Archives
- 2008.05.15: Microsoft BlueHat + Seattle
- 2008.05.15: Safari Carpet Bomb
- 2008.04.28: Amazon's Elastic Compute Cloud [EC2]: Initial Thoughts on Security Implications
- 2008.04.22: Interview With [IN]Secure Magazine
- 2008.04.17: Be Secure, and You'll be Compliant
- 2008.04.16: RSA 2008...Yawn
- 2008.03.31: Black Hat Europe 2008
- 2008.03.10: The iPhone SDK Press Conference
- 2008.02.26: Black Hat Briefings 2008 (Washington DC)
- 2008.01.28: Bad Sushi: Beating Phishers at their Own Game
- 2008.01.21: What Have You Changed Your Mind About? Why?
- 2007.11.19: DeepSec 2007 @ Vienna, Austria
- 2007.11.12: Illogical Arguments in the Name of Alan Turing
- 2007.10.14: hack.lu 2007
- 2007.10.11: Yahoo! Susceptible to Cross Site Request Forgery (XSRF) Attacks
- 2007.09.26: [IN]Secure Magazine, Issue 13
- 2007.08.28: Social Engineering Social Networking Services: A LinkedIn Example
- 2007.08.23: The O'Reilly Network Blogs Are Susceptible to Persistent Cross Site Scripting (XSS)
- 2007.07.29: Black Hat Briefings 2007, Las Vegas
- 2007.07.25: Additional Firefox 0 Day Exploits
- 2007.07.17: The Complexities of Assessing XSRF Automatically Yet Accurately
- 2007.07.14: Not for the Faint of Heart: Multiple Exploits Affecting Firefox, IE, Netscape, and Trillian
- 2007.07.01: iPhone Users: AT&T / Cingular Voicemail Susceptible to Caller ID Spoofing
- 2007.06.03: Google Gears: Initial Thoughts on Security Implications
- 2007.05.22: The String Theory of How to Retain Geeks?
- 2007.05.07: Pleasant Experience with Apple's Security Contact
- 2007.04.11: TED 2007 Videos
- 2007.04.07: Twitter and Jott Vulnerable to SMS and Caller ID Spoofing
- 2007.03.26: Point, Click, root: Metasploit Framework 3.0 Now Available
- 2007.03.25: Apple TV
- 2007.03.18: Amazon Susceptible to Cross Site Request Forgery
- 2007.03.14: Your GMail and Google Desktop Data is Vulnerable. Again.
- 2007.03.11: Circumventing Yet Strengthening Tor
- 2007.03.04: Overtaking Google Desktop
- 2007.01.22: Google's Anti-Phishing Extension (Firefox) Exposes Private User Data
- 2007.01.22: The Unfortunate Prevalence of Cross Site Request Forgery Vulnerabilities
- 2007.01.03: Adobe Acrobat JavaScript Execution Bug is a Huge Security Issue
- 2007.01.01: You're the PC now, Mac
- 2007.01.01: Your GMail Contact List is Hanging Out There
- 2006.12.20: mono XSP Server Source Code Disclosure Vulnerability
- 2006.12.19: Demonstrating the Consequences of Cross Site Scripting (XSS) Vulnerabilities
- 2006.12.09: M. Ward: Chinese Translation
- 2006.10.25: High Assurance SSL Certificates Will NOT Eliminate Phishing
- 2006.10.11: Using Google Code Search to Find Security Bugs
- 2006.10.09: XSS Attack Database
- 2006.09.30: Chicago on a Segway
- 2006.09.30: Cross-Site Scripting (XSS) Galore!
- 2006.09.28: Hack in the Box 2006
- 2006.09.24: The Brilliant Richard Dawkins
- 2006.09.04: TED Talks
- 2006.06.19: Any Jackass Can Kick Down a Barn, But it Takes a Good Carpenter to Build One
- 2006.06.19: Wait Wait.. Don't Tell Me
- 2006.05.27: Nmap and Google's Summer of Code 2006 Program
- 2006.05.24: Drowning Creativity
- 2006.05.21: Quis Custodiet Custodes Ipsos (Who Watches the Watchers) ?
- 2006.04.09: (Informal) Thoughts on AJAX and Security
- 2006.04.07: Dear "Parallels": Thank-you
- 2006.03.29: Mac OS X port of Nessus Now Available (Universal Binary)
- 2006.02.21: New Safari Vulnerability
- 2006.02.20: TaoSecurity
- 2006.02.12: Speaking at RSA 2006
- 2006.02.01: Exploit Cingular Voicemail Vulnerability via Caller ID Spoofing
- 2006.01.06: Newsvine is *fantastic*
- 2005.12.29: Exploiting the Windows XP/2003 Picture and Fax Viewer Metafile Overflow Vulnerability
- 2005.12.28: monodevelop via fink
- 2005.12.25: Can Apple do Better than Objective-C?
- 2005.12.22: Systm Episode 5: Asterisk
- 2005.12.22: The Cafe Question
- 2005.12.16: Version 3.0 (alpha) of the Metasploit Framework Now Available
- 2005.12.15: Two Things That Bother Me About Google’s New Firefox Extension
- 2005.12.12: Nessus 3.0.0 Released
- 2005.12.06: Another Reason Why Nessus3 won’t be Released Under the GPL?
- 2005.11.24: Fireworks @ Post Oak, Houston, TX
- 2005.11.23: Digg Vulnerable to XSS
- 2005.11.08: Papa John’s Pizza’s Corporate E-mails Still Exposed (thanks Google)
- 2005.10.27: Repeat After Me: Lack of _Output Encoding_ Causes XSS Vulnerabilities
- 2005.10.25: Web Application Security Testing Using twill
- 2005.10.24: Nessus Code Forks: GNessUS, Sussen, and Porz-Wahn
- 2005.10.10: Capturing Files from Network Streams
- 2005.10.06: Nessus3 Will Not be Released Under the GPL
- 2005.10.05: TrueCrypt: Open-Source On-the-Fly Encryption on Windows
- 2005.10.03: Capturing .torrent Requests
- 2005.09.28: Hack in the Box 2005
- 2005.09.23: Hurricane Rita @ Houston
- 2005.09.14: Good-bye Powerbook G4, Hello Dell 700m + iPod Nano
- 2005.09.04: del.icio.us + Digg
- 2005.09.03: T-Mobile Launches EDGE
- 2005.08.29: Synergy: Great Utility. Now, how about some Authentication and Encryption?
- 2005.08.17: (IN)Secure Magazine – Issue 3
- 2005.08.16: webkit2png.py
- 2005.08.11: BlackDog: USB Powered Linux Server
- 2005.08.11: OSCON 2005
- 2005.07.10: Launching Attacks via Tor
- 2005.07.04: 4th of July Celebrations - Bellevue, WA
- 2005.07.04: 125 Questions
- 2005.06.28: Command-line Growl Notifications
- 2005.06.28: Steve Jobs' Stanford Commencement Speech
- 2005.06.27: New Version of KisMAC Available
- 2005.06.26: The Corporation: A Prototypical Psychopath
- 2005.06.17: ROM Update for Treo 650 Requires OS-X Users to Manually Delete 44 Files?
- 2005.05.12: My First Dashboard Widget: Password Generator
- 2005.04.18: What's in Your Carry-on?
- 2005.04.14: Creating an RSS Feed of Your TiVo Shows
- 2005.04.12: Network Security Tools: Writing, Hacking, and Modifying Security Tools
- 2005.03.05: blink: The Power of Thinking without Thinking
- 2005.02.18: Google won’t let you search for PHP resources anymore. What's next?
- 2005.01.28: Exporting Keynote Presentations to Flash
- 2005.01.19: Tor: An anonymous Internet communication system
- 2004.10.31: Playing with Cocoa
- 2004.10.17: Jon Stewart on CNN's Crossfire
- 2004.10.13: New O'Reilly Network Article
- 2004.08.04: Playing with Mono and Gtk#
- 2004.07.30: OSCON 2004
- 2004.07.28: Done with Blackhat, OSCON on Friday
- 2004.07.03: Victoria, BC Pictures
- 2004.06.07: Introducing AirPort Express
- 2004.06.06: Nitesh - Chapter 1?!
- 2004.06.03: Writing Nessus Plugins
- 2004.05.30: Academic Life & Shy People
- 2004.05.16: My O'Reilly Weblog
- 2004.04.25: Nessus Article
- 2004.04.10: PlayFair Finds New Home
- 2004.04.10: Multi-coloured Chicks
- 2004.04.07: Interview with Spaf
- 2004.03.30: Foamy!
- 2004.03.29: Books and Movies
- 2004.03.04: OSCON 2004
- 2004.02.29: FreeTDS + PHP CLI on Mac OS X
- 2004.02.14: Snoqualmie Falls
- 2004.01.30: Bypass Compulsory Web Resigtrations
- 2004.01.30: Resources for Sony Ericsson Mobile Phones
- 2004.01.24: My Article on O'Reilly's ONLamp PHP Devcenter
- 2003.12.31: How to Sniff VNC Keystrokes
- 2003.12.31: It Snowed in Bellevue, WA Today!
- 2003.12.30: Ask Yahoo!
- 2003.12.30: Indian Bloggers List
- 2003.12.28: Not so Easy to Write a Book?
- 2003.12.28: Zip Code Visualizer
- 2003.12.26: Tivo Fodder
- 2003.12.26: Inside the Linux 2.6 Scheduler
- 2003.12.24: Reith Lectures 2003 - The Emerging Mind
- 2003.12.22: Hack in the Box & Blackhat Asia
- 2003.10.28: The Elegant Universe on PBS
- 2003.10.25: Everybody needs a bosom for a pillow, everybody needs a bosom, (x3)
- 2003.10.24: How to render the Segway obsolete
- 2003.10.13: Apple Powerbook Problem - Screenshots and more info
- 2003.10.13: Petition against defective Apple Powerbook LCDs
- 2003.10.05: Book Review
- 2003.10.02: HITB Conference