<?xml version="1.0" encoding="UTF-8"?><!-- generator="WordPress.com" -->
<rss version="0.92">
<channel>
	<title>fifth.sentinel</title>
	<link>http://5thsentinel.wordpress.com</link>
	<description>Just another WordPress.com weblog</description>
	<lastBuildDate>Tue, 27 Oct 2009 09:31:40 +0000</lastBuildDate>
	<docs>http://backend.userland.com/rss092</docs>
	<language>en</language>
	
	<item>
		<title>IT Rosetta Stone for using Circos</title>
		<description><![CDATA[In my last blog I introduce the genome visualization tool called Circos created by Martin Krzywinski. In this post I am going to try provide an overview of the Circos tool in such a way that you can safely concentrate on what the genome terminology represents in the configuration files without being concerned about the [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=5thsentinel.wordpress.com&blog=3513200&post=95&subd=5thsentinel&ref=&feed=1" />]]></description>
		<link>http://5thsentinel.wordpress.com/2009/10/27/it-rosetta-stone-for-using-circos/</link>
			</item>
	<item>
		<title>Inappropriate Content Visualization &#8211; Mark II</title>
		<description><![CDATA[Some time ago I wrote a blog explaining the visualization techniques I had developed to help non-technical HR personal interpret the overall scope of a particular investigation. While the specific evidence was perfectly fine to determine if there was a breach of policy, the depth of complicity of the end users actions can sometimes be [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=5thsentinel.wordpress.com&blog=3513200&post=94&subd=5thsentinel&ref=&feed=1" />]]></description>
		<link>http://5thsentinel.wordpress.com/2009/10/19/inappropriate-content-visualization-mark-ii/</link>
			</item>
	<item>
		<title>Breaking Malware callee protection functions in Javascript</title>
		<description><![CDATA[I have recently been working my way through the SANS (http://www.sans.org) coarse on Reverse Engineering Malware, which has been an extremely enjoyable experience. Anyway, while reading the sections on advance JavaScript obfuscation which explain how malware authors use the capabilities of the JavaScript argument.callee function to make analysis and debugging a lot harder, it struck [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=5thsentinel.wordpress.com&blog=3513200&post=89&subd=5thsentinel&ref=&feed=1" />]]></description>
		<link>http://5thsentinel.wordpress.com/2009/08/12/breaking-malware-callee-protection-functions-in-javascript/</link>
			</item>
	<item>
		<title>SANS SIFT &#8211; Using SleuthKit</title>
		<description><![CDATA[In my last post, I used the regtime.pl and mactime tools to help determine the potential time a malware infection occurred. In this post, which is very similar to the previous post, I will follow the same steps, however this time I will use the Sleuthkit tools and mactime to analyse the file system changes [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=5thsentinel.wordpress.com&blog=3513200&post=83&subd=5thsentinel&ref=&feed=1" />]]></description>
		<link>http://5thsentinel.wordpress.com/2009/06/10/sans-sift-using-sleuthkit/</link>
			</item>
	<item>
		<title>SANS SIFT &#8211; Using regtime.pl</title>
		<description><![CDATA[The following is an overview of how I used the SANS Forensics SIFT Workstation VM image to investigate a laptop that was infected with malware. The goal of the investigation was to determine if possible how the machine got infected, and when it was infected. To this end I used the regtime.pl utility that is [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=5thsentinel.wordpress.com&blog=3513200&post=76&subd=5thsentinel&ref=&feed=1" />]]></description>
		<link>http://5thsentinel.wordpress.com/2009/06/07/sans-sift-using-regtime-pl/</link>
			</item>
	<item>
		<title>AUSCert 2009 Wrap-Up</title>
		<description><![CDATA[Sometimes it’s the small things that makes a conference more enjoyable:-

 Full-time vendor sponsored barrister for good caffeine injections at anytime &#8211; nice
Full-time vendor sponsored drinks fridge for your cold drink alternative &#8211; nice
Full-time vendor sponsored ice creams &#8211; nice
 Vendor sponsored Wireless LAN &#8211; would have been handy if I wanted to use it

Sometimes [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=5thsentinel.wordpress.com&blog=3513200&post=70&subd=5thsentinel&ref=&feed=1" />]]></description>
		<link>http://5thsentinel.wordpress.com/2009/05/22/auscert-2009-wrap-up/</link>
			</item>
	<item>
		<title>Bootvis replacement for Vista</title>
		<description><![CDATA[In the past, when my frustration with the time it took to boot up my Windows XP laptop finally got the better of me, I would track down a copy of the old Microsoft Bootvis utility. This provides a nice graphical view of what is happening as a machine is booting. However like many things, [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=5thsentinel.wordpress.com&blog=3513200&post=68&subd=5thsentinel&ref=&feed=1" />]]></description>
		<link>http://5thsentinel.wordpress.com/2009/05/12/bootvis-replacement-for-vista/</link>
			</item>
	<item>
		<title>Inappropriate Content Visualization</title>
		<description><![CDATA[For those of you who came here hoping to see some visually inappropriate content I am sorry to disappoint you. What I am writing about to day is a technique that I have developed over a number of internal Enterprise HR investigations that I supported involving the emailing of inappropriate material.
Historically when I have supported [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=5thsentinel.wordpress.com&blog=3513200&post=53&subd=5thsentinel&ref=&feed=1" />]]></description>
		<link>http://5thsentinel.wordpress.com/2009/04/01/inappropriate-content-visualization/</link>
			</item>
	<item>
		<title>What is an Enterprise Ready eBook Reader</title>
		<description><![CDATA[
The growing market of eBook readers has started to get my wallet itching. However being from &#8220;the land Down Under&#8221;, I am limited as to what I can buy directly. Or more importantly, what I can walk into a store and play with first before coughing up all the money and buying it online.


Even so, [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=5thsentinel.wordpress.com&blog=3513200&post=35&subd=5thsentinel&ref=&feed=1" />]]></description>
		<link>http://5thsentinel.wordpress.com/2009/03/12/what-is-an-enterprise-ready-ebook-reader/</link>
			</item>
	<item>
		<title>More than just a fingerprint for authentication</title>
		<description><![CDATA[For those interested in a new spin on biometric authentication using the finger, you may want to have a look at VeinID from Hitachi. The marketing hype is certainly working on overdrive with impressive technical terms like &#8220;vascular pattern recognition&#8221; and LED&#8217;s that penetrate the bodies tissues with near infrared light which is sure to [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=5thsentinel.wordpress.com&blog=3513200&post=32&subd=5thsentinel&ref=&feed=1" />]]></description>
		<link>http://5thsentinel.wordpress.com/2008/12/01/more-than-just-a-fingerprint-for-authentication/</link>
			</item>
</channel>
</rss>
