Paul Melson's Blog
Blog about information security and other random topics
Thursday, May 20, 2010
The SIEM Market Discussion Continues
›
Bill Roth of LogLogic commented on my Twitter exchange with Rocky DeStefano of Visible Risk where we talked about LogLogic's announcem...
Twitter Killed the Blog Star
›
I've been really busy both in my personal and professional life for the past year or so, with no signs of slowing down soon. But I have...
1 comment:
Wednesday, April 14, 2010
Snort Signatures for New Koobface Variant
›
The first rule is actually how we caught the first incident. The binary is served on non-standard HTTP ports via fast-flux servers. It...
4 comments:
Friday, January 22, 2010
Security Metrics and Data Visualization
›
I've just finished compiling the security incident handler case statistics for 2009. This is the second year in a row that I've use...
1 comment:
Monday, December 28, 2009
Malware Analysis Toolkit for 2010
›
Back in 2008 I posted a list of the tools I use for doing malware analysis. The tools I use have changed over time, and rather than just ta...
1 comment:
Wednesday, November 18, 2009
ArcSight Logger VS Splunk
›
You are here because you are searching for information on Splunk vs. ArcSight Logger. I actually wrote this post months before posting it, ...
3 comments:
Monday, November 9, 2009
Reversing JavaScript Shellcode: A Step By Step How-To
›
With more and more exploits being written in JavaScript, even some 0-day , there is a need to be able to reverse exploits written in JavaScr...
2 comments:
‹
›
Home
View web version