Security Ripcord


Archive for December, 2008

Scalp External XML Reporter (SEXR)

Tuesday, December 30th, 2008 Posted in IDS, Logging, Security, Web | 2,874 views No Comments »

While reviewing some Apache log files the other day I started to wonder if somebody had already come up with a way to detect common attack characteristics by the information ... Read more..

Discovering File Types Using Content Histograms

Monday, December 22nd, 2008 Posted in Security, forensics | 1,721 views No Comments »

I was reviewing a hard drive the other day when I located several deleted Windows Event Log files.  A quick review showed that I could recover both files but I ... Read more..

Three New RegRipper Plugins

Sunday, December 21st, 2008 Posted in Poll, Security, forensics | 2,757 views 1 Comment »

Over the past couple weeks I have had a growing appreciation for the hard work that Harlan Carvey has put into his Windows Registry parsing tool RegRipper.  Although tools such ... Read more..

Still Kicking

Thursday, December 11th, 2008 Posted in Security | 1,165 views No Comments »

I am sitting here in Houston International Airport waiting for them to cancel my flight. Lucky for me (sarcasm) they just keep pushing it back hour by hour. ... Read more..