Security Basics mailing list archives

RE: AW: Legendary Hacker Kevin Mitnick on malware and social engineering


From: "Leonard Mano" <leonmano () msn com>
Date: Mon, 17 Jul 2006 18:58:47 -0400

Here is a link to the whitepaper. Fill the text boxes ...

http://www.mitnickwhitepaper.com/id.lasso?tid=6

Leonard


From: Christian.Assfalg () bc boehringer-ingelheim com
To: security-basics () securityfocus com
Subject: AW: Legendary Hacker Kevin Mitnick on malware and social engineering
Date: Mon, 17 Jul 2006 07:07:55 +0200
MIME-Version: 1.0
Received: from outgoing.securityfocus.com ([205.206.231.26]) by bay0-mc5-f2.bay0.hotmail.com with Microsoft SMTPSVC(6.0.3790.2444); Mon, 17 Jul 2006 11:34:17 -0700 Received: from outgoing.securityfocus.com by outgoing.securityfocus.com via smtpd (for bay0-oim-f.bay0.hotmail.com [65.54.244.136]) with ESMTP; Mon, 17 Jul 2006 11:27:35 -0700 Received: from lists.securityfocus.com (lists.securityfocus.com [205.206.231.19])by outgoing2.securityfocus.com (Postfix) with QMQPid 26419148380; Mon, 17 Jul 2006 11:03:24 -0600 (MDT)
Received: (qmail 27938 invoked from network); 17 Jul 2006 06:02:45 -0000
X-Message-Info: LsUYwwHHNt1Q12OvUTPc3QsBwjuP2jacfTNXz8/0lkU=
Mailing-List: contact security-basics-help () securityfocus com; run by ezmlm
Precedence: bulk
List-Id: <security-basics.list-id.securityfocus.com>
List-Post: <mailto:security-basics () securityfocus com>
List-Help: <mailto:security-basics-help () securityfocus com>
List-Unsubscribe: <mailto:security-basics-unsubscribe () securityfocus com>
List-Subscribe: <mailto:security-basics-subscribe () securityfocus com>
Delivered-To: mailing list security-basics () securityfocus com
Delivered-To: moderator for security-basics () securityfocus com
X-Server-Uuid: 675EEF40-F81A-4CC4-A37F-2CCA6E590945
Content-class: urn:content-classes:message
X-MimeOLE: Produced By Microsoft Exchange V6.5
X-MS-Has-Attach: X-MS-TNEF-Correlator: Thread-Topic: Legendary Hacker Kevin Mitnick on malware and social engineering
Thread-Index: Acana/sdGyZMIyEOTHCdsxc+1u+QmwB8kebQ
X-OriginalArrivalTime: 17 Jul 2006 05:07:58.0950 (UTC) FILETIME=[F89A0060:01C6A95E] X-TMWD-Spam-Summary: TS=20060717050800; SEV=2.0.2; DFV=A2006071701; IFV=2.0.4,4.0-8; RPD=4.00.0004; ENG=IBF; RPDID=303030312E30413039303230372E34344242313842462E303031462D452D50766E4F4E5776485A694B486A4C4C456444523259413D3D; CAT=NONE; CON=NONE
X-MMS-Spam-Filter-ID: A2006071701_4.00.0004_4.0-8
X-WSS-ID: 68A5C4A54HO10703151-01-01
Return-Path: security-basics-return-40248-leonmano=msn.com () securityfocus com

Just wondering if someone could give me a more direct link to this paper, because I can't access it. All I get is a 404 at this page:

http://www.appsense.com/content/miscellaneous/file_not_found_de.asp?file=URL=http://www.appsense.com/content/miscellaneous/404_de.asp?404;http://www.appsense.com/content/miscellaneous/mitnick/Mitnick_Hacking_White_Paper_de.asp?code=mitnick&cID=7012000000054SNAAY&&bhcp=1&email=

Looks like some sort of automatic language-selection to me, cause I am German and there is this "de" in the link (the Mitnick_Hacking_White_Paper_de.asp part). I guess the Paper itself is in English?

Regards,
Christian Assfalg

-----Ursprüngliche Nachricht-----
Von: Paul Turner [mailto:paulturner18 () hotmail com]
Gesendet: Freitag, 14. Juli 2006 16:48
An: security-basics () securityfocus com
Betreff: Re: Legendary Hacker Kevin Mitnick on malware and social engineering



The paper is well written as you would expect from Kevin Mitnick I have read
all of his books and enjoy them.

We are actually evaluating appsense at the moment but with their application
lockdown software which allows me to delete menu items and buttons. This is
a technical example flash video one of their reps sent to me, it's quite
good.

www.appsense.com/lockdown

I have a few companies to test against the malware program but none that do
lockdown, does anyone know of any that do a similar thing to the video?

Paul

---

>>Dear Group,
>>
>>Legendary hacker and author Kevin Mitnick has produced a whitepaper in
>>which he details several scenarios in which social engineering exposed
>>significant vulnerabilities that lead to corporate attacks.
>>
>>People who have read Kevin's books and who like his style of writing will >>also enjoy the paper. What I find most valuable about this paper is that
>>Mitnick remains neutral in his approach when he outlines his "Best
>>Practices" approach to protection. He does a thorough analysis of various
>>techniques and methodologies for mitigating risk and locking down
>>endpoints, while allowing users enough flexibility to perform their jobs.
>>
>>People can download the whitepaper in PDF format from
>>www.appsense.com/mitnick
>>
>>It's a good read, I would recommend it for anyone security inclined even
>>if you just download it and save it for a rainy day :o)
>>
>>I hope this is of use or enjoyment to someone.
>>
>>Best Regards,
>>Jon.
>>
>>

_________________________________________________________________
FREE pop-up blocking with the new MSN Toolbar - get it now!
http://toolbar.msn.click-url.com/go/onm00200415ave/direct/01/


---------------------------------------------------------------------------
This list is sponsored by: SensePost

Hacking, like any art, will take years of dedicated study and
practice to master. We can't teach you to hack. But we can teach you
what we've learned so far. Our courses are honest, real, technical
and practical. SensePost willl be at Black Hat Vegas in July. To see
what we're about, visit us at:

http://www.sensepost.com/training.html
---------------------------------------------------------------------------




---------------------------------------------------------------------------
This list is sponsored by: SensePost

Hacking, like any art, will take years of dedicated study and
practice to master. We can't teach you to hack. But we can teach you
what we've learned so far. Our courses are honest, real, technical
and practical. SensePost willl be at Black Hat Vegas in July. To see
what we're about, visit us at:

http://www.sensepost.com/training.html
---------------------------------------------------------------------------




---------------------------------------------------------------------------
This list is sponsored by: SensePost

Hacking, like any art, will take years of dedicated study and practice to master. We can't teach you to hack. But we can teach you what we've learned so far. Our courses are honest, real, technical and practical. SensePost willl be at Black Hat Vegas in July. To see what we're about, visit us at:
http://www.sensepost.com/training.html
---------------------------------------------------------------------------


Current thread: