<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>mcwresearch.com</title>
	<atom:link href="http://mcwresearch.com/feed" rel="self" type="application/rss+xml" />
	<link>http://mcwresearch.com</link>
	<description>Things I think I've thought about</description>
	<lastBuildDate>Mon, 28 Dec 2009 22:10:04 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
		<item>
		<title>Predator Drone Video Feeds Intercepted</title>
		<link>http://mcwresearch.com/archives/710</link>
		<comments>http://mcwresearch.com/archives/710#comments</comments>
		<pubDate>Mon, 28 Dec 2009 21:43:30 +0000</pubDate>
		<dc:creator>Michael</dc:creator>
				<category><![CDATA[cyber warfare]]></category>
		<category><![CDATA[5GW]]></category>

		<guid isPermaLink="false">http://mcwresearch.com/?p=710</guid>
		<description><![CDATA[Cyber warfare has been advanced a step by militants in Afghanistan, who have managed to intercept the unecrypted video feeds from UAVs orbiting overhead. At the beginning of the year, I laid out some examples of what effective cyber warfare entails, including this: Imagine compromising the enemy’s C4ISR infrastructure and not only knowing where all enemy [...]]]></description>
		<wfw:commentRss>http://mcwresearch.com/archives/710/feed</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>How To Fight The Cloud?</title>
		<link>http://mcwresearch.com/archives/704</link>
		<comments>http://mcwresearch.com/archives/704#comments</comments>
		<pubDate>Thu, 01 Oct 2009 19:49:36 +0000</pubDate>
		<dc:creator>Michael</dc:creator>
				<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://mcwresearch.com/?p=704</guid>
		<description><![CDATA[Once word hit our office of the upcoming Google Wave, we saw renewed interest in leveraging such collaboration tools, which means we have to again evaluate our stance against putting our intellectual property &#8216;in the cloud.&#8217; (I really hate that term) Putting information in the cloud means relinquishing control of that document to whatever provider [...]]]></description>
		<wfw:commentRss>http://mcwresearch.com/archives/704/feed</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>When Blackberries Become Carriers</title>
		<link>http://mcwresearch.com/archives/699</link>
		<comments>http://mcwresearch.com/archives/699#comments</comments>
		<pubDate>Fri, 18 Sep 2009 18:06:39 +0000</pubDate>
		<dc:creator>Michael</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Antivirus]]></category>
		<category><![CDATA[AV]]></category>
		<category><![CDATA[AV sucks]]></category>
		<category><![CDATA[Conficker]]></category>

		<guid isPermaLink="false">http://mcwresearch.com/?p=699</guid>
		<description><![CDATA[While this will be obvious to many, it still bears mentioning; Blackberries and other smart-phones can be carriers for worms and viruses when USB storage is enabled. I ran into a case earlier this week. Our HIPS software was alerting to an auto-run virus on an IT staffer&#8217;s F drive, which usually indicates a USB [...]]]></description>
		<wfw:commentRss>http://mcwresearch.com/archives/699/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Conficker Hits French MoD</title>
		<link>http://mcwresearch.com/archives/650</link>
		<comments>http://mcwresearch.com/archives/650#comments</comments>
		<pubDate>Tue, 10 Feb 2009 12:57:44 +0000</pubDate>
		<dc:creator>Michael</dc:creator>
				<category><![CDATA[cyber warfare]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Conficker]]></category>
		<category><![CDATA[downadup]]></category>
		<category><![CDATA[French MoD]]></category>

		<guid isPermaLink="false">http://mcwresearch.com/?p=650</guid>
		<description><![CDATA[The conficker/downadup worm has impacted the French Ministry of Defense, according to an article posted by The Telegraph. According to the article; &#8230;aircraft were unable to download their flight plans after databases were infected by a Microsoft virus they had already been warned about several months beforehand. At one point French naval staff were also [...]]]></description>
		<wfw:commentRss>http://mcwresearch.com/archives/650/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Conficker FUD?</title>
		<link>http://mcwresearch.com/archives/648</link>
		<comments>http://mcwresearch.com/archives/648#comments</comments>
		<pubDate>Thu, 22 Jan 2009 15:44:48 +0000</pubDate>
		<dc:creator>Michael</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Antivirus]]></category>
		<category><![CDATA[AV]]></category>
		<category><![CDATA[Conficker]]></category>
		<category><![CDATA[downadup]]></category>
		<category><![CDATA[FUD]]></category>

		<guid isPermaLink="false">http://mcwresearch.com/?p=648</guid>
		<description><![CDATA[Conficker, aka Downadup is gaining popularity among the non-techy news sites. Today I ran across this article on Rawstory.com. In it, David Perry of Trend Micro is quoted as saying &#8220;Downadup uses brute force from the infected network of botnets to break the password of the machine being attacked&#8221;. To my knowledge that isn&#8217;t how [...]]]></description>
		<wfw:commentRss>http://mcwresearch.com/archives/648/feed</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Worms are an effective weapon in cyber warfare</title>
		<link>http://mcwresearch.com/archives/647</link>
		<comments>http://mcwresearch.com/archives/647#comments</comments>
		<pubDate>Tue, 20 Jan 2009 19:56:00 +0000</pubDate>
		<dc:creator>Michael</dc:creator>
				<category><![CDATA[cyber warfare]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Conficker]]></category>
		<category><![CDATA[HMS Ark Royal]]></category>
		<category><![CDATA[UK Ministry of Defense]]></category>
		<category><![CDATA[UK MoD]]></category>

		<guid isPermaLink="false">http://mcwresearch.com/?p=647</guid>
		<description><![CDATA[CIO.com has an article about a &#8216;rapidly spreading virus&#8217; that is giving the UK Ministry of Defense a run for its money. First, viruses don&#8217;t spread on the network &#8212; worms spread on the network and a virus can be their payload. Semantic arguments aside, the story demonstrates just how effective a worm can still [...]]]></description>
		<wfw:commentRss>http://mcwresearch.com/archives/647/feed</wfw:commentRss>
		<slash:comments>7</slash:comments>
		</item>
		<item>
		<title>More on conficker</title>
		<link>http://mcwresearch.com/archives/646</link>
		<comments>http://mcwresearch.com/archives/646#comments</comments>
		<pubDate>Fri, 16 Jan 2009 18:56:40 +0000</pubDate>
		<dc:creator>Michael</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Antivirus]]></category>
		<category><![CDATA[AV]]></category>
		<category><![CDATA[Conficker]]></category>
		<category><![CDATA[downadup]]></category>

		<guid isPermaLink="false">http://mcwresearch.com/?p=646</guid>
		<description><![CDATA[After providing this wordy response to my friend about the conficker worm and defenses for it, he asked another simple question; &#8220;So if we patch within weeks of MS release we&#8217;re good?&#8221; To which I provided this less-than-simple answer; not completely. The patch stops the primary propagation method and AV stops the payload. (This probably [...]]]></description>
		<wfw:commentRss>http://mcwresearch.com/archives/646/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Network worms are still effective</title>
		<link>http://mcwresearch.com/archives/644</link>
		<comments>http://mcwresearch.com/archives/644#comments</comments>
		<pubDate>Wed, 14 Jan 2009 17:08:10 +0000</pubDate>
		<dc:creator>Michael</dc:creator>
				<category><![CDATA[AV sucks]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Antivirus]]></category>
		<category><![CDATA[Conficker]]></category>
		<category><![CDATA[Worm]]></category>

		<guid isPermaLink="false">http://mcwresearch.com/?p=644</guid>
		<description><![CDATA[A good friend recently emailed me to ask if AV would protect his servers from the Conficker worm and I thought this would be a good opportunity to continue my anti-antivirus tirade. The short answer to the question &#8216;will AV protect me from conficker&#8217; is &#8220;somewhat.&#8221; Here&#8217;s why. Below are the typical phases of a [...]]]></description>
		<wfw:commentRss>http://mcwresearch.com/archives/644/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>On Cyber War</title>
		<link>http://mcwresearch.com/archives/639</link>
		<comments>http://mcwresearch.com/archives/639#comments</comments>
		<pubDate>Fri, 02 Jan 2009 17:42:41 +0000</pubDate>
		<dc:creator>Michael</dc:creator>
				<category><![CDATA[cyber warfare]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[5GW]]></category>
		<category><![CDATA[Conficker]]></category>
		<category><![CDATA[Operation Cast Lead]]></category>

		<guid isPermaLink="false">http://mcwresearch.com/?p=639</guid>
		<description><![CDATA[We're hearing more and more of cyber attacks associated with physical attacks; Estonia, Georgia, and now Israel.  More often than not the attacks (usually website defacements or distributed denial of service (DDoS) attacks) are perpetrated by a lose-nit group of decentralized actors (open source warfare) rather than a well organized attack orchestrated by a military, government, or other hierarchal entity.  But as the tactics develop and effectiveness increases, cyber attacks will become more mainstream, just as other technologies of warfare develop and we progress further into <a href="http://globalguerrillas.typepad.com/globalguerrillas/2006/10/the_changing_fa.html">5th generation warfare</a> or 5GW.]]></description>
		<wfw:commentRss>http://mcwresearch.com/archives/639/feed</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Invigorate Postini</title>
		<link>http://mcwresearch.com/archives/638</link>
		<comments>http://mcwresearch.com/archives/638#comments</comments>
		<pubDate>Mon, 29 Dec 2008 21:05:05 +0000</pubDate>
		<dc:creator>Michael</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Content Manager]]></category>
		<category><![CDATA[Postini]]></category>

		<guid isPermaLink="false">http://mcwresearch.com/?p=638</guid>
		<description><![CDATA[One of the best features of Postini is the ability to write custom content filters. I leverage these to snipe spam that Postini doesn&#8217;t catch. One of my most effective (24,000+ caught in 42 days) is a filter I&#8217;ve titled &#8216;invigorate:&#8217; Subject Line matches regex &#8220;(Viagra&#124;Cialis)&#8221; AND Body contains text &#8220;http://&#8221; This will catch anything [...]]]></description>
		<wfw:commentRss>http://mcwresearch.com/archives/638/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

