
			<media:title type="html">Happy Buddha!</media:title>
		</media:content>
	</item>
		<item>
		<title>Incident Response &amp; Catching Kittens</title>
		<link>http://suspiciousminds.wordpress.com/2010/07/28/catching-kittens/</link>
		<comments>http://suspiciousminds.wordpress.com/2010/07/28/catching-kittens/#comments</comments>
		<pubDate>Thu, 29 Jul 2010 00:13:04 +0000</pubDate>
		<dc:creator>Bill Wildprett</dc:creator>
				<category><![CDATA[Incident Response]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Security Awareness]]></category>

		<guid isPermaLink="false">http://suspiciousminds.wordpress.com/?p=155</guid>
		<description><![CDATA[The other night, while my wife and I were walking Daisy, we  had an &#8216;incident&#8217; to respond to.  Not computer related, but the principles of incident response still apply.  Someone decided that abandoning three month-old kittens on the road down from our house was a good idea ~ &#8216;surely someone nice will give them homes!&#8217; [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=155&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><span style="color:#003366;">The other night, while my wife and I were walking Daisy, we  had an &#8216;incident&#8217; to respond to.  Not computer related, but the principles of incident response still apply.  Someone decided that abandoning three month-old kittens on the road down from our house was a good idea ~ <em>&#8216;surely someone nice will give them homes!&#8217;</em></span></p>
<p><span style="color:#003366;">If we ignored their plight, the outcome would go three ways:</span></p>
<ol>
<li><span style="color:#003366;">Someone else might rescue them.  Although, since it was after 10:00 P.M. this was unlikely.</span></li>
<li><span style="color:#003366;">They&#8217;d be hit by cars.</span></li>
<li><span style="color:#003366;"><a title="Next time, try harder..." href="http://www.youtube.com/watch?v=hz65AOjabtM" target="_blank"><em>Wile E. Coyote</em></a> and his brethren would enjoy their company.</span></li>
</ol>
<p><span style="color:#003366;">So,  we rescued them, sheltered them overnight and in the morning, off to the Humane Society (with a donation) they went since we just can&#8217;t accommodate three kittens with our golden retriever.</span></p>
<p><span style="color:#003366;">Reflecting on this episode, I thought about how I&#8217;d been taught about incident response by SANS Institute instructors.  The acronym I learned is PICERL;<span style="color:#ff6600;"> <strong><span style="color:#000080;"><span style="text-decoration:underline;">P</span></span></strong></span>reparation,<strong> <span style="text-decoration:underline;">I</span></strong>dentification, <strong><span style="text-decoration:underline;">C</span></strong>ontainment,<strong> <span style="text-decoration:underline;">E</span></strong>radication, <strong><span style="text-decoration:underline;">R</span></strong>ecovery, <strong><span style="text-decoration:underline;">L</span></strong>essons-learned.</span></p>
<p><span style="color:#003366;">We were prepared because we had cardboard boxes to hold them and a crate at home for the night.  We identified the problem, contained the kittens and eradicated the threats that night (no, we didn&#8217;t kill any coyotes).  Recovery happened in the morning and Lessons-learned are ongoing (expect the unexpected and assume breach are two of them).</span></p>
<p><span style="color:#003366;">The takeaway on this is that strange things happen and we can use our training, even very IT security-specific, to manage the event.  Security is about doing the Right Thing, at the Right Time, for the Right Reasons ~ this incident was no exception and was definitely security-related, at least in the physical sense as far as the kittens were concerned.</span></p>
<p><span style="color:#003366;">by Bill Wildprett, <a href="http://suspiciousminds.wordpress.com/" target="_blank">Suspicious Minds blog</a>, Copyright 2010</span></p>
<br />Filed under: <a href='http://suspiciousminds.wordpress.com/category/incident-response/'>Incident Response</a>, <a href='http://suspiciousminds.wordpress.com/category/information-security/'>Information Security</a>, <a href='http://suspiciousminds.wordpress.com/category/security-awareness/'>Security Awareness</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/suspiciousminds.wordpress.com/155/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/suspiciousminds.wordpress.com/155/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/suspiciousminds.wordpress.com/155/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/suspiciousminds.wordpress.com/155/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/suspiciousminds.wordpress.com/155/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/suspiciousminds.wordpress.com/155/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/suspiciousminds.wordpress.com/155/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/suspiciousminds.wordpress.com/155/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/suspiciousminds.wordpress.com/155/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/suspiciousminds.wordpress.com/155/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/suspiciousminds.wordpress.com/155/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/suspiciousminds.wordpress.com/155/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/suspiciousminds.wordpress.com/155/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/suspiciousminds.wordpress.com/155/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=155&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://suspiciousminds.wordpress.com/2010/07/28/catching-kittens/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/9e5fa37ee7c54fe2ae9522af356e65ca?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">bwild56</media:title>
		</media:content>
	</item>
		<item>
		<title>Sum Sum Summertime!</title>
		<link>http://suspiciousminds.wordpress.com/2010/07/09/sum-sum-summertime/</link>
		<comments>http://suspiciousminds.wordpress.com/2010/07/09/sum-sum-summertime/#comments</comments>
		<pubDate>Sat, 10 Jul 2010 07:08:16 +0000</pubDate>
		<dc:creator>Bill Wildprett</dc:creator>
				<category><![CDATA[Books]]></category>
		<category><![CDATA[CISA]]></category>
		<category><![CDATA[Incident Response]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[IT Auditing]]></category>
		<category><![CDATA[Security Metrics]]></category>
		<category><![CDATA[Security Tools]]></category>
		<category><![CDATA[Training]]></category>

		<guid isPermaLink="false">http://suspiciousminds.wordpress.com/?p=159</guid>
		<description><![CDATA[The calendar says its Summer although here in the Pacific Northwest, we&#8217;re not sure ~ its a cool Summer, which makes it fine for reading security books in the hammock or doing laptop stuff from the deck. So what&#8217;s cooking?  I re-encountered a tool I first learned about from Russ McRee&#8217;s Toolsmith column in the [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=159&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><span style="color:#000080;">The calendar says its Summer although here in the Pacific Northwest, we&#8217;re not sure ~ its a cool Summer, which makes it fine for reading security books in the hammock or doing laptop stuff from the deck.</span></p>
<p><span style="color:#000080;">So what&#8217;s cooking?  I re-encountered a tool I first learned about from Russ McRee&#8217;s <em><a title="ISSA 9/2008" href="https://www.issa.org/Library/Journals/2008/September/toolsmith.pdf" target="_blank">Toolsmith</a> </em>column in the September 2008 ISSA Journal ~ <a title="PTA" href="http://www.ptatechnologies.com/?action=download" target="_blank">Practical Threat Analysis</a>.  I&#8217;d looked at it before, but not in enough detail so have embarked on using it for a deeper understanding.</span></p>
<p><span style="color:#000080;">The <a title="2010 Verizon DBIR" href="http://www.verizonbusiness.com/resources/reports/rp_2010-DBIR-combined-reports_en_xg.pdf" target="_blank">2010 Verizon Data Breach Investigations Report</a> is out and its chock-full of good statistics and commentary.  I especially like the partnership with the U.S. Secret Service and the shared incident data.  Another nice tool from Verizon Business is <em>VerIS</em>, the <a title="VerIS Framework" href="http://securityblog.verizonbusiness.com/wp-content/uploads/2010/03/VerIS_Framework_Beta_1.pdf" target="_blank">Verizon Incident Sharing Framework</a> which presents how metrics are captured and used in preparation of the DBIR.</span></p>
<p><span style="color:#000080;">I took the <em>Certified Information Systems Auditor</em> (CISA) exam on June 12, 2010 and am patiently waiting to learn my fortune or fate!  The process stimulated a new appreciation of ISACA Auditing Standards, Procedures and Guidelines  and CobiT 4.1, prompting me to send the former to FedEx for printing and to order the latter in book form from the ISACA Bookstore.  My wife picks it up and says <em>&#8220;Can&#8217;t you find a good novel to read?  Its Summer!&#8221;</em></span></p>
<p><span style="color:#000080;">I guess you had to be there to appreciate it&#8230;</span></p>
<p><span style="color:#000080;">Cheers mates!</span></p>
<p><span style="color:#000080;">by Bill Wildprett, <a href="http://suspiciousminds.wordpress.com/" target="_blank">Suspicious Minds blog</a>, Copyright 2010</span></p>
<br />Filed under: <a href='http://suspiciousminds.wordpress.com/category/books/'>Books</a>, <a href='http://suspiciousminds.wordpress.com/category/cisa/'>CISA</a>, <a href='http://suspiciousminds.wordpress.com/category/incident-response/'>Incident Response</a>, <a href='http://suspiciousminds.wordpress.com/category/information-security/'>Information Security</a>, <a href='http://suspiciousminds.wordpress.com/category/it-auditing/'>IT Auditing</a>, <a href='http://suspiciousminds.wordpress.com/category/security-metrics/'>Security Metrics</a>, <a href='http://suspiciousminds.wordpress.com/category/security-tools/'>Security Tools</a>, <a href='http://suspiciousminds.wordpress.com/category/training/'>Training</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/suspiciousminds.wordpress.com/159/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/suspiciousminds.wordpress.com/159/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/suspiciousminds.wordpress.com/159/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/suspiciousminds.wordpress.com/159/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/suspiciousminds.wordpress.com/159/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/suspiciousminds.wordpress.com/159/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/suspiciousminds.wordpress.com/159/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/suspiciousminds.wordpress.com/159/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/suspiciousminds.wordpress.com/159/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/suspiciousminds.wordpress.com/159/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/suspiciousminds.wordpress.com/159/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/suspiciousminds.wordpress.com/159/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/suspiciousminds.wordpress.com/159/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/suspiciousminds.wordpress.com/159/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=159&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://suspiciousminds.wordpress.com/2010/07/09/sum-sum-summertime/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/9e5fa37ee7c54fe2ae9522af356e65ca?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">bwild56</media:title>
		</media:content>
	</item>
		<item>
		<title>Springing Forward</title>
		<link>http://suspiciousminds.wordpress.com/2010/05/25/springing-forward/</link>
		<comments>http://suspiciousminds.wordpress.com/2010/05/25/springing-forward/#comments</comments>
		<pubDate>Tue, 25 May 2010 23:15:52 +0000</pubDate>
		<dc:creator>Bill Wildprett</dc:creator>
				<category><![CDATA[Books]]></category>
		<category><![CDATA[CISA]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[IT Auditing]]></category>
		<category><![CDATA[Relationships]]></category>

		<guid isPermaLink="false">http://suspiciousminds.wordpress.com/?p=148</guid>
		<description><![CDATA[It&#8217;s a cool, rainy Spring here in the Pacific Northwest, a fine time to stay indoors and read instead of cleaning gutters, gardening, mowing the verdant expanse out back, etc., Reading and study efforts have been and are focused on preparing for the June 12th CISA exam first and foremost. Following that, here&#8217;s what&#8217;s top-of-mind [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=148&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><span style="color:#000080;">It&#8217;s a cool, rainy Spring here in the Pacific Northwest, a fine time to stay indoors and read instead of cleaning gutters, gardening, mowing the verdant expanse out back, etc.,</span></p>
<p><span style="color:#000080;">Reading and study efforts have been and are focused on preparing for the June 12th CISA exam first and foremost.</span></p>
<p><span style="color:#000080;">Following that, here&#8217;s what&#8217;s top-of-mind for me:</span></p>
<p><span style="color:#000080;"><a title="Open Source Security Testing Methodology Manual" href="http://www.isecom.org/osstmm/" target="_blank">OSSTMM 3</a> updates</span></p>
<p><span style="color:#000080;">Security Tools <a title="Security tools screencast demos" href="http://searchsecurity.techtarget.com/generic/0,295582,sid14_gci1284393,00.html" target="_blank">Screencast Demos</a> from SearchSecurity.com</span></p>
<p><span style="color:#000080;"><a title="Relationship management" href="http://www.keithferrazzi.com/products/never-eat-alone/" target="_blank"><em>Never Eat Alone</em></a> &#8211; Keith Ferrazzi: Building personal networks isn&#8217;t about how many connections you have in LinkedIn, it&#8217;s about maintaining and growing relationships in meaningful ways.</span></p>
<p><span style="color:#000080;">As the old saw goes, &#8216;All Work and No Play&#8230;&#8217; so breaks in the &#8216;<a title="Answer #3" href="http://www.urbandictionary.com/define.php?term=blue%20room" target="_blank">Blue Room</a>&#8216; are taken with Daisy:</span></p>
<div id="attachment_149" class="wp-caption alignleft" style="width: 310px"><a href="http://suspiciousminds.files.wordpress.com/2010/05/dscn1130.jpg"><img class="size-medium wp-image-149 " title="Daisy" src="http://suspiciousminds.files.wordpress.com/2010/05/dscn1130.jpg?w=300&#038;h=225" alt="" width="300" height="225" /></a><p class="wp-caption-text">One Happy Golden!</p></div>
<br />Filed under: <a href='http://suspiciousminds.wordpress.com/category/books/'>Books</a>, <a href='http://suspiciousminds.wordpress.com/category/cisa/'>CISA</a>, <a href='http://suspiciousminds.wordpress.com/category/information-security/'>Information Security</a>, <a href='http://suspiciousminds.wordpress.com/category/it-auditing/'>IT Auditing</a>, <a href='http://suspiciousminds.wordpress.com/category/relationships/'>Relationships</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/suspiciousminds.wordpress.com/148/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/suspiciousminds.wordpress.com/148/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/suspiciousminds.wordpress.com/148/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/suspiciousminds.wordpress.com/148/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/suspiciousminds.wordpress.com/148/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/suspiciousminds.wordpress.com/148/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/suspiciousminds.wordpress.com/148/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/suspiciousminds.wordpress.com/148/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/suspiciousminds.wordpress.com/148/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/suspiciousminds.wordpress.com/148/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/suspiciousminds.wordpress.com/148/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/suspiciousminds.wordpress.com/148/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/suspiciousminds.wordpress.com/148/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/suspiciousminds.wordpress.com/148/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=148&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://suspiciousminds.wordpress.com/2010/05/25/springing-forward/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/9e5fa37ee7c54fe2ae9522af356e65ca?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">bwild56</media:title>
		</media:content>

		<media:content url="http://suspiciousminds.files.wordpress.com/2010/05/dscn1130.jpg?w=300" medium="image">
			<media:title type="html">Daisy</media:title>
		</media:content>
	</item>
		<item>
		<title>A New Comunications Protocol</title>
		<link>http://suspiciousminds.wordpress.com/2010/04/12/a-new-comunications-protocol/</link>
		<comments>http://suspiciousminds.wordpress.com/2010/04/12/a-new-comunications-protocol/#comments</comments>
		<pubDate>Tue, 13 Apr 2010 07:24:09 +0000</pubDate>
		<dc:creator>Bill Wildprett</dc:creator>
				<category><![CDATA[Careers]]></category>
		<category><![CDATA[Communication]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Psychology]]></category>
		<category><![CDATA[Social Engineering]]></category>

		<guid isPermaLink="false">http://suspiciousminds.wordpress.com/?p=142</guid>
		<description><![CDATA[As information security professionals, a common refrain we hear is how difficult, but essential it is to communicate the whys, hows, and whats of security to management, other business units, partners, vendors, customers, etc.,  Whether its meaningful security metrics or why compliance is just the beginning of the whole security process, better communication can yield [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=142&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><span style="color:#000080;">As information security professionals, a common refrain we hear is how difficult, but essential it is to communicate the <em>whys, hows, and whats</em> of security to management, other business units, partners, vendors, customers, etc.,  Whether its meaningful security metrics or why compliance is just the beginning of the whole security process, better communication can yield better results.<br />
</span></p>
<p><span style="color:#000080;">Recently, I&#8217;ve had the pleasurable opportunity to learn more effective ways of communicating professionally.  I attended a series of seminars and workshops sponsored by <a title="LinkedIn page" href="http://www.linkedin.com/in/prolango" target="_blank">Paul Anderson</a> from <a title="Professional Language" href="http://www.prolango.com/" target="_blank">ProLango Consulting</a>.  Paul specializes in career development and training, with an emphasis on using LinkedIn &amp; Twitter to find opportunities, résumé optimization and advanced interviewing techniques.</span></p>
<p><span style="color:#000080;">I learned about how people communicate via words (7%), tonality (38%) and physiology (55%) and the essential elements in building <a title="Definition of rapport" href="http://en.wikipedia.org/wiki/Rapport" target="_blank">rapport </a>with hiring managers, co-workers, spouses, etc.,  Generally speaking, people are primarily visual, auditory or kinesthetic when they talk &#8211; everyone is all three but we all have a dominant type.</span></p>
<p><span style="color:#000080;">Visual people look up when speaking, speak faster and use phrases like &#8220;I <span style="text-decoration:underline;">see</span>, </span><span style="color:#000080;">what you mean&#8221;.  Auditory people look from side-to-side,</span> <span style="color:#000080;">speak slower and say things like &#8220;That <span style="text-decoration:underline;">sounds</span> good to me&#8221;.  Kinesthetic people look down and may make physical contact with you as they speak.<br />
</span></p>
<p><span style="color:#000080;">Paul&#8217;s experience as a hiring manger at Microsoft and Expedia and his consulting work reveal that on average, recruiters take 7 seconds to review a résumé and hiring managers take 45 seconds to decide whether or not to hire.</span></p>
<p><span style="color:#000080;">His teachings focus on being able to build rapport effectively by matching and mirroring body language and tone of voice, then asking key questions designed to illustrate expertise and elicit the &#8216;pain points&#8217; of the other party, in an attempt to find their need(s) so you can link them to your experience/product/service.  Finally, techniques to overcome objections while closing are taught.</span></p>
<p><span style="color:#000080;">Résumé optimization is about identifying the corporate values and desired employee traits mentioned in a job description, then fine-tuning the top-half of the 1st page so it speaks concisely in two to three sentences of how you&#8217;ll solve their needs and problems, not an<em> &#8216;elevator pitch</em>&#8216; of what you&#8217;ve done before, specifically.  A bullet list of <em>core competencies</em> relevant to the position&#8217;s requirements follows before the experience, education, and professional associations sections.<br />
</span></p>
<p><span style="color:#000080;">All of this was refreshing and enlightening; much of it grounded in basic common sense and how good salespeople work.  The concept behind building rapport is to become very quickly <em>similar </em>to the person you&#8217;re conversing with so they think:<em> &#8216;I like me, they&#8217;re like me, so I like them&#8217;</em>.</span></p>
<p><span style="color:#000080;">It isn&#8217;t about simple mimicry, it&#8217;s about listening closely, asking good questions, and filling their need with your expertise and experience.</span></p>
<p><span style="color:#000080;">So, give this a try when you&#8217;re next trying to sell security, interview for a job, or persuade someone.  Become like them in body language and vocal tone to build rapport ~ you may be pleasantly surprised by the results.</span></p>
<p><span style="color:#000080;">by Bill Wildprett, <a href="http://suspiciousminds.wordpress.com/">Suspicious Minds blog</a>, Copyright 2010</span></p>
<div id="_mcePaste" style="position:absolute;left:-10000px;top:91px;width:1px;height:1px;overflow:hidden;"><!--[if gte mso 9]&gt;     &lt;![endif]--><!--[if gte mso 9]&gt;  Normal 0   false false false          &lt;![endif]--><!--[if gte mso 9]&gt;   &lt;![endif]-->&lt;!&#8211;[if !mso]&gt;  &lt;!  st1\:*{behavior:url(#ieooui) } &#8211;&gt; <!--[endif]--><!--  /* Font Definitions */  @font-face 	{font-family:Verdana; 	panose-1:2 11 6 4 3 5 4 4 2 4; 	mso-font-charset:0; 	mso-generic-font-family:swiss; 	mso-font-pitch:variable; 	mso-font-signature:536871559 0 0 0 415 0;}  /* Style Definitions */  p.MsoNormal, li.MsoNormal, div.MsoNormal 	{mso-style-parent:""; 	margin:0in; 	margin-bottom:.0001pt; 	mso-pagination:widow-orphan; 	font-size:12.0pt; 	font-family:Verdana; 	mso-fareast-font-family:"Times New Roman"; 	mso-bidi-font-family:"Times New Roman";} @page Section1 	{size:8.5in 11.0in; 	margin:1.0in 1.25in 1.0in 1.25in; 	mso-header-margin:.5in; 	mso-footer-margin:.5in; 	mso-paper-source:0;} div.Section1 	{page:Section1;} --><!--[if gte mso 10]&gt; &lt;!   /* Style Definitions */  table.MsoNormalTable 	{mso-style-name:&quot;Table Normal&quot;; 	mso-tstyle-rowband-size:0; 	mso-tstyle-colband-size:0; 	mso-style-noshow:yes; 	mso-style-parent:&quot;&quot;; 	mso-padding-alt:0in 5.4pt 0in 5.4pt; 	mso-para-margin:0in; 	mso-para-margin-bottom:.0001pt; 	mso-pagination:widow-orphan; 	font-size:10.0pt; 	font-family:&quot;Times New Roman&quot;; 	mso-ansi-language:#0400; 	mso-fareast-language:#0400; 	mso-bidi-language:#0400;} --> <!--[endif]--><span style="font-size:12pt;font-family:Verdana;">Hawai&#8217;i</span></div>
<br />Filed under: <a href='http://suspiciousminds.wordpress.com/category/careers/'>Careers</a>, <a href='http://suspiciousminds.wordpress.com/category/communication/'>Communication</a>, <a href='http://suspiciousminds.wordpress.com/category/information-security/'>Information Security</a>, <a href='http://suspiciousminds.wordpress.com/category/psychology/'>Psychology</a>, <a href='http://suspiciousminds.wordpress.com/category/social-engineering/'>Social Engineering</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/suspiciousminds.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/suspiciousminds.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/suspiciousminds.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/suspiciousminds.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/suspiciousminds.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/suspiciousminds.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/suspiciousminds.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/suspiciousminds.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/suspiciousminds.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/suspiciousminds.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/suspiciousminds.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/suspiciousminds.wordpress.com/142/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/suspiciousminds.wordpress.com/142/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/suspiciousminds.wordpress.com/142/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=142&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://suspiciousminds.wordpress.com/2010/04/12/a-new-comunications-protocol/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/9e5fa37ee7c54fe2ae9522af356e65ca?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">bwild56</media:title>
		</media:content>
	</item>
		<item>
		<title>Dragon&#8217;s Lair, Pt 2</title>
		<link>http://suspiciousminds.wordpress.com/2010/02/21/dragons-lair-pt-2/</link>
		<comments>http://suspiciousminds.wordpress.com/2010/02/21/dragons-lair-pt-2/#comments</comments>
		<pubDate>Sun, 21 Feb 2010 09:01:37 +0000</pubDate>
		<dc:creator>Bill Wildprett</dc:creator>
				<category><![CDATA[Advance Persistent Threat]]></category>
		<category><![CDATA[Botnets]]></category>
		<category><![CDATA[Cyberwar]]></category>
		<category><![CDATA[Hacking]]></category>

		<guid isPermaLink="false">http://suspiciousminds.wordpress.com/?p=140</guid>
		<description><![CDATA[The denials, now from the aforementioned Chinese schools (Shanghai Jiaotong University and Lanxiang Vocational School), are expected, but without foundation given the proof uncovered by Joe Stewart, a malware specialist with SecureWorks. Mr. Stewart reverse-engineered code from the Hydraq trojan and, according to the NY Times, &#8216;determined the main program used in the attack contained [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=140&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><span style="color:#000080;">The <a title="Chinese schools deny Aurora origin" href="http://www.msnbc.msn.com/id/35501553/ns/technology_and_science-security/" target="_blank">denials</a>, now from the aforementioned Chinese schools (Shanghai Jiaotong University and Lanxiang Vocational School), are expected, but without foundation given the proof uncovered by Joe Stewart, a malware specialist with SecureWorks.</span></p>
<p><span style="color:#000080;">Mr. Stewart reverse-engineered code from the Hydraq trojan and, <a title="Analysis of Hydraq trojan" href="http://www.nytimes.com/2010/01/20/technology/20cyber.html?ref=technology" target="_blank">according to the NY Times</a>, <em>&#8216;determined the main program used in the attack contained a module based  on an unusual algorithm from a Chinese technical paper that has been  published exclusively on Chinese-language Web sites.&#8217;</em></span></p>
<p><span style="color:#000080;">For a much more detailed analysis beyond the scope of the Times article, jump to <a title="Analysis of Hydraq CRC algorithm" href="http://www.secureworks.com/research/blog/index.php/2010/01/20/operation-aurora-clues-in-the-code/" target="_blank">the original SecureWorks blog post</a> by Mr. Stewart where he explains the basis of his conclusions about the unusual CRC algorithm.  As he says, <em>&#8220;This information strongly indicates the Aurora codebase originated with     someone who is comfortable reading simplified Chinese&#8230;In my opinion, the use of this unique CRC implementation in Hydraq is     evidence that someone from within the PRC authored the Aurora codebase&#8230;&#8221;</em></span></p>
<p><span style="color:#000080;">I had fun hypothesizing about the evil genius of backdoors inside the source code of pirated copies of Windows (take the tin hat off now!), but this argument concludes that  someone or some group (PLA?) in the PRC is behind this.  As Mr. Stewart recognizes, this could still be the work of others, intent on blaming the Chinese government, but he refers to <a title="Definition &amp; History of the phrase" href="http://www.math.ucr.edu/home/baez/physics/General/occam.html" target="_blank">Occam&#8217;s Razor</a></span> <span style="color:#000080;">and its classic argument that the simplest explanation is probably the best one.</span></p>
<p><span style="color:#000080;">On the other hand, the counter argument, and some compelling evidence, has been raised in this <a title="Aurora counter-argument" href="http://therearenosunglasses.wordpress.com/2010/01/27/evidence-of-chinese-hacking-starts-to-unravel/" target="_blank">blog piece</a>.<br />
</span></p>
<p><span style="color:#000080;">To play the Devil&#8217;s Advocate for a moment;  say the U.S. government was behind this, to throw suspicion on the PRC for political and economic reasons, and to fight-back against the <em>&#8220;persistent campaign of    &#8220;espionage-by-malware&#8221; emanating from the  People’s Republic of    China (PRC)&#8221;</em>, as Mr. Stewart describes it, who would be helping the U.S.?</span></p>
<p><span style="color:#000080;">As I stated before, maybe we&#8217;re doing it or maybe others are doing it for us.  If we&#8217;re doing it, we&#8217;re doing it directly or using inside assets.  If someone else is doing it for us &#8211; who?  My money is on the Israelis.  Israel has plenty of sharp coders and the Mossad is quite capable, as recent news has shown.  And, they&#8217;ve done this <a title="Israeli hacking of Hezbolla using Chinese hacking tools" href="http://www.thedarkvisitor.com/2009/03/israeli-company-uses-chinese-hacker-tool-against-hezbollah/" target="_blank">before</a>.  If not Israel, what other nation would be likely to help the U.S.?  England,  Canada or Australia probably.</span></p>
<p><span style="color:#000080;">Then there&#8217;s the voice that says, <a title="The Great Game continues..." href="http://www.chinalawblog.com/2010/02/chinaus_spying_killing_terrori_1.html" target="_blank"><em>&#8216;everyone&#8217;s doing it, so why worry?&#8217;</em></a> Sadly, all <em>too </em>true&#8230;  Most likely, we&#8217;ll never really know the answer.</span></p>
<p><span style="color:#000080;">by Bill Wildprett, <a title="Suspicious Minds" href="http://suspiciousminds.wordpress.com/" target="_blank">Suspicious Minds blog</a>, Copyright 2010</span></p>
<br />Filed under: <a href='http://suspiciousminds.wordpress.com/category/advance-persistent-threat/'>Advance Persistent Threat</a>, <a href='http://suspiciousminds.wordpress.com/category/botnets/'>Botnets</a>, <a href='http://suspiciousminds.wordpress.com/category/cyberwar/'>Cyberwar</a>, <a href='http://suspiciousminds.wordpress.com/category/hacking/'>Hacking</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/suspiciousminds.wordpress.com/140/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/suspiciousminds.wordpress.com/140/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/suspiciousminds.wordpress.com/140/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/suspiciousminds.wordpress.com/140/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/suspiciousminds.wordpress.com/140/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/suspiciousminds.wordpress.com/140/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/suspiciousminds.wordpress.com/140/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/suspiciousminds.wordpress.com/140/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/suspiciousminds.wordpress.com/140/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/suspiciousminds.wordpress.com/140/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/suspiciousminds.wordpress.com/140/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/suspiciousminds.wordpress.com/140/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/suspiciousminds.wordpress.com/140/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/suspiciousminds.wordpress.com/140/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=140&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://suspiciousminds.wordpress.com/2010/02/21/dragons-lair-pt-2/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/9e5fa37ee7c54fe2ae9522af356e65ca?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">bwild56</media:title>
		</media:content>
	</item>
		<item>
		<title>The Dragon&#8217;s Lair?</title>
		<link>http://suspiciousminds.wordpress.com/2010/02/19/the-dragons-lair/</link>
		<comments>http://suspiciousminds.wordpress.com/2010/02/19/the-dragons-lair/#comments</comments>
		<pubDate>Fri, 19 Feb 2010 09:11:46 +0000</pubDate>
		<dc:creator>Bill Wildprett</dc:creator>
				<category><![CDATA[Advance Persistent Threat]]></category>
		<category><![CDATA[Botnets]]></category>
		<category><![CDATA[Cyberwar]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Information Security]]></category>

		<guid isPermaLink="false">http://suspiciousminds.wordpress.com/?p=137</guid>
		<description><![CDATA[An excellent article in the N.Y. Times on February 18th stated that two Chinese schools, the Shanghai Jiaotong University and the Lanxiang Vocational School were involved in the recent online attacks against Google and dozens of other U.S. corporations.  These conclusions come from research by various security researchers, the NSA, and U.S. defense contractors. There [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=137&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p><span style="color:#000080;">An <a title="Chinese Google hacks" href="http://www.nytimes.com/2010/02/19/technology/19china.html" target="_blank">excellent article in the N.Y. Times</a> on February 18th stated that two Chinese schools, the Shanghai Jiaotong University and the  Lanxiang Vocational School were involved in the recent online attacks against Google and dozens of other U.S. corporations.  These conclusions come from research by various security researchers, the NSA, and U.S. defense contractors.</span></p>
<p><span style="color:#000080;">There are multiple possibilities to consider here and more detailed information is required before making any final conclusions.  One the one hand, it appears to be obvious ~ yes, it&#8217;s the Chinese government/military working with or sponsoring patriotic student hacking activities.</span></p>
<p><span style="color:#000080;">On the other hand, perhaps not.  An important part of the covert Intelligence function and process is the dissemination of dis-information for various reasons, be they political, economic, strategic, etc.,  As the Times article speculates, this may be a <em>false-flag</em> intelligence operation led by another nation-state.<br />
</span></p>
<p><span style="color:#000080;">To do this successfully, you need insiders who work for you who can plant the trail of &#8216;bread crumbs&#8217; that lead back to the source of origin or you need outsiders who can co-opt internal resources to make it look like the attacks came from the schools.  For the latter, you&#8217;d need to control individual servers or a botnet from within China to do the attacks, with just enough hard-to-find, but incriminating and hard-to-spoof pieces of evidence to prove the assertion.</span></p>
<p><span style="color:#000080;">Think about who might do this, why and how? </span></p>
<div id="attachment_138" class="wp-caption alignright" style="width: 188px"><span style="color:#000080;"><a href="http://suspiciousminds.files.wordpress.com/2010/02/tinfoil-hat.jpg"><img class="size-full wp-image-138" title="tinfoil-hat" src="http://suspiciousminds.files.wordpress.com/2010/02/tinfoil-hat.jpg?w=178&#038;h=178" alt="" width="178" height="178" /></a></span><p class="wp-caption-text">Image courtesy of scienceblogs.com</p></div>
<p><span style="color:#000080;"><br />
</span></p>
<p><span style="color:#000080;">If you put the tinfoil conspiracy theory hat on, is it possible that pirated copies of Microsoft Windows could be involved?  That&#8217; would be almost <em>too </em>perfect.  A completely new twist on the meaning of Trojan Horse!  The news that there was a completely undiscovered flaw in IE6 that was used for the attacks is plausible, but is it <em>probable</em>?  Are we talking undiscovered, or simply unrevealed?</span></p>
<p><span style="color:#000080;">I&#8217;m not a forensics expert or CS grad, so am more than curious about how you&#8217;d prove, absolutely, that the attacks came from specific machines, not just IP addresses.  We can&#8217;t use the <a title="Evil bit" href="http://en.wikipedia.org/wiki/Evil_bit" target="_blank">Evil bit</a></span> <span style="color:#000080;">to solve this conundrum.</span></p>
<p><span style="color:#000080;">It&#8217;s interesting to speculate about all this and it certainly will be interesting to follow.  Will we ever know the Truth or just read stories; it&#8217;s like an Information Security version of the <a title="Plato's Allegory of the Cave" href="http://en.wikipedia.org/wiki/Allegory_of_the_Cave" target="_blank">Allegory of the Cave</a>&#8230;</span></p>
<p><span style="color:#000080;">Later friends!</span></p>
<p><span style="color:#000080;">by Bill Wildprett, <a title="Suspicious Minds" href="http://suspiciousminds.wordpress.com/" target="_blank">Suspicious Minds blog</a>, Copyright 2010</span></p>
<br />Filed under: <a href='http://suspiciousminds.wordpress.com/category/advance-persistent-threat/'>Advance Persistent Threat</a>, <a href='http://suspiciousminds.wordpress.com/category/botnets/'>Botnets</a>, <a href='http://suspiciousminds.wordpress.com/category/cyberwar/'>Cyberwar</a>, <a href='http://suspiciousminds.wordpress.com/category/hacking/'>Hacking</a>, <a href='http://suspiciousminds.wordpress.com/category/information-security/'>Information Security</a>  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/suspiciousminds.wordpress.com/137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/suspiciousminds.wordpress.com/137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/suspiciousminds.wordpress.com/137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/suspiciousminds.wordpress.com/137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/suspiciousminds.wordpress.com/137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/suspiciousminds.wordpress.com/137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/suspiciousminds.wordpress.com/137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/suspiciousminds.wordpress.com/137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/suspiciousminds.wordpress.com/137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/suspiciousminds.wordpress.com/137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/suspiciousminds.wordpress.com/137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/suspiciousminds.wordpress.com/137/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/suspiciousminds.wordpress.com/137/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/suspiciousminds.wordpress.com/137/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=suspiciousminds.wordpress.com&amp;blog=8128121&amp;post=137&amp;subd=suspiciousminds&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://suspiciousminds.wordpress.com/2010/02/19/the-dragons-lair/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/9e5fa37ee7c54fe2ae9522af356e65ca?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">bwild56</media:title>
		</media:content>

		<media:content url="http://suspiciousminds.files.wordpress.com/2010/02/tinfoil-hat.jpg" medium="image">
			<media:title type="html">tinfoil-hat</media:title>
		</media:content>
	</item>
	</channel>
</rss>
