<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0"><channel><atom:link rel="hub" href="http://tumblr.superfeedr.com/" xmlns:atom="http://www.w3.org/2005/Atom"/><description>Security, Simplified.</description><title>403 Blogs</title><generator>Tumblr (3.0; @403labs)</generator><link>http://blog.403labs.com/</link><item><title>Windows XP Lifecycle Sunset: It's The Final Countdown</title><description>Our friend and colleague, Walt Conway, posted a great column on the Windows XP sunset over at...</description><link>http://blog.403labs.com/post/47486913106</link><guid>http://blog.403labs.com/post/47486913106</guid><pubDate>Mon, 08 Apr 2013 17:17:00 -0500</pubDate><category>pcidss</category><category>padss</category><category>pentest</category><category>submission</category><category>pci</category><category>microsoft</category><category>windows</category><category>xp</category><category>lifecycle</category><category>support</category><category>compliance</category><category>risk</category><category>hipaa</category><category>asv</category></item><item><title>How to Decompress an LZMA-Compressed Squashfs on BackTrack 5</title><description>If you&amp;#8217;re trying to extract a Squashfs and get a zlib::uncompress failed, unknown error -3...</description><link>http://blog.403labs.com/post/44787007255</link><guid>http://blog.403labs.com/post/44787007255</guid><pubDate>Thu, 07 Mar 2013 09:47:00 -0600</pubDate><category>squashfs</category><category>lzma</category><category>extract</category><category>compression</category><category>decompress</category><category>filesystem</category><category>zlib</category><category>reverseengineering</category><category>backtrack</category><category>linux</category><category>submission</category></item><item><title>HIPAA Gets a Second Wind</title><description>On January 17th, the U.S. Department of Health and Human Services (HHS) announced several changes to...</description><link>http://blog.403labs.com/post/41711188444</link><guid>http://blog.403labs.com/post/41711188444</guid><pubDate>Mon, 28 Jan 2013 11:57:46 -0600</pubDate><category>hipaa</category><category>phi</category><category>breach</category><category>risk</category><category>assessment</category><category>hitech</category><category>hhs</category><category>healthcare</category><category>omnibus</category><category>insurance</category><category>privacy</category><category>security</category><category>infosec</category><category>submission</category></item><item><title>Exynos Vulnerability on Samsung Devices</title><description>I recently purchased a Samsung Galaxy Note II and have been thoroughly enjoying it. The number of...</description><link>http://blog.403labs.com/post/38403318223</link><guid>http://blog.403labs.com/post/38403318223</guid><pubDate>Thu, 20 Dec 2012 14:26:07 -0600</pubDate><category>exynos</category><category>vulnerability</category><category>malware</category><category>exploit</category><category>samsung</category><category>android</category><category>galaxy</category><category>infosec</category><category>security</category><category>data</category><category>breach</category><category>submission</category></item><item><title>Potential LogMeIn, DocuSign Email Leaks</title><description>On Friday, December 14, Brian Krebs posted an entry titled, “LogMeIn, DocuSign Investigate Breach...</description><link>http://blog.403labs.com/post/38311599743</link><guid>http://blog.403labs.com/post/38311599743</guid><pubDate>Wed, 19 Dec 2012 11:13:33 -0600</pubDate><category>submission</category><category>spam</category><category>phishing</category><category>email</category><category>infosec</category><category>security</category><category>malware</category><category>fraud</category><category>logmein</category><category>docusign</category><category>breach</category></item><item><title>Attackers Specifically Targeting Mac OS Point of Sale (POS) Systems</title><description>As a Payment Card Industry Forensic Investigator (PFI), 403 Labs is constantly examining the latest...</description><link>http://blog.403labs.com/post/38226340746</link><guid>http://blog.403labs.com/post/38226340746</guid><pubDate>Tue, 18 Dec 2012 08:42:06 -0600</pubDate><category>pcidss</category><category>pentest</category><category>submission</category><category>mac</category><category>apple</category><category>keylogger</category><category>breach</category><category>forensics</category><category>pfi</category><category>pos</category><category>investigation</category><category>firewall</category><category>malware</category></item><item><title>A Potential New Leash on the Data-Mining Monsters</title><description>Yesterday, the Senate Judiciary Committee gave approval to a privacy bill sponsored by Sen. Al...</description><link>http://blog.403labs.com/post/37915084826</link><guid>http://blog.403labs.com/post/37915084826</guid><pubDate>Fri, 14 Dec 2012 11:12:21 -0600</pubDate><category>infosec</category><category>security</category><category>google</category><category>apple</category><category>privacy</category><category>franken</category><category>data</category><category>mobile</category><category>application</category><category>location</category><category>submission</category></item><item><title>PCI Council Releases Risk Assessment Guidelines</title><description>PCI DSS Requirement 12.1.2 tells merchants and service providers that they must prepare a formal...</description><link>http://blog.403labs.com/post/36066605285</link><guid>http://blog.403labs.com/post/36066605285</guid><pubDate>Mon, 19 Nov 2012 09:17:16 -0600</pubDate><category>pcidss</category><category>submission</category><category>risk</category><category>assessment</category><category>qsa</category><category>pci</category><category>12.1.2</category><category>guidelines</category><category>merchants</category><category>serviceproviders</category><category>sig</category><category>pcissc</category></item><item><title>pgpass_creds – A new Metasploit Post Module</title><description>I recently contributed a module, pgpass_creds, to the Metasploit Framework. It is a post module that...</description><link>http://blog.403labs.com/post/35272464611</link><guid>http://blog.403labs.com/post/35272464611</guid><pubDate>Thu, 08 Nov 2012 09:16:57 -0600</pubDate><category>credentials</category><category>exploit</category><category>infosec</category><category>metasploit</category><category>pentest</category><category>pgpass</category><category>postgresql</category><category>security</category><category>submission</category><category>msf</category></item><item><title>P2PE Challenges – Looking at Endpoint Devices</title><description>The Payment Card Industry Security Standards Council (PCI SSC) made several significant developments...</description><link>http://blog.403labs.com/post/33429817198</link><guid>http://blog.403labs.com/post/33429817198</guid><pubDate>Fri, 12 Oct 2012 09:41:10 -0500</pubDate><category>padss</category><category>pcidss</category><category>submission</category><category>pin</category><category>p2pe</category><category>encryption</category><category>point-to-point</category><category>pcissc</category><category>pts</category><category>security</category><category>infosec</category></item><item><title>Optimizing oclHashcat-plus GPU Performance/Workload With Rules and Masks</title><description>Graphics processing units (GPUs) are incredibly fast at processing repeated tasks in parallel....</description><link>http://blog.403labs.com/post/32397670345</link><guid>http://blog.403labs.com/post/32397670345</guid><pubDate>Thu, 27 Sep 2012 11:07:00 -0500</pubDate><category>pentest</category><category>submission</category><category>hashcat</category><category>gpu</category><category>password</category><category>cracking</category><category>brute-force</category><category>utilization</category><category>mask</category><category>maskprocessor</category><category>workload</category></item><item><title>A Hacker's Bucket List</title><description>As a technologist and security enthusiast, part of the &amp;#8220;fun&amp;#8221; we have at work is tossing...</description><link>http://blog.403labs.com/post/32348548783</link><guid>http://blog.403labs.com/post/32348548783</guid><pubDate>Wed, 26 Sep 2012 15:59:21 -0500</pubDate><category>infosec</category><category>hacker</category><category>security</category><category>medical</category><category>hipaa</category><category>data</category><category>theft</category><category>pii</category><category>privacy</category><category>phi</category><category>healthcare</category><category>submission</category></item><item><title>iPhone 5 Launch Day: An Identity Thief’s Dream</title><description>16 times (not nine).  16 TIMES!  That’s how many times I needed to provide my Social Security number...</description><link>http://blog.403labs.com/post/31994218072</link><guid>http://blog.403labs.com/post/31994218072</guid><pubDate>Fri, 21 Sep 2012 13:29:17 -0500</pubDate><category>iphone</category><category>apple</category><category>identity</category><category>socialsecurity</category><category>ssn</category><category>creditcard</category><category>license</category><category>theft</category><category>infosec</category><category>security</category><category>submission</category></item><item><title>E-Discovery - Overlooked Sources for Early Case Assessment</title><description>Whether you are experienced with electronic discovery (e-discovery) or new to the process, the...</description><link>http://blog.403labs.com/post/31985541510</link><guid>http://blog.403labs.com/post/31985541510</guid><pubDate>Fri, 21 Sep 2012 10:03:00 -0500</pubDate><category>anti-virus</category><category>assessment</category><category>av</category><category>case</category><category>data</category><category>discovery</category><category>dlp</category><category>e-discovery</category><category>eca</category><category>electronic</category><category>forensics</category><category>infosec</category><category>logs</category><category>security</category><category>submission</category><category>pfi</category></item><item><title>Secure Application Development and the OWASP Top 10 (Pt. 3 of 10)</title><description>This is part 3 of a 10-part series. Be sure to check out part 1 and part 2 if you haven’t...</description><link>http://blog.403labs.com/post/31924845591</link><guid>http://blog.403labs.com/post/31924845591</guid><pubDate>Thu, 20 Sep 2012 10:46:00 -0500</pubDate><category>pcidss</category><category>pentest</category><category>submission</category><category>owasp</category><category>application</category><category>development</category><category>infosec</category><category>security</category><category>coding</category><category>6.5</category><category>session</category><category>credentials</category><category>authentication</category></item><item><title>403 Labs Unveils New Branding, Website</title><description>Brookfield, WI – September 11, 2012 – 403 Labs, LLC, a leading information security consulting and...</description><link>http://blog.403labs.com/post/31328675945</link><guid>http://blog.403labs.com/post/31328675945</guid><pubDate>Tue, 11 Sep 2012 04:56:00 -0500</pubDate><category>padss</category><category>pcidss</category><category>pentest</category><category>submission</category><category>about403</category><category>forensics</category><category>infosec</category><category>pressrelease</category><category>security</category><category>compliance</category></item><item><title>Emerging Trends in Advanced Persistent Threats (APTs)</title><description>I recently sat in on a webinar on the future of advanced persistent threats (APT).  A few things...</description><link>http://blog.403labs.com/post/29971842507</link><guid>http://blog.403labs.com/post/29971842507</guid><pubDate>Wed, 22 Aug 2012 11:49:00 -0500</pubDate><category>pentest</category><category>submission</category><category>gauss</category><category>stuxnet</category><category>duqu</category><category>flame</category><category>apt</category><category>advanced</category><category>persistent</category><category>threat</category><category>infosec</category><category>security</category></item><item><title>Malware: The Good, the Bad and the Ugly</title><description>This presentation by Pete Arzamendi, CISSP, QSA, PA-QSA, GREM, a consultant at 403 Labs, was given...</description><link>http://blog.403labs.com/post/29624175569</link><guid>http://blog.403labs.com/post/29624175569</guid><pubDate>Fri, 17 Aug 2012 10:29:00 -0500</pubDate><category>dynamic</category><category>forensics</category><category>infosec</category><category>malware</category><category>memory</category><category>pentest</category><category>presentation</category><category>security</category><category>static</category><category>submission</category><category>analysis</category></item><item><title>Merchants are the Winners in the Qualified Integrators and Resellers (QIR) Program </title><description>If you are a merchant with a third-party system integrator or software reseller that installed or...</description><link>http://blog.403labs.com/post/29479959575</link><guid>http://blog.403labs.com/post/29479959575</guid><pubDate>Wed, 15 Aug 2012 09:04:05 -0500</pubDate><category>padss</category><category>pcidss</category><category>submission</category><category>qir</category><category>integrator</category><category>reseller</category><category>payment</category><category>application</category><category>security</category><category>infosec</category><category>vendor</category><category>implementation</category></item><item><title>403 Labs Adds Mark Shelhart to Manage Forensics</title><description>Brookfield, WI – August 2, 2012 – 403 Labs, LLC, a leading information security consulting and...</description><link>http://blog.403labs.com/post/28547479333</link><guid>http://blog.403labs.com/post/28547479333</guid><pubDate>Thu, 02 Aug 2012 03:56:00 -0500</pubDate><category>about403</category><category>e-discovery</category><category>forensics</category><category>incidentresponse</category><category>infosec</category><category>pressrelease</category><category>security</category><category>submission</category><category>pfi</category></item></channel></rss>
