Paul Melson's Blog

Blog about information security and other random topics

Thursday, May 20, 2010

The SIEM Market Discussion Continues

›
Bill Roth of LogLogic commented on my Twitter exchange with Rocky DeStefano of Visible Risk where we talked about LogLogic's announcem...

Twitter Killed the Blog Star

›
I've been really busy both in my personal and professional life for the past year or so, with no signs of slowing down soon. But I have...
1 comment:
Wednesday, April 14, 2010

Snort Signatures for New Koobface Variant

›
The first rule is actually how we caught the first incident. The binary is served on non-standard HTTP ports via fast-flux servers. It...
4 comments:
Friday, January 22, 2010

Security Metrics and Data Visualization

›
I've just finished compiling the security incident handler case statistics for 2009. This is the second year in a row that I've use...
1 comment:
Monday, December 28, 2009

Malware Analysis Toolkit for 2010

›
Back in 2008 I posted a list of the tools I use for doing malware analysis. The tools I use have changed over time, and rather than just ta...
1 comment:
Wednesday, November 18, 2009

ArcSight Logger VS Splunk

›
You are here because you are searching for information on Splunk vs. ArcSight Logger. I actually wrote this post months before posting it, ...
3 comments:
Monday, November 9, 2009

Reversing JavaScript Shellcode: A Step By Step How-To

›
With more and more exploits being written in JavaScript, even some 0-day , there is a need to be able to reverse exploits written in JavaScr...
2 comments:
‹
›
Home
View web version

About Me

My photo
PaulM
My name is Paul and I've been working in IT for the past 23 years, infosec for the past 18. I am happily married and have two daughters around whom my world revolves.
View my complete profile
Powered by Blogger.