Violent Python Quick Thoughts
I eagerly pre-ordered the book Violent Python and while I’ve only had a chance to go completely through chapter 1 and pick through chapter 6, I wanted to write a quick post with my thoughts on the...
View ArticleI’m Now Network+ Certified
The news is a few weeks late (I’ve been swamped with a few projects) but I’m now Network+ certified. The cert was a little anti-climactic after the GCIH exam but it’s one of the baseline certs that I...
View ArticleSamurai Skills Update #5
While I still haven’t been able to devout nearly as much time as I would like to play in the student labs I still wanted to post another update on how the Samurai Skills course is going for me. I’ve...
View ArticleTelling sqlmap to Try Harder
When I first started learning about penetration testing sqlmap quickly became one of my favorite tools. For those who haven’t used it, sqlmap is a command line tool which automates the detection and...
View ArticleSamurai Skills Update #6 – Review
After popping shell on almost every box in the Attack-Secure student lab I finally got shell on the computer which held the key.txt file which had the hash I needed to earn my Attack-Secure Penetration...
View ArticleAn update and a useful link
I wanted to post a quick update to let everyone know the why the posts have been few and far in between these last few weeks. The quickie version is long hours at work combined with two sans...
View ArticleQuickie SANS Forensics 408 Review
In January I was able to attend the SANS FOR408: Computer Forensic Investigations – Windows In-Depth course. When choosing what course to take it would be easy to focus on the fact that this is a “400...
View ArticleShould I take SANS 408 or 508? (part 1)
I recently got asked a question in a comment that I was planning to answer in about 45 days but I don’t want to wait that long so I’ll give half of an answer now. The question was a common one: “Should...
View ArticleGSEC passed and my 2012-2013 Security-Cert-A-Palooza
I passed the GSEC exam early last week and got my certificate in the mail today. It made me stop and think what a crazy eleven months it’s been. Last May I was fortunate enough to attend a computer...
View ArticleSANS 508 Compared to 408 Part Two plus a Side of 610
I’ve now had a chance to go through the OnDemand SANS FOR 508 Advanced Computer Forensic Analysis and Incident Response course and feel a little more comfortable comparing it to FOR 408 Computer...
View ArticleQuickie review of the SANS 508 course
I just finished the SANS FOR508: Advanced Computer Forensic Analysis and Incident Response course OnDemand version and I wanted to write up a quick review on the class. The 2012 & 2013 version of...
View ArticleEarly thoughts on Cybercon
Anyone can look at my blog articles or my list of certifications and know that I’m a huge fan of SANS trainings. I’ve taken in person courses and OnDemand courses but what I had yet to take is a vlive...
View ArticlePassed My CISSP Exam
I’m back from my self-imposed month of silence and am happy to report that I passed my CISSP exam. I allowed for a hair over three weeks from my CISSP boot camp to my test date which seemed very...
View ArticleQuick Update and Minor Tool Announcement
June was a fairly busy month as I knocked out my GISP and CEH. The GISP required no extra study on my part as I had just finished my CISSP exam and it’s basically an open book CISSP. The GISP questions...
View ArticlePython Tool for Parsing Data from Rand McNally GPS units
I recently encountered a Rand McNally Intelliroute TND 720 GPS unit and none of the commercial forensic tools had the ability to acquire data from the device so I imaged the device and poked around for...
View ArticleForensic Artifact Analysis of the Burner App for the iPhone
In April of this year, I saw a thread on Forensicfocus.com discussing a new smart phone app called “Burner” which lets users purchase disposable phone numbers for short-term use. The application has...
View ArticleSans 542 and GWAPT Review
I recently finished the OnDemand version of the SANS 542 Web App Penetration Testing and Ethical Hacking course and passed the GIAC Web Application Penetration Tester (GWAPT) exam so I thought I would...
View ArticleThoughts on SANS Network Security 2013
I had six weeks between passing my GWAPT exam and attending SEC 503 at the SANS Network Security 2013 so for the first time in the past fourteen months I took a break from studying and certifications....
View ArticleReview of the new SANS 585 Smartphone Forensics Course
I recently had the opportunity to beta test the soon to be released SANS 585 Smartphone Forensics course and I wanted to share some thoughts about the course content and the labs. The course page on...
View ArticleSANS 503 and GCIA Thoughts
I attended the SANS SEC 503 ‘Intrusion Detection In-Depth’ course at SANS Network Security two months ago and just took the GCIA certification exam yesterday so I thought I’d post a few thoughts on the...
View Article