<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
		xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/"
>

<channel>
	<title>Jabablog &#187; InfoSec</title>
	<atom:link href="http://blog.jabawoki.com/category/infosec/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.jabawoki.com</link>
	<description>Nothing to see here, move along...</description>
	<lastBuildDate>Sat, 12 May 2012 13:37:53 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
	<copyright>Copyright &#xA9; Jabablog 2011 </copyright>
	<managingEditor>jay@jabawoki.com (Jabablog)</managingEditor>
	<webMaster>jay@jabawoki.com (Jabablog)</webMaster>
	<ttl>1440</ttl>
	<image>
		<url>http://blog.jabawoki.com/wp-content/plugins/podpress/images/powered_by_podpress.jpg</url>
		<title>Jabablog</title>
		<link>http://blog.jabawoki.com</link>
		<width>144</width>
		<height>144</height>
	</image>
	<itunes:subtitle></itunes:subtitle>
	<itunes:summary>Nothing to see here, move along...</itunes:summary>
	<itunes:keywords></itunes:keywords>
	<itunes:category text="Music" />
	<itunes:category text="Technology" />
	<itunes:category text="Business" />
	<itunes:author>Jabablog</itunes:author>
	<itunes:owner>
		<itunes:name>Jabablog</itunes:name>
		<itunes:email>jay@jabawoki.com</itunes:email>
	</itunes:owner>
	<itunes:block>no</itunes:block>
	<itunes:explicit>no</itunes:explicit>
	<itunes:image href="http://blog.jabawoki.com/wp-content/plugins/podpress/images/powered_by_podpress_large.jpg" />
		<item>
		<title>The GCHQ Cipher Story you don&#8217;t know.</title>
		<link>http://blog.jabawoki.com/2012/01/08/the-gchq-cipher-story-you-dont-know/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=the-gchq-cipher-story-you-dont-know</link>
		<comments>http://blog.jabawoki.com/2012/01/08/the-gchq-cipher-story-you-dont-know/#comments</comments>
		<pubDate>Sun, 08 Jan 2012 21:55:19 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1850</guid>
		<description><![CDATA[So much has been said, good and bad, about GCHQ&#8217;s recent release of a cipher to the community. Simply a publicity stunt or well designed honey-pot? No one will ever really know, but what you don&#8217;t know is that this was an example of seeing a good idea and then totally cocking it up. Let me start by [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2012/01/08/the-gchq-cipher-story-you-dont-know/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Ciph3rs &amp; C0d3s</title>
		<link>http://blog.jabawoki.com/2011/09/13/ciph3rs-c0d3s/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=ciph3rs-c0d3s</link>
		<comments>http://blog.jabawoki.com/2011/09/13/ciph3rs-c0d3s/#comments</comments>
		<pubDate>Tue, 13 Sep 2011 11:15:21 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1841</guid>
		<description><![CDATA[This is a short video explanation of how the UK Cyber Security Challenge&#8217;s launch cipher was put together, and subsequently how to break it!]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2011/09/13/ciph3rs-c0d3s/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Open for Business?</title>
		<link>http://blog.jabawoki.com/2011/06/24/open-for-business/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=open-for-business</link>
		<comments>http://blog.jabawoki.com/2011/06/24/open-for-business/#comments</comments>
		<pubDate>Fri, 24 Jun 2011 08:08:28 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[android]]></category>
		<category><![CDATA[apple]]></category>
		<category><![CDATA[Apple IOS]]></category>
		<category><![CDATA[application]]></category>
		<category><![CDATA[appstore]]></category>
		<category><![CDATA[assurance]]></category>
		<category><![CDATA[attacker]]></category>
		<category><![CDATA[Bloomberg]]></category>
		<category><![CDATA[device]]></category>
		<category><![CDATA[ethical]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[malware]]></category>
		<category><![CDATA[market]]></category>
		<category><![CDATA[nix]]></category>
		<category><![CDATA[quality]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[smartphone]]></category>
		<category><![CDATA[source]]></category>
		<category><![CDATA[thoughts]]></category>
		<category><![CDATA[Trojan]]></category>
		<category><![CDATA[whitelist]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1817</guid>
		<description><![CDATA[I recently was asked by Bloomberg to comment on the raft of Android malware recently discovered. During that interview I mentioned some concepts around the open vs closed models and wanted to expand on this thinking a little further. As you may know the Google Android platform has been open source since 2008, and as [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2011/06/24/open-for-business/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Why you dont need a firewall</title>
		<link>http://blog.jabawoki.com/2011/05/15/why-you-dont-need-a-firewall/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=why-you-dont-need-a-firewall</link>
		<comments>http://blog.jabawoki.com/2011/05/15/why-you-dont-need-a-firewall/#comments</comments>
		<pubDate>Sun, 15 May 2011 08:58:21 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[latency]]></category>
		<category><![CDATA[psn]]></category>
		<category><![CDATA[sony]]></category>
		<category><![CDATA[statefull]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1811</guid>
		<description><![CDATA[I have seen some comments of late about the PSN hack being due to Sony having no firewalls in place and out of date Apache instances. A brief amount of research defuncts this assertion, however, I was genuinely surprised at the level and voracity of the comments around it. Most of which related to people [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2011/05/15/why-you-dont-need-a-firewall/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Original Thought</title>
		<link>http://blog.jabawoki.com/2011/02/10/original-thought/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=original-thought</link>
		<comments>http://blog.jabawoki.com/2011/02/10/original-thought/#comments</comments>
		<pubDate>Thu, 10 Feb 2011 12:46:11 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[bounty]]></category>
		<category><![CDATA[bug]]></category>
		<category><![CDATA[bug bounty]]></category>
		<category><![CDATA[bugs]]></category>
		<category><![CDATA[cudos]]></category>
		<category><![CDATA[fuzz]]></category>
		<category><![CDATA[fuzzing]]></category>
		<category><![CDATA[industry]]></category>
		<category><![CDATA[itsec]]></category>
		<category><![CDATA[original]]></category>
		<category><![CDATA[research]]></category>
		<category><![CDATA[researchers]]></category>
		<category><![CDATA[respect]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[thought]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/2011/02/10/original-thought/</guid>
		<description><![CDATA[It seems that since vendors started bringing out bug bounties, for all the right reasons I might add, a new breed of &#8220;security researcher&#8221; has appeared. This new type of researcher is single minded in his/her task and has a simple, no effort, no thought way of achieiving it &#8220;fuzzing!&#8221; Dont get me wrong, fuzzing [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2011/02/10/original-thought/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Black, White or Grey? What colour hat do you wear?</title>
		<link>http://blog.jabawoki.com/2010/02/25/black-white-or-grey-what-colour-hat-do-you-wear/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=black-white-or-grey-what-colour-hat-do-you-wear</link>
		<comments>http://blog.jabawoki.com/2010/02/25/black-white-or-grey-what-colour-hat-do-you-wear/#comments</comments>
		<pubDate>Thu, 25 Feb 2010 09:57:08 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[attacker]]></category>
		<category><![CDATA[black hat]]></category>
		<category><![CDATA[ethical]]></category>
		<category><![CDATA[goals]]></category>
		<category><![CDATA[grey hat]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[intent]]></category>
		<category><![CDATA[itsec]]></category>
		<category><![CDATA[motivation]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[white hat]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1740</guid>
		<description><![CDATA[There is often a lot of talk about this concept, specifically in the white hat vs black hat debate that has gone on for what seems like forever now. I have, as you would expect, my own take on this. Lets start with a history lesson and the basics. White Hats are the &#8220;good guys&#8221; [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2010/02/25/black-white-or-grey-what-colour-hat-do-you-wear/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Kneber &#8211; Another sign of the times</title>
		<link>http://blog.jabawoki.com/2010/02/18/kneber-another-sign-of-the-times/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=kneber-another-sign-of-the-times</link>
		<comments>http://blog.jabawoki.com/2010/02/18/kneber-another-sign-of-the-times/#comments</comments>
		<pubDate>Thu, 18 Feb 2010 22:22:52 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[anti-virus]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[confiker]]></category>
		<category><![CDATA[control]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[kneber]]></category>
		<category><![CDATA[malware]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1739</guid>
		<description><![CDATA[So here we are again, a few months on, and just when so many were licking their wounds after the last infection, along comes another. Guess what, if you had your eyes shut my sympathy is not going to be that forthcoming! Malware has come along way since its anarchistic pre-pubescent   beginnings, and is now [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2010/02/18/kneber-another-sign-of-the-times/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Chip &amp; Pin Attack</title>
		<link>http://blog.jabawoki.com/2010/02/14/chip-pin-attack/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=chip-pin-attack</link>
		<comments>http://blog.jabawoki.com/2010/02/14/chip-pin-attack/#comments</comments>
		<pubDate>Sun, 14 Feb 2010 12:09:48 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[chip & pin]]></category>
		<category><![CDATA[media]]></category>
		<category><![CDATA[press]]></category>
		<category><![CDATA[quote]]></category>
		<category><![CDATA[ross anderson]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1735</guid>
		<description><![CDATA[I was recently asked to comment on the new Chip &#38; Pin attack created by Prof Ross Anderson from Cambridge University. In my original comment released to the press I make an assertion in relation to a change in process that &#8220;breaks the circuit&#8221; of this attack &#8211; see below: Jay Abbott, director in charge [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2010/02/14/chip-pin-attack/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Press Coverage &#8211; February 2010</title>
		<link>http://blog.jabawoki.com/2010/02/05/press-coverage-february-2010/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=press-coverage-february-2010</link>
		<comments>http://blog.jabawoki.com/2010/02/05/press-coverage-february-2010/#comments</comments>
		<pubDate>Fri, 05 Feb 2010 18:07:32 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1731</guid>
		<description><![CDATA[Dani Web – February 2010 – Chip &#38; Pin Daily Telegraph – February 2010 – Chip &#38; Pin BCS Industry News &#8211; February 2010 &#8211; Fraud Rises]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2010/02/05/press-coverage-february-2010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Press Coverage &#8211; January 2010</title>
		<link>http://blog.jabawoki.com/2010/01/17/press-coverage-january-2010/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=press-coverage-january-2010</link>
		<comments>http://blog.jabawoki.com/2010/01/17/press-coverage-january-2010/#comments</comments>
		<pubDate>Sun, 17 Jan 2010 20:14:16 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[press]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1726</guid>
		<description><![CDATA[Sunday Times &#8211; 17th January 2010 &#8211; Dark Pools / Hacking]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2010/01/17/press-coverage-january-2010/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cloud Computing</title>
		<link>http://blog.jabawoki.com/2009/11/08/cloud-computing/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=cloud-computing</link>
		<comments>http://blog.jabawoki.com/2009/11/08/cloud-computing/#comments</comments>
		<pubDate>Sun, 08 Nov 2009 00:00:31 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[cloud]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1716</guid>
		<description><![CDATA[I am getting a little annoyed with hearing people wax lyrical about &#8220;the cloud&#8221; and how its going to revolutionise the world. I have a news flash for you all, its not new and its not revolutionary! First of all, lets define what we are talking about. There is a simple definition for Cloud Computing, [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2009/11/08/cloud-computing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Press Coverage &#8211; August 2009</title>
		<link>http://blog.jabawoki.com/2009/08/26/press-coverage-august-2009/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=press-coverage-august-2009</link>
		<comments>http://blog.jabawoki.com/2009/08/26/press-coverage-august-2009/#comments</comments>
		<pubDate>Wed, 26 Aug 2009 07:48:22 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[press]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1710</guid>
		<description><![CDATA[Open post to see coverage: Accountancy Age – August 2009 – Dark Pools of Talent]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2009/08/26/press-coverage-august-2009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Press Coverage &#8211; July 2009</title>
		<link>http://blog.jabawoki.com/2009/08/26/press-coverage-july-2009/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=press-coverage-july-2009</link>
		<comments>http://blog.jabawoki.com/2009/08/26/press-coverage-july-2009/#comments</comments>
		<pubDate>Wed, 26 Aug 2009 07:47:55 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[press]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1709</guid>
		<description><![CDATA[Open post to see coverage: Sheffield Star Business Monthly – July 2009 – Hacking]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2009/08/26/press-coverage-july-2009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Press Coverage &#8211; April 2009</title>
		<link>http://blog.jabawoki.com/2009/08/26/press-coverage-april-2009/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=press-coverage-april-2009</link>
		<comments>http://blog.jabawoki.com/2009/08/26/press-coverage-april-2009/#comments</comments>
		<pubDate>Wed, 26 Aug 2009 07:47:28 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[press]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1708</guid>
		<description><![CDATA[Open post to see coverage: computing.co.uk – April 2009 – Malware computing.co.uk – April 2009 – Risk in the recession pcauthority.com.au – April 2009 – Microsoft computing.co.uk – April 2009 – Microsoft crn.com.au – April 2009 – Risk in the recession whatpc.co.uk – April 2009 – Security computing.co.uk – April 2009 – Malware Searchsecurity.co.uk – [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2009/08/26/press-coverage-april-2009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Press Coverage &#8211; March 2009</title>
		<link>http://blog.jabawoki.com/2009/08/26/press-coverage-march-2009/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=press-coverage-march-2009</link>
		<comments>http://blog.jabawoki.com/2009/08/26/press-coverage-march-2009/#comments</comments>
		<pubDate>Wed, 26 Aug 2009 07:46:58 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[press]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1707</guid>
		<description><![CDATA[Open post to see coverage: Insurance Times – March 2009 – Data Loss Issues]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2009/08/26/press-coverage-march-2009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Press Coverage &#8211; February 2009</title>
		<link>http://blog.jabawoki.com/2009/08/26/press-coverage-february-2009/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=press-coverage-february-2009</link>
		<comments>http://blog.jabawoki.com/2009/08/26/press-coverage-february-2009/#comments</comments>
		<pubDate>Wed, 26 Aug 2009 07:46:25 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[press]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1706</guid>
		<description><![CDATA[Open post to see coverage: Computer Fraud and Security – February 2009 – Ethics &#38; Hacking]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2009/08/26/press-coverage-february-2009/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Press Coverage &#8211; </title>
		<link>http://blog.jabawoki.com/2009/08/26/press-coverage/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=press-coverage</link>
		<comments>http://blog.jabawoki.com/2009/08/26/press-coverage/#comments</comments>
		<pubDate>Wed, 26 Aug 2009 07:45:48 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[press]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1705</guid>
		<description><![CDATA[Open post to see coverage: North West Insider – August 2007 – IT Security North West Insider – August 2008 – BERR Survey]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2009/08/26/press-coverage/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The Asymmetry of Security</title>
		<link>http://blog.jabawoki.com/2008/11/26/the-asymmetry-of-security/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=the-asymmetry-of-security</link>
		<comments>http://blog.jabawoki.com/2008/11/26/the-asymmetry-of-security/#comments</comments>
		<pubDate>Wed, 26 Nov 2008 19:24:14 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[IISP]]></category>
		<category><![CDATA[thoughts]]></category>
		<category><![CDATA[Vulnerabilities]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1692</guid>
		<description><![CDATA[Personally, I think this is one of the most important concepts of today. Its simple enough to grasp and illustrates the point very well. Consider these examples: From an effort perspective, the effort required to secure a system is significantly less than that required to exploit it. From a cost perspective, it is less expensive [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2008/11/26/the-asymmetry-of-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security as a Career</title>
		<link>http://blog.jabawoki.com/2008/11/19/security-as-a-career/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=security-as-a-career</link>
		<comments>http://blog.jabawoki.com/2008/11/19/security-as-a-career/#comments</comments>
		<pubDate>Wed, 19 Nov 2008 08:08:10 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=49</guid>
		<description><![CDATA[People often ask me whats the best way to get into security as a career. There are of course many views on this subject, but I don&#8217;t believe there is a clear answer. So rather than try and map out a path, lets look at some of the elements involved and some options. The first [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2008/11/19/security-as-a-career/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ACME Supercomputing Inc &#8211; Roadrunner Beware</title>
		<link>http://blog.jabawoki.com/2008/11/18/acme-supercomputing-inc-roadrunner-beware/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=acme-supercomputing-inc-roadrunner-beware</link>
		<comments>http://blog.jabawoki.com/2008/11/18/acme-supercomputing-inc-roadrunner-beware/#comments</comments>
		<pubDate>Tue, 18 Nov 2008 10:15:42 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[thoughts]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1690</guid>
		<description><![CDATA[I read an interesting article the other day about the fact that Cray have toppled IBM of the top spot in the super computer race with a staggering 1.64 Petaflops of processing grunt from its XT Jaguar supercomputer. Of course, I expect this will be short lived given the Roadrunner has a theoretical 1.7 Petaflop [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2008/11/18/acme-supercomputing-inc-roadrunner-beware/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Anything that can be engineered by mankind&#8230;..</title>
		<link>http://blog.jabawoki.com/2008/11/18/anything-that-can-be-engineered-by-mankind/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=anything-that-can-be-engineered-by-mankind</link>
		<comments>http://blog.jabawoki.com/2008/11/18/anything-that-can-be-engineered-by-mankind/#comments</comments>
		<pubDate>Tue, 18 Nov 2008 09:31:06 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[thoughts]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=1689</guid>
		<description><![CDATA[&#8230;&#8230;can be reverse engineered by mankind. Its a simple mantra, but one that has served me well in security. Think of of this way, it doesn&#8217;t matter how intelligent you are, someone, somewhere is more intelligent! When it comes to security this is never more true. As we all know, security is asymmetric, in so [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2008/11/18/anything-that-can-be-engineered-by-mankind/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PenTest Straw Poll</title>
		<link>http://blog.jabawoki.com/2008/07/25/pentest-straw-poll/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=pentest-straw-poll</link>
		<comments>http://blog.jabawoki.com/2008/07/25/pentest-straw-poll/#comments</comments>
		<pubDate>Fri, 25 Jul 2008 12:21:59 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[PenTest]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=98</guid>
		<description><![CDATA[Which Penetration Testing Qualification is best from a client perspective: Which Penetration Testing Qualification is best from a Testing perspective: (NB: I have deliberately excluded &#8220;accreditation schemes&#8221; such as CREST and CHECK)]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2008/07/25/pentest-straw-poll/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Linux Defence Tweaks</title>
		<link>http://blog.jabawoki.com/2008/07/06/linux-defence-tweaks/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=linux-defence-tweaks</link>
		<comments>http://blog.jabawoki.com/2008/07/06/linux-defence-tweaks/#comments</comments>
		<pubDate>Sun, 06 Jul 2008 20:13:11 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[linux]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=52</guid>
		<description><![CDATA[If your planning on using Linux in a hostile environment, i.e. the Internet! then its worth thinking about some simple little tweaks to the TCP/IP stack in conjunction with some funky firewall madness to keep your box your own, and not end up &#8220;owned&#8221; too quickly! Lets start with the TCP/IP stack. There are a [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2008/07/06/linux-defence-tweaks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Free Security for All!</title>
		<link>http://blog.jabawoki.com/2008/07/05/free-security-for-all/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=free-security-for-all</link>
		<comments>http://blog.jabawoki.com/2008/07/05/free-security-for-all/#comments</comments>
		<pubDate>Sat, 05 Jul 2008 22:42:49 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[linux]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=51</guid>
		<description><![CDATA[Its time for a small reality check. Security does not have to cost the earth. Just because your a large corporate with over a 1000 employees doesn&#8217;t mean you &#8220;have&#8221; to buy brand name security. In fact, I would argue quite the opposite, invest that money in some quality people, treat them well, and get [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2008/07/05/free-security-for-all/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Do Credentials equal Credibility?</title>
		<link>http://blog.jabawoki.com/2008/07/05/do-credentials-equal-credibility/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=do-credentials-equal-credibility</link>
		<comments>http://blog.jabawoki.com/2008/07/05/do-credentials-equal-credibility/#comments</comments>
		<pubDate>Sat, 05 Jul 2008 16:23:28 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=48</guid>
		<description><![CDATA[This is a debate I regularly get into with my team. Personally, I think that yes, credentials can bring credibility with an audience, or with a prospective employer. Lets look at how this works: C&#124;EH (Certified Ethical Hacker). Anyone who has been in that area of work for a number of years will state that [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2008/07/05/do-credentials-equal-credibility/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Snort Rocks!</title>
		<link>http://blog.jabawoki.com/2008/07/02/snort-rocks/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=snort-rocks</link>
		<comments>http://blog.jabawoki.com/2008/07/02/snort-rocks/#comments</comments>
		<pubDate>Wed, 02 Jul 2008 16:21:36 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[linux]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=28</guid>
		<description><![CDATA[Ok, its been ages since I actually had snort up and running, so long in fact that the last time I used it, ACID was still the best way to deal with the alerts! Well after a couple of days (well a couple of hours here and there at least) I have a fully functional [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2008/07/02/snort-rocks/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>How Security Should Work</title>
		<link>http://blog.jabawoki.com/2008/07/01/how-security-should-work/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=how-security-should-work</link>
		<comments>http://blog.jabawoki.com/2008/07/01/how-security-should-work/#comments</comments>
		<pubDate>Tue, 01 Jul 2008 12:33:27 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=22</guid>
		<description><![CDATA[I work in a world of standards, opinions, controls and countermeasures, all encompassed in a foreign language of &#8220;InfoSec&#8221; and &#8220;ItSec&#8221;. This of course, while entertaining, is of little use to the world. I would like to propose a simple concept, probably high level, and I am sure my peers would argue is &#8220;inadequate&#8221;, that [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2008/07/01/how-security-should-work/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PCI-DSS Is it dead?</title>
		<link>http://blog.jabawoki.com/2008/07/01/pci-dss-is-it-dead/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=pci-dss-is-it-dead</link>
		<comments>http://blog.jabawoki.com/2008/07/01/pci-dss-is-it-dead/#comments</comments>
		<pubDate>Tue, 01 Jul 2008 12:04:42 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[PCI-DSS]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=20</guid>
		<description><![CDATA[First of all, legislation doesn&#8217;t die, it just becomes BAU. PCI is still a pain for most, but as a race, us Humans are fickle creatures who like our topics and news to be current, so the latest and greatest will always be at the top of the agenda. PCI on the other hand has [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2008/07/01/pci-dss-is-it-dead/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>IISP Top Gun event, Manchester, 30 June 2008</title>
		<link>http://blog.jabawoki.com/2008/06/30/iisp-topgun/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=iisp-topgun</link>
		<comments>http://blog.jabawoki.com/2008/06/30/iisp-topgun/#comments</comments>
		<pubDate>Mon, 30 Jun 2008 23:34:19 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>
		<category><![CDATA[IISP]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=19</guid>
		<description><![CDATA[Courtesy of the Institute for Information Security Professionals As I mentioned in the opening CEO article, the inaugural Top Gun event in Manchester was a great success on many fronts.  We had 20 participants, organised into the Red and Blue teams, plus 5 members of the Control Team, and the day just seemed to fly [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2008/06/30/iisp-topgun/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Layered Security</title>
		<link>http://blog.jabawoki.com/2008/06/30/layered-security/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=layered-security</link>
		<comments>http://blog.jabawoki.com/2008/06/30/layered-security/#comments</comments>
		<pubDate>Mon, 30 Jun 2008 22:30:42 +0000</pubDate>
		<dc:creator>Jabs</dc:creator>
				<category><![CDATA[InfoSec]]></category>

		<guid isPermaLink="false">http://blog.jabawoki.com/?p=18</guid>
		<description><![CDATA[The concept is simple, the more obstacles in the way the better. Let me abstract the concept for you&#8230;.. &#8230;..you put your file in a safe, I crack into the safe. &#8230;&#8230;&#8230;you put your file in a safe, and lock the safe in a strong/secure room, I crack the room then the safe. &#8230;&#8230;&#8230;..You put [...]]]></description>
		<wfw:commentRss>http://blog.jabawoki.com/2008/06/30/layered-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
<!-- WP Super Cache is installed but broken. The path to wp-cache-phase1.php in wp-content/advanced-cache.php must be fixed! -->
