Friday, April 19, 2013

All, I noticed a tweet by HD Moore today giving a shout out to this post written last week by Ed Skoudis. Very good read. Here's a link and an excerpt:

"at sufficiently advanced technical levels, offense and defense sometimes merge and become one. Offensive techniques can be used to achieve defensive ends; defensive means can be used to achieve offensive ends; and, sometimes, the inherent technical skills of offense and defense are actually identical."

"Consider these examples:
  • Endpoint security suites: Have you ever pondered what these tools really are? With their integrated anti-virus, personal firewall, and host-based Intrusion Prevention Systems, they operate at a fairly low-level of most operating systems, hooking all kinds of system calls so that administrators can maintain control of the machine. Wait... that's a rootkit! The only difference between an endpoint security suite and most rootkits is the level of functionality and who controls it: good guy administrators or bad guys. So, we've got a multi-billion dollar segment of the infosec industry that is actually built on selling commercial rootkits, also known as endpoint security suites."
Ed Skoudis is a very dynamic teacher there at SANS, and I recommend his courses to everyone.


  1. This is interesting. I didn't know of Skoudis, but will follow him now.

    Also, I should note that this not only happens on «sufficiently advanced technical levels» (or at least, that the definition of «technical» doesn't restrict itself to IT. Anyone trained in martial arts knows that defense and offense are basically the same actions applied to different purposes.

  2. Collections from the design labels such as Cheap TRX and other beauty are released after every six months.
    With every new launch, a new trx pas cher technology is developed.
    This had led to making trx pas cher remain competitive in the International market.
    The entire penny board hot sale packaging process is paid into detail to enhance the collections quality and appearance.
    Now everyone can own high-end designer Cheap TRX For Sale.
    cheap trx being one of the largest and most prominent fashion company in the world, it has an obligation of beating the standards set by others.
    The fashion world, with a higher concentration on trx france, needs to provide the best packaging services that the modern world has ever seen.
    cheap trx plays a major role in creating a brand name that fashion lovers want to identify with.

  3. Have used AVG security for a couple of years, I'd recommend this product to all of you.


    Professional trading signals sent to your cell phone daily.

    Start following our signals NOW and gain up to 270% daily.

  5. You can give personal touch to your Hotmail account by configuring its settings, but you have to make sure that you don’t commit any mistake in it. For an error free email setting you can take help from our service agents by dialing them at 0800-029-4639.
    Hotmail Support Number UK

  6. When you confront with the failed installation error in your Kaspersky software, you should try to correct it on time. If you are finding it difficult, just contact the trained professionals at Kaspersky Help Number UK and try to fix your troubles immediately. The technicians know what will be the right procedure to correct any problems.
    Kaspersky Support Number UK

  7. Shop for high quality Best clothes steamer, Steamer for Clothes, garment steamer, Fabric Steamer All kinds of Steam Cleaner on Turbo Steam at best prices.

  8. Are you facing Microsoft Product and services related problems and you want to solve it permanently, than call Microsoft Helpline Number +1-844-229-3909 and get instant support

    Microsoft Helpline Number

    Microsoft Office Support Number

    Microsoft technical Support Number

    Microsoft Outlook Support Number

    Website -

    Toll-free Number - +1-844-229-3909

    Email id -