<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-1703577017043093909</id><updated>2011-12-30T09:53:58.917-05:00</updated><category term='WOW64'/><category term='Security Information Management'/><category term='2006'/><category term='SIM'/><category term='Logs'/><category term='Lenny Zeltser'/><category term='2011'/><category term='Christian Wojner'/><title type='text'>Security Documents</title><subtitle type='html'>A Database of Security Documents found throughout the Internet.</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://securitydocuments.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1703577017043093909/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://securitydocuments.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Paul Clark</name><uri>http://www.blogger.com/profile/16398754503370594236</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>2</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-1703577017043093909.post-4066622572315026309</id><published>2011-11-30T09:45:00.000-05:00</published><updated>2011-12-30T09:53:58.923-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='WOW64'/><category scheme='http://www.blogger.com/atom/ns#' term='2011'/><category scheme='http://www.blogger.com/atom/ns#' term='Christian Wojner'/><title type='text'>The WOW-Effect</title><content type='html'>&lt;b&gt;Author:&lt;/b&gt; Christian Wojner&lt;br /&gt;&lt;b&gt;Date:&lt;/b&gt; November 30th 2011&lt;br /&gt;&lt;b&gt;Summary:&lt;/b&gt; A paper about how Microsoft's WOW64 technology unintentionally fools IT-Security analysts. &lt;br /&gt;&lt;b&gt;Source:&lt;/b&gt; &lt;a href="http://cert.at/downloads/papers/wow_effect_en.html"&gt;http://cert.at/downloads/papers/wow_effect_en.html&lt;/a&gt;&lt;br /&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1703577017043093909-4066622572315026309?l=securitydocuments.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://securitydocuments.blogspot.com/feeds/4066622572315026309/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://securitydocuments.blogspot.com/2011/11/wow-effect.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1703577017043093909/posts/default/4066622572315026309'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1703577017043093909/posts/default/4066622572315026309'/><link rel='alternate' type='text/html' href='http://securitydocuments.blogspot.com/2011/11/wow-effect.html' title='The WOW-Effect'/><author><name>Paul Clark</name><uri>http://www.blogger.com/profile/16398754503370594236</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-1703577017043093909.post-3951033775469470807</id><published>2006-09-01T09:15:00.000-04:00</published><updated>2011-12-30T09:32:26.996-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Lenny Zeltser'/><category scheme='http://www.blogger.com/atom/ns#' term='2006'/><category scheme='http://www.blogger.com/atom/ns#' term='Logs'/><category scheme='http://www.blogger.com/atom/ns#' term='Security Information Management'/><category scheme='http://www.blogger.com/atom/ns#' term='SIM'/><title type='text'>Establishing a Practical Routine for Reviewing Security Logs</title><content type='html'>&lt;b&gt;Author:&lt;/b&gt; Lenny Zeltser&lt;br /&gt;&lt;b&gt;Date:&lt;/b&gt; September 2006&lt;br /&gt;&lt;b&gt;Summary:&lt;/b&gt; The term security information management (SIM) refers to the discipline of collecting and analyzing security events to detect or investigate malicious activities. Essential to this process are the individuals who review the gathered data and decide whether the events constitute an incident and should be escalated. Information security logs that are not regularly reviewed are hardly useful and can be a liability to an organization.&lt;br /&gt;&lt;b&gt;Source:&lt;/b&gt; &lt;a href="http://zeltser.com/log-management/"&gt;http://zeltser.com/log-management/&lt;/a&gt;&lt;br /&gt;&lt;b&gt;Note:&lt;/b&gt; Originally published in September 2006 at SearchSecurity.com&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1703577017043093909-3951033775469470807?l=securitydocuments.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://securitydocuments.blogspot.com/feeds/3951033775469470807/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://securitydocuments.blogspot.com/2011/12/establishing-practical-routine-for.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/1703577017043093909/posts/default/3951033775469470807'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/1703577017043093909/posts/default/3951033775469470807'/><link rel='alternate' type='text/html' href='http://securitydocuments.blogspot.com/2011/12/establishing-practical-routine-for.html' title='Establishing a Practical Routine for Reviewing Security Logs'/><author><name>Paul Clark</name><uri>http://www.blogger.com/profile/16398754503370594236</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
