<?xml version="1.0" encoding="windows-1252"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss version="2.0">

  <channel>
  
    <title>Lenny Zeltser's Website</title>

    <description>Lenny Zeltser's publications, research, and projects related to information security, risk management, business, and life in general.</description>

    <link>http://zeltser.com/</link>

    <copyright>Copyright 1995-2010 Lenny Zeltser. All rights reserved.</copyright>

    <docs>http://blogs.law.harvard.edu/tech/rss</docs>

    <language>en-us</language>

    <lastBuildDate>Fri, 6 Aug 2010 07:02:58 -0500</lastBuildDate>

    <pubDate>Fri, 6 Aug 2010 07:02:58 -0500</pubDate>

    <ttl>360</ttl>

    <image><link>http://www.zeltser.com/</link><url>http://www.zeltser.com/interface/lenny_zeltser_logo.gif</url></image>
	
	<feedburner:info xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" uri="zeltser" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://www.zeltser.com/contents.xml" /><item>
      <title>Comprehensive Review of SANS' Reverse-Engineering Malware Course</title>
      <description>EthicalHacker.net published a comprehensive review by Justin Kallhoff of my 5-day Reverse-Engineering Malware (REM) course.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/c05w0gqdDco" height="1" width="1"/&gt;</description>
      <link>http://www.ethicalhacker.net/content/view/320/1//</link>
      <pubDate>Fri, 6 Aug 2010 07:02:58 -0500</pubDate>
    </item>
	
	<item>
      <title>Combating Malware in the Enterprise: New 2-Day Course Debuts at Half-Price</title>
      <description>The new 2-day Combating Malware in the Enterprise course, which I present at SANS Institute, teaches a practical approach to discovering and mitigating malware threats in an enterprise environment. I authored the first half of the course, building upon my anti-malware experience. My co-author is Jason Fossen, who has amassed incredible expertise securing Microsoft Windows-based environments. The course will debut in Las Vegas at half price; full price at DC.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/HhLoQO1XY5w" height="1" width="1"/&gt;</description>
      <link>http://zeltser.com/combating-malware-course/</link>
      <pubDate>Tue, 3 Aug 2010 06:18:28 -0500</pubDate>
    </item>
	
	<item>
      <title>Interview on SecuraBit Podcast</title>
      <description>I joined the conversation on the SecuraBit Episode 61 podcast, 
	 discussing malware analysis techniques and the ways in which the REMnux distribution can assist.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/m09dGXHOPB8" height="1" width="1"/&gt;</description>
      <link>http://www.securabit.com/2010/07/22/securabit-episode-61-reverse-engineering-malware-with-a-spider-monkey/</link>
      <pubDate>Fri, 23 Jul 2010 05:56:12 -0500</pubDate>
    </item>
	
	<item>
      <title>REMnux: A Linux Distribution for Reverse-Engineering Malware</title>
      <description>REMnux is a lightweight Linux distribution for assisting malware analysts in reverse-engineering malicious software. I use REMnux in the malware analysis course I teach at SANS. REMnux is also available as a public download, and is now available as a Live CD image and as a VMware virtual appliance.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/wUYCrtyVhLg" height="1" width="1"/&gt;</description>
      <link>http://zeltser.com/remnux/</link>
      <pubDate>Thu, 15 Jul 2010 4:46:41 -0500</pubDate>
    </item>
	
	<item>
      <title>Interview on on the Ethical Hacker Network</title>
      <description>I was interviewed by the Ethical Hacker Network's Jamy Klein on topics related to malware. The full interview is at the following link.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/gZwGStzwS4I" height="1" width="1"/&gt;</description>
      <link>http://www.ethicalhacker.net/content/view/317/1/</link>
      <pubDate>Fri, 2 Jul 2010 20:16:18 -0500</pubDate>
    </item>
	
	<item>
      <title>Discussing Malicious Document Analysis at PaulDotCom Podcast</title>
      <description>I discussed the threat of malicious documents (Microsoft Office and Adobe PDF) and associated analysis techniques on the PaulDocCom podcast, Episode 200. The eposode was recorded in support of hackersforcharity.org. Download the recorded MP3 of the conversation.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/TG-osJvz7nM" height="1" width="1"/&gt;</description>
      <link>http://pauldotcom.com/2010/06/pauldotcom---security-weekely.html</link>
      <pubDate>Mon, 14 Jun 2010 7:36:12 -0500</pubDate>
    </item>
	
	<item>
      <title>Critical Log Review Checklist for Security Incidents</title>
      <description>This cheat sheet presents a checklist for reviewing critical logs when responding to a security incident. It can also be used for routine log review. (Co-authored with Anton Chuvakin.)&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/m2ZwrRkhQCw" height="1" width="1"/&gt;</description>
      <link>http://zeltser.com/log-management/security-incident-log-review-checklist.html</link>
      <pubDate>Mon, 8 Mar 2010 19:12:58 -0500</pubDate>
    </item>
	
	<item>
      <title>5 Steps to Building a Malware Analysis Toolkit Using Free Tools</title>
      <description>Examining the capabilities of malicious software allows your IT team to better assess the nature of a security incident, and may help prevent further infections. Here's how to set up a controlled malware analysis lab for free.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/z5TCKY3Q_6Q" height="1" width="1"/&gt;</description>
      <link>http://zeltser.com/malware-analysis-toolkit/</link>
      <pubDate>Sun, 7 Mar 2010 13:49:32 -0500</pubDate>
    </item>
	
	<item>
      <title>SANS Malware Course Now Covers Analysis of Malicious Documents and Memory Forensics</title>
      <description>As the world of malware continues to evolve, so must the defenders' ability to understand the nature of the threat. Fortunately, the development of tools and techniques for reverse-engineering malicious software is not standing still. I'm excited about the opportunity to cover additional approaches to analyzing malware as part of the REM course expansion. The topics added to the course include analyzing malicious document files (Microsoft Office and Adobe PDF), as well as memory forensics.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/7sfQyk8BvKQ" height="1" width="1"/&gt;</description>
      <link>http://zeltser.com/reverse-malware/day5/</link>
      <pubDate>Fri, 19 Feb 2010 07:15:21 -0500</pubDate>
    </item>
	
	<item>
      <title>Interview on InfoSec Daily Podcast</title>
      <description>I joined the conversation on the InfoSec Daily Podcast, Episode 43.
	 discussing malware threats and analysis trends.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/bHhnEPqjub4" height="1" width="1"/&gt;</description>
      <link>http://www.isdpodcast.com/2010/01/11/episode-43-lenny-zeltser-interview/</link>
      <pubDate>Fri, 15 Jan 2010 06:32:27 -0500</pubDate>
    </item>
	
	<item>
	<title>Analyzing Malicious Documents Cheat Sheet</title>
      <description>This cheat sheet outlines tips and tools for reverse-engineering malicious documents, such as Microsoft Office (DOC, XLS, PPT) and Adobe Acrobat (PDF) files.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/gm9HBVSIbwU" height="1" width="1"/&gt;</description>
      <link>http://zeltser.com/reverse-malware/analyzing-malicious-documents.html</link>
      <pubDate>Thu, 19 Nov 2009 22:31:19 -0500</pubDate>
    </item>
	
	<item>
	<title>What to Include in a Malware Analysis Report</title>
      <description>This note summarizes my recommendations for what to include in the report that describes the results of the malware analysis process.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/goznLOhh9Hw" height="1" width="1"/&gt;</description>
      <link>http://zeltser.com/reverse-malware/malware-analysis-report.html</link>
      <pubDate>Sat, 07 Nov 2009 13:05:58 -0500</pubDate>
    </item>
	
	<item>
	<title>Free Online Tools for Looking Up Potentially Malicious Websites</title>
      <description>Several organizations offer free on-line tools for looking up a potentially malicious website. Some of these tools provide historical information; others examine the URL in real time to identify threats. Here's a list of site tools.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/R7VnNSSU3j4" height="1" width="1"/&gt;</description>
      <link>http://zeltser.com/combating-malicious-software/lookup-malicious-websites.html</link>
      <pubDate>Mon, 02 Nov 2009 21:01:22 -0500</pubDate>
    </item>
	
	<item>
	<title>Public Blocklists of Suspected Malicious IPs and URLs</title>
      <description>Several organizations maintain and publish blocklists (a.k.a blacklists) of IP addresses and URLs of systems and networks suspected in malicious activities on-line. Here are the publicly-available lists.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/oZKnnrkiTI0" height="1" width="1"/&gt;</description>
      <link>http://zeltser.com/combating-malicious-software/malicious-ip-blocklists.html</link>
      <pubDate>Sun, 01 Nov 2009 19:12:55 -0500</pubDate>
    </item>
	
	<item>
	<title>Free Automated Malware Analysis Services</title>
      <description>There are several free automated malware analysis services that can examine compiled Windows executales to save us time and provide a sense about the specimen's capabilities. Here's a listing of such free on-line tools.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/68aoKfbscrQ" height="1" width="1"/&gt;</description>
      <link>http://zeltser.com/reverse-malware/automated-malware-analysis.html</link>
      <pubDate>Fri, 30 Oct 2009 09:37:11 -0500</pubDate>
    </item>
	
	<item>
	<title>What to Include in a Malware Analysis Report</title>
      <description>In my SANS Institute course, I teach security and systems professionals how to reverse-engineer malicious software. This note summarizes my recommendations for what to include in the report that describes the results of the malware analysis process.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/goznLOhh9Hw" height="1" width="1"/&gt;</description>
      <link>http://zeltser.com/reverse-malware/malware-analysis-report.html</link>
      <pubDate>Wed, 30 Sep 2009 11:58:12 -0500</pubDate>
    </item>
	
	<item>
	<title>Webcast: Malware Threats and Defenses That Work</title>
      <description>Malicious software is an integral and dangerous component of many breaches. Despite the general acknowledgement of the problem, malware thrives in the Internet ecosystem, affecting organizations large and small. In this free webcast, I will survey key characteristics of today's malware, exemplified by recent bots, trojans, and browser scripts. I will also discuss methods for fighting malware threats that stand a chance of being effective, offering my perspective on practical defensive controls. Listen
	  to the recorded webcast and download slides with full speaker notes.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/X1iAwIS7zrg" height="1" width="1"/&gt;</description>
      <link>http://zeltser.com/presentations/#malware-threats-defenses</link>
      <pubDate>Sun, 20 Sep 2009 19:14:02 -0500</pubDate>
    </item>
	
	<item>
	<title>Security Architecture for Internet Applications</title>
      <description>This two-page cheat sheet offers tips for the initial design and review of an Internet application's security architecture.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/DdfdKWWP6hw" height="1" width="1"/&gt;</description>
      <link>http://zeltser.com/security-management/security-architecture-cheat-sheet.html</link>
      <pubDate>Thu, 18 Jun 2009 18:24:46 -0500</pubDate>
    </item>

	
	<item>
	<title>Podcast: Security Risks and Mitigation Suggestions of Social Networking Sites</title>
      <description>In this podcast interview, I discuss the risks that social
	  networking sites introduce to enterprises. I also suggest a few mitigation
	  strategies. What are drop-by-drop data leaks about? Tune in to find out.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/7KeO__O0914" height="1" width="1"/&gt;</description>
      <link>http://itknowledgeexchange.techtarget.com/security-wire-weekly/social-networking-threats/</link>
      <pubDate>Wed, 10 Jun 2009 21:25:13 -0500</pubDate>
    </item>
	
	<item>
	<title>Troubleshooting Human Communications</title>
      <description>This one-page cheat sheet offers communication tips for technologists, engineers, and information workers.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/sl0s11Ma9tU" height="1" width="1"/&gt;</description>
      <link>http://zeltser.com/cheat-sheets/human-communications-cheat-sheet.html</link>
      <pubDate>Tue, 02 Jun 2009 07:15:21 -0500</pubDate>
    </item>
	
	<item>
      <title>A Discussion on the PaulDotCom Webcast: Episode 150</title>
      <description>I joined the conversation on the PaulDotCom webcast, Expisode 150,
	  talking about the need for a more pragmatic approach to information
	  security and also dicussing malware trends.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/jCjr76cVY-s" height="1" width="1"/&gt;</description>
      <link>http://pauldotcom.com/wiki/index.php/Episode150#Special_Guest:_Lenny_Zeltser_.2812:30PM-1:00PM.29_.28Download_Audio_Here.29</link>
      <pubDate>Mon, 4 May 2009 22:30:10 -0500</pubDate>
    </item>
	
	<item>

      <title>5 Security Assessment Steps for Mid-Sized Firms</title>

      <description>Budget, time and staff limitations require companies to be selective about information security spending. This article presents key steps that outline what to look for.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/Ml9bvcfntT8" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/security-assessments/assessments-for-mid-sized-firms.html</link>

      <pubDate>Mon, 4 May 2009 22:22:51 -0500</pubDate>

    </item>
	
	<item>

      <title>3 Steps to Improving Your Data Safeguards</title>

      <description>Protecting data in dynamic and diverse environments is a formidable challenge. This article explains how to better safeguard data with the help of data inventory, sharing practices, and leak detection.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/BSm_lNbL1fI" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/security-management/improving-data-safeguards.html</link>

      <pubDate>Mon, 4 May 2009 22:03:11 -0500</pubDate>

    </item>
	
	<item>

      <title>How to Be Heard in IT Security and Business.</title>

      <description>How to make your message, request, or proposal heard by the people whos support you require? Read my 10 tips with recommendations to capturing the individuals' attention.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/bYt8Po2_RuU" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/security-management/how-to-be-heard.html</link>

      <pubDate>Thu, 16 Apr 2009 16:22:15 -0500</pubDate>

    </item>
	
	<item>

      <title>A Malware Discussion on the McAfee AudioPasitics Webcast</title>

      <description>I had the pleasure of contributing to the McAfee AudioParasitics webcast, where we discussed malware trends,
	  attacker's motivations, Internet scams, and related Internet security topics.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/B_4-Dij9zG0" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/reverse-malware/audioparasitics-webcast-032009.html</link>

      <pubDate>Wed, 15 Apr 2009 09:12:22 -0500</pubDate>

    </item>
	
	<item>

      <title>A Free Introduction to Malware Analysis - Recorded Webcast</title>

      <description>In this free 1-hour webcast (recorded), I outline the process for reverse-engineering malicious software. I cover both behavioral and code analysis phases, to make this topic accessible even to individuals with a limited exposure to programming concepts. You'll learn the fundamentals and associated tools to get started with malware analysis. The password for the webcast is "preview".&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/6UlDF8SDnB0" height="1" width="1"/&gt;</description>

      <link>https://elm.sans.org/play_recording.html?recordingId=1234968272075_1236722137624</link>

      <pubDate>Tue, 03 Mar 2009 07:14:12 -0500</pubDate>

    </item>
	
	<item>
	
      <title>I am on Twitter as lennyzeltser</title>

      <description>If you are interested keeping a closer tab on
	  my activities, you are welcome to follow me on Twitter.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/r4LbCSDwCYg" height="1" width="1"/&gt;</description>

      <link>http://twitter.com/lennyzeltser</link>

      <pubDate>Tue, 13 Jan 2009 07:22:59 -0500</pubDate>

    </item>
	
	<item>

      <title>Information Security Assessment RFP Cheat Sheet</title>

      <description>This cheat sheet offers tips for planning, issuing and reviewing Request for Proposal (RFP) documents for information security assessments. It aims at helping organizations receive security RFP responses best suited for their requirements.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/JdAiqrJXn-8" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/security-assessments/security-assessment-rfp-cheat-sheet.html</link>

      <pubDate>Wed, 07 Jan 2009 21:54:34 -0500</pubDate>

    </item>
	
	<item>

      <title>Security Assessment Tips: Where the Risks Are</title>

      <description>This article describes the various types of information security assessments, and offers tips for deciding which assessment is right for your situation.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/WhEPBdgLl_U" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/security-assessment-tips/</link>

      <pubDate>Mon, 01 Dec 2008 17:27:22 -0500</pubDate>

    </item>
	
	<item>

      <title>Network DDoS Incident Response Cheat Sheet</title>

      <description>This cheat sheet offers tips for battling a network distributed denial-of-service (DDoS) attack on your infrastructure. I compiled and co-authored
	  this one-page reference based upon the insights offered by several contributors.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/OtB7ft4GEFw" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/network-os-security/ddos-incident-cheat-sheet.html
	  </link>

      <pubDate>Mon, 01 Dec 2008 08:11:12 -0500</pubDate>

    </item>

	<item>

      <title>Malware Analyst - Job Description</title>

      <description>What does the job of a malware analyst entail? If you're looking to get into this field, or if you're looking for ideas that can help you succeed there, read on. You might also find this page useful if you are creating a job description for hiring such a person.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/TO5EOK-Rs9U" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/reverse-malware/malware-analyst-job.html</link>

      <pubDate>Mon, 10 Nov 2008 07:11:19 -0500</pubDate>

    </item>

	<item>

      <title>Initial Security Incident Questionnaire for Responders</title>

      <description>This cheat sheet offers tips for assisting incident handlers in assessing the situation when responding to a qualified incident by asking the right questions. It builds upon the incident survey cheat sheet I published earlier.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/GJUpqUNyAww" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/network-os-security/security-incident-questionnaire-cheat-sheet.html</link>

      <pubDate>Wed, 05 Nov 2008 07:15:51 -0500</pubDate>

    </item>

	<item>

      <title>Security Incident Survey Cheat Sheet for Server Administrators</title>

      <description>This cheat sheet captures tips for examining a suspect server to decide whether to escalate for formal incident response. It covers the general approach, and outlines commands for Windows and Unix using built-in tools.	One-sheet version for printing and editing is included.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/AVOhQyQBKm8" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/network-os-security/security-incident-survey-cheat-sheet.html</link>

      <pubDate>Sun, 02 Nov 2008 16:28:07 -0500</pubDate>

    </item>
	
	<item>

      <title>Reverse-Engineering Cheat Sheet</title>

      <description>I created a one-page cheat sheet of shortcuts and tips for reverse-engineering malware.
	  It covers the general malware analysis process, as well as useful tips for OllyDbg, IDA Pro, and
	  other tools. An editable version of this file is also available, if you'd like to customize the
	  cheat sheet for your own needs. My reverse-engineering malware course explores these, and other
	  useful techniques.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/bWQ_DKAS6BA" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/reverse-malware/reverse-malware-cheat-sheet.html</link>

      <pubDate>Mon, 18 Aug 2008 10:08:22 -0500</pubDate>

    </item>
	
	<item>

      <title>Webcast on Penetration Testing Beyond Front-Line Exploits</title>

      <description>In this free one-hour webcast, I discuss tools and techniques for going beyond the basic exploits-focused penetration testing methodology. To attend it live, tune in on August 5 at 1:00 PM EDT. An archived version of the webcast will be available.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/qoxW6fJ8Ltk" height="1" width="1"/&gt;</description>

      <link>https://www.sans.org/webcasts/show.php?webcastid=91586</link>

      <pubDate>Fri, 18 Jul 2008 16:55:12 -0500</pubDate>

    </item>
	
	<item>

      <title>Webcast on the State of Malware in 2008</title>

      <description>In this free one-hour webcast, I examine the characteristics of today's malware, exemplified by recently-seen bots, downloaders, keyloggers, and malicious scripts.An archived version of the webcast is available, complete with audio and presentation slides.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/4EMgO6L6Quc" height="1" width="1"/&gt;</description>

      <link>https://www.sans.org/webcasts/show.php?webcastid=91988</link>

      <pubDate>Thu, 12 Jun 2008 11:45:11 -0500</pubDate>

    </item>
	
	<item>

      <title>Stopping Malware on its Tracks</title>

      <description>This article presents recommendations for addressing the risks associated with modern malware. Stopping malware requires an approach grounded in awareness and control. The article includes a link to my related webcast on protecting users from web-based threats.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/-swxcfPj3sU" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/stopping-malware/</link>

      <pubDate>Sat, 7 Jun 2008 16:07:12 -0500</pubDate>

    </item>

	<item>

      <title>Testing for Client-Side Vulnerabilities</title>

      <description>When searching for low-hanging fruit, attackers are paying closer attention to client-side vulnerabilities on internal workstations. So should you, when performing security assessments. This article describes how to test for client-side vulnerabilities during a security assessment.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/flARkMl7ubM" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/client-side-vulnerabilities/</link>

      <pubDate>Thu, 1 May 2008 11:40:15 -0500</pubDate>

    </item>

	<item>

      <title>Social Engineering During Security Assessments</title>

      <description>Rare is the case when a determined penetration tester or attacker fails to trick his targets into releasing sensitive information. This article explains how to incorporate social engineering testing into information security assessments.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/dsyMvoeHPh8" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/social-engineering/</link>

      <pubDate>Wed, 19 Mar 2008 22:36:16 -0400</pubDate>

    </item>

	<item>
      <title>Malware Course Interview on the PaulDotCom webcast.</title>

      <description>PaulDotCom interviewed SEC602 course co-authors during its January 24, 2008, webcast. We discussed key procedures for malware analysis, malware trends, and the expansion of the Reverse-Engineering Malware course. MP3 of the webcast is now available.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/5WHGDYfbQDI" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/reverse-malware/pauldotcom_webcast_012008.html</link>

      <pubDate>Sun, 27 Jan 2008 21:49:15 -0500</pubDate>

    </item>

	<item>

      <title>Announcing the expansion of the Reverse-Engineering Malware course.</title>

      <description>Announcing the expansion of the Reverse-Engineering Malware course. Here's the full announcement.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/CYZ-6BFmi2c" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/reverse-malware/expansion-announcement-2008.html</link>

      <pubDate>Fri, 28 Dec 2007 11:58:21 -0500</pubDate>

    </item>
	
	<item>

      <title>Emerging Information Security Threats</title>

      <description>This article reviews the emerging threats landscape of information security, including targeted attacks, client-side infections, advanced malware, bots, and browser malware. It was originally published in May 2007 issue of Information Security magazine.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/p37n5fXtZOI" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/emerging-threats2007/</link>

      <pubDate>Sun, 10 Jun 2007 11:12:15 -0500</pubDate>

    </item>

	<item>

      <title>Penetration Testing with Confidence - SANS Webcast</title>

      <description>In this SANS webcast I present 10 key issues you need to address for a successful penetration test.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/5nzw9EsO-b4" height="1" width="1"/&gt;</description>

      <link>https://www.sans.org/webcasts/show.php?webcastid=91101</link>

      <pubDate>Sat, 21 Apr 2007 12:57:21 -0500</pubDate>

    </item>

	<item>

      <title>Certification Magazine Article on Defending Endpoints</title>

      <description>The reporter interviewed me for this article on protecting organizations against endpoint threats.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/POukuOU2ABY" height="1" width="1"/&gt;</description>

      <link>http://www.certmag.com/articles/templates/CM_COMM_Security_article.asp?articleid=2432&amp;zoneid=262</link>

      <pubDate>Tue, 23 Jan 2007 08:18:22 -0500</pubDate>

    </item>

	<item>

      <title>Malware Analysis Shortcuts - SANS Webcast</title>

      <description>In this SANS' Ask The Expert webcast I review several techniques and free tools for speeding-up the analysis of malicious software.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/9OyqktRsgmI" height="1" width="1"/&gt;</description>

      <link>https://www.sans.org/webcasts/show.php?webcastid=90771</link>

      <pubDate>Sun, 14 Jan 2007 11:28:13 -0500</pubDate>

    </item>

		<item>

      <title>A Practical Routine for Reviewing Security Logs</title>

      <description>This article presents several tips for establishing a practical routine for

  reviewing information security logs.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/wrbtSnZX9wU" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/presentations/</link>

      <pubDate>Sun, 29 Oct 2006 12:29:30 -0500</pubDate>

    </item>

	<item>

      <title>Situational Awareness for Infosec Professionals</title>

      <description>This article, published in Information Security Magazine, describes an approach to ensuring a project's success by becoming attuned to the organization's dynamics.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/wrbtSnZX9wU" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/presentations/</link>

      <pubDate>Mon, 4 Sep 2006 11:01:32 -0500</pubDate>

    </item>

	<item>

      <title>Browser Threat Landscape</title>

      <description>This webcast, presented at SANS Institute, examines the nature of threats that target the Web browser, reviewing three major categories of browser-oriented attacks.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/wrbtSnZX9wU" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/presentations/</link>

      <pubDate>Mon, 4 Sep 2006 00:42:32 -0500</pubDate>

    </item>

	<item>

      <title>Beyond Vulnerability Assessment: 10 Questions</title>

      <description>This presentation, prepared for ISSA, explores common information security risks that organization face, and suggests 10 questions worth asking when establishing a robust IT security program.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/wrbtSnZX9wU" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/presentations/</link>

      <pubDate>Sun, 21 May 2006 11:23:45 -0500</pubDate>

    </item>

	<item>
      <title>Penguins of Patagonia Video</title>

      <description>This 1-minute video of Magellan Penguins records my observations from a visit to Argentina's Patagonia region.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/lIzGw0UHL9E" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/media/penguins/</link>

      <pubDate>Wed, 18 Jan 2006 21:18:06 -0500</pubDate>

    </item>

    <item>

      <title>Inside Network Perimeter Security</title>

      <description>This book, which I produced and co-authored, is a practical guide to designing, deploying, and maintaining network defenses.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/eCq3EgqN-UY" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/insidenps/</link>

      <pubDate>Thu, 3 Nov 2005 23:17:44 -0500</pubDate>

    </item>

    <item>

      <title>About Me</title>

      <description>If you are interested in learning a bit more about me, this page is for you. Here I list some autobiographical facts and outline a several of my projects and accomplishments. After all, activity suggests a life filled with purpose.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/A5taVO9_S1Q" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/about/</link>

      <pubDate>Mon, 6 Jun 2005 23:42:37 -0500</pubDate>

    </item>

    <item>

      <title>Malware: Fighting Malicious Code</title>

      <description>I contributed a few chapters to this Ed Skoudis' book, which focuses on defending against the threat of malicious code.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/qYeWeB6pcv0" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/malware-book/</link>

      <pubDate>Mon, 3 Nov 2003 23:17:11 -0500</pubDate>

    </item>

    <item>

      <title>Presentations and Speaking Engagements</title>

      <description>Organizations periodically invite me to present to them on topics related to IT risk management and security in business. Here are some of my recent presentations.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/wrbtSnZX9wU" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/presentations/</link>

      <pubDate>Wed, 3 Nov 2004 23:16:53 -0500</pubDate>

    </item>

    <item>

      <title>Trends and Dynamics of the Endpoint Security Industry</title>

      <description>This paper examines trends and dynamics of the endpoint security industry, and evaluates the performance of market leaders such as Symantec in the context of these factors.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/RNSqwrbVmSI" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/endpoint-security-trends/</link>

      <pubDate>Fri, 3 Jun 2005 23:16:09 -0500</pubDate>

    </item>

    <item>

      <title>Firewall Deployment for Multitier Applications</title>

      <description>This article explores the use of multiple firewalls for protecting resources according to business requirements of multitier applications.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/OwUygoJjPOw" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/multi-firewall/</link>

      <pubDate>Fri, 5 Apr 2002 23:15:51 -0500</pubDate>

    </item>

    <item>

      <title>The World-Wide Web: Origins and Beyond</title>

      <description>This often-cited article discusses the history and the structure of the Web, and offers a peak at the future of information sharing.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/45ScfMYFMCc" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/web-history/</link>

      <pubDate>Wed, 1 Nov 1995 23:15:31 -0500</pubDate>

    </item>

    <item>

      <title>The Evolution of Malicious Agents</title>

      <description>This article examines the evolution of malicious agents by analyzing popular viruses, worms, and trojans, and detailing the possibility of a new breed of malicious software.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/FWhrxR3mOhg" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/malicious-agents/</link>

      <pubDate>Fri, 3 Nov 2000 23:15:07 -0500</pubDate>

    </item>

    <item>

      <title>Information Security Search</title>

      <description>Save time when researching security issues by focusing on specific sites of interests.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/z5yPWFglrVI" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/infosec-search/</link>

      <pubDate>Thu, 3 Nov 2005 23:02:03 -0500</pubDate>

    </item>

    <item>

      <title>The Early History of Radio Broadcasting</title>

      <description>This paper explores early radio broadcasting efforts by the United States and the Soviet Union.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/lwMB7xpNsRc" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/radio-history/</link>

      <pubDate>Fri, 3 Mar 1995 23:14:41 -0500</pubDate>

    </item>

    <item>

      <title>Education and the Internet</title>

      <description>This paper examines views of American Founders on education, and applies them to the Internet's role as a catalyst for improving the American education system.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/M0YL4iQikvA" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/education-internet/</link>

      <pubDate>Fri, 3 May 1996 23:23:41 -0500</pubDate>

    </item>

    <item>

      <title>Intrusion Detection Analysis: A Case Study</title>

      <description>This paper provides a detailed analysis of several anomalous network events, and illustrates the techniques for examining alerts and logs generated by a network intrusion detection system.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/RoqV7PirZRQ" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/intrusion-detection-analysis/</link>

      <pubDate>Sat, 3 Jun 2000 23:13:36 -0500</pubDate>

    </item>

    <item>

      <title>Auditing UNIX Systems: A Case Study</title>

      <description>This report presents results of a detailed information security audit of UNIX systems that belong to a fictitious company. It illustrates an approach to performing such an examination.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/qjUSC-4ezpc" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/auditing-unix-systems/</link>

      <pubDate>Sat, 3 Nov 2001 23:13:19 -0500</pubDate>

    </item>

    <item>

      <title>Network Perimeter Defense Architecture: A Case Study</title>

      <description>This paper documents a comprehensive architecture for defending network resources of a fictitious company. It illustrates an approach to setting up a strong security perimeter.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/gSSvLzLL88E" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/network-perimeter-defense/</link>

      <pubDate>Sun, 3 Dec 2000 23:12:59 -0500</pubDate>

    </item>

    <item>

      <title>Reverse-Engineering Malware Paper</title>

      <description>This paper defines a framework for using easily-accessible tools and a dual-phased approach to examine malware such as viruses, worms, and trojans.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/8Z0JpVtvvC8" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/reverse-malware-paper/</link>

      <pubDate>Sat, 3 Nov 2001 23:12:39 -0500</pubDate>

    </item>

    <item>

      <title>High-Five Calvin</title>

      <description>Slap a high five to the infamous Calvin, just because you have nothing better to do.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/XZTjgK0taDI" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/highfive/</link>

      <pubDate>Sun, 3 Apr 2005 23:11:24 -0500</pubDate>

    </item>

    <item>

      <title>Life's Inspirations</title>

      <description>"Lying in bed listening to the rain outside." "Laughing for no reason at all." Take a look at what folks submitted to me over the years, and see what inspires people of the world.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/3srUfs3aG5k" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/inspirations/</link>

      <pubDate>Sun, 3 Apr 2005 23:08:54 -0500</pubDate>

    </item>

    <item>

      <title>The Poetry Corner</title>

      <description>When feeling particularly inspired, I write short verse. Curious about the results? Take a look.&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/gOKrSuZFE2Y" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/poetry-corner/</link>

      <pubDate>Sat, 2 Apr 2005 23:08:13 -0500</pubDate>

    </item>

    <item>

      <title>The Humor Collection</title>

      <description>I've assembled a few humorous lists circulating on the Internet, such as "The Canonical List of Answering Machine Messages" and "More Than Fifty Ways to Get Rid of Blind Dates."&lt;img src="http://feeds.feedburner.com/~r/zeltser/~4/WkPiRByozTg" height="1" width="1"/&gt;</description>

      <link>http://zeltser.com/humor/</link>

      <pubDate>Fri, 1 Apr 2005 22:57:49 -0500</pubDate>

    </item>

  </channel>

</rss>
