18
05
2008
Today I moved my data using the robocopy.exe tool and using the /move switch; the tool migrated data from one usb disk to another one. Before returning my usb disk to the IT department I checked the disk partition with one of the tools I use to check deleted files. Guess what the tool found 18000 files in 10 minutes scan on the usb volume which was empty…
Before I will return this USB disk for re-use I will make sure no data is left which can be recovered by any tool. With physical disks I used gdisk with dod option to wipe all data. For the USB disk I am going to install tool called Eraser which is freeware.
Read the rest of this entry »
Comments : No Comments »
Categories : Security
16
04
2008
How many of us have Windows Updates automatically configured and Virus Protection installed when using client OS virtual machines for test environments? I hope most of you because unprotected virtual machine in your enterprise environment has the same risk as a physical machine. There is no difference between a virtual or physical installation of Windows XP.
Recently I installed Symantec AntiVirus 10.2 on my Windows XP virtual machine. Hopefully the attach as shown below did protect me against the Adware which was installed on my virtual machine.
I was using couple of Internet Explorer sessions and searching for my phpmyadmin issues on one of my virtual machines. I used google and opened top 10 of the results. At some point I’ve got a popup of downloading a exe file when closing all Internet Explorer instances and then my Auto-Protect results came up with threads being found. I definitely did not install anything. After the reboot the “AntiSpyware Master” application was installed without my permission; believe as an IT and Security pro I am not going to install programs which I don’t trust.
Read the rest of this entry »
Comments : No Comments »
Categories : Security, Virtualization
14
11
2007
As a security professional I am always concerned about my logs left on the servers running on the Internet. Couple months ago I heard something about the TOR network and never give at any attention to have a better look than just quickly read on their website. This evening I installed the local Vidalia Bundle but it still didn’t fulfill my needs to quickly tunnel other TCP based applications like Remote Desktop Protocol (RPD) though TOR network.
After some research on Google and TOR wiki pages and found out this nice appliance called JanusVM. I downloaded the 20MB zip file and put it on my Intel Quad Core server running VMWare Workstation 6.0. After two minutes the appliance was up and running.
Screenshot from my appliance. I entered option 4 and created new vpn account.
Then I went back to my Windows XP machine and created new VPN connection to the JanusVM.
The JanusVM VPN tunnel was running and I started IE and went to Google. Entered a search for my ip address and lucky me my request came from Germany
Final test with mstsc.exe client to one of the RDP server on the Internet and I was successfully logged on with a nice IP address.
This is working fine for me and my requirements. I would like to mention the latency. Yes, it is slow and don’t think to download a CD. Latency from China is also bad, but go back to the VMWare player/workstation and choose option5 to recreate the circuit.
Comments : No Comments »
Categories : Security
Recent Comments