DST OMG!

Well, with the impending doom of DST upon us, I did a very short primer presentation on DST at our most recent CWUG.

It is not intended to be the end-all be-all presentation on DST… It is just what it was intended to be – A Primer!

So with that said, here is a copy of the presentation in its wondrous PDF converted format! Cheers!

Christopher Kusek

DST 2007

Links Page


New registry entry for controlling the TCP Acknowledgment (ACK) behavior in Windows XP and in Windows Server 2003

http://support.microsoft.com/kb/328890

AQADMCLI

delmsg flags=SENDER,sender=postmaster@domain.com

http://blog.sapien.com/current/2006/11/28/command-line-one-liners.html

Cisco VPN PCF Decoder

Open the PCF file in notepad, grab the text after enc_GroupPwd= and go to the following website:
http://www.unix-ag.uni-kl.de/~massar/bin/cisco-decode
Copy and paste the encrypted code into that and VOILA! Clear text password is generated.

Real Estate valuation websites.

Realestateabc.com
Domania.com
Zillow.com

reviews of 15 security podcasts at
http://www.owasp.org/index.php/Reviews_of_security_podcasts

List of security Podcasts List of security Podcasts
http://realtime-voip.typepad.com/voipcommunity/2006/09/it_security_pod.html
I would say that off the top of my head a list of 10 very popular [keyword *remote], non database related vulns would be:

   1: 1. Cross-site scripting
   2: 2. Remote File Includes
   3: 3. HTML and script code injection
   4: 4. Directory traversals
   5: 5. Authentication bypass
   6: 6. Remote command/code execution
   7: 7. DoS - usually via memory corruption (failed overflows against differing SPs or hotfixes), resource exhaustion, sometimes a cool race condition or something.
   8: 8. Buffer overflows (heap/stack/format string)
   9: 9. Privilege escalation
  10: 10. Information disclosures (arbitrary read and sometimes write vulns [different class]. Often coupled with dir traversal
  11: Besides OWASP Top Ten there is also WASC (Web Application SecurityConsortium) threat classification:http://www.webappsec.org/projects/threat/

I was interviewed here about the Kindle

http://news.medill.northwestern.edu/chicago/news.aspx?id=92537

Efficiency!

I’m a particular fan of efficiency and all the joys brought upon by it. Some particular areas of Efficiency interest have been in good light which is not only bright, low cost for power and healthy vs SAD, it’s also good at maintaining attention and awareness. I’ll actually do my whole writeup on 6500K and why it rocks the house at some point in the future, but for now.. let us discuss… POWER!

Someone recently informed me of this little trinket, very powerful and cool indeed and I’m sure will greatly benefit any household. – Kill A Watt!

http://www.thinkgeek.com/gadgets/electronic/7657/

The Kill-A-Watt allows you to connect your appliances and assess how efficient they are. A large LCD display counts consumption by the Kilowatt-hour, just like utility companies. You can figure out your electrical expenses by the hour, day, week, month, even an entire year. Monitor the quality of your power by displaying Voltage, Line Frequency, and Power Factor.

This thing is so absolutely cool, I’m ordering one rightnow as I write this! I’m sure the uses will be endless.. though for the moment, I’ll start with one, and decide if I’ll have a need to try to implement more into the household. This will certainly help in any event you have interest in trending or forecasting whether some particular appliances are useful or completely useless and are eating you out of house and home!

I’ll let you know how I feel about it after I use it for a while!

Christopher Kusek

Free second chance to pass Microsoft Exams! (Officially Expired)

Have you ever taken a Microsoft Exam, and failed and feh, now you need to spend more money to take it! Now with this. You can take it, and if you fail you get a free second chance to take it! If you go to the site listed at the bottom, it’ll register you for this or that and give you a coupon code to use when you register at Prometric or Vue. Now you can register to get the information… or not, and just use the Codes. This expires by June 30th, so if I had to take any random tests (Which I do) I’ll be doing it in this time frame!

Those Coupon codes are:

MCP Exams: 24FREE
Microsoft Dynamic Exams: MBS2S

http://www.prometric.com
http://www.vue.com
http://www.microsoft.com/learning/mcp/offers/2ndchance/
~ Christopher Kusek

PS. If you’re going to be taking any Microsoft Exams (Or cisco, or whatever) Let me know, and perhaps I can help. I take and study for exams all the time, and find them considerably easy so I can break through the barriers of prevention. Let me know, and I just may be able to point you in the right direction to help guarantee your success!

IMPORTANT: These codes can be used if/when you fail an exam, you must CALL Prometric and give them the “24FREE” Code, and they will schedule your re-take free of charge. The number for Prometric is 800.755.EXAM (3926)

Just getting things started

Well, this is the beginning of things to come.

Coming soon in the future will be random worlds of Odd Exchange and Windows circumstances, along with aggressive internalized Product reviews. Add to that manipulations and modifications of technology, both in the current, future and some past things often ignored!

Perhaps if things kick off well, I can go into detail of my history with Baltimization.

~ Christopher Kusek