<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>

<channel>
	<title>The Security Zealot</title>
	<atom:link href="http://matthewsbecker.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://matthewsbecker.com</link>
	<description>Security discussions, articles and presentations from the self -proclaimed ”Security Zealot"</description>
	<pubDate>Sat, 20 Sep 2008 12:13:38 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6</generator>
	<language>en</language>
			<item>
		<title>Career Advise For Penetration Tester/White Hat Hacker</title>
		<link>http://matthewsbecker.com/2008/09/20/career-advise-for-penetration-testerwhite-hat-hacker/</link>
		<comments>http://matthewsbecker.com/2008/09/20/career-advise-for-penetration-testerwhite-hat-hacker/#comments</comments>
		<pubDate>Sat, 20 Sep 2008 12:13:38 +0000</pubDate>
		<dc:creator>Security Zealot</dc:creator>
		
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://matthewsbecker.com/?p=131</guid>
		<description><![CDATA[Last week, a common question was posted on the seclist.org website where Chip Panarchy ask which tools and certifications would be beneficial in learning to help to become a &#8220;white hat hacker/pen tester&#8221;.   (Which a great in itself to see the interest of this field continue to grow.)  This post received several great replies that [...]]]></description>
			<content:encoded><![CDATA[<p>Last week, a common question was posted on the <a href="http://seclists.org/" target="_blank">seclist.org</a> website where <a href="http://seclists.org/pen-test/2008/Sep/0071.html" target="_blank"><span id="from">Chip Panarchy</span></a> ask which tools and certifications would be beneficial in learning to help to become a &#8220;white hat hacker/pen tester&#8221;.   (Which a great in itself to see the interest of this field continue to grow.)  This post received several great replies that ranges from a very specific tool listings to check out the <a href="http://sectools.org/" target="_self">Top 100 Network Security Tools Listing</a>.  Each post gave a  valuable amount resources that not only helped Mr. Panarchy, but also other Penetration Testers alike.</p>
<p style="text-align: center;"><img class="alignnone size-medium wp-image-124" title="evolution-white" src="http://matthewsbecker.com/wp-content/uploads/2008/09/evolution-white-300x102.jpg" alt="" width="300" height="102" /></p>
<p>The <a href="http://seclists.org/pen-test/2008/Sep/0094.html" target="_blank">most interesting (and could be argued the most valuable) post was by a  member named J. Oquendo</a>, who did not follow the suit of list any tools at all, instead raised some very significant points of value in regards to becoming <span><span class="theColor">distinguished</span></span> Penetration Tester.</p>
<p>I have highlighted some of the most valid points and added some commentary below:</p>
<p><em>Take the time to learn the protocols, how things work, learn how intercommunications work before attempting to just download every tool you can find.</em></p>
<p><em> </em>In the &#8220;hacker&#8221; world, this is what differentiates a &#8220;5(R1P7 |&lt;1DD13&#8243; from the &#8220;L337&#8243; or &#8220;UB3R&#8221; H4X0R5.</p>
<p><em>Understand how processes communicate with each other, how and why things happen. Its easier down<br />
the road to understand what is going on in terms of security. One doesn&#8217;t need uber tools if one knows what they&#8217;re doing from the protocol level on up. </em></p>
<p>It has been in my experience that this is one the most crucial items, without understanding how each device communicates can you fully understand how the exploit works?  Could you advise a remediation act?<strong><br />
</strong></p>
<p><em>Suggestion: Learn networking, learn systems, learn protocols otherwise you end up devaluing the works</em><em> Understanding the entire range of the what you are doing is better in the long run, think about it, if I hired you to perform a pentest on my network and you couldn&#8217;t explain to me what it is you intend on looking for, how it works in my network, what functions my vulnerabilities perform, why I should remove these functions, I&#8217;d sit back in my desk and think the script kiddiot in you.</em></p>
<p>This comment can be looked at in two ways, first if you are hired for a pen test, your understanding of the technology is a direct representation of yourself.  Secondly, what if you are the first penetration tester that a company has hired, and you have not taken the time to learn the essentials.  The image that you represent is not only the your reputation, but it can represent the entire field of penetration testers.</p>
<p><em>Too many (quote) professional pentesters have been taking this attitude: &#8220;I use Cenzic!@$&#8221; that it makes me wonder where this industry is headed. It also makes me think about how many vulnerabilities unclued pentesters can bring into an environment.</em></p>
<p>Lastly, there is not one school or certification that can be taken that will turn you into a penetration tester/white hat hacker within a week and a test.  They can only be used a stepping stones toward a long and laborious journey.</p>
<p>In closing&#8230; Becoming a <span><span class="theColor">distinguished Penetration Tester/White Hat Hacker is</span></span> laborious journey and hours and hours of learning and sacrifice, that is both challenging and rewarding. This is the reason why some of the biggest and brightest minds are among the Penetration Testing/White Hat Hacker &#8220;Society&#8221;.</p>
<p>Matthew S. Becker</p>
<pre><em>
</em></pre>
]]></content:encoded>
			<wfw:commentRss>http://matthewsbecker.com/2008/09/20/career-advise-for-penetration-testerwhite-hat-hacker/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Multiple Uses for WinPcap</title>
		<link>http://matthewsbecker.com/2008/08/28/multiple-uses-for-winpcap/</link>
		<comments>http://matthewsbecker.com/2008/08/28/multiple-uses-for-winpcap/#comments</comments>
		<pubDate>Thu, 28 Aug 2008 12:32:44 +0000</pubDate>
		<dc:creator>Security Zealot</dc:creator>
		
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://matthewsbecker.com/?p=108</guid>
		<description><![CDATA[
In a search to find an automated tool that will build network topologies from saved packet capture, I ran across this web site that is a partial list of the many uses of the neighborhood friendly WinPcap.
I am still on my search for a way to automate a topology build from a packet capture (Windows [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://matthewsbecker.com/wp-content/uploads/2008/08/peterpacket.png"><img class="alignleft size-medium wp-image-114" title="peterpacket (Copyright Cisco)" src="http://matthewsbecker.com/wp-content/uploads/2008/08/peterpacket.png" alt="" width="200" height="192" /></a></p>
<p>In a search to find an automated tool that will build network topologies from saved packet capture, I ran across this web site that is a <a href="http://www.winpcap.org/misc/links.htm" target="_self">partial list</a> of the many uses of the neighborhood friendly WinPcap.</p>
<p>I am still on my search for a way to automate a topology build from a packet capture (Windows or Linux). If you have any ideas, please post your comments.</p>
<p>Matthew &#8220;The Security Zealot&#8221; Becker</p>
]]></content:encoded>
			<wfw:commentRss>http://matthewsbecker.com/2008/08/28/multiple-uses-for-winpcap/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Linkedin Will Allow Group Discussion Forums</title>
		<link>http://matthewsbecker.com/2008/08/26/linkedin-will-allow-group-discussion-forums/</link>
		<comments>http://matthewsbecker.com/2008/08/26/linkedin-will-allow-group-discussion-forums/#comments</comments>
		<pubDate>Wed, 27 Aug 2008 00:46:21 +0000</pubDate>
		<dc:creator>Security Zealot</dc:creator>
		
		<category><![CDATA[Career Development]]></category>

		<category><![CDATA[General]]></category>

		<category><![CDATA[Linkedin]]></category>

		<category><![CDATA[Professional Development]]></category>

		<guid isPermaLink="false">http://matthewsbecker.com/?p=106</guid>
		<description><![CDATA[To revisit an post that I posted called A Need for More Features in LinkedIn Groups which I sent an e-mail to Linkedin asking to allow for the groups to send questions to one another, it has just been announced that it has finally happened.
Dear Matthew,
First, thank you for managing your group on LinkedIn. We [...]]]></description>
			<content:encoded><![CDATA[<p><span style="font-family: arial,helvetica,sans-serif;">To revisit an post that I posted called <a href="http://matthewsbecker.com/2008/04/03/a-need-for-more-features-in-linkedin-groups/" target="_blank">A Need for More Features in LinkedIn Groups</a> which I sent an e-mail to Linkedin asking to allow for the groups to send questions to one another, it has just been announced that it has finally happened.</span></p>
<p><em><span style="font-family: arial,helvetica,sans-serif;">Dear Matthew,</span></em></p>
<p><em>First, thank you for managing your group on LinkedIn. We sincerely appreciate the time and effort you devote to your members, and we know they value it. Together you have made Groups one of the top features on LinkedIn.</em></p>
<p><em>This Friday, we will be adding several much-requested features to your group:</em></p>
<ul>
<li><em>Discussion forums: Simple discussion spaces for you and your members. (You can turn discussions off in your management control panel if you like.)</em></li>
<li><em>Enhanced roster: Searchable list of group members.</em></li>
<li><em>Digest emails: Daily or weekly digests of new discussion topics which your members may choose to receive. (We will be turning digests on for all current group members soon, and prompting them to set to their own preference.)</em></li>
<li><em>Group home page: A private space for your members on LinkedIn.</em></li>
</ul>
<p><em>We&#8217;re confident that these new features will spur communication, promote collaboration, and make your group more valuable to you and your members. We hope you can come by LinkedIn on Friday morning to check out the new functionality and get a group discussion going by posting a welcome message.</em></p>
<p><em>Sincerely,<br />
The LinkedIn Groups Team</em></p>
<p><em></em><br />
Great Job.</p>
<p>Matthew &#8220;The Security Zealot&#8221; Becker</p>
]]></content:encoded>
			<wfw:commentRss>http://matthewsbecker.com/2008/08/26/linkedin-will-allow-group-discussion-forums/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Ultimate Penetration Testing Lab Kit (UPTLK)</title>
		<link>http://matthewsbecker.com/2008/08/17/ultimate-penetration-testing-lab-kit-uptlk/</link>
		<comments>http://matthewsbecker.com/2008/08/17/ultimate-penetration-testing-lab-kit-uptlk/#comments</comments>
		<pubDate>Sun, 17 Aug 2008 05:04:00 +0000</pubDate>
		<dc:creator>Security Zealot</dc:creator>
		
		<category><![CDATA[CISA]]></category>

		<category><![CDATA[General]]></category>

		<category><![CDATA[INFOSEC Conference]]></category>

		<category><![CDATA[PCI SSC]]></category>

		<category><![CDATA[Pen Testing]]></category>

		<category><![CDATA[Security Training]]></category>

		<category><![CDATA[Wireless Security]]></category>

		<guid isPermaLink="false">http://matthewsbecker.com/?p=65</guid>
		<description><![CDATA[In an attempt to build Ultimate Penetration Testing Lab Kit (UPTLK), I have started a list of tools, Live CD, Penetration Testing Labs and websites.  After looking at it I decided that this maybe a good list for a penetration testing at any level.  I am sure that I have not covered every item or [...]]]></description>
			<content:encoded><![CDATA[<p>In an attempt to build Ultimate Penetration Testing Lab Kit (UPTLK), I have started a list of tools, Live CD, Penetration Testing Labs and websites.  After looking at it I decided that this maybe a good list for a penetration testing at any level.  I am sure that I have not covered every item or I may have missed something; if you see something I missed please add to by commenting.</p>
<p><a href="http://matthewsbecker.com/wp-content/uploads/2008/08/penetrationtesting.jpg"><img class="size-medium wp-image-81 alignright" title="penetration testing" src="http://matthewsbecker.com/wp-content/uploads/2008/08/penetrationtesting-189x300.jpg" alt="" width="189" height="300" /></a><span id="more-65"></span></p>
<p><strong>Penetration Testing Labs and Websites<br />
</strong></p>
<p><a href="http://de-ice.net/index.php" target="_blank">De-Ice Penetration Testing Lab Kits</a></p>
<p style="margin-bottom: 0in;"><a href="http://dynagen.org/tutorial.htm" target="_blank">Dynagen</a> - Front-end for <a href="http://www.ipflow.utc.fr/index.php/Cisco_7200_Simulator" target="_blank">Dynamics Cisco Router Emulator</a></p>
<p style="margin-bottom: 0in;"><a href="Http://www.rootthisbox.org" target="_blank">RootThisBox</a></p>
<p style="margin-bottom: 0in;"><a href=" http://www.cyberarmy.net" target="_blank">CyberArmy</a></p>
<p style="margin-bottom: 0in;"><a href="http://www.hackquest.de/" target="_blank">Hackquest</a></p>
<p style="margin-bottom: 0in;"><a href="http://scanme.nmap.org" target="_blank">Nmap Scan Testing site</a></p>
<p style="margin-bottom: 0in;"><!--more--></p>
<p style="margin-bottom: 0in;">
<p style="margin-bottom: 0in;"><strong>Penetration Testing Live CD/USBs</strong></p>
<p style="margin-bottom: 0in;"><a href="http://www.remote-exploit.org/backtrack.html" target="_blank">BackTrack3</a> - BackTrack is the most Top rated linux live distribution focused on penetration testing.</p>
<p style="margin-bottom: 0in;"><a href="http://www.owasp.org/index.php/Category:OWASP_Live_CD_Project#Feature" target="_blank">Open Web Application Security Project (OWASP) CD</a> - The OWASP Live CD (LabRat) is a bootable CD akin to knoppix but dedicated to Application Security.</p>
<p style="margin-bottom: 0in;"><a href="http://samurai.intelguardians.com/" target="_blank">Samurai Web Testing Framework</a> - Live linux environment that has been pre-configured to function as a web pen-testing environment</p>
<p style="margin-bottom: 0in;">
<p style="margin-bottom: 0in;">
<p style="margin-bottom: 0in;"><a href="http://www.owasp.org/index.php/Category:OWASP_Live_CD_Project#Features"><!--more--></a></p>
<p style="margin-bottom: 0in;"><strong>Password Administration CD/USB</strong></p>
<p style="margin-bottom: 0in;"><a href="http://ophcrack.sourceforge.net/" target="_blank">Ophcrack</a> - Windows Password Cracker based on Rainbow Tables</p>
<p style="margin-bottom: 0in;"><a href="http://wiki.gonzor228.com/index.php/Main_Page" target="_blank">Gonzor</a> - Hak5</p>
<p style="margin-bottom: 0in;"><a href="http://home.eunet.no/pnordahl/ntpasswd" target="_blank">Nordah</a>l - Windows NT/2K/XP/Vista Password Recovery</p>
<p style="margin-bottom: 0in;"><a href="http://trinityhome.org/Home/index.php?wpid=1&amp;front_id=12" target="_blank">Trinity Rescue Kit (TRK)</a></p>
<p style="margin-bottom: 0in; text-align: center;">Special Thanks to Larry Pesce @ <a href="http://pauldotcom.com/" target="_blank">PaulDotCom.com</a> for the USB Hacker Keychain idea. Works Great!!</p>
<p style="margin-bottom: 0in;">
<p style="margin-bottom: 0in;">
<p style="margin-bottom: 0in;">
<p style="margin-bottom: 0in;">
<p style="margin-bottom: 0in;"><span style="color: #0000ff;"><span style="text-decoration: underline;"><a href="http://home.eunet.no/pnordahl/ntpasswd/"></a></span></span><!--more--></p>
<p style="margin-bottom: 0in;">
<p style="margin-bottom: 0in;"><strong>General Tools</strong></p>
<p style="margin-bottom: 0in;"><a href="http://googlesystem.blogspot.com/2006/04/ebcd-system-recovery-boot-cd.html" target="_blank">Emergency Boot CD</a> - System Recovery for Windows</p>
<p style="margin-bottom: 0in;"><a href="www.oxid.it/cain.htm" target="_blank">Cain and Abel</a></p>
<p style="margin-bottom: 0in;"><a href="http://rainbowtables.shmoo.com/">Shmoo Group&#8217; Rainbow Tables</a> - Rainbow Tables for Cain and Abel</p>
<p style="margin-bottom: 0in;"><a href="www.truecrypt.org/downloads.php" target="_blank">TrueCrypt 6.0</a></p>
<p><a href="www.dban.org">Darik&#8217;s Nuke and Burn (DBAN</a>) - Self-contained boot disk that securely wipes the hard drive</p>
<p><a href="http://www.cgsecurity.org/wiki/PhotoRec" target="_blank">PhotoRec</a> - File Data Recovery Software designed to recover lost files including video, documents and archives from Hard Drives and CD Rom and lost pictures</p>
<p><a href="http://ikat.ha.cked.net/" target="_blank">iKat Kiosk Web Tools</a></p>
<p><a href="http://sectools.org" target="_blank">Insecure.org - Top 100 Network Security Tools<br />
</a></p>
<p style="margin-bottom: 0in;">
<p style="margin-bottom: 0in;">
<p style="margin-bottom: 0in;"><!--more--></p>
<p><a href="http://matthewsbecker.com/wp-content/uploads/2008/08/switch_security_medium.jpg"><img class="size-medium wp-image-82 alignright" title="switch_security_medium" src="http://matthewsbecker.com/wp-content/uploads/2008/08/switch_security_medium-276x300.jpg" alt="" width="276" height="300" /></a></p>
<p style="margin-bottom: 0in;"><strong>Penetration Testing Training</strong></p>
<p style="margin-bottom: 0in;"><a href="https://coresecurity.webex.com/ec0600l/eventcenter/recording/recordAction.do?theAction=poprecord&amp;actname=%2Feventcenter%2Fframe%2Fg.do&amp;apiname=lsr.php&amp;actappname=ec0600l&amp;entappname=url0106l&amp;needFilter=false&amp;&amp;isurlact=true&amp;rID=4214202&amp;entactname=%2FnbrRecordingURL.do&amp;rKey=32920A3595EA5972&amp;recordID=4214202&amp;siteurl=coresecurity&amp;rnd=7269064766&amp;SP=EC&amp;AT=pb&amp;format=short" target="_blank">Penetration Testing Ninjitsu” with Ed Skoudis of SANS </a></p>
<p style="margin-bottom: 0in;">
<p style="margin-bottom: 0in;"><a href="https://coresecurity.webex.com/ec0600l/eventcenter/recording/recordAction.do;jsessionid=LkTPfk3KTC3ytmy9RN4ZGB1Y1C7bYC1CzMQQJJQFJjSxvzJvJJpq!-1559075802?theAction=poprecord&amp;actname=%2Feventcenter%2Fframe%2Fg.do&amp;apiname=lsr.php&amp;actappname=ec0600l&amp;entappname=url0106l&amp;needFilter=false&amp;&amp;isurlact=true&amp;rID=4701002&amp;entactname=%2FnbrRecordingURL.do&amp;rKey=3FAEFBA5E93134C6&amp;recordID=4701002&amp;siteurl=coresecurity&amp;rnd=0983759386&amp;SP=EC&amp;AT=pb&amp;format=short" target="_blank">Penetration Testing Ninjitsu Part II: Crouching Netcat, Hidden Vulnerabilities with Ed Skoudis of SANS </a></p>
<p style="margin-bottom: 0in;">
<p><a href="https://coresecurity.webex.com/ec0600l/eventcenter/recording/recordAction.do?theAction=poprecord&amp;actname=%2Feventcenter%2Fframe%2Fg.do&amp;apiname=lsr.php&amp;actappname=ec0600l&amp;entappname=url0106l&amp;needFilter=false&amp;&amp;isurlact=true&amp;rID=5387902&amp;entactname=%2FnbrRecordingURL.do&amp;rKey=4AAA1FF11201B5A2&amp;recordID=5387902&amp;siteurl=coresecurity&amp;rnd=4493303397&amp;SP=EC&amp;AT=pb&amp;format=short" target="_blank">Pen Testing Ninjitsu III with Ed Skoudis: After the Initial Compromise</a></p>
<p style="margin-bottom: 0in;">
<p style="margin-bottom: 0in;">
<p style="margin-bottom: 0in;">
<p><span style="font-size: x-small;"><span style="font-family: Bitstream Vera Serif,serif;">Matthew &#8220;The Security Zealot&#8221; Becker<br />
</span></span></p>
<p style="margin-bottom: 0in;">
]]></content:encoded>
			<wfw:commentRss>http://matthewsbecker.com/2008/08/17/ultimate-penetration-testing-lab-kit-uptlk/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Sexy Hacking?</title>
		<link>http://matthewsbecker.com/2008/08/14/sexy-hacking/</link>
		<comments>http://matthewsbecker.com/2008/08/14/sexy-hacking/#comments</comments>
		<pubDate>Fri, 15 Aug 2008 01:23:13 +0000</pubDate>
		<dc:creator>Security Zealot</dc:creator>
		
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://matthewsbecker.com/?p=88</guid>
		<description><![CDATA[Odd as it may sound but a company Edgeos has put every geeks (well a large percentage) together Nmap and womanly curves.  Check it out  the &#8220;Damsels Causing Distress&#8221; here.
]]></description>
			<content:encoded><![CDATA[<p>Odd as it may sound but a company Edgeos has put every geeks (well a large percentage) together Nmap and womanly curves.  <a href="http://www.sexyhacking.com" target="_blank">Check it out  the &#8220;Damsels Causing Distress&#8221; here.</a></p>
]]></content:encoded>
			<wfw:commentRss>http://matthewsbecker.com/2008/08/14/sexy-hacking/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Credit Card Loss or Theft Recommendations</title>
		<link>http://matthewsbecker.com/2008/07/30/credit-card-loss-or-theft-recommendations/</link>
		<comments>http://matthewsbecker.com/2008/07/30/credit-card-loss-or-theft-recommendations/#comments</comments>
		<pubDate>Wed, 30 Jul 2008 12:34:51 +0000</pubDate>
		<dc:creator>Security Zealot</dc:creator>
		
		<category><![CDATA[General]]></category>

		<category><![CDATA[Security Awareness Training]]></category>

		<guid isPermaLink="false">http://matthewsbecker.com/?p=64</guid>
		<description><![CDATA[Lucky&#8230; (Knock on Wood)  I have not had to take this advice; however I recently read a  fairly detailed blog entry on credit protect in case of a lost wallet or theft.
The blog entry details the alert periods of the three credit reporting agencies as well as the hurdles that Mr. and Mrs. [...]]]></description>
			<content:encoded><![CDATA[<p>Lucky&#8230;<em> (Knock on Wood) </em> I have not had to take this advice; however I recently read a  fairly detailed <a href="http://www.ncnblog.com/2007/10/15/i-lost-my-wallet-how-to-file-fraud-alert-with-credit-bureaus-experian-equifax-transunion/">blog entry</a> on credit protect in case of a lost wallet or theft.</p>
<p>The blog entry details the alert periods of the three credit reporting agencies as well as the hurdles that <a href="http://www.ncnblog.com/contact/about-2/">Mr. and Mrs. &#8220;NCN&#8221;</a> had to go through to place a fraud alert on the lost wallet.</p>
]]></content:encoded>
			<wfw:commentRss>http://matthewsbecker.com/2008/07/30/credit-card-loss-or-theft-recommendations/feed/</wfw:commentRss>
		</item>
		<item>
		<title>GMail has finally added a https option</title>
		<link>http://matthewsbecker.com/2008/07/29/gmail-has-finally-added-a-https-option/</link>
		<comments>http://matthewsbecker.com/2008/07/29/gmail-has-finally-added-a-https-option/#comments</comments>
		<pubDate>Tue, 29 Jul 2008 11:45:52 +0000</pubDate>
		<dc:creator>Security Zealot</dc:creator>
		
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://matthewsbecker.com/?p=63</guid>
		<description><![CDATA[There is a new security feature in the setting options of Gmail, an &#8220;Always Use https&#8221; feature.  Not that https is new or that you could use GMail without HTTPS, but no longer will it have to be manually have to type &#8220;https://gmail.com&#8221;.
To change your settings go to Settings > General > Browser Connection [...]]]></description>
			<content:encoded><![CDATA[<p>There is a new security feature in the setting options of Gmail, an &#8220;Always Use https&#8221; feature.  Not that https is new or that you could use GMail without HTTPS, but no longer will it have to be manually have to type &#8220;https://gmail.com&#8221;.</p>
<p>To change your settings go to <strong>Settings > General > Browser Connection > Always use https</strong> .</p>
<p>Even though this is a slow step in the right direction, it still raises some questions?  Why isn&#8217;t https default?  Also, when will https be available the other services that are provide by Google (e.g. iGoogle)? It seems that even if you manual type &#8220;https://www.iGoogle.com&#8221; it is redirect to <strong>http</strong>.</p>
<p>As a user of Google, I hope that this is only the beginning of the security features that Google is planning in the NEAR future.  </p>
<p>Matthew &#8220;The Security Zealot&#8221; Becker</p>
]]></content:encoded>
			<wfw:commentRss>http://matthewsbecker.com/2008/07/29/gmail-has-finally-added-a-https-option/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Next HOPE!!!  The Two Year Countdown Begins</title>
		<link>http://matthewsbecker.com/2008/07/23/next-hope-the-two-year-countdown-begins/</link>
		<comments>http://matthewsbecker.com/2008/07/23/next-hope-the-two-year-countdown-begins/#comments</comments>
		<pubDate>Wed, 23 Jul 2008 12:18:41 +0000</pubDate>
		<dc:creator>Security Zealot</dc:creator>
		
		<category><![CDATA[General]]></category>

		<category><![CDATA[INFOSEC Conference]]></category>

		<category><![CDATA[Security Training]]></category>

		<guid isPermaLink="false">http://matthewsbecker.com/?p=61</guid>
		<description><![CDATA[A glimpse a hope for the HOPE conference; it has been announced the &#8220;Last HOPE&#8221; will not truly be the LAST HOPE Conference.  
During the closing comments of the &#8220;Last HOPE&#8221; Emmanuel Goldstein stated the following:

&#8220;Despite calling the event this weekend &#8220;Last HOPE,&#8221; it won&#8217;t be the final one; just the most recent one,&#8221; [...]]]></description>
			<content:encoded><![CDATA[<p>A glimpse a hope for the HOPE conference; it has been announced the &#8220;Last HOPE&#8221; will not truly be the LAST HOPE Conference.  </p>
<p>During the closing comments of the &#8220;Last HOPE&#8221; Emmanuel Goldstein stated the following:<br />
<em><br />
&#8220;Despite calling the event this weekend &#8220;Last HOPE,&#8221; it won&#8217;t be the final one; just the most recent one,&#8221; </p>
<p>&#8220;There will be another one in two years. It will be called &#8220;Next HOPE&#8221;</em></p>
<p>So mark your calendars now&#8230; and I hope to see you there.</p>
<p>Matthew &#8220;Security Zealot&#8221; Becker</p>
]]></content:encoded>
			<wfw:commentRss>http://matthewsbecker.com/2008/07/23/next-hope-the-two-year-countdown-begins/feed/</wfw:commentRss>
		</item>
		<item>
		<title>BackTrack 3 Final Released with Some Cool New Features</title>
		<link>http://matthewsbecker.com/2008/06/20/backtrack-3-final-released-with-some-cool-new-features/</link>
		<comments>http://matthewsbecker.com/2008/06/20/backtrack-3-final-released-with-some-cool-new-features/#comments</comments>
		<pubDate>Fri, 20 Jun 2008 12:30:00 +0000</pubDate>
		<dc:creator>Security Zealot</dc:creator>
		
		<category><![CDATA[General]]></category>

		<category><![CDATA[Pen Testing]]></category>

		<category><![CDATA[Security Training]]></category>

		<category><![CDATA[Wireless Security]]></category>

		<guid isPermaLink="false">http://matthewsbecker.com/?p=58</guid>
		<description><![CDATA[Yesterday during the PaulDotCom.com Web Cast, the developers of the world renown BackTrack announced the release of the Final Release of Version 3.
According to Mut&#8217;s Blog, some of the new features of BT3 include:
 

Saint
SAINT has provided BackTrack users with a functional version of SAINT, pending a free request for an IP range license through [...]]]></description>
			<content:encoded><![CDATA[<p>Yesterday during the<a href="http://www.pauldotcom.com/2008/06/19/pauldotcom_security_weekly_epi_119.html" target="_blank"> PaulDotCom.com</a> Web Cast, the developers of the world renown BackTrack announced the release of the Final Release of Version 3.</p>
<p>According to <a href="http://secmaniac.blogspot.com/2008/06/backtrack-3-final-release-information.html" target="_blank">Mut&#8217;s Blog</a>, some of the new features of BT3 include:</p>
<p><!-- Begin #content --> <!-- Begin #main --></p>
<p><!-- Begin .post --></p>
<p><em><span style="font-weight: bold;">Saint</span><br />
SAINT has provided BackTrack users with a functional version of SAINT, pending a free request for an IP range license through the SAINT website, valid for 1 year.</em></p>
<p><em><span style="font-weight: bold;">Maltego</span><br />
The guys over at Paterva have created a special version of Maltego v2.0 with a community license especially for BackTrack users. We would like to thank Paterva for co-operating with us and allowing us to feature this amazing tool in BackTrack</em></p>
<p>Other features include:</p>
<ul>
<li>PwnSauce Instant John the Ripper Cluster feature (USB version)</li>
<li> Updated Metasploit Exploit framework and dependencies</li>
</ul>
<p>To get your copy: <a href="http://www.remote-exploit.org/backtrack_download.html" target="_blank">http://www.remote-exploit.org/backtrack_download.html</a></p>
<p>Maybe Max and Mut should try to make their own version of Guiness Book of World Records for downloads for a security tool?</p>
<p>Matthew &#8220;Security Zealot&#8221; Becker</p>
]]></content:encoded>
			<wfw:commentRss>http://matthewsbecker.com/2008/06/20/backtrack-3-final-released-with-some-cool-new-features/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Help Set a Guinness World Record With FireFox 3</title>
		<link>http://matthewsbecker.com/2008/06/18/help-set-a-guinness-world-record-with-firefox-3/</link>
		<comments>http://matthewsbecker.com/2008/06/18/help-set-a-guinness-world-record-with-firefox-3/#comments</comments>
		<pubDate>Wed, 18 Jun 2008 12:25:46 +0000</pubDate>
		<dc:creator>Security Zealot</dc:creator>
		
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://matthewsbecker.com/?p=57</guid>
		<description><![CDATA[Only a few hours left to set the record.
&#8220;Download Day is here!&#8221;

All you have to do to help us set the record for the most software downloaded in 24 hours is get Firefox 3 now – it’s that easy. 
Please download Firefox 3 by 11:16 a.m. PDT (18:16 UTC) on June 18, 2008.
As of this [...]]]></description>
			<content:encoded><![CDATA[<p>Only a few hours left to set the record.</p>
<p>&#8220;<a href="http://www.spreadfirefox.com/en-US/worldrecord" target="_blank">Download Day is here!</a>&#8221;</p>
<div class="inner-wrapper">
<p><em>All you have to do to help us set the record for the most software downloaded in 24 hours is get Firefox 3 now – it’s that easy. </em></p>
<p><em>Please download Firefox 3 by 11:16 a.m. PDT (<a href="http://www.timeanddate.com/worldclock/fixedtime.html?month=6&amp;day=18&amp;year=2008&amp;hour=18&amp;min=15&amp;sec=0&amp;p1=0">18:16 UTC</a>) on June 18, 2008.</em></p>
<p>As of this post                                              6,293,454 Download have occurred.  To increase the number <a href="http://www.spreadfirefox.com/en-US/worldrecord" target="_blank">download Firefox 3</a>.</p>
<p>Matthew &#8220;Security Zealot&#8221; Becker</p>
</div>
]]></content:encoded>
			<wfw:commentRss>http://matthewsbecker.com/2008/06/18/help-set-a-guinness-world-record-with-firefox-3/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
