<?xml version="1.0" encoding="utf-8"?>
<rss version="0.92">
<channel>
<title>SecuObs.com</title>
<link>http://www.secuobs.com</link>
<description>Observatoire de la securite Internet</description>
<language>fr</language>
<webMaster>webmaster@secuobs.com</webMaster>
 <item><title>Honeynet Project Workshop  9-11 May 2016  San Antonio, TX, USA</title><description>2015-11-27 15:23:36 - The Honeynet Project :    San Antonio 2016 read more </description><link>http://www.secuobs.com/revue/news/591389.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/591389.shtml</guid></item>
<item><title>Interview with our new CEO Andre Ludwig</title><description>Secuobs.com : 2015-10-22 20:28:25 - The Honeynet Project -    1 Hello Andre and congratulations on getting the CEO job   Can you please tell us a bit more about yourself What is your background for instance   Oh where to start  I have been in the security field for the last 15 or so years, doing various things like running IT security for small mortgage companies, being a pentester audit consulting type, doing front line IDS IR work for large global infrastructure providers, as well as building custom detection systems and analysis tools for large read more </description><link>http://www.secuobs.com/revue/news/587667.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/587667.shtml</guid></item>
<item><title>Interview with our new CEO Andre Ludwich</title><description>Secuobs.com : 2015-10-22 19:35:15 - The Honeynet Project -    1 Hello Andre and congratulations on getting the CEO job   Can you please tell us a bit more about yourself What is your background for instance   Oh where to start  I have been in the security field for the last 15 or so years, doing various things like running IT security for small mortgage companies, being a pentester audit consulting type, doing front line IDS IR work for large global infrastructure providers, as well as building custom detection systems and analysis tools for large read more </description><link>http://www.secuobs.com/revue/news/587665.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/587665.shtml</guid></item>
<item><title>Announcing the new CEO of the Honeynet Project</title><description>Secuobs.com : 2015-10-17 12:41:04 - The Honeynet Project -    Folks, read more </description><link>http://www.secuobs.com/revue/news/587075.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/587075.shtml</guid></item>
<item><title>Low Interaction Honeypots Revisited</title><description>Secuobs.com : 2015-08-06 21:30:09 - The Honeynet Project -    TL DR  Low interaction honeypots are designed to emulate vulnerable services and potentially detect attacks without exposing full operating system functionality Although they have evolved in many ways over the past 15 years, understanding their limitations and sometimes inherent design weaknesses is important when you consider deploying them read more </description><link>http://www.secuobs.com/revue/news/579539.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/579539.shtml</guid></item>
<item><title>Interview with Per Thorsheim, PasswordsCon Founder and Organizer, speaker at the Honeynet Workshop 2015</title><description>Secuobs.com : 2015-04-13 11:24:55 - The Honeynet Project -    Per Thorsheim is the founder   main organizer of Passwordscon, the worlds first and only conference about passwords and digital authentication read more </description><link>http://www.secuobs.com/revue/news/567043.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/567043.shtml</guid></item>
<item><title>Interview with Kai Roer,  Hacking Your Mind  at Honeynet Workshop 2015</title><description>Secuobs.com : 2015-03-29 09:41:24 - The Honeynet Project -    Kai Roer is focusing on user awareness, security culture and the study of how our human mind makes us vulnerable and exploitable He consults with people and organizations on the interpersonal skills that are vital to a successful and trusted secure environment He is the creator of the Security Culture Framework, a columnist at Help-Net Security and the author of a number of books about cybersecurity and leadership read more </description><link>http://www.secuobs.com/revue/news/565214.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/565214.shtml</guid></item>
<item><title>Forensic Challenge 14    Weird Python </title><description>Secuobs.com : 2015-03-19 07:08:37 - The Honeynet Project -    Just in time for the Honeynet Workshop in Stavanger, we're happy to announce a new Forensic Challenge  What's more, there are great prizes for the best submissions  read more </description><link>http://www.secuobs.com/revue/news/564015.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/564015.shtml</guid></item>
<item><title>An interview with Lance Spitzner, founder of The Honeynet Project</title><description>Secuobs.com : 2015-03-17 16:27:09 - The Honeynet Project -    Lance Spitzner, founder of the Honeynet Project, is an internationally recognized leader in the field of cyber threat research and security training and awareness read more </description><link>http://www.secuobs.com/revue/news/563782.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/563782.shtml</guid></item>
<item><title>Deutsche Telekom Give Their Views on the Hottest Topics at Honeynet Project Workshop 2015 </title><description>Secuobs.com : 2015-03-05 09:53:16 - The Honeynet Project -    This year, the annual Honeynet Project Workshop 2015 event will be sponsored by Deutsche Telekom In anticipation of the event, we did an exclusive interview with André Vorbach  IT-Security Expert  and Markus Schmall  Vice President IT Security  to find out how Deutsche Telekom is getting involved and what they see as the hot topics at this year s workshop read more </description><link>http://www.secuobs.com/revue/news/562231.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/562231.shtml</guid></item>
<item><title>Honeynet Project Accepted for Google Summer of Code 2015</title><description>Secuobs.com : 2015-03-03 02:59:19 - The Honeynet Project -    After a tense few days of waiting, which is always the most stressful part of GSoC for mentoring organizations and org admins, 19 00 UTC today was the moment of truth when some lucky orgs found out that they were accepted for GSoC 2015, and other orgs sadly discovered that they would not be taking part read more </description><link>http://www.secuobs.com/revue/news/561832.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/561832.shtml</guid></item>
<item><title>Google Summer of Code 2015</title><description>Secuobs.com : 2015-02-20 08:54:30 - The Honeynet Project -    With winter in the northern hemisphere beginning to turn into spring, it is once again time to think about summer And of course, for many open source organizations, that means Google Summer of Code  GSoC  read more </description><link>http://www.secuobs.com/revue/news/560366.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/560366.shtml</guid></item>
<item><title>Meet the CEO</title><description>Secuobs.com : 2014-11-25 21:51:45 - The Honeynet Project -    Angelo, you have been HNP CEO for more than over a year now What were your goals when you started and did you achieve them  First of all let me confess that it seems really incredible to me that a year has already gone by I took over the CEO position for the Honeynet Project from Christian Seifert more than a year ago and at times the role appeared quite intimidating to me Christian and Honeynet Project founder Lance Spitzner did an awesome job of driving the organization read more </description><link>http://www.secuobs.com/revue/news/547255.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/547255.shtml</guid></item>
<item><title>Honeynet Project Workshop  18-20 May 2015  Stavanger, Norway</title><description>Secuobs.com : 2014-11-23 16:41:02 - The Honeynet Project -    HPW2015 Join us  http stavanger2015honeynetorg  </description><link>http://www.secuobs.com/revue/news/546874.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/546874.shtml</guid></item>
<item><title>In-depth Interview  Maximilian Hils</title><description>Secuobs.com : 2014-04-18 23:36:00 - The Honeynet Project -    Maximilian Hils  maximilianhils  is a student of Information Systems at WWU Münster, Germany He is one of the two core developers of mitmproxy, on which he started to work on during his Honeynet Google Summer of Code project in 2012 In his spare time, he develops web applications and slays SSL dragons whereever he finds them Recently, he developed an interest in Cloud Storage Security and Security Usability He will be giving a live demo about  slaying SSL dragons with mitmproxy  at the upcoming annual The Honeynet Project workshop in Warsaw on May 13 Here you have a nice way to discover something more about him and his work read more  IMAGE  </description><link>http://www.secuobs.com/revue/news/509203.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/509203.shtml</guid></item>
<item><title>In-depth Interview  Sebastian Pöplau</title><description>Secuobs.com : 2014-04-18 23:19:14 - The Honeynet Project -    Sebastian Pöplau is the lead developer of the Ghost USB Honeypot, a detection system for USB malware He is an IT security enthusiast and a full member of the Honeynet Project He has studied in Bonn, Germany, and Santa Barbara, CA, and works with Lastline He will be giving a presentation during the annual The Honeynet Project Workshop in Warsaw on May 12, about code-loading techniques on Android Here you have a good chance to get to know him a bit more read more </description><link>http://www.secuobs.com/revue/news/509201.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/509201.shtml</guid></item>
<item><title>GSoC 2014 Mentoring Organization Applications</title><description>Secuobs.com : 2014-02-14 07:39:16 - The Honeynet Project -    Over the past five years, The Honeynet Project has been had the pleasure of mentoring over 70 lucky bachelors, masters and PhD students from all over the world through Google Summer of Code  GSoC , Google's ongoing programme of support for international students working on free open source software  FOSS  Together we have worked on a large number of information security tools, including some that have gone on to be the leading examples of tools in their chosen field read more  IMAGE  </description><link>http://www.secuobs.com/revue/news/497833.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/497833.shtml</guid></item>
<item><title>GSoC 2014 Organization Applications</title><description>Secuobs.com : 2014-02-14 06:13:25 - The Honeynet Project -    Over the past five years, The Honeynet Project has been had the pleasure of mentoring over 70 lucky bachelors, masters and PhD students from all over the world through Google Summer of Code  GSoC , Google's ongoing programme of support for international students working on free open source software  FOSS  Together we have worked on a large number of information security tools, including some that have gone on to be the leading examples of tools in their chosen field read more </description><link>http://www.secuobs.com/revue/news/497822.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/497822.shtml</guid></item>
<item><title>Google Summer Of Code 2013 Student Applications now closed and some statistics</title><description>Secuobs.com : 2013-05-09 19:37:59 - The Honeynet Project -    Having being very pleased to be accepted once again by Google as one of the lucky mentoring organization for GSoC 2013, we had eagerly awaited the student application period starting and the excitement  and occasional drama  that always brings read more  IMAGE  </description><link>http://www.secuobs.com/revue/news/444460.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/444460.shtml</guid></item>
<item><title>Google Summer of Code 2013 Student Application Deadline Friday May 3rd 19 00 UTC</title><description>Secuobs.com : 2013-05-03 00:17:46 - The Honeynet Project -    With less that 24 hours now remaining until the official deadline for Google Summer of Code  GSoC  2013 student applications  19 00 UTC Friday May 3rd 2013 , this is our final call for interested and eligible GSoC students read more </description><link>http://www.secuobs.com/revue/news/443274.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/443274.shtml</guid></item>
<item><title>Google Summer of Code 2013 Participating Mentoring Organizations Announced</title><description>Secuobs.com : 2013-04-09 03:10:58 - The Honeynet Project -    After a tense few days for all of the organizations who applied, The Honeynet Project is delighted to announce that it has once again been selected as one the participating mentoring organization for Google Summer of Code  GSoC  2013 read more  IMAGE  </description><link>http://www.secuobs.com/revue/news/438277.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/438277.shtml</guid></item>
<item><title>GSoC 2013 Announced</title><description>Secuobs.com : 2013-03-02 22:42:31 - The Honeynet Project -    Like many other open source organizations, The Honeynet Project's members have been excitedly waiting to hear if Google would be running their Google Summer of Code  GSoC  initiative again this year Well, the wait the over and GSoC 2013 has officially been announced on Google's Open Source Blog This is great news  read more </description><link>http://www.secuobs.com/revue/news/431083.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/431083.shtml</guid></item>
<item><title>Cuckoo Sandbox 05 is out </title><description>Secuobs.com : 2012-12-21 01:23:16 - The Honeynet Project -    Claudio has just released a new version of Cuckoo Sandbox 05 The list of new features is very impressive  Check it out at http cuckoosandboxorg 2012-12-20-to-the-end-of-the-worldhtml </description><link>http://www.secuobs.com/revue/news/418186.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/418186.shtml</guid></item>
<item><title>Donate to the Honeynet Project</title><description>Secuobs.com : 2012-12-18 18:08:23 - The Honeynet Project -    In many countries, its the time of the year you can make tax deductible donations to support your favorite charity and non-profit organization Id like to ask you to consider donating to the Honeynet Project this year The Honeynet Project is a 501c3 non-profit organization  EIN  36-4460128  that - over the past decade - learned the tools, tactics and motives involved in computer and network attacks, and shared the lessons learned with the public Along the way, we have authored and published many open-source tools to capture   analyze attacks If you would like to support the cause, please donate Happy Holidays to all of you Christian Seifert CEO, The Honeynet Project read more </description><link>http://www.secuobs.com/revue/news/417627.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/417627.shtml</guid></item>
<item><title>UK Chapter Annual Status Report 2011 2012</title><description>Secuobs.com : 2012-12-04 22:24:17 - The Honeynet Project -    The UK Chapter's annual status report for 2011 2012 has been published at http wwwukhoneynetorg 2012 12 04 uk-honeynet-project-chapter-annual-status-report-for-20112012  </description><link>http://www.secuobs.com/revue/news/415133.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/415133.shtml</guid></item>
<item><title>Press Release  2013 Honeynet Project Workshop</title><description>Secuobs.com : 2012-11-27 05:11:02 - The Honeynet Project -    THE HONEYNET PROJECT Contact  Christian Seifert Phone   1-206-2651944 1425 Broadway  438 Seattle, WA, 98122 FOR IMMEDIATE RELEASE 9 AM GST, November 26th, 2012 2013 HONEYNET PROJECT ANNUAL WORKSHOP 10-12 FEBRUARY 2013 IN DUBAI, UAE DUBAI, 26 NOV 2012  This three-day event features an exceptional collection of international security professionals presenting the latest research tools and findings in malware analysis The twelfth annual workshop will be held at The Address Dubai Mall Hotel on the 10th through 12th of February, 2013, with sponsorship and support from the UAE Honeynet Project chapter, United Arab Emirates Computer Emergency Response Team  aeCERT , and the Pakistan Honeynet Project chapter The workshop includes one full day of briefings and two full days of hands-on tutorial trainings Founded in 1999, The Honeynet Project is a non-profit international research organization dedicated to improving the security of the Internet at no cost to the public  Cyber security is a critical element for any nation working towards technical advancement,  said HE Mohamed Nasser Al Ghanim, Director General of TRA  I am pleased the TRA and aeCERT are participating in this event  hands-on and knowledge-intensive workshops such as this are invaluable as we work towards reinforcing the nation s cyber security   Cyber security is not a  one-man  job, it is dependent on the proactive collaboration of groups spanning government, industry and academia,  said Ahmad Alajail, Security Intelligence   Threat Analyst   This is why initiatives such as Honeynet, which provide a diverse talent base, are greatly complementary to the nation s cyber security and to our work at aeCERT  The Honeynet Project is composed of 45 regional chapters and is a diverse, talented, and engaged group of hundreds of volunteer security experts who conduct open, cross disciplinary research and development into the evolving threat landscape Registration and more information available at  http dubai2013honeynetorg or by contacting The Honeynet Project CEO Christian Seifert to request a personal interview at  christianseifert honeynetorg -End- read more </description><link>http://www.secuobs.com/revue/news/413556.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/413556.shtml</guid></item>
<item><title>2013 Honeynet Project Workshop in Dubai </title><description>Secuobs.com : 2012-11-21 07:11:46 - The Honeynet Project -    The Honeynet Project is excited to announce its next workshop on Feb 9th to Feb 12 2013 in Dubai, UAE This is going to be a three day event filled with presentations and hands-on tutorials by our members We will cover a wide range of information security topics from virtualization security, botnets, big data, exploits to, of course, honeypots, that are followed by a set of exciting one-two day hands-on tutorials on security visualization, malware and network analysis, honeypots, log file assessment, and much more The detailed agenda as well as instructions to register can be found at http dubai2013honeynetorg We hope to see you in Dubai  read more </description><link>http://www.secuobs.com/revue/news/412622.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/412622.shtml</guid></item>
<item><title>HP Annual Report 2012 released</title><description>Secuobs.com : 2012-10-16 17:50:35 - The Honeynet Project -    Each year, the Honeynet Project summarizes its activities and activities of its members in a short annual report You will find the annual report for fiscal year 2012 attached Enjoy  </description><link>http://www.secuobs.com/revue/news/405849.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/405849.shtml</guid></item>
<item><title>Honeynet Project completes Cyber Fast Track Project  Web Application Honeypots</title><description>Secuobs.com : 2012-09-08 05:13:37 - The Honeynet Project -    We are happy to be able to announce the successful completion of The Honeynet Project's participation in DARPA's Cyber Fast Track program with our Web Application Honeypot project Imperfa's recent Web Application Attack Report shows the picture of large scale automated threats towards web applications Adversaries are basically scanning millions of web applications for vulnerabilities every day and a single successful infection increases their army of workers and thereby their capability for doing more damage Without a specific target, attackers can leverage automated tools and search engines excellent information aggregation service to find their victims, identify the vulnerability, and launch an attack The majority of web application attacks target the web application's database These - so called SQL injection attacks - manipulate the underlying database by providing user input that - due to the vulnerability in the web application - is converted into SQL statements The main goal of this project was the development of a SQL injection vulnerability emulator that goes beyond the collection of SQL vulnerability probings It deceives the adversary with crafted responses matching his request into sending us the malicious payload which could include all kinds of malicious code The project is being released as open-source and installation instructions can be found on the project page A detailed report was created as part of the project read more  IMAGE  </description><link>http://www.secuobs.com/revue/news/398420.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/398420.shtml</guid></item>
<item><title>Know Your Enemy  Social Dynamics of Hacking</title><description>Secuobs.com : 2012-05-29 19:49:21 - The Honeynet Project -    I am very pleased to announce the publication of another paper in our Know Your Enemy white paper series   KYE - Social Dynamics of Hacking  authored by Thomas J Holt and Max Kilger from our Spartan Devils Honeynet Project Chapter In this paper, Tom and Max go to the roots of the Know Your Enemy series and shine light on the social groups that are involved in hacking Abstract Though most information security research focuses on current threats, tools, and techniques to defeat attacks, it is vital to recognize and understand the humans behind attacks Individual attackers have various skills, motives, and social relationships that shape their actions and the resources they target In this paper we will explore the distribution of skill in the global hacker community, the influence of on and off-line social relationships, motivations across attackers, and the near-future of threats to improve our understanding of the hacker and attacker community read more </description><link>http://www.secuobs.com/revue/news/378309.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/378309.shtml</guid></item>
<item><title>GSoC 2012 Accepted Students Officially Announced</title><description>Secuobs.com : 2012-04-28 20:45:19 - The Honeynet Project -    Since my last post about the Google Summer Of Code 2012 Student Applications deadline closing and sharing some initial student applications statistics, all the GSoC 2012 mentoring organisations have been hard at work reviewing and scoring their student applications read more </description><link>http://www.secuobs.com/revue/news/372569.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/372569.shtml</guid></item>
<item><title>Google Summer Of Code 2012 Student Applications now closed and some statistics</title><description>Secuobs.com : 2012-04-08 23:27:45 - The Honeynet Project -    After a slower than usual start, this years Google Summer of Code  GSoC  student applications period closed at 19 00 UTC on Friday April 6th, with a major application rush in the last couple of days which kept us busy right up to the deadline  Many thanks to all the interested students who applied, and our mentors and org admins for taking the time to respond to students on IRC, email and through Melange read more </description><link>http://www.secuobs.com/revue/news/368854.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/368854.shtml</guid></item>
<item><title>Honeynet Project Security Workshop 2012 - VIDEOs posted</title><description>Secuobs.com : 2012-04-06 01:26:08 - The Honeynet Project -    Folks, we had a great time at the Honeynet Project Security Workshop   Facebook We'd like to thank again our execellent hosts Facebook, the attendees, and our many speakers If you were not able to attend, you can check out the videos at http honeynetorg SecurityWorkshops 2012_SF_Bay_Area Mar_19 Workshop_Program_Agenda read more </description><link>http://www.secuobs.com/revue/news/368436.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/368436.shtml</guid></item>
<item><title>Google Soc 2012 - Honeynet Project Accepted</title><description>Secuobs.com : 2012-03-16 23:08:14 - The Honeynet Project -    We have just been notified by Google that the Honeynet Project has - once again - been accepted as one of the mentoring organization for Google Summer of Code 2012  in total 180 organizations were selected  We are very excited and are looking forward to a great summer  Already a big thank you to Google for their continued support  While student applications are not officially open yet, interested students are encouraged to check out our ideas page and get in contact with us via gsoc publichoneynetorg and or IRC  gsoc2012-honeynet on ircfreenodenet  in the next few ideas to meet the mentors and discuss project ideas Student applications officially open on March 26th 2012 and close on April 6th 2012 We are looking forward to hearing from you  read more </description><link>http://www.secuobs.com/revue/news/364175.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/364175.shtml</guid></item>
<item><title>Google Summer of Code 2012 - Organization Application submitted</title><description>Secuobs.com : 2012-03-12 19:22:03 - The Honeynet Project -    Last Friday was the deadline for the GSoc 2012 Organization Applications After three successful participations in the Google Summer of Code program in 2009, 2010, and 2011, we - once again - applied to be part of GSoc again this year Our experience with the program has been tremendous We have been able to excite students worldwide  many which have become members of the Honeynet Project  for open-source development in the information security space and several of the leading honeynet open-source tools started with a GSoc project We are looking forward to get students involved with our expert mentors again this year to tackle the many research problems While we patiently await Google's response to our application, we urge you to check out our ideas page and start getting in contact with us on IRC and email to discuss project ideas  some of you are already are doing so, which is great  You can reach us at  gsoc2012-honeynet on freenode as well as via email at gsoc publichoneynetorg Hope to hear from you  A big thanks to Google for their continued support for FOSS We are all looking forward to a productive and exciting GSoc 2012  read more </description><link>http://www.secuobs.com/revue/news/363003.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/363003.shtml</guid></item>
<item><title>Release of WoLF Viz</title><description>Secuobs.com : 2012-03-09 18:21:45 - The Honeynet Project -    Frasier, who participated in our recent visualization forensic challenge has released his visualization tool WoLF Viz at http codegooglecom p wolf-viz  WoLF Viz works by parsing arbitrary text log files into a network  graph  of words, where the words are nodes and the edges are adjacent word pairs The edge weights are based on how often the two words are seen next to each other read more </description><link>http://www.secuobs.com/revue/news/362584.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/362584.shtml</guid></item>
<item><title>2012 Honeynet Project Security Workshop   Facebook, Inc - SF Bay Area, CA, USA - March 19th 20th 2012</title><description>Secuobs.com : 2012-01-24 06:14:26 - The Honeynet Project -     IMAGE  The Honeynet Project will hold is 2nd public security workshop at Facebook, Inc in the San Francisco Bay Area The workshop is going to be a two day event filled with technical presentations and hands-on tutorial training On day 1 of the workshop, Honeynet Project members and Facebook will present on a wide range of information security topics  from honeypots and social networks to cybercrime and mobile malware Day 2 will be a day of hands-on tutorial training Our members will teach a total of 8 courses in forensics, honeypots, and visualization For those who want to further hone their skills in a competitive setting, we will also host a capture-the-flag event on day 2 Event details and registration information can be found at https honeynetorg SecurityWorkshops 2012_SF_Bay_Area We hope to see you there  Share   IMAGE   IMAGE   IMAGE   IMAGE   IMAGE  read more </description><link>http://www.secuobs.com/revue/news/353701.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/353701.shtml</guid></item>
<item><title>Android Reverse Engineering  ARE  Virtual Machine available for download now </title><description>Secuobs.com : 2011-11-01 04:36:39 - The Honeynet Project -    The Honeynet Project is happy to announce the release of the Android Reverse Engineering  ARE  Virtual Machine Do you need to analyze a piece of Android malware, but dont have all your analysis tools at hand  The Android Reverse Engineering  ARE  Virtual Machine, put together by Anthony Desnos from our French chapter, is here to help ARE combines the latest Android malware analysis tools in a readily accessible toolbox Tools currently found on ARE are    Androguard   Android sdk ndk   APKInspector   Apktool   Axmlprinter read more </description><link>http://www.secuobs.com/revue/news/337945.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/337945.shtml</guid></item>
<item><title>Google Summer of Code 2011- Wrap up</title><description>Secuobs.com : 2011-10-13 06:14:21 - The Honeynet Project -    In 2011, the Honeynet Project had once again the opportunity to participate in the Google Summer of Code program In the last few weeks, we wrapped up all projects, beta tested the code, wrote documentation, and prepared releases To quickly recap  GSoc  Google Summer of Code  is an annual summer program sponsored by Google, in which Google pairs up students with organizations committed to open-source Google supports each project with 5000USD of which the students receive the lion's share The Honeynet Project has participated in GSoc since 2009 Visit http honeynetorg gsoc2009 and http honeynetorg gsoc2010 to get an idea on what we have accomplished through this program in the last couple of years This year, we were able to spin up and execute 12 projects  While there are still a couple of projects that are preparing their release as part of the larger underlying project, we would like to point you to the following links that provide a summary and references to the projects that already resulted in releases    cHook - The new CuckooBox Hooking Engine   AxMock is released for your review   Webviz is out for your reviews   APKInspector BETA Release   Demo Video   HoneyViz demo is out for your viewing pleasure   Beta release of libemu qemu extension   DroidBox  beta release   HoneySink  beta release   SIP Module for Dionaea   Extending Wireshark Analysis These projects address a wide array of security problems APKInspector and DroidBox greatly simplify mobile malware analysis  Webviz and HoneyViz explore the space of visualization of data for the security analyst  HoneySink is the first open-source sinkhole solution available  sip module for dionaea extends the capability of this honeypot into the VoIP area  cHook makes the mobile analysis platform Cuckoobox more resilient against detection   evasion  AxMock is a ActiveX emulation detection module which can be used - for example to detect drive-by-download attacks with client honeypots, such as Capture-HPC -   the libemu extension made shellcode analysis   execution much more performant  and the wireshark plugins extend the wireshark network monitoring tool with additional forensic and analysis capabilities, such as the integration with rules from the popular intrusion detection system Snort This is a really impressive list of projects  The credit really goes to our awesome students that participated in GSoc this year We want thank them for participating in this program and choosing the Honeynet Project as their mentoring organization They all did a great job and I very impressed with their dedication and professionalism I think the projects speak for themselves and some of the students will continue to be involved with these projects and our community long term  The students this year were    Youzhi Bao  AxMock    György Kohut  Honeeebox    Lucas McDaniel  HoneyViz    Oguz Yarimtepe  WebViz    Patrik Lantz  DroidBox    Cong Zheng  APKInspector    Adam  Sinkhole    Jakub Zawadzki  Wireshark Plugins    Dario Fernandes  Cuckoobox    Brandon Marken  HyperVisor    PhiBo  VoIP module for dionaea    Florian Schmitt  libemu qemu extension  Also, we would like to thank the mentors and technical advisors who volunteered their time to support and mentor the students to be successful over the summer   Ian Welch from the New Zealand Chapter  AxMock    David Watson from the UK Chapter  Honeeebox    Kara Nance from the Alaska Chapter  HoneyViz    Ben Reardon from the Australian Chapter  WebViz    Anthony Desnos from the French Chapter  DroidBox    Ryan Smith from the RoT-1 Chapter  APKInspector    Shaun Vlassis from the Australian Chapter  Sinkhole    Guillaume Arcas from the French Chapter  Wireshark Plugins    Claudio Guarnieri from the Italian Chapter  Cuckoobox    Brian Hay from the Alaska Chapter  HyperVisor    Sjur Usken from the Norwegian Chapter  VoIP module for dionaea    Markus Koetter, HP alumni  dionaea    Felix Leder from the Giraffe Chapter  libemu qemu extension   and last but not least, we thank Google The program greatly supports organizations like ours that are committed to open-source and trying to make a positive difference We hope to be back next year   Christian Seifert CEO, The Honeynet Project read more </description><link>http://www.secuobs.com/revue/news/334493.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/334493.shtml</guid></item>
<item><title>Google SoC 2011 - Accepted Projects Announced</title><description>Secuobs.com : 2011-04-25 21:57:27 - The Honeynet Project -    Folks, Google has just announced the accepted projects on the GSoc website We had an excellent line up of students and proposals this year and were able to accept 12 projects  Thanks for all the students who have applied this year and congratulations to all accepted  Christian </description><link>http://www.secuobs.com/revue/news/300673.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/300673.shtml</guid></item>
<item><title>Google SoC 2011 - Honeynet Project Accepted Again and Student Applications Open </title><description>Secuobs.com : 2011-04-04 17:23:20 - The Honeynet Project -    Our annual workshop in Paris got off to the perfect start this weekend when Google went live with the new look GSoC 2011 Melange site and announced which lucky organizations had been accepted as mentoring orgs for GSoC 2011 read more </description><link>http://www.secuobs.com/revue/news/296081.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/296081.shtml</guid></item>
<item><title>Google SoC 2011 - Student Applications In Progress</title><description>Secuobs.com : 2011-04-04 17:23:20 - The Honeynet Project -    With GSoC 2011 student applications having been open for the past week, we've been having a number of interesting discussions with potential students on both  gsoc2011-honeynet on ircfreenodenet and on our public GSoC mailing list and this summer is already looking to have many exciting project ideas read more </description><link>http://www.secuobs.com/revue/news/296080.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/296080.shtml</guid></item>
<item><title>Forensic Challange 7 - Only 5 days left </title><description>Secuobs.com : 2011-03-26 23:36:27 - The Honeynet Project -    Folks, challenge 7 - forensic analysis of a compromised server - put up by Hugo Gonzalez from the Mexico Chapter and Guillaume Arcas from the French Chapter is in full swing Submissions are due by March 31st, so if you want to participate, you have 5 days left We award little prizes for the top three submissions  Hope to see your submission Christian </description><link>http://www.secuobs.com/revue/news/294362.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/294362.shtml</guid></item>
<item><title>First-Ever Public Honeynet Project Security Workshop - Slides Online</title><description>Secuobs.com : 2011-03-22 18:56:16 - The Honeynet Project -    Folks, we had a great day at the first-ever public Honeynet Project Security Workshop yesterday with many excellent presentations by our members from around the globe The presentations ranged from deep technical dives around shellcode detection and mobile malware reverse engineering to views on social dynamics of attackers and ethics of computer security research Further, we hosted a small capture-the-flag forensic challenge competition, which received plentiful participation - especially with the younger crowd read more </description><link>http://www.secuobs.com/revue/news/293376.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/293376.shtml</guid></item>
<item><title>Google SoC 2011 - Org Applications Finished</title><description>Secuobs.com : 2011-03-12 02:39:22 - The Honeynet Project -    23 00 UTC Friday March 11th was the first deadline for Google Summer of Code 2011, and the cut off point for organizations interesting in participating to complete their org application read more </description><link>http://www.secuobs.com/revue/news/291176.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/291176.shtml</guid></item>
<item><title>Google Summer of Code 2011 - Org Applications Open</title><description>Secuobs.com : 2011-03-07 00:24:55 - The Honeynet Project -    Has it really been another year already  Having really enjoyed our experience as a successful mentoring organization in Google Summer of Code 2009 and Google Summer of Code 2010, The Honeynet Project is very pleased to announce that we will once again be applying to be accepted this year as a potential mentoring organization for Google Summer of Code 2011  note the changed URL for GSoC 2011  read more </description><link>http://www.secuobs.com/revue/news/289752.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/289752.shtml</guid></item>
<item><title>First-ever Project Honeynet Public Conference Paris 2011</title><description>Secuobs.com : 2011-02-01 01:03:32 - The Honeynet Project -    It is with great pleasure I announce the first-ever Project Honeynet Public Conference, held alongside with the traditional Project Honeynet Annual Workshop The event will be held on March 21, 2011 in Paris For those who just want to register now, go here Date  21 March 2011  Monday  8 30AM   18 00PM  GMT 1  read more </description><link>http://www.secuobs.com/revue/news/282000.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/282000.shtml</guid></item>
<item><title>Forensic Challenge 2010 5 - Log Mysteries - What Apache version was used </title><description>Secuobs.com : 2011-01-22 19:48:29 - The Honeynet Project -    Carl Pulley, a loyal follower of our Forensic Challenges, has written up an analysis on how could one determine the Apache version that generated the logs His analysis can be found at http acme-labsorguk news 2011 01 20 apache2-version-analysis  and http acme-labsorguk news 2011 01 21 apache2-version-analysis-data-visualisation  Check it out  </description><link>http://www.secuobs.com/revue/news/280106.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/280106.shtml</guid></item>
<item><title>New version of honeypot monitoring tool Qebek available</title><description>Secuobs.com : 2011-01-01 20:28:56 - The Honeynet Project -    Folks, Chengyu Song has been busy the last few weeks and made some upgrades to the honeypot monitoring tool Qebek He has ported it from QEMU 091 to QEMU 0130 As a result, Qebek's performance  boot time  is better and it no longer requires gcc 34 You can check it out svn co https projectshoneynetorg svn sebek virtualization qebek trunk  If you don't know what Qebek is or how to use it, take a look at our whitepaper at http honeynetorg papers KYT_qebek </description><link>http://www.secuobs.com/revue/news/275222.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/275222.shtml</guid></item>
<item><title>Forensic Challenge 2010 6 - Analyzing Malicious Portable Destructive Files - The winners are </title><description>Secuobs.com : 2010-12-24 20:34:15 - The Honeynet Project -    Folks, holiday greetings from forensic challenge headquarter in Seattle Mahmud and Ahmad from the Malaysian Chapter have judged all submissions and results have been posted on the challenge web site The winners are  1 Vos from Russia with perfect score  2 Cordut from Romania 3 Mike from Canada Congratulations  We received a total of 21 submissions and they were very competitive The top three submissions came within a point of a perfect score and Vos from Russia actually received a perfect score We have posted the top three submissions from Vos, Cordut and Mike on the challenge web site  As I said, these submissions are top notch and I encourage you to read through them With the forensic challenge 2010 coming to an end, we will be taking a little break for the holidays, but will be back in full force in early 2011 Happy Holidays Christian Seifert Chief Communications Officer The Honeynet Project read more </description><link>http://www.secuobs.com/revue/news/274126.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/274126.shtml</guid></item>
<item><title>Announcing the publication of Know Your Tools  Qebek - Conceal the Monitoring</title><description>Secuobs.com : 2010-11-03 05:44:54 - The Honeynet Project -    I am very pleased to announce another publication of our Know Your Tools series  Qebek - Conceal the Monitoring authored by Chengyu Song and Jianwei Zhuge from the Chinese Chapter and Brian Hay from the Alaskan Chapter The paper is available from http honeynetorg papers KYT_qebek Paper abstract For the last few years, while low-interaction  LI  honeypot systems like Nepenthes and PHoneyC are getting more and more powerful, the progress of high-interaction  HI  honeypot technology has been somewhat slower This is especially true for Sebek, the de-facto HI honeypot monitoring tool In this KYT paper, we introduce Qebek, a QEMU based HI honeypot monitoring tool which aims at improving the invisibility of monitoring the attackers  activities in HI honeypots read more </description><link>http://www.secuobs.com/revue/news/262027.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/262027.shtml</guid></item>
<item><title>Forensic Challenge 2010 6 - Analyzing Malicious Portable Destructive Files is now live</title><description>Secuobs.com : 2010-10-31 22:14:54 - The Honeynet Project -    Another challenge is ready to be tackled by forensic analysts, students, hackers and alike This time, we present you with an attack vector that has become quite successful  malicious PDF files  For challenge 6 of our series  provided by Mahmud Ab Rahman and Ahmad Azizan Idris from the Malaysia Honeynet Project Chapter  we present you with a pcap file that contains network traffic generated by the following scenario  An unsuspecting user opens a compromised web page, which redirects the user's web browser to a URL of a malicious PDF file As the PDF plug-in of the browser opens the PDF, the unpatched version of Adobe Acrobat Reader is exploited and, as a result, downloads and silently installs malware on the user's machine We prepared a set of questions that requires you to dive deep into the portable document format Submit your solution by November 30th 2010 The top three submissions will receive small prizes Enjoy  Christian Seifert Chief Communications Officer The Honeynet Project read more </description><link>http://www.secuobs.com/revue/news/261349.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/261349.shtml</guid></item>
<item><title>Forensic Challenge 2010 5 - Log Mysteries - Results are in </title><description>Secuobs.com : 2010-10-26 17:49:58 - The Honeynet Project -    Folks, Sebastien, Anton, Raffy and Julia have judged all submissions and results have been posted on the challenge web site The winners are  1 William Söderberg  sweden  2 Nikunj Shah  USA  3 David Bernal Michelena  Mexico  Congratulations to the winners Apparently challenge 5 was a true challenge While we had many folks hit the challenge web site, we only received 7 submissions in total and quite a few participants missed more subtle attacks embedded in the deep corner of the logs This illustrates how difficult log analysis is and a reason why we included it in the mix of challenges The original challenge files remain on the web site and we have posted the top three submissions from Wiliam, Nikunj and David Take a look and see whether you would have been able to identify all attacks in the logs With challenge 5 completed, we are getting ready to launch challenge 6 on November 1st This challenge has been prepared by Mahmud and Ahmad from the Malaysian Chapter It deals with 'Analyzing Malicious Portable Destructive File' and we hope to see you participating Christian Seifert Chief Communications Officer The Honeynet Project read more </description><link>http://www.secuobs.com/revue/news/259974.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/259974.shtml</guid></item>
<item><title>Forensic Challenge 2010 5 - Log Mysteries - just a few days left to submit your solution</title><description>Secuobs.com : 2010-09-28 05:09:15 - The Honeynet Project -    The deadline for the Forensic Challenge 2010 5 - Log Mysteries is quickly approaching It seems like this challenge is a hard nut to crack as we only received a few submissions so far If you like a challenge, give it a try The deadline is September 30th 2010 You can access the challenge at http honeynetorg challenges 2010_5_log_mysteries Did I mention there are prizes  </description><link>http://www.secuobs.com/revue/news/252268.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/252268.shtml</guid></item>
<item><title>Forensic Challenge 2010 5 - Log Mysteries is now live</title><description>Secuobs.com : 2010-09-17 00:11:38 - The Honeynet Project -    After a short break, I am pleased to announce the next forensic challenge  Forensic Challenge 5 - Log Mysteries This challenge takes you into the world of virtual systems and confusing log data Figure out what happened to a virtual server using all the logs from a possibly compromised server Challenge 5 has been created by Raffael Marty from the Bay Area Chapter, Anton Chuvakin from the Hawaiian Chapter, and Sebastien Tricaud from the French Chapter It is a bit more open ended than the last challenges, so I am really looking forward to some creative answers  Submission deadline is September 30th and we will be announcing winners around October 21st We have a few small prizes for the top three submission Enjoy  read more  IMAGE  </description><link>http://www.secuobs.com/revue/news/246210.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/246210.shtml</guid></item>
<item><title>The winners of the 4th Forensic Challenge 2010 VoIP are </title><description>Secuobs.com : 2010-07-24 21:21:57 - The Honeynet Project -    The 4th Forensic Challenge on VoIP has come to an end We had a total of 21 submissions with several submissions from Chinese speakers which has been made possible by Julia, Jianwei and Roland from the Chinese speaking chapters The winners of the 4th Forensic Challenge 2010 VoIP are  1 Franck Guenichot  France  - Franck's submission - Sha1  d1f59ebb514b9e3b559d3461782d9d60e754a1f9 2 Fabio Panigatti  Italy  - Fabios's submission - Sha1  c0a29a4110d08ed73c5f3fd8b31589a8b57f1e4b 3 Shaun Zinck  USA - Shaun's submission - Sha1  b362c9fd94f4dd79d056322635b997640323e48d We have posted their submissions onto the challenge web site so you can see what top notch submissions they provided Franck, Fabio and Shaun will be awarded with small book prizes Congratulations  Thanks to all who participated in the challenge in particular Ben Reardon from the Australian and Sjur Eivind Usken from Norwegian Chapter who made this challenge possible read more </description><link>http://www.secuobs.com/revue/news/243603.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/243603.shtml</guid></item>
<item><title>Forensic Challenge 2010 4 - VoIP - 4 days left </title><description>Secuobs.com : 2010-06-26 19:32:56 - The Honeynet Project -    Folks, the submission deadline for our Forensic Challenge 4 - VoIP is quickly approaching The deadline is this Wednesday and so you have another 4 days to submit your solution The challenge is quite different than our previous challenges It was provided by Ben Reardon from the Australian and Sjur Eivind Usken from Norwegian Chapter - and takes you into the realm of voice communication on the Internet Thanks to our Chinese speaking chapters, it is also available in simplified Chinese and traditional Chinese read more  IMAGE  </description><link>http://www.secuobs.com/revue/news/235388.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/235388.shtml</guid></item>
<item><title>Forensic Challenge 2010 4 - VoIP is now live</title><description>Secuobs.com : 2010-06-01 18:31:03 - The Honeynet Project -    Challenge 4 of the Honeynet Project Forensic Challenge - titled  VoIP  - is now live This challenge 4 - provided by Ben Reardon from the Australian and Sjur Eivind Usken from Norwegian Chapter - takes you into the realm of voice communications on the Internet VoIP with SIP is becoming the de-facto standard As this technology becomes more common, malicious parties have more opportunities and stronger motives to take control of these systems to conduct nefarious activities This Challenge is designed to examine and explore some of attributes of the SIP and RTP protocols Note that our Chinese speaking chapters  Julia Cheng from the Taiwanese Chapter, Jianwei Zhuge from the Chinese Chapter and Roland Cheung from the Hongkong Chapter  have taken great initiative and translated the challenge into Chinese, which is available from the simplified Chinese and traditional Chinese pages  will be posted by EOD today  With this challenge, we are getting on a firm 2 month cycle You will have one month to submit  deadline is June 30th 2010  and results will be released approximately 3 weeks later Small prizes will be awarded to the top three submissions Enjoy the challenge  read more </description><link>http://www.secuobs.com/revue/news/227569.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/227569.shtml</guid></item>
<item><title>Forensic Challenge 2010 3 -  banking troubles  - and the winners are </title><description>Secuobs.com : 2010-05-13 07:02:52 - The Honeynet Project -    Josh, Angelo, Matt and Nicolas finished evaluating the submissions for FC2010 3 banking troubles Again, lots of great submissions  We had a total of 22 and the top performers for FC2010 3 are  1 Mario Pascucci  Italy  2 Tyler Hudak  USA  3 Carl Pulley  UK  Congratulations to the winners and all the folks that participated in the challenge - this was not an easy one Each winner will receive a signed book from one of our Honeynet Project authors We have posted the submissions of the winners and sample solution on the FC2010 3 web page All participants should have also received an email today with information about their individual score as well as placement read more </description><link>http://www.secuobs.com/revue/news/221743.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/221743.shtml</guid></item>
<item><title>How can we improve the Forensic Challenge </title><description>Secuobs.com : 2010-04-30 18:04:59 - The Honeynet Project -    Folks, the submission deadline for the Forensic Challenge 3    Banking Troubles  has passed We have received 22 submissions and will be announcing results on Wednesday, May 12th 2010 With the 3rd challenge coming to an end, we would love to get your feedback on the challenges  Which challenge did you enjoy in particular and why  Do you have any suggestions on how to improve the challenge  Is there a particular challenge you would like to see in the future  Send your feedback to forensicchallenge2010 honeynetorg </description><link>http://www.secuobs.com/revue/news/217724.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/217724.shtml</guid></item>
<item><title>Honeynet Annual Workshop has kicked off</title><description>Secuobs.com : 2010-04-29 19:34:57 - The Honeynet Project -    The 2010 Honeynet Workshop has kicked off, in the wonderful surroundings of UNAM, Mexico City Many thanks to our hosts  </description><link>http://www.secuobs.com/revue/news/217368.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/217368.shtml</guid></item>
<item><title>A Breeze of Storm</title><description>Secuobs.com : 2010-04-28 03:13:49 - The Honeynet Project -    Today, Steven Adair from ShadowServer imformed us about a new piece of malware that looks like a new version of the infamous Storm Worm Storm was one of the first serious peer-to-peer botnets, it was sending out spam for more than two years until its decline in late 2008 Mark Schloesser, Tillmann Werner, Georg Wicherski, and I did some work on how to take down Storm back then, so the rumors about a new version caught our interest   Giraffe Chapter read more </description><link>http://www.secuobs.com/revue/news/216715.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/216715.shtml</guid></item>
<item><title>GSoC 2010 Student Selection is Public</title><description>Secuobs.com : 2010-04-27 03:16:25 - The Honeynet Project -    After a few slow days for student applicants everywhere, and some difficult decisions on the final slot allocations for our mentors, the long wait is finally over and the GSoC 2010 official student selections are public The Honeynet Project are very excited to have received 17 GSoC slots this year  up from 9 last year , so many thanks to Google for their fantastic support again this year read more </description><link>http://www.secuobs.com/revue/news/216248.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/216248.shtml</guid></item>
<item><title>Forensic Challenge 2010 3 -  Banking Troubles  - submission deadline extended to Monday, 26th of April 2010</title><description>Secuobs.com : 2010-04-19 17:50:22 - The Honeynet Project -    Folks, we have decided to extend the submission deadline of the Forensic Challenge 2010 3 -  Banking Troubles  for another week  deadline is now April 26th 2010  Seems like this challenge is a bit tougher and we would like to give you all the opportunity to submit your results For those folks that have already submitted, you can resubmit via the web form in case you would like to make changes to your solution The Forensic Challenge 2010 3 can be accessed here  http honeynetorg challenges 2010_3_banking_troubles </description><link>http://www.secuobs.com/revue/news/213677.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/213677.shtml</guid></item>
<item><title>Google Summer of Code 2010 Student Application Deadline Closed</title><description>Secuobs.com : 2010-04-10 01:16:51 - The Honeynet Project -    Student applications for Google Summer of Code 2010 closed at 19 00 UTC tonight, with the usual last minute rush of submissions  but thankfully no timezone confusion this time  We had thought that receiving three student applications in the final minute, including one with 84 seconds to spare was cutting it close, but Plan9 apparently had one lucky applicant with 123 seconds remaining on the clock  That must set a new GSoC record  -  read more </description><link>http://www.secuobs.com/revue/news/210676.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/210676.shtml</guid></item>
<item><title>Google Summer of Code 2010 Updated Ideas Page and Student Applications Open</title><description>Secuobs.com : 2010-04-05 20:50:30 - The Honeynet Project -    On March 29th Google officially began accepting applications from students for Google Summer of Code 2010, which the Honeynet Project is very exicted to be participating in again this year as a mentoring organisation We've recently updated our project ideas page and mentor information and students have until 19 00 UTC on Friday April 9th to apply  you can either chose one of our ideas or propose your own  read more </description><link>http://www.secuobs.com/revue/news/209000.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/209000.shtml</guid></item>
<item><title>Forensic Challenge 2010 3 -  Banking Troubles  has been posted</title><description>Secuobs.com : 2010-03-28 19:06:12 - The Honeynet Project -    Challenge 3 of the Honeynet Project Forensic Challenge - titled  Banking Troubles  - is now online and we invite you to participate Challenge 3 - provided by Josh Smith and Matt Cote from The Rochester Institute of Technology Chapter, Angelo Dell'Aera from the Italian Chapter and Nicolas Collery from the Singapore Chapter - is a bit different from our previous challenges in that we do not ask you to analyze a pcap network trace, but rather a memory image from a virtual machine This should make for an interesting challenge  Submission deadline is April 18th and results will be released on Wednesday, May 5th 2010 Small prizes will be awarded to the top three submissions Enjoy  Share   IMAGE   IMAGE   IMAGE   IMAGE   IMAGE   IMAGE  read more </description><link>http://www.secuobs.com/revue/news/206250.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/206250.shtml</guid></item>
<item><title>Forensic Challenge 2010 2 -  browsers under attack  - and the winners are </title><description>Secuobs.com : 2010-03-23 18:10:27 - The Honeynet Project -    Nicolas and Guillaume have been judging your submissions of the FC2010 2 relentlessly over the last few days and we now have the results in  We had a total of 32 submissions and a very tight race at the top In the end, four submissions tied for first place    Franck Guenichot  France    Mario Pascucci  Italy    Rani Hod  Israel    Voz  Russia  Congratulations to the winners  Each winner will receive a signed book from one of our Honeynet Project authors We have posted the submissions of the winners and sample solution on the FC2010 2 web page All participants of the challenge should have also received an email today with information about their individual score as well as placement read more </description><link>http://www.secuobs.com/revue/news/204519.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/204519.shtml</guid></item>
<item><title>Google Summer of Code 2010 Accepted Mentor Organisations List Announced</title><description>Secuobs.com : 2010-03-19 00:56:29 - The Honeynet Project -    Much to the excitement of students all around the world, tonight Google officially announced which mentor organisations have been accepted for Google Summer of Code  GSoC  2010, and the Honeynet Project are delighted to have been selected as one of 151 such mentoring organisations  You can view the full list here  http socghopappspotcom gsoc program accepted_orgs google gsoc2010 read more </description><link>http://www.secuobs.com/revue/news/203169.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/203169.shtml</guid></item>
<item><title>Google Summer of Code 2010 Application Submitted</title><description>Secuobs.com : 2010-03-13 01:34:51 - The Honeynet Project -    Well, Google Summer of Code 2010 is now officially up and running, with the deadline for organisation applications closing 45 minutes ago Happily the Honeynet Project's application for GSoC 2010 was submitted on time, so all we can do now is sit back and wait until March 18th to find out if we are one of the lucky organisations selected this year read more </description><link>http://www.secuobs.com/revue/news/201286.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/201286.shtml</guid></item>
<item><title>Forensic Challenge 2010 2 -  browsers under attack  - update</title><description>Secuobs.com : 2010-03-09 18:10:42 - The Honeynet Project -    Folks, its a frosty Tuesday morning in Seattle and the deadline for submissions to the forensic challenge 2010 2  browsers under attack  has passed We received a total of 34 for submissions from folks all over the world Nicolas from the Singapore chapter will be judging the submissions in the next few days We will announce the top three winners on Monday, 22nd of March 2010 Alongside, we will post their submissions as well as our sample solution Since we were using a web form for this challenge, we will not acknowledge receipt of each submission If you are unsure whether submission was successful, please email forensicchallenge2010 honeynetorg and we can check the submission database  Also, if you have any suggestions on how to improve the forensic challenge, please let us know Christian Seifert Chief Communications Officer The Honeynet Project PS  Forensic Challenge 2010 3 is currently being prepared In this challenge, a memory dump needs to be analyzedso a bit different from our past couple of challenges that focus on network tracesI hope to see many submissions on it We expect to post it Tuesday, 23rd of March 2010 read more </description><link>http://www.secuobs.com/revue/news/199813.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/199813.shtml</guid></item>
<item><title>Forensic Challenge 2010 2 -  browsers under attack  - submission deadline extended to Monday, 8th of March 2010</title><description>Secuobs.com : 2010-02-27 19:06:12 - The Honeynet Project -    We have decided to extend the submission deadline for our second forensic challenge -  browsers under attack  to Monday, 8th of March 2010 This gives you another week to participate in our latest challenge Subsequently, the announcement of the results will also move another week to Monday, 22nd of March 2010 I have contacted all the folks that have already submitted their solution to us about this change They, of course, have the opportunity to resubmit their solution, if they so wish, until the new submission deadline on the 8th  If you have submitted and did not receive an email from me, please contact us at forensicchallenge2010 honeynetorg  Challenge 2 focuses on browser attacks and can be accessed at Forensic Challenge 2010 2 The top 3 submissions will be awarded prizes read more </description><link>http://www.secuobs.com/revue/news/196287.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/196287.shtml</guid></item>
<item><title>GSoC 2010 Timeline announced and Honeynet Project will be applying</title><description>Secuobs.com : 2010-02-25 17:28:25 - The Honeynet Project -    Last year the Honeynet Project entered Google Summer of Code  http socghopappspotcom gsoc program home google gsoc2009  for the first time We received 9 Google funded student places and also funded 3 more places of our own, all of whom successfully completed their projects in a wide range of areas of open source security R D You can find out more in our Google SoC 2009 section of our website  https wwwhoneynetorg gsoc  read more </description><link>http://www.secuobs.com/revue/news/195584.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/195584.shtml</guid></item>
<item><title>Forensic Challenge 2010 - Challenge 1 - Announcement of Winners</title><description>Secuobs.com : 2010-02-15 07:54:44 - The Honeynet Project -    I am very pleased to announce the winners to the 1st Honeynet Project Forensic Challenge 2010 - pcap attack trace We had a total of 91 submissions and the top three submissions are true rock star submissions The winners are    1st Place  Ivan Rodriguez Almuina  Switzerland    2nd Place  Franck Guenichot  France    3rd Place  Tareq Saade  USA  Congratulations to the winners  Each winner will receive a signed book from one of our Honeynet Project authors A sample solution  created by Tillmann, Markus, Hugo and Cameron  is available on the forensic challenge web site at FC 2010 - Challenge 1 - Pcap attack trace On that page you will also find the submissions of the three winners Tillmann, who single handedly judged all submissions, will be summarizing highlights from various submissions in a blog post shortly All folks that have submitted a solution should have received an email with information about their individual score as well as placement Nicolas Collery from the Singapore Honeynet Chapter and Guillaume Arcas are finalizing the second forensic challengeThe challenge will be 'browsers under attack' and I personally am very excited about this challenge I hope we will receive many submissions from all who participated in challenge 1  and hopefully more  I will post to our web site honeynetorg in the next few days Thanks again - looking forward to the next challenge  Christian read more </description><link>http://www.secuobs.com/revue/news/191889.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/191889.shtml</guid></item>
<item><title>Forensic Challenge 2010 - Challenge 1 update</title><description>Secuobs.com : 2010-02-04 05:55:50 - The Honeynet Project -    Monday, February 1st, the submission deadline for challenge 1 of the Forensic Challenge 2010 has passed We have received 88 submissions and Tillmann who has been judging them mentioned there were some excellent submissions in the mix Tillmann will be highlighting some answers when we announce the results on the 15th of February I have acknowledged receipt of each submission received via email If you have not received a confirmation mail from me, please contact me at forensicchallenge2010 honeynetorg and I will check whether we have received it Christian </description><link>http://www.secuobs.com/revue/news/188441.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/188441.shtml</guid></item>
<item><title>First challenge of the Forensic Challenge 2010 has been posted</title><description>Secuobs.com : 2010-01-18 09:07:08 - The Honeynet Project -    We have just posted the first challenge of the Forensic Challenge 2010 The first challenge deals with a network attack It has been provided by Tillmann Werner from the Giraffe Chapter It is accessible at https honeynetorg node 504 Submissions are due on Monday, February 1st 2010 and results will be released on Monday, February 15th 2010 The top three submissions will be awarded with small prizes Check it out  </description><link>http://www.secuobs.com/revue/news/182654.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/182654.shtml</guid></item>
<item><title>Announcing the Honeynet Project Forensic Challenge 2010</title><description>Secuobs.com : 2010-01-12 19:24:58 - The Honeynet Project -    I am very happy to announce the Honeynet Project Forensic Challenge 2010 The purpose of the Forensic Challenges is to take learning one step farther Instead of having the Honeynet Project analyze attacks and share their findings, Forensic Challenges give the security community the opportunity to analyze attacks and share their findings In the end, individuals and organizations not only learn about threats, but also learn how to analyze them Even better, individuals can access the write-ups from other individuals, and learn about new tools and techniques for analyzing attacks Best of all, the attacks of the Forensic Challenge are attacks encountered in the wild, real hacks, provided by our members It has been several years since we provided Forensic Challenges and with the Forensic Challenge 2010, we will provide desperately needed upgrades The Forensic Challenge 2010 will include a mixture of server-side attacks on the latest operating systems and services, attacks on client-side attacks that emerged in the past few years, attacks on VoiP systems, web applications, etc At the end of challenge, we will provide a sample solution created by our members using the state-of-the-art tools that are publicly available, such as libemu and dionaea The first challenge  of several for 2010  will be posted on our Forensic Challenges web site on Monday, January 15th 2010 We will be open to submissions for about two weeks and announce the winners by February 15th 2010 This year, we will also award the top three submissions with prizes  Please check the web site on Monday, January 15th 2010 for further details  Christian Seifert Chief Communications Officer The Honeynet Project read more </description><link>http://www.secuobs.com/revue/news/180751.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/180751.shtml</guid></item>
<item><title>Nepenthes Pharm</title><description>Secuobs.com : 2009-11-29 22:26:30 - The Honeynet Project -    Parvinder Bhasin asked us to post an announcement about his new tool While not officially a tool developed by the Honeynet Project, we thought you should know about some of the great work he is doing Thanks  lance read more </description><link>http://www.secuobs.com/revue/news/166144.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/166144.shtml</guid></item>
<item><title>Know Your Tools  use Picviz to find attacks</title><description>Secuobs.com : 2009-11-26 20:21:51 - The Honeynet Project -    We are very excited to announce the publication of our first paper in the new Know Your Tools paper series   KYT  use Picviz to find attacks  authored by Sebastien Tricaud from the French Chapter and Victor Amaducci from the University of Campinas The paper can be downloaded at Know Your Tools  use Picviz to find attacks Paper Abstract Picviz is a parallel coordinates plotter which enables easy scripting from various input  tcpdump, syslog, iptables logs, apache logs, etc  to visualize data and discover interesting aspects of that data quickly Picviz uncovers previously hidden data that is difficult to identify with traditional analysis methods In the first paper of our new Know Your Tools series, Sebastien Tricaud from the French Honeynet Project Chapter and Victor Amaducci from the University of Campinas, focus on Picviz After a brief overview on parallel coordinates, Picviz architecture, and installation procedure, three real-world examples are presented that illustrate how to identify attacks from large amounts of data  Picviz is used to analyze SSH logs, Apache access logs and network traffic With these examples, it is demonstrated how Picviz can find attacks that previously have been hidden Recent additions to Picviz GUI have been made by Victor Amaducci under the mentorship of Sebastien Tricaud as part of the Google Summer of Code program 2009 The most recent version of Picviz is freely available for download from its project site at http wwwwallinfirenet picviz and support can be sought from the Picviz mailing list at http wwwwallinfirenet cgi-bin mailman listinfo picviz   French Chapter read more </description><link>http://www.secuobs.com/revue/news/165565.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/165565.shtml</guid></item>
<item><title>United Arab Emirates Chapter</title><description>Secuobs.com : 2009-09-15 15:09:03 - The Honeynet Project -    We are excited to announce the latest chapter coming on Board, the United Arab Emirates Chapter, hosted and formed by aeCERT This is the very first Chapter to be joining from the middle-east, we are very excited to have them on board and expect great things from them  Shucran  lance </description><link>http://www.secuobs.com/revue/news/141003.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/141003.shtml</guid></item>
<item><title>PaulDotCom</title><description>Secuobs.com : 2009-07-31 03:46:34 - The Honeynet Project -    Last week I had the honor of being interviewed by the sharp team at PaulDotCom, in which they quized me extensively about honeypots and honeypot technology I have had the chance to work with John Strands of the team, who is one of the best penetration testers I know, he really knows his stuff and creates great demonstration hacking videos If you have a chance, check it out, they are smart group of fun guys http pauldotcomcom 2009 07 pauldotcom-security-weekly---e-19html read more  IMAGE  </description><link>http://www.secuobs.com/revue/news/126735.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/126735.shtml</guid></item>
<item><title>Know Your Enemy  Containing Conficker</title><description>Secuobs.com : 2009-07-11 22:25:01 - The Honeynet Project -    The Honeynet Project is excited to announce the release of Know Your Enemy  Containing Conficker In this paper we present several potential methods to contain Conficker The approaches presented take advantage of the way Conficker patches infected systems, which can be used to remotelydetect a compromised system Furthermore, we demonstrate various methods to detect and remove Conficker locally and a potential vaccination tool is presented read more </description><link>http://www.secuobs.com/revue/news/119361.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/119361.shtml</guid></item>
<item><title>LEET09 Paper  PhoneyC  A Virtual Client Honeypot</title><description>Secuobs.com : 2009-07-11 19:32:02 - The Honeynet Project -    Earlier this week I had the good fortune to be in Boston for LEET09, a workshop on exploits, malware, and large scale trends I presented on PhoneyC, the Python honeyclient I've been working on The paper describes the architecture and features of the tool and a real world evaluation and test The talk was well received, and many thanks to the organizers of the conference and the PC for their helpful reviews Usenix has made the full paper available to all for free   Chicago Chapter read more </description><link>http://www.secuobs.com/revue/news/119279.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/119279.shtml</guid></item>
<item><title>Confusion About Honeypots</title><description>Secuobs.com : 2009-06-28 22:54:04 - The Honeynet Project -    Honeypots have been actively used by the security community for overten years now They are used for a variety of purposes, but now a daysprimarily for information gathering When honeypots first were beingused they generated a great deal of discussion about the legal issuesHowever, through the years this debate has died down, mostorganizations feeling these issues are minor I just wanted to sharean update on these thoughtsread more</description><link>http://www.secuobs.com/revue/news/114666.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/114666.shtml</guid></item>
<item><title>LEET09 Paper: PhoneyC: A Virtual Client Honeypot</title><description>Secuobs.com : 2009-05-21 14:19:40 - The Honeynet Project -    Earlier this week I had the good fortune to be in Boston for LEET09, aworkshop on exploits, malware, and large-scale trends I presented onPhoneyC, the Python honeyclient I've been working on The paperdescribes the architecture and features of the tool and a real worldevaluation and test The talk was well received, and many thanks tothe organizers of the conference and the PC for their helpful reviewsUsenix has made the full paper available to all for free* Chicago Chapterread more</description><link>http://www.secuobs.com/revue/news/99914.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/99914.shtml</guid></item>
<item><title>Honeywall update</title><description>Secuobs.com : 2009-05-21 14:19:40 - The Honeynet Project -    Finally updated the roo-base rpm to point athttp://yumhoneynetorg/roo/repo-14/ for the location of the yumrepository Once I have access to the server, someone with an olddeployment of roo 14, will be able to upgrade their honeywall asfollows:1 rpm -ihttp://yumhoneynetorg/roo/repo-14/roo-base-5-36hwnoarchrpm2 yum updateThis will update the honeywall with all updated system rpms effective25 April 2009read more</description><link>http://www.secuobs.com/revue/news/99913.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/99913.shtml</guid></item>
<item><title>First Improvement of PICVIZ is done</title><description>Secuobs.com : 2009-05-21 14:19:40 - The Honeynet Project -    Hi allAs defined in gsoc proposal the first step was prepare PicViz-Gui toallow change axes order, including add duplicated axes Even beforestart the codification process this feature is done I hope this is alittle sinal of we'll have success in all tasks that were defined Seea shot:axis0, As first and last* GSoC Project #7 - Improving PicVizread more</description><link>http://www.secuobs.com/revue/news/99912.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/99912.shtml</guid></item>
<item><title>A view on Conficker's inside</title><description>Secuobs.com : 2009-04-24 23:32:13 - The Honeynet Project -    Many people have asked us, how Conficker looks like That's a toughquestion for something that's hidden and tries to be as stealthy aspossible The last time somebody asked me: "Can you show meConficker", I decided to visualize Conficker Here is a little videothat shows the evil core of ConfickerC* Giraffe Chapterread more</description><link>http://www.secuobs.com/revue/news/87907.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/87907.shtml</guid></item>
<item><title>GSoC 2009 Student Slots Announced</title><description>Secuobs.com : 2009-04-20 23:28:22 - The Honeynet Project -    The results for Google Summer of Code 2009 are out and the HoneynetProject are very excited to have been allocated 9 official slots byGoogle You can view the project selection here:http://socghopappspotcom/org/home/google/gsoc2009/honeynetread more</description><link>http://www.secuobs.com/revue/news/85803.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/85803.shtml</guid></item>
<item><title>Simple Conficker Scanner v2</title><description>Secuobs.com : 2009-04-16 04:06:32 - The Honeynet Project -    Today we released version 2 of our Simple Conficker Scanner SCSv2It contains a new scanning method which allows for detection ofmachines infected with the recent Conficker version D or E, dependingon the naming scheme - the tool calls it D Although the patch to thevulnerable function NetpwPathCanonicalize was updated in the newvariant, the RPC response codes for specially crafted requests arestill different for infected machinesread more</description><link>http://www.secuobs.com/revue/news/83895.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/83895.shtml</guid></item>
<item><title>Google Summer of Code Applications</title><description>Secuobs.com : 2009-04-03 22:47:42 - The Honeynet Project   -    The Honeynet Project is very excited to be a member of the GoogleSummer of Code We are sponsoring at least eight GSoC projects andpotentialy more, depending on how many other ideas we received Googlehas just closed the application period, we are thrlled to see wereceived 55 applications Our mentors will spend the next weekreviewing and ranking each application Then, on 15 April Google willselect our top applicants At this time we do not know how manyapplicants will be allowed in our program, but we are hoping it willbe quite a few Meanwhile, ifread more</description><link>http://www.secuobs.com/revue/news/79263.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/79263.shtml</guid></item>
<item><title>Conficker Online Detection</title><description>Secuobs.com : 2009-04-02 15:25:47 - The Honeynet Project   -    Joe Stewart from the Conficker Working Group has created an eye chartthat allows for online identification of Conficker B and C infectionsThe idea of trying to load content from sites that are blocked byConficker is really smartread more</description><link>http://www.secuobs.com/revue/news/78397.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/78397.shtml</guid></item>
<item><title>Know Your Enemy: Containing Conficker</title><description>Secuobs.com : 2009-03-31 00:35:45 - The Honeynet Project   -    The Honeynet Project is excited to announce the release of Know YourEnemy: Containing Conficker In this paper we present severalpotential methods to contain Conficker The approaches presented takeadvantage of the way Conficker patches infected systems, which can beused to remotelydetect a compromised system Furthermore, wedemonstrate various methods to detect and remove Conficker locally anda potential vaccination tool is presentedread more</description><link>http://www.secuobs.com/revue/news/77112.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/77112.shtml</guid></item>
<item><title>Detecting and Containing Conficker - Management Overview</title><description>Secuobs.com : 2009-03-30 18:40:27 - The Honeynet Project   -    The Honeynet Project is very excited to announce a new scanning toolfor detecting Conficker and an upcoming Know Your Enemy paperdetailing how to contain Conficker Both the paper and the tool havebeen developed by Honeynet Project members Tillmann Werner and FelixLeder The tool was developed over the weekend, in co-ordination withDan Kamisnky, and this tool is now publicly available and is in theprocess of being integrated into most major vulnerability scanningtools, including Nmapread more</description><link>http://www.secuobs.com/revue/news/76943.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/76943.shtml</guid></item>
<item><title>Detecting Conficker</title><description>Secuobs.com : 2009-03-30 16:08:55 - The Honeynet Project   -    As you know, bad things are going to happen on April 1st: people willbe sending out emails to their friends, telling silly jokes andputting MTAs under a higher load Besides that but not quite thatbad, Conficker will activate its domain name generation routine tocontact command-and-control servers We have been researching thispiece of malware recently, with a focus on how to detectConficker-infected machines Felix and I had a discussion with DanKaminsky about the possibilities to actively detect Conficker andwrote a scanner for this taskread more</description><link>http://www.secuobs.com/revue/news/76839.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/76839.shtml</guid></item>
<item><title>Detecting and Containing Conficker</title><description>Secuobs.com : 2009-03-30 16:08:55 - The Honeynet Project   -    The Honeynet Project is very excited to announce a new scanning toolfor detecting Conficker and an upcoming Know Your Enemy paperdetailing how to contain Conficker Both the paper and the tool havebeen developed by Honeynet Project members Tillmann Werner and FelixLeder The tool was developed over the weekend, in co-ordination withDan Kamisnky, and this tool is now publicly available and is in theprocess of being integrated into most major vulnerability scanningtools, including Nmapread more</description><link>http://www.secuobs.com/revue/news/76838.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/76838.shtml</guid></item>
<item><title>GSoC Applications</title><description>Secuobs.com : 2009-03-27 17:12:34 - The Honeynet Project   -    Folks, just a friendly reminder that the Honeynet Project is activelyseeking and taking students for the annual Google Summer of Code Ifyou are interested in information security, open source and learningfrom some extremely talented developers in this area, then this is theplace for you We currently have eight project ideas, but we are opento any suggestions or ideas you may have Learn more at our HoneynetProject GSoC Ideas Page Applications close on Friday, 03 April so youonly have one week leftread more</description><link>http://www.secuobs.com/revue/news/75992.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/75992.shtml</guid></item>
<item><title>GSoC Mentoring Organization</title><description>Secuobs.com : 2009-03-19 08:38:36 - The Honeynet Project   -    We are excited to announce that the Honeynet Project has been selectedby Google to be a mentoring organization for their annual GoogleSummer of Code project Our team of volunteers is very excited aboutthis and look forward to working with and help mentor students aroundthe world about honeypot technologies To learn more about thedifferent projects you can work with us on, please take a moment toreview our IDEAS PAGE If you will be submitting an application, yourbest chance to be selected is to take your time aread more</description><link>http://www.secuobs.com/revue/news/72625.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/72625.shtml</guid></item>
<item><title>Google Summer of Code</title><description>Secuobs.com : 2009-03-13 18:45:17 - The Honeynet Project   -    We are very excited to announce the Honeynet Project has applied forthe Google Summer of Code for 2009read more</description><link>http://www.secuobs.com/revue/news/70882.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/70882.shtml</guid></item>
<item><title>Annual Honeynet Workshop</title><description>Secuobs.com : 2009-03-03 01:29:46 - The Honeynet Project   -    Once a year the Honeynet Project brings together members from aroundthe world for a one week workshop on honeypot research, developmentand deployments This year's event was hosted and sponsored by theInternational Multilateral Partnership Against Cyber-Threats IMPACT,a public-private alliance against cyber threats The event was held inIMPACT's facilities based in Cyberjaya, Malaysia Without a doubt,this was our most successful and productive workshop ever We had overtwenty countries and organizations represented, all dedicatread more</description><link>http://www.secuobs.com/revue/news/66721.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/66721.shtml</guid></item>
<item><title>Speaking Waledac</title><description>Secuobs.com : 2009-01-28 17:58:52 - The Honeynet Project   -    While it seems to be impossible to say whether waledac is thesuccessor of storm or not, what we can do is take a look at thetraffic encryption They guys over at Shadowserver have alreadyblogged some details about this We at the Giraffe Chapterinvestigated waledac's communication protocol further Here are ourresults* Giraffe Chapterread more</description><link>http://www.secuobs.com/revue/news/55930.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/55930.shtml</guid></item>
<item><title>Waledac is wishing merry christmas</title><description>Secuobs.com : 2009-01-27 22:25:47 - The Honeynet Project   -    Waledac is wishing merry christmasThere is a new bot in town It's called Waledac The way it isspreading reminds a lot of people of the good old storm botnet: Anemail is sent containing a "christmas card" in form of the executable"postcardexe"Waledac social engineeringA preliminary view on the binary has been given by the Shadowserverguys Steve AdairI had the chance to have a first look at the binary MD5ccddda141a19d693ad9cb206f2ae0de9 and want to note down some of my fewfindings to let the hunt begin* Giraffe Chapterread more</description><link>http://www.secuobs.com/revue/news/55693.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/55693.shtml</guid></item>
<item><title>Waledac</title><description>Secuobs.com : 2009-01-03 11:13:31 - The Honeynet Project   -    Waledac is wishing merry christmasThere is a new bot in town It's called Waledac The way it isspreading reminds a lot of people of the good old storm botnet: Anemail is sent containing a "christmas card" in form of the executable"postcardexe"Waledac social engineeringA preliminary view on the binary has been given by the Shadowserverguys Steve AdairI had the chance to have a first look at the binary MD5ccddda141a19d693ad9cb206f2ae0de9 and want to note down some of my fewfindings to let the hunt begin* Giraffe Chapterread more</description><link>http://www.secuobs.com/revue/news/48343.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/48343.shtml</guid></item>
<item><title>Annual Honeynet Project Workshop</title><description>Secuobs.com : 2008-12-19 02:47:13 - The Honeynet Project   -    Once a year the Honeynet Project brings together members from aroundthe world for a one week workshop on honeyopt research, developmentand deployments We are excited that for this year's event theworkshop will be sponsored and hosted by the InternationalMultilateral Partnership Against Cyber-Threats IMPACT, apublic-private alliance against cyber threats IMPACT is based inCyberjaya, Malaysia We are very excited for this opportunity as itwill be the first time we have hosted the event in Asia We would liketo thank IMPACT for tread more</description><link>http://www.secuobs.com/revue/news/45252.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/45252.shtml</guid></item>
<item><title>Welcome To The Honeynet Project Website</title><description>Secuobs.com : 2008-12-08 19:57:41 - The Honeynet Project   -    Welcome to our new website as we enter the age of Web 20 We havecreated a more dynamic website to allow our membes to create andpublish their own content We have so many different activities goingon with our various members that it can be challenging even for us tokeep up The goal is that each member can now publish and share withthe community whenever they like In addition we still have all theold content on the website We are still in the process of moving somecontent over, such as some of our KYE papers If you find contentmissing, a broken link or have any suggread more</description><link>http://www.secuobs.com/revue/news/41854.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/41854.shtml</guid></item>
<item><title>No more emulation</title><description>Secuobs.com : 2008-12-04 16:34:49 - The Honeynet Project   -    Emulation is an important technology in honeypots and honeynets It'snot always what we want, though, and here's why As you might know,most bots perform attacks in multiple stages, ie, they* send some exploit code to the victim that opens a shell,* connect to that shell or let the shell connect back,* invoke commands to download the actual malware binary,* execute the malwareCatching the exploit and providing a fake shell isn't too hard, asshown in this post But we certainly don't want a malware to getexecuted on our honeypot, not even in an emulated environmentInstead, we want to do different things with it, eg, submit it to acentral service for automated analysis* Giraffe Honeynetread more</description><link>http://www.secuobs.com/revue/news/40631.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/40631.shtml</guid></item>
<item><title>HeX LiveCD to be 20-RC2 soon</title><description>Secuobs.com : 2008-12-04 16:34:49 - The Honeynet Project   -    As effort of the Honeynet Project Malaysian chapter and the RawPacketteam initiative, HeX LiveCD was created It is a Network SecurityMonitoring NSM centric Live CD, built based on the principles ofNSM, for analysts, by analysts This project will be eventually forkedto Hex Sensor and Hex Server to complete the cycle of NSM processesBesides, HeX LiveCD is the blueprint for HornyD HornyD andHoneySuckle are the toolkits for the Malaysia Distributed HoneynetProjectread more</description><link>http://www.secuobs.com/revue/news/40630.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/40630.shtml</guid></item>
<item><title>MS08-067 exploitation in the wild</title><description>Secuobs.com : 2008-12-04 16:34:49 - The Honeynet Project   -    This article was originally published athttp://honeytrapmwcollectorg/msexploitIf you followed IT security related blogs or mailinglists lately, youare aware that a critical server service vulnerability in Microsoftoperating systems was published recently I'm not going to talk aboutthe details here, there are great resources available elsewhere andthe "reversing the ms08-067 patch" article isn't the only advice aboutexploiting holes you get on that pageOK, what have we got this time One of our honeytrap sensors caught anMS08-067 exploitation attempt today which we take as an example toshow how to perform a quick analysis and check what it does If youwant to play along, get the sanitized pcap from hereread more</description><link>http://www.secuobs.com/revue/news/40629.shtml</link><guid isPermaLink="false">http://www.secuobs.com/revue/news/40629.shtml</guid></item>
</channel>
</rss>
 
