Andrew Hay

August 29, 2007
by Andrew Hay
3 Comments

Suggested Blog Reading – Wednesday August 29th, 2007

This week is no better than the last. Hopefully I’ll be able to get these posts back on track shortly. Here is the list: Virtualized rootkits – Part 1 / Virtualized rootkits – Part 2 – Interesting articles on virtualized … Continue reading

August 22, 2007
by Andrew Hay
1 Comment

Book Review: PCI Compliance: Implementing Effective PCI Data Security Standards

When I first received this book from Syngress I was very excited. I knew nothing about PCI compliance — other than it was big ticket item and everyone processing Visa transactions was affected in some way because of it. I … Continue reading

August 22, 2007
by Andrew Hay
0 comments

Suggested Blog Reading – Wednesday August 22nd, 2007

Man what a week so far. It’s been so busy that I don’t have a moment to breath. Here is the list: CSFA Test Vouchers – You still have to make your way there but the promise of free vouchers … Continue reading

August 20, 2007
by Andrew Hay
0 comments

Suggested Blog Reading – Sunday August 19th, 2007

In laws are in town this week, which tends to cut down on computer time. On the plus side we did get some good work done in the garage this weekend as well as install a filter in the basement … Continue reading

August 17, 2007
by Andrew Hay
0 comments

Enterprise Log Management for Incident Handlers at SANS Network Security 2007 — Caesars Palace, Las Vegas, Nevada

Looks like I’ll be making the trip to SANS Network Security 2007 to present a Q1 Labs sponsored lunch & learn on Thursday, September 27th in LAS VEGAS, NEVADA! The topic of the lunch & learn is Enterprise Log Management … Continue reading

August 17, 2007
by Andrew Hay
1 Comment

Sourcefire Aquires ClamAV™ Project

Looks like Marty and Co. have acquired ClamAV. I’m a huge fan of ClamAV on Windows, Linux, and OSX. From the press release: “ClamAV is one of the most successful technologies in the open source security arena. This acquisition not … Continue reading

August 17, 2007
by Andrew Hay
2 Comments

Suggested Blog Reading – Thursday August 16th, 2007

What a crazy, crazy, crazy week. Here is the list: XORSearch V1.2.0: XOR & ROL – I look forward to Didier’s upcoming post with further details. Last week I analyzed a piece of malware that had each byte of its … Continue reading

August 15, 2007
by Andrew Hay
0 comments

Best Log Message Ever!

Error Message %OC12ATM-3-DICK_TRACY : [chars] and %C10KATM-3-DICK_TRACY : [chars] Explanation A “no valid excuse” event has occurred. Recommended Action Copy the error message exactly as it appears on the console or in the system log, contact your Cisco technical support … Continue reading

August 13, 2007
by Andrew Hay
1 Comment

Suggested Blog Reading – Tuesday August 14th, 2007

Vacation….over I was able to get away from the office for an entire week. No phone, internet, computers, email…it was glorious! I highly recommend it as a way to recharge your batteries if you’re feeling a little worn out. And … Continue reading

August 13, 2007
by Andrew Hay
0 comments

ChicagoCon 2007 is Fast Approaching

Unfortunately I’m not able to attend this event but if you’re in the area I encourage you to drop by: ChicagoCon combines a professional security conference, certification training and a hacker con into a single, unique event. Not just another … Continue reading