<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for Sharpe Security Blog</title>
	<atom:link href="http://blog.sharpesecurity.com/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.sharpesecurity.com</link>
	<description>Malware RE, Vulnerability Management, Incident Response, Software Development, Software Packaging</description>
	<lastBuildDate>Mon, 19 Sep 2011 00:33:40 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>Comment on Volatility Framework 2.0 Released by David Sharpe</title>
		<link>http://blog.sharpesecurity.com/2011/08/06/volatility-framework-2-0-released/#comment-547</link>
		<dc:creator>David Sharpe</dc:creator>
		<pubDate>Mon, 19 Sep 2011 00:33:40 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sharpesecurity.com/?p=1121#comment-547</guid>
		<description>Volatility can&#039;t, but I hear Voltage (used within Terremark) from the same original Volatility developer can.</description>
		<content:encoded><![CDATA[<p>Volatility can&#8217;t, but I hear Voltage (used within Terremark) from the same original Volatility developer can.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Volatility Framework 2.0 Released by B</title>
		<link>http://blog.sharpesecurity.com/2011/08/06/volatility-framework-2-0-released/#comment-546</link>
		<dc:creator>B</dc:creator>
		<pubDate>Sun, 18 Sep 2011 16:26:33 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sharpesecurity.com/?p=1121#comment-546</guid>
		<description>Can volatility perform analysis of a live system without doing a complete memory dump first?  If you&#039;re going to use it in the enterprise to look for indicators of compromise, I think it would be useful to be able to sample live memory instead of trying to manage 2gb+ dumps from hundreds or thousands of systems.</description>
		<content:encoded><![CDATA[<p>Can volatility perform analysis of a live system without doing a complete memory dump first?  If you&#8217;re going to use it in the enterprise to look for indicators of compromise, I think it would be useful to be able to sample live memory instead of trying to manage 2gb+ dumps from hundreds or thousands of systems.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Mozilla Firefox 6.0 and 3.6.20 Released by Francois</title>
		<link>http://blog.sharpesecurity.com/2011/08/17/mozilla-firefox-6-0-and-3-6-20-released/#comment-531</link>
		<dc:creator>Francois</dc:creator>
		<pubDate>Wed, 17 Aug 2011 16:23:10 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sharpesecurity.com/?p=1129#comment-531</guid>
		<description>I wish they would stop breaking addons between their releases.  Because of that, I know not everyone will upgrade regardless of the fact that this is also a security fix.</description>
		<content:encoded><![CDATA[<p>I wish they would stop breaking addons between their releases.  Because of that, I know not everyone will upgrade regardless of the fact that this is also a security fix.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Volatility Framework 2.0 Released by Me</title>
		<link>http://blog.sharpesecurity.com/2011/08/06/volatility-framework-2-0-released/#comment-530</link>
		<dc:creator>Me</dc:creator>
		<pubDate>Mon, 15 Aug 2011 22:46:53 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sharpesecurity.com/?p=1121#comment-530</guid>
		<description>Digital DNA is what makes it slick. I&#039;m less of a fan of RP than I am of Active Defense. Try running Violatility on 100s of systems at once...</description>
		<content:encoded><![CDATA[<p>Digital DNA is what makes it slick. I&#8217;m less of a fan of RP than I am of Active Defense. Try running Violatility on 100s of systems at once&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Oracle July 2011 Patches Released by sai krishna</title>
		<link>http://blog.sharpesecurity.com/2011/07/20/oracle-july-2011-patches-released/#comment-525</link>
		<dc:creator>sai krishna</dc:creator>
		<pubDate>Thu, 11 Aug 2011 12:18:28 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sharpesecurity.com/?p=1105#comment-525</guid>
		<description>If u provide patch id and number i will be very grateful to u</description>
		<content:encoded><![CDATA[<p>If u provide patch id and number i will be very grateful to u</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Oracle July 2011 Patches Released by sai krishna</title>
		<link>http://blog.sharpesecurity.com/2011/07/20/oracle-july-2011-patches-released/#comment-524</link>
		<dc:creator>sai krishna</dc:creator>
		<pubDate>Thu, 11 Aug 2011 12:16:50 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sharpesecurity.com/?p=1105#comment-524</guid>
		<description>what&#039;s the patch numbers released in the month of july and april</description>
		<content:encoded><![CDATA[<p>what&#8217;s the patch numbers released in the month of july and april</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Volatility Framework 2.0 Released by Greg Hoglund</title>
		<link>http://blog.sharpesecurity.com/2011/08/06/volatility-framework-2-0-released/#comment-521</link>
		<dc:creator>Greg Hoglund</dc:creator>
		<pubDate>Mon, 08 Aug 2011 18:51:58 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sharpesecurity.com/?p=1121#comment-521</guid>
		<description>David,

Devastating blow?  You may not know that HBGary released a &lt;a href=&quot;http://www.hbgary.com/hbgary-releases-responder-ce&quot; rel=&quot;nofollow&quot;&gt;free version of Responder&lt;/a&gt; at the CEIC conference earlier this year.  We support the community and have made the CE version available for training as well.  You should also know that the free version of Responder supports:

32bit Windows ALL VERSIONS, ALL SERVICE PACKS (excluding NT4.0)
64bit Windows ALL VERSIONS, ALL SERVICE PACKS

Responder CE also supports scripting and comes with the source code to a command-line version that you can customize at will.  I hope this helps.

-Greg Hoglund
www.hbgary.com</description>
		<content:encoded><![CDATA[<p>David,</p>
<p>Devastating blow?  You may not know that HBGary released a <a href="http://www.hbgary.com/hbgary-releases-responder-ce" rel="nofollow">free version of Responder</a> at the CEIC conference earlier this year.  We support the community and have made the CE version available for training as well.  You should also know that the free version of Responder supports:</p>
<p>32bit Windows ALL VERSIONS, ALL SERVICE PACKS (excluding NT4.0)<br />
64bit Windows ALL VERSIONS, ALL SERVICE PACKS</p>
<p>Responder CE also supports scripting and comes with the source code to a command-line version that you can customize at will.  I hope this helps.</p>
<p>-Greg Hoglund<br />
<a href="http://www.hbgary.com" rel="nofollow">http://www.hbgary.com</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Volatility Framework 2.0 Released by Tim S</title>
		<link>http://blog.sharpesecurity.com/2011/08/06/volatility-framework-2-0-released/#comment-519</link>
		<dc:creator>Tim S</dc:creator>
		<pubDate>Sat, 06 Aug 2011 10:06:27 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sharpesecurity.com/?p=1121#comment-519</guid>
		<description>While I&#039;ve historically been a huge fan of Volatility &amp; Mandiants free tools, I just cant help but point out the elephant in the room. Where is the 64-bit support? All the large hardware manufacturers don&#039;t even sell 32-bit hardware anymore and virtually all new machines have been shipping with 64-bit operating systems since last year. 

Am I missing something?</description>
		<content:encoded><![CDATA[<p>While I&#8217;ve historically been a huge fan of Volatility &amp; Mandiants free tools, I just cant help but point out the elephant in the room. Where is the 64-bit support? All the large hardware manufacturers don&#8217;t even sell 32-bit hardware anymore and virtually all new machines have been shipping with 64-bit operating systems since last year. </p>
<p>Am I missing something?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Volatility Framework 2.0 Released by Anonymous</title>
		<link>http://blog.sharpesecurity.com/2011/08/06/volatility-framework-2-0-released/#comment-517</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Sat, 06 Aug 2011 05:00:19 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sharpesecurity.com/?p=1121#comment-517</guid>
		<description>True.  How can you justify 60,000 for a corvette when you can build a boxcar out of plywood in your garage for free?

Same basic idea.</description>
		<content:encoded><![CDATA[<p>True.  How can you justify 60,000 for a corvette when you can build a boxcar out of plywood in your garage for free?</p>
<p>Same basic idea.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Scant Facts Regarding Lockheed&#8217;s VPN System Takedown by dio</title>
		<link>http://blog.sharpesecurity.com/2011/05/28/scant-facts-regarding-lockheeds-vpn-system-takedown/#comment-401</link>
		<dc:creator>dio</dc:creator>
		<pubDate>Mon, 30 May 2011 05:10:30 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sharpesecurity.com/?p=1005#comment-401</guid>
		<description>uhhhhhm The smart card has been cracked, Mr. Brilliant.   Reference Mandiant&#039;s M-Trends 2011 issue and note the smart-card proxy capabilities our adversaries have implemented with wide ranging success.  That was the first pillar.  When organizations started using RSA in response to threats, they took down that pillar of defense as well.  Wake up.  Until the actors are made to suffer retributive and punitive punishing attacks for their efforts, nothing will change.</description>
		<content:encoded><![CDATA[<p>uhhhhhm The smart card has been cracked, Mr. Brilliant.   Reference Mandiant&#8217;s M-Trends 2011 issue and note the smart-card proxy capabilities our adversaries have implemented with wide ranging success.  That was the first pillar.  When organizations started using RSA in response to threats, they took down that pillar of defense as well.  Wake up.  Until the actors are made to suffer retributive and punitive punishing attacks for their efforts, nothing will change.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

