<rss version="2.0"><channel><title>Honeypots (honeypots) Mailing List</title>
<link>http://seclists.org/#honeypots</link>
<description>Discussions about tracking attackers by setting up decoy honeypots or entire honeynet networks.</description>
<language>en-us</language><ttl>60</ttl>
<item><title>CFP For HITBSecConf2008 - Malaysia Closing Soon</title><description>Posted by Praburaajan on Jun 28&lt;p&gt;


&lt;p&gt;
This is a reminder that the Call for Papers for HITBSecConf2008 -
&lt;br /&gt;
Malaysia is closing on the 30th of June.
&lt;br /&gt;
&lt;p&gt;The HITBSecConf series is a deep-knowledge technical conference. Talks
&lt;br /&gt;
that are more technical or that discuss new and never before seen attack
&lt;br /&gt;
methods are of more interest than a...</description>
<link>http://seclists.org/honeypots/2008/q2/0017.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0017.html</guid>
<pubDate>Sat, 28 Jun 2008 09:14:44 +0800</pubDate></item>
<item><title>BA-Con 2008 CFP - Buenos Aires, Sept. 30  Oct. 1 (closes July 11 2008)</title><description>Posted by Dragos Ruiu on Jun 27&lt;p&gt;


&lt;p&gt;
BA-Con 2008 CALL FOR PAPERS
&lt;br /&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;BUENOS AIRES, Argentina -- The first annual BA-Con applied
&lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;technical security conference - where the eminent figures in the
&lt;br /&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;international and South American security industry will get together
&lt;br /&gt;...</description>
<link>http://seclists.org/honeypots/2008/q2/0016.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0016.html</guid>
<pubDate>Fri, 27 Jun 2008 09:17:12 -0700</pubDate></item>
<item><title>New Release of Unhide (20080519)</title><description>Posted by yago jesus on Jun 27&lt;p&gt;


&lt;p&gt;
[*] What is Unhide ?
&lt;br /&gt;
&lt;p&gt;Unhide is a forensic tool to find processes and TCP/UDP ports hidden
&lt;br /&gt;
by rootkits / LKMs or any other hidden techniques.
&lt;br /&gt;
&lt;p&gt;[*] What is new in this release
&lt;br /&gt;
&lt;p&gt;* Fixed a race condition bug that showed false positives
&lt;br /&gt;
&lt;p&gt;* Added manpages
&lt;br /&gt;
&lt;p&gt;URL
&lt;br /&gt;
&lt;p&gt;...</description>
<link>http://seclists.org/honeypots/2008/q2/0015.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0015.html</guid>
<pubDate>Fri, 27 Jun 2008 01:55:16 +0200</pubDate></item>
<item><title>Re: Sebek-WIN32 v3.0.4</title><description>Posted by pinowudi on Jun 18&lt;p&gt;


&lt;p&gt;
It did exactly as it is supposed to.  Sebek is basically a legit, 
&lt;br /&gt;
&#39;authorized&#39; trojan horse, with the capabilities as such.  Way to go 
&lt;br /&gt;
NOD32!  Add it to the manual exceptions whitelist
&lt;br /&gt;
&lt;p&gt;&lt;p&gt;&lt;p&gt;forensicist_at_gmail&amp;#46;com wrote:
&lt;br /&gt;
&amp;gt; I am using NOD32 adn it show unknown newHeur_PE_virus.
&lt;br /&gt;
&amp;gt; 
&lt;br /&gt;
...</description>
<link>http://seclists.org/honeypots/2008/q2/0014.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0014.html</guid>
<pubDate>Wed, 18 Jun 2008 18:52:23 -0400</pubDate></item>
<item><title>Re: Re: Sebek-WIN32 v3.0.4</title><description>Posted by forensicist_at_gmail.com on Jun 17&lt;p&gt;


 (&#39;binary&#39; encoding is not supported, stored as-is)
I am using NOD32 adn it show unknown newHeur_PE_virus.
&lt;br /&gt;
Received on Jun 17 2008

</description>
<link>http://seclists.org/honeypots/2008/q2/0013.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0013.html</guid>
<pubDate>17 Jun 2008 14:41:28 -0000</pubDate></item>
<item><title>Re: Sebek-WIN32 v3.0.4</title><description>Posted by Jamie Riden on Jun 17&lt;p&gt;


&lt;p&gt;
2008/6/17  &amp;lt;forensicist_at_gmail&amp;#46;com&amp;gt;:
&lt;br /&gt;
&amp;gt; I have scanned Sebek-WIN32 v3.0.3 &amp;amp; Sebek-WIN32 v3.0.4 but both are infected and AV detected it as a Malware.
&lt;br /&gt;
&lt;p&gt;Hi there,
&lt;br /&gt;
&lt;p&gt;Can you tell us which AV software you are using, and what malware it
&lt;br /&gt;
claims to detect?
&lt;br /&gt;
&lt;p&gt;I guess it&#39;s just detecting...</description>
<link>http://seclists.org/honeypots/2008/q2/0012.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0012.html</guid>
<pubDate>Tue, 17 Jun 2008 13:26:37 +0100</pubDate></item>
<item><title>Sebek-WIN32 v3.0.4</title><description>Posted by forensicist_at_gmail.com on Jun 17&lt;p&gt;


 (&#39;binary&#39; encoding is not supported, stored as-is)
I have scanned Sebek-WIN32 v3.0.3 &amp;amp; Sebek-WIN32 v3.0.4 but both are infected and AV detected it as a Malware. Also, when I restarted my PC1 after installation of Sebek-WIN32 v3.0.3 and restarted my PC2 after installation of Sebek-WIN32...</description>
<link>http://seclists.org/honeypots/2008/q2/0011.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0011.html</guid>
<pubDate>17 Jun 2008 10:03:43 -0000</pubDate></item>
<item><title>Re: Help find subject for a paper</title><description>Posted by Colin Copley on May 27&lt;p&gt;


&lt;p&gt;
---- Original Message ----- 
&lt;br /&gt;
From: &amp;quot;Vin&iacute;cius Batistela&amp;quot; &amp;lt;vinicius_at_batistela&amp;#46;org&amp;gt;
&lt;br /&gt;
To: &amp;lt;honeypots_at_securityfocus&amp;#46;com&amp;gt;
&lt;br /&gt;
Sent: Tuesday, May 27, 2008 12:35 AM
&lt;br /&gt;
Subject: Help find subject for a paper
&lt;br /&gt;
&lt;p&gt;&lt;p&gt;&amp;gt; Hi, i&#39;m from Brazil, student of computer science and i am...</description>
<link>http://seclists.org/honeypots/2008/q2/0010.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0010.html</guid>
<pubDate>Tue, 27 May 2008 16:11:55 +0100</pubDate></item>
<item><title>Re: Help find subject for a paper</title><description>Posted by Jakub on May 27&lt;p&gt;


&lt;p&gt;
maybe botnet&#39;s?
&lt;br /&gt;
&lt;p&gt;this seems like a top topic of our time
&lt;br /&gt;
and there is some materials about it already so you shouldnt have problems
&lt;br /&gt;
to get something to start with
&lt;br /&gt;
&lt;p&gt;&lt;p&gt;Jakub Maslowski
&lt;br /&gt;
&lt;p&gt;2008/5/27 Vin&iacute;cius Batistela &amp;lt;vinicius_at_batistela&amp;#46;org&amp;gt;:
&lt;br /&gt;
&amp;gt; Hi, i&#39;m from Brazil, student of computer...</description>
<link>http://seclists.org/honeypots/2008/q2/0009.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0009.html</guid>
<pubDate>Tue, 27 May 2008 12:50:09 +0200</pubDate></item>
<item><title>Re: Help find subject for a paper</title><description>Posted by Jon Kibler on May 27&lt;p&gt;


&lt;p&gt;
&lt;p&gt;Vin&iacute;cius Batistela wrote:
&lt;br /&gt;
&amp;gt; Hi, i&#39;m from Brazil, student of computer science and i am doing a
&lt;br /&gt;
&amp;gt; paper about honeypots and honeynets. I have already done a research
&lt;br /&gt;
&amp;gt; and i know most of the concepts about them. But now, i have to choose
&lt;br /&gt;
&amp;gt; something more practical to do and i don&#39;t...</description>
<link>http://seclists.org/honeypots/2008/q2/0008.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0008.html</guid>
<pubDate>Tue, 27 May 2008 06:40:55 -0400</pubDate></item>
<item><title>Help find subject for a paper</title><description>Posted by Vincius Batistela on May 26&lt;p&gt;


&lt;p&gt;
Hi, i&#39;m from Brazil, student of computer science and i am doing a
&lt;br /&gt;
paper about honeypots and honeynets. I have already done a research
&lt;br /&gt;
and i know most of the concepts about them. But now, i have to choose
&lt;br /&gt;
something more practical to do and i don&#39;t know what. I want to do
&lt;br /&gt;
something that...</description>
<link>http://seclists.org/honeypots/2008/q2/0007.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0007.html</guid>
<pubDate>Mon, 26 May 2008 20:35:09 -0300</pubDate></item>
<item><title>CfP hack.lu 2008</title><description>Posted by hack.lu 2008 on May 20&lt;p&gt;


&lt;p&gt;
Call for Papers Hack.lu 2008
&lt;br /&gt;
&lt;p&gt;The purpose of the hack.lu convention is to give an open and free 
&lt;br /&gt;
playground where people can discuss the implication of new technologies 
&lt;br /&gt;
in society.
&lt;br /&gt;
&lt;p&gt;hack.lu is a balanced mix convention where technical and non-technical 
&lt;br /&gt;
people can meet each others and share...</description>
<link>http://seclists.org/honeypots/2008/q2/0006.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0006.html</guid>
<pubDate>Tue, 20 May 2008 10:25:54 +0200</pubDate></item>
<item><title>CFP For HITBSecConf2008 - Malaysia Now Open</title><description>Posted by Praburaajan on May 18&lt;p&gt;


&lt;p&gt;
Hello from Malaysia!
&lt;br /&gt;
&lt;p&gt;The Call for Papers (CFP) for the 6th Hack In The Box Security
&lt;br /&gt;
Conference in Malaysia (27th - 30th October 2008) is now open.
&lt;br /&gt;
&lt;p&gt;We&#39;ve got some really cool stuff lined up this year including an
&lt;br /&gt;
open-hack competition for charity, a third track in the conference
&lt;br /&gt;
(hitb-labs),...</description>
<link>http://seclists.org/honeypots/2008/q2/0005.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0005.html</guid>
<pubDate>Sun, 18 May 2008 10:31:54 +0800</pubDate></item>
<item><title>Final EUSecWest 2008 Speakers London May 2122</title><description>Posted by Dragos Ruiu on May 8&lt;p&gt;


&lt;p&gt;
The selected papers for EUSecWest 2008 are:
&lt;br /&gt;
&lt;p&gt;*   PhlashDance, discovering permanent denial of service attacks against 
&lt;br /&gt;
embedded systems - Rich Smith, HP Labs
&lt;br /&gt;
&lt;p&gt;*   Attacking Near Field Communications (NFC) Mobile Phones - Collin Muliner, 
&lt;br /&gt;
trifinite
&lt;br /&gt;
&lt;p&gt;*   Abusing X.509 certificate features -...</description>
<link>http://seclists.org/honeypots/2008/q2/0004.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0004.html</guid>
<pubDate>Thu, 8 May 2008 21:07:38 -0700</pubDate></item>
<item><title>Re: Honeypot research as part of a senior project (thesis) at the University of Illinois Urbana-Champaign</title><description>Posted by merigoth_at_gmail.com on May 3&lt;p&gt;


&lt;p&gt;
You might want to contact the honeynet project folks. They can be
&lt;br /&gt;
found at honeynet.org. Also, check out the various chapters
&lt;br /&gt;
(http://www.honeynet.org/misc/project.html). The chapters might be
&lt;br /&gt;
able or willing to help in different ways than the main project body.
&lt;br /&gt;
&lt;p&gt;&lt;p&gt;On 5/3/08, Chris Pick...</description>
<link>http://seclists.org/honeypots/2008/q2/0003.html</link><guid isPermaLink="true">http://seclists.org/honeypots/2008/q2/0003.html</guid>
<pubDate>Sat, 3 May 2008 22:03:38 +0000</pubDate></item>
</channel></rss>