<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Fatma Bazargan's blog</title>
	<atom:link href="http://bz2008.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://bz2008.wordpress.com</link>
	<description>Everything about Information Security</description>
	<lastBuildDate>Sat, 22 Aug 2009 04:54:21 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='bz2008.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://0.gravatar.com/blavatar/4f1a4194ec975ca04d14f386861c733b?s=96&#038;d=http%3A%2F%2Fs2.wp.com%2Fi%2Fbuttonw-com.png</url>
		<title>Fatma Bazargan's blog</title>
		<link>http://bz2008.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://bz2008.wordpress.com/osd.xml" title="Fatma Bazargan&#039;s blog" />
	<atom:link rel='hub' href='http://bz2008.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Ramadan Kareem</title>
		<link>http://bz2008.wordpress.com/2009/08/22/ramadan-kareem/</link>
		<comments>http://bz2008.wordpress.com/2009/08/22/ramadan-kareem/#comments</comments>
		<pubDate>Sat, 22 Aug 2009 04:53:27 +0000</pubDate>
		<dc:creator>Bazargan</dc:creator>
				<category><![CDATA[Ramadan]]></category>

		<guid isPermaLink="false">http://bz2008.wordpress.com/?p=306</guid>
		<description><![CDATA[أتقدم إلى مقامكم الكريم بأسمى آيات التهاني والتبريكات بمناسبة حلول شهر رمضان المبارك، أعاده الله علينا وعليكم وعلى الأمة العربية والإسلامية أجمع بالخير واليمن والبركات متمنين لكم وافر الصحة والسعادة. وكل عام وأنتم بخير May Allah Bless You and Your Family and wish you a Ramadan Kareem تحياتي فاطمة أحمد بازاركان<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=306&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:center;">
<div id="attachment_307" class="wp-caption aligncenter" style="width: 410px"><img class="size-full wp-image-307" title="quran-copy" src="http://bz2008.files.wordpress.com/2009/08/quran-copy.jpg?w=420" alt="رمضان كريم"   /><p class="wp-caption-text">رمضان كريم</p></div>
<p style="text-align:center;">أتقدم إلى مقامكم الكريم بأسمى آيات التهاني والتبريكات بمناسبة حلول شهر رمضان المبارك،<br />
أعاده الله علينا وعليكم وعلى الأمة العربية والإسلامية أجمع بالخير واليمن والبركات متمنين لكم وافر الصحة والسعادة.</p>
<p style="text-align:center;">وكل عام وأنتم بخير</p>
<p style="text-align:center;">May Allah Bless You and Your Family and wish you a Ramadan Kareem</p>
<p style="text-align:center;">
<p style="text-align:center;">تحياتي</p>
<p style="text-align:center;">فاطمة أحمد بازاركان</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/bz2008.wordpress.com/306/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/bz2008.wordpress.com/306/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/bz2008.wordpress.com/306/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/bz2008.wordpress.com/306/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/bz2008.wordpress.com/306/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/bz2008.wordpress.com/306/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/bz2008.wordpress.com/306/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/bz2008.wordpress.com/306/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/bz2008.wordpress.com/306/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/bz2008.wordpress.com/306/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/bz2008.wordpress.com/306/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/bz2008.wordpress.com/306/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/bz2008.wordpress.com/306/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/bz2008.wordpress.com/306/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=306&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://bz2008.wordpress.com/2009/08/22/ramadan-kareem/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ade876a9de2d54bf5bfca1480d005efe?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">Bazargan</media:title>
		</media:content>

		<media:content url="http://bz2008.files.wordpress.com/2009/08/quran-copy.jpg" medium="image">
			<media:title type="html">quran-copy</media:title>
		</media:content>
	</item>
		<item>
		<title>Long Break</title>
		<link>http://bz2008.wordpress.com/2009/08/10/long-break/</link>
		<comments>http://bz2008.wordpress.com/2009/08/10/long-break/#comments</comments>
		<pubDate>Mon, 10 Aug 2009 06:05:14 +0000</pubDate>
		<dc:creator>Bazargan</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://bz2008.wordpress.com/?p=302</guid>
		<description><![CDATA[It indeed has been a long time since I updated my blog. Just been so occupied with leaving the old career getting into a new one and finally adjusting to the new environment and people.   Currently, I fill the position of Manager, ICT Security at Masdar (Abu Dhabi Future Energy Company). The Masdar Initiative [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=302&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:center;"><img class="aligncenter size-full wp-image-301" title="Masdar" src="http://bz2008.files.wordpress.com/2009/08/masdar.jpg?w=420" alt="Masdar"   /></p>
<p>It indeed has been a long time since I updated my blog. Just been so occupied with leaving the old career getting into a new one and finally adjusting to the new environment and people.  </p>
<p>Currently, I fill the position of Manager, ICT Security at <em><a href="http://www.masdar.ae/en/home/index.aspx">Masdar</a> </em>(Abu Dhabi Future Energy Company). The Masdar Initiative is a wholly owned subsidiary of Mubadala and considered the world’s first carbon-neutral zero waste city and is the head-quarters of the International Renewable Energy Agency (IRENA).</p>
<p>A new milestone and a challenge in my career life and a long way to go, wish me luck.</p>
<p>Will be updating more often.</p>
<p>Always, Fatma Bazargan</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/bz2008.wordpress.com/302/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/bz2008.wordpress.com/302/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/bz2008.wordpress.com/302/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/bz2008.wordpress.com/302/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/bz2008.wordpress.com/302/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/bz2008.wordpress.com/302/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/bz2008.wordpress.com/302/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/bz2008.wordpress.com/302/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/bz2008.wordpress.com/302/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/bz2008.wordpress.com/302/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/bz2008.wordpress.com/302/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/bz2008.wordpress.com/302/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/bz2008.wordpress.com/302/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/bz2008.wordpress.com/302/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=302&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://bz2008.wordpress.com/2009/08/10/long-break/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ade876a9de2d54bf5bfca1480d005efe?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">Bazargan</media:title>
		</media:content>

		<media:content url="http://bz2008.files.wordpress.com/2009/08/masdar.jpg" medium="image">
			<media:title type="html">Masdar</media:title>
		</media:content>
	</item>
		<item>
		<title>Various # 09 – 105</title>
		<link>http://bz2008.wordpress.com/2009/05/05/various-09-%e2%80%93-105/</link>
		<comments>http://bz2008.wordpress.com/2009/05/05/various-09-%e2%80%93-105/#comments</comments>
		<pubDate>Tue, 05 May 2009 08:07:09 +0000</pubDate>
		<dc:creator>Bazargan</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://bz2008.wordpress.com/?p=296</guid>
		<description><![CDATA[  Couple of interesting snippets for today…   I just came across a wonderful website called Wepawet. Interestingly, Wepawet is a service for detecting and analyzing web-based malware and it currently handles Flash, Java Script and PDF Files. So now you wont need to think twice about clicking a website and opening a file that [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=296&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:center;"> </p>
<p><img class="size-full wp-image-298  aligncenter" title="mouse" src="http://bz2008.files.wordpress.com/2009/05/mouse.png?w=420" alt="mouse"   /></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Couple of interesting snippets for today… </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">I just came across a wonderful website called <em><span style="color:blue;"><a href="http://wepawet.cs.ucsb.edu/index.php"><span style="color:#800080;">Wepawet</span></a></span></em>. Interestingly, Wepawet is a <em><span style="color:blue;"><a href="http://wepawet.cs.ucsb.edu/about.php"><span style="color:#800080;">service</span></a></span></em> for detecting and analyzing web-based malware and it currently handles Flash, Java Script and PDF Files. So now you wont need to think twice about clicking a website and opening a file that you feel is malicious just take sometime test it and you are good to go. Simply the things you can do is… </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<h3 style="background:white;text-align:justify;margin:0 0 0 .5in;"><em><span style="font-size:9pt;color:#4d4d4d;font-family:Calibri;">Determine if a page or file is malicious</span></em></h3>
<p class="MsoNormal" style="background:white;text-align:justify;margin:0 0 0 .5in;"><em><span style="font-size:9pt;color:#4d4d4d;font-family:Calibri;font-variant:small-caps;">wepawet</span></em><em><span style="font-size:9pt;color:#4d4d4d;font-family:Calibri;"> runs various analyses on the URLs or files that you submit. At the end of the analysis phase, it tells you whether the resource is malicious or benign and provides you with information that helps you understand </span></em><em><span style="font-size:9pt;color:#4d4d4d;font-style:normal;font-family:Calibri;">why</span></em><em><span style="font-size:9pt;color:#4d4d4d;font-family:Calibri;"> it was classified in a way or the other. </span></em></p>
<h3 style="background:white;text-align:justify;margin:0 0 0 .5in;"><em><span style="font-size:9pt;color:#4d4d4d;font-family:Calibri;"> </span></em></h3>
<h3 style="background:white;text-align:justify;margin:0 0 0 .5in;"><em><span style="font-size:9pt;color:#4d4d4d;font-family:Calibri;">Analyze a malicious resource</span></em></h3>
<p class="MsoNormal" style="background:white;text-align:justify;margin:0 0 0 .5in;"><em><span style="font-size:9pt;color:#4d4d4d;font-family:Calibri;font-variant:small-caps;">wepawet</span></em><em><span style="font-size:9pt;color:#4d4d4d;font-family:Calibri;"> displays various pieces of information that greatly simplify the manual analysis and understanding of the behavior of malicious samples. For example, it gives access to the unobfuscated malicious code used in an attack. It also collects the URLs accessed by a sample. </span></em></p>
<h3 style="background:white;text-align:justify;margin:0 0 0 .5in;"><em><span style="font-size:9pt;color:#4d4d4d;font-family:Calibri;"> </span></em></h3>
<h3 style="background:white;text-align:justify;margin:0 0 0 .5in;"><em><span style="font-size:9pt;color:#4d4d4d;font-family:Calibri;">Identify the attacks launched by a malicious resource</span></em></h3>
<p class="MsoNormal" style="text-align:justify;margin:0 0 0 .5in;"><em><span style="font-size:9pt;color:#4d4d4d;font-family:Calibri;font-variant:small-caps;">wepawet</span></em><em><span style="font-size:9pt;color:#4d4d4d;font-family:Calibri;"> does not just tell you that a resource is malicious, it also shows you the exact vulnerability (or, more likely, the vulnerabilities) that are exploited during an attack.</span></em><em></em></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">There is an interesting entry from Lori about the <em><a href="http://devcentral.f5.com/weblogs/macvittie/archive/2009/05/04/the-real-meaning-of-cloud-security-revealed.aspx"><span style="color:#800080;">Real Meaning of Cloud Security</span></a>, <span style="color:#4d4d4d;">how to distinguish “cloud security” from “cloud-based security”. The former is about securing the cloud and its infrastructure, the latter about services hosted in a cloud environment</span></em><span style="color:#4d4d4d;">. </span>He goes then on talking about Cloud Security in particular.<span>  </span><em><span style="color:#4d4d4d;"><span> </span></span></em></span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">For all those who will be attending the 21<sup>st</sup> Annual FIRST Conference in Japan to be held from 28<sup>th</sup> June to 3<sup>rd</sup> of July, <em><span style="color:blue;"><a href="http://conference.first.org/podcasts.aspx"><span style="color:#800080;">here</span></a></span></em> you can find some very interesting podcasts prior to the event. In addition, FIRST has announced that those who hold CISSP, CISA, CISM and CGEIT will have an opportunity to earn <em><span style="color:blue;"><a href="http://conference.first.org/cpe.aspx">CPEs</a></span></em> if they attend the FIRST conference. Other than that if you are a Twitter person then you can follow them at <em><a href="http://www.twitter.com/firstdotorg">firstdotorg</a></em> for latest updates. </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Talking about training courses</span><span style="font-size:10pt;font-family:Calibri;">, now that we all know that Virtualization is one of the must-know hot topics when it comes to information security, SANS have introduced a new course called <em><span style="color:blue;"><a href="http://www.sans.org/training/description.php?tid=3047"><span style="color:#800080;">Virtualization Security and Operations SEC557</span></a></span></em>. As mentioned by SANS, <em><span style="color:#4d4d4d;">the course aims to provide a firm foundation for all aspects of virtualization technology, covering the hosts, guests, networks, and management components. When students leave this class, they&#8217;ll have all the tools they need to properly secure their virtual environments and maintain their desired security and compliance posture.</span></em> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Finally, Bill gives some <em><span style="color:blue;"><a href="http://www.securitycatalyst.com/career-advice-for-security-geeks-part-1/"><span style="color:#800080;">Career Advice for Security Geeks</span></a></span></em>. </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"> </p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">That’s all for now. Enjoy! </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Fatma.</span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"> </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/bz2008.wordpress.com/296/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/bz2008.wordpress.com/296/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/bz2008.wordpress.com/296/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/bz2008.wordpress.com/296/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/bz2008.wordpress.com/296/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/bz2008.wordpress.com/296/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/bz2008.wordpress.com/296/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/bz2008.wordpress.com/296/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/bz2008.wordpress.com/296/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/bz2008.wordpress.com/296/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/bz2008.wordpress.com/296/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/bz2008.wordpress.com/296/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/bz2008.wordpress.com/296/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/bz2008.wordpress.com/296/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=296&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://bz2008.wordpress.com/2009/05/05/various-09-%e2%80%93-105/feed/</wfw:commentRss>
		<slash:comments>7</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ade876a9de2d54bf5bfca1480d005efe?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">Bazargan</media:title>
		</media:content>

		<media:content url="http://bz2008.files.wordpress.com/2009/05/mouse.png" medium="image">
			<media:title type="html">mouse</media:title>
		</media:content>
	</item>
		<item>
		<title>Pandemic &#8211; Swine Flu</title>
		<link>http://bz2008.wordpress.com/2009/04/27/pandemic-swine-flu/</link>
		<comments>http://bz2008.wordpress.com/2009/04/27/pandemic-swine-flu/#comments</comments>
		<pubDate>Mon, 27 Apr 2009 11:17:50 +0000</pubDate>
		<dc:creator>Bazargan</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://bz2008.wordpress.com/?p=292</guid>
		<description><![CDATA[Source: BBC News What is swine flu? Swine flu is a respiratory disease, caused by influenza type A which infects pigs. There are many types, and the infection is constantly changing. Until now it has not normally infected humans, but the latest form clearly does, and can be spread from person to person &#8211; probably [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=292&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<div id="attachment_293" class="wp-caption aligncenter" style="width: 294px"><img class="size-full wp-image-293" title="flu" src="http://bz2008.files.wordpress.com/2009/04/flu.png?w=420" alt="Swine Influenza - Pandemic "   /><p class="wp-caption-text">Swine Influenza - Pandemic </p></div>
<p class="MsoNormal" style="direction:ltr;line-height:16.8pt;unicode-bidi:embed;text-align:left;margin:0;"><strong><span style="font-size:10pt;color:#464646;font-family:Calibri;">Source: <a href="http://news.bbc.co.uk/1/hi/health/8020125.stm"><span style="color:#800080;">BBC News</span></a></span></strong></p>
<p class="MsoNormal" style="direction:ltr;line-height:16.8pt;unicode-bidi:embed;text-align:left;margin:0;"><strong><span style="font-size:10pt;color:#464646;font-family:Calibri;">What is swine flu?</span></strong><span style="font-size:10pt;color:#464646;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;line-height:16.8pt;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;color:#464646;font-family:Calibri;">Swine flu is a respiratory disease, caused by influenza type A which infects pigs. There are many types, and the infection is constantly changing. Until now it has not normally infected humans, but the latest form clearly does, and can be spread from person to person &#8211; probably through coughing and sneezing. </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;line-height:16.8pt;unicode-bidi:embed;text-align:left;margin:0;"><strong><span style="font-size:10pt;color:#464646;font-family:Calibri;">How worried should people be?</span></strong><span style="font-size:10pt;color:#464646;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;line-height:16.8pt;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;color:#464646;font-family:Calibri;">When any new strain of flu emerges that acquires the ability to pass from person to person, it is monitored very closely in case it has the potential to spark a global epidemic, or pandemic. </span></p>
<p class="MsoNormal" style="direction:ltr;line-height:16.8pt;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;color:#464646;font-family:Calibri;">The World Health Organization has warned that taken together the Mexican and US cases could potentially trigger a global pandemic, and stress that the situation is serious. However, experts say it is still too early to accurately assess the situation fully. Currently, they say the world is closer to a flu pandemic than at any point since 1968 &#8211; rating the threat at three on a six-point scale. Nobody knows the full potential impact of a pandemic, but experts have warned that it could cost millions of lives worldwide. The Spanish flu pandemic, which began in 1918, and was also caused by an H1N1 strain, killed millions of people. The fact that all the cases in the US have so far produced mild symptoms is encouraging. It suggests that the severity of the Mexican outbreak may be due to an unusual geographically-specific factor &#8211; possibly a second unrelated virus circulating in the community &#8211; which would be unlikely to come into play in the rest of the world. Alternatively, people infected in Mexico may have sought treatment at much later stage than those in other countries. It may also be the case that the form of the virus circulating in Mexico is subtly different to that elsewhere &#8211; although that will only be confirmed by laboratory analysis. There is also hope that, as humans are often exposed to forms of H1N1 through seasonal flu, our immune systems may have something of a head start in fighting infection. However, the fact that many of the victims are young does point to something unusual. Normal, seasonal flu tends to affect the elderly disproportionately. </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">More information can be found at: </span></p>
<ul style="margin-top:0;" type="square">
<li class="MsoNormal"><span style="font-size:10pt;font-family:Calibri;"><a href="http://www.who.int/en/"><span style="color:#800080;">World Health Organization</span></a> </span></li>
<li class="MsoNormal"><span style="font-size:10pt;font-family:Calibri;"><a href="http://www.hpa.org.uk/"><span style="color:#800080;">Health Protection Organization</span></a> </span></li>
<li class="MsoNormal"><span style="font-size:10pt;font-family:Calibri;"><a href="http://www.influenza.be/eng/home_eng.asp"><span style="color:#800080;">Belgium Influenza</span></a> </span></li>
<li class="MsoNormal"><span style="font-size:10pt;font-family:Calibri;"><a href="http://www.sans.edu/resources/leadershiplab/pandemic_watch2009.php"><span style="color:#800080;">Pandemic Watch by Stephen Northcutt</span></a> </span></li>
<li class="MsoNormal"><span style="font-size:10pt;font-family:Calibri;"><a href="http://maps.google.com/maps/ms?hl=en&amp;ie=UTF8&amp;msa=0&amp;msid=106484775090296685271.0004681a37b713f6b5950&amp;ll=47.100045,9.316406&amp;spn=34.792294,79.101563&amp;t=h&amp;z=4"><span style="color:#800080;">Google Map of Swine Flu Outbreak</span></a> </span></li>
</ul>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">safe safe. </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Fatma Bazargan</span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"> </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/bz2008.wordpress.com/292/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/bz2008.wordpress.com/292/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/bz2008.wordpress.com/292/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/bz2008.wordpress.com/292/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/bz2008.wordpress.com/292/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/bz2008.wordpress.com/292/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/bz2008.wordpress.com/292/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/bz2008.wordpress.com/292/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/bz2008.wordpress.com/292/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/bz2008.wordpress.com/292/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/bz2008.wordpress.com/292/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/bz2008.wordpress.com/292/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/bz2008.wordpress.com/292/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/bz2008.wordpress.com/292/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=292&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://bz2008.wordpress.com/2009/04/27/pandemic-swine-flu/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ade876a9de2d54bf5bfca1480d005efe?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">Bazargan</media:title>
		</media:content>

		<media:content url="http://bz2008.files.wordpress.com/2009/04/flu.png" medium="image">
			<media:title type="html">flu</media:title>
		</media:content>
	</item>
		<item>
		<title>Data Privacy and Data Protection</title>
		<link>http://bz2008.wordpress.com/2009/04/25/data-privacy-and-data-protection/</link>
		<comments>http://bz2008.wordpress.com/2009/04/25/data-privacy-and-data-protection/#comments</comments>
		<pubDate>Sat, 25 Apr 2009 15:14:40 +0000</pubDate>
		<dc:creator>Bazargan</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://bz2008.wordpress.com/?p=288</guid>
		<description><![CDATA[  For the last couple of days I have been reading about an interesting topic called &#8220;government trojans&#8221;. A government trojan &#8220;is a spyware/Trojan/backdoor installed on a workstation or network by a law enforcement agency for the purpose of capturing information relevant to a criminal investigation. This Trojan captures private e-mail communication, VoIP traffic, data [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=288&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<div id="attachment_289" class="wp-caption aligncenter" style="width: 333px"><img class="size-full wp-image-289" title="watchingyou" src="http://bz2008.files.wordpress.com/2009/04/watchingyou.png?w=420" alt="mmm.. and who shall watch the watchers?"   /><p class="wp-caption-text">mmm.. and who shall watch the watchers?</p></div>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:justify;margin:0;"> </p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">For the last couple of days I have been reading about an interesting topic called &#8220;government trojans&#8221;. A <em><span style="color:blue;"><a href="http://searchsecurity.techtarget.com/sDefinition/0,,sid14_gci1301170,00.html"><span style="color:#800080;">government trojan</span></a></span></em> &#8220;<em><span style="color:gray;">is a spyware/Trojan/backdoor installed on a workstation or network by a law enforcement agency for the purpose of capturing information relevant to a criminal investigation. This Trojan captures private e-mail communication, VoIP traffic, data residing on hard drives, record video conferences, etc. This captured data is then sent out to a central server for processing and analysis without the prior consent or knowledge of the individual and their data privacyl.</span></em>&#8221; </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">The overall goal of planting the trojan in a suspect&#8217;s computer is in order to snoop on the suspect&#8217;s hard drive data and Internet traffic for any suspicious activity related to terrorism, child pornography, drug trafficking, etc. </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Personally and even some individuals find it illegal for government to snoop into their data using these so called government trojans, let alone the other case of wiretapping the Internet traffic which some countries find it illegal where others are just fine with it. </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">You can read about it more <a href="http://www.zdnetasia.com/insight/security/0,39044829,62052865,00.htm"><span style="color:#800080;">here</span></a>, <a href="http://www.antiwar.com/orig/ketcham.php?articleid=13506"><span style="color:#800080;">here</span></a> and <a href="http://www.darknet.org.uk/2008/02/german-police-creating-law-enforcement-trojan/"><span style="color:#800080;">here</span></a>. It elaborates further which countries have implemented and who is planning to implement and so on. </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Where are we going with this is the question. </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Till then, be unwatched. </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:justify;margin:0;"> </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/bz2008.wordpress.com/288/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/bz2008.wordpress.com/288/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/bz2008.wordpress.com/288/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/bz2008.wordpress.com/288/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/bz2008.wordpress.com/288/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/bz2008.wordpress.com/288/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/bz2008.wordpress.com/288/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/bz2008.wordpress.com/288/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/bz2008.wordpress.com/288/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/bz2008.wordpress.com/288/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/bz2008.wordpress.com/288/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/bz2008.wordpress.com/288/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/bz2008.wordpress.com/288/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/bz2008.wordpress.com/288/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=288&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://bz2008.wordpress.com/2009/04/25/data-privacy-and-data-protection/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ade876a9de2d54bf5bfca1480d005efe?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">Bazargan</media:title>
		</media:content>

		<media:content url="http://bz2008.files.wordpress.com/2009/04/watchingyou.png" medium="image">
			<media:title type="html">watchingyou</media:title>
		</media:content>
	</item>
		<item>
		<title>Various # 09 &#8211; 104</title>
		<link>http://bz2008.wordpress.com/2009/04/21/various-09-104/</link>
		<comments>http://bz2008.wordpress.com/2009/04/21/various-09-104/#comments</comments>
		<pubDate>Tue, 21 Apr 2009 09:07:27 +0000</pubDate>
		<dc:creator>Bazargan</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://bz2008.wordpress.com/?p=281</guid>
		<description><![CDATA[Some of the interesting reads I had these couple of days:   1. Now this is awesome, ISC2 launches Child Online Safety Program and calls it &#8220;Safe &#38; Secure Online&#8220;: a program that invites (ISC)2 information security experts to educate school children ages 11-14 on how to protect themselves online.   &#8220;Safe &#38; Secure Online [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=281&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:center;"><img class="aligncenter size-full wp-image-280" title="info" src="http://bz2008.files.wordpress.com/2009/04/info.jpg?w=420" alt="info"   /></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Some of the interesting reads I had these couple of days: </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"> </p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">1. Now this is awesome, ISC2 launches Child Online Safety Program and calls it &#8220;<strong><em><span style="color:red;"><a href="http://www.isc2.org/awareness/default.aspx?terms=Safe+and+Secure+Online"><span style="color:red;">Safe &amp; Secure Online</span></a></span></em></strong>&#8220;: </span><span style="font-size:10pt;color:black;font-family:Calibri;">a program that invites (ISC)2 information security experts to educate school children ages 11-14 on how to protect themselves online.</span><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"> </p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><em><span style="font-size:10pt;color:gray;font-family:Calibri;">&#8220;Safe &amp; Secure Online is a program begun by (ISC)2 with support from Childnet International, a charity that aims to make the Internet a safe place for children. First introduced in the United Kingdom (UK) in 2006, then expanded to Hong Kong in 2007, Safe &amp; Secure Online has reached nearly 20,000 children in those regions. The program is designed to address the gap in security advice that exists in children’s safety outreach efforts.</span></em><em><span style="font-size:10pt;color:gray;font-family:Calibri;">&#8220;</span></em></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"> </p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><em></em><span style="font-size:10pt;font-family:Calibri;">And for all of you who are <strong><em><span style="color:red;"><a href="http://www.isc2.org/safeandsecure"><span style="color:red;">maintaining your CPEs</span></a></span></em></strong>, you can do that by teaching Children on how to be safe and secure when online. </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"> </p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">2. If you are thinking to set up a CERT/CSIRT at your organization then ENISA has released <strong><em><span style="color:#0066cc;"><a href="http://www.enisa.europa.eu/csirt_exercise_material/index_exercise_material.htm"><span style="color:#0066cc;">CERT/CSIRT Exercises Handbook</span></a></span></em></strong> with a toolset, they also have a guide on a <strong><em><span style="color:#0066cc;"><a href="http://www.enisa.europa.eu/cert_guide/index_guide.htm"><span style="color:#0066cc;">step-by-step approach on how to set up a CSIRT</span></a></span></em></strong> and you can also find a great guide on <strong><em><span style="color:#0066cc;"><a href="http://www.enisa.europa.eu/cert_goodPractices/index_goodPractices.htm"><span style="color:#0066cc;">basic collection of good practices for running a CSIRT</span></a></span></em></strong><span style="color:#0066cc;">.</span> I found it a useful resource to start with besides others. </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"> </p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">3. </span><span style="font-size:10pt;font-family:Calibri;">Talking about USB drives and how they can be vulnerable to malicious applications and viruses <strong><em><span style="color:#0066cc;"><a href="http://www.mobilearmor.com/"><span style="color:#0066cc;">Mobile Armor&#8217;s</span></a></span></em></strong> <strong><em><span style="color:red;"><a href="http://www.mobilearmor.com/keyarmor.php"><span style="color:red;">KeyArmor</span></a></span></em></strong> USB drive is designed to <strong><em><span style="color:#0066cc;"><a href="http://www.net-security.org/secworld.php?id=7336"><span style="color:#0066cc;">combat these threats</span></a></span></em></strong>:<span>  </span><span> </span></span><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"> </p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><em><span style="font-size:10pt;color:gray;font-family:Calibri;">&#8220;The KeyArmor solution is a military level encrypted USB drive managed by the Mobile Armor enterprise policy console, PolicyServer. KeyArmor USB drives are FIPS 140-2 Level 2 validated using on processor AES hardware encryption. KeyArmor now independently provides protection against viral and malware threats. With integrated anti-malware detection and remediation, viruses and malicious software are prevented from attacking data transferred and stored on the KeyArmor drive. This is an independent function of KeyArmor, not requiring the existence or utilization of anti-malware from the data source device. KeyArmor provides detailed auditing and logging relating to the anti-malware component, including version control, update integrity, update frequency and file status.</span></em><em><span style="font-size:10pt;color:gray;font-family:Calibri;">&#8221; </span></em></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><em></em><span style="font-size:10pt;font-family:Calibri;">KeyArmor: You are neat! </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">4. </span><span style="font-size:10pt;font-family:Calibri;">This is an interesting read about <strong><em><span style="color:#0066cc;"><a href="http://www.eeye.com/html/index.html"><span style="color:#0066cc;">eEye Digital Security</span></a></span></em></strong> that announced the <strong><em><span style="color:#0066cc;"><a href="http://www.net-security.org/secworld.php?id=7330"><span style="color:#0066cc;">Blink Server 4</span></a></span></em></strong> that has integrated protection platform for the windows servers and applications.<span>  </span></span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">That’s all for now. Good day all. </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="direction:ltr;unicode-bidi:embed;text-align:left;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Bazargan. </span></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/bz2008.wordpress.com/281/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/bz2008.wordpress.com/281/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/bz2008.wordpress.com/281/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/bz2008.wordpress.com/281/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/bz2008.wordpress.com/281/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/bz2008.wordpress.com/281/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/bz2008.wordpress.com/281/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/bz2008.wordpress.com/281/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/bz2008.wordpress.com/281/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/bz2008.wordpress.com/281/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/bz2008.wordpress.com/281/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/bz2008.wordpress.com/281/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/bz2008.wordpress.com/281/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/bz2008.wordpress.com/281/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=281&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://bz2008.wordpress.com/2009/04/21/various-09-104/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ade876a9de2d54bf5bfca1480d005efe?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">Bazargan</media:title>
		</media:content>

		<media:content url="http://bz2008.files.wordpress.com/2009/04/info.jpg" medium="image">
			<media:title type="html">info</media:title>
		</media:content>
	</item>
		<item>
		<title>Quick Update</title>
		<link>http://bz2008.wordpress.com/2009/04/16/quick-update/</link>
		<comments>http://bz2008.wordpress.com/2009/04/16/quick-update/#comments</comments>
		<pubDate>Thu, 16 Apr 2009 08:39:29 +0000</pubDate>
		<dc:creator>Bazargan</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://bz2008.wordpress.com/?p=276</guid>
		<description><![CDATA[Just being on vacation for the last couple of weeks and the coming week will be my last week enjoying being disconnected for a while.   But as a quick update on the happenings around is: For those following the Conficker updates you can visit the Conficker Working Group website and for those who were [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=276&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:center;"><img class="size-full wp-image-277  aligncenter" title="bo" src="http://bz2008.files.wordpress.com/2009/04/bo.png?w=420" alt="bo"   /></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:10pt;font-family:Calibri;">Just being on vacation for the last couple of weeks and the coming week will be my last week enjoying being disconnected for a while. </span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:10pt;font-family:Calibri;">But as a quick update on the happenings around is: </span></p>
<ul style="margin-top:0;" type="square">
<li class="MsoNormal"><span style="font-size:10pt;font-family:Calibri;">For those following the Conficker updates you can visit the <strong><span style="color:red;"><a href="http://www.confickerworkinggroup.org/wiki/"><span style="color:red;">Conficker Working Group</span></a></span></strong> website and for those who were wondering what Conficker did <strong><span style="color:red;"><a href="http://blog.wired.com/27bstroke6/2009/04/conficker-dooms.html"><span style="color:red;">in first week of April</span></a></span></strong> well it was limited to spam and serving the victim’s with fake anti-virus products. </span></li>
<li class="MsoNormal"><span style="font-size:10pt;font-family:Calibri;">I found this simple interactive animation interesting one to understand how a simple Buffer Overflow attack works click <strong><span style="color:red;"><a href="http://blog.wired.com/27bstroke6/2009/03/conficker-how-a.html"><span style="color:red;">here</span></a></span></strong>. </span></li>
<li class="MsoNormal"><strong><span style="font-size:10pt;color:red;font-family:Calibri;"><a href="http://taosecurity.blogspot.com/2009/03/response-to-60-minutes-story-internet.html"><span style="color:red;">Infected or Compromised</span></a></span></strong><span style="font-size:10pt;font-family:Calibri;"> by Richard Bejlitch. <span> </span></span></li>
</ul>
<p class="MsoNormal" style="margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:10pt;font-family:Calibri;">That’s all for now. </span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:10pt;font-family:Calibri;">Enjoy the weekend.</span></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/bz2008.wordpress.com/276/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/bz2008.wordpress.com/276/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/bz2008.wordpress.com/276/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/bz2008.wordpress.com/276/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/bz2008.wordpress.com/276/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/bz2008.wordpress.com/276/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/bz2008.wordpress.com/276/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/bz2008.wordpress.com/276/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/bz2008.wordpress.com/276/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/bz2008.wordpress.com/276/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/bz2008.wordpress.com/276/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/bz2008.wordpress.com/276/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/bz2008.wordpress.com/276/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/bz2008.wordpress.com/276/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=276&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://bz2008.wordpress.com/2009/04/16/quick-update/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ade876a9de2d54bf5bfca1480d005efe?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">Bazargan</media:title>
		</media:content>

		<media:content url="http://bz2008.files.wordpress.com/2009/04/bo.png" medium="image">
			<media:title type="html">bo</media:title>
		</media:content>
	</item>
		<item>
		<title>NMAP 4.85Beta6 Released</title>
		<link>http://bz2008.wordpress.com/2009/04/01/nmap-485beta6-released/</link>
		<comments>http://bz2008.wordpress.com/2009/04/01/nmap-485beta6-released/#comments</comments>
		<pubDate>Wed, 01 Apr 2009 04:52:18 +0000</pubDate>
		<dc:creator>Bazargan</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://bz2008.wordpress.com/?p=270</guid>
		<description><![CDATA[There is a new release of NMAP 4.85Beta6 (Windows, Linux, OSX)   This release as per insecure.org includes further improvements such as: §  Fixed some bugs with the Conficker detection script (smb-check-vulns) §  SMB response timeout raised to 20s from 5s to compensate for slow/overloaded systems and networks. §  MSRPC now only signs messages if OpenSSL is [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=270&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<div id="attachment_271" class="wp-caption aligncenter" style="width: 178px"><img class="size-full wp-image-271" title="insecure" src="http://bz2008.files.wordpress.com/2009/04/insecure.gif?w=420" alt="http://insecure.org/"   /><p class="wp-caption-text">http://insecure.org/</p></div>
<p class="MsoNormal" style="margin:0;"><span style="font-size:11pt;font-family:Calibri;">There is a new release of NMAP 4.85Beta6 (<a href="http://nmap.org/dist/nmap-4.85BETA6-setup.exe"><span style="color:#800080;">Windows</span></a>, <a href="http://nmap.org/dist/nmap-4.85BETA6.tgz">Linux</a>, <a href="http://nmap.org/dist/nmap-4.85BETA6.dmg">OSX</a>) </span></p>
<p class="MsoNormal" style="margin:0;"> </p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:11pt;font-family:Calibri;">This release as per insecure.org includes further improvements such as: </span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:11pt;font-family:Wingdings;"><span>§<span style="font:7pt &quot;">  </span></span></span><span style="font-size:11pt;font-family:Calibri;">Fixed some bugs with the Conficker detection script (smb-check-vulns)</span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:11pt;font-family:Wingdings;"><span>§<span style="font:7pt &quot;">  </span></span></span><span style="font-size:11pt;font-family:Calibri;">SMB response timeout raised to 20s from 5s to compensate for slow/overloaded systems and networks.</span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:11pt;font-family:Wingdings;"><span>§<span style="font:7pt &quot;">  </span></span></span><span style="font-size:11pt;font-family:Calibri;">MSRPC now only signs messages if OpenSSL is available (avoids an error).</span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:11pt;font-family:Wingdings;"><span>§<span style="font:7pt &quot;">  </span></span></span><span style="font-size:11pt;font-family:Calibri;">Better error checking for MS08-067 patch, among others. </span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:11pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:11pt;font-family:Calibri;">The command you can use for the Conficker scan is: </span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:11pt;font-family:&quot;">nmap -PN -T4 -p139,445 -n -v &#8211;script=smb-check-vulns &#8211;script-args safe=1 [targetnetworks]</span></p>
<p class="MsoNormal" style="margin:0;"> </p>
<p class="MsoNormal" style="margin:0;"> </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/bz2008.wordpress.com/270/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/bz2008.wordpress.com/270/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/bz2008.wordpress.com/270/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/bz2008.wordpress.com/270/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/bz2008.wordpress.com/270/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/bz2008.wordpress.com/270/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/bz2008.wordpress.com/270/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/bz2008.wordpress.com/270/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/bz2008.wordpress.com/270/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/bz2008.wordpress.com/270/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/bz2008.wordpress.com/270/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/bz2008.wordpress.com/270/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/bz2008.wordpress.com/270/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/bz2008.wordpress.com/270/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=270&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://bz2008.wordpress.com/2009/04/01/nmap-485beta6-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ade876a9de2d54bf5bfca1480d005efe?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">Bazargan</media:title>
		</media:content>

		<media:content url="http://bz2008.files.wordpress.com/2009/04/insecure.gif" medium="image">
			<media:title type="html">insecure</media:title>
		</media:content>
	</item>
		<item>
		<title>More on Conficker</title>
		<link>http://bz2008.wordpress.com/2009/03/30/more-on-conficker/</link>
		<comments>http://bz2008.wordpress.com/2009/03/30/more-on-conficker/#comments</comments>
		<pubDate>Mon, 30 Mar 2009 16:33:43 +0000</pubDate>
		<dc:creator>Bazargan</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://bz2008.wordpress.com/?p=259</guid>
		<description><![CDATA[  So quick news about the Conficker, Honeynet Project members Tillmann Werner and Felix Leder have developed a new scanning tool for detecting Conficker and the Know Your Enemy writeup that would describe and explain on how to contain Conficker will be out shortly. The tool is now publicly available and is in the process [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=259&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<div id="attachment_260" class="wp-caption aligncenter" style="width: 178px"><img class="size-full wp-image-260" title="worm2" src="http://bz2008.files.wordpress.com/2009/03/worm2.png?w=420" alt="How to detect and contain Conficker!"   /><p class="wp-caption-text">How to detect and contain Conficker!</p></div>
<p class="MsoNormal" style="text-align:justify;margin:0;"> </p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">So quick news about the Conficker, Honeynet Project members Tillmann Werner and Felix Leder have developed a<strong><span style="color:red;"> <a href="http://iv.cs.uni-bonn.de/wg/cs/applications/containing-conficker/"><span style="color:red;">new scanning tool</span></a></span></strong> for detecting Conficker and the Know Your Enemy writeup that would describe and explain on how to contain Conficker will be out shortly. The tool is now publicly available and is in the process to be integrated in major vulnerability scanning tools such as Tenable (Nessus), nCircle, Qualys, NMAP among others. </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><strong><span style="text-decoration:underline;"><span style="font-size:10pt;color:red;font-family:Calibri;"><a href="http://www.doxpara.com/?p=1291"><span style="color:red;">Doxpara</span></a>, Dan Kaminsky</span></span></strong><span style="font-size:10pt;font-family:Calibri;"> has also packaged the tool by Werner and Feder in a scanner via py2exe that you can run to scan an IP range and it would detect any machine from the list that has been infected by Conficker. </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Word to Spread: Ensure that your computers are patched with the latest Microsoft Patches through Windows Update and that your anti-virus engines have the latest updates. </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Don’t forget to run the tools to detect Conficker infection. </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"> </p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"><strong>UPDATE:</strong> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">HERE is a video about the Conficker (GREAT LISTEN): <a href="http://www.sophos.com/blogs/gc/g/2009/03/31/video-conficker-april-1st-fuss/">http://www.sophos.com/blogs/gc/g/2009/03/31/video-conficker-april-1st-fuss/</a> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Qualys also have something to say about Conficker: <a href="http://laws.qualys.com/lawsblog/2009/03/taming-of-the-shrew-aka-confic.html">http://laws.qualys.com/lawsblog/2009/03/taming-of-the-shrew-aka-confic.html</a></span> </p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:x-small;font-family:Calibri;"><strong></strong></span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:x-small;font-family:Calibri;"><strong></strong></span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:11pt;color:red;font-family:Calibri;"><strong></strong></span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:11pt;color:red;font-family:Calibri;"><strong></strong></span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:11pt;color:red;font-family:Calibri;"><strong></strong></span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:11pt;color:red;font-family:Calibri;"><strong></strong></span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:11pt;color:red;font-family:Calibri;"><strong><span style="font-size:10pt;color:red;font-family:Calibri;">UPDATE 2: </span></strong></span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:11pt;color:red;font-family:Calibri;"><strong></strong><span style="font-size:x-small;font-family:Calibri;"><span style="font-size:10pt;font-family:Calibri;"><span style="color:#000000;">The Know your Enemy Paper explain how to detect, contain and remove Conficker:  </span><a href="http://www.honeynet.org/papers/conficker"><span style="color:#800080;"><span style="font-size:x-small;font-family:Calibri;"></span></span></a><a href="http://www.honeynet.org/papers/conficker"></a><a href="http://www.honeynet.org/papers/conficker"><span style="color:#800080;"></span></a><a href="http://www.honeynet.org/papers/conficker">http://www.honeynet.org/papers/conficker</a></span></span></span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:11pt;color:red;font-family:Calibri;"><span style="font-size:10pt;font-family:Calibri;"><span style="color:#000000;">If you are going to use NMAP then check DAN’s post </span><a href="http://www.doxpara.com/?p=1294"><span style="color:#800080;">http://www.doxpara.com/?p=1294</span></a><span style="color:#000000;"> </span></span></span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:11pt;color:red;font-family:Calibri;"></span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><strong><span style="text-decoration:underline;"></span></strong></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><strong><span style="text-decoration:underline;"></span></strong></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><strong><span style="text-decoration:underline;"><span style="font-size:10pt;color:blue;font-family:Calibri;">Update 3: </span></span></strong></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span><span style="font-size:10pt;font-family:Calibri;">Symptoms of being infected: </span></p>
<ul style="margin-top:0;" type="square">
<li class="MsoNormal"><span style="font-size:10pt;font-family:Calibri;">When you find yourself not able to access the anti-virus websites or security related websites. </span></li>
<li class="MsoNormal"><span style="font-size:10pt;font-family:Calibri;">When you find your account locked out in the directory </span></li>
<li class="MsoNormal"><span style="font-size:10pt;font-family:Calibri;">When you find an autorun.inf files in the recycled directory </span></li>
<li class="MsoNormal"><span style="font-size:10pt;font-family:Calibri;">When you notice deny access to admin shares </span></li>
<li class="MsoNormal"><span style="font-size:10pt;font-family:Calibri;">When you notice malicious traffic sent through port 445 </span></li>
</ul>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span><span style="font-size:10pt;font-family:Calibri;">SANS have set up a diary for updates on conficker at: <a href="http://isc.sans.org/diary.html?storyid=5860"><span style="color:#800080;">http://isc.sans.org/diary.html?storyid=5860</span></a> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Final word for today: even if you get infected and go looking for a removal tool for conficker, make sure you download a removal tool from a vendor that you always deal with or at least are sure of and heard of. The last thing you would ask for is downloading a bogus conficker removal tool that has been set up by cyber criminals! </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"> </p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">(WATCH OUT THIS ENTRY, I&#8217;ll keep updating it with Conficker Info) </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Happy Conficker&#8217;ing Day! </span></p>
<p class="MsoNormal" style="text-align:justify;margin:0;"><span style="font-size:10pt;font-family:Calibri;">Fatma Bazargan</span></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/bz2008.wordpress.com/259/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/bz2008.wordpress.com/259/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/bz2008.wordpress.com/259/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/bz2008.wordpress.com/259/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/bz2008.wordpress.com/259/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/bz2008.wordpress.com/259/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/bz2008.wordpress.com/259/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/bz2008.wordpress.com/259/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/bz2008.wordpress.com/259/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/bz2008.wordpress.com/259/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/bz2008.wordpress.com/259/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/bz2008.wordpress.com/259/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/bz2008.wordpress.com/259/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/bz2008.wordpress.com/259/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=259&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://bz2008.wordpress.com/2009/03/30/more-on-conficker/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ade876a9de2d54bf5bfca1480d005efe?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">Bazargan</media:title>
		</media:content>

		<media:content url="http://bz2008.files.wordpress.com/2009/03/worm2.png" medium="image">
			<media:title type="html">worm2</media:title>
		</media:content>
	</item>
		<item>
		<title>Firefox 3.0.8 Released</title>
		<link>http://bz2008.wordpress.com/2009/03/29/firefox-308-released/</link>
		<comments>http://bz2008.wordpress.com/2009/03/29/firefox-308-released/#comments</comments>
		<pubDate>Sun, 29 Mar 2009 04:37:23 +0000</pubDate>
		<dc:creator>Bazargan</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://bz2008.wordpress.com/?p=256</guid>
		<description><![CDATA[The new release of Firefox 3.0.8 fixed two security issues:   MFSA 2009-13 Arbitrary code execution through XUL &#60;tree&#62; element MFSA 2009-12 XSL Transformation vulnerability   Firefox 3.0.8 Release Notes and Download  <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=256&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<h3 style="margin:0;"><span style="font-weight:normal;font-size:11pt;font-family:Calibri;">The new release of Firefox 3.0.8 fixed </span><span style="font-size:11pt;color:red;font-family:Calibri;"><a href="http://www.mozilla.org/security/known-vulnerabilities/firefox30.html#firefox3.0.8"><span style="color:red;">two security issues</span></a>:</span><span style="font-weight:normal;font-size:11pt;font-family:Calibri;"> </span></h3>
<p class="MsoNormal" style="margin:0;"><span style="font-size:11pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:11pt;font-family:Calibri;"><a href="http://www.mozilla.org/security/announce/2009/mfsa2009-13.html"><span style="background:#ff8080;">MFSA 2009-13</span></a> Arbitrary code execution through XUL &lt;tree&gt; element<br />
<a href="http://www.mozilla.org/security/announce/2009/mfsa2009-12.html"><span style="background:#ff8080;">MFSA 2009-12</span></a> XSL Transformation vulnerability</span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:11pt;font-family:Calibri;"> </span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:11pt;font-family:Calibri;">Firefox 3.0.8 <a href="http://www.mozilla.com/en-US/firefox/3.0.8/releasenotes/"><span style="color:#800080;">Release Notes</span></a> and <a href="http://www.mozilla.com/en-US/"><span style="color:#800080;">Download</span></a></span></p>
<p class="MsoNormal" style="margin:0;"><span style="font-size:11pt;font-family:Calibri;"> </span></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/bz2008.wordpress.com/256/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/bz2008.wordpress.com/256/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/bz2008.wordpress.com/256/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/bz2008.wordpress.com/256/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/bz2008.wordpress.com/256/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/bz2008.wordpress.com/256/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/bz2008.wordpress.com/256/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/bz2008.wordpress.com/256/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/bz2008.wordpress.com/256/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/bz2008.wordpress.com/256/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/bz2008.wordpress.com/256/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/bz2008.wordpress.com/256/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/bz2008.wordpress.com/256/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/bz2008.wordpress.com/256/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bz2008.wordpress.com&amp;blog=4621100&amp;post=256&amp;subd=bz2008&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://bz2008.wordpress.com/2009/03/29/firefox-308-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/ade876a9de2d54bf5bfca1480d005efe?s=96&#38;d=http%3A%2F%2F0.gravatar.com%2Favatar%2Fad516503a11cd5ca435acc9bb6523536%3Fs%3D96&#38;r=G" medium="image">
			<media:title type="html">Bazargan</media:title>
		</media:content>
	</item>
	</channel>
</rss>
